Linstallation de msn 8,5 ne se termine pas

ben -  
 ben -
salut g un blem msn 8,5 ne se termine pas ya l"etape messenger et writter ki se termine pas came demande de reessayer plus tard c'est ske je fais ca marche tjr pas g fai le scan comme demoiselle je vous envoi le resultat aider moi sil vous plait Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:53:44, on 25/04/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16827)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\sttray.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\WINDOWS\system32\AESTFltr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
C:\Program Files\IDT\WDM\STacSV.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Windows Live\Contrôle parental\fssui.exe
C:\Program Files\Search Settings\SearchSettings.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Bouygues\GlobeTrotter Connect\GlobeTrotter Connect.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\VideoLAN\VLC\vlc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\msiexec.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Windows Live\installer\WLSetupSvc.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/?p=us
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/?p=us
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://runonce.msn.com/runonce3.aspx
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Windows Live OneCare Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Contrôle parental\fssbho.dll
O2 - BHO: DealioBHO Class - {6A87B991-A31F-4130-AE72-6D0C294BF082} - C:\Program Files\Dealio\kb127\Dealio.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: MegaIEMn - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Dealio - {E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F} - C:\Program Files\Dealio\kb127\Dealio.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [IDTSysTrayApp] sttray.exe
O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [AESTFltr] %SystemRoot%\system32\AESTFltr.exe /NoDlg
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [HP Mobile Broadband] c:\SWsetup\HPQWWAN\HPMobileBroadband.exe /TrayMode
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Contrôle parental\fssui.exe" -autorun
O4 - HKLM\..\Run: [au] C:\Program Files\Dealio\DealioAU.exe
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: GlobeTrotter Connect.lnk = C:\Program Files\Bouygues\GlobeTrotter Connect\GlobeTrotter Connect.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: Compare Prices with &Dealio - C:\Documents and Settings\benjamin fosse.PC251151843926\Application Data\Dealio\kb127\res\DealioSearch.html
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Envoyer à Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb127\Dealio.dll
O9 - Extra 'Tools' menuitem: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb127\Dealio.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Service Google Update (gupdate1c9b58b8ac71cda) (gupdate1c9b58b8ac71cda) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV.exe

--
End of file - 9510 bytes
Configuration: Windows XP
Internet Explorer 7.0

15 réponses

  1. kevin05 Messages postés 3814 Date d'inscription   Statut Contributeur sécurité Dernière intervention   147
     
    Salut

    Pas de language sms,un peu de politesse stp

    ? Télécharge Toolbar-S&D (de Team IDN) sur ton Bureau

    ? Lance l'installation du programme en exécutant le fichier téléchargé.

    ? Double-clique maintenant sur le raccourci de Toolbar-S&D.

    ? Sélectionne la langue souhaitée en tapant la lettre de ton choix puis en validant avec la touche Entrée.

    ? Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.

    ? Poste le rapport généré. (C:\TB.txt)
    0
  2. Ced_King Messages postés 3519 Date d'inscription   Statut Contributeur Dernière intervention   667
     
    Salut,

    - Telecharges ToolbarSD et enregistres le sur ton bureau :
    https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/ToolBarSD.exe?attachauth=ANoY7cqJWPphpudyTqv7TRo5RQ3nm_Sx8JluVMO59X5E9cyE3j3LqKlmStIqiDqJdIgMJLi7MXn2nKVajQfoWuVvZZ2wIx_vkqO4k4P0K9jh-ra9jaKPXdZcoaVF2UqJZNH8ubL_42uIwh6f35xJ2GJMuzddVj2Qth1DgZ839lxEIFGkgWz3TdfvNMy-YtxfA3gqBUrj4U4LFeAPiWr3ClmjIP0t_Xs5PQ%3D%3D&attredirects=2

    - Desactives la garde residente de ton antivirus et la garde de ton antispyware

    - Lances l'installation en executant le fichier téléchargé

    - Fermes toutes les apllications en cours et double cliques sur Toolbarsd.exe

    - Selectionnes la langue et presse la touche ENTREE

    - Selectionnes l'option1 au menu et patientes le temps de la recherche

    - A la fin de la recherche, un rapport s'affichera, postes son contenu
    0
  3. kevin05 Messages postés 3814 Date d'inscription   Statut Contributeur sécurité Dernière intervention   147
     
    de l'avance ;o)))))

    salut ced ;)
    0
  4. Ced_King Messages postés 3519 Date d'inscription   Statut Contributeur Dernière intervention   667
     
    Salut Kevin,

    ;) je te laisses, @+
    0
    1. ben
       
      je t'envoi le rapport
      -----------\\ ToolBar S&D 1.2.8 XP/Vista

      Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
      X86-based PC ( Multiprocessor Free : Intel(R) Atom(TM) CPU N270 @ 1.60GHz )
      BIOS : KBC Version 02.0D
      USER : benjamin fosse ( Administrator )
      BOOT : Normal boot
      Antivirus : avast! antivirus 4.8.1335 [VPS 090425-0] 4.8.1335 (Activated)
      C:\ (Local Disk) - NTFS - Total:55 Go (Free:39 Go)

      "C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
      Option : [1] ( 25/04/2009|23:26 )

      -----------\\ Recherche de Fichiers / Dossiers ...

