Infecté par Trojan.JS.Injector.A

Fermé
floppy75 Messages postés 1076 Date d'inscription dimanche 27 avril 2008 Statut Membre Dernière intervention 19 octobre 2008 - 22 sept. 2008 à 15:50
jlpjlp Messages postés 51580 Date d'inscription vendredi 18 mai 2007 Statut Contributeur sécurité Dernière intervention 3 mai 2022 - 22 sept. 2008 à 21:40
Bonjour a tous ...


alors voila mon antivirus Bitdefender me sort tous les 20 seconde ( a chaque chargement de page internet )

le même message :

Bitdefender a bloqué plusieurs virus sur votre ordinateur !

Nom du virus : Trojan.JS.Injector.A

chemin : C/document and s... /flo / Local setting / Temp

et les fichiers sont :

eve.exe
b720x90.tmp
b720x300.tmp


et tout un tas d'autres ....

vola un rapport Hijackthis .... :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:48:50, on 22/09/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe
C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe
C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\Program Files\Fichiers communs\Gestionnaire d'installation SolidWorks\Scheduler\sldIMScheduler.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\Program Files\Razer\Diamondback 3G\razerhid.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\Rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\RocketDock\RocketDock.exe
C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe
C:\Program Files\Logitech\GamePanel Software\LCD Manager\Applets\LCDClock.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\Program Files\Logitech\GamePanel Software\LCD Manager\Applets\LCDPop3.exe
C:\Program Files\Logitech\GamePanel Software\LCD Manager\Applets\LCDMedia.exe
C:\Program Files\Schmads Inc\G15_TeamSpeak\G15_TeamSpeak.exe
C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe
C:\PROGRA~1\MICROS~2\rapimgr.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Razer\Diamondback 3G\razertra.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Razer\Diamondback 3G\razerofa.exe
C:\WINDOWS\system32\msiexec.exe
C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe
C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe
C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
C:\WINDOWS\system32\MsiExec.exe
C:\WINDOWS\system32\MsiExec.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Flo\Bureau\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.01net.com/telecharger/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.01net.com/telecharger/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.01net.com/telecharger/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {1F5FDA83-4379-4C6A-94AD-CC7BC688505A} - C:\WINDOWS\system32\rqRJBSKD.dll
O2 - BHO: (no name) - {209993B0-20C1-4AA9-B14E-A014EFB5F421} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: BitDefender Toolbar - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2008\IEToolbar.dll
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [36X Raid Configurer] C:\WINDOWS\system32\xRaidSetup.exe boot
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [RivaTunerStartupDaemon] "C:\Program Files\RivaTuner v2.09\RivaTuner.exe" /S
O4 - HKLM\..\Run: [Launch LCDMon] "C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe"
O4 - HKLM\..\Run: [Launch LGDCore] "C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe" /SHOWHIDE
O4 - HKLM\..\Run: [BitDefender Antiphishing Helper] "C:\Program Files\BitDefender\BitDefender 2008\IEShow.exe"
O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [Diamondback] C:\Program Files\Razer\Diamondback 3G\razerhid.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [BMcfcd7ae7] Rundll32.exe "C:\WINDOWS\system32\djewemgu.dll",s
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - https://www.touslesdrivers.com/index.php?v_page=29
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: ddgdhd.dll
O20 - Winlogon Notify: rqRJBSKD - C:\WINDOWS\SYSTEM32\rqRJBSKD.dll
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: BitDefender Desktop Update Service (LIVESRV) - BitDefender SRL - C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - BitDefender S.R.L. - C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe
O23 - Service: BitDefender Communicator (XCOMM) - BitDefender - C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe

5 réponses

jlpjlp Messages postés 51580 Date d'inscription vendredi 18 mai 2007 Statut Contributeur sécurité Dernière intervention 3 mai 2022 5 040
22 sept. 2008 à 21:40
fais le message 4
1
jlpjlp Messages postés 51580 Date d'inscription vendredi 18 mai 2007 Statut Contributeur sécurité Dernière intervention 3 mai 2022 5 040
22 sept. 2008 à 16:22
slt,

télécharge combofix (par sUBs) ici :

http://download.bleepingcomputer.com/sUBs/ComboFix.exe

et enregistre le sur le bureau.

déconnecte toi d'internet et ferme toutes tes applications.

désactive tes protections (antivirus, parefeu, garde en temps réel de l'antispyware)


double-clique sur combofix.exe et suis les instructions

à la fin, il va produire un rapport C:\ComboFix.txt

réactive ton parefeu, ton antivirus, la garde de ton antispyware

copie/colle le rapport C:\ComboFix.txt dans ta prochaine réponse.

Attention, n'utilise pas ta souris ni ton clavier (ni un autre système de pointage) pendant que le programme tourne. Cela pourrait figer l'ordi.

Tu as un tutoriel complet ici :

https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
-1
floppy75 Messages postés 1076 Date d'inscription dimanche 27 avril 2008 Statut Membre Dernière intervention 19 octobre 2008 132
22 sept. 2008 à 17:39
je te remerci de m'aider....

alors voila le rapport..


ComboFix 08-09-20.05 - Flo 2008-09-22 17:33:18.3 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.2856 [GMT 2:00]
Lancé depuis: C:\Documents and Settings\Flo\Bureau\ComboFix.exe
* Un nouveau point de restauration a été créé
* Resident AV is active


[color=red][b]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !![/b][/color]
.

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\WINDOWS\system32\BReWErS.dll
C:\WINDOWS\system32\rtl60.bpl

.
((((((((((((((((((((((((((((( Fichiers créés du 2008-08-22 au 2008-09-22 ))))))))))))))))))))))))))))))))))))
.

