DDS (Ver_09-10-26.01) - NTFSx86
Run by Kurt at 11:48:55,03 on 07/11/2009
Internet Explorer: 6.0.2900.5512 BrowserJavaVersion: 1.6.0_17
Microsoft Windows XP Professionnel 5.1.2600.3.1252.33.1036.18.894.208 [GMT 1:00]
AV: Kaspersky Internet Security *On-access scanning enabled* (Updated) {2C4D4BC6-0793-4956-A9F9-E252435469C0}
FW: Kaspersky Internet Security *enabled* {2C4D4BC6-0793-4956-A9F9-E252435469C0}
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe
C:\WINDOWS\system32\S3trayp.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe
C:\Program Files\Bonjour\mDNSResponder.exe
svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\S3LoadSv.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
svchost.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtblfs.exe
C:\Documents and Settings\Kurt\Bureau\dds.scr
============== Pseudo HJT Report ===============
uStart Page = about:blank
uSearch Page = hxxp://
www.google.fr
uSearch Bar = hxxp://
www.google.fr/ie
mStart Page = about:blank
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://
www.google.fr/keyword/%s
mSearchAssistant = hxxp://
www.google.fr/ie
mWinlogon: SFCDisable=4 (0x4)
BHO: IEVkbdBHO Class: {59273ab4-e7d3-40f9-a1a8-6fa9cca1862c} - c:\program files\kaspersky lab\kaspersky internet security 2010\ievkbd.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Programme d'aide de l'Assistant de connexion Windows Live: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\fichiers communs\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.2.4204.1700\swg.dll
BHO: Google Dictionary Compression sdch: {c84d72fe-e17d-4195-bb24-76c02e2e7c4e} - c:\program files\google\google toolbar\component\fastsearch_B7C5AC242193BB3E.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: FilterBHO Class: {e33cf602-d945-461a-83f0-819f76a199f8} - c:\program files\kaspersky lab\kaspersky internet security 2010\klwtbbho.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
uRun: [MsnMsgr] "c:\program files\windows live\messenger\MsnMsgr.Exe" /background
mRun: [AVP] "c:\program files\kaspersky lab\kaspersky internet security 2010\avp.exe"
mRun: [S3Trayp] S3trayp.exe
mRun: [RTHDCPL] RTHDCPL.EXE
mRun: [LVCOMSX] c:\windows\system32\LVCOMSX.EXE
mRun: [Google Desktop Search] "c:\program files\google\google desktop search\GoogleDesktop.exe" /startup
mRun: [Google Quick Search Box] "c:\program files\google\quick search box\GoogleQuickSearchBox.exe" /autorun
dRunOnce: [Config] %systemroot%\system32\run.cmd
dRunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll"
dRunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe
uPolicies-explorer: MemCheckBoxInRunDlg = 1 (0x1)
uPolicies-explorer: NoSMBalloonTip = 1 (0x1)
uPolicies-explorer: NoDesktopCleanupWizard = 1 (0x1)
uPolicies-explorer: NoWelcomeScreen = 1 (0x1)
dPolicies-explorer: MemCheckBoxInRunDlg = 1 (0x1)
dPolicies-explorer: NoSMBalloonTip = 1 (0x1)
dPolicies-explorer: NoDesktopCleanupWizard = 1 (0x1)
dPolicies-explorer: NoWelcomeScreen = 1 (0x1)
IE: Ajouter à l'Anti-bannière - c:\program files\kaspersky lab\kaspersky internet security 2010\ie_banner_deny.htm
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {4248FE82-7FCB-46AC-B270-339F08212110} - {4248FE82-7FCB-46AC-B270-339F08212110} - c:\program files\kaspersky lab\kaspersky internet security 2010\klwtbbho.dll
IE: {CCF151D8-D089-449F-A5A4-D9909053F20F} - {CCF151D8-D089-449F-A5A4-D9909053F20F} - c:\program files\kaspersky lab\kaspersky internet security 2010\klwtbbho.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
