Se connecter / S'enregistrer
Votre question

Erreur démarrage XP avec CSRSS.EXE [résolu]

Tags :
  • Demarrage
  • Sécurité
Dernière réponse : dans Sécurité et virus
22 Mai 2008 21:23:42

Bonjour

depuis quelques jours à chaque démarrage de mon poste j'ai un message d'erreur sur le programme CSRSS.EXE et un second avec RUNDLL avec un nom de DLL qui change à chaque fois. J'imagine que je dois avoir un virus malgré avast sur mon poste. :pt1cable: 

De plus en essayant de revenir à un point de restauration je me suis apercu que seuls les points de restauration du mois en cours étaient accessibles..... :non: 

Merci de m'aider ....... :hello: 

Autres pages sur : erreur demarrage csrss exe resolu

22 Mai 2008 23:10:38

Voila, merci pour l'aide ....

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:11:06, on 22/05/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16640)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Hauri\ViRobot Desktop 5.5\AccessControl\HFACSvc.exe
C:\Program Files\Hauri\ViRobot Desktop 5.5\hpcsvc.exe
C:\Program Files\Hauri\Common\hsvcmod.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\tcpsvcs.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Hauri\ViRobot Desktop 5.5\PCFirewall\vrfwsvc.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\WINDOWS\Explorer.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Hauri\ViRobot Desktop 5.5\PCFirewall\vrfwsock.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\RunDll32.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Nero\Nero 7\InCD\InCD.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Sunbelt Software\CounterSpy\SBCSTray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Hauri\Common\Base\vrmonsvc.exe
C:\Program Files\Hauri\Common\Base\vrrepair.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.club-internet.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.numericable.fr
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer avec Club-Internet
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Config\csrss.exe
O4 - HKLM\..\Run: [SchedulingAgent] mstinit.exe /firstlogon
O4 - HKLM\..\Run: [RestoreIT!] "C:\Program Files\Phoenix Technologies Ltd\RecoverPro_XP_1\VBPTASK.EXE" VBStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe
O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Fichiers communs\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [fenaffiche] C:\Program Files\FenAffiche\Fenpowernet.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [InCD] C:\Program Files\Nero\Nero 7\InCD\InCD.exe
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [SBCSTray] C:\Program Files\Sunbelt Software\CounterSpy\SBCSTray.exe
O4 - HKLM\..\Run: [Vrmon] C:\Program Files\Hauri\Common\Base\VRMONNT.EXE
O4 - HKLM\..\Run: [HEProtect] C:\Program Files\Hauri\ViRobot Desktop 5.5\AntiSpam\HSockPE.exe
O4 - HKLM\..\Run: [BMf3702618] Rundll32.exe "C:\WINDOWS\system32\cwbmifcv.dll",s
O4 - HKLM\..\Run: [f0431584] rundll32.exe "C:\WINDOWS\system32\vpumhfvj.dll",b
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-20\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O8 - Extra context menu item: Ajouter au fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Trashcan - {072F3B8A-2DA2-40e2-B841-88899F240200} - C:\PROGRA~1\Agnitum\OUTPOS~1\TRASH.EXE (file missing) (HKCU)
O9 - Extra 'Tools' menuitem: Show Trashcan - {072F3B8A-2DA2-40e2-B841-88899F240200} - C:\PROGRA~1\Agnitum\OUTPOS~1\TRASH.EXE (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=http://www.unika.com
O16 - DPF: teleir_cert - https://static.ir.dgi.minefi.gouv.fr/secure/connexion/a...
O16 - DPF: {106E49CF-797A-11D2-81A2-00E02C015623} (AlternaTIFF ActiveX) - http://www.alternatiff.com/install/00/alttiff.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {54B52E52-8000-4413-BD67-FC7FE24B59F2} (EARTPatchX Class) - http://files.ea.com/downloads/rtpatch/v2/EARTPX.cab
O16 - DPF: {5EDB10D9-7E95-4833-A218-62F375DAFCF1} (Aventail Installer ) - https://parici.sopragroup.com/postauthI/epi.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Cont...
O16 - DPF: {86EEF11E-FF16-48CE-B1A2-474B663041A9} - http://kit.carpediem.fr/12449/CD/EntreNanas.exe
O16 - DPF: {A18962F6-E6ED-40B1-97C9-1FB36F38BFA8} (Aurigma Image Uploader 3.5 Control) - http://www.photoways.com/clients/ImageUploader3.cab
O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSig...
O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - http://www.photoways.com/clients/uploader_v2.2.0.6.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/fl...
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/mcfscan/2,1,0...
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: ViRobot for WinNT(tm) Folder Protect (HFACSVC) - hauri - C:\Program Files\Hauri\ViRobot Desktop 5.5\AccessControl\HFACSvc.exe
O23 - Service: ViRobot Communication Service (hpcsvc) - HAURI - C:\Program Files\Hauri\ViRobot Desktop 5.5\hpcsvc.exe
O23 - Service: Hauri Common Service (hsvcmod) - HAURI Inc. - C:\Program Files\Hauri\Common\hsvcmod.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Sunbelt CounterSpy Antispyware (SBCSSvc) - Sunbelt Software - C:\Program Files\Sunbelt Software\CounterSpy\SBCSSvc.exe
O23 - Service: Hauri Firewall (vrfwsvc) - Hauri inc. - C:\Program Files\Hauri\ViRobot Desktop 5.5\PCFirewall\vrfwsvc.exe
O23 - Service: ViRobot Desktop Monitoring (vrmonsvc) - HAURI - C:\Program Files\Hauri\Common\Base\vrmonsvc.exe
O23 - Service: ViRobot Repairing Service (vrrepair) - HAURI - C:\Program Files\Hauri\Common\Base\vrrepair.exe

--
End of file - 12755 bytes
Contenus similaires
22 Mai 2008 23:19:55

re

fais le ménage dans tes antivirus:
Conséquences de la multi-protection

Télécharge MalwareByte's Anti-Malware sur ton Bureau.
Installe-le en double-cliquant sur le fichier Download_mbam-setup.exe.

Une fois l'installation et la mise à jour effectuées, redémarre en mode sans échec.
AIDE : Redémarrer en mode sans échec

  • Exécute maintenant MalwareByte's Anti-Malware. Si cela n'est pas déjà fait, sélectionne "Exécuter un examen complet".
  • Afin de lancer la recherche, clic sur"Rechercher".
  • Une fois le scan terminé, une fenêtre s'ouvre, clic sur OK. Deux possibilités s'offrent à toi :
    -- si le programme n'a rien trouvé, appuie sur OK. Un rapport va apparaître, ferme-le.
    -- si des infections sont présentes, clic sur "Afficher les résultats" puis sur "Supprimer la sélection". Enregistre le rapport sur ton Bureau afin de le poster dans ta prochaine réponse.
    [#ff0000]REMARQUE : Si MalwareByte's Anti-Malware a besoin de redémarrer pour terminer la suppression, accepte en cliquant sur Ok.[/#f]

    AIDE : Tuto en images sur MBAM
    25 Mai 2008 20:10:11

    Bonsoir

    ci joint le rapport, après démarrage j'ai troujours antivir qui détecte des torjan

    Merci

    Malwarebytes' Anti-Malware 1.12
    Version de la base de données: 779

    Type de recherche: Examen complet (C:\|D:\|)
    Eléments examinés: 173560
    Temps écoulé: 44 minute(s), 38 second(s)

    Processus mémoire infecté(s): 0
    Module(s) mémoire infecté(s): 2
    Clé(s) du Registre infectée(s): 6
    Valeur(s) du Registre infectée(s): 3
    Elément(s) de données du Registre infecté(s): 0
    Dossier(s) infecté(s): 0
    Fichier(s) infecté(s): 9

    Processus mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Module(s) mémoire infecté(s):
    C:\WINDOWS\system32\opnooOhH.dll (Trojan.Vundo) -> No action taken.
    C:\WINDOWS\system32\urqNGvuT.dll (Trojan.Vundo) -> No action taken.

    Clé(s) du Registre infectée(s):
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3466cc11-8f46-4c15-a5bb-542e9d337497} (Trojan.Vundo) -> No action taken.
    HKEY_CLASSES_ROOT\CLSID\{3466cc11-8f46-4c15-a5bb-542e9d337497} (Trojan.Vundo) -> No action taken.
    HKEY_CLASSES_ROOT\CLSID\{14370f76-7676-44a2-ad11-93a31c5fc9fc} (Trojan.Vundo) -> No action taken.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{14370f76-7676-44a2-ad11-93a31c5fc9fc} (Trojan.Vundo) -> No action taken.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\urqngvut (Trojan.Vundo) -> No action taken.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> No action taken.

    Valeur(s) du Registre infectée(s):
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\f0431584 (Trojan.Vundo) -> No action taken.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\BMf3702618 (Trojan.Agent) -> No action taken.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{14370f76-7676-44a2-ad11-93a31c5fc9fc} (Trojan.Vundo) -> No action taken.

    Elément(s) de données du Registre infecté(s):
    (Aucun élément nuisible détecté)

    Dossier(s) infecté(s):
    (Aucun élément nuisible détecté)

    Fichier(s) infecté(s):
    C:\WINDOWS\system32\kosjkfnh.dll (Trojan.Vundo) -> No action taken.
    C:\WINDOWS\system32\hnfkjsok.ini (Trojan.Vundo) -> No action taken.
    C:\WINDOWS\system32\opnooOhH.dll (Trojan.Vundo) -> No action taken.
    C:\WINDOWS\system32\HhOoonpo.ini (Trojan.Vundo) -> No action taken.
    C:\WINDOWS\system32\HhOoonpo.ini2 (Trojan.Vundo) -> No action taken.
    C:\System Volume Information\_restore{2D3E19B1-64DC-41E8-8796-F87FCCC6007E}\RP791\A0207683.dll (Trojan.Vundo) -> No action taken.
    C:\System Volume Information\_restore{2D3E19B1-64DC-41E8-8796-F87FCCC6007E}\RP791\A0207698.dll (Trojan.Vundo) -> No action taken.
    C:\WINDOWS\system32\trptjuen.dll (Trojan.Agent) -> No action taken.
    C:\WINDOWS\system32\urqNGvuT.dll (Trojan.Vundo) -> No action taken.
    25 Mai 2008 20:11:18

    et aussi TR/Agent.57344
    25 Mai 2008 20:13:57

    Le trojan détecté est TR/Crypt.XPACK.Gen
    25 Mai 2008 21:05:19

    Ci joint un rapport au cas ou ....

    MERCI !!

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 21:05:06, on 25/05/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16640)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
    C:\WINDOWS\Explorer.exe
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\WINDOWS\System32\tcpsvcs.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\AGRSMMSG.exe
    C:\WINDOWS\system32\RunDll32.exe
    C:\WINDOWS\system32\dla\tfswctrl.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\WINDOWS\system32\LVCOMSX.EXE
    C:\Program Files\Logitech\Video\LogiTray.exe
    C:\Program Files\Nero\Nero 7\InCD\InCD.exe
    C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe
    C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
    C:\WINDOWS\system32\RUNDLL32.EXE
    C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe
    C:\Program Files\Canon\CAL\CALMAIN.exe
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
    C:\WINDOWS\system32\Rundll32.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\Program Files\Logitech\Video\FxSvr2.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\WINDOWS\system32\msiexec.exe
    C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe
    C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe
    C:\Program Files\Fichiers communs\InstallShield\Driver\8\Intel 32\IDriver.exe
    C:\WINDOWS\system32\MsiExec.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.club-internet.fr
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.numericable.fr
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer avec Club-Internet
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    F2 - REG:system.ini: Shell=Explorer.exe
    O4 - HKLM\..\Run: [SchedulingAgent] mstinit.exe /firstlogon
    O4 - HKLM\..\Run: [RestoreIT!] "C:\Program Files\Phoenix Technologies Ltd\RecoverPro_XP_1\VBPTASK.EXE" VBStart
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe
    O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Fichiers communs\Sonic\Update Manager\sgtray.exe" /r
    O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
    O4 - HKLM\..\Run: [fenaffiche] C:\Program Files\FenAffiche\Fenpowernet.exe
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
    O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [InCD] C:\Program Files\Nero\Nero 7\InCD\InCD.exe
    O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
    O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe"
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
    O4 - HKLM\..\Run: [f0431584] rundll32.exe "C:\WINDOWS\system32\wylciign.dll",b
    O4 - HKLM\..\Run: [BMf3702618] Rundll32.exe "C:\WINDOWS\system32\uffaaxor.dll",s
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-19\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-20\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O8 - Extra context menu item: Ajouter au fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
    O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra button: Trashcan - {072F3B8A-2DA2-40e2-B841-88899F240200} - C:\PROGRA~1\Agnitum\OUTPOS~1\TRASH.EXE (file missing) (HKCU)
    O9 - Extra 'Tools' menuitem: Show Trashcan - {072F3B8A-2DA2-40e2-B841-88899F240200} - C:\PROGRA~1\Agnitum\OUTPOS~1\TRASH.EXE (file missing) (HKCU)
    O14 - IERESET.INF: START_PAGE_URL=http://www.unika.com
    O16 - DPF: teleir_cert - https://static.ir.dgi.minefi.gouv.fr/secure/connexion/a...
    O16 - DPF: {106E49CF-797A-11D2-81A2-00E02C015623} (AlternaTIFF ActiveX) - http://www.alternatiff.com/install/00/alttiff.cab
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: {54B52E52-8000-4413-BD67-FC7FE24B59F2} (EARTPatchX Class) - http://files.ea.com/downloads/rtpatch/v2/EARTPX.cab
    O16 - DPF: {5EDB10D9-7E95-4833-A218-62F375DAFCF1} (Aventail Installer ) - https://parici.sopragroup.com/postauthI/epi.cab
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Cont...
    O16 - DPF: {86EEF11E-FF16-48CE-B1A2-474B663041A9} - http://kit.carpediem.fr/12449/CD/EntreNanas.exe
    O16 - DPF: {A18962F6-E6ED-40B1-97C9-1FB36F38BFA8} (Aurigma Image Uploader 3.5 Control) - http://www.photoways.com/clients/ImageUploader3.cab
    O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSig...
    O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - http://www.photoways.com/clients/uploader_v2.2.0.6.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/fl...
    O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/mcfscan/2,1,0...
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
    O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
    O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
    O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

    --
    End of file - 11500 bytes
    25 Mai 2008 22:41:18

    re


    Tu as mal lu la procédure:
    dans ton rapport:
    Citation :
    C:\WINDOWS\system32\urqNGvuT.dll (Trojan.Vundo) -> No action taken.


    Quand l'outil a trouvé quelque-chose, à la fin, il faut cliquer sur "Supprimer la sélection".

    Recommence stp
    26 Mai 2008 11:39:20

    Bonjour

    j'ai bien fait "supprimer la sélection". :cry: 

    L'outil m'a même indiqué que certaines DLL ne pouvaient être supprimées qu'après le reboot. Ce que j'ai fait.

    Mais à priori le problème revient.

    Je vais ré essayer ce soir

    Merci pour tout

    Cordialement
    26 Mai 2008 20:51:52

    bonsoir

    je sais que le problème va revenir.
    je t'explique, le virus vundo crée des tas de fichiers sur ton pc, j'utilise MBAM pour en virer le plus possible et m'éviter un script à rédiger trop long (que je ferai avec un autre outil). Si je ne fais pas ça, parfois ça me prend une heure pour rédiger une réponse sur un seul sujet... tu imagines si je faisais ça à chaque fois. ;O)

    26 Mai 2008 21:47:08

    Bonsoir

    OK merci pour les précisions.

    J'ai refait une passe avec l'outil MBAM ci joint le résultat après avoir fait la suppression et rebooter comme demandé :

    Malwarebytes' Anti-Malware 1.12
    Version de la base de données: 786

    Type de recherche: Examen complet (C:\|D:\|)
    Eléments examinés: 166501
    Temps écoulé: 43 minute(s), 58 second(s)

    Processus mémoire infecté(s): 0
    Module(s) mémoire infecté(s): 2
    Clé(s) du Registre infectée(s): 9
    Valeur(s) du Registre infectée(s): 2
    Elément(s) de données du Registre infecté(s): 0
    Dossier(s) infecté(s): 0
    Fichier(s) infecté(s): 4

    Processus mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Module(s) mémoire infecté(s):
    C:\WINDOWS\system32\geBtsPHY.dll (Trojan.Vundo) -> No action taken.
    C:\WINDOWS\system32\urqNGvuT.dll (Trojan.Vundo) -> No action taken.

    Clé(s) du Registre infectée(s):
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\aoprndtws (Malware.Trace) -> No action taken.
    HKEY_CURRENT_USER\Software\Microsoft\affri (Malware.Trace) -> No action taken.
    HKEY_CURRENT_USER\Software\Microsoft\rdfa (Trojan.Vundo) -> No action taken.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\affri (Malware.Trace) -> No action taken.
    HKEY_CLASSES_ROOT\CLSID\{14370f76-7676-44a2-ad11-93a31c5fc9fc} (Trojan.Vundo) -> No action taken.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{14370f76-7676-44a2-ad11-93a31c5fc9fc} (Trojan.Vundo) -> No action taken.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\urqngvut (Trojan.Vundo) -> No action taken.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> No action taken.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> No action taken.

    Valeur(s) du Registre infectée(s):
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\BMf3702618 (Trojan.Agent) -> No action taken.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{14370f76-7676-44a2-ad11-93a31c5fc9fc} (Trojan.Vundo) -> No action taken.

    Elément(s) de données du Registre infecté(s):
    (Aucun élément nuisible détecté)

    Dossier(s) infecté(s):
    (Aucun élément nuisible détecté)

    Fichier(s) infecté(s):
    C:\WINDOWS\cookies.ini (Malware.Trace) -> No action taken.
    C:\WINDOWS\system32\pdsjivsg.dll (Trojan.Agent) -> No action taken.
    C:\WINDOWS\system32\geBtsPHY.dll (Trojan.Vundo) -> No action taken.
    C:\WINDOWS\system32\urqNGvuT.dll (Trojan.Vundo) -> No action taken.

    J'ai refait un coup de Hijackthis :

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 21:42:04, on 26/05/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16640)
    Boot mode: Safe mode with network support

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.club-internet.fr
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.numericable.fr
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer avec Club-Internet
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    F2 - REG:system.ini: Shell=Explorer.exe
    O4 - HKLM\..\Run: [SchedulingAgent] mstinit.exe /firstlogon
    O4 - HKLM\..\Run: [RestoreIT!] "C:\Program Files\Phoenix Technologies Ltd\RecoverPro_XP_1\VBPTASK.EXE" VBStart
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe
    O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Fichiers communs\Sonic\Update Manager\sgtray.exe" /r
    O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
    O4 - HKLM\..\Run: [fenaffiche] C:\Program Files\FenAffiche\Fenpowernet.exe
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
    O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [InCD] C:\Program Files\Nero\Nero 7\InCD\InCD.exe
    O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
    O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe"
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
    O4 - HKLM\..\Run: [Malwarebytes Anti-Malware Reboot] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-19\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-20\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O8 - Extra context menu item: Ajouter au fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
    O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra button: Trashcan - {072F3B8A-2DA2-40e2-B841-88899F240200} - C:\PROGRA~1\Agnitum\OUTPOS~1\TRASH.EXE (file missing) (HKCU)
    O9 - Extra 'Tools' menuitem: Show Trashcan - {072F3B8A-2DA2-40e2-B841-88899F240200} - C:\PROGRA~1\Agnitum\OUTPOS~1\TRASH.EXE (file missing) (HKCU)
    O14 - IERESET.INF: START_PAGE_URL=http://www.unika.com
    O16 - DPF: teleir_cert - https://static.ir.dgi.minefi.gouv.fr/secure/connexion/a...
    O16 - DPF: {106E49CF-797A-11D2-81A2-00E02C015623} (AlternaTIFF ActiveX) - http://www.alternatiff.com/install/00/alttiff.cab
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: {54B52E52-8000-4413-BD67-FC7FE24B59F2} (EARTPatchX Class) - http://files.ea.com/downloads/rtpatch/v2/EARTPX.cab
    O16 - DPF: {5EDB10D9-7E95-4833-A218-62F375DAFCF1} (Aventail Installer ) - https://parici.sopragroup.com/postauthI/epi.cab
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Cont...
    O16 - DPF: {86EEF11E-FF16-48CE-B1A2-474B663041A9} - http://kit.carpediem.fr/12449/CD/EntreNanas.exe
    O16 - DPF: {A18962F6-E6ED-40B1-97C9-1FB36F38BFA8} (Aurigma Image Uploader 3.5 Control) - http://www.photoways.com/clients/ImageUploader3.cab
    O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSig...
    O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - http://www.photoways.com/clients/uploader_v2.2.0.6.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/fl...
    O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/mcfscan/2,1,0...
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
    O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
    O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
    O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

    --
    End of file - 10012 bytes


    Merci
    26 Mai 2008 23:18:09

    re

    encore
    Citation :
    C:\WINDOWS\system32\geBtsPHY.dll (Trojan.Vundo) -> No action taken.
    C:\WINDOWS\system32\urqNGvuT.dll (Trojan.Vundo) -> No action taken.


    mais tu dois générer le rapport avant de supprimer...

    on continue

    Désactive ton antivirus et tout autre type de protection.
    Télécharge ComboFix de sUBs :
    ComboFix.exe
    et sauvegarde le sur ton bureau et pas ailleurs!

    Double-clic sur ComboFix, Il va te poser une question, suis les invites puis attends que combofix ait terminé, il est possible que ton PC reboot, c’est normal, un rapport sera créé.Poste le rapport:C:\Combofix.txt
    clique dessus pour l'ouvrir, puis édition "sélectionner tout", édition "copier"

    viens sur le forum et édition "coller"

    ajoute un nouveau rapport Hijackthis.
    28 Mai 2008 19:59:46

    Bonsoir

    désolé, j'ai eu un platage du poste lors du premier passage de combofix. Je l'ai donc relancé, ci joint la log comme demandé et celle de Hijackthis.

    Encore un grand merci pour ton aide .....

    LOG Combofix :

    ComboFix 08-05-27.4 - Admin 2008-05-28 19:48:17.2 - NTFSx86 NETWORK
    Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.793 [GMT 2:00]
    Endroit: D:\Documents and Settings\Admin\Bureau\ComboFix.exe

    AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !!
    .

    (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
    .

    C:\WINDOWS\system32\cvdcldwm.dll
    C:\WINDOWS\system32\uffaaxor.dll
    C:\WINDOWS\t\
    D:\Documents and Settings\Christophe\Application Data\inst.exe
    .
    ---- Previous Run -------
    .
    C:\WINDOWS\BMf3702618.xml
    C:\WINDOWS\pskt.ini
    C:\WINDOWS\system32\dptacrdr.exe
    C:\WINDOWS\system32\edlbvngd.ini
    C:\WINDOWS\system32\geBtsPHY.dll
    C:\WINDOWS\system32\gppefeda.ini
    C:\WINDOWS\system32\IQXIOnnn.ini
    C:\WINDOWS\system32\IQXIOnnn.ini2
    C:\WINDOWS\system32\mcrh.tmp
    C:\WINDOWS\system32\mjhtilmt.exe
    C:\WINDOWS\system32\mmqgarax.ini
    C:\WINDOWS\system32\naxekimg.exe
    C:\WINDOWS\system32\peceteqv.dll
    C:\WINDOWS\system32\rbrmmabn.dll
    C:\WINDOWS\system32\sayyftvy.ini
    C:\WINDOWS\system32\sgrvbqus.ini
    C:\WINDOWS\system32\tejwcatw.exe
    C:\WINDOWS\system32\ulimdejy.exe
    C:\WINDOWS\system32\urqNGvuT.dll
    C:\WINDOWS\system32\viwuamwl.ini
    C:\WINDOWS\system32\wxwmtpmw.ini
    C:\WINDOWS\system32\YHPstBeg.ini
    C:\WINDOWS\system32\YHPstBeg.ini2
    C:\WINDOWS\t\

    .
    ((((((((((((((((((((((((((((( Fichiers créés 2008-04-28 to 2008-05-28 ))))))))))))))))))))))))))))))))))))
    .

    2008-05-26 23:07 . 2008-05-26 23:07 <REP> d-------- D:\Documents and Settings\Admin\Application Data\Malwarebytes
    2008-05-26 23:01 . 2008-05-26 23:01 1,374 --a------ C:\WINDOWS\imsins.BAK
    2008-05-26 22:57 . 2008-05-26 22:57 354,560 --a------ C:\WINDOWS\system32\TuneUpDefragService.exe
    2008-05-26 22:56 . 2008-05-26 22:56 <REP> d-------- D:\Documents and Settings\Admin\Application Data\TuneUp Software
    2008-05-26 22:55 . 2008-05-26 22:57 <REP> d-------- C:\Program Files\TuneUp Utilities 2008
    2008-05-26 22:53 . 2004-09-07 15:53 <REP> d--h----- D:\Documents and Settings\Admin\Voisinage réseau
    2008-05-26 22:53 . 2004-09-06 15:57 <REP> d--h----- D:\Documents and Settings\Admin\Voisinage d'impression
    2008-05-26 22:53 . 2004-09-06 15:01 <REP> d--h----- D:\Documents and Settings\Admin\Modèles
    2008-05-26 22:53 . 2008-05-26 22:54 <REP> dr------- D:\Documents and Settings\Admin\Mes documents
    2008-05-26 22:53 . 2004-04-08 15:05 <REP> d-------- D:\Documents and Settings\Admin\Menu Démarrer
    2008-05-26 22:53 . 2008-05-26 22:54 <REP> dr------- D:\Documents and Settings\Admin\Favoris
    2008-05-26 22:53 . 2008-05-28 19:47 <REP> d-------- D:\Documents and Settings\Admin\Bureau
    2008-05-26 22:53 . 2004-09-06 16:47 <REP> d-------- D:\Documents and Settings\Admin\Application Data\Sonic
    2008-05-26 22:53 . 2004-09-06 16:40 <REP> d-------- D:\Documents and Settings\Admin\Application Data\InterTrust
    2008-05-26 22:53 . 2008-05-26 23:04 <REP> d-------- D:\Documents and Settings\Admin
    2008-05-26 22:35 . 2008-05-26 22:35 <REP> d-------- C:\VundoFix Backups
    2008-05-26 22:30 . 2008-05-26 22:30 <REP> d-------- C:\Program Files\Fichiers communs\Wise Installation Wizard
    2008-05-26 17:46 . 2008-05-26 17:46 <REP> d-------- D:\Documents and Settings\Fred\Application Data\Malwarebytes
    2008-05-23 13:59 . 2008-05-23 13:59 <REP> d-------- D:\Documents and Settings\Fred\Application Data\Sunbelt Software
    2008-05-23 08:04 . 2008-05-23 08:04 <REP> d-------- D:\Documents and Settings\Christophe\Application Data\Malwarebytes
    2008-05-23 08:04 . 2008-05-23 08:04 <REP> d-------- D:\Documents and Settings\All Users\Application Data\Malwarebytes
    2008-05-23 08:04 . 2008-05-23 08:04 <REP> d-------- C:\Program Files\Malwarebytes' Anti-Malware
    2008-05-23 08:04 . 2008-05-05 20:46 27,048 --a------ C:\WINDOWS\system32\drivers\mbamcatchme.sys
    2008-05-23 08:04 . 2008-05-05 20:46 15,864 --a------ C:\WINDOWS\system32\drivers\mbam.sys
    2008-05-22 23:26 . 2008-05-22 23:26 0 --a------ C:\WINDOWS\hUnsetup.INI
    2008-05-22 23:10 . 2008-05-22 23:10 <REP> d-------- C:\Program Files\Trend Micro
    2008-05-22 23:03 . 2008-05-22 23:07 <REP> d-------- D:\Documents and Settings\Christophe\Application Data\HAURI
    2008-05-22 22:26 . 2007-11-07 16:00 81,782 --a------ C:\WINDOWS\system32\drivers\VRFWNTD5.SYS
    2008-05-22 22:26 . 2008-05-02 17:37 79,806 --a------ C:\WINDOWS\system32\drivers\vradfil.sys
    2008-05-22 22:26 . 2007-08-24 14:00 27,260 --------- C:\WINDOWS\system32\drivers\vracfil.sys
    2008-05-22 22:26 . 2007-08-31 11:00 15,644 --------- C:\WINDOWS\system32\drivers\VRsecos.sys
    2008-05-22 22:15 . 2008-05-22 22:15 0 --a------ C:\WINDOWS\system32\SBRC.dat
    2008-05-22 22:15 . 2008-05-22 22:15 0 --a------ C:\WINDOWS\system32\SBFC.dat
    2008-05-22 22:14 . 2008-05-22 22:14 <REP> d-------- D:\Documents and Settings\Christophe\Application Data\Sunbelt Software
    2008-05-22 22:12 . 2008-05-22 22:12 <REP> d-------- C:\Program Files\Sunbelt Software
    2008-05-22 21:39 . 2008-05-22 21:39 <REP> d-------- D:\Documents and Settings\All Users\Application Data\Avira
    2008-05-22 21:39 . 2008-05-22 21:39 <REP> d-------- C:\Program Files\Avira
    2008-05-14 13:38 . 2008-05-22 22:23 <REP> d-------- D:\Documents and Settings\All Users\Application Data\Lavasoft
    2008-04-30 08:01 . 2008-05-23 19:39 664 --a------ C:\WINDOWS\system32\d3d9caps.dat
    2008-04-28 22:30 . 2008-04-28 22:30 <REP> d-a------ D:\Documents and Settings\All Users\Application Data\TEMP
    2008-04-28 22:30 . 2008-04-28 22:30 124,688 --a------ C:\WINDOWS\system32\MSWINSCK.OCX
    2008-04-28 17:17 . 2008-04-28 17:17 244 --ah----- C:\sqmnoopt04.sqm
    2008-04-28 17:17 . 2008-04-28 17:17 232 --ah----- C:\sqmdata04.sqm

