Dialer.Generic.33613
RésoluBitdefender n'arrive pas a me débarrasser de ce truc est se grave ? et quoi faire.Merci d'avance
Configuration: Windows XP Internet Explorer 7.0
50 réponses
Une infection persiste sur Windows XP et Internet Explorer 7.0 malgré Bitdefender et l’utilisateur se demande si c’est grave et quelles actions entreprendre. Plusieurs conseils recommandent un balayage en ligne avec Kaspersky Online Scanner et une gestion des ActiveX lors de l’installation et de l’analyse. D’autres interventions évoquent FindyKill et ComboFix, des nettoyages ciblés, des vérifications de dossiers système et des rapports d’infection à examiner prudemment. Des indices comme des chemins suspects et des services démarrés indiquent la nécessité d’outils multiples et d’analyses complémentaires pour limiter les risques et éviter une réinfection.
-
Contributeur sécuritéA plus ou à jamais, ou alors sur le forum détente...... SALUT
Je l'éspere pour toi .....
@jamais + -
Contributeur sécuritéPourquoi il devrait mal aller ????
Non ,non c'était pour savoir s'il allait mieux vu les infections que tu avais contractés .
Pour supprimer toutes les traces des logiciels qui ont servi à traiter les infections spécifiques :
· Télécharge ToolsCleaner de A.Roshtein sur ton Bureau.
http://pc-system.fr/
· Clique sur Recherche et laisse le scan se terminer.
· Clique, sur Suppression pour finaliser.
· Tu peux, si tu le souhaites, te servir des Options facultatives.
· Clique sur Quitter, pour que le rapport puisse se créer.
· Poste moi le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur( C:\).
==============================
Vérifie que BitdefenderSecurity ne contient pas un pare-feu sinon désactive le pour qu'il ne rentre pas en conflits avec OnlineArmor .
Tu dois mettre ta console JAVA a jour :
mettre à jour java
https://www.java.com/fr/download/manual.jsp
==============================
Maintenant que ton PC n'est plus infecté, désactive ta "Restauration du système" puis réactive la afin de créer un point de restauration sain.
* Désactivation :
Cliquer droit sur le "Poste de travail" > Propriétés > onglet "Restauration du système" > cocher la case "Désactiver la Restauration du système sur tous les lecteurs"
> Appliquer patiente jusqu a que cela soit marqué "désactivée" puis Ok.
* Activation :
Suivre le même chemin ; décocher la case "Désactiver la Restauration du système sur tous les lecteurs"
> Appliquer attends que cela soit a nouveau sur "surveillance" puis Ok. Redémarrer l'ordinateur..
==============================
danger du P2P
un peu de lecture afin de ne pas revenir ici
VoiloO , tu peux mettre en résolu si c'est le cas .-
Saut,
Juste avant de mettre tout ça en résolu, je voulais te remercier et te dire que malgré ce que j'ai pu lire sur tes "Pour suivre", continu à suivre, car en tout cas Gen..machin truc,lui n'a pas suivi.
A plus ou à jamais, ou alors sur le forum détente...... SALUT
[ Rapport ToolsCleaner version 2.3.0 (par A.Rothstein & dj QUIOU) ]
-->- Recherche:
C:\Combofix.txt: trouvé !
C:\lopR.txt: trouvé !
C:\TB.txt: trouvé !
C:\FindyKill.txt: trouvé !
C:\Lop SD: trouvé !
C:\Qoobox: trouvé !
C:\Toolbar SD: trouvé !
C:\Rsit: trouvé !
C:\Documents and Settings\Administrateur\Bureau\SDFIX: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: trouvé !
C:\Documents and Settings\Utilisateur\Bureau\ComboFix.exe: trouvé !
C:\Documents and Settings\Utilisateur\Bureau\antivirus\SdFix.exe: trouvé !
C:\Documents and Settings\Utilisateur\Bureau\antivirus\LopSD.exe: trouvé !
C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc.zip: trouvé !
C:\Documents and Settings\Utilisateur\Bureau\antivirus\Rsit.exe: trouvé !
C:\Documents and Settings\Utilisateur\Bureau\antivirus\SDFIX: trouvé !
C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc: trouvé !
C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc\GenProc: trouvé !
C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc\GenProc\outil\HijackThis.exe: trouvé !
C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc\GenProc\outil\GenProc[*].html: trouvé !
C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc\GenProc\Page\GenProc[*].html: trouvé !
C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\FindyKill: trouvé !
C:\Documents and Settings\Utilisateur\Recent\HijackThis.lnk: trouvé !
C:\Program Files\FindyKill: trouvé !
C:\Program Files\Trend Micro\HijackThis: trouvé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
Corbeille vidée!
Fichiers temporaires nettoyés !
---------------------------------
-->- Suppression:
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: supprimé !
C:\Documents and Settings\Utilisateur\Bureau\ComboFix.exe: ERREUR DE SUPPRESSION !!
C:\Documents and Settings\Utilisateur\Bureau\antivirus\SdFix.exe: supprimé !
C:\Documents and Settings\Utilisateur\Bureau\antivirus\LopSD.exe: supprimé !
C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc.zip: supprimé !
C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc\GenProc\outil\HijackThis.exe: supprimé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: supprimé !
C:\Combofix.txt: supprimé !
C:\lopR.txt: supprimé !
C:\TB.txt: supprimé !
C:\FindyKill.txt: supprimé !
C:\Documents and Settings\Utilisateur\Bureau\antivirus\Rsit.exe: supprimé !
C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc\GenProc\outil\GenProc[*].html: ERREUR DE SUPPRESSION !!
C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc\GenProc\Page\GenProc[*].html: ERREUR DE SUPPRESSION !!
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé !
C:\Lop SD: supprimé !
C:\Qoobox: supprimé !
C:\Toolbar SD: supprimé !
C:\Rsit: supprimé !
C:\Documents and Settings\Administrateur\Bureau\SDFIX: supprimé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: supprimé !
C:\Documents and Settings\Utilisateur\Bureau\antivirus\SDFIX: supprimé !
C:\Documents and Settings\Utilisateur\Bureau\antivirus\GenProc: supprimé !
C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\FindyKill: supprimé !
C:\Program Files\FindyKill: supprimé !
C:\Program Files\Trend Micro\HijackThis: supprimé !
Corbeille vidée!
Fichiers temporaires nettoyés !
-
-
Contributeur sécuritéOk ,comment va la pc ?
-
Contributeur sécuritéUne mauvaise frappe sur le Cfscript ....Tu va le refaire ,je vois que j'ai oublié une chose :
> Ferme tout tes navigateurs (donc copie ou imprime les instructions avant)
- Crée un nouveau document texte : clic droit de souris sur le bureau > Nouveau > Document Texte, et copie/colle dedans les lignes suivantes :
Driver::
lvuvc
- Enregistre ce fichier sous le nom CFScript
- Fait un glisser/déposer de ce fichier CFScrïpt sur le fichier ComboFix.exe comme sur cette image. (Clique sur le fichier CFScript, maintient le doigt enfoncé et glisse la souris pour que l'icône du CFScript vienne recouvrir l'icône de Combofix. Relache la souris.) Combofix va démarrer.
- Une fenêtre bleue va apparaître: au message qui apparaît ( Type 1 to continue, or 2 to abort) , tape 1 puis valide.
- Patiente le temps du scan.Le bureau va disparaître à plusieurs reprises: c'est normal!
- Ne touche à rien tant que le scan n'est pas terminé sinon le PC peut planter !
- Une fois le scan achevé, un rapport va s'afficher: poste son contenu.
Note : Si le fichier ne s'ouvre pas, il se trouve ici > C:\ComboFix.txt
Une fois fait ça on concluera ce topique .-
( je n'avis pas vidé la corbeille !!!)
ComboFix 09-01-19.01 - Utilisateur 2009-01-22 18:00:10.4 - NTFSx86
Microsoft Windows XP Édition familiale 5.1.2600.3.1252.1.1036.18.895.468 [GMT 1:00]
Lancé depuis: c:\documents and settings\Utilisateur\Bureau\ComboFix.exe
Commutateurs utilisés :: c:\documents and settings\Utilisateur\Bureau\CFScript.txt
AV: BitDefender Antivirus *On-access scanning disabled* (Updated)
FW: Online Armor Firewall *disabled*
FW: Pare-feu BitDefender *disabled*
* Un nouveau point de restauration a été créé
AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !!
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Service_LVUVC
((((((((((((((((((((((((((((( Fichiers créés du 2008-12-22 au 2009-01-22 ))))))))))))))))))))))))))))))))))))
.
2009-01-21 20:46 . 2009-01-21 20:46 <REP> d-------- c:\windows\system32\Kaspersky Lab
2009-01-18 20:55 . 2009-01-19 18:48 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\gtk-2.0
2009-01-18 20:55 . 2009-01-18 20:55 <REP> d-------- c:\documents and settings\Utilisateur\.thumbnails
2009-01-18 20:33 . 2009-01-20 20:51 <REP> d-------- c:\documents and settings\Utilisateur\.gimp-2.6
2009-01-18 20:33 . 2009-01-18 20:33 <REP> d-------- c:\documents and settings\Utilisateur\.gegl-0.0
2009-01-18 20:32 . 2009-01-18 20:33 <REP> d-------- c:\program files\GIMP-2.0
2009-01-16 23:44 . 2009-01-16 23:44 <REP> d-------- c:\program files\Vision Objects
2009-01-16 20:54 . 2009-01-16 20:54 579,584 --a--c--- c:\windows\system32\dllcache\user32.dll
2009-01-14 20:29 . 2009-01-14 21:44 <REP> d-------- c:\program files\FindyKill
2009-01-14 18:44 . 2009-01-14 18:44 <REP> d-------- C:\rsit
2009-01-13 18:20 . 2009-01-22 12:02 37,440 --a------ c:\windows\system32\drivers\pssdklbf.drv
2009-01-13 18:20 . 2009-01-22 12:02 30,272 --a------ c:\windows\system32\drivers\pssdk31.drv
2009-01-12 23:30 . 2009-01-13 00:00 <REP> d-------- C:\Lop SD
2009-01-12 23:12 . 2009-01-13 00:34 <REP> d-------- c:\program files\Ad-remover
2009-01-11 12:24 . 2009-01-11 12:24 <REP> d-------- c:\program files\Skyline
2009-01-10 13:24 . 2009-01-10 13:24 <REP> d-------- c:\program files\CCleaner
2009-01-07 21:13 . 2009-01-07 21:13 850 --a------ c:\windows\system32\ProductTweaks.xml
2009-01-07 21:13 . 2009-01-07 21:13 385 --a------ c:\windows\system32\user_gensett.xml
2009-01-07 20:42 . 2009-01-07 20:42 <REP> d-------- c:\program files\Malwarebytes' Anti-Malware
2009-01-07 20:42 . 2009-01-04 18:38 38,496 --a------ c:\windows\system32\drivers\mbamswissarmy.sys
2009-01-07 20:42 . 2009-01-04 18:38 15,504 --a------ c:\windows\system32\drivers\mbam.sys
2009-01-07 20:39 . 2009-01-19 23:20 263 --a------ c:\windows\system32\BDUpdateV1.xml
2009-01-07 18:59 . 2009-01-07 18:59 <REP> d-------- c:\program files\BitDefender
2009-01-07 18:59 . 2009-01-07 18:59 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\BitDefender
2009-01-07 18:59 . 2009-01-07 19:03 <REP> d-------- c:\documents and settings\All Users\Application Data\BitDefender
2009-01-07 18:58 . 2009-01-07 18:59 <REP> d-------- c:\program files\Fichiers communs\BitDefender
2009-01-07 18:33 . 2009-01-07 22:21 <REP> d-------- c:\windows\LMI229.tmp
2009-01-07 13:17 . 2009-01-07 13:17 <REP> d-------- c:\documents and settings\LocalService\Application Data\agi
2009-01-07 13:16 . 2009-01-07 13:16 2,117,632 --a------ c:\windows\system32\python25.dll
2009-01-07 13:16 . 2008-09-16 17:26 1,332,197 --a------ c:\windows\system32\pythondll.zip
2009-01-07 13:16 . 2009-01-07 13:16 339,968 --a------ c:\windows\system32\pythoncom25.dll
2009-01-07 13:16 . 2009-01-07 13:16 114,688 --a------ c:\windows\system32\pywintypes25.dll
2009-01-02 10:44 . 2009-01-02 10:44 <REP> d-------- c:\documents and settings\All Users\Application Data\hps
2008-12-23 16:24 . 2008-12-23 16:24 <REP> d-------- c:\program files\Fichiers communs\Logitech
2008-12-23 16:20 . 2008-12-23 16:24 <REP> d-------- c:\documents and settings\All Users\Application Data\Logishrd
2008-12-23 16:19 . 2008-12-23 16:19 <REP> d-------- c:\documents and settings\All Users\Application Data\Logitech
2008-12-23 16:05 . 2008-04-13 19:33 1,888,992 --------- c:\windows\system32\ati3duag.dll
2008-12-23 16:05 . 2008-09-10 02:15 1,307,648 --a------ c:\windows\system32\msxml6.dll
2008-12-23 16:05 . 2008-09-10 02:15 1,307,648 -----c--- c:\windows\system32\dllcache\msxml6.dll
2008-12-23 16:05 . 2008-04-13 19:33 870,784 --------- c:\windows\system32\ati3d1ag.dll
2008-12-23 16:05 . 2008-04-13 19:33 377,984 --------- c:\windows\system32\ati2dvaa.dll
2008-12-23 16:05 . 2008-04-13 19:33 229,376 --------- c:\windows\system32\ati2cqag.dll
2008-12-23 16:05 . 2008-04-13 19:33 201,728 --------- c:\windows\system32\ati2dvag.dll
2008-12-23 16:05 . 2008-04-13 19:33 136,192 --------- c:\windows\system32\aaclient.dll
2008-12-23 16:05 . 2008-04-13 19:04 93,184 --------- c:\windows\system32\msxml6r.dll
2008-12-23 16:05 . 2008-04-13 19:04 93,184 -----c--- c:\windows\system32\dllcache\msxml6r.dll
2008-12-23 16:05 . 2008-04-13 19:34 23,040 --------- c:\windows\system32\ativmvxx.ax
2008-12-23 16:05 . 2008-04-13 19:34 9,728 --------- c:\windows\system32\ativdaxx.ax
2008-12-23 16:02 . 2008-12-23 16:02 <REP> d-------- c:\windows\ServicePackFiles
2008-12-23 15:59 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02782_.tmp
2008-12-23 15:29 . 2008-12-23 15:29 <REP> d-------- c:\program files\Microsoft Easy Assist
2008-12-23 15:29 . 2008-12-23 15:29 <REP> d-------- c:\documents and settings\All Users\Application Data\Applications
2008-12-22 18:48 . 2008-04-13 19:33 579,584 --a------ c:\windows\system32\SET1B1.tmp
2008-12-22 18:47 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02772_.tmp
2008-12-22 18:45 . 2008-08-14 14:23 2,147,328 --a------ c:\windows\system32\ntoskrnl.exe
2008-12-22 18:21 . 2008-04-13 19:33 2,843,136 --a------ c:\windows\system32\SET2BF.tmp
2008-12-22 18:20 . 2008-04-13 19:33 1,719,808 --a------ c:\windows\system32\SET280.tmp
2008-12-22 18:19 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02763_.tmp
2008-12-22 17:48 . 2008-04-13 19:33 1,719,808 --a------ c:\windows\system32\SET6CE.tmp
2008-12-22 17:47 . 2008-04-13 19:33 1,499,136 --a------ c:\windows\system32\SET553.tmp
2008-12-22 17:45 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02755_.tmp
2008-12-22 14:16 . 2008-12-22 14:16 <REP> d-------- c:\program files\Windows Resource Kits
2008-12-22 11:34 . 2004-08-05 13:00 71,040 --------- c:\windows\system32\drivers\_004196_.tmp.dll
2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\system32\fr
2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\system32\bits
2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\l2schemas
2008-12-22 10:50 . 2008-12-23 15:56 <REP> d-------- c:\windows\EHome
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-01-22 17:06 --------- d-----w c:\program files\Wanadoo
2009-01-22 17:05 0 ----a-w c:\windows\system32\drivers\logiflt.iad
2009-01-22 16:59 --------- d-----w c:\documents and settings\Utilisateur\Application Data\OnlineArmor
2009-01-22 07:09 0 ----a-w c:\windows\system32\drivers\lvuvc.hs
2009-01-19 18:47 242,184 ----a-w c:\windows\system32\drivers\bdfsfltr.sys
2009-01-18 17:51 --------- d-----w c:\program files\Palm
2009-01-16 22:44 --------- d--h--w c:\program files\InstallShield Installation Information
2009-01-16 22:36 --------- d-----w c:\documents and settings\Utilisateur\Application Data\LimeWire
2009-01-16 21:56 --------- d-----w c:\program files\eMule
2009-01-10 11:14 --------- d-----w c:\program files\QuickTime
2009-01-10 11:13 --------- d-----w c:\program files\LimeWire
2009-01-02 09:09 4,424 ----a-w c:\documents and settings\Utilisateur\Application Data\ViewerApp.dat
2008-12-23 15:20 --------- d-----w c:\program files\Fichiers communs\LogiShrd
2008-12-21 11:03 --------- d-----w c:\program files\Logitech
2008-12-21 10:43 --------- d-----w c:\documents and settings\Utilisateur\Application Data\ntr
2008-12-21 10:01 --------- d-----w c:\program files\Microsoft CAPICOM 2.1.0.2
2008-12-20 10:27 --------- d-----w c:\program files\Microsoft Silverlight
2008-12-20 10:26 --------- d-----w c:\program files\Windows Live Toolbar
2008-12-20 10:26 --------- d-----w c:\program files\Windows Live
2008-12-20 10:25 --------- d-----w c:\program files\Microsoft Sync Framework
2008-12-20 10:10 --------- d-----w c:\program files\Windows Live SkyDrive
2008-12-20 09:52 --------- d-----w c:\program files\Microsoft
2008-12-20 09:45 --------- d-----w c:\program files\Fichiers communs\Windows Live
2008-12-11 10:57 333,952 ----a-w c:\windows\system32\drivers\srv.sys
2008-12-08 19:13 --------- d-----w c:\program files\Migros
2008-12-08 16:01 55,136 ----a-w c:\windows\system32\drivers\fssfltr_tdi.sys
2008-12-04 23:11 308,584 ----a-w c:\windows\WLXPGSS.SCR
2008-11-30 18:59 --------- d-----w c:\program files\Fichiers communs\Jasc Software Inc
2008-11-30 18:59 --------- d-----w c:\documents and settings\All Users\Application Data\InstallShield
2008-11-30 18:58 --------- d-----w c:\program files\Jasc Software Inc
2008-11-30 18:58 --------- d-----w c:\program files\Fichiers communs\InstallShield
2008-11-30 18:58 --------- d-----w c:\documents and settings\Utilisateur\Application Data\Jasc Software Inc
2008-11-30 18:54 --------- d-----w c:\documents and settings\All Users\Application Data\WinZip
2008-11-25 19:43 --------- d-----w c:\program files\Fichiers communs\Ahead
2008-11-25 19:35 --------- d-----w c:\documents and settings\All Users\Application Data\Nero
2007-08-02 21:29 278,528 ----a-w c:\program files\Fichiers communs\FDEUnInstaller.exe
2007-02-11 09:37 4,562,152 ----a-w c:\program files\80 cd7 - 06 - Huey Lewis and the News - I Want a New Drug.mp3
.
((((((((((((((((((((((((((((( snapshot_2009-01-19_19.22.25.50 )))))))))))))))))))))))))))))))))))))))))
.
- 2009-01-06 21:59:11 81,984 ----a-w c:\windows\system32\bdod.bin
+ 2009-01-22 17:03:16 81,984 ----a-w c:\windows\system32\bdod.bin
+ 2005-05-16 18:34:48 213,048 ----a-w c:\windows\system32\Kaspersky Lab\Kaspersky Online Scanner\kavss.dll
+ 2008-08-13 14:03:26 65,536 ----a-w c:\windows\system32\Kaspersky Lab\Kaspersky Online Scanner\kavuninstall.exe
+ 2008-08-13 14:03:26 798,720 ----a-w c:\windows\system32\Kaspersky Lab\Kaspersky Online Scanner\kavwebscan.dll
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WOOKIT"="c:\progra~1\Wanadoo\Shell.exe" [2004-08-23 122880]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-13 15360]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-08-09 68856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-10-30 7634944]
"LogitechCommunicationsManager"="c:\program files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe" [2008-08-14 565008]
"LogitechQuickCamRibbon"="c:\program files\Logitech\QuickCam\Quickcam.exe" [2008-08-14 2407184]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2007-11-01 155648]
"fssui"="c:\program files\Windows Live\Family Safety\fsui.exe" [2008-12-08 453984]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]
"BDAgent"="c:\program files\BitDefender\BitDefender 2009\bdagent.exe" [2009-01-19 741376]
"BitDefender Antiphishing Helper"="c:\program files\BitDefender\BitDefender 2009\IEShow.exe" [2008-10-17 69632]
"OnlineArmor GUI"="c:\program files\Tall Emu\Online Armor\oaui.exe" [2007-11-16 5029952]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2008-04-13 c:\windows\system32\bthprops.cpl]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-13 15360]
c:\documents and settings\Utilisateur\Menu D‚marrer\Programmes\D‚marrage\
D‚marrage d'Office.lnk - c:\program files\Microsoft Office\Office\OSA.EXE [1996-12-16 51984]
Logitech . Enregistrement du produit.lnk - c:\program files\Logitech\QuickCam\eReg.exe [2008-02-13 493832]
Microsoft Recherche acc‚l‚r‚e.lnk - c:\program files\Microsoft Office\Office\FINDFAST.EXE [1996-12-16 111376]
c:\documents and settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
HotSync Manager.lnk - c:\program files\Palm\Hotsync.exe [2008-01-03 1392640]
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2007-03-11 210520]
InterVideo WinCinema Manager.lnk - c:\program files\InterVideo\Common\Bin\WinCinemaMgr.exe [2007-08-07 303104]
Picture Package Menu.lnk - c:\program files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe [2007-08-28 151552]
Picture Package VCD Maker.lnk - c:\program files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe [2007-08-28 106496]
Ulead Photo Express Calendar Checker.lnk - c:\program files\Ulead Systems\Ulead Photo Express 4.0 Trial\CalCheck.exe [2007-09-01 57344]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoStartMenuSubFolders"= 1 (0x1)
"NoFavoritesMenu"= 1 (0x1)
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{4F07DA45-8170-4859-9B5F-037EF2970034}"= "c:\progra~1\TALLEM~1\ONLINE~1\oaevent.dll" [2007-11-16 633344]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqnrs08.exe"=
"c:\\Program Files\\LimeWire\\LimeWire.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\eMule\\emule.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"2799:UDP"= 2799:UDP:Altova License Metering Port (UDP)
"2799:TCP"= 2799:TCP:Altova License Metering Port (TCP)
R1 NDISRD;NDISRD;c:\windows\system32\drivers\ndisrd.sys [2008-09-15 18944]
R1 OADevice;OADriver;c:\windows\system32\drivers\OADriver.sys [2008-09-15 68608]
R1 OAmon;OAmon;c:\windows\system32\drivers\OAmon.sys [2008-09-15 25600]
R3 bdfm;BDFM;c:\windows\system32\drivers\bdfm.sys [2008-09-18 111112]
R3 Bdfndisf;BitDefender Firewall NDIS Filter Service;c:\windows\system32\drivers\bdfndisf.sys [2008-10-17 104328]
R4 BDVEDISK;BDVEDISK;c:\program files\BitDefender\BitDefender 2009\BDVEDISK.sys [2008-09-04 82696]
R4 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [2008-12-20 55136]
R4 fsssvc;Windows Live Contrôle parental;c:\program files\Windows Live\Family Safety\fsssvc.exe [2008-12-08 533344]
R4 ScanDrv;ScanDrv;c:\windows\system32\drivers\SCANDRV.SYS [2007-11-11 189628]
R4 SeaPort;SeaPort;c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2008-12-04 226640]
R4 SvcOnlineArmor;Online Armor;c:\program files\Tall Emu\Online Armor\oasrv.exe [2008-09-15 4625984]
S1 SASDIFSV;SASDIFSV;\??\c:\program files\SUPERAntiSpyware\SASDIFSV.SYS --> c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [?]
S1 SASKUTIL;SASKUTIL;\??\c:\program files\SUPERAntiSpyware\SASKUTIL.sys --> c:\program files\SUPERAntiSpyware\SASKUTIL.sys [?]
S3 Arrakis3;BitDefender Arrakis Server;c:\program files\Fichiers communs\BitDefender\BitDefender Arrakis Server\bin\Arrakis3.exe [2008-07-17 118784]
S3 maconfservice;Ma-Config Service;c:\program files\ma-config.com\maconfservice.exe [2008-09-02 191656]
S3 PsSdk31;PsSdk31;c:\windows\system32\drivers\pssdk31.drv [2009-01-13 30272]
S3 PsSdkLBF;PsSdkLBF;c:\windows\system32\drivers\pssdklbf.drv [2009-01-13 37440]
S3 SASENUM;SASENUM;\??\c:\program files\SUPERAntiSpyware\SASENUM.SYS --> c:\program files\SUPERAntiSpyware\SASENUM.SYS [?]
S3 SIS163u;SiS 163 usb Wireless LAN Adapter Driver;c:\windows\system32\drivers\sis163u.sys [2007-08-07 167424]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
bdx REG_MULTI_SZ scan
.
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.orange.fr/
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
mWindow Title =
uInternet Connection Wizard,ShellNext = iexplore
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
IE: { - c:\program files\Messenger\msmsgs.exe
TCP: {60219892-9BD6-4388-818E-20464378E3CF} = 192.168.1.1
Handler: skyline - {3a4f9195-65a8-11d5-85c1-0001023952c1} - c:\program files\Skyline\TerraExplorer\TerraExplorerX.dll
DPF: CabBuilder - hxxp://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - hxxp://fichiers.touslesdrivers.com/fichiers/hardwaredetection/hardwaredetection_3_0_3_1.cab
DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} - hxxp://game02.zylom.com/activex/zylomgamesplayer.cab
DPF: {EBF85371-A38F-485B-B28F-0B4C82D25937} - hxxp://update.hpphoto.com/download/HPSWUpdate.ocx
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-01-22 18:06:03
Windows 5.1.2600 Service Pack 3 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PsSdk31]
"ImagePath"="\??\c:\windows\system32\Drivers\pssdk31.drv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PsSdkLBF]
"ImagePath"="\??\c:\windows\system32\Drivers\pssdklbf.drv"
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
[HKEY_USERS\S-1-5-21-1454471165-1078145449-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{BFC5E433-B2B2-0060-4CE0-F7CA7AF43E40}*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
"iaipnlkocglcilfkkb"=hex:6b,61,6d,6a,63,6e,63,6b,6a,64,63,6e,66,64,65,70,6b,63,
70,63,65,69,00,00
"haoplkhlccemoagi"=hex:6b,61,6d,6a,63,6e,63,6b,6a,64,63,6e,66,64,65,70,6b,63,
70,63,65,69,00,00
.
------------------------ Autres processus actifs ------------------------
.
c:\program files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
c:\program files\BitDefender\BitDefender 2009\vsserv.exe
c:\windows\system32\FTRTSVC.exe
c:\program files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
c:\program files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
c:\windows\system32\rundll32.exe
c:\program files\BitDefender\BitDefender 2009\seccenter.exe
c:\windows\system32\nvsvc32.exe
c:\program files\Fichiers communs\LogiShrd\LQCVFX\COCIManager.exe
c:\progra~1\Wanadoo\Toaster.exe
c:\progra~1\Wanadoo\Inactivity.exe
c:\progra~1\Wanadoo\PollingModule.exe
c:\program files\Canon\CAL\CALMAIN.exe
c:\program files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
c:\windows\system32\wscntfy.exe
c:\program files\HP\Digital Imaging\bin\hpqste08.exe
.
**************************************************************************
.
Heure de fin: 2009-01-22 18:10:07 - La machine a redémarré
ComboFix-quarantined-files.txt 2009-01-22 17:10:03
ComboFix2.txt 2009-01-21 18:04:17
ComboFix3.txt 2009-01-19 18:23:37
ComboFix4.txt 2008-09-14 07:46:09
Avant-CF: 208 911 372 288 octets libres
Après-CF: 209,015,640,064 octets libres
289 --- E O F --- 2009-01-22 10:00:22
-
-
Contributeur sécuritéEssaie de le supprimer manuellement car ton fichier est vérolé ! Si tu n'y arrives pas on fera autrement .
-
Contributeur sécuritétu sais a quoi correspond ce dossier : C:\Nouveau dossier (2)\Nouveau dossier\Documents and Settings\Blanot\Mes documents\Ancien_disque\WINDOWS\system32\onkkpzr.0ll Infecté ?
-
Contributeur sécuritéOn va vérifier si tout est net :
Fais un scan en ligne Kaspersky avec Internet Explorer : kaspersky on line
- Clique sur Démarrer Online-Scanner
- Clique maintenant sur J'accepte.
- Valide l'installation d'un ou de plusieurs ActiveX si c'est nécessaire.
- Patiente pendant l'installation des Mises à jour.
- Choisis par la suite l'analyse du Poste de travail.
- Sauvegarde puis colle le rapport généré en fin d'analyse.
AIDE : Configurer le contrôle des ActiveX
NOTE : Si tu reçois le message "La licence de Kaspersky On-line Scanner est périmée", va dans Ajout/Suppression de programmes puis désinstalle On-Line Scanner, reconnecte toi sur le site de Kaspersky pour retenter le scan en ligne.-
....c'était long....
-------------------------------------------------------------------------------
KASPERSKY ON-LINE SCANNER REPORT
Wednesday, January 21, 2009 11:39:06 PM
Système d'exploitation : Microsoft Windows XP Home Edition, Service Pack 3 (Build 2600)
Kaspersky On-line Scanner version : 5.0.84.2
Dernière mise à jour de la base antivirus Kaspersky : 21/01/2009
Enregistrements dans la base antivirus Kaspersky : 1491141
-------------------------------------------------------------------------------
Paramètres d'analyse:
Analyser avec la base antivirus suivante: standard
Analyser les archives: vrai
Analyser les bases de messagerie: vrai
Cible de l'analyse - Poste de travail:
C:\
D:\
E:\
Statistiques de l'analyse:
Total d'objets analysés: 114401
Nombre de virus trouvés: 4
Nombre d'objets infectés: 6 / 0
Nombre d'objets suspects: 0
Durée de l'analyse: 01:39:38
Nom de l'objet infecté / Nom du virus / Dernière action
C:\Documents and Settings\Administrateur\Bureau\SDFix\backups\backups.zip/backups/autorun.inf Infecté : Worm.Win32.AutoRun.hv ignoré
C:\Documents and Settings\Administrateur\Bureau\SDFix\backups\backups.zip ZIP: infecté - 1 ignoré
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat L'objet est verrouillé ignoré
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Cookies\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Cookies\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\Utilisateur\Application Data\BitDefender\Desktop\Profiles\asdict.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Utilisateur\Application Data\OnlineArmor\client.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Utilisateur\Application Data\Sony Ericsson\Teleca\Telecalib\Logging\Application logs\FM_log.txt L'objet est verrouillé ignoré
C:\Documents and Settings\Utilisateur\Bureau\limewire\joyeux anniversaire frederic.wma Infecté : Trojan-Downloader.WMA.Wimad.n ignoré
C:\Documents and Settings\Utilisateur\Bureau\limewire\techno MTV.mp3 Infecté : Trojan-Downloader.WMA.GetCodec.f ignoré
C:\Documents and Settings\Utilisateur\Cookies\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Microsoft\Search Enhancement Pack\Search Box Extension\history.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\Utilisateur\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Utilisateur\Local Settings\Historique\History.IE5\MSHist012009012120090122\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Utilisateur\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Utilisateur\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Utilisateur\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\Utilisateur\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Nouveau dossier (2)\Nouveau dossier\Documents and Settings\Blanot\Mes documents\Ancien_disque\WINDOWS\system32\fctths.0ll Infecté : Email-Worm.Win32.Tanatos.b.dam2 ignoré
C:\Nouveau dossier (2)\Nouveau dossier\Documents and Settings\Blanot\Mes documents\Ancien_disque\WINDOWS\system32\onkkpzr.0ll Infecté : Email-Worm.Win32.Tanatos.b.dam2 ignoré
C:\Program Files\Fichiers communs\BitDefender\BitDefender Threat Scanner\av32bit_10107\Plugins\cache.000 L'objet est verrouillé ignoré
C:\Program Files\Tall Emu\Online Armor\firewall.dat L'objet est verrouillé ignoré
C:\Program Files\Tall Emu\Online Armor\fwdata.dat L'objet est verrouillé ignoré
C:\Program Files\Tall Emu\Online Armor\oacached.dat L'objet est verrouillé ignoré
C:\Program Files\Tall Emu\Online Armor\onlinearmor.fdb L'objet est verrouillé ignoré
C:\Program Files\Tall Emu\Online Armor\programs.dat L'objet est verrouillé ignoré
C:\Program Files\Tall Emu\Online Armor\reference.dat L'objet est verrouillé ignoré
C:\Program Files\Tall Emu\Online Armor\server.dat L'objet est verrouillé ignoré
C:\Program Files\Tall Emu\Online Armor\signs.dat L'objet est verrouillé ignoré
C:\Program Files\Tall Emu\Online Armor\sites.dat L'objet est verrouillé ignoré
C:\System Volume Information\MountPointManagerRemoteDatabase L'objet est verrouillé ignoré
C:\System Volume Information\_restore{D2B94B42-99BC-4CDD-93E0-508A90A8D95E}\RP7\change.log L'objet est verrouillé ignoré
C:\WINDOWS\Debug\PASSWD.LOG L'objet est verrouillé ignoré
C:\WINDOWS\SchedLgU.Txt L'objet est verrouillé ignoré
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log L'objet est verrouillé ignoré
C:\WINDOWS\Sti_Trace.log L'objet est verrouillé ignoré
C:\WINDOWS\system32\CatRoot2\edb.log L'objet est verrouillé ignoré
C:\WINDOWS\system32\CatRoot2\tmp.edb L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\AppEvent.Evt L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\default L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\default.LOG L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\Internet.evt L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\SAM L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\SAM.LOG L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\SecEvent.Evt L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\SECURITY L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\SECURITY.LOG L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\software L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\software.LOG L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\SysEvent.Evt L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\system L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\system.LOG L'objet est verrouillé ignoré
C:\WINDOWS\system32\h323log.txt L'objet est verrouillé ignoré
C:\WINDOWS\system32\LogFiles\WUDF\WUDFTrace.etl L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP L'objet est verrouillé ignoré
C:\WINDOWS\Temp\fb_176.lck L'objet est verrouillé ignoré
C:\WINDOWS\Temp\tmp000022dc\tmp00000000 L'objet est verrouillé ignoré
C:\WINDOWS\wiadebug.log L'objet est verrouillé ignoré
C:\WINDOWS\wiaservc.log L'objet est verrouillé ignoré
C:\WINDOWS\WindowsUpdate.log L'objet est verrouillé ignoré
Analyse terminée.
-
-
Contributeur sécurité/!\La manip qui va suivre est strictement réservé a Sblanot et personne d'autres /!\
> Ferme tout tes navigateurs (donc copie ou imprime les instructions avant)
- Crée un nouveau document texte : clic droit de souris sur le bureau > Nouveau > Document Texte, et copie/colle dedans les lignes suivantes :
Driver::
lvuvc.sys
Folder::
File::
c:\windows\system32\pcqwhmqvjlzqfnr.dll-uninst.exe
c:\windows\system32\cont_milehighads-remove.exe
c:\windows\LMI229.tmp
c:\windows\[u]0/u02782_.tmp
c:\windows\system32\SET14A9.tmp
c:\windows\system32\SET149B.tmp
c:\windows\system32\SET14D2.tmp
c:\windows\system32\SET1494.tmp
c:\windows\system32\SET1500.tmp
c:\windows\system32\SET1491.tmp
c:\windows\SET8CE.tmp
c:\windows\system32\SET87A.tmp
c:\windows\system32\SET856.tmp
c:\windows\system32\SET86C.tmp
c:\windows\system32\SET8A8.tmp
c:\windows\system32\SET8A3.tmp
c:\windows\system32\SET899.tmp
c:\windows\system32\SET886.tmp
c:\windows\system32\SET88F.tmp
c:\windows\system32\SET881.tmp
c:\windows\system32\SET880.tmp
c:\windows\system32\SET1B0.tmp
c:\windows\[u]0/u02772_.tmp
c:\windows\system32\SET13DD.tmp
c:\windows\system32\SET140C.tmp
c:\windows\system32\SET13B3.tmp
c:\windows\system32\SET13A5.tmp
c:\windows\system32\SET139E.tmp
c:\windows\system32\SET139B.tmp
c:\windows\system32\SET1E9.tmp
c:\windows\[u]0/u02763_.tmp
c:\windows\system32\drivers\_004225_.tmp.dll
c:\windows\system32\SET1490.tmp
c:\windows\system32\SET14D4.tmp
c:\windows\system32\SET1482.tmp
c:\windows\system32\SET14B8.tmp
c:\windows\system32\SET1502.tmp
c:\windows\system32\SET147B.tmp
c:\windows\system32\SET147D.tmp
c:\windows\system32\SET1501.tmp
c:\windows\system32\SET1487.tmp
c:\windows\system32\SET14E4.tmp
c:\windows\system32\SET1478.tmp
c:\windows\system32\SET721.tmp
c:\windows\system32\SET552.tmp
c:\windows\[u]0/u02755_.tmp
c:\windows\system32\drivers\_004215_.tmp.dll
c:\windows\system32\drivers\_004206_.tmp.dll
c:\windows\system32\drivers\_004186_.tmp.dll
Reg::
- Enregistre ce fichier sous le nom CFScript
- Fait un glisser/déposer de ce fichier CFScrïpt sur le fichier ComboFix.exe comme sur cette image. (Clique sur le fichier CFScript, maintient le doigt enfoncé et glisse la souris pour que l'icône du CFScript vienne recouvrir l'icône de Combofix. Relache la souris.) Combofix va démarrer.
