Dialer.Generic.33613

Résolu
Bonjour,
Bitdefender n'arrive pas a me débarrasser de ce truc est se grave ? et quoi faire.Merci d'avance
Configuration: Windows XP
Internet Explorer 7.0

50 réponses

Résumé de la discussion

Une infection persiste sur Windows XP et Internet Explorer 7.0 malgré Bitdefender et l’utilisateur se demande si c’est grave et quelles actions entreprendre. Plusieurs conseils recommandent un balayage en ligne avec Kaspersky Online Scanner et une gestion des ActiveX lors de l’installation et de l’analyse. D’autres interventions évoquent FindyKill et ComboFix, des nettoyages ciblés, des vérifications de dossiers système et des rapports d’infection à examiner prudemment. Des indices comme des chemins suspects et des services démarrés indiquent la nécessité d’outils multiples et d’analyses complémentaires pour limiter les risques et éviter une réinfection.

Bobot (l’IA à votre service)
  1. Contributeur sécurité
    A plus ou à jamais, ou alors sur le forum détente...... SALUT

    Je l'éspere pour toi .....

    @jamais +
    0
    1. Contributeur sécurité
      Pourquoi il devrait mal aller ????

      Non ,non c'était pour savoir s'il allait mieux vu les infections que tu avais contractés .

      Pour supprimer toutes les traces des logiciels qui ont servi à traiter les infections spécifiques :

      · Télécharge ToolsCleaner de A.Roshtein sur ton Bureau.
      http://pc-system.fr/
      · Clique sur Recherche et laisse le scan se terminer.
      · Clique, sur Suppression pour finaliser.
      · Tu peux, si tu le souhaites, te servir des Options facultatives.
      · Clique sur Quitter, pour que le rapport puisse se créer.
      · Poste moi le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur( C:\).

      ==============================
      Vérifie que BitdefenderSecurity ne contient pas un pare-feu sinon désactive le pour qu'il ne rentre pas en conflits avec OnlineArmor .

      Tu dois mettre ta console JAVA a jour :

      mettre à jour java
      https://www.java.com/fr/download/manual.jsp
      ==============================
      Maintenant que ton PC n'est plus infecté, désactive ta "Restauration du système" puis réactive la afin de créer un point de restauration sain.

      * Désactivation :
      Cliquer droit sur le "Poste de travail" > Propriétés > onglet "Restauration du système" > cocher la case "Désactiver la Restauration du système sur tous les lecteurs"
      > Appliquer patiente jusqu a que cela soit marqué "désactivée" puis Ok.

      * Activation :
      Suivre le même chemin ; décocher la case "Désactiver la Restauration du système sur tous les lecteurs"
      > Appliquer attends que cela soit a nouveau sur "surveillance" puis Ok. Redémarrer l'ordinateur..

      ==============================
      danger du P2P

      un peu de lecture afin de ne pas revenir ici

      VoiloO , tu peux mettre en résolu si c'est le cas .
      0
      1. Saut,
        Juste avant de mettre tout ça en résolu, je voulais te remercier et te dire que malgré ce que j'ai pu lire sur tes "Pour suivre", continu à suivre, car en tout cas Gen..machin truc,lui n'a pas suivi.
        A plus ou à jamais, ou alors sur le forum détente...... SALUT

        [ Rapport ToolsCleaner version 2.3.0 (par A.Rothstein & dj QUIOU) ]

        -->- Recherche:

        C:\Combofix.txt: trouvé !
        C:\lopR.txt: trouvé !
        C:\TB.txt: trouvé !
        C:\FindyKill.txt: trouvé !
        C:\Lop SD: trouvé !
        C:\Qoobox: trouvé !
        C:\Toolbar SD: trouvé !
        C:\Rsit: trouvé !
        C:\Documents and Settings\Administrateur\Bureau\SDFIX: trouvé !
        C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: trouvé !
        C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: trouvé !
        C:\Documents and Settings\Utilisateur\Bureau\ComboFix.exe: trouvé !
        C:\Documents and Settings\Utilisateur\Bureau\antivirus\SdFix.exe: trouvé !
        C:\Documents and Settings\Utilisateur\Bureau\antivirus\LopSD.exe: trouvé !
        C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc.zip: trouvé !
        C:\Documents and Settings\Utilisateur\Bureau\antivirus\Rsit.exe: trouvé !
        C:\Documents and Settings\Utilisateur\Bureau\antivirus\SDFIX: trouvé !
        C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc: trouvé !
        C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc\GenProc: trouvé !
        C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc\GenProc\outil\HijackThis.exe: trouvé !
        C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc\GenProc\outil\GenProc[*].html: trouvé !
        C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc\GenProc\Page\GenProc[*].html: trouvé !
        C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\FindyKill: trouvé !
        C:\Documents and Settings\Utilisateur\Recent\HijackThis.lnk: trouvé !
        C:\Program Files\FindyKill: trouvé !
        C:\Program Files\Trend Micro\HijackThis: trouvé !
        C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !
        C:\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !

        Corbeille vidée!
        Fichiers temporaires nettoyés !
        ---------------------------------
        -->- Suppression:
        C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: supprimé !
        C:\Documents and Settings\Utilisateur\Bureau\ComboFix.exe: ERREUR DE SUPPRESSION !!
        C:\Documents and Settings\Utilisateur\Bureau\antivirus\SdFix.exe: supprimé !
        C:\Documents and Settings\Utilisateur\Bureau\antivirus\LopSD.exe: supprimé !
        C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc.zip: supprimé !
        C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc\GenProc\outil\HijackThis.exe: supprimé !
        C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: supprimé !
        C:\Combofix.txt: supprimé !
        C:\lopR.txt: supprimé !
        C:\TB.txt: supprimé !
        C:\FindyKill.txt: supprimé !
        C:\Documents and Settings\Utilisateur\Bureau\antivirus\Rsit.exe: supprimé !
        C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc\GenProc\outil\GenProc[*].html: ERREUR DE SUPPRESSION !!
        C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc\GenProc\Page\GenProc[*].html: ERREUR DE SUPPRESSION !!
        C:\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé !
        C:\Lop SD: supprimé !
        C:\Qoobox: supprimé !
        C:\Toolbar SD: supprimé !
        C:\Rsit: supprimé !
        C:\Documents and Settings\Administrateur\Bureau\SDFIX: supprimé !
        C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: supprimé !
        C:\Documents and Settings\Utilisateur\Bureau\antivirus\SDFIX: supprimé !
        C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc: supprimé !
        C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\FindyKill: supprimé !
        C:\Program Files\FindyKill: supprimé !
        C:\Program Files\Trend Micro\HijackThis: supprimé !

        Corbeille vidée!
        Fichiers temporaires nettoyés !
        0
    2. Contributeur sécurité
      Ok ,comment va la pc ?
      0
      1. Jusque là tout va bien.Pourquoi il devrait mal aller ????
        0
    3. Contributeur sécurité
      Une mauvaise frappe sur le Cfscript ....Tu va le refaire ,je vois que j'ai oublié une chose :

      > Ferme tout tes navigateurs (donc copie ou imprime les instructions avant)
      - Crée un nouveau document texte : clic droit de souris sur le bureau > Nouveau > Document Texte, et copie/colle dedans les lignes suivantes :

      Driver::
      lvuvc


      - Enregistre ce fichier sous le nom CFScript
      - Fait un glisser/déposer de ce fichier CFScrïpt sur le fichier ComboFix.exe comme sur cette image. (Clique sur le fichier CFScript, maintient le doigt enfoncé et glisse la souris pour que l'icône du CFScript vienne recouvrir l'icône de Combofix. Relache la souris.) Combofix va démarrer.
      - Une fenêtre bleue va apparaître: au message qui apparaît ( Type 1 to continue, or 2 to abort) , tape 1 puis valide.
      - Patiente le temps du scan.Le bureau va disparaître à plusieurs reprises: c'est normal!
      - Ne touche à rien tant que le scan n'est pas terminé sinon le PC peut planter !
      - Une fois le scan achevé, un rapport va s'afficher: poste son contenu.
      Note : Si le fichier ne s'ouvre pas, il se trouve ici > C:\ComboFix.txt

      Une fois fait ça on concluera ce topique .
      0
      1. ( je n'avis pas vidé la corbeille !!!)

        ComboFix 09-01-19.01 - Utilisateur 2009-01-22 18:00:10.4 - NTFSx86
        Microsoft Windows XP Édition familiale 5.1.2600.3.1252.1.1036.18.895.468 [GMT 1:00]
        Lancé depuis: c:\documents and settings\Utilisateur\Bureau\ComboFix.exe
        Commutateurs utilisés :: c:\documents and settings\Utilisateur\Bureau\CFScript.txt
        AV: BitDefender Antivirus *On-access scanning disabled* (Updated)
        FW: Online Armor Firewall *disabled*
        FW: Pare-feu BitDefender *disabled*
        * Un nouveau point de restauration a été créé

        AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !!
        .

        (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
        .

        .
        ((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
        .

        -------\Service_LVUVC

        ((((((((((((((((((((((((((((( Fichiers créés du 2008-12-22 au 2009-01-22 ))))))))))))))))))))))))))))))))))))
        .

        2009-01-21 20:46 . 2009-01-21 20:46 <REP> d-------- c:\windows\system32\Kaspersky Lab
        2009-01-18 20:55 . 2009-01-19 18:48 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\gtk-2.0
        2009-01-18 20:55 . 2009-01-18 20:55 <REP> d-------- c:\documents and settings\Utilisateur\.thumbnails
        2009-01-18 20:33 . 2009-01-20 20:51 <REP> d-------- c:\documents and settings\Utilisateur\.gimp-2.6
        2009-01-18 20:33 . 2009-01-18 20:33 <REP> d-------- c:\documents and settings\Utilisateur\.gegl-0.0
        2009-01-18 20:32 . 2009-01-18 20:33 <REP> d-------- c:\program files\GIMP-2.0
        2009-01-16 23:44 . 2009-01-16 23:44 <REP> d-------- c:\program files\Vision Objects
        2009-01-16 20:54 . 2009-01-16 20:54 579,584 --a--c--- c:\windows\system32\dllcache\user32.dll
        2009-01-14 20:29 . 2009-01-14 21:44 <REP> d-------- c:\program files\FindyKill
        2009-01-14 18:44 . 2009-01-14 18:44 <REP> d-------- C:\rsit
        2009-01-13 18:20 . 2009-01-22 12:02 37,440 --a------ c:\windows\system32\drivers\pssdklbf.drv
        2009-01-13 18:20 . 2009-01-22 12:02 30,272 --a------ c:\windows\system32\drivers\pssdk31.drv
        2009-01-12 23:30 . 2009-01-13 00:00 <REP> d-------- C:\Lop SD
        2009-01-12 23:12 . 2009-01-13 00:34 <REP> d-------- c:\program files\Ad-remover
        2009-01-11 12:24 . 2009-01-11 12:24 <REP> d-------- c:\program files\Skyline
        2009-01-10 13:24 . 2009-01-10 13:24 <REP> d-------- c:\program files\CCleaner
        2009-01-07 21:13 . 2009-01-07 21:13 850 --a------ c:\windows\system32\ProductTweaks.xml
        2009-01-07 21:13 . 2009-01-07 21:13 385 --a------ c:\windows\system32\user_gensett.xml
        2009-01-07 20:42 . 2009-01-07 20:42 <REP> d-------- c:\program files\Malwarebytes' Anti-Malware
        2009-01-07 20:42 . 2009-01-04 18:38 38,496 --a------ c:\windows\system32\drivers\mbamswissarmy.sys
        2009-01-07 20:42 . 2009-01-04 18:38 15,504 --a------ c:\windows\system32\drivers\mbam.sys
        2009-01-07 20:39 . 2009-01-19 23:20 263 --a------ c:\windows\system32\BDUpdateV1.xml
        2009-01-07 18:59 . 2009-01-07 18:59 <REP> d-------- c:\program files\BitDefender
        2009-01-07 18:59 . 2009-01-07 18:59 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\BitDefender
        2009-01-07 18:59 . 2009-01-07 19:03 <REP> d-------- c:\documents and settings\All Users\Application Data\BitDefender
        2009-01-07 18:58 . 2009-01-07 18:59 <REP> d-------- c:\program files\Fichiers communs\BitDefender
        2009-01-07 18:33 . 2009-01-07 22:21 <REP> d-------- c:\windows\LMI229.tmp
        2009-01-07 13:17 . 2009-01-07 13:17 <REP> d-------- c:\documents and settings\LocalService\Application Data\agi
        2009-01-07 13:16 . 2009-01-07 13:16 2,117,632 --a------ c:\windows\system32\python25.dll
        2009-01-07 13:16 . 2008-09-16 17:26 1,332,197 --a------ c:\windows\system32\pythondll.zip
        2009-01-07 13:16 . 2009-01-07 13:16 339,968 --a------ c:\windows\system32\pythoncom25.dll
        2009-01-07 13:16 . 2009-01-07 13:16 114,688 --a------ c:\windows\system32\pywintypes25.dll
        2009-01-02 10:44 . 2009-01-02 10:44 <REP> d-------- c:\documents and settings\All Users\Application Data\hps
        2008-12-23 16:24 . 2008-12-23 16:24 <REP> d-------- c:\program files\Fichiers communs\Logitech
        2008-12-23 16:20 . 2008-12-23 16:24 <REP> d-------- c:\documents and settings\All Users\Application Data\Logishrd
        2008-12-23 16:19 . 2008-12-23 16:19 <REP> d-------- c:\documents and settings\All Users\Application Data\Logitech
        2008-12-23 16:05 . 2008-04-13 19:33 1,888,992 --------- c:\windows\system32\ati3duag.dll
        2008-12-23 16:05 . 2008-09-10 02:15 1,307,648 --a------ c:\windows\system32\msxml6.dll
        2008-12-23 16:05 . 2008-09-10 02:15 1,307,648 -----c--- c:\windows\system32\dllcache\msxml6.dll
        2008-12-23 16:05 . 2008-04-13 19:33 870,784 --------- c:\windows\system32\ati3d1ag.dll
        2008-12-23 16:05 . 2008-04-13 19:33 377,984 --------- c:\windows\system32\ati2dvaa.dll
        2008-12-23 16:05 . 2008-04-13 19:33 229,376 --------- c:\windows\system32\ati2cqag.dll
        2008-12-23 16:05 . 2008-04-13 19:33 201,728 --------- c:\windows\system32\ati2dvag.dll
        2008-12-23 16:05 . 2008-04-13 19:33 136,192 --------- c:\windows\system32\aaclient.dll
        2008-12-23 16:05 . 2008-04-13 19:04 93,184 --------- c:\windows\system32\msxml6r.dll
        2008-12-23 16:05 . 2008-04-13 19:04 93,184 -----c--- c:\windows\system32\dllcache\msxml6r.dll
        2008-12-23 16:05 . 2008-04-13 19:34 23,040 --------- c:\windows\system32\ativmvxx.ax
        2008-12-23 16:05 . 2008-04-13 19:34 9,728 --------- c:\windows\system32\ativdaxx.ax
        2008-12-23 16:02 . 2008-12-23 16:02 <REP> d-------- c:\windows\ServicePackFiles
        2008-12-23 15:59 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02782_.tmp
        2008-12-23 15:29 . 2008-12-23 15:29 <REP> d-------- c:\program files\Microsoft Easy Assist
        2008-12-23 15:29 . 2008-12-23 15:29 <REP> d-------- c:\documents and settings\All Users\Application Data\Applications
        2008-12-22 18:48 . 2008-04-13 19:33 579,584 --a------ c:\windows\system32\SET1B1.tmp
        2008-12-22 18:47 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02772_.tmp
        2008-12-22 18:45 . 2008-08-14 14:23 2,147,328 --a------ c:\windows\system32\ntoskrnl.exe
        2008-12-22 18:21 . 2008-04-13 19:33 2,843,136 --a------ c:\windows\system32\SET2BF.tmp
        2008-12-22 18:20 . 2008-04-13 19:33 1,719,808 --a------ c:\windows\system32\SET280.tmp
        2008-12-22 18:19 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02763_.tmp
        2008-12-22 17:48 . 2008-04-13 19:33 1,719,808 --a------ c:\windows\system32\SET6CE.tmp
        2008-12-22 17:47 . 2008-04-13 19:33 1,499,136 --a------ c:\windows\system32\SET553.tmp
        2008-12-22 17:45 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02755_.tmp
        2008-12-22 14:16 . 2008-12-22 14:16 <REP> d-------- c:\program files\Windows Resource Kits
        2008-12-22 11:34 . 2004-08-05 13:00 71,040 --------- c:\windows\system32\drivers\_004196_.tmp.dll
        2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\system32\fr
        2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\system32\bits
        2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\l2schemas
        2008-12-22 10:50 . 2008-12-23 15:56 <REP> d-------- c:\windows\EHome

        .
        (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
        .
        2009-01-22 17:06 --------- d-----w c:\program files\Wanadoo
        2009-01-22 17:05 0 ----a-w c:\windows\system32\drivers\logiflt.iad
        2009-01-22 16:59 --------- d-----w c:\documents and settings\Utilisateur\Application Data\OnlineArmor
        2009-01-22 07:09 0 ----a-w c:\windows\system32\drivers\lvuvc.hs
        2009-01-19 18:47 242,184 ----a-w c:\windows\system32\drivers\bdfsfltr.sys
        2009-01-18 17:51 --------- d-----w c:\program files\Palm
        2009-01-16 22:44 --------- d--h--w c:\program files\InstallShield Installation Information
        2009-01-16 22:36 --------- d-----w c:\documents and settings\Utilisateur\Application Data\LimeWire
        2009-01-16 21:56 --------- d-----w c:\program files\eMule
        2009-01-10 11:14 --------- d-----w c:\program files\QuickTime
        2009-01-10 11:13 --------- d-----w c:\program files\LimeWire
        2009-01-02 09:09 4,424 ----a-w c:\documents and settings\Utilisateur\Application Data\ViewerApp.dat
        2008-12-23 15:20 --------- d-----w c:\program files\Fichiers communs\LogiShrd
        2008-12-21 11:03 --------- d-----w c:\program files\Logitech
        2008-12-21 10:43 --------- d-----w c:\documents and settings\Utilisateur\Application Data\ntr
        2008-12-21 10:01 --------- d-----w c:\program files\Microsoft CAPICOM 2.1.0.2
        2008-12-20 10:27 --------- d-----w c:\program files\Microsoft Silverlight
        2008-12-20 10:26 --------- d-----w c:\program files\Windows Live Toolbar
        2008-12-20 10:26 --------- d-----w c:\program files\Windows Live
        2008-12-20 10:25 --------- d-----w c:\program files\Microsoft Sync Framework
        2008-12-20 10:10 --------- d-----w c:\program files\Windows Live SkyDrive
        2008-12-20 09:52 --------- d-----w c:\program files\Microsoft
        2008-12-20 09:45 --------- d-----w c:\program files\Fichiers communs\Windows Live
        2008-12-11 10:57 333,952 ----a-w c:\windows\system32\drivers\srv.sys
        2008-12-08 19:13 --------- d-----w c:\program files\Migros
        2008-12-08 16:01 55,136 ----a-w c:\windows\system32\drivers\fssfltr_tdi.sys
        2008-12-04 23:11 308,584 ----a-w c:\windows\WLXPGSS.SCR
        2008-11-30 18:59 --------- d-----w c:\program files\Fichiers communs\Jasc Software Inc
        2008-11-30 18:59 --------- d-----w c:\documents and settings\All Users\Application Data\InstallShield
        2008-11-30 18:58 --------- d-----w c:\program files\Jasc Software Inc
        2008-11-30 18:58 --------- d-----w c:\program files\Fichiers communs\InstallShield
        2008-11-30 18:58 --------- d-----w c:\documents and settings\Utilisateur\Application Data\Jasc Software Inc
        2008-11-30 18:54 --------- d-----w c:\documents and settings\All Users\Application Data\WinZip
        2008-11-25 19:43 --------- d-----w c:\program files\Fichiers communs\Ahead
        2008-11-25 19:35 --------- d-----w c:\documents and settings\All Users\Application Data\Nero
        2007-08-02 21:29 278,528 ----a-w c:\program files\Fichiers communs\FDEUnInstaller.exe
        2007-02-11 09:37 4,562,152 ----a-w c:\program files\80 cd7 - 06 - Huey Lewis and the News - I Want a New Drug.mp3
        .

        ((((((((((((((((((((((((((((( snapshot_2009-01-19_19.22.25.50 )))))))))))))))))))))))))))))))))))))))))
        .
        - 2009-01-06 21:59:11 81,984 ----a-w c:\windows\system32\bdod.bin
        + 2009-01-22 17:03:16 81,984 ----a-w c:\windows\system32\bdod.bin
        + 2005-05-16 18:34:48 213,048 ----a-w c:\windows\system32\Kaspersky Lab\Kaspersky Online Scanner\kavss.dll
        + 2008-08-13 14:03:26 65,536 ----a-w c:\windows\system32\Kaspersky Lab\Kaspersky Online Scanner\kavuninstall.exe
        + 2008-08-13 14:03:26 798,720 ----a-w c:\windows\system32\Kaspersky Lab\Kaspersky Online Scanner\kavwebscan.dll
        .
        ((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
        .
        .
        *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
        REGEDIT4

        [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
        "WOOKIT"="c:\progra~1\Wanadoo\Shell.exe" [2004-08-23 122880]
        "ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-13 15360]
        "swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-08-09 68856]

        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
        "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-10-30 7634944]
        "LogitechCommunicationsManager"="c:\program files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe" [2008-08-14 565008]
        "LogitechQuickCamRibbon"="c:\program files\Logitech\QuickCam\Quickcam.exe" [2008-08-14 2407184]
        "QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2007-11-01 155648]
        "fssui"="c:\program files\Windows Live\Family Safety\fsui.exe" [2008-12-08 453984]
        "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]
        "BDAgent"="c:\program files\BitDefender\BitDefender 2009\bdagent.exe" [2009-01-19 741376]
        "BitDefender Antiphishing Helper"="c:\program files\BitDefender\BitDefender 2009\IEShow.exe" [2008-10-17 69632]
        "OnlineArmor GUI"="c:\program files\Tall Emu\Online Armor\oaui.exe" [2007-11-16 5029952]
        "BluetoothAuthenticationAgent"="bthprops.cpl" [2008-04-13 c:\windows\system32\bthprops.cpl]

        [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
        "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-13 15360]

        c:\documents and settings\Utilisateur\Menu D‚marrer\Programmes\D‚marrage\
        D‚marrage d'Office.lnk - c:\program files\Microsoft Office\Office\OSA.EXE [1996-12-16 51984]
        Logitech . Enregistrement du produit.lnk - c:\program files\Logitech\QuickCam\eReg.exe [2008-02-13 493832]
        Microsoft Recherche acc‚l‚r‚e.lnk - c:\program files\Microsoft Office\Office\FINDFAST.EXE [1996-12-16 111376]

        c:\documents and settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
        HotSync Manager.lnk - c:\program files\Palm\Hotsync.exe [2008-01-03 1392640]
        HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2007-03-11 210520]
        InterVideo WinCinema Manager.lnk - c:\program files\InterVideo\Common\Bin\WinCinemaMgr.exe [2007-08-07 303104]
        Picture Package Menu.lnk - c:\program files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe [2007-08-28 151552]
        Picture Package VCD Maker.lnk - c:\program files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe [2007-08-28 106496]
        Ulead Photo Express Calendar Checker.lnk - c:\program files\Ulead Systems\Ulead Photo Express 4.0 Trial\CalCheck.exe [2007-09-01 57344]

        [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
        "NoStartMenuSubFolders"= 1 (0x1)
        "NoFavoritesMenu"= 1 (0x1)

        [hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
        "{4F07DA45-8170-4859-9B5F-037EF2970034}"= "c:\progra~1\TALLEM~1\ONLINE~1\oaevent.dll" [2007-11-16 633344]

        [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
        "EnableFirewall"= 0 (0x0)

        [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
        "%windir%\\system32\\sessmgr.exe"=
        "c:\\Program Files\\Messenger\\msmsgs.exe"=
        "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
        "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
        "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"=
        "c:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"=
        "c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
        "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
        "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
        "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"=
        "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=
        "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqnrs08.exe"=
        "c:\\Program Files\\LimeWire\\LimeWire.exe"=
        "c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
        "c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
        "%windir%\\Network Diagnostic\\xpnetdiag.exe"=
        "c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
        "c:\\Program Files\\eMule\\emule.exe"=

        [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
        "2799:UDP"= 2799:UDP:Altova License Metering Port (UDP)
        "2799:TCP"= 2799:TCP:Altova License Metering Port (TCP)

        R1 NDISRD;NDISRD;c:\windows\system32\drivers\ndisrd.sys [2008-09-15 18944]
        R1 OADevice;OADriver;c:\windows\system32\drivers\OADriver.sys [2008-09-15 68608]
        R1 OAmon;OAmon;c:\windows\system32\drivers\OAmon.sys [2008-09-15 25600]
        R3 bdfm;BDFM;c:\windows\system32\drivers\bdfm.sys [2008-09-18 111112]
        R3 Bdfndisf;BitDefender Firewall NDIS Filter Service;c:\windows\system32\drivers\bdfndisf.sys [2008-10-17 104328]
        R4 BDVEDISK;BDVEDISK;c:\program files\BitDefender\BitDefender 2009\BDVEDISK.sys [2008-09-04 82696]
        R4 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [2008-12-20 55136]
        R4 fsssvc;Windows Live Contrôle parental;c:\program files\Windows Live\Family Safety\fsssvc.exe [2008-12-08 533344]
        R4 ScanDrv;ScanDrv;c:\windows\system32\drivers\SCANDRV.SYS [2007-11-11 189628]
        R4 SeaPort;SeaPort;c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2008-12-04 226640]
        R4 SvcOnlineArmor;Online Armor;c:\program files\Tall Emu\Online Armor\oasrv.exe [2008-09-15 4625984]
        S1 SASDIFSV;SASDIFSV;\??\c:\program files\SUPERAntiSpyware\SASDIFSV.SYS --> c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [?]
        S1 SASKUTIL;SASKUTIL;\??\c:\program files\SUPERAntiSpyware\SASKUTIL.sys --> c:\program files\SUPERAntiSpyware\SASKUTIL.sys [?]
        S3 Arrakis3;BitDefender Arrakis Server;c:\program files\Fichiers communs\BitDefender\BitDefender Arrakis Server\bin\Arrakis3.exe [2008-07-17 118784]
        S3 maconfservice;Ma-Config Service;c:\program files\ma-config.com\maconfservice.exe [2008-09-02 191656]
        S3 PsSdk31;PsSdk31;c:\windows\system32\drivers\pssdk31.drv [2009-01-13 30272]
        S3 PsSdkLBF;PsSdkLBF;c:\windows\system32\drivers\pssdklbf.drv [2009-01-13 37440]
        S3 SASENUM;SASENUM;\??\c:\program files\SUPERAntiSpyware\SASENUM.SYS --> c:\program files\SUPERAntiSpyware\SASENUM.SYS [?]
        S3 SIS163u;SiS 163 usb Wireless LAN Adapter Driver;c:\windows\system32\drivers\sis163u.sys [2007-08-07 167424]

        [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
        HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
        hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
        bdx REG_MULTI_SZ scan
        .
        .
        ------- Examen supplémentaire -------
        .
        uStart Page = hxxp://www.orange.fr/
        uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
        mWindow Title =
        uInternet Connection Wizard,ShellNext = iexplore
        uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
        IE: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
        IE: { - c:\program files\Messenger\msmsgs.exe
        TCP: {60219892-9BD6-4388-818E-20464378E3CF} = 192.168.1.1
        Handler: skyline - {3a4f9195-65a8-11d5-85c1-0001023952c1} - c:\program files\Skyline\TerraExplorer\TerraExplorerX.dll
        DPF: CabBuilder - hxxp://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
        DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - hxxp://fichiers.touslesdrivers.com/fichiers/hardwaredetection/hardwaredetection_3_0_3_1.cab
        DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} - hxxp://game02.zylom.com/activex/zylomgamesplayer.cab
        DPF: {EBF85371-A38F-485B-B28F-0B4C82D25937} - hxxp://update.hpphoto.com/download/HPSWUpdate.ocx
        .

        **************************************************************************

        catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
        Rootkit scan 2009-01-22 18:06:03
        Windows 5.1.2600 Service Pack 3 NTFS

        Recherche de processus cachés ...

        Recherche d'éléments en démarrage automatique cachés ...

        Recherche de fichiers cachés ...

        Scan terminé avec succès
        Fichiers cachés: 0

        **************************************************************************

        [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PsSdk31]
        "ImagePath"="\??\c:\windows\system32\Drivers\pssdk31.drv"

        [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PsSdkLBF]
        "ImagePath"="\??\c:\windows\system32\Drivers\pssdklbf.drv"
        .
        --------------------- CLES DE REGISTRE BLOQUEES ---------------------

        [HKEY_USERS\S-1-5-21-1454471165-1078145449-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{BFC5E433-B2B2-0060-4CE0-F7CA7AF43E40}*]
        @Allowed: (Read) (RestrictedCode)
        @Allowed: (Read) (RestrictedCode)
        "iaipnlkocglcilfkkb"=hex:6b,61,6d,6a,63,6e,63,6b,6a,64,63,6e,66,64,65,70,6b,63,
        70,63,65,69,00,00
        "haoplkhlccemoagi"=hex:6b,61,6d,6a,63,6e,63,6b,6a,64,63,6e,66,64,65,70,6b,63,
        70,63,65,69,00,00
        .
        ------------------------ Autres processus actifs ------------------------
        .
        c:\program files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
        c:\program files\BitDefender\BitDefender 2009\vsserv.exe
        c:\windows\system32\FTRTSVC.exe
        c:\program files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
        c:\program files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
        c:\windows\system32\rundll32.exe
        c:\program files\BitDefender\BitDefender 2009\seccenter.exe
        c:\windows\system32\nvsvc32.exe
        c:\program files\Fichiers communs\LogiShrd\LQCVFX\COCIManager.exe
        c:\progra~1\Wanadoo\Toaster.exe
        c:\progra~1\Wanadoo\Inactivity.exe
        c:\progra~1\Wanadoo\PollingModule.exe
        c:\program files\Canon\CAL\CALMAIN.exe
        c:\program files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
        c:\windows\system32\wscntfy.exe
        c:\program files\HP\Digital Imaging\bin\hpqste08.exe
        .
        **************************************************************************
        .
        Heure de fin: 2009-01-22 18:10:07 - La machine a redémarré
        ComboFix-quarantined-files.txt 2009-01-22 17:10:03
        ComboFix2.txt 2009-01-21 18:04:17
        ComboFix3.txt 2009-01-19 18:23:37
        ComboFix4.txt 2008-09-14 07:46:09

        Avant-CF: 208 911 372 288 octets libres
        Après-CF: 209,015,640,064 octets libres

        289 --- E O F --- 2009-01-22 10:00:22
        0
    4. Contributeur sécurité
      Essaie de le supprimer manuellement car ton fichier est vérolé ! Si tu n'y arrives pas on fera autrement .
      0
      1. Voila j'ai tout supprimé...
        0
    5. Contributeur sécurité
      tu sais a quoi correspond ce dossier : C:\Nouveau dossier (2)\Nouveau dossier\Documents and Settings\Blanot\Mes documents\Ancien_disque\WINDOWS\system32\onkkpzr.0ll Infecté­ ?
      0
      1. C'est une copie de fichier de mon ancien PC.
        0
    6. Contributeur sécurité
      On va vérifier si tout est net :

      Fais un scan en ligne Kaspersky avec Internet Explorer : kaspersky on line
      - Clique sur Démarrer Online-Scanner

      - Clique maintenant sur J'accepte.
      - Valide l'installation d'un ou de plusieurs ActiveX si c'est nécessaire.
      - Patiente pendant l'installation des Mises à jour.
      - Choisis par la suite l'analyse du Poste de travail.
      - Sauvegarde puis colle le rapport généré en fin d'analyse.

      AIDE : Configurer le contrôle des ActiveX

      NOTE : Si tu reçois le message "La licence de Kaspersky On-line Scanner est périmée", va dans Ajout/Suppression de programmes puis désinstalle On-Line Scanner, reconnecte toi sur le site de Kaspersky pour retenter le scan en ligne.
      0
      1. ....c'était long....
        -------------------------------------------------------------------------------
        KASPERSKY ON-LINE SCANNER REPORT
        Wednesday, January 21, 2009 11:39:06 PM
        Système d'exploitation : Microsoft Windows XP Home Edition, Service Pack 3 (Build 2600)
        Kaspersky On-line Scanner version : 5.0.84.2
        Dernière mise à jour de la base antivirus Kaspersky : 21/01/2009
        Enregistrements dans la base antivirus Kaspersky : 1491141
        -------------------------------------------------------------------------------

        Paramètres d'analyse:
        Analyser avec la base antivirus suivante: standard
        Analyser les archives: vrai
        Analyser les bases de messagerie: vrai

        Cible de l'analyse - Poste de travail:
        C:\
        D:\
        E:\

        Statistiques de l'analyse:
        Total d'objets analysés: 114401
        Nombre de virus trouvés: 4
        Nombre d'objets infectés: 6 / 0
        Nombre d'objets suspects: 0
        Durée de l'analyse: 01:39:38

        Nom de l'objet infecté / Nom du virus / Dernière action
        C:\Documents and Settings\Administrateur\Bureau\SDFix\backups\backups.zip/backups/autorun.inf Infecté : Worm.Win32.AutoRun.hv ignoré
        C:\Documents and Settings\Administrateur\Bureau\SDFix\backups\backups.zip ZIP: infecté - 1 ignoré
        C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat L'objet est verrouillé ignoré
        C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat L'objet est verrouillé ignoré
        C:\Documents and Settings\LocalService\Cookies\index.dat L'objet est verrouillé ignoré
        C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
        C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
        C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
        C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
        C:\Documents and Settings\LocalService\NTUSER.DAT L'objet est verrouillé ignoré
        C:\Documents and Settings\LocalService\ntuser.dat.LOG L'objet est verrouillé ignoré
        C:\Documents and Settings\NetworkService\Cookies\index.dat L'objet est verrouillé ignoré
        C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
        C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
        C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
        C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
        C:\Documents and Settings\NetworkService\NTUSER.DAT L'objet est verrouillé ignoré
        C:\Documents and Settings\NetworkService\ntuser.dat.LOG L'objet est verrouillé ignoré
        C:\Documents and Settings\Utilisateur\Application Data\BitDefender\Desktop\Profiles\asdict.dat L'objet est verrouillé ignoré
        C:\Documents and Settings\Utilisateur\Application Data\OnlineArmor\client.dat L'objet est verrouillé ignoré
        C:\Documents and Settings\Utilisateur\Application Data\Sony Ericsson\Teleca\Telecalib\Logging\Application logs\FM_log.txt L'objet est verrouillé ignoré
        C:\Documents and Settings\Utilisateur\Bureau\limewire\joyeux anniversaire frederic.wma Infecté : Trojan-Downloader.WMA.Wimad.n ignoré
        C:\Documents and Settings\Utilisateur\Bureau\limewire\techno MTV.mp3 Infecté : Trojan-Downloader.WMA.GetCodec.f ignoré
        C:\Documents and Settings\Utilisateur\Cookies\index.dat L'objet est verrouillé ignoré
        C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat L'objet est verrouillé ignoré
        C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Microsoft\Search Enhancement Pack\Search Box Extension\history.dat L'objet est verrouillé ignoré
        C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
        C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
        C:\Documents and Settings\Utilisateur\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
        C:\Documents and Settings\Utilisateur\Local Settings\Historique\History.IE5\MSHist012009012120090122\index.dat L'objet est verrouillé ignoré
        C:\Documents and Settings\Utilisateur\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat L'objet est verrouillé ignoré
        C:\Documents and Settings\Utilisateur\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
        C:\Documents and Settings\Utilisateur\NTUSER.DAT L'objet est verrouillé ignoré
        C:\Documents and Settings\Utilisateur\ntuser.dat.LOG L'objet est verrouillé ignoré
        C:\Nouveau dossier (2)\Nouveau dossier\Documents and Settings\Blanot\Mes documents\Ancien_disque\WINDOWS\system32\fctths.0ll Infecté : Email-Worm.Win32.Tanatos.b.dam2 ignoré
        C:\Nouveau dossier (2)\Nouveau dossier\Documents and Settings\Blanot\Mes documents\Ancien_disque\WINDOWS\system32\onkkpzr.0ll Infecté : Email-Worm.Win32.Tanatos.b.dam2 ignoré
        C:\Program Files\Fichiers communs\BitDefender\BitDefender Threat Scanner\av32bit_10107\Plugins\cache.000 L'objet est verrouillé ignoré
        C:\Program Files\Tall Emu\Online Armor\firewall.dat L'objet est verrouillé ignoré
        C:\Program Files\Tall Emu\Online Armor\fwdata.dat L'objet est verrouillé ignoré
        C:\Program Files\Tall Emu\Online Armor\oacached.dat L'objet est verrouillé ignoré
        C:\Program Files\Tall Emu\Online Armor\onlinearmor.fdb L'objet est verrouillé ignoré
        C:\Program Files\Tall Emu\Online Armor\programs.dat L'objet est verrouillé ignoré
        C:\Program Files\Tall Emu\Online Armor\reference.dat L'objet est verrouillé ignoré
        C:\Program Files\Tall Emu\Online Armor\server.dat L'objet est verrouillé ignoré
        C:\Program Files\Tall Emu\Online Armor\signs.dat L'objet est verrouillé ignoré
        C:\Program Files\Tall Emu\Online Armor\sites.dat L'objet est verrouillé ignoré
        C:\System Volume Information\MountPointManagerRemoteDatabase L'objet est verrouillé ignoré
        C:\System Volume Information\_restore{D2B94B42-99BC-4CDD-93E0-508A90A8D95E}\RP7\change.log L'objet est verrouillé ignoré
        C:\WINDOWS\Debug\PASSWD.LOG L'objet est verrouillé ignoré
        C:\WINDOWS\SchedLgU.Txt L'objet est verrouillé ignoré
        C:\WINDOWS\SoftwareDistribution\ReportingEvents.log L'objet est verrouillé ignoré
        C:\WINDOWS\Sti_Trace.log L'objet est verrouillé ignoré
        C:\WINDOWS\system32\CatRoot2\edb.log L'objet est verrouillé ignoré
        C:\WINDOWS\system32\CatRoot2\tmp.edb L'objet est verrouillé ignoré
        C:\WINDOWS\system32\config\AppEvent.Evt L'objet est verrouillé ignoré
        C:\WINDOWS\system32\config\default L'objet est verrouillé ignoré
        C:\WINDOWS\system32\config\default.LOG L'objet est verrouillé ignoré
        C:\WINDOWS\system32\config\Internet.evt L'objet est verrouillé ignoré
        C:\WINDOWS\system32\config\SAM L'objet est verrouillé ignoré
        C:\WINDOWS\system32\config\SAM.LOG L'objet est verrouillé ignoré
        C:\WINDOWS\system32\config\SecEvent.Evt L'objet est verrouillé ignoré
        C:\WINDOWS\system32\config\SECURITY L'objet est verrouillé ignoré
        C:\WINDOWS\system32\config\SECURITY.LOG L'objet est verrouillé ignoré
        C:\WINDOWS\system32\config\software L'objet est verrouillé ignoré
        C:\WINDOWS\system32\config\software.LOG L'objet est verrouillé ignoré
        C:\WINDOWS\system32\config\SysEvent.Evt L'objet est verrouillé ignoré
        C:\WINDOWS\system32\config\system L'objet est verrouillé ignoré
        C:\WINDOWS\system32\config\system.LOG L'objet est verrouillé ignoré
        C:\WINDOWS\system32\h323log.txt L'objet est verrouillé ignoré
        C:\WINDOWS\system32\LogFiles\WUDF\WUDFTrace.etl L'objet est verrouillé ignoré
        C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR L'objet est verrouillé ignoré
        C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP L'objet est verrouillé ignoré
        C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER L'objet est verrouillé ignoré
        C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP L'objet est verrouillé ignoré
        C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP L'objet est verrouillé ignoré
        C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA L'objet est verrouillé ignoré
        C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP L'objet est verrouillé ignoré
        C:\WINDOWS\Temp\fb_176.lck L'objet est verrouillé ignoré
        C:\WINDOWS\Temp\tmp000022dc\tmp00000000 L'objet est verrouillé ignoré
        C:\WINDOWS\wiadebug.log L'objet est verrouillé ignoré
        C:\WINDOWS\wiaservc.log L'objet est verrouillé ignoré
        C:\WINDOWS\WindowsUpdate.log L'objet est verrouillé ignoré

        Analyse terminée.
        0
    7. Contributeur sécurité
      /!\La manip qui va suivre est strictement réservé a Sblanot et personne d'autres /!\

      > Ferme tout tes navigateurs (donc copie ou imprime les instructions avant)
      - Crée un nouveau document texte : clic droit de souris sur le bureau > Nouveau > Document Texte, et copie/colle dedans les lignes suivantes :

      Driver::
      lvuvc.sys
      Folder::

      File::
      c:\windows\system32\pcqwhmqvjlzqfnr.dll-uninst.exe
      c:\windows\system32\cont_milehighads-remove.exe
      c:\windows\LMI229.tmp
      c:\windows\[u]0/u02782_.tmp
      c:\windows\system32\SET14A9.tmp
      c:\windows\system32\SET149B.tmp
      c:\windows\system32\SET14D2.tmp
      c:\windows\system32\SET1494.tmp
      c:\windows\system32\SET1500.tmp
      c:\windows\system32\SET1491.tmp
      c:\windows\SET8CE.tmp
      c:\windows\system32\SET87A.tmp
      c:\windows\system32\SET856.tmp
      c:\windows\system32\SET86C.tmp
      c:\windows\system32\SET8A8.tmp
      c:\windows\system32\SET8A3.tmp
      c:\windows\system32\SET899.tmp
      c:\windows\system32\SET886.tmp
      c:\windows\system32\SET88F.tmp
      c:\windows\system32\SET881.tmp
      c:\windows\system32\SET880.tmp
      c:\windows\system32\SET1B0.tmp
      c:\windows\[u]0/u02772_.tmp
      c:\windows\system32\SET13DD.tmp
      c:\windows\system32\SET140C.tmp
      c:\windows\system32\SET13B3.tmp
      c:\windows\system32\SET13A5.tmp
      c:\windows\system32\SET139E.tmp
      c:\windows\system32\SET139B.tmp
      c:\windows\system32\SET1E9.tmp
      c:\windows\[u]0/u02763_.tmp
      c:\windows\system32\drivers\_004225_.tmp.dll
      c:\windows\system32\SET1490.tmp
      c:\windows\system32\SET14D4.tmp
      c:\windows\system32\SET1482.tmp
      c:\windows\system32\SET14B8.tmp
      c:\windows\system32\SET1502.tmp
      c:\windows\system32\SET147B.tmp
      c:\windows\system32\SET147D.tmp
      c:\windows\system32\SET1501.tmp
      c:\windows\system32\SET1487.tmp
      c:\windows\system32\SET14E4.tmp
      c:\windows\system32\SET1478.tmp
      c:\windows\system32\SET721.tmp
      c:\windows\system32\SET552.tmp
      c:\windows\[u]0/u02755_.tmp
      c:\windows\system32\drivers\_004215_.tmp.dll
      c:\windows\system32\drivers\_004206_.tmp.dll
      c:\windows\system32\drivers\_004186_.tmp.dll
      Reg::

      - Enregistre ce fichier sous le nom CFScript
      - Fait un glisser/déposer de ce fichier CFScrïpt sur le fichier ComboFix.exe comme sur cette image. (Clique sur le fichier CFScript, maintient le doigt enfoncé et glisse la souris pour que l'icône du CFScript vienne recouvrir l'icône de Combofix. Relache la souris.) Combofix va démarrer.
      - Une fenêtre bleue va apparaître: au message qui apparaît ( Type 1 to continue, or 2 to abort) , tape 1 puis valide.
      - Patiente le temps du scan.Le bureau va disparaître à plusieurs reprises: c'est normal!
      - Ne touche à rien tant que le scan n'est pas terminé sinon le PC peut planter !
      - Une fois le scan achevé, un rapport va s'afficher: poste son contenu.
      Note : Si le fichier ne s'ouvre pas, il se trouve ici > C:\ComboFix.txt
      0
      1. Salut,
        ComboFix 09-01-19.01 - Utilisateur 2009-01-21 18:58:40.3 - NTFSx86
        Microsoft Windows XP Édition familiale 5.1.2600.3.1252.1.1036.18.895.561 [GMT 1:00]
        Lancé depuis: c:\documents and settings\Utilisateur\Bureau\ComboFix.exe
        Commutateurs utilisés :: c:\documents and settings\Utilisateur\Bureau\CFScript.txt
        AV: BitDefender Antivirus *On-access scanning disabled* (Updated)
        FW: Online Armor Firewall *disabled*
        FW: Pare-feu BitDefender *disabled*
        * Un nouveau point de restauration a été créé

        AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !!

