A la limite d'abandonner ...
Dernière réponse : dans Sécurité
Bonjour et merci si vous m’apportez votre aide car la ça devient incroyablement très très lent (environ 10 minutes pour allumer l’ordi et stabiliser les icones !! mais ensuite ca fonctionne par saccades !??) même après la mise à jour SP3 !!?? plus test avec window defender et scan en ligne rien de trouvé.
Là encore des fenètres WORD se ferment seules.
Enfin que de la galère ca fait bientôt une heure et pas encore reussis a vous envoyer un message sur le forum.
Voici mon hijackthis : environ 5 minutes pour avoir le résultat du rapport !
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:08:29, on 14/08/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\Dit.exe
C:\Program Files\Logitech\iTouch\iTouch.exe
C:\WINDOWS\system32\RunDll32.exe
C:\Program Files\Logitech\MouseWare\system\em_exec.exe
C:\WINDOWS\DitExp.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqSRMon.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\e-Carte Bleue Banque Populaire\ecbl-nxbp.exe
C:\WINDOWS\system32\spoolsv.exe
c:\program files\a-squared free\a2service.exe
C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe
C:\WINDOWS\System32\DRIVERS\CDANTSRV.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\wbem\wmiapsrv.exe
C:\Program Files\Java\jre6\bin\jucheck.exe
C:\Program Files\Microsoft Office\Office10\WINWORD.EXE
C:\Program Files\Microsoft\Office Live\OfficeLiveSignIn.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\msagent\AgentSvr.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/fwlink/?linkid=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://portail.free.fr/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\Hewlett-Packard\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: e-Carte Bleue Browser Helper Object - {2E03C0FD-4C48-43A7-9A54-00240C70FF16} - (no file)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\Hewlett-Packard\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [Dit] Dit.exe
O4 - HKLM\..\Run: [VOBRegCheck] "C:\WINDOWS\System32\VOBREGCheck.exe" -CheckReg
O4 - HKLM\..\Run: [zBrowser Launcher] "C:\Program Files\Logitech\iTouch\iTouch.exe"
O4 - HKLM\..\Run: [nwiz] "nwiz.exe" /install
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: e-Carte Bleue Banque Populaire.lnk = C:\Program Files\e-Carte Bleue Banque Populaire\ecbl-nxbp.exe
O8 - Extra context menu item: &Add animation to IncrediMail Style Box - C:\PROGRA~1\INCRED~1\bin\resources\WebMenuImg.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Créer un Favori de l'appareil mobile - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: Run WinHTTrack - {36ECAF82-3300-8F84-092E-AFF36D6C7040} - C:\Program Files\WinHTTrack\WinHTTrackIEBar.dll
O9 - Extra 'Tools' menuitem: Launch WinHTTrack - {36ECAF82-3300-8F84-092E-AFF36D6C7040} - C:\Program Files\WinHTTrack\WinHTTrackIEBar.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
O9 - Extra button: Sélection intelligente HP - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\Hewlett-Packard\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267....
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPACl...
O16 - DPF: {4CCA4E80-9259-11D9-AC6E-444553544200} - http://h30155.www3.hp.com/ediags/dd/install/HPInstallMg...
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.c...
O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} - http://h20270.www2.hp.com/ediags/gmn2/install/HPProduct...
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://fichiers.touslesdrivers.com/fichiers/hardwaredet...
O16 - DPF: {88764F69-3831-4EC1-B40B-FF21D8381345} (AdVerifierADPCtrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSig...
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClie...
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdown...
O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSig...
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.ca...
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPACl...
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/bin/msnchat45.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - c:\program files\a-squared free\a2service.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation - C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\System32\DRIVERS\CDANTSRV.EXE
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - Ahead Software AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Nokia\PC Connectivity Solution\ServiceLayer.exe
--
End of file - 12768 bytes
Là encore des fenètres WORD se ferment seules.
Enfin que de la galère ca fait bientôt une heure et pas encore reussis a vous envoyer un message sur le forum.
Voici mon hijackthis : environ 5 minutes pour avoir le résultat du rapport !
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:08:29, on 14/08/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\Dit.exe
C:\Program Files\Logitech\iTouch\iTouch.exe
C:\WINDOWS\system32\RunDll32.exe
C:\Program Files\Logitech\MouseWare\system\em_exec.exe
C:\WINDOWS\DitExp.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqSRMon.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\e-Carte Bleue Banque Populaire\ecbl-nxbp.exe
C:\WINDOWS\system32\spoolsv.exe
c:\program files\a-squared free\a2service.exe
C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe
C:\WINDOWS\System32\DRIVERS\CDANTSRV.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\wbem\wmiapsrv.exe
C:\Program Files\Java\jre6\bin\jucheck.exe
C:\Program Files\Microsoft Office\Office10\WINWORD.EXE
C:\Program Files\Microsoft\Office Live\OfficeLiveSignIn.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\msagent\AgentSvr.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/fwlink/?linkid=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://portail.free.fr/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\Hewlett-Packard\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: e-Carte Bleue Browser Helper Object - {2E03C0FD-4C48-43A7-9A54-00240C70FF16} - (no file)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\Hewlett-Packard\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [Dit] Dit.exe
O4 - HKLM\..\Run: [VOBRegCheck] "C:\WINDOWS\System32\VOBREGCheck.exe" -CheckReg
O4 - HKLM\..\Run: [zBrowser Launcher] "C:\Program Files\Logitech\iTouch\iTouch.exe"
O4 - HKLM\..\Run: [nwiz] "nwiz.exe" /install
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: e-Carte Bleue Banque Populaire.lnk = C:\Program Files\e-Carte Bleue Banque Populaire\ecbl-nxbp.exe
O8 - Extra context menu item: &Add animation to IncrediMail Style Box - C:\PROGRA~1\INCRED~1\bin\resources\WebMenuImg.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Créer un Favori de l'appareil mobile - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: Run WinHTTrack - {36ECAF82-3300-8F84-092E-AFF36D6C7040} - C:\Program Files\WinHTTrack\WinHTTrackIEBar.dll
O9 - Extra 'Tools' menuitem: Launch WinHTTrack - {36ECAF82-3300-8F84-092E-AFF36D6C7040} - C:\Program Files\WinHTTrack\WinHTTrackIEBar.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
O9 - Extra button: Sélection intelligente HP - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\Hewlett-Packard\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267....
