Affiché fichié caché

Résolu
bi9 Messages postés 121 Date d'inscription   Statut Membre Dernière intervention   -  
jlpjlp Messages postés 51580 Date d'inscription   Statut Contributeur sécurité Dernière intervention   -
Bonjour,Aidé moi: j'ai un virus qui a infecté mon ordinateur et des lors je cliq sur outil, option des dossion et affiché les fichié cachés mais ca ne marche pas et la case se decoche toute seule!
A voir également:

13 réponses

jlpjlp Messages postés 51580 Date d'inscription   Statut Contributeur sécurité Dernière intervention   5 040
 
slt,

Télécharge ici :

http://images.malwareremoval.com/random/RSIT.exe

random's system information tool (RSIT) par andom/random et sauvegarde-le sur le Bureau.

Double-clique sur RSIT.exe afin de lancer RSIT.

Clique Continue à l'écran Disclaimer.

Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.

Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront.

Poste le contenu de log.txt (<<qui sera affiché)
ainsi que de info.txt (<<qui sera réduit dans la Barre des Tâches).

NB : Les rapports sont sauvegardés dans le dossier C:\rsit
0
bi9 Messages postés 121 Date d'inscription   Statut Membre Dernière intervention   1
 
Logfile of random's system information tool 1.06 (written by random/random)
Run by Binef at 2009-03-22 19:21:29
Microsoft Windows XP Professionnel Service Pack 2
System drive C: has 36 GB (37%) free of 95 GB
Total RAM: 1014 MB (41% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:22:14, on 22/03/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\drivers\ctfmon.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\sm56hlpr.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\taskswitch.exe
C:\WINDOWS\system32\fast.exe
C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\CardDetector\ICON225\CardDetector.exe
C:\Program Files\SuperCopier2\SuperCopier2.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBVE.EXE
C:\Program Files\Internet Download Manager\IDMan.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\Bandoo\Bandoo.exe
C:\WINDOWS\system32\Fast.exe
C:\WINDOWS\system32\WgaTray.exe
C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\PROGRA~1\Bandoo\BndCore.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Encarta Web Companion\2007\ENCWCSVR.EXE
C:\WINDOWS\system32\msiexec.exe
C:\Documents and Settings\Binef\Bureau\RSIT.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\trend micro\Binef.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.fr/keyword/%s
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\system32\drivers\ctfmon.exe
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files\Adobe\/Adobe Contribute CS3/contributeieplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (file missing)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: DealioBHO Class - {6A87B991-A31F-4130-AE72-6D0C294BF082} - C:\Program Files\Dealio\kb124\Dealio.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: BHO pour Compagnon Web Encarta - {955BE0B8-BC85-4CAF-856E-8E0D8B610560} - C:\Program Files\Fichiers communs\Microsoft Shared\Encarta Web Companion\2007\ENCWCBAR.DLL
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Compagnon Web Encarta - {147D6308-0614-4112-89B1-31402F9B82C4} - C:\Program Files\Fichiers communs\Microsoft Shared\Encarta Web Companion\2007\ENCWCBAR.DLL
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files\Adobe\/Adobe Contribute CS3/contributeieplugin.dll
O3 - Toolbar: Dealio - {E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F} - C:\Program Files\Dealio\kb124\Dealio.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [Vistadrv] C:\Program Files\VistaDrives\vsdrv.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\K-Lite Codec Pack\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [BackgroundSwitcher] C:\WINDOWS\system32\bgswitch.exe
O4 - HKLM\..\Run: [CoolSwitch] C:\WINDOWS\system32\taskswitch.exe
O4 - HKLM\..\Run: [FastUser] C:\WINDOWS\system32\fast.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [Adobe_ID0EYTHM] C:\PROGRA~1\FICHIE~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.EXE
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [CardDetectorICON225] C:\Program Files\CardDetector\ICON225\CardDetector.exe
O4 - HKLM\..\Run: [BEWINTERNET-RTUSessionManager] "C:\Program Files\Connection Kit\SessionManager\SessionManager.exe"
O4 - HKLM\..\Run: [au] C:\Program Files\Dealio\DealioAU.exe
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares\Ares.exe" -h
O4 - HKCU\..\Run: [EPSON Stylus DX5000 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBVE.EXE /FU "C:\WINDOWS\TEMP\E_SA7.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [CTFMON.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [nltide3] cmd.exe /C rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [nltide2] cmd.exe /C rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,L,,4,N (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-20\..\RunOnce: [nltide3] cmd.exe /C rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide3] cmd.exe /C rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide3] cmd.exe /C rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user')
O4 - Global Startup: La Solution Ciel.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O8 - Extra context menu item: Ajouter au fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Compare Prices with &Dealio - C:\Documents and Settings\Binef\Application Data\Dealio\kb124\res\DealioSearch.html
O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Download all links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: Download FLV video content with IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm
O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Barre de recherche Encarta - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Fichiers communs\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb124\Dealio.dll
O9 - Extra 'Tools' menuitem: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb124\Dealio.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O20 - AppInit_DLLs: c:\progra~1\bandoo\bndhook.dll
O23 - Service: Adobe Version Cue CS3 {fr_FR} (Adobe Version Cue CS3) - Adobe Systems Incorporated - C:\Program Files\Fichiers communs\Adobe\Adobe Version Cue CS3\Server\bin\VersionCueCS3.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bandoo Coordinator - Discordia Limited - C:\PROGRA~1\Bandoo\Bandoo.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
0
jlpjlp Messages postés 51580 Date d'inscription   Statut Contributeur sécurité Dernière intervention   5 040
 
Pour fusionner:

http://img.photobucket.com/albums/v666/sUBs/CFScript.gif

_______________

telecharge combofix:

http://download.bleepingcomputer.com/sUBs/ComboFix.exe
Sauvegarde le sur ton bureau et pas ailleurs !

_________________

Ferme tous tes navigateurs (donc copie ou imprime les instructions avant)

Crée un nouveau document texte : clic droit de souris sur le bureau > Nouveau > Document Texte, et copie dedans les lignes suivantes :





File::
E:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe
E:\starsky.exe
Registry::
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9b773685-0727-11de-81ea-000ae4b321eb}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{b020677e-0e24-11de-8210-000ae4b321eb}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e9cf8478-fcd6-11dd-81ad-000ae4b321eb}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e9cf9271-fcd6-11dd-81ad-000ae4b321eb}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{f7b6c914-027d-11de-81d6-000ae4b321eb}]



Enregistre ce fichier sous le nom CFscript


Fait un glisser/déposer de ce fichier CFscrïpt sur le fichier ComboFix.exe

Clique sur le fichier CFScript, maintient le doigt enfoncé et glisse la souris pour que l'icône du CFScript vienne recouvrir l'icône de Combofix. Relache la souris. Combofix va démarrer.

Une fenêtre bleue va apparaître: au message qui apparaît ( Type 1 to continue, or 2 to abort) , tape 1 puis valide.

Patiente le temps du scan.Le bureau va disparaître à plusieurs reprises: c'est normal!

Ne touche à rien tant que le scan n'est pas terminé.

Une fois le scan achevé, un rapport va s'afficher: poste son contenu.


Si le fichier ne s'ouvre pas, il se trouve ici > C:\ComboFix.txt
0
bi9 Messages postés 121 Date d'inscription   Statut Membre Dernière intervention   1
 
ComboFix 09-03-22.01 - Binef 2009-03-24 0:38:37.1 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.1014.599 [GMT 0:00]
Lancé depuis: c:\documents and settings\Binef\Bureau\ComboFix.exe
Commutateurs utilisés :: c:\documents and settings\Binef\Bureau\CFscript.txt
AV: ESET NOD32 Antivirus 3.0 *On-access scanning disabled* (Updated)
* Un nouveau point de restauration a été créé

FILE ::
e:\recycler\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe
E:\starsky.exe
.
[color=purple]Les fichiers ci-dessous ont été désactivés pendant l'exécution:[/color]
c:\program files\SuperCopier2\SC2Hook.dll


(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\Binef\Mes documents\Mes images\Privé\Mes Photos Perso\Desktop_.ini
C:\Documents
c:\windows\system32\aaisolv.dll
c:\windows\system32\drivers\ctfmon.exe
c:\windows\system32\Plugins
c:\windows\system32\Plugins\APIs\c.api
c:\windows\system32\Plugins\APIs\cpp.api
c:\windows\system32\Plugins\APIs\cs.api
c:\windows\system32\Plugins\APIs\css.api
c:\windows\system32\Plugins\APIs\flash.api
c:\windows\system32\Plugins\APIs\java.api
c:\windows\system32\Plugins\APIs\javascript.api
c:\windows\system32\Plugins\APIs\lisp.api
c:\windows\system32\Plugins\APIs\perl.api
c:\windows\system32\Plugins\APIs\php.api
c:\windows\system32\Plugins\APIs\python.api
c:\windows\system32\Plugins\APIs\tex.api
c:\windows\system32\Plugins\APIs\vb.api
c:\windows\system32\Plugins\APIs\vhdl.api
c:\windows\system32\Plugins\APIs\xml.api
c:\windows\system32\Plugins\ConvertExt.dll
c:\windows\system32\Plugins\ConvertExt.ini
c:\windows\system32\Plugins\ExplorerPlugin.dll
c:\windows\system32\Plugins\FunctionListPlugin.dll
c:\windows\system32\Plugins\HexEditorPlugin.dll
c:\windows\system32\Plugins\NPPTextFX.dll
c:\windows\system32\Plugins\NPPTextFX.ini
c:\windows\system32\Plugins\NPPTextFX\AsciiToEBCDIC.bin
c:\windows\system32\Plugins\NPPTextFX\NPPTextFXdemo.TXT
c:\windows\system32\Plugins\NPPTextFX\W3C-CSSValidator.htm
c:\windows\system32\Plugins\NPPTextFX\W3C-HTMLValidator.htm
c:\windows\system32\x64

.
((((((((((((((((((((((((((((( Fichiers créés du 2009-02-24 au 2009-03-24 ))))))))))))))))))))))))))))))))))))
.