    .
    (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2008-05-26 20:56 --------- d-----w D:\Documents and Settings\All Users\Application Data\TuneUp Software
    2008-05-25 19:50 --------- d-----w D:\Documents and Settings\Fred\Application Data\Ooze Wait Send
    2008-05-25 19:50 --------- d-----w D:\Documents and Settings\Fred\Application Data\Grid Gpl
    2008-05-25 19:48 --------- d-----w D:\Documents and Settings\Christophe\Application Data\Grid Gpl
    2008-05-25 19:47 --------- d-----w D:\Documents and Settings\All Users\Application Data\DumbSoapDeafGlue
    2008-05-25 19:07 --------- d--h--w C:\Program Files\InstallShield Installation Information
    2008-05-25 18:58 --------- d-----w D:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
    2008-05-25 18:58 --------- d-----w C:\Program Files\Spybot
    2008-05-25 18:43 --------- d-----w C:\Program Files\Call of Duty
    2008-05-25 18:20 --------- d-----w C:\Program Files\PANZERS - Phase1
    2008-05-22 21:06 --------- d-----w C:\Program Files\Jasc Software Inc
    2008-05-22 20:26 --------- d-----w C:\Program Files\Fichiers communs\InstallShield
    2008-05-22 18:31 --------- d-----w C:\Program Files\GrabIt
    2008-05-22 18:29 --------- d-----w C:\Program Files\Club-Internet
    2008-05-22 18:28 --------- d-----w C:\Program Files\Neodivx
    2008-05-22 18:28 --------- d-----w C:\Program Files\Fichiers communs\Adobe
    2008-05-22 18:28 --------- d-----w C:\Program Files\eMule
    2008-05-22 18:24 47,360 ----a-w D:\Documents and Settings\Christophe\Application Data\pcouffin.sys
    2008-05-22 18:24 --------- d-----w D:\Documents and Settings\Christophe\Application Data\Vso
    2008-05-22 18:24 --------- d-----w C:\Program Files\Capturino 1.4
    2008-05-20 20:02 --------- d-----w D:\Documents and Settings\Christophe\Application Data\Azureus
    2008-05-13 18:26 --------- d-----w C:\Program Files\Azureus
    2008-04-17 20:24 --------- d-----w D:\Documents and Settings\Fred\Application Data\Skype
    2008-04-17 15:39 --------- d-----w D:\Documents and Settings\Fred\Application Data\skypePM
    2008-04-17 10:12 --------- d-----w D:\Documents and Settings\Christophe\Application Data\ZoomBrowser EX
    2008-04-17 10:11 --------- d-----w D:\Documents and Settings\All Users\Application Data\ZoomBrowser
    2008-04-16 20:08 --------- d-----w C:\Program Files\Lavalys
    2008-04-04 12:51 28,416 ----a-w C:\WINDOWS\system32\uxtuneup.dll
    2008-03-28 12:43 --------- d-----w D:\Documents and Settings\Fred\Application Data\ZoomBrowser EX
    2008-03-25 04:51 621,344 ----a-w C:\WINDOWS\system32\mswstr10.dll
    2008-03-25 04:51 194,144 ----a-w C:\WINDOWS\system32\msjint40.dll
    2008-03-20 08:09 1,845,376 ----a-w C:\WINDOWS\system32\win32k.sys
    2008-03-01 12:58 826,368 ----a-w C:\WINDOWS\system32\wininet.dll
    2007-11-22 20:43 32 ----a-w D:\Documents and Settings\All Users\Application Data\ezsid.dat
    2005-12-26 11:19 774,144 ----a-w C:\Program Files\RngInterstitial.dll
    2005-01-06 18:57 56 --sh--r C:\WINDOWS\system32\2944FC89D0.sys
    2006-05-23 13:14 3,350 --sha-w C:\WINDOWS\system32\KGyGaAvL.sys
    .

    ((((((((((((((((((((((((((((( snapshot@2008-05-26_22.50.03.25 )))))))))))))))))))))))))))))))))))))))))
    .
    + 2005-01-27 17:12:51 1,017,344 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\browseui.dll
    + 2005-01-27 17:12:51 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\cdfview.dll
    + 2005-01-27 17:12:51 249,856 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\iepeers.dll
    + 2005-01-27 17:12:51 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\inseng.dll
    + 2005-01-27 08:12:54 3,008,000 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\mshtml.dll
    + 2005-01-27 17:12:53 1,484,800 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\shdocvw.dll
    + 2005-01-27 17:12:53 474,112 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\shlwapi.dll
    + 2005-01-27 17:12:53 605,696 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\urlmon.dll
    + 2005-01-27 17:12:54 662,016 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\wininet.dll
    + 2004-11-30 22:29:58 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB867282\spmsg.dll
    + 2004-12-01 05:48:32 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB867282\spuninst.exe
    + 2004-12-01 05:48:31 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB867282\update\spcustom.dll
    + 2004-11-30 22:46:51 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB867282\update\update.exe
    + 2005-01-14 08:56:43 1,284,608 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2GDR\ole32.dll
    + 2005-01-14 08:56:43 75,264 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2GDR\olecli32.dll
    + 2005-01-14 08:56:43 37,888 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2GDR\olecnv32.dll
    + 2005-01-14 08:56:44 395,776 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2GDR\rpcss.dll
    + 2005-01-14 05:08:27 1,284,608 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2QFE\ole32.dll
    + 2005-01-14 05:08:27 75,264 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2QFE\olecli32.dll
    + 2005-01-14 05:08:27 37,376 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2QFE\olecnv32.dll
    + 2005-01-14 05:08:27 395,776 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2QFE\rpcss.dll
    + 2004-11-30 13:46:52 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB873333\spmsg.dll
    + 2004-11-30 19:22:42 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB873333\spuninst.exe
    + 2004-11-30 19:22:42 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB873333\update\spcustom.dll
    + 2004-11-30 13:46:52 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB873333\update\update.exe
    + 2004-11-17 17:42:33 354,304 ----a-w C:\WINDOWS\$hf_mig$\KB873339\SP2GDR\hypertrm.dll
    + 2004-11-17 17:41:19 354,304 ----a-w C:\WINDOWS\$hf_mig$\KB873339\SP2QFE\hypertrm.dll
    + 2004-10-14 09:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB873339\spmsg.dll
    + 2004-10-14 09:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB873339\spuninst.exe
    + 2004-10-14 09:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB873339\update\spcustom.dll
    + 2004-10-14 09:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB873339\update\update.exe
    + 2005-05-02 20:58:35 1,020,416 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\browseui.dll
    + 2005-05-02 20:58:35 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\cdfview.dll
    + 2005-05-01 00:12:37 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\iedw.exe
    + 2005-05-02 20:58:35 250,880 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\iepeers.dll
    + 2005-05-02 20:58:35 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\inseng.dll
    + 2005-05-02 20:58:35 3,012,608 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\mshtml.dll
    + 2005-05-02 20:58:35 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\mshtmled.dll
    + 2005-05-02 20:58:35 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\msrating.dll
    + 2005-05-02 20:58:35 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\pngfilt.dll
    + 2005-05-02 20:58:35 1,485,312 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\shdocvw.dll
    + 2005-05-02 20:58:35 474,112 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\shlwapi.dll
    + 2005-05-02 20:58:35 606,208 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\urlmon.dll
    + 2005-05-02 20:58:35 663,040 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\wininet.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB883939\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB883939\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB883939\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB883939\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB883939\update\updspapi.dll
    + 2005-01-19 04:26:52 451,584 ----a-w C:\WINDOWS\$hf_mig$\KB885250\SP2GDR\mrxsmb.sys
    + 2005-01-19 03:51:57 451,584 ----a-w C:\WINDOWS\$hf_mig$\KB885250\SP2QFE\mrxsmb.sys
    + 2004-11-30 13:46:52 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB885250\spmsg.dll
    + 2004-11-30 19:22:42 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB885250\spuninst.exe
    + 2004-11-30 19:22:42 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB885250\update\spcustom.dll
    + 2004-11-30 13:46:52 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB885250\update\update.exe
    + 2004-10-28 01:23:59 728,576 ----a-w C:\WINDOWS\$hf_mig$\KB885835\SP2GDR\lsasrv.dll
    + 2004-10-28 01:14:18 448,128 ----a-w C:\WINDOWS\$hf_mig$\KB885835\SP2GDR\mrxsmb.sys
    + 2004-10-28 01:13:58 174,592 ----a-w C:\WINDOWS\$hf_mig$\KB885835\SP2GDR\rdbss.sys
    + 2004-10-28 01:29:47 728,576 ----a-w C:\WINDOWS\$hf_mig$\KB885835\SP2QFE\lsasrv.dll
    + 2004-10-28 01:15:16 448,128 ----a-w C:\WINDOWS\$hf_mig$\KB885835\SP2QFE\mrxsmb.sys
    + 2004-10-28 01:14:56 174,592 ----a-w C:\WINDOWS\$hf_mig$\KB885835\SP2QFE\rdbss.sys
    + 2004-10-14 10:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB885835\spmsg.dll
    + 2004-10-14 10:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB885835\spuninst.exe
    + 2004-10-14 10:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB885835\update\spcustom.dll
    + 2004-10-14 10:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB885835\update\update.exe
    + 2004-10-14 10:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB885836\spmsg.dll
    + 2004-10-14 10:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB885836\spuninst.exe
    + 2004-10-14 10:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB885836\update\spcustom.dll
    + 2004-10-14 10:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB885836\update\update.exe
    + 2004-09-29 22:31:17 134,912 ----a-w C:\WINDOWS\$hf_mig$\KB886185\SP2QFE\ipnat.sys
    + 2004-10-14 18:35:06 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB886185\spmsg.dll
    + 2004-10-14 18:36:20 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB886185\spuninst.exe
    + 2004-10-14 18:36:19 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB886185\update\spcustom.dll
    + 2004-10-14 18:35:11 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB886185\update\update.exe
    + 2004-10-13 16:21:24 1,694,208 ----a-w C:\WINDOWS\$hf_mig$\KB887472\SP2QFE\msmsgs.exe
    + 2004-10-14 10:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB887472\spmsg.dll
    + 2004-10-14 10:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB887472\spuninst.exe
    + 2004-10-14 10:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB887472\update\spcustom.dll
    + 2004-10-14 10:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB887472\update\update.exe
    + 2004-10-08 23:18:27 262,272 ----a-w C:\WINDOWS\$hf_mig$\KB887742\SP2QFE\http.sys
    + 2004-10-14 09:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB887742\spmsg.dll
    + 2004-10-14 09:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB887742\spuninst.exe
    + 2004-10-14 09:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB887742\update\spcustom.dll
    + 2004-10-14 09:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB887742\update\update.exe
    + 2004-10-19 00:04:11 679,424 ----a-w C:\WINDOWS\$hf_mig$\KB887797\SP2QFE\inetcomm.dll
    + 2004-10-19 00:04:12 1,311,744 ----a-w C:\WINDOWS\$hf_mig$\KB887797\SP2QFE\msoe.dll
    + 2004-10-19 00:04:12 505,344 ----a-w C:\WINDOWS\$hf_mig$\KB887797\SP2QFE\wab32.dll
    + 2004-10-19 00:04:12 85,504 ----a-w C:\WINDOWS\$hf_mig$\KB887797\SP2QFE\wabimp.dll
    + 2004-10-14 10:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB887797\spmsg.dll
    + 2004-10-14 10:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB887797\spuninst.exe
    + 2004-10-14 10:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB887797\update\spcustom.dll
    + 2004-10-14 10:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB887797\update\update.exe
    + 2004-11-16 21:17:57 68,608 ----a-w C:\WINDOWS\$hf_mig$\KB888113\SP2GDR\hlink.dll
    + 2004-11-16 21:16:08 68,608 ----a-w C:\WINDOWS\$hf_mig$\KB888113\SP2QFE\hlink.dll
    + 2004-10-14 09:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB888113\spmsg.dll
    + 2004-10-14 09:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB888113\spuninst.exe
    + 2004-10-14 09:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB888113\update\spcustom.dll
    + 2004-10-14 09:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB888113\update\update.exe
    + 2004-12-07 19:34:00 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB888302\SP2GDR\srvsvc.dll
    + 2004-12-07 19:32:32 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB888302\SP2QFE\srvsvc.dll
    + 2004-11-30 13:46:52 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB888302\spmsg.dll
    + 2004-11-30 19:22:42 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB888302\spuninst.exe
    + 2004-11-30 19:22:42 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB888302\update\spcustom.dll
    + 2004-11-30 13:46:52 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB888302\update\update.exe
    + 2005-04-22 05:20:19 57,344 ----a-w C:\WINDOWS\$hf_mig$\KB890046\SP2QFE\agentdpv.dll
    + 2005-05-17 00:44:44 19,456 ----a-w C:\WINDOWS\$hf_mig$\KB890046\SP2QFE\spru040c.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB890046\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB890046\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB890046\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB890046\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB890046\update\updspapi.dll
    + 2004-12-21 19:59:07 8,506,368 ----a-w C:\WINDOWS\$hf_mig$\KB890047\SP2GDR\shell32.dll
    + 2004-12-21 19:46:25 8,507,392 ----a-w C:\WINDOWS\$hf_mig$\KB890047\SP2QFE\shell32.dll
    + 2004-11-30 13:46:52 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB890047\spmsg.dll
    + 2004-11-30 19:22:42 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB890047\spuninst.exe
    + 2004-11-30 19:22:42 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB890047\update\spcustom.dll
    + 2004-11-30 13:46:52 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB890047\update\update.exe
    + 2004-11-30 13:46:52 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB890175\spmsg.dll
    + 2004-11-30 19:22:42 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB890175\spuninst.exe
    + 2004-11-30 19:22:42 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB890175\update\spcustom.dll
    + 2004-11-30 13:46:52 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB890175\update\update.exe
    + 2005-03-02 18:20:31 62,464 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\authz.dll
    + 2005-03-02 18:13:13 2,137,600 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntkrnlmp.exe
    + 2005-03-02 18:13:12 2,059,008 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntkrnlpa.exe
    + 2005-03-02 18:13:16 2,017,280 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntkrpamp.exe
    + 2005-03-02 18:13:23 2,181,632 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntoskrnl.exe
    + 2005-03-02 18:20:32 578,048 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\user32.dll
    + 2005-03-02 18:13:08 1,836,416 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\win32k.sys
    + 2005-03-02 18:20:32 291,840 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\winsrv.dll
    + 2005-02-24 17:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB890859\spmsg.dll
    + 2005-02-24 17:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB890859\spuninst.exe
    + 2005-02-24 17:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB890859\update\spcustom.dll
    + 2005-02-24 17:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB890859\update\update.exe
    + 2005-02-24 17:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB890859\update\updspapi.dll
    + 2005-03-10 07:48:24 1,017,344 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\browseui.dll
    + 2005-03-10 07:48:24 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\cdfview.dll
    + 2005-03-10 07:48:24 250,880 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\iepeers.dll
    + 2005-03-10 07:48:24 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\inseng.dll
    + 2005-03-10 07:48:25 3,011,072 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\mshtml.dll
    + 2005-03-10 07:48:25 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\msrating.dll
    + 2005-03-10 07:48:25 1,484,800 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\shdocvw.dll
    + 2005-03-10 07:48:25 474,112 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\shlwapi.dll
    + 2005-03-10 07:48:25 605,696 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\urlmon.dll
    + 2005-03-10 07:48:25 662,016 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\wininet.dll
    + 2005-02-24 17:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB890923\spmsg.dll
    + 2005-02-24 17:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB890923\spuninst.exe
    + 2005-02-24 17:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB890923\update\spcustom.dll
    + 2005-02-24 17:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB890923\update\update.exe
    + 2005-02-24 17:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB890923\update\updspapi.dll
    + 2004-11-30 13:46:52 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB891781\spmsg.dll
    + 2004-11-30 19:22:42 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB891781\spuninst.exe
    + 2004-11-30 19:22:42 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB891781\update\spcustom.dll
    + 2004-11-30 13:46:52 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB891781\update\update.exe
    + 2005-05-25 19:07:12 359,936 ----a-w C:\WINDOWS\$hf_mig$\KB893066\SP2QFE\tcpip.sys
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB893066\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB893066\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB893066\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB893066\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB893066\update\updspapi.dll
    + 2005-02-28 23:10:59 8,507,904 ----a-w C:\WINDOWS\$hf_mig$\KB893086\SP2QFE\shell32.dll
    + 2005-02-24 17:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB893086\spmsg.dll
    + 2005-02-24 17:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB893086\spuninst.exe
    + 2005-02-24 17:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB893086\update\spcustom.dll
    + 2005-02-24 17:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB893086\update\update.exe
    + 2005-02-24 17:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB893086\update\updspapi.dll
    + 2005-07-08 16:30:34 249,344 ----a-w C:\WINDOWS\$hf_mig$\KB893756\SP2QFE\tapisrv.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB893756\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB893756\spuninst.exe
    + 2005-07-07 17:27:08 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB893756\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB893756\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB893756\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB893756\update\updspapi.dll
    + 2005-04-28 19:36:10 1,286,144 ----a-w C:\WINDOWS\$hf_mig$\KB894391\SP2QFE\ole32.dll
    + 2005-04-28 19:36:09 75,264 ----a-w C:\WINDOWS\$hf_mig$\KB894391\SP2QFE\olecli32.dll
    + 2005-04-28 19:36:09 37,376 ----a-w C:\WINDOWS\$hf_mig$\KB894391\SP2QFE\olecnv32.dll
    + 2005-04-28 19:36:09 396,288 ----a-w C:\WINDOWS\$hf_mig$\KB894391\SP2QFE\rpcss.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB894391\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB894391\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB894391\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB894391\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB894391\update\updspapi.dll
    + 2005-05-26 23:26:50 10,752 ----a-w C:\WINDOWS\$hf_mig$\KB896358\SP2QFE\hh.exe
    + 2005-05-27 02:11:03 41,472 ----a-w C:\WINDOWS\$hf_mig$\KB896358\SP2QFE\hhsetup.dll
    + 2005-05-27 02:11:03 155,136 ----a-w C:\WINDOWS\$hf_mig$\KB896358\SP2QFE\itircl.dll
    + 2005-05-27 02:11:03 137,216 ----a-w C:\WINDOWS\$hf_mig$\KB896358\SP2QFE\itss.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896358\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896358\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896358\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896358\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896358\update\updspapi.dll
    + 2005-05-10 00:22:21 332,544 ----a-w C:\WINDOWS\$hf_mig$\KB896422\SP2QFE\srv.sys
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896422\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896422\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896422\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896422\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896422\update\updspapi.dll
    + 2005-06-11 00:17:13 57,856 ----a-w C:\WINDOWS\$hf_mig$\KB896423\SP2QFE\spoolsv.exe
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896423\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896423\spuninst.exe
    + 2005-06-29 14:54:32 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB896423\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896423\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896423\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896423\update\updspapi.dll
    + 2005-10-06 03:19:52 280,064 ----a-w C:\WINDOWS\$hf_mig$\KB896424\SP2QFE\gdi32.dll
    + 2005-10-06 03:12:57 1,839,616 ----a-w C:\WINDOWS\$hf_mig$\KB896424\SP2QFE\win32k.sys
    + 2005-02-24 19:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896424\spmsg.dll
    + 2005-02-24 19:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896424\spuninst.exe
    + 2005-10-05 15:39:46 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB896424\update\arpidfix.exe
    + 2005-02-24 19:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896424\update\spcustom.dll
    + 2005-02-24 19:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896424\update\update.exe
    + 2005-02-24 19:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896424\update\updspapi.dll
    + 2005-05-11 02:33:19 78,336 ----a-w C:\WINDOWS\$hf_mig$\KB896428\SP2QFE\telnet.exe
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896428\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896428\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896428\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896428\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896428\update\updspapi.dll
    + 2005-09-03 00:08:20 1,020,416 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\browseui.dll
    + 2005-09-03 00:08:20 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\cdfview.dll
    + 2005-09-03 00:08:21 1,056,256 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\danim.dll
    + 2005-09-03 00:08:21 205,312 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\dxtrans.dll
    + 2005-09-03 00:08:21 55,808 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\extmgr.dll
    + 2005-09-02 21:52:55 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\iedw.exe
    + 2005-09-03 00:08:21 251,904 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\iepeers.dll
    + 2005-09-03 00:08:21 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\inseng.dll
    + 2005-10-05 00:51:10 3,015,680 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\mshtml.dll
    + 2005-09-03 00:08:21 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\mshtmled.dll
    + 2005-09-03 00:08:21 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\msrating.dll
    + 2005-09-03 00:08:21 530,432 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\mstime.dll
    + 2005-09-03 00:08:21 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\pngfilt.dll
    + 2005-09-03 00:08:21 1,486,336 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\shdocvw.dll
    + 2005-09-03 00:08:21 474,624 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\shlwapi.dll
    + 2005-09-03 00:08:21 606,208 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\urlmon.dll
    + 2005-09-03 00:08:21 664,576 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\wininet.dll
    + 2005-02-25 03:35:24 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896688\spmsg.dll
    + 2005-02-25 03:35:24 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896688\spuninst.exe
    + 2005-10-04 22:39:55 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB896688\update\arpidfix.exe
    + 2005-02-25 03:35:24 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896688\update\spcustom.dll
    + 2005-02-25 03:35:24 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896688\update\update.exe
    + 2005-02-25 03:35:25 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896688\update\updspapi.dll
    + 2005-07-03 02:10:44 1,020,416 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\browseui.dll
    + 2005-07-03 02:10:44 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\cdfview.dll
    + 2005-07-02 23:38:24 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\iedw.exe
    + 2005-07-03 02:10:44 251,904 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\iepeers.dll
    + 2005-07-03 02:10:45 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\inseng.dll
    + 2005-07-20 02:05:47 3,014,144 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\mshtml.dll
    + 2005-07-03 02:10:49 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\mshtmled.dll
    + 2005-07-03 02:10:49 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\msrating.dll
    + 2005-07-03 02:10:49 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\pngfilt.dll
    + 2005-07-03 02:10:51 1,485,824 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\shdocvw.dll
    + 2005-07-03 02:10:52 474,112 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\shlwapi.dll
    + 2005-07-03 02:10:53 606,208 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\urlmon.dll
    + 2005-07-03 02:10:54 663,552 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\wininet.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896727\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896727\spuninst.exe
    + 2005-07-19 14:40:46 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB896727\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896727\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896727\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896727\update\updspapi.dll
    + 2005-02-25 03:35:24 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB898461\spmsg.dll
    + 2005-02-25 03:35:24 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB898461\spuninst.exe
    + 2005-02-25 03:35:24 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB898461\spupdsvc.exe
    + 2005-02-25 03:35:24 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB898461\update\spcustom.dll
    + 2005-02-25 03:35:24 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB898461\update\update.exe
    + 2005-02-25 03:35:25 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB898461\update\updspapi.dll
    + 2005-06-15 17:48:49 297,984 ----a-w C:\WINDOWS\$hf_mig$\KB899587\SP2QFE\kerberos.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB899587\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB899587\spuninst.exe
    + 2005-06-29 14:54:32 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB899587\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB899587\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB899587\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB899587\update\updspapi.dll
    + 2005-06-30 02:07:51 119,808 ----a-w C:\WINDOWS\$hf_mig$\KB899588\SP2QFE\umpnpmgr.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB899588\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB899588\spuninst.exe
    + 2005-06-29 14:54:32 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB899588\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB899588\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB899588\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB899588\update\updspapi.dll
    + 2005-06-10 04:06:01 139,528 ----a-w C:\WINDOWS\$hf_mig$\KB899591\SP2QFE\rdpwd.sys
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB899591\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB899591\spuninst.exe
    + 2005-06-29 14:54:32 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB899591\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB899591\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB899591\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB899591\update\updspapi.dll
    + 2006-02-15 00:30:07 142,464 ----a-w C:\WINDOWS\$hf_mig$\KB900485\SP2QFE\aec.sys
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB900485\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB900485\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB900485\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB900485\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB900485\update\updspapi.dll
    + 2005-09-01 01:46:30 19,968 ----a-w C:\WINDOWS\$hf_mig$\KB900725\SP2QFE\linkinfo.dll
    + 2005-09-23 03:26:14 8,508,928 ----a-w C:\WINDOWS\$hf_mig$\KB900725\SP2QFE\shell32.dll
    + 2005-09-03 00:08:21 474,624 ----a-w C:\WINDOWS\$hf_mig$\KB900725\SP2QFE\shlwapi.dll
    + 2005-09-27 00:47:42 23,552 ----a-w C:\WINDOWS\$hf_mig$\KB900725\SP2QFE\spru040c.dll
    + 2005-09-01 01:46:31 292,352 ----a-w C:\WINDOWS\$hf_mig$\KB900725\SP2QFE\winsrv.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB900725\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB900725\spuninst.exe
    + 2005-09-26 15:36:24 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB900725\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB900725\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB900725\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB900725\update\updspapi.dll
    + 2005-05-05 21:25:52 679,424 ----a-w C:\WINDOWS\$hf_mig$\KB900930\SP2QFE\inetcomm.dll
    + 2005-05-05 21:25:53 1,311,744 ----a-w C:\WINDOWS\$hf_mig$\KB900930\SP2QFE\msoe.dll
    + 2005-02-24 19:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB900930\spmsg.dll
    + 2005-02-24 19:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB900930\spuninst.exe
    + 2005-02-24 19:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB900930\update\spcustom.dll
    + 2005-02-24 19:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB900930\update\update.exe
    + 2005-02-24 19:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB900930\update\updspapi.dll
    + 2005-09-10 01:53:06 2,068,480 ----a-w C:\WINDOWS\$hf_mig$\KB901017\SP2QFE\cdosys.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB901017\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB901017\spuninst.exe
    + 2005-09-09 14:26:26 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB901017\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB901017\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB901017\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB901017\update\updspapi.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB901190\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB901190\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB901190\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB901190\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB901190\update\updspapi.dll
    + 2005-06-29 01:54:24 254,976 ----a-w C:\WINDOWS\$hf_mig$\KB901214\SP2QFE\icm32.dll
    + 2005-06-29 01:54:24 73,728 ----a-w C:\WINDOWS\$hf_mig$\KB901214\SP2QFE\mscms.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB901214\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB901214\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB901214\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB901214\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB901214\update\updspapi.dll
    + 2005-07-26 04:29:18 225,792 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\catsrv.dll
    + 2005-07-26 04:29:19 625,152 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\catsrvut.dll
    + 2005-07-26 04:29:20 110,080 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\clbcatex.dll
    + 2005-07-26 04:29:21 498,688 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\clbcatq.dll
    + 2005-07-26 04:29:21 60,416 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\colbact.dll
    + 2005-07-26 04:29:22 195,072 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\comadmin.dll
    + 2005-07-26 04:29:23 97,792 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\comrepl.dll
    + 2005-07-26 04:29:25 1,267,200 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\comsvcs.dll
    + 2005-07-26 04:29:27 540,160 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\comuid.dll
    + 2005-07-26 04:29:28 243,200 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\es.dll
    + 2005-07-25 23:42:35 8,704 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\migregdb.exe
    + 2005-07-26 04:29:29 425,472 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\msdtcprx.dll
    + 2005-07-26 04:29:31 945,152 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\msdtctm.dll
    + 2005-07-26 04:29:32 161,280 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\msdtcuiu.dll
    + 2005-07-26 04:29:32 66,560 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\mtxclu.dll
    + 2005-07-26 04:29:32 91,136 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\mtxoci.dll
    + 2005-07-26 04:29:37 1,285,632 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\ole32.dll
    + 2005-07-26 04:29:38 75,264 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\olecli32.dll
    + 2005-07-26 04:29:38 37,376 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\olecnv32.dll
    + 2005-07-26 04:29:39 398,336 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\rpcss.dll
    + 2005-07-26 04:29:40 101,376 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\txflog.dll
    + 2005-07-26 04:29:40 11,776 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\xolehlp.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB902400\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB902400\spuninst.exe
    + 2005-07-25 17:21:18 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB902400\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB902400\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB902400\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB902400\update\updspapi.dll
    + 2005-08-30 04:16:04 1,293,824 ----a-w C:\WINDOWS\$hf_mig$\KB904706\SP2QFE\quartz.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB904706\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB904706\spuninst.exe
    + 2005-08-29 17:02:00 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB904706\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB904706\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB904706\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB904706\update\updspapi.dll
    + 2006-03-24 04:49:05 49,152 ----a-w C:\WINDOWS\$hf_mig$\KB904942\SP2QFE\wdigest.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB904942\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB904942\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB904942\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB904942\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB904942\update\updspapi.dll
    + 2005-08-22 18:26:27 197,632 ----a-w C:\WINDOWS\$hf_mig$\KB905414\SP2QFE\netman.dll
    + 2005-02-25 03:35:24 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB905414\spmsg.dll
    + 2005-02-25 03:35:24 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB905414\spuninst.exe
    + 2005-08-19 23:50:31 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB905414\update\arpidfix.exe
    + 2005-02-25 03:35:24 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB905414\update\spcustom.dll
    + 2005-02-25 03:35:24 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB905414\update\update.exe
    + 2005-02-25 03:35:25 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB905414\update\updspapi.dll
    + 2005-08-23 03:41:23 124,928 ----a-w C:\WINDOWS\$hf_mig$\KB905749\SP2QFE\umpnpmgr.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB905749\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB905749\spuninst.exe
    + 2005-08-22 16:01:30 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB905749\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB905749\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB905749\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB905749\update\updspapi.dll
    + 2005-11-23 23:52:31 1,022,464 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\browseui.dll
    + 2005-10-21 03:39:13 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\cdfview.dll
    + 2005-11-05 03:35:38 1,056,768 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\danim.dll
    + 2005-10-21 03:39:14 205,312 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\dxtrans.dll
    + 2005-10-21 03:39:14 55,808 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\extmgr.dll
    + 2005-10-21 01:54:43 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\iedw.exe
    + 2005-10-21 03:39:14 251,904 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\iepeers.dll
    + 2005-10-21 03:39:14 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\inseng.dll
    + 2005-11-23 23:52:32 3,016,192 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\mshtml.dll
    + 2005-10-21 03:39:16 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\mshtmled.dll
    + 2005-10-21 03:39:16 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\msrating.dll
    + 2005-10-21 03:39:17 530,944 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\mstime.dll
    + 2005-10-21 03:39:17 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\pngfilt.dll
    + 2005-12-01 04:06:57 1,495,040 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\shdocvw.dll
    + 2005-10-21 03:39:18 474,624 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\shlwapi.dll
    + 2005-11-05 03:35:42 607,232 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\urlmon.dll
    + 2005-10-21 03:39:19 665,600 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\wininet.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB905915\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB905915\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB905915\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB905915\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB905915\update\updspapi.dll
    + 2005-10-17 21:26:30 80,896 ----a-w C:\WINDOWS\$hf_mig$\KB908519\SP2QFE\fontsub.dll
    + 2005-10-17 21:26:30 117,760 ----a-w C:\WINDOWS\$hf_mig$\KB908519\SP2QFE\t2embed.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB908519\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB908519\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB908519\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB908519\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB908519\update\updspapi.dll
    + 2006-03-17 04:49:25 8,510,976 ----a-w C:\WINDOWS\$hf_mig$\KB908531\SP2QFE\shell32.dll
    + 2006-03-22 01:51:44 25,088 ----a-w C:\WINDOWS\$hf_mig$\KB908531\SP2QFE\spru040c.dll
    + 2006-03-17 01:05:35 28,672 ----a-w C:\WINDOWS\$hf_mig$\KB908531\SP2QFE\verclsid.exe
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB908531\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB908531\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB908531\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB908531\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB908531\update\updspapi.dll
    + 2005-10-20 22:32:17 1,097,728 ----a-w C:\WINDOWS\$hf_mig$\KB910437\SP2QFE\esent.dll
    + 2005-10-12 23:15:23 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB910437\spmsg.dll
    + 2005-10-12 23:15:24 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB910437\spuninst.exe
    + 2005-10-12 23:15:23 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB910437\update\spcustom.dll
    + 2005-10-12 23:15:26 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB910437\update\update.exe
    + 2005-10-12 23:15:43 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB910437\update\updspapi.dll
    + 2006-05-14 08:59:06 180,736 ----a-w C:\WINDOWS\$hf_mig$\KB911280\SP2QFE\rasmans.dll
    + 2005-10-12 23:18:45 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB911280\spmsg.dll
    + 2005-10-12 23:18:45 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB911280\spuninst.exe
    + 2005-10-12 23:18:45 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB911280\update\spcustom.dll
    + 2005-10-12 23:18:46 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB911280\update\update.exe
    + 2005-10-12 23:18:49 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB911280\update\updspapi.dll
    + 2006-03-23 05:53:24 143,360 ----a-w C:\WINDOWS\$hf_mig$\KB911562\SP2QFE\msadco.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB911562\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB911562\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB911562\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB911562\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB911562\update\updspapi.dll
    + 2006-03-17 09:14:31 679,424 ----a-w C:\WINDOWS\$hf_mig$\KB911567\SP2QFE\inetcomm.dll
    + 2006-03-17 09:14:31 1,311,744 ----a-w C:\WINDOWS\$hf_mig$\KB911567\SP2QFE\msoe.dll
    + 2006-03-17 09:14:31 510,464 ----a-w C:\WINDOWS\$hf_mig$\KB911567\SP2QFE\wab32.dll
    + 2006-03-17 09:14:31 85,504 ----a-w C:\WINDOWS\$hf_mig$\KB911567\SP2QFE\wabimp.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB911567\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB911567\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB911567\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB911567\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB911567\update\updspapi.dll
    + 2006-01-04 04:19:19 68,096 ----a-w C:\WINDOWS\$hf_mig$\KB911927\SP2QFE\webclnt.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB911927\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB911927\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB911927\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB911927\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB911927\update\updspapi.dll
    + 2006-03-04 04:00:27 1,022,976 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\browseui.dll
    + 2006-03-04 04:00:27 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\cdfview.dll
    + 2006-03-04 04:00:27 1,056,768 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\danim.dll
    + 2006-03-04 04:00:27 205,312 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\dxtrans.dll
    + 2006-03-04 04:00:27 55,808 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\extmgr.dll
    + 2006-03-04 01:34:41 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\iedw.exe
    + 2006-03-04 04:00:28 251,904 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\iepeers.dll
    + 2006-03-04 04:00:28 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\inseng.dll
    + 2006-03-23 20:32:00 3,076,608 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\mshtml.dll
    + 2006-03-04 04:00:29 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\mshtmled.dll
    + 2006-03-04 04:00:29 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\msrating.dll
    + 2006-03-04 04:00:30 532,480 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\mstime.dll
    + 2006-03-04 04:00:30 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\pngfilt.dll
    + 2006-03-30 09:29:27 1,495,040 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\shdocvw.dll
    + 2006-03-04 04:00:31 474,624 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\shlwapi.dll
    + 2006-03-30 01:52:07 25,088 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\spru040c.dll
    + 2006-03-18 11:07:51 616,448 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\urlmon.dll
    + 2006-03-04 04:00:31 667,648 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\wininet.dll
    + 2005-10-12 23:18:45 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB912812\spmsg.dll
    + 2005-10-12 23:18:45 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB912812\spuninst.exe
    + 2005-10-12 23:18:45 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB912812\update\spcustom.dll
    + 2005-10-12 23:18:46 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB912812\update\update.exe
    + 2005-10-12 23:18:49 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB912812\update\updspapi.dll
    + 2005-12-29 03:08:43 280,064 ----a-w C:\WINDOWS\$hf_mig$\KB912919\SP2QFE\gdi32.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB912919\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB912919\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB912919\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB912919\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB912919\update\updspapi.dll
    + 2006-01-13 17:07:08 360,448 ----a-w C:\WINDOWS\$hf_mig$\KB913446\SP2QFE\tcpip.sys
    + 2005-10-12 23:15:23 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB913446\spmsg.dll
    + 2005-10-12 23:15:24 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB913446\spuninst.exe
    + 2005-10-12 23:15:23 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB913446\update\spcustom.dll
    + 2005-10-12 23:15:26 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB913446\update\update.exe
    + 2005-10-12 23:15:43 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB913446\update\updspapi.dll
    + 2006-03-01 19:42:12 426,496 ----a-w C:\WINDOWS\$hf_mig$\KB913580\SP2QFE\msdtcprx.dll
    + 2006-03-01 19:42:12 956,416 ----a-w C:\WINDOWS\$hf_mig$\KB913580\SP2QFE\msdtctm.dll
    + 2006-03-01 19:42:12 161,280 ----a-w C:\WINDOWS\$hf_mig$\KB913580\SP2QFE\msdtcuiu.dll
    + 2006-03-01 19:42:12 66,560 ----a-w C:\WINDOWS\$hf_mig$\KB913580\SP2QFE\mtxclu.dll
    + 2006-03-01 19:42:12 91,136 ----a-w C:\WINDOWS\$hf_mig$\KB913580\SP2QFE\mtxoci.dll
    + 2006-03-01 19:42:12 11,776 ----a-w C:\WINDOWS\$hf_mig$\KB913580\SP2QFE\xolehlp.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB913580\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB913580\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB913580\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB913580\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB913580\update\updspapi.dll
    + 2006-05-19 14:16:50 112,640 ----a-w C:\WINDOWS\$hf_mig$\KB914388\SP2QFE\dhcpcsvc.dll
    + 2006-05-19 14:16:51 147,456 ----a-w C:\WINDOWS\$hf_mig$\KB914388\SP2QFE\dnsapi.dll
    + 2006-05-19 14:16:51 95,744 ----a-w C:\WINDOWS\$hf_mig$\KB914388\SP2QFE\iphlpapi.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB914388\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB914388\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB914388\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB914388\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB914388\update\updspapi.dll
    + 2006-05-05 10:16:39 454,400 ----a-w C:\WINDOWS\$hf_mig$\KB914389\SP2QFE\mrxsmb.sys
    + 2006-05-05 10:22:52 174,592 ----a-w C:\WINDOWS\$hf_mig$\KB914389\SP2QFE\rdbss.sys
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB914389\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB914389\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB914389\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB914389\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB914389\update\updspapi.dll
    + 2006-07-14 15:52:22 121,856 ----a-w C:\WINDOWS\$hf_mig$\KB915865\SP2QFE\xmllite.dll
    + 2005-10-12 23:12:25 14,048 ----a-w C:\WINDOWS\$hf_mig$\KB915865\spmsg.dll
    + 2005-10-12 23:12:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB915865\spuninst.exe
    + 2005-10-12 23:12:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB915865\update\spcustom.dll
    + 2005-10-12 23:12:28 716,000 ----a-w C:\WINDOWS\$hf_mig$\KB915865\update\update.exe
    + 2005-10-12 23:12:33 371,424 ----a-w C:\WINDOWS\$hf_mig$\KB915865\update\updspapi.dll
    + 2006-05-10 05:26:47 1,022,976 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\browseui.dll
    + 2006-05-10 05:26:47 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\cdfview.dll
    + 2006-05-10 05:26:47 1,056,768 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\danim.dll
    + 2006-05-10 05:26:47 357,888 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\dxtmsft.dll
    + 2006-05-10 05:26:47 205,312 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\dxtrans.dll
    + 2006-05-10 05:26:47 55,808 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\extmgr.dll
    + 2006-05-09 11:41:31 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\iedw.exe
    + 2006-05-10 05:26:47 251,904 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\iepeers.dll
    + 2006-05-10 05:26:47 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\inseng.dll
    + 2006-05-10 05:26:47 15,872 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\jsproxy.dll
    + 2006-05-19 15:07:57 3,076,096 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\mshtml.dll
    + 2006-05-10 05:26:49 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\mshtmled.dll
    + 2006-05-10 05:26:49 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\msrating.dll
    + 2006-05-10 05:26:49 532,480 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\mstime.dll
    + 2006-05-10 05:26:49 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\pngfilt.dll
    + 2006-05-29 15:34:15 1,496,576 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\shdocvw.dll
    + 2006-05-10 05:26:49 474,624 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\shlwapi.dll
    + 2006-05-11 08:58:36 100,352 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\spru040c.dll
    + 2006-05-10 05:26:50 617,472 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\urlmon.dll
    + 2006-05-10 05:26:50 667,648 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\wininet.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB916281\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB916281\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB916281\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB916281\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB916281\update\updspapi.dll
    + 2006-03-17 01:08:10 262,656 ----a-w C:\WINDOWS\$hf_mig$\KB916595\SP2QFE\http.sys
    + 2005-10-12 23:18:45 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB916595\spmsg.dll
    + 2005-10-12 23:18:45 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB916595\spuninst.exe
    + 2005-10-12 23:18:45 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB916595\update\spcustom.dll
    + 2005-10-12 23:18:46 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB916595\update\update.exe
    + 2005-10-12 23:18:49 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB916595\update\updspapi.dll
    + 2006-04-21 06:46:15 332,800 ----a-w C:\WINDOWS\$hf_mig$\KB917159\SP2QFE\srv.sys
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB917159\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB917159\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB917159\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB917159\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB917159\update\updspapi.dll
    + 2006-05-18 05:49:55 450,560 ----a-w C:\WINDOWS\$hf_mig$\KB917344\SP2QFE\jscript.dll
    + 2005-10-12 23:18:45 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB917344\spmsg.dll
    + 2005-10-12 23:18:45 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB917344\spuninst.exe
    + 2005-10-12 23:18:45 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB917344\update\spcustom.dll
    + 2005-10-12 23:18:46 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB917344\update\update.exe
    + 2005-10-12 23:18:49 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB917344\update\updspapi.dll
    + 2006-07-05 10:58:13 1,050,112 ----a-w C:\WINDOWS\$hf_mig$\KB917422\SP2QFE\kernel32.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB917422\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB917422\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB917422\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB917422\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB917422\update\updspapi.dll
    + 2006-04-20 12:18:35 360,576 ----a-w C:\WINDOWS\$hf_mig$\KB917953\SP2QFE\tcpip.sys
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB917953\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB917953\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB917953\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB917953\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB917953\update\updspapi.dll
    + 2006-11-27 15:18:34 539,136 ----a-w C:\WINDOWS\$hf_mig$\KB918118\SP2QFE\msftedit.dll
    + 2006-11-27 15:18:34 433,664 ----a-w C:\WINDOWS\$hf_mig$\KB918118\SP2QFE\riched20.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB918118\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB918118\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB918118\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB918118\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB918118\update\updspapi.dll
    + 2006-06-01 19:46:25 163,840 ----a-w C:\WINDOWS\$hf_mig$\KB918439\SP2QFE\jgdw400.dll
    + 2006-06-01 19:46:25 27,648 ----a-w C:\WINDOWS\$hf_mig$\KB918439\SP2QFE\jgpl400.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB918439\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB918439\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB918439\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB918439\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB918439\update\updspapi.dll
    + 2006-06-23 11:25:40 1,022,976 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\browseui.dll
    + 2006-06-23 11:25:40 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\cdfview.dll
    + 2006-06-23 11:25:40 1,056,768 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\danim.dll
    + 2006-06-23 11:25:40 357,888 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\dxtmsft.dll
    + 2006-06-23 11:25:40 205,312 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\dxtrans.dll
    + 2006-06-23 11:25:40 55,808 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\extmgr.dll
    + 2006-06-23 08:48:30 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\iedw.exe
    + 2006-06-23 11:25:40 251,904 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\iepeers.dll
    + 2006-06-23 11:25:40 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\inseng.dll
    + 2006-06-23 11:25:40 15,872 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\jsproxy.dll
    + 2006-07-28 11:30:59 3,079,168 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\mshtml.dll
    + 2006-06-23 11:25:41 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\mshtmled.dll
    + 2006-06-23 11:25:41 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\msrating.dll
    + 2006-06-23 11:25:41 532,480 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\mstime.dll
    + 2006-06-23 11:25:41 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\pngfilt.dll
    + 2006-06-23 11:25:42 1,497,088 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\shdocvw.dll
    + 2006-06-23 11:25:42 474,624 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\shlwapi.dll
    + 2006-06-23 09:09:16 100,864 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\spru040c.dll
    + 2006-07-25 20:43:19 617,472 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\urlmon.dll
    + 2006-06-23 11:25:42 668,672 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\wininet.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB918899\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB918899\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB918899\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB918899\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB918899\update\updspapi.dll
    + 2006-07-13 11:43:08 202,496 ----a-w C:\WINDOWS\$hf_mig$\KB919007\SP2QFE\rmcast.sys
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB919007\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB919007\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB919007\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB919007\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB919007\update\updspapi.dll
    + 2006-10-12 13:55:58 42,496 ----a-w C:\WINDOWS\$hf_mig$\KB920213\SP2QFE\agentdp2.dll
    + 2006-10-12 13:55:58 57,344 ----a-w C:\WINDOWS\$hf_mig$\KB920213\SP2QFE\agentdpv.dll
    + 2006-10-12 11:54:07 256,512 ----a-w C:\WINDOWS\$hf_mig$\KB920213\SP2QFE\agentsvr.exe
    + 2006-10-16 11:19:09 265,216 ----a-w C:\WINDOWS\$hf_mig$\KB920213\SP2QFE\spru040c.dll
    + 2005-10-12 23:18:45 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB920213\spmsg.dll
    + 2005-10-12 23:18:45 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB920213\spuninst.exe
    + 2005-10-12 23:18:45 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB920213\update\spcustom.dll
    + 2005-10-12 23:18:46 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB920213\update\update.exe
    + 2005-10-12 23:18:49 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB920213\update\updspapi.dll
    + 2006-07-27 13:40:09 679,424 ----a-w C:\WINDOWS\$hf_mig$\KB920214\SP2QFE\inetcomm.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB920214\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB920214\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB920214\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB920214\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB920214\update\updspapi.dll
    + 2006-07-21 08:29:04 72,704 ----a-w C:\WINDOWS\$hf_mig$\KB920670\SP2QFE\hlink.dll
    + 2005-10-12 23:18:45 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB920670\spmsg.dll
    + 2005-10-12 23:18:45 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB920670\spuninst.exe
    + 2005-10-12 23:18:45 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB920670\update\spcustom.dll
    + 2005-10-12 23:18:46 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB920670\update\update.exe
    + 2005-10-12 23:18:49 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB920670\update\updspapi.dll
    + 2006-06-26 17:47:08 147,456 ----a-w C:\WINDOWS\$hf_mig$\KB920683\SP2QFE\dnsapi.dll
    + 2006-06-26 17:47:08 7,680 ----a-w C:\WINDOWS\$hf_mig$\KB920683\SP2QFE\rasadhlp.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB920683\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB920683\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB920683\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB920683\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB920683\update\updspapi.dll
    + 2006-06-22 05:22:11 69,120 ----a-w C:\WINDOWS\$hf_mig$\KB920685\SP2QFE\ciodm.dll
    + 2006-06-22 05:22:12 1,440,768 ----a-w C:\WINDOWS\$hf_mig$\KB920685\SP2QFE\query.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB920685\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB920685\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB920685\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB920685\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB920685\update\updspapi.dll
    + 2006-06-14 08:50:19 172,416 ----a-w C:\WINDOWS\$hf_mig$\KB920872\SP2QFE\kmixer.sys
    + 2006-06-14 08:50:19 6,272 ----a-w C:\WINDOWS\$hf_mig$\KB920872\SP2QFE\splitter.sys
    + 2006-06-14 09:17:04 82,944 ----a-w C:\WINDOWS\$hf_mig$\KB920872\SP2QFE\wdmaud.sys
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB920872\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB920872\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB920872\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB920872\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w
    28 Mai 2008 20:09:28

