Computing.Net > Forums > Security and Virus > have a wretched virus

Computer Problems? Computing.Net has over 1,000,000 posts about all things technology related! Over 90% answered within 24 hours! Click here to start participating now! Also, be sure to check out the New User Guide.

have a wretched virus

Reply to Message Icon

Name: ushocker
Date: December 14, 2005 at 14:26:32 Pacific
OS: windows xp
CPU/Ram: pentium / lots of ram
Comment:

My computer stuts down every time I use spybot or spysweeper. It also shuts down randomly, with no warning. I ran cwshredder and it picked up one but it did nothing to help me out. I suspect I have some form of cws but it is deep in my computer.
Spybot shuts down when it gets to coolwwsearch feat 2dll....
What can I do? Every type of spyware scan shuts me down. Now It constantly tries to take me to view.atdml saying something about c\windows\system32\shdoclc.dll....CAn anyone please help me? Thank you



Sponsored Link
Ads by Google

Response Number 1
Name: vipergg
Date: December 14, 2005 at 18:31:21 Pacific
Reply:

Go to trendmicro.com and run both their free online AV scan and their free spam scan . It works well and may help out your problem . If you use restore turn it off before scanning.


0

Response Number 2
Name: jabuck
Date: December 14, 2005 at 19:13:41 Pacific
Reply:

If you want to post a Hijack This log, it will help locate the problem files. You can download Hijack This at this link http://www.tomcoyote.org/hjt/ then place it into a folder of it's on, such as C:\HJT, so that back up copies can be made and not clutter your desktop or other folders and the backup copies of deleted items can be easily located if needed.

Once saved double click HijackThis.exe, and press "Scan". When the scan is finished, the "Scan" button will change into a "Save Log" button.
Press that, save the log, Ctrl-A to Select All, and copy its contents into the text editor at this forum.

Do not fix anything yet unless you know what you are doing. This is a powerful tool that can crash the computer if used improperly.


0

Response Number 3
Name: ushocker
Date: December 16, 2005 at 23:58:11 Pacific
Reply:

thank you for your help- here this is


Logfile of HijackThis v1.99.1
Scan saved at 11:40:04 PM, on 12/16/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe
C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.exe
C:\PROGRA~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\System32\wltrysvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\Explorer.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe
C:\Program Files\Winamp3\winampa.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\WINDOWS\system32\PV92Tray.exe
C:\Program Files\MSN Messenger\MsnMsgr.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\Owner\Desktop\hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.fujitsupc.com/
N3 - Netscape 7: user_pref("browser.startup.homepage", "http://www.yahoo.com/"); (C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\zz7sxid0.slt\prefs.js)
N3 - Netscape 7: user_pref("browser.search.defaultengine", "engine://C%3A%5CProgram%20Files%5CNetscape%5CNetscape%5Csearchplugins%5CSBWeb_01.src"); (C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\zz7sxid0.slt\prefs.js)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [IndicatorUtility] C:\Program Files\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp3\winampa.exe"
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [iTunesHelper] "G:\Programs\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [PCTVOICE] pctspk.exe
O4 - HKLM\..\Run: [PV92TRAY] PV92Tray.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.exe" /background
O4 - HKCU\..\Run: [Norton SystemWorks] "C:\Program Files\Norton SystemWorks\cfgwiz.exe" /GUID {05858CFD-5CC4-4ceb-AAAF-CF00BF39736A} /MODE CfgWiz
O4 - Startup: PowerReg Scheduler.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: America Online 8.0 Tray Icon.lnk = C:\Program Files\America Online 8.0\aoltray.exe
O4 - Global Startup: Billminder.lnk = C:\Program Files\Quicken\billmind.exe
O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
O4 - Global Startup: hpoddt01.exe.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.exe
O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
O4 - Global Startup: Quicken Scheduled Updates.lnk = C:\Program Files\Quicken\bagent.exe
O4 - Global Startup: Quicken Startup.lnk = C:\Program Files\Quicken\QWDLLS.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: TREND MICRO HouseCall - {2B5EA4F8-620A-4A8B-B003-4C8C5EBEA826} - http://uk.trendmicro-europe.com/enterprise/products/housecall_pre.php (file missing)
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.fujitsupc.com/
O16 - DPF: {56393399-041A-4650-94C7-13DFCB1F4665} (PSFormX Control) - http://www3.ca.com/securityadvisor/pestscan/pestscan.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1092979596303
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1125125045057
O16 - DPF: {6E5A37BF-FD42-463A-877C-4EB7002E68AE} (Housecall ActiveX 6.5) - http://us-housecall.trendmicro-europe.com/housecall/applet/html/native/x86/win32/activex/hcImpl.cab
O16 - DPF: {7ED7005B-4AF6-4CFF-9AE0-F243C4B8260F} (HouseCallButton.setup) - http://de.trendmicro-europe.com/file_downloads/common/housecall/HouseCallButton.CAB
O16 - DPF: {7F8C8173-AD80-4807-AA75-5672F22B4582} (ICSScanner Class) - http://download.zonelabs.com/bin/promotions/spywaredetector/ICSScanner.cab
O16 - DPF: {C3CBFE35-9BE8-11D1-B31B-006008948294} (OrgPublisher PluginX) - http://www.timevision.com/codebase60/OrgPubX.cab
O16 - DPF: {C81B5180-AFD1-41A3-97E1-99E8D254DB98} - http://threats.freedom.net/viruscenter/onlineviruscheck/cabs/cssweb.cab
O16 - DPF: {E855A2D4-987E-4F3B-A51C-64D10A7E2479} (EPSImageControl Class) - http://tools.ebayimg.com/eps/activex/EPSControl_v1-0-3-0.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: Bonjour Service - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
O23 - Service: WLTRYSVC - Unknown owner - C:\WINDOWS\System32\wltrysvc.exe