2009-03-24 00:28 . 2009-03-24 00:28 0 --a------ C:\texte
2009-03-24 00:28 . 2009-03-24 00:28 0 --a------ C:\and
2009-03-22 19:21 . 2009-03-22 19:22 <REP> d-------- C:\rsit
2009-03-22 19:21 . 2009-03-22 19:22 <REP> d-------- c:\program files\trend micro
2009-03-22 19:20 . 2009-03-22 19:20 <REP> d-------- c:\program files\Opera
2009-03-22 14:01 . 2009-03-22 14:01 <REP> d-------- c:\program files\ComptaOne
2009-03-22 14:01 . 2009-03-22 14:01 <REP> d-------- c:\documents and settings\All Users\Application Data\4D
2009-03-22 09:16 . 2009-03-22 09:16 <REP> d-------- c:\program files\Dealio
2009-03-22 09:16 . 2009-03-22 09:16 <REP> d-------- c:\documents and settings\Binef\Application Data\Dealio
2009-03-22 09:13 . 2009-03-22 09:19 <REP> d-------- c:\program files\Mp3TorrentDownload
2009-03-22 02:23 . 2009-03-22 21:09 <REP> d-------- c:\program files\Free FLV Converter
2009-03-22 02:22 . 2008-06-04 18:42 1,081,616 --a------ c:\windows\system32\mscomctl.ocx
2009-03-22 02:22 . 2008-06-04 18:42 364,544 --a------ c:\windows\system32\PropertyGrid.ocx
2009-03-22 02:22 . 2008-06-13 01:00 225,280 --a------ c:\windows\system32\TubeFinder.exe
2009-03-22 02:22 . 2008-06-04 17:42 208,500 --a------ c:\windows\system32\ReyXpBasics.tlb
2009-03-22 02:22 . 2008-06-04 18:42 152,848 --a------ c:\windows\system32\COMDLG32.OCX
2009-03-22 02:22 . 2008-06-04 18:42 24,576 --a------ c:\windows\system32\ControlSubX.ocx
2009-03-19 07:36 . 2009-03-19 20:15 <REP> d-------- c:\program files\MBase
2009-03-19 07:27 . 2009-03-19 20:16 <REP> d-------- c:\program files\Vqao
2009-03-19 07:16 . 2009-03-19 07:16 <REP> d-------- c:\windows\Logs
2009-03-19 07:16 . 2008-07-12 08:18 3,851,784 --a------ c:\windows\system32\D3DX9_39.dll
2009-03-19 07:16 . 2009-01-19 17:01 585,728 --------- c:\windows\system32\AReadyLB.dll
2009-03-19 07:16 . 2009-01-19 17:01 229,376 --------- c:\windows\system32\AudDevicePlugin.dll
2009-03-19 07:16 . 2009-01-19 17:01 183,129 --------- c:\windows\system32\AM Install1.INF
2009-03-19 07:14 . 2009-03-19 07:15 <REP> d-------- c:\documents and settings\Binef\Application Data\J River
2009-03-19 01:16 . 2009-03-19 01:18 <REP> d-------- c:\documents and settings\Binef\Application Data\vlc
2009-03-18 21:50 . 2009-03-18 21:50 23 -rahs---- c:\windows\system32\drivers\autorun.ini
2009-03-18 21:01 . 2009-03-18 21:01 502 --a------ c:\windows\[u]0[/u]
2009-03-18 21:01 . 2009-03-18 21:01 81 --a------ c:\windows\Times New Roman
2009-03-18 21:00 . 2009-03-18 21:00 <REP> d-------- c:\documents and settings\All Users\Application Data\InstallShield
2009-03-17 08:39 . 2009-03-17 11:49 <REP> d-------- c:\program files\Bandoo
2009-03-17 08:39 . 2009-03-17 08:42 <REP> d-------- c:\documents and settings\All Users\Application Data\Bandoo
2009-03-17 00:47 . 2009-03-20 08:42 <REP> d-------- c:\program files\Internet Download Manager
2009-03-17 00:47 . 2009-03-18 07:58 <REP> d-------- c:\documents and settings\Binef\Application Data\IDM
2009-03-17 00:47 . 2009-03-24 00:42 <REP> d-------- c:\documents and settings\Binef\Application Data\DMCache
2009-03-11 10:14 . 2009-03-11 10:15 <REP> d-------- c:\program files\Connection Kit
2009-03-11 10:14 . 2006-03-01 20:53 94,208 --a------ c:\windows\system32\w32n50.dll
2009-03-11 10:14 . 2003-09-23 12:38 34,688 --a------ c:\windows\system32\pcampr5.sys
2009-03-11 10:14 . 2006-03-01 20:53 32,128 --a------ c:\windows\system32\pcandis5.sys
2009-03-11 10:11 . 2009-03-11 10:11 <REP> d-------- c:\program files\Fichiers communs\France Telecom
2009-03-11 10:10 . 2008-01-15 20:58 95,744 -ra------ c:\windows\system32\drivers\Gt51Ip.sys
2009-03-11 10:10 . 2008-01-15 20:58 51,968 -ra------ c:\windows\system32\drivers\gt72ubus.sys
2009-03-11 10:10 . 2008-01-15 20:58 8,064 -ra------ c:\windows\system32\drivers\gtptser.sys
2009-03-11 10:09 . 2009-03-11 10:09 <REP> d-------- c:\program files\CardDetector
2009-03-11 00:44 . 2009-03-21 15:42 1,208 --a------ c:\windows\Radio_Fr.ini
2009-03-11 00:43 . 2009-03-21 15:42 <REP> d-------- c:\program files\Radio Fr Solo
2009-03-10 13:04 . 2009-03-10 13:20 <REP> d-------- c:\windows\temporaire
2009-03-08 21:17 . 2008-03-03 14:25 5,702 --ah----- c:\windows\nod32restoretemdono.reg
2009-03-08 21:17 . 2008-03-03 18:21 568 --ah----- c:\windows\nod32fixtemdono.reg
2009-03-08 21:15 . 2009-03-08 21:15 <REP> d-------- c:\program files\ESET
2009-03-08 21:15 . 2009-03-08 21:15 <REP> d-------- c:\documents and settings\All Users\Application Data\ESET
2009-03-07 13:58 . 2006-08-10 02:02 75,264 --a------ c:\windows\system32\E_FLBBVE.DLL
2009-03-07 13:58 . 2006-04-19 02:00 62,976 --a------ c:\windows\system32\E_FD4BBVE.DLL
2009-03-07 13:58 . 2004-09-10 20:12 49,152 --a------ c:\windows\system32\E_DCINST.DLL
2009-03-07 13:57 . 2009-03-07 13:59 <REP> d-------- c:\documents and settings\All Users\Application Data\EPSON
2009-03-07 13:55 . 2009-03-07 13:57 <REP> d-------- c:\program files\epson
2009-03-07 13:54 . 2006-10-13 00:00 61,952 --a------ c:\windows\system32\escwiad.dll
2009-03-07 13:51 . 2004-08-03 23:01 25,856 --a------ c:\windows\system32\drivers\usbprint.sys
2009-03-07 13:51 . 2004-08-03 23:01 25,856 --a--c--- c:\windows\system32\dllcache\usbprint.sys
2009-03-07 13:40 . 2004-08-03 23:08 31,616 --a------ c:\windows\system32\drivers\usbccgp.sys
2009-03-07 13:40 . 2004-08-03 23:08 31,616 --a--c--- c:\windows\system32\dllcache\usbccgp.sys
2009-03-05 21:09 . 2009-02-11 14:55 <REP> d--h----- c:\documents and settings\Administrateur\Voisinage réseau
2009-03-05 21:09 . 2009-02-11 14:55 <REP> d--h----- c:\documents and settings\Administrateur\Voisinage d'impression
2009-03-05 21:09 . 2009-02-11 14:05 <REP> d--h----- c:\documents and settings\Administrateur\Modèles
2009-03-05 21:09 . 2009-02-11 14:55 <REP> d-------- c:\documents and settings\Administrateur\Mes documents
2009-03-05 21:09 . 2009-02-11 14:55 <REP> dr------- c:\documents and settings\Administrateur\Menu Démarrer
2009-03-05 21:09 . 2009-02-11 14:55 <REP> d-------- c:\documents and settings\Administrateur\Favoris
2009-03-05 21:09 . 2009-02-11 14:55 <REP> d-------- c:\documents and settings\Administrateur\Bureau
2009-03-05 21:09 . 2009-03-05 21:09 <REP> d-------- c:\documents and settings\Administrateur
2009-03-02 16:51 . 2009-03-02 17:02 <REP> d-------- c:\program files\Empire Interactive
2009-03-01 09:31 . 2009-03-01 09:31 <REP> d-------- c:\documents and settings\All Users\Application Data\FLEXnet
2009-03-01 04:00 . 2009-03-01 04:00 <REP> d-------- c:\program files\Fichiers communs\Control Panels
2009-03-01 03:57 . 2009-03-01 03:57 <REP> d-------- c:\documents and settings\All Users\Application Data\ALM
2009-03-01 03:42 . 2009-03-01 03:42 <REP> d-------- c:\program files\QuickTime
2009-03-01 03:33 . 2007-02-20 16:04 2,463,976 --a------ c:\windows\system32\NPSWF32.dll
2009-03-01 03:33 . 2007-02-20 16:04 190,696 --a------ c:\windows\system32\NPSWF32_FlashUtil.exe
2009-03-01 03:20 . 2009-03-01 03:20 <REP> d-------- c:\program files\Fichiers communs\Macrovision Shared
2009-02-28 02:28 . 2009-02-28 02:30 <REP> d-------- c:\program files\Microsoft Etudes
2009-02-28 02:27 . 2009-02-28 02:27 <REP> d-------- c:\program files\Learning Essentials
2009-02-28 02:27 . 2005-05-26 15:34 2,297,552 --a------ c:\windows\system32\d3dx9_26.dll

