Aller au contenu

shogun133x

Membres
  • Compteur de contenus

    35
  • Inscription

  • Dernière visite

Tout ce qui a été posté par shogun133x

  1. bonjour Sheilla, j'ai fait ce que tu m'as dit et ca marche toujours pas
  2. Juste pour faire remonter le post
  3. S'il vous plait aidez moi
  4. OUI
  5. Salut, J'ai vérifié, c'est pas le cas
  6. Excusez moi, personne pour m'aider, je ne suis peut etre pas au bon endroit?
  7. Bonjour, Je n'arrive plus à ouvrir outlook 2007, je suis sous vista. Le message suivant s'affiche " Impossible de demarrer Microsoft Office Outllook. Impossible d'ouvrir la fenetre Outlook". Pouvez vous m'aider. Merci
  8. Voila [ Rapport ToolsCleaner version 2.3.5 (par A.Rothstein & dj QUIOU) ] --> Recherche: C:\Documents and Settings\Administrateur\Bureau\HijackThis.lnk: trouvé ! C:\Documents and Settings\Administrateur\Bureau\HJTInstall.exe: trouvé ! C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: trouvé ! C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: trouvé ! C:\Program Files\Trend Micro\HijackThis: trouvé ! C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé ! C:\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé ! --------------------------------- --> Suppression: C:\Documents and Settings\Administrateur\Bureau\HijackThis.lnk: supprimé ! C:\Documents and Settings\Administrateur\Bureau\HJTInstall.exe: supprimé ! C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: supprimé ! C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: supprimé ! C:\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé ! C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: supprimé ! C:\Program Files\Trend Micro\HijackThis: supprimé ! Point de restauration crée ! Corbeille vidée! Fichiers temporaires nettoyés !
  9. Ok c'est bon . Merci encore Apollo. A +
  10. Bonjour, Voivi les rapports demandés Malwarebytes' Anti-Malware 1.36 Version de la base de données: 2154 Windows 5.1.2600 Service Pack 3 19/05/2009 18:21:35 mbam-log-2009-05-19 (18-21-35).txt Type de recherche: Examen complet (C:\|D:\|) Eléments examinés: 119600 Temps écoulé: 54 minute(s), 37 second(s) Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 0 Clé(s) du Registre infectée(s): 1 Valeur(s) du Registre infectée(s): 0 Elément(s) de données du Registre infecté(s): 3 Dossier(s) infecté(s): 0 Fichier(s) infecté(s): 0 Processus mémoire infecté(s): (Aucun élément nuisible détecté) Module(s) mémoire infecté(s): (Aucun élément nuisible détecté) Clé(s) du Registre infectée(s): HKEY_LOCAL_MACHINE\SOFTWARE\EoRezo (Rogue.Eorezo) -> Quarantined and deleted successfully. Valeur(s) du Registre infectée(s): (Aucun élément nuisible détecté) Elément(s) de données du Registre infecté(s): HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSMHelp (Hijack.Help) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. Dossier(s) infecté(s): (Aucun élément nuisible détecté) Fichier(s) infecté(s): (Aucun élément nuisible détecté) Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 14:10:00, on 20/05/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16827) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir Desktop\sched.exe C:\Program Files\Avira\AntiVir Desktop\avguard.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\mdm.exe C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\Olivetti\ANY_WAY\olMntrService.exe C:\WINDOWS\system32\IoctlSvc.exe C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Avira\AntiVir Desktop\avgnt.exe C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Hercules\Audio\Gamesurround Muse Pocket\MuseCPL.exe C:\Program Files\NETGEAR\WPN111\wpn111.exe C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.fr/keyword/%s R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ie R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.aliceadsl.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.fr/ie R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.fr/keyword/%s R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Alice ADSL R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 195.115.25.129:80 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: StylerToolBar - {D2F8F919-690B-4EA2-9FA7-A203D1E04F75} - C:\Program Files\styler\TB\StylerTB.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O4 - HKLM\..\Run: [MobileConnect] %programfiles%\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe /silent O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKCU\..\Run: [indxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020 O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user') O4 - Global Startup: Gamesurround Muse Pocket.lnk = C:\Program Files\Hercules\Audio\Gamesurround Muse Pocket\MuseCPL.exe O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O4 - Global Startup: NETGEAR WPN111 Smart Wizard.lnk = ? O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000 O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: PokerStars.net - {FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} - C:\Program Files\PokerStars.NET\PokerStarsUpdate.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: olMntrService - Olivetti - C:\Program Files\Olivetti\ANY_WAY\olMntrService.exe O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe O23 - Service: Vodafone Mobile Connect Service (VMCService) - Vodafone - C:\Program Files\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe -- End of file - 8201 bytes
  11. Oui ca va mieux sauf qu'entre temps j'ai installé antivir et que ça l'a ralenti. Sinon 2 autres questions j'ai supprimé spybot dois je prendre autre chose? et pour avoir une version de windows complete, je fais comment? Je sais je suis nul! lol
  12. -----------\\ ToolBar S&D 1.2.8 XP/Vista Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3 X86-based PC ( Uniprocessor Free : AMD Athlon XP Processor 2800+ ) BIOS : Ver 1.00PARTTBL USER : Administrateur ( Administrator ) BOOT : Normal boot Antivirus : AntiVir Desktop 9.0.1.26 (Activated) C:\ (Local Disk) - NTFS - Total:37 Go (Free:21 Go) D:\ (CD or DVD) "C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 ) Option : [2] ( 19/05/2009|15:56 ) -----------\\ Recherche de Fichiers / Dossiers ... -----------\\ Extensions (Administrateur) - {c4dc572a-3295-40eb-b30f-b54aa4cdc4b7} => wmlbrowser -----------\\ [..\Internet Explorer\Main] [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://www.google.fr"'>http://www.google.fr"'>http://www.google.fr"'>http://www.google.fr" "Search Bar"="http://www.google.fr/ie" "Start Page"="http://www.aliceadsl.fr" "Default_Search_URL"="http://www.google.fr/keyword/%s" "Local Page"="C:\\WINDOWS\\system32\\blank.htm" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="http://www.google.fr" "Default_Search_URL"="http://www.google.fr" "Search Page"="http://www.google.fr" "Start Page"="http://www.msn.com/" --------------------\\ Recherche d'autres infections Aucune autre infection trouvée ! 1 - "C:\ToolBar SD\TB_1.txt" - 19/05/2009|15:18 - Option : [1] 2 - "C:\ToolBar SD\TB_2.txt" - 19/05/2009|15:44 - Option : [2] 3 - "C:\ToolBar SD\TB_3.txt" - 19/05/2009|15:59 - Option : [2] -----------\\ Fin du rapport a 15:59:31,98 Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 16:05:45, on 19/05/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16827) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\mdm.exe C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\Olivetti\ANY_WAY\olMntrService.exe C:\WINDOWS\system32\IoctlSvc.exe C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe C:\Program Files\TechCity Solutions\AliceSAV\AliceAgent.exe C:\Program Files\VistaCodecPack\QT\QTSystem\qttask.exe C:\Program Files\Microsoft ActiveSync\wcescomm.exe C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe C:\WINDOWS\system32\ctfmon.exe C:\PROGRA~1\MI3AA1~1\rapimgr.exe C:\Program Files\Hercules\Audio\Gamesurround Muse Pocket\MuseCPL.exe C:\Program Files\NETGEAR\WPN111\wpn111.exe C:\Program Files\WinZip\WZQKPICK.EXE C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe C:\Program Files\Avira\AntiVir Desktop\avguard.exe C:\Program Files\Avira\AntiVir Desktop\sched.exe C:\Program Files\Avira\AntiVir Desktop\avgnt.exe c:\program files\avira\antivir desktop\avscan.exe C:\WINDOWS\system32\notepad.exe C:\WINDOWS\system32\LVComsX.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.fr/keyword/%s R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ie R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.aliceadsl.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.fr/ie R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.fr/keyword/%s R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Alice ADSL R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 195.115.25.129:80 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - Default URLSearchHook is missing O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: StylerToolBar - {D2F8F919-690B-4EA2-9FA7-A203D1E04F75} - C:\Program Files\styler\TB\StylerTB.