Trojan gen other journal HijackThis
Résolu
molière
-
jlpjlp Messages postés 52399 Statut Contributeur sécurité -
jlpjlp Messages postés 52399 Statut Contributeur sécurité -
Bonjour,
voilà le journal relevé
merci de votre aide
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Winamp\Winampa.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9BE.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Search Settings\SearchSettings.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Orange\Systray\SystrayApp.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Orange\Launcher\Launcher.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
C:\Program Files\TomTom HOME 2\HOMERunner.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\3M\PSNLite\PsnLite.exe
C:\PROGRA~1\3M\PSNLite\PSNGive.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Orange\connectivity\connectivitymanager.exe
C:\Program Files\Orange\connectivity\CoreCom\CoreCom.exe
C:\Program Files\Orange\connectivity\CoreCom\OraConfigRecover.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb126\SearchSettings.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DealioBHO Class - {6A87B991-A31F-4130-AE72-6D0C294BF082} - C:\Program Files\Dealio\kb126\Dealio.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb126\SearchSettings.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Dealio - {E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F} - C:\Program Files\Dealio\kb126\Dealio.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [EPSON Stylus CX3600 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9BE.EXE /P26 "EPSON Stylus CX3600 Series" /O6 "USB001" /M "Stylus CX3600"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [au] C:\Program Files\Dealio\DealioAU.exe
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange\Systray\SystrayApp.exe"
O4 - HKLM\..\Run: [ORAHSSSessionManager] C:\Program Files\Orange\SessionManager\SessionManager.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\HOMERunner.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Post-it® Software Notes Lite.lnk = C:\Program Files\3M\PSNLite\PsnLite.exe
O8 - Extra context menu item: Compare Prices with &Dealio - C:\Documents and Settings\Daniel Chaloyard\Application Data\Dealio\kb126\res\DealioSearch.html
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb126\Dealio.dll
O9 - Extra 'Tools' menuitem: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb126\Dealio.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: https://www.orange.fr/portail
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
voilà le journal relevé
merci de votre aide
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Winamp\Winampa.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9BE.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Search Settings\SearchSettings.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Orange\Systray\SystrayApp.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Orange\Launcher\Launcher.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
C:\Program Files\TomTom HOME 2\HOMERunner.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\3M\PSNLite\PsnLite.exe
C:\PROGRA~1\3M\PSNLite\PSNGive.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Orange\connectivity\connectivitymanager.exe
C:\Program Files\Orange\connectivity\CoreCom\CoreCom.exe
C:\Program Files\Orange\connectivity\CoreCom\OraConfigRecover.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb126\SearchSettings.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DealioBHO Class - {6A87B991-A31F-4130-AE72-6D0C294BF082} - C:\Program Files\Dealio\kb126\Dealio.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb126\SearchSettings.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Dealio - {E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F} - C:\Program Files\Dealio\kb126\Dealio.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [EPSON Stylus CX3600 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9BE.EXE /P26 "EPSON Stylus CX3600 Series" /O6 "USB001" /M "Stylus CX3600"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [au] C:\Program Files\Dealio\DealioAU.exe
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange\Systray\SystrayApp.exe"
O4 - HKLM\..\Run: [ORAHSSSessionManager] C:\Program Files\Orange\SessionManager\SessionManager.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\HOMERunner.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Post-it® Software Notes Lite.lnk = C:\Program Files\3M\PSNLite\PsnLite.exe
O8 - Extra context menu item: Compare Prices with &Dealio - C:\Documents and Settings\Daniel Chaloyard\Application Data\Dealio\kb126\res\DealioSearch.html
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb126\Dealio.dll
O9 - Extra 'Tools' menuitem: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb126\Dealio.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: https://www.orange.fr/portail
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
A voir également:
- Trojan gen other journal HijackThis
- Hijackthis - Télécharger - Antivirus & Antimalwares
- Journal de naissance gratuit a imprimer - Télécharger - Histoire & Religion
- Mon journal intime - Télécharger - Vie quotidienne
- Style journal officiel word - Guide
- Trojan remover - Télécharger - Antivirus & Antimalwares
8 réponses
slt
désactive le tea timer de spybot (MODE puis MODE AVANCE puis OUTILS puis RESIDENT)
Télécharge Toolbar-S&D (Team IDN) sur ton Bureau.
https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/ToolBarSD.exe?attachauth=ANoY7cqJWPphpudyTqv7TRo5RQ3nm_Sx8JluVMO59X5E9cyE3j3LqKlmStIqiDqJdIgMJLi7MXn2nKVajQfoWuVvZZ2wIx_vkqO4k4P0K9jh-ra9jaKPXdZcoaVF2UqJZNH8ubL_42uIwh6f35xJ2GJMuzddVj2Qth1DgZ839lxEIFGkgWz3TdfvNMy-YtxfA3gqBUrj4U4LFeAPiWr3ClmjIP0t_Xs5PQ%3D%3D&attredirects=2
* Lance l'installation du programme en exécutant le fichier téléchargé.
* Double-clique maintenant sur le raccourci de Toolbar-S&D.
* Sélectionne la langue souhaitée en tapant la lettre de ton choix puis en validant avec la touche Entrée.
* Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.
