Ordi infecté - n'avance plus

Fermé
massf31 - 22 déc. 2006 à 23:25
 massf31 - 27 déc. 2006 à 21:33
Bonjour

Mon PC n'avance plus !! la lampe orange de l'UC reste allumée en permanence.
J'ai du chopé qq chose malgrès Adware et VirusScan.
Si quelqu'un paut m'aider ...

Voici le rapport HijackThis :

Logfile of HijackThis v1.99.1
Scan saved at 23:07:49, on 22/12/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
C:\Apps\ActivBoard\nhksrv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\drivers\CDAC11BA.EXE
C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe
C:\Program Files\Symantec\Norton Ghost 2003\GhostStartService.exe
C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
C:\Program Files\Network Associates\VirusScan\Mcshield.exe
C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
C:\WINDOWS\system32\MGE\RunSC.exe
C:\WINDOWS\system32\MGE\PCtl.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\ATI Technologies\ATI HYDRAVISION\HydraDM.exe
C:\WINDOWS\tppaldr.exe
C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
C:\Program Files\Fichiers communs\Network Associates\TalkBack\TBMon.exe
C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
C:\WINDOWS\system32\MGE\BIL.EXE
C:\PROGRA~1\Maxtor\OneTouch\Utils\OneTouch.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\WINDOWS\system32\ElkCtrl.exe
C:\Program Files\Logitech\Video\CameraAssistant.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Lavasoft\Ad-aware 6\Ad-watch.exe
C:\Apps\ActivBoard\MMKeybd.exe
C:\laurent\INCRED~1\bin\IMApp.exe
C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe
C:\WINDOWS\system32\MGE\CILUSB.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\laurent\RamBoost XP\rambxpfr.exe
C:\APPS\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
C:\Program Files\Logitech\SetPoint\KEM.exe
c:\progra~1\intern~1\iexplore.exe
C:\Program Files\Logitech\SetPoint\KHALMNPR.EXE
C:\Apps\ActivBoard\TrayMon.exe
C:\Apps\ActivBoard\OSD.exe
C:\Program Files\Network Associates\VirusScan\scan32.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\Explorer.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\laurent\INCRED~1\bin\ImNotfy.exe
C:\DOCUME~1\TILLET\LOCALS~1\Temp\Répertoire temporaire 1 pour hijackthis_199.zip\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ww25.planetis.com/net@tous
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: e-Carte Bleue Browser Helper Object - {2E03C0FD-4C48-43A7-9A54-00240C70FF16} - C:\WINDOWS\system32\BhoECart.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll (file missing)
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [HydraVisionDesktopManager] C:\Program Files\ATI Technologies\ATI HYDRAVISION\HydraDM.exe
O4 - HKLM\..\Run: [TPP Auto Loader] C:\WINDOWS\tppaldr.exe
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [POINTER] point32.exe
O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Program Files\Fichiers communs\Network Associates\TalkBack\TBMon.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [MaxtorOneTouch] C:\PROGRA~1\Maxtor\OneTouch\Utils\OneTouch.exe
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideo[inspector]] C:\Program Files\Logitech\Video\InstallHelper.exe /inspect
O4 - HKLM\..\Run: [LogitechCameraService(E)] C:\WINDOWS\system32\ElkCtrl.exe /automation
O4 - HKLM\..\Run: [LogitechCameraAssistant] C:\Program Files\Logitech\Video\CameraAssistant.exe
O4 - HKLM\..\Run: [IncrediMail] C:\laurent\INCRED~1\bin\IncMail.exe /c
O4 - HKLM\..\Run: [AtiPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Ad-watch 3.0] C:\Program Files\Lavasoft\Ad-aware 6\Ad-watch.exe
O4 - HKLM\..\Run: [Activboard] C:\Apps\ActivBoard\MMKeybd.exe
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe"
O4 - HKLM\..\Run: [eggs bags soap data] C:\Documents and Settings\All Users\Application Data\meow heart eggs bags\ChinWipe.exe
O4 - HKCU\..\Run: [WOOKIT] C:\Program Files\Wanadoo\GestMaj.exe EspaceWanadoo.exe
O4 - HKCU\..\Run: [Update Service] C:\PROGRA~1\FICHIE~1\TEKNUM~1\update.exe /startup
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [bin proc] C:\DOCUME~1\TILLET\APPLIC~1\REGS1L~1\date five frag.exe
O4 - HKCU\..\Run: [RamBoostXp] C:\laurent\RamBoost XP\rambxpfr.exe
O4 - Global Startup: Acrobat Assistant.lnk = C:\APPS\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
O4 - Global Startup: EPSON Status Monitor 3 Environment Check 2.lnk = C:\WINDOWS\system32\spool\drivers\w32x86\3\E_SRCV02.EXE
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\KEM.exe
O8 - Extra context menu item: &Add animation to IncrediMail Style Box - C:\laurent\INCRED~1\bin\resources\WebMenuImg.htm
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?9fe582436823432d858992cd7bfb738d
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?9fe582436823432d858992cd7bfb738d
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.real.com/111a19781c3cfa405506/netzip/RdxIE6.cab
O16 - DPF: {CE69F98F-2AF3-4306-BAC6-A79070EDA1B4} (Zylom Loader Object) - http://eu.download.games.yahoo.com/zylom/activex/zylomloader.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{B4978856-38FF-4823-94FA-C75C7AF16DD5}: NameServer = 193.252.19.3,193.252.13.4
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\System32\drivers\CDAC11BA.EXE
O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe
O23 - Service: GhostStartService - Symantec Corporation - C:\Program Files\Symantec\Norton Ghost 2003\GhostStartService.exe
O23 - Service: Logitech Process Monitor (LVPrcSrv) - Logitech Inc. - c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
O23 - Service: Service Framework McAfee (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\Mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
O23 - Service: MGE Service module - Unknown owner - C:\WINDOWS\system32\MGE\RunSC.exe
O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Apps\ActivBoard\nhksrv.exe
O23 - Service: Onduleur (UPS) - Unknown owner - C:\WINDOWS\System32\ups2.exe (file missing)

