Rootkit attaque sur mon windows 32 systeme qu

Fermé
maverick1632 Messages postés 54 Date d'inscription vendredi 22 février 2008 Statut Membre Dernière intervention 29 novembre 2008 - 9 avril 2008 à 23:34
maverick1632 Messages postés 54 Date d'inscription vendredi 22 février 2008 Statut Membre Dernière intervention 29 novembre 2008 - 29 nov. 2008 à 20:24
je vient de telecharcharger le nouvel avast 4.8 qui me detecte 1 rootkit sur windows systeme 32 \driver\asc3550p.sys le nouveau prog avas me propose de suprimer mais lorsque je lance la comande suprimer il me repomd qu ily as eue 1 erreure lors de la supresions quels sont les solutions pour irradiquer ce nouveaux phenomene d entre vers nos ordi par avance merci de me repondre pat
A voir également:

59 réponses

Utilisateur anonyme
10 avril 2008 à 02:05
Bonsoir,
oui c'est bien une crasse.

Commence par faire ceci stp :
> Télécharge DSS (Deckard's System Scanner de Deckard) sur ton Bureau : http://www.techsupportforum.com/sectools/Deckard/dss.exe
- Choisis <enregistrer> et <Bureau> pour l'emplacement.
- Ferme toutes les applications en cours (même internet). C'est important car sinon le PC peut planter.
- Double-clique sur dss.exe pour lancer l'outil.
- S'il ne trouve pas HijackThis, clique sur Oui.
- Clique sur OK à chaque fois que cela te sera demandé.
- Une fois l'analyse finie un rapport s'affichera. Poste son contenu dans ta réponse.
NB : Le rapport se trouve aussi ici : C:\Deckard\System Scanner\main.txt

Ensuite,
> Télécharge SDFix sur ton bureau
- Double clique sur l'archive SDFix qui à été créé sur le Bureau et installe le programme (l'installation va créer un dossier (à la racine du disque dur par défaut) nommé SDFix).

> Démarre en mode sans échec : (image) Si problème : tuto ici (impératif).
- Vas dans c:/SDFix et double-clique sur RunThis.bat
- Appuie sur < Y > puis < Entrée >....Le nettoyage commance....patience...
- Le programme va te demander de relancer le PC, frappe une touche...
- Le nettoyage se termine...un rapport apparait...
-Enfin, copie/colle le contenu du fichier Report.txt dans ta prochaine réponse

Bon courage,

A+
1
J ai le meme problème.
Voici le bilan de dss.

Que dois je faire?






--------------------------------------------------------------------------------

-- System Restore --------------------------------------------------------------

Failed to create restore point; System Restore is disabled (service is not running).


-- Last 5 Restore Point(s) --
17: 2008-02-14 20:22:47 UTC - RP319 - Software Distribution Service 3.0
16: 2008-02-14 20:05:07 UTC - RP318 - Software Distribution Service 3.0
15: 2008-02-13 21:04:22 UTC - RP317 - Software Distribution Service 3.0
14: 2008-02-12 18:58:50 UTC - RP316 - Installé SAS Enterprise Guide
13: 2008-02-12 11:07:47 UTC - RP315 - Installé Assistant Prérequis système


-- First Restore Point --
1: 2008-02-04 10:07:35 UTC - RP303 - Point de vérification système


Backed up registry hives.
Performed disk cleanup.

[color=red]System Drive C: has 1.03 GiB (less than 15%) free./color


-- HijackThis Clone ------------------------------------------------------------


Emulating logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2008-04-21 20:43:36
Platform: Windows XP Service Pack 2 (5.01.2600)
MSIE: Internet Explorer (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\system32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapSvc.exe
C:\Program Files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLServer.exe
C:\Program Files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLService.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\WINDOWS\system32\PAStiSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLSched.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Acer\eRecovery\Monitor.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Acer\Acer Arcade\PCMService.exe
C:\Acer\ePM\epm-dm.exe
C:\Program Files\Launch Manager\QtZgAcer.EXE
C:\WINDOWS\system32\spool\drivers\w32x86\3\E_FATIACE.EXE
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\Program Files\QuickTime\QTTask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\Program Files\Microsoft ActiveSync\rapimgr.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Documents and Settings\Pascale LE MAGUET\Bureau\dss.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ycomp/defaults/sb/*http://www.yahoo.com/search/ie.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ycomp/defaults/sp/*https://fr.yahoo.com/?p=us
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/toolbar/ie8/sidebar.html
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ycomp/defaults/su/*https://fr.yahoo.com/?p=us
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer fourni par Yahoo! France
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.acer.com/worldwide/selection.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/toolbar/ie8/sidebar.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/toolbar/ie8/sidebar.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/toolbar/ie8/sidebar.html
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
R3 - URLSearchHook: Multi Media France Toolbar - {7009fcd4-05be-44f4-9583-93fe419ab7b0} - C:\Program Files\Multi_Media_France\tbMul1.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: e-Carte Bleue Browser Helper Object - {2E03C0FD-4C48-43A7-9A54-00240C70FF16} - C:\WINDOWS\system32\BhoECart.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Multi Media France Toolbar - {7009fcd4-05be-44f4-9583-93fe419ab7b0} - C:\Program Files\Multi_Media_France\tbMul1.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll (file missing)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\epson\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\epson\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll (file missing)
O3 - Toolbar: Multi Media France Toolbar - {7009fcd4-05be-44f4-9583-93fe419ab7b0} - C:\Program Files\Multi_Media_France\tbMul1.dll
O4 - HKLM\..\Run: [LaunchApp] Alaunch
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Acer\Acer Arcade\PCMService.exe"
O4 - HKLM\..\Run: [EPM-DM] c:\acer\epm\epm-dm.exe
O4 - HKLM\..\Run: [ePowerManagement] C:\Acer\ePM\ePM.exe boot
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE
O4 - HKLM\..\Run: [eRecoveryService] C:\Program Files\Acer\eRecovery\Monitor.exe
O4 - HKLM\..\Run: [EPSON Stylus DX3800 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIACE.EXE /P26 "EPSON Stylus DX3800 Series" /O6 "USB001" /M "Stylus DX3800"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [lvxroe] c:\windows\system32\lvxroe.exe lvxroe
O4 - HKLM\..\Run: [ImInstaller_IncrediMail] C:\DOCUME~1\PASCAL~1\LOCALS~1\Temp\ImInstaller\IncrediMail\incredimail_install.exe -startup -product IncrediMail
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_8 -reboot 1
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\PROGRA~1\MICROS~4\wcescomm.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" -t (User 'Default user')
O4 - Startup: Yahoo! Widget Engine.lnk = C:\Program Files\Yahoo!\Widgets\YahooWidgetEngine.exe
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un favori mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: C:\WINDOWS\system32\nwprovau.dll
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/3/9/8/398422c0-8d3e-40e1-a617-af65a72a0465/LegitCheckControl.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSignerADP-1.0.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab
O18 - Protocol: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll
O18 - Protocol: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Fichiers communs\Microsoft Shared\Information Retrieval\msitss.dll
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\MSOXMLMF.DLL
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - C:\Program Files\WinPCap\rpcapd.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: STI Simulator - Unknown owner - C:\WINDOWS\system32\PAStiSvc.exe

0
Utilisateur anonyme
11 avril 2008 à 20:03
Ok, très bien,
Je regarde...
et le rapport roguemover ?
1
maverick1632 Messages postés 54 Date d'inscription vendredi 22 février 2008 Statut Membre Dernière intervention 29 novembre 2008 3
11 avril 2008 à 21:31
ok dlld roguemover me dis felicitation mais je ne sais pas comment t envoyer le rapport je maitrise pas encore tres le progs desoler ensuite on fais quoi pour mon rootkit pat
1
maverick1632 Messages postés 54 Date d'inscription vendredi 22 février 2008 Statut Membre Dernière intervention 29 novembre 2008 3
11 avril 2008 à 22:40
Malwarebytes' Anti-Malware 1.11
Version de la base de données: 615

Type de recherche: Examen rapide
Eléments examinés: 31577
Temps écoulé: 2 minute(s), 16 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 2
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 4
Fichier(s) infecté(s): 12

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\webmediaplayer (Adware.EGDAccess) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\asc3550p (Rootkit.Agent) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
C:\Program Files\WebMediaPlayer (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\resources (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\skins (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\updates (Adware.EGDAccess) -> Quarantined and deleted successfully.

