ordi lent au démarrage et pour s'éteindre [RESOLU]

Discussions gérénales sur Microsoft Windows Vista, des différentes versions.
Verrouillé
lyam
Novice
Novice
Messages : 9
Enregistré le : 03 août 2010, 12:22

ordi lent au démarrage et pour s'éteindre [RESOLU]

Message par lyam »

Bonjour,
J’ai réinstallez après formatage mon vista original (pas une version crackée). Une fois, j'ai eu un écran bleu, je n'ai pas eu le temps de lire ce qui était marqué dessus, car il a redémarré tout seul. Depuis à l'ouverture mon ordi est lent, pareil pour s'éteindre, et mets plus de 5 minutes pour se connecter à internet.
J'ai passé ccleaner, j'ai Windows Security, et passez également Bitdefender. Visiblement il n'y a rien.
Rien n'y fait il lent à démarrer et lent à s'éteindre.
Que puis-je faire ?
Modifié en dernier par lyam le 05 août 2010, 16:54, modifié 1 fois.
Avatar du membre
nardino
Modérateurs
Modérateurs
Messages : 11993
Enregistré le : 05 févr. 2007, 17:38
Localisation : Reims
Contact :

Re: ordi lent au démarrage et pour s'éteindre

Message par nardino »

Bonjour et bienvenue.

Pour avoir un premier aperçu des problèmes rencontrés sur ton ordinateur,

Image Télécharge et installe Malwarebytes Anti-Malware de RubbeR DuckY

Image Double-clique sur le fichier mbam-setup-1.46.exe (sous Vista et 7 autorise les modifications)
A la fin de l'installation, veille à ce que les options suivantes soient cochées
  • -Mettre à jour Malwarebytes' Anti-Malware
    -Exécuter Malwarebytes' Anti-Malware
Image Clique sur Terminer
Une fenêtre Mise à jour de Malwarebytes' Anti-Malware va s'ouvrir avec une barre de progression.
Puis une autre annonçant le succès de la mise à jour de la base de données. Clique sur OK.
Le programme s'ouvre sur l'onglet Recherche.
Coche Image Exécuter un examen rapide, clique sur le bouton Image

Image A la fin du scan, sélectionne tout et clique sur Supprimer la sélection

Image Poste le rapport qui s'ouvre après cette suppression.
Redémarre le pc si cela est demandé
Tu peux retrouver le rapport dans l'onglet Rapports/Logs avec la date et l'heure d'exécution.

Image Télécharge OTL de OldTimer sur ton bureau.
Image Clique sur OTL.exe
Image Coche :
En haut, à droite
  • -Tous les utilisateurs
    -Avec analyse 64 bits sera coché automatiquement si c'est la cas de ton système.
    -Rapport standard
En bas, à droite
  • -Recherche LOP
    -Recherche Purity
Processus, Services, Drivers, Registre:Standard, Modules, Pilotes doivent être sur [Avec liste blanche] par défaut.
Registre : approfondi est sur Aucun.

Image

Image Clique sur le bouton [Analyse] en haut en bleu.
L'analyse va prendre une ou deux minutes.
Une fois celle-ci terminée un rapport va s'ouvrir
Image Tu postes ce rapport par copier-coller et tu le fermes.
Tu fermes aussi le fichier Extras.txt dans la barre des tâches, il sera demandé en cas de nécessité.
Ils seront sauvegardés sur le bureau (OTL.txt et Extras.txt) ou dans le dossier où se trouve OTL.exe.
Image En cas de difficulté pour poster les rapports par copier-coller, tu peux les héberger sur Cjoint.com
Poste les liens obtenus dans ce cas.

Image Rappel pour faire un copier-coller.
  • Appuie sur les touches CTRL+A pour sélectionner tout le rapport, puis sur CTRL+C pour tout copier dans le presse-papier.
    Dans ta réponse tu appuies sur CTRL+V pour coller le contenu du presse-papier.
    Tu renouvelles pour chaque rapport demandé.
Selon l'analyse des deux rapports, nous établirons une procédure pour la désinfection ou bien nous compléterons les recherches avec d'autres outils.

@+
Image
Clic sur l'image pour ouvrir le site.
lyam
Novice
Novice
Messages : 9
Enregistré le : 03 août 2010, 12:22

Re: ordi lent au démarrage et pour s'éteindre

Message par lyam »

alors merci de m'avoir répondu

le fichier malware

Malwarebytes' Anti-Malware 1.45
www.malwarebytes.org

Version de la base de données: 3902

Windows 6.0.6002 Service Pack 2
Internet Explorer 7.0.6002.18005

03/08/2010 13:54:08
mbam-log-2010-08-03 (13-54-08).txt

Type d'examen: Examen rapide
Elément(s) analysé(s): 110132
Temps écoulé: 11 minute(s), 12 seconde(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
Avatar du membre
nardino
Modérateurs
Modérateurs
Messages : 11993
Enregistré le : 05 févr. 2007, 17:38
Localisation : Reims
Contact :

Re: ordi lent au démarrage et pour s'éteindre

Message par nardino »

A suivre... :mrgreen:
@+
Image
Clic sur l'image pour ouvrir le site.
lyam
Novice
Novice
Messages : 9
Enregistré le : 03 août 2010, 12:22

Re: ordi lent au démarrage et pour s'éteindre

Message par lyam »

et voici l'autre parti 1/2
OTL logfile created on: 03/08/2010 14:10:37 - Run 1
OTL by OldTimer - Version 3.2.9.1 Folder = C:\Users\lyam\Desktop
Windows Vista Ultimate Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6002.18005)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy

2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 33,00% Memory free
4,00 Gb Paging File | 3,00 Gb Available in Paging File | 63,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 179,12 Gb Total Space | 137,50 Gb Free Space | 76,76% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: PC-DE-LYAM
Current User Name: lyam
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard

========== Processes (SafeList) ==========

PRC - [2010/08/03 13:45:37 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Users\lyam\Desktop\OTL.exe
PRC - [2010/07/31 14:13:19 | 001,615,688 | ---- | M] (BitDefender S.R.L.) -- C:\Program Files\BitDefender\BitDefender 2010\vsserv.exe
PRC - [2010/07/31 14:11:08 | 001,091,984 | ---- | M] (BitDefender S.R.L.) -- C:\Program Files\BitDefender\BitDefender 2010\seccenter.exe
PRC - [2010/07/31 14:02:08 | 001,123,360 | ---- | M] (BitDefender S.R.L.) -- C:\Program Files\BitDefender\BitDefender 2010\bdagent.exe
PRC - [2010/07/31 14:01:02 | 000,308,552 | ---- | M] (BitDefender S.R.L.) -- C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe
PRC - [2010/06/21 22:37:54 | 001,619,272 | ---- | M] (O&O Software GmbH) -- C:\Program Files\OO Software\Defrag\oodag.exe
PRC - [2010/06/21 22:37:44 | 002,528,584 | ---- | M] (O&O Software GmbH) -- C:\Program Files\OO Software\Defrag\oodtray.exe
PRC - [2010/06/01 14:53:46 | 001,093,208 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Essentials\msseces.exe
PRC - [2010/04/27 19:30:52 | 003,220,912 | ---- | M] (Tonec Inc.) -- C:\Program Files\Internet Download Manager\IDMan.exe
PRC - [2010/03/25 21:40:44 | 000,017,904 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft Security Essentials\MsMpEng.exe
PRC - [2010/03/22 22:36:08 | 000,302,928 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2010/03/22 22:36:06 | 000,437,584 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2010/01/09 21:37:50 | 004,640,000 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
PRC - [2009/10/15 10:51:52 | 000,263,600 | ---- | M] (Tonec Inc.) -- C:\Program Files\Internet Download Manager\IEMonitor.exe
PRC - [2009/08/24 13:23:02 | 000,282,624 | ---- | M] (France Telecom SA) -- C:\Program Files\Orange\Connexion Internet Orange\systray\systrayapp.exe
PRC - [2009/08/24 13:22:44 | 000,717,552 | ---- | M] (France Telecom SA) -- C:\Program Files\Orange\Connexion Internet Orange\Launcher\Launcher.exe
PRC - [2009/08/24 13:22:34 | 000,069,632 | ---- | M] (France Telecom SA) -- C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
PRC - [2009/08/24 13:22:30 | 000,053,248 | ---- | M] (France Telecom SA) -- C:\Program Files\Orange\Connexion Internet Orange\connectivity\CoreCom\OraConfigRecover.exe
PRC - [2009/08/24 13:22:28 | 000,495,616 | ---- | M] (France Telecom SA) -- C:\Program Files\Orange\Connexion Internet Orange\connectivity\CoreCom\CoreCom.exe
PRC - [2009/08/24 13:22:26 | 000,974,848 | ---- | M] (France Telecom SA) -- C:\Program Files\Orange\Connexion Internet Orange\connectivity\connectivitymanager.exe
PRC - [2009/08/24 13:22:26 | 000,090,112 | ---- | M] (France Telecom SA) -- C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
PRC - [2009/04/11 08:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2009/04/11 08:27:28 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conime.exe
PRC - [2009/01/26 15:31:16 | 002,144,088 | RHS- | M] (Safer Networking Limited) -- C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
PRC - [2008/02/27 14:53:42 | 000,278,528 | ---- | M] (Orbiscom Ltd. All rights reserved.) -- C:\Program Files\e-Carte Bleue Banque Populaire\ecbl-nxbp.exe
PRC - [2008/02/11 20:13:06 | 000,170,520 | ---- | M] (Intel Corporation) -- C:\Windows\System32\igfxext.exe
PRC - [2007/07/24 19:26:38 | 000,182,392 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
PRC - [2007/07/24 19:26:38 | 000,100,472 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\VAIO Event Service\VESMgrSub.exe
PRC - [2007/03/15 15:57:34 | 000,106,496 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\Apoint\Apoint.exe
PRC - [2007/01/29 19:07:18 | 000,050,736 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\Apoint\ApMsgFwd.exe
PRC - [2006/09/08 15:06:08 | 000,040,960 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\Apoint\Apntex.exe


========== Modules (SafeList) ==========

MOD - [2010/08/03 13:45:37 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Users\lyam\Desktop\OTL.exe
MOD - [2010/07/31 13:56:41 | 000,098,304 | ---- | M] (BitDefender S.R.L. Bucharest, ROMANIA) -- C:\Program Files\BitDefender\BitDefender 2010\Active Virus Control\midas32-v2_66\plugin_net.m32
MOD - [2010/07/31 13:56:39 | 000,176,128 | ---- | M] (BitDefender S.R.L. Bucharest, ROMANIA) -- C:\Program Files\BitDefender\BitDefender 2010\Active Virus Control\midas32-v2_66\plugin_extra.m32
MOD - [2010/07/31 13:56:30 | 000,266,240 | ---- | M] (BitDefender S.R.L. Bucharest, ROMANIA) -- C:\Program Files\BitDefender\BitDefender 2010\Active Virus Control\midas32-v2_66\plugin_nt.m32
MOD - [2010/07/31 13:56:24 | 000,151,552 | ---- | M] (BitDefender S.R.L. Bucharest, ROMANIA) -- C:\Program Files\BitDefender\BitDefender 2010\Active Virus Control\midas32-v2_66\plugin_base.m32
MOD - [2010/07/31 13:56:21 | 000,319,488 | ---- | M] (BitDefender S.R.L. Bucharest, ROMANIA) -- C:\Program Files\BitDefender\BitDefender 2010\Active Virus Control\midas32-v2_66\plugin_fragments.m32
MOD - [2010/07/31 13:56:12 | 000,126,976 | ---- | M] (BitDefender S.R.L. Bucharest, ROMANIA) -- C:\Program Files\BitDefender\BitDefender 2010\Active Virus Control\midas32-v2_66\plugin_registry.m32
MOD - [2010/07/31 13:56:08 | 000,225,152 | ---- | M] (BitDefender S.R.L. Bucharest, ROMANIA) -- C:\Program Files\BitDefender\BitDefender 2010\Active Virus Control\midas32-v2_66\midas32.dll
MOD - [2009/04/11 08:21:38 | 001,686,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18005_none_5cb72f96088b0de0\comctl32.dll
MOD - [2009/03/26 16:35:40 | 000,034,224 | ---- | M] (Tonec Inc.) -- C:\Program Files\Internet Download Manager\idmmkb.dll
MOD - [2008/01/21 04:22:45 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msscript.ocx


