Se connecter / S'enregistrer
Votre question

Message d'erreur winflyer32 introuvable ?

Tags :
  • Windows
  • Sécurité
Dernière réponse : dans Sécurité et virus
28 Décembre 2008 20:55:33

Bonjour,
depuis quelques temps déjà mon ordinateur m'indique que le fichier C:\WINDOWS\system32\WinFlyer32.dll est introuvable,

alors j'ai recherché sur internet ce que je pouvais faire, j'ai cru comprendre qu'il s'agit d'un virus,

j'ai téléchargé spybot et lancé une analyse complète qui n'a rien résolu puisque le message apparait toujours,

alors j'ai telechargé HiJackThis qui me donne le log suivant, mais je ne sais pas quoi faire d'autre, quelqu'un peut-il m'aider s'il vous plait?



Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:39:36, on 28/12/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\ATK0100\HControl.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Wireless Console 2\wcourier.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe
C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\WINDOWS\sm56hlpr.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Corel\Corel Snapfire\Corel Photo Downloader.exe
C:\Program Files\USB Disk Win98 Driver\Res.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Program Files\Search Settings\SearchSettings.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\ASUS\Asus ChkMail\ChkMail.exe
C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\ObjectDock.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\WINDOWS\system32\PSIService.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosBtProc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Fichiers communs\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\ToshibaBTServer.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DealioBHO Class - {6A87B991-A31F-4130-AE72-6D0C294BF082} - C:\Program Files\Dealio\kb127\Dealio.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Dealio - {E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F} - C:\Program Files\Dealio\kb127\Dealio.dll
O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Wireless Console 2] C:\Program Files\Wireless Console 2\wcourier.exe
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [EOUApp] "C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe"
O4 - HKLM\..\Run: [Power_Gear] C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1
O4 - HKLM\..\Run: [ASUS Live Update] C:\Program Files\ASUS\ASUS Live Update\ALU.exe
O4 - HKLM\..\Run: [ABLKSR] C:\WINDOWS\ABLKSR\ABLKSR.exe
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [ISUSPM] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Corel Photo Downloader] C:\Program Files\Corel\Corel Snapfire\Corel Photo Downloader.exe
O4 - HKLM\..\Run: [USB Storage Toolbox] C:\Program Files\USB Disk Win98 Driver\Res.EXE
O4 - HKLM\..\Run: [WinFlyer32.dll] "rundll32.exe" C:\WINDOWS\system32\WinFlyer32.dll,Run
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [au] C:\Program Files\Dealio\DealioAU.exe
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Stardock ObjectDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\ObjectDock.exe
O4 - Startup: Y'z ToolBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe
O4 - Global Startup: ASUS ChkMail.lnk = C:\Program Files\ASUS\Asus ChkMail\ChkMail.exe
O4 - Global Startup: Bluetooth Manager.lnk = ?
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Search - ?p=ZJxdm150YYFR
O8 - Extra context menu item: Compare Prices with &Dealio - C:\Documents and Settings\Maureen Samain\Application Data\Dealio\kb127\res\DealioSearch.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb127\Dealio.dll
O9 - Extra 'Tools' menuitem: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb127\Dealio.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.asus.com
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w3/resources/MSNPUpld.cab
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/MAUREE~1/LOCALS~1/Temp/msohtml1/01/clip_image002.gif

--
End of file - 12319 bytes

Autres pages sur : message erreur winflyer32 introuvable

29 Décembre 2008 00:13:07

bonsoir
Télécharge Toolbar S&D de la Team IDN sur ton bureau.

  • Double-clique dessus pour lancer l'installation.
  • Accepte le contrat de licence.
  • Puis double-clique sur le raccourci Toolbar S&D présent sur ton bureau.
  • Sélectionne la langue souhaitée et valide par la touche entrée.
  • Choisis l'option 1 ( Recherche ).
  • Patiente jusqu'à la fin du scan.
  • Poste le rapport généré. ( C:\TB.txt )
    29 Décembre 2008 10:56:58

    Merci de bien vouloir m'aider, voila le rapport que me donne Toolbar:


    -----------\\ ToolBar S&D 1.2.8 XP/Vista

    Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 2
    X86-based PC ( Multiprocessor Free : Genuine Intel(R) CPU T2050 @ 1.60GHz )
    BIOS : Default System BIOS
    USER : Maureen Samain ( Administrator )
    BOOT : Normal boot
    Antivirus : avast! antivirus 4.8.1229 [VPS 081228-0] 4.8.1229 (Activated)
    C:\ (Local Disk) - FAT32 - Total:66 Go (Free:25 Go)
    D:\ (Local Disk) - FAT32 - Total:43 Go (Free:12 Go)
    E:\ (CD or DVD)

    "C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
    Option : [1] ( 29/12/2008|10:53 )

    -----------\\ Recherche de Fichiers / Dossiers ...