* Poste le rapport généré. (C:\TB.txt)
désactive le tea timer de spybot (MODE puis MODE AVANCE puis OUTILS puis RESIDENT)
Télécharge Toolbar-S&D (Team IDN) sur ton Bureau.
https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/ToolBarSD.exe?attachauth=ANoY7cqJWPphpudyTqv7TRo5RQ3nm_Sx8JluVMO59X5E9cyE3j3LqKlmStIqiDqJdIgMJLi7MXn2nKVajQfoWuVvZZ2wIx_vkqO4k4P0K9jh-ra9jaKPXdZcoaVF2UqJZNH8ubL_42uIwh6f35xJ2GJMuzddVj2Qth1DgZ839lxEIFGkgWz3TdfvNMy-YtxfA3gqBUrj4U4LFeAPiWr3ClmjIP0t_Xs5PQ%3D%3D&attredirects=2
* Lance l'installation du programme en exécutant le fichier téléchargé.
* Double-clique maintenant sur le raccourci de Toolbar-S&D.
* Sélectionne la langue souhaitée en tapant la lettre de ton choix puis en validant avec la touche Entrée.
* Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.
* Poste le rapport généré. (C:\TB.txt)
relance TOOLBAR SD et choisi l'optin 2 et colle le rapport
puis
Télécharge ici :
http://images.malwareremoval.com/random/RSIT.exe
random's system information tool (RSIT) par andom/random et sauvegarde-le sur le Bureau.
Double-clique sur RSIT.exe afin de lancer RSIT.
Clique Continue à l'écran Disclaimer.
Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.
Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront.
Poste le contenu de log.txt (<<qui sera affiché)
ainsi que de info.txt (<<qui sera réduit dans la Barre des Tâches).
NB : Les rapports sont sauvegardés dans le dossier C:\rsit
puis
Télécharge ici :
http://images.malwareremoval.com/random/RSIT.exe
random's system information tool (RSIT) par andom/random et sauvegarde-le sur le Bureau.
Double-clique sur RSIT.exe afin de lancer RSIT.
Clique Continue à l'écran Disclaimer.
Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.
Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront.
Poste le contenu de log.txt (<<qui sera affiché)
ainsi que de info.txt (<<qui sera réduit dans la Barre des Tâches).
NB : Les rapports sont sauvegardés dans le dossier C:\rsit
Désolé mais j'ai du m'absenter je reprend le sujet car Torjan ne s'est pas absenter. Dès le redémarraghe il s'est rappeler à moi
Je colle le rapport -----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) 4 CPU 2.66GHz )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : Daniel Chaloyard ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1296 [VPS 081222-0] 4.8.1296 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:55 Go (Free:25 Go)
D:\ (Local Disk) - NTFS - Total:53 Go (Free:10 Go)
E:\ (Local Disk) - FAT32 - Total:2 Go (Free:2 Go)
F:\ (CD or DVD)
G:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [2] ( 23/12/2008|21:17 )
-----------\\ SUPPRESSION
Supprime! - C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126
Supprime! - C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126
Supprime! - C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126
Supprime! - C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126
Supprime! - C:\Program Files\Dealio\DealioAU.exe
Supprime! - C:\Program Files\Dealio\kb126
Supprime! - C:\Program Files\Dealio\SearchSettingsKit.exe
Supprime! - C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\Dealio
Supprime! - C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Search Settings\kb126
Supprime! - C:\DOCUME~1\DANIEL~1\APPLIC~1\Search Settings\kb126
Supprime! - C:\DOCUME~1\MAMAN\APPLIC~1\Search Settings\kb126
Supprime! - C:\DOCUME~1\PHOTOS\APPLIC~1\Search Settings\kb126
Supprime! - C:\Program Files\Search Settings\kb126
Supprime! - C:\Program Files\Search Settings\SearchSettings.exe
Supprime! - C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio
Supprime! - C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio
Supprime! - C:\DOCUME~1\MAMAN\APPLIC~1\Dealio
Supprime! - C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio
Supprime! - C:\Program Files\Dealio
Supprime! - C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Search Settings
Supprime! - C:\DOCUME~1\DANIEL~1\APPLIC~1\Search Settings
Supprime! - C:\DOCUME~1\MAMAN\APPLIC~1\Search Settings
Supprime! - C:\DOCUME~1\PHOTOS\APPLIC~1\Search Settings
Supprime! - C:\Program Files\Search Settings
-----------\\ Recherche de Fichiers / Dossiers ...
