Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e)

Les supports comme clé usb étaient infectés aussi!

 

Il faudra penser à les vacciner de même que le disque C du pc.

http://forum.zebulon.fr/-t131959.html&...t&p=1109846

 

Désinstalle ComboFix de cette manière en copiant/collant la ligne ci-dessous dans exécuter et valide:

 

ComboFix /u

 

Vire ces dossiers: C:\Qoobox et C:\ComboFix puis vide la corbeille. (si tu les trouvais encore).

 

Pour désinstaller les outils utilisés:

 

Télécharger ToolsCleaner! de A.Rothstein pour enlever les programmes utilisés pendant la procédure.

http://pc-system.fr/TC/ToolsCleaner2.exe

* Enregistrer ToolsCleaner2.exe sur le Bureau.

Sous Vista,Clic-droit > Exécuter en tant qu' Administrateur

* Double-cliquer dessus, puis cliquer sur Recherche --> Le programme va chercher les utilitaires installés

------> Il se peut que la fenêtre devienne blanche pendant le scan, c'est normal !

* Copier-coller le contenu du rapport qui apparait dans la fenêtre blanche.

 

Lorsque la recherche est terminée ToolsCleaner affiche une liste des différents outils trouvés, cliquez sur "Suppression" afin de les supprimer.

Fermez le programme en cliquant sur "Quitter ".

 

Postez le rapport qui se trouve ici >>> C:\TCleaner.txt

 

Options facultatives

 

A utiliser si vous le souhaitez :

 

Création d'un nouveau point de restauration (conseillé)

Vidage de la corbeille

Nettoyage de vos fichiers temporaires

 

Il y a trop de fichiers infectés on va prendre un antivirus puissant pour faire le boulot mais je te préviens que l'analyse va être très longue; aussi il ne faut pas que le pc se mette en veille!

 

Va dans le panneau de configuration et règle les options d'alimentation sur "jamais" partout.

 

C'est le seul moyen pour ne pas rester 6 mois à désinfecter cette machine bourrée de cracks infectés.

 

SCANNER AVEC AVP TOOL

 

Le scan va s'effectuer en Mode Sans Echec: comme tu n'auras pas accès à Internet, je te conseille d'imprimer cette procédure.

  • Télécharge et enregistre sur ton Bureau le scanner portable AVP TOOL (sélectionne-la à partir des dates) en cliquant sur cette image:
    logotopjj3.gif
     
    Redémarre ton ordinateur en mode sans échec en suivant la procédure que voici :
  • Redémarre ton ordinateur
  • Après avoir entendu l'ordinateur bipper lors du démarrage, mais avant que l'icône Windows apparaisse, tapote la touche F8 (une pression par seconde).
  • A la place du chargement normal de Windows, un menu avec différentes options devrait apparaître.
  • Choisis la première option, pour exécuter Windows en mode sans échec, puis appuie sur "Entrée".
  • Choisis ton compte.
  • Connecte éventuellement tes clés USB et disques externes.
     
     
  • Lance l'exécutable intitulé "setup_7.0xxxxx" en double-cliquant dessus
  • Réponds "Oui" à la question "Do you want to continue installation?"
  • Clique sur "Next" pour les deux fenêtres suivantes: AVP TOOL s'installe sur ton Bureau dans un dossier nommé "Kaspersky Lab Tool"
  • Si nécessaire, branche tes périphériques amovibles (clés USB, disque dur externe...)
  • L'outil se lance tout seul: coche toutes les cases dans l'onglet "Automatic Scan".
  • Clique maintenant sur "Security Level": une fenêtre de configuration s'ouvre: paramètre le scanner comme sur l'image:
     
    img-145432rkivs.jpg
  • Valide avec "Apply" puis "OK"
  • L'outil est maintenant configuré: dans la fenêtre principale, clique sur "Scan". Le scan commence, une nouvelle fenêtre s'ouvre indiquant la progression du balayage en pourcentage.
  • A la fin du scan, AVP Tool signale les objets infectés par l'intermédiaire d'une pop-up: coche alors "Apply to all" et clique sur "Delete" ou "Disinfect" selon ce que propose la fenêtre:
     
    kas2rd1.png
  • Une fois les infections traitées par l'intermédiaire des pop-ups, il se peut que des fichiers malsains n'aient pas été supprimés: ils apparaissent en rouge dans la liste: clique alors sur le bouton "Neutralize all" de la fenêtre de progression du scan: si une pop-up indique qu'il faut redémarrer, accepte en cliquant sur "OK"
  • Rends-toi maintenant dans l'onglet "Events" de la fenêtre de progression du scan, et décoche "Show all events"
  • Clique enfin sur "Reports" puis "Save to file" et enregistre le rapport sur ton Bureau sous le nom Rapport AVP TOOL
  • Ferme les fenêtres d'AVP Tool: un message apparaît proposant de désinstaller le logiciel: choisis "YES"
    img-143816dgnsq.jpg
  • Un message d'alerte indique que le PC doit être redémarré pour finir la désinstallation:
    img-144412fll49.jpg
    A la question "Would you like to restart now", répond "OUI" et redémarre ton ordinateur en Mode normal.
  • Poste le contenu du rapport dans ta prochaine réponse

 

Bon courage mais le pc tournera bien pendant que tu vas dormir :P

 

@++

Posté(e)
Tu es un ange apollo

 

Ah oui? pourtant ici tout le monde dit que je suis méchant.

 

Je blaaaague :P koike...

 

+++

Posté(e)

Tu es vraiment un ange (affirmatif) et je ne sais pas comment te remercier....

Le scan est très long ci-joint les rapports demandés:

 

[ Rapport ToolsCleaner version 2.2.6 (par A.Rothstein & dj QUIOU) ]

 

-->- Recherche:

 

C:\TB.txt: trouvé !

C:\!Killbox: trouvé !

C:\Toolbar SD: trouvé !

C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: trouvé !

C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: trouvé !

C:\Documents and Settings\Administrateur\Bureau\SdFix.exe: trouvé !

C:\Documents and Settings\Administrateur\Bureau\HijackThis.lnk: trouvé !

C:\Documents and Settings\Administrateur\Bureau\ToolBarSD.exe: trouvé !

C:\Documents and Settings\Administrateur\Bureau\hijackthis.log: trouvé !

C:\Program Files\Trend Micro\HijackThis: trouvé !

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !

 

---------------------------------

-->- Suppression:

 

C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: supprimé !

C:\Documents and Settings\Administrateur\Bureau\SdFix.exe: supprimé !

C:\Documents and Settings\Administrateur\Bureau\HijackThis.lnk: supprimé !

C:\Documents and Settings\Administrateur\Bureau\ToolBarSD.exe: supprimé !

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: supprimé !

C:\TB.txt: supprimé !

C:\Documents and Settings\Administrateur\Bureau\hijackthis.log: supprimé !

C:\!Killbox: supprimé !

C:\Toolbar SD: supprimé !

C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: supprimé !

C:\Program Files\Trend Micro\HijackThis: supprimé !

 

Rapport AVP TOOLS

 

Scan

----

Scanned: 967025

Detected: 31

Untreated: 0

Start time: 05/12/2008 18:30:19

Duration: 18:43:18

Finish time: 06/12/2008 13:13:37

 

 

Detected

--------

Status Object

------ ------

deleted: Trojan program Trojan-Spy.HTML.Bayfraud.hn Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"eBay Inc" <support_refnum_085717@ebay.com>][subject:Message is infected : eBay Inc fraud verification process [sun, 14 Aug 2005 11:47:52 +0300]][Time:2005/08/14 08:00:28]/text/html

deleted: malware Hoax.Win32.BadJoke.Formatter Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Youssef Ajdor" <ajdor@emi.ac.ma>][subject:Message is infected : Envoi d'un message : PhotosXXX][Time:2003/03/19 15:08:54]/PhotosXXX1.exe

deleted: Trojan program Trojan-Spy.HTML.Usbankfraud.p Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"U.S. Bank" <antifraud.ref.num4133060548@usbank.com>][subject:Message is infected : U.S. Bank: PIease Confirm Your Details][Time:2004/08/11 23:55:45]/text/html

deleted: Trojan program Trojan-Spy.HTML.Citifraud.ae Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"CitiBank" <identdep_op0701492@citibank.com>][subject:Message is infected : CitiBank - important fraud alert][Time:2004/09/15 22:18:44]/text/html

deleted: Trojan program Trojan-Spy.HTML.Smitfraud.c Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identifdep_ref90@smithbarney.com>][subject:Message is infected : Identity Theft Solutions From Smith Barney [sun, 03 Oct 2004 16:59:56 +0400]][Time:2004/10/03 11:57:45]/text/html

deleted: Trojan program Trojan-Spy.HTML.Citifraud.ai Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Citizens bank" <antifraud.ref.num7093@citizensbank.com>][subject:Message is infected : Attention To All Citizens Bank Clients [Tue, 26 Oct 2004 02:53:11 +0400]][Time:2004/10/25 22:02:57]/text/html

deleted: Trojan program Trojan-Spy.HTML.Smitfraud.c Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identifdep_ref373374968398@smithbarney.com>][subject:Message is infected : SMITH BARNEY: OFFICIAL INFORMATION][Time:2004/10/29 01:37:47]/text/html

deleted: Trojan program Trojan-Spy.HTML.Sunfraud.aj Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"SunTrust" <support@suntrust.com>][subject:Message is infected : Internet Banking with Bill Pay Fees Waived][Time:2004/11/26 08:18:57]/text/html

