Logfile of HijackThis v1.99.1 Scan saved at 15:58:39, on 19.10.2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\Common Files\Symantec Shared\DJSNETCN.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Norton AntiVirus\navapsvc.exe C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\Norton AntiVirus\SAVScan.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe C:\WINDOWS\CTHELPER.EXE C:\Program Files\Common Files\Symantec Shared\ccApp.exe C:\Program Files\Picasa2\PicasaMediaDetector.exe C:\Program Files\D-Tools\daemon.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\MSN Messenger\MsnMsgr.Exe C:\Program Files\Messenger\msmsgs.exe C:\Documents and Settings\Micky\Desktop\Purity Komplett Removal\hijackthis\HijackThis.exe R3 - URLSearchHook: (no name) - {E6144C2A-F192-A73A-B56A-FA7AE3E00F9C} - (no file) R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file) O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll O3 - Toolbar: (no name) - {C004DEC2-2623-438e-9CA2-C9043AB28508} - (no file) O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer O4 - HKLM\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033 O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKLM\..\RunServices: [DJSNetCN] C:\Program Files\Common Files\Symantec Shared\DJSNETCN.exe O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [Dtei] "C:\WINDOWS\system32\FNTS~1\spoolsv.exe" -vt ndrv O4 - HKCU\..\Run: [Jnj] C:\Documents and Settings\Micky\Application Data\T?sks\?hkdsk.exe O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: Adobe Reader - Schnellstart.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/su/ocx/15026/CTSUEng.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su/ocx/15026/CTPID.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{46D40035-FF63-4A92-80DD-8C713571E338}: NameServer = 192.168.1.254,0.0.0.0 O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe O23 - Service: Symantec Licensing Detect Internet Connection (DJSNETCN) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\DJSNETCN.exe O23 - Service: SQL Server (SQLEXPRESS) (MSSQL$SQLEXPRESS) - Unknown owner - C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sSQLEXPRESS (file missing) O23 - Service: Norton AntiVirus Auto-Protect-Dienst (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe ----------------------------- ENDE DES HIGHJACKTHIS LOGS -------------------------------- Volume in drive C has no label. Volume Serial Number is 9CE5-54B0 Directory of C:\WINDOWS\system32 19.10.2006 15:46 13.646 wpa.dbl 19.10.2006 15:46 81.191 nvapps.xml 19.10.2006 15:45 11.564 DVCState-{00000000-00000000-0000000C-00001102-00000004-00511102}.rfx 19.10.2006 15:45 1.076 settings.sfm 19.10.2006 15:45 1.076 settingsbkup.sfm 19.10.2006 15:45 29.100 BMXBkpCtrlState-{00000000-00000000-0000000C-00001102-00000004-00511102}.rfx 19.10.2006 15:45 29.100 BMXCtrlState-{00000000-00000000-0000000C-00001102-00000004-00511102}.rfx 19.10.2006 15:45 30.480 BMXStateBkp-{00000000-00000000-0000000C-00001102-00000004-00511102}.rfx 