Notify: klogon - c:\windows\system32\klogon.dll
AppInit_DLLs: c:\progra~1\kasper~1\kasper~1\mzvkbd3.dll,c:\progra~1\kasper~1\kasper~1\kloehk.dll c:\progra~1\google\google~3\GOEC62~1.DLL
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
================= FIREFOX ===================
FF - ProfilePath - c:\docume~1\kurt\applic~1\mozilla\firefox\profiles\xgp9r60g.default\
FF - prefs.js: browser.search.selectedEngine - Kiss
FF - component: c:\program files\mozilla firefox\components\GoogleDesktopMozilla.dll
FF - component: c:\program files\mozilla firefox\extensions\linkfilter@kaspersky.ru\components\KavLinkFilter.dll
FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\google\google updater\2.4.1739.5352\npCIDetect13.dll
FF - plugin: c:\program files\google\update\1.2.183.13\npGoogleOneClick8.dll
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
---- FIREFOX POLICIES ----
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
============= SERVICES / DRIVERS ===============
R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [2009-10-14 36880]
R0 xfilt;VIA SATA IDE Hot-plug Driver;c:\windows\system32\drivers\xfilt.sys [2009-11-3 22168]
R2 S3LoadSv;S3LoadSv;c:\windows\system32\s3loadsv.exe [2009-11-3 69632]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\drivers\klim5.sys [2009-9-14 32272]
R3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\drivers\klmouflt.sys [2009-10-2 19472]
R3 S3GIGP;S3GIGP;c:\windows\system32\drivers\S3gIGPm.sys [2009-11-3 561152]
S2 gupdate;Service Google Update (gupdate);c:\program files\google\update\GoogleUpdate.exe [2009-11-6 133104]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [2009-11-3 1684736]
S3 GoogleDesktopManager-093009-130223;Google Desktop Manager 5.9.909.30391;c:\program files\google\google desktop search\GoogleDesktop.exe [2009-11-6 30192]
=============== Created Last 30 ================
2009-11-06 16:51:41 0 d-----w- c:\documents and settings\kurt\Tracing
2009-11-06 16:49:08 0 d-----w- c:\program files\Microsoft
2009-11-06 16:48:36 0 d-----w- c:\program files\Windows Live SkyDrive
2009-11-06 15:19:33 0 d-----w- c:\program files\fichiers communs\Windows Live
2009-11-06 15:18:10 0 d-----w- c:\windows\system32\Adobe
2009-11-06 15:09:00 268 ---ha-w- C:\sqmdata03.sqm
2009-11-06 15:08:59 244 ---ha-w- C:\sqmnoopt03.sqm
2009-11-05 17:26:21 0 d-----w- c:\program files\Guitar Pro 5
2009-11-05 14:09:55 0 d-----w- c:\docume~1\alluse~1\applic~1\McAfee Security Scan
2009-11-04 17:54:29 268 ---ha-w- C:\sqmdata02.sqm
2009-11-04 17:54:29 244 ---ha-w- C:\sqmnoopt02.sqm
2009-11-04 01:50:30 0 d-----w- c:\program files\Microsoft CAPICOM 2.1.0.2
2009-11-03 21:12:24 272768 -c----w- c:\windows\system32\dllcache\bthport.sys
2009-11-03 21:12:02 153088 -c----w- c:\windows\system32\dllcache\triedit.dll
2009-11-03 21:11:53 128512 -c----w- c:\windows\system32\dllcache\dhtmled.ocx
2009-11-03 21:11:47 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
2009-11-03 21:11:46 333952 -c----w- c:\windows\system32\dllcache\srv.sys
2009-11-03 21:11:44 331776 -c----w- c:\windows\system32\dllcache\msadce.dll
2009-11-03 21:11:43 455296 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2009-11-03 21:11:40 1315328 -c----w- c:\windows\system32\dllcache\msoe.dll
2009-11-03 21:05:42 274288 ----a-w- c:\windows\system32\mucltui.dll
2009-11-03 21:05:42 18288 ----a-w- c:\windows\system32\mucltui.dll.mui
