Help virus Win32:SkiMorph [Cryp]
Youpya
-
Youpya -
Youpya -
Bonjour,
j'ai un virus sur mon ordi, le virus Win32:SkiMorph [Cryp] dont voici le rapport (après avoir installé un truc que vous conseilliez mais maintenant faut analyser la bêbête je crois et j'y connais RIEN)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 08:41:24, on 08/03/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\WINDOWS\system32\cisvc.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Iconix\IconixService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft LifeCam\MSCamSvc.exe
C:\Program Files\SPAMfighter\sfus.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\vVX3000.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.dell.com/fr-fr
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb126\SearchSettings.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: eBay Toolbar Helper - {22D8E815-4A5E-4DFB-845E-AAB64207F5BD} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: DealioBHO Class - {6A87B991-A31F-4130-AE72-6D0C294BF082} - C:\Program Files\Dealio\kb126\Dealio.dll
O2 - BHO: IconixBHOClass Class - {761233B6-F228-49E4-8F6B-668499D4E55A} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.4472\swg.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb126\SearchSettings.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: Dealio - {E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F} - C:\Program Files\Dealio\kb126\Dealio.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe
O4 - HKLM\..\Run: [dokhga] c:\windows\system32\dokhga.exe dokhga
O4 - HKLM\..\Run: [NI.UWA6PV_0001_N91M2107] "C:\Documents and Settings\Philippe\Local Settings\Temporary Internet Files\Content.IE5\KFSTC923\WinAntiVirusPro2006FreeInstall_fr[1].exe" -nag
O4 - HKLM\..\Run: [zzz_ImInstaller_IncrediMail] C:\Documents and Settings\Philippe\Local Settings\Temp\ImInstaller\IncrediMail\incredimail_install[1].exe -startup -product IncrediMail
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [rjrcsw] c:\windows\system32\rjrcsw.exe rjrcsw
O4 - HKCU\..\Run: [ubohwxnkd] c:\windows\system32\ubohwxnkd.exe ubohwxnkd
O4 - HKCU\..\Run: [gljaadmq] c:\windows\system32\gljaadmq.exe gljaadmq
O4 - HKCU\..\Run: [zwxlecigge] c:\windows\system32\zwxlecigge.exe zwxlecigge
O4 - HKCU\..\Run: [vfylkpl] c:\windows\system32\vfylkpl.exe vfylkpl
O4 - HKCU\..\Run: [xmcginmt] c:\windows\system32\xmcginmt.exe xmcginmt
O4 - HKCU\..\Run: [omezbqhaj] c:\windows\system32\omezbqhaj.exe omezbqhaj
O4 - HKCU\..\Run: [eanbnxjxv] c:\windows\system32\eanbnxjxv.exe eanbnxjxv
O4 - HKCU\..\Run: [iiqsugccse] c:\windows\system32\iiqsugccse.exe iiqsugccse
O4 - HKCU\..\Run: [cisqaag] c:\windows\system32\cisqaag.exe cisqaag
O4 - HKCU\..\Run: [uyawm] c:\windows\system32\uyawm.exe uyawm
O4 - HKCU\..\Run: [ymgyysk] c:\windows\system32\ymgyysk.exe ymgyysk
O4 - HKCU\..\Run: [ecogwya] c:\windows\system32\ecogwya.exe ecogwya
O4 - HKCU\..\Run: [weqoaku] "c:\windows\system32\weqoaku.exe" weqoaku
O4 - HKCU\..\Run: [ukckeik] "c:\windows\system32\ukckeik.exe" ukckeik
O4 - HKCU\..\Run: [uuwcayy] "c:\windows\system32\uuwcayy.exe" uuwcayy
O4 - HKCU\..\Run: [soawayy] "c:\windows\system32\soawayy.exe" soawayy
O4 - HKCU\..\Run: [qcwew] "c:\windows\system32\qcwew.exe" qcwew
O4 - HKCU\..\Run: [cimci] "c:\windows\system32\cimci.exe" cimci
O4 - HKCU\..\Run: [ccceu] "c:\windows\system32\ccceu.exe" ccceu
O4 - HKCU\..\Run: [meyqwqw] "c:\windows\system32\meyqwqw.exe" meyqwqw
O4 - HKCU\..\Run: [giwksga] "c:\windows\system32\giwksga.exe" giwksga
O4 - HKCU\..\Run: [cmkgogq] "c:\windows\system32\cmkgogq.exe" cmkgogq
O4 - HKCU\..\Run: [ycgky] "c:\windows\system32\ycgky.exe" ycgky
O4 - HKCU\..\Run: [uwkeomi] "c:\windows\system32\uwkeomi.exe" uwkeomi
O4 - HKCU\..\Run: [iuqskac] "c:\windows\system32\iuqskac.exe" iuqskac
O4 - HKCU\..\Run: [ckmsy] "c:\windows\system32\ckmsy.exe" ckmsy
O4 - HKCU\..\Run: [cgcouuy] "c:\windows\system32\cgcouuy.exe" cgcouuy
O4 - HKCU\..\Run: [gcsauga] "c:\windows\system32\gcsauga.exe" gcsauga
O4 - HKCU\..\Run: [yqewg] "c:\windows\system32\yqewg.exe" yqewg
O4 - HKCU\..\Run: [qoisuge] "c:\windows\system32\qoisuge.exe" qoisuge
O4 - HKCU\..\Run: [sagqucg] "c:\windows\system32\sagqucg.exe" sagqucg
O4 - HKCU\..\Run: [gwosi] "c:\windows\system32\gwosi.exe" gwosi
O4 - HKCU\..\Run: [cawgi] "c:\windows\system32\cawgi.exe" cawgi
O4 - HKCU\..\Run: [aywos] "c:\windows\system32\aywos.exe" aywos
O4 - HKCU\..\Run: [uiaeaes] "c:\windows\system32\uiaeaes.exe" uiaeaes
O4 - HKCU\..\Run: [ggygsym] "c:\windows\system32\ggygsym.exe" ggygsym
O4 - HKCU\..\Run: [owaco] "c:\windows\system32\owaco.exe" owaco
O4 - HKCU\..\Run: [ocyom] "c:\windows\system32\ocyom.exe" ocyom
O4 - HKCU\..\Run: [woaqc] "c:\windows\system32\woaqc.exe" woaqc
O4 - HKCU\..\Run: [gyqey] "c:\windows\system32\gyqey.exe" gyqey
O4 - HKCU\..\Run: [ugisk] "c:\windows\system32\ugisk.exe" ugisk
O4 - HKCU\..\Run: [sccwm] "c:\windows\system32\sccwm.exe" sccwm
O4 - HKCU\..\Run: [wmqkcks] "c:\windows\system32\wmqkcks.exe" wmqkcks
O4 - HKCU\..\Run: [skimo] "c:\windows\system32\skimo.exe" skimo
O4 - HKCU\..\Run: [gcgsi] "c:\windows\system32\gcgsi.exe" gcgsi
O4 - HKCU\..\Run: [eeyqmiq] "c:\windows\system32\eeyqmiq.exe" eeyqmiq
O4 - HKCU\..\Run: [ggkus] "c:\windows\system32\ggkus.exe" ggkus
O4 - HKCU\..\Run: [kgcmssi] "c:\windows\system32\kgcmssi.exe" kgcmssi
O4 - HKCU\..\Run: [eoqkw] "c:\windows\system32\eoqkw.exe" eoqkw
O4 - HKCU\..\Run: [gigcm] "c:\windows\system32\gigcm.exe" gigcm
O4 - HKCU\..\Run: [kksqk] "c:\windows\system32\kksqk.exe" kksqk
O4 - HKCU\..\Run: [ciaco] "c:\windows\system32\ciaco.exe" ciaco
O4 - HKCU\..\Run: [iumek] "c:\windows\system32\iumek.exe" iumek
O4 - HKCU\..\Run: [ckcom] "c:\windows\system32\ckcom.exe" ckcom
O4 - HKCU\..\Run: [scwqqem] "c:\windows\system32\scwqqem.exe" scwqqem
O4 - HKCU\..\Run: [yeyag] "c:\windows\system32\yeyag.exe" yeyag
O4 - HKCU\..\Run: [aememsk] "c:\windows\system32\aememsk.exe" aememsk
O4 - HKCU\..\Run: [oicss] "c:\windows\system32\oicss.exe" oicss
O4 - HKCU\..\Run: [oikqmsi] "c:\windows\system32\oikqmsi.exe" oikqmsi
O4 - HKCU\..\Run: [mmqis] "c:\windows\system32\mmqis.exe" mmqis
O4 - HKCU\..\Run: [quygq] "c:\windows\system32\quygq.exe" quygq
O4 - HKCU\..\Run: [iaqykeq] "c:\windows\system32\iaqykeq.exe" iaqykeq
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: &Search - http://ko.bar.need2find.com/KO/menusearch.html?p=KO
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: Compare Prices with &Dealio - C:\Documents and Settings\Philippe\Application Data\Dealio\kb126\res\DealioSearch.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Recherche sur eBay - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O9 - Extra button: (no name) - {400A6CFA-E326-4d61-A90C-9AD75358DC5F} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra 'Tools' menuitem: Email ID Préférences - {400A6CFA-E326-4d61-A90C-9AD75358DC5F} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {BC3F6B6D-2E49-4603-B028-7411655713F3} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra 'Tools' menuitem: À propos de Email ID - {BC3F6B6D-2E49-4603-B028-7411655713F3} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb126\Dealio.dll
O9 - Extra 'Tools' menuitem: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb126\Dealio.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://chouchouyoupya.spaces.live.com/PhotoUpload/MsnPUpld.cab
O16 - DPF: {F919FBD3-A96B-4679-AF26-F551439BB5FD} - https://www.afternic.com/domains/errorsafe.com
O18 - Filter hijack: text/html - {2AB289AE-4B90-4281-B2AE-1F4BB034B647} - (no file)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Iconix Update Service (IconixService) - Unknown owner - C:\Program Files\Fichiers communs\Iconix\IconixService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: SPAMfighter Update Service - SPAMfighter ApS - C:\Program Files\SPAMfighter\sfus.exe
O24 - Desktop Component 0: (no name) - http://www.lesavourclub.fr/images/autour_du_vin/millesimes.gif
O24 - Desktop Component 1: (no name) - https://www.mediavacances.com/Images/fondpixel.gif
j'ai un virus sur mon ordi, le virus Win32:SkiMorph [Cryp] dont voici le rapport (après avoir installé un truc que vous conseilliez mais maintenant faut analyser la bêbête je crois et j'y connais RIEN)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 08:41:24, on 08/03/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\WINDOWS\system32\cisvc.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Iconix\IconixService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft LifeCam\MSCamSvc.exe
C:\Program Files\SPAMfighter\sfus.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\vVX3000.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.dell.com/fr-fr
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb126\SearchSettings.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: eBay Toolbar Helper - {22D8E815-4A5E-4DFB-845E-AAB64207F5BD} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: DealioBHO Class - {6A87B991-A31F-4130-AE72-6D0C294BF082} - C:\Program Files\Dealio\kb126\Dealio.dll
O2 - BHO: IconixBHOClass Class - {761233B6-F228-49E4-8F6B-668499D4E55A} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.4472\swg.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb126\SearchSettings.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: Dealio - {E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F} - C:\Program Files\Dealio\kb126\Dealio.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe
O4 - HKLM\..\Run: [dokhga] c:\windows\system32\dokhga.exe dokhga
O4 - HKLM\..\Run: [NI.UWA6PV_0001_N91M2107] "C:\Documents and Settings\Philippe\Local Settings\Temporary Internet Files\Content.IE5\KFSTC923\WinAntiVirusPro2006FreeInstall_fr[1].exe" -nag
O4 - HKLM\..\Run: [zzz_ImInstaller_IncrediMail] C:\Documents and Settings\Philippe\Local Settings\Temp\ImInstaller\IncrediMail\incredimail_install[1].exe -startup -product IncrediMail
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [rjrcsw] c:\windows\system32\rjrcsw.exe rjrcsw
O4 - HKCU\..\Run: [ubohwxnkd] c:\windows\system32\ubohwxnkd.exe ubohwxnkd
O4 - HKCU\..\Run: [gljaadmq] c:\windows\system32\gljaadmq.exe gljaadmq
O4 - HKCU\..\Run: [zwxlecigge] c:\windows\system32\zwxlecigge.exe zwxlecigge
O4 - HKCU\..\Run: [vfylkpl] c:\windows\system32\vfylkpl.exe vfylkpl
O4 - HKCU\..\Run: [xmcginmt] c:\windows\system32\xmcginmt.exe xmcginmt
O4 - HKCU\..\Run: [omezbqhaj] c:\windows\system32\omezbqhaj.exe omezbqhaj
O4 - HKCU\..\Run: [eanbnxjxv] c:\windows\system32\eanbnxjxv.exe eanbnxjxv
O4 - HKCU\..\Run: [iiqsugccse] c:\windows\system32\iiqsugccse.exe iiqsugccse
O4 - HKCU\..\Run: [cisqaag] c:\windows\system32\cisqaag.exe cisqaag
O4 - HKCU\..\Run: [uyawm] c:\windows\system32\uyawm.exe uyawm
O4 - HKCU\..\Run: [ymgyysk] c:\windows\system32\ymgyysk.exe ymgyysk
O4 - HKCU\..\Run: [ecogwya] c:\windows\system32\ecogwya.exe ecogwya
O4 - HKCU\..\Run: [weqoaku] "c:\windows\system32\weqoaku.exe" weqoaku
O4 - HKCU\..\Run: [ukckeik] "c:\windows\system32\ukckeik.exe" ukckeik
O4 - HKCU\..\Run: [uuwcayy] "c:\windows\system32\uuwcayy.exe" uuwcayy
O4 - HKCU\..\Run: [soawayy] "c:\windows\system32\soawayy.exe" soawayy
O4 - HKCU\..\Run: [qcwew] "c:\windows\system32\qcwew.exe" qcwew
O4 - HKCU\..\Run: [cimci] "c:\windows\system32\cimci.exe" cimci
O4 - HKCU\..\Run: [ccceu] "c:\windows\system32\ccceu.exe" ccceu
O4 - HKCU\..\Run: [meyqwqw] "c:\windows\system32\meyqwqw.exe" meyqwqw
O4 - HKCU\..\Run: [giwksga] "c:\windows\system32\giwksga.exe" giwksga
O4 - HKCU\..\Run: [cmkgogq] "c:\windows\system32\cmkgogq.exe" cmkgogq
O4 - HKCU\..\Run: [ycgky] "c:\windows\system32\ycgky.exe" ycgky
O4 - HKCU\..\Run: [uwkeomi] "c:\windows\system32\uwkeomi.exe" uwkeomi
O4 - HKCU\..\Run: [iuqskac] "c:\windows\system32\iuqskac.exe" iuqskac
O4 - HKCU\..\Run: [ckmsy] "c:\windows\system32\ckmsy.exe" ckmsy
O4 - HKCU\..\Run: [cgcouuy] "c:\windows\system32\cgcouuy.exe" cgcouuy
O4 - HKCU\..\Run: [gcsauga] "c:\windows\system32\gcsauga.exe" gcsauga
O4 - HKCU\..\Run: [yqewg] "c:\windows\system32\yqewg.exe" yqewg
O4 - HKCU\..\Run: [qoisuge] "c:\windows\system32\qoisuge.exe" qoisuge
O4 - HKCU\..\Run: [sagqucg] "c:\windows\system32\sagqucg.exe" sagqucg
O4 - HKCU\..\Run: [gwosi] "c:\windows\system32\gwosi.exe" gwosi
O4 - HKCU\..\Run: [cawgi] "c:\windows\system32\cawgi.exe" cawgi
O4 - HKCU\..\Run: [aywos] "c:\windows\system32\aywos.exe" aywos
O4 - HKCU\..\Run: [uiaeaes] "c:\windows\system32\uiaeaes.exe" uiaeaes
O4 - HKCU\..\Run: [ggygsym] "c:\windows\system32\ggygsym.exe" ggygsym
O4 - HKCU\..\Run: [owaco] "c:\windows\system32\owaco.exe" owaco
O4 - HKCU\..\Run: [ocyom] "c:\windows\system32\ocyom.exe" ocyom
O4 - HKCU\..\Run: [woaqc] "c:\windows\system32\woaqc.exe" woaqc
O4 - HKCU\..\Run: [gyqey] "c:\windows\system32\gyqey.exe" gyqey
O4 - HKCU\..\Run: [ugisk] "c:\windows\system32\ugisk.exe" ugisk
O4 - HKCU\..\Run: [sccwm] "c:\windows\system32\sccwm.exe" sccwm
O4 - HKCU\..\Run: [wmqkcks] "c:\windows\system32\wmqkcks.exe" wmqkcks
O4 - HKCU\..\Run: [skimo] "c:\windows\system32\skimo.exe" skimo
O4 - HKCU\..\Run: [gcgsi] "c:\windows\system32\gcgsi.exe" gcgsi
O4 - HKCU\..\Run: [eeyqmiq] "c:\windows\system32\eeyqmiq.exe" eeyqmiq
O4 - HKCU\..\Run: [ggkus] "c:\windows\system32\ggkus.exe" ggkus
O4 - HKCU\..\Run: [kgcmssi] "c:\windows\system32\kgcmssi.exe" kgcmssi
O4 - HKCU\..\Run: [eoqkw] "c:\windows\system32\eoqkw.exe" eoqkw
O4 - HKCU\..\Run: [gigcm] "c:\windows\system32\gigcm.exe" gigcm
O4 - HKCU\..\Run: [kksqk] "c:\windows\system32\kksqk.exe" kksqk
O4 - HKCU\..\Run: [ciaco] "c:\windows\system32\ciaco.exe" ciaco
O4 - HKCU\..\Run: [iumek] "c:\windows\system32\iumek.exe" iumek
O4 - HKCU\..\Run: [ckcom] "c:\windows\system32\ckcom.exe" ckcom
O4 - HKCU\..\Run: [scwqqem] "c:\windows\system32\scwqqem.exe" scwqqem
O4 - HKCU\..\Run: [yeyag] "c:\windows\system32\yeyag.exe" yeyag
O4 - HKCU\..\Run: [aememsk] "c:\windows\system32\aememsk.exe" aememsk
O4 - HKCU\..\Run: [oicss] "c:\windows\system32\oicss.exe" oicss
O4 - HKCU\..\Run: [oikqmsi] "c:\windows\system32\oikqmsi.exe" oikqmsi
O4 - HKCU\..\Run: [mmqis] "c:\windows\system32\mmqis.exe" mmqis
O4 - HKCU\..\Run: [quygq] "c:\windows\system32\quygq.exe" quygq
O4 - HKCU\..\Run: [iaqykeq] "c:\windows\system32\iaqykeq.exe" iaqykeq
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: &Search - http://ko.bar.need2find.com/KO/menusearch.html?p=KO
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: Compare Prices with &Dealio - C:\Documents and Settings\Philippe\Application Data\Dealio\kb126\res\DealioSearch.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Recherche sur eBay - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O9 - Extra button: (no name) - {400A6CFA-E326-4d61-A90C-9AD75358DC5F} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra 'Tools' menuitem: Email ID Préférences - {400A6CFA-E326-4d61-A90C-9AD75358DC5F} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {BC3F6B6D-2E49-4603-B028-7411655713F3} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra 'Tools' menuitem: À propos de Email ID - {BC3F6B6D-2E49-4603-B028-7411655713F3} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb126\Dealio.dll
O9 - Extra 'Tools' menuitem: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb126\Dealio.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://chouchouyoupya.spaces.live.com/PhotoUpload/MsnPUpld.cab
O16 - DPF: {F919FBD3-A96B-4679-AF26-F551439BB5FD} - https://www.afternic.com/domains/errorsafe.com
O18 - Filter hijack: text/html - {2AB289AE-4B90-4281-B2AE-1F4BB034B647} - (no file)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Iconix Update Service (IconixService) - Unknown owner - C:\Program Files\Fichiers communs\Iconix\IconixService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: SPAMfighter Update Service - SPAMfighter ApS - C:\Program Files\SPAMfighter\sfus.exe
O24 - Desktop Component 0: (no name) - http://www.lesavourclub.fr/images/autour_du_vin/millesimes.gif
O24 - Desktop Component 1: (no name) - https://www.mediavacances.com/Images/fondpixel.gif
A voir également:
- Help virus Win32:SkiMorph [Cryp]
- Virus mcafee - Accueil - Piratage
- Virus informatique - Guide
- Virus facebook demande d'amis - Accueil - Facebook
- Panda anti virus gratuit - Télécharger - Antivirus & Antimalwares
- Undisclosed-recipients virus - Guide
37 réponses
Autre infestation
===================== ToolBar S&D ====================
Télécharger Toolbar-S&D sur le Bureau.
• Important! Désactiver l'antivirus, l'antispyware résident, TeaTimer de Spybot (si présent et actif)
• Lancer l'installation du programme en ex‚cutant le fichier téléchargé.
• Pour XP Double-click sur le raccourci de Toolbar-S&D.
• Pour Vista click-Droit sur le raccourci de Toolbar-S&D et executer en administrateur
• Sélectionner la langue souhaitée en tapant la lettre correspondante
• Valider avec la touche Entrée.
• Choisir option 1 (Recherche). Le menu Démarrer et les icônes vont disparaitre, c'est normal
• Attendre la fin de la recherche qui peux prendre plusieurs minutes en ne touchant à rien.
• Copier/Coller le rapport généré. (C:\TB.txt)
• Attendre la suite.
===================== ToolBar S&D ====================
Télécharger Toolbar-S&D sur le Bureau.
• Important! Désactiver l'antivirus, l'antispyware résident, TeaTimer de Spybot (si présent et actif)
• Lancer l'installation du programme en ex‚cutant le fichier téléchargé.
• Pour XP Double-click sur le raccourci de Toolbar-S&D.
• Pour Vista click-Droit sur le raccourci de Toolbar-S&D et executer en administrateur
• Sélectionner la langue souhaitée en tapant la lettre correspondante
• Valider avec la touche Entrée.
• Choisir option 1 (Recherche). Le menu Démarrer et les icônes vont disparaitre, c'est normal
• Attendre la fin de la recherche qui peux prendre plusieurs minutes en ne touchant à rien.
• Copier/Coller le rapport généré. (C:\TB.txt)
• Attendre la suite.
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Celeron(R) CPU 2.66GHz )
BIOS : Phoenix ROM BIOS PLUS Version 1.10 A02
USER : Philippe ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1335 [VPS 090307-0] 4.8.1335 (Not Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:71 Go (Free:12 Go)
D:\ (CD or DVD)
E:\ (USB)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( 08/03/2009|17:04 )
-----------\\ Recherche de Fichiers / Dossiers ...