0

Response Number 4
Name: jabuck
Date: December 17, 2005 at 08:45:30 Pacific
Reply:

I see no evidence of cws in the HT log. Download this coolwebsearch removal tool http://www.bleepingcomputer.com/files/aboutbuster.php the instructions are at the link.

Then download Ewido Security Suite then set it up this way Ewido Setup Instructions reboot into Safe Mode and run Ewido

When the scan has completed, Ewido will create a report.txt file. Click the "Save Report" button on the bottom of the screen and save the log to your desktop in case you need it later.

Please reboot into normal mode and post the ewido log and the aboutbuster log.


0

Response Number 5
Name: ushocker
Date: December 17, 2005 at 15:43:16 Pacific
Reply:

I also have this if this is any help- I will do the above tonight...


HKLM\SOFTWARE\Microsoft\Cryptography\RNG\Seed 12/17/2005 3:06 PM 80 bytes Data mismatch between Windows API and raw hive data.
HKLM\SOFTWARE\Microsoft\SchedulingAgent\LastTaskRun 12/17/2005 12:00 AM 16 bytes Data mismatch between Windows API and raw hive data.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Reinstall\20 9/22/2003 4:22 PM 0 bytes Key name contains embedded nulls (*)
C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\Downloads\avenge$201.5$20microdefs25$20nav2005_microdefsb.dec_symalllanguages_livetri.zip 12/17/2005 3:08 PM 2.59 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Cookies\owner@admarketplace[1].txt 12/17/2005 3:17 PM 835 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Cookies\owner@admarketplace[2].txt 12/17/2005 3:13 PM 785 bytes Visible in Windows API, directory index, but not in MFT.
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjkocncjeep.stats.esomniture[2].txt 12/17/2005 3:13 PM 333 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Cookies\owner@ebay[1].txt 12/17/2005 3:17 PM 1.19 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Cookies\owner@ebay[2].txt 12/17/2005 3:13 PM 1.19 KB Visible in Windows API, directory index, but not in MFT.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\8XMHCJ2X\u_21563[1].xml 12/17/2005 12:59 AM 255 bytes Visible in Windows API, but not in MFT or directory index.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\8XMHCJ2X\u_71827[1].xml 12/17/2005 12:54 AM 241 bytes Visible in Windows API, but not in MFT or directory index.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\A5IV2RSN\ebay[1].htm 12/17/2005 12:54 AM 832 bytes Visible in Windows API, but not in MFT or directory index.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\0b_12[1].jpg 12/17/2005 3:13 PM 34.80 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\22_3[1].jpg 12/17/2005 3:15 PM 58.61 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\234x60_2[1].gif 12/17/2005 3:10 PM 2.57 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\32_2[1].jpg 12/17/2005 3:13 PM 9.87 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75706091058080_0[1].jpg 12/17/2005 3:10 PM 2.02 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75711609688080_0[1].jpg 12/17/2005 3:13 PM 1.73 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75713105248080_0[1].jpg 12/17/2005 3:14 PM 2.20 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75713788708080_0[1].jpg 12/17/2005 3:13 PM 2.31 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75717408066464_0[1].jpg 12/17/2005 3:10 PM 1.91 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75718687268080_0[1].jpg 12/17/2005 3:12 PM 1.64 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75719295968080_0[1].jpg 12/17/2005 3:13 PM 2.39 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75720305648080_2[1].jpg 12/17/2005 3:13 PM 3.01 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75720806658080_0[1].jpg 12/17/2005 3:10 PM 2.02 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75721488478080_0[1].jpg 12/17/2005 3:10 PM 1.66 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75721617478080_1[1].jpg 12/17/2005 3:12 PM 2.21 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75723711728080_0[1].jpg 12/17/2005 3:12 PM 2.16 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75723969618080_0[1].jpg 12/17/2005 3:10 PM 1.78 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75724040758080_0[1].jpg 12/17/2005 3:14 PM 2.00 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75727264878080_0[1].jpg 12/17/2005 3:14 PM 2.06 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75729344408080_0[1].jpg 12/17/2005 3:14 PM 2.13 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75730517748080_0[1].jpg 12/17/2005 3:13 PM 1.66 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75730907768080_0[1].jpg 12/17/2005 3:10 PM 2.42 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75732965618080_1[1].jpg 12/17/2005 3:12 PM 4.33 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75733362018080_0[1].jpg 12/17/2005 3:12 PM 2.75 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\7573411550[1].jpg 12/17/2005 3:12 PM 3.63 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75734638818080_0[1].jpg 12/17/2005 3:10 PM 2.46 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75734763428080_0[1].jpg 12/17/2005 3:14 PM 2.23 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75735454758080_0[1].jpg 12/17/2005 3:13 PM 2.04 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75736227598080_0[1].jpg 12/17/2005 3:10 PM 2.05 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\75736629768080_0[1].jpg 12/17/2005 3:10 PM 2.75 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\99_0[1].jpg 12/17/2005 3:18 PM 2.19 KB Visible in directory index, but not Windows API or MFT.