1. ========================= SEAF 1.0.1.0 - C_XX 2. 3. Commencé à: 14:43:45 le 18/11/2015 4. 5. Valeur(s) recherchée(s): 6. dnsapi.dll 7. 8. Légende: TC => Date de création, TM => Date de modification, DA => Dernier accès 9. 10. (!) --- Calcul du Hash "MD5" 11. (!) --- Informations supplémentaires 12. (!) --- Affichage des dossiers 13. (!) --- Recherche registre 14. 15. ====== Fichier(s) ====== 16. 17. 18. "C:\$Windows.~BT\NewOS\Windows\WinSxS\amd64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_10.0.10240.16384_fr-fr_c1c64b0f8ee370d7\dnsapi.dll.mui" [ ARCHIVE | 81 Ko ] 19. TC: 10/07/2015,17:22:54 | TM: 10/07/2015,17:22:54 | DA: 10/07/2015,17:22:54 20. 21. Hash MD5: 3F8549F47D095105F568DE6DB5ED4370 22. 23. CompanyName: Microsoft Corporation 24. ProductName: Système d’exploitation Microsoft® Windows® 25. InternalName: dnsapi 26. OriginalFileName: dnsapi 27. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 28. ProductVersion: 10.0.10240.16384 29. FileVersion: 10.0.10240.16384 (th1.150709-1700) 30. 31. ========================= 32. 33. 34. "C:\$Windows.~BT\NewOS\Windows\WinSxS\wow64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_10.0.10240.16384_fr-fr_cc1af561c34432d2\dnsapi.dll.mui" [ ARCHIVE | 81 Ko ] 35. TC: 10/07/2015,17:23:04 | TM: 10/07/2015,17:23:04 | DA: 10/07/2015,17:23:04 36. 37. Hash MD5: FFAA35BE04409B641A78CCEB3A162DBD 38. 39. CompanyName: Microsoft Corporation 40. ProductName: Système d’exploitation Microsoft® Windows® 41. InternalName: dnsapi 42. OriginalFileName: dnsapi 43. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 44. ProductVersion: 10.0.10240.16384 45. FileVersion: 10.0.10240.16384 (th1.150709-1700) 46. 47. ========================= 48. 49. 50. "C:\Users\romai_000\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\E41WQU5H\dll-dnsapi.dll[1].htm" [ NOT_CONTENT_INDEXED|ARCHIVE | 13 Ko ] 51. TC: 18/11/2015,01:02:53 | TM: 18/11/2015,01:02:54 | DA: 18/11/2015,01:02:53 52. 53. Hash MD5: 30BA6BB1A6AA28334E6D8ACD831AF889 54. 55. 56. ========================= 57. 58. 59. "C:\Windows\System32\fr-FR\dnsapi.dll.mui" [ ARCHIVE | 81 Ko ] 60. TC: 10/07/2015,17:23:04 | TM: 10/07/2015,17:23:04 | DA: 10/07/2015,17:23:04 61. 62. Hash MD5: FFAA35BE04409B641A78CCEB3A162DBD 63. 64. CompanyName: Microsoft Corporation 65. ProductName: Système d’exploitation Microsoft® Windows® 66. InternalName: dnsapi 67. OriginalFileName: dnsapi 68. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 69. ProductVersion: 10.0.10240.16384 70. FileVersion: 10.0.10240.16384 (th1.150709-1700) 71. 72. ========================= 73. 74. 75. "C:\Windows\SysWOW64\fr-FR\dnsapi.dll.mui" [ ARCHIVE | 81 Ko ] 76. TC: 10/07/2015,17:23:04 | TM: 10/07/2015,17:23:04 | DA: 10/07/2015,17:23:04 77. 78. Hash MD5: FFAA35BE04409B641A78CCEB3A162DBD 79. 80. CompanyName: Microsoft Corporation 81. ProductName: Système d’exploitation Microsoft® Windows® 82. InternalName: dnsapi 83. OriginalFileName: dnsapi 84. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 85. ProductVersion: 10.0.10240.16384 86. FileVersion: 10.0.10240.16384 (th1.150709-1700) 87. 88. ========================= 89. 90. 91. "C:\Windows\WinSxS\amd64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_10.0.10240.16384_fr-fr_c1c64b0f8ee370d7\dnsapi.dll.mui" [ ARCHIVE | 81 Ko ] 92. TC: 10/07/2015,17:22:54 | TM: 10/07/2015,17:22:54 | DA: 10/07/2015,17:22:54 93. 94. Hash MD5: 3F8549F47D095105F568DE6DB5ED4370 95. 96. CompanyName: Microsoft Corporation 97. ProductName: Système d’exploitation Microsoft® Windows® 98. InternalName: dnsapi 99. OriginalFileName: dnsapi 100. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 101. ProductVersion: 10.0.10240.16384 102. FileVersion: 10.0.10240.16384 (th1.150709-1700) 103. 104. ========================= 105. 106. 107. "C:\Windows\WinSxS\Backup\amd64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_10.0.10240.16384_fr-fr_c1c64b0f8ee370d7_dnsapi.dll.mui_97465f8a" [ ARCHIVE | 10 Ko ] 108. TC: 10/07/2015,17:24:00 | TM: 08/09/2015,18:37:50 | DA: 08/09/2015,18:37:50 109. 110. Hash MD5: B55DD08D59EB50B954FCA01E2563EAEE 111. 