deleted: Trojan program Trojan-Spy.HTML.Bankfraud.u Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"SunTrust" <identdep_op3@suntrust.com>][subject:Message is infected : SunTrust Bank: URGENT SECURITY NOTICE [Tue, 30 Nov 2004 22:37:22 +0500]][Time:2004/11/30 17:44:51]/text/html

deleted: Trojan program Trojan-Spy.HTML.Smitfraud.a Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identdep_op9893250@smithbarney.com>][subject:Message is infected : Smith Barney: Special Announce [sat, 29 Jan 2005 17:24:58 -0700]][Time:2005/01/30 00:34:56]/text/html

deleted: Trojan program Trojan-Spy.HTML.Bankfraud.dq Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Regions & Union Planters" <support_id_4742535@regions.com>][subject:Message is infected : Regions Bank: please confirm your information [Thu, 31 Mar 2005 07:16:04 -0500]][Time:2005/03/31 12:20:13]/text/html

deleted: Trojan program Backdoor.Win32.Hijack.e Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"teqohixud" <teqohixud@fa.org>][subject:Message is infected : Watch my Tits!][Time:2008/09/19 09:30:39]/tube.zip/VideoTube.com.avi.exe

deleted: malware Hoax.Win32.BadJoke.Formatter Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Youssef Ajdor" <ajdor@emi.ac.ma>][subject:Message is infected : Envoi d'un message : PhotosXXX][Time:2003/03/19 15:08:54]/PhotosXXX1.exe

deleted: malware Hoax.Win32.BadJoke.Formatter Email message attachment: Identité principale\Dossiers locaux\Éléments envoyés\[From:"MADA Mohamed" <mada@emi.ac.ma>][subject:Message is infected : Fw: Envoi d'un message : PhotosXXX][Time:2003/03/28 16:23:43]/PhotosXXX1.exe

deleted: adware not-a-virus:AdWare.Win32.MegaSearch.ad File: C:\Documents and Settings\All Users\Application Data\Avg8\update\backup\avgtoolbar.dll

deleted: Trojan program Trojan-Dropper.Win32.Agent.zsb File: C:\Downloads\Advanced.SystemCare.Pro.3.0.0.586.rar/Advanced.SystemCare.Pro.3.0.0.586\asc-setup.rar/asc-setup\asc-setup.EXE//data0000.cab/is165410.exe

deleted: adware not-a-virus:AdWare.Win32.MegaSearch.ad File: C:\System Volume Information\_restore{4246BA1D-F8C9-4329-B08B-871A55D4296C}\RP1\A0000029.dll

deleted: virus Worm.Win32.AutoRun.dye File: D:\documents\Mes documents\download\McCabe__Smith__Harriot__7th_Edition__Solution_manual.rar/McCabe, Smith, Harriot (7th Edition) Solution manual\setup.exe

deleted: adware not-a-virus:AdWare.Win32.Agent.fps File: D:\Doc_C_2\Program Files\eMule\Incoming\avg internet 8.0.156 keygen.exe/setup2.exe//data0002

deleted: Trojan program Trojan-PSW.Win32.OnLineGames.aleu File: F:\jdwx.exe

deleted: Trojan program Trojan-PSW.Win32.OnLineGames.amuy File: F:\lgrncie.bat

deleted: Trojan program Trojan-Spy.Win32.VB.ahf File: F:\Start.exe

deleted: Trojan program Trojan-Banker.Win32.Banbra.ceh File: F:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe

deleted: Trojan program Packed.Win32.Krap.b File: J:\ceb6eu98.bat

deleted: virus Worm.Win32.AutoRun.szn File: J:\ln9.exe

deleted: Trojan program Trojan-GameThief.Win32.OnLineGames.rbj File: J:\MADA (G)\x.com

deleted: Trojan program Trojan-GameThief.Win32.Magania.aiyc File: J:\MADA (G)\b.com

deleted: Trojan program Trojan-GameThief.Win32.Magania.ajhv File: J:\MADA (G)\x.bat

deleted: Trojan program Packed.Win32.Krap.b File: J:\MADA (G)\i.exe

deleted: Trojan program Trojan-GameThief.Win32.Magania.akcs File: J:\MADA (G)\ogcikeq.com

deleted: Trojan program Packed.Win32.Krap.b File: J:\MADA (G)\ceb6eu98.bat

 

 

Events

------

Time Name Status Reason

---- ---- ------ ------

05/12/2008 18:37:42 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"eBay Inc" <support_refnum_085717@ebay.com>][subject:eBay Inc fraud verification process [sun, 14 Aug 2005 11:47:52 +0300]][Time:2005/08/14 08:00:28]/text/html detected Trojan program 'Trojan-Spy.HTML.Bayfraud.hn'

05/12/2008 18:37:42 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"eBay Inc" <support_refnum_085717@ebay.com>][subject:eBay Inc fraud verification process [sun, 14 Aug 2005 11:47:52 +0300]][Time:2005/08/14 08:00:28]/text/html not disinfected postponed

05/12/2008 18:37:51 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Youssef Ajdor" <ajdor@emi.ac.ma>][subject:Envoi d'un message : PhotosXXX][Time:2003/03/19 15:08:54]/PhotosXXX1.exe detected malware 'Hoax.Win32.BadJoke.Formatter'

05/12/2008 18:37:51 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Youssef Ajdor" <ajdor@emi.ac.ma>][subject:Envoi d'un message : PhotosXXX][Time:2003/03/19 15:08:54]/PhotosXXX1.exe not disinfected postponed

05/12/2008 18:38:52 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Samir Bennani" <sbennani@emi.ac.ma>][subject:AD-AWARE and co][Time:2004/03/25 09:39:02]/lxttr506-2003-5-26_Trojan Remover v5.0.6..rar/lxttr506-2003-5-26\lxtkey.exe password protected

05/12/2008 18:38:52 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Samir Bennani" <sbennani@emi.ac.ma>][subject:AD-AWARE and co][Time:2004/03/25 09:39:02]/lxttr506-2003-5-26_Trojan Remover v5.0.6..rar/lxttr506-2003-5-26\laxity.nfo password protected

05/12/2008 18:39:12 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"U.S. Bank" <antifraud.ref.num4133060548@usbank.com>][subject:U.S. Bank: PIease Confirm Your Details][Time:2004/08/11 23:55:45]/text/html detected Trojan program 'Trojan-Spy.HTML.Usbankfraud.p'

05/12/2008 18:39:12 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"U.S. Bank" <antifraud.ref.num4133060548@usbank.com>][subject:U.S. Bank: PIease Confirm Your Details][Time:2004/08/11 23:55:45]/text/html not disinfected postponed

05/12/2008 18:39:16 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"CitiBank" <identdep_op0701492@citibank.com>][subject:CitiBank - important fraud alert][Time:2004/09/15 22:18:44]/text/html detected Trojan program 'Trojan-Spy.HTML.Citifraud.ae'

05/12/2008 18:39:16 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"CitiBank" <identdep_op0701492@citibank.com>][subject:CitiBank - important fraud alert][Time:2004/09/15 22:18:44]/text/html not disinfected postponed

05/12/2008 18:39:19 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identifdep_ref90@smithbarney.com>][subject:Identity Theft Solutions From Smith Barney [sun, 03 Oct 2004 16:59:56 +0400]][Time:2004/10/03 11:57:45]/text/html detected Trojan program 'Trojan-Spy.HTML.Smitfraud.c'

05/12/2008 18:39:19 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identifdep_ref90@smithbarney.com>][subject:Identity Theft Solutions From Smith Barney [sun, 03 Oct 2004 16:59:56 +0400]][Time:2004/10/03 11:57:45]/text/html not disinfected postponed

05/12/2008 18:39:20 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Citizens bank" <antifraud.ref.num7093@citizensbank.com>][subject:Attention To All Citizens Bank Clients [Tue, 26 Oct 2004 02:53:11 +0400]][Time:2004/10/25 22:02:57]/text/html detected Trojan program 'Trojan-Spy.HTML.Citifraud.ai'

05/12/2008 18:39:20 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Citizens bank" <antifraud.ref.num7093@citizensbank.com>][subject:Attention To All Citizens Bank Clients [Tue, 26 Oct 2004 02:53:11 +0400]][Time:2004/10/25 22:02:57]/text/html not disinfected postponed

05/12/2008 18:39:20 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identifdep_ref373374968398@smithbarney.com>][subject:SMITH BARNEY: OFFICIAL INFORMATION][Time:2004/10/29 01:37:47]/text/html detected Trojan program 'Trojan-Spy.HTML.Smitfraud.c'

05/12/2008 18:39:20 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identifdep_ref373374968398@smithbarney.com>][subject:SMITH BARNEY: OFFICIAL INFORMATION][Time:2004/10/29 01:37:47]/text/html not disinfected postponed

05/12/2008 18:39:28 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"SunTrust" <support@suntrust.com>][subject:Internet Banking with Bill Pay Fees Waived][Time:2004/11/26 08:18:57]/text/html detected Trojan program 'Trojan-Spy.HTML.Sunfraud.aj'

05/12/2008 18:39:28 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"SunTrust" <support@suntrust.com>][subject:Internet Banking with Bill Pay Fees Waived][Time:2004/11/26 08:18:57]/text/html not disinfected postponed

05/12/2008 18:39:42 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"SunTrust" <identdep_op3@suntrust.com>][subject:SunTrust Bank: URGENT SECURITY NOTICE [Tue, 30 Nov 2004 22:37:22 +0500]][Time:2004/11/30 17:44:51]/text/html detected Trojan program 'Trojan-Spy.HTML.Bankfraud.u'