      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\dinstallhelper.B66DEDCFD94146C08EBDDC3D29B1BB2A.dll
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\alerts.gif
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\alerts_over.gif
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\alerts_rec.gif
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\alerts_rec_over.gif
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\chevron-small.gif
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\DealioSearch.html
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\deals-leftcap.gif
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\deal_report.jpg
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\ebay_login.jpg
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\err_mainwindow.html
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\err_toolbar.html
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\global_scripts.js
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\headerbgthin.jpg
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\highlight-bg.png
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\logo.gif
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\logo_over.gif
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\man_toolbar.css
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\man_toolbar.html
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\man_toolbar.js
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\man_toolbarl.js
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\post-this-deal.gif
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\post-this-deal_over.gif
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\scripts.js
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\scroller.js
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\search-chevron.gif
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\search-chevron_over.gif
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\search_bg_blink.gif
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\separator.gif
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\settings.gif
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\settings_over.gif
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\yahoo-search.png
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\index.76.35
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.10.76
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.109.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.110.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.12.52
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.13.58
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.130.58
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.135.50
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.153.44
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.155.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.156.49
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.16.60
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.161.52
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.178.66
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.184.55
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.188.52
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.189.45
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.196.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.198.56
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.199.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.200.53
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.201.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.202.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.203.71
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.205.62
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.213.71
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.214.49
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.215.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.216.67
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.217.67
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.218.52
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.219.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.220.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.221.57
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.222.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.223.68
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.226.68
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.227.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.228.62
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.229.76
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.23.63
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.239.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.24.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.240.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.241.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.242.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.243.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.244.63
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.245.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.247.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.248.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.249.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.250.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.251.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.252.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.253.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.254.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.255.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.256.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.257.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.279.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.28.58
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.282.75
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.283.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.284.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.289.67
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.290.62
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.291.61
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.296.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.297.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.304.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.307.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.308.75
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.31.47
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.310.46
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.311.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.315.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.316.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.317.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.318.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.319.49
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.32.48
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.334.44
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.335.60
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.336.44
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.337.44
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.338.75
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.339.47
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.34.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.340.47
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.341.47
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.349.50
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.35.48
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.350.50
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.351.51
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.352.54
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.353.51
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.354.51
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.357.62
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.358.52
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.359.52
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.360.53
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.361.54
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.362.68
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.363.58
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.364.54
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.365.53
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.367.56
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.368.58
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.369.55
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.370.56
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.371.56
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.372.57
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.373.55
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.375.56
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.376.57
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.377.55
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.378.65
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.384.58
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.386.71
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.387.59
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.388.59
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.389.59
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.390.60
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.391.60
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.392.60
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.393.60
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.394.60
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.396.61
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.397.61
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.398.60
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.399.60
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.403.61
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.404.63
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.405.61
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.406.61
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.407.76
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.408.63
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.409.61
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.412.62
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.413.62
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.414.62
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.415.62
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.416.62
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.417.62
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.418.62
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.419.62