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\temp
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\chevron-small.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\DealioSearch.html
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\deals-leftcap.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\deal_report.jpg
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\ebay_login.jpg
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\err_mainwindow.html
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\err_toolbar.html
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\global_scripts.js
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\headerbgthin.jpg
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\highlight-bg.png
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\logo.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\logo_over.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\man_toolbar.html
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\man_toolbar.js
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\post-this-deal.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\post-this-deal_over.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\scripts.js
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\scroller.js
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\search-chevron.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\search-chevron_over.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\search_bg_blink.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\separator.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\settings.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\settings_over.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\yahoo-search.png
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\index.76.35
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.10.76
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.109.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.110.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.12.52
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.13.58
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.130.58
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.135.50
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.153.44
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.155.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.156.49
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.16.60
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.161.52
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.178.66
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.184.55
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.188.52
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.189.45
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.196.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.198.56
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.199.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.200.53
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.201.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.202.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.203.71
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.205.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.213.71
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.214.49
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.215.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.216.67
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.217.67
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.218.52
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.219.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.220.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.221.57
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.222.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.223.68
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.226.68
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.227.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.228.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.229.76
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.23.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.239.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.24.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.240.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.241.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.242.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.243.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.244.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.245.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.247.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.248.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.249.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.250.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.251.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.252.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.253.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.254.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.255.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.256.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.257.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.279.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.28.58
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.282.75
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.283.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.284.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.289.67
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.290.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.291.61
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.296.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.297.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.304.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.307.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.308.75
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.31.47
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.310.46
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.311.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.315.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.316.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.317.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.318.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.319.49
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.32.48
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.334.44
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.335.60
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.336.44
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.337.44
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.338.75
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.339.47
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.34.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.340.47
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.341.47
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.349.50
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.35.48
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.350.50
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.351.51
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.352.54
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.353.51
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.354.51
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.357.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.358.52
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.359.52
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.360.53
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.361.54
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.362.68
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.363.58
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.364.54
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.365.53
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.367.56
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.368.58
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.369.55
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.370.56
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.371.56
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.372.57
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.373.55
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.375.56
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.376.57
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.377.55
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.378.65
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.384.58
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.386.71
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.387.59
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.388.59
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.389.59
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.390.60
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.391.60
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.392.60
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.393.60
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.394.60
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.396.61
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.397.61
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.398.60
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.399.60
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.403.61
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.404.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.405.61
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.406.61
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.407.76
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.408.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.409.61
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.412.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.413.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.414.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.415.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.416.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.417.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.418.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.419.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.420.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.421.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.423.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.424.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.425.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.426.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.427.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.428.65
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.429.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.430.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.432.65
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.433.64
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.434.65
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.435.64
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.436.76
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.437.64
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.438.71
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.439.71
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.440.75
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.442.73
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.443.73
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.444.73
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.445.68
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.446.69
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.450.67
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.451.67
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.452.68
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.453.68
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.454.69
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.456.69
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.457.75
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.458.70
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.459.70
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.460.69
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.462.74
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.463.69
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.464.70
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.465.68
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.468.70
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.469.70
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.470.70
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.471.73
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.472.70
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.478.74
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.479.73
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.480.68
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.481.71
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.482.74
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.49.67
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.50.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.500.71
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.501.74
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.502.71
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.51.69
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.52.72
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.520.76
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.521.76
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.522.76
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.53.51
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.531.76
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.532.75
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.534.75
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.54.47
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.55.45
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.56.69
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.57.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.58.47
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.593.76
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.595.76
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.63.57
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.66.47
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.70.75
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.71.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\temp\dealio-14079.log
C:\DOCUME~1\Myriam\APPLIC~1\Dealio
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\temp
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\chevron-small.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\DealioSearch.html
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\deals-leftcap.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\deal_report.jpg
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\ebay_login.jpg
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\err_mainwindow.html
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\err_toolbar.html
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\global_scripts.js
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\headerbgthin.jpg
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\highlight-bg.png
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\logo.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\logo_over.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\man_toolbar.html
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\man_toolbar.js
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\post-this-deal.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\post-this-deal_over.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\scripts.js
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\scroller.js
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\search-chevron.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\search-chevron_over.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\search_bg_blink.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\separator.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\settings.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\settings_over.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\yahoo-search.png
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\index.76.35
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.10.76
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.109.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.110.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.12.52
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.13.58
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.130.58
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.135.50
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.153.44
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.155.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.156.49
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.16.60
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.161.52
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.178.66
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.184.55
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.188.52
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.189.45
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.196.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.198.56
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.199.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.200.53
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.201.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.202.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.203.71
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.205.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.213.71
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.214.49
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.215.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.216.67
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.217.67
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.218.52
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.219.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.220.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.221.57
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.222.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.223.68
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.226.68
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.227.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.228.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.229.76
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.23.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.239.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.24.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.240.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.241.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.242.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.243.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.244.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.245.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.247.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.248.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.249.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.250.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.251.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.252.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.253.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.254.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.255.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.256.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.257.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.279.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.28.58
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.282.75
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.283.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.284.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.289.67
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.290.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.291.61
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.296.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.297.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.304.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.307.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.308.75
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.31.47
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.310.46
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.311.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.315.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.316.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.317.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.318.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.319.49
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.32.48
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.334.44
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.335.60
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.336.44
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.337.44
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.338.75
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.339.47
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.34.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.340.47
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.341.47
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.349.50
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.35.48
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.350.50
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.351.51
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.352.54
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.353.51
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.354.51
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.357.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.358.52
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.359.52
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.360.53
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.361.54
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.362.68
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.363.58
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.364.54
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.365.53
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.367.56
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.368.58
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.369.55
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.370.56
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.371.56
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.372.57
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.373.55
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.375.56
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.376.57
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.377.55
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.378.65
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.384.58
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.386.71
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.387.59
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.388.59
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.389.59
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.390.60
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.391.60
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.392.60
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.393.60
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.394.60
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.396.61
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.397.61
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.398.60
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.399.60
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.403.61
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.404.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.405.61
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.406.61
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.407.76
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.408.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.409.61
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.412.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.413.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.414.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.415.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.416.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.417.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.418.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.419.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.420.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.421.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.423.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.424.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.425.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.426.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.427.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.428.65
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.429.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.430.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.432.65
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.433.64
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.434.65
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.435.64
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.436.76
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.437.64
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.438.71
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.439.71
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.440.75
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.442.73
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.443.73
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.444.73
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.445.68
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.446.69
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.450.67
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.451.67
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.452.68
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.453.68
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.454.69
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.456.69
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.457.75
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.458.70
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.459.70
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.460.69
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.462.74
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.463.69
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.464.70
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.465.68
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.468.70
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.469.70
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.470.70
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.471.73
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.472.70
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.478.74
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.479.73
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.480.68
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.481.71
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.482.74
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.49.67
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.50.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.500.71
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.501.74
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.502.71
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.51.69
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.52.72
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.520.76
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.521.76
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.522.76
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.53.51
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.531.76
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.532.75
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.534.75
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.54.47
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.55.45
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.56.69
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.57.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.58.47
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.593.76
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.595.76
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.63.57
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.66.47
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.70.75
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.71.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\temp\dealio-13985.log
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\temp\dealio-13986.log
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\temp\dod_cache.xml
C:\DOCUME~1\Philippe\APPLIC~1\Dealio
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\dinstallhelper.1F6897709C3049D5A6A127B11E899349.dll
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\dinstallhelper.FF48E519780B460688FF07B299E76138.dll
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\chevron-small.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\DealioSearch.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\deals-leftcap.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\deal_report.jpg
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\ebay_login.jpg
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\err_mainwindow.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\err_toolbar.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\global_scripts.js
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\headerbgthin.jpg
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\highlight-bg.png
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\logo.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\logo_over.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\man_toolbar.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\man_toolbar.js
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\post-this-deal.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\post-this-deal_over.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\scripts.js
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\scroller.js
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\search-chevron.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\search-chevron_over.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\search_bg_blink.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\separator.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\settings.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\settings_over.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\yahoo-search.png
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\index.76.35
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.10.76
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.109.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.110.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.12.52
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.13.58
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.130.58
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.135.50
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.153.44
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.155.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.156.49
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.16.60
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.161.52
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.178.66
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.184.55
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.188.52
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.189.45
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.196.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.198.56
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.199.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.200.53
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.201.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.202.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.203.71
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.205.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.213.71
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.214.49
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.215.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.216.67
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.217.67
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.218.52
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.219.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.220.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.221.57
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.222.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.223.68
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.226.68
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.227.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.228.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.229.76
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.23.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.239.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.24.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.240.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.241.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.242.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.243.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.244.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.245.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.247.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.248.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.249.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.250.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.251.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.252.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.253.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.254.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.255.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.256.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.257.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.279.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.28.58
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.282.75
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.283.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.284.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.289.67
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.290.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.291.61
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.296.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.297.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.304.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.307.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.308.75
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.31.47
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.310.46
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.311.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.315.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.316.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.317.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.318.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.319.49
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.32.48
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.334.44
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.335.60
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.336.44
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.337.44
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.338.75
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.339.47
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.34.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.340.47
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.341.47
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.349.50
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.35.48
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.350.50
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.351.51
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.352.54
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.353.51
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.354.51
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.357.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.358.52
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.359.52
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.360.53
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.361.54
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.362.68
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.363.58
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.364.54
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.365.53
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.367.56
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.368.58
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.369.55
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.370.56
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.371.56
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.372.57
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.373.55
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.375.56
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.376.57
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.377.55
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.378.65
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.384.58
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.386.71
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.387.59
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.388.59
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.389.59
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.390.60
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.391.60
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.392.60
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.393.60
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.394.60
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.396.61
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.397.61
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.398.60
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.399.60
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.403.61
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.404.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.405.61
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.406.61
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.407.76
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.408.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.409.61
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.412.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.413.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.414.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.415.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.416.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.417.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.418.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.419.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.420.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.421.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.423.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.424.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.425.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.426.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.427.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.428.65
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.429.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.430.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.432.65
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.433.64
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.434.65
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.435.64
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.436.76
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.437.64
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.438.71
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.439.71
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.440.75
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.442.73
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.443.73
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.444.73
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.445.68
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.446.69
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.450.67
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.451.67
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.452.68
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.453.68
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.454.69
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.456.69
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.457.75
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.458.70
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.459.70
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.460.69
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.462.74
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.463.69
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.464.70
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.465.68
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.468.70
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.469.70
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.470.70
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.471.73
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.472.70
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.478.74
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.479.73
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.480.68
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.481.71
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.482.74
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.49.67
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.50.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.500.71
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.501.74
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.502.71
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.51.69
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.52.72
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.520.76
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.521.76
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.522.76
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.53.51
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.531.76
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.532.75
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.534.75
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.54.47
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.55.45
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.56.69
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.57.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.58.47
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.593.76
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.595.76
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.63.57
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.66.47
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.70.75
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.71.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\dod_cache.xml
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_2016_36.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_2604_33.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_260_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_2688_21.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_2760_9.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_2788_37.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_2788_39.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_3244_30.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_3420_18.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_3516_24.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_3564_27.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_3788_12.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_1016_44.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_1232_14.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_1544_23.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_2072_38.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_2320_41.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_2380_35.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_2652_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_2752_20.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_2836_17.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_2908_53.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_3328_54.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_3396_26.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_3448_47.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_3616_29.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_3824_50.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1248_2616_13.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1248_3944_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2104_1236_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2132_3476_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2312_136_8.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2312_2148_11.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2312_232_16.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2312_4008_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2384_1964_55.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2384_3024_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2448_3940_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_1244_99.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_1548_15.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_1968_18.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2080_33.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2224_114.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2296_24.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2324_111.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2348_117.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_252_75.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2564_102.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2624_63.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2640_27.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2684_80.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2700_44.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2740_123.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2744_81.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2872_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2964_87.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3020_90.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_312_38.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3176_108.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3180_121.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3396_9.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3480_72.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3488_54.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3500_39.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3536_45.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3724_105.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3736_69.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3876_68.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_4072_12.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_444_84.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_524_21.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_672_93.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_884_96.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_2548_58.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_2548_60.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_2564_33.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_2640_30.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_2660_27.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_2672_54.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_2752_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_2948_14.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3104_9.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3244_42.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3252_18.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3324_45.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3336_36.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3404_39.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3592_24.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3896_48.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3924_51.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3984_55.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3984_57.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_696_21.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2828_3312_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2828_3496_8.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2860_1584_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolba
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Celeron(R) CPU 2.66GHz )
BIOS : Phoenix ROM BIOS PLUS Version 1.10 A02
USER : Philippe ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1335 [VPS 090307-0] 4.8.1335 (Not Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:71 Go (Free:12 Go)
D:\ (CD or DVD)
E:\ (USB)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( 08/03/2009|17:04 )
-----------\\ Recherche de Fichiers / Dossiers ...
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\temp
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\chevron-small.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\DealioSearch.html
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\deals-leftcap.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\deal_report.jpg
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\ebay_login.jpg
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\err_mainwindow.html
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\err_toolbar.html
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\global_scripts.js
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\headerbgthin.jpg
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\highlight-bg.png
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\logo.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\logo_over.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\man_toolbar.html
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\man_toolbar.js
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\post-this-deal.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\post-this-deal_over.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\scripts.js
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\scroller.js
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\search-chevron.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\search-chevron_over.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\search_bg_blink.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\separator.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\settings.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\settings_over.gif
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\res\yahoo-search.png
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\index.76.35
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.10.76
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.109.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.110.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.12.52
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.13.58
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.130.58
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.135.50
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.153.44
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.155.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.156.49
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.16.60
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.161.52
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.178.66
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.184.55
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.188.52
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.189.45
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.196.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.198.56
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.199.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.200.53
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.201.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.202.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.203.71
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.205.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.213.71
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.214.49
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.215.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.216.67
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.217.67
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.218.52
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.219.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.220.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.221.57
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.222.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.223.68
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.226.68
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.227.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.228.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.229.76
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.23.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.239.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.24.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.240.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.241.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.242.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.243.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.244.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.245.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.247.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.248.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.249.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.250.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.251.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.252.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.253.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.254.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.255.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.256.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.257.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.279.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.28.58
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.282.75
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.283.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.284.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.289.67
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.290.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.291.61
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.296.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.297.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.304.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.307.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.308.75
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.31.47
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.310.46
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.311.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.315.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.316.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.317.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.318.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.319.49
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.32.48
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.334.44
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.335.60
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.336.44
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.337.44
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.338.75
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.339.47
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.34.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.340.47
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.341.47
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.349.50
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.35.48
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.350.50
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.351.51
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.352.54
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.353.51
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.354.51
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.357.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.358.52
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.359.52
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.360.53
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.361.54
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.362.68
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.363.58
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.364.54
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.365.53
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.367.56
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.368.58
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.369.55
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.370.56
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.371.56
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.372.57
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.373.55
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.375.56
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.376.57
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.377.55
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.378.65
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.384.58
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.386.71
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.387.59
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.388.59
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.389.59
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.390.60
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.391.60
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.392.60
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.393.60
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.394.60
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.396.61
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.397.61
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.398.60
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.399.60
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.403.61
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.404.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.405.61
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.406.61
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.407.76
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.408.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.409.61
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.412.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.413.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.414.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.415.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.416.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.417.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.418.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.419.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.420.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.421.62
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.423.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.424.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.425.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.426.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.427.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.428.65
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.429.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.430.63
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.432.65
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.433.64
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.434.65
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.435.64
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.436.76
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.437.64
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.438.71
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.439.71
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.440.75
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.442.73
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.443.73
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.444.73
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.445.68
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.446.69
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.450.67
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.451.67
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.452.68
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.453.68
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.454.69
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.456.69
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.457.75
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.458.70
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.459.70
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.460.69
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.462.74
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.463.69
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.464.70
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.465.68
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.468.70
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.469.70
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.470.70
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.471.73
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.472.70
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.478.74
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.479.73
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.480.68
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.481.71
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.482.74
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.49.67
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.50.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.500.71
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.501.74
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.502.71
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.51.69
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.52.72
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.520.76
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.521.76
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.522.76
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.53.51
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.531.76
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.532.75
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.534.75
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.54.47
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.55.45
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.56.69
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.57.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.58.47
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.593.76
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.595.76
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.63.57
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.66.47
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.70.75
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\rules\rules.1.71.43
C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126\temp\dealio-14079.log
C:\DOCUME~1\Myriam\APPLIC~1\Dealio
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\temp
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\chevron-small.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\DealioSearch.html
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\deals-leftcap.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\deal_report.jpg
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\ebay_login.jpg
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\err_mainwindow.html
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\err_toolbar.html
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\global_scripts.js
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\headerbgthin.jpg
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\highlight-bg.png
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\logo.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\logo_over.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\man_toolbar.html
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\man_toolbar.js
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\post-this-deal.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\post-this-deal_over.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\scripts.js
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\scroller.js
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\search-chevron.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\search-chevron_over.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\search_bg_blink.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\separator.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\settings.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\settings_over.gif
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\res\yahoo-search.png
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\index.76.35
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.10.76
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.109.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.110.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.12.52
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.13.58
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.130.58
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.135.50
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.153.44
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.155.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.156.49
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.16.60
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.161.52
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.178.66
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.184.55
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.188.52
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.189.45
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.196.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.198.56
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.199.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.200.53
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.201.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.202.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.203.71
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.205.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.213.71
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.214.49
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.215.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.216.67
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.217.67
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.218.52
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.219.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.220.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.221.57
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.222.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.223.68
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.226.68
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.227.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.228.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.229.76
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.23.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.239.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.24.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.240.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.241.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.242.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.243.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.244.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.245.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.247.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.248.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.249.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.250.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.251.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.252.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.253.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.254.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.255.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.256.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.257.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.279.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.28.58
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.282.75
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.283.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.284.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.289.67
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.290.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.291.61
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.296.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.297.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.304.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.307.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.308.75
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.31.47
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.310.46
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.311.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.315.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.316.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.317.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.318.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.319.49
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.32.48
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.334.44
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.335.60
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.336.44
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.337.44
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.338.75
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.339.47
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.34.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.340.47
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.341.47
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.349.50
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.35.48
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.350.50
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.351.51
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.352.54
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.353.51
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.354.51
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.357.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.358.52
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.359.52
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.360.53
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.361.54
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.362.68
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.363.58
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.364.54
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.365.53
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.367.56
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.368.58
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.369.55
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.370.56
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.371.56
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.372.57
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.373.55
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.375.56
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.376.57
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.377.55
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.378.65
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.384.58
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.386.71
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.387.59
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.388.59
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.389.59
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.390.60
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.391.60
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.392.60
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.393.60
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.394.60
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.396.61
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.397.61
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.398.60
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.399.60
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.403.61
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.404.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.405.61
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.406.61
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.407.76
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.408.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.409.61
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.412.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.413.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.414.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.415.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.416.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.417.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.418.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.419.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.420.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.421.62
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.423.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.424.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.425.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.426.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.427.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.428.65
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.429.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.430.63
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.432.65
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.433.64
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.434.65
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.435.64
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.436.76
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.437.64
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.438.71
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.439.71
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.440.75
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.442.73
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.443.73
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.444.73
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.445.68
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.446.69
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.450.67
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.451.67
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.452.68
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.453.68
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.454.69
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.456.69
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.457.75
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.458.70
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.459.70
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.460.69
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.462.74
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.463.69
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.464.70
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.465.68
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.468.70
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.469.70
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.470.70
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.471.73
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.472.70
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.478.74
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.479.73
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.480.68
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.481.71
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.482.74
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.49.67
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.50.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.500.71
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.501.74
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.502.71
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.51.69
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.52.72
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.520.76
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.521.76
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.522.76
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.53.51
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.531.76
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.532.75
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.534.75
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.54.47
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.55.45
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.56.69
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.57.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.58.47
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.593.76
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.595.76
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.63.57
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.66.47
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.70.75
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\rules\rules.1.71.43
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\temp\dealio-13985.log
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\temp\dealio-13986.log
C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126\temp\dod_cache.xml
C:\DOCUME~1\Philippe\APPLIC~1\Dealio
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\dinstallhelper.1F6897709C3049D5A6A127B11E899349.dll
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\dinstallhelper.FF48E519780B460688FF07B299E76138.dll
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\chevron-small.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\DealioSearch.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\deals-leftcap.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\deal_report.jpg
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\ebay_login.jpg
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\err_mainwindow.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\err_toolbar.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\global_scripts.js
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\headerbgthin.jpg
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\highlight-bg.png
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\logo.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\logo_over.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\man_toolbar.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\man_toolbar.js
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\post-this-deal.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\post-this-deal_over.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\scripts.js
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\scroller.js
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\search-chevron.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\search-chevron_over.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\search_bg_blink.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\separator.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\settings.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\settings_over.gif
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\res\yahoo-search.png
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\index.76.35
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.10.76
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.109.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.110.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.12.52
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.13.58
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.130.58
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.135.50
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.153.44
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.155.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.156.49
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.16.60
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.161.52
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.178.66
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.184.55
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.188.52
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.189.45
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.196.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.198.56
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.199.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.200.53
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.201.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.202.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.203.71
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.205.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.213.71
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.214.49
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.215.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.216.67
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.217.67
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.218.52
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.219.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.220.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.221.57
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.222.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.223.68
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.226.68
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.227.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.228.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.229.76
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.23.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.239.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.24.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.240.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.241.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.242.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.243.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.244.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.245.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.247.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.248.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.249.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.250.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.251.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.252.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.253.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.254.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.255.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.256.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.257.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.279.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.28.58
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.282.75
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.283.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.284.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.289.67
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.290.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.291.61
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.296.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.297.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.304.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.307.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.308.75
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.31.47
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.310.46
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.311.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.315.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.316.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.317.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.318.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.319.49
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.32.48
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.334.44
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.335.60
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.336.44
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.337.44
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.338.75
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.339.47
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.34.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.340.47
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.341.47
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.349.50
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.35.48
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.350.50
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.351.51
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.352.54
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.353.51
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.354.51
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.357.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.358.52
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.359.52
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.360.53
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.361.54
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.362.68
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.363.58
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.364.54
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.365.53
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.367.56
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.368.58
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.369.55
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.370.56
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.371.56
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.372.57
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.373.55
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.375.56
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.376.57
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.377.55
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.378.65
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.384.58
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.386.71
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.387.59
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.388.59
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.389.59
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.390.60
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.391.60
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.392.60
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.393.60
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.394.60
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.396.61
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.397.61
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.398.60
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.399.60
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.403.61
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.404.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.405.61
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.406.61
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.407.76
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.408.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.409.61
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.412.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.413.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.414.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.415.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.416.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.417.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.418.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.419.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.420.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.421.62
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.423.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.424.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.425.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.426.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.427.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.428.65
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.429.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.430.63
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.432.65
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.433.64
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.434.65
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.435.64
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.436.76
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.437.64
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.438.71
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.439.71
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.440.75
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.442.73
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.443.73
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.444.73
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.445.68
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.446.69
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.450.67
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.451.67
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.452.68
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.453.68
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.454.69
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.456.69
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.457.75
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.458.70
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.459.70
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.460.69
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.462.74
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.463.69
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.464.70
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.465.68
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.468.70
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.469.70
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.470.70
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.471.73
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.472.70
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.478.74
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.479.73
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.480.68
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.481.71
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.482.74
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.49.67
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.50.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.500.71
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.501.74
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.502.71
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.51.69
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.52.72
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.520.76
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.521.76
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.522.76
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.53.51
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.531.76
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.532.75
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.534.75
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.54.47
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.55.45
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.56.69
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.57.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.58.47
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.593.76
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.595.76
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.63.57
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.66.47
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.70.75
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\rules\rules.1.71.43
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\dod_cache.xml
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_2016_36.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_2604_33.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_260_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_2688_21.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_2760_9.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_2788_37.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_2788_39.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_3244_30.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_3420_18.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_3516_24.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_3564_27.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1040_3788_12.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_1016_44.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_1232_14.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_1544_23.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_2072_38.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_2320_41.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_2380_35.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_2652_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_2752_20.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_2836_17.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_2908_53.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_3328_54.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_3396_26.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_3448_47.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_3616_29.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1184_3824_50.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1248_2616_13.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_1248_3944_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2104_1236_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2132_3476_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2312_136_8.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2312_2148_11.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2312_232_16.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2312_4008_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2384_1964_55.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2384_3024_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2448_3940_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_1244_99.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_1548_15.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_1968_18.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2080_33.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2224_114.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2296_24.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2324_111.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2348_117.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_252_75.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2564_102.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2624_63.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2640_27.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2684_80.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2700_44.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2740_123.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2744_81.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2872_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_2964_87.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3020_90.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_312_38.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3176_108.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3180_121.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3396_9.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3480_72.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3488_54.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3500_39.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3536_45.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3724_105.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3736_69.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_3876_68.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_4072_12.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_444_84.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_524_21.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_672_93.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2720_884_96.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_2548_58.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_2548_60.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_2564_33.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_2640_30.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_2660_27.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_2672_54.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_2752_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_2948_14.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3104_9.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3244_42.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3252_18.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3324_45.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3336_36.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3404_39.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3592_24.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3896_48.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3924_51.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3984_55.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_3984_57.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2772_696_21.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2828_3312_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2828_3496_8.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolbar_tmp_2860_1584_5.html
C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126\temp\_toolba
============== ToolBar S&D NETTOYAGE =============
Le nettoyage supprime l'infection du système.
Important! Désactiver l'antivirus, l'antispyware résident, TeaTimer de Spybot (si présent et actif)
• Verifier dans ajout/suppression de programmes du panneau de configuration si la barre d'outil est présente.
• Si oui désinstaller, si non continuer la procédure
• Relancer ToolBar S&D.
• Pour XP Double-click sur le raccourci de Toolbar-S&D.
• Pour Vista click-Droit sur le raccourci de Toolbar-S&D et executer en administrateur
• Dans le menu principal, taper 2 puis valider par entrée.
• Le menu démarrer et les icônes vont à nouveau disparaître.. c'est normal.
• Le nettoyage va prendre quelques minutes...
• Une fois l'opération terminée, le rapport de nettoyage s'ouvre.
• copier/coller le rapport sur le forum
• Attendre la suite.
NOTE : Si le Bureau ne réapparait pas, appuyer simultanément sur Ctrl+Alt+Suppr pour ouvrir le Gestionnaire des tâches.
Cliquer sur l'onglet "Processus". Cliquer en haut à gauche sur Fichier et choisir "Exécuter..."
Taper explorer puis valider.
Le nettoyage supprime l'infection du système.
Important! Désactiver l'antivirus, l'antispyware résident, TeaTimer de Spybot (si présent et actif)
• Verifier dans ajout/suppression de programmes du panneau de configuration si la barre d'outil est présente.
• Si oui désinstaller, si non continuer la procédure
• Relancer ToolBar S&D.
• Pour XP Double-click sur le raccourci de Toolbar-S&D.
• Pour Vista click-Droit sur le raccourci de Toolbar-S&D et executer en administrateur
• Dans le menu principal, taper 2 puis valider par entrée.
• Le menu démarrer et les icônes vont à nouveau disparaître.. c'est normal.
• Le nettoyage va prendre quelques minutes...
• Une fois l'opération terminée, le rapport de nettoyage s'ouvre.