- Une fenêtre bleue va apparaître: au message qui apparaît ( Type 1 to continue, or 2 to abort) , tape 1 puis valide.
- Patiente le temps du scan.Le bureau va disparaître à plusieurs reprises: c'est normal!
- Ne touche à rien tant que le scan n'est pas terminé sinon le PC peut planter !
- Une fois le scan achevé, un rapport va s'afficher: poste son contenu.
Note : Si le fichier ne s'ouvre pas, il se trouve ici > C:\ComboFix.txt
-
Salut,
ComboFix 09-01-19.01 - Utilisateur 2009-01-21 18:58:40.3 - NTFSx86
Microsoft Windows XP Édition familiale 5.1.2600.3.1252.1.1036.18.895.561 [GMT 1:00]
Lancé depuis: c:\documents and settings\Utilisateur\Bureau\ComboFix.exe
Commutateurs utilisés :: c:\documents and settings\Utilisateur\Bureau\CFScript.txt
AV: BitDefender Antivirus *On-access scanning disabled* (Updated)
FW: Online Armor Firewall *disabled*
FW: Pare-feu BitDefender *disabled*
* Un nouveau point de restauration a été créé
AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !!
FILE ::
c:\windows\[u]0/u02755_.tmp
c:\windows\[u]0/u02763_.tmp
c:\windows\[u]0/u02772_.tmp
c:\windows\[u]0/u02782_.tmp
c:\windows\LMI229.tmp
c:\windows\SET8CE.tmp
c:\windows\system32\cont_milehighads-remove.exe
c:\windows\system32\drivers\_004186_.tmp.dll
c:\windows\system32\drivers\_004206_.tmp.dll
c:\windows\system32\drivers\_004215_.tmp.dll
c:\windows\system32\drivers\_004225_.tmp.dll
c:\windows\system32\pcqwhmqvjlzqfnr.dll-uninst.exe
c:\windows\system32\SET139B.tmp
c:\windows\system32\SET139E.tmp
c:\windows\system32\SET13A5.tmp
c:\windows\system32\SET13B3.tmp
c:\windows\system32\SET13DD.tmp
c:\windows\system32\SET140C.tmp
c:\windows\system32\SET1478.tmp
c:\windows\system32\SET147B.tmp
c:\windows\system32\SET147D.tmp
c:\windows\system32\SET1482.tmp
c:\windows\system32\SET1487.tmp
c:\windows\system32\SET1490.tmp
c:\windows\system32\SET1491.tmp
c:\windows\system32\SET1494.tmp
c:\windows\system32\SET149B.tmp
c:\windows\system32\SET14A9.tmp
c:\windows\system32\SET14B8.tmp
c:\windows\system32\SET14D2.tmp
c:\windows\system32\SET14D4.tmp
c:\windows\system32\SET14E4.tmp
c:\windows\system32\SET1500.tmp
c:\windows\system32\SET1501.tmp
c:\windows\system32\SET1502.tmp
c:\windows\system32\SET1B0.tmp
c:\windows\system32\SET1E9.tmp
c:\windows\system32\SET552.tmp
c:\windows\system32\SET721.tmp
c:\windows\system32\SET856.tmp
c:\windows\system32\SET86C.tmp
c:\windows\system32\SET87A.tmp
c:\windows\system32\SET880.tmp
c:\windows\system32\SET881.tmp
c:\windows\system32\SET886.tmp
c:\windows\system32\SET88F.tmp
c:\windows\system32\SET899.tmp
c:\windows\system32\SET8A3.tmp
c:\windows\system32\SET8A8.tmp
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\SET8CE.tmp
c:\windows\system32\cont_milehighads-remove.exe
c:\windows\system32\drivers\_004186_.tmp.dll
c:\windows\system32\drivers\_004206_.tmp.dll
c:\windows\system32\drivers\_004215_.tmp.dll
c:\windows\system32\drivers\_004225_.tmp.dll
c:\windows\system32\pcqwhmqvjlzqfnr.dll-uninst.exe
c:\windows\system32\SET139B.tmp
c:\windows\system32\SET139E.tmp
c:\windows\system32\SET13A5.tmp
c:\windows\system32\SET13B3.tmp
c:\windows\system32\SET13DD.tmp
c:\windows\system32\SET140C.tmp
c:\windows\system32\SET1478.tmp
c:\windows\system32\SET147B.tmp
c:\windows\system32\SET147D.tmp
c:\windows\system32\SET1482.tmp
c:\windows\system32\SET1487.tmp
c:\windows\system32\SET1490.tmp
c:\windows\system32\SET1491.tmp
c:\windows\system32\SET1494.tmp
c:\windows\system32\SET149B.tmp
c:\windows\system32\SET14A9.tmp
c:\windows\system32\SET14B8.tmp
c:\windows\system32\SET14D2.tmp
c:\windows\system32\SET14D4.tmp
c:\windows\system32\SET14E4.tmp
c:\windows\system32\SET1500.tmp
c:\windows\system32\SET1501.tmp
c:\windows\system32\SET1502.tmp
c:\windows\system32\SET1B0.tmp
c:\windows\system32\SET1E9.tmp
c:\windows\system32\SET552.tmp
c:\windows\system32\SET721.tmp
c:\windows\system32\SET856.tmp
c:\windows\system32\SET86C.tmp
c:\windows\system32\SET87A.tmp
c:\windows\system32\SET880.tmp
c:\windows\system32\SET881.tmp
c:\windows\system32\SET886.tmp
c:\windows\system32\SET88F.tmp
c:\windows\system32\SET899.tmp
c:\windows\system32\SET8A3.tmp
c:\windows\system32\SET8A8.tmp
.
((((((((((((((((((((((((((((( Fichiers créés du 2008-12-21 au 2009-01-21 ))))))))))))))))))))))))))))))))))))
.
2009-01-18 20:55 . 2009-01-19 18:48 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\gtk-2.0
2009-01-18 20:55 . 2009-01-18 20:55 <REP> d-------- c:\documents and settings\Utilisateur\.thumbnails
2009-01-18 20:33 . 2009-01-20 20:51 <REP> d-------- c:\documents and settings\Utilisateur\.gimp-2.6
2009-01-18 20:33 . 2009-01-18 20:33 <REP> d-------- c:\documents and settings\Utilisateur\.gegl-0.0
2009-01-18 20:32 . 2009-01-18 20:33 <REP> d-------- c:\program files\GIMP-2.0
2009-01-16 23:44 . 2009-01-16 23:44 <REP> d-------- c:\program files\Vision Objects
2009-01-16 20:54 . 2009-01-16 20:54 579,584 --a--c--- c:\windows\system32\dllcache\user32.dll
2009-01-14 20:29 . 2009-01-14 21:44 <REP> d-------- c:\program files\FindyKill
2009-01-14 18:44 . 2009-01-14 18:44 <REP> d-------- C:\rsit
2009-01-13 18:20 . 2009-01-17 12:26 37,440 --a------ c:\windows\system32\drivers\pssdklbf.drv
2009-01-13 18:20 . 2009-01-17 12:26 30,272 --a------ c:\windows\system32\drivers\pssdk31.drv
2009-01-12 23:30 . 2009-01-13 00:00 <REP> d-------- C:\Lop SD
2009-01-12 23:12 . 2009-01-13 00:34 <REP> d-------- c:\program files\Ad-remover
2009-01-11 12:24 . 2009-01-11 12:24 <REP> d-------- c:\program files\Skyline
2009-01-10 13:24 . 2009-01-10 13:24 <REP> d-------- c:\program files\CCleaner
2009-01-07 21:13 . 2009-01-07 21:13 850 --a------ c:\windows\system32\ProductTweaks.xml
2009-01-07 21:13 . 2009-01-07 21:13 385 --a------ c:\windows\system32\user_gensett.xml
2009-01-07 20:42 . 2009-01-07 20:42 <REP> d-------- c:\program files\Malwarebytes' Anti-Malware
2009-01-07 20:42 . 2009-01-04 18:38 38,496 --a------ c:\windows\system32\drivers\mbamswissarmy.sys
2009-01-07 20:42 . 2009-01-04 18:38 15,504 --a------ c:\windows\system32\drivers\mbam.sys
2009-01-07 20:39 . 2009-01-19 23:20 263 --a------ c:\windows\system32\BDUpdateV1.xml
2009-01-07 18:59 . 2009-01-07 18:59 <REP> d-------- c:\program files\BitDefender
2009-01-07 18:59 . 2009-01-07 18:59 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\BitDefender
2009-01-07 18:59 . 2009-01-07 19:03 <REP> d-------- c:\documents and settings\All Users\Application Data\BitDefender
2009-01-07 18:58 . 2009-01-07 18:59 <REP> d-------- c:\program files\Fichiers communs\BitDefender
2009-01-07 18:33 . 2009-01-07 22:21 <REP> d-------- c:\windows\LMI229.tmp
2009-01-07 13:17 . 2009-01-07 13:17 <REP> d-------- c:\documents and settings\LocalService\Application Data\agi
2009-01-07 13:16 . 2009-01-07 13:16 2,117,632 --a------ c:\windows\system32\python25.dll
2009-01-07 13:16 . 2008-09-16 17:26 1,332,197 --a------ c:\windows\system32\pythondll.zip
2009-01-07 13:16 . 2009-01-07 13:16 339,968 --a------ c:\windows\system32\pythoncom25.dll
2009-01-07 13:16 . 2009-01-07 13:16 114,688 --a------ c:\windows\system32\pywintypes25.dll
2009-01-02 10:44 . 2009-01-02 10:44 <REP> d-------- c:\documents and settings\All Users\Application Data\hps
2008-12-23 16:24 . 2008-12-23 16:24 <REP> d-------- c:\program files\Fichiers communs\Logitech
2008-12-23 16:20 . 2008-12-23 16:24 <REP> d-------- c:\documents and settings\All Users\Application Data\Logishrd
2008-12-23 16:19 . 2008-12-23 16:19 <REP> d-------- c:\documents and settings\All Users\Application Data\Logitech
2008-12-23 16:05 . 2008-04-13 19:33 1,888,992 --------- c:\windows\system32\ati3duag.dll
2008-12-23 16:05 . 2008-09-10 02:15 1,307,648 --a------ c:\windows\system32\msxml6.dll
2008-12-23 16:05 . 2008-09-10 02:15 1,307,648 -----c--- c:\windows\system32\dllcache\msxml6.dll
2008-12-23 16:05 . 2008-04-13 19:33 870,784 --------- c:\windows\system32\ati3d1ag.dll
2008-12-23 16:05 . 2008-04-13 19:33 377,984 --------- c:\windows\system32\ati2dvaa.dll
2008-12-23 16:05 . 2008-04-13 19:33 229,376 --------- c:\windows\system32\ati2cqag.dll
2008-12-23 16:05 . 2008-04-13 19:33 201,728 --------- c:\windows\system32\ati2dvag.dll
2008-12-23 16:05 . 2008-04-13 19:33 136,192 --------- c:\windows\system32\aaclient.dll
2008-12-23 16:05 . 2008-04-13 19:04 93,184 --------- c:\windows\system32\msxml6r.dll
2008-12-23 16:05 . 2008-04-13 19:04 93,184 -----c--- c:\windows\system32\dllcache\msxml6r.dll
2008-12-23 16:05 . 2008-04-13 19:34 23,040 --------- c:\windows\system32\ativmvxx.ax
2008-12-23 16:05 . 2008-04-13 19:34 9,728 --------- c:\windows\system32\ativdaxx.ax
2008-12-23 16:02 . 2008-12-23 16:02 <REP> d-------- c:\windows\ServicePackFiles
2008-12-23 15:59 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02782_.tmp
2008-12-23 15:29 . 2008-12-23 15:29 <REP> d-------- c:\program files\Microsoft Easy Assist
2008-12-23 15:29 . 2008-12-23 15:29 <REP> d-------- c:\documents and settings\All Users\Application Data\Applications
2008-12-22 18:48 . 2008-04-13 19:33 579,584 --a------ c:\windows\system32\SET1B1.tmp
2008-12-22 18:47 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02772_.tmp
2008-12-22 18:45 . 2008-08-14 14:23 2,147,328 --a------ c:\windows\system32\ntoskrnl.exe
2008-12-22 18:21 . 2008-04-13 19:33 2,843,136 --a------ c:\windows\system32\SET2BF.tmp
2008-12-22 18:20 . 2008-04-13 19:33 1,719,808 --a------ c:\windows\system32\SET280.tmp
2008-12-22 18:19 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02763_.tmp
2008-12-22 17:48 . 2008-04-13 19:33 1,719,808 --a------ c:\windows\system32\SET6CE.tmp
2008-12-22 17:47 . 2008-04-13 19:33 1,499,136 --a------ c:\windows\system32\SET553.tmp
2008-12-22 17:45 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02755_.tmp
2008-12-22 14:16 . 2008-12-22 14:16 <REP> d-------- c:\program files\Windows Resource Kits
2008-12-22 11:34 . 2004-08-05 13:00 71,040 --------- c:\windows\system32\drivers\_004196_.tmp.dll
2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\system32\fr
2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\system32\bits
2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\l2schemas
2008-12-22 10:50 . 2008-12-23 15:56 <REP> d-------- c:\windows\EHome
2008-12-21 12:03 . 2008-12-21 12:03 <REP> d-------- c:\program files\Logitech
2008-12-21 11:37 . 2008-07-26 16:26 4,658,584 -ra------ c:\windows\system32\drivers\lvuvc.sys
2008-12-21 11:37 . 2008-07-26 16:25 627,864 -ra------ c:\windows\system32\drivers\lvrs.sys
2008-12-21 11:37 . 2008-07-26 16:26 490,008 -ra------ c:\windows\system32\LVUI2.dll
2008-12-21 11:37 . 2008-07-26 16:26 465,432 -ra------ c:\windows\system32\LVUI2RC.dll
2008-12-21 11:37 . 2008-07-26 16:23 416,280 -ra------ c:\windows\system32\lvcodec2.dll
2008-12-21 11:37 . 2008-07-26 16:23 195,096 -ra------ c:\windows\system32\lvci11801048.dll
2008-12-21 11:37 . 2008-07-26 15:42 66,482 -ra------ c:\windows\system32\lvcoinst.ini
2008-12-21 11:37 . 2008-07-26 16:26 41,752 -ra------ c:\windows\system32\drivers\LVUSBSta.sys
2008-12-21 11:37 . 2008-07-26 15:46 25,974 -ra------ c:\windows\system32\Repository.reg
2008-12-21 11:37 . 2009-01-21 10:12 0 --a------ c:\windows\system32\drivers\lvuvc.hs
2008-12-21 11:37 . 2009-01-21 10:12 0 --a------ c:\windows\system32\drivers\logiflt.iad
2008-12-21 11:12 . 2008-12-21 11:43 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\ntr
2008-12-21 11:01 . 2008-12-21 11:01 <REP> d-------- c:\program files\Microsoft CAPICOM 2.1.0.2
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-01-21 18:01 81,984 ----a-w c:\windows\system32\bdod.bin
2009-01-21 17:57 --------- d-----w c:\documents and settings\Utilisateur\Application Data\OnlineArmor
2009-01-21 17:53 --------- d-----w c:\program files\Wanadoo
2009-01-19 18:47 242,184 ----a-w c:\windows\system32\drivers\bdfsfltr.sys
2009-01-18 17:51 --------- d-----w c:\program files\Palm
2009-01-16 22:44 --------- d--h--w c:\program files\InstallShield Installation Information
2009-01-16 22:36 --------- d-----w c:\documents and settings\Utilisateur\Application Data\LimeWire
2009-01-16 21:56 --------- d-----w c:\program files\eMule
2009-01-10 11:14 --------- d-----w c:\program files\QuickTime
2009-01-10 11:13 --------- d-----w c:\program files\LimeWire
2009-01-02 09:09 4,424 ----a-w c:\documents and settings\Utilisateur\Application Data\ViewerApp.dat
2008-12-23 15:20 --------- d-----w c:\program files\Fichiers communs\LogiShrd
2008-12-20 10:27 --------- d-----w c:\program files\Microsoft Silverlight
2008-12-20 10:26 --------- d-----w c:\program files\Windows Live Toolbar
2008-12-20 10:26 --------- d-----w c:\program files\Windows Live
2008-12-20 10:25 --------- d-----w c:\program files\Microsoft Sync Framework
2008-12-20 10:10 --------- d-----w c:\program files\Windows Live SkyDrive
2008-12-20 09:52 --------- d-----w c:\program files\Microsoft
2008-12-20 09:45 --------- d-----w c:\program files\Fichiers communs\Windows Live
2008-12-11 10:57 333,952 ----a-w c:\windows\system32\drivers\srv.sys
2008-12-08 19:13 --------- d-----w c:\program files\Migros
2008-12-08 16:01 55,136 ----a-w c:\windows\system32\drivers\fssfltr_tdi.sys
2008-12-04 23:11 308,584 ----a-w c:\windows\WLXPGSS.SCR
2008-12-02 21:37 49,480 ----a-w c:\windows\system32\sirenacm.dll
2008-11-30 18:59 --------- d-----w c:\program files\Fichiers communs\Jasc Software Inc
2008-11-30 18:59 --------- d-----w c:\documents and settings\All Users\Application Data\InstallShield
2008-11-30 18:58 --------- d-----w c:\program files\Jasc Software Inc
2008-11-30 18:58 --------- d-----w c:\program files\Fichiers communs\InstallShield
2008-11-30 18:58 --------- d-----w c:\documents and settings\Utilisateur\Application Data\Jasc Software Inc
2008-11-30 18:54 --------- d-----w c:\documents and settings\All Users\Application Data\WinZip
2008-11-25 19:43 --------- d-----w c:\program files\Fichiers communs\Ahead
2008-11-25 19:35 --------- d-----w c:\documents and settings\All Users\Application Data\Nero
2008-11-21 16:52 --------- d-----w c:\documents and settings\All Users\Application Data\NVIDIA
2008-10-23 12:36 286,720 ----a-w c:\windows\system32\gdi32.dll
2007-08-02 21:29 278,528 ----a-w c:\program files\Fichiers communs\FDEUnInstaller.exe
2007-02-11 09:37 4,562,152 ----a-w c:\program files\80 cd7 - 06 - Huey Lewis and the News - I Want a New Drug.mp3
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WOOKIT"="c:\progra~1\Wanadoo\Shell.exe" [2004-08-23 122880]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-13 15360]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-08-09 68856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-10-30 7634944]
"LogitechCommunicationsManager"="c:\program files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe" [2008-08-14 565008]
"LogitechQuickCamRibbon"="c:\program files\Logitech\QuickCam\Quickcam.exe" [2008-08-14 2407184]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2007-11-01 155648]
"fssui"="c:\program files\Windows Live\Family Safety\fsui.exe" [2008-12-08 453984]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]
"BDAgent"="c:\program files\BitDefender\BitDefender 2009\bdagent.exe" [2009-01-19 741376]
"BitDefender Antiphishing Helper"="c:\program files\BitDefender\BitDefender 2009\IEShow.exe" [2008-10-17 69632]
"OnlineArmor GUI"="c:\program files\Tall Emu\Online Armor\oaui.exe" [2007-11-16 5029952]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2008-04-13 c:\windows\system32\bthprops.cpl]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-13 15360]
c:\documents and settings\Utilisateur\Menu D‚marrer\Programmes\D‚marrage\
D‚marrage d'Office.lnk - c:\program files\Microsoft Office\Office\OSA.EXE [1996-12-16 51984]
Logitech . Enregistrement du produit.lnk - c:\program files\Logitech\QuickCam\eReg.exe [2008-02-13 493832]
Microsoft Recherche acc‚l‚r‚e.lnk - c:\program files\Microsoft Office\Office\FINDFAST.EXE [1996-12-16 111376]
c:\documents and settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
HotSync Manager.lnk - c:\program files\Palm\Hotsync.exe [2008-01-03 1392640]
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2007-03-11 210520]
InterVideo WinCinema Manager.lnk - c:\program files\InterVideo\Common\Bin\WinCinemaMgr.exe [2007-08-07 303104]
Picture Package Menu.lnk - c:\program files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe [2007-08-28 151552]
Picture Package VCD Maker.lnk - c:\program files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe [2007-08-28 106496]
Ulead Photo Express Calendar Checker.lnk - c:\program files\Ulead Systems\Ulead Photo Express 4.0 Trial\CalCheck.exe [2007-09-01 57344]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoStartMenuSubFolders"= 1 (0x1)
"NoFavoritesMenu"= 1 (0x1)
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{4F07DA45-8170-4859-9B5F-037EF2970034}"= "c:\progra~1\TALLEM~1\ONLINE~1\oaevent.dll" [2007-11-16 633344]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqnrs08.exe"=
"c:\\Program Files\\LimeWire\\LimeWire.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\eMule\\emule.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"2799:UDP"= 2799:UDP:Altova License Metering Port (UDP)
"2799:TCP"= 2799:TCP:Altova License Metering Port (TCP)
R1 NDISRD;NDISRD;c:\windows\system32\drivers\ndisrd.sys [2008-09-15 18944]
R1 OADevice;OADriver;c:\windows\system32\drivers\OADriver.sys [2008-09-15 68608]
R1 OAmon;OAmon;c:\windows\system32\drivers\OAmon.sys [2008-09-15 25600]
R3 bdfm;BDFM;c:\windows\system32\drivers\bdfm.sys [2008-09-18 111112]
R3 Bdfndisf;BitDefender Firewall NDIS Filter Service;c:\windows\system32\drivers\bdfndisf.sys [2008-10-17 104328]
R4 BDVEDISK;BDVEDISK;c:\program files\BitDefender\BitDefender 2009\BDVEDISK.sys [2008-09-04 82696]
R4 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [2008-12-20 55136]
R4 fsssvc;Windows Live Contrôle parental;c:\program files\Windows Live\Family Safety\fsssvc.exe [2008-12-08 533344]
R4 ScanDrv;ScanDrv;c:\windows\system32\drivers\SCANDRV.SYS [2007-11-11 189628]
R4 SeaPort;SeaPort;c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2008-12-04 226640]
R4 SvcOnlineArmor;Online Armor;c:\program files\Tall Emu\Online Armor\oasrv.exe [2008-09-15 4625984]
S1 SASDIFSV;SASDIFSV;\??\c:\program files\SUPERAntiSpyware\SASDIFSV.SYS --> c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [?]
S1 SASKUTIL;SASKUTIL;\??\c:\program files\SUPERAntiSpyware\SASKUTIL.sys --> c:\program files\SUPERAntiSpyware\SASKUTIL.sys [?]
S3 Arrakis3;BitDefender Arrakis Server;c:\program files\Fichiers communs\BitDefender\BitDefender Arrakis Server\bin\Arrakis3.exe [2008-07-17 118784]
S3 maconfservice;Ma-Config Service;c:\program files\ma-config.com\maconfservice.exe [2008-09-02 191656]
S3 PsSdk31;PsSdk31;c:\windows\system32\drivers\pssdk31.drv [2009-01-13 30272]
S3 PsSdkLBF;PsSdkLBF;c:\windows\system32\drivers\pssdklbf.drv [2009-01-13 37440]
S3 SASENUM;SASENUM;\??\c:\program files\SUPERAntiSpyware\SASENUM.SYS --> c:\program files\SUPERAntiSpyware\SASENUM.SYS [?]
S3 SIS163u;SiS 163 usb Wireless LAN Adapter Driver;c:\windows\system32\drivers\sis163u.sys [2007-08-07 167424]
--- Autres Services/Pilotes en mémoire ---
*NewlyCreated* - 2DACBEF2
*Deregistered* - 2dacbef2
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
bdx REG_MULTI_SZ scan
.
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.orange.fr/
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
mWindow Title =
uInternet Connection Wizard,ShellNext = iexplore
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
IE: { - c:\program files\Messenger\msmsgs.exe
TCP: {60219892-9BD6-4388-818E-20464378E3CF} = 192.168.1.1
Handler: skyline - {3a4f9195-65a8-11d5-85c1-0001023952c1} - c:\program files\Skyline\TerraExplorer\TerraExplorerX.dll
DPF: CabBuilder - hxxp://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - hxxp://fichiers.touslesdrivers.com/fichiers/hardwaredetection/hardwaredetection_3_0_3_1.cab
DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} - hxxp://game02.zylom.com/activex/zylomgamesplayer.cab
DPF: {EBF85371-A38F-485B-B28F-0B4C82D25937} - hxxp://update.hpphoto.com/download/HPSWUpdate.ocx
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-01-21 19:02:14
Windows 5.1.2600 Service Pack 3 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PsSdk31]
"ImagePath"="\??\c:\windows\system32\Drivers\pssdk31.drv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PsSdkLBF]
"ImagePath"="\??\c:\windows\system32\Drivers\pssdklbf.drv"
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
[HKEY_USERS\S-1-5-21-1454471165-1078145449-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{BFC5E433-B2B2-0060-4CE0-F7CA7AF43E40}*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
"iaipnlkocglcilfkkb"=hex:6b,61,6d,6a,63,6e,63,6b,6a,64,63,6e,66,64,65,70,6b,63,
70,63,65,69,00,00
"haoplkhlccemoagi"=hex:6b,61,6d,6a,63,6e,63,6b,6a,64,63,6e,66,64,65,70,6b,63,
70,63,65,69,00,00
.
Heure de fin: 2009-01-21 19:04:16
ComboFix-quarantined-files.txt 2009-01-21 18:04:13
ComboFix2.txt 2009-01-19 18:23:37
ComboFix3.txt 2008-09-14 07:46:09
Avant-CF: 208 594 612 224 octets libres
Après-CF: 208,643,608,576 octets libres
365 --- E O F --- 2009-01-21 10:00:20
-
-
Contributeur sécuritéOk tu va le passer ici : https://virusscan.jotti.org/
-
Contributeur sécuritélut'
le rapport V.T de c:\documents and settings\Utilisateur\Tracing doit ressmbler a celui posté au message #51 .
Repasse le sur V.T s'il le faut . -
salut ;
c:\documents and settings\Utilisateur\Tracing =post#52
c:\windows\system32\dllcache\user32.dll =post#51 -
Contributeur sécuritéA quel fichier correspond le rapport post#51 ? Et ou est le deuxieme rapport ? (qui doit etre presque identique au premier ) .
Gen Hackman : Oui j'avais vu pour la console de récup ... -
AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE
:-( -
Contributeur sécuritéton pare-feu Bitdefender est bien désactivé ?
Il va falloir analyser un ou des fichier(s) suspect(s) !
Il se peut qu'il se trouvent dans les " dossiers cachés " du systeme.
Il faut donc les rendre visibles pour le scan.
Pour afficher les dossiers et fichiers cachés:
Panneau de configuration > Options des dossiers > onglet Affichage.
Coche Afficher les fichiers et dossiers cachés,
Décoche Masquer les extensions de fichiers connus
Décoche Masquer les fichiers protégés du Système.
Un message de mise en garde va apparaitre. Clique sur OK pour confirmer ton choix.
Les fichiers et dossiers cachés du système apparaitront alors dans l'explorateur Windows en transparence.
Rends toi sur ce site :
https://www.virustotal.com/gui/
Clique sur parcourir et cherche ces fichiers : c:\documents and settings\Utilisateur\Tracing
c:\windows\system32\dllcache\user32.dll
Clique sur Send File.
Un rapport va s'élaborer ligne à ligne.
Attends la fin. Il doit comprendre la taille du fichier envoyé.
Sauvegarde le rapport avec le bloc-note.
Copie le dans ta réponse.