Fichier(s) infecté(s):
C:\Program Files\WebMediaPlayer\Conditions générales.url (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\Confidentialité.url (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\sqlite3.dll (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\uninst.exe (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\WebMediaPlayer.exe (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\Website.url (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\resources\languages.xml (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\resources\languages_v2.xml (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\resources\webmedias (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\skins\classic.skn (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\nvs2.inf (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Bureau\WebMediaPlayer.lnk (Adware.EGDAccess) -> Quarantined and deleted successfully.
DE PAT JETTE 1 YEUX MERCI JE CONTINUE J AI SUPRIMER
1

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
maverick1632 Messages postés 54 Date d'inscription vendredi 22 février 2008 Statut Membre Dernière intervention 29 novembre 2008 3
11 avril 2008 à 23:46
ok dlld je suis 1 peus greuver on se dis a demain car je sais pas si on a fais le tour de tous dis mo si il faut que je reste ou bien si on peut repemdre demain pat que pense tu de mon dernier rapport
[b]System Report/b
*************

Run on 11/04/2008 at 23:43

Microsoft Windows XP [version 5.1.2600]

Current user is an administrator

[b]Running Processes/b:

\SystemRoot\System32\smss.exe [624]
\??\C:\WINDOWS\system32\csrss.exe [672]
\??\C:\WINDOWS\system32\winlogon.exe [696]
C:\WINDOWS\system32\services.exe [740]
C:\WINDOWS\system32\lsass.exe [752]
C:\WINDOWS\system32\svchost.exe [956]
C:\WINDOWS\system32\svchost.exe [1040]
C:\WINDOWS\System32\svchost.exe [1224]
C:\WINDOWS\System32\svchost.exe [1324]
C:\WINDOWS\System32\svchost.exe [1444]
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [1468]
C:\Program Files\Alwil Software\Avast4\ashServ.exe [1524]
C:\WINDOWS\system32\spoolsv.exe [1768]
C:\WINDOWS\Explorer.EXE [184]
C:\WINDOWS\system32\svchost.exe [372]
C:\WINDOWS\System32\cisvc.exe [412]
C:\WINDOWS\System32\FTRTSVC.exe [480]
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [516]
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [652]
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe [660]
C:\WINDOWS\system32\nvsvc32.exe [716]
C:\Program Files\LogMeIn\x86\LogMeInSystray.exe [992]
C:\WINDOWS\System32\snmp.exe [1212]
C:\WINDOWS\RTHDCPL.EXE [1260]
C:\WINDOWS\System32\PAStiSvc.exe [1320]
C:\WINDOWS\System32\svchost.exe [1356]
C:\Program Files\Registry Easy\RegistryEasy.exe [1864]
C:\USBStorage\USBDetector.exe [1904]
C:\WINDOWS\system32\rundll32.exe [1928]
C:\WINDOWS\system32\ctfmon.exe [1932]
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [1984]
C:\documents and settings\patrice\local settings\application data\vbruce.exe [2028]
C:\WINDOWS\Twain_32\CA561A\SnapDetect.exe [2080]
C:\Program Files\OpenOffice.org 2.3\program\soffice.exe [2140]
C:\Program Files\OpenOffice.org 2.3\program\soffice.BIN [2184]
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2672]
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2732]
C:\WINDOWS\System32\alg.exe [3588]
C:\WINDOWS\system32\cidaemon.exe [3336]
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe [4028]
C:\Program Files\Internet Explorer\iexplore.exe [3000]
C:\Documents and Settings\PATRICE\Mes documents\Mes setups\Web Media Player\webMedia0.64.1.exe [3008]
C:\Program Files\TuneUp Utilities 2008\RegistryCleaner.exe [952]
C:\WINDOWS\System32\TuneUpDefragService.exe [1688]
C:\Program Files\RogueRemover PRO\RogueRemoverPRO.exe [1520]
C:\Program Files\Windows Live\Messenger\usnsvc.exe [2000]


[b]Drivers - Running/b:

Aavmker4
ACPI
AFD
AnyDVD
aswFsBlk
aswMon2
aswRdr
aswSP
aswTdi
atapi
audstub
Beep
Cdfs
Cdrom
Disk
ElbyCDIO
ElbyDelay
Fdc
Fips
Flpydisk
FltMgr
Ftdisk
gameenum
Gpc
HDAudBus
hidusb
HTTP
i8042prt
Imapi
IntcAzAudAddService
intelppm
IpNat
IPSec
isapnp
Kbdclass
kmixer
KSecDD
LMIInfo
lmimirr
LMIRfsDriver
mnmdd
Mouclass
mouhid
MountMgr
MRxDAV
MRxSmb
Msfs
mssmbios
Mup
NDIS
NdisTapi
NdisWan
NDProxy
NetBIOS
NetBT
Npfs
Ntfs
Null
nv
PAC7302
PAC7311
Parport
PartMgr
ParVdm
PCI
PCIIde
PptpMiniport
PSched
Ptilink
PxHelp20
RasAcd
Rasl2tp
RasPppoe
Raspti
Rdbss
RDPCDD
redbook
RTL8023xp
serenum
Serial
sr
Srv
swenum
sysaudio
Tcpip
TermDD
tffsport
Update
usbaudio
usbccgp
usbehci
usbhub
usbuhci
VgaSave
VolSnap
Wanarp
wdmaud


[b]Drivers - Stopped/b:

Abiosdsk
abp480n5
ACPIEC
adpu160m
aec
Aha154x
aic78u2
aic78xx
AliIde
amsint
asc
asc3350p
asc3550
AsyncMac
Atdisk
Atmarpc
BDFsDrv
BDRsDrv
BthEnum
BthPan
BTHPORT
BTHUSB
cbidf2k
CCDECODE
cd20xrnt
Cdaudio
Changer
CmdIde
Cpqarray
dac960nt
dmboot
dmio
dmload
DMusic
dpti2o
driverhardwarev2
drmkaud
ET5Drv
Fastfat
hidgame
hpn
i2omgmt
i2omp
ini910u
IntelIde
ip6fw
IpFilterDriver
IpInIp
IRENUM
kbdhid
lbrtfdc
LMIRfsClientNP
MarkFun_NT
Modem
mraid35x
MSKSSRV
MSPCLOCK
MSPQM
MSTEE
NABTSFEC
NdisIP
Ndisuio
NwlnkFlt
NwlnkFwd
PCAMPR5
PCANDIS5
PCIDump
Pcmcia
PDCOMP
PDFRAME
PDRELI
PDRFRAME
perc2
perc2hib
Processor
ql1080
Ql10wnt
ql12160
ql1240
ql1280
RDPWD
RFCOMM
Secdrv
Sfloppy
Simbad
SLIP
Sparrow
splitter
streamip
swmidi
symc810
symc8xx
sym_hi
sym_u3
TDPIPE
TDTCP
TosIde
Udfs
ultra
USBSTOR
ViaIde
WDICA
WSTCODEC
WudfPf
WudfRd


[b]Services - Running/b:

ALG
aswUpdSv
AudioSrv
avast!
avast!
avast!
BITS
Browser
BthServ
cisvc
CryptSvc
DcomLaunch
Dhcp
Dnscache
ERSvc
Eventlog
EventSystem
FastUserSwitchingCompatibility
FTRTSVC
gusvc
helpsvc
lanmanserver
lanmanworkstation
LmHosts
Netman
Nla
NVSvc
PlugPlay
PolicyAgent
ProtectedStorage
RasMan
RpcSs
SamSs
Schedule
seclogon
SENS
SharedAccess
ShellHWDetection
SNMP
Spooler
SSDPSRV
STI
stisvc
TapiSrv
TermService
Themes
TrkWks
TuneUp.Defrag
usnjsvc
UxTuneUp
W32Time
WebClient
winmgmt
wscsvc
wuauserv


[b]Services - Stopped/b:

Alerter
AppMgmt
aspnet_state
Automatic
ClipSrv
COMSysApp
dmadmin
dmserver
Fax
HidServ
HTTPFilter
ImapiService
LMIMaint
LogMeIn
LPDSVC
Messenger
mnmsrvc
MSDTC
MSIServer
NetDDE
NetDDEdsdm
Netlogon
NtLmSsp
NtmsSvc
RasAuto
RDSessMgr
RemoteAccess
RpcLocator
RSVP
SCardSvr
SNMPTRAP
srservice
SwPrv
SysmonLog
upnphost
UPS
VSS
WLSetupSvc
WmdmPmSN
WmiApSrv
WudfSvc
WZCSVC
xmlprov


[b]Files Created/Modified - 60 Days/b:


C:\

24 Feb 2008 16:11:02 0 A.... "C:\AUTOEXEC.BAT"
4 Apr 2008 18:06:42 216 A.SHR "C:\boot.ini"
24 Feb 2008 16:11:02 0 A.... "C:\CONFIG.SYS"
24 Feb 2008 16:11:02 0 A.SHR "C:\IO.SYS"
24 Feb 2008 16:11:02 0 A.SHR "C:\MSDOS.SYS"
24 Feb 2008 18:54:50 47 564 A.SHR "C:\NTDETECT.COM"
24 Feb 2008 18:54:50 251 712 A.SHR "C:\ntldr"
11 Apr 2008 19:00:08 2 145 386 496 A.SH. "C:\pagefile.sys"
10 Mar 2008 14:04:50 268 A..H. "C:\sqmdata00.sqm"
10 Mar 2008 19:48:16 268 A..H. "C:\sqmdata01.sqm"
7 Apr 2008 23:58:46 232 A..H. "C:\sqmdata02.sqm"
10 Mar 2008 14:04:50 244 A..H. "C:\sqmnoopt00.sqm"
10 Mar 2008 19:48:16 244 A..H. "C:\sqmnoopt01.sqm"
7 Apr 2008 23:58:46 244 A..H. "C:\sqmnoopt02.sqm"
5 Apr 2008 16:54:58 722 A.... "C:\UFantasy.ini"
9 Apr 2008 13:32:58 85 450 928 A.... "C:\xscan.txt"