C:\WINDOWS\Prefetch\DEALIOAU.EXE-32C4A05D.pf
C:\WINDOWS\Prefetch\SEARCHSETTINGS.EXE-253CB611.pf
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="https://www.orange.fr/portail"
"Search Page"="https://www.google.com/?gws_rd=ssl"
"Search Bar"="http://www.google.com/toolbar/ie8/sidebar.html"
"Default_Search_URL"="http://www.google.com/toolbar/ie8/sidebar.html"
"SearchMigratedDefaultURL"="https://www.google.com/webhp?gws_rd=ssl{searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - 21/12/2008|21:23 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 23/12/2008|21:20 - Option : [2']
Par contre spybott m'affiche
valeur supprimée au C /program files/ Dealio/ DealioAu.exe Je ne sais pas si je dois autoriser la modif
Merci de poursuivre ton assistance
Je colle le rapport -----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) 4 CPU 2.66GHz )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : Daniel Chaloyard ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1296 [VPS 081222-0] 4.8.1296 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:55 Go (Free:25 Go)
D:\ (Local Disk) - NTFS - Total:53 Go (Free:10 Go)
E:\ (Local Disk) - FAT32 - Total:2 Go (Free:2 Go)
F:\ (CD or DVD)
G:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [2] ( 23/12/2008|21:17 )
-----------\\ SUPPRESSION
Supprime! - C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126
Supprime! - C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126
Supprime! - C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126
Supprime! - C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126
Supprime! - C:\Program Files\Dealio\DealioAU.exe
Supprime! - C:\Program Files\Dealio\kb126
Supprime! - C:\Program Files\Dealio\SearchSettingsKit.exe
Supprime! - C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\Dealio
Supprime! - C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Search Settings\kb126
Supprime! - C:\DOCUME~1\DANIEL~1\APPLIC~1\Search Settings\kb126
Supprime! - C:\DOCUME~1\MAMAN\APPLIC~1\Search Settings\kb126
Supprime! - C:\DOCUME~1\PHOTOS\APPLIC~1\Search Settings\kb126
Supprime! - C:\Program Files\Search Settings\kb126
Supprime! - C:\Program Files\Search Settings\SearchSettings.exe
Supprime! - C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio
Supprime! - C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio
Supprime! - C:\DOCUME~1\MAMAN\APPLIC~1\Dealio
Supprime! - C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio
Supprime! - C:\Program Files\Dealio
Supprime! - C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Search Settings
Supprime! - C:\DOCUME~1\DANIEL~1\APPLIC~1\Search Settings
Supprime! - C:\DOCUME~1\MAMAN\APPLIC~1\Search Settings
Supprime! - C:\DOCUME~1\PHOTOS\APPLIC~1\Search Settings
Supprime! - C:\Program Files\Search Settings
-----------\\ Recherche de Fichiers / Dossiers ...
C:\WINDOWS\Prefetch\DEALIOAU.EXE-32C4A05D.pf
C:\WINDOWS\Prefetch\SEARCHSETTINGS.EXE-253CB611.pf
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="https://www.orange.fr/portail"
"Search Page"="https://www.google.com/?gws_rd=ssl"
"Search Bar"="http://www.google.com/toolbar/ie8/sidebar.html"
"Default_Search_URL"="http://www.google.com/toolbar/ie8/sidebar.html"
"SearchMigratedDefaultURL"="https://www.google.com/webhp?gws_rd=ssl{searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - 21/12/2008|21:23 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 23/12/2008|21:20 - Option : [2']
Par contre spybott m'affiche
valeur supprimée au C /program files/ Dealio/ DealioAu.exe Je ne sais pas si je dois autoriser la modif
Merci de poursuivre ton assistance
j econtinue la procédure en toute confiance; J'espère que cela va résoudrre mon pb car mon PC plante .
Merci d'avance
Molière
log text
Logfile of random's system information tool 1.05 (written by random/random)
Run by Daniel Chaloyard at 2008-12-23 21:35:16
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 26 GB (46%) free of 57 GB
Total RAM: 511 MB (15% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:35:30, on 23/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Winamp\Winampa.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9BE.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Orange\Systray\SystrayApp.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Orange\Launcher\Launcher.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\TomTom HOME 2\HOMERunner.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\3M\PSNLite\PsnLite.exe
C:\PROGRA~1\3M\PSNLite\PSNGive.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Orange\Deskboard\deskboard.exe
C:\Program Files\Orange\connectivity\connectivitymanager.exe
C:\Program Files\Orange\connectivity\CoreCom\CoreCom.exe
C:\Program Files\Orange\connectivity\CoreCom\OraConfigRecover.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
C:\WINDOWS\system32\cmd.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Documents and Settings\Daniel Chaloyard\Local Settings\Temporary Internet Files\Content.IE5\GCN0SAOS\RSIT[1].exe
C:\Program Files\Trend Micro\HijackThis\Daniel Chaloyard.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [EPSON Stylus CX3600 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9BE.EXE /P26 "EPSON Stylus CX3600 Series" /O6 "USB001" /M "Stylus CX3600"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange\Systray\SystrayApp.exe"
O4 - HKLM\..\Run: [ORAHSSSessionManager] C:\Program Files\Orange\SessionManager\SessionManager.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\HOMERunner.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Post-it® Software Notes Lite.lnk = C:\Program Files\3M\PSNLite\PsnLite.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: https://www.orange.fr/portail
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
Merci d'avance
Molière
log text
Logfile of random's system information tool 1.05 (written by random/random)
Run by Daniel Chaloyard at 2008-12-23 21:35:16
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 26 GB (46%) free of 57 GB
Total RAM: 511 MB (15% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:35:30, on 23/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Winamp\Winampa.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9BE.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Orange\Systray\SystrayApp.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Orange\Launcher\Launcher.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\TomTom HOME 2\HOMERunner.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\3M\PSNLite\PsnLite.exe
C:\PROGRA~1\3M\PSNLite\PSNGive.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Orange\Deskboard\deskboard.exe
C:\Program Files\Orange\connectivity\connectivitymanager.exe
C:\Program Files\Orange\connectivity\CoreCom\CoreCom.exe
C:\Program Files\Orange\connectivity\CoreCom\OraConfigRecover.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
C:\WINDOWS\system32\cmd.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Documents and Settings\Daniel Chaloyard\Local Settings\Temporary Internet Files\Content.IE5\GCN0SAOS\RSIT[1].exe
C:\Program Files\Trend Micro\HijackThis\Daniel Chaloyard.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [EPSON Stylus CX3600 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9BE.EXE /P26 "EPSON Stylus CX3600 Series" /O6 "USB001" /M "Stylus CX3600"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange\Systray\SystrayApp.exe"
O4 - HKLM\..\Run: [ORAHSSSessionManager] C:\Program Files\Orange\SessionManager\SessionManager.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\HOMERunner.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Post-it® Software Notes Lite.lnk = C:\Program Files\3M\PSNLite\PsnLite.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: https://www.orange.fr/portail
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
scan avec malwarbyte et colle le rapport après mise a jour
https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Bonjour
De garde je répond tardivement au père Noël de l'informatique
Ras sur le logiciel d'analyse et RAS avec Spy bot