05/12/2008 18:39:42 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"SunTrust" <identdep_op3@suntrust.com>][subject:SunTrust Bank: URGENT SECURITY NOTICE [Tue, 30 Nov 2004 22:37:22 +0500]][Time:2004/11/30 17:44:51]/text/html not disinfected postponed

05/12/2008 18:39:59 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identdep_op9893250@smithbarney.com>][subject:Smith Barney: Special Announce [sat, 29 Jan 2005 17:24:58 -0700]][Time:2005/01/30 00:34:56]/text/html detected Trojan program 'Trojan-Spy.HTML.Smitfraud.a'

05/12/2008 18:39:59 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identdep_op9893250@smithbarney.com>][subject:Smith Barney: Special Announce [sat, 29 Jan 2005 17:24:58 -0700]][Time:2005/01/30 00:34:56]/text/html not disinfected postponed

05/12/2008 18:40:33 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Regions & Union Planters" <support_id_4742535@regions.com>][subject:Regions Bank: please confirm your information [Thu, 31 Mar 2005 07:16:04 -0500]][Time:2005/03/31 12:20:13]/text/html detected Trojan program 'Trojan-Spy.HTML.Bankfraud.dq'

05/12/2008 18:40:33 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Regions & Union Planters" <support_id_4742535@regions.com>][subject:Regions Bank: please confirm your information [Thu, 31 Mar 2005 07:16:04 -0500]][Time:2005/03/31 12:20:13]/text/html not disinfected postponed

05/12/2008 18:40:45 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"teqohixud" <teqohixud@fa.org>][subject:Watch my Tits!][Time:2008/09/19 09:30:39]/tube.zip/VideoTube.com.avi.exe detected Trojan program 'Backdoor.Win32.Hijack.e'

05/12/2008 18:40:45 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"teqohixud" <teqohixud@fa.org>][subject:Watch my Tits!][Time:2008/09/19 09:30:39]/tube.zip/VideoTube.com.avi.exe not disinfected postponed

05/12/2008 18:41:25 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Youssef Ajdor" <ajdor@emi.ac.ma>][subject:Envoi d'un message : PhotosXXX][Time:2003/03/19 15:08:54]/PhotosXXX1.exe detected malware 'Hoax.Win32.BadJoke.Formatter'

05/12/2008 18:41:25 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Youssef Ajdor" <ajdor@emi.ac.ma>][subject:Envoi d'un message : PhotosXXX][Time:2003/03/19 15:08:54]/PhotosXXX1.exe not disinfected postponed

05/12/2008 18:42:43 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Samir Bennani" <sbennani@emi.ac.ma>][subject:AD-AWARE and co][Time:2004/03/25 09:39:02]/lxttr506-2003-5-26_Trojan Remover v5.0.6..rar/lxttr506-2003-5-26\lxtkey.exe password protected

05/12/2008 18:42:43 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Samir Bennani" <sbennani@emi.ac.ma>][subject:AD-AWARE and co][Time:2004/03/25 09:39:02]/lxttr506-2003-5-26_Trojan Remover v5.0.6..rar/lxttr506-2003-5-26\laxity.nfo password protected

05/12/2008 18:43:30 Email message attachment: Identité principale\Dossiers locaux\Éléments envoyés\[From:"MADA Mohamed" <mada@emi.ac.ma>][subject:Fw: Envoi d'un message : PhotosXXX][Time:2003/03/28 16:23:43]/PhotosXXX1.exe detected malware 'Hoax.Win32.BadJoke.Formatter'

05/12/2008 18:43:30 Email message attachment: Identité principale\Dossiers locaux\Éléments envoyés\[From:"MADA Mohamed" <mada@emi.ac.ma>][subject:Fw: Envoi d'un message : PhotosXXX][Time:2003/03/28 16:23:43]/PhotosXXX1.exe not disinfected postponed

05/12/2008 18:44:28 Email message attachment: Identité principale\Dossiers locaux\Éléments envoyés\[From:"Mada Mohamed" <mada@emi.ac.ma>][subject:Fw: AD-AWARE and co][Time:2004/05/07 10:24:59]/lxttr506-2003-5-26_Trojan Remover v5.0.6..rar/lxttr506-2003-5-26\lxtkey.exe password protected

05/12/2008 18:44:28 Email message attachment: Identité principale\Dossiers locaux\Éléments envoyés\[From:"Mada Mohamed" <mada@emi.ac.ma>][subject:Fw: AD-AWARE and co][Time:2004/05/07 10:24:59]/lxttr506-2003-5-26_Trojan Remover v5.0.6..rar/lxttr506-2003-5-26\laxity.nfo password protected

05/12/2008 18:49:30 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"eBay Inc" <support_refnum_085717@ebay.com>][subject:Message is infected : eBay Inc fraud verification process [sun, 14 Aug 2005 11:47:52 +0300]][Time:2005/08/14 08:00:28]/text/html detected Trojan program 'Trojan-Spy.HTML.Bayfraud.hn'

05/12/2008 18:49:30 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"eBay Inc" <support_refnum_085717@ebay.com>][subject:Message is infected : eBay Inc fraud verification process [sun, 14 Aug 2005 11:47:52 +0300]][Time:2005/08/14 08:00:28]/text/html not disinfected postponed

05/12/2008 18:49:39 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Youssef Ajdor" <ajdor@emi.ac.ma>][subject:Message is infected : Envoi d'un message : PhotosXXX][Time:2003/03/19 15:08:54]/PhotosXXX1.exe detected malware 'Hoax.Win32.BadJoke.Formatter'

05/12/2008 18:49:39 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Youssef Ajdor" <ajdor@emi.ac.ma>][subject:Message is infected : Envoi d'un message : PhotosXXX][Time:2003/03/19 15:08:54]/PhotosXXX1.exe not disinfected postponed

05/12/2008 18:50:39 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Samir Bennani" <sbennani@emi.ac.ma>][subject:AD-AWARE and co][Time:2004/03/25 09:39:02]/lxttr506-2003-5-26_Trojan Remover v5.0.6..rar/lxttr506-2003-5-26\lxtkey.exe password protected

05/12/2008 18:50:39 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Samir Bennani" <sbennani@emi.ac.ma>][subject:AD-AWARE and co][Time:2004/03/25 09:39:02]/lxttr506-2003-5-26_Trojan Remover v5.0.6..rar/lxttr506-2003-5-26\laxity.nfo password protected

05/12/2008 18:51:00 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"U.S. Bank" <antifraud.ref.num4133060548@usbank.com>][subject:Message is infected : U.S. Bank: PIease Confirm Your Details][Time:2004/08/11 23:55:45]/text/html detected Trojan program 'Trojan-Spy.HTML.Usbankfraud.p'

05/12/2008 18:51:00 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"U.S. Bank" <antifraud.ref.num4133060548@usbank.com>][subject:Message is infected : U.S. Bank: PIease Confirm Your Details][Time:2004/08/11 23:55:45]/text/html not disinfected postponed

05/12/2008 18:51:03 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"CitiBank" <identdep_op0701492@citibank.com>][subject:Message is infected : CitiBank - important fraud alert][Time:2004/09/15 22:18:44]/text/html detected Trojan program 'Trojan-Spy.HTML.Citifraud.ae'

05/12/2008 18:51:03 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"CitiBank" <identdep_op0701492@citibank.com>][subject:Message is infected : CitiBank - important fraud alert][Time:2004/09/15 22:18:44]/text/html not disinfected postponed

05/12/2008 18:51:06 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identifdep_ref90@smithbarney.com>][subject:Message is infected : Identity Theft Solutions From Smith Barney [sun, 03 Oct 2004 16:59:56 +0400]][Time:2004/10/03 11:57:45]/text/html detected Trojan program 'Trojan-Spy.HTML.Smitfraud.c'

05/12/2008 18:51:06 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identifdep_ref90@smithbarney.com>][subject:Message is infected : Identity Theft Solutions From Smith Barney [sun, 03 Oct 2004 16:59:56 +0400]][Time:2004/10/03 11:57:45]/text/html not disinfected postponed

05/12/2008 18:51:07 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Citizens bank" <antifraud.ref.num7093@citizensbank.com>][subject:Message is infected : Attention To All Citizens Bank Clients [Tue, 26 Oct 2004 02:53:11 +0400]][Time:2004/10/25 22:02:57]/text/html detected Trojan program 'Trojan-Spy.HTML.Citifraud.ai'

05/12/2008 18:51:07 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Citizens bank" <antifraud.ref.num7093@citizensbank.com>][subject:Message is infected : Attention To All Citizens Bank Clients [Tue, 26 Oct 2004 02:53:11 +0400]][Time:2004/10/25 22:02:57]/text/html not disinfected postponed

05/12/2008 18:51:08 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identifdep_ref373374968398@smithbarney.com>][subject:Message is infected : SMITH BARNEY: OFFICIAL INFORMATION][Time:2004/10/29 01:37:47]/text/html detected Trojan program 'Trojan-Spy.HTML.Smitfraud.c'

05/12/2008 18:51:08 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identifdep_ref373374968398@smithbarney.com>][subject:Message is infected : SMITH BARNEY: OFFICIAL INFORMATION][Time:2004/10/29 01:37:47]/text/html not disinfected postponed

05/12/2008 18:51:14 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"SunTrust" <support@suntrust.com>][subject:Message is infected : Internet Banking with Bill Pay Fees Waived][Time:2004/11/26 08:18:57]/text/html detected Trojan program 'Trojan-Spy.HTML.Sunfraud.aj'