2009-11-03 17:39:38 0 d-----w- c:\program files\Messenger
2009-11-03 17:35:50 0 d-----w- c:\windows\ServicePackFiles
2009-11-03 17:34:09 1384479 ----a-w- c:\windows\system32\msvbvm60.dll
2009-11-03 17:31:47 19569 ----a-w- c:\windows\002631_.tmp
2009-11-03 17:20:31 0 d-----w- c:\program files\Spybot - Search & Destroy
2009-11-03 17:20:31 0 d-----w- c:\docume~1\alluse~1\applic~1\Spybot - Search & Destroy
2009-11-03 17:19:24 0 d-----w- c:\program files\eMule
2009-11-03 17:16:33 26600 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2009-11-03 17:16:33 107368 ----a-w- c:\windows\system32\GEARAspi.dll
2009-11-03 17:15:59 0 d-----w- c:\program files\iPod
2009-11-03 17:15:56 0 d-----w- c:\program files\iTunes
2009-11-03 17:15:56 0 d-----w- c:\docume~1\alluse~1\applic~1\{755AC846-7372-4AC8-8550-C52491DAA8BD}
2009-11-03 17:15:31 0 d-----w- c:\program files\Bonjour
2009-11-03 17:13:24 0 d-----w- c:\program files\fichiers communs\Apple
2009-11-03 14:22:32 0 d-----w- c:\program files\Mozilla Firefox 3.6 Beta 1
2009-11-03 12:31:36 0 d-s---w- c:\documents and settings\kurt\UserData
2009-11-03 11:41:53 221184 ----a-w- c:\windows\system32\wmpns.dll
2009-11-03 01:01:06 0 d-----w- c:\program files\VideoLAN
2009-11-03 00:45:09 0 d-----w- c:\program files\JRE
2009-11-03 00:44:19 0 d-----w- c:\program files\OpenOffice.org 3
2009-11-03 00:43:37 73728 ----a-w- c:\windows\system32\javacpl.cpl
2009-11-03 00:43:37 411368 ----a-w- c:\windows\system32\deploytk.dll
2009-11-03 00:39:56 0 d-----w- c:\program files\CCleaner
2009-11-03 00:29:35 0 d-----w- c:\program files\Windows Media Connect 2
2009-11-03 00:24:59 0 d-----w- c:\windows\system32\LogFiles
2009-11-03 00:14:48 5504 ----a-w- c:\windows\system32\drivers\mstee.sys
2009-11-03 00:14:36 10880 ----a-w- c:\windows\system32\drivers\ndisip.sys
2009-11-03 00:14:32 15232 ----a-w- c:\windows\system32\drivers\streamip.sys
2009-11-03 00:14:31 16384 ----a-w- c:\windows\system32\ipsink.ax
2009-11-03 00:14:29 11136 ----a-w- c:\windows\system32\drivers\slip.sys
2009-11-03 00:14:23 19200 ----a-w- c:\windows\system32\drivers\wstcodec.sys
2009-11-03 00:14:14 85248 ----a-w- c:\windows\system32\drivers\nabtsfec.sys
2009-11-03 00:14:09 17024 ----a-w- c:\windows\system32\drivers\ccdecode.sys
2009-11-03 00:13:35 60032 ----a-w- c:\windows\system32\drivers\usbaudio.sys
2009-11-03 00:10:20 227840 -c----w- c:\windows\system32\dllcache\wmiprvse.exe
2009-11-03 00:10:13 401408 -c----w- c:\windows\system32\dllcache\rpcss.dll
2009-11-03 00:10:13 286720 -c----w- c:\windows\system32\dllcache\pdh.dll
2009-11-03 00:10:13 111104 -c----w- c:\windows\system32\dllcache\services.exe
2009-11-03 00:10:11 473600 -c----w- c:\windows\system32\dllcache\fastprox.dll
2009-11-03 00:10:08 685568 -c----w- c:\windows\system32\dllcache\advapi32.dll
2009-11-03 00:10:04 453120 -c----w- c:\windows\system32\dllcache\wmiprvsd.dll
2009-11-03 00:10:03 739840 -c----w- c:\windows\system32\dllcache\ntdll.dll
2009-11-03 00:08:57 0 d--h--w- c:\windows\$hf_mig$
2009-11-03 00:08:39 219136 -c----w- c:\windows\system32\dllcache\wordpad.exe
2009-11-03 00:08:39 1203922 -c----w- c:\windows\system32\dllcache\sysmain.sdb
2009-11-03 00:08:19 0 d-----w- c:\documents and settings\kurt\Contacts
2009-11-03 00:07:13 940794 ----a-w- c:\windows\system32\LoopyMusic.wav
2009-11-03 00:07:13 146650 ----a-w- c:\windows\system32\BuzzingBee.wav
2009-11-03 00:07:09 0 d-----w- c:\docume~1\alluse~1\applic~1\Messenger Plus!
