Linstallation de msn 8,5 ne se termine pas

ben -  
 ben -
salut g un blem msn 8,5 ne se termine pas ya l"etape messenger et writter ki se termine pas came demande de reessayer plus tard c'est ske je fais ca marche tjr pas g fai le scan comme demoiselle je vous envoi le resultat aider moi sil vous plait Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:53:44, on 25/04/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16827)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\sttray.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\WINDOWS\system32\AESTFltr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
C:\Program Files\IDT\WDM\STacSV.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Windows Live\Contrôle parental\fssui.exe
C:\Program Files\Search Settings\SearchSettings.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Bouygues\GlobeTrotter Connect\GlobeTrotter Connect.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\VideoLAN\VLC\vlc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\msiexec.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Windows Live\installer\WLSetupSvc.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/?p=us
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/?p=us
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://runonce.msn.com/runonce3.aspx
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Windows Live OneCare Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Contrôle parental\fssbho.dll
O2 - BHO: DealioBHO Class - {6A87B991-A31F-4130-AE72-6D0C294BF082} - C:\Program Files\Dealio\kb127\Dealio.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: MegaIEMn - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Dealio - {E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F} - C:\Program Files\Dealio\kb127\Dealio.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [IDTSysTrayApp] sttray.exe
O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [AESTFltr] %SystemRoot%\system32\AESTFltr.exe /NoDlg
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [HP Mobile Broadband] c:\SWsetup\HPQWWAN\HPMobileBroadband.exe /TrayMode
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Contrôle parental\fssui.exe" -autorun
O4 - HKLM\..\Run: [au] C:\Program Files\Dealio\DealioAU.exe
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: GlobeTrotter Connect.lnk = C:\Program Files\Bouygues\GlobeTrotter Connect\GlobeTrotter Connect.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: Compare Prices with &Dealio - C:\Documents and Settings\benjamin fosse.PC251151843926\Application Data\Dealio\kb127\res\DealioSearch.html
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Envoyer à Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb127\Dealio.dll
O9 - Extra 'Tools' menuitem: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb127\Dealio.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Service Google Update (gupdate1c9b58b8ac71cda) (gupdate1c9b58b8ac71cda) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV.exe

15 réponses

kevin05 Messages postés 3814 Date d'inscription   Statut Contributeur sécurité Dernière intervention   147
 
Salut

Pas de language sms,un peu de politesse stp

? Télécharge Toolbar-S&D (de Team IDN) sur ton Bureau

? Lance l'installation du programme en exécutant le fichier téléchargé.

? Double-clique maintenant sur le raccourci de Toolbar-S&D.

? Sélectionne la langue souhaitée en tapant la lettre de ton choix puis en validant avec la touche Entrée.

? Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.

? Poste le rapport généré. (C:\TB.txt)
0
Ced_King Messages postés 3519 Date d'inscription   Statut Contributeur Dernière intervention   572
 
Salut,

- Telecharges ToolbarSD et enregistres le sur ton bureau :
https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/ToolBarSD.exe?attachauth=ANoY7cqJWPphpudyTqv7TRo5RQ3nm_Sx8JluVMO59X5E9cyE3j3LqKlmStIqiDqJdIgMJLi7MXn2nKVajQfoWuVvZZ2wIx_vkqO4k4P0K9jh-ra9jaKPXdZcoaVF2UqJZNH8ubL_42uIwh6f35xJ2GJMuzddVj2Qth1DgZ839lxEIFGkgWz3TdfvNMy-YtxfA3gqBUrj4U4LFeAPiWr3ClmjIP0t_Xs5PQ%3D%3D&attredirects=2

- Desactives la garde residente de ton antivirus et la garde de ton antispyware

- Lances l'installation en executant le fichier téléchargé

- Fermes toutes les apllications en cours et double cliques sur Toolbarsd.exe

- Selectionnes la langue et presse la touche ENTREE

- Selectionnes l'option1 au menu et patientes le temps de la recherche

- A la fin de la recherche, un rapport s'affichera, postes son contenu
0
kevin05 Messages postés 3814 Date d'inscription   Statut Contributeur sécurité Dernière intervention   147
 
de l'avance ;o)))))

salut ced ;)
0
Ced_King Messages postés 3519 Date d'inscription   Statut Contributeur Dernière intervention   572
 
Salut Kevin,

;) je te laisses, @+
0
ben
 
je t'envoi le rapport
-----------\\ ToolBar S&D 1.2.8 XP/Vista

Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Intel(R) Atom(TM) CPU N270 @ 1.60GHz )
BIOS : KBC Version 02.0D
USER : benjamin fosse ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1335 [VPS 090425-0] 4.8.1335 (Activated)
C:\ (Local Disk) - NTFS - Total:55 Go (Free:39 Go)

"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( 25/04/2009|23:26 )

-----------\\ Recherche de Fichiers / Dossiers ...