    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\temp
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\temp\dealio-14239.log
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\temp\dealio-14240.log
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\temp\dod_cache.xml
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\temp\dealio-14241.log
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\temp\dealio-14238.log
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\man_toolbar.js
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\alerts.gif
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\alerts_over.gif
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\alerts_rec.gif
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\alerts_rec_over.gif
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\chevron-small.gif
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\deal_report.jpg
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\DealioSearch.html
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\deals-leftcap.gif
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\err_mainwindow.html
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\err_toolbar.html
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\global_scripts.js
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\headerbgthin.jpg
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\highlight-bg.png
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\logo.gif
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\logo_over.gif
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\man_toolbar.css
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\post-this-deal.gif
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\post-this-deal_over.gif
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\scripts.js
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\scroller.js
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\search_bg_blink.gif
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\search-chevron.gif
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\search-chevron_over.gif
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\separator.gif
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\settings.gif
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\settings_over.gif
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\man_toolbar.html
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\ebay_login.jpg
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\man_toolbarl.js
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\res\yahoo-search.png
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\index.76.35
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.10.76
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.109.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.110.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.12.52
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.13.58
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.130.58
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.135.50
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.153.44
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.155.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.156.49
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.16.60
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.161.52
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.178.66
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.184.55
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.188.52
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.189.45
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.196.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.198.56
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.199.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.200.53
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.201.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.202.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.203.71
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.205.62
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.213.71
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.214.49
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.215.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.216.67
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.217.67
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.218.52
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.219.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.220.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.221.57
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.222.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.223.68
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.226.68
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.227.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.228.62
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.229.76
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.23.63
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.239.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.24.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.240.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.241.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.242.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.243.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.244.63
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.245.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.247.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.248.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.249.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.250.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.251.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.252.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.253.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.254.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.255.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.256.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.257.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.279.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.28.58
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.282.75
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.283.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.284.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.289.67