• copier/coller le rapport sur le forum
• Attendre la suite.
NOTE : Si le Bureau ne réapparait pas, appuyer simultanément sur Ctrl+Alt+Suppr pour ouvrir le Gestionnaire des tâches.
Cliquer sur l'onglet "Processus". Cliquer en haut à gauche sur Fichier et choisir "Exécuter..."
Taper explorer puis valider.
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Celeron(R) CPU 2.66GHz )
BIOS : Phoenix ROM BIOS PLUS Version 1.10 A02
USER : Philippe ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1335 [VPS 090307-0] 4.8.1335 (Not Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:71 Go (Free:12 Go)
D:\ (CD or DVD)
E:\ (USB)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [2] ( 08/03/2009|17:12 )
-----------\\ SUPPRESSION
Supprime! - C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126
Supprime! - C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126
Supprime! - C:\DOCUME~1\Philippe\APPLIC~1\Dealio\dinstallhelper.1F6897709C3049D5A6A127B11E899349.dll
Supprime! - C:\DOCUME~1\Philippe\APPLIC~1\Dealio\dinstallhelper.FF48E519780B460688FF07B299E76138.dll
Supprime! - C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126
Supprime! - C:\Program Files\Dealio\DealioAU.exe
Supprime! - C:\Program Files\Dealio\kb126
Supprime! - C:\Program Files\Dealio\SearchSettingsKit.exe
Supprime! - C:\DOCUME~1\ALLUSE~1\MENUDÉ~1\PROGRA~1\Dealio
Supprime! - C:\Program Files\KaZaA\data
Supprime! - C:\Program Files\KaZaA\licenses
Supprime! - C:\Program Files\KaZaA\My Shared Folder
Supprime! - C:\Program Files\MyWaySA\SrchAsDe
Supprime! - C:\DOCUME~1\Mathieu\APPLIC~1\Search Settings\kb126
Supprime! - C:\DOCUME~1\Myriam\APPLIC~1\Search Settings\kb126
Supprime! - C:\DOCUME~1\Philippe\APPLIC~1\Search Settings\kb126
Supprime! - C:\Program Files\Search Settings\kb126
Supprime! - C:\Program Files\Search Settings\SearchSettings.exe
Supprime! - C:\DOCUME~1\Mathieu\APPLIC~1\Dealio
Supprime! - C:\DOCUME~1\Myriam\APPLIC~1\Dealio
Supprime! - C:\DOCUME~1\Philippe\APPLIC~1\Dealio
Supprime! - C:\Program Files\Dealio
Supprime! - C:\Program Files\KaZaA
Supprime! - C:\Program Files\MyWaySA
Supprime! - C:\DOCUME~1\Mathieu\APPLIC~1\Search Settings
Supprime! - C:\DOCUME~1\Myriam\APPLIC~1\Search Settings
Supprime! - C:\DOCUME~1\Philippe\APPLIC~1\Search Settings
Supprime! - C:\Program Files\Search Settings
-----------\\ Recherche de Fichiers / Dossiers ...
-----------\\ Extensions
(Philippe) - {3112ca9c-de6d-4884-a869-9855de68056c} => google-toolbar
(Philippe) - {635abd67-4fe9-1b23-4f01-e679fa7484c1} => ytoolbar
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="https://www.google.com/?gws_rd=ssl"
"Search Bar"="http://www.google.com/toolbar/ie8/sidebar.html"
"Default_Page_URL"="https://www.dell.com/fr-fr"
"Start Page"="https://www.orange.fr/portail"
"First Home Page"="http://www.microsoft.com/isapi/redir.dll?Prd=ie&Pver=5.0&Ar=ie5update&O1=b1"
"Default_Search_URL"="http://www.google.com/toolbar/ie8/sidebar.html"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/"
"Home_Page"="https://www.dell.com/fr-fr?c=fr&l=fr&s=gen&redirect=1"
"Help_Page"="http://support.euro.dell.com/segment.asp?country=FR&language=FR"
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\Philippe\Mes documents\puppyfat\TheElderScrollsIVOblivionModsNoDVDCrackUpdatewwwslotorrentnet(www.fulldls.com).torrent
1 - "C:\ToolBar SD\TB_1.txt" - 08/03/2009|17:06 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 08/03/2009|17:16 - Option : [2]
-----------\\ Fin du rapport a 17:16:32,95
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Celeron(R) CPU 2.66GHz )
BIOS : Phoenix ROM BIOS PLUS Version 1.10 A02
USER : Philippe ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1335 [VPS 090307-0] 4.8.1335 (Not Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:71 Go (Free:12 Go)
D:\ (CD or DVD)
E:\ (USB)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [2] ( 08/03/2009|17:12 )
-----------\\ SUPPRESSION
Supprime! - C:\DOCUME~1\Mathieu\APPLIC~1\Dealio\kb126
Supprime! - C:\DOCUME~1\Myriam\APPLIC~1\Dealio\kb126
Supprime! - C:\DOCUME~1\Philippe\APPLIC~1\Dealio\dinstallhelper.1F6897709C3049D5A6A127B11E899349.dll
Supprime! - C:\DOCUME~1\Philippe\APPLIC~1\Dealio\dinstallhelper.FF48E519780B460688FF07B299E76138.dll
Supprime! - C:\DOCUME~1\Philippe\APPLIC~1\Dealio\kb126
Supprime! - C:\Program Files\Dealio\DealioAU.exe
Supprime! - C:\Program Files\Dealio\kb126
Supprime! - C:\Program Files\Dealio\SearchSettingsKit.exe
Supprime! - C:\DOCUME~1\ALLUSE~1\MENUDÉ~1\PROGRA~1\Dealio
Supprime! - C:\Program Files\KaZaA\data
Supprime! - C:\Program Files\KaZaA\licenses
Supprime! - C:\Program Files\KaZaA\My Shared Folder
Supprime! - C:\Program Files\MyWaySA\SrchAsDe
Supprime! - C:\DOCUME~1\Mathieu\APPLIC~1\Search Settings\kb126
Supprime! - C:\DOCUME~1\Myriam\APPLIC~1\Search Settings\kb126
Supprime! - C:\DOCUME~1\Philippe\APPLIC~1\Search Settings\kb126
Supprime! - C:\Program Files\Search Settings\kb126
Supprime! - C:\Program Files\Search Settings\SearchSettings.exe
Supprime! - C:\DOCUME~1\Mathieu\APPLIC~1\Dealio
Supprime! - C:\DOCUME~1\Myriam\APPLIC~1\Dealio
Supprime! - C:\DOCUME~1\Philippe\APPLIC~1\Dealio
Supprime! - C:\Program Files\Dealio
Supprime! - C:\Program Files\KaZaA
Supprime! - C:\Program Files\MyWaySA
Supprime! - C:\DOCUME~1\Mathieu\APPLIC~1\Search Settings
Supprime! - C:\DOCUME~1\Myriam\APPLIC~1\Search Settings
Supprime! - C:\DOCUME~1\Philippe\APPLIC~1\Search Settings
Supprime! - C:\Program Files\Search Settings
-----------\\ Recherche de Fichiers / Dossiers ...
-----------\\ Extensions
(Philippe) - {3112ca9c-de6d-4884-a869-9855de68056c} => google-toolbar
(Philippe) - {635abd67-4fe9-1b23-4f01-e679fa7484c1} => ytoolbar
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="https://www.google.com/?gws_rd=ssl"
"Search Bar"="http://www.google.com/toolbar/ie8/sidebar.html"
"Default_Page_URL"="https://www.dell.com/fr-fr"
"Start Page"="https://www.orange.fr/portail"
"First Home Page"="http://www.microsoft.com/isapi/redir.dll?Prd=ie&Pver=5.0&Ar=ie5update&O1=b1"
"Default_Search_URL"="http://www.google.com/toolbar/ie8/sidebar.html"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/"
"Home_Page"="https://www.dell.com/fr-fr?c=fr&l=fr&s=gen&redirect=1"
"Help_Page"="http://support.euro.dell.com/segment.asp?country=FR&language=FR"
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\Philippe\Mes documents\puppyfat\TheElderScrollsIVOblivionModsNoDVDCrackUpdatewwwslotorrentnet(www.fulldls.com).torrent
1 - "C:\ToolBar SD\TB_1.txt" - 08/03/2009|17:06 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 08/03/2009|17:16 - Option : [2]
-----------\\ Fin du rapport a 17:16:32,95
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:33:44, on 08/03/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\WINDOWS\system32\cisvc.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Iconix\IconixService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft LifeCam\MSCamSvc.exe
C:\Program Files\SPAMfighter\sfus.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Alwil Software\Avast4\setup\avast.setup
C:\WINDOWS\vVX3000.exe
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.dell.com/fr-fr
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: eBay Toolbar Helper - {22D8E815-4A5E-4DFB-845E-AAB64207F5BD} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: IconixBHOClass Class - {761233B6-F228-49E4-8F6B-668499D4E55A} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.4472\swg.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Recherche sur eBay - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O9 - Extra button: (no name) - {400A6CFA-E326-4d61-A90C-9AD75358DC5F} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra 'Tools' menuitem: Email ID Préférences - {400A6CFA-E326-4d61-A90C-9AD75358DC5F} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {BC3F6B6D-2E49-4603-B028-7411655713F3} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra 'Tools' menuitem: À propos de Email ID - {BC3F6B6D-2E49-4603-B028-7411655713F3} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://chouchouyoupya.spaces.live.com/PhotoUpload/MsnPUpld.cab
O16 - DPF: {F919FBD3-A96B-4679-AF26-F551439BB5FD} - https://www.afternic.com/domains/errorsafe.com
O18 - Filter hijack: text/html - {2AB289AE-4B90-4281-B2AE-1F4BB034B647} - (no file)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Iconix Update Service (IconixService) - Unknown owner - C:\Program Files\Fichiers communs\Iconix\IconixService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: SPAMfighter Update Service - SPAMfighter ApS - C:\Program Files\SPAMfighter\sfus.exe
O24 - Desktop Component 0: (no name) - http://www.lesavourclub.fr/images/autour_du_vin/millesimes.gif
O24 - Desktop Component 1: (no name) - https://www.mediavacances.com/Images/fondpixel.gif
Scan saved at 17:33:44, on 08/03/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\WINDOWS\system32\cisvc.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Iconix\IconixService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft LifeCam\MSCamSvc.exe
C:\Program Files\SPAMfighter\sfus.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Alwil Software\Avast4\setup\avast.setup
C:\WINDOWS\vVX3000.exe
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.dell.com/fr-fr
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: eBay Toolbar Helper - {22D8E815-4A5E-4DFB-845E-AAB64207F5BD} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: IconixBHOClass Class - {761233B6-F228-49E4-8F6B-668499D4E55A} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.4472\swg.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Recherche sur eBay - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O9 - Extra button: (no name) - {400A6CFA-E326-4d61-A90C-9AD75358DC5F} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra 'Tools' menuitem: Email ID Préférences - {400A6CFA-E326-4d61-A90C-9AD75358DC5F} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {BC3F6B6D-2E49-4603-B028-7411655713F3} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra 'Tools' menuitem: À propos de Email ID - {BC3F6B6D-2E49-4603-B028-7411655713F3} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://chouchouyoupya.spaces.live.com/PhotoUpload/MsnPUpld.cab
O16 - DPF: {F919FBD3-A96B-4679-AF26-F551439BB5FD} - https://www.afternic.com/domains/errorsafe.com
O18 - Filter hijack: text/html - {2AB289AE-4B90-4281-B2AE-1F4BB034B647} - (no file)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Iconix Update Service (IconixService) - Unknown owner - C:\Program Files\Fichiers communs\Iconix\IconixService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: SPAMfighter Update Service - SPAMfighter ApS - C:\Program Files\SPAMfighter\sfus.exe
O24 - Desktop Component 0: (no name) - http://www.lesavourclub.fr/images/autour_du_vin/millesimes.gif
O24 - Desktop Component 1: (no name) - https://www.mediavacances.com/Images/fondpixel.gif
----------------------- Fixer des lignes HitjackThis -------------------
Relancer Hitjackthis
Choisir l'option Do a system scan only
• Fixer cette/ces lignes
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O16 - DPF: {F919FBD3-A96B-4679-AF26-F551439BB5FD} - https://www.afternic.com/domains/errorsafe.com
O18 - Filter hijack: text/html - {2AB289AE-4B90-4281-B2AE-1F4BB034B647} - (no file)
• Pour fixer cette/ces lignes.
• Cliquer sur la petite case à gauche de chaque ligne à fixer.
• Une fois cette/ces lignes cochées,
• fermer toutes tes fenêtres y compris internet
• click sur le bouton en bas FIX CHECKED
• Fermer et relancer la machine
• Copier/Coller un nouveau rapport HitJackThis sur le forum.
Relancer Hitjackthis
Choisir l'option Do a system scan only
• Fixer cette/ces lignes
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O16 - DPF: {F919FBD3-A96B-4679-AF26-F551439BB5FD} - https://www.afternic.com/domains/errorsafe.com
O18 - Filter hijack: text/html - {2AB289AE-4B90-4281-B2AE-1F4BB034B647} - (no file)
• Pour fixer cette/ces lignes.
• Cliquer sur la petite case à gauche de chaque ligne à fixer.
• Une fois cette/ces lignes cochées,
• fermer toutes tes fenêtres y compris internet
• click sur le bouton en bas FIX CHECKED
• Fermer et relancer la machine
• Copier/Coller un nouveau rapport HitJackThis sur le forum.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:48:10, on 08/03/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\WINDOWS\system32\cisvc.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Iconix\IconixService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft LifeCam\MSCamSvc.exe
C:\Program Files\SPAMfighter\sfus.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\vVX3000.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Program Files\Alwil Software\Avast4\setup\avast.setup
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.fr/myway
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: eBay Toolbar Helper - {22D8E815-4A5E-4DFB-845E-AAB64207F5BD} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: IconixBHOClass Class - {761233B6-F228-49E4-8F6B-668499D4E55A} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.4472\swg.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Recherche sur eBay - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O9 - Extra button: (no name) - {400A6CFA-E326-4d61-A90C-9AD75358DC5F} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra 'Tools' menuitem: Email ID Préférences - {400A6CFA-E326-4d61-A90C-9AD75358DC5F} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {BC3F6B6D-2E49-4603-B028-7411655713F3} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra 'Tools' menuitem: À propos de Email ID - {BC3F6B6D-2E49-4603-B028-7411655713F3} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://chouchouyoupya.spaces.live.com/PhotoUpload/MsnPUpld.cab
O18 - Filter hijack: text/html - {2AB289AE-4B90-4281-B2AE-1F4BB034B647} - (no file)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Iconix Update Service (IconixService) - Unknown owner - C:\Program Files\Fichiers communs\Iconix\IconixService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: SPAMfighter Update Service - SPAMfighter ApS - C:\Program Files\SPAMfighter\sfus.exe
O24 - Desktop Component 0: (no name) - http://www.lesavourclub.fr/images/autour_du_vin/millesimes.gif
O24 - Desktop Component 1: (no name) - https://www.mediavacances.com/Images/fondpixel.gif
Scan saved at 17:48:10, on 08/03/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\WINDOWS\system32\cisvc.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Iconix\IconixService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft LifeCam\MSCamSvc.exe
C:\Program Files\SPAMfighter\sfus.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\vVX3000.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Program Files\Alwil Software\Avast4\setup\avast.setup
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.fr/myway
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: eBay Toolbar Helper - {22D8E815-4A5E-4DFB-845E-AAB64207F5BD} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: IconixBHOClass Class - {761233B6-F228-49E4-8F6B-668499D4E55A} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.4472\swg.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Recherche sur eBay - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O9 - Extra button: (no name) - {400A6CFA-E326-4d61-A90C-9AD75358DC5F} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra 'Tools' menuitem: Email ID Préférences - {400A6CFA-E326-4d61-A90C-9AD75358DC5F} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {BC3F6B6D-2E49-4603-B028-7411655713F3} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra 'Tools' menuitem: À propos de Email ID - {BC3F6B6D-2E49-4603-B028-7411655713F3} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://chouchouyoupya.spaces.live.com/PhotoUpload/MsnPUpld.cab
O18 - Filter hijack: text/html - {2AB289AE-4B90-4281-B2AE-1F4BB034B647} - (no file)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Iconix Update Service (IconixService) - Unknown owner - C:\Program Files\Fichiers communs\Iconix\IconixService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: SPAMfighter Update Service - SPAMfighter ApS - C:\Program Files\SPAMfighter\sfus.exe
O24 - Desktop Component 0: (no name) - http://www.lesavourclub.fr/images/autour_du_vin/millesimes.gif
O24 - Desktop Component 1: (no name) - https://www.mediavacances.com/Images/fondpixel.gif
Il y en a un qui fait de la résistance
=================== LOP S&D =====================
• Télécharger la dernière version de Lop S&D sur le Bureau,
• Double-click sur Lop S&D.exe pour lancer l'installation,
• Puis double-cliquer sur le raccourci Lop S&D présent sur le Bureau,
Attention Désactivez les protections résidentes : Antivirus, antispywares, controleurs d'intégrité, etc... pour que l'outil puisse s'exécuter correctement.
• Sélectionner la langue souhaitée , puis choisir l'Option 1 (Recherche)
• A l'issue du scan, le bloc notes va s'ouvrir avec le résultat de la recherche,
• Enregistrer le rapport LopR.txt sur le Bureau pour le retrouver facilement, sinon il sera sauvegardé automatiquement à la racine de la partition système : C:\LopR.txt
• Pour nettoyer ce qui a été trouvé, relancer LopSD et choisir l'option 2 (Suppression)
• Copier/Coller le rapport LopR.txt + un nouveau rapport HijackThis
NB : un backup des suppressions sera créé dans le dossier de Lop S&D.
=================== LOP S&D =====================
• Télécharger la dernière version de Lop S&D sur le Bureau,
• Double-click sur Lop S&D.exe pour lancer l'installation,
• Puis double-cliquer sur le raccourci Lop S&D présent sur le Bureau,
Attention Désactivez les protections résidentes : Antivirus, antispywares, controleurs d'intégrité, etc... pour que l'outil puisse s'exécuter correctement.
• Sélectionner la langue souhaitée , puis choisir l'Option 1 (Recherche)
• A l'issue du scan, le bloc notes va s'ouvrir avec le résultat de la recherche,
• Enregistrer le rapport LopR.txt sur le Bureau pour le retrouver facilement, sinon il sera sauvegardé automatiquement à la racine de la partition système : C:\LopR.txt
• Pour nettoyer ce qui a été trouvé, relancer LopSD et choisir l'option 2 (Suppression)
• Copier/Coller le rapport LopR.txt + un nouveau rapport HijackThis
NB : un backup des suppressions sera créé dans le dossier de Lop S&D.