-
Antivirus Version Dernière mise à jour Résultat
a-squared 4.0.0.73 2009.01.18 -
AhnLab-V3 2009.1.15.0 2009.01.17 -
AntiVir 7.9.0.57 2009.01.17 -
Authentium 5.1.0.4 2009.01.17 -
Avast 4.8.1281.0 2009.01.16 -
AVG 8.0.0.229 2009.01.17 -
BitDefender 7.2 2009.01.18 -
CAT-QuickHeal 10.00 2009.01.17 -
ClamAV 0.94.1 2009.01.17 -
Comodo 934 2009.01.17 -
DrWeb 4.44.0.09170 2009.01.18 -
eSafe 7.0.17.0 2009.01.15 -
eTrust-Vet 31.6.6312 2009.01.17 -
F-Prot 4.4.4.56 2009.01.17 -
F-Secure 8.0.14470.0 2009.01.18 -
Fortinet 3.117.0.0 2009.01.15 -
GData 19 2009.01.18 -
Ikarus T3.1.1.45.0 2009.01.18 -
K7AntiVirus 7.10.594 2009.01.17 Trojan.Win32.Patched.bb
Kaspersky 7.0.0.125 2009.01.18 -
McAfee 5498 2009.01.17 -
McAfee+Artemis 5498 2009.01.17 -
Microsoft 1.4205 2009.01.17 -
NOD32 3774 2009.01.17 -
Norman 5.93.01 2009.01.16 -
nProtect 2009.1.8.0 2009.01.16 -
Panda 9.5.1.2 2009.01.17 -
PCTools 4.4.2.0 2009.01.17 -
Prevx1 V2 2009.01.18 -
Rising 21.12.52.00 2009.01.17 -
SecureWeb-Gateway 6.7.6 2009.01.17 -
Sophos 4.37.0 2009.01.17 -
Sunbelt 3.2.1835.2 2009.01.16 -
Symantec 10 2009.01.18 -
TheHacker 6.3.1.5.222 2009.01.17 -
TrendMicro 8.700.0.1004 2009.01.16 -
VBA32 3.12.8.10 2009.01.17 -
ViRobot 2009.1.17.1563 2009.01.17 -
VirusBuster 4.5.11.0 2009.01.17 -
Information additionnelle
File size: 579584 bytes
MD5...: e853f84d3ce2faa2a802e33cf89ac023
SHA1..: c6823df0535551f6dafac59ca9ece48eb32ab8e0
SHA256: f06da9ccea0f1fb5e9b1bf66b589f97b3b3e2cb557a58ba672c7b2a4ec9cb10e
SHA512: a4e2a840b9500381a54a660b7af0c91cc0e48cfaa7a62b58759e9a82fbe8dd06
9e9708f06df9bea1559fc459d66e7adc9ca5ec2b7b9e352fdb1916d8e62518b9
ssdeep: 6144:QK2jOC6uhv4+hVthtXbArE+4gwgOvjlxxzk9VHv2F6kScLOUwgZcNiGNgE9
9F9lI:NvkfrthWrEL3rlnknQfyGcDgEJn
PEiD..: -
TrID..: File type identification
Win32 Executable MS Visual C++ (generic) (65.2%)
Win32 Executable Generic (14.7%)
Win32 Dynamic Link Library (generic) (13.1%)
Generic Win/DOS Executable (3.4%)
DOS Executable Generic (3.4%)
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x7e39b217
timedatestamp.....: 0x4802c252 (Mon Apr 14 02:32:50 2008)
machinetype.......: 0x14c (I386)
( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x5f283 0x5f400 6.65 69ebe6ff3bf10bf1abe36a70b7f19358
.data 0x61000 0x1180 0xc00 2.37 0221f43433ecffc8b2aa5459382268d4
.rsrc 0x63000 0x2a5e0 0x2a600 5.00 312dc1d322d380116af0a8155ba0d026
.reloc 0x8e000 0x2de4 0x2e00 6.77 68ebe5a2d822be0663a3e935b39d0bae
( 3 imports )
> GDI32.dll: GetClipRgn, ExtSelectClipRgn, GetHFONT, GetMapMode, SetGraphicsMode, GetClipBox, CreateRectRgn, CreateRectRgnIndirect, SetLayout, GetBoundsRect, ExcludeClipRect, PlayEnhMetaFile, GdiGetBitmapBitsSize, CreatePen, Ellipse, CreateEllipticRgn, GdiFixUpHandle, GetTextCharacterExtra, SetTextCharacterExtra, GetCurrentObject, GetViewportOrgEx, SetViewportOrgEx, PolyPatBlt, CreateBrushIndirect, SetBoundsRect, CopyEnhMetaFileW, CopyMetaFileW, GetPaletteEntries, CreatePalette, SetPaletteEntries, bInitSystemAndFontsDirectoriesW, bMakePathNameW, cGetTTFFromFOT, GetPixel, ExtTextOutA, GetTextCharsetInfo, QueryFontAssocStatus, GetCharWidthInfo, GetCharWidthA, GetTextFaceW, GetCharABCWidthsA, GetCharABCWidthsW, SetBrushOrgEx, CreateFontIndirectW, EnumFontsW, GetTextFaceAliasW, GetTextMetricsW, GetTextColor, GetBkMode, GetViewportExtEx, GetWindowExtEx, GdiGetCharDimensions, GdiGetCodePage, GetTextCharset, GdiPrinterThunk, GdiAddFontResourceW, TranslateCharsetInfo, SaveDC, OffsetWindowOrgEx, RestoreDC, ExtTextOutW, GetObjectType, GetDIBits, CreateDIBSection, SetStretchBltMode, SelectPalette, RealizePalette, SetDIBits, CreateDCW, CreateDIBitmap, CreateCompatibleBitmap, SetBitmapBits, DeleteDC, GdiValidateHandle, GdiDllInitialize, CreateSolidBrush, GetStockObject, CreateCompatibleDC, GdiConvertBitmapV5, GdiCreateLocalEnhMetaFile, GdiCreateLocalMetaFilePict, GetRgnBox, CombineRgn, OffsetRgn, MirrorRgn, EnableEUDC, GdiConvertToDevmodeW, GetTextExtentPointA, GetTextExtentPointW, CreateBitmap, SetLayoutWidth, PatBlt, TextOutA, TextOutW, BitBlt, GdiConvertAndCheckDC, StretchBlt, SetRectRgn, GdiReleaseDC, GdiConvertEnhMetaFile, GdiConvertMetaFilePict, DeleteEnhMetaFile, DeleteMetaFile, DeleteObject, GetDIBColorTable, GetDeviceCaps, StretchDIBits, GetLayout, SetBkColor, SetTextColor, GetObjectW, GetBkColor, SetBkMode, SelectObject, IntersectClipRect, GetTextAlign, SetTextAlign, GdiProcessSetup
> KERNEL32.dll: LocalSize, SizeofResource, LoadResource, FindResourceExW, FindResourceExA, GetModuleHandleW, DisableThreadLibraryCalls, GetCurrentThreadId, IsDBCSLeadByteEx, SearchPathW, ExpandEnvironmentStringsW, LoadLibraryExW, GlobalAddAtomW, GetSystemDirectoryW, GetComputerNameW, GetCurrentProcess, GetCurrentThread, ExitThread, GetExitCodeThread, CreateThread, HeapReAlloc, GlobalHandle, FoldStringW, Sleep, GetStringTypeW, GetStringTypeA, GetCPInfo, HeapSize, CloseHandle, UnmapViewOfFile, MapViewOfFile, CreateFileMappingW, GetFileSize, ReadFile, SetFileTime, GetFileTime, GetSystemWindowsDirectoryW, CopyFileW, MoveFileW, DeleteFileW, CreateProcessW, AddAtomA, AddAtomW, GetAtomNameW, GetAtomNameA, IsValidLocale, ConvertDefaultLocale, CompareStringW, GetCurrentDirectoryW, SetCurrentDirectoryW, lstrlenW, GetLogicalDrives, FindClose, FindNextFileW, FindFirstFileW, GetThreadLocale, ProcessIdToSessionId, GetCurrentProcessId, InterlockedCompareExchange, IsDBCSLeadByte, LCMapStringW, QueryPerformanceCounter, QueryPerformanceFrequency, GetTickCount, lstrlenA, GlobalFindAtomA, GetModuleFileNameA, GetModuleHandleA, GlobalAddAtomA, DelayLoadFailureHook, LoadLibraryA, GetSystemTimeAsFileTime, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, LocalUnlock, LocalLock, LocalReAlloc, GetACP, GetOEMCP, InterlockedIncrement, InterlockedDecrement, SetLastError, GlobalFindAtomW, GlobalAlloc, MultiByteToWideChar, GlobalReAlloc, GetLastError, GetProcAddress, LoadLibraryW, FreeLibrary, lstrcpynW, CreateFileW, WritePrivateProfileStringW, lstrcmpiW, SetEvent, WaitForMultipleObjectsEx, WideCharToMultiByte, GlobalFlags, GetLocaleInfoW, GlobalFree, GetModuleFileNameW, GlobalGetAtomNameW, GlobalGetAtomNameA, InterlockedExchange, DeleteAtom, LocalAlloc, GlobalDeleteAtom, LocalFree, GlobalSize, GlobalLock, GlobalUnlock, GetUserDefaultLCID, HeapAlloc, HeapFree, lstrcpyW, lstrcatW, GetPrivateProfileStringW, RegisterWaitForInputIdle
> ntdll.dll: NtQueryVirtualMemory, RtlUnwind, RtlNtStatusToDosError, NlsAnsiCodePage, RtlAllocateHeap, qsort, RtlMultiByteToUnicodeSize, LdrFlushAlternateResourceModules, RtlPcToFileHeader, wcsrchr, NtRaiseHardError, RtlIsNameLegalDOS8Dot3, strrchr, sscanf, NtQueryKey, NtEnumerateValueKey, RtlRunEncodeUnicodeString, RtlRunDecodeUnicodeString, _wcsicmp, CsrAllocateCaptureBuffer, CsrCaptureMessageBuffer, CsrFreeCaptureBuffer, NtOpenThreadToken, NtOpenProcessToken, NtQueryInformationToken, CsrClientCallServer, memmove, NtCallbackReturn, RtlUnicodeToMultiByteSize, RtlActivateActivationContextUnsafeFast, RtlDeactivateActivationContextUnsafeFast, RtlInitializeCriticalSection, NtQuerySystemInformation, swprintf, RtlDeleteCriticalSection, RtlImageNtHeader, CsrClientConnectToServer, NtYieldExecution, NtCreateKey, NtSetValueKey, NtDeleteValueKey, RtlQueryInformationActiveActivationContext, RtlReleaseActivationContext, RtlFreeHeap, wcsncpy, wcscmp, wcstoul, wcscat, RtlInitAnsiString, RtlAnsiStringToUnicodeString, RtlCreateUnicodeStringFromAsciiz, RtlFreeUnicodeString, NtOpenDirectoryObject, _chkstk, wcscpy, wcsncat, NtSetSecurityObject, NtQuerySecurityObject, NtQueryInformationProcess, wcstol, wcslen, RtlFindActivationContextSectionString, RtlMultiByteToUnicodeN, RtlUnicodeToMultiByteN, RtlLeaveCriticalSection, RtlEnterCriticalSection, RtlOpenCurrentUser, NtEnumerateKey, NtOpenKey, NtClose, NtQueryValueKey, RtlInitUnicodeString, RtlUnicodeStringToInteger
( 732 exports )
ActivateKeyboardLayout, AdjustWindowRect, AdjustWindowRectEx, AlignRects, AllowForegroundActivation, AllowSetForegroundWindow, AnimateWindow, AnyPopup, AppendMenuA, AppendMenuW, ArrangeIconicWindows, AttachThreadInput, BeginDeferWindowPos, BeginPaint, BlockInput, BringWindowToTop, BroadcastSystemMessage, BroadcastSystemMessageA, BroadcastSystemMessageExA, BroadcastSystemMessageExW, BroadcastSystemMessageW, BuildReasonArray, CalcMenuBar, CallMsgFilter, CallMsgFilterA, CallMsgFilterW, CallNextHookEx, CallWindowProcA, CallWindowProcW, CascadeChildWindows, CascadeWindows, ChangeClipboardChain, ChangeDisplaySettingsA, ChangeDisplaySettingsExA, ChangeDisplaySettingsExW, ChangeDisplaySettingsW, ChangeMenuA, ChangeMenuW, CharLowerA, CharLowerBuffA, CharLowerBuffW, CharLowerW, CharNextA, CharNextExA, CharNextW, CharPrevA, CharPrevExA, CharPrevW, CharToOemA, CharToOemBuffA, CharToOemBuffW, CharToOemW, CharUpperA, CharUpperBuffA, CharUpperBuffW, CharUpperW, CheckDlgButton, CheckMenuItem, CheckMenuRadioItem, CheckRadioButton, ChildWindowFromPoint, ChildWindowFromPointEx, CliImmSetHotKey, ClientThreadSetup, ClientToScreen, ClipCursor, CloseClipboard, CloseDesktop, CloseWindow, CloseWindowStation, CopyAcceleratorTableA, CopyAcceleratorTableW, CopyIcon, CopyImage, CopyRect, CountClipboardFormats, CreateAcceleratorTableA, CreateAcceleratorTableW, CreateCaret, CreateCursor, CreateDesktopA, CreateDesktopW, CreateDialogIndirectParamA, CreateDialogIndirectParamAorW, CreateDialogIndirectParamW, CreateDialogParamA, CreateDialogParamW, CreateIcon, CreateIconFromResource, CreateIconFromResourceEx, CreateIconIndirect, CreateMDIWindowA, CreateMDIWindowW, CreateMenu, CreatePopupMenu, CreateSystemThreads, CreateWindowExA, CreateWindowExW, CreateWindowStationA, CreateWindowStationW, CsrBroadcastSystemMessageExW, CtxInitUser32, DdeAbandonTransaction, DdeAccessData, DdeAddData, DdeClientTransaction, DdeCmpStringHandles, DdeConnect, DdeConnectList, DdeCreateDataHandle, DdeCreateStringHandleA, DdeCreateStringHandleW, DdeDisconnect, DdeDisconnectList, DdeEnableCallback, DdeFreeDataHandle, DdeFreeStringHandle, DdeGetData, DdeGetLastError, DdeGetQualityOfService, DdeImpersonateClient, DdeInitializeA, DdeInitializeW, DdeKeepStringHandle, DdeNameService, DdePostAdvise, DdeQueryConvInfo, DdeQueryNextServer, DdeQueryStringA, DdeQueryStringW, DdeReconnect, DdeSetQualityOfService, DdeSetUserHandle, DdeUnaccessData, DdeUninitialize, DefDlgProcA, DefDlgProcW, DefFrameProcA, DefFrameProcW, DefMDIChildProcA, DefMDIChildProcW, DefRawInputProc, DefWindowProcA, DefWindowProcW, DeferWindowPos, DeleteMenu, DeregisterShellHookWindow, DestroyAcceleratorTable, DestroyCaret, DestroyCursor, DestroyIcon, DestroyMenu, DestroyReasons, DestroyWindow, DeviceEventWorker, DialogBoxIndirectParamA, DialogBoxIndirectParamAorW, DialogBoxIndirectParamW, DialogBoxParamA, DialogBoxParamW, DisableProcessWindowsGhosting, DispatchMessageA, DispatchMessageW, DisplayExitWindowsWarnings, DlgDirListA, DlgDirListComboBoxA, DlgDirListComboBoxW, DlgDirListW, DlgDirSelectComboBoxExA, DlgDirSelectComboBoxExW, DlgDirSelectExA, DlgDirSelectExW, DragDetect, DragObject, DrawAnimatedRects, DrawCaption, DrawCaptionTempA, DrawCaptionTempW, DrawEdge, DrawFocusRect, DrawFrame, DrawFrameControl, DrawIcon, DrawIconEx, DrawMenuBar, DrawMenuBarTemp, DrawStateA, DrawStateW, DrawTextA, DrawTextExA, DrawTextExW, DrawTextW, EditWndProc, EmptyClipboard, EnableMenuItem, EnableScrollBar, EnableWindow, EndDeferWindowPos, EndDialog, EndMenu, EndPaint, EndTask, EnterReaderModeHelper, EnumChildWindows, EnumClipboardFormats, EnumDesktopWindows, EnumDesktopsA, EnumDesktopsW, EnumDisplayDevicesA, EnumDisplayDevicesW, EnumDisplayMonitors, EnumDisplaySettingsA, EnumDisplaySettingsExA, EnumDisplaySettingsExW, EnumDisplaySettingsW, EnumPropsA, EnumPropsExA, EnumPropsExW, EnumPropsW, EnumThreadWindows, EnumWindowStationsA, EnumWindowStationsW, EnumWindows, EqualRect, ExcludeUpdateRgn, ExitWindowsEx, FillRect, FindWindowA, FindWindowExA, FindWindowExW, FindWindowW, FlashWindow, FlashWindowEx, FrameRect, FreeDDElParam, GetActiveWindow, GetAltTabInfo, GetAltTabInfoA, GetAltTabInfoW, GetAncestor, GetAppCompatFlags, GetAppCompatFlags2, GetAsyncKeyState, GetCapture, GetCaretBlinkTime, GetCaretPos, GetClassInfoA, GetClassInfoExA, GetClassInfoExW, GetClassInfoW, GetClassLongA, GetClassLongW, GetClassNameA, GetClassNameW, GetClassWord, GetClientRect, GetClipCursor, GetClipboardData, GetClipboardFormatNameA, GetClipboardFormatNameW, GetClipboardOwner, GetClipboardSequenceNumber, GetClipboardViewer, GetComboBoxInfo, GetCursor, GetCursorFrameInfo, GetCursorInfo, GetCursorPos, GetDC, GetDCEx, GetDesktopWindow, GetDialogBaseUnits, GetDlgCtrlID, GetDlgItem, GetDlgItemInt, GetDlgItemTextA, GetDlgItemTextW, GetDoubleClickTime, GetFocus, GetForegroundWindow, GetGUIThreadInfo, GetGuiResources, GetIconInfo, GetInputDesktop, GetInputState, GetInternalWindowPos, GetKBCodePage, GetKeyNameTextA, GetKeyNameTextW, GetKeyState, GetKeyboardLayout, GetKeyboardLayoutList, GetKeyboardLayoutNameA, GetKeyboardLayoutNameW, GetKeyboardState, GetKeyboardType, GetLastActivePopup, GetLastInputInfo, GetLayeredWindowAttributes, GetListBoxInfo, GetMenu, GetMenuBarInfo, GetMenuCheckMarkDimensions, GetMenuContextHelpId, GetMenuDefaultItem, GetMenuInfo, GetMenuItemCount, GetMenuItemID, GetMenuItemInfoA, GetMenuItemInfoW, GetMenuItemRect, GetMenuState, GetMenuStringA, GetMenuStringW, GetMessageA, GetMessageExtraInfo, GetMessagePos, GetMessageTime, GetMessageW, GetMonitorInfoA, GetMonitorInfoW, GetMouseMovePointsEx, GetNextDlgGroupItem, GetNextDlgTabItem, GetOpenClipboardWindow, GetParent, GetPriorityClipboardFormat, GetProcessDefaultLayout, GetProcessWindowStation, GetProgmanWindow, GetPropA, GetPropW, GetQueueStatus, GetRawInputBuffer, GetRawInputData, GetRawInputDeviceInfoA, GetRawInputDeviceInfoW, GetRawInputDeviceList, GetReasonTitleFromReasonCode, GetRegisteredRawInputDevices, GetScrollBarInfo, GetScrollInfo, GetScrollPos, GetScrollRange, GetShellWindow, GetSubMenu, GetSysColor, GetSysColorBrush, GetSystemMenu, GetSystemMetrics, GetTabbedTextExtentA, GetTabbedTextExtentW, GetTaskmanWindow, GetThreadDesktop, GetTitleBarInfo, GetTopWindow, GetUpdateRect, GetUpdateRgn, GetUserObjectInformationA, GetUserObjectInformationW, GetUserObjectSecurity, GetWinStationInfo, GetWindow, GetWindowContextHelpId, GetWindowDC, GetWindowInfo, GetWindowLongA, GetWindowLongW, GetWindowModuleFileName, GetWindowModuleFileNameA, GetWindowModuleFileNameW, GetWindowPlacement, GetWindowRect, GetWindowRgn, GetWindowRgnBox, GetWindowTextA, GetWindowTextLengthA, GetWindowTextLengthW, GetWindowTextW, GetWindowThreadProcessId, GetWindowWord, GrayStringA, GrayStringW, HideCaret, HiliteMenuItem, IMPGetIMEA, IMPGetIMEW, IMPQueryIMEA, IMPQueryIMEW, IMPSetIMEA, IMPSetIMEW, ImpersonateDdeClientWindow, InSendMessage, InSendMessageEx, InflateRect, InitializeLpkHooks, InitializeWin32EntryTable, InsertMenuA, InsertMenuItemA, InsertMenuItemW, InsertMenuW, InternalGetWindowText, IntersectRect, InvalidateRect, InvalidateRgn, InvertRect, IsCharAlphaA, IsCharAlphaNumericA, IsCharAlphaNumericW, IsCharAlphaW, IsCharLowerA, IsCharLowerW, IsCharUpperA, IsCharUpperW, IsChild, IsClipboardFormatAvailable, IsDialogMessage, IsDialogMessageA, IsDialogMessageW, IsDlgButtonChecked, IsGUIThread, IsHungAppWindow, IsIconic, IsMenu, IsRectEmpty, IsServerSideWindow, IsWinEventHookInstalled, IsWindow, IsWindowEnabled, IsWindowInDestroy, IsWindowUnicode, IsWindowVisible, IsZoomed, KillSystemTimer, KillTimer, LoadAcceleratorsA, LoadAcceleratorsW, LoadBitmapA, LoadBitmapW, LoadCursorA, LoadCursorFromFileA, LoadCursorFromFileW, LoadCursorW, LoadIconA, LoadIconW, LoadImageA, LoadImageW, LoadKeyboardLayoutA, LoadKeyboardLayoutEx, LoadKeyboardLayoutW, LoadLocalFonts, LoadMenuA, LoadMenuIndirectA, LoadMenuIndirectW, LoadMenuW, LoadRemoteFonts, LoadStringA, LoadStringW, LockSetForegroundWindow, LockWindowStation, LockWindowUpdate, LockWorkStation, LookupIconIdFromDirectory, LookupIconIdFromDirectoryEx, MBToWCSEx, MB_GetString, MapDialogRect, MapVirtualKeyA, MapVirtualKeyExA, MapVirtualKeyExW, MapVirtualKeyW, MapWindowPoints, MenuItemFromPoint, MenuWindowProcA, MenuWindowProcW, MessageBeep, MessageBoxA, MessageBoxExA, MessageBoxExW, MessageBoxIndirectA, MessageBoxIndirectW, MessageBoxTimeoutA, MessageBoxTimeoutW, MessageBoxW, ModifyMenuA, ModifyMenuW, MonitorFromPoint, MonitorFromRect, MonitorFromWindow, MoveWindow, MsgWaitForMultipleObjects, MsgWaitForMultipleObjectsEx, NotifyWinEvent, OemKeyScan, OemToCharA, OemToCharBuffA, OemToCharBuffW, OemToCharW, OffsetRect, OpenClipboard, OpenDesktopA, OpenDesktopW, OpenIcon, OpenInputDesktop, OpenWindowStationA, OpenWindowStationW, PackDDElParam, PaintDesktop, PaintMenuBar, PeekMessageA, PeekMessageW, PostMessageA, PostMessageW, PostQuitMessage, PostThreadMessageA, PostThreadMessageW, PrintWindow, PrivateExtractIconExA, PrivateExtractIconExW, PrivateExtractIconsA, PrivateExtractIconsW, PrivateSetDbgTag, PrivateSetRipFlags, PtInRect, QuerySendMessage, QueryUserCounters, RealChildWindowFromPoint, RealGetWindowClass, RealGetWindowClassA, RealGetWindowClassW, ReasonCodeNeedsBugID, ReasonCodeNeedsComment, RecordShutdownReason, RedrawWindow, RegisterClassA, RegisterClassExA, RegisterClassExW, RegisterClassW, RegisterClipboardFormatA, RegisterClipboardFormatW, RegisterDeviceNotificationA, RegisterDeviceNotificationW, RegisterHotKey, RegisterLogonProcess, RegisterMessagePumpHook, RegisterRawInputDevices, RegisterServicesProcess, RegisterShellHookWindow, RegisterSystemThread, RegisterTasklist, RegisterUserApiHook, RegisterWindowMessageA, RegisterWindowMessageW, ReleaseCapture, ReleaseDC, RemoveMenu, RemovePropA, RemovePropW, ReplyMessage, ResolveDesktopForWOW, ReuseDDElParam, ScreenToClient, ScrollChildren, ScrollDC, ScrollWindow, ScrollWindowEx, SendDlgItemMessageA, SendDlgItemMessageW, SendIMEMessageExA, SendIMEMessageExW, SendInput, SendMessageA, SendMessageCallbackA, SendMessageCallbackW, SendMessageTimeoutA, SendMessageTimeoutW, SendMessageW, SendNotifyMessageA, SendNotifyMessageW, SetActiveWindow, SetCapture, SetCaretBlinkTime, SetCaretPos, SetClassLongA, SetClassLongW, SetClassWord, SetClipboardData, SetClipboardViewer, SetConsoleReserveKeys, SetCursor, SetCursorContents, SetCursorPos, SetDebugErrorLevel, SetDeskWallpaper, SetDlgItemInt, SetDlgItemTextA, SetDlgItemTextW, SetDoubleClickTime, SetFocus, SetForegroundWindow, SetInternalWindowPos, SetKeyboardState, SetLastErrorEx, SetLayeredWindowAttributes, SetLogonNotifyWindow, SetMenu, SetMenuContextHelpId, SetMenuDefaultItem, SetMenuInfo, SetMenuItemBitmaps, SetMenuItemInfoA, SetMenuItemInfoW, SetMessageExtraInfo, SetMessageQueue, SetParent, SetProcessDefaultLayout, SetProcessWindowStation, SetProgmanWindow, SetPropA, SetPropW, SetRect, SetRectEmpty, SetScrollInfo, SetScrollPos, SetScrollRange, SetShellWindow, SetShellWindowEx, SetSysColors, SetSysColorsTemp, SetSystemCursor, SetSystemMenu, SetSystemTimer, SetTaskmanWindow, SetThreadDesktop, SetTimer, SetUserObjectInformationA, SetUserObjectInformationW, SetUserObjectSecurity, SetWinEventHook, SetWindowContextHelpId, SetWindowLongA, SetWindowLongW, SetWindowPlacement, SetWindowPos, SetWindowRgn, SetWindowStationUser, SetWindowTextA, SetWindowTextW, SetWindowWord, SetWindowsHookA, SetWindowsHookExA, SetWindowsHookExW, SetWindowsHookW, ShowCaret, ShowCursor, ShowOwnedPopups, ShowScrollBar, ShowStartGlass, ShowWindow, ShowWindowAsync, SoftModalMessageBox, SubtractRect, SwapMouseButton, SwitchDesktop, SwitchToThisWindow, SystemParametersInfoA, SystemParametersInfoW, TabbedTextOutA, TabbedTextOutW, TileChildWindows, TileWindows, ToAscii, ToAsciiEx, ToUnicode, ToUnicodeEx, TrackMouseEvent, TrackPopupMenu, TrackPopupMenuEx, TranslateAccelerator, TranslateAcceleratorA, TranslateAcceleratorW, TranslateMDISysAccel, TranslateMessage, TranslateMessageEx, UnhookWinEvent, UnhookWindowsHook, UnhookWindowsHookEx, UnionRect, UnloadKeyboardLayout, UnlockWindowStation, UnpackDDElParam, UnregisterClassA, UnregisterClassW, UnregisterDeviceNotification, UnregisterHotKey, UnregisterMessagePumpHook, UnregisterUserApiHook, UpdateLayeredWindow, UpdatePerUserSystemParameters, UpdateWindow, User32InitializeImmEntryTable, UserClientDllInitialize, UserHandleGrantAccess, UserLpkPSMTextOut, UserLpkTabbedTextOut, UserRealizePalette, UserRegisterWowHandlers, VRipOutput, VTagOutput, ValidateRect, ValidateRgn, VkKeyScanA, VkKeyScanExA, VkKeyScanExW, VkKeyScanW, WCSToMBEx, WINNLSEnableIME, WINNLSGetEnableStatus, WINNLSGetIMEHotkey, WaitForInputIdle, WaitMessage, Win32PoolAllocationStats, WinHelpA, WinHelpW, WindowFromDC, WindowFromPoint, keybd_event, mouse_event, wsprintfA, wsprintfW, wvsprintfA, wvsprintfW
CWSandbox info: http://research.sunbelt-software.com/... -
-
-
Contributeur sécuritéLe rapport combofix n'est pas complet ,repostes le STP .
-
au milieu de l'analyse il a générer une erreur je ne sais pas si ça vient de ça, enfin, revoilà
ComboFix 09-01-19.01 - Utilisateur 2009-01-19 18:59:21.2 - NTFSx86
Microsoft Windows XP Édition familiale 5.1.2600.3.1252.1.1036.18.895.481 [GMT 1:00]
Lancé depuis: c:\documents and settings\Utilisateur\Bureau\ComboFix.exe
AV: BitDefender Antivirus *On-access scanning disabled* (Updated)
FW: Online Armor Firewall *disabled*
FW: Pare-feu BitDefender *enabled*
* Un nouveau point de restauration a été créé
AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !!
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat
c:\documents and settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat
c:\windows\system32\_004199_.tmp.dll
c:\windows\system32\_004200_.tmp.dll
c:\windows\system32\_004201_.tmp.dll
c:\windows\system32\_004202_.tmp.dll
c:\windows\system32\_004209_.tmp.dll
c:\windows\system32\_004210_.tmp.dll
c:\windows\system32\_004211_.tmp.dll
c:\windows\system32\_004212_.tmp.dll
c:\windows\system32\_004213_.tmp.dll
c:\windows\system32\_004214_.tmp.dll
c:\windows\system32\_004215_.tmp.dll
c:\windows\system32\_004216_.tmp.dll
c:\windows\system32\_004217_.tmp.dll
c:\windows\system32\_004218_.tmp.dll
c:\windows\system32\_004219_.tmp.dll
c:\windows\system32\_004220_.tmp.dll
c:\windows\system32\_004221_.tmp.dll
c:\windows\system32\_004222_.tmp.dll
c:\windows\system32\_004223_.tmp.dll
c:\windows\system32\_004224_.tmp.dll
c:\windows\system32\_004225_.tmp.dll
c:\windows\system32\_004226_.tmp.dll
c:\windows\system32\_004227_.tmp.dll
c:\windows\system32\_004228_.tmp.dll
c:\windows\system32\_004229_.tmp.dll
c:\windows\system32\_004230_.tmp.dll
c:\windows\system32\_004231_.tmp.dll
c:\windows\system32\_004232_.tmp.dll
c:\windows\system32\_004233_.tmp.dll
c:\windows\system32\_004234_.tmp.dll
c:\windows\system32\_004235_.tmp.dll
c:\windows\system32\_004236_.tmp.dll
c:\windows\system32\_004237_.tmp.dll
c:\windows\system32\_004238_.tmp.dll
c:\windows\system32\_004239_.tmp.dll
c:\windows\system32\_004240_.tmp.dll
c:\windows\system32\_004241_.tmp.dll
c:\windows\system32\_004242_.tmp.dll
c:\windows\system32\_004243_.tmp.dll
c:\windows\system32\_004244_.tmp.dll
c:\windows\system32\_004245_.tmp.dll
c:\windows\system32\_004246_.tmp.dll
c:\windows\system32\_004247_.tmp.dll
c:\windows\system32\_004248_.tmp.dll
c:\windows\system32\_004249_.tmp.dll
c:\windows\system32\_004250_.tmp.dll
c:\windows\system32\_004251_.tmp.dll
c:\windows\system32\_004252_.tmp.dll
c:\windows\system32\_004253_.tmp.dll
c:\windows\system32\_004255_.tmp.dll
c:\windows\system32\_004256_.tmp.dll
c:\windows\system32\_004257_.tmp.dll
c:\windows\system32\_004258_.tmp.dll
c:\windows\system32\_004259_.tmp.dll
c:\windows\system32\_004260_.tmp.dll
c:\windows\system32\_004261_.tmp.dll
c:\windows\system32\_004262_.tmp.dll
c:\windows\system32\_004263_.tmp.dll
c:\windows\system32\_004264_.tmp.dll
c:\windows\system32\_004265_.tmp.dll
c:\windows\system32\_004266_.tmp.dll
c:\windows\system32\_004267_.tmp.dll
c:\windows\system32\_004268_.tmp.dll
c:\windows\system32\_004269_.tmp.dll
c:\windows\system32\_004270_.tmp.dll
c:\windows\system32\_004271_.tmp.dll
c:\windows\system32\_004272_.tmp.dll
c:\windows\system32\_004273_.tmp.dll
c:\windows\system32\_004274_.tmp.dll
c:\windows\system32\_004275_.tmp.dll
c:\windows\system32\_004277_.tmp.dll
c:\windows\system32\_004278_.tmp.dll
c:\windows\system32\_004279_.tmp.dll
c:\windows\system32\_004280_.tmp.dll
c:\windows\system32\_004281_.tmp.dll
c:\windows\system32\_004282_.tmp.dll
c:\windows\system32\_004283_.tmp.dll
c:\windows\system32\_004284_.tmp.dll
c:\windows\system32\_004285_.tmp.dll
c:\windows\system32\_004286_.tmp.dll
c:\windows\system32\_004287_.tmp.dll
c:\windows\system32\_004288_.tmp.dll
c:\windows\system32\_004289_.tmp.dll
c:\windows\system32\_004290_.tmp.dll
c:\windows\system32\_004291_.tmp.dll
c:\windows\system32\_004292_.tmp.dll
c:\windows\system32\_004293_.tmp.dll
c:\windows\system32\_004294_.tmp.dll
c:\windows\system32\_004295_.tmp.dll
c:\windows\system32\_004296_.tmp.dll
c:\windows\system32\_004297_.tmp.dll
c:\windows\system32\_004298_.tmp.dll
c:\windows\system32\_004299_.tmp.dll
c:\windows\system32\_004300_.tmp.dll
c:\windows\system32\_004302_.tmp.dll
c:\windows\system32\_004303_.tmp.dll
c:\windows\system32\_004304_.tmp.dll
c:\windows\system32\_004305_.tmp.dll
c:\windows\system32\_004307_.tmp.dll
c:\windows\system32\_004309_.tmp.dll
c:\windows\system32\_004310_.tmp.dll
c:\windows\system32\_004311_.tmp.dll
c:\windows\system32\_004312_.tmp.dll
c:\windows\system32\_004313_.tmp.dll
c:\windows\system32\_004314_.tmp.dll
c:\windows\system32\_004315_.tmp.dll
c:\windows\system32\_004317_.tmp.dll
c:\windows\system32\_004318_.tmp.dll
c:\windows\system32\_004319_.tmp.dll
c:\windows\system32\_004320_.tmp.dll
c:\windows\system32\_004321_.tmp.dll
c:\windows\system32\_004322_.tmp.dll
c:\windows\system32\_004323_.tmp.dll
c:\windows\system32\_004324_.tmp.dll
c:\windows\system32\_004326_.tmp.dll
c:\windows\system32\_004327_.tmp.dll
c:\windows\system32\_004328_.tmp.dll
c:\windows\system32\_004329_.tmp.dll
c:\windows\system32\_004330_.tmp.dll
c:\windows\system32\_004331_.tmp.dll
c:\windows\system32\_004332_.tmp.dll
c:\windows\system32\_004334_.tmp.dll
c:\windows\system32\_004335_.tmp.dll
c:\windows\system32\_004336_.tmp.dll
c:\windows\system32\_004337_.tmp.dll
c:\windows\system32\_004339_.tmp.dll
c:\windows\system32\_004340_.tmp.dll
c:\windows\system32\_004341_.tmp.dll
c:\windows\system32\_004342_.tmp.dll
c:\windows\system32\_004343_.tmp.dll
c:\windows\system32\_004344_.tmp.dll
c:\windows\system32\_004345_.tmp.dll
c:\windows\system32\_004346_.tmp.dll
c:\windows\system32\_004347_.tmp.dll
c:\windows\system32\_004348_.tmp.dll
c:\windows\system32\_004350_.tmp.dll
c:\windows\system32\_004351_.tmp.dll
c:\windows\system32\_004352_.tmp.dll
c:\windows\system32\_004353_.tmp.dll
c:\windows\system32\_004354_.tmp.dll
c:\windows\system32\_004355_.tmp.dll
c:\windows\system32\_004356_.tmp.dll
c:\windows\system32\_004359_.tmp.dll
c:\windows\system32\_004360_.tmp.dll
c:\windows\system32\_004361_.tmp.dll
c:\windows\system32\_004362_.tmp.dll
c:\windows\system32\_004363_.tmp.dll
c:\windows\system32\_004364_.tmp.dll
c:\windows\system32\_004369_.tmp.dll
c:\windows\system32\_004371_.tmp.dll
c:\windows\system32\_004374_.tmp.dll
c:\windows\system32\_004376_.tmp.dll
c:\windows\system32\_004377_.tmp.dll
c:\windows\system32\_004378_.tmp.dll
c:\windows\system32\_004379_.tmp.dll
c:\windows\system32\_004382_.tmp.dll
c:\windows\system32\_004383_.tmp.dll
c:\windows\system32\_004384_.tmp.dll
c:\windows\system32\_004385_.tmp.dll
c:\windows\system32\_004386_.tmp.dll
c:\windows\system32\_004389_.tmp.dll
c:\windows\system32\_004391_.tmp.dll
c:\windows\system32\_004392_.tmp.dll
c:\windows\system32\_004395_.tmp.dll
c:\windows\system32\_004399_.tmp.dll
c:\windows\system32\_004400_.tmp.dll
c:\windows\system32\_004403_.tmp.dll
c:\windows\system32\_004404_.tmp.dll
c:\windows\system32\_004405_.tmp.dll
c:\windows\system32\_004406_.tmp.dll
c:\windows\system32\_004407_.tmp.dll
c:\windows\system32\_004412_.tmp.dll
c:\windows\system32\_004414_.tmp.dll
----- BITS: Il y a peut-être des sites infectés -----
hxxp://dwd.virginmega.fr
.
((((((((((((((((((((((((((((( Fichiers créés du 2008-12-19 au 2009-01-19 ))))))))))))))))))))))))))))))))))))
.
2009-01-18 20:55 . 2009-01-19 18:48 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\gtk-2.0
2009-01-18 20:55 . 2009-01-18 20:55 <REP> d-------- c:\documents and settings\Utilisateur\.thumbnails
2009-01-18 20:33 . 2009-01-19 18:48 <REP> d-------- c:\documents and settings\Utilisateur\.gimp-2.6
2009-01-18 20:33 . 2009-01-18 20:33 <REP> d-------- c:\documents and settings\Utilisateur\.gegl-0.0
2009-01-18 20:32 . 2009-01-18 20:33 <REP> d-------- c:\program files\GIMP-2.0
2009-01-16 23:44 . 2009-01-16 23:44 <REP> d-------- c:\program files\Vision Objects
2009-01-16 20:54 . 2009-01-16 20:54 579,584 --a--c--- c:\windows\system32\dllcache\user32.dll
2009-01-14 20:29 . 2009-01-14 21:44 <REP> d-------- c:\program files\FindyKill
2009-01-14 18:44 . 2009-01-14 18:44 <REP> d-------- C:\rsit
2009-01-13 18:20 . 2009-01-17 12:26 37,440 --a------ c:\windows\system32\drivers\pssdklbf.drv
2009-01-13 18:20 . 2009-01-17 12:26 30,272 --a------ c:\windows\system32\drivers\pssdk31.drv
2009-01-12 23:30 . 2009-01-13 00:00 <REP> d-------- C:\Lop SD
2009-01-12 23:12 . 2009-01-13 00:34 <REP> d-------- c:\program files\Ad-remover
2009-01-11 12:24 . 2009-01-11 12:24 <REP> d-------- c:\program files\Skyline
2009-01-10 13:24 . 2009-01-10 13:24 <REP> d-------- c:\program files\CCleaner
2009-01-07 21:13 . 2009-01-07 21:13 850 --a------ c:\windows\system32\ProductTweaks.xml
2009-01-07 21:13 . 2009-01-07 21:13 385 --a------ c:\windows\system32\user_gensett.xml
2009-01-07 20:42 . 2009-01-07 20:42 <REP> d-------- c:\program files\Malwarebytes' Anti-Malware
2009-01-07 20:42 . 2009-01-04 18:38 38,496 --a------ c:\windows\system32\drivers\mbamswissarmy.sys
2009-01-07 20:42 . 2009-01-04 18:38 15,504 --a------ c:\windows\system32\drivers\mbam.sys
2009-01-07 20:39 . 2009-01-12 23:53 336 --a------ c:\windows\system32\BDUpdateV1.xml
2009-01-07 18:59 . 2009-01-07 18:59 <REP> d-------- c:\program files\BitDefender
2009-01-07 18:59 . 2009-01-07 18:59 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\BitDefender
2009-01-07 18:59 . 2009-01-07 19:03 <REP> d-------- c:\documents and settings\All Users\Application Data\BitDefender
2009-01-07 18:58 . 2009-01-07 18:59 <REP> d-------- c:\program files\Fichiers communs\BitDefender
2009-01-07 18:33 . 2009-01-07 22:21 <REP> d-------- c:\windows\LMI229.tmp
2009-01-07 13:17 . 2009-01-07 13:17 <REP> d-------- c:\documents and settings\LocalService\Application Data\agi
2009-01-07 13:16 . 2009-01-07 13:16 2,117,632 --a------ c:\windows\system32\python25.dll
2009-01-07 13:16 . 2008-09-16 17:26 1,332,197 --a------ c:\windows\system32\pythondll.zip
2009-01-07 13:16 . 2009-01-07 13:16 339,968 --a------ c:\windows\system32\pythoncom25.dll
2009-01-07 13:16 . 2009-01-07 13:16 114,688 --a------ c:\windows\system32\pywintypes25.dll
2009-01-02 10:44 . 2009-01-02 10:44 <REP> d-------- c:\documents and settings\All Users\Application Data\hps
2008-12-28 12:59 . 2008-12-28 12:59 68,513 --a------ c:\windows\system32\pcqwhmqvjlzqfnr.dll-uninst.exe
2008-12-28 12:59 . 2008-12-28 12:59 53,958 --a------ c:\windows\system32\cont_milehighads-remove.exe
2008-12-23 16:24 . 2008-12-23 16:24 <REP> d-------- c:\program files\Fichiers communs\Logitech
2008-12-23 16:20 . 2008-12-23 16:24 <REP> d-------- c:\documents and settings\All Users\Application Data\Logishrd
2008-12-23 16:19 . 2008-12-23 16:19 <REP> d-------- c:\documents and settings\All Users\Application Data\Logitech
2008-12-23 16:05 . 2008-04-13 19:33 1,888,992 --------- c:\windows\system32\ati3duag.dll
2008-12-23 16:05 . 2008-09-10 02:15 1,307,648 --a------ c:\windows\system32\msxml6.dll
2008-12-23 16:05 . 2008-09-10 02:15 1,307,648 -----c--- c:\windows\system32\dllcache\msxml6.dll
2008-12-23 16:05 . 2008-04-13 19:33 870,784 --------- c:\windows\system32\ati3d1ag.dll
2008-12-23 16:05 . 2008-04-13 19:33 377,984 --------- c:\windows\system32\ati2dvaa.dll
2008-12-23 16:05 . 2008-04-13 19:33 229,376 --------- c:\windows\system32\ati2cqag.dll
2008-12-23 16:05 . 2008-04-13 19:33 201,728 --------- c:\windows\system32\ati2dvag.dll
2008-12-23 16:05 . 2008-04-13 19:33 136,192 --------- c:\windows\system32\aaclient.dll
2008-12-23 16:05 . 2008-04-13 19:04 93,184 --------- c:\windows\system32\msxml6r.dll
2008-12-23 16:05 . 2008-04-13 19:04 93,184 -----c--- c:\windows\system32\dllcache\msxml6r.dll
2008-12-23 16:05 . 2008-04-13 19:34 23,040 --------- c:\windows\system32\ativmvxx.ax
2008-12-23 16:05 . 2008-04-13 19:34 9,728 --------- c:\windows\system32\ativdaxx.ax
2008-12-23 16:02 . 2008-12-23 16:02 <REP> d-------- c:\windows\ServicePackFiles
2008-12-23 15:59 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02782_.tmp
2008-12-23 15:29 . 2008-12-23 15:29 <REP> d-------- c:\program files\Microsoft Easy Assist
2008-12-23 15:29 . 2008-12-23 15:29 <REP> d-------- c:\documents and settings\All Users\Application Data\Applications
2008-12-22 18:52 . 2008-04-13 11:36 2,986,496 --a------ c:\windows\system32\SET14A9.tmp
2008-12-22 18:52 . 2008-04-13 19:33 354,304 --a------ c:\windows\system32\SET149B.tmp
2008-12-22 18:52 . 2008-04-13 19:31 177,152 --a------ c:\windows\system32\SET14D2.tmp
2008-12-22 18:52 . 2008-04-13 19:33 108,032 --a------ c:\windows\system32\SET1494.tmp
2008-12-22 18:52 . 2008-04-13 19:33 16,896 --a------ c:\windows\system32\SET1500.tmp
2008-12-22 18:52 . 2008-04-13 19:33 6,656 --a------ c:\windows\system32\SET1491.tmp
2008-12-22 18:50 . 2008-04-13 19:34 1,037,824 --a------ c:\windows\SET8CE.tmp
2008-12-22 18:50 . 2008-04-13 19:33 1,025,024 --a------ c:\windows\system32\SET87A.tmp
2008-12-22 18:50 . 2008-04-13 19:33 498,688 --a------ c:\windows\system32\SET856.tmp
2008-12-22 18:50 . 2008-04-13 19:33 200,192 --a------ c:\windows\system32\SET86C.tmp
2008-12-22 18:50 . 2008-04-13 19:33 193,536 --a------ c:\windows\system32\SET8A8.tmp
2008-12-22 18:50 . 2008-04-13 19:33 143,360 --a------ c:\windows\system32\SET8A3.tmp
2008-12-22 18:50 . 2008-04-13 19:33 125,952 --a------ c:\windows\system32\SET899.tmp
2008-12-22 18:50 . 2008-04-13 19:33 62,464 --a------ c:\windows\system32\SET886.tmp
2008-12-22 18:50 . 2008-04-13 19:33 58,880 --a------ c:\windows\system32\SET88F.tmp
2008-12-22 18:50 . 2008-04-13 19:33 52,736 --a------ c:\windows\system32\SET881.tmp
2008-12-22 18:50 . 2008-04-13 19:33 29,184 --a------ c:\windows\system32\SET880.tmp
2008-12-22 18:48 . 2008-04-13 19:33 734,720 --a------ c:\windows\system32\SET1B0.tmp
2008-12-22 18:47 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02772_.tmp
2008-12-22 18:45 . 2008-08-14 14:23 2,147,328 --a------ c:\windows\system32\ntoskrnl.exe
2008-12-22 18:24 . 2008-04-13 19:31 177,152 --a------ c:\windows\system32\SET13DD.tmp
2008-12-22 18:24 . 2008-04-13 19:33 16,896 --a------ c:\windows\system32\SET140C.tmp
2008-12-22 18:23 . 2008-04-13 11:36 2,986,496 --a------ c:\windows\system32\SET13B3.tmp
2008-12-22 18:23 . 2008-04-13 19:33 354,304 --a------ c:\windows\system32\SET13A5.tmp
2008-12-22 18:23 . 2008-04-13 19:33 108,032 --a------ c:\windows\system32\SET139E.tmp
2008-12-22 18:23 . 2008-04-13 19:33 6,656 --a------ c:\windows\system32\SET139B.tmp
2008-12-22 18:20 . 2008-04-13 19:33 8,517,632 --a------ c:\windows\system32\SET1E9.tmp
2008-12-22 18:19 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02763_.tmp
2008-12-22 18:17 . 2004-08-05 13:00 71,040 --------- c:\windows\system32\drivers\_004225_.tmp.dll
2008-12-22 17:53 . 2008-04-13 11:36 2,986,496 --a------ c:\windows\system32\SET1490.tmp
2008-12-22 17:53 . 2008-04-13 19:34 380,928 --a------ c:\windows\system32\SET14D4.tmp
2008-12-22 17:53 . 2008-04-13 19:33 354,304 --a------ c:\windows\system32\SET1482.tmp
2008-12-22 17:53 . 2008-04-13 19:31 177,152 --a------ c:\windows\system32\SET14B8.tmp
2008-12-22 17:53 . 2008-04-13 19:34 110,592 --a------ c:\windows\system32\SET1502.tmp
2008-12-22 17:53 . 2008-04-13 19:33 108,032 --a------ c:\windows\system32\SET147B.tmp
2008-12-22 17:53 . 2008-04-13 19:33 80,896 --a------ c:\windows\system32\SET147D.tmp
2008-12-22 17:53 . 2008-04-13 19:33 30,208 --a------ c:\windows\system32\SET1501.tmp
2008-12-22 17:53 . 2008-04-13 19:34 28,672 --a------ c:\windows\system32\SET1487.tmp
2008-12-22 17:53 . 2008-04-13 19:33 16,896 --a------ c:\windows\system32\SET14E4.tmp
2008-12-22 17:53 . 2008-04-13 19:33 6,656 --a------ c:\windows\system32\SET1478.tmp
2008-12-22 17:48 . 2008-04-13 19:33 2,843,136 --a------ c:\windows\system32\SET721.tmp
2008-12-22 17:47 . 2008-04-13 19:33 8,517,632 --a------ c:\windows\system32\SET552.tmp
2008-12-22 17:45 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02755_.tmp
2008-12-22 17:42 . 2004-08-05 13:00 71,040 --------- c:\windows\system32\drivers\_004215_.tmp.dll
2008-12-22 14:24 . 2004-08-05 13:00 71,040 --------- c:\windows\system32\drivers\_004206_.tmp.dll
2008-12-22 14:16 . 2008-12-22 14:16 <REP> d-------- c:\program files\Windows Resource Kits
2008-12-22 11:34 . 2004-08-05 13:00 71,040 --------- c:\windows\system32\drivers\_004196_.tmp.dll
2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\system32\fr
2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\system32\bits
2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\l2schemas
2008-12-22 10:52 . 2004-08-05 13:00 71,040 --a------ c:\windows\system32\drivers\_004186_.tmp.dll
2008-12-22 10:50 . 2008-12-23 15:56 <REP> d-------- c:\windows\EHome
2008-12-21 12:03 . 2008-12-21 12:03 <REP> d-------- c:\program files\Logitech
2008-12-21 11:37 . 2008-07-26 16:26 4,658,584 -ra------ c:\windows\system32\drivers\lvuvc.sys
2008-12-21 11:37 . 2008-07-26 16:25 627,864 -ra------ c:\windows\system32\drivers\lvrs.sys
2008-12-21 11:37 . 2008-07-26 16:26 490,008 -ra------ c:\windows\system32\LVUI2.dll
2008-12-21 11:37 . 2008-07-26 16:26 465,432 -ra------ c:\windows\system32\LVUI2RC.dll
2008-12-21 11:37 . 2008-07-26 16:23 416,280 -ra------ c:\windows\system32\lvcodec2.dll
2008-12-21 11:37 . 2008-07-26 16:23 195,096 -ra------ c:\windows\system32\lvci11801048.dll
2008-12-21 11:37 . 2008-07-26 15:42 66,482 -ra------ c:\windows\system32\lvcoinst.ini
2008-12-21 11:37 . 2008-07-26 16:26 41,752 -ra------ c:\windows\system32\drivers\LVUSBSta.sys
2008-12-21 11:37 . 2008-07-26 15:46 25,974 -ra------ c:\windows\system32\Repository.reg
2008-12-21 11:37 . 2009-01-19 19:17 0 --a------ c:\windows\system32\drivers\lvuvc.hs
2008-12-21 11:37 . 2009-01-19 19:17 0 --a------ c:\windows\system32\drivers\logiflt.iad
2008-12-21 11:12 . 2008-12-21 11:43 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\ntr
2008-12-21 11:01 . 2008-12-21 11:01 <REP> d-------- c:\program files\Microsoft CAPICOM 2.1.0.2
2008-12-20 16:49 . 2008-07-26 16:26 23,832 -ra------ c:\windows\system32\drivers\lvuvcflt.sys
2008-12-20 16:42 . 2008-12-23 16:20 <REP> d-------- c:\program files\Fichiers communs\LogiShrd
2008-12-20 15:43 . 2008-04-13 19:34 20,992 --a------ c:\windows\system32\dshowext.ax
2008-12-20 11:28 . 2009-01-19 17:41 <REP> d-------- c:\documents and settings\Utilisateur\Tracing
2008-12-20 11:27 . 2008-12-20 11:27 <REP> d-------- c:\program files\Microsoft Silverlight
2008-12-20 11:25 . 2008-12-20 11:25 <REP> d-------- c:\program files\Microsoft Sync Framework
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-01-19 18:18 --------- d-----w c:\program files\Wanadoo
2009-01-18 17:51 --------- d-----w c:\program files\Palm
2009-01-16 22:44 --------- d--h--w c:\program files\InstallShield Installation Information
2009-01-16 22:36 --------- d-----w c:\documents and settings\Utilisateur\Application Data\LimeWire
2009-01-16 21:56 --------- d-----w c:\program files\eMule
2009-01-10 11:14 --------- d-----w c:\program files\QuickTime
2009-01-10 11:13 --------- d-----w c:\program files\LimeWire
2009-01-07 21:46 --------- d-----w c:\documents and settings\Utilisateur\Application Data\OnlineArmor
2009-01-02 09:09 4,424 ----a-w c:\documents and settings\Utilisateur\Application Data\ViewerApp.dat
2008-12-20 10:26 --------- d-----w c:\program files\Windows Live Toolbar
2008-12-20 10:26 --------- d-----w c:\program files\Windows Live
2008-12-11 10:57 333,952 ----a-w c:\windows\system32\drivers\srv.sys
2008-12-08 19:13 --------- d-----w c:\program files\Migros
2008-12-04 23:11 308,584 ----a-w c:\windows\WLXPGSS.SCR
2008-11-30 18:59 --------- d-----w c:\program files\Fichiers communs\Jasc Software Inc
2008-11-30 18:59 --------- d-----w c:\documents and settings\All Users\Application Data\InstallShield
2008-11-30 18:58 --------- d-----w c:\program files\Jasc Software Inc
2008-11-30 18:58 --------- d-----w c:\program files\Fichiers communs\InstallShield
2008-11-30 18:58 --------- d-----w c:\documents and settings\Utilisateur\Application Data\Jasc Software Inc
2008-11-30 18:54 --------- d-----w c:\documents and settings\All Users\Application Data\WinZip
2008-11-25 19:43 --------- d-----w c:\program files\Fichiers communs\Ahead
2008-11-25 19:35 --------- d-----w c:\documents and settings\All Users\Application Data\Nero
2008-11-21 16:52 --------- d-----w c:\documents and settings\All Users\Application Data\NVIDIA
2007-08-02 21:29 278,528 ----a-w c:\program files\Fichiers communs\FDEUnInstaller.exe
2007-02-11 09:37 4,562,152 ----a-w c:\program files\80 cd7 - 06 - Huey Lewis and the News - I Want a New Drug.mp3
.
