1. ========================= SEAF 1.0.1.0 - C_XX 2. 3. Commencé à: 16:33:28 le 26/05/2016 4. 5. Valeur(s) recherchée(s): 6. dnsapi.dll 7. 8. Légende: TC => Date de création, TM => Date de modification, DA => Dernier accès 9. 10. (!) --- Calcul du Hash "MD5" 11. (!) --- Informations supplémentaires 12. (!) --- Affichage des dossiers 13. (!) --- Recherche registre 14. 15. ====== Fichier(s) ====== 16. 17. 18. "C:\Windows\System32\dnsapi.dll" [ ARCHIVE | 535 Ko ] 19. TC: 04/05/2016,16:57:19 | TM: 04/05/2016,16:57:19 | DA: 04/05/2016,16:57:19 20. 21. Hash MD5: 6A7ACABAE92C837F5C1330188EAE36AE 22. 23. CompanyName: Microsoft Corporation 24. ProductName: Système d’exploitation Microsoft® Windows® 25. InternalName: dnsapi 26. OriginalFileName: dnsapi 27. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 28. ProductVersion: 10.0.10586.0 29. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 30. 31. ========================= 32. 33. 34. "C:\Windows\System32\fr-FR\dnsapi.dll.mui" [ ARCHIVE | 81 Ko ] 35. TC: 13/02/2016,14:48:42 | TM: 13/02/2016,14:48:42 | DA: 13/02/2016,14:48:42 36. 37. Hash MD5: 046997D0C7ADC9AEC88D1DAFC6344689 38. 39. CompanyName: Microsoft Corporation 40. ProductName: Système d’exploitation Microsoft® Windows® 41. InternalName: dnsapi 42. OriginalFileName: dnsapi 43. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 44. ProductVersion: 10.0.10586.0 45. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 46. 47. ========================= 48. 49. 50. "C:\Windows\SysWOW64\dnsapi.dll" [ ARCHIVE | 535 Ko ] 51. TC: 04/05/2016,16:57:19 | TM: 04/05/2016,16:57:19 | DA: 04/05/2016,16:57:19 52. 53. Hash MD5: 6A7ACABAE92C837F5C1330188EAE36AE 54. 55. CompanyName: Microsoft Corporation 56. ProductName: Système d’exploitation Microsoft® Windows® 57. InternalName: dnsapi 58. OriginalFileName: dnsapi 59. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 60. ProductVersion: 10.0.10586.0 61. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 62. 63. ========================= 64. 65. 66. "C:\Windows\SysWOW64\fr-FR\dnsapi.dll.mui" [ ARCHIVE | 81 Ko ] 67. TC: 13/02/2016,14:48:42 | TM: 13/02/2016,14:48:42 | DA: 13/02/2016,14:48:42 68. 69. Hash MD5: 046997D0C7ADC9AEC88D1DAFC6344689 70. 71. CompanyName: Microsoft Corporation 72. ProductName: Système d’exploitation Microsoft® Windows® 73. InternalName: dnsapi 74. OriginalFileName: dnsapi 75. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 76. ProductVersion: 10.0.10586.0 77. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 78. 79. ========================= 80. 81. 82. "C:\Windows\WinSxS\amd64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_10.0.10586.0_fr-fr_464b71b99e8d5964\dnsapi.dll.mui" [ ARCHIVE | 81 Ko ] 83. TC: 13/02/2016,14:48:37 | TM: 13/02/2016,14:48:37 | DA: 13/02/2016,14:48:37 84. 85. Hash MD5: 767681A2E60C4E13283A60B81C1432E0 86. 87. CompanyName: Microsoft Corporation 88. ProductName: Système d’exploitation Microsoft® Windows® 89. InternalName: dnsapi 90. OriginalFileName: dnsapi 91. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 92. ProductVersion: 10.0.10586.0 93. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 94. 95. ========================= 96. 97. 98. "C:\Windows\WinSxS\amd64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_10.0.10586.0_none_22114c18cd7ccd17\dnsapi.dll" [ ARCHIVE | 11 Ko ] 99. TC: 30/10/2015,09:18:03 | TM: 15/05/2016,11:33:35 | DA: 15/05/2016,11:33:34 100. 101. Hash MD5: E4E48EFBCF7DF993A1377CB0518411BC 102. 103. 