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O4 - HKLM\..\Run: [AliceSAV] C:\Program Files\TechCity Solutions\AliceSAV\AliceAgent.exe O4 - HKLM\..\Run: [MobileConnect] %programfiles%\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe /silent O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\VistaCodecPack\QT\QTSystem\qttask.exe" -atboottime O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe" O4 - HKCU\..\Run: [indxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020 O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user') O4 - Global Startup: Gamesurround Muse Pocket.lnk = C:\Program Files\Hercules\Audio\Gamesurround Muse Pocket\MuseCPL.exe O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O4 - Global Startup: NETGEAR WPN111 Smart Wizard.lnk = ? O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000 O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: PokerStars.net - {FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} - C:\Program Files\PokerStars.NET\PokerStarsUpdate.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: olMntrService - Olivetti - C:\Program Files\Olivetti\ANY_WAY\olMntrService.exe O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe O23 - Service: Vodafone Mobile Connect Service (VMCService) - Vodafone - C:\Program Files\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe -- End of file - 9344 bytes
  13. -----------\\ ToolBar S&D 1.2.8 XP/Vista Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3 X86-based PC ( Uniprocessor Free : AMD Athlon XP Processor 2800+ ) BIOS : Ver 1.00PARTTBL USER : Administrateur ( Administrator ) BOOT : Normal boot C:\ (Local Disk) - NTFS - Total:37 Go (Free:21 Go) D:\ (CD or DVD) "C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 ) Option : [1] ( 19/05/2009|15:17 ) -----------\\ Recherche de Fichiers / Dossiers ... C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\alerts.gif C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\alerts_over.gif C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\alerts_rec.gif C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\alerts_rec_over.gif C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\chevron-small.gif C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\DealioSearch.html C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\deals-leftcap.gif C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\deal_report.jpg C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\ebay_login.jpg C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\err_mainwindow.html C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\err_toolbar.html C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\global_scripts.js C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\headerbgthin.jpg C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\highlight-bg.png C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\logo.gif C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\logo_over.gif C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\man_toolbar.css C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\man_toolbar.html C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\man_toolbar.js C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\man_toolbarl.js C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\post-this-deal.gif C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\post-this-deal_over.gif C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\scripts.js C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\scroller.js C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\search-chevron.gif C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\search-chevron_over.gif C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\search_bg_blink.gif C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\separator.gif C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\settings.gif C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\settings_over.gif C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\yahoo-search.png C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\index.76.35 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.10.76 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.109.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.110.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.12.52 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.13.58 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.130.58 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.135.50 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.153.44 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.155.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.156.49 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.16.60 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.161.52 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.178.66 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.184.55 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.188.52 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.189.45 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.196.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.198.56 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.199.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.200.53 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.201.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.202.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.203.71 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.205.62 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.213.71 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.214.49 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.215.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.216.67 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.217.67 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.218.52 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.219.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.220.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.221.57 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.222.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.223.68 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.226.68 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.227.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.228.62 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.229.76 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.23.63 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.239.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.24.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.240.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.241.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.242.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.243.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.244.63 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.245.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.247.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.248.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.249.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.250.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.251.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.252.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.253.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.254.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.255.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.256.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.257.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.279.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.28.58 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.282.75 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.283.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.284.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.289.67 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.290.62 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.291.61 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.296.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.297.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.304.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.307.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.308.75 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.31.47 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.310.46 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.311.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.315.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.316.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.317.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.318.