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.420.62
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.421.62
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.423.63
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.424.63
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.425.63
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.426.63
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.427.63
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.428.65
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.429.63
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.430.63
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.432.65
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.433.64
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.434.65
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.435.64
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.436.76
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.437.64
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.438.71
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.439.71
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.440.75
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.442.73
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.443.73
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.444.73
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.445.68
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.446.69
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.450.67
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.451.67
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.452.68
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.453.68
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.454.69
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.456.69
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.457.75
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.458.70
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.459.70
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.460.69
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.462.74
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.463.69
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.464.70
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.465.68
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.468.70
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.469.70
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.470.70
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.471.73
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.472.70
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.478.74
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.479.73
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.480.68
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.481.71
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.482.74
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.49.67
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.50.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.500.71
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.501.74
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.502.71
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.51.69
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.52.72
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.520.76
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.521.76
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.522.76
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.53.51
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.531.76
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.532.75
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.534.75
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.54.47
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.55.45
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.56.69
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.57.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.58.47
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.593.76
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.595.76
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.63.57
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.66.47
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.70.75
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.71.43
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp\dealio-14357.log
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp\dealio-14358.log
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp\dealio-14359.log
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp\dod_cache.xml
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_11368_9664_5.html
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_1916_1356_3.html
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_2976_2612_3.html
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_3032_3072_3.html
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_3488_1128_3.html
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_384_2372_3.html
      C:\Program Files\Dealio
      C:\Program Files\Dealio\DealioAU.exe
      C:\Program Files\Dealio\kb127
      C:\Program Files\Dealio\SearchSettingsKit.exe
      C:\Program Files\Dealio\kb127\Dealio Deskbar.exe
      C:\Program Files\Dealio\kb127\Dealio.dll
      C:\Program Files\Dealio\kb127\DealioRes409.dll
      C:\Program Files\Dealio\kb127\res
      C:\Program Files\Dealio\kb127\resDN
      C:\Program Files\Dealio\kb127\rules
      C:\Program Files\Dealio\kb127\temp
      C:\Program Files\Dealio\kb127\res\alerts.gif
      C:\Program Files\Dealio\kb127\res\alerts_over.gif
      C:\Program Files\Dealio\kb127\res\alerts_rec.gif
      C:\Program Files\Dealio\kb127\res\alerts_rec_over.gif
      C:\Program Files\Dealio\kb127\res\chevron-small.gif
      C:\Program Files\Dealio\kb127\res\DealioSearch.html
      C:\Program Files\Dealio\kb127\res\deals-leftcap.gif
      C:\Program Files\Dealio\kb127\res\deal_report.jpg
      C:\Program Files\Dealio\kb127\res\ebay_login.jpg
      C:\Program Files\Dealio\kb127\res\err_mainwindow.html
      C:\Program Files\Dealio\kb127\res\err_toolbar.html
      C:\Program Files\Dealio\kb127\res\global_scripts.js
      C:\Program Files\Dealio\kb127\res\headerbgthin.jpg
      C:\Program Files\Dealio\kb127\res\highlight-bg.png
      C:\Program Files\Dealio\kb127\res\logo.gif
      C:\Program Files\Dealio\kb127\res\logo_over.gif
      C:\Program Files\Dealio\kb127\res\man_toolbar.css
      C:\Program Files\Dealio\kb127\res\man_toolbar.html
      C:\Program Files\Dealio\kb127\res\man_toolbar.js
      C:\Program Files\Dealio\kb127\res\man_toolbarl.js
      C:\Program Files\Dealio\kb127\res\post-this-deal.gif
      C:\Program Files\Dealio\kb127\res\post-this-deal_over.gif
      C:\Program Files\Dealio\kb127\res\scripts.js
      C:\Program Files\Dealio\kb127\res\scroller.js
      C:\Program Files\Dealio\kb127\res\search-chevron.gif
      C:\Program Files\Dealio\kb127\res\search-chevron_over.gif
      C:\Program Files\Dealio\kb127\res\search_bg_blink.gif
      C:\Program Files\Dealio\kb127\res\separator.gif
      C:\Program Files\Dealio\kb127\res\settings.gif
      C:\Program Files\Dealio\kb127\res\settings_over.gif
      C:\Program Files\Dealio\kb127\res\yahoo-search.png
      C:\Program Files\Dealio\kb127\resDN\bottom.gif
      C:\Program Files\Dealio\kb127\resDN\chevron_down.gif
      C:\Program Files\Dealio\kb127\resDN\chevron_up.gif
      C:\Program Files\Dealio\kb127\resDN\close.gif
      C:\Program Files\Dealio\kb127\resDN\deskbar.css
      C:\Program Files\Dealio\kb127\resDN\deskbar.js
      C:\Program Files\Dealio\kb127\resDN\dispatch_helper.js
      C:\Program Files\Dealio\kb127\resDN\ebay_compatible.jpg
      C:\Program Files\Dealio\kb127\resDN\logo.gif
      C:\Program Files\Dealio\kb127\resDN\logo_chevron_bkg.gif
      C:\Program Files\Dealio\kb127\resDN\losing.gif
      C:\Program Files\Dealio\kb127\resDN\lost.gif
      C:\Program Files\Dealio\kb127\resDN\man_deskbar.html
      C:\Program Files\Dealio\kb127\resDN\menu_arrow.gif
      C:\Program Files\Dealio\kb127\resDN\menu_check.gif
      C:\Program Files\Dealio\kb127\resDN\no_image.gif
      C:\Program Files\Dealio\kb127\resDN\prod_img.gif
      C:\Program Files\Dealio\kb127\resDN\search_chevron.gif
      C:\Program Files\Dealio\kb127\resDN\spacer.gif
      C:\Program Files\Dealio\kb127\resDN\textfield_bkg.gif
      C:\Program Files\Dealio\kb127\resDN\top.gif
      C:\Program Files\Dealio\kb127\resDN\unknown.gif
      C:\Program Files\Dealio\kb127\resDN\winning.gif
      C:\Program Files\Dealio\kb127\resDN\won.gif
      C:\Program Files\Dealio\kb127\rules\index.76.35
      C:\Program Files\Dealio\kb127\rules\rules.1.10.76
      C:\Program Files\Dealio\kb127\rules\rules.1.109.43
      C:\Program Files\Dealio\kb127\rules\rules.1.110.43
      C:\Program Files\Dealio\kb127\rules\rules.1.12.52
      C:\Program Files\Dealio\kb127\rules\rules.1.13.58
      C:\Program Files\Dealio\kb127\rules\rules.1.130.58
      C:\Program Files\Dealio\kb127\rules\rules.1.135.50
      C:\Program Files\Dealio\kb127\rules\rules.1.153.44
      C:\Program Files\Dealio\kb127\rules\rules.1.155.43
      C:\Program Files\Dealio\kb127\rules\rules.1.156.49
      C:\Program Files\Dealio\kb127\rules\rules.1.16.60
      C:\Program Files\Dealio\kb127\rules\rules.1.161.52
      C:\Program Files\Dealio\kb127\rules\rules.1.178.66
      C:\Program Files\Dealio\kb127\rules\rules.1.184.55
      C:\Program Files\Dealio\kb127\rules\rules.1.188.52
      C:\Program Files\Dealio\kb127\rules\rules.1.189.45
      C:\Program Files\Dealio\kb127\rules\rules.1.196.43
      C:\Program Files\Dealio\kb127\rules\rules.1.198.56
      C:\Program Files\Dealio\kb127\rules\rules.1.199.43
      C:\Program Files\Dealio\kb127\rules\rules.1.200.53
      C:\Program Files\Dealio\kb127\rules\rules.1.201.43
      C:\Program Files\Dealio\kb127\rules\rules.1.202.43
      C:\Program Files\Dealio\kb127\rules\rules.1.203.71
      C:\Program Files\Dealio\kb127\rules\rules.1.205.62
      C:\Program Files\Dealio\kb127\rules\rules.1.213.71
      C:\Program Files\Dealio\kb127\rules\rules.1.214.49
      C:\Program Files\Dealio\kb127\rules\rules.1.215.43
      C:\Program Files\Dealio\kb127\rules\rules.1.216.67
      C:\Program Files\Dealio\kb127\rules\rules.1.217.67
      C:\Program Files\Dealio\kb127\rules\rules.1.218.52
      C:\Program Files\Dealio\kb127\rules\rules.1.219.43
      C:\Program Files\Dealio\kb127\rules\rules.1.220.43
      C:\Program Files\Dealio\kb127\rules\rules.1.221.57
      C:\Program Files\Dealio\kb127\rules\rules.1.222.43
      C:\Program Files\Dealio\kb127\rules\rules.1.223.68
      C:\Program Files\Dealio\kb127\rules\rules.1.226.68
      C:\Program Files\Dealio\kb127\rules\rules.1.227.43
      C:\Program Files\Dealio\kb127\rules\rules.1.228.62
      C:\Program Files\Dealio\kb127\rules\rules.1.229.76
      C:\Program Files\Dealio\kb127\rules\rules.1.23.63
      C:\Program Files\Dealio\kb127\rules\rules.1.239.43
      C:\Program Files\Dealio\kb127\rules\rules.1.24.43