C:\WINDOWS\

29 Mar 2008 18:36:34 3 120 A.... "C:\WINDOWS\118294.78"
22 Mar 2008 14:08:34 3 136 A.... "C:\WINDOWS\ACROREAD.INI"
11 Apr 2008 19:00:08 2 048 A.S.. "C:\WINDOWS\bootstat.dat"
9 Apr 2008 12:50:24 86 094 A.... "C:\WINDOWS\BPMNT.dll"
2 Mar 2008 19:13:54 132 096 ..... "C:\WINDOWS\combatfs.exe"
24 Feb 2008 16:11:02 0 A.... "C:\WINDOWS\control.ini"
9 Apr 2008 12:49:46 170 A.... "C:\WINDOWS\GetServer.ini"
2 Apr 2008 23:40:08 71 749 A.... "C:\WINDOWS\hcextoutput.dll"
9 Apr 2008 12:50:24 36 505 621 A.... "C:\WINDOWS\LPT$VPN.207"
10 Apr 2008 12:51:12 116 A.... "C:\WINDOWS\NeroDigital.ini"
31 Mar 2008 20:27:52 379 A.... "C:\WINDOWS\ODBC.INI"
24 Feb 2008 16:10:58 4 207 A.... "C:\WINDOWS\ODBCINST.INI"
24 Feb 2008 22:49:34 286 720 A.... "C:\WINDOWS\PATCH.EXE"
24 Feb 2008 16:12:42 8 192 A.... "C:\WINDOWS\REGLOCS.OLD"
11 Apr 2008 18:59:28 30 446 A.... "C:\WINDOWS\SchedLgU.Txt"
25 Feb 2008 0:05:14 0 A.... "C:\WINDOWS\Sti_Trace.log"
24 Feb 2008 16:04:00 231 ..... "C:\WINDOWS\system.ini"
18 Mar 2008 23:47:50 8 192 A.SH. "C:\WINDOWS\Thumbs.db"
24 Feb 2008 22:49:36 507 904 A.... "C:\WINDOWS\TMUPDATE.DLL"
2 Apr 2008 23:40:08 333 576 A.... "C:\WINDOWS\tsc.exe"
9 Apr 2008 12:51:20 823 A.... "C:\WINDOWS\tsc.ini"
2 Apr 2008 23:40:10 1 948 082 A.... "C:\WINDOWS\tsc.ptn"
24 Feb 2008 22:49:36 69 689 A.... "C:\WINDOWS\UNZIP.DLL"
24 Feb 2008 16:09:28 36 A.... "C:\WINDOWS\vb.ini"
24 Feb 2008 16:09:28 37 A.... "C:\WINDOWS\vbaddin.ini"
9 Apr 2008 12:50:24 36 505 621 A.... "C:\WINDOWS\VPTNFILE.207"
9 Apr 2008 12:50:26 1 163 344 A.... "C:\WINDOWS\vsapi32.dll"
11 Apr 2008 19:00:44 159 A.... "C:\WINDOWS\wiadebug.log"
11 Apr 2008 19:00:40 50 A.... "C:\WINDOWS\wiaservc.log"
10 Apr 2008 18:12:56 738 A.... "C:\WINDOWS\win.ini"
27 Mar 2008 21:10:32 749 A..HR "C:\WINDOWS\WindowsShell.Manifest"
11 Apr 2008 19:16:58 1 432 506 A.... "C:\WINDOWS\WindowsUpdate.log"
12 Mar 2008 22:09:06 316 640 A.... "C:\WINDOWS\WMSysPr9.prx"
24 Feb 2008 18:57:06 299 552 A.... "C:\WINDOWS\WMSysPrx.prx"
12 Mar 2008 22:08:54 8 192 A.... "C:\WINDOWS\$NtUninstallWMFDist11$\reg00019"
24 Feb 2008 16:10:44 2 421 ..... "C:\WINDOWS\$NtServicePackUninstall$\dataspec.xml"
24 Feb 2008 17:51:20 13 698 ..... "C:\WINDOWS\$NtServicePackUninstall$\filelist.xml"
24 Feb 2008 16:13:06 82 076 ..... "C:\WINDOWS\$NtServicePackUninstall$\hpfdj950.bud"
24 Feb 2008 17:41:06 50 568 ..... "C:\WINDOWS\$NtServicePackUninstall$\hpvdj89i.bud"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00001"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00005"
24 Feb 2008 18:54:30 12 288 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00018"
24 Feb 2008 18:54:30 36 864 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00020"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00021"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00070"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00071"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00072"
24 Feb 2008 18:54:30 12 288 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00073"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00139"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00140"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00172"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00173"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00174"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00178"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00179"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00180"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00181"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00182"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00183"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00184"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00185"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00186"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00196"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00197"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00198"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00199"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00200"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00201"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00202"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00212"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00213"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00214"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00215"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00216"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00217"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00218"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00219"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00220"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00221"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00222"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00223"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00224"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00225"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00226"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00227"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00228"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00229"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00230"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00231"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00232"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00233"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00234"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00235"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00236"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00237"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00238"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00239"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00240"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00241"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00242"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00243"
24 Feb 2008 18:54:30 32 768 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00244"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00245"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00246"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00247"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00248"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00249"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00250"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00251"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00252"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00253"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00264"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00265"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00266"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00267"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00268"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00269"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00270"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00271"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00272"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00273"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00274"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00275"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00276"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00277"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00278"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00279"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00280"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00281"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00282"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00283"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00284"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00285"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00286"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00287"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00288"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00289"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00290"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00291"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00292"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00293"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00294"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00299"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00301"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00303"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00305"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00307"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00309"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00311"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00313"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00315"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00316"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00317"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00318"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00319"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00320"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00321"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00322"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00323"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00324"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00325"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00326"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00327"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00328"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00329"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00330"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00331"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00332"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00333"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00334"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00335"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00336"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00337"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00338"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00339"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00340"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00341"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00342"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00343"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00344"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00345"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00346"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00347"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00348"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00349"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00350"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00351"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00352"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00353"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00355"
24 Feb 2008 18:54:30 32 768 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00356"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00357"
24 Feb 2008 18:54:30 12 288 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00358"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00359"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00360"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00361"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00362"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00363"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00364"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00365"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00366"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00367"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00368"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00369"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00370"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00373"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00374"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00375"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00410"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00413"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00414"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00415"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00416"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00417"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00418"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00419"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00421"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00422"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00423"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00424"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00425"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00426"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00427"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00484"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00485"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00486"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00487"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00488"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00489"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00490"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00491"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00492"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00493"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00494"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00495"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00496"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00497"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00498"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00576"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00577"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00578"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00606"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00607"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00608"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00610"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00626"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00627"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00628"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00629"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00630"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00631"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00632"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00633"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00634"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00635"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00636"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00637"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00638"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00639"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00660"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00661"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00698"
24 Feb 2008 18:54:32 12 288 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00726"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00727"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00728"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00729"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00730"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00731"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00732"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00733"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00734"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00735"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00736"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00737"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00738"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00739"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00740"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00741"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00742"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00743"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00744"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00745"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00746"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00747"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00748"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00749"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00750"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00751"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00752"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00753"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00754"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00755"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00756"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00757"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00758"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00759"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00760"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00761"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00762"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00763"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00764"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00765"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00766"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00767"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00768"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00769"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00770"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00771"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00772"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00773"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00774"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00775"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00776"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00777"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00778"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00779"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00780"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00781"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00782"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00783"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00784"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00785"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00786"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00787"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00788"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00789"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00790"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00791"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00792"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00793"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00794"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00795"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00796"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00797"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00798"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00799"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00800"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00801"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00802"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00803"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00804"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00805"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00806"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00807"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00808"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00809"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00810"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00811"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00812"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00813"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00814"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00815"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00816"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00817"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00818"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00819"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00820"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00821"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00822"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00823"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00824"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00825"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00826"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00827"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00828"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00829"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00830"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00831"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00832"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00833"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00834"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00835"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00836"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00837"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00838"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00839"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00840"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00841"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00842"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00843"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00844"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00845"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00846"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00847"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00850"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00851"
24 Feb 2008 18:54:32 16 384 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00852"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00853"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00854"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00855"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00856"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00857"
24 Feb 2008 18:54:32 98 304 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00858"
24 Feb 2008 18:54:32 151 552 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00859"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00860"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00864"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00865"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00866"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00867"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00868"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00869"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00870"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00871"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00872"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00873"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00874"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00875"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00876"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00877"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00878"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00879"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00880"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00881"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00882"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00883"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00884"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00885"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00886"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00887"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00888"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00889"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00890"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00891"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00892"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00893"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00894"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00895"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00896"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00897"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00898"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00899"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00900"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00901"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00902"
24 Feb 2008 18:54:32 28 672 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00903"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00904"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00905"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00906"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00907"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00920"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00921"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00923"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00924"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00925"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00926"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00927"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00928"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00929"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00930"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00931"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00932"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00933"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00934"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00935"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00936"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01396"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01397"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01399"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01402"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01403"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01414"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01427"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01428"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01429"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01430"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01431"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01432"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01433"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01434"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01437"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01438"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01439"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01440"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01441"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01442"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01443"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01444"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01445"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01446"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01447"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01448"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01449"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01450"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01451"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01452"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01453"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01454"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01455"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01456"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01457"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01458"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01459"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01460"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01461"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01462"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01463"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01464"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01465"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01466"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01467"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01468"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01469"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01470"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01471"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01472"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01473"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01474"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01475"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01476"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01477"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01478"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01479"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01480"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01483"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01484"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01485"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01486"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOW
1
maverick1632 Messages postés 54 Date d'inscription vendredi 22 février 2008 Statut Membre Dernière intervention 29 novembre 2008 3
10 avril 2008 à 19:31
cher dlld je te remercie beaucoup de m avoir repondue si rapidement j ai commencer ton progame d analyse et je te transmet le rapport des 1 er resultats tien moi au courrant si je dois continuer ce que tu mas ecris ou si on dois changer de tactique par avance merci de me repondre rapidement amitiees sincere pat
0
maverick1632 Messages postés 54 Date d'inscription vendredi 22 février 2008 Statut Membre Dernière intervention 29 novembre 2008 3
10 avril 2008 à 22:58
javascript:;
0
Utilisateur anonyme
11 avril 2008 à 15:06
Salut,
Heuuu....mais les rapports ???? Il sont où ???