        FILE ::
        c:\windows\[u]0/u02755_.tmp
        c:\windows\[u]0/u02763_.tmp
        c:\windows\[u]0/u02772_.tmp
        c:\windows\[u]0/u02782_.tmp
        c:\windows\LMI229.tmp
        c:\windows\SET8CE.tmp
        c:\windows\system32\cont_milehighads-remove.exe
        c:\windows\system32\drivers\_004186_.tmp.dll
        c:\windows\system32\drivers\_004206_.tmp.dll
        c:\windows\system32\drivers\_004215_.tmp.dll
        c:\windows\system32\drivers\_004225_.tmp.dll
        c:\windows\system32\pcqwhmqvjlzqfnr.dll-uninst.exe
        c:\windows\system32\SET139B.tmp
        c:\windows\system32\SET139E.tmp
        c:\windows\system32\SET13A5.tmp
        c:\windows\system32\SET13B3.tmp
        c:\windows\system32\SET13DD.tmp
        c:\windows\system32\SET140C.tmp
        c:\windows\system32\SET1478.tmp
        c:\windows\system32\SET147B.tmp
        c:\windows\system32\SET147D.tmp
        c:\windows\system32\SET1482.tmp
        c:\windows\system32\SET1487.tmp
        c:\windows\system32\SET1490.tmp
        c:\windows\system32\SET1491.tmp
        c:\windows\system32\SET1494.tmp
        c:\windows\system32\SET149B.tmp
        c:\windows\system32\SET14A9.tmp
        c:\windows\system32\SET14B8.tmp
        c:\windows\system32\SET14D2.tmp
        c:\windows\system32\SET14D4.tmp
        c:\windows\system32\SET14E4.tmp
        c:\windows\system32\SET1500.tmp
        c:\windows\system32\SET1501.tmp
        c:\windows\system32\SET1502.tmp
        c:\windows\system32\SET1B0.tmp
        c:\windows\system32\SET1E9.tmp
        c:\windows\system32\SET552.tmp
        c:\windows\system32\SET721.tmp
        c:\windows\system32\SET856.tmp
        c:\windows\system32\SET86C.tmp
        c:\windows\system32\SET87A.tmp
        c:\windows\system32\SET880.tmp
        c:\windows\system32\SET881.tmp
        c:\windows\system32\SET886.tmp
        c:\windows\system32\SET88F.tmp
        c:\windows\system32\SET899.tmp
        c:\windows\system32\SET8A3.tmp
        c:\windows\system32\SET8A8.tmp
        .

        (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
        .

        c:\windows\SET8CE.tmp
        c:\windows\system32\cont_milehighads-remove.exe
        c:\windows\system32\drivers\_004186_.tmp.dll
        c:\windows\system32\drivers\_004206_.tmp.dll
        c:\windows\system32\drivers\_004215_.tmp.dll
        c:\windows\system32\drivers\_004225_.tmp.dll
        c:\windows\system32\pcqwhmqvjlzqfnr.dll-uninst.exe
        c:\windows\system32\SET139B.tmp
        c:\windows\system32\SET139E.tmp
        c:\windows\system32\SET13A5.tmp
        c:\windows\system32\SET13B3.tmp
        c:\windows\system32\SET13DD.tmp
        c:\windows\system32\SET140C.tmp
        c:\windows\system32\SET1478.tmp
        c:\windows\system32\SET147B.tmp
        c:\windows\system32\SET147D.tmp
        c:\windows\system32\SET1482.tmp
        c:\windows\system32\SET1487.tmp
        c:\windows\system32\SET1490.tmp
        c:\windows\system32\SET1491.tmp
        c:\windows\system32\SET1494.tmp
        c:\windows\system32\SET149B.tmp
        c:\windows\system32\SET14A9.tmp
        c:\windows\system32\SET14B8.tmp
        c:\windows\system32\SET14D2.tmp
        c:\windows\system32\SET14D4.tmp
        c:\windows\system32\SET14E4.tmp
        c:\windows\system32\SET1500.tmp
        c:\windows\system32\SET1501.tmp
        c:\windows\system32\SET1502.tmp
        c:\windows\system32\SET1B0.tmp
        c:\windows\system32\SET1E9.tmp
        c:\windows\system32\SET552.tmp
        c:\windows\system32\SET721.tmp
        c:\windows\system32\SET856.tmp
        c:\windows\system32\SET86C.tmp
        c:\windows\system32\SET87A.tmp
        c:\windows\system32\SET880.tmp
        c:\windows\system32\SET881.tmp
        c:\windows\system32\SET886.tmp
        c:\windows\system32\SET88F.tmp
        c:\windows\system32\SET899.tmp
        c:\windows\system32\SET8A3.tmp
        c:\windows\system32\SET8A8.tmp

        .
        ((((((((((((((((((((((((((((( Fichiers créés du 2008-12-21 au 2009-01-21 ))))))))))))))))))))))))))))))))))))
        .

        2009-01-18 20:55 . 2009-01-19 18:48 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\gtk-2.0
        2009-01-18 20:55 . 2009-01-18 20:55 <REP> d-------- c:\documents and settings\Utilisateur\.thumbnails
        2009-01-18 20:33 . 2009-01-20 20:51 <REP> d-------- c:\documents and settings\Utilisateur\.gimp-2.6
        2009-01-18 20:33 . 2009-01-18 20:33 <REP> d-------- c:\documents and settings\Utilisateur\.gegl-0.0
        2009-01-18 20:32 . 2009-01-18 20:33 <REP> d-------- c:\program files\GIMP-2.0
        2009-01-16 23:44 . 2009-01-16 23:44 <REP> d-------- c:\program files\Vision Objects
        2009-01-16 20:54 . 2009-01-16 20:54 579,584 --a--c--- c:\windows\system32\dllcache\user32.dll
        2009-01-14 20:29 . 2009-01-14 21:44 <REP> d-------- c:\program files\FindyKill
        2009-01-14 18:44 . 2009-01-14 18:44 <REP> d-------- C:\rsit
        2009-01-13 18:20 . 2009-01-17 12:26 37,440 --a------ c:\windows\system32\drivers\pssdklbf.drv
        2009-01-13 18:20 . 2009-01-17 12:26 30,272 --a------ c:\windows\system32\drivers\pssdk31.drv
        2009-01-12 23:30 . 2009-01-13 00:00 <REP> d-------- C:\Lop SD
        2009-01-12 23:12 . 2009-01-13 00:34 <REP> d-------- c:\program files\Ad-remover
        2009-01-11 12:24 . 2009-01-11 12:24 <REP> d-------- c:\program files\Skyline
        2009-01-10 13:24 . 2009-01-10 13:24 <REP> d-------- c:\program files\CCleaner
        2009-01-07 21:13 . 2009-01-07 21:13 850 --a------ c:\windows\system32\ProductTweaks.xml
        2009-01-07 21:13 . 2009-01-07 21:13 385 --a------ c:\windows\system32\user_gensett.xml
        2009-01-07 20:42 . 2009-01-07 20:42 <REP> d-------- c:\program files\Malwarebytes' Anti-Malware
        2009-01-07 20:42 . 2009-01-04 18:38 38,496 --a------ c:\windows\system32\drivers\mbamswissarmy.sys
        2009-01-07 20:42 . 2009-01-04 18:38 15,504 --a------ c:\windows\system32\drivers\mbam.sys
        2009-01-07 20:39 . 2009-01-19 23:20 263 --a------ c:\windows\system32\BDUpdateV1.xml
        2009-01-07 18:59 . 2009-01-07 18:59 <REP> d-------- c:\program files\BitDefender
        2009-01-07 18:59 . 2009-01-07 18:59 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\BitDefender
        2009-01-07 18:59 . 2009-01-07 19:03 <REP> d-------- c:\documents and settings\All Users\Application Data\BitDefender
        2009-01-07 18:58 . 2009-01-07 18:59 <REP> d-------- c:\program files\Fichiers communs\BitDefender
        2009-01-07 18:33 . 2009-01-07 22:21 <REP> d-------- c:\windows\LMI229.tmp
        2009-01-07 13:17 . 2009-01-07 13:17 <REP> d-------- c:\documents and settings\LocalService\Application Data\agi
        2009-01-07 13:16 . 2009-01-07 13:16 2,117,632 --a------ c:\windows\system32\python25.dll
        2009-01-07 13:16 . 2008-09-16 17:26 1,332,197 --a------ c:\windows\system32\pythondll.zip
        2009-01-07 13:16 . 2009-01-07 13:16 339,968 --a------ c:\windows\system32\pythoncom25.dll
        2009-01-07 13:16 . 2009-01-07 13:16 114,688 --a------ c:\windows\system32\pywintypes25.dll
        2009-01-02 10:44 . 2009-01-02 10:44 <REP> d-------- c:\documents and settings\All Users\Application Data\hps
        2008-12-23 16:24 . 2008-12-23 16:24 <REP> d-------- c:\program files\Fichiers communs\Logitech
        2008-12-23 16:20 . 2008-12-23 16:24 <REP> d-------- c:\documents and settings\All Users\Application Data\Logishrd
        2008-12-23 16:19 . 2008-12-23 16:19 <REP> d-------- c:\documents and settings\All Users\Application Data\Logitech
        2008-12-23 16:05 . 2008-04-13 19:33 1,888,992 --------- c:\windows\system32\ati3duag.dll
        2008-12-23 16:05 . 2008-09-10 02:15 1,307,648 --a------ c:\windows\system32\msxml6.dll
        2008-12-23 16:05 . 2008-09-10 02:15 1,307,648 -----c--- c:\windows\system32\dllcache\msxml6.dll
        2008-12-23 16:05 . 2008-04-13 19:33 870,784 --------- c:\windows\system32\ati3d1ag.dll
        2008-12-23 16:05 . 2008-04-13 19:33 377,984 --------- c:\windows\system32\ati2dvaa.dll
        2008-12-23 16:05 . 2008-04-13 19:33 229,376 --------- c:\windows\system32\ati2cqag.dll
        2008-12-23 16:05 . 2008-04-13 19:33 201,728 --------- c:\windows\system32\ati2dvag.dll
        2008-12-23 16:05 . 2008-04-13 19:33 136,192 --------- c:\windows\system32\aaclient.dll
        2008-12-23 16:05 . 2008-04-13 19:04 93,184 --------- c:\windows\system32\msxml6r.dll
        2008-12-23 16:05 . 2008-04-13 19:04 93,184 -----c--- c:\windows\system32\dllcache\msxml6r.dll
        2008-12-23 16:05 . 2008-04-13 19:34 23,040 --------- c:\windows\system32\ativmvxx.ax
        2008-12-23 16:05 . 2008-04-13 19:34 9,728 --------- c:\windows\system32\ativdaxx.ax
        2008-12-23 16:02 . 2008-12-23 16:02 <REP> d-------- c:\windows\ServicePackFiles
        2008-12-23 15:59 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02782_.tmp
        2008-12-23 15:29 . 2008-12-23 15:29 <REP> d-------- c:\program files\Microsoft Easy Assist
        2008-12-23 15:29 . 2008-12-23 15:29 <REP> d-------- c:\documents and settings\All Users\Application Data\Applications
        2008-12-22 18:48 . 2008-04-13 19:33 579,584 --a------ c:\windows\system32\SET1B1.tmp
        2008-12-22 18:47 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02772_.tmp
        2008-12-22 18:45 . 2008-08-14 14:23 2,147,328 --a------ c:\windows\system32\ntoskrnl.exe
        2008-12-22 18:21 . 2008-04-13 19:33 2,843,136 --a------ c:\windows\system32\SET2BF.tmp
        2008-12-22 18:20 . 2008-04-13 19:33 1,719,808 --a------ c:\windows\system32\SET280.tmp
        2008-12-22 18:19 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02763_.tmp
        2008-12-22 17:48 . 2008-04-13 19:33 1,719,808 --a------ c:\windows\system32\SET6CE.tmp
        2008-12-22 17:47 . 2008-04-13 19:33 1,499,136 --a------ c:\windows\system32\SET553.tmp
        2008-12-22 17:45 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02755_.tmp
        2008-12-22 14:16 . 2008-12-22 14:16 <REP> d-------- c:\program files\Windows Resource Kits
        2008-12-22 11:34 . 2004-08-05 13:00 71,040 --------- c:\windows\system32\drivers\_004196_.tmp.dll
        2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\system32\fr
        2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\system32\bits
        2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\l2schemas
        2008-12-22 10:50 . 2008-12-23 15:56 <REP> d-------- c:\windows\EHome
        2008-12-21 12:03 . 2008-12-21 12:03 <REP> d-------- c:\program files\Logitech
        2008-12-21 11:37 . 2008-07-26 16:26 4,658,584 -ra------ c:\windows\system32\drivers\lvuvc.sys
        2008-12-21 11:37 . 2008-07-26 16:25 627,864 -ra------ c:\windows\system32\drivers\lvrs.sys
        2008-12-21 11:37 . 2008-07-26 16:26 490,008 -ra------ c:\windows\system32\LVUI2.dll
        2008-12-21 11:37 . 2008-07-26 16:26 465,432 -ra------ c:\windows\system32\LVUI2RC.dll
        2008-12-21 11:37 . 2008-07-26 16:23 416,280 -ra------ c:\windows\system32\lvcodec2.dll
        2008-12-21 11:37 . 2008-07-26 16:23 195,096 -ra------ c:\windows\system32\lvci11801048.dll
        2008-12-21 11:37 . 2008-07-26 15:42 66,482 -ra------ c:\windows\system32\lvcoinst.ini
        2008-12-21 11:37 . 2008-07-26 16:26 41,752 -ra------ c:\windows\system32\drivers\LVUSBSta.sys
        2008-12-21 11:37 . 2008-07-26 15:46 25,974 -ra------ c:\windows\system32\Repository.reg
        2008-12-21 11:37 . 2009-01-21 10:12 0 --a------ c:\windows\system32\drivers\lvuvc.hs
        2008-12-21 11:37 . 2009-01-21 10:12 0 --a------ c:\windows\system32\drivers\logiflt.iad
        2008-12-21 11:12 . 2008-12-21 11:43 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\ntr
        2008-12-21 11:01 . 2008-12-21 11:01 <REP> d-------- c:\program files\Microsoft CAPICOM 2.1.0.2

        .
        (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
        .
        2009-01-21 18:01 81,984 ----a-w c:\windows\system32\bdod.bin
        2009-01-21 17:57 --------- d-----w c:\documents and settings\Utilisateur\Application Data\OnlineArmor
        2009-01-21 17:53 --------- d-----w c:\program files\Wanadoo
        2009-01-19 18:47 242,184 ----a-w c:\windows\system32\drivers\bdfsfltr.sys
        2009-01-18 17:51 --------- d-----w c:\program files\Palm
        2009-01-16 22:44 --------- d--h--w c:\program files\InstallShield Installation Information
        2009-01-16 22:36 --------- d-----w c:\documents and settings\Utilisateur\Application Data\LimeWire
        2009-01-16 21:56 --------- d-----w c:\program files\eMule
        2009-01-10 11:14 --------- d-----w c:\program files\QuickTime
        2009-01-10 11:13 --------- d-----w c:\program files\LimeWire
        2009-01-02 09:09 4,424 ----a-w c:\documents and settings\Utilisateur\Application Data\ViewerApp.dat
        2008-12-23 15:20 --------- d-----w c:\program files\Fichiers communs\LogiShrd
        2008-12-20 10:27 --------- d-----w c:\program files\Microsoft Silverlight
        2008-12-20 10:26 --------- d-----w c:\program files\Windows Live Toolbar
        2008-12-20 10:26 --------- d-----w c:\program files\Windows Live
        2008-12-20 10:25 --------- d-----w c:\program files\Microsoft Sync Framework
        2008-12-20 10:10 --------- d-----w c:\program files\Windows Live SkyDrive
        2008-12-20 09:52 --------- d-----w c:\program files\Microsoft
        2008-12-20 09:45 --------- d-----w c:\program files\Fichiers communs\Windows Live
        2008-12-11 10:57 333,952 ----a-w c:\windows\system32\drivers\srv.sys
        2008-12-08 19:13 --------- d-----w c:\program files\Migros
        2008-12-08 16:01 55,136 ----a-w c:\windows\system32\drivers\fssfltr_tdi.sys
        2008-12-04 23:11 308,584 ----a-w c:\windows\WLXPGSS.SCR
        2008-12-02 21:37 49,480 ----a-w c:\windows\system32\sirenacm.dll
        2008-11-30 18:59 --------- d-----w c:\program files\Fichiers communs\Jasc Software Inc
        2008-11-30 18:59 --------- d-----w c:\documents and settings\All Users\Application Data\InstallShield
        2008-11-30 18:58 --------- d-----w c:\program files\Jasc Software Inc
        2008-11-30 18:58 --------- d-----w c:\program files\Fichiers communs\InstallShield
        2008-11-30 18:58 --------- d-----w c:\documents and settings\Utilisateur\Application Data\Jasc Software Inc
        2008-11-30 18:54 --------- d-----w c:\documents and settings\All Users\Application Data\WinZip
        2008-11-25 19:43 --------- d-----w c:\program files\Fichiers communs\Ahead
        2008-11-25 19:35 --------- d-----w c:\documents and settings\All Users\Application Data\Nero
        2008-11-21 16:52 --------- d-----w c:\documents and settings\All Users\Application Data\NVIDIA
        2008-10-23 12:36 286,720 ----a-w c:\windows\system32\gdi32.dll
        2007-08-02 21:29 278,528 ----a-w c:\program files\Fichiers communs\FDEUnInstaller.exe
        2007-02-11 09:37 4,562,152 ----a-w c:\program files\80 cd7 - 06 - Huey Lewis and the News - I Want a New Drug.mp3
        .

        ((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
        .
        .
        *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
        REGEDIT4

        [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
        "WOOKIT"="c:\progra~1\Wanadoo\Shell.exe" [2004-08-23 122880]
        "ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-13 15360]
        "swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-08-09 68856]

        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
        "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-10-30 7634944]
        "LogitechCommunicationsManager"="c:\program files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe" [2008-08-14 565008]
        "LogitechQuickCamRibbon"="c:\program files\Logitech\QuickCam\Quickcam.exe" [2008-08-14 2407184]
        "QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2007-11-01 155648]
        "fssui"="c:\program files\Windows Live\Family Safety\fsui.exe" [2008-12-08 453984]
        "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]
        "BDAgent"="c:\program files\BitDefender\BitDefender 2009\bdagent.exe" [2009-01-19 741376]
        "BitDefender Antiphishing Helper"="c:\program files\BitDefender\BitDefender 2009\IEShow.exe" [2008-10-17 69632]
        "OnlineArmor GUI"="c:\program files\Tall Emu\Online Armor\oaui.exe" [2007-11-16 5029952]
        "BluetoothAuthenticationAgent"="bthprops.cpl" [2008-04-13 c:\windows\system32\bthprops.cpl]

        [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
        "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-13 15360]

        c:\documents and settings\Utilisateur\Menu D‚marrer\Programmes\D‚marrage\
        D‚marrage d'Office.lnk - c:\program files\Microsoft Office\Office\OSA.EXE [1996-12-16 51984]
        Logitech . Enregistrement du produit.lnk - c:\program files\Logitech\QuickCam\eReg.exe [2008-02-13 493832]
        Microsoft Recherche acc‚l‚r‚e.lnk - c:\program files\Microsoft Office\Office\FINDFAST.EXE [1996-12-16 111376]

        c:\documents and settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
        HotSync Manager.lnk - c:\program files\Palm\Hotsync.exe [2008-01-03 1392640]
        HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2007-03-11 210520]
        InterVideo WinCinema Manager.lnk - c:\program files\InterVideo\Common\Bin\WinCinemaMgr.exe [2007-08-07 303104]
        Picture Package Menu.lnk - c:\program files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe [2007-08-28 151552]
        Picture Package VCD Maker.lnk - c:\program files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe [2007-08-28 106496]
        Ulead Photo Express Calendar Checker.lnk - c:\program files\Ulead Systems\Ulead Photo Express 4.0 Trial\CalCheck.exe [2007-09-01 57344]

        [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
        "NoStartMenuSubFolders"= 1 (0x1)
        "NoFavoritesMenu"= 1 (0x1)

        [hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
        "{4F07DA45-8170-4859-9B5F-037EF2970034}"= "c:\progra~1\TALLEM~1\ONLINE~1\oaevent.dll" [2007-11-16 633344]

        [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
        "EnableFirewall"= 0 (0x0)

        [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
        "%windir%\\system32\\sessmgr.exe"=
        "c:\\Program Files\\Messenger\\msmsgs.exe"=
        "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
        "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
        "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"=
        "c:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"=
        "c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
        "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
        "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
        "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"=
        "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=
        "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqnrs08.exe"=
        "c:\\Program Files\\LimeWire\\LimeWire.exe"=
        "c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
        "c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
        "%windir%\\Network Diagnostic\\xpnetdiag.exe"=
        "c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
        "c:\\Program Files\\eMule\\emule.exe"=

        [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
        "2799:UDP"= 2799:UDP:Altova License Metering Port (UDP)
        "2799:TCP"= 2799:TCP:Altova License Metering Port (TCP)

        R1 NDISRD;NDISRD;c:\windows\system32\drivers\ndisrd.sys [2008-09-15 18944]
        R1 OADevice;OADriver;c:\windows\system32\drivers\OADriver.sys [2008-09-15 68608]
        R1 OAmon;OAmon;c:\windows\system32\drivers\OAmon.sys [2008-09-15 25600]
        R3 bdfm;BDFM;c:\windows\system32\drivers\bdfm.sys [2008-09-18 111112]
        R3 Bdfndisf;BitDefender Firewall NDIS Filter Service;c:\windows\system32\drivers\bdfndisf.sys [2008-10-17 104328]
        R4 BDVEDISK;BDVEDISK;c:\program files\BitDefender\BitDefender 2009\BDVEDISK.sys [2008-09-04 82696]
        R4 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [2008-12-20 55136]
        R4 fsssvc;Windows Live Contrôle parental;c:\program files\Windows Live\Family Safety\fsssvc.exe [2008-12-08 533344]
        R4 ScanDrv;ScanDrv;c:\windows\system32\drivers\SCANDRV.SYS [2007-11-11 189628]
        R4 SeaPort;SeaPort;c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2008-12-04 226640]
        R4 SvcOnlineArmor;Online Armor;c:\program files\Tall Emu\Online Armor\oasrv.exe [2008-09-15 4625984]
        S1 SASDIFSV;SASDIFSV;\??\c:\program files\SUPERAntiSpyware\SASDIFSV.SYS --> c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [?]
        S1 SASKUTIL;SASKUTIL;\??\c:\program files\SUPERAntiSpyware\SASKUTIL.sys --> c:\program files\SUPERAntiSpyware\SASKUTIL.sys [?]
        S3 Arrakis3;BitDefender Arrakis Server;c:\program files\Fichiers communs\BitDefender\BitDefender Arrakis Server\bin\Arrakis3.exe [2008-07-17 118784]
        S3 maconfservice;Ma-Config Service;c:\program files\ma-config.com\maconfservice.exe [2008-09-02 191656]
        S3 PsSdk31;PsSdk31;c:\windows\system32\drivers\pssdk31.drv [2009-01-13 30272]
        S3 PsSdkLBF;PsSdkLBF;c:\windows\system32\drivers\pssdklbf.drv [2009-01-13 37440]
        S3 SASENUM;SASENUM;\??\c:\program files\SUPERAntiSpyware\SASENUM.SYS --> c:\program files\SUPERAntiSpyware\SASENUM.SYS [?]
        S3 SIS163u;SiS 163 usb Wireless LAN Adapter Driver;c:\windows\system32\drivers\sis163u.sys [2007-08-07 167424]

        --- Autres Services/Pilotes en mémoire ---

        *NewlyCreated* - 2DACBEF2
        *Deregistered* - 2dacbef2

        [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
        HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
        hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
        bdx REG_MULTI_SZ scan
        .
        .
        ------- Examen supplémentaire -------
        .
        uStart Page = hxxp://www.orange.fr/
        uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
        mWindow Title =
        uInternet Connection Wizard,ShellNext = iexplore
        uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
        IE: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
        IE: { - c:\program files\Messenger\msmsgs.exe
        TCP: {60219892-9BD6-4388-818E-20464378E3CF} = 192.168.1.1
        Handler: skyline - {3a4f9195-65a8-11d5-85c1-0001023952c1} - c:\program files\Skyline\TerraExplorer\TerraExplorerX.dll
        DPF: CabBuilder - hxxp://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
        DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - hxxp://fichiers.touslesdrivers.com/fichiers/hardwaredetection/hardwaredetection_3_0_3_1.cab
        DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} - hxxp://game02.zylom.com/activex/zylomgamesplayer.cab
        DPF: {EBF85371-A38F-485B-B28F-0B4C82D25937} - hxxp://update.hpphoto.com/download/HPSWUpdate.ocx
        .

        **************************************************************************

        catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
        Rootkit scan 2009-01-21 19:02:14
        Windows 5.1.2600 Service Pack 3 NTFS

        Recherche de processus cachés ...

        Recherche d'éléments en démarrage automatique cachés ...

        Recherche de fichiers cachés ...

        Scan terminé avec succès
        Fichiers cachés: 0

        **************************************************************************

        [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PsSdk31]
        "ImagePath"="\??\c:\windows\system32\Drivers\pssdk31.drv"

        [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PsSdkLBF]
        "ImagePath"="\??\c:\windows\system32\Drivers\pssdklbf.drv"
        .
        --------------------- CLES DE REGISTRE BLOQUEES ---------------------

        [HKEY_USERS\S-1-5-21-1454471165-1078145449-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{BFC5E433-B2B2-0060-4CE0-F7CA7AF43E40}*]
        @Allowed: (Read) (RestrictedCode)
        @Allowed: (Read) (RestrictedCode)
        "iaipnlkocglcilfkkb"=hex:6b,61,6d,6a,63,6e,63,6b,6a,64,63,6e,66,64,65,70,6b,63,
        70,63,65,69,00,00
        "haoplkhlccemoagi"=hex:6b,61,6d,6a,63,6e,63,6b,6a,64,63,6e,66,64,65,70,6b,63,
        70,63,65,69,00,00
        .
        Heure de fin: 2009-01-21 19:04:16
        ComboFix-quarantined-files.txt 2009-01-21 18:04:13
        ComboFix2.txt 2009-01-19 18:23:37
        ComboFix3.txt 2008-09-14 07:46:09

        Avant-CF: 208 594 612 224 octets libres
        Après-CF: 208,643,608,576 octets libres

        365 --- E O F --- 2009-01-21 10:00:20
        0
    8. Contributeur sécurité
      Ok tu va le passer ici : https://virusscan.jotti.org/
      0
      1. et voila :

        The file you uploaded is 0 bytes. It is very likely a firewall or a piece of malware is prohibiting you from uploading this file
        0
    9. Contributeur sécurité
      lut'

      le rapport V.T de c:\documents and settings\Utilisateur\Tracing doit ressmbler a celui posté au message #51 .

      Repasse le sur V.T s'il le faut .
      0
      1. Salut
        désolé mais voila ce que j'ai comme rapport : 0 bytes size received / Se ha recibido un archivo vacio
        0
    10. salut ;
      c:\documents and settings\Utilisateur\Tracing =post#52
      c:\windows\system32\dllcache\user32.dll =post#51
      0
      1. Contributeur sécurité
        A quel fichier correspond le rapport post#51 ? Et ou est le deuxieme rapport ? (qui doit etre presque identique au premier ) .

        Gen Hackman : Oui j'avais vu pour la console de récup ...
        0
        1. AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE

          :-(
          0
          1. Contributeur sécurité
            ton pare-feu Bitdefender est bien désactivé ?

            Il va falloir analyser un ou des fichier(s) suspect(s) !

            Il se peut qu'il se trouvent dans les " dossiers cachés " du systeme.
            Il faut donc les rendre visibles pour le scan.

            Pour afficher les dossiers et fichiers cachés:

            Panneau de configuration > Options des dossiers > onglet Affichage.

            Coche Afficher les fichiers et dossiers cachés,
            Décoche Masquer les extensions de fichiers connus
            Décoche Masquer les fichiers protégés du Système.
            Un message de mise en garde va apparaitre. Clique sur OK pour confirmer ton choix.
            Les fichiers et dossiers cachés du système apparaitront alors dans l'explorateur Windows en transparence.

            Rends toi sur ce site :

            https://www.virustotal.com/gui/

            Clique sur parcourir et cherche ces fichiers : c:\documents and settings\Utilisateur\Tracing
            c:\windows\system32\dllcache\user32.dll

            Clique sur Send File.

            Un rapport va s'élaborer ligne à ligne.

            Attends la fin. Il doit comprendre la taille du fichier envoyé.

            Sauvegarde le rapport avec le bloc-note.

            Copie le dans ta réponse.

            0
            1. Antivirus Version Dernière mise à jour Résultat
              a-squared 4.0.0.73 2009.01.18 -
              AhnLab-V3 2009.1.15.0 2009.01.17 -
              AntiVir 7.9.0.57 2009.01.17 -
              Authentium 5.1.0.4 2009.01.17 -
              Avast 4.8.1281.0 2009.01.16 -
              AVG 8.0.0.229 2009.01.17 -
              BitDefender 7.2 2009.01.18 -
              CAT-QuickHeal 10.00 2009.01.17 -
              ClamAV 0.94.1 2009.01.17 -
              Comodo 934 2009.01.17 -
              DrWeb 4.44.0.09170 2009.01.18 -
              eSafe 7.0.17.0 2009.01.15 -
              eTrust-Vet 31.6.6312 2009.01.17 -
              F-Prot 4.4.4.56 2009.01.17 -
              F-Secure 8.0.14470.0 2009.01.18 -
              Fortinet 3.117.0.0 2009.01.15 -
              GData 19 2009.01.18 -
              Ikarus T3.1.1.45.0 2009.01.18 -
              K7AntiVirus 7.10.594 2009.01.17 Trojan.Win32.Patched.bb
              Kaspersky 7.0.0.125 2009.01.18 -
              McAfee 5498 2009.01.17 -
              McAfee+Artemis 5498 2009.01.17 -
              Microsoft 1.4205 2009.01.17 -
              NOD32 3774 2009.01.17 -
              Norman 5.93.01 2009.01.16 -
              nProtect 2009.1.8.0 2009.01.16 -
              Panda 9.5.1.2 2009.01.17 -
              PCTools 4.4.2.0 2009.01.17 -
              Prevx1 V2 2009.01.18 -
              Rising 21.12.52.00 2009.01.17 -
              SecureWeb-Gateway 6.7.6 2009.01.17 -
              Sophos 4.37.0 2009.01.17 -
              Sunbelt 3.2.1835.2 2009.01.16 -
              Symantec 10 2009.01.18 -
              TheHacker 6.3.1.5.222 2009.01.17 -
              TrendMicro 8.700.0.1004 2009.01.16 -
              VBA32 3.12.8.10 2009.01.17 -
              ViRobot 2009.1.17.1563 2009.01.17 -
              VirusBuster 4.5.11.0 2009.01.17 -
              Information additionnelle
              File size: 579584 bytes
              MD5...: e853f84d3ce2faa2a802e33cf89ac023
              SHA1..: c6823df0535551f6dafac59ca9ece48eb32ab8e0
              SHA256: f06da9ccea0f1fb5e9b1bf66b589f97b3b3e2cb557a58ba672c7b2a4ec9cb10e
              SHA512: a4e2a840b9500381a54a660b7af0c91cc0e48cfaa7a62b58759e9a82fbe8dd06
              9e9708f06df9bea1559fc459d66e7adc9ca5ec2b7b9e352fdb1916d8e62518b9

              ssdeep: 6144:QK2jOC6uhv4+hVthtXbArE+4gwgOvjlxxzk9VHv2F6kScLOUwgZcNiGNgE9
              9F9lI:NvkfrthWrEL3rlnknQfyGcDgEJn

              PEiD..: -
              TrID..: File type identification
              Win32 Executable MS Visual C++ (generic) (65.2%)
              Win32 Executable Generic (14.7%)
              Win32 Dynamic Link Library (generic) (13.1%)
              Generic Win/DOS Executable (3.4%)
              DOS Executable Generic (3.4%)
              PEInfo: PE Structure information

              ( base data )
              entrypointaddress.: 0x7e39b217
              timedatestamp.....: 0x4802c252 (Mon Apr 14 02:32:50 2008)
              machinetype.......: 0x14c (I386)

              ( 4 sections )
              name viradd virsiz rawdsiz ntrpy md5
              .text 0x1000 0x5f283 0x5f400 6.65 69ebe6ff3bf10bf1abe36a70b7f19358
              .data 0x61000 0x1180 0xc00 2.37 0221f43433ecffc8b2aa5459382268d4
              .rsrc 0x63000 0x2a5e0 0x2a600 5.00 312dc1d322d380116af0a8155ba0d026
              .reloc 0x8e000 0x2de4 0x2e00 6.77 68ebe5a2d822be0663a3e935b39d0bae