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPACl...
O16 - DPF: {4CCA4E80-9259-11D9-AC6E-444553544200} - http://h30155.www3.hp.com/ediags/dd/install/HPInstallMg...
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.c...
O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} - http://h20270.www2.hp.com/ediags/gmn2/install/HPProduct...
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://fichiers.touslesdrivers.com/fichiers/hardwaredet...
O16 - DPF: {88764F69-3831-4EC1-B40B-FF21D8381345} (AdVerifierADPCtrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSig...
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClie...
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdown...
O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSig...
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.ca...
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPACl...
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/bin/msnchat45.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - c:\program files\a-squared free\a2service.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation - C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\System32\DRIVERS\CDANTSRV.EXE
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - Ahead Software AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Nokia\PC Connectivity Solution\ServiceLayer.exe
--
End of file - 12768 bytes
Autres pages sur : limite abandonner
Lassé par la pub ? Créez un compte
petit complement d'infos: le PC accelere apres quelque temps d'utilisation et j'ai scanné avec OTL
info lien OTL:
http://www.cijoint.fr/cjlink.php?file=cj201008/cijaKozF...
http://www.cijoint.fr/cjlink.php?file=cj201008/cijhQiOY...
merci encore
info lien OTL:
http://www.cijoint.fr/cjlink.php?file=cj201008/cijaKozF...
http://www.cijoint.fr/cjlink.php?file=cj201008/cijhQiOY...
merci encore
Bonsoir
Télécharge GMER à partir de ce lien : http://www.gmer.net/files.php - clic sur "Download EXE" et télécharge le fichier sur ton bureau.
Voir le tutorial GMER, ça peut peut-être t'aider : http://www.malekal.com/tutorial_GMER.php
Désactive tes logiciels de protection (antivirus, antispyware etc) et ferme tous les programmes ouverts.
Double-clique sur le fichier GMER téléchargé.
IMPORTANT: Si une alerte de ton antivirus apparaît pour le fichier gmer.sys ou gmer.exe, laisse le s'executer.
Clique sur l'onglet "rootkit"
A droite, coche tout.
Clique maintenant sur Scan.
Lorsque le scan est terminé, clique sur Copy.
Ouvre le Bloc-notes puis clique sur le Menu Edition / Coller.
Le rapport doit alors apparaître.
Enregistre le fichier sur ton Bureau et poste le contenu ici.
Télécharge GMER à partir de ce lien : http://www.gmer.net/files.php - clic sur "Download EXE" et télécharge le fichier sur ton bureau.
Voir le tutorial GMER, ça peut peut-être t'aider : http://www.malekal.com/tutorial_GMER.php
IMPORTANT: Si une alerte de ton antivirus apparaît pour le fichier gmer.sys ou gmer.exe, laisse le s'executer.
Le rapport doit alors apparaître.
Bonjour et MERCI
Apres 3 tentatives pour faire ce que tu me demandais (j'ai eu 1 bog, une fois ou la memoire n'etait pas suffisante et aussi un ecran bleu!!) voici le resultat du scan ... en esperant que ca puisse le faire:
GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-08-20 00:30:27
Windows 5.1.2600 Service Pack 3
Running: 49c9weld.exe; Driver: C:\DOCUME~1\ATOUS~1\LOCALS~1\Temp\uwriikob.sys
---- System - GMER 1.0.15 ----
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwClose [0xEDD58CD2]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwCreateKey [0xEDD58B8E]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwDeleteKey [0xEDD59142]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwDeleteValueKey [0xEDD5906C]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwDuplicateObject [0xEDD58764]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwOpenKey [0xEDD58C68]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwOpenProcess [0xEDD586A4]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwOpenThread [0xEDD58708]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwQueryValueKey [0xEDD58D88]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwRenameKey [0xEDD59210]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwRestoreKey [0xEDD58D48]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwSetValueKey [0xEDD58EC8]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwCreateProcessEx [0xEDD65B9C]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwCreateSection [0xEDD659C0]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwLoadDriver [0xEDD65AFA]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) NtCreateSection
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ObInsertObject
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ObMakeTemporaryObject
---- Kernel code sections - GMER 1.0.15 ----
PAGE ntoskrnl.exe!ObInsertObject 8056DA64 2 Bytes JMP EDD62F6C \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
PAGE ntoskrnl.exe!ObInsertObject + 3 8056DA67 2 Bytes [7F, 6D] {JG 0x6f}
PAGE ntoskrnl.exe!NtCreateSection 8056DB66 7 Bytes JMP EDD659C4 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
PAGE ntoskrnl.exe!ZwCreateProcessEx 8059056D 7 Bytes JMP EDD65BA0 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
PAGE ntoskrnl.exe!ZwLoadDriver 805AEDE2 7 Bytes JMP EDD65AFE \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
PAGE ntoskrnl.exe!ObMakeTemporaryObject 805E74E6 5 Bytes JMP EDD615B4 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
.text C:\WINDOWS\System32\DRIVERS\nv4_mini.sys section is writeable [0xF72F8340, 0xFFF3F, 0xF8000020]
.text C:\WINDOWS\System32\nv4_disp.dll section is writeable [0xBF012300, 0x234A20, 0xF8000020]
---- User code sections - GMER 1.0.15 ----
.text c:\program files\a-squared free\a2service.exe[1484] kernel32.dll!CreateThread + 1A 7C8106F1 4 Bytes CALL 0045494D c:\program files\a-squared free\a2service.exe (a-squared Service/Emsi Software GmbH)
---- User IAT/EAT - GMER 1.0.15 ----
IAT C:\WINDOWS\system32\services.exe[460] @ C:\WINDOWS\system32\services.exe [ADVAPI32.dll!CreateProcessAsUserW] 00380002
IAT C:\WINDOWS\system32\services.exe[460] @ C:\WINDOWS\system32\services.exe [KERNEL32.dll!CreateProcessW] 00380000
---- Devices - GMER 1.0.15 ----
Device \FileSystem\Ntfs \Ntfs aswSP.SYS (avast! self protection module/ALWIL Software)
AttachedDevice \FileSystem\Ntfs \Ntfs aswMon2.SYS (avast! File System Filter Driver for Windows XP/ALWIL Software)
Device \FileSystem\Fastfat \FatCdrom aswSP.SYS (avast! self protection module/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Ip aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
Device pci.sys (Énumérateur Plug-and-Play PCI pour NT/Microsoft Corporation)
AttachedDevice \Driver\Tcpip \Device\Tcp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
Device atapi.sys (IDE/ATAPI Port Driver/Microsoft Corporation)
AttachedDevice \Driver\Tcpip \Device\Udp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\RawIp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
Device \FileSystem\Fastfat \Fat aswSP.SYS (avast! self protection module/ALWIL Software)
AttachedDevice \FileSystem\Fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)
AttachedDevice \FileSystem\Fastfat \Fat aswMon2.SYS (avast! File System Filter Driver for Windows XP/ALWIL Software)
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\000b0d64bfc0
Reg HKLM\SYSTEM\ControlSet002\Services\BTHPORT\Parameters\Keys\000b0d64bfc0 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet003\Services\BTHPORT\Parameters\Keys\000b0d64bfc0 (not active ControlSet)
Reg HKLM\SOFTWARE\Classes\CLSID\{47629D4B-2AD3-4e50-B716-A66C15C63153}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{47629D4B-2AD3-4e50-B716-A66C15C63153}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{47629D4B-2AD3-4e50-B716-A66C15C63153}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{47629D4B-2AD3-4e50-B716-A66C15C63153}\InprocServer32@cd042efbbd7f7af1647644e76e06692b 0xE2 0x63 0x26 0xF1 ...