Merci de ta patience et je ne sais pas quoi faire. Mon PC e plante plus mais je ne suis pas rassuré
je colle le journal à tout hasard
merci en core de m'aider sur le chemein de l'amélioration
Molière
Malwarebytes' Anti-Malware 1.31
Version de la base de données: 1543
Windows 5.1.2600 Service Pack 3
25/12/2008 19:43:16
mbam-log-2008-12-25 (19-43-16).txt
Type de recherche: Examen complet (C:\|D:\|E:\|)
Eléments examinés: 131302
Temps écoulé: 45 minute(s), 29 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
De garde je répond tardivement au père Noël de l'informatique
Ras sur le logiciel d'analyse et RAS avec Spy bot
Merci de ta patience et je ne sais pas quoi faire. Mon PC e plante plus mais je ne suis pas rassuré
je colle le journal à tout hasard
merci en core de m'aider sur le chemein de l'amélioration
Molière
Malwarebytes' Anti-Malware 1.31
Version de la base de données: 1543
Windows 5.1.2600 Service Pack 3
25/12/2008 19:43:16
mbam-log-2008-12-25 (19-43-16).txt
Type de recherche: Examen complet (C:\|D:\|E:\|)
Eléments examinés: 131302
Temps écoulé: 45 minute(s), 29 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
ok donc tu n'as plus d'alerte de ce trojan ? Boonty tu l'utilise? Colle le rapport d'un scan en ligne chez kaspersky ou bitdefender pour vérifier
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
ok 'attendrai le scan en ligne
sinon si tu as les noms des fichiers infectés selon avast cela aiderai bien
bonnes fêtes
sinon si tu as les noms des fichiers infectés selon avast cela aiderai bien
bonnes fêtes
colle le rapport d'un scan en ligne
avec un des suivants:
bitdefender en ligne :
http://www.bitdefender.fr/scan_fr/scan8/ie.html
Panda en ligne :
http://pandasoftware.fr
Kaspersky en ligne
https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
avec un des suivants:
bitdefender en ligne :
http://www.bitdefender.fr/scan_fr/scan8/ie.html
Panda en ligne :
http://pandasoftware.fr
Kaspersky en ligne
https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
Bonjour
Come tu le présentais le virus reste présent et l'analyse kaspersky montre bon nombre dde fichier infectés . Je colle le scan. en espérant que sans abuser de ton aide tu pourras m'aider sur la voie de la solution
D'avance merci et à bientôt sur le site
Molière
Statistiques de l'analyse:
Total d'objets analysés: 80911
Nombre de virus trouvés: 3
Nombre d'objets infectés: 33 / 0
Nombre d'objets suspects: 0
Durée de l'analyse: 02:04:07
Nom de l'objet infecté / Nom du virus / Dernière action
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat L'objet est verrouillé ignoré
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\Application Data\3M\PSNotes\PSNData L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\Cookies\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\Local Settings\Temp\~DF3E8F.tmp L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\Local Settings\Temp\~DFBA69.tmp L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\ntuser.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Cookies\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat L'objet est verrouillé ignoré
C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db L'objet est verrouillé ignoré
C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws L'objet est verrouillé ignoré
C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log L'objet est verrouillé ignoré
C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log L'objet est verrouillé ignoré
C:\Program Files\Alwil Software\Avast4\DATA\log\selfdef.log L'objet est verrouillé ignoré
C:\Program Files\Alwil Software\Avast4\DATA\report\Protection résidente.txt L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\001.part L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\003.part L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\004.part L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\005.part L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\006.part L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\007.part L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\008.part L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\010.part L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\011.part L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\017.part L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\020.part L'objet est verrouillé ignoré
C:\System Volume Information\MountPointManagerRemoteDatabase L'objet est verrouillé ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/loader.exe Infecté : Trojan.Win32.Small.ypj ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE/data0000.cab/WR-1-2~1.EXE Infecté : Trojan-Downloader.Win32.Agent.akwa ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE/data0000.cab/is169898.exe Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe/data0000.cab/VGSetup.exe/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe/data0000.cab/VGSetup.exe Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe Rsrc-Package: infecté - 10 ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/loader.exe Infecté : Trojan.Win32.Small.ypj ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE/data0000.cab/WR-1-2~1.EXE Infecté : Trojan-Downloader.Win32.Agent.akwa ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE/data0000.cab/is169898.exe Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe/data0000.cab/VGSetup.exe/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe/data0000.cab/VGSetup.exe Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe Rsrc-Package: infecté - 10 ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/loader.exe Infecté : Trojan.Win32.Small.ypj ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE/data0000.cab/WR-1-2~1.EXE Infecté : Trojan-Downloader.Win32.Agent.akwa ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE/data0000.cab/is169898.exe Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe/data0000.cab/VGSetup.exe/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe/data0000.cab/VGSetup.exe Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe Rsrc-Package: infecté - 10 ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP331\change.log L'objet est verrouillé ignoré
C:\WINDOWS\Debug\PASSWD.LOG L'objet est verrouillé ignoré
C:\WINDOWS\SchedLgU.Txt L'objet est verrouillé ignoré
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log L'objet est verrouillé ignoré
C:\WINDOWS\Sti_Trace.log L'objet est verrouillé ignoré
C:\WINDOWS\system32\CatRoot2\edb.log L'objet est verrouillé ignoré
C:\WINDOWS\system32\CatRoot2\tmp.edb L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\Antivirus.Evt L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\AppEvent.Evt L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\default L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\default.LOG L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\Internet.evt L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\SAM L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\SAM.LOG L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\SecEvent.Evt L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\SECURITY L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\SECURITY.LOG L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\software L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\software.LOG L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\SysEvent.Evt L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\system L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\system.LOG L'objet est verrouillé ignoré
C:\WINDOWS\system32\h323log.txt L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP L'objet est verrouillé ignoré
C:\WINDOWS\Temp\Perflib_Perfdata_4b4.dat L'objet est verrouillé ignoré
C:\WINDOWS\Temp\_avast4_\Webshlock.txt L'objet est verrouillé ignoré
C:\WINDOWS\wiadebug.log L'objet est verrouillé ignoré
C:\WINDOWS\wiaservc.log L'objet est verrouillé ignoré
C:\WINDOWS\WindowsUpdate.log L'objet est verrouillé ignoré
D:\System Volume Information\MountPointManagerRemoteDatabase L'objet est verrouillé ignoré
Analyse terminée.