              ( 3 imports )
              > GDI32.dll: GetClipRgn, ExtSelectClipRgn, GetHFONT, GetMapMode, SetGraphicsMode, GetClipBox, CreateRectRgn, CreateRectRgnIndirect, SetLayout, GetBoundsRect, ExcludeClipRect, PlayEnhMetaFile, GdiGetBitmapBitsSize, CreatePen, Ellipse, CreateEllipticRgn, GdiFixUpHandle, GetTextCharacterExtra, SetTextCharacterExtra, GetCurrentObject, GetViewportOrgEx, SetViewportOrgEx, PolyPatBlt, CreateBrushIndirect, SetBoundsRect, CopyEnhMetaFileW, CopyMetaFileW, GetPaletteEntries, CreatePalette, SetPaletteEntries, bInitSystemAndFontsDirectoriesW, bMakePathNameW, cGetTTFFromFOT, GetPixel, ExtTextOutA, GetTextCharsetInfo, QueryFontAssocStatus, GetCharWidthInfo, GetCharWidthA, GetTextFaceW, GetCharABCWidthsA, GetCharABCWidthsW, SetBrushOrgEx, CreateFontIndirectW, EnumFontsW, GetTextFaceAliasW, GetTextMetricsW, GetTextColor, GetBkMode, GetViewportExtEx, GetWindowExtEx, GdiGetCharDimensions, GdiGetCodePage, GetTextCharset, GdiPrinterThunk, GdiAddFontResourceW, TranslateCharsetInfo, SaveDC, OffsetWindowOrgEx, RestoreDC, ExtTextOutW, GetObjectType, GetDIBits, CreateDIBSection, SetStretchBltMode, SelectPalette, RealizePalette, SetDIBits, CreateDCW, CreateDIBitmap, CreateCompatibleBitmap, SetBitmapBits, DeleteDC, GdiValidateHandle, GdiDllInitialize, CreateSolidBrush, GetStockObject, CreateCompatibleDC, GdiConvertBitmapV5, GdiCreateLocalEnhMetaFile, GdiCreateLocalMetaFilePict, GetRgnBox, CombineRgn, OffsetRgn, MirrorRgn, EnableEUDC, GdiConvertToDevmodeW, GetTextExtentPointA, GetTextExtentPointW, CreateBitmap, SetLayoutWidth, PatBlt, TextOutA, TextOutW, BitBlt, GdiConvertAndCheckDC, StretchBlt, SetRectRgn, GdiReleaseDC, GdiConvertEnhMetaFile, GdiConvertMetaFilePict, DeleteEnhMetaFile, DeleteMetaFile, DeleteObject, GetDIBColorTable, GetDeviceCaps, StretchDIBits, GetLayout, SetBkColor, SetTextColor, GetObjectW, GetBkColor, SetBkMode, SelectObject, IntersectClipRect, GetTextAlign, SetTextAlign, GdiProcessSetup
              > KERNEL32.dll: LocalSize, SizeofResource, LoadResource, FindResourceExW, FindResourceExA, GetModuleHandleW, DisableThreadLibraryCalls, GetCurrentThreadId, IsDBCSLeadByteEx, SearchPathW, ExpandEnvironmentStringsW, LoadLibraryExW, GlobalAddAtomW, GetSystemDirectoryW, GetComputerNameW, GetCurrentProcess, GetCurrentThread, ExitThread, GetExitCodeThread, CreateThread, HeapReAlloc, GlobalHandle, FoldStringW, Sleep, GetStringTypeW, GetStringTypeA, GetCPInfo, HeapSize, CloseHandle, UnmapViewOfFile, MapViewOfFile, CreateFileMappingW, GetFileSize, ReadFile, SetFileTime, GetFileTime, GetSystemWindowsDirectoryW, CopyFileW, MoveFileW, DeleteFileW, CreateProcessW, AddAtomA, AddAtomW, GetAtomNameW, GetAtomNameA, IsValidLocale, ConvertDefaultLocale, CompareStringW, GetCurrentDirectoryW, SetCurrentDirectoryW, lstrlenW, GetLogicalDrives, FindClose, FindNextFileW, FindFirstFileW, GetThreadLocale, ProcessIdToSessionId, GetCurrentProcessId, InterlockedCompareExchange, IsDBCSLeadByte, LCMapStringW, QueryPerformanceCounter, QueryPerformanceFrequency, GetTickCount, lstrlenA, GlobalFindAtomA, GetModuleFileNameA, GetModuleHandleA, GlobalAddAtomA, DelayLoadFailureHook, LoadLibraryA, GetSystemTimeAsFileTime, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, LocalUnlock, LocalLock, LocalReAlloc, GetACP, GetOEMCP, InterlockedIncrement, InterlockedDecrement, SetLastError, GlobalFindAtomW, GlobalAlloc, MultiByteToWideChar, GlobalReAlloc, GetLastError, GetProcAddress, LoadLibraryW, FreeLibrary, lstrcpynW, CreateFileW, WritePrivateProfileStringW, lstrcmpiW, SetEvent, WaitForMultipleObjectsEx, WideCharToMultiByte, GlobalFlags, GetLocaleInfoW, GlobalFree, GetModuleFileNameW, GlobalGetAtomNameW, GlobalGetAtomNameA, InterlockedExchange, DeleteAtom, LocalAlloc, GlobalDeleteAtom, LocalFree, GlobalSize, GlobalLock, GlobalUnlock, GetUserDefaultLCID, HeapAlloc, HeapFree, lstrcpyW, lstrcatW, GetPrivateProfileStringW, RegisterWaitForInputIdle
              > ntdll.dll: NtQueryVirtualMemory, RtlUnwind, RtlNtStatusToDosError, NlsAnsiCodePage, RtlAllocateHeap, qsort, RtlMultiByteToUnicodeSize, LdrFlushAlternateResourceModules, RtlPcToFileHeader, wcsrchr, NtRaiseHardError, RtlIsNameLegalDOS8Dot3, strrchr, sscanf, NtQueryKey, NtEnumerateValueKey, RtlRunEncodeUnicodeString, RtlRunDecodeUnicodeString, _wcsicmp, CsrAllocateCaptureBuffer, CsrCaptureMessageBuffer, CsrFreeCaptureBuffer, NtOpenThreadToken, NtOpenProcessToken, NtQueryInformationToken, CsrClientCallServer, memmove, NtCallbackReturn, RtlUnicodeToMultiByteSize, RtlActivateActivationContextUnsafeFast, RtlDeactivateActivationContextUnsafeFast, RtlInitializeCriticalSection, NtQuerySystemInformation, swprintf, RtlDeleteCriticalSection, RtlImageNtHeader, CsrClientConnectToServer, NtYieldExecution, NtCreateKey, NtSetValueKey, NtDeleteValueKey, RtlQueryInformationActiveActivationContext, RtlReleaseActivationContext, RtlFreeHeap, wcsncpy, wcscmp, wcstoul, wcscat, RtlInitAnsiString, RtlAnsiStringToUnicodeString, RtlCreateUnicodeStringFromAsciiz, RtlFreeUnicodeString, NtOpenDirectoryObject, _chkstk, wcscpy, wcsncat, NtSetSecurityObject, NtQuerySecurityObject, NtQueryInformationProcess, wcstol, wcslen, RtlFindActivationContextSectionString, RtlMultiByteToUnicodeN, RtlUnicodeToMultiByteN, RtlLeaveCriticalSection, RtlEnterCriticalSection, RtlOpenCurrentUser, NtEnumerateKey, NtOpenKey, NtClose, NtQueryValueKey, RtlInitUnicodeString, RtlUnicodeStringToInteger

              ( 732 exports )
              ActivateKeyboardLayout, AdjustWindowRect, AdjustWindowRectEx, AlignRects, AllowForegroundActivation, AllowSetForegroundWindow, AnimateWindow, AnyPopup, AppendMenuA, AppendMenuW, ArrangeIconicWindows, AttachThreadInput, BeginDeferWindowPos, BeginPaint, BlockInput, BringWindowToTop, BroadcastSystemMessage, BroadcastSystemMessageA, BroadcastSystemMessageExA, BroadcastSystemMessageExW, BroadcastSystemMessageW, BuildReasonArray, CalcMenuBar, CallMsgFilter, CallMsgFilterA, CallMsgFilterW, CallNextHookEx, CallWindowProcA, CallWindowProcW, CascadeChildWindows, CascadeWindows, ChangeClipboardChain, ChangeDisplaySettingsA, ChangeDisplaySettingsExA, ChangeDisplaySettingsExW, ChangeDisplaySettingsW, ChangeMenuA, ChangeMenuW, CharLowerA, CharLowerBuffA, CharLowerBuffW, CharLowerW, CharNextA, CharNextExA, CharNextW, CharPrevA, CharPrevExA, CharPrevW, CharToOemA, CharToOemBuffA, CharToOemBuffW, CharToOemW, CharUpperA, CharUpperBuffA, CharUpperBuffW, CharUpperW, CheckDlgButton, CheckMenuItem, CheckMenuRadioItem, CheckRadioButton, ChildWindowFromPoint, ChildWindowFromPointEx, CliImmSetHotKey, ClientThreadSetup, ClientToScreen, ClipCursor, CloseClipboard, CloseDesktop, CloseWindow, CloseWindowStation, CopyAcceleratorTableA, CopyAcceleratorTableW, CopyIcon, CopyImage, CopyRect, CountClipboardFormats, CreateAcceleratorTableA, CreateAcceleratorTableW, CreateCaret, CreateCursor, CreateDesktopA, CreateDesktopW, CreateDialogIndirectParamA, CreateDialogIndirectParamAorW, CreateDialogIndirectParamW, CreateDialogParamA, CreateDialogParamW, CreateIcon, CreateIconFromResource, CreateIconFromResourceEx, CreateIconIndirect, CreateMDIWindowA, CreateMDIWindowW, CreateMenu, CreatePopupMenu, CreateSystemThreads, CreateWindowExA, CreateWindowExW, CreateWindowStationA, CreateWindowStationW, CsrBroadcastSystemMessageExW, CtxInitUser32, DdeAbandonTransaction, DdeAccessData, DdeAddData, DdeClientTransaction, DdeCmpStringHandles, DdeConnect, DdeConnectList, DdeCreateDataHandle, DdeCreateStringHandleA, DdeCreateStringHandleW, DdeDisconnect, DdeDisconnectList, DdeEnableCallback, DdeFreeDataHandle, DdeFreeStringHandle, DdeGetData, DdeGetLastError, DdeGetQualityOfService, DdeImpersonateClient, DdeInitializeA, DdeInitializeW, DdeKeepStringHandle, DdeNameService, DdePostAdvise, DdeQueryConvInfo, DdeQueryNextServer, DdeQueryStringA, DdeQueryStringW, DdeReconnect, DdeSetQualityOfService, DdeSetUserHandle, DdeUnaccessData, DdeUninitialize, DefDlgProcA, DefDlgProcW, DefFrameProcA, DefFrameProcW, DefMDIChildProcA, DefMDIChildProcW, DefRawInputProc, DefWindowProcA, DefWindowProcW, DeferWindowPos, DeleteMenu, DeregisterShellHookWindow, DestroyAcceleratorTable, DestroyCaret, DestroyCursor, DestroyIcon, DestroyMenu, DestroyReasons, DestroyWindow, DeviceEventWorker, DialogBoxIndirectParamA, DialogBoxIndirectParamAorW, DialogBoxIndirectParamW, DialogBoxParamA, DialogBoxParamW, DisableProcessWindowsGhosting, DispatchMessageA, DispatchMessageW, DisplayExitWindowsWarnings, DlgDirListA, DlgDirListComboBoxA, DlgDirListComboBoxW, DlgDirListW, DlgDirSelectComboBoxExA, DlgDirSelectComboBoxExW, DlgDirSelectExA, DlgDirSelectExW, DragDetect, DragObject, DrawAnimatedRects, DrawCaption, DrawCaptionTempA, DrawCaptionTempW, DrawEdge, DrawFocusRect, DrawFrame, DrawFrameControl, DrawIcon, DrawIconEx, DrawMenuBar, DrawMenuBarTemp, DrawStateA, DrawStateW, DrawTextA, DrawTextExA, DrawTextExW, DrawTextW, EditWndProc, EmptyClipboard, EnableMenuItem, EnableScrollBar, EnableWindow, EndDeferWindowPos, EndDialog, EndMenu, EndPaint, EndTask, EnterReaderModeHelper, EnumChildWindows, EnumClipboardFormats, EnumDesktopWindows, EnumDesktopsA, EnumDesktopsW, EnumDisplayDevicesA, EnumDisplayDevicesW, EnumDisplayMonitors, EnumDisplaySettingsA, EnumDisplaySettingsExA, EnumDisplaySettingsExW, EnumDisplaySettingsW, EnumPropsA, EnumPropsExA, EnumPropsExW, EnumPropsW, EnumThreadWindows, EnumWindowStationsA, EnumWindowStationsW, EnumWindows, EqualRect, ExcludeUpdateRgn, ExitWindowsEx, FillRect, FindWindowA, FindWindowExA, FindWindowExW, FindWindowW, FlashWindow, FlashWindowEx, FrameRect, FreeDDElParam, GetActiveWindow, GetAltTabInfo, GetAltTabInfoA, GetAltTabInfoW, GetAncestor, GetAppCompatFlags, GetAppCompatFlags2, GetAsyncKeyState, GetCapture, GetCaretBlinkTime, GetCaretPos, GetClassInfoA, GetClassInfoExA, GetClassInfoExW, GetClassInfoW, GetClassLongA, GetClassLongW, GetClassNameA, GetClassNameW, GetClassWord, GetClientRect, GetClipCursor, GetClipboardData, GetClipboardFormatNameA, GetClipboardFormatNameW, GetClipboardOwner, GetClipboardSequenceNumber, GetClipboardViewer, GetComboBoxInfo, GetCursor, GetCursorFrameInfo, GetCursorInfo, GetCursorPos, GetDC, GetDCEx, GetDesktopWindow, GetDialogBaseUnits, GetDlgCtrlID, GetDlgItem, GetDlgItemInt, GetDlgItemTextA, GetDlgItemTextW, GetDoubleClickTime, GetFocus, GetForegroundWindow, GetGUIThreadInfo, GetGuiResources, GetIconInfo, GetInputDesktop, GetInputState, GetInternalWindowPos, GetKBCodePage, GetKeyNameTextA, GetKeyNameTextW, GetKeyState, GetKeyboardLayout, GetKeyboardLayoutList, GetKeyboardLayoutNameA, GetKeyboardLayoutNameW, GetKeyboardState, GetKeyboardType, GetLastActivePopup, GetLastInputInfo, GetLayeredWindowAttributes, GetListBoxInfo, GetMenu, GetMenuBarInfo, GetMenuCheckMarkDimensions, GetMenuContextHelpId, GetMenuDefaultItem, GetMenuInfo, GetMenuItemCount, GetMenuItemID, GetMenuItemInfoA, GetMenuItemInfoW, GetMenuItemRect, GetMenuState, GetMenuStringA, GetMenuStringW, GetMessageA, GetMessageExtraInfo, GetMessagePos, GetMessageTime, GetMessageW, GetMonitorInfoA, GetMonitorInfoW, GetMouseMovePointsEx, GetNextDlgGroupItem, GetNextDlgTabItem, GetOpenClipboardWindow, GetParent, GetPriorityClipboardFormat, GetProcessDefaultLayout, GetProcessWindowStation, GetProgmanWindow, GetPropA, GetPropW, GetQueueStatus, GetRawInputBuffer, GetRawInputData, GetRawInputDeviceInfoA, GetRawInputDeviceInfoW, GetRawInputDeviceList, GetReasonTitleFromReasonCode, GetRegisteredRawInputDevices, GetScrollBarInfo, GetScrollInfo, GetScrollPos, GetScrollRange, GetShellWindow, GetSubMenu, GetSysColor, GetSysColorBrush, GetSystemMenu, GetSystemMetrics, GetTabbedTextExtentA, GetTabbedTextExtentW, GetTaskmanWindow, GetThreadDesktop, GetTitleBarInfo, GetTopWindow, GetUpdateRect, GetUpdateRgn, GetUserObjectInformationA, GetUserObjectInformationW, GetUserObjectSecurity, GetWinStationInfo, GetWindow, GetWindowContextHelpId, GetWindowDC, GetWindowInfo, GetWindowLongA, GetWindowLongW, GetWindowModuleFileName, GetWindowModuleFileNameA, GetWindowModuleFileNameW, GetWindowPlacement, GetWindowRect, GetWindowRgn, GetWindowRgnBox, GetWindowTextA, GetWindowTextLengthA, GetWindowTextLengthW, GetWindowTextW, GetWindowThreadProcessId, GetWindowWord, GrayStringA, GrayStringW, HideCaret, HiliteMenuItem, IMPGetIMEA, IMPGetIMEW, IMPQueryIMEA, IMPQueryIMEW, IMPSetIMEA, IMPSetIMEW, ImpersonateDdeClientWindow, InSendMessage, InSendMessageEx, InflateRect, InitializeLpkHooks, InitializeWin32EntryTable, InsertMenuA, InsertMenuItemA, InsertMenuItemW, InsertMenuW, InternalGetWindowText, IntersectRect, InvalidateRect, InvalidateRgn, InvertRect, IsCharAlphaA, IsCharAlphaNumericA, IsCharAlphaNumericW, IsCharAlphaW, IsCharLowerA, IsCharLowerW, IsCharUpperA, IsCharUpperW, IsChild, IsClipboardFormatAvailable, IsDialogMessage, IsDialogMessageA, IsDialogMessageW, IsDlgButtonChecked, IsGUIThread, IsHungAppWindow, IsIconic, IsMenu, IsRectEmpty, IsServerSideWindow, IsWinEventHookInstalled, IsWindow, IsWindowEnabled, IsWindowInDestroy, IsWindowUnicode, IsWindowVisible, IsZoomed, KillSystemTimer, KillTimer, LoadAcceleratorsA, LoadAcceleratorsW, LoadBitmapA, LoadBitmapW, LoadCursorA, LoadCursorFromFileA, LoadCursorFromFileW, LoadCursorW, LoadIconA, LoadIconW, LoadImageA, LoadImageW, LoadKeyboardLayoutA, LoadKeyboardLayoutEx, LoadKeyboardLayoutW, LoadLocalFonts, LoadMenuA, LoadMenuIndirectA, LoadMenuIndirectW, LoadMenuW, LoadRemoteFonts, LoadStringA, LoadStringW, LockSetForegroundWindow, LockWindowStation, LockWindowUpdate, LockWorkStation, LookupIconIdFromDirectory, LookupIconIdFromDirectoryEx, MBToWCSEx, MB_GetString, MapDialogRect, MapVirtualKeyA, MapVirtualKeyExA, MapVirtualKeyExW, MapVirtualKeyW, MapWindowPoints, MenuItemFromPoint, MenuWindowProcA, MenuWindowProcW, MessageBeep, MessageBoxA, MessageBoxExA, MessageBoxExW, MessageBoxIndirectA, MessageBoxIndirectW, MessageBoxTimeoutA, MessageBoxTimeoutW, MessageBoxW, ModifyMenuA, ModifyMenuW, MonitorFromPoint, MonitorFromRect, MonitorFromWindow, MoveWindow, MsgWaitForMultipleObjects, MsgWaitForMultipleObjectsEx, NotifyWinEvent, OemKeyScan, OemToCharA, OemToCharBuffA, OemToCharBuffW, OemToCharW, OffsetRect, OpenClipboard, OpenDesktopA, OpenDesktopW, OpenIcon, OpenInputDesktop, OpenWindowStationA, OpenWindowStationW, PackDDElParam, PaintDesktop, PaintMenuBar, PeekMessageA, PeekMessageW, PostMessageA, PostMessageW, PostQuitMessage, PostThreadMessageA, PostThreadMessageW, PrintWindow, PrivateExtractIconExA, PrivateExtractIconExW, PrivateExtractIconsA, PrivateExtractIconsW, PrivateSetDbgTag, PrivateSetRipFlags, PtInRect, QuerySendMessage, QueryUserCounters, RealChildWindowFromPoint, RealGetWindowClass, RealGetWindowClassA, RealGetWindowClassW, ReasonCodeNeedsBugID, ReasonCodeNeedsComment, RecordShutdownReason, RedrawWindow, RegisterClassA, RegisterClassExA, RegisterClassExW, RegisterClassW, RegisterClipboardFormatA, RegisterClipboardFormatW, RegisterDeviceNotificationA, RegisterDeviceNotificationW, RegisterHotKey, RegisterLogonProcess, RegisterMessagePumpHook, RegisterRawInputDevices, RegisterServicesProcess, RegisterShellHookWindow, RegisterSystemThread, RegisterTasklist, RegisterUserApiHook, RegisterWindowMessageA, RegisterWindowMessageW, ReleaseCapture, ReleaseDC, RemoveMenu, RemovePropA, RemovePropW, ReplyMessage, ResolveDesktopForWOW, ReuseDDElParam, ScreenToClient, ScrollChildren, ScrollDC, ScrollWindow, ScrollWindowEx, SendDlgItemMessageA, SendDlgItemMessageW, SendIMEMessageExA, SendIMEMessageExW, SendInput, SendMessageA, SendMessageCallbackA, SendMessageCallbackW, SendMessageTimeoutA, SendMessageTimeoutW, SendMessageW, SendNotifyMessageA, SendNotifyMessageW, SetActiveWindow, SetCapture, SetCaretBlinkTime, SetCaretPos, SetClassLongA, SetClassLongW, SetClassWord, SetClipboardData, SetClipboardViewer, SetConsoleReserveKeys, SetCursor, SetCursorContents, SetCursorPos, SetDebugErrorLevel, SetDeskWallpaper, SetDlgItemInt, SetDlgItemTextA, SetDlgItemTextW, SetDoubleClickTime, SetFocus, SetForegroundWindow, SetInternalWindowPos, SetKeyboardState, SetLastErrorEx, SetLayeredWindowAttributes, SetLogonNotifyWindow, SetMenu, SetMenuContextHelpId, SetMenuDefaultItem, SetMenuInfo, SetMenuItemBitmaps, SetMenuItemInfoA, SetMenuItemInfoW, SetMessageExtraInfo, SetMessageQueue, SetParent, SetProcessDefaultLayout, SetProcessWindowStation, SetProgmanWindow, SetPropA, SetPropW, SetRect, SetRectEmpty, SetScrollInfo, SetScrollPos, SetScrollRange, SetShellWindow, SetShellWindowEx, SetSysColors, SetSysColorsTemp, SetSystemCursor, SetSystemMenu, SetSystemTimer, SetTaskmanWindow, SetThreadDesktop, SetTimer, SetUserObjectInformationA, SetUserObjectInformationW, SetUserObjectSecurity, SetWinEventHook, SetWindowContextHelpId, SetWindowLongA, SetWindowLongW, SetWindowPlacement, SetWindowPos, SetWindowRgn, SetWindowStationUser, SetWindowTextA, SetWindowTextW, SetWindowWord, SetWindowsHookA, SetWindowsHookExA, SetWindowsHookExW, SetWindowsHookW, ShowCaret, ShowCursor, ShowOwnedPopups, ShowScrollBar, ShowStartGlass, ShowWindow, ShowWindowAsync, SoftModalMessageBox, SubtractRect, SwapMouseButton, SwitchDesktop, SwitchToThisWindow, SystemParametersInfoA, SystemParametersInfoW, TabbedTextOutA, TabbedTextOutW, TileChildWindows, TileWindows, ToAscii, ToAsciiEx, ToUnicode, ToUnicodeEx, TrackMouseEvent, TrackPopupMenu, TrackPopupMenuEx, TranslateAccelerator, TranslateAcceleratorA, TranslateAcceleratorW, TranslateMDISysAccel, TranslateMessage, TranslateMessageEx, UnhookWinEvent, UnhookWindowsHook, UnhookWindowsHookEx, UnionRect, UnloadKeyboardLayout, UnlockWindowStation, UnpackDDElParam, UnregisterClassA, UnregisterClassW, UnregisterDeviceNotification, UnregisterHotKey, UnregisterMessagePumpHook, UnregisterUserApiHook, UpdateLayeredWindow, UpdatePerUserSystemParameters, UpdateWindow, User32InitializeImmEntryTable, UserClientDllInitialize, UserHandleGrantAccess, UserLpkPSMTextOut, UserLpkTabbedTextOut, UserRealizePalette, UserRegisterWowHandlers, VRipOutput, VTagOutput, ValidateRect, ValidateRgn, VkKeyScanA, VkKeyScanExA, VkKeyScanExW, VkKeyScanW, WCSToMBEx, WINNLSEnableIME, WINNLSGetEnableStatus, WINNLSGetIMEHotkey, WaitForInputIdle, WaitMessage, Win32PoolAllocationStats, WinHelpA, WinHelpW, WindowFromDC, WindowFromPoint, keybd_event, mouse_event, wsprintfA, wsprintfW, wvsprintfA, wvsprintfW

              CWSandbox info: http://research.sunbelt-software.com/...
              0
            2. Et voila le rapport pour le 1er......

              0 bytes size received / Se ha recibido un archivo vacio
              0
          2. Contributeur sécurité
            Le rapport combofix n'est pas complet ,repostes le STP .
            0
            1. au milieu de l'analyse il a générer une erreur je ne sais pas si ça vient de ça, enfin, revoilà
              ComboFix 09-01-19.01 - Utilisateur 2009-01-19 18:59:21.2 - NTFSx86
              Microsoft Windows XP Édition familiale 5.1.2600.3.1252.1.1036.18.895.481 [GMT 1:00]
              Lancé depuis: c:\documents and settings\Utilisateur\Bureau\ComboFix.exe
              AV: BitDefender Antivirus *On-access scanning disabled* (Updated)
              FW: Online Armor Firewall *disabled*
              FW: Pare-feu BitDefender *enabled*
              * Un nouveau point de restauration a été créé

              AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !!
              .

              (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
              .

              c:\documents and settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat
              c:\documents and settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat
              c:\windows\system32\_004199_.tmp.dll
              c:\windows\system32\_004200_.tmp.dll
              c:\windows\system32\_004201_.tmp.dll
              c:\windows\system32\_004202_.tmp.dll
              c:\windows\system32\_004209_.tmp.dll
              c:\windows\system32\_004210_.tmp.dll
              c:\windows\system32\_004211_.tmp.dll
              c:\windows\system32\_004212_.tmp.dll
              c:\windows\system32\_004213_.tmp.dll
              c:\windows\system32\_004214_.tmp.dll
              c:\windows\system32\_004215_.tmp.dll
              c:\windows\system32\_004216_.tmp.dll
              c:\windows\system32\_004217_.tmp.dll
              c:\windows\system32\_004218_.tmp.dll
              c:\windows\system32\_004219_.tmp.dll
              c:\windows\system32\_004220_.tmp.dll
              c:\windows\system32\_004221_.tmp.dll
              c:\windows\system32\_004222_.tmp.dll
              c:\windows\system32\_004223_.tmp.dll
              c:\windows\system32\_004224_.tmp.dll
              c:\windows\system32\_004225_.tmp.dll
              c:\windows\system32\_004226_.tmp.dll
              c:\windows\system32\_004227_.tmp.dll
              c:\windows\system32\_004228_.tmp.dll
              c:\windows\system32\_004229_.tmp.dll
              c:\windows\system32\_004230_.tmp.dll
              c:\windows\system32\_004231_.tmp.dll
              c:\windows\system32\_004232_.tmp.dll
              c:\windows\system32\_004233_.tmp.dll
              c:\windows\system32\_004234_.tmp.dll
              c:\windows\system32\_004235_.tmp.dll
              c:\windows\system32\_004236_.tmp.dll
              c:\windows\system32\_004237_.tmp.dll
              c:\windows\system32\_004238_.tmp.dll
              c:\windows\system32\_004239_.tmp.dll
              c:\windows\system32\_004240_.tmp.dll
              c:\windows\system32\_004241_.tmp.dll
              c:\windows\system32\_004242_.tmp.dll
              c:\windows\system32\_004243_.tmp.dll
              c:\windows\system32\_004244_.tmp.dll
              c:\windows\system32\_004245_.tmp.dll
              c:\windows\system32\_004246_.tmp.dll
              c:\windows\system32\_004247_.tmp.dll
              c:\windows\system32\_004248_.tmp.dll
              c:\windows\system32\_004249_.tmp.dll
              c:\windows\system32\_004250_.tmp.dll
              c:\windows\system32\_004251_.tmp.dll
              c:\windows\system32\_004252_.tmp.dll
              c:\windows\system32\_004253_.tmp.dll
              c:\windows\system32\_004255_.tmp.dll
              c:\windows\system32\_004256_.tmp.dll
              c:\windows\system32\_004257_.tmp.dll
              c:\windows\system32\_004258_.tmp.dll
              c:\windows\system32\_004259_.tmp.dll
              c:\windows\system32\_004260_.tmp.dll
              c:\windows\system32\_004261_.tmp.dll
              c:\windows\system32\_004262_.tmp.dll
              c:\windows\system32\_004263_.tmp.dll
              c:\windows\system32\_004264_.tmp.dll
              c:\windows\system32\_004265_.tmp.dll
              c:\windows\system32\_004266_.tmp.dll
              c:\windows\system32\_004267_.tmp.dll
              c:\windows\system32\_004268_.tmp.dll
              c:\windows\system32\_004269_.tmp.dll
              c:\windows\system32\_004270_.tmp.dll
              c:\windows\system32\_004271_.tmp.dll
              c:\windows\system32\_004272_.tmp.dll
              c:\windows\system32\_004273_.tmp.dll
              c:\windows\system32\_004274_.tmp.dll
              c:\windows\system32\_004275_.tmp.dll
              c:\windows\system32\_004277_.tmp.dll
              c:\windows\system32\_004278_.tmp.dll
              c:\windows\system32\_004279_.tmp.dll
              c:\windows\system32\_004280_.tmp.dll
              c:\windows\system32\_004281_.tmp.dll
              c:\windows\system32\_004282_.tmp.dll
              c:\windows\system32\_004283_.tmp.dll
              c:\windows\system32\_004284_.tmp.dll
              c:\windows\system32\_004285_.tmp.dll
              c:\windows\system32\_004286_.tmp.dll
              c:\windows\system32\_004287_.tmp.dll
              c:\windows\system32\_004288_.tmp.dll
              c:\windows\system32\_004289_.tmp.dll
              c:\windows\system32\_004290_.tmp.dll
              c:\windows\system32\_004291_.tmp.dll
              c:\windows\system32\_004292_.tmp.dll
              c:\windows\system32\_004293_.tmp.dll
              c:\windows\system32\_004294_.tmp.dll
              c:\windows\system32\_004295_.tmp.dll
              c:\windows\system32\_004296_.tmp.dll
              c:\windows\system32\_004297_.tmp.dll
              c:\windows\system32\_004298_.tmp.dll
              c:\windows\system32\_004299_.tmp.dll
              c:\windows\system32\_004300_.tmp.dll
              c:\windows\system32\_004302_.tmp.dll
              c:\windows\system32\_004303_.tmp.dll
              c:\windows\system32\_004304_.tmp.dll
              c:\windows\system32\_004305_.tmp.dll
              c:\windows\system32\_004307_.tmp.dll
              c:\windows\system32\_004309_.tmp.dll
              c:\windows\system32\_004310_.tmp.dll
              c:\windows\system32\_004311_.tmp.dll
              c:\windows\system32\_004312_.tmp.dll
              c:\windows\system32\_004313_.tmp.dll
              c:\windows\system32\_004314_.tmp.dll
              c:\windows\system32\_004315_.tmp.dll
              c:\windows\system32\_004317_.tmp.dll
              c:\windows\system32\_004318_.tmp.dll
              c:\windows\system32\_004319_.tmp.dll
              c:\windows\system32\_004320_.tmp.dll
              c:\windows\system32\_004321_.tmp.dll
              c:\windows\system32\_004322_.tmp.dll
              c:\windows\system32\_004323_.tmp.dll
              c:\windows\system32\_004324_.tmp.dll
              c:\windows\system32\_004326_.tmp.dll
              c:\windows\system32\_004327_.tmp.dll
              c:\windows\system32\_004328_.tmp.dll
              c:\windows\system32\_004329_.tmp.dll
              c:\windows\system32\_004330_.tmp.dll
              c:\windows\system32\_004331_.tmp.dll
              c:\windows\system32\_004332_.tmp.dll
              c:\windows\system32\_004334_.tmp.dll
              c:\windows\system32\_004335_.tmp.dll
              c:\windows\system32\_004336_.tmp.dll
              c:\windows\system32\_004337_.tmp.dll
              c:\windows\system32\_004339_.tmp.dll
              c:\windows\system32\_004340_.tmp.dll
              c:\windows\system32\_004341_.tmp.dll
              c:\windows\system32\_004342_.tmp.dll
              c:\windows\system32\_004343_.tmp.dll
              c:\windows\system32\_004344_.tmp.dll
              c:\windows\system32\_004345_.tmp.dll
              c:\windows\system32\_004346_.tmp.dll
              c:\windows\system32\_004347_.tmp.dll
              c:\windows\system32\_004348_.tmp.dll
              c:\windows\system32\_004350_.tmp.dll
              c:\windows\system32\_004351_.tmp.dll
              c:\windows\system32\_004352_.tmp.dll
              c:\windows\system32\_004353_.tmp.dll
              c:\windows\system32\_004354_.tmp.dll
              c:\windows\system32\_004355_.tmp.dll
              c:\windows\system32\_004356_.tmp.dll
              c:\windows\system32\_004359_.tmp.dll
              c:\windows\system32\_004360_.tmp.dll
              c:\windows\system32\_004361_.tmp.dll
              c:\windows\system32\_004362_.tmp.dll
              c:\windows\system32\_004363_.tmp.dll
              c:\windows\system32\_004364_.tmp.dll
              c:\windows\system32\_004369_.tmp.dll
              c:\windows\system32\_004371_.tmp.dll
              c:\windows\system32\_004374_.tmp.dll
              c:\windows\system32\_004376_.tmp.dll
              c:\windows\system32\_004377_.tmp.dll
              c:\windows\system32\_004378_.tmp.dll
              c:\windows\system32\_004379_.tmp.dll
              c:\windows\system32\_004382_.tmp.dll
              c:\windows\system32\_004383_.tmp.dll
              c:\windows\system32\_004384_.tmp.dll
              c:\windows\system32\_004385_.tmp.dll
              c:\windows\system32\_004386_.tmp.dll
              c:\windows\system32\_004389_.tmp.dll
              c:\windows\system32\_004391_.tmp.dll
              c:\windows\system32\_004392_.tmp.dll
              c:\windows\system32\_004395_.tmp.dll
              c:\windows\system32\_004399_.tmp.dll
              c:\windows\system32\_004400_.tmp.dll
              c:\windows\system32\_004403_.tmp.dll
              c:\windows\system32\_004404_.tmp.dll
              c:\windows\system32\_004405_.tmp.dll
              c:\windows\system32\_004406_.tmp.dll
              c:\windows\system32\_004407_.tmp.dll
              c:\windows\system32\_004412_.tmp.dll
              c:\windows\system32\_004414_.tmp.dll

              ----- BITS: Il y a peut-être des sites infectés -----

              hxxp://dwd.virginmega.fr
              .
              ((((((((((((((((((((((((((((( Fichiers créés du 2008-12-19 au 2009-01-19 ))))))))))))))))))))))))))))))))))))
              .

              2009-01-18 20:55 . 2009-01-19 18:48 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\gtk-2.0
              2009-01-18 20:55 . 2009-01-18 20:55 <REP> d-------- c:\documents and settings\Utilisateur\.thumbnails
              2009-01-18 20:33 . 2009-01-19 18:48 <REP> d-------- c:\documents and settings\Utilisateur\.gimp-2.6
              2009-01-18 20:33 . 2009-01-18 20:33 <REP> d-------- c:\documents and settings\Utilisateur\.gegl-0.0
              2009-01-18 20:32 . 2009-01-18 20:33 <REP> d-------- c:\program files\GIMP-2.0
              2009-01-16 23:44 . 2009-01-16 23:44 <REP> d-------- c:\program files\Vision Objects
              2009-01-16 20:54 . 2009-01-16 20:54 579,584 --a--c--- c:\windows\system32\dllcache\user32.dll
              2009-01-14 20:29 . 2009-01-14 21:44 <REP> d-------- c:\program files\FindyKill
              2009-01-14 18:44 . 2009-01-14 18:44 <REP> d-------- C:\rsit
              2009-01-13 18:20 . 2009-01-17 12:26 37,440 --a------ c:\windows\system32\drivers\pssdklbf.drv
              2009-01-13 18:20 . 2009-01-17 12:26 30,272 --a------ c:\windows\system32\drivers\pssdk31.drv
              2009-01-12 23:30 . 2009-01-13 00:00 <REP> d-------- C:\Lop SD
              2009-01-12 23:12 . 2009-01-13 00:34 <REP> d-------- c:\program files\Ad-remover
              2009-01-11 12:24 . 2009-01-11 12:24 <REP> d-------- c:\program files\Skyline
              2009-01-10 13:24 . 2009-01-10 13:24 <REP> d-------- c:\program files\CCleaner
              2009-01-07 21:13 . 2009-01-07 21:13 850 --a------ c:\windows\system32\ProductTweaks.xml
              2009-01-07 21:13 . 2009-01-07 21:13 385 --a------ c:\windows\system32\user_gensett.xml
              2009-01-07 20:42 . 2009-01-07 20:42 <REP> d-------- c:\program files\Malwarebytes' Anti-Malware
              2009-01-07 20:42 . 2009-01-04 18:38 38,496 --a------ c:\windows\system32\drivers\mbamswissarmy.sys
              2009-01-07 20:42 . 2009-01-04 18:38 15,504 --a------ c:\windows\system32\drivers\mbam.sys
              2009-01-07 20:39 . 2009-01-12 23:53 336 --a------ c:\windows\system32\BDUpdateV1.xml
              2009-01-07 18:59 . 2009-01-07 18:59 <REP> d-------- c:\program files\BitDefender
              2009-01-07 18:59 . 2009-01-07 18:59 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\BitDefender
              2009-01-07 18:59 . 2009-01-07 19:03 <REP> d-------- c:\documents and settings\All Users\Application Data\BitDefender
              2009-01-07 18:58 . 2009-01-07 18:59 <REP> d-------- c:\program files\Fichiers communs\BitDefender
              2009-01-07 18:33 . 2009-01-07 22:21 <REP> d-------- c:\windows\LMI229.tmp
              2009-01-07 13:17 . 2009-01-07 13:17 <REP> d-------- c:\documents and settings\LocalService\Application Data\agi
              2009-01-07 13:16 . 2009-01-07 13:16 2,117,632 --a------ c:\windows\system32\python25.dll
              2009-01-07 13:16 . 2008-09-16 17:26 1,332,197 --a------ c:\windows\system32\pythondll.zip
              2009-01-07 13:16 . 2009-01-07 13:16 339,968 --a------ c:\windows\system32\pythoncom25.dll
              2009-01-07 13:16 . 2009-01-07 13:16 114,688 --a------ c:\windows\system32\pywintypes25.dll
              2009-01-02 10:44 . 2009-01-02 10:44 <REP> d-------- c:\documents and settings\All Users\Application Data\hps
              2008-12-28 12:59 . 2008-12-28 12:59 68,513 --a------ c:\windows\system32\pcqwhmqvjlzqfnr.dll-uninst.exe
              2008-12-28 12:59 . 2008-12-28 12:59 53,958 --a------ c:\windows\system32\cont_milehighads-remove.exe
              2008-12-23 16:24 . 2008-12-23 16:24 <REP> d-------- c:\program files\Fichiers communs\Logitech
              2008-12-23 16:20 . 2008-12-23 16:24 <REP> d-------- c:\documents and settings\All Users\Application Data\Logishrd
              2008-12-23 16:19 . 2008-12-23 16:19 <REP> d-------- c:\documents and settings\All Users\Application Data\Logitech
              2008-12-23 16:05 . 2008-04-13 19:33 1,888,992 --------- c:\windows\system32\ati3duag.dll
              2008-12-23 16:05 . 2008-09-10 02:15 1,307,648 --a------ c:\windows\system32\msxml6.dll
              2008-12-23 16:05 . 2008-09-10 02:15 1,307,648 -----c--- c:\windows\system32\dllcache\msxml6.dll
              2008-12-23 16:05 . 2008-04-13 19:33 870,784 --------- c:\windows\system32\ati3d1ag.dll
              2008-12-23 16:05 . 2008-04-13 19:33 377,984 --------- c:\windows\system32\ati2dvaa.dll
              2008-12-23 16:05 . 2008-04-13 19:33 229,376 --------- c:\windows\system32\ati2cqag.dll
              2008-12-23 16:05 . 2008-04-13 19:33 201,728 --------- c:\windows\system32\ati2dvag.dll
              2008-12-23 16:05 . 2008-04-13 19:33 136,192 --------- c:\windows\system32\aaclient.dll
              2008-12-23 16:05 . 2008-04-13 19:04 93,184 --------- c:\windows\system32\msxml6r.dll
              2008-12-23 16:05 . 2008-04-13 19:04 93,184 -----c--- c:\windows\system32\dllcache\msxml6r.dll
              2008-12-23 16:05 . 2008-04-13 19:34 23,040 --------- c:\windows\system32\ativmvxx.ax
              2008-12-23 16:05 . 2008-04-13 19:34 9,728 --------- c:\windows\system32\ativdaxx.ax
              2008-12-23 16:02 . 2008-12-23 16:02 <REP> d-------- c:\windows\ServicePackFiles
              2008-12-23 15:59 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02782_.tmp
              2008-12-23 15:29 . 2008-12-23 15:29 <REP> d-------- c:\program files\Microsoft Easy Assist
              2008-12-23 15:29 . 2008-12-23 15:29 <REP> d-------- c:\documents and settings\All Users\Application Data\Applications
              2008-12-22 18:52 . 2008-04-13 11:36 2,986,496 --a------ c:\windows\system32\SET14A9.tmp
              2008-12-22 18:52 . 2008-04-13 19:33 354,304 --a------ c:\windows\system32\SET149B.tmp
              2008-12-22 18:52 . 2008-04-13 19:31 177,152 --a------ c:\windows\system32\SET14D2.tmp
              2008-12-22 18:52 . 2008-04-13 19:33 108,032 --a------ c:\windows\system32\SET1494.tmp
              2008-12-22 18:52 . 2008-04-13 19:33 16,896 --a------ c:\windows\system32\SET1500.tmp
              2008-12-22 18:52 . 2008-04-13 19:33 6,656 --a------ c:\windows\system32\SET1491.tmp
              2008-12-22 18:50 . 2008-04-13 19:34 1,037,824 --a------ c:\windows\SET8CE.tmp
              2008-12-22 18:50 . 2008-04-13 19:33 1,025,024 --a------ c:\windows\system32\SET87A.tmp
              2008-12-22 18:50 . 2008-04-13 19:33 498,688 --a------ c:\windows\system32\SET856.tmp
              2008-12-22 18:50 . 2008-04-13 19:33 200,192 --a------ c:\windows\system32\SET86C.tmp
              2008-12-22 18:50 . 2008-04-13 19:33 193,536 --a------ c:\windows\system32\SET8A8.tmp
              2008-12-22 18:50 . 2008-04-13 19:33 143,360 --a------ c:\windows\system32\SET8A3.tmp
              2008-12-22 18:50 . 2008-04-13 19:33 125,952 --a------ c:\windows\system32\SET899.tmp
              2008-12-22 18:50 . 2008-04-13 19:33 62,464 --a------ c:\windows\system32\SET886.tmp
              2008-12-22 18:50 . 2008-04-13 19:33 58,880 --a------ c:\windows\system32\SET88F.tmp
              2008-12-22 18:50 . 2008-04-13 19:33 52,736 --a------ c:\windows\system32\SET881.tmp
              2008-12-22 18:50 . 2008-04-13 19:33 29,184 --a------ c:\windows\system32\SET880.tmp
              2008-12-22 18:48 . 2008-04-13 19:33 734,720 --a------ c:\windows\system32\SET1B0.tmp
              2008-12-22 18:47 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02772_.tmp
              2008-12-22 18:45 . 2008-08-14 14:23 2,147,328 --a------ c:\windows\system32\ntoskrnl.exe
              2008-12-22 18:24 . 2008-04-13 19:31 177,152 --a------ c:\windows\system32\SET13DD.tmp
              2008-12-22 18:24 . 2008-04-13 19:33 16,896 --a------ c:\windows\system32\SET140C.tmp
              2008-12-22 18:23 . 2008-04-13 11:36 2,986,496 --a------ c:\windows\system32\SET13B3.tmp
              2008-12-22 18:23 . 2008-04-13 19:33 354,304 --a------ c:\windows\system32\SET13A5.tmp
              2008-12-22 18:23 . 2008-04-13 19:33 108,032 --a------ c:\windows\system32\SET139E.tmp
              2008-12-22 18:23 . 2008-04-13 19:33 6,656 --a------ c:\windows\system32\SET139B.tmp
              2008-12-22 18:20 . 2008-04-13 19:33 8,517,632 --a------ c:\windows\system32\SET1E9.tmp
              2008-12-22 18:19 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02763_.tmp
              2008-12-22 18:17 . 2004-08-05 13:00 71,040 --------- c:\windows\system32\drivers\_004225_.tmp.dll
              2008-12-22 17:53 . 2008-04-13 11:36 2,986,496 --a------ c:\windows\system32\SET1490.tmp
              2008-12-22 17:53 . 2008-04-13 19:34 380,928 --a------ c:\windows\system32\SET14D4.tmp
              2008-12-22 17:53 . 2008-04-13 19:33 354,304 --a------ c:\windows\system32\SET1482.tmp
              2008-12-22 17:53 . 2008-04-13 19:31 177,152 --a------ c:\windows\system32\SET14B8.tmp
              2008-12-22 17:53 . 2008-04-13 19:34 110,592 --a------ c:\windows\system32\SET1502.tmp
              2008-12-22 17:53 . 2008-04-13 19:33 108,032 --a------ c:\windows\system32\SET147B.tmp
              2008-12-22 17:53 . 2008-04-13 19:33 80,896 --a------ c:\windows\system32\SET147D.tmp
              2008-12-22 17:53 . 2008-04-13 19:33 30,208 --a------ c:\windows\system32\SET1501.tmp
              2008-12-22 17:53 . 2008-04-13 19:34 28,672 --a------ c:\windows\system32\SET1487.tmp
              2008-12-22 17:53 . 2008-04-13 19:33 16,896 --a------ c:\windows\system32\SET14E4.tmp
              2008-12-22 17:53 . 2008-04-13 19:33 6,656 --a------ c:\windows\system32\SET1478.tmp
              2008-12-22 17:48 . 2008-04-13 19:33 2,843,136 --a------ c:\windows\system32\SET721.tmp
              2008-12-22 17:47 . 2008-04-13 19:33 8,517,632 --a------ c:\windows\system32\SET552.tmp
              2008-12-22 17:45 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02755_.tmp
              2008-12-22 17:42 . 2004-08-05 13:00 71,040 --------- c:\windows\system32\drivers\_004215_.tmp.dll
              2008-12-22 14:24 . 2004-08-05 13:00 71,040 --------- c:\windows\system32\drivers\_004206_.tmp.dll
              2008-12-22 14:16 . 2008-12-22 14:16 <REP> d-------- c:\program files\Windows Resource Kits
              2008-12-22 11:34 . 2004-08-05 13:00 71,040 --------- c:\windows\system32\drivers\_004196_.tmp.dll
              2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\system32\fr
              2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\system32\bits
              2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\l2schemas
              2008-12-22 10:52 . 2004-08-05 13:00 71,040 --a------ c:\windows\system32\drivers\_004186_.tmp.dll
              2008-12-22 10:50 . 2008-12-23 15:56 <REP> d-------- c:\windows\EHome
              2008-12-21 12:03 . 2008-12-21 12:03 <REP> d-------- c:\program files\Logitech
              2008-12-21 11:37 . 2008-07-26 16:26 4,658,584 -ra------ c:\windows\system32\drivers\lvuvc.sys
              2008-12-21 11:37 . 2008-07-26 16:25 627,864 -ra------ c:\windows\system32\drivers\lvrs.sys
              2008-12-21 11:37 . 2008-07-26 16:26 490,008 -ra------ c:\windows\system32\LVUI2.dll
              2008-12-21 11:37 . 2008-07-26 16:26 465,432 -ra------ c:\windows\system32\LVUI2RC.dll
              2008-12-21 11:37 . 2008-07-26 16:23 416,280 -ra------ c:\windows\system32\lvcodec2.dll
              2008-12-21 11:37 . 2008-07-26 16:23 195,096 -ra------ c:\windows\system32\lvci11801048.dll
              2008-12-21 11:37 . 2008-07-26 15:42 66,482 -ra------ c:\windows\system32\lvcoinst.ini
              2008-12-21 11:37 . 2008-07-26 16:26 41,752 -ra------ c:\windows\system32\drivers\LVUSBSta.sys
              2008-12-21 11:37 . 2008-07-26 15:46 25,974 -ra------ c:\windows\system32\Repository.reg
              2008-12-21 11:37 . 2009-01-19 19:17 0 --a------ c:\windows\system32\drivers\lvuvc.hs
              2008-12-21 11:37 . 2009-01-19 19:17 0 --a------ c:\windows\system32\drivers\logiflt.iad
              2008-12-21 11:12 . 2008-12-21 11:43 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\ntr
              2008-12-21 11:01 . 2008-12-21 11:01 <REP> d-------- c:\program files\Microsoft CAPICOM 2.1.0.2
              2008-12-20 16:49 . 2008-07-26 16:26 23,832 -ra------ c:\windows\system32\drivers\lvuvcflt.sys
              2008-12-20 16:42 . 2008-12-23 16:20 <REP> d-------- c:\program files\Fichiers communs\LogiShrd
              2008-12-20 15:43 . 2008-04-13 19:34 20,992 --a------ c:\windows\system32\dshowext.ax
              2008-12-20 11:28 . 2009-01-19 17:41 <REP> d-------- c:\documents and settings\Utilisateur\Tracing
              2008-12-20 11:27 . 2008-12-20 11:27 <REP> d-------- c:\program files\Microsoft Silverlight
              2008-12-20 11:25 . 2008-12-20 11:25 <REP> d-------- c:\program files\Microsoft Sync Framework