Merci par avance
A voir également:

4 réponses

Utilisateur anonyme
23 déc. 2006 à 02:53
Salut

Télécharge, installe puis met à jour ce logiciel(Ewido), une fois que c'est fait, fais un scan complet de ton système, supprime (delete) tout ce qu'il te trouve puis colle le rapport ici stp
Ewido: (en Anglais reste gratuit après la période d'essai)
--->Ewido
Si tu as besoin d'aide avec Ewido(devenu AVG-antispyware) regarde ce tutoriel:
http://www.kachouri.com/tuto/tuto-161-avg-anti-spyware-75-pour-votre-securite.html


A² squared: (gratuit en Français)(fait un scan rusé et colle le rapport ici stp)
--->A-squared
Si tu as besoin d'aide avec A-squared regarde ce tutoriel:
https://www.pcparadise.fr


et


Télécharge lopxp:
http://pageperso.aol.fr/balltrap34/lopxp.zip

dézippe-le sur ton bureau puis double-clic sur le fichier "lopxp.bat"
quand il à terminé, un rapport s'ouvre : fais un copier-coller puis mets le ici

A++

0
Merci pour ton aide

Voici le rapport d'ewido :

---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 11:44:17 23/12/2006

+ Scan result:



HKLM\SOFTWARE\Classes\HBInstIE.HbInstObj -> Adware.HotBar : Cleaned.
HKLM\SOFTWARE\Classes\HBInstIE.HbInstObj.1 -> Adware.HotBar : Cleaned.
HKLM\SOFTWARE\Classes\HBInstIE.HbInstObj\CLSID -> Adware.HotBar : Cleaned.
HKLM\SOFTWARE\Classes\HBInstIE.HbInstObj\CurVer -> Adware.HotBar : Cleaned.
HKLM\SOFTWARE\Hotbar -> Adware.HotBar : Cleaned.
HKLM\SOFTWARE\Hotbar\Hotbar -> Adware.HotBar : Cleaned.
HKLM\SOFTWARE\Hotbar\Hotbar\Install -> Adware.HotBar : Cleaned.
HKLM\SOFTWARE\Hotbar\Hotbar\Install\cmpmap -> Adware.HotBar : Cleaned.
HKLM\SOFTWARE\Hotbar\Hotbar\MachineInfo -> Adware.HotBar : Cleaned.
HKLM\SOFTWARE\Hotbar\Hotbar\PI -> Adware.HotBar : Cleaned.
HKLM\SOFTWARE\Hotbar\Hotbar\PI\3.2 -> Adware.HotBar : Cleaned.
HKU\S-1-5-21-1715567821-2025429265-682003330-1004\Software\Hotbar -> Adware.HotBar : Cleaned.
HKU\S-1-5-21-1715567821-2025429265-682003330-1004\Software\Hotbar\Common -> Adware.HotBar : Cleaned.
HKU\S-1-5-21-1715567821-2025429265-682003330-1004\Software\Hotbar\Common\Time -> Adware.HotBar : Cleaned.
HKU\S-1-5-21-1715567821-2025429265-682003330-1004\Software\Hotbar\hotbar -> Adware.HotBar : Cleaned.
HKU\S-1-5-21-1715567821-2025429265-682003330-1004\Software\Hotbar\hotbar\Install -> Adware.HotBar : Cleaned.
HKU\S-1-5-21-1715567821-2025429265-682003330-1004\Software\Hotbar\hotbar\InstallDate -> Adware.HotBar : Cleaned.
HKU\S-1-5-21-1715567821-2025429265-682003330-1004\Software\Hotbar\hotbar\PI -> Adware.HotBar : Cleaned.
HKU\S-1-5-21-1715567821-2025429265-682003330-1004\Software\Hotbar\hotbar\PI\3.2 -> Adware.HotBar : Cleaned.
HKU\S-1-5-21-1715567821-2025429265-682003330-1004\Software\Hotbar\hotbar\UserInfo -> Adware.HotBar : Cleaned.
HKU\S-1-5-21-1715567821-2025429265-682003330-1004\Software\Hotbar\hotbar\options -> Adware.HotBar : Cleaned.
HKU\S-1-5-21-1715567821-2025429265-682003330-1004\Software\Hotbar\hotbar\updates -> Adware.HotBar : Cleaned.
HKLM\SOFTWARE\PSGuard.com -> Adware.PSGuard : Error during cleaning.
HKLM\SOFTWARE\PSGuard.com\PSGuard -> Adware.PSGuard : Error during cleaning.
HKLM\SOFTWARE\PSGuard.com\PSGuard\P.S.Guard -> Adware.PSGuard : Error during cleaning.
HKLM\SOFTWARE\PSGuard.com\PSGuard\P.S.Guard\License -> Adware.PSGuard : Cleaned.
C:\WINDOWS\system32\1uc7k0he.dll -> Adware.Sahat : Cleaned.
C:\WINDOWS\system32\f68tsml4.exe -> Adware.Sahat : Cleaned.
H:\WINDOWS\system32\1uc7k0he.dll -> Adware.Sahat : Cleaned.
H:\WINDOWS\system32\f68tsml4.exe -> Adware.Sahat : Cleaned.
C:\Program Files\AdStatus Service -> Adware.WinTaskAd : Cleaned.
C:\WINDOWS\system32\EGDHTML_1026.dll -> Dialer.EGroup.1025 : Cleaned.
H:\WINDOWS\system32\EGDHTML_1026.dll -> Dialer.EGroup.1025 : Cleaned.
J:\Jojo1\imagens06.zip/imagens06.exe -> Downloader.Dadobra.mp : Cleaned.
C:\laurent\Logiciels\Convertisseur audio\dBpowerAMP Music Converter - de ape en mp3\PROGRAMA - PowerPack + Cracks\PowerPacks + Cracks + Utilidades\Crack 1 PowerPack de dbpoweramp Music converter v.9\Powerpack_crack.exe -> Not-A-Virus.VirTool.Win32.AvSpoffer.a : Cleaned.
H:\laurent\Logiciels\Convertisseur audio\dBpowerAMP Music Converter - de ape en mp3\PROGRAMA - PowerPack + Cracks\PowerPacks + Cracks + Utilidades\Crack 1 PowerPack de dbpoweramp Music converter v.9\Powerpack_crack.exe -> Not-A-Virus.VirTool.Win32.AvSpoffer.a : Cleaned.
C:\Documents and Settings\TILLET\Cookies\tillet@247realmedia[1].txt -> TrackingCookie.247realmedia : Cleaned.
C:\Documents and Settings\TILLET\Cookies\tillet@adtech[2].txt -> TrackingCookie.Adtech : Cleaned.
C:\Documents and Settings\TILLET\Cookies\tillet@advertising[2].txt -> TrackingCookie.Advertising : Cleaned.
H:\Documents and Settings\TILLET\Cookies\tillet@advertising[1].txt -> TrackingCookie.Advertising : Cleaned.
C:\Documents and Settings\TILLET\Cookies\tillet@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\TILLET\Cookies\tillet@bluestreak[1].txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\TILLET\Cookies\tillet@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
H:\Documents and Settings\TILLET\Cookies\tillet@doubleclick[2].txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\TILLET\Cookies\tillet@estat[1].txt -> TrackingCookie.Estat : Cleaned.
H:\Documents and Settings\TILLET\Cookies\tillet@estat[1].txt -> TrackingCookie.Estat : Cleaned.
C:\Documents and Settings\TILLET\Cookies\tillet@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Cleaned.
C:\Documents and Settings\TILLET\Cookies\tillet@fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\TILLET\Cookies\tillet@www.lop[1].txt -> TrackingCookie.Lop : Cleaned.
C:\Documents and Settings\TILLET\Cookies\tillet@mediaplex[2].txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\TILLET\Cookies\tillet@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Cleaned.
C:\Documents and Settings\TILLET\Cookies\tillet@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Cleaned.
H:\Documents and Settings\TILLET\Cookies\tillet@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Cleaned.
C:\Documents and Settings\TILLET\Cookies\tillet@weborama[2].txt -> TrackingCookie.Weborama : Cleaned.
C:\Documents and Settings\TILLET\Cookies\tillet@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : Cleaned.
C:\Documents and Settings\TILLET\Cookies\tillet@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\55695\Accès[1].exe -> Trojan.Dialer.fu : Cleaned.
C:\55695\actibrow.dl_ -> Trojan.Dialer.fu : Cleaned.
C:\55695\actibrow.dll -> Trojan.Dialer.fu : Cleaned.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objecta\{FFFFFFFF-FFFF-FFFF-FFFF-FFFFFFFFFFFA} -> Trojan.Zapchast : Cleaned.
H:\laurent\Logiciels\Chat AIM\icbmft.ocm -> Worm.AimVen : Cleaned.


