DDS (Ver_09-12-01.01) - NTFSx86 Run by Roop at 22:01:13.22 on Sun 21/02/2010 Internet Explorer: 7.0.6000.16982 Microsoft® Windows Vista™ Business 6.0.6000.0.1252.61.1033.18.2038.239 [GMT 11:00] AV: Norton AntiVirus *On-access scanning disabled* (Outdated) {E10A9785-9598-4754-B552-92431C1C35F8} SP: Lavasoft Ad-Watch Live! *disabled* (Updated) {67844DAE-4F77-4D69-9457-98E8CFFDAA22} SP: Windows Defender *disabled* (Outdated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46} SP: Norton AntiVirus *disabled* (Outdated) {CBB7EE13-8244-4DAB-8B55-D5C7AA91E59A} FW: Norton AntiVirus *disabled* {990F9400-4CEE-43EA-A83A-D013ADD8EA6E} ============== Running Processes =============== C:\Windows\system32\wininit.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe C:\Windows\system32\svchost.exe -k rpcss C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\SLsvc.exe C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k NetworkService C:\Program Files\Protector Suite QL\upeksvr.exe C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe C:\Windows\system32\WLANExt.exe C:\Windows\System32\spoolsv.exe C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Windows\System32\igfxtray.exe C:\Windows\System32\igfxpers.exe C:\Windows\RtHDVCpl.exe C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe C:\Windows\system32\igfxsrvc.exe C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe C:\Program Files\Adobe\Acrobat 8.0\Acrobat\acrotray.exe C:\Program Files\Synaptics\SynTP\SynToshiba.exe C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe C:\Program Files\Protector Suite QL\psqltray.exe C:\Program Files\Rainlendar2\Rainlendar2.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Program Files\Camera Assistant Software for Toshiba\CEC_MAIN.exe C:\Program Files\Adobe\Acrobat 8.0\Acrobat\acrobat_sl.exe C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe C:\Program Files\NETGEAR\WG111v3\WG111v3.exe C:\Program Files\Sony Handheld\HOTSYNC.EXE C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe C:\Windows\system32\agrsmsvc.exe C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Windows\system32\svchost.exe -k bthsvcs C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe C:\Program Files\Intel\Wireless\Bin\EvtEng.exe C:\Program Files\Google\Update\GoogleUpdate.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\Program Files\Google\Update\GoogleUpdate.exe C:\Program Files\PostgreSQL\8.3\bin\pg_ctl.exe C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe C:\Windows\system32\svchost.exe -k imgsvc C:\Program Files\PostgreSQL\8.3\bin\postgres.exe C:\Program Files\TOSHIBA\TOSHIBA DVD PLAYER\TNaviSrv.exe C:\Windows\system32\TODDSrv.exe C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe C:\Windows\System32\svchost.exe -k WerSvcGroup C:\Windows\system32\SearchIndexer.exe C:\Program Files\PostgreSQL\8.3\bin\postgres.exe C:\Program Files\PostgreSQL\8.3\bin\postgres.exe C:\Program Files\PostgreSQL\8.3\bin\postgres.exe C:\Program Files\PostgreSQL\8.3\bin\postgres.exe C:\Program Files\PostgreSQL\8.3\bin\postgres.exe C:\Windows\system32\taskeng.exe C:\Windows\system32\wbem\unsecapp.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe C:\Windows\system32\taskeng.exe C:\Program Files\TOSHIBA\ConfigFree\CFSwMgr.exe C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroDist.exe C:\Users\Roop\Desktop\dds.scr ============== Pseudo HJT Report =============== uStart Page = hxxp://ninemsn.com.au/ uInternet Settings,ProxyOverride = *.local BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll BHO: Skype add-on (mastermind): {22bf413b-c6d2-4d91-82a9-a0f997ba588c} - c:\program files\skype\toolbars\internet explorer\SkypeIEPlugin.dll BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - c:\progra~1\common~1\symant~1\ids\IPSBHO.dll BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre1.6.0\bin\ssv.dll BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll BHO: Adobe PDF Conversion Toolbar Helper: {ae7cd045-e861-484f-8273-0445ee161910} - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.5.4723.1820\swg.dll TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar_32.dll EB: Adobe PDF: {182ec0be-5110-49c8-a062-beb1d02a220b} - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun uRun: [TOSCDSPD] c:\program files\toshiba\toscdspd\TOSCDSPD.exe uRun: [Rainlendar2] c:\program files\rainlendar2\Rainlendar2.exe uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe uRun: [smss32.exe] c:\windows\system32\smss32.exe mRun: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe mRun: [IgfxTray] c:\windows\system32\igfxtray.exe mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe mRun: [Persistence] c:\windows\system32\igfxpers.exe mRun: [RtHDVCpl] RtHDVCpl.exe mRun: [NDSTray.exe] NDSTray.exe mRun: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE mRun: [HSON] %ProgramFiles%\TOSHIBA\TBS\HSON.exe mRun: [SmoothView] %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe mRun: [00TCrdMain] %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe mRun: [Camera Assistant Software] "c:\program files\camera assistant software for toshiba\traybar.exe" mRun: [PSQLLauncher] "c:\program files\protector suite ql\launcher.exe" /startup mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe" mRun: [NWEReboot] mRun: [Acrobat Assistant 8.0] "c:\program files\adobe\acrobat 8.0\acrobat\Acrotray.exe" mRun: [] mRun: [Adobe_ID0EYTHM] c:\progra~1\common~1\adobe\adobev~1\server\bin\VERSIO~2.EXE mRun: [ccApp] "c:\program files\common files\symantec shared\ccApp.exe" mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe" mRun: [smss32.exe] c:\windows\system32\smss32.exe StartupFolder: c:\users\roop\appdata\roaming\micros~1\windows\startm~1\programs\startup\hotsyn~1.lnk - c:\program files\sony handheld\HOTSYNC.EXE StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\adobea~1.lnk - c:\windows\installer\{ac76ba86-1033-0000-7760-000000000003}\_SC_Acrobat.exe StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\adobea~2.lnk - c:\program files\adobe\acrobat 8.0\acrobat\AdobeCollabSync.exe StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\blueto~1.lnk - c:\program files\toshiba\bluetooth toshiba stack\TosBtMng.exe StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\netgea~1.lnk - c:\program files\netgear\wg111v3\WG111v3.exe uPolicies-explorer: NoSetActiveDesktop = 1 (0x1) uPolicies-explorer: NoActiveDesktopChanges = 1 (0x1) mPolicies-explorer: NoSetActiveDesktop = 1 (0x1) mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1) mPolicies-system: EnableLUA = 0 (0x0) mPolicies-system: DisableCAD = 1 (0x1) IE: Append to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html IE: Convert link target to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html IE: Convert link target to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html IE: Convert selected links to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html IE: Convert selected links to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html IE: Convert selection to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html IE: Convert selection to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html IE: Convert to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html IE: E&xport to Microsoft Excel - c:\progra~1\micros~1\office11\EXCEL.EXE/3000 IE: Google Sidewiki... - c:\program files\google\google