DiagHelp version v1.1.2 -
http://www.malekal.com
excute le 2007-07-04 à 17:38:57,43
Liste des derniers fichies modifies/crees dans windir\system32
C:\WINDOWS\System32/drivers\gmer.sys -->2007-06-28 11:39:45
C:\WINDOWS\System32/drivers\avipbb.sys -->2007-03-20 09:55:45
C:\WINDOWS\System32/drivers\ssmdrv.sys -->2007-03-01 10:34:36
C:\WINDOWS\System32/drivers\avgntdd.sys -->2007-02-27 15:18:30
C:\WINDOWS\System32/drivers\ntfs.sys -->2007-02-09 07:10:35
C:\WINDOWS\System32/drivers\alcxwdm.sys -->2007-01-25 17:37:16
C:\WINDOWS\System32/drivers\pcouffin.sys -->2007-01-09 16:56:58
C:\WINDOWS\System32\oqtss.ini2 -->2007-07-04 17:38:59
C:\WINDOWS\System32\lhwgyhpa.exe -->2007-07-04 17:38:30
C:\WINDOWS\System32\kciabtmu.exe -->2007-07-04 17:16:45
C:\WINDOWS\System32\oqtss.ini -->2007-07-04 15:11:00
C:\WINDOWS\System32\oqtss.bak1 -->2007-07-04 15:10:24
C:\WINDOWS\System32\mcrh.tmp -->2007-07-04 14:58:08
C:\WINDOWS\System32\wpa.dbl -->2007-07-04 11:13:14
C:\WINDOWS\System32\pghfbubf.ini -->2007-07-04 08:37:45
C:\WINDOWS\System32\geoielqi.ini -->2007-07-03 21:23:59
C:\WINDOWS\System32\urdjfntm.ini -->2007-07-03 12:23:55
C:\WINDOWS\System32\jmaactvk.ini -->2007-07-03 11:51:13
C:\WINDOWS\System32\qgusuwhd.ini -->2007-07-03 11:31:47
C:\WINDOWS\System32\lbaochol.ini -->2007-07-03 10:54:14
C:\WINDOWS\System32\lohcoabl.dll -->2007-07-03 10:54:03
C:\WINDOWS\System32\irfdkkuf.ini -->2007-07-03 10:39:49
C:\WINDOWS\System32\plmueuyr.ini -->2007-07-03 10:30:59
C:\WINDOWS\System32\eemppwuc.ini -->2007-07-02 17:40:09
C:\WINDOWS\System32\clodfjxf.ini -->2007-07-02 17:14:35
C:\WINDOWS\System32\wmqoexel.ini -->2007-07-02 17:04:54
C:\WINDOWS\System32\hamvtrat.ini -->2007-07-02 16:44:02
C:\WINDOWS\System32\cguonsjf.ini -->2007-07-02 16:35:28
C:\WINDOWS\System32\wbcuisro.ini -->2007-07-02 16:13:46
C:\WINDOWS\System32\dylsydqp.ini -->2007-07-02 15:59:31
C:\WINDOWS\System32\wurjvwns.ini -->2007-07-02 15:24:20
C:\WINDOWS\System32\qhatphvy.ini -->2007-07-02 15:10:33
C:\WINDOWS\Thumbs.db -->2007-07-04 17:28:06
C:\WINDOWS\wmsetup.log -->2007-07-04 17:13:14
C:\WINDOWS\WindowsUpdate.log -->2007-07-04 15:22:01
C:\WINDOWS\setuperr.log -->2007-07-04 14:47:53
C:\WINDOWS\setupact.log -->2007-07-04 14:47:53
C:\WINDOWS\0.log -->2007-07-04 11:13:01
C:\WINDOWS\wiadebug.log -->2007-07-04 11:12:51
C:\WINDOWS\wiaservc.log -->2007-07-04 11:12:47
C:\WINDOWS\bootstat.dat -->2007-07-04 11:12:14
C:\WINDOWS\win.ini -->2007-07-04 10:46:23
C:\WINDOWS\system.ini -->2007-07-04 10:46:23
C:\WINDOWS\setupapi.log -->2007-07-04 10:07:44
C:\WINDOWS\SchedLgU.Txt -->2007-07-03 23:05:11
C:\WINDOWS\DPINST.LOG -->2007-07-01 09:35:49
C:\WINDOWS\WININIT.INI -->2007-06-29 23:13:47
Volume in drive C is PRESARIO
Volume Serial Number is 1B1F-8E26
Directory of C:\WINDOWS\system
1998-05-07 12:04 52 736 hpsysdrv.exe
1 File(s) 52 736 bytes
0 Dir(s) 155 549 257 728 bytes free
Volume in drive C is PRESARIO
Volume Serial Number is 1B1F-8E26
Directory of C:\WINDOWS\system32
2004-08-04 07:00 6 144 csrss.exe
1 File(s) 6 144 bytes
0 Dir(s) 155 549 257 728 bytes free
Contenu de Downloaded Program Files
Volume in drive C is PRESARIO
Volume Serial Number is 1B1F-8E26
Directory of C:\WINDOWS\Downloaded Program Files
2007-07-04 10:07 <DIR> .
2007-07-04 10:07 <DIR> ..