::Report end

Voici celui d'A² squared:

Version - a-squared Free 2.1

Réglages Scan:

Objets: Mémoire, Traces, Cookies, C:\WINDOWS\, C:\Program Files
Scan archives: Marche
Heuristiques: Marche
Scan ADS: Marche

Début du scan: 23/12/2006 11:53:16

C:\Program Files\windows adstatus Détecter: Trace.Directory.WindowsAdStatus
C:\WINDOWS\system32\bhoecart.dll Détecter: Trace.File.Suspicious
Key: HKEY_CLASSES_ROOT\clsid\{69fd62b1-0216-4c31-8d55-840ed86b7c8f} Détecter: Trace.Registry.HotBar
Key: HKEY_CLASSES_ROOT\interface\{8f59f897-6923-4b3b-8156-4e55d19de99a} Détecter: Trace.Registry.HotBar
Key: HKEY_CLASSES_ROOT\typelib\{94beb7a2-36b7-46dc-8ad1-81a8332409c0} Détecter: Trace.Registry.HotBar
Key: HKEY_LOCAL_MACHINE\software\classes\clsid\{69fd62b1-0216-4c31-8d55-840ed86b7c8f} Détecter: Trace.Registry.HotBar
Key: HKEY_LOCAL_MACHINE\software\classes\interface\{8f59f897-6923-4b3b-8156-4e55d19de99a} Détecter: Trace.Registry.HotBar
Key: HKEY_LOCAL_MACHINE\software\classes\typelib\{94beb7a2-36b7-46dc-8ad1-81a8332409c0} Détecter: Trace.Registry.HotBar
Key: HKEY_CURRENT_USER\software\kazaa Détecter: Trace.Registry.KaZaA
Value: HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\in --> b0 Détecter: Trace.Registry.KaZaA
Value: HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\in --> b0seconds Détecter: Trace.Registry.KaZaA
Value: HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\in --> b1 Détecter: Trace.Registry.KaZaA
Value: HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\lastestimate --> b Détecter: Trace.Registry.KaZaA
Value: HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\lastestimate --> time Détecter: Trace.Registry.KaZaA
Value: HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\out --> b0 Détecter: Trace.Registry.KaZaA
Value: HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\out --> b0seconds Détecter: Trace.Registry.KaZaA
Value: HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\out --> b1 Détecter: Trace.Registry.KaZaA
Key: HKEY_LOCAL_MACHINE\software\kazaa\connectioninfo Détecter: Trace.Registry.KaZaA
Value: HKEY_LOCAL_MACHINE\software\kazaa\connectioninfo --> kazaanet Détecter: Trace.Registry.KaZaA
Key: HKEY_LOCAL_MACHINE\software\kazaa\localcontent Détecter: Trace.Registry.KaZaA
Value: HKEY_LOCAL_MACHINE\software\kazaa\localcontent --> databasedir Détecter: Trace.Registry.KaZaA
Value: HKEY_LOCAL_MACHINE\software\kazaa\localcontent --> downloaddir Détecter: Trace.Registry.KaZaA
Key: HKEY_LOCAL_MACHINE\software\kazaa Détecter: Trace.Registry.KaZaA
Value: HKEY_LOCAL_MACHINE\software\kazaa --> listenport Détecter: Trace.Registry.KaZaA
Key: HKEY_CURRENT_USER\software\microsoft\systemcertificates\trustedpublisher\certificates\bd8400524261df1adbd8860f22c9ce2b97471448 Détecter: Trace.Registry.P2E
Key: HKEY_CLASSES_ROOT\hp.1 Détecter: Trace.Registry.Puper
Key: HKEY_CLASSES_ROOT\hp Détecter: Trace.Registry.Puper
Key: HKEY_CURRENT_USER\software\local appwizard-generated applications\popup Détecter: Trace.Registry.UnclassifiedDialer
Key: HKEY_LOCAL_MACHINE\software\windows adstatus Détecter: Trace.Registry.WindowsAdStatus
C:\Documents and Settings\TILLET\Cookies\tillet@adserver.easyad[2].txt Détecter: Trace.TrackingCookie
C:\Documents and Settings\TILLET\Cookies\tillet@doubleclick[2].txt Détecter: Trace.TrackingCookie
C:\WINDOWS\system32\Process.exe Détecter: Riskware.RiskTool.Win32.Processor.20

