Elvisdelsol
2008-12-16, 20:26
Here's my combofix log :
ComboFix 08-12-15.01 - Elvis 2008-12-16 19:19:25.2 - NTFSx86
Microsoft Windows XP Édition familiale 5.1.2600.3.1252.1.1036.18.2047.1403 [GMT 1:00]
Lancé depuis: c:\documents and settings\Elvis\Bureau\ComboFix.exe
Commutateurs utilisés :: c:\documents and settings\Elvis\Bureau\CFScript.txt
* Un nouveau point de restauration a été créé
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\Elvis\Application Data\uTorrent
c:\documents and settings\Elvis\Application Data\uTorrent\dht.dat
c:\documents and settings\Elvis\Application Data\uTorrent\dht.dat.old
c:\documents and settings\Elvis\Application Data\uTorrent\Hellboy 2.FRENCH.DVDRiP.XViD.MZISYS.avi.torrent
c:\documents and settings\Elvis\Application Data\uTorrent\Jacques Brel Inte´grale - La Boi^te A` Bonbons.torrent
c:\documents and settings\Elvis\Application Data\uTorrent\Patrick timsit - le spectacle de l'homme seul debout.avi.torrent
c:\documents and settings\Elvis\Application Data\uTorrent\resume.dat
c:\documents and settings\Elvis\Application Data\uTorrent\resume.dat.old
c:\documents and settings\Elvis\Application Data\uTorrent\rss.dat
c:\documents and settings\Elvis\Application Data\uTorrent\rss.dat.old
c:\documents and settings\Elvis\Application Data\uTorrent\SAW.5.FRENCH.R5.DVDRSCR.XViD.torrent
c:\documents and settings\Elvis\Application Data\uTorrent\settings.data
c:\documents and settings\Elvis\Application Data\uTorrent\settings.dat.old
c:\documents and settings\Elvis\Application Data\uTorrent\Tina Turner -Tina [2008][CD+2 SkidVid_XviD+Cov]320Kbps.torrent
c:\documents and settings\Elvis\Application Data\uTorrent\Two.And.A.Half.Men.6x01.Taterhead.Is.Our.Love.Child.ENG.-.sub.FR.HDTV.XviD-Mimoo.avi.torrent
c:\documents and settings\Elvis\Application Data\uTorrent\Two.And.A.Half.Men.6x02.Pie.Hole.Herb.ENG.-.sub.FR.HDTV.XviD-Mimoo.avi.torrent
c:\documents and settings\Elvis\Application Data\uTorrent\Two.and.a.Half.Men.S06E03 VOSTFR.HDTV.XViD-DOT.torrent
c:\documents and settings\Elvis\Application Data\uTorrent\WinAmp Pro v5.541.2189+Keygen[h33t]MasterUploader.torrent
.
((((((((((((((((((((((((((((( Fichiers créés du 2008-11-16 au 2008-12-16 ))))))))))))))))))))))))))))))))))))
.
2008-12-16 19:03 . 2008-12-16 19:03 <REP> d-------- c:\documents and settings\Elvis\Application Data\Logitech
2008-12-16 19:03 . 2008-12-16 19:03 0 --ah----- c:\windows\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2008-12-16 19:03 . 2008-12-16 19:03 0 --ah----- c:\windows\system32\drivers\Msft_Kernel_LMouFilt_01005.Wdf
2008-12-16 19:02 . 2008-12-16 19:03 <REP> d-------- c:\windows\LastGood
2008-12-16 19:02 . 2008-12-16 19:02 <REP> d-------- c:\program files\Logitech
2008-12-16 19:02 . 2008-12-16 19:02 <REP> d-------- c:\program files\Fichiers communs\Logitech
2008-12-16 19:02 . 2008-12-16 19:02 <REP> d-------- c:\documents and settings\All Users\Application Data\Logitech
2008-12-16 19:02 . 2007-01-23 15:45 1,419,024 --a------ c:\windows\system32\WdfCoInstaller01005.dll
2008-12-16 19:02 . 2007-01-30 01:46 163,840 --a------ c:\windows\system32\kemutb.dll
2008-12-16 19:02 . 2007-01-30 01:46 135,168 --a------ c:\windows\system32\KemUtil.dll
2008-12-16 19:02 . 2007-01-30 01:46 110,592 --a------ c:\windows\system32\KemWnd.dll
2008-12-16 19:02 . 2007-01-23 15:44 101,136 --a------ c:\windows\KHALMNPR.Exe
2008-12-16 19:02 . 2007-01-30 01:46 69,632 --a------ c:\windows\system32\KemXML.dll
2008-12-16 19:02 . 2007-01-23 15:45 34,576 --a------ c:\windows\system32\drivers\LHidFilt.Sys
2008-12-16 19:02 . 2007-01-23 15:45 33,296 --a------ c:\windows\system32\drivers\LMouFilt.Sys
2008-12-16 18:53 . 2008-04-13 11:45 32,128 --a------ c:\windows\system32\drivers\usbccgp.sys
2008-12-16 18:53 . 2008-04-13 11:45 32,128 --a--c--- c:\windows\system32\dllcache\usbccgp.sys
2008-12-16 18:53 . 2008-04-13 19:33 21,504 --a------ c:\windows\system32\hidserv.dll
2008-12-16 18:53 . 2008-04-13 19:33 21,504 --a--c--- c:\windows\system32\dllcache\hidserv.dll
2008-12-15 23:44 . 2008-12-15 23:46 1,393 --a------ c:\windows\imsins.BAK
2008-12-15 19:48 . 2008-12-15 19:48 754 --a------ c:\windows\WORDPAD.INI
2008-12-15 19:29 . 2008-12-15 19:29 <REP> d-------- c:\program files\MEGA4x1
2008-12-15 19:29 . 2008-12-15 19:29 <REP> d-------- c:\documents and settings\Elvis\Application Data\MEGA4_4104
2008-12-15 19:28 . 2008-12-15 19:28 <REP> d-------- c:\windows\Downloaded Installations
2008-12-14 17:53 . 2008-12-14 17:53 <REP> d-------- c:\documents and settings\Elvis\WINDOWS
2008-12-14 17:48 . 2008-12-14 17:48 <REP> d-------- c:\program files\WinSCP
2008-12-10 20:12 . 2008-12-11 08:46 <REP> d-------- c:\program files\Spybot - Search & Destroy
2008-12-10 20:12 . 2008-12-14 13:44 <REP> d-------- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2008-12-10 19:15 . 2008-12-10 19:15 <REP> d-------- c:\windows\Sun
2008-12-10 19:13 . 2008-12-10 19:13 <REP> d-------- c:\program files\Java
2008-12-10 19:13 . 2008-12-10 19:13 410,984 --a------ c:\windows\system32\deploytk.dll
2008-12-10 19:13 . 2008-12-10 19:13 73,728 --a------ c:\windows\system32\javacpl.cpl
2008-12-09 20:26 . 2008-12-16 19:02 <REP> d-------- c:\windows\system32\CatRoot2
2008-12-09 19:19 . 2008-12-09 19:19 656 --a------ c:\windows\system32\InstallUtil.InstallLog
2008-12-09 19:18 . 2008-12-09 19:19 <REP> d-------- c:\program files\Windows Media Connect
2008-12-09 19:16 . 2008-12-09 19:18 <REP> d-------- c:\windows\system32\URTTemp
2008-12-09 19:06 . 2008-12-09 19:07 <REP> d-------- c:\program files\Winamp
2008-12-09 19:06 . 2008-12-09 19:09 <REP> d-------- c:\documents and settings\Elvis\Application Data\Winamp
2008-12-09 18:04 . 2008-12-09 18:05 <REP> d-------- c:\program files\CCleaner
2008-12-09 17:27 . 2008-12-09 17:28 <REP> d-------- c:\program files\Fichiers communs\Adobe
2008-12-09 17:25 . 2008-12-09 18:10 <REP> d-------- c:\program files\NOS
2008-12-09 17:25 . 2008-12-09 18:10 <REP> d-------- c:\documents and settings\All Users\Application Data\NOS
2008-12-05 23:18 . 2008-12-06 11:05 <REP> d-------- c:\documents and settings\Elvis\Application Data\vlc
2008-12-05 23:17 . 2008-12-05 23:17 <REP> d-------- c:\program files\VideoLAN
2008-12-05 23:15 . 2008-12-16 18:44 69 --a------ c:\windows\NeroDigital.ini
2008-12-05 18:02 . 2008-12-05 18:02 <REP> d-------- c:\program files\MSBuild