19.10.2006 15:45 30.480 BMXState-{00000000-00000000-0000000C-00001102-00000004-00511102}.rfx 18.10.2006 12:27 107.008 FNTCACHE.DAT 18.10.2006 11:59 447.468 perfh009.dat 18.10.2006 11:59 80.064 perfc009.dat 18.10.2006 11:59 519.090 PerfStringBackup.INI 16.10.2006 19:32 43.520 CmdLineExt03.dll 12.10.2006 00:42 21.840 SIntfNT.dll 12.10.2006 00:42 17.212 SIntf32.dll 12.10.2006 00:42 12.067 SIntf16.dll 20.09.2006 17:35 571.696 LegitCheckControl.dll 20.09.2006 17:35 441.136 WgaLogon.dll 20.09.2006 17:35 280.368 WgaTray.exe 15.09.2006 22:52 91.904 S32EVNT1.DLL 11.09.2006 19:37 8.960.936 MRT.exe 08.09.2006 14:12 6.675 jupdate-1.5.0_06-b05.log 04.09.2006 18:22 233.472 REX Shared Library.dll 04.09.2006 18:22 225.280 ReWire.dll 04.09.2006 17:10 0 h323log.txt 04.09.2006 15:30 13.588 wpa.bak 04.09.2006 15:21 261 $winnt$.inf 04.09.2006 15:18 2.577 CONFIG.NT 04.09.2006 15:16 488 logonui.exe.manifest 04.09.2006 15:16 488 WindowsLogon.manifest 04.09.2006 15:16 749 wuaucpl.cpl.manifest 04.09.2006 15:16 749 cdplayer.exe.manifest 04.09.2006 15:16 749 sapi.cpl.manifest 04.09.2006 15:16 749 nwc.cpl.manifest 04.09.2006 15:16 749 ncpa.cpl.manifest 04.09.2006 15:14 21.640 emptyregdb.dat 29.08.2006 19:43 135.168 swreg.exe 21.08.2006 14:21 16.896 fltlib.dll 21.08.2006 11:14 23.040 fltmc.exe 16.08.2006 17:55 208.896 NVUNINST.EXE 11.08.2006 21:45 2.953.216 nvvitvsr.dll 11.08.2006 21:45 2.904.064 nvvitvs.dll 11.08.2006 21:45 2.859.008 nvmoblsr.dll 11.08.2006 21:45 888.832 nvmobls.dll 11.08.2006 21:45 458.752 nvmccssr.dll 11.08.2006 21:45 188.416 nvmccss.dll 11.08.2006 21:45 1.732.608 nvwssr.dll 11.08.2006 21:45 1.236.992 nvwss.dll 11.08.2006 21:45 2.928.640 nvgamesr.dll 11.08.2006 21:45 3.039.232 nvgames.dll 11.08.2006 21:45 5.251.072 nvdispsr.dll 11.08.2006 21:45 5.611.520 nvdisps.dll 11.08.2006 21:45 45.056 nvmccsrs.dll 11.08.2006 21:45 229.376 nvmccs.dll 11.08.2006 21:45 581.632 nvhwvid.dll 11.08.2006 21:45 266.240 nvrsesm.dll 11.08.2006 21:45 249.856 nvrshu.dll 11.08.2006 21:45 249.856 nvrssl.dll 11.08.2006 21:45 249.856 nvrssk.dll 11.08.2006 21:45 258.048 nvrsko.dll 11.08.2006 21:44 249.856 nvrsno.dll 11.08.2006 21:44 323.584 nvrshe.dll 11.08.2006 21:44 262.144 nvrsja.dll 11.08.2006 21:44 249.856 nvrspl.dll 11.08.2006 21:44 249.856 nvrstr.dll 11.08.2006 21:44 266.240 nvrspt.dll 11.08.2006 21:44 241.664 nvrscs.dll 11.08.2006 21:44 323.584 nvrsar.dll 11.08.2006 21:44 147.456 nvcolor.exe 11.08.2006 21:44 274.432 nvrsel.dll 11.08.2006 21:44 274.432 nvrses.dll 11.08.2006 21:43 245.760 nvrssv.dll 11.08.2006 21:43 241.664 nvrsfi.dll 11.08.2006 21:43 221.184 nvrszhc.dll 11.08.2006 21:43 245.760 nvrsda.dll 11.08.2006 21:43 274.432 nvrsit.dll 11.08.2006 21:43 262.144 nvrsptb.dll 11.08.2006 21:43 270.336 nvrsde.dll 11.08.2006 21:43 241.664 nvrseng.dll 11.08.2006 21:43 122.880 nvrszht.dll 11.08.2006 21:43 266.240 nvrsnl.dll 11.08.2006 21:43 278.528 nvrsfr.dll 11.08.2006 21:43 262.144 nvrsru.dll 11.08.2006 21:43 196.608 nvapi.dll 11.08.2006 21:43 81.920 nvwddi.dll 11.08.2006 21:43 86.016 nvmctray.dll 11.08.2006 