S'abonner :  Newsletters    Magazines
Avis sur les produits Avis sur les logiciels Avis sur les jeux Actualités A propos de 01net
203 utilisateurs connectés

Internet

onex le 21 février 2009 à 09h30
Bonjour,
1/ Internet très long à charger et toujours 2 fenêtres s'ouvre dans le coin
à gauche dont une est vide.
2/ Outlook demande de l'ouvrir en mode sans eche car il a mal été fermé.
3/ Quand je cherche une page internet une autre page publicitaire
(Casino ,poker etc.)s'ouvre avant celle demandée que faut-il faire
4/ j'ai fait une restauration du PC à une date antérieur mais rien y fait
Merci pour vos réponses
-------
onex
bibou0007 le 21 février 2009 à 10h22

Bonjour,
Si tu es sous vista desactive l UAC ‘’ pour xp passé a la suite ‘’ tuto desactivation de l UAC
Télécharge Lop S&D.exe sur ton Bureau. tuto lop S&D
http://eric.71.mespages.googlepages.com/LopSD.exe
Double-clique dessus pour lancer l'installation
Puis double-clique sur le raccourci Lop S&D présent sur ton Bureau
Séléctionne la langue souhaitée , puis choisis l'option 1 (Recherche)
Patiente jusqu'à la fin du scan
Poste le rapport généré (C:\lopR.txt)
                       
(Si le Bureau ne réapparait pas presse Ctrl + Alt + Suppr , Onglet Fichier , Nouvelle tâche , tape explorer.exe et valide)
-----------------------------------------------------------------------------------------------------------------------------------------------------
-------
http://bibou0007.com/
-------
Il est plus simple d'infecter votre pc que de le désinfecter,pensez y.Ne pas cliquer ici!
onex le 22 février 2009 à 00h35
Bonjour
Je suis sous window XP
Voici le rapport ci-joint

--------------------\\ Lop S&D 4.2.5-0 XP/Vista

Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) 4 CPU 2.93GHz )
BIOS : BIOS Date: 01/23/06 20:09:06 Ver: 08.00.10
USER : HP_Propriétaire ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1296 [VPS 090220-0] 4.8.1296 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:181 Go (Free:10 Go)
D:\ (Local Disk) - FAT32 - Total:4 Go (Free:0 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 22/02/2009| 0:29 )

--------------------\\ Listing des dossiers dans APPLIC~1

[01/01/2005|11:20] C:\DOCUME~1\ADMINI~1\APPLIC~1\Apple Computer
[01/01/2005|09:45] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[01/01/2005|11:12] C:\DOCUME~1\ADMINI~1\APPLIC~1\Intervideo
[01/01/2005|16:16] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[28/01/2008|11:44] C:\DOCUME~1\ADMINI~1\APPLIC~1\Mozilla
[19/02/2008|15:22] C:\DOCUME~1\ADMINI~1\APPLIC~1\Real
[01/01/2005|14:41] C:\DOCUME~1\ADMINI~1\APPLIC~1\SampleView
[01/01/2005|10:09] C:\DOCUME~1\ADMINI~1\APPLIC~1\Sun
[01/01/2005|13:07] C:\DOCUME~1\ADMINI~1\APPLIC~1\Symantec

[26/09/2008|19:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ABBYY
[01/02/2006|04:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ACD Systems
[09/09/2008|16:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[27/10/2007|16:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[10/11/2008|16:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Altova
[19/11/2007|21:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[05/01/2008|06:53] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[02/07/2007|05:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\avg7
[18/08/2008|16:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[14/12/2008|10:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Bluetooth
[11/08/2007|11:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BufferZone
[10/11/2008|16:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\C-CHANNEL
[20/08/2008|08:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[29/01/2007|18:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Elaborate Bytes
[14/10/2008|23:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\eXPert PDF
[04/09/2008|15:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\eXPert PDF 4
[14/10/2008|23:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\eXPert PDF Jobs
[15/01/2007|22:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[21/02/2009|19:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[02/04/2007|17:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Hewlett-Packard
[20/10/2005|17:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
[10/02/2009|15:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Installations
[01/01/2005|11:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[01/01/2005|11:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InterVideo
[08/10/2008|18:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab Setup Files
[03/10/2008|12:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\LightScribe
[08/08/2008|10:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\LogiShrd
[08/08/2008|10:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Logitech
[01/09/2008|12:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[04/12/2008|09:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\McAfee
[25/01/2009|12:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[18/02/2009|16:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[01/01/2005|16:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Motive
[09/01/2006|20:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MotiveSysIDs
[09/11/2008|12:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NCH Software
[15/10/2008|20:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NCH Swift Sound
[06/10/2008|17:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero
[28/01/2008|06:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nokia
[04/10/2008|17:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NortonInstaller
[25/11/2008|14:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NOS
[02/11/2006|11:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Office Genuine Advantage
[21/05/2007|09:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PC Suite
[01/12/2005|14:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Pinnacle
[01/12/2005|13:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Pinnacle Studio
[11/08/2008|07:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PixelPlanet
[01/01/2005|11:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[11/08/2008|09:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[01/12/2005|17:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SmartSound Software Inc
[14/11/2008|17:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Software4u
[16/12/2008|14:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SolidDocuments
[17/01/2008|07:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic
[12/06/2008|08:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sony Corporation
[26/12/2008|09:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SweetIM
[18/02/2009|08:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[01/07/2007|22:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TomTom
[12/02/2007|16:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TuneUp Software
[29/10/2005|18:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[21/02/2007|17:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[08/04/2006|06:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WinSoftware
[16/08/2008|17:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WinZip
[25/01/2009|12:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[18/11/2008|20:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\wmp
[09/01/2007|16:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion

[01/01/2005|11:20] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Apple Computer
[01/01/2005|09:45] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[01/01/2005|11:12] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Intervideo
[01/01/2005|16:16] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[01/01/2005|14:41] C:\DOCUME~1\DEFAUL~1\APPLIC~1\SampleView
[01/01/2005|10:09] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Sun
[01/01/2005|13:07] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec


[11/08/2008|15:51] C:\DOCUME~1\HP_PRO~1\APPLIC~1\ABBYY
[01/10/2008|08:53] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Adobe
[19/06/2007|06:07] C:\DOCUME~1\HP_PRO~1\APPLIC~1\AdobeUM
[01/07/2007|11:46] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Ahead
[26/03/2008|16:56] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Apple Computer
[05/05/2008|21:49] C:\DOCUME~1\HP_PRO~1\APPLIC~1\ArcSoft
[01/07/2007|20:50] C:\DOCUME~1\HP_PRO~1\APPLIC~1\AVG7
[09/09/2008|16:36] C:\DOCUME~1\HP_PRO~1\APPLIC~1\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[28/01/2008|06:29] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Datalayer
[06/01/2009|09:54] C:\DOCUME~1\HP_PRO~1\APPLIC~1\deskUNPDF
[05/09/2007|05:52] C:\DOCUME~1\HP_PRO~1\APPLIC~1\DialMessenger
[04/11/2007|10:30] C:\DOCUME~1\HP_PRO~1\APPLIC~1\DivX
[16/08/2008|16:40] C:\DOCUME~1\HP_PRO~1\APPLIC~1\eMule
[27/11/2008|10:15] C:\DOCUME~1\HP_PRO~1\APPLIC~1\EoRezo
[15/10/2008|17:28] C:\DOCUME~1\HP_PRO~1\APPLIC~1\eXPert PDF Editor
[05/01/2009|20:11] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Gaijin Ent
[18/11/2008|11:59] C:\DOCUME~1\HP_PRO~1\APPLIC~1\GARMIN
[04/02/2009|18:01] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Google
[06/03/2008|18:27] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Help
[17/01/2008|07:45] C:\DOCUME~1\HP_PRO~1\APPLIC~1\HP
[01/01/2005|09:45] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Identities
[09/09/2008|15:48] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Image Zone Express
[27/10/2007|08:59] C:\DOCUME~1\HP_PRO~1\APPLIC~1\InfraRecorder
[01/07/2007|22:37] C:\DOCUME~1\HP_PRO~1\APPLIC~1\InstallShield
[01/04/2007|23:49] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Intervideo
[26/09/2008|11:56] C:\DOCUME~1\HP_PRO~1\APPLIC~1\ItsLabel
[06/12/2007|07:52] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Leadertech
[08/08/2008|10:05] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Logitech
[01/04/2007|02:31] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Macromedia
[11/07/2008|09:13] C:\DOCUME~1\HP_PRO~1\APPLIC~1\MAGIX
[01/09/2008|12:31] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Malwarebytes
[31/01/2009|21:32] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Microsoft
[01/04/2007|03:38] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Motive
[30/07/2008|06:50] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Mozilla
[06/12/2007|07:21] C:\DOCUME~1\HP_PRO~1\APPLIC~1\MSNInstaller
[15/10/2008|19:17] C:\DOCUME~1\HP_PRO~1\APPLIC~1\NCH Swift Sound
[13/11/2008|08:05] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Nero
[11/12/2008|10:19] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Nokia
[09/02/2009|08:42] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Nvu
[02/12/2008|12:54] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Panasonic
[12/01/2008|12:05] C:\DOCUME~1\HP_PRO~1\APPLIC~1\PC Suite
[18/08/2008|16:42] C:\DOCUME~1\HP_PRO~1\APPLIC~1\PDFCreator
[11/08/2008|07:57] C:\DOCUME~1\HP_PRO~1\APPLIC~1\PixelPlanet
[06/01/2009|06:50] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Pogo Games
[19/02/2008|10:06] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Real
[01/01/2005|14:41] C:\DOCUME~1\HP_PRO~1\APPLIC~1\SampleView
[04/09/2008|14:28] C:\DOCUME~1\HP_PRO~1\APPLIC~1\ScanSoft
[11/11/2007|17:23] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Shareaza
[27/10/2007|10:14] C:\DOCUME~1\HP_PRO~1\APPLIC~1\SlySoft
[09/12/2008|08:07] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Softplicity
[14/11/2008|18:02] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Software4u
[06/01/2009|10:01] C:\DOCUME~1\HP_PRO~1\APPLIC~1\SolidDocuments
[06/12/2007|07:54] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Sonic
[24/05/2008|11:12] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Sony Corporation
[01/01/2005|10:09] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Sun
[01/04/2007|03:05] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Talkback
[16/12/2008|15:23] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Thinstall
[01/04/2007|02:56] C:\DOCUME~1\HP_PRO~1\APPLIC~1\TuneUp Software
[01/04/2007|12:23] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Uniblue
[20/02/2009|21:13] C:\DOCUME~1\HP_PRO~1\APPLIC~1\uTorrent
[06/08/2008|05:52] C:\DOCUME~1\HP_PRO~1\APPLIC~1\vlc
[10/03/2008|20:48] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Wallpaper
[01/11/2007|14:35] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Weflirt
[30/10/2008|11:58] C:\DOCUME~1\HP_PRO~1\APPLIC~1\WinBatch
[20/11/2007|16:21] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Windows Desktop Search
[25/01/2009|12:52] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Windows Live Writer
[15/09/2008|14:08] C:\DOCUME~1\HP_PRO~1\APPLIC~1\WinRAR
[11/08/2008|09:20] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Zeon
[23/10/2007|14:03] C:\DOCUME~1\HP_PRO~1\APPLIC~1\???????sAppData

[07/04/2008|20:59] C:\DOCUME~1\INVIT~1\APPLIC~1\Adobe
[01/01/2005|11:20] C:\DOCUME~1\INVIT~1\APPLIC~1\Apple Computer
[17/12/2008|09:40] C:\DOCUME~1\INVIT~1\APPLIC~1\EoRezo
[21/04/2008|10:23] C:\DOCUME~1\INVIT~1\APPLIC~1\Google
[30/10/2008|12:48] C:\DOCUME~1\INVIT~1\APPLIC~1\HP
[01/01/2005|09:45] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[01/01/2005|11:12] C:\DOCUME~1\INVIT~1\APPLIC~1\Intervideo
[27/09/2008|18:14] C:\DOCUME~1\INVIT~1\APPLIC~1\ItsLabel
[07/04/2008|16:44] C:\DOCUME~1\INVIT~1\APPLIC~1\Macromedia
[30/10/2008|13:19] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[29/08/2008|12:26] C:\DOCUME~1\INVIT~1\APPLIC~1\Mozilla
[16/10/2008|16:46] C:\DOCUME~1\INVIT~1\APPLIC~1\NCH Swift Sound
[13/10/2008|16:15] C:\DOCUME~1\INVIT~1\APPLIC~1\Nokia
[09/06/2008|15:24] C:\DOCUME~1\INVIT~1\APPLIC~1\PC Suite
[07/04/2008|16:30] C:\DOCUME~1\INVIT~1\APPLIC~1\Real
[01/01/2005|14:41] C:\DOCUME~1\INVIT~1\APPLIC~1\SampleView
[12/10/2008|16:46] C:\DOCUME~1\INVIT~1\APPLIC~1\Samsung
[22/09/2008|05:42] C:\DOCUME~1\INVIT~1\APPLIC~1\Sony Corporation
[01/01/2005|10:09] C:\DOCUME~1\INVIT~1\APPLIC~1\Sun
[01/01/2005|13:07] C:\DOCUME~1\INVIT~1\APPLIC~1\Symantec
[16/10/2008|17:58] C:\DOCUME~1\INVIT~1\APPLIC~1\Zeon

[11/10/2006|22:16] C:\DOCUME~1\LOCALS~1\APPLIC~1\Adobe
[02/04/2007|18:50] C:\DOCUME~1\LOCALS~1\APPLIC~1\AVG7
[11/10/2006|21:37] C:\DOCUME~1\LOCALS~1\APPLIC~1\Google
[28/01/2008|14:03] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft


[25/01/2009|15:25] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[19/08/2005|19:11] C:\DOCUME~1\NETWOR~1\APPLIC~1\Symantec

--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks

[21/02/2009 14:49][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachine.job
[21/02/2009 19:12][--a------] C:\WINDOWS\tasks\Google Software Updater.job
[22/02/2009 00:08][--a------] C:\WINDOWS\tasks\Vérifier les mises à jour de Windows Live Toolbar.job
[20/02/2009 15:00][--a------] C:\WINDOWS\tasks\Norton Security Scan.job
[20/02/2009 17:15][--a------] C:\WINDOWS\tasks\Maintenance en 1 clic.job
[05/08/2004 11:00][-rah-----] C:\WINDOWS\tasks\desktop.ini
[21/02/2009 14:49][--ah-----] C:\WINDOWS\tasks\SA.DAT

--------------------\\ Listing des dossiers dans C:\Program Files

[27/11/2008|14:43] C:\Program Files\ABBYY FineReader 9.0
[26/09/2008|20:53] C:\Program Files\ABBYY PDF Transformer 2.0
[04/10/2008|11:23] C:\Program Files\Adobe
[09/11/2008|22:08] C:\Program Files\AdorageI-SAL
[12/02/2007|13:00] C:\Program Files\Ahead
[02/07/2007|04:42] C:\Program Files\Alwil Software
[28/09/2008|19:15] C:\Program Files\Apple Software Update
[31/01/2006|06:55] C:\Program Files\Axialis
[06/10/2008|17:42] C:\Program Files\BitDefender
[01/08/2007|15:20] C:\Program Files\BitTorrent Fastest Tool
[28/07/2008|12:28] C:\Program Files\BlueSquad
[12/02/2006|22:12] C:\Program Files\Bluewin
[25/09/2008|16:55] C:\Program Files\Bonjour
[10/11/2008|16:20] C:\Program Files\C-CHANNEL
[18/01/2008|12:54] C:\Program Files\CCleaner
[08/04/2006|05:55] C:\Program Files\Common Files
[01/01/2005|09:42] C:\Program Files\ComPlus Applications
[18/02/2009|08:36] C:\Program Files\Convar
[25/09/2008|16:56] C:\Program Files\CyberMUT
[09/11/2008|22:08] C:\Program Files\DAP
[09/11/2008|22:08] C:\Program Files\DelMp3Kok
[01/11/2006|02:53] C:\Program Files\DIFX
[24/07/2005|11:22] C:\Program Files\directx
[21/11/2008|15:43] C:\Program Files\DivX
[12/09/2008|09:37] C:\Program Files\Docudesk
[09/11/2008|22:08] C:\Program Files\Easy Internet signup
[04/04/2007|08:14] C:\Program Files\eChanblard
[29/01/2007|22:20] C:\Program Files\Elaborate Bytes
[17/12/2008|09:40] C:\Program Files\eMule
[31/08/2008|11:29] C:\Program Files\ESET
[06/01/2009|13:42] C:\Program Files\Fichiers communs
[09/05/2007|21:17] C:\Program Files\Foreignword
[02/01/2009|08:22] C:\Program Files\Foxit Software
[21/06/2007|16:02] C:\Program Files\Free
[18/08/2008|16:42] C:\Program Files\FreeBot
[19/04/2006|06:01] C:\Program Files\fsupport
[09/01/2007|17:57] C:\Program Files\GalleryPlayer
[12/07/2005|16:38] C:\Program Files\Generic
[10/12/2005|12:22] C:\Program Files\Gestions CD
[24/07/2005|10:05] C:\Program Files\GEtax2002
[13/06/2006|10:48] C:\Program Files\GeTax2003
[24/07/2005|09:54] C:\Program Files\GeTax2004
[04/11/2006|21:20] C:\Program Files\GeTax2005
[28/09/2008|19:15] C:\Program Files\GeTax2006
[11/02/2009|11:43] C:\Program Files\Google
[02/04/2007|18:50] C:\Program Files\Grisoft
[01/01/2005|16:16] C:\Program Files\Help and Support Additions
[01/01/2005|10:43] C:\Program Files\Hewlett-Packard
[13/09/2008|14:55] C:\Program Files\HP
[12/11/2006|19:31] C:\Program Files\ICOO Loader
[16/12/2007|15:52] C:\Program Files\IncrediMail
[27/10/2007|09:00] C:\Program Files\InfraRecorder
[18/02/2009|08:36] C:\Program Files\InstallShield Installation Information
[23/01/2009|13:46] C:\Program Files\Internet Explorer
[01/01/2005|11:11] C:\Program Files\InterVideo
[16/12/2008|14:18] C:\Program Files\Investintech.com Inc
[19/08/2008|15:52] C:\Program Files\iPod
[16/10/2008|14:17] C:\Program Files\IrfanView
[19/08/2008|15:53] C:\Program Files\iTunes
[14/12/2008|11:37] C:\Program Files\IVT Corporation
[02/01/2009|08:30] C:\Program Files\Java
[04/10/2008|06:30] C:\Program Files\jZip
[04/12/2008|16:01] C:\Program Files\Kaspersky Lab
[08/08/2008|10:00] C:\Program Files\Logitech
[07/03/2007|07:50] C:\Program Files\Macrovision Corp
[09/10/2006|10:51] C:\Program Files\Mailinfo
[21/11/2008|15:43] C:\Program Files\Malwarebytes' Anti-Malware
[04/12/2008|09:44] C:\Program Files\McAfee
[09/11/2008|22:08] C:\Program Files\Messenger
[14/11/2008|17:54] C:\Program Files\Micro Application
[24/01/2009|10:09] C:\Program Files\Microsoft
[10/07/2007|13:48] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[01/01/2005|09:45] C:\Program Files\microsoft frontpage
[22/11/2008|10:46] C:\Program Files\Microsoft Office
[10/01/2009|20:10] C:\Program Files\Microsoft Office Outlook Connector
[21/10/2008|07:33] C:\Program Files\Microsoft Silverlight
[23/12/2007|21:12] C:\Program Files\Microsoft SQL Server Compact Edition
[01/02/2006|05:21] C:\Program Files\Microsoft Visual Studio
[13/11/2008|08:51] C:\Program Files\Microsoft Visual Studio 8
[22/11/2008|10:47] C:\Program Files\Microsoft Works
[01/02/2006|05:20] C:\Program Files\Microsoft.NET
[12/02/2006|22:12] C:\Program Files\Motive
[06/09/2008|22:20] C:\Program Files\Movie Maker
[22/02/2009|00:09] C:\Program Files\Mozilla Firefox
[22/11/2008|10:46] C:\Program Files\MSBuild
[18/08/2008|16:39] C:\Program Files\MSECache
[01/01/2005|09:41] C:\Program Files\MSN Gaming Zone
[14/11/2006|22:27] C:\Program Files\MSXML 4.0
[05/02/2008|14:44] C:\Program Files\MSXML 6.0
[08/02/2009|10:00] C:\Program Files\Navilog1
[10/11/2008|16:16] C:\Program Files\NCH Swift Sound
[13/10/2008|17:05] C:\Program Files\Nero
[06/09/2008|22:17] C:\Program Files\NetMeeting
[05/02/2007|13:56] C:\Program Files\Netopia
[31/12/2008|07:20] C:\Program Files\Nokia
[15/08/2008|14:00] C:\Program Files\Norton Security Scan
[25/11/2008|11:15] C:\Program Files\NOS
[04/08/2006|05:08] C:\Program Files\Notify
[08/01/2008|07:57] C:\Program Files\Nsasoft
[15/10/2008|05:49] C:\Program Files\Nuance
[09/02/2009|08:42] C:\Program Files\Nvu
[06/01/2009|06:48] C:\Program Files\Oberon Media
[01/01/2005|09:42] C:\Program Files\Online Services
[31/01/2007|20:58] C:\Program Files\OnlineUpdate
[05/01/2009|20:09] C:\Program Files\orange
[06/09/2008|22:17] C:\Program Files\Outlook Express
[02/12/2008|12:52] C:\Program Files\Panasonic
[05/09/2008|11:26] C:\Program Files\Panda Security
[10/02/2009|15:06] C:\Program Files\PC Connectivity Solution
[01/04/2007|12:01] C:\Program Files\PC Wizard 2006
[13/11/2008|15:24] C:\Program Files\PC-Doctor for Windows
[31/08/2008|10:28] C:\Program Files\PdfGrabber 4.0
[06/10/2008|12:54] C:\Program Files\Picasa2
[01/10/2008|04:46] C:\Program Files\Pinnacle
[24/07/2005|10:57] C:\Program Files\PIXELA
[01/12/2005|13:50] C:\Program Files\proDAD
[30/01/2007|09:07] C:\Program Files\Program Files
[11/08/2008|12:54] C:\Program Files\psconvert
[05/11/2006|01:44] C:\Program Files\PuzzleDesktop
[31/01/2007|18:50] C:\Program Files\PViever
[11/11/2008|08:57] C:\Program Files\QUAD Utilities
[19/08/2008|15:51] C:\Program Files\QuickTime
[07/05/2007|06:50] C:\Program Files\Real
[23/11/2007|14:35] C:\Program Files\Reference Assemblies
[06/12/2007|08:26] C:\Program Files\Registry Easy
[02/01/2009|07:12] C:\Program Files\Registry Mechanic
[01/02/2006|06:08] C:\Program Files\Rocky Mountain Traders
[01/06/2008|06:55] C:\Program Files\Samsung
[19/11/2007|18:52] C:\Program Files\Secured eMule
[20/11/2007|08:30] C:\Program Files\Services en ligne
[11/08/2008|08:20] C:\Program Files\SimpleOCR
[02/01/2005|00:27] C:\Program Files\SiS VGA Utilities V3.63
[28/10/2007|09:18] C:\Program Files\SlySoft
[01/12/2005|13:06] C:\Program Files\SmartSound Software
[29/01/2007|17:39] C:\Program Files\snd-WinZip.10.Pro
[05/09/2008|21:25] C:\Program Files\Softwin
[16/12/2008|14:56] C:\Program Files\SolidDocuments
[01/01/2005|11:08] C:\Program Files\Sonic
[01/01/2005|11:08] C:\Program Files\Sonic RecordNow!
[24/05/2008|10:48] C:\Program Files\Sony
[09/01/2007|17:40] C:\Program Files\SpeedOptimizer
[26/12/2008|09:07] C:\Program Files\SweetIM
[29/01/2007|22:23] C:\Program Files\Synthesis Bank
[20/11/2006|17:13] C:\Program Files\Téléphone mobile déblocage
[01/07/2007|22:40] C:\Program Files\TomTom HOME
[05/08/2007|08:15] C:\Program Files\torrent_search
[09/12/2008|08:11] C:\Program Files\Total PDF Converter
[05/10/2008|12:36] C:\Program Files\Trend Micro
[30/01/2008|22:15] C:\Program Files\TuneUp Utilities 2007
[04/10/2007|07:20] C:\Program Files\TWIXTEL
[10/07/2005|10:26] C:\Program Files\UBS e-banking
[01/01/2005|09:48] C:\Program Files\Uninstall Information
[15/10/2008|06:12] C:\Program Files\Universal Document Converter
[25/09/2008|05:56] C:\Program Files\uTorrent
[16/10/2008|05:46] C:\Program Files\VeryPDF PDFcamp Printer v2.3
[06/08/2008|05:45] C:\Program Files\VideoLAN
[23/09/2008|16:37] C:\Program Files\VirginMega
[14/10/2008|23:28] C:\Program Files\Visagesoft
[29/01/2007|22:28] C:\Program Files\VSO
[09/12/2006|11:25] C:\Program Files\Winamp
[16/03/2007|08:46] C:\Program Files\Windows Desktop Search
[02/02/2009|16:52] C:\Program Files\Windows Live
[25/01/2009|12:37] C:\Program Files\Windows Live Favorites
[10/01/2009|20:05] C:\Program Files\Windows Live SkyDrive
[25/01/2009|12:37] C:\Program Files\Windows Live Toolbar
[03/07/2007|10:50] C:\Program Files\Windows Media Connect 2
[02/10/2008|13:00] C:\Program Files\Windows Media Player
[06/09/2008|22:17] C:\Program Files\Windows NT
[01/01/2005|09:43] C:\Program Files\WindowsUpdate
[27/09/2008|07:11] C:\Program Files\WinRAR
[18/08/2008|16:43] C:\Program Files\WinZip
[01/01/2005|09:45] C:\Program Files\xerox
[14/11/2006|18:22] C:\Program Files\XviD
[18/01/2008|12:54] C:\Program Files\Yahoo!
[09/01/2007|14:49] C:\Program Files\Zero G Registry