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Celeron(R) CPU 2.66GHz )
BIOS : Phoenix ROM BIOS PLUS Version 1.10 A02
USER : Philippe ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1335 [VPS 090307-0] 4.8.1335 (Not Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:71 Go (Free:12 Go)
D:\ (CD or DVD)
E:\ (USB)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 08/03/2009|17:56 )
--------------------\\ Listing des dossiers dans APPLIC~1
[20/08/2004|10:41] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[21/09/2005|14:27] C:\DOCUME~1\ADMINI~1\APPLIC~1\Jasc Software Inc
[20/08/2004|10:30] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[21/09/2005|14:16] C:\DOCUME~1\ADMINI~1\APPLIC~1\Sun
[21/09/2005|14:23] C:\DOCUME~1\ADMINI~1\APPLIC~1\Symantec
[21/09/2005|14:20] C:\DOCUME~1\ADMINI~1\APPLIC~1\You've Got Pictures Screensaver
[14/02/2009|10:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{148D8B8A-8F96-4822-81EC-D510B626B7D5}
[20/09/2008|16:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{51019853-129C-4EDE-9030-D5FD7BBD9AD0}
[29/11/2008|11:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[16/03/2006|19:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[27/03/2006|12:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[14/02/2009|10:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DriverScanner
[02/11/2007|10:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\eBay
[21/12/2006|23:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[08/03/2009|08:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[12/11/2008|16:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Iconix
[21/09/2005|14:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[08/03/2009|11:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[09/01/2007|19:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[25/03/2006|10:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MSScanAppDataDir
[31/12/2005|18:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[10/06/2007|21:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\River Past G5
[20/08/2004|10:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[25/02/2006|10:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[18/03/2006|09:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanAppDataDir
[18/03/2006|09:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanWizard
[23/04/2007|11:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[07/03/2009|07:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[06/08/2008|20:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TomTom
[02/06/2008|22:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Trend Micro
[21/09/2005|14:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint
[25/10/2008|14:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WholeSecurity
[26/02/2006|18:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[19/01/2008|10:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[07/04/2007|14:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[17/04/2008|19:39] C:\DOCUME~1\Camille\APPLIC~1\eBay
[20/08/2004|10:41] C:\DOCUME~1\Camille\APPLIC~1\Identities
[21/09/2005|14:27] C:\DOCUME~1\Camille\APPLIC~1\Jasc Software Inc
[25/10/2005|16:49] C:\DOCUME~1\Camille\APPLIC~1\Leadertech
[01/01/2006|23:25] C:\DOCUME~1\Camille\APPLIC~1\Macromedia
[31/12/2006|12:30] C:\DOCUME~1\Camille\APPLIC~1\Microsoft
[13/07/2006|12:00] C:\DOCUME~1\Camille\APPLIC~1\Real
[25/10/2005|16:49] C:\DOCUME~1\Camille\APPLIC~1\Sonic
[21/09/2005|14:16] C:\DOCUME~1\Camille\APPLIC~1\Sun
[21/09/2005|14:23] C:\DOCUME~1\Camille\APPLIC~1\Symantec
[06/12/2006|20:24] C:\DOCUME~1\Camille\APPLIC~1\WholeSecurity
[21/09/2005|14:20] C:\DOCUME~1\Camille\APPLIC~1\You've Got Pictures Screensaver
[20/08/2004|10:41] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[21/09/2005|14:27] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Jasc Software Inc
[20/08/2004|10:30] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[21/09/2005|14:16] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Sun
[21/09/2005|14:23] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec
[21/09/2005|14:20] C:\DOCUME~1\DEFAUL~1\APPLIC~1\You've Got Pictures Screensaver
[07/03/2006|08:44] C:\DOCUME~1\LOCALS~1\APPLIC~1\Help
[03/11/2006|23:04] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[20/04/2006|22:14] C:\DOCUME~1\LOCALS~1\APPLIC~1\NetMon
[19/07/2008|23:21] C:\DOCUME~1\Mathieu\APPLIC~1\Adobe
[19/07/2008|19:51] C:\DOCUME~1\Mathieu\APPLIC~1\eBay
[19/07/2008|23:29] C:\DOCUME~1\Mathieu\APPLIC~1\Google
[20/08/2004|10:41] C:\DOCUME~1\Mathieu\APPLIC~1\Identities
[21/09/2005|14:27] C:\DOCUME~1\Mathieu\APPLIC~1\Jasc Software Inc
[19/07/2008|23:21] C:\DOCUME~1\Mathieu\APPLIC~1\Macromedia
[09/02/2007|20:31] C:\DOCUME~1\Mathieu\APPLIC~1\Microsoft
[25/03/2006|09:04] C:\DOCUME~1\Mathieu\APPLIC~1\OpenOffice.org2
[05/07/2006|22:41] C:\DOCUME~1\Mathieu\APPLIC~1\Real
[19/07/2008|19:53] C:\DOCUME~1\Mathieu\APPLIC~1\SPAMfighter
[21/09/2005|14:16] C:\DOCUME~1\Mathieu\APPLIC~1\Sun
[21/09/2005|14:23] C:\DOCUME~1\Mathieu\APPLIC~1\Symantec
[19/07/2008|23:21] C:\DOCUME~1\Mathieu\APPLIC~1\WholeSecurity
[21/09/2005|14:20] C:\DOCUME~1\Mathieu\APPLIC~1\You've Got Pictures Screensaver
[16/04/2008|16:40] C:\DOCUME~1\Myriam\APPLIC~1\Adobe
[13/05/2006|17:47] C:\DOCUME~1\Myriam\APPLIC~1\Apple Computer
[16/04/2008|15:34] C:\DOCUME~1\Myriam\APPLIC~1\eBay
[06/05/2006|16:42] C:\DOCUME~1\Myriam\APPLIC~1\Google
[29/03/2006|15:40] C:\DOCUME~1\Myriam\APPLIC~1\Help
[20/08/2004|10:41] C:\DOCUME~1\Myriam\APPLIC~1\Identities
[21/09/2005|14:27] C:\DOCUME~1\Myriam\APPLIC~1\Jasc Software Inc
[28/03/2006|10:18] C:\DOCUME~1\Myriam\APPLIC~1\Macromedia
[09/10/2006|22:32] C:\DOCUME~1\Myriam\APPLIC~1\Microsoft
[28/03/2006|10:15] C:\DOCUME~1\Myriam\APPLIC~1\OpenOffice.org2
[03/08/2006|12:13] C:\DOCUME~1\Myriam\APPLIC~1\Real
[17/07/2008|20:06] C:\DOCUME~1\Myriam\APPLIC~1\SPAMfighter
[21/09/2005|14:16] C:\DOCUME~1\Myriam\APPLIC~1\Sun
[21/09/2005|14:23] C:\DOCUME~1\Myriam\APPLIC~1\Symantec
[05/11/2005|16:49] C:\DOCUME~1\Myriam\APPLIC~1\Template
[17/04/2008|07:57] C:\DOCUME~1\Myriam\APPLIC~1\WholeSecurity
[21/09/2005|14:20] C:\DOCUME~1\Myriam\APPLIC~1\You've Got Pictures Screensaver
[02/01/2006|19:52] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[03/03/2006|20:19] C:\DOCUME~1\Philippe\APPLIC~1\7Wonders
[15/04/2006|16:49] C:\DOCUME~1\Philippe\APPLIC~1\ACAMPREF
[15/12/2008|23:06] C:\DOCUME~1\Philippe\APPLIC~1\Adobe
[05/03/2006|14:40] C:\DOCUME~1\Philippe\APPLIC~1\Anuman Interactive
[22/05/2006|18:06] C:\DOCUME~1\Philippe\APPLIC~1\Apple Computer
[05/02/2006|15:15] C:\DOCUME~1\Philippe\APPLIC~1\ArcSoft
[09/09/2006|07:38] C:\DOCUME~1\Philippe\APPLIC~1\Azureus
[01/11/2007|16:47] C:\DOCUME~1\Philippe\APPLIC~1\BitTorrent
[25/02/2008|16:42] C:\DOCUME~1\Philippe\APPLIC~1\Cabos
[03/05/2008|14:22] C:\DOCUME~1\Philippe\APPLIC~1\Cakewalk
[17/02/2009|21:37] C:\DOCUME~1\Philippe\APPLIC~1\Canon
[07/12/2005|14:03] C:\DOCUME~1\Philippe\APPLIC~1\CyberLink
[13/01/2008|16:05] C:\DOCUME~1\Philippe\APPLIC~1\DAEMON Tools
[21/08/2007|22:56] C:\DOCUME~1\Philippe\APPLIC~1\dBpoweramp
[05/01/2007|17:37] C:\DOCUME~1\Philippe\APPLIC~1\dvdcss
[13/04/2008|15:24] C:\DOCUME~1\Philippe\APPLIC~1\eBay
[18/02/2006|01:27] C:\DOCUME~1\Philippe\APPLIC~1\eConf
[24/12/2006|09:35] C:\DOCUME~1\Philippe\APPLIC~1\Google
[05/02/2006|15:31] C:\DOCUME~1\Philippe\APPLIC~1\Help
[23/10/2008|22:25] C:\DOCUME~1\Philippe\APPLIC~1\Icone
[12/11/2008|16:05] C:\DOCUME~1\Philippe\APPLIC~1\Iconix
[07/06/2006|15:09] C:\DOCUME~1\Philippe\APPLIC~1\Identities
[11/03/2006|19:52] C:\DOCUME~1\Philippe\APPLIC~1\Jasc Software Inc
[18/04/2008|17:46] C:\DOCUME~1\Philippe\APPLIC~1\La Bataille pour la Terre du Milieu T II
[06/10/2005|18:28] C:\DOCUME~1\Philippe\APPLIC~1\Leadertech
[24/05/2006|17:44] C:\DOCUME~1\Philippe\APPLIC~1\Macromedia
[08/03/2009|11:25] C:\DOCUME~1\Philippe\APPLIC~1\Malwarebytes
[18/08/2008|08:45] C:\DOCUME~1\Philippe\APPLIC~1\Microsoft
[09/07/2008|20:11] C:\DOCUME~1\Philippe\APPLIC~1\Mozilla
[21/08/2007|22:29] C:\DOCUME~1\Philippe\APPLIC~1\Musicmatch
[06/03/2009|18:45] C:\DOCUME~1\Philippe\APPLIC~1\OpenOffice.org2
[30/05/2006|22:18] C:\DOCUME~1\Philippe\APPLIC~1\Real
[10/06/2007|20:42] C:\DOCUME~1\Philippe\APPLIC~1\River Past G5
[05/02/2006|11:35] C:\DOCUME~1\Philippe\APPLIC~1\ScanSoft
[06/10/2005|18:29] C:\DOCUME~1\Philippe\APPLIC~1\Sonic
[18/02/2007|19:38] C:\DOCUME~1\Philippe\APPLIC~1\Sony Corporation
[16/06/2008|18:09] C:\DOCUME~1\Philippe\APPLIC~1\SPAMfighter
[27/08/2006|08:33] C:\DOCUME~1\Philippe\APPLIC~1\Steinberg
[21/09/2005|14:16] C:\DOCUME~1\Philippe\APPLIC~1\Sun
[30/09/2005|22:50] C:\DOCUME~1\Philippe\APPLIC~1\Symantec
[25/04/2006|17:32] C:\DOCUME~1\Philippe\APPLIC~1\Syntrillium
[01/10/2005|13:56] C:\DOCUME~1\Philippe\APPLIC~1\Template
[29/10/2007|12:17] C:\DOCUME~1\Philippe\APPLIC~1\TomTom
[25/10/2008|21:17] C:\DOCUME~1\Philippe\APPLIC~1\U3
[14/02/2009|09:24] C:\DOCUME~1\Philippe\APPLIC~1\Uniblue
[10/10/2007|17:56] C:\DOCUME~1\Philippe\APPLIC~1\vlc
[21/08/2007|22:10] C:\DOCUME~1\Philippe\APPLIC~1\WholeSecurity
[21/09/2005|14:20] C:\DOCUME~1\Philippe\APPLIC~1\You've Got Pictures Screensaver
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[01/10/2005 21:15][--a------] C:\WINDOWS\tasks\Rappel d'abonnement 1 auprŠs de l'ISP.job
[08/03/2009 17:45][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 12:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[29/11/2008|11:50] C:\Program Files\Adobe
[26/09/2007|10:46] C:\Program Files\ahead
[27/05/2006|13:48] C:\Program Files\Alcohol Soft
[25/04/2007|15:55] C:\Program Files\Alwil Software
[21/09/2005|14:05] C:\Program Files\Analog Devices
[05/03/2006|14:36] C:\Program Files\Anuman Interactive
[05/02/2006|11:33] C:\Program Files\ArcSoft
[31/01/2008|07:10] C:\Program Files\AusLogics Disk Defrag
[26/09/2007|10:37] C:\Program Files\Azureus
[18/02/2008|10:33] C:\Program Files\BitTorrent
[11/10/2008|14:54] C:\Program Files\Black Isle
[18/02/2008|10:36] C:\Program Files\Cabos
[03/05/2008|14:07] C:\Program Files\Cakewalk
[12/05/2007|15:36] C:\Program Files\Canon
[07/04/2007|13:54] C:\Program Files\CCleaner
[23/04/2007|11:41] C:\Program Files\CDBurnerXP Pro 3
[28/05/2007|19:08] C:\Program Files\Common Files
[11/10/2008|14:52] C:\Program Files\compil
[20/08/2004|10:35] C:\Program Files\ComPlus Applications
[21/09/2005|14:17] C:\Program Files\CyberLink
[21/09/2005|14:27] C:\Program Files\Dell
[21/09/2005|14:27] C:\Program Files\Dell Inc
[01/01/2006|20:17] C:\Program Files\DivX
[08/10/2006|09:33] C:\Program Files\eBay
[27/12/2005|19:18] C:\Program Files\Eidos Interactive
[18/04/2008|17:02] C:\Program Files\Electronic Arts
[04/07/2008|07:55] C:\Program Files\eMule
[27/01/2009|19:22] C:\Program Files\Fichiers communs
[07/03/2009|17:50] C:\Program Files\Finale 2002
[05/08/2007|09:35] C:\Program Files\Finale 2006
[07/03/2009|17:21] C:\Program Files\Finale 2007
[16/07/2007|16:26] C:\Program Files\Finale NotePad 2005a
[27/07/2007|23:22] C:\Program Files\Finale NotePad 2007
[22/03/2008|13:48] C:\Program Files\Free Audio Pack
[22/03/2008|13:56] C:\Program Files\freebird
[21/08/2007|21:49] C:\Program Files\Fx Audio Conveter
[28/11/2007|22:18] C:\Program Files\Gallimard
[04/02/2009|18:07] C:\Program Files\Google
[30/03/2006|12:35] C:\Program Files\Guitar Pro 5
[15/04/2006|16:48] C:\Program Files\Harmony Assistant
[12/11/2008|16:02] C:\Program Files\Iconix
[05/08/2007|19:37] C:\Program Files\Illustrate
[11/10/2008|14:54] C:\Program Files\InstallShield Installation Information
[21/09/2005|14:17] C:\Program Files\Intel
[11/02/2009|23:02] C:\Program Files\Internet Explorer
[27/03/2006|12:04] C:\Program Files\iPod
[27/03/2006|12:04] C:\Program Files\iTunes
[21/09/2005|14:27] C:\Program Files\Jasc Software Inc
[27/02/2009|09:39] C:\Program Files\Java
[10/03/2006|12:50] C:\Program Files\Jeriko
[21/09/2005|14:20] C:\Program Files\Learn2.com
[19/03/2006|12:27] C:\Program Files\licenses
[20/04/2006|14:46] C:\Program Files\LilyPond
[18/02/2008|10:33] C:\Program Files\LimeWire
[22/02/2008|23:26] C:\Program Files\Livret ‚lŠve
[31/01/2009|12:09] C:\Program Files\Mafia
[08/11/2008|11:50] C:\Program Files\MaJ Je sais lire
[08/03/2009|11:25] C:\Program Files\Malwarebytes' Anti-Malware
[27/01/2008|16:26] C:\Program Files\Maxis
[21/08/2007|22:54] C:\Program Files\Media Box
[29/09/2008|18:33] C:\Program Files\Messenger
[10/09/2007|23:42] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[20/08/2004|10:37] C:\Program Files\microsoft frontpage
[09/01/2007|19:26] C:\Program Files\Microsoft LifeCam
[16/02/2008|19:24] C:\Program Files\Microsoft Office
[21/09/2005|14:18] C:\Program Files\Microsoft Works
[01/11/2005|16:09] C:\Program Files\Microsoft.NET
[13/03/2006|19:31] C:\Program Files\Montparnasse Multimedia - Flammarion
[29/09/2008|18:26] C:\Program Files\Movie Maker
[08/03/2009|17:48] C:\Program Files\Mozilla Firefox
[16/10/2008|21:08] C:\Program Files\MSBuild
[16/02/2008|19:24] C:\Program Files\MSECache
[01/01/2006|20:42] C:\Program Files\MSN
[21/01/2006|19:22] C:\Program Files\MSN Apps
[20/08/2004|10:34] C:\Program Files\MSN Gaming Zone
[18/11/2006|00:15] C:\Program Files\MSXML 4.0
[11/02/2006|13:42] C:\Program Files\Musicalis
[21/08/2007|22:29] C:\Program Files\Musicmatch
[24/05/2006|17:57] C:\Program Files\NASA
[08/03/2009|14:26] C:\Program Files\Navilog1
[29/09/2008|18:23] C:\Program Files\NetMeeting
[24/04/2006|21:44] C:\Program Files\Network Monitor
[01/01/2006|20:17] C:\Program Files\NimoCodec Pack
[26/01/2008|13:28] C:\Program Files\NoteWorthy Composer
[12/03/2006|19:37] C:\Program Files\Objective Tarot
[20/08/2004|10:34] C:\Program Files\Online Services
[02/11/2006|13:31] C:\Program Files\OpenOffice.org 2.0
[02/11/2006|13:22] C:\Program Files\OpenOffice.org1.0.1
[29/09/2008|18:23] C:\Program Files\Outlook Express
[03/08/2008|10:52] C:\Program Files\PHOTOCITE Collection
[05/08/2008|23:06] C:\Program Files\Phototool
[15/04/2006|20:15] C:\Program Files\QuickTime
[03/05/2008|12:42] C:\Program Files\RdDrv001
[19/03/2006|12:27] C:\Program Files\readmes
[21/09/2005|14:19] C:\Program Files\Real
[16/10/2008|21:08] C:\Program Files\Reference Assemblies
[24/07/2008|21:54] C:\Program Files\Registry Mechanic
[10/06/2007|20:42] C:\Program Files\River Past
[17/05/2008|14:10] C:\Program Files\SAGEM
[20/04/2007|00:34] C:\Program Files\Samsung
[05/02/2006|11:35] C:\Program Files\ScanSoft
[30/08/2008|13:55] C:\Program Files\Securitoo
[10/10/2007|11:30] C:\Program Files\Services en ligne
[17/02/2007|13:02] C:\Program Files\SmartMusic
[07/03/2006|09:20] C:\Program Files\Sonic
[18/02/2007|11:38] C:\Program Files\Sony
[08/03/2009|17:47] C:\Program Files\SPAMfighter
[03/03/2009|12:58] C:\Program Files\SPYWAREfighter
[13/01/2008|14:39] C:\Program Files\Steinberg
[17/08/2006|14:47] C:\Program Files\Syncrosoft
[06/07/2006|12:58] C:\Program Files\TAROTPRO992
[03/04/2008|00:37] C:\Program Files\test
[10/10/2008|19:52] C:\Program Files\TF1Vision
[29/10/2007|12:14] C:\Program Files\TomTom DesktopSuite
[09/07/2008|20:10] C:\Program Files\TomTom HOME 2
[08/03/2009|08:31] C:\Program Files\Trend Micro
[20/08/2004|10:41] C:\Program Files\Uninstall Information
[08/02/2007|11:13] C:\Program Files\Universalis 5
[01/01/2006|20:14] C:\Program Files\VideoLAN
[21/09/2005|14:20] C:\Program Files\Viewpoint
[23/01/2008|23:33] C:\Program Files\Wanadoo
[26/09/2007|10:36] C:\Program Files\Wanadoo Jeux
[01/03/2006|12:30] C:\Program Files\Wanadoo Messager
[19/01/2008|10:48] C:\Program Files\Windows Live
[21/01/2007|22:48] C:\Program Files\Windows Media Connect 2
[10/10/2008|20:52] C:\Program Files\Windows Media Player
[29/09/2008|18:23] C:\Program Files\Windows NT
[20/08/2004|10:35] C:\Program Files\WindowsUpdate
[22/01/2006|16:57] C:\Program Files\WinRAR
[20/08/2004|10:37] C:\Program Files\xerox
[28/05/2007|19:04] C:\Program Files\Yahoo!
[21/09/2005|14:29] C:\Program Files\Your Company Name
[14/09/2008|09:08] C:\Program Files\Zero G Registry
[26/02/2006|18:02] C:\Program Files\Zoner
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[29/11/2008|11:18] C:\Program Files\Fichiers communs\Adobe
[29/11/2008|11:49] C:\Program Files\Fichiers communs\Adobe AIR
[16/03/2006|19:14] C:\Program Files\Fichiers communs\AOL
[16/06/2008|18:08] C:\Program Files\Fichiers communs\Application
[26/12/2006|13:09] C:\Program Files\Fichiers communs\Canon
[01/11/2005|16:10] C:\Program Files\Fichiers communs\DESIGNER
[16/01/2009|23:23] C:\Program Files\Fichiers communs\Iconix
[21/03/2006|20:17] C:\Program Files\Fichiers communs\InstallShield
[21/09/2005|14:27] C:\Program Files\Fichiers communs\Jasc Software Inc
[21/09/2005|14:16] C:\Program Files\Fichiers communs\Java
[05/03/2009|22:01] C:\Program Files\Fichiers communs\Microsoft Shared
[20/08/2004|10:35] C:\Program Files\Fichiers communs\MSSoap
[21/09/2005|14:20] C:\Program Files\Fichiers communs\Nullsoft
[20/08/2004|10:30] C:\Program Files\Fichiers communs\ODBC
[30/05/2006|22:14] C:\Program Files\Fichiers communs\Real
[18/03/2006|09:59] C:\Program Files\Fichiers communs\ScanSoft Shared
[20/08/2004|10:35] C:\Program Files\Fichiers communs\Services
[21/09/2005|14:28] C:\Program Files\Fichiers communs\Sonic Shared
[20/08/2004|10:30] C:\Program Files\Fichiers communs\SpeechEngines
[29/09/2008|18:23] C:\Program Files\Fichiers communs\System
[21/09/2005|14:21] C:\Program Files\Fichiers communs\TiVo Shared
[24/04/2006|21:42] C:\Program Files\Fichiers communs\umwm
[19/01/2008|10:47] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[27/07/2007|23:16] C:\Program Files\Fichiers communs\Wise Installation Wizard
[17/04/2008|15:10] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 39 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-03-08 17:59:01
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 814
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\Philippe\Mes documents\puppyfat\TheElderScrollsIVOblivionModsNoDVDCrackUpdatewwwslotorrentnet(www.fulldls.com).torrent
[F:1][D:5]-> C:\DOCUME~1\Philippe\LOCALS~1\Temp
[F:1][D:0]-> C:\DOCUME~1\Philippe\Cookies
[F:2][D:0]-> C:\DOCUME~1\Philippe\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 08/03/2009|18:01 - Option : [1]
--------------------\\ Fin du rapport a 18:01:46
Rapport apres deuxième étape
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Celeron(R) CPU 2.66GHz )
BIOS : Phoenix ROM BIOS PLUS Version 1.10 A02
USER : Philippe ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1335 [VPS 090307-0] 4.8.1335 (Not Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:71 Go (Free:12 Go)
D:\ (CD or DVD)
E:\ (USB)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [2] ( 08/03/2009|18:02 )
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
Supprime! - C:\Program Files\Viewpoint
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans APPLIC~1
[20/08/2004|10:41] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[21/09/2005|14:27] C:\DOCUME~1\ADMINI~1\APPLIC~1\Jasc Software Inc
[20/08/2004|10:30] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[21/09/2005|14:16] C:\DOCUME~1\ADMINI~1\APPLIC~1\Sun
[21/09/2005|14:23] C:\DOCUME~1\ADMINI~1\APPLIC~1\Symantec
[21/09/2005|14:20] C:\DOCUME~1\ADMINI~1\APPLIC~1\You've Got Pictures Screensaver
[14/02/2009|10:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{148D8B8A-8F96-4822-81EC-D510B626B7D5}
[20/09/2008|16:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{51019853-129C-4EDE-9030-D5FD7BBD9AD0}
[29/11/2008|11:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[16/03/2006|19:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[27/03/2006|12:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[14/02/2009|10:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DriverScanner
[02/11/2007|10:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\eBay
[21/12/2006|23:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[08/03/2009|08:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[12/11/2008|16:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Iconix
[21/09/2005|14:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[08/03/2009|11:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[09/01/2007|19:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[25/03/2006|10:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MSScanAppDataDir
[31/12/2005|18:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[10/06/2007|21:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\River Past G5
[20/08/2004|10:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[25/02/2006|10:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[18/03/2006|09:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanAppDataDir
[18/03/2006|09:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanWizard
[23/04/2007|11:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[07/03/2009|07:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[06/08/2008|20:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TomTom
[02/06/2008|22:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Trend Micro
[25/10/2008|14:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WholeSecurity
[26/02/2006|18:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[19/01/2008|10:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[07/04/2007|14:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[17/04/2008|19:39] C:\DOCUME~1\Camille\APPLIC~1\eBay
[20/08/2004|10:41] C:\DOCUME~1\Camille\APPLIC~1\Identities
[21/09/2005|14:27] C:\DOCUME~1\Camille\APPLIC~1\Jasc Software Inc
[25/10/2005|16:49] C:\DOCUME~1\Camille\APPLIC~1\Leadertech
[01/01/2006|23:25] C:\DOCUME~1\Camille\APPLIC~1\Macromedia
[31/12/2006|12:30] C:\DOCUME~1\Camille\APPLIC~1\Microsoft
[13/07/2006|12:00] C:\DOCUME~1\Camille\APPLIC~1\Real
[25/10/2005|16:49] C:\DOCUME~1\Camille\APPLIC~1\Sonic
[21/09/2005|14:16] C:\DOCUME~1\Camille\APPLIC~1\Sun
[21/09/2005|14:23] C:\DOCUME~1\Camille\APPLIC~1\Symantec
[06/12/2006|20:24] C:\DOCUME~1\Camille\APPLIC~1\WholeSecurity
[21/09/2005|14:20] C:\DOCUME~1\Camille\APPLIC~1\You've Got Pictures Screensaver
[20/08/2004|10:41] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[21/09/2005|14:27] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Jasc Software Inc
[20/08/2004|10:30] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[21/09/2005|14:16] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Sun
[21/09/2005|14:23] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec
[21/09/2005|14:20] C:\DOCUME~1\DEFAUL~1\APPLIC~1\You've Got Pictures Screensaver
[07/03/2006|08:44] C:\DOCUME~1\LOCALS~1\APPLIC~1\Help
[03/11/2006|23:04] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[20/04/2006|22:14] C:\DOCUME~1\LOCALS~1\APPLIC~1\NetMon
[19/07/2008|23:21] C:\DOCUME~1\Mathieu\APPLIC~1\Adobe
[19/07/2008|19:51] C:\DOCUME~1\Mathieu\APPLIC~1\eBay
[19/07/2008|23:29] C:\DOCUME~1\Mathieu\APPLIC~1\Google
[20/08/2004|10:41] C:\DOCUME~1\Mathieu\APPLIC~1\Identities
[21/09/2005|14:27] C:\DOCUME~1\Mathieu\APPLIC~1\Jasc Software Inc
[19/07/2008|23:21] C:\DOCUME~1\Mathieu\APPLIC~1\Macromedia
[09/02/2007|20:31] C:\DOCUME~1\Mathieu\APPLIC~1\Microsoft
[25/03/2006|09:04] C:\DOCUME~1\Mathieu\APPLIC~1\OpenOffice.org2
[05/07/2006|22:41] C:\DOCUME~1\Mathieu\APPLIC~1\Real
[19/07/2008|19:53] C:\DOCUME~1\Mathieu\APPLIC~1\SPAMfighter
[21/09/2005|14:16] C:\DOCUME~1\Mathieu\APPLIC~1\Sun
[21/09/2005|14:23] C:\DOCUME~1\Mathieu\APPLIC~1\Symantec
[19/07/2008|23:21] C:\DOCUME~1\Mathieu\APPLIC~1\WholeSecurity
[21/09/2005|14:20] C:\DOCUME~1\Mathieu\APPLIC~1\You've Got Pictures Screensaver
[16/04/2008|16:40] C:\DOCUME~1\Myriam\APPLIC~1\Adobe
[13/05/2006|17:47] C:\DOCUME~1\Myriam\APPLIC~1\Apple Computer
[16/04/2008|15:34] C:\DOCUME~1\Myriam\APPLIC~1\eBay
[06/05/2006|16:42] C:\DOCUME~1\Myriam\APPLIC~1\Google
[29/03/2006|15:40] C:\DOCUME~1\Myriam\APPLIC~1\Help
[20/08/2004|10:41] C:\DOCUME~1\Myriam\APPLIC~1\Identities
[21/09/2005|14:27] C:\DOCUME~1\Myriam\APPLIC~1\Jasc Software Inc
[28/03/2006|10:18] C:\DOCUME~1\Myriam\APPLIC~1\Macromedia
[09/10/2006|22:32] C:\DOCUME~1\Myriam\APPLIC~1\Microsoft
[28/03/2006|10:15] C:\DOCUME~1\Myriam\APPLIC~1\OpenOffice.org2
[03/08/2006|12:13] C:\DOCUME~1\Myriam\APPLIC~1\Real
[17/07/2008|20:06] C:\DOCUME~1\Myriam\APPLIC~1\SPAMfighter
[21/09/2005|14:16] C:\DOCUME~1\Myriam\APPLIC~1\Sun
[21/09/2005|14:23] C:\DOCUME~1\Myriam\APPLIC~1\Symantec
[05/11/2005|16:49] C:\DOCUME~1\Myriam\APPLIC~1\Template
[17/04/2008|07:57] C:\DOCUME~1\Myriam\APPLIC~1\WholeSecurity
[21/09/2005|14:20] C:\DOCUME~1\Myriam\APPLIC~1\You've Got Pictures Screensaver
[02/01/2006|19:52] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[03/03/2006|20:19] C:\DOCUME~1\Philippe\APPLIC~1\7Wonders
[15/04/2006|16:49] C:\DOCUME~1\Philippe\APPLIC~1\ACAMPREF
[15/12/2008|23:06] C:\DOCUME~1\Philippe\APPLIC~1\Adobe
[05/03/2006|14:40] C:\DOCUME~1\Philippe\APPLIC~1\Anuman Interactive
[22/05/2006|18:06] C:\DOCUME~1\Philippe\APPLIC~1\Apple Computer
[05/02/2006|15:15] C:\DOCUME~1\Philippe\APPLIC~1\ArcSoft
[09/09/2006|07:38] C:\DOCUME~1\Philippe\APPLIC~1\Azureus
[01/11/2007|16:47] C:\DOCUME~1\Philippe\APPLIC~1\BitTorrent
[25/02/2008|16:42] C:\DOCUME~1\Philippe\APPLIC~1\Cabos
[03/05/2008|14:22] C:\DOCUME~1\Philippe\APPLIC~1\Cakewalk
[17/02/2009|21:37] C:\DOCUME~1\Philippe\APPLIC~1\Canon
[07/12/2005|14:03] C:\DOCUME~1\Philippe\APPLIC~1\CyberLink
[13/01/2008|16:05] C:\DOCUME~1\Philippe\APPLIC~1\DAEMON Tools
[21/08/2007|22:56] C:\DOCUME~1\Philippe\APPLIC~1\dBpoweramp
[05/01/2007|17:37] C:\DOCUME~1\Philippe\APPLIC~1\dvdcss
[13/04/2008|15:24] C:\DOCUME~1\Philippe\APPLIC~1\eBay
[18/02/2006|01:27] C:\DOCUME~1\Philippe\APPLIC~1\eConf
[24/12/2006|09:35] C:\DOCUME~1\Philippe\APPLIC~1\Google
[05/02/2006|15:31] C:\DOCUME~1\Philippe\APPLIC~1\Help
[23/10/2008|22:25] C:\DOCUME~1\Philippe\APPLIC~1\Icone
[12/11/2008|16:05] C:\DOCUME~1\Philippe\APPLIC~1\Iconix
[07/06/2006|15:09] C:\DOCUME~1\Philippe\APPLIC~1\Identities
[11/03/2006|19:52] C:\DOCUME~1\Philippe\APPLIC~1\Jasc Software Inc
[18/04/2008|17:46] C:\DOCUME~1\Philippe\APPLIC~1\La Bataille pour la Terre du Milieu T II
[06/10/2005|18:28] C:\DOCUME~1\Philippe\APPLIC~1\Leadertech
[24/05/2006|17:44] C:\DOCUME~1\Philippe\APPLIC~1\Macromedia
[08/03/2009|11:25] C:\DOCUME~1\Philippe\APPLIC~1\Malwarebytes
[18/08/2008|08:45] C:\DOCUME~1\Philippe\APPLIC~1\Microsoft
[09/07/2008|20:11] C:\DOCUME~1\Philippe\APPLIC~1\Mozilla
[21/08/2007|22:29] C:\DOCUME~1\Philippe\APPLIC~1\Musicmatch
[06/03/2009|18:45] C:\DOCUME~1\Philippe\APPLIC~1\OpenOffice.org2
[30/05/2006|22:18] C:\DOCUME~1\Philippe\APPLIC~1\Real
[10/06/2007|20:42] C:\DOCUME~1\Philippe\APPLIC~1\River Past G5
[05/02/2006|11:35] C:\DOCUME~1\Philippe\APPLIC~1\ScanSoft
[06/10/2005|18:29] C:\DOCUME~1\Philippe\APPLIC~1\Sonic
[18/02/2007|19:38] C:\DOCUME~1\Philippe\APPLIC~1\Sony Corporation
[16/06/2008|18:09] C:\DOCUME~1\Philippe\APPLIC~1\SPAMfighter
[27/08/2006|08:33] C:\DOCUME~1\Philippe\APPLIC~1\Steinberg
[21/09/2005|14:16] C:\DOCUME~1\Philippe\APPLIC~1\Sun
[30/09/2005|22:50] C:\DOCUME~1\Philippe\APPLIC~1\Symantec
[25/04/2006|17:32] C:\DOCUME~1\Philippe\APPLIC~1\Syntrillium
[01/10/2005|13:56] C:\DOCUME~1\Philippe\APPLIC~1\Template
[29/10/2007|12:17] C:\DOCUME~1\Philippe\APPLIC~1\TomTom
[25/10/2008|21:17] C:\DOCUME~1\Philippe\APPLIC~1\U3
[14/02/2009|09:24] C:\DOCUME~1\Philippe\APPLIC~1\Uniblue
[10/10/2007|17:56] C:\DOCUME~1\Philippe\APPLIC~1\vlc
[21/08/2007|22:10] C:\DOCUME~1\Philippe\APPLIC~1\WholeSecurity
[21/09/2005|14:20] C:\DOCUME~1\Philippe\APPLIC~1\You've Got Pictures Screensaver
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[01/10/2005 21:15][--a------] C:\WINDOWS\tasks\Rappel d'abonnement 1 auprŠs de l'ISP.job
[08/03/2009 17:45][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 12:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[29/11/2008|11:50] C:\Program Files\Adobe
[26/09/2007|10:46] C:\Program Files\ahead
[27/05/2006|13:48] C:\Program Files\Alcohol Soft
[25/04/2007|15:55] C:\Program Files\Alwil Software
[21/09/2005|14:05] C:\Program Files\Analog Devices
[05/03/2006|14:36] C:\Program Files\Anuman Interactive
[05/02/2006|11:33] C:\Program Files\ArcSoft
[31/01/2008|07:10] C:\Program Files\AusLogics Disk Defrag
[26/09/2007|10:37] C:\Program Files\Azureus
[18/02/2008|10:33] C:\Program Files\BitTorrent
[11/10/2008|14:54] C:\Program Files\Black Isle
[18/02/2008|10:36] C:\Program Files\Cabos
[03/05/2008|14:07] C:\Program Files\Cakewalk
[12/05/2007|15:36] C:\Program Files\Canon
[07/04/2007|13:54] C:\Program Files\CCleaner
[23/04/2007|11:41] C:\Program Files\CDBurnerXP Pro 3
[28/05/2007|19:08] C:\Program Files\Common Files
[11/10/2008|14:52] C:\Program Files\compil
[20/08/2004|10:35] C:\Program Files\ComPlus Applications
[21/09/2005|14:17] C:\Program Files\CyberLink
[21/09/2005|14:27] C:\Program Files\Dell
[21/09/2005|14:27] C:\Program Files\Dell Inc
[01/01/2006|20:17] C:\Program Files\DivX
[08/10/2006|09:33] C:\Program Files\eBay
[27/12/2005|19:18] C:\Program Files\Eidos Interactive
[18/04/2008|17:02] C:\Program Files\Electronic Arts
[04/07/2008|07:55] C:\Program Files\eMule
[27/01/2009|19:22] C:\Program Files\Fichiers communs
[07/03/2009|17:50] C:\Program Files\Finale 2002
[05/08/2007|09:35] C:\Program Files\Finale 2006
[07/03/2009|17:21] C:\Program Files\Finale 2007
[16/07/2007|16:26] C:\Program Files\Finale NotePad 2005a
[27/07/2007|23:22] C:\Program Files\Finale NotePad 2007
[22/03/2008|13:48] C:\Program Files\Free Audio Pack
[22/03/2008|13:56] C:\Program Files\freebird
[21/08/2007|21:49] C:\Program Files\Fx Audio Conveter
[28/11/2007|22:18] C:\Program Files\Gallimard
[04/02/2009|18:07] C:\Program Files\Google
[30/03/2006|12:35] C:\Program Files\Guitar Pro 5
[15/04/2006|16:48] C:\Program Files\Harmony Assistant
[12/11/2008|16:02] C:\Program Files\Iconix
[05/08/2007|19:37] C:\Program Files\Illustrate
[11/10/2008|14:54] C:\Program Files\InstallShield Installation Information
[21/09/2005|14:17] C:\Program Files\Intel
[11/02/2009|23:02] C:\Program Files\Internet Explorer
[27/03/2006|12:04] C:\Program Files\iPod
[27/03/2006|12:04] C:\Program Files\iTunes
[21/09/2005|14:27] C:\Program Files\Jasc Software Inc
[27/02/2009|09:39] C:\Program Files\Java
[10/03/2006|12:50] C:\Program Files\Jeriko
[21/09/2005|14:20] C:\Program Files\Learn2.com
[19/03/2006|12:27] C:\Program Files\licenses
[20/04/2006|14:46] C:\Program Files\LilyPond
[18/02/2008|10:33] C:\Program Files\LimeWire
[22/02/2008|23:26] C:\Program Files\Livret ‚lŠve
[31/01/2009|12:09] C:\Program Files\Mafia
[08/11/2008|11:50] C:\Program Files\MaJ Je sais lire
[08/03/2009|11:25] C:\Program Files\Malwarebytes' Anti-Malware
[27/01/2008|16:26] C:\Program Files\Maxis
[21/08/2007|22:54] C:\Program Files\Media Box
[29/09/2008|18:33] C:\Program Files\Messenger
[10/09/2007|23:42] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[20/08/2004|10:37] C:\Program Files\microsoft frontpage
[09/01/2007|19:26] C:\Program Files\Microsoft LifeCam
[16/02/2008|19:24] C:\Program Files\Microsoft Office
[21/09/2005|14:18] C:\Program Files\Microsoft Works
[01/11/2005|16:09] C:\Program Files\Microsoft.NET
[13/03/2006|19:31] C:\Program Files\Montparnasse Multimedia - Flammarion
[29/09/2008|18:26] C:\Program Files\Movie Maker
[08/03/2009|17:48] C:\Program Files\Mozilla Firefox
[16/10/2008|21:08] C:\Program Files\MSBuild
[16/02/2008|19:24] C:\Program Files\MSECache
[01/01/2006|20:42] C:\Program Files\MSN
[21/01/2006|19:22] C:\Program Files\MSN Apps
[20/08/2004|10:34] C:\Program Files\MSN Gaming Zone
[18/11/2006|00:15] C:\Program Files\MSXML 4.0
[11/02/2006|13:42] C:\Program Files\Musicalis
[21/08/2007|22:29] C:\Program Files\Musicmatch
[24/05/2006|17:57] C:\Program Files\NASA
[08/03/2009|14:26] C:\Program Files\Navilog1
[29/09/2008|18:23] C:\Program Files\NetMeeting
[24/04/2006|21:44] C:\Program Files\Network Monitor
[01/01/2006|20:17] C:\Program Files\NimoCodec Pack
[26/01/2008|13:28] C:\Program Files\NoteWorthy Composer
[12/03/2006|19:37] C:\Program Files\Objective Tarot
[20/08/2004|10:34] C:\Program Files\Online Services
[02/11/2006|13:31] C:\Program Files\OpenOffice.org 2.0
[02/11/2006|13:22] C:\Program Files\OpenOffice.org1.0.1
[29/09/2008|18:23] C:\Program Files\Outlook Express
[03/08/2008|10:52] C:\Program Files\PHOTOCITE Collection
[05/08/2008|23:06] C:\Program Files\Phototool
[15/04/2006|20:15] C:\Program Files\QuickTime
[03/05/2008|12:42] C:\Program Files\RdDrv001
[19/03/2006|12:27] C:\Program Files\readmes
[21/09/2005|14:19] C:\Program Files\Real
[16/10/2008|21:08] C:\Program Files\Reference Assemblies
[24/07/2008|21:54] C:\Program Files\Registry Mechanic
[10/06/2007|20:42] C:\Program Files\River Past
[17/05/2008|14:10] C:\Program Files\SAGEM
[20/04/2007|00:34] C:\Program Files\Samsung
[05/02/2006|11:35] C:\Program Files\ScanSoft
[30/08/2008|13:55] C:\Program Files\Securitoo
[10/10/2007|11:30] C:\Program Files\Services en ligne
[17/02/2007|13:02] C:\Program Files\SmartMusic
[07/03/2006|09:20] C:\Program Files\Sonic
[18/02/2007|11:38] C:\Program Files\Sony
[08/03/2009|17:47] C:\Program Files\SPAMfighter
[03/03/2009|12:58] C:\Program Files\SPYWAREfighter
[13/01/2008|14:39] C:\Program Files\Steinberg
[17/08/2006|14:47] C:\Program Files\Syncrosoft
[06/07/2006|12:58] C:\Program Files\TAROTPRO992
[03/04/2008|00:37] C:\Program Files\test
[10/10/2008|19:52] C:\Program Files\TF1Vision
[29/10/2007|12:14] C:\Program Files\TomTom DesktopSuite
[09/07/2008|20:10] C:\Program Files\TomTom HOME 2
[08/03/2009|08:31] C:\Program Files\Trend Micro
[20/08/2004|10:41] C:\Program Files\Uninstall Information
[08/02/2007|11:13] C:\Program Files\Universalis 5
[01/01/2006|20:14] C:\Program Files\VideoLAN
[23/01/2008|23:33] C:\Program Files\Wanadoo
[26/09/2007|10:36] C:\Program Files\Wanadoo Jeux
[01/03/2006|12:30] C:\Program Files\Wanadoo Messager
[19/01/2008|10:48] C:\Program Files\Windows Live
[21/01/2007|22:48] C:\Program Files\Windows Media Connect 2
[10/10/2008|20:52] C:\Program Files\Windows Media Player
[29/09/2008|18:23] C:\Program Files\Windows NT
[20/08/2004|10:35] C:\Program Files\WindowsUpdate
[22/01/2006|16:57] C:\Program Files\WinRAR
[20/08/2004|10:37] C:\Program Files\xerox
[28/05/2007|19:04] C:\Program Files\Yahoo!
[21/09/2005|14:29] C:\Program Files\Your Company Name
[14/09/2008|09:08] C:\Program Files\Zero G Registry
[26/02/2006|18:02] C:\Program Files\Zoner
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[29/11/2008|11:18] C:\Program Files\Fichiers communs\Adobe
[29/11/2008|11:49] C:\Program Files\Fichiers communs\Adobe AIR
[16/03/2006|19:14] C:\Program Files\Fichiers communs\AOL
[16/06/2008|18:08] C:\Program Files\Fichiers communs\Application
[26/12/2006|13:09] C:\Program Files\Fichiers communs\Canon
[01/11/2005|16:10] C:\Program Files\Fichiers communs\DESIGNER
[16/01/2009|23:23] C:\Program Files\Fichiers communs\Iconix
[21/03/2006|20:17] C:\Program Files\Fichiers communs\InstallShield
[21/09/2005|14:27] C:\Program Files\Fichiers communs\Jasc Software Inc
[21/09/2005|14:16] C:\Program Files\Fichiers communs\Java
[05/03/2009|22:01] C:\Program Files\Fichiers communs\Microsoft Shared
[20/08/2004|10:35] C:\Program Files\Fichiers communs\MSSoap
[21/09/2005|14:20] C:\Program Files\Fichiers communs\Nullsoft
[20/08/2004|10:30] C:\Program Files\Fichiers communs\ODBC
[30/05/2006|22:14] C:\Program Files\Fichiers communs\Real
[18/03/2006|09:59] C:\Program Files\Fichiers communs\ScanSoft Shared
[20/08/2004|10:35] C:\Program Files\Fichiers communs\Services
[21/09/2005|14:28] C:\Program Files\Fichiers communs\Sonic Shared
[20/08/2004|10:30] C:\Program Files\Fichiers communs\SpeechEngines
[29/09/2008|18:23] C:\Program Files\Fichiers communs\System
[21/09/2005|14:21] C:\Program Files\Fichiers communs\TiVo Shared
[24/04/2006|21:42] C:\Program Files\Fichiers communs\umwm
[19/01/2008|10:47] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[27/07/2007|23:16] C:\Program Files\Fichiers communs\Wise Installation Wizard
[17/04/2008|15:10] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 37 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-03-08 18:06:45
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 814
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\Philippe\Mes documents\puppyfat\TheElderScrollsIVOblivionModsNoDVDCrackUpdatewwwslotorrentnet(www.fulldls.com).torrent
[F:2][D:5]-> C:\DOCUME~1\Philippe\LOCALS~1\Temp
[F:1][D:0]-> C:\DOCUME~1\Philippe\Cookies
[F:2][D:0]-> C:\DOCUME~1\Philippe\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 08/03/2009|18:01 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 08/03/2009|18:09 - Option : [2]
--------------------\\ Fin du rapport a 18:09:21
rapport hijack:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:09:58, on 08/03/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\WINDOWS\system32\cisvc.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Iconix\IconixService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft LifeCam\MSCamSvc.exe
C:\Program Files\SPAMfighter\sfus.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\vVX3000.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.dell.com/fr-fr
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: eBay Toolbar Helper - {22D8E815-4A5E-4DFB-845E-AAB64207F5BD} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: IconixBHOClass Class - {761233B6-F228-49E4-8F6B-668499D4E55A} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.4472\swg.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Recherche sur eBay - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O9 - Extra button: (no name) - {400A6CFA-E326-4d61-A90C-9AD75358DC5F} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra 'Tools' menuitem: Email ID Préférences - {400A6CFA-E326-4d61-A90C-9AD75358DC5F} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {BC3F6B6D-2E49-4603-B028-7411655713F3} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra 'Tools' menuitem: À propos de Email ID - {BC3F6B6D-2E49-4603-B028-7411655713F3} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://chouchouyoupya.spaces.live.com/PhotoUpload/MsnPUpld.cab
O18 - Filter hijack: text/html - {2AB289AE-4B90-4281-B2AE-1F4BB034B647} - (no file)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Iconix Update Service (IconixService) - Unknown owner - C:\Program Files\Fichiers communs\Iconix\IconixService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: SPAMfighter Update Service - SPAMfighter ApS - C:\Program Files\SPAMfighter\sfus.exe
O24 - Desktop Component 0: (no name) - http://www.lesavourclub.fr/images/autour_du_vin/millesimes.gif
O24 - Desktop Component 1: (no name) - https://www.mediavacances.com/Images/fondpixel.gif
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Celeron(R) CPU 2.66GHz )
BIOS : Phoenix ROM BIOS PLUS Version 1.10 A02
USER : Philippe ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1335 [VPS 090307-0] 4.8.1335 (Not Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:71 Go (Free:12 Go)
D:\ (CD or DVD)
E:\ (USB)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 08/03/2009|17:56 )
--------------------\\ Listing des dossiers dans APPLIC~1
[20/08/2004|10:41] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[21/09/2005|14:27] C:\DOCUME~1\ADMINI~1\APPLIC~1\Jasc Software Inc
[20/08/2004|10:30] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[21/09/2005|14:16] C:\DOCUME~1\ADMINI~1\APPLIC~1\Sun
[21/09/2005|14:23] C:\DOCUME~1\ADMINI~1\APPLIC~1\Symantec
[21/09/2005|14:20] C:\DOCUME~1\ADMINI~1\APPLIC~1\You've Got Pictures Screensaver
[14/02/2009|10:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{148D8B8A-8F96-4822-81EC-D510B626B7D5}
[20/09/2008|16:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{51019853-129C-4EDE-9030-D5FD7BBD9AD0}
[29/11/2008|11:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[16/03/2006|19:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[27/03/2006|12:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[14/02/2009|10:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DriverScanner
[02/11/2007|10:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\eBay
[21/12/2006|23:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[08/03/2009|08:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[12/11/2008|16:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Iconix
[21/09/2005|14:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[08/03/2009|11:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[09/01/2007|19:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[25/03/2006|10:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MSScanAppDataDir
[31/12/2005|18:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[10/06/2007|21:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\River Past G5
[20/08/2004|10:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[25/02/2006|10:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[18/03/2006|09:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanAppDataDir
[18/03/2006|09:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanWizard
[23/04/2007|11:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[07/03/2009|07:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[06/08/2008|20:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TomTom
[02/06/2008|22:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Trend Micro
[21/09/2005|14:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint
[25/10/2008|14:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WholeSecurity