              .
              (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
              .
              2009-01-19 18:18 --------- d-----w c:\program files\Wanadoo
              2009-01-18 17:51 --------- d-----w c:\program files\Palm
              2009-01-16 22:44 --------- d--h--w c:\program files\InstallShield Installation Information
              2009-01-16 22:36 --------- d-----w c:\documents and settings\Utilisateur\Application Data\LimeWire
              2009-01-16 21:56 --------- d-----w c:\program files\eMule
              2009-01-10 11:14 --------- d-----w c:\program files\QuickTime
              2009-01-10 11:13 --------- d-----w c:\program files\LimeWire
              2009-01-07 21:46 --------- d-----w c:\documents and settings\Utilisateur\Application Data\OnlineArmor
              2009-01-02 09:09 4,424 ----a-w c:\documents and settings\Utilisateur\Application Data\ViewerApp.dat
              2008-12-20 10:26 --------- d-----w c:\program files\Windows Live Toolbar
              2008-12-20 10:26 --------- d-----w c:\program files\Windows Live
              2008-12-11 10:57 333,952 ----a-w c:\windows\system32\drivers\srv.sys
              2008-12-08 19:13 --------- d-----w c:\program files\Migros
              2008-12-04 23:11 308,584 ----a-w c:\windows\WLXPGSS.SCR
              2008-11-30 18:59 --------- d-----w c:\program files\Fichiers communs\Jasc Software Inc
              2008-11-30 18:59 --------- d-----w c:\documents and settings\All Users\Application Data\InstallShield
              2008-11-30 18:58 --------- d-----w c:\program files\Jasc Software Inc
              2008-11-30 18:58 --------- d-----w c:\program files\Fichiers communs\InstallShield
              2008-11-30 18:58 --------- d-----w c:\documents and settings\Utilisateur\Application Data\Jasc Software Inc
              2008-11-30 18:54 --------- d-----w c:\documents and settings\All Users\Application Data\WinZip
              2008-11-25 19:43 --------- d-----w c:\program files\Fichiers communs\Ahead
              2008-11-25 19:35 --------- d-----w c:\documents and settings\All Users\Application Data\Nero
              2008-11-21 16:52 --------- d-----w c:\documents and settings\All Users\Application Data\NVIDIA
              2007-08-02 21:29 278,528 ----a-w c:\program files\Fichiers communs\FDEUnInstaller.exe
              2007-02-11 09:37 4,562,152 ----a-w c:\program files\80 cd7 - 06 - Huey Lewis and the News - I Want a New Drug.mp3
              .

              ((((((((((((((((((((((((((((( snapshot@2008-09-14_ 9.45.41.23 )))))))))))))))))))))))))))))))))))))))))
              .
              + 2008-02-26 11:49:32 297,984 ----a-w c:\windows\$hf_mig$\KB932823-v3\SP2QFE\msctf.dll
              + 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB932823-v3\spmsg.dll
              + 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB932823-v3\spuninst.exe
              + 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB932823-v3\update\spcustom.dll
              + 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB932823-v3\update\update.exe
              + 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB932823-v3\update\updspapi.dll
              + 2006-12-14 08:53:58 15,072 ----a-w c:\windows\$hf_mig$\KB935448\spmsg.dll
              + 2006-12-14 08:53:58 216,800 ----a-w c:\windows\$hf_mig$\KB935448\spuninst.exe
              + 2006-12-14 08:53:58 22,752 ----a-w c:\windows\$hf_mig$\KB935448\update\spcustom.dll
              + 2006-12-14 08:53:58 727,776 ----a-w c:\windows\$hf_mig$\KB935448\update\update.exe
              + 2006-12-14 08:53:58 394,976 ----a-w c:\windows\$hf_mig$\KB935448\update\updspapi.dll
              + 2007-07-12 23:28:38 765,952 ----a-w c:\windows\$hf_mig$\KB938127-IE7\SP2QFE\vgx.dll
              + 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB938127-IE7\spmsg.dll
              + 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB938127-IE7\spuninst.exe
              + 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB938127-IE7\update\spcustom.dll
              + 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB938127-IE7\update\update.exe
              + 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB938127-IE7\update\updspapi.dll
              + 2008-05-27 17:31:29 765,952 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\SP2QFE\vgx.dll
              + 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\spmsg.dll
              + 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\spuninst.exe
              + 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\update\spcustom.dll
              + 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\update\update.exe
              + 2007-03-06 01:35:47 394,976 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\update\updspapi.dll
              + 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB938464\spmsg.dll
              + 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB938464\spuninst.exe
              + 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB938464\update\spcustom.dll
              + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB938464\update\update.exe
              + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB938464\update\updspapi.dll
              + 2008-05-02 13:33:12 83,968 ----a-w c:\windows\$hf_mig$\KB946648\SP2QFE\msgsc.dll
              + 2008-05-02 14:01:52 83,968 ----a-w c:\windows\$hf_mig$\KB946648\SP3GDR\msgsc.dll
              + 2008-05-02 13:44:40 83,968 ----a-w c:\windows\$hf_mig$\KB946648\SP3QFE\msgsc.dll
              + 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB946648\spmsg.dll
              + 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB946648\spuninst.exe
              + 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB946648\update\spcustom.dll
              + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB946648\update\update.exe
              + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB946648\update\updspapi.dll
              + 2008-01-23 04:56:21 554,008 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\dao360.dll
              + 2007-12-10 12:41:11 518,944 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msexch40.dll
              + 2007-12-10 12:41:11 326,432 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msexcl40.dll
              + 2007-12-10 12:41:11 1,516,568 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjet40.dll
              + 2007-12-10 12:41:11 355,112 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjetol1.dll
              + 2008-03-25 06:56:31 194,144 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjint40.dll
              + 2007-12-10 12:41:12 60,192 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjter40.dll
              + 2007-12-10 12:41:12 248,608 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjtes40.dll
              + 2007-12-10 12:41:12 219,936 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msltus40.dll
              + 2007-12-10 12:41:12 355,104 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\mspbde40.dll
              + 2007-12-10 12:41:13 432,928 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msrd2x40.dll
              + 2007-12-10 12:41:13 322,336 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msrd3x40.dll
              + 2007-12-10 12:41:13 559,904 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msrepl40.dll
              + 2007-12-10 12:41:13 264,992 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\mstext40.dll
              + 2007-12-10 12:41:13 838,432 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\mswdat10.dll
              + 2007-11-01 05:15:27 621,344 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\mswstr10.dll
              + 2007-12-10 12:41:14 355,104 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msxbde40.dll
              + 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB950749\spmsg.dll
              + 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB950749\spuninst.exe
              + 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB950749\update\spcustom.dll
              + 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB950749\update\update.exe
              + 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB950749\update\updspapi.dll
              + 2008-05-08 12:14:51 203,008 ----a-w c:\windows\$hf_mig$\KB950762\SP2QFE\rmcast.sys
              + 2008-05-08 14:02:52 203,136 ----a-w c:\windows\$hf_mig$\KB950762\SP3GDR\rmcast.sys
              + 2008-05-08 13:58:17 203,136 ----a-w c:\windows\$hf_mig$\KB950762\SP3QFE\rmcast.sys
              + 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB950762\spmsg.dll
              + 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB950762\spuninst.exe
              + 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB950762\update\spcustom.dll
              + 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB950762\update\update.exe
              + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB950762\update\updspapi.dll
              + 2008-07-07 20:18:27 253,952 ----a-w c:\windows\$hf_mig$\KB950974\SP2QFE\es.dll
              + 2008-07-07 20:28:20 253,952 ----a-w c:\windows\$hf_mig$\KB950974\SP3GDR\es.dll
              + 2008-07-07 20:24:11 253,952 ----a-w c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
              + 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB950974\spmsg.dll
              + 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB950974\spuninst.exe
              + 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB950974\update\spcustom.dll
              + 2007-11-30 12:39:26 767,352 ----a-w c:\windows\$hf_mig$\KB950974\update\update.exe
              + 2007-11-30 12:39:29 406,392 ----a-w c:\windows\$hf_mig$\KB950974\update\updspapi.dll
              + 2008-04-11 18:40:33 683,520 ----a-w c:\windows\$hf_mig$\KB951066\SP2QFE\inetcomm.dll
              + 2008-04-11 19:05:22 691,712 ----a-w c:\windows\$hf_mig$\KB951066\SP3GDR\inetcomm.dll
              + 2008-04-11 22:23:04 691,712 ----a-w c:\windows\$hf_mig$\KB951066\SP3QFE\inetcomm.dll
              + 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB951066\spmsg.dll
              + 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB951066\spuninst.exe
              + 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB951066\update\spcustom.dll
              + 2007-12-03 15:25:43 767,352 ----a-w c:\windows\$hf_mig$\KB951066\update\update.exe
              + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB951066\update\updspapi.dll
              + 2008-07-14 11:03:00 62,976 ----a-w c:\windows\$hf_mig$\KB951072-v2\SP2QFE\tzchange.exe
              + 2008-07-11 12:42:28 62,976 ----a-w c:\windows\$hf_mig$\KB951072-v2\SP3GDR\tzchange.exe
              + 2008-07-11 12:51:51 62,976 ----a-w c:\windows\$hf_mig$\KB951072-v2\SP3QFE\tzchange.exe
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB951072-v2\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB951072-v2\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB951072-v2\update\spcustom.dll
              + 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB951072-v2\update\update.exe
              + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB951072-v2\update\updspapi.dll
              + 2008-06-14 18:03:13 272,768 ----a-w c:\windows\$hf_mig$\KB951376-v2\SP2QFE\bthport.sys
              + 2008-06-14 17:33:37 272,768 ----a-w c:\windows\$hf_mig$\KB951376-v2\SP3GDR\bthport.sys
              + 2008-06-14 17:40:19 272,768 ----a-w c:\windows\$hf_mig$\KB951376-v2\SP3QFE\bthport.sys
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB951376-v2\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB951376-v2\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB951376-v2\update\spcustom.dll
              + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB951376-v2\update\update.exe
              + 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB951376-v2\update\updspapi.dll
              + 2008-05-07 04:55:47 1,294,336 ----a-w c:\windows\$hf_mig$\KB951698\SP2QFE\quartz.dll
              + 2008-05-07 05:11:24 1,294,336 ----a-w c:\windows\$hf_mig$\KB951698\SP3GDR\quartz.dll
              + 2008-05-07 05:04:59 1,294,336 ----a-w c:\windows\$hf_mig$\KB951698\SP3QFE\quartz.dll
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB951698\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB951698\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB951698\update\spcustom.dll
              + 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB951698\update\update.exe
              + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB951698\update\updspapi.dll
              + 2006-08-16 12:13:24 100,352 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\6to4svc.dll
              + 2008-06-20 10:44:08 138,368 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\afd.sys
              + 2008-06-20 17:37:01 147,968 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\dnsapi.dll
              + 2008-06-20 17:37:01 247,808 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\mswsock.dll
              + 2008-06-20 10:44:42 360,960 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip.sys
              + 2008-06-20 09:32:39 225,920 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip6.sys
              + 2008-06-20 11:40:08 138,496 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\afd.sys
              + 2008-06-20 17:47:22 147,968 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\dnsapi.dll
              + 2008-06-20 17:47:22 247,808 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\mswsock.dll
              + 2008-06-20 11:51:12 361,600 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip.sys
              + 2008-06-20 11:08:27 225,856 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip6.sys
              + 2008-06-20 11:48:03 138,496 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\afd.sys
              + 2008-06-20 17:44:02 147,968 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\dnsapi.dll
              + 2008-06-20 17:44:02 247,808 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll
              + 2008-06-20 11:59:02 361,600 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
              + 2008-06-20 11:16:44 225,856 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip6.sys
              + 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB951748\spmsg.dll
              + 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB951748\spuninst.exe
              + 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB951748\update\spcustom.dll
              + 2007-11-30 12:39:26 767,352 ----a-w c:\windows\$hf_mig$\KB951748\update\update.exe
              + 2007-11-30 12:39:29 406,392 ----a-w c:\windows\$hf_mig$\KB951748\update\updspapi.dll
              + 2008-05-01 15:04:51 331,776 ----a-w c:\windows\$hf_mig$\KB952287\SP2QFE\msadce.dll
              + 2008-05-01 14:36:26 331,776 ----a-w c:\windows\$hf_mig$\KB952287\SP3GDR\msadce.dll
              + 2008-05-01 14:39:23 331,776 ----a-w c:\windows\$hf_mig$\KB952287\SP3QFE\msadce.dll
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB952287\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB952287\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB952287\update\spcustom.dll
              + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB952287\update\update.exe
              + 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB952287\update\updspapi.dll
              + 2008-06-24 16:30:27 74,240 ----a-w c:\windows\$hf_mig$\KB952954\SP2QFE\mscms.dll
              + 2008-06-24 16:44:02 74,240 ----a-w c:\windows\$hf_mig$\KB952954\SP3GDR\mscms.dll
              + 2008-06-24 16:53:52 74,240 ----a-w c:\windows\$hf_mig$\KB952954\SP3QFE\mscms.dll
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB952954\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB952954\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB952954\update\spcustom.dll
              + 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB952954\update\update.exe
              + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB952954\update\updspapi.dll
              + 2008-06-23 15:40:01 124,928 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\advpack.dll
              + 2008-06-23 15:40:01 347,136 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\dxtmsft.dll
              + 2008-06-23 15:40:01 214,528 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\dxtrans.dll
              + 2008-06-23 15:40:01 132,608 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\extmgr.dll
              + 2008-06-23 15:40:01 63,488 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\icardie.dll
              + 2008-06-23 08:23:18 70,656 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ie4uinit.exe
              + 2008-06-23 15:40:01 153,088 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieakeng.dll
              + 2008-06-23 15:40:01 230,400 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieaksie.dll
              + 2008-06-21 05:23:53 161,792 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieakui.dll
              + 2007-04-17 09:32:38 2,455,488 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieapfltr.dat
              + 2008-06-23 15:40:02 383,488 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieapfltr.dll
              + 2008-06-23 15:40:02 388,608 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iedkcs32.dll
              + 2008-06-23 15:40:04 6,068,736 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieframe.dll
              + 2008-06-23 15:40:04 44,544 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iernonce.dll
              + 2008-06-23 15:40:04 267,776 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iertutil.dll
              + 2008-06-23 08:23:18 13,824 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieudinit.exe
              + 2008-06-23 08:23:52 625,664 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iexplore.exe
              + 2008-06-23 15:40:05 27,648 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\jsproxy.dll
              + 2008-06-23 15:40:05 459,264 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\msfeeds.dll
              + 2008-06-23 15:40:05 52,224 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\msfeedsbs.dll
              + 2008-06-23 15:40:07 3,594,240 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\mshtml.dll
              + 2008-06-23 15:40:07 477,696 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\mshtmled.dll
              + 2008-06-23 15:40:07 193,024 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\msrating.dll
              + 2008-06-23 15:40:07 671,232 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\mstime.dll
              + 2008-06-23 15:40:07 102,912 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\occache.dll
              + 2008-06-23 15:40:07 44,544 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\pngfilt.dll
              + 2008-06-23 15:40:07 105,984 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\url.dll
              + 2008-06-23 15:40:08 1,162,752 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\urlmon.dll
              + 2008-06-23 15:40:08 233,472 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\webcheck.dll
              + 2008-06-23 15:40:08 827,904 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\wininet.dll
              + 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB953838-IE7\spmsg.dll
              + 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB953838-IE7\spuninst.exe
              + 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB953838-IE7\update\spcustom.dll
              + 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB953838-IE7\update\update.exe
              + 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB953838-IE7\update\updspapi.dll
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB953839\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB953839\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB953839\update\spcustom.dll
              + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB953839\update\update.exe
              + 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB953839\update\updspapi.dll
              + 2008-09-15 15:14:42 1,847,040 ----a-w c:\windows\$hf_mig$\KB954211\SP2QFE\win32k.sys
              + 2008-09-15 15:26:07 1,846,528 ----a-w c:\windows\$hf_mig$\KB954211\SP3GDR\win32k.sys
              + 2008-09-15 15:20:39 1,847,040 ----a-w c:\windows\$hf_mig$\KB954211\SP3QFE\win32k.sys
              + 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB954211\spmsg.dll
              + 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB954211\spuninst.exe
              + 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB954211\update\spcustom.dll
              + 2008-07-09 07:40:26 767,352 ----a-w c:\windows\$hf_mig$\KB954211\update\update.exe
              + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB954211\update\updspapi.dll
              + 2008-10-03 10:00:40 247,326 ----a-w c:\windows\$hf_mig$\KB954600\SP2QFE\strmdll.dll
              + 2008-10-03 10:03:53 247,326 ----a-w c:\windows\$hf_mig$\KB954600\SP3GDR\strmdll.dll
              + 2008-10-03 09:50:27 247,326 ----a-w c:\windows\$hf_mig$\KB954600\SP3QFE\strmdll.dll
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB954600\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB954600\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB954600\update\spcustom.dll
              + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB954600\update\update.exe
              + 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB954600\update\updspapi.dll
              + 2008-09-04 16:34:21 1,106,944 ----a-w c:\windows\$hf_mig$\KB955069\SP2QFE\msxml3.dll
              + 2008-09-04 17:16:10 1,106,944 ----a-w c:\windows\$hf_mig$\KB955069\SP3GDR\msxml3.dll
              + 2008-09-04 17:12:47 1,106,944 ----a-w c:\windows\$hf_mig$\KB955069\SP3QFE\msxml3.dll
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB955069\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB955069\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB955069\update\spcustom.dll
              + 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB955069\update\update.exe
              + 2008-07-09 12:10:36 406,392 ----a-w c:\windows\$hf_mig$\KB955069\update\updspapi.dll
              + 2008-10-22 09:47:25 62,976 ----a-w c:\windows\$hf_mig$\KB955839\SP2QFE\tzchange.exe
              + 2008-10-23 10:06:59 62,976 ----a-w c:\windows\$hf_mig$\KB955839\SP3GDR\tzchange.exe
              + 2008-10-23 10:17:49 62,976 ----a-w c:\windows\$hf_mig$\KB955839\SP3QFE\tzchange.exe
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB955839\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB955839\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB955839\update\spcustom.dll
              + 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB955839\update\update.exe
              + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB955839\update\updspapi.dll
              + 2008-08-26 09:10:25 124,928 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\advpack.dll
              + 2008-08-26 09:10:25 347,136 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\dxtmsft.dll
              + 2008-08-26 09:10:25 214,528 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\dxtrans.dll
              + 2008-08-26 09:10:25 132,608 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\extmgr.dll
              + 2008-08-26 09:10:25 63,488 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\icardie.dll
              + 2008-08-25 08:43:21 70,656 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ie4uinit.exe
              + 2008-08-26 09:10:26 153,088 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieakeng.dll
              + 2008-08-26 09:10:26 230,400 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieaksie.dll
              + 2008-08-23 05:54:50 161,792 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieakui.dll
              + 2007-04-17 09:32:38 2,455,488 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieapfltr.dat
              + 2008-08-26 09:10:26 380,928 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieapfltr.dll
              + 2008-08-26 09:10:26 388,608 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iedkcs32.dll
              + 2008-10-03 16:22:30 6,068,224 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieframe.dll
              + 2008-08-26 09:10:27 44,544 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iernonce.dll
              + 2008-08-26 09:10:27 267,776 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iertutil.dll
              + 2008-08-25 08:43:21 13,824 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieudinit.exe
              + 2008-08-23 05:56:16 635,848 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iexplore.exe
              + 2008-08-26 09:10:27 27,648 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\jsproxy.dll
              + 2008-08-26 09:10:27 459,264 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\msfeeds.dll
              + 2008-08-26 09:10:27 52,224 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\msfeedsbs.dll
              + 2008-08-26 09:10:28 3,594,752 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mshtml.dll
              + 2008-08-26 09:10:28 477,696 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mshtmled.dll
              + 2008-08-26 09:10:28 193,024 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\msrating.dll
              + 2008-08-26 09:10:29 671,232 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mstime.dll
              + 2008-08-26 09:10:29 102,912 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\occache.dll
              + 2008-08-26 09:10:29 44,544 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\pngfilt.dll
              + 2008-08-26 09:10:29 105,984 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\url.dll
              + 2008-08-26 09:10:29 1,162,752 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\urlmon.dll
              + 2008-08-26 09:10:29 233,472 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\webcheck.dll
              + 2008-08-26 09:10:29 827,904 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\wininet.dll
              + 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB956390-IE7\spmsg.dll
              + 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB956390-IE7\spuninst.exe
              + 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB956390-IE7\update\spcustom.dll
              + 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB956390-IE7\update\update.exe
              + 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB956390-IE7\update\updspapi.dll
              + 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB956391\spmsg.dll
              + 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB956391\spuninst.exe
              + 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB956391\update\spcustom.dll
              + 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB956391\update\update.exe
              + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB956391\update\updspapi.dll
              + 2008-10-23 12:51:46 284,160 ----a-w c:\windows\$hf_mig$\KB956802\SP2QFE\gdi32.dll
              + 2008-10-23 12:36:51 286,720 ----a-w c:\windows\$hf_mig$\KB956802\SP3GDR\gdi32.dll
              + 2008-10-23 12:44:51 286,720 ----a-w c:\windows\$hf_mig$\KB956802\SP3QFE\gdi32.dll
              + 2008-07-08 13:03:54 18,296 ----a-w c:\windows\$hf_mig$\KB956802\spmsg.dll
              + 2008-07-08 13:03:55 234,872 ----a-w c:\windows\$hf_mig$\KB956802\spuninst.exe
              + 2008-07-08 13:03:54 26,488 ----a-w c:\windows\$hf_mig$\KB956802\update\spcustom.dll
              + 2008-07-09 07:40:26 767,352 ----a-w c:\windows\$hf_mig$\KB956802\update\update.exe
              + 2008-07-09 07:40:35 406,392 ----a-w c:\windows\$hf_mig$\KB956802\update\updspapi.dll
              + 2008-08-14 09:48:52 138,368 ----a-w c:\windows\$hf_mig$\KB956803\SP2QFE\afd.sys
              + 2008-08-14 10:04:36 138,496 ----a-w c:\windows\$hf_mig$\KB956803\SP3GDR\afd.sys
              + 2008-08-14 10:34:26 138,496 ----a-w c:\windows\$hf_mig$\KB956803\SP3QFE\afd.sys
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB956803\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB956803\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB956803\update\spcustom.dll
              + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB956803\update\update.exe
              + 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB956803\update\updspapi.dll
              + 2008-08-14 13:39:07 2,144,768 ----a-w c:\windows\$hf_mig$\KB956841\SP2QFE\ntkrnlmp.exe
              + 2008-08-14 13:39:12 2,065,024 ----a-w c:\windows\$hf_mig$\KB956841\SP2QFE\ntkrnlpa.exe
              + 2008-08-14 13:39:03 2,022,912 ----a-w c:\windows\$hf_mig$\KB956841\SP2QFE\ntkrpamp.exe
              + 2008-08-14 13:39:11 2,188,032 ----a-w c:\windows\$hf_mig$\KB956841\SP2QFE\ntoskrnl.exe
              + 2008-08-14 13:23:44 2,147,328 ----a-w c:\windows\$hf_mig$\KB956841\SP3GDR\ntkrnlmp.exe
              + 2008-08-14 13:23:49 2,068,096 ----a-w c:\windows\$hf_mig$\KB956841\SP3GDR\ntkrnlpa.exe
              + 2008-08-14 13:23:44 2,025,984 ----a-w c:\windows\$hf_mig$\KB956841\SP3GDR\ntkrpamp.exe
              + 2008-08-14 13:23:49 2,191,232 ----a-w c:\windows\$hf_mig$\KB956841\SP3GDR\ntoskrnl.exe
              + 2008-08-14 13:55:54 2,147,328 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlmp.exe
              + 2008-08-14 17:26:00 2,068,096 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe
              + 2008-08-14 13:55:47 2,025,984 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrpamp.exe
              + 2008-08-14 17:26:02 2,191,232 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB956841\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB956841\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB956841\update\spcustom.dll
              + 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB956841\update\update.exe
              + 2008-07-09 07:40:35 406,392 ----a-w c:\windows\$hf_mig$\KB956841\update\updspapi.dll
              + 2008-08-28 10:35:33 333,056 ----a-w c:\windows\$hf_mig$\KB957095\SP2QFE\srv.sys
              + 2008-09-08 10:41:42 333,824 ----a-w c:\windows\$hf_mig$\KB957095\SP3GDR\srv.sys
              + 2008-09-08 11:37:19 333,824 ----a-w c:\windows\$hf_mig$\KB957095\SP3QFE\srv.sys
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB957095\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB957095\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB957095\update\spcustom.dll
              + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB957095\update\update.exe
              + 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB957095\update\updspapi.dll
              + 2008-10-24 11:25:29 455,936 ----a-w c:\windows\$hf_mig$\KB957097\SP2QFE\mrxsmb.sys
              + 2008-10-24 11:21:09 455,296 ----a-w c:\windows\$hf_mig$\KB957097\SP3GDR\mrxsmb.sys
              + 2008-10-24 11:41:11 455,936 ----a-w c:\windows\$hf_mig$\KB957097\SP3QFE\mrxsmb.sys
              + 2008-07-08 13:03:54 18,296 ----a-w c:\windows\$hf_mig$\KB957097\spmsg.dll
              + 2008-07-08 13:03:55 234,872 ----a-w c:\windows\$hf_mig$\KB957097\spuninst.exe
              + 2008-07-08 13:03:54 26,488 ----a-w c:\windows\$hf_mig$\KB957097\update\spcustom.dll
              + 2008-07-08 13:03:57 767,352 ----a-w c:\windows\$hf_mig$\KB957097\update\update.exe
              + 2008-07-08 13:04:05 406,392 ----a-w c:\windows\$hf_mig$\KB957097\update\updspapi.dll
              + 2008-10-16 19:33:14 124,928 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\advpack.dll
              + 2008-10-16 19:33:14 347,136 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\dxtmsft.dll
              + 2008-10-16 19:33:14 214,528 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\dxtrans.dll
              + 2008-10-16 19:33:14 132,608 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\extmgr.dll
              + 2008-10-16 19:33:14 63,488 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\icardie.dll
              + 2008-10-16 12:46:08 70,656 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ie4uinit.exe
              + 2008-10-16 19:33:14 153,088 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieakeng.dll
              + 2008-10-16 19:33:14 230,400 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieaksie.dll
              + 2008-10-15 06:33:26 161,792 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieakui.dll
              + 2007-04-17 09:32:38 2,455,488 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieapfltr.dat
              + 2008-10-16 19:33:15 380,928 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieapfltr.dll
              + 2008-10-16 19:33:15 388,608 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iedkcs32.dll
              + 2008-10-16 19:33:16 6,068,224 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieframe.dll
              + 2008-10-16 19:33:16 44,544 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iernonce.dll
              + 2008-10-16 19:33:16 267,776 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iertutil.dll
              + 2008-10-16 12:46:08 13,824 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieudinit.exe
              + 2008-10-15 06:34:58 633,632 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iexplore.exe
              + 2008-10-16 19:33:17 27,648 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\jsproxy.dll
              + 2008-10-16 19:33:18 459,264 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\msfeeds.dll
              + 2008-10-16 19:33:18 52,224 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\msfeedsbs.dll
              + 2008-10-16 19:33:19 3,595,264 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mshtml.dll
              + 2008-10-16 19:33:20 477,696 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mshtmled.dll
              + 2008-10-16 19:33:20 193,024 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\msrating.dll
              + 2008-10-16 19:33:21 671,232 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mstime.dll
              + 2008-10-16 19:33:21 102,912 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\occache.dll
              + 2008-10-16 19:33:21 44,544 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\pngfilt.dll
              + 2008-10-16 19:33:21 105,984 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\url.dll
              + 2008-10-16 19:33:21 1,163,264 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\urlmon.dll
              + 2008-10-16 19:33:22 233,472 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\webcheck.dll
              + 2008-10-16 19:33:22 827,904 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\wininet.dll
              + 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB958215-IE7\spmsg.dll
              + 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB958215-IE7\spuninst.exe
              + 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB958215-IE7\update\spcustom.dll
              + 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB958215-IE7\update\update.exe
              + 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB958215-IE7\update\updspapi.dll
              + 2008-10-15 16:55:13 339,456 ----a-w c:\windows\$hf_mig$\KB958644\SP2QFE\netapi32.dll
              + 2008-10-15 16:35:43 337,408 ----a-w c:\windows\$hf_mig$\KB958644\SP3GDR\netapi32.dll
              + 2008-10-15 16:31:32 339,456 ----a-w c:\windows\$hf_mig$\KB958644\SP3QFE\netapi32.dll
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB958644\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB958644\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB958644\update\spcustom.dll
              + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB958644\update\update.exe
              + 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB958644\update\updspapi.dll
              + 2008-12-13 06:27:45 3,594,752 ----a-w c:\windows\$hf_mig$\KB960714-IE7\SP2QFE\mshtml.dll
              + 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB960714-IE7\spmsg.dll
              + 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB960714-IE7\spuninst.exe
              + 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\spcustom.dll
              + 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\update.exe
              + 2007-03-06 01:35:47 394,976 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\updspapi.dll
              + 2006-10-18 20:47:16 414,208 -c--a-w c:\windows\$NtUninstallKB929399$\msscp.dll
              + 2005-06-28 08:23:26 213,216 -c--a-w c:\windows\$NtUninstallKB929399$\spuninst\spuninst.exe
              + 2005-06-28 08:23:54 371,424 -c--a-w c:\windows\$NtUninstallKB929399$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 294,400 -c--a-w c:\windows\$NtUninstallKB932823-v3$\msctf.dll
              + 2007-03-06 01:34:38 216,800 -c--a-w c:\windows\$NtUninstallKB932823-v3$\spuninst\spuninst.exe
              + 2007-03-06 01:35:48 394,976 -c--a-w c:\windows\$NtUninstallKB932823-v3$\spuninst\updspapi.dll
              + 2006-12-14 08:53:58 216,800 -c--a-w c:\windows\$NtUninstallKB935448$\spuninst\spuninst.exe
              + 2006-12-14 08:53:58 394,976 -c--a-w c:\windows\$NtUninstallKB935448$\spuninst\updspapi.dll
              + 2005-06-28 08:23:40 216,800 -c--a-w c:\windows\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe
              + 2005-06-28 08:23:54 371,424 -c--a-w c:\windows\$NtUninstallKB936782_WMP11$\spuninst\updspapi.dll
              + 2006-10-18 20:47:20 10,834,432 -c--a-w c:\windows\$NtUninstallKB936782_WMP11$\wmp.dll
              + 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB938464_0$\spuninst\spuninst.exe
              + 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB938464_0$\spuninst\updspapi.dll
              + 2005-06-28 08:23:40 216,800 -c--a-w c:\windows\$NtUninstallKB939683$\spuninst\spuninst.exe
              + 2005-06-28 08:23:54 371,424 -c--a-w c:\windows\$NtUninstallKB939683$\spuninst\updspapi.dll
              + 2006-11-03 08:58:34 317,440 -c--a-w c:\windows\$NtUninstallKB939683$\unregmp2.exe
              + 2005-06-28 08:23:40 216,800 -c--a-w c:\windows\$NtUninstallKB941569$\spuninst\spuninst.exe
              + 2005-06-28 08:23:54 371,424 -c--a-w c:\windows\$NtUninstallKB941569$\spuninst\updspapi.dll
              + 2006-10-18 20:47:18 222,208 -c--a-w c:\windows\$NtUninstallKB941569$\wmasf.dll
              + 2004-08-03 23:07:10 82,944 -c--a-w c:\windows\$NtUninstallKB946648_0$\msgsc.dll
              + 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB946648_0$\spuninst\spuninst.exe
              + 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB946648_0$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 561,179 -c--a-w c:\windows\$NtUninstallKB950749$\dao360.dll
              + 2004-08-05 12:00:00 512,029 -c--a-w c:\windows\$NtUninstallKB950749$\msexch40.dll
              + 2004-08-05 12:00:00 319,517 -c--a-w c:\windows\$NtUninstallKB950749$\msexcl40.dll
              + 2004-08-05 12:00:00 1,507,356 -c--a-w c:\windows\$NtUninstallKB950749$\msjet40.dll
              + 2004-08-05 12:00:00 358,976 -c--a-w c:\windows\$NtUninstallKB950749$\msjetol1.dll
              + 2004-08-05 12:00:00 358,976 -c--a-w c:\windows\$NtUninstallKB950749$\msjetoledb40.dll
              + 2004-08-05 12:00:00 184,351 -c--a-w c:\windows\$NtUninstallKB950749$\msjint40.dll
              + 2004-08-05 12:00:00 53,279 -c--a-w c:\windows\$NtUninstallKB950749$\msjter40.dll
              + 2004-08-05 12:00:00 241,693 -c--a-w c:\windows\$NtUninstallKB950749$\msjtes40.dll
              + 2004-08-05 12:00:00 213,023 -c--a-w c:\windows\$NtUninstallKB950749$\msltus40.dll
              + 2004-08-05 12:00:00 348,189 -c--a-w c:\windows\$NtUninstallKB950749$\mspbde40.dll
              + 2004-08-05 12:00:00 421,919 -c--a-w c:\windows\$NtUninstallKB950749$\msrd2x40.dll
              + 2004-08-05 12:00:00 315,423 -c--a-w c:\windows\$NtUninstallKB950749$\msrd3x40.dll
              + 2004-08-05 12:00:00 552,989 -c--a-w c:\windows\$NtUninstallKB950749$\msrepl40.dll
              + 2004-08-05 12:00:00 258,077 -c--a-w c:\windows\$NtUninstallKB950749$\mstext40.dll
              + 2004-08-05 12:00:00 831,519 -c--a-w c:\windows\$NtUninstallKB950749$\mswdat10.dll
              + 2004-08-05 12:00:00 614,429 -c--a-w c:\windows\$NtUninstallKB950749$\mswstr10.dll
              + 2004-08-05 12:00:00 348,189 -c--a-w c:\windows\$NtUninstallKB950749$\msxbde40.dll
              + 2007-03-06 01:34:38 216,800 -c--a-w c:\windows\$NtUninstallKB950749$\spuninst\spuninst.exe
              + 2007-03-06 01:35:48 394,976 -c--a-w c:\windows\$NtUninstallKB950749$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 200,064 -c--a-w c:\windows\$NtUninstallKB950762_0$\rmcast.sys
              + 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB950762_0$\spuninst\spuninst.exe
              + 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB950762_0$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 243,200 -c--a-w c:\windows\$NtUninstallKB950974_0$\es.dll
              + 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB950974_0$\spuninst\spuninst.exe
              + 2007-11-30 12:39:29 406,392 -c--a-w c:\windows\$NtUninstallKB950974_0$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 678,400 -c--a-w c:\windows\$NtUninstallKB951066_0$\inetcomm.dll
              + 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB951066_0$\spuninst\spuninst.exe
              + 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB951066_0$\spuninst\updspapi.dll
              + 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB951072-v2$\spuninst\spuninst.exe
              + 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB951072-v2$\spuninst\updspapi.dll
              + 2004-08-03 22:40:30 274,944 -c--a-w c:\windows\$NtUninstallKB951376-v2_0$\bthport.sys
              + 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB951376-v2_0$\spuninst\spuninst.exe
              + 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$NtUninstallKB951376-v2_0$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 1,293,824 -c--a-w c:\windows\$NtUninstallKB951698_0$\quartz.dll
              + 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB951698_0$\spuninst\spuninst.exe
              + 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB951698_0$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 100,352 -c--a-w c:\windows\$NtUninstallKB951748_0$\6to4svc.dll
              + 2004-08-05 12:00:00 138,496 -c--a-w c:\windows\$NtUninstallKB951748_0$\afd.sys
              + 2004-08-05 12:00:00 148,480 -c--a-w c:\windows\$NtUninstallKB951748_0$\dnsapi.dll
              + 2004-08-05 12:00:00 247,808 -c--a-w c:\windows\$NtUninstallKB951748_0$\mswsock.dll
              + 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB951748_0$\spuninst\spuninst.exe
              + 2007-11-30 12:39:29 406,392 -c--a-w c:\windows\$NtUninstallKB951748_0$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 359,040 -c--a-w c:\windows\$NtUninstallKB951748_0$\tcpip.sys
              + 2004-08-05 12:00:00 223,616 -c--a-w c:\windows\$NtUninstallKB951748_0$\tcpip6.sys
              + 2006-10-18 19:03:58 100,864 -c--a-w c:\windows\$NtUninstallKB952069_WM9$\logagent.exe
              + 2007-07-27 06:28:58 234,872 -c--a-w c:\windows\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe
              + 2007-07-27 08:41:48 382,840 -c--a-w c:\windows\$NtUninstallKB952069_WM9$\spuninst\updspapi.dll
              + 2006-10-18 20:47:20 937,984 -c--a-w c:\windows\$NtUninstallKB952069_WM9$\wmnetmgr.dll
              + 2006-10-18 20:47:22 2,450,944 -c--a-w c:\windows\$NtUninstallKB952069_WM9$\wmvcore.dll
              + 2004-08-05 12:00:00 331,776 -c--a-w c:\windows\$NtUninstallKB952287_0$\msadce.dll
              + 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB952287_0$\spuninst\spuninst.exe
              + 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$NtUninstallKB952287_0$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 73,728 -c--a-w c:\windows\$NtUninstallKB952954_0$\mscms.dll
              + 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB952954_0$\spuninst\spuninst.exe
              + 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB952954_0$\spuninst\updspapi.dll
              + 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB953839$\spuninst\spuninst.exe
              + 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$NtUninstallKB953839$\spuninst\updspapi.dll
              + 2007-07-27 06:28:58 234,872 -c--a-w c:\windows\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe
              + 2007-07-27 08:41:48 382,840 -c--a-w c:\windows\$NtUninstallKB954154_WM11$\spuninst\updspapi.dll
              + 2006-10-18 20:47:20 295,936 -c--a-w c:\windows\$NtUninstallKB954154_WM11$\wmpeffects.dll
              + 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB954211_0$\spuninst\spuninst.exe
              + 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB954211_0$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 1,836,032 -c--a-w c:\windows\$NtUninstallKB954211_0$\win32k.sys
              + 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB954600_0$\spuninst\spuninst.exe
              + 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$NtUninstallKB954600_0$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 246,302 -c--a-w c:\windows\$NtUninstallKB954600_0$\strmdll.dll
              + 2004-08-05 12:00:00 1,236,480 -c--a-w c:\windows\$NtUninstallKB955069_0$\msxml3.dll
              + 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB955069_0$\spuninst\spuninst.exe
              + 2008-07-09 12:10:36 406,392 -c--a-w c:\windows\$NtUninstallKB955069_0$\spuninst\updspapi.dll
              + 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB955839$\spuninst\s
              0
          3. Contributeur sécurité
            sblanot tu va faire ceci :