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.319.49 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.32.48 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.334.44 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.335.60 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.336.44 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.337.44 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.338.75 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.339.47 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.34.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.340.47 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.341.47 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.349.50 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.35.48 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.350.50 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.351.51 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.352.54 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.353.51 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.354.51 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.357.62 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.358.52 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.359.52 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.360.53 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.361.54 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.362.68 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.363.58 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.364.54 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.365.53 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.367.56 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.368.58 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.369.55 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.370.56 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.371.56 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.372.57 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.373.55 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.375.56 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.376.57 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.377.55 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.378.65 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.384.58 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.386.71 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.387.59 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.388.59 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.389.59 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.390.60 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.391.60 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.392.60 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.393.60 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.394.60 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.396.61 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.397.61 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.398.60 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.399.60 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.403.61 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.404.63 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.405.61 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.406.61 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.407.76 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.408.63 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.409.61 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.412.62 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.413.62 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.414.62 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.415.62 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.416.62 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.417.62 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.418.62 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.419.62 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.420.62 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.421.62 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.423.63 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.424.63 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.425.63 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.426.63 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.427.63 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.428.65 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.429.63 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.430.63 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.432.65 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.433.64 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.434.65 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.435.64 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.436.76 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.437.64 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.438.71 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.439.71 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.440.75 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.442.73 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.443.73 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.444.73 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.445.68 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.446.69 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.450.67 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.451.67 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.452.68 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.453.68 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.454.69 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.456.69 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.457.75 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.458.70 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.459.70 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.460.69 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.462.74 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.463.69 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.464.70 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.465.68 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.468.70 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.469.70 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.470.70 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.471.73 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.472.70 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.478.74 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.479.73 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.480.68 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.481.71 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.482.74 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.49.67 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.50.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.500.71 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.501.74 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.502.71 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.51.69 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.52.72 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.520.76 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.521.76 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.522.76 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.53.51 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.531.76 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.532.75 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.534.75 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.54.47 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.55.45 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.56.69 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.57.