[26/02/2006|18:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[19/01/2008|10:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[07/04/2007|14:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[17/04/2008|19:39] C:\DOCUME~1\Camille\APPLIC~1\eBay
[20/08/2004|10:41] C:\DOCUME~1\Camille\APPLIC~1\Identities
[21/09/2005|14:27] C:\DOCUME~1\Camille\APPLIC~1\Jasc Software Inc
[25/10/2005|16:49] C:\DOCUME~1\Camille\APPLIC~1\Leadertech
[01/01/2006|23:25] C:\DOCUME~1\Camille\APPLIC~1\Macromedia
[31/12/2006|12:30] C:\DOCUME~1\Camille\APPLIC~1\Microsoft
[13/07/2006|12:00] C:\DOCUME~1\Camille\APPLIC~1\Real
[25/10/2005|16:49] C:\DOCUME~1\Camille\APPLIC~1\Sonic
[21/09/2005|14:16] C:\DOCUME~1\Camille\APPLIC~1\Sun
[21/09/2005|14:23] C:\DOCUME~1\Camille\APPLIC~1\Symantec
[06/12/2006|20:24] C:\DOCUME~1\Camille\APPLIC~1\WholeSecurity
[21/09/2005|14:20] C:\DOCUME~1\Camille\APPLIC~1\You've Got Pictures Screensaver
[20/08/2004|10:41] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[21/09/2005|14:27] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Jasc Software Inc
[20/08/2004|10:30] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[21/09/2005|14:16] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Sun
[21/09/2005|14:23] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec
[21/09/2005|14:20] C:\DOCUME~1\DEFAUL~1\APPLIC~1\You've Got Pictures Screensaver
[07/03/2006|08:44] C:\DOCUME~1\LOCALS~1\APPLIC~1\Help
[03/11/2006|23:04] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[20/04/2006|22:14] C:\DOCUME~1\LOCALS~1\APPLIC~1\NetMon
[19/07/2008|23:21] C:\DOCUME~1\Mathieu\APPLIC~1\Adobe
[19/07/2008|19:51] C:\DOCUME~1\Mathieu\APPLIC~1\eBay
[19/07/2008|23:29] C:\DOCUME~1\Mathieu\APPLIC~1\Google
[20/08/2004|10:41] C:\DOCUME~1\Mathieu\APPLIC~1\Identities
[21/09/2005|14:27] C:\DOCUME~1\Mathieu\APPLIC~1\Jasc Software Inc
[19/07/2008|23:21] C:\DOCUME~1\Mathieu\APPLIC~1\Macromedia
[09/02/2007|20:31] C:\DOCUME~1\Mathieu\APPLIC~1\Microsoft
[25/03/2006|09:04] C:\DOCUME~1\Mathieu\APPLIC~1\OpenOffice.org2
[05/07/2006|22:41] C:\DOCUME~1\Mathieu\APPLIC~1\Real
[19/07/2008|19:53] C:\DOCUME~1\Mathieu\APPLIC~1\SPAMfighter
[21/09/2005|14:16] C:\DOCUME~1\Mathieu\APPLIC~1\Sun
[21/09/2005|14:23] C:\DOCUME~1\Mathieu\APPLIC~1\Symantec
[19/07/2008|23:21] C:\DOCUME~1\Mathieu\APPLIC~1\WholeSecurity
[21/09/2005|14:20] C:\DOCUME~1\Mathieu\APPLIC~1\You've Got Pictures Screensaver
[16/04/2008|16:40] C:\DOCUME~1\Myriam\APPLIC~1\Adobe
[13/05/2006|17:47] C:\DOCUME~1\Myriam\APPLIC~1\Apple Computer
[16/04/2008|15:34] C:\DOCUME~1\Myriam\APPLIC~1\eBay
[06/05/2006|16:42] C:\DOCUME~1\Myriam\APPLIC~1\Google
[29/03/2006|15:40] C:\DOCUME~1\Myriam\APPLIC~1\Help
[20/08/2004|10:41] C:\DOCUME~1\Myriam\APPLIC~1\Identities
[21/09/2005|14:27] C:\DOCUME~1\Myriam\APPLIC~1\Jasc Software Inc
[28/03/2006|10:18] C:\DOCUME~1\Myriam\APPLIC~1\Macromedia
[09/10/2006|22:32] C:\DOCUME~1\Myriam\APPLIC~1\Microsoft
[28/03/2006|10:15] C:\DOCUME~1\Myriam\APPLIC~1\OpenOffice.org2
[03/08/2006|12:13] C:\DOCUME~1\Myriam\APPLIC~1\Real
[17/07/2008|20:06] C:\DOCUME~1\Myriam\APPLIC~1\SPAMfighter
[21/09/2005|14:16] C:\DOCUME~1\Myriam\APPLIC~1\Sun
[21/09/2005|14:23] C:\DOCUME~1\Myriam\APPLIC~1\Symantec
[05/11/2005|16:49] C:\DOCUME~1\Myriam\APPLIC~1\Template
[17/04/2008|07:57] C:\DOCUME~1\Myriam\APPLIC~1\WholeSecurity
[21/09/2005|14:20] C:\DOCUME~1\Myriam\APPLIC~1\You've Got Pictures Screensaver
[02/01/2006|19:52] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[03/03/2006|20:19] C:\DOCUME~1\Philippe\APPLIC~1\7Wonders
[15/04/2006|16:49] C:\DOCUME~1\Philippe\APPLIC~1\ACAMPREF
[15/12/2008|23:06] C:\DOCUME~1\Philippe\APPLIC~1\Adobe
[05/03/2006|14:40] C:\DOCUME~1\Philippe\APPLIC~1\Anuman Interactive
[22/05/2006|18:06] C:\DOCUME~1\Philippe\APPLIC~1\Apple Computer
[05/02/2006|15:15] C:\DOCUME~1\Philippe\APPLIC~1\ArcSoft
[09/09/2006|07:38] C:\DOCUME~1\Philippe\APPLIC~1\Azureus
[01/11/2007|16:47] C:\DOCUME~1\Philippe\APPLIC~1\BitTorrent
[25/02/2008|16:42] C:\DOCUME~1\Philippe\APPLIC~1\Cabos
[03/05/2008|14:22] C:\DOCUME~1\Philippe\APPLIC~1\Cakewalk
[17/02/2009|21:37] C:\DOCUME~1\Philippe\APPLIC~1\Canon
[07/12/2005|14:03] C:\DOCUME~1\Philippe\APPLIC~1\CyberLink
[13/01/2008|16:05] C:\DOCUME~1\Philippe\APPLIC~1\DAEMON Tools
[21/08/2007|22:56] C:\DOCUME~1\Philippe\APPLIC~1\dBpoweramp
[05/01/2007|17:37] C:\DOCUME~1\Philippe\APPLIC~1\dvdcss
[13/04/2008|15:24] C:\DOCUME~1\Philippe\APPLIC~1\eBay
[18/02/2006|01:27] C:\DOCUME~1\Philippe\APPLIC~1\eConf
[24/12/2006|09:35] C:\DOCUME~1\Philippe\APPLIC~1\Google
[05/02/2006|15:31] C:\DOCUME~1\Philippe\APPLIC~1\Help
[23/10/2008|22:25] C:\DOCUME~1\Philippe\APPLIC~1\Icone
[12/11/2008|16:05] C:\DOCUME~1\Philippe\APPLIC~1\Iconix
[07/06/2006|15:09] C:\DOCUME~1\Philippe\APPLIC~1\Identities
[11/03/2006|19:52] C:\DOCUME~1\Philippe\APPLIC~1\Jasc Software Inc
[18/04/2008|17:46] C:\DOCUME~1\Philippe\APPLIC~1\La Bataille pour la Terre du Milieu T II
[06/10/2005|18:28] C:\DOCUME~1\Philippe\APPLIC~1\Leadertech
[24/05/2006|17:44] C:\DOCUME~1\Philippe\APPLIC~1\Macromedia
[08/03/2009|11:25] C:\DOCUME~1\Philippe\APPLIC~1\Malwarebytes
[18/08/2008|08:45] C:\DOCUME~1\Philippe\APPLIC~1\Microsoft
[09/07/2008|20:11] C:\DOCUME~1\Philippe\APPLIC~1\Mozilla
[21/08/2007|22:29] C:\DOCUME~1\Philippe\APPLIC~1\Musicmatch
[06/03/2009|18:45] C:\DOCUME~1\Philippe\APPLIC~1\OpenOffice.org2
[30/05/2006|22:18] C:\DOCUME~1\Philippe\APPLIC~1\Real
[10/06/2007|20:42] C:\DOCUME~1\Philippe\APPLIC~1\River Past G5
[05/02/2006|11:35] C:\DOCUME~1\Philippe\APPLIC~1\ScanSoft
[06/10/2005|18:29] C:\DOCUME~1\Philippe\APPLIC~1\Sonic
[18/02/2007|19:38] C:\DOCUME~1\Philippe\APPLIC~1\Sony Corporation
[16/06/2008|18:09] C:\DOCUME~1\Philippe\APPLIC~1\SPAMfighter
[27/08/2006|08:33] C:\DOCUME~1\Philippe\APPLIC~1\Steinberg
[21/09/2005|14:16] C:\DOCUME~1\Philippe\APPLIC~1\Sun
[30/09/2005|22:50] C:\DOCUME~1\Philippe\APPLIC~1\Symantec
[25/04/2006|17:32] C:\DOCUME~1\Philippe\APPLIC~1\Syntrillium
[01/10/2005|13:56] C:\DOCUME~1\Philippe\APPLIC~1\Template
[29/10/2007|12:17] C:\DOCUME~1\Philippe\APPLIC~1\TomTom
[25/10/2008|21:17] C:\DOCUME~1\Philippe\APPLIC~1\U3
[14/02/2009|09:24] C:\DOCUME~1\Philippe\APPLIC~1\Uniblue
[10/10/2007|17:56] C:\DOCUME~1\Philippe\APPLIC~1\vlc
[21/08/2007|22:10] C:\DOCUME~1\Philippe\APPLIC~1\WholeSecurity
[21/09/2005|14:20] C:\DOCUME~1\Philippe\APPLIC~1\You've Got Pictures Screensaver
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[01/10/2005 21:15][--a------] C:\WINDOWS\tasks\Rappel d'abonnement 1 auprŠs de l'ISP.job
[08/03/2009 17:45][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 12:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[29/11/2008|11:50] C:\Program Files\Adobe
[26/09/2007|10:46] C:\Program Files\ahead
[27/05/2006|13:48] C:\Program Files\Alcohol Soft
[25/04/2007|15:55] C:\Program Files\Alwil Software
[21/09/2005|14:05] C:\Program Files\Analog Devices
[05/03/2006|14:36] C:\Program Files\Anuman Interactive
[05/02/2006|11:33] C:\Program Files\ArcSoft
[31/01/2008|07:10] C:\Program Files\AusLogics Disk Defrag
[26/09/2007|10:37] C:\Program Files\Azureus
[18/02/2008|10:33] C:\Program Files\BitTorrent
[11/10/2008|14:54] C:\Program Files\Black Isle
[18/02/2008|10:36] C:\Program Files\Cabos
[03/05/2008|14:07] C:\Program Files\Cakewalk
[12/05/2007|15:36] C:\Program Files\Canon
[07/04/2007|13:54] C:\Program Files\CCleaner
[23/04/2007|11:41] C:\Program Files\CDBurnerXP Pro 3
[28/05/2007|19:08] C:\Program Files\Common Files
[11/10/2008|14:52] C:\Program Files\compil
[20/08/2004|10:35] C:\Program Files\ComPlus Applications
[21/09/2005|14:17] C:\Program Files\CyberLink
[21/09/2005|14:27] C:\Program Files\Dell
[21/09/2005|14:27] C:\Program Files\Dell Inc
[01/01/2006|20:17] C:\Program Files\DivX
[08/10/2006|09:33] C:\Program Files\eBay
[27/12/2005|19:18] C:\Program Files\Eidos Interactive
[18/04/2008|17:02] C:\Program Files\Electronic Arts
[04/07/2008|07:55] C:\Program Files\eMule
[27/01/2009|19:22] C:\Program Files\Fichiers communs
[07/03/2009|17:50] C:\Program Files\Finale 2002
[05/08/2007|09:35] C:\Program Files\Finale 2006
[07/03/2009|17:21] C:\Program Files\Finale 2007
[16/07/2007|16:26] C:\Program Files\Finale NotePad 2005a
[27/07/2007|23:22] C:\Program Files\Finale NotePad 2007
[22/03/2008|13:48] C:\Program Files\Free Audio Pack
[22/03/2008|13:56] C:\Program Files\freebird
[21/08/2007|21:49] C:\Program Files\Fx Audio Conveter
[28/11/2007|22:18] C:\Program Files\Gallimard
[04/02/2009|18:07] C:\Program Files\Google
[30/03/2006|12:35] C:\Program Files\Guitar Pro 5
[15/04/2006|16:48] C:\Program Files\Harmony Assistant
[12/11/2008|16:02] C:\Program Files\Iconix
[05/08/2007|19:37] C:\Program Files\Illustrate
[11/10/2008|14:54] C:\Program Files\InstallShield Installation Information
[21/09/2005|14:17] C:\Program Files\Intel
[11/02/2009|23:02] C:\Program Files\Internet Explorer
[27/03/2006|12:04] C:\Program Files\iPod
[27/03/2006|12:04] C:\Program Files\iTunes
[21/09/2005|14:27] C:\Program Files\Jasc Software Inc
[27/02/2009|09:39] C:\Program Files\Java
[10/03/2006|12:50] C:\Program Files\Jeriko
[21/09/2005|14:20] C:\Program Files\Learn2.com
[19/03/2006|12:27] C:\Program Files\licenses
[20/04/2006|14:46] C:\Program Files\LilyPond
[18/02/2008|10:33] C:\Program Files\LimeWire
[22/02/2008|23:26] C:\Program Files\Livret ‚lŠve
[31/01/2009|12:09] C:\Program Files\Mafia
[08/11/2008|11:50] C:\Program Files\MaJ Je sais lire
[08/03/2009|11:25] C:\Program Files\Malwarebytes' Anti-Malware
[27/01/2008|16:26] C:\Program Files\Maxis
[21/08/2007|22:54] C:\Program Files\Media Box
[29/09/2008|18:33] C:\Program Files\Messenger
[10/09/2007|23:42] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[20/08/2004|10:37] C:\Program Files\microsoft frontpage
[09/01/2007|19:26] C:\Program Files\Microsoft LifeCam
[16/02/2008|19:24] C:\Program Files\Microsoft Office
[21/09/2005|14:18] C:\Program Files\Microsoft Works
[01/11/2005|16:09] C:\Program Files\Microsoft.NET
[13/03/2006|19:31] C:\Program Files\Montparnasse Multimedia - Flammarion
[29/09/2008|18:26] C:\Program Files\Movie Maker
[08/03/2009|17:48] C:\Program Files\Mozilla Firefox
[16/10/2008|21:08] C:\Program Files\MSBuild
[16/02/2008|19:24] C:\Program Files\MSECache
[01/01/2006|20:42] C:\Program Files\MSN
[21/01/2006|19:22] C:\Program Files\MSN Apps
[20/08/2004|10:34] C:\Program Files\MSN Gaming Zone
[18/11/2006|00:15] C:\Program Files\MSXML 4.0
[11/02/2006|13:42] C:\Program Files\Musicalis
[21/08/2007|22:29] C:\Program Files\Musicmatch
[24/05/2006|17:57] C:\Program Files\NASA
[08/03/2009|14:26] C:\Program Files\Navilog1
[29/09/2008|18:23] C:\Program Files\NetMeeting
[24/04/2006|21:44] C:\Program Files\Network Monitor
[01/01/2006|20:17] C:\Program Files\NimoCodec Pack
[26/01/2008|13:28] C:\Program Files\NoteWorthy Composer
[12/03/2006|19:37] C:\Program Files\Objective Tarot
[20/08/2004|10:34] C:\Program Files\Online Services
[02/11/2006|13:31] C:\Program Files\OpenOffice.org 2.0
[02/11/2006|13:22] C:\Program Files\OpenOffice.org1.0.1
[29/09/2008|18:23] C:\Program Files\Outlook Express
[03/08/2008|10:52] C:\Program Files\PHOTOCITE Collection
[05/08/2008|23:06] C:\Program Files\Phototool
[15/04/2006|20:15] C:\Program Files\QuickTime
[03/05/2008|12:42] C:\Program Files\RdDrv001
[19/03/2006|12:27] C:\Program Files\readmes
[21/09/2005|14:19] C:\Program Files\Real
[16/10/2008|21:08] C:\Program Files\Reference Assemblies
[24/07/2008|21:54] C:\Program Files\Registry Mechanic
[10/06/2007|20:42] C:\Program Files\River Past
[17/05/2008|14:10] C:\Program Files\SAGEM
[20/04/2007|00:34] C:\Program Files\Samsung
[05/02/2006|11:35] C:\Program Files\ScanSoft
[30/08/2008|13:55] C:\Program Files\Securitoo
[10/10/2007|11:30] C:\Program Files\Services en ligne
[17/02/2007|13:02] C:\Program Files\SmartMusic
[07/03/2006|09:20] C:\Program Files\Sonic
[18/02/2007|11:38] C:\Program Files\Sony
[08/03/2009|17:47] C:\Program Files\SPAMfighter
[03/03/2009|12:58] C:\Program Files\SPYWAREfighter
[13/01/2008|14:39] C:\Program Files\Steinberg
[17/08/2006|14:47] C:\Program Files\Syncrosoft
[06/07/2006|12:58] C:\Program Files\TAROTPRO992
[03/04/2008|00:37] C:\Program Files\test
[10/10/2008|19:52] C:\Program Files\TF1Vision
[29/10/2007|12:14] C:\Program Files\TomTom DesktopSuite
[09/07/2008|20:10] C:\Program Files\TomTom HOME 2
[08/03/2009|08:31] C:\Program Files\Trend Micro
[20/08/2004|10:41] C:\Program Files\Uninstall Information
[08/02/2007|11:13] C:\Program Files\Universalis 5
[01/01/2006|20:14] C:\Program Files\VideoLAN
[21/09/2005|14:20] C:\Program Files\Viewpoint
[23/01/2008|23:33] C:\Program Files\Wanadoo
[26/09/2007|10:36] C:\Program Files\Wanadoo Jeux
[01/03/2006|12:30] C:\Program Files\Wanadoo Messager
[19/01/2008|10:48] C:\Program Files\Windows Live
[21/01/2007|22:48] C:\Program Files\Windows Media Connect 2
[10/10/2008|20:52] C:\Program Files\Windows Media Player
[29/09/2008|18:23] C:\Program Files\Windows NT
[20/08/2004|10:35] C:\Program Files\WindowsUpdate
[22/01/2006|16:57] C:\Program Files\WinRAR
[20/08/2004|10:37] C:\Program Files\xerox
[28/05/2007|19:04] C:\Program Files\Yahoo!
[21/09/2005|14:29] C:\Program Files\Your Company Name
[14/09/2008|09:08] C:\Program Files\Zero G Registry
[26/02/2006|18:02] C:\Program Files\Zoner
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[29/11/2008|11:18] C:\Program Files\Fichiers communs\Adobe
[29/11/2008|11:49] C:\Program Files\Fichiers communs\Adobe AIR
[16/03/2006|19:14] C:\Program Files\Fichiers communs\AOL
[16/06/2008|18:08] C:\Program Files\Fichiers communs\Application
[26/12/2006|13:09] C:\Program Files\Fichiers communs\Canon
[01/11/2005|16:10] C:\Program Files\Fichiers communs\DESIGNER
[16/01/2009|23:23] C:\Program Files\Fichiers communs\Iconix
[21/03/2006|20:17] C:\Program Files\Fichiers communs\InstallShield
[21/09/2005|14:27] C:\Program Files\Fichiers communs\Jasc Software Inc
[21/09/2005|14:16] C:\Program Files\Fichiers communs\Java
[05/03/2009|22:01] C:\Program Files\Fichiers communs\Microsoft Shared
[20/08/2004|10:35] C:\Program Files\Fichiers communs\MSSoap
[21/09/2005|14:20] C:\Program Files\Fichiers communs\Nullsoft
[20/08/2004|10:30] C:\Program Files\Fichiers communs\ODBC
[30/05/2006|22:14] C:\Program Files\Fichiers communs\Real
[18/03/2006|09:59] C:\Program Files\Fichiers communs\ScanSoft Shared
[20/08/2004|10:35] C:\Program Files\Fichiers communs\Services
[21/09/2005|14:28] C:\Program Files\Fichiers communs\Sonic Shared
[20/08/2004|10:30] C:\Program Files\Fichiers communs\SpeechEngines
[29/09/2008|18:23] C:\Program Files\Fichiers communs\System
[21/09/2005|14:21] C:\Program Files\Fichiers communs\TiVo Shared
[24/04/2006|21:42] C:\Program Files\Fichiers communs\umwm
[19/01/2008|10:47] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[27/07/2007|23:16] C:\Program Files\Fichiers communs\Wise Installation Wizard
[17/04/2008|15:10] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 39 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-03-08 17:59:01
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 814
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\Philippe\Mes documents\puppyfat\TheElderScrollsIVOblivionModsNoDVDCrackUpdatewwwslotorrentnet(www.fulldls.com).torrent
[F:1][D:5]-> C:\DOCUME~1\Philippe\LOCALS~1\Temp
[F:1][D:0]-> C:\DOCUME~1\Philippe\Cookies
[F:2][D:0]-> C:\DOCUME~1\Philippe\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 08/03/2009|18:01 - Option : [1]
--------------------\\ Fin du rapport a 18:01:46
Rapport apres deuxième étape
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Celeron(R) CPU 2.66GHz )
BIOS : Phoenix ROM BIOS PLUS Version 1.10 A02
USER : Philippe ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1335 [VPS 090307-0] 4.8.1335 (Not Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:71 Go (Free:12 Go)
D:\ (CD or DVD)
E:\ (USB)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [2] ( 08/03/2009|18:02 )
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
Supprime! - C:\Program Files\Viewpoint
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans APPLIC~1
[20/08/2004|10:41] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[21/09/2005|14:27] C:\DOCUME~1\ADMINI~1\APPLIC~1\Jasc Software Inc
[20/08/2004|10:30] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[21/09/2005|14:16] C:\DOCUME~1\ADMINI~1\APPLIC~1\Sun
[21/09/2005|14:23] C:\DOCUME~1\ADMINI~1\APPLIC~1\Symantec
[21/09/2005|14:20] C:\DOCUME~1\ADMINI~1\APPLIC~1\You've Got Pictures Screensaver
[14/02/2009|10:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{148D8B8A-8F96-4822-81EC-D510B626B7D5}
[20/09/2008|16:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{51019853-129C-4EDE-9030-D5FD7BBD9AD0}
[29/11/2008|11:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[16/03/2006|19:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[27/03/2006|12:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[14/02/2009|10:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DriverScanner
[02/11/2007|10:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\eBay
[21/12/2006|23:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[08/03/2009|08:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[12/11/2008|16:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Iconix
[21/09/2005|14:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[08/03/2009|11:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[09/01/2007|19:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[25/03/2006|10:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MSScanAppDataDir
[31/12/2005|18:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[10/06/2007|21:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\River Past G5
[20/08/2004|10:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[25/02/2006|10:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[18/03/2006|09:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanAppDataDir
[18/03/2006|09:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanWizard
[23/04/2007|11:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[07/03/2009|07:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[06/08/2008|20:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TomTom
[02/06/2008|22:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Trend Micro
[25/10/2008|14:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WholeSecurity
[26/02/2006|18:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[19/01/2008|10:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[07/04/2007|14:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[17/04/2008|19:39] C:\DOCUME~1\Camille\APPLIC~1\eBay
[20/08/2004|10:41] C:\DOCUME~1\Camille\APPLIC~1\Identities
[21/09/2005|14:27] C:\DOCUME~1\Camille\APPLIC~1\Jasc Software Inc
[25/10/2005|16:49] C:\DOCUME~1\Camille\APPLIC~1\Leadertech
[01/01/2006|23:25] C:\DOCUME~1\Camille\APPLIC~1\Macromedia
[31/12/2006|12:30] C:\DOCUME~1\Camille\APPLIC~1\Microsoft
[13/07/2006|12:00] C:\DOCUME~1\Camille\APPLIC~1\Real
[25/10/2005|16:49] C:\DOCUME~1\Camille\APPLIC~1\Sonic
[21/09/2005|14:16] C:\DOCUME~1\Camille\APPLIC~1\Sun
[21/09/2005|14:23] C:\DOCUME~1\Camille\APPLIC~1\Symantec
[06/12/2006|20:24] C:\DOCUME~1\Camille\APPLIC~1\WholeSecurity
[21/09/2005|14:20] C:\DOCUME~1\Camille\APPLIC~1\You've Got Pictures Screensaver
[20/08/2004|10:41] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[21/09/2005|14:27] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Jasc Software Inc
[20/08/2004|10:30] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[21/09/2005|14:16] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Sun
[21/09/2005|14:23] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec
[21/09/2005|14:20] C:\DOCUME~1\DEFAUL~1\APPLIC~1\You've Got Pictures Screensaver
[07/03/2006|08:44] C:\DOCUME~1\LOCALS~1\APPLIC~1\Help
[03/11/2006|23:04] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[20/04/2006|22:14] C:\DOCUME~1\LOCALS~1\APPLIC~1\NetMon
[19/07/2008|23:21] C:\DOCUME~1\Mathieu\APPLIC~1\Adobe
[19/07/2008|19:51] C:\DOCUME~1\Mathieu\APPLIC~1\eBay
[19/07/2008|23:29] C:\DOCUME~1\Mathieu\APPLIC~1\Google
[20/08/2004|10:41] C:\DOCUME~1\Mathieu\APPLIC~1\Identities
[21/09/2005|14:27] C:\DOCUME~1\Mathieu\APPLIC~1\Jasc Software Inc
[19/07/2008|23:21] C:\DOCUME~1\Mathieu\APPLIC~1\Macromedia
[09/02/2007|20:31] C:\DOCUME~1\Mathieu\APPLIC~1\Microsoft
[25/03/2006|09:04] C:\DOCUME~1\Mathieu\APPLIC~1\OpenOffice.org2
[05/07/2006|22:41] C:\DOCUME~1\Mathieu\APPLIC~1\Real
[19/07/2008|19:53] C:\DOCUME~1\Mathieu\APPLIC~1\SPAMfighter
[21/09/2005|14:16] C:\DOCUME~1\Mathieu\APPLIC~1\Sun
[21/09/2005|14:23] C:\DOCUME~1\Mathieu\APPLIC~1\Symantec
[19/07/2008|23:21] C:\DOCUME~1\Mathieu\APPLIC~1\WholeSecurity
[21/09/2005|14:20] C:\DOCUME~1\Mathieu\APPLIC~1\You've Got Pictures Screensaver
[16/04/2008|16:40] C:\DOCUME~1\Myriam\APPLIC~1\Adobe