--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs

[27/09/2008|23:06] C:\Program Files\Fichiers communs\ABBYY
[04/10/2008|11:24] C:\Program Files\Fichiers communs\Adobe
[09/09/2008|16:07] C:\Program Files\Fichiers communs\Adobe AIR
[12/02/2007|15:59] C:\Program Files\Fichiers communs\Ahead
[05/01/2008|06:50] C:\Program Files\Fichiers communs\Apple
[31/08/2008|10:28] C:\Program Files\Fichiers communs\BCL Technologies
[06/10/2008|17:42] C:\Program Files\Fichiers communs\BitDefender
[30/10/2008|15:23] C:\Program Files\Fichiers communs\C-CHANNEL
[26/09/2008|22:04] C:\Program Files\Fichiers communs\Cisco Systems
[22/11/2008|10:46] C:\Program Files\Fichiers communs\Designer
[03/01/2006|17:52] C:\Program Files\Fichiers communs\FotoWire
[01/01/2005|10:54] C:\Program Files\Fichiers communs\Hewlett-Packard
[13/09/2008|14:49] C:\Program Files\Fichiers communs\HP
[01/01/2005|11:19] C:\Program Files\Fichiers communs\InstallShield
[01/01/2005|10:09] C:\Program Files\Fichiers communs\Java
[03/10/2008|09:52] C:\Program Files\Fichiers communs\LightScribe
[08/08/2008|10:01] C:\Program Files\Fichiers communs\Logishrd
[03/01/2006|17:51] C:\Program Files\Fichiers communs\Logitech
[30/11/2005|17:40] C:\Program Files\Fichiers communs\MAGIX Shared
[10/01/2009|19:55] C:\Program Files\Fichiers communs\Microsoft Shared
[04/01/2006|23:14] C:\Program Files\Fichiers communs\Motive
[01/01/2005|09:43] C:\Program Files\Fichiers communs\MSSoap
[13/10/2008|17:25] C:\Program Files\Fichiers communs\Nero
[10/02/2009|15:07] C:\Program Files\Fichiers communs\Nokia
[05/01/2009|20:09] C:\Program Files\Fichiers communs\Oberon Media
[01/01/2005|10:38] C:\Program Files\Fichiers communs\ODBC
[10/02/2009|15:07] C:\Program Files\Fichiers communs\PCSuite
[19/02/2008|10:06] C:\Program Files\Fichiers communs\Real
[02/04/2007|00:02] C:\Program Files\Fichiers communs\Services
[25/09/2008|07:19] C:\Program Files\Fichiers communs\Softwin
[13/09/2008|14:51] C:\Program Files\Fichiers communs\Sonic Shared
[01/01/2005|10:38] C:\Program Files\Fichiers communs\SpeechEngines
[01/01/2005|11:09] C:\Program Files\Fichiers communs\SureThing Shared
[19/04/2006|06:02] C:\Program Files\Fichiers communs\SWF Studio
[06/09/2008|22:17] C:\Program Files\Fichiers communs\System
[30/10/2008|10:47] C:\Program Files\Fichiers communs\Windows Live
[23/12/2007|21:07] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[19/02/2007|17:25] C:\Program Files\Fichiers communs\Wise Installation Wizard
[19/02/2008|10:06] C:\Program Files\Fichiers communs\xing shared
[17/12/2008|09:40] C:\Program Files\Fichiers communs\XpressUpdate

--------------------\\ Process

( 47 Processes )

... OK !

--------------------\\ Recherche avec S_Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Recherche de Fichiers / Dossiers Lop

C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\NSU_88716e1998344f6113dbdc
C:\Program Files\BitTorrent Fastest Tool
C:\Program Files\BitTorrent Fastest Tool\INSTALL.LOG
C:\DOCUME~1\HP_PRO~1\Cookies\hp_propriétaire@advertising[1].txt

--------------------\\ Verification du Registre

..... OK !

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE


--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-02-22 00:31:21
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0

--------------------\\ Recherche d'autres infections

C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\WebMediaPlayer
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\WebMediaPlayer\Conditions générales.url
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\WebMediaPlayer\Confidentialité.url
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\WebMediaPlayer\Website.url

C:\DOCUME~1\HP_PRO~1\LOCALS~1\APPLIC~1\uymog.dat
C:\DOCUME~1\HP_PRO~1\LOCALS~1\APPLIC~1\uymog.exe
C:\DOCUME~1\HP_PRO~1\LOCALS~1\APPLIC~1\uymog_nav.dat
C:\DOCUME~1\HP_PRO~1\LOCALS~1\APPLIC~1\uymog_navps.dat
C:\DOCUME~1\HP_PRO~1\LOCALS~1\APPLIC~1\wcygsqa.dat
C:\DOCUME~1\HP_PRO~1\LOCALS~1\APPLIC~1\wcygsqa_nav.dat
C:\DOCUME~1\HP_PRO~1\LOCALS~1\APPLIC~1\wcygsqa_navps.dat
==> EGDACCESS <==

--------------------\\ Cracks & Keygens ..

C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Ahead Nero v8.1.1.0 Ultra Edition with Keygen.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Garmin Mobile XT GPS v4.10.40 s60v3 [Many Maps Added] + Keygen.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Kaspersky Internet Security Version 8 2008 Clean Works Crack Serial Keygen Keymaker.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Microsoft Office 2007 Keygen.rar.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Nero 8 Ultra Edition + Keygens + Crack.rar.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Nero Micro 8.1.1.3 europe language + Keygen.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14].torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Nero.8.Ultra.v.8.2.8.0.MULTi.Incl.Keygen.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Nero7 Premium. v.7.5.9.1 & Crack.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\OmniPage Professional 16 [only crack].rar.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\PDF2Word v3 Incl. Keygen.rar.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Spyware Doctor v6 0 0 354 + KeyGen.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\VeryPDF Password.Remover v2.5.05312006.Keygen.Only PKT.torrent
C:\DOCUME~1\HP_PRO~1\Mes documents\Clef USB 27-11-08\WinRar 371 FR\Keygen
C:\DOCUME~1\HP_PRO~1\Mes documents\Clef USB 27-11-08\WinRar 371 FR\Keygen\CORE.NFO
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Ahead Nero v8.1.1.0 Ultra Edition with Keygen
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Microsoft Office 2007 Keygen.rar
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero 8 Ultra Edition + Keygens + Crack.rar
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero Micro 8.1.1.3 europe language + Keygen
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero7 Premium. v.7.5.9.1 & Crack
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\OmniPage Professional 16 [only crack].rar
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\PDF2Word v3 Incl. Keygen.rar
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Spyware Doctor v6 0 0 354 + KeyGen
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\VeryPDF Password.Remover v2.5.05312006.Keygen.Only PKT
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Ahead Nero v8.1.1.0 Ultra Edition with Keygen\Ahead Nero v8.1.1.0 Ultra Edition with Keygen.uif
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Ahead Nero v8.1.1.0 Ultra Edition with Keygen\Torrent downloaded from Demonoid.com.txt
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero Micro 8.1.1.3 europe language + Keygen\Nero 8 Keygen.exe
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero Micro 8.1.1.3 europe language + Keygen\Nero-8.1.1.3_europe_micro.exe
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\CiM.nfo
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\embrace.nfo
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\gopstorrent - Index.URL
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\h33t - matt14.URL
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\Keygen CiM updated.exe
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\matt14.nfo
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\Nero-8.3.2.1_eng_trial.exe
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\nero.jpg
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\Read Me !!!.txt
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\tracked_by_h33t_com.txt
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero7 Premium. v.7.5.9.1 & Crack\Nero7 Premium. v.7.5.9.1.daa
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero7 Premium. v.7.5.9.1 & Crack\Nero7 Premium. v.7.5.9.1.nfo
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Spyware Doctor v6 0 0 354 + KeyGen\ReadMe.txt
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Spyware Doctor v6 0 0 354 + KeyGen\Serial.txt
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\VeryPDF Password.Remover v2.5.05312006.Keygen.Only PKT\keygen.exe
C:\DOCUME~1\HP_PRO~1\Mes documents\Téléchargement internet\PdfGrabber.v1.1.0.33.Incl.Keygen-ORiON
C:\DOCUME~1\HP_PRO~1\Mes documents\Téléchargement internet\PdfGrabber.v1.1.0.33.Incl.Keygen-ORiON.ZIP
C:\DOCUME~1\HP_PRO~1\Mes documents\Téléchargement internet\PdfGrabber.v1.1.0.33.Incl.Keygen-ORiON\PdfGrabber.v1.1.0.33.Incl.Keygen-ORiON
C:\DOCUME~1\HP_PRO~1\Mes documents\Téléchargement internet\PdfGrabber.v1.1.0.33.Incl.Keygen-ORiON\PdfGrabber.v1.1.0.33.Incl.Keygen-ORiON\Keygen.exe


[F:65][D:249]-> C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp
[F:90][D:0]-> C:\DOCUME~1\HP_PRO~1\Cookies
[F:591][D:8]-> C:\DOCUME~1\HP_PRO~1\LOCALS~1\TEMPOR~1\content.IE5

1 - "C:\Lop SD\LopR_1.txt" - 22/02/2009| 0:33 - Option : [1]

--------------------\\ Fin du rapport a 0:33:49
Meilleur message A+
-------
onex
bibou0007 le 22 février 2009 à 09h52
salut


utiliser des logiciel de protection craké :lol: :S
tu sais pour craké un logiciel il faut generalement y mettre un cheval de troie a l interieur!

un peu de lecture
http://forum.malekal.com/ftopic893.php -> de malekal_morte

http://forum.zebulon.fr/index.php?showtopic=93281 ---> de tegaz

--------------------------------------------------------------------------

Relance Lop S&D
Choisis cette fois ci l'Option 2 (Suppression)
Ne ferme pas la fenêtre lors de la suppression !
Poste le rapport généré (C:\lopR.txt)
                     
(Si le Bureau ne réapparît pas presse Ctrl + Alt + Suppr , Onglet Fichier , Nouvelle tâche , tape explorer.exe et valide)


-------
http://bibou0007.com/
-------
Il est plus simple d'infecter votre pc que de le désinfecter,pensez y.Ne pas cliquer ici!
onex le 23 février 2009 à 21h21
Salut ci-joint le rapport
Encore merci
--------------------\\ Lop S&D 4.2.5-0 XP/Vista

Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) 4 CPU 2.93GHz )
BIOS : BIOS Date: 01/23/06 20:09:06 Ver: 08.00.10
USER : HP_Propriétaire ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1296 [VPS 090223-0] 4.8.1296 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:181 Go (Free:10 Go)
D:\ (Local Disk) - FAT32 - Total:4 Go (Free:0 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
K:\ (USB)

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [2] ( 23/02/2009|21:14 )


\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION

Supprime! - C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\NSU_88716e1998344f6113dbdc
Supprime! - C:\Program Files\BitTorrent Fastest Tool\INSTALL.LOG
Supprime! - C:\Program Files\BitTorrent Fastest Tool
-
[ Fichier Hosts ] .. Restaure!

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\


--------------------\\ Listing des dossiers dans APPLIC~1

[01/01/2005|11:20] C:\DOCUME~1\ADMINI~1\APPLIC~1\Apple Computer
[01/01/2005|09:45] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[01/01/2005|11:12] C:\DOCUME~1\ADMINI~1\APPLIC~1\Intervideo
[01/01/2005|16:16] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[28/01/2008|11:44] C:\DOCUME~1\ADMINI~1\APPLIC~1\Mozilla
[19/02/2008|15:22] C:\DOCUME~1\ADMINI~1\APPLIC~1\Real
[01/01/2005|14:41] C:\DOCUME~1\ADMINI~1\APPLIC~1\SampleView
[01/01/2005|10:09] C:\DOCUME~1\ADMINI~1\APPLIC~1\Sun
[01/01/2005|13:07] C:\DOCUME~1\ADMINI~1\APPLIC~1\Symantec

[26/09/2008|19:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ABBYY
[01/02/2006|04:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ACD Systems
[09/09/2008|16:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[27/10/2007|16:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[10/11/2008|16:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Altova
[19/11/2007|21:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[05/01/2008|06:53] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[02/07/2007|05:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\avg7
[18/08/2008|16:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[14/12/2008|10:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Bluetooth
[11/08/2007|11:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BufferZone
[10/11/2008|16:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\C-CHANNEL
[20/08/2008|08:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[29/01/2007|18:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Elaborate Bytes
[14/10/2008|23:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\eXPert PDF
[04/09/2008|15:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\eXPert PDF 4
[14/10/2008|23:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\eXPert PDF Jobs
[15/01/2007|22:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[23/02/2009|21:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[02/04/2007|17:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Hewlett-Packard
[20/10/2005|17:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
[10/02/2009|15:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Installations
[01/01/2005|11:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[01/01/2005|11:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InterVideo
[08/10/2008|18:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab Setup Files
[03/10/2008|12:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\LightScribe
[08/08/2008|10:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\LogiShrd
[08/08/2008|10:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Logitech
[01/09/2008|12:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[04/12/2008|09:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\McAfee
[25/01/2009|12:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[18/02/2009|16:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[01/01/2005|16:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Motive
[09/01/2006|20:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MotiveSysIDs
[09/11/2008|12:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NCH Software
[15/10/2008|20:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NCH Swift Sound
[06/10/2008|17:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero
[28/01/2008|06:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nokia
[04/10/2008|17:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NortonInstaller
[25/11/2008|14:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NOS
[02/11/2006|11:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Office Genuine Advantage
[21/05/2007|09:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PC Suite
[01/12/2005|14:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Pinnacle
[01/12/2005|13:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Pinnacle Studio
[11/08/2008|07:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PixelPlanet
[01/01/2005|11:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[11/08/2008|09:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[01/12/2005|17:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SmartSound Software Inc
[14/11/2008|17:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Software4u
[16/12/2008|14:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SolidDocuments
[17/01/2008|07:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic
[12/06/2008|08:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sony Corporation
[26/12/2008|09:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SweetIM
[18/02/2009|08:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[01/07/2007|22:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TomTom
[12/02/2007|16:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TuneUp Software
[29/10/2005|18:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[21/02/2007|17:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[08/04/2006|06:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WinSoftware
[16/08/2008|17:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WinZip
[25/01/2009|12:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[18/11/2008|20:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\wmp
[09/01/2007|16:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion

[01/01/2005|11:20] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Apple Computer
[01/01/2005|09:45] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[01/01/2005|11:12] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Intervideo
[01/01/2005|16:16] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[01/01/2005|14:41] C:\DOCUME~1\DEFAUL~1\APPLIC~1\SampleView
[01/01/2005|10:09] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Sun
[01/01/2005|13:07] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec


[11/08/2008|15:51] C:\DOCUME~1\HP_PRO~1\APPLIC~1\ABBYY
[01/10/2008|08:53] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Adobe
[19/06/2007|06:07] C:\DOCUME~1\HP_PRO~1\APPLIC~1\AdobeUM
[01/07/2007|11:46] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Ahead
[26/03/2008|16:56] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Apple Computer
[05/05/2008|21:49] C:\DOCUME~1\HP_PRO~1\APPLIC~1\ArcSoft
[01/07/2007|20:50] C:\DOCUME~1\HP_PRO~1\APPLIC~1\AVG7
[09/09/2008|16:36] C:\DOCUME~1\HP_PRO~1\APPLIC~1\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[28/01/2008|06:29] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Datalayer
[06/01/2009|09:54] C:\DOCUME~1\HP_PRO~1\APPLIC~1\deskUNPDF
[05/09/2007|05:52] C:\DOCUME~1\HP_PRO~1\APPLIC~1\DialMessenger
[04/11/2007|10:30] C:\DOCUME~1\HP_PRO~1\APPLIC~1\DivX
[16/08/2008|16:40] C:\DOCUME~1\HP_PRO~1\APPLIC~1\eMule
[27/11/2008|10:15] C:\DOCUME~1\HP_PRO~1\APPLIC~1\EoRezo
[15/10/2008|17:28] C:\DOCUME~1\HP_PRO~1\APPLIC~1\eXPert PDF Editor
[05/01/2009|20:11] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Gaijin Ent
[18/11/2008|11:59] C:\DOCUME~1\HP_PRO~1\APPLIC~1\GARMIN
[04/02/2009|18:01] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Google
[06/03/2008|18:27] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Help
[17/01/2008|07:45] C:\DOCUME~1\HP_PRO~1\APPLIC~1\HP
[01/01/2005|09:45] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Identities
[09/09/2008|15:48] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Image Zone Express
[27/10/2007|08:59] C:\DOCUME~1\HP_PRO~1\APPLIC~1\InfraRecorder
[01/07/2007|22:37] C:\DOCUME~1\HP_PRO~1\APPLIC~1\InstallShield
[01/04/2007|23:49] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Intervideo
[26/09/2008|11:56] C:\DOCUME~1\HP_PRO~1\APPLIC~1\ItsLabel
[06/12/2007|07:52] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Leadertech
[08/08/2008|10:05] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Logitech
[01/04/2007|02:31] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Macromedia
[11/07/2008|09:13] C:\DOCUME~1\HP_PRO~1\APPLIC~1\MAGIX
[01/09/2008|12:31] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Malwarebytes
[31/01/2009|21:32] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Microsoft
[01/04/2007|03:38] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Motive
[30/07/2008|06:50] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Mozilla
[06/12/2007|07:21] C:\DOCUME~1\HP_PRO~1\APPLIC~1\MSNInstaller
[15/10/2008|19:17] C:\DOCUME~1\HP_PRO~1\APPLIC~1\NCH Swift Sound
[13/11/2008|08:05] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Nero
[11/12/2008|10:19] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Nokia
[09/02/2009|08:42] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Nvu
[02/12/2008|12:54] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Panasonic
[12/01/2008|12:05] C:\DOCUME~1\HP_PRO~1\APPLIC~1\PC Suite
[18/08/2008|16:42] C:\DOCUME~1\HP_PRO~1\APPLIC~1\PDFCreator
[11/08/2008|07:57] C:\DOCUME~1\HP_PRO~1\APPLIC~1\PixelPlanet
[06/01/2009|06:50] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Pogo Games
[19/02/2008|10:06] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Real
[01/01/2005|14:41] C:\DOCUME~1\HP_PRO~1\APPLIC~1\SampleView
[04/09/2008|14:28] C:\DOCUME~1\HP_PRO~1\APPLIC~1\ScanSoft
[11/11/2007|17:23] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Shareaza
[27/10/2007|10:14] C:\DOCUME~1\HP_PRO~1\APPLIC~1\SlySoft
[09/12/2008|08:07] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Softplicity
[14/11/2008|18:02] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Software4u
[06/01/2009|10:01] C:\DOCUME~1\HP_PRO~1\APPLIC~1\SolidDocuments
[06/12/2007|07:54] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Sonic
[24/05/2008|11:12] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Sony Corporation
[01/01/2005|10:09] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Sun
[01/04/2007|03:05] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Talkback
[16/12/2008|15:23] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Thinstall
[01/04/2007|02:56] C:\DOCUME~1\HP_PRO~1\APPLIC~1\TuneUp Software
[01/04/2007|12:23] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Uniblue
[20/02/2009|21:13] C:\DOCUME~1\HP_PRO~1\APPLIC~1\uTorrent
[06/08/2008|05:52] C:\DOCUME~1\HP_PRO~1\APPLIC~1\vlc
[10/03/2008|20:48] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Wallpaper
[01/11/2007|14:35] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Weflirt
[30/10/2008|11:58] C:\DOCUME~1\HP_PRO~1\APPLIC~1\WinBatch
[20/11/2007|16:21] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Windows Desktop Search
[25/01/2009|12:52] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Windows Live Writer
[15/09/2008|14:08] C:\DOCUME~1\HP_PRO~1\APPLIC~1\WinRAR
[11/08/2008|09:20] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Zeon
[23/10/2007|14:03] C:\DOCUME~1\HP_PRO~1\APPLIC~1\???????sAppData

[07/04/2008|20:59] C:\DOCUME~1\INVIT~1\APPLIC~1\Adobe
[01/01/2005|11:20] C:\DOCUME~1\INVIT~1\APPLIC~1\Apple Computer
[17/12/2008|09:40] C:\DOCUME~1\INVIT~1\APPLIC~1\EoRezo
[21/04/2008|10:23] C:\DOCUME~1\INVIT~1\APPLIC~1\Google
[30/10/2008|12:48] C:\DOCUME~1\INVIT~1\APPLIC~1\HP
[01/01/2005|09:45] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[01/01/2005|11:12] C:\DOCUME~1\INVIT~1\APPLIC~1\Intervideo
[27/09/2008|18:14] C:\DOCUME~1\INVIT~1\APPLIC~1\ItsLabel
[07/04/2008|16:44] C:\DOCUME~1\INVIT~1\APPLIC~1\Macromedia
[30/10/2008|13:19] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[29/08/2008|12:26] C:\DOCUME~1\INVIT~1\APPLIC~1\Mozilla
[16/10/2008|16:46] C:\DOCUME~1\INVIT~1\APPLIC~1\NCH Swift Sound
[13/10/2008|16:15] C:\DOCUME~1\INVIT~1\APPLIC~1\Nokia
[09/06/2008|15:24] C:\DOCUME~1\INVIT~1\APPLIC~1\PC Suite
[07/04/2008|16:30] C:\DOCUME~1\INVIT~1\APPLIC~1\Real
[01/01/2005|14:41] C:\DOCUME~1\INVIT~1\APPLIC~1\SampleView
[12/10/2008|16:46] C:\DOCUME~1\INVIT~1\APPLIC~1\Samsung
[22/09/2008|05:42] C:\DOCUME~1\INVIT~1\APPLIC~1\Sony Corporation
[01/01/2005|10:09] C:\DOCUME~1\INVIT~1\APPLIC~1\Sun
[01/01/2005|13:07] C:\DOCUME~1\INVIT~1\APPLIC~1\Symantec
[16/10/2008|17:58] C:\DOCUME~1\INVIT~1\APPLIC~1\Zeon

[11/10/2006|22:16] C:\DOCUME~1\LOCALS~1\APPLIC~1\Adobe
[02/04/2007|18:50] C:\DOCUME~1\LOCALS~1\APPLIC~1\AVG7
[11/10/2006|21:37] C:\DOCUME~1\LOCALS~1\APPLIC~1\Google
[28/01/2008|14:03] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft


[25/01/2009|15:25] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[19/08/2005|19:11] C:\DOCUME~1\NETWOR~1\APPLIC~1\Symantec

--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks

[23/02/2009 15:04][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachine.job
[23/02/2009 21:14][--a------] C:\WINDOWS\tasks\Google Software Updater.job
[23/02/2009 21:08][--a------] C:\WINDOWS\tasks\Vérifier les mises à jour de Windows Live Toolbar.job
[20/02/2009 15:00][--a------] C:\WINDOWS\tasks\Norton Security Scan.job
[20/02/2009 17:15][--a------] C:\WINDOWS\tasks\Maintenance en 1 clic.job
[05/08/2004 11:00][-rah-----] C:\WINDOWS\tasks\desktop.ini
[23/02/2009 15:04][--ah-----] C:\WINDOWS\tasks\SA.DAT

--------------------\\ Listing des dossiers dans C:\Program Files

[27/11/2008|14:43] C:\Program Files\ABBYY FineReader 9.0
[26/09/2008|20:53] C:\Program Files\ABBYY PDF Transformer 2.0
[04/10/2008|11:23] C:\Program Files\Adobe
[09/11/2008|22:08] C:\Program Files\AdorageI-SAL
[12/02/2007|13:00] C:\Program Files\Ahead
[02/07/2007|04:42] C:\Program Files\Alwil Software
[28/09/2008|19:15] C:\Program Files\Apple Software Update
[31/01/2006|06:55] C:\Program Files\Axialis
[06/10/2008|17:42] C:\Program Files\BitDefender
[28/07/2008|12:28] C:\Program Files\BlueSquad
[12/02/2006|22:12] C:\Program Files\Bluewin
[25/09/2008|16:55] C:\Program Files\Bonjour
[10/11/2008|16:20] C:\Program Files\C-CHANNEL
[18/01/2008|12:54] C:\Program Files\CCleaner
[08/04/2006|05:55] C:\Program Files\Common Files
[01/01/2005|09:42] C:\Program Files\ComPlus Applications
[18/02/2009|08:36] C:\Program Files\Convar
[25/09/2008|16:56] C:\Program Files\CyberMUT
[09/11/2008|22:08] C:\Program Files\DAP
[09/11/2008|22:08] C:\Program Files\DelMp3Kok
[01/11/2006|02:53] C:\Program Files\DIFX
[24/07/2005|11:22] C:\Program Files\directx
[21/11/2008|15:43] C:\Program Files\DivX
[12/09/2008|09:37] C:\Program Files\Docudesk
[09/11/2008|22:08] C:\Program Files\Easy Internet signup
[04/04/2007|08:14] C:\Program Files\eChanblard
[29/01/2007|22:20] C:\Program Files\Elaborate Bytes
[17/12/2008|09:40] C:\Program Files\eMule
[31/08/2008|11:29] C:\Program Files\ESET
[06/01/2009|13:42] C:\Program Files\Fichiers communs
[09/05/2007|21:17] C:\Program Files\Foreignword
[02/01/2009|08:22] C:\Program Files\Foxit Software
[21/06/2007|16:02] C:\Program Files\Free
[18/08/2008|16:42] C:\Program Files\FreeBot
[19/04/2006|06:01] C:\Program Files\fsupport
[09/01/2007|17:57] C:\Program Files\GalleryPlayer
[12/07/2005|16:38] C:\Program Files\Generic
[10/12/2005|12:22] C:\Program Files\Gestions CD
[24/07/2005|10:05] C:\Program Files\GEtax2002
[13/06/2006|10:48] C:\Program Files\GeTax2003
[24/07/2005|09:54] C:\Program Files\GeTax2004
[04/11/2006|21:20] C:\Program Files\GeTax2005
[28/09/2008|19:15] C:\Program Files\GeTax2006
[11/02/2009|11:43] C:\Program Files\Google
[02/04/2007|18:50] C:\Program Files\Grisoft
[01/01/2005|16:16] C:\Program Files\Help and Support Additions
[01/01/2005|10:43] C:\Program Files\Hewlett-Packard
[13/09/2008|14:55] C:\Program Files\HP
[12/11/2006|19:31] C:\Program Files\ICOO Loader
[16/12/2007|15:52] C:\Program Files\IncrediMail
[27/10/2007|09:00] C:\Program Files\InfraRecorder
[18/02/2009|08:36] C:\Program Files\InstallShield Installation Information
[22/02/2009|12:11] C:\Program Files\Internet Explorer
[01/01/2005|11:11] C:\Program Files\InterVideo
[16/12/2008|14:18] C:\Program Files\Investintech.com Inc
[19/08/2008|15:52] C:\Program Files\iPod
[16/10/2008|14:17] C:\Program Files\IrfanView
[19/08/2008|15:53] C:\Program Files\iTunes
[14/12/2008|11:37] C:\Program Files\IVT Corporation
[02/01/2009|08:30] C:\Program Files\Java
[04/10/2008|06:30] C:\Program Files\jZip
[04/12/2008|16:01] C:\Program Files\Kaspersky Lab
[08/08/2008|10:00] C:\Program Files\Logitech
[07/03/2007|07:50] C:\Program Files\Macrovision Corp
[09/10/2006|10:51] C:\Program Files\Mailinfo
[21/11/2008|15:43] C:\Program Files\Malwarebytes' Anti-Malware
[04/12/2008|09:44] C:\Program Files\McAfee
[09/11/2008|22:08] C:\Program Files\Messenger
[14/11/2008|17:54] C:\Program Files\Micro Application
[24/01/2009|10:09] C:\Program Files\Microsoft
[10/07/2007|13:48] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[01/01/2005|09:45] C:\Program Files\microsoft frontpage
[22/11/2008|10:46] C:\Program Files\Microsoft Office
[10/01/2009|20:10] C:\Program Files\Microsoft Office Outlook Connector
[21/10/2008|07:33] C:\Program Files\Microsoft Silverlight
[23/12/2007|21:12] C:\Program Files\Microsoft SQL Server Compact Edition
[01/02/2006|05:21] C:\Program Files\Microsoft Visual Studio
[13/11/2008|08:51] C:\Program Files\Microsoft Visual Studio 8
[22/11/2008|10:47] C:\Program Files\Microsoft Works
[01/02/2006|05:20] C:\Program Files\Microsoft.NET
[12/02/2006|22:12] C:\Program Files\Motive
[06/09/2008|22:20] C:\Program Files\Movie Maker
[23/02/2009|15:55] C:\Program Files\Mozilla Firefox
[22/11/2008|10:46] C:\Program Files\MSBuild
[18/08/2008|16:39] C:\Program Files\MSECache
[01/01/2005|09:41] C:\Program Files\MSN Gaming Zone
[14/11/2006|22:27] C:\Program Files\MSXML 4.0
[05/02/2008|14:44] C:\Program Files\MSXML 6.0
[08/02/2009|10:00] C:\Program Files\Navilog1
[10/11/2008|16:16] C:\Program Files\NCH Swift Sound
[13/10/2008|17:05] C:\Program Files\Nero
[06/09/2008|22:17] C:\Program Files\NetMeeting
[05/02/2007|13:56] C:\Program Files\Netopia
[31/12/2008|07:20] C:\Program Files\Nokia
[15/08/2008|14:00] C:\Program Files\Norton Security Scan
[25/11/2008|11:15] C:\Program Files\NOS
[04/08/2006|05:08] C:\Program Files\Notify
[08/01/2008|07:57] C:\Program Files\Nsasoft
[15/10/2008|05:49] C:\Program Files\Nuance
[09/02/2009|08:42] C:\Program Files\Nvu
[06/01/2009|06:48] C:\Program Files\Oberon Media
[01/01/2005|09:42] C:\Program Files\Online Services
[31/01/2007|20:58] C:\Program Files\OnlineUpdate
[05/01/2009|20:09] C:\Program Files\orange
[06/09/2008|22:17] C:\Program Files\Outlook Express
[02/12/2008|12:52] C:\Program Files\Panasonic
[05/09/2008|11:26] C:\Program Files\Panda Security
[10/02/2009|15:06] C:\Program Files\PC Connectivity Solution
[01/04/2007|12:01] C:\Program Files\PC Wizard 2006
[13/11/2008|15:24] C:\Program Files\PC-Doctor for Windows
[31/08/2008|10:28] C:\Program Files\PdfGrabber 4.0
[06/10/2008|12:54] C:\Program Files\Picasa2
[01/10/2008|04:46] C:\Program Files\Pinnacle
[24/07/2005|10:57] C:\Program Files\PIXELA
[01/12/2005|13:50] C:\Program Files\proDAD
[30/01/2007|09:07] C:\Program Files\Program Files
[11/08/2008|12:54] C:\Program Files\psconvert
[05/11/2006|01:44] C:\Program Files\PuzzleDesktop
[31/01/2007|18:50] C:\Program Files\PViever
[11/11/2008|08:57] C:\Program Files\QUAD Utilities
[19/08/2008|15:51] C:\Program Files\QuickTime
[07/05/2007|06:50] C:\Program Files\Real
[23/11/2007|14:35] C:\Program Files\Reference Assemblies
[06/12/2007|08:26] C:\Program Files\Registry Easy
[02/01/2009|07:12] C:\Program Files\Registry Mechanic
[01/02/2006|06:08] C:\Program Files\Rocky Mountain Traders
[01/06/2008|06:55] C:\Program Files\Samsung
[19/11/2007|18:52] C:\Program Files\Secured eMule
[20/11/2007|08:30] C:\Program Files\Services en ligne
[11/08/2008|08:20] C:\Program Files\SimpleOCR
[02/01/2005|00:27] C:\Program Files\SiS VGA Utilities V3.63
[28/10/2007|09:18] C:\Program Files\SlySoft
[01/12/2005|13:06] C:\Program Files\SmartSound Software
[29/01/2007|17:39] C:\Program Files\snd-WinZip.10.Pro
[05/09/2008|21:25] C:\Program Files\Softwin
[16/12/2008|14:56] C:\Program Files\SolidDocuments
[01/01/2005|11:08] C:\Program Files\Sonic
[01/01/2005|11:08] C:\Program Files\Sonic RecordNow!
[24/05/2008|10:48] C:\Program Files\Sony
[09/01/2007|17:40] C:\Program Files\SpeedOptimizer
[26/12/2008|09:07] C:\Program Files\SweetIM
[29/01/2007|22:23] C:\Program Files\Synthesis Bank
[20/11/2006|17:13] C:\Program Files\Téléphone mobile déblocage
[01/07/2007|22:40] C:\Program Files\TomTom HOME
[05/08/2007|08:15] C:\Program Files\torrent_search
[09/12/2008|08:11] C:\Program Files\Total PDF Converter
[05/10/2008|12:36] C:\Program Files\Trend Micro
[30/01/2008|22:15] C:\Program Files\TuneUp Utilities 2007
[04/10/2007|07:20] C:\Program Files\TWIXTEL
[10/07/2005|10:26] C:\Program Files\UBS e-banking
[01/01/2005|09:48] C:\Program Files\Uninstall Information
[15/10/2008|06:12] C:\Program Files\Universal Document Converter
[25/09/2008|05:56] C:\Program Files\uTorrent
[16/10/2008|05:46] C:\Program Files\VeryPDF PDFcamp Printer v2.3
[06/08/2008|05:45] C:\Program Files\VideoLAN
[23/09/2008|16:37] C:\Program Files\VirginMega
[14/10/2008|23:28] C:\Program Files\Visagesoft
[29/01/2007|22:28] C:\Program Files\VSO
[09/12/2006|11:25] C:\Program Files\Winamp
[16/03/2007|08:46] C:\Program Files\Windows Desktop Search
[02/02/2009|16:52] C:\Program Files\Windows Live
[25/01/2009|12:37] C:\Program Files\Windows Live Favorites
[10/01/2009|20:05] C:\Program Files\Windows Live SkyDrive
[25/01/2009|12:37] C:\Program Files\Windows Live Toolbar
[03/07/2007|10:50] C:\Program Files\Windows Media Connect 2
[02/10/2008|13:00] C:\Program Files\Windows Media Player
[06/09/2008|22:17] C:\Program Files\Windows NT
[01/01/2005|09:43] C:\Program Files\WindowsUpdate
[27/09/2008|07:11] C:\Program Files\WinRAR
[18/08/2008|16:43] C:\Program Files\WinZip
[01/01/2005|09:45] C:\Program Files\xerox
[14/11/2006|18:22] C:\Program Files\XviD
[18/01/2008|12:54] C:\Program Files\Yahoo!
[09/01/2007|14:49] C:\Program Files\Zero G Registry

--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs

[27/09/2008|23:06] C:\Program Files\Fichiers communs\ABBYY
[04/10/2008|11:24] C:\Program Files\Fichiers communs\Adobe
[09/09/2008|16:07] C:\Program Files\Fichiers communs\Adobe AIR
[12/02/2007|15:59] C:\Program Files\Fichiers communs\Ahead
[05/01/2008|06:50] C:\Program Files\Fichiers communs\Apple
[31/08/2008|10:28] C:\Program Files\Fichiers communs\BCL Technologies
[06/10/2008|17:42] C:\Program Files\Fichiers communs\BitDefender
[30/10/2008|15:23] C:\Program Files\Fichiers communs\C-CHANNEL
[26/09/2008|22:04] C:\Program Files\Fichiers communs\Cisco Systems
[22/11/2008|10:46] C:\Program Files\Fichiers communs\Designer
[03/01/2006|17:52] C:\Program Files\Fichiers communs\FotoWire
[01/01/2005|10:54] C:\Program Files\Fichiers communs\Hewlett-Packard
[13/09/2008|14:49] C:\Program Files\Fichiers communs\HP
[01/01/2005|11:19] C:\Program Files\Fichiers communs\InstallShield
[01/01/2005|10:09] C:\Program Files\Fichiers communs\Java
[03/10/2008|09:52] C:\Program Files\Fichiers communs\LightScribe
[08/08/2008|10:01] C:\Program Files\Fichiers communs\Logishrd
[03/01/2006|17:51] C:\Program Files\Fichiers communs\Logitech
[30/11/2005|17:40] C:\Program Files\Fichiers communs\MAGIX Shared
[10/01/2009|19:55] C:\Program Files\Fichiers communs\Microsoft Shared
[04/01/2006|23:14] C:\Program Files\Fichiers communs\Motive
[01/01/2005|09:43] C:\Program Files\Fichiers communs\MSSoap
[13/10/2008|17:25] C:\Program Files\Fichiers communs\Nero
[10/02/2009|15:07] C:\Program Files\Fichiers communs\Nokia
[05/01/2009|20:09] C:\Program Files\Fichiers communs\Oberon Media
[01/01/2005|10:38] C:\Program Files\Fichiers communs\ODBC
[10/02/2009|15:07] C:\Program Files\Fichiers communs\PCSuite
[19/02/2008|10:06] C:\Program Files\Fichiers communs\Real
[02/04/2007|00:02] C:\Program Files\Fichiers communs\Services
[25/09/2008|07:19] C:\Program Files\Fichiers communs\Softwin
[13/09/2008|14:51] C:\Program Files\Fichiers communs\Sonic Shared
[01/01/2005|10:38] C:\Program Files\Fichiers communs\SpeechEngines
[01/01/2005|11:09] C:\Program Files\Fichiers communs\SureThing Shared
[19/04/2006|06:02] C:\Program Files\Fichiers communs\SWF Studio
[06/09/2008|22:17] C:\Program Files\Fichiers communs\System
[30/10/2008|10:47] C:\Program Files\Fichiers communs\Windows Live
[23/12/2007|21:07] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[19/02/2007|17:25] C:\Program Files\Fichiers communs\Wise Installation Wizard
[19/02/2008|10:06] C:\Program Files\Fichiers communs\xing shared
[17/12/2008|09:40] C:\Program Files\Fichiers communs\XpressUpdate

--------------------\\ Process

( 48 Processes )

... OK !