    ci joint toute la log HijackThis.

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 19:54:30, on 28/05/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16640)
    Boot mode: Safe mode with network support

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\WINDOWS\system32\taskmgr.exe
    C:\WINDOWS\explorer.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.unika.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: {2f00b0c7-21bd-a64a-1644-5fcc4df251a0} - {0a152fd4-ccf5-4461-a46a-db127c0b00f2} - C:\WINDOWS\system32\xmdkidtg.dll (file missing)
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: (no name) - {AE3786B5-A87B-4CF7-A6B5-084CFEBD5BAF} - C:\WINDOWS\system32\nnnOIXQI.dll (file missing)
    O4 - HKLM\..\Run: [SchedulingAgent] mstinit.exe /firstlogon
    O4 - HKLM\..\Run: [RestoreIT!] "C:\Program Files\Phoenix Technologies Ltd\RecoverPro_XP_1\VBPTASK.EXE" VBStart
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe
    O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Fichiers communs\Sonic\Update Manager\sgtray.exe" /r
    O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
    O4 - HKLM\..\Run: [fenaffiche] C:\Program Files\FenAffiche\Fenpowernet.exe
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
    O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [InCD] C:\Program Files\Nero\Nero 7\InCD\InCD.exe
    O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
    O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe"
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-19\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-20\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-21-2203851307-2412725361-1088420860-500\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Administrateur')
    O4 - HKUS\S-1-5-21-2203851307-2412725361-1088420860-500\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'Administrateur')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O14 - IERESET.INF: START_PAGE_URL=http://www.unika.com
    O16 - DPF: teleir_cert - https://static.ir.dgi.minefi.gouv.fr/secure/connexion/a...
    O16 - DPF: {106E49CF-797A-11D2-81A2-00E02C015623} (AlternaTIFF ActiveX) - http://www.alternatiff.com/install/00/alttiff.cab
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: {54B52E52-8000-4413-BD67-FC7FE24B59F2} (EARTPatchX Class) - http://files.ea.com/downloads/rtpatch/v2/EARTPX.cab
    O16 - DPF: {5EDB10D9-7E95-4833-A218-62F375DAFCF1} (Aventail Installer ) - https://parici.sopragroup.com/postauthI/epi.cab
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Cont...
    O16 - DPF: {86EEF11E-FF16-48CE-B1A2-474B663041A9} - http://kit.carpediem.fr/12449/CD/EntreNanas.exe
    O16 - DPF: {A18962F6-E6ED-40B1-97C9-1FB36F38BFA8} (Aurigma Image Uploader 3.5 Control) - http://www.photoways.com/clients/ImageUploader3.cab
    O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSig...
    O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - http://www.photoways.com/clients/uploader_v2.2.0.6.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/fl...
    O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/mcfscan/2,1,0...
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
    O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
    O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
    O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe

    --
    End of file - 9134 bytes
    28 Mai 2008 21:24:33

    re

    le rapport de combofix n'est pas complet, poste le en entier stp.

    ta version de xp est-elle légale?
    28 Mai 2008 21:46:15

    Oui c'est une version OEM livrée et installée avec ma machine

    Rapport Combofix :

    ComboFix 08-05-27.4 - Admin 2008-05-28 19:48:17.2 - NTFSx86 NETWORK
    Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.793 [GMT 2:00]
    Endroit: D:\Documents and Settings\Admin\Bureau\ComboFix.exe

    AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !!
    .

    (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
    .

    C:\WINDOWS\system32\cvdcldwm.dll
    C:\WINDOWS\system32\uffaaxor.dll
    C:\WINDOWS\t\
    D:\Documents and Settings\Christophe\Application Data\inst.exe
    .
    ---- Previous Run -------
    .
    C:\WINDOWS\BMf3702618.xml
    C:\WINDOWS\pskt.ini
    C:\WINDOWS\system32\dptacrdr.exe
    C:\WINDOWS\system32\edlbvngd.ini
    C:\WINDOWS\system32\geBtsPHY.dll
    C:\WINDOWS\system32\gppefeda.ini
    C:\WINDOWS\system32\IQXIOnnn.ini
    C:\WINDOWS\system32\IQXIOnnn.ini2
    C:\WINDOWS\system32\mcrh.tmp
    C:\WINDOWS\system32\mjhtilmt.exe
    C:\WINDOWS\system32\mmqgarax.ini
    C:\WINDOWS\system32\naxekimg.exe
    C:\WINDOWS\system32\peceteqv.dll
    C:\WINDOWS\system32\rbrmmabn.dll
    C:\WINDOWS\system32\sayyftvy.ini
    C:\WINDOWS\system32\sgrvbqus.ini
    C:\WINDOWS\system32\tejwcatw.exe
    C:\WINDOWS\system32\ulimdejy.exe
    C:\WINDOWS\system32\urqNGvuT.dll
    C:\WINDOWS\system32\viwuamwl.ini
    C:\WINDOWS\system32\wxwmtpmw.ini
    C:\WINDOWS\system32\YHPstBeg.ini
    C:\WINDOWS\system32\YHPstBeg.ini2
    C:\WINDOWS\t\

    .
    ((((((((((((((((((((((((((((( Fichiers créés 2008-04-28 to 2008-05-28 ))))))))))))))))))))))))))))))))))))
    .