Reg HKLM\SOFTWARE\Classes\CLSID\{604BB98A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{604BB98A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{604BB98A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{604BB98A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32@bca643cdc5c2726b20d2ecedcc62c59b 0x71 0x3B 0x04 0x66 ...
Reg HKLM\SOFTWARE\Classes\CLSID\{684373FB-9CD8-4e47-B990-5A4466C16034}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{684373FB-9CD8-4e47-B990-5A4466C16034}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{684373FB-9CD8-4e47-B990-5A4466C16034}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{684373FB-9CD8-4e47-B990-5A4466C16034}\InprocServer32@2c81e34222e8052573023a60d06dd016 0x25 0xDA 0xEC 0x7E ...
Reg HKLM\SOFTWARE\Classes\CLSID\{74554CCD-F60F-4708-AD98-D0152D08C8B9}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{74554CCD-F60F-4708-AD98-D0152D08C8B9}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{74554CCD-F60F-4708-AD98-D0152D08C8B9}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{74554CCD-F60F-4708-AD98-D0152D08C8B9}\InprocServer32@2582ae41fb52324423be06337561aa48 0x86 0x8C 0x21 0x01 ...
Reg HKLM\SOFTWARE\Classes\CLSID\{7EB537F9-A916-4339-B91B-DED8E83632C0}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{7EB537F9-A916-4339-B91B-DED8E83632C0}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{7EB537F9-A916-4339-B91B-DED8E83632C0}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{7EB537F9-A916-4339-B91B-DED8E83632C0}\InprocServer32@caaeda5fd7a9ed7697d9686d4b818472 0xCD 0x44 0xCD 0xB9 ...
Reg HKLM\SOFTWARE\Classes\CLSID\{948395E8-7A56-4fb1-843B-3E52D94DB145}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{948395E8-7A56-4fb1-843B-3E52D94DB145}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{948395E8-7A56-4fb1-843B-3E52D94DB145}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{948395E8-7A56-4fb1-843B-3E52D94DB145}\InprocServer32@a4a1bcf2cc2b8bc3716b74b2b4522f5d 0xDF 0x20 0x58 0x62 ...
Reg HKLM\SOFTWARE\Classes\CLSID\{AC3ED30B-6F1A-4bfc-A4F6-2EBDCCD34C19}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{AC3ED30B-6F1A-4bfc-A4F6-2EBDCCD34C19}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{AC3ED30B-6F1A-4bfc-A4F6-2EBDCCD34C19}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{AC3ED30B-6F1A-4bfc-A4F6-2EBDCCD34C19}\InprocServer32@4d370831d2c43cd13623e232fed27b7b 0xFB 0xA7 0x78 0xE6 ...
Reg HKLM\SOFTWARE\Classes\CLSID\{DE5654CA-EB84-4df9-915B-37E957082D6D}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{DE5654CA-EB84-4df9-915B-37E957082D6D}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{DE5654CA-EB84-4df9-915B-37E957082D6D}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{DE5654CA-EB84-4df9-915B-37E957082D6D}\InprocServer32@1d68fe701cdea33e477eb204b76f993d 0xAA 0x52 0xC6 0x00 ...
Reg HKLM\SOFTWARE\Classes\CLSID\{E39C35E8-7488-4926-92B2-2F94619AC1A5}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{E39C35E8-7488-4926-92B2-2F94619AC1A5}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{E39C35E8-7488-4926-92B2-2F94619AC1A5}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{E39C35E8-7488-4926-92B2-2F94619AC1A5}\InprocServer32@1fac81b91d8e3c5aa4b0a51804d844a3 0x51 0xFA 0x6E 0x91 ...
Reg HKLM\SOFTWARE\Classes\CLSID\{EACAFCE5-B0E2-4288-8073-C02FF9619B6F}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{EACAFCE5-B0E2-4288-8073-C02FF9619B6F}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{EACAFCE5-B0E2-4288-8073-C02FF9619B6F}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{EACAFCE5-B0E2-4288-8073-C02FF9619B6F}\InprocServer32@f5f62a6129303efb32fbe080bb27835b 0xB1 0xCD 0x45 0x5A ...
Reg HKLM\SOFTWARE\Classes\CLSID\{F8F02ADD-7366-4186-9488-C21CB8B3DCEC}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{F8F02ADD-7366-4186-9488-C21CB8B3DCEC}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{F8F02ADD-7366-4186-9488-C21CB8B3DCEC}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{F8F02ADD-7366-4186-9488-C21CB8B3DCEC}\InprocServer32@fd4e2e1a3940b94dceb5a6a021f2e3c6 0x2A 0xB7 0xCC 0xB5 ...
Reg HKLM\SOFTWARE\Classes\CLSID\{FEE45DE2-A467-4bf9-BF2D-1411304BCD84}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{FEE45DE2-A467-4bf9-BF2D-1411304BCD84}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{FEE45DE2-A467-4bf9-BF2D-1411304BCD84}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{FEE45DE2-A467-4bf9-BF2D-1411304BCD84}\InprocServer32@8a8aec57dd6508a385616fbc86791ec2 0x6C 0x43 0x2D 0x1E ...