104. ========================= 105. 106. 107. "C:\Windows\WinSxS\amd64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_10.0.10586.212_none_02b4dd7d82149e68\dnsapi.dll" [ ARCHIVE | 687 Ko ] 108. TC: 04/05/2016,16:57:19 | TM: 04/05/2016,16:57:19 | DA: 04/05/2016,16:57:19 109. 110. Hash MD5: 9A3E17CDB177913C2A111C80F3D0DBB4 111. 112. CompanyName: Microsoft Corporation 113. ProductName: Système d’exploitation Microsoft® Windows® 114. InternalName: dnsapi 115. OriginalFileName: dnsapi 116. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 117. ProductVersion: 10.0.10586.0 118. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 119. 120. ========================= 121. 122. 123. "C:\Windows\WinSxS\Backup\amd64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_10.0.10586.0_fr-fr_464b71b99e8d5964_dnsapi.dll.mui_97465f8a" [ ARCHIVE | 10 Ko ] 124. TC: 13/02/2016,14:49:24 | TM: 13/02/2016,15:48:32 | DA: 13/02/2016,15:48:32 125. 126. Hash MD5: 5B0FD032397C2623B09BF02459F51C15 127. 128. 129. ========================= 130. 131. 132. "C:\Windows\WinSxS\Backup\amd64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_10.0.10586.212_none_02b4dd7d82149e68_dnsapi.dll_c81f5791" [ ARCHIVE | 271 Ko ] 133. TC: 04/05/2016,16:59:05 | TM: 15/05/2016,12:17:13 | DA: 15/05/2016,12:17:12 134. 135. Hash MD5: 21BB99660921B0F41A6580FBBB54E41B 136. 137. 138. ========================= 139. 140. 141. "C:\Windows\WinSxS\Backup\wow64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_10.0.10586.0_fr-fr_50a01c0bd2ee1b5f_dnsapi.dll.mui_97465f8a" [ ARCHIVE | 10 Ko ] 142. TC: 13/02/2016,14:49:24 | TM: 13/02/2016,15:49:27 | DA: 13/02/2016,15:49:27 143. 144. Hash MD5: 1048304DB612E3835AFBCE7292DB3232 145. 146. 147. ========================= 148. 149. 150. "C:\Windows\WinSxS\Backup\wow64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_10.0.10586.212_none_0d0987cfb6756063_dnsapi.dll_c81f5791" [ ARCHIVE | 233 Ko ] 151. TC: 04/05/2016,16:59:05 | TM: 15/05/2016,12:18:56 | DA: 15/05/2016,12:18:56 152. 153. Hash MD5: C131CFDCF0AC633C28C2449498806BDF 154. 155. 156. ========================= 157. 158. 159. "C:\Windows\WinSxS\Temp\PendingDeletes\$DeleteMe.dnsapi.dll.01d1b731e1578459.0000" [ VIRTUAL|ENCRYPTED|NOT_CONTENT_INDEXED|OFFLINE|COMPRESSED|REPARSE_POINT|SPARSE_FILE|TEMPORARY|NORMAL|DEVICE|ARCHIVE|DIRECTORY|SYSTEM|HIDDEN|READONLY | 0 o ] 160. TC: [Impossible à obtenir] | TM: [Impossible à obtenir] | DA: [Impossible à obtenir] 161. 162. Hash MD5: [Impossible à obtenir] 163. 164. 165. ========================= 166. 167. 168. "C:\Windows\WinSxS\wow64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_10.0.10586.0_fr-fr_50a01c0bd2ee1b5f\dnsapi.dll.mui" [ ARCHIVE | 81 Ko ] 169. TC: 13/02/2016,14:48:42 | TM: 13/02/2016,14:48:42 | DA: 13/02/2016,14:48:42 170. 171. Hash MD5: 046997D0C7ADC9AEC88D1DAFC6344689 172. 173. CompanyName: Microsoft Corporation 174. ProductName: Système d’exploitation Microsoft® Windows® 175. InternalName: dnsapi 176. OriginalFileName: dnsapi 177. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 178. ProductVersion: 10.0.10586.0 179. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 180. 181. ========================= 182. 183. 184. "C:\Windows\WinSxS\wow64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_10.0.10586.0_none_2c65f66b01dd8f12\dnsapi.dll" [ ARCHIVE | 18 Ko ] 185. TC: 30/10/2015,09:18:31 | TM: 15/05/2016,11:57:32 | DA: 15/05/2016,11:57:31 186. 187. Hash MD5: 4C8C167B131EBE7A4D94504F82DAD316 188. 189. 190. ========================= 191. 