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.290.62
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.291.61
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.296.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.297.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.304.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.307.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.308.75
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.31.47
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.310.46
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.311.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.315.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.316.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.317.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.318.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.319.49
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.32.48
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.334.44
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.335.60
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.336.44
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.337.44
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.338.75
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.339.47
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.34.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.340.47
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.341.47
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.349.50
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.35.48
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.350.50
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.351.51
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.352.54
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.353.51
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.354.51
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.357.62
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.358.52
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.359.52
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.360.53
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.361.54
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.362.68
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.363.58
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.364.54
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.365.53
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.367.56
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.368.58
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.369.55
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.370.56
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.371.56
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.372.57
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.373.55
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.375.56
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.376.57
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.377.55
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.378.65
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.384.58
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.386.71
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.387.59
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.388.59
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.389.59
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.390.60
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.391.60
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.392.60
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.393.60
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.394.60
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.396.61
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.397.61
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.398.60
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.399.60
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.403.61
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.404.63
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.405.61
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.406.61
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.407.76
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.408.63
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.409.61
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.412.62
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.413.62
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.414.62
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.415.62
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.416.62
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.417.62
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.418.62
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.419.62
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.420.62
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.421.62
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.423.63
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.424.63
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.425.63
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.426.63
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.427.63
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.428.65
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.429.63
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.430.63
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.432.65
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.433.64
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.434.65
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.435.64
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.436.76
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.437.64
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.438.71
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.439.71
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.440.75
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.442.73
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.443.73
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.444.73
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.445.68
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.446.69
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.450.67