Come tu le présentais le virus reste présent et l'analyse kaspersky montre bon nombre dde fichier infectés . Je colle le scan. en espérant que sans abuser de ton aide tu pourras m'aider sur la voie de la solution
D'avance merci et à bientôt sur le site
Molière
Statistiques de l'analyse:
Total d'objets analysés: 80911
Nombre de virus trouvés: 3
Nombre d'objets infectés: 33 / 0
Nombre d'objets suspects: 0
Durée de l'analyse: 02:04:07
Nom de l'objet infecté / Nom du virus / Dernière action
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat L'objet est verrouillé ignoré
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\Application Data\3M\PSNotes\PSNData L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\Cookies\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\Local Settings\Temp\~DF3E8F.tmp L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\Local Settings\Temp\~DFBA69.tmp L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\ntuser.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Daniel Chaloyard\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Cookies\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat L'objet est verrouillé ignoré
C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db L'objet est verrouillé ignoré
C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws L'objet est verrouillé ignoré
C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log L'objet est verrouillé ignoré
C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log L'objet est verrouillé ignoré
C:\Program Files\Alwil Software\Avast4\DATA\log\selfdef.log L'objet est verrouillé ignoré
C:\Program Files\Alwil Software\Avast4\DATA\report\Protection résidente.txt L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\001.part L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\003.part L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\004.part L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\005.part L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\006.part L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\007.part L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\008.part L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\010.part L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\011.part L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\017.part L'objet est verrouillé ignoré
C:\Program Files\eMule\Temp\020.part L'objet est verrouillé ignoré
C:\System Volume Information\MountPointManagerRemoteDatabase L'objet est verrouillé ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/loader.exe Infecté : Trojan.Win32.Small.ypj ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE/data0000.cab/WR-1-2~1.EXE Infecté : Trojan-Downloader.Win32.Agent.akwa ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE/data0000.cab/is169898.exe Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe/data0000.cab/VGSetup.exe/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe/data0000.cab/VGSetup.exe Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP302\A0063776.exe Rsrc-Package: infecté - 10 ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/loader.exe Infecté : Trojan.Win32.Small.ypj ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE/data0000.cab/WR-1-2~1.EXE Infecté : Trojan-Downloader.Win32.Agent.akwa ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE/data0000.cab/is169898.exe Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe/data0000.cab/VGSetup.exe/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe/data0000.cab/VGSetup.exe Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068796.exe Rsrc-Package: infecté - 10 ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/loader.exe Infecté : Trojan.Win32.Small.ypj ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE/data0000.cab/WR-1-2~1.EXE Infecté : Trojan-Downloader.Win32.Agent.akwa ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE/data0000.cab/is169898.exe Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab/WR-1-2~1.EXE Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe/data0000.cab/VGSetup.exe/data0000.cab/loader.exe Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe/data0000.cab/VGSetup.exe/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe/data0000.cab/VGSetup.exe Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe/data0000.cab Infecté : Trojan.Win32.Pakes.luu ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP303\A0068940.exe Rsrc-Package: infecté - 10 ignoré
C:\System Volume Information\_restore{1F1FC195-2021-489A-AF32-FB64D78C945C}\RP331\change.log L'objet est verrouillé ignoré
C:\WINDOWS\Debug\PASSWD.LOG L'objet est verrouillé ignoré
C:\WINDOWS\SchedLgU.Txt L'objet est verrouillé ignoré
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log L'objet est verrouillé ignoré
C:\WINDOWS\Sti_Trace.log L'objet est verrouillé ignoré
C:\WINDOWS\system32\CatRoot2\edb.log L'objet est verrouillé ignoré
C:\WINDOWS\system32\CatRoot2\tmp.edb L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\Antivirus.Evt L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\AppEvent.Evt L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\default L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\default.LOG L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\Internet.evt L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\SAM L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\SAM.LOG L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\SecEvent.Evt L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\SECURITY L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\SECURITY.LOG L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\software L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\software.LOG L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\SysEvent.Evt L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\system L'objet est verrouillé ignoré
C:\WINDOWS\system32\config\system.LOG L'objet est verrouillé ignoré
C:\WINDOWS\system32\h323log.txt L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA L'objet est verrouillé ignoré
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP L'objet est verrouillé ignoré
C:\WINDOWS\Temp\Perflib_Perfdata_4b4.dat L'objet est verrouillé ignoré
C:\WINDOWS\Temp\_avast4_\Webshlock.txt L'objet est verrouillé ignoré
C:\WINDOWS\wiadebug.log L'objet est verrouillé ignoré
C:\WINDOWS\wiaservc.log L'objet est verrouillé ignoré
C:\WINDOWS\WindowsUpdate.log L'objet est verrouillé ignoré
D:\System Volume Information\MountPointManagerRemoteDatabase L'objet est verrouillé ignoré
Analyse terminée.