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-03-24 00:41 --------- d-----w c:\program files\SuperCopier2
2009-03-23 20:02 --------- d-----w c:\documents and settings\Binef\Application Data\uTorrent
2009-03-23 11:08 --------- d-----w c:\documents and settings\All Users\Application Data\Microsoft Help
2009-03-19 20:54 --------- d--h--w c:\program files\InstallShield Installation Information
2009-03-19 20:17 --------- d-----w c:\program files\Google
2009-03-19 01:16 --------- d-----w c:\documents and settings\Binef\Application Data\dvdcss
2009-03-18 21:00 --------- d-----w c:\program files\Fichiers communs\InstallShield
2009-03-02 16:52 12,400 ----a-w c:\windows\system32\drivers\secdrv.sys
2009-03-01 04:02 --------- d-----w c:\program files\Fichiers communs\Adobe
2009-02-21 00:30 --------- d-----w c:\program files\Total Video Converter
2009-02-17 08:41 --------- d-----w c:\program files\Fichiers communs\Everstrike Software
2009-02-17 08:41 --------- d-----w c:\program files\Everstrike Software
2009-02-17 00:25 --------- d-----w c:\documents and settings\Binef\Application Data\Apple Computer
2009-02-17 00:14 --------- d-----w c:\documents and settings\Binef\Application Data\Media Player Classic
2009-02-16 18:26 --------- d-----w c:\program files\iTunes
2009-02-16 18:26 --------- d-----w c:\program files\iPod
2009-02-16 18:26 --------- d-----w c:\documents and settings\All Users\Application Data\Apple Computer
2009-02-16 18:26 --------- d-----w c:\documents and settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
2009-02-16 18:25 --------- d-----w c:\program files\Fichiers communs\Apple
2009-02-16 18:25 --------- d-----w c:\program files\Bonjour
2009-02-16 18:24 --------- d-----w c:\program files\Apple Software Update
2009-02-16 18:24 --------- d-----w c:\documents and settings\All Users\Application Data\Apple
2009-02-12 13:10 --------- d-----w c:\program files\Fichiers communs\Ciel
2009-02-12 13:10 --------- d-----w c:\program files\Ciel
2009-02-12 12:25 --------- d-----w c:\documents and settings\All Users\Application Data\Ciel
2009-02-12 12:24 155,995 ----a-w c:\windows\java\Packages\1ZPJZRBX.ZIP
2009-02-12 12:24 --------- d-----w c:\program files\Fichiers communs\Sage
2009-02-12 12:24 --------- d-----w c:\documents and settings\Binef\Application Data\Ahead
2009-02-11 18:25 --------- d-----w c:\program files\Windows Live SkyDrive
2009-02-11 18:25 --------- d-----w c:\program files\Windows Live
2009-02-11 18:25 --------- d-----w c:\program files\Microsoft
2009-02-11 17:51 --------- d-----w c:\program files\Fichiers communs\Windows Live
2009-02-11 16:43 --------- d-----w c:\program files\K-Lite Codec Pack
2009-02-11 16:41 --------- d-----w c:\program files\MSBuild
2009-02-11 16:41 --------- d-----w c:\program files\Microsoft Works
2009-02-11 16:39 --------- d-----w c:\program files\Microsoft.NET
2009-02-11 16:37 --------- d-----w c:\program files\Microsoft Visual Studio 8
2009-02-11 16:35 --------- d-----w c:\program files\Fichiers communs\Ahead
2009-02-11 16:34 --------- d-----w c:\program files\Nero
2009-02-11 16:34 --------- d-----w c:\documents and settings\All Users\Application Data\Nero
2009-02-11 16:23 --------- d-----w c:\program files\VideoLAN
2009-02-11 16:19 --------- d-----w c:\documents and settings\Binef\Application Data\Notepad++
2009-02-11 16:11 --------- d-----w c:\program files\AVG
2009-02-11 16:07 --------- d-----w c:\documents and settings\Binef\Application Data\GRETECH
2009-02-11 16:06 --------- d-----w c:\program files\GRETECH
2009-02-11 16:05 --------- d-----w c:\program files\uTorrent
2009-02-11 15:49 --------- d-----w c:\program files\Intel
2009-02-11 15:48 --------- d-----w c:\program files\Analog Devices
2009-02-11 14:36 --------- d-----w c:\program files\Synaptics
2009-02-11 14:20 --------- d-----w c:\program files\Reference Assemblies
2009-02-11 14:17 --------- d-----w c:\program files\Windows Media Connect 2
2009-02-11 14:15 --------- d-----w c:\program files\microsoft frontpage
2009-02-11 14:11 639,224 ----a-w c:\windows\system32\drivers\sptd.sys
2009-02-11 14:11 --------- d-----w c:\program files\VistaDrives
2009-02-11 14:10 --------- d-----w c:\program files\WGA
2009-02-11 14:07 --------- d-----w c:\program files\Services en ligne
.

------- Sigcheck -------

2006-12-22 18:39 2202240 4b7bc613449d79ab2305884c758d8372 c:\windows\system32\ntkrnlpa.exe

2006-12-22 18:43 2324992 495d44dc5ca80f0e1b33fe516dae3de3 c:\windows\system32\ntoskrnl.exe

2006-11-17 12:22 1407488 804e8045af5567858f111e84703a48e3 c:\windows\explorer.exe
2006-11-17 12:22 1407488 804e8045af5567858f111e84703a48e3 c:\windows\temporaire\explorer.exe
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SuperCopier2.exe"="c:\program files\SuperCopier2\SuperCopier2.exe" [2006-07-07 1052672]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe" [2006-11-16 139264]
"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2009-02-06 3885408]
"EPSON Stylus DX5000 Series"="c:\windows\System32\spool\DRIVERS\W32X86\3\E_FATIBVE.EXE" [2006-09-22 139264]
"IDMan"="c:\program files\Internet Download Manager\IDMan.exe" [2008-01-10 2577840]
"CTFMON.exe"="c:\windows\system32\ctfmon.exe" [2004-08-04 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2005-03-22 155648]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2005-03-22 126976]
"Persistence"="c:\windows\system32\igfxpers.exe" [2006-10-06 94208]
"Vistadrv"="c:\program files\VistaDrives\vsdrv.exe" [2006-07-30 121089]
"SynTPLpr"="c:\program files\Synaptics\SynTP\SynTPLpr.exe" [2004-10-05 98394]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2004-10-05 688218]
"QuickTime Task"="c:\program files\K-Lite Codec Pack\QuickTime\qttask.exe" [2008-09-06 413696]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2008-09-08 289576]
"BackgroundSwitcher"="c:\windows\system32\bgswitch.exe" [2001-10-19 19520]
"CoolSwitch"="c:\windows\system32\taskswitch.exe" [2001-10-19 45632]
"FastUser"="c:\windows\system32\fast.exe" [2001-10-19 49216]
"Acrobat Assistant 8.0"="c:\program files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe" [2007-05-10 624248]
"Adobe_ID0EYTHM"="c:\progra~1\FICHIE~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.EXE" [2007-03-20 1884160]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2008-02-20 1443072]
"CardDetectorICON225"="c:\program files\CardDetector\ICON225\CardDetector.exe" [2008-03-11 270336]
"BEWINTERNET-RTUSessionManager"="c:\program files\Connection Kit\SessionManager\SessionManager.exe" [2008-04-09 127728]
"au"="c:\program files\Dealio\DealioAU.exe" [2007-10-09 492896]
"High Definition Audio Property Page Shortcut"="HDAShCut.exe" [2006-02-26 c:\windows\system32\hdashcut.exe]
"SMSERIAL"="sm56hlpr.exe" [2005-04-26 c:\windows\sm56hlpr.exe]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-04 15360]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"nltide1"="move" [X]
"nltide_3"="advpack.dll" [2006-11-13 c:\windows\system32\advpack.dll]

c:\documents and settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
La Solution Ciel.lnk - c:\program files\Ciel\Starter.exe [2009-02-12 524288]
Lancement rapide d'Adobe Reader.lnk - c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe [2006-10-23 40048]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoSMHelp"= 1 (0x1)
"ForceClassicControlPanel"= 1 (0x1)

[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoSMHelp"= 1 (0x1)
"ForceClassicControlPanel"= 1 (0x1)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\progra~1\bandoo\bndhook.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"msacm.divxa32"= msaud32_divx.acm

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Fichiers communs\\Adobe\\Adobe Version Cue CS3\\Server\\bin\\VersionCueCS3.exe"=
"c:\\Program Files\\Connection Kit\\Connectivity\\ConnectivityManager.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3703:TCP"= 3703:TCP:Adobe Version Cue CS3 Server
"3704:TCP"= 3704:TCP:Adobe Version Cue CS3 Server
"50900:TCP"= 50900:TCP:Adobe Version Cue CS3 Server
"50901:TCP"= 50901:TCP:Adobe Version Cue CS3 Server