Reg HKCU\Software\Microsoft\Windows Live\Communications Clients\Shared\3409439300\Groups@1\xb0S 1
---- Files - GMER 1.0.15 ----
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\backup 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\sp2gdr 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\sp2gdr\wdigest.dll 49152 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\sp2qfe 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\sp2qfe\wdigest.dll 49152 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\spmsg.dll 15072 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\spuninst.exe 216800 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\susdl.rq0 277 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\branches.inf 705 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\eula.txt 951 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\KB904942.cat 10337 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\spcustom.dll 22752 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\update.exe 727776 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\update.url 5330 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\update.ver 202 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\updatebr.inf 496 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\update_SP2GDR.inf 10446 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\update_SP2QFE.inf 11211 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\updspapi.dll 394976 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\WindowsXP-KB904942-v2-x86-FRA.psm 186 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\_downloadprogress_.state 4 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\_unpacked_.state 34 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\_usedelta_.state 34 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\SP3GDR 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\SP3GDR\moviemk.exe 3558912 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\SP3QFE 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\SP3QFE\moviemk.exe 3558912 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\spmsg.dll 18296 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\spuninst.exe 234872 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update\branches.inf 926 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update\eula.txt 951 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update\KB981997.CAT 7858 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update\spcustom.dll 26488 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update\update.exe 767352 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update\update.ver 206 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update\updatebr.inf 496 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update\update_SP3GDR.inf 30477 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update\update_SP3QFE.inf 26959 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update\updspapi.dll 406392 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\_downloadprogress_.state 4 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\_file_to_execute_.txt 17 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\_unpacked_.state 34 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\_useselfcontained_.state 50 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\SP3GDR 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\SP3GDR\mshtml.dll 5939712 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\SP3QFE 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\SP3QFE\mshtml.dll 5943296 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\spmsg.dll 18296 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\spuninst.exe 234872 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update\branches.inf 926 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update\eula.txt 951 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update\KB976749-IE8.CAT 8084 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update\spcustom.dll 26488 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update\update.exe 767352 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update\update.ver 204 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update\updatebr.inf 500 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update\update_SP3GDR.inf 29799 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update\update_SP3QFE.inf 29799 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update\updspapi.dll 406392 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\_downloadprogress_.state 4 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\_file_to_execute_.txt 17 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\_unpacked_.state 34 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\_useselfcontained_.state 50 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\backup 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\sp3gdr 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\sp3gdr\schannel.dll 149504 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\sp3qfe 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\sp3qfe\schannel.dll 149504 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\spmsg.dll 18296 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\spuninst.exe 234872 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\susdl.rq0 277 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\branches.inf 926 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\eula.txt 951 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\KB980436.cat 7858 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\spcustom.dll 26488 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\update.exe 767352 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\update.url 5324 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\update.ver 206 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\updatebr.inf 496 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\update_SP3GDR.inf 30488 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\update_SP3QFE.inf 26970 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\updspapi.dll 406392 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\WindowsXP-KB980436-x86-FRA.psm 699 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\_downloadprogress_.state 4 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\_unpacked_.state 34 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\_usedelta_.state 34 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\1394bus.sys 53376 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\4mmdat.sys 12288 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\61883.sys 48128 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\6to4svc.dll 100352 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aaclient.dll 136192 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aaclient.mui 4096 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\ac97ali.sys 231552 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\ac97via.sys 84480 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\acadproc.dll 39424 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\access.cpl 71680 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\accwiz.exe 190464 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\acgenral.dll 1852928 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aclayers.dll 451072 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aclua.dll 141312 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aclui.dll 120320 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\acpi.sys 188672 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\acspecfc.dll 245248 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\actconn.htm 3344 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\acterror.htm 4052 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\activate.htm 4473 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\activeds.dll 193536 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\activerr.htm 2198 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\actmovie.exe 4096 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\actshell.htm 91978 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\actxprxy.dll 98304 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\act_plcy.htm 4459 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\acxtrnal.dll 116224 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\admin.dll 20540 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\admin.exe 16439 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\admjoy.sys 10880 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\admparse.dll 61440 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adrdyreg.htm 4932 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adsldp.dll 175616 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adsldpc.dll 143360 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adsmsext.dll 68096 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adsnt.dll 263680 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adv02nt5.dll 3967 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adv05nt5.dll 3615 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adv07nt5.dll 3647 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adv08nt5.dll 3135 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adv09nt5.dll 3711 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adv11nt5.dll 3775 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\advapi32.dll 685568 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\advpack.dll 101888 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aec.sys 142592 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\afd.sys 138112 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agentanm.dll 24064 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agentctl.dll 214016 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agentdp2.dll 42496 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agentdpv.dll 57344 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agentmpx.dll 49152 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agentpsh.dll 24064 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agentsr.dll 44032 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agentsvr.exe 256512 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agpcpq.sys 44928 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0401.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0401.hlp 9219 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0404.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0404.hlp 8669 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0405.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0405.hlp 8975 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0406.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0406.hlp 8783 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0407.dll 21504 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0407.hlp 8856 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0408.dll 22016 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0408.hlp 9001 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0409.dll 19968 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0409.hlp 8648 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt040b.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt040b.hlp 8662 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt040c.dll 21504 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt040c.hlp 8882 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt040d.hlp 8820 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt040e.dll 19968 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt040e.hlp 8987 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0410.dll 20992 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0410.hlp 8746 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0411.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0411.hlp 8524 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0412.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0412.hlp 9188 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0413.dll 20992 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0413.hlp 9309 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0414.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0414.hlp 8654 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0415.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0415.hlp 8917 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0416.dll 20480 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0416.hlp 8758 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0419.