((((((((((((((((((((((((((((( snapshot@2008-09-14_ 9.45.41.23 )))))))))))))))))))))))))))))))))))))))))
.
+ 2008-02-26 11:49:32 297,984 ----a-w c:\windows\$hf_mig$\KB932823-v3\SP2QFE\msctf.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB932823-v3\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB932823-v3\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB932823-v3\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB932823-v3\update\update.exe
+ 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB932823-v3\update\updspapi.dll
+ 2006-12-14 08:53:58 15,072 ----a-w c:\windows\$hf_mig$\KB935448\spmsg.dll
+ 2006-12-14 08:53:58 216,800 ----a-w c:\windows\$hf_mig$\KB935448\spuninst.exe
+ 2006-12-14 08:53:58 22,752 ----a-w c:\windows\$hf_mig$\KB935448\update\spcustom.dll
+ 2006-12-14 08:53:58 727,776 ----a-w c:\windows\$hf_mig$\KB935448\update\update.exe
+ 2006-12-14 08:53:58 394,976 ----a-w c:\windows\$hf_mig$\KB935448\update\updspapi.dll
+ 2007-07-12 23:28:38 765,952 ----a-w c:\windows\$hf_mig$\KB938127-IE7\SP2QFE\vgx.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB938127-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB938127-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB938127-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB938127-IE7\update\update.exe
+ 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB938127-IE7\update\updspapi.dll
+ 2008-05-27 17:31:29 765,952 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\SP2QFE\vgx.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\update\update.exe
+ 2007-03-06 01:35:47 394,976 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\update\updspapi.dll
+ 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB938464\spmsg.dll
+ 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB938464\spuninst.exe
+ 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB938464\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB938464\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB938464\update\updspapi.dll
+ 2008-05-02 13:33:12 83,968 ----a-w c:\windows\$hf_mig$\KB946648\SP2QFE\msgsc.dll
+ 2008-05-02 14:01:52 83,968 ----a-w c:\windows\$hf_mig$\KB946648\SP3GDR\msgsc.dll
+ 2008-05-02 13:44:40 83,968 ----a-w c:\windows\$hf_mig$\KB946648\SP3QFE\msgsc.dll
+ 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB946648\spmsg.dll
+ 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB946648\spuninst.exe
+ 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB946648\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB946648\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB946648\update\updspapi.dll
+ 2008-01-23 04:56:21 554,008 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\dao360.dll
+ 2007-12-10 12:41:11 518,944 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msexch40.dll
+ 2007-12-10 12:41:11 326,432 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msexcl40.dll
+ 2007-12-10 12:41:11 1,516,568 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjet40.dll
+ 2007-12-10 12:41:11 355,112 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjetol1.dll
+ 2008-03-25 06:56:31 194,144 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjint40.dll
+ 2007-12-10 12:41:12 60,192 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjter40.dll
+ 2007-12-10 12:41:12 248,608 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjtes40.dll
+ 2007-12-10 12:41:12 219,936 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msltus40.dll
+ 2007-12-10 12:41:12 355,104 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\mspbde40.dll
+ 2007-12-10 12:41:13 432,928 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msrd2x40.dll
+ 2007-12-10 12:41:13 322,336 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msrd3x40.dll
+ 2007-12-10 12:41:13 559,904 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msrepl40.dll
+ 2007-12-10 12:41:13 264,992 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\mstext40.dll
+ 2007-12-10 12:41:13 838,432 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\mswdat10.dll
+ 2007-11-01 05:15:27 621,344 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\mswstr10.dll
+ 2007-12-10 12:41:14 355,104 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msxbde40.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB950749\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB950749\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB950749\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB950749\update\update.exe
+ 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB950749\update\updspapi.dll
+ 2008-05-08 12:14:51 203,008 ----a-w c:\windows\$hf_mig$\KB950762\SP2QFE\rmcast.sys
+ 2008-05-08 14:02:52 203,136 ----a-w c:\windows\$hf_mig$\KB950762\SP3GDR\rmcast.sys
+ 2008-05-08 13:58:17 203,136 ----a-w c:\windows\$hf_mig$\KB950762\SP3QFE\rmcast.sys
+ 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB950762\spmsg.dll
+ 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB950762\spuninst.exe
+ 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB950762\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB950762\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB950762\update\updspapi.dll
+ 2008-07-07 20:18:27 253,952 ----a-w c:\windows\$hf_mig$\KB950974\SP2QFE\es.dll
+ 2008-07-07 20:28:20 253,952 ----a-w c:\windows\$hf_mig$\KB950974\SP3GDR\es.dll
+ 2008-07-07 20:24:11 253,952 ----a-w c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
+ 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB950974\spmsg.dll
+ 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB950974\spuninst.exe
+ 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB950974\update\spcustom.dll
+ 2007-11-30 12:39:26 767,352 ----a-w c:\windows\$hf_mig$\KB950974\update\update.exe
+ 2007-11-30 12:39:29 406,392 ----a-w c:\windows\$hf_mig$\KB950974\update\updspapi.dll
+ 2008-04-11 18:40:33 683,520 ----a-w c:\windows\$hf_mig$\KB951066\SP2QFE\inetcomm.dll
+ 2008-04-11 19:05:22 691,712 ----a-w c:\windows\$hf_mig$\KB951066\SP3GDR\inetcomm.dll
+ 2008-04-11 22:23:04 691,712 ----a-w c:\windows\$hf_mig$\KB951066\SP3QFE\inetcomm.dll
+ 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB951066\spmsg.dll
+ 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB951066\spuninst.exe
+ 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB951066\update\spcustom.dll
+ 2007-12-03 15:25:43 767,352 ----a-w c:\windows\$hf_mig$\KB951066\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB951066\update\updspapi.dll
+ 2008-07-14 11:03:00 62,976 ----a-w c:\windows\$hf_mig$\KB951072-v2\SP2QFE\tzchange.exe
+ 2008-07-11 12:42:28 62,976 ----a-w c:\windows\$hf_mig$\KB951072-v2\SP3GDR\tzchange.exe
+ 2008-07-11 12:51:51 62,976 ----a-w c:\windows\$hf_mig$\KB951072-v2\SP3QFE\tzchange.exe
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB951072-v2\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB951072-v2\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB951072-v2\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB951072-v2\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB951072-v2\update\updspapi.dll
+ 2008-06-14 18:03:13 272,768 ----a-w c:\windows\$hf_mig$\KB951376-v2\SP2QFE\bthport.sys
+ 2008-06-14 17:33:37 272,768 ----a-w c:\windows\$hf_mig$\KB951376-v2\SP3GDR\bthport.sys
+ 2008-06-14 17:40:19 272,768 ----a-w c:\windows\$hf_mig$\KB951376-v2\SP3QFE\bthport.sys
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB951376-v2\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB951376-v2\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB951376-v2\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB951376-v2\update\update.exe
+ 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB951376-v2\update\updspapi.dll
+ 2008-05-07 04:55:47 1,294,336 ----a-w c:\windows\$hf_mig$\KB951698\SP2QFE\quartz.dll
+ 2008-05-07 05:11:24 1,294,336 ----a-w c:\windows\$hf_mig$\KB951698\SP3GDR\quartz.dll
+ 2008-05-07 05:04:59 1,294,336 ----a-w c:\windows\$hf_mig$\KB951698\SP3QFE\quartz.dll
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB951698\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB951698\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB951698\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB951698\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB951698\update\updspapi.dll
+ 2006-08-16 12:13:24 100,352 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\6to4svc.dll
+ 2008-06-20 10:44:08 138,368 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\afd.sys
+ 2008-06-20 17:37:01 147,968 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\dnsapi.dll
+ 2008-06-20 17:37:01 247,808 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\mswsock.dll
+ 2008-06-20 10:44:42 360,960 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip.sys
+ 2008-06-20 09:32:39 225,920 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip6.sys
+ 2008-06-20 11:40:08 138,496 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\afd.sys
+ 2008-06-20 17:47:22 147,968 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\dnsapi.dll
+ 2008-06-20 17:47:22 247,808 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\mswsock.dll
+ 2008-06-20 11:51:12 361,600 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip.sys
+ 2008-06-20 11:08:27 225,856 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip6.sys
+ 2008-06-20 11:48:03 138,496 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\afd.sys
+ 2008-06-20 17:44:02 147,968 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\dnsapi.dll
+ 2008-06-20 17:44:02 247,808 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll
+ 2008-06-20 11:59:02 361,600 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
+ 2008-06-20 11:16:44 225,856 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip6.sys
+ 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB951748\spmsg.dll
+ 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB951748\spuninst.exe
+ 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB951748\update\spcustom.dll
+ 2007-11-30 12:39:26 767,352 ----a-w c:\windows\$hf_mig$\KB951748\update\update.exe
+ 2007-11-30 12:39:29 406,392 ----a-w c:\windows\$hf_mig$\KB951748\update\updspapi.dll
+ 2008-05-01 15:04:51 331,776 ----a-w c:\windows\$hf_mig$\KB952287\SP2QFE\msadce.dll
+ 2008-05-01 14:36:26 331,776 ----a-w c:\windows\$hf_mig$\KB952287\SP3GDR\msadce.dll
+ 2008-05-01 14:39:23 331,776 ----a-w c:\windows\$hf_mig$\KB952287\SP3QFE\msadce.dll
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB952287\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB952287\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB952287\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB952287\update\update.exe
+ 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB952287\update\updspapi.dll
+ 2008-06-24 16:30:27 74,240 ----a-w c:\windows\$hf_mig$\KB952954\SP2QFE\mscms.dll
+ 2008-06-24 16:44:02 74,240 ----a-w c:\windows\$hf_mig$\KB952954\SP3GDR\mscms.dll
+ 2008-06-24 16:53:52 74,240 ----a-w c:\windows\$hf_mig$\KB952954\SP3QFE\mscms.dll
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB952954\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB952954\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB952954\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB952954\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB952954\update\updspapi.dll
+ 2008-06-23 15:40:01 124,928 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\advpack.dll
+ 2008-06-23 15:40:01 347,136 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\dxtmsft.dll
+ 2008-06-23 15:40:01 214,528 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\dxtrans.dll
+ 2008-06-23 15:40:01 132,608 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\extmgr.dll
+ 2008-06-23 15:40:01 63,488 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\icardie.dll
+ 2008-06-23 08:23:18 70,656 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ie4uinit.exe
+ 2008-06-23 15:40:01 153,088 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieakeng.dll
+ 2008-06-23 15:40:01 230,400 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieaksie.dll
+ 2008-06-21 05:23:53 161,792 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:32:38 2,455,488 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieapfltr.dat
+ 2008-06-23 15:40:02 383,488 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieapfltr.dll
+ 2008-06-23 15:40:02 388,608 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iedkcs32.dll
+ 2008-06-23 15:40:04 6,068,736 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieframe.dll
+ 2008-06-23 15:40:04 44,544 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iernonce.dll
+ 2008-06-23 15:40:04 267,776 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iertutil.dll
+ 2008-06-23 08:23:18 13,824 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieudinit.exe
+ 2008-06-23 08:23:52 625,664 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iexplore.exe
+ 2008-06-23 15:40:05 27,648 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\jsproxy.dll
+ 2008-06-23 15:40:05 459,264 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\msfeeds.dll
+ 2008-06-23 15:40:05 52,224 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\msfeedsbs.dll
+ 2008-06-23 15:40:07 3,594,240 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\mshtml.dll
+ 2008-06-23 15:40:07 477,696 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\mshtmled.dll
+ 2008-06-23 15:40:07 193,024 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\msrating.dll
+ 2008-06-23 15:40:07 671,232 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\mstime.dll
+ 2008-06-23 15:40:07 102,912 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\occache.dll
+ 2008-06-23 15:40:07 44,544 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\pngfilt.dll
+ 2008-06-23 15:40:07 105,984 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\url.dll
+ 2008-06-23 15:40:08 1,162,752 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\urlmon.dll
+ 2008-06-23 15:40:08 233,472 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\webcheck.dll
+ 2008-06-23 15:40:08 827,904 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB953838-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB953838-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB953838-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB953838-IE7\update\update.exe
+ 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB953838-IE7\update\updspapi.dll
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB953839\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB953839\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB953839\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB953839\update\update.exe
+ 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB953839\update\updspapi.dll
+ 2008-09-15 15:14:42 1,847,040 ----a-w c:\windows\$hf_mig$\KB954211\SP2QFE\win32k.sys
+ 2008-09-15 15:26:07 1,846,528 ----a-w c:\windows\$hf_mig$\KB954211\SP3GDR\win32k.sys
+ 2008-09-15 15:20:39 1,847,040 ----a-w c:\windows\$hf_mig$\KB954211\SP3QFE\win32k.sys
+ 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB954211\spmsg.dll
+ 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB954211\spuninst.exe
+ 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB954211\update\spcustom.dll
+ 2008-07-09 07:40:26 767,352 ----a-w c:\windows\$hf_mig$\KB954211\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB954211\update\updspapi.dll
+ 2008-10-03 10:00:40 247,326 ----a-w c:\windows\$hf_mig$\KB954600\SP2QFE\strmdll.dll
+ 2008-10-03 10:03:53 247,326 ----a-w c:\windows\$hf_mig$\KB954600\SP3GDR\strmdll.dll
+ 2008-10-03 09:50:27 247,326 ----a-w c:\windows\$hf_mig$\KB954600\SP3QFE\strmdll.dll
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB954600\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB954600\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB954600\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB954600\update\update.exe
+ 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB954600\update\updspapi.dll
+ 2008-09-04 16:34:21 1,106,944 ----a-w c:\windows\$hf_mig$\KB955069\SP2QFE\msxml3.dll
+ 2008-09-04 17:16:10 1,106,944 ----a-w c:\windows\$hf_mig$\KB955069\SP3GDR\msxml3.dll
+ 2008-09-04 17:12:47 1,106,944 ----a-w c:\windows\$hf_mig$\KB955069\SP3QFE\msxml3.dll
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB955069\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB955069\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB955069\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB955069\update\update.exe
+ 2008-07-09 12:10:36 406,392 ----a-w c:\windows\$hf_mig$\KB955069\update\updspapi.dll
+ 2008-10-22 09:47:25 62,976 ----a-w c:\windows\$hf_mig$\KB955839\SP2QFE\tzchange.exe
+ 2008-10-23 10:06:59 62,976 ----a-w c:\windows\$hf_mig$\KB955839\SP3GDR\tzchange.exe
+ 2008-10-23 10:17:49 62,976 ----a-w c:\windows\$hf_mig$\KB955839\SP3QFE\tzchange.exe
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB955839\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB955839\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB955839\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB955839\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB955839\update\updspapi.dll
+ 2008-08-26 09:10:25 124,928 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\advpack.dll
+ 2008-08-26 09:10:25 347,136 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\dxtmsft.dll
+ 2008-08-26 09:10:25 214,528 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\dxtrans.dll
+ 2008-08-26 09:10:25 132,608 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\extmgr.dll
+ 2008-08-26 09:10:25 63,488 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\icardie.dll
+ 2008-08-25 08:43:21 70,656 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ie4uinit.exe
+ 2008-08-26 09:10:26 153,088 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieakeng.dll
+ 2008-08-26 09:10:26 230,400 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieaksie.dll
+ 2008-08-23 05:54:50 161,792 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:32:38 2,455,488 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieapfltr.dat
+ 2008-08-26 09:10:26 380,928 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieapfltr.dll
+ 2008-08-26 09:10:26 388,608 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iedkcs32.dll
+ 2008-10-03 16:22:30 6,068,224 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieframe.dll
+ 2008-08-26 09:10:27 44,544 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iernonce.dll
+ 2008-08-26 09:10:27 267,776 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iertutil.dll
+ 2008-08-25 08:43:21 13,824 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieudinit.exe
+ 2008-08-23 05:56:16 635,848 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iexplore.exe
+ 2008-08-26 09:10:27 27,648 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\jsproxy.dll
+ 2008-08-26 09:10:27 459,264 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\msfeeds.dll
+ 2008-08-26 09:10:27 52,224 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\msfeedsbs.dll
+ 2008-08-26 09:10:28 3,594,752 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mshtml.dll
+ 2008-08-26 09:10:28 477,696 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mshtmled.dll
+ 2008-08-26 09:10:28 193,024 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\msrating.dll
+ 2008-08-26 09:10:29 671,232 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mstime.dll
+ 2008-08-26 09:10:29 102,912 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\occache.dll
+ 2008-08-26 09:10:29 44,544 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\pngfilt.dll
+ 2008-08-26 09:10:29 105,984 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\url.dll
+ 2008-08-26 09:10:29 1,162,752 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\urlmon.dll
+ 2008-08-26 09:10:29 233,472 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\webcheck.dll
+ 2008-08-26 09:10:29 827,904 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB956390-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB956390-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB956390-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB956390-IE7\update\update.exe
+ 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB956390-IE7\update\updspapi.dll
+ 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB956391\spmsg.dll
+ 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB956391\spuninst.exe
+ 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB956391\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB956391\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB956391\update\updspapi.dll
+ 2008-10-23 12:51:46 284,160 ----a-w c:\windows\$hf_mig$\KB956802\SP2QFE\gdi32.dll
+ 2008-10-23 12:36:51 286,720 ----a-w c:\windows\$hf_mig$\KB956802\SP3GDR\gdi32.dll
+ 2008-10-23 12:44:51 286,720 ----a-w c:\windows\$hf_mig$\KB956802\SP3QFE\gdi32.dll
+ 2008-07-08 13:03:54 18,296 ----a-w c:\windows\$hf_mig$\KB956802\spmsg.dll
+ 2008-07-08 13:03:55 234,872 ----a-w c:\windows\$hf_mig$\KB956802\spuninst.exe
+ 2008-07-08 13:03:54 26,488 ----a-w c:\windows\$hf_mig$\KB956802\update\spcustom.dll
+ 2008-07-09 07:40:26 767,352 ----a-w c:\windows\$hf_mig$\KB956802\update\update.exe
+ 2008-07-09 07:40:35 406,392 ----a-w c:\windows\$hf_mig$\KB956802\update\updspapi.dll
+ 2008-08-14 09:48:52 138,368 ----a-w c:\windows\$hf_mig$\KB956803\SP2QFE\afd.sys
+ 2008-08-14 10:04:36 138,496 ----a-w c:\windows\$hf_mig$\KB956803\SP3GDR\afd.sys
+ 2008-08-14 10:34:26 138,496 ----a-w c:\windows\$hf_mig$\KB956803\SP3QFE\afd.sys
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB956803\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB956803\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB956803\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB956803\update\update.exe
+ 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB956803\update\updspapi.dll
+ 2008-08-14 13:39:07 2,144,768 ----a-w c:\windows\$hf_mig$\KB956841\SP2QFE\ntkrnlmp.exe
+ 2008-08-14 13:39:12 2,065,024 ----a-w c:\windows\$hf_mig$\KB956841\SP2QFE\ntkrnlpa.exe
+ 2008-08-14 13:39:03 2,022,912 ----a-w c:\windows\$hf_mig$\KB956841\SP2QFE\ntkrpamp.exe
+ 2008-08-14 13:39:11 2,188,032 ----a-w c:\windows\$hf_mig$\KB956841\SP2QFE\ntoskrnl.exe
+ 2008-08-14 13:23:44 2,147,328 ----a-w c:\windows\$hf_mig$\KB956841\SP3GDR\ntkrnlmp.exe
+ 2008-08-14 13:23:49 2,068,096 ----a-w c:\windows\$hf_mig$\KB956841\SP3GDR\ntkrnlpa.exe
+ 2008-08-14 13:23:44 2,025,984 ----a-w c:\windows\$hf_mig$\KB956841\SP3GDR\ntkrpamp.exe
+ 2008-08-14 13:23:49 2,191,232 ----a-w c:\windows\$hf_mig$\KB956841\SP3GDR\ntoskrnl.exe
+ 2008-08-14 13:55:54 2,147,328 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlmp.exe
+ 2008-08-14 17:26:00 2,068,096 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe
+ 2008-08-14 13:55:47 2,025,984 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrpamp.exe
+ 2008-08-14 17:26:02 2,191,232 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB956841\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB956841\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB956841\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB956841\update\update.exe
+ 2008-07-09 07:40:35 406,392 ----a-w c:\windows\$hf_mig$\KB956841\update\updspapi.dll
+ 2008-08-28 10:35:33 333,056 ----a-w c:\windows\$hf_mig$\KB957095\SP2QFE\srv.sys
+ 2008-09-08 10:41:42 333,824 ----a-w c:\windows\$hf_mig$\KB957095\SP3GDR\srv.sys
+ 2008-09-08 11:37:19 333,824 ----a-w c:\windows\$hf_mig$\KB957095\SP3QFE\srv.sys
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB957095\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB957095\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB957095\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB957095\update\update.exe
+ 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB957095\update\updspapi.dll
+ 2008-10-24 11:25:29 455,936 ----a-w c:\windows\$hf_mig$\KB957097\SP2QFE\mrxsmb.sys
+ 2008-10-24 11:21:09 455,296 ----a-w c:\windows\$hf_mig$\KB957097\SP3GDR\mrxsmb.sys
+ 2008-10-24 11:41:11 455,936 ----a-w c:\windows\$hf_mig$\KB957097\SP3QFE\mrxsmb.sys
+ 2008-07-08 13:03:54 18,296 ----a-w c:\windows\$hf_mig$\KB957097\spmsg.dll
+ 2008-07-08 13:03:55 234,872 ----a-w c:\windows\$hf_mig$\KB957097\spuninst.exe
+ 2008-07-08 13:03:54 26,488 ----a-w c:\windows\$hf_mig$\KB957097\update\spcustom.dll
+ 2008-07-08 13:03:57 767,352 ----a-w c:\windows\$hf_mig$\KB957097\update\update.exe
+ 2008-07-08 13:04:05 406,392 ----a-w c:\windows\$hf_mig$\KB957097\update\updspapi.dll
+ 2008-10-16 19:33:14 124,928 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\advpack.dll
+ 2008-10-16 19:33:14 347,136 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\dxtmsft.dll
+ 2008-10-16 19:33:14 214,528 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\dxtrans.dll
+ 2008-10-16 19:33:14 132,608 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\extmgr.dll
+ 2008-10-16 19:33:14 63,488 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\icardie.dll
+ 2008-10-16 12:46:08 70,656 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ie4uinit.exe
+ 2008-10-16 19:33:14 153,088 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieakeng.dll
+ 2008-10-16 19:33:14 230,400 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieaksie.dll
+ 2008-10-15 06:33:26 161,792 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:32:38 2,455,488 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieapfltr.dat
+ 2008-10-16 19:33:15 380,928 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieapfltr.dll
+ 2008-10-16 19:33:15 388,608 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iedkcs32.dll
+ 2008-10-16 19:33:16 6,068,224 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieframe.dll
+ 2008-10-16 19:33:16 44,544 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iernonce.dll
+ 2008-10-16 19:33:16 267,776 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iertutil.dll
+ 2008-10-16 12:46:08 13,824 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieudinit.exe
+ 2008-10-15 06:34:58 633,632 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iexplore.exe
+ 2008-10-16 19:33:17 27,648 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\jsproxy.dll
+ 2008-10-16 19:33:18 459,264 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\msfeeds.dll
+ 2008-10-16 19:33:18 52,224 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\msfeedsbs.dll
+ 2008-10-16 19:33:19 3,595,264 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mshtml.dll
+ 2008-10-16 19:33:20 477,696 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mshtmled.dll
+ 2008-10-16 19:33:20 193,024 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\msrating.dll
+ 2008-10-16 19:33:21 671,232 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mstime.dll
+ 2008-10-16 19:33:21 102,912 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\occache.dll
+ 2008-10-16 19:33:21 44,544 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\pngfilt.dll
+ 2008-10-16 19:33:21 105,984 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\url.dll
+ 2008-10-16 19:33:21 1,163,264 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\urlmon.dll
+ 2008-10-16 19:33:22 233,472 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\webcheck.dll
+ 2008-10-16 19:33:22 827,904 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB958215-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB958215-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB958215-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB958215-IE7\update\update.exe
+ 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB958215-IE7\update\updspapi.dll
+ 2008-10-15 16:55:13 339,456 ----a-w c:\windows\$hf_mig$\KB958644\SP2QFE\netapi32.dll
+ 2008-10-15 16:35:43 337,408 ----a-w c:\windows\$hf_mig$\KB958644\SP3GDR\netapi32.dll
+ 2008-10-15 16:31:32 339,456 ----a-w c:\windows\$hf_mig$\KB958644\SP3QFE\netapi32.dll
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB958644\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB958644\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB958644\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB958644\update\update.exe
+ 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB958644\update\updspapi.dll
+ 2008-12-13 06:27:45 3,594,752 ----a-w c:\windows\$hf_mig$\KB960714-IE7\SP2QFE\mshtml.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB960714-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB960714-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\update.exe
+ 2007-03-06 01:35:47 394,976 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\updspapi.dll
+ 2006-10-18 20:47:16 414,208 -c--a-w c:\windows\$NtUninstallKB929399$\msscp.dll
+ 2005-06-28 08:23:26 213,216 -c--a-w c:\windows\$NtUninstallKB929399$\spuninst\spuninst.exe
+ 2005-06-28 08:23:54 371,424 -c--a-w c:\windows\$NtUninstallKB929399$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 294,400 -c--a-w c:\windows\$NtUninstallKB932823-v3$\msctf.dll
+ 2007-03-06 01:34:38 216,800 -c--a-w c:\windows\$NtUninstallKB932823-v3$\spuninst\spuninst.exe
+ 2007-03-06 01:35:48 394,976 -c--a-w c:\windows\$NtUninstallKB932823-v3$\spuninst\updspapi.dll
+ 2006-12-14 08:53:58 216,800 -c--a-w c:\windows\$NtUninstallKB935448$\spuninst\spuninst.exe
+ 2006-12-14 08:53:58 394,976 -c--a-w c:\windows\$NtUninstallKB935448$\spuninst\updspapi.dll
+ 2005-06-28 08:23:40 216,800 -c--a-w c:\windows\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe
+ 2005-06-28 08:23:54 371,424 -c--a-w c:\windows\$NtUninstallKB936782_WMP11$\spuninst\updspapi.dll
+ 2006-10-18 20:47:20 10,834,432 -c--a-w c:\windows\$NtUninstallKB936782_WMP11$\wmp.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB938464_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB938464_0$\spuninst\updspapi.dll
+ 2005-06-28 08:23:40 216,800 -c--a-w c:\windows\$NtUninstallKB939683$\spuninst\spuninst.exe
+ 2005-06-28 08:23:54 371,424 -c--a-w c:\windows\$NtUninstallKB939683$\spuninst\updspapi.dll
+ 2006-11-03 08:58:34 317,440 -c--a-w c:\windows\$NtUninstallKB939683$\unregmp2.exe
+ 2005-06-28 08:23:40 216,800 -c--a-w c:\windows\$NtUninstallKB941569$\spuninst\spuninst.exe
+ 2005-06-28 08:23:54 371,424 -c--a-w c:\windows\$NtUninstallKB941569$\spuninst\updspapi.dll
+ 2006-10-18 20:47:18 222,208 -c--a-w c:\windows\$NtUninstallKB941569$\wmasf.dll
+ 2004-08-03 23:07:10 82,944 -c--a-w c:\windows\$NtUninstallKB946648_0$\msgsc.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB946648_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB946648_0$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 561,179 -c--a-w c:\windows\$NtUninstallKB950749$\dao360.dll
+ 2004-08-05 12:00:00 512,029 -c--a-w c:\windows\$NtUninstallKB950749$\msexch40.dll
+ 2004-08-05 12:00:00 319,517 -c--a-w c:\windows\$NtUninstallKB950749$\msexcl40.dll
+ 2004-08-05 12:00:00 1,507,356 -c--a-w c:\windows\$NtUninstallKB950749$\msjet40.dll
+ 2004-08-05 12:00:00 358,976 -c--a-w c:\windows\$NtUninstallKB950749$\msjetol1.dll
+ 2004-08-05 12:00:00 358,976 -c--a-w c:\windows\$NtUninstallKB950749$\msjetoledb40.dll
+ 2004-08-05 12:00:00 184,351 -c--a-w c:\windows\$NtUninstallKB950749$\msjint40.dll
+ 2004-08-05 12:00:00 53,279 -c--a-w c:\windows\$NtUninstallKB950749$\msjter40.dll
+ 2004-08-05 12:00:00 241,693 -c--a-w c:\windows\$NtUninstallKB950749$\msjtes40.dll
+ 2004-08-05 12:00:00 213,023 -c--a-w c:\windows\$NtUninstallKB950749$\msltus40.dll
+ 2004-08-05 12:00:00 348,189 -c--a-w c:\windows\$NtUninstallKB950749$\mspbde40.dll
+ 2004-08-05 12:00:00 421,919 -c--a-w c:\windows\$NtUninstallKB950749$\msrd2x40.dll
+ 2004-08-05 12:00:00 315,423 -c--a-w c:\windows\$NtUninstallKB950749$\msrd3x40.dll
+ 2004-08-05 12:00:00 552,989 -c--a-w c:\windows\$NtUninstallKB950749$\msrepl40.dll
+ 2004-08-05 12:00:00 258,077 -c--a-w c:\windows\$NtUninstallKB950749$\mstext40.dll
+ 2004-08-05 12:00:00 831,519 -c--a-w c:\windows\$NtUninstallKB950749$\mswdat10.dll
+ 2004-08-05 12:00:00 614,429 -c--a-w c:\windows\$NtUninstallKB950749$\mswstr10.dll
+ 2004-08-05 12:00:00 348,189 -c--a-w c:\windows\$NtUninstallKB950749$\msxbde40.dll
+ 2007-03-06 01:34:38 216,800 -c--a-w c:\windows\$NtUninstallKB950749$\spuninst\spuninst.exe
+ 2007-03-06 01:35:48 394,976 -c--a-w c:\windows\$NtUninstallKB950749$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 200,064 -c--a-w c:\windows\$NtUninstallKB950762_0$\rmcast.sys
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB950762_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB950762_0$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 243,200 -c--a-w c:\windows\$NtUninstallKB950974_0$\es.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB950974_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:29 406,392 -c--a-w c:\windows\$NtUninstallKB950974_0$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 678,400 -c--a-w c:\windows\$NtUninstallKB951066_0$\inetcomm.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB951066_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB951066_0$\spuninst\updspapi.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB951072-v2$\spuninst\spuninst.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB951072-v2$\spuninst\updspapi.dll
+ 2004-08-03 22:40:30 274,944 -c--a-w c:\windows\$NtUninstallKB951376-v2_0$\bthport.sys
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB951376-v2_0$\spuninst\spuninst.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$NtUninstallKB951376-v2_0$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 1,293,824 -c--a-w c:\windows\$NtUninstallKB951698_0$\quartz.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB951698_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB951698_0$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 100,352 -c--a-w c:\windows\$NtUninstallKB951748_0$\6to4svc.dll
+ 2004-08-05 12:00:00 138,496 -c--a-w c:\windows\$NtUninstallKB951748_0$\afd.sys
+ 2004-08-05 12:00:00 148,480 -c--a-w c:\windows\$NtUninstallKB951748_0$\dnsapi.dll
+ 2004-08-05 12:00:00 247,808 -c--a-w c:\windows\$NtUninstallKB951748_0$\mswsock.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB951748_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:29 406,392 -c--a-w c:\windows\$NtUninstallKB951748_0$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 359,040 -c--a-w c:\windows\$NtUninstallKB951748_0$\tcpip.sys
+ 2004-08-05 12:00:00 223,616 -c--a-w c:\windows\$NtUninstallKB951748_0$\tcpip6.sys
+ 2006-10-18 19:03:58 100,864 -c--a-w c:\windows\$NtUninstallKB952069_WM9$\logagent.exe
+ 2007-07-27 06:28:58 234,872 -c--a-w c:\windows\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe
+ 2007-07-27 08:41:48 382,840 -c--a-w c:\windows\$NtUninstallKB952069_WM9$\spuninst\updspapi.dll
+ 2006-10-18 20:47:20 937,984 -c--a-w c:\windows\$NtUninstallKB952069_WM9$\wmnetmgr.dll
+ 2006-10-18 20:47:22 2,450,944 -c--a-w c:\windows\$NtUninstallKB952069_WM9$\wmvcore.dll
+ 2004-08-05 12:00:00 331,776 -c--a-w c:\windows\$NtUninstallKB952287_0$\msadce.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB952287_0$\spuninst\spuninst.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$NtUninstallKB952287_0$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 73,728 -c--a-w c:\windows\$NtUninstallKB952954_0$\mscms.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB952954_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB952954_0$\spuninst\updspapi.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB953839$\spuninst\spuninst.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$NtUninstallKB953839$\spuninst\updspapi.dll
+ 2007-07-27 06:28:58 234,872 -c--a-w c:\windows\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe
+ 2007-07-27 08:41:48 382,840 -c--a-w c:\windows\$NtUninstallKB954154_WM11$\spuninst\updspapi.dll
+ 2006-10-18 20:47:20 295,936 -c--a-w c:\windows\$NtUninstallKB954154_WM11$\wmpeffects.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB954211_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB954211_0$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 1,836,032 -c--a-w c:\windows\$NtUninstallKB954211_0$\win32k.sys
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB954600_0$\spuninst\spuninst.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$NtUninstallKB954600_0$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 246,302 -c--a-w c:\windows\$NtUninstallKB954600_0$\strmdll.dll
+ 2004-08-05 12:00:00 1,236,480 -c--a-w c:\windows\$NtUninstallKB955069_0$\msxml3.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB955069_0$\spuninst\spuninst.exe
+ 2008-07-09 12:10:36 406,392 -c--a-w c:\windows\$NtUninstallKB955069_0$\spuninst\updspapi.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB955839$\spuninst\s
-
-
Contributeur sécuritésblanot tu va faire ceci :
Télécharges ComboFix à partir d'un de ces liens :
http://download.bleepingcomputer.com/sUBs/ComboFix.exe
https://forospyware.com
http://www.geekstogo.com/forum/files/file/197-combofix-by-subs/
Et important, enregistre le sur le bureau.