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.451.67
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.452.68
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.453.68
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.454.69
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.456.69
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.457.75
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.458.70
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.459.70
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.460.69
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.462.74
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.463.69
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.464.70
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.465.68
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.468.70
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.469.70
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.470.70
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.471.73
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.472.70
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.478.74
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.479.73
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.480.68
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.481.71
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.482.74
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.49.67
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.50.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.500.71
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.501.74
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.502.71
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.51.69
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.52.72
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.520.76
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.521.76
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.522.76
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.53.51
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.531.76
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.532.75
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.534.75
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.54.47
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.55.45
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.56.69
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.57.43
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.58.47
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.593.76
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.595.76
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.63.57
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.66.47
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.70.75
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127\rules\rules.1.71.43
    C:\Program Files\Dealio
    C:\Program Files\Dealio\kb127
    C:\Program Files\Dealio\DealioAU.exe
    C:\Program Files\Dealio\SearchSettingsKit.exe
    C:\Program Files\Dealio\kb127\res
    C:\Program Files\Dealio\kb127\resDN
    C:\Program Files\Dealio\kb127\rules
    C:\Program Files\Dealio\kb127\temp
    C:\Program Files\Dealio\kb127\Dealio.dll
    C:\Program Files\Dealio\kb127\Dealio Deskbar.exe
    C:\Program Files\Dealio\kb127\DealioRes409.dll
    C:\Program Files\Dealio\kb127\res\man_toolbar.js
    C:\Program Files\Dealio\kb127\res\alerts.gif
    C:\Program Files\Dealio\kb127\res\alerts_over.gif
    C:\Program Files\Dealio\kb127\res\alerts_rec.gif
    C:\Program Files\Dealio\kb127\res\alerts_rec_over.gif
    C:\Program Files\Dealio\kb127\res\chevron-small.gif
    C:\Program Files\Dealio\kb127\res\deal_report.jpg
    C:\Program Files\Dealio\kb127\res\DealioSearch.html
    C:\Program Files\Dealio\kb127\res\deals-leftcap.gif
    C:\Program Files\Dealio\kb127\res\err_mainwindow.html
    C:\Program Files\Dealio\kb127\res\err_toolbar.html
    C:\Program Files\Dealio\kb127\res\global_scripts.js
    C:\Program Files\Dealio\kb127\res\headerbgthin.jpg
    C:\Program Files\Dealio\kb127\res\highlight-bg.png
    C:\Program Files\Dealio\kb127\res\logo.gif
    C:\Program Files\Dealio\kb127\res\logo_over.gif
    C:\Program Files\Dealio\kb127\res\man_toolbar.css
    C:\Program Files\Dealio\kb127\res\post-this-deal.gif
    C:\Program Files\Dealio\kb127\res\post-this-deal_over.gif
    C:\Program Files\Dealio\kb127\res\scripts.js
    C:\Program Files\Dealio\kb127\res\scroller.js
    C:\Program Files\Dealio\kb127\res\search_bg_blink.gif
    C:\Program Files\Dealio\kb127\res\search-chevron.gif
    C:\Program Files\Dealio\kb127\res\search-chevron_over.gif
    C:\Program Files\Dealio\kb127\res\separator.gif
    C:\Program Files\Dealio\kb127\res\settings.gif
    C:\Program Files\Dealio\kb127\res\settings_over.gif
    C:\Program Files\Dealio\kb127\res\man_toolbar.html
    C:\Program Files\Dealio\kb127\res\ebay_login.jpg
    C:\Program Files\Dealio\kb127\res\man_toolbarl.js
    C:\Program Files\Dealio\kb127\res\yahoo-search.png
    C:\Program Files\Dealio\kb127\resDN\bottom.gif
    C:\Program Files\Dealio\kb127\resDN\chevron_down.gif
    C:\Program Files\Dealio\kb127\resDN\chevron_up.gif
    C:\Program Files\Dealio\kb127\resDN\close.gif
    C:\Program Files\Dealio\kb127\resDN\deskbar.css
    C:\Program Files\Dealio\kb127\resDN\deskbar.js
    C:\Program Files\Dealio\kb127\resDN\dispatch_helper.js
    C:\Program Files\Dealio\kb127\resDN\ebay_compatible.jpg
    C:\Program Files\Dealio\kb127\resDN\logo.gif
    C:\Program Files\Dealio\kb127\resDN\logo_chevron_bkg.gif
    C:\Program Files\Dealio\kb127\resDN\menu_arrow.gif
    C:\Program Files\Dealio\kb127\resDN\menu_check.gif
    C:\Program Files\Dealio\kb127\resDN\prod_img.gif
    C:\Program Files\Dealio\kb127\resDN\search_chevron.gif
    C:\Program Files\Dealio\kb127\resDN\spacer.gif
    C:\Program Files\Dealio\kb127\resDN\textfield_bkg.gif
    C:\Program Files\Dealio\kb127\resDN\top.gif
    C:\Program Files\Dealio\kb127\resDN\unknown.gif
    C:\Program Files\Dealio\kb127\resDN\man_deskbar.html
    C:\Program Files\Dealio\kb127\resDN\losing.gif
    C:\Program Files\Dealio\kb127\resDN\lost.gif
    C:\Program Files\Dealio\kb127\resDN\no_image.gif
    C:\Program Files\Dealio\kb127\resDN\winning.gif
    C:\Program Files\Dealio\kb127\resDN\won.gif
    C:\Program Files\Dealio\kb127\rules\index.76.35
    C:\Program Files\Dealio\kb127\rules\rules.1.10.76
    C:\Program Files\Dealio\kb127\rules\rules.1.109.43