2008-12-05 18:02 . 2008-12-05 18:02 <REP> d-------- c:\program files\Microsoft Works
2008-12-05 18:00 . 2008-12-05 18:00 <REP> d-------- c:\windows\SHELLNEW
2008-12-05 17:59 . 2008-12-05 17:59 <REP> dr-h----- C:\MSOCache
2008-12-05 17:59 . 2008-12-05 18:02 <REP> d-------- c:\documents and settings\All Users\Application Data\Microsoft Help
2008-12-05 17:57 . 2008-12-09 18:22 <REP> d-------- c:\program files\DAEMON Tools Toolbar
2008-12-05 17:57 . 2008-12-05 17:57 <REP> d-------- c:\program files\DAEMON Tools Lite
2008-12-05 17:53 . 2008-12-05 17:53 <REP> d-------- c:\documents and settings\Elvis\Application Data\DAEMON Tools
2008-12-05 17:53 . 2008-12-05 17:53 717,296 --a------ c:\windows\system32\drivers\sptd.sys
2008-12-05 17:51 . 2008-04-13 11:45 26,368 --a--c--- c:\windows\system32\dllcache\usbstor.sys
2008-12-05 09:34 . 2008-10-16 21:18 6,066,176 -----c--- c:\windows\system32\dllcache\ieframe.dll
2008-12-05 09:34 . 2007-04-17 10:32 2,455,488 -----c--- c:\windows\system32\dllcache\ieapfltr.dat
2008-12-05 09:34 . 2007-03-08 06:10 1,048,576 -----c--- c:\windows\system32\dllcache\ieframe.dll.mui
2008-12-05 09:34 . 2008-10-16 21:18 459,264 -----c--- c:\windows\system32\dllcache\msfeeds.dll
2008-12-05 09:34 . 2008-10-16 21:18 383,488 -----c--- c:\windows\system32\dllcache\ieapfltr.dll
2008-12-05 09:34 . 2008-10-16 21:18 267,776 -----c--- c:\windows\system32\dllcache\iertutil.dll
2008-12-05 09:34 . 2008-10-16 21:18 63,488 -----c--- c:\windows\system32\dllcache\icardie.dll
2008-12-05 09:34 . 2008-10-16 21:18 52,224 -----c--- c:\windows\system32\dllcache\msfeedsbs.dll
2008-12-05 09:34 . 2008-10-16 14:11 13,824 -----c--- c:\windows\system32\dllcache\ieudinit.exe
2008-12-05 09:27 . 2008-12-05 09:27 <REP> d-------- c:\program files\MSXML 4.0
2008-12-05 08:58 . 2008-06-14 18:33 272,768 --------- c:\windows\system32\drivers\bthport.sys
2008-12-05 08:58 . 2008-06-14 18:33 272,768 -----c--- c:\windows\system32\dllcache\bthport.sys
2008-12-05 08:50 . 2008-08-14 14:23 2,191,232 -----c--- c:\windows\system32\dllcache\ntoskrnl.exe
2008-12-05 08:50 . 2008-08-14 14:23 2,147,328 -----c--- c:\windows\system32\dllcache\ntkrnlmp.exe
2008-12-05 08:50 . 2008-08-14 14:23 2,068,096 -----c--- c:\windows\system32\dllcache\ntkrnlpa.exe
2008-12-05 08:50 . 2008-08-14 14:23 2,025,984 -----c--- c:\windows\system32\dllcache\ntkrpamp.exe
2008-12-05 08:47 . 2008-10-24 12:21 455,296 -----c--- c:\windows\system32\dllcache\mrxsmb.sys
2008-12-05 00:08 . 2008-12-15 23:46 <REP> d--h----- c:\windows\$hf_mig$
2008-12-05 00:08 . 2006-10-08 21:51 23,856 --a------ c:\windows\system32\spupdsvc.exe
2008-12-04 20:16 . 2008-12-16 08:43 <REP> d-------- c:\documents and settings\Elvis\.homeplayer
2008-12-04 20:15 . 2008-12-13 11:47 <REP> d-------- c:\program files\HomePlayer
2008-12-04 20:09 . 2008-12-04 20:09 <REP> d-------- c:\program files\Alwil Software
2008-12-04 20:09 . 2003-03-18 21:20 1,060,864 --a------ c:\windows\system32\MFC71.dll
2008-12-04 20:09 . 2003-03-18 20:14 499,712 --a------ c:\windows\system32\MSVCP71.dll
2008-12-04 19:13 . 2008-12-04 19:13 13,742 --a------ c:\windows\system32\wpa.bak
2008-12-04 19:01 . 2008-12-04 19:01 <REP> d-------- c:\documents and settings\All Users\Application Data\LightScribe
2008-12-04 18:52 . 2008-12-04 18:52 0 --a------ c:\windows\nsreg.dat
2008-12-04 18:46 . 2008-12-04 18:46 <REP> d-------- c:\windows\system32\Lang
2008-12-04 18:46 . 2008-12-04 18:46 940,794 --a------ c:\windows\system32\LoopyMusic.wav
2008-12-04 18:46 . 2008-12-04 18:46 146,650 --a------ c:\windows\system32\BuzzingBee.wav
2008-12-04 17:15 . 2008-12-04 17:15 5,208 --a------ c:\windows\system32\pid.PNF
2008-12-04 17:05 . 2007-12-05 02:53 356,352 --a------ c:\windows\system32\NVUNINST.EXE
2008-12-04 17:05 . 2001-08-17 22:59 3,072 --a------ c:\windows\system32\drivers\audstub.sys
2008-12-04 17:04 . 2008-04-13 19:57 58,752 --a------ c:\windows\system32\drivers\redbook.sys
2008-12-04 17:02 . 2008-12-09 20:27 <REP> d-------- c:\windows\system32\CatRoot
2008-12-04 17:02 . 2008-12-04 17:02 <REP> d--h----- c:\documents and settings\Default User\Voisinage réseau
2008-12-04 17:02 . 2008-12-04 17:02 <REP> d--h----- c:\documents and settings\Default User\Voisinage d'impression
2008-12-04 17:02 . 2008-12-04 16:17 <REP> d--h----- c:\documents and settings\Default User\Modèles
2008-12-04 17:02 . 2008-12-04 17:02 <REP> d-------- c:\documents and settings\Default User\Mes documents
2008-12-04 17:02 . 2008-12-04 17:02 <REP> dr------- c:\documents and settings\Default User\Menu Démarrer
2008-12-04 17:02 . 2008-12-04 17:02 <REP> d-------- c:\documents and settings\Default User\Favoris
2008-12-04 17:02 . 2008-12-04 17:02 <REP> d-------- c:\documents and settings\Default User\Bureau
2008-12-04 17:02 . 2008-12-04 17:02 <REP> d--h----- c:\documents and settings\All Users\Modèles
2008-12-04 17:02 . 2008-12-15 19:29 <REP> dr------- c:\documents and settings\All Users\Menu Démarrer
2008-12-04 17:02 . 2008-12-04 17:02 <REP> d-------- c:\documents and settings\All Users\Favoris
2008-12-04 17:02 . 2008-12-04 16:18 <REP> dr------- c:\documents and settings\All Users\Documents
2008-12-04 17:02 . 2008-12-16 19:03 <REP> d-------- c:\documents and settings\All Users\Bureau
2008-12-04 17:01 . 2008-12-04 16:24 261 --a------ c:\windows\system32\$winnt$.inf
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-12-16 18:02 --------- d--h--w c:\program files\InstallShield Installation Information
2008-12-04 15:59 --------- d-----w c:\program files\Fichiers communs\LightScribe
2008-12-04 15:54 --------- d-----w c:\program files\Fichiers communs\Nero
2008-12-04 15:52 --------- d-----w c:\program files\Nero
2008-12-04 15:52 --------- d-----w c:\documents and settings\All Users\Application Data\Nero
2008-12-04 15:46 319,488 ----a-w c:\windows\HideWin.exe
2008-12-04 15:46 --------- d-----w c:\program files\Realtek
2008-12-04 15:46 --------- d-----w c:\documents and settings\Elvis\Application Data\InstallShield
2008-12-04 15:45 --------- d-----w c:\program files\Fichiers communs\InstallShield
2008-12-04 15:36 --------- d-----w c:\program files\Intel
2008-12-04 15:20 --------- d-----w c:\program files\microsoft frontpage
2008-12-04 15:19 --------- d-----w c:\program files\Services en ligne
2008-10-24 11:21 455,296 ----a-w c:\windows\system32\drivers\mrxsmb.sys
2008-10-23 12:36 286,720 ----a-w c:\windows\system32\gdi32.dll