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.58.47 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.593.76 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.595.76 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.63.57 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.66.47 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.70.75 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.71.43 C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp\dealio-14383.log C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp\dod_cache.xml C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_1260_484_2.html C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_160_1236_3.html C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_160_2232_9.html C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_1696_2896_5.html C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_1696_3152_1.html C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_1696_3152_3.html C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_3084_3964_1.html C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_3084_3964_2.html C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_3112_2596_8.html C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_3844_1816_6.html C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_3844_3168_3.html C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_3884_2304_6.html C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_3884_3148_3.html C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp\_toolbar_tmp_3884_676_9.html C:\Program Files\Dealio C:\Program Files\Dealio\DealioAU.exe C:\Program Files\Dealio\kb127 C:\Program Files\Dealio\SearchSettingsKit.exe C:\Program Files\Dealio\kb127\Dealio Deskbar.exe C:\Program Files\Dealio\kb127\Dealio.dll C:\Program Files\Dealio\kb127\DealioRes409.dll C:\Program Files\Dealio\kb127\res C:\Program Files\Dealio\kb127\resDN C:\Program Files\Dealio\kb127\rules C:\Program Files\Dealio\kb127\temp C:\Program Files\Dealio\kb127\res\alerts.gif C:\Program Files\Dealio\kb127\res\alerts_over.gif C:\Program Files\Dealio\kb127\res\alerts_rec.gif C:\Program Files\Dealio\kb127\res\alerts_rec_over.gif C:\Program Files\Dealio\kb127\res\chevron-small.gif C:\Program Files\Dealio\kb127\res\DealioSearch.html C:\Program Files\Dealio\kb127\res\deals-leftcap.gif C:\Program Files\Dealio\kb127\res\deal_report.jpg C:\Program Files\Dealio\kb127\res\ebay_login.jpg C:\Program Files\Dealio\kb127\res\err_mainwindow.html C:\Program Files\Dealio\kb127\res\err_toolbar.html C:\Program Files\Dealio\kb127\res\global_scripts.js C:\Program Files\Dealio\kb127\res\headerbgthin.jpg C:\Program Files\Dealio\kb127\res\highlight-bg.png C:\Program Files\Dealio\kb127\res\logo.gif C:\Program Files\Dealio\kb127\res\logo_over.gif C:\Program Files\Dealio\kb127\res\man_toolbar.css C:\Program Files\Dealio\kb127\res\man_toolbar.html C:\Program Files\Dealio\kb127\res\man_toolbar.js C:\Program Files\Dealio\kb127\res\man_toolbarl.js C:\Program Files\Dealio\kb127\res\post-this-deal.gif C:\Program Files\Dealio\kb127\res\post-this-deal_over.gif C:\Program Files\Dealio\kb127\res\scripts.js C:\Program Files\Dealio\kb127\res\scroller.js C:\Program Files\Dealio\kb127\res\search-chevron.gif C:\Program Files\Dealio\kb127\res\search-chevron_over.gif C:\Program Files\Dealio\kb127\res\search_bg_blink.gif C:\Program Files\Dealio\kb127\res\separator.gif C:\Program Files\Dealio\kb127\res\settings.gif C:\Program Files\Dealio\kb127\res\settings_over.gif C:\Program Files\Dealio\kb127\res\yahoo-search.png C:\Program Files\Dealio\kb127\resDN\bottom.gif C:\Program Files\Dealio\kb127\resDN\chevron_down.gif C:\Program Files\Dealio\kb127\resDN\chevron_up.gif C:\Program Files\Dealio\kb127\resDN\close.gif C:\Program Files\Dealio\kb127\resDN\deskbar.css C:\Program Files\Dealio\kb127\resDN\deskbar.js C:\Program Files\Dealio\kb127\resDN\dispatch_helper.js C:\Program Files\Dealio\kb127\resDN\ebay_compatible.jpg C:\Program Files\Dealio\kb127\resDN\logo.gif C:\Program Files\Dealio\kb127\resDN\logo_chevron_bkg.gif C:\Program Files\Dealio\kb127\resDN\losing.gif C:\Program Files\Dealio\kb127\resDN\lost.gif C:\Program Files\Dealio\kb127\resDN\man_deskbar.html C:\Program Files\Dealio\kb127\resDN\menu_arrow.gif C:\Program Files\Dealio\kb127\resDN\menu_check.gif C:\Program Files\Dealio\kb127\resDN\no_image.gif C:\Program Files\Dealio\kb127\resDN\prod_img.gif C:\Program Files\Dealio\kb127\resDN\search_chevron.gif C:\Program Files\Dealio\kb127\resDN\spacer.gif C:\Program Files\Dealio\kb127\resDN\textfield_bkg.gif C:\Program Files\Dealio\kb127\resDN\top.gif C:\Program Files\Dealio\kb127\resDN\unknown.gif C:\Program Files\Dealio\kb127\resDN\winning.gif C:\Program Files\Dealio\kb127\resDN\won.gif C:\Program Files\Dealio\kb127\rules\index.76.35 C:\Program Files\Dealio\kb127\rules\rules.1.10.76 C:\Program Files\Dealio\kb127\rules\rules.1.109.43 C:\Program Files\Dealio\kb127\rules\rules.1.110.43 C:\Program Files\Dealio\kb127\rules\rules.1.12.52 C:\Program Files\Dealio\kb127\rules\rules.1.13.58 C:\Program Files\Dealio\kb127\rules\rules.1.130.58 C:\Program Files\Dealio\kb127\rules\rules.1.135.50 C:\Program Files\Dealio\kb127\rules\rules.1.153.44 C:\Program Files\Dealio\kb127\rules\rules.1.155.43 C:\Program Files\Dealio\kb127\rules\rules.1.156.49 C:\Program Files\Dealio\kb127\rules\rules.1.16.60 C:\Program Files\Dealio\kb127\rules\rules.1.161.52 C:\Program Files\Dealio\kb127\rules\rules.1.178.66 C:\Program Files\Dealio\kb127\rules\rules.1.184.55 C:\Program Files\Dealio\kb127\rules\rules.1.188.52 C:\Program Files\Dealio\kb127\rules\rules.1.189.45 C:\Program Files\Dealio\kb127\rules\rules.1.196.43 C:\Program Files\Dealio\kb127\rules\rules.1.198.56 C:\Program Files\Dealio\kb127\rules\rules.1.199.43 C:\Program Files\Dealio\kb127\rules\rules.1.200.53 C:\Program Files\Dealio\kb127\rules\rules.1.201.43 C:\Program Files\Dealio\kb127\rules\rules.1.202.43 C:\Program Files\Dealio\kb127\rules\rules.1.203.71 C:\Program Files\Dealio\kb127\rules\rules.1.205.62 C:\Program Files\Dealio\kb127\rules\rules.1.213.71 C:\Program Files\Dealio\kb127\rules\rules.1.214.49 C:\Program Files\Dealio\kb127\rules\rules.1.215.43 C:\Program Files\Dealio\kb127\rules\rules.1.216.67 C:\Program Files\Dealio\kb127\rules\rules.1.217.67 C:\Program Files\Dealio\kb127\rules\rules.1.218.52 C:\Program Files\Dealio\kb127\rules\rules.1.219.43 C:\Program Files\Dealio\kb127\rules\rules.1.220.43 C:\Program Files\Dealio\kb127\rules\rules.1.221.57 C:\Program Files\Dealio\kb127\rules\rules.1.222.43 C:\Program Files\Dealio\kb127\rules\rules.1.223.68 C:\Program Files\Dealio\kb127\rules\rules.1.226.68 C:\Program Files\Dealio\kb127\rules\rules.1.227.43 C:\Program Files\Dealio\kb127\rules\rules.1.228.62 C:\Program Files\Dealio\kb127\rules\rules.1.229.76 C:\Program Files\Dealio\kb127\rules\rules.1.23.63 C:\Program Files\Dealio\kb127\rules\rules.1.239.43 C:\Program Files\Dealio\kb127\rules\rules.1.24.43 C:\Program Files\Dealio\kb127\rules\rules.1.240.43 C:\Program Files\Dealio\kb127\rules\rules.1.241.43 C:\Program Files\Dealio\kb127\rules\rules.1.242.43 C:\Program Files\Dealio\kb127\rules\rules.1.243.43 C:\Program Files\Dealio\kb127\rules\rules.1.244.63 C:\Program Files\Dealio\kb127\rules\rules.1.245.43 C:\Program Files\Dealio\kb127\rules\rules.1.247.43 C:\Program Files\Dealio\kb127\rules\rules.1.248.43 C:\Program Files\Dealio\kb127\rules\rules.1.249.43 C:\Program Files\Dealio\kb127\rules\rules.1.250.43 C:\Program Files\Dealio\kb127\rules\rules.1.251.43 C:\Program Files\Dealio\kb127\rules\rules.1.252.43 C:\Program Files\Dealio\kb127\rules\rules.1.253.43 C:\Program Files\Dealio\kb127\rules\rules.1.254.43 C:\Program Files\Dealio\kb127\rules\rules.1.255.43 C:\Program Files\Dealio\kb127\rules\rules.1.256.43 C:\Program Files\Dealio\kb127\rules\rules.1.257.43 C:\Program Files\Dealio\kb127\rules\rules.1.279.43 C:\Program Files\Dealio\kb127\rules\rules.1.28.58 C:\Program Files\Dealio\kb127\rules\rules.1.282.75 C:\Program Files\Dealio\kb127\rules\rules.1.283.43 C:\Program Files\Dealio\kb127\rules\rules.1.284.43 C:\Program Files\Dealio\kb127\rules\rules.1.289.67 C:\Program Files\Dealio\kb127\rules\rules.1.290.62 C:\Program Files\Dealio\kb127\rules\rules.1.291.61 C:\Program Files\Dealio\kb127\rules\rules.1.296.43 C:\Program Files\Dealio\kb127\rules\rules.1.297.43 C:\Program Files\Dealio\kb127\rules\rules.1.304.43 C:\Program Files\Dealio\kb127\rules\rules.1.307.43 C:\Program Files\Dealio\kb127\rules\rules.1.308.75 C:\Program Files\Dealio\kb127\rules\rules.1.31.47 C:\Program Files\Dealio\kb127\rules\rules.1.310.46 C:\Program Files\Dealio\kb127\rules\rules.1.311.43 C:\Program Files\Dealio\kb127\rules\rules.1.315.43 C:\Program Files\Dealio\kb127\rules\rules.1.316.43 C:\Program Files\Dealio\kb127\rules\rules.1.317.43 C:\Program Files\Dealio\kb127\rules\rules.1.318.43 C:\Program Files\Dealio\kb127\rules\rules.1.319.49 C:\Program Files\Dealio\kb127\rules\rules.1.32.48 C:\Program Files\Dealio\kb127\rules\rules.1.334.44 C:\Program Files\Dealio\kb127\rules\rules.1.335.60 C:\Program Files\Dealio\kb127\rules\rules.1.336.44 C:\Program Files\Dealio\kb127\rules\rules.1.337.44 C:\Program Files\Dealio\kb127\rules\rules.1.338.75 C:\Program Files\Dealio\kb127\rules\rules.1.339.47 C:\Program Files\Dealio\kb127\rules\rules.1.34.43 C:\Program Files\Dealio\kb127\rules\rules.1.340.47 C:\Program Files\Dealio\kb127\rules\rules.1.341.47 C:\Program Files\Dealio\kb127\rules\rules.1.349.50 C:\Program Files\Dealio\kb127\rules\rules.1.35.48 C:\Program Files\Dealio\kb127\rules\rules.1.350.50 C:\Program Files\Dealio\kb127\rules\rules.1.351.51 C:\Program Files\Dealio\kb127\rules\rules.1.352.54 C:\Program Files\Dealio\kb127\rules\rules.1.353.51 C:\Program Files\Dealio\kb127\rules\rules.1.354.51 