ok cela va etre rapide!
tout est dans ta restauration: désactive la puis redemarre ton ordi puis réactive la comme ceci:
http://www.libellules.ch/desactiver_restauration.php
tout est dans ta restauration: désactive la puis redemarre ton ordi puis réactive la comme ceci:
http://www.libellules.ch/desactiver_restauration.php
Bonjour
J'ai appliqué tes conseils et plus de virus par le scan avast.
Quel pro de l'informatique et cela parait si simple pour certains.
Je ne peux pas te proposer de te rendre service au vu de mes compétences informatiques
Je retiens ton pseudo au cas ou
Merci encore et à un de ces jours sur le forum
Molière
J'ai appliqué tes conseils et plus de virus par le scan avast.
Quel pro de l'informatique et cela parait si simple pour certains.
Je ne peux pas te proposer de te rendre service au vu de mes compétences informatiques
Je retiens ton pseudo au cas ou
Merci encore et à un de ces jours sur le forum
Molière
voilà le journal. je ne sais pas si cela te parle mais mois c'est complétement abstrait
Merci d'avance
Molière
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) 4 CPU 2.66GHz )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : Daniel Chaloyard ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1296 [VPS 081221-0] 4.8.1296 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:55 Go (Free:25 Go)
D:\ (Local Disk) - NTFS - Total:53 Go (Free:10 Go)
E:\ (Local Disk) - FAT32 - Total:2 Go (Free:2 Go)
F:\ (CD or DVD)
G:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( 21/12/2008|21:20 )
-----------\\ Recherche de Fichiers / Dossiers ...
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\temp
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\chevron-small.gif
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\DealioSearch.html
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\deals-leftcap.gif
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\deal_report.jpg
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\ebay_login.jpg
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\err_mainwindow.html
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\err_toolbar.html
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\global_scripts.js
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\headerbgthin.jpg
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\highlight-bg.png
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\logo.gif
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\logo_over.gif
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\man_toolbar.html
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\man_toolbar.js
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\post-this-deal.gif
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\post-this-deal_over.gif
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\scripts.js
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\scroller.js
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\search-chevron.gif
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\search-chevron_over.gif
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\search_bg_blink.gif
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\separator.gif
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\settings.gif
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\settings_over.gif
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\res\yahoo-search.png
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\index.76.35
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.10.76
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.109.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.110.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.12.52
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.13.58
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.130.58
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.135.50
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.153.44
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.155.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.156.49
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.16.60
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.161.52
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.178.66
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.184.55
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.188.52
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.189.45
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.196.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.198.56
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.199.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.200.53
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.201.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.202.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.203.71
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.205.62
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.213.71
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.214.49
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.215.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.216.67
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.217.67
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.218.52
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.219.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.220.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.221.57
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.222.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.223.68
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.226.68
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.227.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.228.62
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.229.76
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.23.63
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.239.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.24.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.240.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.241.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.242.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.243.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.244.63
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.245.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.247.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.248.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.249.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.250.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.251.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.252.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.253.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.254.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.255.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.256.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.257.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.279.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.28.58
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.282.75
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.283.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.284.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.289.67
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.290.62
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.291.61
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.296.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.297.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.304.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.307.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.308.75
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.31.47
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.310.46
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.311.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.315.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.316.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.317.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.318.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.319.49
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.32.48
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.334.44
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.335.60
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.336.44
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.337.44
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.338.75
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.339.47
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.34.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.340.47
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.341.47
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.349.50
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.35.48
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.350.50
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.351.51
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.352.54
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.353.51
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.354.51
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.357.62
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.358.52
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.359.52
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.360.53
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.361.54
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.362.68
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.363.58
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.364.54
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.365.53
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.367.56
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.368.58
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.369.55
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.370.56
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.371.56
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.372.57
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.373.55
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.375.56
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.376.57
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.377.55
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.378.65
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.384.58
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.386.71
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.387.59
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.388.59
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.389.59
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.390.60
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.391.60
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.392.60
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.393.60
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.394.60
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.396.61
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.397.61
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.398.60
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.399.60
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.403.61
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.404.63
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.405.61
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.406.61
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.407.76
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.408.63
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.409.61
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.412.62
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.413.62
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.414.62
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.415.62
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.416.62
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.417.62
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.418.62
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.419.62
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.420.62
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.421.62
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.423.63
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.424.63
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.425.63
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.426.63
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.427.63
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.428.65
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.429.63
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.430.63
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.432.65
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.433.64
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.434.65
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.435.64
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.436.76
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.437.64
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.438.71
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.439.71
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.440.75
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.442.73
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.443.73
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.444.73
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.445.68
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.446.69
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.450.67
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.451.67
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.452.68
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.453.68
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.454.69
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.456.69
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.457.75
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.458.70
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.459.70
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.460.69
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.462.74
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.463.69
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.464.70
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.465.68
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.468.70
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.469.70
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.470.70
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.471.73
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.472.70
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.478.74
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.479.73
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.480.68
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.481.71
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.482.74
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.49.67
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.50.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.500.71
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.501.74
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.502.71
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.51.69
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.52.72
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.520.76
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.521.76
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.522.76
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.53.51
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.531.76
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.532.75
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.534.75
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.54.47
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.55.45
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.56.69
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.57.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.58.47
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.593.76
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.595.76
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.63.57
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.66.47
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.70.75
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\rules\rules.1.71.43
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\temp\dealio-14171.log
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\temp\dod_cache.xml
C:\DOCUME~1\AURLIE~1.CHA\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_3136_3208_5.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\chevron-small.gif
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\DealioSearch.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\deals-leftcap.gif
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\deal_report.jpg
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\ebay_login.jpg
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\err_mainwindow.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\err_toolbar.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\global_scripts.js
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\headerbgthin.jpg
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\highlight-bg.png
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\logo.gif
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\logo_over.gif
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\man_toolbar.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\man_toolbar.js