2008-10-16 20:18 826,368 ----a-w c:\windows\system32\wininet.dll
2008-10-16 13:13 202,776 ----a-w c:\windows\system32\wuweb.dll
2008-10-16 13:13 1,809,944 ----a-w c:\windows\system32\wuaueng.dll
2008-10-16 13:12 561,688 ----a-w c:\windows\system32\wuapi.dll
2008-10-16 13:12 323,608 ----a-w c:\windows\system32\wucltui.dll
2008-10-16 13:09 92,696 ----a-w c:\windows\system32\cdm.dll
2008-10-16 13:09 51,224 ----a-w c:\windows\system32\wuauclt.exe
2008-10-16 13:09 43,544 ----a-w c:\windows\system32\wups2.dll
2008-10-16 13:08 34,328 ----a-w c:\windows\system32\wups.dll
2008-10-16 13:07 208,744 ----a-w c:\windows\system32\muweb.dll
2008-10-03 10:03 247,326 ----a-w c:\windows\system32\strmdll.dll
2008-09-30 15:43 1,286,152 ----a-w c:\windows\system32\msxml4.dll
2006-06-24 22:48 32,768 ----a-r c:\windows\inf\UpdateUSB.exe
.
((((((((((((((((((((((((((((( snapshot@2008-12-15_23.17.23.40 )))))))))))))))))))))))))))))))))))))))))
.
- 2008-12-09 18:17:06 7,168 ----a-w c:\windows\assembly\GAC\IEExecRemote\1.0.5000.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2008-12-15 22:45:18 8,192 ----a-w c:\windows\assembly\GAC\IEExecRemote\1.0.5000.0__b03f5f7f11d50a3a\IEExecRemote.dll
- 2008-12-09 18:17:04 32,768 ----a-w c:\windows\assembly\GAC\IEHost\1.0.5000.0__b03f5f7f11d50a3a\IEHost.dll
+ 2008-12-15 22:45:19 32,768 ----a-w c:\windows\assembly\GAC\IEHost\1.0.5000.0__b03f5f7f11d50a3a\IEHost.dll
- 2008-12-09 18:17:01 716,800 ----a-w c:\windows\assembly\GAC\Microsoft.JScript\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
+ 2008-12-15 22:45:25 720,896 ----a-w c:\windows\assembly\GAC\Microsoft.JScript\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2008-12-09 18:17:01 299,008 ----a-w c:\windows\assembly\GAC\Microsoft.VisualBasic\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2008-12-15 22:45:19 299,008 ----a-w c:\windows\assembly\GAC\Microsoft.VisualBasic\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
- 2008-12-09 18:17:06 32,768 ----a-w c:\windows\assembly\GAC\Regcode\1.0.5000.0__b03f5f7f11d50a3a\RegCode.dll
+ 2008-12-15 22:45:23 32,768 ----a-w c:\windows\assembly\GAC\Regcode\1.0.5000.0__b03f5f7f11d50a3a\RegCode.dll
- 2008-12-09 18:17:08 299,008 ----a-w c:\windows\assembly\GAC\System.Data.OracleClient\1.0.5000.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2008-12-15 22:45:22 303,104 ----a-w c:\windows\assembly\GAC\System.Data.OracleClient\1.0.5000.0__b77a5c561934e089\System.Data.OracleClient.dll
- 2008-12-09 18:17:05 1,290,240 ----a-w c:\windows\assembly\GAC\System.Data\1.0.5000.0__b77a5c561934e089\System.Data.dll
+ 2008-12-15 22:45:23 1,294,336 ----a-w c:\windows\assembly\GAC\System.Data\1.0.5000.0__b77a5c561934e089\System.Data.dll
- 2008-12-09 18:17:05 1,699,840 ----a-w c:\windows\assembly\GAC\System.Design\1.0.5000.0__b03f5f7f11d50a3a\System.Design.dll
+ 2008-12-15 22:45:19 1,703,936 ----a-w c:\windows\assembly\GAC\System.Design\1.0.5000.0__b03f5f7f11d50a3a\System.Design.dll
- 2008-12-09 18:17:05 86,016 ----a-w c:\windows\assembly\GAC\System.DirectoryServices\1.0.5000.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
+ 2008-12-15 22:45:24 90,112 ----a-w c:\windows\assembly\GAC\System.DirectoryServices\1.0.5000.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
- 2008-12-09 18:17:05 466,944 ----a-w c:\windows\assembly\GAC\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2008-12-15 22:45:21 466,944 ----a-w c:\windows\assembly\GAC\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a\System.Drawing.dll
- 2008-12-09 18:17:05 241,664 ----a-w c:\windows\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2008-12-15 22:45:20 241,664 ----a-w c:\windows\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2008-12-09 18:17:05 64,000 ----a-w c:\windows\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.Thunk.dll
+ 2008-12-15 22:45:20 66,560 ----a-w c:\windows\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.Thunk.dll
- 2008-12-09 18:17:05 368,640 ----a-w c:\windows\assembly\GAC\System.Management\1.0.5000.0__b03f5f7f11d50a3a\System.Management.dll
+ 2008-12-15 22:45:23 372,736 ----a-w c:\windows\assembly\GAC\System.Management\1.0.5000.0__b03f5f7f11d50a3a\System.Management.dll
- 2008-12-09 18:17:05 241,664 ----a-w c:\windows\assembly\GAC\System.Messaging\1.0.5000.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2008-12-15 22:45:25 241,664 ----a-w c:\windows\assembly\GAC\System.Messaging\1.0.5000.0__b03f5f7f11d50a3a\System.Messaging.dll
- 2008-12-09 18:17:06 323,584 ----a-w c:\windows\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2008-12-15 22:45:22 323,584 ----a-w c:\windows\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\System.Runtime.Remoting.dll
- 2008-12-09 18:17:06 131,072 ----a-w c:\windows\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2008-12-15 22:45:20 131,072 ----a-w c:\windows\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
- 2008-12-09 18:17:06 77,824 ----a-w c:\windows\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
+ 2008-12-15 22:45:21 77,824 ----a-w c:\windows\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
- 2008-12-09 18:17:06 126,976 ----a-w c:\windows\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2008-12-15 22:45:24 126,976 ----a-w c:\windows\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
- 2008-12-09 18:17:06 819,200 ----a-w c:\windows\assembly\GAC\System.Web.Mobile\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
+ 2008-12-15 22:45:18 819,200 ----a-w c:\windows\assembly\GAC\System.Web.Mobile\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
- 2008-12-09 18:17:06 57,344 ----a-w c:\windows\assembly\GAC\System.Web.RegularExpressions\1.0.5000.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
+ 2008-12-15 22:45:20 57,344 ----a-w c:\windows\assembly\GAC\System.Web.RegularExpressions\1.0.5000.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
- 2008-12-09 18:17:06 569,344 ----a-w c:\windows\assembly\GAC\System.Web.Services\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2008-12-15 22:45:19 573,440 ----a-w c:\windows\assembly\GAC\System.Web.Services\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Services.dll
- 2008-12-09 18:17:06 1,245,184 ----a-w c:\windows\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