Scanné

Fichiers: 65679
Traces: 90856
Cookies: 66
Processus: 61

Trouver

Fichiers: 1
Traces: 29
Cookies: 2
Processus: 0
Clés de Registre: 0

Fin du Scan: 23/12/2006 12:58:24
Temps du Scan: 01:05:08

Et enfin celui de lopxp :

Rapport fait à 13:31:46,01 le 23/12/2006

Le volume dans le lecteur C s'appelle MAITRE
Le num‚ro de s‚rie du volume est 5808-DDE9

R‚pertoire de C:\Documents and Settings\All Users\Application Data

16/12/2006 15:40 <REP> Messenger Plus!
15/12/2006 19:03 <REP> meow heart eggs bags
08/11/2006 18:41 <REP> Windows Live Toolbar
26/08/2006 21:55 <REP> Windows Genuine Advantage
20/05/2006 10:28 <REP> CanonBJ
22/10/2005 11:07 <REP> BOONTY
02/10/2005 21:12 <REP> Spybot - Search & Destroy
05/06/2005 14:58 <REP> Macrovision
26/12/2004 16:42 <REP> Ahead
14/10/2004 17:09 <REP> Adobe
13/10/2004 21:44 <REP> Medi@ TV
14/03/2004 11:29 <REP> Ulead Systems
05/03/2004 16:42 <REP> Symantec
05/03/2004 13:45 <REP> Retrospect
18/01/2004 22:13 <REP> MSN6
18/01/2004 11:37 <REP> QuickTime
11/12/2003 19:14 <REP> Network Associates
11/12/2003 15:11 <REP> SBSI
11/12/2003 14:57 62 desktop.ini
11/12/2003 14:56 <REP> Microsoft
11/12/2003 14:56 <REP> .
11/12/2003 14:56 <REP> ..
1 fichier(s) 62 octets
21 R‚p(s) 4966723584 octets libres
Le volume dans le lecteur C s'appelle MAITRE
Le num‚ro de s‚rie du volume est 5808-DDE9

R‚pertoire de C:\Documents and Settings\Default User\Application Data

11/12/2003 15:47 <REP> InterTrust
11/12/2003 15:47 <REP> Adobe
11/12/2003 15:47 <REP> Identities
11/12/2003 14:57 62 desktop.ini
11/12/2003 14:56 <REP> Microsoft
11/12/2003 14:56 <REP> ..
11/12/2003 14:56 <REP> .
1 fichier(s) 62 octets
6 R‚p(s) 4966723584 octets libres
Le volume dans le lecteur C s'appelle MAITRE
Le num‚ro de s‚rie du volume est 5808-DDE9

R‚pertoire de C:\Documents and Settings\Propri‚taire\Application Data

11/12/2003 15:28 <REP> Adobe
11/12/2003 15:28 <REP> InterTrust
11/12/2003 15:08 <REP> Identities
11/12/2003 15:08 62 desktop.ini
11/12/2003 15:08 <REP> ..
11/12/2003 15:08 <REP> Microsoft
11/12/2003 15:08 <REP> .
1 fichier(s) 62 octets
6 R‚p(s) 4966723584 octets libres
Le volume dans le lecteur C s'appelle MAITRE
Le num‚ro de s‚rie du volume est 5808-DDE9

R‚pertoire de C:\Documents and Settings\Super Point de Coix

Le volume dans le lecteur C s'appelle MAITRE
Le num‚ro de s‚rie du volume est 5808-DDE9

R‚pertoire de C:\Documents and Settings\TILLET\Application Data

15/12/2006 19:03 <REP> REGS1LOUD
12/12/2006 21:28 <REP> Sun
01/10/2006 16:16 <REP> Ahead
29/09/2006 17:58 <REP> MGI
29/09/2006 12:17 <REP> AdobeUM
24/09/2006 20:09 <REP> Real
24/09/2006 14:28 <REP> Logitech
24/09/2006 14:27 <REP> Help
24/09/2006 14:17 <REP> EPSON
24/09/2006 14:14 <REP> Google
24/09/2006 12:57 <REP> Macromedia
30/07/2005 16:21 <REP> Ulead Systems
11/12/2003 15:47 62 desktop.ini
11/12/2003 15:47 <REP> Adobe
11/12/2003 15:47 <REP> Identities
11/12/2003 15:47 <REP> ..
11/12/2003 15:47 <REP> .
11/12/2003 15:47 <REP> Microsoft
1 fichier(s) 62 octets
17 R‚p(s) 4966723584 octets libres
******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks

Le volume dans le lecteur C s'appelle MAITRE
Le num‚ro de s‚rie du volume est 5808-DDE9

R‚pertoire de C:\WINDOWS\Tasks

15/12/2006 19:04 266 8036F88C99099AE8.job
09/11/2006 03:05 256 V‚rifier les mises … jour de Windows Live Toolbar.job
10/05/2006 22:15 262 Nettoyage de disque.job
11/12/2003 15:04 6 SA.DAT
11/12/2003 15:02 <REP> ..
11/12/2003 15:02 <REP> .
01/01/1980 00:00 65 desktop.ini
5 fichier(s) 855 octets
2 R‚p(s) 4ÿ966ÿ719ÿ488 octets libres

******************************************
Recherche dans Program files

Le dossier C:\Program Files\C2Media n'existe pas

*************** Fin du rapport ****************


@+
0
Bonjour,

Je me permet juste d'intervenir et d'ouvrir une petite parenthèse pour vous demander que Lopxp, batch que j'avais écrit il y a quelques mois, ne soit plus utilisé, ni prescrit sur aucun forum.
Le contenu du script ayant été repris, revu et amélioré depuis par jean-chretien1, c' est dorénavant lopxpMH2 qui remplace l'ancien Lopxp.

Merci donc, de bien vouloir faire utiliser à sa place : lopxpMH2 de jean-chretien1, disponible ici:
http://perso.numericable.fr/~altshift/Info/Fichiers/lopxpMH2.zip
Le principe restant exactement le même:
Extraire lopxpMH2.zip et lancer lopxpMH2.bat pour obtenir le rapport.

a+
0
green day Messages postés 26371 Date d'inscription vendredi 30 septembre 2005 Statut Modérateur, Contributeur sécurité Dernière intervention 27 décembre 2019 2 162 > moe31
23 déc. 2006 à 14:30
Quelle bonne surprise ;-))
0
Help

Quelqu'un peut-il m'aider car mon ordi a de plus en plus de mal à fonctionner et j'ai peur dene plus pouvoir l'utiliser

Merci par avance
0
Utilisateur anonyme
27 déc. 2006 à 13:23
Salut

fait ceci :

Pour afficher tous les dossiers et fichiers cachés

Clique sur "démarrer", "panneau de configuration", "outils" ,"option des dossiers", "affichage"
"
Coche:
¤ afficher les fichiers et dossiers cachés
- Clique sur "appliquer" puis "ok"
_______________________________
Clic sur poste de travail, C:, Documents and Settings, All Users, Application Data et supprime ce dossier :

- meow heart eggs bags


Clic sur poste de travail, C:, Documents and Settings, TILLET, Application Data et supprime ce dossier :

- REGS1LOUD

**Si un fichier persiste lors de la suppression fait ceci:
-Redémarre ton PC. Dès l'allumage de celui-ci tapote la touche F8 (ou F5 si F8 ne fonctionne pas), à l'écran qui va apparaître choisit "mode sans echec" attends un peu.. puis va supprimer les fichiers/dossiers, vide ta corbeille et redémarre ton PC normalement


¤ Clic sur "demarrer", "executer", tape: services.msc ,cherche dans la liste cette ligne, fais un clic droit dessus choisis "propriétés" et régle la sur "désactivé"

- Boonty Games


¤ Désinstalle Kazaa qui ta littéralement pourri ton PC de spyware !
Installe autre chose si l'envie t'en dit mais évite cette saloprie


¤ Clique sur démarrer, panneau de configuration, connexions et réseau internet, options internet, vas dans l'onglet:
- "Sécurité" et clique sur "niveau par défaut"
- même chose avec l'onglet "Confidentialité"
- puis dans l'onglet "Avancé" clique sur "paramétres par défaut"

Appliquer, puis ok.


¤ Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP2 (en haut) va se mettre à clignoter, clique dessus et choisis "accepter l'active X" pour faire fonctionner le scan anti-virus.
Une fois qu'il a terminé colle le rapport ici stp

https://www.bitdefender.com/toolbox/


0
Salut

Merci encore pour ton aide
J'ai fait tout ce que tu m'as dit et voici le rapport de Bitdefender :

BitDefender Online Scanner



Scan report generated at: Wed, Dec 27, 2006 - 20:52:02





Scan path: A:\;C:\;D:\;H:\;J:\;Q:\;







Statistics

Time
05:33:48

Files
959917

Folders
15131

Boot Sectors
5

Archives
43075

Packed Files
106801




Results

Identified Viruses
7

Infected Files
441

Suspect Files
0

Warnings
0

Disinfected
0

Deleted Files
441




Engines Info

Virus Definitions
357124

Engine build
AVCORE v1.0 (build 2371) (i386) (Dec 13 2006 11:16:42)

Scan plugins
14

Archive plugins
38

Unpack plugins
6

E-mail plugins
6

System plugins
1




Scan Settings

First Action
Disinfect

Second Action
Delete

Heuristics
Yes

Enable Warnings
Yes

Scanned Extensions
*;

Exclude Extensions


Scan Emails
Yes

Scan Archives
Yes

Scan Packed
Yes

Scan Files
Yes

Scan Boot
Yes




Scanned File
Status

C:\System Volume Information\_restore{C875DD3C-C971-44BE-BE4A-E6FF2C16EB73}\RP1365\A0216480.exe
Infected with: Trojan.Dialer.FU