R1 epfwtdir;epfwtdir;c:\windows\system32\drivers\epfwtdir.sys [2008-02-20 33800]
R2 Bandoo Coordinator;Bandoo Coordinator;c:\progra~1\Bandoo\Bandoo.exe [2009-03-17 1484736]
R2 ekrn;Eset Service;c:\program files\ESET\ESET NOD32 Antivirus\ekrn.exe [2008-02-20 472320]
R2 LF30FS;LF30FS;c:\program files\Everstrike Software\Lock Folder XP 3.5\LF30XP.sys [2004-11-19 101488]
S2 NOD32FiXTemDono;Eset Nod32 Boot;c:\windows\system32\regedt32.exe [2002-09-07 3584]
S3 GT72NDISIPXP;GT 72 IP NDIS;c:\windows\system32\drivers\Gt51Ip.sys [2009-03-11 95744]
S3 GT72UBUS;GT 72 U BUS;c:\windows\system32\drivers\gt72ubus.sys [2009-03-11 51968]
S3 GTPTSER;GT PT SER;c:\windows\system32\drivers\gtptser.sys [2009-03-11 8064]

--- Autres Services/Pilotes en mémoire ---

*NewlyCreated* - HELPSVC
*Deregistered* - mchInjDrv
.
Contenu du dossier 'Tâches planifiées'

2009-03-19 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 12:34]
.
- - - - ORPHELINS SUPPRIMES - - - -

HKCU-Run-ares - c:\program files\Ares\Ares.exe
HKLM-Run-LFAgent - (no file)
HKU-Default-RunOnce-nltide3 - rundll32 advpack.dll
HKU-Default-RunOnce-nltide2 - rundll32 advpack.dll


.
------- Examen supplémentaire -------
.
uDefault_Search_URL = hxxp://www.google.com/keyword/%s
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://www.google.fr/keyword/%s
IE: Ajouter au fichier PDF existant - c:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Compare Prices with &Dealio - c:\documents and settings\Binef\Application Data\Dealio\kb124\res\DealioSearch.html
IE: Convertir en Adobe PDF - c:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convertir la cible du lien en Adobe PDF - c:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convertir la cible du lien en un fichier PDF existant - c:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convertir la sélection en Adobe PDF - c:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convertir la sélection en un fichier PDF existant - c:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convertir les liens sélectionnés en fichier Adobe PDF - c:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Convertir les liens sélectionnés en un fichier PDF existant - c:\program files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Download all links with IDM - c:\program files\Internet Download Manager\IEGetAll.htm
IE: Download FLV video content with IDM - c:\program files\Internet Download Manager\IEGetVL.htm
IE: Download with IDM - c:\program files\Internet Download Manager\IEExt.htm
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
DPF: Microsoft XML Parser for Java - file:///C:/WINDOWS/Java/classes/xmldso.cab
.

**************************************************************************

catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-03-24 00:42:30
Windows 5.1.2600 Service Pack 2 NTFS

Recherche de processus cachés ...

Recherche d'éléments en démarrage automatique cachés ...

Recherche de fichiers cachés ...

Scan terminé avec succès
Fichiers cachés: 0

**************************************************************************

[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mchInjDrv]
"ImagePath"="\??\c:\docume~1\Binef\LOCALS~1\Temp\mc21.tmp"
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{02370326-065a-40cf-9fcf-b3945adc08d0}]
@Denied: (Full) (Everyone)
"Model"=dword:00000052
"Therad"=dword:00000008

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{5ED60779-4DE2-4E07-B862-974CA4FF2E9C}]
@Denied: (Full) (Everyone)
"scansk"=hex(0):74,5f,6a,ff,dd,4e,9a,aa,f1,22,b4,3b,c3,2a,47,d4,2c,17,a6,77,72,
b3,27,a4,fa,e4,de,27,90,b7,62,23,1a,cf,83,f5,26,8b,cd,9b,00,00,00,00,00,00,\
.
--------------------- DLLs chargées dans les processus actifs ---------------------

- - - - - - - > 'winlogon.exe'(944)
c:\windows\system32\SETUPAPI.dll

- - - - - - - > 'lsass.exe'(1000)
c:\windows\system32\SETUPAPI.dll
.
------------------------ Autres processus actifs ------------------------
.
c:\program files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe
c:\program files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\progra~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\[u]0[/u]\FTRTSVC.exe
c:\program files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
c:\program files\iPod\bin\iPodService.exe
c:\windows\system32\WgaTray.exe
c:\program files\Windows Live\Contacts\wlcomm.exe
c:\windows\system32\wscntfy.exe
.
**************************************************************************
.
Heure de fin: 2009-03-24 0:47:56 - La machine a redémarré
ComboFix-quarantined-files.txt 2009-03-24 00:47:52

Avant-CF: 39 042 490 368 octets libres
Après-CF: 39,886,692,352 octets libres

WindowsXP-KB310994-SP2-Pro-BootDisk-FRA.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="PhoeniXP Professionnel" /noexecute=optin /fastdetect

362
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
jlpjlp Messages postés 51580 Date d'inscription   Statut Contributeur sécurité Dernière intervention   5 040
 
télécharge OTMoveIt
http://oldtimer.geekstogo.com/OTMoveIt3.exe (de Old_Timer) sur ton Bureau.

double-clique sur OTMoveIt.exe pour le lancer.
copie la liste qui se trouve en citation ci-dessous,
et colle-la dans le cadre de gauche de OTMoveIt :Paste instruction for items to be moved.
(attention bien mettre :files)

:files
c:\docume~1\Binef\LOCALS~1\Temp\mc21.tmp
:reg
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mchInjDrv]
"ImagePath"="\??\c:\docume~1\Binef\LOCALS~1\Temp\mc21.tmp"
:commands
[purity]
[emptytemp]
[start explorer]



clique sur MoveIt! pour lancer la suppression.
le résultat apparaitra dans le cadre "Results".
clique sur Exit pour fermer.
poste le rapport situé dans C:\_OTMoveIt\MovedFiles.

il te sera peut-être demander de redémarrer le pc pour achever la suppression.si c'est le cas accepte par Yes.


_______________________

mettre a jour internet explorer
pour XP
http://download.microsoft.com/...
___________________

mettre à jour adobe reader puis supprimer les anciennes version via le panneau de configuration
https://acrobat.adobe.com/fr/fr/acrobat/pdf-reader.html

___________________

Mettre a jour java:
https://javara.fr.malavida.com/

Télécharge JavaRa.zip de Paul 'Prm753' McLain et Fred de Vries.
Décompresse le fichier sur ton bureau (clique droit > Extraire tout.)
Double-clique sur le répertoire JavaRa obtenu.
Puis double-clique sur le fichier JavaRa.exe (le .exe peut ne pas s'afficher)
Clique sur Search For Updates.
Sélectionne Update Using jucheck.exe puis clique sur Search.
Autorise le processus à se connecter s'il te le demande, clique sur Install et suis les instructions d'installation. Cela prendra quelques minutes.
Quand l'installation est terminée, revient à l'écran de JavaRa et clique sur Remove Older Versions.
Clique sur Oui pour confirmer. L'outil va travailler, clique ensuite sur Ok, puis une deuxième fois sur Ok.
Un rapport va s'ouvrir, copie-colle le dans ta prochaine réponse.
Note : le rapport se trouve aussi à la racine de la partition système, en général C:\ sous le nom JavaRa.log
(c:\JavaRa.log)
Ferme l'application.

si cela ne fonctionne pas

https://www.java.com/fr/download/windows_manual.jsp?locale=fr&host=www.java.com:80

tu peux désinstaller les vieilles versions.
____________________________

Télécharge Toolbar-S&D (Team IDN) sur ton Bureau.
https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/ToolBarSD.exe?attachauth=ANoY7cqJWPphpudyTqv7TRo5RQ3nm_Sx8JluVMO59X5E9cyE3j3LqKlmStIqiDqJdIgMJLi7MXn2nKVajQfoWuVvZZ2wIx_vkqO4k4P0K9jh-ra9jaKPXdZcoaVF2UqJZNH8ubL_42uIwh6f35xJ2GJMuzddVj2Qth1DgZ839lxEIFGkgWz3TdfvNMy-YtxfA3gqBUrj4U4LFeAPiWr3ClmjIP0t_Xs5PQ%3D%3D&attredirects=2

* Lance l'installation du programme en exécutant le fichier téléchargé.
* Double-clique maintenant sur le raccourci de Toolbar-S&D.
* Sélectionne la langue souhaitée en tapant la lettre de ton choix puis en validant avec la touche Entrée.
* Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.
* Poste le rapport généré. (C:\TB.txt)
0
bi9 Messages postés 121 Date d'inscription   Statut Membre Dernière intervention   1
 