05/12/2008 18:51:14 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"SunTrust" <support@suntrust.com>][subject:Message is infected : Internet Banking with Bill Pay Fees Waived][Time:2004/11/26 08:18:57]/text/html not disinfected postponed

05/12/2008 18:51:27 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"SunTrust" <identdep_op3@suntrust.com>][subject:Message is infected : SunTrust Bank: URGENT SECURITY NOTICE [Tue, 30 Nov 2004 22:37:22 +0500]][Time:2004/11/30 17:44:51]/text/html detected Trojan program 'Trojan-Spy.HTML.Bankfraud.u'

05/12/2008 18:51:27 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"SunTrust" <identdep_op3@suntrust.com>][subject:Message is infected : SunTrust Bank: URGENT SECURITY NOTICE [Tue, 30 Nov 2004 22:37:22 +0500]][Time:2004/11/30 17:44:51]/text/html not disinfected postponed

05/12/2008 18:51:44 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identdep_op9893250@smithbarney.com>][subject:Message is infected : Smith Barney: Special Announce [sat, 29 Jan 2005 17:24:58 -0700]][Time:2005/01/30 00:34:56]/text/html detected Trojan program 'Trojan-Spy.HTML.Smitfraud.a'

05/12/2008 18:51:44 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identdep_op9893250@smithbarney.com>][subject:Message is infected : Smith Barney: Special Announce [sat, 29 Jan 2005 17:24:58 -0700]][Time:2005/01/30 00:34:56]/text/html not disinfected postponed

05/12/2008 18:52:18 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Regions & Union Planters" <support_id_4742535@regions.com>][subject:Message is infected : Regions Bank: please confirm your information [Thu, 31 Mar 2005 07:16:04 -0500]][Time:2005/03/31 12:20:13]/text/html detected Trojan program 'Trojan-Spy.HTML.Bankfraud.dq'

05/12/2008 18:52:18 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Regions & Union Planters" <support_id_4742535@regions.com>][subject:Message is infected : Regions Bank: please confirm your information [Thu, 31 Mar 2005 07:16:04 -0500]][Time:2005/03/31 12:20:13]/text/html not disinfected postponed

05/12/2008 18:52:29 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"teqohixud" <teqohixud@fa.org>][subject:Message is infected : Watch my Tits!][Time:2008/09/19 09:30:39]/tube.zip/VideoTube.com.avi.exe detected Trojan program 'Backdoor.Win32.Hijack.e'

05/12/2008 18:52:29 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"teqohixud" <teqohixud@fa.org>][subject:Message is infected : Watch my Tits!][Time:2008/09/19 09:30:39]/tube.zip/VideoTube.com.avi.exe not disinfected postponed

05/12/2008 18:53:09 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Youssef Ajdor" <ajdor@emi.ac.ma>][subject:Message is infected : Envoi d'un message : PhotosXXX][Time:2003/03/19 15:08:54]/PhotosXXX1.exe detected malware 'Hoax.Win32.BadJoke.Formatter'

05/12/2008 18:53:09 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Youssef Ajdor" <ajdor@emi.ac.ma>][subject:Message is infected : Envoi d'un message : PhotosXXX][Time:2003/03/19 15:08:54]/PhotosXXX1.exe not disinfected postponed

05/12/2008 18:54:27 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Samir Bennani" <sbennani@emi.ac.ma>][subject:AD-AWARE and co][Time:2004/03/25 09:39:02]/lxttr506-2003-5-26_Trojan Remover v5.0.6..rar/lxttr506-2003-5-26\lxtkey.exe password protected

05/12/2008 18:54:27 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Samir Bennani" <sbennani@emi.ac.ma>][subject:AD-AWARE and co][Time:2004/03/25 09:39:02]/lxttr506-2003-5-26_Trojan Remover v5.0.6..rar/lxttr506-2003-5-26\laxity.nfo password protected

05/12/2008 18:55:14 Email message attachment: Identité principale\Dossiers locaux\Éléments envoyés\[From:"MADA Mohamed" <mada@emi.ac.ma>][subject:Message is infected : Fw: Envoi d'un message : PhotosXXX][Time:2003/03/28 16:23:43]/PhotosXXX1.exe detected malware 'Hoax.Win32.BadJoke.Formatter'

05/12/2008 18:55:14 Email message attachment: Identité principale\Dossiers locaux\Éléments envoyés\[From:"MADA Mohamed" <mada@emi.ac.ma>][subject:Message is infected : Fw: Envoi d'un message : PhotosXXX][Time:2003/03/28 16:23:43]/PhotosXXX1.exe not disinfected postponed

05/12/2008 18:56:11 Email message attachment: Identité principale\Dossiers locaux\Éléments envoyés\[From:"Mada Mohamed" <mada@emi.ac.ma>][subject:Fw: AD-AWARE and co][Time:2004/05/07 10:24:59]/lxttr506-2003-5-26_Trojan Remover v5.0.6..rar/lxttr506-2003-5-26\lxtkey.exe password protected

05/12/2008 18:56:11 Email message attachment: Identité principale\Dossiers locaux\Éléments envoyés\[From:"Mada Mohamed" <mada@emi.ac.ma>][subject:Fw: AD-AWARE and co][Time:2004/05/07 10:24:59]/lxttr506-2003-5-26_Trojan Remover v5.0.6..rar/lxttr506-2003-5-26\laxity.nfo password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule.zip/VidÚos.url password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule.zip/sbRecovery.ini password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule1.zip/Jeux.url password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule1.zip/sbRecovery.ini password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule2.zip/Traducteur.url password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule2.zip/sbRecovery.ini password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule3.zip/TÚlÚcharger les programmes.url password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule3.zip/sbRecovery.ini password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule4.zip/VidÚos.url password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule4.zip/sbRecovery.ini password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule5.zip/Jeux.url password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule5.zip/sbRecovery.ini password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule6.zip/Traducteur.url password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule6.zip/sbRecovery.ini password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule7.zip/TÚlÚcharger les programmes.url password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule7.zip/sbRecovery.ini password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule8.zip/VidÚos.url password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule8.zip/sbRecovery.ini password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule9.zip/Jeux.url password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule9.zip/sbRecovery.ini password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule10.zip/Traducteur.url password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule10.zip/sbRecovery.ini password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule11.zip/TÚlÚcharger les programmes.url password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule11.zip/sbRecovery.ini password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart.zip/sbRecovery.reg password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart.zip/sbRecovery.ini password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart1.zip/RegistrySmart on the Web.lnk password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart1.zip/sbRecovery.ini password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart2.zip/RegistrySmart.lnk password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart2.zip/sbRecovery.ini password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart3.zip/Uninstall RegistrySmart.lnk password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart3.zip/sbRecovery.ini password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart4.zip/Documents and Settings/All Users/Application Data/Spybot - Search & Destroy/Recovery/sbRecovery.ini password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart5.zip/sbRecovery.reg password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart5.zip/sbRecovery.ini password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\MicrosoftWindowsSecurityCenterAntiVirusOverride.zip/sbRecovery.reg password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\MicrosoftWindowsSecurityCenterAntiVirusOverride.zip/sbRecovery.ini password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinAOLPassi.zip/sbRecovery.reg password protected

05/12/2008 19:39:24 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinAOLPassi.zip/sbRecovery.ini password protected

05/12/2008 19:39:43 File: C:\Documents and Settings\All Users\Application Data\Avg8\update\backup\avgtoolbar.dll detected adware 'not-a-virus:AdWare.Win32.MegaSearch.ad'

05/12/2008 19:39:44 File: C:\Documents and Settings\All Users\Application Data\Avg8\update\backup\avgtoolbar.dll not disinfected postponed

05/12/2008 19:48:42 File: C:\Documents and Settings\Administrateur\Bureau\70383___chemical_process_performance_evaluation.7z//Chemical_Process_Performance_Evaluation.pdf password protected

05/12/2008 19:49:43 File: C:\Documents and Settings\Administrateur\Bureau\hanofinch.rar password protected

05/12/2008 19:49:43 File: C:\Documents and Settings\Administrateur\Bureau\hanofinch.rar password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH1.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH10.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH11.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH12.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH13.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH14.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH15.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH17.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH18.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH19.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH2.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH20.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH21.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH22.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH23.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH24.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH25.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH26.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH27.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH29.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH3.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH30.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH4.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH5.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH6.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH7.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH8.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH9.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\INTROTOC.PDF password protected

05/12/2008 20:42:10 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\THUMBS.DB password protected

05/12/2008 21:03:52 File: C:\Downloads\Advanced.SystemCare.Pro.3.0.0.586.rar/Advanced.SystemCare.Pro.3.0.0.586\asc-setup.rar/asc-setup\asc-setup.EXE//data0000.cab/is165410.exe detected Trojan program 'Trojan-Dropper.Win32.Agent.zsb'

05/12/2008 21:03:52 File: C:\Downloads\Advanced.SystemCare.Pro.3.0.0.586.rar/Advanced.SystemCare.Pro.3.0.0.586\asc-setup.rar/asc-setup\asc-setup.EXE//data0000.cab/is165410.exe not disinfected postponed

05/12/2008 21:03:55 File: C:\System Volume Information\_restore{4246BA1D-F8C9-4329-B08B-871A55D4296C}\RP1\A0000029.dll detected adware 'not-a-virus:AdWare.Win32.MegaSearch.ad'