C:\System Volume Information\_restore{C875DD3C-C971-44BE-BE4A-E6FF2C16EB73}\RP1365\A0216480.exe
Disinfection failed

C:\System Volume Information\_restore{C875DD3C-C971-44BE-BE4A-E6FF2C16EB73}\RP1365\A0216480.exe
Deleted

C:\System Volume Information\_restore{C875DD3C-C971-44BE-BE4A-E6FF2C16EB73}\RP1365\A0216481.dll
Infected with: Trojan.Dialer.FU

C:\System Volume Information\_restore{C875DD3C-C971-44BE-BE4A-E6FF2C16EB73}\RP1365\A0216481.dll
Disinfection failed

C:\System Volume Information\_restore{C875DD3C-C971-44BE-BE4A-E6FF2C16EB73}\RP1365\A0216481.dll
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 0)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Tue, 27 Sep 2005 22:06:01 +0200]=>(MIME part)=>(MIME part)=>(message body)
Infected with: Exploit.Iframe.Vulnerability.B

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 0)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Tue, 27 Sep 2005 22:06:01 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 0)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Tue, 27 Sep 2005 22:06:01 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 0)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Tue, 27 Sep 2005 22:06:01 +0200]=>(MIME part)=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 0)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Tue, 27 Sep 2005 22:06:01 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 0)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 0)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Tue, 27 Sep 2005 22:06:01 +0200]=>(MIME part)=>message.scr
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 0)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Tue, 27 Sep 2005 22:06:01 +0200]=>(MIME part)=>message.scr
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 0)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Tue, 27 Sep 2005 22:06:01 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 0)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 2)=>[Subject: Private document][Date: Sun, 9 Oct 2005 12:06:58 +0200]=>(MIME part)=>document342.zip=>document.txt .exe
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 2)=>[Subject: Private document][Date: Sun, 9 Oct 2005 12:06:58 +0200]=>(MIME part)=>document342.zip=>document.txt .exe
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 2)=>[Subject: Private document][Date: Sun, 9 Oct 2005 12:06:58 +0200]=>(MIME part)=>document342.zip
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 2)=>[Subject: Private document][Date: Sun, 9 Oct 2005 12:06:58 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 2)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 3)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 9 Oct 2005 12:06:22 +0200]=>(MIME part)=>(MIME part)=>(message body)
Infected with: Exploit.Iframe.Vulnerability.B

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 3)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 9 Oct 2005 12:06:22 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 3)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 9 Oct 2005 12:06:22 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 3)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 9 Oct 2005 12:06:22 +0200]=>(MIME part)=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 3)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 9 Oct 2005 12:06:22 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 3)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 3)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 9 Oct 2005 12:06:22 +0200]=>(MIME part)=>message.scr
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 3)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 9 Oct 2005 12:06:22 +0200]=>(MIME part)=>message.scr
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 3)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 9 Oct 2005 12:06:22 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 3)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 6)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sat, 8 Oct 2005 15:22:50 +0200]=>(MIME part)=>(MIME part)=>(message body)
Infected with: Exploit.Iframe.Vulnerability.B

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 6)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sat, 8 Oct 2005 15:22:50 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 6)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sat, 8 Oct 2005 15:22:50 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 6)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sat, 8 Oct 2005 15:22:50 +0200]=>(MIME part)=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 6)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sat, 8 Oct 2005 15:22:50 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 6)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 6)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sat, 8 Oct 2005 15:22:50 +0200]=>(MIME part)=>message.scr
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 6)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sat, 8 Oct 2005 15:22:50 +0200]=>(MIME part)=>message.scr
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 6)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sat, 8 Oct 2005 15:22:50 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 6)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 7)=>[Subject: I cannot forget you!][Date: Sat, 8 Oct 2005 15:22:30 +0200]=>(MIME part)=>photo.zip=>data.rtf .scr
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 7)=>[Subject: I cannot forget you!][Date: Sat, 8 Oct 2005 15:22:30 +0200]=>(MIME part)=>photo.zip=>data.rtf .scr
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 7)=>[Subject: I cannot forget you!][Date: Sat, 8 Oct 2005 15:22:30 +0200]=>(MIME part)=>photo.zip
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 7)=>[Subject: I cannot forget you!][Date: Sat, 8 Oct 2005 15:22:30 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 7)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 8)=>[Subject: Postcard][Date: Sat, 8 Oct 2005 12:46:13 +0200]=>(MIME part)=>postcard_jordane.t.zip=>data.rtf .scr
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 8)=>[Subject: Postcard][Date: Sat, 8 Oct 2005 12:46:13 +0200]=>(MIME part)=>postcard_jordane.t.zip=>data.rtf .scr
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 8)=>[Subject: Postcard][Date: Sat, 8 Oct 2005 12:46:13 +0200]=>(MIME part)=>postcard_jordane.t.zip
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 8)=>[Subject: Postcard][Date: Sat, 8 Oct 2005 12:46:13 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 8)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 12)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Fri, 7 Oct 2005 18:02:17 +0200]=>(MIME part)=>(MIME part)=>(message body)
Infected with: Exploit.Iframe.Vulnerability.B