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\_p__64x15[1].gif 12/17/2005 3:10 PM 199 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\authenticated[1].gif 12/17/2005 3:14 PM 567 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\CA45E3AJ.png 12/17/2005 3:14 PM 460 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\CA5SIDD7.swf 12/17/2005 3:10 PM 1.38 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\CA812LPE.png 12/17/2005 3:10 PM 466 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\CAVE1OPV.swf 12/17/2005 3:10 PM 1.38 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\CE-Merch-AppleiPodmini-MusicAtYourFingertips-275x73[1].gif 12/17/2005 3:10 PM 3.52 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\CommonSBRFND2_e4373us[2].js 12/17/2005 3:13 PM 358 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\d6_0[1].jpg 12/17/2005 3:13 PM 2.14 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\e2_0[1].jpg 12/17/2005 3:15 PM 2.17 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\ebay[1].htm 12/17/2005 3:10 PM 57.19 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\ebay[3].htm 12/17/2005 3:10 PM 832 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\eBayISAPI[3].htm 12/17/2005 3:10 PM 7.69 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\fd_12[1].jpg 12/17/2005 3:16 PM 17.75 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\fe_12[1].jpg 12/17/2005 3:13 PM 36.68 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\honesty-counter[1].gif 12/17/2005 3:17 PM 477 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\iconWatchB_16x16[1].gif 12/17/2005 3:10 PM 146 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\keywords;kw=leica+mp;tcat=625;items=38;sz=440x198;tile=5;ord=1134861208579;[1].htm 12/17/2005 3:13 PM 4.26 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\Leica-IIIc-Rangefinder-Camera-Body_W0QQitemZ7571911405QQcategoryZ30030QQrdZ1QQcmdZViewItem[1].htm 12/17/2005 3:15 PM 61.04 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\Leica-M2-ELC-Canada-R9-item-1580-made_W0QQitemZ7571837924QQcategoryZ30030QQrdZ1QQcmdZViewItem[1].htm 12/17/2005 3:10 PM 56.28 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\LotImg100947[1].jpg 12/17/2005 3:12 PM 16.36 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\LotImg100951[1].jpg 12/17/2005 3:12 PM 16.65 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\LotImg100954[1].jpg 12/17/2005 3:12 PM 15.39 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\paypallogo[1].jpg 12/17/2005 3:17 PM 16.31 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\PC060050[1].jpg 12/17/2005 3:17 PM 50.95 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\PC060051[1].jpg 12/17/2005 3:17 PM 60.54 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\PC110026[1].jpg 12/17/2005 3:10 PM 50.53 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\PC110027[1].jpg 12/17/2005 3:11 PM 51.85 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\PC110029[1].jpg 12/17/2005 3:11 PM 44.64 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\PC110073[1].jpg 12/17/2005 3:14 PM 57.53 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\PC110076[1].jpg 12/17/2005 3:14 PM 56.25 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\PH-Merch-DVDcamcorders-Sony-100x100[1].gif 12/17/2005 3:10 PM 3.29 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\PM-Community-AboutMePage-LearnAboutYourSeller-275x73[1].gif 12/17/2005 3:10 PM 2.91 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\stars_blue_80s_468x60[2].gif 12/17/2005 3:13 PM 12.72 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\TI-Merch-RoseBowlTickets-Texas_USC-275x73[1].gif 12/17/2005 3:10 PM 6.15 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GDU7GTIZ\TrustAppService[1].xml 12/17/2005 1:39 AM 3.31 KB Visible in Windows API, but not in MFT or directory index.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OPKLGBOJ\ebay[1].htm 12/17/2005 12:51 AM 57.20 KB Visible in Windows API, but not in MFT or directory index.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\0b_0[1].jpg 12/17/2005 3:13 PM 2.13 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\22_12[1].jpg 12/17/2005 3:15 PM 25.40 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\32_0[1].jpg 12/17/2005 3:13 PM 3.07 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\32_0[2].jpg 12/17/2005 3:13 PM 2.90 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\32_12[1].jpg 12/17/2005 3:13 PM 38.63 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\55_0[1].jpg 12/17/2005 3:18 PM 1.95 KB Visible in directory index, but not Windows API or MFT.