      C:\Program Files\Dealio\kb127\rules\rules.1.240.43
      C:\Program Files\Dealio\kb127\rules\rules.1.241.43
      C:\Program Files\Dealio\kb127\rules\rules.1.242.43
      C:\Program Files\Dealio\kb127\rules\rules.1.243.43
      C:\Program Files\Dealio\kb127\rules\rules.1.244.63
      C:\Program Files\Dealio\kb127\rules\rules.1.245.43
      C:\Program Files\Dealio\kb127\rules\rules.1.247.43
      C:\Program Files\Dealio\kb127\rules\rules.1.248.43
      C:\Program Files\Dealio\kb127\rules\rules.1.249.43
      C:\Program Files\Dealio\kb127\rules\rules.1.250.43
      C:\Program Files\Dealio\kb127\rules\rules.1.251.43
      C:\Program Files\Dealio\kb127\rules\rules.1.252.43
      C:\Program Files\Dealio\kb127\rules\rules.1.253.43
      C:\Program Files\Dealio\kb127\rules\rules.1.254.43
      C:\Program Files\Dealio\kb127\rules\rules.1.255.43
      C:\Program Files\Dealio\kb127\rules\rules.1.256.43
      C:\Program Files\Dealio\kb127\rules\rules.1.257.43
      C:\Program Files\Dealio\kb127\rules\rules.1.279.43
      C:\Program Files\Dealio\kb127\rules\rules.1.28.58
      C:\Program Files\Dealio\kb127\rules\rules.1.282.75
      C:\Program Files\Dealio\kb127\rules\rules.1.283.43
      C:\Program Files\Dealio\kb127\rules\rules.1.284.43
      C:\Program Files\Dealio\kb127\rules\rules.1.289.67
      C:\Program Files\Dealio\kb127\rules\rules.1.290.62
      C:\Program Files\Dealio\kb127\rules\rules.1.291.61
      C:\Program Files\Dealio\kb127\rules\rules.1.296.43
      C:\Program Files\Dealio\kb127\rules\rules.1.297.43
      C:\Program Files\Dealio\kb127\rules\rules.1.304.43
      C:\Program Files\Dealio\kb127\rules\rules.1.307.43
      C:\Program Files\Dealio\kb127\rules\rules.1.308.75
      C:\Program Files\Dealio\kb127\rules\rules.1.31.47
      C:\Program Files\Dealio\kb127\rules\rules.1.310.46
      C:\Program Files\Dealio\kb127\rules\rules.1.311.43
      C:\Program Files\Dealio\kb127\rules\rules.1.315.43
      C:\Program Files\Dealio\kb127\rules\rules.1.316.43
      C:\Program Files\Dealio\kb127\rules\rules.1.317.43
      C:\Program Files\Dealio\kb127\rules\rules.1.318.43
      C:\Program Files\Dealio\kb127\rules\rules.1.319.49
      C:\Program Files\Dealio\kb127\rules\rules.1.32.48
      C:\Program Files\Dealio\kb127\rules\rules.1.334.44
      C:\Program Files\Dealio\kb127\rules\rules.1.335.60
      C:\Program Files\Dealio\kb127\rules\rules.1.336.44
      C:\Program Files\Dealio\kb127\rules\rules.1.337.44
      C:\Program Files\Dealio\kb127\rules\rules.1.338.75
      C:\Program Files\Dealio\kb127\rules\rules.1.339.47
      C:\Program Files\Dealio\kb127\rules\rules.1.34.43
      C:\Program Files\Dealio\kb127\rules\rules.1.340.47
      C:\Program Files\Dealio\kb127\rules\rules.1.341.47
      C:\Program Files\Dealio\kb127\rules\rules.1.349.50
      C:\Program Files\Dealio\kb127\rules\rules.1.35.48
      C:\Program Files\Dealio\kb127\rules\rules.1.350.50
      C:\Program Files\Dealio\kb127\rules\rules.1.351.51
      C:\Program Files\Dealio\kb127\rules\rules.1.352.54
      C:\Program Files\Dealio\kb127\rules\rules.1.353.51
      C:\Program Files\Dealio\kb127\rules\rules.1.354.51
      C:\Program Files\Dealio\kb127\rules\rules.1.357.62
      C:\Program Files\Dealio\kb127\rules\rules.1.358.52
      C:\Program Files\Dealio\kb127\rules\rules.1.359.52
      C:\Program Files\Dealio\kb127\rules\rules.1.360.53
      C:\Program Files\Dealio\kb127\rules\rules.1.361.54
      C:\Program Files\Dealio\kb127\rules\rules.1.362.68
      C:\Program Files\Dealio\kb127\rules\rules.1.363.58
      C:\Program Files\Dealio\kb127\rules\rules.1.364.54
      C:\Program Files\Dealio\kb127\rules\rules.1.365.53
      C:\Program Files\Dealio\kb127\rules\rules.1.367.56
      C:\Program Files\Dealio\kb127\rules\rules.1.368.58
      C:\Program Files\Dealio\kb127\rules\rules.1.369.55
      C:\Program Files\Dealio\kb127\rules\rules.1.370.56
      C:\Program Files\Dealio\kb127\rules\rules.1.371.56
      C:\Program Files\Dealio\kb127\rules\rules.1.372.57
      C:\Program Files\Dealio\kb127\rules\rules.1.373.55
      C:\Program Files\Dealio\kb127\rules\rules.1.375.56
      C:\Program Files\Dealio\kb127\rules\rules.1.376.57
      C:\Program Files\Dealio\kb127\rules\rules.1.377.55
      C:\Program Files\Dealio\kb127\rules\rules.1.378.65
      C:\Program Files\Dealio\kb127\rules\rules.1.384.58
      C:\Program Files\Dealio\kb127\rules\rules.1.386.71
      C:\Program Files\Dealio\kb127\rules\rules.1.387.59
      C:\Program Files\Dealio\kb127\rules\rules.1.388.59
      C:\Program Files\Dealio\kb127\rules\rules.1.389.59
      C:\Program Files\Dealio\kb127\rules\rules.1.390.60
      C:\Program Files\Dealio\kb127\rules\rules.1.391.60
      C:\Program Files\Dealio\kb127\rules\rules.1.392.60
      C:\Program Files\Dealio\kb127\rules\rules.1.393.60
      C:\Program Files\Dealio\kb127\rules\rules.1.394.60
      C:\Program Files\Dealio\kb127\rules\rules.1.396.61
      C:\Program Files\Dealio\kb127\rules\rules.1.397.61
      C:\Program Files\Dealio\kb127\rules\rules.1.398.60
      C:\Program Files\Dealio\kb127\rules\rules.1.399.60
      C:\Program Files\Dealio\kb127\rules\rules.1.403.61
      C:\Program Files\Dealio\kb127\rules\rules.1.404.63
      C:\Program Files\Dealio\kb127\rules\rules.1.405.61
      C:\Program Files\Dealio\kb127\rules\rules.1.406.61
      C:\Program Files\Dealio\kb127\rules\rules.1.407.76
      C:\Program Files\Dealio\kb127\rules\rules.1.408.63
      C:\Program Files\Dealio\kb127\rules\rules.1.409.61
      C:\Program Files\Dealio\kb127\rules\rules.1.412.62
      C:\Program Files\Dealio\kb127\rules\rules.1.413.62
      C:\Program Files\Dealio\kb127\rules\rules.1.414.62
      C:\Program Files\Dealio\kb127\rules\rules.1.415.62
      C:\Program Files\Dealio\kb127\rules\rules.1.416.62
      C:\Program Files\Dealio\kb127\rules\rules.1.417.62
      C:\Program Files\Dealio\kb127\rules\rules.1.418.62
      C:\Program Files\Dealio\kb127\rules\rules.1.419.62
      C:\Program Files\Dealio\kb127\rules\rules.1.420.62
      C:\Program Files\Dealio\kb127\rules\rules.1.421.62
      C:\Program Files\Dealio\kb127\rules\rules.1.423.63
      C:\Program Files\Dealio\kb127\rules\rules.1.424.63
      C:\Program Files\Dealio\kb127\rules\rules.1.425.63
      C:\Program Files\Dealio\kb127\rules\rules.1.426.63
      C:\Program Files\Dealio\kb127\rules\rules.1.427.63
      C:\Program Files\Dealio\kb127\rules\rules.1.428.65
      C:\Program Files\Dealio\kb127\rules\rules.1.429.63
      C:\Program Files\Dealio\kb127\rules\rules.1.430.63
      C:\Program Files\Dealio\kb127\rules\rules.1.432.65
      C:\Program Files\Dealio\kb127\rules\rules.1.433.64
      C:\Program Files\Dealio\kb127\rules\rules.1.434.65
      C:\Program Files\Dealio\kb127\rules\rules.1.435.64
      C:\Program Files\Dealio\kb127\rules\rules.1.436.76
      C:\Program Files\Dealio\kb127\rules\rules.1.437.64
      C:\Program Files\Dealio\kb127\rules\rules.1.438.71
      C:\Program Files\Dealio\kb127\rules\rules.1.439.71
      C:\Program Files\Dealio\kb127\rules\rules.1.440.75
      C:\Program Files\Dealio\kb127\rules\rules.1.442.73
      C:\Program Files\Dealio\kb127\rules\rules.1.443.73
      C:\Program Files\Dealio\kb127\rules\rules.1.444.73
      C:\Program Files\Dealio\kb127\rules\rules.1.445.68
      C:\Program Files\Dealio\kb127\rules\rules.1.446.69
      C:\Program Files\Dealio\kb127\rules\rules.1.450.67
      C:\Program Files\Dealio\kb127\rules\rules.1.451.67
      C:\Program Files\Dealio\kb127\rules\rules.1.452.68
      C:\Program Files\Dealio\kb127\rules\rules.1.453.68
      C:\Program Files\Dealio\kb127\rules\rules.1.454.69
      C:\Program Files\Dealio\kb127\rules\rules.1.456.69
      C:\Program Files\Dealio\kb127\rules\rules.1.457.75
      C:\Program Files\Dealio\kb127\rules\rules.1.458.70
      C:\Program Files\Dealio\kb127\rules\rules.1.459.70
      C:\Program Files\Dealio\kb127\rules\rules.1.460.69
      C:\Program Files\Dealio\kb127\rules\rules.1.462.74
      C:\Program Files\Dealio\kb127\rules\rules.1.463.69
      C:\Program Files\Dealio\kb127\rules\rules.1.464.70
      C:\Program Files\Dealio\kb127\rules\rules.1.465.68
      C:\Program Files\Dealio\kb127\rules\rules.1.468.70
      C:\Program Files\Dealio\kb127\rules\rules.1.469.70
      C:\Program Files\Dealio\kb127\rules\rules.1.470.70
      C:\Program Files\Dealio\kb127\rules\rules.1.471.73
      C:\Program Files\Dealio\kb127\rules\rules.1.472.70
      C:\Program Files\Dealio\kb127\rules\rules.1.478.74
      C:\Program Files\Dealio\kb127\rules\rules.1.479.73
      C:\Program Files\Dealio\kb127\rules\rules.1.480.68
      C:\Program Files\Dealio\kb127\rules\rules.1.481.71
      C:\Program Files\Dealio\kb127\rules\rules.1.482.74
      C:\Program Files\Dealio\kb127\rules\rules.1.49.67
      C:\Program Files\Dealio\kb127\rules\rules.1.50.43
      C:\Program Files\Dealio\kb127\rules\rules.1.500.71
      C:\Program Files\Dealio\kb127\rules\rules.1.501.74
      C:\Program Files\Dealio\kb127\rules\rules.1.502.71
      C:\Program Files\Dealio\kb127\rules\rules.1.51.69
      C:\Program Files\Dealio\kb127\rules\rules.1.52.72
      C:\Program Files\Dealio\kb127\rules\rules.1.520.76
      C:\Program Files\Dealio\kb127\rules\rules.1.521.76
      C:\Program Files\Dealio\kb127\rules\rules.1.522.76
      C:\Program Files\Dealio\kb127\rules\rules.1.53.51
      C:\Program Files\Dealio\kb127\rules\rules.1.531.76
      C:\Program Files\Dealio\kb127\rules\rules.1.532.75
      C:\Program Files\Dealio\kb127\rules\rules.1.534.75
      C:\Program Files\Dealio\kb127\rules\rules.1.54.47
      C:\Program Files\Dealio\kb127\rules\rules.1.55.45
      C:\Program Files\Dealio\kb127\rules\rules.1.56.69
      C:\Program Files\Dealio\kb127\rules\rules.1.57.43
      C:\Program Files\Dealio\kb127\rules\rules.1.58.47
      C:\Program Files\Dealio\kb127\rules\rules.1.593.76
      C:\Program Files\Dealio\kb127\rules\rules.1.595.76
      C:\Program Files\Dealio\kb127\rules\rules.1.63.57
      C:\Program Files\Dealio\kb127\rules\rules.1.66.47
      C:\Program Files\Dealio\kb127\rules\rules.1.70.75
      C:\Program Files\Dealio\kb127\rules\rules.1.71.43
      C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\Dealio
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Search Settings
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Search Settings\kb127
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Search Settings\kb127\res
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Search Settings\kb127\temp
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Search Settings\kb127\temp\ws-14357.log
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Search Settings\kb127\temp\ws-14358.log
      C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Search Settings\kb127\temp\ws-14359.log
      C:\Program Files\Search Settings
      C:\Program Files\Search Settings\kb127
      C:\Program Files\Search Settings\SearchSettings.exe
      C:\Program Files\Search Settings\kb127\res
      C:\Program Files\Search Settings\kb127\SearchSettings.dll
      C:\Program Files\Search Settings\kb127\SearchSettingsRes409.dll
      C:\Program Files\Search Settings\kb127\temp

