Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

"trojan.win32.autorun.gen" preventing external drive's data access


  • Please log in to reply
33 replies to this topic

#1 Nezha2013

Nezha2013

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Local time:01:10 PM

Posted 28 November 2013 - 01:38 AM

Hi, in advance thank you for your kind help. Please bear in mind that my knowledge in IT is basic. The problem I consult for today is that my 200+ GB data on my external hard drive is not accessible. All folders appear as shortcuts. When I doubleclick them, nothing happens and they seem to point to C:\WINDOWS\system32


Here is what happened : I am using a personal windows XP IBM T43 laptop on which the antivirus expired (my ignorance not having taken the repetitive threat warnings seriously 😔) so I was accessing internet and working daily on my Samsung G2 external drive without any protection! At that point I was able to see and access my external drive data without any problem. The laptop became very slow and annoying in daily usage, so me naively thinking that it is because of the heavy data and the number of unnecessary programs installed on it, asked help of a friend to format it. And this is what he did without saving any backup copy or even noticing there was a virus running. Now I got back my PC (still without any antivirus installed but he prefered to put a spyware on it called SUPERAntiSpyware)

When I plugged first time after the format my external drive to my laptop, I was shocked to see that all folders transformed to shortcuts of 3Ko + few other visible items (favoris, Samsung AppInst, a video, a personal .txt file which still has my content, and MyPC-2011-07-09_backup). I then checked in properties the used space on the drive, it shows 273GB of used space over the total 298GB. I then plugged my external drive to my husband's laptop who has Kaspersky and this is when I knew about the virus name that was automatically detected by the antivirus, it was "trojan.win32.autorun.gen". So this is where I am today.

Data on my external drive is very important to me, it has everything, my personal and professional records. Is there any slight hope I could recover my data one day? Please HELP! Thank you.

BC AdBot (Login to Remove)

 


#2 Aaflac

Aaflac

    Doin' Dis 'n Dat...


  • Malware Response Team
  • 2,307 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Location:USA
  • Local time:08:10 AM

Posted 28 November 2013 - 02:04 PM

:welcome: to the BC forums, Nezha2013!
 
Please do the following...
 
:step1:  Please click on the Windows  XP Start button and then on Control Panel
In Control Panel, select the Folder Options link.
Click on the View tab in the Folder Options window.
 
In the Advanced settings: area, locate the Hidden files and folders category.
Check: Show hidden files, folders, and drives
Uncheck: Hide protected operating system files (Recommended)
Click Apply and OK at the bottom of the Folder Options window.
 
:step2:  Next, download UsbFix:
http://www.en.usbfix.net
Save to the Desktop.
Double-click the downloaded USBFix file to run it.
Connect the external drive!
Press: Research
When done, the program closes on its own, and a report appears.
(The report file is also found at C:\UsbFix.txt)
 
>> Please post the UsbFix.txt (Research Mode) report in your reply.
 
:step3:  Once again, run USBFix, but, this time, press: Listing
>> Also post the UsbFix.txt (Listing Mode) report in your reply.
 
Note 1: If USBFix does not run in normal Windows, please run in Safe Mode:
Restart your computer.
 When the computer starts, tap the F8 key on the keyboard repeatedly until presented with the Advanced Boot Options menu
 Using the arrow keys, select: Safe Mode
 Press the Enter key on your keyboard to boot into the selected mode.
 
Note 2: If your AntiVirus program detects USB as malware, either let the AV program allow USBFix to run, or, temporarily disable your AntiVirus program:
Info - http://www.bleepingcomputer.com/forums/t/114351/how-to-temporarily-disable-your-anti-virus-firewall-and-anti-malware-programs/
When done with USBFix, re-enable your AV!
 
:step4:  Last, please download the Farbar Recovery Scan Tool
Download: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/
Select the version that applies to your system.
Save it to your Desktop.
 
Double-click the downloaded file to run it.
When the tool opens click Yes to the disclaimer.
 
Press the Scan button.
 
The tool makes a log (FRST.txt) in the same directory from which the tool is run (Desktop).
>> Please provide the FRST.txt in your reply.
 
The first time the tool is run, it also makes another log: Addition.txt
>> Also post the Addition.txt in your reply.
 


Old duck...


#3 Nezha2013

Nezha2013
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Local time:01:10 PM

Posted 29 November 2013 - 05:29 AM

Hello Aaflac, thanks so much for such quick and exhaustive feedback.
Important note : as said in my initial post, please consider that I do not have till today any antiVirus 
installed on my PC. I have only SUPERAntiSpyware installed. Actually I don't know which one to install considering the sotuation and also I was hesitent to install one by fear that the Antivirus deletes data on my external hard-drive. what do you recommend me to do? and which AV install?
 
Another important note for you : of course I would love to recover all my files but what matters to me today is to be able to open some important files on my external Hard disc (even if infected by the virus)  to at least copy the data visually on a paper before the files are permanently deleted if this is the ultimate solution that your investigation recommends. Would you be so kind to consider this in your analysis mechanism?
 
 
Please see bellow the requested 4 outcome logs from USBFix and Farbar (I will send them on 4 different posts due to the size)
 
Thanks, Nezha !

############################## | UsbFix V 7.152 | [Recherche]
 
Utilisateur: Administrateur (Administrateur) # POSTE
Mis à jour le 20/11/2013 par El Desaparecido - Team SosVirus
Lancé à 08:20:30 | 29/11/2013
 
 
PC: IBM (2669W5L)
CPU:         Intel® Pentium® M processor 1.86GHz
RAM -> [Total : 1022 | Free : 484]
Bios: IBM
Boot: Normal boot
 
OS: Microsoft Windows XP Professionnel (5.1.2600 32-Bit) Service Pack 2
WB: Windows Internet Explorer : 6.0.2900.2180
WB: Google Chrome : 31.0.1650.57
 
SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
FW: Windows FireWall Service [Enabled]
 
C:\ (%systemdrive%) -> Disque fixe # 39 Go (31 Go libre(s) - 78%) [] # NTFS
D:\ -> Disque fixe # 17 Go (16 Go libre(s) - 96%) [] # NTFS
E:\ -> CD-ROM
F:\ -> Disque fixe # 298 Go (25 Go libre(s) - 8%) [SAMSUNG] # FAT32
 
################## | Processus Actif |
 
C:\WINDOWS\System32\smss.exe (ID: 428 |ParentID: 4)
C:\WINDOWS\system32\winlogon.exe (ID: 880 |ParentID: 428)
C:\WINDOWS\system32\services.exe (ID: 924 |ParentID: 880)
C:\WINDOWS\system32\lsass.exe (ID: 936 |ParentID: 880)
C:\WINDOWS\system32\ibmpmsvc.exe (ID: 1084 |ParentID: 924)
C:\WINDOWS\system32\Ati2evxx.exe (ID: 1116 |ParentID: 924)
C:\WINDOWS\system32\svchost.exe (ID: 1128 |ParentID: 924)
C:\WINDOWS\System32\svchost.exe (ID: 1260 |ParentID: 924)
C:\WINDOWS\system32\Ati2evxx.exe (ID: 1484 |ParentID: 880)
C:\WINDOWS\Explorer.EXE (ID: 1832 |ParentID: 1808)
C:\WINDOWS\system32\spoolsv.exe (ID: 2008 |ParentID: 924)
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE (ID: 528 |ParentID: 924)
C:\WINDOWS\system32\ctfmon.exe (ID: 572 |ParentID: 1832)
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (ID: 588 |ParentID: 1832)
C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ZDWlan.exe (ID: 664 |ParentID: 1832)
C:\Program Files\PDF Architect\HelperService.exe (ID: 740 |ParentID: 924)
C:\Program Files\PDF Architect\ConversionService.exe (ID: 836 |ParentID: 924)
C:\WINDOWS\system32\wscntfy.exe (ID: 1912 |ParentID: 1260)
C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe (ID: 3872 |ParentID: 924)
C:\WINDOWS\system32\SearchIndexer.exe (ID: 3584 |ParentID: 924)
C:\Program Files\Windows Desktop Search\WindowsSearch.exe (ID: 980 |ParentID: 2852)
C:\WINDOWS\system32\wuauclt.exe (ID: 3452 |ParentID: 1260)
C:\Program Files\Internet Explorer\iexplore.exe (ID: 2040 |ParentID: 1824)
C:\Program Files\Google\Chrome\Application\chrome.exe (ID: 2932 |ParentID: 1832)
C:\Program Files\Google\Chrome\Application\chrome.exe (ID: 2208 |ParentID: 2932)
C:\Program Files\Google\Chrome\Application\chrome.exe (ID: 976 |ParentID: 2932)
C:\WINDOWS\system32\SearchProtocolHost.exe (ID: 4056 |ParentID: 3584)
C:\UsbFix\Go.exe (ID: 3828 |ParentID: 700)
 
################## | Regedit Run |
 
04 - HKLM\SOFTWARE | Run : [Adobe Reader Speed Launcher] - C:\WINDOWS\System32\service158.exe
04 - HKLM\SOFTWARE | Run : [mobilegeni daemon] - C:\Program Files\Mobogenie\DaemonProcess.exe
04 - HKLM\SOFTWARE | RunOnce : [] - 
04 - HKU\S-1-5-19\SOFTWARE | Run : [CTFMON.EXE] - C:\WINDOWS\system32\CTFMON.EXE
04 - HKU\S-1-5-20\SOFTWARE | Run : [CTFMON.EXE] - C:\WINDOWS\system32\CTFMON.EXE
04 - HKU\S-1-5-21-1275210071-1637723038-725345543-500\SOFTWARE | Run : [CTFMON.EXE] - C:\WINDOWS\system32\ctfmon.exe
04 - HKU\S-1-5-21-1275210071-1637723038-725345543-500\SOFTWARE | Run : [Adobe Reader Speed Launcher] - C:\WINDOWS\System32\service158.exe
04 - HKU\S-1-5-21-1275210071-1637723038-725345543-500\SOFTWARE | Run : [SUPERAntiSpyware] - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
04 - HKU\S-1-5-18\SOFTWARE | Run : [CTFMON.EXE] - C:\WINDOWS\system32\CTFMON.EXE
 
################## | Recherche générique |
 
Présent! C:\Documents and Settings\Administrateur\Application Data\SUPERAntiSpyware.com
Présent! C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
Présent! F:\SamsungSoftware.lnk
Présent! F:\2-Events.lnk
Présent! F:\3-Perso.lnk
Présent! F:\4-Utilities.lnk
Présent! F:\1-Marketing Experience.lnk
Présent! F:\5-Exchange.lnk
Présent! F:\NEZHA.lnk
Présent! F:\0-Marketing Know How.lnk
Présent! F:\Tedxwomen 2012.lnk
Présent! F:\ipad.lnk
Présent! F:\Presentations Algerie.lnk
Présent! F:\My Desktop.lnk
Présent! F:\Roadshow in Algeria.lnk
Présent! F:\Program files.lnk
Présent! F:\T43.lnk
Présent! F:\_NSN in a Box.lnk
Présent! F:\_My Book.lnk
Présent! F:\_Personal Development Library.lnk
Présent! F:\iPhone.lnk
Présent! F:\_Entrepreneur tools.lnk
Présent! F:\_INPT.lnk
Présent! F:\_My Community.lnk
Présent! F:\_Kaseya.lnk
Présent! F:\temp to read and clean.lnk
Présent! F:\_My Company.lnk
Présent! F:\_Sport.lnk
Présent! F:\_Favorites 2013 NSN end.lnk
Présent! F:\dd96241e372269c9b17864664bd4.lnk
Présent! F:\voyage paris video.lnk
Présent! F:\_Nezha in Juniper.lnk
Présent! F:\_Doctorat.lnk
Présent! F:\_Enseignement supérieur.lnk
Présent! F:\Entreprise papa tghat.lnk
Présent! F:\RECYCLER\autorun.exe 
Présent! F:\.\RECYCLER\autorun.exe
Présent! F:\Autorun.inf
 
################## | Référence de comparaison MD5 |
 
Md5 : 7B59F98CDBF9F5795EC07BAE88DF95DC -> F:\RECYCLER\autorun.exe 
 
################## | Comparaison MD5 |
 
Présent! Md5 : 7B59F98CDBF9F5795EC07BAE88DF95DC -> C:\WINDOWS\system32\service158.exe
Présent! Md5 : 7B59F98CDBF9F5795EC07BAE88DF95DC -> F:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP16\A0009083.exe
Présent! Md5 : 7B59F98CDBF9F5795EC07BAE88DF95DC -> F:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP16\A0009085.exe
Présent! Md5 : 7B59F98CDBF9F5795EC07BAE88DF95DC -> F:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP20\A0019643.exe
Présent! Md5 : 7B59F98CDBF9F5795EC07BAE88DF95DC -> F:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP21\A0021366.exe
Présent! Md5 : 7B59F98CDBF9F5795EC07BAE88DF95DC -> F:\RECYCLER\autorun.exe
 
################## | Registre |
 
Présent! HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon|Adobe Reader Speed Launcher
Présent! HKU\S-1-5-21-1275210071-1637723038-725345543-500\Software\Microsoft\Windows\CurrentVersion\Run|SUPERAntiSpyware
Présent! HKCU\Software\Microsoft\Windows\CurrentVersion\Run|SUPERAntiSpyware
 
################## | Vaccin |
 
(!) Cet ordinateur n'est pas vacciné!
 
################## | E.O.F | http://www.usbfix.net - http://www.sosvirus.net |


#4 Nezha2013

Nezha2013
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Local time:01:10 PM

Posted 29 November 2013 - 05:30 AM

############################## | UsbFix V 7.152 | [Listing]
 
Utilisateur: Administrateur (Administrateur) # POSTE
Mis à jour le 20/11/2013 par El Desaparecido - Team SosVirus
Lancé à 08:33:12 | 29/11/2013
 
 
PC: IBM (2669W5L)
CPU:         Intel® Pentium® M processor 1.86GHz
RAM -> [Total : 1022 | Free : 607]
Bios: IBM
Boot: Normal boot
 
OS: Microsoft Windows XP Professionnel (5.1.2600 32-Bit) Service Pack 2
WB: Windows Internet Explorer : 6.0.2900.2180
WB: Google Chrome : 31.0.1650.57
 
SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
FW: Windows FireWall Service [Enabled]
 
C:\ (%systemdrive%) -> Disque fixe # 39 Go (31 Go libre(s) - 78%) [] # NTFS
D:\ -> Disque fixe # 17 Go (16 Go libre(s) - 96%) [] # NTFS
E:\ -> CD-ROM
F:\ -> Disque fixe # 298 Go (25 Go libre(s) - 8%) [SAMSUNG] # FAT32
 
################## | Listing |
 
[25/11/2013 - 19:52:15 | D ] C:\2e2471e389523f579e89ead52d5616
[25/11/2013 - 09:40:46 | A | 0] C:\AUTOEXEC.BAT
[25/11/2013 - 09:35:23 | SH | 212] C:\boot.ini
[28/08/2001 - 12:00:00 | RASH | 4952] C:\Bootfont.bin
[25/11/2013 - 09:40:46 | A | 0] C:\CONFIG.SYS
[25/11/2013 - 09:46:18 | D ] C:\Documents and Settings
[25/11/2013 - 11:00:21 | D ] C:\DRIVERS
[25/11/2013 - 09:40:46 | RASH | 0] C:\IO.SYS
[25/11/2013 - 09:40:46 | RASH | 0] C:\MSDOS.SYS
[25/11/2013 - 10:02:45 | RHD ] C:\MSOCache
[03/08/2004 - 20:38:34 | RASH | 47564] C:\NTDETECT.COM
[03/08/2004 - 20:59:44 | RASH | 251712] C:\ntldr
[25/11/2013 - 12:16:51 | ASH | 1610612736] C:\pagefile.sys
[29/11/2013 - 08:17:45 | RD ] C:\Program Files
[25/11/2013 - 10:40:46 | SHD ] C:\RECYCLER
[25/11/2013 - 09:46:09 | SHD ] C:\System Volume Information
[29/11/2013 - 08:33:13 | D ] C:\UsbFix
[29/11/2013 - 08:33:13 | A | 1934] C:\UsbFix [Listing 1 ] POSTE.txt
[29/11/2013 - 08:25:06 | A | 6666] C:\UsbFix [Scan 1] POSTE.txt
[29/11/2013 - 08:26:59 | D ] C:\WINDOWS
[10/06/2012 - 19:58:26 | A | 1644468] D:\IMG_0038.JPG
[10/06/2012 - 19:58:26 | A | 2188926] D:\IMG_0043.JPG
[10/06/2012 - 19:58:28 | A | 2182720] D:\IMG_0047.JPG
[10/06/2012 - 19:58:30 | A | 2597109] D:\IMG_0053.JPG
[10/06/2012 - 19:58:32 | A | 2421348] D:\IMG_0056.JPG
[10/06/2012 - 19:58:32 | A | 2412741] D:\IMG_0057.JPG
[10/06/2012 - 19:58:32 | A | 124054] D:\IMG_0059.JPG
[10/06/2012 - 19:58:34 | A | 2245369] D:\IMG_0064.JPG
[10/06/2012 - 19:58:34 | A | 1937187] D:\IMG_0065.JPG
[10/06/2012 - 19:58:34 | A | 2119803] D:\IMG_0066.JPG
[10/06/2012 - 19:58:36 | A | 2025269] D:\IMG_0071.JPG
[10/06/2012 - 19:58:36 | A | 1992737] D:\IMG_0075.JPG
[10/06/2012 - 19:58:38 | A | 1854137] D:\IMG_0077.JPG
[10/06/2012 - 19:58:40 | A | 1888780] D:\IMG_0078.JPG
[10/06/2012 - 19:58:42 | A | 1859558] D:\IMG_0084.JPG
[10/06/2012 - 19:58:42 | A | 1986319] D:\IMG_0086.JPG
[10/06/2012 - 19:58:42 | A | 2034987] D:\IMG_0091.JPG
[10/06/2012 - 19:58:44 | A | 1999913] D:\IMG_0093.JPG
[10/06/2012 - 19:58:46 | A | 2097030] D:\IMG_0095.JPG
[10/06/2012 - 19:58:46 | A | 124436] D:\IMG_0096.JPG
[10/06/2012 - 19:58:46 | A | 1963236] D:\IMG_0101.JPG
[10/06/2012 - 19:58:48 | A | 1986203] D:\IMG_0107.JPG
[10/06/2012 - 19:58:48 | A | 2031336] D:\IMG_0115.JPG
[10/06/2012 - 19:58:50 | A | 2184601] D:\IMG_0131.JPG
[10/06/2012 - 19:58:52 | A | 1907846] D:\IMG_0138.JPG
[10/06/2012 - 19:58:52 | A | 1772583] D:\IMG_0149.JPG
[10/06/2012 - 19:58:52 | A | 132016] D:\IMG_0159.JPG
[10/06/2012 - 19:58:52 | A | 115453] D:\IMG_0160.JPG
[10/06/2012 - 19:58:52 | A | 129751] D:\IMG_0161.JPG
[10/06/2012 - 19:58:52 | A | 116371] D:\IMG_0167.JPG
[10/06/2012 - 19:58:54 | A | 1762784] D:\IMG_0169.JPG
[10/06/2012 - 19:58:56 | A | 1892034] D:\IMG_0171.JPG
[10/06/2012 - 19:58:56 | A | 147812] D:\IMG_0184.JPG
[10/06/2012 - 19:58:56 | A | 160845] D:\IMG_0187.JPG
[10/06/2012 - 19:58:56 | A | 2098160] D:\IMG_0189.JPG
[10/06/2012 - 19:58:56 | A | 2170981] D:\IMG_0201.JPG
[10/06/2012 - 19:58:58 | A | 2400417] D:\IMG_0202.JPG
[10/06/2012 - 19:58:58 | A | 1031848] D:\IMG_0203.JPG
[10/06/2012 - 19:59:00 | A | 1946940] D:\IMG_0204.JPG
[10/06/2012 - 20:01:36 | A | 1766380] D:\IMG_0208.JPG
[10/06/2012 - 20:01:36 | A | 1655860] D:\IMG_0209.JPG
[10/06/2012 - 20:01:38 | A | 1837414] D:\IMG_0210.JPG
[10/06/2012 - 20:01:40 | A | 1778338] D:\IMG_0211.JPG
[10/06/2012 - 20:01:40 | A | 1976130] D:\IMG_0213.JPG
[10/06/2012 - 20:01:42 | A | 1995164] D:\IMG_0214.JPG
[10/06/2012 - 20:01:42 | A | 2004154] D:\IMG_0215.JPG
[10/06/2012 - 20:01:44 | A | 1870691] D:\IMG_0216.JPG
[10/06/2012 - 20:01:46 | A | 2035390] D:\IMG_0217.JPG
[10/06/2012 - 20:01:48 | A | 1900500] D:\IMG_0218.JPG
[10/06/2012 - 20:01:50 | A | 1445039] D:\IMG_0225.JPG
[10/06/2012 - 20:01:50 | A | 1638039] D:\IMG_0236.JPG
[10/06/2012 - 20:01:50 | A | 1518562] D:\IMG_0238.JPG
[10/06/2012 - 20:01:52 | A | 1986437] D:\IMG_0239.JPG
[10/06/2012 - 20:01:54 | A | 2603138] D:\IMG_0240.JPG
[10/06/2012 - 20:01:56 | A | 2065774] D:\IMG_0241.JPG
[10/06/2012 - 20:01:56 | A | 1215200] D:\IMG_0242.JPG
[10/06/2012 - 20:01:58 | A | 1800169] D:\IMG_0246.JPG
[10/06/2012 - 20:01:58 | A | 1578596] D:\IMG_0248.JPG
[10/06/2012 - 20:02:00 | A | 1956863] D:\IMG_0249.JPG
[10/06/2012 - 20:02:02 | A | 1711133] D:\IMG_0250.JPG
[10/06/2012 - 20:02:02 | A | 877350] D:\IMG_0253.JPG
[10/06/2012 - 20:02:04 | A | 2150694] D:\IMG_0255.JPG
[10/06/2012 - 20:02:08 | A | 2392077] D:\IMG_0256.JPG
[10/06/2012 - 20:02:08 | A | 109505] D:\IMG_0305.JPG
[10/06/2012 - 20:02:10 | A | 1571160] D:\IMG_0307.JPG
[10/06/2012 - 20:02:10 | A | 1393721] D:\IMG_0308.JPG
[10/06/2012 - 20:02:12 | A | 138498] D:\IMG_0320.JPG
[10/06/2012 - 20:02:12 | A | 1966719] D:\IMG_0323.JPG
[10/06/2012 - 20:02:16 | A | 1941209] D:\IMG_0325.JPG
[10/06/2012 - 20:02:16 | A | 1706658] D:\IMG_0332.JPG
[10/06/2012 - 20:02:16 | A | 1588839] D:\IMG_0341.JPG
[10/06/2012 - 20:02:16 | A | 1967835] D:\IMG_0343.JPG
[10/06/2012 - 20:02:16 | A | 96449] D:\IMG_0345.JPG
[10/06/2012 - 20:02:18 | A | 1696373] D:\IMG_0381.JPG
[10/06/2012 - 20:02:18 | A | 1951304] D:\IMG_0392.JPG
[10/06/2012 - 20:02:20 | A | 1053640] D:\IMG_0395.JPG
[10/06/2012 - 20:02:32 | A | 1963982] D:\IMG_0436.JPG
[10/06/2012 - 20:02:20 | A | 2035828] D:\IMG_0437.JPG
[10/06/2012 - 20:02:20 | A | 2208040] D:\IMG_0438.JPG
[10/06/2012 - 20:02:22 | A | 1797256] D:\IMG_0441.JPG
[10/06/2012 - 20:02:24 | A | 2585240] D:\IMG_0444.JPG
[10/06/2012 - 20:02:26 | A | 2141431] D:\IMG_0448.JPG
[10/06/2012 - 20:02:26 | A | 1814176] D:\IMG_0463.JPG
[10/06/2012 - 20:02:28 | A | 2442175] D:\IMG_0464.JPG
[10/06/2012 - 20:02:30 | A | 2039177] D:\IMG_0471.JPG
[10/06/2012 - 20:02:30 | A | 1889271] D:\IMG_0502.JPG
[10/06/2012 - 20:02:30 | A | 2040670] D:\IMG_0503.JPG
[10/06/2012 - 20:02:30 | A | 1837508] D:\IMG_0510.JPG
[10/06/2012 - 20:02:32 | A | 1788009] D:\IMG_0514.JPG
[10/06/2012 - 20:02:32 | A | 1671775] D:\IMG_0517.JPG
[10/06/2012 - 20:02:32 | A | 1777980] D:\IMG_0518.JPG
[10/06/2012 - 20:02:32 | A | 1972831] D:\IMG_0519.JPG
[10/06/2012 - 20:02:32 | A | 1880556] D:\IMG_0521.JPG
[10/06/2012 - 20:02:32 | A | 1870101] D:\IMG_0522.JPG
[10/06/2012 - 20:02:32 | A | 1907216] D:\IMG_0523.JPG
[10/06/2012 - 20:02:34 | A | 1937431] D:\IMG_0525.JPG
[10/06/2012 - 20:02:34 | A | 2015631] D:\IMG_0526.JPG
[10/06/2012 - 20:02:36 | A | 2081424] D:\IMG_0533.JPG
[10/06/2012 - 20:02:36 | A | 2023862] D:\IMG_0534.JPG
[10/06/2012 - 20:02:36 | A | 2186693] D:\IMG_0537.JPG
[10/06/2012 - 20:02:36 | A | 1896236] D:\IMG_0538.JPG
[10/06/2012 - 20:02:36 | A | 1894619] D:\IMG_0541.JPG
[10/06/2012 - 20:02:38 | A | 1944177] D:\IMG_0548.JPG
[10/06/2012 - 20:02:38 | A | 1914485] D:\IMG_0552.JPG
[10/06/2012 - 20:02:38 | A | 1508990] D:\IMG_0553.JPG
[10/06/2012 - 20:02:38 | A | 1511177] D:\IMG_0554.JPG
[10/06/2012 - 20:02:40 | A | 1717601] D:\IMG_0557.JPG
[10/06/2012 - 20:02:42 | A | 2350723] D:\IMG_0559.JPG
[10/06/2012 - 20:02:42 | A | 1888456] D:\IMG_0560.JPG
[10/06/2012 - 20:02:42 | A | 1747267] D:\IMG_0561.JPG
[10/06/2012 - 20:02:42 | A | 1097619] D:\IMG_0562.JPG
[10/06/2012 - 20:02:42 | A | 1672628] D:\IMG_0563.JPG
[10/06/2012 - 20:02:44 | A | 2208901] D:\IMG_0564.JPG
[10/06/2012 - 20:02:44 | A | 1802037] D:\IMG_0565.JPG
[10/06/2012 - 20:02:44 | A | 1695486] D:\IMG_0566.JPG
[10/06/2012 - 20:02:46 | A | 1715604] D:\IMG_0567.JPG
[10/06/2012 - 20:02:46 | A | 1547020] D:\IMG_0568.JPG
[10/06/2012 - 20:05:08 | A | 92026] D:\IMG_0581.JPG
[10/06/2012 - 20:07:42 | A | 2569096] D:\IMG_0586.JPG
[10/06/2012 - 20:07:42 | A | 2250933] D:\IMG_0588.JPG
[10/06/2012 - 20:07:54 | A | 2008694] D:\IMG_0612.JPG
[10/06/2012 - 20:07:56 | A | 2088671] D:\IMG_0613.JPG
[10/06/2012 - 20:07:56 | A | 1892258] D:\IMG_0614.JPG
[10/06/2012 - 20:07:58 | A | 2127605] D:\IMG_0615.JPG
[10/06/2012 - 20:08:00 | A | 2244213] D:\IMG_0616.JPG
[10/06/2012 - 20:08:00 | A | 1793118] D:\IMG_0617.JPG
[10/06/2012 - 20:08:02 | A | 1886424] D:\IMG_0618.JPG
[10/06/2012 - 20:08:04 | A | 1442485] D:\IMG_0620.JPG
[10/06/2012 - 20:08:04 | A | 2044726] D:\IMG_0621.JPG
[10/06/2012 - 20:08:06 | A | 1192081] D:\IMG_0622.JPG
[10/06/2012 - 20:08:06 | A | 1868813] D:\IMG_0628.JPG
[10/06/2012 - 20:08:08 | A | 1597965] D:\IMG_0629.JPG
[10/06/2012 - 20:08:08 | A | 1049904] D:\IMG_0630.JPG
[10/06/2012 - 20:08:08 | A | 1719912] D:\IMG_0634.JPG
[10/06/2012 - 20:08:10 | A | 2659040] D:\IMG_0635.JPG
[10/06/2012 - 20:08:10 | A | 2577463] D:\IMG_0636.JPG
[10/06/2012 - 20:08:10 | A | 2636059] D:\IMG_0637.JPG
[10/06/2012 - 20:08:10 | A | 2884444] D:\IMG_0638.JPG
[10/06/2012 - 20:08:10 | A | 2568567] D:\IMG_0639.JPG
[10/06/2012 - 20:08:12 | A | 3240336] D:\IMG_0640.JPG
[10/06/2012 - 20:08:12 | A | 3054498] D:\IMG_0641.JPG
[10/06/2012 - 20:08:14 | A | 1774976] D:\IMG_0643.JPG
[10/06/2012 - 20:08:14 | A | 2767888] D:\IMG_0646.JPG
[10/06/2012 - 20:08:14 | A | 2165394] D:\IMG_0647.JPG
[10/06/2012 - 20:08:16 | A | 2568701] D:\IMG_0653.JPG
[10/06/2012 - 20:08:16 | A | 2379742] D:\IMG_0655.JPG
[10/06/2012 - 20:08:16 | A | 2666344] D:\IMG_0656.JPG
[10/06/2012 - 20:08:20 | A | 2706770] D:\IMG_0657.JPG
[10/06/2012 - 20:08:20 | A | 2652780] D:\IMG_0658.JPG
[10/06/2012 - 20:08:22 | A | 2379589] D:\IMG_0659.JPG
[10/06/2012 - 20:08:24 | A | 2503435] D:\IMG_0660.JPG
[10/06/2012 - 20:08:24 | A | 1425005] D:\IMG_0665.JPG
[10/06/2012 - 20:08:26 | A | 1411214] D:\IMG_0666.JPG
[10/06/2012 - 20:08:26 | A | 1438662] D:\IMG_0667.JPG
[10/06/2012 - 20:08:26 | A | 1211218] D:\IMG_0670.JPG
[10/06/2012 - 20:08:28 | A | 1327556] D:\IMG_0671.JPG
[10/06/2012 - 20:08:28 | A | 886530] D:\IMG_0676.JPG
[10/06/2012 - 20:08:30 | A | 1199498] D:\IMG_0677.JPG
[10/06/2012 - 20:08:30 | A | 2348922] D:\IMG_0678.JPG
[10/06/2012 - 20:08:32 | A | 1534529] D:\IMG_0679.JPG
[10/06/2012 - 20:08:32 | A | 1888519] D:\IMG_0680.JPG
[10/06/2012 - 20:08:32 | A | 1223222] D:\IMG_0681.JPG
[10/06/2012 - 20:08:32 | A | 1242760] D:\IMG_0682.JPG
[10/06/2012 - 20:08:34 | A | 2409877] D:\IMG_0683.JPG
[10/06/2012 - 20:08:36 | A | 2883507] D:\IMG_0684.JPG
[10/06/2012 - 20:08:36 | A | 2525053] D:\IMG_0688.JPG
[10/06/2012 - 20:08:38 | A | 2566343] D:\IMG_0689.JPG
[10/06/2012 - 20:08:40 | A | 2254185] D:\IMG_0690.JPG
[10/06/2012 - 20:08:40 | A | 1622083] D:\IMG_0691.JPG
[10/06/2012 - 20:08:40 | A | 2228680] D:\IMG_0697.JPG
[10/06/2012 - 20:08:40 | A | 2276319] D:\IMG_0698.JPG
[10/06/2012 - 20:08:44 | A | 2302463] D:\IMG_0699.JPG
[10/06/2012 - 20:10:54 | A | 1727140] D:\IMG_0711.JPG
[10/06/2012 - 20:10:56 | A | 1608551] D:\IMG_0719.JPG
[10/06/2012 - 20:10:56 | A | 1445177] D:\IMG_0720.JPG
[10/06/2012 - 20:10:56 | A | 1724534] D:\IMG_0721.JPG
[10/06/2012 - 20:10:56 | A | 1335466] D:\IMG_0722.JPG
[10/06/2012 - 20:10:56 | A | 1381121] D:\IMG_0723.JPG
[10/06/2012 - 20:10:58 | A | 2325494] D:\IMG_0724.JPG
[10/06/2012 - 20:11:00 | A | 1668546] D:\IMG_0725.JPG
[10/06/2012 - 20:11:00 | A | 1279750] D:\IMG_0726.JPG
[10/06/2012 - 20:11:00 | A | 1718312] D:\IMG_0727.JPG
[10/06/2012 - 20:11:00 | A | 1290320] D:\IMG_0728.JPG
[10/06/2012 - 20:11:00 | A | 1461850] D:\IMG_0729.JPG
[10/06/2012 - 20:11:00 | A | 1202232] D:\IMG_0730.JPG
[10/06/2012 - 20:11:00 | A | 1355857] D:\IMG_0731.JPG
[10/06/2012 - 20:11:00 | A | 594319] D:\IMG_0732.JPG
[10/06/2012 - 20:11:02 | A | 1310658] D:\IMG_0735.JPG
[10/06/2012 - 20:11:02 | A | 603886] D:\IMG_0736.JPG
[10/06/2012 - 20:11:02 | A | 696028] D:\IMG_0737.JPG
[10/06/2012 - 20:11:02 | A | 1254803] D:\IMG_0738.JPG
[10/06/2012 - 20:11:04 | A | 990081] D:\IMG_0739.JPG
[10/06/2012 - 20:11:04 | A | 113454] D:\IMG_0740.JPG
[10/06/2012 - 20:11:04 | A | 112422] D:\IMG_0741.JPG
[10/06/2012 - 20:11:04 | A | 135350] D:\IMG_0742.JPG
[10/06/2012 - 20:11:04 | A | 2126087] D:\IMG_0743.JPG
[10/06/2012 - 20:11:04 | A | 1865170] D:\IMG_0744.JPG
[10/06/2012 - 20:11:04 | A | 1817324] D:\IMG_0745.JPG
[10/06/2012 - 20:11:06 | A | 1876236] D:\IMG_0746.JPG
[10/06/2012 - 20:11:08 | A | 2129800] D:\IMG_0747.JPG
[10/06/2012 - 20:11:10 | A | 1973544] D:\IMG_0750.JPG
[10/06/2012 - 20:11:10 | A | 2093773] D:\IMG_0751.JPG
[10/06/2012 - 20:11:12 | A | 2049282] D:\IMG_0752.JPG
[10/06/2012 - 20:11:14 | A | 2247293] D:\IMG_0755.JPG
[10/06/2012 - 20:11:16 | A | 2292243] D:\IMG_0757.JPG
[10/06/2012 - 20:11:16 | A | 2178028] D:\IMG_0758.JPG
[10/06/2012 - 20:11:18 | A | 1926194] D:\IMG_0761.JPG
[10/06/2012 - 20:11:20 | A | 1899098] D:\IMG_0762.JPG
[10/06/2012 - 20:11:20 | A | 2226606] D:\IMG_0765.JPG
[10/06/2012 - 20:11:20 | A | 2175327] D:\IMG_0766.JPG
[10/06/2012 - 20:11:22 | A | 2159459] D:\IMG_0768.JPG
[10/06/2012 - 20:11:24 | A | 2017337] D:\IMG_0769.JPG
[10/06/2012 - 20:11:24 | A | 1322052] D:\IMG_0787.JPG
[10/06/2012 - 20:11:24 | A | 1363321] D:\IMG_0790.JPG
[10/06/2012 - 20:11:24 | A | 1937212] D:\IMG_0792.JPG
[10/06/2012 - 20:11:24 | A | 2032315] D:\IMG_0793.JPG
[10/06/2012 - 20:11:26 | A | 2482117] D:\IMG_0794.JPG
[10/06/2012 - 20:11:26 | A | 2672817] D:\IMG_0795.JPG
[10/06/2012 - 20:11:26 | A | 2665493] D:\IMG_0796.JPG
[10/06/2012 - 20:11:26 | A | 2799902] D:\IMG_0797.JPG
[10/06/2012 - 20:11:26 | A | 115952] D:\IMG_0799.JPG
[10/06/2012 - 20:11:26 | A | 2152014] D:\IMG_0802.JPG
[10/06/2012 - 20:11:28 | A | 1974415] D:\IMG_0803.JPG
[10/06/2012 - 20:11:30 | A | 2454742] D:\IMG_0804.JPG
[10/06/2012 - 20:11:30 | A | 2309338] D:\IMG_0805.JPG
[10/06/2012 - 20:11:32 | A | 2195832] D:\IMG_0807.JPG
[10/06/2012 - 20:11:34 | A | 3019265] D:\IMG_0810.JPG
[10/06/2012 - 20:11:36 | A | 2449148] D:\IMG_0811.JPG
[10/06/2012 - 20:11:36 | A | 2466859] D:\IMG_0812.JPG
[10/06/2012 - 20:11:36 | A | 2840139] D:\IMG_0813.JPG
[10/06/2012 - 20:11:36 | A | 2920477] D:\IMG_0814.JPG
[10/06/2012 - 20:11:38 | A | 115640] D:\IMG_0815.JPG
[10/06/2012 - 20:11:38 | A | 109746] D:\IMG_0816.JPG
[10/06/2012 - 20:11:38 | A | 1957985] D:\IMG_0817.JPG
[10/06/2012 - 20:11:38 | A | 2027609] D:\IMG_0818.JPG
[10/06/2012 - 20:11:40 | A | 2041210] D:\IMG_0820.JPG
[10/06/2012 - 20:11:40 | A | 2034070] D:\IMG_0822.JPG
[10/06/2012 - 20:11:40 | A | 2082890] D:\IMG_0823.JPG
[10/06/2012 - 20:11:42 | A | 2187381] D:\IMG_0824.JPG
[10/06/2012 - 20:11:44 | A | 2586742] D:\IMG_0825.JPG
[10/06/2012 - 20:11:46 | A | 1940776] D:\IMG_0828.JPG
[10/06/2012 - 20:11:48 | A | 2047453] D:\IMG_0829.JPG
[10/06/2012 - 20:11:48 | A | 2220817] D:\IMG_0830.JPG
[10/06/2012 - 20:11:50 | A | 2121841] D:\IMG_0831.JPG
[10/06/2012 - 20:11:50 | A | 2145511] D:\IMG_0832.JPG
[10/06/2012 - 20:11:52 | A | 1948467] D:\IMG_0833.JPG
[10/06/2012 - 20:11:54 | A | 1981810] D:\IMG_0834.JPG
[10/06/2012 - 20:11:56 | A | 3050433] D:\IMG_0835.JPG
[10/06/2012 - 20:11:58 | A | 2962010] D:\IMG_0836.JPG
[10/06/2012 - 20:11:58 | A | 96068] D:\IMG_0837.JPG
[10/06/2012 - 20:12:00 | A | 2255683] D:\IMG_0838.JPG
[10/06/2012 - 20:12:00 | A | 2608491] D:\IMG_0839.JPG
[10/06/2012 - 20:12:02 | A | 1948336] D:\IMG_0841.JPG
[10/06/2012 - 20:12:04 | A | 1996482] D:\IMG_0842.JPG
[10/06/2012 - 20:12:06 | A | 2080128] D:\IMG_0843.JPG
[10/06/2012 - 20:12:08 | A | 2050557] D:\IMG_0844.JPG
[10/06/2012 - 20:12:10 | A | 2184397] D:\IMG_0845.JPG
[10/06/2012 - 20:12:10 | A | 115685] D:\IMG_0855.JPG
[10/06/2012 - 20:12:10 | A | 2179261] D:\IMG_0858.JPG
[10/06/2012 - 20:12:12 | A | 2004212] D:\IMG_0859.JPG
[10/06/2012 - 20:12:14 | A | 2091538] D:\IMG_0861.JPG
[10/06/2012 - 20:12:14 | A | 2174903] D:\IMG_0862.JPG
[10/06/2012 - 20:12:16 | A | 2103595] D:\IMG_0863.JPG
[10/06/2012 - 20:12:18 | A | 2110805] D:\IMG_0864.JPG
[10/06/2012 - 20:12:20 | A | 3286128] D:\IMG_0865.JPG
[10/06/2012 - 20:12:20 | A | 3177759] D:\IMG_0866.JPG
[10/06/2012 - 20:12:22 | A | 1062464] D:\IMG_0867.JPG
[10/06/2012 - 20:12:22 | A | 122316] D:\IMG_0868.JPG
[10/06/2012 - 20:12:22 | A | 2334789] D:\IMG_0870.JPG
[10/06/2012 - 20:12:24 | A | 1729208] D:\IMG_0871.JPG
[10/06/2012 - 20:12:26 | A | 2216592] D:\IMG_0873.JPG
[10/06/2012 - 20:12:28 | A | 2256523] D:\IMG_0874.JPG
[10/06/2012 - 20:12:28 | A | 2228011] D:\IMG_0875.JPG
[10/06/2012 - 20:12:28 | A | 2153234] D:\IMG_0876.JPG
[10/06/2012 - 20:12:28 | A | 1895780] D:\IMG_0877.JPG
[10/06/2012 - 20:12:30 | A | 1842708] D:\IMG_0879.JPG
[10/06/2012 - 20:12:30 | A | 2045621] D:\IMG_0880.JPG
[10/06/2012 - 20:12:32 | A | 2159738] D:\IMG_0888.JPG
[10/06/2012 - 20:12:32 | A | 97174] D:\IMG_0891.JPG
[10/06/2012 - 20:12:32 | A | 1353473] D:\IMG_0892.JPG
[10/06/2012 - 20:12:34 | A | 1810777] D:\IMG_0897.JPG
[10/06/2012 - 20:12:34 | A | 128867] D:\IMG_0899.JPG
[10/06/2012 - 20:12:34 | A | 1765310] D:\IMG_0902.JPG
[10/06/2012 - 20:12:36 | A | 1750941] D:\IMG_0903.JPG
[10/06/2012 - 20:12:38 | A | 1806458] D:\IMG_0905.JPG
[10/06/2012 - 20:12:38 | A | 1938657] D:\IMG_0907.JPG
[10/06/2012 - 20:12:38 | A | 2023648] D:\IMG_0909.JPG
[10/06/2012 - 20:12:40 | A | 98863] D:\IMG_0910.JPG
[10/06/2012 - 20:12:40 | A | 122250] D:\IMG_0911.JPG
[10/06/2012 - 20:12:40 | A | 1907509] D:\IMG_0913.JPG
[10/06/2012 - 20:12:40 | A | 2118673] D:\IMG_0919.JPG
[10/06/2012 - 20:12:40 | A | 105728] D:\IMG_0920.JPG
[10/06/2012 - 20:12:40 | A | 112334] D:\IMG_0921.JPG
[10/06/2012 - 20:12:40 | A | 119144] D:\IMG_0922.JPG
[10/06/2012 - 20:12:44 | A | 2453895] D:\IMG_0923.JPG
[10/06/2012 - 20:12:44 | A | 756063] D:\IMG_0924.JPG
[10/06/2012 - 20:12:46 | A | 2036202] D:\IMG_0925.JPG
[10/06/2012 - 20:12:46 | A | 1928769] D:\IMG_0926.JPG
[10/06/2012 - 20:12:48 | A | 875468] D:\IMG_0928.JPG
[10/06/2012 - 20:12:48 | A | 1822876] D:\IMG_0929.JPG
[10/06/2012 - 20:12:48 | A | 1691576] D:\IMG_0930.JPG
[10/06/2012 - 20:12:48 | A | 1607035] D:\IMG_0931.JPG
[10/06/2012 - 20:12:50 | A | 1624689] D:\IMG_0932.JPG
[10/06/2012 - 20:12:50 | A | 1844384] D:\IMG_0933.JPG
[10/06/2012 - 20:12:52 | A | 1807018] D:\IMG_0934.JPG
[10/06/2012 - 20:12:54 | A | 1328021] D:\IMG_0935.JPG
[10/06/2012 - 20:12:54 | A | 135562] D:\IMG_0937.JPG
[10/06/2012 - 20:12:54 | A | 835115] D:\IMG_0942.JPG
[10/06/2012 - 20:12:54 | A | 130624] D:\IMG_0943.JPG
[10/06/2012 - 20:12:54 | A | 2842794] D:\IMG_0944.JPG
[10/06/2012 - 20:12:56 | A | 1725368] D:\IMG_0946.JPG
[10/06/2012 - 20:12:56 | A | 2856751] D:\IMG_0947.JPG
[10/06/2012 - 20:12:58 | A | 1814520] D:\IMG_0948.JPG
[10/06/2012 - 20:13:00 | A | 2301483] D:\IMG_0949.JPG
[10/06/2012 - 20:13:14 | A | 2118006] D:\IMG_0951.JPG
[10/06/2012 - 20:13:14 | A | 2258409] D:\IMG_0952.JPG
[10/06/2012 - 20:13:14 | A | 1930631] D:\IMG_0954.JPG
[10/06/2012 - 20:13:16 | A | 1823580] D:\IMG_0966.JPG
[10/06/2012 - 20:13:16 | A | 122632] D:\IMG_0968.JPG
[10/06/2012 - 20:13:16 | A | 2109329] D:\IMG_0970.JPG
[10/06/2012 - 20:13:18 | A | 1607825] D:\IMG_0972.JPG
[10/06/2012 - 20:13:20 | A | 1942679] D:\IMG_0974.JPG
[10/06/2012 - 20:13:20 | A | 2145752] D:\IMG_0975.JPG
[10/06/2012 - 20:13:20 | A | 2285498] D:\IMG_0981.JPG
[10/06/2012 - 20:13:20 | A | 2128094] D:\IMG_0982.JPG
[10/06/2012 - 20:13:20 | A | 1815264] D:\IMG_0983.JPG
[10/06/2012 - 20:13:20 | A | 2355692] D:\IMG_0984.JPG
[10/06/2012 - 20:13:22 | A | 2359012] D:\IMG_0985.JPG
[10/06/2012 - 20:15:36 | A | 1812241] D:\IMG_1002.JPG
[10/06/2012 - 20:15:38 | A | 1906239] D:\IMG_1004.JPG
[10/06/2012 - 20:15:40 | A | 2051367] D:\IMG_1006.JPG
[10/06/2012 - 20:15:40 | A | 1141013] D:\IMG_1009.JPG
[10/06/2012 - 20:15:42 | A | 1195935] D:\IMG_1010.JPG
[10/06/2012 - 20:15:44 | A | 1880749] D:\IMG_1011.JPG
[10/06/2012 - 20:15:46 | A | 1865105] D:\IMG_1012.JPG
[10/06/2012 - 20:15:48 | A | 1851291] D:\IMG_1013.JPG
[10/06/2012 - 20:15:48 | A | 1887400] D:\IMG_1014.JPG
[10/06/2012 - 20:15:50 | A | 1919046] D:\IMG_1015.JPG
[10/06/2012 - 20:15:50 | A | 1850868] D:\IMG_1016.JPG
[10/06/2012 - 20:15:52 | A | 1897555] D:\IMG_1017.JPG
[10/06/2012 - 20:15:54 | A | 1913947] D:\IMG_1018.JPG
[10/06/2012 - 20:15:54 | A | 2004458] D:\IMG_1019.JPG
[10/06/2012 - 20:15:56 | A | 1981436] D:\IMG_1020.JPG
[10/06/2012 - 20:15:56 | A | 2015885] D:\IMG_1021.JPG
[10/06/2012 - 20:15:56 | A | 2040910] D:\IMG_1022.JPG
[10/06/2012 - 20:15:58 | A | 2031879] D:\IMG_1023.JPG
[10/06/2012 - 20:16:00 | A | 1851714] D:\IMG_1026.JPG
[10/06/2012 - 20:16:00 | A | 1978711] D:\IMG_1028.JPG
[10/06/2012 - 20:16:02 | A | 1565067] D:\IMG_1029.JPG
[10/06/2012 - 20:16:02 | A | 1909583] D:\IMG_1030.JPG
[10/06/2012 - 20:16:04 | A | 2095960] D:\IMG_1031.JPG
[10/06/2012 - 20:16:06 | A | 2671746] D:\IMG_1032.JPG
[10/06/2012 - 20:16:06 | A | 3167388] D:\IMG_1033.JPG
[10/06/2012 - 20:16:10 | A | 2503525] D:\IMG_1034.JPG
[10/06/2012 - 20:16:10 | A | 2860046] D:\IMG_1035.JPG
[10/06/2012 - 20:16:12 | A | 1950820] D:\IMG_1036.JPG
[10/06/2012 - 20:16:14 | A | 2176746] D:\IMG_1037.JPG
[10/06/2012 - 20:16:14 | A | 2125584] D:\IMG_1038.JPG
[10/06/2012 - 20:16:16 | A | 2185751] D:\IMG_1039.JPG
[10/06/2012 - 20:16:16 | A | 1992935] D:\IMG_1040.JPG
[27/11/2013 - 06:11:31 | D ] D:\MVNO Project with Al BaridBank
[25/11/2013 - 14:29:29 | SHD ] D:\RECYCLER
[25/11/2013 - 10:22:43 | SHD ] D:\System Volume Information
[25/11/2013 - 14:08:49 | ASH | 1447936] D:\Thumbs.db
[05/04/2010 - 23:36:16 | SHD ] F:\SamsungSoftware
[30/12/2009 - 20:01:04 | A | 4411817] F:\AppInst.exe
[29/11/2013 - 08:20:08 | SH | 310744] F:\Autorun.inf
[10/07/2011 - 02:11:12 | A | 4294939648] F:\MyPC-2011-07-09_Backup.bkf
[03/08/2011 - 23:37:28 | SHD ] F:\2-Events
[03/08/2011 - 23:37:38 | SHD ] F:\3-Perso
[03/08/2011 - 23:40:02 | SHD ] F:\4-Utilities
[03/08/2011 - 23:41:56 | SHD ] F:\1-Marketing Experience
[06/09/2011 - 19:01:46 | SHD ] F:\5-Exchange
[06/09/2011 - 19:02:40 | SHD ] F:\Recycled
[15/12/2008 - 14:35:12 | SHD ] F:\NEZHA
[24/06/2012 - 16:55:20 | A | 4294901760] F:\20120607164658.mpg
[27/07/2012 - 10:57:28 | SHD ] F:\0-Marketing Know How
[02/12/2012 - 12:11:10 | SHD ] F:\Tedxwomen 2012
[02/12/2012 - 13:03:12 | SHD ] F:\$RECYCLE.BIN
[10/12/2012 - 20:26:48 | SHD ] F:\ipad
[13/12/2012 - 09:13:42 | SHD ] F:\Presentations Algerie
[14/12/2012 - 02:58:56 | RD ] F:\Favorites
[15/12/2012 - 11:31:18 | SHD ] F:\My Desktop
[15/12/2012 - 11:31:36 | SHD ] F:\Roadshow in Algeria
[16/12/2012 - 07:09:00 | SHD ] F:\Program files
[16/12/2012 - 15:21:46 | SHD ] F:\T43
[19/02/2013 - 15:23:26 | SHD ] F:\_NSN in a Box
[19/03/2013 - 04:47:14 | SHD ] F:\_My Book
[29/04/2013 - 15:18:58 | SHD ] F:\_Personal Development Library
[26/05/2013 - 13:14:22 | SHD ] F:\iPhone
[12/06/2013 - 01:34:36 | SHD ] F:\_Entrepreneur tools
[13/06/2013 - 12:38:28 | SHD ] F:\_INPT
[19/06/2013 - 09:09:12 | SHD ] F:\_My Community
[19/06/2013 - 18:47:48 | SHD ] F:\_Kaseya
[19/06/2013 - 21:52:08 | SHD ] F:\temp to read and clean
[15/06/2012 - 10:33:24 | SHD ] F:\_My Company
[14/03/2013 - 13:05:40 | SHD ] F:\_Sport
[30/06/2013 - 13:22:00 | SHD ] F:\_Favorites 2013 NSN end
[19/07/2013 - 15:13:34 | SHD ] F:\System Volume Information
[19/07/2013 - 17:40:42 | SHD ] F:\dd96241e372269c9b17864664bd4
[01/10/2013 - 01:10:10 | SHD ] F:\voyage paris video
[31/10/2013 - 16:37:10 | SHD ] F:\_Nezha in Juniper
[15/11/2013 - 09:56:36 | SHD ] F:\_Doctorat
[15/11/2013 - 11:51:36 | SHD ] F:\_Enseignement supérieur
[14/11/2013 - 10:25:16 | A | 100] F:\Feuille caisse maison.txt
[22/11/2013 - 10:23:04 | SHD ] F:\Entreprise papa tghat
[25/11/2013 - 19:25:06 | SHD ] F:\RECYCLER
[25/11/2013 - 19:25:08 | A | 2303] F:\SamsungSoftware.lnk
[25/11/2013 - 19:25:08 | A | 2289] F:\2-Events.lnk
[25/11/2013 - 19:25:08 | A | 2287] F:\3-Perso.lnk
[25/11/2013 - 19:25:08 | A | 2295] F:\4-Utilities.lnk
[25/11/2013 - 19:25:08 | A | 2317] F:\1-Marketing Experience.lnk
[25/11/2013 - 19:25:08 | A | 2293] F:\5-Exchange.lnk
[25/11/2013 - 19:25:08 | A | 2283] F:\NEZHA.lnk
[25/11/2013 - 19:25:08 | A | 2313] F:\0-Marketing Know How.lnk
[25/11/2013 - 19:25:08 | A | 2301] F:\Tedxwomen 2012.lnk
[25/11/2013 - 19:25:08 | A | 2281] F:\ipad.lnk
[25/11/2013 - 19:25:08 | A | 2315] F:\Presentations Algerie.lnk
[25/11/2013 - 19:25:08 | A | 2293] F:\My Desktop.lnk
[25/11/2013 - 19:25:08 | A | 2311] F:\Roadshow in Algeria.lnk
[25/11/2013 - 19:25:08 | A | 2299] F:\Program files.lnk
[25/11/2013 - 19:25:08 | A | 2279] F:\T43.lnk
[25/11/2013 - 19:25:08 | A | 2299] F:\_NSN in a Box.lnk
[25/11/2013 - 19:25:08 | A | 2289] F:\_My Book.lnk
[25/11/2013 - 19:25:08 | A | 2331] F:\_Personal Development Library.lnk
[25/11/2013 - 19:25:08 | A | 2285] F:\iPhone.lnk
[25/11/2013 - 19:25:08 | A | 2311] F:\_Entrepreneur tools.lnk
[25/11/2013 - 19:25:08 | A | 2283] F:\_INPT.lnk
[25/11/2013 - 19:25:10 | A | 2299] F:\_My Community.lnk
[25/11/2013 - 19:25:10 | A | 2287] F:\_Kaseya.lnk
[25/11/2013 - 19:25:10 | A | 2317] F:\temp to read and clean.lnk
[25/11/2013 - 19:25:10 | A | 2295] F:\_My Company.lnk
[25/11/2013 - 19:25:10 | A | 2285] F:\_Sport.lnk
[25/11/2013 - 19:25:10 | A | 2319] F:\_Favorites 2013 NSN end.lnk
[25/11/2013 - 19:25:10 | A | 2329] F:\dd96241e372269c9b17864664bd4.lnk
[25/11/2013 - 19:25:10 | A | 2309] F:\voyage paris video.lnk
[25/11/2013 - 19:25:10 | A | 2307] F:\_Nezha in Juniper.lnk
[25/11/2013 - 19:25:10 | A | 2291] F:\_Doctorat.lnk
[25/11/2013 - 19:25:10 | A | 2319] F:\_Enseignement supérieur.lnk
[25/11/2013 - 19:25:10 | A | 2315] F:\Entreprise papa tghat.lnk
 