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\712329637[1].gif 12/17/2005 3:10 PM 733 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75703252858080_0[1].jpg 12/17/2005 3:10 PM 2.48 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75706011788080_0[1].jpg 12/17/2005 3:14 PM 1.86 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75706298538080_0[1].jpg 12/17/2005 3:10 PM 2.23 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75709759488080_0[1].jpg 12/17/2005 3:10 PM 1.69 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75710900558080_0[1].jpg 12/17/2005 3:10 PM 2.03 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75718379248080_0[1].jpg 12/17/2005 3:10 PM 2.20 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75720217828080_1[1].jpg 12/17/2005 3:13 PM 3.17 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75721483368080_0[1].jpg 12/17/2005 3:10 PM 2.18 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75722321248080_0[1].jpg 12/17/2005 3:14 PM 2.02 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75723143638080_0[1].jpg 12/17/2005 3:10 PM 2.01 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75723963328080_0[1].jpg 12/17/2005 3:10 PM 2.32 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75727338108080_0[1].jpg 12/17/2005 3:12 PM 1.62 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75729895808080_0[1].jpg 12/17/2005 3:13 PM 1.86 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75730517728080_0[1].jpg 12/17/2005 3:13 PM 1.66 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75731467638080_0[1].jpg 12/17/2005 3:12 PM 1.57 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75732490738080_0[1].jpg 12/17/2005 3:13 PM 2.31 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75733987508080_0[1].jpg 12/17/2005 3:13 PM 1.98 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75734753548080_0[1].jpg 12/17/2005 3:14 PM 2.12 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75735119248080_0[1].jpg 12/17/2005 3:14 PM 1.97 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75735258808080_0[1].jpg 12/17/2005 3:12 PM 1.87 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\75736356548080_0[1].jpg 12/17/2005 3:10 PM 2.55 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\8738031802[1].jpg 12/17/2005 3:12 PM 3.78 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\be_0[1].jpg 12/17/2005 3:15 PM 1.78 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\CAX4AHPR.swf 12/17/2005 3:13 PM 1.11 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\cclogos[1].gif 12/17/2005 3:17 PM 1.72 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\CE-Merch-SatelliteRadios-Photo-100x100[1].gif 12/17/2005 3:10 PM 1.86 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\ebayISAPI[2].htm 12/17/2005 3:10 PM 9.05 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\eBayISAPI[3].htm 12/17/2005 3:10 PM 121.80 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\ed_0[1].jpg 12/17/2005 3:15 PM 1.63 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\ed_12[1].jpg 12/17/2005 3:16 PM 19.79 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\honesty-counter[2].gif 12/17/2005 3:13 PM 244 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\imgSellHub_10x12[1].gif 12/17/2005 3:10 PM 67 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\keywords;kw=leica+iiic;dcopt=ist;list=all;sz=170x200;tile=4;ord=1134861259713;[1].htm 12/17/2005 3:14 PM 4.35 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\keywords;kw=leica+m2;dcopt=ist;list=all;sz=170x200;tile=4;ord=1134861129846;[1].htm 12/17/2005 3:12 PM 4.35 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\keywords;kw=leica+m2;tn=3;to=h;tsw=10;list=all;szs=468x60,120x60,120x60;ord=1134861037673;[1].htm 12/17/2005 3:10 PM 9.39 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\keywords;kw=leica+m2;tn=3;to=h;tsw=10;list=all;szs=468x60,120x60,120x60;ord=1134861129846;[1].htm 12/17/2005 3:12 PM 9.39 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\keywords;kw=leica+mp;tn=3;to=h;tsw=10;list=all;szs=468x60,120x60,120x60;ord=1134861208579;[1].htm 12/17/2005 3:13 PM 9.58 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\Leica-IIIc-incl-summitar-2-50mm-under-600000_W0QQitemZ7571824664QQcategoryZ30030QQrdZ1QQcmdZViewItem[1].htm 12/17/2005 3:14 PM 55.79 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\Leica-IIIc-screw-mount-35mm-camera-body-208170_W0QQitemZ7570945206QQcategoryZ30030QQrdZ1QQcmdZViewItem[1] 12/17/2005 3:17 PM 10.50 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\Leica-IIIc-screw-mount-35mm-camera-body-208170_W0QQitemZ7570945206QQcategoryZ30030QQrdZ1QQcmdZViewItem[1].htm 12/17/2005 3:17 PM 52.10 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\LEICA-M2-SINGLE-STROKE-CAMERA-BODY_W0QQitemZ7573411427QQcategoryZ30099QQrdZ1QQcmdZViewItem[1].htm 12/17/2005 3:12 PM 48.76 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\LotImg100944[1].jpg 12/17/2005 3:12 PM 14.27 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\LotImg100949[1].jpg 12/17/2005 3:12 PM 14.71 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\LotImg100950[1].jpg 12/17/2005 3:12 PM 18.07 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\MO-Merch-CollectorCars-Orange350Z-100x100[1].gif 12/17/2005 3:10 PM 3.24 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\MO-Merch-ProjectCarsDeals-RichMediaTest-275x73[1].gif 