2007-07-02 15:44 941 688 asquared.ocx
2007-02-17 10:24 <DIR> CONFLICT.1
2007-02-17 10:24 <DIR> CONFLICT.2
2002-07-25 18:13 24 576 dwusplay.dll
2002-07-25 18:13 196 608 dwusplay.exe
2007-05-23 10:57 2 595 888 ImageUploader4.ocx
2005-06-10 10:44 417 792 isusweb.dll
2007-04-13 15:27 367 LegitCheckControl.inf
2006-06-20 15:44 379 704 MsnPUpld.dll
2006-06-19 14:40 393 MsnPUpld.inf
2005-05-26 04:19 293 muweb.inf
2007-05-10 15:50 334 piczo_fast_uploader.inf
2006-06-20 15:44 117 560 PURen-us.dll
2007-01-09 08:30 110 592 PURfr-ca.dll
2007-04-27 07:33 144 QTPlugin.inf
13 File(s) 4 785 939 bytes
Directory of C:\WINDOWS\Downloaded Program Files\CONFLICT.1
2007-02-17 10:24 <DIR> .
2007-02-17 10:24 <DIR> ..
2006-10-14 01:16 723 hcImpl.inf
2006-10-25 13:18 385 536 Housecall_ActiveX.dll
2003-05-29 16:00 160 864 messengerstatsclient.dll
2003-05-29 16:00 86 112 solitaireshowdown.dll
4 File(s) 633 235 bytes
Directory of C:\WINDOWS\Downloaded Program Files\CONFLICT.2
2007-02-17 10:24 <DIR> .
2007-02-17 10:24 <DIR> ..
2003-05-29 16:00 86 112 solitaireshowdown.dll
1 File(s) 86 112 bytes
Total Files Listed:
18 File(s) 5 505 286 bytes
8 Dir(s) 155 549 253 632 bytes free
Recherche de rootkit! (Merci S!Ri)
Recherche d'infections connues
Export des clefs sensibles..
Liste des fichiers en exception sur le pare-feu XP SP2
"C:\\StubInstaller.exe"="C:\\StubInstaller.exe:*:Disabled:LimeWire swarmed installer"
"C:\\WINDOWS\\system32\\sessmgr.exe"="C:\\WINDOWS\\system32\\sessmgr.exe:*:Disabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Internet Explorer\\iexplore.exe"="C:\\Program Files\\Internet Explorer\\iexplore.exe:*:Enabled:Internet Explorer"
"C:\\WINDOWS\\system32\\dpvsetup.exe"="C:\\WINDOWS\\system32\\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\\WINDOWS\\system32\\rundll32.exe"="C:\\WINDOWS\\system32\\rundll32.exe:*:Enabled:Run a DLL as an App"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\\WINDOWS\\system32\\dpnsvr.exe"="C:\\WINDOWS\\system32\\dpnsvr.exe:*:Enabled:Microsoft DirectPlay8 Server"
"C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes"
"C:\\Program Files\\SpeedBit Video Accelerator\\VideoAccelerator.exe"="C:\\Program Files\\SpeedBit Video Accelerator\\VideoAccelerator.exe:*:Enabled:VideoAccelerator"
"C:\\Program Files\\Windows Live\\Messenger\\msrr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msrr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\MessengerDiscovery\\MessengerDiscovery Live.exe"="C:\\Program Files\\MessengerDiscovery\\MessengerDiscovery Live.exe:*:Enabled:MessengerDiscovery Live the Windows Live Messenger addon"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"C:\\Program Files\\Shareaza\\Shareaza.exe"="C:\\Program Files\\Shareaza\\Shareaza.exe:*:Enabled:Shareaza"
"C:\\Program Files\\Morpheus\\Morpheus.exe"="C:\\Program Files\\Morpheus\\Morpheus.exe:*:Enabled:Morpheus"
"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
Export de la clef SharedTaskScheduler
[SharedTaskScheduler]
Rechercher adresses sensibles dans le fichier HOSTS...
catchme 0.3.914 W2K/XP/Vista - rootkit detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-07-04 17:41:37
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden services ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden services: 0
hidden files: 0
KProcCheck Version 0.2-beta1 Proof-of-Concept by SIG^2 (www.security.org.sg)
Process list by traversal of KiWaitListHead
4 - System
244 - sched.exe
316 - rundll32.exe
324 - MDM.EXE
680 - PAStiSvc.exe
708 - csrss.exe
736 - winlogon.exe
784 - services.exe
796 - lsass.exe
944 - ati2evxx.exe
956 - svchost.exe
1040 - svchost.exe
1132 - svchost.exe
1172 - svchost.exe
1392 - svchost.exe
1464 - svchost.exe
1508 - avscan.exe
1520 - avgnt.exe
1560 - ctfmon.exe
1572 - msnmsgr.exe
1680 - avguard.exe
1852 - explorer.exe
1976 - ati2evxx.exe
2068 - alg.exe
2156 - avcenter.exe
2276 - msnmsgr.exe
2440 - wmplayer.exe
2444 - explorer.exe
2540 - winlogon.exe
2572 - csrss.exe
2652 - MessengerDiscov
2668 - atiptaxx.exe
2696 - iexplore.exe
2952 - usnsvc.exe
3352 - atiptaxx.exe
3536 - iPodService.exe
3604 - cmd.exe
3648 - MessengerDiscov
3720 - iexplore.exe
3784 - explorer.exe
3944 - hpsysdrv.exe
Total number of processes = 41
NOTE: Under WinXP, this will not show all processes.