            Télécharges ComboFix à partir d'un de ces liens :

            http://download.bleepingcomputer.com/sUBs/ComboFix.exe
            https://forospyware.com
            http://www.geekstogo.com/forum/files/file/197-combofix-by-subs/

            Et important, enregistre le sur le bureau.

            Avant d'utiliser ComboFix :

            ? Déconnecte toi d'internet et referme les fenêtres de tous les programmes en cours.

            ? Désactive provisoirement et seulement le temps de l'utilisation de ComboFix,
            la protection en temps réel de ton Antivirus et de tes Antispywares,
            qui peuvent gêner fortement la procédure de recherche et de nettoyage de l'outil.

            Une fois fait, sur ton bureau double-clic sur Combofix.exe.

            - Répond oui au message d'avertissement, pour que le programme commence à procéder à l'analyse du pc.

            /!\ Pendant la durée de cette étape, ne te sert pas du pc et n'ouvre aucun programmes.

            - En fin de scan il est possible que ComboFix ait besoin de redémarrer le pc pour finaliser la désinfection\recherche, laisses-le faire.

            - Un rapport s'ouvrira ensuite dans le bloc notes, ce fichier rapport Combofix.txt,.
            est automatiquement sauvegardé et rangé à C:\Combofix.txt)

            ? Réactive la protection en temps réel de ton Antivirus et de tes Antispywares,
            avant de te reconnecter à internet.

            ? Reviens sur le forum, et copie et colle la totalité du contenu de C:\Combofix.txt dans ton prochain message.
            0
            1. Salut,

              ComboFix 09-01-19.01 - Utilisateur 2009-01-19 18:59:21.2 - NTFSx86
              Microsoft Windows XP Édition familiale 5.1.2600.3.1252.1.1036.18.895.481 [GMT 1:00]
              Lancé depuis: c:\documents and settings\Utilisateur\Bureau\ComboFix.exe
              AV: BitDefender Antivirus *On-access scanning disabled* (Updated)
              FW: Online Armor Firewall *disabled*
              FW: Pare-feu BitDefender *enabled*
              * Un nouveau point de restauration a été créé

              AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !!
              .

              (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
              .

              c:\documents and settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat
              c:\documents and settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat
              c:\windows\system32\_004199_.tmp.dll
              c:\windows\system32\_004200_.tmp.dll
              c:\windows\system32\_004201_.tmp.dll
              c:\windows\system32\_004202_.tmp.dll
              c:\windows\system32\_004209_.tmp.dll
              c:\windows\system32\_004210_.tmp.dll
              c:\windows\system32\_004211_.tmp.dll
              c:\windows\system32\_004212_.tmp.dll
              c:\windows\system32\_004213_.tmp.dll
              c:\windows\system32\_004214_.tmp.dll
              c:\windows\system32\_004215_.tmp.dll
              c:\windows\system32\_004216_.tmp.dll
              c:\windows\system32\_004217_.tmp.dll
              c:\windows\system32\_004218_.tmp.dll
              c:\windows\system32\_004219_.tmp.dll
              c:\windows\system32\_004220_.tmp.dll
              c:\windows\system32\_004221_.tmp.dll
              c:\windows\system32\_004222_.tmp.dll
              c:\windows\system32\_004223_.tmp.dll
              c:\windows\system32\_004224_.tmp.dll
              c:\windows\system32\_004225_.tmp.dll
              c:\windows\system32\_004226_.tmp.dll
              c:\windows\system32\_004227_.tmp.dll
              c:\windows\system32\_004228_.tmp.dll
              c:\windows\system32\_004229_.tmp.dll
              c:\windows\system32\_004230_.tmp.dll
              c:\windows\system32\_004231_.tmp.dll
              c:\windows\system32\_004232_.tmp.dll
              c:\windows\system32\_004233_.tmp.dll
              c:\windows\system32\_004234_.tmp.dll
              c:\windows\system32\_004235_.tmp.dll
              c:\windows\system32\_004236_.tmp.dll
              c:\windows\system32\_004237_.tmp.dll
              c:\windows\system32\_004238_.tmp.dll
              c:\windows\system32\_004239_.tmp.dll
              c:\windows\system32\_004240_.tmp.dll
              c:\windows\system32\_004241_.tmp.dll
              c:\windows\system32\_004242_.tmp.dll
              c:\windows\system32\_004243_.tmp.dll
              c:\windows\system32\_004244_.tmp.dll
              c:\windows\system32\_004245_.tmp.dll
              c:\windows\system32\_004246_.tmp.dll
              c:\windows\system32\_004247_.tmp.dll
              c:\windows\system32\_004248_.tmp.dll
              c:\windows\system32\_004249_.tmp.dll
              c:\windows\system32\_004250_.tmp.dll
              c:\windows\system32\_004251_.tmp.dll
              c:\windows\system32\_004252_.tmp.dll
              c:\windows\system32\_004253_.tmp.dll
              c:\windows\system32\_004255_.tmp.dll
              c:\windows\system32\_004256_.tmp.dll
              c:\windows\system32\_004257_.tmp.dll
              c:\windows\system32\_004258_.tmp.dll
              c:\windows\system32\_004259_.tmp.dll
              c:\windows\system32\_004260_.tmp.dll
              c:\windows\system32\_004261_.tmp.dll
              c:\windows\system32\_004262_.tmp.dll
              c:\windows\system32\_004263_.tmp.dll
              c:\windows\system32\_004264_.tmp.dll
              c:\windows\system32\_004265_.tmp.dll
              c:\windows\system32\_004266_.tmp.dll
              c:\windows\system32\_004267_.tmp.dll
              c:\windows\system32\_004268_.tmp.dll
              c:\windows\system32\_004269_.tmp.dll
              c:\windows\system32\_004270_.tmp.dll
              c:\windows\system32\_004271_.tmp.dll
              c:\windows\system32\_004272_.tmp.dll
              c:\windows\system32\_004273_.tmp.dll
              c:\windows\system32\_004274_.tmp.dll
              c:\windows\system32\_004275_.tmp.dll
              c:\windows\system32\_004277_.tmp.dll
              c:\windows\system32\_004278_.tmp.dll
              c:\windows\system32\_004279_.tmp.dll
              c:\windows\system32\_004280_.tmp.dll
              c:\windows\system32\_004281_.tmp.dll
              c:\windows\system32\_004282_.tmp.dll
              c:\windows\system32\_004283_.tmp.dll
              c:\windows\system32\_004284_.tmp.dll
              c:\windows\system32\_004285_.tmp.dll
              c:\windows\system32\_004286_.tmp.dll
              c:\windows\system32\_004287_.tmp.dll
              c:\windows\system32\_004288_.tmp.dll
              c:\windows\system32\_004289_.tmp.dll
              c:\windows\system32\_004290_.tmp.dll
              c:\windows\system32\_004291_.tmp.dll
              c:\windows\system32\_004292_.tmp.dll
              c:\windows\system32\_004293_.tmp.dll
              c:\windows\system32\_004294_.tmp.dll
              c:\windows\system32\_004295_.tmp.dll
              c:\windows\system32\_004296_.tmp.dll
              c:\windows\system32\_004297_.tmp.dll
              c:\windows\system32\_004298_.tmp.dll
              c:\windows\system32\_004299_.tmp.dll
              c:\windows\system32\_004300_.tmp.dll
              c:\windows\system32\_004302_.tmp.dll
              c:\windows\system32\_004303_.tmp.dll
              c:\windows\system32\_004304_.tmp.dll
              c:\windows\system32\_004305_.tmp.dll
              c:\windows\system32\_004307_.tmp.dll
              c:\windows\system32\_004309_.tmp.dll
              c:\windows\system32\_004310_.tmp.dll
              c:\windows\system32\_004311_.tmp.dll
              c:\windows\system32\_004312_.tmp.dll
              c:\windows\system32\_004313_.tmp.dll
              c:\windows\system32\_004314_.tmp.dll
              c:\windows\system32\_004315_.tmp.dll
              c:\windows\system32\_004317_.tmp.dll
              c:\windows\system32\_004318_.tmp.dll
              c:\windows\system32\_004319_.tmp.dll
              c:\windows\system32\_004320_.tmp.dll
              c:\windows\system32\_004321_.tmp.dll
              c:\windows\system32\_004322_.tmp.dll
              c:\windows\system32\_004323_.tmp.dll
              c:\windows\system32\_004324_.tmp.dll
              c:\windows\system32\_004326_.tmp.dll
              c:\windows\system32\_004327_.tmp.dll
              c:\windows\system32\_004328_.tmp.dll
              c:\windows\system32\_004329_.tmp.dll
              c:\windows\system32\_004330_.tmp.dll
              c:\windows\system32\_004331_.tmp.dll
              c:\windows\system32\_004332_.tmp.dll
              c:\windows\system32\_004334_.tmp.dll
              c:\windows\system32\_004335_.tmp.dll
              c:\windows\system32\_004336_.tmp.dll
              c:\windows\system32\_004337_.tmp.dll
              c:\windows\system32\_004339_.tmp.dll
              c:\windows\system32\_004340_.tmp.dll
              c:\windows\system32\_004341_.tmp.dll
              c:\windows\system32\_004342_.tmp.dll
              c:\windows\system32\_004343_.tmp.dll
              c:\windows\system32\_004344_.tmp.dll
              c:\windows\system32\_004345_.tmp.dll
              c:\windows\system32\_004346_.tmp.dll
              c:\windows\system32\_004347_.tmp.dll
              c:\windows\system32\_004348_.tmp.dll
              c:\windows\system32\_004350_.tmp.dll
              c:\windows\system32\_004351_.tmp.dll
              c:\windows\system32\_004352_.tmp.dll
              c:\windows\system32\_004353_.tmp.dll
              c:\windows\system32\_004354_.tmp.dll
              c:\windows\system32\_004355_.tmp.dll
              c:\windows\system32\_004356_.tmp.dll
              c:\windows\system32\_004359_.tmp.dll
              c:\windows\system32\_004360_.tmp.dll
              c:\windows\system32\_004361_.tmp.dll
              c:\windows\system32\_004362_.tmp.dll
              c:\windows\system32\_004363_.tmp.dll
              c:\windows\system32\_004364_.tmp.dll
              c:\windows\system32\_004369_.tmp.dll
              c:\windows\system32\_004371_.tmp.dll
              c:\windows\system32\_004374_.tmp.dll
              c:\windows\system32\_004376_.tmp.dll
              c:\windows\system32\_004377_.tmp.dll
              c:\windows\system32\_004378_.tmp.dll
              c:\windows\system32\_004379_.tmp.dll
              c:\windows\system32\_004382_.tmp.dll
              c:\windows\system32\_004383_.tmp.dll
              c:\windows\system32\_004384_.tmp.dll
              c:\windows\system32\_004385_.tmp.dll
              c:\windows\system32\_004386_.tmp.dll
              c:\windows\system32\_004389_.tmp.dll
              c:\windows\system32\_004391_.tmp.dll
              c:\windows\system32\_004392_.tmp.dll
              c:\windows\system32\_004395_.tmp.dll
              c:\windows\system32\_004399_.tmp.dll
              c:\windows\system32\_004400_.tmp.dll
              c:\windows\system32\_004403_.tmp.dll
              c:\windows\system32\_004404_.tmp.dll
              c:\windows\system32\_004405_.tmp.dll
              c:\windows\system32\_004406_.tmp.dll
              c:\windows\system32\_004407_.tmp.dll
              c:\windows\system32\_004412_.tmp.dll
              c:\windows\system32\_004414_.tmp.dll

              ----- BITS: Il y a peut-être des sites infectés -----

              hxxp://dwd.virginmega.fr
              .
              ((((((((((((((((((((((((((((( Fichiers créés du 2008-12-19 au 2009-01-19 ))))))))))))))))))))))))))))))))))))
              .

              2009-01-18 20:55 . 2009-01-19 18:48 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\gtk-2.0
              2009-01-18 20:55 . 2009-01-18 20:55 <REP> d-------- c:\documents and settings\Utilisateur\.thumbnails
              2009-01-18 20:33 . 2009-01-19 18:48 <REP> d-------- c:\documents and settings\Utilisateur\.gimp-2.6
              2009-01-18 20:33 . 2009-01-18 20:33 <REP> d-------- c:\documents and settings\Utilisateur\.gegl-0.0
              2009-01-18 20:32 . 2009-01-18 20:33 <REP> d-------- c:\program files\GIMP-2.0
              2009-01-16 23:44 . 2009-01-16 23:44 <REP> d-------- c:\program files\Vision Objects
              2009-01-16 20:54 . 2009-01-16 20:54 579,584 --a--c--- c:\windows\system32\dllcache\user32.dll
              2009-01-14 20:29 . 2009-01-14 21:44 <REP> d-------- c:\program files\FindyKill
              2009-01-14 18:44 . 2009-01-14 18:44 <REP> d-------- C:\rsit
              2009-01-13 18:20 . 2009-01-17 12:26 37,440 --a------ c:\windows\system32\drivers\pssdklbf.drv
              2009-01-13 18:20 . 2009-01-17 12:26 30,272 --a------ c:\windows\system32\drivers\pssdk31.drv
              2009-01-12 23:30 . 2009-01-13 00:00 <REP> d-------- C:\Lop SD
              2009-01-12 23:12 . 2009-01-13 00:34 <REP> d-------- c:\program files\Ad-remover
              2009-01-11 12:24 . 2009-01-11 12:24 <REP> d-------- c:\program files\Skyline
              2009-01-10 13:24 . 2009-01-10 13:24 <REP> d-------- c:\program files\CCleaner
              2009-01-07 21:13 . 2009-01-07 21:13 850 --a------ c:\windows\system32\ProductTweaks.xml
              2009-01-07 21:13 . 2009-01-07 21:13 385 --a------ c:\windows\system32\user_gensett.xml
              2009-01-07 20:42 . 2009-01-07 20:42 <REP> d-------- c:\program files\Malwarebytes' Anti-Malware
              2009-01-07 20:42 . 2009-01-04 18:38 38,496 --a------ c:\windows\system32\drivers\mbamswissarmy.sys
              2009-01-07 20:42 . 2009-01-04 18:38 15,504 --a------ c:\windows\system32\drivers\mbam.sys
              2009-01-07 20:39 . 2009-01-12 23:53 336 --a------ c:\windows\system32\BDUpdateV1.xml
              2009-01-07 18:59 . 2009-01-07 18:59 <REP> d-------- c:\program files\BitDefender
              2009-01-07 18:59 . 2009-01-07 18:59 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\BitDefender
              2009-01-07 18:59 . 2009-01-07 19:03 <REP> d-------- c:\documents and settings\All Users\Application Data\BitDefender
              2009-01-07 18:58 . 2009-01-07 18:59 <REP> d-------- c:\program files\Fichiers communs\BitDefender
              2009-01-07 18:33 . 2009-01-07 22:21 <REP> d-------- c:\windows\LMI229.tmp
              2009-01-07 13:17 . 2009-01-07 13:17 <REP> d-------- c:\documents and settings\LocalService\Application Data\agi
              2009-01-07 13:16 . 2009-01-07 13:16 2,117,632 --a------ c:\windows\system32\python25.dll
              2009-01-07 13:16 . 2008-09-16 17:26 1,332,197 --a------ c:\windows\system32\pythondll.zip
              2009-01-07 13:16 . 2009-01-07 13:16 339,968 --a------ c:\windows\system32\pythoncom25.dll
              2009-01-07 13:16 . 2009-01-07 13:16 114,688 --a------ c:\windows\system32\pywintypes25.dll
              2009-01-02 10:44 . 2009-01-02 10:44 <REP> d-------- c:\documents and settings\All Users\Application Data\hps
              2008-12-28 12:59 . 2008-12-28 12:59 68,513 --a------ c:\windows\system32\pcqwhmqvjlzqfnr.dll-uninst.exe
              2008-12-28 12:59 . 2008-12-28 12:59 53,958 --a------ c:\windows\system32\cont_milehighads-remove.exe
              2008-12-23 16:24 . 2008-12-23 16:24 <REP> d-------- c:\program files\Fichiers communs\Logitech
              2008-12-23 16:20 . 2008-12-23 16:24 <REP> d-------- c:\documents and settings\All Users\Application Data\Logishrd
              2008-12-23 16:19 . 2008-12-23 16:19 <REP> d-------- c:\documents and settings\All Users\Application Data\Logitech
              2008-12-23 16:05 . 2008-04-13 19:33 1,888,992 --------- c:\windows\system32\ati3duag.dll
              2008-12-23 16:05 . 2008-09-10 02:15 1,307,648 --a------ c:\windows\system32\msxml6.dll
              2008-12-23 16:05 . 2008-09-10 02:15 1,307,648 -----c--- c:\windows\system32\dllcache\msxml6.dll
              2008-12-23 16:05 . 2008-04-13 19:33 870,784 --------- c:\windows\system32\ati3d1ag.dll
              2008-12-23 16:05 . 2008-04-13 19:33 377,984 --------- c:\windows\system32\ati2dvaa.dll
              2008-12-23 16:05 . 2008-04-13 19:33 229,376 --------- c:\windows\system32\ati2cqag.dll
              2008-12-23 16:05 . 2008-04-13 19:33 201,728 --------- c:\windows\system32\ati2dvag.dll
              2008-12-23 16:05 . 2008-04-13 19:33 136,192 --------- c:\windows\system32\aaclient.dll
              2008-12-23 16:05 . 2008-04-13 19:04 93,184 --------- c:\windows\system32\msxml6r.dll
              2008-12-23 16:05 . 2008-04-13 19:04 93,184 -----c--- c:\windows\system32\dllcache\msxml6r.dll
              2008-12-23 16:05 . 2008-04-13 19:34 23,040 --------- c:\windows\system32\ativmvxx.ax
              2008-12-23 16:05 . 2008-04-13 19:34 9,728 --------- c:\windows\system32\ativdaxx.ax
              2008-12-23 16:02 . 2008-12-23 16:02 <REP> d-------- c:\windows\ServicePackFiles
              2008-12-23 15:59 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02782_.tmp
              2008-12-23 15:29 . 2008-12-23 15:29 <REP> d-------- c:\program files\Microsoft Easy Assist
              2008-12-23 15:29 . 2008-12-23 15:29 <REP> d-------- c:\documents and settings\All Users\Application Data\Applications
              2008-12-22 18:52 . 2008-04-13 11:36 2,986,496 --a------ c:\windows\system32\SET14A9.tmp
              2008-12-22 18:52 . 2008-04-13 19:33 354,304 --a------ c:\windows\system32\SET149B.tmp
              2008-12-22 18:52 . 2008-04-13 19:31 177,152 --a------ c:\windows\system32\SET14D2.tmp
              2008-12-22 18:52 . 2008-04-13 19:33 108,032 --a------ c:\windows\system32\SET1494.tmp
              2008-12-22 18:52 . 2008-04-13 19:33 16,896 --a------ c:\windows\system32\SET1500.tmp
              2008-12-22 18:52 . 2008-04-13 19:33 6,656 --a------ c:\windows\system32\SET1491.tmp
              2008-12-22 18:50 . 2008-04-13 19:34 1,037,824 --a------ c:\windows\SET8CE.tmp
              2008-12-22 18:50 . 2008-04-13 19:33 1,025,024 --a------ c:\windows\system32\SET87A.tmp
              2008-12-22 18:50 . 2008-04-13 19:33 498,688 --a------ c:\windows\system32\SET856.tmp
              2008-12-22 18:50 . 2008-04-13 19:33 200,192 --a------ c:\windows\system32\SET86C.tmp
              2008-12-22 18:50 . 2008-04-13 19:33 193,536 --a------ c:\windows\system32\SET8A8.tmp
              2008-12-22 18:50 . 2008-04-13 19:33 143,360 --a------ c:\windows\system32\SET8A3.tmp
              2008-12-22 18:50 . 2008-04-13 19:33 125,952 --a------ c:\windows\system32\SET899.tmp
              2008-12-22 18:50 . 2008-04-13 19:33 62,464 --a------ c:\windows\system32\SET886.tmp
              2008-12-22 18:50 . 2008-04-13 19:33 58,880 --a------ c:\windows\system32\SET88F.tmp
              2008-12-22 18:50 . 2008-04-13 19:33 52,736 --a------ c:\windows\system32\SET881.tmp
              2008-12-22 18:50 . 2008-04-13 19:33 29,184 --a------ c:\windows\system32\SET880.tmp
              2008-12-22 18:48 . 2008-04-13 19:33 734,720 --a------ c:\windows\system32\SET1B0.tmp
              2008-12-22 18:47 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02772_.tmp
              2008-12-22 18:45 . 2008-08-14 14:23 2,147,328 --a------ c:\windows\system32\ntoskrnl.exe
              2008-12-22 18:24 . 2008-04-13 19:31 177,152 --a------ c:\windows\system32\SET13DD.tmp
              2008-12-22 18:24 . 2008-04-13 19:33 16,896 --a------ c:\windows\system32\SET140C.tmp
              2008-12-22 18:23 . 2008-04-13 11:36 2,986,496 --a------ c:\windows\system32\SET13B3.tmp
              2008-12-22 18:23 . 2008-04-13 19:33 354,304 --a------ c:\windows\system32\SET13A5.tmp
              2008-12-22 18:23 . 2008-04-13 19:33 108,032 --a------ c:\windows\system32\SET139E.tmp
              2008-12-22 18:23 . 2008-04-13 19:33 6,656 --a------ c:\windows\system32\SET139B.tmp
              2008-12-22 18:20 . 2008-04-13 19:33 8,517,632 --a------ c:\windows\system32\SET1E9.tmp
              2008-12-22 18:19 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02763_.tmp
              2008-12-22 18:17 . 2004-08-05 13:00 71,040 --------- c:\windows\system32\drivers\_004225_.tmp.dll
              2008-12-22 17:53 . 2008-04-13 11:36 2,986,496 --a------ c:\windows\system32\SET1490.tmp
              2008-12-22 17:53 . 2008-04-13 19:34 380,928 --a------ c:\windows\system32\SET14D4.tmp
              2008-12-22 17:53 . 2008-04-13 19:33 354,304 --a------ c:\windows\system32\SET1482.tmp
              2008-12-22 17:53 . 2008-04-13 19:31 177,152 --a------ c:\windows\system32\SET14B8.tmp
              2008-12-22 17:53 . 2008-04-13 19:34 110,592 --a------ c:\windows\system32\SET1502.tmp
              2008-12-22 17:53 . 2008-04-13 19:33 108,032 --a------ c:\windows\system32\SET147B.tmp
              2008-12-22 17:53 . 2008-04-13 19:33 80,896 --a------ c:\windows\system32\SET147D.tmp
              2008-12-22 17:53 . 2008-04-13 19:33 30,208 --a------ c:\windows\system32\SET1501.tmp
              2008-12-22 17:53 . 2008-04-13 19:34 28,672 --a------ c:\windows\system32\SET1487.tmp
              2008-12-22 17:53 . 2008-04-13 19:33 16,896 --a------ c:\windows\system32\SET14E4.tmp
              2008-12-22 17:53 . 2008-04-13 19:33 6,656 --a------ c:\windows\system32\SET1478.tmp
              2008-12-22 17:48 . 2008-04-13 19:33 2,843,136 --a------ c:\windows\system32\SET721.tmp
              2008-12-22 17:47 . 2008-04-13 19:33 8,517,632 --a------ c:\windows\system32\SET552.tmp
              2008-12-22 17:45 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02755_.tmp
              2008-12-22 17:42 . 2004-08-05 13:00 71,040 --------- c:\windows\system32\drivers\_004215_.tmp.dll
              2008-12-22 14:24 . 2004-08-05 13:00 71,040 --------- c:\windows\system32\drivers\_004206_.tmp.dll
              2008-12-22 14:16 . 2008-12-22 14:16 <REP> d-------- c:\program files\Windows Resource Kits
              2008-12-22 11:34 . 2004-08-05 13:00 71,040 --------- c:\windows\system32\drivers\_004196_.tmp.dll
              2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\system32\fr
              2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\system32\bits
              2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\l2schemas
              2008-12-22 10:52 . 2004-08-05 13:00 71,040 --a------ c:\windows\system32\drivers\_004186_.tmp.dll
              2008-12-22 10:50 . 2008-12-23 15:56 <REP> d-------- c:\windows\EHome
              2008-12-21 12:03 . 2008-12-21 12:03 <REP> d-------- c:\program files\Logitech
              2008-12-21 11:37 . 2008-07-26 16:26 4,658,584 -ra------ c:\windows\system32\drivers\lvuvc.sys
              2008-12-21 11:37 . 2008-07-26 16:25 627,864 -ra------ c:\windows\system32\drivers\lvrs.sys
              2008-12-21 11:37 . 2008-07-26 16:26 490,008 -ra------ c:\windows\system32\LVUI2.dll
              2008-12-21 11:37 . 2008-07-26 16:26 465,432 -ra------ c:\windows\system32\LVUI2RC.dll
              2008-12-21 11:37 . 2008-07-26 16:23 416,280 -ra------ c:\windows\system32\lvcodec2.dll
              2008-12-21 11:37 . 2008-07-26 16:23 195,096 -ra------ c:\windows\system32\lvci11801048.dll
              2008-12-21 11:37 . 2008-07-26 15:42 66,482 -ra------ c:\windows\system32\lvcoinst.ini
              2008-12-21 11:37 . 2008-07-26 16:26 41,752 -ra------ c:\windows\system32\drivers\LVUSBSta.sys
              2008-12-21 11:37 . 2008-07-26 15:46 25,974 -ra------ c:\windows\system32\Repository.reg
              2008-12-21 11:37 . 2009-01-19 19:17 0 --a------ c:\windows\system32\drivers\lvuvc.hs
              2008-12-21 11:37 . 2009-01-19 19:17 0 --a------ c:\windows\system32\drivers\logiflt.iad
              2008-12-21 11:12 . 2008-12-21 11:43 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\ntr
              2008-12-21 11:01 . 2008-12-21 11:01 <REP> d-------- c:\program files\Microsoft CAPICOM 2.1.0.2
              2008-12-20 16:49 . 2008-07-26 16:26 23,832 -ra------ c:\windows\system32\drivers\lvuvcflt.sys
              2008-12-20 16:42 . 2008-12-23 16:20 <REP> d-------- c:\program files\Fichiers communs\LogiShrd
              2008-12-20 15:43 . 2008-04-13 19:34 20,992 --a------ c:\windows\system32\dshowext.ax
              2008-12-20 11:28 . 2009-01-19 17:41 <REP> d-------- c:\documents and settings\Utilisateur\Tracing
              2008-12-20 11:27 . 2008-12-20 11:27 <REP> d-------- c:\program files\Microsoft Silverlight
              2008-12-20 11:25 . 2008-12-20 11:25 <REP> d-------- c:\program files\Microsoft Sync Framework

              .
              (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
              .
              2009-01-19 18:18 --------- d-----w c:\program files\Wanadoo
              2009-01-18 17:51 --------- d-----w c:\program files\Palm
              2009-01-16 22:44 --------- d--h--w c:\program files\InstallShield Installation Information
              2009-01-16 22:36 --------- d-----w c:\documents and settings\Utilisateur\Application Data\LimeWire
              2009-01-16 21:56 --------- d-----w c:\program files\eMule
              2009-01-10 11:14 --------- d-----w c:\program files\QuickTime
              2009-01-10 11:13 --------- d-----w c:\program files\LimeWire
              2009-01-07 21:46 --------- d-----w c:\documents and settings\Utilisateur\Application Data\OnlineArmor
              2009-01-02 09:09 4,424 ----a-w c:\documents and settings\Utilisateur\Application Data\ViewerApp.dat
              2008-12-20 10:26 --------- d-----w c:\program files\Windows Live Toolbar
              2008-12-20 10:26 --------- d-----w c:\program files\Windows Live
              2008-12-11 10:57 333,952 ----a-w c:\windows\system32\drivers\srv.sys
              2008-12-08 19:13 --------- d-----w c:\program files\Migros
              2008-12-04 23:11 308,584 ----a-w c:\windows\WLXPGSS.SCR
              2008-11-30 18:59 --------- d-----w c:\program files\Fichiers communs\Jasc Software Inc
              2008-11-30 18:59 --------- d-----w c:\documents and settings\All Users\Application Data\InstallShield
              2008-11-30 18:58 --------- d-----w c:\program files\Jasc Software Inc
              2008-11-30 18:58 --------- d-----w c:\program files\Fichiers communs\InstallShield
              2008-11-30 18:58 --------- d-----w c:\documents and settings\Utilisateur\Application Data\Jasc Software Inc
              2008-11-30 18:54 --------- d-----w c:\documents and settings\All Users\Application Data\WinZip
              2008-11-25 19:43 --------- d-----w c:\program files\Fichiers communs\Ahead
              2008-11-25 19:35 --------- d-----w c:\documents and settings\All Users\Application Data\Nero
              2008-11-21 16:52 --------- d-----w c:\documents and settings\All Users\Application Data\NVIDIA
              2007-08-02 21:29 278,528 ----a-w c:\program files\Fichiers communs\FDEUnInstaller.exe
              2007-02-11 09:37 4,562,152 ----a-w c:\program files\80 cd7 - 06 - Huey Lewis and the News - I Want a New Drug.mp3
              .