C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\dinstallhelper.B66DEDCFD94146C08EBDDC3D29B1BB2A.dll
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\alerts.gif
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\alerts_over.gif
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\alerts_rec.gif
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\alerts_rec_over.gif
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\chevron-small.gif
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\DealioSearch.html
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\deals-leftcap.gif
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\deal_report.jpg
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\ebay_login.jpg
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\err_mainwindow.html
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\err_toolbar.html
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\global_scripts.js
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\headerbgthin.jpg
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\highlight-bg.png
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\logo.gif
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\logo_over.gif
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\man_toolbar.css
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\man_toolbar.html
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\man_toolbar.js
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\man_toolbarl.js
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\post-this-deal.gif
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\post-this-deal_over.gif
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\scripts.js
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\scroller.js
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\search-chevron.gif
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\search-chevron_over.gif
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\search_bg_blink.gif
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\separator.gif
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\settings.gif
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\settings_over.gif
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\res\yahoo-search.png
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\index.76.35
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.10.76
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.109.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.110.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.12.52
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.13.58
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.130.58
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.135.50
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.153.44
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.155.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.156.49
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.16.60
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.161.52
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.178.66
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.184.55
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.188.52
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.189.45
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.196.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.198.56
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.199.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.200.53
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.201.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.202.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.203.71
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.205.62
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.213.71
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.214.49
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.215.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.216.67
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.217.67
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.218.52
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.219.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.220.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.221.57
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.222.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.223.68
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.226.68
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.227.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.228.62
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.229.76
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.23.63
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.239.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.24.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.240.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.241.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.242.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.243.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.244.63
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.245.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.247.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.248.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.249.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.250.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.251.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.252.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.253.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.254.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.255.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.256.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.257.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.279.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.28.58
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.282.75
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.283.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.284.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.289.67
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.290.62
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.291.61
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.296.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.297.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.304.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.307.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.308.75
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.31.47
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.310.46
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.311.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.315.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.316.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.317.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.318.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.319.49
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.32.48
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.334.44
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.335.60
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.336.44
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.337.44
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.338.75
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.339.47
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.34.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.340.47
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.341.47
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.349.50
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.35.48
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.350.50