[13/05/2006|17:47] C:\DOCUME~1\Myriam\APPLIC~1\Apple Computer
[16/04/2008|15:34] C:\DOCUME~1\Myriam\APPLIC~1\eBay
[06/05/2006|16:42] C:\DOCUME~1\Myriam\APPLIC~1\Google
[29/03/2006|15:40] C:\DOCUME~1\Myriam\APPLIC~1\Help
[20/08/2004|10:41] C:\DOCUME~1\Myriam\APPLIC~1\Identities
[21/09/2005|14:27] C:\DOCUME~1\Myriam\APPLIC~1\Jasc Software Inc
[28/03/2006|10:18] C:\DOCUME~1\Myriam\APPLIC~1\Macromedia
[09/10/2006|22:32] C:\DOCUME~1\Myriam\APPLIC~1\Microsoft
[28/03/2006|10:15] C:\DOCUME~1\Myriam\APPLIC~1\OpenOffice.org2
[03/08/2006|12:13] C:\DOCUME~1\Myriam\APPLIC~1\Real
[17/07/2008|20:06] C:\DOCUME~1\Myriam\APPLIC~1\SPAMfighter
[21/09/2005|14:16] C:\DOCUME~1\Myriam\APPLIC~1\Sun
[21/09/2005|14:23] C:\DOCUME~1\Myriam\APPLIC~1\Symantec
[05/11/2005|16:49] C:\DOCUME~1\Myriam\APPLIC~1\Template
[17/04/2008|07:57] C:\DOCUME~1\Myriam\APPLIC~1\WholeSecurity
[21/09/2005|14:20] C:\DOCUME~1\Myriam\APPLIC~1\You've Got Pictures Screensaver
[02/01/2006|19:52] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[03/03/2006|20:19] C:\DOCUME~1\Philippe\APPLIC~1\7Wonders
[15/04/2006|16:49] C:\DOCUME~1\Philippe\APPLIC~1\ACAMPREF
[15/12/2008|23:06] C:\DOCUME~1\Philippe\APPLIC~1\Adobe
[05/03/2006|14:40] C:\DOCUME~1\Philippe\APPLIC~1\Anuman Interactive
[22/05/2006|18:06] C:\DOCUME~1\Philippe\APPLIC~1\Apple Computer
[05/02/2006|15:15] C:\DOCUME~1\Philippe\APPLIC~1\ArcSoft
[09/09/2006|07:38] C:\DOCUME~1\Philippe\APPLIC~1\Azureus
[01/11/2007|16:47] C:\DOCUME~1\Philippe\APPLIC~1\BitTorrent
[25/02/2008|16:42] C:\DOCUME~1\Philippe\APPLIC~1\Cabos
[03/05/2008|14:22] C:\DOCUME~1\Philippe\APPLIC~1\Cakewalk
[17/02/2009|21:37] C:\DOCUME~1\Philippe\APPLIC~1\Canon
[07/12/2005|14:03] C:\DOCUME~1\Philippe\APPLIC~1\CyberLink
[13/01/2008|16:05] C:\DOCUME~1\Philippe\APPLIC~1\DAEMON Tools
[21/08/2007|22:56] C:\DOCUME~1\Philippe\APPLIC~1\dBpoweramp
[05/01/2007|17:37] C:\DOCUME~1\Philippe\APPLIC~1\dvdcss
[13/04/2008|15:24] C:\DOCUME~1\Philippe\APPLIC~1\eBay
[18/02/2006|01:27] C:\DOCUME~1\Philippe\APPLIC~1\eConf
[24/12/2006|09:35] C:\DOCUME~1\Philippe\APPLIC~1\Google
[05/02/2006|15:31] C:\DOCUME~1\Philippe\APPLIC~1\Help
[23/10/2008|22:25] C:\DOCUME~1\Philippe\APPLIC~1\Icone
[12/11/2008|16:05] C:\DOCUME~1\Philippe\APPLIC~1\Iconix
[07/06/2006|15:09] C:\DOCUME~1\Philippe\APPLIC~1\Identities
[11/03/2006|19:52] C:\DOCUME~1\Philippe\APPLIC~1\Jasc Software Inc
[18/04/2008|17:46] C:\DOCUME~1\Philippe\APPLIC~1\La Bataille pour la Terre du Milieu T II
[06/10/2005|18:28] C:\DOCUME~1\Philippe\APPLIC~1\Leadertech
[24/05/2006|17:44] C:\DOCUME~1\Philippe\APPLIC~1\Macromedia
[08/03/2009|11:25] C:\DOCUME~1\Philippe\APPLIC~1\Malwarebytes
[18/08/2008|08:45] C:\DOCUME~1\Philippe\APPLIC~1\Microsoft
[09/07/2008|20:11] C:\DOCUME~1\Philippe\APPLIC~1\Mozilla
[21/08/2007|22:29] C:\DOCUME~1\Philippe\APPLIC~1\Musicmatch
[06/03/2009|18:45] C:\DOCUME~1\Philippe\APPLIC~1\OpenOffice.org2
[30/05/2006|22:18] C:\DOCUME~1\Philippe\APPLIC~1\Real
[10/06/2007|20:42] C:\DOCUME~1\Philippe\APPLIC~1\River Past G5
[05/02/2006|11:35] C:\DOCUME~1\Philippe\APPLIC~1\ScanSoft
[06/10/2005|18:29] C:\DOCUME~1\Philippe\APPLIC~1\Sonic
[18/02/2007|19:38] C:\DOCUME~1\Philippe\APPLIC~1\Sony Corporation
[16/06/2008|18:09] C:\DOCUME~1\Philippe\APPLIC~1\SPAMfighter
[27/08/2006|08:33] C:\DOCUME~1\Philippe\APPLIC~1\Steinberg
[21/09/2005|14:16] C:\DOCUME~1\Philippe\APPLIC~1\Sun
[30/09/2005|22:50] C:\DOCUME~1\Philippe\APPLIC~1\Symantec
[25/04/2006|17:32] C:\DOCUME~1\Philippe\APPLIC~1\Syntrillium
[01/10/2005|13:56] C:\DOCUME~1\Philippe\APPLIC~1\Template
[29/10/2007|12:17] C:\DOCUME~1\Philippe\APPLIC~1\TomTom
[25/10/2008|21:17] C:\DOCUME~1\Philippe\APPLIC~1\U3
[14/02/2009|09:24] C:\DOCUME~1\Philippe\APPLIC~1\Uniblue
[10/10/2007|17:56] C:\DOCUME~1\Philippe\APPLIC~1\vlc
[21/08/2007|22:10] C:\DOCUME~1\Philippe\APPLIC~1\WholeSecurity
[21/09/2005|14:20] C:\DOCUME~1\Philippe\APPLIC~1\You've Got Pictures Screensaver
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[01/10/2005 21:15][--a------] C:\WINDOWS\tasks\Rappel d'abonnement 1 auprŠs de l'ISP.job
[08/03/2009 17:45][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 12:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[29/11/2008|11:50] C:\Program Files\Adobe
[26/09/2007|10:46] C:\Program Files\ahead
[27/05/2006|13:48] C:\Program Files\Alcohol Soft
[25/04/2007|15:55] C:\Program Files\Alwil Software
[21/09/2005|14:05] C:\Program Files\Analog Devices
[05/03/2006|14:36] C:\Program Files\Anuman Interactive
[05/02/2006|11:33] C:\Program Files\ArcSoft
[31/01/2008|07:10] C:\Program Files\AusLogics Disk Defrag
[26/09/2007|10:37] C:\Program Files\Azureus
[18/02/2008|10:33] C:\Program Files\BitTorrent
[11/10/2008|14:54] C:\Program Files\Black Isle
[18/02/2008|10:36] C:\Program Files\Cabos
[03/05/2008|14:07] C:\Program Files\Cakewalk
[12/05/2007|15:36] C:\Program Files\Canon
[07/04/2007|13:54] C:\Program Files\CCleaner
[23/04/2007|11:41] C:\Program Files\CDBurnerXP Pro 3
[28/05/2007|19:08] C:\Program Files\Common Files
[11/10/2008|14:52] C:\Program Files\compil
[20/08/2004|10:35] C:\Program Files\ComPlus Applications
[21/09/2005|14:17] C:\Program Files\CyberLink
[21/09/2005|14:27] C:\Program Files\Dell
[21/09/2005|14:27] C:\Program Files\Dell Inc
[01/01/2006|20:17] C:\Program Files\DivX
[08/10/2006|09:33] C:\Program Files\eBay
[27/12/2005|19:18] C:\Program Files\Eidos Interactive
[18/04/2008|17:02] C:\Program Files\Electronic Arts
[04/07/2008|07:55] C:\Program Files\eMule
[27/01/2009|19:22] C:\Program Files\Fichiers communs
[07/03/2009|17:50] C:\Program Files\Finale 2002
[05/08/2007|09:35] C:\Program Files\Finale 2006
[07/03/2009|17:21] C:\Program Files\Finale 2007
[16/07/2007|16:26] C:\Program Files\Finale NotePad 2005a
[27/07/2007|23:22] C:\Program Files\Finale NotePad 2007
[22/03/2008|13:48] C:\Program Files\Free Audio Pack
[22/03/2008|13:56] C:\Program Files\freebird
[21/08/2007|21:49] C:\Program Files\Fx Audio Conveter
[28/11/2007|22:18] C:\Program Files\Gallimard
[04/02/2009|18:07] C:\Program Files\Google
[30/03/2006|12:35] C:\Program Files\Guitar Pro 5
[15/04/2006|16:48] C:\Program Files\Harmony Assistant
[12/11/2008|16:02] C:\Program Files\Iconix
[05/08/2007|19:37] C:\Program Files\Illustrate
[11/10/2008|14:54] C:\Program Files\InstallShield Installation Information
[21/09/2005|14:17] C:\Program Files\Intel
[11/02/2009|23:02] C:\Program Files\Internet Explorer
[27/03/2006|12:04] C:\Program Files\iPod
[27/03/2006|12:04] C:\Program Files\iTunes
[21/09/2005|14:27] C:\Program Files\Jasc Software Inc
[27/02/2009|09:39] C:\Program Files\Java
[10/03/2006|12:50] C:\Program Files\Jeriko
[21/09/2005|14:20] C:\Program Files\Learn2.com
[19/03/2006|12:27] C:\Program Files\licenses
[20/04/2006|14:46] C:\Program Files\LilyPond
[18/02/2008|10:33] C:\Program Files\LimeWire
[22/02/2008|23:26] C:\Program Files\Livret ‚lŠve
[31/01/2009|12:09] C:\Program Files\Mafia
[08/11/2008|11:50] C:\Program Files\MaJ Je sais lire
[08/03/2009|11:25] C:\Program Files\Malwarebytes' Anti-Malware
[27/01/2008|16:26] C:\Program Files\Maxis
[21/08/2007|22:54] C:\Program Files\Media Box
[29/09/2008|18:33] C:\Program Files\Messenger
[10/09/2007|23:42] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[20/08/2004|10:37] C:\Program Files\microsoft frontpage
[09/01/2007|19:26] C:\Program Files\Microsoft LifeCam
[16/02/2008|19:24] C:\Program Files\Microsoft Office
[21/09/2005|14:18] C:\Program Files\Microsoft Works
[01/11/2005|16:09] C:\Program Files\Microsoft.NET
[13/03/2006|19:31] C:\Program Files\Montparnasse Multimedia - Flammarion
[29/09/2008|18:26] C:\Program Files\Movie Maker
[08/03/2009|17:48] C:\Program Files\Mozilla Firefox
[16/10/2008|21:08] C:\Program Files\MSBuild
[16/02/2008|19:24] C:\Program Files\MSECache
[01/01/2006|20:42] C:\Program Files\MSN
[21/01/2006|19:22] C:\Program Files\MSN Apps
[20/08/2004|10:34] C:\Program Files\MSN Gaming Zone
[18/11/2006|00:15] C:\Program Files\MSXML 4.0
[11/02/2006|13:42] C:\Program Files\Musicalis
[21/08/2007|22:29] C:\Program Files\Musicmatch
[24/05/2006|17:57] C:\Program Files\NASA
[08/03/2009|14:26] C:\Program Files\Navilog1
[29/09/2008|18:23] C:\Program Files\NetMeeting
[24/04/2006|21:44] C:\Program Files\Network Monitor
[01/01/2006|20:17] C:\Program Files\NimoCodec Pack
[26/01/2008|13:28] C:\Program Files\NoteWorthy Composer
[12/03/2006|19:37] C:\Program Files\Objective Tarot
[20/08/2004|10:34] C:\Program Files\Online Services
[02/11/2006|13:31] C:\Program Files\OpenOffice.org 2.0
[02/11/2006|13:22] C:\Program Files\OpenOffice.org1.0.1
[29/09/2008|18:23] C:\Program Files\Outlook Express
[03/08/2008|10:52] C:\Program Files\PHOTOCITE Collection
[05/08/2008|23:06] C:\Program Files\Phototool
[15/04/2006|20:15] C:\Program Files\QuickTime
[03/05/2008|12:42] C:\Program Files\RdDrv001
[19/03/2006|12:27] C:\Program Files\readmes
[21/09/2005|14:19] C:\Program Files\Real
[16/10/2008|21:08] C:\Program Files\Reference Assemblies
[24/07/2008|21:54] C:\Program Files\Registry Mechanic
[10/06/2007|20:42] C:\Program Files\River Past
[17/05/2008|14:10] C:\Program Files\SAGEM
[20/04/2007|00:34] C:\Program Files\Samsung
[05/02/2006|11:35] C:\Program Files\ScanSoft
[30/08/2008|13:55] C:\Program Files\Securitoo
[10/10/2007|11:30] C:\Program Files\Services en ligne
[17/02/2007|13:02] C:\Program Files\SmartMusic
[07/03/2006|09:20] C:\Program Files\Sonic
[18/02/2007|11:38] C:\Program Files\Sony
[08/03/2009|17:47] C:\Program Files\SPAMfighter
[03/03/2009|12:58] C:\Program Files\SPYWAREfighter
[13/01/2008|14:39] C:\Program Files\Steinberg
[17/08/2006|14:47] C:\Program Files\Syncrosoft
[06/07/2006|12:58] C:\Program Files\TAROTPRO992
[03/04/2008|00:37] C:\Program Files\test
[10/10/2008|19:52] C:\Program Files\TF1Vision
[29/10/2007|12:14] C:\Program Files\TomTom DesktopSuite
[09/07/2008|20:10] C:\Program Files\TomTom HOME 2
[08/03/2009|08:31] C:\Program Files\Trend Micro
[20/08/2004|10:41] C:\Program Files\Uninstall Information
[08/02/2007|11:13] C:\Program Files\Universalis 5
[01/01/2006|20:14] C:\Program Files\VideoLAN
[23/01/2008|23:33] C:\Program Files\Wanadoo
[26/09/2007|10:36] C:\Program Files\Wanadoo Jeux
[01/03/2006|12:30] C:\Program Files\Wanadoo Messager
[19/01/2008|10:48] C:\Program Files\Windows Live
[21/01/2007|22:48] C:\Program Files\Windows Media Connect 2
[10/10/2008|20:52] C:\Program Files\Windows Media Player
[29/09/2008|18:23] C:\Program Files\Windows NT
[20/08/2004|10:35] C:\Program Files\WindowsUpdate
[22/01/2006|16:57] C:\Program Files\WinRAR
[20/08/2004|10:37] C:\Program Files\xerox
[28/05/2007|19:04] C:\Program Files\Yahoo!
[21/09/2005|14:29] C:\Program Files\Your Company Name
[14/09/2008|09:08] C:\Program Files\Zero G Registry
[26/02/2006|18:02] C:\Program Files\Zoner
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[29/11/2008|11:18] C:\Program Files\Fichiers communs\Adobe
[29/11/2008|11:49] C:\Program Files\Fichiers communs\Adobe AIR
[16/03/2006|19:14] C:\Program Files\Fichiers communs\AOL
[16/06/2008|18:08] C:\Program Files\Fichiers communs\Application
[26/12/2006|13:09] C:\Program Files\Fichiers communs\Canon
[01/11/2005|16:10] C:\Program Files\Fichiers communs\DESIGNER
[16/01/2009|23:23] C:\Program Files\Fichiers communs\Iconix
[21/03/2006|20:17] C:\Program Files\Fichiers communs\InstallShield
[21/09/2005|14:27] C:\Program Files\Fichiers communs\Jasc Software Inc
[21/09/2005|14:16] C:\Program Files\Fichiers communs\Java
[05/03/2009|22:01] C:\Program Files\Fichiers communs\Microsoft Shared
[20/08/2004|10:35] C:\Program Files\Fichiers communs\MSSoap
[21/09/2005|14:20] C:\Program Files\Fichiers communs\Nullsoft
[20/08/2004|10:30] C:\Program Files\Fichiers communs\ODBC
[30/05/2006|22:14] C:\Program Files\Fichiers communs\Real
[18/03/2006|09:59] C:\Program Files\Fichiers communs\ScanSoft Shared
[20/08/2004|10:35] C:\Program Files\Fichiers communs\Services
[21/09/2005|14:28] C:\Program Files\Fichiers communs\Sonic Shared
[20/08/2004|10:30] C:\Program Files\Fichiers communs\SpeechEngines
[29/09/2008|18:23] C:\Program Files\Fichiers communs\System
[21/09/2005|14:21] C:\Program Files\Fichiers communs\TiVo Shared
[24/04/2006|21:42] C:\Program Files\Fichiers communs\umwm
[19/01/2008|10:47] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[27/07/2007|23:16] C:\Program Files\Fichiers communs\Wise Installation Wizard
[17/04/2008|15:10] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 37 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-03-08 18:06:45
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 814
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\Philippe\Mes documents\puppyfat\TheElderScrollsIVOblivionModsNoDVDCrackUpdatewwwslotorrentnet(www.fulldls.com).torrent
[F:2][D:5]-> C:\DOCUME~1\Philippe\LOCALS~1\Temp
[F:1][D:0]-> C:\DOCUME~1\Philippe\Cookies
[F:2][D:0]-> C:\DOCUME~1\Philippe\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 08/03/2009|18:01 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 08/03/2009|18:09 - Option : [2]
--------------------\\ Fin du rapport a 18:09:21
rapport hijack:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:09:58, on 08/03/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\WINDOWS\system32\cisvc.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Iconix\IconixService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft LifeCam\MSCamSvc.exe
C:\Program Files\SPAMfighter\sfus.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\vVX3000.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.dell.com/fr-fr
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: eBay Toolbar Helper - {22D8E815-4A5E-4DFB-845E-AAB64207F5BD} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: IconixBHOClass Class - {761233B6-F228-49E4-8F6B-668499D4E55A} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.4472\swg.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Recherche sur eBay - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O9 - Extra button: (no name) - {400A6CFA-E326-4d61-A90C-9AD75358DC5F} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra 'Tools' menuitem: Email ID Préférences - {400A6CFA-E326-4d61-A90C-9AD75358DC5F} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {BC3F6B6D-2E49-4603-B028-7411655713F3} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra 'Tools' menuitem: À propos de Email ID - {BC3F6B6D-2E49-4603-B028-7411655713F3} - C:\Program Files\Iconix\IEAddOn\IconixBHO_37.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://chouchouyoupya.spaces.live.com/PhotoUpload/MsnPUpld.cab
O18 - Filter hijack: text/html - {2AB289AE-4B90-4281-B2AE-1F4BB034B647} - (no file)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Iconix Update Service (IconixService) - Unknown owner - C:\Program Files\Fichiers communs\Iconix\IconixService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: SPAMfighter Update Service - SPAMfighter ApS - C:\Program Files\SPAMfighter\sfus.exe
O24 - Desktop Component 0: (no name) - http://www.lesavourclub.fr/images/autour_du_vin/millesimes.gif
O24 - Desktop Component 1: (no name) - https://www.mediavacances.com/Images/fondpixel.gif
Je pars dans 5 minutes, si je n'ai pas de tes nouvelles, je te remercie énormément pour le temps que tu as consacré à mon problème! Je ne serai plus vers l'ordi mais peut-être que mon père pourra faire les manips si le virus qui reste est vraiment contraignant !
Ok
Peut-être que le papa peut faire ceci
===================== COMBOFIX =======================
• Imprimer ou sauvegarder avec le bloc-note cette procédure car la suite va se dérouler sans accès à Internet.
• Installer ComboFix sur le bureau
Note :
Le serveur de téléchargement peut être en surcharge et renvoyer une page d'erreur. Il faut insister.
• Renommer COMBOFIX.EXE en COMBO-FIX.EXE
• Sous Windows Vista, désactiver l'UAC. Comment faire ?
------
• Redémarrer en mode Sans Échec (le démarrage peut prendre plusieurs minutes)
• Attention, pas d’accès à internet dans ce mode. Enregistrer ou imprimer les consignes.
• Relancer le Pc et tapoter la touche F8 ( ou F5 pour certains) , jusqu’à l’apparition des inscriptions avec choix de démarrage
• Avec les touches « flèches », sélectionner Mode sans échec ==> entrée ==>nom utilisateur habituel
-------
• Désactiver seulement pendant l'utilisation de ComboFix, la protection de l'antivirus et de l'antispyware ceux-ci pouvant entraver le bon fonctionnement de combofix
• Fermer toutes les applications en cours
• Double-click sur l'icône qui s'est installé sur le bureau
• Si Combofix propose d'installer la console de récupération windows accepter
• Ensuite appuyer sur la touche 1 puis sur entrée
• Laisser Combofix travailler sans se servir de la machine.
• Si ComboFix a besoin de redémarrer la machine, laisser faire sinon redémarrer en mode normal.
• Copier/Coller le rapport généré dans le bloc-note dans le prochain message
(Ce fichier est automatiquement généré et enregistré sous C:\Combofix.txt)
• NB : Combofix ne met jamais plus de 20 minutes reboot inclus pour s'effectuer si un malware est détecté.
Si le cas se présente, ouvrir le gestionnaire de tâches (appui sur les touches ctrl, alt et Suppr en même temps)
et tuer les processus findstr, find, sed ou swreg, pour que combofix puisse continuer.
Si cela arrive, l'indiquer ainsi que les noms des processus ayant été tués.
• Sous Windows Vista, réactiver l'UAC en suivant la manipulation inverse qu'au début du tuto de cette page :
Comment faire ?
Peut-être que le papa peut faire ceci
===================== COMBOFIX =======================
• Imprimer ou sauvegarder avec le bloc-note cette procédure car la suite va se dérouler sans accès à Internet.
• Installer ComboFix sur le bureau
Note :
Le serveur de téléchargement peut être en surcharge et renvoyer une page d'erreur. Il faut insister.
• Renommer COMBOFIX.EXE en COMBO-FIX.EXE
• Sous Windows Vista, désactiver l'UAC. Comment faire ?
------
• Redémarrer en mode Sans Échec (le démarrage peut prendre plusieurs minutes)
• Attention, pas d’accès à internet dans ce mode. Enregistrer ou imprimer les consignes.
• Relancer le Pc et tapoter la touche F8 ( ou F5 pour certains) , jusqu’à l’apparition des inscriptions avec choix de démarrage
• Avec les touches « flèches », sélectionner Mode sans échec ==> entrée ==>nom utilisateur habituel
-------
• Désactiver seulement pendant l'utilisation de ComboFix, la protection de l'antivirus et de l'antispyware ceux-ci pouvant entraver le bon fonctionnement de combofix
• Fermer toutes les applications en cours
• Double-click sur l'icône qui s'est installé sur le bureau
• Si Combofix propose d'installer la console de récupération windows accepter
• Ensuite appuyer sur la touche 1 puis sur entrée
• Laisser Combofix travailler sans se servir de la machine.
• Si ComboFix a besoin de redémarrer la machine, laisser faire sinon redémarrer en mode normal.
• Copier/Coller le rapport généré dans le bloc-note dans le prochain message
(Ce fichier est automatiquement généré et enregistré sous C:\Combofix.txt)
• NB : Combofix ne met jamais plus de 20 minutes reboot inclus pour s'effectuer si un malware est détecté.
Si le cas se présente, ouvrir le gestionnaire de tâches (appui sur les touches ctrl, alt et Suppr en même temps)
et tuer les processus findstr, find, sed ou swreg, pour que combofix puisse continuer.
Si cela arrive, l'indiquer ainsi que les noms des processus ayant été tués.
• Sous Windows Vista, réactiver l'UAC en suivant la manipulation inverse qu'au début du tuto de cette page :
Comment faire ?
J'ai envoyé un mail avec les instructions, j'en saurai plus demain dans la soirée je pense, merci pour tout en tout cas!
Bonsoir!
Mon papa vient de m'envoyer ce rapport, en espérant que ce soit bon!
ComboFix 09-03-06.02 - Philippe 2009-03-09 20:00:30.1 - NTFSx86
Microsoft Windows XP Édition familiale 5.1.2600.3.1252.1.1036.18.510.166 [GMT 1:00]
Lancé depuis: c:\documents and settings\Philippe\Bureau\ComboFix.exe
AV: avast! antivirus 4.8.1335 [VPS 090308-0] *On-access scanning enabled* (Updated)
* Un nouveau point de restauration a été créé
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\LocalService\Application Data\NetMon
c:\documents and settings\LocalService\Application Data\NetMon\domains.txt
c:\documents and settings\LocalService\Application Data\NetMon\log.txt
c:\documents and settings\Myriam\real.txt
c:\documents and settings\Philippe\real.txt
c:\program files\\setup.exe
c:\program files\network monitor
c:\windows\system32\^^^^^.exe
c:\windows\system32\_000005_.tmp.dll
c:\windows\system32\atmtd.dll.tmp
.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_OREANS32
-------\Service_oreans32
((((((((((((((((((((((((((((( Fichiers créés du 2009-02-09 au 2009-03-09 ))))))))))))))))))))))))))))))))))))
.