========== Win32 Services (SafeList) ==========

SRV - [2010/07/31 14:16:15 | 000,315,392 | ---- | M] (S.C. BitDefender S.R.L) [On_Demand | Stopped] -- C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\scan.dll -- (scan)
SRV - [2010/07/31 14:15:35 | 000,183,880 | ---- | M] (BitDefender S.R.L. http://www.bitdefender.com) [On_Demand | Stopped] -- C:\Program Files\Common Files\BitDefender\BitDefender Arrakis Server\bin\arrakis3.exe -- (Arrakis3)
SRV - [2010/07/31 14:13:19 | 001,615,688 | ---- | M] (BitDefender S.R.L.) [Auto | Running] -- C:\Program Files\BitDefender\BitDefender 2010\vsserv.exe -- (VSSERV)
SRV - [2010/07/31 14:01:02 | 000,308,552 | ---- | M] (BitDefender S.R.L.) [Auto | Running] -- C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe -- (LIVESRV)
SRV - [2010/07/30 11:54:41 | 000,008,192 | ---- | M] () [Auto | Stopped] -- C:\Windows\System32\srvany.exe -- (KMService)
SRV - [2010/06/21 22:37:54 | 001,619,272 | ---- | M] (O&O Software GmbH) [Auto | Running] -- C:\Program Files\OO Software\Defrag\oodag.exe -- (OODefragAgent)
SRV - [2010/03/25 21:40:44 | 000,017,904 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Essentials\MsMpEng.exe -- (MsMpSvc)
SRV - [2010/03/22 22:36:08 | 000,302,928 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2010/01/09 21:37:50 | 004,640,000 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE -- (osppsvc)
SRV - [2009/09/25 03:27:04 | 000,793,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\FntCache.dll -- (FontCache)
SRV - [2009/08/24 13:22:34 | 000,069,632 | ---- | M] (France Telecom SA) [Auto | Running] -- C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe -- (FTRTSVC)
SRV - [2009/01/26 15:31:10 | 001,153,368 | ---- | M] (Safer Networking Ltd.) [Auto | Stopped] -- C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe -- (SBSDWSCService)
SRV - [2008/01/21 04:21:41 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend)
SRV - [2007/07/24 19:26:38 | 000,182,392 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files\Sony\VAIO Event Service\VESMgr.exe -- (VAIO Event Service)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\ipinip.sys -- (IpInIp)
DRV - [2010/07/31 14:26:30 | 000,014,720 | ---- | M] (BitDefender S.R.L.) [Kernel | On_Demand | Stopped] -- C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\profos.sys -- (Profos)
DRV - [2010/07/31 14:26:26 | 000,153,448 | ---- | M] (BitDefender S.R.L. Bucharest, ROMANIA) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\bdfm.sys -- (BDFM)
DRV - [2010/07/31 14:25:59 | 000,085,128 | ---- | M] (BitDefender) [Kernel | Auto | Running] -- C:\Program Files\BitDefender\BitDefender 2010\bdvedisk.sys -- (BDVEDISK)
DRV - [2010/07/31 14:25:55 | 000,058,368 | ---- | M] (BitDefender) [Kernel | On_Demand | Stopped] -- C:\Program Files\BitDefender\BitDefender 2010\bdselfpr.sys -- (BDSelfPr)
DRV - [2010/07/31 14:21:46 | 000,291,352 | ---- | M] (BitDefender) [File_System | Boot | Running] -- C:\Windows\system32\DRIVERS\bdfsfltr.sys -- (bdfsfltr)
DRV - [2010/07/31 14:14:01 | 000,119,504 | ---- | M] (BitDefender LLC) [Kernel | System | Running] -- C:\Program Files\Common Files\BitDefender\BitDefender Firewall\bdftdif.sys -- (bdftdif)
DRV - [2010/03/25 21:30:22 | 000,151,216 | ---- | M] (Microsoft Corporation) [File_System | System | Running] -- C:\Windows\System32\drivers\MpFilter.sys -- (MpFilter)
DRV - [2010/03/25 21:30:22 | 000,042,368 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\MpNWMon.sys -- (MpNWMon)
DRV - [2010/03/22 22:36:00 | 000,020,824 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2009/08/24 13:22:32 | 000,028,224 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\PCAMp50.sys -- (PCAMp50)
DRV - [2009/08/24 13:22:32 | 000,027,072 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\PCASp50.sys -- (PCASp50)
DRV - [2009/05/07 04:22:06 | 000,039,808 | ---- | M] (BitDefender S.R.L.) [Kernel | On_Demand | Stopped] -- C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\trufos.sys -- (Trufos)
DRV - [2008/02/11 19:36:10 | 002,302,976 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\igdkmd32.sys -- (igfx)
DRV - [2008/01/21 04:21:35 | 000,386,616 | ---- | M] (LSI Corporation, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\megasr.sys -- (MegaSR)
DRV - [2008/01/21 04:21:35 | 000,149,560 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpu320.sys -- (adpu320)
DRV - [2008/01/21 04:21:35 | 000,031,288 | ---- | M] (LSI Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\megasas.sys -- (megasas)
DRV - [2008/01/21 04:21:34 | 000,101,432 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpu160m.sys -- (adpu160m)
DRV - [2008/01/21 04:21:34 | 000,074,808 | ---- | M] (Silicon Integrated Systems) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sisraid4.sys -- (SiSRaid4)
DRV - [2008/01/21 04:21:34 | 000,040,504 | ---- | M] (Hewlett-Packard Company) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\hpcisss.sys -- (HpCISSs)
DRV - [2008/01/21 04:21:33 | 001,122,360 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ql2300.sys -- (ql2300)
DRV - [2008/01/21 04:21:33 | 000,300,600 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpahci.sys -- (adpahci)
DRV - [2008/01/21 04:21:33 | 000,118,784 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\E1G60I32.sys -- (E1G60) Intel(R)
DRV - [2008/01/21 04:21:33 | 000,089,656 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_sas.sys -- (LSI_SAS)
DRV - [2008/01/21 04:21:32 | 000,130,616 | ---- | M] (VIA Technologies Inc.,Ltd) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\vsmraid.sys -- (vsmraid)
DRV - [2008/01/21 04:21:32 | 000,079,928 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\arcsas.sys -- (arcsas)
DRV - [2008/01/21 04:21:32 | 000,079,416 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\arc.sys -- (arc)
DRV - [2008/01/21 04:21:31 | 000,987,648 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\VSTDPV3.SYS -- (HSF_DPV)
DRV - [2008/01/21 04:21:31 | 000,654,336 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\VSTCNXT3.SYS -- (winachsf)
DRV - [2008/01/21 04:21:31 | 000,235,064 | ---- | M] (Intel Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iastorv.sys -- (iaStorV)
DRV - [2008/01/21 04:21:31 | 000,200,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\VSTAZL3.SYS -- (HSFHWAZL)
DRV - [2008/01/21 04:21:31 | 000,115,816 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ulsata2.sys -- (ulsata2)
DRV - [2008/01/21 04:21:31 | 000,096,312 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_scsi.sys -- (LSI_SCSI)
DRV - [2008/01/21 04:21:31 | 000,096,312 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_fc.sys -- (LSI_FC)
DRV - [2008/01/21 04:21:30 | 000,342,584 | ---- | M] (Emulex) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\elxstor.sys -- (elxstor)
DRV - [2008/01/21 04:21:29 | 000,422,968 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adp94xx.sys -- (adp94xx)
DRV - [2008/01/21 04:21:29 | 000,102,968 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvraid.sys -- (nvraid)
DRV - [2008/01/21 04:21:29 | 000,045,112 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvstor.sys -- (nvstor)
DRV - [2008/01/21 04:21:28 | 002,225,664 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\NETw3v32.sys -- (NETw3v32) Pilote de carte Intel(R)
DRV - [2008/01/21 04:21:28 | 000,238,648 | ---- | M] (ULi Electronics Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\uliahci.sys -- (uliahci)
DRV - [2008/01/21 04:21:09 | 000,020,024 | ---- | M] (VIA Technologies, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\viaide.sys -- (viaide)
DRV - [2008/01/21 04:21:09 | 000,019,000 | ---- | M] (CMD Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\cmdide.sys -- (cmdide)
DRV - [2008/01/21 04:21:09 | 000,017,464 | ---- | M] (Acer Laboratories Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\aliide.sys -- (aliide)
DRV - [2007/06/27 19:29:58 | 000,010,216 | ---- | M] (Sony Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\DMICall.sys -- (DMICall)
DRV - [2006/12/05 20:26:00 | 000,140,800 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Apfiltr.sys -- (ApfiltrService)
DRV - [2006/11/02 11:50:35 | 000,106,088 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ql40xx.sys -- (ql40xx)
DRV - [2006/11/02 11:50:35 | 000,098,408 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ulsata.sys -- (UlSata)
DRV - [2006/11/02 11:50:19 | 000,045,160 | ---- | M] (IBM Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nfrd960.sys -- (nfrd960)
DRV - [2006/11/02 11:50:17 | 000,041,576 | ---- | M] (Intel Corp./ICP vortex GmbH) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iirsp.sys -- (iirsp)
DRV - [2006/11/02 11:50:11 | 000,071,272 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\djsvs.sys -- (aic78xx)
DRV - [2006/11/02 11:50:09 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iteraid.sys -- (iteraid)
DRV - [2006/11/02 11:50:07 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iteatapi.sys -- (iteatapi)
DRV - [2006/11/02 11:50:05 | 000,035,944 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\symc8xx.sys -- (Symc8xx)
DRV - [2006/11/02 11:50:03 | 000,034,920 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sym_u3.sys -- (Sym_u3)
DRV - [2006/11/02 11:49:59 | 000,033,384 | ---- | M] (LSI Logic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\mraid35x.sys -- (Mraid35x)
DRV - [2006/11/02 11:49:56 | 000,031,848 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sym_hi.sys -- (Sym_hi)
DRV - [2006/11/02 10:25:24 | 000,071,808 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brserid.sys -- (Brserid) Brother MFC Serial Port Interface Driver (WDM)
DRV - [2006/11/02 10:24:47 | 000,011,904 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brusbser.sys -- (BrUsbSer)
DRV - [2006/11/02 10:24:46 | 000,005,248 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brfiltup.sys -- (BrFiltUp)
DRV - [2006/11/02 10:24:45 | 000,013,568 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brfiltlo.sys -- (BrFiltLo)
DRV - [2006/11/02 10:24:44 | 000,062,336 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brserwdm.sys -- (BrSerWdm)
DRV - [2006/11/02 10:24:44 | 000,012,160 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brusbmdm.sys -- (BrUsbMdm)
DRV - [2006/11/02 09:36:50 | 000,020,608 | ---- | M] (N-trig Innovative Technologies) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ntrigdigi.sys -- (ntrigdigi)
DRV - [2006/11/02 09:30:56 | 000,194,048 | ---- | M] (Marvell) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\yk60x86.sys -- (yukonwlh)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-3203357218-2307546177-314451718-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
IE - HKU\S-1-5-21-3203357218-2307546177-314451718-1000\..\URLSearchHook: {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange\Connexion Internet Orange\SearchURLHook\SearchPageURL.dll ()
IE - HKU\S-1-5-21-3203357218-2307546177-314451718-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

FF - HKLM\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/07/30 14:17:33 | 000,000,000 | ---D | M]