112. 113. ========================= 114. 115. 116. "C:\Windows\WinSxS\Backup\amd64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_10.0.10240.16384_none_9d8c256ebdd2e48a_dnsapi.dll_c81f5791" [ ARCHIVE | 267 Ko ] 117. TC: 10/07/2015,12:04:42 | TM: 10/07/2015,13:53:52 | DA: 10/07/2015,13:53:52 118. 119. Hash MD5: 3AAD3DD3FE151238A78AC7925A1D1987 120. 121. 122. ========================= 123. 124. 125. "C:\Windows\WinSxS\Backup\wow64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_10.0.10240.16384_fr-fr_cc1af561c34432d2_dnsapi.dll.mui_97465f8a" [ ARCHIVE | 10 Ko ] 126. TC: 10/07/2015,17:23:59 | TM: 08/09/2015,18:41:55 | DA: 08/09/2015,18:41:55 127. 128. Hash MD5: 095AF676CAD05CB248A1B194BDDBAC39 129. 130. 131. ========================= 132. 133. 134. "C:\Windows\WinSxS\Backup\wow64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_10.0.10240.16384_none_a7e0cfc0f233a685_dnsapi.dll_c81f5791" [ ARCHIVE | 232 Ko ] 135. TC: 10/07/2015,12:04:43 | TM: 10/07/2015,13:55:56 | DA: 10/07/2015,13:55:56 136. 137. Hash MD5: 40F5E5BFF000E02CBF400609D367DD83 138. 139. 140. ========================= 141. 142. 143. "C:\Windows\WinSxS\wow64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_10.0.10240.16384_fr-fr_cc1af561c34432d2\dnsapi.dll.mui" [ ARCHIVE | 81 Ko ] 144. TC: 10/07/2015,17:23:04 | TM: 10/07/2015,17:23:04 | DA: 10/07/2015,17:23:04 145. 146. Hash MD5: FFAA35BE04409B641A78CCEB3A162DBD 147. 148. CompanyName: Microsoft Corporation 149. ProductName: Système d’exploitation Microsoft® Windows® 150. InternalName: dnsapi 151. OriginalFileName: dnsapi 152. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 153. ProductVersion: 10.0.10240.16384 154. FileVersion: 10.0.10240.16384 (th1.150709-1700) 155. 156. ========================= 157. 158. 159. 160. ====== Entrée(s) du registre ====== 161. 162. 163. [HKLM\Software\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.64.1.1!7] 164. "Name"="@%SystemRoot%\system32\dnsapi.dll,-103" (REG_SZ) 165. 166. [HKLM\System\ControlSet001\Services\Dnscache] 167. "DisplayName"="@%SystemRoot%\System32\dnsapi.dll,-101" (REG_SZ) 168. 169. [HKLM\System\ControlSet001\Services\Dnscache] 170. "Description"="@%SystemRoot%\System32\dnsapi.dll,-102" (REG_SZ) 171. 172. [HKLM\System\ControlSet001\Services\EventLog\System\Microsoft-Windows-DNS-Client] 173. "EventMessageFile"="%SystemRoot%\system32\dnsapi.dll" (REG_EXPAND_SZ) 174. 175. [HKLM\System\CurrentControlSet\Services\Dnscache] 176. "DisplayName"="@%SystemRoot%\System32\dnsapi.dll,-101" (REG_SZ) 177. 178. [HKLM\System\CurrentControlSet\Services\Dnscache] 179. "Description"="@%SystemRoot%\System32\dnsapi.dll,-102" (REG_SZ) 180. 181. [HKLM\System\CurrentControlSet\Services\EventLog\System\Microsoft-Windows-DNS-Client] 182. "EventMessageFile"="%SystemRoot%\system32\dnsapi.dll" (REG_EXPAND_SZ) 183. 184. [HKU\.DEFAULT\Software\Classes\Local Settings\MuiCache\1bf\E27DDEF7] 185. "@%SystemRoot%\system32\dnsapi.dll,-103"="Approbation serveur DNS (Domain Name System)" (REG_SZ) 186. 187. [HKU\.DEFAULT\Software\Classes\Local Settings\MuiCache\1bf\E27DDEF7] 188. "@%SystemRoot%\System32\dnsapi.dll,-101"="Client DNS" (REG_SZ) 189. 190. [HKU\S-1-5-21-3351817133-2445292939-1435109273-1001\SOFTWARE\Classes\Local Settings\MuiCache\1bf\E27DDEF7] 191. "@%SystemRoot%\system32\dnsapi.dll,-103"="Approbation serveur DNS (Domain Name System)" (REG_SZ) 192. 193. [HKU\S-1-5-21-3351817133-2445292939-1435109273-1001_Classes\Local Settings\MuiCache\1bf\E27DDEF7] 194. "@%SystemRoot%\system32\dnsapi.dll,-103"="Approbation serveur DNS (Domain Name System)" (REG_SZ) 195. 196. [HKU\S-1-5-18\Software\Classes\Local Settings\MuiCache\1bf\E27DDEF7] 197. "@%SystemRoot%\system32\dnsapi.dll,-103"="Approbation serveur DNS (Domain Name System)" (REG_SZ) 198. 199. [HKU\S-1-5-18\Software\Classes\Local Settings\MuiCache\1bf\E27DDEF7] 200. "@%SystemRoot%\System32\dnsapi.dll,-101"="Client DNS" (REG_SZ) 201. 202. ========================= 203. 204. Fin à: 14:45:17 le 18/11/2015 205. 674782 Éléments analysés 206. 207. ========================= 208. E.O.F