========== FILES ==========
File/Folder c:\docume~1\Binef\LOCALS~1\Temp\mc21.tmp not found.
========== REGISTRY ==========
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mchInjDrv\\"ImagePath"|"\??\c:\docume~1\Binef\LOCALS~1\Temp\mc21.tmp" /E : value set successfully!
========== COMMANDS ==========
File delete failed. C:\DOCUME~1\Binef\LOCALS~1\Temp\Perflib_Perfdata_738.dat scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\Binef\LOCALS~1\Temp\png16.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\Binef\LOCALS~1\Temp\png24.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\Binef\LOCALS~1\Temp\png26.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\Binef\LOCALS~1\Temp\png27.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\Binef\LOCALS~1\Temp\png28.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\Binef\LOCALS~1\Temp\png29.tmp scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Temporary Internet Files folder emptied.
User's Internet Explorer cache folder emptied.
Local Service Temp folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
Local Service Temporary Internet Files folder emptied.
Windows Temp folder emptied.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0006\adoc.bx scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0006\md.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0006\url.ax scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0006\w.ax scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0006\wb.vx scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0005\adoc.bx scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0005\md.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0005\url.ax scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0005\w.ax scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0005\wb.vx scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0004\adoc.bx scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0004\md.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0004\url.ax scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0004\w.ax scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0004\wb.vx scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0003\adoc.bx scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0003\md.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0003\url.ax scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0003\w.ax scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0003\wb.vx scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0002\adoc.bx scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0002\md.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0002\url.ax scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0002\w.ax scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0002\wb.vx scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0001\adoc.bx scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0001\md.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0001\url.ax scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0001\w.ax scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0001\wb.vx scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0000\adoc.bx scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0000\md.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0000\url.ax scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0000\w.ax scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0000\wb.vx scheduled to be deleted on reboot.
Opera cache emptied.
Temp folders emptied.
Explorer started successfully

OTMoveIt3 by OldTimer - Version 1.0.9.0 log created on 03262009_133010

Files moved on Reboot...
File C:\DOCUME~1\Binef\LOCALS~1\Temp\Perflib_Perfdata_738.dat not found!
C:\DOCUME~1\Binef\LOCALS~1\Temp\png16.tmp moved successfully.
C:\DOCUME~1\Binef\LOCALS~1\Temp\png24.tmp moved successfully.
C:\DOCUME~1\Binef\LOCALS~1\Temp\png26.tmp moved successfully.
C:\DOCUME~1\Binef\LOCALS~1\Temp\png27.tmp moved successfully.
C:\DOCUME~1\Binef\LOCALS~1\Temp\png28.tmp moved successfully.
C:\DOCUME~1\Binef\LOCALS~1\Temp\png29.tmp moved successfully.
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0006\adoc.bx moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0006\md.dat moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0006\url.ax moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0006\w.ax moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0006\wb.vx moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0005\adoc.bx moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0005\md.dat moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0005\url.ax moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0005\w.ax moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0005\wb.vx moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0004\adoc.bx moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0004\md.dat moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0004\url.ax moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0004\w.ax moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0004\wb.vx moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0003\adoc.bx moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0003\md.dat moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0003\url.ax moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0003\w.ax moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0003\wb.vx moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0002\adoc.bx moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0002\md.dat moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0002\url.ax moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0002\w.ax moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0002\wb.vx moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0001\adoc.bx moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0001\md.dat moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0001\url.ax moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0001\w.ax moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0001\wb.vx moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0000\adoc.bx moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0000\md.dat moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0000\url.ax moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0000\w.ax moved successfully.
C:\Documents and Settings\Binef\Local Settings\Application Data\Opera\Opera\Profile\vps\0000\wb.vx moved successfully.
0
jlpjlp Messages postés 51580 Date d'inscription   Statut Contributeur sécurité Dernière intervention   5 040
 
ok fais le reste
0
bi9 Messages postés 121 Date d'inscription   Statut Membre Dernière intervention   1
 
-----------\\ ToolBar S&D 1.2.8 XP/Vista

Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) M processor 1.70GHz )
BIOS : PhoenixBIOS 4.0 Release 6.1
USER : Binef ( Administrator )
BOOT : Normal boot
Antivirus : ESET NOD32 Antivirus 3.0 3.0 (Activated)
C:\ (Local Disk) - NTFS - Total:93 Go (Free:32 Go)
D:\ (CD or DVD)

"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( 26/03/2009|16:35 )

-----------\\ Recherche de Fichiers / Dossiers ...