05/12/2008 21:03:55 File: C:\System Volume Information\_restore{4246BA1D-F8C9-4329-B08B-871A55D4296C}\RP1\A0000029.dll not disinfected postponed

05/12/2008 21:52:10 File: D:\CH_ENGI\Scot Fogler\software\quick\quick3.exe//#/data.z processing error

05/12/2008 21:57:15 File: D:\documents\Mes documents\download\Boiler_Operator_s_Handbook.rar/Boiler Operator's Handbook\Boiler Operator's Handbook.pdf password protected

05/12/2008 21:57:15 File: D:\documents\Mes documents\download\Boiler_Operator_s_Handbook.rar/Boiler Operator's Handbook\BMSSHOW.exe password protected

05/12/2008 21:57:15 File: D:\documents\Mes documents\download\Boiler_Operator_s_Handbook.rar/Boiler Operator's Handbook\Cycling Efficiency spreadsheet\Cycling Efficiency spreadsheet for steam boilers.xls password protected

05/12/2008 21:57:15 File: D:\documents\Mes documents\download\Boiler_Operator_s_Handbook.rar/Boiler Operator's Handbook\Cycling Efficiency spreadsheet\Cycling Efficiency spreadsheet for hot water boilers.xls password protected

05/12/2008 22:01:05 File: D:\documents\Mes documents\download\McCabe__Smith__Harriot__7th_Edition__Solution_manual.rar/McCabe, Smith, Harriot (7th Edition) Solution manual\setup.exe detected virus 'Worm.Win32.AutoRun.dye'

05/12/2008 22:01:06 File: D:\documents\Mes documents\download\McCabe__Smith__Harriot__7th_Edition__Solution_manual.rar/McCabe, Smith, Harriot (7th Edition) Solution manual\setup.exe not disinfected postponed

05/12/2008 22:14:55 File: D:\Doc_C_2\Program Files\eMule\Incoming\avg internet 8.0.156 keygen.exe/setup2.exe//data0002 detected adware 'not-a-virus:AdWare.Win32.Agent.fps'

05/12/2008 22:14:58 File: D:\Doc_C_2\Program Files\eMule\Incoming\avg internet 8.0.156 keygen.exe/setup2.exe//data0002 not disinfected postponed

05/12/2008 22:40:02 File: D:\Doc_C_2\Program Files\eMule\Incoming\PDF Password Remover v3.0 + Crack.rar/PDF Password Remover v3.0 + Crack\LEEME.txt password protected

05/12/2008 22:40:02 File: D:\Doc_C_2\Program Files\eMule\Incoming\PDF Password Remover v3.0 + Crack.rar/PDF Password Remover v3.0 + Crack\Patch PDF Password Remover 3.0.exe password protected

05/12/2008 22:40:02 File: D:\Doc_C_2\Program Files\eMule\Incoming\PDF Password Remover v3.0 + Crack.rar/PDF Password Remover v3.0 + Crack\PDF Password Remover 3.0.exe password protected

05/12/2008 22:40:08 File: D:\Doc_C_2\Program Files\eMule\Incoming\Pdf Password Remover v3.0 Winall.rar/PDF.Password.Remover.v3.0.WinALL-CHiCNCREAM\..... Eseltoeter - Board ..... Startseite.url password protected

05/12/2008 22:40:08 File: D:\Doc_C_2\Program Files\eMule\Incoming\Pdf Password Remover v3.0 Winall.rar/PDF.Password.Remover.v3.0.WinALL-CHiCNCREAM\bmc-passwort.nfo password protected

05/12/2008 22:40:08 File: D:\Doc_C_2\Program Files\eMule\Incoming\Pdf Password Remover v3.0 Winall.rar/PDF.Password.Remover.v3.0.WinALL-CHiCNCREAM\chic.nfo password protected

05/12/2008 22:40:08 File: D:\Doc_C_2\Program Files\eMule\Incoming\Pdf Password Remover v3.0 Winall.rar/PDF.Password.Remover.v3.0.WinALL-CHiCNCREAM\cncgan2a.zip password protected

05/12/2008 22:40:08 File: D:\Doc_C_2\Program Files\eMule\Incoming\Pdf Password Remover v3.0 Winall.rar/PDF.Password.Remover.v3.0.WinALL-CHiCNCREAM\file_id.diz password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//Uninstal.exe password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//Ac.ico password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Aide logiciel.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\BDenergies.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Besoins ecs.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\b_vert.jpg password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\DBaccessoires.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\DBconduits.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\DBeaux.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\DBEquipements.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Desinstaller Ôchaude.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\etude.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Fenetre principale.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Formules.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\GestionEtude.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Gestionnaire impression.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\home.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\index.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Licence.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Parametrage etude.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Presentation.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Producteur.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Reindexation.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Reseaux.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Restauration.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Sauvegarde.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\table.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Thumbs.db password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\utilitaires.htm password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Vistal.jpg password protected

05/12/2008 22:45:06 File: D:\download\ECS\InstalOchaude.exe//UPX//ampoule-.ico password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//ampoule.ico password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//annuler2.ico password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//AP.ico password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//Bulles.ico password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//CleAccès.ctz password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//cleutil.ini password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//courrie2.ico password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//email2.ico password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//enlever.ico password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//image\Accumu.bmp password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//image\ACCUMU.WMF password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//image\INSTA.bmp password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//image\INSTA.WMF password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//image\SEINTA.bmp password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//image\SEINTA.WMF password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//image\Thumbs.db password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//Info.txt password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//instalDB\Eau.FIC password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//instalDB\Eau.NDX password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//instalDB\Materiel.FIC password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//instalDB\Materiel.NDX password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//instalDB\TARIF.FIC password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//instalDB\TARIF.NDX password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//InstallOchaude.iip password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//Lic.ico password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//Licence.txt password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//Notecle.txt password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//OCHAUDE.EXE password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//ordi-.ico password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//poubell-.ico password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//recycler.ico password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//sauvDB\Eau.FIC password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//sauvDB\Eau.NDX password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//sauvDB\Materiel.FIC password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//sauvDB\Materiel.NDX password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//sauvDB\TARIF.FIC password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//sauvDB\TARIF.NDX password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//Thumbs.db password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//utile\fsbackup.exe password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//utile\SynchronX_Francais.exe password protected

05/12/2008 22:45:07 File: D:\download\ECS\InstalOchaude.exe//UPX//Vistal.jpg password protected

05/12/2008 23:54:30 File: F:\jdwx.exe detected Trojan program 'Trojan-PSW.Win32.OnLineGames.aleu'

05/12/2008 23:54:30 File: F:\jdwx.exe not disinfected postponed

05/12/2008 23:54:31 File: F:\lgrncie.bat detected Trojan program 'Trojan-PSW.Win32.OnLineGames.amuy'

05/12/2008 23:54:31 File: F:\lgrncie.bat not disinfected postponed

05/12/2008 23:54:31 File: F:\Start.exe detected Trojan program 'Trojan-Spy.Win32.VB.ahf'

05/12/2008 23:54:31 File: F:\Start.exe not disinfected postponed

05/12/2008 23:54:32 File: F:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe detected Trojan program 'Trojan-Banker.Win32.Banbra.ceh'

05/12/2008 23:54:32 File: F:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe not disinfected postponed

05/12/2008 23:54:32 File: J:\ceb6eu98.bat detected Trojan program 'Packed.Win32.Krap.b'

05/12/2008 23:54:32 File: J:\ceb6eu98.bat not disinfected postponed

05/12/2008 23:54:33 File: J:\ln9.exe detected virus 'Worm.Win32.AutoRun.szn'

05/12/2008 23:54:33 File: J:\ln9.exe not disinfected postponed

05/12/2008 23:54:35 File: J:\MADA (G)\x.com detected Trojan program 'Trojan-GameThief.Win32.OnLineGames.rbj'

05/12/2008 23:54:35 File: J:\MADA (G)\x.com not disinfected postponed

05/12/2008 23:54:37 File: J:\MADA (G)\b.com detected Trojan program 'Trojan-GameThief.Win32.Magania.aiyc'

05/12/2008 23:54:37 File: J:\MADA (G)\b.com not disinfected postponed

05/12/2008 23:54:38 File: J:\MADA (G)\x.bat detected Trojan program 'Trojan-GameThief.Win32.Magania.ajhv'

05/12/2008 23:54:38 File: J:\MADA (G)\x.bat not disinfected postponed

05/12/2008 23:54:38 File: J:\MADA (G)\i.exe detected Trojan program 'Packed.Win32.Krap.b'

05/12/2008 23:54:39 File: J:\MADA (G)\i.exe not disinfected postponed

05/12/2008 23:54:39 File: J:\MADA (G)\ogcikeq.com detected Trojan program 'Trojan-GameThief.Win32.Magania.akcs'

05/12/2008 23:54:39 File: J:\MADA (G)\ogcikeq.com not disinfected postponed

05/12/2008 23:54:39 File: J:\MADA (G)\ceb6eu98.bat detected Trojan program 'Packed.Win32.Krap.b'