--------------------\\ Recherche avec S_Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Recherche de Fichiers / Dossiers Lop

C:\DOCUME~1\HP_PRO~1\Cookies\hp_propriétaire@advertising[2].txt

--------------------\\ Verification du Registre

..... OK !

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE


--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-02-23 21:16:24
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0

--------------------\\ Recherche d'autres infections

C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\WebMediaPlayer
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\WebMediaPlayer\Conditions générales.url
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\WebMediaPlayer\Confidentialité.url
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\WebMediaPlayer\Website.url

C:\DOCUME~1\HP_PRO~1\LOCALS~1\APPLIC~1\uymog.dat
C:\DOCUME~1\HP_PRO~1\LOCALS~1\APPLIC~1\uymog.exe
C:\DOCUME~1\HP_PRO~1\LOCALS~1\APPLIC~1\uymog_nav.dat
C:\DOCUME~1\HP_PRO~1\LOCALS~1\APPLIC~1\uymog_navps.dat
C:\DOCUME~1\HP_PRO~1\LOCALS~1\APPLIC~1\wcygsqa.dat
C:\DOCUME~1\HP_PRO~1\LOCALS~1\APPLIC~1\wcygsqa_nav.dat
C:\DOCUME~1\HP_PRO~1\LOCALS~1\APPLIC~1\wcygsqa_navps.dat
==> EGDACCESS <==

--------------------\\ Cracks & Keygens ..

C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Ahead Nero v8.1.1.0 Ultra Edition with Keygen.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Garmin Mobile XT GPS v4.10.40 s60v3 [Many Maps Added] + Keygen.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Kaspersky Internet Security Version 8 2008 Clean Works Crack Serial Keygen Keymaker.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Microsoft Office 2007 Keygen.rar.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Nero 8 Ultra Edition + Keygens + Crack.rar.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Nero Micro 8.1.1.3 europe language + Keygen.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14].torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Nero.8.Ultra.v.8.2.8.0.MULTi.Incl.Keygen.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Nero7 Premium. v.7.5.9.1 & Crack.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\OmniPage Professional 16 [only crack].rar.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\PDF2Word v3 Incl. Keygen.rar.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Spyware Doctor v6 0 0 354 + KeyGen.torrent
C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\VeryPDF Password.Remover v2.5.05312006.Keygen.Only PKT.torrent
C:\DOCUME~1\HP_PRO~1\Mes documents\Clef USB 27-11-08\WinRar 371 FR\Keygen
C:\DOCUME~1\HP_PRO~1\Mes documents\Clef USB 27-11-08\WinRar 371 FR\Keygen\CORE.NFO
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Ahead Nero v8.1.1.0 Ultra Edition with Keygen
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Microsoft Office 2007 Keygen.rar
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero 8 Ultra Edition + Keygens + Crack.rar
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero Micro 8.1.1.3 europe language + Keygen
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero7 Premium. v.7.5.9.1 & Crack
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\OmniPage Professional 16 [only crack].rar
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\PDF2Word v3 Incl. Keygen.rar
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Spyware Doctor v6 0 0 354 + KeyGen
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\VeryPDF Password.Remover v2.5.05312006.Keygen.Only PKT
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Ahead Nero v8.1.1.0 Ultra Edition with Keygen\Ahead Nero v8.1.1.0 Ultra Edition with Keygen.uif
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Ahead Nero v8.1.1.0 Ultra Edition with Keygen\Torrent downloaded from Demonoid.com.txt
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero Micro 8.1.1.3 europe language + Keygen\Nero 8 Keygen.exe
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero Micro 8.1.1.3 europe language + Keygen\Nero-8.1.1.3_europe_micro.exe
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\CiM.nfo
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\embrace.nfo
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\gopstorrent - Index.URL
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\h33t - matt14.URL
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\Keygen CiM updated.exe
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\matt14.nfo
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\Nero-8.3.2.1_eng_trial.exe
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\nero.jpg
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\Read Me !!!.txt
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\tracked_by_h33t_com.txt
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero7 Premium. v.7.5.9.1 & Crack\Nero7 Premium. v.7.5.9.1.daa
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero7 Premium. v.7.5.9.1 & Crack\Nero7 Premium. v.7.5.9.1.nfo
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Spyware Doctor v6 0 0 354 + KeyGen\ReadMe.txt
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Spyware Doctor v6 0 0 354 + KeyGen\Serial.txt
C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\VeryPDF Password.Remover v2.5.05312006.Keygen.Only PKT\keygen.exe
C:\DOCUME~1\HP_PRO~1\Mes documents\Téléchargement internet\PdfGrabber.v1.1.0.33.Incl.Keygen-ORiON
C:\DOCUME~1\HP_PRO~1\Mes documents\Téléchargement internet\PdfGrabber.v1.1.0.33.Incl.Keygen-ORiON.ZIP
C:\DOCUME~1\HP_PRO~1\Mes documents\Téléchargement internet\PdfGrabber.v1.1.0.33.Incl.Keygen-ORiON\PdfGrabber.v1.1.0.33.Incl.Keygen-ORiON
C:\DOCUME~1\HP_PRO~1\Mes documents\Téléchargement internet\PdfGrabber.v1.1.0.33.Incl.Keygen-ORiON\PdfGrabber.v1.1.0.33.Incl.Keygen-ORiON\Keygen.exe


[F:12][D:249]-> C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp
[F:94][D:0]-> C:\DOCUME~1\HP_PRO~1\Cookies
[F:587][D:8]-> C:\DOCUME~1\HP_PRO~1\LOCALS~1\TEMPOR~1\content.IE5

1 - "C:\Lop SD\LopR_1.txt" - 22/02/2009| 0:33 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 23/02/2009|21:20 - Option : [2]

--------------------\\ Fin du rapport a 21:20:15
-------
onex
bibou0007 le 23 février 2009 à 21h32
bonjour
Télécharge navilog1 de (IL MAFIOSO)
lien et tuto ici
suis les indications et poste le rapport dans ton prochain message.
-------
http://bibou0007.com/
-------
Il est plus simple d'infecter votre pc que de le désinfecter,pensez y.Ne pas cliquer ici!
onex le 24 février 2009 à 07h29
Ci-joint rapport Navilog
Search Navipromo version 3.6.9 commencé le 24/02/2009 à 7:19:26,23

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

Outil exécuté depuis C:\Program Files\navilog1
Session actuelle : "HP_PropriÚtaire"

Mise à jour le 05.11.2008 à 21h00 par IL-MAFIOSO


Microsoft Windows XP [version 5.1.2600]
Internet Explorer : 6.0.2900.2180
Système de fichiers : NTFS

Recherche executé en mode normal

*** Recherche Programmes installés ***

Favorit

*** Recherche dossiers dans "C:\WINDOWS" ***


*** Recherche dossiers dans "C:\Program Files" ***


*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1\progra~1" ***

...\WebMediaPlayer trouvé !

*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1" ***


*** Recherche dossiers dans "c:\docume~1\alluse~1\applic~1" ***


*** Recherche dossiers dans "C:\Documents and Settings\HP_PropriÚtaire\applic~1" ***


*** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\applic~1" ***


*** Recherche dossiers dans "C:\DOCUME~1\INVIT~1\applic~1" ***


*** Recherche dossiers dans "C:\Documents and Settings\HP_PropriÚtaire\locals~1\applic~1" ***


*** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" ***


*** Recherche dossiers dans "C:\DOCUME~1\INVIT~1\locals~1\applic~1" ***


*** Recherche dossiers dans "C:\Documents and Settings\HP_PropriÚtaire\menudm~1\progra~1" ***


*** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\menudm~1\progra~1" ***


*** Recherche dossiers dans "C:\DOCUME~1\INVIT~1\menudm~1\progra~1" ***


*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net



*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!

* Recherche dans "C:\WINDOWS\system32" *

* Recherche dans "C:\Documents and Settings\HP_PropriÚtaire\locals~1\applic~1" *

* Recherche dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" *

* Recherche dans "C:\DOCUME~1\INVIT~1\locals~1\applic~1" *



*** Recherche fichiers ***



*** Recherche clés spécifiques dans le Registre ***


*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Recherche nouveaux fichiers Instant Access :


2)Recherche Heuristique :

* Dans "C:\WINDOWS\system32" :


* Dans "C:\Documents and Settings\HP_PropriÚtaire\locals~1\applic~1" :

uymog.exe trouvé !
uymog.dat trouvé !
uymog_nav.dat trouvé !
uymog_navps.dat trouvé !
wcygsqa.dat trouvé !
wcygsqa_nav.dat trouvé !
wcygsqa_navps.dat trouvé !

* Dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" :


* Dans "C:\DOCUME~1\INVIT~1\locals~1\applic~1" :


3)Recherche Certificats :

Certificat Egroup absent !
Certificat Electronic-Group absent !
Certificat Montorgueil absent !
Certificat OOO-Favorit absent !
Certificat Sunny-Day-Design-Ltd absent !

4)Recherche fichiers connus :



*** Analyse terminée le 24/02/2009 à 7:28:27,40 ***
Merci
-------
onex
bibou0007 le 24 février 2009 à 09h10
1)Double clique sur le raccourci Navilog1 présent sur le bureau et laisse-toi guider.
Au menu principal, choisis 2 et valide.

Le fix va t'informer qu'il va alors redémarrer ton PC
Ferme toutes les fenêtres ouvertes et enregistre tes documents personnels ouverts
Appuie sur une touche comme demandé.
(si ton Pc ne redémarre pas automatiquement, fais le toi même)
Au redémarrage de ton PC, choisis ta session habituelle.

Patiente jusqu'au message :
*** Nettoyage Termine le ..... ***
Le blocnote va s'ouvrir.
Sauvegarde le rapport de manière à le retrouver
Referme le blocnote. Ton bureau va réapparaitre

PS:Si ton bureau ne réapparait pas, fais CTRL+ALT+SUPP pour ouvrir le gestionnaire de tâches.
Puis rends-toi à l'onglet "processus". Clique en haut à gauche sur fichiers et choisis "exécuter"
Tape explorer et valide. Celà te fera apparaitre ton bureau

2)Vas dans Démarrer/panneau de configuration/options internet
- onglet "Contenu" puis onglet "Certificats" et si tu trouves ceci, en particulier dans "éditeurs approuvés", mais regarde ailleurs :
electronic-group
egroup
Montorgueil
VIP
"Sunny Day Design Ltd"
ooo <<Favorit>>
Favorit

Tu les suppriment.

3)Redémarres normalement et poste le rapport cleannavi.txt
tuto nettoyage automatique navilog1

-------
http://bibou0007.com/
-------
Il est plus simple d'infecter votre pc que de le désinfecter,pensez y.Ne pas cliquer ici!
onex le 25 février 2009 à 07h40
Salut
Ci-joint le nettoyage
Clean Navipromo version 3.6.9 commencé le 25/02/2009 à 7:20:30,83

Outil exécuté depuis C:\Program Files\navilog1
Session actuelle : "HP_PropriÚtaire"

Mise à jour le 05.11.2008 à 21h00 par IL-MAFIOSO


Microsoft Windows XP [version 5.1.2600]
Internet Explorer : 6.0.2900.2180
Système de fichiers : NTFS

Mode suppression automatique
avec prise en charge résultats Catchme et GNS


Nettoyage exécuté au redémarrage de l'ordinateur


*** fsbl1.txt non trouvé ***
(Assurez-vous que Catchme n'avait rien trouvé lors de la recherche)


*** Suppression avec sauvegardes résultats GenericNaviSearch ***

* Suppression dans "C:\WINDOWS\System32" *


* Suppression dans "C:\Documents and Settings\HP_PropriÚtaire\locals~1\applic~1" *


* Suppression dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" *

* Suppression dans "C:\DOCUME~1\INVIT~1\locals~1\applic~1" *


*** Suppression dossiers dans "C:\WINDOWS" ***


*** Suppression dossiers dans "C:\Program Files" ***


*** Suppression dossiers dans "C:\Documents and Settings\All Users\menudm~1\progra~1" ***

...\WebMediaPlayer ...suppression...
...\WebMediaPlayer supprimé !


*** Suppression dossiers dans "C:\Documents and Settings\All Users\menudm~1" ***


*** Suppression dossiers dans "c:\docume~1\alluse~1\applic~1" ***


*** Suppression dossiers dans "C:\Documents and Settings\HP_PropriÚtaire\applic~1" ***


*** Suppression dossiers dans "C:\DOCUME~1\ADMINI~1\applic~1" ***


*** Suppression dossiers dans "C:\DOCUME~1\INVIT~1\applic~1" ***


*** Suppression dossiers dans "C:\Documents and Settings\HP_PropriÚtaire\locals~1\applic~1" ***


*** Suppression dossiers dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" ***


*** Suppression dossiers dans "C:\DOCUME~1\INVIT~1\locals~1\applic~1" ***


*** Suppression dossiers dans "C:\Documents and Settings\HP_PropriÚtaire\menudm~1\progra~1" ***


*** Suppression dossiers dans "C:\DOCUME~1\ADMINI~1\menudm~1\progra~1" ***


*** Suppression dossiers dans "C:\DOCUME~1\INVIT~1\menudm~1\progra~1" ***



*** Suppression fichiers ***


*** Suppression fichiers temporaires ***

Nettoyage contenu C:\WINDOWS\Temp effectué !
Nettoyage contenu C:\Documents and Settings\HP_Propriétaire\locals~1\Temp effectué !

*** Traitement Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Suppression avec sauvegardes nouveaux fichiers Instant Access :

2)Recherche, création sauvegardes et suppression Heuristique :


* Dans "C:\WINDOWS\system32" *


* Dans "C:\Documents and Settings\HP_PropriÚtaire\locals~1\applic~1" *


uymog.exe trouvé !
Copie uymog.exe réalisée avec succès !
uymog.exe supprimé !

uymog.dat trouvé !
Copie uymog.dat réalisée avec succès !
uymog.dat supprimé !

uymog_nav.dat trouvé !
Copie uymog_nav.dat réalisée avec succès !
uymog_nav.dat supprimé !

uymog_navps.dat trouvé !
Copie uymog_navps.dat réalisée avec succès !
uymog_navps.dat supprimé !

C:\WINDOWS\prefetch\uymog*.pf trouvé !
Copie C:\WINDOWS\prefetch\uymog*.pf réalisée avec succès !
C:\WINDOWS\prefetch\uymog*.pf supprimé !

wcygsqa.dat trouvé !
Copie wcygsqa.dat réalisée avec succès !
wcygsqa.dat supprimé !

wcygsqa_nav.dat trouvé !
Copie wcygsqa_nav.dat réalisée avec succès !
wcygsqa_nav.dat supprimé !

wcygsqa_navps.dat trouvé !
Copie wcygsqa_navps.dat réalisée avec succès !
wcygsqa_navps.dat supprimé !


* Dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" *


* Dans "C:\DOCUME~1\INVIT~1\locals~1\applic~1" *


*** Sauvegarde du Registre vers dossier Safebackup ***

sauvegarde du Registre réalisée avec succès !

*** Nettoyage Registre ***

Nettoyage Registre Ok


*** Certificats ***

Certificat Egroup absent !
Certificat Electronic-Group absent !
Certificat Montorgueil absent !
Certificat OOO-Favorit absent !
Certificat Sunny-Day-Design-Ltdt absent !

*** Nettoyage terminé le 25/02/2009 à 7:26:04,18

A+

-------
onex
bibou0007 le 25 février 2009 à 08h44

telecharge Malwarebytes Anti-Malware
lien et tuto
suis les indications et poste le rapport dans ton prochain message.
-------
http://bibou0007.com/
-------
Il est plus simple d'infecter votre pc que de le désinfecter,pensez y.Ne pas cliquer ici!
onex le 25 février 2009 à 13h02
Ci-joint
Malwarebytes Anti-Malware

Malwarebytes' Anti-Malware 1.28
Version de la base de données: 1234
Windows 5.1.2600 Service Pack 3

25/02/2009 13:01:00
mbam-log-2009-02-25 (13-01-00).txt

Type de recherche: Examen rapide
Eléments examinés: 63968
Temps écoulé: 8 minute(s), 9 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)


Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
Merci A +
-------
onex
bibou0007 le 25 février 2009 à 21h05
c est clean as tu d encore des soucis?
-------
http://bibou0007.com/
-------
Il est plus simple d'infecter votre pc que de le désinfecter,pensez y.Ne pas cliquer ici!
onex le 25 février 2009 à 21h59
Oui
à l'ouverture d'internet Mozilla Firevox il y a toujours 2 fenêtres 2 sur 2cm qui s'ouvre sur le haut gauche de l'écran et je dois toujours l'agrandir en glissant avec la flèche en diagonale en bas à droite
Impossible que cette fenêtre reste entièrement ouverte
Merci A +
-------
onex
bibou0007 le 26 février 2009 à 16h02
hum j ai eu ca y a peu de temps c étais un bug de fire fox essaye sois de le mettre a jour si il ne l ai pas sois de le désinstaller pour le réinstaller!
a+
-------
http://bibou0007.com/
-------
Il est plus simple d'infecter votre pc que de le désinfecter,pensez y.Ne pas cliquer ici!
onex le 26 février 2009 à 21h25
Ok
J'ai désinstallé puis réinstallé mais rien y fait toujours la même chose
Merci a+
-------
onex
bibou0007 le 27 février 2009 à 09h19
Bonjour ;