    2008-05-26 23:07 . 2008-05-26 23:07 <REP> d-------- D:\Documents and Settings\Admin\Application Data\Malwarebytes
    2008-05-26 23:01 . 2008-05-26 23:01 1,374 --a------ C:\WINDOWS\imsins.BAK
    2008-05-26 22:57 . 2008-05-26 22:57 354,560 --a------ C:\WINDOWS\system32\TuneUpDefragService.exe
    2008-05-26 22:56 . 2008-05-26 22:56 <REP> d-------- D:\Documents and Settings\Admin\Application Data\TuneUp Software
    2008-05-26 22:55 . 2008-05-26 22:57 <REP> d-------- C:\Program Files\TuneUp Utilities 2008
    2008-05-26 22:53 . 2004-09-07 15:53 <REP> d--h----- D:\Documents and Settings\Admin\Voisinage réseau
    2008-05-26 22:53 . 2004-09-06 15:57 <REP> d--h----- D:\Documents and Settings\Admin\Voisinage d'impression
    2008-05-26 22:53 . 2004-09-06 15:01 <REP> d--h----- D:\Documents and Settings\Admin\Modèles
    2008-05-26 22:53 . 2008-05-26 22:54 <REP> dr------- D:\Documents and Settings\Admin\Mes documents
    2008-05-26 22:53 . 2004-04-08 15:05 <REP> d-------- D:\Documents and Settings\Admin\Menu Démarrer
    2008-05-26 22:53 . 2008-05-26 22:54 <REP> dr------- D:\Documents and Settings\Admin\Favoris
    2008-05-26 22:53 . 2008-05-28 19:47 <REP> d-------- D:\Documents and Settings\Admin\Bureau
    2008-05-26 22:53 . 2004-09-06 16:47 <REP> d-------- D:\Documents and Settings\Admin\Application Data\Sonic
    2008-05-26 22:53 . 2004-09-06 16:40 <REP> d-------- D:\Documents and Settings\Admin\Application Data\InterTrust
    2008-05-26 22:53 . 2008-05-26 23:04 <REP> d-------- D:\Documents and Settings\Admin
    2008-05-26 22:35 . 2008-05-26 22:35 <REP> d-------- C:\VundoFix Backups
    2008-05-26 22:30 . 2008-05-26 22:30 <REP> d-------- C:\Program Files\Fichiers communs\Wise Installation Wizard
    2008-05-26 17:46 . 2008-05-26 17:46 <REP> d-------- D:\Documents and Settings\Fred\Application Data\Malwarebytes
    2008-05-23 13:59 . 2008-05-23 13:59 <REP> d-------- D:\Documents and Settings\Fred\Application Data\Sunbelt Software
    2008-05-23 08:04 . 2008-05-23 08:04 <REP> d-------- D:\Documents and Settings\Christophe\Application Data\Malwarebytes
    2008-05-23 08:04 . 2008-05-23 08:04 <REP> d-------- D:\Documents and Settings\All Users\Application Data\Malwarebytes
    2008-05-23 08:04 . 2008-05-23 08:04 <REP> d-------- C:\Program Files\Malwarebytes' Anti-Malware
    2008-05-23 08:04 . 2008-05-05 20:46 27,048 --a------ C:\WINDOWS\system32\drivers\mbamcatchme.sys
    2008-05-23 08:04 . 2008-05-05 20:46 15,864 --a------ C:\WINDOWS\system32\drivers\mbam.sys
    2008-05-22 23:26 . 2008-05-22 23:26 0 --a------ C:\WINDOWS\hUnsetup.INI
    2008-05-22 23:10 . 2008-05-22 23:10 <REP> d-------- C:\Program Files\Trend Micro
    2008-05-22 23:03 . 2008-05-22 23:07 <REP> d-------- D:\Documents and Settings\Christophe\Application Data\HAURI
    2008-05-22 22:26 . 2007-11-07 16:00 81,782 --a------ C:\WINDOWS\system32\drivers\VRFWNTD5.SYS
    2008-05-22 22:26 . 2008-05-02 17:37 79,806 --a------ C:\WINDOWS\system32\drivers\vradfil.sys
    2008-05-22 22:26 . 2007-08-24 14:00 27,260 --------- C:\WINDOWS\system32\drivers\vracfil.sys
    2008-05-22 22:26 . 2007-08-31 11:00 15,644 --------- C:\WINDOWS\system32\drivers\VRsecos.sys
    2008-05-22 22:15 . 2008-05-22 22:15 0 --a------ C:\WINDOWS\system32\SBRC.dat
    2008-05-22 22:15 . 2008-05-22 22:15 0 --a------ C:\WINDOWS\system32\SBFC.dat
    2008-05-22 22:14 . 2008-05-22 22:14 <REP> d-------- D:\Documents and Settings\Christophe\Application Data\Sunbelt Software
    2008-05-22 22:12 . 2008-05-22 22:12 <REP> d-------- C:\Program Files\Sunbelt Software
    2008-05-22 21:39 . 2008-05-22 21:39 <REP> d-------- D:\Documents and Settings\All Users\Application Data\Avira
    2008-05-22 21:39 . 2008-05-22 21:39 <REP> d-------- C:\Program Files\Avira
    2008-05-14 13:38 . 2008-05-22 22:23 <REP> d-------- D:\Documents and Settings\All Users\Application Data\Lavasoft
    2008-04-30 08:01 . 2008-05-23 19:39 664 --a------ C:\WINDOWS\system32\d3d9caps.dat
    2008-04-28 22:30 . 2008-04-28 22:30 <REP> d-a------ D:\Documents and Settings\All Users\Application Data\TEMP
    2008-04-28 22:30 . 2008-04-28 22:30 124,688 --a------ C:\WINDOWS\system32\MSWINSCK.OCX
    2008-04-28 17:17 . 2008-04-28 17:17 244 --ah----- C:\sqmnoopt04.sqm
    2008-04-28 17:17 . 2008-04-28 17:17 232 --ah----- C:\sqmdata04.sqm

    .
    (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2008-05-26 20:56 --------- d-----w D:\Documents and Settings\All Users\Application Data\TuneUp Software
    2008-05-25 19:50 --------- d-----w D:\Documents and Settings\Fred\Application Data\Ooze Wait Send
    2008-05-25 19:50 --------- d-----w D:\Documents and Settings\Fred\Application Data\Grid Gpl
    2008-05-25 19:48 --------- d-----w D:\Documents and Settings\Christophe\Application Data\Grid Gpl
    2008-05-25 19:47 --------- d-----w D:\Documents and Settings\All Users\Application Data\DumbSoapDeafGlue
    2008-05-25 19:07 --------- d--h--w C:\Program Files\InstallShield Installation Information
    2008-05-25 18:58 --------- d-----w D:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
    2008-05-25 18:58 --------- d-----w C:\Program Files\Spybot
    2008-05-25 18:43 --------- d-----w C:\Program Files\Call of Duty
    2008-05-25 18:20 --------- d-----w C:\Program Files\PANZERS - Phase1
    2008-05-22 21:06 --------- d-----w C:\Program Files\Jasc Software Inc
    2008-05-22 20:26 --------- d-----w C:\Program Files\Fichiers communs\InstallShield
    2008-05-22 18:31 --------- d-----w C:\Program Files\GrabIt
    2008-05-22 18:29 --------- d-----w C:\Program Files\Club-Internet
    2008-05-22 18:28 --------- d-----w C:\Program Files\Neodivx
    2008-05-22 18:28 --------- d-----w C:\Program Files\Fichiers communs\Adobe
    2008-05-22 18:28 --------- d-----w C:\Program Files\eMule
    2008-05-22 18:24 47,360 ----a-w D:\Documents and Settings\Christophe\Application Data\pcouffin.sys
    2008-05-22 18:24 --------- d-----w D:\Documents and Settings\Christophe\Application Data\Vso
    2008-05-22 18:24 --------- d-----w C:\Program Files\Capturino 1.4
    2008-05-20 20:02 --------- d-----w D:\Documents and Settings\Christophe\Application Data\Azureus
    2008-05-13 18:26 --------- d-----w C:\Program Files\Azureus
    2008-04-17 20:24 --------- d-----w D:\Documents and Settings\Fred\Application Data\Skype
    2008-04-17 15:39 --------- d-----w D:\Documents and Settings\Fred\Application Data\skypePM
    2008-04-17 10:12 --------- d-----w D:\Documents and Settings\Christophe\Application Data\ZoomBrowser EX
    2008-04-17 10:11 --------- d-----w D:\Documents and Settings\All Users\Application Data\ZoomBrowser
    2008-04-16 20:08 --------- d-----w C:\Program Files\Lavalys
    2008-04-04 12:51 28,416 ----a-w C:\WINDOWS\system32\uxtuneup.dll
    2008-03-28 12:43 --------- d-----w D:\Documents and Settings\Fred\Application Data\ZoomBrowser EX
    2008-03-25 04:51 621,344 ----a-w C:\WINDOWS\system32\mswstr10.dll
    2008-03-25 04:51 194,144 ----a-w C:\WINDOWS\system32\msjint40.dll
    2008-03-20 08:09 1,845,376 ----a-w C:\WINDOWS\system32\win32k.sys
    2008-03-01 12:58 826,368 ----a-w C:\WINDOWS\system32\wininet.dll
    2007-11-22 20:43 32 ----a-w D:\Documents and Settings\All Users\Application Data\ezsid.dat
    2005-12-26 11:19 774,144 ----a-w C:\Program Files\RngInterstitial.dll
    2005-01-06 18:57 56 --sh--r C:\WINDOWS\system32\2944FC89D0.sys
    2006-05-23 13:14 3,350 --sha-w C:\WINDOWS\system32\KGyGaAvL.sys
    .

    ((((((((((((((((((((((((((((( snapshot@2008-05-26_22.50.03.25 )))))))))))))))))))))))))))))))))))))))))
    .
    + 2005-01-27 17:12:51 1,017,344 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\browseui.dll
    + 2005-01-27 17:12:51 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\cdfview.dll
    + 2005-01-27 17:12:51 249,856 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\iepeers.dll
    + 2005-01-27 17:12:51 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\inseng.dll
    + 2005-01-27 08:12:54 3,008,000 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\mshtml.dll
    + 2005-01-27 17:12:53 1,484,800 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\shdocvw.dll
    + 2005-01-27 17:12:53 474,112 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\shlwapi.dll
    + 2005-01-27 17:12:53 605,696 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\urlmon.dll
    + 2005-01-27 17:12:54 662,016 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\wininet.dll
    + 2004-11-30 22:29:58 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB867282\spmsg.dll
    + 2004-12-01 05:48:32 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB867282\spuninst.exe
    + 2004-12-01 05:48:31 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB867282\update\spcustom.dll
    + 2004-11-30 22:46:51 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB867282\update\update.exe
    + 2005-01-14 08:56:43 1,284,608 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2GDR\ole32.dll
    + 2005-01-14 08:56:43 75,264 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2GDR\olecli32.dll
    + 2005-01-14 08:56:43 37,888 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2GDR\olecnv32.dll
    + 2005-01-14 08:56:44 395,776 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2GDR\rpcss.dll
    + 2005-01-14 05:08:27 1,284,608 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2QFE\ole32.dll
    + 2005-01-14 05:08:27 75,264 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2QFE\olecli32.dll
    + 2005-01-14 05:08:27 37,376 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2QFE\olecnv32.dll
    + 2005-01-14 05:08:27 395,776 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2QFE\rpcss.dll
    + 2004-11-30 13:46:52 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB873333\spmsg.dll
    + 2004-11-30 19:22:42 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB873333\spuninst.exe
    + 2004-11-30 19:22:42 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB873333\update\spcustom.dll
    + 2004-11-30 13:46:52 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB873333\update\update.exe
    + 2004-11-17 17:42:33 354,304 ----a-w C:\WINDOWS\$hf_mig$\KB873339\SP2GDR\hypertrm.dll
    + 2004-11-17 17:41:19 354,304 ----a-w C:\WINDOWS\$hf_mig$\KB873339\SP2QFE\hypertrm.dll
    + 2004-10-14 09:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB873339\spmsg.dll
    + 2004-10-14 09:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB873339\spuninst.exe
    + 2004-10-14 09:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB873339\update\spcustom.dll
    + 2004-10-14 09:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB873339\update\update.exe
    + 2005-05-02 20:58:35 1,020,416 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\browseui.dll
    + 2005-05-02 20:58:35 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\cdfview.dll
    + 2005-05-01 00:12:37 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\iedw.exe
    + 2005-05-02 20:58:35 250,880 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\iepeers.dll
    + 2005-05-02 20:58:35 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\inseng.dll
    + 2005-05-02 20:58:35 3,012,608 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\mshtml.dll
    + 2005-05-02 20:58:35 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\mshtmled.dll
    + 2005-05-02 20:58:35 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\msrating.dll
    + 2005-05-02 20:58:35 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\pngfilt.dll
    + 2005-05-02 20:58:35 1,485,312 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\shdocvw.dll
    + 2005-05-02 20:58:35 474,112 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\shlwapi.dll
    + 2005-05-02 20:58:35 606,208 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\urlmon.dll
    + 2005-05-02 20:58:35 663,040 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\wininet.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB883939\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB883939\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB883939\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB883939\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB883939\update\updspapi.dll
    + 2005-01-19 04:26:52 451,584 ----a-w C:\WINDOWS\$hf_mig$\KB885250\SP2GDR\mrxsmb.sys
    + 2005-01-19 03:51:57 451,584 ----a-w C:\WINDOWS\$hf_mig$\KB885250\SP2QFE\mrxsmb.sys
    + 2004-11-30 13:46:52 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB885250\spmsg.dll
    + 2004-11-30 19:22:42 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB885250\spuninst.exe
    + 2004-11-30 19:22:42 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB885250\update\spcustom.dll
    + 2004-11-30 13:46:52 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB885250\update\update.exe
    + 2004-10-28 01:23:59 728,576 ----a-w C:\WINDOWS\$hf_mig$\KB885835\SP2GDR\lsasrv.dll
    + 2004-10-28 01:14:18 448,128 ----a-w C:\WINDOWS\$hf_mig$\KB885835\SP2GDR\mrxsmb.sys
    + 2004-10-28 01:13:58 174,592 ----a-w C:\WINDOWS\$hf_mig$\KB885835\SP2GDR\rdbss.sys
    + 2004-10-28 01:29:47 728,576 ----a-w C:\WINDOWS\$hf_mig$\KB885835\SP2QFE\lsasrv.dll
    + 2004-10-28 01:15:16 448,128 ----a-w C:\WINDOWS\$hf_mig$\KB885835\SP2QFE\mrxsmb.sys
    + 2004-10-28 01:14:56 174,592 ----a-w C:\WINDOWS\$hf_mig$\KB885835\SP2QFE\rdbss.sys
    + 2004-10-14 10:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB885835\spmsg.dll
    + 2004-10-14 10:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB885835\spuninst.exe
    + 2004-10-14 10:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB885835\update\spcustom.dll
    + 2004-10-14 10:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB885835\update\update.exe
    + 2004-10-14 10:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB885836\spmsg.dll
    + 2004-10-14 10:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB885836\spuninst.exe
    + 2004-10-14 10:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB885836\update\spcustom.dll
    + 2004-10-14 10:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB885836\update\update.exe
    + 2004-09-29 22:31:17 134,912 ----a-w C:\WINDOWS\$hf_mig$\KB886185\SP2QFE\ipnat.sys
    + 2004-10-14 18:35:06 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB886185\spmsg.dll
    + 2004-10-14 18:36:20 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB886185\spuninst.exe
    + 2004-10-14 18:36:19 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB886185\update\spcustom.dll
    + 2004-10-14 18:35:11 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB886185\update\update.exe
    + 2004-10-13 16:21:24 1,694,208 ----a-w C:\WINDOWS\$hf_mig$\KB887472\SP2QFE\msmsgs.exe
    + 2004-10-14 10:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB887472\spmsg.dll
    + 2004-10-14 10:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB887472\spuninst.exe
    + 2004-10-14 10:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB887472\update\spcustom.dll
    + 2004-10-14 10:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB887472\update\update.exe
    + 2004-10-08 23:18:27 262,272 ----a-w C:\WINDOWS\$hf_mig$\KB887742\SP2QFE\http.sys
    + 2004-10-14 09:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB887742\spmsg.dll
    + 2004-10-14 09:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB887742\spuninst.exe
    + 2004-10-14 09:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB887742\update\spcustom.dll
    + 2004-10-14 09:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB887742\update\update.exe
    + 2004-10-19 00:04:11 679,424 ----a-w C:\WINDOWS\$hf_mig$\KB887797\SP2QFE\inetcomm.dll
    + 2004-10-19 00:04:12 1,311,744 ----a-w C:\WINDOWS\$hf_mig$\KB887797\SP2QFE\msoe.dll
    + 2004-10-19 00:04:12 505,344 ----a-w C:\WINDOWS\$hf_mig$\KB887797\SP2QFE\wab32.dll
    + 2004-10-19 00:04:12 85,504 ----a-w C:\WINDOWS\$hf_mig$\KB887797\SP2QFE\wabimp.dll
    + 2004-10-14 10:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB887797\spmsg.dll
    + 2004-10-14 10:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB887797\spuninst.exe
    + 2004-10-14 10:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB887797\update\spcustom.dll
    + 2004-10-14 10:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB887797\update\update.exe
    + 2004-11-16 21:17:57 68,608 ----a-w C:\WINDOWS\$hf_mig$\KB888113\SP2GDR\hlink.dll
    + 2004-11-16 21:16:08 68,608 ----a-w C:\WINDOWS\$hf_mig$\KB888113\SP2QFE\hlink.dll
    + 2004-10-14 09:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB888113\spmsg.dll
    + 2004-10-14 09:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB888113\spuninst.exe
    + 2004-10-14 09:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB888113\update\spcustom.dll
    + 2004-10-14 09:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB888113\update\update.exe
    + 2004-12-07 19:34:00 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB888302\SP2GDR\srvsvc.dll
    + 2004-12-07 19:32:32 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB888302\SP2QFE\srvsvc.dll
    + 2004-11-30 13:46:52 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB888302\spmsg.dll
    + 2004-11-30 19:22:42 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB888302\spuninst.exe
    + 2004-11-30 19:22:42 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB888302\update\spcustom.dll
    + 2004-11-30 13:46:52 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB888302\update\update.exe
    + 2005-04-22 05:20:19 57,344 ----a-w C:\WINDOWS\$hf_mig$\KB890046\SP2QFE\agentdpv.dll
    + 2005-05-17 00:44:44 19,456 ----a-w C:\WINDOWS\$hf_mig$\KB890046\SP2QFE\spru040c.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB890046\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB890046\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB890046\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB890046\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB890046\update\updspapi.dll
    + 2004-12-21 19:59:07 8,506,368 ----a-w C:\WINDOWS\$hf_mig$\KB890047\SP2GDR\shell32.dll
    + 2004-12-21 19:46:25 8,507,392 ----a-w C:\WINDOWS\$hf_mig$\KB890047\SP2QFE\shell32.dll
    + 2004-11-30 13:46:52 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB890047\spmsg.dll
    + 2004-11-30 19:22:42 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB890047\spuninst.exe
    + 2004-11-30 19:22:42 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB890047\update\spcustom.dll
    + 2004-11-30 13:46:52 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB890047\update\update.exe
    + 2004-11-30 13:46:52 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB890175\spmsg.dll
    + 2004-11-30 19:22:42 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB890175\spuninst.exe
    + 2004-11-30 19:22:42 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB890175\update\spcustom.dll
    + 2004-11-30 13:46:52 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB890175\update\update.exe
    + 2005-03-02 18:20:31 62,464 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\authz.dll
    + 2005-03-02 18:13:13 2,137,600 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntkrnlmp.exe
    + 2005-03-02 18:13:12 2,059,008 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntkrnlpa.exe
    + 2005-03-02 18:13:16 2,017,280 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntkrpamp.exe
    + 2005-03-02 18:13:23 2,181,632 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntoskrnl.exe
    + 2005-03-02 18:20:32 578,048 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\user32.dll
    + 2005-03-02 18:13:08 1,836,416 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\win32k.sys
    + 2005-03-02 18:20:32 291,840 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\winsrv.dll
    + 2005-02-24 17:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB890859\spmsg.dll
    + 2005-02-24 17:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB890859\spuninst.exe
    + 2005-02-24 17:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB890859\update\spcustom.dll
    + 2005-02-24 17:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB890859\update\update.exe
    + 2005-02-24 17:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB890859\update\updspapi.dll
    + 2005-03-10 07:48:24 1,017,344 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\browseui.dll
    + 2005-03-10 07:48:24 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\cdfview.dll
    + 2005-03-10 07:48:24 250,880 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\iepeers.dll
    + 2005-03-10 07:48:24 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\inseng.dll
    + 2005-03-10 07:48:25 3,011,072 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\mshtml.dll
    + 2005-03-10 07:48:25 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\msrating.dll
    + 2005-03-10 07:48:25 1,484,800 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\shdocvw.dll
    + 2005-03-10 07:48:25 474,112 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\shlwapi.dll
    + 2005-03-10 07:48:25 605,696 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\urlmon.dll
    + 2005-03-10 07:48:25 662,016 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\wininet.dll
    + 2005-02-24 17:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB890923\spmsg.dll
    + 2005-02-24 17:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB890923\spuninst.exe
    + 2005-02-24 17:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB890923\update\spcustom.dll
    + 2005-02-24 17:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB890923\update\update.exe
    + 2005-02-24 17:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB890923\update\updspapi.dll
    + 2004-11-30 13:46:52 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB891781\spmsg.dll
    + 2004-11-30 19:22:42 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB891781\spuninst.exe
    + 2004-11-30 19:22:42 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB891781\update\spcustom.dll
    + 2004-11-30 13:46:52 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB891781\update\update.exe
    + 2005-05-25 19:07:12 359,936 ----a-w C:\WINDOWS\$hf_mig$\KB893066\SP2QFE\tcpip.sys
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB893066\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB893066\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB893066\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB893066\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB893066\update\updspapi.dll
    + 2005-02-28 23:10:59 8,507,904 ----a-w C:\WINDOWS\$hf_mig$\KB893086\SP2QFE\shell32.dll
    + 2005-02-24 17:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB893086\spmsg.dll
    + 2005-02-24 17:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB893086\spuninst.exe
    + 2005-02-24 17:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB893086\update\spcustom.dll
    + 2005-02-24 17:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB893086\update\update.exe
    + 2005-02-24 17:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB893086\update\updspapi.dll
    + 2005-07-08 16:30:34 249,344 ----a-w C:\WINDOWS\$hf_mig$\KB893756\SP2QFE\tapisrv.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB893756\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB893756\spuninst.exe
    + 2005-07-07 17:27:08 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB893756\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB893756\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB893756\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB893756\update\updspapi.dll
    + 2005-04-28 19:36:10 1,286,144 ----a-w C:\WINDOWS\$hf_mig$\KB894391\SP2QFE\ole32.dll
    + 2005-04-28 19:36:09 75,264 ----a-w C:\WINDOWS\$hf_mig$\KB894391\SP2QFE\olecli32.dll
    + 2005-04-28 19:36:09 37,376 ----a-w C:\WINDOWS\$hf_mig$\KB894391\SP2QFE\olecnv32.dll
    + 2005-04-28 19:36:09 396,288 ----a-w C:\WINDOWS\$hf_mig$\KB894391\SP2QFE\rpcss.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB894391\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB894391\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB894391\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB894391\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB894391\update\updspapi.dll
    + 2005-05-26 23:26:50 10,752 ----a-w C:\WINDOWS\$hf_mig$\KB896358\SP2QFE\hh.exe
    + 2005-05-27 02:11:03 41,472 ----a-w C:\WINDOWS\$hf_mig$\KB896358\SP2QFE\hhsetup.dll
    + 2005-05-27 02:11:03 155,136 ----a-w C:\WINDOWS\$hf_mig$\KB896358\SP2QFE\itircl.dll
    + 2005-05-27 02:11:03 137,216 ----a-w C:\WINDOWS\$hf_mig$\KB896358\SP2QFE\itss.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896358\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896358\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896358\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896358\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896358\update\updspapi.dll
    + 2005-05-10 00:22:21 332,544 ----a-w C:\WINDOWS\$hf_mig$\KB896422\SP2QFE\srv.sys
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896422\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896422\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896422\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896422\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896422\update\updspapi.dll
    + 2005-06-11 00:17:13 57,856 ----a-w C:\WINDOWS\$hf_mig$\KB896423\SP2QFE\spoolsv.exe
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896423\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896423\spuninst.exe
    + 2005-06-29 14:54:32 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB896423\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896423\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896423\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896423\update\updspapi.dll
    + 2005-10-06 03:19:52 280,064 ----a-w C:\WINDOWS\$hf_mig$\KB896424\SP2QFE\gdi32.dll
    + 2005-10-06 03:12:57 1,839,616 ----a-w C:\WINDOWS\$hf_mig$\KB896424\SP2QFE\win32k.sys
    + 2005-02-24 19:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896424\spmsg.dll
    + 2005-02-24 19:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896424\spuninst.exe
    + 2005-10-05 15:39:46 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB896424\update\arpidfix.exe
    + 2005-02-24 19:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896424\update\spcustom.dll
    + 2005-02-24 19:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896424\update\update.exe
    + 2005-02-24 19:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896424\update\updspapi.dll
    + 2005-05-11 02:33:19 78,336 ----a-w C:\WINDOWS\$hf_mig$\KB896428\SP2QFE\telnet.exe
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896428\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896428\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896428\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896428\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896428\update\updspapi.dll
    + 2005-09-03 00:08:20 1,020,416 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\browseui.dll
    + 2005-09-03 00:08:20 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\cdfview.dll
    + 2005-09-03 00:08:21 1,056,256 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\danim.dll
    + 2005-09-03 00:08:21 205,312 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\dxtrans.dll
    + 2005-09-03 00:08:21 55,808 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\extmgr.dll
    + 2005-09-02 21:52:55 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\iedw.exe
    + 2005-09-03 00:08:21 251,904 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\iepeers.dll
    + 2005-09-03 00:08:21 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\inseng.dll
    + 2005-10-05 00:51:10 3,015,680 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\mshtml.dll
    + 2005-09-03 00:08:21 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\mshtmled.dll
    + 2005-09-03 00:08:21 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\msrating.dll
    + 2005-09-03 00:08:21 530,432 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\mstime.dll
    + 2005-09-03 00:08:21 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\pngfilt.dll
    + 2005-09-03 00:08:21 1,486,336 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\shdocvw.dll
    + 2005-09-03 00:08:21 474,624 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\shlwapi.dll
    + 2005-09-03 00:08:21 606,208 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\urlmon.dll
    + 2005-09-03 00:08:21 664,576 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\wininet.dll
    + 2005-02-25 03:35:24 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896688\spmsg.dll
    + 2005-02-25 03:35:24 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896688\spuninst.exe
    + 2005-10-04 22:39:55 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB896688\update\arpidfix.exe
    + 2005-02-25 03:35:24 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896688\update\spcustom.dll
    + 2005-02-25 03:35:24 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896688\update\update.exe
    + 2005-02-25 03:35:25 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896688\update\updspapi.dll
    + 2005-07-03 02:10:44 1,020,416 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\browseui.dll
    + 2005-07-03 02:10:44 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\cdfview.dll
    + 2005-07-02 23:38:24 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\iedw.exe
    + 2005-07-03 02:10:44 251,904 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\iepeers.dll
    + 2005-07-03 02:10:45 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\inseng.dll
    + 2005-07-20 02:05:47 3,014,144 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\mshtml.dll
    + 2005-07-03 02:10:49 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\mshtmled.dll
    + 2005-07-03 02:10:49 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\msrating.dll
    + 2005-07-03 02:10:49 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\pngfilt.dll
    + 2005-07-03 02:10:51 1,485,824 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\shdocvw.dll
    + 2005-07-03 02:10:52 474,112 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\shlwapi.dll
    + 2005-07-03 02:10:53 606,208 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\urlmon.dll
    + 2005-07-03 02:10:54 663,552 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\wininet.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896727\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896727\spuninst.exe
    + 2005-07-19 14:40:46 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB896727\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896727\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896727\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896727\update\updspapi.dll
    + 2005-02-25 03:35:24 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB898461\spmsg.dll
    + 2005-02-25 03:35:24 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB898461\spuninst.exe
    + 2005-02-25 03:35:24 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB898461\spupdsvc.exe
    + 2005-02-25 03:35:24 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB898461\update\spcustom.dll
    + 2005-02-25 03:35:24 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB898461\update\update.exe
    + 2005-02-25 03:35:25 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB898461\update\updspapi.dll
    + 2005-06-15 17:48:49 297,984 ----a-w C:\WINDOWS\$hf_mig$\KB899587\SP2QFE\kerberos.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB899587\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB899587\spuninst.exe
    + 2005-06-29 14:54:32 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB899587\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB899587\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB899587\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB899587\update\updspapi.dll
    + 2005-06-30 02:07:51 119,808 ----a-w C:\WINDOWS\$hf_mig$\KB899588\SP2QFE\umpnpmgr.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB899588\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB899588\spuninst.exe
    + 2005-06-29 14:54:32 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB899588\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB899588\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB899588\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB899588\update\updspapi.dll
    + 2005-06-10 04:06:01 139,528 ----a-w C:\WINDOWS\$hf_mig$\KB899591\SP2QFE\rdpwd.sys
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB899591\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB899591\spuninst.exe
    + 2005-06-29 14:54:32 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB899591\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB899591\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB899591\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB899591\update\updspapi.dll
    + 2006-02-15 00:30:07 142,464 ----a-w C:\WINDOWS\$hf_mig$\KB900485\SP2QFE\aec.sys
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB900485\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB900485\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB900485\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB900485\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB900485\update\updspapi.dll
    + 2005-09-01 01:46:30 19,968 ----a-w C:\WINDOWS\$hf_mig$\KB900725\SP2QFE\linkinfo.dll
    + 2005-09-23 03:26:14 8,508,928 ----a-w C:\WINDOWS\$hf_mig$\KB900725\SP2QFE\shell32.dll
    + 2005-09-03 00:08:21 474,624 ----a-w C:\WINDOWS\$hf_mig$\KB900725\SP2QFE\shlwapi.dll
    + 2005-09-27 00:47:42 23,552 ----a-w C:\WINDOWS\$hf_mig$\KB900725\SP2QFE\spru040c.dll
    + 2005-09-01 01:46:31 292,352 ----a-w C:\WINDOWS\$hf_mig$\KB900725\SP2QFE\winsrv.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB900725\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB900725\spuninst.exe
    + 2005-09-26 15:36:24 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB900725\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB900725\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB900725\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB900725\update\updspapi.dll
    + 2005-05-05 21:25:52 679,424 ----a-w C:\WINDOWS\$hf_mig$\KB900930\SP2QFE\inetcomm.dll
    + 2005-05-05 21:25:53 1,311,744 ----a-w C:\WINDOWS\$hf_mig$\KB900930\SP2QFE\msoe.dll
    + 2005-02-24 19:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB900930\spmsg.dll
    + 2005-02-24 19:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB900930\spuninst.exe
    + 2005-02-24 19:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB900930\update\spcustom.dll
    + 2005-02-24 19:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB900930\update\update.exe
    + 2005-02-24 19:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB900930\update\updspapi.dll
    + 2005-09-10 01:53:06 2,068,480 ----a-w C:\WINDOWS\$hf_mig$\KB901017\SP2QFE\cdosys.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB901017\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB901017\spuninst.exe
    + 2005-09-09 14:26:26 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB901017\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB901017\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB901017\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB901017\update\updspapi.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB901190\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB901190\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB901190\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB901190\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB901190\update\updspapi.dll
    + 2005-06-29 01:54:24 254,976 ----a-w C:\WINDOWS\$hf_mig$\KB901214\SP2QFE\icm32.dll
    + 2005-06-29 01:54:24 73,728 ----a-w C:\WINDOWS\$hf_mig$\KB901214\SP2QFE\mscms.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB901214\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB901214\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB901214\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB901214\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB901214\update\updspapi.dll
    + 2005-07-26 04:29:18 225,792 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\catsrv.dll
    + 2005-07-26 04:29:19 625,152 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\catsrvut.dll
    + 2005-07-26 04:29:20 110,080 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\clbcatex.dll
    + 2005-07-26 04:29:21 498,688 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\clbcatq.dll
    + 2005-07-26 04:29:21 60,416 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\colbact.dll
    + 2005-07-26 04:29:22 195,072 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\comadmin.dll
    + 2005-07-26 04:29:23 97,792 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\comrepl.dll
    + 2005-07-26 04:29:25 1,267,200 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\comsvcs.dll
    + 2005-07-26 04:29:27 540,160 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\comuid.dll
    + 2005-07-26 04:29:28 243,200 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\es.dll
    + 2005-07-25 23:42:35 8,704 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\migregdb.exe
    + 2005-07-26 04:29:29 425,472 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\msdtcprx.dll
    + 2005-07-26 04:29:31 945,152 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\msdtctm.dll
    + 2005-07-26 04:29:32 161,280 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\msdtcuiu.dll
    + 2005-07-26 04:29:32 66,560 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\mtxclu.dll
    + 2005-07-26 04:29:32 91,136 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\mtxoci.dll
    + 2005-07-26 04:29:37 1,285,632 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\ole32.dll
    + 2005-07-26 04:29:38 75,264 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\olecli32.dll
    + 2005-07-26 04:29:38 37,376 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\olecnv32.dll
    + 2005-07-26 04:29:39 398,336 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\rpcss.dll
    + 2005-07-26 04:29:40 101,376 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\txflog.dll
    + 2005-07-26 04:29:40 11,776 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\xolehlp.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB902400\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB902400\spuninst.exe
    + 2005-07-25 17:21:18 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB902400\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB902400\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB902400\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB902400\update\updspapi.dll
    + 2005-08-30 04:16:04 1,293,824 ----a-w C:\WINDOWS\$hf_mig$\KB904706\SP2QFE\quartz.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB904706\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB904706\spuninst.exe
    + 2005-08-29 17:02:00 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB904706\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB904706\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB904706\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB904706\update\updspapi.dll
    + 2006-03-24 04:49:05 49,152 ----a-w C:\WINDOWS\$hf_mig$\KB904942\SP2QFE\wdigest.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB904942\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB904942\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB904942\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB904942\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB904942\update\updspapi.dll
    + 2005-08-22 18:26:27 197,632 ----a-w C:\WINDOWS\$hf_mig$\KB905414\SP2QFE\netman.dll
    + 2005-02-25 03:35:24 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB905414\spmsg.dll
    + 2005-02-25 03:35:24 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB905414\spuninst.exe
    + 2005-08-19 23:50:31 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB905414\update\arpidfix.exe
    + 2005-02-25 03:35:24 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB905414\update\spcustom.dll
    + 2005-02-25 03:35:24 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB905414\update\update.exe
    + 2005-02-25 03:35:25 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB905414\update\updspapi.dll
    + 2005-08-23 03:41:23 124,928 ----a-w C:\WINDOWS\$hf_mig$\KB905749\SP2QFE\umpnpmgr.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB905749\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB905749\spuninst.exe
    + 2005-08-22 16:01:30 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB905749\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB905749\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB905749\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB905749\update\updspapi.dll
    + 2005-11-23 23:52:31 1,022,464 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\browseui.dll
    + 2005-10-21 03:39:13 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\cdfview.dll
    + 2005-11-05 03:35:38 1,056,768 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\danim.dll
    + 2005-10-21 03:39:14 205,312 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\dxtrans.dll
    + 2005-10-21 03:39:14 55,808 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\extmgr.dll
    + 2005-10-21 01:54:43 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\iedw.exe
    + 2005-10-21 03:39:14 251,904 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\iepeers.dll
    + 2005-10-21 03:39:14 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\inseng.dll
    + 2005-11-23 23:52:32 3,016,192 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\mshtml.dll
    + 2005-10-21 03:39:16 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\mshtmled.dll
    + 2005-10-21 03:39:16 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\msrating.dll
    + 2005-10-21 03:39:17 530,944 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\mstime.dll
    + 2005-10-21 03:39:17 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\pngfilt.dll
    + 2005-12-01 04:06:57 1,495,040 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\shdocvw.dll
    + 2005-10-21 03:39:18 474,624 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\shlwapi.dll
    + 2005-11-05 03:35:42 607,232 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\urlmon.dll
    + 2005-10-21 03:39:19 665,600 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\wininet.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB905915\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB905915\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB905915\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB905915\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB905915\update\updspapi.dll
    + 2005-10-17 21:26:30 80,896 ----a-w C:\WINDOWS\$hf_mig$\KB908519\SP2QFE\fontsub.dll
    + 2005-10-17 21:26:30 117,760 ----a-w C:\WINDOWS\$hf_mig$\KB908519\SP2QFE\t2embed.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB908519\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB908519\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB908519\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB908519\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB908519\update\updspapi.dll
    + 2006-03-17 04:49:25 8,510,976 ----a-w C:\WINDOWS\$hf_mig$\KB908531\SP2QFE\shell32.dll
    + 2006-03-22 01:51:44 25,088 ----a-w C:\WINDOWS\$hf_mig$\KB908531\SP2QFE\spru040c.dll
    + 2006-03-17 01:05:35 28,672 ----a-w C:\WINDOWS\$hf_mig$\KB908531\SP2QFE\verclsid.exe
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB908531\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB908531\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB908531\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB908531\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB908531\update\updspapi.dll
    + 2005-10-20 22:32:17 1,097,728 ----a-w C:\WINDOWS\$hf_mig$\KB910437\SP2QFE\esent.dll
    + 2005-10-12 23:15:23 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB910437\spmsg.dll
    + 2005-10-12 23:15:24 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB910437\spuninst.exe
    + 2005-10-12 23:15:23 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB910437\update\spcustom.dll
    + 2005-10-12 23:15:26 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB910437\update\update.exe
    + 2005-10-12 23:15:43 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB910437\update\updspapi.dll
    + 2006-05-14 08:59:06 180,736 ----a-w C:\WINDOWS\$hf_mig$\KB911280\SP2QFE\rasmans.dll
    + 2005-10-12 23:18:45 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB911280\spmsg.dll
    + 2005-10-12 23:18:45 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB911280\spuninst.exe
    + 2005-10-12 23:18:45 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB911280\update\spcustom.dll
    + 2005-10-12 23:18:46 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB911280\update\update.exe
    + 2005-10-12 23:18:49 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB911280\update\updspapi.dll
    + 2006-03-23 05:53:24 143,360 ----a-w C:\WINDOWS\$hf_mig$\KB911562\SP2QFE\msadco.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB911562\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB911562\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB911562\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB911562\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB911562\update\updspapi.dll
    + 2006-03-17 09:14:31 679,424 ----a-w C:\WINDOWS\$hf_mig$\KB911567\SP2QFE\inetcomm.dll
    + 2006-03-17 09:14:31 1,311,744 ----a-w C:\WINDOWS\$hf_mig$\KB911567\SP2QFE\msoe.dll
    + 2006-03-17 09:14:31 510,464 ----a-w C:\WINDOWS\$hf_mig$\KB911567\SP2QFE\wab32.dll
    + 2006-03-17 09:14:31 85,504 ----a-w C:\WINDOWS\$hf_mig$\KB911567\SP2QFE\wabimp.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB911567\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB911567\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB911567\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB911567\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB911567\update\updspapi.dll
    + 2006-01-04 04:19:19 68,096 ----a-w C:\WINDOWS\$hf_mig$\KB911927\SP2QFE\webclnt.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB911927\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB911927\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB911927\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB911927\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB911927\update\updspapi.dll
    + 2006-03-04 04:00:27 1,022,976 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\browseui.dll
    + 2006-03-04 04:00:27 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\cdfview.dll
    + 2006-03-04 04:00:27 1,056,768 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\danim.dll
    + 2006-03-04 04:00:27 205,312 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\dxtrans.dll
    + 2006-03-04 04:00:27 55,808 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\extmgr.dll
    + 2006-03-04 01:34:41 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\iedw.exe
    + 2006-03-04 04:00:28 251,904 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\iepeers.dll
    + 2006-03-04 04:00:28 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\inseng.dll
    + 2006-03-23 20:32:00 3,076,608 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\mshtml.dll
    + 2006-03-04 04:00:29 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\mshtmled.dll
    + 2006-03-04 04:00:29 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\msrating.dll
    + 2006-03-04 04:00:30 532,480 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\mstime.dll
    + 2006-03-04 04:00:30 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\pngfilt.dll
    + 2006-03-30 09:29:27 1,495,040 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\shdocvw.dll
    + 2006-03-04 04:00:31 474,624 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\shlwapi.dll
    + 2006-03-30 01:52:07 25,088 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\spru040c.dll
    + 2006-03-18 11:07:51 616,448 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\urlmon.dll
    + 2006-03-04 04:00:31 667,648 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\wininet.dll
    + 2005-10-12 23:18:45 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB912812\spmsg.dll
    + 2005-10-12 23:18:45 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB912812\spuninst.exe
    + 2005-10-12 23:18:45 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB912812\update\spcustom.dll
    + 2005-10-12 23:18:46 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB912812\update\update.exe
    + 2005-10-12 23:18:49 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB912812\update\updspapi.dll
    + 2005-12-29 03:08:43 280,064 ----a-w C:\WINDOWS\$hf_mig$\KB912919\SP2QFE\gdi32.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB912919\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB912919\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB912919\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB912919\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB912919\update\updspapi.dll
    + 2006-01-13 17:07:08 360,448 ----a-w C:\WINDOWS\$hf_mig$\KB913446\SP2QFE\tcpip.sys
    + 2005-10-12 23:15:23 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB913446\spmsg.dll
    + 2005-10-12 23:15:24 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB913446\spuninst.exe
    + 2005-10-12 23:15:23 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB913446\update\spcustom.dll
    + 2005-10-12 23:15:26 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB913446\update\update.exe
    + 2005-10-12 23:15:43 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB913446\update\updspapi.dll
    + 2006-03-01 19:42:12 426,496 ----a-w C:\WINDOWS\$hf_mig$\KB913580\SP2QFE\msdtcprx.dll
    + 2006-03-01 19:42:12 956,416 ----a-w C:\WINDOWS\$hf_mig$\KB913580\SP2QFE\msdtctm.dll
    + 2006-03-01 19:42:12 161,280 ----a-w C:\WINDOWS\$hf_mig$\KB913580\SP2QFE\msdtcuiu.dll
    + 2006-03-01 19:42:12 66,560 ----a-w C:\WINDOWS\$hf_mig$\KB913580\SP2QFE\mtxclu.dll
    + 2006-03-01 19:42:12 91,136 ----a-w C:\WINDOWS\$hf_mig$\KB913580\SP2QFE\mtxoci.dll
    + 2006-03-01 19:42:12 11,776 ----a-w C:\WINDOWS\$hf_mig$\KB913580\SP2QFE\xolehlp.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB913580\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB913580\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB913580\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB913580\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB913580\update\updspapi.dll
    + 2006-05-19 14:16:50 112,640 ----a-w C:\WINDOWS\$hf_mig$\KB914388\SP2QFE\dhcpcsvc.dll
    + 2006-05-19 14:16:51 147,456 ----a-w C:\WINDOWS\$hf_mig$\KB914388\SP2QFE\dnsapi.dll
    + 2006-05-19 14:16:51 95,744 ----a-w C:\WINDOWS\$hf_mig$\KB914388\SP2QFE\iphlpapi.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB914388\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB914388\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB914388\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB914388\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB914388\update\updspapi.dll
    + 2006-05-05 10:16:39 454,400 ----a-w C:\WINDOWS\$hf_mig$\KB914389\SP2QFE\mrxsmb.sys
    + 2006-05-05 10:22:52 174,592 ----a-w C:\WINDOWS\$hf_mig$\KB914389\SP2QFE\rdbss.sys
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB914389\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB914389\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB914389\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB914389\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB914389\update\updspapi.dll
    + 2006-07-14 15:52:22 121,856 ----a-w C:\WINDOWS\$hf_mig$\KB915865\SP2QFE\xmllite.dll
    + 2005-10-12 23:12:25 14,048 ----a-w C:\WINDOWS\$hf_mig$\KB915865\spmsg.dll
    + 2005-10-12 23:12:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB915865\spuninst.exe
    + 2005-10-12 23:12:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB915865\update\spcustom.dll
    + 2005-10-12 23:12:28 716,000 ----a-w C:\WINDOWS\$hf_mig$\KB915865\update\update.exe
    + 2005-10-12 23:12:33 371,424 ----a-w C:\WINDOWS\$hf_mig$\KB915865\update\updspapi.dll
    + 2006-05-10 05:26:47 1,022,976 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\browseui.dll
    + 2006-05-10 05:26:47 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\cdfview.dll
    + 2006-05-10 05:26:47 1,056,768 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\danim.dll
    + 2006-05-10 05:26:47 357,888 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\dxtmsft.dll
    + 2006-05-10 05:26:47 205,312 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\dxtrans.dll
    + 2006-05-10 05:26:47 55,808 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\extmgr.dll
    + 2006-05-09 11:41:31 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\iedw.exe
    + 2006-05-10 05:26:47 251,904 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\iepeers.dll
    + 2006-05-10 05:26:47 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\inseng.dll
    + 2006-05-10 05:26:47 15,872 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\jsproxy.dll
    + 2006-05-19 15:07:57 3,076,096 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\mshtml.dll
    + 2006-05-10 05:26:49 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\mshtmled.dll
    + 2006-05-10 05:26:49 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\msrating.dll
    + 2006-05-10 05:26:49 532,480 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\mstime.dll
    + 2006-05-10 05:26:49 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\pngfilt.dll
    + 2006-05-29 15:34:15 1,496,576 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\shdocvw.dll
    + 2006-05-10 05:26:49 474,624 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\shlwapi.dll
    + 2006-05-11 08:58:36 100,352 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\spru040c.dll
    + 2006-05-10 05:26:50 617,472 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\urlmon.dll
    + 2006-05-10 05:26:50 667,648 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\wininet.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB916281\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB916281\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB916281\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB916281\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB916281\update\updspapi.dll
    + 2006-03-17 01:08:10 262,656 ----a-w C:\WINDOWS\$hf_mig$\KB916595\SP2QFE\http.sys
    + 2005-10-12 23:18:45 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB916595\spmsg.dll
    + 2005-10-12 23:18:45 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB916595\spuninst.exe
    + 2005-10-12 23:18:45 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB916595\update\spcustom.dll
    + 2005-10-12 23:18:46 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB916595\update\update.exe
    + 2005-10-12 23:18:49 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB916595\update\updspapi.dll
    + 2006-04-21 06:46:15 332,800 ----a-w C:\WINDOWS\$hf_mig$\KB917159\SP2QFE\srv.sys
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB917159\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB917159\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB917159\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB917159\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB917159\update\updspapi.dll
    + 2006-05-18 05:49:55 450,560 ----a-w C:\WINDOWS\$hf_mig$\KB917344\SP2QFE\jscript.dll
    + 2005-10-12 23:18:45 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB917344\spmsg.dll
    + 2005-10-12 23:18:45 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB917344\spuninst.exe
    + 2005-10-12 23:18:45 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB917344\update\spcustom.dll
    + 2005-10-12 23:18:46 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB917344\update\update.exe
    + 2005-10-12 23:18:49 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB917344\update\updspapi.dll
    + 2006-07-05 10:58:13 1,050,112 ----a-w C:\WINDOWS\$hf_mig$\KB917422\SP2QFE\kernel32.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB917422\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB917422\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB917422\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB917422\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB917422\update\updspapi.dll
    + 2006-04-20 12:18:35 360,576 ----a-w C:\WINDOWS\$hf_mig$\KB917953\SP2QFE\tcpip.sys
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB917953\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB917953\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB917953\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB917953\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB917953\update\updspapi.dll
    + 2006-11-27 15:18:34 539,136 ----a-w C:\WINDOWS\$hf_mig$\KB918118\SP2QFE\msftedit.dll
    + 2006-11-27 15:18:34 433,664 ----a-w C:\WINDOWS\$hf_mig$\KB918118\SP2QFE\riched20.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB918118\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB918118\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB918118\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB918118\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB918118\update\updspapi.dll
    + 2006-06-01 19:46:25 163,840 ----a-w C:\WINDOWS\$hf_mig$\KB918439\SP2QFE\jgdw400.dll
    + 2006-06-01 19:46:25 27,648 ----a-w C:\WINDOWS\$hf_mig$\KB918439\SP2QFE\jgpl400.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB918439\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB918439\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB918439\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB918439\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB918439\update\updspapi.dll
    + 2006-06-23 11:25:40 1,022,976 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\browseui.dll
    + 2006-06-23 11:25:40 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\cdfview.dll
    + 2006-06-23 11:25:40 1,056,768 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\danim.dll
    + 2006-06-23 11:25:40 357,888 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\dxtmsft.dll
    + 2006-06-23 11:25:40 205,312 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\dxtrans.dll
    + 2006-06-23 11:25:40 55,808 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\extmgr.dll
    + 2006-06-23 08:48:30 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\iedw.exe
    + 2006-06-23 11:25:40 251,904 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\iepeers.dll
    + 2006-06-23 11:25:40 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\inseng.dll
    + 2006-06-23 11:25:40 15,872 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\jsproxy.dll
    + 2006-07-28 11:30:59 3,079,168 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\mshtml.dll
    + 2006-06-23 11:25:41 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\mshtmled.dll
    + 2006-06-23 11:25:41 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\msrating.dll
    + 2006-06-23 11:25:41 532,480 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\mstime.dll
    + 2006-06-23 11:25:41 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\pngfilt.dll
    + 2006-06-23 11:25:42 1,497,088 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\shdocvw.dll
    + 2006-06-23 11:25:42 474,624 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\shlwapi.dll
    + 2006-06-23 09:09:16 100,864 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\spru040c.dll
    + 2006-07-25 20:43:19 617,472 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\urlmon.dll
    + 2006-06-23 11:25:42 668,672 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\wininet.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB918899\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB918899\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB918899\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB918899\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB918899\update\updspapi.dll
    + 2006-07-13 11:43:08 202,496 ----a-w C:\WINDOWS\$hf_mig$\KB919007\SP2QFE\rmcast.sys
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB919007\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB919007\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB919007\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB919007\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB919007\update\updspapi.dll
    + 2006-10-12 13:55:58 42,496 ----a-w C:\WINDOWS\$hf_mig$\KB920213\SP2QFE\agentdp2.dll
    + 2006-10-12 13:55:58 57,344 ----a-w C:\WINDOWS\$hf_mig$\KB920213\SP2QFE\agentdpv.dll
    + 2006-10-12 11:54:07 256,512 ----a-w C:\WINDOWS\$hf_mig$\KB920213\SP2QFE\agentsvr.exe
    + 2006-10-16 11:19:09 265,216 ----a-w C:\WINDOWS\$hf_mig$\KB920213\SP2QFE\spru040c.dll
    + 2005-10-12 23:18:45 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB920213\spmsg.dll
    + 2005-10-12 23:18:45 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB920213\spuninst.exe
    + 2005-10-12 23:18:45 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB920213\update\spcustom.dll
    + 2005-10-12 23:18:46 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB920213\update\update.exe
    + 2005-10-12 23:18:49 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB920213\update\updspapi.dll
    + 2006-07-27 13:40:09 679,424 ----a-w C:\WINDOWS\$hf_mig$\KB920214\SP2QFE\inetcomm.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB920214\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB920214\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB920214\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB920214\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB920214\update\updspapi.dll
    + 2006-07-21 08:29:04 72,704 ----a-w C:\WINDOWS\$hf_mig$\KB920670\SP2QFE\hlink.dll
    + 2005-10-12 23:18:45 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB920670\spmsg.dll
    + 2005-10-12 23:18:45 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB920670\spuninst.exe
    + 2005-10-12 23:18:45 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB920670\update\spcustom.dll
    + 2005-10-12 23:18:46 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB920670\update\update.exe
    + 2005-10-12 23:18:49 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB920670\update\updspapi.dll
    + 2006-06-26 17:47:08 147,456 ----a-w C:\WINDOWS\$hf_mig$\KB920683\SP2QFE\dnsapi.dll
    + 2006-06-26 17:47:08 7,680 ----a-w C:\WINDOWS\$hf_mig$\KB920683\SP2QFE\rasadhlp.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB920683\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB920683\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB920683\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB920683\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB920683\update\updspapi.dll
    + 2006-06-22 05:22:11 69,120 ----a-w C:\WINDOWS\$hf_mig$\KB920685\SP2QFE\ciodm.dll
    + 2006-06-22 05:22:12 1,440,768 ----a-w C:\WINDOWS\$hf_mig$\KB920685\SP2QFE\query.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB920685\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB920685\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB920685\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB920685\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB920685\update\updspapi.dll
    + 2006-06-14 08:50:19 172,416 ----a-w C:\WINDOWS\$hf_mig$\KB920872\SP2QFE\kmixer.sys
    + 2006-06-14 08:50:19 6,272 ----a-w C:\WINDOWS\$hf_mig$\KB920872\SP2QFE\splitter.sys
    + 2006-06-14 09:17:04 82,944 ----a-w C:\WINDOWS\$hf_mig$\KB920872\SP2QFE\wdmaud.sys
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB920872\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB920872\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB920872\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB920872\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB920872\update\updspapi.dll
    + 2006-07-13 14:04:38 8,514,048 ----a-w C:\WINDOWS\$hf_mig$\KB921398\SP2QFE\shell32.dll
    + 2006-07-13 11:52:4
    28 Mai 2008 21:49:21