              ((((((((((((((((((((((((((((( snapshot@2008-09-14_ 9.45.41.23 )))))))))))))))))))))))))))))))))))))))))
              .
              + 2008-02-26 11:49:32 297,984 ----a-w c:\windows\$hf_mig$\KB932823-v3\SP2QFE\msctf.dll
              + 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB932823-v3\spmsg.dll
              + 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB932823-v3\spuninst.exe
              + 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB932823-v3\update\spcustom.dll
              + 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB932823-v3\update\update.exe
              + 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB932823-v3\update\updspapi.dll
              + 2006-12-14 08:53:58 15,072 ----a-w c:\windows\$hf_mig$\KB935448\spmsg.dll
              + 2006-12-14 08:53:58 216,800 ----a-w c:\windows\$hf_mig$\KB935448\spuninst.exe
              + 2006-12-14 08:53:58 22,752 ----a-w c:\windows\$hf_mig$\KB935448\update\spcustom.dll
              + 2006-12-14 08:53:58 727,776 ----a-w c:\windows\$hf_mig$\KB935448\update\update.exe
              + 2006-12-14 08:53:58 394,976 ----a-w c:\windows\$hf_mig$\KB935448\update\updspapi.dll
              + 2007-07-12 23:28:38 765,952 ----a-w c:\windows\$hf_mig$\KB938127-IE7\SP2QFE\vgx.dll
              + 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB938127-IE7\spmsg.dll
              + 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB938127-IE7\spuninst.exe
              + 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB938127-IE7\update\spcustom.dll
              + 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB938127-IE7\update\update.exe
              + 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB938127-IE7\update\updspapi.dll
              + 2008-05-27 17:31:29 765,952 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\SP2QFE\vgx.dll
              + 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\spmsg.dll
              + 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\spuninst.exe
              + 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\update\spcustom.dll
              + 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\update\update.exe
              + 2007-03-06 01:35:47 394,976 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\update\updspapi.dll
              + 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB938464\spmsg.dll
              + 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB938464\spuninst.exe
              + 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB938464\update\spcustom.dll
              + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB938464\update\update.exe
              + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB938464\update\updspapi.dll
              + 2008-05-02 13:33:12 83,968 ----a-w c:\windows\$hf_mig$\KB946648\SP2QFE\msgsc.dll
              + 2008-05-02 14:01:52 83,968 ----a-w c:\windows\$hf_mig$\KB946648\SP3GDR\msgsc.dll
              + 2008-05-02 13:44:40 83,968 ----a-w c:\windows\$hf_mig$\KB946648\SP3QFE\msgsc.dll
              + 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB946648\spmsg.dll
              + 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB946648\spuninst.exe
              + 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB946648\update\spcustom.dll
              + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB946648\update\update.exe
              + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB946648\update\updspapi.dll
              + 2008-01-23 04:56:21 554,008 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\dao360.dll
              + 2007-12-10 12:41:11 518,944 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msexch40.dll
              + 2007-12-10 12:41:11 326,432 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msexcl40.dll
              + 2007-12-10 12:41:11 1,516,568 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjet40.dll
              + 2007-12-10 12:41:11 355,112 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjetol1.dll
              + 2008-03-25 06:56:31 194,144 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjint40.dll
              + 2007-12-10 12:41:12 60,192 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjter40.dll
              + 2007-12-10 12:41:12 248,608 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjtes40.dll
              + 2007-12-10 12:41:12 219,936 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msltus40.dll
              + 2007-12-10 12:41:12 355,104 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\mspbde40.dll
              + 2007-12-10 12:41:13 432,928 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msrd2x40.dll
              + 2007-12-10 12:41:13 322,336 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msrd3x40.dll
              + 2007-12-10 12:41:13 559,904 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msrepl40.dll
              + 2007-12-10 12:41:13 264,992 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\mstext40.dll
              + 2007-12-10 12:41:13 838,432 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\mswdat10.dll
              + 2007-11-01 05:15:27 621,344 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\mswstr10.dll
              + 2007-12-10 12:41:14 355,104 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msxbde40.dll
              + 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB950749\spmsg.dll
              + 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB950749\spuninst.exe
              + 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB950749\update\spcustom.dll
              + 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB950749\update\update.exe
              + 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB950749\update\updspapi.dll
              + 2008-05-08 12:14:51 203,008 ----a-w c:\windows\$hf_mig$\KB950762\SP2QFE\rmcast.sys
              + 2008-05-08 14:02:52 203,136 ----a-w c:\windows\$hf_mig$\KB950762\SP3GDR\rmcast.sys
              + 2008-05-08 13:58:17 203,136 ----a-w c:\windows\$hf_mig$\KB950762\SP3QFE\rmcast.sys
              + 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB950762\spmsg.dll
              + 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB950762\spuninst.exe
              + 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB950762\update\spcustom.dll
              + 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB950762\update\update.exe
              + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB950762\update\updspapi.dll
              + 2008-07-07 20:18:27 253,952 ----a-w c:\windows\$hf_mig$\KB950974\SP2QFE\es.dll
              + 2008-07-07 20:28:20 253,952 ----a-w c:\windows\$hf_mig$\KB950974\SP3GDR\es.dll
              + 2008-07-07 20:24:11 253,952 ----a-w c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
              + 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB950974\spmsg.dll
              + 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB950974\spuninst.exe
              + 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB950974\update\spcustom.dll
              + 2007-11-30 12:39:26 767,352 ----a-w c:\windows\$hf_mig$\KB950974\update\update.exe
              + 2007-11-30 12:39:29 406,392 ----a-w c:\windows\$hf_mig$\KB950974\update\updspapi.dll
              + 2008-04-11 18:40:33 683,520 ----a-w c:\windows\$hf_mig$\KB951066\SP2QFE\inetcomm.dll
              + 2008-04-11 19:05:22 691,712 ----a-w c:\windows\$hf_mig$\KB951066\SP3GDR\inetcomm.dll
              + 2008-04-11 22:23:04 691,712 ----a-w c:\windows\$hf_mig$\KB951066\SP3QFE\inetcomm.dll
              + 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB951066\spmsg.dll
              + 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB951066\spuninst.exe
              + 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB951066\update\spcustom.dll
              + 2007-12-03 15:25:43 767,352 ----a-w c:\windows\$hf_mig$\KB951066\update\update.exe
              + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB951066\update\updspapi.dll
              + 2008-07-14 11:03:00 62,976 ----a-w c:\windows\$hf_mig$\KB951072-v2\SP2QFE\tzchange.exe
              + 2008-07-11 12:42:28 62,976 ----a-w c:\windows\$hf_mig$\KB951072-v2\SP3GDR\tzchange.exe
              + 2008-07-11 12:51:51 62,976 ----a-w c:\windows\$hf_mig$\KB951072-v2\SP3QFE\tzchange.exe
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB951072-v2\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB951072-v2\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB951072-v2\update\spcustom.dll
              + 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB951072-v2\update\update.exe
              + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB951072-v2\update\updspapi.dll
              + 2008-06-14 18:03:13 272,768 ----a-w c:\windows\$hf_mig$\KB951376-v2\SP2QFE\bthport.sys
              + 2008-06-14 17:33:37 272,768 ----a-w c:\windows\$hf_mig$\KB951376-v2\SP3GDR\bthport.sys
              + 2008-06-14 17:40:19 272,768 ----a-w c:\windows\$hf_mig$\KB951376-v2\SP3QFE\bthport.sys
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB951376-v2\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB951376-v2\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB951376-v2\update\spcustom.dll
              + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB951376-v2\update\update.exe
              + 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB951376-v2\update\updspapi.dll
              + 2008-05-07 04:55:47 1,294,336 ----a-w c:\windows\$hf_mig$\KB951698\SP2QFE\quartz.dll
              + 2008-05-07 05:11:24 1,294,336 ----a-w c:\windows\$hf_mig$\KB951698\SP3GDR\quartz.dll
              + 2008-05-07 05:04:59 1,294,336 ----a-w c:\windows\$hf_mig$\KB951698\SP3QFE\quartz.dll
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB951698\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB951698\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB951698\update\spcustom.dll
              + 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB951698\update\update.exe
              + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB951698\update\updspapi.dll
              + 2006-08-16 12:13:24 100,352 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\6to4svc.dll
              + 2008-06-20 10:44:08 138,368 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\afd.sys
              + 2008-06-20 17:37:01 147,968 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\dnsapi.dll
              + 2008-06-20 17:37:01 247,808 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\mswsock.dll
              + 2008-06-20 10:44:42 360,960 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip.sys
              + 2008-06-20 09:32:39 225,920 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip6.sys
              + 2008-06-20 11:40:08 138,496 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\afd.sys
              + 2008-06-20 17:47:22 147,968 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\dnsapi.dll
              + 2008-06-20 17:47:22 247,808 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\mswsock.dll
              + 2008-06-20 11:51:12 361,600 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip.sys
              + 2008-06-20 11:08:27 225,856 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip6.sys
              + 2008-06-20 11:48:03 138,496 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\afd.sys
              + 2008-06-20 17:44:02 147,968 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\dnsapi.dll
              + 2008-06-20 17:44:02 247,808 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll
              + 2008-06-20 11:59:02 361,600 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
              + 2008-06-20 11:16:44 225,856 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip6.sys
              + 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB951748\spmsg.dll
              + 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB951748\spuninst.exe
              + 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB951748\update\spcustom.dll
              + 2007-11-30 12:39:26 767,352 ----a-w c:\windows\$hf_mig$\KB951748\update\update.exe
              + 2007-11-30 12:39:29 406,392 ----a-w c:\windows\$hf_mig$\KB951748\update\updspapi.dll
              + 2008-05-01 15:04:51 331,776 ----a-w c:\windows\$hf_mig$\KB952287\SP2QFE\msadce.dll
              + 2008-05-01 14:36:26 331,776 ----a-w c:\windows\$hf_mig$\KB952287\SP3GDR\msadce.dll
              + 2008-05-01 14:39:23 331,776 ----a-w c:\windows\$hf_mig$\KB952287\SP3QFE\msadce.dll
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB952287\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB952287\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB952287\update\spcustom.dll
              + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB952287\update\update.exe
              + 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB952287\update\updspapi.dll
              + 2008-06-24 16:30:27 74,240 ----a-w c:\windows\$hf_mig$\KB952954\SP2QFE\mscms.dll
              + 2008-06-24 16:44:02 74,240 ----a-w c:\windows\$hf_mig$\KB952954\SP3GDR\mscms.dll
              + 2008-06-24 16:53:52 74,240 ----a-w c:\windows\$hf_mig$\KB952954\SP3QFE\mscms.dll
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB952954\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB952954\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB952954\update\spcustom.dll
              + 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB952954\update\update.exe
              + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB952954\update\updspapi.dll
              + 2008-06-23 15:40:01 124,928 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\advpack.dll
              + 2008-06-23 15:40:01 347,136 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\dxtmsft.dll
              + 2008-06-23 15:40:01 214,528 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\dxtrans.dll
              + 2008-06-23 15:40:01 132,608 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\extmgr.dll
              + 2008-06-23 15:40:01 63,488 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\icardie.dll
              + 2008-06-23 08:23:18 70,656 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ie4uinit.exe
              + 2008-06-23 15:40:01 153,088 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieakeng.dll
              + 2008-06-23 15:40:01 230,400 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieaksie.dll
              + 2008-06-21 05:23:53 161,792 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieakui.dll
              + 2007-04-17 09:32:38 2,455,488 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieapfltr.dat
              + 2008-06-23 15:40:02 383,488 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieapfltr.dll
              + 2008-06-23 15:40:02 388,608 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iedkcs32.dll
              + 2008-06-23 15:40:04 6,068,736 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieframe.dll
              + 2008-06-23 15:40:04 44,544 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iernonce.dll
              + 2008-06-23 15:40:04 267,776 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iertutil.dll
              + 2008-06-23 08:23:18 13,824 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieudinit.exe
              + 2008-06-23 08:23:52 625,664 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iexplore.exe
              + 2008-06-23 15:40:05 27,648 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\jsproxy.dll
              + 2008-06-23 15:40:05 459,264 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\msfeeds.dll
              + 2008-06-23 15:40:05 52,224 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\msfeedsbs.dll
              + 2008-06-23 15:40:07 3,594,240 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\mshtml.dll
              + 2008-06-23 15:40:07 477,696 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\mshtmled.dll
              + 2008-06-23 15:40:07 193,024 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\msrating.dll
              + 2008-06-23 15:40:07 671,232 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\mstime.dll
              + 2008-06-23 15:40:07 102,912 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\occache.dll
              + 2008-06-23 15:40:07 44,544 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\pngfilt.dll
              + 2008-06-23 15:40:07 105,984 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\url.dll
              + 2008-06-23 15:40:08 1,162,752 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\urlmon.dll
              + 2008-06-23 15:40:08 233,472 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\webcheck.dll
              + 2008-06-23 15:40:08 827,904 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\wininet.dll
              + 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB953838-IE7\spmsg.dll
              + 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB953838-IE7\spuninst.exe
              + 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB953838-IE7\update\spcustom.dll
              + 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB953838-IE7\update\update.exe
              + 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB953838-IE7\update\updspapi.dll
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB953839\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB953839\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB953839\update\spcustom.dll
              + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB953839\update\update.exe
              + 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB953839\update\updspapi.dll
              + 2008-09-15 15:14:42 1,847,040 ----a-w c:\windows\$hf_mig$\KB954211\SP2QFE\win32k.sys
              + 2008-09-15 15:26:07 1,846,528 ----a-w c:\windows\$hf_mig$\KB954211\SP3GDR\win32k.sys
              + 2008-09-15 15:20:39 1,847,040 ----a-w c:\windows\$hf_mig$\KB954211\SP3QFE\win32k.sys
              + 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB954211\spmsg.dll
              + 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB954211\spuninst.exe
              + 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB954211\update\spcustom.dll
              + 2008-07-09 07:40:26 767,352 ----a-w c:\windows\$hf_mig$\KB954211\update\update.exe
              + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB954211\update\updspapi.dll
              + 2008-10-03 10:00:40 247,326 ----a-w c:\windows\$hf_mig$\KB954600\SP2QFE\strmdll.dll
              + 2008-10-03 10:03:53 247,326 ----a-w c:\windows\$hf_mig$\KB954600\SP3GDR\strmdll.dll
              + 2008-10-03 09:50:27 247,326 ----a-w c:\windows\$hf_mig$\KB954600\SP3QFE\strmdll.dll
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB954600\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB954600\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB954600\update\spcustom.dll
              + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB954600\update\update.exe
              + 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB954600\update\updspapi.dll
              + 2008-09-04 16:34:21 1,106,944 ----a-w c:\windows\$hf_mig$\KB955069\SP2QFE\msxml3.dll
              + 2008-09-04 17:16:10 1,106,944 ----a-w c:\windows\$hf_mig$\KB955069\SP3GDR\msxml3.dll
              + 2008-09-04 17:12:47 1,106,944 ----a-w c:\windows\$hf_mig$\KB955069\SP3QFE\msxml3.dll
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB955069\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB955069\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB955069\update\spcustom.dll
              + 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB955069\update\update.exe
              + 2008-07-09 12:10:36 406,392 ----a-w c:\windows\$hf_mig$\KB955069\update\updspapi.dll
              + 2008-10-22 09:47:25 62,976 ----a-w c:\windows\$hf_mig$\KB955839\SP2QFE\tzchange.exe
              + 2008-10-23 10:06:59 62,976 ----a-w c:\windows\$hf_mig$\KB955839\SP3GDR\tzchange.exe
              + 2008-10-23 10:17:49 62,976 ----a-w c:\windows\$hf_mig$\KB955839\SP3QFE\tzchange.exe
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB955839\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB955839\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB955839\update\spcustom.dll
              + 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB955839\update\update.exe
              + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB955839\update\updspapi.dll
              + 2008-08-26 09:10:25 124,928 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\advpack.dll
              + 2008-08-26 09:10:25 347,136 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\dxtmsft.dll
              + 2008-08-26 09:10:25 214,528 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\dxtrans.dll
              + 2008-08-26 09:10:25 132,608 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\extmgr.dll
              + 2008-08-26 09:10:25 63,488 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\icardie.dll
              + 2008-08-25 08:43:21 70,656 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ie4uinit.exe
              + 2008-08-26 09:10:26 153,088 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieakeng.dll
              + 2008-08-26 09:10:26 230,400 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieaksie.dll
              + 2008-08-23 05:54:50 161,792 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieakui.dll
              + 2007-04-17 09:32:38 2,455,488 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieapfltr.dat
              + 2008-08-26 09:10:26 380,928 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieapfltr.dll
              + 2008-08-26 09:10:26 388,608 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iedkcs32.dll
              + 2008-10-03 16:22:30 6,068,224 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieframe.dll
              + 2008-08-26 09:10:27 44,544 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iernonce.dll
              + 2008-08-26 09:10:27 267,776 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iertutil.dll
              + 2008-08-25 08:43:21 13,824 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieudinit.exe
              + 2008-08-23 05:56:16 635,848 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iexplore.exe
              + 2008-08-26 09:10:27 27,648 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\jsproxy.dll
              + 2008-08-26 09:10:27 459,264 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\msfeeds.dll
              + 2008-08-26 09:10:27 52,224 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\msfeedsbs.dll
              + 2008-08-26 09:10:28 3,594,752 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mshtml.dll
              + 2008-08-26 09:10:28 477,696 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mshtmled.dll
              + 2008-08-26 09:10:28 193,024 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\msrating.dll
              + 2008-08-26 09:10:29 671,232 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mstime.dll
              + 2008-08-26 09:10:29 102,912 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\occache.dll
              + 2008-08-26 09:10:29 44,544 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\pngfilt.dll
              + 2008-08-26 09:10:29 105,984 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\url.dll
              + 2008-08-26 09:10:29 1,162,752 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\urlmon.dll
              + 2008-08-26 09:10:29 233,472 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\webcheck.dll
              + 2008-08-26 09:10:29 827,904 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\wininet.dll
              + 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB956390-IE7\spmsg.dll
              + 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB956390-IE7\spuninst.exe
              + 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB956390-IE7\update\spcustom.dll
              + 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB956390-IE7\update\update.exe
              + 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB956390-IE7\update\updspapi.dll
              + 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB956391\spmsg.dll
              + 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB956391\spuninst.exe
              + 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB956391\update\spcustom.dll
              + 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB956391\update\update.exe
              + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB956391\update\updspapi.dll
              + 2008-10-23 12:51:46 284,160 ----a-w c:\windows\$hf_mig$\KB956802\SP2QFE\gdi32.dll
              + 2008-10-23 12:36:51 286,720 ----a-w c:\windows\$hf_mig$\KB956802\SP3GDR\gdi32.dll
              + 2008-10-23 12:44:51 286,720 ----a-w c:\windows\$hf_mig$\KB956802\SP3QFE\gdi32.dll
              + 2008-07-08 13:03:54 18,296 ----a-w c:\windows\$hf_mig$\KB956802\spmsg.dll
              + 2008-07-08 13:03:55 234,872 ----a-w c:\windows\$hf_mig$\KB956802\spuninst.exe
              + 2008-07-08 13:03:54 26,488 ----a-w c:\windows\$hf_mig$\KB956802\update\spcustom.dll
              + 2008-07-09 07:40:26 767,352 ----a-w c:\windows\$hf_mig$\KB956802\update\update.exe
              + 2008-07-09 07:40:35 406,392 ----a-w c:\windows\$hf_mig$\KB956802\update\updspapi.dll
              + 2008-08-14 09:48:52 138,368 ----a-w c:\windows\$hf_mig$\KB956803\SP2QFE\afd.sys
              + 2008-08-14 10:04:36 138,496 ----a-w c:\windows\$hf_mig$\KB956803\SP3GDR\afd.sys
              + 2008-08-14 10:34:26 138,496 ----a-w c:\windows\$hf_mig$\KB956803\SP3QFE\afd.sys
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB956803\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB956803\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB956803\update\spcustom.dll
              + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB956803\update\update.exe
              + 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB956803\update\updspapi.dll
              + 2008-08-14 13:39:07 2,144,768 ----a-w c:\windows\$hf_mig$\KB956841\SP2QFE\ntkrnlmp.exe
              + 2008-08-14 13:39:12 2,065,024 ----a-w c:\windows\$hf_mig$\KB956841\SP2QFE\ntkrnlpa.exe
              + 2008-08-14 13:39:03 2,022,912 ----a-w c:\windows\$hf_mig$\KB956841\SP2QFE\ntkrpamp.exe
              + 2008-08-14 13:39:11 2,188,032 ----a-w c:\windows\$hf_mig$\KB956841\SP2QFE\ntoskrnl.exe
              + 2008-08-14 13:23:44 2,147,328 ----a-w c:\windows\$hf_mig$\KB956841\SP3GDR\ntkrnlmp.exe
              + 2008-08-14 13:23:49 2,068,096 ----a-w c:\windows\$hf_mig$\KB956841\SP3GDR\ntkrnlpa.exe
              + 2008-08-14 13:23:44 2,025,984 ----a-w c:\windows\$hf_mig$\KB956841\SP3GDR\ntkrpamp.exe
              + 2008-08-14 13:23:49 2,191,232 ----a-w c:\windows\$hf_mig$\KB956841\SP3GDR\ntoskrnl.exe
              + 2008-08-14 13:55:54 2,147,328 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlmp.exe
              + 2008-08-14 17:26:00 2,068,096 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe
              + 2008-08-14 13:55:47 2,025,984 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrpamp.exe
              + 2008-08-14 17:26:02 2,191,232 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB956841\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB956841\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB956841\update\spcustom.dll
              + 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB956841\update\update.exe
              + 2008-07-09 07:40:35 406,392 ----a-w c:\windows\$hf_mig$\KB956841\update\updspapi.dll
              + 2008-08-28 10:35:33 333,056 ----a-w c:\windows\$hf_mig$\KB957095\SP2QFE\srv.sys
              + 2008-09-08 10:41:42 333,824 ----a-w c:\windows\$hf_mig$\KB957095\SP3GDR\srv.sys
              + 2008-09-08 11:37:19 333,824 ----a-w c:\windows\$hf_mig$\KB957095\SP3QFE\srv.sys
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB957095\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB957095\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB957095\update\spcustom.dll
              + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB957095\update\update.exe
              + 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB957095\update\updspapi.dll
              + 2008-10-24 11:25:29 455,936 ----a-w c:\windows\$hf_mig$\KB957097\SP2QFE\mrxsmb.sys
              + 2008-10-24 11:21:09 455,296 ----a-w c:\windows\$hf_mig$\KB957097\SP3GDR\mrxsmb.sys
              + 2008-10-24 11:41:11 455,936 ----a-w c:\windows\$hf_mig$\KB957097\SP3QFE\mrxsmb.sys
              + 2008-07-08 13:03:54 18,296 ----a-w c:\windows\$hf_mig$\KB957097\spmsg.dll
              + 2008-07-08 13:03:55 234,872 ----a-w c:\windows\$hf_mig$\KB957097\spuninst.exe
              + 2008-07-08 13:03:54 26,488 ----a-w c:\windows\$hf_mig$\KB957097\update\spcustom.dll
              + 2008-07-08 13:03:57 767,352 ----a-w c:\windows\$hf_mig$\KB957097\update\update.exe
              + 2008-07-08 13:04:05 406,392 ----a-w c:\windows\$hf_mig$\KB957097\update\updspapi.dll
              + 2008-10-16 19:33:14 124,928 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\advpack.dll
              + 2008-10-16 19:33:14 347,136 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\dxtmsft.dll
              + 2008-10-16 19:33:14 214,528 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\dxtrans.dll
              + 2008-10-16 19:33:14 132,608 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\extmgr.dll
              + 2008-10-16 19:33:14 63,488 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\icardie.dll
              + 2008-10-16 12:46:08 70,656 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ie4uinit.exe
              + 2008-10-16 19:33:14 153,088 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieakeng.dll
              + 2008-10-16 19:33:14 230,400 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieaksie.dll
              + 2008-10-15 06:33:26 161,792 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieakui.dll
              + 2007-04-17 09:32:38 2,455,488 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieapfltr.dat
              + 2008-10-16 19:33:15 380,928 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieapfltr.dll
              + 2008-10-16 19:33:15 388,608 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iedkcs32.dll
              + 2008-10-16 19:33:16 6,068,224 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieframe.dll
              + 2008-10-16 19:33:16 44,544 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iernonce.dll
              + 2008-10-16 19:33:16 267,776 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iertutil.dll
              + 2008-10-16 12:46:08 13,824 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieudinit.exe
              + 2008-10-15 06:34:58 633,632 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iexplore.exe
              + 2008-10-16 19:33:17 27,648 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\jsproxy.dll
              + 2008-10-16 19:33:18 459,264 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\msfeeds.dll
              + 2008-10-16 19:33:18 52,224 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\msfeedsbs.dll
              + 2008-10-16 19:33:19 3,595,264 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mshtml.dll
              + 2008-10-16 19:33:20 477,696 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mshtmled.dll
              + 2008-10-16 19:33:20 193,024 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\msrating.dll
              + 2008-10-16 19:33:21 671,232 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mstime.dll
              + 2008-10-16 19:33:21 102,912 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\occache.dll
              + 2008-10-16 19:33:21 44,544 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\pngfilt.dll
              + 2008-10-16 19:33:21 105,984 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\url.dll
              + 2008-10-16 19:33:21 1,163,264 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\urlmon.dll
              + 2008-10-16 19:33:22 233,472 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\webcheck.dll
              + 2008-10-16 19:33:22 827,904 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\wininet.dll
              + 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB958215-IE7\spmsg.dll
              + 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB958215-IE7\spuninst.exe
              + 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB958215-IE7\update\spcustom.dll
              + 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB958215-IE7\update\update.exe
              + 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB958215-IE7\update\updspapi.dll
              + 2008-10-15 16:55:13 339,456 ----a-w c:\windows\$hf_mig$\KB958644\SP2QFE\netapi32.dll
              + 2008-10-15 16:35:43 337,408 ----a-w c:\windows\$hf_mig$\KB958644\SP3GDR\netapi32.dll
              + 2008-10-15 16:31:32 339,456 ----a-w c:\windows\$hf_mig$\KB958644\SP3QFE\netapi32.dll
              + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB958644\spmsg.dll
              + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB958644\spuninst.exe
              + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB958644\update\spcustom.dll
              + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB958644\update\update.exe
              + 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB958644\update\updspapi.dll
              + 2008-12-13 06:27:45 3,594,752 ----a-w c:\windows\$hf_mig$\KB960714-IE7\SP2QFE\mshtml.dll
              + 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB960714-IE7\spmsg.dll
              + 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB960714-IE7\spuninst.exe
              + 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\spcustom.dll
              + 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\update.exe
              + 2007-03-06 01:35:47 394,976 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\updspapi.dll
              + 2006-10-18 20:47:16 414,208 -c--a-w c:\windows\$NtUninstallKB929399$\msscp.dll
              + 2005-06-28 08:23:26 213,216 -c--a-w c:\windows\$NtUninstallKB929399$\spuninst\spuninst.exe
              + 2005-06-28 08:23:54 371,424 -c--a-w c:\windows\$NtUninstallKB929399$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 294,400 -c--a-w c:\windows\$NtUninstallKB932823-v3$\msctf.dll
              + 2007-03-06 01:34:38 216,800 -c--a-w c:\windows\$NtUninstallKB932823-v3$\spuninst\spuninst.exe
              + 2007-03-06 01:35:48 394,976 -c--a-w c:\windows\$NtUninstallKB932823-v3$\spuninst\updspapi.dll
              + 2006-12-14 08:53:58 216,800 -c--a-w c:\windows\$NtUninstallKB935448$\spuninst\spuninst.exe
              + 2006-12-14 08:53:58 394,976 -c--a-w c:\windows\$NtUninstallKB935448$\spuninst\updspapi.dll
              + 2005-06-28 08:23:40 216,800 -c--a-w c:\windows\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe
              + 2005-06-28 08:23:54 371,424 -c--a-w c:\windows\$NtUninstallKB936782_WMP11$\spuninst\updspapi.dll
              + 2006-10-18 20:47:20 10,834,432 -c--a-w c:\windows\$NtUninstallKB936782_WMP11$\wmp.dll
              + 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB938464_0$\spuninst\spuninst.exe
              + 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB938464_0$\spuninst\updspapi.dll
              + 2005-06-28 08:23:40 216,800 -c--a-w c:\windows\$NtUninstallKB939683$\spuninst\spuninst.exe
              + 2005-06-28 08:23:54 371,424 -c--a-w c:\windows\$NtUninstallKB939683$\spuninst\updspapi.dll
              + 2006-11-03 08:58:34 317,440 -c--a-w c:\windows\$NtUninstallKB939683$\unregmp2.exe
              + 2005-06-28 08:23:40 216,800 -c--a-w c:\windows\$NtUninstallKB941569$\spuninst\spuninst.exe
              + 2005-06-28 08:23:54 371,424 -c--a-w c:\windows\$NtUninstallKB941569$\spuninst\updspapi.dll
              + 2006-10-18 20:47:18 222,208 -c--a-w c:\windows\$NtUninstallKB941569$\wmasf.dll
              + 2004-08-03 23:07:10 82,944 -c--a-w c:\windows\$NtUninstallKB946648_0$\msgsc.dll
              + 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB946648_0$\spuninst\spuninst.exe
              + 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB946648_0$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 561,179 -c--a-w c:\windows\$NtUninstallKB950749$\dao360.dll
              + 2004-08-05 12:00:00 512,029 -c--a-w c:\windows\$NtUninstallKB950749$\msexch40.dll
              + 2004-08-05 12:00:00 319,517 -c--a-w c:\windows\$NtUninstallKB950749$\msexcl40.dll
              + 2004-08-05 12:00:00 1,507,356 -c--a-w c:\windows\$NtUninstallKB950749$\msjet40.dll
              + 2004-08-05 12:00:00 358,976 -c--a-w c:\windows\$NtUninstallKB950749$\msjetol1.dll
              + 2004-08-05 12:00:00 358,976 -c--a-w c:\windows\$NtUninstallKB950749$\msjetoledb40.dll
              + 2004-08-05 12:00:00 184,351 -c--a-w c:\windows\$NtUninstallKB950749$\msjint40.dll
              + 2004-08-05 12:00:00 53,279 -c--a-w c:\windows\$NtUninstallKB950749$\msjter40.dll
              + 2004-08-05 12:00:00 241,693 -c--a-w c:\windows\$NtUninstallKB950749$\msjtes40.dll
              + 2004-08-05 12:00:00 213,023 -c--a-w c:\windows\$NtUninstallKB950749$\msltus40.dll
              + 2004-08-05 12:00:00 348,189 -c--a-w c:\windows\$NtUninstallKB950749$\mspbde40.dll
              + 2004-08-05 12:00:00 421,919 -c--a-w c:\windows\$NtUninstallKB950749$\msrd2x40.dll
              + 2004-08-05 12:00:00 315,423 -c--a-w c:\windows\$NtUninstallKB950749$\msrd3x40.dll
              + 2004-08-05 12:00:00 552,989 -c--a-w c:\windows\$NtUninstallKB950749$\msrepl40.dll
              + 2004-08-05 12:00:00 258,077 -c--a-w c:\windows\$NtUninstallKB950749$\mstext40.dll
              + 2004-08-05 12:00:00 831,519 -c--a-w c:\windows\$NtUninstallKB950749$\mswdat10.dll
              + 2004-08-05 12:00:00 614,429 -c--a-w c:\windows\$NtUninstallKB950749$\mswstr10.dll
              + 2004-08-05 12:00:00 348,189 -c--a-w c:\windows\$NtUninstallKB950749$\msxbde40.dll
              + 2007-03-06 01:34:38 216,800 -c--a-w c:\windows\$NtUninstallKB950749$\spuninst\spuninst.exe
              + 2007-03-06 01:35:48 394,976 -c--a-w c:\windows\$NtUninstallKB950749$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 200,064 -c--a-w c:\windows\$NtUninstallKB950762_0$\rmcast.sys
              + 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB950762_0$\spuninst\spuninst.exe
              + 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB950762_0$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 243,200 -c--a-w c:\windows\$NtUninstallKB950974_0$\es.dll
              + 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB950974_0$\spuninst\spuninst.exe
              + 2007-11-30 12:39:29 406,392 -c--a-w c:\windows\$NtUninstallKB950974_0$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 678,400 -c--a-w c:\windows\$NtUninstallKB951066_0$\inetcomm.dll
              + 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB951066_0$\spuninst\spuninst.exe
              + 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB951066_0$\spuninst\updspapi.dll
              + 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB951072-v2$\spuninst\spuninst.exe
              + 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB951072-v2$\spuninst\updspapi.dll
              + 2004-08-03 22:40:30 274,944 -c--a-w c:\windows\$NtUninstallKB951376-v2_0$\bthport.sys
              + 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB951376-v2_0$\spuninst\spuninst.exe
              + 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$NtUninstallKB951376-v2_0$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 1,293,824 -c--a-w c:\windows\$NtUninstallKB951698_0$\quartz.dll
              + 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB951698_0$\spuninst\spuninst.exe
              + 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB951698_0$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 100,352 -c--a-w c:\windows\$NtUninstallKB951748_0$\6to4svc.dll
              + 2004-08-05 12:00:00 138,496 -c--a-w c:\windows\$NtUninstallKB951748_0$\afd.sys
              + 2004-08-05 12:00:00 148,480 -c--a-w c:\windows\$NtUninstallKB951748_0$\dnsapi.dll
              + 2004-08-05 12:00:00 247,808 -c--a-w c:\windows\$NtUninstallKB951748_0$\mswsock.dll
              + 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB951748_0$\spuninst\spuninst.exe
              + 2007-11-30 12:39:29 406,392 -c--a-w c:\windows\$NtUninstallKB951748_0$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 359,040 -c--a-w c:\windows\$NtUninstallKB951748_0$\tcpip.sys
              + 2004-08-05 12:00:00 223,616 -c--a-w c:\windows\$NtUninstallKB951748_0$\tcpip6.sys
              + 2006-10-18 19:03:58 100,864 -c--a-w c:\windows\$NtUninstallKB952069_WM9$\logagent.exe
              + 2007-07-27 06:28:58 234,872 -c--a-w c:\windows\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe
              + 2007-07-27 08:41:48 382,840 -c--a-w c:\windows\$NtUninstallKB952069_WM9$\spuninst\updspapi.dll
              + 2006-10-18 20:47:20 937,984 -c--a-w c:\windows\$NtUninstallKB952069_WM9$\wmnetmgr.dll
              + 2006-10-18 20:47:22 2,450,944 -c--a-w c:\windows\$NtUninstallKB952069_WM9$\wmvcore.dll
              + 2004-08-05 12:00:00 331,776 -c--a-w c:\windows\$NtUninstallKB952287_0$\msadce.dll
              + 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB952287_0$\spuninst\spuninst.exe
              + 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$NtUninstallKB952287_0$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 73,728 -c--a-w c:\windows\$NtUninstallKB952954_0$\mscms.dll
              + 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB952954_0$\spuninst\spuninst.exe
              + 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB952954_0$\spuninst\updspapi.dll
              + 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB953839$\spuninst\spuninst.exe
              + 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$NtUninstallKB953839$\spuninst\updspapi.dll
              + 2007-07-27 06:28:58 234,872 -c--a-w c:\windows\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe
              + 2007-07-27 08:41:48 382,840 -c--a-w c:\windows\$NtUninstallKB954154_WM11$\spuninst\updspapi.dll
              + 2006-10-18 20:47:20 295,936 -c--a-w c:\windows\$NtUninstallKB954154_WM11$\wmpeffects.dll
              + 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB954211_0$\spuninst\spuninst.exe
              + 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB954211_0$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 1,836,032 -c--a-w c:\windows\$NtUninstallKB954211_0$\win32k.sys
              + 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB954600_0$\spuninst\spuninst.exe
              + 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$NtUninstallKB954600_0$\spuninst\updspapi.dll
              + 2004-08-05 12:00:00 246,302 -c--a-w c:\windows\$NtUninstallKB954600_0$\strmdll.dll
              + 2004-08-05 12:00:00 1,236,480 -c--a-w c:\windows\$NtUninstallKB955069_0$\msxml3.dll
              + 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB955069_0$\spuninst\spuninst.exe
              + 2008-07-09 12:10:36 406,392 -c--a-w c:\windows\$NtUninstallKB955069_0$\spuninst\updspapi.dll
              + 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB955839$\spuninst\spuninst.exe
              + 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstall
              0
          4. beaucoup de .tmp dans ce system32 !!
            0
            1. Contributeur sécurité
              Ok c'est fait. Je suis encore malade ???

              Poste un log ZhpDiag pour etre sur :

              Ouvre ce lien et télécharge ZHPDiag :

              https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html

              Une fois le téléchargement achevé, dézippe le fichier obtenu et place ZHPDiag.exe sur ton Bureau.

              Double-clique sur l'icône pour lancer le programme.

              Clique sur Tous pour cocher toutes les cases des options.

              Clique sur la loupe pour lancer l'analyse.

              A la fin de l'analyse, clique sur l'appareil photo et enregistre le rapport sur ton Bureau.

              Ouvre le fichier sauvegardé (ZHPDiag.txt)avec le Bloc-Notes et copie son contenu dans ta réponse.

              Postes le en deux fois s'il le faut (le log est assez long).

              0
              1. salut
                Rapport de ZHPDiag v1.16 par Nicolas Coolman
                Enregistré le 18/01/2009 21:05:17
                Platform : Microsoft Windows XP (5.1.2600) Service Pack 3
                MSIE: Internet Explorer v7.0.5730.11

                ---\\ Processus lancés
                rundll32.exe
                C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe
                C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
                C:\Program Files\BitDefender\BitDefender 2009\bdagent.exe
                C:\Program Files\BitDefender\BitDefender 2009\IEShow.exe
                C:\PROGRA~1\Wanadoo\Shell.exe
                C:\WINDOWS\system32\ctfmon.exe
                C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                C:\WINDOWS\System32\svchost.exe
                C:\Program Files\Canon\CAL\CALMAIN.exe
                C:\WINDOWS\system32\services.exe
                C:\Program Files\Windows Live\Family Safety\fsssvc.exe
                C:\WINDOWS\System32\FTRTSVC.exe
                C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
                C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
                C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
                C:\WINDOWS\system32\nvsvc32.exe
                C:\WINDOWS\system32\lsass.exe
                C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
                C:\WINDOWS\system32\spoolsv.exe
                C:\Program Files\Tall Emu\Online Armor\oasrv.exe
                C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe

                ---\\ Pages de démarrage d'Internet Explorer (R0)
                R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
                R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr

                ---\\ Pages de recherche d'Internet Explorer (R1)
                R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
                R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                R1 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchasst.htm

                ---\\ Browser Helper Objects de navigateur (O2)
                O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll
                O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
                O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll
                O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - C:\Program Files\Windows Live\Family Safety\fssbho.dll
                O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
                O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
                O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
                O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.1852\swg.dll
                O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll

                ---\\ Internet Explorer Toolbars (O3)
                O3 - Toolbar: IEToolbar - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2009\IEToolbar.dll

                ---\\ Applications démarrées automatiquement par le registre (O4)
                O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
                O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
                O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe"
                O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
                O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
                O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun
                O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
                O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\BitDefender\BitDefender 2009\bdagent.exe"
                O4 - HKLM\..\Run: [BitDefender Antiphishing Helper] "C:\Program Files\BitDefender\BitDefender 2009\IEShow.exe"
                O4 - HKLM\..\Run: [OnlineArmor GUI] "C:\Program Files\Tall Emu\Online Armor\oaui.exe"
                O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
                O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
                O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
                O4 - HKLM\..\policies\Explorer: [NoDriveAutoRun] Data="67108863"
                O4 - HKLM\..\policies\Explorer: [NoDriveTypeAutoRun] Data="255"
                O4 - HKLM\..\policies\Explorer: [NoDrives] Data="0"
                O4 - Global Startup: HotSync Manager.lnk - C:\Program Files\Palm\Hotsync.exe
                O4 - Global Startup: HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
                O4 - Global Startup: InterVideo WinCinema Manager.lnk - C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
                O4 - Global Startup: Picture Package Menu.lnk - C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe
                O4 - Global Startup: Picture Package VCD Maker.lnk - C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe
                O4 - Global Startup: Ulead Photo Express Calendar Checker.lnk - C:\Program Files\Ulead Systems\Ulead Photo Express 4.0 Trial\CalCheck.exe

                ---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
                O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites

                ---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
                O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe,302
                O9 - Extra 'Tools' menuitem: Windows Messenger - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - C:\Program Files\Messenger\msmsgs.exe,302
                O9 - Extra 'Tools' menuitem: Livre de reliures HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll,208
                O9 - Extra 'Tools' menuitem: Sélection intelligente HP - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll,210
                O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
                O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll,201
                O9 - Extra button: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe,302
                O9 - Extra button: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
                O9 - Extra button: Livre de reliures HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll,208
                O9 - Extra button: Sélection intelligente HP - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll,210
                O9 - Extra button: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe,302

                ---\\ Objets ActiveX (Downloaded Program Files)(O16)
                O16 - DPF: CabBuilder (CabBuilder) - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
                O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - http://download.microsoft.com/download/C/B/F/CBF23A2C-3E55-4664-BC5C-762780D79BA0/OGAControl.cab
                O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/softwareupdate/su/ocx/15031/CTSUEng.cab
                O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
                O16 - DPF: {1E3F1348-4370-4BBE-A67A-CC7ED824CA85} (Microsoft Genuine Advantage Self Support Tool) - http://download.microsoft.com/download/7/4/9/749b0dc5-2175-4d5b-a6dd-9c4bc923683e/Selfhelpcontrol.cab
                O16 - DPF: {474F00F5-3853-492C-AC3A-476512BBC336} (UploadListView Class) - http://picasaweb.google.com/s/v/27.38/uploader2.cab
                O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
                O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - https://www.touslesdrivers.com/index.php?v_page=29
                O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} () - http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab
                O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game02.zylom.com/activex/zylomgamesplayer.cab
                O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
                O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
                O16 - DPF: {E6ACF817-0A85-4EBE-9F0A-096C6488CFEA} (NTR ActiveX 1.1.8) - http://eu.ntrsupport.com/inquiero/mod/setup/ntractivex118_28.cab
                O16 - DPF: {EBF85371-A38F-485B-B28F-0B4C82D25937} (CUpdateCtl Object) - http://update.hpphoto.com/download/HPSWUpdate.ocx
                O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
                O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/softwareupdate/su/ocx/15034/CTPID.cab

                ---\\ Piratage de domaine (Lop.com) (O17)
                O17 - HKLM\System\CCS\Services\Tcpip\..\{60219892-9BD6-4388-818E-20464378E3CF}: 192.168.1.1
                O17 - HKLM\System\CS1\Services\Tcpip\..\{60219892-9BD6-4388-818E-20464378E3CF}: 192.168.1.1
                O17 - HKLM\System\CS3\Services\Tcpip\..\{60219892-9BD6-4388-818E-20464378E3CF}: 192.168.1.1

                ---\\ Protocole additionnel et piratage de protocole (O18)
                O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL

                ---\\ Valeur de registre AppInit_DLLs et sous-clés Winlogon Notify (O20)
                O20 - Winlogon Notify: SABWINLOStartup - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
                O20 - Winlogon Notify: WlDimsStartup - C:\WINDOWS\System32\%SystemRoot%\System32\dimsntfy.dll

                ---\\ Services NT non Microsoft et non désactivés (O23)
                O23 - Service: Canon Camera Access Library 8 (CCALib8) - C:\Program Files\Canon\CAL\CALMAIN.exe
                O23 - Service: Windows Live Contrôle parental (fsssvc) - C:\Program Files\Windows Live\Family Safety\fsssvc.exe
                O23 - Service: France Telecom Routing Table Service (FTRTSVC) - C:\WINDOWS\System32\FTRTSVC.exe
                O23 - Service: BitDefender Desktop Update Service (LIVESRV) - C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe" /service
                O23 - Service: LVCOMSer (LVCOMSer) - C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
                O23 - Service: Process Monitor (LVPrcSrv) - C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
                O23 - Service: NVIDIA Display Driver Service (NVSvc) - C:\WINDOWS\system32\nvsvc32.exe
                O23 - Service: SeaPort (SeaPort) - C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
                O23 - Service: Spouleur d'impression (Spooler) - C:\WINDOWS\system32\spoolsv.exe
                O23 - Service: Online Armor (SvcOnlineArmor) - C:\Program Files\Tall Emu\Online Armor\oasrv.exe
                O23 - Service: BitDefender Virus Shield (VSSERV) - C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe" /service