J'en ai besoin...

A+
0
maverick1632 Messages postés 54 Date d'inscription vendredi 22 février 2008 Statut Membre Dernière intervention 29 novembre 2008 3
11 avril 2008 à 17:52
cher dlld merci de ta patience je t envoie mon rapport ca y es j ai piger comment faire je te remercie par avance de le regarder et de me dire quoi faire patDeckard's System Scanner v20071014.68
Run by PATRICE on 2008-04-10 18:49:33
Computer is in Normal Mode.
--------------------------------------------------------------------------------

-- System Restore --------------------------------------------------------------

System Restore is disabled; attempting to re-enable...success.


-- Last 1 Restore Point(s) --
1: 2008-04-10 16:49:38 UTC - RP1 - Point de vérification système


Backed up registry hives.
Performed disk cleanup.



-- HijackThis Clone ------------------------------------------------------------


Emulating logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2008-04-10 18:51:34
Platform: Windows XP Service Pack 2 (5.01.2600)
MSIE: Internet Explorer (7.00.6000.16640)
Boot mode: Normal

Running processes:
C:\WINDOWS\system32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\system32\FTRTSVC.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\snmp.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Wanadoo\TaskBarIcon.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\LogMeIn\x86\LogMeInSystray.exe
C:\WINDOWS\RTHDCPL.exe
C:\Program Files\Registry Easy\RegistryEasy.exe
C:\Program Files\Defenza\pcd-as.exe
C:\USBStorage\USBDetector.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\twain_32\ca561a\SnapDetect.exe
C:\Program Files\OpenOffice.org 2.3\program\soffice.exe
C:\Program Files\OpenOffice.org 2.3\program\soffice.bin
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\WINDOWS\system32\PAStiSvc.exe
C:\WINDOWS\system32\cidaemon.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
C:\Program Files\Softwin\BitDefender10\vsserv.exe
C:\Documents and Settings\PATRICE\Bureau\dss.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://home.microsoft.com/access/autosearch.asp?p=%s
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Wanadoo\SearchPageURL.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\GoogleToolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\GoogleToolbar2.dll
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\x86\LogMeInSystray.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [RegistryEasy.exe] C:\Program Files\Registry Easy\RegistryEasy.exe
O4 - HKLM\..\Run: [PCDAS] C:\Program Files\Defenza\pcd-as.exe /10003
O4 - HKLM\..\Run: [USBDetector] C:\USBStorage\USBDetector.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [IETI] C:\Program Files\Skype\Phone\IEPlugin\unins000.exe /VERYSILENT /SUPPRESSMSGBOXES /NORESTART (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [IETI] C:\Program Files\Skype\Phone\IEPlugin\unins000.exe /VERYSILENT /SUPPRESSMSGBOXES /NORESTART (User 'Default user')
O4 - Startup: OpenOffice.org 2.3.lnk = C:\Program Files\OpenOffice.org 2.3\program\quickstart.exe
O4 - Global Startup: Icatch(VI) SnapDetect.lnk = C:\WINDOWS\Twain_32\CA561A\SnapDetect.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Fichiers communs\Skype\Skype4COM.dll
O20 - AppInit_DLLs: sockspy.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\system32\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: BitDefender Desktop Update Service (LIVESRV) - SOFTWIN S.R.L. - C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_0.EXE
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\ramaint.exe
O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\LogMeIn.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: STI Simulator - Unknown owner - C:\WINDOWS\system32\PAStiSvc.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\system32\TuneUpDefragService.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - SOFTWIN S.R.L. - C:\Program Files\Softwin\BitDefender10\vsserv.exe
O23 - Service: BitDefender Communicator (XCOMM) - SOFTWIN S.R.L - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe

0
maverick1632 Messages postés 54 Date d'inscription vendredi 22 février 2008 Statut Membre Dernière intervention 29 novembre 2008 3
11 avril 2008 à 18:03
je suis pas sur qu il soit passer comme Deckard's System Scanner v20071014.68
Run by PATRICE on 2008-04-10 18:49:33
Computer is in Normal Mode.
--------------------------------------------------------------------------------

-- System Restore --------------------------------------------------------------

System Restore is disabled; attempting to re-enable...success.


-- Last 1 Restore Point(s) --
1: 2008-04-10 16:49:38 UTC - RP1 - Point de vérification système


Backed up registry hives.
Performed disk cleanup.



-- HijackThis Clone ------------------------------------------------------------


Emulating logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2008-04-10 18:51:34
Platform: Windows XP Service Pack 2 (5.01.2600)
MSIE: Internet Explorer (7.00.6000.16640)
Boot mode: Normal

Running processes:
C:\WINDOWS\system32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\system32\FTRTSVC.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\snmp.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Wanadoo\TaskBarIcon.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\LogMeIn\x86\LogMeInSystray.exe
C:\WINDOWS\RTHDCPL.exe
C:\Program Files\Registry Easy\RegistryEasy.exe
C:\Program Files\Defenza\pcd-as.exe
C:\USBStorage\USBDetector.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\twain_32\ca561a\SnapDetect.exe
C:\Program Files\OpenOffice.org 2.3\program\soffice.exe
C:\Program Files\OpenOffice.org 2.3\program\soffice.bin
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\WINDOWS\system32\PAStiSvc.exe
C:\WINDOWS\system32\cidaemon.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
C:\Program Files\Softwin\BitDefender10\vsserv.exe
C:\Documents and Settings\PATRICE\Bureau\dss.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://home.microsoft.com/access/autosearch.asp?p=%s
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Wanadoo\SearchPageURL.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\GoogleToolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\GoogleToolbar2.dll
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\x86\LogMeInSystray.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [RegistryEasy.exe] C:\Program Files\Registry Easy\RegistryEasy.exe
O4 - HKLM\..\Run: [PCDAS] C:\Program Files\Defenza\pcd-as.exe /10003
O4 - HKLM\..\Run: [USBDetector] C:\USBStorage\USBDetector.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [IETI] C:\Program Files\Skype\Phone\IEPlugin\unins000.exe /VERYSILENT /SUPPRESSMSGBOXES /NORESTART (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [IETI] C:\Program Files\Skype\Phone\IEPlugin\unins000.exe /VERYSILENT /SUPPRESSMSGBOXES /NORESTART (User 'Default user')
O4 - Startup: OpenOffice.org 2.3.lnk = C:\Program Files\OpenOffice.org 2.3\program\quickstart.exe
O4 - Global Startup: Icatch(VI) SnapDetect.lnk = C:\WINDOWS\Twain_32\CA561A\SnapDetect.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Fichiers communs\Skype\Skype4COM.dll
O20 - AppInit_DLLs: sockspy.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\system32\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: BitDefender Desktop Update Service (LIVESRV) - SOFTWIN S.R.L. - C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_0.EXE
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\ramaint.exe
O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\LogMeIn.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: STI Simulator - Unknown owner - C:\WINDOWS\system32\PAStiSvc.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\system32\TuneUpDefragService.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - SOFTWIN S.R.L. - C:\Program Files\Softwin\BitDefender10\vsserv.exe
O23 - Service: BitDefender Communicator (XCOMM) - SOFTWIN S.R.L - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe

0
Utilisateur anonyme
11 avril 2008 à 18:18
Bonsoir,
Oui c'était bon...maintenant tu l'as posté deux fois.....
Bon, c'est pas grave....