C:\Program Files\Dealio\kb127\rules\rules.1.357.62 C:\Program Files\Dealio\kb127\rules\rules.1.358.52 C:\Program Files\Dealio\kb127\rules\rules.1.359.52 C:\Program Files\Dealio\kb127\rules\rules.1.360.53 C:\Program Files\Dealio\kb127\rules\rules.1.361.54 C:\Program Files\Dealio\kb127\rules\rules.1.362.68 C:\Program Files\Dealio\kb127\rules\rules.1.363.58 C:\Program Files\Dealio\kb127\rules\rules.1.364.54 C:\Program Files\Dealio\kb127\rules\rules.1.365.53 C:\Program Files\Dealio\kb127\rules\rules.1.367.56 C:\Program Files\Dealio\kb127\rules\rules.1.368.58 C:\Program Files\Dealio\kb127\rules\rules.1.369.55 C:\Program Files\Dealio\kb127\rules\rules.1.370.56 C:\Program Files\Dealio\kb127\rules\rules.1.371.56 C:\Program Files\Dealio\kb127\rules\rules.1.372.57 C:\Program Files\Dealio\kb127\rules\rules.1.373.55 C:\Program Files\Dealio\kb127\rules\rules.1.375.56 C:\Program Files\Dealio\kb127\rules\rules.1.376.57 C:\Program Files\Dealio\kb127\rules\rules.1.377.55 C:\Program Files\Dealio\kb127\rules\rules.1.378.65 C:\Program Files\Dealio\kb127\rules\rules.1.384.58 C:\Program Files\Dealio\kb127\rules\rules.1.386.71 C:\Program Files\Dealio\kb127\rules\rules.1.387.59 C:\Program Files\Dealio\kb127\rules\rules.1.388.59 C:\Program Files\Dealio\kb127\rules\rules.1.389.59 C:\Program Files\Dealio\kb127\rules\rules.1.390.60 C:\Program Files\Dealio\kb127\rules\rules.1.391.60 C:\Program Files\Dealio\kb127\rules\rules.1.392.60 C:\Program Files\Dealio\kb127\rules\rules.1.393.60 C:\Program Files\Dealio\kb127\rules\rules.1.394.60 C:\Program Files\Dealio\kb127\rules\rules.1.396.61 C:\Program Files\Dealio\kb127\rules\rules.1.397.61 C:\Program Files\Dealio\kb127\rules\rules.1.398.60 C:\Program Files\Dealio\kb127\rules\rules.1.399.60 C:\Program Files\Dealio\kb127\rules\rules.1.403.61 C:\Program Files\Dealio\kb127\rules\rules.1.404.63 C:\Program Files\Dealio\kb127\rules\rules.1.405.61 C:\Program Files\Dealio\kb127\rules\rules.1.406.61 C:\Program Files\Dealio\kb127\rules\rules.1.407.76 C:\Program Files\Dealio\kb127\rules\rules.1.408.63 C:\Program Files\Dealio\kb127\rules\rules.1.409.61 C:\Program Files\Dealio\kb127\rules\rules.1.412.62 C:\Program Files\Dealio\kb127\rules\rules.1.413.62 C:\Program Files\Dealio\kb127\rules\rules.1.414.62 C:\Program Files\Dealio\kb127\rules\rules.1.415.62 C:\Program Files\Dealio\kb127\rules\rules.1.416.62 C:\Program Files\Dealio\kb127\rules\rules.1.417.62 C:\Program Files\Dealio\kb127\rules\rules.1.418.62 C:\Program Files\Dealio\kb127\rules\rules.1.419.62 C:\Program Files\Dealio\kb127\rules\rules.1.420.62 C:\Program Files\Dealio\kb127\rules\rules.1.421.62 C:\Program Files\Dealio\kb127\rules\rules.1.423.63 C:\Program Files\Dealio\kb127\rules\rules.1.424.63 C:\Program Files\Dealio\kb127\rules\rules.1.425.63 C:\Program Files\Dealio\kb127\rules\rules.1.426.63 C:\Program Files\Dealio\kb127\rules\rules.1.427.63 C:\Program Files\Dealio\kb127\rules\rules.1.428.65 C:\Program Files\Dealio\kb127\rules\rules.1.429.63 C:\Program Files\Dealio\kb127\rules\rules.1.430.63 C:\Program Files\Dealio\kb127\rules\rules.1.432.65 C:\Program Files\Dealio\kb127\rules\rules.1.433.64 C:\Program Files\Dealio\kb127\rules\rules.1.434.65 C:\Program Files\Dealio\kb127\rules\rules.1.435.64 C:\Program Files\Dealio\kb127\rules\rules.1.436.76 C:\Program Files\Dealio\kb127\rules\rules.1.437.64 C:\Program Files\Dealio\kb127\rules\rules.1.438.71 C:\Program Files\Dealio\kb127\rules\rules.1.439.71 C:\Program Files\Dealio\kb127\rules\rules.1.440.75 C:\Program Files\Dealio\kb127\rules\rules.1.442.73 C:\Program Files\Dealio\kb127\rules\rules.1.443.73 C:\Program Files\Dealio\kb127\rules\rules.1.444.73 C:\Program Files\Dealio\kb127\rules\rules.1.445.68 C:\Program Files\Dealio\kb127\rules\rules.1.446.69 C:\Program Files\Dealio\kb127\rules\rules.1.450.67 C:\Program Files\Dealio\kb127\rules\rules.1.451.67 C:\Program Files\Dealio\kb127\rules\rules.1.452.68 C:\Program Files\Dealio\kb127\rules\rules.1.453.68 C:\Program Files\Dealio\kb127\rules\rules.1.454.69 C:\Program Files\Dealio\kb127\rules\rules.1.456.69 C:\Program Files\Dealio\kb127\rules\rules.1.457.75 C:\Program Files\Dealio\kb127\rules\rules.1.458.70 C:\Program Files\Dealio\kb127\rules\rules.1.459.70 C:\Program Files\Dealio\kb127\rules\rules.1.460.69 C:\Program Files\Dealio\kb127\rules\rules.1.462.74 C:\Program Files\Dealio\kb127\rules\rules.1.463.69 C:\Program Files\Dealio\kb127\rules\rules.1.464.70 C:\Program Files\Dealio\kb127\rules\rules.1.465.68 C:\Program Files\Dealio\kb127\rules\rules.1.468.70 C:\Program Files\Dealio\kb127\rules\rules.1.469.70 C:\Program Files\Dealio\kb127\rules\rules.1.470.70 C:\Program Files\Dealio\kb127\rules\rules.1.471.73 C:\Program Files\Dealio\kb127\rules\rules.1.472.70 C:\Program Files\Dealio\kb127\rules\rules.1.478.74 C:\Program Files\Dealio\kb127\rules\rules.1.479.73 C:\Program Files\Dealio\kb127\rules\rules.1.480.68 C:\Program Files\Dealio\kb127\rules\rules.1.481.71 C:\Program Files\Dealio\kb127\rules\rules.1.482.74 C:\Program Files\Dealio\kb127\rules\rules.1.49.67 C:\Program Files\Dealio\kb127\rules\rules.1.50.43 C:\Program Files\Dealio\kb127\rules\rules.1.500.71 C:\Program Files\Dealio\kb127\rules\rules.1.501.74 C:\Program Files\Dealio\kb127\rules\rules.1.502.71 C:\Program Files\Dealio\kb127\rules\rules.1.51.69 C:\Program Files\Dealio\kb127\rules\rules.1.52.72 C:\Program Files\Dealio\kb127\rules\rules.1.520.76 C:\Program Files\Dealio\kb127\rules\rules.1.521.76 C:\Program Files\Dealio\kb127\rules\rules.1.522.76 C:\Program Files\Dealio\kb127\rules\rules.1.53.51 C:\Program Files\Dealio\kb127\rules\rules.1.531.76 C:\Program Files\Dealio\kb127\rules\rules.1.532.75 C:\Program Files\Dealio\kb127\rules\rules.1.534.75 C:\Program Files\Dealio\kb127\rules\rules.1.54.47 C:\Program Files\Dealio\kb127\rules\rules.1.55.45 C:\Program Files\Dealio\kb127\rules\rules.1.56.69 C:\Program Files\Dealio\kb127\rules\rules.1.57.43 C:\Program Files\Dealio\kb127\rules\rules.1.58.47 C:\Program Files\Dealio\kb127\rules\rules.1.593.76 C:\Program Files\Dealio\kb127\rules\rules.1.595.76 C:\Program Files\Dealio\kb127\rules\rules.1.63.57 C:\Program Files\Dealio\kb127\rules\rules.1.66.47 C:\Program Files\Dealio\kb127\rules\rules.1.70.75 C:\Program Files\Dealio\kb127\rules\rules.1.71.43 C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\Dealio -----------\\ Extensions (Administrateur) - {c4dc572a-3295-40eb-b30f-b54aa4cdc4b7} => wmlbrowser -----------\\ [..\Internet Explorer\Main] [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://www.google.fr"'>http://www.google.fr"'>http://www.google.fr"'>http://www.google.fr"'>http://www.google.fr" "Search Bar"="http://www.google.fr/ie" "Start Page"="http://www.aliceadsl.fr" "Default_Search_URL"="http://www.google.fr/keyword/%s" "Local Page"="C:\\WINDOWS\\system32\\blank.htm" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="http://www.google.fr" "Default_Search_URL"="http://www.google.fr" "Search Page"="http://www.google.fr" "Start Page"="http://www.google.fr" --------------------\\ Recherche d'autres infections --------------------\\ Cracks & Keygens .. C:\DOCUME~1\ADMINI~1\Mes documents\Keygen WinZip 11.1 International.exe 1 - "C:\ToolBar SD\TB_1.txt" - 19/05/2009|15:18 - Option : [1] -----------\\ Fin du rapport a 15:18:52,31
  14. Voila: ========== PROCESSES ========== Process explorer.exe killed successfully. ========== FILES ========== File/Folder c:\program files\search settings not found. c:\program files\EoRezo\lang moved successfully. c:\program files\EoRezo\EoAdv moved successfully. c:\program files\EoRezo moved successfully. ========== REGISTRY ========== Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}\\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{64F56FC1-1272-44CD-BA6E-39723696E350}\\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}\\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}\\ not found. ========== COMMANDS ========== File delete failed. C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\IadHide4.dll scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\WCESLog.log scheduled to be deleted on reboot. User's Temp folder emptied. User's Internet Explorer cache folder emptied. File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\V980MMEB\ban_728x90[1].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\OK4VMDU2\analyse-hijackthis-t163276[1].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\OK4VMDU2\Generic[1].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\OK4VMDU2\hp[1].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\OK4VMDU2\iframe[1].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\5QX0OPOP\057ACAFV2VNPCAYIA8UECA191BNUCA0YTQFNCA4NSUG7CA4X5YUPCAXKTFSCCAHUM0AVCAKCNEUGC AOX6I4LCA27QOMNCA9KDUB3CAK8WA42CA0QHZHDCAZ3WQS8CA23W6G8CANHKAA3CA9RUOBY.htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\5QX0OPOP\rectangle_300x250[1].