################## | E.O.F |


#5 Nezha2013

Nezha2013
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Local time:01:10 PM

Posted 29 November 2013 - 05:34 AM

###############################################Farbar FRST log

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 28-11-2013
Ran by Administrateur (administrator) on POSTE on 29-11-2013 10:02:09
Running from C:\Documents and Settings\Administrateur\Mes documents\Downloads
Microsoft Windows XP Professionnel Service Pack 2 (X86) OS Language: French Standard
Internet Explorer Version 6
Boot Mode: Normal
 
==================== Processes (Whitelisted) ===================
 
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe
(Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\IEXPLORE.EXE
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Farbar) C:\Documents and Settings\Administrateur\Mes documents\Downloads\FRST (1).exe
 
==================== Registry (Whitelisted) ==================
 
HKLM\...\Run: [Adobe Reader Speed Launcher] - C:\WINDOWS\system32\service158.exe [1110097 2011-06-20] ()
HKLM\...\Run: [mobilegeni daemon] - C:\Program Files\Mobogenie\DaemonProcess.exe
HKLM\...\Winlogon: [Userinit] C:\WINDOWS\system32\userinit.exe,,C:\Program Files\bqjaslxd\jwbpdoet.exe
Winlogon\Notify\AtiExtEvent: C:\Windows\system32\Ati2evxx.dll (ATI Technologies Inc.)
HKCU\...\Run: [Adobe Reader Speed Launcher] - C:\WINDOWS\system32\service158.exe [1110097 2011-06-20] ()
HKCU\...\Run: [SUPERAntiSpyware] - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [5717272 2013-11-05] (SUPERAntiSpyware)
MountPoints2: F - F:\RECYCLER\autorun.exe
MountPoints2: {2b2336ac-55bc-11e3-acca-0010c6e2d913} - F:\RECYCLER\autorun.exe
MountPoints2: {fc0b0d42-55d9-11e3-accc-00166f046530} - F:\RECYCLER\autorun.exe
Startup: C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage\jwbpdoet.exe ()
Startup: C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage\MyPC Backup.lnk
ShortcutTarget: MyPC Backup.lnk -> C:\Program Files\MyPC Backup\MyPC Backup.exe (MyPCBackup.com)
Startup: C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Windows Desktop Search.lnk
ShortcutTarget: Windows Desktop Search.lnk -> C:\Program Files\Windows Desktop Search\WindowsSearch.exe (Microsoft Corporation)
Startup: C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\ZDWLan Utility.lnk
ShortcutTarget: ZDWLan Utility.lnk -> C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ZDWlan.exe ()
 
==================== Internet (Whitelisted) ====================
 
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.hichamkoko.tk
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.hichamkoko.tk
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
SearchScopes: HKLM - DefaultScope value is missing.
BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files\PDF Architect\PDFIEHelper.dll (pdfforge GmbH)
Toolbar: HKLM - PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files\PDF Architect\PDFIEPlugin.dll (pdfforge GmbH)
Toolbar: HKCU - &Adresse - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
Toolbar: HKCU - &Liens - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
Handler: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler: ipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
Handler: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
ShellExecuteHooks: URL Exec Hook - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINDOWS\system32\shell32.dll [8440320 2004-08-19] (Microsoft Corporation)
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [115440 2013-05-07] (SuperAdBlocker.com)
ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [406455 2007-02-05] (Microsoft Corporation)
 
Chrome: 
=======
CHR Extension: (Google Docs) - C:\DOCUME~1\ADMINI~1\LOCALS~1\Application Data\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\DOCUME~1\ADMINI~1\LOCALS~1\Application Data\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (YouTube) - C:\DOCUME~1\ADMINI~1\LOCALS~1\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\DOCUME~1\ADMINI~1\LOCALS~1\Application Data\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Google Wallet) - C:\DOCUME~1\ADMINI~1\LOCALS~1\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0
CHR Extension: (Gmail) - C:\DOCUME~1\ADMINI~1\LOCALS~1\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
 
========================== Services (Whitelisted) =================
 
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [120088 2013-10-10] (SUPERAntiSpyware.com)
S2 BackupStack; C:\Program Files\MyPC Backup\BackupStack.exe [38440 2013-09-19] (Just Develop It)
S3 odserv; C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\ODSERV.EXE [441136 2006-10-26] (Microsoft Corporation)
S3 ose; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [145184 2006-10-26] (Microsoft Corporation)
S2 PDF Architect Helper Service; C:\Program Files\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
S2 PDF Architect Service; C:\Program Files\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
S2 srvPlgProtect; C:\Documents and Settings\Administrateur\Application Data\okitspace\protect\PluginProtect.exe [100864 2013-11-20] ()
S2 SrvUpdater; C:\Program Files\SoftwareUpdater\UpdaterService.exe [38912 2013-11-20] ()
 
==================== Drivers (Whitelisted) ====================
 
S3 ALCXWDM; C:\Windows\System32\drivers\ALCXWDM.SYS [4122368 2008-09-24] (Realtek Semiconductor Corp.)
R3 HSFHWICH; C:\Windows\System32\DRIVERS\HSFHWICH.sys [242304 2005-10-18] (Conexant Systems, Inc.)
R3 HSF_DPV; C:\Windows\System32\DRIVERS\HSF_DPV.sys [998656 2005-10-18] (Conexant Systems, Inc.)
R3 Rasirda; C:\Windows\System32\DRIVERS\rasirda.sys [19584 2001-08-17] (Microsoft Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 Secdrv; C:\Windows\System32\DRIVERS\secdrv.sys [27440 2004-07-17] ()
R3 TPM; C:\Windows\System32\DRIVERS\tpm.sys [17792 2007-12-16] (Winbond Electronics Corp.)
R3 w29n51; C:\Windows\System32\DRIVERS\w29n51.sys [3325312 2006-01-18] (Intel® Corporation)
S3 ZD1211BU(ZyDAS); C:\Windows\System32\DRIVERS\zd1211Bu.sys [450560 2006-06-27] (ZyDAS Technology Corporation)
R3 ZDPSp50; C:\Windows\System32\Drivers\ZDPSp50.sys [17664 2004-10-25] (Printing Communications Assoc., Inc. (PCAUSA))
U1 WS2IFSL; 
S3 ZDCndis5; \??\C:\WINDOWS\system32\ZDCndis5.SYS [x]
 