                ---\\ Composants installés (ActiveSetup Installed Components) (O40)
                O40 - ASIC: IE7 Uninstall Stub - <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - C:\WINDOWS\system32\ieudinit.exe
                O40 - ASIC: Microsoft Windows Media Player - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\inf\unregmp2.exe /ShowWMP
                O40 - ASIC: Internet Explorer - {26923b43-4d38-484f-9b9e-de460746276c} - C:\WINDOWS\system32\shmgrate.exe OCInstallUserConfigIE
                O40 - ASIC: Outlook Express - {881dd1c5-3dcf-431b-b061-f3f88e8be88a} - C:\WINDOWS\system32\shmgrate.exe OCInstallUserConfigOE
                O40 - ASIC: Personnalisation du navigateur - {E54A439F-A4B0-4526-A16B-B4E2ECE95B3D} - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
                O40 - ASIC: Adobe Flash Player 9 ActiveX - D27CDB6E-AE6D-11CF-96B8-444553540000 - (not file)
                O40 - ASIC: Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - (not file)
                O40 - ASIC: Rendu VML (Vector Graphics Rendering) - {10072CEC-8CC1-11D1-986E-00A0C955B42F} - (not file)
                O40 - ASIC: Microsoft NetShow Player - {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - C:\WINDOWS\system32\wmpdxm.dll
                O40 - ASIC: Microsoft Windows Media Player 6.4 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\system32\wmpdxm.dll
                O40 - ASIC: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
                O40 - ASIC: DirectAnimation - {283807B5-2C60-11D0-A31D-00AA00B92C03} - (not file)
                O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - C:\WINDOWS\system32\regsvr32.exe /s /n /i:/UserInstall C:\WINDOWS\system32\themeui.dll
                O40 - ASIC: Liaison de données Dynamic HTML pour Java - {36f8ec70-c29a-11d1-b5c7-0000f8051515} - (not file)
                O40 - ASIC: Offline Browsing Pack - {3af36230-a269-11d1-b5bf-0000f8051515} - (not file)
                O40 - ASIC: Uniscribe - {3bf42070-b3b1-11d1-b5c5-0000f8051515} - (not file)
                O40 - ASIC: Microsoft .NET Framework 1.1 Service Pack 1 (KB867460) - {411EDCF7-755D-414E-A74B-3DCD6583F589} - (not file)
                O40 - ASIC: Création avancée - {4278c270-a269-11d1-b5bf-0000f8051515} - (not file)
                O40 - ASIC: Microsoft Outlook Express 6 - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install
                O40 - ASIC: NetMeeting 3.01 - {44BBA842-CC51-11CF-AAFA-00AA00B6015B} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT
                O40 - ASIC: DirectShow - {44BBA848-CC51-11CF-AAFA-00AA00B6015C} - (not file)
                O40 - ASIC: DirectDrawEx - {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - (not file)
                O40 - ASIC: Internet Explorer Help - {45ea75a0-a269-11d1-b5bf-0000f8051515} - (not file)
                O40 - ASIC: Classes Java DirectAnimation - {4f216970-c90c-11d1-b5c7-0000f8051515} - (not file)
                O40 - ASIC: Microsoft Windows Script 5.7 - {4f645220-306d-11d2-995d-00c04f98bbc9} - (not file)
                O40 - ASIC: Windows Messenger 4.7 - {5945c046-1e7d-11d1-bc44-00c04fd912be} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser
                O40 - ASIC: (no name) - {5A8D6EE0-3E18-11D0-821E-444553540000} - (not file)
                O40 - ASIC: Internet Explorer Setup Tools - {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - (not file)
                O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} - (not file)
                O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp11.inf,PerUserStub
                O40 - ASIC: MSN Site Access - {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - (not file)
                O40 - ASIC: .NET Framework - {7131646D-CD3C-40F4-97B9-CD9E4E6262EF} - (not file)
                O40 - ASIC: Carnet d'adresses 6 - {7790769C-0471-11d2-AF11-00C04FA35D02} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install
                O40 - ASIC: Mise à jour du Bureau Windows - {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
                O40 - ASIC: Internet Explorer - {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\WINDOWS\system32\ie4uinit.exe -BaseSettings
                O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install
                O40 - ASIC: Microsoft .NET Framework 1.1 Hotfix (KB928366) - {8D1D0E9A-C799-4D28-9E29-0061D1E66E43} - (not file)
                O40 - ASIC: Dynamic HTML Data Binding - {9381D8F2-0288-11D0-9501-00AA00B911A5} - (not file)
                O40 - ASIC: Internet Explorer Core Fonts - {C9E9A340-D1F1-11D0-821E-444553540600} - (not file)
                O40 - ASIC: .NET Framework - {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} - (not file)
                O40 - ASIC: Planificateur de tâches - {CC2A9BA0-3BDD-11D0-821E-444553540000} - (not file)
                O40 - ASIC: (no name) - {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - (not file)
                O40 - ASIC: Macromedia Shockwave Flash - {D27CDB6E-AE6D-11cf-96B8-444553540000} - C:\WINDOWS\system32\Macromed\Flash\Flash9e.ocx
                O40 - ASIC: HTML Help - {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - (not file)
                O40 - ASIC: Active Directory Service Interface - {E92B03AB-B707-11d2-9CBD-0000F87A369E} - (not file)
                O40 - ASIC: .NET Framework - {F196AC50-7C95-42E1-9947-BDAB18BF3C8C} - (not file)
                O40 - ASIC: Installation Helper - {F4B2380F-9F83-482B-B51F-FD18C7EDD923} - (not file)

                ---\\ Pilotes lancés au démarrage (O41)
                O41 - Driver: ADI UAA Function Driver for High Definition Audio Service (ADIHdAudAddService) - C:\WINDOWS\system32\drivers\ADIHdAud.sys
                O41 - Driver: AEAudio Service (AEAudioService) - C:\WINDOWS\system32\drivers\AEAudio.sys
                O41 - Driver: Suppresseur d'écho acoustique (Noyau Microsoft) (aec) - C:\WINDOWS\system32\drivers\aec.sys
                O41 - Driver: Pilote de média asynchrone RAS (AsyncMac) - C:\WINDOWS\system32\DRIVERS\asyncmac.sys
                O41 - Driver: Protocole client ATM ARP (Atmarpc) - C:\WINDOWS\system32\DRIVERS\atmarpc.sys
                O41 - Driver: Pilote audio Stub (audstub) - C:\WINDOWS\system32\DRIVERS\audstub.sys
                O41 - Driver: BitDefender Firewall NDIS Filter Service (Bdfndisf) - C:\WINDOWS\system32\DRIVERS\bdfndisf.sys
                O41 - Driver: bdfsfltr (bdfsfltr) - C:\WINDOWS\system32\drivers\bdfsfltr.sys
                O41 - Driver: BDSelfPr (BDSelfPr) - C:\Program Files\BitDefender\BitDefender 2009\bdselfpr.sys
                O41 - Driver: BDVEDISK (BDVEDISK) - C:\Program Files\BitDefender\BitDefender 2009\BDVEDISK.sys
                O41 - Driver: Service d'énumérateur Bluetooth (BthEnum) - C:\WINDOWS\system32\DRIVERS\BthEnum.sys
                O41 - Driver: Pilote de communications modem Bluetooth (BTHMODEM) - C:\WINDOWS\system32\DRIVERS\bthmodem.sys
                O41 - Driver: Périphérique Bluetooth (réseau personnel) (BthPan) - C:\WINDOWS\system32\DRIVERS\bthpan.sys
                O41 - Driver: Pilote de port Bluetooth (BTHPORT) - C:\WINDOWS\System32\Drivers\BTHport.sys
                O41 - Driver: Pilote USB radio Bluetooth (BTHUSB) - C:\WINDOWS\System32\Drivers\BTHUSB.sys
                O41 - Driver: Décodeur sous-titre fermé (CCDECODE) - C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
                O41 - Driver: (no object) (dmboot) - C:\WINDOWS\System32\drivers\dmboot.sys
                O41 - Driver: (no object) (dmio) - C:\WINDOWS\System32\drivers\dmio.sys
                O41 - Driver: (no object) (dmload) - C:\WINDOWS\System32\drivers\dmload.sys
                O41 - Driver: Synthétiseur DLS du noyau Microsoft (DMusic) - C:\WINDOWS\system32\drivers\DMusic.sys
                O41 - Driver: driverhardwarev2 (driverhardwarev2) - C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys
                O41 - Driver: Filtre de décodeur DRM (Noyau Microsoft) (drmkaud) - C:\WINDOWS\system32\drivers\drmkaud.sys
                O41 - Driver: UVC Filter Service (FilterService) - C:\WINDOWS\system32\DRIVERS\lvuvcflt.sys
                O41 - Driver: FltMgr (FltMgr) - C:\WINDOWS\system32\drivers\fltmgr.sys
                O41 - Driver: FssFltr (fssfltr) - C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys
                O41 - Driver: Classificateur de paquets générique (Gpc) - C:\WINDOWS\system32\DRIVERS\msgpc.sys
                O41 - Driver: Microsoft UAA Function Driver for High Definition Audio Service (HdAudAddService) - C:\WINDOWS\system32\drivers\HdAudio.sys
                O41 - Driver: Pilote de bus Microsoft UAA pour High Definition Audio (HDAudBus) - C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
                O41 - Driver: Pilote de classe HID Microsoft (hidusb) - C:\WINDOWS\system32\DRIVERS\hidusb.sys
                O41 - Driver: IEEE-1284.4 Driver HPZid412 (HPZid412) - C:\WINDOWS\system32\DRIVERS\HPZid412.sys
                O41 - Driver: Print Class Driver for IEEE-1284.4 HPZipr12 (HPZipr12) - C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
                O41 - Driver: USB to IEEE-1284.4 Translation Driver HPZius12 (HPZius12) - C:\WINDOWS\system32\DRIVERS\HPZius12.sys
                O41 - Driver: Pilote pour clavier i8042 et souris sur port PS/2 (i8042prt) - C:\WINDOWS\system32\DRIVERS\i8042prt.sys
                O41 - Driver: Pilote du pare-feu Windows IPv6 (Ip6Fw) - C:\WINDOWS\system32\drivers\ip6fw.sys
                O41 - Driver: Pilote de filtre de trafic IP (IpFilterDriver) - C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
                O41 - Driver: Pilote de tunnelage IP dans IP (IpInIp) - C:\WINDOWS\system32\DRIVERS\ipinip.sys
                O41 - Driver: Pilote IPSEC (IPSec) - C:\WINDOWS\system32\DRIVERS\ipsec.sys
                O41 - Driver: Service énumérateur IR (IRENUM) - C:\WINDOWS\system32\DRIVERS\irenum.sys
                O41 - Driver: IVI ASPI Shell (Iviaspi) - C:\WINDOWS\system32\drivers\iviaspi.sys
                O41 - Driver: Pilote HID de clavier (kbdhid) - C:\WINDOWS\system32\DRIVERS\kbdhid.sys
                O41 - Driver: Mélangeur audio Wave de noyau Microsoft (kmixer) - C:\WINDOWS\system32\drivers\kmixer.sys
                O41 - Driver: Logitech QuickCam E3500(UVC) (LVUVC) - C:\WINDOWS\system32\DRIVERS\lvuvc.sys
                O41 - Driver: Pilote HID de souris (mouhid) - C:\WINDOWS\system32\DRIVERS\mouhid.sys
                O41 - Driver: Redirecteur client WebDav (MRxDAV) - C:\WINDOWS\system32\DRIVERS\mrxdav.sys
                O41 - Driver: MRXSMB (MRxSmb) - C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
                O41 - Driver: Proxy de service de répartition Microsoft (MSKSSRV) - C:\WINDOWS\system32\drivers\MSKSSRV.sys
                O41 - Driver: Proxy d'horloge de répartition Microsoft (MSPCLOCK) - C:\WINDOWS\system32\drivers\MSPCLOCK.sys
                O41 - Driver: Proxy de gestion de qualité de répartition Microsoft (MSPQM) - C:\WINDOWS\system32\drivers\MSPQM.sys
                O41 - Driver: Pilote BIOS de gestion de systèmes Microsoft (mssmbios) - C:\WINDOWS\system32\DRIVERS\mssmbios.sys
                O41 - Driver: Convertisseur en T/site-à-site de répartition Microsoft (MSTEE) - C:\WINDOWS\system32\drivers\MSTEE.sys
                O41 - Driver: Codec NABTS/FEC VBI (NABTSFEC) - C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
                O41 - Driver: Connection TV/vidéo Microsoft (NdisIP) - C:\WINDOWS\system32\DRIVERS\NdisIP.sys
                O41 - Driver: NDISRD (NDISRD) - C:\WINDOWS\system32\drivers\NDISRD.sys
                O41 - Driver: Pilote TAPI NDIS d'accès distant (NdisTapi) - C:\WINDOWS\system32\DRIVERS\ndistapi.sys
                O41 - Driver: NDIS mode utilisateur E/S Protocole (Ndisuio) - C:\WINDOWS\system32\DRIVERS\ndisuio.sys
                O41 - Driver: Pilote réseau étendu NDIS d'accès distant (NdisWan) - C:\WINDOWS\system32\DRIVERS\ndiswan.sys
                O41 - Driver: Interface NetBIOS (NetBIOS) - C:\WINDOWS\system32\DRIVERS\netbios.sys
                O41 - Driver: NetBIOS sur TCP/IP (NetBT) - C:\WINDOWS\system32\DRIVERS\netbt.sys
                O41 - Driver: (no object) (nv) - C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
                O41 - Driver: (no object) (nvata) - C:\WINDOWS\system32\DRIVERS\nvata.sys
                O41 - Driver: NVIDIA nForce Networking Controller Driver (NVENETFD) - C:\WINDOWS\system32\DRIVERS\NVENETFD.sys
                O41 - Driver: NVIDIA Network Bus Enumerator (nvnetbus) - C:\WINDOWS\system32\DRIVERS\nvnetbus.sys
                O41 - Driver: Pilote de filtre de trafic IPX (NwlnkFlt) - C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
                O41 - Driver: Pilote de transfert de trafic IPX (NwlnkFwd) - C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
                O41 - Driver: OADriver (OADevice) - C:\WINDOWS\system32\drivers\OADriver.sys
                O41 - Driver: OAmon (OAmon) - C:\WINDOWS\system32\drivers\OAmon.sys
                O41 - Driver: (no object) (PalmUSBD) - C:\WINDOWS\system32\drivers\PalmUSBD.sys
                O41 - Driver: PCAMPR5 NDIS Protocol Driver (PCAMPR5) - C:\WINDOWS\system32\PCAMPR5.SYS
                O41 - Driver: PCANDIS5 NDIS Protocol Driver (PCANDIS5) - C:\WINDOWS\system32\PCANDIS5.SYS
                O41 - Driver: Miniport réseau étendu (PPTP) (PptpMiniport) - C:\WINDOWS\system32\DRIVERS\raspptp.sys
                O41 - Driver: Pilote processeur (Processor) - C:\WINDOWS\system32\DRIVERS\processr.sys
                O41 - Driver: Profos (Profos) - C:\Program Files\Fichiers communs\BitDefender\BitDefender Threat Scanner\profos.sys
                O41 - Driver: Planificateur de paquets QoS (PSched) - C:\WINDOWS\system32\DRIVERS\psched.sys
                O41 - Driver: PsSdk31 (PsSdk31) - C:\WINDOWS\system32\Drivers\pssdk31.drv
                O41 - Driver: PsSdkLBF (PsSdkLBF) - C:\WINDOWS\system32\Drivers\pssdklbf.drv
                O41 - Driver: Pilote de liaison parallèle directe (Ptilink) - C:\WINDOWS\system32\DRIVERS\ptilink.sys
                O41 - Driver: PxHelp20 (PxHelp20) - C:\WINDOWS\System32\Drivers\PxHelp20.sys
                O41 - Driver: Pilote de connexion automatique d'accès distant (RasAcd) - C:\WINDOWS\system32\DRIVERS\rasacd.sys
                O41 - Driver: Miniport réseau étendu (L2TP) (Rasl2tp) - C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
                O41 - Driver: Pilote PPPOE d'accès à distance (RasPppoe) - C:\WINDOWS\system32\DRIVERS\raspppoe.sys
                O41 - Driver: Parallèle direct (Raspti) - C:\WINDOWS\system32\DRIVERS\raspti.sys
                O41 - Driver: Rdbss (Rdbss) - C:\WINDOWS\system32\DRIVERS\rdbss.sys
                O41 - Driver: Pilote de filtre de lecture digitale de CD audio (redbook) - C:\WINDOWS\system32\DRIVERS\redbook.sys
                O41 - Driver: Périphérique Bluetooth (TDI protocole RFCOMM) (RFCOMM) - C:\WINDOWS\system32\DRIVERS\rfcomm.sys
                O41 - Driver: SASDIFSV (SASDIFSV) - C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
                O41 - Driver: SASENUM (SASENUM) - C:\Program Files\SUPERAntiSpyware\SASENUM.SYS
                O41 - Driver: SASKUTIL (SASKUTIL) - C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys
                O41 - Driver: Sony Ericsson Device 046 Driver driver (WDM) (SE2Ebus) - C:\WINDOWS\system32\DRIVERS\SE2Ebus.sys
                O41 - Driver: Sony Ericsson Device 046 USB WMC Modem Filter (SE2Emdfl) - C:\WINDOWS\system32\DRIVERS\SE2Emdfl.sys
                O41 - Driver: Sony Ericsson Device 046 USB WMC Modem Driver (SE2Emdm) - C:\WINDOWS\system32\DRIVERS\SE2Emdm.sys
                O41 - Driver: Sony Ericsson Device 046 USB WMC Device Management Drivers (WDM) (SE2Emgmt) - C:\WINDOWS\system32\DRIVERS\SE2Emgmt.sys
                O41 - Driver: Sony Ericsson Device 046 USB Ethernet Emulation SEMC46 (NDIS) (se2End5) - C:\WINDOWS\system32\DRIVERS\se2End5.sys
                O41 - Driver: Sony Ericsson Device 046 USB WMC OBEX Interface (SE2Eobex) - C:\WINDOWS\system32\DRIVERS\SE2Eobex.sys
                O41 - Driver: Sony Ericsson Device 046 USB Ethernet Emulation SEMC46 (WDM) (se2Eunic) - C:\WINDOWS\system32\DRIVERS\se2Eunic.sys
                O41 - Driver: Secdrv (Secdrv) - C:\WINDOWS\system32\DRIVERS\secdrv.sys
                O41 - Driver: SenFilt Service (SenFiltService) - C:\WINDOWS\system32\drivers\Senfilt.sys
                O41 - Driver: Pilote de filtre Serenum (serenum) - C:\WINDOWS\system32\DRIVERS\serenum.sys
                O41 - Driver: SiS 163 usb Wireless LAN Adapter Driver (SIS163u) - C:\WINDOWS\system32\DRIVERS\sis163u.sys
                O41 - Driver: Détrameur décalage BDA (SLIP) - C:\WINDOWS\system32\DRIVERS\SLIP.sys
                O41 - Driver: Sony Digital Imaging Video2 (sonypvs1) - C:\WINDOWS\system32\DRIVERS\sonypvs1.sys
                O41 - Driver: Pilote de filtrage Sony USB (SONYPVU1) (SONYPVU1) - C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS
                O41 - Driver: Splitter audio du noyau Microsoft (splitter) - C:\WINDOWS\system32\drivers\splitter.sys
                O41 - Driver: Pilote de filtre de restauration système (sr) - C:\WINDOWS\system32\DRIVERS\sr.sys
                O41 - Driver: Srv (Srv) - C:\WINDOWS\system32\DRIVERS\srv.sys
                O41 - Driver: BDA IPSink (streamip) - C:\WINDOWS\system32\DRIVERS\StreamIP.sys
                O41 - Driver: Pilote de bus logiciel (swenum) - C:\WINDOWS\system32\DRIVERS\swenum.sys
                O41 - Driver: Synthétiseur de table de sons GC noyau Microsoft (swmidi) - C:\WINDOWS\system32\drivers\swmidi.sys
                O41 - Driver: Périphérique audio système du noyau Microsoft (sysaudio) - C:\WINDOWS\system32\drivers\sysaudio.sys
                O41 - Driver: Pilote du protocole TCP/IP (Tcpip) - C:\WINDOWS\system32\DRIVERS\tcpip.sys
                O41 - Driver: Trufos (Trufos) - C:\Program Files\Fichiers communs\BitDefender\BitDefender Threat Scanner\trufos.sys
                O41 - Driver: Pilote de mise à jour microcode (Update) - C:\WINDOWS\system32\DRIVERS\update.sys
                O41 - Driver: Pilote USB audio (WDM) (usbaudio) - C:\WINDOWS\system32\drivers\usbaudio.sys
                O41 - Driver: Pilote parent générique USB Microsoft (usbccgp) - C:\WINDOWS\system32\DRIVERS\usbccgp.sys
                O41 - Driver: Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0 (usbehci) - C:\WINDOWS\system32\DRIVERS\usbehci.sys
                O41 - Driver: Concentrateur USB2 (usbhub) - C:\WINDOWS\system32\DRIVERS\usbhub.sys
                O41 - Driver: Pilote miniport de contrôleur hôte ouvert USB Microsoft (usbohci) - C:\WINDOWS\system32\DRIVERS\usbohci.sys
                O41 - Driver: Classe d'imprimantes USB Microsoft (usbprint) - C:\WINDOWS\system32\DRIVERS\usbprint.sys
                O41 - Driver: Pilote de scanneur USB (usbscan) - C:\WINDOWS\system32\DRIVERS\usbscan.sys
                O41 - Driver: Pilote de stockage de masse USB (USBSTOR) - C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
                O41 - Driver: Périphérique vidéo USB (WDM) (usbvideo) - C:\WINDOWS\System32\Drivers\usbvideo.sys
                O41 - Driver: Inventel Gateway (USB_RNDIS) - C:\WINDOWS\system32\DRIVERS\usb8023.sys
                O41 - Driver: Pilote ARP IP d'accès distant (Wanarp) - C:\WINDOWS\system32\DRIVERS\wanarp.sys
                O41 - Driver: Pilote WINMM de compatibilité audio WDM Microsoft (wdmaud) - C:\WINDOWS\system32\drivers\wdmaud.sys
                O41 - Driver: WpdUsb (WpdUsb) - C:\WINDOWS\system32\DRIVERS\wpdusb.sys
                O41 - Driver: Codec Teletext standard (WSTCODEC) - C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
                O41 - Driver: Windows Driver Foundation - User-mode Driver Framework Platform Driver (WudfPf) - C:\WINDOWS\system32\DRIVERS\WudfPf.sys
                O41 - Driver: Windows Driver Foundation - User-mode Driver Framework Reflector (WudfRd) - C:\WINDOWS\system32\DRIVERS\wudfrd.sys
                O41 - Driver: ADI UAA Function Driver for High Definition Audio Service (ADIHdAudAddService) - C:\WINDOWS\system32\drivers\ADIHdAud.sys
                O41 - Driver: AEAudio Service (AEAudioService) - C:\WINDOWS\system32\drivers\AEAudio.sys
                O41 - Driver: Suppresseur d'écho acoustique (Noyau Microsoft) (aec) - C:\WINDOWS\system32\drivers\aec.sys
                O41 - Driver: Pilote de média asynchrone RAS (AsyncMac) - C:\WINDOWS\system32\DRIVERS\asyncmac.sys
                O41 - Driver: Protocole client ATM ARP (Atmarpc) - C:\WINDOWS\system32\DRIVERS\atmarpc.sys
                O41 - Driver: Pilote audio Stub (audstub) - C:\WINDOWS\system32\DRIVERS\audstub.sys
                O41 - Driver: BitDefender Firewall NDIS Filter Service (Bdfndisf) - C:\WINDOWS\system32\DRIVERS\bdfndisf.sys
                O41 - Driver: bdfsfltr (bdfsfltr) - C:\WINDOWS\system32\drivers\bdfsfltr.sys
                O41 - Driver: BDSelfPr (BDSelfPr) - C:\Program Files\BitDefender\BitDefender 2009\bdselfpr.sys
                O41 - Driver: BDVEDISK (BDVEDISK) - C:\Program Files\BitDefender\BitDefender 2009\BDVEDISK.sys
                O41 - Driver: Service d'énumérateur Bluetooth (BthEnum) - C:\WINDOWS\system32\DRIVERS\BthEnum.sys
                O41 - Driver: Pilote de communications modem Bluetooth (BTHMODEM) - C:\WINDOWS\system32\DRIVERS\bthmodem.sys
                O41 - Driver: Périphérique Bluetooth (réseau personnel) (BthPan) - C:\WINDOWS\system32\DRIVERS\bthpan.sys
                O41 - Driver: Pilote de port Bluetooth (BTHPORT) - C:\WINDOWS\System32\Drivers\BTHport.sys
                O41 - Driver: Pilote USB radio Bluetooth (BTHUSB) - C:\WINDOWS\System32\Drivers\BTHUSB.sys
                O41 - Driver: Décodeur sous-titre fermé (CCDECODE) - C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
                O41 - Driver: (no object) (dmboot) - C:\WINDOWS\System32\drivers\dmboot.sys
                O41 - Driver: (no object) (dmio) - C:\WINDOWS\System32\drivers\dmio.sys
                O41 - Driver: (no object) (dmload) - C:\WINDOWS\System32\drivers\dmload.sys
                O41 - Driver: Synthétiseur DLS du noyau Microsoft (DMusic) - C:\WINDOWS\system32\drivers\DMusic.sys
                O41 - Driver: driverhardwarev2 (driverhardwarev2) - C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys
                O41 - Driver: Filtre de décodeur DRM (Noyau Microsoft) (drmkaud) - C:\WINDOWS\system32\drivers\drmkaud.sys
                O41 - Driver: UVC Filter Service (FilterService) - C:\WINDOWS\system32\DRIVERS\lvuvcflt.sys
                O41 - Driver: FltMgr (FltMgr) - C:\WINDOWS\system32\drivers\fltmgr.sys
                O41 - Driver: FssFltr (fssfltr) - C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys
                O41 - Driver: Classificateur de paquets générique (Gpc) - C:\WINDOWS\system32\DRIVERS\msgpc.sys
                O41 - Driver: Microsoft UAA Function Driver for High Definition Audio Service (HdAudAddService) - C:\WINDOWS\system32\drivers\HdAudio.sys
                O41 - Driver: Pilote de bus Microsoft UAA pour High Definition Audio (HDAudBus) - C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
                O41 - Driver: Pilote de classe HID Microsoft (hidusb) - C:\WINDOWS\system32\DRIVERS\hidusb.sys
                O41 - Driver: IEEE-1284.4 Driver HPZid412 (HPZid412) - C:\WINDOWS\system32\DRIVERS\HPZid412.sys
                O41 - Driver: Print Class Driver for IEEE-1284.4 HPZipr12 (HPZipr12) - C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
                O41 - Driver: USB to IEEE-1284.4 Translation Driver HPZius12 (HPZius12) - C:\WINDOWS\system32\DRIVERS\HPZius12.sys
                O41 - Driver: Pilote pour clavier i8042 et souris sur port PS/2 (i8042prt) - C:\WINDOWS\system32\DRIVERS\i8042prt.sys
                O41 - Driver: Pilote du pare-feu Windows IPv6 (Ip6Fw) - C:\WINDOWS\system32\drivers\ip6fw.sys
                O41 - Driver: Pilote de filtre de trafic IP (IpFilterDriver) - C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
                O41 - Driver: Pilote de tunnelage IP dans IP (IpInIp) - C:\WINDOWS\system32\DRIVERS\ipinip.sys
                O41 - Driver: Pilote IPSEC (IPSec) - C:\WINDOWS\system32\DRIVERS\ipsec.sys
                O41 - Driver: Service énumérateur IR (IRENUM) - C:\WINDOWS\system32\DRIVERS\irenum.sys
                O41 - Driver: IVI ASPI Shell (Iviaspi) - C:\WINDOWS\system32\drivers\iviaspi.sys
                O41 - Driver: Pilote HID de clavier (kbdhid) - C:\WINDOWS\system32\DRIVERS\kbdhid.sys
                O41 - Driver: Mélangeur audio Wave de noyau Microsoft (kmixer) - C:\WINDOWS\system32\drivers\kmixer.sys
                O41 - Driver: Logitech QuickCam E3500(UVC) (LVUVC) - C:\WINDOWS\system32\DRIVERS\lvuvc.sys
                O41 - Driver: Pilote HID de souris (mouhid) - C:\WINDOWS\system32\DRIVERS\mouhid.sys
                O41 - Driver: Redirecteur client WebDav (MRxDAV) - C:\WINDOWS\system32\DRIVERS\mrxdav.sys
                O41 - Driver: MRXSMB (MRxSmb) - C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
                O41 - Driver: Proxy de service de répartition Microsoft (MSKSSRV) - C:\WINDOWS\system32\drivers\MSKSSRV.sys
                O41 - Driver: Proxy d'horloge de répartition Microsoft (MSPCLOCK) - C:\WINDOWS\system32\drivers\MSPCLOCK.sys
                O41 - Driver: Proxy de gestion de qualité de répartition Microsoft (MSPQM) - C:\WINDOWS\system32\drivers\MSPQM.sys
                O41 - Driver: Pilote BIOS de gestion de systèmes Microsoft (mssmbios) - C:\WINDOWS\system32\DRIVERS\mssmbios.sys
                O41 - Driver: Convertisseur en T/site-à-site de répartition Microsoft (MSTEE) - C:\WINDOWS\system32\drivers\MSTEE.sys
                O41 - Driver: Codec NABTS/FEC VBI (NABTSFEC) - C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
                O41 - Driver: Connection TV/vidéo Microsoft (NdisIP) - C:\WINDOWS\system32\DRIVERS\NdisIP.sys
                O41 - Driver: NDISRD (NDISRD) - C:\WINDOWS\system32\drivers\NDISRD.sys
                O41 - Driver: Pilote TAPI NDIS d'accès distant (NdisTapi) - C:\WINDOWS\system32\DRIVERS\ndistapi.sys
                O41 - Driver: NDIS mode utilisateur E/S Protocole (Ndisuio) - C:\WINDOWS\system32\DRIVERS\ndisuio.sys
                O41 - Driver: Pilote réseau étendu NDIS d'accès distant (NdisWan) - C:\WINDOWS\system32\DRIVERS\ndiswan.sys
                O41 - Driver: Interface NetBIOS (NetBIOS) - C:\WINDOWS\system32\DRIVERS\netbios.sys
                O41 - Driver: NetBIOS sur TCP/IP (NetBT) - C:\WINDOWS\system32\DRIVERS\netbt.sys
                O41 - Driver: (no object) (nv) - C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
                O41 - Driver: (no object) (nvata) - C:\WINDOWS\system32\DRIVERS\nvata.sys
                O41 - Driver: NVIDIA nForce Networking Controller Driver (NVENETFD) - C:\WINDOWS\system32\DRIVERS\NVENETFD.sys
                O41 - Driver: NVIDIA Network Bus Enumerator (nvnetbus) - C:\WINDOWS\system32\DRIVERS\nvnetbus.sys
                O41 - Driver: Pilote de filtre de trafic IPX (NwlnkFlt) - C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
                O41 - Driver: Pilote de transfert de trafic IPX (NwlnkFwd) - C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
                O41 - Driver: OADriver (OADevice) - C:\WINDOWS\system32\drivers\OADriver.sys
                O41 - Driver: OAmon (OAmon) - C:\WINDOWS\system32\drivers\OAmon.sys
                O41 - Driver: (no object) (PalmUSBD) - C:\WINDOWS\system32\drivers\PalmUSBD.sys
                O41 - Driver: PCAMPR5 NDIS Protocol Driver (PCAMPR5) - C:\WINDOWS\system32\PCAMPR5.SYS
                O41 - Driver: PCANDIS5 NDIS Protocol Driver (PCANDIS5) - C:\WINDOWS\system32\PCANDIS5.SYS
                O41 - Driver: Miniport réseau étendu (PPTP) (PptpMiniport) - C:\WINDOWS\system32\DRIVERS\raspptp.sys
                O41 - Driver: Pilote processeur (Processor) - C:\WINDOWS\system32\DRIVERS\processr.sys
                O41 - Driver: Profos (Profos) - C:\Program Files\Fichiers communs\BitDefender\BitDefender Threat Scanner\profos.sys
                O41 - Driver: Planificateur de paquets QoS (PSched) - C:\WINDOWS\system32\DRIVERS\psched.sys
                O41 - Driver: PsSdk31 (PsSdk31) - C:\WINDOWS\system32\Drivers\pssdk31.drv
                O41 - Driver: PsSdkLBF (PsSdkLBF) - C:\WINDOWS\system32\Drivers\pssdklbf.drv
                O41 - Driver: Pilote de liaison parallèle directe (Ptilink) - C:\WINDOWS\system32\DRIVERS\ptilink.sys
                O41 - Driver: PxHelp20 (PxHelp20) - C:\WINDOWS\System32\Drivers\PxHelp20.sys
                O41 - Driver: Pilote de connexion automatique d'accès distant (RasAcd) - C:\WINDOWS\system32\DRIVERS\rasacd.sys
                O41 - Driver: Miniport réseau étendu (L2TP) (Rasl2tp) - C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
                O41 - Driver: Pilote PPPOE d'accès à distance (RasPppoe) - C:\WINDOWS\system32\DRIVERS\raspppoe.sys
                O41 - Driver: Parallèle direct (Raspti) - C:\WINDOWS\system32\DRIVERS\raspti.sys
                O41 - Driver: Rdbss (Rdbss) - C:\WINDOWS\system32\DRIVERS\rdbss.sys
                O41 - Driver: Pilote de filtre de lecture digitale de CD audio (redbook) - C:\WINDOWS\system32\DRIVERS\redbook.sys
                O41 - Driver: Périphérique Bluetooth (TDI protocole RFCOMM) (RFCOMM) - C:\WINDOWS\system32\DRIVERS\rfcomm.sys
                O41 - Driver: SASDIFSV (SASDIFSV) - C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
                O41 - Driver: SASENUM (SASENUM) - C:\Program Files\SUPERAntiSpyware\SASENUM.SYS
                O41 - Driver: SASKUTIL (SASKUTIL) - C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys
                O41 - Driver: Sony Ericsson Device 046 Driver driver (WDM) (SE2Ebus) - C:\WINDOWS\system32\DRIVERS\SE2Ebus.sys
                O41 - Driver: Sony Ericsson Device 046 USB WMC Modem Filter (SE2Emdfl) - C:\WINDOWS\system32\DRIVERS\SE2Emdfl.sys
                O41 - Driver: Sony Ericsson Device 046 USB WMC Modem Driver (SE2Emdm) - C:\WINDOWS\system32\DRIVERS\SE2Emdm.sys
                O41 - Driver: Sony Ericsson Device 046 USB WMC Device Management Drivers (WDM) (SE2Emgmt) - C:\WINDOWS\system32\DRIVERS\SE2Emgmt.sys
                O41 - Driver: Sony Ericsson Device 046 USB Ethernet Emulation SEMC46 (NDIS) (se2End5) - C:\WINDOWS\system32\DRIVERS\se2End5.sys
                O41 - Driver: Sony Ericsson Device 046 USB WMC OBEX Interface (SE2Eobex) - C:\WINDOWS\system32\DRIVERS\SE2Eobex.sys
                O41 - Driver: Sony Ericsson Device 046 USB Ethernet Emulation SEMC46 (WDM) (se2Eunic) - C:\WINDOWS\system32\DRIVERS\se2Eunic.sys
                O41 - Driver: Secdrv (Secdrv) - C:\WINDOWS\system32\DRIVERS\secdrv.sys
                O41 - Driver: SenFilt Service (SenFiltService) - C:\WINDOWS\system32\drivers\Senfilt.sys
                O41 - Driver: Pilote de filtre Serenum (serenum) - C:\WINDOWS\system32\DRIVERS\serenum.sys
                O41 - Driver: SiS 163 usb Wireless LAN Adapter Driver (SIS163u) - C:\WINDOWS\system32\DRIVERS\sis163u.sys
                O41 - Driver: Détrameur décalage BDA (SLIP) - C:\WINDOWS\system32\DRIVERS\SLIP.sys
                O41 - Driver: Sony Digital Imaging Video2 (sonypvs1) - C:\WINDOWS\system32\DRIVERS\sonypvs1.sys
                O41 - Driver: Pilote de filtrage Sony USB (SONYPVU1) (SONYPVU1) - C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS
                O41 - Driver: Splitter audio du noyau Microsoft (splitter) - C:\WINDOWS\system32\drivers\splitter.sys
                O41 - Driver: Pilote de filtre de restauration système (sr) - C:\WINDOWS\system32\DRIVERS\sr.sys
                O41 - Driver: Srv (Srv) - C:\WINDOWS\system32\DRIVERS\srv.sys
                O41 - Driver: BDA IPSink (streamip) - C:\WINDOWS\system32\DRIVERS\StreamIP.sys
                O41 - Driver: Pilote de bus logiciel (swenum) - C:\WINDOWS\system32\DRIVERS\swenum.sys
                O41 - Driver: Synthétiseur de table de sons GC noyau Microsoft (swmidi) - C:\WINDOWS\system32\drivers\swmidi.sys
                O41 - Driver: Périphérique audio système du noyau Microsoft (sysaudio) - C:\WINDOWS\system32\drivers\sysaudio.sys
                O41 - Driver: Pilote du protocole TCP/IP (Tcpip) - C:\WINDOWS\system32\DRIVERS\tcpip.sys
                O41 - Driver: Trufos (Trufos) - C:\Program Files\Fichiers communs\BitDefender\BitDefender Threat Scanner\trufos.sys
                O41 - Driver: Pilote de mise à jour microcode (Update) - C:\WINDOWS\system32\DRIVERS\update.sys
                O41 - Driver: Pilote USB audio (WDM) (usbaudio) - C:\WINDOWS\system32\drivers\usbaudio.sys
                O41 - Driver: Pilote parent générique USB Microsoft (usbccgp) - C:\WINDOWS\system32\DRIVERS\usbccgp.sys
                O41 - Driver: Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0 (usbehci) - C:\WINDOWS\system32\DRIVERS\usbehci.sys
                O41 - Driver: Concentrateur USB2 (usbhub) - C:\WINDOWS\system32\DRIVERS\usbhub.sys
                O41 - Driver: Pilote miniport de contrôleur hôte ouvert USB Microsoft (usbohci) - C:\WINDOWS\system32\DRIVERS\usbohci.sys
                O41 - Driver: Classe d'imprimantes USB Microsoft (usbprint) - C:\WINDOWS\system32\DRIVERS\usbprint.sys
                O41 - Driver: Pilote de scanneur USB (usbscan) - C:\WINDOWS\system32\DRIVERS\usbscan.sys
                O41 - Driver: Pilote de stockage de masse USB (USBSTOR) - C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
                O41 - Driver: Périphérique vidéo USB (WDM) (usbvideo) - C:\WINDOWS\System32\Drivers\usbvideo.sys
                O41 - Driver: Inventel Gateway (USB_RNDIS) - C:\WINDOWS\system32\DRIVERS\usb8023.sys
                O41 - Driver: Pilote ARP IP d'accès distant (Wanarp) - C:\WINDOWS\system32\DRIVERS\wanarp.sys
                O41 - Driver: Pilote WINMM de compatibilité audio WDM Microsoft (wdmaud) - C:\WINDOWS\system32\drivers\wdmaud.sys
                O41 - Driver: WpdUsb (WpdUsb) - C:\WINDOWS\system32\DRIVERS\wpdusb.sys
                O41 - Driver: Codec Teletext standard (WSTCODEC) - C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
                O41 - Driver: Windows Driver Foundation - User-mode Driver Framework Platform Driver (WudfPf) - C:\WINDOWS\system32\DRIVERS\WudfPf.sys
                O41 - Driver: Windows Driver Foundation - User-mode Driver Framework Reflector (WudfRd) - C:\WINDOWS\system32\DRIVERS\wudfrd.sys
                O41 - Driver: ADI UAA Function Driver for High Definition Audio Service (ADIHdAudAddService) - C:\WINDOWS\system32\drivers\ADIHdAud.sys
                O41 - Driver: AEAudio Service (AEAudioService) - C:\WINDOWS\system32\drivers\AEAudio.sys
                O41 - Driver: Suppresseur d'écho acoustique (Noyau Microsoft) (aec) - C:\WINDOWS\system32\drivers\aec.sys
                O41 - Driver: Pilote de média asynchrone RAS (AsyncMac) - C:\WINDOWS\system32\DRIVERS\asyncmac.sys
                O41 - Driver: Protocole client ATM ARP (Atmarpc) - C:\WINDOWS\system32\DRIVERS\atmarpc.sys
                O41 - Driver: Pilote audio Stub (audstub) - C:\WINDOWS\system32\DRIVERS\audstub.sys
                O41 - Driver: BitDefender Firewall NDIS Filter Service (Bdfndisf) - C:\WINDOWS\system32\DRIVERS\bdfndisf.sys
                O41 - Driver: bdfsfltr (bdfsfltr) - C:\WINDOWS\system32\drivers\bdfsfltr.sys
                O41 - Driver: BDSelfPr (BDSelfPr) - C:\Program Files\BitDefender\BitDefender 2009\bdselfpr.sys
                O41 - Driver: BDVEDISK (BDVEDISK) - C:\Program Files\BitDefender\BitDefender 2009\BDVEDISK.sys
                O41 - Driver: Service d'énumérateur Bluetooth (BthEnum) - C:\WINDOWS\system32\DRIVERS\BthEnum.sys
                O41 - Driver: Pilote de communications modem Bluetooth (BTHMODEM) - C:\WINDOWS\system32\DRIVERS\bthmodem.sys
                O41 - Driver: Périphérique Bluetooth (réseau personnel) (BthPan) - C:\WINDOWS\system32\DRIVERS\bthpan.sys
                O41 - Driver: Pilote de port Bluetooth (BTHPORT) - C:\WINDOWS\System32\Drivers\BTHport.sys
                O41 - Driver: Pilote USB radio Bluetooth (BTHUSB) - C:\WINDOWS\System32\Drivers\BTHUSB.sys
                O41 - Driver: Décodeur sous-titre fermé (CCDECODE) - C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
                O41 - Driver: (no object) (dmboot) - C:\WINDOWS\System32\drivers\dmboot.sys
                O41 - Driver: (no object) (dmio) - C:\WINDOWS\System32\drivers\dmio.sys
                O41 - Driver: (no object) (dmload) - C:\WINDOWS\System32\drivers\dmload.sys
                O41 - Driver: Synthétiseur DLS du noyau Microsoft (DMusic) - C:\WINDOWS\system32\drivers\DMusic.sys
                O41 - Driver: driverhardwarev2 (driverhardwarev2) - C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys
                O41 - Driver: Filtre de décodeur DRM (Noyau Microsoft) (drmkaud) - C:\WINDOWS\system32\drivers\drmkaud.sys
                O41 - Driver: UVC Filter Service (FilterService) - C:\WINDOWS\system32\DRIVERS\lvuvcflt.sys
                O41 - Driver: FltMgr (FltMgr) - C:\WINDOWS\system32\drivers\fltmgr.sys
                O41 - Driver: FssFltr (fssfltr) - C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys
                O41 - Driver: Classificateur de paquets générique (Gpc) - C:\WINDOWS\system32\DRIVERS\msgpc.sys
                O41 - Driver: Microsoft UAA Function Driver for High Definition Audio Service (HdAudAddService) - C:\WINDOWS\system32\drivers\HdAudio.sys
                O41 - Driver: Pilote de bus Microsoft UAA pour High Definition Audio (HDAudBus) - C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
                O41 - Driver: Pilote de classe HID Microsoft (hidusb) - C:\WINDOWS\system32\DRIVERS\hidusb.sys
                O41 - Driver: IEEE-1284.4 Driver HPZid412 (HPZid412) - C:\WINDOWS\system32\DRIVERS\HPZid412.sys
                O41 - Driver: Print Class Driver for IEEE-1284.4 HPZipr12 (HPZipr12) - C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
                O41 - Driver: USB to IEEE-1284.4 Translation Driver HPZius12 (HPZius12) - C:\WINDOWS\system32\DRIVERS\HPZius12.sys
                O41 - Driver: Pilote pour clavier i8042 et souris sur port PS/2 (i8042prt) - C:\WINDOWS\system32\DRIVERS\i8042prt.sys
                O41 - Driver: Pilote du pare-feu Windows IPv6 (Ip6Fw) - C:\WINDOWS\system32\drivers\ip6fw.sys
                O41 - Driver: Pilote de filtre de trafic IP (IpFilterDriver) - C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
                O41 - Driver: Pilote de tunnelage IP dans IP (IpInIp) - C:\WINDOWS\system32\DRIVERS\ipinip.sys
                O41 - Driver: Pilote IPSEC (IPSec) - C:\WINDOWS\system32\DRIVERS\ipsec.sys
                O41 - Driver: Service énumérateur IR (IRENUM) - C:\WINDOWS\system32\DRIVERS\irenum.sys
                O41 - Driver: IVI ASPI Shell (Iviaspi) - C:\WINDOWS\system32\drivers\iviaspi.sys
                O41 - Driver: Pilote HID de clavier (kbdhid) - C:\WINDOWS\system32\DRIVERS\kbdhid.sys
                O41 - Driver: Mélangeur audio Wave de noyau Microsoft (kmixer) - C:\WINDOWS\system32\drivers\kmixer.sys
                O41 - Driver: Logitech QuickCam E3500(UVC) (LVUVC) - C:\WINDOWS\system32\DRIVERS\lvuvc.sys
                O41 - Driver: Pilote HID de souris (mouhid) - C:\WINDOWS\system32\DRIVERS\mouhid.sys
                O41 - Driver: Redirecteur client WebDav (MRxDAV) - C:\WINDOWS\system32\DRIVERS\mrxdav.sys
                O41 - Driver: MRXSMB (MRxSmb) - C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
                O41 - Driver: Proxy de service de répartition Microsoft (MSKSSRV) - C:\WINDOWS\system32\drivers\MSKSSRV.sys
                O41 - Driver: Proxy d'horloge de répartition Microsoft (MSPCLOCK) - C:\WINDOWS\system32\drivers\MSPCLOCK.sys
                O41 - Driver: Proxy de gestion de qualité de répartition Microsoft (MSPQM) - C:\WINDOWS\system32\drivers\MSPQM.sys
                O41 - Driver: Pilote BIOS de gestion de systèmes Microsoft (mssmbios) - C:\WINDOWS\system32\DRIVERS\mssmbios.sys
                O41 - Driver: Convertisseur en T/site-à-site de répartition Microsoft (MSTEE) - C:\WINDOWS\system32\drivers\MSTEE.sys
                O41 - Driver: Codec NABTS/FEC VBI (NABTSFEC) - C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
                O41 - Driver: Connection TV/vidéo Microsoft (NdisIP) - C:\WINDOWS\system32\DRIVERS\NdisIP.sys
                O41 - Driver: NDISRD (NDISRD) - C:\WINDOWS\system32\drivers\NDISRD.sys
                O41 - Driver: Pilote TAPI NDIS d'accès distant (NdisTapi) - C:\WINDOWS\system32\DRIVERS\ndistapi.sys
                O41 - Driver: NDIS mode utilisateur E/S Protocole (Ndisuio) - C:\WINDOWS\system32\DRIVERS\ndisuio.sys
                O41 - Driver: Pilote réseau étendu NDIS d'accès distant (NdisWan) - C:\WINDOWS\system32\DRIVERS\ndiswan.sys
                O41 - Driver: Interface NetBIOS (NetBIOS) - C:\WINDOWS\system32\DRIVERS\netbios.sys
                O41 - Driver: NetBIOS sur TCP/IP (NetBT) - C:\WINDOWS\system32\DRIVERS\netbt.sys
                O41 - Driver: (no object) (nv) - C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
                O41 - Driver: (no object) (nvata) - C:\WINDOWS\system32\DRIVERS\nvata.sys
                O41 - Driver: NVIDIA nForce Networking Controller Driver (NVENETFD) - C:\WINDOWS\system32\DRIVERS\NVENETFD.sys
                O41 - Driver: NVIDIA Network Bus Enumerator (nvnetbus) - C:\WINDOWS\system32\DRIVERS\nvnetbus.sys
                O41 - Driver: Pilote de filtre de trafic IPX (NwlnkFlt) - C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
                O41 - Driver: Pilote de transfert de trafic IPX (NwlnkFwd) - C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
                O41 - Driver: OADriver (OADevice) - C:\WINDOWS\system32\drivers\OADriver.sys
                O41 - Driver: OAmon (OAmon) - C:\WINDOWS\system32\drivers\OAmon.sys
                O41 - Driver: (no object) (PalmUSBD) - C:\WINDOWS\system32\drivers\PalmUSBD.sys
                O41 - Driver: PCAMPR5 NDIS Protocol Driver (PCAMPR5) - C:\WINDOWS\system32\PCAMPR5.SYS
                O41 - Driver: PCANDIS5 NDIS Protocol Driver (PCANDIS5) - C:\WINDOWS\system32\PCANDIS5.SYS
                O41 - Driver: Miniport réseau étendu (PPTP) (PptpMiniport) - C:\WINDOWS\system32\DRIVERS\raspptp.sys
                O41 - Driver: Pilote processeur (Processor) - C:\WINDOWS\system32\DRIVERS\processr.sys
                O41 - Driver: Profos (Profos) - C:\Program Files\Fichiers communs\BitDefender\BitDefender Threat Scanner\profos.sys
                O41 - Driver: Planificateur de paquets QoS (PSched) - C:\WINDOWS\system32\DRIVERS\psched.sys
                O41 - Driver: PsSdk31 (PsSdk31) - C:\WINDOWS\system32\Drivers\pssdk31.drv
                O41 - Driver: PsSdkLBF (PsSdkLBF) - C:\WINDOWS\system32\Drivers\pssdklbf.drv
                O41 - Driver: Pilote de liaison parallèle directe (Ptilink) - C:\WINDOWS\system32\DRIVERS\ptilink.sys
                O41 - Driver: PxHelp20 (PxHelp20) - C:\WINDOWS\System32\Drivers\PxHelp20.sys
                O41 - Driver: Pilote de connexion automatique d'accès distant (RasAcd) - C:\WINDOWS\system32\DRIVERS\rasacd.sys
                O41 - Driver: Miniport réseau étendu (L2TP) (Rasl2tp) - C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
                O41 - Driver: Pilote PPPOE d'accès à distance (RasPppoe) - C:\WINDOWS\system32\DRIVERS\raspppoe.sys
                O41 - Driver: Parallèle direct (Raspti) - C:\WINDOWS\system32\DRIVERS\raspti.sys
                O41 - Driver: Rdbss (Rdbss) - C:\WINDOWS\system32\DRIVERS\rdbss.sys
                O41 - Driver: Pilote de filtre de lecture digitale de CD audio (redbook) - C:\WINDOWS\system32\DRIVERS\redbook.sys
                O41 - Driver: Périphérique Bluetooth (TDI protocole RFCOMM) (RFCOMM) - C:\WINDOWS\system32\DRIVERS\rfcomm.sys
                O41 - Driver: SASDIFSV (SASDIFSV) - C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
                O41 - Driver: SASENUM (SASENUM) - C:\Program Files\SUPERAntiSpyware\SASENUM.SYS
                O41 - Driver: SASKUTIL (SASKUTIL) - C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys
                O41 - Driver: Sony Ericsson Device 046 Driver driver (WDM) (SE2Ebus) - C:\WINDOWS\system32\DRIVERS\SE2Ebus.sys
                O41 - Driver: Sony Ericsson Device 046 USB WMC Modem Filter (SE2Emdfl) - C:\WINDOWS\system32\DRIVERS\SE2Emdfl.sys
                O41 - Driver: Sony Ericsson Device 046 USB WMC Modem Driver (SE2Emdm) - C:\WINDOWS\system32\DRIVERS\SE2Emdm.sys
                O41 - Driver: Sony Ericsson Device 046 USB WMC Device Management Drivers (WDM) (SE2Emgmt) - C:\WINDOWS\system32\DRIVERS\SE2Emgmt.sys
                O41 - Driver: Sony Ericsson Device 046 USB Ethernet Emulation SEMC46 (NDIS) (se2End5) - C:\WINDOWS\system32\DRIVERS\se2End5.sys
                O41 - Driver: Sony Ericsson Device 046 USB WMC OBEX Interface (SE2Eobex) - C:\WINDOWS\system32\DRIVERS\SE2Eobex.sys
                O41 - Driver: Sony Ericsson Device 046 USB Ethernet Emulation SEMC46 (WDM) (se2Eunic) - C:\WINDOWS\system32\DRIVERS\se2Eunic.sys
                O41 - Driver: Secdrv (Secdrv) - C:\WINDOWS\system32\DRIVERS\secdrv.sys
                O41 - Driver: SenFilt Service (SenFiltService) - C:\WINDOWS\system32\drivers\Senfilt.sys
                O41 - Driver: Pilote de filtre Serenum (serenum) - C:\WINDOWS\system32\DRIVERS\serenum.sys
                O41 - Driver: SiS 163 usb Wireless LAN Adapter Driver (SIS163u) - C:\WINDOWS\system32\DRIVERS\sis163u.sys
                O41 - Driver: Détrameur décalage BDA (SLIP) - C:\WINDOWS\system32\DRIVERS\SLIP.sys
                O41 - Driver: Sony Digital Imaging Video2 (sonypvs1) - C:\WINDOWS\system32\DRIVERS\sonypvs1.sys
                O41 - Driver: Pilote de filtrage Sony USB (SONYPVU1) (SONYPVU1) - C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS
                O41 - Driver: Splitter audio du noyau Microsoft (splitter) - C:\WINDOWS\system32\drivers\splitter.sys
                O41 - Driver: Pilote de filtre de restauration système (sr) - C:\WINDOWS\system32\DRIVERS\sr.sys
                O41 - Driver: Srv (Srv) - C:\WINDOWS\system32\DRIVERS\srv.sys
                O41 - Driver: BDA IPSink (streamip) - C:\WINDOWS\system32\DRIVERS\StreamIP.sys
                O41 - Driver: Pilote de bus logiciel (swenum) - C:\WINDOWS\system32\DRIVERS\swenum.sys
                O41 - Driver: Synthétiseur de table de sons GC noyau Microsoft (swmidi) - C:\WINDOWS\system32\drivers\swmidi.sys
                O41 - Driver: Périphérique audio système du noyau Microsoft (sysaudio) - C:\WINDOWS\system32\drivers\sysaudio.sys
                O41 - Driver: Pilote du protocole TCP/IP (Tcpip) - C:\WINDOWS\system32\DRIVERS\tcpip.sys
                O41 - Driver: Trufos (Trufos) - C:\Program Files\Fichiers communs\BitDefender\BitDefender Threat Scanner\trufos.sys
                O41 - Driver: Pilote de mise à jour microcode (Update) - C:\WINDOWS\system32\DRIVERS\update.sys
                O41 - Driver: Pilote USB audio (WDM) (usbaudio) - C:\WINDOWS\system32\drivers\usbaudio.sys
                O41 - Driver: Pilote parent générique USB Microsoft (usbccgp) - C:\WINDOWS\system32\DRIVERS\usbccgp.sys
                O41 - Driver: Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0 (usbehci) - C:\WINDOWS\system32\DRIVERS\usbehci.sys
                O41 - Driver: Concentrateur USB2 (usbhub) - C:\WINDOWS\system32\DRIVERS\usbhub.sys
                O41 - Driver: Pilote miniport de contrôleur hôte ouvert USB Microsoft (usbohci) - C:\WINDOWS\system32\DRIVERS\usbohci.sys
                O41 - Driver: Classe d'imprimantes USB Microsoft (usbprint) - C:\WINDOWS\system32\DRIVERS\usbprint.sys
                O41 - Driver: Pilote de scanneur USB (usbscan) - C:\WINDOWS\system32\DRIVERS\usbscan.sys
                O41 - Driver: Pilote de stockage de masse USB (USBSTOR) - C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
                O41 - Driver: Périphérique vidéo USB (WDM) (usbvideo) - C:\WINDOWS\System32\Drivers\usbvideo.sys
                O41 - Driver: Inventel Gateway (USB_RNDIS) - C:\WINDOWS\system32\DRIVERS\usb8023.sys
                O41 - Driver: Pilote ARP IP d'accès distant (Wanarp) - C:\WINDOWS\system32\DRIVERS\wanarp.sys
                O41 - Driver: Pilote WINMM de compatibilité audio WDM Microsoft (wdmaud) - C:\WINDOWS\system32\drivers\wdmaud.sys
                O41 - Driver: WpdUsb (WpdUsb) - C:\WINDOWS\system32\DRIVERS\wpdusb.sys
                O41 - Driver: Codec Teletext standard (WSTCODEC) - C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
                O41 - Driver: Windows Driver Foundation - User-mode Driver Framework Platform Driver (WudfPf) - C:\WINDOWS\system32\DRIVERS\WudfPf.sys
                O41 - Driver: Windows Driver Foundation - User-mode Driver Framework Reflector (WudfRd) - C:\WINDOWS\system32\DRIVERS\wudfrd.sys
                0
              2. Et voila la suite.