C:\DOCUME~1\Binef\APPLIC~1\Dealio
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\temp
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\as_sidebar.html
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\blank.gif
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\DealioSearch.html
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\deals-endcap.gif
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\deals-leftcap.gif
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\deal_report.jpg
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\ebay_login.jpg
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\endcap22-bg.png
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\endcap22-left.png
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\endcap22-right-arrow.png
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\endcap22-right.png
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\ErrorPageTemplate.css
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\err_mainwindow.html
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\err_sidebar.html
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\err_toolbar.html
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\global_scripts.js
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\headerbgthin.jpg
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\help.gif
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\logo.png
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\logo_over.png
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\man_toolbar.html
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\man_toolbar.js
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\pill_bg.gif
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\post-this-deal.gif
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\post-this-deal_over.gif
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\scripts.js
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\scroller.js
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\search-chevron.gif
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\search_bg_blink.gif
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\separator.gif
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\settings.gif
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\settings_over.gif
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\sidebar.html
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\steals_bg.gif
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\tabdata.js
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\tablib.js
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\tabwelcome_en.html
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\tab_icon.png
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\toolbar_background.gif
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\res\yahoo_search.gif
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\index.1.80.39
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.10.76
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.109.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.110.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.12.52
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.13.58
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.130.58
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.135.50
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.153.44
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.155.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.156.49
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.16.60
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.161.52
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.178.66
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.184.55
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.188.52
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.189.45
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.196.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.198.56
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.199.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.200.53
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.201.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.202.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.203.71
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.205.62
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.213.71
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.214.49
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.215.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.216.67
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.217.67
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.218.52
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.219.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.220.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.221.57
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.222.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.223.68
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.226.68
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.227.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.228.62
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.229.76
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.23.63
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.239.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.24.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.240.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.241.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.242.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.243.77
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.244.63
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.245.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.247.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.248.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.249.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.250.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.251.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.252.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.253.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.254.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.255.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.256.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.257.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.279.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.28.58
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.282.75
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.283.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.284.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.289.67
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.290.62
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.291.61
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.296.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.297.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.304.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.307.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.308.75
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.31.47
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.310.46
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.311.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.315.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.316.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.317.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.318.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.319.49
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.32.48
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.334.44
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.335.60
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.336.44
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.337.44
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.338.75
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.339.47
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.34.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.340.47
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.341.47
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.349.50
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.35.48
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.350.50
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.351.51
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.352.77
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.353.51
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.354.51
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.357.62
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.358.52
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.359.52
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.360.53
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.361.54
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.362.68
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.363.58
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.364.54
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.365.53
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.367.56
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.368.58
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.369.55
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.370.80
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.371.56
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.372.57
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.373.55
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.375.56
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.376.57
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.377.55
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.378.65
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.384.58
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.386.71
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.387.59
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.388.59
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.389.59
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.390.60
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.391.78
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.392.60
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.393.60
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.394.60
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.396.61
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.397.61
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.398.60
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.399.60
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.403.61
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.404.63
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.405.61
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.406.61
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.407.76
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.408.63
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.409.61
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.412.62
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.413.62
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.414.62
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.415.62
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.416.62
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.417.62
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.418.62
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.419.62
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.420.62
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.421.62
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.423.77
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.424.63
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.425.63
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.426.63
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.427.63
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.428.65
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.429.63
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.430.63
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.432.65
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.433.64
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.434.65
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.435.64
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.436.76
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.437.64
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.438.71
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.439.71
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.440.75
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.442.73
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.443.73
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.444.73
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.445.68
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.446.69
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.450.67
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.451.67
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.452.68
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.453.68
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.454.69
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.456.69
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.457.75
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.458.70
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.459.70
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.460.69
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.462.74
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.463.69
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.464.70
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.465.68
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.468.70
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.469.70
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.470.70
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.471.73
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.472.70
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.478.74
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.479.73
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.480.68
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.481.71
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.482.74
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.49.67
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.50.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.500.71
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.501.74
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.502.71
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.51.69
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.52.72
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.520.76
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.521.76
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.522.76
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.53.51
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.531.76
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.532.75
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.533.77
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.534.75
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.54.47
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.55.45