192. 193. "C:\Windows\WinSxS\wow64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_10.0.10586.212_none_0d0987cfb6756063\dnsapi.dll" [ ARCHIVE | 535 Ko ] 194. TC: 04/05/2016,16:57:19 | TM: 04/05/2016,16:57:19 | DA: 04/05/2016,16:57:19 195. 196. Hash MD5: 6A7ACABAE92C837F5C1330188EAE36AE 197. 198. CompanyName: Microsoft Corporation 199. ProductName: Système d’exploitation Microsoft® Windows® 200. InternalName: dnsapi 201. OriginalFileName: dnsapi 202. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 203. ProductVersion: 10.0.10586.0 204. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 205. 206. ========================= 207. 208. 209. "C:\Windows.old\Windows\System32\dnsapi.dll" [ ARCHIVE | 658 Ko ] 210. TC: 20/11/2014,21:42:36 | TM: 20/11/2014,21:42:36 | DA: 20/11/2014,21:42:36 211. 212. Hash MD5: A5675939CF0F99B20B5A3CFCC3C1B46A 213. 214. CompanyName: Microsoft Corporation 215. ProductName: Système d’exploitation Microsoft® Windows® 216. InternalName: dnsapi 217. OriginalFileName: dnsapi 218. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 219. ProductVersion: 10.0.10586.0 220. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 221. 222. ========================= 223. 224. 225. "C:\Windows.old\Windows\System32\fr-FR\dnsapi.dll.mui" [ ARCHIVE | 80 Ko ] 226. TC: 20/11/2014,20:45:41 | TM: 20/11/2014,20:45:41 | DA: 20/11/2014,20:45:41 227. 228. Hash MD5: B1F9F66A17E8FD4F3F333283CDEA4D78 229. 230. CompanyName: Microsoft Corporation 231. ProductName: Système d’exploitation Microsoft® Windows® 232. InternalName: dnsapi 233. OriginalFileName: dnsapi 234. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 235. ProductVersion: 6.3.9600.16384 236. FileVersion: 6.3.9600.16384 (winblue_rtm.130821-1623) 237. 238. ========================= 239. 240. 241. "C:\Windows.old\Windows\SysWOW64\dnsapi.dll" [ ARCHIVE | 499 Ko ] 242. TC: 20/11/2014,21:44:04 | TM: 20/11/2014,21:44:04 | DA: 20/11/2014,21:44:04 243. 244. Hash MD5: BD9C7A068C46053F8747CEA73B5930AB 245. 246. CompanyName: Microsoft Corporation 247. ProductName: Système d’exploitation Microsoft® Windows® 248. InternalName: dnsapi 249. OriginalFileName: dnsapi 250. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 251. ProductVersion: 10.0.10586.0 252. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 253. 254. ========================= 255. 256. 257. "C:\Windows.old\Windows\SysWOW64\fr-FR\dnsapi.dll.mui" [ ARCHIVE | 80 Ko ] 258. TC: 20/11/2014,20:45:41 | TM: 20/11/2014,20:45:41 | DA: 20/11/2014,20:45:41 259. 260. Hash MD5: B1F9F66A17E8FD4F3F333283CDEA4D78 261. 262. CompanyName: Microsoft Corporation 263. ProductName: Système d’exploitation Microsoft® Windows® 264. InternalName: dnsapi 265. OriginalFileName: dnsapi 266. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 267. ProductVersion: 6.3.9600.16384 268. FileVersion: 6.3.9600.16384 (winblue_rtm.130821-1623) 269. 270. ========================= 271. 272. 273. "C:\Windows.old\Windows\WinSxS\amd64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_6.3.9600.16384_fr-fr_aa84396bc82d2ca7\dnsapi.dll.mui" [ ARCHIVE | 80 Ko ] 274. TC: 20/11/2014,20:45:41 | TM: 20/11/2014,20:45:41 | DA: 20/11/2014,20:45:41 275. 276. Hash MD5: B1F9F66A17E8FD4F3F333283CDEA4D78 277. 278. CompanyName: Microsoft Corporation 279. ProductName: Système d’exploitation Microsoft® Windows® 280. InternalName: dnsapi 281. OriginalFileName: dnsapi 282. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 283. ProductVersion: 6.3.9600.16384 284. FileVersion: 6.3.9600.16384 (winblue_rtm.130821-1623) 285. 