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat scheduled to be deleted on reboot. User's Temporary Internet Files folder emptied. Local Service Temp folder emptied. Local Service Temporary Internet Files folder emptied. Network Service Temp folder emptied. Network Service Temporary Internet Files folder emptied. Windows Temp folder emptied. Temp folders emptied. Explorer started successfully OTMoveIt3 by OldTimer - Version 1.0.11.0 log created on 05192009_144233 Files moved on Reboot... DllUnregisterServer procedure not found in C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\IadHide4.dll C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\IadHide4.dll NOT unregistered. C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\IadHide4.dll moved successfully. C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\WCESLog.log moved successfully. C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\V980MMEB\ban_728x90[1].htm moved successfully. C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\OK4VMDU2\analyse-hijackthis-t163276[1].htm moved successfully. C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\OK4VMDU2\Generic[1].htm moved successfully. C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\OK4VMDU2\hp[1].htm moved successfully. C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\OK4VMDU2\iframe[1].htm moved successfully. C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\5QX0OPOP\057ACAFV2VNPCAYIA8UECA191BNUCA0YTQFNCA4NSUG7CA4X5YUPCAXKTFSCCAHUM0AVCAKCNEUGC AOX6I4LCA27QOMNCA9KDUB3CAK8WA42CA0QHZHDCAZ3WQS8CA23W6G8CANHKAA3CA9RUOBY.htm moved successfully. C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\5QX0OPOP\rectangle_300x250[1].htm moved successfully. C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat moved successfully. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 14:59:30, on 19/05/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16827) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\notepad.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\mdm.exe C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\Olivetti\ANY_WAY\olMntrService.exe C:\WINDOWS\system32\IoctlSvc.exe C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe C:\Program Files\TechCity Solutions\AliceSAV\AliceAgent.exe C:\Program Files\VistaCodecPack\QT\QTSystem\qttask.exe C:\Program Files\Microsoft ActiveSync\wcescomm.exe C:\Program Files\Fichiers communs\Nero\Lib\NMIndexStoreSvr.exe C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe C:\WINDOWS\system32\ctfmon.exe C:\PROGRA~1\MI3AA1~1\rapimgr.exe C:\Program Files\Hercules\Audio\Gamesurround Muse Pocket\MuseCPL.exe C:\Program Files\NETGEAR\WPN111\wpn111.exe C:\Program Files\WinZip\WZQKPICK.EXE C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.fr/keyword/%s R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ie R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.aliceadsl.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.fr/ie R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.fr/keyword/%s R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Alice ADSL R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 195.115.25.129:80 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: DealioBHO Class - {6A87B991-A31F-4130-AE72-6D0C294BF082} - C:\Program Files\Dealio\kb127\Dealio.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: StylerToolBar - {D2F8F919-690B-4EA2-9FA7-A203D1E04F75} - C:\Program Files\styler\TB\StylerTB.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: Dealio - {E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F} - C:\Program Files\Dealio\kb127\Dealio.dll O4 - HKLM\..\Run: [AliceSAV] C:\Program Files\TechCity Solutions\AliceSAV\AliceAgent.exe O4 - HKLM\..\Run: [MobileConnect] %programfiles%\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe /silent O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\VistaCodecPack\QT\QTSystem\qttask.exe" -atboottime O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe" O4 - HKCU\..\Run: [indxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020 O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user') O4 - Global Startup: Gamesurround Muse Pocket.lnk = C:\Program Files\Hercules\Audio\Gamesurround Muse Pocket\MuseCPL.exe O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O4 - Global Startup: NETGEAR WPN111 Smart Wizard.lnk = ? O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx O8 - Extra context menu item: Compare Prices with &Dealio - C:\Documents and Settings\Administrateur\Application Data\Dealio\kb127\res\DealioSearch.html O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000 O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb127\Dealio.dll O9 - Extra 'Tools' menuitem: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb127\Dealio.dll O9 - Extra button: PokerStars.net - {FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} - C:\Program Files\PokerStars.NET\PokerStarsUpdate.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: olMntrService - Olivetti - C:\Program Files\Olivetti\ANY_WAY\olMntrService.exe O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe O23 - Service: Vodafone Mobile Connect Service (VMCService) - Vodafone - C:\Program Files\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe -- End of file - 9383 bytes Je sais j'ai été long mais l'ordi rame vraiment
  15. A vos ordres chef! lol
  16. A l'aide Apollo!!!!!!!
  17. Bonjour, mon ordi poLogfile of Trend Micro HijackThis v2.0.2 Scan saved at 13:58:45, on 19/05/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16827) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\mdm.exe C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\Olivetti\ANY_WAY\olMntrService.exe C:\WINDOWS\system32\IoctlSvc.exe C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe C:\Program Files\VistaCodecPack\QT\QTSystem\qttask.exe C:\Program Files\TechCity Solutions\AliceSAV\AliceAgent.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe C:\Program Files\Microsoft ActiveSync\wcescomm.exe C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe C:\PROGRA~1\MI3AA1~1\rapimgr.exe C:\Program Files\Hercules\Audio\Gamesurround Muse Pocket\MuseCPL.exe C:\Program Files\NETGEAR\WPN111\wpn111.exe C:\Program Files\WinZip\WZQKPICK.EXE C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.fr/keyword/%s R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ie R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.aliceadsl.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.fr/ie R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.fr/keyword/%s R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Alice ADSL R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 195.115.25.129:80 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll O2 - BHO: DealioBHO Class - {6A87B991-A31F-4130-AE72-6D0C294BF082} - C:\Program Files\Dealio\kb127\Dealio.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll O3 - Toolbar: StylerToolBar - {D2F8F919-690B-4EA2-9FA7-A203D1E04F75} - C:\Program Files\styler\TB\StylerTB.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: Dealio - {E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F} - C:\Program Files\Dealio\kb127\Dealio.dll O4 - HKLM\..\Run: [AliceSAV] C:\Program Files\TechCity Solutions\AliceSAV\AliceAgent.exe O4 - HKLM\..\Run: [MobileConnect] %programfiles%\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe /silent O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\VistaCodecPack\QT\QTSystem\qttask.exe" -atboottime O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe" O4 - HKCU\..\Run: [indxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020 O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user') O4 - Global Startup: Gamesurround Muse Pocket.lnk = C:\Program Files\Hercules\Audio\Gamesurround Muse Pocket\MuseCPL.exe O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O4 - Global Startup: NETGEAR WPN111 Smart Wizard.lnk = ? O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx O8 - Extra context menu item: Compare Prices with &Dealio - C:\Documents and Settings\Administrateur\Application Data\Dealio\kb127\res\DealioSearch.html O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000 O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb127\Dealio.dll O9 - Extra 'Tools' menuitem: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb127\Dealio.dll O9 - Extra button: PokerStars.net - {FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} - C:\Program Files\PokerStars.NET\PokerStarsUpdate.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: olMntrService - Olivetti - C:\Program Files\Olivetti\ANY_WAY\olMntrService.exe O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe O23 - Service: Vodafone Mobile Connect Service (VMCService) - Vodafone - C:\Program Files\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe -- End of file - 9831 bytes rtable rame. Voici le log hijackthis. Que puis je faire?