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.56.69
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.57.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.58.47
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.591.79
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.592.79
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.593.76
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.594.77
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.595.76
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.608.78
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.610.80
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.611.79
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.614.79
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.617.79
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.624.80
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.63.57
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.640.80
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.641.80
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.66.47
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.70.75
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\rules\rules.1.71.43
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\temp\dealio-14325.log
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\temp\dealio-14327.log
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\temp\dealio-14328.log
C:\DOCUME~1\Binef\APPLIC~1\Dealio\kb124\temp\dod_cache.xml
C:\Program Files\Dealio
C:\Program Files\Dealio\DealioAU.exe
C:\Program Files\Dealio\kb124
C:\Program Files\Dealio\kb124\Dealio Deskbar.exe
C:\Program Files\Dealio\kb124\Dealio.dll
C:\Program Files\Dealio\kb124\res
C:\Program Files\Dealio\kb124\rules
C:\Program Files\Dealio\kb124\temp
C:\Program Files\Dealio\kb124\res\as_sidebar.html
C:\Program Files\Dealio\kb124\res\blank.gif
C:\Program Files\Dealio\kb124\res\DealioSearch.html
C:\Program Files\Dealio\kb124\res\deals-endcap.gif
C:\Program Files\Dealio\kb124\res\deals-leftcap.gif
C:\Program Files\Dealio\kb124\res\deal_report.jpg
C:\Program Files\Dealio\kb124\res\ebay_login.jpg
C:\Program Files\Dealio\kb124\res\endcap22-bg.png
C:\Program Files\Dealio\kb124\res\endcap22-left.png
C:\Program Files\Dealio\kb124\res\endcap22-right-arrow.png
C:\Program Files\Dealio\kb124\res\endcap22-right.png
C:\Program Files\Dealio\kb124\res\ErrorPageTemplate.css
C:\Program Files\Dealio\kb124\res\err_mainwindow.html
C:\Program Files\Dealio\kb124\res\err_sidebar.html
C:\Program Files\Dealio\kb124\res\err_toolbar.html
C:\Program Files\Dealio\kb124\res\global_scripts.js
C:\Program Files\Dealio\kb124\res\headerbgthin.jpg
C:\Program Files\Dealio\kb124\res\help.gif
C:\Program Files\Dealio\kb124\res\logo.png
C:\Program Files\Dealio\kb124\res\logo_over.png
C:\Program Files\Dealio\kb124\res\man_toolbar.html
C:\Program Files\Dealio\kb124\res\man_toolbar.js
C:\Program Files\Dealio\kb124\res\pill_bg.gif
C:\Program Files\Dealio\kb124\res\post-this-deal.gif
C:\Program Files\Dealio\kb124\res\post-this-deal_over.gif
C:\Program Files\Dealio\kb124\res\scripts.js
C:\Program Files\Dealio\kb124\res\scroller.js
C:\Program Files\Dealio\kb124\res\search-chevron.gif
C:\Program Files\Dealio\kb124\res\search_bg_blink.gif
C:\Program Files\Dealio\kb124\res\separator.gif
C:\Program Files\Dealio\kb124\res\settings.gif
C:\Program Files\Dealio\kb124\res\settings_over.gif
C:\Program Files\Dealio\kb124\res\sidebar.html
C:\Program Files\Dealio\kb124\res\steals_bg.gif
C:\Program Files\Dealio\kb124\res\tabdata.js
C:\Program Files\Dealio\kb124\res\tablib.js
C:\Program Files\Dealio\kb124\res\tabwelcome_en.html
C:\Program Files\Dealio\kb124\res\tab_icon.png
C:\Program Files\Dealio\kb124\res\toolbar_background.gif
C:\Program Files\Dealio\kb124\res\yahoo_search.gif
C:\Program Files\Dealio\kb124\rules\index.1.80.39
C:\Program Files\Dealio\kb124\rules\rules.1.10.76
C:\Program Files\Dealio\kb124\rules\rules.1.109.43
C:\Program Files\Dealio\kb124\rules\rules.1.110.43
C:\Program Files\Dealio\kb124\rules\rules.1.12.52
C:\Program Files\Dealio\kb124\rules\rules.1.13.58
C:\Program Files\Dealio\kb124\rules\rules.1.130.58
C:\Program Files\Dealio\kb124\rules\rules.1.135.50
C:\Program Files\Dealio\kb124\rules\rules.1.153.44
C:\Program Files\Dealio\kb124\rules\rules.1.155.43
C:\Program Files\Dealio\kb124\rules\rules.1.156.49
C:\Program Files\Dealio\kb124\rules\rules.1.16.60
C:\Program Files\Dealio\kb124\rules\rules.1.161.52
C:\Program Files\Dealio\kb124\rules\rules.1.178.66
C:\Program Files\Dealio\kb124\rules\rules.1.184.55
C:\Program Files\Dealio\kb124\rules\rules.1.188.52
C:\Program Files\Dealio\kb124\rules\rules.1.189.45
C:\Program Files\Dealio\kb124\rules\rules.1.196.43
C:\Program Files\Dealio\kb124\rules\rules.1.198.56
C:\Program Files\Dealio\kb124\rules\rules.1.199.43
C:\Program Files\Dealio\kb124\rules\rules.1.200.53
C:\Program Files\Dealio\kb124\rules\rules.1.201.43
C:\Program Files\Dealio\kb124\rules\rules.1.202.43
C:\Program Files\Dealio\kb124\rules\rules.1.203.71
C:\Program Files\Dealio\kb124\rules\rules.1.205.62
C:\Program Files\Dealio\kb124\rules\rules.1.213.71
C:\Program Files\Dealio\kb124\rules\rules.1.214.49
C:\Program Files\Dealio\kb124\rules\rules.1.215.43
C:\Program Files\Dealio\kb124\rules\rules.1.216.67
C:\Program Files\Dealio\kb124\rules\rules.1.217.67
C:\Program Files\Dealio\kb124\rules\rules.1.218.52
C:\Program Files\Dealio\kb124\rules\rules.1.219.43
C:\Program Files\Dealio\kb124\rules\rules.1.220.43
C:\Program Files\Dealio\kb124\rules\rules.1.221.57
C:\Program Files\Dealio\kb124\rules\rules.1.222.43
C:\Program Files\Dealio\kb124\rules\rules.1.223.68
C:\Program Files\Dealio\kb124\rules\rules.1.226.68
C:\Program Files\Dealio\kb124\rules\rules.1.227.43
C:\Program Files\Dealio\kb124\rules\rules.1.228.62
C:\Program Files\Dealio\kb124\rules\rules.1.229.76
C:\Program Files\Dealio\kb124\rules\rules.1.23.63
C:\Program Files\Dealio\kb124\rules\rules.1.239.43
C:\Program Files\Dealio\kb124\rules\rules.1.24.43
C:\Program Files\Dealio\kb124\rules\rules.1.240.43
C:\Program Files\Dealio\kb124\rules\rules.1.241.43
C:\Program Files\Dealio\kb124\rules\rules.1.242.43
C:\Program Files\Dealio\kb124\rules\rules.1.243.77
C:\Program Files\Dealio\kb124\rules\rules.1.244.63
C:\Program Files\Dealio\kb124\rules\rules.1.245.43
C:\Program Files\Dealio\kb124\rules\rules.1.247.43
C:\Program Files\Dealio\kb124\rules\rules.1.248.43
C:\Program Files\Dealio\kb124\rules\rules.1.249.43
C:\Program Files\Dealio\kb124\rules\rules.1.250.43
C:\Program Files\Dealio\kb124\rules\rules.1.251.43
C:\Program Files\Dealio\kb124\rules\rules.1.252.43
C:\Program Files\Dealio\kb124\rules\rules.1.253.43
C:\Program Files\Dealio\kb124\rules\rules.1.254.43
C:\Program Files\Dealio\kb124\rules\rules.1.255.43
C:\Program Files\Dealio\kb124\rules\rules.1.256.43
C:\Program Files\Dealio\kb124\rules\rules.1.257.43
C:\Program Files\Dealio\kb124\rules\rules.1.279.43
C:\Program Files\Dealio\kb124\rules\rules.1.28.58
C:\Program Files\Dealio\kb124\rules\rules.1.282.75
C:\Program Files\Dealio\kb124\rules\rules.1.283.43
C:\Program Files\Dealio\kb124\rules\rules.1.284.43
C:\Program Files\Dealio\kb124\rules\rules.1.289.67
C:\Program Files\Dealio\kb124\rules\rules.1.290.62
C:\Program Files\Dealio\kb124\rules\rules.1.291.61
C:\Program Files\Dealio\kb124\rules\rules.1.296.43
C:\Program Files\Dealio\kb124\rules\rules.1.297.43
C:\Program Files\Dealio\kb124\rules\rules.1.304.43
C:\Program Files\Dealio\kb124\rules\rules.1.307.43
C:\Program Files\Dealio\kb124\rules\rules.1.308.75
C:\Program Files\Dealio\kb124\rules\rules.1.31.47
C:\Program Files\Dealio\kb124\rules\rules.1.310.46
C:\Program Files\Dealio\kb124\rules\rules.1.311.43
C:\Program Files\Dealio\kb124\rules\rules.1.315.43
C:\Program Files\Dealio\kb124\rules\rules.1.316.43
C:\Program Files\Dealio\kb124\rules\rules.1.317.43
C:\Program Files\Dealio\kb124\rules\rules.1.318.43
C:\Program Files\Dealio\kb124\rules\rules.1.319.49
C:\Program Files\Dealio\kb124\rules\rules.1.32.48
C:\Program Files\Dealio\kb124\rules\rules.1.334.44
C:\Program Files\Dealio\kb124\rules\rules.1.335.60
C:\Program Files\Dealio\kb124\rules\rules.1.336.44
C:\Program Files\Dealio\kb124\rules\rules.1.337.44
C:\Program Files\Dealio\kb124\rules\rules.1.338.75
C:\Program Files\Dealio\kb124\rules\rules.1.339.47
C:\Program Files\Dealio\kb124\rules\rules.1.34.43
C:\Program Files\Dealio\kb124\rules\rules.1.340.47
C:\Program Files\Dealio\kb124\rules\rules.1.341.47
C:\Program Files\Dealio\kb124\rules\rules.1.349.50
C:\Program Files\Dealio\kb124\rules\rules.1.35.48
C:\Program Files\Dealio\kb124\rules\rules.1.350.50
C:\Program Files\Dealio\kb124\rules\rules.1.351.51
C:\Program Files\Dealio\kb124\rules\rules.1.352.77
C:\Program Files\Dealio\kb124\rules\rules.1.353.51
C:\Program Files\Dealio\kb124\rules\rules.1.354.51
C:\Program Files\Dealio\kb124\rules\rules.1.357.62
C:\Program Files\Dealio\kb124\rules\rules.1.358.52
C:\Program Files\Dealio\kb124\rules\rules.1.359.52
C:\Program Files\Dealio\kb124\rules\rules.1.360.53
C:\Program Files\Dealio\kb124\rules\rules.1.361.54
C:\Program Files\Dealio\kb124\rules\rules.1.362.68
C:\Program Files\Dealio\kb124\rules\rules.1.363.58
C:\Program Files\Dealio\kb124\rules\rules.1.364.54
C:\Program Files\Dealio\kb124\rules\rules.1.365.53
C:\Program Files\Dealio\kb124\rules\rules.1.367.56
C:\Program Files\Dealio\kb124\rules\rules.1.368.58
C:\Program Files\Dealio\kb124\rules\rules.1.369.55
C:\Program Files\Dealio\kb124\rules\rules.1.370.80
C:\Program Files\Dealio\kb124\rules\rules.1.371.56
C:\Program Files\Dealio\kb124\rules\rules.1.372.57
C:\Program Files\Dealio\kb124\rules\rules.1.373.55
C:\Program Files\Dealio\kb124\rules\rules.1.375.56
C:\Program Files\Dealio\kb124\rules\rules.1.376.57
C:\Program Files\Dealio\kb124\rules\rules.1.377.55
C:\Program Files\Dealio\kb124\rules\rules.1.378.65
C:\Program Files\Dealio\kb124\rules\rules.1.384.58
C:\Program Files\Dealio\kb124\rules\rules.1.386.71
C:\Program Files\Dealio\kb124\rules\rules.1.387.59
C:\Program Files\Dealio\kb124\rules\rules.1.388.59
C:\Program Files\Dealio\kb124\rules\rules.1.389.59
C:\Program Files\Dealio\kb124\rules\rules.1.390.60
C:\Program Files\Dealio\kb124\rules\rules.1.391.78
C:\Program Files\Dealio\kb124\rules\rules.1.392.60
C:\Program Files\Dealio\kb124\rules\rules.1.393.60
C:\Program Files\Dealio\kb124\rules\rules.1.394.60
C:\Program Files\Dealio\kb124\rules\rules.1.396.61
C:\Program Files\Dealio\kb124\rules\rules.1.397.61
C:\Program Files\Dealio\kb124\rules\rules.1.398.60
C:\Program Files\Dealio\kb124\rules\rules.1.399.60
C:\Program Files\Dealio\kb124\rules\rules.1.403.61
C:\Program Files\Dealio\kb124\rules\rules.1.404.63
C:\Program Files\Dealio\kb124\rules\rules.1.405.61
C:\Program Files\Dealio\kb124\rules\rules.1.406.61
C:\Program Files\Dealio\kb124\rules\rules.1.407.76
C:\Program Files\Dealio\kb124\rules\rules.1.408.63
C:\Program Files\Dealio\kb124\rules\rules.1.409.61
C:\Program Files\Dealio\kb124\rules\rules.1.412.62
C:\Program Files\Dealio\kb124\rules\rules.1.413.62
C:\Program Files\Dealio\kb124\rules\rules.1.414.62
C:\Program Files\Dealio\kb124\rules\rules.1.415.62
C:\Program Files\Dealio\kb124\rules\rules.1.416.62
C:\Program Files\Dealio\kb124\rules\rules.1.417.62
C:\Program Files\Dealio\kb124\rules\rules.1.418.62
C:\Program Files\Dealio\kb124\rules\rules.1.419.62
C:\Program Files\Dealio\kb124\rules\rules.1.420.62
C:\Program Files\Dealio\kb124\rules\rules.1.421.62
C:\Program Files\Dealio\kb124\rules\rules.1.423.77
C:\Program Files\Dealio\kb124\rules\rules.1.424.63
C:\Program Files\Dealio\kb124\rules\rules.1.425.63
C:\Program Files\Dealio\kb124\rules\rules.1.426.63
C:\Program Files\Dealio\kb124\rules\rules.1.427.63
C:\Program Files\Dealio\kb124\rules\rules.1.428.65
C:\Program Files\Dealio\kb124\rules\rules.1.429.63
C:\Program Files\Dealio\kb124\rules\rules.1.430.63
C:\Program Files\Dealio\kb124\rules\rules.1.432.65
C:\Program Files\Dealio\kb124\rules\rules.1.433.64
C:\Program Files\Dealio\kb124\rules\rules.1.434.65
C:\Program Files\Dealio\kb124\rules\rules.1.435.64
C:\Program Files\Dealio\kb124\rules\rules.1.436.76
C:\Program Files\Dealio\kb124\rules\rules.1.437.64
C:\Program Files\Dealio\kb124\rules\rules.1.438.71
C:\Program Files\Dealio\kb124\rules\rules.1.439.71
C:\Program Files\Dealio\kb124\rules\rules.1.440.75
C:\Program Files\Dealio\kb124\rules\rules.1.442.73
C:\Program Files\Dealio\kb124\rules\rules.1.443.73
C:\Program Files\Dealio\kb124\rules\rules.1.444.73
C:\Program Files\Dealio\kb124\rules\rules.1.445.68
C:\Program Files\Dealio\kb124\rules\rules.1.446.69
C:\Program Files\Dealio\kb124\rules\rules.1.450.67
C:\Program Files\Dealio\kb124\rules\rules.1.451.67
C:\Program Files\Dealio\kb124\rules\rules.1.452.68
C:\Program Files\Dealio\kb124\rules\rules.1.453.68
C:\Program Files\Dealio\kb124\rules\rules.1.454.69
C:\Program Files\Dealio\kb124\rules\rules.1.456.69
C:\Program Files\Dealio\kb124\rules\rules.1.457.75
C:\Program Files\Dealio\kb124\rules\rules.1.458.70
C:\Program Files\Dealio\kb124\rules\rules.1.459.70
C:\Program Files\Dealio\kb124\rules\rules.1.460.69
C:\Program Files\Dealio\kb124\rules\rules.1.462.74
C:\Program Files\Dealio\kb124\rules\rules.1.463.69
C:\Program Files\Dealio\kb124\rules\rules.1.464.70
C:\Program Files\Dealio\kb124\rules\rules.1.465.68
C:\Program Files\Dealio\kb124\rules\rules.1.468.70
C:\Program Files\Dealio\kb124\rules\rules.1.469.70
C:\Program Files\Dealio\kb124\rules\rules.1.470.70
C:\Program Files\Dealio\kb124\rules\rules.1.471.73
C:\Program Files\Dealio\kb124\rules\rules.1.472.70
C:\Program Files\Dealio\kb124\rules\rules.1.478.74
C:\Program Files\Dealio\kb124\rules\rules.1.479.73
C:\Program Files\Dealio\kb124\rules\rules.1.480.68
C:\Program Files\Dealio\kb124\rules\rules.1.481.71
C:\Program Files\Dealio\kb124\rules\rules.1.482.74
C:\Program Files\Dealio\kb124\rules\rules.1.49.67
C:\Program Files\Dealio\kb124\rules\rules.1.50.43
C:\Program Files\Dealio\kb124\rules\rules.1.500.71
C:\Program Files\Dealio\kb124\rules\rules.1.501.74
C:\Program Files\Dealio\kb124\rules\rules.1.502.71
C:\Program Files\Dealio\kb124\rules\rules.1.51.69
C:\Program Files\Dealio\kb124\rules\rules.1.52.72
C:\Program Files\Dealio\kb124\rules\rules.1.520.76
C:\Program Files\Dealio\kb124\rules\rules.1.521.76
C:\Program Files\Dealio\kb124\rules\rules.1.522.76
C:\Program Files\Dealio\kb124\rules\rules.1.53.51
C:\Program Files\Dealio\kb124\rules\rules.1.531.76
C:\Program Files\Dealio\kb124\rules\rules.1.532.75
C:\Program Files\Dealio\kb124\rules\rules.1.533.77
C:\Program Files\Dealio\kb124\rules\rules.1.534.75
C:\Program Files\Dealio\kb124\rules\rules.1.54.47
C:\Program Files\Dealio\kb124\rules\rules.1.55.45
C:\Program Files\Dealio\kb124\rules\rules.1.56.69
C:\Program Files\Dealio\kb124\rules\rules.1.57.43
C:\Program Files\Dealio\kb124\rules\rules.1.58.47
C:\Program Files\Dealio\kb124\rules\rules.1.591.79
C:\Program Files\Dealio\kb124\rules\rules.1.592.79
C:\Program Files\Dealio\kb124\rules\rules.1.593.76
C:\Program Files\Dealio\kb124\rules\rules.1.594.77
C:\Program Files\Dealio\kb124\rules\rules.1.595.76
C:\Program Files\Dealio\kb124\rules\rules.1.608.78
C:\Program Files\Dealio\kb124\rules\rules.1.610.80
C:\Program Files\Dealio\kb124\rules\rules.1.611.79
C:\Program Files\Dealio\kb124\rules\rules.1.614.79
C:\Program Files\Dealio\kb124\rules\rules.1.617.79
C:\Program Files\Dealio\kb124\rules\rules.1.624.80
C:\Program Files\Dealio\kb124\rules\rules.1.63.57
C:\Program Files\Dealio\kb124\rules\rules.1.640.80
C:\Program Files\Dealio\kb124\rules\rules.1.641.80
C:\Program Files\Dealio\kb124\rules\rules.1.66.47
C:\Program Files\Dealio\kb124\rules\rules.1.70.75
C:\Program Files\Dealio\kb124\rules\rules.1.71.43
C:\WINDOWS\Prefetch\DEALIO DESKBAR.EXE-1CFCDD0E.pf
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\Dealio