O1 HOSTS File: ([2006/09/18 23:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll (Tonec Inc.)
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
O2 - BHO: (Shareaza Web Download Hook) - {0EEDB912-C5FA-486F-8334-57288578C627} - C:\Program Files\Shareaza\RazaWebHook32.dll (Shareaza Development Team)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (HP Smart BHO Class) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
O3 - HKLM\..\Toolbar: (BitDefender Toolbar) - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2010\IEToolbar.dll (BitDefender S.R.L.)
O4 - HKLM..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe (Alps Electric Co., Ltd.)
O4 - HKLM..\Run: [BCSSync] C:\Program Files\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation)
O4 - HKLM..\Run: [BDAgent] C:\Program Files\BitDefender\BitDefender 2010\bdagent.exe (BitDefender S.R.L.)
O4 - HKLM..\Run: [BitDefender Antiphishing Helper] C:\Program Files\BitDefender\BitDefender 2010\IEShow.exe (BitDefender S.R.L.)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [MSSE] c:\Program Files\Microsoft Security Essentials\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [OODefragTray] C:\Program Files\OO Software\Defrag\oodtray.exe (O&O Software GmbH)
O4 - HKLM..\Run: [ORAHSSSessionManager] C:\Program Files\Orange\Connexion Internet Orange\SessionManager\SessionManager.exe (France Telecom SA)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-21-3203357218-2307546177-314451718-1000..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe (Tonec Inc.)
O4 - HKU\S-1-5-21-3203357218-2307546177-314451718-1000..\Run: [Shareaza] C:\Program Files\Shareaza\Shareaza.exe (Shareaza Development Team)
O4 - HKU\S-1-5-21-3203357218-2307546177-314451718-1000..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer Networking Limited)
O4 - HKLM..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O8 - Extra context menu item: Download with &Shareaza - C:\Program Files\Shareaza\RazaWebHook32.dll (Shareaza Development Team)
O8 - Extra context menu item: Télécharger avec IDM - C:\Program Files\Internet Download Manager\IEExt.htm ()
O8 - Extra context menu item: Télécharger le contenu de video FLV avec IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm ()
O8 - Extra context menu item: Télécharger tous les liens avec IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm ()
O9 - Extra Button: Afficher ou masquer l'HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll (Safer Networking Limited)
O13 - gopher Prefix: missing
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\Windows\System32\igfxdev.dll (Intel Corporation)
O20 - Winlogon\Notify\VESWinlogon: DllName - VESWinlogon.dll - C:\Windows\System32\VESWinlogon.dll (Sony Corporation)
O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\img18.jpg
O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\img18.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (OODBS) - C:\Windows\System32\OODBS.exe (O&O Software GmbH)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2010/08/03 13:45:29 | 000,574,976 | ---- | C] (OldTimer Tools) -- C:\Users\lyam\Desktop\OTL.exe
[2010/08/03 13:41:50 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Roaming\Malwarebytes
[2010/08/03 13:41:37 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010/08/03 13:41:29 | 000,020,824 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010/08/03 13:41:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2010/08/03 13:41:28 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010/08/03 13:40:44 | 000,000,000 | ---D | C] -- C:\Users\lyam\Desktop\MalwarebytesAnti-Malware1.45
[2010/08/03 13:27:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy
[2010/08/03 13:27:33 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy
[2010/08/03 13:24:51 | 016,409,960 | ---- | C] (Safer Networking Limited ) -- C:\Users\lyam\Desktop\spybotsd162.exe
[2010/08/02 10:56:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2010/08/02 10:55:35 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2010/08/02 10:55:34 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2010/08/02 10:47:25 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Local\Adobe
[2010/08/02 10:00:57 | 000,000,000 | ---D | C] -- C:\Users\lyam\Desktop\harry potter
[2010/08/01 13:07:16 | 000,000,000 | ---D | C] -- C:\Program Files\Apoint
[2010/08/01 13:06:33 | 001,418,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WdfCoinstaller01001.dll
[2010/08/01 13:06:33 | 000,100,354 | ---- | C] (Alps Electric Co., Ltd.) -- C:\Windows\System32\Vxdif.dll
[2010/08/01 13:06:32 | 000,140,800 | ---- | C] (Alps Electric Co., Ltd.) -- C:\Windows\System32\drivers\Apfiltr.sys
[2010/08/01 13:06:32 | 000,000,000 | ---D | C] -- C:\Upgrade
[2010/08/01 12:05:03 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Portable Devices
[2010/08/01 11:56:11 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIAnimation.dll
[2010/08/01 11:56:10 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIRibbonRes.dll
[2010/08/01 11:56:09 | 003,023,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIRibbon.dll
[2010/08/01 11:55:33 | 000,369,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMPhoto.dll
[2010/08/01 11:55:31 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cdd.dll
[2010/08/01 11:55:29 | 000,829,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10warp.dll
[2010/08/01 11:55:29 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsRasterService.dll
[2010/08/01 11:55:29 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\printfilterpipelineprxy.dll
[2010/08/01 11:55:28 | 000,974,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WindowsCodecs.dll
[2010/08/01 11:55:28 | 000,828,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d2d1.dll
[2010/08/01 11:55:28 | 000,667,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\printfilterpipelinesvc.exe
[2010/08/01 11:55:28 | 000,321,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PhotoMetadataHandler.dll
[2010/08/01 11:55:28 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsGdiConverter.dll
[2010/08/01 11:55:28 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxdiag.exe
[2010/08/01 11:55:28 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxdiagn.dll
[2010/08/01 11:55:28 | 000,189,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WindowsCodecsExt.dll
[2010/08/01 11:55:27 | 001,554,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xpsservices.dll
[2010/08/01 11:55:27 | 001,064,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DWrite.dll
[2010/08/01 11:55:27 | 000,847,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\OpcServices.dll
[2010/08/01 11:55:27 | 000,793,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\FntCache.dll
[2010/08/01 11:55:27 | 000,486,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10level9.dll
[2010/08/01 11:55:27 | 000,351,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsPrint.dll
[2010/08/01 11:55:27 | 000,190,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10core.dll
[2010/08/01 11:55:26 | 001,030,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10.dll
[2010/08/01 11:55:26 | 000,519,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d11.dll
[2010/08/01 11:55:26 | 000,481,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxgi.dll
[2010/08/01 11:55:26 | 000,218,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1core.dll
[2010/08/01 11:55:26 | 000,161,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1.dll
[2010/08/01 11:54:47 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\BthMtpContextHandler.dll
[2010/08/01 11:54:47 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WPDShextAutoplay.exe
[2010/08/01 11:54:38 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceConnectApi.dll
[2010/08/01 11:54:32 | 000,546,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wpd_ci.dll
[2010/08/01 11:54:32 | 000,350,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WPDSp.dll
[2010/08/01 11:54:32 | 000,334,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceApi.dll
[2010/08/01 11:54:32 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceWMDRM.dll
[2010/08/01 11:54:32 | 000,160,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceTypes.dll
[2010/08/01 11:54:32 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceClassExtension.dll
[2010/08/01 11:52:55 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\oleaccrc.dll
[2010/08/01 11:52:51 | 000,555,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIAutomationCore.dll
[2010/07/31 20:09:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\eu-ES
[2010/07/31 20:09:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\ca-ES
[2010/07/31 20:09:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\vi-VN
[2010/07/31 18:55:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\EventProviders
[2010/07/31 16:13:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Sony Corporation
[2010/07/31 16:11:37 | 000,098,304 | ---- | C] (Sony Corporation) -- C:\Windows\System32\VESWinlogon.dll
[2010/07/31 16:11:35 | 000,000,000 | ---D | C] -- C:\Program Files\Sony
[2010/07/31 16:04:24 | 000,626,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msvcr80.dll
[2010/07/31 16:04:24 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Sony Shared
[2010/07/31 16:03:43 | 000,010,216 | ---- | C] (Sony Corporation) -- C:\Windows\System32\drivers\DMICall.sys
[2010/07/31 16:03:40 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2010/07/31 14:34:43 | 000,072,784 | ---- | C] (BitDefender LLC) -- C:\Windows\System32\drivers\bdfndisf6.sys
[2010/07/31 09:38:33 | 000,000,000 | ---D | C] -- C:\Windows\pss
[2010/07/31 08:58:44 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0
[2010/07/31 08:55:22 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Roaming\BitDefender
[2010/07/31 08:53:28 | 000,000,000 | ---D | C] -- C:\ProgramData\BitDefender
[2010/07/31 08:53:28 | 000,000,000 | ---D | C] -- C:\Program Files\BitDefender
[2010/07/31 08:52:18 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\BitDefender
[2010/07/31 08:51:02 | 000,000,000 | ---D | C] -- C:\Windows\System32\oodag
[2010/07/31 08:42:07 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Local\O&O
[2010/07/31 08:40:19 | 000,000,000 | ---D | C] -- C:\Program Files\OO Software
[2010/07/30 14:22:13 | 000,000,000 | ---D | C] -- C:\ProgramData\WEBREG
[2010/07/30 14:22:08 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Roaming\HP
[2010/07/30 14:18:15 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Roaming\Yahoo!
[2010/07/30 14:18:13 | 000,000,000 | ---D | C] -- C:\Program Files\Yahoo!
[2010/07/30 14:14:27 | 000,000,000 | ---D | C] -- C:\ProgramData\HP Product Assistant
[2010/07/30 14:10:59 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\HP
[2010/07/30 14:10:54 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Hewlett-Packard
[2010/07/30 14:07:13 | 000,452,408 | ---- | C] (Hewlett-Packard) -- C:\Windows\System32\hpzids01.dll
[2010/07/30 14:07:10 | 000,123,904 | ---- | C] (Hewlett-Packard Company) -- C:\Windows\System32\hpf3l70w.dll
[2010/07/30 14:07:03 | 000,713,728 | ---- | C] (Hewlett-Packard) -- C:\Windows\System32\hposwia_d02d.dll
[2010/07/30 14:07:03 | 000,589,824 | ---- | C] (Hewlett-Packard Co.) -- C:\Windows\System32\hpost_d02d.dll
[2010/07/30 14:07:03 | 000,372,736 | ---- | C] (Hewlett-Packard) -- C:\Windows\System32\hppldcoi.dll
[2010/07/30 14:07:03 | 000,315,392 | ---- | C] (Hewlett-Packard Co.) -- C:\Windows\System32\hposc_d02a.dll
[2010/07/30 14:05:42 | 000,000,000 | -H-D | C] -- C:\Config.Msi
[2010/07/30 14:02:04 | 000,000,000 | ---D | C] -- C:\Program Files\HP
[2010/07/30 14:00:41 | 000,000,000 | ---D | C] -- C:\ProgramData\HP
[2010/07/30 12:19:28 | 012,240,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0007.dll
[2010/07/30 12:19:19 | 001,081,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SLCExt.dll
[2010/07/30 12:19:14 | 002,134,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\FunctionDiscoveryFolder.dll
[2010/07/30 12:19:14 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DevicePairingWizard.exe
[2010/07/30 12:19:11 | 002,644,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0009.dll
[2010/07/30 12:19:07 | 001,480,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssrch.dll
[2010/07/30 12:19:03 | 000,684,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\spsys.sys
[2010/07/30 12:19:02 | 001,576,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tquery.dll
[2010/07/30 12:19:00 | 000,779,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationNative_v0300.dll
[2010/07/30 12:18:58 | 000,928,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\scavenge.dll
[2010/07/30 12:18:57 | 002,241,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msi.dll
[2010/07/30 12:18:55 | 000,677,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\imapi2fs.dll
[2010/07/30 12:18:54 | 000,968,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wcnwiz2.dll
[2010/07/30 12:18:54 | 000,291,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WscEapPr.dll
[2010/07/30 12:18:51 | 000,619,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\icardagt.exe
[2010/07/30 12:18:49 | 001,216,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\AuxiliaryDisplayCpl.dll
[2010/07/30 12:18:49 | 000,114,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\EhStorShell.dll
[2010/07/30 12:18:47 | 000,978,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drmv2clt.dll
[2010/07/30 12:18:47 | 000,289,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spinstall.exe
[2010/07/30 12:18:47 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spreview.exe
[2010/07/30 12:18:45 | 000,438,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mcupdate_GenuineIntel.dll
[2010/07/30 12:18:45 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spwizui.dll
[2010/07/30 12:18:41 | 000,670,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssvp.dll
[2010/07/30 12:18:40 | 000,613,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSMPEG2VDEC.DLL
[2010/07/30 12:18:39 | 000,378,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\imapi2.dll
[2010/07/30 12:18:39 | 000,351,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssph.dll
[2010/07/30 12:18:39 | 000,203,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssphtb.dll
[2010/07/30 12:18:37 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sdohlp.dll
[2010/07/30 12:18:36 | 001,459,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\esent.dll
[2010/07/30 12:18:36 | 000,729,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\IMJP10K.DLL
[2010/07/30 12:18:36 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DevicePairing.dll
[2010/07/30 12:18:35 | 000,190,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sperror.dll
[2010/07/30 12:18:35 | 000,143,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\korwbrkr.dll
[2010/07/30 12:18:34 | 000,463,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\IasMigReader.exe
[2010/07/30 12:18:34 | 000,228,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SLC.dll
[2010/07/30 12:18:33 | 000,231,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msshsq.dll
[2010/07/30 12:18:31 | 000,556,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pmcsnap.dll
[2010/07/30 12:18:30 | 001,589,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msjet40.dll
[2010/07/30 12:18:28 | 001,381,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Query.dll
[2010/07/30 12:18:28 | 000,883,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\IMJP10.IME
[2010/07/30 12:18:27 | 001,078,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\diagperf.dll
[2010/07/30 12:18:27 | 000,409,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msexch40.dll
[2010/07/30 12:18:27 | 000,327,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\P2PGraph.dll
[2010/07/30 12:18:25 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\srchadmin.dll
[2010/07/30 12:18:24 | 000,986,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winload.exe
[2010/07/30 12:18:23 | 001,792,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mmc.exe
[2010/07/30 12:18:23 | 000,950,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mblctr.exe
[2010/07/30 12:18:23 | 000,428,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\EncDec.dll
[2010/07/30 12:18:23 | 000,203,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\uDWM.dll
[2010/07/30 12:18:22 | 000,466,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\riched20.dll
[2010/07/30 12:18:22 | 000,454,144 | ---- | C] (Microsoft) -- C:\Windows\System32\IasMigPlugin.dll
[2010/07/30 12:18:21 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fdBth.dll
[2010/07/30 12:18:20 | 000,880,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RacEngn.dll
[2010/07/30 12:18:19 | 002,012,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\milcore.dll
[2010/07/30 12:18:18 | 001,112,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CertEnroll.dll
[2010/07/30 12:18:18 | 000,160,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spoolss.dll
[2010/07/30 12:18:18 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\EhStorAPI.dll
[2010/07/30 12:18:17 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NaturalLanguage6.dll
[2010/07/30 12:18:16 | 000,950,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\gpedit.dll
[2010/07/30 12:18:16 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msvcp60.dll
[2010/07/30 12:18:16 | 000,290,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msjtes40.dll
[2010/07/30 12:18:16 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\AuxiliaryDisplayDriverLib.dll
[2010/07/30 12:18:16 | 000,099,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\infocardapi.dll
[2010/07/30 12:18:14 | 003,217,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WinSAT.exe
[2010/07/30 12:18:14 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fveapi.dll
[2010/07/30 12:18:14 | 000,167,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationSettings.exe
[2010/07/30 12:18:13 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Magnify.exe
[2010/07/30 12:18:13 | 000,282,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstext40.dll
[2010/07/30 12:18:13 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\AuxiliaryDisplayServices.dll
[2010/07/30 12:18:11 | 000,339,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msexcl40.dll
[2010/07/30 12:18:11 | 000,217,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\psisrndr.ax
[2010/07/30 12:18:11 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\slwmi.dll
[2010/07/30 12:18:10 | 001,209,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\comsvcs.dll
[2010/07/30 12:18:10 | 000,461,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2010/07/30 12:18:10 | 000,454,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msxbde40.dll
[2010/07/30 12:18:09 | 001,985,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\authui.dll
[2010/07/30 12:18:08 | 001,086,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NetProjW.dll
[2010/07/30 12:18:08 | 000,643,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msrepl40.dll
[2010/07/30 12:18:07 | 000,640,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\bthprops.cpl
[2010/07/30 12:18:07 | 000,469,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\newdev.dll
[2010/07/30 12:18:07 | 000,205,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\eudcedit.exe
[2010/07/30 12:18:07 | 000,119,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iasrecst.dll
[2010/07/30 12:18:07 | 000,102,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll
[2010/07/30 12:18:06 | 002,926,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2010/07/30 12:18:06 | 000,398,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2010/07/30 12:18:05 | 001,788,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d9.dll
[2010/07/30 12:18:05 | 000,368,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mspbde40.dll
[2010/07/30 12:18:04 | 001,135,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc42.dll
[2010/07/30 12:18:04 | 000,241,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msltus40.dll
[2010/07/30 12:18:04 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\davclnt.dll
[2010/07/30 12:18:03 | 000,344,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msrd3x40.dll
[2010/07/30 12:18:03 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\EhStorPwdMgr.dll
[2010/07/30 12:18:02 | 001,053,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdtctm.dll
[2010/07/30 12:18:02 | 000,250,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wevtapi.dll
[2010/07/30 12:18:01 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\nlhtml.dll
[2010/07/30 12:17:59 | 000,614,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ci.dll
[2010/07/30 12:17:59 | 000,483,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\samsrv.dll
[2010/07/30 12:17:59 | 000,443,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32spl.dll
[2010/07/30 12:17:58 | 000,582,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SLCommDlg.dll
[2010/07/30 12:17:58 | 000,165,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WcnNetsh.dll