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0419.hlp 8799 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\actdone.htm 1912 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adv01nt5.dll 4255 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agp440.sys 42368 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt040d.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt041d.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\amdk7.sys 41856 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\arp1394.sys 60800 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\ati2dvaa.dll 377984 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\ativmc20.cod 64352 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\author.dll 20540 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\basecred.xsd 648 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\browseui.dll 1025024 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\bulzano.jpg 72921 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\camocx.dll 50688 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\chord.wav 97016 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\clusapi.dll 58368 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\comdlg32.dll 281600 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt041d.hlp 9251 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt041f.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt041f.hlp 9041 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0804.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0804.hlp 8226 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0816.dll 20992 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0816.hlp 8799 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0c0a.dll 20480 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0c0a.hlp 8830 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agtcore.js 48410 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agtctl15.tlb 18432 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agtinst.inf 15534 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agtintl.dll 24064 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\ahui.exe 98304 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\alg.exe 44544 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\alim1541.sys 42752 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\alrsvc.dll 17408 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\amdagp.sys 43008 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\amdk6.sys 41472 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\amstream.dll 70656 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\an983.sys 36224 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\apolicy.htm 5004 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\apphelp.dll 125952 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\apphelp.sdb 239006 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\apph_sp.sdb 785972 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\apps.chm 84670 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\apps_sp.chm 306716 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\appwiz.cpl 555008 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aprvcyms.htm 5876 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aqueue.dll 334336 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\archvapp.inf 144776 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\areg1.htm 4416 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aregdial.htm 2290 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aregdone.htm 1993 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aregsty2.css 2286 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aregstyl.css 2277 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\ariblk.ttf 118832 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\arrow.gif 300 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asctrls.ocx 115712 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\msft 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\msft\windows 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\msft\windows\gdiplus 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\msft\windows\gdiplus\gdiplus.cat 10680 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\msft\windows\gdiplus\gdiplus.dll 1724416 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\msft\windows\gdiplus\gdiplus.man 397 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\policy 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\policy\msft 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\policy\msft\windows 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\policy\msft\windows\gdiplus 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\policy\msft\windows\gdiplus\gdiplus.cat 10680 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\policy\msft\windows\gdiplus\gdiplus.man 605 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\msft 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\msft\windows 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\msft\windows\system 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\msft\windows\system\default 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\msft\windows\system\default\default.cat 10680 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\msft\windows\system\default\default.man 1237 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\policy 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\policy\msft 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\policy\msft\windows 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\policy\msft\windows\system 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\policy\msft\windows\system\default 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\policy\msft\windows\system\default\default.cat 10680 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\policy\msft\windows\system\default\default.man 625 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\dxmrtp 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\dxmrtp\dxmrtp.cat 10678 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\dxmrtp\dxmrtp.dll 852992 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\dxmrtp\dxmrtp.man 1883 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\rtcdll 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\rtcdll\rtcdll.cat 10678 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\rtcdll\rtcdll.dll 994816 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\rtcdll\rtcdll.man 1187 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\rtcres 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\rtcres\rtcres.cat 10678 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\rtcres\rtcres.dll 137728 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\rtcres\rtcres.man 460 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\policy 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\policy\msft 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\policy\msft\windows 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\policy\msft\windows\networking 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\policy\msft\windows\networking\dxmrtp 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\policy\msft\windows\networking\dxmrtp\dxmrtp.cat 10678 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\policy\msft\windows\networking\dxmrtp\dxmrtp.man 641 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\policy\msft\windows\networking\rtcdll 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\policy\msft\windows\networking\rtcdll\rtcdll.cat 10678 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\policy\msft\windows\networking\rtcdll\rtcdll.man 641
Apres 3 tentatives pour faire ce que tu me demandais (j'ai eu 1 bog, une fois ou la memoire n'etait pas suffisante et aussi un ecran bleu!!) voici le resultat du scan ... en esperant que ca puisse le faire:
GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-08-20 00:30:27
Windows 5.1.2600 Service Pack 3
Running: 49c9weld.exe; Driver: C:\DOCUME~1\ATOUS~1\LOCALS~1\Temp\uwriikob.sys
---- System - GMER 1.0.15 ----
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwClose [0xEDD58CD2]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwCreateKey [0xEDD58B8E]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwDeleteKey [0xEDD59142]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwDeleteValueKey [0xEDD5906C]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwDuplicateObject [0xEDD58764]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwOpenKey [0xEDD58C68]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwOpenProcess [0xEDD586A4]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwOpenThread [0xEDD58708]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwQueryValueKey [0xEDD58D88]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwRenameKey [0xEDD59210]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwRestoreKey [0xEDD58D48]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwSetValueKey [0xEDD58EC8]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwCreateProcessEx [0xEDD65B9C]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwCreateSection [0xEDD659C0]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwLoadDriver [0xEDD65AFA]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) NtCreateSection
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ObInsertObject
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ObMakeTemporaryObject
---- Kernel code sections - GMER 1.0.15 ----
PAGE ntoskrnl.exe!ObInsertObject 8056DA64 2 Bytes JMP EDD62F6C \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
PAGE ntoskrnl.exe!ObInsertObject + 3 8056DA67 2 Bytes [7F, 6D] {JG 0x6f}
PAGE ntoskrnl.exe!NtCreateSection 8056DB66 7 Bytes JMP EDD659C4 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
PAGE ntoskrnl.exe!ZwCreateProcessEx 8059056D 7 Bytes JMP EDD65BA0 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
PAGE ntoskrnl.exe!ZwLoadDriver 805AEDE2 7 Bytes JMP EDD65AFE \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
PAGE ntoskrnl.exe!ObMakeTemporaryObject 805E74E6 5 Bytes JMP EDD615B4 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
.text C:\WINDOWS\System32\DRIVERS\nv4_mini.sys section is writeable [0xF72F8340, 0xFFF3F, 0xF8000020]
.text C:\WINDOWS\System32\nv4_disp.dll section is writeable [0xBF012300, 0x234A20, 0xF8000020]
---- User code sections - GMER 1.0.15 ----
.text c:\program files\a-squared free\a2service.exe[1484] kernel32.dll!CreateThread + 1A 7C8106F1 4 Bytes CALL 0045494D c:\program files\a-squared free\a2service.exe (a-squared Service/Emsi Software GmbH)
---- User IAT/EAT - GMER 1.0.15 ----
IAT C:\WINDOWS\system32\services.exe[460] @ C:\WINDOWS\system32\services.exe [ADVAPI32.dll!CreateProcessAsUserW] 00380002
IAT C:\WINDOWS\system32\services.exe[460] @ C:\WINDOWS\system32\services.exe [KERNEL32.dll!CreateProcessW] 00380000
---- Devices - GMER 1.0.15 ----
Device \FileSystem\Ntfs \Ntfs aswSP.SYS (avast! self protection module/ALWIL Software)
AttachedDevice \FileSystem\Ntfs \Ntfs aswMon2.SYS (avast! File System Filter Driver for Windows XP/ALWIL Software)
Device \FileSystem\Fastfat \FatCdrom aswSP.SYS (avast! self protection module/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Ip aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
Device pci.sys (Énumérateur Plug-and-Play PCI pour NT/Microsoft Corporation)
AttachedDevice \Driver\Tcpip \Device\Tcp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
Device atapi.sys (IDE/ATAPI Port Driver/Microsoft Corporation)
AttachedDevice \Driver\Tcpip \Device\Udp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\RawIp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
Device \FileSystem\Fastfat \Fat aswSP.SYS (avast! self protection module/ALWIL Software)
AttachedDevice \FileSystem\Fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)
AttachedDevice \FileSystem\Fastfat \Fat aswMon2.SYS (avast! File System Filter Driver for Windows XP/ALWIL Software)
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\000b0d64bfc0
Reg HKLM\SYSTEM\ControlSet002\Services\BTHPORT\Parameters\Keys\000b0d64bfc0 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet003\Services\BTHPORT\Parameters\Keys\000b0d64bfc0 (not active ControlSet)
Reg HKLM\SOFTWARE\Classes\CLSID\{47629D4B-2AD3-4e50-B716-A66C15C63153}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{47629D4B-2AD3-4e50-B716-A66C15C63153}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{47629D4B-2AD3-4e50-B716-A66C15C63153}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{47629D4B-2AD3-4e50-B716-A66C15C63153}\InprocServer32@cd042efbbd7f7af1647644e76e06692b 0xE2 0x63 0x26 0xF1 ...