==================== NetSvcs (Whitelisted) ===================
 
 
==================== One Month Created Files and Folders ========
 
2013-11-29 08:57 - 2013-11-29 08:57 - 00000000 ____D C:\FRST
2013-11-29 08:33 - 2013-11-29 08:33 - 00026671 _____ C:\UsbFix [Listing 1 ] POSTE.txt
2013-11-29 08:29 - 2013-11-29 09:57 - 00249438 _____ C:\Documents and Settings\Administrateur\Bureau\ce que je poste sur bleeping.txt
2013-11-29 08:26 - 2013-11-29 08:26 - 00109056 _____ (Avira GmbH) C:\WINDOWS\Explorermgr.exe
2013-11-29 08:25 - 2013-11-29 08:25 - 00001785 _____ C:\Documents and Settings\Administrateur\Bureau\SosVirus sur Facebook.lnk
2013-11-29 08:25 - 2013-11-29 08:25 - 00001777 _____ C:\Documents and Settings\Administrateur\Bureau\UsbFix Faire un Don.lnk
2013-11-29 08:25 - 2013-11-29 08:25 - 00001761 _____ C:\Documents and Settings\Administrateur\Bureau\SosVirus Forum Gratuit.lnk
2013-11-29 08:20 - 2013-11-29 08:25 - 00006666 _____ C:\UsbFix [Scan 1] POSTE.txt
2013-11-29 08:19 - 2013-11-29 08:33 - 00000000 ____D C:\UsbFix
2013-11-28 08:25 - 2013-11-29 08:02 - 00051265 _____ C:\Documents and Settings\Administrateur\Bureau\Nouvelle maison.pptx
2013-11-28 06:10 - 2013-11-28 06:10 - 00003584 _____ C:\Documents and Settings\Administrateur\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-11-25 19:52 - 2013-11-25 19:52 - 00000000 ____D C:\Documents and Settings\Administrateur\Application Data\Windows Desktop Search
2013-11-25 19:33 - 2013-11-25 19:33 - 00001853 _____ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Windows Desktop Search.lnk
2013-11-25 19:33 - 2013-11-25 19:33 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB917013$
2013-11-25 19:33 - 2013-11-25 19:33 - 00000000 ____D C:\WINDOWS\system32\fr-FR
2013-11-25 19:33 - 2013-11-25 19:33 - 00000000 ____D C:\Program Files\Windows Desktop Search
2013-11-25 19:32 - 2013-11-29 08:38 - 00000000 ____D C:\WINDOWS\LastGood
2013-11-25 19:32 - 2013-11-25 19:52 - 00000000 ____D C:\2e2471e389523f579e89ead52d5616
2013-11-25 19:32 - 2013-11-25 19:34 - 00027986 _____ C:\WINDOWS\KB917013.log
2013-11-25 19:32 - 2013-11-25 19:32 - 00005361 _____ C:\WINDOWS\KB915865.log
2013-11-25 19:32 - 2013-11-25 19:32 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB915865$
2013-11-25 19:32 - 2013-11-25 19:32 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB915800$
2013-11-25 19:32 - 2013-11-25 19:32 - 00000000 ___HD C:\WINDOWS\$hf_mig$
2013-11-25 19:32 - 2006-07-14 15:51 - 00121856 ____N (Microsoft Corporation) C:\WINDOWS\system32\xmllite.dll
2013-11-25 15:29 - 2013-11-25 15:29 - 00000815 _____ C:\Documents and Settings\All Users\Bureau\TeamViewer 8.lnk
2013-11-25 15:29 - 2013-11-25 15:29 - 00000000 ____D C:\Program Files\TeamViewer
2013-11-25 15:29 - 2013-11-25 15:29 - 00000000 ____D C:\Documents and Settings\All Users\Menu Démarrer\Programmes\TeamViewer 8
2013-11-25 14:00 - 2013-11-25 14:05 - 00000212 _____ C:\Documents and Settings\Administrateur\Bureau\_My config du wifi.txt
2013-11-25 13:52 - 2001-08-23 17:04 - 00012288 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mouhid.sys
2013-11-25 13:52 - 2001-08-23 17:04 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mouhid.sys
2013-11-25 13:52 - 2001-08-17 22:02 - 00009600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hidusb.sys
2013-11-25 13:52 - 2001-08-17 22:02 - 00009600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys
2013-11-25 12:03 - 2013-11-25 12:05 - 00000042 _____ C:\Documents and Settings\Administrateur\Bureau\contact.txt
2013-11-25 11:45 - 2013-11-25 11:45 - 00001678 _____ C:\Documents and Settings\All Users\Bureau\SUPERAntiSpyware Free Edition.lnk
2013-11-25 11:45 - 2013-11-25 11:45 - 00000000 ____D C:\Program Files\SUPERAntiSpyware
2013-11-25 11:45 - 2013-11-25 11:45 - 00000000 ____D C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2013-11-25 11:45 - 2013-11-25 11:45 - 00000000 ____D C:\Documents and Settings\Administrateur\Application Data\SUPERAntiSpyware.com
2013-11-25 11:44 - 2013-11-25 11:44 - 00000000 ____D C:\Documents and Settings\Administrateur\Application Data\okitspace
2013-11-25 11:43 - 2013-11-25 11:43 - 00000000 ____D C:\Documents and Settings\Administrateur\Local Settings\Application Data\cache
2013-11-25 11:42 - 2013-11-25 11:43 - 00000000 ____D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mobogenie
2013-11-25 11:42 - 2013-11-25 11:42 - 00000000 ____D C:\Documents and Settings\Administrateur\Mes documents\Mobogenie
2013-11-25 11:42 - 2013-11-25 11:42 - 00000000 _____ C:\Documents and Settings\Administrateur\daemonprocess.txt
2013-11-25 11:40 - 2013-11-25 11:40 - 00000000 ____D C:\Program Files\SoftwareUpdater
2013-11-25 11:38 - 2013-11-25 11:38 - 00001703 _____ C:\Documents and Settings\All Users\Bureau\Foxit Reader.lnk
2013-11-25 11:38 - 2013-11-25 11:38 - 00000000 ____D C:\Documents and Settings\LocalService\Application Data\Foxit Software
2013-11-25 11:38 - 2013-11-25 11:38 - 00000000 ____D C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Foxit Reader
2013-11-25 11:37 - 2013-11-25 11:38 - 00000000 ____D C:\Documents and Settings\Administrateur\Application Data\Foxit Software
2013-11-25 11:37 - 2013-11-25 11:37 - 00000000 ____D C:\Program Files\Foxit Software
2013-11-25 11:03 - 2006-02-24 14:44 - 00000013 _____ C:\WINDOWS\system32\Drivers\verfile.tic
2013-11-25 11:02 - 2004-08-03 23:15 - 00082944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wdmaud.sys
2013-11-25 11:02 - 2004-08-03 23:15 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wdmaud.sys
2013-11-25 11:02 - 2004-08-03 23:15 - 00060800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sysaudio.sys
2013-11-25 11:02 - 2004-08-03 23:15 - 00060800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sysaudio.sys
2013-11-25 11:02 - 2004-08-03 23:07 - 00171776 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kmixer.sys
2013-11-25 11:02 - 2004-08-03 23:07 - 00171776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kmixer.sys
2013-11-25 11:02 - 2004-08-03 23:07 - 00052864 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dmusic.sys
2013-11-25 11:02 - 2004-08-03 23:07 - 00052864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\DMusic.sys
2013-11-25 11:02 - 2004-08-03 23:07 - 00006400 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\splitter.sys
2013-11-25 11:02 - 2004-08-03 23:07 - 00006400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\splitter.sys
2013-11-25 11:02 - 2004-08-03 23:07 - 00002944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\drmkaud.sys
2013-11-25 11:02 - 2004-08-03 23:07 - 00002944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmkaud.sys
2013-11-25 11:02 - 2004-08-03 22:58 - 00007552 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mskssrv.sys
2013-11-25 11:02 - 2004-08-03 22:58 - 00007552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MSKSSRV.sys
2013-11-25 11:02 - 2004-08-03 22:58 - 00005376 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mspclock.sys
2013-11-25 11:02 - 2004-08-03 22:58 - 00005376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MSPCLOCK.sys
2013-11-25 11:02 - 2004-08-03 22:58 - 00004992 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mspqm.sys
2013-11-25 11:02 - 2004-08-03 22:58 - 00004992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MSPQM.sys
2013-11-25 11:02 - 2004-08-03 22:39 - 00142464 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\aec.sys
2013-11-25 11:02 - 2004-08-03 22:39 - 00142464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\aec.sys
2013-11-25 11:02 - 2001-08-17 22:00 - 00054272 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\swmidi.sys
2013-11-25 11:02 - 2001-08-17 22:00 - 00054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\swmidi.sys
2013-11-25 10:57 - 2013-11-25 10:57 - 00000680 _____ C:\Documents and Settings\Administrateur\Bureau\PDF Architect.lnk
2013-11-25 10:57 - 2013-11-25 10:57 - 00000000 ____D C:\Program Files\PDF Architect
2013-11-25 10:57 - 2013-11-25 10:57 - 00000000 ____D C:\Documents and Settings\All Users\Menu Démarrer\Programmes\PDF Architect
2013-11-25 10:57 - 2013-11-25 10:57 - 00000000 ____D C:\Documents and Settings\Administrateur\Mes documents\PDF Architect Files
2013-11-25 10:56 - 2013-11-25 10:57 - 00000000 ____D C:\Program Files\PDFCreator
2013-11-25 10:56 - 2013-11-25 10:56 - 00000706 _____ C:\Documents and Settings\All Users\Bureau\PDFCreator.lnk
2013-11-25 10:56 - 2013-11-25 10:56 - 00000000 ____D C:\Documents and Settings\All Users\Menu Démarrer\Programmes\PDFCreator
2013-11-25 10:56 - 2013-11-25 10:56 - 00000000 ____D C:\Documents and Settings\Administrateur\Application Data\pdfforge
2013-11-25 10:56 - 2013-04-09 15:13 - 00095416 _____ (pdfforge GmbH) C:\WINDOWS\system32\pdfcmon.dll
2013-11-25 10:56 - 2012-05-05 11:54 - 00662288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSCOMCT2.OCX
2013-11-25 10:56 - 2012-05-05 11:54 - 00137000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMAPI32.OCX
2013-11-25 10:56 - 2012-05-05 11:54 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMPIDE.DLL
2013-11-25 10:56 - 1998-07-13 02:08 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSCMCFR.DLL
2013-11-25 10:56 - 1998-07-13 02:08 - 00119568 _____ (Microsoft Corporation) C:\WINDOWS\system32\VB6FR.DLL
2013-11-25 10:56 - 1998-07-13 02:08 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSCC2FR.DLL
2013-11-25 10:54 - 2013-11-25 10:54 - 00000762 _____ C:\Documents and Settings\Administrateur\Bureau\MyPC Backup.lnk
2013-11-25 10:54 - 2013-11-25 10:54 - 00000000 ____D C:\Program Files\MyPC Backup
2013-11-25 10:54 - 2013-11-25 10:54 - 00000000 ____D C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\MyPC Backup
2013-11-25 10:48 - 2013-11-25 10:48 - 00001811 _____ C:\Documents and Settings\All Users\Bureau\Google Chrome.lnk
2013-11-25 10:48 - 2013-11-25 10:48 - 00000000 ____D C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Google Chrome
2013-11-25 10:47 - 2013-11-29 09:52 - 00001072 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2013-11-25 10:47 - 2013-11-26 10:52 - 00001068 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2013-11-25 10:47 - 2013-11-25 10:48 - 00000000 ____D C:\Program Files\Google
2013-11-25 10:47 - 2013-11-25 10:48 - 00000000 ____D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google
2013-11-25 10:43 - 2013-11-25 10:43 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2013-11-25 10:43 - 2013-11-25 10:43 - 00000000 ____D C:\Program Files\ZyDAS Technology Corporation
2013-11-25 10:43 - 2013-11-25 10:43 - 00000000 ____D C:\Program Files\Fichiers communs\InstallShield
2013-11-25 10:43 - 2013-11-25 10:43 - 00000000 ____D C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ZyDAS IEEE 802.11 b+g Wireless LAN - USB
2013-11-25 10:43 - 2006-06-27 14:32 - 00450560 _____ (ZyDAS Technology Corporation) C:\WINDOWS\system32\Drivers\ZD1211BU.sys
2013-11-25 10:43 - 2005-07-12 14:44 - 00015872 _____ () C:\WINDOWS\system32\InsDrvZD64.DLL
2013-11-25 10:43 - 2005-06-08 18:44 - 00029184 _____ (Printing Communications Assoc., Inc. (PCAUSA)) C:\WINDOWS\system32\Drivers\BRGSp50a64.sys
2013-11-25 10:43 - 2005-06-08 18:44 - 00020608 _____ (Printing Communications Assoc., Inc. (PCAUSA)) C:\WINDOWS\system32\Drivers\BRGSp50.sys
2013-11-25 10:43 - 2005-03-18 15:35 - 00031744 _____ (Printing Communications Assoc., Inc. (PCAUSA)) C:\WINDOWS\system32\Drivers\ZDPSp50a64.sys
2013-11-25 10:43 - 2004-10-25 13:40 - 00017664 _____ (Printing Communications Assoc., Inc. (PCAUSA)) C:\WINDOWS\system32\Drivers\ZDPSp50.sys
2013-11-25 10:43 - 2004-03-23 16:38 - 00028672 _____ () C:\WINDOWS\system32\InsDrvZD.dll
2013-11-25 10:43 - 2004-01-14 11:30 - 00017151 _____ (Printing Communications Assoc., Inc. (PCAUSA)) C:\WINDOWS\system32\ZDPNDIS5.SYS
2013-11-25 10:43 - 2004-01-14 11:25 - 00081920 _____ (Printing Communications Assoc., Inc. (PCAUSA)) C:\WINDOWS\system32\ZDPN50.DLL
2013-11-25 10:43 - 2003-03-14 12:24 - 00024576 _____ () C:\WINDOWS\system32\ZyDelReg.exe
2013-11-25 10:37 - 2011-06-20 09:42 - 01110097 __RSH C:\WINDOWS\system32\service158.exe
2013-11-25 10:28 - 2013-11-25 10:28 - 00000000 ____D C:\Program Files\bqjaslxd
2013-11-25 10:27 - 2004-08-03 23:08 - 00026496 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbstor.sys
2013-11-25 10:27 - 2004-08-03 23:08 - 00026496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2013-11-25 10:23 - 2013-11-25 10:23 - 00083400 _____ C:\Documents and Settings\Administrateur\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2013-11-25 10:18 - 2013-11-25 10:18 - 00000000 ___RD C:\Documents and Settings\Administrateur\Mes documents\Mes vidéos
2013-11-25 10:17 - 2013-11-25 10:18 - 00000000 ____D C:\WINDOWS\RegisteredPackages
2013-11-25 10:16 - 2013-11-25 10:17 - 00000000 ____D C:\Documents and Settings\Administrateur\Application Data\vlc
2013-11-25 10:16 - 2013-11-25 10:16 - 00001779 _____ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Adobe Reader 9.lnk
2013-11-25 10:16 - 2013-11-25 10:16 - 00000719 _____ C:\Documents and Settings\All Users\Bureau\VLC media player.lnk
2013-11-25 10:16 - 2013-11-25 10:16 - 00000000 ____D C:\Program Files\VideoLAN
2013-11-25 10:16 - 2013-11-25 10:16 - 00000000 ____D C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN
2013-11-25 10:15 - 2013-11-25 10:15 - 00000000 ____D C:\Program Files\Fichiers communs\Adobe
2013-11-25 10:15 - 2013-11-25 10:15 - 00000000 ____D C:\Program Files\Adobe
2013-11-25 10:15 - 2013-11-25 10:15 - 00000000 ____D C:\Documents and Settings\All Users\Application Data\Adobe
2013-11-25 10:14 - 2013-11-25 10:14 - 00000000 ____D C:\Program Files\WinRAR
2013-11-25 10:14 - 2013-11-25 10:14 - 00000000 ____D C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR
2013-11-25 10:14 - 2013-11-25 10:14 - 00000000 ____D C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\WinRAR
2013-11-25 10:08 - 2013-11-25 10:08 - 00065536 _____ C:\WINDOWS\system32\config\ODiag.evt
2013-11-25 10:08 - 2013-11-25 10:08 - 00000000 ____D C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office
2013-11-25 10:07 - 2013-11-25 10:07 - 00000000 ____D C:\Program Files\MSBuild
2013-11-25 10:07 - 2013-11-25 10:07 - 00000000 ____D C:\Program Files\Microsoft Works
2013-11-25 10:07 - 2013-11-25 10:07 - 00000000 ____D C:\Program Files\Microsoft Visual Studio
2013-11-25 10:07 - 2013-11-25 10:07 - 00000000 ____D C:\Program Files\Fichiers communs\DESIGNER
2013-11-25 10:03 - 2013-11-25 10:08 - 00000000 ____D C:\Documents and Settings\All Users\Application Data\Microsoft Help
2013-11-25 10:03 - 2013-11-25 10:07 - 00000000 ____D C:\WINDOWS\SHELLNEW
2013-11-25 10:03 - 2013-11-25 10:07 - 00000000 ____D C:\Program Files\Microsoft Office
2013-11-25 10:03 - 2013-11-25 10:03 - 00000000 ____D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft Help
2013-11-25 10:02 - 2013-11-25 10:02 - 00000000 __RHD C:\MSOCache
2013-11-25 09:58 - 2008-09-24 10:40 - 04122368 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\ALCXWDM.SYS
2013-11-25 09:58 - 2006-10-18 02:53 - 00147456 _____ C:\WINDOWS\system32\RTLCPAPI.dll
2013-11-25 09:58 - 2004-08-19 16:10 - 00130048 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ksproxy.ax
2013-11-25 09:58 - 2004-08-19 16:10 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2013-11-25 09:58 - 2004-08-19 16:09 - 00004096 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ksuser.dll
2013-11-25 09:58 - 2004-08-19 16:09 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksuser.dll
2013-11-25 09:58 - 2004-08-03 23:15 - 00145792 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\portcls.sys
2013-11-25 09:58 - 2004-08-03 23:15 - 00145792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2013-11-25 09:58 - 2004-08-03 23:08 - 00060288 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\drmk.sys
2013-11-25 09:58 - 2004-08-03 23:08 - 00060288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmk.sys
2013-11-25 09:57 - 2007-04-16 15:28 - 00577536 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SOUNDMAN.EXE
2013-11-25 09:57 - 2006-12-08 15:20 - 10528768 _____ C:\WINDOWS\system32\RTLCPL.EXE
2013-11-25 09:56 - 2013-11-25 09:56 - 00000000 ____D C:\Program Files\CONEXANT
2013-11-25 09:56 - 2006-11-17 05:40 - 18804736 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\ALSNDMGR.CPL
2013-11-25 09:56 - 2006-07-31 11:27 - 00217088 _____ C:\WINDOWS\Alcrmv.exe
2013-11-25 09:56 - 2005-10-18 15:53 - 00998656 _____ (Conexant Systems, Inc.) C:\WINDOWS\system32\Drivers\HSF_DPV.sys
2013-11-25 09:56 - 2005-10-18 15:52 - 00721280 _____ (Conexant Systems, Inc.) C:\WINDOWS\system32\Drivers\HSF_CNXT.sys
2013-11-25 09:56 - 2005-10-18 15:52 - 00242304 _____ (Conexant Systems, Inc.) C:\WINDOWS\system32\Drivers\HSFHWICH.sys
2013-11-25 09:56 - 2005-10-05 15:57 - 00012544 _____ (Conexant) C:\WINDOWS\system32\Drivers\mdmxsdk.sys
2013-11-25 09:56 - 2002-02-05 13:54 - 00141016 _____ C:\WINDOWS\system32\ALSNDMGR.WAV
2013-11-25 09:55 - 2013-11-25 09:55 - 00006881 _____ C:\WINDOWS\Wdf01005Inst.log
2013-11-25 09:55 - 2013-11-25 09:55 - 00000000 __HDC C:\WINDOWS\$NtUninstallWdf01005$
2013-11-25 09:55 - 2013-11-25 09:55 - 00000000 ____H C:\WINDOWS\system32\Drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2013-11-25 09:55 - 2013-11-25 09:55 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_HpqKbFiltr_01005.Wdf
2013-11-25 09:55 - 2007-01-03 11:21 - 00023856 _____ (Microsoft Corporation) C:\WINDOWS\system32\spupdsvc.exe
2013-11-25 09:55 - 2007-01-03 11:21 - 00015664 ____N (Microsoft Corporation) C:\WINDOWS\system32\spmsg.dll
2013-11-25 09:55 - 2005-10-18 10:10 - 00141392 _____ C:\WINDOWS\system32\Drivers\HSFProf.cty
2013-11-25 09:55 - 2005-10-05 15:56 - 00086016 _____ (Conexant) C:\WINDOWS\system32\mdmxsdk.dll
2013-11-25 09:55 - 2005-09-16 13:14 - 00110592 _____ (Conexant Systems, Inc) C:\WINDOWS\system32\Uci32101.dll
2013-11-25 09:54 - 2009-11-18 18:04 - 00038248 _____ (Lenovo.) C:\WINDOWS\system32\ibmpmsvc.exe
2013-11-25 09:54 - 2009-11-18 18:04 - 00035176 _____ (Lenovo.) C:\WINDOWS\system32\tpinspm.dll
2013-11-25 09:54 - 2009-11-18 18:03 - 00026608 _____ (Lenovo.) C:\WINDOWS\system32\Drivers\ibmpmdrv.sys
2013-11-25 09:54 - 2009-05-21 16:59 - 00050832 _____ (UPEK Inc.) C:\WINDOWS\system32\Drivers\tcusb.sys
2013-11-25 09:54 - 2007-12-16 06:24 - 00017792 _____ (Winbond Electronics Corp.) C:\WINDOWS\system32\Drivers\tpm.sys
2013-11-25 09:54 - 2007-06-18 12:12 - 00016768 _____ (Hewlett-Packard Development Company, L.P.) C:\WINDOWS\system32\Drivers\HpqKbFiltr.sys
2013-11-25 09:54 - 2006-11-02 02:09 - 01419232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdfcoinstaller01005.dll
2013-11-25 09:54 - 2005-10-10 01:33 - 00114742 _____ (Winbond Electronics Corp.) C:\WINDOWS\system32\Tddl.dll
2013-11-25 09:53 - 2013-11-25 09:53 - 00000000 _____ C:\WINDOWS\ativpsrm.bin
2013-11-25 09:53 - 2010-02-11 07:38 - 03565056 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati2mtag.sys
2013-11-25 09:52 - 2010-02-11 05:17 - 11845632 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\atioglxx.dll
2013-11-25 09:52 - 2010-02-11 05:07 - 00307200 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\atiiiexx.dll
2013-11-25 09:52 - 2010-02-11 04:46 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIDEMGX.dll
2013-11-25 09:52 - 2010-02-11 04:45 - 00325120 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\ati2dvag.dll
2013-11-25 09:52 - 2010-02-11 04:37 - 00290816 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\atiok3x2.dll
2013-11-25 09:52 - 2010-02-11 04:36 - 00204800 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atipdlxx.dll
2013-11-25 09:52 - 2010-02-11 04:35 - 00155648 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\Oemdspif.dll
2013-11-25 09:52 - 2010-02-11 04:35 - 00155648 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.dll
2013-11-25 09:52 - 2010-02-11 04:35 - 00043520 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\ati2edxx.dll
2013-11-25 09:52 - 2010-02-11 04:35 - 00026112 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\Ati2mdxx.exe
2013-11-25 09:52 - 2010-02-11 04:33 - 00602112 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe
2013-11-25 09:52 - 2010-02-11 04:32 - 00053248 _____ ( ATI Technologies Inc.) C:\WINDOWS\system32\ATIDDC.DLL
2013-11-25 09:52 - 2010-02-11 04:25 - 03818144 _____ (ATI Technologies Inc. ) C:\WINDOWS\system32\ati3duag.dll
2013-11-25 09:52 - 2010-02-11 04:19 - 00053248 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2013-11-25 09:52 - 2010-02-11 04:12 - 03107788 _____ C:\WINDOWS\system32\ativva5x.dat
2013-11-25 09:52 - 2010-02-11 04:12 - 02670592 _____ (ATI Technologies Inc. ) C:\WINDOWS\system32\ativvaxx.dll
2013-11-25 09:52 - 2010-02-11 04:12 - 00887724 _____ C:\WINDOWS\system32\ativva6x.dat
2013-11-25 09:52 - 2010-02-11 04:12 - 00152496 _____ C:\WINDOWS\system32\ativvaxx.cap
2013-11-25 09:52 - 2010-02-11 03:59 - 00049664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom32.dll
2013-11-25 09:52 - 2010-02-11 03:55 - 00475136 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\atikvmag.dll
2013-11-25 09:52 - 2010-02-11 03:54 - 00126976 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2013-11-25 09:52 - 2010-02-11 03:53 - 00017408 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\atitvo32.dll
2013-11-25 09:52 - 2010-02-11 03:47 - 00626688 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\ati2cqag.dll
2013-11-25 09:52 - 2009-04-23 22:29 - 00189051 _____ C:\WINDOWS\system32\atiicdxx.dat
2013-11-25 09:52 - 2009-04-16 16:19 - 00015577 _____ C:\WINDOWS\atiogl.xml
2013-11-25 09:52 - 2008-10-21 18:51 - 00118784 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atibrtmon.exe
2013-11-25 09:52 - 2007-08-31 14:20 - 00007167 _____ C:\WINDOWS\system32\atifglpf.xml
2013-11-25 09:50 - 2013-11-25 09:51 - 00000000 ____D C:\WINDOWS\system32\ReinstallBackups
2013-11-25 09:50 - 2011-03-14 14:53 - 00229928 ____C (Broadcom Corporation) C:\WINDOWS\system32\dllcache\b57xp32.sys
2013-11-25 09:50 - 2011-03-14 14:53 - 00229928 _____ (Broadcom Corporation) C:\WINDOWS\system32\Drivers\b57xp32.sys
2013-11-25 09:46 - 2013-11-29 08:29 - 00000000 ____D C:\Documents and Settings\Administrateur\Bureau
2013-11-25 09:46 - 2013-11-25 12:17 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2013-11-25 09:46 - 2013-11-25 12:15 - 00019412 _____ C:\WINDOWS\SchedLgU.Txt
2013-11-25 09:46 - 2013-11-25 12:15 - 00000184 ___SH C:\Documents and Settings\Administrateur\ntuser.ini
2013-11-25 09:46 - 2013-11-25 11:44 - 00000000 ___RD C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes
2013-11-25 09:46 - 2013-11-25 11:42 - 00000000 ____D C:\Documents and Settings\Administrateur
2013-11-25 09:46 - 2013-11-25 10:54 - 00000000 ___RD C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage
2013-11-25 09:46 - 2013-11-25 10:18 - 00000792 _____ C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Lecteur Windows Media.lnk
2013-11-25 09:46 - 2013-11-25 09:46 - 00008192 _____ C:\WINDOWS\REGLOCS.OLD
2013-11-25 09:46 - 2013-11-25 09:46 - 00000767 _____ C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Internet Explorer.lnk
2013-11-25 09:46 - 2013-11-25 09:46 - 00000738 _____ C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Outlook Express.lnk
2013-11-25 09:46 - 2013-11-25 09:46 - 00000109 _____ C:\WINDOWS\oobeact.log
2013-11-25 09:46 - 2013-11-25 09:46 - 00000020 ___SH C:\Documents and Settings\NetworkService\ntuser.ini
2013-11-25 09:46 - 2013-11-25 09:46 - 00000020 ___SH C:\Documents and Settings\LocalService\ntuser.ini
2013-11-25 09:46 - 2013-11-25 09:46 - 00000000 __SHD C:\Documents and Settings\LocalService
2013-11-25 09:46 - 2013-11-25 09:46 - 00000000 ___SD C:\Documents and Settings\Administrateur\Local Settings\Historique
2013-11-25 09:46 - 2013-11-25 09:46 - 00000000 ___RD C:\Documents and Settings\Administrateur\Mes documents\Mes images
2013-11-25 09:46 - 2013-11-25 09:46 - 00000000 ___RD C:\Documents and Settings\Administrateur\Mes documents\Ma musique
2013-11-25 09:46 - 2013-11-25 09:46 - 00000000 ___RD C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires
2013-11-25 09:46 - 2013-11-25 09:46 - 00000000 ___RD C:\Documents and Settings\Administrateur\Favoris
2013-11-25 09:46 - 2013-11-25 09:40 - 00001599 _____ C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Assistance à distance.lnk
2013-11-25 09:46 - 2013-11-25 09:40 - 00000000 ___SD C:\Documents and Settings\LocalService\Local Settings\Historique
2013-11-25 09:46 - 2013-11-25 09:40 - 00000000 ___HD C:\Documents and Settings\NetworkService\Local Settings\Historique
2013-11-25 09:46 - 2013-11-25 09:36 - 00000000 ___HD C:\Documents and Settings\Administrateur\Modèles
2013-11-25 09:46 - 2013-11-25 09:32 - 00000000 ___RD C:\Documents and Settings\Administrateur\Menu Démarrer
2013-11-25 09:46 - 2013-11-25 09:32 - 00000000 ___HD C:\Documents and Settings\Administrateur\Voisinage réseau
2013-11-25 09:46 - 2013-11-25 09:32 - 00000000 ___HD C:\Documents and Settings\Administrateur\Voisinage d'impression
2013-11-25 09:45 - 2013-11-25 09:46 - 00000000 __SHD C:\Documents and Settings\NetworkService
2013-11-25 09:43 - 2004-08-19 14:10 - 00236544 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smi2smir.exe
2013-11-25 09:43 - 2004-08-19 14:10 - 00032768 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\snmp.exe
2013-11-25 09:43 - 2004-08-19 14:10 - 00008704 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\snmptrap.exe
2013-11-25 09:43 - 2004-08-19 14:09 - 00466944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smtpsvc.dll
2013-11-25 09:43 - 2004-08-19 14:09 - 00366592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\w3svc.dll
2013-11-25 09:43 - 2004-08-19 14:09 - 00358400 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\snmpincl.dll
2013-11-25 09:43 - 2004-08-19 14:09 - 00259072 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\snmpcl.dll
2013-11-25 09:43 - 2004-08-19 14:09 - 00188416 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\snmpsmir.dll
2013-11-25 09:43 - 2004-08-19 14:09 - 00104448 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\uihelper.dll
2013-11-25 09:43 - 2004-08-19 14:09 - 00077824 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wam51.dll
2013-11-25 09:43 - 2004-08-19 14:09 - 00053248 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wamreg51.dll
2013-11-25 09:43 - 2004-08-19 14:09 - 00046592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\svcext51.dll
2013-11-25 09:43 - 2004-08-19 14:09 - 00046592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sspifilt.dll
2013-11-25 09:43 - 2004-08-19 14:09 - 00045568 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ssinc51.dll
2013-11-25 09:43 - 2004-08-19 14:09 - 00040448 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\snmpthrd.dll
2013-11-25 09:43 - 2004-08-19 14:09 - 00010752 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smtpapi.dll
2013-11-25 09:43 - 2004-08-19 14:09 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\snmpmib.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00143422 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\softkey.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00101888 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\srusbusd.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00074240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\w3ext.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00069120 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wingb.ime
2013-11-25 09:43 - 2001-08-28 12:00 - 00048256 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\w32.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00041600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\weitekp9.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00038912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm9aw.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00031744 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smb6w.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00031744 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sma3w.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00031360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\weitekp9.sys
2013-11-25 09:43 - 2001-08-28 12:00 - 00031232 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tools.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00030208 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm87w.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00030208 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm81w.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00029184 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm8cw.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00028288 ____C C:\WINDOWS\system32\dllcache\xjis.nls
2013-11-25 09:43 - 2001-08-28 12:00 - 00026624 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm93w.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00026624 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm92w.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm90w.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm8dw.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm8aw.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm89w.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00025088 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm59w.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00021896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tdipx.sys
2013-11-25 09:43 - 2001-08-28 12:00 - 00019464 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tdspx.sys
2013-11-25 09:43 - 2001-08-28 12:00 - 00018944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\simptcp.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00016896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\status.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00015872 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smierrsm.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00014336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tsprof.exe
2013-11-25 09:43 - 2001-08-28 12:00 - 00013192 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tdasync.sys
2013-11-25 09:43 - 2001-08-28 12:00 - 00010240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\snmpstup.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00009216 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wamps51.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\w3svapi.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smimsgif.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smierrsy.dll
2013-11-25 09:43 - 2001-08-28 12:00 - 00004608 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\w3ctrs51.dll
2013-11-25 09:43 - 2001-08-23 17:47 - 00012800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_smtpctrs.dll
2013-11-25 09:43 - 2001-08-23 17:47 - 00007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_snprfdll.dll
2013-11-25 09:42 - 2004-08-19 14:10 - 00040960 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msiregmv.exe
2013-11-25 09:42 - 2004-08-19 14:09 - 00257024 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\infocomm.dll
2013-11-25 09:42 - 2004-08-19 14:09 - 00221696 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\seo.dll
2013-11-25 09:42 - 2004-08-19 14:09 - 00145408 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iische51.dll
2013-11-25 09:42 - 2004-08-19 14:09 - 00086016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\metada51.dll
2013-11-25 09:42 - 2004-08-19 14:09 - 00079872 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iislog51.dll
2013-11-25 09:42 - 2004-08-19 14:09 - 00045056 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\nsepm.dll
2013-11-25 09:42 - 2004-08-19 14:09 - 00037888 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\md5filt.dll
2013-11-25 09:42 - 2004-08-19 14:09 - 00036864 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iprip.dll
2013-11-25 09:42 - 2004-08-19 14:09 - 00033792 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\lmmib2.dll
2013-11-25 09:42 - 2004-08-19 14:09 - 00027648 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iscomlog.dll
2013-11-25 09:42 - 2004-08-19 14:09 - 00025088 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisadmin.dll
2013-11-25 09:42 - 2004-08-19 14:09 - 00023040 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\lpdsvc.dll
2013-11-25 09:42 - 2004-08-19 14:09 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\lprmon.dll
2013-11-25 09:42 - 2004-08-19 14:09 - 00015872 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetin51.exe
2013-11-25 09:42 - 2004-08-19 14:09 - 00013312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\lonsint.dll
2013-11-25 09:42 - 2004-08-19 14:09 - 00009728 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rwnh.dll
2013-11-25 09:42 - 2004-08-19 14:09 - 00007680 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pwsdata.dll
2013-11-25 09:42 - 2004-08-19 14:09 - 00007680 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\migregdb.exe
2013-11-25 09:42 - 2004-08-19 14:09 - 00007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisfecnv.dll
2013-11-25 09:42 - 2004-08-19 14:09 - 00004096 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rpcref.dll
2013-11-25 09:42 - 2004-08-03 21:00 - 00020736 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ramdisk.sys
2013-11-25 09:42 - 2001-08-28 12:00 - 13463552 ____C C:\WINDOWS\system32\dllcache\hwxjpn.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 10129408 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hwxkor.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 01875968 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msir3jp.lex
2013-11-25 09:42 - 2001-08-28 12:00 - 01158818 ____C C:\WINDOWS\system32\dllcache\korwbrkr.lex
2013-11-25 09:42 - 2001-08-28 12:00 - 00471102 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imskdic.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00315452 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imskf.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00311359 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imepadsv.exe
2013-11-25 09:42 - 2001-08-28 12:00 - 00229439 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\multibox.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00134339 ____C C:\WINDOWS\system32\dllcache\imekr.lex
2013-11-25 09:42 - 2001-08-28 12:00 - 00131584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pmxviceo.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00111104 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mtstocom.exe
2013-11-25 09:42 - 2001-08-28 12:00 - 00102463 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imepadsm.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00098304 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msir3jp.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00092416 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mga.sys
2013-11-25 09:42 - 2001-08-28 12:00 - 00092032 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mga.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00083748 ____C C:\WINDOWS\system32\dllcache\prcp.nls
2013-11-25 09:42 - 2001-08-28 12:00 - 00083748 ____C C:\WINDOWS\system32\dllcache\prc.nls
2013-11-25 09:42 - 2001-08-28 12:00 - 00081408 ____C (Ricoh Co., Ltd.) C:\WINDOWS\system32\dllcache\rwia330.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00081408 ____C (Ricoh Co., Ltd.) C:\WINDOWS\system32\dllcache\rwia001.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00070656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\korwbrkr.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00060928 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisclex4.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00059904 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imkrinst.exe
2013-11-25 09:42 - 2001-08-28 12:00 - 00057398 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpdadm.exe
2013-11-25 09:42 - 2001-08-28 12:00 - 00053248 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\nextlink.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00047066 ____C C:\WINDOWS\system32\dllcache\ksc.nls
2013-11-25 09:42 - 2001-08-28 12:00 - 00045109 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpuex.exe
2013-11-25 09:42 - 2001-08-28 12:00 - 00044032 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imekrmig.exe
2013-11-25 09:42 - 2001-08-28 12:00 - 00036927 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\padrs411.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00031744 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pagecnt.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00026624 ____C (RICOH Co., Ltd.) C:\WINDOWS\system32\dllcache\rw330ext.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00026624 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mdsync.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00025088 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rw001ext.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00022016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\logscrpt.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00020992 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\permchk.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iiscrmap.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00018432 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jupiw.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00016896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\quser.exe
2013-11-25 09:42 - 2001-08-28 12:00 - 00015360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\register.exe
2013-11-25 09:42 - 2001-08-28 12:00 - 00014336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\padrs412.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00011264 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pmxmcro.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00010240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\query.exe
2013-11-25 09:42 - 2001-08-28 12:00 - 00009216 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdnecat.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00009216 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iwrps.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00008704 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\infoctrs.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00007680 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdnecnt.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdnec95.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdibm02.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\isapips.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdlk41a.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iissync.exe
2013-11-25 09:42 - 2001-08-28 12:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pmxgl.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdlk41j.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdax2.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbd106n.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbd101a.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbd101.dll
2013-11-25 09:42 - 2001-08-28 12:00 - 00003584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iismui.dll
2013-11-25 09:42 - 2001-08-23 17:47 - 00065536 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_mailmsg.dll
2013-11-25 09:42 - 2001-08-23 17:47 - 00057856 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_scripto.dll
2013-11-25 09:42 - 2001-08-23 17:47 - 00038912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_ntfsdrv.dll
2013-11-25 09:42 - 2001-08-23 17:47 - 00026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_seos.dll
2013-11-25 09:42 - 2001-08-23 17:47 - 00023040 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_regtrace.exe
2013-11-25 09:41 - 2013-11-25 09:41 - 00000000 ____D C:\WINDOWS\system32\xircom
2013-11-25 09:41 - 2013-11-25 09:41 - 00000000 ____D C:\Program Files\xerox
2013-11-25 09:41 - 2013-11-25 09:41 - 00000000 ____D C:\Program Files\microsoft frontpage
2013-11-25 09:41 - 2004-08-19 14:09 - 02134528 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smtpsnap.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00842240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetmgr.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00563712 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsst.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00452096 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsapi.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00400896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsxp32.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00397312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxstiff.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00377344 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\asp51.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00334336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\aqueue.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00290816 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\adsiis51.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00285184 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxscomex.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00268800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxssvc.exe
2013-11-25 09:41 - 2004-08-19 14:09 - 00268288 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\httpext.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00246272 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxst30.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00238592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxscover.exe
2013-11-25 09:41 - 2004-08-19 14:09 - 00197120 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxswzrd.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00189440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smtpadm.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00156672 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsui.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00143360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsclnt.exe
2013-11-25 09:41 - 2004-08-19 14:09 - 00133632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisrtl.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00127488 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ftpsv251.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00110080 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\appconf.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00109568 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\evntagnt.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00094720 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\evntwin.exe
2013-11-25 09:41 - 2004-08-19 14:09 - 00072192 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxscom.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00068608 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\isatq.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00068608 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisext51.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00066048 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsevent.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00064512 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iismap.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00062464 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\httpod51.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00047104 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\coadmin.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00043520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\admwprox.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00042496 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\davcdata.exe
2013-11-25 09:41 - 2004-08-19 14:09 - 00039936 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hostmib.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00032256 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\gzip.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00031232 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisrstas.exe
2013-11-25 09:41 - 2004-08-19 14:09 - 00029696 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\admexs.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00027136 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsdrv.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\evntcmd.exe
2013-11-25 09:41 - 2004-08-19 14:09 - 00024064 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsmon.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00024064 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\compfilt.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00023552 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsext32.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00014336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\exstrace.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00013312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\infoadmn.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00008704 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsperf.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00008192 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\staxmem.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00008192 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\httpmb51.dll
2013-11-25 09:41 - 2004-08-19 14:09 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ftpmib.dll
2013-11-25 09:41 - 2004-08-19 14:08 - 00007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsres.dll
2013-11-25 09:41 - 2004-08-19 14:01 - 00078336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\logui.ocx
2013-11-25 09:41 - 2004-08-19 13:58 - 00077824 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cnfgprts.ocx
2013-11-25 09:41 - 2004-08-19 13:56 - 00281600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\certwiz.ocx
2013-11-25 09:41 - 2004-05-13 00:39 - 00876653 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp4awel.dll
2013-11-25 09:41 - 2004-05-13 00:39 - 00598071 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fpmmc.dll
2013-11-25 09:41 - 2004-05-13 00:39 - 00184435 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp4amsft.dll
2013-11-25 09:41 - 2003-04-14 20:29 - 00217088 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fpmmcsat.dll
2013-11-25 09:41 - 2003-04-14 20:29 - 00016384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tcptsat.dll
2013-11-25 09:41 - 2003-03-24 15:52 - 00618605 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp4autl.dll
2013-11-25 09:41 - 2003-03-24 15:52 - 00188494 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fpcount.exe
2013-11-25 09:41 - 2003-03-24 15:52 - 00188480 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cfgwiz.exe
2013-11-25 09:41 - 2003-03-24 15:52 - 00147513 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp4apws.dll
2013-11-25 09:41 - 2003-03-24 15:52 - 00102509 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp4atxt.dll
2013-11-25 09:41 - 2003-03-24 15:52 - 00082035 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp4anscp.dll
2013-11-25 09:41 - 2003-03-24 15:52 - 00049212 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp4awebs.dll
2013-11-25 09:41 - 2003-03-24 15:52 - 00049210 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp4areg.dll
2013-11-25 09:41 - 2003-03-24 15:52 - 00041020 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp4avnb.dll
2013-11-25 09:41 - 2003-03-24 15:52 - 00032827 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tcptest.exe
2013-11-25 09:41 - 2003-03-24 15:52 - 00032826 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp4avss.dll
2013-11-25 09:41 - 2003-03-24 15:52 - 00024632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fpadmcgi.exe
2013-11-25 09:41 - 2003-03-24 15:52 - 00020541 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fpexedll.dll
2013-11-25 09:41 - 2003-03-24 15:52 - 00020541 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fpadmdll.dll
2013-11-25 09:41 - 2003-03-24 15:52 - 00020540 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\author.dll