      -----------\\ Extensions

      (benjamin fosse.PC251151843926) - {991A772A-BA13-4c1d-A9EF-F897F31DEC7D} => megaupload


      -----------\\ [..\Internet Explorer\Main]

      [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
      "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
      "Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
      "Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"
      "Default_Page_URL"="https://fr.yahoo.com/?p=us"

      [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
      "Default_Page_URL"="https://fr.yahoo.com/?p=us"
      "Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
      "Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
      "Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"


      --------------------\\ Recherche d'autres infections
      0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. ben
     
    je te remercie je t'envoie le rapport la j'espere tu pourra solutionner mon probleme merci d'avance
    0
  7. kevin05 Messages postés 3814 Date d'inscription   Statut Contributeur sécurité Dernière intervention   147
     
    ? Relance Toolbar-S&D en double-cliquant sur le raccourci.
    ? Tape sur "2" puis valide en appuyant sur "Entrée".
    /!\ Ne ferme pas la fenêtre lors de la suppression !
    ? Un rapport sera généré, poste son contenu ici.

    NOTE : Si ton Bureau ne réapparait pas, appuie simultanément sur Ctrl+Alt+Suppr pour ouvrir le Gestionnaire des tâches.
    Rends-toi sur l'onglet "Processus". Clique en haut à gauche sur Fichier et choisis "Exécuter..."
    Tape explorer puis valide.
    0
  8. ben
     
    merci je tenvoi le contenu jen né marre de plus pouvoir avoir msn 8.5
    -----------\\ ToolBar S&D 1.2.8 XP/Vista

    Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
    X86-based PC ( Multiprocessor Free : Intel(R) Atom(TM) CPU N270 @ 1.60GHz )
    BIOS : KBC Version 02.0D
    USER : benjamin fosse ( Administrator )
    BOOT : Normal boot
    Antivirus : avast! antivirus 4.8.1335 [VPS 090425-0] 4.8.1335 (Activated)
    C:\ (Local Disk) - NTFS - Total:55 Go (Free:39 Go)

    "C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
    Option : [2] ( 26/04/2009|15:36 )

    -----------\\ SUPPRESSION

    Supprime! - C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\dinstallhelper.B66DEDCFD94146C08EBDDC3D29B1BB2A.dll
    Supprime! - C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127
    Supprime! - C:\Program Files\Dealio\DealioAU.exe
    Supprime! - C:\Program Files\Dealio\kb127
    Supprime! - C:\Program Files\Dealio\SearchSettingsKit.exe
    Supprime! - C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\Dealio
    Supprime! - C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Search Settings\kb127
    Supprime! - C:\Program Files\Search Settings\kb127
    Supprime! - C:\Program Files\Search Settings\SearchSettings.exe
    Supprime! - C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio
    Supprime! - C:\Program Files\Dealio
    Supprime! - C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Search Settings
    Supprime! - C:\Program Files\Search Settings

    -----------\\ Recherche de Fichiers / Dossiers ...

    -----------\\ Extensions

    (benjamin fosse.PC251151843926) - {991A772A-BA13-4c1d-A9EF-F897F31DEC7D} => megaupload

    -----------\\ [..\Internet Explorer\Main]

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
    "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
    "Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
    "Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"
    "Default_Page_URL"="https://fr.yahoo.com/?p=us"

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
    "Default_Page_URL"="https://fr.yahoo.com/?p=us"
    "Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
    "Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
    "Start Page"="https://www.msn.com/fr-fr/"

    --------------------\\ Recherche d'autres infections

    Aucune autre infection trouvée !