Avant d'utiliser ComboFix :
? Déconnecte toi d'internet et referme les fenêtres de tous les programmes en cours.
? Désactive provisoirement et seulement le temps de l'utilisation de ComboFix,
la protection en temps réel de ton Antivirus et de tes Antispywares,
qui peuvent gêner fortement la procédure de recherche et de nettoyage de l'outil.
Une fois fait, sur ton bureau double-clic sur Combofix.exe.
- Répond oui au message d'avertissement, pour que le programme commence à procéder à l'analyse du pc.
/!\ Pendant la durée de cette étape, ne te sert pas du pc et n'ouvre aucun programmes.
- En fin de scan il est possible que ComboFix ait besoin de redémarrer le pc pour finaliser la désinfection\recherche, laisses-le faire.
- Un rapport s'ouvrira ensuite dans le bloc notes, ce fichier rapport Combofix.txt,.
est automatiquement sauvegardé et rangé à C:\Combofix.txt)
? Réactive la protection en temps réel de ton Antivirus et de tes Antispywares,
avant de te reconnecter à internet.
? Reviens sur le forum, et copie et colle la totalité du contenu de C:\Combofix.txt dans ton prochain message.-
Salut,
ComboFix 09-01-19.01 - Utilisateur 2009-01-19 18:59:21.2 - NTFSx86
Microsoft Windows XP Édition familiale 5.1.2600.3.1252.1.1036.18.895.481 [GMT 1:00]
Lancé depuis: c:\documents and settings\Utilisateur\Bureau\ComboFix.exe
AV: BitDefender Antivirus *On-access scanning disabled* (Updated)
FW: Online Armor Firewall *disabled*
FW: Pare-feu BitDefender *enabled*
* Un nouveau point de restauration a été créé
AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !!
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat
c:\documents and settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat
c:\windows\system32\_004199_.tmp.dll
c:\windows\system32\_004200_.tmp.dll
c:\windows\system32\_004201_.tmp.dll
c:\windows\system32\_004202_.tmp.dll
c:\windows\system32\_004209_.tmp.dll
c:\windows\system32\_004210_.tmp.dll
c:\windows\system32\_004211_.tmp.dll
c:\windows\system32\_004212_.tmp.dll
c:\windows\system32\_004213_.tmp.dll
c:\windows\system32\_004214_.tmp.dll
c:\windows\system32\_004215_.tmp.dll
c:\windows\system32\_004216_.tmp.dll
c:\windows\system32\_004217_.tmp.dll
c:\windows\system32\_004218_.tmp.dll
c:\windows\system32\_004219_.tmp.dll
c:\windows\system32\_004220_.tmp.dll
c:\windows\system32\_004221_.tmp.dll
c:\windows\system32\_004222_.tmp.dll
c:\windows\system32\_004223_.tmp.dll
c:\windows\system32\_004224_.tmp.dll
c:\windows\system32\_004225_.tmp.dll
c:\windows\system32\_004226_.tmp.dll
c:\windows\system32\_004227_.tmp.dll
c:\windows\system32\_004228_.tmp.dll
c:\windows\system32\_004229_.tmp.dll
c:\windows\system32\_004230_.tmp.dll
c:\windows\system32\_004231_.tmp.dll
c:\windows\system32\_004232_.tmp.dll
c:\windows\system32\_004233_.tmp.dll
c:\windows\system32\_004234_.tmp.dll
c:\windows\system32\_004235_.tmp.dll
c:\windows\system32\_004236_.tmp.dll
c:\windows\system32\_004237_.tmp.dll
c:\windows\system32\_004238_.tmp.dll
c:\windows\system32\_004239_.tmp.dll
c:\windows\system32\_004240_.tmp.dll
c:\windows\system32\_004241_.tmp.dll
c:\windows\system32\_004242_.tmp.dll
c:\windows\system32\_004243_.tmp.dll
c:\windows\system32\_004244_.tmp.dll
c:\windows\system32\_004245_.tmp.dll
c:\windows\system32\_004246_.tmp.dll
c:\windows\system32\_004247_.tmp.dll
c:\windows\system32\_004248_.tmp.dll
c:\windows\system32\_004249_.tmp.dll
c:\windows\system32\_004250_.tmp.dll
c:\windows\system32\_004251_.tmp.dll
c:\windows\system32\_004252_.tmp.dll
c:\windows\system32\_004253_.tmp.dll
c:\windows\system32\_004255_.tmp.dll
c:\windows\system32\_004256_.tmp.dll
c:\windows\system32\_004257_.tmp.dll
c:\windows\system32\_004258_.tmp.dll
c:\windows\system32\_004259_.tmp.dll
c:\windows\system32\_004260_.tmp.dll
c:\windows\system32\_004261_.tmp.dll
c:\windows\system32\_004262_.tmp.dll
c:\windows\system32\_004263_.tmp.dll
c:\windows\system32\_004264_.tmp.dll
c:\windows\system32\_004265_.tmp.dll
c:\windows\system32\_004266_.tmp.dll
c:\windows\system32\_004267_.tmp.dll
c:\windows\system32\_004268_.tmp.dll
c:\windows\system32\_004269_.tmp.dll
c:\windows\system32\_004270_.tmp.dll
c:\windows\system32\_004271_.tmp.dll
c:\windows\system32\_004272_.tmp.dll
c:\windows\system32\_004273_.tmp.dll
c:\windows\system32\_004274_.tmp.dll
c:\windows\system32\_004275_.tmp.dll
c:\windows\system32\_004277_.tmp.dll
c:\windows\system32\_004278_.tmp.dll
c:\windows\system32\_004279_.tmp.dll
c:\windows\system32\_004280_.tmp.dll
c:\windows\system32\_004281_.tmp.dll
c:\windows\system32\_004282_.tmp.dll
c:\windows\system32\_004283_.tmp.dll
c:\windows\system32\_004284_.tmp.dll
c:\windows\system32\_004285_.tmp.dll
c:\windows\system32\_004286_.tmp.dll
c:\windows\system32\_004287_.tmp.dll
c:\windows\system32\_004288_.tmp.dll
c:\windows\system32\_004289_.tmp.dll
c:\windows\system32\_004290_.tmp.dll
c:\windows\system32\_004291_.tmp.dll
c:\windows\system32\_004292_.tmp.dll
c:\windows\system32\_004293_.tmp.dll
c:\windows\system32\_004294_.tmp.dll
c:\windows\system32\_004295_.tmp.dll
c:\windows\system32\_004296_.tmp.dll
c:\windows\system32\_004297_.tmp.dll
c:\windows\system32\_004298_.tmp.dll
c:\windows\system32\_004299_.tmp.dll
c:\windows\system32\_004300_.tmp.dll
c:\windows\system32\_004302_.tmp.dll
c:\windows\system32\_004303_.tmp.dll
c:\windows\system32\_004304_.tmp.dll
c:\windows\system32\_004305_.tmp.dll
c:\windows\system32\_004307_.tmp.dll
c:\windows\system32\_004309_.tmp.dll
c:\windows\system32\_004310_.tmp.dll
c:\windows\system32\_004311_.tmp.dll
c:\windows\system32\_004312_.tmp.dll
c:\windows\system32\_004313_.tmp.dll
c:\windows\system32\_004314_.tmp.dll
c:\windows\system32\_004315_.tmp.dll
c:\windows\system32\_004317_.tmp.dll
c:\windows\system32\_004318_.tmp.dll
c:\windows\system32\_004319_.tmp.dll
c:\windows\system32\_004320_.tmp.dll
c:\windows\system32\_004321_.tmp.dll
c:\windows\system32\_004322_.tmp.dll
c:\windows\system32\_004323_.tmp.dll
c:\windows\system32\_004324_.tmp.dll
c:\windows\system32\_004326_.tmp.dll
c:\windows\system32\_004327_.tmp.dll
c:\windows\system32\_004328_.tmp.dll
c:\windows\system32\_004329_.tmp.dll
c:\windows\system32\_004330_.tmp.dll
c:\windows\system32\_004331_.tmp.dll
c:\windows\system32\_004332_.tmp.dll
c:\windows\system32\_004334_.tmp.dll
c:\windows\system32\_004335_.tmp.dll
c:\windows\system32\_004336_.tmp.dll
c:\windows\system32\_004337_.tmp.dll
c:\windows\system32\_004339_.tmp.dll
c:\windows\system32\_004340_.tmp.dll
c:\windows\system32\_004341_.tmp.dll
c:\windows\system32\_004342_.tmp.dll
c:\windows\system32\_004343_.tmp.dll
c:\windows\system32\_004344_.tmp.dll
c:\windows\system32\_004345_.tmp.dll
c:\windows\system32\_004346_.tmp.dll
c:\windows\system32\_004347_.tmp.dll
c:\windows\system32\_004348_.tmp.dll
c:\windows\system32\_004350_.tmp.dll
c:\windows\system32\_004351_.tmp.dll
c:\windows\system32\_004352_.tmp.dll
c:\windows\system32\_004353_.tmp.dll
c:\windows\system32\_004354_.tmp.dll
c:\windows\system32\_004355_.tmp.dll
c:\windows\system32\_004356_.tmp.dll
c:\windows\system32\_004359_.tmp.dll
c:\windows\system32\_004360_.tmp.dll
c:\windows\system32\_004361_.tmp.dll
c:\windows\system32\_004362_.tmp.dll
c:\windows\system32\_004363_.tmp.dll
c:\windows\system32\_004364_.tmp.dll
c:\windows\system32\_004369_.tmp.dll
c:\windows\system32\_004371_.tmp.dll
c:\windows\system32\_004374_.tmp.dll
c:\windows\system32\_004376_.tmp.dll
c:\windows\system32\_004377_.tmp.dll
c:\windows\system32\_004378_.tmp.dll
c:\windows\system32\_004379_.tmp.dll
c:\windows\system32\_004382_.tmp.dll
c:\windows\system32\_004383_.tmp.dll
c:\windows\system32\_004384_.tmp.dll
c:\windows\system32\_004385_.tmp.dll
c:\windows\system32\_004386_.tmp.dll
c:\windows\system32\_004389_.tmp.dll
c:\windows\system32\_004391_.tmp.dll
c:\windows\system32\_004392_.tmp.dll
c:\windows\system32\_004395_.tmp.dll
c:\windows\system32\_004399_.tmp.dll
c:\windows\system32\_004400_.tmp.dll
c:\windows\system32\_004403_.tmp.dll
c:\windows\system32\_004404_.tmp.dll
c:\windows\system32\_004405_.tmp.dll
c:\windows\system32\_004406_.tmp.dll
c:\windows\system32\_004407_.tmp.dll
c:\windows\system32\_004412_.tmp.dll
c:\windows\system32\_004414_.tmp.dll
----- BITS: Il y a peut-être des sites infectés -----
hxxp://dwd.virginmega.fr
.
((((((((((((((((((((((((((((( Fichiers créés du 2008-12-19 au 2009-01-19 ))))))))))))))))))))))))))))))))))))
.
2009-01-18 20:55 . 2009-01-19 18:48 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\gtk-2.0
2009-01-18 20:55 . 2009-01-18 20:55 <REP> d-------- c:\documents and settings\Utilisateur\.thumbnails
2009-01-18 20:33 . 2009-01-19 18:48 <REP> d-------- c:\documents and settings\Utilisateur\.gimp-2.6
2009-01-18 20:33 . 2009-01-18 20:33 <REP> d-------- c:\documents and settings\Utilisateur\.gegl-0.0
2009-01-18 20:32 . 2009-01-18 20:33 <REP> d-------- c:\program files\GIMP-2.0
2009-01-16 23:44 . 2009-01-16 23:44 <REP> d-------- c:\program files\Vision Objects
2009-01-16 20:54 . 2009-01-16 20:54 579,584 --a--c--- c:\windows\system32\dllcache\user32.dll
2009-01-14 20:29 . 2009-01-14 21:44 <REP> d-------- c:\program files\FindyKill
2009-01-14 18:44 . 2009-01-14 18:44 <REP> d-------- C:\rsit
2009-01-13 18:20 . 2009-01-17 12:26 37,440 --a------ c:\windows\system32\drivers\pssdklbf.drv
2009-01-13 18:20 . 2009-01-17 12:26 30,272 --a------ c:\windows\system32\drivers\pssdk31.drv
2009-01-12 23:30 . 2009-01-13 00:00 <REP> d-------- C:\Lop SD
2009-01-12 23:12 . 2009-01-13 00:34 <REP> d-------- c:\program files\Ad-remover
2009-01-11 12:24 . 2009-01-11 12:24 <REP> d-------- c:\program files\Skyline
2009-01-10 13:24 . 2009-01-10 13:24 <REP> d-------- c:\program files\CCleaner
2009-01-07 21:13 . 2009-01-07 21:13 850 --a------ c:\windows\system32\ProductTweaks.xml
2009-01-07 21:13 . 2009-01-07 21:13 385 --a------ c:\windows\system32\user_gensett.xml
2009-01-07 20:42 . 2009-01-07 20:42 <REP> d-------- c:\program files\Malwarebytes' Anti-Malware
2009-01-07 20:42 . 2009-01-04 18:38 38,496 --a------ c:\windows\system32\drivers\mbamswissarmy.sys
2009-01-07 20:42 . 2009-01-04 18:38 15,504 --a------ c:\windows\system32\drivers\mbam.sys
2009-01-07 20:39 . 2009-01-12 23:53 336 --a------ c:\windows\system32\BDUpdateV1.xml
2009-01-07 18:59 . 2009-01-07 18:59 <REP> d-------- c:\program files\BitDefender
2009-01-07 18:59 . 2009-01-07 18:59 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\BitDefender
2009-01-07 18:59 . 2009-01-07 19:03 <REP> d-------- c:\documents and settings\All Users\Application Data\BitDefender
2009-01-07 18:58 . 2009-01-07 18:59 <REP> d-------- c:\program files\Fichiers communs\BitDefender
2009-01-07 18:33 . 2009-01-07 22:21 <REP> d-------- c:\windows\LMI229.tmp
2009-01-07 13:17 . 2009-01-07 13:17 <REP> d-------- c:\documents and settings\LocalService\Application Data\agi
2009-01-07 13:16 . 2009-01-07 13:16 2,117,632 --a------ c:\windows\system32\python25.dll
2009-01-07 13:16 . 2008-09-16 17:26 1,332,197 --a------ c:\windows\system32\pythondll.zip
2009-01-07 13:16 . 2009-01-07 13:16 339,968 --a------ c:\windows\system32\pythoncom25.dll
2009-01-07 13:16 . 2009-01-07 13:16 114,688 --a------ c:\windows\system32\pywintypes25.dll
2009-01-02 10:44 . 2009-01-02 10:44 <REP> d-------- c:\documents and settings\All Users\Application Data\hps
2008-12-28 12:59 . 2008-12-28 12:59 68,513 --a------ c:\windows\system32\pcqwhmqvjlzqfnr.dll-uninst.exe
2008-12-28 12:59 . 2008-12-28 12:59 53,958 --a------ c:\windows\system32\cont_milehighads-remove.exe
2008-12-23 16:24 . 2008-12-23 16:24 <REP> d-------- c:\program files\Fichiers communs\Logitech
2008-12-23 16:20 . 2008-12-23 16:24 <REP> d-------- c:\documents and settings\All Users\Application Data\Logishrd
2008-12-23 16:19 . 2008-12-23 16:19 <REP> d-------- c:\documents and settings\All Users\Application Data\Logitech
2008-12-23 16:05 . 2008-04-13 19:33 1,888,992 --------- c:\windows\system32\ati3duag.dll
2008-12-23 16:05 . 2008-09-10 02:15 1,307,648 --a------ c:\windows\system32\msxml6.dll
2008-12-23 16:05 . 2008-09-10 02:15 1,307,648 -----c--- c:\windows\system32\dllcache\msxml6.dll
2008-12-23 16:05 . 2008-04-13 19:33 870,784 --------- c:\windows\system32\ati3d1ag.dll
2008-12-23 16:05 . 2008-04-13 19:33 377,984 --------- c:\windows\system32\ati2dvaa.dll
2008-12-23 16:05 . 2008-04-13 19:33 229,376 --------- c:\windows\system32\ati2cqag.dll
2008-12-23 16:05 . 2008-04-13 19:33 201,728 --------- c:\windows\system32\ati2dvag.dll
2008-12-23 16:05 . 2008-04-13 19:33 136,192 --------- c:\windows\system32\aaclient.dll
2008-12-23 16:05 . 2008-04-13 19:04 93,184 --------- c:\windows\system32\msxml6r.dll
2008-12-23 16:05 . 2008-04-13 19:04 93,184 -----c--- c:\windows\system32\dllcache\msxml6r.dll
2008-12-23 16:05 . 2008-04-13 19:34 23,040 --------- c:\windows\system32\ativmvxx.ax
2008-12-23 16:05 . 2008-04-13 19:34 9,728 --------- c:\windows\system32\ativdaxx.ax
2008-12-23 16:02 . 2008-12-23 16:02 <REP> d-------- c:\windows\ServicePackFiles
2008-12-23 15:59 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02782_.tmp
2008-12-23 15:29 . 2008-12-23 15:29 <REP> d-------- c:\program files\Microsoft Easy Assist
2008-12-23 15:29 . 2008-12-23 15:29 <REP> d-------- c:\documents and settings\All Users\Application Data\Applications
2008-12-22 18:52 . 2008-04-13 11:36 2,986,496 --a------ c:\windows\system32\SET14A9.tmp
2008-12-22 18:52 . 2008-04-13 19:33 354,304 --a------ c:\windows\system32\SET149B.tmp
2008-12-22 18:52 . 2008-04-13 19:31 177,152 --a------ c:\windows\system32\SET14D2.tmp
2008-12-22 18:52 . 2008-04-13 19:33 108,032 --a------ c:\windows\system32\SET1494.tmp
2008-12-22 18:52 . 2008-04-13 19:33 16,896 --a------ c:\windows\system32\SET1500.tmp
2008-12-22 18:52 . 2008-04-13 19:33 6,656 --a------ c:\windows\system32\SET1491.tmp
2008-12-22 18:50 . 2008-04-13 19:34 1,037,824 --a------ c:\windows\SET8CE.tmp
2008-12-22 18:50 . 2008-04-13 19:33 1,025,024 --a------ c:\windows\system32\SET87A.tmp
2008-12-22 18:50 . 2008-04-13 19:33 498,688 --a------ c:\windows\system32\SET856.tmp
2008-12-22 18:50 . 2008-04-13 19:33 200,192 --a------ c:\windows\system32\SET86C.tmp
2008-12-22 18:50 . 2008-04-13 19:33 193,536 --a------ c:\windows\system32\SET8A8.tmp
2008-12-22 18:50 . 2008-04-13 19:33 143,360 --a------ c:\windows\system32\SET8A3.tmp
2008-12-22 18:50 . 2008-04-13 19:33 125,952 --a------ c:\windows\system32\SET899.tmp
2008-12-22 18:50 . 2008-04-13 19:33 62,464 --a------ c:\windows\system32\SET886.tmp
2008-12-22 18:50 . 2008-04-13 19:33 58,880 --a------ c:\windows\system32\SET88F.tmp
2008-12-22 18:50 . 2008-04-13 19:33 52,736 --a------ c:\windows\system32\SET881.tmp
2008-12-22 18:50 . 2008-04-13 19:33 29,184 --a------ c:\windows\system32\SET880.tmp
2008-12-22 18:48 . 2008-04-13 19:33 734,720 --a------ c:\windows\system32\SET1B0.tmp
2008-12-22 18:47 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02772_.tmp
2008-12-22 18:45 . 2008-08-14 14:23 2,147,328 --a------ c:\windows\system32\ntoskrnl.exe
2008-12-22 18:24 . 2008-04-13 19:31 177,152 --a------ c:\windows\system32\SET13DD.tmp
2008-12-22 18:24 . 2008-04-13 19:33 16,896 --a------ c:\windows\system32\SET140C.tmp
2008-12-22 18:23 . 2008-04-13 11:36 2,986,496 --a------ c:\windows\system32\SET13B3.tmp
2008-12-22 18:23 . 2008-04-13 19:33 354,304 --a------ c:\windows\system32\SET13A5.tmp
2008-12-22 18:23 . 2008-04-13 19:33 108,032 --a------ c:\windows\system32\SET139E.tmp
2008-12-22 18:23 . 2008-04-13 19:33 6,656 --a------ c:\windows\system32\SET139B.tmp
2008-12-22 18:20 . 2008-04-13 19:33 8,517,632 --a------ c:\windows\system32\SET1E9.tmp
2008-12-22 18:19 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02763_.tmp
2008-12-22 18:17 . 2004-08-05 13:00 71,040 --------- c:\windows\system32\drivers\_004225_.tmp.dll
2008-12-22 17:53 . 2008-04-13 11:36 2,986,496 --a------ c:\windows\system32\SET1490.tmp
2008-12-22 17:53 . 2008-04-13 19:34 380,928 --a------ c:\windows\system32\SET14D4.tmp
2008-12-22 17:53 . 2008-04-13 19:33 354,304 --a------ c:\windows\system32\SET1482.tmp
2008-12-22 17:53 . 2008-04-13 19:31 177,152 --a------ c:\windows\system32\SET14B8.tmp
2008-12-22 17:53 . 2008-04-13 19:34 110,592 --a------ c:\windows\system32\SET1502.tmp
2008-12-22 17:53 . 2008-04-13 19:33 108,032 --a------ c:\windows\system32\SET147B.tmp
2008-12-22 17:53 . 2008-04-13 19:33 80,896 --a------ c:\windows\system32\SET147D.tmp
2008-12-22 17:53 . 2008-04-13 19:33 30,208 --a------ c:\windows\system32\SET1501.tmp
2008-12-22 17:53 . 2008-04-13 19:34 28,672 --a------ c:\windows\system32\SET1487.tmp
2008-12-22 17:53 . 2008-04-13 19:33 16,896 --a------ c:\windows\system32\SET14E4.tmp
2008-12-22 17:53 . 2008-04-13 19:33 6,656 --a------ c:\windows\system32\SET1478.tmp
2008-12-22 17:48 . 2008-04-13 19:33 2,843,136 --a------ c:\windows\system32\SET721.tmp
2008-12-22 17:47 . 2008-04-13 19:33 8,517,632 --a------ c:\windows\system32\SET552.tmp
2008-12-22 17:45 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u02755_.tmp
2008-12-22 17:42 . 2004-08-05 13:00 71,040 --------- c:\windows\system32\drivers\_004215_.tmp.dll
2008-12-22 14:24 . 2004-08-05 13:00 71,040 --------- c:\windows\system32\drivers\_004206_.tmp.dll
2008-12-22 14:16 . 2008-12-22 14:16 <REP> d-------- c:\program files\Windows Resource Kits
2008-12-22 11:34 . 2004-08-05 13:00 71,040 --------- c:\windows\system32\drivers\_004196_.tmp.dll
2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\system32\fr
2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\system32\bits
2008-12-22 11:02 . 2008-12-23 16:04 <REP> d-------- c:\windows\l2schemas
2008-12-22 10:52 . 2004-08-05 13:00 71,040 --a------ c:\windows\system32\drivers\_004186_.tmp.dll
2008-12-22 10:50 . 2008-12-23 15:56 <REP> d-------- c:\windows\EHome
2008-12-21 12:03 . 2008-12-21 12:03 <REP> d-------- c:\program files\Logitech
2008-12-21 11:37 . 2008-07-26 16:26 4,658,584 -ra------ c:\windows\system32\drivers\lvuvc.sys
2008-12-21 11:37 . 2008-07-26 16:25 627,864 -ra------ c:\windows\system32\drivers\lvrs.sys
2008-12-21 11:37 . 2008-07-26 16:26 490,008 -ra------ c:\windows\system32\LVUI2.dll
2008-12-21 11:37 . 2008-07-26 16:26 465,432 -ra------ c:\windows\system32\LVUI2RC.dll
2008-12-21 11:37 . 2008-07-26 16:23 416,280 -ra------ c:\windows\system32\lvcodec2.dll
2008-12-21 11:37 . 2008-07-26 16:23 195,096 -ra------ c:\windows\system32\lvci11801048.dll
2008-12-21 11:37 . 2008-07-26 15:42 66,482 -ra------ c:\windows\system32\lvcoinst.ini
2008-12-21 11:37 . 2008-07-26 16:26 41,752 -ra------ c:\windows\system32\drivers\LVUSBSta.sys
2008-12-21 11:37 . 2008-07-26 15:46 25,974 -ra------ c:\windows\system32\Repository.reg
2008-12-21 11:37 . 2009-01-19 19:17 0 --a------ c:\windows\system32\drivers\lvuvc.hs
2008-12-21 11:37 . 2009-01-19 19:17 0 --a------ c:\windows\system32\drivers\logiflt.iad
2008-12-21 11:12 . 2008-12-21 11:43 <REP> d-------- c:\documents and settings\Utilisateur\Application Data\ntr
2008-12-21 11:01 . 2008-12-21 11:01 <REP> d-------- c:\program files\Microsoft CAPICOM 2.1.0.2
2008-12-20 16:49 . 2008-07-26 16:26 23,832 -ra------ c:\windows\system32\drivers\lvuvcflt.sys
2008-12-20 16:42 . 2008-12-23 16:20 <REP> d-------- c:\program files\Fichiers communs\LogiShrd
2008-12-20 15:43 . 2008-04-13 19:34 20,992 --a------ c:\windows\system32\dshowext.ax
2008-12-20 11:28 . 2009-01-19 17:41 <REP> d-------- c:\documents and settings\Utilisateur\Tracing
2008-12-20 11:27 . 2008-12-20 11:27 <REP> d-------- c:\program files\Microsoft Silverlight
2008-12-20 11:25 . 2008-12-20 11:25 <REP> d-------- c:\program files\Microsoft Sync Framework
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-01-19 18:18 --------- d-----w c:\program files\Wanadoo
2009-01-18 17:51 --------- d-----w c:\program files\Palm
2009-01-16 22:44 --------- d--h--w c:\program files\InstallShield Installation Information
2009-01-16 22:36 --------- d-----w c:\documents and settings\Utilisateur\Application Data\LimeWire
2009-01-16 21:56 --------- d-----w c:\program files\eMule
2009-01-10 11:14 --------- d-----w c:\program files\QuickTime
2009-01-10 11:13 --------- d-----w c:\program files\LimeWire
2009-01-07 21:46 --------- d-----w c:\documents and settings\Utilisateur\Application Data\OnlineArmor
2009-01-02 09:09 4,424 ----a-w c:\documents and settings\Utilisateur\Application Data\ViewerApp.dat
2008-12-20 10:26 --------- d-----w c:\program files\Windows Live Toolbar
2008-12-20 10:26 --------- d-----w c:\program files\Windows Live
2008-12-11 10:57 333,952 ----a-w c:\windows\system32\drivers\srv.sys
2008-12-08 19:13 --------- d-----w c:\program files\Migros
2008-12-04 23:11 308,584 ----a-w c:\windows\WLXPGSS.SCR
2008-11-30 18:59 --------- d-----w c:\program files\Fichiers communs\Jasc Software Inc
2008-11-30 18:59 --------- d-----w c:\documents and settings\All Users\Application Data\InstallShield
2008-11-30 18:58 --------- d-----w c:\program files\Jasc Software Inc
2008-11-30 18:58 --------- d-----w c:\program files\Fichiers communs\InstallShield
2008-11-30 18:58 --------- d-----w c:\documents and settings\Utilisateur\Application Data\Jasc Software Inc
2008-11-30 18:54 --------- d-----w c:\documents and settings\All Users\Application Data\WinZip
2008-11-25 19:43 --------- d-----w c:\program files\Fichiers communs\Ahead
2008-11-25 19:35 --------- d-----w c:\documents and settings\All Users\Application Data\Nero
2008-11-21 16:52 --------- d-----w c:\documents and settings\All Users\Application Data\NVIDIA
2007-08-02 21:29 278,528 ----a-w c:\program files\Fichiers communs\FDEUnInstaller.exe
2007-02-11 09:37 4,562,152 ----a-w c:\program files\80 cd7 - 06 - Huey Lewis and the News - I Want a New Drug.mp3
.
((((((((((((((((((((((((((((( snapshot@2008-09-14_ 9.45.41.23 )))))))))))))))))))))))))))))))))))))))))
.