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.351.51
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.352.54
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.353.51
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.354.51
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.357.62
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.358.52
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.359.52
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.360.53
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.361.54
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.362.68
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.363.58
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.364.54
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.365.53
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.367.56
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.368.58
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.369.55
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.370.56
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.371.56
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.372.57
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.373.55
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.375.56
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.376.57
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.377.55
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.378.65
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.384.58
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.386.71
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.387.59
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.388.59
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.389.59
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.390.60
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.391.60
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.392.60
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.393.60
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.394.60
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.396.61
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.397.61
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.398.60
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.399.60
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.403.61
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.404.63
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.405.61
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.406.61
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.407.76
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.408.63
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.409.61
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.412.62
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.413.62
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.414.62
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.415.62
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.416.62
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.417.62
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.418.62
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.419.62
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.420.62
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.421.62
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.423.63
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.424.63
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.425.63
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.426.63
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.427.63
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.428.65
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.429.63
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.430.63
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.432.65
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.433.64
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.434.65
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.435.64
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.436.76
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.437.64
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.438.71
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.439.71
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.440.75
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.442.73
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.443.73
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.444.73
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.445.68
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.446.69
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.450.67
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.451.67
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.452.68
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.453.68
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.454.69
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.456.69
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.457.75
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.458.70
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.459.70
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.460.69
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.462.74
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.463.69
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.464.70
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.465.68
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.468.70
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.469.70
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.470.70
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.471.73
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.472.70
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.478.74
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.479.73
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.480.68
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.481.71
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.482.74
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.49.67
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.50.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.500.71
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.501.74
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.502.71
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.51.69
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.52.72
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.520.76
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.521.76
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.522.76
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.53.51
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.531.76
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.532.75
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.534.75
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.54.47
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.55.45
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.56.69
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.57.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.58.47
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.593.76
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.595.76
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.63.57
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.66.47
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.70.75
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\rules\rules.1.71.43
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp\dealio-14357.log
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp\dealio-14358.log
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp\dealio-14359.log