2008-09-22 16:02 . 2008-09-22 16:02 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\Malwarebytes
2008-09-22 16:01 . 2008-06-22 10:53 <REP> d--h----- C:\Documents and Settings\Administrateur\Voisinage r‚seau
2008-09-22 16:01 . 2008-06-22 10:53 <REP> d--h----- C:\Documents and Settings\Administrateur\Voisinage d'impression
2008-09-22 16:01 . 2008-06-22 10:02 <REP> d--h----- C:\Documents and Settings\Administrateur\ModŠles
2008-09-22 16:01 . 2008-06-22 10:53 <REP> d-------- C:\Documents and Settings\Administrateur\Mes documents
2008-09-22 16:01 . 2008-06-22 10:53 <REP> dr------- C:\Documents and Settings\Administrateur\Menu D‚marrer
2008-09-22 16:01 . 2008-06-22 10:53 <REP> d-------- C:\Documents and Settings\Administrateur\Favoris
2008-09-22 16:01 . 2008-09-22 17:08 <REP> d-------- C:\Documents and Settings\Administrateur\Bureau
2008-09-22 16:01 . 2008-09-22 17:05 <REP> d-------- C:\Documents and Settings\Administrateur
2008-09-22 15:53 . 2008-09-22 15:53 13,104 --a------ C:\WINDOWS\system32\GDIPFONTCACHEV1.DAT
2008-09-22 14:37 . 2008-09-22 14:37 113,152 --a------ C:\WINDOWS\system32\esgndtcj.dll
2008-09-21 20:37 . 2008-09-21 20:37 <REP> d-------- C:\Documents and Settings\Flo\Application Data\Disney Interactive Studios
2008-09-21 19:56 . 2008-09-21 19:56 <REP> d-------- C:\Program Files\Disney Interactive Studios
2008-09-20 16:54 . 2008-09-20 16:54 <REP> d--h-c--- C:\Documents and Settings\All Users\Application Data\{0691F710-1ECA-4B5A-9727-25554F1BFDC6}
2008-09-20 11:54 . 2008-09-20 13:34 <REP> d-------- C:\Program Files\DAEMON Tools Lite
2008-09-20 11:50 . 2008-09-20 11:50 <REP> d-------- C:\Documents and Settings\Flo\Application Data\DAEMON Tools
2008-09-20 11:02 . 2008-07-12 08:18 3,851,784 --a------ C:\WINDOWS\system32\D3DX9_39.dll
2008-09-20 11:02 . 2008-07-12 08:18 1,493,528 --a------ C:\WINDOWS\system32\D3DCompiler_39.dll
2008-09-20 11:02 . 2008-07-31 10:40 509,448 --a------ C:\WINDOWS\system32\XAudio2_2.dll
2008-09-20 11:02 . 2008-07-12 08:18 467,984 --a------ C:\WINDOWS\system32\d3dx10_39.dll
2008-09-20 11:02 . 2008-07-31 10:41 238,088 --a------ C:\WINDOWS\system32\xactengine3_2.dll
2008-09-20 11:02 . 2008-07-31 10:41 68,616 --a------ C:\WINDOWS\system32\XAPOFX1_1.dll
2008-09-20 11:00 . 2008-09-21 20:32 1,001 --a------ C:\WINDOWS\disney.ini
2008-09-20 03:37 . 2008-09-20 03:37 <REP> d-------- C:\Program Files\Microsoft Games
2008-09-19 18:18 . 2008-09-19 18:18 <REP> d-------- C:\Program Files\Sierra Entertainment
2008-09-19 14:53 . 2008-09-19 14:53 <REP> d-------- C:\Program Files\Deep Silver
2008-09-19 14:15 . 2008-05-30 14:11 3,850,760 --a------ C:\WINDOWS\system32\D3DX9_38.dll
2008-09-19 14:15 . 2008-05-30 14:11 1,491,992 --a------ C:\WINDOWS\system32\D3DCompiler_38.dll
2008-09-19 14:15 . 2008-05-30 14:19 507,400 --a------ C:\WINDOWS\system32\XAudio2_1.dll
2008-09-19 14:15 . 2008-05-30 14:11 467,984 --a------ C:\WINDOWS\system32\d3dx10_38.dll
2008-09-19 14:15 . 2008-05-30 14:18 238,088 --a------ C:\WINDOWS\system32\xactengine3_1.dll
2008-09-19 14:15 . 2008-05-30 14:17 65,032 --a------ C:\WINDOWS\system32\XAPOFX1_0.dll
2008-09-19 14:15 . 2008-05-30 14:17 25,608 --a------ C:\WINDOWS\system32\X3DAudio1_4.dll
2008-09-19 14:14 . 2008-09-19 14:14 <REP> d-------- C:\WINDOWS\Logs
2008-09-19 13:47 . 2008-09-19 13:47 502 --a------ C:\WINDOWS\[u]0[/u]
2008-09-19 13:47 . 2008-09-19 13:47 81 --a------ C:\WINDOWS\Times New Roman
2008-09-19 13:46 . 2008-09-19 13:46 <REP> d-------- C:\Program Files\SoftwarePassport
2008-09-19 13:46 . 2008-09-19 13:46 <REP> d-------- C:\Documents and Settings\All Users\Application Data\InstallShield
2008-09-19 13:46 . 2004-03-09 01:00 609,824 --a------ C:\WINDOWS\system32\COMCTL32.OCX
2008-09-19 13:46 . 2004-03-09 01:00 212,240 --a------ C:\WINDOWS\system32\RICHTX32.OCX
2008-09-19 13:46 . 2007-02-26 00:42 53,248 --a------ C:\WINDOWS\system32\ArmAccess.dll
2008-09-19 13:46 . 2007-06-15 15:03 29,656 --a------ C:\WINDOWS\system32\Lanceur2.exe
2008-09-19 13:45 . 2008-09-19 13:45 <REP> d-------- C:\Program Files\Mindscape
2008-09-19 13:45 . 2003-01-30 14:04 1,500,160 --a------ C:\WINDOWS\system32\CC3260MT.DLL
2008-09-19 13:45 . 2002-02-01 08:00 1,326,080 --a------ C:\WINDOWS\system32\vcl60.bpl
2008-09-19 13:45 . 1999-03-03 21:00 908,800 --a------ C:\WINDOWS\system32\CP3245MT.DLL
2008-09-19 13:45 . 2004-09-28 20:25 478,208 --a------ C:\WINDOWS\system32\radevcl.bpl
2008-09-19 13:45 . 2002-02-01 08:00 262,656 --a------ C:\WINDOWS\system32\vcldb60.bpl
2008-09-19 13:45 . 2002-02-01 08:00 254,464 --a------ C:\WINDOWS\system32\dbrtl60.bpl
2008-09-19 13:45 . 2002-03-06 06:00 213,504 --a------ C:\WINDOWS\system32\vclx60.bpl
2008-09-19 13:45 . 2004-08-09 06:04 73,728 --a------ C:\WINDOWS\system32\ISUSPM.cpl
2008-09-19 13:45 . 1998-02-09 20:00 29,952 --a------ C:\WINDOWS\system32\BORLNDMM.DLL
2008-09-18 16:04 . 2008-09-18 16:04 34,308 --a------ C:\WINDOWS\system32\Chip.dll
2008-09-18 15:55 . 2008-09-18 15:55 27 --a------ C:\WINDOWS\system32\mcheck.mhf
2008-09-18 03:17 . 2008-09-18 03:17 <REP> d-------- C:\ProgramData
2008-09-17 12:48 . 2008-09-21 20:32 <REP> d-------- C:\Documents and Settings\Flo\Application Data\BitTorrent
2008-09-17 12:47 . 2008-09-17 12:48 <REP> d-------- C:\Program Files\BitTorrent
2008-09-16 23:10 . 2008-09-16 23:10 <REP> d-------- C:\Program Files\TeamSpeak3
2008-09-13 10:00 . 2008-09-13 10:00 <REP> d-------- C:\Documents and Settings\Flo\Application Data\BlackBean
2008-09-13 09:36 . 2008-03-05 15:56 3,786,760 --a------ C:\WINDOWS\system32\D3DX9_37.dll
2008-09-13 09:36 . 2008-03-05 15:56 1,420,824 --a------ C:\WINDOWS\system32\D3DCompiler_37.dll
2008-09-13 09:36 . 2007-10-12 15:14 1,374,232 --a------ C:\WINDOWS\system32\D3DCompiler_36.dll
2008-09-13 09:36 . 2008-03-05 16:03 479,752 --a------ C:\WINDOWS\system32\XAudio2_0.dll
2008-09-13 09:36 . 2008-02-05 23:07 462,864 --a------ C:\WINDOWS\system32\d3dx10_37.dll
2008-09-13 09:36 . 2007-10-02 09:56 444,776 --a------ C:\WINDOWS\system32\d3dx10_36.dll
2008-09-13 09:36 . 2007-10-22 03:39 267,272 --a------ C:\WINDOWS\system32\xactengine2_10.dll
2008-09-13 09:36 . 2007-07-20 00:57 267,112 --a------ C:\WINDOWS\system32\xactengine2_9.dll
2008-09-13 09:36 . 2008-03-05 16:03 238,088 --a------ C:\WINDOWS\system32\xactengine3_0.dll
2008-09-13 09:36 . 2008-03-05 16:00 25,608 --a------ C:\WINDOWS\system32\X3DAudio1_3.dll
2008-09-13 09:24 . 2008-09-13 09:24 <REP> d-------- C:\Program Files\BlackBeanGames
2008-09-12 01:17 . 2008-09-12 01:17 <REP> d-------- C:\Documents and Settings\Flo\Application Data\zweitgeist
2008-09-10 09:41 . 2008-09-10 09:41 81,920 --a------ C:\WINDOWS\system32\frapsvid.dll
2008-09-09 16:37 . 2008-09-09 16:39 <REP> d-------- C:\Program Files\Trials 2 Second Edition
2008-09-09 16:37 . 2008-09-09 16:37 <REP> d-------- C:\Program Files\OpenAL
2008-09-09 16:37 . 2007-10-12 15:14 3,734,536 --a------ C:\WINDOWS\system32\d3dx9_36.dll
2008-09-07 14:40 . 2007-11-14 15:18 553 -r------- C:\WINDOWS\USetup.iss
2008-09-07 12:00 . 2008-09-07 12:00 <REP> d-------- C:\Program Files\XPC Tools
2008-09-07 12:00 . 2008-09-07 12:00 <REP> d--h-c--- C:\Documents and Settings\All Users\Application Data\{BB55CB49-6330-4B53-B9A7-7ACBC2E8F14F}
2008-09-06 01:39 . 2008-09-06 01:39 <REP> d-------- C:\WINDOWS\system32\AGEIA
2008-09-06 01:39 . 2008-09-06 01:39 <REP> d-------- C:\Program Files\Fichiers communs\Wise Installation Wizard
2008-09-06 01:39 . 2008-09-06 01:39 <REP> d-------- C:\Program Files\AGEIA Technologies
2008-09-06 01:38 . 2008-09-06 01:40 <REP> d-------- C:\WINDOWS\NV38803080.TMP
2008-09-06 01:26 . 2008-06-06 19:07 53,248 --a------ C:\WINDOWS\system32\CSVer.dll
2008-09-06 01:18 . 2008-09-06 01:18 <REP> d-------- C:\Program Files\ma-config.com
2008-09-06 01:18 . 2008-09-06 01:18 <REP> d-------- C:\Documents and Settings\All Users\Application Data\ma-config.com
2008-09-06 01:12 . 2008-09-06 01:12 <REP> d--h----- C:\WINDOWS\msdownld.tmp
2008-09-06 00:20 . 2008-09-06 00:20 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Ubisoft
2008-09-05 23:58 . 2008-09-05 23:58 <REP> d-------- C:\Documents and Settings\Flo\Application Data\MSN6
2008-09-05 23:58 . 2008-09-05 23:58 <REP> d-------- C:\Documents and Settings\All Users\Application Data\MSN6
2008-09-05 23:08 . 2008-09-22 15:31 <REP> d-------- C:\Temp
2008-09-05 21:30 . 2008-09-05 21:30 0 --ah----- C:\WINDOWS\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2008-09-05 21:30 . 2008-09-05 21:30 0 --ah----- C:\WINDOWS\system32\drivers\Msft_Kernel_xusb21_01005.Wdf
2008-09-04 09:03 . 2008-09-04 09:03 <REP> d-------- C:\Program Files\Razer
2008-09-04 09:03 . 2008-09-04 09:03 <REP> d-------- C:\Documents and Settings\Flo\Application Data\InstallShield
2008-09-04 09:03 . 2007-06-29 16:44 73,728 --a------ C:\WINDOWS\system32\diamondback.cpl
2008-09-03 17:03 . 2008-09-03 17:03 <REP> dr-h----- C:\Documents and Settings\Flo\Application Data\SecuROM
2008-08-31 15:36 . 2008-08-31 15:36 <REP> d-------- C:\WINDOWS\Options
2008-08-31 15:36 . 2008-08-31 15:36 <REP> d-------- C:\download
2008-08-31 15:36 . 2003-05-06 18:00 163,072 --a------ C:\WINDOWS\system32\drivers\ov519vid.sys
2008-08-31 15:36 . 2003-09-25 17:00 135,168 --a------ C:\WINDOWS\ov519cap.exe
2008-08-31 15:36 . 2003-05-06 18:00 61,440 --a------ C:\WINDOWS\ov519dib.dll
2008-08-31 15:36 . 2003-05-06 18:00 40,960 --a------ C:\WINDOWS\system32\ov519ext.dll
2008-08-31 15:36 . 2003-06-02 23:35 40,960 --a------ C:\WINDOWS\CleanDev.exe
2008-08-31 15:36 . 2003-05-06 18:00 36,099 --a------ C:\WINDOWS\amcap.exe
2008-08-31 15:36 . 2003-05-06 18:00 25,211 --a------ C:\WINDOWS\system32\drivers\ov519cmd.sys
2008-08-31 15:36 . 2003-05-06 18:00 25,099 --a------ C:\WINDOWS\system32\ov519ext.ax
2008-08-31 15:36 . 2003-05-06 18:00 16,426 --a------ C:\WINDOWS\system32\ov519usd.dll
2008-08-31 15:31 . 2004-08-03 23:07 59,264 --a------ C:\WINDOWS\system32\drivers\USBAUDIO.sys
2008-08-31 15:31 . 2004-08-03 23:07 59,264 --a--c--- C:\WINDOWS\system32\dllcache\usbaudio.sys
2008-08-29 15:34 . 2008-08-29 15:34 <REP> d-------- C:\Documents and Settings\Flo\Application Data\Apple Computer
2008-08-29 15:28 . 2008-08-29 15:28 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Apple
2008-08-29 15:26 . 2008-08-29 15:26 <REP> d-------- C:\Program Files\QuickTime
2008-08-29 15:26 . 2008-08-29 15:26 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Apple Computer
2008-08-29 15:25 . 2008-08-29 15:36 <REP> d-------- C:\Program Files\Apple Software Update
2008-08-27 23:18 . 2001-08-17 21:28 762,780 --a--c--- C:\WINDOWS\system32\dllcache\3cwmcru.sys
2008-08-27 23:03 . 2008-08-27 23:03 42,320 --a------ C:\WINDOWS\system32\xfcodec.dll
2008-08-26 15:05 . 1998-11-21 22:17 12,800 --a------ C:\WINDOWS\system32\WING32.DLL
2008-08-25 16:18 . 2008-09-13 13:07 <REP> d-------- C:\Program Files\EA GAMES
2008-08-25 16:18 . 2004-08-18 10:34 442,368 -ra------ C:\WINDOWS\system32\vp6vfw.dll
2008-08-25 16:00 . 2008-08-25 16:06 <REP> d-------- C:\Program Files\UltraISO
2008-08-25 16:00 . 2008-08-25 16:06 <REP> d-------- C:\Program Files\Fichiers communs\EZB Systems
2008-08-22 02:00 . 2008-08-22 02:00 <REP> d-------- C:\_OTMoveIt
2008-08-22 00:08 . 2008-09-10 00:04 38,528 --a------ C:\WINDOWS\system32\drivers\mbamswissarmy.sys