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\post-this-deal.gif
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\post-this-deal_over.gif
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\scripts.js
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\scroller.js
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\search-chevron.gif
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\search-chevron_over.gif
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\search_bg_blink.gif
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\separator.gif
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\settings.gif
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\settings_over.gif
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\res\yahoo-search.png
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\index.76.35
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.10.76
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.109.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.110.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.12.52
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.13.58
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.130.58
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.135.50
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.153.44
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.155.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.156.49
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.16.60
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.161.52
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.178.66
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.184.55
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.188.52
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.189.45
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.196.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.198.56
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.199.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.200.53
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.201.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.202.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.203.71
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.205.62
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.213.71
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.214.49
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.215.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.216.67
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.217.67
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.218.52
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.219.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.220.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.221.57
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.222.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.223.68
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.226.68
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.227.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.228.62
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.229.76
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.23.63
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.239.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.24.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.240.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.241.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.242.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.243.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.244.63
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.245.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.247.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.248.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.249.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.250.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.251.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.252.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.253.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.254.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.255.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.256.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.257.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.279.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.28.58
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.282.75
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.283.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.284.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.289.67
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.290.62
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.291.61
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.296.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.297.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.304.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.307.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.308.75
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.31.47
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.310.46
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.311.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.315.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.316.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.317.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.318.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.319.49
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.32.48
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.334.44
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.335.60
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.336.44
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.337.44
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.338.75
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.339.47
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.34.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.340.47
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.341.47
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.349.50
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.35.48
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.350.50
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.351.51
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.352.54
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.353.51
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.354.51
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.357.62
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.358.52
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.359.52
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.360.53
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.361.54
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.362.68
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.363.58
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.364.54
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.365.53
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.367.56
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.368.58
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.369.55
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.370.56
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.371.56
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.372.57
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.373.55
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.375.56
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.376.57
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.377.55
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.378.65
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.384.58
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.386.71
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.387.59
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.388.59
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.389.59
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.390.60
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.391.60
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.392.60
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.393.60
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.394.60
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.396.61
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.397.61
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.398.60
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.399.60
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.403.61
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.404.63
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.405.61
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.406.61
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.407.76
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.408.63
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.409.61
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.412.62
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.413.62
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.414.62
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.415.62
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.416.62
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.417.62
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.418.62
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.419.62
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.420.62
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.421.62
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.423.63
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.424.63
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.425.63
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.426.63
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.427.63
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.428.65
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.429.63
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.430.63
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.432.65
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.433.64
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.434.65
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.435.64
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.436.76
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.437.64
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.438.71
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.439.71
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.440.75
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.442.73
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.443.73
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.444.73
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.445.68
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.446.69
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.450.67
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.451.67
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.452.68
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.453.68
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.454.69
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.456.69
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.457.75
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.458.70
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.459.70
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.460.69
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.462.74
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.463.69
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.464.70
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.465.68
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.468.70
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.469.70
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.470.70
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.471.73
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.472.70
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.478.74
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.479.73
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.480.68
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.481.71
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.482.74
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.49.67
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.50.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.500.71
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.501.74
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.502.71
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.51.69
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.52.72
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.520.76
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.521.76
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.522.76
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.53.51
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.531.76
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.532.75
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.534.75
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.54.47
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.55.45
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.56.69
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.57.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.58.47
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.593.76
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.595.76
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.63.57
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.66.47
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.70.75
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\rules\rules.1.71.43
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\dealio-14234.log
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\dod_cache.xml
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1592_2008_3.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1824_1588_5.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1932_1760_9.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2000_1500_5.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2016_1496_5.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2388_3572_5.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_240_1012_7.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2488_4080_10.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2560_704_17.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2660_2688_5.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_3248_3340_5.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_3436_3544_5.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_3448_3560_1.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_3448_3560_4.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_3456_3544_1.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_3456_3544_4.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_3588_3616_5.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_3760_388_5.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_748_896_1.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_748_896_4.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_872_1644_23.html
C:\DOCUME~1\DANIEL~1\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_872_404_5.html
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\temp
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\chevron-small.gif
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\DealioSearch.html
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\deals-leftcap.gif
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\deal_report.jpg
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\ebay_login.jpg
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\err_mainwindow.html
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\err_toolbar.html
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\global_scripts.js
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\headerbgthin.jpg
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\highlight-bg.png
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\logo.gif
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\logo_over.gif
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\man_toolbar.html
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\man_toolbar.js
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\post-this-deal.gif
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\post-this-deal_over.gif
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\scripts.js
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\scroller.js
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\search-chevron.gif
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\search-chevron_over.gif
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\search_bg_blink.gif
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\separator.gif
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\settings.gif
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\settings_over.gif
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\res\yahoo-search.png
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\index.76.35
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.10.76
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.109.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.110.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.12.52