05/12/2008 23:54:39 File: J:\MADA (G)\ceb6eu98.bat not disinfected postponed

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule.zip/VidÚos.url password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule.zip/sbRecovery.ini password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule1.zip/Jeux.url password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule1.zip/sbRecovery.ini password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule2.zip/Traducteur.url password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule2.zip/sbRecovery.ini password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule3.zip/TÚlÚcharger les programmes.url password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule3.zip/sbRecovery.ini password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule4.zip/VidÚos.url password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule4.zip/sbRecovery.ini password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule5.zip/Jeux.url password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule5.zip/sbRecovery.ini password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule6.zip/Traducteur.url password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule6.zip/sbRecovery.ini password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule7.zip/TÚlÚcharger les programmes.url password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule7.zip/sbRecovery.ini password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule8.zip/VidÚos.url password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule8.zip/sbRecovery.ini password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule9.zip/Jeux.url password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule9.zip/sbRecovery.ini password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule10.zip/Traducteur.url password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule10.zip/sbRecovery.ini password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule11.zip/TÚlÚcharger les programmes.url password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DreamgroupFakemule11.zip/sbRecovery.ini password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart.zip/sbRecovery.reg password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart.zip/sbRecovery.ini password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart1.zip/RegistrySmart on the Web.lnk password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart1.zip/sbRecovery.ini password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart2.zip/RegistrySmart.lnk password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart2.zip/sbRecovery.ini password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart3.zip/Uninstall RegistrySmart.lnk password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart3.zip/sbRecovery.ini password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart4.zip/Documents and Settings/All Users/Application Data/Spybot - Search & Destroy/Recovery/sbRecovery.ini password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart5.zip/sbRecovery.reg password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\RegistrySmart5.zip/sbRecovery.ini password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\MicrosoftWindowsSecurityCenterAntiVirusOverride.zip/sbRecovery.reg password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\MicrosoftWindowsSecurityCenterAntiVirusOverride.zip/sbRecovery.ini password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinAOLPassi.zip/sbRecovery.reg password protected

06/12/2008 00:36:34 File: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinAOLPassi.zip/sbRecovery.ini password protected

06/12/2008 00:36:53 File: C:\Documents and Settings\All Users\Application Data\Avg8\update\backup\avgtoolbar.dll detected adware 'not-a-virus:AdWare.Win32.MegaSearch.ad'

06/12/2008 00:36:53 File: C:\Documents and Settings\All Users\Application Data\Avg8\update\backup\avgtoolbar.dll not disinfected postponed

06/12/2008 00:45:40 File: C:\Documents and Settings\Administrateur\Bureau\70383___chemical_process_performance_evaluation.7z//Chemical_Process_Performance_Evaluation.pdf password protected

06/12/2008 00:46:40 File: C:\Documents and Settings\Administrateur\Bureau\hanofinch.rar password protected

06/12/2008 00:46:40 File: C:\Documents and Settings\Administrateur\Bureau\hanofinch.rar password protected

06/12/2008 01:37:13 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH1.PDF password protected

06/12/2008 01:37:13 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH10.PDF password protected

06/12/2008 01:37:13 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH11.PDF password protected

06/12/2008 01:37:13 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH12.PDF password protected

06/12/2008 01:37:13 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH13.PDF password protected

06/12/2008 01:37:13 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH14.PDF password protected

06/12/2008 01:37:13 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH15.PDF password protected

06/12/2008 01:37:13 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH17.PDF password protected

06/12/2008 01:37:13 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH18.PDF password protected

06/12/2008 01:37:13 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH19.PDF password protected

06/12/2008 01:37:13 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH2.PDF password protected

06/12/2008 01:37:13 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH20.PDF password protected

06/12/2008 01:37:13 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH21.PDF password protected

06/12/2008 01:37:13 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH22.PDF password protected

06/12/2008 01:37:14 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH23.PDF password protected

06/12/2008 01:37:14 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH24.PDF password protected

06/12/2008 01:37:14 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH25.PDF password protected

06/12/2008 01:37:14 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH26.PDF password protected

06/12/2008 01:37:14 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH27.PDF password protected

06/12/2008 01:37:14 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH29.PDF password protected

06/12/2008 01:37:14 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH3.PDF password protected

06/12/2008 01:37:14 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH30.PDF password protected

06/12/2008 01:37:14 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH4.PDF password protected

06/12/2008 01:37:14 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH5.PDF password protected

06/12/2008 01:37:14 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH6.PDF password protected

06/12/2008 01:37:14 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH7.PDF password protected

06/12/2008 01:37:14 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH8.PDF password protected

06/12/2008 01:37:14 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\CH9.PDF password protected

06/12/2008 01:37:14 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\INTROTOC.PDF password protected

06/12/2008 01:37:14 File: C:\Program Files\eMule\Incoming\@Solutions Manual to Accompany Chemical Reaction Engineering.rar/Solutions Manual to Accompany Chemical Reaction Engineering, 3rd Edition\THUMBS.DB password protected

06/12/2008 01:58:26 File: C:\Downloads\Advanced.SystemCare.Pro.3.0.0.586.rar/Advanced.SystemCare.Pro.3.0.0.586\asc-setup.rar/asc-setup\asc-setup.EXE//data0000.cab/is165410.exe detected Trojan program 'Trojan-Dropper.Win32.Agent.zsb'

06/12/2008 01:58:27 File: C:\Downloads\Advanced.SystemCare.Pro.3.0.0.586.rar/Advanced.SystemCare.Pro.3.0.0.586\asc-setup.rar/asc-setup\asc-setup.EXE//data0000.cab/is165410.exe not disinfected postponed

06/12/2008 01:58:30 File: C:\System Volume Information\_restore{4246BA1D-F8C9-4329-B08B-871A55D4296C}\RP1\A0000029.dll detected adware 'not-a-virus:AdWare.Win32.MegaSearch.ad'

06/12/2008 01:58:30 File: C:\System Volume Information\_restore{4246BA1D-F8C9-4329-B08B-871A55D4296C}\RP1\A0000029.dll not disinfected postponed

06/12/2008 02:44:50 File: D:\CH_ENGI\Scot Fogler\software\quick\quick3.exe//#/data.z processing error

06/12/2008 02:49:13 File: D:\documents\Mes documents\download\Boiler_Operator_s_Handbook.rar/Boiler Operator's Handbook\Boiler Operator's Handbook.pdf password protected

06/12/2008 02:49:13 File: D:\documents\Mes documents\download\Boiler_Operator_s_Handbook.rar/Boiler Operator's Handbook\BMSSHOW.exe password protected

06/12/2008 02:49:13 File: D:\documents\Mes documents\download\Boiler_Operator_s_Handbook.rar/Boiler Operator's Handbook\Cycling Efficiency spreadsheet\Cycling Efficiency spreadsheet for steam boilers.xls password protected

06/12/2008 02:49:13 File: D:\documents\Mes documents\download\Boiler_Operator_s_Handbook.rar/Boiler Operator's Handbook\Cycling Efficiency spreadsheet\Cycling Efficiency spreadsheet for hot water boilers.xls password protected

06/12/2008 02:52:52 File: D:\documents\Mes documents\download\McCabe__Smith__Harriot__7th_Edition__Solution_manual.rar/McCabe, Smith, Harriot (7th Edition) Solution manual\setup.exe detected virus 'Worm.Win32.AutoRun.dye'

06/12/2008 02:52:52 File: D:\documents\Mes documents\download\McCabe__Smith__Harriot__7th_Edition__Solution_manual.rar/McCabe, Smith, Harriot (7th Edition) Solution manual\setup.exe not disinfected postponed

06/12/2008 03:06:03 File: D:\Doc_C_2\Program Files\eMule\Incoming\avg internet 8.0.156 keygen.exe/setup2.exe//data0002 detected adware 'not-a-virus:AdWare.Win32.Agent.fps'

06/12/2008 03:06:03 File: D:\Doc_C_2\Program Files\eMule\Incoming\avg internet 8.0.156 keygen.exe/setup2.exe//data0002 not disinfected postponed

06/12/2008 03:29:58 File: D:\Doc_C_2\Program Files\eMule\Incoming\PDF Password Remover v3.0 + Crack.rar/PDF Password Remover v3.0 + Crack\LEEME.txt password protected

06/12/2008 03:29:58 File: D:\Doc_C_2\Program Files\eMule\Incoming\PDF Password Remover v3.0 + Crack.rar/PDF Password Remover v3.0 + Crack\Patch PDF Password Remover 3.0.exe password protected

06/12/2008 03:29:58 File: D:\Doc_C_2\Program Files\eMule\Incoming\PDF Password Remover v3.0 + Crack.rar/PDF Password Remover v3.0 + Crack\PDF Password Remover 3.0.exe password protected

06/12/2008 03:30:04 File: D:\Doc_C_2\Program Files\eMule\Incoming\Pdf Password Remover v3.0 Winall.rar/PDF.Password.Remover.v3.0.WinALL-CHiCNCREAM\..... Eseltoeter - Board ..... Startseite.url password protected

06/12/2008 03:30:04 File: D:\Doc_C_2\Program Files\eMule\Incoming\Pdf Password Remover v3.0 Winall.rar/PDF.Password.Remover.v3.0.WinALL-CHiCNCREAM\bmc-passwort.nfo password protected

06/12/2008 03:30:04 File: D:\Doc_C_2\Program Files\eMule\Incoming\Pdf Password Remover v3.0 Winall.rar/PDF.Password.Remover.v3.0.WinALL-CHiCNCREAM\chic.nfo password protected

06/12/2008 03:30:04 File: D:\Doc_C_2\Program Files\eMule\Incoming\Pdf Password Remover v3.0 Winall.rar/PDF.Password.Remover.v3.0.WinALL-CHiCNCREAM\cncgan2a.zip password protected

