Aller au contenu

Koma

Membres
  • Compteur de contenus

    253
  • Inscription

  • Dernière visite

Tout ce qui a été posté par Koma

  1. quand je Sélectionner 2 dans le menu pour supprimer les fichiersn, ca charge et d'un coup ca m'enmene dans un ecran noir, en plus j'ai ressayer plusieurs fois. Je comprend pas pk pour le 1 ca marchais bien
  2. merci pour ta reponse rapide SmitFraudFix v2.75b Rapport fait à 18:59:31,26, 24/07/2006 Executé à partir de C:\progz et logiciel\SmitfraudFix OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT Fix executé en mode normal »»»»»»»»»»»»»»»»»»»»»»»» C:\ »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32 C:\WINDOWS\system32\hp???.tmp PRESENT ! C:\WINDOWS\system32\hp????.tmp PRESENT ! C:\WINDOWS\system32\ld???.tmp PRESENT ! C:\WINDOWS\system32\ld????.tmp PRESENT ! C:\WINDOWS\system32\ot.ico PRESENT ! C:\WINDOWS\system32\stdole3.tlb PRESENT ! C:\WINDOWS\system32\1024\ PRESENT ! »»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\SENC\Application Data »»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer »»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\SENC\Favoris C:\DOCUME~1\SENC\Favoris\Antivirus Test Online.url PRESENT ! »»»»»»»»»»»»»»»»»»»»»»»» Bureau »»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files C:\Program Files\SpyQuake2.com\ PRESENT ! »»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues »»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0] "Source"="About:Home" "SubscribedURL"="About:Home" "FriendlyName"="Ma page d'accueil" »»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! SrchSTS.exe by S!Ri Search SharedTaskScheduler's .dll [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler] "{0c7416f0-dd23-420f-97f5-aae352ea2bf1}"="glochid" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler] "cholecyst"="{ee2975b6-e8d5-405e-8448-8fe9590f6cfb}" »»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll »»»»»»»»»»»»»»»»»»»»»»»» Fin
  3. Slt, j'ai un probleme avec msn, quand je lie mes mail sa m'emene dans une page (http://www.error404site.net/) , mon pc est assez lent aussi. Si quelqu'un pouvais m'aider merci Logfile of HijackThis v1.99.1 Scan saved at 18:04:12, on 24/07/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\System32\DeltTray.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\Java\jre1.5.0_07\bin\jusched.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\Program Files\QuickTime\qttask.exe C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe C:\PROGRA~1\Nokia\Nokia PC Suite 6\LaunchApplication.exe C:\Program Files\ewido anti-malware\ewidoctrl.exe C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE C:\Program Files\Logitech\ImageStudio\LogiTray.exe C:\Program Files\ewido anti-malware\ewidoguard.exe C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\lclock.exe C:\Program Files\Sony Corporation\Image Transfer\SonyTray.exe C:\Program Files\Logitech\SetPoint\KEM.exe C:\Program Files\Logitech\SetPoint\KHALMNPR.EXE C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe C:\WINDOWS\system32\svchost.exe C:\PROGRA~1\MOZILLA FIREFOX\FIREFOX.EXE C:\Program Files\Fichiers communs\PCSuite\Services\ServiceLayer.exe C:\WINDOWS\system32\wscntfy.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\progz et logiciel\hijackthis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.fr/keyword/%s R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://home.free.fr/ R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_07\bin\ssv.dll O2 - BHO: (no name) - {f7d40011-29bb-43eb-9c97-875ce89e9e36} - C:\WINDOWS\system32\hp100.tmp O3 - Toolbar: ImageShack Toolbar - {6932D140-ABC4-4073-A44C-D4A541665E35} - C:\WINDOWS\ImageShackToolbar\ImageShackToolbar.dll O4 - HKLM\..\Run: [M-Audio Delta Taskbar Icon] C:\WINDOWS\System32\DeltTray.exe O4 - HKLM\..\Run: [DeltTray] DeltTray.exe O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay O4 - HKLM\..\Run: [EPSON Stylus C84 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE /P23 "EPSON Stylus C84 Series" /O6 "USB001" /M "Stylus C84" O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_07\bin\jusched.exe O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [H2O] C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup O4 - HKLM\..\Run: [bDSwitchAgent] "C:\PROGRA~1\softwin\bitdefender9\bdswitch.exe" O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE O4 - HKLM\..\Run: [LogitechGalleryRepair] C:\Program Files\Logitech\ImageStudio\ISStart.exe O4 - HKLM\..\Run: [LogitechImageStudioTray] C:\Program Files\Logitech\ImageStudio\LogiTray.exe O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [LClock] lclock.exe O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Startup: Y'z ToolBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe O4 - Global Startup: Image Transfer.lnk = ? O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\KEM.exe O8 - Extra context menu item: Post Image to Blog - res://C:\WINDOWS\ImageShackToolbar\ImageShackToolbar.dll/5003 O8 - Extra context menu item: Tag This Image - res://C:\WINDOWS\ImageShackToolbar\ImageShackToolbar.dll/5002 O8 - Extra context menu item: Upload All Images to ImageShack - res://C:\WINDOWS\ImageShackToolbar\ImageShackToolbar.dll/5000 O8 - Extra context menu item: Upload Image to ImageShack - res://C:\WINDOWS\ImageShackToolbar\ImageShackToolbar.dll/5001 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_07\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_07\bin\ssv.dll O15 - Trusted Zone: http://toolbar.imageshack.us O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/...nst20040510.cab O16 - DPF: {6932D140-ABC4-4073-A44C-D4A541665E35} (ImageShack Toolbar) - http://toolbar.imageshack.us/toolbar/ImageShackToolbar.cab O16 - DPF: {B1826A9F-4AA0-4510-BA77-9013E74E4B9B} - http://www.trendmicro.com/spyware-scan/as4web.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{02C01726-D363-4354-861C-1B9701AE4758}: NameServer = 212.27.53.252,212.27.54.252 O17 - HKLM\System\CCS\Services\Tcpip\..\{05804A3B-61F3-4B29-A093-F4CA8411095A}: NameServer = 212.27.53.252,212.27.54.252 O17 - HKLM\System\CCS\Services\Tcpip\..\{05B4A754-841D-4C74-B5E6-923AF0DBC8C2}: NameServer = 212.27.53.252,212.27.54.252 O17 - HKLM\System\CCS\Services\Tcpip\..\{51E57D41-79AF-4D34-9E20-E115222CD390}: NameServer = 212.27.53.252,212.27.54.252 O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSN Messenger\msgrapp.dll" (file missing) O21 - SSODL: cholecyst - {ee2975b6-e8d5-405e-8448-8fe9590f6cfb} - (no file) O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Fichiers communs\PCSuite\Services\ServiceLayer.exe
  4. c'est reglé merci pour vos aides
  5. en faite c'étais sur attaché mais je sais pas pourquoi j'ai toujours l'espace blanc...