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.13.58
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.130.58
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.135.50
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.153.44
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.155.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.156.49
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.16.60
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.161.52
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.178.66
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.184.55
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.188.52
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.189.45
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.196.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.198.56
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.199.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.200.53
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.201.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.202.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.203.71
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.205.62
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.213.71
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.214.49
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.215.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.216.67
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.217.67
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.218.52
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.219.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.220.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.221.57
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.222.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.223.68
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.226.68
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.227.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.228.62
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.229.76
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.23.63
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.239.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.24.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.240.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.241.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.242.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.243.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.244.63
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.245.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.247.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.248.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.249.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.250.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.251.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.252.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.253.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.254.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.255.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.256.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.257.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.279.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.28.58
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.282.75
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.283.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.284.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.289.67
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.290.62
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.291.61
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.296.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.297.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.304.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.307.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.308.75
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.31.47
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.310.46
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.311.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.315.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.316.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.317.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.318.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.319.49
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.32.48
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.334.44
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.335.60
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.336.44
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.337.44
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.338.75
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.339.47
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.34.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.340.47
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.341.47
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.349.50
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.35.48
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.350.50
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.351.51
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.352.54
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.353.51
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.354.51
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.357.62
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.358.52
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.359.52
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.360.53
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.361.54
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.362.68
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.363.58
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.364.54
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.365.53
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.367.56
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.368.58
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.369.55
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.370.56
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.371.56
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.372.57
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.373.55
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.375.56
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.376.57
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.377.55
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.378.65
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.384.58
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.386.71
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.387.59
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.388.59
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.389.59
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.390.60
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.391.60
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.392.60
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.393.60
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.394.60
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.396.61
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.397.61
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.398.60
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.399.60
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.403.61
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.404.63
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.405.61
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.406.61
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.407.76
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.408.63
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.409.61
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.412.62
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.413.62
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.414.62
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.415.62
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.416.62
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.417.62
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.418.62
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.419.62
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.420.62
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.421.62
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.423.63
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.424.63
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.425.63
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.426.63
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.427.63
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.428.65
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.429.63
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.430.63
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.432.65
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.433.64
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.434.65
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.435.64
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.436.76
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.437.64
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.438.71
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.439.71
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.440.75
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.442.73
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.443.73
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.444.73
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.445.68
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.446.69
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.450.67
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.451.67
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.452.68
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.453.68
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.454.69
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.456.69
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.457.75
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.458.70
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.459.70
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.460.69
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.462.74
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.463.69
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.464.70
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.465.68
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.468.70
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.469.70
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.470.70
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.471.73
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.472.70
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.478.74
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.479.73
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.480.68
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.481.71
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.482.74
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.49.67
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.50.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.500.71
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.501.74
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.502.71
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.51.69
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.52.72
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.520.76
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.521.76
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.522.76
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.53.51
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.531.76
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.532.75
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.534.75
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.54.47
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.55.45
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.56.69
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.57.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.58.47
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.593.76
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.595.76
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.63.57
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.66.47
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.70.75
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\rules\rules.1.71.43
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\temp\dealio-14207.log
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\temp\dod_cache.xml
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_248_824_5.html
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2760_1020_5.html
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2928_2012_23.html
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2928_2968_5.html
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_3500_3616_1.html
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_3500_3616_4.html
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_3540_1596_1.html
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_3540_1596_4.html
C:\DOCUME~1\MAMAN\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_892_2540_5.html
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\temp
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\chevron-small.gif
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\DealioSearch.html
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\deals-leftcap.gif
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\deal_report.jpg
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\ebay_login.jpg
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\err_mainwindow.html
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\err_toolbar.html
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\global_scripts.js
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\headerbgthin.jpg
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\highlight-bg.png
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\logo.gif
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\logo_over.gif
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\man_toolbar.html
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\man_toolbar.js
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\post-this-deal.gif
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\post-this-deal_over.gif
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\scripts.js
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\scroller.js
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\search-chevron.gif
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\search-chevron_over.gif
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\search_bg_blink.gif
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\separator.gif
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\settings.gif
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\settings_over.gif
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\res\yahoo-search.png
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\index.76.35
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.10.76
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.109.43
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.110.43
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.12.52
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.13.58
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.130.58
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.135.50
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.153.44
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.155.43
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.156.49
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.16.60
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.161.52
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.178.66
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.184.55
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.188.52
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.189.45
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.196.43
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.198.56
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.199.43
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.200.53
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.201.43
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.202.43
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.203.71
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.205.62
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.213.71
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.214.49
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.215.43
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.216.67
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.217.67
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.218.52
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.219.43
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.220.43
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.221.57
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.222.43
C:\DOCUME~1\PHOTOS\APPLIC~1\Dealio\kb126\rules\rules.1.223.68
C:\DOCUME~1\PHOTOS\APPLIC