    C:\Program Files\Dealio\kb127\rules\rules.1.110.43
    C:\Program Files\Dealio\kb127\rules\rules.1.12.52
    C:\Program Files\Dealio\kb127\rules\rules.1.13.58
    C:\Program Files\Dealio\kb127\rules\rules.1.130.58
    C:\Program Files\Dealio\kb127\rules\rules.1.135.50
    C:\Program Files\Dealio\kb127\rules\rules.1.153.44
    C:\Program Files\Dealio\kb127\rules\rules.1.155.43
    C:\Program Files\Dealio\kb127\rules\rules.1.156.49
    C:\Program Files\Dealio\kb127\rules\rules.1.16.60
    C:\Program Files\Dealio\kb127\rules\rules.1.161.52
    C:\Program Files\Dealio\kb127\rules\rules.1.178.66
    C:\Program Files\Dealio\kb127\rules\rules.1.184.55
    C:\Program Files\Dealio\kb127\rules\rules.1.188.52
    C:\Program Files\Dealio\kb127\rules\rules.1.189.45
    C:\Program Files\Dealio\kb127\rules\rules.1.196.43
    C:\Program Files\Dealio\kb127\rules\rules.1.198.56
    C:\Program Files\Dealio\kb127\rules\rules.1.199.43
    C:\Program Files\Dealio\kb127\rules\rules.1.200.53
    C:\Program Files\Dealio\kb127\rules\rules.1.201.43
    C:\Program Files\Dealio\kb127\rules\rules.1.202.43
    C:\Program Files\Dealio\kb127\rules\rules.1.203.71
    C:\Program Files\Dealio\kb127\rules\rules.1.205.62
    C:\Program Files\Dealio\kb127\rules\rules.1.213.71
    C:\Program Files\Dealio\kb127\rules\rules.1.214.49
    C:\Program Files\Dealio\kb127\rules\rules.1.215.43
    C:\Program Files\Dealio\kb127\rules\rules.1.216.67
    C:\Program Files\Dealio\kb127\rules\rules.1.217.67
    C:\Program Files\Dealio\kb127\rules\rules.1.218.52
    C:\Program Files\Dealio\kb127\rules\rules.1.219.43
    C:\Program Files\Dealio\kb127\rules\rules.1.220.43
    C:\Program Files\Dealio\kb127\rules\rules.1.221.57
    C:\Program Files\Dealio\kb127\rules\rules.1.222.43
    C:\Program Files\Dealio\kb127\rules\rules.1.223.68
    C:\Program Files\Dealio\kb127\rules\rules.1.226.68
    C:\Program Files\Dealio\kb127\rules\rules.1.227.43
    C:\Program Files\Dealio\kb127\rules\rules.1.228.62
    C:\Program Files\Dealio\kb127\rules\rules.1.229.76
    C:\Program Files\Dealio\kb127\rules\rules.1.23.63
    C:\Program Files\Dealio\kb127\rules\rules.1.239.43
    C:\Program Files\Dealio\kb127\rules\rules.1.24.43
    C:\Program Files\Dealio\kb127\rules\rules.1.240.43
    C:\Program Files\Dealio\kb127\rules\rules.1.241.43
    C:\Program Files\Dealio\kb127\rules\rules.1.242.43
    C:\Program Files\Dealio\kb127\rules\rules.1.243.43
    C:\Program Files\Dealio\kb127\rules\rules.1.244.63
    C:\Program Files\Dealio\kb127\rules\rules.1.245.43
    C:\Program Files\Dealio\kb127\rules\rules.1.247.43
    C:\Program Files\Dealio\kb127\rules\rules.1.248.43
    C:\Program Files\Dealio\kb127\rules\rules.1.249.43
    C:\Program Files\Dealio\kb127\rules\rules.1.250.43
    C:\Program Files\Dealio\kb127\rules\rules.1.251.43
    C:\Program Files\Dealio\kb127\rules\rules.1.252.43
    C:\Program Files\Dealio\kb127\rules\rules.1.253.43
    C:\Program Files\Dealio\kb127\rules\rules.1.254.43
    C:\Program Files\Dealio\kb127\rules\rules.1.255.43
    C:\Program Files\Dealio\kb127\rules\rules.1.256.43
    C:\Program Files\Dealio\kb127\rules\rules.1.257.43
    C:\Program Files\Dealio\kb127\rules\rules.1.279.43
    C:\Program Files\Dealio\kb127\rules\rules.1.28.58
    C:\Program Files\Dealio\kb127\rules\rules.1.282.75
    C:\Program Files\Dealio\kb127\rules\rules.1.283.43
    C:\Program Files\Dealio\kb127\rules\rules.1.284.43
    C:\Program Files\Dealio\kb127\rules\rules.1.289.67
    C:\Program Files\Dealio\kb127\rules\rules.1.290.62
    C:\Program Files\Dealio\kb127\rules\rules.1.291.61
    C:\Program Files\Dealio\kb127\rules\rules.1.296.43
    C:\Program Files\Dealio\kb127\rules\rules.1.297.43
    C:\Program Files\Dealio\kb127\rules\rules.1.304.43
    C:\Program Files\Dealio\kb127\rules\rules.1.307.43
    C:\Program Files\Dealio\kb127\rules\rules.1.308.75
    C:\Program Files\Dealio\kb127\rules\rules.1.31.47
    C:\Program Files\Dealio\kb127\rules\rules.1.310.46
    C:\Program Files\Dealio\kb127\rules\rules.1.311.43
    C:\Program Files\Dealio\kb127\rules\rules.1.315.43
    C:\Program Files\Dealio\kb127\rules\rules.1.316.43
    C:\Program Files\Dealio\kb127\rules\rules.1.317.43
    C:\Program Files\Dealio\kb127\rules\rules.1.318.43
    C:\Program Files\Dealio\kb127\rules\rules.1.319.49
    C:\Program Files\Dealio\kb127\rules\rules.1.32.48
    C:\Program Files\Dealio\kb127\rules\rules.1.334.44
    C:\Program Files\Dealio\kb127\rules\rules.1.335.60
    C:\Program Files\Dealio\kb127\rules\rules.1.336.44
    C:\Program Files\Dealio\kb127\rules\rules.1.337.44
    C:\Program Files\Dealio\kb127\rules\rules.1.338.75
    C:\Program Files\Dealio\kb127\rules\rules.1.339.47
    C:\Program Files\Dealio\kb127\rules\rules.1.34.43
    C:\Program Files\Dealio\kb127\rules\rules.1.340.47
    C:\Program Files\Dealio\kb127\rules\rules.1.341.47
    C:\Program Files\Dealio\kb127\rules\rules.1.349.50
    C:\Program Files\Dealio\kb127\rules\rules.1.35.48
    C:\Program Files\Dealio\kb127\rules\rules.1.350.50
    C:\Program Files\Dealio\kb127\rules\rules.1.351.51
    C:\Program Files\Dealio\kb127\rules\rules.1.352.54
    C:\Program Files\Dealio\kb127\rules\rules.1.353.51
    C:\Program Files\Dealio\kb127\rules\rules.1.354.51
    C:\Program Files\Dealio\kb127\rules\rules.1.357.62
    C:\Program Files\Dealio\kb127\rules\rules.1.358.52
    C:\Program Files\Dealio\kb127\rules\rules.1.359.52
    C:\Program Files\Dealio\kb127\rules\rules.1.360.53
    C:\Program Files\Dealio\kb127\rules\rules.1.361.54
    C:\Program Files\Dealio\kb127\rules\rules.1.362.68
    C:\Program Files\Dealio\kb127\rules\rules.1.363.58
    C:\Program Files\Dealio\kb127\rules\rules.1.364.54
    C:\Program Files\Dealio\kb127\rules\rules.1.365.53
    C:\Program Files\Dealio\kb127\rules\rules.1.367.56
    C:\Program Files\Dealio\kb127\rules\rules.1.368.58
    C:\Program Files\Dealio\kb127\rules\rules.1.369.55
    C:\Program Files\Dealio\kb127\rules\rules.1.370.56
    C:\Program Files\Dealio\kb127\rules\rules.1.371.56
    C:\Program Files\Dealio\kb127\rules\rules.1.372.57
    C:\Program Files\Dealio\kb127\rules\rules.1.373.55
    C:\Program Files\Dealio\kb127\rules\rules.1.375.56
    C:\Program Files\Dealio\kb127\rules\rules.1.376.57
    C:\Program Files\Dealio\kb127\rules\rules.1.377.55
    C:\Program Files\Dealio\kb127\rules\rules.1.378.65
    C:\Program Files\Dealio\kb127\rules\rules.1.384.58
    C:\Program Files\Dealio\kb127\rules\rules.1.386.71
    C:\Program Files\Dealio\kb127\rules\rules.1.387.59