    1 - "C:\ToolBar SD\TB_1.txt" - 25/04/2009|23:27 - Option : [1]
    2 - "C:\ToolBar SD\TB_2.txt" - 25/04/2009|23:42 - Option : [1]
    3 - "C:\ToolBar SD\TB_3.txt" - 26/04/2009|15:38 - Option : [2]

    -----------\\ Fin du rapport a 15:38:30,21 msn 8.5
    0
  9. kevin05 Messages postés 3814 Date d'inscription   Statut Contributeur sécurité Dernière intervention   147
     
    Salut,

    - Télécharge Random's System Information Tool (RSIT) (par random/random) sur ton Bureau.

    - Double-clique sur RSIT.exe afin de lancer le programme.

    - Clique sur Continue à l'écran Disclaimer.Choisis "1 months" dans le menu déroulant puis clique sur <continue>.

    - Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.

    - Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront. Poste le contenu de log.txt (c'est celui qui apparaît à l'écran) ainsi que de info.txt (que tu verras dans la barre des tâches).

    Note : Les rapports sont sauvegardés dans le dossier C:\rsit.
    0
  10. ben
     
    salut kevin j'au deja hijack je fais quoi apré
    0
  11. kevin05 Messages postés 3814 Date d'inscription   Statut Contributeur sécurité Dernière intervention   147
     
    C'est pas hijack c'est plus complet que hijack fais stp ;)
    0
  12. ben
     
    voila je te poste le contenu kevin Logfile of random's system information tool 1.06 (written by random/random)
    Run by benjamin fosse at 2009-04-26 15:52:30
    Microsoft Windows XP Édition familiale Service Pack 3
    System drive C: has 41 GB (71%) free of 57 GB
    Total RAM: 1015 MB (35% free)

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 15:52:42, on 26/04/2009
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16827)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\WINDOWS\system32\igfxtray.exe
    C:\WINDOWS\system32\hkcmd.exe
    C:\WINDOWS\system32\igfxpers.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\igfxsrvc.exe
    C:\WINDOWS\sttray.exe
    C:\Program Files\IDT\WDM\STacSV.exe
    C:\Program Files\IDT\WDM\sttray.exe
    C:\WINDOWS\system32\AESTFltr.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\Program Files\Windows Live\Contrôle parental\fssui.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
    C:\Program Files\Bouygues\GlobeTrotter Connect\GlobeTrotter Connect.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Google\Update\GoogleUpdate.exe
    C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\Program Files\Windows Live\installer\WLSetupSvc.exe
    C:\Program Files\Mozilla Firefox 3.1 Beta 2\firefox.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Documents and Settings\benjamin fosse.PC251151843926\Bureau\RSIT.exe
    C:\Program Files\Trend Micro\HijackThis\benjamin fosse.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.Yahoo.com
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.Yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    R3 - Default URLSearchHook is missing
    O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: Windows Live OneCare Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Contrôle parental\fssbho.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
    O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O2 - BHO: MegaIEMn - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
    O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
    O4 - HKLM\..\Run: [IDTSysTrayApp] sttray.exe
    O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
    O4 - HKLM\..\Run: [AESTFltr] %SystemRoot%\system32\AESTFltr.exe /NoDlg
    O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [HP Mobile Broadband] c:\SWsetup\HPQWWAN\HPMobileBroadband.exe /TrayMode
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Contrôle parental\fssui.exe" -autorun
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: BTTray.lnk = ?
    O4 - Global Startup: GlobeTrotter Connect.lnk = C:\Program Files\Bouygues\GlobeTrotter Connect\GlobeTrotter Connect.exe
    O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
    O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
    O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
    O8 - Extra context menu item: Envoyer à Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
    O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU)
    O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
    O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
    O23 - Service: Service Google Update (gupdate1c9b58b8ac71cda) (gupdate1c9b58b8ac71cda) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
    O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV.exe
    0
  13. ben
     
    et ca c'est info l'autre rapport serieux je suis perdu c'est compliqué pour moi tout ca aider moi svp info.txt logfile of random's system information tool 1.06 2009-04-26 15:52:47