[2010/07/30 12:17:57 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\compcln.exe
[2010/07/30 12:17:56 | 001,730,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\apds.dll
[2010/07/30 12:17:55 | 000,618,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mswstr10.dll
[2010/07/30 12:17:55 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xmlfilter.dll
[2010/07/30 12:17:53 | 000,223,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\netio.sys
[2010/07/30 12:17:51 | 001,160,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc42u.dll
[2010/07/30 12:17:51 | 000,361,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SLUI.exe
[2010/07/30 12:17:51 | 000,183,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\eapphost.dll
[2010/07/30 12:17:50 | 000,524,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sqlsrv32.dll
[2010/07/30 12:17:50 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msrd2x40.dll
[2010/07/30 12:17:47 | 000,926,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winresume.exe
[2010/07/30 12:17:47 | 000,409,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbc32.dll
[2010/07/30 12:17:47 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\propdefs.dll
[2010/07/30 12:17:45 | 001,856,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dbgeng.dll
[2010/07/30 12:17:44 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wevtutil.exe
[2010/07/30 12:17:43 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssitlb.dll
[2010/07/30 12:17:41 | 002,167,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mmcndmgr.dll
[2010/07/30 12:17:39 | 000,378,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\devmgr.dll
[2010/07/30 12:17:39 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drvinst.exe
[2010/07/30 12:17:39 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msctfp.dll
[2010/07/30 12:17:39 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fdBthProxy.dll
[2010/07/30 12:17:38 | 000,592,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netlogon.dll
[2010/07/30 12:17:38 | 000,199,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\adsldpc.dll
[2010/07/30 12:17:38 | 000,054,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DevicePairingProxy.dll
[2010/07/30 12:17:38 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msscb.dll
[2010/07/30 12:17:37 | 000,840,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WFS.exe
[2010/07/30 12:17:37 | 000,485,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\evr.dll
[2010/07/30 12:17:36 | 001,533,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wcnwiz.dll
[2010/07/30 12:17:35 | 001,382,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMVSDECD.DLL
[2010/07/30 12:17:34 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\quick.ime
[2010/07/30 12:17:34 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qintlgnt.ime
[2010/07/30 12:17:34 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\phon.ime
[2010/07/30 12:17:34 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cintlgnt.ime
[2010/07/30 12:17:34 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\chajei.ime
[2010/07/30 12:17:33 | 001,143,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wercon.exe
[2010/07/30 12:17:33 | 000,617,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\adtschema.dll
[2010/07/30 12:17:32 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mimefilt.dll
[2010/07/30 12:17:31 | 000,323,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\certcli.dll
[2010/07/30 12:17:30 | 000,560,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdtcprx.dll
[2010/07/30 12:17:30 | 000,396,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ipsmsnap.dll
[2010/07/30 12:17:30 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msjter40.dll
[2010/07/30 12:17:29 | 000,856,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mswdat10.dll
[2010/07/30 12:17:29 | 000,799,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\certutil.exe
[2010/07/30 12:17:29 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\reg.exe
[2010/07/30 12:17:29 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rtffilt.dll
[2010/07/30 12:17:29 | 000,035,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\infocardcpl.cpl
[2010/07/30 12:17:28 | 000,996,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMNetMgr.dll
[2010/07/30 12:17:28 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\usbport.sys
[2010/07/30 12:17:27 | 000,704,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PhotoScreensaver.scr
[2010/07/30 12:17:27 | 000,274,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\bcrypt.dll
[2010/07/30 12:17:27 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msscntrs.dll
[2010/07/30 12:17:27 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msshooks.dll
[2010/07/30 12:17:26 | 000,332,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msihnd.dll
[2010/07/30 12:17:26 | 000,241,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rsaenh.dll
[2010/07/30 12:17:26 | 000,150,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MMDevAPI.dll
[2010/07/30 12:17:25 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msstrc.dll
[2010/07/30 12:17:25 | 000,035,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TsWpfWrp.exe
[2010/07/30 12:17:24 | 000,413,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\scrptadm.dll
[2010/07/30 12:17:24 | 000,122,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetpp.dll
[2010/07/30 12:17:23 | 000,310,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mtxclu.dll
[2010/07/30 12:17:23 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fundisc.dll
[2010/07/30 12:17:23 | 000,130,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dhcpcsvc6.dll
[2010/07/30 12:17:23 | 000,080,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mscories.dll
[2010/07/30 12:17:22 | 000,343,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmicmiplugin.dll
[2010/07/30 12:17:20 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\imapi.dll
[2010/07/30 12:17:19 | 001,671,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\chsbrkr.dll
[2010/07/30 12:17:19 | 001,020,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wdc.dll
[2010/07/30 12:17:19 | 000,125,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\Classpnp.sys
[2010/07/30 12:17:18 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iassdo.dll
[2010/07/30 12:17:18 | 000,093,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Kswdmcap.ax
[2010/07/30 12:17:15 | 001,823,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pnidui.dll
[2010/07/30 12:17:15 | 000,009,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\icardres.dll
[2010/07/30 12:17:14 | 000,636,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\autofmt.exe
[2010/07/30 12:17:14 | 000,050,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PSHED.DLL
[2010/07/30 12:17:14 | 000,035,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\crashdmp.sys
[2010/07/30 12:17:13 | 000,757,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\azroles.dll
[2010/07/30 12:17:13 | 000,242,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pdh.dll
[2010/07/30 12:17:13 | 000,122,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\Storport.sys
[2010/07/30 12:17:13 | 000,109,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\ataport.sys
[2010/07/30 12:17:12 | 001,107,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pidgenx.dll
[2010/07/30 12:17:12 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CertEnrollUI.dll
[2010/07/30 12:17:11 | 000,867,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmpmde.dll
[2010/07/30 12:17:11 | 000,389,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sysmon.ocx
[2010/07/30 12:17:10 | 002,205,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SyncCenter.dll
[2010/07/30 12:17:08 | 001,502,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\certmgr.dll
[2010/07/30 12:17:08 | 000,593,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\comuid.dll
[2010/07/30 12:17:08 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ncrypt.dll
[2010/07/30 12:17:08 | 000,017,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\kd1394.dll
[2010/07/30 12:17:07 | 000,627,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sethc.exe
[2010/07/30 12:17:07 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\untfs.dll
[2010/07/30 12:17:07 | 000,182,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iassam.dll
[2010/07/30 12:17:07 | 000,180,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\scrobj.dll
[2010/07/30 12:17:06 | 000,413,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\imkr80.ime
[2010/07/30 12:17:06 | 000,270,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\taskcomp.dll
[2010/07/30 12:17:06 | 000,244,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wisptis.exe
[2010/07/30 12:17:06 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rtutils.dll
[2010/07/30 12:17:05 | 000,099,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\FWPKCLNT.SYS
[2010/07/30 12:17:05 | 000,043,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\pciidex.sys
[2010/07/30 12:17:04 | 000,150,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iasnap.dll
[2010/07/30 12:17:03 | 000,656,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\autoconv.exe
[2010/07/30 12:17:03 | 000,375,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winsrv.dll
[2010/07/30 12:17:02 | 001,541,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\onex.dll
[2010/07/30 12:17:02 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cscript.exe
[2010/07/30 12:17:02 | 000,130,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\basecsp.dll
[2010/07/30 12:17:02 | 000,027,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\Dumpata.sys
[2010/07/30 12:17:02 | 000,017,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\kdcom.dll
[2010/07/30 12:17:01 | 000,273,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wow32.dll
[2010/07/30 12:17:01 | 000,182,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\osk.exe
[2010/07/30 12:17:01 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\audiodg.exe
[2010/07/30 12:17:00 | 000,019,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\kdusb.dll
[2010/07/30 12:17:00 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spcmsg.dll
[2010/07/30 12:16:59 | 000,340,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RelMon.dll
[2010/07/30 12:16:58 | 000,612,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpencom.dll
[2010/07/30 12:16:57 | 000,860,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WerFaultSecure.exe
[2010/07/30 12:16:57 | 000,564,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msftedit.dll
[2010/07/30 12:16:57 | 000,194,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\offfilt.dll
[2010/07/30 12:16:57 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WinSCard.dll
[2010/07/30 12:16:54 | 001,827,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
[2010/07/30 12:16:54 | 000,638,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Utilman.exe
[2010/07/30 12:16:54 | 000,217,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WerFault.exe
[2010/07/30 12:16:54 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wsepno.dll
[2010/07/30 12:16:53 | 000,230,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\diskraid.exe
[2010/07/30 12:16:53 | 000,208,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfplat.dll
[2010/07/30 12:16:53 | 000,197,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SndVol.exe
[2010/07/30 12:16:52 | 000,852,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mcmde.dll
[2010/07/30 12:16:52 | 000,551,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\prnntfy.dll
[2010/07/30 12:16:52 | 000,391,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mscms.dll
[2010/07/30 12:16:52 | 000,179,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msnetobj.dll
[2010/07/30 12:16:52 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sysclass.dll
[2010/07/30 12:16:52 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\adsmsext.dll
[2010/07/30 12:16:51 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbccp32.dll
[2010/07/30 12:16:51 | 000,099,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ulib.dll
[2010/07/30 12:16:51 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iasdatastore.dll
[2010/07/30 12:16:50 | 000,444,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dsound.dll
[2010/07/30 12:16:50 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\IPHLPAPI.DLL
[2010/07/30 12:16:49 | 000,223,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wscntfy.dll
[2010/07/30 12:16:49 | 000,181,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pnpsetup.dll
[2010/07/30 12:16:49 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rastapi.dll
[2010/07/30 12:16:49 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fdProxy.dll
[2010/07/30 12:16:48 | 000,759,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ipsecsnp.dll
[2010/07/30 12:16:47 | 001,342,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\brcpl.dll
[2010/07/30 12:16:47 | 000,507,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vdsdyn.dll
[2010/07/30 12:16:47 | 000,399,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wlangpui.dll
[2010/07/30 12:16:47 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\diskpart.exe
[2010/07/30 12:16:47 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\gpapi.dll
[2010/07/30 12:16:47 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iashlpr.dll
[2010/07/30 12:16:46 | 001,575,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMVENCOD.DLL
[2010/07/30 12:16:46 | 000,286,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rasapi32.dll
[2010/07/30 12:16:46 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\logman.exe
[2010/07/30 12:16:45 | 000,216,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntprint.dll
[2010/07/30 12:16:45 | 000,158,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iasrad.dll
[2010/07/30 12:16:45 | 000,155,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mscorier.dll
[2010/07/30 12:16:45 | 000,140,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wusa.exe
[2010/07/30 12:16:44 | 002,225,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netcenter.dll
[2010/07/30 12:16:44 | 001,580,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wpccpl.dll
[2010/07/30 12:16:44 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\findstr.exe
[2010/07/30 12:16:43 | 000,825,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rasdlg.dll
[2010/07/30 12:16:42 | 001,152,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\themecpl.dll
[2010/07/30 12:16:42 | 000,876,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wer.dll
[2010/07/30 12:16:42 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iassvcs.dll
[2010/07/30 12:16:42 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wsnmp32.dll
[2010/07/30 12:16:40 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wshom.ocx
[2010/07/30 12:16:40 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssprxy.dll
[2010/07/30 12:16:39 | 000,777,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\slcc.dll
[2010/07/30 12:16:39 | 000,245,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\scansetting.dll
[2010/07/30 12:16:39 | 000,163,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msutb.dll
[2010/07/30 12:16:39 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstlsapi.dll
[2010/07/30 12:16:39 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iasads.dll
[2010/07/30 12:16:38 | 003,072,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\networkmap.dll
[2010/07/30 12:16:38 | 000,149,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\ks.sys
[2010/07/30 12:16:38 | 000,098,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\powrprof.dll
[2010/07/30 12:16:38 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iasacct.dll
[2010/07/30 12:16:37 | 001,248,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PerfCenterCPL.dll
[2010/07/30 12:16:37 | 000,723,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\powercpl.dll
[2010/07/30 12:16:36 | 001,645,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\connect.dll
[2010/07/30 12:16:36 | 000,780,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fveui.dll
[2010/07/30 12:16:36 | 000,074,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\newdev.exe
[2010/07/30 12:16:35 | 001,224,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sud.dll
[2010/07/30 12:16:35 | 000,842,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\systemcpl.dll
[2010/07/30 12:16:35 | 000,464,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pcaui.dll
[2010/07/30 12:16:34 | 002,515,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\accessibilitycpl.dll
[2010/07/30 12:16:34 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mmci.dll
[2010/07/30 12:16:33 | 001,123,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\usercpl.dll
[2010/07/30 12:16:33 | 000,516,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\autoplay.dll
[2010/07/30 12:16:33 | 000,497,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qdvd.dll
[2010/07/30 12:16:33 | 000,438,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\brcplsiw.dll
[2010/07/30 12:16:32 | 001,671,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wlanpref.dll
[2010/07/30 12:16:32 | 000,735,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fvecpl.dll
[2010/07/30 12:16:32 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieaksie.dll
[2010/07/30 12:16:32 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cscobj.dll
[2010/07/30 12:16:32 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rpchttp.dll
[2010/07/30 12:16:32 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pintlgnt.ime
[2010/07/30 12:16:32 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\regapi.dll
[2010/07/30 12:16:31 | 000,532,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wpcao.dll
[2010/07/30 12:16:31 | 000,408,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msinfo32.exe
[2010/07/30 12:16:31 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vdsutil.dll
[2010/07/30 12:16:30 | 000,306,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\scesrv.dll
[2010/07/30 12:16:30 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\psisdecd.dll
[2010/07/30 12:16:30 | 000,140,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\scksp.dll
[2010/07/30 12:16:30 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\AudioSes.dll
[2010/07/30 12:16:30 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\oleprn.dll
[2010/07/30 12:16:30 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\feclient.dll
[2010/07/30 12:16:29 | 000,891,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WindowsUltimateExtrasCPL.dll
[2010/07/30 12:16:29 | 000,147,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Faultrep.dll
[2010/07/30 12:16:29 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dot3msm.dll
[2010/07/30 12:16:29 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rekeywiz.exe
[2010/07/30 12:16:29 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iaspolcy.dll
[2010/07/30 12:16:29 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DeviceEject.exe
[2010/07/30 12:16:29 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wscisvif.dll
[2010/07/30 12:16:28 | 001,689,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wscui.cpl
[2010/07/30 12:16:28 | 001,169,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sdclt.exe
[2010/07/30 12:16:28 | 000,542,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pnpui.dll
[2010/07/30 12:16:28 | 000,505,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qedit.dll
[2010/07/30 12:16:28 | 000,445,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ncryptui.dll
[2010/07/30 12:16:28 | 000,407,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dpapimig.exe
[2010/07/30 12:16:28 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\perfdisk.dll
[2010/07/30 12:16:27 | 000,642,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rasgcw.dll
[2010/07/30 12:16:27 | 000,595,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\FWPUCLNT.DLL
[2010/07/30 12:16:27 | 000,215,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\certreq.exe
[2010/07/30 12:16:27 | 000,177,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\scecli.dll
[2010/07/30 12:16:27 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\hdwwiz.exe
[2010/07/30 12:16:26 | 000,376,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rasplap.dll
[2010/07/30 12:16:26 | 000,134,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SmartcardCredentialProvider.dll
[2010/07/30 12:16:26 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TSTheme.exe
[2010/07/30 12:16:26 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spwinsat.dll
[2010/07/30 12:16:25 | 000,170,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tcpipcfg.dll
[2010/07/30 12:16:25 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\portcls.sys
[2010/07/30 12:16:25 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tcpmon.dll