2013-11-25 09:41 - 2003-03-24 15:52 - 00020540 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\admin.dll
2013-11-25 09:41 - 2003-03-24 15:52 - 00020538 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fpremadm.exe
2013-11-25 09:41 - 2003-03-24 15:52 - 00020536 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\shtml.dll
2013-11-25 09:41 - 2003-03-24 15:52 - 00016439 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\author.exe
2013-11-25 09:41 - 2003-03-24 15:52 - 00016439 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\admin.exe
2013-11-25 09:41 - 2003-03-24 15:52 - 00016437 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\shtml.exe
2013-11-25 09:41 - 2002-05-14 13:08 - 00109328 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp98swin.exe
2013-11-25 09:41 - 2002-05-14 13:08 - 00094208 ____C C:\WINDOWS\system32\dllcache\fpencode.dll
2013-11-25 09:41 - 2002-05-14 13:08 - 00014608 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp98sadm.exe
2013-11-25 09:41 - 2001-08-28 12:00 - 10096640 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hwxcht.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 01677824 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chsbrkr.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00838144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chtbrkr.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00514587 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\edb500.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00218112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\c_g18030.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00195618 ____C C:\WINDOWS\system32\dllcache\c_10002.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00189986 ____C C:\WINDOWS\system32\dllcache\c_1361.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00187938 ____C C:\WINDOWS\system32\dllcache\c_20005.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00186402 ____C C:\WINDOWS\system32\dllcache\c_20001.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00185378 ____C C:\WINDOWS\system32\dllcache\c_20003.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00180770 ____C C:\WINDOWS\system32\dllcache\c_20932.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00180258 ____C C:\WINDOWS\system32\dllcache\c_20004.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00180258 ____C C:\WINDOWS\system32\dllcache\c_20000.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00177698 ____C C:\WINDOWS\system32\dllcache\c_20949.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00177698 ____C C:\WINDOWS\system32\dllcache\c_10003.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00173602 ____C C:\WINDOWS\system32\dllcache\c_20936.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00173602 ____C C:\WINDOWS\system32\dllcache\c_20002.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00173602 ____C C:\WINDOWS\system32\dllcache\c_10008.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00173056 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisui.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00162850 ____C C:\WINDOWS\system32\dllcache\c_10001.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00141312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsclntr.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00113664 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxscfgwz.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00108827 ____C C:\WINDOWS\system32\dllcache\hanja.lex
2013-11-25 09:41 - 2001-08-28 12:00 - 00096768 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\certmap.ocx
2013-11-25 09:41 - 2001-08-28 12:00 - 00082172 ____C C:\WINDOWS\system32\dllcache\bopomofo.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066728 ____C C:\WINDOWS\system32\dllcache\big5.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066594 ____C C:\WINDOWS\system32\dllcache\c_858.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_870.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_21027.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_21025.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20924.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20880.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20871.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20838.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20833.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20424.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20423.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20420.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20297.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20290.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20285.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20284.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20280.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20278.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20277.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20273.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20269.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20108.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20107.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20106.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20105.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1149.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1148.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1147.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1146.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1145.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1144.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1143.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1142.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1141.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1140.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1047.nls
2013-11-25 09:41 - 2001-08-28 12:00 - 00057856 ____C (SEIKO EPSON CORP.) C:\WINDOWS\system32\dllcache\esuimgd.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00056832 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\convlog.exe
2013-11-25 09:41 - 2001-08-28 12:00 - 00054528 ____C (Philips Semiconductors GmbH) C:\WINDOWS\system32\dllcache\cap7146.sys
2013-11-25 09:41 - 2001-08-28 12:00 - 00050176 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\adrot.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00045568 ____C (SEIKO EPSON CORP.) C:\WINDOWS\system32\dllcache\esunid.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00045568 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\browscap.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00036864 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hanjadic.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00033792 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\controt.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00031744 ____C (SEIKO EPSON CORP.) C:\WINDOWS\system32\dllcache\esucmd.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00031744 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsroute.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00029184 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\asptxn.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00025856 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\et4000.sys
2013-11-25 09:41 - 2001-08-28 12:00 - 00020480 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\counters.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00019968 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetsloc.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cprofile.exe
2013-11-25 09:41 - 2001-08-28 12:00 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\agt0804.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\agt0412.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\agt0411.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\agt0404.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00015872 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chgport.exe
2013-11-25 09:41 - 2001-08-28 12:00 - 00015360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\flattemp.exe
2013-11-25 09:41 - 2001-08-28 12:00 - 00014848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisreset.exe
2013-11-25 09:41 - 2001-08-28 12:00 - 00014848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chgusr.exe
2013-11-25 09:41 - 2001-08-28 12:00 - 00013824 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chglogon.exe
2013-11-25 09:41 - 2001-08-28 12:00 - 00011776 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxssend.exe
2013-11-25 09:41 - 2001-08-28 12:00 - 00010240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\change.exe
2013-11-25 09:41 - 2001-08-28 12:00 - 00010240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\aspperf.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00009216 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\authfilt.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00007680 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetmgr.exe
2013-11-25 09:41 - 2001-08-28 12:00 - 00007680 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ftpctrs2.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wamregps.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\f3ahvoas.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\c_is2022.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ftpsapi2.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\admxprox.dll
2013-11-25 09:41 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisrstap.dll
2013-11-25 09:41 - 2001-08-23 17:47 - 00043520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_fcachdll.dll
2013-11-25 09:41 - 2001-08-23 17:46 - 00045056 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_aqadmin.dll
2013-11-25 09:41 - 2001-08-23 17:46 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_adsiisex.dll
2013-11-25 09:40 - 2013-11-25 10:18 - 00023392 _____ C:\WINDOWS\system32\nscompat.tlb
2013-11-25 09:40 - 2013-11-25 10:18 - 00016832 _____ C:\WINDOWS\system32\amcompat.tlb
2013-11-25 09:40 - 2013-11-25 10:17 - 00316640 _____ C:\WINDOWS\WMSysPr9.prx
2013-11-25 09:40 - 2013-11-25 09:40 - 00003072 _____ C:\WINDOWS\system32\CONFIG.NT
2013-11-25 09:40 - 2013-11-25 09:40 - 00001607 _____ C:\Documents and Settings\All Users\Menu Démarrer\Configurer les programmes par défaut.lnk
2013-11-25 09:40 - 2013-11-25 09:40 - 00001599 _____ C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Assistance à distance.lnk
2013-11-25 09:40 - 2013-11-25 09:40 - 00001507 _____ C:\Documents and Settings\All Users\Menu Démarrer\Windows Update.lnk
2013-11-25 09:40 - 2013-11-25 09:40 - 00000792 _____ C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Lecteur Windows Media.lnk
2013-11-25 09:40 - 2013-11-25 09:40 - 00000398 _____ C:\Documents and Settings\All Users\Menu Démarrer\Catalogue Windows.lnk
2013-11-25 09:40 - 2013-11-25 09:40 - 00000000 __RSH C:\MSDOS.SYS
2013-11-25 09:40 - 2013-11-25 09:40 - 00000000 __RSH C:\IO.SYS
2013-11-25 09:40 - 2013-11-25 09:40 - 00000000 _____ C:\WINDOWS\control.ini
2013-11-25 09:40 - 2013-11-25 09:40 - 00000000 _____ C:\CONFIG.SYS
2013-11-25 09:40 - 2013-11-25 09:40 - 00000000 _____ C:\AUTOEXEC.BAT
2013-11-25 09:40 - 2001-08-28 12:00 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapi32.dll
2013-11-25 09:39 - 2013-11-29 08:25 - 00031712 _____ C:\WINDOWS\WindowsUpdate.log
2013-11-25 09:39 - 2013-11-25 10:17 - 00000000 __SHD C:\Documents and Settings\All Users\DRM
2013-11-25 09:39 - 2013-11-25 09:40 - 00000000 ___RD C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires
2013-11-25 09:39 - 2013-11-25 09:39 - 00000786 _____ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Windows Movie Maker.lnk
2013-11-25 09:39 - 2013-11-25 09:39 - 00000749 ___RH C:\WINDOWS\WindowsShell.Manifest
2013-11-25 09:39 - 2013-11-25 09:39 - 00000749 ___RH C:\WINDOWS\system32\wuaucpl.cpl.manifest
2013-11-25 09:39 - 2013-11-25 09:39 - 00000749 ___RH C:\WINDOWS\system32\sapi.cpl.manifest
2013-11-25 09:39 - 2013-11-25 09:39 - 00000749 ___RH C:\WINDOWS\system32\nwc.cpl.manifest
2013-11-25 09:39 - 2013-11-25 09:39 - 00000749 ___RH C:\WINDOWS\system32\ncpa.cpl.manifest
2013-11-25 09:39 - 2013-11-25 09:39 - 00000749 ___RH C:\WINDOWS\system32\cdplayer.exe.manifest
2013-11-25 09:39 - 2013-11-25 09:39 - 00000488 ___RH C:\WINDOWS\system32\WindowsLogon.manifest
2013-11-25 09:39 - 2013-11-25 09:39 - 00000488 ___RH C:\WINDOWS\system32\logonui.exe.manifest
2013-11-25 09:39 - 2013-11-25 09:39 - 00000000 ___RD C:\WINDOWS\Offline Web Pages
2013-11-25 09:39 - 2013-11-25 09:39 - 00000000 ___HD C:\Program Files\WindowsUpdate
2013-11-25 09:39 - 2013-11-25 09:39 - 00000000 ____D C:\WINDOWS\system32\DirectX
2013-11-25 09:39 - 2013-11-25 09:39 - 00000000 ____D C:\Program Files\Services en ligne
2013-11-25 09:39 - 2001-08-28 12:00 - 04399505 ____C C:\WINDOWS\system32\dllcache\nls302en.lex
2013-11-25 09:38 - 2013-11-25 10:03 - 00000000 ____D C:\Program Files\Fichiers communs\System
2013-11-25 09:38 - 2013-11-25 09:46 - 00000000 ____D C:\WINDOWS\system32\Restore
2013-11-25 09:38 - 2013-11-25 09:39 - 00000000 ____D C:\WINDOWS\srchasst
2013-11-25 09:38 - 2013-11-25 09:38 - 00000000 ___RD C:\Documents and Settings\All Users\Documents\Mes images
2013-11-25 09:38 - 2013-11-25 09:38 - 00000000 ____D C:\WINDOWS\system32\Macromed
2013-11-25 09:38 - 2013-11-25 09:38 - 00000000 ____D C:\Program Files\Outlook Express
2013-11-25 09:38 - 2013-11-25 09:38 - 00000000 ____D C:\Program Files\NetMeeting
2013-11-25 09:38 - 2013-11-25 09:38 - 00000000 ____D C:\Program Files\Movie Maker
2013-11-25 09:38 - 2013-11-25 09:38 - 00000000 ____D C:\Program Files\Fichiers communs\Services
2013-11-25 09:38 - 2013-11-25 09:38 - 00000000 ____D C:\Program Files\Fichiers communs\MSSoap
2013-11-25 09:38 - 2004-08-19 14:10 - 03555328 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\moviemk.exe
2013-11-25 09:38 - 2004-08-19 14:10 - 00384512 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rstrui.exe
2013-11-25 09:38 - 2004-08-19 14:10 - 00226816 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\npdrmv2.dll
2013-11-25 09:38 - 2004-08-19 14:10 - 00188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msh261.drv
2013-11-25 09:38 - 2004-08-19 14:10 - 00168960 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wuauclt1.exe
2013-11-25 09:38 - 2004-08-19 14:10 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt1.exe
2013-11-25 09:38 - 2004-08-19 14:10 - 00163840 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wuaucpl.cpl
2013-11-25 09:38 - 2004-08-19 14:10 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaucpl.cpl
2013-11-25 09:38 - 2004-08-19 14:10 - 00160768 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msconfig.exe
2013-11-25 09:38 - 2004-08-19 14:10 - 00151040 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\uploadm.exe
2013-11-25 09:38 - 2004-08-19 14:10 - 00112640 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wuauclt.exe
2013-11-25 09:38 - 2004-08-19 14:10 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2013-11-25 09:38 - 2004-08-19 14:10 - 00073728 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\setup50.exe
2013-11-25 09:38 - 2004-08-19 14:10 - 00060928 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\oemig50.exe
2013-11-25 09:38 - 2004-08-19 14:10 - 00060416 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msimn.exe
2013-11-25 09:38 - 2004-08-19 14:10 - 00051712 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\oobebaln.exe
2013-11-25 09:38 - 2004-08-19 14:10 - 00046080 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wab.exe
2013-11-25 09:38 - 2004-08-19 14:10 - 00030208 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wabmig.exe
2013-11-25 09:38 - 2004-08-19 14:10 - 00012288 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstinit.exe
2013-11-25 09:38 - 2004-08-19 14:10 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstinit.exe
2013-11-25 09:38 - 2004-08-19 14:10 - 00004639 ____C C:\WINDOWS\system32\dllcache\mplayer2.exe
2013-11-25 09:38 - 2004-08-19 14:09 - 04290048 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmm2res.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 03166208 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msgr3en.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 01311232 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msoe.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 01134592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wuaueng.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 01134592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 01044480 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\conf.exe
2013-11-25 09:38 - 2004-08-19 14:09 - 00848384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\vgx.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00768512 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\helpctr.exe
2013-11-25 09:38 - 2004-08-19 14:09 - 00743936 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\helpsvc.exe
2013-11-25 09:38 - 2004-08-19 14:09 - 00726590 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\srchui.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00678400 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetcomm.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00678400 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00563200 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msobmain.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00561179 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dao360.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00536576 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msado15.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00504832 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wab32.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00502272 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmm2fxa.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00487424 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\oledb32.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00432640 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wuapi.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00402432 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmm2filt.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00385024 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\callcont.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00382464 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\qmgr.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00381952 ____C () C:\WINDOWS\system32\dllcache\msinfo.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00364544 ____C (Microsoft Corporation (written by Digital Renaissance Inc.)) C:\WINDOWS\system32\dllcache\npdsplay.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00331776 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msadce.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00325632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmm2fxb.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00315392 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdasql.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00282624 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetcfg.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcfg.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00281600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstask.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstask.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00274432 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mst120.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00263168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wab32res.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00252928 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msoeacct.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msoeacct.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00241664 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\srrstr.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\srrstr.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00233472 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdaora.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00229376 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\nmas.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00221184 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmpns.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00221184 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\nac.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00218624 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icwconn1.exe
2013-11-25 09:38 - 2004-08-19 14:09 - 00217088 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sqlxmlx.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00204800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdaps.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00200704 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdaprst.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00200704 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msadox.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00193024 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\schedsvc.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00192512 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\nmwb.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00184320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wuaueng1.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng1.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00180224 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msadomd.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00176128 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icwhelp.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00172032 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\nmoldwb.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00171008 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\srsvc.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\srsvc.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00167936 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmm2ae.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00155648 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\nmft.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00155648 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msadds.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00153088 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\triedit.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00143360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msadco.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00122368 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msobcomm.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00120320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wuweb.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuweb.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00118784 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdarem.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00114176 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wucltui.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltui.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00105984 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msoert2.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\msoert2.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00104448 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\oeimport.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00102400 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pchshell.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00102400 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msjro.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00094208 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdatl3.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00093184 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iexplore.exe
2013-11-25 09:38 - 2004-08-19 14:09 - 00086016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\isign32.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00086016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icwconn2.exe
2013-11-25 09:38 - 2004-08-19 14:09 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\isign32.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00084992 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wabimp.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00081920 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\nmchat.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00081920 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ils.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\ils.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00081408 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\directdb.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00077824 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\oledb32r.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00077824 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\nmcom.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00077824 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdaosp.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00073728 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icwdial.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\icwdial.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00069632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msconf.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\msconf.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00067584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\srclient.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00065536 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icwphbk.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\icwphbk.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00061440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rrcm.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00061440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msadcf.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00061440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icwconn.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00058434 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\srchctls.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00057344 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mst123.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00057344 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msadrh15.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00057344 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msador15.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00057344 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\h323cc.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00053248 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msadcs.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00049152 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icwutil.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00045568 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\safrslv.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\safrslv.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00045056 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\confmrsl.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00043520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\safrcdlg.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00043520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\racpldlg.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\safrcdlg.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\racpldlg.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00040960 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dcap32.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00038912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pchsvc.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00038912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hmmapi.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00036864 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wups.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00036864 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdfmap.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00035840 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\oemiglib.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00034560 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mnmdd.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00034560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mnmdd.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00032768 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wabfind.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00032768 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mnmsrvc.exe
2013-11-25 09:38 - 2004-08-19 14:09 - 00032768 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icwdl.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00032768 ____C (Intel Corporation) C:\WINDOWS\system32\dllcache\isrdbg32.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mnmsrvc.exe
2013-11-25 09:38 - 2004-08-19 14:09 - 00032768 _____ (Intel Corporation) C:\WINDOWS\system32\isrdbg32.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00030720 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msobshel.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00029696 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\safrdm.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\safrdm.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00028672 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\nmmkcert.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00028672 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\nmasnt.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\nmmkcert.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00024576 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msxactps.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00024576 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icwrmind.exe
2013-11-25 09:38 - 2004-08-19 14:09 - 00022528 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fltmc.exe
2013-11-25 09:38 - 2004-08-19 14:09 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\fltMc.exe
2013-11-25 09:38 - 2004-08-19 14:09 - 00020480 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdatt.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00020480 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetwiz.exe
2013-11-25 09:38 - 2004-08-19 14:09 - 00018944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\qmgrprxy.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00018944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msobweb.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00018944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hscupd.exe
2013-11-25 09:38 - 2004-08-19 14:09 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgrprxy.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00018432 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedw.exe
2013-11-25 09:38 - 2004-08-19 14:09 - 00016896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fltlib.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\fltlib.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00016384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msobdl.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00010240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\npwmsdrm.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00008192 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\bitsprx2.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsprx2.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00007680 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmm2ext.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\bitsprx3.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsprx3.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wuauserv.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauserv.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmm2res2.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00004096 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmm2eres.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00004096 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdaurl.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00004096 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdasc.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00004096 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdaer.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00004096 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdaenum.dll
2013-11-25 09:38 - 2004-08-19 14:09 - 00004096 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdadc.dll
2013-11-25 09:38 - 2004-08-19 14:08 - 02534400 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msoeres.dll
2013-11-25 09:38 - 2004-08-19 14:08 - 00050688 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetres.dll
2013-11-25 09:38 - 2004-08-19 14:08 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetres.dll
2013-11-25 09:38 - 2004-08-19 14:08 - 00028672 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msader15.dll
2013-11-25 09:38 - 2004-08-19 14:08 - 00024576 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msaddsr.dll
2013-11-25 09:38 - 2004-08-19 14:08 - 00020480 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msadcer.dll
2013-11-25 09:38 - 2004-08-19 14:08 - 00016384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdasqlr.dll
2013-11-25 09:38 - 2004-08-19 14:08 - 00016384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdaremr.dll
2013-11-25 09:38 - 2004-08-19 14:08 - 00016384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdaprsr.dll
2013-11-25 09:38 - 2004-08-19 14:08 - 00016384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdaorar.dll
2013-11-25 09:38 - 2004-08-19 14:08 - 00016384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msadcor.dll
2013-11-25 09:38 - 2004-08-19 14:08 - 00016384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msadcfr.dll
2013-11-25 09:38 - 2004-08-19 14:04 - 00073600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sr.sys
2013-11-25 09:38 - 2004-08-19 14:04 - 00073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sr.sys
2013-11-25 09:38 - 2004-08-11 20:49 - 00827392 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\setup_wm.exe
2013-11-25 09:38 - 2004-08-11 20:49 - 00344064 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mpvis.dll
2013-11-25 09:38 - 2004-08-11 20:49 - 00077824 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmpband.dll
2013-11-25 09:38 - 2004-08-11 20:49 - 00073728 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmplayer.exe
2013-11-25 09:38 - 2004-08-10 21:51 - 00991232 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\migrate.exe
2013-11-25 09:38 - 2004-08-03 21:01 - 00124800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fltmgr.sys
2013-11-25 09:38 - 2004-08-03 21:01 - 00124800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2013-11-25 09:38 - 2004-08-03 21:00 - 00128000 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dhtmled.ocx
2013-11-25 09:38 - 2004-08-03 20:21 - 00081920 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msado27.tlb
2013-11-25 09:38 - 2004-08-03 20:21 - 00081920 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msado26.tlb
2013-11-25 09:38 - 2004-08-03 20:21 - 00081920 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msado25.tlb
2013-11-25 09:38 - 2004-08-03 20:21 - 00061440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msado21.tlb
2013-11-25 09:38 - 2004-08-03 20:21 - 00061440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msado20.tlb
2013-11-25 09:38 - 2004-05-12 00:18 - 00028672 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\custsat.dll
2013-11-25 09:38 - 2001-08-28 12:00 - 00235520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mssoap1.dll
2013-11-25 09:38 - 2001-08-28 12:00 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\msg723.acm
2013-11-25 09:38 - 2001-08-28 12:00 - 00099840 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\helphost.exe
2013-11-25 09:38 - 2001-08-28 12:00 - 00094720 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieinfo5.ocx
2013-11-25 09:38 - 2001-08-28 12:00 - 00073728 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icwtutor.exe
2013-11-25 09:38 - 2001-08-28 12:00 - 00072192 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\acctres.dll
2013-11-25 09:38 - 2001-08-28 12:00 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\acctres.dll
2013-11-25 09:38 - 2001-08-28 12:00 - 00065536 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icwres.dll
2013-11-25 09:38 - 2001-08-28 12:00 - 00049102 ___SH C:\WINDOWS\winnt256.bmp
2013-11-25 09:38 - 2001-08-28 12:00 - 00049102 ___SH C:\WINDOWS\winnt.bmp
2013-11-25 09:38 - 2001-08-28 12:00 - 00047104 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\srdiag.exe
2013-11-25 09:38 - 2001-08-28 12:00 - 00040960 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\trialoc.dll
2013-11-25 09:38 - 2001-08-28 12:00 - 00040448 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msinfo32.exe
2013-11-25 09:38 - 2001-08-28 12:00 - 00035328 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\notiflag.exe
2013-11-25 09:38 - 2001-08-28 12:00 - 00028160 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msoobe.exe
2013-11-25 09:38 - 2001-08-28 12:00 - 00025088 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wisc10.dll
2013-11-25 09:38 - 2001-08-28 12:00 - 00023552 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mssoapr.dll
2013-11-25 09:38 - 2001-08-28 12:00 - 00021504 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\brpinfo.dll
2013-11-25 09:38 - 2001-08-28 12:00 - 00016384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\isignup.exe
2013-11-25 09:38 - 2001-08-28 12:00 - 00016384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icfgnt5.dll
2013-11-25 09:38 - 2001-08-28 12:00 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfgnt5.dll
2013-11-25 09:38 - 2001-08-28 12:00 - 00012288 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wb32.exe
2013-11-25 09:38 - 2001-08-28 12:00 - 00012288 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\nmevtmsg.dll
2013-11-25 09:38 - 2001-08-28 12:00 - 00012288 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cb32.exe
2013-11-25 09:38 - 2001-08-28 12:00 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\nmevtmsg.dll
2013-11-25 09:38 - 2001-08-28 12:00 - 00011264 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\atrace.dll
2013-11-25 09:38 - 2001-08-28 12:00 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\atrace.dll
2013-11-25 09:38 - 2001-08-28 12:00 - 00007680 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hcappres.dll
2013-11-25 09:38 - 2001-08-28 12:00 - 00000984 ____C C:\WINDOWS\system32\dllcache\srframe.mmf
2013-11-25 09:37 - 2013-11-25 10:18 - 00040683 _____ C:\WINDOWS\wmsetup.log
2013-11-25 09:37 - 2013-11-25 10:18 - 00000000 ___RD C:\Documents and Settings\All Users\Documents\Ma musique
2013-11-25 09:37 - 2013-11-25 09:40 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
2013-11-25 09:37 - 2013-11-25 09:40 - 00000000 ____D C:\WINDOWS\Registration
2013-11-25 09:37 - 2013-11-25 09:38 - 00001022 _____ C:\WINDOWS\sessmgr.setup.log
2013-11-25 09:37 - 2013-11-25 09:37 - 00021892 _____ C:\WINDOWS\system32\emptyregdb.dat
2013-11-25 09:37 - 2013-11-25 09:37 - 00002070 _____ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\MSN.lnk
2013-11-25 09:37 - 2013-11-25 09:37 - 00000637 _____ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Windows Messenger.lnk
2013-11-25 09:37 - 2013-11-25 09:37 - 00000133 _____ C:\WINDOWS\DtcInstall.log
2013-11-25 09:37 - 2013-11-25 09:37 - 00000037 _____ C:\WINDOWS\vbaddin.ini
2013-11-25 09:37 - 2013-11-25 09:37 - 00000036 _____ C:\WINDOWS\vb.ini
2013-11-25 09:37 - 2013-11-25 09:37 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux
2013-11-25 09:37 - 2013-11-25 09:37 - 00000000 ____D C:\Program Files\Online Services
2013-11-25 09:37 - 2013-11-25 09:37 - 00000000 ____D C:\Program Files\MSN Gaming Zone
2013-11-25 09:37 - 2013-11-25 09:37 - 00000000 ____D C:\Program Files\Messenger
2013-11-25 09:37 - 2013-11-25 09:37 - 00000000 ____D C:\Program Files\ComPlus Applications
2013-11-25 09:37 - 2001-08-28 12:00 - 02178131 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\shvlres.dll
2013-11-25 09:37 - 2001-08-28 12:00 - 01817687 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\bckgres.dll
2013-11-25 09:37 - 2001-08-28 12:00 - 01175635 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hrtzres.dll
2013-11-25 09:37 - 2001-08-28 12:00 - 01042515 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cmnresm.dll
2013-11-25 09:37 - 2001-08-28 12:00 - 00781397 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chkrres.dll
2013-11-25 09:37 - 2001-08-28 12:00 - 00753236 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rvseres.dll
2013-11-25 09:37 - 2001-08-28 12:00 - 00217160 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cmnclim.dll
2013-11-25 09:37 - 2001-08-28 12:00 - 00113222 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\zoneclim.dll
2013-11-25 09:37 - 2001-08-28 12:00 - 00082501 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\bckg.dll
2013-11-25 09:37 - 2001-08-28 12:00 - 00066113 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\shvl.dll
2013-11-25 09:37 - 2001-08-28 12:00 - 00057409 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hrtz.dll
2013-11-25 09:37 - 2001-08-28 12:00 - 00048706 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rvse.dll
2013-11-25 09:37 - 2001-08-28 12:00 - 00042577 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\bckgzm.exe
2013-11-25 09:37 - 2001-08-28 12:00 - 00042575 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chkrzm.exe
2013-11-25 09:37 - 2001-08-28 12:00 - 00042574 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rvsezm.exe
2013-11-25 09:37 - 2001-08-28 12:00 - 00042573 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\shvlzm.exe
2013-11-25 09:37 - 2001-08-28 12:00 - 00042573 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hrtzzm.exe
2013-11-25 09:37 - 2001-08-28 12:00 - 00041029 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\zcorem.dll
2013-11-25 09:37 - 2001-08-28 12:00 - 00040515 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chkr.dll
2013-11-25 09:37 - 2001-08-28 12:00 - 00036937 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\zclientm.exe
2013-11-25 09:37 - 2001-08-28 12:00 - 00032339 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\uniansi.dll
2013-11-25 09:37 - 2001-08-28 12:00 - 00029760 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\znetm.dll
2013-11-25 09:37 - 2001-08-28 12:00 - 00013894 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\zonelibm.dll
2013-11-25 09:37 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\write.exe
2013-11-25 09:37 - 2001-08-28 12:00 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\write.exe
2013-11-25 09:37 - 2001-08-28 12:00 - 00004677 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\zeeverm.dll
2013-11-25 09:36 - 2013-11-25 09:37 - 00000000 ____D C:\WINDOWS\system32\MsDtc
2013-11-25 09:36 - 2013-11-25 09:37 - 00000000 ____D C:\WINDOWS\system32\Com
2013-11-25 09:36 - 2013-11-25 09:36 - 00000000 ___RD C:\Documents and Settings\All Users\Documents\Mes vidéos
2013-11-25 09:36 - 2013-11-25 09:36 - 00000000 ____D C:\Program Files\Windows NT
2013-11-25 09:36 - 2013-11-25 09:36 - 00000000 ____D C:\Program Files\MSN
2013-11-25 09:36 - 2004-08-19 16:10 - 00040840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\termdd.sys
2013-11-25 09:36 - 2004-08-19 14:10 - 00539136 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\spider.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\spider.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00369664 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmic.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00347648 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mspaint.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00284160 ____C (Cinematronics) C:\WINDOWS\system32\dllcache\pinball.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00218112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wordpad.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00218112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmiprvse.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00196608 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmiadap.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00142336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sessmgr.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sessmgr.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00139400 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rdpwd.sys
2013-11-25 09:36 - 2004-08-19 14:10 - 00139400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpwd.sys
2013-11-25 09:36 - 2004-08-19 14:10 - 00133120 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sndrec32.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\sndrec32.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00126464 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmiapsrv.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00124928 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mplay32.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mplay32.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00119808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wbemtest.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00087176 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rdpwsx.dll
2013-11-25 09:36 - 2004-08-19 14:10 - 00087176 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpwsx.dll
2013-11-25 09:36 - 2004-08-19 14:10 - 00071680 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\access.cpl
2013-11-25 09:36 - 2004-08-19 14:10 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\access.cpl
2013-11-25 09:36 - 2004-08-19 14:10 - 00067072 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rdshost.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdshost.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00062464 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rdpclip.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00036864 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\scrcons.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00021896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tdtcp.sys
2013-11-25 09:36 - 2004-08-19 14:10 - 00021896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdtcp.sys
2013-11-25 09:36 - 2004-08-19 14:10 - 00020992 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\qprocess.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\qprocess.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00013824 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rdsaddin.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdsaddin.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00012040 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tdpipe.sys
2013-11-25 09:36 - 2004-08-19 14:10 - 00012040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdpipe.sys
2013-11-25 09:36 - 2004-08-19 14:10 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdtc.exe
2013-11-25 09:36 - 2004-08-19 14:10 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtc.exe