    ======Uninstall list======

    -->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
    Acoustica Mixcraft 4.5-->C:\PROGRA~1\ACOUST~1\UNWISE.EXE C:\PROGRA~1\ACOUST~1\INSTALL.LOG
    Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
    Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
    Adobe Reader 8.1.2 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A81200000003}
    AIM 6-->C:\Program Files\AIM6\uninst.exe
    Assistant de connexion Windows Live-->MsiExec.exe /I{D3116CC7-24DC-4CA3-9CE1-23FED836E9F2}
    Audacity 1.2.6-->"C:\Program Files\Audacity\unins000.exe"
    avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
    Carte réseau local sans fil 802.11 Broadcom-->"C:\Program Files\Broadcom\Broadcom 802.11\Driver\bcmwlu00.exe" verbose /rootkey="Software\Broadcom\802.11\UninstallInfo" /rootdir="C:\Program Files\Broadcom\Broadcom 802.11\Driver"
    Correctif pour Lecteur Windows Media 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
    Correctif pour Windows XP (KB949764)-->"C:\WINDOWS\$NtUninstallKB949764$\spuninst\spuninst.exe"
    Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
    Dealio Toolbar 3.4-->MsiExec.exe /X{6105648C-0C3C-481D-8C11-1F4952D6FB53}
    DivX Codec-->C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
    DivX Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
    Extension de Windows Live Toolbar (Windows Live Toolbar)-->MsiExec.exe /X{0CA6047C-D28B-4295-834A-07C52BA20C2D}
    Free Mp3 Wma Converter V 1.8.0-->"C:\Program Files\Free Audio Pack\unins000.exe"
    Galerie de photos Windows Live-->MsiExec.exe /X{A70FA218-6598-4AC9-813D-63597C5DD068}
    GlobeTrotter Connect-->MsiExec.exe /X{DDEB70E9-34C5-4DF3-8B39-85358859B049}
    Google Chrome-->"C:\Program Files\Google\Chrome\Application\1.0.154.59\Installer\setup.exe" --uninstall --system-level
    Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
    HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
    Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
    HP Doc Viewer-->MsiExec.exe /I{082702D5-5DD8-4600-BCE5-48B15174687F}
    HP Help and Support-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A93C4E94-1005-489D-BEAA-B873C1AA6CFC}\setup.exe" -l0x40c -removeonly
    HP Mobile Broadband Setup Utility-->MsiExec.exe /I{3B67D55A-BDFB-467E-A464-A7F4FE8142B9}
    HP User Guides 0119-->MsiExec.exe /X{1178CE69-1B1D-4ED2-9E52-3E98A8C99816}
    IDT Audio-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}\setup.exe" -l0x40c -remove -removeonly
    Intel(R) Graphics Media Accelerator Driver-->C:\WINDOWS\system32\igxpun.exe -uninstall
    Java(TM) 6 Update 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160060}
    Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
    Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
    Marvell Miniport Driver-->MsiExec.exe /X{C950420B-4182-49EA-850A-A6A2ABF06C6B}
    Mega Manager-->C:\Program Files\InstallShield Installation Information\{3B6E3FC6-274C-4B6C-BC85-5C3B15DE18E2}\setup.exe -runfromtemp -l0x0009 -removeonly
    Menus intelligents (Windows Live Toolbar)-->MsiExec.exe /X{0CC70FEF-5068-4CD5-B4DE-86FFD98EC929}
    Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
    Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
    Microsoft .NET Framework 2.0-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.exe
    Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
    Microsoft Office PowerPoint Viewer 2007 (French)-->MsiExec.exe /X{95120000-00AF-040C-0000-0000000FF1CE}
    Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
    Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
    Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
    Microsoft Works-->MsiExec.exe /I{3B160861-7250-451E-B5EE-8B92BF30A710}
    Mise à jour critique pour Lecteur Windows Media 11 (KB959772)-->"C:\WINDOWS\$NtUninstallKB959772_WM11$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Lecteur Windows Media (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127-v2)-->"C:\WINDOWS\ie7updates\KB938127-v2-IE7\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows Internet Explorer 7 (KB961260)-->"C:\WINDOWS\ie7updates\KB961260-IE7\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows Internet Explorer 7 (KB963027)-->"C:\WINDOWS\ie7updates\KB963027-IE7\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB954459)-->"C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB954600)-->"C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB958690)-->"C:\WINDOWS\$NtUninstallKB958690$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB960715)-->"C:\WINDOWS\$NtUninstallKB960715$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB961373)-->"C:\WINDOWS\$NtUninstallKB961373$\spuninst\spuninst.exe"
    Mise à jour pour Windows XP (KB898461)-->"C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
    Mise à jour pour Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
    Mise à jour pour Windows XP (KB955839)-->"C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
    Mise à jour pour Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
    Module de compatibilité pour Microsoft Office System 2007-->MsiExec.exe /X{90120000-0020-040C-0000-0000000FF1CE}
    Module de prise en charge linguistique de Microsoft .NET Framework 2.0 - FRA-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0 Language Pack - FRA\install.exe
    Mozilla Firefox (3.1b3)-->C:\Program Files\Mozilla Firefox 3.1 Beta 2\uninstall\helper.exe
    MSN-->C:\Program Files\MSN\MsnInstaller\msninst.exe /Action:ARP
    Search Settings 1.2-->MsiExec.exe /X{D0C73318-7B4A-4D16-A0C4-3B83F075EA88}
    Surligneur (Windows Live Toolbar)-->MsiExec.exe /X{81B5F83F-2291-48B0-8375-36B63A9BF5B0}
    Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
    Utilitaire de sauvegarde Windows-->MsiExec.exe /I{76EFFC7C-17A6-479D-9E47-8E658C1695AE}
    VC80CRTRedist - 8.0.50727.762-->MsiExec.exe /I{767CC44C-9BBC-438D-BAD3-FD4595DD148B}
    Viewpoint Media Player-->C:\Program Files\Viewpoint\Viewpoint Experience Technology\mtsAxInstaller.exe /u
    VLC media player 0.9.8a-->C:\Program Files\VideoLAN\VLC\uninstall.exe
    WIDCOMM Bluetooth Software-->MsiExec.exe /X{84814E6B-2581-46EC-926A-823BD1C670F6}
    Windows Installer Clean Up-->MsiExec.exe /X{121634B0-2F4B-11D3-ADA3-00C04F52DD52}
    Windows Live Favorites pour Windows Live Toolbar-->MsiExec.exe /X{786C4AD1-DCBA-49A6-B0EF-B317A344BD66}
    Windows Live installer-->MsiExec.exe /X{FD44E544-E7D0-4DBA-9FA0-8AE1A1300390}
    Windows Live Mail-->MsiExec.exe /I{C514C594-23AA-4F13-A070-DB8BDB27594F}
    Windows Live OneCare Contrôle parental-->MsiExec.exe /X{3677FD57-D0DE-47CD-942E-99913D04C135}
    Windows Live Toolbar-->"C:\Program Files\Windows Live Toolbar\UnInstall.exe" {0A8C97AD-DEED-4894-B446-3ABA95A77D0D}
    Windows Live Toolbar-->MsiExec.exe /X{0A8C97AD-DEED-4894-B446-3ABA95A77D0D}
    Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
    Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
    Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"

    =====HijackThis Backups=====

    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-04-25]

    ======Security center information======

    AV: avast! antivirus 4.8.1335 [VPS 090425-0]

    ======System event log======

    Computer Name: PC251151843926
    Event Code: 7036
    Message: Le service avast! Web Scanner est entré dans l'état : en cours d'exécution.

    Record Number: 2686
    Source Name: Service Control Manager
    Time Written: 20090330092906.000000+120
    Event Type: Informations
    User:

    Computer Name: PC251151843926
    Event Code: 7035
    Message: Un contrôle Démarrer a correctement été envoyé au service avast! Web Scanner.

    Record Number: 2685
    Source Name: Service Control Manager
    Time Written: 20090330092906.000000+120
    Event Type: Informations
    User: AUTORITE NT\SYSTEM

    Computer Name: PC251151843926
    Event Code: 7035
    Message: Un contrôle Démarrer a correctement été envoyé au service avast! Mail Scanner.

    Record Number: 2684
    Source Name: Service Control Manager
    Time Written: 20090330092906.000000+120
    Event Type: Informations
    User: AUTORITE NT\SYSTEM

    Computer Name: PC251151843926
    Event Code: 7036
    Message: Le service Compatibilité avec le Changement rapide d'utilisateur est entré dans l'état : en cours d'exécution.

    Record Number: 2683
    Source Name: Service Control Manager
    Time Written: 20090330092906.000000+120
    Event Type: Informations
    User:

    Computer Name: PC251151843926
    Event Code: 7035
    Message: Un contrôle Démarrer a correctement été envoyé au service Compatibilité avec le Changement rapide d'utilisateur.

    Record Number: 2682
    Source Name: Service Control Manager
    Time Written: 20090330092906.000000+120
    Event Type: Informations
    User: AUTORITE NT\SYSTEM

    =====Application event log=====

    Computer Name: PC251151843926
    Event Code: 704
    Message: MsnMsgr (2428) La défragmentation en ligne de la base de données '\\.\C:\Documents and Settings\benjamin fosse.PC251151843926\Local Settings\Application Data\Microsoft\Messenger\tony28100@hotmail.fr\SharingMetadata\Working\database_7C97_3885_284A_6D35\dfsr.db' a été interrompue et arrêtée. La prochaine fois qu'une défragmentation en ligne sera effectuée dans cette base de données, elle reprendra à l'endroit où elle a été interrompue.

    Record Number: 2011
    Source Name: ESENT
    Time Written: 20090412000139.000000+120
    Event Type: Informations
    User:

    Computer Name: PC251151843926
    Event Code: 701
    Message: MsnMsgr (2428) La défragmentation en ligne a terminé un passage complet dans la base de données '\\.\C:\Documents and Settings\benjamin fosse.PC251151843926\Local Settings\Application Data\Microsoft\Messenger\tony28100@hotmail.fr\SharingMetadata\Working\database_7C97_3885_284A_6D35\dfsr.db'.