  6. ça me fait ça avec n'importe quel fond d'écran... merci quand meme pour ta réponse
  7. Salut, j'ai un double fond d'écran quand je fait un screen et que j'ouvre avec paint ou autre , je ne peux meme pas enlevé la partie superflu parce-que quand je coupe ça laisse le fond blanc, quelqu'un peux m'aider svp merci. voila le screen:
  8. mon probleme est regler merci
  9. merci de ton aide , j'ai reussi a faire la mise a jour avec antivir, mais j'ai toujours le meme probleme avec msn, j'arrive à l'ouvrir quand je suis en mode sans echec
  10. j'arrive pas a sauvegarder les rapport, que ce sois avec trend micro housecall ou trend micro anti spyware, par contre anti-spyware il n'a rien detecter
  11. HKLM\SOFTWARE\Classes\Installer\Products\32418F9EE1126B64A90E8365B85CFCF6\ProductName 09/05/2006 21:09 26 bytes Data mismatch between Windows API and raw hive data. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E9F81423-211E-46B6-9AE0-38568BC5CF6F}\DisplayName 09/05/2006 21:10 26 bytes Data mismatch between Windows API and raw hive data. HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg 13/05/2006 13:55 0 bytes Access is denied. C:\Documents and Settings\SENC\Cookies\senc@forum.zebulon[1].txt 10/06/2006 10:18 352 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Cookies\senc@forum.zebulon[2].txt 10/06/2006 10:12 352 bytes Visible in Windows API, but not in MFT or directory index. C:\Documents and Settings\SENC\Cookies\senc@google[2].txt 10/06/2006 10:25 130 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Cookies\senc@www.soundclick[1].txt 10/06/2006 10:26 73 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Cookies\senc@zebulon[1].txt 10/06/2006 10:26 580 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Cookies\senc@zebulon[2].txt 09/06/2006 22:52 656 bytes Visible in Windows API, but not in MFT or directory index. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\3QWNR5O1\bo_flag[1].gif 10/06/2006 10:25 604 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\3QWNR5O1\br_flag[1].gif 10/06/2006 10:25 1.40 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\3QWNR5O1\buyDollar[1].gif 10/06/2006 10:26 968 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\3QWNR5O1\chg[1].jpg 10/06/2006 10:15 448 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\3QWNR5O1\clin[1].gif 10/06/2006 10:16 135 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\3QWNR5O1\devilmod360[1].jpg 10/06/2006 10:24 36.75 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\3QWNR5O1\fd_forum1[1].jpg 10/06/2006 10:15 796 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\3QWNR5O1\hn_flag[1].gif 10/06/2006 10:25 318 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\3QWNR5O1\hr_flag[1].gif 10/06/2006 10:25 1.11 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\3QWNR5O1\ht_flag[1].gif 10/06/2006 10:25 601 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\3QWNR5O1\liremessage[1].htm 10/06/2006 10:16 54.33 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\3QWNR5O1\myemail[1].gif 10/06/2006 10:11 261 bytes Visible in Windows API, but not in MFT or directory index. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\3QWNR5O1\MySoundClick_Play[1].gif 10/06/2006 10:26 598 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\3QWNR5O1\nintendods[1].jpg 10/06/2006 10:15 2.38 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\3QWNR5O1\portable[1].jpg 10/06/2006 10:15 1.20 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\3QWNR5O1\SST39SF020A[1].jpg 10/06/2006 10:23 3.41 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\3QWNR5O1\uk_flag[1].gif 10/06/2006 10:25 2.37 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\3QWNR5O1\uy_flag[1].gif 10/06/2006 10:25 423 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\4XU3OP2N\3543[1].gif 10/06/2006 10:16 4.53 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\4XU3OP2N\avatar-00[1].jpg 10/06/2006 10:16 33.39 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\4XU3OP2N\ban4[1].jpg 10/06/2006 10:16 32.36 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\4XU3OP2N\bangitsmini[1].gif 10/06/2006 10:16 1.20 MB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\4XU3OP2N\cashflowproductions+indaparkinlotclubbanger[1].m3u 10/06/2006 10:27 1.97 MB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\4XU3OP2N\fonsde[1].gif 10/06/2006 10:16 1.65 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\4XU3OP2N\love[1].gif 10/06/2006 10:16 379 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\4XU3OP2N\ly_flag[1].gif 10/06/2006 10:25 81 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\4XU3OP2N\pad360[1].gif 10/06/2006 10:16 61.89 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\4XU3OP2N\sa_flag[1].gif 10/06/2006 10:25 782 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\4XU3OP2N\shot5_small[1].jpg 10/06/2006 10:15 23.24 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\4XU3OP2N\shot6_small[1].jpg 10/06/2006 10:15 18.54 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\4XU3OP2N\sv_flag[1].gif 10/06/2006 10:25 592 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\4XU3OP2N\th_flag[1].gif 10/06/2006 10:25 125 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\4XU3OP2N\tj_flag[1].gif 10/06/2006 10:25 341 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\4XU3OP2N\top1[1].gif 10/06/2006 10:15 83 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\4XU3OP2N\xbox[1].jpg 10/06/2006 10:15 1.40 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\5JV75XGA\93936[1].gif 10/06/2006 10:12 52.75 KB Visible in Windows API, but not in MFT or directory index. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\5JV75XGA\ba_flag[1].gif 10/06/2006 10:25 1.21 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\5JV75XGA\banniere_meta[1].gif 10/06/2006 10:15 10.11 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\5JV75XGA\bh_flag[1].gif 10/06/2006 10:25 672 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\5JV75XGA\cdh[1].jpg 10/06/2006 10:15 637 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\5JV75XGA\cgh[1].jpg 10/06/2006 10:15 635 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\5JV75XGA\cm[1].jpg 10/06/2006 10:15 416 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\5JV75XGA\corner_left[1].gif 10/06/2006 10:23 116 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\5JV75XGA\et_flag[1].gif 10/06/2006 10:25 1.25 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\5JV75XGA\fm_flag[1].gif 10/06/2006 10:25 540 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\5JV75XGA\header_checkout[1].gif 10/06/2006 10:23 605 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\5JV75XGA\hk_flag[1].gif 10/06/2006 10:25 240 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\5JV75XGA\metashop2[1].gif 10/06/2006 10:15 116.31 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\5JV75XGA\oscommerce[1].gif 10/06/2006 10:23 3.93 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\5JV75XGA\tt_flag[1].gif 10/06/2006 10:25 901 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\5JV75XGA\tw_flag[1].gif 10/06/2006 10:25 332 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\5JV75XGA\ua_flag[1].gif 10/06/2006 10:25 102 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\5JV75XGA\ug_flag[1].gif 10/06/2006 10:25 815 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\8D2JWL6R\bnc[2].gif 10/06/2006 10:16 