21:43 7.630.848 nvcpl.dll 11.08.2006 21:43 323.584 nvwrsit.dll 11.08.2006 21:43 1.519.616 nwiz.exe 11.08.2006 21:43 286.720 nvnt4cpl.dll 11.08.2006 21:43 1.470.464 nview.dll 11.08.2006 21:43 311.296 nvexpbar.dll 11.08.2006 21:43 1.339.392 nvdspsch.exe 11.08.2006 21:43 73.728 nvtuicpl.cpl 11.08.2006 21:43 1.011.712 nvcpluir.dll 11.08.2006 21:43 794.624 nvcplui.exe 11.08.2006 21:43 167.936 nvwrszht.dll 11.08.2006 21:43 163.840 nvwrszhc.dll 11.08.2006 21:43 303.104 nvwrstr.dll 11.08.2006 21:43 294.912 nvwrssv.dll 11.08.2006 21:43 425.984 keystone.exe 11.08.2006 21:43 303.104 nvwrssl.dll 11.08.2006 21:43 299.008 nvwrssk.dll 11.08.2006 21:43 315.392 nvwrsru.dll 11.08.2006 21:43 319.488 nvwrsptb.dll 11.08.2006 21:43 323.584 nvwrspt.dll 11.08.2006 21:43 294.912 nvwrspl.dll 11.08.2006 21:43 299.008 nvwrsno.dll 11.08.2006 21:43 319.488 nvwrsnl.dll 11.08.2006 21:43 196.608 nvwrsko.dll 11.08.2006 21:43 212.992 nvwrsja.dll 11.08.2006 21:43 294.912 nvwrsda.dll 11.08.2006 21:43 315.392 nvwrshu.dll 11.08.2006 21:43 69.632 nvcpl.cpl 11.08.2006 21:43 278.528 nvwrshe.dll 11.08.2006 21:43 1.662.976 nvwdmcpl.dll 11.08.2006 21:43 327.680 nvwrsfr.dll 11.08.2006 21:43 1.019.904 nvwimg.dll 11.08.2006 21:43 442.368 nvappbar.exe 11.08.2006 21:43 303.104 nvwrsfi.dll 11.08.2006 21:43 282.624 nvwrsar.dll 11.08.2006 21:43 466.944 nvshell.dll 11.08.2006 21:43 327.680 nvwrsesm.dll 11.08.2006 21:43 335.872 nvwrses.dll 11.08.2006 21:43 286.720 nvwrseng.dll 11.08.2006 21:43 335.872 nvwrsel.dll 11.08.2006 21:43 311.296 nvwrsde.dll 11.08.2006 21:43 286.720 nvwrscs.dll 11.08.2006 21:42 5.636.096 nvoglnt.dll 11.08.2006 21:42 4.496.128 nv4_disp.dll 11.08.2006 21:42 155.715 nvsvc32.exe 11.08.2006 21:42 16.960 nvdisp.nvu 11.08.2006 21:42 208.896 nvudisp.exe 11.08.2006 21:42 35.840 nvcodins.dll 11.08.2006 21:42 35.840 nvcod.dll 29.07.2006 19:32 48.936 sirenacm.dll 28.07.2006 13:28 3.054.080 mshtml.dll 27.07.2006 15:24 679.424 inetcomm.dll 25.07.2006 22:33 613.888 urlmon.dll 21.07.2006 10:24 72.704 hlink.dll 14.07.2006 17:31 332.288 netapi32.dll 14.07.2006 17:25 546.304 hhctrl.ocx 13.07.2006 15:33 8.453.632 shell32.dll 05.07.2006 12:55 984.064 kernel32.dll ------------------------------------------------- Volume in drive C has no label. Volume Serial Number is 9CE5-54B0 Directory of C:\DOCUME~1\MICKY\LOCALS~1\Temp 19.10.2006 15:56 408 jusched.log 19.10.2006 15:46 16.384 Perflib_Perfdata_80c.dat 2 File(s) 16.792 bytes 0 Dir(s) 51.637.030.912 bytes free ------------------------------------------------- Volume in drive C has no label. Volume Serial Number is 9CE5-54B0 Directory of C:\WINDOWS 19.10.2006 15:46 252 wiadebug.log 19.10.2006 15:46 0 0.log 19.10.2006 15:46 983.438 WindowsUpdate.log 19.10.2006 15:46 50 wiaservc.log 19.10.2006 15:46 2.048 bootstat.dat 19.10.2006 15:45 32.638 SchedLgU.Txt 19.10.2006 15:44 3.162.278 {00000000-00000000-0000000C-00001102-00000004-00511102}.BAK 19.10.2006 15:44 3.162.278 {00000000-00000000-0000000C-00001102-00000004-00511102}.CDF 19.10.2006 01:06 499.926 ntbtlog.txt 18.10.2006 