+ 2008-12-15 22:45:24 1,257,472 ----a-w c:\windows\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
- 2008-12-09 18:17:06 2,039,808 ----a-w c:\windows\assembly\GAC\System.Windows.Forms\1.0.5000.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2008-12-15 22:45:21 2,052,096 ----a-w c:\windows\assembly\GAC\System.Windows.Forms\1.0.5000.0__b77a5c561934e089\System.Windows.Forms.dll
- 2008-12-09 18:17:06 1,335,296 ----a-w c:\windows\assembly\GAC\System.Xml\1.0.5000.0__b77a5c561934e089\System.Xml.dll
+ 2008-12-15 22:45:22 1,339,392 ----a-w c:\windows\assembly\GAC\System.Xml\1.0.5000.0__b77a5c561934e089\System.XML.dll
- 2008-12-09 18:17:05 1,216,512 ----a-w c:\windows\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
+ 2008-12-15 22:45:25 1,224,704 ----a-w c:\windows\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
+ 2008-12-15 22:45:46 118,784 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_6350aa4a\CustomMarshalers.dll
+ 2008-12-15 22:45:31 61,440 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_8c1e8f39\CustomMarshalers.dll
+ 2008-12-15 22:45:44 3,379,200 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_5dc38381\mscorlib.dll
+ 2008-12-15 22:45:53 8,880,128 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_8bdab9e5\mscorlib.dll
+ 2008-12-15 22:45:50 3,395,584 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_b4509155\System.Design.dll
+ 2008-12-15 22:45:41 1,466,368 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_c5dbd5db\System.Design.dll
+ 2008-12-15 22:45:46 192,512 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_120e29d6\System.Drawing.Design.dll
+ 2008-12-15 22:45:33 90,112 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_7c178c98\System.Drawing.Design.dll
+ 2008-12-15 22:45:42 835,584 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_72381597\System.Drawing.dll
+ 2008-12-15 22:45:51 2,244,608 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_8c7ed103\System.Drawing.dll
+ 2008-12-15 22:45:48 7,880,704 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_9e95bc34\System.Windows.Forms.dll
+ 2008-12-15 22:45:36 3,014,656 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_b533c692\System.Windows.Forms.dll
+ 2008-12-15 22:45:39 2,088,960 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_86fcde77\System.Xml.dll
+ 2008-12-15 22:45:49 5,505,024 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_db83228e\System.Xml.dll
+ 2008-12-15 22:45:31 1,953,792 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_c9753ae5\System.dll
+ 2008-12-15 22:45:46 4,763,648 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_f159c848\System.dll
+ 2008-08-26 08:11:45 124,928 -c----w c:\windows\ie7updates\KB958215-IE7\advpack.dll
+ 2008-08-26 08:11:45 347,136 -c----w c:\windows\ie7updates\KB958215-IE7\dxtmsft.dll
+ 2008-08-26 08:11:45 214,528 -c----w c:\windows\ie7updates\KB958215-IE7\dxtrans.dll
+ 2008-08-26 08:11:45 133,120 -c----w c:\windows\ie7updates\KB958215-IE7\extmgr.dll
+ 2008-08-26 08:11:45 63,488 -c----w c:\windows\ie7updates\KB958215-IE7\icardie.dll
+ 2008-08-25 08:39:40 70,656 -c----w c:\windows\ie7updates\KB958215-IE7\ie4uinit.exe
+ 2008-08-26 08:11:45 153,088 -c----w c:\windows\ie7updates\KB958215-IE7\ieakeng.dll
+ 2008-08-26 08:11:45 230,400 -c----w c:\windows\ie7updates\KB958215-IE7\ieaksie.dll
+ 2008-08-23 05:54:51 161,792 -c----w c:\windows\ie7updates\KB958215-IE7\ieakui.dll
+ 2008-08-26 08:11:46 383,488 -c----w c:\windows\ie7updates\KB958215-IE7\ieapfltr.dll
+ 2008-08-26 08:11:46 384,512 -c----w c:\windows\ie7updates\KB958215-IE7\iedkcs32.dll
+ 2008-10-03 17:12:27 6,066,176 -c----w c:\windows\ie7updates\KB958215-IE7\ieframe.dll
+ 2008-08-26 08:11:48 44,544 -c----w c:\windows\ie7updates\KB958215-IE7\iernonce.dll
+ 2008-08-26 08:11:48 267,776 -c----w c:\windows\ie7updates\KB958215-IE7\iertutil.dll
+ 2008-08-25 08:38:00 13,824 -c----w c:\windows\ie7updates\KB958215-IE7\ieudinit.exe
+ 2008-08-23 05:56:15 635,848 -c----w c:\windows\ie7updates\KB958215-IE7\iexplore.exe
+ 2008-08-26 08:11:49 27,648 -c----w c:\windows\ie7updates\KB958215-IE7\jsproxy.dll
+ 2008-08-26 08:11:49 459,264 -c----w c:\windows\ie7updates\KB958215-IE7\msfeeds.dll
+ 2008-08-26 08:11:49 52,224 -c----w c:\windows\ie7updates\KB958215-IE7\msfeedsbs.dll
+ 2008-08-27 13:41:52 3,593,216 -c----w c:\windows\ie7updates\KB958215-IE7\mshtml.dll
+ 2008-08-26 08:11:52 477,696 -c----w c:\windows\ie7updates\KB958215-IE7\mshtmled.dll
+ 2008-08-26 08:11:52 193,024 -c----w c:\windows\ie7updates\KB958215-IE7\msrating.dll
+ 2008-08-26 08:11:52 671,232 -c----w c:\windows\ie7updates\KB958215-IE7\mstime.dll
+ 2008-08-26 08:11:52 102,912 -c----w c:\windows\ie7updates\KB958215-IE7\occache.dll
+ 2008-08-26 08:11:52 44,544 -c----w c:\windows\ie7updates\KB958215-IE7\pngfilt.dll
+ 2007-03-06 01:34:38 216,800 -c----w c:\windows\ie7updates\KB958215-IE7\spuninst\spuninst.exe
+ 2007-03-06 01:35:48 394,976 -c----w c:\windows\ie7updates\KB958215-IE7\spuninst\updspapi.dll
+ 2008-08-26 08:11:52 105,984 -c----w c:\windows\ie7updates\KB958215-IE7\url.dll
+ 2008-08-26 08:11:53 1,159,680 -c----w c:\windows\ie7updates\KB958215-IE7\urlmon.dll
+ 2008-08-26 08:11:53 233,472 -c----w c:\windows\ie7updates\KB958215-IE7\webcheck.dll
+ 2008-08-26 08:11:54 826,368 -c----w c:\windows\ie7updates\KB958215-IE7\wininet.dll
+ 2008-04-14 12:00:00 25,216 ----a-w c:\windows\LastGood\system32\DRIVERS\kbdclass.sys
+ 2008-04-14 12:00:00 14,720 ----a-w c:\windows\LastGood\system32\DRIVERS\kbdhid.sys
+ 2008-04-13 17:53:20 23,680 ----a-w c:\windows\LastGood\system32\DRIVERS\mouclass.sys
+ 2001-08-23 16:04:42 12,288 ----a-w c:\windows\LastGood\system32\DRIVERS\mouhid.sys
- 2003-02-20 18:19:32 253,952 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
+ 2004-07-15 00:49:16 258,048 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
- 2003-02-20 18:19:34 20,480 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_regiis.exe
+ 2004-07-15 00:49:18 20,480 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_regiis.exe
- 2003-02-20 18:19:38 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe
+ 2004-07-15 00:49:26 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe
- 2003-02-20 18:19:36 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
+ 2004-07-15 00:49:22 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
- 2003-02-20 18:09:08 77,824 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