2.69 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\8D2JWL6R\cd_flag[1].gif 10/06/2006 10:25 832 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\8D2JWL6R\cg_flag[1].gif 10/06/2006 10:25 758 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\8D2JWL6R\heu[1].gif 10/06/2006 10:16 110 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\8D2JWL6R\hot_topic[1].gif 10/06/2006 10:15 235 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\8D2JWL6R\icon[1].gif 10/06/2006 10:23 195 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\8D2JWL6R\icon[2].gif 10/06/2006 10:23 128 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\8D2JWL6R\jo_flag[1].gif 10/06/2006 10:25 761 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\8D2JWL6R\ke_flag[1].gif 10/06/2006 10:25 778 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\8D2JWL6R\kr_flag[1].gif 10/06/2006 10:25 1.85 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\8D2JWL6R\player[1].css 10/06/2006 10:27 1.07 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\8D2JWL6R\player_bg[1].jpg 10/06/2006 10:27 12.16 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\8D2JWL6R\triste[1].gif 10/06/2006 10:16 94 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\8D2JWL6R\vn_flag[1].gif 10/06/2006 10:25 311 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\8D2JWL6R\zm_flag[1].gif 10/06/2006 10:25 678 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\9VBR554E\az_flag[1].gif 10/06/2006 10:25 416 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\9VBR554E\bd_flag[1].gif 10/06/2006 10:25 763 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\9VBR554E\elec[1].jpg 10/06/2006 10:15 684 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\9VBR554E\gg_flag[1].gif 10/06/2006 10:25 446 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\9VBR554E\gi_flag[1].gif 10/06/2006 10:25 732 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\9VBR554E\gl_flag[1].gif 10/06/2006 10:25 365 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\9VBR554E\i-j[2].j 10/06/2006 10:18 198 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\9VBR554E\index[1].htm 10/06/2006 10:18 145.09 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\9VBR554E\info[1].jpg 10/06/2006 10:15 618 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\9VBR554E\liremessage[2].htm 10/06/2006 10:16 32.25 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\9VBR554E\online[1].jpg 10/06/2006 10:15 1.46 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\9VBR554E\sh_flag[1].gif 10/06/2006 10:25 547 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\9VBR554E\sk_flag[1].gif 10/06/2006 10:25 1.19 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\9VBR554E\sm_flag[1].gif 10/06/2006 10:25 375 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\9VBR554E\sn_flag[1].gif 10/06/2006 10:25 427 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\AXXEVEHW\1x1_a[1].gif 10/06/2006 10:26 49 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\AXXEVEHW\chd[1].jpg 10/06/2006 10:15 443 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\AXXEVEHW\cu_flag[1].gif 10/06/2006 10:25 718 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\AXXEVEHW\de_flag[1].gif 10/06/2006 10:25 321 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\AXXEVEHW\download[1].jpg 10/06/2006 10:15 1.07 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\AXXEVEHW\Gohan[1].jpg 10/06/2006 10:16 1.46 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\AXXEVEHW\header_account[1].gif 10/06/2006 10:23 439 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\AXXEVEHW\header_cart[1].gif 10/06/2006 10:23 535 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\AXXEVEHW\hit[4].gif 10/06/2006 10:15 186 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\AXXEVEHW\mt_flag[1].gif 10/06/2006 10:25 347 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\AXXEVEHW\mu_flag[1].gif 10/06/2006 10:25 171 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\AXXEVEHW\mw_flag[1].gif 10/06/2006 10:25 585 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\AXXEVEHW\RootkitRevealer[1].htm 10/06/2006 10:12 22.59 KB Visible in Windows API, but not in MFT or directory index. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\AXXEVEHW\SC_Logo[1].gif 10/06/2006 10:26 2.90 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\AXXEVEHW\style[1].css 10/06/2006 10:15 6.71 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\AXXEVEHW\stylesheet[1].css 10/06/2006 10:23 5.72 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\CDKLEROH\arrow_blue_shorter[1].gif 10/06/2006 10:26 88 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\CDKLEROH\blank1x1[1].gif 10/06/2006 10:26 49 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\CDKLEROH\button_quick_find[1].gif 10/06/2006 10:23 554 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\CDKLEROH\dj_flag[1].gif 10/06/2006 10:25 361 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\CDKLEROH\dreamcast[1].gif 10/06/2006 10:15 139 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\CDKLEROH\Frontpage_HotUnsigned[1].gif 10/06/2006 10:26 10.73 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\CDKLEROH\gamecube[1].jpg 10/06/2006 10:15 1.19 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\CDKLEROH\hu_flag[1].gif 10/06/2006 10:25 141 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\CDKLEROH\jap[1].gif 10/06/2006 10:16 787 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\CDKLEROH\m3icon[1].jpg 10/06/2006 10:15 1.78 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\CDKLEROH\minicastshop[1].jpg 10/06/2006 10:16 3.36 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\CDKLEROH\nf_flag[1].gif 10/06/2006 10:25 1000 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\CDKLEROH\pn_flag[1].gif 10/06/2006 10:25 564 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\CDKLEROH\sb_flag[1].gif 10/06/2006 10:25 1.55 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\CDKLEROH\sc_flag[1].gif 10/06/2006 10:25 949 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\CDKLEROH\spsp-oct[1].gif 10/06/2006 10:23 5.99 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\CDKLEROH\swelcome[1].jpg 10/06/2006 10:15 6.60 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\CDKLEROH\table_background_default[1].gif 10/06/2006 10:23 1.72 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\CDKLEROH\traffic[1].png 10/06/2006 10:11 303 bytes Visible in Windows API, but not in MFT or directory index. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GP67KTEB\ag_flag[1].gif 10/06/2006 10:25 896 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GP67KTEB\ai_flag[1].gif 10/06/2006 10:25 946 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GP67KTEB\avatarrcsca13sr[1].gif 10/06/2006 10:16 138.55 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GP67KTEB\bryangrant+thinkofme2[1].jpg 10/06/2006 10:26 3.87 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GP67KTEB\dm_flag[1].gif 10/06/2006 10:25 1.27 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GP67KTEB\dr_jackal[1].jpg 10/06/2006 10:16 50.17 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GP67KTEB\ec_flag[1].gif 10/06/2006 10:25 669 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GP67KTEB\evilgrin[1].gif 10/06/2006 10:15 572 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GP67KTEB\featured_4479[1].jpg 10/06/2006 10:26 2.30 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GP67KTEB\featured_4506[1].jpg 10/06/2006 10:26 940 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GP67KTEB\featured_4984[1].jpg 10/06/2006 10:26 2.09 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GP67KTEB\jones[1].jpg 10/06/2006 10:15 43.17 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GP67KTEB\lv_flag[1].gif 10/06/2006 10:25 98 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GP67KTEB\pe_flag[1].gif 10/06/2006 10:25 544 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GP67KTEB\petit5fg[1].jpg 10/06/2006 10:16 41.36 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GP67KTEB\ph_flag[1].gif 10/06/2006 10:25 782 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GP67KTEB\sg61[1].jpg 10/06/2006 10:15 12.60 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GP67KTEB\sg62[1].jpg 10/06/2006 10:15 9.66 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GXOZOVOJ\animdc8zz[1].gif 10/06/2006 10:16 10.79 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GXOZOVOJ\B00005B6QL.01.MZZZZZZZ[1].jpg 10/06/2006 10:16 10.45 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GXOZOVOJ\B00022XO9U.01.MZZZZZZZ[1].jpg 10/06/2006 10:16 2.59 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GXOZOVOJ\bs_flag[1].gif 10/06/2006 10:25 658 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GXOZOVOJ\bw_flag[1].gif 10/06/2006 10:25 118 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GXOZOVOJ\dm360-diag-GDR-3120L[1].jpg 10/06/2006 10:24 199.71 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GXOZOVOJ\il_flag[1].gif 10/06/2006 10:25 581 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GXOZOVOJ\in_flag[1].gif 10/06/2006 10:25 425 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GXOZOVOJ\is_flag[1].gif 10/06/2006 10:25 177 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GXOZOVOJ\vg_flag[1].gif 10/06/2006 10:25 1.45 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GXOZOVOJ\vi_flag[1].gif 10/06/2006 10:25 1.24 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\GXOZOVOJ\vu_flag[1].gif 10/06/2006 10:25 1.34 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\I147IHIT\360-nhl2k6[1].jpg 10/06/2006 10:23 4.05 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\I147IHIT\360-quake4[1].jpg 10/06/2006 10:23 4.03 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\I147IHIT\arrow_right[1].gif 10/06/2006 10:23 69 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\I147IHIT\devilmod360[1].jpg 10/06/2006 10:23 5.14 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\I147IHIT\fou[1].gif 10/06/2006 10:16 725 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\I147IHIT\home[1].gif 10/06/2006 10:16 172 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\I147IHIT\id_flag[1].gif 10/06/2006 10:25 136 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\I147IHIT\ie_flag[1].gif 10/06/2006 10:25 170 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\I147IHIT\im_flag[1].gif 10/06/2006 10:25 974 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\I147IHIT\joystick[1].jpg 10/06/2006 10:15 1.04 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\I147IHIT\lds[1].jpg 10/06/2006 10:15 1013 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\I147IHIT\non[1].gif 10/06/2006 10:16 234 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\I147IHIT\sfullnds[1].jpg 10/06/2006 10:15 3.72 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\I147IHIT\uz_flag[1].gif 10/06/2006 10:25 391 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\I147IHIT\vc_flag[1].gif 10/06/2006 10:25 1.26 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\I147IHIT\ve_flag[1].gif 10/06/2006 10:25 394 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\JA4JZH0L\box_products_notifications[1].gif 10/06/2006 10:24 1.40 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\JA4JZH0L\cn_flag[1].gif 10/06/2006 10:25 664 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\JA4JZH0L\co_flag[1].gif 10/06/2006 10:25 173 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\JA4JZH0L\css_main[1].css 10/06/2006 10:26 1.13 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\JA4JZH0L\freenautes[1].png 10/06/2006 10:11 370 bytes Visible in Windows API, but not in MFT or directory index. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\JA4JZH0L\grmods[1].jpg 10/06/2006 10:24 4.24 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\JA4JZH0L\hit[2].gif 10/06/2006 10:15 186 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\JA4JZH0L\hit[3].gif 10/06/2006 10:16 186 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\JA4JZH0L\hit[4].gif 10/06/2006 10:18 286 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\JA4JZH0L\images7zz[1].jpg 10/06/2006 10:16 1.76 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\JA4JZH0L\ldivx[1].jpg 10/06/2006 10:15 869 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\JA4JZH0L\liremessage[1].htm 10/06/2006 10:16 10.42 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\JA4JZH0L\ma_flag[1].gif 10/06/2006 10:25 668 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\JA4JZH0L\mn_flag[1].gif 10/06/2006 10:25 389 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\JA4JZH0L\ms_flag[1].gif 10/06/2006 10:25 502 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\JA4JZH0L\post[1].gif 10/06/2006 10:15 122 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\JA4JZH0L\soundclick_new[1].js 10/06/2006 10:26 3.02 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\JA4JZH0L\traffic[1].png 10/06/2006 10:26 303 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KRLRUQV5\bi_flag[1].gif 10/06/2006 10:25 1.37 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KRLRUQV5\cgb[1].jpg 10/06/2006 10:15 650 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KRLRUQV5\corner_right_left[1].gif 10/06/2006 10:23 58 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KRLRUQV5\cr_flag[1].gif 10/06/2006 10:25 208 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KRLRUQV5\dk_flag[1].gif 10/06/2006 10:25 148 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KRLRUQV5\dockalo0tx[1].jpg 10/06/2006 10:16 25.08 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KRLRUQV5\icon_minipost[1].gif 10/06/2006 10:16 122 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KRLRUQV5\mx_flag[1].gif 10/06/2006 10:25 411 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KRLRUQV5\my_flag[1].gif 10/06/2006 10:25 1.42 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KRLRUQV5\MySoundClick_PlayLo[1].gif 10/06/2006 10:26 350 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KRLRUQV5\na_flag[1].gif 10/06/2006 10:25 1022 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KRLRUQV5\pixel_trans[1].gif 10/06/2006 10:23 43 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KRLRUQV5\profil[1].gif 10/06/2006 10:16 102 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KRLRUQV5\ps2[1].jpg 10/06/2006 10:15 1.14 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KRLRUQV5\soundclick_80x80[1].jpg 10/06/2006 10:26 1.94 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KRLRUQV5\sourire[1].gif 10/06/2006 10:15 93 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KTQVOT6V\bz_flag[1].gif 10/06/2006 10:25 935 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KTQVOT6V\ca_flag[1].gif 10/06/2006 10:25 753 