2013-11-25 09:36 - 2004-08-19 14:09 - 01352704 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cimwin32.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 01251840 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\comsvcs.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 01251840 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00949248 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdtctm.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00628224 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\catsrvut.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00628224 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00548352 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dialer.exe
2013-11-25 09:36 - 2004-08-19 14:09 - 00540160 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\comuid.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\system32\comuid.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00530944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wbemcore.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00501248 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\clbcatq.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\system32\clbcatq.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00472064 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fastprox.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00437248 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmiprvsd.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00425472 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdtcprx.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcprx.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00352256 _____ (Hilgraeve, Inc.) C:\WINDOWS\system32\hypertrm.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00297984 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\termsrv.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00297984 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00273920 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wbemess.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00247808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\esscli.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00237056 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\provthrd.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00229888 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\catsrv.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrv.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00214528 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wbemcomn.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00212992 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ntevt.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00201216 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wbemcntl.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00197120 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wbemupgd.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00195584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\comadmin.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00191488 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cmprops.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmprops.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00189952 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\accwiz.exe
2013-11-25 09:36 - 2004-08-19 14:09 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\accwiz.exe
2013-11-25 09:36 - 2004-08-19 14:09 - 00185856 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\framedyn.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00178176 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wbemdisp.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00177152 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\repdrvfs.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00161280 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdtcuiu.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcuiu.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00156672 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmipcima.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00147968 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rdchost.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdchost.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00145408 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmisvc.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00144896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmiprov.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00140800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmidcprv.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00132096 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmipdskq.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00131584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\viewprov.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00124928 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mofd.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00110080 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\clbcatex.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\clbcatex.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00104448 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\clipbrd.exe
2013-11-25 09:36 - 2004-08-19 14:09 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\clipbrd.exe
2013-11-25 09:36 - 2004-08-19 14:09 - 00099328 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmiutils.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00094208 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tscfgwmi.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00092672 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\policman.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00090112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mtxoci.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00089088 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmiaprpl.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00086528 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\stdprov.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00085504 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\catsrvps.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvps.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00071680 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wbemcons.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00062976 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmipjobj.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00062464 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmipiprt.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00062464 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\colbact.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\colbact.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00061952 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\remotepg.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\remotepg.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00060928 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmicookr.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00058880 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdtclog.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00058880 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\licwmi.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtclog.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\licwmi.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00056320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\servdeps.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\servdeps.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00047104 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ncprov.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00043520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wbemsvc.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00041472 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmipsess.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00039424 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cfgbkend.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00024576 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\krnlprov.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00019968 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rdpsnd.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsnd.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00018944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wbemprox.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00017920 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mmfutil.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmfutil.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00016896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mofcomp.exe
2013-11-25 09:36 - 2004-08-19 14:09 - 00011776 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xolehlp.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\xolehlp.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00011264 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icaapi.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\icaapi.dll
2013-11-25 09:36 - 2004-08-19 14:09 - 00009728 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\comrepl.exe
2013-11-25 09:36 - 2004-08-19 14:09 - 00007680 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmiapres.dll
2013-11-25 09:36 - 2004-08-19 13:52 - 00411648 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstsc.exe
2013-11-25 09:36 - 2004-08-19 13:52 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2013-11-25 09:36 - 2004-08-19 13:52 - 00044544 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tscupgrd.exe
2013-11-25 09:36 - 2004-08-19 13:52 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscupgrd.exe
2013-11-25 09:36 - 2004-08-03 23:01 - 00196864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpdr.sys
2013-11-25 09:36 - 2004-08-03 20:59 - 00655360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstscax.dll
2013-11-25 09:36 - 2004-08-03 20:59 - 00655360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00634880 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\getuname.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00634880 _____ (Microsoft Corporation) C:\WINDOWS\system32\getuname.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00273920 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msiprov.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00232960 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\avtapi.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\avtapi.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00147456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\comsnap.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsnap.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00139264 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sndvol32.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\sndvol32.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00128000 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshearts.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshearts.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00120320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dsprov.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00119808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winmine.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmine.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00116224 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\updprov.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00115200 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\calc.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00093702 _____ C:\WINDOWS\system32\subrange.uce
2013-11-25 09:36 - 2001-08-28 12:00 - 00082432 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\comrepl.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\comrepl.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00080896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\charmap.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\charmap.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00077312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmipicmp.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00073216 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\avwav.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\avwav.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00065978 _____ C:\WINDOWS\Bulles de savon.bmp
2013-11-25 09:36 - 2001-08-28 12:00 - 00065954 _____ C:\WINDOWS\Vent de prairie.bmp
2013-11-25 09:36 - 2001-08-28 12:00 - 00065832 _____ C:\WINDOWS\Mur de Santa Fe.bmp
2013-11-25 09:36 - 2001-08-28 12:00 - 00063488 _____ C:\WINDOWS\system32\wmimgmt.msc
2013-11-25 09:36 - 2001-08-28 12:00 - 00061952 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tmplprov.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00061440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmimsg.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00060458 _____ C:\WINDOWS\system32\ideograf.uce
2013-11-25 09:36 - 2001-08-28 12:00 - 00059904 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wbemdisp.tlb
2013-11-25 09:36 - 2001-08-28 12:00 - 00059904 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\trnsprov.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00057344 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sol.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\sol.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00055808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\freecell.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\freecell.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00054272 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\stclient.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\stclient.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00053248 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fwdprov.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00052224 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmitimep.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00045568 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmi2xml.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00044544 _____ (Hilgraeve, Inc.) C:\WINDOWS\system32\hticons.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00040960 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smtpcons.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00035840 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winchat.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\winchat.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00033792 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\regini.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\regini.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00031232 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wbemads.tlb
2013-11-25 09:36 - 2001-08-28 12:00 - 00027768 _____ C:\WINDOWS\system32\tslabels.ini
2013-11-25 09:36 - 2001-08-28 12:00 - 00026680 _____ C:\WINDOWS\Rivière Sumida.bmp
2013-11-25 09:36 - 2001-08-28 12:00 - 00026582 _____ C:\WINDOWS\Granit vert.bmp
2013-11-25 09:36 - 2001-08-28 12:00 - 00025600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\comaddin.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\comaddin.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00025088 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mtxlegih.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxlegih.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00024006 _____ C:\WINDOWS\system32\gb2312.uce
2013-11-25 09:36 - 2001-08-28 12:00 - 00022984 _____ C:\WINDOWS\system32\bopomofo.uce
2013-11-25 09:36 - 2001-08-28 12:00 - 00022528 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\qwinsta.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00022528 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msg.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\qwinsta.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msg.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00020480 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mtxdm.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxdm.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mtsadmin.tlb
2013-11-25 09:36 - 2001-08-28 12:00 - 00018944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winmgmtr.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00017408 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tsshutdn.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00017408 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\qappsrv.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsshutdn.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\qappsrv.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00017362 _____ C:\WINDOWS\Rhododendron.bmp
2013-11-25 09:36 - 2001-08-28 12:00 - 00017336 _____ C:\WINDOWS\Jour de pêche.bmp
2013-11-25 09:36 - 2001-08-28 12:00 - 00017062 _____ C:\WINDOWS\Tasse à café.bmp
2013-11-25 09:36 - 2001-08-28 12:00 - 00016896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\unsecapp.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00016896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tskill.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\tskill.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00016740 _____ C:\WINDOWS\system32\shiftjis.uce
2013-11-25 09:36 - 2001-08-28 12:00 - 00016730 _____ C:\WINDOWS\Plume.bmp
2013-11-25 09:36 - 2001-08-28 12:00 - 00016384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rwinsta.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00016384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\avmeter.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rwinsta.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\avmeter.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00015872 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\logoff.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00015872 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cdmodem.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoff.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdmodem.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00015360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tscon.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00015360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\shadow.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscon.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\shadow.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00014848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tsdiscon.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsdiscon.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00014336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winmgmt.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00013312 ____C (Hilgraeve, Inc.) C:\WINDOWS\system32\dllcache\htrn_jis.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00012876 _____ C:\WINDOWS\system32\korean.uce
2013-11-25 09:36 - 2001-08-28 12:00 - 00012288 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wbemads.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00010240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\reset.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\reset.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00009522 _____ C:\WINDOWS\Zapotec.bmp
2013-11-25 09:36 - 2001-08-28 12:00 - 00008484 _____ C:\WINDOWS\system32\kanji_2.uce
2013-11-25 09:36 - 2001-08-28 12:00 - 00006948 _____ C:\WINDOWS\system32\kanji_1.uce
2013-11-25 09:36 - 2001-08-28 12:00 - 00005120 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dcomcnfg.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00005120 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\comrereg.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomcnfg.exe
2013-11-25 09:36 - 2001-08-28 12:00 - 00004608 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rdpcfgex.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcfgex.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00004096 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mtxex.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxex.dll
2013-11-25 09:36 - 2001-08-28 12:00 - 00003914 _____ C:\WINDOWS\system32\msdtcprf.ini
2013-11-25 09:36 - 2001-08-28 12:00 - 00003286 _____ C:\WINDOWS\system32\tslabels.h
2013-11-25 09:36 - 2001-08-28 12:00 - 00001272 _____ C:\WINDOWS\Rosace bleue 16.bmp
2013-11-25 09:36 - 2001-08-28 12:00 - 00001263 _____ C:\WINDOWS\system32\usrlogon.cmd
2013-11-25 09:36 - 2001-08-28 12:00 - 00000768 _____ C:\WINDOWS\system32\msdtcprf.h
2013-11-25 09:35 - 2013-11-25 12:15 - 00000906 _____ C:\WINDOWS\wiadebug.log
2013-11-25 09:35 - 2013-11-25 12:09 - 00000050 _____ C:\WINDOWS\wiaservc.log
2013-11-25 09:35 - 2013-11-25 09:37 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
2013-11-25 09:35 - 2013-11-25 09:35 - 00000200 _____ C:\WINDOWS\cmsetacl.log
2013-11-25 09:35 - 2013-11-25 09:35 - 00000000 _____ C:\WINDOWS\Sti_Trace.log
2013-11-25 09:35 - 2001-08-17 21:59 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\audstub.sys
2013-11-25 09:34 - 2004-08-19 16:09 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\irftp.exe
2013-11-25 09:34 - 2004-08-19 16:09 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll
2013-11-25 09:34 - 2004-08-19 16:09 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshirda.dll
2013-11-25 09:34 - 2004-08-19 15:54 - 00058496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\redbook.sys
2013-11-25 09:34 - 2004-08-03 23:07 - 00014080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\CmBatt.sys
2013-11-25 09:34 - 2004-08-03 23:00 - 00087424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\irda.sys
2013-11-25 09:34 - 2004-08-03 23:00 - 00028672 _____ (National Semiconductor Corporation) C:\WINDOWS\system32\Drivers\nscirda.sys
2013-11-25 09:34 - 2001-08-17 21:58 - 00009344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\compbatt.sys
2013-11-25 09:34 - 2001-08-17 21:57 - 00014080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\battc.sys
2013-11-25 09:34 - 2001-08-17 21:51 - 00019584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasirda.sys
2013-11-25 09:33 - 2004-08-19 16:09 - 00077312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbui.dll
2013-11-25 09:33 - 2004-08-19 16:09 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbui.dll
2013-11-25 09:33 - 2004-08-19 15:59 - 00005504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelide.sys
2013-11-25 09:32 - 2013-11-25 19:33 - 00808798 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2013-11-25 09:32 - 2013-11-25 19:33 - 00075674 _____ C:\WINDOWS\iis6.log
2013-11-25 09:32 - 2013-11-25 19:33 - 00036299 _____ C:\WINDOWS\FaxSetup.log
2013-11-25 09:32 - 2013-11-25 19:33 - 00026396 _____ C:\WINDOWS\ocgen.log
2013-11-25 09:32 - 2013-11-25 19:33 - 00024109 _____ C:\WINDOWS\comsetup.log
2013-11-25 09:32 - 2013-11-25 19:33 - 00021536 _____ C:\WINDOWS\tsoc.log
2013-11-25 09:32 - 2013-11-25 19:33 - 00018192 _____ C:\WINDOWS\msmqinst.log
2013-11-25 09:32 - 2013-11-25 19:33 - 00012873 _____ C:\WINDOWS\ntdtcsetup.log
2013-11-25 09:32 - 2013-11-25 19:33 - 00007122 _____ C:\WINDOWS\netfxocm.log
2013-11-25 09:32 - 2013-11-25 19:33 - 00003187 _____ C:\WINDOWS\MedCtrOC.log
2013-11-25 09:32 - 2013-11-25 19:33 - 00002496 _____ C:\WINDOWS\tabletoc.log
2013-11-25 09:32 - 2013-11-25 19:33 - 00002253 _____ C:\WINDOWS\ocmsn.log
2013-11-25 09:32 - 2013-11-25 19:33 - 00002107 _____ C:\WINDOWS\msgsocm.log
2013-11-25 09:32 - 2013-11-25 19:33 - 00001393 _____ C:\WINDOWS\imsins.log
2013-11-25 09:32 - 2013-11-25 19:33 - 00001393 _____ C:\WINDOWS\imsins.BAK
2013-11-25 09:32 - 2013-11-25 19:33 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
2013-11-25 09:32 - 2013-11-25 19:33 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Démarrer\Programmes
2013-11-25 09:32 - 2013-11-25 15:29 - 00000000 ____D C:\Documents and Settings\All Users\Bureau
2013-11-25 09:32 - 2013-11-25 11:45 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Démarrer
2013-11-25 09:32 - 2013-11-25 10:54 - 00000000 ____D C:\Program Files\Fichiers communs\Microsoft Shared
2013-11-25 09:32 - 2013-11-25 10:43 - 00000000 ____D C:\Program Files\Fichiers communs
2013-11-25 09:32 - 2013-11-25 09:40 - 00004205 _____ C:\WINDOWS\ODBCINST.INI
2013-11-25 09:32 - 2013-11-25 09:40 - 00000000 ___SD C:\Documents and Settings\Default User\Local Settings\Historique
2013-11-25 09:32 - 2013-11-25 09:40 - 00000000 ___RD C:\Documents and Settings\Default User\Menu Démarrer\Programmes
2013-11-25 09:32 - 2013-11-25 09:36 - 00000000 ___HD C:\Documents and Settings\Default User\Modèles
2013-11-25 09:32 - 2013-11-25 09:32 - 00001586 _____ C:\WINDOWS\regopt.log
2013-11-25 09:32 - 2013-11-25 09:32 - 00000000 ___RD C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Démarrage
2013-11-25 09:32 - 2013-11-25 09:32 - 00000000 ___RD C:\Documents and Settings\Default User\Menu Démarrer
2013-11-25 09:32 - 2013-11-25 09:32 - 00000000 ___HD C:\Documents and Settings\Default User\Voisinage réseau
2013-11-25 09:32 - 2013-11-25 09:32 - 00000000 ___HD C:\Documents and Settings\Default User\Voisinage d'impression
2013-11-25 09:32 - 2013-11-25 09:32 - 00000000 ___HD C:\Documents and Settings\All Users\Modèles
2013-11-25 09:32 - 2013-11-25 09:32 - 00000000 ____D C:\Program Files\Fichiers communs\SpeechEngines
2013-11-25 09:32 - 2013-11-25 09:32 - 00000000 ____D C:\Program Files\Fichiers communs\ODBC
2013-11-25 09:32 - 2013-11-25 09:32 - 00000000 ____D C:\Documents and Settings\Default User\Favoris
2013-11-25 09:32 - 2013-11-25 09:32 - 00000000 ____D C:\Documents and Settings\Default User\Bureau
2013-11-25 09:32 - 2013-11-25 09:32 - 00000000 ____D C:\Documents and Settings\All Users\Favoris
2013-11-25 09:32 - 2004-08-19 16:09 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\storprop.dll
2013-11-25 09:32 - 2004-08-19 16:07 - 01013912 ____C C:\WINDOWS\system32\dllcache\SP2.CAT
2013-11-25 09:32 - 2004-08-19 15:36 - 00103124 ____C C:\WINDOWS\system32\dllcache\tabletpc.cat
2013-11-25 09:32 - 2004-08-19 15:32 - 01897850 ____C C:\WINDOWS\system32\dllcache\NT5.CAT
2013-11-25 09:32 - 2004-08-19 15:32 - 00031965 ____C C:\WINDOWS\system32\dllcache\mediactr.cat
2013-11-25 09:32 - 2004-08-19 15:32 - 00011651 ____C C:\WINDOWS\system32\dllcache\msn9.cat
2013-11-25 09:32 - 2004-08-19 15:22 - 00141702 ____C C:\WINDOWS\system32\dllcache\netfx.cat
2013-11-25 09:32 - 2004-08-19 15:22 - 00019569 ____C C:\WINDOWS\system32\dllcache\msn7.cat
2013-11-25 09:32 - 2004-08-19 15:22 - 00007245 ____C C:\WINDOWS\system32\dllcache\MSTSWEB.CAT
2013-11-25 09:32 - 2004-08-19 15:21 - 01086058 ____R C:\WINDOWS\SET4.tmp
2013-11-25 09:32 - 2004-08-19 15:21 - 01086058 ____C C:\WINDOWS\system32\dllcache\NTPRINT.CAT
2013-11-25 09:32 - 2004-08-19 15:21 - 00622820 ____C C:\WINDOWS\system32\dllcache\NT5INF.CAT
2013-11-25 09:32 - 2004-08-19 15:21 - 00030983 ____C C:\WINDOWS\system32\dllcache\FP4.CAT
2013-11-25 09:32 - 2004-08-19 15:21 - 00014043 ____R C:\WINDOWS\SET8.tmp
2013-11-25 09:32 - 2004-08-19 15:21 - 00014043 ____C C:\WINDOWS\system32\dllcache\IMS.CAT
2013-11-25 09:32 - 2004-08-19 15:21 - 00009581 ____C C:\WINDOWS\system32\dllcache\MSMSGS.CAT
2013-11-25 09:32 - 2004-08-19 14:10 - 00159744 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sapi.cpl
2013-11-25 09:32 - 2004-08-19 14:10 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\system\WINSPOOL.DRV
2013-11-25 09:32 - 2004-08-19 14:10 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\NOTEPAD.EXE
2013-11-25 09:32 - 2004-08-19 14:09 - 00741376 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sapi.dll
2013-11-25 09:32 - 2004-08-19 14:09 - 00008704 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\batt.dll
2013-11-25 09:32 - 2004-08-19 14:09 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\batt.dll
2013-11-25 09:32 - 2004-08-19 13:52 - 00070688 _____ (Microsoft Corporation) C:\WINDOWS\system\MMSYSTEM.DLL
2013-11-25 09:32 - 2004-08-03 21:00 - 00011264 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\irenum.sys
2013-11-25 09:32 - 2004-08-03 21:00 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\irenum.sys
2013-11-25 09:32 - 2004-07-17 09:48 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_28603.nls
2013-11-25 09:32 - 2004-07-17 09:48 - 00066082 _____ C:\WINDOWS\system32\c_28603.nls
2013-11-25 09:32 - 2004-07-17 09:45 - 00007334 ____C C:\WINDOWS\system32\dllcache\wmerrenu.cat
2013-11-25 09:32 - 2001-08-28 12:00 - 01685606 ____C C:\WINDOWS\system32\dllcache\sam.spd
2013-11-25 09:32 - 2001-08-28 12:00 - 00809394 ____C C:\WINDOWS\system32\dllcache\NT5IIS.CAT
2013-11-25 09:32 - 2001-08-28 12:00 - 00774144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\spttseng.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00643717 ____C C:\WINDOWS\system32\dllcache\ltts1033.lxa
2013-11-25 09:32 - 2001-08-28 12:00 - 00605050 ____C C:\WINDOWS\system32\dllcache\r1033tts.lxa
2013-11-25 09:32 - 2001-08-28 12:00 - 00399670 ____C C:\WINDOWS\system32\dllcache\MAPIMIG.CAT
2013-11-25 09:32 - 2001-08-28 12:00 - 00185344 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\thawbrkr.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Thawbrkr.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00176157 ____C (Digi International, Inc.) C:\WINDOWS\system32\dllcache\dgrpsetu.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00176157 _____ (Digi International, Inc.) C:\WINDOWS\system32\dgrpsetu.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00127168 _____ (Microsoft Corporation) C:\WINDOWS\system\MSVIDEO.DLL
2013-11-25 09:32 - 2001-08-28 12:00 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\system\AVIFILE.DLL
2013-11-25 09:32 - 2001-08-28 12:00 - 00103424 ____C (Equinox Systems Inc.) C:\WINDOWS\system32\dllcache\eqnclass.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00103424 _____ (Equinox Systems Inc.) C:\WINDOWS\system32\EqnClass.Dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00086044 ____C (Digi International) C:\WINDOWS\system32\dllcache\dgsetup.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00086044 _____ (Digi International) C:\WINDOWS\system32\dgsetup.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system\OLECLI.DLL
2013-11-25 09:32 - 2001-08-28 12:00 - 00077824 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\spcommon.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00073680 _____ (Microsoft Corporation) C:\WINDOWS\system\MCIAVI.DRV
2013-11-25 09:32 - 2001-08-28 12:00 - 00070352 _____ (Microsoft Corporation) C:\WINDOWS\system\AVICAP.DLL
2013-11-25 09:32 - 2001-08-28 12:00 - 00066594 ____C C:\WINDOWS\system32\dllcache\c_869.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066594 ____C C:\WINDOWS\system32\dllcache\c_866.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066594 ____C C:\WINDOWS\system32\dllcache\c_864.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066594 ____C C:\WINDOWS\system32\dllcache\c_862.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066594 ____C C:\WINDOWS\system32\dllcache\c_857.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066594 ____C C:\WINDOWS\system32\dllcache\c_855.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066594 ____C C:\WINDOWS\system32\dllcache\c_852.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066594 ____C C:\WINDOWS\system32\dllcache\c_737.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066594 ____C C:\WINDOWS\system32\dllcache\c_720.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066594 _____ C:\WINDOWS\system32\c_869.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066594 _____ C:\WINDOWS\system32\c_866.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066594 _____ C:\WINDOWS\system32\c_864.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066594 _____ C:\WINDOWS\system32\c_862.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066594 _____ C:\WINDOWS\system32\c_857.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066594 _____ C:\WINDOWS\system32\c_855.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066594 _____ C:\WINDOWS\system32\c_852.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066594 _____ C:\WINDOWS\system32\c_737.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066594 _____ C:\WINDOWS\system32\c_720.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_875.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_708.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_28599.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_28597.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_28596.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_28595.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_28594.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20127.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_10082.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_10081.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_10029.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_10021.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_10017.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_10010.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_10007.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_10006.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_10005.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_10004.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 _____ C:\WINDOWS\system32\c_875.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 _____ C:\WINDOWS\system32\c_708.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 _____ C:\WINDOWS\system32\c_28599.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 _____ C:\WINDOWS\system32\C_28597.NLS
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 _____ C:\WINDOWS\system32\C_28596.NLS
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 _____ C:\WINDOWS\system32\C_28595.NLS
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 _____ C:\WINDOWS\system32\C_28594.NLS
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 _____ C:\WINDOWS\system32\c_20127.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 _____ C:\WINDOWS\system32\c_10082.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 _____ C:\WINDOWS\system32\c_10081.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 _____ C:\WINDOWS\system32\c_10029.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 _____ C:\WINDOWS\system32\c_10021.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 _____ C:\WINDOWS\system32\c_10017.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 _____ C:\WINDOWS\system32\c_10010.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 _____ C:\WINDOWS\system32\c_10007.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 _____ C:\WINDOWS\system32\c_10006.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 _____ C:\WINDOWS\system32\c_10005.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00066082 _____ C:\WINDOWS\system32\c_10004.nls
2013-11-25 09:32 - 2001-08-28 12:00 - 00065536 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\spcplui.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00037509 ____C C:\WINDOWS\system32\dllcache\MW770.CAT
2013-11-25 09:32 - 2001-08-28 12:00 - 00036864 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sapisvr.exe
2013-11-25 09:32 - 2001-08-28 12:00 - 00033904 _____ (Microsoft Corporation) C:\WINDOWS\system\COMMDLG.DLL
2013-11-25 09:32 - 2001-08-28 12:00 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system\MCIWAVE.DRV
2013-11-25 09:32 - 2001-08-28 12:00 - 00025280 _____ (Microsoft Corporation) C:\WINDOWS\system\MCISEQ.DRV
2013-11-25 09:32 - 2001-08-28 12:00 - 00024661 ____C (Perle Systems Ltd.) C:\WINDOWS\system32\dllcache\spxcoins.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00024661 _____ (Perle Systems Ltd.) C:\WINDOWS\system32\spxcoins.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system\OLESVR.DLL
2013-11-25 09:32 - 2001-08-28 12:00 - 00022016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\agt0408.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00019968 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\agt040e.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\agt041f.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\agt0419.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\agt0415.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\agt040d.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\agt0405.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\agt0401.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00019200 _____ (Microsoft Corporation) C:\WINDOWS\system\TAPI.DLL
2013-11-25 09:32 - 2001-08-28 12:00 - 00015872 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\taskman.exe
2013-11-25 09:32 - 2001-08-28 12:00 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\TASKMAN.EXE
2013-11-25 09:32 - 2001-08-28 12:00 - 00013600 _____ (Microsoft Corporation) C:\WINDOWS\system\WFWNET.DRV
2013-11-25 09:32 - 2001-08-28 12:00 - 00013497 ____C C:\WINDOWS\system32\dllcache\HPCRDP.CAT
2013-11-25 09:32 - 2001-08-28 12:00 - 00013312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\irclass.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\irclass.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00010752 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\c_iscii.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\c_iscii.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00009936 _____ (Microsoft Corporation) C:\WINDOWS\system\LZEXPAND.DLL
2013-11-25 09:32 - 2001-08-28 12:00 - 00009104 _____ (Microsoft Corporation) C:\WINDOWS\system\VER.DLL
2013-11-25 09:32 - 2001-08-28 12:00 - 00008599 ____C C:\WINDOWS\system32\dllcache\IASNT4.CAT
2013-11-25 09:32 - 2001-08-28 12:00 - 00008192 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdhept.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00008192 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdhept.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00007168 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdcz.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdcz.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006656 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdycl.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006656 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdsl1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006656 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdsl.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006656 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdpl.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006656 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdhu.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006656 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdhela3.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006656 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdcz2.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006656 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdcz1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006656 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdcr.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006656 ____R (Microsoft Corporation) C:\WINDOWS\system32\KBDAL.DLL
2013-11-25 09:32 - 2001-08-28 12:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdycl.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdsl1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdsl.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdpl.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdhu.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdhela3.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdcz2.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdcz1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdcr.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdal.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdtuq.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdtuf.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdth3.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdth2.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdlv1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdlv.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdinpun.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdhela2.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdgkl.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdest.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdtuq.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdtuf.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdth3.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdth2.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdlv1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdlv.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdinpun.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdhela2.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdgkl.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdest.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ftlx041e.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ftlx041e.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdycc.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdvntc.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbduzb.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdurdu.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdur.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdth1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdth0.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdtat.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdsyr2.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdsyr1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdru1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdru.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdro.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdpl1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdmon.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdlt1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdlt.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdkyr.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdkaz.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdintel.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdintam.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdinmar.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdinkan.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdinhin.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdinguj.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdindev.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdhu1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdheb.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdhe319.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdhe220.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdhe.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdfa.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbddiv2.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbddiv1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdbu.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdblr.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdazel.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdaze.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbda3.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbda2.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbda1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdycc.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdvntc.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbduzb.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdusa.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdurdu.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdur.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdth1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdth0.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdtat.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdsyr2.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdsyr1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdru1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdru.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdro.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdpl1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdmon.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdlt1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdlt.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdkyr.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdkaz.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdintel.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdintam.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdinmar.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdinkan.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdinhin.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdinguj.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdindev.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdhu1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdheb.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdhe319.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdhe220.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdhe.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdfa.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbddiv2.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbddiv1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdbu.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdblr.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdazel.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdaze.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbda3.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbda2.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbda1.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdusa.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005120 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdgeo.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005120 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdarmw.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005120 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdarme.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005120 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdgeo.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005120 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdarmw.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005120 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdarme.dll
2013-11-25 09:32 - 2001-08-28 12:00 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system\SHELL.DLL
2013-11-25 09:32 - 2001-08-28 12:00 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system\TIMER.DRV
2013-11-25 09:32 - 2001-08-28 12:00 - 00003360 _____ (Microsoft Corporation) C:\WINDOWS\system\SYSTEM.DRV
2013-11-25 09:32 - 2001-08-28 12:00 - 00003072 ____N C:\WINDOWS\system32\CONFIG.TMP
2013-11-25 09:32 - 2001-08-28 12:00 - 00002176 _____ (Microsoft Corporation) C:\WINDOWS\system\VGA.DRV
2013-11-25 09:32 - 2001-08-28 12:00 - 00002032 _____ (Microsoft Corporation) C:\WINDOWS\system\MOUSE.DRV
2013-11-25 09:32 - 2001-08-28 12:00 - 00002000 _____ (Microsoft Corporation) C:\WINDOWS\system\KEYBOARD.DRV
2013-11-25 09:32 - 2001-08-28 12:00 - 00001896 _____ C:\WINDOWS\system32\AUTOEXEC.NT
2013-11-25 09:32 - 2001-08-28 12:00 - 00001744 _____ (Microsoft Corporation) C:\WINDOWS\system\SOUND.DRV
2013-11-25 09:32 - 2001-08-28 12:00 - 00001152 _____ (Microsoft Corporation) C:\WINDOWS\system\MMTASK.TSK
2013-11-25 09:32 - 2001-08-28 12:00 - 00000888 ____C C:\WINDOWS\system32\dllcache\sam.sdf
2013-11-25 09:32 - 2001-08-23 11:00 - 00007382 ____C C:\WINDOWS\system32\dllcache\OEMBIOS.CAT
2013-11-25 09:31 - 2013-11-29 08:39 - 00689166 _____ C:\WINDOWS\setupapi.log
2013-11-25 09:31 - 2013-11-25 13:52 - 00186628 _____ C:\WINDOWS\setupact.log
2013-11-25 09:31 - 2013-11-25 10:22 - 00324320 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2013-11-25 09:31 - 2013-11-25 09:31 - 00000000 _____ C:\WINDOWS\setuperr.log
2013-11-25 09:31 - 2004-08-19 16:07 - 01013912 ____R C:\WINDOWS\SET3.tmp
2013-11-25 09:29 - 2013-11-25 09:35 - 00000212 ___SH C:\boot.ini
2013-11-25 09:29 - 2013-11-25 09:29 - 00663552 _____ C:\WINDOWS\system32\config\software.sav
2013-11-25 09:29 - 2013-11-25 09:29 - 00438272 _____ C:\WINDOWS\system32\config\system.sav
2013-11-25 09:29 - 2013-11-25 09:29 - 00262144 _____ C:\WINDOWS\system32\config\userdiff
2013-11-25 09:29 - 2013-11-25 09:29 - 00094208 _____ C:\WINDOWS\system32\config\default.sav
2013-11-25 09:29 - 2013-11-25 09:29 - 00001024 ____H C:\WINDOWS\system32\config\userdiff.LOG
2013-11-25 09:29 - 2013-11-25 09:29 - 00001024 ____H C:\WINDOWS\system32\config\TempKey.LOG
2013-11-25 09:24 - 2013-11-25 19:33 - 00000000 ____D C:\WINDOWS\system32\mui
2013-11-25 09:24 - 2013-11-25 11:57 - 00000000 ____D C:\WINDOWS\security
2013-11-25 09:24 - 2013-11-25 10:22 - 00000000 _____ C:\WINDOWS\MEMORY.DMP
2013-11-25 09:24 - 2013-11-25 10:18 - 00000000 ____D C:\WINDOWS\Help
2013-11-25 09:24 - 2013-11-25 09:41 - 00000000 ____D C:\WINDOWS\repair
2013-11-25 09:24 - 2013-11-25 09:41 - 00000000 ____D C:\WINDOWS\ime
2013-11-25 09:24 - 2013-11-25 09:40 - 00000000 ____D C:\WINDOWS\system32\ias
2013-11-25 09:24 - 2013-11-25 09:39 - 00000000 ___RD C:\WINDOWS\Web
2013-11-25 09:24 - 2013-11-25 09:38 - 00000000 ____D C:\WINDOWS\pchealth
2013-11-25 09:24 - 2013-11-25 09:36 - 00000000 ____D C:\WINDOWS\Cursors
2013-11-25 09:24 - 2013-11-25 09:35 - 00000000 ____D C:\WINDOWS\system32\spool
2013-11-25 09:24 - 2013-11-25 09:34 - 00000000 ____D C:\WINDOWS\Media
2013-11-25 09:24 - 2013-11-25 09:32 - 00000000 ____D C:\WINDOWS\system
2013-11-25 09:24 - 2013-11-25 09:31 - 00000000 ____D C:\WINDOWS\system32\usmt
2013-11-25 09:24 - 2013-11-25 09:28 - 00000000 ____D C:\WINDOWS\system32\npp
2013-11-25 09:24 - 2013-11-25 09:28 - 00000000 ____D C:\WINDOWS\PeerNet
2013-11-25 09:24 - 2013-11-25 09:28 - 00000000 ____D C:\WINDOWS\msagent
2013-11-25 09:24 - 2013-11-25 09:26 - 00000000 ____D C:\WINDOWS\twain_32
2013-11-25 09:24 - 2013-11-25 09:26 - 00000000 ____D C:\WINDOWS\system32\ras
2013-11-25 09:24 - 2013-11-25 09:26 - 00000000 ____D C:\WINDOWS\system32\icsxml
2013-11-25 09:24 - 2013-11-25 09:26 - 00000000 ____D C:\WINDOWS\system32\1036
2013-11-25 09:24 - 2013-11-25 09:26 - 00000000 ____D C:\WINDOWS\system32\1033
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\wins
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\ShellExt
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\IME
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\export
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\Drivers\disdn
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\dhcp
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\3com_dmi
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\3076
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\2052
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\1054
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\1042
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\1041
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\1037
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\1031
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\1028
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\1025
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\Resources
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\Provisioning
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\mui
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\java
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\Driver Cache
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\Connection Wizard
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\addins
 