+ 2004-07-14 23:32:22 81,920 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
- 2003-02-21 09:20:44 49,152 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\csc.exe
+ 2004-07-15 10:23:28 49,152 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\csc.exe
- 2003-02-21 09:21:00 626,688 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\cscomp.dll
+ 2004-07-15 10:23:44 626,688 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\cscomp.dll
- 2003-02-20 18:06:20 282,624 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\fusion.dll
+ 2004-07-14 23:24:30 282,624 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\fusion.dll
+ 2003-10-08 13:30:14 81,920 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\gacutil.exe
- 2003-02-21 06:24:38 7,168 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\IEExecRemote.dll
+ 2004-07-15 13:31:00 8,192 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\IEExecRemote.dll
- 2003-02-21 06:24:40 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\IEHost.dll
+ 2004-07-15 13:31:04 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\IEHost.dll
- 2003-02-20 18:09:40 196,608 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\ilasm.exe
+ 2004-07-14 23:35:30 196,608 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\ilasm.exe
- 2003-02-21 06:26:36 716,800 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\Microsoft.JScript.dll
+ 2004-07-15 13:28:58 720,896 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\Microsoft.JScript.dll
- 2003-02-21 06:26:38 299,008 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\Microsoft.VisualBasic.dll
+ 2004-07-15 13:28:56 299,008 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\Microsoft.VisualBasic.dll
- 2003-02-21 06:25:04 49,152 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\MigPol.exe
+ 2004-07-15 13:28:50 49,152 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\MigPol.exe
- 2003-02-21 06:25:04 49,152 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\MigPolWin.exe
+ 2004-07-15 13:28:50 49,152 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\MigPolWin.exe
- 2003-02-20 18:09:12 77,824 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscordbc.dll
+ 2004-07-14 23:32:44 86,016 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscordbc.dll
- 2003-02-20 18:09:12 233,472 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscordbi.dll
+ 2004-07-14 23:32:46 233,472 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscordbi.dll
- 2003-02-20 18:06:32 311,296 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
+ 2004-07-14 23:25:06 315,392 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
- 2003-02-20 18:09:16 98,304 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
+ 2004-07-14 23:33:04 102,400 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
- 2003-02-21 06:26:34 2,088,960 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
+ 2004-07-15 13:29:02 2,138,112 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
- 2003-02-20 18:09:18 143,360 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorrc.dll
+ 2004-07-14 23:33:22 143,360 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorrc.dll
- 2003-02-20 18:09:18 81,920 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsec.dll
+ 2004-07-14 23:33:24 81,920 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsec.dll
- 2003-02-20 18:07:34 2,494,464 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
+ 2004-07-14 23:26:52 2,510,848 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
- 2003-02-20 18:08:32 2,482,176 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
+ 2004-07-14 23:28:34 2,502,656 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
+ 2004-08-10 15:20:00 106,496 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\netfxupdate.exe
- 2003-02-20 18:09:30 90,112 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\PerfCounter.dll
+ 2004-07-14 23:34:50 94,208 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\PerfCounter.dll
- 2003-02-21 06:26:46 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\RegCode.dll
+ 2004-07-15 13:28:48 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\RegCode.dll
- 2003-02-20 18:09:34 319,488 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\SOS.dll
+ 2004-07-14 23:35:04 319,488 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\SOS.dll
- 2003-02-21 06:26:38 1,290,240 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Data.dll
+ 2004-07-15 13:32:00 1,294,336 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Data.dll
- 2003-02-21 06:25:42 299,008 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Data.OracleClient.dll
+ 2004-07-15 13:31:14 303,104 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Data.OracleClient.dll
- 2003-02-21 06:26:42 1,699,840 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Design.dll
+ 2004-07-15 13:29:02 1,703,936 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Design.dll
- 2003-02-21 06:26:44 86,016 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.DirectoryServices.dll
+ 2004-07-15 13:28:54 90,112 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.DirectoryServices.dll
- 2003-02-21 06:26:46 1,216,512 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.dll
+ 2004-07-15 13:31:16 1,224,704 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.dll
- 2003-02-21 06:26:50 466,944 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Drawing.dll
+ 2004-07-15 13:28:58 466,944 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Drawing.dll
- 2003-02-21 06:26:50 241,664 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.dll
+ 2004-07-15 13:28:56 241,664 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.dll
- 2003-02-20 18:09:36 64,000 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.Thunk.dll
+ 2004-07-14 23:35:12 66,560 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.Thunk.dll
- 2003-02-21 06:26:52 368,640 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Management.dll
+ 2004-07-15 13:31:58 372,736 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Management.dll
- 2003-02-21 06:26:54 241,664 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Messaging.dll
+ 2004-07-15 13:31:12 241,664 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Messaging.dll