12/17/2005 3:10 PM 4.59 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\newsticker-ver2[1].xml 12/17/2005 3:10 PM 3.82 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\PC110077[1].jpg 12/17/2005 3:14 PM 49.88 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\PC110078[1].jpg 12/17/2005 3:14 PM 53.06 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\PM-Education-HolidayShoppingTips-StressFreeShopping-275x73[1].gif 12/17/2005 3:10 PM 2.78 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\poweredbyCA_refer[1].gif 12/17/2005 3:17 PM 1.70 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\rtm[1] 12/17/2005 3:11 PM 82 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\rtm[2] 12/17/2005 3:13 PM 82 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\search[2].htm 12/17/2005 3:10 PM 101.94 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\TrustAppService[1].xml 12/17/2005 3:10 PM 6.61 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\TrustAppService[2].xml 12/17/2005 3:10 PM 3.31 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\u_21563[1].xml 12/17/2005 3:13 PM 255 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\u_71827[1].xml 12/17/2005 3:10 PM 241 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OZKPYB0R\watch_confirm_e4373us[1].js 12/17/2005 3:13 PM 522 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\22_0[1].jpg 12/17/2005 3:15 PM 2.07 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\32_3[1].jpg 12/17/2005 3:13 PM 55.80 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\67717[1].gif 12/17/2005 3:10 PM 43 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75710679208080_0[1].jpg 12/17/2005 3:10 PM 1.52 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75713796818080_0[1].jpg 12/17/2005 3:10 PM 2.26 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75719114058080_0[1].jpg 12/17/2005 3:14 PM 1.97 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75720708258080_0[1].jpg 12/17/2005 3:14 PM 1.79 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75721441148080_0[1].jpg 12/17/2005 3:13 PM 3.66 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75722348518080_0[1].jpg 12/17/2005 3:13 PM 2.45 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75722447628080_1[1].jpg 12/17/2005 3:10 PM 2.01 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75722660298080_0[1].jpg 12/17/2005 3:10 PM 2.67 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75724561898080_0[1].jpg 12/17/2005 3:13 PM 2.10 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75726246798080_0[1].jpg 12/17/2005 3:14 PM 2.09 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75726413178080_0[1].jpg 12/17/2005 3:14 PM 2.04 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75726734558080_0[1].jpg 12/17/2005 3:10 PM 2.12 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75729027628080_0[1].jpg 12/17/2005 3:12 PM 2.11 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75730849948080_0[1].jpg 12/17/2005 3:13 PM 2.72 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75731576088080_0[1].jpg 12/17/2005 3:13 PM 1.90 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75731957798080_0[1].jpg 12/17/2005 3:14 PM 1.23 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\7573411398[1].jpg 12/17/2005 3:12 PM 3.61 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75734791888080_0[1].jpg 12/17/2005 3:12 PM 1.81 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75735271688080_0[1].jpg 12/17/2005 3:12 PM 1.68 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75735299868080_0[1].jpg 12/17/2005 3:10 PM 2.26 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75736235698080_0[1].jpg 12/17/2005 3:10 PM 2.00 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75736641978080_0[1].jpg 12/17/2005 3:10 PM 2.09 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\75736921408080_0[1].jpg 12/17/2005 3:13 PM 1.07 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\7b_0[1].jpg 12/17/2005 3:18 PM 1.86 KB Visible in directory index, but not Windows API or MFT.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\CA278ZBS.com%2Farticles%2Fauto%2F&cc=100&u_h=768&u_w=1024&u_ah=734&u_aw=1024&u_cd=32&u_tz=-480&u_his=7&u_java=true 12/17/2005 3:08 PM 2.31 KB Visible in Windows API, but not in MFT or directory index.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\CATCWRXP.swf 12/17/2005 3:13 PM 1.38 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\CAXPJNMK.swf 12/17/2005 3:10 PM 1.11 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\d4_0[1].jpg 12/17/2005 3:18 PM 1.56 KB Visible in directory index, but not Windows API or MFT.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\d6_12[1].jpg 12/17/2005 3:13 PM 28.93 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\e0_0[1].jpg 12/17/2005 3:15 PM 1.77 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\e0_12[1].jpg 12/17/2005 3:16 PM 17.75 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\EbayAtGlanceBody_e4373us[2].js 12/17/2005 3:10 PM 832 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\eBayISAPI[2].htm 12/17/2005 3:17 PM 61.56 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\ef_12[1].jpg 12/17/2005 3:18 PM 26.19 KB Visible in directory index, but not Windows API or MFT.