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 12)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Fri, 7 Oct 2005 18:02:17 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 12)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Fri, 7 Oct 2005 18:02:17 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 12)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Fri, 7 Oct 2005 18:02:17 +0200]=>(MIME part)=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 12)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Fri, 7 Oct 2005 18:02:17 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 12)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 12)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Fri, 7 Oct 2005 18:02:17 +0200]=>(MIME part)=>message.scr
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 12)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Fri, 7 Oct 2005 18:02:17 +0200]=>(MIME part)=>message.scr
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 12)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Fri, 7 Oct 2005 18:02:17 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 12)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 15)=>[Subject: 0i09u5rug08r89589gjrg][Date: Thu, 6 Oct 2005 18:47:35 +0200]=>(MIME part)=>id09509_jordane.t.zip=>document.txt .exe
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 15)=>[Subject: 0i09u5rug08r89589gjrg][Date: Thu, 6 Oct 2005 18:47:35 +0200]=>(MIME part)=>id09509_jordane.t.zip=>document.txt .exe
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 15)=>[Subject: 0i09u5rug08r89589gjrg][Date: Thu, 6 Oct 2005 18:47:35 +0200]=>(MIME part)=>id09509_jordane.t.zip
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 15)=>[Subject: 0i09u5rug08r89589gjrg][Date: Thu, 6 Oct 2005 18:47:35 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 15)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 18)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 19:32:30 +0200]=>(MIME part)=>(MIME part)=>(message body)
Infected with: Exploit.Iframe.Vulnerability.B

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 18)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 19:32:30 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 18)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 19:32:30 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 18)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 19:32:30 +0200]=>(MIME part)=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 18)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 19:32:30 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 18)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 18)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 19:32:30 +0200]=>(MIME part)=>message.scr
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 18)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 19:32:30 +0200]=>(MIME part)=>message.scr
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 18)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 19:32:30 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 18)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 19)=>[Subject: Re: Secure SMTP Message][Date: Wed, 5 Oct 2005 19:32:12 +0200]=>(MIME part)=>details.txt
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 19)=>[Subject: Re: Secure SMTP Message][Date: Wed, 5 Oct 2005 19:32:12 +0200]=>(MIME part)=>details.txt
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 19)=>[Subject: Re: Secure SMTP Message][Date: Wed, 5 Oct 2005 19:32:12 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 19)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 20)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 16:57:27 +0200]=>(MIME part)=>(MIME part)=>(message body)
Infected with: Exploit.Iframe.Vulnerability.B

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 20)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 16:57:27 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 20)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 16:57:27 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 20)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 16:57:27 +0200]=>(MIME part)=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 20)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 16:57:27 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 20)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 20)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 16:57:27 +0200]=>(MIME part)=>message.scr
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 20)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 16:57:27 +0200]=>(MIME part)=>message.scr
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 20)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 16:57:27 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 20)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 21)=>[Subject: ][Date: Wed, 5 Oct 2005 16:57:18 +0200]=>(MIME part)=>important.doc
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 21)=>[Subject: ][Date: Wed, 5 Oct 2005 16:57:18 +0200]=>(MIME part)=>important.doc
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 21)=>[Subject: ][Date: Wed, 5 Oct 2005 16:57:18 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 21)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 22)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 13:00:12 +0200]=>(MIME part)=>(MIME part)=>(message body)
Infected with: Exploit.Iframe.Vulnerability.B

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 22)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 13:00:12 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 22)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 13:00:12 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 22)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 13:00:12 +0200]=>(MIME part)=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 22)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 13:00:12 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 22)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 22)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 13:00:12 +0200]=>(MIME part)=>message.scr
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 22)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 13:00:12 +0200]=>(MIME part)=>message.scr
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 22)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Wed, 5 Oct 2005 13:00:12 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 22)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 23)=>[Subject: Re: improved][Date: Wed, 5 Oct 2005 11:47:22 +0200]=>(MIME part)=>letter_jordane.t.txt.pif
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 23)=>[Subject: Re: improved][Date: Wed, 5 Oct 2005 11:47:22 +0200]=>(MIME part)=>letter_jordane.t.txt.pif
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 23)=>[Subject: Re: improved][Date: Wed, 5 Oct 2005 11:47:22 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 23)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 25)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Tue, 4 Oct 2005 18:07:49 +0200]=>(MIME part)=>(MIME part)=>(message body)
Infected with: Exploit.Iframe.Vulnerability.B

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 25)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Tue, 4 Oct 2005 18:07:49 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 25)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Tue, 4 Oct 2005 18:07:49 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 25)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Tue, 4 Oct 2005 18:07:49 +0200]=>(MIME part)=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 25)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Tue, 4 Oct 2005 18:07:49 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 25)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 25)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Tue, 4 Oct 2005 18:07:49 +0200]=>(MIME part)=>message.scr
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 25)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Tue, 4 Oct 2005 18:07:49 +0200]=>(MIME part)=>message.scr
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 25)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Tue, 4 Oct 2005 18:07:49 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 25)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 27)=>[Subject: here][Date: Tue, 4 Oct 2005 17:01:30 +0200]=>(MIME part)=>word document_jordane.t.zip=>details.txt .pif
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 27)=>[Subject: here][Date: Tue, 4 Oct 2005 17:01:30 +0200]=>(MIME part)=>word document_jordane.t.zip=>details.txt .pif
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 27)=>[Subject: here][Date: Tue, 4 Oct 2005 17:01:30 +0200]=>(MIME part)=>word document_jordane.t.zip
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 27)=>[Subject: here][Date: Tue, 4 Oct 2005 17:01:30 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 27)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 31)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Mon, 3 Oct 2005 14:31:06 +0200]=>(MIME part)=>(MIME part)=>(message body)
Infected with: Exploit.Iframe.Vulnerability.B

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 31)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Mon, 3 Oct 2005 14:31:06 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 31)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Mon, 3 Oct 2005 14:31:06 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 31)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Mon, 3 Oct 2005 14:31:06 +0200]=>(MIME part)=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 31)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Mon, 3 Oct 2005 14:31:06 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 31)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 31)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Mon, 3 Oct 2005 14:31:06 +0200]=>(MIME part)=>message.scr
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 31)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Mon, 3 Oct 2005 14:31:06 +0200]=>(MIME part)=>message.scr
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 31)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Mon, 3 Oct 2005 14:31:06 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 31)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 32)=>[Subject: Re: Extended Mail][Date: Mon, 3 Oct 2005 13:21:32 +0200]=>(MIME part)=>readme.pif
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 32)=>[Subject: Re: Extended Mail][Date: Mon, 3 Oct 2005 13:21:32 +0200]=>(MIME part)=>readme.pif
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 32)=>[Subject: Re: Extended Mail][Date: Mon, 3 Oct 2005 13:21:32 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 32)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 33)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 2 Oct 2005 19:20:42 +0200]=>(MIME part)=>(MIME part)=>(message body)
Infected with: Exploit.Iframe.Vulnerability.B