KProcCheck Version 0.2-beta1 Proof-of-Concept by SIG^2 (www.security.org.sg)
Driver/Module list by traversal of PsLoadedModuleList
804D7000 - \WINDOWS\system32\ntkrnlpa.exe
806CE000 - \WINDOWS\system32\hal.dll
F7B1C000 - \WINDOWS\system32\KDCOM.DLL
F7A2C000 - \WINDOWS\system32\BOOTVID.dll
F74ED000 - ACPI.sys
F7B1E000 - \WINDOWS\system32\DRIVERS\WMILIB.SYS
F74DC000 - pci.sys
F761C000 - isapnp.sys
F7BE4000 - pciide.sys
F789C000 - \WINDOWS\system32\DRIVERS\PCIIDEX.SYS
F7B20000 - viaide.sys
F7B22000 - intelide.sys
F762C000 - MountMgr.sys
F74BD000 - ftdisk.sys
F78A4000 - PartMgr.sys
F763C000 - VolSnap.sys
F73E8000 - iaStor.sys
F73D0000 - atapi.sys
F738D000 - ftsata2.sys
F7375000 - \WINDOWS\system32\DRIVERS\SCSIPORT.SYS
F764C000 - disk.sys
F765C000 - \WINDOWS\system32\DRIVERS\CLASSPNP.SYS
F7355000 - fltMgr.sys
F7343000 - sr.sys
F766C000 - bb-run.sys
F732C000 - KSecDD.sys
F7319000 - WudfPf.sys
F728C000 - Ntfs.sys
F725F000 - NDIS.sys
F767C000 - ohci1394.sys
F768C000 - \WINDOWS\system32\DRIVERS\1394BUS.SYS
F7244000 - Mup.sys
F76BC000 - \SystemRoot\system32\DRIVERS\nic1394.sys
F786C000 - \SystemRoot\system32\DRIVERS\AmdK8.sys
F6C60000 - \SystemRoot\system32\DRIVERS\ati2mtag.sys
F6C4C000 - \SystemRoot\system32\DRIVERS\VIDEOPRT.SYS
F7974000 - \SystemRoot\system32\DRIVERS\usbohci.sys
F6C29000 - \SystemRoot\system32\DRIVERS\USBPORT.SYS
F797C000 - \SystemRoot\system32\DRIVERS\usbehci.sys
F787C000 - \SystemRoot\system32\DRIVERS\imapi.sys
F7984000 - \SystemRoot\system32\drivers\Afc.sys
F788C000 - \SystemRoot\system32\DRIVERS\cdrom.sys
F76CC000 - \SystemRoot\system32\DRIVERS\redbook.sys
F6C06000 - \SystemRoot\system32\DRIVERS\ks.sys
F6BF2000 - \SystemRoot\system32\DRIVERS\Rtnicxp.sys
F6AE6000 - \SystemRoot\system32\DRIVERS\AGRSM.sys
F798C000 - \SystemRoot\System32\Drivers\Modem.SYS
F670E000 - \SystemRoot\system32\drivers\ALCXWDM.SYS
F66EC000 - \SystemRoot\system32\drivers\portcls.sys
F76DC000 - \SystemRoot\system32\drivers\drmk.sys
F66D8000 - \SystemRoot\system32\DRIVERS\parport.sys
F76EC000 - \SystemRoot\system32\DRIVERS\i8042prt.sys
F7994000 - \SystemRoot\system32\DRIVERS\mouclass.sys
F799C000 - \SystemRoot\system32\DRIVERS\kbdclass.sys
F7CC9000 - \SystemRoot\system32\DRIVERS\audstub.sys
F76FC000 - \SystemRoot\system32\DRIVERS\rasl2tp.sys
F7AEC000 - \SystemRoot\system32\DRIVERS\ndistapi.sys
F66C1000 - \SystemRoot\system32\DRIVERS\ndiswan.sys
F770C000 - \SystemRoot\system32\DRIVERS\raspppoe.sys
F771C000 - \SystemRoot\system32\DRIVERS\raspptp.sys
F79A4000 - \SystemRoot\system32\DRIVERS\TDI.SYS
F66B0000 - \SystemRoot\system32\DRIVERS\psched.sys
F772C000 - \SystemRoot\system32\DRIVERS\msgpc.sys
F79AC000 - \SystemRoot\system32\DRIVERS\ptilink.sys
F79B4000 - \SystemRoot\system32\DRIVERS\raspti.sys
F773C000 - \SystemRoot\system32\DRIVERS\termdd.sys
F7B48000 - \SystemRoot\system32\DRIVERS\swenum.sys
F667C000 - \SystemRoot\system32\DRIVERS\update.sys
F7AFC000 - \SystemRoot\system32\DRIVERS\mssmbios.sys
F775C000 - \SystemRoot\System32\Drivers\NDProxy.SYS
F778C000 - \SystemRoot\system32\DRIVERS\usbhub.sys
F7B4E000 - \SystemRoot\system32\DRIVERS\USBD.SYS
F7B50000 - \SystemRoot\System32\Drivers\Fs_Rec.SYS
F7BED000 - \SystemRoot\System32\Drivers\Null.SYS
F7B52000 - \SystemRoot\System32\Drivers\Beep.SYS
F79DC000 - \SystemRoot\System32\drivers\vga.sys
F7B54000 - \SystemRoot\System32\Drivers\mnmdd.SYS
F7B56000 - \SystemRoot\System32\DRIVERS\RDPCDD.sys
F79E4000 - \SystemRoot\System32\Drivers\Msfs.SYS
F79EC000 - \SystemRoot\System32\Drivers\Npfs.SYS
F7204000 - \SystemRoot\system32\DRIVERS\rasacd.sys
F2591000 - \SystemRoot\system32\DRIVERS\ipsec.sys
F2539000 - \SystemRoot\system32\DRIVERS\tcpip.sys
F2511000 - \SystemRoot\system32\DRIVERS\netbt.sys
F24EF000 - \SystemRoot\System32\drivers\afd.sys
F6E2E000 - \SystemRoot\system32\DRIVERS\netbios.sys
F79F4000 - \SystemRoot\system32\DRIVERS\ssmdrv.sys
F24C4000 - \SystemRoot\system32\DRIVERS\rdbss.sys
F2455000 - \SystemRoot\system32\DRIVERS\mrxsmb.sys
F6E0E000 - \SystemRoot\System32\Drivers\Fips.SYS
F2434000 - \SystemRoot\system32\DRIVERS\ipnat.sys
F6DFE000 - \SystemRoot\system32\DRIVERS\wanarp.sys