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\ef_2[1].jpg 12/17/2005 3:18 PM 5.88 KB Visible in directory index, but not Windows API or MFT.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\fd_0[1].jpg 12/17/2005 3:15 PM 1.77 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\fnd2_e4373us[2].js 12/17/2005 3:13 PM 666 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\iconInactMoveUp_20x20[1].gif 12/17/2005 3:10 PM 99 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\Img101[1].jpg 12/17/2005 3:12 PM 17.48 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\inactive;dcopt=ist;!cat=statichp;sz=275x300;tile=1;ord=1134861014670;[1].htm 12/17/2005 3:10 PM 641 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\inactive;tn=2;to=h;tr=2;!cat=statichp;tw=240;ta=center;szs=100x100,100x100;ord=1134861014670;[1].htm 12/17/2005 3:10 PM 2.52 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\inactive;tn=3;to=h;tr=1;!cat=statichp;tw=760;ta=center;szs=234x60,234x60,234x60;ord=1134861014670;[1].htm 12/17/2005 3:10 PM 1.32 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\keywords;kw=leica+m2;dcopt=ist;list=all;sz=170x200;tile=4;ord=1134861037673;[1].htm 12/17/2005 3:10 PM 4.35 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\keywords;kw=leica+m2;tcat=625;items=74;sz=440x198;tile=5;ord=1134861037673;[1].htm 12/17/2005 3:10 PM 4.26 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\keywords;kw=leica+m2;tcat=625;items=74;sz=440x198;tile=5;ord=1134861129846;[1].htm 12/17/2005 3:12 PM 4.26 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\leica-m2_W0QQfromZR40QQfrtsZ50QQfsooZ1QQfsopZ1[1].htm 12/17/2005 3:12 PM 68.63 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\Leica-MP-black-new-72-RARE-ORIG-ASA-DIAL-SN-2880672_W0QQitemZ7572030564QQcategoryZ30030QQrdZ1QQcmdZViewItem[1].htm 12/17/2005 3:13 PM 65.03 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\LotImg100943[1].jpg 12/17/2005 3:12 PM 17.69 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\LotImg100946[1].jpg 12/17/2005 3:12 PM 14.27 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\LotImg100952[1].jpg 12/17/2005 3:12 PM 13.96 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\myebaysummary;dcopt=ist;pos=1;sz=150x36;tile=1;ord=1134861023774;[1].htm 12/17/2005 3:10 PM 480 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\PC060048[1].jpg 12/17/2005 3:17 PM 52.87 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\PC060049[1].jpg 12/17/2005 3:17 PM 57.05 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\PC110022[1].jpg 12/17/2005 3:10 PM 58.46 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\PC110024[1].jpg 12/17/2005 3:10 PM 59.17 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\PC110028[1].jpg 12/17/2005 3:10 PM 48.26 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\PC110072[1].jpg 12/17/2005 3:14 PM 59.13 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\PC110074[1].jpg 12/17/2005 3:14 PM 57.00 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\PM-GiftCertificates-Holiday2005-UseIt-275x73[1].gif 12/17/2005 3:10 PM 5.39 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\PM-InternetMktg-ReviewsGuides-CantDecide_v1-275x73[1].gif 12/17/2005 3:10 PM 4.40 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\PM-Skype-LearnMoreAboutSkype-Download-275x73[1].gif 12/17/2005 3:10 PM 5.61 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\power_adder[1].png 12/17/2005 3:10 PM 5.18 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\results2body_e4373us[2].js 12/17/2005 3:10 PM 72.51 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\rtm[1] 12/17/2005 3:13 PM 82 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\search[1].htm 12/17/2005 3:14 PM 82.55 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\Q7KN2NY1\TrustAppService[1].xml 12/17/2005 1:39 AM 6.61 KB Visible in Windows API, but not in MFT or directory index.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\22_2[1].jpg 12/17/2005 3:15 PM 5.65 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\2b_0[1].jpg 12/17/2005 3:13 PM 2.29 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\2b_12[1].jpg 12/17/2005 3:13 PM 27.95 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\32_12[1].jpg 12/17/2005 3:13 PM 42.15 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\468_60_005515v2[1].gif 12/17/2005 3:12 PM 12.77 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\712329637[1].gif 12/17/2005 3:10 PM 4.15 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75702327508080_0[1].jpg 12/17/2005 3:10 PM 1.92 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75706025308080_0[1].jpg 12/17/2005 3:14 PM 1.98 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75709452068080_0[1].jpg 12/17/2005 3:14 PM 2.04 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75710009638080_0[1].jpg 12/17/2005 3:13 PM 2.13 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75711228198080_0[1].jpg 12/17/2005 3:10 PM 1.80 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75718246648080_0[1].jpg 12/17/2005 3:14 PM 2.23 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75718904678080_0[1].jpg 