  18. Bonjour, comment configurer antivir sur vista Merci
  19. ok et merci encore pour tout @+
  20. Avira AntiVir Personal Date de création du fichier de rapport : lundi 18 mai 2009 19:06 La recherche porte sur 1400055 souches de virus. Détenteur de la licence : Avira AntiVir Personal - FREE Antivirus Numéro de série : 0000149996-ADJIE-0000001 Plateforme : Windows Vista Version de Windows : (Service Pack 1) [6.0.6001] Mode Boot : Démarré normalement Identifiant : SYSTEM Nom de l'ordinateur : PC-DE-TONY Informations de version : BUILD.DAT : 9.0.0.65 17959 Bytes 22/04/2009 12:06:00 AVSCAN.EXE : 9.0.3.6 466689 Bytes 21/04/2009 12:20:54 AVSCAN.DLL : 9.0.3.0 49409 Bytes 03/03/2009 09:21:02 LUKE.DLL : 9.0.3.2 209665 Bytes 20/02/2009 10:35:11 LUKERES.DLL : 9.0.2.0 13569 Bytes 03/03/2009 09:21:31 ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 11:30:36 ANTIVIR1.VDF : 7.1.2.12 3336192 Bytes 11/02/2009 19:33:26 ANTIVIR2.VDF : 7.1.3.185 2010112 Bytes 12/05/2009 17:05:10 ANTIVIR3.VDF : 7.1.3.223 172544 Bytes 18/05/2009 17:05:11 Version du moteur : 8.2.0.168 AEVDF.DLL : 8.1.1.1 106868 Bytes 18/05/2009 17:05:18 AESCRIPT.DLL : 8.1.2.0 389497 Bytes 18/05/2009 17:05:18 AESCN.DLL : 8.1.2.3 127347 Bytes 18/05/2009 17:05:17 AERDL.DLL : 8.1.1.3 438645 Bytes 29/10/2008 17:24:41 AEPACK.DLL : 8.1.3.16 397686 Bytes 18/05/2009 17:05:16 AEOFFICE.DLL : 8.1.0.36 196987 Bytes 26/02/2009 19:01:56 AEHEUR.DLL : 8.1.0.129 1761655 Bytes 18/05/2009 17:05:15 AEHELP.DLL : 8.1.2.2 119158 Bytes 26/02/2009 19:01:56 AEGEN.DLL : 8.1.1.44 348532 Bytes 18/05/2009 17:05:12 AEEMU.DLL : 8.1.0.9 393588 Bytes 09/10/2008 13:32:40 AECORE.DLL : 8.1.6.9 176500 Bytes 18/05/2009 17:05:11 AEBB.DLL : 8.1.0.3 53618 Bytes 09/10/2008 13:32:40 AVWINLL.DLL : 9.0.0.3 18177 Bytes 12/12/2008 07:47:30 AVPREF.DLL : 9.0.0.1 43777 Bytes 03/12/2008 10:39:26 AVREP.DLL : 8.0.0.3 155905 Bytes 20/01/2009 13:34:28 AVREG.DLL : 9.0.0.0 36609 Bytes 07/11/2008 14:24:42 AVARKT.DLL : 9.0.0.3 292609 Bytes 24/03/2009 14:05:22 AVEVTLOG.DLL : 9.0.0.7 167169 Bytes 30/01/2009 09:36:37 SQLITE3.DLL : 3.6.1.0 326401 Bytes 28/01/2009 14:03:49 SMTPLIB.DLL : 9.2.0.25 28417 Bytes 02/02/2009 07:20:57 NETNT.DLL : 9.0.0.0 11521 Bytes 07/11/2008 14:40:59 RCIMAGE.DLL : 9.0.0.21 2438401 Bytes 17/02/2009 12:49:32 RCTEXT.DLL : 9.0.37.0 88321 Bytes 15/04/2009 09:07:05 Configuration pour la recherche actuelle : Nom de la tâche...............................: Contrôle intégral du système Fichier de configuration......................: c:\program files\avira\antivir desktop\sysscan.avp Documentation.................................: bas Action principale.............................: interactif Action secondaire.............................: ignorer Recherche sur les secteurs d'amorçage maître..: marche Recherche sur les secteurs d'amorçage.........: marche Secteurs d'amorçage...........................: C:, Recherche dans les programmes actifs..........: marche Recherche en cours sur l'enregistrement.......: marche Recherche de Rootkits.........................: marche Contrôle d'intégrité de fichiers système......: arrêt Fichier mode de recherche.....................: Tous les fichiers Recherche sur les archives....................: marche Limiter la profondeur de récursivité..........: 20 Archive Smart Extensions......................: marche Heuristique de macrovirus.....................: marche Heuristique fichier...........................: moyen Catégories de dangers divergentes.............: +GAME,+JOKE,+PCK,+SPR, Début de la recherche : lundi 18 mai 2009 19:06 La recherche d'objets cachés commence. '92767' objets ont été contrôlés, '0' objets cachés ont été trouvés. La recherche sur les processus démarrés commence : Processus de recherche 'avscan.exe' - '1' module(s) sont contrôlés Processus de recherche 'avscan.exe' - '1' module(s) sont contrôlés Processus de recherche 'avcenter.exe' - '1' module(s) sont contrôlés Processus de recherche 'avgnt.exe' - '1' module(s) sont contrôlés Processus de recherche 'sched.exe' - '1' module(s) sont contrôlés Processus de recherche 'avguard.exe' - '1' module(s) sont contrôlés Processus de recherche 'wltuser.exe' - '1' module(s) sont contrôlés Processus de recherche 'GoogleToolbarUser.exe' - '1' module(s) sont contrôlés Processus de recherche 'ieuser.exe' - '1' module(s) sont contrôlés Processus de recherche 'iexplore.exe' - '1' module(s) sont contrôlés Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés Processus de recherche 'VSSVC.exe' - '1' module(s) sont contrôlés Processus de recherche 'taskeng.exe' - '1' module(s) sont contrôlés Processus de recherche 'soffice.bin' - '1' module(s) sont contrôlés Processus de recherche 'soffice.exe' - '1' module(s) sont contrôlés Processus de recherche 'WZQKPICK.EXE' - '1' module(s) sont contrôlés Processus de recherche 'GoogleToolbarNotifier.exe' - '1' module(s) sont contrôlés Processus de recherche 'msnmsgr.exe' - '1' module(s) sont contrôlés Processus de recherche 'NMIndexingService.exe' - '1' module(s) sont contrôlés Processus de recherche 'CPSHelpRunner.exe' - '1' module(s) sont contrôlés Processus de recherche 'unsecapp.exe' - '1' module(s) sont contrôlés Processus de recherche 'GoogleDesktop.exe' - '1' module(s) sont contrôlés Processus de recherche 'RoxMediaDB9.exe' - '1' module(s) sont contrôlés Processus de recherche 'WmiPrvSE.exe' - '1' module(s) sont contrôlés Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés Processus de recherche 'WUDFHost.exe' - '1' module(s) sont contrôlés Processus de recherche 'SearchIndexer.exe' - '1' module(s) sont contrôlés Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés Processus de recherche 'SeaPort.exe' - '1' module(s) sont contrôlés Processus de recherche 'RoxWatch9.exe' - '1' module(s) sont contrôlés Processus de recherche 'RichVideo.exe' - '1' module(s) sont contrôlés Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés Processus de recherche 'IoctlSvc.exe' - '1' module(s) sont contrôlés Processus de recherche 'olMntrService.exe' - '1' module(s) sont contrôlés Processus de recherche 'NBService.exe' - '1' module(s) sont contrôlés Processus de recherche 'fsssvc.exe' - '1' module(s) sont contrôlés Processus de recherche 'sidebar.exe' - '1' module(s) sont contrôlés Processus de recherche 'NMIndexStoreSvr.exe' - '1' module(s) sont contrôlés Processus de recherche 'rundll32.exe' - '1' module(s) sont