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp\dod_cache.xml
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_11368_9664_5.html
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_1916_1356_3.html
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_2976_2612_3.html
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_3032_3072_3.html
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_3488_1128_3.html
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_384_2372_3.html
C:\Program Files\Dealio
C:\Program Files\Dealio\DealioAU.exe
C:\Program Files\Dealio\kb127
C:\Program Files\Dealio\SearchSettingsKit.exe
C:\Program Files\Dealio\kb127\Dealio Deskbar.exe
C:\Program Files\Dealio\kb127\Dealio.dll
C:\Program Files\Dealio\kb127\DealioRes409.dll
C:\Program Files\Dealio\kb127\res
C:\Program Files\Dealio\kb127\resDN
C:\Program Files\Dealio\kb127\rules
C:\Program Files\Dealio\kb127\temp
C:\Program Files\Dealio\kb127\res\alerts.gif
C:\Program Files\Dealio\kb127\res\alerts_over.gif
C:\Program Files\Dealio\kb127\res\alerts_rec.gif
C:\Program Files\Dealio\kb127\res\alerts_rec_over.gif
C:\Program Files\Dealio\kb127\res\chevron-small.gif
C:\Program Files\Dealio\kb127\res\DealioSearch.html
C:\Program Files\Dealio\kb127\res\deals-leftcap.gif
C:\Program Files\Dealio\kb127\res\deal_report.jpg
C:\Program Files\Dealio\kb127\res\ebay_login.jpg
C:\Program Files\Dealio\kb127\res\err_mainwindow.html
C:\Program Files\Dealio\kb127\res\err_toolbar.html
C:\Program Files\Dealio\kb127\res\global_scripts.js
C:\Program Files\Dealio\kb127\res\headerbgthin.jpg
C:\Program Files\Dealio\kb127\res\highlight-bg.png
C:\Program Files\Dealio\kb127\res\logo.gif
C:\Program Files\Dealio\kb127\res\logo_over.gif
C:\Program Files\Dealio\kb127\res\man_toolbar.css
C:\Program Files\Dealio\kb127\res\man_toolbar.html
C:\Program Files\Dealio\kb127\res\man_toolbar.js
C:\Program Files\Dealio\kb127\res\man_toolbarl.js
C:\Program Files\Dealio\kb127\res\post-this-deal.gif
C:\Program Files\Dealio\kb127\res\post-this-deal_over.gif
C:\Program Files\Dealio\kb127\res\scripts.js
C:\Program Files\Dealio\kb127\res\scroller.js
C:\Program Files\Dealio\kb127\res\search-chevron.gif
C:\Program Files\Dealio\kb127\res\search-chevron_over.gif
C:\Program Files\Dealio\kb127\res\search_bg_blink.gif
C:\Program Files\Dealio\kb127\res\separator.gif
C:\Program Files\Dealio\kb127\res\settings.gif
C:\Program Files\Dealio\kb127\res\settings_over.gif
C:\Program Files\Dealio\kb127\res\yahoo-search.png
C:\Program Files\Dealio\kb127\resDN\bottom.gif
C:\Program Files\Dealio\kb127\resDN\chevron_down.gif
C:\Program Files\Dealio\kb127\resDN\chevron_up.gif
C:\Program Files\Dealio\kb127\resDN\close.gif
C:\Program Files\Dealio\kb127\resDN\deskbar.css
C:\Program Files\Dealio\kb127\resDN\deskbar.js
C:\Program Files\Dealio\kb127\resDN\dispatch_helper.js
C:\Program Files\Dealio\kb127\resDN\ebay_compatible.jpg
C:\Program Files\Dealio\kb127\resDN\logo.gif
C:\Program Files\Dealio\kb127\resDN\logo_chevron_bkg.gif
C:\Program Files\Dealio\kb127\resDN\losing.gif
C:\Program Files\Dealio\kb127\resDN\lost.gif
C:\Program Files\Dealio\kb127\resDN\man_deskbar.html
C:\Program Files\Dealio\kb127\resDN\menu_arrow.gif
C:\Program Files\Dealio\kb127\resDN\menu_check.gif
C:\Program Files\Dealio\kb127\resDN\no_image.gif
C:\Program Files\Dealio\kb127\resDN\prod_img.gif
C:\Program Files\Dealio\kb127\resDN\search_chevron.gif
C:\Program Files\Dealio\kb127\resDN\spacer.gif
C:\Program Files\Dealio\kb127\resDN\textfield_bkg.gif
C:\Program Files\Dealio\kb127\resDN\top.gif
C:\Program Files\Dealio\kb127\resDN\unknown.gif
C:\Program Files\Dealio\kb127\resDN\winning.gif
C:\Program Files\Dealio\kb127\resDN\won.gif
C:\Program Files\Dealio\kb127\rules\index.76.35
C:\Program Files\Dealio\kb127\rules\rules.1.10.76
C:\Program Files\Dealio\kb127\rules\rules.1.109.43
C:\Program Files\Dealio\kb127\rules\rules.1.110.43
C:\Program Files\Dealio\kb127\rules\rules.1.12.52
C:\Program Files\Dealio\kb127\rules\rules.1.13.58
C:\Program Files\Dealio\kb127\rules\rules.1.130.58
C:\Program Files\Dealio\kb127\rules\rules.1.135.50
C:\Program Files\Dealio\kb127\rules\rules.1.153.44
C:\Program Files\Dealio\kb127\rules\rules.1.155.43
C:\Program Files\Dealio\kb127\rules\rules.1.156.49
C:\Program Files\Dealio\kb127\rules\rules.1.16.60
C:\Program Files\Dealio\kb127\rules\rules.1.161.52
C:\Program Files\Dealio\kb127\rules\rules.1.178.66
C:\Program Files\Dealio\kb127\rules\rules.1.184.55
C:\Program Files\Dealio\kb127\rules\rules.1.188.52
C:\Program Files\Dealio\kb127\rules\rules.1.189.45
C:\Program Files\Dealio\kb127\rules\rules.1.196.43
C:\Program Files\Dealio\kb127\rules\rules.1.198.56
C:\Program Files\Dealio\kb127\rules\rules.1.199.43
C:\Program Files\Dealio\kb127\rules\rules.1.200.53
C:\Program Files\Dealio\kb127\rules\rules.1.201.43
C:\Program Files\Dealio\kb127\rules\rules.1.202.43
C:\Program Files\Dealio\kb127\rules\rules.1.203.71
C:\Program Files\Dealio\kb127\rules\rules.1.205.62
C:\Program Files\Dealio\kb127\rules\rules.1.213.71
C:\Program Files\Dealio\kb127\rules\rules.1.214.49
C:\Program Files\Dealio\kb127\rules\rules.1.215.43
C:\Program Files\Dealio\kb127\rules\rules.1.216.67
C:\Program Files\Dealio\kb127\rules\rules.1.217.67
C:\Program Files\Dealio\kb127\rules\rules.1.218.52
C:\Program Files\Dealio\kb127\rules\rules.1.219.43
C:\Program Files\Dealio\kb127\rules\rules.1.220.43
C:\Program Files\Dealio\kb127\rules\rules.1.221.57
C:\Program Files\Dealio\kb127\rules\rules.1.222.43
C:\Program Files\Dealio\kb127\rules\rules.1.223.68
C:\Program Files\Dealio\kb127\rules\rules.1.226.68
C:\Program Files\Dealio\kb127\rules\rules.1.227.43
C:\Program Files\Dealio\kb127\rules\rules.1.228.62
C:\Program Files\Dealio\kb127\rules\rules.1.229.76
C:\Program Files\Dealio\kb127\rules\rules.1.23.63
C:\Program Files\Dealio\kb127\rules\rules.1.239.43
C:\Program Files\Dealio\kb127\rules\rules.1.24.43
C:\Program Files\Dealio\kb127\rules\rules.1.240.43
C:\Program Files\Dealio\kb127\rules\rules.1.241.43
C:\Program Files\Dealio\kb127\rules\rules.1.242.43
C:\Program Files\Dealio\kb127\rules\rules.1.243.43
C:\Program Files\Dealio\kb127\rules\rules.1.244.63
C:\Program Files\Dealio\kb127\rules\rules.1.245.43
C:\Program Files\Dealio\kb127\rules\rules.1.247.43
C:\Program Files\Dealio\kb127\rules\rules.1.248.43
C:\Program Files\Dealio\kb127\rules\rules.1.249.43
C:\Program Files\Dealio\kb127\rules\rules.1.250.43
C:\Program Files\Dealio\kb127\rules\rules.1.251.43
C:\Program Files\Dealio\kb127\rules\rules.1.252.43
C:\Program Files\Dealio\kb127\rules\rules.1.253.43
C:\Program Files\Dealio\kb127\rules\rules.1.254.43
C:\Program Files\Dealio\kb127\rules\rules.1.255.43
C:\Program Files\Dealio\kb127\rules\rules.1.256.43
C:\Program Files\Dealio\kb127\rules\rules.1.257.43
C:\Program Files\Dealio\kb127\rules\rules.1.279.43
C:\Program Files\Dealio\kb127\rules\rules.1.28.58
C:\Program Files\Dealio\kb127\rules\rules.1.282.75
C:\Program Files\Dealio\kb127\rules\rules.1.283.43
C:\Program Files\Dealio\kb127\rules\rules.1.284.43
C:\Program Files\Dealio\kb127\rules\rules.1.289.67
C:\Program Files\Dealio\kb127\rules\rules.1.290.62
C:\Program Files\Dealio\kb127\rules\rules.1.291.61
C:\Program Files\Dealio\kb127\rules\rules.1.296.43
C:\Program Files\Dealio\kb127\rules\rules.1.297.43
C:\Program Files\Dealio\kb127\rules\rules.1.304.43
C:\Program Files\Dealio\kb127\rules\rules.1.307.43
C:\Program Files\Dealio\kb127\rules\rules.1.308.75
C:\Program Files\Dealio\kb127\rules\rules.1.31.47
C:\Program Files\Dealio\kb127\rules\rules.1.310.46
C:\Program Files\Dealio\kb127\rules\rules.1.311.43
C:\Program Files\Dealio\kb127\rules\rules.1.315.43
C:\Program Files\Dealio\kb127\rules\rules.1.316.43
C:\Program Files\Dealio\kb127\rules\rules.1.317.43
C:\Program Files\Dealio\kb127\rules\rules.1.318.43
C:\Program Files\Dealio\kb127\rules\rules.1.319.49
C:\Program Files\Dealio\kb127\rules\rules.1.32.48
C:\Program Files\Dealio\kb127\rules\rules.1.334.44
C:\Program Files\Dealio\kb127\rules\rules.1.335.60