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KTQVOT6V\cdb[1].jpg 10/06/2006 10:15 645 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KTQVOT6V\cowboy0057[1].gif 10/06/2006 10:16 3.62 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KTQVOT6V\face12cob[1].gif 10/06/2006 10:16 19.26 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KTQVOT6V\Frontpage_HotSigned[1].gif 10/06/2006 10:26 13.57 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KTQVOT6V\headlinebanner[1].gif 10/06/2006 10:26 0 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KTQVOT6V\it_flag[1].gif 10/06/2006 10:25 304 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KTQVOT6V\lecteurs1lj3ff[1].jpg 10/06/2006 10:16 39.32 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KTQVOT6V\lps2[1].gif 10/06/2006 10:15 2.17 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KTQVOT6V\MAC_GYVER[1].jpg 10/06/2006 10:16 10.09 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KTQVOT6V\Metacrew_Final[1].jpg 10/06/2006 10:16 2.17 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KTQVOT6V\ni_flag[1].gif 10/06/2006 10:25 270 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KTQVOT6V\nl_flag[1].gif 10/06/2006 10:25 164 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KTQVOT6V\no_flag[1].gif 10/06/2006 10:25 217 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KVL76UB9\93936[1].gif 10/06/2006 10:18 52.75 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KVL76UB9\be_flag[1].gif 10/06/2006 10:25 312 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KVL76UB9\bg_flag[1].gif 10/06/2006 10:25 145 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KVL76UB9\featured_4310[1].jpg 10/06/2006 10:26 1.22 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KVL76UB9\featured_5195[1].gif 10/06/2006 10:26 1.96 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KVL76UB9\featured_5202[1].jpg 10/06/2006 10:26 2.83 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KVL76UB9\fr_flag[1].gif 10/06/2006 10:25 307 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KVL76UB9\gm_flag[1].gif 10/06/2006 10:25 169 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KVL76UB9\pr_flag[1].gif 10/06/2006 10:25 445 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KVL76UB9\pt_flag[1].gif 10/06/2006 10:25 460 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KVL76UB9\py_flag[1].gif 10/06/2006 10:25 700 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KVL76UB9\urchin[2].js 09/06/2006 23:15 17.68 KB Visible in Windows API, but not in MFT or directory index. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\KVL76UB9\urchin[3].js 10/06/2006 10:18 17.68 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\RUCFZ1SL\1x1_d[1].gif 10/06/2006 10:26 49 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\RUCFZ1SL\23[1].jpg 10/06/2006 10:16 24.63 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\RUCFZ1SL\ar_flag[1].gif 10/06/2006 10:25 653 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\RUCFZ1SL\arrow_still_blank[1].gif 10/06/2006 10:26 95 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\RUCFZ1SL\as_flag[1].gif 10/06/2006 10:25 529 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\RUCFZ1SL\banniereit[1].jpg 10/06/2006 10:16 54.17 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\RUCFZ1SL\eg_flag[1].gif 10/06/2006 10:25 394 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\RUCFZ1SL\featured_5236[1].jpg 10/06/2006 10:26 2.55 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\RUCFZ1SL\fi_flag[1].gif 10/06/2006 10:25 248 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\RUCFZ1SL\hit[4].gif 10/06/2006 10:15 186 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\RUCFZ1SL\hit[7].gif 10/06/2006 10:16 186 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\RUCFZ1SL\info2[1].gif 10/06/2006 10:26 131 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\RUCFZ1SL\logo_sm[1].gif 10/06/2006 10:25 4.60 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\RUCFZ1SL\oscommerce[1].gif 10/06/2006 10:23 6.90 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\RUCFZ1SL\pk_flag[1].gif 10/06/2006 10:25 1.29 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\RUCFZ1SL\pl_flag[1].gif 10/06/2006 10:25 137 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\RUCFZ1SL\psp[1].jpg 10/06/2006 10:15 1.30 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\RUCFZ1SL\thumbsup[1].gif 10/06/2006 10:15 235 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\S9AZ89E7\arrow_down_blank[1].gif 10/06/2006 10:26 168 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\S9AZ89E7\banniere[1].gif 10/06/2006 10:15 13.35 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\S9AZ89E7\bt_downloads[1].gif 10/06/2006 10:15 3.43 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\S9AZ89E7\bt_forums[1].gif 10/06/2006 10:15 3.12 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\S9AZ89E7\bt_home[1].gif 10/06/2006 10:15 3.13 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\S9AZ89E7\bt_modchips[1].gif 10/06/2006 10:15 3.04 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\S9AZ89E7\bt_search[1].gif 10/06/2006 10:15 4.35 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\S9AZ89E7\bt_tutorials[1].gif 10/06/2006 10:15 3.49 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\S9AZ89E7\ck_flag[1].gif 10/06/2006 10:25 1.03 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\S9AZ89E7\cl_flag[1].gif 10/06/2006 10:25 346 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\S9AZ89E7\home.free[1].htm 10/06/2006 10:11 53.43 KB Visible in Windows API, but not in MFT or directory index. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\S9AZ89E7\lu_flag[1].gif 10/06/2006 10:25 125 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\S9AZ89E7\myemail[1].gif 10/06/2006 10:26 261 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\S9AZ89E7\news[1].gif 10/06/2006 10:15 934 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\S9AZ89E7\ro_flag[1].gif 10/06/2006 10:25 170 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\S9AZ89E7\ru_flag[1].gif 10/06/2006 10:25 168 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\S9AZ89E7\rw_flag[1].gif 10/06/2006 10:25 377 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\S9AZ89E7\xbox360[1].jpg 10/06/2006 10:15 1.13 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\S9AZ89E7\XMLsong[3].xml 10/06/2006 10:27 346 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SPU7K9YV\annonce[1].gif 10/06/2006 10:15 353 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SPU7K9YV\cashflowproductions+indaparkinlotclubbanger2[1].jpg 10/06/2006 10:27 2.38 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SPU7K9YV\content[1].gif 10/06/2006 10:15 152 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SPU7K9YV\do_flag[1].gif 10/06/2006 10:25 680 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SPU7K9YV\icon[1].gif 10/06/2006 10:23 608 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SPU7K9YV\icon[2].gif 10/06/2006 10:23 113 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SPU7K9YV\je_flag[1].gif 10/06/2006 10:25 988 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SPU7K9YV\jm_flag[1].gif 10/06/2006 10:25 1.02 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SPU7K9YV\jp_flag[1].gif 10/06/2006 10:25 359 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SPU7K9YV\liremessage[1].htm 