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-09-22 15:34 81,984 ----a-w C:\WINDOWS\system32\bdod.bin
2008-09-22 13:17 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-09-22 13:13 --------- d-----w C:\Documents and Settings\Flo\Application Data\IM
2008-09-22 13:08 --------- d-----w C:\Program Files\Malwarebytes' Anti-Malware
2008-09-22 12:43 --------- d---a-w C:\Documents and Settings\All Users\Application Data\TEMP
2008-09-21 23:09 22,328 ----a-w C:\WINDOWS\system32\drivers\PnkBstrK.sys
2008-09-21 23:09 103,736 ----a-w C:\WINDOWS\system32\PnkBstrB.exe
2008-09-20 22:41 --------- d-----w C:\Documents and Settings\Flo\Application Data\Skype
2008-09-20 22:25 --------- d-----w C:\Documents and Settings\Flo\Application Data\skypePM
2008-09-20 09:51 717,296 ----a-w C:\WINDOWS\system32\drivers\sptd.sys
2008-09-19 11:45 --------- d-----w C:\Program Files\Fichiers communs\InstallShield
2008-09-19 01:14 --------- d-----w C:\Program Files\Electronic Arts
2008-09-18 19:54 669,184 ----a-w C:\WINDOWS\system32\pbsvc.exe
2008-09-18 19:54 66,872 ----a-w C:\WINDOWS\system32\PnkBstrA.exe
2008-09-18 19:54 22,328 ----a-w C:\Documents and Settings\Flo\Application Data\PnkBstrK.sys
2008-09-18 13:55 --------- d-----w C:\Program Files\SlySoft
2008-09-18 12:32 --------- d-----w C:\Program Files\Counter-Strike Source
2008-09-17 08:28 --------- d-----w C:\Program Files\Xfire
2008-09-16 21:53 --------- d-----w C:\Documents and Settings\Flo\Application Data\Xfire
2008-09-13 12:41 413,696 ----a-w C:\WINDOWS\system32\wrap_oal.dll
2008-09-13 12:41 110,592 ----a-w C:\WINDOWS\system32\OpenAL32.dll
2008-09-13 10:51 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-09-13 10:27 --------- d-----w C:\Program Files\Spybot - Search & Destroy
2008-09-13 10:19 319,488 ----a-w C:\WINDOWS\HideWin.exe
2008-09-13 07:18 --------- d-----w C:\Program Files\DivX
2008-09-09 22:03 17,200 ----a-w C:\WINDOWS\system32\drivers\mbam.sys
2008-09-07 10:05 --------- d-----w C:\Program Files\Realtek
2008-09-05 20:06 --------- d-----w C:\Program Files\Ubisoft
2008-08-27 19:25 77,312 ----a-w C:\WINDOWS\system32\drivers\jraid.sys
2008-08-25 07:06 --------- d-----w C:\Program Files\Windows Live
2008-08-20 19:11 --------- d-----w C:\Program Files\Fichiers communs\Gestionnaire d'installation SolidWorks
2008-08-11 19:48 --------- d-----w C:\Documents and Settings\Flo\Application Data\CyberLink
2008-08-11 19:48 --------- d-----w C:\Documents and Settings\All Users\Application Data\CyberLink
2008-08-11 19:45 --------- d-----w C:\Program Files\CyberLink
2008-08-11 18:40 --------- d-----w C:\Documents and Settings\Flo\Application Data\dvdcss
2008-08-11 08:51 --------- d-----w C:\Program Files\MSXML 4.0
2008-08-10 17:39 --------- d-----w C:\Program Files\Microsoft ActiveSync
2008-08-07 16:50 --------- d-----w C:\Documents and Settings\All Users\Application Data\Downloaded Installations
2008-08-07 16:39 --------- d-----w C:\Program Files\Ressources Windows Mobile
2008-08-06 16:41 86,792 ----a-w C:\WINDOWS\system32\drivers\bdfndisf.sys
2008-08-06 16:37 --------- d-----w C:\Program Files\BitDefender
2008-08-06 16:37 --------- d-----w C:\Documents and Settings\Flo\Application Data\BitDefender
2008-08-06 16:37 --------- d-----w C:\Documents and Settings\All Users\Application Data\BitDefender
2008-08-05 14:26 --------- d-----w C:\Program Files\Anuman Interactive
2008-08-03 08:05 --------- d-----w C:\Program Files\Fichiers communs\Adobe
2008-08-03 08:05 --------- d-----w C:\Documents and Settings\Flo\Application Data\AdobeUM
2008-08-03 02:30 --------- d-----w C:\Program Files\Alcohol Soft
2008-08-02 12:51 --------- d-----w C:\Documents and Settings\LocalService\Application Data\Xfire
2008-08-01 09:05 70,936 ----a-w C:\WINDOWS\system32\PhysXLoader.dll
2008-07-30 22:14 --------- d-----w C:\Documents and Settings\NetworkService\Application Data\Xfire
2008-07-29 16:05 453,152 ----a-w C:\WINDOWS\system32\NVUNINST.EXE
2008-07-29 13:42 528,384 ----a-w C:\WINDOWS\RtlExUpd.dll
2008-07-18 20:10 94,920 ----a-w C:\WINDOWS\system32\cdm.dll
2008-07-18 20:10 53,448 ----a-w C:\WINDOWS\system32\wuauclt.exe
2008-07-18 20:10 45,768 ----a-w C:\WINDOWS\system32\wups2.dll
2008-07-18 20:10 36,552 ----a-w C:\WINDOWS\system32\wups.dll
2008-07-18 20:09 563,912 ----a-w C:\WINDOWS\system32\wuapi.dll
2008-07-18 20:09 325,832 ----a-w C:\WINDOWS\system32\wucltui.dll
2008-07-18 20:09 205,000 ----a-w C:\WINDOWS\system32\wuweb.dll
2008-07-18 20:09 1,811,656 ----a-w C:\WINDOWS\system32\wuaueng.dll
2008-07-18 20:07 270,880 ----a-w C:\WINDOWS\system32\mucltui.dll
2008-07-18 20:07 210,976 ----a-w C:\WINDOWS\system32\muweb.dll
2008-07-16 20:02 64,964 ----a-w C:\WINDOWS\BricoPackUninst.cmd
2008-07-16 20:02 6,110 ----a-w C:\WINDOWS\BricoPackFoldersDelete.cmd
2008-07-16 20:02 219,648 ----a-w C:\WINDOWS\system32\uxtheme.dll
2008-07-11 15:07 419,952 ----a-w C:\WINDOWS\[00] King of the Hill Map Pack Uninstaller.exe
2008-07-07 20:31 253,952 ----a-w C:\WINDOWS\system32\es.dll
2008-06-27 09:23 16,875,008 ------r C:\WINDOWS\RTHDCPL.exe
2008-06-27 01:46 426,798 ----a-w C:\WINDOWS\[00] & Crymod Community Mappack - Welcome to the Jungle Uninstaller.exe
2008-06-25 21:46 107,888 ----a-w C:\WINDOWS\system32\CmdLineExt.dll
2008-06-24 16:23 74,240 ----a-w C:\WINDOWS\system32\mscms.dll
2008-06-24 16:12 295,936 ------w C:\WINDOWS\system32\wmpeffects.dll
2008-06-23 16:28 826,368 ----a-w C:\WINDOWS\system32\wininet.dll
2006-06-23 22:48 32,768 ----a-r C:\WINDOWS\inf\UpdateUSB.exe
.