C:\Program Files\Dealio\kb127\rules\rules.1.336.44
C:\Program Files\Dealio\kb127\rules\rules.1.337.44
C:\Program Files\Dealio\kb127\rules\rules.1.338.75
C:\Program Files\Dealio\kb127\rules\rules.1.339.47
C:\Program Files\Dealio\kb127\rules\rules.1.34.43
C:\Program Files\Dealio\kb127\rules\rules.1.340.47
C:\Program Files\Dealio\kb127\rules\rules.1.341.47
C:\Program Files\Dealio\kb127\rules\rules.1.349.50
C:\Program Files\Dealio\kb127\rules\rules.1.35.48
C:\Program Files\Dealio\kb127\rules\rules.1.350.50
C:\Program Files\Dealio\kb127\rules\rules.1.351.51
C:\Program Files\Dealio\kb127\rules\rules.1.352.54
C:\Program Files\Dealio\kb127\rules\rules.1.353.51
C:\Program Files\Dealio\kb127\rules\rules.1.354.51
C:\Program Files\Dealio\kb127\rules\rules.1.357.62
C:\Program Files\Dealio\kb127\rules\rules.1.358.52
C:\Program Files\Dealio\kb127\rules\rules.1.359.52
C:\Program Files\Dealio\kb127\rules\rules.1.360.53
C:\Program Files\Dealio\kb127\rules\rules.1.361.54
C:\Program Files\Dealio\kb127\rules\rules.1.362.68
C:\Program Files\Dealio\kb127\rules\rules.1.363.58
C:\Program Files\Dealio\kb127\rules\rules.1.364.54
C:\Program Files\Dealio\kb127\rules\rules.1.365.53
C:\Program Files\Dealio\kb127\rules\rules.1.367.56
C:\Program Files\Dealio\kb127\rules\rules.1.368.58
C:\Program Files\Dealio\kb127\rules\rules.1.369.55
C:\Program Files\Dealio\kb127\rules\rules.1.370.56
C:\Program Files\Dealio\kb127\rules\rules.1.371.56
C:\Program Files\Dealio\kb127\rules\rules.1.372.57
C:\Program Files\Dealio\kb127\rules\rules.1.373.55
C:\Program Files\Dealio\kb127\rules\rules.1.375.56
C:\Program Files\Dealio\kb127\rules\rules.1.376.57
C:\Program Files\Dealio\kb127\rules\rules.1.377.55
C:\Program Files\Dealio\kb127\rules\rules.1.378.65
C:\Program Files\Dealio\kb127\rules\rules.1.384.58
C:\Program Files\Dealio\kb127\rules\rules.1.386.71
C:\Program Files\Dealio\kb127\rules\rules.1.387.59
C:\Program Files\Dealio\kb127\rules\rules.1.388.59
C:\Program Files\Dealio\kb127\rules\rules.1.389.59
C:\Program Files\Dealio\kb127\rules\rules.1.390.60
C:\Program Files\Dealio\kb127\rules\rules.1.391.60
C:\Program Files\Dealio\kb127\rules\rules.1.392.60
C:\Program Files\Dealio\kb127\rules\rules.1.393.60
C:\Program Files\Dealio\kb127\rules\rules.1.394.60
C:\Program Files\Dealio\kb127\rules\rules.1.396.61
C:\Program Files\Dealio\kb127\rules\rules.1.397.61
C:\Program Files\Dealio\kb127\rules\rules.1.398.60
C:\Program Files\Dealio\kb127\rules\rules.1.399.60
C:\Program Files\Dealio\kb127\rules\rules.1.403.61
C:\Program Files\Dealio\kb127\rules\rules.1.404.63
C:\Program Files\Dealio\kb127\rules\rules.1.405.61
C:\Program Files\Dealio\kb127\rules\rules.1.406.61
C:\Program Files\Dealio\kb127\rules\rules.1.407.76
C:\Program Files\Dealio\kb127\rules\rules.1.408.63
C:\Program Files\Dealio\kb127\rules\rules.1.409.61
C:\Program Files\Dealio\kb127\rules\rules.1.412.62
C:\Program Files\Dealio\kb127\rules\rules.1.413.62
C:\Program Files\Dealio\kb127\rules\rules.1.414.62
C:\Program Files\Dealio\kb127\rules\rules.1.415.62
C:\Program Files\Dealio\kb127\rules\rules.1.416.62
C:\Program Files\Dealio\kb127\rules\rules.1.417.62
C:\Program Files\Dealio\kb127\rules\rules.1.418.62
C:\Program Files\Dealio\kb127\rules\rules.1.419.62
C:\Program Files\Dealio\kb127\rules\rules.1.420.62
C:\Program Files\Dealio\kb127\rules\rules.1.421.62
C:\Program Files\Dealio\kb127\rules\rules.1.423.63
C:\Program Files\Dealio\kb127\rules\rules.1.424.63
C:\Program Files\Dealio\kb127\rules\rules.1.425.63
C:\Program Files\Dealio\kb127\rules\rules.1.426.63
C:\Program Files\Dealio\kb127\rules\rules.1.427.63
C:\Program Files\Dealio\kb127\rules\rules.1.428.65
C:\Program Files\Dealio\kb127\rules\rules.1.429.63
C:\Program Files\Dealio\kb127\rules\rules.1.430.63
C:\Program Files\Dealio\kb127\rules\rules.1.432.65
C:\Program Files\Dealio\kb127\rules\rules.1.433.64
C:\Program Files\Dealio\kb127\rules\rules.1.434.65
C:\Program Files\Dealio\kb127\rules\rules.1.435.64
C:\Program Files\Dealio\kb127\rules\rules.1.436.76
C:\Program Files\Dealio\kb127\rules\rules.1.437.64
C:\Program Files\Dealio\kb127\rules\rules.1.438.71
C:\Program Files\Dealio\kb127\rules\rules.1.439.71
C:\Program Files\Dealio\kb127\rules\rules.1.440.75
C:\Program Files\Dealio\kb127\rules\rules.1.442.73
C:\Program Files\Dealio\kb127\rules\rules.1.443.73
C:\Program Files\Dealio\kb127\rules\rules.1.444.73
C:\Program Files\Dealio\kb127\rules\rules.1.445.68
C:\Program Files\Dealio\kb127\rules\rules.1.446.69
C:\Program Files\Dealio\kb127\rules\rules.1.450.67
C:\Program Files\Dealio\kb127\rules\rules.1.451.67
C:\Program Files\Dealio\kb127\rules\rules.1.452.68
C:\Program Files\Dealio\kb127\rules\rules.1.453.68
C:\Program Files\Dealio\kb127\rules\rules.1.454.69
C:\Program Files\Dealio\kb127\rules\rules.1.456.69
C:\Program Files\Dealio\kb127\rules\rules.1.457.75
C:\Program Files\Dealio\kb127\rules\rules.1.458.70
C:\Program Files\Dealio\kb127\rules\rules.1.459.70
C:\Program Files\Dealio\kb127\rules\rules.1.460.69
C:\Program Files\Dealio\kb127\rules\rules.1.462.74
C:\Program Files\Dealio\kb127\rules\rules.1.463.69
C:\Program Files\Dealio\kb127\rules\rules.1.464.70
C:\Program Files\Dealio\kb127\rules\rules.1.465.68
C:\Program Files\Dealio\kb127\rules\rules.1.468.70
C:\Program Files\Dealio\kb127\rules\rules.1.469.70
C:\Program Files\Dealio\kb127\rules\rules.1.470.70
C:\Program Files\Dealio\kb127\rules\rules.1.471.73
C:\Program Files\Dealio\kb127\rules\rules.1.472.70
C:\Program Files\Dealio\kb127\rules\rules.1.478.74
C:\Program Files\Dealio\kb127\rules\rules.1.479.73
C:\Program Files\Dealio\kb127\rules\rules.1.480.68
C:\Program Files\Dealio\kb127\rules\rules.1.481.71
C:\Program Files\Dealio\kb127\rules\rules.1.482.74
C:\Program Files\Dealio\kb127\rules\rules.1.49.67
C:\Program Files\Dealio\kb127\rules\rules.1.50.43
C:\Program Files\Dealio\kb127\rules\rules.1.500.71
C:\Program Files\Dealio\kb127\rules\rules.1.501.74
C:\Program Files\Dealio\kb127\rules\rules.1.502.71
C:\Program Files\Dealio\kb127\rules\rules.1.51.69
C:\Program Files\Dealio\kb127\rules\rules.1.52.72
C:\Program Files\Dealio\kb127\rules\rules.1.520.76
C:\Program Files\Dealio\kb127\rules\rules.1.521.76
C:\Program Files\Dealio\kb127\rules\rules.1.522.76
C:\Program Files\Dealio\kb127\rules\rules.1.53.51
C:\Program Files\Dealio\kb127\rules\rules.1.531.76
C:\Program Files\Dealio\kb127\rules\rules.1.532.75
C:\Program Files\Dealio\kb127\rules\rules.1.534.75
C:\Program Files\Dealio\kb127\rules\rules.1.54.47
C:\Program Files\Dealio\kb127\rules\rules.1.55.45
C:\Program Files\Dealio\kb127\rules\rules.1.56.69
C:\Program Files\Dealio\kb127\rules\rules.1.57.43
C:\Program Files\Dealio\kb127\rules\rules.1.58.47
C:\Program Files\Dealio\kb127\rules\rules.1.593.76
C:\Program Files\Dealio\kb127\rules\rules.1.595.76
C:\Program Files\Dealio\kb127\rules\rules.1.63.57
C:\Program Files\Dealio\kb127\rules\rules.1.66.47
C:\Program Files\Dealio\kb127\rules\rules.1.70.75
C:\Program Files\Dealio\kb127\rules\rules.1.71.43
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\Dealio
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Search Settings
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Search Settings\kb127
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Search Settings\kb127\res
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Search Settings\kb127\temp
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Search Settings\kb127\temp\ws-14357.log
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Search Settings\kb127\temp\ws-14358.log
C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Search Settings\kb127\temp\ws-14359.log
C:\Program Files\Search Settings
C:\Program Files\Search Settings\kb127
C:\Program Files\Search Settings\SearchSettings.exe
C:\Program Files\Search Settings\kb127\res
C:\Program Files\Search Settings\kb127\SearchSettings.dll
C:\Program Files\Search Settings\kb127\SearchSettingsRes409.dll
C:\Program Files\Search Settings\kb127\temp