- 2003-02-21 06:26:56 323,584 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Remoting.dll
+ 2004-07-15 13:28:58 323,584 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Remoting.dll
- 2003-02-21 06:26:56 131,072 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Serialization.Formatters.Soap.dll
+ 2004-07-15 13:31:54 131,072 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Serialization.Formatters.Soap.dll
- 2003-02-21 06:26:58 77,824 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
+ 2004-07-15 13:28:52 77,824 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
- 2003-02-21 06:27:00 126,976 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.ServiceProcess.dll
+ 2004-07-15 13:28:54 126,976 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.ServiceProcess.dll
- 2003-02-21 06:27:02 1,245,184 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
+ 2004-07-15 13:29:00 1,257,472 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
- 2003-02-21 06:27:06 819,200 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.Mobile.dll
+ 2004-07-15 13:28:58 819,200 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.Mobile.dll
- 2003-02-21 06:24:18 57,344 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.RegularExpressions.dll
+ 2004-07-15 13:28:52 57,344 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.RegularExpressions.dll
- 2003-02-21 06:27:06 569,344 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.Services.dll
+ 2004-07-15 13:31:16 573,440 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.Services.dll
- 2003-02-21 06:27:08 2,039,808 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Windows.Forms.dll
+ 2004-07-15 13:32:02 2,052,096 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Windows.Forms.dll
- 2003-02-21 06:27:10 1,335,296 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.XML.dll
+ 2004-07-15 13:29:00 1,339,392 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.XML.dll
+ 2004-06-22 12:51:38 53,248 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe
- 2003-02-21 09:20:38 737,280 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\vbc.exe
+ 2004-07-15 10:23:20 737,280 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\vbc.exe
- 2003-02-21 04:04:18 1,032,192 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\VsaVb7rt.dll
+ 2004-07-15 07:15:14 1,032,192 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\VsaVb7rt.dll
- 2003-02-20 19:10:40 31,744 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\WMINet_Utils.dll
+ 2004-07-15 01:11:56 31,744 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\WMINet_Utils.dll
- 2008-08-26 08:11:45 124,928 ----a-w c:\windows\system32\advpack.dll
+ 2008-10-16 20:18:31 124,928 ----a-w c:\windows\system32\advpack.dll
- 2008-08-26 08:11:45 124,928 -c----w c:\windows\system32\dllcache\advpack.dll
+ 2008-10-16 20:18:31 124,928 -c----w c:\windows\system32\dllcache\advpack.dll
- 2008-08-26 08:11:45 347,136 -c----w c:\windows\system32\dllcache\dxtmsft.dll
+ 2008-10-16 20:18:31 347,136 -c----w c:\windows\system32\dllcache\dxtmsft.dll
- 2008-08-26 08:11:45 214,528 -c----w c:\windows\system32\dllcache\dxtrans.dll
+ 2008-10-16 20:18:31 214,528 -c----w c:\windows\system32\dllcache\dxtrans.dll
- 2008-08-26 08:11:45 133,120 -c----w c:\windows\system32\dllcache\extmgr.dll
+ 2008-10-16 20:18:31 133,120 -c----w c:\windows\system32\dllcache\extmgr.dll
- 2008-04-14 12:00:00 285,184 -c--a-w c:\windows\system32\dllcache\gdi32.dll
+ 2008-10-23 12:36:51 286,720 -c--a-w c:\windows\system32\dllcache\gdi32.dll
- 2008-08-25 08:39:40 70,656 -c----w c:\windows\system32\dllcache\ie4uinit.exe
+ 2008-10-16 13:12:20 70,656 -c----w c:\windows\system32\dllcache\ie4uinit.exe
- 2008-08-26 08:11:45 153,088 -c----w c:\windows\system32\dllcache\ieakeng.dll
+ 2008-10-16 20:18:32 153,088 -c----w c:\windows\system32\dllcache\ieakeng.dll
- 2008-08-26 08:11:45 230,400 -c----w c:\windows\system32\dllcache\ieaksie.dll
+ 2008-10-16 20:18:32 230,400 -c----w c:\windows\system32\dllcache\ieaksie.dll
- 2008-08-23 05:54:51 161,792 -c----w c:\windows\system32\dllcache\ieakui.dll
+ 2008-10-15 07:04:53 161,792 -c----w c:\windows\system32\dllcache\ieakui.dll
- 2008-08-26 08:11:46 384,512 -c----w c:\windows\system32\dllcache\iedkcs32.dll
+ 2008-10-16 20:18:32 384,512 -c----w c:\windows\system32\dllcache\iedkcs32.dll
- 2008-08-26 08:11:48 44,544 -c----w c:\windows\system32\dllcache\iernonce.dll
+ 2008-10-16 20:18:35 44,544 -c----w c:\windows\system32\dllcache\iernonce.dll
- 2008-08-23 05:56:15 635,848 -c----w c:\windows\system32\dllcache\iexplore.exe
+ 2008-10-15 07:06:26 633,632 -c----w c:\windows\system32\dllcache\iexplore.exe
- 2008-08-26 08:11:49 27,648 -c----w c:\windows\system32\dllcache\jsproxy.dll
+ 2008-10-16 20:18:36 27,648 -c----w c:\windows\system32\dllcache\jsproxy.dll
+ 2008-04-13 18:05:16 25,216 -c--a-w c:\windows\system32\dllcache\kbdclass.sys
+ 2008-04-13 18:05:16 14,720 -c--a-w c:\windows\system32\dllcache\kbdhid.sys
- 2004-08-11 00:45:04 96,768 -c--a-w c:\windows\system32\dllcache\logagent.exe
+ 2008-06-10 08:17:42 96,768 -c--a-w c:\windows\system32\dllcache\logagent.exe
+ 2008-04-13 17:53:20 23,680 -c--a-w c:\windows\system32\dllcache\mouclass.sys
- 2008-08-27 13:41:52 3,593,216 -c----w c:\windows\system32\dllcache\mshtml.dll
+ 2008-10-17 00:48:40 3,593,216 -c----w c:\windows\system32\dllcache\mshtml.dll
- 2008-08-26 08:11:52 477,696 -c----w c:\windows\system32\dllcache\mshtmled.dll
+ 2008-10-16 20:18:40 477,696 -c----w c:\windows\system32\dllcache\mshtmled.dll
- 2008-08-26 08:11:52 193,024 -c----w c:\windows\system32\dllcache\msrating.dll
+ 2008-10-16 20:18:40 193,024 -c----w c:\windows\system32\dllcache\msrating.dll
- 2008-08-26 08:11:52 671,232 -c----w c:\windows\system32\dllcache\mstime.dll
+ 2008-10-16 20:18:41 671,232 -c----w c:\windows\system32\dllcache\mstime.dll
- 2008-08-26 08:11:52 102,912 -c----w c:\windows\system32\dllcache\occache.dll
+ 2008-10-16 20:18:41 102,912 -c----w c:\windows\system32\dllcache\occache.dll
- 2008-08-26 08:11:52 44,544 -c----w c:\windows\system32\dllcache\pngfilt.dll
+ 2008-10-16 20:18:41 44,544 -c----w c:\windows\system32\dllcache\pngfilt.dll
- 2008-04-14 12:00:00 246,814 -c--a-w c:\windows\system32\dllcache\strmdll.dll
+ 2008-10-03 10:03:53 247,326 -c--a-w c:\windows\system32\dllcache\strmdll.dll