2009-03-08 17:56 . 2009-03-08 18:09 <REP> d-------- C:\Lop SD
2009-03-08 17:03 . 2009-03-08 17:16 <REP> d-------- C:\ToolBar SD
2009-03-08 11:25 . 2009-03-08 11:25 <REP> d-------- c:\program files\Malwarebytes' Anti-Malware
2009-03-08 11:25 . 2009-03-08 11:25 <REP> d-------- c:\documents and settings\Philippe\Application Data\Malwarebytes
2009-03-08 11:25 . 2009-03-08 11:25 <REP> d-------- c:\documents and settings\All Users\Application Data\Malwarebytes
2009-03-08 11:25 . 2009-02-11 10:19 38,496 --a------ c:\windows\system32\drivers\mbamswissarmy.sys
2009-03-08 11:25 . 2009-02-11 10:19 15,504 --a------ c:\windows\system32\drivers\mbam.sys
2009-03-08 10:29 . 2009-03-08 14:26 <REP> d-------- c:\program files\Navilog1
2009-03-08 08:31 . 2009-03-08 08:31 <REP> d-------- c:\program files\Trend Micro
2009-02-27 09:40 . 2009-02-27 09:39 410,984 --a------ c:\windows\system32\deploytk.dll
2009-02-25 09:11 . 2009-01-09 20:19 1,089,883 --------- c:\windows\system32\dllcache\ntprint.cat
2009-02-14 11:55 . 2009-03-05 23:35 54,156 --ah----- c:\windows\QTFont.qfn
2009-02-14 11:55 . 2009-02-14 11:55 1,409 --a------ c:\windows\QTFont.for
2009-02-14 10:03 . 2009-02-14 10:03 <REP> d-------- c:\documents and settings\All Users\Application Data\{148D8B8A-8F96-4822-81EC-D510B626B7D5}
2009-02-14 09:24 . 2009-02-14 09:24 <REP> d-------- c:\documents and settings\Philippe\Application Data\Uniblue
2009-02-14 09:24 . 2009-02-14 10:06 <REP> d-------- c:\documents and settings\All Users\Application Data\DriverScanner
2009-02-11 01:10 . 2009-02-11 01:10 268 --ah----- C:\sqmdata17.sqm
2009-02-09 19:12 . 2009-03-09 20:06 <REP> d-------- c:\program files\SPAMfighter
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-03-09 18:42 --------- d-----w c:\documents and settings\All Users\Application Data\Google Updater
2009-03-08 21:59 --------- d-----w c:\documents and settings\Philippe\Application Data\OpenOffice.org2
2009-03-07 16:50 --------- d-----w c:\program files\Finale 2002
2009-03-07 16:21 --------- d-----w c:\program files\Finale 2007
2009-03-07 06:51 --------- d---a-w c:\documents and settings\All Users\Application Data\TEMP
2009-03-03 11:58 --------- d-----w c:\program files\SPYWAREfighter
2009-02-27 08:39 --------- d-----w c:\program files\Java
2009-02-17 20:37 --------- d-----w c:\documents and settings\Philippe\Application Data\Canon
2009-02-04 17:07 --------- d-----w c:\program files\Google
2009-01-31 11:09 --------- d-----w c:\program files\Mafia
2009-01-16 22:23 --------- d-----w c:\program files\Fichiers communs\Iconix
2008-08-03 09:55 10,847 -c--a-w c:\documents and settings\Philippe\Application Data\mdb.bin
2008-06-30 18:44 24,354,672 -c--a-w c:\program files\setupfre.exe
2008-06-16 17:04 1,520,000 -c--a-w c:\program files\spamfighter_web.exe
2008-02-17 23:05 1,250 -c--a-w c:\documents and settings\Incomplete\downloads.dat
2007-07-02 18:35 26,424 -c--a-w c:\documents and settings\Philippe\TB2Categories000.dat
2006-07-18 16:34 278,528 -c--a-w c:\program files\Fichiers communs\FDEUnInstaller.exe
2006-05-27 12:36 6,224,768 -c--a-w c:\documents and settings\Mathieu\alcohol-120_alcohol_120_1.9.5_build_3823_francais_11016.exe
2006-05-27 12:30 7,973,874 -c--a-w c:\documents and settings\Mathieu\Azureus_2.4.0.2_Win32.setup.exe
2006-04-20 17:06 1,809,591 -c--a-w c:\documents and settings\Mathieu\MusicTime.zip
2006-03-21 19:08 11,817,800 -c--a-w c:\program files\GoogleEarth.exe
2006-03-19 11:24 95,290,962 -c--a-w c:\program files\OOo_2.0.1_Win32Intel_install_wJRE.exe
2006-01-31 12:09 82,172,918 -c--a-w c:\documents and settings\Mathieu\Ghinzu - 2004 - Blow (mp3 128).zip
2006-01-28 23:26 197,119,571 -c--a-w c:\documents and settings\Mathieu\Belgian Indie Pop Rock (31 Songs) Mp3 - Soulwax - Ghinzu - Girls In Hawaii - Deus - Hooverphonic.zip
2006-01-21 17:14 226,105,268 -c--a-w c:\documents and settings\Mathieu\OK - Radiohead - All B-Sides.zip
2005-12-15 08:47 49,451,134 -c--a-w c:\program files\openofficeorg3.cab
2005-12-15 08:47 2,339,752 -c--a-w c:\program files\openofficeorg4.cab
2005-12-15 08:43 6,250,717 -c--a-w c:\program files\openofficeorg2.cab
2005-12-15 08:43 17,710,121 -c--a-w c:\program files\openofficeorg1.cab
2005-12-15 08:42 217 -c--a-w c:\program files\setup.ini
2005-12-15 08:42 2,731,520 -c--a-w c:\program files\openofficeorg20.msi
2002-03-11 09:06 1,822,520 -c--a-w c:\program files\instmsiw.exe
2002-03-11 08:45 1,708,856 -c--a-w c:\program files\instmsia.exe
2000-05-22 13:09 6,772 -c--a-w c:\program files\UNWISE.INI
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2004-10-14 1404928]
"igfxtray"="c:\windows\system32\igfxtray.exe" [2005-09-20 94208]
"igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2005-09-20 77824]
"igfxpers"="c:\windows\system32\igfxpers.exe" [2005-09-20 114688]
"dla"="c:\windows\system32\dla\tfswctrl.exe" [2005-05-31 122941]
"VX3000"="c:\windows\vVX3000.exe" [2006-06-30 707376]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-02-05 81000]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2007-10-18 5724184]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"msacm.divxa32"= DivXa32.acm
"vidc.DIV3"= DivXc32.dll
"vidc.DIV4"= DivXc32f.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Photo Downloader]
--a------ 2007-03-16 10:45 63712 c:\program files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
--a------ 2008-06-12 02:38 34672 c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DMXLauncher]
--a------ 2005-01-27 01:02 86016 c:\program files\Dell\Media Experience\DMXLauncher.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DVDLauncher]
--------- 2005-02-23 16:19 53248 c:\program files\CyberLink\PowerDVD\DVDLauncher.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\e-TF1]
--a------ 2008-03-05 11:47 397312 c:\program files\TF1Vision\TF1vision.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eBayToolbar]
--a------ 2009-01-15 20:02 632048 c:\program files\eBay\eBay Toolbar2\eBayTBDaemon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IconixOEAddOn]
--a------ 2008-11-10 11:52 333584 c:\program files\Iconix\OEAddOn\OEdmn_4.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMJPMIG8.1]
--a------ 2004-08-05 12:00 208952 c:\windows\ime\imjp8_1\imjpmig.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSScheduler]
--a------ 2004-07-27 16:50 81920 c:\program files\Fichiers communs\InstallShield\UpdateService\issch.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
--a------ 2006-02-23 14:45 278528 c:\program files\iTunes\iTunesHelper.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LifeCam]
--a------ 2006-06-30 00:54 269104 c:\program files\Microsoft LifeCam\LifeExp.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsgCenterExe]
--a------ 2008-04-17 15:08 69632 c:\program files\Fichiers communs\Real\Update_OB\RealOneMessageCenter.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OpwareSE2]
--a------ 2003-05-08 12:00 49152 c:\program files\ScanSoft\OmniPageSE2.0\opwareSE2.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
--a------ 2006-04-15 20:15 77824 c:\program files\QuickTime\qttask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RegistryMechanic]
--a------ 2008-07-08 15:41 2828184 c:\program files\Registry Mechanic\RegMech.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SPAMfighter Agent]
--a------ 2009-02-03 13:33 325768 c:\program files\SPAMfighter\SFAgent.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
--a------ 2009-02-27 09:39 136600 c:\program files\Java\jre6\bin\jusched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
--a------ 2008-04-17 15:08 185896 c:\program files\Fichiers communs\Real\Update_OB\realsched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe]
--a------ 2008-05-06 09:42 202088 c:\program files\TomTom HOME 2\HOMERunner.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WMPNSCFG]
--a------ 2006-11-03 08:59 204288 c:\program files\Windows Media Player\wmpnscfg.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\eMule\\emule.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Microsoft LifeCam\\LifeCam.exe"=
"c:\\Program Files\\Microsoft LifeCam\\LifeExp.exe"=
"c:\\Program Files\\Real\\RealPlayer\\realplay.exe"=
"c:\\WINDOWS\\system32\\java.exe"=
"c:\\Program Files\\Electronic Arts\\La Bataille pour la Terre du Milieu II\\game.dat"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"4661:TCP"= 4661:TCP:4661
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2008-10-14 114768]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2008-10-14 20560]
R2 IconixService;Iconix Update Service;c:\program files\Fichiers communs\Iconix\IconixService.exe [2008-11-12 258832]
R2 SPAMfighter Update Service;SPAMfighter Update Service;c:\program files\SPAMfighter\sfus.exe [2009-02-03 184968]
S3 RDID1071;EDIROL M-16DX;c:\windows\system32\drivers\RDWM1071.sys [2008-05-03 136064]
S3 RescueDrv;Inventel Access Point USB Rescue Driver;c:\windows\system32\Drivers\resc_dwb.sys --> c:\windows\system32\Drivers\resc_dwb.sys [?]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{c4a0e082-860f-11dc-a610-001320723d3b}]
\Shell\AutoRun\command - F:\InstallTomTomHOME.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d3afb8e4-8231-11dd-a746-5a664020c492}]
\Shell\AutoRun\command - F:\LaunchU3.exe -a
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{365A8DEF-6416-5375-0707-020704010208}]
c:\windows\lsass.exe
.
Contenu du dossier 'Tâches planifiées'
2005-10-01 c:\windows\Tasks\Rappel d'abonnement 1 auprès de l'ISP.job
- c:\windows\system32\OOBE\oobebaln.exe [2008-04-14 03:34]
.
- - - - ORPHELINS SUPPRIMES - - - -
Notify-WgaLogon - (no file)
MSConfigStartUp-au - c:\program files\Dealio\DealioAU.exe
MSConfigStartUp-BitTorrent - c:\program files\BitTorrent\bittorrent.exe
MSConfigStartUp-DAEMON Tools Lite - c:\program files\DAEMON Tools Lite\daemon.exe
MSConfigStartUp-LCR - c:\program files\XemiComputers\Lecture Recorder\LCR.exe
MSConfigStartUp-Picasa Media Detector - c:\program files\Picasa2\PicasaMediaDetector.exe
MSConfigStartUp-SemanticInsight - c:\program files\RXToolBar\Semantic Insight\SemanticInsight.exe
MSConfigStartUp-WOOKIT - c:\progra~1\Wanadoo\Shell.exe
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.orange.fr/
uDefault_Search_URL = hxxp://www.google.com/ie
mWindow Title =
uInternet Connection Wizard,ShellNext = iexplore
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
IE: Recherche sur eBay - c:\program files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
FF - ProfilePath - c:\documents and settings\Philippe\Application Data\Mozilla\Firefox\Profiles\[u]0/uv64arfp.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
FF - plugin: c:\program files\Google\Google Updater\2.4.1368.5602\npCIDetect13.dll
FF - plugin: c:\program files\Google\Picasa3\npPicasa2.dll
FF - plugin: c:\program files\Google\Picasa3\npPicasa3.dll
---- PARAMETRES FIREFOX ----
FF - user.js: yahoo.homepage.dontask - true.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-03-09 20:08:11
Windows 5.1.2600 Service Pack 3 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\Ø•€|ÿÿÿÿ•€|ù•9~*]
"C040311900063D11C8EF10054038389C"="C?\\WINDOWS\\system32\\FM20ENU.DLL"
.
------------------------ Autres processus actifs ------------------------
.
c:\program files\Alwil Software\Avast4\aswUpdSv.exe
c:\program files\Alwil Software\Avast4\ashServ.exe
c:\windows\system32\drivers\CDANTSRV.EXE
c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Microsoft LifeCam\MSCamSvc.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\program files\Canon\CAL\CALMAIN.exe
.
**************************************************************************
.
Heure de fin: 2009-03-09 20:19:06 - La machine a redémarré
ComboFix-quarantined-files.txt 2009-03-09 19:18:59
Avant-CF: 13 604 220 928 octets libres
Après-CF: 13,555,367,936 octets libres
WindowsXP-KB310994-SP2-Home-BootDisk-FRA.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP dition familiale" /noexecute=optin /fastdetect
242 --- E O F --- 2009-03-05 21:01:35
Mon papa vient de m'envoyer ce rapport, en espérant que ce soit bon!
ComboFix 09-03-06.02 - Philippe 2009-03-09 20:00:30.1 - NTFSx86
Microsoft Windows XP Édition familiale 5.1.2600.3.1252.1.1036.18.510.166 [GMT 1:00]
Lancé depuis: c:\documents and settings\Philippe\Bureau\ComboFix.exe
AV: avast! antivirus 4.8.1335 [VPS 090308-0] *On-access scanning enabled* (Updated)
* Un nouveau point de restauration a été créé
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\LocalService\Application Data\NetMon
c:\documents and settings\LocalService\Application Data\NetMon\domains.txt
c:\documents and settings\LocalService\Application Data\NetMon\log.txt
c:\documents and settings\Myriam\real.txt
c:\documents and settings\Philippe\real.txt
c:\program files\\setup.exe
c:\program files\network monitor
c:\windows\system32\^^^^^.exe
c:\windows\system32\_000005_.tmp.dll
c:\windows\system32\atmtd.dll.tmp
.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_OREANS32
-------\Service_oreans32
((((((((((((((((((((((((((((( Fichiers créés du 2009-02-09 au 2009-03-09 ))))))))))))))))))))))))))))))))))))
.
2009-03-08 17:56 . 2009-03-08 18:09 <REP> d-------- C:\Lop SD
2009-03-08 17:03 . 2009-03-08 17:16 <REP> d-------- C:\ToolBar SD
2009-03-08 11:25 . 2009-03-08 11:25 <REP> d-------- c:\program files\Malwarebytes' Anti-Malware
2009-03-08 11:25 . 2009-03-08 11:25 <REP> d-------- c:\documents and settings\Philippe\Application Data\Malwarebytes
2009-03-08 11:25 . 2009-03-08 11:25 <REP> d-------- c:\documents and settings\All Users\Application Data\Malwarebytes
2009-03-08 11:25 . 2009-02-11 10:19 38,496 --a------ c:\windows\system32\drivers\mbamswissarmy.sys
2009-03-08 11:25 . 2009-02-11 10:19 15,504 --a------ c:\windows\system32\drivers\mbam.sys
2009-03-08 10:29 . 2009-03-08 14:26 <REP> d-------- c:\program files\Navilog1
2009-03-08 08:31 . 2009-03-08 08:31 <REP> d-------- c:\program files\Trend Micro
2009-02-27 09:40 . 2009-02-27 09:39 410,984 --a------ c:\windows\system32\deploytk.dll
2009-02-25 09:11 . 2009-01-09 20:19 1,089,883 --------- c:\windows\system32\dllcache\ntprint.cat
2009-02-14 11:55 . 2009-03-05 23:35 54,156 --ah----- c:\windows\QTFont.qfn
2009-02-14 11:55 . 2009-02-14 11:55 1,409 --a------ c:\windows\QTFont.for
2009-02-14 10:03 . 2009-02-14 10:03 <REP> d-------- c:\documents and settings\All Users\Application Data\{148D8B8A-8F96-4822-81EC-D510B626B7D5}
2009-02-14 09:24 . 2009-02-14 09:24 <REP> d-------- c:\documents and settings\Philippe\Application Data\Uniblue
2009-02-14 09:24 . 2009-02-14 10:06 <REP> d-------- c:\documents and settings\All Users\Application Data\DriverScanner
2009-02-11 01:10 . 2009-02-11 01:10 268 --ah----- C:\sqmdata17.sqm
2009-02-09 19:12 . 2009-03-09 20:06 <REP> d-------- c:\program files\SPAMfighter
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-03-09 18:42 --------- d-----w c:\documents and settings\All Users\Application Data\Google Updater
2009-03-08 21:59 --------- d-----w c:\documents and settings\Philippe\Application Data\OpenOffice.org2
2009-03-07 16:50 --------- d-----w c:\program files\Finale 2002
2009-03-07 16:21 --------- d-----w c:\program files\Finale 2007
2009-03-07 06:51 --------- d---a-w c:\documents and settings\All Users\Application Data\TEMP
2009-03-03 11:58 --------- d-----w c:\program files\SPYWAREfighter
2009-02-27 08:39 --------- d-----w c:\program files\Java
2009-02-17 20:37 --------- d-----w c:\documents and settings\Philippe\Application Data\Canon
2009-02-04 17:07 --------- d-----w c:\program files\Google
2009-01-31 11:09 --------- d-----w c:\program files\Mafia
2009-01-16 22:23 --------- d-----w c:\program files\Fichiers communs\Iconix
2008-08-03 09:55 10,847 -c--a-w c:\documents and settings\Philippe\Application Data\mdb.bin
2008-06-30 18:44 24,354,672 -c--a-w c:\program files\setupfre.exe
2008-06-16 17:04 1,520,000 -c--a-w c:\program files\spamfighter_web.exe
2008-02-17 23:05 1,250 -c--a-w c:\documents and settings\Incomplete\downloads.dat
2007-07-02 18:35 26,424 -c--a-w c:\documents and settings\Philippe\TB2Categories000.dat
2006-07-18 16:34 278,528 -c--a-w c:\program files\Fichiers communs\FDEUnInstaller.exe
2006-05-27 12:36 6,224,768 -c--a-w c:\documents and settings\Mathieu\alcohol-120_alcohol_120_1.9.5_build_3823_francais_11016.exe
2006-05-27 12:30 7,973,874 -c--a-w c:\documents and settings\Mathieu\Azureus_2.4.0.2_Win32.setup.exe
2006-04-20 17:06 1,809,591 -c--a-w c:\documents and settings\Mathieu\MusicTime.zip
2006-03-21 19:08 11,817,800 -c--a-w c:\program files\GoogleEarth.exe
2006-03-19 11:24 95,290,962 -c--a-w c:\program files\OOo_2.0.1_Win32Intel_install_wJRE.exe
2006-01-31 12:09 82,172,918 -c--a-w c:\documents and settings\Mathieu\Ghinzu - 2004 - Blow (mp3 128).zip
2006-01-28 23:26 197,119,571 -c--a-w c:\documents and settings\Mathieu\Belgian Indie Pop Rock (31 Songs) Mp3 - Soulwax - Ghinzu - Girls In Hawaii - Deus - Hooverphonic.zip
2006-01-21 17:14 226,105,268 -c--a-w c:\documents and settings\Mathieu\OK - Radiohead - All B-Sides.zip
2005-12-15 08:47 49,451,134 -c--a-w c:\program files\openofficeorg3.cab
2005-12-15 08:47 2,339,752 -c--a-w c:\program files\openofficeorg4.cab
2005-12-15 08:43 6,250,717 -c--a-w c:\program files\openofficeorg2.cab
2005-12-15 08:43 17,710,121 -c--a-w c:\program files\openofficeorg1.cab
2005-12-15 08:42 217 -c--a-w c:\program files\setup.ini
2005-12-15 08:42 2,731,520 -c--a-w c:\program files\openofficeorg20.msi
2002-03-11 09:06 1,822,520 -c--a-w c:\program files\instmsiw.exe
2002-03-11 08:45 1,708,856 -c--a-w c:\program files\instmsia.exe
2000-05-22 13:09 6,772 -c--a-w c:\program files\UNWISE.INI
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2004-10-14 1404928]
"igfxtray"="c:\windows\system32\igfxtray.exe" [2005-09-20 94208]
"igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2005-09-20 77824]
"igfxpers"="c:\windows\system32\igfxpers.exe" [2005-09-20 114688]
"dla"="c:\windows\system32\dla\tfswctrl.exe" [2005-05-31 122941]
"VX3000"="c:\windows\vVX3000.exe" [2006-06-30 707376]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-02-05 81000]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2007-10-18 5724184]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"msacm.divxa32"= DivXa32.acm
"vidc.DIV3"= DivXc32.dll
"vidc.DIV4"= DivXc32f.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Photo Downloader]
--a------ 2007-03-16 10:45 63712 c:\program files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
--a------ 2008-06-12 02:38 34672 c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DMXLauncher]
--a------ 2005-01-27 01:02 86016 c:\program files\Dell\Media Experience\DMXLauncher.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DVDLauncher]
--------- 2005-02-23 16:19 53248 c:\program files\CyberLink\PowerDVD\DVDLauncher.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\e-TF1]
--a------ 2008-03-05 11:47 397312 c:\program files\TF1Vision\TF1vision.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eBayToolbar]
--a------ 2009-01-15 20:02 632048 c:\program files\eBay\eBay Toolbar2\eBayTBDaemon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IconixOEAddOn]
--a------ 2008-11-10 11:52 333584 c:\program files\Iconix\OEAddOn\OEdmn_4.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMJPMIG8.1]
--a------ 2004-08-05 12:00 208952 c:\windows\ime\imjp8_1\imjpmig.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSScheduler]
--a------ 2004-07-27 16:50 81920 c:\program files\Fichiers communs\InstallShield\UpdateService\issch.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
--a------ 2006-02-23 14:45 278528 c:\program files\iTunes\iTunesHelper.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LifeCam]
--a------ 2006-06-30 00:54 269104 c:\program files\Microsoft LifeCam\LifeExp.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsgCenterExe]
--a------ 2008-04-17 15:08 69632 c:\program files\Fichiers communs\Real\Update_OB\RealOneMessageCenter.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OpwareSE2]
--a------ 2003-05-08 12:00 49152 c:\program files\ScanSoft\OmniPageSE2.0\opwareSE2.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
--a------ 2006-04-15 20:15 77824 c:\program files\QuickTime\qttask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RegistryMechanic]
--a------ 2008-07-08 15:41 2828184 c:\program files\Registry Mechanic\RegMech.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SPAMfighter Agent]
--a------ 2009-02-03 13:33 325768 c:\program files\SPAMfighter\SFAgent.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
--a------ 2009-02-27 09:39 136600 c:\program files\Java\jre6\bin\jusched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
--a------ 2008-04-17 15:08 185896 c:\program files\Fichiers communs\Real\Update_OB\realsched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe]
--a------ 2008-05-06 09:42 202088 c:\program files\TomTom HOME 2\HOMERunner.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WMPNSCFG]
--a------ 2006-11-03 08:59 204288 c:\program files\Windows Media Player\wmpnscfg.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\eMule\\emule.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Microsoft LifeCam\\LifeCam.exe"=
"c:\\Program Files\\Microsoft LifeCam\\LifeExp.exe"=
"c:\\Program Files\\Real\\RealPlayer\\realplay.exe"=
"c:\\WINDOWS\\system32\\java.exe"=
"c:\\Program Files\\Electronic Arts\\La Bataille pour la Terre du Milieu II\\game.dat"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"4661:TCP"= 4661:TCP:4661
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2008-10-14 114768]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2008-10-14 20560]
R2 IconixService;Iconix Update Service;c:\program files\Fichiers communs\Iconix\IconixService.exe [2008-11-12 258832]
R2 SPAMfighter Update Service;SPAMfighter Update Service;c:\program files\SPAMfighter\sfus.exe [2009-02-03 184968]
S3 RDID1071;EDIROL M-16DX;c:\windows\system32\drivers\RDWM1071.sys [2008-05-03 136064]
S3 RescueDrv;Inventel Access Point USB Rescue Driver;c:\windows\system32\Drivers\resc_dwb.sys --> c:\windows\system32\Drivers\resc_dwb.sys [?]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{c4a0e082-860f-11dc-a610-001320723d3b}]
\Shell\AutoRun\command - F:\InstallTomTomHOME.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d3afb8e4-8231-11dd-a746-5a664020c492}]
\Shell\AutoRun\command - F:\LaunchU3.exe -a
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{365A8DEF-6416-5375-0707-020704010208}]
c:\windows\lsass.exe
.
Contenu du dossier 'Tâches planifiées'
2005-10-01 c:\windows\Tasks\Rappel d'abonnement 1 auprès de l'ISP.job
- c:\windows\system32\OOBE\oobebaln.exe [2008-04-14 03:34]
.
- - - - ORPHELINS SUPPRIMES - - - -
Notify-WgaLogon - (no file)
MSConfigStartUp-au - c:\program files\Dealio\DealioAU.exe
MSConfigStartUp-BitTorrent - c:\program files\BitTorrent\bittorrent.exe
MSConfigStartUp-DAEMON Tools Lite - c:\program files\DAEMON Tools Lite\daemon.exe
MSConfigStartUp-LCR - c:\program files\XemiComputers\Lecture Recorder\LCR.exe
MSConfigStartUp-Picasa Media Detector - c:\program files\Picasa2\PicasaMediaDetector.exe
MSConfigStartUp-SemanticInsight - c:\program files\RXToolBar\Semantic Insight\SemanticInsight.exe
MSConfigStartUp-WOOKIT - c:\progra~1\Wanadoo\Shell.exe
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.orange.fr/
uDefault_Search_URL = hxxp://www.google.com/ie
mWindow Title =
uInternet Connection Wizard,ShellNext = iexplore
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
IE: Recherche sur eBay - c:\program files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
FF - ProfilePath - c:\documents and settings\Philippe\Application Data\Mozilla\Firefox\Profiles\[u]0/uv64arfp.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
FF - plugin: c:\program files\Google\Google Updater\2.4.1368.5602\npCIDetect13.dll
FF - plugin: c:\program files\Google\Picasa3\npPicasa2.dll
FF - plugin: c:\program files\Google\Picasa3\npPicasa3.dll
---- PARAMETRES FIREFOX ----
FF - user.js: yahoo.homepage.dontask - true.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-03-09 20:08:11
Windows 5.1.2600 Service Pack 3 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\Ø•€|ÿÿÿÿ•€|ù•9~*]
"C040311900063D11C8EF10054038389C"="C?\\WINDOWS\\system32\\FM20ENU.DLL"
.
------------------------ Autres processus actifs ------------------------
.
c:\program files\Alwil Software\Avast4\aswUpdSv.exe
c:\program files\Alwil Software\Avast4\ashServ.exe
c:\windows\system32\drivers\CDANTSRV.EXE
c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Microsoft LifeCam\MSCamSvc.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\program files\Canon\CAL\CALMAIN.exe
.
**************************************************************************
.
Heure de fin: 2009-03-09 20:19:06 - La machine a redémarré
ComboFix-quarantined-files.txt 2009-03-09 19:18:59
Avant-CF: 13 604 220 928 octets libres
Après-CF: 13,555,367,936 octets libres
WindowsXP-KB310994-SP2-Home-BootDisk-FRA.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP dition familiale" /noexecute=optin /fastdetect
242 --- E O F --- 2009-03-05 21:01:35