contrôlés Processus de recherche 'SmpSys.exe' - '1' module(s) sont contrôlés Processus de recherche 'sidebar.exe' - '1' module(s) sont contrôlés Processus de recherche 'jusched.exe' - '1' module(s) sont contrôlés Processus de recherche 'rundll32.exe' - '1' module(s) sont contrôlés Processus de recherche 'fsui.exe' - '1' module(s) sont contrôlés Processus de recherche 'wmdc.exe' - '1' module(s) sont contrôlés Processus de recherche 'TomTomHOME.exe' - '1' module(s) sont contrôlés Processus de recherche 'olDvcStatus.exe' - '1' module(s) sont contrôlés Processus de recherche 'PicasaMediaDetector.exe' - '1' module(s) sont contrôlés Processus de recherche 'MSPMirage.exe' - '1' module(s) sont contrôlés Processus de recherche 'GoogleDesktop.exe' - '1' module(s) sont contrôlés Processus de recherche 'RoxWatchTray9.exe' - '1' module(s) sont contrôlés Processus de recherche 'RtHDVCpl.exe' - '1' module(s) sont contrôlés Processus de recherche 'MSASCui.exe' - '1' module(s) sont contrôlés Processus de recherche 'explorer.exe' - '1' module(s) sont contrôlés Processus de recherche 'dwm.exe' - '1' module(s) sont contrôlés Processus de recherche 'taskeng.exe' - '1' module(s) sont contrôlés Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés Processus de recherche 'spoolsv.exe' - '1' module(s) sont contrôlés Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés Processus de recherche 'SLsvc.exe' - '1' module(s) sont contrôlés Processus de recherche 'audiodg.exe' - '0' module(s) sont contrôlés Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés Processus de recherche 'winlogon.exe' - '1' module(s) sont contrôlés Processus de recherche 'lsm.exe' - '1' module(s) sont contrôlés Processus de recherche 'lsass.exe' - '1' module(s) sont contrôlés Processus de recherche 'services.exe' - '1' module(s) sont contrôlés Processus de recherche 'csrss.exe' - '1' module(s) sont contrôlés Processus de recherche 'wininit.exe' - '1' module(s) sont contrôlés Processus de recherche 'csrss.exe' - '1' module(s) sont contrôlés Processus de recherche 'smss.exe' - '1' module(s) sont contrôlés '76' processus ont été contrôlés avec '76' modules La recherche sur les secteurs d'amorçage maître commence : Secteur d'amorçage maître HD0 [iNFO] Aucun virus trouvé ! Secteur d'amorçage maître HD1 [iNFO] Aucun virus trouvé ! [iNFO] Veuillez relancer la recherche avec les droits d'administrateur Secteur d'amorçage maître HD2 [iNFO] Aucun virus trouvé ! [iNFO] Veuillez relancer la recherche avec les droits d'administrateur Secteur d'amorçage maître HD3 [iNFO] Aucun virus trouvé ! [iNFO] Veuillez relancer la recherche avec les droits d'administrateur Secteur d'amorçage maître HD4 [iNFO] Aucun virus trouvé ! [iNFO] Veuillez relancer la recherche avec les droits d'administrateur La recherche sur les secteurs d'amorçage commence : Secteur d'amorçage 'C:\' [iNFO] Aucun virus trouvé ! La recherche sur les renvois aux fichiers exécutables (registre) commence : Le registre a été contrôlé ( '50' fichiers). La recherche sur les fichiers sélectionnés commence : Recherche débutant dans 'C:\' <HDD> C:\hiberfil.sys [AVERTISSEMENT] Impossible d'ouvrir le fichier ! [REMARQUE] Ce fichier est un fichier système Windows. [REMARQUE] Il est correct que ce fichier ne puisse pas être ouvert pour la recherche. C:\pagefile.sys [AVERTISSEMENT] Impossible d'ouvrir le fichier ! [REMARQUE] Ce fichier est un fichier système Windows. [REMARQUE] Il est correct que ce fichier ne puisse pas être ouvert pour la recherche. C:\Users\tony\Documents\LimeWire\Saved\Jour De Tonerre.wma [RESULTAT] Contient le modèle de détection de l'exploit EXP/ASF.GetCodec.Gen C:\Users\tony\Documents\Unzipped\(0.49c Beta 1) azur guard\Setup.exe [0] Type d'archive: RSRC --> Object [1] Type d'archive: CAB (Microsoft) --> Setup_01.exe [2] Type d'archive: RSRC --> Object [3] Type d'archive: CAB (Microsoft) --> Setup_00.exe [4] Type d'archive: RSRC --> Object [5] Type d'archive: CAB (Microsoft) --> loader.exe [RESULTAT] Contient le cheval de Troie TR/Dldr.Agent.GTZ [RESULTAT] Contient le cheval de Troie TR/Downloader.Gen C:\Users\tony\Downloads\Nouveau dossier.ace [0] Type d'archive: ACE --> Nouveau dossier\Numツriser0003.tif [AVERTISSEMENT] Aucun autre fichier n'a pu être décompressé de cette archive. L'archive est refermée. [AVERTISSEMENT] Aucun autre fichier n'a pu être décompressé de cette archive. L'archive est refermée. C:\Users\tony\Downloads\Nouveau dossier.zip [0] Type d'archive: ZIP --> Nouveau dossier.ace [1] Type d'archive: ACE --> Nouveau dossier\Numツriser0003.tif [AVERTISSEMENT] Aucun autre fichier n'a pu être décompressé de cette archive. L'archive est refermée. [AVERTISSEMENT] Aucun autre fichier n'a pu être décompressé de cette archive. L'archive est refermée. Début de la désinfection : C:\Users\tony\Documents\LimeWire\Saved\Jour De Tonerre.wma [RESULTAT] Contient le modèle de détection de l'exploit EXP/ASF.GetCodec.Gen [REMARQUE] Le fichier a été déplacé dans le répertoire de quarantaine sous le nom '4a86a29b.qua' ! C:\Users\tony\Documents\Unzipped\(0.49c Beta 1) azur guard\Setup.exe [RESULTAT] Contient le cheval de Troie TR/Downloader.Gen [REMARQUE] Le fichier a été déplacé dans le répertoire de quarantaine sous le nom '4a85a291.qua' ! Fin de la recherche : lundi 18 mai 2009 20:00 Temps nécessaire: 51:58 Minute(s) La recherche a été effectuée intégralement 18825 Les répertoires ont été contrôlés 431667 Des fichiers ont été contrôlés 3 Des virus ou programmes indésirables ont été trouvés 0 Des fichiers ont été classés comme suspects 0 Des fichiers ont été supprimés 0 Des virus ou programmes indésirables ont été réparés 2 Les fichiers ont été déplacés dans la quarantaine 0 Les fichiers ont été renommés 2 Impossible de contrôler des fichiers 431662 Fichiers non infectés 3063 Les archives ont été contrôlées 6 Avertissements 4 Consignes 92767 Des objets ont été contrôlés lors du Rootkitscan 0 Des objets cachés ont été trouvés
  21. Ok merci pour tout, je vais l'installer de suite et je te tiens au courant. excuse moi je savais pas
  22. J'allais justement te demander conseil à ce sujet. Je vais isntaller antivir. Juste une petite question. Quand tu mets un fichier en quarantaine, combien de temps doit on le laisser et doit on le supprimer ensuite?
  23. ça a l'air d'aller. Dois je faire autre chose?
×
×
  • Créer...