F6DEE000 - \SystemRoot\system32\DRIVERS\arp1394.sys
F6DDE000 - \SystemRoot\system32\DRIVERS\avipbb.sys
F7B58000 - \??\C:\Program Files\AntiVir PersonalEdition Classic\avgio.sys
F79FC000 - \SystemRoot\system32\DRIVERS\USBSTOR.SYS
F236C000 - \SystemRoot\system32\DRIVERS\pfc027.sys
F6DBE000 - \SystemRoot\system32\DRIVERS\STREAM.SYS
F2349000 - \SystemRoot\System32\Drivers\Fastfat.SYS
F2331000 - \SystemRoot\System32\Drivers\dump_atapi.sys
F7B7C000 - \SystemRoot\System32\Drivers\dump_WMILIB.SYS
BF800000 - \SystemRoot\System32\win32k.sys
F6610000 - \SystemRoot\System32\drivers\Dxapi.sys
F7A24000 - \SystemRoot\System32\watchdog.sys
BF9C3000 - \SystemRoot\System32\drivers\dxg.sys
F7C7F000 - \SystemRoot\System32\drivers\dxgthk.sys
BF9D5000 - \SystemRoot\System32\ati2dvag.dll
BFA14000 - \SystemRoot\System32\ati2cqag.dll
BFA4D000 - \SystemRoot\System32\atikvmag.dll
BFA82000 - \SystemRoot\System32\ati3duag.dll
BFCCF000 - \SystemRoot\System32\ativvaxx.dll
BFFA0000 - \SystemRoot\System32\ATMFD.DLL
F0149000 - \SystemRoot\system32\DRIVERS\ndisuio.sys
EFF06000 - \??\C:\Program Files\AntiVir PersonalEdition Classic\avgntflt.sys
EFE89000 - \SystemRoot\system32\DRIVERS\mrxdav.sys
EFE24000 - \SystemRoot\system32\drivers\wdmaud.sys
F00C1000 - \SystemRoot\system32\drivers\sysaudio.sys
EFC2D000 - \SystemRoot\System32\Drivers\HTTP.sys
EFAEB000 - \SystemRoot\system32\DRIVERS\srv.sys
F00B1000 - \SystemRoot\System32\Drivers\Cdfs.SYS
F7D43000 - \??\C:\WINDOWS\system32\Drivers\mchInjDrv.sys
EFA8F000 - \??\C:\WINDOWS\system32\drivers\bc_ngn.sys
F78DC000 - \??\C:\WINDOWS\system32\drivers\bc_ip_f.sys
F7BD2000 - \??\C:\WINDOWS\system32\drivers\bc_pat_f.sys
F7BB8000 - \??\C:\WINDOWS\system32\drivers\bc_prt_f.sys
EF4F3000 * --[Hidden]--
EF0B6000 - \SystemRoot\system32\drivers\kmixer.sys
BFF50000 - \SystemRoot\System32\TSDDD.dll
F7D58000 - \SystemRoot\System32\DRIVERS\KProcCheck.sys
Total number of drivers = 129
Liste des programmes installes
a-squared Anti-Dialer 3.0
Adobe Flash Player 9
Adobe Help Center 2.1
Adobe Reader 7.0.9
Adobe Shockwave Player
Agere Systems PCI-SV92PP Soft Modem
ATI Control Panel
ATI Display Driver
Avira AntiVir PersonalEdition Classic
BrainWave Generator
CCleaner (remove only)
Codeur Windows Media Série 9
Codeur Windows Media Série 9
Colour Spy 1.5
Destinations
DeviceManagementQFolder
Easy Internet Sign-up
Easy Internet Sign-up
High Definition Audio Driver Package - KB888111
HijackThis 1.99.1
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows XP (KB893357)
Hotfix for Windows XP (KB906569)
Hotfix for Windows XP (KB915865)
Hotfix for Windows XP (KB926239)
HP Boot Optimizer
HP Imaging Device Functions 6.0
HP Software Update
HpSdpAppCoreApp
J2SE Runtime Environment 5.0 Update 10
J2SE Runtime Environment 5.0 Update 5
Java(TM) SE Runtime Environment 6 Update 1
Jetico Personal Firewall 1.0
LimeWire 4.12.6
Messenger Plus! Live
MessengerDiscovery Live 1.3.0322
Microsoft .NET Framework 2.0
Microsoft .NET Framework 2.0
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft National Language Support Downlevel APIs
Microsoft User-Mode Driver Framework Feature Pack 1.0
Mozilla Firefox (2.0.0.4)
MSXML 4.0 SP2 (KB927978)
PC Camer@
PC Camer@
Python 2.2 pywin32 extensions (build 203)
Python 2.2.3
Realtek AC'97 Audio
Security Update for CAPICOM (KB931906)
Security Update for CAPICOM (KB931906)
Security Update for Microsoft .NET Framework 2.0 (KB917283)
Security Update for Microsoft .NET Framework 2.0 (KB922770)
Security Update for Step By Step Interactive Training (KB898458)
Security Update for Step By Step Interactive Training (KB923723)
Security Update for Windows Internet Explorer 7 (KB928090)
Security Update for Windows Internet Explorer 7 (KB929969)
Security Update for Windows Internet Explorer 7 (KB931768)
Security Update for Windows Internet Explorer 7 (KB933566)
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player 10 (KB917734)
Security Update for Windows Media Player 6.4 (KB925398)
Security Update for Windows XP (KB893756)
Security Update for Windows XP (KB896358)