    Re

    ComboFix 08-05-27.4 - Admin 2008-05-28 19:48:17.2 - NTFSx86 NETWORK
    Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.793 [GMT 2:00]
    Endroit: D:\Documents and Settings\Admin\Bureau\ComboFix.exe

    AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !!
    .

    (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
    .

    C:\WINDOWS\system32\cvdcldwm.dll
    C:\WINDOWS\system32\uffaaxor.dll
    C:\WINDOWS\t\
    D:\Documents and Settings\Christophe\Application Data\inst.exe
    .
    ---- Previous Run -------
    .
    C:\WINDOWS\BMf3702618.xml
    C:\WINDOWS\pskt.ini
    C:\WINDOWS\system32\dptacrdr.exe
    C:\WINDOWS\system32\edlbvngd.ini
    C:\WINDOWS\system32\geBtsPHY.dll
    C:\WINDOWS\system32\gppefeda.ini
    C:\WINDOWS\system32\IQXIOnnn.ini
    C:\WINDOWS\system32\IQXIOnnn.ini2
    C:\WINDOWS\system32\mcrh.tmp
    C:\WINDOWS\system32\mjhtilmt.exe
    C:\WINDOWS\system32\mmqgarax.ini
    C:\WINDOWS\system32\naxekimg.exe
    C:\WINDOWS\system32\peceteqv.dll
    C:\WINDOWS\system32\rbrmmabn.dll
    C:\WINDOWS\system32\sayyftvy.ini
    C:\WINDOWS\system32\sgrvbqus.ini
    C:\WINDOWS\system32\tejwcatw.exe
    C:\WINDOWS\system32\ulimdejy.exe
    C:\WINDOWS\system32\urqNGvuT.dll
    C:\WINDOWS\system32\viwuamwl.ini
    C:\WINDOWS\system32\wxwmtpmw.ini
    C:\WINDOWS\system32\YHPstBeg.ini
    C:\WINDOWS\system32\YHPstBeg.ini2
    C:\WINDOWS\t\

    .
    ((((((((((((((((((((((((((((( Fichiers créés 2008-04-28 to 2008-05-28 ))))))))))))))))))))))))))))))))))))
    .

    2008-05-26 23:07 . 2008-05-26 23:07 <REP> d-------- D:\Documents and Settings\Admin\Application Data\Malwarebytes
    2008-05-26 23:01 . 2008-05-26 23:01 1,374 --a------ C:\WINDOWS\imsins.BAK
    2008-05-26 22:57 . 2008-05-26 22:57 354,560 --a------ C:\WINDOWS\system32\TuneUpDefragService.exe
    2008-05-26 22:56 . 2008-05-26 22:56 <REP> d-------- D:\Documents and Settings\Admin\Application Data\TuneUp Software
    2008-05-26 22:55 . 2008-05-26 22:57 <REP> d-------- C:\Program Files\TuneUp Utilities 2008
    2008-05-26 22:53 . 2004-09-07 15:53 <REP> d--h----- D:\Documents and Settings\Admin\Voisinage réseau
    2008-05-26 22:53 . 2004-09-06 15:57 <REP> d--h----- D:\Documents and Settings\Admin\Voisinage d'impression
    2008-05-26 22:53 . 2004-09-06 15:01 <REP> d--h----- D:\Documents and Settings\Admin\Modèles
    2008-05-26 22:53 . 2008-05-26 22:54 <REP> dr------- D:\Documents and Settings\Admin\Mes documents
    2008-05-26 22:53 . 2004-04-08 15:05 <REP> d-------- D:\Documents and Settings\Admin\Menu Démarrer
    2008-05-26 22:53 . 2008-05-26 22:54 <REP> dr------- D:\Documents and Settings\Admin\Favoris
    2008-05-26 22:53 . 2008-05-28 19:47 <REP> d-------- D:\Documents and Settings\Admin\Bureau
    2008-05-26 22:53 . 2004-09-06 16:47 <REP> d-------- D:\Documents and Settings\Admin\Application Data\Sonic
    2008-05-26 22:53 . 2004-09-06 16:40 <REP> d-------- D:\Documents and Settings\Admin\Application Data\InterTrust
    2008-05-26 22:53 . 2008-05-26 23:04 <REP> d-------- D:\Documents and Settings\Admin
    2008-05-26 22:35 . 2008-05-26 22:35 <REP> d-------- C:\VundoFix Backups
    2008-05-26 22:30 . 2008-05-26 22:30 <REP> d-------- C:\Program Files\Fichiers communs\Wise Installation Wizard
    2008-05-26 17:46 . 2008-05-26 17:46 <REP> d-------- D:\Documents and Settings\Fred\Application Data\Malwarebytes
    2008-05-23 13:59 . 2008-05-23 13:59 <REP> d-------- D:\Documents and Settings\Fred\Application Data\Sunbelt Software
    2008-05-23 08:04 . 2008-05-23 08:04 <REP> d-------- D:\Documents and Settings\Christophe\Application Data\Malwarebytes
    2008-05-23 08:04 . 2008-05-23 08:04 <REP> d-------- D:\Documents and Settings\All Users\Application Data\Malwarebytes
    2008-05-23 08:04 . 2008-05-23 08:04 <REP> d-------- C:\Program Files\Malwarebytes' Anti-Malware
    2008-05-23 08:04 . 2008-05-05 20:46 27,048 --a------ C:\WINDOWS\system32\drivers\mbamcatchme.sys
    2008-05-23 08:04 . 2008-05-05 20:46 15,864 --a------ C:\WINDOWS\system32\drivers\mbam.sys
    2008-05-22 23:26 . 2008-05-22 23:26 0 --a------ C:\WINDOWS\hUnsetup.INI
    2008-05-22 23:10 . 2008-05-22 23:10 <REP> d-------- C:\Program Files\Trend Micro
    2008-05-22 23:03 . 2008-05-22 23:07 <REP> d-------- D:\Documents and Settings\Christophe\Application Data\HAURI
    2008-05-22 22:26 . 2007-11-07 16:00 81,782 --a------ C:\WINDOWS\system32\drivers\VRFWNTD5.SYS
    2008-05-22 22:26 . 2008-05-02 17:37 79,806 --a------ C:\WINDOWS\system32\drivers\vradfil.sys
    2008-05-22 22:26 . 2007-08-24 14:00 27,260 --------- C:\WINDOWS\system32\drivers\vracfil.sys
    2008-05-22 22:26 . 2007-08-31 11:00 15,644 --------- C:\WINDOWS\system32\drivers\VRsecos.sys
    2008-05-22 22:15 . 2008-05-22 22:15 0 --a------ C:\WINDOWS\system32\SBRC.dat
    2008-05-22 22:15 . 2008-05-22 22:15 0 --a------ C:\WINDOWS\system32\SBFC.dat
    2008-05-22 22:14 . 2008-05-22 22:14 <REP> d-------- D:\Documents and Settings\Christophe\Application Data\Sunbelt Software
    2008-05-22 22:12 . 2008-05-22 22:12 <REP> d-------- C:\Program Files\Sunbelt Software
    2008-05-22 21:39 . 2008-05-22 21:39 <REP> d-------- D:\Documents and Settings\All Users\Application Data\Avira
    2008-05-22 21:39 . 2008-05-22 21:39 <REP> d-------- C:\Program Files\Avira
    2008-05-14 13:38 . 2008-05-22 22:23 <REP> d-------- D:\Documents and Settings\All Users\Application Data\Lavasoft
    2008-04-30 08:01 . 2008-05-23 19:39 664 --a------ C:\WINDOWS\system32\d3d9caps.dat
    2008-04-28 22:30 . 2008-04-28 22:30 <REP> d-a------ D:\Documents and Settings\All Users\Application Data\TEMP
    2008-04-28 22:30 . 2008-04-28 22:30 124,688 --a------ C:\WINDOWS\system32\MSWINSCK.OCX
    2008-04-28 17:17 . 2008-04-28 17:17 244 --ah----- C:\sqmnoopt04.sqm
    2008-04-28 17:17 . 2008-04-28 17:17 232 --ah----- C:\sqmdata04.sqm