[2010/07/30 12:16:25 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fdWSD.dll
[2010/07/30 12:16:25 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PnPUnattend.exe
[2010/07/30 12:16:25 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cmmon32.exe
[2010/07/30 12:16:25 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\whealogr.dll
[2010/07/30 12:16:25 | 000,025,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\USBCAMD2.sys
[2010/07/30 12:16:25 | 000,025,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\USBCAMD.sys
[2010/07/30 12:16:24 | 000,481,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cmdial32.dll
[2010/07/30 12:16:24 | 000,378,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\srcore.dll
[2010/07/30 12:16:24 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\conime.exe
[2010/07/30 12:16:23 | 000,547,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wiaaut.dll
[2010/07/30 12:16:23 | 000,281,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\raschap.dll
[2010/07/30 12:16:23 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\unimdm.tsp
[2010/07/30 12:16:23 | 000,275,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SnippingTool.exe
[2010/07/30 12:16:22 | 000,657,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMVXENCD.DLL
[2010/07/30 12:16:22 | 000,259,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rasppp.dll
[2010/07/30 12:16:22 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wlanui.dll
[2010/07/30 12:16:22 | 000,137,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dsprop.dll
[2010/07/30 12:16:22 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PnPutil.exe
[2010/07/30 12:16:21 | 002,153,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\oobefldr.dll
[2010/07/30 12:16:21 | 000,425,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\shwebsvc.dll
[2010/07/30 12:16:21 | 000,054,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dimsroam.dll
[2010/07/30 12:16:20 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\modemui.dll
[2010/07/30 12:16:20 | 000,218,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mscandui.dll
[2010/07/30 12:16:20 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rasmontr.dll
[2010/07/30 12:16:20 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\shsetup.dll
[2010/07/30 12:16:19 | 006,103,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\chtbrkr.dll
[2010/07/30 12:16:19 | 000,533,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmdrmsdk.dll
[2010/07/30 12:16:18 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dataclen.dll
[2010/07/30 12:16:17 | 000,542,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\blackbox.dll
[2010/07/30 12:16:17 | 000,178,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\credui.dll
[2010/07/30 12:16:17 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tscfgwmi.dll
[2010/07/30 12:16:17 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpwsx.dll
[2010/07/30 12:16:17 | 000,083,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wlgpclnt.dll
[2010/07/30 12:16:16 | 000,303,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmpeffects.dll
[2010/07/30 12:16:16 | 000,177,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WSDMon.dll
[2010/07/30 12:16:16 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CscMig.dll
[2010/07/30 12:16:15 | 002,226,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\networkexplorer.dll
[2010/07/30 12:16:15 | 000,671,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll
[2010/07/30 12:16:15 | 000,113,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\rmcast.sys
[2010/07/30 12:16:15 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ifmon.dll
[2010/07/30 12:16:14 | 000,414,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msscp.dll
[2010/07/30 12:16:14 | 000,217,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\InkEd.dll
[2010/07/30 12:16:14 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msrating.dll
[2010/07/30 12:16:14 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\gpresult.exe
[2010/07/30 12:16:14 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\logagent.exe
[2010/07/30 12:16:14 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cipher.exe
[2010/07/30 12:16:14 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wscapi.dll
[2010/07/30 12:16:14 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msimtf.dll
[2010/07/30 12:16:13 | 000,313,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\thawbrkr.dll
[2010/07/30 12:16:13 | 000,125,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\softkbd.dll
[2010/07/30 12:16:13 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\watchdog.sys
[2010/07/30 12:16:12 | 000,356,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MediaMetadataHandler.dll
[2010/07/30 12:16:12 | 000,169,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpclip.exe
[2010/07/30 12:16:12 | 000,105,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dmsynth.dll
[2010/07/30 12:16:12 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msctfui.dll
[2010/07/30 12:16:11 | 000,284,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drmmgrtn.dll
[2010/07/30 12:16:10 | 000,200,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\input.dll
[2010/07/30 12:16:10 | 000,177,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mpg2splt.ax
[2010/07/30 12:16:10 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\puiapi.dll
[2010/07/30 12:16:10 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\gpprnext.dll
[2010/07/30 12:16:09 | 000,185,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SLLUA.exe
[2010/07/30 12:16:09 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mprapi.dll
[2010/07/30 12:16:09 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ExplorerFrame.dll
[2010/07/30 12:16:09 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msisip.dll
[2010/07/30 12:16:08 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSNP.ax
[2010/07/30 12:16:08 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fdSSDP.dll
[2010/07/30 12:16:08 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fc.exe
[2010/07/30 12:16:07 | 000,125,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tintlgnt.ime
[2010/07/30 12:16:07 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dmusic.dll
[2010/07/30 12:16:07 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpendp.dll
[2010/07/30 12:16:07 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cscapi.dll
[2010/07/30 12:16:07 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msjint40.dll
[2010/07/30 12:16:07 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MsCtfMonitor.dll
[2010/07/30 12:16:06 | 000,187,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\eapp3hst.dll
[2010/07/30 12:16:06 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\l2nacp.dll
[2010/07/30 12:16:06 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ftp.exe
[2010/07/30 12:16:04 | 000,083,456 | ---- | C] (Microsoft) -- C:\Windows\System32\SMBHelperClass.dll
[2010/07/30 12:16:04 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wsdchngr.dll
[2010/07/30 12:16:03 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fdWCN.dll
[2010/07/30 12:16:03 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Storprop.dll
[2010/07/30 12:16:03 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rasdiag.dll
[2010/07/30 12:16:03 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\bthci.dll
[2010/07/30 12:16:03 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\bthudtask.exe
[2010/07/30 12:16:03 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rasdial.exe
[2010/07/30 12:16:02 | 000,049,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dot3cfg.dll
[2010/07/30 12:16:02 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\gpscript.exe
[2010/07/30 12:16:01 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\eappcfg.dll
[2010/07/30 12:16:01 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2010/07/30 12:16:01 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ipconfig.exe
[2010/07/30 12:16:00 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tscupgrd.exe
[2010/07/30 12:16:00 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\slcinst.dll
[2010/07/30 12:16:00 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\networkitemfactory.dll
[2010/07/30 12:16:00 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CHxReadingStringIME.dll
[2010/07/30 12:15:59 | 000,093,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\eappgnui.dll
[2010/07/30 12:15:59 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\nslookup.exe
[2010/07/30 12:15:59 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\gpscript.dll
[2010/07/30 12:15:58 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\hbaapi.dll
[2010/07/30 12:15:58 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ocsetup.exe
[2010/07/30 12:15:58 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\FwRemoteSvr.dll
[2010/07/30 12:15:57 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fdeploy.dll
[2010/07/30 12:15:56 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PNPXAssoc.dll
[2010/07/30 12:15:56 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qprocess.exe
[2010/07/30 12:15:56 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mmcico.dll
[2010/07/30 12:15:55 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\chgport.exe
[2010/07/30 12:15:55 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\gpupdate.exe
[2010/07/30 12:15:54 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\chgusr.exe
[2010/07/30 12:15:53 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\csrstub.exe
[2010/07/30 12:15:53 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cbsra.exe
[2010/07/30 12:15:53 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tscon.exe
[2010/07/30 12:15:52 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\bitsigd.dll
[2010/07/30 12:15:52 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\shadow.exe
[2010/07/30 12:15:52 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\logoff.exe
[2010/07/30 12:15:51 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\chglogon.exe
[2010/07/30 12:15:51 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NcdProp.dll
[2010/07/30 12:15:51 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iscsilog.dll
[2010/07/30 12:15:50 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tskill.exe
[2010/07/30 12:15:50 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rwinsta.exe
[2010/07/30 12:15:49 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qappsrv.exe
[2010/07/30 12:15:49 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tsdiscon.exe
[2010/07/30 12:15:49 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vdmdbg.dll
[2010/07/30 12:15:49 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\reset.exe
[2010/07/30 12:15:48 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\dxg.sys
[2010/07/30 12:15:48 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbcconf.dll
[2010/07/30 12:15:48 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\Diskdump.sys
[2010/07/30 12:15:48 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetppui.dll
[2010/07/30 12:15:48 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\query.exe
[2010/07/30 12:15:48 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\slwga.dll
[2010/07/30 12:15:47 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\change.exe
[2010/07/30 12:15:38 | 000,052,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\stream.sys
[2010/07/30 12:15:37 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\RNDISMP.sys
[2010/07/30 12:15:33 | 000,389,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\html.iec
[2010/07/30 12:15:33 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\usb8023.sys
[2010/07/30 12:15:29 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\f3ahvoas.dll
[2010/07/30 12:15:29 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msimsg.dll
[2010/07/30 12:14:31 | 000,705,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SmiEngine.dll
[2010/07/30 12:14:22 | 000,218,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wdscore.dll
[2010/07/30 12:14:22 | 000,130,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PkgMgr.exe
[2010/07/30 12:14:01 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drvstore.dll
[2010/07/30 12:11:23 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Local\Google
[2010/07/30 12:10:23 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2010/07/30 12:04:20 | 001,696,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\gameux.dll
[2010/07/30 12:04:18 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Apphlpdm.dll
[2010/07/30 12:04:17 | 004,240,384 | ---- | C] (Microsoft) -- C:\Windows\System32\GameUXLegacyGDFs.dll
[2010/07/30 12:04:10 | 000,714,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\timedate.cpl
[2010/07/30 12:03:41 | 000,526,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_isv.exe
[2010/07/30 12:03:41 | 000,518,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate.exe
[2010/07/30 12:03:27 | 000,471,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_isv.dll
[2010/07/30 12:03:23 | 000,471,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc.dll
[2010/07/30 12:03:22 | 000,347,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp.exe
[2010/07/30 12:03:22 | 000,346,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp_isv.exe
[2010/07/30 12:03:21 | 000,332,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdrm.dll
[2010/07/30 12:03:21 | 000,152,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp_isv.dll
[2010/07/30 12:03:21 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp.dll
[2010/07/30 12:02:43 | 000,310,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\unregmp2.exe
[2010/07/30 12:02:42 | 008,147,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmploc.DLL
[2010/07/30 11:31:07 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Synchronization Services
[2010/07/30 11:30:58 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
[2010/07/30 11:29:53 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2010/07/30 11:29:53 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2010/07/30 11:29:53 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server Compact Edition
[2010/07/30 11:23:15 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Analysis Services
[2010/07/30 11:22:15 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Local\Microsoft Help
[2010/07/30 11:21:53 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2010/07/30 11:21:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
[2010/07/30 11:19:38 | 000,000,000 | ---D | C] -- C:\SYSTEM.SAV
[2010/07/30 11:03:51 | 000,000,000 | ---D | C] -- C:\Program Files\e-Carte Bleue Banque Populaire
[2010/07/30 11:03:50 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2010/07/30 10:28:44 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Roaming\IDM
[2010/07/30 10:28:40 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Download Manager
[2010/07/30 10:24:58 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Security Essentials
[2010/07/30 10:22:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Alwil Software
[2010/07/30 10:22:36 | 000,000,000 | ---D | C] -- C:\Program Files\Alwil Software
[2010/07/30 10:21:43 | 000,000,000 | ---D | C] -- C:\test
[2010/07/30 10:10:59 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2010/07/30 09:18:50 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Roaming\Adobe
[2010/07/30 09:03:08 | 000,000,000 | ---D | C] -- C:\Users\lyam\Documents\Downloads
[2010/07/30 09:03:05 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Roaming\DMCache
[2010/07/30 09:01:45 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Roaming\WinRAR
[2010/07/30 08:59:37 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2010/07/30 02:01:41 | 000,000,000 | ---D | C] -- C:\Documentation
[2010/07/30 01:29:39 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2010/07/29 21:01:54 | 000,295,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationHost.exe
[2010/07/29 21:01:54 | 000,099,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationHostProxy.dll
[2010/07/29 21:01:54 | 000,049,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netfxperf.dll
[2010/07/29 20:57:54 | 000,920,088 | ---- | C] (Intel® Corporation) -- C:\Windows\System32\igxpun.exe
[2010/07/29 20:57:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\x64
[2010/07/29 20:57:51 | 000,319,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\difxapi.dll
[2010/07/29 19:50:54 | 000,221,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MpSigStub.exe
[2010/07/29 19:49:32 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\browserchoice.exe
[2010/07/29 19:41:45 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Local\Shareaza
[2010/07/29 19:41:41 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2010/07/29 19:41:36 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Roaming\Shareaza
[2010/07/29 19:41:31 | 000,000,000 | ---D | C] -- C:\Program Files\Shareaza
[2010/07/29 19:31:16 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\nshhttp.dll
[2010/07/29 19:31:15 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\httpapi.dll
[2010/07/29 19:20:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll
[2010/07/29 19:20:45 | 003,600,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
[2010/07/29 19:20:44 | 003,548,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
[2010/07/29 19:20:38 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\kbd106n.dll
[2010/07/29 19:20:24 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netiohlp.dll
[2010/07/29 19:20:24 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NETSTAT.EXE
[2010/07/29 19:20:24 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ARP.EXE
[2010/07/29 19:20:24 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ROUTE.EXE
[2010/07/29 19:20:24 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netevent.dll
[2010/07/29 19:20:24 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MRINFO.EXE
[2010/07/29 19:20:24 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\finger.exe
[2010/07/29 19:20:24 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TCPSVCS.EXE
[2010/07/29 19:20:24 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\HOSTNAME.EXE
[2010/07/29 19:19:22 | 002,452,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dat
[2010/07/29 19:19:19 | 000,380,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dll
[2010/07/29 19:19:19 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll
[2010/07/29 19:19:19 | 000,180,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2010/07/29 19:19:19 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieencode.dll
[2010/07/29 19:19:19 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2010/07/29 19:19:18 | 001,383,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2010/07/29 19:19:15 | 002,868,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mf.dll
[2010/07/29 19:19:15 | 002,386,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMVCORE.DLL
[2010/07/29 19:19:14 | 000,098,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfps.dll
[2010/07/29 19:19:14 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rrinstaller.exe
[2010/07/29 19:19:14 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfpmp.exe
[2010/07/29 19:19:14 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mferror.dll
[2010/07/29 19:19:08 | 001,259,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\lsasrv.dll
[2010/07/29 19:19:04 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\aaclient.dll
[2010/07/29 19:19:04 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tsgqec.dll
[2010/07/29 19:18:48 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\asycfilt.dll
[2010/07/29 19:17:29 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wlanmsm.dll
[2010/07/29 19:17:29 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wlanhlp.dll
[2010/07/29 19:17:28 | 000,302,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wlansec.dll
[2010/07/29 19:17:28 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\L2SecHC.dll
[2010/07/29 19:17:28 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wlanapi.dll
[2010/07/29 19:17:20 | 000,289,792 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll
[2010/07/29 19:17:20 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fontsub.dll
[2010/07/29 19:17:20 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\System32\atmlib.dll
[2010/07/29 19:17:20 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dciman32.dll
[2010/07/29 19:17:19 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\t2embed.dll
[2010/07/29 19:17:17 | 000,623,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\localspl.dll
[2010/07/29 19:17:11 | 000,430,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vbscript.dll
[2010/07/29 19:17:06 | 000,512,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript.dll
[2010/07/29 19:16:57 | 000,220,672 | ---- | C] (Fraunhofer Institut Integrierte Schaltungen IIS) -- C:\Windows\System32\l3codecp.acm
lyam
Novice
Novice
Messages : 9
Enregistré le : 03 août 2010, 12:22