Security Update for Windows XP (KB896422)
Security Update for Windows XP (KB896423)
Security Update for Windows XP (KB896424)
Security Update for Windows XP (KB896428)
Security Update for Windows XP (KB899587)
Security Update for Windows XP (KB899591)
Security Update for Windows XP (KB900725)
Security Update for Windows XP (KB901017)
Security Update for Windows XP (KB901214)
Security Update for Windows XP (KB902400)
Security Update for Windows XP (KB904706)
Security Update for Windows XP (KB905414)
Security Update for Windows XP (KB905749)
Security Update for Windows XP (KB905915)
Security Update for Windows XP (KB908519)
Security Update for Windows XP (KB911562)
Security Update for Windows XP (KB911927)
Security Update for Windows XP (KB912919)
Security Update for Windows XP (KB913580)
Security Update for Windows XP (KB914388)
Security Update for Windows XP (KB914389)
Security Update for Windows XP (KB917344)
Security Update for Windows XP (KB917422)
Security Update for Windows XP (KB917953)
Security Update for Windows XP (KB918118)
Security Update for Windows XP (KB918439)
Security Update for Windows XP (KB919007)
Security Update for Windows XP (KB920213)
Security Update for Windows XP (KB920670)
Security Update for Windows XP (KB920683)
Security Update for Windows XP (KB920685)
Security Update for Windows XP (KB921398)
Security Update for Windows XP (KB922616)
Security Update for Windows XP (KB922819)
Security Update for Windows XP (KB923191)
Security Update for Windows XP (KB923414)
Security Update for Windows XP (KB923689)
Security Update for Windows XP (KB923694)
Security Update for Windows XP (KB923980)
Security Update for Windows XP (KB924191)
Security Update for Windows XP (KB924270)
Security Update for Windows XP (KB924496)
Security Update for Windows XP (KB924667)
Security Update for Windows XP (KB925454)
Security Update for Windows XP (KB925486)
Security Update for Windows XP (KB925902)
Security Update for Windows XP (KB926255)
Security Update for Windows XP (KB926436)
Security Update for Windows XP (KB927779)
Security Update for Windows XP (KB927802)
Security Update for Windows XP (KB928255)
Security Update for Windows XP (KB928843)
Security Update for Windows XP (KB929123)
Security Update for Windows XP (KB930178)
Security Update for Windows XP (KB931261)
Security Update for Windows XP (KB931784)
Security Update for Windows XP (KB932168)
Security Update for Windows XP (KB935839)
Security Update for Windows XP (KB935840)
Serif PhotoPlus 6.0
Shareaza version 2.2.5.0
Trojan Remover 6.6.1
Ulead DVD DiskRecorder 2.1.1
Ulead Photo Express 5 SE
Ulead Photo Express 6
Unload
Update for Windows XP (KB898461)
Update for Windows XP (KB900485)
Update for Windows XP (KB904942)
Update for Windows XP (KB908531)
Update for Windows XP (KB910437)
Update for Windows XP (KB911280)
Update for Windows XP (KB916595)
Update for Windows XP (KB920872)
Update for Windows XP (KB922582)
Update for Windows XP (KB927891)
Update for Windows XP (KB929338)
Update for Windows XP (KB930916)
Update for Windows XP (KB931836)
VideoLAN VLC media player 0.8.6
Visionneuse Journal Windows Microsoft
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Installer 3.1 (KB893803)
Windows Internet Explorer 7
Windows Live installer
Windows Live Messenger
Windows Live Sign-in Assistant
Windows Media Format 11 runtime
Windows Media Format 11 runtime
Windows Media Player 11
Windows Media Player 11
Windows XP Hotfix - KB873339
Windows XP Hotfix - KB883667
Windows XP Hotfix - KB885250
Windows XP Hotfix - KB885835
Windows XP Hotfix - KB885836
Windows XP Hotfix - KB886185
Windows XP Hotfix - KB887472
Windows XP Hotfix - KB887742
Windows XP Hotfix - KB888113
Windows XP Hotfix - KB888239
Windows XP Hotfix - KB888302
Windows XP Hotfix - KB890175
Windows XP Hotfix - KB890859
Windows XP Hotfix - KB891781
Windows XP Hotfix - KB892050
Windows XP Hotfix - KB893066
WinPcap 3.1 beta4
WLM OSD Plugin
Volume in drive C is PRESARIO
Volume Serial Number is 1B1F-8E26
Directory of C:\Program Files
2007-07-04 17:28 <DIR> .
2007-07-04 17:28 <DIR> ..