((((((((((((((((((((((((((((( snapshot@2008-08-22_ 1.42.51.90 )))))))))))))))))))))))))))))))))))))))))
.
- 2006-05-04 16:26:36 2,808,832 ------r C:\WINDOWS\alcwzrd.exe
+ 2008-06-19 14:42:44 2,808,832 ------r C:\WINDOWS\alcwzrd.exe
- 2008-08-19 13:55:48 53,248 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2008-09-21 17:55:42 53,248 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
- 2008-08-19 13:55:48 12,800 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
+ 2008-09-21 17:55:43 12,800 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
- 2008-08-19 13:55:49 473,600 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
+ 2008-09-21 17:55:43 473,600 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
- 2008-07-11 20:35:54 2,676,224 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2008-09-21 17:55:38 2,676,224 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-07-11 20:35:54 2,846,720 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2008-09-21 17:55:38 2,846,720 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-07-11 20:35:54 563,712 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2008-09-21 17:55:39 563,712 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-07-11 20:35:55 567,296 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2008-09-21 17:55:39 567,296 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-07-11 20:35:55 576,000 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2008-09-21 17:55:40 576,000 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-08-19 13:55:49 577,024 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2008-09-21 17:55:40 577,024 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-07-11 20:35:56 577,536 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2008-09-21 17:55:40 577,536 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-07-11 20:35:56 577,536 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2008-09-21 17:55:41 577,536 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-07-11 20:35:57 578,560 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2008-09-21 17:55:41 578,560 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-07-11 20:35:59 578,560 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2008-09-21 17:55:44 578,560 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-08-19 13:55:49 145,920 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
+ 2008-09-21 17:55:44 145,920 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
- 2008-08-19 13:55:50 159,232 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
+ 2008-09-21 17:55:44 159,232 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
- 2008-08-19 13:55:50 364,544 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
+ 2008-09-21 17:55:45 364,544 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
- 2008-08-19 13:55:50 178,176 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
+ 2008-09-21 17:55:45 178,176 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
- 2008-08-19 13:55:47 223,232 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
+ 2008-09-21 17:55:42 223,232 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
+ 2002-07-25 16:13:18 24,576 ----a-w C:\WINDOWS\Downloaded Program Files\dwusplay.dll
+ 2002-07-25 16:13:12 196,608 ----a-w C:\WINDOWS\Downloaded Program Files\dwusplay.exe
+ 2004-08-09 04:02:38 327,680 ----a-w C:\WINDOWS\Downloaded Program Files\isusweb.dll
- 2007-09-26 16:34:42 33,472 -c----w C:\WINDOWS\ie7\spuninst\iecustom.dll
+ 2006-10-27 17:20:20 32,368 -c----w C:\WINDOWS\ie7\spuninst\iecustom.dll
- 2007-09-26 16:32:30 66,048 -c--a-w C:\WINDOWS\ie7\spuninst\ieResetIcons.exe
+ 2006-10-27 17:18:30 66,048 -c--a-w C:\WINDOWS\ie7\spuninst\ieResetIcons.exe
+ 2007-03-06 01:34:31 22,752 -c----w C:\WINDOWS\ie7updates\KB938127-IE7\spcustom.dll
+ 2007-03-06 01:34:33 15,072 -c----w C:\WINDOWS\ie7updates\KB938127-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 -c----w C:\WINDOWS\ie7updates\KB938127-IE7\spuninst.exe
+ 2007-03-06 01:34:56 727,776 -c----w C:\WINDOWS\ie7updates\KB938127-IE7\update.exe
+ 2007-03-06 01:35:48 394,976 -c----w C:\WINDOWS\ie7updates\KB938127-IE7\updspapi.dll
- 2007-08-13 16:54:10 765,952 -c----w C:\WINDOWS\ie7updates\KB938127-IE7\vgx.dll
+ 2006-10-27 13:09:58 765,952 -c----w C:\WINDOWS\ie7updates\KB938127-IE7\vgx.dll
+ 2007-03-06 01:34:38 216,800 -c----w C:\WINDOWS\ie7updates\KB938127-v2-IE7\spuninst\spuninst.exe
+ 2007-03-06 01:35:47 394,976 -c----w C:\WINDOWS\ie7updates\KB938127-v2-IE7\spuninst\updspapi.dll
+ 2007-07-12 23:30:52 765,952 -c----w C:\WINDOWS\ie7updates\KB938127-v2-IE7\vgx.dll
- 2008-06-26 13:36:38 9,662 ----a-r C:\WINDOWS\Installer\{000E79B7-E725-4F01-870A-C12942B7F8E4}\ARPPRODUCTICON.exe
+ 2008-09-18 19:53:48 9,662 ----a-r C:\WINDOWS\Installer\{000E79B7-E725-4F01-870A-C12942B7F8E4}\ARPPRODUCTICON.exe
- 2008-06-26 13:36:38 10,134 ----a-r C:\WINDOWS\Installer\{000E79B7-E725-4F01-870A-C12942B7F8E4}\checkForUpdatesSC_000E79B7E7254F01870AC12942B7F8E4.exe
+ 2008-09-18 19:53:48 10,134 ----a-r C:\WINDOWS\Installer\{000E79B7-E725-4F01-870A-C12942B7F8E4}\checkForUpdatesSC_000E79B7E7254F01870AC12942B7F8E4.exe
- 2008-06-26 13:36:38 10,134 ----a-r C:\WINDOWS\Installer\{000E79B7-E725-4F01-870A-C12942B7F8E4}\visitWebsite_000E79B7E7254F01870AC12942B7F8E4.exe
+ 2008-09-18 19:53:48 10,134 ----a-r C:\WINDOWS\Installer\{000E79B7-E725-4F01-870A-C12942B7F8E4}\visitWebsite_000E79B7E7254F01870AC12942B7F8E4.exe
+ 2008-09-13 11:26:25 12,862 ----a-r C:\WINDOWS\Installer\{26FDF89A-FA65-4FA2-8522-37CC84DFDCEE}\_mercs2.exe
+ 2008-08-29 13:29:00 27,136 ----a-r C:\WINDOWS\Installer\{6956856F-B6B3-4BE0-BA0B-8F495BE32033}\AppleSoftwareUpdateIco.exe
+ 2008-09-20 01:55:06 32,768 ----a-r C:\WINDOWS\Installer\{716E0306-8318-4364-8B8F-0CC4E9376BAC}\icon.exe
- 2006-10-11 17:42:58 2,157,568 ------r C:\WINDOWS\MicCal.exe
+ 2007-06-28 14:44:14 2,165,760 ------r C:\WINDOWS\MicCal.exe
+ 2003-05-06 16:00:00 36,099 ----a-w C:\WINDOWS\Options\Install\AMCAP.EXE
+ 2003-06-02 21:35:02 40,960 ----a-w C:\WINDOWS\Options\Install\CleanDev.exe
+ 2003-09-25 15:00:00 135,168 ----a-w C:\WINDOWS\Options\Install\ov519cap.exe
+ 2003-05-06 16:00:00 25,211 ----a-w C:\WINDOWS\Options\Install\ov519cmd.sys
+ 2003-05-06 16:00:00 61,440 ----a-w C:\WINDOWS\Options\Install\ov519dib.dll
+ 2003-05-06 16:00:00 40,960 ----a-w C:\WINDOWS\Options\Install\ov519ext.dll
+ 2003-05-06 16:00:00 16,426 ----a-w C:\WINDOWS\Options\Install\ov519usd.dll
+ 2003-05-06 16:00:00 163,072 ----a-w C:\WINDOWS\Options\Install\ov519vid.sys
- 2007-03-20 14:41:06 32,768 ------r C:\WINDOWS\RaidTool\IDEDrvSetup.exe
+ 2007-03-20 12:41:06 32,768 ----a-w C:\WINDOWS\RaidTool\IDEDrvSetup.exe
- 2007-03-20 21:01:14 2,560 ------r C:\WINDOWS\RaidTool\xIDESetup.exe
+ 2007-03-20 19:01:14 2,560 ----a-w C:\WINDOWS\RaidTool\xIDESetup.exe
- 2007-03-20 16:49:24 20,992 ------r C:\WINDOWS\RaidTool\xInsDrv.dll
+ 2008-05-02 13:52:34 28,672 ----a-w C:\WINDOWS\RaidTool\xInsDrv.dll
- 2007-03-20 14:36:18 36,864 ------r C:\WINDOWS\RaidTool\xInsIDE.exe
+ 2007-03-20 12:36:18 36,864 ----a-w C:\WINDOWS\RaidTool\xInsIDE.exe
- 2007-03-23 19:19:10 9,715,200 ------r C:\WINDOWS\RTLCPL.exe
+ 2008-06-19 14:27:46 9,715,200 ------r C:\WINDOWS\RTLCPL.exe
- 2007-01-16 10:39:36 1,191,936 ------r C:\WINDOWS\RtlUpd.exe
+ 2008-04-02 07:27:26 1,196,032 ------r C:\WINDOWS\RtlUpd.exe
- 2007-03-16 15:06:54 1,822,720 ------r C:\WINDOWS\SkyTel.exe
+ 2007-11-20 16:15:58 1,826,816 ------r C:\WINDOWS\SkyTel.exe
- 2006-07-21 16:14:36 86,016 ------r C:\WINDOWS\SoundMan.exe
+ 2008-06-18 16:01:56 77,824 ------r C:\WINDOWS\SoundMan.exe
- 2007-08-13 16:39:20 71,680 ----a-w C:\WINDOWS\system32\admparse.dll
+ 2006-10-27 00:44:26 71,680 ----a-w C:\WINDOWS\system32\admparse.dll
+ 2008-06-11 07:02:32 58,648 ----a-w C:\WINDOWS\system32\AgCPanelFrench.dll
+ 2008-06-11 07:02:32 58,648 ----a-w C:\WINDOWS\system32\AgCPanelGerman.dll
+ 2008-06-11 07:02:32 58,648 ----a-w C:\WINDOWS\system32\AgCPanelJapanese.dll
+ 2008-06-11 07:02:34 58,648 ----a-w C:\WINDOWS\system32\AgCPanelKorean.dll
+ 2008-06-11 07:02:34 58,648 ----a-w C:\WINDOWS\system32\AgCPanelPortugese.dll
+ 2008-06-11 07:02:34 58,648 ----a-w C:\WINDOWS\system32\AgCPanelSimplifiedChinese.dll
+ 2008-06-11 07:02:34 58,648 ----a-w C:\WINDOWS\system32\AgCPanelSpanish.dll
+ 2008-06-11 07:02:34 58,648 ----a-w C:\WINDOWS\system32\AgCPanelSwedish.dll
+ 2008-06-11 07:02:34 58,648 ----a-w C:\WINDOWS\system32\AgCPanelTraditionalChinese.dll
+ 2007-07-23 07:02:42 199,885 ----a-w C:\WINDOWS\system32\AGEIA\AG1011\app.bin
+ 2008-02-29 08:18:36 119,473 ----a-w C:\WINDOWS\system32\AGEIA\AG1011\diag.bin
+ 2008-02-29 08:18:36 214,629 ----a-w C:\WINDOWS\system32\AGEIA\AG1021\app.bin
+ 2008-03-20 06:24:14 116,977 ----a-w C:\WINDOWS\system32\AGEIA\AG1021\diag.bin
- 2006-08-01 15:02:32 49,152 ------r C:\WINDOWS\system32\ChCfg.exe
+ 2006-08-01 13:02:32 49,152 ------r C:\WINDOWS\system32\ChCfg.exe
+ 2004-08-03 21:10:08 53,248 -c--a-w C:\WINDOWS\system32\dllcache\1394bus.sys
+ 2001-08-17 20:06:48 11,264 -c--a-w C:\WINDOWS\system32\dllcache\1394vdbg.sys
+ 2001-08-23 15:46:44 689,216 -c--a-w C:\WINDOWS\system32\dllcache\3dfxvs.dll
+ 2001-08-17 18:48:32 148,352 -c--a-w C:\WINDOWS\system32\dllcache\3dfxvsm.sys
+ 2004-08-03 21:00:04 12,288 -c--a-w C:\WINDOWS\system32\dllcache\4mmdat.sys
+ 2004-08-03 21:10:12 48,128 -c--a-w C:\WINDOWS\system32\dllcache\61883.sys
+ 2001-08-23 15:46:44 38,400 -c--a-w C:\WINDOWS\system32\dllcache\8514a.dll
+ 2001-08-23 15:46:58 98,304 -c--a-w C:\WINDOWS\system32\dllcache\a3d.dll
+ 2001-08-23 15:46:58 462,848 -c--a-w C:\WINDOWS\system32\dllcache\a3dapi.dll
+ 2001-08-17 19:52:00 23,552 -c--a-w C:\WINDOWS\system32\dllcache\abp480n5.sys
+ 2004-08-03 20:32:22 231,552 -c--a-w C:\WINDOWS\system32\dllcache\ac97ali.sys
+ 2001-08-17 18:20:04 96,256 -c--a-w C:\WINDOWS\system32\dllcache\ac97intc.sys
+ 2001-08-17 18:20:16 297,728 -c--a-w C:\WINDOWS\system32\dllcache\ac97sis.sys
+ 2004-08-03 20:32:32 84,480 -c--a-w C:\WINDOWS\system32\dllcache\ac97via.sys
+ 2004-08-19 14:09:52 189,952 -c--a-w C:\WINDOWS\system32\dllcache\accwiz.exe
+ 2001-08-23 15:46:58 61,952 -c--a-w C:\WINDOWS\system32\dllcache\acerscad.dll
+ 2004-08-19 14:09:20 1,852,416 -c--a-w C:\WINDOWS\system32\dllcache\acgenral.dll
+ 2004-08-19 14:09:20 450,048 -c--a-w C:\WINDOWS\system32\dllcache\aclayers.dll
+ 2004-08-19 14:09:20 137,728 -c--a-w C:\WINDOWS\system32\dllcache\aclua.dll
+ 2004-08-19 14:09:20 119,296 -c--a-w C:\WINDOWS\system32\dllcache\aclui.dll
+ 2004-08-19 13:51:56 188,672 -c--a-w C:\WINDOWS\system32\dllcache\acpi.sys
+ 2001-08-28 10:00:00 12,032 -c--a-w C:\WINDOWS\system32\dllcache\acpiec.sys
+ 2004-08-19 14:09:20 244,736 -c--a-w C:\WINDOWS\system32\dllcache\acspecfc.dll
+ 2004-08-19 14:09:20 194,048 -c--a-w C:\WINDOWS\system32\dllcache\activeds.dll
+ 2004-08-19 14:09:52 4,096 -c--a-w C:\WINDOWS\system32\dllcache\actmovie.exe
+ 2004-08-19 14:09:20 101,888 -c--a-w C:\WINDOWS\system32\dllcache\actxprxy.dll
+ 2004-08-19 14:09:20 116,224 -c--a-w C:\WINDOWS\system32\dllcache\acxtrnal.dll
+ 2001-08-17 19:53:02 7,424 -c--a-w C:\WINDOWS\system32\dllcache\adicvls.sys
+ 2001-08-17 18:11:18 20,160 -c--a-w C:\WINDOWS\system32\dllcache\adm8511.sys
+ 2001-08-17 18:19:10 584,448 -c--a-w C:\WINDOWS\system32\dllcache\adm8810.sys
+ 2001-08-17 18:19:14 553,984 -c--a-w C:\WINDOWS\system32\dllcache\adm8820.sys
+ 2001-08-17 18:19:14 747,392 -c--a-w C:\WINDOWS\system32\dllcache\adm8830.sys
+ 2004-08-19 14:09:20 29,696 -c--a-w C:\WINDOWS\system32\dllcache\admexs.dll
+ 2004-08-19 14:09:20 20,540 -c--a-w C:\WINDOWS\system32\dllcache\admin.dll
+ 2004-08-19 14:09:52 16,439 -c--a-w C:\WINDOWS\system32\dllcache\admin.exe
+ 2004-08-03 20:32:24 10,880 -c--a-w C:\WINDOWS\system32\dllcache\admjoy.sys
- 2007-08-13 16:39:20 71,680 -c----w C:\WINDOWS\system32\dllcache\admparse.dll
+ 2006-10-27 00:44:26 71,680 -c----w C:\WINDOWS\system32\dllcache\admparse.dll
+ 2004-08-19 14:09:20 43,520 -c--a-w C:\WINDOWS\system32\dllcache\admwprox.dll
+ 2001-08-17 18:11:16 46,112 -c--a-w C:\WINDOWS\system32\dllcache\adptsf50.sys
+ 2001-08-17 20:07:32 101,888 -c--a-w C:\WINDOWS\system32\dllcache\adpu160m.sys
+ 2004-08-19 14:09:20 290,816 -c--a-w C:\WINDOWS\system32\dllcache\adsiis51.dll
+ 2004-08-19 14:09:20 175,616 -c--a-w C:\WINDOWS\system32\dllcache\adsldp.dll
+ 2004-08-19 14:09:20 143,360 -c--a-w C:\WINDOWS\system32\dllcache\adsldpc.dll
+ 2004-08-19 14:09:20 68,096 -c--a-w C:\WINDOWS\system32\dllcache\adsmsext.dll
+ 2004-08-19 14:09:20 263,680 -c--a-w C:\WINDOWS\system32\dllcache\adsnt.dll
+ 2004-08-19 14:09:20 4,255 -c--a-w C:\WINDOWS\system32\dllcache\adv01nt5.dll
+ 2004-08-19 14:09:20 3,967 -c--a-w C:\WINDOWS\system32\dllcache\adv02nt5.dll
+ 2004-08-19 14:09:20 3,615 -c--a-w C:\WINDOWS\system32\dllcache\adv05nt5.dll
+ 2004-08-19 14:09:20 3,647 -c--a-w C:\WINDOWS\system32\dllcache\adv07nt5.dll
+ 2004-08-19 14:09:20 3,135 -c--a-w C:\WINDOWS\system32\dllcache\adv08nt5.dll
+ 2004-08-19 14:09:20 3,711 -c--a-w C:\WINDOWS\system32\dllcache\adv09nt5.dll
+ 2004-08-19 14:09:20 3,775 -c--a-w C:\WINDOWS\system32\dllcache\adv11nt5.dll
+ 2004-08-19 14:09:20 685,056 -c--a-w C:\WINDOWS\system32\dllcache\advapi32.dll
+ 2004-08-19 14:09:20 24,064 -c--a-w C:\WINDOWS\system32\dllcache\agentanm.dll
+ 2004-08-19 14:09:20 214,016 -c--a-w C:\WINDOWS\system32\dllcache\agentctl.dll
+ 2004-08-19 14:09:20 49,152 -c--a-w C:\WINDOWS\system32\dllcache\agentmpx.dll