12/17/2005 3:12 PM 2.07 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75719235468080_0[1].jpg 12/17/2005 3:12 PM 2.48 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75720458826464_1[1].jpg 12/17/2005 3:10 PM 2.07 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75720655728080_0[1].jpg 12/17/2005 3:10 PM 1.37 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75721205788080_0[1].jpg 12/17/2005 3:10 PM 2.01 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75721444818080_0[1].jpg 12/17/2005 3:13 PM 3.78 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75723434748080_0[1].jpg 12/17/2005 3:10 PM 2.09 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75723961568080_0[1].jpg 12/17/2005 3:10 PM 1.42 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75725249408080_0[1].jpg 12/17/2005 3:14 PM 2.32 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75726622948080_0[1].jpg 12/17/2005 3:10 PM 1.84 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75729031328080_0[1].jpg 12/17/2005 3:13 PM 2.23 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75729888178080_0[1].jpg 12/17/2005 3:12 PM 1.49 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75729895628080_0[1].jpg 12/17/2005 3:13 PM 2.12 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75731140048080_0[1].jpg 12/17/2005 3:13 PM 1.95 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75734114278080_0[1].jpg 12/17/2005 3:12 PM 2.26 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75735980578080_0[1].jpg 12/17/2005 3:10 PM 2.52 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75736245818080_0[1].jpg 12/17/2005 3:10 PM 1.97 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\75736249838080_0[1].jpg 12/17/2005 3:10 PM 2.30 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\adoramaebaybanner3[1].gif 12/17/2005 3:17 PM 21.17 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\bannerad[1].swf 12/17/2005 3:10 PM 85 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\be_12[1].jpg 12/17/2005 3:15 PM 21.94 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\bltBlue[1].gif 12/17/2005 3:10 PM 45 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\e2_12[1].jpg 12/17/2005 3:17 PM 27.13 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\EarthLink_premium_email_234[1].gif 12/17/2005 3:10 PM 3.01 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\eBayISAPI[1].htm 12/17/2005 3:10 PM 7.69 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\eBayISAPI[2].htm 12/17/2005 3:12 PM 14.41 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\eBayISAPI[3].htm 12/17/2005 3:13 PM 49.29 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\eBayISAPI[4].htm 12/17/2005 3:15 PM 56.31 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\ef_0[1].jpg 12/17/2005 3:18 PM 2.15 KB Visible in directory index, but not Windows API or MFT.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\fe_0[1].jpg 12/17/2005 3:13 PM 2.31 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\honesty-counter[2].gif 12/17/2005 3:12 PM 436 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\honesty-counter[4].gif 12/17/2005 3:14 PM 447 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\inactive;dcopt=ist;!cat=statichp;tn=8;to=v;tcs=0;tsc=fee859;tsw=1;sz=275x73;tp=1;sz=nullxnull;ord=1134861014670;[1].htm 12/17/2005 3:10 PM 5.83 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\keywords;kw=leica+iiic;tcat=625;items=36;sz=440x198;tile=5;ord=1134861259713;[1].htm 12/17/2005 3:14 PM 4.26 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\keywords;kw=leica+iiic;tn=3;to=h;tsw=10;list=all;szs=468x60,120x60,120x60;ord=1134861259713;[1].htm 12/17/2005 3:14 PM 5.46 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\keywords;kw=leica+mp;dcopt=ist;list=all;sz=170x200;tile=4;ord=1134861208579;[1].htm 12/17/2005 3:13 PM 4.56 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\Leica-IIIc-E-Leitz-Wetzlar-body-no-reserve_W0QQitemZ7572404075QQcategoryZ30030QQrdZ1QQcmdZViewItem[1] 12/17/2005 3:18 PM 11.97 KB Visible in directory index, but not Windows API or MFT.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\Leica-IIIc-E-Leitz-Wetzlar-body-no-reserve_W0QQitemZ7572404075QQcategoryZ30030QQrdZ1QQcmdZViewItem[1].htm 12/17/2005 3:18 PM 59.87 KB Visible in directory index, but not Windows API or MFT.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\leica-mp_W0QQfromZR40QQfsooZ1QQfsopZ1QQssPageNameZWLRS[1] 12/17/2005 3:13 PM 14.71 KB Visible in Windows API, but not in MFT or directory index.