    .
    (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2008-05-26 20:56 --------- d-----w D:\Documents and Settings\All Users\Application Data\TuneUp Software
    2008-05-25 19:50 --------- d-----w D:\Documents and Settings\Fred\Application Data\Ooze Wait Send
    2008-05-25 19:50 --------- d-----w D:\Documents and Settings\Fred\Application Data\Grid Gpl
    2008-05-25 19:48 --------- d-----w D:\Documents and Settings\Christophe\Application Data\Grid Gpl
    2008-05-25 19:47 --------- d-----w D:\Documents and Settings\All Users\Application Data\DumbSoapDeafGlue
    2008-05-25 19:07 --------- d--h--w C:\Program Files\InstallShield Installation Information
    2008-05-25 18:58 --------- d-----w D:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
    2008-05-25 18:58 --------- d-----w C:\Program Files\Spybot
    2008-05-25 18:43 --------- d-----w C:\Program Files\Call of Duty
    2008-05-25 18:20 --------- d-----w C:\Program Files\PANZERS - Phase1
    2008-05-22 21:06 --------- d-----w C:\Program Files\Jasc Software Inc
    2008-05-22 20:26 --------- d-----w C:\Program Files\Fichiers communs\InstallShield
    2008-05-22 18:31 --------- d-----w C:\Program Files\GrabIt
    2008-05-22 18:29 --------- d-----w C:\Program Files\Club-Internet
    2008-05-22 18:28 --------- d-----w C:\Program Files\Neodivx
    2008-05-22 18:28 --------- d-----w C:\Program Files\Fichiers communs\Adobe
    2008-05-22 18:28 --------- d-----w C:\Program Files\eMule
    2008-05-22 18:24 47,360 ----a-w D:\Documents and Settings\Christophe\Application Data\pcouffin.sys
    2008-05-22 18:24 --------- d-----w D:\Documents and Settings\Christophe\Application Data\Vso
    2008-05-22 18:24 --------- d-----w C:\Program Files\Capturino 1.4
    2008-05-20 20:02 --------- d-----w D:\Documents and Settings\Christophe\Application Data\Azureus
    2008-05-13 18:26 --------- d-----w C:\Program Files\Azureus
    2008-04-17 20:24 --------- d-----w D:\Documents and Settings\Fred\Application Data\Skype
    2008-04-17 15:39 --------- d-----w D:\Documents and Settings\Fred\Application Data\skypePM
    2008-04-17 10:12 --------- d-----w D:\Documents and Settings\Christophe\Application Data\ZoomBrowser EX
    2008-04-17 10:11 --------- d-----w D:\Documents and Settings\All Users\Application Data\ZoomBrowser
    2008-04-16 20:08 --------- d-----w C:\Program Files\Lavalys
    2008-04-04 12:51 28,416 ----a-w C:\WINDOWS\system32\uxtuneup.dll
    2008-03-28 12:43 --------- d-----w D:\Documents and Settings\Fred\Application Data\ZoomBrowser EX
    2008-03-25 04:51 621,344 ----a-w C:\WINDOWS\system32\mswstr10.dll
    2008-03-25 04:51 194,144 ----a-w C:\WINDOWS\system32\msjint40.dll
    2008-03-20 08:09 1,845,376 ----a-w C:\WINDOWS\system32\win32k.sys
    2008-03-01 12:58 826,368 ----a-w C:\WINDOWS\system32\wininet.dll
    2007-11-22 20:43 32 ----a-w D:\Documents and Settings\All Users\Application Data\ezsid.dat
    2005-12-26 11:19 774,144 ----a-w C:\Program Files\RngInterstitial.dll
    2005-01-06 18:57 56 --sh--r C:\WINDOWS\system32\2944FC89D0.sys
    2006-05-23 13:14 3,350 --sha-w C:\WINDOWS\system32\KGyGaAvL.sys
    .

    ((((((((((((((((((((((((((((( snapshot@2008-05-26_22.50.03.25 )))))))))))))))))))))))))))))))))))))))))
    .
    + 2005-01-27 17:12:51 1,017,344 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\browseui.dll
    + 2005-01-27 17:12:51 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\cdfview.dll
    + 2005-01-27 17:12:51 249,856 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\iepeers.dll
    + 2005-01-27 17:12:51 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\inseng.dll
    + 2005-01-27 08:12:54 3,008,000 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\mshtml.dll
    + 2005-01-27 17:12:53 1,484,800 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\shdocvw.dll
    + 2005-01-27 17:12:53 474,112 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\shlwapi.dll
    + 2005-01-27 17:12:53 605,696 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\urlmon.dll
    + 2005-01-27 17:12:54 662,016 ----a-w C:\WINDOWS\$hf_mig$\KB867282\SP2QFE\wininet.dll
    + 2004-11-30 22:29:58 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB867282\spmsg.dll
    + 2004-12-01 05:48:32 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB867282\spuninst.exe
    + 2004-12-01 05:48:31 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB867282\update\spcustom.dll
    + 2004-11-30 22:46:51 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB867282\update\update.exe
    + 2005-01-14 08:56:43 1,284,608 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2GDR\ole32.dll
    + 2005-01-14 08:56:43 75,264 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2GDR\olecli32.dll
    + 2005-01-14 08:56:43 37,888 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2GDR\olecnv32.dll
    + 2005-01-14 08:56:44 395,776 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2GDR\rpcss.dll
    + 2005-01-14 05:08:27 1,284,608 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2QFE\ole32.dll
    + 2005-01-14 05:08:27 75,264 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2QFE\olecli32.dll
    + 2005-01-14 05:08:27 37,376 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2QFE\olecnv32.dll
    + 2005-01-14 05:08:27 395,776 ----a-w C:\WINDOWS\$hf_mig$\KB873333\SP2QFE\rpcss.dll
    + 2004-11-30 13:46:52 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB873333\spmsg.dll
    + 2004-11-30 19:22:42 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB873333\spuninst.exe
    + 2004-11-30 19:22:42 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB873333\update\spcustom.dll
    + 2004-11-30 13:46:52 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB873333\update\update.exe
    + 2004-11-17 17:42:33 354,304 ----a-w C:\WINDOWS\$hf_mig$\KB873339\SP2GDR\hypertrm.dll
    + 2004-11-17 17:41:19 354,304 ----a-w C:\WINDOWS\$hf_mig$\KB873339\SP2QFE\hypertrm.dll
    + 2004-10-14 09:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB873339\spmsg.dll
    + 2004-10-14 09:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB873339\spuninst.exe
    + 2004-10-14 09:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB873339\update\spcustom.dll
    + 2004-10-14 09:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB873339\update\update.exe
    + 2005-05-02 20:58:35 1,020,416 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\browseui.dll
    + 2005-05-02 20:58:35 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\cdfview.dll
    + 2005-05-01 00:12:37 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\iedw.exe
    + 2005-05-02 20:58:35 250,880 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\iepeers.dll
    + 2005-05-02 20:58:35 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\inseng.dll
    + 2005-05-02 20:58:35 3,012,608 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\mshtml.dll
    + 2005-05-02 20:58:35 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\mshtmled.dll
    + 2005-05-02 20:58:35 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\msrating.dll
    + 2005-05-02 20:58:35 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\pngfilt.dll
    + 2005-05-02 20:58:35 1,485,312 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\shdocvw.dll
    + 2005-05-02 20:58:35 474,112 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\shlwapi.dll
    + 2005-05-02 20:58:35 606,208 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\urlmon.dll
    + 2005-05-02 20:58:35 663,040 ----a-w C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\wininet.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB883939\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB883939\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB883939\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB883939\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB883939\update\updspapi.dll
    + 2005-01-19 04:26:52 451,584 ----a-w C:\WINDOWS\$hf_mig$\KB885250\SP2GDR\mrxsmb.sys
    + 2005-01-19 03:51:57 451,584 ----a-w C:\WINDOWS\$hf_mig$\KB885250\SP2QFE\mrxsmb.sys
    + 2004-11-30 13:46:52 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB885250\spmsg.dll
    + 2004-11-30 19:22:42 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB885250\spuninst.exe
    + 2004-11-30 19:22:42 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB885250\update\spcustom.dll
    + 2004-11-30 13:46:52 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB885250\update\update.exe
    + 2004-10-28 01:23:59 728,576 ----a-w C:\WINDOWS\$hf_mig$\KB885835\SP2GDR\lsasrv.dll
    + 2004-10-28 01:14:18 448,128 ----a-w C:\WINDOWS\$hf_mig$\KB885835\SP2GDR\mrxsmb.sys
    + 2004-10-28 01:13:58 174,592 ----a-w C:\WINDOWS\$hf_mig$\KB885835\SP2GDR\rdbss.sys
    + 2004-10-28 01:29:47 728,576 ----a-w C:\WINDOWS\$hf_mig$\KB885835\SP2QFE\lsasrv.dll
    + 2004-10-28 01:15:16 448,128 ----a-w C:\WINDOWS\$hf_mig$\KB885835\SP2QFE\mrxsmb.sys
    + 2004-10-28 01:14:56 174,592 ----a-w C:\WINDOWS\$hf_mig$\KB885835\SP2QFE\rdbss.sys
    + 2004-10-14 10:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB885835\spmsg.dll
    + 2004-10-14 10:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB885835\spuninst.exe
    + 2004-10-14 10:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB885835\update\spcustom.dll
    + 2004-10-14 10:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB885835\update\update.exe
    + 2004-10-14 10:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB885836\spmsg.dll
    + 2004-10-14 10:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB885836\spuninst.exe
    + 2004-10-14 10:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB885836\update\spcustom.dll
    + 2004-10-14 10:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB885836\update\update.exe
    + 2004-09-29 22:31:17 134,912 ----a-w C:\WINDOWS\$hf_mig$\KB886185\SP2QFE\ipnat.sys
    + 2004-10-14 18:35:06 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB886185\spmsg.dll
    + 2004-10-14 18:36:20 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB886185\spuninst.exe
    + 2004-10-14 18:36:19 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB886185\update\spcustom.dll
    + 2004-10-14 18:35:11 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB886185\update\update.exe
    + 2004-10-13 16:21:24 1,694,208 ----a-w C:\WINDOWS\$hf_mig$\KB887472\SP2QFE\msmsgs.exe
    + 2004-10-14 10:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB887472\spmsg.dll
    + 2004-10-14 10:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB887472\spuninst.exe
    + 2004-10-14 10:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB887472\update\spcustom.dll
    + 2004-10-14 10:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB887472\update\update.exe
    + 2004-10-08 23:18:27 262,272 ----a-w C:\WINDOWS\$hf_mig$\KB887742\SP2QFE\http.sys
    + 2004-10-14 09:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB887742\spmsg.dll
    + 2004-10-14 09:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB887742\spuninst.exe
    + 2004-10-14 09:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB887742\update\spcustom.dll
    + 2004-10-14 09:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB887742\update\update.exe
    + 2004-10-19 00:04:11 679,424 ----a-w C:\WINDOWS\$hf_mig$\KB887797\SP2QFE\inetcomm.dll
    + 2004-10-19 00:04:12 1,311,744 ----a-w C:\WINDOWS\$hf_mig$\KB887797\SP2QFE\msoe.dll
    + 2004-10-19 00:04:12 505,344 ----a-w C:\WINDOWS\$hf_mig$\KB887797\SP2QFE\wab32.dll
    + 2004-10-19 00:04:12 85,504 ----a-w C:\WINDOWS\$hf_mig$\KB887797\SP2QFE\wabimp.dll
    + 2004-10-14 10:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB887797\spmsg.dll
    + 2004-10-14 10:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB887797\spuninst.exe
    + 2004-10-14 10:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB887797\update\spcustom.dll
    + 2004-10-14 10:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB887797\update\update.exe
    + 2004-11-16 21:17:57 68,608 ----a-w C:\WINDOWS\$hf_mig$\KB888113\SP2GDR\hlink.dll
    + 2004-11-16 21:16:08 68,608 ----a-w C:\WINDOWS\$hf_mig$\KB888113\SP2QFE\hlink.dll
    + 2004-10-14 09:35:08 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB888113\spmsg.dll
    + 2004-10-14 09:36:22 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB888113\spuninst.exe
    + 2004-10-14 09:36:20 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB888113\update\spcustom.dll
    + 2004-10-14 09:35:12 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB888113\update\update.exe
    + 2004-12-07 19:34:00 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB888302\SP2GDR\srvsvc.dll
    + 2004-12-07 19:32:32 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB888302\SP2QFE\srvsvc.dll
    + 2004-11-30 13:46:52 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB888302\spmsg.dll
    + 2004-11-30 19:22:42 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB888302\spuninst.exe
    + 2004-11-30 19:22:42 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB888302\update\spcustom.dll
    + 2004-11-30 13:46:52 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB888302\update\update.exe
    + 2005-04-22 05:20:19 57,344 ----a-w C:\WINDOWS\$hf_mig$\KB890046\SP2QFE\agentdpv.dll
    + 2005-05-17 00:44:44 19,456 ----a-w C:\WINDOWS\$hf_mig$\KB890046\SP2QFE\spru040c.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB890046\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB890046\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB890046\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB890046\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB890046\update\updspapi.dll
    + 2004-12-21 19:59:07 8,506,368 ----a-w C:\WINDOWS\$hf_mig$\KB890047\SP2GDR\shell32.dll
    + 2004-12-21 19:46:25 8,507,392 ----a-w C:\WINDOWS\$hf_mig$\KB890047\SP2QFE\shell32.dll
    + 2004-11-30 13:46:52 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB890047\spmsg.dll
    + 2004-11-30 19:22:42 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB890047\spuninst.exe
    + 2004-11-30 19:22:42 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB890047\update\spcustom.dll
    + 2004-11-30 13:46:52 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB890047\update\update.exe
    + 2004-11-30 13:46:52 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB890175\spmsg.dll
    + 2004-11-30 19:22:42 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB890175\spuninst.exe
    + 2004-11-30 19:22:42 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB890175\update\spcustom.dll
    + 2004-11-30 13:46:52 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB890175\update\update.exe
    + 2005-03-02 18:20:31 62,464 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\authz.dll
    + 2005-03-02 18:13:13 2,137,600 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntkrnlmp.exe
    + 2005-03-02 18:13:12 2,059,008 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntkrnlpa.exe
    + 2005-03-02 18:13:16 2,017,280 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntkrpamp.exe
    + 2005-03-02 18:13:23 2,181,632 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntoskrnl.exe
    + 2005-03-02 18:20:32 578,048 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\user32.dll
    + 2005-03-02 18:13:08 1,836,416 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\win32k.sys
    + 2005-03-02 18:20:32 291,840 ----a-w C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\winsrv.dll
    + 2005-02-24 17:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB890859\spmsg.dll
    + 2005-02-24 17:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB890859\spuninst.exe
    + 2005-02-24 17:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB890859\update\spcustom.dll
    + 2005-02-24 17:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB890859\update\update.exe
    + 2005-02-24 17:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB890859\update\updspapi.dll
    + 2005-03-10 07:48:24 1,017,344 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\browseui.dll
    + 2005-03-10 07:48:24 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\cdfview.dll
    + 2005-03-10 07:48:24 250,880 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\iepeers.dll
    + 2005-03-10 07:48:24 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\inseng.dll
    + 2005-03-10 07:48:25 3,011,072 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\mshtml.dll
    + 2005-03-10 07:48:25 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\msrating.dll
    + 2005-03-10 07:48:25 1,484,800 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\shdocvw.dll
    + 2005-03-10 07:48:25 474,112 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\shlwapi.dll
    + 2005-03-10 07:48:25 605,696 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\urlmon.dll
    + 2005-03-10 07:48:25 662,016 ----a-w C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\wininet.dll
    + 2005-02-24 17:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB890923\spmsg.dll
    + 2005-02-24 17:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB890923\spuninst.exe
    + 2005-02-24 17:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB890923\update\spcustom.dll
    + 2005-02-24 17:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB890923\update\update.exe
    + 2005-02-24 17:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB890923\update\updspapi.dll
    + 2004-11-30 13:46:52 8,192 ----a-w C:\WINDOWS\$hf_mig$\KB891781\spmsg.dll
    + 2004-11-30 19:22:42 172,032 ----a-w C:\WINDOWS\$hf_mig$\KB891781\spuninst.exe
    + 2004-11-30 19:22:42 21,504 ----a-w C:\WINDOWS\$hf_mig$\KB891781\update\spcustom.dll
    + 2004-11-30 13:46:52 666,624 ----a-w C:\WINDOWS\$hf_mig$\KB891781\update\update.exe
    + 2005-05-25 19:07:12 359,936 ----a-w C:\WINDOWS\$hf_mig$\KB893066\SP2QFE\tcpip.sys
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB893066\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB893066\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB893066\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB893066\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB893066\update\updspapi.dll
    + 2005-02-28 23:10:59 8,507,904 ----a-w C:\WINDOWS\$hf_mig$\KB893086\SP2QFE\shell32.dll
    + 2005-02-24 17:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB893086\spmsg.dll
    + 2005-02-24 17:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB893086\spuninst.exe
    + 2005-02-24 17:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB893086\update\spcustom.dll
    + 2005-02-24 17:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB893086\update\update.exe
    + 2005-02-24 17:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB893086\update\updspapi.dll
    + 2005-07-08 16:30:34 249,344 ----a-w C:\WINDOWS\$hf_mig$\KB893756\SP2QFE\tapisrv.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB893756\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB893756\spuninst.exe
    + 2005-07-07 17:27:08 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB893756\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB893756\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB893756\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB893756\update\updspapi.dll
    + 2005-04-28 19:36:10 1,286,144 ----a-w C:\WINDOWS\$hf_mig$\KB894391\SP2QFE\ole32.dll
    + 2005-04-28 19:36:09 75,264 ----a-w C:\WINDOWS\$hf_mig$\KB894391\SP2QFE\olecli32.dll
    + 2005-04-28 19:36:09 37,376 ----a-w C:\WINDOWS\$hf_mig$\KB894391\SP2QFE\olecnv32.dll
    + 2005-04-28 19:36:09 396,288 ----a-w C:\WINDOWS\$hf_mig$\KB894391\SP2QFE\rpcss.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB894391\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB894391\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB894391\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB894391\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB894391\update\updspapi.dll
    + 2005-05-26 23:26:50 10,752 ----a-w C:\WINDOWS\$hf_mig$\KB896358\SP2QFE\hh.exe
    + 2005-05-27 02:11:03 41,472 ----a-w C:\WINDOWS\$hf_mig$\KB896358\SP2QFE\hhsetup.dll
    + 2005-05-27 02:11:03 155,136 ----a-w C:\WINDOWS\$hf_mig$\KB896358\SP2QFE\itircl.dll
    + 2005-05-27 02:11:03 137,216 ----a-w C:\WINDOWS\$hf_mig$\KB896358\SP2QFE\itss.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896358\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896358\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896358\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896358\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896358\update\updspapi.dll
    + 2005-05-10 00:22:21 332,544 ----a-w C:\WINDOWS\$hf_mig$\KB896422\SP2QFE\srv.sys
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896422\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896422\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896422\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896422\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896422\update\updspapi.dll
    + 2005-06-11 00:17:13 57,856 ----a-w C:\WINDOWS\$hf_mig$\KB896423\SP2QFE\spoolsv.exe
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896423\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896423\spuninst.exe
    + 2005-06-29 14:54:32 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB896423\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896423\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896423\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896423\update\updspapi.dll
    + 2005-10-06 03:19:52 280,064 ----a-w C:\WINDOWS\$hf_mig$\KB896424\SP2QFE\gdi32.dll
    + 2005-10-06 03:12:57 1,839,616 ----a-w C:\WINDOWS\$hf_mig$\KB896424\SP2QFE\win32k.sys
    + 2005-02-24 19:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896424\spmsg.dll
    + 2005-02-24 19:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896424\spuninst.exe
    + 2005-10-05 15:39:46 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB896424\update\arpidfix.exe
    + 2005-02-24 19:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896424\update\spcustom.dll
    + 2005-02-24 19:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896424\update\update.exe
    + 2005-02-24 19:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896424\update\updspapi.dll
    + 2005-05-11 02:33:19 78,336 ----a-w C:\WINDOWS\$hf_mig$\KB896428\SP2QFE\telnet.exe
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896428\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896428\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896428\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896428\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896428\update\updspapi.dll
    + 2005-09-03 00:08:20 1,020,416 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\browseui.dll
    + 2005-09-03 00:08:20 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\cdfview.dll
    + 2005-09-03 00:08:21 1,056,256 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\danim.dll
    + 2005-09-03 00:08:21 205,312 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\dxtrans.dll
    + 2005-09-03 00:08:21 55,808 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\extmgr.dll
    + 2005-09-02 21:52:55 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\iedw.exe
    + 2005-09-03 00:08:21 251,904 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\iepeers.dll
    + 2005-09-03 00:08:21 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\inseng.dll
    + 2005-10-05 00:51:10 3,015,680 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\mshtml.dll
    + 2005-09-03 00:08:21 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\mshtmled.dll
    + 2005-09-03 00:08:21 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\msrating.dll
    + 2005-09-03 00:08:21 530,432 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\mstime.dll
    + 2005-09-03 00:08:21 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\pngfilt.dll
    + 2005-09-03 00:08:21 1,486,336 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\shdocvw.dll
    + 2005-09-03 00:08:21 474,624 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\shlwapi.dll
    + 2005-09-03 00:08:21 606,208 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\urlmon.dll
    + 2005-09-03 00:08:21 664,576 ----a-w C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\wininet.dll
    + 2005-02-25 03:35:24 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896688\spmsg.dll
    + 2005-02-25 03:35:24 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896688\spuninst.exe
    + 2005-10-04 22:39:55 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB896688\update\arpidfix.exe
    + 2005-02-25 03:35:24 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896688\update\spcustom.dll
    + 2005-02-25 03:35:24 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896688\update\update.exe
    + 2005-02-25 03:35:25 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896688\update\updspapi.dll
    + 2005-07-03 02:10:44 1,020,416 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\browseui.dll
    + 2005-07-03 02:10:44 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\cdfview.dll
    + 2005-07-02 23:38:24 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\iedw.exe
    + 2005-07-03 02:10:44 251,904 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\iepeers.dll
    + 2005-07-03 02:10:45 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\inseng.dll
    + 2005-07-20 02:05:47 3,014,144 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\mshtml.dll
    + 2005-07-03 02:10:49 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\mshtmled.dll
    + 2005-07-03 02:10:49 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\msrating.dll
    + 2005-07-03 02:10:49 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\pngfilt.dll
    + 2005-07-03 02:10:51 1,485,824 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\shdocvw.dll
    + 2005-07-03 02:10:52 474,112 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\shlwapi.dll
    + 2005-07-03 02:10:53 606,208 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\urlmon.dll
    + 2005-07-03 02:10:54 663,552 ----a-w C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\wininet.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB896727\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB896727\spuninst.exe
    + 2005-07-19 14:40:46 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB896727\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB896727\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB896727\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB896727\update\updspapi.dll
    + 2005-02-25 03:35:24 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB898461\spmsg.dll
    + 2005-02-25 03:35:24 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB898461\spuninst.exe
    + 2005-02-25 03:35:24 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB898461\spupdsvc.exe
    + 2005-02-25 03:35:24 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB898461\update\spcustom.dll
    + 2005-02-25 03:35:24 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB898461\update\update.exe
    + 2005-02-25 03:35:25 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB898461\update\updspapi.dll
    + 2005-06-15 17:48:49 297,984 ----a-w C:\WINDOWS\$hf_mig$\KB899587\SP2QFE\kerberos.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB899587\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB899587\spuninst.exe
    + 2005-06-29 14:54:32 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB899587\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB899587\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB899587\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB899587\update\updspapi.dll
    + 2005-06-30 02:07:51 119,808 ----a-w C:\WINDOWS\$hf_mig$\KB899588\SP2QFE\umpnpmgr.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB899588\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB899588\spuninst.exe
    + 2005-06-29 14:54:32 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB899588\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB899588\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB899588\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB899588\update\updspapi.dll
    + 2005-06-10 04:06:01 139,528 ----a-w C:\WINDOWS\$hf_mig$\KB899591\SP2QFE\rdpwd.sys
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB899591\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB899591\spuninst.exe
    + 2005-06-29 14:54:32 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB899591\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB899591\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB899591\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB899591\update\updspapi.dll
    + 2006-02-15 00:30:07 142,464 ----a-w C:\WINDOWS\$hf_mig$\KB900485\SP2QFE\aec.sys
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB900485\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB900485\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB900485\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB900485\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB900485\update\updspapi.dll
    + 2005-09-01 01:46:30 19,968 ----a-w C:\WINDOWS\$hf_mig$\KB900725\SP2QFE\linkinfo.dll
    + 2005-09-23 03:26:14 8,508,928 ----a-w C:\WINDOWS\$hf_mig$\KB900725\SP2QFE\shell32.dll
    + 2005-09-03 00:08:21 474,624 ----a-w C:\WINDOWS\$hf_mig$\KB900725\SP2QFE\shlwapi.dll
    + 2005-09-27 00:47:42 23,552 ----a-w C:\WINDOWS\$hf_mig$\KB900725\SP2QFE\spru040c.dll
    + 2005-09-01 01:46:31 292,352 ----a-w C:\WINDOWS\$hf_mig$\KB900725\SP2QFE\winsrv.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB900725\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB900725\spuninst.exe
    + 2005-09-26 15:36:24 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB900725\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB900725\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB900725\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB900725\update\updspapi.dll
    + 2005-05-05 21:25:52 679,424 ----a-w C:\WINDOWS\$hf_mig$\KB900930\SP2QFE\inetcomm.dll
    + 2005-05-05 21:25:53 1,311,744 ----a-w C:\WINDOWS\$hf_mig$\KB900930\SP2QFE\msoe.dll
    + 2005-02-24 19:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB900930\spmsg.dll
    + 2005-02-24 19:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB900930\spuninst.exe
    + 2005-02-24 19:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB900930\update\spcustom.dll
    + 2005-02-24 19:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB900930\update\update.exe
    + 2005-02-24 19:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB900930\update\updspapi.dll
    + 2005-09-10 01:53:06 2,068,480 ----a-w C:\WINDOWS\$hf_mig$\KB901017\SP2QFE\cdosys.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB901017\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB901017\spuninst.exe
    + 2005-09-09 14:26:26 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB901017\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB901017\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB901017\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB901017\update\updspapi.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB901190\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB901190\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB901190\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB901190\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB901190\update\updspapi.dll
    + 2005-06-29 01:54:24 254,976 ----a-w C:\WINDOWS\$hf_mig$\KB901214\SP2QFE\icm32.dll
    + 2005-06-29 01:54:24 73,728 ----a-w C:\WINDOWS\$hf_mig$\KB901214\SP2QFE\mscms.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB901214\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB901214\spuninst.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB901214\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB901214\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB901214\update\updspapi.dll
    + 2005-07-26 04:29:18 225,792 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\catsrv.dll
    + 2005-07-26 04:29:19 625,152 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\catsrvut.dll
    + 2005-07-26 04:29:20 110,080 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\clbcatex.dll
    + 2005-07-26 04:29:21 498,688 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\clbcatq.dll
    + 2005-07-26 04:29:21 60,416 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\colbact.dll
    + 2005-07-26 04:29:22 195,072 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\comadmin.dll
    + 2005-07-26 04:29:23 97,792 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\comrepl.dll
    + 2005-07-26 04:29:25 1,267,200 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\comsvcs.dll
    + 2005-07-26 04:29:27 540,160 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\comuid.dll
    + 2005-07-26 04:29:28 243,200 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\es.dll
    + 2005-07-25 23:42:35 8,704 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\migregdb.exe
    + 2005-07-26 04:29:29 425,472 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\msdtcprx.dll
    + 2005-07-26 04:29:31 945,152 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\msdtctm.dll
    + 2005-07-26 04:29:32 161,280 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\msdtcuiu.dll
    + 2005-07-26 04:29:32 66,560 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\mtxclu.dll
    + 2005-07-26 04:29:32 91,136 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\mtxoci.dll
    + 2005-07-26 04:29:37 1,285,632 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\ole32.dll
    + 2005-07-26 04:29:38 75,264 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\olecli32.dll
    + 2005-07-26 04:29:38 37,376 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\olecnv32.dll
    + 2005-07-26 04:29:39 398,336 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\rpcss.dll
    + 2005-07-26 04:29:40 101,376 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\txflog.dll
    + 2005-07-26 04:29:40 11,776 ----a-w C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\xolehlp.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB902400\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB902400\spuninst.exe
    + 2005-07-25 17:21:18 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB902400\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB902400\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB902400\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB902400\update\updspapi.dll
    + 2005-08-30 04:16:04 1,293,824 ----a-w C:\WINDOWS\$hf_mig$\KB904706\SP2QFE\quartz.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB904706\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB904706\spuninst.exe
    + 2005-08-29 17:02:00 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB904706\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB904706\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB904706\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB904706\update\updspapi.dll
    + 2006-03-24 04:49:05 49,152 ----a-w C:\WINDOWS\$hf_mig$\KB904942\SP2QFE\wdigest.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB904942\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB904942\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB904942\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB904942\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB904942\update\updspapi.dll
    + 2005-08-22 18:26:27 197,632 ----a-w C:\WINDOWS\$hf_mig$\KB905414\SP2QFE\netman.dll
    + 2005-02-25 03:35:24 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB905414\spmsg.dll
    + 2005-02-25 03:35:24 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB905414\spuninst.exe
    + 2005-08-19 23:50:31 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB905414\update\arpidfix.exe
    + 2005-02-25 03:35:24 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB905414\update\spcustom.dll
    + 2005-02-25 03:35:24 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB905414\update\update.exe
    + 2005-02-25 03:35:25 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB905414\update\updspapi.dll
    + 2005-08-23 03:41:23 124,928 ----a-w C:\WINDOWS\$hf_mig$\KB905749\SP2QFE\umpnpmgr.dll
    + 2005-02-24 18:35:26 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB905749\spmsg.dll
    + 2005-02-24 18:35:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB905749\spuninst.exe
    + 2005-08-22 16:01:30 30,720 ----a-w C:\WINDOWS\$hf_mig$\KB905749\update\arpidfix.exe
    + 2005-02-24 18:35:26 22,240 ----a-w C:\WINDOWS\$hf_mig$\KB905749\update\spcustom.dll
    + 2005-02-24 18:35:26 730,336 ----a-w C:\WINDOWS\$hf_mig$\KB905749\update\update.exe
    + 2005-02-24 18:35:26 395,488 ----a-w C:\WINDOWS\$hf_mig$\KB905749\update\updspapi.dll
    + 2005-11-23 23:52:31 1,022,464 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\browseui.dll
    + 2005-10-21 03:39:13 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\cdfview.dll
    + 2005-11-05 03:35:38 1,056,768 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\danim.dll
    + 2005-10-21 03:39:14 205,312 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\dxtrans.dll
    + 2005-10-21 03:39:14 55,808 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\extmgr.dll
    + 2005-10-21 01:54:43 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\iedw.exe
    + 2005-10-21 03:39:14 251,904 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\iepeers.dll
    + 2005-10-21 03:39:14 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\inseng.dll
    + 2005-11-23 23:52:32 3,016,192 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\mshtml.dll
    + 2005-10-21 03:39:16 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\mshtmled.dll
    + 2005-10-21 03:39:16 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\msrating.dll
    + 2005-10-21 03:39:17 530,944 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\mstime.dll
    + 2005-10-21 03:39:17 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\pngfilt.dll
    + 2005-12-01 04:06:57 1,495,040 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\shdocvw.dll
    + 2005-10-21 03:39:18 474,624 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\shlwapi.dll
    + 2005-11-05 03:35:42 607,232 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\urlmon.dll
    + 2005-10-21 03:39:19 665,600 ----a-w C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\wininet.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB905915\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB905915\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB905915\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB905915\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB905915\update\updspapi.dll
    + 2005-10-17 21:26:30 80,896 ----a-w C:\WINDOWS\$hf_mig$\KB908519\SP2QFE\fontsub.dll
    + 2005-10-17 21:26:30 117,760 ----a-w C:\WINDOWS\$hf_mig$\KB908519\SP2QFE\t2embed.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB908519\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB908519\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB908519\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB908519\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB908519\update\updspapi.dll
    + 2006-03-17 04:49:25 8,510,976 ----a-w C:\WINDOWS\$hf_mig$\KB908531\SP2QFE\shell32.dll
    + 2006-03-22 01:51:44 25,088 ----a-w C:\WINDOWS\$hf_mig$\KB908531\SP2QFE\spru040c.dll
    + 2006-03-17 01:05:35 28,672 ----a-w C:\WINDOWS\$hf_mig$\KB908531\SP2QFE\verclsid.exe
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB908531\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB908531\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB908531\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB908531\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB908531\update\updspapi.dll
    + 2005-10-20 22:32:17 1,097,728 ----a-w C:\WINDOWS\$hf_mig$\KB910437\SP2QFE\esent.dll
    + 2005-10-12 23:15:23 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB910437\spmsg.dll
    + 2005-10-12 23:15:24 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB910437\spuninst.exe
    + 2005-10-12 23:15:23 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB910437\update\spcustom.dll
    + 2005-10-12 23:15:26 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB910437\update\update.exe
    + 2005-10-12 23:15:43 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB910437\update\updspapi.dll
    + 2006-05-14 08:59:06 180,736 ----a-w C:\WINDOWS\$hf_mig$\KB911280\SP2QFE\rasmans.dll
    + 2005-10-12 23:18:45 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB911280\spmsg.dll
    + 2005-10-12 23:18:45 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB911280\spuninst.exe
    + 2005-10-12 23:18:45 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB911280\update\spcustom.dll
    + 2005-10-12 23:18:46 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB911280\update\update.exe
    + 2005-10-12 23:18:49 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB911280\update\updspapi.dll
    + 2006-03-23 05:53:24 143,360 ----a-w C:\WINDOWS\$hf_mig$\KB911562\SP2QFE\msadco.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB911562\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB911562\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB911562\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB911562\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB911562\update\updspapi.dll
    + 2006-03-17 09:14:31 679,424 ----a-w C:\WINDOWS\$hf_mig$\KB911567\SP2QFE\inetcomm.dll
    + 2006-03-17 09:14:31 1,311,744 ----a-w C:\WINDOWS\$hf_mig$\KB911567\SP2QFE\msoe.dll
    + 2006-03-17 09:14:31 510,464 ----a-w C:\WINDOWS\$hf_mig$\KB911567\SP2QFE\wab32.dll
    + 2006-03-17 09:14:31 85,504 ----a-w C:\WINDOWS\$hf_mig$\KB911567\SP2QFE\wabimp.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB911567\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB911567\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB911567\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB911567\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB911567\update\updspapi.dll
    + 2006-01-04 04:19:19 68,096 ----a-w C:\WINDOWS\$hf_mig$\KB911927\SP2QFE\webclnt.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB911927\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB911927\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB911927\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB911927\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB911927\update\updspapi.dll
    + 2006-03-04 04:00:27 1,022,976 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\browseui.dll
    + 2006-03-04 04:00:27 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\cdfview.dll
    + 2006-03-04 04:00:27 1,056,768 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\danim.dll
    + 2006-03-04 04:00:27 205,312 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\dxtrans.dll
    + 2006-03-04 04:00:27 55,808 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\extmgr.dll
    + 2006-03-04 01:34:41 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\iedw.exe
    + 2006-03-04 04:00:28 251,904 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\iepeers.dll
    + 2006-03-04 04:00:28 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\inseng.dll
    + 2006-03-23 20:32:00 3,076,608 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\mshtml.dll
    + 2006-03-04 04:00:29 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\mshtmled.dll
    + 2006-03-04 04:00:29 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\msrating.dll
    + 2006-03-04 04:00:30 532,480 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\mstime.dll
    + 2006-03-04 04:00:30 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\pngfilt.dll
    + 2006-03-30 09:29:27 1,495,040 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\shdocvw.dll
    + 2006-03-04 04:00:31 474,624 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\shlwapi.dll
    + 2006-03-30 01:52:07 25,088 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\spru040c.dll
    + 2006-03-18 11:07:51 616,448 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\urlmon.dll
    + 2006-03-04 04:00:31 667,648 ----a-w C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\wininet.dll
    + 2005-10-12 23:18:45 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB912812\spmsg.dll
    + 2005-10-12 23:18:45 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB912812\spuninst.exe
    + 2005-10-12 23:18:45 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB912812\update\spcustom.dll
    + 2005-10-12 23:18:46 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB912812\update\update.exe
    + 2005-10-12 23:18:49 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB912812\update\updspapi.dll
    + 2005-12-29 03:08:43 280,064 ----a-w C:\WINDOWS\$hf_mig$\KB912919\SP2QFE\gdi32.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB912919\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB912919\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB912919\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB912919\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB912919\update\updspapi.dll
    + 2006-01-13 17:07:08 360,448 ----a-w C:\WINDOWS\$hf_mig$\KB913446\SP2QFE\tcpip.sys
    + 2005-10-12 23:15:23 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB913446\spmsg.dll
    + 2005-10-12 23:15:24 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB913446\spuninst.exe
    + 2005-10-12 23:15:23 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB913446\update\spcustom.dll
    + 2005-10-12 23:15:26 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB913446\update\update.exe
    + 2005-10-12 23:15:43 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB913446\update\updspapi.dll
    + 2006-03-01 19:42:12 426,496 ----a-w C:\WINDOWS\$hf_mig$\KB913580\SP2QFE\msdtcprx.dll
    + 2006-03-01 19:42:12 956,416 ----a-w C:\WINDOWS\$hf_mig$\KB913580\SP2QFE\msdtctm.dll
    + 2006-03-01 19:42:12 161,280 ----a-w C:\WINDOWS\$hf_mig$\KB913580\SP2QFE\msdtcuiu.dll
    + 2006-03-01 19:42:12 66,560 ----a-w C:\WINDOWS\$hf_mig$\KB913580\SP2QFE\mtxclu.dll
    + 2006-03-01 19:42:12 91,136 ----a-w C:\WINDOWS\$hf_mig$\KB913580\SP2QFE\mtxoci.dll
    + 2006-03-01 19:42:12 11,776 ----a-w C:\WINDOWS\$hf_mig$\KB913580\SP2QFE\xolehlp.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB913580\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB913580\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB913580\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB913580\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB913580\update\updspapi.dll
    + 2006-05-19 14:16:50 112,640 ----a-w C:\WINDOWS\$hf_mig$\KB914388\SP2QFE\dhcpcsvc.dll
    + 2006-05-19 14:16:51 147,456 ----a-w C:\WINDOWS\$hf_mig$\KB914388\SP2QFE\dnsapi.dll
    + 2006-05-19 14:16:51 95,744 ----a-w C:\WINDOWS\$hf_mig$\KB914388\SP2QFE\iphlpapi.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB914388\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB914388\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB914388\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB914388\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB914388\update\updspapi.dll
    + 2006-05-05 10:16:39 454,400 ----a-w C:\WINDOWS\$hf_mig$\KB914389\SP2QFE\mrxsmb.sys
    + 2006-05-05 10:22:52 174,592 ----a-w C:\WINDOWS\$hf_mig$\KB914389\SP2QFE\rdbss.sys
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB914389\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB914389\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB914389\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB914389\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB914389\update\updspapi.dll
    + 2006-07-14 15:52:22 121,856 ----a-w C:\WINDOWS\$hf_mig$\KB915865\SP2QFE\xmllite.dll
    + 2005-10-12 23:12:25 14,048 ----a-w C:\WINDOWS\$hf_mig$\KB915865\spmsg.dll
    + 2005-10-12 23:12:26 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB915865\spuninst.exe
    + 2005-10-12 23:12:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB915865\update\spcustom.dll
    + 2005-10-12 23:12:28 716,000 ----a-w C:\WINDOWS\$hf_mig$\KB915865\update\update.exe
    + 2005-10-12 23:12:33 371,424 ----a-w C:\WINDOWS\$hf_mig$\KB915865\update\updspapi.dll
    + 2006-05-10 05:26:47 1,022,976 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\browseui.dll
    + 2006-05-10 05:26:47 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\cdfview.dll
    + 2006-05-10 05:26:47 1,056,768 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\danim.dll
    + 2006-05-10 05:26:47 357,888 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\dxtmsft.dll
    + 2006-05-10 05:26:47 205,312 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\dxtrans.dll
    + 2006-05-10 05:26:47 55,808 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\extmgr.dll
    + 2006-05-09 11:41:31 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\iedw.exe
    + 2006-05-10 05:26:47 251,904 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\iepeers.dll
    + 2006-05-10 05:26:47 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\inseng.dll
    + 2006-05-10 05:26:47 15,872 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\jsproxy.dll
    + 2006-05-19 15:07:57 3,076,096 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\mshtml.dll
    + 2006-05-10 05:26:49 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\mshtmled.dll
    + 2006-05-10 05:26:49 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\msrating.dll
    + 2006-05-10 05:26:49 532,480 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\mstime.dll
    + 2006-05-10 05:26:49 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\pngfilt.dll
    + 2006-05-29 15:34:15 1,496,576 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\shdocvw.dll
    + 2006-05-10 05:26:49 474,624 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\shlwapi.dll
    + 2006-05-11 08:58:36 100,352 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\spru040c.dll
    + 2006-05-10 05:26:50 617,472 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\urlmon.dll
    + 2006-05-10 05:26:50 667,648 ----a-w C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\wininet.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB916281\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB916281\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB916281\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB916281\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB916281\update\updspapi.dll
    + 2006-03-17 01:08:10 262,656 ----a-w C:\WINDOWS\$hf_mig$\KB916595\SP2QFE\http.sys
    + 2005-10-12 23:18:45 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB916595\spmsg.dll
    + 2005-10-12 23:18:45 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB916595\spuninst.exe
    + 2005-10-12 23:18:45 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB916595\update\spcustom.dll
    + 2005-10-12 23:18:46 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB916595\update\update.exe
    + 2005-10-12 23:18:49 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB916595\update\updspapi.dll
    + 2006-04-21 06:46:15 332,800 ----a-w C:\WINDOWS\$hf_mig$\KB917159\SP2QFE\srv.sys
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB917159\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB917159\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB917159\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB917159\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB917159\update\updspapi.dll
    + 2006-05-18 05:49:55 450,560 ----a-w C:\WINDOWS\$hf_mig$\KB917344\SP2QFE\jscript.dll
    + 2005-10-12 23:18:45 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB917344\spmsg.dll
    + 2005-10-12 23:18:45 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB917344\spuninst.exe
    + 2005-10-12 23:18:45 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB917344\update\spcustom.dll
    + 2005-10-12 23:18:46 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB917344\update\update.exe
    + 2005-10-12 23:18:49 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB917344\update\updspapi.dll
    + 2006-07-05 10:58:13 1,050,112 ----a-w C:\WINDOWS\$hf_mig$\KB917422\SP2QFE\kernel32.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB917422\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB917422\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB917422\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB917422\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB917422\update\updspapi.dll
    + 2006-04-20 12:18:35 360,576 ----a-w C:\WINDOWS\$hf_mig$\KB917953\SP2QFE\tcpip.sys
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB917953\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB917953\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB917953\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB917953\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB917953\update\updspapi.dll
    + 2006-11-27 15:18:34 539,136 ----a-w C:\WINDOWS\$hf_mig$\KB918118\SP2QFE\msftedit.dll
    + 2006-11-27 15:18:34 433,664 ----a-w C:\WINDOWS\$hf_mig$\KB918118\SP2QFE\riched20.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB918118\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB918118\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB918118\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB918118\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB918118\update\updspapi.dll
    + 2006-06-01 19:46:25 163,840 ----a-w C:\WINDOWS\$hf_mig$\KB918439\SP2QFE\jgdw400.dll
    + 2006-06-01 19:46:25 27,648 ----a-w C:\WINDOWS\$hf_mig$\KB918439\SP2QFE\jgpl400.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB918439\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB918439\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB918439\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB918439\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB918439\update\updspapi.dll
    + 2006-06-23 11:25:40 1,022,976 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\browseui.dll
    + 2006-06-23 11:25:40 152,064 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\cdfview.dll
    + 2006-06-23 11:25:40 1,056,768 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\danim.dll
    + 2006-06-23 11:25:40 357,888 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\dxtmsft.dll
    + 2006-06-23 11:25:40 205,312 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\dxtrans.dll
    + 2006-06-23 11:25:40 55,808 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\extmgr.dll
    + 2006-06-23 08:48:30 18,432 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\iedw.exe
    + 2006-06-23 11:25:40 251,904 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\iepeers.dll
    + 2006-06-23 11:25:40 96,768 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\inseng.dll
    + 2006-06-23 11:25:40 15,872 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\jsproxy.dll
    + 2006-07-28 11:30:59 3,079,168 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\mshtml.dll
    + 2006-06-23 11:25:41 448,512 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\mshtmled.dll
    + 2006-06-23 11:25:41 146,432 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\msrating.dll
    + 2006-06-23 11:25:41 532,480 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\mstime.dll
    + 2006-06-23 11:25:41 39,424 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\pngfilt.dll
    + 2006-06-23 11:25:42 1,497,088 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\shdocvw.dll
    + 2006-06-23 11:25:42 474,624 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\shlwapi.dll
    + 2006-06-23 09:09:16 100,864 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\spru040c.dll
    + 2006-07-25 20:43:19 617,472 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\urlmon.dll
    + 2006-06-23 11:25:42 668,672 ----a-w C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\wininet.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB918899\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB918899\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB918899\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB918899\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB918899\update\updspapi.dll
    + 2006-07-13 11:43:08 202,496 ----a-w C:\WINDOWS\$hf_mig$\KB919007\SP2QFE\rmcast.sys
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB919007\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB919007\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB919007\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB919007\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB919007\update\updspapi.dll
    + 2006-10-12 13:55:58 42,496 ----a-w C:\WINDOWS\$hf_mig$\KB920213\SP2QFE\agentdp2.dll
    + 2006-10-12 13:55:58 57,344 ----a-w C:\WINDOWS\$hf_mig$\KB920213\SP2QFE\agentdpv.dll
    + 2006-10-12 11:54:07 256,512 ----a-w C:\WINDOWS\$hf_mig$\KB920213\SP2QFE\agentsvr.exe
    + 2006-10-16 11:19:09 265,216 ----a-w C:\WINDOWS\$hf_mig$\KB920213\SP2QFE\spru040c.dll
    + 2005-10-12 23:18:45 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB920213\spmsg.dll
    + 2005-10-12 23:18:45 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB920213\spuninst.exe
    + 2005-10-12 23:18:45 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB920213\update\spcustom.dll
    + 2005-10-12 23:18:46 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB920213\update\update.exe
    + 2005-10-12 23:18:49 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB920213\update\updspapi.dll
    + 2006-07-27 13:40:09 679,424 ----a-w C:\WINDOWS\$hf_mig$\KB920214\SP2QFE\inetcomm.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB920214\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB920214\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB920214\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB920214\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB920214\update\updspapi.dll
    + 2006-07-21 08:29:04 72,704 ----a-w C:\WINDOWS\$hf_mig$\KB920670\SP2QFE\hlink.dll
    + 2005-10-12 23:18:45 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB920670\spmsg.dll
    + 2005-10-12 23:18:45 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB920670\spuninst.exe
    + 2005-10-12 23:18:45 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB920670\update\spcustom.dll
    + 2005-10-12 23:18:46 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB920670\update\update.exe
    + 2005-10-12 23:18:49 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB920670\update\updspapi.dll
    + 2006-06-26 17:47:08 147,456 ----a-w C:\WINDOWS\$hf_mig$\KB920683\SP2QFE\dnsapi.dll
    + 2006-06-26 17:47:08 7,680 ----a-w C:\WINDOWS\$hf_mig$\KB920683\SP2QFE\rasadhlp.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB920683\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB920683\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB920683\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB920683\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB920683\update\updspapi.dll
    + 2006-06-22 05:22:11 69,120 ----a-w C:\WINDOWS\$hf_mig$\KB920685\SP2QFE\ciodm.dll
    + 2006-06-22 05:22:12 1,440,768 ----a-w C:\WINDOWS\$hf_mig$\KB920685\SP2QFE\query.dll
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB920685\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB920685\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB920685\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB920685\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB920685\update\updspapi.dll
    + 2006-06-14 08:50:19 172,416 ----a-w C:\WINDOWS\$hf_mig$\KB920872\SP2QFE\kmixer.sys
    + 2006-06-14 08:50:19 6,272 ----a-w C:\WINDOWS\$hf_mig$\KB920872\SP2QFE\splitter.sys
    + 2006-06-14 09:17:04 82,944 ----a-w C:\WINDOWS\$hf_mig$\KB920872\SP2QFE\wdmaud.sys
    + 2005-10-12 23:15:25 15,072 ----a-w C:\WINDOWS\$hf_mig$\KB920872\spmsg.dll
    + 2005-10-12 23:15:26 216,800 ----a-w C:\WINDOWS\$hf_mig$\KB920872\spuninst.exe
    + 2005-10-12 23:15:25 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB920872\update\spcustom.dll
    + 2005-10-12 23:15:28 727,776 ----a-w C:\WINDOWS\$hf_mig$\KB920872\update\update.exe
    + 2005-10-12 23:15:45 394,976 ----a-w C:\WINDOWS\$hf_mig$\KB920872\update\updspapi.dll
    + 2006-07-13 14:04:38 8,514,048 ----a-w C:\WINDOWS\$hf_mig$\KB921398\SP2QFE\shell32.dll
    + 2006-07-13 11:52:49 164,864 ----a-w C:\WINDOWS\$hf_mig$\KB921398\SP2QFE\spru040c.dll
    + 2005-10-12 23
    28 Mai 2008 21:54:20