2007-03-30 16:21 <DIR> Adobe
2007-06-29 18:07 <DIR> AntiVir PersonalEdition Classic
2007-07-04 11:14 <DIR> a-squared Anti-Dialer
2006-02-21 21:07 <DIR> ATI Technologies
2007-06-25 17:27 <DIR> BrainWave Generator
2007-01-09 20:06 <DIR> CCleaner
2007-06-27 12:25 <DIR> Common Files
2005-12-05 15:33 <DIR> ComPlus Applications
2007-06-24 09:35 <DIR> DAP
2006-07-05 19:24 <DIR> directx
2007-07-04 11:12 <DIR> ESET
2006-02-21 21:50 <DIR> Hewlett-Packard
2006-02-21 21:22 <DIR> HP
2007-01-03 13:06 <DIR> HP Rhapsody
2007-05-19 22:14 <DIR> IMBoss
2006-06-28 18:03 <DIR> InterActual
2007-06-13 15:27 <DIR> Internet Explorer
2007-05-30 08:58 <DIR> iPod
2007-06-28 18:42 <DIR> iTunes
2007-05-03 17:31 <DIR> Java
2007-07-04 11:26 <DIR> Jetico
2007-06-27 13:44 <DIR> LimeWire
2007-06-27 13:44 <DIR> Messenger
2007-06-09 21:35 <DIR> Messenger Plus! Live
2007-06-29 19:10 <DIR> MessengerDiscovery
2006-11-22 15:36 <DIR> MessengerPlus! 3
2007-06-21 00:42 <DIR> Microsoft CAPICOM 2.1.0.2
2005-12-06 13:19 <DIR> microsoft frontpage
2006-02-21 21:26 <DIR> Microsoft Visual Studio
2007-02-03 13:20 <DIR> Microsoft Works
2007-02-17 16:18 <DIR> movie maker
2007-07-04 10:50 <DIR> Mozilla Firefox
2007-02-24 15:12 <DIR> MSN
2007-02-17 16:18 <DIR> msn gaming zone
2007-03-27 09:16 <DIR> MSXML 4.0
2006-12-31 19:43 <DIR> NCH Swift Sound
2007-02-17 16:18 <DIR> netmeeting
2007-06-30 23:06 <DIR> Nicolas MERLET
2006-02-21 21:38 <DIR> Online Services
2007-06-13 15:29 <DIR> Outlook Express
2007-01-28 12:03 <DIR> PC Camer@
2006-02-21 21:34 <DIR> PC-Doctor for DOS
2007-06-27 11:59 <DIR> Photo To Sketch
2007-03-23 18:26 <DIR> PhotoFiltre
2007-06-28 18:51 <DIR> QuickTime
2006-12-02 14:46 <DIR> RBC Audio
2006-02-21 21:15 <DIR> Real
2007-02-17 16:15 <DIR> Realtek AC97
2007-03-08 14:56 <DIR> Serif
2007-07-01 13:53 <DIR> Shareaza
2007-03-02 16:15 <DIR> SilverAge Software
2006-07-28 21:03 <DIR> SmartSound Software
2006-09-12 19:33 <DIR> Spybot - Search & Destroy
2007-07-04 15:25 <DIR> Thoosje Sidebar V2.0
2007-07-04 08:37 <DIR> Trojan Remover
2007-03-24 18:15 <DIR> Universal Shield 4.1
2007-01-04 19:41 <DIR> VideoLAN
2007-01-09 18:55 <DIR> VSO
2007-06-20 09:25 <DIR> Windows Journal Viewer
2007-07-04 14:38 <DIR> Windows Live
2006-07-28 21:01 <DIR> Windows Media Components
2007-02-13 19:45 <DIR> Windows Media Connect 2
2007-01-10 17:43 <DIR> Windows Media Player
2005-12-06 13:20 <DIR> Windows NT
2007-05-19 22:09 <DIR> WinPcap
2007-03-03 19:49 <DIR> WinZip
2007-02-17 16:18 <DIR> xerox
0 File(s) 0 bytes
69 Dir(s) 155 548 848 128 bytes free
Volume in drive C is PRESARIO
Volume Serial Number is 1B1F-8E26
Directory of C:\Program Files\common files
2007-06-27 12:25 <DIR> .
2007-06-27 12:25 <DIR> ..