+ 2004-08-19 14:09:20 24,064 -c--a-w C:\WINDOWS\system32\dllcache\agentpsh.dll
+ 2004-08-19 14:09:20 44,032 -c--a-w C:\WINDOWS\system32\dllcache\agentsr.dll
+ 2004-08-03 21:07:42 42,368 -c--a-w C:\WINDOWS\system32\dllcache\agp440.sys
+ 2004-08-03 21:07:44 44,928 -c--a-w C:\WINDOWS\system32\dllcache\agpcpq.sys
+ 2004-08-19 14:09:20 24,064 -c--a-w C:\WINDOWS\system32\dllcache\agtintl.dll
+ 2001-08-17 19:52:02 12,800 -c--a-w C:\WINDOWS\system32\dllcache\aha154x.sys
+ 2004-08-19 14:09:52 98,304 -c--a-w C:\WINDOWS\system32\dllcache\ahui.exe
+ 2001-08-17 20:07:36 55,168 -c--a-w C:\WINDOWS\system32\dllcache\aic78u2.sys
+ 2001-08-17 20:07:38 56,960 -c--a-w C:\WINDOWS\system32\dllcache\aic78xx.sys
+ 2004-08-19 14:09:52 44,544 -c--a-w C:\WINDOWS\system32\dllcache\alg.exe
+ 2001-08-17 18:11:18 27,678 -c--a-w C:\WINDOWS\system32\dllcache\ali5261.sys
+ 2001-08-17 19:49:02 26,624 -c--a-w C:\WINDOWS\system32\dllcache\alifir.sys
+ 2001-08-17 19:51:56 5,248 -c--a-w C:\WINDOWS\system32\dllcache\aliide.sys
+ 2004-08-03 21:07:42 42,752 -c--a-w C:\WINDOWS\system32\dllcache\alim1541.sys
+ 2004-08-19 14:09:20 17,408 -c--a-w C:\WINDOWS\system32\dllcache\alrsvc.dll
+ 2001-08-17 18:11:20 16,969 -c--a-w C:\WINDOWS\system32\dllcache\amb8002.sys
+ 2004-08-03 21:07:44 43,008 -c--a-w C:\WINDOWS\system32\dllcache\amdagp.sys
+ 2004-08-19 13:52:42 41,216 -c--a-w C:\WINDOWS\system32\dllcache\amdk6.sys
+ 2004-08-19 13:52:44 41,600 -c--a-w C:\WINDOWS\system32\dllcache\amdk7.sys
+ 2001-08-17 19:52:04 12,032 -c--a-w C:\WINDOWS\system32\dllcache\amsint.sys
+ 2004-08-19 14:09:20 70,656 -c--a-w C:\WINDOWS\system32\dllcache\amstream.dll
+ 2004-08-03 20:31:20 36,224 -c--a-w C:\WINDOWS\system32\dllcache\an983.sys
+ 2001-08-17 19:47:22 6,272 -c--a-w C:\WINDOWS\system32\dllcache\apmbatt.sys
+ 2004-08-19 14:09:20 110,080 -c--a-w C:\WINDOWS\system32\dllcache\appconf.dll
+ 2004-08-19 14:09:20 126,976 -c--a-w C:\WINDOWS\system32\dllcache\apphelp.dll
+ 2004-08-19 14:09:20 176,640 -c--a-w C:\WINDOWS\system32\dllcache\appmgmts.dll
+ 2004-08-19 14:09:20 302,592 -c--a-w C:\WINDOWS\system32\dllcache\appmgr.dll
+ 2004-08-19 14:09:20 334,336 -c--a-w C:\WINDOWS\system32\dllcache\aqueue.dll
+ 2004-08-03 20:58:30 60,800 -c--a-w C:\WINDOWS\system32\dllcache\arp1394.sys
+ 2001-08-17 19:52:00 26,496 -c--a-w C:\WINDOWS\system32\dllcache\asc.sys
+ 2001-08-17 19:52:04 22,400 -c--a-w C:\WINDOWS\system32\dllcache\asc3350p.sys
+ 2001-08-17 19:51:58 14,848 -c--a-w C:\WINDOWS\system32\dllcache\asc3550.sys
+ 2006-11-03 07:56:54 7,680 -c--a-w C:\WINDOWS\system32\dllcache\asferror.dll
+ 2004-08-19 14:09:20 377,344 -c--a-w C:\WINDOWS\system32\dllcache\asp51.dll
+ 2001-08-17 18:12:34 97,354 -c--a-w C:\WINDOWS\system32\dllcache\aspndis3.sys
+ 2004-08-19 14:09:52 30,720 -c--a-w C:\WINDOWS\system32\dllcache\asr_fmt.exe
+ 2004-08-19 14:09:52 32,768 -c--a-w C:\WINDOWS\system32\dllcache\asr_pfu.exe
+ 2004-08-19 14:09:20 65,024 -c--a-w C:\WINDOWS\system32\dllcache\asycfilt.dll
+ 2004-08-03 21:05:04 14,336 -c--a-w C:\WINDOWS\system32\dllcache\asyncmac.sys
+ 2004-08-19 14:09:52 25,088 -c--a-w C:\WINDOWS\system32\dllcache\at.exe
+ 2001-08-23 15:46:44 96,128 -c--a-w C:\WINDOWS\system32\dllcache\ati.dll
+ 2001-08-23 14:59:32 77,824 -c--a-w C:\WINDOWS\system32\dllcache\ati.sys
+ 2004-08-03 20:29:30 56,623 -c--a-w C:\WINDOWS\system32\dllcache\ati1btxx.sys
+ 2004-08-03 20:29:30 11,615 -c--a-w C:\WINDOWS\system32\dllcache\ati1mdxx.sys
+ 2004-08-03 20:29:30 12,047 -c--a-w C:\WINDOWS\system32\dllcache\ati1pdxx.sys
+ 2004-08-03 20:29:32 30,671 -c--a-w C:\WINDOWS\system32\dllcache\ati1raxx.sys
+ 2004-08-03 20:29:32 63,663 -c--a-w C:\WINDOWS\system32\dllcache\ati1rvxx.sys
+ 2004-08-03 20:29:32 26,367 -c--a-w C:\WINDOWS\system32\dllcache\ati1snxx.sys
+ 2004-08-03 20:29:32 21,343 -c--a-w C:\WINDOWS\system32\dllcache\ati1ttxx.sys
+ 2004-08-03 20:29:32 36,463 -c--a-w C:\WINDOWS\system32\dllcache\ati1tuxx.sys
+ 2004-08-03 20:29:32 29,455 -c--a-w C:\WINDOWS\system32\dllcache\ati1xbxx.sys
+ 2004-08-03 20:29:32 34,735 -c--a-w C:\WINDOWS\system32\dllcache\ati1xsxx.sys
+ 2004-08-19 14:09:20 229,376 -c--a-w C:\WINDOWS\system32\dllcache\ati2cqag.dll
+ 2004-08-19 14:09:20 377,984 -c--a-w C:\WINDOWS\system32\dllcache\ati2dvaa.dll
+ 2004-08-19 14:09:20 201,728 -c--a-w C:\WINDOWS\system32\dllcache\ati2dvag.dll
+ 2004-08-19 13:53:40 327,168 -c--a-w C:\WINDOWS\system32\dllcache\ati2mtaa.sys
+ 2004-08-19 13:53:42 701,440 -c--a-w C:\WINDOWS\system32\dllcache\ati2mtag.sys
+ 2004-08-19 14:09:20 870,784 -c--a-w C:\WINDOWS\system32\dllcache\ati3d1ag.dll
+ 2004-08-19 14:09:20 1,888,992 -c--a-w C:\WINDOWS\system32\dllcache\ati3duag.dll
+ 2001-08-17 18:49:04 46,464 -c--a-w C:\WINDOWS\system32\dllcache\atibt829.sys
+ 2001-08-23 15:46:44 382,592 -c--a-w C:\WINDOWS\system32\dllcache\atidrab.dll
+ 2001-08-23 15:46:44 137,216 -c--a-w C:\WINDOWS\system32\dllcache\atidrae.dll
+ 2001-08-23 15:46:44 268,160 -c--a-w C:\WINDOWS\system32\dllcache\atidvai.dll
+ 2001-08-23 15:47:26 37,376 -c--a-w C:\WINDOWS\system32\dllcache\atievxx.exe
+ 2001-08-23 14:59:36 289,920 -c--a-w C:\WINDOWS\system32\dllcache\atimpab.sys
+ 2001-08-23 14:59:36 75,392 -c--a-w C:\WINDOWS\system32\dllcache\atimpae.sys
+ 2001-08-23 14:59:38 281,728 -c--a-w C:\WINDOWS\system32\dllcache\atimtai.sys
+ 2004-08-03 20:29:28 57,856 -c--a-w C:\WINDOWS\system32\dllcache\atinbtxx.sys
+ 2004-08-03 20:29:30 13,824 -c--a-w C:\WINDOWS\system32\dllcache\atinmdxx.sys
+ 2004-08-03 20:29:30 14,336 -c--a-w C:\WINDOWS\system32\dllcache\atinpdxx.sys
+ 2004-08-03 20:29:30 52,224 -c--a-w C:\WINDOWS\system32\dllcache\atinraxx.sys
+ 2004-08-03 20:29:32 104,960 -c--a-w C:\WINDOWS\system32\dllcache\atinrvxx.sys
+ 2004-08-03 20:29:32 28,672 -c--a-w C:\WINDOWS\system32\dllcache\atinsnxx.sys
+ 2004-08-03 20:29:32 13,824 -c--a-w C:\WINDOWS\system32\dllcache\atinttxx.sys
+ 2004-08-03 20:29:32 73,216 -c--a-w C:\WINDOWS\system32\dllcache\atintuxx.sys
+ 2004-08-03 20:29:32 31,744 -c--a-w C:\WINDOWS\system32\dllcache\atinxbxx.sys
+ 2004-08-03 20:29:32 63,488 -c--a-w C:\WINDOWS\system32\dllcache\atinxsxx.sys
+ 2001-08-17 18:49:36 10,240 -c--a-w C:\WINDOWS\system32\dllcache\atipcxxx.sys
+ 2001-08-23 15:46:44 104,832 -c--a-w C:\WINDOWS\system32\dllcache\atiraged.dll
+ 2001-08-23 14:59:40 70,784 -c--a-w C:\WINDOWS\system32\dllcache\atiragem.sys
+ 2001-08-17 18:49:12 49,920 -c--a-w C:\WINDOWS\system32\dllcache\atirtcap.sys
+ 2001-08-17 18:49:18 26,880 -c--a-w C:\WINDOWS\system32\dllcache\atirtsnd.sys
+ 2001-08-17 18:49:22 17,152 -c--a-w C:\WINDOWS\system32\dllcache\atitunep.sys
+ 2001-08-17 18:49:28 17,152 -c--a-w C:\WINDOWS\system32\dllcache\atitvsnd.sys
+ 2001-08-17 18:49:38 9,472 -c--a-w C:\WINDOWS\system32\dllcache\ativmdcd.sys
+ 2004-08-19 14:09:20 32,768 -c--a-w C:\WINDOWS\system32\dllcache\ativtmxx.dll
+ 2001-08-17 18:49:44 19,456 -c--a-w C:\WINDOWS\system32\dllcache\ativttxx.sys
+ 2004-08-19 14:09:20 516,768 -c--a-w C:\WINDOWS\system32\dllcache\ativvaxx.dll
+ 2001-08-17 18:49:48 26,624 -c--a-w C:\WINDOWS\system32\dllcache\ativxbar.sys
+ 2001-08-17 18:49:34 23,552 -c--a-w C:\WINDOWS\system32\dllcache\atixbar.sys
+ 2004-08-19 14:09:20 58,880 -c--a-w C:\WINDOWS\system32\dllcache\atl.dll
+ 2004-08-19 14:09:52 11,264 -c--a-w C:\WINDOWS\system32\dllcache\atmadm.exe
+ 2004-08-03 20:58:32 59,904 -c--a-w C:\WINDOWS\system32\dllcache\atmarpc.sys
+ 2004-08-19 14:08:02 285,696 -c--a-w C:\WINDOWS\system32\dllcache\atmfd.dll
+ 2004-08-03 20:58:36 55,936 -c--a-w C:\WINDOWS\system32\dllcache\atmlane.sys
+ 2004-08-19 14:09:22 30,208 -c--a-w C:\WINDOWS\system32\dllcache\atmlib.dll
+ 2004-08-19 14:09:22 21,183 -c--a-w C:\WINDOWS\system32\dllcache\atv01nt5.dll
+ 2004-08-19 14:09:22 11,359 -c--a-w C:\WINDOWS\system32\dllcache\atv02nt5.dll
+ 2004-08-19 14:09:22 25,471 -c--a-w C:\WINDOWS\system32\dllcache\atv04nt5.dll
+ 2004-08-19 14:09:22 14,143 -c--a-w C:\WINDOWS\system32\dllcache\atv06nt5.dll
+ 2004-08-19 14:09:22 17,279 -c--a-w C:\WINDOWS\system32\dllcache\atv10nt5.dll
+ 2004-08-19 14:09:22 42,496 -c--a-w C:\WINDOWS\system32\dllcache\audiosrv.dll
+ 2004-08-19 14:09:52 14,336 -c--a-w C:\WINDOWS\system32\dllcache\auditusr.exe
+ 2001-08-17 20:59:44 3,072 -c--a-w C:\WINDOWS\system32\dllcache\audstub.sys
+ 2004-08-19 14:09:22 20,540 -c--a-w C:\WINDOWS\system32\dllcache\author.dll
+ 2004-08-19 14:09:52 16,439 -c--a-w C:\WINDOWS\system32\dllcache\author.exe
+ 2005-03-02 18:10:36 56,832 -c--a-w C:\WINDOWS\system32\dllcache\authz.dll
+ 2004-08-19 14:09:52 625,152 -c--a-w C:\WINDOWS\system32\dllcache\autochk.exe
+ 2004-08-19 14:09:52 638,976 -c--a-w C:\WINDOWS\system32\dllcache\autoconv.exe
+ 2004-08-19 14:09:52 616,960 -c--a-w C:\WINDOWS\system32\dllcache\autofmt.exe
+ 2004-08-19 14:09:52 11,264 -c--a-w C:\WINDOWS\system32\dllcache\autolfn.exe
+ 2004-08-03 21:10:12 38,912 -c--a-w C:\WINDOWS\system32\dllcache\avc.sys
+ 2001-08-17 20:01:12 36,096 -c--a-w C:\WINDOWS\system32\dllcache\avcaudio.sys
+ 2004-08-03 21:10:00 13,696 -c--a-w C:\WINDOWS\system32\dllcache\avcstrm.sys
+ 2004-08-19 14:09:22 85,504 -c--a-w C:\WINDOWS\system32\dllcache\avifil32.dll
+ 2001-08-23 15:46:58 87,552 -c--a-w C:\WINDOWS\system32\dllcache\avmcoxp.dll
+ 2001-08-23 15:46:58 144,384 -c--a-w C:\WINDOWS\system32\dllcache\avmenum.dll
+ 2001-08-17 18:13:48 37,568 -c--a-w C:\WINDOWS\system32\dllcache\avmwan.sys
+ 2001-08-17 18:19:16 36,992 -c--a-w C:\WINDOWS\system32\dllcache\aztw2320.sys
+ 2001-08-17 18:13:56 89,952 -c--a-w C:\WINDOWS\system32\dllcache\b1cbase.sys
+ 2001-08-23 15:00:08 97,248 -c--a-w C:\WINDOWS\system32\dllcache\b57xp32.sys
+ 2001-08-23 15:46:44 342,336 -c--a-w C:\WINDOWS\system32\dllcache\banshee.dll
+ 2001-08-17 18:48:28 36,128 -c--a-w C:\WINDOWS\system32\dllcache\banshee.sys
+ 2004-08-19 14:09:22 52,736 -c--a-w C:\WINDOWS\system32\dllcache\basesrv.dll
+ 2004-08-19 14:09:22 28,672 -c--a-w C:\WINDOWS\system32\dllcache\batmeter.dll
+ 2004-08-19 14:09:22 8,704 -c--a-w C:\WINDOWS\system32\dllcache\batt.dll
+ 2001-08-17 19:57:54 14,080 -c--a-w C:\WINDOWS\system32\dllcache\battc.sys
+ 2001-08-17 18:11:28 66,557 -c--a-w C:\WINDOWS\system32\dllcache\bcm42u.sys
+ 2001-08-17 18:11:26 54,271 -c--a-w C:\WINDOWS\system32\dllcache\bcm42xx5.sys
+ 2001-08-17 18:11:30 26,568 -c--a-w C:\WINDOWS\system32\dllcache\bcm4e5.sys
+ 2001-08-17 19:28:00 871,388 -c--a-w C:\WINDOWS\system32\dllcache\bcmdm.sys
+ 2004-08-03 21:10:14 11,776 -c--a-w C:\WINDOWS\system32\dllcache\bdasup.sys
+ 2004-08-19 14:09:22 17,408 -c--a-w C:\WINDOWS\system32\dllcache\bidispl.dll
+ 2001-08-23 15:46:58 105,472 -c--a-w C:\WINDOWS\system32\dllcache\binlsvc.dll
+ 2004-08-19 14:09:22 8,192 -c--a-w C:\WINDOWS\system32\dllcache\bitsprx2.dll
+ 2004-08-19 14:09:22 7,168 -c--a-w C:\WINDOWS\system32\dllcache\bitsprx3.dll
+ 2006-10-18 19:47:10 542,720 -c--a-w C:\WINDOWS\system32\dllcache\blackbox.dll
+ 2004-08-19 14:09:52 71,680 -c--a-w C:\WINDOWS\system32\dllcache\blastcln.exe
+ 2001-08-23 15:46:58 19,456 -c--a-w C:\WINDOWS\system32\dllcache\brbidiif.dll
+ 2001-08-23 15:46:58 9,728 -c--a-w C:\WINDOWS\system32\dllcache\brcoinst.dll
+ 2001-08-23 15:46:58 12,800 -c--a-w C:\WINDOWS\system32\dllcache\brevif.dll
+ 2001-08-17 19:12:12 2,944 -c--a-w C:\WINDOWS\system32\dllcache\brfilt.sys
+ 2001-08-17 19:12:22 12,160 -c--a-w C:\WINDOWS\system32\dllcache\brfiltlo.sys
+ 2001-08-17 19:12:24 3,968 -c--a-w C:\WINDOWS\system32\dllcache\brfiltup.sys
+ 2004-08-03 20:59:58 71,552 -c--a-w C:\WINDOWS\system32\dllcache\bridge.sys
+ 2001-08-23 15:46:58 15,360 -c--a-w C:\WINDOWS\system32\dllcache\brmfbidi.dll
+ 2001-08-23 15:46:58 81,920 -c--a-w C:\WINDOWS\system32\dllcache\brmfcwia.dll
+ 2001-08-23 15:46:58 29,696 -c--a-w C:\WINDOWS\system32\dllcache\brmflpt.dll
+ 2001-08-23 15:47:30 32,256 -c--a-w C:\WINDOWS\system32\dllcache\brmfrsmg.exe
+ 2001-08-23 15:46:58 41,472 -c--a-w C:\WINDOWS\system32\dllcache\brmfusb.dll
+ 2004-08-19 14:08:04 70,144 -c--a-w C:\WINDOWS\system32\dllcache\browselc.dll
+ 2004-08-19 14:09:22 77,312 -c--a-w C:\WINDOWS\system32\dllcache\browser.dll
+ 2004-08-19 14:09:22 78,336 -c--a-w C:\WINDOWS\system32\dllcache\browsewm.dll
+ 2001-08-17 19:12:24 3,168 -c--a-w C:\WINDOWS\system32\dllcache\brparimg.sys
+ 2001-08-23 15:01:54 39,808 -c--a-w C:\WINDOWS\system32\dllcache\brparwdm.sys
+ 2001-08-23 15:46:58 5,120 -c--a-w C:\WINDOWS\system32\dllcache\brscnrsm.dll
+ 2001-08-23 15:46:58 9,728 -c--a-w C:\WINDOWS\system32\dllcache\brserif.dll
+ 2001-08-17 19:12:20 60,416 -c--a-w C:\WINDOWS\system32\dllcache\brserwdm.sys
+ 2001-08-17 19:12:20 11,008 -c--a-w C:\WINDOWS\system32\dllcache\brusbmdm.sys
+ 2001-08-17 19:12:22 10,368 -c--a-w C:\WINDOWS\system32\dllcache\brusbscn.sys
+ 2001-08-17 18:11:24 31,529 -c--a-w C:\WINDOWS\system32\dllcache\brzwlan.sys
+ 2004-08-19 14:09:22 20,992 -c--a-w C:\WINDOWS\system32\dllcache\bthci.dll
+ 2004-08-03 21:10:40 17,024 -c--a-w C:\WINDOWS\system32\dllcache\bthenum.sys
+ 2004-08-03 21:10:40 38,016 -c--a-w C:\WINDOWS\system32\dllcache\bthmodem.sys
+ 2004-08-03 20:58:40 100,992 -c--a-w C:\WINDOWS\system32\dllcache\bthpan.sys
+ 2004-08-03 21:10:38 35,456 -c--a-w C:\WINDOWS\system32\dllcache\bthprint.sys
+ 2004-08-19 14:09:22 30,208 -c--a-w C:\WINDOWS\system32\dllcache\bthserv.dll
+ 2004-08-03 21:10:36 18,944 -c--a-w C:\WINDOWS\system32\dllcache\bthusb.sys
+ 2004-08-19 14:09:22 50,688 -c--a-w C:\WINDOWS\system32\dllcache\btpanui.dll
+ 2001-08-23 15:02:02 14,080 -c--a-w C:\WINDOWS\system32\dllcache\bulltlp3.sys
+ 2004-08-03 21:10:18 17,024 -c--a-w C:\WINDOWS\system32\dllcache\ccdecode.sys