-----------\\ Extensions

(benjamin fosse.PC251151843926) - {991A772A-BA13-4c1d-A9EF-F897F31DEC7D} => megaupload


-----------\\ [..\Internet Explorer\Main]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Page_URL"="https://fr.yahoo.com/?p=us"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="https://fr.yahoo.com/?p=us"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"


--------------------\\ Recherche d'autres infections
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
ben
 
je te remercie je t'envoie le rapport la j'espere tu pourra solutionner mon probleme merci d'avance
0
kevin05 Messages postés 3814 Date d'inscription   Statut Contributeur sécurité Dernière intervention   147
 
? Relance Toolbar-S&D en double-cliquant sur le raccourci.
? Tape sur "2" puis valide en appuyant sur "Entrée".
/!\ Ne ferme pas la fenêtre lors de la suppression !
? Un rapport sera généré, poste son contenu ici.

NOTE : Si ton Bureau ne réapparait pas, appuie simultanément sur Ctrl+Alt+Suppr pour ouvrir le Gestionnaire des tâches.
Rends-toi sur l'onglet "Processus". Clique en haut à gauche sur Fichier et choisis "Exécuter..."
Tape explorer puis valide.
0
ben
 
merci je tenvoi le contenu jen né marre de plus pouvoir avoir msn 8.5
-----------\\ ToolBar S&D 1.2.8 XP/Vista

Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Intel(R) Atom(TM) CPU N270 @ 1.60GHz )
BIOS : KBC Version 02.0D
USER : benjamin fosse ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1335 [VPS 090425-0] 4.8.1335 (Activated)
C:\ (Local Disk) - NTFS - Total:55 Go (Free:39 Go)

"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [2] ( 26/04/2009|15:36 )

-----------\\ SUPPRESSION

Supprime! - C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\dinstallhelper.B66DEDCFD94146C08EBDDC3D29B1BB2A.dll
Supprime! - C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio\kb127
Supprime! - C:\Program Files\Dealio\DealioAU.exe
Supprime! - C:\Program Files\Dealio\kb127
Supprime! - C:\Program Files\Dealio\SearchSettingsKit.exe
Supprime! - C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\Dealio
Supprime! - C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Search Settings\kb127
Supprime! - C:\Program Files\Search Settings\kb127
Supprime! - C:\Program Files\Search Settings\SearchSettings.exe
Supprime! - C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Dealio
Supprime! - C:\Program Files\Dealio
Supprime! - C:\DOCUME~1\BENJAM~1.PC2\APPLIC~1\Search Settings
Supprime! - C:\Program Files\Search Settings

-----------\\ Recherche de Fichiers / Dossiers ...

-----------\\ Extensions

(benjamin fosse.PC251151843926) - {991A772A-BA13-4c1d-A9EF-F897F31DEC7D} => megaupload

-----------\\ [..\Internet Explorer\Main]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Page_URL"="https://fr.yahoo.com/?p=us"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="https://fr.yahoo.com/?p=us"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/"

--------------------\\ Recherche d'autres infections

Aucune autre infection trouvée !

1 - "C:\ToolBar SD\TB_1.txt" - 25/04/2009|23:27 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 25/04/2009|23:42 - Option : [1]
3 - "C:\ToolBar SD\TB_3.txt" - 26/04/2009|15:38 - Option : [2]

-----------\\ Fin du rapport a 15:38:30,21 msn 8.5
0
kevin05 Messages postés 3814 Date d'inscription   Statut Contributeur sécurité Dernière intervention   147
 
Salut,

- Télécharge Random's System Information Tool (RSIT) (par random/random) sur ton Bureau.

- Double-clique sur RSIT.exe afin de lancer le programme.

- Clique sur Continue à l'écran Disclaimer.Choisis "1 months" dans le menu déroulant puis clique sur <continue>.

- Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.

- Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront. Poste le contenu de log.txt (c'est celui qui apparaît à l'écran) ainsi que de info.txt (que tu verras dans la barre des tâches).

Note : Les rapports sont sauvegardés dans le dossier C:\rsit.
0
ben
 
salut kevin j'au deja hijack je fais quoi apré
0
kevin05 Messages postés 3814 Date d'inscription   Statut Contributeur sécurité Dernière intervention   147
 
C'est pas hijack c'est plus complet que hijack fais stp ;)
0
ben
 
voila je te poste le contenu kevin Logfile of random's system information tool 1.06 (written by random/random)
Run by benjamin fosse at 2009-04-26 15:52:30
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 41 GB (71%) free of 57 GB
Total RAM: 1015 MB (35% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:52:42, on 26/04/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16827)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\sttray.exe
C:\Program Files\IDT\WDM\STacSV.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\WINDOWS\system32\AESTFltr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Windows Live\Contrôle parental\fssui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Bouygues\GlobeTrotter Connect\GlobeTrotter Connect.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Windows Live\installer\WLSetupSvc.exe
C:\Program Files\Mozilla Firefox 3.1 Beta 2\firefox.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\benjamin fosse.PC251151843926\Bureau\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\benjamin fosse.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.Yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.Yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - Default URLSearchHook is missing
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Windows Live OneCare Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Contrôle parental\fssbho.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: MegaIEMn - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [IDTSysTrayApp] sttray.exe
O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [AESTFltr] %SystemRoot%\system32\AESTFltr.exe /NoDlg
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [HP Mobile Broadband] c:\SWsetup\HPQWWAN\HPMobileBroadband.exe /TrayMode
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Contrôle parental\fssui.exe" -autorun
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: GlobeTrotter Connect.lnk = C:\Program Files\Bouygues\GlobeTrotter Connect\GlobeTrotter Connect.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Envoyer à Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU)
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Service Google Update (gupdate1c9b58b8ac71cda) (gupdate1c9b58b8ac71cda) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV.exe
0
ben
 
et ca c'est info l'autre rapport serieux je suis perdu c'est compliqué pour moi tout ca aider moi svp info.txt logfile of random's system information tool 1.06 2009-04-26 15:52:47