286. ========================= 287. 288. 289. "C:\Windows.old\Windows\WinSxS\amd64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_6.3.9600.17415_none_8696aea6f6e30ce2\dnsapi.dll" [ ARCHIVE | 658 Ko ] 290. TC: 20/11/2014,21:42:36 | TM: 20/11/2014,21:42:36 | DA: 20/11/2014,21:42:36 291. 292. Hash MD5: A5675939CF0F99B20B5A3CFCC3C1B46A 293. 294. CompanyName: Microsoft Corporation 295. ProductName: Système d’exploitation Microsoft® Windows® 296. InternalName: dnsapi 297. OriginalFileName: dnsapi 298. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 299. ProductVersion: 10.0.10586.0 300. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 301. 302. ========================= 303. 304. 305. "C:\Windows.old\Windows\WinSxS\Backup\amd64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_6.3.9600.16384_fr-fr_aa84396bc82d2ca7_dnsapi.dll.mui_97465f8a" [ ARCHIVE | 10 Ko ] 306. TC: 20/11/2014,20:46:17 | TM: 21/11/2014,02:26:23 | DA: 21/11/2014,02:26:23 307. 308. Hash MD5: E8BF51AC9002945172D01278DD81D25A 309. 310. 311. ========================= 312. 313. 314. "C:\Windows.old\Windows\WinSxS\Backup\amd64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_6.3.9600.17415_none_8696aea6f6e30ce2_dnsapi.dll_c81f5791" [ ARCHIVE | 284 Ko ] 315. TC: 21/11/2014,02:01:16 | TM: 21/11/2014,02:26:46 | DA: 21/11/2014,02:26:46 316. 317. Hash MD5: ABC17C66C6213FD4497BB6976B7407A6 318. 319. 320. ========================= 321. 322. 323. "C:\Windows.old\Windows\WinSxS\Backup\wow64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_6.3.9600.16384_fr-fr_b4d8e3bdfc8deea2_dnsapi.dll.mui_97465f8a" [ ARCHIVE | 10 Ko ] 324. TC: 20/11/2014,20:46:17 | TM: 21/11/2014,02:28:52 | DA: 21/11/2014,02:28:52 325. 326. Hash MD5: E8BF51AC9002945172D01278DD81D25A 327. 328. 329. ========================= 330. 331. 332. "C:\Windows.old\Windows\WinSxS\Backup\wow64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_6.3.9600.17415_none_90eb58f92b43cedd_dnsapi.dll_c81f5791" [ ARCHIVE | 215 Ko ] 333. TC: 21/11/2014,02:01:17 | TM: 21/11/2014,02:29:17 | DA: 21/11/2014,02:29:16 334. 335. Hash MD5: 5436CAC530751CA79BC872E3F51E3279 336. 337. 338. ========================= 339. 340. 341. "C:\Windows.old\Windows\WinSxS\wow64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_6.3.9600.16384_fr-fr_b4d8e3bdfc8deea2\dnsapi.dll.mui" [ ARCHIVE | 80 Ko ] 342. TC: 20/11/2014,20:45:41 | TM: 20/11/2014,20:45:41 | DA: 20/11/2014,20:45:41 343. 344. Hash MD5: B1F9F66A17E8FD4F3F333283CDEA4D78 345. 346. CompanyName: Microsoft Corporation 347. ProductName: Système d’exploitation Microsoft® Windows® 348. InternalName: dnsapi 349. OriginalFileName: dnsapi 350. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 351. ProductVersion: 6.3.9600.16384 352. FileVersion: 6.3.9600.16384 (winblue_rtm.130821-1623) 353. 354. ========================= 355. 356. 357. "C:\Windows.old\Windows\WinSxS\wow64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_6.3.9600.17415_none_90eb58f92b43cedd\dnsapi.dll" [ ARCHIVE | 499 Ko ] 358. TC: 20/11/2014,21:44:04 | TM: 20/11/2014,21:44:04 | DA: 20/11/2014,21:44:04 359. 360. Hash MD5: BD9C7A068C46053F8747CEA73B5930AB 361. 362. CompanyName: Microsoft Corporation 363. ProductName: Système d’exploitation Microsoft® Windows® 364. InternalName: dnsapi 365. OriginalFileName: dnsapi 366. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 367. ProductVersion: 10.0.10586.0 368. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 369. 