Télécharge HijackThis v2.0.2 de trend secure
lien et tuto ici
suis les indications et poste le rapport dans ton prochain message.
-------
http://bibou0007.com/
-------
Il est plus simple d'infecter votre pc que de le désinfecter,pensez y.Ne pas cliquer ici!
onex le 27 février 2009 à 17h11
Ci-joint HijackThis v2.0.2
Merci encore
A+
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:10:21, on 27/02/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Nero\Nero8\InCD\InCDsrv.exe
c:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\Nero\Nero8\InCD\NBHRegInCDSrv.exe
C:\WINDOWS\Installer\MSICB.tmp
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
C:\WINDOWS\system32\LVComsX.exe
C:\Program Files\Microsoft Office\Office12\EXCEL.EXE
C:\Program Files\Microsoft\Office Live\OfficeLiveSignIn.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\HP_Propriétaire\Mes documents\Téléchargement internet\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bluewin.ch/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class - {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - (no file)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: SweetIM Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: Ajouter au fichier PDF existant - res://C:\Program Files\Nuance\PDF Professional 5\bin\ZeonIEFavClient.dll/ZeonIEAppend.HTML
O8 - Extra context menu item: Ajouter le contenu des liens sélectionnés à un fichier PDF existant - res://C:\Program Files\Nuance\PDF Professional 5\bin\ZeonIEFavClient.dll/ZeonIEAppendSelLinks.HTML
O8 - Extra context menu item: Ajouter le contenu du lien à un fichier PDF existant - res://C:\Program Files\Nuance\PDF Professional 5\bin\ZeonIEFavClient.dll/ZeonIEAppend.HTML
O8 - Extra context menu item: Créer des fichiers PDF à partir des liens sélectionnés - res://C:\Program Files\Nuance\PDF Professional 5\bin\ZeonIEFavClient.dll/ZeonIECaptureSelLinks.HTML
O8 - Extra context menu item: Créer fichier PDF - res://C:\Program Files\Nuance\PDF Professional 5\bin\ZeonIEFavClient.dll/ZeonIECapture.HTML
O8 - Extra context menu item: Créer un fichier PDF depuis le contenu du lien - res://C:\Program Files\Nuance\PDF Professional 5\bin\ZeonIEFavClient.dll/ZeonIECapture.HTML
O8 - Extra context menu item: Envoyer via Bluetooth - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm
O8 - Extra context menu item: Envoyer via message(&M)... - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\npjpi160_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\npjpi160_03.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O16 - DPF: Garmin Internet Explorer Plug-In - https://my.garmin.com/mygarmin/m/GarminAxControl.CAB
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\WINDOWS\system32\skype4com.dll
O23 - Service: ABBYY FineReader 9.0 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.9.0) - ABBYY (BIT Software) - C:\Program Files\Fichiers communs\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: BlueSoleilCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
O23 - Service: BsHelpCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
O23 - Service: BsMobileCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
O23 - Service: getPlus(R) Helper - NOS Microsystems Ltd. - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Update Service (gupdate1c986e9fde927ec) (gupdate1c986e9fde927ec) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InCD Helper (InCDsrvR) - Nero AG - C:\Program Files\Nero\Nero8\InCD\InCDsrv.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Fichiers communs\Logishrd\Bluetooth\LBTServ.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Nero Registry InCD Service (NeroRegInCDSrv) - Nero AG - C:\Program Files\Nero\Nero8\InCD\NBHRegInCDSrv.exe
O23 - Service: SolidConverterPDFReadSpool (SCPDFReadSpool) - Solid Documents, LLC - C:\WINDOWS\Installer\MSICB.tmp
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

--
End of file - 8352 bytes
-------
onex
bibou0007 le 27 février 2009 à 17h55
ca viens surmment de SweetIM Toolbar

/!\ Désactive toutes tes protections résidentes ! /!\

  • Télécharge Toolbar-S&D (de la Team IDN) sur ton Bureau.
  • Clique-droit sur le fichier téléchargé > Exécuter en tant qu'administrateur
  • Clique-droit sur le raccourci de Toolbar-S&D > Exécuter en tant qu'administrateur
  • Choisis F pour Français, et valide par Entrée
  • Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.
  • Poste le rapport généré. (C:\TB.txt)

  • /!\ Réactive toutes tes protections résidentes ! /!\

    -------
    http://bibou0007.com/
    -------
    Il est plus simple d'infecter votre pc que de le désinfecter,pensez y.Ne pas cliquer ici!
    onex le 28 février 2009 à 08h54
    Ci-joint rapport ToolBar
    -----------\\ ToolBar S&D 1.2.5 XP/Vista

    Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
    X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) 4 CPU 2.93GHz )
    BIOS : BIOS Date: 01/23/06 20:09:06 Ver: 08.00.10
    USER : HP_Propriétaire ( Administrator )
    BOOT : Normal boot
    Antivirus : avast! antivirus 4.8.1296 [VPS 090227-0] 4.8.1296 (Not Activated)
    A:\ (USB)
    C:\ (Local Disk) - NTFS - Total:181 Go (Free:10 Go)
    D:\ (Local Disk) - FAT32 - Total:4 Go (Free:0 Go)
    E:\ (CD or DVD)
    F:\ (USB)
    G:\ (USB)
    H:\ (USB)
    I:\ (USB)

    "C:\ToolBar SD" ( MAJ : 20-11-2008|20:25 )
    Option : [1] ( 28/02/2009| 8:52 )

    -----------\\ Recherche de Fichiers / Dossiers ...


    -----------\\ Extensions

    (HP_Propriétaire) - {3112ca9c-de6d-4884-a869-9855de68056c} => google-toolbar
    (HP_Propriétaire) - {582195F5-92E7-40a0-A127-DB71295901D7} => gmanager
    (HP_Propriétaire) - {635abd67-4fe9-1b23-4f01-e679fa7484c1} => ytoolbar
    (HP_Propriétaire) - {81BF1D23-5F17-408D-AC6B-BD6DF7CAF670} => imacros
    (HP_Propriétaire) - {b5431952-4840-11da-9502-00e08161165f} => geckotip
    (HP_Propriétaire) - {b9db16a4-6edc-47ec-a1f4-b86292ed211d} => dwhelper
    (HP_Propriétaire) - {b9db16a4-6edc-47ec-a1f4-b86292ed211d} => dwhelper


    -----------\\ [..\Internet Explorer\Main]

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
    "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
    "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
    "SearchMigratedDefaultURL"="http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8"
    "Start Page"="http://www.bluewin.ch/"
    "Search Bar"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
    "Url"="http://go.microsoft.com/fwlink/?LinkID=68928"
    "Url"="http://go.microsoft.com/fwlink/?LinkID=44406"
    "Url"="http://go.microsoft.com/fwlink/?LinkID=68929"

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
    "Default_Page_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
    "Default_Search_URL"="http://www.google.com/ie"
    "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
    "Start Page"="http://home.sweetim.com"


    --------------------\\ Recherche d'autres infections

    --------------------\\ Cracks & Keygens ..

    C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Ahead Nero v8.1.1.0 Ultra Edition with Keygen.torrent
    C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Garmin Mobile XT GPS v4.10.40 s60v3 [Many Maps Added] + Keygen.torrent
    C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Kaspersky Internet Security Version 8 2008 Clean Works Crack Serial Keygen Keymaker.torrent
    C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Microsoft Office 2007 Keygen.rar.torrent
    C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Nero 8 Ultra Edition + Keygens + Crack.rar.torrent
    C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Nero Micro 8.1.1.3 europe language + Keygen.torrent
    C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14].torrent
    C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Nero.8.Ultra.v.8.2.8.0.MULTi.Incl.Keygen.torrent
    C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Nero7 Premium. v.7.5.9.1 & Crack.torrent
    C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\OmniPage Professional 16 [only crack].rar.torrent
    C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\PDF2Word v3 Incl. Keygen.rar.torrent
    C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\Spyware Doctor v6 0 0 354 + KeyGen.torrent
    C:\DOCUME~1\HP_PRO~1\Application Data\uTorrent\VeryPDF Password.Remover v2.5.05312006.Keygen.Only PKT.torrent
    C:\DOCUME~1\HP_PRO~1\Mes documents\Clef USB 27-11-08\WinRar 371 FR\Keygen
    C:\DOCUME~1\HP_PRO~1\Mes documents\Clef USB 27-11-08\WinRar 371 FR\Keygen\CORE.NFO
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Ahead Nero v8.1.1.0 Ultra Edition with Keygen
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Microsoft Office 2007 Keygen.rar
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero 8 Ultra Edition + Keygens + Crack.rar
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero Micro 8.1.1.3 europe language + Keygen
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero7 Premium. v.7.5.9.1 & Crack
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\OmniPage Professional 16 [only crack].rar
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\PDF2Word v3 Incl. Keygen.rar
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Spyware Doctor v6 0 0 354 + KeyGen
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\VeryPDF Password.Remover v2.5.05312006.Keygen.Only PKT
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Ahead Nero v8.1.1.0 Ultra Edition with Keygen\Ahead Nero v8.1.1.0 Ultra Edition with Keygen.uif
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Ahead Nero v8.1.1.0 Ultra Edition with Keygen\Torrent downloaded from Demonoid.com.txt
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero Micro 8.1.1.3 europe language + Keygen\Nero 8 Keygen.exe
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero Micro 8.1.1.3 europe language + Keygen\Nero-8.1.1.3_europe_micro.exe
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\CiM.nfo
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\embrace.nfo
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\gopstorrent - Index.URL
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\h33t - matt14.URL
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\Keygen CiM updated.exe
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\matt14.nfo
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\Nero-8.3.2.1_eng_trial.exe
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\nero.jpg
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\Read Me !!!.txt
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero v8.3.2.1 [CiM & EMBRACE Keygen][h33t][matt14]\tracked_by_h33t_com.txt
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero7 Premium. v.7.5.9.1 & Crack\Nero7 Premium. v.7.5.9.1.daa
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Nero7 Premium. v.7.5.9.1 & Crack\Nero7 Premium. v.7.5.9.1.nfo
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Spyware Doctor v6 0 0 354 + KeyGen\ReadMe.txt
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\Spyware Doctor v6 0 0 354 + KeyGen\Serial.txt
    C:\DOCUME~1\HP_PRO~1\Mes documents\Downloads\VeryPDF Password.Remover v2.5.05312006.Keygen.Only PKT\keygen.exe
    C:\DOCUME~1\HP_PRO~1\Mes documents\Téléchargement internet\PdfGrabber.v1.1.0.33.Incl.Keygen-ORiON
    C:\DOCUME~1\HP_PRO~1\Mes documents\Téléchargement internet\PdfGrabber.v1.1.0.33.Incl.Keygen-ORiON.ZIP
    C:\DOCUME~1\HP_PRO~1\Mes documents\Téléchargement internet\PdfGrabber.v1.1.0.33.Incl.Keygen-ORiON\PdfGrabber.v1.1.0.33.Incl.Keygen-ORiON
    C:\DOCUME~1\HP_PRO~1\Mes documents\Téléchargement internet\PdfGrabber.v1.1.0.33.Incl.Keygen-ORiON\PdfGrabber.v1.1.0.33.Incl.Keygen-ORiON\Keygen.exe



    1 - "C:\ToolBar SD\TB_1.txt" - 27/11/2008|10:27 - Option : [1]
    2 - "C:\ToolBar SD\TB_2.txt" - 28/02/2009| 8:53 - Option : [1]

    -----------\\ Fin du rapport a 8:53:43,62

    -------
    onex
    onex le 11 mars 2009 à 19h36
    Bonjour
    j'ai toujours firevox qui s'ouvre 2 fois en haut à gauche et je dois toujours agrandir une fenêtre l'autre est vide et est marquée erreur
    Je m'excuse d'avoir répété ce message mais je n'ai plus de réponse depuis le 28 février
    Merci
    -------
    onex
    bibou0007 le 12 mars 2009 à 11h50
    Désolé j ai eu une coupure de net!!

    Bonjour ;

    Télécharge HijackThis v2.0.2 de trend secure
    lien et tuto ici
    suis les indications et poste le rapport dans ton prochain message.
    -------
    http://bibou0007.com/
    -------
    Il est plus simple d'infecter votre pc que de le désinfecter,pensez y.Ne pas cliquer ici!
    onex le 12 mars 2009 à 22h56
    Bonjour
    Maintenant j'ai des pages de pub en plus de la page demandée
    Merci
    Ci-joint HijackThis

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 22:52:31, on 12/03/2009
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\Program Files\Google\Update\GoogleUpdate.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Fichiers communs\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe
    C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
    C:\Program Files\Nero\Nero8\InCD\InCDsrv.exe
    c:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
    C:\Program Files\Nero\Nero8\InCD\NBHRegInCDSrv.exe
    C:\WINDOWS\Installer\MSICB.tmp
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\SearchIndexer.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\Program Files\QuickTime\QTTask.exe
    C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\documents and settings\hp_propriétaire\local settings\application data\gauuy.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
    C:\WINDOWS\system32\LVComsX.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Documents and Settings\HP_Propriétaire\Mes documents\Téléchargement internet\HiJackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bluewin.ch/
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
    R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class - {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
    R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
    O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
    O2 - BHO: DealioBHO Class - {6A87B991-A31F-4130-AE72-6D0C294BF082} - C:\Program Files\Dealio\kb127\Dealio.dll
    O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - (no file)
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll
    O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
    O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
    O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
    O3 - Toolbar: SweetIM Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
    O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O3 - Toolbar: Dealio - {E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F} - C:\Program Files\Dealio\kb127\Dealio.dll
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
    O4 - HKLM\..\Run: [au] C:\Program Files\Dealio\DealioAU.exe
    O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [gauuy] "c:\documents and settings\hp_propriétaire\local settings\application data\gauuy.exe" gauuy
    O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
    O8 - Extra context menu item: Ajouter au fichier PDF existant - res://C:\Program Files\Nuance\PDF Professional 5\bin\ZeonIEFavClient.dll/ZeonIEAppend.HTML
    O8 - Extra context menu item: Ajouter le contenu des liens sélectionnés à un fichier PDF existant - res://C:\Program Files\Nuance\PDF Professional 5\bin\ZeonIEFavClient.dll/ZeonIEAppendSelLinks.HTML
    O8 - Extra context menu item: Ajouter le contenu du lien à un fichier PDF existant - res://C:\Program Files\Nuance\PDF Professional 5\bin\ZeonIEFavClient.dll/ZeonIEAppend.HTML
    O8 - Extra context menu item: Compare Prices with &Dealio - C:\Documents and Settings\HP_Propriétaire\Application Data\Dealio\kb127\res\DealioSearch.html
    O8 - Extra context menu item: Créer des fichiers PDF à partir des liens sélectionnés - res://C:\Program Files\Nuance\PDF Professional 5\bin\ZeonIEFavClient.dll/ZeonIECaptureSelLinks.HTML
    O8 - Extra context menu item: Créer fichier PDF - res://C:\Program Files\Nuance\PDF Professional 5\bin\ZeonIEFavClient.dll/ZeonIECapture.HTML
    O8 - Extra context menu item: Créer un fichier PDF depuis le contenu du lien - res://C:\Program Files\Nuance\PDF Professional 5\bin\ZeonIEFavClient.dll/ZeonIECapture.HTML
    O8 - Extra context menu item: Envoyer via Bluetooth - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm
    O8 - Extra context menu item: Envoyer via message(&M)... - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\npjpi160_03.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\npjpi160_03.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
    O9 - Extra button: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb127\Dealio.dll
    O9 - Extra 'Tools' menuitem: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb127\Dealio.dll
    O16 - DPF: Garmin Internet Explorer Plug-In - https://my.garmin.com/mygarmin/m/GarminAxControl.CAB
    O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\WINDOWS\system32\skype4com.dll
    O23 - Service: ABBYY FineReader 9.0 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.9.0) - ABBYY (BIT Software) - C:\Program Files\Fichiers communs\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe
    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: BlueSoleilCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
    O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: BsHelpCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
    O23 - Service: BsMobileCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
    O23 - Service: getPlus(R) Helper - NOS Microsystems Ltd. - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe
    O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
    O23 - Service: Google Update Service (gupdate1c986e9fde927ec) (gupdate1c986e9fde927ec) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
    O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: InCD Helper (InCDsrvR) - Nero AG - C:\Program Files\Nero\Nero8\InCD\InCDsrv.exe
    O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Fichiers communs\Logishrd\Bluetooth\LBTServ.exe
    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
    O23 - Service: Nero Registry InCD Service (NeroRegInCDSrv) - Nero AG - C:\Program Files\Nero\Nero8\InCD\NBHRegInCDSrv.exe
    O23 - Service: SolidConverterPDFReadSpool (SCPDFReadSpool) - Solid Documents, LLC - C:\WINDOWS\Installer\MSICB.tmp
    O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
    -------
    onex
    onex le 15 mars 2009 à 08h57
    Bonjour
    Je n'ai plus de réponse de bibou0007
    Merci
    -------
    onex
    bibou0007 le 16 mars 2009 à 11h00
    re désolé tj des coupure!! grr

    Télécharge smitfraudfix de S!Ri
    lien et tuto ici
    suis les indications et poste le rapport dans ton prochain message.

    -------
    http://bibou0007.com/
    -------
    Il est plus simple d'infecter votre pc que de le désinfecter,pensez y.Ne pas cliquer ici!
    onex le 16 mars 2009 à 13h57
    Ci-joint le rapport
    merci
    SmitFraudFix v2.404

    Rapport fait à 13:55:03,12, 16/03/2009
    Executé à partir de C:\Program Files\Mozilla Firefox\SmitfraudFix
    OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
    Le type du système de fichiers est NTFS
    Fix executé en mode normal

    »»»»»»»»»»»»»»»»»»»»»»»» Process

    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Fichiers communs\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe
    C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
    C:\Program Files\Nero\Nero8\InCD\InCDsrv.exe
    c:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
    C:\Program Files\Google\Update\GoogleUpdate.exe
    C:\Program Files\Nero\Nero8\InCD\NBHRegInCDSrv.exe
    C:\WINDOWS\Installer\MSICB.tmp
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\SearchIndexer.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\Explorer.EXE
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\Program Files\QuickTime\QTTask.exe
    C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
    C:\Program Files\iTunes\iTunes.exe
    C:\WINDOWS\system32\cmd.exe
    C:\WINDOWS\system32\SearchProtocolHost.exe

    »»»»»»»»»»»»»»»»»»»»»»»» hosts


    »»»»»»»»»»»»»»»»»»»»»»»» C:\


    »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS


    »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system


    »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web


    »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32


    »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32\LogFiles


    »»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\HP_Propriétaire


    »»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp


    »»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\HP_Propriétaire\Application Data


    »»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer


    »»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\HP_PRO~1\Favoris


    »»»»»»»»»»»»»»»»»»»»»»»» Bureau


    »»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files


    »»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues


    »»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau



    »»»»»»»»»»»»»»»»»»»»»»»» o4Patch
    !!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

    o4Patch
    Credits: Malware Analysis & Diagnostic
    Code: S!Ri



    »»»»»»»»»»»»»»»»»»»»»»»» IEDFix
    !!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

    IEDFix
    Credits: Malware Analysis & Diagnostic
    Code: S!Ri



    »»»»»»»»»»»»»»»»»»»»»»»» Agent.OMZ.Fix
    !!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

    Agent.OMZ.Fix
    Credits: Malware Analysis & Diagnostic
    Code: S!Ri


    »»»»»»»»»»»»»»»»»»»»»»»» VACFix
    !!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

    VACFix
    Credits: Malware Analysis & Diagnostic
    Code: S!Ri


    »»»»»»»»»»»»»»»»»»»»»»»» 404Fix
    !!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

    404Fix
    Credits: Malware Analysis & Diagnostic
    Code: S!Ri


    »»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
    !!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

    SrchSTS.exe by S!Ri
    Search SharedTaskScheduler's .dll


    »»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
    !!!Attention, les clés qui suivent ne sont pas forcément infectées!!!



    »»»»»»»»»»»»»»»»»»»»»»»» Winlogon
    !!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
    "Userinit"="C:\\WINDOWS\\system32\\userinit.exe,"
    "system"=""


    »»»»»»»»»»»»»»»»»»»»»»»» RK



    »»»»»»»»»»»»»»»»»»»»»»»» DNS

    Description: Realtek RTL8139/810x Family Fast Ethernet NIC - Miniport d'ordonnancement de paquets
    DNS Server Search Order: 212.27.40.240
    DNS Server Search Order: 212.27.40.241

    Description: Bluetooth PAN Network Adapter - Miniport d'ordonnancement de paquets
    DNS Server Search Order: 192.168.1.1

    HKLM\SYSTEM\CCS\Services\Tcpip\..\{29CEFBE3-CD3A-4705-957A-00179192B914}: DhcpNameServer=212.27.40.240 212.27.40.241
    HKLM\SYSTEM\CCS\Services\Tcpip\..\{ACEBF88F-49D0-492F-9311-A74373E0ECC8}: DhcpNameServer=192.168.1.1
    HKLM\SYSTEM\CS1\Services\Tcpip\..\{29CEFBE3-CD3A-4705-957A-00179192B914}: DhcpNameServer=212.27.40.240 212.27.40.241
    HKLM\SYSTEM\CS1\Services\Tcpip\..\{ACEBF88F-49D0-492F-9311-A74373E0ECC8}: DhcpNameServer=192.168.1.1
    HKLM\SYSTEM\CS2\Services\Tcpip\..\{29CEFBE3-CD3A-4705-957A-00179192B914}: DhcpNameServer=212.27.40.240 212.27.40.241
    HKLM\SYSTEM\CS2\Services\Tcpip\..\{ACEBF88F-49D0-492F-9311-A74373E0ECC8}: DhcpNameServer=192.168.1.1
    HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=212.27.40.240 212.27.40.241
    HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=212.27.40.240 212.27.40.241
    HKLM\SYSTEM\CS2\Services\Tcpip\Parameters: DhcpNameServer=212.27.40.240 212.27.40.241


    »»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll


    »»»»»»»»»»»»»»»»»»»»»»»» Fin

    -------
    onex
    bibou0007 le 19 mars 2009 à 22h22
    Télécharge Combofix à partir d'**ICI** ou bien **ICI** et enregistre-le sur ton bureau.