==================== One Month Modified Files and Folders =======
 
2013-11-29 09:57 - 2013-11-29 08:29 - 00249438 _____ C:\Documents and Settings\Administrateur\Bureau\ce que je poste sur bleeping.txt
2013-11-29 09:52 - 2013-11-25 10:47 - 00001072 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2013-11-29 08:57 - 2013-11-29 08:57 - 00000000 ____D C:\FRST
2013-11-29 08:39 - 2013-11-25 09:31 - 00689166 _____ C:\WINDOWS\setupapi.log
2013-11-29 08:38 - 2013-11-25 19:32 - 00000000 ____D C:\WINDOWS\LastGood
2013-11-29 08:33 - 2013-11-29 08:33 - 00026671 _____ C:\UsbFix [Listing 1 ] POSTE.txt
2013-11-29 08:33 - 2013-11-29 08:19 - 00000000 ____D C:\UsbFix
2013-11-29 08:29 - 2013-11-25 09:46 - 00000000 ____D C:\Documents and Settings\Administrateur\Bureau
2013-11-29 08:26 - 2013-11-29 08:26 - 00109056 _____ (Avira GmbH) C:\WINDOWS\Explorermgr.exe
2013-11-29 08:25 - 2013-11-29 08:25 - 00001785 _____ C:\Documents and Settings\Administrateur\Bureau\SosVirus sur Facebook.lnk
2013-11-29 08:25 - 2013-11-29 08:25 - 00001777 _____ C:\Documents and Settings\Administrateur\Bureau\UsbFix Faire un Don.lnk
2013-11-29 08:25 - 2013-11-29 08:25 - 00001761 _____ C:\Documents and Settings\Administrateur\Bureau\SosVirus Forum Gratuit.lnk
2013-11-29 08:25 - 2013-11-29 08:20 - 00006666 _____ C:\UsbFix [Scan 1] POSTE.txt
2013-11-29 08:25 - 2013-11-25 09:39 - 00031712 _____ C:\WINDOWS\WindowsUpdate.log
2013-11-29 08:02 - 2013-11-28 08:25 - 00051265 _____ C:\Documents and Settings\Administrateur\Bureau\Nouvelle maison.pptx
2013-11-28 06:10 - 2013-11-28 06:10 - 00003584 _____ C:\Documents and Settings\Administrateur\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-11-26 10:52 - 2013-11-25 10:47 - 00001068 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2013-11-25 19:52 - 2013-11-25 19:52 - 00000000 ____D C:\Documents and Settings\Administrateur\Application Data\Windows Desktop Search
2013-11-25 19:52 - 2013-11-25 19:32 - 00000000 ____D C:\2e2471e389523f579e89ead52d5616
2013-11-25 19:34 - 2013-11-25 19:32 - 00027986 _____ C:\WINDOWS\KB917013.log
2013-11-25 19:33 - 2013-11-25 19:33 - 00001853 _____ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Windows Desktop Search.lnk
2013-11-25 19:33 - 2013-11-25 19:33 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB917013$
2013-11-25 19:33 - 2013-11-25 19:33 - 00000000 ____D C:\WINDOWS\system32\fr-FR
2013-11-25 19:33 - 2013-11-25 19:33 - 00000000 ____D C:\Program Files\Windows Desktop Search
2013-11-25 19:33 - 2013-11-25 09:32 - 00808798 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2013-11-25 19:33 - 2013-11-25 09:32 - 00075674 _____ C:\WINDOWS\iis6.log
2013-11-25 19:33 - 2013-11-25 09:32 - 00036299 _____ C:\WINDOWS\FaxSetup.log
2013-11-25 19:33 - 2013-11-25 09:32 - 00026396 _____ C:\WINDOWS\ocgen.log
2013-11-25 19:33 - 2013-11-25 09:32 - 00024109 _____ C:\WINDOWS\comsetup.log
2013-11-25 19:33 - 2013-11-25 09:32 - 00021536 _____ C:\WINDOWS\tsoc.log
2013-11-25 19:33 - 2013-11-25 09:32 - 00018192 _____ C:\WINDOWS\msmqinst.log
2013-11-25 19:33 - 2013-11-25 09:32 - 00012873 _____ C:\WINDOWS\ntdtcsetup.log
2013-11-25 19:33 - 2013-11-25 09:32 - 00007122 _____ C:\WINDOWS\netfxocm.log
2013-11-25 19:33 - 2013-11-25 09:32 - 00003187 _____ C:\WINDOWS\MedCtrOC.log
2013-11-25 19:33 - 2013-11-25 09:32 - 00002496 _____ C:\WINDOWS\tabletoc.log
2013-11-25 19:33 - 2013-11-25 09:32 - 00002253 _____ C:\WINDOWS\ocmsn.log
2013-11-25 19:33 - 2013-11-25 09:32 - 00002107 _____ C:\WINDOWS\msgsocm.log
2013-11-25 19:33 - 2013-11-25 09:32 - 00001393 _____ C:\WINDOWS\imsins.log
2013-11-25 19:33 - 2013-11-25 09:32 - 00001393 _____ C:\WINDOWS\imsins.BAK
2013-11-25 19:33 - 2013-11-25 09:32 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
2013-11-25 19:33 - 2013-11-25 09:32 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Démarrer\Programmes
2013-11-25 19:33 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\mui
2013-11-25 19:32 - 2013-11-25 19:32 - 00005361 _____ C:\WINDOWS\KB915865.log
2013-11-25 19:32 - 2013-11-25 19:32 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB915865$
2013-11-25 19:32 - 2013-11-25 19:32 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB915800$
2013-11-25 19:32 - 2013-11-25 19:32 - 00000000 ___HD C:\WINDOWS\$hf_mig$
2013-11-25 15:29 - 2013-11-25 15:29 - 00000815 _____ C:\Documents and Settings\All Users\Bureau\TeamViewer 8.lnk
2013-11-25 15:29 - 2013-11-25 15:29 - 00000000 ____D C:\Program Files\TeamViewer
2013-11-25 15:29 - 2013-11-25 15:29 - 00000000 ____D C:\Documents and Settings\All Users\Menu Démarrer\Programmes\TeamViewer 8
2013-11-25 15:29 - 2013-11-25 09:32 - 00000000 ____D C:\Documents and Settings\All Users\Bureau
2013-11-25 14:05 - 2013-11-25 14:00 - 00000212 _____ C:\Documents and Settings\Administrateur\Bureau\_My config du wifi.txt
2013-11-25 13:52 - 2013-11-25 09:31 - 00186628 _____ C:\WINDOWS\setupact.log
2013-11-25 12:17 - 2013-11-25 09:46 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2013-11-25 12:15 - 2013-11-25 09:46 - 00019412 _____ C:\WINDOWS\SchedLgU.Txt
2013-11-25 12:15 - 2013-11-25 09:46 - 00000184 ___SH C:\Documents and Settings\Administrateur\ntuser.ini
2013-11-25 12:15 - 2013-11-25 09:35 - 00000906 _____ C:\WINDOWS\wiadebug.log
2013-11-25 12:09 - 2013-11-25 09:35 - 00000050 _____ C:\WINDOWS\wiaservc.log
2013-11-25 12:05 - 2013-11-25 12:03 - 00000042 _____ C:\Documents and Settings\Administrateur\Bureau\contact.txt
2013-11-25 11:57 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\security
2013-11-25 11:45 - 2013-11-25 11:45 - 00001678 _____ C:\Documents and Settings\All Users\Bureau\SUPERAntiSpyware Free Edition.lnk
2013-11-25 11:45 - 2013-11-25 11:45 - 00000000 ____D C:\Program Files\SUPERAntiSpyware
2013-11-25 11:45 - 2013-11-25 11:45 - 00000000 ____D C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2013-11-25 11:45 - 2013-11-25 11:45 - 00000000 ____D C:\Documents and Settings\Administrateur\Application Data\SUPERAntiSpyware.com
2013-11-25 11:45 - 2013-11-25 09:32 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Démarrer
2013-11-25 11:44 - 2013-11-25 11:44 - 00000000 ____D C:\Documents and Settings\Administrateur\Application Data\okitspace
2013-11-25 11:44 - 2013-11-25 09:46 - 00000000 ___RD C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes
2013-11-25 11:43 - 2013-11-25 11:43 - 00000000 ____D C:\Documents and Settings\Administrateur\Local Settings\Application Data\cache
2013-11-25 11:43 - 2013-11-25 11:42 - 00000000 ____D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mobogenie
2013-11-25 11:42 - 2013-11-25 11:42 - 00000000 ____D C:\Documents and Settings\Administrateur\Mes documents\Mobogenie
2013-11-25 11:42 - 2013-11-25 11:42 - 00000000 _____ C:\Documents and Settings\Administrateur\daemonprocess.txt
2013-11-25 11:42 - 2013-11-25 09:46 - 00000000 ____D C:\Documents and Settings\Administrateur
2013-11-25 11:40 - 2013-11-25 11:40 - 00000000 ____D C:\Program Files\SoftwareUpdater
2013-11-25 11:38 - 2013-11-25 11:38 - 00001703 _____ C:\Documents and Settings\All Users\Bureau\Foxit Reader.lnk
2013-11-25 11:38 - 2013-11-25 11:38 - 00000000 ____D C:\Documents and Settings\LocalService\Application Data\Foxit Software
2013-11-25 11:38 - 2013-11-25 11:38 - 00000000 ____D C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Foxit Reader
2013-11-25 11:38 - 2013-11-25 11:37 - 00000000 ____D C:\Documents and Settings\Administrateur\Application Data\Foxit Software
2013-11-25 11:37 - 2013-11-25 11:37 - 00000000 ____D C:\Program Files\Foxit Software
2013-11-25 10:57 - 2013-11-25 10:57 - 00000680 _____ C:\Documents and Settings\Administrateur\Bureau\PDF Architect.lnk
2013-11-25 10:57 - 2013-11-25 10:57 - 00000000 ____D C:\Program Files\PDF Architect
2013-11-25 10:57 - 2013-11-25 10:57 - 00000000 ____D C:\Documents and Settings\All Users\Menu Démarrer\Programmes\PDF Architect
2013-11-25 10:57 - 2013-11-25 10:57 - 00000000 ____D C:\Documents and Settings\Administrateur\Mes documents\PDF Architect Files
2013-11-25 10:57 - 2013-11-25 10:56 - 00000000 ____D C:\Program Files\PDFCreator
2013-11-25 10:56 - 2013-11-25 10:56 - 00000706 _____ C:\Documents and Settings\All Users\Bureau\PDFCreator.lnk
2013-11-25 10:56 - 2013-11-25 10:56 - 00000000 ____D C:\Documents and Settings\All Users\Menu Démarrer\Programmes\PDFCreator
2013-11-25 10:56 - 2013-11-25 10:56 - 00000000 ____D C:\Documents and Settings\Administrateur\Application Data\pdfforge
2013-11-25 10:54 - 2013-11-25 10:54 - 00000762 _____ C:\Documents and Settings\Administrateur\Bureau\MyPC Backup.lnk
2013-11-25 10:54 - 2013-11-25 10:54 - 00000000 ____D C:\Program Files\MyPC Backup
2013-11-25 10:54 - 2013-11-25 10:54 - 00000000 ____D C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\MyPC Backup
2013-11-25 10:54 - 2013-11-25 09:46 - 00000000 ___RD C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage
2013-11-25 10:54 - 2013-11-25 09:32 - 00000000 ____D C:\Program Files\Fichiers communs\Microsoft Shared
2013-11-25 10:48 - 2013-11-25 10:48 - 00001811 _____ C:\Documents and Settings\All Users\Bureau\Google Chrome.lnk
2013-11-25 10:48 - 2013-11-25 10:48 - 00000000 ____D C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Google Chrome
2013-11-25 10:48 - 2013-11-25 10:47 - 00000000 ____D C:\Program Files\Google
2013-11-25 10:48 - 2013-11-25 10:47 - 00000000 ____D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google
2013-11-25 10:43 - 2013-11-25 10:43 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2013-11-25 10:43 - 2013-11-25 10:43 - 00000000 ____D C:\Program Files\ZyDAS Technology Corporation
2013-11-25 10:43 - 2013-11-25 10:43 - 00000000 ____D C:\Program Files\Fichiers communs\InstallShield
2013-11-25 10:43 - 2013-11-25 10:43 - 00000000 ____D C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ZyDAS IEEE 802.11 b+g Wireless LAN - USB
2013-11-25 10:43 - 2013-11-25 09:32 - 00000000 ____D C:\Program Files\Fichiers communs
2013-11-25 10:28 - 2013-11-25 10:28 - 00000000 ____D C:\Program Files\bqjaslxd
2013-11-25 10:23 - 2013-11-25 10:23 - 00083400 _____ C:\Documents and Settings\Administrateur\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2013-11-25 10:22 - 2013-11-25 09:31 - 00324320 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2013-11-25 10:22 - 2013-11-25 09:24 - 00000000 _____ C:\WINDOWS\MEMORY.DMP
2013-11-25 10:18 - 2013-11-25 10:18 - 00000000 ___RD C:\Documents and Settings\Administrateur\Mes documents\Mes vidéos
2013-11-25 10:18 - 2013-11-25 10:17 - 00000000 ____D C:\WINDOWS\RegisteredPackages
2013-11-25 10:18 - 2013-11-25 09:46 - 00000792 _____ C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Lecteur Windows Media.lnk
2013-11-25 10:18 - 2013-11-25 09:40 - 00023392 _____ C:\WINDOWS\system32\nscompat.tlb
2013-11-25 10:18 - 2013-11-25 09:40 - 00016832 _____ C:\WINDOWS\system32\amcompat.tlb
2013-11-25 10:18 - 2013-11-25 09:37 - 00040683 _____ C:\WINDOWS\wmsetup.log
2013-11-25 10:18 - 2013-11-25 09:37 - 00000000 ___RD C:\Documents and Settings\All Users\Documents\Ma musique
2013-11-25 10:18 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\Help
2013-11-25 10:17 - 2013-11-25 10:16 - 00000000 ____D C:\Documents and Settings\Administrateur\Application Data\vlc
2013-11-25 10:17 - 2013-11-25 09:40 - 00316640 _____ C:\WINDOWS\WMSysPr9.prx
2013-11-25 10:17 - 2013-11-25 09:39 - 00000000 __SHD C:\Documents and Settings\All Users\DRM
2013-11-25 10:16 - 2013-11-25 10:16 - 00001779 _____ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Adobe Reader 9.lnk
2013-11-25 10:16 - 2013-11-25 10:16 - 00000719 _____ C:\Documents and Settings\All Users\Bureau\VLC media player.lnk
2013-11-25 10:16 - 2013-11-25 10:16 - 00000000 ____D C:\Program Files\VideoLAN
2013-11-25 10:16 - 2013-11-25 10:16 - 00000000 ____D C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN
2013-11-25 10:15 - 2013-11-25 10:15 - 00000000 ____D C:\Program Files\Fichiers communs\Adobe
2013-11-25 10:15 - 2013-11-25 10:15 - 00000000 ____D C:\Program Files\Adobe
2013-11-25 10:15 - 2013-11-25 10:15 - 00000000 ____D C:\Documents and Settings\All Users\Application Data\Adobe
2013-11-25 10:14 - 2013-11-25 10:14 - 00000000 ____D C:\Program Files\WinRAR
2013-11-25 10:14 - 2013-11-25 10:14 - 00000000 ____D C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR
2013-11-25 10:14 - 2013-11-25 10:14 - 00000000 ____D C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\WinRAR
2013-11-25 10:08 - 2013-11-25 10:08 - 00065536 _____ C:\WINDOWS\system32\config\ODiag.evt
2013-11-25 10:08 - 2013-11-25 10:08 - 00000000 ____D C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office
2013-11-25 10:08 - 2013-11-25 10:03 - 00000000 ____D C:\Documents and Settings\All Users\Application Data\Microsoft Help
2013-11-25 10:07 - 2013-11-25 10:07 - 00000000 ____D C:\Program Files\MSBuild
2013-11-25 10:07 - 2013-11-25 10:07 - 00000000 ____D C:\Program Files\Microsoft Works
2013-11-25 10:07 - 2013-11-25 10:07 - 00000000 ____D C:\Program Files\Microsoft Visual Studio
2013-11-25 10:07 - 2013-11-25 10:07 - 00000000 ____D C:\Program Files\Fichiers communs\DESIGNER
2013-11-25 10:07 - 2013-11-25 10:03 - 00000000 ____D C:\WINDOWS\SHELLNEW
2013-11-25 10:07 - 2013-11-25 10:03 - 00000000 ____D C:\Program Files\Microsoft Office
2013-11-25 10:03 - 2013-11-25 10:03 - 00000000 ____D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft Help
2013-11-25 10:03 - 2013-11-25 09:38 - 00000000 ____D C:\Program Files\Fichiers communs\System
2013-11-25 10:03 - 2001-08-28 12:00 - 00000552 _____ C:\WINDOWS\win.ini
2013-11-25 10:02 - 2013-11-25 10:02 - 00000000 __RHD C:\MSOCache
2013-11-25 09:56 - 2013-11-25 09:56 - 00000000 ____D C:\Program Files\CONEXANT
2013-11-25 09:55 - 2013-11-25 09:55 - 00006881 _____ C:\WINDOWS\Wdf01005Inst.log
2013-11-25 09:55 - 2013-11-25 09:55 - 00000000 __HDC C:\WINDOWS\$NtUninstallWdf01005$
2013-11-25 09:55 - 2013-11-25 09:55 - 00000000 ____H C:\WINDOWS\system32\Drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2013-11-25 09:55 - 2013-11-25 09:55 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_HpqKbFiltr_01005.Wdf
2013-11-25 09:53 - 2013-11-25 09:53 - 00000000 _____ C:\WINDOWS\ativpsrm.bin
2013-11-25 09:51 - 2013-11-25 09:50 - 00000000 ____D C:\WINDOWS\system32\ReinstallBackups
2013-11-25 09:46 - 2013-11-25 09:46 - 00008192 _____ C:\WINDOWS\REGLOCS.OLD
2013-11-25 09:46 - 2013-11-25 09:46 - 00000767 _____ C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Internet Explorer.lnk
2013-11-25 09:46 - 2013-11-25 09:46 - 00000738 _____ C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Outlook Express.lnk
2013-11-25 09:46 - 2013-11-25 09:46 - 00000109 _____ C:\WINDOWS\oobeact.log
2013-11-25 09:46 - 2013-11-25 09:46 - 00000020 ___SH C:\Documents and Settings\NetworkService\ntuser.ini
2013-11-25 09:46 - 2013-11-25 09:46 - 00000020 ___SH C:\Documents and Settings\LocalService\ntuser.ini
2013-11-25 09:46 - 2013-11-25 09:46 - 00000000 __SHD C:\Documents and Settings\LocalService
2013-11-25 09:46 - 2013-11-25 09:46 - 00000000 ___SD C:\Documents and Settings\Administrateur\Local Settings\Historique
2013-11-25 09:46 - 2013-11-25 09:46 - 00000000 ___RD C:\Documents and Settings\Administrateur\Mes documents\Mes images
2013-11-25 09:46 - 2013-11-25 09:46 - 00000000 ___RD C:\Documents and Settings\Administrateur\Mes documents\Ma musique
2013-11-25 09:46 - 2013-11-25 09:46 - 00000000 ___RD C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires
2013-11-25 09:46 - 2013-11-25 09:46 - 00000000 ___RD C:\Documents and Settings\Administrateur\Favoris
2013-11-25 09:46 - 2013-11-25 09:45 - 00000000 __SHD C:\Documents and Settings\NetworkService
2013-11-25 09:46 - 2013-11-25 09:38 - 00000000 ____D C:\WINDOWS\system32\Restore
2013-11-25 09:46 - 2001-08-28 12:00 - 00002278 _____ C:\WINDOWS\system32\wpa.dbl
2013-11-25 09:41 - 2013-11-25 09:41 - 00000000 ____D C:\WINDOWS\system32\xircom
2013-11-25 09:41 - 2013-11-25 09:41 - 00000000 ____D C:\Program Files\xerox
2013-11-25 09:41 - 2013-11-25 09:41 - 00000000 ____D C:\Program Files\microsoft frontpage
2013-11-25 09:41 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\repair
2013-11-25 09:41 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\ime
2013-11-25 09:40 - 2013-11-25 09:46 - 00001599 _____ C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Assistance à distance.lnk
2013-11-25 09:40 - 2013-11-25 09:46 - 00000000 ___SD C:\Documents and Settings\LocalService\Local Settings\Historique
2013-11-25 09:40 - 2013-11-25 09:46 - 00000000 ___HD C:\Documents and Settings\NetworkService\Local Settings\Historique
2013-11-25 09:40 - 2013-11-25 09:40 - 00003072 _____ C:\WINDOWS\system32\CONFIG.NT
2013-11-25 09:40 - 2013-11-25 09:40 - 00001607 _____ C:\Documents and Settings\All Users\Menu Démarrer\Configurer les programmes par défaut.lnk
2013-11-25 09:40 - 2013-11-25 09:40 - 00001599 _____ C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Assistance à distance.lnk
2013-11-25 09:40 - 2013-11-25 09:40 - 00001507 _____ C:\Documents and Settings\All Users\Menu Démarrer\Windows Update.lnk
2013-11-25 09:40 - 2013-11-25 09:40 - 00000792 _____ C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Lecteur Windows Media.lnk
2013-11-25 09:40 - 2013-11-25 09:40 - 00000398 _____ C:\Documents and Settings\All Users\Menu Démarrer\Catalogue Windows.lnk
2013-11-25 09:40 - 2013-11-25 09:40 - 00000000 __RSH C:\MSDOS.SYS
2013-11-25 09:40 - 2013-11-25 09:40 - 00000000 __RSH C:\IO.SYS
2013-11-25 09:40 - 2013-11-25 09:40 - 00000000 _____ C:\WINDOWS\control.ini
2013-11-25 09:40 - 2013-11-25 09:40 - 00000000 _____ C:\CONFIG.SYS
2013-11-25 09:40 - 2013-11-25 09:40 - 00000000 _____ C:\AUTOEXEC.BAT
2013-11-25 09:40 - 2013-11-25 09:39 - 00000000 ___RD C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires
2013-11-25 09:40 - 2013-11-25 09:37 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
2013-11-25 09:40 - 2013-11-25 09:37 - 00000000 ____D C:\WINDOWS\Registration
2013-11-25 09:40 - 2013-11-25 09:32 - 00004205 _____ C:\WINDOWS\ODBCINST.INI
2013-11-25 09:40 - 2013-11-25 09:32 - 00000000 ___SD C:\Documents and Settings\Default User\Local Settings\Historique
2013-11-25 09:40 - 2013-11-25 09:32 - 00000000 ___RD C:\Documents and Settings\Default User\Menu Démarrer\Programmes
2013-11-25 09:40 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\ias
2013-11-25 09:39 - 2013-11-25 09:39 - 00000786 _____ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Windows Movie Maker.lnk
2013-11-25 09:39 - 2013-11-25 09:39 - 00000749 ___RH C:\WINDOWS\WindowsShell.Manifest
2013-11-25 09:39 - 2013-11-25 09:39 - 00000749 ___RH C:\WINDOWS\system32\wuaucpl.cpl.manifest
2013-11-25 09:39 - 2013-11-25 09:39 - 00000749 ___RH C:\WINDOWS\system32\sapi.cpl.manifest
2013-11-25 09:39 - 2013-11-25 09:39 - 00000749 ___RH C:\WINDOWS\system32\nwc.cpl.manifest
2013-11-25 09:39 - 2013-11-25 09:39 - 00000749 ___RH C:\WINDOWS\system32\ncpa.cpl.manifest
2013-11-25 09:39 - 2013-11-25 09:39 - 00000749 ___RH C:\WINDOWS\system32\cdplayer.exe.manifest
2013-11-25 09:39 - 2013-11-25 09:39 - 00000488 ___RH C:\WINDOWS\system32\WindowsLogon.manifest
2013-11-25 09:39 - 2013-11-25 09:39 - 00000488 ___RH C:\WINDOWS\system32\logonui.exe.manifest
2013-11-25 09:39 - 2013-11-25 09:39 - 00000000 ___RD C:\WINDOWS\Offline Web Pages
2013-11-25 09:39 - 2013-11-25 09:39 - 00000000 ___HD C:\Program Files\WindowsUpdate
2013-11-25 09:39 - 2013-11-25 09:39 - 00000000 ____D C:\WINDOWS\system32\DirectX
2013-11-25 09:39 - 2013-11-25 09:39 - 00000000 ____D C:\Program Files\Services en ligne
2013-11-25 09:39 - 2013-11-25 09:38 - 00000000 ____D C:\WINDOWS\srchasst
2013-11-25 09:39 - 2013-11-25 09:24 - 00000000 ___RD C:\WINDOWS\Web
2013-11-25 09:38 - 2013-11-25 09:38 - 00000000 ___RD C:\Documents and Settings\All Users\Documents\Mes images
2013-11-25 09:38 - 2013-11-25 09:38 - 00000000 ____D C:\WINDOWS\system32\Macromed
2013-11-25 09:38 - 2013-11-25 09:38 - 00000000 ____D C:\Program Files\Outlook Express
2013-11-25 09:38 - 2013-11-25 09:38 - 00000000 ____D C:\Program Files\NetMeeting
2013-11-25 09:38 - 2013-11-25 09:38 - 00000000 ____D C:\Program Files\Movie Maker
2013-11-25 09:38 - 2013-11-25 09:38 - 00000000 ____D C:\Program Files\Fichiers communs\Services
2013-11-25 09:38 - 2013-11-25 09:38 - 00000000 ____D C:\Program Files\Fichiers communs\MSSoap
2013-11-25 09:38 - 2013-11-25 09:37 - 00001022 _____ C:\WINDOWS\sessmgr.setup.log
2013-11-25 09:38 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\pchealth
2013-11-25 09:37 - 2013-11-25 09:37 - 00021892 _____ C:\WINDOWS\system32\emptyregdb.dat
2013-11-25 09:37 - 2013-11-25 09:37 - 00002070 _____ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\MSN.lnk
2013-11-25 09:37 - 2013-11-25 09:37 - 00000637 _____ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Windows Messenger.lnk
2013-11-25 09:37 - 2013-11-25 09:37 - 00000133 _____ C:\WINDOWS\DtcInstall.log
2013-11-25 09:37 - 2013-11-25 09:37 - 00000037 _____ C:\WINDOWS\vbaddin.ini
2013-11-25 09:37 - 2013-11-25 09:37 - 00000036 _____ C:\WINDOWS\vb.ini
2013-11-25 09:37 - 2013-11-25 09:37 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux
2013-11-25 09:37 - 2013-11-25 09:37 - 00000000 ____D C:\Program Files\Online Services
2013-11-25 09:37 - 2013-11-25 09:37 - 00000000 ____D C:\Program Files\MSN Gaming Zone
2013-11-25 09:37 - 2013-11-25 09:37 - 00000000 ____D C:\Program Files\Messenger
2013-11-25 09:37 - 2013-11-25 09:37 - 00000000 ____D C:\Program Files\ComPlus Applications
2013-11-25 09:37 - 2013-11-25 09:36 - 00000000 ____D C:\WINDOWS\system32\MsDtc
2013-11-25 09:37 - 2013-11-25 09:36 - 00000000 ____D C:\WINDOWS\system32\Com
2013-11-25 09:37 - 2013-11-25 09:35 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
2013-11-25 09:36 - 2013-11-25 09:46 - 00000000 ___HD C:\Documents and Settings\Administrateur\Modèles
2013-11-25 09:36 - 2013-11-25 09:36 - 00000000 ___RD C:\Documents and Settings\All Users\Documents\Mes vidéos
2013-11-25 09:36 - 2013-11-25 09:36 - 00000000 ____D C:\Program Files\Windows NT
2013-11-25 09:36 - 2013-11-25 09:36 - 00000000 ____D C:\Program Files\MSN
2013-11-25 09:36 - 2013-11-25 09:32 - 00000000 ___HD C:\Documents and Settings\Default User\Modèles
2013-11-25 09:36 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\Cursors
2013-11-25 09:35 - 2013-11-25 09:35 - 00000200 _____ C:\WINDOWS\cmsetacl.log
2013-11-25 09:35 - 2013-11-25 09:35 - 00000000 _____ C:\WINDOWS\Sti_Trace.log
2013-11-25 09:35 - 2013-11-25 09:29 - 00000212 ___SH C:\boot.ini
2013-11-25 09:35 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\spool
2013-11-25 09:34 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\Media
2013-11-25 09:32 - 2013-11-25 09:46 - 00000000 ___RD C:\Documents and Settings\Administrateur\Menu Démarrer
2013-11-25 09:32 - 2013-11-25 09:46 - 00000000 ___HD C:\Documents and Settings\Administrateur\Voisinage réseau
2013-11-25 09:32 - 2013-11-25 09:46 - 00000000 ___HD C:\Documents and Settings\Administrateur\Voisinage d'impression
2013-11-25 09:32 - 2013-11-25 09:32 - 00001586 _____ C:\WINDOWS\regopt.log
2013-11-25 09:32 - 2013-11-25 09:32 - 00000000 ___RD C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Démarrage
2013-11-25 09:32 - 2013-11-25 09:32 - 00000000 ___RD C:\Documents and Settings\Default User\Menu Démarrer
2013-11-25 09:32 - 2013-11-25 09:32 - 00000000 ___HD C:\Documents and Settings\Default User\Voisinage réseau
2013-11-25 09:32 - 2013-11-25 09:32 - 00000000 ___HD C:\Documents and Settings\Default User\Voisinage d'impression
2013-11-25 09:32 - 2013-11-25 09:32 - 00000000 ___HD C:\Documents and Settings\All Users\Modèles
2013-11-25 09:32 - 2013-11-25 09:32 - 00000000 ____D C:\Program Files\Fichiers communs\SpeechEngines
2013-11-25 09:32 - 2013-11-25 09:32 - 00000000 ____D C:\Program Files\Fichiers communs\ODBC
2013-11-25 09:32 - 2013-11-25 09:32 - 00000000 ____D C:\Documents and Settings\Default User\Favoris
2013-11-25 09:32 - 2013-11-25 09:32 - 00000000 ____D C:\Documents and Settings\Default User\Bureau
2013-11-25 09:32 - 2013-11-25 09:32 - 00000000 ____D C:\Documents and Settings\All Users\Favoris
2013-11-25 09:32 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system
2013-11-25 09:32 - 2001-08-28 12:00 - 00000231 _____ C:\WINDOWS\system.ini
2013-11-25 09:31 - 2013-11-25 09:31 - 00000000 _____ C:\WINDOWS\setuperr.log
2013-11-25 09:31 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\usmt
2013-11-25 09:29 - 2013-11-25 09:29 - 00663552 _____ C:\WINDOWS\system32\config\software.sav
2013-11-25 09:29 - 2013-11-25 09:29 - 00438272 _____ C:\WINDOWS\system32\config\system.sav
2013-11-25 09:29 - 2013-11-25 09:29 - 00262144 _____ C:\WINDOWS\system32\config\userdiff
2013-11-25 09:29 - 2013-11-25 09:29 - 00094208 _____ C:\WINDOWS\system32\config\default.sav
2013-11-25 09:29 - 2013-11-25 09:29 - 00001024 ____H C:\WINDOWS\system32\config\userdiff.LOG
2013-11-25 09:29 - 2013-11-25 09:29 - 00001024 ____H C:\WINDOWS\system32\config\TempKey.LOG
2013-11-25 09:28 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\npp
2013-11-25 09:28 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\PeerNet
2013-11-25 09:28 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\msagent
2013-11-25 09:26 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\twain_32
2013-11-25 09:26 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\ras
2013-11-25 09:26 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\icsxml
2013-11-25 09:26 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\1036
2013-11-25 09:26 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\1033
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\wins
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\ShellExt
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\IME
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\export
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\Drivers\disdn
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\dhcp
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\3com_dmi
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\3076
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\2052
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\1054
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\1042
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\1041
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\1037
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\1031
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\1028
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\system32\1025
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\Resources
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\Provisioning
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\mui
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\java
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\Driver Cache
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\Connection Wizard
2013-11-25 09:24 - 2013-11-25 09:24 - 00000000 ____D C:\WINDOWS\addins
 
Some content of TEMP:
====================
C:\Documents and Settings\Administrateur\Local Settings\Temp\1385379542itinstallerp.exe
C:\Documents and Settings\Administrateur\Local Settings\Temp\224891-649917-windows-xp-service-pack-3.exe
C:\Documents and Settings\Administrateur\Local Settings\Temp\BackupSetup.exe
C:\Documents and Settings\Administrateur\Local Settings\Temp\dotnetfx.exe
C:\Documents and Settings\Administrateur\Local Settings\Temp\installerp.exe
C:\Documents and Settings\Administrateur\Local Settings\Temp\instloffer.exe
C:\Documents and Settings\Administrateur\Local Settings\Temp\ose00000.exe
C:\Documents and Settings\Administrateur\Local Settings\Temp\vcredist_x86.exe
 
 
==================== Bamital & volsnap Check =================
 
C:\Windows\explorer.exe
[2004-08-19 14:09] - [2004-08-19 14:09] - 1036288 ____A (Microsoft Corporation) 2a7bd330924252a2fd80344fc949bb72 
 
C:\Windows\System32\winlogon.exe
[2004-08-19 14:10] - [2004-08-19 14:10] - 0506368 ____A (Microsoft Corporation) 123eea158f74d0f67a51dcdf065d1091 
 
C:\Windows\System32\svchost.exe
[2004-08-19 14:10] - [2004-08-19 14:10] - 0014336 ____A (Microsoft Corporation) 2979b03d5382a602623c0535b16ab9c0 
 
C:\Windows\System32\services.exe
[2004-08-19 14:10] - [2004-08-19 14:10] - 0108544 ____A (Microsoft Corporation) 63dcde1a0d86eeb8924d6738ff616ead 
 
C:\Windows\System32\User32.dll
[2004-08-19 14:09] - [2004-08-19 14:09] - 0578048 ____A (Microsoft Corporation) 61c8c283ad063bb697ae61a155c64a5a 
 
C:\Windows\System32\userinit.exe
[2004-08-19 14:10] - [2004-08-19 14:10] - 0025088 ____A (Microsoft Corporation) 84717891f0734c611721f56c60b5fbc3 
 
C:\Windows\System32\Drivers\volsnap.sys
[2004-08-19 13:59] - [2004-08-19 13:59] - 0053376 ____A (Microsoft Corporation) 313b1a0d5db26dfe1c34a6c13b2ce0a7 
 
 
==================== End Of Log ============================


#6 Nezha2013

Nezha2013
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Local time:01:10 PM

Posted 29 November 2013 - 05:40 AM

################################Farbar Addition log

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 28-11-2013
Ran by Administrateur at 2013-11-29 10:04:15
Running from C:\Documents and Settings\Administrateur\Mes documents\Downloads
Boot Mode: Normal
==========================================================
 
 
==================== Security Center ========================
 
 
==================== Installed Programs ======================
 
Adobe Reader 9.4.0 Lite (Version: 9.4.0)
ATI Display Driver (Version: 8.593.100.2-090721a-085695C-ATI)
Foxit Reader (Version: 6.0.4.719)
Google Chrome (Version: 31.0.1650.57)
Google Update Helper (Version: 1.3.21.165)
Lecteur Windows Media 10
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
Microsoft Office Access MUI (French) 2007 (Version: 12.0.4518.1014)
Microsoft Office Excel MUI (French) 2007 (Version: 12.0.4518.1014)
Microsoft Office InfoPath MUI (French) 2007 (Version: 12.0.4518.1014)
Microsoft Office Outlook MUI (French) 2007 (Version: 12.0.4518.1014)
Microsoft Office PowerPoint MUI (French) 2007 (Version: 12.0.4518.1014)
Microsoft Office Professional Plus 2007 (Version: 12.0.4518.1014)
Microsoft Office Proof (Arabic) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proof (Dutch) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proof (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proof (French) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proof (German) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proof (Spanish) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proofing (French) 2007 (Version: 12.0.4518.1014)
Microsoft Office Publisher MUI (French) 2007 (Version: 12.0.4518.1014)
Microsoft Office Shared MUI (French) 2007 (Version: 12.0.4518.1014)
Microsoft Office Word MUI (French) 2007 (Version: 12.0.4518.1014)
Microsoft Software Update for Web Folders  (French) 12 (Version: 12.0.4518.1014)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
MyPC Backup  (Version: )
PDF Architect (Version: 1.1.83.9982)
PDFCreator (Version: 1.7.1)
SoftwareUpdater
SUPERAntiSpyware (Version: 5.6.1042)
TeamViewer 8 (Version: 8.0.22298)
ThinkPad Integrated 56K Modem (Version: 7.34.00)
ThinkPad Power Management Driver (Version: 1.60.0.4)
UsbFix By El Desaparecido
VLC media player 1.1.10 (Version: 1.1.10)
WebFldrs XP (Version: 9.50.7523)
Windows Desktop Search 3.01 (Version: 03.01.6000.72)
Windows Media Format Runtime
WinRAR archiver
ZyDAS IEEE 802.11 b+g Wireless LAN - USB
 
==================== Restore Points  =========================
 
25-11-2013 19:32:43 Installed Windows XP KB915865.
25-11-2013 19:33:04 Installed Windows XP KB915800.
25-11-2013 19:33:34 Le Windows Desktop Search 3.01 pour Windows XP a été installé.
26-11-2013 20:33:47 Point de vérification système
28-11-2013 07:11:25 Point de vérification système
29-11-2013 08:38:56 Installation de pilote non signé
 
==================== Hosts content: ==========================
 
2001-08-28 12:00 - 2001-08-28 12:00 - 00000790 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1       localhost
 
==================== Scheduled Tasks (whitelisted) =============
 
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
 
==================== Loaded Modules (whitelisted) =============
 
2013-11-25 10:14 - 2006-08-05 11:34 - 00126464 ____N () C:\Program Files\WinRAR\rarext.dll
2004-08-19 14:09 - 2004-08-19 14:09 - 00014336 _____ () C:\WINDOWS\system32\msdmo.dll
2013-11-25 10:48 - 2013-11-14 11:29 - 04055504 ____N () C:\Program Files\Google\Chrome\Application\31.0.1650.57\pdf.dll
2013-11-25 10:48 - 2013-11-14 11:29 - 00399312 ____N () C:\Program Files\Google\Chrome\Application\31.0.1650.57\ppGoogleNaClPluginChrome.dll
2013-11-25 10:48 - 2013-11-14 11:28 - 01619408 ____N () C:\Program Files\Google\Chrome\Application\31.0.1650.57\ffmpegsumo.dll
 
==================== Safe Mode (whitelisted) ===================
 
 
==================== Faulty Device Manager Devices =============
 
Name: Broadcom NetXtreme Gigabit Ethernet
Description: Broadcom NetXtreme Gigabit Ethernet
Class Guid: {4D36E972-E325-11CE-BFC1-08002BE10318}
Manufacturer: Broadcom
Service: b57w2k
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 
 
==================== Event log errors: =========================
 
Application errors:
==================
 
System errors:
=============
Error: (11/29/2013 08:20:43 AM) (Source: Service Control Manager) (User: )
Description: Le service Recherche Windows s'est terminé de manière inattendue. Ceci s'est produit 1 fois. L'action corrective suivante va être effectuée dans 30000 millisecondes : Redémarrer le service.
 
Error: (11/29/2013 08:20:43 AM) (Source: Service Control Manager) (User: )
Description: Le service TeamViewer 8 s'est terminé de manière inattendue. Ceci s'est produit 1 fois. L'action corrective suivante va être effectuée dans 2000 millisecondes : Redémarrer le service.
 
Error: (11/29/2013 08:20:43 AM) (Source: Service Control Manager) (User: )
Description: Le service PDF Architect Service s'est terminé de façon inattendue pour la 1ème fois.
 
Error: (11/29/2013 08:20:43 AM) (Source: Service Control Manager) (User: )
Description: Le service Spouleur d'impression s'est terminé de manière inattendue. Ceci s'est produit 1 fois. L'action corrective suivante va être effectuée dans 60000 millisecondes : Redémarrer le service.
 
Error: (11/29/2013 08:20:43 AM) (Source: Service Control Manager) (User: )
Description: Le service PDF Architect Helper Service s'est terminé de façon inattendue pour la 1ème fois.
 
Error: (11/29/2013 08:20:43 AM) (Source: Service Control Manager) (User: )
Description: Le service SAS Core Service s'est terminé de manière inattendue. Ceci s'est produit 1 fois. L'action corrective suivante va être effectuée dans 1000 millisecondes : Redémarrer le service.
 
Error: (11/29/2013 08:20:43 AM) (Source: Service Control Manager) (User: )
Description: Le service ThinkPad PM Service s'est terminé de façon inattendue pour la 1ème fois.
 
Error: (11/29/2013 08:20:43 AM) (Source: Service Control Manager) (User: )
Description: Le service Ati HotKey Poller s'est terminé de façon inattendue pour la 1ème fois.
 
Error: (11/29/2013 07:53:11 AM) (Source: Dhcp) (User: )
Description: Votre ordinateur a perdu le bail de son adresse IP 192.168.1.13 sur la
carte réseau d'adresse réseau 00197025AC76.
 
Error: (11/28/2013 06:03:47 AM) (Source: Dhcp) (User: )
Description: Votre ordinateur a perdu le bail de son adresse IP 192.168.1.14 sur la
carte réseau d'adresse réseau 00197025AC76.
 
 
Microsoft Office Sessions:
=========================
 
==================== Memory info =========================== 
 
Percentage of memory in use: 57%
Total physical RAM: 1022.42 MB
Available physical RAM: 437.03 MB
Total Pagefile: 2461.2 MB
Available Pagefile: 1781.57 MB
Total Virtual: 2047.88 MB
Available Virtual: 1967.88 MB
 
==================== Drives ================================
 
Drive c: () (Fixed) (Total:39.06 GB) (Free:29.46 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive d: () (Fixed) (Total:16.83 GB) (Free:16.15 GB) NTFS
Drive f: (SAMSUNG) (Fixed) (Total:298.02 GB) (Free:24.88 GB) FAT32
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (Size: 56 GB) (Disk ID: BD77BD77)
Partition 1: (Active) - (Size=39 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=17 GB) - (Type=OF Extended)
 
========================================================
Disk: 1 (Size: 298 GB) (Disk ID: C69DB462)
Partition 1: (Not Active) - (Size=298 GB) - (Type=0C)
 
==================== End Of Log ============================


#7 Aaflac

Aaflac

    Doin' Dis 'n Dat...


  • Malware Response Team
  • 2,307 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Location:USA
  • Local time:08:10 AM

Posted 29 November 2013 - 01:12 PM

Thanks for the reports.
 
Let's press on...
 
Please press the Windows Key and the R key at the same time for the Run prompt to appear.
In the Run prompt, type the following in the Open area, and press Enter: cmd
 
When the Command Prompt opens, copy/paste (with the mouse) the following, and press: Enter

 


attrib -h -s -r -a /s /d F:\*.*

(Change the drive letter F to the letter corresponding to the problem USB removable drive. If it is still connected to the same usb port, it should still be F)

 

Now, please run USBFix once again.

Press: Deletion

When done, the program closes on its own, and a report appears.

 

>> Please post the UsbFix.txt (Deletion) report in your reply.
 
 
Also, check the USB drive and see if the shortcuts are gone. Post back on status.


Old duck...


#8 Nezha2013

Nezha2013
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Local time:01:10 PM

Posted 29 November 2013 - 04:03 PM

Hello Aaflac!!!! Eureka  :bananas:! what a joy when I opened the external drive and found my folders back! Thank you so much...

I must say I hesitated a while before clicking "Deletion" button in USBFix, I was really afraid to lose all my data, but then I said to myself :"All will be alright, this guy knows what he is doing :-)" 

 

 

Here is the log, what do I install now as AV in your opinion? and how to make sure all is clean?

 

Thank you.

