1. ========================= SEAF 1.0.1.0 - C_XX 2. 3. Commencé à: 18:28:49 le 25/05/2016 4. 5. Valeur(s) recherchée(s): 6. dnsapi.dll 7. 8. Légende: TC => Date de création, TM => Date de modification, DA => Dernier accès 9. 10. (!) --- Calcul du Hash "MD5" 11. (!) --- Informations supplémentaires 12. (!) --- Affichage des dossiers 13. (!) --- Recherche registre 14. 15. ====== Fichier(s) ====== 16. 17. 18. "C:\AdwCleaner\FileQuarantine\C\WINDOWS\System32\dnsapi.dll.vir" [ ARCHIVE | 687 Ko ] 19. TC: 13/04/2016,18:05:56 | TM: 13/04/2016,18:05:56 | DA: 13/04/2016,18:05:56 20. 21. Hash MD5: 78FCF2C4104D28EBDDA0A78283A80BDB 22. 23. CompanyName: Microsoft Corporation 24. ProductName: Microsoft® Windows® Operating System 25. InternalName: dnsapi 26. OriginalFileName: dnsapi 27. LegalCopyright: © Microsoft Corporation. All rights reserved. 28. ProductVersion: 10.0.10586.212 29. FileVersion: 10.0.10586.212 (th2_release_sec.160328-1908) 30. 31. ========================= 32. 33. 34. "C:\AdwCleaner\FileQuarantine\C\WINDOWS\SysWOW64\dnsapi.dll.vir" [ ARCHIVE | 535 Ko ] 35. TC: 13/04/2016,18:05:55 | TM: 13/04/2016,18:05:55 | DA: 13/04/2016,18:05:55 36. 37. Hash MD5: C730F8E9E81F4CC266397E56AE0119EA 38. 39. CompanyName: Microsoft Corporation 40. ProductName: Microsoft® Windows® Operating System 41. InternalName: dnsapi 42. OriginalFileName: dnsapi 43. LegalCopyright: © Microsoft Corporation. All rights reserved. 44. ProductVersion: 10.0.10586.212 45. FileVersion: 10.0.10586.212 (th2_release_sec.160328-1908) 46. 47. ========================= 48. 49. 50. "C:\Windows\System32\dnsapi.dll" [ ARCHIVE | 535 Ko ] 51. TC: 17/05/2016,00:22:46 | TM: 13/04/2016,18:05:55 | DA: 17/05/2016,00:22:46 52. 53. Hash MD5: C730F8E9E81F4CC266397E56AE0119EA 54. 55. CompanyName: Microsoft Corporation 56. ProductName: Microsoft® Windows® Operating System 57. InternalName: dnsapi 58. OriginalFileName: dnsapi 59. LegalCopyright: © Microsoft Corporation. All rights reserved. 60. ProductVersion: 10.0.10586.0 61. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 62. 63. ========================= 64. 65. 66. "C:\Windows\System32\en-US\dnsapi.dll.mui" [ ARCHIVE | 73 Ko ] 67. TC: 24/12/2015,22:19:13 | TM: 24/12/2015,22:19:13 | DA: 24/12/2015,22:19:13 68. 69. Hash MD5: D095215B4CF6A109D14D8309DA9FE2C1 70. 71. CompanyName: Microsoft Corporation 72. ProductName: Microsoft® Windows® Operating System 73. InternalName: dnsapi 74. OriginalFileName: dnsapi 75. LegalCopyright: © Microsoft Corporation. All rights reserved. 76. ProductVersion: 10.0.10586.0 77. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 78. 79. ========================= 80. 81. 82. "C:\Windows\System32\fr-FR\dnsapi.dll.mui" [ ARCHIVE | 81 Ko ] 83. TC: 30/10/2015,20:59:25 | TM: 30/10/2015,20:59:25 | DA: 30/10/2015,20:59:25 84. 85. Hash MD5: 046997D0C7ADC9AEC88D1DAFC6344689 86. 87. CompanyName: Microsoft Corporation 88. ProductName: Système d’exploitation Microsoft® Windows® 89. InternalName: dnsapi 90. OriginalFileName: dnsapi 91. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 92. ProductVersion: 10.0.10586.0 93. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 94. 95. ========================= 96. 97. 98. "C:\Windows\SysWOW64\dnsapi.dll" [ ARCHIVE | 535 Ko ] 99. TC: 17/05/2016,00:22:46 | TM: 13/04/2016,18:05:55 | DA: 17/05/2016,00:22:46 100. 101. Hash MD5: C730F8E9E81F4CC266397E56AE0119EA 102. 103. CompanyName: Microsoft Corporation 104. ProductName: Microsoft® Windows® Operating System 105. InternalName: dnsapi 106. OriginalFileName: dnsapi 107. LegalCopyright: © Microsoft Corporation. All rights reserved. 108. ProductVersion: 10.0.10586.0 109. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 110. 111. ========================= 112. 113. 114. "C:\Windows\SysWOW64\en-US\dnsapi.dll.mui" [ ARCHIVE | 73 Ko ] 115. TC: 24/12/2015,22:19:13 | TM: 24/12/2015,22:19:13 | DA: 24/12/2015,22:19:13 116. 117. Hash MD5: D095215B4CF6A109D14D8309DA9FE2C1 118. 119. CompanyName: Microsoft Corporation 120. ProductName: Microsoft® Windows® Operating System 121. InternalName: dnsapi 122. OriginalFileName: dnsapi 123. LegalCopyright: © Microsoft Corporation. All rights reserved. 124. ProductVersion: 10.0.10586.0 125. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 126. 127. ========================= 128. 129. 130. "C:\Windows\SysWOW64\fr-FR\dnsapi.dll.mui" [ ARCHIVE | 81 Ko ] 131. TC: 30/10/2015,20:59:25 | TM: 30/10/2015,20:59:25 | DA: 30/10/2015,20:59:25 132. 133. Hash MD5: 046997D0C7ADC9AEC88D1DAFC6344689 134. 135. CompanyName: Microsoft Corporation 136. ProductName: Système d’exploitation Microsoft® Windows® 137. InternalName: dnsapi 138. OriginalFileName: dnsapi 139. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 140. ProductVersion: 10.0.10586.0 141. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 142. 143. ========================= 144. 145. 146. "C:\Windows\WinSxS\amd64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_10.0.10586.0_en-us_a3c89ed6ab94515d\dnsapi.dll.mui" [ ARCHIVE | 73 Ko ] 147. TC: 24/12/2015,22:19:03 | TM: 24/12/2015,22:19:03 | DA: 24/12/2015,22:19:03 148. 149. Hash MD5: 0E9549C583B02A4D04A21476187AE0E2 150. 151. CompanyName: Microsoft Corporation 152. ProductName: Microsoft® Windows® Operating System 153. InternalName: dnsapi 154. OriginalFileName: dnsapi 155. LegalCopyright: © Microsoft Corporation. All rights reserved. 156. ProductVersion: 10.0.10586.0 157. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 158. 159. ========================= 160. 161. 162. "C:\Windows\WinSxS\amd64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_10.0.10586.0_fr-fr_464b71b99e8d5964\dnsapi.dll.mui" [ ARCHIVE | 81 Ko ] 163. TC: 30/10/2015,20:59:19 | TM: 30/10/2015,20:59:19 | DA: 30/10/2015,20:59:19 164. 165. Hash MD5: 767681A2E60C4E13283A60B81C1432E0 166. 167. CompanyName: Microsoft Corporation 168. ProductName: Système d’exploitation Microsoft® Windows® 169. InternalName: dnsapi 170. OriginalFileName: dnsapi 171. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 172. ProductVersion: 10.0.10586.0 173. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 174. 