2006-02-21 21:23 <DIR> Adobe
2006-11-25 20:33 <DIR> Adobe Systems Shared
2007-01-28 12:07 <DIR> Ahead
2006-12-27 17:06 <DIR> ArcSoft
2007-01-27 11:20 <DIR> BOONTY Shared
2006-06-28 14:46 <DIR> Canon
2006-12-16 11:20 <DIR> Companion Wizard
2007-04-01 17:21 <DIR> Corel
2007-04-07 19:10 <DIR> Download Manager
2006-11-04 18:18 <DIR> Everstrike Software
2006-11-25 15:32 <DIR> GTK
2007-05-12 17:19 <DIR> InstallShield
2006-02-21 20:58 <DIR> Java
2007-06-20 09:25 <DIR> Microsoft Shared
2005-12-06 13:19 <DIR> MSSoap
2005-12-06 13:19 <DIR> ODBC
2007-06-27 12:37 <DIR> Panda Software
2007-01-28 12:10 <DIR> PCCamera
2007-01-09 18:33 <DIR> Real
2005-12-06 13:19 <DIR> Services
2007-06-27 13:40 <DIR> Softwin
2005-12-06 13:19 <DIR> SpeechEngines
2007-01-31 20:00 <DIR> SWF Studio
2007-01-03 13:39 <DIR> Symantec Shared
2007-06-13 15:29 <DIR> System
2006-11-23 20:47 <DIR> SystemRequirementsLab
2007-04-27 20:02 <DIR> Ulead Systems
0 File(s) 0 bytes
29 Dir(s) 155 548 848 128 bytes free
Volume in drive C is PRESARIO
Volume Serial Number is 1B1F-8E26
Directory of C:\
2007-07-04 17:37 68 096 diff.exe
2007-07-04 17:37 103 424 grep.exe
2005-10-31 11:56 700 416 StubInstaller.exe
3 File(s) 871 936 bytes
0 Dir(s) 155 548 848 128 bytes free
c:\Documents and Settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 7.2.0.34\iTunesSetupAdmin.exe
c:\Documents and Settings\Compaq_Owner\.limewire\.NetworkShare\LimeWireWin4.12.11.exe
c:\Documents and Settings\Compaq_Owner\.limewire\.NetworkShare\LimeWireWinInstaller.exe
c:\Documents and Settings\Compaq_Owner\Application Data\ezpinst.exe
c:\Documents and Settings\Compaq_Owner\Application Data\Adobe\Acrobat\7.0\Updater\AdbeRdr709_en_US.exe
c:\Documents and Settings\Compaq_Owner\Application Data\LimeWire\.NetworkShare\LimeWireWin4.12.15.exe
c:\Documents and Settings\Compaq_Owner\Application Data\Simply Super Software\Trojan Remover\pya2321.exe
c:\Documents and Settings\Compaq_Owner\DPMagnifier\tools\setdp.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\ainmrcmp.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\bnroccfd.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\BootVis.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\bpttbcvp.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\bqttwrtx.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\cypojxcl.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\dufeyavd.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\dvbgblru.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\ebfebfjw.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\ehffjvra.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\ikqvdalf.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\nvgxoebv.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\onqooxjh.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\pkjsutby.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\qeviuypw.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\setup.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\trpnilal.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\vbhlyfcb.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\vikvnqva.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\vyjrfwmx.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\wpjctlyy.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\wwawnpsf.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\yuwikstn.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\dotnetfx\dotnetfx.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\dotnetfx\instmsia.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\dotnetfx\WindowsInstaller-KB893803-v2-x86.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Sidebar_V_2_0_by_Thoosje\Sidebar-v2-installer.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 1 for gmer.zip\gmer.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 1 for hijackthis.zip\HijackThis.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 1 for hijackthis[1].zip\HijackThis.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 1 for viruskeeper2007pro.zip\setup.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\VSD187A.tmp\dotnetfx\dotnetchk.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temp\VSD422.tmp\dotnetfx\dotnetchk.exe
c:\Documents and Settings\Compaq_Owner\Local Settings\Temporary Internet Files\Content.IE5\QXMU2T4R\zlsSetup_70_337_000_fr[1].exe
c:\Documents and Settings\Compaq_Owner\My Documents\BootVis-Tool.exe
c:\Documents and Settings\Compaq_Owner\My Documents\Jetico_Personal_Firewall_1.0.1.61_Fr.exe
c:\Documents and Settings\Compaq_Owner\My Documents\windows-live-messenger_windows_live_messenger_8.5_beta_francais_19367.exe
c:\Documents and Settings\Compaq_Owner\My Documents\Downloads\Shareaza_2.2.5.0.exe
c:\Documents and Settings\Compaq_Owner\My Documents\a?????\games\bug-on-a-wire.exe
c:\Documents and Settings\Compaq_Owner\My Documents\a?????\games\crypt-raider.exe
c:\Documents and Settings\Compaq_Owner\My Documents\a?????\games\flashman.exe
c:\Documents and Settings\Compaq_Owner\My Documents\a?????\games\InternetGameBox_setup.exe
c:\Documents and Settings\Compaq_Owner\My Documents\a?????\games\MarioForever.exe
c:\Documents and Settings\Compaq_Owner\My Documents\a?????\games\MarioXP121\MarioXP_0121.exe
c:\Documents and Settings\Compaq_Owner\My Documents\a?????\logiciel\gimpshop_2.2.8_setup.exe
c:\Documents and Settings\Compaq_Owner\My Documents\a?????\logiciel\decocreator\decocreator\decocreator.exe
c:\Documents and Settings\Compaq_Owner\My Documents\a?????\logiciel\Emoticon Packs for Messenger\uninstall.exe
c:\Documents and Settings\Compaq_Owner\My Documents\a?????\logiciel\faderskyblog\faderskyblog4.exe