+ 2008-02-26 11:49:32 297,984 ----a-w c:\windows\$hf_mig$\KB932823-v3\SP2QFE\msctf.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB932823-v3\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB932823-v3\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB932823-v3\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB932823-v3\update\update.exe
+ 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB932823-v3\update\updspapi.dll
+ 2006-12-14 08:53:58 15,072 ----a-w c:\windows\$hf_mig$\KB935448\spmsg.dll
+ 2006-12-14 08:53:58 216,800 ----a-w c:\windows\$hf_mig$\KB935448\spuninst.exe
+ 2006-12-14 08:53:58 22,752 ----a-w c:\windows\$hf_mig$\KB935448\update\spcustom.dll
+ 2006-12-14 08:53:58 727,776 ----a-w c:\windows\$hf_mig$\KB935448\update\update.exe
+ 2006-12-14 08:53:58 394,976 ----a-w c:\windows\$hf_mig$\KB935448\update\updspapi.dll
+ 2007-07-12 23:28:38 765,952 ----a-w c:\windows\$hf_mig$\KB938127-IE7\SP2QFE\vgx.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB938127-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB938127-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB938127-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB938127-IE7\update\update.exe
+ 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB938127-IE7\update\updspapi.dll
+ 2008-05-27 17:31:29 765,952 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\SP2QFE\vgx.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\update\update.exe
+ 2007-03-06 01:35:47 394,976 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\update\updspapi.dll
+ 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB938464\spmsg.dll
+ 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB938464\spuninst.exe
+ 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB938464\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB938464\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB938464\update\updspapi.dll
+ 2008-05-02 13:33:12 83,968 ----a-w c:\windows\$hf_mig$\KB946648\SP2QFE\msgsc.dll
+ 2008-05-02 14:01:52 83,968 ----a-w c:\windows\$hf_mig$\KB946648\SP3GDR\msgsc.dll
+ 2008-05-02 13:44:40 83,968 ----a-w c:\windows\$hf_mig$\KB946648\SP3QFE\msgsc.dll
+ 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB946648\spmsg.dll
+ 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB946648\spuninst.exe
+ 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB946648\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB946648\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB946648\update\updspapi.dll
+ 2008-01-23 04:56:21 554,008 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\dao360.dll
+ 2007-12-10 12:41:11 518,944 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msexch40.dll
+ 2007-12-10 12:41:11 326,432 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msexcl40.dll
+ 2007-12-10 12:41:11 1,516,568 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjet40.dll
+ 2007-12-10 12:41:11 355,112 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjetol1.dll
+ 2008-03-25 06:56:31 194,144 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjint40.dll
+ 2007-12-10 12:41:12 60,192 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjter40.dll
+ 2007-12-10 12:41:12 248,608 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjtes40.dll
+ 2007-12-10 12:41:12 219,936 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msltus40.dll
+ 2007-12-10 12:41:12 355,104 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\mspbde40.dll
+ 2007-12-10 12:41:13 432,928 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msrd2x40.dll
+ 2007-12-10 12:41:13 322,336 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msrd3x40.dll
+ 2007-12-10 12:41:13 559,904 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msrepl40.dll
+ 2007-12-10 12:41:13 264,992 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\mstext40.dll
+ 2007-12-10 12:41:13 838,432 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\mswdat10.dll
+ 2007-11-01 05:15:27 621,344 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\mswstr10.dll
+ 2007-12-10 12:41:14 355,104 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msxbde40.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB950749\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB950749\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB950749\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB950749\update\update.exe
+ 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB950749\update\updspapi.dll
+ 2008-05-08 12:14:51 203,008 ----a-w c:\windows\$hf_mig$\KB950762\SP2QFE\rmcast.sys
+ 2008-05-08 14:02:52 203,136 ----a-w c:\windows\$hf_mig$\KB950762\SP3GDR\rmcast.sys
+ 2008-05-08 13:58:17 203,136 ----a-w c:\windows\$hf_mig$\KB950762\SP3QFE\rmcast.sys
+ 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB950762\spmsg.dll
+ 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB950762\spuninst.exe
+ 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB950762\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB950762\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB950762\update\updspapi.dll
+ 2008-07-07 20:18:27 253,952 ----a-w c:\windows\$hf_mig$\KB950974\SP2QFE\es.dll
+ 2008-07-07 20:28:20 253,952 ----a-w c:\windows\$hf_mig$\KB950974\SP3GDR\es.dll
+ 2008-07-07 20:24:11 253,952 ----a-w c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
+ 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB950974\spmsg.dll
+ 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB950974\spuninst.exe
+ 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB950974\update\spcustom.dll
+ 2007-11-30 12:39:26 767,352 ----a-w c:\windows\$hf_mig$\KB950974\update\update.exe
+ 2007-11-30 12:39:29 406,392 ----a-w c:\windows\$hf_mig$\KB950974\update\updspapi.dll
+ 2008-04-11 18:40:33 683,520 ----a-w c:\windows\$hf_mig$\KB951066\SP2QFE\inetcomm.dll
+ 2008-04-11 19:05:22 691,712 ----a-w c:\windows\$hf_mig$\KB951066\SP3GDR\inetcomm.dll
+ 2008-04-11 22:23:04 691,712 ----a-w c:\windows\$hf_mig$\KB951066\SP3QFE\inetcomm.dll
+ 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB951066\spmsg.dll
+ 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB951066\spuninst.exe
+ 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB951066\update\spcustom.dll
+ 2007-12-03 15:25:43 767,352 ----a-w c:\windows\$hf_mig$\KB951066\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB951066\update\updspapi.dll
+ 2008-07-14 11:03:00 62,976 ----a-w c:\windows\$hf_mig$\KB951072-v2\SP2QFE\tzchange.exe
+ 2008-07-11 12:42:28 62,976 ----a-w c:\windows\$hf_mig$\KB951072-v2\SP3GDR\tzchange.exe
+ 2008-07-11 12:51:51 62,976 ----a-w c:\windows\$hf_mig$\KB951072-v2\SP3QFE\tzchange.exe
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB951072-v2\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB951072-v2\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB951072-v2\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB951072-v2\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB951072-v2\update\updspapi.dll
+ 2008-06-14 18:03:13 272,768 ----a-w c:\windows\$hf_mig$\KB951376-v2\SP2QFE\bthport.sys
+ 2008-06-14 17:33:37 272,768 ----a-w c:\windows\$hf_mig$\KB951376-v2\SP3GDR\bthport.sys
+ 2008-06-14 17:40:19 272,768 ----a-w c:\windows\$hf_mig$\KB951376-v2\SP3QFE\bthport.sys
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB951376-v2\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB951376-v2\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB951376-v2\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB951376-v2\update\update.exe
+ 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB951376-v2\update\updspapi.dll
+ 2008-05-07 04:55:47 1,294,336 ----a-w c:\windows\$hf_mig$\KB951698\SP2QFE\quartz.dll
+ 2008-05-07 05:11:24 1,294,336 ----a-w c:\windows\$hf_mig$\KB951698\SP3GDR\quartz.dll
+ 2008-05-07 05:04:59 1,294,336 ----a-w c:\windows\$hf_mig$\KB951698\SP3QFE\quartz.dll
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB951698\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB951698\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB951698\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB951698\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB951698\update\updspapi.dll
+ 2006-08-16 12:13:24 100,352 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\6to4svc.dll
+ 2008-06-20 10:44:08 138,368 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\afd.sys
+ 2008-06-20 17:37:01 147,968 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\dnsapi.dll
+ 2008-06-20 17:37:01 247,808 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\mswsock.dll
+ 2008-06-20 10:44:42 360,960 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip.sys
+ 2008-06-20 09:32:39 225,920 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip6.sys
+ 2008-06-20 11:40:08 138,496 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\afd.sys
+ 2008-06-20 17:47:22 147,968 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\dnsapi.dll
+ 2008-06-20 17:47:22 247,808 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\mswsock.dll
+ 2008-06-20 11:51:12 361,600 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip.sys
+ 2008-06-20 11:08:27 225,856 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip6.sys
+ 2008-06-20 11:48:03 138,496 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\afd.sys
+ 2008-06-20 17:44:02 147,968 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\dnsapi.dll
+ 2008-06-20 17:44:02 247,808 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll
+ 2008-06-20 11:59:02 361,600 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
+ 2008-06-20 11:16:44 225,856 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip6.sys
+ 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB951748\spmsg.dll
+ 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB951748\spuninst.exe
+ 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB951748\update\spcustom.dll
+ 2007-11-30 12:39:26 767,352 ----a-w c:\windows\$hf_mig$\KB951748\update\update.exe
+ 2007-11-30 12:39:29 406,392 ----a-w c:\windows\$hf_mig$\KB951748\update\updspapi.dll
+ 2008-05-01 15:04:51 331,776 ----a-w c:\windows\$hf_mig$\KB952287\SP2QFE\msadce.dll
+ 2008-05-01 14:36:26 331,776 ----a-w c:\windows\$hf_mig$\KB952287\SP3GDR\msadce.dll
+ 2008-05-01 14:39:23 331,776 ----a-w c:\windows\$hf_mig$\KB952287\SP3QFE\msadce.dll
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB952287\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB952287\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB952287\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB952287\update\update.exe
+ 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB952287\update\updspapi.dll
+ 2008-06-24 16:30:27 74,240 ----a-w c:\windows\$hf_mig$\KB952954\SP2QFE\mscms.dll
+ 2008-06-24 16:44:02 74,240 ----a-w c:\windows\$hf_mig$\KB952954\SP3GDR\mscms.dll
+ 2008-06-24 16:53:52 74,240 ----a-w c:\windows\$hf_mig$\KB952954\SP3QFE\mscms.dll
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB952954\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB952954\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB952954\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB952954\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB952954\update\updspapi.dll
+ 2008-06-23 15:40:01 124,928 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\advpack.dll
+ 2008-06-23 15:40:01 347,136 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\dxtmsft.dll
+ 2008-06-23 15:40:01 214,528 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\dxtrans.dll
+ 2008-06-23 15:40:01 132,608 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\extmgr.dll
+ 2008-06-23 15:40:01 63,488 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\icardie.dll
+ 2008-06-23 08:23:18 70,656 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ie4uinit.exe
+ 2008-06-23 15:40:01 153,088 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieakeng.dll
+ 2008-06-23 15:40:01 230,400 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieaksie.dll
+ 2008-06-21 05:23:53 161,792 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:32:38 2,455,488 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieapfltr.dat
+ 2008-06-23 15:40:02 383,488 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieapfltr.dll
+ 2008-06-23 15:40:02 388,608 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iedkcs32.dll
+ 2008-06-23 15:40:04 6,068,736 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieframe.dll
+ 2008-06-23 15:40:04 44,544 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iernonce.dll
+ 2008-06-23 15:40:04 267,776 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iertutil.dll
+ 2008-06-23 08:23:18 13,824 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieudinit.exe
+ 2008-06-23 08:23:52 625,664 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iexplore.exe
+ 2008-06-23 15:40:05 27,648 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\jsproxy.dll
+ 2008-06-23 15:40:05 459,264 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\msfeeds.dll
+ 2008-06-23 15:40:05 52,224 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\msfeedsbs.dll
+ 2008-06-23 15:40:07 3,594,240 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\mshtml.dll
+ 2008-06-23 15:40:07 477,696 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\mshtmled.dll
+ 2008-06-23 15:40:07 193,024 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\msrating.dll
+ 2008-06-23 15:40:07 671,232 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\mstime.dll
+ 2008-06-23 15:40:07 102,912 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\occache.dll
+ 2008-06-23 15:40:07 44,544 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\pngfilt.dll
+ 2008-06-23 15:40:07 105,984 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\url.dll
+ 2008-06-23 15:40:08 1,162,752 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\urlmon.dll
+ 2008-06-23 15:40:08 233,472 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\webcheck.dll
+ 2008-06-23 15:40:08 827,904 ----a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB953838-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB953838-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB953838-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB953838-IE7\update\update.exe
+ 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB953838-IE7\update\updspapi.dll
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB953839\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB953839\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB953839\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB953839\update\update.exe
+ 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB953839\update\updspapi.dll
+ 2008-09-15 15:14:42 1,847,040 ----a-w c:\windows\$hf_mig$\KB954211\SP2QFE\win32k.sys
+ 2008-09-15 15:26:07 1,846,528 ----a-w c:\windows\$hf_mig$\KB954211\SP3GDR\win32k.sys
+ 2008-09-15 15:20:39 1,847,040 ----a-w c:\windows\$hf_mig$\KB954211\SP3QFE\win32k.sys
+ 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB954211\spmsg.dll
+ 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB954211\spuninst.exe
+ 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB954211\update\spcustom.dll
+ 2008-07-09 07:40:26 767,352 ----a-w c:\windows\$hf_mig$\KB954211\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB954211\update\updspapi.dll
+ 2008-10-03 10:00:40 247,326 ----a-w c:\windows\$hf_mig$\KB954600\SP2QFE\strmdll.dll
+ 2008-10-03 10:03:53 247,326 ----a-w c:\windows\$hf_mig$\KB954600\SP3GDR\strmdll.dll
+ 2008-10-03 09:50:27 247,326 ----a-w c:\windows\$hf_mig$\KB954600\SP3QFE\strmdll.dll
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB954600\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB954600\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB954600\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB954600\update\update.exe
+ 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB954600\update\updspapi.dll
+ 2008-09-04 16:34:21 1,106,944 ----a-w c:\windows\$hf_mig$\KB955069\SP2QFE\msxml3.dll
+ 2008-09-04 17:16:10 1,106,944 ----a-w c:\windows\$hf_mig$\KB955069\SP3GDR\msxml3.dll
+ 2008-09-04 17:12:47 1,106,944 ----a-w c:\windows\$hf_mig$\KB955069\SP3QFE\msxml3.dll
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB955069\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB955069\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB955069\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB955069\update\update.exe
+ 2008-07-09 12:10:36 406,392 ----a-w c:\windows\$hf_mig$\KB955069\update\updspapi.dll
+ 2008-10-22 09:47:25 62,976 ----a-w c:\windows\$hf_mig$\KB955839\SP2QFE\tzchange.exe
+ 2008-10-23 10:06:59 62,976 ----a-w c:\windows\$hf_mig$\KB955839\SP3GDR\tzchange.exe
+ 2008-10-23 10:17:49 62,976 ----a-w c:\windows\$hf_mig$\KB955839\SP3QFE\tzchange.exe
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB955839\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB955839\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB955839\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB955839\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB955839\update\updspapi.dll
+ 2008-08-26 09:10:25 124,928 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\advpack.dll
+ 2008-08-26 09:10:25 347,136 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\dxtmsft.dll
+ 2008-08-26 09:10:25 214,528 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\dxtrans.dll
+ 2008-08-26 09:10:25 132,608 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\extmgr.dll
+ 2008-08-26 09:10:25 63,488 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\icardie.dll
+ 2008-08-25 08:43:21 70,656 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ie4uinit.exe
+ 2008-08-26 09:10:26 153,088 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieakeng.dll
+ 2008-08-26 09:10:26 230,400 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieaksie.dll
+ 2008-08-23 05:54:50 161,792 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:32:38 2,455,488 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieapfltr.dat
+ 2008-08-26 09:10:26 380,928 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieapfltr.dll
+ 2008-08-26 09:10:26 388,608 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iedkcs32.dll
+ 2008-10-03 16:22:30 6,068,224 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieframe.dll
+ 2008-08-26 09:10:27 44,544 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iernonce.dll
+ 2008-08-26 09:10:27 267,776 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iertutil.dll
+ 2008-08-25 08:43:21 13,824 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieudinit.exe
+ 2008-08-23 05:56:16 635,848 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iexplore.exe
+ 2008-08-26 09:10:27 27,648 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\jsproxy.dll
+ 2008-08-26 09:10:27 459,264 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\msfeeds.dll
+ 2008-08-26 09:10:27 52,224 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\msfeedsbs.dll
+ 2008-08-26 09:10:28 3,594,752 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mshtml.dll
+ 2008-08-26 09:10:28 477,696 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mshtmled.dll
+ 2008-08-26 09:10:28 193,024 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\msrating.dll
+ 2008-08-26 09:10:29 671,232 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mstime.dll
+ 2008-08-26 09:10:29 102,912 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\occache.dll
+ 2008-08-26 09:10:29 44,544 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\pngfilt.dll
+ 2008-08-26 09:10:29 105,984 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\url.dll
+ 2008-08-26 09:10:29 1,162,752 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\urlmon.dll
+ 2008-08-26 09:10:29 233,472 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\webcheck.dll
+ 2008-08-26 09:10:29 827,904 ----a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB956390-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB956390-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB956390-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB956390-IE7\update\update.exe
+ 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB956390-IE7\update\updspapi.dll
+ 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB956391\spmsg.dll
+ 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB956391\spuninst.exe
+ 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB956391\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB956391\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB956391\update\updspapi.dll
+ 2008-10-23 12:51:46 284,160 ----a-w c:\windows\$hf_mig$\KB956802\SP2QFE\gdi32.dll
+ 2008-10-23 12:36:51 286,720 ----a-w c:\windows\$hf_mig$\KB956802\SP3GDR\gdi32.dll
+ 2008-10-23 12:44:51 286,720 ----a-w c:\windows\$hf_mig$\KB956802\SP3QFE\gdi32.dll
+ 2008-07-08 13:03:54 18,296 ----a-w c:\windows\$hf_mig$\KB956802\spmsg.dll
+ 2008-07-08 13:03:55 234,872 ----a-w c:\windows\$hf_mig$\KB956802\spuninst.exe
+ 2008-07-08 13:03:54 26,488 ----a-w c:\windows\$hf_mig$\KB956802\update\spcustom.dll
+ 2008-07-09 07:40:26 767,352 ----a-w c:\windows\$hf_mig$\KB956802\update\update.exe
+ 2008-07-09 07:40:35 406,392 ----a-w c:\windows\$hf_mig$\KB956802\update\updspapi.dll
+ 2008-08-14 09:48:52 138,368 ----a-w c:\windows\$hf_mig$\KB956803\SP2QFE\afd.sys
+ 2008-08-14 10:04:36 138,496 ----a-w c:\windows\$hf_mig$\KB956803\SP3GDR\afd.sys
+ 2008-08-14 10:34:26 138,496 ----a-w c:\windows\$hf_mig$\KB956803\SP3QFE\afd.sys
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB956803\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB956803\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB956803\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB956803\update\update.exe
+ 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB956803\update\updspapi.dll
+ 2008-08-14 13:39:07 2,144,768 ----a-w c:\windows\$hf_mig$\KB956841\SP2QFE\ntkrnlmp.exe
+ 2008-08-14 13:39:12 2,065,024 ----a-w c:\windows\$hf_mig$\KB956841\SP2QFE\ntkrnlpa.exe
+ 2008-08-14 13:39:03 2,022,912 ----a-w c:\windows\$hf_mig$\KB956841\SP2QFE\ntkrpamp.exe
+ 2008-08-14 13:39:11 2,188,032 ----a-w c:\windows\$hf_mig$\KB956841\SP2QFE\ntoskrnl.exe
+ 2008-08-14 13:23:44 2,147,328 ----a-w c:\windows\$hf_mig$\KB956841\SP3GDR\ntkrnlmp.exe
+ 2008-08-14 13:23:49 2,068,096 ----a-w c:\windows\$hf_mig$\KB956841\SP3GDR\ntkrnlpa.exe
+ 2008-08-14 13:23:44 2,025,984 ----a-w c:\windows\$hf_mig$\KB956841\SP3GDR\ntkrpamp.exe
+ 2008-08-14 13:23:49 2,191,232 ----a-w c:\windows\$hf_mig$\KB956841\SP3GDR\ntoskrnl.exe
+ 2008-08-14 13:55:54 2,147,328 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlmp.exe
+ 2008-08-14 17:26:00 2,068,096 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe
+ 2008-08-14 13:55:47 2,025,984 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrpamp.exe
+ 2008-08-14 17:26:02 2,191,232 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB956841\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB956841\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB956841\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB956841\update\update.exe
+ 2008-07-09 07:40:35 406,392 ----a-w c:\windows\$hf_mig$\KB956841\update\updspapi.dll
+ 2008-08-28 10:35:33 333,056 ----a-w c:\windows\$hf_mig$\KB957095\SP2QFE\srv.sys
+ 2008-09-08 10:41:42 333,824 ----a-w c:\windows\$hf_mig$\KB957095\SP3GDR\srv.sys
+ 2008-09-08 11:37:19 333,824 ----a-w c:\windows\$hf_mig$\KB957095\SP3QFE\srv.sys
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB957095\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB957095\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB957095\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB957095\update\update.exe
+ 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB957095\update\updspapi.dll
+ 2008-10-24 11:25:29 455,936 ----a-w c:\windows\$hf_mig$\KB957097\SP2QFE\mrxsmb.sys
+ 2008-10-24 11:21:09 455,296 ----a-w c:\windows\$hf_mig$\KB957097\SP3GDR\mrxsmb.sys
+ 2008-10-24 11:41:11 455,936 ----a-w c:\windows\$hf_mig$\KB957097\SP3QFE\mrxsmb.sys
+ 2008-07-08 13:03:54 18,296 ----a-w c:\windows\$hf_mig$\KB957097\spmsg.dll
+ 2008-07-08 13:03:55 234,872 ----a-w c:\windows\$hf_mig$\KB957097\spuninst.exe
+ 2008-07-08 13:03:54 26,488 ----a-w c:\windows\$hf_mig$\KB957097\update\spcustom.dll
+ 2008-07-08 13:03:57 767,352 ----a-w c:\windows\$hf_mig$\KB957097\update\update.exe
+ 2008-07-08 13:04:05 406,392 ----a-w c:\windows\$hf_mig$\KB957097\update\updspapi.dll
+ 2008-10-16 19:33:14 124,928 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\advpack.dll
+ 2008-10-16 19:33:14 347,136 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\dxtmsft.dll
+ 2008-10-16 19:33:14 214,528 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\dxtrans.dll
+ 2008-10-16 19:33:14 132,608 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\extmgr.dll
+ 2008-10-16 19:33:14 63,488 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\icardie.dll
+ 2008-10-16 12:46:08 70,656 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ie4uinit.exe
+ 2008-10-16 19:33:14 153,088 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieakeng.dll
+ 2008-10-16 19:33:14 230,400 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieaksie.dll
+ 2008-10-15 06:33:26 161,792 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:32:38 2,455,488 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieapfltr.dat
+ 2008-10-16 19:33:15 380,928 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieapfltr.dll
+ 2008-10-16 19:33:15 388,608 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iedkcs32.dll
+ 2008-10-16 19:33:16 6,068,224 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieframe.dll
+ 2008-10-16 19:33:16 44,544 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iernonce.dll
+ 2008-10-16 19:33:16 267,776 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iertutil.dll
+ 2008-10-16 12:46:08 13,824 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieudinit.exe
+ 2008-10-15 06:34:58 633,632 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iexplore.exe
+ 2008-10-16 19:33:17 27,648 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\jsproxy.dll
+ 2008-10-16 19:33:18 459,264 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\msfeeds.dll
+ 2008-10-16 19:33:18 52,224 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\msfeedsbs.dll
+ 2008-10-16 19:33:19 3,595,264 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mshtml.dll
+ 2008-10-16 19:33:20 477,696 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mshtmled.dll
+ 2008-10-16 19:33:20 193,024 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\msrating.dll
+ 2008-10-16 19:33:21 671,232 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mstime.dll
+ 2008-10-16 19:33:21 102,912 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\occache.dll
+ 2008-10-16 19:33:21 44,544 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\pngfilt.dll
+ 2008-10-16 19:33:21 105,984 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\url.dll
+ 2008-10-16 19:33:21 1,163,264 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\urlmon.dll
+ 2008-10-16 19:33:22 233,472 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\webcheck.dll
+ 2008-10-16 19:33:22 827,904 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB958215-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB958215-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB958215-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB958215-IE7\update\update.exe
+ 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB958215-IE7\update\updspapi.dll
+ 2008-10-15 16:55:13 339,456 ----a-w c:\windows\$hf_mig$\KB958644\SP2QFE\netapi32.dll
+ 2008-10-15 16:35:43 337,408 ----a-w c:\windows\$hf_mig$\KB958644\SP3GDR\netapi32.dll
+ 2008-10-15 16:31:32 339,456 ----a-w c:\windows\$hf_mig$\KB958644\SP3QFE\netapi32.dll
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB958644\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB958644\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB958644\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB958644\update\update.exe
+ 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB958644\update\updspapi.dll
+ 2008-12-13 06:27:45 3,594,752 ----a-w c:\windows\$hf_mig$\KB960714-IE7\SP2QFE\mshtml.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB960714-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB960714-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\update.exe
+ 2007-03-06 01:35:47 394,976 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\updspapi.dll
+ 2006-10-18 20:47:16 414,208 -c--a-w c:\windows\$NtUninstallKB929399$\msscp.dll
+ 2005-06-28 08:23:26 213,216 -c--a-w c:\windows\$NtUninstallKB929399$\spuninst\spuninst.exe
+ 2005-06-28 08:23:54 371,424 -c--a-w c:\windows\$NtUninstallKB929399$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 294,400 -c--a-w c:\windows\$NtUninstallKB932823-v3$\msctf.dll
+ 2007-03-06 01:34:38 216,800 -c--a-w c:\windows\$NtUninstallKB932823-v3$\spuninst\spuninst.exe
+ 2007-03-06 01:35:48 394,976 -c--a-w c:\windows\$NtUninstallKB932823-v3$\spuninst\updspapi.dll
+ 2006-12-14 08:53:58 216,800 -c--a-w c:\windows\$NtUninstallKB935448$\spuninst\spuninst.exe
+ 2006-12-14 08:53:58 394,976 -c--a-w c:\windows\$NtUninstallKB935448$\spuninst\updspapi.dll
+ 2005-06-28 08:23:40 216,800 -c--a-w c:\windows\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe
+ 2005-06-28 08:23:54 371,424 -c--a-w c:\windows\$NtUninstallKB936782_WMP11$\spuninst\updspapi.dll
+ 2006-10-18 20:47:20 10,834,432 -c--a-w c:\windows\$NtUninstallKB936782_WMP11$\wmp.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB938464_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB938464_0$\spuninst\updspapi.dll
+ 2005-06-28 08:23:40 216,800 -c--a-w c:\windows\$NtUninstallKB939683$\spuninst\spuninst.exe
+ 2005-06-28 08:23:54 371,424 -c--a-w c:\windows\$NtUninstallKB939683$\spuninst\updspapi.dll
+ 2006-11-03 08:58:34 317,440 -c--a-w c:\windows\$NtUninstallKB939683$\unregmp2.exe
+ 2005-06-28 08:23:40 216,800 -c--a-w c:\windows\$NtUninstallKB941569$\spuninst\spuninst.exe
+ 2005-06-28 08:23:54 371,424 -c--a-w c:\windows\$NtUninstallKB941569$\spuninst\updspapi.dll
+ 2006-10-18 20:47:18 222,208 -c--a-w c:\windows\$NtUninstallKB941569$\wmasf.dll
+ 2004-08-03 23:07:10 82,944 -c--a-w c:\windows\$NtUninstallKB946648_0$\msgsc.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB946648_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB946648_0$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 561,179 -c--a-w c:\windows\$NtUninstallKB950749$\dao360.dll
+ 2004-08-05 12:00:00 512,029 -c--a-w c:\windows\$NtUninstallKB950749$\msexch40.dll
+ 2004-08-05 12:00:00 319,517 -c--a-w c:\windows\$NtUninstallKB950749$\msexcl40.dll
+ 2004-08-05 12:00:00 1,507,356 -c--a-w c:\windows\$NtUninstallKB950749$\msjet40.dll
+ 2004-08-05 12:00:00 358,976 -c--a-w c:\windows\$NtUninstallKB950749$\msjetol1.dll
+ 2004-08-05 12:00:00 358,976 -c--a-w c:\windows\$NtUninstallKB950749$\msjetoledb40.dll
+ 2004-08-05 12:00:00 184,351 -c--a-w c:\windows\$NtUninstallKB950749$\msjint40.dll
+ 2004-08-05 12:00:00 53,279 -c--a-w c:\windows\$NtUninstallKB950749$\msjter40.dll
+ 2004-08-05 12:00:00 241,693 -c--a-w c:\windows\$NtUninstallKB950749$\msjtes40.dll
+ 2004-08-05 12:00:00 213,023 -c--a-w c:\windows\$NtUninstallKB950749$\msltus40.dll
+ 2004-08-05 12:00:00 348,189 -c--a-w c:\windows\$NtUninstallKB950749$\mspbde40.dll
+ 2004-08-05 12:00:00 421,919 -c--a-w c:\windows\$NtUninstallKB950749$\msrd2x40.dll
+ 2004-08-05 12:00:00 315,423 -c--a-w c:\windows\$NtUninstallKB950749$\msrd3x40.dll
+ 2004-08-05 12:00:00 552,989 -c--a-w c:\windows\$NtUninstallKB950749$\msrepl40.dll
+ 2004-08-05 12:00:00 258,077 -c--a-w c:\windows\$NtUninstallKB950749$\mstext40.dll
+ 2004-08-05 12:00:00 831,519 -c--a-w c:\windows\$NtUninstallKB950749$\mswdat10.dll
+ 2004-08-05 12:00:00 614,429 -c--a-w c:\windows\$NtUninstallKB950749$\mswstr10.dll
+ 2004-08-05 12:00:00 348,189 -c--a-w c:\windows\$NtUninstallKB950749$\msxbde40.dll
+ 2007-03-06 01:34:38 216,800 -c--a-w c:\windows\$NtUninstallKB950749$\spuninst\spuninst.exe
+ 2007-03-06 01:35:48 394,976 -c--a-w c:\windows\$NtUninstallKB950749$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 200,064 -c--a-w c:\windows\$NtUninstallKB950762_0$\rmcast.sys
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB950762_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB950762_0$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 243,200 -c--a-w c:\windows\$NtUninstallKB950974_0$\es.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB950974_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:29 406,392 -c--a-w c:\windows\$NtUninstallKB950974_0$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 678,400 -c--a-w c:\windows\$NtUninstallKB951066_0$\inetcomm.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB951066_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB951066_0$\spuninst\updspapi.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB951072-v2$\spuninst\spuninst.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB951072-v2$\spuninst\updspapi.dll
+ 2004-08-03 22:40:30 274,944 -c--a-w c:\windows\$NtUninstallKB951376-v2_0$\bthport.sys
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB951376-v2_0$\spuninst\spuninst.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$NtUninstallKB951376-v2_0$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 1,293,824 -c--a-w c:\windows\$NtUninstallKB951698_0$\quartz.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB951698_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB951698_0$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 100,352 -c--a-w c:\windows\$NtUninstallKB951748_0$\6to4svc.dll
+ 2004-08-05 12:00:00 138,496 -c--a-w c:\windows\$NtUninstallKB951748_0$\afd.sys
+ 2004-08-05 12:00:00 148,480 -c--a-w c:\windows\$NtUninstallKB951748_0$\dnsapi.dll
+ 2004-08-05 12:00:00 247,808 -c--a-w c:\windows\$NtUninstallKB951748_0$\mswsock.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB951748_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:29 406,392 -c--a-w c:\windows\$NtUninstallKB951748_0$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 359,040 -c--a-w c:\windows\$NtUninstallKB951748_0$\tcpip.sys
+ 2004-08-05 12:00:00 223,616 -c--a-w c:\windows\$NtUninstallKB951748_0$\tcpip6.sys
+ 2006-10-18 19:03:58 100,864 -c--a-w c:\windows\$NtUninstallKB952069_WM9$\logagent.exe
+ 2007-07-27 06:28:58 234,872 -c--a-w c:\windows\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe
+ 2007-07-27 08:41:48 382,840 -c--a-w c:\windows\$NtUninstallKB952069_WM9$\spuninst\updspapi.dll
+ 2006-10-18 20:47:20 937,984 -c--a-w c:\windows\$NtUninstallKB952069_WM9$\wmnetmgr.dll
+ 2006-10-18 20:47:22 2,450,944 -c--a-w c:\windows\$NtUninstallKB952069_WM9$\wmvcore.dll
+ 2004-08-05 12:00:00 331,776 -c--a-w c:\windows\$NtUninstallKB952287_0$\msadce.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB952287_0$\spuninst\spuninst.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$NtUninstallKB952287_0$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 73,728 -c--a-w c:\windows\$NtUninstallKB952954_0$\mscms.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB952954_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB952954_0$\spuninst\updspapi.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB953839$\spuninst\spuninst.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$NtUninstallKB953839$\spuninst\updspapi.dll
+ 2007-07-27 06:28:58 234,872 -c--a-w c:\windows\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe
+ 2007-07-27 08:41:48 382,840 -c--a-w c:\windows\$NtUninstallKB954154_WM11$\spuninst\updspapi.dll
+ 2006-10-18 20:47:20 295,936 -c--a-w c:\windows\$NtUninstallKB954154_WM11$\wmpeffects.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$NtUninstallKB954211_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstallKB954211_0$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 1,836,032 -c--a-w c:\windows\$NtUninstallKB954211_0$\win32k.sys
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB954600_0$\spuninst\spuninst.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$NtUninstallKB954600_0$\spuninst\updspapi.dll
+ 2004-08-05 12:00:00 246,302 -c--a-w c:\windows\$NtUninstallKB954600_0$\strmdll.dll
+ 2004-08-05 12:00:00 1,236,480 -c--a-w c:\windows\$NtUninstallKB955069_0$\msxml3.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB955069_0$\spuninst\spuninst.exe
+ 2008-07-09 12:10:36 406,392 -c--a-w c:\windows\$NtUninstallKB955069_0$\spuninst\updspapi.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$NtUninstallKB955839$\spuninst\spuninst.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$NtUninstall
-
-
beaucoup de .tmp dans ce system32 !!
-
Contributeur sécuritéOk c'est fait. Je suis encore malade ???
Poste un log ZhpDiag pour etre sur :
Ouvre ce lien et télécharge ZHPDiag :
https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html
Une fois le téléchargement achevé, dézippe le fichier obtenu et place ZHPDiag.exe sur ton Bureau.
Double-clique sur l'icône pour lancer le programme.
Clique sur Tous pour cocher toutes les cases des options.
Clique sur la loupe pour lancer l'analyse.
A la fin de l'analyse, clique sur l'appareil photo et enregistre le rapport sur ton Bureau.
Ouvre le fichier sauvegardé (ZHPDiag.txt)avec le Bloc-Notes et copie son contenu dans ta réponse.
Postes le en deux fois s'il le faut (le log est assez long).