Reg HKLM\SOFTWARE\Classes\CLSID\{604BB98A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{604BB98A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{604BB98A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{604BB98A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32@bca643cdc5c2726b20d2ecedcc62c59b 0x71 0x3B 0x04 0x66 ...
Reg HKLM\SOFTWARE\Classes\CLSID\{684373FB-9CD8-4e47-B990-5A4466C16034}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{684373FB-9CD8-4e47-B990-5A4466C16034}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{684373FB-9CD8-4e47-B990-5A4466C16034}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{684373FB-9CD8-4e47-B990-5A4466C16034}\InprocServer32@2c81e34222e8052573023a60d06dd016 0x25 0xDA 0xEC 0x7E ...
Reg HKLM\SOFTWARE\Classes\CLSID\{74554CCD-F60F-4708-AD98-D0152D08C8B9}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{74554CCD-F60F-4708-AD98-D0152D08C8B9}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{74554CCD-F60F-4708-AD98-D0152D08C8B9}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{74554CCD-F60F-4708-AD98-D0152D08C8B9}\InprocServer32@2582ae41fb52324423be06337561aa48 0x86 0x8C 0x21 0x01 ...
Reg HKLM\SOFTWARE\Classes\CLSID\{7EB537F9-A916-4339-B91B-DED8E83632C0}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{7EB537F9-A916-4339-B91B-DED8E83632C0}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{7EB537F9-A916-4339-B91B-DED8E83632C0}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{7EB537F9-A916-4339-B91B-DED8E83632C0}\InprocServer32@caaeda5fd7a9ed7697d9686d4b818472 0xCD 0x44 0xCD 0xB9 ...
Reg HKLM\SOFTWARE\Classes\CLSID\{948395E8-7A56-4fb1-843B-3E52D94DB145}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{948395E8-7A56-4fb1-843B-3E52D94DB145}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{948395E8-7A56-4fb1-843B-3E52D94DB145}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{948395E8-7A56-4fb1-843B-3E52D94DB145}\InprocServer32@a4a1bcf2cc2b8bc3716b74b2b4522f5d 0xDF 0x20 0x58 0x62 ...
Reg HKLM\SOFTWARE\Classes\CLSID\{AC3ED30B-6F1A-4bfc-A4F6-2EBDCCD34C19}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{AC3ED30B-6F1A-4bfc-A4F6-2EBDCCD34C19}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{AC3ED30B-6F1A-4bfc-A4F6-2EBDCCD34C19}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{AC3ED30B-6F1A-4bfc-A4F6-2EBDCCD34C19}\InprocServer32@4d370831d2c43cd13623e232fed27b7b 0xFB 0xA7 0x78 0xE6 ...
Reg HKLM\SOFTWARE\Classes\CLSID\{DE5654CA-EB84-4df9-915B-37E957082D6D}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{DE5654CA-EB84-4df9-915B-37E957082D6D}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{DE5654CA-EB84-4df9-915B-37E957082D6D}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{DE5654CA-EB84-4df9-915B-37E957082D6D}\InprocServer32@1d68fe701cdea33e477eb204b76f993d 0xAA 0x52 0xC6 0x00 ...
Reg HKLM\SOFTWARE\Classes\CLSID\{E39C35E8-7488-4926-92B2-2F94619AC1A5}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{E39C35E8-7488-4926-92B2-2F94619AC1A5}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{E39C35E8-7488-4926-92B2-2F94619AC1A5}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{E39C35E8-7488-4926-92B2-2F94619AC1A5}\InprocServer32@1fac81b91d8e3c5aa4b0a51804d844a3 0x51 0xFA 0x6E 0x91 ...
Reg HKLM\SOFTWARE\Classes\CLSID\{EACAFCE5-B0E2-4288-8073-C02FF9619B6F}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{EACAFCE5-B0E2-4288-8073-C02FF9619B6F}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{EACAFCE5-B0E2-4288-8073-C02FF9619B6F}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{EACAFCE5-B0E2-4288-8073-C02FF9619B6F}\InprocServer32@f5f62a6129303efb32fbe080bb27835b 0xB1 0xCD 0x45 0x5A ...
Reg HKLM\SOFTWARE\Classes\CLSID\{F8F02ADD-7366-4186-9488-C21CB8B3DCEC}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{F8F02ADD-7366-4186-9488-C21CB8B3DCEC}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{F8F02ADD-7366-4186-9488-C21CB8B3DCEC}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{F8F02ADD-7366-4186-9488-C21CB8B3DCEC}\InprocServer32@fd4e2e1a3940b94dceb5a6a021f2e3c6 0x2A 0xB7 0xCC 0xB5 ...