- 2008-08-26 08:11:52 105,984 -c----w c:\windows\system32\dllcache\url.dll
+ 2008-10-16 20:18:41 105,984 -c----w c:\windows\system32\dllcache\url.dll
- 2008-08-26 08:11:53 1,159,680 -c----w c:\windows\system32\dllcache\urlmon.dll
+ 2008-10-16 20:18:42 1,160,192 -c----w c:\windows\system32\dllcache\urlmon.dll
- 2008-08-26 08:11:53 233,472 -c----w c:\windows\system32\dllcache\webcheck.dll
+ 2008-10-16 20:18:42 233,472 -c----w c:\windows\system32\dllcache\webcheck.dll
- 2008-08-26 08:11:54 826,368 -c----w c:\windows\system32\dllcache\wininet.dll
+ 2008-10-16 20:18:43 826,368 -c----w c:\windows\system32\dllcache\wininet.dll
- 2004-08-11 00:45:04 1,027,072 -c--a-w c:\windows\system32\dllcache\wmnetmgr.dll
+ 2008-06-10 10:37:02 1,026,048 -c--a-w c:\windows\system32\dllcache\WMNetmgr.dll
- 2006-12-07 06:40:49 2,362,184 -c--a-w c:\windows\system32\dllcache\wmvcore.dll
+ 2008-06-10 10:57:40 2,364,472 -c--a-w c:\windows\system32\dllcache\WMVCore.dll
- 2008-04-14 12:00:00 25,216 ----a-w c:\windows\system32\drivers\kbdclass.sys
+ 2008-04-13 18:05:16 25,216 ----a-w c:\windows\system32\drivers\kbdclass.sys
- 2008-04-14 12:00:00 14,720 ----a-w c:\windows\system32\drivers\kbdhid.sys
+ 2008-04-13 18:05:16 14,720 ----a-w c:\windows\system32\drivers\kbdhid.sys
+ 2006-11-02 06:22:54 492,000 ------w c:\windows\system32\drivers\wdf01000.sys
+ 2006-11-02 06:22:52 32,224 ------w c:\windows\system32\drivers\wdfldr.sys
+ 2007-01-23 14:45:00 34,576 -c--a-w c:\windows\system32\DRVSTORE\lfhidhid_81D9DAAA2390CA20F8187026F57E138D0FB22244\LHidFilt.sys
+ 2007-01-23 14:45:00 1,419,024 -c--a-w c:\windows\system32\DRVSTORE\lfhidhid_81D9DAAA2390CA20F8187026F57E138D0FB22244\WdfCoInstaller01005.dll
+ 2007-01-23 14:45:00 28,176 -c--a-w c:\windows\system32\DRVSTORE\lfhidusb_F2A95027AFF9C69E646C8089615E733F4CE770C1\LUsbFilt.sys
+ 2007-01-23 14:45:00 1,419,024 -c--a-w c:\windows\system32\DRVSTORE\lfhidusb_F2A95027AFF9C69E646C8089615E733F4CE770C1\WdfCoInstaller01005.dll
+ 2007-01-23 14:45:00 34,576 -c--a-w c:\windows\system32\DRVSTORE\lfkbdhid_BF6097EF3912196232189FF4030D6497B4DF738A\LHidFilt.sys
+ 2007-01-23 14:45:00 1,419,024 -c--a-w c:\windows\system32\DRVSTORE\lfkbdhid_BF6097EF3912196232189FF4030D6497B4DF738A\WdfCoInstaller01005.dll
+ 2007-01-23 14:44:00 101,136 -c--a-w c:\windows\system32\DRVSTORE\lfmouhid_FACDA2D2CAF5FF8A2DA6CD8B0212C3F89DFA31A2\KHALMNPR.exe
+ 2007-01-23 14:45:00 34,576 -c--a-w c:\windows\system32\DRVSTORE\lfmouhid_FACDA2D2CAF5FF8A2DA6CD8B0212C3F89DFA31A2\LHidFilt.sys
+ 2007-01-23 14:45:00 33,296 -c--a-w c:\windows\system32\DRVSTORE\lfmouhid_FACDA2D2CAF5FF8A2DA6CD8B0212C3F89DFA31A2\LMouFilt.sys
+ 2007-01-23 14:45:00 1,419,024 -c--a-w c:\windows\system32\DRVSTORE\lfmouhid_FACDA2D2CAF5FF8A2DA6CD8B0212C3F89DFA31A2\WdfCoInstaller01005.dll
+ 2007-01-23 14:44:00 20,496 -c--a-w c:\windows\system32\DRVSTORE\lkbdps2k_C7C81D509CBA13AA61C019ADF76AA189278662F6\L8042Kbd.sys
+ 2007-01-23 14:44:00 101,136 -c--a-w c:\windows\system32\DRVSTORE\lmoups2k_FEF7FF428B8750B3509B0F3EAAD1A5397D42DB7A\KHALMNPR.Exe
+ 2007-01-23 14:44:00 62,992 -c--a-w c:\windows\system32\DRVSTORE\lmoups2k_FEF7FF428B8750B3509B0F3EAAD1A5397D42DB7A\L8042mou.Sys
+ 2007-01-23 14:45:00 78,864 -c--a-w c:\windows\system32\DRVSTORE\lmoups2k_FEF7FF428B8750B3509B0F3EAAD1A5397D42DB7A\LMouKE.Sys
- 2008-08-26 08:11:45 347,136 ------w c:\windows\system32\dxtmsft.dll
+ 2008-10-16 20:18:31 347,136 ------w c:\windows\system32\dxtmsft.dll
- 2008-08-26 08:11:45 214,528 ------w c:\windows\system32\dxtrans.dll
+ 2008-10-16 20:18:31 214,528 ------w c:\windows\system32\dxtrans.dll
- 2008-08-26 08:11:45 133,120 ------w c:\windows\system32\extmgr.dll
+ 2008-10-16 20:18:31 133,120 ------w c:\windows\system32\extmgr.dll
- 2008-08-26 08:11:45 63,488 ----a-w c:\windows\system32\icardie.dll
+ 2008-10-16 20:18:32 63,488 ----a-w c:\windows\system32\icardie.dll
- 2008-08-25 08:39:40 70,656 ------w c:\windows\system32\ie4uinit.exe
+ 2008-10-16 13:12:20 70,656 ------w c:\windows\system32\ie4uinit.exe
- 2008-08-26 08:11:45 153,088 ------w c:\windows\system32\ieakeng.dll
+ 2008-10-16 20:18:32 153,088 ------w c:\windows\system32\ieakeng.dll
- 2008-08-26 08:11:45 230,400 ------w c:\windows\system32\ieaksie.dll
+ 2008-10-16 20:18:32 230,400 ------w c:\windows\system32\ieaksie.dll
- 2008-08-23 05:54:51 161,792 ------w c:\windows\system32\ieakui.dll
+ 2008-10-15 07:04:53 161,792 ------w c:\windows\system32\ieakui.dll
- 2008-08-26 08:11:46 383,488 ----a-w c:\windows\system32\ieapfltr.dll
+ 2008-10-16 20:18:32 383,488 ----a-w c:\windows\system32\ieapfltr.dll
- 2008-08-26 08:11:46 384,512 ------w c:\windows\system32\iedkcs32.dll
+ 2008-10-16 20:18:32 384,512 ------w c:\windows\system32\iedkcs32.dll
- 2008-10-03 17:12:27 6,066,176 ----a-w c:\windows\system32\ieframe.dll
+ 2008-10-16 20:18:35 6,066,176 ----a-w c:\windows\system32\ieframe.dll
- 2008-08-26 08:11:48 44,544 ------w c:\windows\system32\iernonce.dll
+ 2008-10-16 20:18:35 44,544 ------w c:\windows\system32\iernonce.dll
- 2008-08-26 08:11:48 267,776 ----a-w c:\windows\system32\iertutil.dll
+ 2008-10-16 20:18:35 267,776 ----a-w c:\windows\system32\iertutil.dll
- 2008-08-25 08:38:00 13,824 ----a-w c:\windows\system32\ieudinit.exe
+ 2008-10-16 13:11:09 13,824 ----a-w c:\windows\system32\ieudinit.exe
- 2008-08-26 08:11:49 27,648 ------w c:\windows\system32\jsproxy.dll
+ 2008-10-16 20:18:36 27,648 ----a-w c:\windows\system32\jsproxy.dll
- 2004-08-11 00:45:04 96,768 ----a-w c:\windows\system32\logagent.exe
+ 2008-06-10 08:17:42 96,768 ----a-w c:\windows\system32\logagent.exe
- 2008-12-02 12:26:32 17,593,280 ----a-w c:\windows\system32\MRT.exe
+ 2008-12-09 14:24:38 17,593,280 ----a-w c:\windows\system32\MRT.exe
- 2003-02-20 18:06:24 155,648 ----a-w c:\windows\system32\mscoree.dll
+ 2004-07-14 23:24:50 155,648 ----a-w c:\windows\system32\mscoree.dll
- 2003-02-20 17:43:38 16,896 ----a-w c:\windows\system32\mscorier.dll
+ 2004-07-14 22:34:06 16,896 ----a-w c:\windows\system32\mscorier.dll
- 2008-08-26 08:11:49 459,264 ----a-w c:\windows\system32\msfeeds.dll
+ 2008-10-16 20:18:37 459,264 ----a-w c:\windows\system32\msfeeds.dll
- 2008-08-26 08:11:49 52,224 ----a-w c:\windows\system32\msfeedsbs.dll
+ 2008-10-16 20:18:37 52,224 ----a-w c:\windows\system32\msfeedsbs.dll
- 2008-08-27 13:41:52 3,593,216 ----a-w c:\windows\system32\mshtml.dll