10/06/2006 10:17 28.25 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SPU7K9YV\PVR802[1].gif 10/06/2006 10:23 4.45 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SPU7K9YV\topic[1].gif 10/06/2006 10:15 606 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SPU7K9YV\tuto[1].gif 10/06/2006 10:15 524 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SPU7K9YV\wii[1].gif 10/06/2006 10:15 3.83 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SPU7K9YV\ws_flag[1].gif 10/06/2006 10:25 363 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SPU7K9YV\za_flag[1].gif 10/06/2006 10:25 879 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SXEZWDUN\accueil[1].jpg 10/06/2006 10:15 27.70 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SXEZWDUN\castes[1].jpg 10/06/2006 10:15 27.35 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SXEZWDUN\connexion[1].jpg 10/06/2006 10:15 27.75 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SXEZWDUN\featured_5151[1].jpg 10/06/2006 10:26 2.49 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SXEZWDUN\freenautes[1].png 10/06/2006 10:26 371 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SXEZWDUN\hercule[1].jpg 10/06/2006 10:15 1.85 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SXEZWDUN\inscription[1].jpg 10/06/2006 10:15 27.59 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SXEZWDUN\manga[1].jpg 10/06/2006 10:15 3.21 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SXEZWDUN\membres[1].jpg 10/06/2006 10:15 27.17 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SXEZWDUN\metagames[1].gif 10/06/2006 10:15 1.44 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SXEZWDUN\metagames[1].jpg 10/06/2006 10:15 27.85 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SXEZWDUN\metashop[1].jpg 10/06/2006 10:15 24.76 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SXEZWDUN\perte_mdp[1].jpg 10/06/2006 10:15 28.13 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SXEZWDUN\rechercher[1].jpg 10/06/2006 10:15 28.06 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SXEZWDUN\reglement[1].jpg 10/06/2006 10:15 28.45 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SXEZWDUN\SC_single_skin[1].xml 10/06/2006 10:27 6.68 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\SXEZWDUN\style[1].css 10/06/2006 10:15 1.23 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\UP5M3Y1G\arrow_Up_blank[2].gif 10/06/2006 10:26 211 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\UP5M3Y1G\at_flag[1].gif 10/06/2006 10:25 101 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\UP5M3Y1G\au_flag[1].gif 10/06/2006 10:25 698 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\UP5M3Y1G\featured_4033[1].jpg 10/06/2006 10:26 1.17 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\UP5M3Y1G\featured_4729[1].jpg 10/06/2006 10:26 1.97 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\UP5M3Y1G\fj_flag[1].gif 10/06/2006 10:25 1.39 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\UP5M3Y1G\home.free[1].htm 10/06/2006 10:26 53.43 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\UP5M3Y1G\lk_flag[1].gif 10/06/2006 10:25 1.46 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\UP5M3Y1G\ls_flag[1].gif 10/06/2006 10:25 514 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\UP5M3Y1G\lt_flag[1].gif 10/06/2006 10:25 330 bytes Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\UP5M3Y1G\Mr+Deathriders[1].png 10/06/2006 10:17 11.15 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\UP5M3Y1G\scthemacke16ye[1].gif 10/06/2006 10:17 3.40 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\UP5M3Y1G\shot0_small[1].jpg 10/06/2006 10:15 20.03 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\UP5M3Y1G\shot1_small[1].jpg 10/06/2006 10:15 18.35 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\UP5M3Y1G\shot2_small[1].jpg 10/06/2006 10:15 19.99 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\UP5M3Y1G\shot3_small[1].jpg 10/06/2006 10:15 24.96 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\UP5M3Y1G\shot4_small[1].jpg 10/06/2006 10:15 21.50 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\WHIVKTIZ\button_in_cart[1].gif 10/06/2006 10:24 2.10 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\WHIVKTIZ\button_reviews[1].gif 10/06/2006 10:24 2.08 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\WHIVKTIZ\derniers_tutos[1].gif 10/06/2006 10:15 6.28 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\WHIVKTIZ\dodidood[1].png 10/06/2006 10:16 19.13 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\WHIVKTIZ\en_stock[1].gif 10/06/2006 10:24 1.17 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\WHIVKTIZ\es_flag[1].gif 10/06/2006 10:25 1.30 KB Hidden from Windows API. C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\WHIVKTIZ\gr_flag[1].gif 10/06/2006 10:25 135 bytes Hidde
  12. j'ai fait un scan avec blacklight mais il y à rien sur le bureau, il à l'ere d'avoir rien détecté... et sinan voilà le rapport pour panda Incident Statut Analyse Spyware:Cookie/Hbmediapro No Désinfecté C:\Documents and Settings\SENC\Application Data\Mozilla\Firefox\Profiles\24kffcmd.default\cookies.txt[.adopt.hbmediapro.com/] Spyware:Cookie/adultfriendfinder No Désinfecté C:\Documents and Settings\SENC\Application Data\Mozilla\Firefox\Profiles\24kffcmd.default\cookies.txt[.adultfriendfinder.com/] Spyware:Cookie/fe.lea.lycos No Désinfecté C:\Documents and Settings\SENC\Application Data\Mozilla\Firefox\Profiles\24kffcmd.default\cookies.txt[.fe.lea.lycos.fr/] Spyware:Cookie/Searchportal No Désinfecté C:\Documents and Settings\SENC\Application Data\Mozilla\Firefox\Profiles\24kffcmd.default\cookies.txt[.searchportal.information.com/] Spyware:Cookie/Xiti No Désinfecté C:\Documents and Settings\SENC\Application Data\Mozilla\Firefox\Profiles\24kffcmd.default\cookies.txt[.xiti.com/] Spyware:Cookie/Xiti No Désinfecté C:\Documents and Settings\SENC\Cookies\senc@xiti[1].txt
  13. merci de ton aide mais j'ai toujours le meme probleme
  14. SmitFraudFix v2.56 Rapport fait à 19:13:01,06, 09/06/2006 Executé à partir de C:\progz et logiciel\SmitfraudFix OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT Fix executé en mode sans echec »»»»»»»»»»»»»»»»»»»»»»»» Avant SmitFraudFix !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! SrchSTS.exe by S!Ri Search SharedTaskScheduler's .dll [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler] "{0c7416f0-dd23-420f-97f5-aae352ea2bf1}"="glochid" »»»»»»»»»»»»»»»»»»»»»»»» Arret des processus »»»»»»»»»»»»»»»»»»»»»»»» Suppression des fichiers infectés »»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix GenericRenosFix by S!Ri »»»»»»»»»»»»»»»»»»»»»»»» Suppression Fichiers Temporaires »»»»»»»»»»»»»»»»»»»»»»»» Nettoyage du registre »»»»»»»»»»»»»»»»»»»»»»»» Nettoyage du registre »»»»»»»»»»»»»»»»»»»»»»»» Nettoyage du registre Nettoyage terminé. »»»»»»»»»»»»»»»»»»»»»»»» Après SmitFraudFix !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! SrchSTS.exe by S!Ri Search SharedTaskScheduler's .dll »»»»»»»»»»»»»»»»»»»»»»»» Fin --------------------------------------------------------- ewido anti-malware - Rapport de scan --------------------------------------------------------- + Créé le: 20:31:42, 09/06/2006 + Somme de contrôle: EE900B68 + Résultats du scan: HKU\S-1-5-21-299502267-842925246-682003330-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{F79FD28E-36EE-4989-AA61-9DD8E30A82FA} -> Trojan.Small : Nettoyer et sauvegarder ::Fin du rapport Logfile of HijackThis v1.99.1 Scan saved at 20:40:57, on 09/06/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe C:\Program Files\ewido anti-malware\ewidoctrl.