175. ========================= 176. 177. 178. "C:\Windows\WinSxS\amd64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_10.0.10586.0_none_22114c18cd7ccd17\dnsapi.dll" [ ARCHIVE | 11 Ko ] 179. TC: 17/04/2016,01:54:38 | TM: 17/04/2016,01:54:39 | DA: 17/04/2016,01:54:38 180. 181. Hash MD5: E4E48EFBCF7DF993A1377CB0518411BC 182. 183. 184. ========================= 185. 186. 187. "C:\Windows\WinSxS\amd64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_10.0.10586.212_none_02b4dd7d82149e68\dnsapi.dll" [ ARCHIVE | 687 Ko ] 188. TC: 13/04/2016,18:05:56 | TM: 29/03/2016,12:11:32 | DA: 13/04/2016,18:05:56 189. 190. Hash MD5: 9A3E17CDB177913C2A111C80F3D0DBB4 191. 192. CompanyName: Microsoft Corporation 193. ProductName: Microsoft® Windows® Operating System 194. InternalName: dnsapi 195. OriginalFileName: dnsapi 196. LegalCopyright: © Microsoft Corporation. All rights reserved. 197. ProductVersion: 10.0.10586.212 198. FileVersion: 10.0.10586.212 (th2_release_sec.160328-1908) 199. 200. ========================= 201. 202. 203. "C:\Windows\WinSxS\Backup\amd64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_10.0.10586.0_en-us_a3c89ed6ab94515d_dnsapi.dll.mui_97465f8a" [ ARCHIVE | 9 Ko ] 204. TC: 30/12/2015,14:50:54 | TM: 30/12/2015,14:50:54 | DA: 30/12/2015,14:50:54 205. 206. Hash MD5: 023B9E22FEA7E68D6AE18CD514B8888B 207. 208. 209. ========================= 210. 211. 212. "C:\Windows\WinSxS\Backup\amd64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_10.0.10586.0_fr-fr_464b71b99e8d5964_dnsapi.dll.mui_97465f8a" [ ARCHIVE | 10 Ko ] 213. TC: 30/12/2015,14:50:54 | TM: 30/12/2015,14:50:54 | DA: 30/12/2015,14:50:54 214. 215. Hash MD5: 7ECDF0B84CB45712567CA601EE0866E8 216. 217. 218. ========================= 219. 220. 221. "C:\Windows\WinSxS\Backup\amd64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_10.0.10586.212_none_02b4dd7d82149e68_dnsapi.dll_c81f5791" [ ARCHIVE | 271 Ko ] 222. TC: 17/04/2016,02:28:33 | TM: 17/04/2016,02:28:33 | DA: 17/04/2016,02:28:33 223. 224. Hash MD5: 5BE8B3452547A5CD42FC21406AD33C7F 225. 226. 227. ========================= 228. 229. 230. "C:\Windows\WinSxS\Backup\wow64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_10.0.10586.0_en-us_ae1d4928dff51358_dnsapi.dll.mui_97465f8a" [ ARCHIVE | 9 Ko ] 231. TC: 30/12/2015,14:52:10 | TM: 30/12/2015,14:52:10 | DA: 30/12/2015,14:52:10 232. 233. Hash MD5: 5748F42B57771F2313485D4F32EBF84C 234. 235. 236. ========================= 237. 238. 239. "C:\Windows\WinSxS\Backup\wow64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_10.0.10586.0_fr-fr_50a01c0bd2ee1b5f_dnsapi.dll.mui_97465f8a" [ ARCHIVE | 10 Ko ] 240. TC: 30/12/2015,14:52:10 | TM: 30/12/2015,14:52:10 | DA: 30/12/2015,14:52:10 241. 242. Hash MD5: CEA01C38ED32127B957ABE91821A0A1A 243. 244. 245. ========================= 246. 247. 248. "C:\Windows\WinSxS\Backup\wow64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_10.0.10586.212_none_0d0987cfb6756063_dnsapi.dll_c81f5791" [ ARCHIVE | 233 Ko ] 249. TC: 17/04/2016,02:29:23 | TM: 17/04/2016,02:29:24 | DA: 17/04/2016,02:29:23 250. 