2009-11-03 00:07:08 0 d-----w- c:\windows\system32\Lang
2009-11-03 00:05:36 268 ---ha-w- C:\sqmdata01.sqm
2009-11-03 00:05:36 244 ---ha-w- C:\sqmnoopt01.sqm
2009-11-03 00:02:10 0 d-----w- c:\docume~1\kurt\applic~1\FotoWire
2009-11-03 00:02:09 0 d-----w- c:\program files\fichiers communs\FotoWire
2009-11-03 00:01:58 58752 ----a-w- c:\windows\system32\drivers\redbook.sys
2009-11-03 00:01:00 27165 ----a-w- c:\windows\system32\drivers\fetnd5.sys
2009-11-03 00:00:57 77312 ----a-w- c:\windows\system32\usbui.dll
2009-11-03 00:00:47 53248 ----a-r- c:\windows\system32\InstMed.exe
2009-11-03 00:00:46 44672 ----a-w- c:\windows\system32\drivers\uagp35.sys
2009-11-03 00:00:22 0 d-----w- c:\program files\fichiers communs\Logitech
2009-11-02 23:59:28 0 d-----w- c:\program files\fichiers communs\ODBC
2009-11-02 23:59:24 0 d-----w- c:\program files\fichiers communs\SpeechEngines
2009-11-02 23:58:56 0 d--h--w- c:\documents and settings\all users\Modèles
2009-11-02 23:58:56 0 d-----w- c:\documents and settings\all users\Favoris
2009-11-02 23:58:56 0 d-----w- c:\documents and settings\all users\Bureau
2009-11-02 23:58:56 0 d-----r- c:\documents and settings\all users\Menu Démarrer
2009-11-02 23:58:56 0 d-----r- c:\documents and settings\all users\Documents
2009-11-02 23:56:54 0 d-----w- c:\program files\StuffPlug3
2009-11-02 23:52:58 0 d-----w- c:\program files\Messenger Plus! Live
2009-11-02 23:48:32 0 dcsh--w- c:\program files\fichiers communs\WindowsLiveInstaller
2009-11-02 23:44:57 0 d-----w- c:\program files\Realtek
2009-11-02 23:36:22 0 d-----w- c:\program files\VIA
2009-11-02 23:33:42 0 d-----w- c:\program files\S3
2009-11-02 23:33:38 0 d-----w- c:\program files\fichiers communs\InstallShield
2009-11-02 23:31:01 0 d-----w- c:\program files\Kaspersky Lab
2009-11-02 23:31:01 0 d-----w- c:\docume~1\alluse~1\applic~1\Kaspersky Lab
2009-11-02 23:28:04 0 d-----w- c:\docume~1\alluse~1\applic~1\Kaspersky Lab Setup Files
2009-11-02 23:09:11 0 d-----w- c:\program files\msn gaming zone
2009-11-02 23:07:35 0 d-sh--w- c:\documents and settings\all users\DRM
2009-11-02 23:07:13 0 d--h--w- c:\program files\WindowsUpdate
2009-11-02 23:07:08 0 d-----w- c:\program files\Services en ligne
2009-11-02 23:06:25 0 d-----w- c:\program files\fichiers communs\MSSoap
2009-11-02 23:04:37 0 d-----w- c:\program files\Windows NT
==================== Find3M ====================
2009-11-07 10:36:41 48856 ----a-w- c:\windows\system32\perfc00C.dat
2009-11-07 10:36:41 368076 ----a-w- c:\windows\system32\perfh00C.dat
2009-11-02 23:31:43 95259 ----a-w- c:\windows\system32\drivers\klick.dat
2009-11-02 23:31:43 108059 ----a-w- c:\windows\system32\drivers\klin.dat
2009-11-02 23:05:30 21892 ----a-w- c:\windows\system32\emptyregdb.dat
2009-10-20 19:34:56 219664 ----a-w- c:\windows\system32\klogon.dll
2009-10-14 20:18:34 36880 ----a-w- c:\windows\system32\drivers\klbg.sys
2009-10-02 18:39:44 19472 ----a-w- c:\windows\system32\drivers\klmouflt.sys
2009-09-25 05:36:34 671232 ----a-w- c:\windows\system32\wininet.dll
2009-09-25 05:36:32 81920 ----a-w- c:\windows\system32\ieencode.dll
2009-09-14 13:42:46 32272 ----a-w- c:\windows\system32\drivers\klim5.sys
2009-09-11 14:18:20 136192 ----a-w- c:\windows\system32\msv1_0.dll
2009-09-09 18:01:40 27675 ----a-w- c:\windows\system32\drivers\klopp.dat
2009-09-04 21:04:39 58880 ----a-w- c:\windows\system32\msasn1.dll
2009-08-26 08:01:24 247326 ----a-w- c:\windows\system32\strmdll.dll
============= FINISH: 11:49:43,25 ===============