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\DeltTray.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\Program Files\QuickTime\qttask.exe C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe C:\PROGRA~1\Nokia\Nokia PC Suite 6\LaunchApplication.exe C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\lclock.exe C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe C:\Program Files\Logitech\SetPoint\KEM.exe C:\Program Files\Fichiers communs\PCSuite\Services\ServiceLayer.exe C:\Program Files\Logitech\SetPoint\KHALMNPR.EXE C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\WINDOWS\system32\NOTEPAD.EXE C:\progz et logiciel\hijackthis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.free.fr/ R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.fr/keyword/%s R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://home.free.fr/ R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll O2 - BHO: Nothing - {f79fd28e-36ee-4989-aa61-9dd8e30a82fa} - C:\WINDOWS\system32\hp100.tmp (file missing) O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll O4 - HKLM\..\Run: [M-Audio Delta Taskbar Icon] C:\WINDOWS\System32\DeltTray.exe O4 - HKLM\..\Run: [DeltTray] DeltTray.exe O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay O4 - HKLM\..\Run: [EPSON Stylus C84 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE /P23 "EPSON Stylus C84 Series" /O6 "USB001" /M "Stylus C84" O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [H2O] C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup O4 - HKLM\..\Run: [bDSwitchAgent] "C:\Program Files\Softwin\BitDefender9\bdswitch.exe" O4 - HKLM\..\Run: [avgnt] "C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [LClock] lclock.exe O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\KEM.exe O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/...nst20040510.cab O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (FilePlanet Download Control Class) - http://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.2.1.87.cab O16 - DPF: {7B41B7AC-3496-4C13-A70F-DE6B60A6A8A8} (MGAME manager Class) - http://www.legendofares.com/download/mgusamanagerv1001.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{02C01726-D363-4354-861C-1B9701AE4758}: NameServer = 212.27.53.252,212.27.54.252 O17 - HKLM\System\CCS\Services\Tcpip\..\{05804A3B-61F3-4B29-A093-F4CA8411095A}: NameServer = 212.27.53.252,212.27.54.252 O17 - HKLM\System\CCS\Services\Tcpip\..\{05B4A754-841D-4C74-B5E6-923AF0DBC8C2}: NameServer = 212.27.53.252,212.27.54.252 O17 - HKLM\System\CCS\Services\Tcpip\..\{51E57D41-79AF-4D34-9E20-E115222CD390}: NameServer = 212.27.53.252,212.27.54.252 O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSN Messenger\msgrapp.dll" (file missing) O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - AVIRA GmbH - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Fichiers communs\PCSuite\Services\ServiceLayer.exe
  15. SmitFraudFix v2.56 Rapport fait à 18:45:14,60, 09/06/2006 Executé à partir de C:\progz et logiciel\SmitfraudFix OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT Fix executé en mode normal »»»»»»»»»»»»»»»»»»»»»»»» C:\ »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32 »»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\SENC\Application Data »»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer »»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\SENC\Favoris »»»»»»»»»»»»»»»»»»»»»»»» Bureau »»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files »»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues »»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0] "Source"="About:Home" "SubscribedURL"="About:Home" "FriendlyName"="Ma page d'accueil"
  16. antivir il chipote pour faire la mise a jour, les minutes passe, mais il y a rien
  17. j'ai deja fait tout ca
  18. Slt, j'ai un probleme avec msn, je n'arrive pas a l'ouvrir la fenetre, je pense que c'est un spyware ou un truc comme ca. Si quelqu'un pouvais m'aider merci Logfile of HijackThis v1.99.1 Scan saved at 17:52:57, on 09/06/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\System32\DeltTray.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe C:\PROGRA~1\Nokia\Nokia PC Suite 6\LaunchApplication.exe C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\lclock.exe C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe C:\Program Files\Logitech\SetPoint\KEM.exe C:\Program Files\Fichiers communs\PCSuite\Services\ServiceLayer.exe C:\Program Files\Logitech\SetPoint\KHALMNPR.EXE C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\progz et logiciel\hijackthis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.free.fr/ R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.fr/keyword/%s R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://home.free.fr/ R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll O2 - BHO: Nothing - {f79fd28e-36ee-4989-aa61-9dd8e30a82fa} - C:\WINDOWS\system32\hp100.tmp (file missing) O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll O4 - HKLM\..\Run: [M-Audio Delta Taskbar Icon] C:\WINDOWS\System32\DeltTray.exe O4 - HKLM\..\Run: [DeltTray] DeltTray.exe O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay O4 - HKLM\..\Run: [EPSON Stylus C84 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE /P23 "EPSON Stylus C84 Series" /O6 "USB001" /M "Stylus C84" O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [H2O] C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup O4 - HKLM\..\Run: [bDSwitchAgent] "C:\Program Files\Softwin\BitDefender9\bdswitch.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [LClock] lclock.exe O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\KEM.exe O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/...nst20040510.cab O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (FilePlanet Download Control Class) - http://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.2.1.87.cab O16 - DPF: {7B41B7AC-3496-4C13-A70F-DE6B60A6A8A8} (MGAME manager Class) - http://www.legendofares.com/download/mgusamanagerv1001.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{02C01726-D363-4354-861C-1B9701AE4758}: NameServer = 212.27.53.252,212.27.54.252 O17 - HKLM\System\CCS\Services\Tcpip\..\{05804A3B-61F3-4B29-A093-F4CA8411095A}: NameServer = 212.27.53.252,212.27.54.252 O17 - HKLM\System\CCS\Services\Tcpip\..\{05B4A754-841D-4C74-B5E6-923AF0DBC8C2}: NameServer = 212.27.53.252,212.27.54.252 O17 - HKLM\System\CCS\Services\Tcpip\..\{51E57D41-79AF-4D34-9E20-E115222CD390}: NameServer = 212.27.53.252,212.27.54.252 O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSN Messenger\msgrapp.dll" (file missing) O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Fichiers communs\PCSuite\Services\ServiceLayer.exe
  19. j'ai essayer de tout lire, mais franchement ca ma fait mal au crane aaaaaaa
  20. c'est bon le probleme est réglé, merci de ton aide