-
salut
Rapport de ZHPDiag v1.16 par Nicolas Coolman
Enregistré le 18/01/2009 21:05:17
Platform : Microsoft Windows XP (5.1.2600) Service Pack 3
MSIE: Internet Explorer v7.0.5730.11
---\\ Processus lancés
rundll32.exe
C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\Program Files\BitDefender\BitDefender 2009\bdagent.exe
C:\Program Files\BitDefender\BitDefender 2009\IEShow.exe
C:\PROGRA~1\Wanadoo\Shell.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\WINDOWS\system32\services.exe
C:\Program Files\Windows Live\Family Safety\fsssvc.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\lsass.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Tall Emu\Online Armor\oasrv.exe
C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe
---\\ Pages de démarrage d'Internet Explorer (R0)
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
---\\ Pages de recherche d'Internet Explorer (R1)
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchasst.htm
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - C:\Program Files\Windows Live\Family Safety\fssbho.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.1852\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: IEToolbar - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2009\IEToolbar.dll
---\\ Applications démarrées automatiquement par le registre (O4)
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\BitDefender\BitDefender 2009\bdagent.exe"
O4 - HKLM\..\Run: [BitDefender Antiphishing Helper] "C:\Program Files\BitDefender\BitDefender 2009\IEShow.exe"
O4 - HKLM\..\Run: [OnlineArmor GUI] "C:\Program Files\Tall Emu\Online Armor\oaui.exe"
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKLM\..\policies\Explorer: [NoDriveAutoRun] Data="67108863"
O4 - HKLM\..\policies\Explorer: [NoDriveTypeAutoRun] Data="255"
O4 - HKLM\..\policies\Explorer: [NoDrives] Data="0"
O4 - Global Startup: HotSync Manager.lnk - C:\Program Files\Palm\Hotsync.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk - C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O4 - Global Startup: Picture Package Menu.lnk - C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe
O4 - Global Startup: Picture Package VCD Maker.lnk - C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe
O4 - Global Startup: Ulead Photo Express Calendar Checker.lnk - C:\Program Files\Ulead Systems\Ulead Photo Express 4.0 Trial\CalCheck.exe
---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe,302
O9 - Extra 'Tools' menuitem: Windows Messenger - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - C:\Program Files\Messenger\msmsgs.exe,302
O9 - Extra 'Tools' menuitem: Livre de reliures HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll,208
O9 - Extra 'Tools' menuitem: Sélection intelligente HP - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll,210
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll,201
O9 - Extra button: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe,302
O9 - Extra button: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Livre de reliures HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll,208
O9 - Extra button: Sélection intelligente HP - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll,210
O9 - Extra button: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe,302
---\\ Objets ActiveX (Downloaded Program Files)(O16)
O16 - DPF: CabBuilder (CabBuilder) - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - http://download.microsoft.com/download/C/B/F/CBF23A2C-3E55-4664-BC5C-762780D79BA0/OGAControl.cab
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/softwareupdate/su/ocx/15031/CTSUEng.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {1E3F1348-4370-4BBE-A67A-CC7ED824CA85} (Microsoft Genuine Advantage Self Support Tool) - http://download.microsoft.com/download/7/4/9/749b0dc5-2175-4d5b-a6dd-9c4bc923683e/Selfhelpcontrol.cab
O16 - DPF: {474F00F5-3853-492C-AC3A-476512BBC336} (UploadListView Class) - http://picasaweb.google.com/s/v/27.38/uploader2.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - https://www.touslesdrivers.com/index.php?v_page=29
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} () - http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game02.zylom.com/activex/zylomgamesplayer.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {E6ACF817-0A85-4EBE-9F0A-096C6488CFEA} (NTR ActiveX 1.1.8) - http://eu.ntrsupport.com/inquiero/mod/setup/ntractivex118_28.cab
O16 - DPF: {EBF85371-A38F-485B-B28F-0B4C82D25937} (CUpdateCtl Object) - http://update.hpphoto.com/download/HPSWUpdate.ocx
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/softwareupdate/su/ocx/15034/CTPID.cab
---\\ Piratage de domaine (Lop.com) (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{60219892-9BD6-4388-818E-20464378E3CF}: 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{60219892-9BD6-4388-818E-20464378E3CF}: 192.168.1.1
O17 - HKLM\System\CS3\Services\Tcpip\..\{60219892-9BD6-4388-818E-20464378E3CF}: 192.168.1.1
---\\ Protocole additionnel et piratage de protocole (O18)
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
---\\ Valeur de registre AppInit_DLLs et sous-clés Winlogon Notify (O20)
O20 - Winlogon Notify: SABWINLOStartup - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O20 - Winlogon Notify: WlDimsStartup - C:\WINDOWS\System32\%SystemRoot%\System32\dimsntfy.dll
---\\ Services NT non Microsoft et non désactivés (O23)
O23 - Service: Canon Camera Access Library 8 (CCALib8) - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Windows Live Contrôle parental (fsssvc) - C:\Program Files\Windows Live\Family Safety\fsssvc.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: BitDefender Desktop Update Service (LIVESRV) - C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe" /service
O23 - Service: LVCOMSer (LVCOMSer) - C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
O23 - Service: Process Monitor (LVPrcSrv) - C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SeaPort (SeaPort) - C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
O23 - Service: Spouleur d'impression (Spooler) - C:\WINDOWS\system32\spoolsv.exe
O23 - Service: Online Armor (SvcOnlineArmor) - C:\Program Files\Tall Emu\Online Armor\oasrv.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe" /service
---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: IE7 Uninstall Stub - <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - C:\WINDOWS\system32\ieudinit.exe
O40 - ASIC: Microsoft Windows Media Player - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\inf\unregmp2.exe /ShowWMP
O40 - ASIC: Internet Explorer - {26923b43-4d38-484f-9b9e-de460746276c} - C:\WINDOWS\system32\shmgrate.exe OCInstallUserConfigIE
O40 - ASIC: Outlook Express - {881dd1c5-3dcf-431b-b061-f3f88e8be88a} - C:\WINDOWS\system32\shmgrate.exe OCInstallUserConfigOE
O40 - ASIC: Personnalisation du navigateur - {E54A439F-A4B0-4526-A16B-B4E2ECE95B3D} - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
O40 - ASIC: Adobe Flash Player 9 ActiveX - D27CDB6E-AE6D-11CF-96B8-444553540000 - (not file)
O40 - ASIC: Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - (not file)
O40 - ASIC: Rendu VML (Vector Graphics Rendering) - {10072CEC-8CC1-11D1-986E-00A0C955B42F} - (not file)
O40 - ASIC: Microsoft NetShow Player - {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - C:\WINDOWS\system32\wmpdxm.dll
O40 - ASIC: Microsoft Windows Media Player 6.4 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\system32\wmpdxm.dll
O40 - ASIC: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O40 - ASIC: DirectAnimation - {283807B5-2C60-11D0-A31D-00AA00B92C03} - (not file)
O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - C:\WINDOWS\system32\regsvr32.exe /s /n /i:/UserInstall C:\WINDOWS\system32\themeui.dll
O40 - ASIC: Liaison de données Dynamic HTML pour Java - {36f8ec70-c29a-11d1-b5c7-0000f8051515} - (not file)
O40 - ASIC: Offline Browsing Pack - {3af36230-a269-11d1-b5bf-0000f8051515} - (not file)
O40 - ASIC: Uniscribe - {3bf42070-b3b1-11d1-b5c5-0000f8051515} - (not file)
O40 - ASIC: Microsoft .NET Framework 1.1 Service Pack 1 (KB867460) - {411EDCF7-755D-414E-A74B-3DCD6583F589} - (not file)
O40 - ASIC: Création avancée - {4278c270-a269-11d1-b5bf-0000f8051515} - (not file)
O40 - ASIC: Microsoft Outlook Express 6 - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install
O40 - ASIC: NetMeeting 3.01 - {44BBA842-CC51-11CF-AAFA-00AA00B6015B} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT
O40 - ASIC: DirectShow - {44BBA848-CC51-11CF-AAFA-00AA00B6015C} - (not file)
O40 - ASIC: DirectDrawEx - {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - (not file)
O40 - ASIC: Internet Explorer Help - {45ea75a0-a269-11d1-b5bf-0000f8051515} - (not file)
O40 - ASIC: Classes Java DirectAnimation - {4f216970-c90c-11d1-b5c7-0000f8051515} - (not file)
O40 - ASIC: Microsoft Windows Script 5.7 - {4f645220-306d-11d2-995d-00c04f98bbc9} - (not file)
O40 - ASIC: Windows Messenger 4.7 - {5945c046-1e7d-11d1-bc44-00c04fd912be} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser
O40 - ASIC: (no name) - {5A8D6EE0-3E18-11D0-821E-444553540000} - (not file)
O40 - ASIC: Internet Explorer Setup Tools - {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - (not file)
O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} - (not file)
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp11.inf,PerUserStub
O40 - ASIC: MSN Site Access - {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - (not file)
O40 - ASIC: .NET Framework - {7131646D-CD3C-40F4-97B9-CD9E4E6262EF} - (not file)
O40 - ASIC: Carnet d'adresses 6 - {7790769C-0471-11d2-AF11-00C04FA35D02} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install
O40 - ASIC: Mise à jour du Bureau Windows - {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
O40 - ASIC: Internet Explorer - {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\WINDOWS\system32\ie4uinit.exe -BaseSettings
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install
O40 - ASIC: Microsoft .NET Framework 1.1 Hotfix (KB928366) - {8D1D0E9A-C799-4D28-9E29-0061D1E66E43} - (not file)
O40 - ASIC: Dynamic HTML Data Binding - {9381D8F2-0288-11D0-9501-00AA00B911A5} - (not file)
O40 - ASIC: Internet Explorer Core Fonts - {C9E9A340-D1F1-11D0-821E-444553540600} - (not file)
O40 - ASIC: .NET Framework - {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} - (not file)
O40 - ASIC: Planificateur de tâches - {CC2A9BA0-3BDD-11D0-821E-444553540000} - (not file)
O40 - ASIC: (no name) - {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - (not file)
O40 - ASIC: Macromedia Shockwave Flash - {D27CDB6E-AE6D-11cf-96B8-444553540000} - C:\WINDOWS\system32\Macromed\Flash\Flash9e.ocx
O40 - ASIC: HTML Help - {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - (not file)
O40 - ASIC: Active Directory Service Interface - {E92B03AB-B707-11d2-9CBD-0000F87A369E} - (not file)
O40 - ASIC: .NET Framework - {F196AC50-7C95-42E1-9947-BDAB18BF3C8C} - (not file)
O40 - ASIC: Installation Helper - {F4B2380F-9F83-482B-B51F-FD18C7EDD923} - (not file)
---\\ Pilotes lancés au démarrage (O41)
O41 - Driver: ADI UAA Function Driver for High Definition Audio Service (ADIHdAudAddService) - C:\WINDOWS\system32\drivers\ADIHdAud.sys
O41 - Driver: AEAudio Service (AEAudioService) - C:\WINDOWS\system32\drivers\AEAudio.sys
O41 - Driver: Suppresseur d'écho acoustique (Noyau Microsoft) (aec) - C:\WINDOWS\system32\drivers\aec.sys
O41 - Driver: Pilote de média asynchrone RAS (AsyncMac) - C:\WINDOWS\system32\DRIVERS\asyncmac.sys
O41 - Driver: Protocole client ATM ARP (Atmarpc) - C:\WINDOWS\system32\DRIVERS\atmarpc.sys
O41 - Driver: Pilote audio Stub (audstub) - C:\WINDOWS\system32\DRIVERS\audstub.sys
O41 - Driver: BitDefender Firewall NDIS Filter Service (Bdfndisf) - C:\WINDOWS\system32\DRIVERS\bdfndisf.sys
O41 - Driver: bdfsfltr (bdfsfltr) - C:\WINDOWS\system32\drivers\bdfsfltr.sys
O41 - Driver: BDSelfPr (BDSelfPr) - C:\Program Files\BitDefender\BitDefender 2009\bdselfpr.sys
O41 - Driver: BDVEDISK (BDVEDISK) - C:\Program Files\BitDefender\BitDefender 2009\BDVEDISK.sys
O41 - Driver: Service d'énumérateur Bluetooth (BthEnum) - C:\WINDOWS\system32\DRIVERS\BthEnum.sys
O41 - Driver: Pilote de communications modem Bluetooth (BTHMODEM) - C:\WINDOWS\system32\DRIVERS\bthmodem.sys
O41 - Driver: Périphérique Bluetooth (réseau personnel) (BthPan) - C:\WINDOWS\system32\DRIVERS\bthpan.sys
O41 - Driver: Pilote de port Bluetooth (BTHPORT) - C:\WINDOWS\System32\Drivers\BTHport.sys
O41 - Driver: Pilote USB radio Bluetooth (BTHUSB) - C:\WINDOWS\System32\Drivers\BTHUSB.sys
O41 - Driver: Décodeur sous-titre fermé (CCDECODE) - C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
O41 - Driver: (no object) (dmboot) - C:\WINDOWS\System32\drivers\dmboot.sys
O41 - Driver: (no object) (dmio) - C:\WINDOWS\System32\drivers\dmio.sys
O41 - Driver: (no object) (dmload) - C:\WINDOWS\System32\drivers\dmload.sys
O41 - Driver: Synthétiseur DLS du noyau Microsoft (DMusic) - C:\WINDOWS\system32\drivers\DMusic.sys
O41 - Driver: driverhardwarev2 (driverhardwarev2) - C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys
O41 - Driver: Filtre de décodeur DRM (Noyau Microsoft) (drmkaud) - C:\WINDOWS\system32\drivers\drmkaud.sys
O41 - Driver: UVC Filter Service (FilterService) - C:\WINDOWS\system32\DRIVERS\lvuvcflt.sys
O41 - Driver: FltMgr (FltMgr) - C:\WINDOWS\system32\drivers\fltmgr.sys
O41 - Driver: FssFltr (fssfltr) - C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys
O41 - Driver: Classificateur de paquets générique (Gpc) - C:\WINDOWS\system32\DRIVERS\msgpc.sys
O41 - Driver: Microsoft UAA Function Driver for High Definition Audio Service (HdAudAddService) - C:\WINDOWS\system32\drivers\HdAudio.sys
O41 - Driver: Pilote de bus Microsoft UAA pour High Definition Audio (HDAudBus) - C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
O41 - Driver: Pilote de classe HID Microsoft (hidusb) - C:\WINDOWS\system32\DRIVERS\hidusb.sys
O41 - Driver: IEEE-1284.4 Driver HPZid412 (HPZid412) - C:\WINDOWS\system32\DRIVERS\HPZid412.sys
O41 - Driver: Print Class Driver for IEEE-1284.4 HPZipr12 (HPZipr12) - C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
O41 - Driver: USB to IEEE-1284.4 Translation Driver HPZius12 (HPZius12) - C:\WINDOWS\system32\DRIVERS\HPZius12.sys
O41 - Driver: Pilote pour clavier i8042 et souris sur port PS/2 (i8042prt) - C:\WINDOWS\system32\DRIVERS\i8042prt.sys
O41 - Driver: Pilote du pare-feu Windows IPv6 (Ip6Fw) - C:\WINDOWS\system32\drivers\ip6fw.sys
O41 - Driver: Pilote de filtre de trafic IP (IpFilterDriver) - C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
O41 - Driver: Pilote de tunnelage IP dans IP (IpInIp) - C:\WINDOWS\system32\DRIVERS\ipinip.sys
O41 - Driver: Pilote IPSEC (IPSec) - C:\WINDOWS\system32\DRIVERS\ipsec.sys
O41 - Driver: Service énumérateur IR (IRENUM) - C:\WINDOWS\system32\DRIVERS\irenum.sys
O41 - Driver: IVI ASPI Shell (Iviaspi) - C:\WINDOWS\system32\drivers\iviaspi.sys
O41 - Driver: Pilote HID de clavier (kbdhid) - C:\WINDOWS\system32\DRIVERS\kbdhid.sys
O41 - Driver: Mélangeur audio Wave de noyau Microsoft (kmixer) - C:\WINDOWS\system32\drivers\kmixer.sys
O41 - Driver: Logitech QuickCam E3500(UVC) (LVUVC) - C:\WINDOWS\system32\DRIVERS\lvuvc.sys
O41 - Driver: Pilote HID de souris (mouhid) - C:\WINDOWS\system32\DRIVERS\mouhid.sys
O41 - Driver: Redirecteur client WebDav (MRxDAV) - C:\WINDOWS\system32\DRIVERS\mrxdav.sys
O41 - Driver: MRXSMB (MRxSmb) - C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
O41 - Driver: Proxy de service de répartition Microsoft (MSKSSRV) - C:\WINDOWS\system32\drivers\MSKSSRV.sys
O41 - Driver: Proxy d'horloge de répartition Microsoft (MSPCLOCK) - C:\WINDOWS\system32\drivers\MSPCLOCK.sys
O41 - Driver: Proxy de gestion de qualité de répartition Microsoft (MSPQM) - C:\WINDOWS\system32\drivers\MSPQM.sys
O41 - Driver: Pilote BIOS de gestion de systèmes Microsoft (mssmbios) - C:\WINDOWS\system32\DRIVERS\mssmbios.sys
O41 - Driver: Convertisseur en T/site-à-site de répartition Microsoft (MSTEE) - C:\WINDOWS\system32\drivers\MSTEE.sys
O41 - Driver: Codec NABTS/FEC VBI (NABTSFEC) - C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
O41 - Driver: Connection TV/vidéo Microsoft (NdisIP) - C:\WINDOWS\system32\DRIVERS\NdisIP.sys
O41 - Driver: NDISRD (NDISRD) - C:\WINDOWS\system32\drivers\NDISRD.sys
O41 - Driver: Pilote TAPI NDIS d'accès distant (NdisTapi) - C:\WINDOWS\system32\DRIVERS\ndistapi.sys
O41 - Driver: NDIS mode utilisateur E/S Protocole (Ndisuio) - C:\WINDOWS\system32\DRIVERS\ndisuio.sys
O41 - Driver: Pilote réseau étendu NDIS d'accès distant (NdisWan) - C:\WINDOWS\system32\DRIVERS\ndiswan.sys
O41 - Driver: Interface NetBIOS (NetBIOS) - C:\WINDOWS\system32\DRIVERS\netbios.sys
O41 - Driver: NetBIOS sur TCP/IP (NetBT) - C:\WINDOWS\system32\DRIVERS\netbt.sys
O41 - Driver: (no object) (nv) - C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
O41 - Driver: (no object) (nvata) - C:\WINDOWS\system32\DRIVERS\nvata.sys
O41 - Driver: NVIDIA nForce Networking Controller Driver (NVENETFD) - C:\WINDOWS\system32\DRIVERS\NVENETFD.sys
O41 - Driver: NVIDIA Network Bus Enumerator (nvnetbus) - C:\WINDOWS\system32\DRIVERS\nvnetbus.sys
O41 - Driver: Pilote de filtre de trafic IPX (NwlnkFlt) - C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
O41 - Driver: Pilote de transfert de trafic IPX (NwlnkFwd) - C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
O41 - Driver: OADriver (OADevice) - C:\WINDOWS\system32\drivers\OADriver.sys
O41 - Driver: OAmon (OAmon) - C:\WINDOWS\system32\drivers\OAmon.sys
O41 - Driver: (no object) (PalmUSBD) - C:\WINDOWS\system32\drivers\PalmUSBD.sys
O41 - Driver: PCAMPR5 NDIS Protocol Driver (PCAMPR5) - C:\WINDOWS\system32\PCAMPR5.SYS
O41 - Driver: PCANDIS5 NDIS Protocol Driver (PCANDIS5) - C:\WINDOWS\system32\PCANDIS5.SYS
O41 - Driver: Miniport réseau étendu (PPTP) (PptpMiniport) - C:\WINDOWS\system32\DRIVERS\raspptp.sys
O41 - Driver: Pilote processeur (Processor) - C:\WINDOWS\system32\DRIVERS\processr.sys
O41 - Driver: Profos (Profos) - C:\Program Files\Fichiers communs\BitDefender\BitDefender Threat Scanner\profos.sys
O41 - Driver: Planificateur de paquets QoS (PSched) - C:\WINDOWS\system32\DRIVERS\psched.sys
O41 - Driver: PsSdk31 (PsSdk31) - C:\WINDOWS\system32\Drivers\pssdk31.drv
O41 - Driver: PsSdkLBF (PsSdkLBF) - C:\WINDOWS\system32\Drivers\pssdklbf.drv
O41 - Driver: Pilote de liaison parallèle directe (Ptilink) - C:\WINDOWS\system32\DRIVERS\ptilink.sys
O41 - Driver: PxHelp20 (PxHelp20) - C:\WINDOWS\System32\Drivers\PxHelp20.sys
O41 - Driver: Pilote de connexion automatique d'accès distant (RasAcd) - C:\WINDOWS\system32\DRIVERS\rasacd.sys
O41 - Driver: Miniport réseau étendu (L2TP) (Rasl2tp) - C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
O41 - Driver: Pilote PPPOE d'accès à distance (RasPppoe) - C:\WINDOWS\system32\DRIVERS\raspppoe.sys
O41 - Driver: Parallèle direct (Raspti) - C:\WINDOWS\system32\DRIVERS\raspti.sys
O41 - Driver: Rdbss (Rdbss) - C:\WINDOWS\system32\DRIVERS\rdbss.sys
O41 - Driver: Pilote de filtre de lecture digitale de CD audio (redbook) - C:\WINDOWS\system32\DRIVERS\redbook.sys
O41 - Driver: Périphérique Bluetooth (TDI protocole RFCOMM) (RFCOMM) - C:\WINDOWS\system32\DRIVERS\rfcomm.sys
O41 - Driver: SASDIFSV (SASDIFSV) - C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
O41 - Driver: SASENUM (SASENUM) - C:\Program Files\SUPERAntiSpyware\SASENUM.SYS
O41 - Driver: SASKUTIL (SASKUTIL) - C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys
O41 - Driver: Sony Ericsson Device 046 Driver driver (WDM) (SE2Ebus) - C:\WINDOWS\system32\DRIVERS\SE2Ebus.sys
O41 - Driver: Sony Ericsson Device 046 USB WMC Modem Filter (SE2Emdfl) - C:\WINDOWS\system32\DRIVERS\SE2Emdfl.sys
O41 - Driver: Sony Ericsson Device 046 USB WMC Modem Driver (SE2Emdm) - C:\WINDOWS\system32\DRIVERS\SE2Emdm.sys
O41 - Driver: Sony Ericsson Device 046 USB WMC Device Management Drivers (WDM) (SE2Emgmt) - C:\WINDOWS\system32\DRIVERS\SE2Emgmt.sys
O41 - Driver: Sony Ericsson Device 046 USB Ethernet Emulation SEMC46 (NDIS) (se2End5) - C:\WINDOWS\system32\DRIVERS\se2End5.sys
O41 - Driver: Sony Ericsson Device 046 USB WMC OBEX Interface (SE2Eobex) - C:\WINDOWS\system32\DRIVERS\SE2Eobex.sys
O41 - Driver: Sony Ericsson Device 046 USB Ethernet Emulation SEMC46 (WDM) (se2Eunic) - C:\WINDOWS\system32\DRIVERS\se2Eunic.sys
O41 - Driver: Secdrv (Secdrv) - C:\WINDOWS\system32\DRIVERS\secdrv.sys
O41 - Driver: SenFilt Service (SenFiltService) - C:\WINDOWS\system32\drivers\Senfilt.sys
O41 - Driver: Pilote de filtre Serenum (serenum) - C:\WINDOWS\system32\DRIVERS\serenum.sys
O41 - Driver: SiS 163 usb Wireless LAN Adapter Driver (SIS163u) - C:\WINDOWS\system32\DRIVERS\sis163u.sys
O41 - Driver: Détrameur décalage BDA (SLIP) - C:\WINDOWS\system32\DRIVERS\SLIP.sys
O41 - Driver: Sony Digital Imaging Video2 (sonypvs1) - C:\WINDOWS\system32\DRIVERS\sonypvs1.sys
O41 - Driver: Pilote de filtrage Sony USB (SONYPVU1) (SONYPVU1) - C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS
O41 - Driver: Splitter audio du noyau Microsoft (splitter) - C:\WINDOWS\system32\drivers\splitter.sys
O41 - Driver: Pilote de filtre de restauration système (sr) - C:\WINDOWS\system32\DRIVERS\sr.sys
O41 - Driver: Srv (Srv) - C:\WINDOWS\system32\DRIVERS\srv.sys
O41 - Driver: BDA IPSink (streamip) - C:\WINDOWS\system32\DRIVERS\StreamIP.sys
O41 - Driver: Pilote de bus logiciel (swenum) - C:\WINDOWS\system32\DRIVERS\swenum.sys
O41 - Driver: Synthétiseur de table de sons GC noyau Microsoft (swmidi) - C:\WINDOWS\system32\drivers\swmidi.sys
O41 - Driver: Périphérique audio système du noyau Microsoft (sysaudio) - C:\WINDOWS\system32\drivers\sysaudio.sys
O41 - Driver: Pilote du protocole TCP/IP (Tcpip) - C:\WINDOWS\system32\DRIVERS\tcpip.sys
O41 - Driver: Trufos (Trufos) - C:\Program Files\Fichiers communs\BitDefender\BitDefender Threat Scanner\trufos.sys
O41 - Driver: Pilote de mise à jour microcode (Update) - C:\WINDOWS\system32\DRIVERS\update.sys
O41 - Driver: Pilote USB audio (WDM) (usbaudio) - C:\WINDOWS\system32\drivers\usbaudio.sys
O41 - Driver: Pilote parent générique USB Microsoft (usbccgp) - C:\WINDOWS\system32\DRIVERS\usbccgp.sys
O41 - Driver: Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0 (usbehci) - C:\WINDOWS\system32\DRIVERS\usbehci.sys
O41 - Driver: Concentrateur USB2 (usbhub) - C:\WINDOWS\system32\DRIVERS\usbhub.sys
O41 - Driver: Pilote miniport de contrôleur hôte ouvert USB Microsoft (usbohci) - C:\WINDOWS\system32\DRIVERS\usbohci.sys
O41 - Driver: Classe d'imprimantes USB Microsoft (usbprint) - C:\WINDOWS\system32\DRIVERS\usbprint.sys
O41 - Driver: Pilote de scanneur USB (usbscan) - C:\WINDOWS\system32\DRIVERS\usbscan.sys
O41 - Driver: Pilote de stockage de masse USB (USBSTOR) - C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
O41 - Driver: Périphérique vidéo USB (WDM) (usbvideo) - C:\WINDOWS\System32\Drivers\usbvideo.sys
O41 - Driver: Inventel Gateway (USB_RNDIS) - C:\WINDOWS\system32\DRIVERS\usb8023.sys
O41 - Driver: Pilote ARP IP d'accès distant (Wanarp) - C:\WINDOWS\system32\DRIVERS\wanarp.sys
O41 - Driver: Pilote WINMM de compatibilité audio WDM Microsoft (wdmaud) - C:\WINDOWS\system32\drivers\wdmaud.sys
O41 - Driver: WpdUsb (WpdUsb) - C:\WINDOWS\system32\DRIVERS\wpdusb.sys
O41 - Driver: Codec Teletext standard (WSTCODEC) - C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
O41 - Driver: Windows Driver Foundation - User-mode Driver Framework Platform Driver (WudfPf) - C:\WINDOWS\system32\DRIVERS\WudfPf.sys
O41 - Driver: Windows Driver Foundation - User-mode Driver Framework Reflector (WudfRd) - C:\WINDOWS\system32\DRIVERS\wudfrd.sys
O41 - Driver: ADI UAA Function Driver for High Definition Audio Service (ADIHdAudAddService) - C:\WINDOWS\system32\drivers\ADIHdAud.sys
O41 - Driver: AEAudio Service (AEAudioService) - C:\WINDOWS\system32\drivers\AEAudio.sys
O41 - Driver: Suppresseur d'écho acoustique (Noyau Microsoft) (aec) - C:\WINDOWS\system32\drivers\aec.sys
O41 - Driver: Pilote de média asynchrone RAS (AsyncMac) - C:\WINDOWS\system32\DRIVERS\asyncmac.sys
O41 - Driver: Protocole client ATM ARP (Atmarpc) - C:\WINDOWS\system32\DRIVERS\atmarpc.sys
O41 - Driver: Pilote audio Stub (audstub) - C:\WINDOWS\system32\DRIVERS\audstub.sys
O41 - Driver: BitDefender Firewall NDIS Filter Service (Bdfndisf) - C:\WINDOWS\system32\DRIVERS\bdfndisf.sys
O41 - Driver: bdfsfltr (bdfsfltr) - C:\WINDOWS\system32\drivers\bdfsfltr.sys
O41 - Driver: BDSelfPr (BDSelfPr) - C:\Program Files\BitDefender\BitDefender 2009\bdselfpr.sys
O41 - Driver: BDVEDISK (BDVEDISK) - C:\Program Files\BitDefender\BitDefender 2009\BDVEDISK.sys
O41 - Driver: Service d'énumérateur Bluetooth (BthEnum) - C:\WINDOWS\system32\DRIVERS\BthEnum.sys
O41 - Driver: Pilote de communications modem Bluetooth (BTHMODEM) - C:\WINDOWS\system32\DRIVERS\bthmodem.sys
O41 - Driver: Périphérique Bluetooth (réseau personnel) (BthPan) - C:\WINDOWS\system32\DRIVERS\bthpan.sys
O41 - Driver: Pilote de port Bluetooth (BTHPORT) - C:\WINDOWS\System32\Drivers\BTHport.sys
O41 - Driver: Pilote USB radio Bluetooth (BTHUSB) - C:\WINDOWS\System32\Drivers\BTHUSB.sys
O41 - Driver: Décodeur sous-titre fermé (CCDECODE) - C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
O41 - Driver: (no object) (dmboot) - C:\WINDOWS\System32\drivers\dmboot.sys
O41 - Driver: (no object) (dmio) - C:\WINDOWS\System32\drivers\dmio.sys
O41 - Driver: (no object) (dmload) - C:\WINDOWS\System32\drivers\dmload.sys
O41 - Driver: Synthétiseur DLS du noyau Microsoft (DMusic) - C:\WINDOWS\system32\drivers\DMusic.sys
O41 - Driver: driverhardwarev2 (driverhardwarev2) - C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys
O41 - Driver: Filtre de décodeur DRM (Noyau Microsoft) (drmkaud) - C:\WINDOWS\system32\drivers\drmkaud.sys
O41 - Driver: UVC Filter Service (FilterService) - C:\WINDOWS\system32\DRIVERS\lvuvcflt.sys
O41 - Driver: FltMgr (FltMgr) - C:\WINDOWS\system32\drivers\fltmgr.sys
O41 - Driver: FssFltr (fssfltr) - C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys
O41 - Driver: Classificateur de paquets générique (Gpc) - C:\WINDOWS\system32\DRIVERS\msgpc.sys
O41 - Driver: Microsoft UAA Function Driver for High Definition Audio Service (HdAudAddService) - C:\WINDOWS\system32\drivers\HdAudio.sys
O41 - Driver: Pilote de bus Microsoft UAA pour High Definition Audio (HDAudBus) - C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
O41 - Driver: Pilote de classe HID Microsoft (hidusb) - C:\WINDOWS\system32\DRIVERS\hidusb.sys
O41 - Driver: IEEE-1284.4 Driver HPZid412 (HPZid412) - C:\WINDOWS\system32\DRIVERS\HPZid412.sys
O41 - Driver: Print Class Driver for IEEE-1284.4 HPZipr12 (HPZipr12) - C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
O41 - Driver: USB to IEEE-1284.4 Translation Driver HPZius12 (HPZius12) - C:\WINDOWS\system32\DRIVERS\HPZius12.sys
O41 - Driver: Pilote pour clavier i8042 et souris sur port PS/2 (i8042prt) - C:\WINDOWS\system32\DRIVERS\i8042prt.sys
O41 - Driver: Pilote du pare-feu Windows IPv6 (Ip6Fw) - C:\WINDOWS\system32\drivers\ip6fw.sys
O41 - Driver: Pilote de filtre de trafic IP (IpFilterDriver) - C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
O41 - Driver: Pilote de tunnelage IP dans IP (IpInIp) - C:\WINDOWS\system32\DRIVERS\ipinip.sys
O41 - Driver: Pilote IPSEC (IPSec) - C:\WINDOWS\system32\DRIVERS\ipsec.sys
O41 - Driver: Service énumérateur IR (IRENUM) - C:\WINDOWS\system32\DRIVERS\irenum.sys
O41 - Driver: IVI ASPI Shell (Iviaspi) - C:\WINDOWS\system32\drivers\iviaspi.sys
O41 - Driver: Pilote HID de clavier (kbdhid) - C:\WINDOWS\system32\DRIVERS\kbdhid.sys
O41 - Driver: Mélangeur audio Wave de noyau Microsoft (kmixer) - C:\WINDOWS\system32\drivers\kmixer.sys
O41 - Driver: Logitech QuickCam E3500(UVC) (LVUVC) - C:\WINDOWS\system32\DRIVERS\lvuvc.sys
O41 - Driver: Pilote HID de souris (mouhid) - C:\WINDOWS\system32\DRIVERS\mouhid.sys
O41 - Driver: Redirecteur client WebDav (MRxDAV) - C:\WINDOWS\system32\DRIVERS\mrxdav.sys
O41 - Driver: MRXSMB (MRxSmb) - C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
O41 - Driver: Proxy de service de répartition Microsoft (MSKSSRV) - C:\WINDOWS\system32\drivers\MSKSSRV.sys
O41 - Driver: Proxy d'horloge de répartition Microsoft (MSPCLOCK) - C:\WINDOWS\system32\drivers\MSPCLOCK.sys
O41 - Driver: Proxy de gestion de qualité de répartition Microsoft (MSPQM) - C:\WINDOWS\system32\drivers\MSPQM.sys
O41 - Driver: Pilote BIOS de gestion de systèmes Microsoft (mssmbios) - C:\WINDOWS\system32\DRIVERS\mssmbios.sys
O41 - Driver: Convertisseur en T/site-à-site de répartition Microsoft (MSTEE) - C:\WINDOWS\system32\drivers\MSTEE.sys
O41 - Driver: Codec NABTS/FEC VBI (NABTSFEC) - C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
O41 - Driver: Connection TV/vidéo Microsoft (NdisIP) - C:\WINDOWS\system32\DRIVERS\NdisIP.sys
O41 - Driver: NDISRD (NDISRD) - C:\WINDOWS\system32\drivers\NDISRD.sys
O41 - Driver: Pilote TAPI NDIS d'accès distant (NdisTapi) - C:\WINDOWS\system32\DRIVERS\ndistapi.sys
O41 - Driver: NDIS mode utilisateur E/S Protocole (Ndisuio) - C:\WINDOWS\system32\DRIVERS\ndisuio.sys
O41 - Driver: Pilote réseau étendu NDIS d'accès distant (NdisWan) - C:\WINDOWS\system32\DRIVERS\ndiswan.sys
O41 - Driver: Interface NetBIOS (NetBIOS) - C:\WINDOWS\system32\DRIVERS\netbios.sys
O41 - Driver: NetBIOS sur TCP/IP (NetBT) - C:\WINDOWS\system32\DRIVERS\netbt.sys
O41 - Driver: (no object) (nv) - C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
O41 - Driver: (no object) (nvata) - C:\WINDOWS\system32\DRIVERS\nvata.sys
O41 - Driver: NVIDIA nForce Networking Controller Driver (NVENETFD) - C:\WINDOWS\system32\DRIVERS\NVENETFD.sys
O41 - Driver: NVIDIA Network Bus Enumerator (nvnetbus) - C:\WINDOWS\system32\DRIVERS\nvnetbus.sys
O41 - Driver: Pilote de filtre de trafic IPX (NwlnkFlt) - C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
O41 - Driver: Pilote de transfert de trafic IPX (NwlnkFwd) - C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
O41 - Driver: OADriver (OADevice) - C:\WINDOWS\system32\drivers\OADriver.sys
O41 - Driver: OAmon (OAmon) - C:\WINDOWS\system32\drivers\OAmon.sys
O41 - Driver: (no object) (PalmUSBD) - C:\WINDOWS\system32\drivers\PalmUSBD.sys
O41 - Driver: PCAMPR5 NDIS Protocol Driver (PCAMPR5) - C:\WINDOWS\system32\PCAMPR5.SYS
O41 - Driver: PCANDIS5 NDIS Protocol Driver (PCANDIS5) - C:\WINDOWS\system32\PCANDIS5.SYS
O41 - Driver: Miniport réseau étendu (PPTP) (PptpMiniport) - C:\WINDOWS\system32\DRIVERS\raspptp.sys
O41 - Driver: Pilote processeur (Processor) - C:\WINDOWS\system32\DRIVERS\processr.sys
O41 - Driver: Profos (Profos) - C:\Program Files\Fichiers communs\BitDefender\BitDefender Threat Scanner\profos.sys
O41 - Driver: Planificateur de paquets QoS (PSched) - C:\WINDOWS\system32\DRIVERS\psched.sys
O41 - Driver: PsSdk31 (PsSdk31) - C:\WINDOWS\system32\Drivers\pssdk31.drv
O41 - Driver: PsSdkLBF (PsSdkLBF) - C:\WINDOWS\system32\Drivers\pssdklbf.drv
O41 - Driver: Pilote de liaison parallèle directe (Ptilink) - C:\WINDOWS\system32\DRIVERS\ptilink.sys
O41 - Driver: PxHelp20 (PxHelp20) - C:\WINDOWS\System32\Drivers\PxHelp20.sys
O41 - Driver: Pilote de connexion automatique d'accès distant (RasAcd) - C:\WINDOWS\system32\DRIVERS\rasacd.sys
O41 - Driver: Miniport réseau étendu (L2TP) (Rasl2tp) - C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
O41 - Driver: Pilote PPPOE d'accès à distance (RasPppoe) - C:\WINDOWS\system32\DRIVERS\raspppoe.sys
O41 - Driver: Parallèle direct (Raspti) - C:\WINDOWS\system32\DRIVERS\raspti.sys
O41 - Driver: Rdbss (Rdbss) - C:\WINDOWS\system32\DRIVERS\rdbss.sys
O41 - Driver: Pilote de filtre de lecture digitale de CD audio (redbook) - C:\WINDOWS\system32\DRIVERS\redbook.sys
O41 - Driver: Périphérique Bluetooth (TDI protocole RFCOMM) (RFCOMM) - C:\WINDOWS\system32\DRIVERS\rfcomm.sys
O41 - Driver: SASDIFSV (SASDIFSV) - C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
O41 - Driver: SASENUM (SASENUM) - C:\Program Files\SUPERAntiSpyware\SASENUM.SYS
O41 - Driver: SASKUTIL (SASKUTIL) - C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys
O41 - Driver: Sony Ericsson Device 046 Driver driver (WDM) (SE2Ebus) - C:\WINDOWS\system32\DRIVERS\SE2Ebus.sys
O41 - Driver: Sony Ericsson Device 046 USB WMC Modem Filter (SE2Emdfl) - C:\WINDOWS\system32\DRIVERS\SE2Emdfl.sys
O41 - Driver: Sony Ericsson Device 046 USB WMC Modem Driver (SE2Emdm) - C:\WINDOWS\system32\DRIVERS\SE2Emdm.sys
O41 - Driver: Sony Ericsson Device 046 USB WMC Device Management Drivers (WDM) (SE2Emgmt) - C:\WINDOWS\system32\DRIVERS\SE2Emgmt.sys
O41 - Driver: Sony Ericsson Device 046 USB Ethernet Emulation SEMC46 (NDIS) (se2End5) - C:\WINDOWS\system32\DRIVERS\se2End5.sys
O41 - Driver: Sony Ericsson Device 046 USB WMC OBEX Interface (SE2Eobex) - C:\WINDOWS\system32\DRIVERS\SE2Eobex.sys
O41 - Driver: Sony Ericsson Device 046 USB Ethernet Emulation SEMC46 (WDM) (se2Eunic) - C:\WINDOWS\system32\DRIVERS\se2Eunic.sys
O41 - Driver: Secdrv (Secdrv) - C:\WINDOWS\system32\DRIVERS\secdrv.sys
O41 - Driver: SenFilt Service (SenFiltService) - C:\WINDOWS\system32\drivers\Senfilt.sys
O41 - Driver: Pilote de filtre Serenum (serenum) - C:\WINDOWS\system32\DRIVERS\serenum.sys
O41 - Driver: SiS 163 usb Wireless LAN Adapter Driver (SIS163u) - C:\WINDOWS\system32\DRIVERS\sis163u.sys
O41 - Driver: Détrameur décalage BDA (SLIP) - C:\WINDOWS\system32\DRIVERS\SLIP.sys
O41 - Driver: Sony Digital Imaging Video2 (sonypvs1) - C:\WINDOWS\system32\DRIVERS\sonypvs1.sys
O41 - Driver: Pilote de filtrage Sony USB (SONYPVU1) (SONYPVU1) - C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS
O41 - Driver: Splitter audio du noyau Microsoft (splitter) - C:\WINDOWS\system32\drivers\splitter.sys
O41 - Driver: Pilote de filtre de restauration système (sr) - C:\WINDOWS\system32\DRIVERS\sr.sys
O41 - Driver: Srv (Srv) - C:\WINDOWS\system32\DRIVERS\srv.sys
O41 - Driver: BDA IPSink (streamip) - C:\WINDOWS\system32\DRIVERS\StreamIP.sys
O41 - Driver: Pilote de bus logiciel (swenum) - C:\WINDOWS\system32\DRIVERS\swenum.sys
O41 - Driver: Synthétiseur de table de sons GC noyau Microsoft (swmidi) - C:\WINDOWS\system32\drivers\swmidi.sys
O41 - Driver: Périphérique audio système du noyau Microsoft (sysaudio) - C:\WINDOWS\system32\drivers\sysaudio.sys
O41 - Driver: Pilote du protocole TCP/IP (Tcpip) - C:\WINDOWS\system32\DRIVERS\tcpip.sys
O41 - Driver: Trufos (Trufos) - C:\Program Files\Fichiers communs\BitDefender\BitDefender Threat Scanner\trufos.sys
O41 - Driver: Pilote de mise à jour microcode (Update) - C:\WINDOWS\system32\DRIVERS\update.sys
O41 - Driver: Pilote USB audio (WDM) (usbaudio) - C:\WINDOWS\system32\drivers\usbaudio.sys
O41 - Driver: Pilote parent générique USB Microsoft (usbccgp) - C:\WINDOWS\system32\DRIVERS\usbccgp.sys
O41 - Driver: Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0 (usbehci) - C:\WINDOWS\system32\DRIVERS\usbehci.sys
O41 - Driver: Concentrateur USB2 (usbhub) - C:\WINDOWS\system32\DRIVERS\usbhub.sys
O41 - Driver: Pilote miniport de contrôleur hôte ouvert USB Microsoft (usbohci) - C:\WINDOWS\system32\DRIVERS\usbohci.sys
O41 - Driver: Classe d'imprimantes USB Microsoft (usbprint) - C:\WINDOWS\system32\DRIVERS\usbprint.sys
O41 - Driver: Pilote de scanneur USB (usbscan) - C:\WINDOWS\system32\DRIVERS\usbscan.sys
O41 - Driver: Pilote de stockage de masse USB (USBSTOR) - C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
O41 - Driver: Périphérique vidéo USB (WDM) (usbvideo) - C:\WINDOWS\System32\Drivers\usbvideo.sys
O41 - Driver: Inventel Gateway (USB_RNDIS) - C:\WINDOWS\system32\DRIVERS\usb8023.sys
O41 - Driver: Pilote ARP IP d'accès distant (Wanarp) - C:\WINDOWS\system32\DRIVERS\wanarp.sys
O41 - Driver: Pilote WINMM de compatibilité audio WDM Microsoft (wdmaud) - C:\WINDOWS\system32\drivers\wdmaud.sys
O41 - Driver: WpdUsb (WpdUsb) - C:\WINDOWS\system32\DRIVERS\wpdusb.sys
O41 - Driver: Codec Teletext standard (WSTCODEC) - C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
O41 - Driver: Windows Driver Foundation - User-mode Driver Framework Platform Driver (WudfPf) - C:\WINDOWS\system32\DRIVERS\WudfPf.sys
O41 - Driver: Windows Driver Foundation - User-mode Driver Framework Reflector (WudfRd) - C:\WINDOWS\system32\DRIVERS\wudfrd.sys
O41 - Driver: ADI UAA Function Driver for High Definition Audio Service (ADIHdAudAddService) - C:\WINDOWS\system32\drivers\ADIHdAud.sys
O41 - Driver: AEAudio Service (AEAudioService) - C:\WINDOWS\system32\drivers\AEAudio.sys
O41 - Driver: Suppresseur d'écho acoustique (Noyau Microsoft) (aec) - C:\WINDOWS\system32\drivers\aec.sys
O41 - Driver: Pilote de média asynchrone RAS (AsyncMac) - C:\WINDOWS\system32\DRIVERS\asyncmac.sys
O41 - Driver: Protocole client ATM ARP (Atmarpc) - C:\WINDOWS\system32\DRIVERS\atmarpc.sys
O41 - Driver: Pilote audio Stub (audstub) - C:\WINDOWS\system32\DRIVERS\audstub.sys
O41 - Driver: BitDefender Firewall NDIS Filter Service (Bdfndisf) - C:\WINDOWS\system32\DRIVERS\bdfndisf.sys
O41 - Driver: bdfsfltr (bdfsfltr) - C:\WINDOWS\system32\drivers\bdfsfltr.sys
O41 - Driver: BDSelfPr (BDSelfPr) - C:\Program Files\BitDefender\BitDefender 2009\bdselfpr.sys
O41 - Driver: BDVEDISK (BDVEDISK) - C:\Program Files\BitDefender\BitDefender 2009\BDVEDISK.sys
O41 - Driver: Service d'énumérateur Bluetooth (BthEnum) - C:\WINDOWS\system32\DRIVERS\BthEnum.sys
O41 - Driver: Pilote de communications modem Bluetooth (BTHMODEM) - C:\WINDOWS\system32\DRIVERS\bthmodem.sys
O41 - Driver: Périphérique Bluetooth (réseau personnel) (BthPan) - C:\WINDOWS\system32\DRIVERS\bthpan.sys
O41 - Driver: Pilote de port Bluetooth (BTHPORT) - C:\WINDOWS\System32\Drivers\BTHport.sys
O41 - Driver: Pilote USB radio Bluetooth (BTHUSB) - C:\WINDOWS\System32\Drivers\BTHUSB.sys
O41 - Driver: Décodeur sous-titre fermé (CCDECODE) - C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
O41 - Driver: (no object) (dmboot) - C:\WINDOWS\System32\drivers\dmboot.sys
O41 - Driver: (no object) (dmio) - C:\WINDOWS\System32\drivers\dmio.sys
O41 - Driver: (no object) (dmload) - C:\WINDOWS\System32\drivers\dmload.sys
O41 - Driver: Synthétiseur DLS du noyau Microsoft (DMusic) - C:\WINDOWS\system32\drivers\DMusic.sys
O41 - Driver: driverhardwarev2 (driverhardwarev2) - C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys
O41 - Driver: Filtre de décodeur DRM (Noyau Microsoft) (drmkaud) - C:\WINDOWS\system32\drivers\drmkaud.sys
O41 - Driver: UVC Filter Service (FilterService) - C:\WINDOWS\system32\DRIVERS\lvuvcflt.sys
O41 - Driver: FltMgr (FltMgr) - C:\WINDOWS\system32\drivers\fltmgr.sys
O41 - Driver: FssFltr (fssfltr) - C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys
O41 - Driver: Classificateur de paquets générique (Gpc) - C:\WINDOWS\system32\DRIVERS\msgpc.sys
O41 - Driver: Microsoft UAA Function Driver for High Definition Audio Service (HdAudAddService) - C:\WINDOWS\system32\drivers\HdAudio.sys
O41 - Driver: Pilote de bus Microsoft UAA pour High Definition Audio (HDAudBus) - C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
O41 - Driver: Pilote de classe HID Microsoft (hidusb) - C:\WINDOWS\system32\DRIVERS\hidusb.sys
O41 - Driver: IEEE-1284.4 Driver HPZid412 (HPZid412) - C:\WINDOWS\system32\DRIVERS\HPZid412.sys
O41 - Driver: Print Class Driver for IEEE-1284.4 HPZipr12 (HPZipr12) - C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
O41 - Driver: USB to IEEE-1284.4 Translation Driver HPZius12 (HPZius12) - C:\WINDOWS\system32\DRIVERS\HPZius12.sys
O41 - Driver: Pilote pour clavier i8042 et souris sur port PS/2 (i8042prt) - C:\WINDOWS\system32\DRIVERS\i8042prt.sys
O41 - Driver: Pilote du pare-feu Windows IPv6 (Ip6Fw) - C:\WINDOWS\system32\drivers\ip6fw.sys
O41 - Driver: Pilote de filtre de trafic IP (IpFilterDriver) - C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
O41 - Driver: Pilote de tunnelage IP dans IP (IpInIp) - C:\WINDOWS\system32\DRIVERS\ipinip.sys
O41 - Driver: Pilote IPSEC (IPSec) - C:\WINDOWS\system32\DRIVERS\ipsec.sys
O41 - Driver: Service énumérateur IR (IRENUM) - C:\WINDOWS\system32\DRIVERS\irenum.sys
O41 - Driver: IVI ASPI Shell (Iviaspi) - C:\WINDOWS\system32\drivers\iviaspi.sys
O41 - Driver: Pilote HID de clavier (kbdhid) - C:\WINDOWS\system32\DRIVERS\kbdhid.sys
O41 - Driver: Mélangeur audio Wave de noyau Microsoft (kmixer) - C:\WINDOWS\system32\drivers\kmixer.sys
O41 - Driver: Logitech QuickCam E3500(UVC) (LVUVC) - C:\WINDOWS\system32\DRIVERS\lvuvc.sys
O41 - Driver: Pilote HID de souris (mouhid) - C:\WINDOWS\system32\DRIVERS\mouhid.sys
O41 - Driver: Redirecteur client WebDav (MRxDAV) - C:\WINDOWS\system32\DRIVERS\mrxdav.sys
O41 - Driver: MRXSMB (MRxSmb) - C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
O41 - Driver: Proxy de service de répartition Microsoft (MSKSSRV) - C:\WINDOWS\system32\drivers\MSKSSRV.sys
O41 - Driver: Proxy d'horloge de répartition Microsoft (MSPCLOCK) - C:\WINDOWS\system32\drivers\MSPCLOCK.sys
O41 - Driver: Proxy de gestion de qualité de répartition Microsoft (MSPQM) - C:\WINDOWS\system32\drivers\MSPQM.sys
O41 - Driver: Pilote BIOS de gestion de systèmes Microsoft (mssmbios) - C:\WINDOWS\system32\DRIVERS\mssmbios.sys
O41 - Driver: Convertisseur en T/site-à-site de répartition Microsoft (MSTEE) - C:\WINDOWS\system32\drivers\MSTEE.sys
O41 - Driver: Codec NABTS/FEC VBI (NABTSFEC) - C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
O41 - Driver: Connection TV/vidéo Microsoft (NdisIP) - C:\WINDOWS\system32\DRIVERS\NdisIP.sys
O41 - Driver: NDISRD (NDISRD) - C:\WINDOWS\system32\drivers\NDISRD.sys
O41 - Driver: Pilote TAPI NDIS d'accès distant (NdisTapi) - C:\WINDOWS\system32\DRIVERS\ndistapi.sys
O41 - Driver: NDIS mode utilisateur E/S Protocole (Ndisuio) - C:\WINDOWS\system32\DRIVERS\ndisuio.sys
O41 - Driver: Pilote réseau étendu NDIS d'accès distant (NdisWan) - C:\WINDOWS\system32\DRIVERS\ndiswan.sys
O41 - Driver: Interface NetBIOS (NetBIOS) - C:\WINDOWS\system32\DRIVERS\netbios.sys
O41 - Driver: NetBIOS sur TCP/IP (NetBT) - C:\WINDOWS\system32\DRIVERS\netbt.sys
O41 - Driver: (no object) (nv) - C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
O41 - Driver: (no object) (nvata) - C:\WINDOWS\system32\DRIVERS\nvata.sys
O41 - Driver: NVIDIA nForce Networking Controller Driver (NVENETFD) - C:\WINDOWS\system32\DRIVERS\NVENETFD.sys
O41 - Driver: NVIDIA Network Bus Enumerator (nvnetbus) - C:\WINDOWS\system32\DRIVERS\nvnetbus.sys
O41 - Driver: Pilote de filtre de trafic IPX (NwlnkFlt) - C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
O41 - Driver: Pilote de transfert de trafic IPX (NwlnkFwd) - C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
O41 - Driver: OADriver (OADevice) - C:\WINDOWS\system32\drivers\OADriver.sys
O41 - Driver: OAmon (OAmon) - C:\WINDOWS\system32\drivers\OAmon.sys
O41 - Driver: (no object) (PalmUSBD) - C:\WINDOWS\system32\drivers\PalmUSBD.sys
O41 - Driver: PCAMPR5 NDIS Protocol Driver (PCAMPR5) - C:\WINDOWS\system32\PCAMPR5.SYS
O41 - Driver: PCANDIS5 NDIS Protocol Driver (PCANDIS5) - C:\WINDOWS\system32\PCANDIS5.SYS
O41 - Driver: Miniport réseau étendu (PPTP) (PptpMiniport) - C:\WINDOWS\system32\DRIVERS\raspptp.sys
O41 - Driver: Pilote processeur (Processor) - C:\WINDOWS\system32\DRIVERS\processr.sys
O41 - Driver: Profos (Profos) - C:\Program Files\Fichiers communs\BitDefender\BitDefender Threat Scanner\profos.sys
O41 - Driver: Planificateur de paquets QoS (PSched) - C:\WINDOWS\system32\DRIVERS\psched.sys
O41 - Driver: PsSdk31 (PsSdk31) - C:\WINDOWS\system32\Drivers\pssdk31.drv
O41 - Driver: PsSdkLBF (PsSdkLBF) - C:\WINDOWS\system32\Drivers\pssdklbf.drv
O41 - Driver: Pilote de liaison parallèle directe (Ptilink) - C:\WINDOWS\system32\DRIVERS\ptilink.sys
O41 - Driver: PxHelp20 (PxHelp20) - C:\WINDOWS\System32\Drivers\PxHelp20.sys
O41 - Driver: Pilote de connexion automatique d'accès distant (RasAcd) - C:\WINDOWS\system32\DRIVERS\rasacd.sys
O41 - Driver: Miniport réseau étendu (L2TP) (Rasl2tp) - C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
O41 - Driver: Pilote PPPOE d'accès à distance (RasPppoe) - C:\WINDOWS\system32\DRIVERS\raspppoe.sys
O41 - Driver: Parallèle direct (Raspti) - C:\WINDOWS\system32\DRIVERS\raspti.sys
O41 - Driver: Rdbss (Rdbss) - C:\WINDOWS\system32\DRIVERS\rdbss.sys
O41 - Driver: Pilote de filtre de lecture digitale de CD audio (redbook) - C:\WINDOWS\system32\DRIVERS\redbook.sys
O41 - Driver: Périphérique Bluetooth (TDI protocole RFCOMM) (RFCOMM) - C:\WINDOWS\system32\DRIVERS\rfcomm.sys
O41 - Driver: SASDIFSV (SASDIFSV) - C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
O41 - Driver: SASENUM (SASENUM) - C:\Program Files\SUPERAntiSpyware\SASENUM.SYS
O41 - Driver: SASKUTIL (SASKUTIL) - C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys
O41 - Driver: Sony Ericsson Device 046 Driver driver (WDM) (SE2Ebus) - C:\WINDOWS\system32\DRIVERS\SE2Ebus.sys
O41 - Driver: Sony Ericsson Device 046 USB WMC Modem Filter (SE2Emdfl) - C:\WINDOWS\system32\DRIVERS\SE2Emdfl.sys
O41 - Driver: Sony Ericsson Device 046 USB WMC Modem Driver (SE2Emdm) - C:\WINDOWS\system32\DRIVERS\SE2Emdm.sys
O41 - Driver: Sony Ericsson Device 046 USB WMC Device Management Drivers (WDM) (SE2Emgmt) - C:\WINDOWS\system32\DRIVERS\SE2Emgmt.sys
O41 - Driver: Sony Ericsson Device 046 USB Ethernet Emulation SEMC46 (NDIS) (se2End5) - C:\WINDOWS\system32\DRIVERS\se2End5.sys
O41 - Driver: Sony Ericsson Device 046 USB WMC OBEX Interface (SE2Eobex) - C:\WINDOWS\system32\DRIVERS\SE2Eobex.sys
O41 - Driver: Sony Ericsson Device 046 USB Ethernet Emulation SEMC46 (WDM) (se2Eunic) - C:\WINDOWS\system32\DRIVERS\se2Eunic.sys
O41 - Driver: Secdrv (Secdrv) - C:\WINDOWS\system32\DRIVERS\secdrv.sys
O41 - Driver: SenFilt Service (SenFiltService) - C:\WINDOWS\system32\drivers\Senfilt.sys
O41 - Driver: Pilote de filtre Serenum (serenum) - C:\WINDOWS\system32\DRIVERS\serenum.sys
O41 - Driver: SiS 163 usb Wireless LAN Adapter Driver (SIS163u) - C:\WINDOWS\system32\DRIVERS\sis163u.sys
O41 - Driver: Détrameur décalage BDA (SLIP) - C:\WINDOWS\system32\DRIVERS\SLIP.sys
O41 - Driver: Sony Digital Imaging Video2 (sonypvs1) - C:\WINDOWS\system32\DRIVERS\sonypvs1.sys
O41 - Driver: Pilote de filtrage Sony USB (SONYPVU1) (SONYPVU1) - C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS
O41 - Driver: Splitter audio du noyau Microsoft (splitter) - C:\WINDOWS\system32\drivers\splitter.sys
O41 - Driver: Pilote de filtre de restauration système (sr) - C:\WINDOWS\system32\DRIVERS\sr.sys
O41 - Driver: Srv (Srv) - C:\WINDOWS\system32\DRIVERS\srv.sys
O41 - Driver: BDA IPSink (streamip) - C:\WINDOWS\system32\DRIVERS\StreamIP.sys
O41 - Driver: Pilote de bus logiciel (swenum) - C:\WINDOWS\system32\DRIVERS\swenum.sys
O41 - Driver: Synthétiseur de table de sons GC noyau Microsoft (swmidi) - C:\WINDOWS\system32\drivers\swmidi.sys
O41 - Driver: Périphérique audio système du noyau Microsoft (sysaudio) - C:\WINDOWS\system32\drivers\sysaudio.sys
O41 - Driver: Pilote du protocole TCP/IP (Tcpip) - C:\WINDOWS\system32\DRIVERS\tcpip.sys
O41 - Driver: Trufos (Trufos) - C:\Program Files\Fichiers communs\BitDefender\BitDefender Threat Scanner\trufos.sys
O41 - Driver: Pilote de mise à jour microcode (Update) - C:\WINDOWS\system32\DRIVERS\update.sys
O41 - Driver: Pilote USB audio (WDM) (usbaudio) - C:\WINDOWS\system32\drivers\usbaudio.sys
O41 - Driver: Pilote parent générique USB Microsoft (usbccgp) - C:\WINDOWS\system32\DRIVERS\usbccgp.sys
O41 - Driver: Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0 (usbehci) - C:\WINDOWS\system32\DRIVERS\usbehci.sys
O41 - Driver: Concentrateur USB2 (usbhub) - C:\WINDOWS\system32\DRIVERS\usbhub.sys
O41 - Driver: Pilote miniport de contrôleur hôte ouvert USB Microsoft (usbohci) - C:\WINDOWS\system32\DRIVERS\usbohci.sys
O41 - Driver: Classe d'imprimantes USB Microsoft (usbprint) - C:\WINDOWS\system32\DRIVERS\usbprint.sys
O41 - Driver: Pilote de scanneur USB (usbscan) - C:\WINDOWS\system32\DRIVERS\usbscan.sys
O41 - Driver: Pilote de stockage de masse USB (USBSTOR) - C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
O41 - Driver: Périphérique vidéo USB (WDM) (usbvideo) - C:\WINDOWS\System32\Drivers\usbvideo.sys
O41 - Driver: Inventel Gateway (USB_RNDIS) - C:\WINDOWS\system32\DRIVERS\usb8023.sys
O41 - Driver: Pilote ARP IP d'accès distant (Wanarp) - C:\WINDOWS\system32\DRIVERS\wanarp.sys
O41 - Driver: Pilote WINMM de compatibilité audio WDM Microsoft (wdmaud) - C:\WINDOWS\system32\drivers\wdmaud.sys
O41 - Driver: WpdUsb (WpdUsb) - C:\WINDOWS\system32\DRIVERS\wpdusb.sys
O41 - Driver: Codec Teletext standard (WSTCODEC) - C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
O41 - Driver: Windows Driver Foundation - User-mode Driver Framework Platform Driver (WudfPf) - C:\WINDOWS\system32\DRIVERS\WudfPf.sys
O41 - Driver: Windows Driver Foundation - User-mode Driver Framework Reflector (WudfRd) - C:\WINDOWS\system32\DRIVERS\wudfrd.sys -
Et voila la suite.
---\\ Logiciels installés (O42)
O42 - Logiciel: Ad-remover
O42 - Logiciel: Adobe Acrobat 5.0
O42 - Logiciel: Adobe AIR
O42 - Logiciel: Adobe Flash Player ActiveX
O42 - Logiciel: ArcSoft PhotoImpression 3.0
O42 - Logiciel: AVS Audio Converter version 5.1
O42 - Logiciel: AVS DVD Player version 2.4
O42 - Logiciel: AVS4YOU Software Navigator 1.2
O42 - Logiciel: Canon Camera Access Library
O42 - Logiciel: Canon Utilities CameraWindow DC
O42 - Logiciel: Canon Utilities CameraWindow DC_DV 5 for ZoomBrowser EX
O42 - Logiciel: Canon Utilities CameraWindow DC_DV 6 for ZoomBrowser EX
O42 - Logiciel: Canon Utilities CameraWindow
O42 - Logiciel: Canon G.726 WMP-Decoder
O42 - Logiciel: CANON iMAGE GATEWAY Task for ZoomBrowser EX
O42 - Logiciel: Canon Internet Library for ZoomBrowser EX
O42 - Logiciel: CCleaner (remove only)
O42 - Logiciel: Acrobat.com
O42 - Logiciel: Contextual Tool Milehighads
O42 - Logiciel: Copy Utility
O42 - Logiciel: Canon Camera Support Core Library
O42 - Logiciel: Easy MP3 Cutter 2.8
O42 - Logiciel: eMule
O42 - Logiciel: EPSON Photo Print
O42 - Logiciel: EPSON Smart Panel
O42 - Logiciel: ExpertTool
O42 - Logiciel: FindyKill
O42 - Logiciel: Photogather for Palm OS Desktop
O42 - Logiciel: Gestionnaire Internet
O42 - Logiciel: HijackThis 2.0.2
O42 - Logiciel: HP Imaging Device Functions 9.0
O42 - Logiciel: HP Photosmart Essential 2.01
O42 - Logiciel: HP Solution Center 9.0
O42 - Logiciel: HP Customer Participation Program 9.0
O42 - Logiciel: HP OCR Software 9.0
O42 - Logiciel: IcoFX 1.6
O42 - Logiciel: Microsoft Internationalized Domain Names Mitigation APIs
O42 - Logiciel: Windows Internet Explorer 7
O42 - Logiciel: Canon Utilities RemoteCapture 2.7
O42 - Logiciel: Canon Utilities File Viewer Utility 1.3
O42 - Logiciel: QuickTime
O42 - Logiciel: Canon Utilities PhotoStitch 3.1
O42 - Logiciel: Barbie Girls
O42 - Logiciel: iPhoto Plus 4
O42 - Logiciel: High Definition Audio Driver Package - KB888111
O42 - Logiciel: Windows Genuine Advantage Validation Tool (KB892130)
O42 - Logiciel: Hotfix for Windows Media Format 11 SDK (KB929399)
O42 - Logiciel: Security Update for CAPICOM (KB931906)
O42 - Logiciel: LimeWire 4.18.8
O42 - Logiciel: Logiciel Photo Orange
O42 - Logiciel: Coffret de pilotes Logitech QuickCam
O42 - Logiciel: Microsoft .NET Framework 1.1 Hotfix (KB928366)
O42 - Logiciel: Malwarebytes' Anti-Malware
O42 - Logiciel: Microsoft .NET Framework 1.1
O42 - Logiciel: Microsoft .NET Framework 2.0
O42 - Logiciel: Module de prise en charge linguistique de Microsoft .NET Framework 2.0 - FRA
O42 - Logiciel: Migros Photo Service
O42 - Logiciel: Morphing FACILE 2.0.1.1
O42 - Logiciel: Canon MovieEdit Task for ZoomBrowser EX
O42 - Logiciel: Microsoft Compression Client Pack 1.0 for Windows XP
O42 - Logiciel: MSN
O42 - Logiciel: SureThing CD Labeler Deluxe 4 Trial
O42 - Logiciel: Canon Utilities MyCamera
O42 - Logiciel: Canon Utilities MyCamera DC
O42 - Logiciel: Microsoft National Language Support Downlevel APIs
O42 - Logiciel: NVIDIA Drivers
O42 - Logiciel: Microsoft Office 97 Professional
O42 - Logiciel: Online Armor 2.0
O42 - Logiciel: Flatbed Scanner
O42 - Logiciel: Parrot Software Update Tool
O42 - Logiciel: Pdf995
O42 - Logiciel: PhotoFiltre
O42 - Logiciel: Canon PhotoRecord
O42 - Logiciel: Picasa 2
O42 - Logiciel: Pocket Tunes 4.0.5
O42 - Logiciel: QuickSFV (Remove only)
O42 - Logiciel: Canon RAW Image Task for ZoomBrowser EX
O42 - Logiciel: Canon Utilities RemoteCapture DC
O42 - Logiciel: Canon Utilities RemoteCapture Task for ZoomBrowser EX
O42 - Logiciel: SAMSUNG CDMA Modem Driver Set
O42 - Logiciel: SAMSUNG Mobile USB Modem Software
O42 - Logiciel: SAMSUNG Mobile USB Modem 1.0 Software
O42 - Logiciel: Service Photo Migros
O42 - Logiciel: Macromedia Flash Player 8
O42 - Logiciel: TerraExplorer
O42 - Logiciel: UnzipThemAll 1.3
O42 - Logiciel: Virtual DJ - Atomix Productions
O42 - Logiciel: Vodafone 804SS USB driver Software
O42 - Logiciel: Windows Imaging Component
O42 - Logiciel: Windows Media Format 11 runtime
O42 - Logiciel: Lecteur Windows Media 11
O42 - Logiciel: Windows XP Service Pack 3
O42 - Logiciel: GIMP 2.6.4
O42 - Logiciel: Installation Windows Live
O42 - Logiciel: Archiveur WinRAR
O42 - Logiciel: Windows Media Player 11
O42 - Logiciel: Microsoft User-Mode Driver Framework Feature Pack 1.0
O42 - Logiciel: Canon Utilities ZoomBrowser EX
O42 - Logiciel: Canon ZoomBrowser EX Memory Card Utility
O42 - Logiciel: Windows Live Call
O42 - Logiciel: ArtRage 2 Starter Edition
O42 - Logiciel: Windows Live Messenger
O42 - Logiciel: Extension de Windows Live Toolbar (Windows Live Toolbar)
O42 - Logiciel: Menus intelligents (Windows Live Toolbar)
O42 - Logiciel: Ma-Config.com
O42 - Logiciel: Image Resizer Powertoy for Windows XP
O42 - Logiciel: Google Earth
O42 - Logiciel: Picture Package
O42 - Logiciel: Outil de téléchargement Windows Live
O42 - Logiciel: Windows Live Writer
O42 - Logiciel: MSVCRT
O42 - Logiciel: Google Toolbar for Internet Explorer
O42 - Logiciel: Logitech High Quality Video
O42 - Logiciel: Microsoft Search Enhancement Pack
O42 - Logiciel: Java(TM) 6 Update 5
O42 - Logiciel: Logitech QuickCam
O42 - Logiciel: HP Smart Web Printing
O42 - Logiciel: Galerie de photos Windows Live
O42 - Logiciel: Paint.NET v3.36
O42 - Logiciel: HPSSupply
O42 - Logiciel: Junk Mail filter update
O42 - Logiciel: Logitech Updater
O42 - Logiciel: neroxml
O42 - Logiciel: MP3 Player Utilities
O42 - Logiciel: Sony USB Driver
O42 - Logiciel: MyScript Notes
O42 - Logiciel: Windows Live Mail
O42 - Logiciel: Visual C++ 8.0 CRT.Policy (x86) WinSXS MSM Beta2
O42 - Logiciel: Visual C++ 8.0 ATL.Policy (x86) WinSXS MSM Beta2
O42 - Logiciel: Roxio Express Labeler 3
O42 - Logiciel: Windows Live Sync
O42 - Logiciel: Adobe Flash Player 9 ActiveX
O42 - Logiciel: Visual C++ 8.0 MFC.Policy (x86) WinSXS MSM Beta2
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable
O42 - Logiciel: Windows Live Favorites pour Windows Live Toolbar
O42 - Logiciel: Ulead Photo Express 4.0 Trial
O42 - Logiciel: Windows Live OneCare Contrôle parental
O42 - Logiciel: Surligneur (Windows Live Toolbar)
O42 - Logiciel: MSXML 4.0 SP2 (KB954430)
O42 - Logiciel: Samsung USB Driver
O42 - Logiciel: Microsoft Silverlight
O42 - Logiciel: Microsoft Sync Framework Runtime Native v1.0 (x86)
O42 - Logiciel: Choice Guard
O42 - Logiciel: Windows Live Toolbar
O42 - Logiciel: Search Assistant Mysidesearch
O42 - Logiciel: BitDefender Internet Security 2009
O42 - Logiciel: hp LaserJet 1000
O42 - Logiciel: Visual C++ 8.0 ATL (x86) WinSXS MSM Beta2
O42 - Logiciel: Visual C++ 8.0 CRT (x86) WinSXS MSM Beta2
O42 - Logiciel: EPSON TWAIN 5
O42 - Logiciel: Visual C++ 8.0 MFC (x86) WinSXS MSM Beta2
O42 - Logiciel: Segoe UI
O42 - Logiciel: HP Update
O42 - Logiciel: Adobe Reader 9
O42 - Logiciel: Spelling Dictionaries Support For Adobe Reader 8
O42 - Logiciel: Microsoft Sync Framework Services Native v1.0 (x86)
O42 - Logiciel: Pivot Stickfigure Animator
O42 - Logiciel: MSXML 4.0 SP2 (KB936181)
O42 - Logiciel: InterVideo DVDCopy5
O42 - Logiciel: Samsung PC Studio
O42 - Logiciel: SUPERAntiSpyware Free Edition
O42 - Logiciel: Windows Resource Kit Tools - SubInAcl.exe
O42 - Logiciel: HP Photosmart All-In-One Software 9.0
O42 - Logiciel: Assistant de connexion Windows Live
O42 - Logiciel: Microsoft Easy Assist v2
O42 - Logiciel: Windows Live Contrôle parental
O42 - Logiciel: Samsung PC Studio 3 USB Driver Installer
O42 - Logiciel: ScanToWeb
O42 - Logiciel: VirginMega.Fr Premium
O42 - Logiciel: SoundMAX
O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU]
O42 - Logiciel: Realtek High Definition Audio Driver
O42 - Logiciel: 32 Bit HP CIO Components Installer
O42 - Logiciel: Windows Live Communications Platform
O42 - Logiciel: Jasc Paint Shop Pro 9
O42 - Logiciel: Sony Ericsson PC Suite
O42 - Logiciel: Palm Desktop by ACCESS
O42 - Logiciel: Disc2Phone
---\\ Contenu des dossiers Fichiers Communs (O43)
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Adobe
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Adobe AIR
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Ahead
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\AVSMedia
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\BitDefender
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Canon
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Hewlett-Packard
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\HP
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\InstallShield
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Jasc Software Inc
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Java
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\LogiShrd
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Logitech
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Microsoft Shared
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\MSSoap
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\muvee Technologies
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\ODBC
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Services
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Sony Ericsson Shared
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\SpeechEngines
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\SureThing Shared
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\System
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Teleca Shared
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Windows Live
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\WindowsLiveInstaller
O43 - CFD:Common File Directory - C:\Program Files\Fichiers Communs\Wise Installation Wizard
---\\ Derniers fichiers modifiés ou crées sous System32 (O44)
O44 - LFC:Last File Created - C:\WINDOWS\System32\amcompat.tlb -->22/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\bdod.bin -->06/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\BDUpdateV1.xml -->12/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\cont_milehighads-remove.exe -->28/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\FFASTLOG.TXT -->18/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\FNTCACHE.DAT -->23/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\gdi32.dll -->23/10/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\lvcoinst.log -->23/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\MRT.exe -->10/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\mshtml.dll -->13/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\nscompat.tlb -->22/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\nvapps.xml -->18/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\pcqwhmqvjlzqfnr.dll-uninst.exe -->28/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\perfc009.dat -->14/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\perfc00C.dat -->14/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\perfh009.dat -->14/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\perfh00C.dat -->14/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\PerfStringBackup.INI -->14/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\ProductTweaks.xml -->07/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\python25.dll -->07/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\pythoncom25.dll -->07/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\pywintypes25.dll -->07/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\sirenacm.dll -->02/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\spdwnwxp.log -->22/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\spupdwxp.log -->23/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\TZLog.log -->12/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\user_gensett.xml -->07/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\wpa.dbl -->10/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\fssfltr_tdi.sys -->08/12/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\logiflt.iad -->18/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\lvuvc.hs -->18/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\mbam.sys -->04/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\mbamswissarmy.sys -->04/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\mrxsmb.sys -->24/10/2008
O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\pssdk31.drv -->17/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\pssdklbf.drv -->17/01/2009
O44 - LFC:Last File Created - C:\WINDOWS\System32\drivers\srv.sys -->11/12/2008
---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\ADDITMANAGER.EXE-08BC7F65.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\BDFVCL.EXE-2DA97512.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\DUMPREP.EXE-1B46F901.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\EXPLORER.EXE-082F38A9.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FILE-XPM.EXE-348754BA.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FILE-XWD.EXE-21675089.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FILM.EXE-31EA4F11.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FILTER-PACK.EXE-1A9C78A8.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FLAME.EXE-05D32985.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FRACTAL-EXPLORER.EXE-319D979F.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\FRACTAL-TRACE.EXE-144E54F0.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GEE-ZOOM.EXE-0B1C11B3.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GEE.EXE-01651BA9.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GFIG.EXE-37A7566C.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GIMP-2.6.4-I686-SETUP[1].EXE-37EACFA0.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GIMP-2.6.4-I686-SETUP[1].TMP-2C8EEB6C.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GIMP-2.6.EXE-3800AD20.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GIMPRESSIONIST.EXE-227A413F.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GRADIENT-FLARE.EXE-1671E875.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GRADIENT-MAP.EXE-18180480.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GRID.EXE-09E87326.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\GUILLOTINE.EXE-1EED62BC.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\HELP.EXE-04A92C08.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\HOT.EXE-0BD1E7D3.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\IEXPLORE.EXE-27122324.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\IFS-COMPOSE.EXE-256D8F6C.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\ILLUSION.EXE-23F1D383.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\IMAGEMAP.EXE-2811BE20.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\IMAPI.EXE-0BF740A4.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\INSTAPP.EXE-13015C7D.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\IWARP.EXE-1497AB6E.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\JIGSAW.EXE-33A8DD1C.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\layout.ini -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\LCMS.EXE-00F7B41F.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\LENS-APPLY.EXE-2DBBA60C.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\LENS-DISTORTION.EXE-1C2301C4.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\LENS-FLARE.EXE-1274D910.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\LIGHTING.EXE-2D41DDDE.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\MAP-OBJECT.EXE-09D83478.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\MAX-RGB.EXE-385BB235.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\MAZE.EXE-1F539E0D.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\METADATA.EXE-1D955768.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\MOSAIC.EXE-385B9FAE.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NEWSPRINT.EXE-16A54FC0.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NL-FILTER.EXE-2F33E6E5.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NOISE-HSV.EXE-1EBE77E4.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NOISE-RANDOMIZE.EXE-13477C2E.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NOISE-RGB.EXE-254788BB.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NOISE-SOLID.EXE-22843D8C.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NOISE-SPREAD.EXE-3045C6EF.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NOVA.EXE-245F358E.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\NTOSBOOT-B00DFAAD.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\OILIFY.EXE-3463BE6E.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PAGECURL.EXE-00007120.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PHOTOCOPY.EXE-1A66D03D.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PHOTOFILTRE.EXE-00101112.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PIXELIZE.EXE-0257022A.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PLASMA.EXE-21ED28C4.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PLUGIN-BROWSER.EXE-0300BF81.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\POLAR-COORDS.EXE-1B1A7C15.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PRINT.EXE-244FB49C.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\PROCEDURE-BROWSER.EXE-32E35F32.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\QBIST.EXE-347DE577.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RED-EYE-REMOVAL.EXE-1C003BAE.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RIPPLE.EXE-39F783B3.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\ROTATE.EXE-344DCD67.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-13408F51.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-13B2501C.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-1420000A.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-1458CBB9.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-1571FC24.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-19285B52.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-1D116917.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-1DCE05D8.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-1E91D69F.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-30D06AF2.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-38E2CFC0.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-3C8FBCC7.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-411C0762.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-41B170D4.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-41EF5D0B.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-439F87AE.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-4512E334.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-452C3D7D.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-462E3886.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-468172E9.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-46E275CE.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-471A5457.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-4726551F.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-47E0833D.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-48C0D99A.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-4AE84A70.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-4AE910F3.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-4C42421D.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\RUNDLL32.EXE-4CFB0887.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SAMPLE-COLORIZE.EXE-1D75307C.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SCRIPT-FU.EXE-1084196D.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SELECTION-TO-PATH.EXE-22F00410.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SEMI-FLATTEN.EXE-356DA391.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SHARPEN.EXE-01E50120.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SHIFT.EXE-039AF50F.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SIGNCHECK.EXE-28675D39.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SINUS.EXE-2C10322A.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SMOOTH-PALETTE.EXE-08A75235.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SOFTGLOW.EXE-1126EA0C.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SPARKLE.EXE-0DD4F66F.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SPHERE-DESIGNER.EXE-04C81B5E.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\SPIDER.EXE-2D998CA6.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\THRESHOLD-ALPHA.EXE-0A8E3E4A.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\TILE-GLASS.EXE-38B51B35.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\TILE-PAPER.EXE-05C6CE66.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\TILE-SEAMLESS.EXE-24C72F61.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\TILE-SMALL.EXE-23285615.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\TILE.EXE-1355A94B.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\TWAIN.EXE-2E0A55DA.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\UNIT-EDITOR.EXE-0FAF4564.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\UNSHARP-MASK.EXE-1DC2E337.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\VALUE-INVERT.EXE-031F3A52.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\VALUE-PROPAGATE.EXE-38360C85.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\VAN-GOGH-LIC.EXE-07EBD695.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\VERCLSID.EXE-3667BD89.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\VIDEO.EXE-1193BE8B.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WARP.EXE-0DB858F0.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WAVES.EXE-3B30B33B.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WEB-BROWSER.EXE-137F104F.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WHIRL-PINCH.EXE-182D92B5.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WIN-SNAP.EXE-2D31FB8C.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WIND.EXE-1388C79F.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WINRAR.EXE-39C6DAD9.pf -->18/01/2009
O45 - LFCP:Last File Created Prefetch - C:\WINDOWS\Prefetch\WUAUCLT.EXE-399A8E72.pf -->18/01/2009
---\\ ShellExecuteHooks, Opérations et fonctions au démarrage de Windows Explorer (O46)
O46 - SEH:ShellExecuteHooks - URL Exec Hook - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - shell32.dll
O46 - SEH:ShellExecuteHooks - SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL
---\\ Export de clé d'application autorisée (O47)
O47 - AAKE:Key Export - "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
O47 - AAKE:Key Export - "C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
O47 - AAKE:Key Export - "C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe"
O47 - AAKE:Key Export - "C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe"
O47 - AAKE:Key Export - "C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe:*:Enabled:hpofxm08.exe"
O47 - AAKE:Key Export - "C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe"="C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe:*:Enabled:hposfx08.exe"
O47 - AAKE:Key Export - "C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe"
O47 - AAKE:Key Export - "C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe:*:Enabled:hpqscnvw.exe"
O47 - AAKE:Key Export - "C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
O47 - AAKE:Key Export - "C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe:*:Enabled:hpzwiz01.exe"
O47 - AAKE:Key Export - "C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe"
O47 - AAKE:Key Export - "C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe:*:Enabled:hpqnrs08.exe"
O47 - AAKE:Key Export - "C:\Program Files\LimeWire\LimeWire.exe"="C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire"
O47 - AAKE:Key Export - "C:\Program Files\ma-config.com\maconfservice.exe"="C:\Program Files\ma-config.com\maconfservice.exe:LocalSubNet:Enabled:maconfservice"
O47 - AAKE:Key Export - "C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
O47 - AAKE:Key Export - "C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
O47 - AAKE:Key Export - "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
O47 - AAKE:Key Export - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
O47 - AAKE:Key Export - "C:\Program Files\eMule\emule.exe"="C:\Program Files\eMule\emule.exe:*:Enabled:eMule"
O47 - AAKE:Key Export - "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
O47 - AAKE:Key Export - "C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
O47 - AAKE:Key Export - "C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
O47 - AAKE:Key Export - "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
O47 - AAKE:Key Export - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
---\\ Déni du service Local Security Authority (LSA) (O48)
O48 - LSA:Local Security Authority Authentication Packages - C:\WINDOWS\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages -
---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmboot.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmio.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmload.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmboot.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmio.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmload.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ip6fw.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpcdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpwd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdpipe.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdtcp.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\dmboot.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\dmio.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\dmload.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\sr.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\vgasave.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\dmboot.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\dmio.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\dmload.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\ip6fw.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\rdpcdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\rdpdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\rdpwd.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\sr.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\tdpipe.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\tdtcp.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\vgasave.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\dmboot.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\dmio.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\dmload.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\sr.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Minimal\vgasave.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\dmboot.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\dmio.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\dmload.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\ip6fw.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\rdpcdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\rdpdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\rdpwd.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\sr.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\tdpipe.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\tdtcp.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CS3\Network\vgasave.sys
End of the scan:
-
-
;-) hello :
oui c est quand meme plus precis comme ca :)
-
Contributeur sécuritéTélécharge ATF Cleaner par Atribune:
http://www.atribune.org/ccount/click.php?id=1
Double-clique ATF-Cleaner.exe afin de lancer le programme.
Sous l'onglet Main, choisis : Select All
Clique sur le bouton Empty Selected
Si tu utilises le navigateur Firefox :
Clique Firefox au haut et choisis : Select All
Clique le bouton Empty Selected
NOTE : Si tu veux conserver tes mots de passe sauvegardés, clique No à l'invite.
Si tu utilises le navigateur Opera :
Clique Opera au haut et choisis : Select All
Clique le bouton Empty Selected
NOTE : Si tu veux conserver tes mots de passe sauvegardés, clique No à l'invite.
Clique Exit, du menu prinicipal, afin de fermer le programme.
Pour obtenir du Support technique, double-clique l'adresse électronique située au bas de chacun des menus.
- 1
- 2
- 3