Alors,
Tu as trois AV sur ton PC => conflits.
Je te conseille de conserver Ditdefender si tu l'as acheté, sinon conserve Norton (si tu l'as acheté aussi) et en dernier Avast. (n'en conserve qu'un seul)
Pour supprimer :
Avast : https://www.avast.com/fr-fr/uninstall-utility
Norton : http://service1.symantec.com/SUPPORT/INTER/tsgeninfointl.nsf/fr_docid/20050414110429924
Ditdeffender 10 : http://kb.bitdefender.com/KB299-en--Additional-BitDefender-10-Internet-Security-BETA-uninstall-methods.html

Ensuite,
Defenza est un rogue, il faut le supprimer :
Alors,
> Télécharge RogueRemover : http://fileforum.betanews.com/download/RogueRemover_FREE/1167150912/1
- Lis le tuto de Malekal_Morte : http://www.malekal.com/tutorial_RogueRemover.php
NB : S'il te manque COMCTL32.OCX alors télécharge le ici : https://www.malekal.com/tutorial-aboutbuster/
- Installe et exécute le programme.
- Poste le rapport sur le forum stp.

Commence par faire ceci stp...après on passe à la suite.

A+
0
maverick1632 Messages postés 54 Date d'inscription vendredi 22 février 2008 Statut Membre Dernière intervention 29 novembre 2008 3
11 avril 2008 à 18:48
merci dlld pour tes precieux conseils je vais ne laisser que avast car je sais mieux m en servir que les autres en ce qui concerne le rootkit q avast detecte qu en est t il et c est quoi 1rogue merci davance de ta reponse pat
0
Utilisateur anonyme
11 avril 2008 à 19:04
Avast est le plus merdik de tous... Bitdefender est le meilleur...enfin....

Pour le rogue :
http://assiste.com.free.fr/p/craptheque/defenza.html

= faux logiciel

Fais ce que je te demande stp. puis reposte un rapport HiJackT.

A+
0
maverick1632 Messages postés 54 Date d'inscription vendredi 22 février 2008 Statut Membre Dernière intervention 29 novembre 2008 3
11 avril 2008 à 19:22
ok j ai siprimer bidefender et norton mais j ai copie des 2 au cas ou je fais le reste et je t envoie 1 rapport merci pat
0
maverick1632 Messages postés 54 Date d'inscription vendredi 22 février 2008 Statut Membre Dernière intervention 29 novembre 2008 3
11 avril 2008 à 19:42
je tenvoie mon 2eme rapport apres suppressions des aDeckard's System Scanner v20071014.68
Run by PATRICE on 2008-04-11 19:31:20
Computer is in Normal Mode.
--------------------------------------------------------------------------------



-- HijackThis (run as PATRICE.exe) ---------------------------------------------

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:32:15, on 11/04/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16640)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\cisvc.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\LogMeIn\x86\LogMeInSystray.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\System32\PAStiSvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Registry Easy\RegistryEasy.exe
C:\USBStorage\USBDetector.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\WINDOWS\Twain_32\CA561A\SnapDetect.exe
C:\Program Files\OpenOffice.org 2.3\program\soffice.exe
C:\Program Files\OpenOffice.org 2.3\program\soffice.BIN
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\cidaemon.exe
C:\Program Files\RogueRemover PRO\RogueRemoverPRO.exe
C:\Documents and Settings\PATRICE\Bureau\dss.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\PATRICE.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\x86\LogMeInSystray.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [RegistryEasy.exe] C:\Program Files\Registry Easy\RegistryEasy.exe
O4 - HKLM\..\Run: [PCDAS] C:\Program Files\Defenza\pcd-as.exe /10003
O4 - HKLM\..\Run: [USBDetector] C:\USBStorage\USBDetector.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [vbruce] c:\documents and settings\patrice\local settings\application data\vbruce.exe vbruce
O4 - HKCU\..\Run: [RogueMonitor] C:\Program Files\RogueRemover PRO\RogueRemoverPRO.exe /monitor
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [IETI] C:\Program Files\Skype\Phone\IEPlugin\unins000.exe /VERYSILENT /SUPPRESSMSGBOXES /NORESTART (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [IETI] C:\Program Files\Skype\Phone\IEPlugin\unins000.exe /VERYSILENT /SUPPRESSMSGBOXES /NORESTART (User 'Default user')
O4 - Startup: OpenOffice.org 2.3.lnk = C:\Program Files\OpenOffice.org 2.3\program\quickstart.exe
O4 - Global Startup: Icatch(VI) SnapDetect.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Automatic LiveUpdate Scheduler - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: STI Simulator - Unknown owner - C:\WINDOWS\System32\PAStiSvc.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
0
Utilisateur anonyme
11 avril 2008 à 22:11
Ok,
alors la suite :

> Les logiciels suivants (MalwareByte's Anti-Malware et Ccleaner) te seront utiles par la suite - ils sont à conserver...

> Télécharge MalwareByte's Anti-Malware :
- Installe le programme puis lance le stp.
NB : S'il te manque COMCTL32.OCX alors télécharge le ici
- Fais les mises à jour (clique sur "Mises à jour" puis "Recherche de mises à jour") puis ferme le programme.
NB : Si tu as besoin : Tuto

> Télécharge et installe Ccleaner :
- Fais les mises à jour puis ferme le programme.
Si besoin est tu trouveras des Tutoriaux : ici, ici et là.

> Télécharge Clean (de Malekal Morte) (différent de Ccleaner)

> Télécharge SDFix (de AndyManchesta) sur ton bureau :
- Double clique sur l'archive SDFix qui à été créé sur le Bureau et installe le programme (l'installation va créer un dossier (à la racine du disque dur par défaut) nommé SDFix. Ferme ensuite le programme.

> Commence par faire un copier/coller de ce poste (cette manip.): (conseillé)
Ouvre un nouveau fichier Bloc notes (clique sur "Démarrer" => "Programmes" =>"Accessoires" => "Bloc notes"),
puis fait un copier/coller de tout le contenu de la fenêtre de ce poste dans le fichier texte.
Sauvegarde le sur le bureau, tu pourras alors y avoir accès même déconnecté ou en mode sans échec.

> Démarre en mode sans échec : (image). Si problème : tuto ici

> Lance MalwareByte's Anti-Malware,
- Clique sur "Executer un examen complet" puis "Rechercher" et sélectionne tous tes disques durs => le scan débute....patiente...
- A la fin clique sur clique "supprimer" (Si des éléments très difficiles à supprimer, un message te demandera de redémarrer : clique sur "Oui" alors)
- Un rapport va être généré : sauvegarde le et poste le sur forum stp.

> Lance Ccleaner,
- Choisi l’onglet "Options" puis clique sur "Avancé" et décoche la case "Effacer uniquement les fichiers, du dossier temp de Windows, plus vieux que 48 heures" (tout doit être supprimé).
- Dans l'onglet "Nettoyeur" clique sur "Analyse".
- Une fois l'analyse terminée, clique sur "Lancer le Nettoyage".
- Dans l'onglet "registre" => Recherches des erreurs => Réparer les erreurs sélectionnées => enregistre une sauvegarde => corriger toutes erreurs sélectionnées => ok => fermer.
N.B : Si Ccleaner te propose d'enregistrer une sauvegarde, reponds oui et enregistre sous 'Bureau'
Recommence jusqu’à ce qu’il ne trouve plus rien (cela varie en général entre 1 et 4 fois).

> Pour Clean (encore en mode sans échec) :
- Double-clic sur clean.cmd
- Une fenêtre va apparaître, choisis l'option 2, suis les consignes et poste le rapport clean (Le rapport clean se trouve ici : C:\rapport_clean.txt)
NB : Si besoin : Tuto

> Pour SDFix (toujours en mode sans échec) :
- Vas dans c:/SDFix et double-clique sur RunThis.bat
- Appuie sur < Y > puis < Entrée >....Le nettoyage commence....patience...
- Le programme va te demander de relancer le PC, frappe une touche...
- Le nettoyage se termine...un rapport apparait...
-Enfin, copie/colle le contenu du fichier Report.txt dans ta prochaine réponse

> Relance ton PC en mode normal

> Relance Hijackthis :
Puis sélectionne < do a system scan and save a logfile >,

Et envoie moi, par collier/coller, ton log Hijackthis stp,

Bon courage,

:)

NB : N'oublie pas de poster TOUS les rapports stp ( MalwareByte's Anti-Malware, Clean (différent de Ccleaner), SDFix puis HiJAckT).