======Uninstall list======

-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Acoustica Mixcraft 4.5-->C:\PROGRA~1\ACOUST~1\UNWISE.EXE C:\PROGRA~1\ACOUST~1\INSTALL.LOG
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Reader 8.1.2 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A81200000003}
AIM 6-->C:\Program Files\AIM6\uninst.exe
Assistant de connexion Windows Live-->MsiExec.exe /I{D3116CC7-24DC-4CA3-9CE1-23FED836E9F2}
Audacity 1.2.6-->"C:\Program Files\Audacity\unins000.exe"
avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
Carte réseau local sans fil 802.11 Broadcom-->"C:\Program Files\Broadcom\Broadcom 802.11\Driver\bcmwlu00.exe" verbose /rootkey="Software\Broadcom\802.11\UninstallInfo" /rootdir="C:\Program Files\Broadcom\Broadcom 802.11\Driver"
Correctif pour Lecteur Windows Media 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB949764)-->"C:\WINDOWS\$NtUninstallKB949764$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Dealio Toolbar 3.4-->MsiExec.exe /X{6105648C-0C3C-481D-8C11-1F4952D6FB53}
DivX Codec-->C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
DivX Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
Extension de Windows Live Toolbar (Windows Live Toolbar)-->MsiExec.exe /X{0CA6047C-D28B-4295-834A-07C52BA20C2D}
Free Mp3 Wma Converter V 1.8.0-->"C:\Program Files\Free Audio Pack\unins000.exe"
Galerie de photos Windows Live-->MsiExec.exe /X{A70FA218-6598-4AC9-813D-63597C5DD068}
GlobeTrotter Connect-->MsiExec.exe /X{DDEB70E9-34C5-4DF3-8B39-85358859B049}
Google Chrome-->"C:\Program Files\Google\Chrome\Application\1.0.154.59\Installer\setup.exe" --uninstall --system-level
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
HP Doc Viewer-->MsiExec.exe /I{082702D5-5DD8-4600-BCE5-48B15174687F}
HP Help and Support-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A93C4E94-1005-489D-BEAA-B873C1AA6CFC}\setup.exe" -l0x40c -removeonly
HP Mobile Broadband Setup Utility-->MsiExec.exe /I{3B67D55A-BDFB-467E-A464-A7F4FE8142B9}
HP User Guides 0119-->MsiExec.exe /X{1178CE69-1B1D-4ED2-9E52-3E98A8C99816}
IDT Audio-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}\setup.exe" -l0x40c -remove -removeonly
Intel(R) Graphics Media Accelerator Driver-->C:\WINDOWS\system32\igxpun.exe -uninstall
Java(TM) 6 Update 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160060}
Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Marvell Miniport Driver-->MsiExec.exe /X{C950420B-4182-49EA-850A-A6A2ABF06C6B}
Mega Manager-->C:\Program Files\InstallShield Installation Information\{3B6E3FC6-274C-4B6C-BC85-5C3B15DE18E2}\setup.exe -runfromtemp -l0x0009 -removeonly
Menus intelligents (Windows Live Toolbar)-->MsiExec.exe /X{0CC70FEF-5068-4CD5-B4DE-86FFD98EC929}
Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.exe
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Office PowerPoint Viewer 2007 (French)-->MsiExec.exe /X{95120000-00AF-040C-0000-0000000FF1CE}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Works-->MsiExec.exe /I{3B160861-7250-451E-B5EE-8B92BF30A710}
Mise à jour critique pour Lecteur Windows Media 11 (KB959772)-->"C:\WINDOWS\$NtUninstallKB959772_WM11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127-v2)-->"C:\WINDOWS\ie7updates\KB938127-v2-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB961260)-->"C:\WINDOWS\ie7updates\KB961260-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB963027)-->"C:\WINDOWS\ie7updates\KB963027-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954459)-->"C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954600)-->"C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958690)-->"C:\WINDOWS\$NtUninstallKB958690$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960715)-->"C:\WINDOWS\$NtUninstallKB960715$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB961373)-->"C:\WINDOWS\$NtUninstallKB961373$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB898461)-->"C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB955839)-->"C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Module de compatibilité pour Microsoft Office System 2007-->MsiExec.exe /X{90120000-0020-040C-0000-0000000FF1CE}
Module de prise en charge linguistique de Microsoft .NET Framework 2.0 - FRA-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0 Language Pack - FRA\install.exe
Mozilla Firefox (3.1b3)-->C:\Program Files\Mozilla Firefox 3.1 Beta 2\uninstall\helper.exe
MSN-->C:\Program Files\MSN\MsnInstaller\msninst.exe /Action:ARP
Search Settings 1.2-->MsiExec.exe /X{D0C73318-7B4A-4D16-A0C4-3B83F075EA88}
Surligneur (Windows Live Toolbar)-->MsiExec.exe /X{81B5F83F-2291-48B0-8375-36B63A9BF5B0}
Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
Utilitaire de sauvegarde Windows-->MsiExec.exe /I{76EFFC7C-17A6-479D-9E47-8E658C1695AE}
VC80CRTRedist - 8.0.50727.762-->MsiExec.exe /I{767CC44C-9BBC-438D-BAD3-FD4595DD148B}
Viewpoint Media Player-->C:\Program Files\Viewpoint\Viewpoint Experience Technology\mtsAxInstaller.exe /u
VLC media player 0.9.8a-->C:\Program Files\VideoLAN\VLC\uninstall.exe
WIDCOMM Bluetooth Software-->MsiExec.exe /X{84814E6B-2581-46EC-926A-823BD1C670F6}
Windows Installer Clean Up-->MsiExec.exe /X{121634B0-2F4B-11D3-ADA3-00C04F52DD52}
Windows Live Favorites pour Windows Live Toolbar-->MsiExec.exe /X{786C4AD1-DCBA-49A6-B0EF-B317A344BD66}
Windows Live installer-->MsiExec.exe /X{FD44E544-E7D0-4DBA-9FA0-8AE1A1300390}
Windows Live Mail-->MsiExec.exe /I{C514C594-23AA-4F13-A070-DB8BDB27594F}
Windows Live OneCare Contrôle parental-->MsiExec.exe /X{3677FD57-D0DE-47CD-942E-99913D04C135}
Windows Live Toolbar-->"C:\Program Files\Windows Live Toolbar\UnInstall.exe" {0A8C97AD-DEED-4894-B446-3ABA95A77D0D}
Windows Live Toolbar-->MsiExec.exe /X{0A8C97AD-DEED-4894-B446-3ABA95A77D0D}
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"

=====HijackThis Backups=====

O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-04-25]

======Security center information======

AV: avast! antivirus 4.8.1335 [VPS 090425-0]

======System event log======

Computer Name: PC251151843926
Event Code: 7036
Message: Le service avast! Web Scanner est entré dans l'état : en cours d'exécution.

Record Number: 2686
Source Name: Service Control Manager
Time Written: 20090330092906.000000+120
Event Type: Informations
User:

Computer Name: PC251151843926
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service avast! Web Scanner.

Record Number: 2685
Source Name: Service Control Manager
Time Written: 20090330092906.000000+120
Event Type: Informations
User: AUTORITE NT\SYSTEM

Computer Name: PC251151843926
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service avast! Mail Scanner.

Record Number: 2684
Source Name: Service Control Manager
Time Written: 20090330092906.000000+120
Event Type: Informations
User: AUTORITE NT\SYSTEM

Computer Name: PC251151843926
Event Code: 7036
Message: Le service Compatibilité avec le Changement rapide d'utilisateur est entré dans l'état : en cours d'exécution.

Record Number: 2683
Source Name: Service Control Manager
Time Written: 20090330092906.000000+120
Event Type: Informations
User:

Computer Name: PC251151843926
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Compatibilité avec le Changement rapide d'utilisateur.

Record Number: 2682
Source Name: Service Control Manager
Time Written: 20090330092906.000000+120
Event Type: Informations
User: AUTORITE NT\SYSTEM

=====Application event log=====

Computer Name: PC251151843926
Event Code: 704
Message: MsnMsgr (2428) La défragmentation en ligne de la base de données '\\.\C:\Documents and Settings\benjamin fosse.PC251151843926\Local Settings\Application Data\Microsoft\Messenger\tony28100@hotmail.fr\SharingMetadata\Working\database_7C97_3885_284A_6D35\dfsr.db' a été interrompue et arrêtée. La prochaine fois qu'une défragmentation en ligne sera effectuée dans cette base de données, elle reprendra à l'endroit où elle a été interrompue.