toolbar\component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html IE: {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - c:\program files\pokerstars\PokerStarsUpdate.exe IE: {49783ED4-258D-4f9f-BE11-137C18D3E543} - c:\poker\titan poker\casino.exe IE: {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - c:\programs\partypoker\partypoker\RunApp.exe IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0\bin\npjpi160.dll IE: {77BF5300-1474-4EC7-9980-D32B190E9B07} - {77BF5300-1474-4EC7-9980-D32B190E9B07} - c:\program files\skype\toolbars\internet explorer\SkypeIEPlugin.dll IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~1\office11\REFIEBAR.DLL Trusted Zone: buy-internetsecurity10.com Trusted Zone: buy-is2010.com Trusted Zone: is-software-download.com Trusted Zone: is-software-download25.com Trusted Zone: is10-soft-download.com Trusted Zone: buy-internetsecurity10.com Trusted Zone: buy-is2010.com DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/5/b/0/5b0d4654-aa20-495c-b89f-c1c34c691085/LegitCheckControl.cab DPF: {233C1507-6A77-46A4-9443-F871F945D258} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab DPF: {44990301-3C9D-426D-81DF-AAB636FA4345} - hxxps://www-secure.symantec.com/techsupp/asa/ss/sa/sa_cabs/tgctlsr.cab DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab DPF: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} - hxxps://plugins.valueactive.eu/flashax/iefax.cab Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL Notify: igfxcui - igfxdev.dll Notify: psfus - c:\windows\system32\psqlpwd.dll LSA: Notification Packages = scecli psqlpwd ============= SERVICES / DRIVERS =============== R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2009-11-1 64288] R1 IDSvix86;Symantec Intrusion Prevention Driver;c:\progra~2\symantec\defini~1\symcdata\ipsdefs\20100128.002\IDSvix86.sys [2010-1-30 286768] R1 RtlProt;Realtke RtlProt WLAN Utility Protocol Driver;c:\windows\system32\drivers\RtlProt.sys [2007-4-23 25896] R2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2010-1-9 135664] R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\lavasoft\ad-aware\AAWService.exe [2009-9-24 1181328] R2 LiveUpdate Notice;LiveUpdate Notice;c:\program files\common files\symantec shared\CCSVCHST.EXE [2008-12-4 149352] R2 pgsql-8.3;PostgreSQL Database Server 8.3;c:\program files\postgresql\8.3\bin\pg_ctl.exe [2008-9-19 65536] R3 QIOMem;Generic IO & Memory Access;c:\windows\system32\drivers\QIOMem.sys [2007-4-9 8192] R3 SYMNDISV;SYMNDISV;c:\windows\system32\drivers\symndisv.sys [2009-2-19 41008] S3 athrusb;Atheros Wireless LAN USB device driver;c:\windows\system32\drivers\athrusb.sys [2009-5-25 451072] S3 COH_Mon;COH_Mon;c:\windows\system32\drivers\COH_Mon.sys [2008-1-31 23888] S3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\common files\symantec shared\eengine\EraserUtilRebootDrv.sys [2009-9-1 102448] S3 RTL8187B;NETGEAR WG111v3 54Mbps Wireless USB 2.0 Adapter Vista Driver;c:\windows\system32\drivers\wg111v3.sys [2009-7-6 289280] S3 Symantec Core LC;Symantec Core LC;c:\progra~1\common~1\symant~1\ccpd-lc\symlcsvc.exe [2008-10-6 1251720] =============== Created Last 30 ================ 2010-02-20 09:03:41 0 d-s---w- C:\ComboFix 2010-02-19 19:02:19 98816 ----a-w- c:\windows\sed.exe 2010-02-19 19:02:19 77312 ----a-w- c:\windows\MBR.exe 2010-02-19 19:02:19 261632 ----a-w- c:\windows\PEV.exe 2010-02-19 19:02:19 161792 ----a-w- c:\windows\SWREG.exe 2010-02-19 10:37:25 0 d-----w- c:\program files\Trend Micro 2010-02-18 15:29:14 2931 ----a-w- c:\windows\system32\warning.html 2010-02-05 04:21:11 0 ----a-w- c:\windows\system32\9961.exe 2010-02-05 04:01:11 0 ----a-w- c:\windows\system32\16827.exe 2010-02-05 03:41:11 0 ----a-w- c:\windows\system32\23281.exe 2010-02-04 20:23:01 0 ----a-w- c:\windows\system32\28145.exe 2010-02-04 20:03:01 0 ----a-w- c:\windows\system32\5705.exe 2010-02-04 19:43:01 0 ----a-w- c:\windows\system32\24464.exe 2010-02-04 19:23:00 0 ----a-w- c:\windows\system32\26962.exe 2010-02-04 19:03:00 0 ----a-w- c:\windows\system32\29358.exe 2010-02-04 18:43:00 0 ----a-w- c:\windows\system32\11478.exe 2010-02-04 18:23:00 0 ----a-w- c:\windows\system32\15724.exe 2010-02-04 18:03:00 0 ----a-w- c:\windows\system32\19169.exe 2010-02-04 17:43:00 0 ----a-w- c:\windows\system32\26500.exe 2010-02-04 17:23:00 0 ----a-w- c:\windows\system32\6334.exe 2010-02-04 17:02:59 0 ----a-w- c:\windows\system32\18467.exe 2010-02-04 16:35:20 0 ----a-w- c:\windows\system32\41.exe 2010-02-04 16:34:59 0 ----a-w- c:\windows\system32\IS15.exe 2010-02-04 16:34:36 0 ----a-w- c:\windows\system32\helper32.dll 2010-02-04 16:33:26 37376 ----a-w- c:\windows\system32\winlogon32.exe ==================== Find3M ==================== 2010-01-27 11:05:00 15880 ----a-w- c:\windows\system32\lsdelete.exe 2009-12-18 12:52:36 832512 ----a-w- c:\windows\system32\wininet.dll 2009-12-18 12:48:23 56320 ----a-w- c:\windows\system32\iesetup.dll 2009-12-18 12:48:19 78336 ----a-w- c:\windows\system32\ieencode.dll 2009-12-18 12:46:10 72704 ----a-w- c:\windows\system32\admparse.dll 2009-12-18 10:18:14 26624 ----a-w- c:\windows\system32\ieUnatt.exe 2009-12-18 08:45:07 48128 ----a-w- c:\windows\system32\mshtmler.dll 2009-10-06 08:59:46 86016 ----a-w- c:\windows\inf\infstor.dat 2009-10-06 08:59:46 51200 ----a-w- c:\windows\inf\infpub.dat 2009-10-06 08:59:46 143360 ----a-w- c:\windows\inf\infstrng.dat 2008-12-16 16:08:38 174 --sha-w- c:\program files\desktop.ini 2008-07-14 16:10:29 665600 ----a-w- c:\windows\inf\drvindex.dat 2007-12-28 04:59:30 342528 ----a-w- c:\windows\inf\wg111v3\vista64\wg111v3.sys 2007-12-28 04:58:30 289280 ----a-w- c:\windows\inf\wg111v3\WG111v3.sys 2007-12-28 04:58:30 289280 ----a-w- c:\windows\inf\wg111v3\vista\wg111v3.sys 2007-11-27 07:53:58 63488 ----a-w- c:\windows\inf\wg111v3\SetDrv64.exe 2007-11-27 07:52:44 32768 ----a-w- c:\windows\inf\wg111v3\SetDrv.exe 2007-04-23 03:15:48 31016 ----a-w- c:\windows\inf\wg111v3\vista64\RtlProt.sys 2007-04-23 00:50:50 25896 ----a-w- c:\windows\inf\wg111v3\vista\RtlProt.sys 2007-04-19 11:22:44 75264 ----a-w- c:\windows\inf\wg111v3\vista64\rtkbind.exe 2007-04-19 11:22:28 74752 ----a-w- c:\windows\inf\wg111v3\vista\rtkbind.exe 2006-12-15 01:30:36 98304 ----a-w- c:\windows\inf\wg111v3\UScanM.exe 2006-12-15 01:30:36 315392 ----a-w- c:\windows\inf\wg111v3\InstallDriver.exe 2006-12-15 01:30:36 212992 ----a-w- c:\windows\inf\wg111v3\CopyWHQLDriver.exe 2006-12-15 01:30:36 20480 ----a-w- c:\windows\inf\wg111v3\RTWUPath.exe 2006-12-15 01:30:36 19968 ----a-w- c:\windows\inf\wg111v3\RTWREFU.EXE 2006-11-02 12:42:07 30674 ----a-w- c:\windows\inf\perflib\0409\perfd.dat 2006-11-02 12:42:07 30674 ----a-w- c:\windows\inf\perflib\0409\perfc.dat 2006-11-02 12:42:07 287440 ----a-w- c:\windows\inf\perflib\0409\perfi.dat 2006-11-02 12:42:07 287440 ----a-w- c:\windows\inf\perflib\0409\perfh.dat 2006-11-02 09:20:21 287440 ----a-w- c:\windows\inf\perflib\0000\perfi.dat 2006-11-02 09:20:21 287440 ----a-w- c:\windows\inf\perflib\0000\perfh.dat 2006-11-02 09:20:19 30674 ----a-w- c:\windows\inf\perflib\0000\perfd.dat 2006-11-02 09:20:19 30674 ----a-w- c:\windows\inf\perflib\0000\perfc.dat 2008-02-01 06:32:50 16384 --sha-w- c:\windows\temp\cookies\index.dat 2008-02-01 06:32:50 16384 --sha-w- c:\windows\temp\history\history.ie5\index.dat 2008-02-01 06:32:50 32768 --sha-w- c:\windows\temp\temporary internet files\content.ie5\index.dat ============= FINISH: 22:05:20.53 ===============