11:38 169.015 setupact.log 13.10.2006 14:03 921 QSFVExit.bat 12.10.2006 00:53 18.407 DIIUnin.dat 12.10.2006 00:07 2.829 DIIUnin.pif 12.10.2006 00:07 94.208 DIIUnin.exe 11.10.2006 23:24 445.601 setupapi.log 11.10.2006 01:26 556 win.ini 11.10.2006 01:26 257 system.ini 09.10.2006 23:30 379 wmsetup10.log 09.10.2006 23:30 12.095 wmsetup.log 09.10.2006 23:22 316.640 WMSysPr9.prx 08.10.2006 14:46 531 eReg.dat 07.10.2006 17:35 441.693 iis6.log 07.10.2006 17:35 138.918 comsetup.log 07.10.2006 17:35 82.550 ntdtcsetup.log 07.10.2006 17:35 179.447 tsoc.log 07.10.2006 17:35 1.374 imsins.log 07.10.2006 17:35 19.912 tabletoc.log 07.10.2006 17:35 21.405 ocmsn.log 07.10.2006 17:35 2.810 KB885884.log 07.10.2006 17:35 67.770 netfxocm.log 07.10.2006 17:35 26.986 MedCtrOC.log 07.10.2006 17:35 189.692 ocgen.log 07.10.2006 17:35 19.411 msgsocm.log 07.10.2006 17:35 382.501 FaxSetup.log 07.10.2006 17:35 120.882 msmqinst.log 06.10.2006 21:21 316 ODBC.INI 06.10.2006 18:38 2.327 spupdsvc.log 06.10.2006 18:31 13.106 WgaNotify.log 06.10.2006 18:31 18.540 updspapi.log 06.10.2006 18:31 1.374 imsins.BAK 06.10.2006 18:31 16.242 KB925486.log 06.10.2006 18:31 18.582 KB920872.log 06.10.2006 18:30 13.251 KB920685.log 06.10.2006 18:30 13.245 KB919007.log 06.10.2006 18:30 9.200 KB922582.log 14.09.2006 12:09 15.198 LUINSTALL.LOG 10.09.2006 19:27 32.768 ReBirth RB-338 2.prf 10.09.2006 15:43 156.910 WMSysPr8.prx 10.09.2006 00:07 1.448 COM+.log 08.09.2006 17:02 512 randseed.rnd 05.09.2006 02:32 35.437 KB899587.log 05.09.2006 02:32 34.138 KB885835.log 05.09.2006 02:32 33.275 KB885836.log 05.09.2006 02:32 33.934 KB920214.log 05.09.2006 02:32 31.232 KB921883.log 05.09.2006 02:32 24.635 KB917734.log 05.09.2006 02:31 33.787 KB911927.log 05.09.2006 02:31 32.969 KB922616.log 05.09.2006 02:31 33.289 KB901017.log 05.09.2006 02:31 33.610 KB899591.log 05.09.2006 02:31 33.797 KB896424.log 05.09.2006 02:31 33.780 KB893756.log 05.09.2006 02:31 32.753 KB911280.log 05.09.2006 02:31 32.215 KB911562.log 05.09.2006 02:31 29.042 KB896423.log 05.09.2006 02:31 33.435 KB900485.log 05.09.2006 02:30 31.216 KB917159.log 05.09.2006 02:30 30.223 KB873339.log 05.09.2006 02:30 31.872 KB921398.log 05.09.2006 02:30 30.231 KB887472.log 05.09.2006 02:30 31.550 KB896358.log 05.09.2006 02:30 24.949 KB910437.log 05.09.2006 02:30 35.005 KB918899.log 05.09.2006 02:30 18.431 KB911564.log 05.09.2006 02:29 27.685 KB920670.log 05.09.2006 02:29 27.133 KB891781.log 05.09.2006 02:29 27.883 KB918439.log 05.09.2006 02:29 32.757 KB902400.log 05.09.2006 02:29 24.810 KB890046.log 05.09.2006 02:29 23.676 KB899589.log 05.09.2006 02:29 23.915 KB914388.log 05.09.2006 02:29 23.142 KB917344.log 05.09.2006 02:28 77.805 KB905414.log 05.09.2006 02:28 77.006 KB917953.log 05.09.2006 02:28 76.797 KB901214.log 05.09.2006 02:28 22.363 KB917422.log 05.09.2006 02:28 21.276 KB888302.log 05.09.2006 02:28 23.258 KB900725.log 05.09.2006 02:28 21.266 KB912919.log 05.09.2006 02:28 14.943 KB886185.log 05.09.2006 02:28 20.736 KB916595.log 05.09.2006 02:28 20.455 KB904706.log 05.09.2006 02:28 