                ---\\ Logiciels installés (O42)
                O42 - Logiciel: Ad-remover
                O42 - Logiciel: Adobe Acrobat 5.0
                O42 - Logiciel: Adobe AIR
                O42 - Logiciel: Adobe Flash Player ActiveX
                O42 - Logiciel: ArcSoft PhotoImpression 3.0
                O42 - Logiciel: AVS Audio Converter version 5.1
                O42 - Logiciel: AVS DVD Player version 2.4
                O42 - Logiciel: AVS4YOU Software Navigator 1.2
                O42 - Logiciel: Canon Camera Access Library
                O42 - Logiciel: Canon Utilities CameraWindow DC
                O42 - Logiciel: Canon Utilities CameraWindow DC_DV 5 for ZoomBrowser EX
                O42 - Logiciel: Canon Utilities CameraWindow DC_DV 6 for ZoomBrowser EX
                O42 - Logiciel: Canon Utilities CameraWindow
                O42 - Logiciel: Canon G.726 WMP-Decoder
                O42 - Logiciel: CANON iMAGE GATEWAY Task for ZoomBrowser EX
                O42 - Logiciel: Canon Internet Library for ZoomBrowser EX
                O42 - Logiciel: CCleaner (remove only)
                O42 - Logiciel: Acrobat.com
                O42 - Logiciel: Contextual Tool Milehighads
                O42 - Logiciel: Copy Utility
                O42 - Logiciel: Canon Camera Support Core Library
                O42 - Logiciel: Easy MP3 Cutter 2.8
                O42 - Logiciel: eMule
                O42 - Logiciel: EPSON Photo Print
                O42 - Logiciel: EPSON Smart Panel
                O42 - Logiciel: ExpertTool
                O42 - Logiciel: FindyKill
                O42 - Logiciel: Photogather for Palm OS Desktop
                O42 - Logiciel: Gestionnaire Internet
                O42 - Logiciel: HijackThis 2.0.2
                O42 - Logiciel: HP Imaging Device Functions 9.0
                O42 - Logiciel: HP Photosmart Essential 2.01
                O42 - Logiciel: HP Solution Center 9.0
                O42 - Logiciel: HP Customer Participation Program 9.0
                O42 - Logiciel: HP OCR Software 9.0
                O42 - Logiciel: IcoFX 1.6
                O42 - Logiciel: Microsoft Internationalized Domain Names Mitigation APIs
                O42 - Logiciel: Windows Internet Explorer 7
                O42 - Logiciel: Canon Utilities RemoteCapture 2.7
                O42 - Logiciel: Canon Utilities File Viewer Utility 1.3
                O42 - Logiciel: QuickTime
                O42 - Logiciel: Canon Utilities PhotoStitch 3.1
                O42 - Logiciel: Barbie Girls
                O42 - Logiciel: iPhoto Plus 4
                O42 - Logiciel: High Definition Audio Driver Package - KB888111
                O42 - Logiciel: Windows Genuine Advantage Validation Tool (KB892130)
                O42 - Logiciel: Hotfix for Windows Media Format 11 SDK (KB929399)
                O42 - Logiciel: Security Update for CAPICOM (KB931906)
                O42 - Logiciel: LimeWire 4.18.8
                O42 - Logiciel: Logiciel Photo Orange
                O42 - Logiciel: Coffret de pilotes Logitech QuickCam
                O42 - Logiciel: Microsoft .NET Framework 1.1 Hotfix (KB928366)
                O42 - Logiciel: Malwarebytes' Anti-Malware
                O42 - Logiciel: Microsoft .NET Framework 1.1
                O42 - Logiciel: Microsoft .NET Framework 2.0
                O42 - Logiciel: Module de prise en charge linguistique de Microsoft .NET Framework 2.0 - FRA
                O42 - Logiciel: Migros Photo Service
                O42 - Logiciel: Morphing FACILE 2.0.1.1
                O42 - Logiciel: Canon MovieEdit Task for ZoomBrowser EX
                O42 - Logiciel: Microsoft Compression Client Pack 1.0 for Windows XP
                O42 - Logiciel: MSN
                O42 - Logiciel: SureThing CD Labeler Deluxe 4 Trial
                O42 - Logiciel: Canon Utilities MyCamera
                O42 - Logiciel: Canon Utilities MyCamera DC
                O42 - Logiciel: Microsoft National Language Support Downlevel APIs
                O42 - Logiciel: NVIDIA Drivers
                O42 - Logiciel: Microsoft Office 97 Professional
                O42 - Logiciel: Online Armor 2.0
                O42 - Logiciel: Flatbed Scanner
                O42 - Logiciel: Parrot Software Update Tool
                O42 - Logiciel: Pdf995
                O42 - Logiciel: PhotoFiltre
                O42 - Logiciel: Canon PhotoRecord
                O42 - Logiciel: Picasa 2
                O42 - Logiciel: Pocket Tunes 4.0.5
                O42 - Logiciel: QuickSFV (Remove only)
                O42 - Logiciel: Canon RAW Image Task for ZoomBrowser EX
                O42 - Logiciel: Canon Utilities RemoteCapture DC
                O42 - Logiciel: Canon Utilities RemoteCapture Task for ZoomBrowser EX
                O42 - Logiciel: SAMSUNG CDMA Modem Driver Set
                O42 - Logiciel: SAMSUNG Mobile USB Modem Software
                O42 - Logiciel: SAMSUNG Mobile USB Modem 1.0 Software
                O42 - Logiciel: Service Photo Migros
                O42 - Logiciel: Macromedia Flash Player 8
                O42 - Logiciel: TerraExplorer
                O42 - Logiciel: UnzipThemAll 1.3
                O42 - Logiciel: Virtual DJ - Atomix Productions
                O42 - Logiciel: Vodafone 804SS USB driver Software
                O42 - Logiciel: Windows Imaging Component
                O42 - Logiciel: Windows Media Format 11 runtime
                O42 - Logiciel: Lecteur Windows Media 11
                O42 - Logiciel: Windows XP Service Pack 3
                O42 - Logiciel: GIMP 2.6.4
                O42 - Logiciel: Installation Windows Live
                O42 - Logiciel: Archiveur WinRAR
                O42 - Logiciel: Windows Media Player 11
                O42 - Logiciel: Microsoft User-Mode Driver Framework Feature Pack 1.0
                O42 - Logiciel: Canon Utilities ZoomBrowser EX
                O42 - Logiciel: Canon ZoomBrowser EX Memory Card Utility
                O42 - Logiciel: Windows Live Call
                O42 - Logiciel: ArtRage 2 Starter Edition
                O42 - Logiciel: Windows Live Messenger
                O42 - Logiciel: Extension de Windows Live Toolbar (Windows Live Toolbar)
                O42 - Logiciel: Menus intelligents (Windows Live Toolbar)
                O42 - Logiciel: Ma-Config.com
                O42 - Logiciel: Image Resizer Powertoy for Windows XP
                O42 - Logiciel: Google Earth
                O42 - Logiciel: Picture Package
                O42 - Logiciel: Outil de téléchargement Windows Live
                O42 - Logiciel: Windows Live Writer
                O42 - Logiciel: MSVCRT
                O42 - Logiciel: Google Toolbar for Internet Explorer
                O42 - Logiciel: Logitech High Quality Video
                O42 - Logiciel: Microsoft Search Enhancement Pack
                O42 - Logiciel: Java(TM) 6 Update 5
                O42 - Logiciel: Logitech QuickCam
                O42 - Logiciel: HP Smart Web Printing
                O42 - Logiciel: Galerie de photos Windows Live
                O42 - Logiciel: Paint.NET v3.36
                O42 - Logiciel: HPSSupply
                O42 - Logiciel: Junk Mail filter update
                O42 - Logiciel: Logitech Updater
                O42 - Logiciel: neroxml
                O42 - Logiciel: MP3 Player Utilities
                O42 - Logiciel: Sony USB Driver
                O42 - Logiciel: MyScript Notes
                O42 - Logiciel: Windows Live Mail
                O42 - Logiciel: Visual C++ 8.0 CRT.Policy (x86) WinSXS MSM Beta2
                O42 - Logiciel: Visual C++ 8.0 ATL.Policy (x86) WinSXS MSM Beta2
                O42 - Logiciel: Roxio Express Labeler 3
                O42 - Logiciel: Windows Live Sync
                O42 - Logiciel: Adobe Flash Player 9 ActiveX
                O42 - Logiciel: Visual C++ 8.0 MFC.Policy (x86) WinSXS MSM Beta2
                O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable
                O42 - Logiciel: Windows Live Favorites pour Windows Live Toolbar
                O42 - Logiciel: Ulead Photo Express 4.0 Trial
                O42 - Logiciel: Windows Live OneCare Contrôle parental
                O42 - Logiciel: Surligneur (Windows Live Toolbar)
                O42 - Logiciel: MSXML 4.0 SP2 (KB954430)
                O42 - Logiciel: Samsung USB Driver
                O42 - Logiciel: Microsoft Silverlight
                O42 - Logiciel: Microsoft Sync Framework Runtime Native v1.0 (x86)
                O42 - Logiciel: Choice Guard
                O42 - Logiciel: Windows Live Toolbar
                O42 - Logiciel: Search Assistant Mysidesearch
                O42 - Logiciel: BitDefender Internet Security 2009
                O42 - Logiciel: hp LaserJet 1000
                O42 - Logiciel: Visual C++ 8.0 ATL (x86) WinSXS MSM Beta2
                O42 - Logiciel: Visual C++ 8.0 CRT (x86) WinSXS MSM Beta2
                O42 - Logiciel: EPSON TWAIN 5
                O42 - Logiciel: Visual C++ 8.0 MFC (x86) WinSXS MSM Beta2
                O42 - Logiciel: Segoe UI
                O42 - Logiciel: HP Update
                O42 - Logiciel: Adobe Reader 9
                O42 - Logiciel: Spelling Dictionaries Support For Adobe Reader 8
                O42 - Logiciel: Microsoft Sync Framework Services Native v1.0 (x86)
                O42 - Logiciel: Pivot Stickfigure Animator
                O42 - Logiciel: MSXML 4.0 SP2 (KB936181)
                O42 - Logiciel: InterVideo DVDCopy5
                O42 - Logiciel: Samsung PC Studio
                O42 - Logiciel: SUPERAntiSpyware Free Edition
                O42 - Logiciel: Windows Resource Kit Tools - SubInAcl.exe
                O42 - Logiciel: HP Photosmart All-In-One Software 9.0
                O42 - Logiciel: Assistant de connexion Windows Live
                O42 - Logiciel: Microsoft Easy Assist v2
                O42 - Logiciel: Windows Live Contrôle parental
                O42 - Logiciel: Samsung PC Studio 3 USB Driver Installer
                O42 - Logiciel: ScanToWeb
                O42 - Logiciel: VirginMega.Fr Premium
                O42 - Logiciel: SoundMAX
                O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU]
                O42 - Logiciel: Realtek High Definition Audio Driver
                O42 - Logiciel: 32 Bit HP CIO Components Installer
                O42 - Logiciel: Windows Live Communications Platform
                O42 - Logiciel: Jasc Paint Shop Pro 9
                O42 - Logiciel: Sony Ericsson PC Suite
                O42 - Logiciel: Palm Desktop by ACCESS
                O42 - Logiciel: Disc2Phone

                ---\\ Contenu des dossiers Fichiers Communs (O43)
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Adobe
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Adobe AIR
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Ahead
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\AVSMedia
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\BitDefender
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Canon
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Hewlett-Packard
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\HP
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\InstallShield
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Jasc Software Inc
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Java
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\LogiShrd
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Logitech
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Microsoft Shared
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\MSSoap
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\muvee Technologies
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\ODBC
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Services
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Sony Ericsson Shared
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\SpeechEngines
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\SureThing Shared
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\System
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Teleca Shared
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Windows Live
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\WindowsLiveInstaller
                O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Wise Installation Wizard

                ---\\ Derniers fichiers modifiés ou crées sous System32 (O44)
                O44 - LFC:Last File Created - C:\WINDOWS\System32\amcompat.tlb -->22/12/2008
                O44 - LFC:Last File Created - C:\WINDOWS\System32\bdod.bin -->06/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\BDUpdateV1.xml -->12/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\cont_milehighads-remove.exe -->28/12/2008
                O44 - LFC:Last File Created - C:\WINDOWS\System32\FFASTLOG.TXT -->18/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\FNTCACHE.DAT -->23/12/2008
                O44 - LFC:Last File Created - C:\WINDOWS\System32\gdi32.dll -->23/10/2008
                O44 - LFC:Last File Created - C:\WINDOWS\System32\lvcoinst.log -->23/12/2008
                O44 - LFC:Last File Created - C:\WINDOWS\System32\MRT.exe -->10/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\mshtml.dll -->13/12/2008
                O44 - LFC:Last File Created - C:\WINDOWS\System32\nscompat.tlb -->22/12/2008
                O44 - LFC:Last File Created - C:\WINDOWS\System32\nvapps.xml -->18/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\pcqwhmqvjlzqfnr.dll-uninst.exe -->28/12/2008
                O44 - LFC:Last File Created - C:\WINDOWS\System32\perfc009.dat -->14/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\perfc00C.dat -->14/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\perfh009.dat -->14/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\perfh00C.dat -->14/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\PerfStringBackup.INI -->14/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\ProductTweaks.xml -->07/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\python25.dll -->07/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\pythoncom25.dll -->07/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\pywintypes25.dll -->07/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\sirenacm.dll -->02/12/2008
                O44 - LFC:Last File Created - C:\WINDOWS\System32\spdwnwxp.log -->22/12/2008
                O44 - LFC:Last File Created - C:\WINDOWS\System32\spupdwxp.log -->23/12/2008
                O44 - LFC:Last File Created - C:\WINDOWS\System32\TZLog.log -->12/12/2008
                O44 - LFC:Last File Created - C:\WINDOWS\System32\user_gensett.xml -->07/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\wpa.dbl -->10/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\fssfltr_tdi.sys -->08/12/2008
                O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\logiflt.iad -->18/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\lvuvc.hs -->18/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\mbam.sys -->04/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\mbamswissarmy.sys -->04/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\mrxsmb.sys -->24/10/2008
                O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\pssdk31.drv -->17/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\pssdklbf.drv -->17/01/2009
                O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\srv.sys -->11/12/2008

                ---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\ADDITMANAGER.EXE-08BC7F65.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\BDFVCL.EXE-2DA97512.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\DUMPREP.EXE-1B46F901.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\EXPLORER.EXE-082F38A9.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FILE-XPM.EXE-348754BA.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FILE-XWD.EXE-21675089.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FILM.EXE-31EA4F11.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FILTER-PACK.EXE-1A9C78A8.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FLAME.EXE-05D32985.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FRACTAL-EXPLORER.EXE-319D979F.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FRACTAL-TRACE.EXE-144E54F0.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GEE-ZOOM.EXE-0B1C11B3.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GEE.EXE-01651BA9.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GFIG.EXE-37A7566C.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GIMP-2.6.4-I686-SETUP[1].EXE-37EACFA0.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GIMP-2.6.4-I686-SETUP[1].TMP-2C8EEB6C.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GIMP-2.6.EXE-3800AD20.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GIMPRESSIONIST.EXE-227A413F.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GRADIENT-FLARE.EXE-1671E875.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GRADIENT-MAP.EXE-18180480.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GRID.EXE-09E87326.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GUILLOTINE.EXE-1EED62BC.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\HELP.EXE-04A92C08.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\HOT.EXE-0BD1E7D3.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\IEXPLORE.EXE-27122324.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\IFS-COMPOSE.EXE-256D8F6C.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\ILLUSION.EXE-23F1D383.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\IMAGEMAP.EXE-2811BE20.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\IMAPI.EXE-0BF740A4.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\INSTAPP.EXE-13015C7D.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\IWARP.EXE-1497AB6E.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\JIGSAW.EXE-33A8DD1C.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\layout.ini -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\LCMS.EXE-00F7B41F.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\LENS-APPLY.EXE-2DBBA60C.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\LENS-DISTORTION.EXE-1C2301C4.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\LENS-FLARE.EXE-1274D910.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\LIGHTING.EXE-2D41DDDE.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\MAP-OBJECT.EXE-09D83478.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\MAX-RGB.EXE-385BB235.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\MAZE.EXE-1F539E0D.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\METADATA.EXE-1D955768.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\MOSAIC.EXE-385B9FAE.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NEWSPRINT.EXE-16A54FC0.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NL-FILTER.EXE-2F33E6E5.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NOISE-HSV.EXE-1EBE77E4.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NOISE-RANDOMIZE.EXE-13477C2E.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NOISE-RGB.EXE-254788BB.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NOISE-SOLID.EXE-22843D8C.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NOISE-SPREAD.EXE-3045C6EF.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NOVA.EXE-245F358E.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NTOSBOOT-B00DFAAD.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\OILIFY.EXE-3463BE6E.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PAGECURL.EXE-00007120.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PHOTOCOPY.EXE-1A66D03D.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PHOTOFILTRE.EXE-00101112.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PIXELIZE.EXE-0257022A.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PLASMA.EXE-21ED28C4.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PLUGIN-BROWSER.EXE-0300BF81.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\POLAR-COORDS.EXE-1B1A7C15.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PRINT.EXE-244FB49C.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PROCEDURE-BROWSER.EXE-32E35F32.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\QBIST.EXE-347DE577.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RED-EYE-REMOVAL.EXE-1C003BAE.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RIPPLE.EXE-39F783B3.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\ROTATE.EXE-344DCD67.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-13408F51.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-13B2501C.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-1420000A.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-1458CBB9.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-1571FC24.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-19285B52.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-1D116917.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-1DCE05D8.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-1E91D69F.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-30D06AF2.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-38E2CFC0.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-3C8FBCC7.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-411C0762.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-41B170D4.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-41EF5D0B.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-439F87AE.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-4512E334.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-452C3D7D.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-462E3886.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-468172E9.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-46E275CE.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-471A5457.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-4726551F.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-47E0833D.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-48C0D99A.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-4AE84A70.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-4AE910F3.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-4C42421D.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-4CFB0887.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SAMPLE-COLORIZE.EXE-1D75307C.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SCRIPT-FU.EXE-1084196D.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SELECTION-TO-PATH.EXE-22F00410.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SEMI-FLATTEN.EXE-356DA391.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SHARPEN.EXE-01E50120.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SHIFT.EXE-039AF50F.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SIGNCHECK.EXE-28675D39.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SINUS.EXE-2C10322A.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SMOOTH-PALETTE.EXE-08A75235.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SOFTGLOW.EXE-1126EA0C.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SPARKLE.EXE-0DD4F66F.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SPHERE-DESIGNER.EXE-04C81B5E.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SPIDER.EXE-2D998CA6.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\THRESHOLD-ALPHA.EXE-0A8E3E4A.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\TILE-GLASS.EXE-38B51B35.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\TILE-PAPER.EXE-05C6CE66.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\TILE-SEAMLESS.EXE-24C72F61.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\TILE-SMALL.EXE-23285615.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\TILE.EXE-1355A94B.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\TWAIN.EXE-2E0A55DA.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\UNIT-EDITOR.EXE-0FAF4564.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\UNSHARP-MASK.EXE-1DC2E337.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\VALUE-INVERT.EXE-031F3A52.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\VALUE-PROPAGATE.EXE-38360C85.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\VAN-GOGH-LIC.EXE-07EBD695.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\VERCLSID.EXE-3667BD89.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\VIDEO.EXE-1193BE8B.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WARP.EXE-0DB858F0.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WAVES.EXE-3B30B33B.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WEB-BROWSER.EXE-137F104F.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WHIRL-PINCH.EXE-182D92B5.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WIN-SNAP.EXE-2D31FB8C.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WIND.EXE-1388C79F.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WINRAR.EXE-39C6DAD9.pf -->18/01/2009
                O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WUAUCLT.EXE-399A8E72.pf -->18/01/2009

                ---\\ ShellExecuteHooks, Opérations et fonctions au démarrage de Windows Explorer (O46)
                O46 - SEH:ShellExecuteHooks - URL Exec Hook - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - shell32.dll
                O46 - SEH:ShellExecuteHooks - SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL

                ---\\ Export de clé d'application autorisée (O47)
                O47 - AAKE:Key Export - "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
                O47 - AAKE:Key Export - "C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
                O47 - AAKE:Key Export - "C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe"
                O47 - AAKE:Key Export - "C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe"
                O47 - AAKE:Key Export - "C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe:*:Enabled:hpofxm08.exe"
                O47 - AAKE:Key Export - "C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe"="C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe:*:Enabled:hposfx08.exe"
                O47 - AAKE:Key Export - "C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe"
                O47 - AAKE:Key Export - "C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe:*:Enabled:hpqscnvw.exe"
                O47 - AAKE:Key Export - "C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
                O47 - AAKE:Key Export - "C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe:*:Enabled:hpzwiz01.exe"
                O47 - AAKE:Key Export - "C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe"
                O47 - AAKE:Key Export - "C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe:*:Enabled:hpqnrs08.exe"
                O47 - AAKE:Key Export - "C:\Program Files\LimeWire\LimeWire.exe"="C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire"
                O47 - AAKE:Key Export - "C:\Program Files\ma-config.com\maconfservice.exe"="C:\Program Files\ma-config.com\maconfservice.exe:LocalSubNet:Enabled:maconfservice"
                O47 - AAKE:Key Export - "C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
                O47 - AAKE:Key Export - "C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
                O47 - AAKE:Key Export - "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
                O47 - AAKE:Key Export - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
                O47 - AAKE:Key Export - "C:\Program Files\eMule\emule.exe"="C:\Program Files\eMule\emule.exe:*:Enabled:eMule"
                O47 - AAKE:Key Export - "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
                O47 - AAKE:Key Export - "C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
                O47 - AAKE:Key Export - "C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
                O47 - AAKE:Key Export - "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
                O47 - AAKE:Key Export - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"

                ---\\ Déni du service Local Security Authority (LSA) (O48)
                O48 - LSA:Local Security Authority Authentication Packages - C:\WINDOWS\System32\msv1_0.dll
                O48 - LSA:Local Security Authority Notification Packages -

                ---\\ Contrôle du Safe Boot (CSB) (O49)
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmboot.sys
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmio.sys
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmload.sys
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sr.sys
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmboot.sys
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmio.sys
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmload.sys
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ip6fw.sys
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpcdd.sys
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpdd.sys
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpwd.sys
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sr.sys
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdpipe.sys
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdtcp.sys
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys
                O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\dmboot.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\dmio.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\dmload.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\sermouse.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\sr.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\vga.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\vgasave.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\dmboot.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\dmio.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\dmload.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\ip6fw.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\ipnat.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\rdpcdd.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\rdpdd.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\rdpwd.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\sermouse.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\sr.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\tdpipe.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\tdtcp.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\vga.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\vgasave.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\dmboot.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\dmio.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\dmload.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\sermouse.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\sr.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\vga.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\vgasave.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\dmboot.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\dmio.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\dmload.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\ip6fw.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\ipnat.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\rdpcdd.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\rdpdd.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\rdpwd.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\sermouse.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\sr.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\tdpipe.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\tdtcp.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\vga.sys
                O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\vgasave.sys

                End of the scan:
                0
            2. ;-) hello :

              oui c est quand meme plus precis comme ca :)
              0
              1. Contributeur sécurité
                Télécharge ATF Cleaner par Atribune:
                http://www.atribune.org/ccount/click.php?id=1
                Double-clique ATF-Cleaner.exe afin de lancer le programme.
                Sous l'onglet Main, choisis : Select All
                Clique sur le bouton Empty Selected
                Si tu utilises le navigateur Firefox :
                Clique Firefox au haut et choisis : Select All
                Clique le bouton Empty Selected
                NOTE : Si tu veux conserver tes mots de passe sauvegardés, clique No à l'invite.
                Si tu utilises le navigateur Opera :
                Clique Opera au haut et choisis : Select All
                Clique le bouton Empty Selected
                NOTE : Si tu veux conserver tes mots de passe sauvegardés, clique No à l'invite.
                Clique Exit, du menu prinicipal, afin de fermer le programme.
                Pour obtenir du Support technique, double-clique l'adresse électronique située au bas de chacun des menus.
                0
                1. Ok c'est fait. Je suis encore malade ???
                  0
              • 1
              • 2
              • 3