c:\Documents and Settings\Compaq_Owner\My Documents\a?????\logiciel\image2blog\image2blogv4.exe
c:\Documents and Settings\Compaq_Owner\My Documents\a?????\logiciel\logiciel\Install-MSN-Names.exe
c:\Documents and Settings\Compaq_Owner\My Documents\a?????\logiciel\logiciel\PhotoFiltre.exe
c:\Documents and Settings\Compaq_Owner\My Documents\a?????\logiciel\logiciel\Same.exe
c:\Documents and Settings\Compaq_Owner_2\Local Settings\Temp\Temporary Directory 1 for psa2se_us[1].zip\psa2se_us\setup.exe
c:\Documents and Settings\Compaq_Owner_2\Local Settings\Temp\UDC6_0001_D21M1601\installer.exe
c:\Documents and Settings\Compaq_Owner_2\Local Settings\Temporary Internet Files\Content.IE5\27HVXKUJ\davincifreeinstall[1].exe
c:\Documents and Settings\Compaq_Owner_2\My Documents\affaires dordi\programmes divers\setup.exe
c:\Documents and Settings\Compaq_Owner_2\My Documents\my\My Videos\507230.exe
c:\Documents and Settings\Compaq_Owner_love_peterpan\Desktop\DiagHelp\DiagHelp\catchme.exe
c:\Documents and Settings\Compaq_Owner_love_peterpan\Desktop\DiagHelp\DiagHelp\diff.exe
c:\Documents and Settings\Compaq_Owner_love_peterpan\Desktop\DiagHelp\DiagHelp\dumphive.exe
c:\Documents and Settings\Compaq_Owner_love_peterpan\Desktop\DiagHelp\DiagHelp\FilesInfoCmd.exe
c:\Documents and Settings\Compaq_Owner_love_peterpan\Desktop\DiagHelp\DiagHelp\find2.exe
c:\Documents and Settings\Compaq_Owner_love_peterpan\Desktop\DiagHelp\DiagHelp\Fport.exe
c:\Documents and Settings\Compaq_Owner_love_peterpan\Desktop\DiagHelp\DiagHelp\grep.exe
c:\Documents and Settings\Compaq_Owner_love_peterpan\Desktop\DiagHelp\DiagHelp\KProcCheck.exe
c:\Documents and Settings\Compaq_Owner_love_peterpan\Desktop\DiagHelp\DiagHelp\LFiles.exe
c:\Documents and Settings\Compaq_Owner_love_peterpan\Desktop\DiagHelp\DiagHelp\LISTDLLS.exe
c:\Documents and Settings\Compaq_Owner_love_peterpan\Desktop\DiagHelp\DiagHelp\pslist.exe
c:\Documents and Settings\Compaq_Owner_love_peterpan\Desktop\DiagHelp\DiagHelp\streams.exe
c:\Documents and Settings\Compaq_Owner_love_peterpan\Desktop\DiagHelp\DiagHelp\swreg.exe
c:\Documents and Settings\Nini.FAMILY\Application Data\InstallShield\Professional\RunTime\0700\Intel32\DotNetInstaller.exe
c:\Documents and Settings\Nini.FAMILY\Application Data\InstallShield Installation Information\{1D71D92C-4DDA-4B8B-98E8-3DE2C246F314}\setup.exe
c:\Documents and Settings\Nini.FAMILY\Application Data\InstallShield Installation Information\{9170E5EA-0739-4BBB-B27F-00BF316DC503}\setup.exe
c:\Documents and Settings\Nini.FAMILY\Application Data\Microsoft\Installer\{D9BBFA60-4514-4F08-A78F-91957F957495}\ARPPRODUCTICON.exe
c:\Documents and Settings\Nini.FAMILY\Application Data\Microsoft\Installer\{F6D63A65-BD23-46F3-B9A3-87F442423481}\ARPPRODUCTICON.exe
c:\Documents and Settings\Nini.FAMILY\Local Settings\Temporary Internet Files\Content.IE5\40RSNV8F\SweetImSetup[1].exe
c:\Documents and Settings\Nini.FAMILY\Local Settings\Temporary Internet Files\Content.IE5\JNSR0P7E\creativity_wmpfull[1].exe
c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\BACKUP\FAILSAFE\avewin32.dll
c:\Documents and Settings\All Users\Application Data\Grisoft\AVG Anti-Spyware 7.5\Downloads\help.dll
c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\ppcrlconfig.dll
c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\production\ppcrlconfig.dll
c:\Documents and Settings\All Users\Application Data\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll
c:\Documents and Settings\All Users\Application Data\Microsoft\Windows Defender\Definition Updates\Default\MpEngine.dll
c:\Documents and Settings\All Users\Application Data\Microsoft\Windows Defender\Definition Updates\{82227AD4-75E3-4674-AC05-8083511632A3}\mpengine.dll
c:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll
c:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylomgamesplayer.dll
c:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chuzzle\fr-FR\Chuzzle.dll
c:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\insaniquarium\fr-FR\insaniquarium.dll
c:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\MyZylomExtension\MyZylomExtension.dll
c:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PopcapExtension\PopcapExtension.dll
c:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ZylomDeluxeInstaller\ZylomDeluxeInstaller.dll
c:\Documents and Settings\Compaq_Owner\Application Data\Identities\{000HQ7FF-AD7A-3FG2-LJ35-231UUOKHKVVO}\xmlparse.dll
c:\Documents and Settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll
c:\Documents and Settings\Nini.FAMILY\Application Data\InstallShield\Professional\RunTime\Objectps.dll
c:\Documents and Settings\Nini.FAMILY\Application Data\InstallShield\Professional\RunTime\0700\Intel32\ctor.dll
c:\Documents and Settings\Nini.FAMILY\Application Data\InstallShield\Professional\RunTime\0700\Intel32\IGdi.dll
c:\Documents and Settings\Nini.FAMILY\Application Data\InstallShield\Professional\RunTime\0700\Intel32\iKernel.dll
c:\Documents and Settings\Nini.FAMILY\Application Data\InstallShield\Professional\RunTime\0700\Intel32\iscript.dll
c:\Documents and Settings\Nini.FAMILY\Application Data\InstallShield\Professional\RunTime\0700\Intel32\iuser.dll
c:\Documents and Settings\Nini.FAMILY\Application Data\InstallShield\Professional\RunTime\0700\Intel32\Setup.dll
c:\Documents and Settings\Nini.FAMILY\Application Data\InstallShield Installation Information\{1D71D92C-4DDA-4B8B-98E8-3DE2C246F314}\_setup.dll
c:\Documents and Settings\Nini.FAMILY\Application Data\InstallShield Installation Information\{9170E5EA-0739-4BBB-B27F-00BF316DC503}\_setup.dll
****** Fin du rapport DiagHelp