-----------\\ [..\Internet Explorer\Main]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Default_Search_URL"="http://www.google.com/keyword/%s"
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"
"SearchMigratedDefaultURL"="https://www.google.com/webhp?gws_rd=ssl{searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"


--------------------\\ Recherche d'autres infections

--------------------\\ Cracks & Keygens ..

C:\DOCUME~1\Binef\Local Settings\Application Data\Ares\My Shared Folder\___ARESTRA___windows vista x86 ultimate genuine oem crack.rar
C:\DOCUME~1\Binef\Mes documents\dj virtual\Crack
C:\DOCUME~1\Binef\Mes documents\dj virtual\Crack\virtualdj.exe
C:\DOCUME~1\Binef\Mes documents\dj virtual\Virtual Dj 2.05\Crack
C:\DOCUME~1\Binef\Mes documents\dj virtual\Virtual Dj 2.05\Virtualdj 2.05 Crack
C:\DOCUME~1\Binef\Mes documents\dj virtual\Virtual Dj 2.05\Crack\virtualdj.exe
C:\DOCUME~1\Binef\Mes documents\Downloads\Windows Genuine Advantage Validation WGAV-mindxpert (WGA) CRACK 2009--ajblade™.rar
C:\DOCUME~1\Binef\Mes documents\Downloads\Programs\pwdcrack.zip
C:\DOCUME~1\Binef\Mes documents\Ma musique\Rap-Mixtapez Exclusives Vol 1\eminem-crack_a_bottle_feat._dr._dre_and_50_cent.mp3
C:\DOCUME~1\Binef\Mes documents\Ma musique\TOP 125 HipHop RnB 2009-02-07\065 - Eminem ft. Dr Dre & 50 Cent - Crack A Bottle (™ Shady Aftermath).mp3
C:\DOCUME~1\Binef\Mes documents\Mes docs\Guindo docs\Mes documents\Office Keygen.txt
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Kaspersky Anti-Virus 2009 v8.0.0.506 (incl. cracks) [RH]
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Lock.Folder.Xp.3.5+Crack-Tsrh.rar
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Monopoly Here and Now With Crack
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Kaspersky Anti-Virus 2009 v8.0.0.506 (incl. cracks) [RH]\KAV8.0.0.506en_[RH].rar
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Monopoly Here and Now With Crack\!Free Amateur Porn Site.txt
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Monopoly Here and Now With Crack\!Spend 2 minutes to keep it free.txt
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Monopoly Here and Now With Crack\Crack.exe
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Monopoly Here and Now With Crack\game.gcf
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Monopoly Here and Now With Crack\launch.ini
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Monopoly Here and Now With Crack\license.txt
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Monopoly Here and Now With Crack\mikron.nfo
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Monopoly Here and Now With Crack\monopoly_r1a.exe
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Monopoly Here and Now With Crack\monopoly_r1a_crash.log
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Monopoly Here and Now With Crack\monopoly_r1a_mini.dmp
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Monopoly Here and Now With Crack\monplg.dll
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Monopoly Here and Now With Crack\paradise world.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Monopoly Here and Now With Crack\Read Me.txt
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Monopoly Here and Now With Crack\readme.txt
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Monopoly Here and Now With Crack\save.gcf
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Monopoly Here and Now With Crack\setup.ini
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Monopoly Here and Now With Crack\theUninstallFile.txt
C:\DOCUME~1\Binef\Mes documents\Mes Softs\Monopoly Here and Now With Crack\version.txt
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\Windows Genuine Advantage Validation WGAV-mindxpert (WGA) CRACK 2009--ajblade™.rar
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\9b59291e9a2a32ff07a4b698ac91283d.jpg
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\9d8b672c1301e352.jpg
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\validator.reg
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\alert pay vs paypal u decide.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\delete me.txt
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\EROTIC HEAVEN ( 18+ ).url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\i am here !!!!!! visit me.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\luxecash join me.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\rapidshare money (give me 2 min).txt
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\my collection.doc
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\rapidshare money.txt
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\uploadbox
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\UPLOADBOX (MY BEST COLLECTION 4 U).rtf
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\100% Genuine keyfinder-changer Repack+Legal way Certified by Microsoft pdf.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\15000 serials and keys 2009.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\Ativation Windows all Editions XP 2009.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\Eset smart security 3.0.672fixerall32-64bitversions.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\kaspersky latestSerials dec2008.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\KasperskyAntivirusKAV Keys2009.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\KasperskyAntivirusKAVKeys2009.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\Kaspersky_Mobile_Security_S60v3_v6.0.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\Keys kis-kav_10.10.2009 newkeys.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\Keys kiskav 2009 nonblacklisted.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\Keyskiskav_10.10.200961newkeys.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\kis-kav_10.10.200961newkeys.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\kiskav 2009 nonblacklisted keys.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\latest Serials dec2008.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\magic ISO+ magic disk 2009.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\MakeYourOffice2003-07Genuinein1s.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\rs premium account.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\UseNeXTSetup_4.90premiumaccounts2009.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\visit me.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\VISTA Ultimate + Activationkey2009( ultracompression2Mb).url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\windows genuine activation.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\million direct download links Mbps speed\windows_Se7en_Theme-completo_for_XP2009.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\uploadbox\(99Ways) cFosSpeed 4.06.1353 internet booster (32 bit & 64 bit s.zip.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\uploadbox\Angelina_Jolie ultimate HD Collection--ajblade.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\uploadbox\ares ultra 2009.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\uploadbox\Ares_Ultra_4.1_downarchive 2009--ajblade™.rar.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\uploadbox\asquared_Security_Browser_HiJack_removal__tool_2009.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\uploadbox\frostwire vs lime wire v 4.17 2009.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\uploadbox\How_to_Undress_a_Woman --ajblade™.zip.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\uploadbox\Kaspersky_2009_Trial_Remover--ajblade™.zip.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\uploadbox\pencil_art_funbox ultimate Seduction--ajblade.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\uploadbox\Rapidshare Direct Downloader 0.81 Build 353 2009--ajblade™.7z.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\uploadbox\Windows Genuine Advantage Validation v1.8.31.9 For Windows XP al.zip.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\collection\uploadbox\Windows Genuine Advantage Validation v1.8.31.9 For Windows XP.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\(ebook - english) how to control your brain at will.htm
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\(ebook) Magic - David Blaine's Magic Revealed.pdf.rar.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\(ebooks) Biggest World Secrets.pdf.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\Albert_Einstein_-_The_World_as_I_See_it.pdf.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\Bhagavad-Gita_As_It_Is.pdf.html
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\Bhagavad-Gita_As_It_Is.pdf.html.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\Bhagavad-Gita_As_It_Is.pdf.zip.html
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\Biggest_World_Secrets.pdf.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\CIA_-_Book_of_Dirty_Tricks.pdf.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\Dan_Brown_-_Angels___Demons.pdf.html
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\Dan_Brown_-_Angels___Demons.pdf.html.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\Dead_Man_s_Dollar.pdf.html
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\Ebook_-_List_of_Ebook_Sites.pdf.html
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\english__how_to_control_your_brain_at_will.pdf.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\links ebooks.txt
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\Magic_-_David_Blaine_s_Magic_Revealed.pdf.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\Star_Wars_32_ebooks_full_collection_AIO_2009_--ajblade___.zip.html
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\Understanding_IP_Addresses.pdf.html.url
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\_E-Book__-_Understanding_IP_Addresses.pdf.html
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\_ebooks__Biggest_World_Secrets.pdf.rar.html
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\_ebook_-_english__how_to_control_your_brain_at_will.pdf.rar.html
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\_ebook__-_CIA_-_Book_of_Dirty_Tricks.pdf.rar.html
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\WGAV-mindxpert (WGA) CRACK 2009--ajblade™\WGAV-mindxpert\links\shortcuts to my collection\_ebook__Magic_-_David_Blaine_s_Magic_Revealed.pdf.rar.html
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\Windows.Xp.Genuine.Advantage.WGA.OGA.january.2009.(lildude).(v18).1.9.9.0\Microsoft.Windows.Media.Player.v11.GENUINE.CRACK
C:\DOCUME~1\Binef\Mes documents\Mes Softs\wga activator\Windows.Xp.Genuine.Advantage.WGA.OGA.january.2009.(lildude).(v18).1.9.9.0\Microsoft.Windows.Media.Player.v11.GENUINE.CRACK\LegitLibM.dll
C:\DOCUME~1\Binef\Recent\pwdcrack.lnk



1 - "C:\ToolBar SD\TB_1.txt" - 26/03/2009|16:37 - Option : [1]

-----------\\ Fin du rapport a 16:37:35,25
0
jlpjlp Messages postés 51580 Date d'inscription   Statut Contributeur sécurité Dernière intervention   5 040
 
il faudrait faire le ménage dans tes cracks. refais tool bar sd choisi l'option 2 et mets le rapport et dis si encore des problèmes
0
bi9 Messages postés 121 Date d'inscription   Statut Membre Dernière intervention   1
 
dit moi es ce tu t'y connais en ps2?
0
bi9 Messages postés 121 Date d'inscription   Statut Membre Dernière intervention   1
 
Mon probleme es carrement resolu. Vraimant merci pour ton aide. t'es un geni
0
jlpjlp Messages postés 51580 Date d'inscription   Statut Contributeur sécurité Dernière intervention   5 040
 
en ps2 non je ne connais rien :(



pour virer ce qui a été utilisé:

Télécharge ToolsCleaner sur ton bureau.
--> http://www.commentcamarche.net/telecharger/telecharger 34055291 toolscleaner
# Clique sur Recherche et laisse le scan agir ...
# Clique sur Suppression pour finaliser.
# Tu peux, si tu le souhaites, te servir des Options facultatives.
# Clique sur Quitter pour obtenir le rapport.
# Poste le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).

ps : pas besoin de m´envoyer le rapport si tout a été supprimé
0
bi9 Messages postés 121 Date d'inscription   Statut Membre Dernière intervention   1
 
c'es fait merci
0
jlpjlp Messages postés 51580 Date d'inscription   Statut Contributeur sécurité Dernière intervention   5 040
 
ok bonne suite
0