Record Number: 2011
Source Name: ESENT
Time Written: 20090412000139.000000+120
Event Type: Informations
User:

Computer Name: PC251151843926
Event Code: 701
Message: MsnMsgr (2428) La défragmentation en ligne a terminé un passage complet dans la base de données '\\.\C:\Documents and Settings\benjamin fosse.PC251151843926\Local Settings\Application Data\Microsoft\Messenger\tony28100@hotmail.fr\SharingMetadata\Working\database_7C97_3885_284A_6D35\dfsr.db'.

Record Number: 2010
Source Name: ESENT
Time Written: 20090412000002.000000+120
Event Type: Informations
User:

Computer Name: PC251151843926
Event Code: 700
Message: MsnMsgr (2428) La défragmentation en ligne commence un passage complet dans la base de données '\\.\C:\Documents and Settings\benjamin fosse.PC251151843926\Local Settings\Application Data\Microsoft\Messenger\tony28100@hotmail.fr\SharingMetadata\Working\database_7C97_3885_284A_6D35\dfsr.db'.

Record Number: 2009
Source Name: ESENT
Time Written: 20090412000002.000000+120
Event Type: Informations
User:

Computer Name: PC251151843926
Event Code: 102
Message: MsnMsgr (2428) \\.\C:\Documents and Settings\benjamin fosse.PC251151843926\Local Settings\Application Data\Microsoft\Messenger\tony28100@hotmail.fr\SharingMetadata\Working\database_7C97_3885_284A_6D35\dfsr.db: Le moteur de base de données a démarré une nouvelle instance (0).

Record Number: 2008
Source Name: ESENT
Time Written: 20090411214228.000000+120
Event Type: Informations
User:

Computer Name: PC251151843926
Event Code: 100
Message: MsnMsgr (2428) Le moteur de base de données 5.01.2600.5512 est démarré.

Record Number: 2007
Source Name: ESENT
Time Written: 20090411214228.000000+120
Event Type: Informations
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Fichiers communs\DivX Shared\
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 28 Stepping 2, GenuineIntel
"PROCESSOR_REVISION"=1c02
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP

-----------------EOF-----------------
0
kevin05 Messages postés 3814 Date d'inscription   Statut Contributeur sécurité Dernière intervention   147
 
Télécharge UsbFix sur ton bureau :

=> Lance l’installation avec les paramètres par défaut

Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) susceptible d’avoir été infectés sans les ouvrir

=> Double clic sur le raccourci UsbFix sur ton bureau

=> Sélectionne l’option 1 : recherche

=> Poste le rapport UsbFix.txt

Notes :
* Le rapport UsbFix.txt est sauvegardé a la racine du disque
* Si le Bureau ne réapparaît pas presse Ctrl + Alt + Suppr , Onglet "Fichier" , "Nouvelle tâche", tape explorer.exe et valide.

TUTO si problème
0
ben
 
VOILA LE RAPPORT
############################## [ UsbFix V3.013 ]

# User : benjamin fosse (Administrateurs) # PC251151843926
# Update on 26/04/09 by C_XX & Chiquitine29
# Start at: 16:01:25 | 26/04/2009

# Intel(R) Atom(TM) CPU N270 @ 1.60GHz
# Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 3
# Internet Explorer 7.0.5730.13
# Windows Firewall Status : Enabled
# AV : avast! antivirus 4.8.1335 [VPS 090425-0] 4.8.1335 [ Enabled | Updated ]

# C:\ # Disque fixe local # 55,88 Go (39,72 Go free) # NTFS

############################## [ Processus actifs ]

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\sttray.exe
C:\Program Files\IDT\WDM\STacSV.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\WINDOWS\system32\AESTFltr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Live\Contrôle parental\fssui.exe
C:\Program Files\Windows Live\Contrôle parental\fsssvc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Bouygues\GlobeTrotter Connect\GlobeTrotter Connect.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Windows Live\installer\WLSetupSvc.exe
C:\Program Files\Mozilla Firefox 3.1 Beta 2\firefox.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

################## [ Registre # Startup ]

HKCU_Main: "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
HKCU_Main: "Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
HKCU_Main: "Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"
HKLM_logon: "Userinit"="C:\\WINDOWS\\system32\\userinit.exe,"
HKLM_logon: "DefaultUserName"="benjamin fosse"
HKLM_logon: "AltDefaultUserName"="benjamin fosse"
HKLM_logon: "LegalNoticeCaption"=""
HKLM_logon: "LegalNoticeText"=""
HKLM_Run: IgfxTray=C:\WINDOWS\system32\igfxtray.exe
HKLM_Run: HotKeysCmds=C:\WINDOWS\system32\hkcmd.exe
HKLM_Run: Persistence=C:\WINDOWS\system32\igfxpers.exe
HKLM_Run: IDTSysTrayApp=sttray.exe
HKLM_Run: SysTrayApp=%ProgramFiles%\IDT\WDM\sttray.exe
HKLM_Run: AESTFltr=%SystemRoot%\system32\AESTFltr.exe /NoDlg
HKLM_Run: SynTPEnh=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
HKLM_Run: SunJavaUpdateSched="C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
HKLM_Run: Adobe Reader Speed Launcher="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
HKLM_Run: HP Mobile Broadband=c:\SWsetup\HPQWWAN\HPMobileBroadband.exe /TrayMode
HKLM_Run: avast!=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
HKLM_Run: fssui="C:\Program Files\Windows Live\Contrôle parental\fssui.exe" -autorun
HKLM_Run: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents=
HKCU_Run: ctfmon.exe=C:\WINDOWS\system32\ctfmon.exe
HKCU_Run: MsnMsgr="C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background

################## [ Informations ]

################## [ Fichiers # Dossiers infectieux ]

################## [ Registre # Clés Run infectieuses ]

Found ! HKLM\software\microsoft\security center\\ "FirewallOverride"
# -> ( Value = 0x1 | Good = 0x0 Bad = 0x1 )

################## [ Registre # Mountpoints2 ]

HKCU\Software\Microsoft\....\MountPoints2\{71f0be8c-0a33-11de-937a-002264844b46}\Shell\AutoRun\command

################## [ ! Fin du rapport # UsbFix V3.013 ! ]
0
ben
 
vous aller pouvoir resoudre mon probleme ?c'est grave ou pas
0