251. Hash MD5: 7A70271BA481433AAEC6CE3C212C3715 252. 253. 254. ========================= 255. 256. 257. "C:\Windows\WinSxS\wow64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_10.0.10586.0_en-us_ae1d4928dff51358\dnsapi.dll.mui" [ ARCHIVE | 73 Ko ] 258. TC: 24/12/2015,22:19:13 | TM: 24/12/2015,22:19:13 | DA: 24/12/2015,22:19:13 259. 260. Hash MD5: D095215B4CF6A109D14D8309DA9FE2C1 261. 262. CompanyName: Microsoft Corporation 263. ProductName: Microsoft® Windows® Operating System 264. InternalName: dnsapi 265. OriginalFileName: dnsapi 266. LegalCopyright: © Microsoft Corporation. All rights reserved. 267. ProductVersion: 10.0.10586.0 268. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 269. 270. ========================= 271. 272. 273. "C:\Windows\WinSxS\wow64_microsoft-windows-d..ient-core.resources_31bf3856ad364e35_10.0.10586.0_fr-fr_50a01c0bd2ee1b5f\dnsapi.dll.mui" [ ARCHIVE | 81 Ko ] 274. TC: 30/10/2015,20:59:25 | TM: 30/10/2015,20:59:25 | DA: 30/10/2015,20:59:25 275. 276. Hash MD5: 046997D0C7ADC9AEC88D1DAFC6344689 277. 278. CompanyName: Microsoft Corporation 279. ProductName: Système d’exploitation Microsoft® Windows® 280. InternalName: dnsapi 281. OriginalFileName: dnsapi 282. LegalCopyright: © Microsoft Corporation. Tous droits réservés. 283. ProductVersion: 10.0.10586.0 284. FileVersion: 10.0.10586.0 (th2_release.151029-1700) 285. 286. ========================= 287. 288. 289. "C:\Windows\WinSxS\wow64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_10.0.10586.0_none_2c65f66b01dd8f12\dnsapi.dll" [ ARCHIVE | 18 Ko ] 290. TC: 17/04/2016,02:14:21 | TM: 17/04/2016,02:14:23 | DA: 17/04/2016,02:14:21 291. 292. Hash MD5: 4C8C167B131EBE7A4D94504F82DAD316 293. 294. 295. ========================= 296. 297. 298. 299. ====== Entrée(s) du registre ====== 300. 301. 302. [HKLM\Software\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.64.1.1!7] 303. "Name"="@%SystemRoot%\system32\dnsapi.dll,-103" (REG_SZ) 304. 305. [HKLM\Software\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.64.1.1!7] 306. "Name"="@%SystemRoot%\system32\dnsapi.dll,-103" (REG_SZ) 307. 308. [HKLM\System\ControlSet001\Services\Dnscache] 309. "DisplayName"="@%SystemRoot%\System32\dnsapi.dll,-101" (REG_SZ) 310. 311. [HKLM\System\ControlSet001\Services\Dnscache] 312. "Description"="@%SystemRoot%\System32\dnsapi.dll,-102" (REG_SZ) 313. 314. [HKLM\System\ControlSet001\Services\EventLog\System\Microsoft-Windows-DNS-Client] 315. "EventMessageFile"="%SystemRoot%\system32\dnsapi.dll" (REG_EXPAND_SZ) 316. 317. [HKLM\System\CurrentControlSet\Services\Dnscache] 318. "DisplayName"="@%SystemRoot%\System32\dnsapi.dll,-101" (REG_SZ) 319. 320. [HKLM\System\CurrentControlSet\Services\Dnscache] 321. "Description"="@%SystemRoot%\System32\dnsapi.dll,-102" (REG_SZ) 322. 323. [HKLM\System\CurrentControlSet\Services\EventLog\System\Microsoft-Windows-DNS-Client] 324. "EventMessageFile"="%SystemRoot%\system32\dnsapi.dll" (REG_EXPAND_SZ) 325. 