20.983 KB908531.log 05.09.2006 02:27 20.327 KB905749.log 05.09.2006 02:27 20.423 KB913580.log 05.09.2006 02:27 20.404 KB896428.log 05.09.2006 02:27 19.329 KB911567.log 05.09.2006 02:27 19.307 KB894391.log 05.09.2006 02:27 16.965 KB908519.log 05.09.2006 02:27 17.209 KB920683.log 05.09.2006 02:27 16.768 KB914389.log 05.09.2006 02:27 18.392 KB890859.log 04.09.2006 17:07 2.148 regopt.log 04.09.2006 17:06 0 Sti_Trace.log 04.09.2006 17:02 0 setuperr.log 04.09.2006 15:59 0 nsreg.dat 04.09.2006 15:47 8.334 KB893803v2.log 04.09.2006 15:46 9.462 KB898461.log 04.09.2006 15:42 2.727 mozver.dat 04.09.2006 15:31 833 OEWABLog.txt 04.09.2006 15:30 811.743 setuplog.txt 04.09.2006 15:22 8.192 REGLOCS.OLD 04.09.2006 15:18 0 control.ini 04.09.2006 15:17 4.161 ODBCINST.INI 04.09.2006 15:16 749 WindowsShell.Manifest 04.09.2006 15:15 1.022 sessmgr.setup.log 04.09.2006 15:14 37 vbaddin.ini 04.09.2006 15:14 36 vb.ini 04.09.2006 15:14 133 DtcInstall.log 04.09.2006 15:11 200 cmsetacl.log ------------------------------------------------- Volume in drive C has no label. Volume Serial Number is 9CE5-54B0 Directory of C:\WINDOWS\temp 19.10.2006 15:46 409 WGANotify.settings 19.10.2006 15:46 255 WGAErrLog.txt 2 File(s) 664 bytes 0 Dir(s) 51.637.006.336 bytes free ------------------------------------------------- Volume in drive C has no label. Volume Serial Number is 9CE5-54B0 Directory of C:\WINDOWS\Downloaded Program Files 04.09.2006 15:16 65 desktop.ini 11.08.2006 09:40 523 CTSUEng.inf 11.08.2006 09:36 225.280 CTSUEng.ocx 10.08.2006 18:07 38.608 CTPID.ocx 10.08.2006 17:58 516 CTPID.inf 22.06.2006 11:41 5.032 swflash.inf 29.05.2003 15:00 160.864 messengerstatsclient.dll 7 File(s) 430.888 bytes 0 Dir(s) 51.637.006.336 bytes free ------------------------------------------------- Volume in drive C has no label. Volume Serial Number is 9CE5-54B0 Directory of C:\ 19.10.2006 16:03 0 sys.txt 19.10.2006 16:03 576 down.txt 19.10.2006 16:02 311 tmp.txt 19.10.2006 16:01 8.427 system.txt 19.10.2006 16:00 334 systemtemp.txt 19.10.2006 16:00 103.195 system32.txt 19.10.2006 15:45 1.073.270.784 hiberfil.sys 19.10.2006 15:45 1.609.801.728 pagefile.sys 19.10.2006 14:13 21.454 ComboFix.txt 19.10.2006 13:51 22.009 ComboFix2.txt 18.10.2006 18:58 19.549 ComboFix3.txt 18.10.2006 11:38 946 rapport.txt 18.10.2006 11:34 8.191 smitfiles.txt 04.10.2006 11:37 0 dbg_log.txt 04.10.2006 11:22 4 timestmp.tmp 17.09.2006 18:39 232 sqmdata04.sqm 17.09.2006 18:39 244 sqmnoopt04.sqm 15.09.2006 00:32 232 sqmdata03.sqm 15.09.2006 00:32 244 sqmnoopt03.sqm 14.09.2006 11:40 232 sqmdata02.sqm 14.09.2006 11:40 244 sqmnoopt02.sqm 10.09.2006 02:25 232 sqmdata01.sqm 10.09.2006 02:25 244 sqmnoopt01.sqm 05.09.2006 12:23 232 sqmdata00.sqm 05.09.2006 12:23 244 sqmnoopt00.sqm 04.09.2006 15:18 0 MSDOS.SYS 04.09.2006 15:18 0 IO.SYS 04.09.2006 15:18 0 CONFIG.SYS 04.09.2006 15:18 0 AUTOEXEC.BAT 04.09.2006 15:10 211 boot.ini 04.08.2004 14:00 47.564 NTDETECT.COM 04.08.2004 14:00 250.032 ntldr 32 File(s) 2.683.557.695 bytes 0 Dir(s) 51.637.006.336 bytes free