06/12/2008 03:30:04 File: D:\Doc_C_2\Program Files\eMule\Incoming\Pdf Password Remover v3.0 Winall.rar/PDF.Password.Remover.v3.0.WinALL-CHiCNCREAM\file_id.diz password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//Uninstal.exe password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//Ac.ico password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Aide logiciel.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\BDenergies.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Besoins ecs.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\b_vert.jpg password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\DBaccessoires.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\DBconduits.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\DBeaux.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\DBEquipements.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Desinstaller Ôchaude.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\etude.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Fenetre principale.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Formules.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\GestionEtude.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Gestionnaire impression.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\home.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\index.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Licence.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Parametrage etude.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Presentation.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Producteur.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Reindexation.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Reseaux.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Restauration.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Sauvegarde.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\table.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Thumbs.db password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\utilitaires.htm password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//aide\Vistal.jpg password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//ampoule-.ico password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//ampoule.ico password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//annuler2.ico password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//AP.ico password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//Bulles.ico password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//CleAccès.ctz password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//cleutil.ini password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//courrie2.ico password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//email2.ico password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//enlever.ico password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//image\Accumu.bmp password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//image\ACCUMU.WMF password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//image\INSTA.bmp password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//image\INSTA.WMF password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//image\SEINTA.bmp password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//image\SEINTA.WMF password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//image\Thumbs.db password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//Info.txt password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//instalDB\Eau.FIC password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//instalDB\Eau.NDX password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//instalDB\Materiel.FIC password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//instalDB\Materiel.NDX password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//instalDB\TARIF.FIC password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//instalDB\TARIF.NDX password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//InstallOchaude.iip password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//Lic.ico password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//Licence.txt password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//Notecle.txt password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//OCHAUDE.EXE password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//ordi-.ico password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//poubell-.ico password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//recycler.ico password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//sauvDB\Eau.FIC password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//sauvDB\Eau.NDX password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//sauvDB\Materiel.FIC password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//sauvDB\Materiel.NDX password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//sauvDB\TARIF.FIC password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//sauvDB\TARIF.NDX password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//Thumbs.db password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//utile\fsbackup.exe password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//utile\SynchronX_Francais.exe password protected

06/12/2008 03:35:08 File: D:\download\ECS\InstalOchaude.exe//UPX//Vistal.jpg password protected

06/12/2008 04:44:58 File: F:\jdwx.exe detected Trojan program 'Trojan-PSW.Win32.OnLineGames.aleu'

06/12/2008 04:44:58 File: F:\jdwx.exe not disinfected postponed

06/12/2008 04:44:58 File: F:\lgrncie.bat detected Trojan program 'Trojan-PSW.Win32.OnLineGames.amuy'

06/12/2008 04:44:58 File: F:\lgrncie.bat not disinfected postponed

06/12/2008 04:44:58 File: F:\Start.exe detected Trojan program 'Trojan-Spy.Win32.VB.ahf'

06/12/2008 04:44:58 File: F:\Start.exe not disinfected postponed

06/12/2008 04:45:00 File: F:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe detected Trojan program 'Trojan-Banker.Win32.Banbra.ceh'

06/12/2008 04:45:00 File: F:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe not disinfected postponed

06/12/2008 04:45:00 File: J:\ceb6eu98.bat detected Trojan program 'Packed.Win32.Krap.b'

06/12/2008 04:45:00 File: J:\ceb6eu98.bat not disinfected postponed

06/12/2008 04:45:01 File: J:\ln9.exe detected virus 'Worm.Win32.AutoRun.szn'

06/12/2008 04:45:01 File: J:\ln9.exe not disinfected postponed

06/12/2008 04:45:02 File: J:\MADA (G)\x.com detected Trojan program 'Trojan-GameThief.Win32.OnLineGames.rbj'

06/12/2008 04:45:02 File: J:\MADA (G)\x.com not disinfected postponed

06/12/2008 04:45:05 File: J:\MADA (G)\b.com detected Trojan program 'Trojan-GameThief.Win32.Magania.aiyc'

06/12/2008 04:45:05 File: J:\MADA (G)\b.com not disinfected postponed

06/12/2008 04:45:06 File: J:\MADA (G)\x.bat detected Trojan program 'Trojan-GameThief.Win32.Magania.ajhv'

06/12/2008 04:45:06 File: J:\MADA (G)\x.bat not disinfected postponed

06/12/2008 04:45:06 File: J:\MADA (G)\i.exe detected Trojan program 'Packed.Win32.Krap.b'

06/12/2008 04:45:06 File: J:\MADA (G)\i.exe not disinfected postponed

06/12/2008 04:45:07 File: J:\MADA (G)\ogcikeq.com detected Trojan program 'Trojan-GameThief.Win32.Magania.akcs'

06/12/2008 04:45:07 File: J:\MADA (G)\ogcikeq.com not disinfected postponed

06/12/2008 04:45:07 File: J:\MADA (G)\ceb6eu98.bat detected Trojan program 'Packed.Win32.Krap.b'

06/12/2008 04:45:07 File: J:\MADA (G)\ceb6eu98.bat not disinfected postponed

06/12/2008 04:45:17 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"eBay Inc" <support_refnum_085717@ebay.com>][subject:Message is infected : eBay Inc fraud verification process [sun, 14 Aug 2005 11:47:52 +0300]][Time:2005/08/14 08:00:28]/text/html detected Trojan program 'Trojan-Spy.HTML.Bayfraud.hn'

06/12/2008 08:04:02 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"eBay Inc" <support_refnum_085717@ebay.com>][subject:Message is infected : eBay Inc fraud verification process [sun, 14 Aug 2005 11:47:52 +0300]][Time:2005/08/14 08:00:28]/text/html deleted

06/12/2008 08:04:03 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Youssef Ajdor" <ajdor@emi.ac.ma>][subject:Message is infected : Envoi d'un message : PhotosXXX][Time:2003/03/19 15:08:54]/PhotosXXX1.exe detected malware 'Hoax.Win32.BadJoke.Formatter'

06/12/2008 08:04:33 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Youssef Ajdor" <ajdor@emi.ac.ma>][subject:Message is infected : Envoi d'un message : PhotosXXX][Time:2003/03/19 15:08:54]/PhotosXXX1.exe deleted

06/12/2008 08:04:33 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"U.S. Bank" <antifraud.ref.num4133060548@usbank.com>][subject:Message is infected : U.S. Bank: PIease Confirm Your Details][Time:2004/08/11 23:55:45]/text/html detected Trojan program 'Trojan-Spy.HTML.Usbankfraud.p'

06/12/2008 08:04:33 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"U.S. Bank" <antifraud.ref.num4133060548@usbank.com>][subject:Message is infected : U.S. Bank: PIease Confirm Your Details][Time:2004/08/11 23:55:45]/text/html deleted

06/12/2008 08:04:33 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"CitiBank" <identdep_op0701492@citibank.com>][subject:Message is infected : CitiBank - important fraud alert][Time:2004/09/15 22:18:44]/text/html detected Trojan program 'Trojan-Spy.HTML.Citifraud.ae'

06/12/2008 08:04:33 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"CitiBank" <identdep_op0701492@citibank.com>][subject:Message is infected : CitiBank - important fraud alert][Time:2004/09/15 22:18:44]/text/html deleted

06/12/2008 08:04:33 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identifdep_ref90@smithbarney.com>][subject:Message is infected : Identity Theft Solutions From Smith Barney [sun, 03 Oct 2004 16:59:56 +0400]][Time:2004/10/03 11:57:45]/text/html detected Trojan program 'Trojan-Spy.HTML.Smitfraud.c'

06/12/2008 08:04:33 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identifdep_ref90@smithbarney.com>][subject:Message is infected : Identity Theft Solutions From Smith Barney [sun, 03 Oct 2004 16:59:56 +0400]][Time:2004/10/03 11:57:45]/text/html deleted

06/12/2008 08:04:33 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Citizens bank" <antifraud.ref.num7093@citizensbank.com>][subject:Message is infected : Attention To All Citizens Bank Clients [Tue, 26 Oct 2004 02:53:11 +0400]][Time:2004/10/25 22:02:57]/text/html detected Trojan program 'Trojan-Spy.HTML.Citifraud.ai'

06/12/2008 08:04:33 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Citizens bank" <antifraud.ref.num7093@citizensbank.com>][subject:Message is infected : Attention To All Citizens Bank Clients [Tue, 26 Oct 2004 02:53:11 +0400]][Time:2004/10/25 22:02:57]/text/html deleted

06/12/2008 08:04:33 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identifdep_ref373374968398@smithbarney.com>][subject:Message is infected : SMITH BARNEY: OFFICIAL INFORMATION][Time:2004/10/29 01:37:47]/text/html detected Trojan program 'Trojan-Spy.HTML.Smitfraud.c'

06/12/2008 08:04:33 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identifdep_ref373374968398@smithbarney.com>][subject:Message is infected : SMITH BARNEY: OFFICIAL INFORMATION][Time:2004/10/29 01:37:47]/text/html deleted

06/12/2008 08:04:33 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"SunTrust" <support@suntrust.com>][subject:Message is infected : Internet Banking with Bill Pay Fees Waived][Time:2004/11/26 08:18:57]/text/html detected Trojan program 'Trojan-Spy.HTML.Sunfraud.aj'

06/12/2008 08:04:33 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"SunTrust" <support@suntrust.com>][subject:Message is infected : Internet Banking with Bill Pay Fees Waived][Time:2004/11/26 08:18:57]/text/html deleted