370. ========================= 371. 372. 373. 374. ====== Entrée(s) du registre ====== 375. 376. 377. [HKLM\Software\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.64.1.1!7] 378. "Name"="@%SystemRoot%\system32\dnsapi.dll,-103" (REG_SZ) 379. 380. [HKLM\System\ControlSet001\Services\Dnscache] 381. "DisplayName"="@%SystemRoot%\System32\dnsapi.dll,-101" (REG_SZ) 382. 383. [HKLM\System\ControlSet001\Services\Dnscache] 384. "Description"="@%SystemRoot%\System32\dnsapi.dll,-102" (REG_SZ) 385. 386. [HKLM\System\ControlSet001\Services\EventLog\System\Microsoft-Windows-DNS-Client] 387. "EventMessageFile"="%SystemRoot%\system32\dnsapi.dll" (REG_EXPAND_SZ) 388. 389. [HKLM\System\CurrentControlSet\Services\Dnscache] 390. "DisplayName"="@%SystemRoot%\System32\dnsapi.dll,-101" (REG_SZ) 391. 392. [HKLM\System\CurrentControlSet\Services\Dnscache] 393. "Description"="@%SystemRoot%\System32\dnsapi.dll,-102" (REG_SZ) 394. 395. [HKLM\System\CurrentControlSet\Services\EventLog\System\Microsoft-Windows-DNS-Client] 396. "EventMessageFile"="%SystemRoot%\system32\dnsapi.dll" (REG_EXPAND_SZ) 397. 398. [HKU\.DEFAULT\Software\Classes\Local Settings\MuiCache\108\E27DDEF7] 399. "@%SystemRoot%\system32\dnsapi.dll,-103"="Approbation serveur DNS (Domain Name System)" (REG_SZ) 400. 401. [HKU\.DEFAULT\Software\Classes\Local Settings\MuiCache\108\E27DDEF7] 402. "@%SystemRoot%\System32\dnsapi.dll,-101"="Client DNS" (REG_SZ) 403. 404. [HKU\S-1-5-21-800940424-3997634671-1375518831-1001\SOFTWARE\Classes\Local Settings\MuiCache\108\E27DDEF7] 405. "@%SystemRoot%\system32\dnsapi.dll,-103"="Approbation serveur DNS (Domain Name System)" (REG_SZ) 406. 407. [HKU\S-1-5-21-800940424-3997634671-1375518831-1001\SOFTWARE\Classes\Local Settings\MuiCache\108\E27DDEF7] 408. "@%SystemRoot%\System32\dnsapi.dll,-102"="Le service client DNS (dnscache) met en cache les noms DNS (Domain Name System) et inscrit le nom complet de cet ordinateur. Si le service est arrêté, les noms DNS continuent d’être résolus. Toutefois, les résultats des requêtes de noms DNS ne sont pas mis en cache et le nom de l’ordinateur n’est pas inscrit. Si le service est désactivé, les services qui en dépendent explicitement ne peuvent pas démarrer." (REG_SZ) 409. 410. [HKU\S-1-5-21-800940424-3997634671-1375518831-1001_Classes\Local Settings\MuiCache\108\E27DDEF7] 411. "@%SystemRoot%\system32\dnsapi.dll,-103"="Approbation serveur DNS (Domain Name System)" (REG_SZ) 412. 413. [HKU\S-1-5-21-800940424-3997634671-1375518831-1001_Classes\Local Settings\MuiCache\108\E27DDEF7] 414. "@%SystemRoot%\System32\dnsapi.dll,-102"="Le service client DNS (dnscache) met en cache les noms DNS (Domain Name System) et inscrit le nom complet de cet ordinateur. Si le service est arrêté, les noms DNS continuent d’être résolus. Toutefois, les résultats des requêtes de noms DNS ne sont pas mis en cache et le nom de l’ordinateur n’est pas inscrit. Si le service est désactivé, les services qui en dépendent explicitement ne peuvent pas démarrer." (REG_SZ) 415. 416. [HKU\S-1-5-18\Software\Classes\Local Settings\MuiCache\108\E27DDEF7] 417. "@%SystemRoot%\system32\dnsapi.dll,-103"="Approbation serveur DNS (Domain Name System)" (REG_SZ) 418. 419. [HKU\S-1-5-18\Software\Classes\Local Settings\MuiCache\108\E27DDEF7] 420. "@%SystemRoot%\System32\dnsapi.dll,-101"="Client DNS" (REG_SZ) 421. 422. ========================= 423. 424. Fin à: 16:37:45 le 26/05/2016 425. 601927 Éléments analysés 426. 427. ========================= 428. E.O.F