326. [HKU\.DEFAULT\Software\Classes\Local Settings\MuiCache\46\E27DDEF7] 327. "@%SystemRoot%\system32\dnsapi.dll,-103"="Approbation serveur DNS (Domain Name System)" (REG_SZ) 328. 329. [HKU\.DEFAULT\Software\Classes\Local Settings\MuiCache\46\E27DDEF7] 330. "@%SystemRoot%\System32\dnsapi.dll,-101"="Client DNS" (REG_SZ) 331. 332. [HKU\S-1-5-21-1212765115-1361629941-2508081705-1002\SOFTWARE\Classes\Local Settings\MuiCache\46\3AC00C9C] 333. "@%SystemRoot%\system32\dnsapi.dll,-103"="Domain Name System (DNS) Server Trust" (REG_SZ) 334. 335. [HKU\S-1-5-21-1212765115-1361629941-2508081705-1002\SOFTWARE\Classes\Local Settings\MuiCache\46\3AC00C9C] 336. "@%SystemRoot%\System32\dnsapi.dll,-101"="DNS Client" (REG_SZ) 337. 338. [HKU\S-1-5-21-1212765115-1361629941-2508081705-1002\SOFTWARE\Classes\Local Settings\MuiCache\46\3AC00C9C] 339. "@%SystemRoot%\System32\dnsapi.dll,-102"="The DNS Client service (dnscache) caches Domain Name System (DNS) names and registers the full computer name for this computer. If the service is stopped, DNS names will continue to be resolved. However, the results of DNS name queries will not be cached and the computer's name will not be registered. If the service is disabled, any services that explicitly depend on it will fail to start." (REG_SZ) 340. 341. [HKU\S-1-5-21-1212765115-1361629941-2508081705-1002\SOFTWARE\Classes\Local Settings\MuiCache\46\EC49E7DC] 342. "@%SystemRoot%\system32\dnsapi.dll,-103"="Approbation serveur DNS (Domain Name System)" (REG_SZ) 343. 344. [HKU\S-1-5-21-1212765115-1361629941-2508081705-1002_Classes\Local Settings\MuiCache\46\3AC00C9C] 345. "@%SystemRoot%\system32\dnsapi.dll,-103"="Domain Name System (DNS) Server Trust" (REG_SZ) 346. 347. [HKU\S-1-5-21-1212765115-1361629941-2508081705-1002_Classes\Local Settings\MuiCache\46\3AC00C9C] 348. "@%SystemRoot%\System32\dnsapi.dll,-101"="DNS Client" (REG_SZ) 349. 350. [HKU\S-1-5-21-1212765115-1361629941-2508081705-1002_Classes\Local Settings\MuiCache\46\3AC00C9C] 351. "@%SystemRoot%\System32\dnsapi.dll,-102"="The DNS Client service (dnscache) caches Domain Name System (DNS) names and registers the full computer name for this computer. If the service is stopped, DNS names will continue to be resolved. However, the results of DNS name queries will not be cached and the computer's name will not be registered. If the service is disabled, any services that explicitly depend on it will fail to start." (REG_SZ) 352. 353. [HKU\S-1-5-21-1212765115-1361629941-2508081705-1002_Classes\Local Settings\MuiCache\46\EC49E7DC] 354. "@%SystemRoot%\system32\dnsapi.dll,-103"="Approbation serveur DNS (Domain Name System)" (REG_SZ) 355. 356. [HKU\S-1-5-18\Software\Classes\Local Settings\MuiCache\46\E27DDEF7] 357. "@%SystemRoot%\system32\dnsapi.dll,-103"="Approbation serveur DNS (Domain Name System)" (REG_SZ) 358. 359. [HKU\S-1-5-18\Software\Classes\Local Settings\MuiCache\46\E27DDEF7] 360. "@%SystemRoot%\System32\dnsapi.dll,-101"="Client DNS" (REG_SZ) 361. 362. ========================= 363. 364. Fin à: 18:34:19 le 25/05/2016 365. 1039270 Éléments analysés 366. 367. ========================= 368. E.O.F