    **Note 1 : Dans le cas où tu aurais déjà une version de combofix, il faudra que tu en télécharges une autre, la toute dernière. De plus il est très important de le sauvegarder directement sur ton bureau.**


  • Merci de ne jamais renommer Combofix, sauf si cela t'es expressément demandé.
  • Ferme toutes les fenêtres en cours, sans exception.
  • Désactive toutes les protections résidentes de tous tes logiciels antivirus, antispyware etc. afin que ces derniers n'interfèrent pas avec le bonfonctionnement de Combofix.
  • Très important : Désactive temporairement toutes tes protections résidentes de tous tes logiciels de sécurité avant de lancer un scan avec Combofix. Ils risqueraient d'altérer le bon déroulement du scan de Combofix, ce qui pourrait avoir des conséquences imprévues et désastreuses.
  • Clique sur ce lien pour voir une liste de programmes qui devraient systématiquement être désactivés avant l'utilisation de combofix. A noter que la liste n'est pas exhaustive. Si ton logiciel de sécurité n'est pas dans cette liste et que tu ne sais pas comment le désactiver, ou que tu ne comprends pas l'anglais :p , merci de me poser la question.
  • ATTENTION : Combofix va automatiquement te déconnecter d'internet dès que le scan débute.
  • Merci ne pas essayer de reconnecter ta machine à internet tant que combofix n'a pas fini son travail.
  • Si jamais tu n'arrives plus à te connecter à internet après l'utilisation de combofix, redémarre ton PC pour restaurer la connexion à internet.
  • Double clique sur combofix.exe et suis les instructions qui s'affichent.
  • Quand le scan sera fini, un rapport devrait normalement s'afficher à l'écran.
  • Merci de poster le rapport suivant, "C:\ComboFix.txt" , dans votre prochaine réponse, accompagné d'un nouveau rapport HiJackThis.

  • **Note 2 : Ne pas cliquer dans la fenêtre de combofix pendant qu'il travaille. Tu risquerais de planter le PC et de causer d'importants dommages.**
    -------
    http://bibou0007.com/
    -------
    Il est plus simple d'infecter votre pc que de le désinfecter,pensez y.Ne pas cliquer ici!
    onex le 20 mars 2009 à 13h03
    Bonjour
    Ci-joint ComboFix
    Merci
    ComboFix 09-03-19.01 - HP_Propriétaire 2009-03-20 12:27:49.7 - NTFSx86
    Microsoft Windows XP Édition familiale 5.1.2600.3.1252.1.1036.18.1023.542 [GMT 1:00]
    Lancé depuis: c:\documents and settings\HP_Propriétaire\Mes documents\Téléchargement internet\ComboFix.exe
    AV: avast! antivirus 4.8.1296 [VPS 090319-0] *On-access scanning disabled* (Updated)
    * Un nouveau point de restauration a été créé
    .

    (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
    .

    c:\program files\QUAD Utilities
    C:\setup.exe
    c:\windows\IE4 Error Log.txt
    c:\windows\ios.dat
    c:\windows\system32\404Fix.exe
    c:\windows\system32\Agent.OMZ.Fix.exe
    c:\windows\system32\config\systemprofile\Application Data\ShoppingReport
    c:\windows\system32\config\systemprofile\Application Data\ShoppingReport\cs\Config.xml
    c:\windows\system32\config\systemprofile\Application Data\ShoppingReport\cs\db\Aliases.dbs
    c:\windows\system32\config\systemprofile\Application Data\ShoppingReport\cs\db\Sites.dbs
    c:\windows\system32\config\systemprofile\Application Data\ShoppingReport\cs\dwld\WhiteList.xip
    c:\windows\system32\config\systemprofile\Application Data\ShoppingReport\cs\report\aggr_storage.xml
    c:\windows\system32\config\systemprofile\Application Data\ShoppingReport\cs\report\send_storage.xml
    c:\windows\system32\config\systemprofile\Application Data\ShoppingReport\cs\res1\WhiteList.dbs
    c:\windows\system32\dumphive.exe
    c:\windows\system32\IEDFix.C.exe
    c:\windows\system32\IEDFix.exe
    c:\windows\system32\o4Patch.exe
    c:\windows\system32\Process.exe
    c:\windows\system32\SrchSTS.exe
    c:\windows\system32\tmp.reg
    c:\windows\system32\VACFix.exe
    c:\windows\system32\VCCLSID.exe
    c:\windows\system32\WS2Fix.exe

    .
    ((((((((((((((((((((((((((((( Fichiers créés du 2009-02-20 au 2009-03-20 ))))))))))))))))))))))))))))))))))))
    .

    2009-03-14 10:56 . 2004-07-29 15:46 221,184 -ra------ c:\windows\system32\MXRestore.exe
    2009-03-12 15:34 . 2009-03-12 15:34 <REP> d-------- c:\documents and settings\All Users\Application Data\{00D89592-F643-4D8D-8F0F-AFAE0F14D4C3}
    2009-03-09 21:45 . 2009-03-09 22:35 <REP> d-------- c:\documents and settings\HP_Propriétaire\Application Data\Facebook
    2009-03-09 16:17 . 2009-03-09 16:17 <REP> d-------- c:\documents and settings\HP_Propri?aire
    2009-03-09 16:17 . 2009-03-09 16:17 <REP> d-------- c:\documents and settings\HP_PRO~3\Mes documents
    2009-03-08 12:33 . 2009-03-08 12:33 <REP> d-------- c:\program files\Search Settings
    2009-03-08 12:33 . 2009-03-08 12:33 <REP> d-------- c:\program files\Dealio
    2009-03-08 12:33 . 2009-03-08 12:33 <REP> d-------- c:\documents and settings\HP_Propriétaire\Application Data\Dealio
    2009-03-08 12:30 . 1998-06-16 23:00 516,173 --a------ c:\windows\system32\MSVCP60D.DLL
    2009-03-08 12:30 . 1998-06-16 23:00 385,100 --a------ c:\windows\system32\MSVCRTD.DLL
    2009-03-08 12:30 . 1998-06-24 00:00 164,144 --a------ c:\windows\system32\COMCT232.OCX
    2009-03-08 12:29 . 2009-03-08 12:30 <REP> d-------- c:\program files\Free Audio Pack
    2009-03-08 12:29 . 2005-02-24 12:10 2,084,864 --a------ c:\windows\system32\AudDesign.dll
    2009-03-08 12:29 . 2005-03-11 17:37 1,986,560 --a------ c:\windows\system32\AudFile.dll
    2009-03-08 12:29 . 2008-09-24 20:33 484,352 --a------ c:\windows\system32\lame_enc.dll
    2009-03-08 12:29 . 2005-02-24 12:11 479,232 --a------ c:\windows\system32\AudioVisu.dll
    2009-03-08 12:29 . 2005-02-24 15:21 458,752 --a------ c:\windows\system32\AudPlayer.dll
    2009-03-08 12:29 . 2005-03-10 16:00 454,656 --a------ c:\windows\system32\AudioRecord.dll
    2009-03-08 12:29 . 2005-02-24 12:10 417,792 --a------ c:\windows\system32\AudDisplay.dll
    2009-03-08 12:29 . 2005-02-24 11:51 348,160 --a------ c:\windows\system32\WMAFile.dll
    2009-03-08 12:29 . 2004-03-08 23:00 224,016 --a------ c:\windows\system32\TABCTL32.OCX
    2009-03-08 12:29 . 1998-07-12 23:00 21,504 --a------ c:\windows\system32\TABCTFR.DLL
    2009-03-08 12:14 . 2009-03-08 12:14 <REP> d-------- c:\program files\LitexMedia
    2009-03-07 10:20 . 2009-03-07 10:20 <REP> d-------- c:\program files\KaraFun
    2009-03-07 10:20 . 2009-03-07 10:20 <REP> d-------- c:\documents and settings\All Users\Application Data\Recisio
    2009-02-25 21:47 . 2009-01-09 20:19 1,089,883 -----c--- c:\windows\system32\dllcache\ntprint.cat
    2009-02-22 12:15 . 2009-02-22 12:16 <REP> d----c--- C:\d39ca8d7ea4463073caf952b
    2009-02-22 10:53 . 2009-02-22 10:54 <REP> d-------- c:\windows\CLARIS
    2009-02-22 10:53 . 2009-02-22 10:54 955 --a------ c:\windows\CLARIS.INI
    2009-02-22 10:52 . 2009-02-22 10:52 1,600 --a------ c:\windows\HRMY98.MIF
    2009-02-22 10:45 . 2009-02-22 10:45 0 --a------ c:\windows\DXINFO.INI
    2009-02-22 10:43 . 2009-02-22 10:43 466 --a------ c:\windows\CARTES.INI
    2009-02-22 10:16 . 2009-02-22 10:16 62 --a------ c:\windows\LOTUS.INI
    2009-02-22 00:28 . 2009-02-23 21:20 <REP> d----c--- C:\Lop SD

    .
    (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2009-03-20 10:30 --------- d-----w c:\documents and settings\All Users\Application Data\Google Updater
    2009-03-17 12:17 --------- d-----w c:\windows\system32\config\systemprofile\Application Data\SolidDocuments
    2009-03-14 08:37 --------- d-----w c:\program files\Navilog1
    2009-03-13 14:57 --------- d---a-w c:\documents and settings\All Users\Application Data\TEMP
    2009-03-12 14:34 --------- d-----w c:\program files\iTunes
    2009-03-12 14:34 --------- d-----w c:\program files\iPod
    2009-03-12 14:34 --------- d-----w c:\program files\Fichiers communs\Apple
    2009-03-12 14:27 --------- d-----w c:\program files\Bonjour
    2009-03-11 08:14 --------- d-----w c:\documents and settings\All Users\Application Data\Microsoft Help
    2009-03-09 16:16 --------- d-----w c:\program files\Nvu
    2009-03-08 14:47 --------- d-----w c:\documents and settings\HP_Propriétaire\Application Data\uTorrent
    2009-03-07 21:45 --------- d-----w c:\program files\QuickTime
    2009-03-07 21:42 --------- d-----w c:\program files\Apple Software Update
    2009-02-26 07:00 --------- d-----w c:\program files\Microsoft Silverlight
    2009-02-18 07:36 --------- d--h--w c:\program files\InstallShield Installation Information
    2009-02-18 07:36 --------- d-----w c:\program files\Convar
    2009-02-11 10:43 --------- d-----w c:\program files\Google
    2009-02-10 14:07 --------- d-----w c:\program files\Fichiers communs\PCSuite
    2009-02-10 14:07 --------- d-----w c:\program files\Fichiers communs\Nokia
    2009-02-10 14:06 --------- d-----w c:\program files\PC Connectivity Solution
    2009-02-10 14:05 --------- d-----w c:\documents and settings\All Users\Application Data\Installations
    2009-02-09 14:05 1,846,912 ----a-w c:\windows\system32\win32k.sys
    2009-02-09 07:42 --------- d-----w c:\documents and settings\HP_Propriétaire\Application Data\Nvu
    2009-02-02 15:52 --------- d-----w c:\program files\Windows Live
    2009-01-25 11:52 --------- d-----w c:\documents and settings\HP_Propriétaire\Application Data\Windows Live Writer
    2009-01-25 11:37 --------- d-----w c:\program files\Windows Live Toolbar
    2009-01-25 11:37 --------- d-----w c:\program files\Windows Live Favorites
    2009-01-25 11:31 --------- d-----w c:\documents and settings\All Users\Application Data\WLInstaller
    2009-01-24 09:09 --------- d-----w c:\program files\Microsoft
    2009-01-03 16:49 21,892 ----a-w c:\windows\VISIO.BIN
    2008-08-11 12:48 15,397 ----a-w c:\program files\settings.dat
    2008-03-06 11:56 6,105,952 -c--a-w c:\program files\Firefox Setup 2.0.0.12.exe
    2008-01-29 05:42 26,978,656 ----a-w c:\program files\bitdefender_free_v10.exe
    2007-11-26 06:22 718,552 ----a-w c:\program files\FixSchoeb-Haxdoor.exe
    2007-10-27 09:18 2,672,152 ----a-w c:\program files\SetupCloneCD5301.exe
    2007-10-27 09:13 9,112,584 ----a-w c:\program files\SetupCloneDVDmobile1154.exe
    2005-12-24 15:29 16 ---ha-w c:\program files\mxfilerelatedcache.mxc2
    2008-09-25 08:42 32,768 --sha-w c:\windows\system32\config\systemprofile\Local Settings\Historique\History.IE5\MSHist012008090120080908\index.dat
    2008-09-25 21:44 32,768 --sha-w c:\windows\system32\config\systemprofile\Local Settings\Historique\History.IE5\MSHist012008092520080926\index.dat
    .