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\leica-mp_W0QQfromZR40QQfsooZ1QQfsopZ1QQssPageNameZWLRS[1].htm 12/17/2005 3:13 PM 87.33 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\LotImg100945[1].jpg 12/17/2005 3:12 PM 14.44 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\LotImg100948[1].jpg 12/17/2005 3:12 PM 23.93 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\LotImg100953[1].jpg 12/17/2005 3:12 PM 17.30 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\PC060047[1].jpg 12/17/2005 3:17 PM 53.29 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\PC110022[1].jpg 12/17/2005 3:10 PM 58.46 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\PC110023[1].jpg 12/17/2005 3:10 PM 43.56 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\PC110025[1].jpg 12/17/2005 3:10 PM 45.49 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\PC110075[1].jpg 12/17/2005 3:14 PM 49.13 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\PG-Merch-Italian-ArtGlass-100x100[1].gif 12/17/2005 3:10 PM 2.07 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\PM-InternetMktg-ReviewsGuides-WriteAboutIt-275x300[1].gif 12/17/2005 3:10 PM 22.23 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\Rethink_234_60v3[1].gif 12/17/2005 3:10 PM 2.49 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\rtm[2] 12/17/2005 3:10 PM 98 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\rtm[3] 12/17/2005 3:10 PM 81 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\rtm[4] 12/17/2005 3:17 PM 82 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\rtm[5] 12/17/2005 3:17 PM 82 bytes Visible in directory index, but not Windows API or MFT.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\search_e4371us[2].css 12/17/2005 3:10 PM 25.47 KB Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\u_14170[1].xml 12/17/2005 3:10 PM 241 bytes Hidden from Windows API.
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\WPUBSHYB\u_21563[1].xml 12/17/2005 3:13 PM 255 bytes Hidden from Windows API.
C:\RECYCLER\NPROTECT 12/17/2005 3:12 PM 0 bytes Hidden from Windows API.
C:\RECYCLER\NPROTECT\00082590. 11/30/2005 9:40 PM 352.98 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00082598. 11/30/2005 9:40 PM 259.70 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100687.000 12/15/2005 12:58 PM 1.55 MB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100688.LOG 12/15/2005 12:58 PM 1.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100689.000 12/15/2005 12:58 PM 768.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100690.LOG 12/15/2005 12:58 PM 1.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100691.000 12/15/2005 12:58 PM 3.79 MB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100693.edb 12/15/2005 12:59 PM 64.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100698.LOG 12/15/2005 1:03 PM 1.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100699.000 12/15/2005 1:03 PM 1.55 MB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100700.LOG 12/15/2005 1:03 PM 1.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100701.000 12/15/2005 1:03 PM 768.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100702.LOG 12/15/2005 1:03 PM 1.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100703.000 12/15/2005 1:03 PM 3.79 MB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100704.LOG 12/15/2005 1:03 PM 1.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100705.000 12/15/2005 1:03 PM 1.55 MB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100706.LOG 12/15/2005 1:03 PM 1.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100707.000 12/15/2005 1:03 PM 768.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100708.LOG 12/15/2005 1:03 PM 1.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100709.000 12/15/2005 1:03 PM 3.79 MB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100710.LOG 12/15/2005 1:03 PM 1.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100711.000 12/15/2005 1:03 PM 1.55 MB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100712.LOG 12/15/2005 1:03 PM 1.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100713.000 12/15/2005 1:03 PM 768.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100714.LOG 12/15/2005 1:03 PM 1.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100715.000 12/15/2005 1:03 PM 3.79 MB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100716.LOG 12/15/2005 1:03 PM 1.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100717.000 12/15/2005 1:03 PM 1.55 MB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100718.LOG 12/15/2005 1:03 PM 1.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100719.000 12/15/2005 1:03 PM 768.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100720.LOG 12/15/2005 1:03 PM 1.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100721.000 12/15/2005 1:03 PM 3.79 MB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100724.dat 12/15/2005 1:04 PM 46 bytes Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100727.DAT 12/15/2005 1:08 PM 14 bytes Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100728.DAT 12/15/2005 1:08 PM 14 bytes Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100733.edb 12/15/2005 1:08 PM 64.00 KB Hidden from Windows API.
C:\RECYCLER\NPROTECT\00100734.EVM 12/15/2005 1:08 PM 1.22 KB Hidden from


0

Related Posts

See More



Sponsored Link
Ads by Google
Reply to Message Icon






Post Locked

This post is quite old and has been locked from receiving new replies. Please create a new posting instead.


Go to Security and Virus Forum Home


Sponsored links

Ads by Google


Results for: have a wretched virus

I have a MBR Virus www.computing.net/answers/security/i-have-a-mbr-virus/5480.html

i think i have a trojan virus www.computing.net/answers/security/i-think-i-have-a-trojan-virus/19215.html

help, i have a desktop virus www.computing.net/answers/security/help-i-have-a-desktop-virus/75.html