    C:\Program Files\Dealio\kb127\rules\rules.1.388.59
    C:\Program Files\Dealio\kb127\rules\rules.1.389.59
    C:\Program Files\Dealio\kb127\rules\rules.1.390.60
    C:\Program Files\Dealio\kb127\rules\rules.1.391.60
    C:\Program Files\Dealio\kb127\rules\rules.1.392.60
    C:\Program Files\Dealio\kb127\rules\rules.1.393.60
    C:\Program Files\Dealio\kb127\rules\rules.1.394.60
    C:\Program Files\Dealio\kb127\rules\rules.1.396.61
    C:\Program Files\Dealio\kb127\rules\rules.1.397.61
    C:\Program Files\Dealio\kb127\rules\rules.1.398.60
    C:\Program Files\Dealio\kb127\rules\rules.1.399.60
    C:\Program Files\Dealio\kb127\rules\rules.1.403.61
    C:\Program Files\Dealio\kb127\rules\rules.1.404.63
    C:\Program Files\Dealio\kb127\rules\rules.1.405.61
    C:\Program Files\Dealio\kb127\rules\rules.1.406.61
    C:\Program Files\Dealio\kb127\rules\rules.1.407.76
    C:\Program Files\Dealio\kb127\rules\rules.1.408.63
    C:\Program Files\Dealio\kb127\rules\rules.1.409.61
    C:\Program Files\Dealio\kb127\rules\rules.1.412.62
    C:\Program Files\Dealio\kb127\rules\rules.1.413.62
    C:\Program Files\Dealio\kb127\rules\rules.1.414.62
    C:\Program Files\Dealio\kb127\rules\rules.1.415.62
    C:\Program Files\Dealio\kb127\rules\rules.1.416.62
    C:\Program Files\Dealio\kb127\rules\rules.1.417.62
    C:\Program Files\Dealio\kb127\rules\rules.1.418.62
    C:\Program Files\Dealio\kb127\rules\rules.1.419.62
    C:\Program Files\Dealio\kb127\rules\rules.1.420.62
    C:\Program Files\Dealio\kb127\rules\rules.1.421.62
    C:\Program Files\Dealio\kb127\rules\rules.1.423.63
    C:\Program Files\Dealio\kb127\rules\rules.1.424.63
    C:\Program Files\Dealio\kb127\rules\rules.1.425.63
    C:\Program Files\Dealio\kb127\rules\rules.1.426.63
    C:\Program Files\Dealio\kb127\rules\rules.1.427.63
    C:\Program Files\Dealio\kb127\rules\rules.1.428.65
    C:\Program Files\Dealio\kb127\rules\rules.1.429.63
    C:\Program Files\Dealio\kb127\rules\rules.1.430.63
    C:\Program Files\Dealio\kb127\rules\rules.1.432.65
    C:\Program Files\Dealio\kb127\rules\rules.1.433.64
    C:\Program Files\Dealio\kb127\rules\rules.1.434.65
    C:\Program Files\Dealio\kb127\rules\rules.1.435.64
    C:\Program Files\Dealio\kb127\rules\rules.1.436.76
    C:\Program Files\Dealio\kb127\rules\rules.1.437.64
    C:\Program Files\Dealio\kb127\rules\rules.1.438.71
    C:\Program Files\Dealio\kb127\rules\rules.1.439.71
    C:\Program Files\Dealio\kb127\rules\rules.1.440.75
    C:\Program Files\Dealio\kb127\rules\rules.1.442.73
    C:\Program Files\Dealio\kb127\rules\rules.1.443.73
    C:\Program Files\Dealio\kb127\rules\rules.1.444.73
    C:\Program Files\Dealio\kb127\rules\rules.1.445.68
    C:\Program Files\Dealio\kb127\rules\rules.1.446.69
    C:\Program Files\Dealio\kb127\rules\rules.1.450.67
    C:\Program Files\Dealio\kb127\rules\rules.1.451.67
    C:\Program Files\Dealio\kb127\rules\rules.1.452.68
    C:\Program Files\Dealio\kb127\rules\rules.1.453.68
    C:\Program Files\Dealio\kb127\rules\rules.1.454.69
    C:\Program Files\Dealio\kb127\rules\rules.1.456.69
    C:\Program Files\Dealio\kb127\rules\rules.1.457.75
    C:\Program Files\Dealio\kb127\rules\rules.1.458.70
    C:\Program Files\Dealio\kb127\rules\rules.1.459.70
    C:\Program Files\Dealio\kb127\rules\rules.1.460.69
    C:\Program Files\Dealio\kb127\rules\rules.1.462.74
    C:\Program Files\Dealio\kb127\rules\rules.1.463.69
    C:\Program Files\Dealio\kb127\rules\rules.1.464.70
    C:\Program Files\Dealio\kb127\rules\rules.1.465.68
    C:\Program Files\Dealio\kb127\rules\rules.1.468.70
    C:\Program Files\Dealio\kb127\rules\rules.1.469.70
    C:\Program Files\Dealio\kb127\rules\rules.1.470.70
    C:\Program Files\Dealio\kb127\rules\rules.1.471.73
    C:\Program Files\Dealio\kb127\rules\rules.1.472.70
    C:\Program Files\Dealio\kb127\rules\rules.1.478.74
    C:\Program Files\Dealio\kb127\rules\rules.1.479.73
    C:\Program Files\Dealio\kb127\rules\rules.1.480.68
    C:\Program Files\Dealio\kb127\rules\rules.1.481.71
    C:\Program Files\Dealio\kb127\rules\rules.1.482.74
    C:\Program Files\Dealio\kb127\rules\rules.1.49.67
    C:\Program Files\Dealio\kb127\rules\rules.1.50.43
    C:\Program Files\Dealio\kb127\rules\rules.1.500.71
    C:\Program Files\Dealio\kb127\rules\rules.1.501.74
    C:\Program Files\Dealio\kb127\rules\rules.1.502.71
    C:\Program Files\Dealio\kb127\rules\rules.1.51.69
    C:\Program Files\Dealio\kb127\rules\rules.1.52.72
    C:\Program Files\Dealio\kb127\rules\rules.1.520.76
    C:\Program Files\Dealio\kb127\rules\rules.1.521.76
    C:\Program Files\Dealio\kb127\rules\rules.1.522.76
    C:\Program Files\Dealio\kb127\rules\rules.1.53.51
    C:\Program Files\Dealio\kb127\rules\rules.1.531.76
    C:\Program Files\Dealio\kb127\rules\rules.1.532.75
    C:\Program Files\Dealio\kb127\rules\rules.1.534.75
    C:\Program Files\Dealio\kb127\rules\rules.1.54.47
    C:\Program Files\Dealio\kb127\rules\rules.1.55.45
    C:\Program Files\Dealio\kb127\rules\rules.1.56.69
    C:\Program Files\Dealio\kb127\rules\rules.1.57.43
    C:\Program Files\Dealio\kb127\rules\rules.1.58.47
    C:\Program Files\Dealio\kb127\rules\rules.1.593.76
    C:\Program Files\Dealio\kb127\rules\rules.1.595.76
    C:\Program Files\Dealio\kb127\rules\rules.1.63.57
    C:\Program Files\Dealio\kb127\rules\rules.1.66.47
    C:\Program Files\Dealio\kb127\rules\rules.1.70.75
    C:\Program Files\Dealio\kb127\rules\rules.1.71.43
    C:\DOCUME~1\ALLUSE~1\MENUDÉ~1\PROGRA~1\Dealio
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Search Settings
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Search Settings\kb127
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Search Settings\kb127\temp
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Search Settings\kb127\res
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Search Settings\kb127\temp\ws-14239.log
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Search Settings\kb127\temp\ws-14240.log
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Search Settings\kb127\temp\ws-14241.log
    C:\DOCUME~1\MAUREE~1\APPLIC~1\Search Settings\kb127\temp\ws-14242.log
    C:\Program Files\Search Settings
    C:\Program Files\Search Settings\kb127
    C:\Program Files\Search Settings\SearchSettings.exe
    C:\Program Files\Search Settings\kb127\res
    C:\Program Files\Search Settings\kb127\temp
    C:\Program Files\Search Settings\kb127\SearchSettings.dll
    C:\Program Files\Search Settings\kb127\SearchSettingsRes409.dll