    ((((((((((((((((((((((((((((( snapshot@2008-10-25_ 9.23.02,18 )))))))))))))))))))))))))))))))))))))))))
    .
    + 2008-09-10 01:12:14 1,379,840 ----a-w c:\windows\$hf_mig$\KB954459\SP3QFE\msxml6.dll
    + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB954459\spmsg.dll
    + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB954459\spuninst.exe
    + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB954459\update\spcustom.dll
    + 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB954459\update\update.exe
    + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB954459\update\updspapi.dll
    + 2008-10-03 09:50:27 247,326 ----a-w c:\windows\$hf_mig$\KB954600\SP3QFE\strmdll.dll
    + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB954600\spmsg.dll
    + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB954600\spuninst.exe
    + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB954600\update\spcustom.dll
    + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB954600\update\update.exe
    + 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB954600\update\updspapi.dll
    + 2008-09-04 17:12:47 1,106,944 ----a-w c:\windows\$hf_mig$\KB955069\SP3QFE\msxml3.dll
    + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB955069\spmsg.dll
    + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB955069\spuninst.exe
    + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB955069\update\spcustom.dll
    + 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB955069\update\update.exe
    + 2008-07-09 12:10:36 406,392 ----a-w c:\windows\$hf_mig$\KB955069\update\updspapi.dll
    + 2008-10-23 10:17:49 62,976 ----a-w c:\windows\$hf_mig$\KB955839\SP3QFE\tzchange.exe
    + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB955839\spmsg.dll
    + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB955839\spuninst.exe
    + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB955839\update\spcustom.dll
    + 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB955839\update\update.exe
    + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB955839\update\updspapi.dll
    + 2008-08-20 05:07:31 3,088,896 ----a-w c:\windows\$hf_mig$\KB956390\SP3QFE\mshtml.dll
    + 2008-08-20 05:07:27 1,499,648 ----a-w c:\windows\$hf_mig$\KB956390\SP3QFE\shdocvw.dll
    + 2008-08-20 05:07:28 621,056 ----a-w c:\windows\$hf_mig$\KB956390\SP3QFE\urlmon.dll
    + 2008-08-20 05:07:28 670,720 ----a-w c:\windows\$hf_mig$\KB956390\SP3QFE\wininet.dll
    + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB956390\spmsg.dll
    + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB956390\spuninst.exe
    + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB956390\update\spcustom.dll
    + 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB956390\update\update.exe
    + 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB956390\update\updspapi.dll
    + 2008-10-23 12:44:51 286,720 ----a-w c:\windows\$hf_mig$\KB956802\SP3QFE\gdi32.dll
    + 2008-07-08 13:03:54 18,296 ----a-w c:\windows\$hf_mig$\KB956802\spmsg.dll
    + 2008-07-08 13:03:55 234,872 ----a-w c:\windows\$hf_mig$\KB956802\spuninst.exe
    + 2008-07-08 13:03:54 26,488 ----a-w c:\windows\$hf_mig$\KB956802\update\spcustom.dll
    + 2008-07-09 07:40:26 767,352 ----a-w c:\windows\$hf_mig$\KB956802\update\update.exe
    + 2008-07-09 07:40:35 406,392 ----a-w c:\windows\$hf_mig$\KB956802\update\updspapi.dll
    + 2008-10-24 11:41:11 455,936 ----a-w c:\windows\$hf_mig$\KB957097\SP3QFE\mrxsmb.sys
    + 2008-07-08 13:03:54 18,296 ----a-w c:\windows\$hf_mig$\KB957097\spmsg.dll
    + 2008-07-08 13:03:55 234,872 ----a-w c:\windows\$hf_mig$\KB957097\spuninst.exe
    + 2008-07-08 13:03:54 26,488 ----a-w c:\windows\$hf_mig$\KB957097\update\spcustom.dll
    + 2008-07-08 13:03:57 767,352 ----a-w c:\windows\$hf_mig$\KB957097\update\update.exe
    + 2008-07-08 13:04:05 406,392 ----a-w c:\windows\$hf_mig$\KB957097\update\updspapi.dll
    + 2008-10-16 05:34:18 3,088,896 ----a-w c:\windows\$hf_mig$\KB958215\SP3QFE\mshtml.dll
    + 2008-10-16 01:04:15 1,499,648 ----a-w c:\windows\$hf_mig$\KB958215\SP3QFE\shdocvw.dll
    + 2008-10-16 01:04:15 621,056 ----a-w c:\windows\$hf_mig$\KB958215\SP3QFE\urlmon.dll
    + 2008-10-16 01:04:15 671,232 ----a-w c:\windows\$hf_mig$\KB958215\SP3QFE\wininet.dll
    + 2007-11-30 12:39:29 18,296 ----a-w c:\windows\$hf_mig$\KB958215\spmsg.dll
    + 2007-11-30 12:39:29 234,872 ----a-w c:\windows\$hf_mig$\KB958215\spuninst.exe
    + 2007-11-30 12:39:29 26,488 ----a-w c:\windows\$hf_mig$\KB958215\update\spcustom.dll
    + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB958215\update\update.exe
    + 2008-07-09 07:40:35 406,392 ----a-w c:\windows\$hf_mig$\KB958215\update\updspapi.dll
    + 2008-12-11 12:33:59 333,952 ----a-w c:\windows\$hf_mig$\KB958687\SP3QFE\srv.sys
    + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB958687\spmsg.dll
    + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB958687\spuninst.exe
    + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB958687\update\spcustom.dll
    + 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB958687\update\update.exe
    + 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB958687\update\updspapi.dll
    + 2008-12-12 17:14:51 3,088,896 ----a-w c:\windows\$hf_mig$\KB960714\SP3QFE\mshtml.dll
    + 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB960714\spmsg.dll
    + 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB960714\spuninst.exe
    + 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB960714\update\spcustom.dll
    + 2008-07-09 07:40:26 767,352 ----a-w c:\windows\$hf_mig$\KB960714\update\update.exe
    + 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB960714\update\updspapi.dll
    + 2008-07-09 07:40:22 18,296 ----a-w c:\windows\$hf_mig$\KB960715\spmsg.dll
    + 2008-07-09 07:40:24 234,872 ----a-w c:\windows\$hf_mig$\KB960715\spuninst.exe
    + 2008-07-09 07:40:22 26,488 ----a-w c:\windows\$hf_mig$\KB960715\update\spcustom.dll
    + 2008-11-15 17:18:14 767,352 ----a-w c:\windows\$hf_mig$\KB960715\update\update.exe
    + 2008-07-09 07:40:35 406,392 ----a-w c:\windows\$hf_mig$\KB960715\update\updspapi.dll
    + 2006-10-18 18:03:58 100,864 -c----w c:\windows\$NtUninstallKB952069_WM9$\logagent.exe
    + 2007-07-27 06:28:58 234,872 -c----w c:\windows\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe
    + 2007-07-27 08:41:48 382,840 -c----w c:\windows\$NtUninstallKB952069_WM9$\spuninst\updspapi.dll
    + 2006-10-18 19:47:20 937,984 -c----w c:\windows\$NtUninstallKB952069_WM9$\wmnetmgr.dll
    + 2006-10-18 19:47:22 2,450,944 -c----w c:\windows\$NtUninstallKB952069_WM9$\wmvcore.dll
    + 2008-04-14 02:33:34 1,306,624 -c----w c:\windows\$NtUninstallKB954459$\msxml6.dll
    + 2007-11-30 11:19:06 234,872 -c----w c:\windows\$NtUninstallKB954459$\spuninst\spuninst.exe
    + 2007-11-30 12:39:31 406,392 -c----w c:\windows\$NtUninstallKB954459$\spuninst\updspapi.dll
    + 2007-11-30 11:19:06 234,872 -c----w c:\windows\$NtUninstallKB954600$\spuninst\spuninst.exe
    + 2007-11-30 11:19:10 406,392 -c----w c:\windows\$NtUninstallKB954600$\spuninst\updspapi.dll
    + 2008-04-14 02:33:46 246,814 -c----w c:\windows\$NtUninstallKB954600$\strmdll.dll
    + 2008-04-14 02:33:34 1,104,896 -c----w c:\windows\$NtUninstallKB955069$\msxml3.dll
    + 2007-11-30 11:19:06 234,872 -c----w c:\windows\$NtUninstallKB955069$\spuninst\spuninst.exe
    + 2008-07-09 12:10:36 406,392 -c----w c:\windows\$NtUninstallKB955069$\spuninst\updspapi.dll
    + 2007-11-30 11:19:06 234,872 -c----w c:\windows\$NtUninstallKB955839$\spuninst\spuninst.exe
    + 2007-11-30 12:39:31 406,392 -c----w c:\windows\$NtUninstallKB955839$\spuninst\updspapi.dll
    + 2008-04-14 02:34:25 60,416 -c----w c:\windows\$NtUninstallKB955839$\tzchange.exe
    + 2007-08-22 13:13:07 3,079,168 -c----w c:\windows\$NtUninstallKB956390$\mshtml.dll
    + 2008-04-14 02:33:41 1,499,136 -c----w c:\windows\$NtUninstallKB956390$\shdocvw.dll
    + 2007-11-30 11:19:06 234,872 -c----w c:\windows\$NtUninstallKB956390$\spuninst\spuninst.exe
    + 2007-11-30 12:39:31 406,392 -c----w c:\windows\$NtUninstallKB956390$\spuninst\updspapi.dll
    + 2007-08-22 13:13:08 617,472 -c----w c:\windows\$NtUninstallKB956390$\urlmon.dll
    + 2007-08-22 13:13:08 663,040 -c----w c:\windows\$NtUninstallKB956390$\wininet.dll
    + 2008-04-14 02:33:25 285,184 -c----w c:\windows\$NtUninstallKB956802$\gdi32.dll
    + 2008-07-08 13:03:55 234,872 -c----w c:\windows\$NtUninstallKB956802$\spuninst\spuninst.exe
    + 2008-07-09 07:40:35 406,392 -c----w c:\windows\$NtUninstallKB956802$\spuninst\updspapi.dll
    + 2008-04-13 19:17:01 456,576 -c----w c:\windows\$NtUninstallKB957097$\mrxsmb.sys
    + 2008-07-08 13:03:55 234,872 -c----w c:\windows\$NtUninstallKB957097$\spuninst\spuninst.exe
    + 2008-07-08 13:04:05 406,392 -c----w c:\windows\$NtUninstallKB957097$\spuninst\updspapi.dll
    + 2008-08-20 05:10:12 3,088,896 -c----w c:\windows\$NtUninstallKB958215$\mshtml.dll
    + 2008-08-20 05:10:11 1,499,648 -c----w c:\windows\$NtUninstallKB958215$\shdocvw.dll
    + 2007-11-30 12:39:29 234,872 -c----w c:\windows\$NtUninstallKB958215$\spuninst\spuninst.exe
    + 2008-07-09 07:40:35 406,392 -c----w c:\windows\$NtUninstallKB958215$\spuninst\updspapi.dll
    + 2008-08-20 05:10:11 620,544 -c----w c:\windows\$NtUninstallKB958215$\urlmon.dll
    + 2008-08-20 05:10:11 670,208 -c----w c:\windows\$NtUninstallKB958215$\wininet.dll
    + 2007-11-30 11:19:06 234,872 -c----w c:\windows\$NtUninstallKB958687$\spuninst\spuninst.exe
    + 2007-11-30 11:19:10 406,392 -c----w c:\windows\$NtUninstallKB958687$\spuninst\updspapi.dll
    + 2008-09-08 10:41:42 333,824 -c----w c:\windows\$NtUninstallKB958687$\srv.sys
    + 2008-10-16 01:01:39 3,088,896 -c----w c:\windows\$NtUninstallKB960714$\mshtml.dll
    + 2007-11-30 11:19:06 234,872 -c----w c:\windows\$NtUninstallKB960714$\spuninst\spuninst.exe
    + 2007-11-30 11:19:10 406,392 -c----w c:\windows\$NtUninstallKB960714$\spuninst\updspapi.dll
    + 2008-07-09 07:40:24 234,872 -c----w c:\windows\$NtUninstallKB960715$\spuninst\spuninst.exe
    + 2008-07-09 07:40:35 406,392 -c----w c:\windows\$NtUninstallKB960715$\spuninst\updspapi.dll
    - 2007-04-01 11:07:25 110,592 ----a-w c:\windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\adodb.dll
    + 2008-11-13 07:56:34 110,592 ----a-w c:\windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\adodb.dll
    - 2007-04-01 11:07:22 65,536 ----a-w c:\windows\assembly\GAC\dao\10.0.4504.0__31bf3856ad364e35\DAO.DLL
    + 2008-11-13 07:56:33 65,536 ----a-w c:\windows\assembly\GAC\dao\10.0.4504.0__31bf3856ad364e35\DAO.DLL
    - 2007-02-28 08:38:45 4,608 ----a-w c:\windows\assembly\GAC\Extensibility\7.0.3300.0__b03f5f7f11d50a3a\extensibility.dll
    + 2008-11-13 07:56:35 4,608 ----a-w c:\windows\assembly\GAC\Extensibility\7.0.3300.0__b03f5f7f11d50a3a\extensibility.dll
    - 2007-02-28 08:38:33 31,560 ----a-w c:\windows\assembly\GAC\ipdmctrl\11.0.0.0__71e9bce111e9429c\IPDMCTRL.DLL
    + 2008-11-13 07:56:26 31,560 ----a-w c:\windows\assembly\GAC\ipdmctrl\11.0.0.0__71e9bce111e9429c\IPDMCTRL.DLL
    - 2007-02-28 08:38:33 16,712 ----a-w c:\windows\assembly\GAC\Microsoft.Office.InfoPath.Permission\12.0.0.0__71e9bce111e9429c\Microsoft.Office.InfoPath.Permission.dll
    + 2008-11-13 07:56:27 16,712 ----a-w c:\windows\assembly\GAC\Microsoft.Office.InfoPath.Permission\12.0.0.0__71e9bce111e9429c\Microsoft.Office.InfoPath.Permission.dll
    - 2007-02-28 08:36:53 80,696 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.Access.Dao\12.0.0.0__71e9bce111e9429c\Microsoft.Office.interop.access.dao.dll
    + 2008-11-13 07:55:15 80,696 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.Access.Dao\12.0.0.0__71e9bce111e9429c\Microsoft.Office.interop.access.dao.dll
    - 2007-02-28 08:37:38 1,612,592 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.Access\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Access.dll
    + 2008-11-13 07:55:52 1,612,592 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.Access\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Access.dll
    - 2007-02-28 08:37:38 1,276,720 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.Excel\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Excel.dll
    + 2008-11-13 07:55:53 1,276,720 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.Excel\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Excel.dll
    - 2007-02-28 08:37:38 150,320 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.Graph\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Graph.dll
    + 2008-11-13 07:55:54 150,320 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.Graph\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Graph.dll
    - 2007-02-28 08:38:33 404,296 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.InfoPath.SemiTrust\11.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.InfoPath.SemiTrust.dll
    + 2008-11-13 07:56:28 404,296 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.InfoPath.SemiTrust\11.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.InfoPath.SemiTrust.dll
    - 2007-02-28 08:37:41 88,896 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.InfoPath.Xml\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.InfoPath.Xml.dll
    + 2008-11-13 07:55:55 88,896 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.InfoPath.Xml\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.InfoPath.Xml.dll
    - 2007-02-28 08:37:41 146,232 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.InfoPath\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.InfoPath.dll
    + 2008-11-13 07:55:55 146,232 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.InfoPath\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.InfoPath.dll
    - 2007-02-28 08:37:39 920,376 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.Outlook\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Outlook.dll
    + 2008-11-13 07:55:54 920,376 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.Outlook\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Outlook.dll
    - 2007-02-28 08:37:40 35,648 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.OutlookViewCtl\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.OutlookViewCtl.dll
    + 2008-11-13 07:55:54 35,648 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.OutlookViewCtl\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.OutlookViewCtl.dll
    - 2008-08-15 13:48:18 250,928 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.PowerPoint\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.PowerPoint.dll
    + 2008-11-13 11:13:06 250,928 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.PowerPoint\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.PowerPoint.dll
    - 2007-02-28 08:37:40 232,248 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.Publisher\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Publisher.dll
    + 2008-11-13 07:55:55 232,248 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.Publisher\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Publisher.dll
    - 2007-02-28 08:37:38 20,280 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.SmartTag\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.SmartTag.dll
    + 2008-11-13 07:55:54 20,280 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.SmartTag\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.SmartTag.dll
    - 2008-01-16 06:36:29 783,744 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.Word\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Word.dll
    + 2008-11-13 12:49:30 783,744 ----a-w c:\windows\assembly\GAC\Microsoft.Office.Interop.Word\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Word.dll
    - 2007-02-28 08:38:42 13,312 ----a-w c:\windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.stdformat.dll
    + 2008-11-13 07:56:34 13,312 ----a-w c:\windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.stdformat.dll
    - 2007-02-28 08:37:38 371,496 ----a-w c:\windows\assembly\GAC\Microsoft.Vbe.Interop.Forms\11.0.0.0__71e9bce111e9429c\Microsoft.Vbe.Interop.Forms.dll
    + 2008-11-13 07:55:54 371,496 ----a-w c:\windows\assembly\GAC\Microsoft.Vbe.Interop.Forms\11.0.0.0__71e9bce111e9429c\Microsoft.Vbe.Interop.Forms.dll
    - 2007-02-28 08:37:40 64,288 ----a-w c:\windows\assembly\GAC\Microsoft.Vbe.Interop\12.0.0.0__71e9bce111e9429c\Microsoft.Vbe.Interop.dll
    + 2008-11-13 07:55:55 64,288 ----a-w c:\windows\assembly\GAC\Microsoft.Vbe.Interop\12.0.0.0__71e9bce111e9429c\Microsoft.Vbe.Interop.dll
    - 2007-04-01 11:07:25 229,376 ----a-w c:\windows\assembly\GAC\mscomctl\10.0.4504.0__31bf3856ad364e35\MSCOMCTL.DLL
    + 2008-11-13 07:56:33 229,376 ----a-w c:\windows\assembly\GAC\mscomctl\10.0.4504.0__31bf3856ad364e35\MSCOMCTL.DLL
    - 2007-04-01 11:07:25 4,096 ----a-w c:\windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\msdatasrc.dll
    + 2008-11-13 07:56:34 4,096 ----a-w c:\windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\msdatasrc.dll
    - 2007-02-28 08:37:38 416,544 ----a-w c:\windows\assembly\GAC\office\12.0.0.0__71e9bce111e9429c\OFFICE.DLL
    + 2008-11-13 07:55:54 416,544 ----a-w c:\windows\assembly\GAC\office\12.0.0.0__71e9bce111e9429c\OFFICE.DLL
    - 2007-02-28 08:36:44 12,104 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Access\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Access.dll
    + 2008-11-13 07:55:14 12,104 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Access\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Access.dll
    - 2007-02-28 08:36:54 12,096 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Excel\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Excel.dll
    + 2008-11-13 07:55:16 12,096 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Excel\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Excel.dll
    - 2007-02-28 08:37:54 12,096 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Graph\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Graph.dll
    + 2008-11-13 07:56:05 12,096 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Graph\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Graph.dll
    - 2007-02-28 08:38:33 12,616 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.InfoPath.Xml\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.InfoPath.Xml.dll
    + 2008-11-13 07:56:28 12,616 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.InfoPath.Xml\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.InfoPath.Xml.dll
    - 2007-02-28 08:38:33 12,616 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.InfoPath\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.InfoPath.dll
    + 2008-11-13 07:56:28 12,616 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.InfoPath\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.InfoPath.dll
    - 2007-02-28 08:38:19 12,104 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Outlook\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Outlook.dll
    + 2008-11-13 07:56:16 12,104 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Outlook\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Outlook.dll
    - 2007-02-28 08:38:17 12,632 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.OutlookViewCtl\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.OutlookViewCtl.dll
    + 2008-11-13 07:56:14 12,632 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.OutlookViewCtl\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.OutlookViewCtl.dll
    - 2007-02-28 08:38:19 12,112 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.PowerPoint\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.PowerPoint.dll
    + 2008-11-13 07:56:16 12,112 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.PowerPoint\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.PowerPoint.dll
    - 2007-02-28 08:38:23 12,104 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Publisher\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Publisher.dll
    + 2008-11-13 07:56:21 12,104 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Publisher\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Publisher.dll
    - 2007-02-28 08:38:10 12,104 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.SmartTag\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.SmartTag.dll
    + 2008-11-13 07:56:05 12,104 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.SmartTag\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.SmartTag.dll
    - 2007-02-28 08:38:28 12,096 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Word\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Word.dll
    + 2008-11-13 07:56:25 12,096 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Word\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Word.dll
    - 2007-02-28 08:38:11 12,080 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Vbe.Interop\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Vbe.Interop.dll
    + 2008-11-13 07:56:08 12,080 ----a-w c:\windows\assembly\GAC\Policy.11.0.Microsoft.Vbe.Interop\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Vbe.Interop.dll
    - 2007-02-28 08:38:10 11,544 ----a-w c:\windows\assembly\GAC\Policy.11.0.office\12.0.0.0__71e9bce111e9429c\Policy.11.0.Office.dll
    + 2008-11-13 07:56:08 11,544 ----a-w c:\windows\assembly\GAC\Policy.11.0.office\12.0.0.0__71e9bce111e9429c\Policy.11.0.Office.dll
    - 2007-04-01 11:07:25 16,384 ----a-w c:\windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll
    + 2008-11-13 07:56:34 16,384 ----a-w c:\windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll
    - 2008-02-05 13:47:41 69,120 ----a-w c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
    + 2009-02-22 11:11:58 69,120 ----a-w c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
    - 2008-02-05 13:47:50 72,192 ----a-w c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
    + 2009-02-22 11:12:12 72,192 ----a-w c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
    - 2008-10-16 14:22:16 118,112 ----a-w c:\windows\assembly\GAC_32\Microsoft.Office.InfoPath.Client.Internal.Host.Interop\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Infopath.Client.Internal.Host.Interop.dll
    + 2008-11-13 12:49:36 120,408 ----a-w c:\windows\assembly\GAC_32\Microsoft.Office.InfoPath.Client.Internal.Host.Interop\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Infopath.Client.Internal.Host.Interop.dll
    - 2008-02-05 13:50:22 151,552 ----a-w c:\windows\assembly\GAC_32\Microsoft.Transactions.Bridge.Dtc\3.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
    + 2009-02-22 11:16:56 163,840 ----a-w c:\windows\assembly\GAC_32\Microsoft.Transactions.Bridge.Dtc\3.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
    - 2008-10-16 14:22:33 367,400 ----a-w c:\windows\assembly\GAC_32\Microsoft.VisualStudio.Tools.Applications.InteropAdapter\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.InteropAdapter.dll
    + 2008-11-13 07:56:41 367,400 ----a-w c:\windows\assembly\GAC_32\Microsoft.VisualStudio.Tools.Applications.InteropAdapter\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.InteropAdapter.dll
    - 2008-02-05 13:47:17 4,444,160 ----a-w c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
    + 2009-02-22 11:12:44 4,546,560 ----a-w c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
    - 2008-02-05 13:50:32 4,174,336 ----a-w c:\windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll
    + 2009-02-22 11:17:08 4,210,688 ----a-w c:\windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll
    - 2008-02-05 13:47:53 483,840 ----a-w c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
    + 2009-02-22 11:12:41 486,400 ----a-w c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
    - 2008-02-05 13:47:32 3,036,160 ----a-w c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
    + 2009-02-22 11:12:53 2,933,248 ----a-w c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
    - 2008-02-05 13:47:57 258,048 ----a-w c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
    + 2009-02-22 11:12:31 258,048 ----a-w c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
    - 2008-02-05 13:47:57 113,664 ----a-w c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
    + 2009-02-22 11:12:31 113,664 ----a-w c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
    - 2008-02-05 13:50:30 346,624 ----a-w c:\windows\assembly\GAC_32\System.Printing\3.0.0.0__31bf3856ad364e35\System.Printing.dll
    + 2009-02-22 11:17:09 368,640 ----a-w c:\windows\assembly\GAC_32\System.Printing\3.0.0.0__31bf3856ad364e35\System.Printing.dll
    - 2008-02-05 13:47:51 261,120 ----a-w c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
    + 2009-02-22 11:12:19 261,632 ----a-w c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
    - 2008-02-05 13:47:30 5,431,296 ----a-w c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
    + 2009-02-22 11:11:32 5,238,784 ----a-w c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
    - 2008-02-05 13:47:38 10,752 ----a-w c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
    + 2009-02-22 11:11:56 10,752 ----a-w c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
    - 2008-02-05 13:47:31 507,904 ----a-w c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
    + 2009-02-22 11:11:37 507,904 ----a-w c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
    - 2008-02-05 13:47:41 13,312 ----a-w c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
    + 2009-02-22 11:11:57 13,312 ----a-w c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
    - 2008-02-05 13:47:45 8,192 ----a-w c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
    + 2009-02-22 11:11:59 8,192 ----a-w c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
    - 2008-02-05 13:47:47 77,824 ----a-w c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
    + 2009-02-22 11:12:01 77,824 ----a-w c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
    - 2008-02-05 13:47:47 6,656 ----a-w c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
    + 2009-02-22 11:12:04 6,656 ----a-w c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
    + 2009-02-22 11:19:28 106,496 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Conversion.v3.5\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Conversion.v3.5.dll