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 33)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 2 Oct 2005 19:20:42 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 33)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 2 Oct 2005 19:20:42 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 33)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 2 Oct 2005 19:20:42 +0200]=>(MIME part)=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 33)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 2 Oct 2005 19:20:42 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 33)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 33)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 2 Oct 2005 19:20:42 +0200]=>(MIME part)=>message.scr
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 33)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 2 Oct 2005 19:20:42 +0200]=>(MIME part)=>message.scr
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 33)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 2 Oct 2005 19:20:42 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 33)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 34)=>[Subject: Re: Mail Server][Date: Sun, 2 Oct 2005 18:06:58 +0200]=>(MIME part)=>document_jordane.t.zip=>document.txt .exe
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 34)=>[Subject: Re: Mail Server][Date: Sun, 2 Oct 2005 18:06:58 +0200]=>(MIME part)=>document_jordane.t.zip=>document.txt .exe
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 34)=>[Subject: Re: Mail Server][Date: Sun, 2 Oct 2005 18:06:58 +0200]=>(MIME part)=>document_jordane.t.zip
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 34)=>[Subject: Re: Mail Server][Date: Sun, 2 Oct 2005 18:06:58 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 34)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 38)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Fri, 30 Sep 2005 20:00:02 +0200]=>(MIME part)=>(MIME part)=>(message body)
Infected with: Exploit.Iframe.Vulnerability.B

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 38)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Fri, 30 Sep 2005 20:00:02 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 38)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Fri, 30 Sep 2005 20:00:02 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 38)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Fri, 30 Sep 2005 20:00:02 +0200]=>(MIME part)=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 38)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Fri, 30 Sep 2005 20:00:02 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 38)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 38)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Fri, 30 Sep 2005 20:00:02 +0200]=>(MIME part)=>message.scr
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 38)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Fri, 30 Sep 2005 20:00:02 +0200]=>(MIME part)=>message.scr
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 38)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Fri, 30 Sep 2005 20:00:02 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 38)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 45)=>[Subject: Error][Date: Wed, 28 Sep 2005 13:40:19 +0200]=>(MIME part)=>data_jordane.t.txt
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 45)=>[Subject: Error][Date: Wed, 28 Sep 2005 13:40:19 +0200]=>(MIME part)=>data_jordane.t.txt
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 45)=>[Subject: Error][Date: Wed, 28 Sep 2005 13:40:19 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 45)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 48)=>[Subject: Re: hello][Date: Wed, 21 Sep 2005 10:53:31 +0200]=>(MIME part)=>website.doc
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 48)=>[Subject: Re: hello][Date: Wed, 21 Sep 2005 10:53:31 +0200]=>(MIME part)=>website.doc
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 48)=>[Subject: Re: hello][Date: Wed, 21 Sep 2005 10:53:31 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 48)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 49)=>[Subject: Congratulations!][Date: Tue, 27 Sep 2005 20:40:32 +0200]=>(MIME part)=>bill.doc.pif
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 49)=>[Subject: Congratulations!][Date: Tue, 27 Sep 2005 20:40:32 +0200]=>(MIME part)=>bill.doc.pif
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 49)=>[Subject: Congratulations!][Date: Tue, 27 Sep 2005 20:40:32 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 49)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 56)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 25 Sep 2005 14:53:04 +0200]=>(MIME part)=>(MIME part)=>(message body)
Infected with: Exploit.Iframe.Vulnerability.B

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 56)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 25 Sep 2005 14:53:04 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 56)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 25 Sep 2005 14:53:04 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 56)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 25 Sep 2005 14:53:04 +0200]=>(MIME part)=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 56)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 25 Sep 2005 14:53:04 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 56)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 56)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 25 Sep 2005 14:53:04 +0200]=>(MIME part)=>message.scr
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 56)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 25 Sep 2005 14:53:04 +0200]=>(MIME part)=>message.scr
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 56)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sun, 25 Sep 2005 14:53:04 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 56)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 57)=>[Subject: Re: Error in document][Date: Sun, 25 Sep 2005 13:47:53 +0200]=>(MIME part)=>document.zip=>data.rtf .scr
Infected with: Win32.Netsky.P@mm

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 57)=>[Subject: Re: Error in document][Date: Sun, 25 Sep 2005 13:47:53 +0200]=>(MIME part)=>document.zip=>data.rtf .scr
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 57)=>[Subject: Re: Error in document][Date: Sun, 25 Sep 2005 13:47:53 +0200]=>(MIME part)=>document.zip
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 57)=>[Subject: Re: Error in document][Date: Sun, 25 Sep 2005 13:47:53 +0200]=>(MIME part)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 57)
Updated

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx
Update failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 60)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sat, 24 Sep 2005 13:49:38 +0200]=>(MIME part)=>(MIME part)=>(message body)
Infected with: Exploit.Iframe.Vulnerability.B

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 60)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sat, 24 Sep 2005 13:49:38 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 60)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sat, 24 Sep 2005 13:49:38 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted

H:\Documents and Settings\TILLET\Local Settings\Application Data\Identities\{B38DEAEC-D2AB-4A27-AB0A-40765BEABE9C}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 60)=>[Subject: Mail Delivery (failure jordane.t@free.][Date: Sat, 24 Sep 2005 13:49:38 +0200]=>(MIME part)=>(MIME part)
Updated

H:\Documents
0