    il n'est toujours pas complet, de plus tu n'as pas répondu à ma question.
    28 Mai 2008 22:06:03

    Si dans le post juste après ta question : Oui c'est une version OEM livrée et installée avec ma machine il n'y a aucun problème avec la licence.

    Par contre impossible de tout copier. Je sélectionne pourtant bien tout.

    Je ne pensais pas être si nul ........
    28 Mai 2008 22:19:24


    C'est fait !!!!
    29 Mai 2008 18:42:44

    je peux avoir le lien? :D 
    29 Mai 2008 21:45:24

    ok
    merci :) 

    ~Fais une analyse antivirus en ligne sur le site de Kaspersky
    http://webscanner.kaspersky.fr/

    ~ Clique sur Online Scanner.
    ~Accepte l'installation du contrôle ActiveX en cliquant sur le bouton Install.

    ~Sélectionne le poste de travail comme analyse.

    ~Enregistre le rapport en cliquant sur le bouton "Enregistrer rapport sous". Nomme-le, tu feras un copier/coller dans ta prochaine réponse.

    Tuto du scan en ligne
    30 Mai 2008 18:09:04

    http://digdilem.org/?q=node/38
    Pour le TR/Agent.57344 tout est dit en détail, si ça peut aider^^
    J'ai suivi les instructions a la lettre et ça a résolu le problème nickel pour moi.
    En espérant que ça servira^^
    31 Mai 2008 12:09:11

    Bonjour,

    voila le résultat de kaspersky, MERCI :

    -------------------------------------------------------------------------------
    KASPERSKY ON-LINE SCANNER REPORT
    Saturday, May 31, 2008 12:01:01 PM
    Système d'exploitation : Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
    Kaspersky On-line Scanner version : 5.0.83.0
    Dernière mise à jour de la base antivirus Kaspersky : 31/05/2008
    Enregistrements dans la base antivirus Kaspersky : 726525
    -------------------------------------------------------------------------------

    Paramètres d'analyse:
    Analyser avec la base antivirus suivante: standard
    Analyser les archives: vrai
    Analyser les bases de messagerie: vrai

    Cible de l'analyse - Poste de travail:
    C:\
    D:\
    E:\
    F:\

    Statistiques de l'analyse:
    Total d'objets analysés: 109729
    Nombre de virus trouvés: 4
    Nombre d'objets infectés: 5 / 0
    Nombre d'objets suspects: 4
    Durée de l'analyse: 02:41:33

    Nom de l'objet infecté / Nom du virus / Dernière action
    C:\Program Files\DAP\History\Fred\20070107.dat L'objet est verrouillé ignoré
    C:\Program Files\DAP\History\Fred\_lasthist.dat L'objet est verrouillé ignoré
    C:\System Volume Information\MountPointManagerRemoteDatabase L'objet est verrouillé ignoré
    C:\System Volume Information\_restore{2D3E19B1-64DC-41E8-8796-F87FCCC6007E}\RP823\change.log L'objet est verrouillé ignoré
    C:\WINDOWS\Debug\PASSWD.LOG L'objet est verrouillé ignoré
    C:\WINDOWS\S7AB24EED.tmp L'objet est verrouillé ignoré
    C:\WINDOWS\SchedLgU.Txt L'objet est verrouillé ignoré
    C:\WINDOWS\SoftwareDistribution\ReportingEvents.log L'objet est verrouillé ignoré
    C:\WINDOWS\Sti_Trace.log L'objet est verrouillé ignoré
    C:\WINDOWS\system32\CatRoot2\edb.log L'objet est verrouillé ignoré
    C:\WINDOWS\system32\CatRoot2\tmp.edb L'objet est verrouillé ignoré
    C:\WINDOWS\system32\config\AppEvent.Evt L'objet est verrouillé ignoré
    C:\WINDOWS\system32\config\default L'objet est verrouillé ignoré
    C:\WINDOWS\system32\config\default.LOG L'objet est verrouillé ignoré
    C:\WINDOWS\system32\config\Internet.evt L'objet est verrouillé ignoré
    C:\WINDOWS\system32\config\SAM L'objet est verrouillé ignoré
    C:\WINDOWS\system32\config\SAM.LOG L'objet est verrouillé ignoré
    C:\WINDOWS\system32\config\SecEvent.Evt L'objet est verrouillé ignoré
    C:\WINDOWS\system32\config\SECURITY L'objet est verrouillé ignoré
    C:\WINDOWS\system32\config\SECURITY.LOG L'objet est verrouillé ignoré
    C:\WINDOWS\system32\config\software L'objet est verrouillé ignoré
    C:\WINDOWS\system32\config\software.LOG L'objet est verrouillé ignoré
    C:\WINDOWS\system32\config\SysEvent.Evt L'objet est verrouillé ignoré
    C:\WINDOWS\system32\config\system L'objet est verrouillé ignoré
    C:\WINDOWS\system32\config\system.LOG L'objet est verrouillé ignoré
    C:\WINDOWS\system32\h323log.txt L'objet est verrouillé ignoré
    C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR L'objet est verrouillé ignoré
    C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP L'objet est verrouillé ignoré
    C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER L'objet est verrouillé ignoré
    C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP L'objet est verrouillé ignoré
    C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP L'objet est verrouillé ignoré
    C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA L'objet est verrouillé ignoré
    C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP L'objet est verrouillé ignoré
    C:\WINDOWS\wiadebug.log L'objet est verrouillé ignoré
    C:\WINDOWS\wiaservc.log L'objet est verrouillé ignoré
    C:\WINDOWS\WindowsUpdate.log L'objet est verrouillé ignoré
    D:\Documents and Settings\Admin\Cookies\index.dat L'objet est verrouillé ignoré
    D:\Documents and Settings\Admin\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat L'objet est verrouillé ignoré
    D:\Documents and Settings\Admin\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
    D:\Documents and Settings\Admin\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
    D:\Documents and Settings\Admin\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
    D:\Documents and Settings\Admin\Local Settings\Historique\History.IE5\MSHist012008053120080601\index.dat L'objet est verrouillé ignoré
    D:\Documents and Settings\Admin\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
    D:\Documents and Settings\Admin\NTUSER.DAT L'objet est verrouillé ignoré
    D:\Documents and Settings\Admin\ntuser.dat.LOG L'objet est verrouillé ignoré
    D:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat L'objet est verrouillé ignoré
    D:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat L'objet est verrouillé ignoré
    D:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Altnet4.zip/asmend.exe Suspect : Password-protected-EXE ignoré
    D:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Altnet4.zip ZIP: suspect - 1 ignoré
    D:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\BackWeblite.zip/backWeb-8876480.exe Suspect : Password-protected-EXE ignoré
    D:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\BackWeblite.zip ZIP: suspect - 1 ignoré
    D:\Documents and Settings\Christophe\Local Settings\Application Data\Microsoft\Outlook\archive.pst/Dossiers d'archivage/Éléments envoyés/29 Mar 2006 20:54 to 'cgluch@sopragroup.com':/TOMTOM NAVIGATOR 5.21-KEYGEN.rar/TOMTOM NAVIGATOR 5.21-KEYGEN/TOMTOM NAVIGATOR 5.21-Keygen-.Exe Infecté : Trojan.Win32.Small.hg ignoré
    D:\Documents and Settings\Christophe\Local Settings\Application Data\Microsoft\Outlook\archive.pst/Dossiers d'archivage/Éléments envoyés/29 Mar 2006 20:54 to 'cgluch@sopragroup.com':/TOMTOM NAVIGATOR 5.21-KEYGEN.rar Infecté : Trojan.Win32.Small.hg ignoré
    D:\Documents and Settings\Christophe\Local Settings\Application Data\Microsoft\Outlook\archive.pst MailMSMaill: infecté - 2 ignoré
    D:\Documents and Settings\Fred\Application Data\Grid Gpl\lqhpkedb.exe Infecté : Packed.Win32.PolyCrypt.d ignoré
    D:\Documents and Settings\LocalService.AUTORITE NT\Cookies\index.dat L'objet est verrouillé ignoré
    D:\Documents and Settings\LocalService.AUTORITE NT\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
    D:\Documents and Settings\LocalService.AUTORITE NT\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
    D:\Documents and Settings\LocalService.AUTORITE NT\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
    D:\Documents and Settings\LocalService.AUTORITE NT\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
    D:\Documents and Settings\LocalService.AUTORITE NT\ntuser.dat L'objet est verrouillé ignoré
    D:\Documents and Settings\LocalService.AUTORITE NT\ntuser.dat.LOG L'objet est verrouillé ignoré
    D:\Documents and Settings\NetworkService.AUTORITE NT.000\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
    D:\Documents and Settings\NetworkService.AUTORITE NT.000\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
    D:\Documents and Settings\NetworkService.AUTORITE NT.000\ntuser.dat L'objet est verrouillé ignoré
    D:\Documents and Settings\NetworkService.AUTORITE NT.000\ntuser.dat.LOG L'objet est verrouillé ignoré
    D:\Download\Setup.exe Infecté : Trojan.Win32.Midgare.eyz ignoré
    D:\System Volume Information\MountPointManagerRemoteDatabase L'objet est verrouillé ignoré
    D:\System Volume Information\_restore{2D3E19B1-64DC-41E8-8796-F87FCCC6007E}\RP823\change.log L'objet est verrouillé ignoré

    Analyse terminée.
    31 Mai 2008 14:16:34

    J'ai refait aussi un sacn complet avec antivir :



    Avira AntiVir Personal
    Report file date: 2008-05-31 12:12

    Scanning for 1302528 virus strains and unwanted programs.