Reg HKLM\SOFTWARE\Classes\CLSID\{FEE45DE2-A467-4bf9-BF2D-1411304BCD84}\InprocServer32
Reg HKLM\SOFTWARE\Classes\CLSID\{FEE45DE2-A467-4bf9-BF2D-1411304BCD84}\InprocServer32@ThreadingModel Apartment
Reg HKLM\SOFTWARE\Classes\CLSID\{FEE45DE2-A467-4bf9-BF2D-1411304BCD84}\InprocServer32@ C:\WINDOWS\system32\OLE32.DLL
Reg HKLM\SOFTWARE\Classes\CLSID\{FEE45DE2-A467-4bf9-BF2D-1411304BCD84}\InprocServer32@8a8aec57dd6508a385616fbc86791ec2 0x6C 0x43 0x2D 0x1E ...
Reg HKCU\Software\Microsoft\Windows Live\Communications Clients\Shared\3409439300\Groups@1\xb0S 1
---- Files - GMER 1.0.15 ----
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\backup 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\sp2gdr 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\sp2gdr\wdigest.dll 49152 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\sp2qfe 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\sp2qfe\wdigest.dll 49152 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\spmsg.dll 15072 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\spuninst.exe 216800 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\susdl.rq0 277 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\branches.inf 705 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\eula.txt 951 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\KB904942.cat 10337 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\spcustom.dll 22752 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\update.exe 727776 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\update.url 5330 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\update.ver 202 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\updatebr.inf 496 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\update_SP2GDR.inf 10446 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\update_SP2QFE.inf 11211 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\update\updspapi.dll 394976 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\WindowsXP-KB904942-v2-x86-FRA.psm 186 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\_downloadprogress_.state 4 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\_unpacked_.state 34 bytes
File C:\WINDOWS\SoftwareDistribution\Download\011cdeb527c0ded3735dde8070aaf659\_usedelta_.state 34 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\SP3GDR 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\SP3GDR\moviemk.exe 3558912 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\SP3QFE 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\SP3QFE\moviemk.exe 3558912 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\spmsg.dll 18296 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\spuninst.exe 234872 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update\branches.inf 926 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update\eula.txt 951 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update\KB981997.CAT 7858 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update\spcustom.dll 26488 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update\update.exe 767352 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update\update.ver 206 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update\updatebr.inf 496 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update\update_SP3GDR.inf 30477 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update\update_SP3QFE.inf 26959 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\update\updspapi.dll 406392 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\_downloadprogress_.state 4 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\_file_to_execute_.txt 17 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\_unpacked_.state 34 bytes
File C:\WINDOWS\SoftwareDistribution\Download\01d9ebdeca40ed241278168bcd1ccbd4\_useselfcontained_.state 50 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\SP3GDR 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\SP3GDR\mshtml.dll 5939712 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\SP3QFE 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\SP3QFE\mshtml.dll 5943296 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\spmsg.dll 18296 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\spuninst.exe 234872 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update\branches.inf 926 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update\eula.txt 951 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update\KB976749-IE8.CAT 8084 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update\spcustom.dll 26488 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update\update.exe 767352 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update\update.ver 204 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update\updatebr.inf 500 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update\update_SP3GDR.inf 29799 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update\update_SP3QFE.inf 29799 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\update\updspapi.dll 406392 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\_downloadprogress_.state 4 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\_file_to_execute_.txt 17 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\_unpacked_.state 34 bytes
File C:\WINDOWS\SoftwareDistribution\Download\073ad5df5b71b33a1d064db9974d224a\_useselfcontained_.state 50 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\backup 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\sp3gdr 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\sp3gdr\schannel.dll 149504 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\sp3qfe 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\sp3qfe\schannel.dll 149504 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\spmsg.dll 18296 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\spuninst.exe 234872 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\susdl.rq0 277 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\branches.inf 926 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\eula.txt 951 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\KB980436.cat 7858 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\spcustom.dll 26488 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\update.exe 767352 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\update.url 5324 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\update.ver 206 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\updatebr.inf 496 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\update_SP3GDR.inf 30488 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\update_SP3QFE.inf 26970 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\update\updspapi.dll 406392 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\WindowsXP-KB980436-x86-FRA.psm 699 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\_downloadprogress_.state 4 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\_unpacked_.state 34 bytes
File C:\WINDOWS\SoftwareDistribution\Download\1156e9bdd16cbf30ada2a1e1d43c34f4\_usedelta_.state 34 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\1394bus.sys 53376 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\4mmdat.sys 12288 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\61883.sys 48128 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\6to4svc.dll 100352 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aaclient.dll 136192 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aaclient.mui 4096 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\ac97ali.sys 231552 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\ac97via.sys 84480 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\acadproc.dll 39424 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\access.cpl 71680 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\accwiz.exe 190464 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\acgenral.dll 1852928 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aclayers.dll 451072 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aclua.dll 141312 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aclui.dll 120320 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\acpi.sys 188672 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\acspecfc.dll 245248 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\actconn.htm 3344 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\acterror.htm 4052 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\activate.htm 4473 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\activeds.dll 193536 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\activerr.htm 2198 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\actmovie.exe 4096 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\actshell.htm 91978 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\actxprxy.dll 98304 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\act_plcy.htm 4459 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\acxtrnal.dll 116224 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\admin.dll 20540 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\admin.exe 16439 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\admjoy.sys 10880 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\admparse.dll 61440 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adrdyreg.htm 4932 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adsldp.dll 175616 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adsldpc.dll 143360 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adsmsext.dll 68096 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adsnt.dll 263680 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adv02nt5.dll 3967 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adv05nt5.dll 3615 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adv07nt5.dll 3647 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adv08nt5.dll 3135 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adv09nt5.dll 3711 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adv11nt5.dll 3775 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\advapi32.dll 685568 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\advpack.dll 101888 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aec.sys 142592 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\afd.sys 138112 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agentanm.dll 24064 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agentctl.dll 214016 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agentdp2.dll 42496 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agentdpv.dll 57344 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agentmpx.dll 49152 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agentpsh.dll 24064 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agentsr.dll 44032 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agentsvr.exe 256512 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agpcpq.sys 44928 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0401.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0401.hlp 9219 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0404.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0404.hlp 8669 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0405.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0405.hlp 8975 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0406.