- 2007-07-30 17:19:20 92,504 -c--a-w C:\WINDOWS\system32\dllcache\cdm.dll
+ 2008-07-18 20:10:48 94,920 -c--a-w C:\WINDOWS\system32\dllcache\cdm.dll
+ 2004-08-19 14:08:04 16,896 -c--a-w C:\WINDOWS\system32\dllcache\cfgmgr32.dll
+ 2004-08-19 14:09:52 188,480 -c--a-w C:\WINDOWS\system32\dllcache\cfgwiz.exe
+ 2004-08-19 14:09:22 47,104 -c--a-w C:\WINDOWS\system32\dllcache\coadmin.dll
+ 2004-08-19 14:09:22 281,088 -c--a-w C:\WINDOWS\system32\dllcache\comdlg32.dll
+ 2004-08-19 14:09:22 253,440 -c--a-w C:\WINDOWS\system32\dllcache\compatui.dll
- 2007-08-13 16:42:54 17,408 -c----w C:\WINDOWS\system32\dllcache\corpol.dll
+ 2006-10-17 11:03:56 17,408 -c----w C:\WINDOWS\system32\dllcache\corpol.dll
+ 2004-08-19 14:09:22 604,672 -c--a-w C:\WINDOWS\system32\dllcache\crypt32.dll
+ 2004-08-19 14:09:22 75,776 -c--a-w C:\WINDOWS\system32\dllcache\cryptdlg.dll
+ 2004-08-19 14:09:22 33,280 -c--a-w C:\WINDOWS\system32\dllcache\cryptdll.dll
+ 2004-08-19 14:09:22 54,784 -c--a-w C:\WINDOWS\system32\dllcache\cryptext.dll
+ 2004-08-19 14:09:22 63,488 -c--a-w C:\WINDOWS\system32\dllcache\cryptnet.dll
+ 2004-08-19 14:09:22 60,416 -c--a-w C:\WINDOWS\system32\dllcache\cryptsvc.dll
+ 2004-08-19 14:09:22 530,432 -c--a-w C:\WINDOWS\system32\dllcache\cryptui.dll
- 2007-08-13 16:54:10 33,792 -c--a-w C:\WINDOWS\system32\dllcache\custsat.dll
+ 2006-10-27 13:09:58 33,792 -c--a-w C:\WINDOWS\system32\dllcache\custsat.dll
+ 2004-08-19 14:10:16 299,520 -c--a-w C:\WINDOWS\system32\dllcache\drmclien.dll
+ 2004-08-19 14:09:24 87,040 -c--a-w C:\WINDOWS\system32\dllcache\drmstor.dll
+ 2004-08-19 14:09:24 16,384 -c--a-w C:\WINDOWS\system32\dllcache\ds32gt.dll
+ 2004-08-03 20:31:44 137,216 -c--a-w C:\WINDOWS\system32\dllcache\dssenh.dll
+ 2004-08-19 15:09:24 619,008 -c--a-w C:\WINDOWS\system32\dllcache\dx7vb.dll
+ 2004-08-19 14:09:26 380,957 -c--a-w C:\WINDOWS\system32\dllcache\expsrv.dll
+ 2004-08-03 21:14:18 143,360 -c--a-w C:\WINDOWS\system32\dllcache\fastfat.sys
+ 2004-08-19 14:09:26 184,435 -c--a-w C:\WINDOWS\system32\dllcache\fp4amsft.dll
+ 2004-08-19 14:09:26 82,035 -c--a-w C:\WINDOWS\system32\dllcache\fp4anscp.dll
+ 2004-08-19 14:09:26 147,513 -c--a-w C:\WINDOWS\system32\dllcache\fp4apws.dll
+ 2004-08-19 14:09:26 49,210 -c--a-w C:\WINDOWS\system32\dllcache\fp4areg.dll
+ 2004-08-19 14:09:26 102,509 -c--a-w C:\WINDOWS\system32\dllcache\fp4atxt.dll
+ 2004-08-19 14:09:26 41,020 -c--a-w C:\WINDOWS\system32\dllcache\fp4avnb.dll
+ 2004-08-19 14:09:26 32,826 -c--a-w C:\WINDOWS\system32\dllcache\fp4avss.dll
+ 2004-08-19 14:09:26 49,212 -c--a-w C:\WINDOWS\system32\dllcache\fp4awebs.dll
+ 2004-08-19 14:09:26 876,653 -c--a-w C:\WINDOWS\system32\dllcache\fp4awel.dll
+ 2004-08-19 14:09:56 15,120 -c--a-w C:\WINDOWS\system32\dllcache\fp98sadm.exe
+ 2004-08-19 14:09:56 109,840 -c--a-w C:\WINDOWS\system32\dllcache\fp98swin.exe
+ 2004-08-19 14:09:56 188,494 -c--a-w C:\WINDOWS\system32\dllcache\fpcount.exe
+ 2004-08-19 14:09:26 20,541 -c--a-w C:\WINDOWS\system32\dllcache\fpexedll.dll
+ 2004-08-19 14:09:28 598,071 -c--a-w C:\WINDOWS\system32\dllcache\fpmmc.dll
+ 2004-08-19 14:08:14 217,088 -c--a-w C:\WINDOWS\system32\dllcache\fpmmcsat.dll
+ 2004-08-19 14:09:56 20,538 -c--a-w C:\WINDOWS\system32\dllcache\fpremadm.exe
- 2007-08-13 16:18:02 60,416 -c----w C:\WINDOWS\system32\dllcache\hmmapi.dll
+ 2006-10-17 10:44:36 60,416 -c----w C:\WINDOWS\system32\dllcache\hmmapi.dll
- 2007-08-13 16:44:02 69,120 -c--a-w C:\WINDOWS\system32\dllcache\iedw.exe
+ 2006-10-17 11:04:50 69,120 -c--a-w C:\WINDOWS\system32\dllcache\iedw.exe
- 2007-08-13 16:45:18 78,336 -c----w C:\WINDOWS\system32\dllcache\ieencode.dll
+ 2006-10-17 11:06:00 78,336 -c----w C:\WINDOWS\system32\dllcache\ieencode.dll
- 2007-08-13 16:54:10 191,488 -c--a-w C:\WINDOWS\system32\dllcache\iepeers.dll
+ 2006-10-27 13:09:58 191,488 -c--a-w C:\WINDOWS\system32\dllcache\iepeers.dll
- 2007-08-13 16:39:12 55,296 -c----w C:\WINDOWS\system32\dllcache\iesetup.dll
+ 2006-10-27 00:44:26 55,296 -c----w C:\WINDOWS\system32\dllcache\iesetup.dll
+ 2004-08-19 14:09:28 68,608 -c--a-w C:\WINDOWS\system32\dllcache\iisext51.dll
+ 2004-08-19 14:09:28 64,512 -c--a-w C:\WINDOWS\system32\dllcache\iismap.dll
+ 2004-08-19 14:09:56 31,232 -c--a-w C:\WINDOWS\system32\dllcache\iisrstas.exe
+ 2004-08-19 14:09:28 133,632 -c--a-w C:\WINDOWS\system32\dllcache\iisrtl.dll
+ 2004-08-19 14:09:28 36,921 -c--a-w C:\WINDOWS\system32\dllcache\imeshare.dll
- 2007-08-13 16:36:06 36,352 -c----w C:\WINDOWS\system32\dllcache\imgutil.dll
+ 2006-10-17 10:57:58 36,352 -c----w C:\WINDOWS\system32\dllcache\imgutil.dll
+ 2004-08-19 14:09:30 842,240 -c--a-w C:\WINDOWS\system32\dllcache\inetmgr.dll
+ 2004-08-19 14:09:30 13,312 -c--a-w C:\WINDOWS\system32\dllcache\infoadmn.dll
- 2007-08-13 16:39:02 92,672 -c--a-w C:\WINDOWS\system32\dllcache\inseng.dll
+ 2006-10-27 00:44:08 92,672 -c--a-w C:\WINDOWS\system32\dllcache\inseng.dll
+ 2004-08-03 21:14:30 74,752 -c--a-w C:\WINDOWS\system32\dllcache\ipsec.sys
+ 2001-08-23 14:58:06 36,224 -c--a-w C:\WINDOWS\system32\dllcache\isapnp.sys
+ 2004-08-19 14:09:32 68,608 -c--a-w C:\WINDOWS\system32\dllcache\isatq.dll
+ 2005-05-27 02:08:06 155,136 -c--a-w C:\WINDOWS\system32\dllcache\itircl.dll
+ 2005-05-27 02:08:06 137,216 -c--a-w C:\WINDOWS\system32\dllcache\itss.dll
- 2007-08-13 16:38:04 491,520 -c--a-w C:\WINDOWS\system32\dllcache\jscript.dll
+ 2006-10-17 11:00:00 491,520 -c--a-w C:\WINDOWS\system32\dllcache\jscript.dll
+ 2006-10-18 19:47:14 11,264 -c--a-w C:\WINDOWS\system32\dllcache\laprxy.dll
- 2007-08-13 16:44:18 40,960 -c----w C:\WINDOWS\system32\dllcache\licmgr10.dll
+ 2006-10-17 11:05:10 40,960 -c----w C:\WINDOWS\system32\dllcache\licmgr10.dll
+ 2006-10-18 18:03:58 100,864 -c--a-w C:\WINDOWS\system32\dllcache\logagent.exe
+ 2004-08-19 14:09:32 1,028,096 -c--a-w C:\WINDOWS\system32\dllcache\mfc42.dll
+ 2004-08-19 14:09:32 22,528 -c--a-w C:\WINDOWS\system32\dllcache\mfcsubs.dll
+ 2004-08-19 14:10:00 4,639 -c--a-w C:\WINDOWS\system32\dllcache\mplayer2.exe
+ 2004-08-19 14:08:24 20,480 -c--a-w C:\WINDOWS\system32\dllcache\msadcer.dll
+ 2004-08-19 14:09:34 61,440 -c--a-w C:\WINDOWS\system32\dllcache\msadcf.dll
+ 2004-08-19 14:08:24 16,384 -c--a-w C:\WINDOWS\system32\dllcache\msadcfr.dll
+ 2006-03-23 05:46:11 143,360 -c--a-w C:\WINDOWS\system32\dllcache\msadco.dll
+ 2004-08-19 14:08:24 16,384 -c--a-w C:\WINDOWS\system32\dllcache\msadcor.dll
+ 2004-08-19 14:09:34 53,248 -c--a-w C:\WINDOWS\system32\dllcache\msadcs.dll
+ 2004-08-19 14:09:34 155,648 -c--a-w C:\WINDOWS\system32\dllcache\msadds.dll
+ 2004-08-19 14:08:26 24,576 -c--a-w C:\WINDOWS\system32\dllcache\msaddsr.dll
+ 2004-08-19 14:08:26 28,672 -c--a-w C:\WINDOWS\system32\dllcache\msader15.dll
+ 2004-08-19 14:09:34 57,344 -c--a-w C:\WINDOWS\system32\dllcache\msador15.dll
+ 2004-08-19 14:09:34 57,344 -c--a-w C:\WINDOWS\system32\dllcache\msadrh15.dll
+ 2004-08-19 14:09:34 36,864 -c--a-w C:\WINDOWS\system32\dllcache\mscpxl32.dll
+ 2004-08-19 14:09:34 4,096 -c--a-w C:\WINDOWS\system32\dllcache\msdadc.dll
+ 2004-08-19 14:09:34 4,096 -c--a-w C:\WINDOWS\system32\dllcache\msdaenum.dll
+ 2004-08-19 14:09:34 4,096 -c--a-w C:\WINDOWS\system32\dllcache\msdaer.dll
+ 2004-08-19 14:09:34 233,472 -c--a-w C:\WINDOWS\system32\dllcache\msdaora.dll
+ 2004-08-19 14:09:34 77,824 -c--a-w C:\WINDOWS\system32\dllcache\msdaosp.dll
+ 2004-08-19 14:08:26 16,384 -c--a-w C:\WINDOWS\system32\dllcache\msdaprsr.dll
+ 2004-08-19 14:09:34 200,704 -c--a-w C:\WINDOWS\system32\dllcache\msdaprst.dll
+ 2004-08-19 14:09:34 204,800 -c--a-w C:\WINDOWS\system32\dllcache\msdaps.dll
+ 2004-08-19 14:09:34 118,784 -c--a-w C:\WINDOWS\system32\dllcache\msdarem.dll
+ 2004-08-19 14:08:26 16,384 -c--a-w C:\WINDOWS\system32\dllcache\msdaremr.dll
+ 2004-08-19 14:09:34 4,096 -c--a-w C:\WINDOWS\system32\dllcache\msdasc.dll
+ 2004-08-19 14:09:34 315,392 -c--a-w C:\WINDOWS\system32\dllcache\msdasql.dll
+ 2004-08-19 14:08:26 16,384 -c--a-w C:\WINDOWS\system32\dllcache\msdasqlr.dll
+ 2004-08-19 14:09:34 20,480 -c--a-w C:\WINDOWS\system32\dllcache\msdatt.dll
+ 2004-08-19 14:09:34 4,096 -c--a-w C:\WINDOWS\system32\dllcache\msdaurl.dll
+ 2004-08-19 14:09:34 36,864 -c--a-w C:\WINDOWS\system32\dllcache\msdfmap.dll
+ 2004-08-19 14:08:26 4,126 -c--a-w C:\WINDOWS\system32\dllcache\msdxmlc.dll
- 2007-08-13 16:32:30 45,568 -c----w C:\WINDOWS\system32\dllcache\mshta.exe
+ 2006-10-17 10:56:10 45,568 -c----w C:\WINDOWS\system32\dllcache\mshta.exe
- 2007-08-13 16:01:12 48,128 -c----w C:\WINDOWS\system32\dllcache\mshtmler.dll
+ 2006-10-17 10:28:56 48,128 -c----w C:\WINDOWS\system32\dllcache\mshtmler.dll
- 2007-08-13 16:54:10 156,160 -c--a-w C:\WINDOWS\system32\dllcache\msls31.dll
+ 2006-10-27 13:09:58 156,160 -c--a-w C:\WINDOWS\system32\dllcache\msls31.dll
+ 2004-08-19 14:09:34 143,360 -c--a-w C:\WINDOWS\system32\dllcache\msorcl32.dll
+ 2004-08-03 20:58:40 5,504 -c--a-w C:\WINDOWS\system32\dllcache\mstee.sys
+ 2004-08-19 14:09:36 343,040 -c--a-w C:\WINDOWS\system32\dllcache\msvcrt.dll
+ 2004-08-03 20:58:26 61,440 -c--a-w C:\WINDOWS\system32\dllcache\msvcrt40.dll
+ 2004-08-19 14:09:36 24,576 -c--a-w C:\WINDOWS\system32\dllcache\msxactps.dll
+ 2004-08-03 21:10:30 85,376 -c--a-w C:\WINDOWS\system32\dllcache\nabtsfec.sys
+ 2004-08-03 21:10:14 10,880 -c--a-w C:\WINDOWS\system32\dllcache\ndisip.sys
+ 2004-08-03 21:14:32 91,776 -c--a-w C:\WINDOWS\system32\dllcache\ndiswan.sys
+ 2005-11-29 14:27:06 364,544 -c--a-w C:\WINDOWS\system32\dllcache\npdsplay.dll
+ 2004-08-19 14:09:38 10,240 -c--a-w C:\WINDOWS\system32\dllcache\npwmsdrm.dll
+ 2004-08-19 14:09:16 733,184 -c--a-w C:\WINDOWS\system32\dllcache\ntdll.dll
- 2008-05-16 12:01:00 6,557,408 -c--a-w C:\WINDOWS\system32\dllcache\nv4_mini.sys
+ 2008-08-02 10:20:00 6,121,856 -c--a-w C:\WINDOWS\system32\dllcache\nv4_mini.sys
+ 2004-08-19 14:09:38 249,856 -c--a-w C:\WINDOWS\system32\dllcache\odbc32.dll
+ 2004-08-19 14:09:38 16,384 -c--a-w C:\WINDOWS\system32\dllcache\odbc32gt.dll
+ 2004-08-19 14:10:00 32,768 -c--a-w C:\WINDOWS\system32\dllcache\odbcad32.exe
+ 2004-08-19 14:09:38 135,168 -c--a-w C:\WINDOWS\system32\dllcache\odbcconf.dll
+ 2004-08-19 14:10:00 69,632 -c--a-w C:\WINDOWS\system32\dllcache\odbcconf.exe
+ 2004-08-19 14:09:38 106,496 -c--a-w C:\WINDOWS\system32\dllcache\odbccp32.dll
+ 2004-08-19 14:09:38 65,536 -c--a-w C:\WINDOWS\system32\dllcache\odbccr32.dll
+ 2004-08-19 14:09:38 65,536 -c--a-w C:\WINDOWS\system32\dllcache\odbccu32.dll
+ 2004-08-19 14:08:44 98,304 -c--a-w C:\WINDOWS\system32\dllcache\odbcint.dll
+ 2004-08-19 14:08:44 61,712 -c--a-w C:\WINDOWS\system32\dllcache\odbcji32.dll
+ 2004-08-19 14:09:38 278,559 -c--a-w C:\WINDOWS\system32\dllcache\odbcjt32.dll
+ 2004-08-19 14:09:38 147,456 -c--a-w C:\WINDOWS\system32\dllcache\odbctrac.dll
+ 2004-08-19 14:09:38 20,511 -c--a-w C:\WINDOWS\system32\dllcache\oddbse32.dll
+ 2004-08-19 14:09:38 20,510 -c--a-w C:\WINDOWS\system32\dllcache\odexl32.dll
+ 2004-08-19 14:09:38 20,510 -c--a-w C:\WINDOWS\system32\dllcache\odfox32.dll
+ 2004-08-19 14:09:38 20,510 -c--a-w C:\WINDOWS\system32\dllcache\odpdx32.dll
+ 2004-08-19 14:09:38 20,511 -c--a-w C:\WINDOWS\system32\dllcache\odtext32.dll
+ 2005-07-26 04:40:00 1,284,608 -c--a-w C:\WINDOWS\system32\dllcache\ole32.dll
+ 2004-08-19 14:09:38 487,424 -c--a-w C:\WINDOWS\system32\dllcache\oledb32.dll
+ 2004-08-19 14:09:38 77,824 -c--a-w C:\WINDOWS\system32\dllcache\oledb32r.dll
+ 2004-08-19 14:09:38 83,456 -c--a-w C:\WINDOWS\system32\dllcache\olepro32.dll
+ 2004-03-16 08:58:20 136,960 -c--a-w C:\WINDOWS\system32\dllcache\portcls.sys
+ 2004-08-03 20:31:44 152,576 -c--a-w C:\WINDOWS\system32\dllcache\rsaenh.dll
+ 2001-08-23 15:46:46 66,048 -c--a-w C:\WINDOWS\system32\dllcache\s3legacy.dll
+ 2004-08-19 14:09:40 64,000 -c--a-w C:\WINDOWS\system32\dllcache\samlib.dll
+ 2004-08-19 14:09:40 431,104 -c--a-w C:\WINDOWS\system32\dllcache\samsrv.dll
+ 2004-08-19 14:09:40 159,744 -c--a-w C:\WINDOWS\system32\dllcache\scrobj.dll
+ 2004-08-19 14:09:40 151,552 -c--a-w C:\WINDOWS\system32\dllcache\scrrun.dll
+ 2004-08-19 14:10:04 78,848 -c--a-w C:\WINDOWS\system32\dllcache\sdbinst.exe
+ 2004-08-02 12:20:40 4,569 -c--a-w C:\WINDOWS\system32\dllcache\secupd.dat
+ 2004-08-19 14:10:04 142,336 -c--a-w C:\WINDOWS\system32\dllcache\sessmgr.exe
+ 2004-08-19 14:09:42 1,003,520 -c--a-w C:\WINDOWS\system32\dllcache\setupapi.dll
+ 2004-08-19 14:09:42 5,120 -c--a-w C:\WINDOWS\system32\dllcache\sfc.dll
+ 2004-08-19 14:09:42 1,548,288 -c--a-w C:\WINDOWS\system32\dllcache\sfcfiles.dll
+ 2004-08-19 14:09:42 65,536 -c--a-w C:\WINDOWS\system32\dllcache\shimeng.dll
+ 2004-08-19 14:09:42 20,536 -c--a-w C:\WINDOWS\system32\dllcache\shtml.dll
+ 2004-08-19 14:10:04 16,437 -c--a-w C:\WINDOWS\system32\dllcache\shtml.exe
+ 2004-08-19 14:09:42 25,600 -c--a-w C:\WINDOWS\system32\dllcache\slayerxp.dll
+ 2004-08-03 21:10:18 11,136 -c--a-w C:\WINDOWS\system32\dllcache\slip.sys
+ 2004-08-19 14:09:42 189,440 -c--a-w C:\WINDOWS\system32\dllcache\smtpadm.dll
+ 2004-08-19 14:09:44 2,134,528 -c--a-w C:\WINDOWS\system32\dllcache\smtpsnap.dll
+ 2004-08-19 14:09:46 8,192 -c--a-w C:\WINDOWS\system32\dllcache\staxmem.dll
+ 2004-08-03 21:10:14 15,360 -c--a-w C:\WINDOWS\system32\dllcache\streamip.sys
+ 2004-08-19 14:10:04 107,520 -c--a-w C:\WINDOWS\system32\dllcache\sysocmgr.exe
+ 2004-08-19 14:10:04 32,827 -c--a-w C:\WINDOWS\syst
-1
floppy75 Messages postés 1076 Date d'inscription dimanche 27 avril 2008 Statut Membre Dernière intervention 19 octobre 2008 132
22 sept. 2008 à 17:51
rapport Hijackthis...