+ 2008-10-17 00:48:40 3,593,216 ----a-w c:\windows\system32\mshtml.dll
- 2008-08-26 08:11:52 477,696 ------w c:\windows\system32\mshtmled.dll
+ 2008-10-16 20:18:40 477,696 ------w c:\windows\system32\mshtmled.dll
- 2008-08-26 08:11:52 193,024 ------w c:\windows\system32\msrating.dll
+ 2008-10-16 20:18:40 193,024 ------w c:\windows\system32\msrating.dll
- 2008-08-26 08:11:52 671,232 ------w c:\windows\system32\mstime.dll
+ 2008-10-16 20:18:41 671,232 ------w c:\windows\system32\mstime.dll
- 2008-08-26 08:11:52 102,912 ------w c:\windows\system32\occache.dll
+ 2008-10-16 20:18:41 102,912 ------w c:\windows\system32\occache.dll
- 2008-12-09 18:18:26 52,764 ----a-w c:\windows\system32\perfc009.dat
+ 2008-12-15 22:45:13 52,764 ----a-w c:\windows\system32\perfc009.dat
- 2008-12-09 18:18:26 68,900 ----a-w c:\windows\system32\perfc00C.dat
+ 2008-12-15 22:45:13 63,614 ----a-w c:\windows\system32\perfc00C.dat
- 2008-12-09 18:18:26 380,350 ----a-w c:\windows\system32\perfh009.dat
+ 2008-12-15 22:45:13 380,350 ----a-w c:\windows\system32\perfh009.dat
- 2008-12-09 18:18:26 501,128 ----a-w c:\windows\system32\perfh00C.dat
+ 2008-12-15 22:45:13 445,016 ----a-w c:\windows\system32\perfh00C.dat
- 2008-08-26 08:11:52 44,544 ------w c:\windows\system32\pngfilt.dll
+ 2008-10-16 20:18:41 44,544 ------w c:\windows\system32\pngfilt.dll
+ 2008-04-14 12:00:00 25,216 ----a-w c:\windows\system32\ReinstallBackups\0016\DriverFiles\i386\kbdclass.sys
+ 2008-04-14 12:00:00 14,720 ----a-w c:\windows\system32\ReinstallBackups\0016\DriverFiles\i386\kbdhid.sys
+ 2008-04-13 17:53:20 23,680 ----a-w c:\windows\system32\ReinstallBackups\0017\DriverFiles\i386\mouclass.sys
+ 2001-08-23 16:04:42 12,288 ----a-w c:\windows\system32\ReinstallBackups\0017\DriverFiles\i386\mouhid.sys
- 2007-11-30 12:39:29 18,296 ------w c:\windows\system32\spmsg.dll
+ 2007-11-30 11:19:06 18,296 ------w c:\windows\system32\spmsg.dll
- 2008-07-11 12:42:28 62,976 ----a-w c:\windows\system32\tzchange.exe
+ 2008-10-23 10:06:59 62,976 ----a-w c:\windows\system32\tzchange.exe
- 2008-08-26 08:11:52 105,984 ----a-w c:\windows\system32\url.dll
+ 2008-10-16 20:18:41 105,984 ----a-w c:\windows\system32\url.dll
- 2008-08-26 08:11:53 1,159,680 ----a-w c:\windows\system32\urlmon.dll
+ 2008-10-16 20:18:42 1,160,192 ----a-w c:\windows\system32\urlmon.dll
- 2008-08-26 08:11:53 233,472 ----a-w c:\windows\system32\webcheck.dll
+ 2008-10-16 20:18:42 233,472 ----a-w c:\windows\system32\webcheck.dll
- 2004-08-11 00:45:04 1,027,072 ----a-w c:\windows\system32\wmnetmgr.dll
+ 2008-06-10 10:37:02 1,026,048 ----a-w c:\windows\system32\WMNetmgr.dll
- 2006-12-07 06:40:49 2,362,184 ----a-w c:\windows\system32\wmvcore.dll
+ 2008-06-10 10:57:40 2,364,472 ----a-w c:\windows\system32\WMVCore.dll
+ 2008-12-16 07:43:17 16,384 ----atw c:\windows\Temp\Perflib_Perfdata_208.dat
+ 2008-12-16 07:43:07 16,384 ----atw c:\windows\Temp\Perflib_Perfdata_5c8.dat
+ 2005-09-23 00:35:10 65,536 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.OpenMP_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0ee63867\vcomp.dll
.
-- Instantané actualisé --
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"="c:\program files\Fichiers communs\LightScribe\LightScribeControlPanel.exe" [2008-02-26 2289664]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2008-07-24 490952]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NeroFilterCheck"="c:\program files\Fichiers communs\Nero\Lib\NeroCheck.exe" [2007-03-01 153136]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2007-12-05 8523776]
"WinSys2"="c:\windows\system32\winsys2.exe" [2007-10-30 208896]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2007-12-05 81920]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2008-11-26 81000]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]
"WinampAgent"="c:\program files\Winamp\winampa.exe" [2008-09-12 36352]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2008-12-10 136600]
"HomePlayer"="c:\program files\HomePlayer\HomePlayer.exe" [2007-11-06 294912]
"RTHDCPL"="RTHDCPL.EXE" [2008-07-31 c:\windows\RTHDCPL.exe]
"nwiz"="nwiz.exe" [2007-12-05 c:\windows\system32\nwiz.exe]
"Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2007-01-23 c:\windows\KHALMNPR.Exe]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2008-12-16 688128]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
@=""
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\HomePlayer\\HomePlayer.exe"=
"c:\\Program Files\\HomePlayer\\VLC\\vlc.exe"=
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2008-12-04 111184]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\DRIVERS\aswFsBlk.sys [2008-12-04 20560]
*Newly Created Service* - HIDSERV
*Newly Created Service* - WDF01000
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
"c:\program files\Fichiers communs\LightScribe\LSRunOnce.exe"
.
.
------- Examen supplémentaire -------
.
FF - ProfilePath - c:\documents and settings\Elvis\Application Data\Mozilla\Firefox\Profiles\z9qykzta.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/ig
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-12-16 19:19:58
Windows 5.1.2600 Service Pack 3 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
.
Heure de fin: 2008-12-16 19:20:24
ComboFix-quarantined-files.txt 2008-12-16 18:20:13
ComboFix2.txt 2008-12-15 22:17:41
Avant-CF: 241*966*653*440 octets libres
Après-CF: 241,962,999,808 octets libres
597 --- E O F --- 2008-12-15 22:46:33
And the HJT log :
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:24:20, on 16/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\RTHDCPL.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\HomePlayer\HomePlayer.exe
C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\HomePlayer\vlc\vlc.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Fichiers communs\Logitech\khalshared\KHALMNPR.EXE
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Elvis\Bureau\Elvisdelsol.exe.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [WinSys2] C:\WINDOWS\system32\winsys2.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [HomePlayer] C:\Program Files\HomePlayer\HomePlayer.exe
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Logitech SetPoint.lnk = ?
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1228851348640
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
--
End of file - 5892 bytes