A+
0
voici le rapport FDFIX


[b]SDFix: Version 1.173 [/b

Microsoft Windows XP [version 5.1.2600]
Running From: C:\SDFix

[b]Checking Services [/b]:


Restoring Windows Registry Values
Restoring Windows Default Hosts File

Rebooting

Service asc3550p - Deleted

[b]Checking Files [/b]:

Trojan Files Found:

C:\WINDOWS\antiv.exe - Deleted
C:\WINDOWS\system32\autorun.ini - Deleted
C:\WINDOWS\system32\drivers\asc3550p.sys - Deleted





Removing Temp Files

[b]ADS Check [/b]:



[b]Final Check [/b]:

catchme 0.3.1353.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-04-21 21:12:03
Windows 5.1.2600 Service Pack 2 FAT NTAPI

scanning hidden processes ...

scanning hidden services ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0


[b]Remaining Services [/b]:




Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Acer\\Acer Arcade\\PCMService.exe"="C:\\Program Files\\Acer\\Acer Arcade\\PCMService.exe:*:Enabled:CyberLink PowerCinema Resident Program"
"C:\\WINDOWS\\System32\\dpvsetup.exe"="C:\\WINDOWS\\System32\\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\\WINDOWS\\System32\\rundll32.exe"="C:\\WINDOWS\\System32\\rundll32.exe:*:Enabled:Ex‚cuter une DLL en tant qu'application"
"C:\\Program Files\\eMule\\emule.exe"="C:\\Program Files\\eMule\\emule.exe:*:Enabled:eMule"
"C:\\Documents and Settings\\Pascale LE MAGUET\\Local Settings\\Temp\\7zO13.tmp\\Big Emoticons - Emoticons Pack.exe"="C:\\Documents and Settings\\Pascale LE MAGUET\\Local Settings\\Temp\\7zO13.tmp\\Big Emoticons - Emoticons Pack.exe:*:Enabled:Messenger Content Installer"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:MSN Messenger 6.2"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe"="C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"D:\\documents\\divers\\incredimail_install.exe"="D:\\documents\\divers\\incredimail_install.exe:*:Enabled:IncrediMail Installer"
"C:\\Documents and Settings\\Pascale LE MAGUET\\Local Settings\\Temp\\ImInstaller\\IncrediMail\\incredimail_install.exe"="C:\\Documents and Settings\\Pascale LE MAGUET\\Local Settings\\Temp\\ImInstaller\\IncrediMail\\incredimail_install.exe:*:Enabled:IncrediMail Installer"
"C:\\Program Files\\SAS\\SAS 9.1\\sas.exe"="C:\\Program Files\\SAS\\SAS 9.1\\sas.exe:*:Enabled:SAS 9.1 for Windows"
"C:\\WINDOWS\\taskmon.exe"="C:\\WINDOWS\\taskmon.exe:*:Enabled:enable"
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"="C:\\Program Files\\Bonjour\\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
"C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:MSN Messenger 6.2"
"C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe"="C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"

[b]Remaining Files [/b]:


File Backups: - C:\SDFix\backups\backups.zip

[b]Files with Hidden Attributes [/b]:

Wed 24 Aug 2005 1,024 ...HR --- "C:\WINDOWS\system32\NTICDMK7.dll"
Wed 24 Aug 2005 1,024 ...HR --- "C:\WINDOWS\system32\NTIMPEG2.dll"
Wed 24 Aug 2005 1,024 ...HR --- "C:\WINDOWS\system32\NTIMP3.dll"
Wed 24 Aug 2005 1,024 ...HR --- "C:\WINDOWS\system32\NTIFCD3.dll"
Wed 24 Aug 2005 1,024 ...HR --- "C:\WINDOWS\system32\NTIBUN4.dll"
Thu 28 Feb 2008 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Thu 13 Dec 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\9e870549834e2bceb796e44a1e3ac6f5\BITB.tmp"
Thu 13 Dec 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\22fb973e059470cc1b5d76c4ae605351\BITC.tmp"
Thu 13 Dec 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\2769b111678c52099a3b3123b12f2325\BIT9.tmp"
Thu 13 Dec 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\18b19374451d28a8fbaf1939cf31ff45\BIT8.tmp"
Thu 13 Dec 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\26924cbc8132a10b438ce6e2b49d4652\BIT4.tmp"
Thu 13 Dec 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\30285791903730fbf957a83562db4ff4\BIT6.tmp"
Thu 13 Dec 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\d77b9b5b8fed23dd91f50d167cce60d3\BITA.tmp"
Thu 13 Dec 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\cb8921d0c7830b2f33c00fa4c8a10d17\BIT7.tmp"
Thu 13 Dec 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\0a67b6c406b1d7e0f5c1e6f6d44a3f6e\BIT5.tmp"
Thu 5 Jul 2007 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
Wed 6 Feb 2008 306,176 ...H. --- "C:\Documents and Settings\Pascale LE MAGUET\Bureau\UE master 1\UE simulation\compte-rendu de projet C et R\~WRL0001.tmp"

[b]Finished![/b]
0
Utilisateur anonyme > rennes29
21 avril 2008 à 21:35
Salut Rennne 29,
C'est sympa un SDFix, mais je ne t'ai rien demandé ? C'est la discussion de maverick1632.

Il serait préférable que tu crées ton propre topique (= discussion). Cela rendra ce poste plus compréhensible, et nous pourrons traiter ton problème avec plus d’efficacité.

Donc,
fais ce qui suit stp : http://pagesperso-orange.fr/rginformatique/section%20virus/demofairesontmessage.htm
(Merci à Balltrap pour cette vidéo flash-player).

A++
0
Utilisateur anonyme
11 avril 2008 à 22:16
PS : Le rapport se trouve ici : C:\Program Files\RogueRemover\RRLogxxxx.txt

A+
0
Utilisateur anonyme
11 avril 2008 à 22:48
Ok,
très bien...
Dès que tu auras posté la suite on continuera...

A+
0
maverick1632 Messages postés 54 Date d'inscription vendredi 22 février 2008 Statut Membre Dernière intervention 29 novembre 2008 3
11 avril 2008 à 22:54
Malwarebytes' Anti-Malware 1.11
Version de la base de données: 615

Type de recherche: Examen rapide
Eléments examinés: 31577
Temps écoulé: 2 minute(s), 16 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 2
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 4
Fichier(s) infecté(s): 12

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\webmediaplayer (Adware.EGDAccess) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\asc3550p (Rootkit.Agent) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
C:\Program Files\WebMediaPlayer (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\resources (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\skins (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\updates (Adware.EGDAccess) -> Quarantined and deleted successfully.

Fichier(s) infecté(s):
C:\Program Files\WebMediaPlayer\Conditions générales.url (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\Confidentialité.url (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\sqlite3.dll (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\uninst.exe (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\WebMediaPlayer.exe (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\Website.url (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\resources\languages.xml (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\resources\languages_v2.xml (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\resources\webmedias (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\WebMediaPlayer\skins\classic.skn (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\nvs2.inf (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Bureau\WebMediaPlayer.lnk (Adware.EGDAccess) -> Quarantined and deleted successfully.
0
maverick1632 Messages postés 54 Date d'inscription vendredi 22 février 2008 Statut Membre Dernière intervention 29 novembre 2008 3
11 avril 2008 à 23:45
ok dlld je suis 1 peus greuver on se dis a demain car je sais pas si on a fais le tour de tous dis mo si il faut que je reste ou bien si on peut repemdre demain pat que pense tu de mon dernier rapport
[b]System Report/b
*************

Run on 11/04/2008 at 23:43

Microsoft Windows XP [version 5.1.2600]

Current user is an administrator

[b]Running Processes/b:

\SystemRoot\System32\smss.exe [624]
\??\C:\WINDOWS\system32\csrss.exe [672]
\??\C:\WINDOWS\system32\winlogon.exe [696]
C:\WINDOWS\system32\services.exe [740]
C:\WINDOWS\system32\lsass.exe [752]
C:\WINDOWS\system32\svchost.exe [956]
C:\WINDOWS\system32\svchost.exe [1040]
C:\WINDOWS\System32\svchost.exe [1224]
C:\WINDOWS\System32\svchost.exe [1324]
C:\WINDOWS\System32\svchost.exe [1444]
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [1468]
C:\Program Files\Alwil Software\Avast4\ashServ.exe [1524]
C:\WINDOWS\system32\spoolsv.exe [1768]
C:\WINDOWS\Explorer.EXE [184]
C:\WINDOWS\system32\svchost.exe [372]
C:\WINDOWS\System32\cisvc.exe [412]
C:\WINDOWS\System32\FTRTSVC.exe [480]
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [516]
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [652]
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe [660]
C:\WINDOWS\system32\nvsvc32.exe [716]
C:\Program Files\LogMeIn\x86\LogMeInSystray.exe [992]
C:\WINDOWS\System32\snmp.exe [1212]
C:\WINDOWS\RTHDCPL.EXE [1260]
C:\WINDOWS\System32\PAStiSvc.exe [1320]
C:\WINDOWS\System32\svchost.exe [1356]
C:\Program Files\Registry Easy\RegistryEasy.exe [1864]
C:\USBStorage\USBDetector.exe [1904]
C:\WINDOWS\system32\rundll32.exe [1928]
C:\WINDOWS\system32\ctfmon.exe [1932]
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [1984]
C:\documents and settings\patrice\local settings\application data\vbruce.exe [2028]
C:\WINDOWS\Twain_32\CA561A\SnapDetect.exe [2080]
C:\Program Files\OpenOffice.org 2.3\program\soffice.exe [2140]
C:\Program Files\OpenOffice.org 2.3\program\soffice.BIN [2184]
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2672]
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2732]
C:\WINDOWS\System32\alg.exe [3588]
C:\WINDOWS\system32\cidaemon.exe [3336]
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe [4028]
C:\Program Files\Internet Explorer\iexplore.exe [3000]
C:\Documents and Settings\PATRICE\Mes documents\Mes setups\Web Media Player\webMedia0.64.1.exe [3008]
C:\Program Files\TuneUp Utilities 2008\RegistryCleaner.exe [952]
C:\WINDOWS\System32\TuneUpDefragService.exe [1688]
C:\Program Files\RogueRemover PRO\RogueRemoverPRO.exe [1520]
C:\Program Files\Windows Live\Messenger\usnsvc.exe [2000]


[b]Drivers - Running/b:

Aavmker4
ACPI
AFD
AnyDVD
aswFsBlk
aswMon2
aswRdr
aswSP
aswTdi
atapi
audstub
Beep
Cdfs
Cdrom
Disk
ElbyCDIO
ElbyDelay
Fdc
Fips
Flpydisk
FltMgr
Ftdisk
gameenum
Gpc
HDAudBus
hidusb
HTTP
i8042prt
Imapi
IntcAzAudAddService
intelppm
IpNat
IPSec
isapnp
Kbdclass
kmixer
KSecDD
LMIInfo
lmimirr
LMIRfsDriver
mnmdd
Mouclass
mouhid
MountMgr
MRxDAV
MRxSmb
Msfs
mssmbios
Mup
NDIS
NdisTapi
NdisWan
NDProxy
NetBIOS
NetBT
Npfs
Ntfs
Null
nv
PAC7302
PAC7311
Parport
PartMgr
ParVdm
PCI
PCIIde
PptpMiniport
PSched
Ptilink
PxHelp20
RasAcd
Rasl2tp
RasPppoe
Raspti
Rdbss
RDPCDD
redbook
RTL8023xp
serenum
Serial
sr
Srv
swenum
sysaudio
Tcpip
TermDD
tffsport
Update
usbaudio
usbccgp
usbehci
usbhub
usbuhci
VgaSave
VolSnap
Wanarp
wdmaud


[b]Drivers - Stopped/b:

Abiosdsk
abp480n5
ACPIEC
adpu160m
aec
Aha154x
aic78u2
aic78xx
AliIde
amsint
asc
asc3350p
asc3550
AsyncMac
Atdisk
Atmarpc
BDFsDrv
BDRsDrv
BthEnum
BthPan
BTHPORT
BTHUSB
cbidf2k
CCDECODE
cd20xrnt
Cdaudio
Changer
CmdIde
Cpqarray
dac960nt
dmboot
dmio
dmload
DMusic
dpti2o
driverhardwarev2
drmkaud
ET5Drv
Fastfat
hidgame
hpn
i2omgmt
i2omp
ini910u
IntelIde
ip6fw
IpFilterDriver
IpInIp
IRENUM
kbdhid
lbrtfdc
LMIRfsClientNP
MarkFun_NT
Modem
mraid35x
MSKSSRV
MSPCLOCK
MSPQM
MSTEE
NABTSFEC
NdisIP
Ndisuio
NwlnkFlt
NwlnkFwd
PCAMPR5
PCANDIS5
PCIDump
Pcmcia
PDCOMP
PDFRAME
PDRELI
PDRFRAME
perc2
perc2hib
Processor
ql1080
Ql10wnt
ql12160
ql1240
ql1280
RDPWD
RFCOMM
Secdrv
Sfloppy
Simbad
SLIP
Sparrow
splitter
streamip
swmidi
symc810
symc8xx
sym_hi
sym_u3
TDPIPE
TDTCP
TosIde
Udfs
ultra
USBSTOR
ViaIde
WDICA
WSTCODEC
WudfPf
WudfRd


[b]Services - Running/b:

ALG
aswUpdSv
AudioSrv
avast!
avast!
avast!
BITS
Browser
BthServ
cisvc
CryptSvc
DcomLaunch
Dhcp
Dnscache
ERSvc
Eventlog
EventSystem
FastUserSwitchingCompatibility
FTRTSVC
gusvc
helpsvc
lanmanserver
lanmanworkstation
LmHosts
Netman
Nla
NVSvc
PlugPlay
PolicyAgent
ProtectedStorage
RasMan
RpcSs
SamSs
Schedule
seclogon
SENS
SharedAccess
ShellHWDetection
SNMP
Spooler
SSDPSRV
STI
stisvc
TapiSrv
TermService
Themes
TrkWks
TuneUp.Defrag
usnjsvc
UxTuneUp
W32Time
WebClient
winmgmt
wscsvc
wuauserv


[b]Services - Stopped/b:

Alerter
AppMgmt
aspnet_state
Automatic
ClipSrv
COMSysApp
dmadmin
dmserver
Fax
HidServ
HTTPFilter
ImapiService
LMIMaint
LogMeIn
LPDSVC
Messenger
mnmsrvc
MSDTC
MSIServer
NetDDE
NetDDEdsdm
Netlogon
NtLmSsp
NtmsSvc
RasAuto
RDSessMgr
RemoteAccess
RpcLocator
RSVP
SCardSvr
SNMPTRAP
srservice
SwPrv
SysmonLog
upnphost
UPS
VSS
WLSetupSvc
WmdmPmSN
WmiApSrv
WudfSvc
WZCSVC
xmlprov


[b]Files Created/Modified - 60 Days/b:


C:\

24 Feb 2008 16:11:02 0 A.... "C:\AUTOEXEC.BAT"
4 Apr 2008 18:06:42 216 A.SHR "C:\boot.ini"
24 Feb 2008 16:11:02 0 A.... "C:\CONFIG.SYS"
24 Feb 2008 16:11:02 0 A.SHR "C:\IO.SYS"
24 Feb 2008 16:11:02 0 A.SHR "C:\MSDOS.SYS"
24 Feb 2008 18:54:50 47 564 A.SHR "C:\NTDETECT.COM"
24 Feb 2008 18:54:50 251 712 A.SHR "C:\ntldr"
11 Apr 2008 19:00:08 2 145 386 496 A.SH. "C:\pagefile.sys"
10 Mar 2008 14:04:50 268 A..H. "C:\sqmdata00.sqm"
10 Mar 2008 19:48:16 268 A..H. "C:\sqmdata01.sqm"
7 Apr 2008 23:58:46 232 A..H. "C:\sqmdata02.sqm"
10 Mar 2008 14:04:50 244 A..H. "C:\sqmnoopt00.sqm"
10 Mar 2008 19:48:16 244 A..H. "C:\sqmnoopt01.sqm"
7 Apr 2008 23:58:46 244 A..H. "C:\sqmnoopt02.sqm"
5 Apr 2008 16:54:58 722 A.... "C:\UFantasy.ini"
9 Apr 2008 13:32:58 85 450 928 A.... "C:\xscan.txt"