    Licensed to: Avira AntiVir PersonalEdition Classic
    Serial number: 0000149996-ADJIE-0001
    Platform: Windows XP
    Windows version: (Service Pack 2) [5.1.2600]
    Boot mode: Normally booted
    Username: SYSTEM
    Computer name: ORDI1

    Version information:
    BUILD.DAT : 8.1.0.308 16478 Bytes 2008-05-28 17:03:00
    AVSCAN.EXE : 8.1.2.12 311553 Bytes 2008-03-18 09:02:56
    AVSCAN.DLL : 8.1.1.0 53505 Bytes 2008-02-07 08:43:37
    LUKE.DLL : 8.1.2.9 151809 Bytes 2008-02-28 08:41:23
    LUKERES.DLL : 8.1.2.1 12033 Bytes 2008-02-21 08:28:40
    ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 2007-07-18 10:33:34
    ANTIVIR1.VDF : 7.0.3.2 5447168 Bytes 2008-03-07 13:08:58
    ANTIVIR2.VDF : 7.0.4.53 1848832 Bytes 2008-05-17 19:40:16
    ANTIVIR3.VDF : 7.0.4.118 376832 Bytes 2008-05-30 20:49:02
    Engineversion : 8.1.0.51
    AEVDF.DLL : 8.1.0.5 102772 Bytes 2008-02-25 09:58:21
    AESCRIPT.DLL : 8.1.0.37 270715 Bytes 2008-05-30 20:49:05
    AESCN.DLL : 8.1.0.20 119157 Bytes 2008-05-29 20:48:37
    AERDL.DLL : 8.1.0.20 418165 Bytes 2008-05-22 19:40:22
    AEPACK.DLL : 8.1.1.5 364918 Bytes 2008-05-22 19:40:21
    AEOFFICE.DLL : 8.1.0.18 192890 Bytes 2008-05-22 19:40:21
    AEHEUR.DLL : 8.1.0.29 1253750 Bytes 2008-05-22 19:40:20
    AEHELP.DLL : 8.1.0.15 115063 Bytes 2008-05-29 20:48:37
    AEGEN.DLL : 8.1.0.25 307573 Bytes 2008-05-30 20:49:03
    AEEMU.DLL : 8.1.0.6 430451 Bytes 2008-05-22 19:40:17
    AECORE.DLL : 8.1.0.30 168311 Bytes 2008-05-29 20:48:36
    AVWINLL.DLL : 1.0.0.7 14593 Bytes 2008-01-23 17:07:53
    AVPREF.DLL : 8.0.0.1 25857 Bytes 2008-02-18 10:37:50
    AVREP.DLL : 7.0.0.1 155688 Bytes 2007-04-16 13:26:47
    AVREG.DLL : 8.0.0.0 30977 Bytes 2008-01-23 17:07:49
    AVARKT.DLL : 1.0.0.23 307457 Bytes 2008-02-12 08:29:23
    AVEVTLOG.DLL : 8.0.0.11 114945 Bytes 2008-02-28 08:31:31
    SQLITE3.DLL : 3.3.17.1 339968 Bytes 2008-01-22 17:28:02
    SMTPLIB.DLL : 1.2.0.19 28929 Bytes 2008-01-23 17:08:39
    NETNT.DLL : 8.0.0.1 7937 Bytes 2008-01-25 12:05:10
    RCIMAGE.DLL : 8.0.0.35 2371841 Bytes 2008-03-10 14:37:25
    RCTEXT.DLL : 8.0.32.0 86273 Bytes 2008-03-06 12:02:11

    Configuration settings for the scan:
    Jobname..........................: Complete system scan
    Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
    Logging..........................: low
    Primary action...................: interactive
    Secondary action.................: ignore
    Scan master boot sector..........: on
    Scan boot sector.................: on
    Boot sectors.....................: C:, D:,
    Scan memory......................: on
    Process scan.....................: on
    Scan registry....................: on
    Search for rootkits..............: off
    Scan all files...................: Intelligent file selection
    Scan archives....................: on
    Recursion depth..................: 20
    Smart extensions.................: on
    Macro heuristic..................: on
    File heuristic...................: medium

    Start of the scan: 2008-05-31 12:12

    The scan of running processes will be started
    Scan process 'avscan.exe' - '1' Module(s) have been scanned
    Scan process 'avcenter.exe' - '1' Module(s) have been scanned
    Scan process 'taskmgr.exe' - '1' Module(s) have been scanned
    Scan process 'alg.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'tcpsvcs.exe' - '1' Module(s) have been scanned
    Scan process 'nvsvc32.exe' - '1' Module(s) have been scanned
    Scan process 'avguard.exe' - '1' Module(s) have been scanned
    Scan process 'FxSvr2.exe' - '1' Module(s) have been scanned
    Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
    Scan process 'avgnt.exe' - '1' Module(s) have been scanned
    Scan process 'rundll32.exe' - '1' Module(s) have been scanned
    Scan process 'jusched.exe' - '1' Module(s) have been scanned
    Scan process 'WkUFind.exe' - '1' Module(s) have been scanned
    Scan process 'InCD.exe' - '1' Module(s) have been scanned
    Scan process 'LogiTray.exe' - '1' Module(s) have been scanned
    Scan process 'LVCOMSX.EXE' - '1' Module(s) have been scanned
    Scan process 'tfswctrl.exe' - '1' Module(s) have been scanned
    Scan process 'rundll32.exe' - '1' Module(s) have been scanned
    Scan process 'AGRSMMSG.exe' - '1' Module(s) have been scanned
    Scan process 'explorer.exe' - '1' Module(s) have been scanned
    Scan process 'sched.exe' - '1' Module(s) have been scanned
    Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'InCDsrv.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'lsass.exe' - '1' Module(s) have been scanned
    Scan process 'services.exe' - '1' Module(s) have been scanned
    Scan process 'winlogon.exe' - '1' Module(s) have been scanned
    Scan process 'csrss.exe' - '1' Module(s) have been scanned
    Scan process 'smss.exe' - '1' Module(s) have been scanned
    34 processes with 34 modules were scanned

    Starting master boot sector scan:
    Master boot sector HD0
    [INFO] No virus was found!

    Start scanning boot sectors:
    Boot sector 'C:\'
    [INFO] No virus was found!
    Boot sector 'D:\'
    [INFO] No virus was found!

    Starting to scan the registry.
    The registry was scanned ( '46' files ).


    Starting the file scan:

    Begin scan in 'C:\'
    C:\hiberfil.sys
    [WARNING] The file could not be opened!
    C:\QooBox\Quarantine\C\WINDOWS\system32\dptacrdr.exe.vir
    [DETECTION] Is the Trojan horse TR/Lowzones.SG
    [NOTE] The file was deleted!
    C:\QooBox\Quarantine\C\WINDOWS\system32\mjhtilmt.exe.vir
    [DETECTION] Is the Trojan horse TR/Lowzones.SG
    [NOTE] The file was deleted!
    C:\QooBox\Quarantine\C\WINDOWS\system32\naxekimg.exe.vir
    [DETECTION] Is the Trojan horse TR/Lowzones.SG
    [NOTE] The file was deleted!
    C:\QooBox\Quarantine\C\WINDOWS\system32\tejwcatw.exe.vir
    [DETECTION] Is the Trojan horse TR/Lowzones.SG
    [NOTE] The file was deleted!
    C:\QooBox\Quarantine\C\WINDOWS\system32\ulimdejy.exe.vir
    [DETECTION] Is the Trojan horse TR/Lowzones.SG
    [NOTE] The file was deleted!
    C:\System Volume Information\_restore{2D3E19B1-64DC-41E8-8796-F87FCCC6007E}\RP809\A0217788.exe
    [DETECTION] Is the Trojan horse TR/Lowzones.SG
    [NOTE] The file was deleted!
    C:\System Volume Information\_restore{2D3E19B1-64DC-41E8-8796-F87FCCC6007E}\RP809\A0217789.exe
    [DETECTION] Is the Trojan horse TR/Lowzones.SG
    [NOTE] The file was deleted!
    C:\System Volume Information\_restore{2D3E19B1-64DC-41E8-8796-F87FCCC6007E}\RP809\A0217790.exe
    [DETECTION] Is the Trojan horse TR/Lowzones.SG
    [NOTE] The file was deleted!
    C:\System Volume Information\_restore{2D3E19B1-64DC-41E8-8796-F87FCCC6007E}\RP809\A0217793.exe
    [DETECTION] Is the Trojan horse TR/Lowzones.SG
    [NOTE] The file was deleted!
    C:\System Volume Information\_restore{2D3E19B1-64DC-41E8-8796-F87FCCC6007E}\RP809\A0217794.exe
    [DETECTION] Is the Trojan horse TR/Lowzones.SG
    [NOTE] The file was deleted!
    Begin scan in 'D:\' <Disque travail>
    D:\pagefile.sys
    [WARNING] The file could not be opened!


    End of the scan: 2008-05-31 14:11
    Used time: 1:59:18 min

    The scan has been done completely.

    7748 Scanning directories
    602101 Files were scanned
    10 viruses and/or unwanted programs were found
    0 Files were classified as suspicious:
    10 files were deleted
    0 files were repaired
    0 files were moved to quarantine
    0 files were renamed
    2 Files cannot be scanned
    602091 Files not concerned
    9354 Archives were scanned
    2 Warnings
    10 Notes

    31 Mai 2008 19:33:57

    re

    supprime:
    D:\Documents and Settings\Fred\Application Data\Grid Gpl
    D:\Download\Setup.exe
    C:\QooBox

    reposte un log hijackthis stp
    1 Juin 2008 13:11:54

    Bonjour,

    voila c'est fait :

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 13:11:38, on 01/06/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16640)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\WINDOWS\System32\tcpsvcs.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\neodivxlazarus\neodivxlazarus.exe
    C:\Program Files\Fichiers communs\Sonic\Update Manager\sgtray.exe
    C:\WINDOWS\AGRSMMSG.exe
    C:\WINDOWS\system32\RunDll32.exe
    C:\WINDOWS\system32\dla\tfswctrl.exe
    C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe
    C:\WINDOWS\system32\LVCOMSX.EXE
    C:\Program Files\Logitech\Video\LogiTray.exe
    C:\Program Files\Nero\Nero 7\InCD\InCD.exe
    C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe
    C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
    C:\WINDOWS\system32\RUNDLL32.EXE
    C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Logitech\Video\FxSvr2.exe
    C:\neodivxlazarus\setting\mencoder.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\Program Files\Windows Live\Messenger\usnsvc.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O4 - HKLM\..\Run: [SchedulingAgent] mstinit.exe /firstlogon
    O4 - HKLM\..\Run: [RestoreIT!] "C:\Program Files\Phoenix Technologies Ltd\RecoverPro_XP_1\VBPTASK.EXE" VBStart
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe
    O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Fichiers communs\Sonic\Update Manager\sgtray.exe" /r
    O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
    O4 - HKLM\..\Run: [fenaffiche] C:\Program Files\FenAffiche\Fenpowernet.exe
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
    O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [InCD] C:\Program Files\Nero\Nero 7\InCD\InCD.exe
    O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-19\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-20\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-21-2203851307-2412725361-1088420860-1007\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Fred')
    O4 - HKUS\S-1-5-21-2203851307-2412725361-1088420860-1007\..\Run: [FlyAway] D:\DOCUME~1\Fred\LOCALS~1\Temp\FlyAway.exe (User 'Fred')
    O4 - HKUS\S-1-5-21-2203851307-2412725361-1088420860-1007\..\Run: [AnyDVD] C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe (User 'Fred')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
    O4 - S-1-5-21-2203851307-2412725361-1088420860-1007 Startup: Webshots.lnk = C:\Program Files\Webshots\Launcher.exe (User 'Fred')
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O14 - IERESET.INF: START_PAGE_URL=http://www.unika.com
    O16 - DPF: teleir_cert - https://static.ir.dgi.minefi.gouv.fr/secure/connexion/a...
    O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab
    O16 - DPF: {106E49CF-797A-11D2-81A2-00E02C015623} (AlternaTIFF ActiveX) - http://www.alternatiff.com/install/00/alttiff.cab
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: {54B52E52-8000-4413-BD67-FC7FE24B59F2} (EARTPatchX Class) - http://files.ea.com/downloads/rtpatch/v2/EARTPX.cab
    O16 - DPF: {5EDB10D9-7E95-4833-A218-62F375DAFCF1} (Aventail Installer ) - https://parici.sopragroup.com/postauthI/epi.cab
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Cont...
    O16 - DPF: {86EEF11E-FF16-48CE-B1A2-474B663041A9} - http://kit.carpediem.fr/12449/CD/EntreNanas.exe
    O16 - DPF: {A18962F6-E6ED-40B1-97C9-1FB36F38BFA8} (Aurigma Image Uploader 3.5 Control) - http://www.photoways.com/clients/ImageUploader3.cab
    O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSig...
    O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - http://www.photoways.com/clients/uploader_v2.2.0.6.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/fl...
    O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/mcfscan/2,1,0...
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
    O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
    O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
    O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe

    --
    End of file - 10313 bytes
    1 Juin 2008 19:02:06

    Salut :)  . J'ai installé un anti virus récemment. J'avais avast version familial et je voulais changer. J'ai téléchargé ESET NOD32. A la fin de son installation, mon pc plante. La sourie bougeait mais impossible de cliquer sur n'importe quoi. Je redémarre mon pc, et au bout de 1 min environ il replante, quelle que soit la session utilisée. Une seule solution: le mode sans echec, celui avec lequel je vous écrit en ce moment. Je ne sait plus quoi faire, aidez moi svp!! :cry: 
    1 Juin 2008 19:09:17

    Bonjour

    je ne suis pas un grand spécialiste, mais je crois qu'il vaudrait mieux ouvrir un nouveau sujet pour avoir des chances que le pb soit pris en compte !!!
    1 Juin 2008 20:11:08

    Merci je vais faire le necessaire :) 
    1 Juin 2008 22:17:13

    bonsoir

    ~Lance Hijackthis “Do a system scan only”.
    Coche les lignes qui suivent si encore présentes et uniquement celles-là.

    O4 - HKUS\S-1-5-21-2203851307-2412725361-1088420860-1007\..\Run: [FlyAway] D:\DOCUME~1\Fred\LOCALS~1\Temp\FlyAway.exe (User 'Fred')
    O16 - DPF: {86EEF11E-FF16-48CE-B1A2-474B663041A9} - http://kit.carpediem.fr/12449/CD/EntreNanas.exe


    Clique sur Fix checked (en bas à gauche)


    supprime si toujours présent:
    D:\DOCUME~1\Fred\LOCALS~1\Temp\FlyAway.exe


    comment se comporte ton pc?
    2 Juin 2008 20:14:20

    Bonsoir

    Tout d'abord un grand merci pour tout le temps passé avec chacun d'entre nous !!!!!

    J'ai fait ce que tu m'as dit.
    A priori cela va mieux sauf que 2 fois de suite j'ai eu un reboot de la machine ?!?........

    Ci joint log HijackThis:
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 20:12:27, on 02/06/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16640)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\WINDOWS\System32\tcpsvcs.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Windows Live\Messenger\usnsvc.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Fichiers communs\Sonic\Update Manager\sgtray.exe
    C:\WINDOWS\AGRSMMSG.exe
    C:\WINDOWS\system32\RunDll32.exe
    C:\WINDOWS\system32\dla\tfswctrl.exe
    C:\WINDOWS\system32\LVCOMSX.EXE
    C:\Program Files\Logitech\Video\LogiTray.exe
    C:\Program Files\Nero\Nero 7\InCD\InCD.exe
    C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe
    C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
    C:\WINDOWS\system32\RUNDLL32.EXE
    C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Logitech\Video\FxSvr2.exe
    C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O4 - HKLM\..\Run: [SchedulingAgent] mstinit.exe /firstlogon
    O4 - HKLM\..\Run: [RestoreIT!] "C:\Program Files\Phoenix Technologies Ltd\RecoverPro_XP_1\VBPTASK.EXE" VBStart
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe
    O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Fichiers communs\Sonic\Update Manager\sgtray.exe" /r
    O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
    O4 - HKLM\..\Run: [fenaffiche] C:\Program Files\FenAffiche\Fenpowernet.exe
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
    O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [InCD] C:\Program Files\Nero\Nero 7\InCD\InCD.exe
    O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-19\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-20\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-21-2203851307-2412725361-1088420860-1007\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Fred')
    O4 - HKUS\S-1-5-21-2203851307-2412725361-1088420860-1007\..\Run: [AnyDVD] C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe (User 'Fred')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
    O4 - S-1-5-21-2203851307-2412725361-1088420860-1007 Startup: Webshots.lnk = C:\Program Files\Webshots\Launcher.exe (User 'Fred')
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O14 - IERESET.INF: START_PAGE_URL=http://www.unika.com
    O16 - DPF: teleir_cert - https://static.ir.dgi.minefi.gouv.fr/secure/connexion/a...
    O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab
    O16 - DPF: {106E49CF-797A-11D2-81A2-00E02C015623} (AlternaTIFF ActiveX) - http://www.alternatiff.com/install/00/alttiff.cab
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: {54B52E52-8000-4413-BD67-FC7FE24B59F2} (EARTPatchX Class) - http://files.ea.com/downloads/rtpatch/v2/EARTPX.cab
    O16 - DPF: {5EDB10D9-7E95-4833-A218-62F375DAFCF1} (Aventail Installer ) - https://parici.sopragroup.com/postauthI/epi.cab
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Cont...
    O16 - DPF: {A18962F6-E6ED-40B1-97C9-1FB36F38BFA8} (Aurigma Image Uploader 3.5 Control) - http://www.photoways.com/clients/ImageUploader3.cab
    O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSig...
    O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - http://www.photoways.com/clients/uploader_v2.2.0.6.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/fl...
    O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/mcfscan/2,1,0...
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
    O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
    O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
    O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe

    --
    End of file - 9919 bytes
    2 Juin 2008 21:52:37

    re
    peut-être que j'ai fait un oubli :/ 
    O4 - HKLM\..\Run: [SchedulingAgent] mstinit.exe /firstlogon
    mais j'ai des informations contradictoires:

    http://www.castlecops.com/o23list-2416.html

    http://www.greatis.com/appdata/a/m/mstinit.exe.htm

    Il faut qu'on vérifie:


    Cette procédure doit être imprimée pour que tu puisses l’avoir sous les yeux quand tu seras en mode sans échec.

    Télécharge SDFix(créé par AndyManchesta) et sauvegarde le sur ton Bureau.
    ***Si le lien ne fonctionne pas, essaie celui-ci : http://download.bleepingcomputer.com/andymanchesta/SDFi... ***

    Double clique sur SDFix.exe et choisis Install pour l'extraire dans un dossier dédié sur le Bureau. Redémarre ton ordinateur en mode sans échec en suivant la procédure que voici :
  • Redémarre ton ordinateur
  • Après avoir entendu l'ordinateur biper lors du démarrage, mais avant que l'icône Windows apparaisse, tapote la touche F8 (une pression par seconde).
  • A la place du chargement normal de Windows, un menu avec différentes options devrait apparaître.
  • Choisis la première option, pour exécuter Windows en mode sans échec, puis appuie sur "Entrée".
  • Choisis ton compte.
    Déroule la liste des instructions ci-dessous :
  • Ouvre le dossier SDFix qui vient d'être créé dans le répertoire C:\ et double clique sur RunThis.bat pour lancer le script.
  • Appuie sur Y pour commencer le processus de nettoyage.
  • Il va supprimer les services et les entrées du Registre de certains trojans trouvés puis te demandera d'appuyer sur une touche pour redémarrer.
  • Appuie sur une touche pour redémarrer le PC.
  • Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
  • Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
  • Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.
  • Les icônes du Bureau affichées, le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier SDFix sous le nom Report.txt.
  • Enfin, copie/colle le contenu du fichier Report.txt dans ta prochaine réponse sur le forum, avec un nouveau log Hijackthis !

    3 Juin 2008 21:32:12

    Bonsoir

    désolé mais cela ne s'est pas vraiment passé comme prévu : rien de particulier après le reboot.

    Ci joint Report.txt :

    SDFix: Version 1.187
    Run by Admin on 03/06/2008 at 20:51

    Microsoft Windows XP [version 5.1.2600]
    Running From: C:\SDFix

    Checking Services :


    Restoring Windows Registry Values
    Restoring Windows Default Hosts File

    et la log Hijackthis :

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 21:23:23, on 03/06/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16640)
    Boot mode: Safe mode

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\LVComsX.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O4 - HKLM\..\Run: [SchedulingAgent] mstinit.exe /firstlogon
    O4 - HKLM\..\Run: [RestoreIT!] "C:\Program Files\Phoenix Technologies Ltd\RecoverPro_XP_1\VBPTASK.EXE" VBStart
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe
    O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Fichiers communs\Sonic\Update Manager\sgtray.exe" /r
    O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
    O4 - HKLM\..\Run: [fenaffiche] C:\Program Files\FenAffiche\Fenpowernet.exe
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
    O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [InCD] C:\Program Files\Nero\Nero 7\InCD\InCD.exe
    O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
    O4 - HKLM\..\Run: [SDFix] C:\SDFix\RunThis.bat /second
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-20\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O14 - IERESET.INF: START_PAGE_URL=http://www.unika.com
    O16 - DPF: teleir_cert - https://static.ir.dgi.minefi.gouv.fr/secure/connexion/a...
    O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab
    O16 - DPF: {106E49CF-797A-11D2-81A2-00E02C015623} (AlternaTIFF ActiveX) - http://www.alternatiff.com/install/00/alttiff.cab
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: {54B52E52-8000-4413-BD67-FC7FE24B59F2} (EARTPatchX Class) - http://files.ea.com/downloads/rtpatch/v2/EARTPX.cab
    O16 - DPF: {5EDB10D9-7E95-4833-A218-62F375DAFCF1} (Aventail Installer ) - https://parici.sopragroup.com/postauthI/epi.cab
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Cont...
    O16 - DPF: {A18962F6-E6ED-40B1-97C9-1FB36F38BFA8} (Aurigma Image Uploader 3.5 Control) - http://www.photoways.com/clients/ImageUploader3.cab
    O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSig...
    O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - http://www.photoways.com/clients/uploader_v2.2.0.6.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/fl...
    O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/mcfscan/2,1,0...
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
    O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
    O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
    O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe

    --
    End of file - 8246 bytes


    Merci

    3 Juin 2008 22:00:51

    re
    je préfère être sûr...


    Note :
    Citation :
    Pour afficher les dossiers et fichiers cachés du système:
    Panneau de configuration/Options des dossiers/onglet Affichage/cocher Afficher les fichiers et dossiers cachés, décocher Masquer les extensions de fichiers connus, décocher Masquer les fichiers protégés du Système.

    Les fichiers et dossiers cachés du système apparaissent alors dans l'explorateur Windows en transparence.


    Analyse ce fichier :

    C:\WINDOWS\system32\mstinit.exe

    Sur le site de virusscan

    http://virusscan.jotti.org/

    poste-nous le rapport.
    3 Juin 2008 23:30:02

    File: mstinit.exe
    Status: OK
    MD5: 58ef495e6aabfa17260d6bc52e6d91be
    Packers detected: -


    Scan taken on 03 Jun 2008 21:27:09 (GMT)
    A-Squared Found nothing
    AntiVir Found nothing
    ArcaVir Found nothing
    Avast Found nothing
    AVG Antivirus Found nothing
    BitDefender Found nothing
    ClamAV Found nothing
    CPsecure Found nothing
    Dr.Web Found nothing
    F-Prot Antivirus Found nothing
    F-Secure Anti-Virus Found nothing
    Fortinet Found nothing
    Ikarus Found nothing
    Kaspersky Anti-Virus Found nothing
    NOD32 Found nothing
    Norman Virus Control Found nothing
    Panda Antivirus Found nothing
    Sophos Antivirus Found nothing
    VirusBuster Found nothing
    VBA32 Found nothing

    4 Juin 2008 14:33:09

    bonjour
    c'est ok,

    tu as encore des reboot?
    si oui, à quels moments?
    4 Juin 2008 21:11:07

    Bonsoir

    oui à priori plus de pb ni de reboot.

    Super, un grand merci pour ton aide et le temps passé.

    Une dernière petite question dans le dossier prévention et le chapitre "Configuration conseillée" (que je vais suivre ...), le sujet du firewall n'est pas abordé. Aujourd'hui j'ai celui de XP, suffit il ???

    Encore Merci

    4 Juin 2008 23:53:02

    re
    nan, le firewall de xp filtre ce qui entre, mais pas ce qui sort, ce qui fait que ça ne suffit pas
    regarde ici:
    Sécuriser son PC


    Supprime tous les programmes installés pour la désinfection.


    Merci de consulter ce dossier (en pdf) pour en connaître davantage sur les risques du Net.



    Si tu trouves ce document intéressant, n'hésite pas à le transmettre à tes contacts.

    ~Edite ton premier message (en cliquant sur la gomme) et marque [résolu] dans le titre.

    :hello: 
    8 Juin 2008 20:40:30

    Bonsoir

    Merci

    Bonne continuation
    8 Juin 2008 21:23:07

    de rien
    bon surf
    :hello: 
    Tom's guide dans le monde
    • Allemagne
    • Italie
    • Irlande
    • Royaume Uni
    • Etats Unis
    Suivre Tom's Guide
    Inscrivez-vous à la Newsletter
    • ajouter à twitter
    • ajouter à facebook
    • ajouter un flux RSS