 

############################## | UsbFix V 7.152 | [Suppression]
 
Utilisateur: Administrateur (Administrateur) # POSTE
Mis à jour le 20/11/2013 par El Desaparecido - Team SosVirus
Lancé à 20:38:27 | 29/11/2013
 
 
PC: IBM (2669W5L)
CPU:         Intel® Pentium® M processor 1.86GHz
RAM -> [Total : 1022 | Free : 656]
Bios: IBM
Boot: Normal boot
 
OS: Microsoft Windows XP Professionnel (5.1.2600 32-Bit) Service Pack 2
WB: Windows Internet Explorer : 6.0.2900.2180
WB: Google Chrome : 31.0.1650.57
 
SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
FW: Windows FireWall Service [Enabled]
 
C:\ (%systemdrive%) -> Disque fixe # 39 Go (30 Go libre(s) - 77%) [] # NTFS
D:\ -> Disque fixe # 17 Go (16 Go libre(s) - 96%) [] # NTFS
E:\ -> CD-ROM
F:\ -> Disque fixe # 298 Go (25 Go libre(s) - 8%) [SAMSUNG] # FAT32
 
################## | Processus Stoppés |
 
Stoppé! C:\WINDOWS\system32\ibmpmsvc.exe (ID: 892 |ParentID: 732)
Stoppé! C:\WINDOWS\system32\Ati2evxx.exe (ID: 924 |ParentID: 732)
Stoppé! C:\WINDOWS\system32\Ati2evxx.exe (ID: 1260 |ParentID: 688)
Stoppé! C:\WINDOWS\system32\spoolsv.exe (ID: 1612 |ParentID: 732)
Stoppé! C:\WINDOWS\Explorer.EXE (ID: 1860 |ParentID: 1820)
Stoppé! C:\Program Files\SUPERAntiSpyware\SASCORE.EXE (ID: 220 |ParentID: 732)
Stoppé! C:\Program Files\PDF Architect\HelperService.exe (ID: 296 |ParentID: 732)
Stoppé! C:\Program Files\PDF Architect\ConversionService.exe (ID: 360 |ParentID: 732)
Stoppé! C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe (ID: 608 |ParentID: 732)
Stoppé! C:\WINDOWS\system32\ctfmon.exe (ID: 636 |ParentID: 1860)
Stoppé! C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (ID: 848 |ParentID: 1860)
Stoppé! C:\Program Files\Windows Desktop Search\WindowsSearch.exe (ID: 972 |ParentID: 1860)
Stoppé! C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ZDWlan.exe (ID: 784 |ParentID: 1860)
Stoppé! C:\WINDOWS\system32\SearchIndexer.exe (ID: 1444 |ParentID: 732)
Stoppé! C:\WINDOWS\system32\wscntfy.exe (ID: 1780 |ParentID: 1068)
Stoppé! C:\WINDOWS\system32\wuauclt.exe (ID: 492 |ParentID: 1068)
Stoppé! C:\WINDOWS\system32\cmd.exe (ID: 2732 |ParentID: 1860)
Stoppé! C:\Program Files\Internet Explorer\iexplore.exe (ID: 2744 |ParentID: 1816)
 
################## | Regedit Run |
 
04 - HKLM\SOFTWARE | Run : [Adobe Reader Speed Launcher] - C:\WINDOWS\System32\service158.exe
04 - HKLM\SOFTWARE | Run : [mobilegeni daemon] - C:\Program Files\Mobogenie\DaemonProcess.exe
04 - HKLM\SOFTWARE | RunOnce : [] - 
04 - HKU\S-1-5-19\SOFTWARE | Run : [CTFMON.EXE] - C:\WINDOWS\system32\CTFMON.EXE
04 - HKU\S-1-5-20\SOFTWARE | Run : [CTFMON.EXE] - C:\WINDOWS\system32\CTFMON.EXE
04 - HKU\S-1-5-21-1275210071-1637723038-725345543-500\SOFTWARE | Run : [CTFMON.EXE] - C:\WINDOWS\system32\ctfmon.exe
04 - HKU\S-1-5-21-1275210071-1637723038-725345543-500\SOFTWARE | Run : [Adobe Reader Speed Launcher] - C:\WINDOWS\System32\service158.exe
04 - HKU\S-1-5-21-1275210071-1637723038-725345543-500\SOFTWARE | Run : [SUPERAntiSpyware] - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
04 - HKU\S-1-5-18\SOFTWARE | Run : [CTFMON.EXE] - C:\WINDOWS\system32\CTFMON.EXE
 
################## | Recherche générique |
 
Non supprimé ! C:\Documents and Settings\Administrateur\Application Data\SUPERAntiSpyware.com
Supprimé! C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
Supprimé! F:\SamsungSoftware.lnk
Supprimé! F:\2-Events.lnk
Supprimé! F:\3-Perso.lnk
Supprimé! F:\4-Utilities.lnk
Supprimé! F:\1-Marketing Experience.lnk
Supprimé! F:\5-Exchange.lnk
Supprimé! F:\NEZHA.lnk
Supprimé! F:\0-Marketing Know How.lnk
Supprimé! F:\Tedxwomen 2012.lnk
Supprimé! F:\ipad.lnk
Supprimé! F:\Presentations Algerie.lnk
Supprimé! F:\My Desktop.lnk
Supprimé! F:\Roadshow in Algeria.lnk
Supprimé! F:\Program files.lnk
Supprimé! F:\T43.lnk
Supprimé! F:\_NSN in a Box.lnk
Supprimé! F:\_My Book.lnk
Supprimé! F:\_Personal Development Library.lnk
Supprimé! F:\iPhone.lnk
Supprimé! F:\_Entrepreneur tools.lnk
Supprimé! F:\_INPT.lnk
Supprimé! F:\_My Community.lnk
Supprimé! F:\_Kaseya.lnk
Supprimé! F:\temp to read and clean.lnk
Supprimé! F:\_My Company.lnk
Supprimé! F:\_Sport.lnk
Supprimé! F:\_Favorites 2013 NSN end.lnk
Supprimé! F:\dd96241e372269c9b17864664bd4.lnk
Supprimé! F:\voyage paris video.lnk
Supprimé! F:\_Nezha in Juniper.lnk
Supprimé! F:\_Doctorat.lnk
Supprimé! F:\_Enseignement supérieur.lnk
Supprimé! F:\Entreprise papa tghat.lnk
Supprimé! F:\RECYCLER\autorun.exe 
Supprimé! F:\Autorun.inf
 
(!) Fichiers temporaires supprimés.
 
################## | Référence de comparaison MD5 |
 
Md5 : 7B59F98CDBF9F5795EC07BAE88DF95DC -> F:\RECYCLER\autorun.exe 
 
################## | Comparaison MD5 |
 
Supprimé! Md5 : 7B59F98CDBF9F5795EC07BAE88DF95DC -> C:\WINDOWS\system32\service158.exe
Supprimé! Md5 : 7B59F98CDBF9F5795EC07BAE88DF95DC -> F:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP16\A0009083.exe
Supprimé! Md5 : 7B59F98CDBF9F5795EC07BAE88DF95DC -> F:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP16\A0009085.exe
Supprimé! Md5 : 7B59F98CDBF9F5795EC07BAE88DF95DC -> F:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP20\A0019643.exe
Supprimé! Md5 : 7B59F98CDBF9F5795EC07BAE88DF95DC -> F:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP21\A0021366.exe
Supprimé! Md5 : 7B59F98CDBF9F5795EC07BAE88DF95DC -> F:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP23\A0026542.exe
 
################## | Registre |
 
Supprimé! HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon|Adobe Reader Speed Launcher
Supprimé! HKU\S-1-5-21-1275210071-1637723038-725345543-500\Software\Microsoft\Windows\CurrentVersion\Run|SUPERAntiSpyware
Supprimé! HKU\S-1-5-21-1275210071-1637723038-725345543-500\Software\.\.\.\.\Mountpoints2\F
Supprimé! HKU\S-1-5-21-1275210071-1637723038-725345543-500\Software\.\.\.\.\Mountpoints2\{fc0b0d42-55d9-11e3-accc-00166f046530}
 
################## | Listing |
 
[25/11/2013 - 09:40:46 | N | 0] C:\AUTOEXEC.BAT
[25/11/2013 - 09:35:23 | N | 212] C:\boot.ini
[28/08/2001 - 12:00:00 | N | 4952] C:\Bootfont.bin
[25/11/2013 - 09:40:46 | N | 0] C:\CONFIG.SYS
[25/11/2013 - 09:46:18 | D ] C:\Documents and Settings
[25/11/2013 - 11:00:21 | D ] C:\DRIVERS
[29/11/2013 - 08:57:50 | D ] C:\FRST
[25/11/2013 - 09:40:46 | N | 0] C:\IO.SYS
[25/11/2013 - 09:40:46 | N | 0] C:\MSDOS.SYS
[25/11/2013 - 10:02:45 | RHD ] C:\MSOCache
[03/08/2004 - 20:38:34 | N | 47564] C:\NTDETECT.COM
[03/08/2004 - 20:59:44 | N | 251712] C:\ntldr
[29/11/2013 - 18:56:14 | ASH | 1610612736] C:\pagefile.sys
[29/11/2013 - 08:54:17 | D ] C:\Program Files
[25/11/2013 - 10:40:46 | SHD ] C:\RECYCLER
[25/11/2013 - 09:46:09 | SHD ] C:\System Volume Information
[29/11/2013 - 20:42:38 | D ] C:\UsbFix
[29/11/2013 - 20:42:59 | A | 7139] C:\UsbFix [Clean 2] POSTE.txt
[29/11/2013 - 08:33:14 | N | 26671] C:\UsbFix [Listing 1 ] POSTE.txt
[29/11/2013 - 08:25:06 | N | 6666] C:\UsbFix [Scan 1] POSTE.txt
[29/11/2013 - 18:57:29 | D ] C:\WINDOWS
[29/11/2013 - 09:58:26 | D ] D:\Analyse virus
[10/06/2012 - 19:58:26 | N | 1644468] D:\IMG_0038.JPG
[10/06/2012 - 19:58:26 | N | 2188926] D:\IMG_0043.JPG
[10/06/2012 - 19:58:28 | N | 2182720] D:\IMG_0047.JPG
[10/06/2012 - 19:58:30 | N | 2597109] D:\IMG_0053.JPG
[10/06/2012 - 19:58:32 | N | 2421348] D:\IMG_0056.JPG
[10/06/2012 - 19:58:32 | N | 2412741] D:\IMG_0057.JPG
[10/06/2012 - 19:58:32 | N | 124054] D:\IMG_0059.JPG
[10/06/2012 - 19:58:34 | N | 2245369] D:\IMG_0064.JPG
[10/06/2012 - 19:58:34 | N | 1937187] D:\IMG_0065.JPG
[10/06/2012 - 19:58:34 | N | 2119803] D:\IMG_0066.JPG
[10/06/2012 - 19:58:36 | N | 2025269] D:\IMG_0071.JPG
[10/06/2012 - 19:58:36 | N | 1992737] D:\IMG_0075.JPG
[10/06/2012 - 19:58:38 | N | 1854137] D:\IMG_0077.JPG
[10/06/2012 - 19:58:40 | N | 1888780] D:\IMG_0078.JPG
[10/06/2012 - 19:58:42 | N | 1859558] D:\IMG_0084.JPG
[10/06/2012 - 19:58:42 | N | 1986319] D:\IMG_0086.JPG
[10/06/2012 - 19:58:42 | N | 2034987] D:\IMG_0091.JPG
[10/06/2012 - 19:58:44 | N | 1999913] D:\IMG_0093.JPG
[10/06/2012 - 19:58:46 | N | 2097030] D:\IMG_0095.JPG
[10/06/2012 - 19:58:46 | N | 124436] D:\IMG_0096.JPG
[10/06/2012 - 19:58:46 | N | 1963236] D:\IMG_0101.JPG
[10/06/2012 - 19:58:48 | N | 1986203] D:\IMG_0107.JPG
[10/06/2012 - 19:58:48 | N | 2031336] D:\IMG_0115.JPG
[10/06/2012 - 19:58:50 | N | 2184601] D:\IMG_0131.JPG
[10/06/2012 - 19:58:52 | N | 1907846] D:\IMG_0138.JPG
[10/06/2012 - 19:58:52 | N | 1772583] D:\IMG_0149.JPG
[10/06/2012 - 19:58:52 | N | 132016] D:\IMG_0159.JPG
[10/06/2012 - 19:58:52 | N | 115453] D:\IMG_0160.JPG
[10/06/2012 - 19:58:52 | N | 129751] D:\IMG_0161.JPG
[10/06/2012 - 19:58:52 | N | 116371] D:\IMG_0167.JPG
[10/06/2012 - 19:58:54 | N | 1762784] D:\IMG_0169.JPG
[10/06/2012 - 19:58:56 | N | 1892034] D:\IMG_0171.JPG
[10/06/2012 - 19:58:56 | N | 147812] D:\IMG_0184.JPG
[10/06/2012 - 19:58:56 | N | 160845] D:\IMG_0187.JPG
[10/06/2012 - 19:58:56 | N | 2098160] D:\IMG_0189.JPG
[10/06/2012 - 19:58:56 | N | 2170981] D:\IMG_0201.JPG
[10/06/2012 - 19:58:58 | N | 2400417] D:\IMG_0202.JPG
[10/06/2012 - 19:58:58 | N | 1031848] D:\IMG_0203.JPG
[10/06/2012 - 19:59:00 | N | 1946940] D:\IMG_0204.JPG
[10/06/2012 - 20:01:36 | N | 1766380] D:\IMG_0208.JPG
[10/06/2012 - 20:01:36 | N | 1655860] D:\IMG_0209.JPG
[10/06/2012 - 20:01:38 | N | 1837414] D:\IMG_0210.JPG
[10/06/2012 - 20:01:40 | N | 1778338] D:\IMG_0211.JPG
[10/06/2012 - 20:01:40 | N | 1976130] D:\IMG_0213.JPG
[10/06/2012 - 20:01:42 | N | 1995164] D:\IMG_0214.JPG
[10/06/2012 - 20:01:42 | N | 2004154] D:\IMG_0215.JPG
[10/06/2012 - 20:01:44 | N | 1870691] D:\IMG_0216.JPG
[10/06/2012 - 20:01:46 | N | 2035390] D:\IMG_0217.JPG
[10/06/2012 - 20:01:48 | N | 1900500] D:\IMG_0218.JPG
[10/06/2012 - 20:01:50 | N | 1445039] D:\IMG_0225.JPG
[10/06/2012 - 20:01:50 | N | 1638039] D:\IMG_0236.JPG
[10/06/2012 - 20:01:50 | N | 1518562] D:\IMG_0238.JPG
[10/06/2012 - 20:01:52 | N | 1986437] D:\IMG_0239.JPG
[10/06/2012 - 20:01:54 | N | 2603138] D:\IMG_0240.JPG
[10/06/2012 - 20:01:56 | N | 2065774] D:\IMG_0241.JPG
[10/06/2012 - 20:01:56 | N | 1215200] D:\IMG_0242.JPG
[10/06/2012 - 20:01:58 | N | 1800169] D:\IMG_0246.JPG
[10/06/2012 - 20:01:58 | N | 1578596] D:\IMG_0248.JPG
[10/06/2012 - 20:02:00 | N | 1956863] D:\IMG_0249.JPG
[10/06/2012 - 20:02:02 | N | 1711133] D:\IMG_0250.JPG
[10/06/2012 - 20:02:02 | N | 877350] D:\IMG_0253.JPG
[10/06/2012 - 20:02:04 | N | 2150694] D:\IMG_0255.JPG
[10/06/2012 - 20:02:08 | N | 2392077] D:\IMG_0256.JPG
[10/06/2012 - 20:02:08 | N | 109505] D:\IMG_0305.JPG
[10/06/2012 - 20:02:10 | N | 1571160] D:\IMG_0307.JPG
[10/06/2012 - 20:02:10 | N | 1393721] D:\IMG_0308.JPG
[10/06/2012 - 20:02:12 | N | 138498] D:\IMG_0320.JPG
[10/06/2012 - 20:02:12 | N | 1966719] D:\IMG_0323.JPG
[10/06/2012 - 20:02:16 | N | 1941209] D:\IMG_0325.JPG
[10/06/2012 - 20:02:16 | N | 1706658] D:\IMG_0332.JPG
[10/06/2012 - 20:02:16 | N | 1588839] D:\IMG_0341.JPG
[10/06/2012 - 20:02:16 | N | 1967835] D:\IMG_0343.JPG
[10/06/2012 - 20:02:16 | N | 96449] D:\IMG_0345.JPG
[10/06/2012 - 20:02:18 | N | 1696373] D:\IMG_0381.JPG
[10/06/2012 - 20:02:18 | N | 1951304] D:\IMG_0392.JPG
[10/06/2012 - 20:02:20 | N | 1053640] D:\IMG_0395.JPG
[10/06/2012 - 20:02:32 | N | 1963982] D:\IMG_0436.JPG
[10/06/2012 - 20:02:20 | N | 2035828] D:\IMG_0437.JPG
[10/06/2012 - 20:02:20 | N | 2208040] D:\IMG_0438.JPG
[10/06/2012 - 20:02:22 | N | 1797256] D:\IMG_0441.JPG
[10/06/2012 - 20:02:24 | N | 2585240] D:\IMG_0444.JPG
[10/06/2012 - 20:02:26 | N | 2141431] D:\IMG_0448.JPG
[10/06/2012 - 20:02:26 | N | 1814176] D:\IMG_0463.JPG
[10/06/2012 - 20:02:28 | N | 2442175] D:\IMG_0464.JPG
[10/06/2012 - 20:02:30 | N | 2039177] D:\IMG_0471.JPG
[10/06/2012 - 20:02:30 | N | 1889271] D:\IMG_0502.JPG
[10/06/2012 - 20:02:30 | N | 2040670] D:\IMG_0503.JPG
[10/06/2012 - 20:02:30 | N | 1837508] D:\IMG_0510.JPG
[10/06/2012 - 20:02:32 | N | 1788009] D:\IMG_0514.JPG
[10/06/2012 - 20:02:32 | N | 1671775] D:\IMG_0517.JPG
[10/06/2012 - 20:02:32 | N | 1777980] D:\IMG_0518.JPG
[10/06/2012 - 20:02:32 | N | 1972831] D:\IMG_0519.JPG
[10/06/2012 - 20:02:32 | N | 1880556] D:\IMG_0521.JPG
[10/06/2012 - 20:02:32 | N | 1870101] D:\IMG_0522.JPG
[10/06/2012 - 20:02:32 | N | 1907216] D:\IMG_0523.JPG
[10/06/2012 - 20:02:34 | N | 1937431] D:\IMG_0525.JPG
[10/06/2012 - 20:02:34 | N | 2015631] D:\IMG_0526.JPG
[10/06/2012 - 20:02:36 | N | 2081424] D:\IMG_0533.JPG
[10/06/2012 - 20:02:36 | N | 2023862] D:\IMG_0534.JPG
[10/06/2012 - 20:02:36 | N | 2186693] D:\IMG_0537.JPG
[10/06/2012 - 20:02:36 | N | 1896236] D:\IMG_0538.JPG
[10/06/2012 - 20:02:36 | N | 1894619] D:\IMG_0541.JPG
[10/06/2012 - 20:02:38 | N | 1944177] D:\IMG_0548.JPG
[10/06/2012 - 20:02:38 | N | 1914485] D:\IMG_0552.JPG
[10/06/2012 - 20:02:38 | N | 1508990] D:\IMG_0553.JPG
[10/06/2012 - 20:02:38 | N | 1511177] D:\IMG_0554.JPG
[10/06/2012 - 20:02:40 | N | 1717601] D:\IMG_0557.JPG
[10/06/2012 - 20:02:42 | N | 2350723] D:\IMG_0559.JPG
[10/06/2012 - 20:02:42 | N | 1888456] D:\IMG_0560.JPG
[10/06/2012 - 20:02:42 | N | 1747267] D:\IMG_0561.JPG
[10/06/2012 - 20:02:42 | N | 1097619] D:\IMG_0562.JPG
[10/06/2012 - 20:02:42 | N | 1672628] D:\IMG_0563.JPG
[10/06/2012 - 20:02:44 | N | 2208901] D:\IMG_0564.JPG
[10/06/2012 - 20:02:44 | N | 1802037] D:\IMG_0565.JPG
[10/06/2012 - 20:02:44 | N | 1695486] D:\IMG_0566.JPG
[10/06/2012 - 20:02:46 | N | 1715604] D:\IMG_0567.JPG
[10/06/2012 - 20:02:46 | N | 1547020] D:\IMG_0568.JPG
[10/06/2012 - 20:05:08 | N | 92026] D:\IMG_0581.JPG
[10/06/2012 - 20:07:42 | N | 2569096] D:\IMG_0586.JPG
[10/06/2012 - 20:07:42 | N | 2250933] D:\IMG_0588.JPG
[10/06/2012 - 20:07:54 | N | 2008694] D:\IMG_0612.JPG
[10/06/2012 - 20:07:56 | N | 2088671] D:\IMG_0613.JPG
[10/06/2012 - 20:07:56 | N | 1892258] D:\IMG_0614.JPG
[10/06/2012 - 20:07:58 | N | 2127605] D:\IMG_0615.JPG
[10/06/2012 - 20:08:00 | N | 2244213] D:\IMG_0616.JPG
[10/06/2012 - 20:08:00 | N | 1793118] D:\IMG_0617.JPG
[10/06/2012 - 20:08:02 | N | 1886424] D:\IMG_0618.JPG
[10/06/2012 - 20:08:04 | N | 1442485] D:\IMG_0620.JPG
[10/06/2012 - 20:08:04 | N | 2044726] D:\IMG_0621.JPG
[10/06/2012 - 20:08:06 | N | 1192081] D:\IMG_0622.JPG
[10/06/2012 - 20:08:06 | N | 1868813] D:\IMG_0628.JPG
[10/06/2012 - 20:08:08 | N | 1597965] D:\IMG_0629.JPG
[10/06/2012 - 20:08:08 | N | 1049904] D:\IMG_0630.JPG
[10/06/2012 - 20:08:08 | N | 1719912] D:\IMG_0634.JPG
[10/06/2012 - 20:08:10 | N | 2659040] D:\IMG_0635.JPG
[10/06/2012 - 20:08:10 | N | 2577463] D:\IMG_0636.JPG
[10/06/2012 - 20:08:10 | N | 2636059] D:\IMG_0637.JPG
[10/06/2012 - 20:08:10 | N | 2884444] D:\IMG_0638.JPG
[10/06/2012 - 20:08:10 | N | 2568567] D:\IMG_0639.JPG
[10/06/2012 - 20:08:12 | N | 3240336] D:\IMG_0640.JPG
[10/06/2012 - 20:08:12 | N | 3054498] D:\IMG_0641.JPG
[10/06/2012 - 20:08:14 | N | 1774976] D:\IMG_0643.JPG
[10/06/2012 - 20:08:14 | N | 2767888] D:\IMG_0646.JPG
[10/06/2012 - 20:08:14 | N | 2165394] D:\IMG_0647.JPG
[10/06/2012 - 20:08:16 | N | 2568701] D:\IMG_0653.JPG
[10/06/2012 - 20:08:16 | N | 2379742] D:\IMG_0655.JPG
[10/06/2012 - 20:08:16 | N | 2666344] D:\IMG_0656.JPG
[10/06/2012 - 20:08:20 | N | 2706770] D:\IMG_0657.JPG
[10/06/2012 - 20:08:20 | N | 2652780] D:\IMG_0658.JPG
[10/06/2012 - 20:08:22 | N | 2379589] D:\IMG_0659.JPG
[10/06/2012 - 20:08:24 | N | 2503435] D:\IMG_0660.JPG
[10/06/2012 - 20:08:24 | N | 1425005] D:\IMG_0665.JPG
[10/06/2012 - 20:08:26 | N | 1411214] D:\IMG_0666.JPG
[10/06/2012 - 20:08:26 | N | 1438662] D:\IMG_0667.JPG
[10/06/2012 - 20:08:26 | N | 1211218] D:\IMG_0670.JPG
[10/06/2012 - 20:08:28 | N | 1327556] D:\IMG_0671.JPG
[10/06/2012 - 20:08:28 | N | 886530] D:\IMG_0676.JPG
[10/06/2012 - 20:08:30 | N | 1199498] D:\IMG_0677.JPG
[10/06/2012 - 20:08:30 | N | 2348922] D:\IMG_0678.JPG
[10/06/2012 - 20:08:32 | N | 1534529] D:\IMG_0679.JPG
[10/06/2012 - 20:08:32 | N | 1888519] D:\IMG_0680.JPG
[10/06/2012 - 20:08:32 | N | 1223222] D:\IMG_0681.JPG
[10/06/2012 - 20:08:32 | N | 1242760] D:\IMG_0682.JPG
[10/06/2012 - 20:08:34 | N | 2409877] D:\IMG_0683.JPG
[10/06/2012 - 20:08:36 | N | 2883507] D:\IMG_0684.JPG
[10/06/2012 - 20:08:36 | N | 2525053] D:\IMG_0688.JPG
[10/06/2012 - 20:08:38 | N | 2566343] D:\IMG_0689.JPG
[10/06/2012 - 20:08:40 | N | 2254185] D:\IMG_0690.JPG
[10/06/2012 - 20:08:40 | N | 1622083] D:\IMG_0691.JPG
[10/06/2012 - 20:08:40 | N | 2228680] D:\IMG_0697.JPG
[10/06/2012 - 20:08:40 | N | 2276319] D:\IMG_0698.JPG
[10/06/2012 - 20:08:44 | N | 2302463] D:\IMG_0699.JPG
[10/06/2012 - 20:10:54 | N | 1727140] D:\IMG_0711.JPG
[10/06/2012 - 20:10:56 | N | 1608551] D:\IMG_0719.JPG
[10/06/2012 - 20:10:56 | N | 1445177] D:\IMG_0720.JPG
[10/06/2012 - 20:10:56 | N | 1724534] D:\IMG_0721.JPG
[10/06/2012 - 20:10:56 | N | 1335466] D:\IMG_0722.JPG
[10/06/2012 - 20:10:56 | N | 1381121] D:\IMG_0723.JPG
[10/06/2012 - 20:10:58 | N | 2325494] D:\IMG_0724.JPG
[10/06/2012 - 20:11:00 | N | 1668546] D:\IMG_0725.JPG
[10/06/2012 - 20:11:00 | N | 1279750] D:\IMG_0726.JPG
[10/06/2012 - 20:11:00 | N | 1718312] D:\IMG_0727.JPG
[10/06/2012 - 20:11:00 | N | 1290320] D:\IMG_0728.JPG
[10/06/2012 - 20:11:00 | N | 1461850] D:\IMG_0729.JPG
[10/06/2012 - 20:11:00 | N | 1202232] D:\IMG_0730.JPG
[10/06/2012 - 20:11:00 | N | 1355857] D:\IMG_0731.JPG
[10/06/2012 - 20:11:00 | N | 594319] D:\IMG_0732.JPG
[10/06/2012 - 20:11:02 | N | 1310658] D:\IMG_0735.JPG
[10/06/2012 - 20:11:02 | N | 603886] D:\IMG_0736.JPG
[10/06/2012 - 20:11:02 | N | 696028] D:\IMG_0737.JPG
[10/06/2012 - 20:11:02 | N | 1254803] D:\IMG_0738.JPG
[10/06/2012 - 20:11:04 | N | 990081] D:\IMG_0739.JPG
[10/06/2012 - 20:11:04 | N | 113454] D:\IMG_0740.JPG
[10/06/2012 - 20:11:04 | N | 112422] D:\IMG_0741.JPG
[10/06/2012 - 20:11:04 | N | 135350] D:\IMG_0742.JPG
[10/06/2012 - 20:11:04 | N | 2126087] D:\IMG_0743.JPG
[10/06/2012 - 20:11:04 | N | 1865170] D:\IMG_0744.JPG
[10/06/2012 - 20:11:04 | N | 1817324] D:\IMG_0745.JPG
[10/06/2012 - 20:11:06 | N | 1876236] D:\IMG_0746.JPG
[10/06/2012 - 20:11:08 | N | 2129800] D:\IMG_0747.JPG
[10/06/2012 - 20:11:10 | N | 1973544] D:\IMG_0750.JPG
[10/06/2012 - 20:11:10 | N | 2093773] D:\IMG_0751.JPG
[10/06/2012 - 20:11:12 | N | 2049282] D:\IMG_0752.JPG
[10/06/2012 - 20:11:14 | N | 2247293] D:\IMG_0755.JPG
[10/06/2012 - 20:11:16 | N | 2292243] D:\IMG_0757.JPG
[10/06/2012 - 20:11:16 | N | 2178028] D:\IMG_0758.JPG
[10/06/2012 - 20:11:18 | N | 1926194] D:\IMG_0761.JPG
[10/06/2012 - 20:11:20 | N | 1899098] D:\IMG_0762.JPG
[10/06/2012 - 20:11:20 | N | 2226606] D:\IMG_0765.JPG
[10/06/2012 - 20:11:20 | N | 2175327] D:\IMG_0766.JPG
[10/06/2012 - 20:11:22 | N | 2159459] D:\IMG_0768.JPG
[10/06/2012 - 20:11:24 | N | 2017337] D:\IMG_0769.JPG
[10/06/2012 - 20:11:24 | N | 1322052] D:\IMG_0787.JPG
[10/06/2012 - 20:11:24 | N | 1363321] D:\IMG_0790.JPG
[10/06/2012 - 20:11:24 | N | 1937212] D:\IMG_0792.JPG
[10/06/2012 - 20:11:24 | N | 2032315] D:\IMG_0793.JPG
[10/06/2012 - 20:11:26 | N | 2482117] D:\IMG_0794.JPG
[10/06/2012 - 20:11:26 | N | 2672817] D:\IMG_0795.JPG
[10/06/2012 - 20:11:26 | N | 2665493] D:\IMG_0796.JPG
[10/06/2012 - 20:11:26 | N | 2799902] D:\IMG_0797.JPG
[10/06/2012 - 20:11:26 | N | 115952] D:\IMG_0799.JPG
[10/06/2012 - 20:11:26 | N | 2152014] D:\IMG_0802.JPG
[10/06/2012 - 20:11:28 | N | 1974415] D:\IMG_0803.JPG
[10/06/2012 - 20:11:30 | N | 2454742] D:\IMG_0804.JPG
[10/06/2012 - 20:11:30 | N | 2309338] D:\IMG_0805.JPG
[10/06/2012 - 20:11:32 | N | 2195832] D:\IMG_0807.JPG
[10/06/2012 - 20:11:34 | N | 3019265] D:\IMG_0810.JPG
[10/06/2012 - 20:11:36 | N | 2449148] D:\IMG_0811.JPG
[10/06/2012 - 20:11:36 | N | 2466859] D:\IMG_0812.JPG
[10/06/2012 - 20:11:36 | N | 2840139] D:\IMG_0813.JPG
[10/06/2012 - 20:11:36 | N | 2920477] D:\IMG_0814.JPG
[10/06/2012 - 20:11:38 | N | 115640] D:\IMG_0815.JPG
[10/06/2012 - 20:11:38 | N | 109746] D:\IMG_0816.JPG
[10/06/2012 - 20:11:38 | N | 1957985] D:\IMG_0817.JPG
[10/06/2012 - 20:11:38 | N | 2027609] D:\IMG_0818.JPG
[10/06/2012 - 20:11:40 | N | 2041210] D:\IMG_0820.JPG
[10/06/2012 - 20:11:40 | N | 2034070] D:\IMG_0822.JPG
[10/06/2012 - 20:11:40 | N | 2082890] D:\IMG_0823.JPG
[10/06/2012 - 20:11:42 | N | 2187381] D:\IMG_0824.JPG
[10/06/2012 - 20:11:44 | N | 2586742] D:\IMG_0825.JPG
[10/06/2012 - 20:11:46 | N | 1940776] D:\IMG_0828.JPG
[10/06/2012 - 20:11:48 | N | 2047453] D:\IMG_0829.JPG
[10/06/2012 - 20:11:48 | N | 2220817] D:\IMG_0830.JPG
[10/06/2012 - 20:11:50 | N | 2121841] D:\IMG_0831.JPG
[10/06/2012 - 20:11:50 | N | 2145511] D:\IMG_0832.JPG
[10/06/2012 - 20:11:52 | N | 1948467] D:\IMG_0833.JPG
[10/06/2012 - 20:11:54 | N | 1981810] D:\IMG_0834.JPG
[10/06/2012 - 20:11:56 | N | 3050433] D:\IMG_0835.JPG
[10/06/2012 - 20:11:58 | N | 2962010] D:\IMG_0836.JPG
[10/06/2012 - 20:11:58 | N | 96068] D:\IMG_0837.JPG
[10/06/2012 - 20:12:00 | N | 2255683] D:\IMG_0838.JPG
[10/06/2012 - 20:12:00 | N | 2608491] D:\IMG_0839.JPG
[10/06/2012 - 20:12:02 | N | 1948336] D:\IMG_0841.JPG
[10/06/2012 - 20:12:04 | N | 1996482] D:\IMG_0842.JPG
[10/06/2012 - 20:12:06 | N | 2080128] D:\IMG_0843.JPG
[10/06/2012 - 20:12:08 | N | 2050557] D:\IMG_0844.JPG
[10/06/2012 - 20:12:10 | N | 2184397] D:\IMG_0845.JPG
[10/06/2012 - 20:12:10 | N | 115685] D:\IMG_0855.JPG
[10/06/2012 - 20:12:10 | N | 2179261] D:\IMG_0858.JPG
[10/06/2012 - 20:12:12 | N | 2004212] D:\IMG_0859.JPG
[10/06/2012 - 20:12:14 | N | 2091538] D:\IMG_0861.JPG
[10/06/2012 - 20:12:14 | N | 2174903] D:\IMG_0862.JPG
[10/06/2012 - 20:12:16 | N | 2103595] D:\IMG_0863.JPG
[10/06/2012 - 20:12:18 | N | 2110805] D:\IMG_0864.JPG
[10/06/2012 - 20:12:20 | N | 3286128] D:\IMG_0865.JPG
[10/06/2012 - 20:12:20 | N | 3177759] D:\IMG_0866.JPG
[10/06/2012 - 20:12:22 | N | 1062464] D:\IMG_0867.JPG
[10/06/2012 - 20:12:22 | N | 122316] D:\IMG_0868.JPG
[10/06/2012 - 20:12:22 | N | 2334789] D:\IMG_0870.JPG
[10/06/2012 - 20:12:24 | N | 1729208] D:\IMG_0871.JPG
[10/06/2012 - 20:12:26 | N | 2216592] D:\IMG_0873.JPG
[10/06/2012 - 20:12:28 | N | 2256523] D:\IMG_0874.JPG
[10/06/2012 - 20:12:28 | N | 2228011] D:\IMG_0875.JPG
[10/06/2012 - 20:12:28 | N | 2153234] D:\IMG_0876.JPG
[10/06/2012 - 20:12:28 | N | 1895780] D:\IMG_0877.JPG
[10/06/2012 - 20:12:30 | N | 1842708] D:\IMG_0879.JPG
[10/06/2012 - 20:12:30 | N | 2045621] D:\IMG_0880.JPG
[10/06/2012 - 20:12:32 | N | 2159738] D:\IMG_0888.JPG
[10/06/2012 - 20:12:32 | N | 97174] D:\IMG_0891.JPG
[10/06/2012 - 20:12:32 | N | 1353473] D:\IMG_0892.JPG
[10/06/2012 - 20:12:34 | N | 1810777] D:\IMG_0897.JPG
[10/06/2012 - 20:12:34 | N | 128867] D:\IMG_0899.JPG
[10/06/2012 - 20:12:34 | N | 1765310] D:\IMG_0902.JPG
[10/06/2012 - 20:12:36 | N | 1750941] D:\IMG_0903.JPG
[10/06/2012 - 20:12:38 | N | 1806458] D:\IMG_0905.JPG
[10/06/2012 - 20:12:38 | N | 1938657] D:\IMG_0907.JPG
[10/06/2012 - 20:12:38 | N | 2023648] D:\IMG_0909.JPG
[10/06/2012 - 20:12:40 | N | 98863] D:\IMG_0910.JPG
[10/06/2012 - 20:12:40 | N | 122250] D:\IMG_0911.JPG
[10/06/2012 - 20:12:40 | N | 1907509] D:\IMG_0913.JPG
[10/06/2012 - 20:12:40 | N | 2118673] D:\IMG_0919.JPG
[10/06/2012 - 20:12:40 | N | 105728] D:\IMG_0920.JPG
[10/06/2012 - 20:12:40 | N | 112334] D:\IMG_0921.JPG
[10/06/2012 - 20:12:40 | N | 119144] D:\IMG_0922.JPG
[10/06/2012 - 20:12:44 | N | 2453895] D:\IMG_0923.JPG
[10/06/2012 - 20:12:44 | N | 756063] D:\IMG_0924.JPG
[10/06/2012 - 20:12:46 | N | 2036202] D:\IMG_0925.JPG
[10/06/2012 - 20:12:46 | N | 1928769] D:\IMG_0926.JPG
[10/06/2012 - 20:12:48 | N | 875468] D:\IMG_0928.JPG
[10/06/2012 - 20:12:48 | N | 1822876] D:\IMG_0929.JPG
[10/06/2012 - 20:12:48 | N | 1691576] D:\IMG_0930.JPG
[10/06/2012 - 20:12:48 | N | 1607035] D:\IMG_0931.JPG
[10/06/2012 - 20:12:50 | N | 1624689] D:\IMG_0932.JPG
[10/06/2012 - 20:12:50 | N | 1844384] D:\IMG_0933.JPG
[10/06/2012 - 20:12:52 | N | 1807018] D:\IMG_0934.JPG
[10/06/2012 - 20:12:54 | N | 1328021] D:\IMG_0935.JPG
[10/06/2012 - 20:12:54 | N | 135562] D:\IMG_0937.JPG
[10/06/2012 - 20:12:54 | N | 835115] D:\IMG_0942.JPG
[10/06/2012 - 20:12:54 | N | 130624] D:\IMG_0943.JPG
[10/06/2012 - 20:12:54 | N | 2842794] D:\IMG_0944.JPG
[10/06/2012 - 20:12:56 | N | 1725368] D:\IMG_0946.JPG
[10/06/2012 - 20:12:56 | N | 2856751] D:\IMG_0947.JPG
[10/06/2012 - 20:12:58 | N | 1814520] D:\IMG_0948.JPG
[10/06/2012 - 20:13:00 | N | 2301483] D:\IMG_0949.JPG
[10/06/2012 - 20:13:14 | N | 2118006] D:\IMG_0951.JPG
[10/06/2012 - 20:13:14 | N | 2258409] D:\IMG_0952.JPG
[10/06/2012 - 20:13:14 | N | 1930631] D:\IMG_0954.JPG
[10/06/2012 - 20:13:16 | N | 1823580] D:\IMG_0966.JPG
[10/06/2012 - 20:13:16 | N | 122632] D:\IMG_0968.JPG
[10/06/2012 - 20:13:16 | N | 2109329] D:\IMG_0970.JPG
[10/06/2012 - 20:13:18 | N | 1607825] D:\IMG_0972.JPG
[10/06/2012 - 20:13:20 | N | 1942679] D:\IMG_0974.JPG
[10/06/2012 - 20:13:20 | N | 2145752] D:\IMG_0975.JPG
[10/06/2012 - 20:13:20 | N | 2285498] D:\IMG_0981.JPG
[10/06/2012 - 20:13:20 | N | 2128094] D:\IMG_0982.JPG
[10/06/2012 - 20:13:20 | N | 1815264] D:\IMG_0983.JPG
[10/06/2012 - 20:13:20 | N | 2355692] D:\IMG_0984.JPG
[10/06/2012 - 20:13:22 | N | 2359012] D:\IMG_0985.JPG
[10/06/2012 - 20:15:36 | N | 1812241] D:\IMG_1002.JPG
[10/06/2012 - 20:15:38 | N | 1906239] D:\IMG_1004.JPG
[10/06/2012 - 20:15:40 | N | 2051367] D:\IMG_1006.JPG
[10/06/2012 - 20:15:40 | N | 1141013] D:\IMG_1009.JPG
[10/06/2012 - 20:15:42 | N | 1195935] D:\IMG_1010.JPG
[10/06/2012 - 20:15:44 | N | 1880749] D:\IMG_1011.JPG
[10/06/2012 - 20:15:46 | N | 1865105] D:\IMG_1012.JPG
[10/06/2012 - 20:15:48 | N | 1851291] D:\IMG_1013.JPG
[10/06/2012 - 20:15:48 | N | 1887400] D:\IMG_1014.JPG
[10/06/2012 - 20:15:50 | N | 1919046] D:\IMG_1015.JPG
[10/06/2012 - 20:15:50 | N | 1850868] D:\IMG_1016.JPG
[10/06/2012 - 20:15:52 | N | 1897555] D:\IMG_1017.JPG
[10/06/2012 - 20:15:54 | N | 1913947] D:\IMG_1018.JPG
[10/06/2012 - 20:15:54 | N | 2004458] D:\IMG_1019.JPG
[10/06/2012 - 20:15:56 | N | 1981436] D:\IMG_1020.JPG
[10/06/2012 - 20:15:56 | N | 2015885] D:\IMG_1021.JPG
[10/06/2012 - 20:15:56 | N | 2040910] D:\IMG_1022.JPG
[10/06/2012 - 20:15:58 | N | 2031879] D:\IMG_1023.JPG
[10/06/2012 - 20:16:00 | N | 1851714] D:\IMG_1026.JPG
[10/06/2012 - 20:16:00 | N | 1978711] D:\IMG_1028.JPG
[10/06/2012 - 20:16:02 | N | 1565067] D:\IMG_1029.JPG
[10/06/2012 - 20:16:02 | N | 1909583] D:\IMG_1030.JPG
[10/06/2012 - 20:16:04 | N | 2095960] D:\IMG_1031.JPG
[10/06/2012 - 20:16:06 | N | 2671746] D:\IMG_1032.JPG
[10/06/2012 - 20:16:06 | N | 3167388] D:\IMG_1033.JPG
[10/06/2012 - 20:16:10 | N | 2503525] D:\IMG_1034.JPG
[10/06/2012 - 20:16:10 | N | 2860046] D:\IMG_1035.JPG
[10/06/2012 - 20:16:12 | N | 1950820] D:\IMG_1036.JPG
[10/06/2012 - 20:16:14 | N | 2176746] D:\IMG_1037.JPG
[10/06/2012 - 20:16:14 | N | 2125584] D:\IMG_1038.JPG
[10/06/2012 - 20:16:16 | N | 2185751] D:\IMG_1039.JPG
[10/06/2012 - 20:16:16 | N | 1992935] D:\IMG_1040.JPG
[27/11/2013 - 06:11:31 | D ] D:\MVNO Project with Al BaridBank
[25/11/2013 - 14:29:29 | SHD ] D:\RECYCLER
[25/11/2013 - 10:22:43 | SHD ] D:\System Volume Information
[25/11/2013 - 14:08:49 | RASH | 1447936] D:\Thumbs.db
[05/04/2010 - 23:36:16 | D ] F:\SamsungSoftware
[30/12/2009 - 20:01:04 | N | 4411817] F:\AppInst.exe
[10/07/2011 - 02:11:12 | N | 4294939648] F:\MyPC-2011-07-09_Backup.bkf
[03/08/2011 - 23:37:28 | D ] F:\2-Events
[03/08/2011 - 23:37:38 | D ] F:\3-Perso
[03/08/2011 - 23:40:02 | D ] F:\4-Utilities
[03/08/2011 - 23:41:56 | D ] F:\1-Marketing Experience
[06/09/2011 - 19:01:46 | D ] F:\5-Exchange
[06/09/2011 - 19:02:40 | SHD ] F:\Recycled
[15/12/2008 - 14:35:12 | D ] F:\NEZHA
[24/06/2012 - 16:55:20 | N | 4294901760] F:\20120607164658.mpg
[27/07/2012 - 10:57:28 | D ] F:\0-Marketing Know How
[02/12/2012 - 12:11:10 | D ] F:\Tedxwomen 2012
[02/12/2012 - 13:03:12 | D ] F:\$RECYCLE.BIN
[10/12/2012 - 20:26:48 | D ] F:\ipad
[13/12/2012 - 09:13:42 | D ] F:\Presentations Algerie
[14/12/2012 - 02:58:56 | D ] F:\Favorites
[15/12/2012 - 11:31:18 | D ] F:\My Desktop
[15/12/2012 - 11:31:36 | D ] F:\Roadshow in Algeria
[16/12/2012 - 07:09:00 | D ] F:\Program files
[16/12/2012 - 15:21:46 | D ] F:\T43
[19/02/2013 - 15:23:26 | D ] F:\_NSN in a Box
[19/03/2013 - 04:47:14 | D ] F:\_My Book
[29/04/2013 - 15:18:58 | D ] F:\_Personal Development Library
[26/05/2013 - 13:14:22 | D ] F:\iPhone
[12/06/2013 - 01:34:36 | D ] F:\_Entrepreneur tools
[13/06/2013 - 12:38:28 | D ] F:\_INPT
[19/06/2013 - 09:09:12 | D ] F:\_My Community
[19/06/2013 - 18:47:48 | D ] F:\_Kaseya
[19/06/2013 - 21:52:08 | D ] F:\temp to read and clean
[15/06/2012 - 10:33:24 | D ] F:\_My Company
[14/03/2013 - 13:05:40 | D ] F:\_Sport
[30/06/2013 - 13:22:00 | D ] F:\_Favorites 2013 NSN end
[19/07/2013 - 15:13:34 | D ] F:\System Volume Information
[19/07/2013 - 17:40:42 | D ] F:\dd96241e372269c9b17864664bd4
[01/10/2013 - 01:10:10 | D ] F:\voyage paris video
[31/10/2013 - 16:37:10 | D ] F:\_Nezha in Juniper
[15/11/2013 - 09:56:36 | D ] F:\_Doctorat
[15/11/2013 - 11:51:36 | D ] F:\_Enseignement supérieur
[14/11/2013 - 10:25:16 | N | 100] F:\Feuille caisse maison.txt
[22/11/2013 - 10:23:04 | D ] F:\Entreprise papa tghat
[25/11/2013 - 19:25:06 | D ] F:\RECYCLER
 