  21. Incident Status Location Spyware:Cookie/Hbmediapro Not disinfected C:\Documents and Settings\SENC\Application Data\Mozilla\Firefox\Profiles\24kffcmd.default\cookies.txt[.adopt.hbmediapro.com/] Spyware:Cookie/adultfriendfinder Not disinfected C:\Documents and Settings\SENC\Application Data\Mozilla\Firefox\Profiles\24kffcmd.default\cookies.txt[.adultfriendfinder.com/] Spyware:Cookie/fe.lea.lycos Not disinfected C:\Documents and Settings\SENC\Application Data\Mozilla\Firefox\Profiles\24kffcmd.default\cookies.txt[.fe.lea.lycos.fr/] Spyware:Cookie/Searchportal Not disinfected C:\Documents and Settings\SENC\Application Data\Mozilla\Firefox\Profiles\24kffcmd.default\cookies.txt[.searchportal.information.com/] Spyware:Cookie/Xiti Not disinfected C:\Documents and Settings\SENC\Application Data\Mozilla\Firefox\Profiles\24kffcmd.default\cookies.txt[.xiti.com/] Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\SENC\Cookies\senc@ad.yieldmanager[2].txt Spyware:Cookie/Hbmediapro Not disinfected C:\Documents and Settings\SENC\Cookies\senc@adopt.hbmediapro[2].txt Spyware:Cookie/adultfriendfinder Not disinfected C:\Documents and Settings\SENC\Cookies\senc@adultfriendfinder[2].txt Spyware:Cookie/Com.com Not disinfected C:\Documents and Settings\SENC\Cookies\senc@com[1].txt Spyware:Cookie/fe.lea.lycos Not disinfected C:\Documents and Settings\SENC\Cookies\senc@fe.lea.lycos[1].txt Spyware:Cookie/Searchportal Not disinfected C:\Documents and Settings\SENC\Cookies\senc@searchportal.information[1].txt Spyware:Cookie/Toplist Not disinfected C:\Documents and Settings\SENC\Cookies\senc@toplist[1].txt Spyware:Cookie/Weborama Not disinfected C:\Documents and Settings\SENC\Cookies\senc@weborama[2].txt Spyware:Cookie/Xiti Not disinfected C:\Documents and Settings\SENC\Cookies\senc@xiti[1].txt Adware:Adware/YieldManager Not disinfected C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\3QWNR5O1\rmtag3[2].js Adware:Adware/YieldManager Not disinfected C:\Documents and Settings\SENC\Local Settings\Temporary Internet Files\Content.IE5\8D2JWL6R\rmtag3[1].js
  22. SmitFraudFix v2.53 Rapport fait à 16:45:09,42, 02/06/2006 Executé à partir de C:\progz et logiciel\SmitfraudFix\SmitfraudFix OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT Fix executé en mode normal »»»»»»»»»»»»»»»»»»»»»»»» C:\ »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32 C:\WINDOWS\system32\hp???.tmp PRESENT ! C:\WINDOWS\system32\hp????.tmp PRESENT ! C:\WINDOWS\system32\ot.ico PRESENT ! C:\WINDOWS\system32\stdole3.tlb PRESENT ! »»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\SENC\Application Data »»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer »»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\SENC\Favoris »»»»»»»»»»»»»»»»»»»»»»»» Bureau »»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files »»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues »»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0] "Source"="About:Home" "SubscribedURL"="About:Home" "FriendlyName"="Ma page d'accueil" »»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! SrchSTS.exe by S!Ri Search SharedTaskScheduler's .dll [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler] "{0c7416f0-dd23-420f-97f5-aae352ea2bf1}"="glochid" »»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll »»»»»»»»»»»»»»»»»»»»»»»» Fin
  23. Slt, j'ai un probleme quand j'essaye de lire mes mails ou d'aller dans certaines page web voila ou sa m'enmene quand j'ai fait un scan en mode sans echec avec antivir ba il n'a rien detecter.Si quelqu'un pouvais m'aider, merci Logfile of HijackThis v1.99.1 Scan saved at 15:34:11, on 02/06/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe C:\Program Files\Softwin\BitDefender9\vsserv.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\System32\DeltTray.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\Program Files\QuickTime\qttask.exe C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe C:\PROGRA~1\Nokia\Nokia PC Suite 6\LaunchApplication.exe C:\Program Files\Softwin\BitDefender9\bdoesrv.exe C:\PROGRA~1\softwin\bitdefender9\bdnagent.exe C:\program files\softwin\bitdefender9\bdswitch.exe C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\lclock.exe C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe C:\Program Files\Logitech\SetPoint\KEM.exe C:\Program Files\Fichiers communs\PCSuite\Services\ServiceLayer.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\Logitech\SetPoint\KHALMNPR.EXE C:\progz et logiciel\hijackthis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.fr/keyword/%s R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://home.free.fr/ R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll O2 - BHO: Nothing - {f79fd28e-36ee-4989-aa61-9dd8e30a82fa} - C:\WINDOWS\system32\hp100.tmp O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll O4 - HKLM\..\Run: [M-Audio Delta Taskbar Icon] C:\WINDOWS\System32\DeltTray.exe O4 - HKLM\..\Run: [avgnt] "C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKLM\..\Run: [DeltTray] DeltTray.exe O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay O4 - HKLM\..\Run: [EPSON Stylus C84 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE /P23 "EPSON Stylus C84 Series" /O6 "USB001" /M "Stylus C84" O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [H2O] C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup O4 - HKLM\..\Run: [bDOESRV] "C:\Program Files\Softwin\BitDefender9\bdoesrv.exe" O4 - HKLM\..\Run: [bDNewsAgent] "C:\PROGRA~1\softwin\bitdefender9\bdnagent.exe" O4 - HKLM\..\Run: [bDSwitchAgent] "C:\PROGRA~1\softwin\bitdefender9\bdswitch.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [LClock] lclock.exe O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\KEM.exe O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/...nst20040510.cab O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (FilePlanet Download Control Class) - http://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.2.1.87.cab O16 - DPF: {7B41B7AC-3496-4C13-A70F-DE6B60A6A8A8} (MGAME manager Class) - http://www.legendofares.com/download/mgusamanagerv1001.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{02C01726-D363-4354-861C-1B9701AE4758}: NameServer = 212.27.53.252,212.27.54.252 O17 - HKLM\System\CCS\Services\Tcpip\..\{05804A3B-61F3-4B29-A093-F4CA8411095A}: NameServer = 212.27.53.252,212.27.54.252 O17 - HKLM\System\CCS\Services\Tcpip\..\{05B4A754-841D-4C74-B5E6-923AF0DBC8C2}: NameServer = 212.27.53.252,212.27.54.252 O17 - HKLM\System\CCS\Services\Tcpip\..\{51E57D41-79AF-4D34-9E20-E115222CD390}: NameServer = 212.27.53.252,212.27.54.252 O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSN Messenger\msgrapp.dll" (file missing) O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Unknown owner - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe (file missing) O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Unknown owner - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe (file missing) O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe" /service (file missing) O23 - Service: BitDefender Desktop Update Service (LIVESRV) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe" /service (file missing) O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Fichiers communs\PCSuite\Services\ServiceLayer.exe O23 - Service: BitDefender Virus Shield (VSSERV) - Unknown owner - C:\Program Files\Softwin\BitDefender9\vsserv.exe" /service (file missing) O23 - Service: BitDefender Communicator (XCOMM) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe" /service (file missing)
  24. à surcouf ? hahaha
  25. Koma

    PC INFECTER

    j'ai tout désinstaller, toujours le meme probleme.Sinon merci pour ton aide, je vais aller faire un tour sur le site
×
×
  • Créer...