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:51:07, on 22/09/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe
C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe
C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe
C:\Program Files\Razer\Diamondback 3G\razerhid.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\RocketDock\RocketDock.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\Program Files\Logitech\GamePanel Software\LCD Manager\Applets\LCDClock.exe
C:\Program Files\Schmads Inc\G15_TeamSpeak\G15_TeamSpeak.exe
C:\PROGRA~1\MICROS~2\rapimgr.exe
C:\Program Files\Razer\Diamondback 3G\razertra.exe
C:\Program Files\Razer\Diamondback 3G\razerofa.exe
C:\WINDOWS\explorer.exe
C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe
C:\Documents and Settings\Flo\Bureau\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.01net.com/telecharger/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: BitDefender Toolbar - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2008\IEToolbar.dll
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [36X Raid Configurer] C:\WINDOWS\system32\xRaidSetup.exe boot
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [RivaTunerStartupDaemon] "C:\Program Files\RivaTuner v2.09\RivaTuner.exe" /S
O4 - HKLM\..\Run: [Launch LCDMon] "C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe"
O4 - HKLM\..\Run: [Launch LGDCore] "C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe" /SHOWHIDE
O4 - HKLM\..\Run: [BitDefender Antiphishing Helper] "C:\Program Files\BitDefender\BitDefender 2008\IEShow.exe"
O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [Diamondback] C:\Program Files\Razer\Diamondback 3G\razerhid.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - https://www.touslesdrivers.com/index.php?v_page=29
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: ddgdhd.dll
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: BitDefender Desktop Update Service (LIVESRV) - BitDefender SRL - C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - BitDefender S.R.L. - C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe
O23 - Service: BitDefender Communicator (XCOMM) - BitDefender - C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe
-1
jlpjlp Messages postés 51580 Date d'inscription vendredi 18 mai 2007 Statut Contributeur sécurité Dernière intervention 3 mai 2022 5 040
22 sept. 2008 à 18:42
utilise pour supprimer tes traces