################## | Vaccin |
 
(!) Cet ordinateur n'est pas vacciné!
 
################## | E.O.F | http://www.usbfix.net - http://www.sosvirus.net |


#9 Aaflac

Aaflac

    Doin' Dis 'n Dat...


  • Malware Response Team
  • 2,307 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Location:USA
  • Local time:08:10 AM

Posted 29 November 2013 - 06:03 PM

Good job!! :thumbsup:

Let's do some cleaning in both the computer, and the external drive...

:step1: Please download the Temporary File Cleaner (TFC)
http://oldtimer.geekstogo.com/TFC.exe
Save to your Desktop.
Save any work in progress!! TFC closes open applications and removes unsaved work!! Close all windows.
Right-click TFC.exe and select: Run as Administrator
If prompted, click Yes to reboot.


:step2: Next, download AdwCleaner to the Desktop.
http://www.bleepingcomputer.com/download/adwcleaner/
Close all open programs and internet browsers.
Double-click on AdwCleaner.exe to run the tool.
Click the Scan button and wait for the process to complete.

If you find entries or programs you wish to keep, please uncheck them.
Click on the Clean button to remove the rest, and follow the prompts.

A report automatically opens after the scan is finished.

>> Please post the content of C:\AdwCleaner[Sn].txt your reply.


:step3: Next, please run Malwarebytes Anti-Malware:
Download: http://www.bleepingcomputer.com/download/malwarebytes-anti-malware/
Save to the Desktop
Double-click the downloaded MBAM file to run it.

When the installation begins, follow the prompts in the setup process.
Do not make any changes to default settings and when the program has finished installing, make sure only the following options are checked:
>Update Malwarebytes Anti-Malware
>Launch Malwarebytes Anti-Malware
Uncheck:
>Enable free trial of Malwarebytes Anti-Malware PRO
Click on the Finish button.

If an update is found, the program automatically updates itself.

At the program console, on the Scanner tab, and select: Perform Full Scan
When the Select the Drives to scan prompt appears, make sure all drives (except: CD-Rom/DVD) are selected.
Next, click on the Scan button.

When the Malwarebytes scan is completed, click on: Show Results
When presented with a screen showing the malware detected, make sure everything is Checked, and click on: Remove Selected

When removal is completed, a report opens in Notepad.

>> Please copy/paste the entire contents of the MBAM report in your reply.

Note: If MBAM encounters a file that is difficult to remove, you are asked to reboot the computer so MBAM can proceed with the disinfection process. If asked to restart the computer, please do so immediately. Failure to reboot normally (not into safe mode) prevents MBAM from removing all the malware.

Old duck...


#10 Nezha2013

Nezha2013
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Local time:01:10 PM

Posted 30 November 2013 - 05:03 PM

Hey hey, here are the requested logs. Thx!

 

################################Adwcleaner log
# AdwCleaner v3.013 - Rapport créé le 30/11/2013 à 20:46:38
# Mis à jour le 24/11/2013 par Xplode
# Système d'exploitation : Microsoft Windows XP Service Pack 2 (32 bits)
# Nom d'utilisateur : Administrateur - POSTE
# Exécuté depuis : C:\Documents and Settings\Administrateur\Mes documents\Downloads\AdwCleaner.exe
# Option : Nettoyer
 
***** [ Services ] *****
 
[x] Non Supprimé : BackupStack
[#] Service Supprimé : srvPlgProtect
[x] Non Supprimé : SrvUpdater
 
***** [ Fichiers / Dossiers ] *****
 
Dossier Supprimé : C:\Program Files\MyPC Backup
Dossier Supprimé : C:\Program Files\SoftwareUpdater
Dossier Supprimé : C:\Documents and Settings\Administrateur\Application Data\okitspace
Dossier Supprimé : C:\Documents and Settings\Administrateur\Application Data\pdfforge
Dossier Supprimé : C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\MyPC Backup
Fichier Supprimé : C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage\MyPC Backup.lnk
Fichier Supprimé : C:\Documents and Settings\Administrateur\Bureau\MyPC Backup.lnk
 
***** [ Raccourcis ] *****
 
 
***** [ Registre ] *****
 
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mypc backup
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CNXT_MODEM_PCI_VEN_8086&DEV_24C6&SUBSYS_05591014
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}]
Clé Supprimée : HKLM\Software\SoftwareUpdater
Clé Supprimée : HKLM\Software\Vittalia
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdater
 
***** [ Navigateurs ] *****
 
-\\ Internet Explorer v6.0.2900.2180
 
 
-\\ Google Chrome v31.0.1650.57
 
[ Fichier : C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\preferences ]
 
 
*************************
 
AdwCleaner[R0].txt - [2195 octets] - [30/11/2013 20:44:35]
AdwCleaner[S0].txt - [2148 octets] - [30/11/2013 20:46:38]
 
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2208 octets] ##########
 
#####################################################MBAM report
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
 
Database version: v2013.04.04.07
 
Windows XP Service Pack 2 x86 NTFS
Internet Explorer 6.0.2900.2180
Administrateur :: POSTE [administrator]
 
30/11/2013 20:59:46
mbam-log-2013-11-30 (20-59-46).txt
 
Scan type: Full scan (C:\|D:\|F:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 257471
Time elapsed: 47 minute(s), 23 second(s)
 
Memory Processes Detected: 2
C:\Program Files\Windows Desktop Search\WindowsSearch.exe (Virus.Ramnit) -> 1988 -> Delete on reboot.
C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ZDWlan.exe (Virus.Ramnit) -> 2000 -> Delete on reboot.
 
Memory Modules Detected: 11
C:\Program Files\PDF Architect\libcurl.dll (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\PDF Architect\libeay32.dll (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\PDF Architect\ssleay32.dll (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\Windows Desktop Search\WdsMktTools.dll (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\W32N55.DLL (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ZDWlan.dll (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\dot1x_dll.dll (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\libeay32.dll (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\msvcr71.dll (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ssleay32.dll (Virus.Ramnit) -> Delete on reboot.
 
Registry Keys Detected: 75
HKCR\CLSID\{015CA7C6-DECD-40dc-AAAC-73EA9940E0F9} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\CLSID\{05741520-C4EB-440A-AC3F-9643BBC9F847} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\CLSID\{10935444-7CC4-483B-9FDB-37560F5F3BBF} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\CLSID\{13E7F612-F261-4391-BEA2-39DF4F3FA311} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\CLSID\{1AD68C99-00FB-416d-804B-C38DEE75D55E} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\CLSID\{1F43A58C-EA28-43e6-9EC4-34574A16EBB7} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\CLSID\{204DB1B9-42B1-4B21-A1CE-E1BB11F3F3C2} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\CLSID\{208DD6A3-E12B-4755-9607-2E39EF84CFC5} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\CLSID\{2B74B11A-8E65-4282-B8D7-3EC9AE067791} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\CLSID\{38EC8184-FFE2-4C78-96F4-86607AF934BB} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\CLSID\{392ffaad-3ed8-4d49-8796-8b3ba1d455b4} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\CLSID\{4CFB5280-800B-4367-848F-5A13EBF27F1D} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\CLSID\{56F9679E-7826-4C84-81F3-532071A8BCC5} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\CLSID\{97090E2F-3062-4459-855B-014F0D3CDBB1} (Virus.Ramnit) -> Delete on reboot.
HKCR\CLSID\{A07CCD0C-8148-11D0-87BB-00C04FC33942} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\CLSID\{AA7E2086-CB55-11D2-8094-00104B1F9838} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\CLSID\{AB4DB745-4BB1-41F4-B88E-CCA8E7C89C96} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\CLSID\{B3E0E785-BD78-4366-9560-B7DABE2723BE} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\CLSID\{C9CD1A93-D7B4-11D2-80C5-00104B1F6CEA} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\CLSID\{E7D06080-238B-11D3-80D7-00104B1F6CEA} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\Coloader.VsDefaultLoader (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\Coloader.VsDefaultLoader.1 (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\Interface\{000C0601-0000-0000-C000-000000000046} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\Interface\{00345390-4F77-11D3-A908-00105A088FAC} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\Interface\{067DBAA0-38DF-11D3-BBB7-00105A1F0D68} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\Interface\{0A15E102-0771-11D3-9AA9-00C04F79EFC3} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\Interface\{2B74B11A-8E65-4282-B8D7-3EC9AE067791} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\Interface\{6494206F-23EA-11D3-88B0-00C04F72F303} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\Interface\{79B1DAE1-D1B1-11D2-9930-00C04F68FDAF} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\Interface\{A671B10D-8E60-4C23-8E4F-F90566CC4285} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\LR.LexRefStArObject.1.0.1 (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\LR.LexRefStEsObject.1.0.1 (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\LR.LexRefStFrObject.1.0.1 (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\LR.LexRefStGeObject.1.0.1 (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\MSNLNamespaceMgr.NamespaceMgr (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\MSNLNamespaceMgr.NamespaceMgr.1 (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\MSOLAP (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\MSOLAP.2 (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\Setup.ScriptDriverWrapper (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\Setup.ScriptDriverWrapper.1 (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\Setup.ScriptEngine (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\Setup.ScriptEngine.1 (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\Setup.User (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\Setup.User.1 (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\TypeLib\{0591D055-508F-4EFA-9101-D7D9161E7327} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\TypeLib\{0CC988EC-94B7-409B-9DEE-DB9FCA805EF3} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\TypeLib\{27D2CF3C-D5B0-11D2-8094-00104B1F9838} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\TypeLib\{38E6F584-0767-11D3-9AA9-00C04F79EFC3} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\TypeLib\{45EABAB4-7A6C-4E6E-86DE-D5417980F112} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\TypeLib\{61C11DE8-59CF-4F37-B3DC-CCF169DFCDC8} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\TypeLib\{682C25C5-D7D9-11D2-80C5-00104B1F6CEA} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\TypeLib\{6C45A84C-D30E-4E81-9120-450CEC2B9C7C} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\TypeLib\{79B1DAD0-D1B1-11D2-9930-00C04F68FDAF} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\TypeLib\{A137EF16-7BAA-4D2D-8BFD-7FCE6D5A1D57} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\TypeLib\{A764E894-518D-11D2-9A89-00C04F79EFC3} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\TypeLib\{ACC00AA1-73BA-4E89-A650-345A7E254A60} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\TypeLib\{C04E4E5E-89E6-43C0-92BD-D3F2C7FBA5C4} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\TypeLib\{C89361FC-B7A8-405F-8329-DCAB7592E579} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\TypeLib\{D48421F0-51B8-11D2-8E57-00104BCC7269} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\TypeLib\{DED1EA29-3F89-11D3-BBB9-00105A1F0D68} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\TypeLib\{E54893C3-B7F7-4F54-960D-002C05CAB46E} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\TypeLib\{E8B06F53-6D01-11D2-AA7D-00C04F990343} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\main.Deskbar (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\main.Deskbar.1 (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\otkloadr.WRLoader (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\otkloadr.WRLoader.1 (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\wdsShell.WDSCalendar (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\wdsShell.WDSCalendar.1 (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\wdsView.ResultsViewer (Virus.Ramnit) -> Quarantined and deleted successfully.
HKCR\wdsView.ResultsViewer.1 (Virus.Ramnit) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SETUP.EXE (Virus.Ramnit) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Desktop\NameSpace\{13E7F612-F261-4391-BEA2-39DF4F3FA311} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Desktop\NameSpace\{1F43A58C-EA28-43E6-9EC4-34574A16EBB7} (Virus.Ramnit) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Windows Media Format Runtime (Virus.Ramnit) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{581CE7EA-A30D-0000-1211-088635773309} (Virus.Ramnit) -> Quarantined and deleted successfully.
 
Registry Values Detected: 8
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Adobe Reader Speed Launcher (Trojan.Agent) -> Data: C:\WINDOWS\System32\service158.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks|{56F9679E-7826-4C84-81F3-532071A8BCC5} (Virus.Ramnit) -> Data:  -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Adobe Reader Speed Launcher (Trojan.Passwords) -> Data: C:\WINDOWS\System32\service158.exe -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\PROGRAM FILES\FICHIERS COMMUNS\INSTALLSHIELD\ENGINE\6\INTEL 32\CTOR.DLL (Virus.Ramnit) -> Data: 1 -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\PROGRAM FILES\FICHIERS COMMUNS\INSTALLSHIELD\ENGINE\6\INTEL 32\IUSER.DLL (Virus.Ramnit) -> Data: 1 -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\PROGRAM FILES\FICHIERS COMMUNS\INSTALLSHIELD\ISCRIPT\ISCRIPT.DLL (Virus.Ramnit) -> Data: 1 -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved|{13E7F612-F261-4391-BEA2-39DF4F3FA311} (Virus.Ramnit) -> Data: Windows Desktop Search -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved|{97090E2F-3062-4459-855B-014F0D3CDBB1} (Virus.Ramnit) -> Data: Windows Search Deskbar -> Quarantined and deleted successfully.
 
Registry Data Items Detected: 0
(No malicious items detected)
 
Folders Detected: 0
(No malicious items detected)
 
Files Detected: 129
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrateur\Application Data\okitspace\protect\utilsDll.dll.vir (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SoftwareUpdater\KeyGen.dll.vir (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\AUDIO\ADMINCHK.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\AUDIO\AEENABLE.EXE (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\AUDIO\MIGRATE\MIGRATE.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\AUDIO\REMADI.EXE (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\AUDIO\SMAXWDM\W2K_XP\INSTALL.EXE (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\AUDIO\SMAXWDM\W2K_XP\REMOVE.EXE (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\AUDIO\SM_MICRO\SYS\MICTAB.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\AUDIO\SM_MICRO\WIZARDS\SMWIZARD.EXE (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\AUDIO\SM_PANEL\SYS\SMAGENT.EXE (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\AUDIO\SM_PANEL\SYS\SMAGENTI.EXE (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\AUDIO\SM_PANEL\SYS\SMAGENTX.EXE (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\AUDIO\SM_PANEL\SYS\SMAX4.EXE (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\AUDIO\SM_PANEL\SYS\SMMEDIA.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\AUDIO\SM_PANEL\SYS\WDMIOCTL.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\AUDIO\SM_PNP\SYS\SMAX4PNP.EXE (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\AUDIO\SM_POWER\SYS\PWRMAN.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\AUDIO\SYS\CLEANUP.EXE (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\AUDIO\SYS\DSNDUP.EXE (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\WLANCX2A\Apps\iProInst.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\WLANCX2A\Drivers\SetupWLD.EXE (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\WLANCX2A\Drivers\W29NCPA.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\WLANCX2A\KillAC.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\DRIVERS\WIN\WLANCX2A\Setup.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage\jwbpdoet.exe (Spyware.Zbot) -> Delete on reboot.
C:\FRST\Hives\ERDNT.EXE (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Adobe\Reader 9.0\Reader\ACE.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Adobe\Reader 9.0\Reader\AXE8SharedExpat.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Adobe\Reader 9.0\Reader\AXSLE.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Adobe\Reader 9.0\Reader\Acrofx32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Adobe\Reader 9.0\Reader\AdobeXMP.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Adobe\Reader 9.0\Reader\BIB.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Adobe\Reader 9.0\Reader\BIBUtils.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Adobe\Reader 9.0\Reader\CoolType.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Adobe\Reader 9.0\Reader\JP2KLib.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Adobe\Reader 9.0\Reader\Onix32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Adobe\Reader 9.0\Reader\ahclient.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Adobe\Reader 9.0\Reader\icucnv36.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Adobe\Reader 9.0\Reader\pe.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Adobe\Reader 9.0\Reader\sqlite.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\InstallShield\Engine\6\Intel 32\ctor.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\InstallShield\Engine\6\Intel 32\iuser.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\InstallShield\IScript\iscript.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\VS Runtime\ATL70.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\VS Runtime\CMDDEF.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\VS Runtime\CSSPKG.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\VS Runtime\Compsvcspkg.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\VS Runtime\HTMDLGS.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\VS Runtime\HTMED.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\VS Runtime\MSENV.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\VS Runtime\MSVCP70.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\VS Runtime\MSVCR70.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\VS Runtime\MSVCR71.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\VS Runtime\TRIDSN.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\VS Runtime\VSBROWSE.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\VS Runtime\VisualStudioTeamCore.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\PROOF\1025\MSGRAR32.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\PROOF\1033\MSGR3GE.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\PROOF\MSTH3AR.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\PROOF\MSTHES3.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\TRANSLAT\ESEN\MSB1ESEN.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\TRANSLAT\FREN\MSB1FREN.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\TRANSLAT\GEEN\MSB1GEEN.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\TRANSLAT\MSB1STAR.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\TRANSLAT\WTSP61MS.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\coloader.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\coloader.tlb (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Fichiers communs\System\Ole DB\MSOLAP80.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Foxit Software\Foxit Reader\FOXIT READERmgr.exe (Spyware.Zbot) -> Quarantined and deleted successfully.
C:\Program Files\Foxit Software\Foxit Reader\plugins\Creator\FXC_ProxyProcess.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Foxit Software\Foxit Reader\plugins\jrsys\x86\jrsysCryptoDll.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Foxit Software\Foxit Reader\plugins\jrsys\x86\jrsysMSCryptoDll.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\InstallShield Installation Information\{581CE7EA-A30D-0000-1211-088635773309}\Setup.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Microsoft Office\Office12\ADDINS\MSVCR71.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Microsoft Office\Office12\ADDINS\OTKLOADR.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Microsoft Office\Office12\EXCHCSP.DLL (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Microsoft Office\Office12\OUTLOOKmgr.exe (Spyware.Zbot) -> Quarantined and deleted successfully.
C:\Program Files\PDF Architect\FdfTk.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\PDF Architect\GdiPlus.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\PDF Architect\HelperServicemgr.exe (Spyware.Zbot) -> Quarantined and deleted successfully.
C:\Program Files\PDF Architect\libcurl.dll (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\PDF Architect\libeay32.dll (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\PDF Architect\ssleay32.dll (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\PDFCreator\GS9.07\gs9.07\Bin\gsdll32.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\SUPERAntiSpyware\msvcr71.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\WinRAR\Formats\7zxa.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Windows Desktop Search\MSNLDl.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Windows Desktop Search\MSNLDlPs.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\Windows Desktop Search\WdsMktTools.dll (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\Windows Desktop Search\WindowsSearch.exe (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\Windows Desktop Search\dbsetup.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Windows Desktop Search\deskbar.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Windows Desktop Search\mapine.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Windows Desktop Search\msnlExt.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Windows Desktop Search\msnlRed.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Windows Desktop Search\wdsShell.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Windows Desktop Search\wdsView.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Windows Desktop Search\wordwheel.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Windows Media Player\msoobci.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Windows Media Player\wmlaunch.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Windows Media Player\wmpenc.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\Windows Media Player\wmsetsdk.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\W32BRG55.EXE (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\W32BRG55.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\W32N55.DLL (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ZDWlan.dll (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ZDWlan.exe (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ZyDelReg.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\dot1x_dll.dll (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\libeay32.dll (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\msvcr71.dll (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\openssl.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ssleay32.dll (Virus.Ramnit) -> Delete on reboot.
C:\Program Files\_My Programs\TFC\TFC.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\Program Files\bqjaslxd\jwbpdoet.exe (Spyware.Zbot) -> Delete on reboot.
C:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP24\A0033869.exe (Spyware.Zbot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP24\A0034798.exe (Spyware.Zbot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP25\A0035242.exe (Spyware.Zbot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP25\A0035838.exe (Spyware.Zbot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP25\A0035881.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP25\A0035884.dll (Virus.Ramnit) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP25\A0035910.exe (Spyware.Zbot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP25\A0035911.exe (Spyware.Zbot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP25\A0036257.exe (Spyware.Zbot) -> Quarantined and deleted successfully.
C:\WINDOWS\Explorermgr.exe (Spyware.Zbot) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Démarrage\jwbpdoet.exe (Spyware.Zbot) -> Quarantined and deleted successfully.
F:\AppInst.exe (Virus.Ramnit) -> Quarantined and deleted successfully.
 
(end)


#11 Aaflac

Aaflac

    Doin' Dis 'n Dat...


  • Malware Response Team
  • 2,307 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Location:USA
  • Local time:08:10 AM

Posted 01 December 2013 - 12:16 AM

Hmmmm...not good news!

Getting rid of Ramnit is not an easy task.
It is a dangerous virus that attacks and infects exe, dll and html files. Once a computer is infected with Ramnit, there may be no way to remove it, and, reformatting
the system disk, and reinstalling Windows, and your applications, is the only option.

From the MBAM report, you can see there are quite a number of files infected. The longer Ramnit.A remains on a computer, the more files it infects and corrupts.

Ramnit is commonly spread via a removable drive infection where it copies Worm:Win32/Ramnit.A with a random file name.
The infection is often contracted by visiting crack and keygen sites. These type of sites are a major source of system infections!!

The MBAM report is showing the following:
C\Program Files\SoftwareUpdater\KeyGen.dll
Looks as if KeyGen.dll contains functions needed to provide you with crack (key generator functionality) for a target application.

Please do the following:

Download CKScanner:
http://downloads.malwareremoval.com/CKScanner.exe
Important: - Save it to the Desktop.
Right-click CKScanner.exe and select : Run as administrator

Click: Search For Files
When the running circle disappears, click: Save List To File
A message box verifies the file saved.

>> Double-click the CKFiles.txt icon on your Desktop, and copy/paste the contents in your next reply.

Old duck...


#12 Nezha2013

Nezha2013
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Local time:01:10 PM

Posted 01 December 2013 - 03:38 AM

Good morning, for info as far as my files on the external hard drive are safe and clean to be viewed from another PC, I have no issue to reformat this one. If this is the necessary solution, please just assist me in doing it and I will do.

 

I had troubles runing CKScanner (2 errors when clicking on "run as adminisartor" and "Save list to file")

1-Failed to create key mainform

2-Cannot creat file ckfiles.txt

 

N.B : CKScanner run very quickly and it had 3 lines on its main screen :

CKScanner 2.4 - Additional security risks - These are not necessarily bad

Scanner sequence3.RP.11.IHNAAZ

----EOF-----

 

one thing maybe worth mentioning : you said it is important I save it to the desktop. when I go to the link you gave me, it downloads automatically the CKScanner.exe file. So I went to "downloads" folder and I copied it to a C:/ folder and then run it from there. is this the way to do it or did I miss anything?

 

by the way even MBAM, adwcleaner and tfc did the same thing.

MBAM only gave me this error before running the scan : an error has occured. Please report this issue to our support team (include the content of all error message (s) and code (s) in your submission). PROGRAM_ERRORUPDATING (0,0,host not found)

 
Thank you.


#13 Nezha2013

Nezha2013
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Local time:01:10 PM

Posted 01 December 2013 - 03:53 AM

Hi again, I tryed a second time with CKScanner and it worked (it was an issue with Administrator password) now it worked fine without errors but still the outcome is minimal :

 

CKScanner 2.4 - Additional Security Risks - These are not necessarily bad
scanner sequence 3.RP.11.TNAAI0
 ----- EOF ----- 
 
Kr, Nezha


#14 Aaflac

Aaflac

    Doin' Dis 'n Dat...


  • Malware Response Team
  • 2,307 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Location:USA
  • Local time:08:10 AM

Posted 01 December 2013 - 09:55 PM

Still curious about this entry:
C\Program Files\SoftwareUpdater\KeyGen.dll
Looks as if it contains functions needed to provide you with crack (key generator functionality) for a target application.

However CKScanner is not showing any cracked software.
Have you downloaded cracked software recently, or in the past?
If you have, you can thank it for the horrendous infection on your system.

Perhaps, if the virus attack is in its early stages, a program such as DrWeb CureIt can clean out the virus. However, from the MBAM report, there are quite a number of files infected. The longer Ramnit.A remains on a computer, the more files it infects and corrupts, so the degree of damage can vary.


If you wish to give DrWeb CureIt a try, do the following:

Download DrWeb CureIt > http://www.freedrweb.com/cureit/?lng=en
Save to the Desktop

Restart in Safe Mode:
As the computer is boots, tap the F8 key
When the Windows Advanced Options Menu appears, use arrow keys to select: Safe Mode
Press the Enter key.

Right-click on drweb-cureit.exe and select: Run as Administrator
Next, click on: Analyze

Click OK when prompted for rapid analysis.
If it finds an infection, click: Yes
(Note: If a window opens with options to "Order" or "50% off discount", simply click on: Close)
When the fast scan is completed, click on Options > Change Setup > Scan
Uncheck: Heuristic analysis
Click: OK

Return to the main window and select: Full Analysis
Next, select all drives
Click the button with a green arrow (on the right) for the scan to begin.
Click Yes to any proposals prompting to Disinfect or Cure
Select the option to Quarantine any infected files that cannot Disinect/Cure.

When the scan is complete, go to File > Save Report to save the report to your Desktop.
It is called: DrWeb.csv
Close Dr. Web CureIt
Reboot your computer normally.

>> Please post the DrWeb.csv report in your reply.

Be aware that, although DrWeb can cure Ramnit files, there are times that, when disinfection is attempted, files may become corrupted, and the system may become unstable or irreparable. This is not a task without risk.

Old duck...


#15 Nezha2013

Nezha2013
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Local time:01:10 PM

Posted 02 December 2013 - 05:25 PM

Good evening,

 

cracked sofyware? I really don't know as it is my friend who formatted my laptop recently. Maybe he did.

When downloading DrWeb, the executable file on my desktop was named "bw7c0rm5.exe" not "drweb-cureit.exe" ; a bit wiered, isn't it?

 

when trying to execute it in SAFE MODE it didn't work (error mssage saying that this service cannot run in safe mode)

 

So I run another MBMA scan on C:, D:, and F: the report shows much less infected files. 

 

how to proceed from here please?

Don't I need yet to install an antivirus??

 

########################MBAM report
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
 
Database version: v2013.12.02.07
 
Windows XP Service Pack 2 x86 NTFS
Internet Explorer 6.0.2900.2180
Administrateur :: POSTE [administrator]
 
02/12/2013 21:13:48
mbam-log-2013-12-02 (21-13-48).txt
 
Scan type: Full scan (C:\|D:\|F:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 257819
Time elapsed: 48 minute(s), 25 second(s)
 
Memory Processes Detected: 0
(No malicious items detected)
 
Memory Modules Detected: 0
(No malicious items detected)
 
Registry Keys Detected: 0
(No malicious items detected)
 
Registry Values Detected: 0
(No malicious items detected)
 
Registry Data Items Detected: 0
(No malicious items detected)
 
Folders Detected: 0
(No malicious items detected)
 
Files Detected: 10
C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage\jwbpdoet.exe (Spyware.Zbot) -> Delete on reboot.
C:\Program Files\bqjaslxd\jwbpdoet.exe (Spyware.Zbot) -> Delete on reboot.
C:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP26\A0042083.exe (Spyware.Zbot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP26\A0042084.exe (Spyware.Zbot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP26\A0042088.exe (Spyware.Zbot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP26\A0042089.exe (Spyware.Zbot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP26\A0042229.exe (Spyware.Zbot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{6527260D-441D-4637-8632-F08918FE7724}\RP26\A0042230.exe (Spyware.Zbot) -> Quarantined and deleted successfully.
C:\WINDOWS\Explorermgr.exe (Spyware.Zbot) -> Quarantined and deleted successfully.
F:\Program files\Calendrier annuel\SoftonicDownloader_pour_modele-de-calendrier-excel-annuel.exe (PUP.Optional.Softonic.A) -> Quarantined and deleted successfully.
 
(end)





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users