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0406.hlp 8783 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0407.dll 21504 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0407.hlp 8856 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0408.dll 22016 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0408.hlp 9001 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0409.dll 19968 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0409.hlp 8648 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt040b.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt040b.hlp 8662 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt040c.dll 21504 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt040c.hlp 8882 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt040d.hlp 8820 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt040e.dll 19968 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt040e.hlp 8987 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0410.dll 20992 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0410.hlp 8746 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0411.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0411.hlp 8524 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0412.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0412.hlp 9188 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0413.dll 20992 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0413.hlp 9309 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0414.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0414.hlp 8654 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0415.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0415.hlp 8917 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0416.dll 20480 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0416.hlp 8758 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0419.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0419.hlp 8799 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\actdone.htm 1912 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\adv01nt5.dll 4255 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agp440.sys 42368 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt040d.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt041d.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\amdk7.sys 41856 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\arp1394.sys 60800 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\ati2dvaa.dll 377984 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\ativmc20.cod 64352 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\author.dll 20540 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\basecred.xsd 648 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\browseui.dll 1025024 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\bulzano.jpg 72921 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\camocx.dll 50688 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\chord.wav 97016 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\clusapi.dll 58368 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\comdlg32.dll 281600 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt041d.hlp 9251 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt041f.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt041f.hlp 9041 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0804.dll 19456 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0804.hlp 8226 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0816.dll 20992 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0816.hlp 8799 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0c0a.dll 20480 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agt0c0a.hlp 8830 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agtcore.js 48410 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agtctl15.tlb 18432 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agtinst.inf 15534 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\agtintl.dll 24064 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\ahui.exe 98304 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\alg.exe 44544 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\alim1541.sys 42752 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\alrsvc.dll 17408 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\amdagp.sys 43008 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\amdk6.sys 41472 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\amstream.dll 70656 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\an983.sys 36224 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\apolicy.htm 5004 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\apphelp.dll 125952 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\apphelp.sdb 239006 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\apph_sp.sdb 785972 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\apps.chm 84670 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\apps_sp.chm 306716 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\appwiz.cpl 555008 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aprvcyms.htm 5876 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aqueue.dll 334336 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\archvapp.inf 144776 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\areg1.htm 4416 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aregdial.htm 2290 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aregdone.htm 1993 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aregsty2.css 2286 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\aregstyl.css 2277 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\ariblk.ttf 118832 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\arrow.gif 300 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asctrls.ocx 115712 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\msft 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\msft\windows 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\msft\windows\gdiplus 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\msft\windows\gdiplus\gdiplus.cat 10680 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\msft\windows\gdiplus\gdiplus.dll 1724416 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\msft\windows\gdiplus\gdiplus.man 397 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\policy 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\policy\msft 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\policy\msft\windows 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\policy\msft\windows\gdiplus 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\policy\msft\windows\gdiplus\gdiplus.cat 10680 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\10\policy\msft\windows\gdiplus\gdiplus.man 605 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\msft 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\msft\windows 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\msft\windows\system 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\msft\windows\system\default 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\msft\windows\system\default\default.cat 10680 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\msft\windows\system\default\default.man 1237 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\policy 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\policy\msft 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\policy\msft\windows 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\policy\msft\windows\system 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\policy\msft\windows\system\default 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\policy\msft\windows\system\default\default.cat 10680 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\51\policy\msft\windows\system\default\default.man 625 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\dxmrtp 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\dxmrtp\dxmrtp.cat 10678 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\dxmrtp\dxmrtp.dll 852992 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\dxmrtp\dxmrtp.man 1883 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\rtcdll 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\rtcdll\rtcdll.cat 10678 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\rtcdll\rtcdll.dll 994816 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\rtcdll\rtcdll.man 1187 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\rtcres 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\rtcres\rtcres.cat 10678 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\rtcres\rtcres.dll 137728 bytes executable
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\msft\windows\net\rtcres\rtcres.man 460 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\policy 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\policy\msft 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\policy\msft\windows 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\policy\msft\windows\networking 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\policy\msft\windows\networking\dxmrtp 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\policy\msft\windows\networking\dxmrtp\dxmrtp.cat 10678 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\policy\msft\windows\networking\dxmrtp\dxmrtp.man 641 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\policy\msft\windows\networking\rtcdll 0 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\policy\msft\windows\networking\rtcdll\rtcdll.cat 10678 bytes
File C:\WINDOWS\SoftwareDistribution\Download\23ec66f2314a80d718b5483ab6e865af\asms\52\policy\msft\windows\networking\rtcdll\rtcdll.man 641
Bonsoir
ce rapport est incomplet.
ça se termine par ---- EOF - GMER puis la version de l'outil
Je ne suis pas sûr que cela soit un virus...
ça me dit rien de te faire lancer des tools pour des cacahuètes...
En général, quand rien ne veut, on met tout sur le dos des virus, dû à l'ignorance.
Cette page peut vous guider pour éventuellement diagnostiquer un problème matériel qui occasionne ces plantages.
la suite:
http://www.malekal.com/diagnostiquer_ordinateur.php
Tiens moi au courant
ce rapport est incomplet.
ça se termine par ---- EOF - GMER puis la version de l'outil
Je ne suis pas sûr que cela soit un virus...
ça me dit rien de te faire lancer des tools pour des cacahuètes...
Citation :
Vous rencontrez des problèmes, votre ordinateur plante souvent.En général, quand rien ne veut, on met tout sur le dos des virus, dû à l'ignorance.
Cette page peut vous guider pour éventuellement diagnostiquer un problème matériel qui occasionne ces plantages.
la suite:
http://www.malekal.com/diagnostiquer_ordinateur.php
Tiens moi au courant
bonsoir
et bien je vais essayer de lire tout ce que tu m'as fourni comme info mais pour revenir sur ta remarque concernant le rapport incomplet...j'ai déjà du m'y reprendre a 3 fois et j'ai bien cru a un plantage donc désolé...et de même quand je suis venu te poster la réponse mes lettres arrivées sur l'écran plusieurs secondes après les avoir tappées sur le clavier!!??
merci bonne soirée
et bien je vais essayer de lire tout ce que tu m'as fourni comme info mais pour revenir sur ta remarque concernant le rapport incomplet...j'ai déjà du m'y reprendre a 3 fois et j'ai bien cru a un plantage donc désolé...et de même quand je suis venu te poster la réponse mes lettres arrivées sur l'écran plusieurs secondes après les avoir tappées sur le clavier!!??
merci bonne soirée
Lassé par la pub ? Créez un compte
- Contenus similaires :