CCLEANER: (lance un nettoyage et répare 3 fois le registre) sans installer la barre yahoo
(dans les options désactive la case: effacer les fichiers de plus de 48 heures)

https://www.malekal.com/tutoriel-ccleaner/
https://www.01net.com/telecharger/windows/Utilitaire/nettoyeurs_et_installeurs/fiches/32599.html


_________________



scan avec
MalwareByte's Anti-Malware et vire ce qui est trouvé et colle le rapport

https://www.malekal.com/tutoriel-malwarebyte-anti-malware/


__________________
ensuite
colle un rapport avec bitdefender pour voir
-1
floppy75 Messages postés 1076 Date d'inscription dimanche 27 avril 2008 Statut Membre Dernière intervention 19 octobre 2008 132
22 sept. 2008 à 19:19
re...


désolé du retard deja fais tout cela ... donc heu .. il n'y a rien dans le rapport....
-1

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
jlpjlp Messages postés 51580 Date d'inscription vendredi 18 mai 2007 Statut Contributeur sécurité Dernière intervention 3 mai 2022 5 040
22 sept. 2008 à 19:20
combofix a viré deux fichiers inféctés
-1
floppy75 Messages postés 1076 Date d'inscription dimanche 27 avril 2008 Statut Membre Dernière intervention 19 octobre 2008 132
22 sept. 2008 à 21:23
oui c'est bien sa ...
-1