Re: ordi lent au démarrage et pour s'éteindre

Message par lyam »

et voici l'autre partie 2/2

[2010/07/29 19:16:57 | 000,062,464 | ---- | C] (Fraunhofer Institut Integrierte Schaltungen IIS) -- C:\Windows\System32\l3codeca.acm
[2010/07/29 19:15:42 | 000,000,000 | ---D | C] -- C:\Users\lyam\Desktop\projet reprographie
[2010/07/29 19:15:23 | 000,000,000 | ---D | C] -- C:\Users\lyam\Desktop\photo ebay
[2010/07/29 19:13:18 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spwmp.dll
[2010/07/29 19:13:18 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdxm.ocx
[2010/07/29 19:13:18 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxmasf.dll
[2010/07/29 19:13:16 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdxm.tlb
[2010/07/29 19:13:16 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\amcompat.tlb
[2010/07/29 19:04:15 | 000,355,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WSDApi.dll
[2010/07/29 19:04:11 | 001,314,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\quartz.dll
[2010/07/29 19:04:10 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msvfw32.dll
[2010/07/29 19:04:10 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\avifil32.dll
[2010/07/29 19:04:10 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mciavi32.dll
[2010/07/29 19:04:06 | 000,604,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMSPDMOD.DLL
[2010/07/29 19:04:04 | 002,037,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2010/07/29 19:04:02 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rastls.dll
[2010/07/29 19:00:20 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Roaming\vlc
[2010/07/29 19:00:01 | 000,000,000 | ---D | C] -- C:\Program Files\VideoLAN
[2010/07/29 18:54:15 | 002,421,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wucltux.dll
[2010/07/29 18:54:15 | 000,044,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups2.dll
[2010/07/29 18:53:55 | 000,575,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapi.dll
[2010/07/29 18:53:55 | 000,087,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wudriver.dll
[2010/07/29 18:53:55 | 000,035,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups.dll
[2010/07/29 18:53:45 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Roaming\Macromedia
[2010/07/29 18:53:41 | 000,171,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuwebv.dll
[2010/07/29 18:53:41 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapp.exe
[2010/07/29 18:49:50 | 000,000,000 | ---D | C] -- C:\Program Files\Securitoo
[2010/07/29 18:23:08 | 000,000,000 | ---D | C] -- C:\Windows\Panther
[2010/07/29 17:43:03 | 000,028,224 | ---- | C] (Printing Communications Assoc., Inc. (PCAUSA)) -- C:\Windows\System32\drivers\PCAMp50.sys
[2010/07/29 17:43:03 | 000,027,072 | ---- | C] (Printing Communications Assoc., Inc. (PCAUSA)) -- C:\Windows\System32\drivers\PCASp50.sys
[2010/07/29 17:42:44 | 000,065,536 | ---- | C] (France Telecom SA) -- C:\Windows\System32\Autodial2000.dll
[2010/07/29 17:42:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\Macromed
[2010/07/29 17:42:33 | 000,000,000 | ---D | C] -- C:\Program Files\Orange
[2010/07/29 17:42:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\France Telecom
[2010/07/29 17:42:13 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\atl71.dll
[2010/07/29 17:39:46 | 000,000,000 | RH-D | C] -- C:\Users\lyam\Searches
[2010/07/29 17:39:34 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Roaming\Identities
[2010/07/29 17:39:31 | 000,000,000 | R--D | C] -- C:\Users\lyam\Contacts
[2010/07/29 17:39:30 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Local\VirtualStore
[2010/07/29 17:39:26 | 000,000,000 | -HSD | C] -- C:\Users\lyam\Voisinage réseau
[2010/07/29 17:39:26 | 000,000,000 | -HSD | C] -- C:\Users\lyam\Voisinage d'impression
[2010/07/29 17:39:26 | 000,000,000 | -HSD | C] -- C:\Users\lyam\AppData\Local\Temporary Internet Files
[2010/07/29 17:39:26 | 000,000,000 | -HSD | C] -- C:\Users\lyam\SendTo
[2010/07/29 17:39:26 | 000,000,000 | -HSD | C] -- C:\Users\lyam\Recent
[2010/07/29 17:39:26 | 000,000,000 | -HSD | C] -- C:\Users\lyam\Modèles
[2010/07/29 17:39:26 | 000,000,000 | -HSD | C] -- C:\Users\lyam\Documents\Mes vidéos
[2010/07/29 17:39:26 | 000,000,000 | -HSD | C] -- C:\Users\lyam\Documents\Mes images
[2010/07/29 17:39:26 | 000,000,000 | -HSD | C] -- C:\Users\lyam\Mes documents
[2010/07/29 17:39:26 | 000,000,000 | -HSD | C] -- C:\Users\lyam\Menu Démarrer
[2010/07/29 17:39:26 | 000,000,000 | -HSD | C] -- C:\Users\lyam\Documents\Ma musique
[2010/07/29 17:39:26 | 000,000,000 | -HSD | C] -- C:\Users\lyam\Local Settings
[2010/07/29 17:39:26 | 000,000,000 | -HSD | C] -- C:\Users\lyam\AppData\Local\Historique
[2010/07/29 17:39:26 | 000,000,000 | -HSD | C] -- C:\Users\lyam\Cookies
[2010/07/29 17:39:26 | 000,000,000 | -HSD | C] -- C:\Users\lyam\Application Data
[2010/07/29 17:39:26 | 000,000,000 | -HSD | C] -- C:\Users\lyam\AppData\Local\Application Data
[2010/07/29 17:39:24 | 000,000,000 | --SD | C] -- C:\Users\lyam\AppData\Roaming\Microsoft
[2010/07/29 17:39:24 | 000,000,000 | RH-D | C] -- C:\Users\lyam\Videos
[2010/07/29 17:39:24 | 000,000,000 | RH-D | C] -- C:\Users\lyam\Saved Games
[2010/07/29 17:39:24 | 000,000,000 | RH-D | C] -- C:\Users\lyam\Pictures
[2010/07/29 17:39:24 | 000,000,000 | RH-D | C] -- C:\Users\lyam\Music
[2010/07/29 17:39:24 | 000,000,000 | RH-D | C] -- C:\Users\lyam\Links
[2010/07/29 17:39:24 | 000,000,000 | RH-D | C] -- C:\Users\lyam\Downloads
[2010/07/29 17:39:24 | 000,000,000 | R--D | C] -- C:\Users\lyam\Favorites
[2010/07/29 17:39:24 | 000,000,000 | R--D | C] -- C:\Users\lyam\Documents
[2010/07/29 17:39:24 | 000,000,000 | R--D | C] -- C:\Users\lyam\Desktop
[2010/07/29 17:39:24 | 000,000,000 | -H-D | C] -- C:\Users\lyam\AppData
[2010/07/29 17:39:24 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Local\Temp
[2010/07/29 17:39:24 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Local\Microsoft
[2010/07/29 17:39:24 | 000,000,000 | ---D | C] -- C:\Users\lyam\AppData\Roaming\Media Center Programs
[2010/07/29 17:37:07 | 000,000,000 | -HSD | C] -- C:\ProgramData\Modèles
[2010/07/29 17:37:07 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Mes vidéos
[2010/07/29 17:37:07 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Mes images
[2010/07/29 17:37:07 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Ma musique
[2010/07/29 17:37:07 | 000,000,000 | -HSD | C] -- C:\Program Files\Fichiers communs
[2010/07/29 17:37:06 | 000,000,000 | -HSD | C] -- C:\ProgramData\Menu Démarrer
[2010/07/29 17:37:06 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoris
[2010/07/29 17:37:06 | 000,000,000 | -HSD | C] -- C:\ProgramData\Bureau
[2010/07/29 17:36:37 | 000,000,000 | ---D | C] -- C:\Windows\Debug
[2010/07/29 17:30:33 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2010/07/29 17:28:35 | 000,000,000 | ---D | C] -- C:\Windows\CSC
[2010/07/29 17:24:21 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2010/08/03 14:12:51 | 001,310,720 | -HS- | M] () -- C:\Users\lyam\NTUSER.DAT
[2010/08/03 13:45:37 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Users\lyam\Desktop\OTL.exe
[2010/08/03 13:41:41 | 000,000,818 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/08/03 13:28:04 | 000,008,192 | ---- | M] () -- C:\Users\lyam\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/08/03 13:28:02 | 000,001,079 | ---- | M] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\Spybot - Search & Destroy.lnk
[2010/08/03 13:25:39 | 016,409,960 | ---- | M] (Safer Networking Limited ) -- C:\Users\lyam\Desktop\spybotsd162.exe
[2010/08/03 12:58:54 | 000,004,000 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010/08/03 12:58:54 | 000,004,000 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010/08/03 12:29:43 | 000,002,697 | ---- | M] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Word 2010 (2).lnk
[2010/08/03 12:21:23 | 001,470,810 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2010/08/03 12:21:23 | 000,669,566 | ---- | M] () -- C:\Windows\System32\perfh00C.dat
[2010/08/03 12:21:23 | 000,587,000 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010/08/03 12:21:23 | 000,123,556 | ---- | M] () -- C:\Windows\System32\perfc00C.dat
[2010/08/03 12:21:23 | 000,101,072 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010/08/03 12:13:52 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010/08/03 12:13:45 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010/08/03 12:13:25 | 000,021,784 | ---- | M] () -- C:\Windows\System32\oodbs.lor
[2010/08/03 12:12:06 | 000,524,288 | -HS- | M] () -- C:\Users\lyam\NTUSER.DAT{0f69446d-6a70-11db-8eb3-985e31beb686}.TMContainer00000000000000000001.regtrans-ms
[2010/08/03 12:12:06 | 000,065,536 | -HS- | M] () -- C:\Users\lyam\NTUSER.DAT{0f69446d-6a70-11db-8eb3-985e31beb686}.TM.blf
[2010/08/03 12:12:03 | 001,308,362 | -H-- | M] () -- C:\Users\lyam\AppData\Local\IconCache.db
[2010/08/02 20:01:36 | 000,000,052 | ---- | M] () -- C:\Windows\System32\ashttpstats.csv
[2010/08/02 08:53:01 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_07_00.Wdf
[2010/08/01 13:07:35 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_Apfiltr_01001.Wdf
[2010/08/01 12:28:17 | 000,013,388 | ---- | M] () -- C:\Users\lyam\Desktop\Archos.docx
[2010/08/01 12:03:16 | 000,019,729 | ---- | M] () -- C:\Users\lyam\Desktop\annonce ebay.docx
[2010/07/31 20:22:32 | 000,000,943 | ---- | M] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2010/07/31 20:16:25 | 000,301,280 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2010/07/31 18:26:33 | 000,000,938 | ---- | M] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
[2010/07/31 17:52:25 | 000,000,385 | ---- | M] () -- C:\Windows\System32\user_gensett.xml
[2010/07/31 16:24:45 | 000,000,000 | ---- | M] () -- C:\Windows\System32\wsbl.dat
[2010/07/31 16:24:45 | 000,000,000 | ---- | M] () -- C:\Windows\System32\phar_unmip.dat
[2010/07/31 16:24:45 | 000,000,000 | ---- | M] () -- C:\Windows\System32\phar_histprot.dat
[2010/07/31 16:24:45 | 000,000,000 | ---- | M] () -- C:\Windows\System32\ph_summ.dat
[2010/07/31 16:24:45 | 000,000,000 | ---- | M] () -- C:\Windows\System32\ph_spoof.sig
[2010/07/31 16:24:45 | 000,000,000 | ---- | M] () -- C:\Windows\System32\ph_sign.slf
[2010/07/31 16:24:45 | 000,000,000 | ---- | M] () -- C:\Windows\System32\ph_fuzzy.sig
[2010/07/31 16:24:44 | 000,000,000 | ---- | M] () -- C:\Windows\System32\ph_white.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | M] () -- C:\Windows\System32\ph_black.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | M] () -- C:\Windows\System32\pcwords2.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | M] () -- C:\Windows\System32\pc_webproxy.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | M] () -- C:\Windows\System32\pc_video.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | M] () -- C:\Windows\System32\pc_tabloids.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | M] () -- C:\Windows\System32\pc_socialnetworks.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | M] () -- C:\Windows\System32\pc_searchengines.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | M] () -- C:\Windows\System32\pc_regionaltlds.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | M] () -- C:\Windows\System32\pc_pornography.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | M] () -- C:\Windows\System32\pc_onlineshop.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | M] () -- C:\Windows\System32\pc_onlinepay.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | M] () -- C:\Windows\System32\pc_onlinedating.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | M] () -- C:\Windows\System32\pc_news.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | M] () -- C:\Windows\System32\pc_im.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | M] () -- C:\Windows\System32\pc_illegal.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | M] () -- C:\Windows\System32\pc_hate.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | M] () -- C:\Windows\System32\pc_games.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | M] () -- C:\Windows\System32\pc_gambling.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | M] () -- C:\Windows\System32\pc_drugs.dat