    -----------\\ Extensions

    (Maureen Samain) - {b9db16a4-6edc-47ec-a1f4-b86292ed211d} => dwhelper


    -----------\\ [..\Internet Explorer\Main]

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
    "Start Page"="http://google.com/"
    "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
    "SearchMigratedDefaultURL"="http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}"

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
    "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
    "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
    "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
    "Start Page"="http://home.sweetim.com"


    --------------------\\ Recherche d'autres infections

    C:\WINDOWS\system32\rqstv.tmp
    C:\WINDOWS\system32\rqstv.ini
    C:\WINDOWS\system32\rqstv.bak1
    C:\WINDOWS\system32\rqstv.ini2
    C:\WINDOWS\system32\rqstv.bak2
    ==> VUNDO <==




    1 - "C:\ToolBar SD\TB_1.txt" - 29/12/2008|10:55 - Option : [1]

    -----------\\ Fin du rapport a 10:55:19,51

    Contenus similaires
    29 Décembre 2008 19:03:44

    bonsoir
    1
    Relance Toolbar S&D

  • Choisis cette fois-ci l'option 2. ( Suppression )
    Ton bureau va disparaitre, c'est normal. Laisse l'outil travailler.
  • Ne ferme pas la fenêtre lors de la suppression !
  • Poste le rapport généré. ( C:\TB.txt )




    2

    Télécharge MalwareByte's Anti-Malware sur ton Bureau.

  • Installe-le en double-cliquant sur le fichier Download_mbam-setup.exe.
    Une fois l'installation et la mise à jour effectuées :
  • Fais redémarrer ton ordinateur en mode sans échec
    - Au démarrage, après le chargement du bios, appuie successivement sur la touche F8 (ou F5) de ton clavier jusqu'à l'apparition d'un menu sur fond noir. Une fois arrivé à ce stade, sélectionne à l'aide du clavier Mode sans Echec.
    -- Dans ce mode, tu n'as pas accès à Internet, et tu te retrouves avec une configuration visuelle différente (pas de fond d'écran, icônes très grosses). Ne sois donc pas étonné.
    --- C'est pour ces différentes raisons que je t'invite à imprimer, noter, ou enregistrer dans un document texte les informations suivantes afin de ne pas être perdu.
    ---- ! Ne fais pas démarrer ton ordinateur en mode sans échec via MSConfig ! Pourquoi ? Certaines infections cassent les clefs du mode sans échec, ce qui ferait crasher ton ordinateur.

  • Exécute maintenant MalwareByte's Anti-Malware. Si cela n'est pas déjà fait, sélectionne "Exécuter un examen complet".
  • Afin de lancer la recherche, clic sur"Rechercher".
  • Une fois le scan terminé, une fenêtre s'ouvre, clic sur OK. Deux possibilités s'offrent à toi :

    ~ Si le programme n'a rien trouvé, appuie sur OK. Un rapport va apparaître, ferme-le.
    ~~ Si des infections sont présentes, clic sur "Afficher les résultats" puis sur "Supprimer la sélection". Enregistre le rapport sur ton Bureau.
    ~~~~ Fais redémarrer ton ordinateur normalement et poste le rapport dans ta prochaine réponse.

    REMARQUE : Si MalwareByte's Anti-Malware a besoin de redémarrer pour terminer la suppression, accepte en cliquant sur Ok.[/#f]

    Note : Si tu ne parviens à télécharger MBAM à partir de MajorGeeks, tu peux le télécharger ici!

    [#FF0000]Aide
    :
  • Comment utiliser MBAM.
  • Comment faire démarrer son ordinateur en mode sans échec.