    Record Number: 2010
    Source Name: ESENT
    Time Written: 20090412000002.000000+120
    Event Type: Informations
    User:

    Computer Name: PC251151843926
    Event Code: 700
    Message: MsnMsgr (2428) La défragmentation en ligne commence un passage complet dans la base de données '\\.\C:\Documents and Settings\benjamin fosse.PC251151843926\Local Settings\Application Data\Microsoft\Messenger\tony28100@hotmail.fr\SharingMetadata\Working\database_7C97_3885_284A_6D35\dfsr.db'.

    Record Number: 2009
    Source Name: ESENT
    Time Written: 20090412000002.000000+120
    Event Type: Informations
    User:

    Computer Name: PC251151843926
    Event Code: 102
    Message: MsnMsgr (2428) \\.\C:\Documents and Settings\benjamin fosse.PC251151843926\Local Settings\Application Data\Microsoft\Messenger\tony28100@hotmail.fr\SharingMetadata\Working\database_7C97_3885_284A_6D35\dfsr.db: Le moteur de base de données a démarré une nouvelle instance (0).

    Record Number: 2008
    Source Name: ESENT
    Time Written: 20090411214228.000000+120
    Event Type: Informations
    User:

    Computer Name: PC251151843926
    Event Code: 100
    Message: MsnMsgr (2428) Le moteur de base de données 5.01.2600.5512 est démarré.

    Record Number: 2007
    Source Name: ESENT
    Time Written: 20090411214228.000000+120
    Event Type: Informations
    User:

    ======Environment variables======

    "ComSpec"=%SystemRoot%\system32\cmd.exe
    "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Fichiers communs\DivX Shared\
    "windir"=%SystemRoot%
    "FP_NO_HOST_CHECK"=NO
    "OS"=Windows_NT
    "PROCESSOR_ARCHITECTURE"=x86
    "PROCESSOR_LEVEL"=6
    "PROCESSOR_IDENTIFIER"=x86 Family 6 Model 28 Stepping 2, GenuineIntel
    "PROCESSOR_REVISION"=1c02
    "NUMBER_OF_PROCESSORS"=2
    "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
    "TEMP"=%SystemRoot%\TEMP
    "TMP"=%SystemRoot%\TEMP

    -----------------EOF-----------------
    0
  14. kevin05 Messages postés 3814 Date d'inscription   Statut Contributeur sécurité Dernière intervention   147
     
    Télécharge UsbFix sur ton bureau :

    => Lance l’installation avec les paramètres par défaut

    Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) susceptible d’avoir été infectés sans les ouvrir

    => Double clic sur le raccourci UsbFix sur ton bureau

    => Sélectionne l’option 1 : recherche

    => Poste le rapport UsbFix.txt

    Notes :
    * Le rapport UsbFix.txt est sauvegardé a la racine du disque
    * Si le Bureau ne réapparaît pas presse Ctrl + Alt + Suppr , Onglet "Fichier" , "Nouvelle tâche", tape explorer.exe et valide.

    TUTO si problème
    0
  15. ben
     
    VOILA LE RAPPORT
    ############################## [ UsbFix V3.013 ]

    # User : benjamin fosse (Administrateurs) # PC251151843926
    # Update on 26/04/09 by C_XX & Chiquitine29
    # Start at: 16:01:25 | 26/04/2009

    # Intel(R) Atom(TM) CPU N270 @ 1.60GHz
    # Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 3
    # Internet Explorer 7.0.5730.13
    # Windows Firewall Status : Enabled
    # AV : avast! antivirus 4.8.1335 [VPS 090425-0] 4.8.1335 [ Enabled | Updated ]

    # C:\ # Disque fixe local # 55,88 Go (39,72 Go free) # NTFS

    ############################## [ Processus actifs ]

    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\csrss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\WINDOWS\system32\igfxtray.exe
    C:\WINDOWS\system32\igfxpers.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\igfxsrvc.exe
    C:\WINDOWS\sttray.exe
    C:\Program Files\IDT\WDM\STacSV.exe
    C:\Program Files\IDT\WDM\sttray.exe
    C:\WINDOWS\system32\AESTFltr.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Windows Live\Contrôle parental\fssui.exe
    C:\Program Files\Windows Live\Contrôle parental\fsssvc.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
    C:\Program Files\Bouygues\GlobeTrotter Connect\GlobeTrotter Connect.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Google\Update\GoogleUpdate.exe
    C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
    C:\WINDOWS\System32\alg.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\Program Files\Windows Live\installer\WLSetupSvc.exe
    C:\Program Files\Mozilla Firefox 3.1 Beta 2\firefox.exe
    C:\WINDOWS\system32\NOTEPAD.EXE
    C:\WINDOWS\system32\NOTEPAD.EXE
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\WINDOWS\system32\wbem\wmiprvse.exe

    ################## [ Registre # Startup ]

    HKCU_Main: "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
    HKCU_Main: "Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
    HKCU_Main: "Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"
    HKLM_logon: "Userinit"="C:\\WINDOWS\\system32\\userinit.exe,"
    HKLM_logon: "DefaultUserName"="benjamin fosse"
    HKLM_logon: "AltDefaultUserName"="benjamin fosse"
    HKLM_logon: "LegalNoticeCaption"=""
    HKLM_logon: "LegalNoticeText"=""
    HKLM_Run: IgfxTray=C:\WINDOWS\system32\igfxtray.exe
    HKLM_Run: HotKeysCmds=C:\WINDOWS\system32\hkcmd.exe
    HKLM_Run: Persistence=C:\WINDOWS\system32\igfxpers.exe
    HKLM_Run: IDTSysTrayApp=sttray.exe
    HKLM_Run: SysTrayApp=%ProgramFiles%\IDT\WDM\sttray.exe
    HKLM_Run: AESTFltr=%SystemRoot%\system32\AESTFltr.exe /NoDlg
    HKLM_Run: SynTPEnh=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    HKLM_Run: SunJavaUpdateSched="C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
    HKLM_Run: Adobe Reader Speed Launcher="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    HKLM_Run: HP Mobile Broadband=c:\SWsetup\HPQWWAN\HPMobileBroadband.exe /TrayMode
    HKLM_Run: avast!=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    HKLM_Run: fssui="C:\Program Files\Windows Live\Contrôle parental\fssui.exe" -autorun
    HKLM_Run: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents=
    HKCU_Run: ctfmon.exe=C:\WINDOWS\system32\ctfmon.exe
    HKCU_Run: MsnMsgr="C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background

    ################## [ Informations ]

    ################## [ Fichiers # Dossiers infectieux ]

    ################## [ Registre # Clés Run infectieuses ]

    Found ! HKLM\software\microsoft\security center\\ "FirewallOverride"
    # -> ( Value = 0x1 | Good = 0x0 Bad = 0x1 )

    ################## [ Registre # Mountpoints2 ]

    HKCU\Software\Microsoft\....\MountPoints2\{71f0be8c-0a33-11de-937a-002264844b46}\Shell\AutoRun\command

    ################## [ ! Fin du rapport # UsbFix V3.013 ! ]
    0
  16. ben
     
    vous aller pouvoir resoudre mon probleme ?c'est grave ou pas
    0