[2010/07/31 14:41:43 | 000,000,025 | ---- | M] () -- C:\Users\lyam\AppData\Roaming\bdfvconp.ini
[2010/07/31 14:38:43 | 000,000,132 | ---- | M] () -- C:\Windows\System32\rezumatenoi.dat
[2010/07/31 14:38:17 | 000,000,121 | ---- | M] () -- C:\Windows\bdagent.INI
[2010/07/31 14:26:28 | 000,106,464 | ---- | M] (BitDefender S.R.L. Bucharest, ROMANIA) -- C:\Windows\System32\drivers\bdhv.sys
[2010/07/31 14:26:26 | 000,153,448 | ---- | M] (BitDefender S.R.L. Bucharest, ROMANIA) -- C:\Windows\System32\drivers\bdfm.sys
[2010/07/31 14:21:46 | 000,291,352 | ---- | M] (BitDefender) -- C:\Windows\System32\drivers\bdfsfltr.sys
[2010/07/31 14:01:19 | 000,072,784 | ---- | M] (BitDefender LLC) -- C:\Windows\System32\drivers\bdfndisf6.sys
[2010/07/31 09:32:49 | 000,000,016 | ---- | M] () -- C:\Windows\System32\asdict.dat
[2010/07/31 09:32:49 | 000,000,004 | ---- | M] () -- C:\Windows\System32\aspdict-en.dat
[2010/07/31 09:32:49 | 000,000,000 | ---- | M] () -- C:\Windows\System32\pcwords.dat
[2010/07/31 09:32:49 | 000,000,000 | ---- | M] () -- C:\Windows\System32\pc_sign.slf
[2010/07/31 09:32:49 | 000,000,000 | ---- | M] () -- C:\Windows\System32\ab_bl.sig
[2010/07/31 09:03:29 | 000,002,003 | ---- | M] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\BitDefender Total Security 2010.lnk
[2010/07/31 08:44:22 | 000,001,896 | ---- | M] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\O&O Defrag.lnk
[2010/07/30 19:20:40 | 000,076,112 | ---- | M] () -- C:\Users\lyam\AppData\Local\GDIPFONTCACHEV1.DAT
[2010/07/30 14:41:53 | 000,000,973 | ---- | M] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\googleearth.lnk
[2010/07/30 14:22:02 | 000,225,941 | ---- | M] () -- C:\Windows\hpoins46.dat
[2010/07/30 14:21:46 | 000,000,179 | ---- | M] () -- C:\Windows\win.ini
[2010/07/30 14:12:53 | 000,001,972 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
[2010/07/30 11:54:41 | 000,008,192 | ---- | M] () -- C:\Windows\System32\srvany.exe
[2010/07/30 11:03:53 | 000,001,869 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\e-Carte Bleue Banque Populaire.lnk
[2010/07/30 11:03:53 | 000,001,835 | ---- | M] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\e-Carte Bleue Banque Populaire.lnk
[2010/07/30 10:32:10 | 000,002,560 | ---- | M] () -- C:\Windows\_MSRSTRT.EXE
[2010/07/30 10:27:02 | 000,000,952 | ---- | M] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Security Essentials.lnk
[2010/07/30 10:24:49 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt
[2010/07/30 10:21:38 | 052,923,144 | ---- | M] () -- C:\Users\lyam\AppData\Roaming\setup_av_pro.exe
[2010/07/30 10:12:34 | 000,000,804 | ---- | M] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\CCleaner.lnk
[2010/07/29 20:52:25 | 000,000,680 | ---- | M] () -- C:\Users\lyam\AppData\Local\d3d9caps.dat
[2010/07/29 19:41:36 | 000,000,890 | ---- | M] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\Shareaza.lnk
[2010/07/29 19:00:46 | 000,000,859 | ---- | M] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\VLC media player.lnk
[2010/07/29 18:50:06 | 000,524,288 | -HS- | M] () -- C:\Users\lyam\NTUSER.DAT{0f69446d-6a70-11db-8eb3-985e31beb686}.TMContainer00000000000000000002.regtrans-ms
[2010/07/29 18:22:52 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK
[2010/07/29 17:39:26 | 000,000,020 | -HS- | M] () -- C:\Users\lyam\ntuser.ini
[2010/07/29 17:32:17 | 000,068,040 | ---- | M] () -- C:\Windows\System32\license.rtf
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2010/08/03 13:41:41 | 000,000,818 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/08/03 13:40:07 | 005,850,452 | ---- | C] () -- C:\Users\lyam\Desktop\MalwarebytesAnti-Malware1.45.rar
[2010/08/03 13:28:02 | 000,001,079 | ---- | C] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\Spybot - Search & Destroy.lnk
[2010/08/02 08:53:01 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_07_00.Wdf
[2010/08/01 13:07:35 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_Apfiltr_01001.Wdf
[2010/08/01 12:28:16 | 000,013,388 | ---- | C] () -- C:\Users\lyam\Desktop\Archos.docx
[2010/07/31 18:26:33 | 000,000,938 | ---- | C] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
[2010/07/31 17:52:25 | 000,000,385 | ---- | C] () -- C:\Windows\System32\user_gensett.xml
[2010/07/31 17:50:37 | 000,001,972 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
[2010/07/31 17:50:37 | 000,001,869 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\e-Carte Bleue Banque Populaire.lnk
[2010/07/31 16:24:45 | 000,000,000 | ---- | C] () -- C:\Windows\System32\wsbl.dat
[2010/07/31 16:24:45 | 000,000,000 | ---- | C] () -- C:\Windows\System32\phar_unmip.dat
[2010/07/31 16:24:45 | 000,000,000 | ---- | C] () -- C:\Windows\System32\phar_histprot.dat
[2010/07/31 16:24:45 | 000,000,000 | ---- | C] () -- C:\Windows\System32\ph_summ.dat
[2010/07/31 16:24:45 | 000,000,000 | ---- | C] () -- C:\Windows\System32\ph_spoof.sig
[2010/07/31 16:24:45 | 000,000,000 | ---- | C] () -- C:\Windows\System32\ph_sign.slf
[2010/07/31 16:24:45 | 000,000,000 | ---- | C] () -- C:\Windows\System32\ph_fuzzy.sig
[2010/07/31 16:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\System32\ph_white.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\System32\ph_black.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pcwords2.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_webproxy.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_video.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_tabloids.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_socialnetworks.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_searchengines.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_regionaltlds.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_pornography.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_onlineshop.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_onlinepay.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_onlinedating.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_news.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_im.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_illegal.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_hate.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_games.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_gambling.dat
[2010/07/31 16:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_drugs.dat
[2010/07/31 15:51:58 | 000,019,729 | ---- | C] () -- C:\Users\lyam\Desktop\annonce ebay.docx
[2010/07/31 15:44:31 | 000,002,697 | ---- | C] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Word 2010 (2).lnk
[2010/07/31 14:49:27 | 000,000,052 | ---- | C] () -- C:\Windows\System32\ashttpstats.csv
[2010/07/31 14:41:43 | 000,000,025 | ---- | C] () -- C:\Users\lyam\AppData\Roaming\bdfvconp.ini
[2010/07/31 14:38:43 | 000,000,132 | ---- | C] () -- C:\Windows\System32\rezumatenoi.dat
[2010/07/31 14:36:06 | 000,000,121 | ---- | C] () -- C:\Windows\bdagent.INI
[2010/07/31 09:32:49 | 000,000,016 | ---- | C] () -- C:\Windows\System32\asdict.dat
[2010/07/31 09:32:49 | 000,000,004 | ---- | C] () -- C:\Windows\System32\aspdict-en.dat
[2010/07/31 09:32:49 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pcwords.dat
[2010/07/31 09:32:49 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_sign.slf
[2010/07/31 09:32:49 | 000,000,000 | ---- | C] () -- C:\Windows\System32\ab_bl.sig
[2010/07/31 09:03:29 | 000,002,003 | ---- | C] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\BitDefender Total Security 2010.lnk
[2010/07/31 09:00:30 | 000,021,784 | ---- | C] () -- C:\Windows\System32\oodbs.lor
[2010/07/31 08:44:22 | 000,001,896 | ---- | C] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\O&O Defrag.lnk
[2010/07/30 14:41:53 | 000,000,973 | ---- | C] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\googleearth.lnk
[2010/07/30 14:00:59 | 000,225,941 | ---- | C] () -- C:\Windows\hpoins46.dat
[2010/07/30 14:00:59 | 000,001,244 | ---- | C] () -- C:\ProgramData\hpzinstall.log
[2010/07/30 13:34:52 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2010/07/30 13:34:49 | 011,967,524 | ---- | C] () -- C:\Windows\System32\korwbrkr.lex
[2010/07/30 12:18:21 | 000,130,008 | ---- | C] () -- C:\Windows\System32\systemsf.ebd
[2010/07/30 12:18:18 | 000,009,239 | ---- | C] () -- C:\Windows\System32\spcinstrumentation.man
[2010/07/30 12:18:06 | 000,442,788 | ---- | C] () -- C:\Windows\System32\dot3.tmf
[2010/07/30 12:18:04 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2010/07/30 12:18:03 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2010/07/30 12:18:00 | 003,662,128 | ---- | C] () -- C:\Windows\System32\locale.nls
[2010/07/30 12:17:59 | 000,392,170 | ---- | C] () -- C:\Windows\System32\onex.tmf
[2010/07/30 12:17:51 | 000,344,698 | ---- | C] () -- C:\Windows\System32\eaphost.tmf
[2010/07/30 12:17:20 | 000,208,966 | ---- | C] () -- C:\Windows\System32\WFP.TMF
[2010/07/30 12:17:13 | 000,092,918 | ---- | C] () -- C:\Windows\System32\slmgr.vbs
[2010/07/30 12:16:01 | 000,062,976 | ---- | C] () -- C:\Windows\System32\PrintBrmUi.exe
[2010/07/30 12:15:45 | 000,009,212 | ---- | C] () -- C:\Windows\System32\RacUR.xml
[2010/07/30 12:15:19 | 000,000,153 | ---- | C] () -- C:\Windows\System32\RacUREx.xml
[2010/07/30 11:55:29 | 000,008,192 | ---- | C] () -- C:\Windows\System32\srvany.exe
[2010/07/30 11:03:53 | 000,001,835 | ---- | C] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\e-Carte Bleue Banque Populaire.lnk
[2010/07/30 10:32:09 | 000,002,560 | ---- | C] () -- C:\Windows\_MSRSTRT.EXE
[2010/07/30 10:27:02 | 000,000,952 | ---- | C] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Security Essentials.lnk
[2010/07/30 10:21:36 | 052,923,144 | ---- | C] () -- C:\Users\lyam\AppData\Roaming\setup_av_pro.exe
[2010/07/30 10:12:34 | 000,000,804 | ---- | C] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\CCleaner.lnk
[2010/07/29 19:41:36 | 000,000,890 | ---- | C] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\Shareaza.lnk
[2010/07/29 19:17:29 | 002,501,921 | ---- | C] () -- C:\Windows\System32\wlan.tmf
[2010/07/29 19:01:50 | 000,008,192 | ---- | C] () -- C:\Users\lyam\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/07/29 19:00:46 | 000,000,859 | ---- | C] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\VLC media player.lnk
[2010/07/29 18:53:29 | 000,000,943 | ---- | C] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2010/07/29 17:39:27 | 000,000,680 | ---- | C] () -- C:\Users\lyam\AppData\Local\d3d9caps.dat
[2010/07/29 17:39:26 | 000,000,020 | -HS- | C] () -- C:\Users\lyam\ntuser.ini
[2010/07/29 17:39:25 | 000,524,288 | -HS- | C] () -- C:\Users\lyam\NTUSER.DAT{0f69446d-6a70-11db-8eb3-985e31beb686}.TMContainer00000000000000000002.regtrans-ms
[2010/07/29 17:39:25 | 000,524,288 | -HS- | C] () -- C:\Users\lyam\NTUSER.DAT{0f69446d-6a70-11db-8eb3-985e31beb686}.TMContainer00000000000000000001.regtrans-ms
[2010/07/29 17:39:25 | 000,262,144 | -H-- | C] () -- C:\Users\lyam\ntuser.dat.LOG1
[2010/07/29 17:39:25 | 000,065,536 | -HS- | C] () -- C:\Users\lyam\NTUSER.DAT{0f69446d-6a70-11db-8eb3-985e31beb686}.TM.blf
[2010/07/29 17:39:25 | 000,000,258 | ---- | C] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk
[2010/07/29 17:39:25 | 000,000,240 | ---- | C] () -- C:\Users\lyam\Application Data\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk
[2010/07/29 17:39:25 | 000,000,000 | -H-- | C] () -- C:\Users\lyam\ntuser.dat.LOG2
[2010/07/29 17:39:24 | 001,310,720 | -HS- | C] () -- C:\Users\lyam\NTUSER.DAT
[2009/01/15 13:45:34 | 000,181,248 | ---- | C] () -- C:\Windows\System32\txmlutil.dll
[2008/02/11 19:55:18 | 000,147,456 | ---- | C] () -- C:\Windows\System32\igfxCoIn_v1437.dll
[2008/01/21 04:23:41 | 000,081,158 | ---- | C] () -- C:\Windows\System32\manage-bde.ini.en
[2007/01/31 14:50:32 | 000,913,408 | ---- | C] () -- C:\Windows\System32\xreglib.dll
[2006/11/02 14:34:20 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006/11/02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini

========== LOP Check ==========

[2010/07/31 08:55:22 | 000,000,000 | ---D | M] -- C:\Users\lyam\AppData\Roaming\BitDefender
[2010/08/03 12:14:41 | 000,000,000 | ---D | M] -- C:\Users\lyam\AppData\Roaming\DMCache
[2010/08/02 18:20:08 | 000,000,000 | ---D | M] -- C:\Users\lyam\AppData\Roaming\IDM
[2010/07/29 19:41:45 | 000,000,000 | ---D | M] -- C:\Users\lyam\AppData\Roaming\Shareaza
[2010/08/03 12:12:34 | 000,016,698 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 16 bytes -> C:\Users\lyam\Downloads:Shareaza.GUID
< End of report >
Avatar du membre
nardino
Modérateurs
Modérateurs
Messages : 11993
Enregistré le : 05 févr. 2007, 17:38
Localisation : Reims
Contact :

Re: ordi lent au démarrage et pour s'éteindre

Message par nardino »

Bonsoir,

Une installation toute neuve avec déjà une belle porte d'entrée pour les véroles de tout genre : Shareaza
Chacun voit midi à sa porte mais sommes-nous vraiment là pour être au service de gens qui prennent des risques volontairement.

D'autre part abondance de bien nuit.
Windows Defender, Spybot S&D Tea-Timer, et Malwarebytes sans compter l'antimalware de BitDefender ça commence à faire beaucoup.

Je te conseille de conserver ton antivirus, ton pare-feu et Malxarebytes pour des scans de contrôle.
Tu peux virer Spybot arpès avoir désactiver Tea-Timer et tu peux désactiver Windows Defender qui va de toutes façons être abandonné par MS puisque il est intégré à MSSE, l'antivirus
maison.

Télécharge OTM de OldTimer :
http://oldtimer.geekstogo.com/OTM.exe

Enregistre-le sur le Bureau.
Double-clique sur OTM.exe pour lancer l'outil.
Note :
Sous Vista, clic droit sur le fichier et Exécuter en tant qu'administrateur.
Copie toutes les lignes ci-dessous en citation par CTRL+C dans le presse-papier.
:files
C:\Windows\System32\wsbl.dat
C:\Windows\System32\phar_unmip.dat
C:\Windows\System32\phar_histprot.dat
C:\Windows\System32\ph_summ.dat
C:\Windows\System32\ph_spoof.sig
C:\Windows\System32\ph_sign.slf
C:\Windows\System32\ph_fuzzy.sig
C:\Windows\System32\ph_white.dat
C:\Windows\System32\ph_black.dat
C:\Windows\System32\pcwords2.dat
C:\Windows\System32\pc_webproxy.dat
C:\Windows\System32\pc_video.dat
C:\Windows\System32\pc_tabloids.dat
C:\Windows\System32\pc_socialnetworks.dat
C:\Windows\System32\pc_searchengines.dat
C:\Windows\System32\pc_regionaltlds.dat
C:\Windows\System32\pc_pornography.dat
C:\Windows\System32\pc_onlineshop.dat
C:\Windows\System32\pc_onlinepay.dat
C:\Windows\System32\pc_onlinedating.dat
C:\Windows\System32\pc_news.dat
C:\Windows\System32\pc_im.dat
C:\Windows\System32\pc_illegal.dat
C:\Windows\System32\pc_hate.dat
C:\Windows\System32\pc_games.dat
C:\Windows\System32\pc_gambling.dat
C:\Windows\System32\pc_drugs.dat

:commands
[purity]
[emptytemp]
Dans OTM, place le curseur dans la la fenêtre "Paste Instructions for Items to be Moved" et tu cliques sur CTRL+V pour coller le contenu du presse-papier.
Clique sur le bouton MoveIt!, le rouge.

Image

Ferme l'outil. Le pc va redémarrer
Poste le contenu du rapport C:\_OTM\MovedFiles\********_******.log
Les * représentent Mois/Jour/Année_Heure/Minutes/Secondes

Fais un scan avec Malwarebytes et poste le rapport.

@+
Image
Clic sur l'image pour ouvrir le site.
lyam
Novice
Novice
Messages : 9
Enregistré le : 03 août 2010, 12:22

Re: ordi lent au démarrage et pour s'éteindre

Message par lyam »

Merci pour le tutorial

alors le rapport otm

All processes killed
========== FILES ==========
C:\Windows\System32\wsbl.dat moved successfully.
C:\Windows\System32\phar_unmip.dat moved successfully.
C:\Windows\System32\phar_histprot.dat moved successfully.
C:\Windows\System32\ph_summ.dat moved successfully.
File move failed. C:\Windows\System32\ph_spoof.sig scheduled to be moved on reboot.
C:\Windows\System32\ph_sign.slf moved successfully.
C:\Windows\System32\ph_fuzzy.sig moved successfully.
C:\Windows\System32\ph_white.dat moved successfully.
C:\Windows\System32\ph_black.dat moved successfully.
C:\Windows\System32\pcwords2.dat moved successfully.
C:\Windows\System32\pc_webproxy.dat moved successfully.
C:\Windows\System32\pc_video.dat moved successfully.
C:\Windows\System32\pc_tabloids.dat moved successfully.
C:\Windows\System32\pc_socialnetworks.dat moved successfully.
C:\Windows\System32\pc_searchengines.dat moved successfully.
C:\Windows\System32\pc_regionaltlds.dat moved successfully.
C:\Windows\System32\pc_pornography.dat moved successfully.
C:\Windows\System32\pc_onlineshop.dat moved successfully.
C:\Windows\System32\pc_onlinepay.dat moved successfully.
C:\Windows\System32\pc_onlinedating.dat moved successfully.
C:\Windows\System32\pc_news.dat moved successfully.
C:\Windows\System32\pc_im.dat moved successfully.
C:\Windows\System32\pc_illegal.dat moved successfully.
C:\Windows\System32\pc_hate.dat moved successfully.
C:\Windows\System32\pc_games.dat moved successfully.
C:\Windows\System32\pc_gambling.dat moved successfully.
C:\Windows\System32\pc_drugs.dat moved successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: lyam
->Temp folder emptied: 324472 bytes
->Temporary Internet Files folder emptied: 11169354 bytes
->Flash cache emptied: 2606443 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 266991041 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 279388 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 268,00 mb


OTM by OldTimer - Version 3.1.15.0 log created on 08042010_092514

Files moved on Reboot...
C:\Windows\System32\ph_spoof.sig moved successfully.
File C:\Users\lyam\AppData\Local\Temp\~DF2DBF.tmp not found!
File C:\Users\lyam\AppData\Local\Temp\~DF2DE1.tmp not found!
C:\Users\lyam\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L8V50L0B\ads[5].htm moved successfully.
C:\Users\lyam\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L8V50L0B\iframe[1].htm moved successfully.
C:\Users\lyam\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L8V50L0B\topic14078[1].htm moved successfully.
C:\Users\lyam\AppData\Local\Microsoft\Windows\Temporary Internet Files\AntiPhishing\A0AB7674-8D67-4F4D-B5E1-96FAEADFB79D.dat moved successfully.

Registry entries deleted on Reboot...

le rapport malware

Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Version de la base de données: 4387

Windows 6.0.6002 Service Pack 2
Internet Explorer 7.0.6002.18005

04/08/2010 09:46:05
mbam-log-2010-08-04 (09-46-05).txt

Type d'examen: Examen rapide
Elément(s) analysé(s): 128685
Temps écoulé: 11 minute(s), 45 seconde(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
Avatar du membre
nardino
Modérateurs
Modérateurs
Messages : 11993
Enregistré le : 05 févr. 2007, 17:38
Localisation : Reims
Contact :

Re: ordi lent au démarrage et pour s'éteindre

Message par nardino »

Bonjour

Pour savoir ce qui a causé l'écran bleu de la mort.
Image Télécharge WhoCrashed Home Edition 1.01 de Resplendence

Image Clique sur Download et dans la fenêtre suivante sur Download free home edition

Tu l'installes et tu le lances par Analyze.
Image Tu postes un copier-coller de ce qui apparait dans Conclusion en bas de la page.

@+
Image
Clic sur l'image pour ouvrir le site.
lyam
Novice
Novice
Messages : 9
Enregistré le : 03 août 2010, 12:22

Re: ordi lent au démarrage et pour s'éteindre

Message par lyam »

voici le rapport

Crash dumps are enabled and no valid crash dumps have been found on your computer. In case your computer does experience sudden reboots it is likely these are caused by malfunctioning hardware, power failure or a thermal issue. To troubleshoot a thermal issue, check the temperature using your BIOS setup program, check for dust in CPU and motherboard fans and if your computer is portable make sure it's located on a hard surface. Otherwise it's suggested you contact the support department of the manufacturer of your system or test your system with a memory test utility for further investigation.



alors sa serais du a une température trop élévée ?
Avatar du membre
nardino
Modérateurs
Modérateurs
Messages : 11993
Enregistré le : 05 févr. 2007, 17:38
Localisation : Reims
Contact :

Re: ordi lent au démarrage et pour s'éteindre

Message par nardino »

Bonjour
Il me faut tout le rapport :wink:
@+
Image
Clic sur l'image pour ouvrir le site.
lyam
Novice
Novice
Messages : 9
Enregistré le : 03 août 2010, 12:22

Re: ordi lent au démarrage et pour s'éteindre

Message par lyam »

sa me marque rien d'autre
Avatar du membre
nardino
Modérateurs
Modérateurs
Messages : 11993
Enregistré le : 05 févr. 2007, 17:38
Localisation : Reims
Contact :

Re: ordi lent au démarrage et pour s'éteindre

Message par nardino »

Bonjour
Bizarre puisque tu parles bien d'écran bleu dans ton premier message.
As-tu fait le ménage dans tes programmes ?
(Ceux dont je parle plus haut.)
@
Image
Clic sur l'image pour ouvrir le site.
lyam
Novice
Novice
Messages : 9
Enregistré le : 03 août 2010, 12:22

Re: ordi lent au démarrage et pour s'éteindre

Message par lyam »

oui j'ai fais le ménage et sa tourne pour le moment. Donc je vais rester comme ca et si j'ai un autre souci je repasserais en ouvrant un autre topic . Merci pour votre patience et votre gentilesse
Avatar du membre
nardino
Modérateurs
Modérateurs
Messages : 11993
Enregistré le : 05 févr. 2007, 17:38
Localisation : Reims
Contact :

Re: ordi lent au démarrage et pour s'éteindre [RESOLU]

Message par nardino »

Bonsoir,

**Suppression de OTL**
Lance OTL et clique sur le bouton [Purge outils].

Désinstalle WhoCrashed

** Nettoyage quarantaine de MalwaresBytes**
Tu vas dans l'onglet quarantaine et tu vides celle-ci de tout son contenu.

**Création d'un point sain de restauration système**
Désactive la restauration système comme indiqué sur ce lien :
Et réactive-la pour recréer automatiquement un point sain de toute infection.

**Fermer la question**
Tu peux éditer le titre de ta question de base et y ajouter [résolu].
Si des soucis reviennent, continue sur ce sujet.
@+
Image
Clic sur l'image pour ouvrir le site.
Verrouillé