    ++++++++++++++++
    29 Décembre 2008 21:34:02

    Bonsoir
    voila le rapport de Toolbar:

    -----------\\ ToolBar S&D 1.2.8 XP/Vista

    Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 2
    X86-based PC ( Multiprocessor Free : Genuine Intel(R) CPU T2050 @ 1.60GHz )
    BIOS : Default System BIOS
    USER : Maureen Samain ( Administrator )
    BOOT : Normal boot
    Antivirus : avast! antivirus 4.8.1229 [VPS 081229-0] 4.8.1229 (Activated)
    C:\ (Local Disk) - FAT32 - Total:66 Go (Free:25 Go)
    D:\ (Local Disk) - FAT32 - Total:43 Go (Free:12 Go)
    E:\ (CD or DVD)

    "C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
    Option : [2] ( 29/12/2008|21:26 )

    -----------\\ SUPPRESSION

    Supprime! - C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio\kb127
    Supprime! - C:\Program Files\Dealio\kb127
    Supprime! - C:\Program Files\Dealio\DealioAU.exe
    Supprime! - C:\Program Files\Dealio\SearchSettingsKit.exe
    Supprime! - C:\DOCUME~1\ALLUSE~1\MENUDÉ~1\PROGRA~1\Dealio
    Supprime! - C:\DOCUME~1\MAUREE~1\APPLIC~1\Search Settings\kb127
    Supprime! - C:\Program Files\Search Settings\kb127
    Supprime! - C:\Program Files\Search Settings\SearchSettings.exe
    Supprime! - C:\DOCUME~1\MAUREE~1\APPLIC~1\Dealio
    Supprime! - C:\Program Files\Dealio
    Supprime! - C:\DOCUME~1\MAUREE~1\APPLIC~1\Search Settings
    Supprime! - C:\Program Files\Search Settings

    -----------\\ Recherche de Fichiers / Dossiers ...


    -----------\\ Extensions

    (Maureen Samain) - {b9db16a4-6edc-47ec-a1f4-b86292ed211d} => dwhelper


    -----------\\ [..\Internet Explorer\Main]

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
    "Start Page"="http://google.com/"
    "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
    "SearchMigratedDefaultURL"="http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}"

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
    "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
    "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
    "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
    "Start Page"="http://www.msn.com/"


    --------------------\\ Recherche d'autres infections

    C:\WINDOWS\system32\rqstv.tmp
    C:\WINDOWS\system32\rqstv.ini
    C:\WINDOWS\system32\rqstv.bak1
    C:\WINDOWS\system32\rqstv.ini2
    C:\WINDOWS\system32\rqstv.bak2
    ==> VUNDO <==




    1 - "C:\ToolBar SD\TB_1.txt" - 29/12/2008|10:55 - Option : [1]
    2 - "C:\ToolBar SD\TB_2.txt" - 29/12/2008|21:29 - Option : [2]

    -----------\\ Fin du rapport a 21:29:41,52

    31 Décembre 2008 00:16:26

    re
    continue
    j'attends ton rapport MalwareByte's Anti-Malware :) 
    1 Janvier 2009 13:12:09

    Bonjour, Bonne Année ^^'
    mille excuse pour l'attente, voici le rapport:

    Malwarebytes' Anti-Malware 1.31
    Version de la base de données: 1565
    Windows 5.1.2600 Service Pack 2

    30/12/2008 00:40:37
    mbam-log-2008-12-30 (00-40-37).txt

    Type de recherche: Examen complet (C:\|D:\|E:\|)
    Eléments examinés: 137198
    Temps écoulé: 2 hour(s), 49 minute(s), 10 second(s)

    Processus mémoire infecté(s): 0
    Module(s) mémoire infecté(s): 0
    Clé(s) du Registre infectée(s): 8
    Valeur(s) du Registre infectée(s): 0
    Elément(s) de données du Registre infecté(s): 0
    Dossier(s) infecté(s): 0
    Fichier(s) infecté(s): 0

    Processus mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Module(s) mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Clé(s) du Registre infectée(s):
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{42f2c9ba-614f-47c0-b3e3-ecfd34eed658} (Adware.ISTBar) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{b64f4a7c-97c9-11da-8bde-f66bad1e3f3a} (Rogue.WinAntivirus) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07b18ea9-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{63d0ed2c-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

    Valeur(s) du Registre infectée(s):
    (Aucun élément nuisible détecté)

    Elément(s) de données du Registre infecté(s):
    (Aucun élément nuisible détecté)

    Dossier(s) infecté(s):
    (Aucun élément nuisible détecté)

    Fichier(s) infecté(s):
    (Aucun élément nuisible détecté)
    1 Janvier 2009 20:16:35

    bonsoir

    Désactive ton antivirus et tout autre type de protection.
    Télécharge ComboFix de sUBs :
    ComboFix.exe
    et sauvegarde le sur ton bureau et pas ailleurs!

    Double-clic sur ComboFix, Il va te poser une question, suis les invites puis attends que combofix ait terminé, il est possible que ton PC reboot, c’est normal, un rapport sera créé.Poste le rapport:C:\Combofix.txt
    clique dessus pour l'ouvrir, puis édition "sélectionner tout", édition "copier"

    viens sur le forum et édition "coller"

    AIDE : Un guide et un tutoriel sur l'utilisation de ComboFix
    * le nom de la partition peut changer
    Tom's guide dans le monde
    • Allemagne
    • Italie
    • Irlande
    • Royaume Uni
    • Etats Unis
    Suivre Tom's Guide
    Inscrivez-vous à la Newsletter
    • ajouter à twitter
    • ajouter à facebook
    • ajouter un flux RSS