06/12/2008 08:04:33 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"SunTrust" <identdep_op3@suntrust.com>][subject:Message is infected : SunTrust Bank: URGENT SECURITY NOTICE [Tue, 30 Nov 2004 22:37:22 +0500]][Time:2004/11/30 17:44:51]/text/html detected Trojan program 'Trojan-Spy.HTML.Bankfraud.u'

06/12/2008 08:04:33 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"SunTrust" <identdep_op3@suntrust.com>][subject:Message is infected : SunTrust Bank: URGENT SECURITY NOTICE [Tue, 30 Nov 2004 22:37:22 +0500]][Time:2004/11/30 17:44:51]/text/html deleted

06/12/2008 08:04:34 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identdep_op9893250@smithbarney.com>][subject:Message is infected : Smith Barney: Special Announce [sat, 29 Jan 2005 17:24:58 -0700]][Time:2005/01/30 00:34:56]/text/html detected Trojan program 'Trojan-Spy.HTML.Smitfraud.a'

06/12/2008 08:04:34 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Smith Barney" <identdep_op9893250@smithbarney.com>][subject:Message is infected : Smith Barney: Special Announce [sat, 29 Jan 2005 17:24:58 -0700]][Time:2005/01/30 00:34:56]/text/html deleted

06/12/2008 08:04:34 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Regions & Union Planters" <support_id_4742535@regions.com>][subject:Message is infected : Regions Bank: please confirm your information [Thu, 31 Mar 2005 07:16:04 -0500]][Time:2005/03/31 12:20:13]/text/html detected Trojan program 'Trojan-Spy.HTML.Bankfraud.dq'

06/12/2008 08:04:34 Email message body: Identité principale\Dossiers locaux\Boîte de réception\[From:"Regions & Union Planters" <support_id_4742535@regions.com>][subject:Message is infected : Regions Bank: please confirm your information [Thu, 31 Mar 2005 07:16:04 -0500]][Time:2005/03/31 12:20:13]/text/html deleted

06/12/2008 08:04:34 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"teqohixud" <teqohixud@fa.org>][subject:Message is infected : Watch my Tits!][Time:2008/09/19 09:30:39]/tube.zip/VideoTube.com.avi.exe detected Trojan program 'Backdoor.Win32.Hijack.e'

06/12/2008 08:04:35 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"teqohixud" <teqohixud@fa.org>][subject:Message is infected : Watch my Tits!][Time:2008/09/19 09:30:39]/tube.zip/VideoTube.com.avi.exe deleted

06/12/2008 08:04:35 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Youssef Ajdor" <ajdor@emi.ac.ma>][subject:Message is infected : Envoi d'un message : PhotosXXX][Time:2003/03/19 15:08:54]/PhotosXXX1.exe detected malware 'Hoax.Win32.BadJoke.Formatter'

06/12/2008 08:04:35 Email message attachment: Identité principale\Dossiers locaux\Boîte de réception\[From:"Youssef Ajdor" <ajdor@emi.ac.ma>][subject:Message is infected : Envoi d'un message : PhotosXXX][Time:2003/03/19 15:08:54]/PhotosXXX1.exe deleted

06/12/2008 08:04:36 Email message attachment: Identité principale\Dossiers locaux\Éléments envoyés\[From:"MADA Mohamed" <mada@emi.ac.ma>][subject:Message is infected : Fw: Envoi d'un message : PhotosXXX][Time:2003/03/28 16:23:43]/PhotosXXX1.exe detected malware 'Hoax.Win32.BadJoke.Formatter'

06/12/2008 08:04:36 Email message attachment: Identité principale\Dossiers locaux\Éléments envoyés\[From:"MADA Mohamed" <mada@emi.ac.ma>][subject:Message is infected : Fw: Envoi d'un message : PhotosXXX][Time:2003/03/28 16:23:43]/PhotosXXX1.exe deleted

06/12/2008 08:04:36 File: c:\documents and settings\all users\application data\avg8\update\backup\avgtoolbar.dll detected adware 'not-a-virus:AdWare.Win32.MegaSearch.ad'

06/12/2008 08:05:07 File: c:\documents and settings\all users\application data\avg8\update\backup\avgtoolbar.dll deleted

06/12/2008 08:05:11 File: c:\downloads\advanced.systemcare.pro.3.0.0.586.rar/Advanced.SystemCare.Pro.3.0.0.586\asc-setup.rar/asc-setup\asc-setup.EXE//data0000.cab/is165410.exe detected Trojan program 'Trojan-Dropper.Win32.Agent.zsb'

06/12/2008 08:05:43 File: c:\downloads\advanced.systemcare.pro.3.0.0.586.rar/Advanced.SystemCare.Pro.3.0.0.586\asc-setup.rar/asc-setup\asc-setup.EXE deleted

06/12/2008 08:05:43 File: c:\system volume information\_restore{4246ba1d-f8c9-4329-b08b-871a55d4296c}\rp1\a0000029.dll detected adware 'not-a-virus:AdWare.Win32.MegaSearch.ad'

06/12/2008 08:05:44 File: c:\system volume information\_restore{4246ba1d-f8c9-4329-b08b-871a55d4296c}\rp1\a0000029.dll deleted

06/12/2008 08:05:45 File: d:\documents\mes documents\download\mccabe__smith__harriot__7th_edition__solution_manual.rar/McCabe, Smith, Harriot (7th Edition) Solution manual\setup.exe detected virus 'Worm.Win32.AutoRun.dye'

06/12/2008 08:06:07 File: d:\documents\mes documents\download\mccabe__smith__harriot__7th_edition__solution_manual.rar/McCabe, Smith, Harriot (7th Edition) Solution manual\setup.exe deleted

06/12/2008 08:06:57 File: d:\doc_c_2\program files\emule\incoming\avg internet 8.0.156 keygen.exe/setup2.exe//data0002 detected adware 'not-a-virus:AdWare.Win32.Agent.fps'

06/12/2008 08:07:00 File: d:\doc_c_2\program files\emule\incoming\avg internet 8.0.156 keygen.exe deleted

06/12/2008 08:07:00 File: f:\jdwx.exe detected Trojan program 'Trojan-PSW.Win32.OnLineGames.aleu'

06/12/2008 08:07:01 File: f:\jdwx.exe deleted

06/12/2008 08:07:01 File: f:\lgrncie.bat detected Trojan program 'Trojan-PSW.Win32.OnLineGames.amuy'

06/12/2008 08:07:01 File: f:\lgrncie.bat deleted

06/12/2008 08:07:01 File: f:\start.exe detected Trojan program 'Trojan-Spy.Win32.VB.ahf'

06/12/2008 08:07:01 File: f:\start.exe deleted

06/12/2008 08:07:01 File: f:\recycler\s-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe detected Trojan program 'Trojan-Banker.Win32.Banbra.ceh'

06/12/2008 08:07:01 File: f:\recycler\s-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe deleted

06/12/2008 08:07:01 File: j:\ceb6eu98.bat detected Trojan program 'Packed.Win32.Krap.b'

06/12/2008 13:13:22 File: j:\ceb6eu98.bat deleted

06/12/2008 13:13:22 File: j:\ln9.exe detected virus 'Worm.Win32.AutoRun.szn'

06/12/2008 13:13:23 File: j:\ln9.exe deleted

06/12/2008 13:13:23 File: j:\mada (g)\x.com detected Trojan program 'Trojan-GameThief.Win32.OnLineGames.rbj'

06/12/2008 13:13:23 File: j:\mada (g)\x.com deleted

06/12/2008 13:13:23 File: j:\mada (g)\b.com detected Trojan program 'Trojan-GameThief.Win32.Magania.aiyc'

06/12/2008 13:13:23 File: j:\mada (g)\b.com deleted

06/12/2008 13:13:23 File: j:\mada (g)\x.bat detected Trojan program 'Trojan-GameThief.Win32.Magania.ajhv'

06/12/2008 13:13:24 File: j:\mada (g)\x.bat deleted

06/12/2008 13:13:24 File: j:\mada (g)\i.exe detected Trojan program 'Packed.Win32.Krap.b'

06/12/2008 13:13:31 File: j:\mada (g)\i.exe deleted

06/12/2008 13:13:31 File: j:\mada (g)\ogcikeq.com detected Trojan program 'Trojan-GameThief.Win32.Magania.akcs'

06/12/2008 13:13:31 File: j:\mada (g)\ogcikeq.com deleted

06/12/2008 13:13:31 File: j:\mada (g)\ceb6eu98.bat detected Trojan program 'Packed.Win32.Krap.b'

06/12/2008 13:13:37 File: j:\mada (g)\ceb6eu98.bat deleted

 

 

Statistics

----------

Object Scanned Detected Untreated Deleted Moved to Quarantine Archives Packed files Password protected Corrupted

------ ------- -------- --------- ------- ------------------- -------- ------------ ------------------ ---------

 

 

Settings

--------

Parameter Value

--------- -----

Security Level Recommended

Action Prompt for action when the scan is complete

Run mode Manually

File types Scan all files

Scan only new and changed files No

Scan archives All

Scan embedded OLE objects All

Skip if object is larger than No

Skip if scan takes longer than No

Parse email formats No

Scan password-protected archives No

Enable iChecker technology No

Enable iSwift technology No

Show detected threats on "Detected" tab Yes

Rootkits search Yes

Deep rootkits search No

Use heuristic analyzer Yes

 

 

Quarantine

----------

Status Object Size Added

------ ------ ---- -----

 

 

Backup

------

Status Object Size

------ ------ ----

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...