    - 2008-02-05 13:47:58 348,160 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
    + 2009-02-22 11:12:22 348,160 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
    + 2009-02-22 11:19:29 733,184 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
    - 2008-02-05 13:47:58 36,864 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
    + 2009-02-22 11:12:23 36,864 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
    + 2009-02-22 11:19:30 36,864 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
    + 2009-02-22 11:19:30 802,816 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks.v3.5\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.v3.5.dll
    - 2008-02-05 13:48:00 655,360 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
    + 2009-02-22 11:12:25 655,360 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
    + 2009-02-22 11:19:31 94,208 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities.v3.5\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.v3.5.dll
    - 2008-02-05 13:48:00 77,824 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
    + 2009-02-22 11:12:30 77,824 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
    - 2008-02-05 13:47:48 749,568 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
    + 2009-02-22 11:12:13 749,568 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
    - 2008-10-16 14:22:16 609,104 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Office.InfoPath.Client.Internal.Host\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Infopath.Client.Internal.Host.dll
    + 2008-11-13 12:49:36 611,392 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Office.InfoPath.Client.Internal.Host\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Infopath.Client.Internal.Host.dll
    - 2008-10-16 14:22:16 43,840 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Office.InfoPath.FormControl\12.0.0.0__71e9bce111e9429c\microsoft.office.infopath.formcontrol.dll
    + 2008-11-13 07:56:27 43,840 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Office.InfoPath.FormControl\12.0.0.0__71e9bce111e9429c\microsoft.office.infopath.formcontrol.dll
    - 2008-10-16 14:22:17 39,728 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Office.InfoPath.Vsta\12.0.0.0__71e9bce111e9429c\Microsoft.Office.InfoPath.Vsta.dll
    + 2008-11-13 07:56:28 39,728 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Office.InfoPath.Vsta\12.0.0.0__71e9bce111e9429c\Microsoft.Office.InfoPath.Vsta.dll
    - 2008-10-16 14:22:16 60,200 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Office.InfoPath\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Infopath.dll
    + 2008-11-13 07:56:28 60,200 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Office.InfoPath\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Infopath.dll
    - 2008-02-05 13:50:22 397,312 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Transactions.Bridge\3.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.dll
    + 2009-02-22 11:16:55 397,312 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Transactions.Bridge\3.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.dll
    - 2008-02-05 13:47:46 110,592 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
    + 2009-02-22 11:12:11 110,592 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
    - 2008-02-05 13:47:45 372,736 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
    + 2009-02-22 11:12:09 372,736 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
    - 2008-02-05 13:47:53 28,672 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
    + 2009-02-22 11:12:17 28,672 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
    - 2008-02-05 13:47:44 671,744 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
    + 2009-02-22 11:12:07 659,456 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
    + 2009-02-22 11:19:29 41,984 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualC.STLCLR\1.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.STLCLR.dll
    - 2008-02-05 13:47:25 5,632 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
    + 2009-02-22 11:12:49 5,632 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
    + 2008-11-13 07:51:54 11,560 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Adapter.resources\8.0.0.0_fr_b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Adapter.resources.dll
    - 2008-10-16 14:22:22 211,736 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Adapter\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Adapter.dll
    + 2008-11-13 07:56:33 211,736 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Adapter\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Adapter.dll
    + 2008-11-13 07:51:54 12,600 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.AddInManager.resources\8.0.0.0_fr_b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.AddInManager.resources.dll
    - 2008-10-16 14:22:22 105,248 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.AddInManager\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.AddInManager.dll
    + 2008-11-13 07:56:33 105,248 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.AddInManager\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.AddInManager.dll
    + 2008-11-13 07:51:54 73,728 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Blueprints.resources\8.0.0.0_fr_b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Blueprints.resources.dll
    - 2008-10-16 14:22:21 330,520 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Blueprints\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Blueprints.dll
    + 2008-11-13 07:56:33 330,520 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Blueprints\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Blueprints.dll
    + 2008-11-13 07:51:54 11,064 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.ComRPCChannel.resources\8.0.0.0_fr_b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.ComRPCChannel.resources.dll
    - 2008-10-16 14:22:22 39,712 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.ComRPCChannel\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.ComRPCChannel.dll
    + 2008-11-13 07:56:33 39,712 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.ComRPCChannel\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.ComRPCChannel.dll
    - 2008-10-16 14:22:23 39,704 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Contract\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Contract.dll
    + 2008-11-13 07:56:33 39,704 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Contract\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Contract.dll
    + 2008-11-13 07:51:54 13,104 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.DesignTime.resources\8.0.0.0_fr_b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.DesignTime.resources.dll
    - 2008-10-16 14:22:21 72,472 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.DesignTime\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.DesignTime.dll
    + 2008-11-13 07:56:33 72,472 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.DesignTime\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.DesignTime.dll
    - 2008-02-05 13:47:55 12,800 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
    + 2009-02-22 11:12:18 12,800 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
    - 2008-02-05 13:47:43 32,768 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
    + 2009-02-22 11:12:06 32,768 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
    - 2008-02-05 13:47:42 7,168 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
    + 2009-02-22 11:12:02 7,168 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
    - 2008-02-05 13:50:19 602,112 ----a-w c:\windows\assembly\GAC_MSIL\PresentationBuildTasks\3.0.0.0__31bf3856ad364e35\PresentationBuildTasks.dll
    + 2009-02-22 11:17:13 598,016 ----a-w c:\windows\assembly\GAC_MSIL\PresentationBuildTasks\3.0.0.0__31bf3856ad364e35\PresentationBuildTasks.dll
    - 2008-02-05 13:50:34 32,768 ----a-w c:\windows\assembly\GAC_MSIL\PresentationCFFRasterizer\3.0.0.0__31bf3856ad364e35\PresentationCFFRasterizer.dll
    + 2009-02-22 11:17:06 32,768 ----a-w c:\windows\assembly\GAC_MSIL\PresentationCFFRasterizer\3.0.0.0__31bf3856ad364e35\PresentationCFFRasterizer.dll
    + 2009-02-22 11:17:13 46,104 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFontCache\3.0.0.0__31bf3856ad364e35\PresentationFontCache.exe
    - 2008-02-05 13:50:27 184,320 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.Aero\3.0.0.0__31bf3856ad364e35\PresentationFramework.Aero.dll
    + 2009-02-22 11:17:15 196,608 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.Aero\3.0.0.0__31bf3856ad364e35\PresentationFramework.Aero.dll
    - 2008-02-05 13:50:27 131,072 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.Classic\3.0.0.0__31bf3856ad364e35\PresentationFramework.Classic.dll
    + 2009-02-22 11:17:15 139,264 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.Classic\3.0.0.0__31bf3856ad364e35\PresentationFramework.Classic.dll
    - 2008-02-05 13:50:27 376,832 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.Luna\3.0.0.0__31bf3856ad364e35\PresentationFramework.Luna.dll
    + 2009-02-22 11:17:15 397,312 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.Luna\3.0.0.0__31bf3856ad364e35\PresentationFramework.Luna.dll
    - 2008-02-05 13:50:27 151,552 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.Royale\3.0.0.0__31bf3856ad364e35\PresentationFramework.Royale.dll
    + 2009-02-22 11:17:16 163,840 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.Royale\3.0.0.0__31bf3856ad364e35\PresentationFramework.Royale.dll
    - 2008-02-05 13:50:27 5,210,112 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework\3.0.0.0__31bf3856ad364e35\PresentationFramework.dll
    + 2009-02-22 11:17:16 5,283,840 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework\3.0.0.0__31bf3856ad364e35\PresentationFramework.dll
    - 2008-02-05 13:50:26 897,024 ----a-w c:\windows\assembly\GAC_MSIL\PresentationUI\3.0.0.0__31bf3856ad364e35\PresentationUI.dll
    + 2009-02-22 11:17:17 864,256 ----a-w c:\windows\assembly\GAC_MSIL\PresentationUI\3.0.0.0__31bf3856ad364e35\PresentationUI.dll
    - 2008-02-05 13:50:31 528,384 ----a-w c:\windows\assembly\GAC_MSIL\ReachFramework\3.0.0.0__31bf3856ad364e35\ReachFramework.dll
    + 2009-02-22 11:17:09 528,384 ----a-w c:\windows\assembly\GAC_MSIL\ReachFramework\3.0.0.0__31bf3856ad364e35\ReachFramework.dll
    + 2009-02-22 11:19:31 5,632 ----a-w c:\windows\assembly\GAC_MSIL\Sentinel.v3.5Client\3.5.0.0__b03f5f7f11d50a3a\Sentinel.v3.5Client.dll
    - 2008-02-05 13:50:23 102,400 ----a-w c:\windows\assembly\GAC_MSIL\SMDiagnostics\3.0.0.0__b77a5c561934e089\SMdiagnostics.dll
    + 2009-02-22 11:16:59 110,592 ----a-w c:\windows\assembly\GAC_MSIL\SMDiagnostics\3.0.0.0__b77a5c561934e089\SMdiagnostics.dll
    - 2008-02-05 13:47:49 110,592 ----a-w c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
    + 2009-02-22 11:12:36 110,592 ----a-w c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
    - 2008-10-16 14:22:22 47,832 ----a-w c:\windows\assembly\GAC_MSIL\System.AddIn.Contract\2.0.0.0__b03f5f7f11d50a3a\System.AddIn.Contract.dll
    + 2009-02-22 11:19:32 45,056 ----a-w c:\windows\assembly\GAC_MSIL\System.AddIn.Contract\2.0.0.0__b03f5f7f11d50a3a\System.AddIn.Contract.dll
    - 2008-10-16 14:22:22 39,624 ----a-w c:\windows\assembly\GAC_MSIL\System.AddIn\2.0.0.0__b03f5f7f11d50a3a\System.AddIn.dll
    + 2008-11-13 07:56:33 39,624 ----a-w c:\windows\assembly\GAC_MSIL\System.AddIn\2.0.0.0__b03f5f7f11d50a3a\System.AddIn.dll
    + 2009-02-22 11:19:33 163,840 ----a-w c:\windows\assembly\GAC_MSIL\System.AddIn\3.5.0.0__b77a5c561934e089\System.AddIn.dll
    + 2009-02-22 11:19:40 57,344 ----a-w c:\windows\assembly\GAC_MSIL\System.ComponentModel.DataAnnotations\3.5.0.0__31bf3856ad364e35\System.ComponentModel.DataAnnotations.dll
    - 2008-02-05 13:47:50 81,920 ----a-w c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
    + 2009-02-22 11:12:39 81,920 ----a-w c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
    - 2008-02-05 13:47:32 425,984 ----a-w c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
    + 2009-02-22 11:12:51 425,984 ----a-w c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
    + 2009-02-22 11:19:34 667,648 ----a-w c:\windows\assembly\GAC_MSIL\System.Core\3.5.0.0__b77a5c561934e089\System.Core.dll
    + 2009-02-22 11:19:35 53,248 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.DataSetExtensions\3.5.0.0__b77a5c561934e089\System.Data.DataSetExtensions.dll
    + 2009-02-22 11:19:35 229,376 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.Entity.Design\3.5.0.0__b77a5c561934e089\System.Data.Entity.Design.dll
    + 2009-02-22 11:19:36 2,879,488 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.Entity\3.5.0.0__b77a5c561934e089\System.Data.Entity.dll
    + 2009-02-22 11:19:27 684,032 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.Linq\3.5.0.0__b77a5c561934e089\System.Data.Linq.dll
    + 2009-02-22 11:19:25 294,912 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.Services.Client\3.5.0.0__b77a5c561934e089\System.Data.Services.Client.dll
    + 2009-02-22 11:19:25 114,688 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.Services.Design\3.5.0.0__b77a5c561934e089\System.Data.Services.Design.dll
    + 2009-02-22 11:19:26 442,368 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.Services\3.5.0.0__b77a5c561934e089\System.Data.Services.dll
    - 2008-02-05 13:47:33 741,376 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
    + 2009-02-22 11:12:25 745,472 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
    - 2008-02-05 13:47:34 933,888 ----a-w c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
    + 2009-02-22 11:12:21 970,752 ----a-w c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
    - 2008-02-05 13:48:01 5,070,848 ----a-w c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
    + 2009-02-22 11:11:55 5,062,656 ----a-w c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
    + 2009-02-22 11:19:27 286,720 ----a-w c:\windows\assembly\GAC_MSIL\System.DirectoryServices.AccountManagement\3.5.0.0__b77a5c561934e089\System.DirectoryServices.AccountManagement.dll
    - 2008-02-05 13:47:59 188,416 ----a-w c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
    + 2009-02-22 11:12:17 188,416 ----a-w c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
    - 2008-02-05 13:47:39 401,408 ----a-w c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
    + 2009-02-22 11:12:20 401,408 ----a-w c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
    - 2008-02-05 13:47:54 81,920 ----a-w c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
    + 2009-02-22 11:11:53 81,920 ----a-w c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
    - 2008-02-05 13:47:26 630,784 ----a-w c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
    + 2009-02-22 11:12:55 626,688 ----a-w c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
    - 2008-02-05 13:50:36 126,976 ----a-w c:\windows\assembly\GAC_MSIL\System.IdentityModel.Selectors\3.0.0.0__b77a5c561934e089\System.IdentityModel.Selectors.dll
    + 2009-02-22 11:17:19 126,976 ----a-w c:\windows\assembly\GAC_MSIL\System.IdentityModel.Selectors\3.0.0.0__b77a5c561934e089\System.IdentityModel.Selectors.dll
    - 2008-02-05 13:50:36 430,080 ----a-w c:\windows\assembly\GAC_MSIL\System.IdentityModel\3.0.0.0__b77a5c561934e089\System.IdentityModel.dll
    + 2009-02-22 11:17:00 430,080 ----a-w c:\windows\assembly\GAC_MSIL\System.IdentityModel\3.0.0.0__b77a5c561934e089\System.IdentityModel.dll
    - 2008-02-05 13:50:22 131,072 ----a-w c:\windows\assembly\GAC_MSIL\System.IO.Log\3.0.0.0__b03f5f7f11d50a3a\System.IO.Log.dll
    + 2009-02-22 11:17:00 131,072 ----a-w c:\windows\assembly\GAC_MSIL\System.IO.Log\3.0.0.0__b03f5f7f11d50a3a\System.IO.Log.dll
    + 2009-02-22 11:19:36 143,360 ----a-w c:\windows\assembly\GAC_MSIL\System.Management.Instrumentation\3.5.0.0__b77a5c561934e089\System.Management.Instrumentation.dll
    - 2008-02-05 13:47:56 372,736 ----a-w c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
    + 2009-02-22 11:12:27 372,736 ----a-w c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
    - 2008-02-05 13:47:54 258,048 ----a-w c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
    + 2009-02-22 11:12:24 258,048 ----a-w c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
    + 2009-02-22 11:19:40 233,472 ----a-w c:\windows\assembly\GAC_MSIL\System.Net\3.5.0.0__b03f5f7f11d50a3a\System.Net.dll
    - 2008-02-05 13:47:52 299,008 ----a-w c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
    + 2009-02-22 11:12:22 303,104 ----a-w c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
    - 2008-02-05 13:47:52 131,072 ----a-w c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
    + 2009-02-22 11:12:20 131,072 ----a-w c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
    - 2008-02-05 13:50:22 929,792 ----a-w c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
    + 2009-02-22 11:17:01 966,656 ----a-w c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
    - 2008-02-05 13:47:27 258,048 ----a-w c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
    + 2009-02-22 11:12:58 258,048 ----a-w c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
    - 2008-02-05 13:50:19 159,744 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceModel.Install\3.0.0.0__b77a5c561934e089\System.ServiceModel.Install.dll
    + 2009-02-22 11:17:05 73,728 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceModel.Install\3.0.0.0__b77a5c561934e089\System.ServiceModel.Install.dll
    - 2008-02-05 13:50:19 32,768 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceModel.WasHosting\3.0.0.0__b77a5c561934e089\System.ServiceModel.WasHosting.dll
    + 2009-02-22 11:17:06 32,768 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceModel.WasHosting\3.0.0.0__b77a5c561934e089\System.ServiceModel.WasHosting.dll
    + 2009-02-22 11:19:24 569,344 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceModel.Web\3.5.0.0__31bf3856ad364e35\System.ServiceModel.Web.dll
    - 2008-02-05 13:50:21 5,971,968 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceModel\3.0.0.0__b77a5c561934e089\System.ServiceModel.dll
    + 2009-02-22 11:17:02 5,931,008 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceModel\3.0.0.0__b77a5c561934e089\System.ServiceModel.dll
    - 2008-02-05 13:47:28 114,688 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
    + 2009-02-22 11:12:57 114,688 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
    + 2009-02-22 11:19:41 77,824 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Abstractions\3.5.0.0__31bf3856ad364e35\System.Web.Abstractions.dll
    + 2009-02-22 11:19:42 32,768 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.DynamicData.Design\3.5.0.0__31bf3856ad364e35\System.Web.DynamicData.Design.dll
    + 2009-02-22 11:19:42 225,280 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.DynamicData\3.5.0.0__31bf3856ad364e35\System.Web.DynamicData.dll
    + 2009-02-22 11:19:37 131,072 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Entity.Design\3.5.0.0__b77a5c561934e089\System.Web.Entity.Design.dll
    + 2009-02-22 11:19:37 139,264 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Entity\3.5.0.0__b77a5c561934e089\System.Web.Entity.dll
    + 2009-02-22 11:19:43 335,872 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Extensions.Design\3.5.0.0__31bf3856ad364e35\System.Web.Extensions.Design.dll
    + 2009-02-22 11:19:44 1,277,952 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Extensions\3.5.0.0__31bf3856ad364e35\System.Web.Extensions.dll
    - 2008-02-05 13:47:37 884,736 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
    + 2009-02-22 11:11:42 835,584 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
    - 2008-02-05 13:47:38 90,112 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
    + 2009-02-22 11:11:38 77,824 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
    + 2009-02-22 11:19:45 61,440 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Routing\3.5.0.0__31bf3856ad364e35\System.Web.Routing.dll
    - 2008-02-05 13:47:36 839,680 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
    + 2009-02-22 11:11:39 839,680 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
    - 2008-02-05 13:47:40 5,013,504 ----a-w c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
    + 2009-02-22 11:11:45 5,025,792 ----a-w c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
    + 2009-02-22 11:19:38 12,288 ----a-w c:\windows\assembly\GAC_MSIL\System.Windows.Presentation\3.5.0.0__b77a5c561934e089\System.Windows.Presentation.dll
    - 2008-02-05 13:50:35 1,152,040 ----a-w c:\windows\assembly\GAC_MSIL\System.Workflow.Activities\3.0.0.0__31bf3856ad364e35\System.Workflow.Activities.dll
    + 2009-02-22 11:17:12 1,138,688 ----a-w c:\windows\assembly\GAC_MSIL\System.Workflow.Activities\3.0.0.0__31bf3856ad364e35\System.Workflow.Activities.dll
    - 2008-02-05 13:50:35 1,635,376 ----a-w c:\windows\assembly\GAC_MSIL\System.Workflow.ComponentModel\3.0.0.0__31bf3856ad364e35\System.Workflow.ComponentModel.dll
    + 2009-02-22 11:17:12 1,630,208 ----a-w c:\windows\assembly\GAC_MSIL\System.Workflow.ComponentModel\3.0.0.0__31bf3856ad364e35\System.Workflow.ComponentModel.dll
    - 2008-02-05 13:50:35 578,592 ----a-w c:\windows\assembly\GAC_MSIL\System.Workflow.Runtime\3.0.0.0__31bf3856ad364e35\System.Workflow.Runtime.dll
    + 2009-02-22 11:17:12 540,672 ----a-w c:\windows\assembly\GAC_MSIL\System.Workflow.Runtime\3.0.0.0__31bf3856ad364e35\System.Workflow.Runtime.dll
    + 2009-02-22 11:19:25 507,904 ----a-w c:\windows\assembly\GAC_MSIL\System.WorkflowServices\3.5.0.0__31bf3856ad364e35\System.WorkflowServices.dll
    + 2009-02-22 11:19:38 139,264 ----a-w c:\windows\assembly\GAC_MSIL\System.Xml.Linq\3.5.0.0__b77a5c561934e089\System.Xml.Linq.dll
    - 2008-02-05 13:47:29 2,068,480 ----a-w c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
    + 2009-02-22 11:12:56 2,048,000 ----a-w c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
    - 2008-02-05 13:47:35 3,076,096 ----a-w c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
    + 2009-02-22 11:12:14 3,149,824 ----a-w c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
    - 2008-02-05 13:50:19 163,840 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationClient\3.0.0.0__31bf3856ad364e35\UIAutomationClient.dll
    + 2009-02-22 11:17:14 167,936 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationClient\3.0.0.0__31bf3856ad364e35\UIAutomationClient.dll
    - 2008-02-05 13:50:18 372,736 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationClientsideProviders\3.0.0.0__31bf3856ad364e35\UIAutomationClientsideProviders.dll
    + 2009-02-22 11:17:14 385,024 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationClientsideProviders\3.0.0.0__31bf3856ad364e35\UIAutomationClientsideProviders.dll
    - 2008-02-05 13:50:30 32,768 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationProvider\3.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll
    + 2009-02-22 11:17:10 40,960 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationProvider\3.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll
    - 2008-02-05 13:50:30 86,016 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationTypes\3.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll
    + 2009-02-22 11:17:10 98,304 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationTypes\3.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll
    - 2008-02-05 13:50:29 1,204,224 ----a-w c:\windows\assembly\GAC_MSIL\WindowsBase\3.0.0.0__31bf3856ad364e35\WindowsBase.dll
    + 2009-02-22 11:17:10 1,245,184 ----a-w c:\windows\assembly\GAC_MSIL\WindowsBase\3.0.0.0__31bf3856ad364e35\WindowsBase.dll
    - 2008-02-05 13:50:18 81,920 ----a-w c:\windows\assembly\GAC_MSIL\WindowsFormsIntegration\3.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll
    + 2009-02-22 11:17:14 94,208 ----a-w c:\windows\assembly\GAC_MSIL\WindowsFormsIntegration\3.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll
    + 2009-02-22 11:26:26 25,600 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Accessibility\c2af7cfbb47c077029a2645930b4eeac\Accessibility.ni.dll
    + 2009-02-22 14:19:15 842,240 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\AspNetMMCExt\c7ffd8c23e8de4018a88185b3b60631e\AspNetMMCExt.ni.dll
    + 2009-02-22 14:19:01 409,600 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\19b50dd470540911fc5cc65331a769e4\ComSvcConfig.ni.exe
    + 2009-02-22 14:19:21 220,672 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\e148983beeb0f30918b0564849a16456\CustomMarshalers.ni.dll
    + 2009-02-22 14:19:16 14,336 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\dfsvc\a2865dcec9c5d3cc9c55f026cbad6fcc\dfsvc.ni.exe
    + 2009-02-22 14:19:21 222,720 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Con#\c5c4db4f9bc7a454e9cfc2548a9d45a5\Microsoft.Build.Conversion.v3.5.ni.dll
    + 2009-02-22 14:19:20 1,886,208 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\ce984d7bbd9a6d5d3cca28c4e5038020\Microsoft.Build.Engine.ni.dll
    + 2009-02-22 14:19:23 838,656 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\daf5ff5e06c80eefa80c6fcc79aec963\Microsoft.Build.Engine.ni.dll
    + 2009-02-22 11:27:0
    -------
    onex


    PRODUITS

    TÉLÉCHARGER - LOGICIELS

    JEUX VIDÉOS

    LOISIRS

    01NET PRO

    AVIS ET COMMENTAIRES

    A PROPOS DE 01NET

    publicité
    > Call of Duty Modern Warfare 2
    Spectaculaire, intense et terriblement prenant !

    Service 01net
    Newsletters 01net
    abonnez vous gratuitement !
      
    01Informatique
    01 INFORMATIQUE
    L'hebdo de référence des décideurs informatiques.
    Micro Hebdo
    MICRO HEBDO
    L'hebdo qui vous simplifie la micro
    et Internet.
    L'Ordinateur Individuel
    L'ORDINATEUR INDIVIDUEL
    Le mensuel informatique qui vous informe et vous conseille.
    Nous contacter  |  Charte de confiance  |  Voir notice légale

    01net.  -  01men  -  RMC  -  BFM Radio  -  BFM TV  -  TousLesPodcasts  -  01informatique.fr  -  Association RMC-BFM
    Tous droits réservés © 1999 - 2009 Internext - 01net.