C:\WINDOWS\

29 Mar 2008 18:36:34 3 120 A.... "C:\WINDOWS\118294.78"
22 Mar 2008 14:08:34 3 136 A.... "C:\WINDOWS\ACROREAD.INI"
11 Apr 2008 19:00:08 2 048 A.S.. "C:\WINDOWS\bootstat.dat"
9 Apr 2008 12:50:24 86 094 A.... "C:\WINDOWS\BPMNT.dll"
2 Mar 2008 19:13:54 132 096 ..... "C:\WINDOWS\combatfs.exe"
24 Feb 2008 16:11:02 0 A.... "C:\WINDOWS\control.ini"
9 Apr 2008 12:49:46 170 A.... "C:\WINDOWS\GetServer.ini"
2 Apr 2008 23:40:08 71 749 A.... "C:\WINDOWS\hcextoutput.dll"
9 Apr 2008 12:50:24 36 505 621 A.... "C:\WINDOWS\LPT$VPN.207"
10 Apr 2008 12:51:12 116 A.... "C:\WINDOWS\NeroDigital.ini"
31 Mar 2008 20:27:52 379 A.... "C:\WINDOWS\ODBC.INI"
24 Feb 2008 16:10:58 4 207 A.... "C:\WINDOWS\ODBCINST.INI"
24 Feb 2008 22:49:34 286 720 A.... "C:\WINDOWS\PATCH.EXE"
24 Feb 2008 16:12:42 8 192 A.... "C:\WINDOWS\REGLOCS.OLD"
11 Apr 2008 18:59:28 30 446 A.... "C:\WINDOWS\SchedLgU.Txt"
25 Feb 2008 0:05:14 0 A.... "C:\WINDOWS\Sti_Trace.log"
24 Feb 2008 16:04:00 231 ..... "C:\WINDOWS\system.ini"
18 Mar 2008 23:47:50 8 192 A.SH. "C:\WINDOWS\Thumbs.db"
24 Feb 2008 22:49:36 507 904 A.... "C:\WINDOWS\TMUPDATE.DLL"
2 Apr 2008 23:40:08 333 576 A.... "C:\WINDOWS\tsc.exe"
9 Apr 2008 12:51:20 823 A.... "C:\WINDOWS\tsc.ini"
2 Apr 2008 23:40:10 1 948 082 A.... "C:\WINDOWS\tsc.ptn"
24 Feb 2008 22:49:36 69 689 A.... "C:\WINDOWS\UNZIP.DLL"
24 Feb 2008 16:09:28 36 A.... "C:\WINDOWS\vb.ini"
24 Feb 2008 16:09:28 37 A.... "C:\WINDOWS\vbaddin.ini"
9 Apr 2008 12:50:24 36 505 621 A.... "C:\WINDOWS\VPTNFILE.207"
9 Apr 2008 12:50:26 1 163 344 A.... "C:\WINDOWS\vsapi32.dll"
11 Apr 2008 19:00:44 159 A.... "C:\WINDOWS\wiadebug.log"
11 Apr 2008 19:00:40 50 A.... "C:\WINDOWS\wiaservc.log"
10 Apr 2008 18:12:56 738 A.... "C:\WINDOWS\win.ini"
27 Mar 2008 21:10:32 749 A..HR "C:\WINDOWS\WindowsShell.Manifest"
11 Apr 2008 19:16:58 1 432 506 A.... "C:\WINDOWS\WindowsUpdate.log"
12 Mar 2008 22:09:06 316 640 A.... "C:\WINDOWS\WMSysPr9.prx"
24 Feb 2008 18:57:06 299 552 A.... "C:\WINDOWS\WMSysPrx.prx"
12 Mar 2008 22:08:54 8 192 A.... "C:\WINDOWS\$NtUninstallWMFDist11$\reg00019"
24 Feb 2008 16:10:44 2 421 ..... "C:\WINDOWS\$NtServicePackUninstall$\dataspec.xml"
24 Feb 2008 17:51:20 13 698 ..... "C:\WINDOWS\$NtServicePackUninstall$\filelist.xml"
24 Feb 2008 16:13:06 82 076 ..... "C:\WINDOWS\$NtServicePackUninstall$\hpfdj950.bud"
24 Feb 2008 17:41:06 50 568 ..... "C:\WINDOWS\$NtServicePackUninstall$\hpvdj89i.bud"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00001"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00005"
24 Feb 2008 18:54:30 12 288 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00018"
24 Feb 2008 18:54:30 36 864 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00020"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00021"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00070"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00071"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00072"
24 Feb 2008 18:54:30 12 288 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00073"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00139"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00140"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00172"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00173"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00174"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00178"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00179"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00180"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00181"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00182"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00183"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00184"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00185"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00186"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00196"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00197"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00198"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00199"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00200"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00201"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00202"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00212"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00213"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00214"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00215"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00216"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00217"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00218"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00219"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00220"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00221"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00222"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00223"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00224"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00225"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00226"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00227"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00228"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00229"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00230"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00231"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00232"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00233"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00234"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00235"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00236"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00237"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00238"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00239"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00240"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00241"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00242"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00243"
24 Feb 2008 18:54:30 32 768 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00244"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00245"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00246"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00247"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00248"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00249"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00250"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00251"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00252"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00253"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00264"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00265"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00266"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00267"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00268"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00269"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00270"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00271"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00272"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00273"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00274"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00275"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00276"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00277"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00278"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00279"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00280"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00281"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00282"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00283"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00284"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00285"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00286"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00287"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00288"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00289"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00290"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00291"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00292"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00293"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00294"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00299"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00301"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00303"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00305"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00307"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00309"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00311"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00313"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00315"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00316"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00317"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00318"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00319"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00320"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00321"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00322"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00323"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00324"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00325"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00326"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00327"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00328"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00329"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00330"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00331"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00332"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00333"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00334"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00335"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00336"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00337"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00338"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00339"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00340"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00341"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00342"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00343"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00344"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00345"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00346"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00347"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00348"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00349"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00350"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00351"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00352"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00353"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00355"
24 Feb 2008 18:54:30 32 768 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00356"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00357"
24 Feb 2008 18:54:30 12 288 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00358"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00359"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00360"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00361"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00362"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00363"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00364"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00365"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00366"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00367"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00368"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00369"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00370"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00373"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00374"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00375"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00410"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00413"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00414"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00415"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00416"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00417"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00418"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00419"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00421"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00422"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00423"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00424"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00425"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00426"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00427"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00484"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00485"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00486"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00487"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00488"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00489"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00490"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00491"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00492"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00493"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00494"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00495"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00496"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00497"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00498"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00576"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00577"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00578"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00606"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00607"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00608"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00610"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00626"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00627"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00628"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00629"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00630"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00631"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00632"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00633"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00634"
24 Feb 2008 18:54:30 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00635"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00636"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00637"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00638"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00639"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00660"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00661"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00698"
24 Feb 2008 18:54:32 12 288 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00726"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00727"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00728"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00729"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00730"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00731"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00732"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00733"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00734"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00735"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00736"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00737"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00738"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00739"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00740"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00741"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00742"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00743"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00744"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00745"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00746"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00747"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00748"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00749"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00750"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00751"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00752"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00753"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00754"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00755"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00756"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00757"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00758"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00759"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00760"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00761"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00762"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00763"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00764"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00765"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00766"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00767"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00768"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00769"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00770"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00771"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00772"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00773"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00774"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00775"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00776"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00777"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00778"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00779"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00780"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00781"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00782"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00783"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00784"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00785"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00786"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00787"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00788"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00789"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00790"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00791"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00792"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00793"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00794"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00795"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00796"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00797"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00798"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00799"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00800"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00801"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00802"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00803"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00804"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00805"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00806"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00807"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00808"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00809"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00810"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00811"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00812"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00813"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00814"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00815"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00816"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00817"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00818"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00819"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00820"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00821"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00822"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00823"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00824"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00825"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00826"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00827"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00828"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00829"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00830"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00831"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00832"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00833"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00834"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00835"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00836"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00837"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00838"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00839"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00840"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00841"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00842"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00843"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00844"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00845"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00846"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00847"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00850"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00851"
24 Feb 2008 18:54:32 16 384 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00852"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00853"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00854"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00855"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00856"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00857"
24 Feb 2008 18:54:32 98 304 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00858"
24 Feb 2008 18:54:32 151 552 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00859"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00860"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00864"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00865"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00866"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00867"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00868"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00869"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00870"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00871"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00872"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00873"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00874"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00875"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00876"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00877"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00878"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00879"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00880"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00881"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00882"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00883"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00884"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00885"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00886"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00887"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00888"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00889"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00890"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00891"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00892"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00893"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00894"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00895"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00896"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00897"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00898"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00899"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00900"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00901"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00902"
24 Feb 2008 18:54:32 28 672 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00903"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00904"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00905"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00906"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00907"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00920"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00921"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00923"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00924"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00925"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00926"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00927"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00928"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00929"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00930"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00931"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00932"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00933"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00934"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00935"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg00936"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01396"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01397"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01399"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01402"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01403"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01414"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01427"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01428"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01429"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01430"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01431"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01432"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01433"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01434"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01437"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01438"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01439"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01440"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01441"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01442"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01443"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01444"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01445"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01446"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01447"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01448"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01449"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01450"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01451"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01452"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01453"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01454"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01455"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01456"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01457"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01458"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01459"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01460"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01461"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01462"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01463"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01464"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01465"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01466"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01467"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01468"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01469"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01470"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01471"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01472"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01473"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01474"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01475"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01476"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01477"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01478"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01479"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01480"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01483"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01484"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01485"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOWS\$NtServicePackUninstall$\reg01486"
24 Feb 2008 18:54:32 8 192 A.... "C:\WINDOW
0
maverick1632 Messages postés 54 Date d'inscription vendredi 22 février 2008 Statut Membre Dernière intervention 29 novembre 2008 3
11 avril 2008 à 23:50
DESOLER MA SOURIS EST 1 PEUS SENSIBLE JE TE L AI ENVOYER 2 FOIS HIHIHI C EST TOUS MOI PAT
0