Help Analyzing Hijackthis Log[INACTIVE]


Recommended Posts

Okay, well I treat my computer really well, rarely download anything at all, and I can usually solve minor problems myself. However, lately I've been getting an error message on startup everyday saying "Updates from HP is unable to access its data directory. It is either invalid or unreachable, or there is another program accessing it." Also, my browser Mozilla Firefox has been crashing a lot. I scanned my computer with Comodo, but it found nothing. So I ran HijackThis (the log is posted below) and I was wondering if anything could help me out? It would be most appreciated =)

I have windows XP and my computer is an HP Pavilion a1000y.

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 7:55:19 PM, on 1/7/2008

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16574)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\LEXBCES.EXE

C:\WINDOWS\system32\LEXPPS.EXE

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Common Files\Seagate\Schedule2\schedul2.exe

C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

G:\Comodo\Comodo AntiMalware\BOCORE.exe

G:\Comodo\Comodo Firewall\cmdagent.exe

C:\Program Files\Comodo\common\CAVASpy\cavasm.exe

C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE

C:\WINDOWS\system32\HPZipm12.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\hkcmd.exe

C:\WINDOWS\system32\igfxpers.exe

C:\Program Files\HP\HP Software Update\HPWuSchd2.exe

C:\WINDOWS\system32\bcmwltry.exe

C:\Program Files\Common Files\Real\Update_OB\realsched.exe

C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe

C:\Program Files\Seagate\DiscWizard\DiscWizardMonitor.exe

C:\Program Files\Seagate\DiscWizard\TimounterMonitor.exe

C:\Program Files\Common Files\Seagate\Schedule2\schedhlp.exe

G:\Comodo\Comodo Firewall\cfp.exe

G:\iTunes\iTunesHelper.exe

G:\Comodo\Comodo AntiVirus\CMain.exe

G:\Comodo\COMODO~2\BOC425.exe

C:\Program Files\Comodo\VEngine\VEngine.exe

C:\WINDOWS\system32\ctfmon.exe

G:\Comodo\Comodo AntiVirus\Cavaud.exe

C:\Program Files\OpenOffice.org 2.3\program\soffice.exe

C:\Program Files\OpenOffice.org 2.3\program\soffice.BIN

G:\Mozilla\firefox.exe

C:\Program Files\iPod\bin\iPodService.exe

C:\WINDOWS\SOUNDMAN.EXE

C:\WINDOWS\ALCMTR.EXE

C:\WINDOWS\ALCWZRD.EXE

c:\windows\system\hpsysdrv.exe

G:\Hijack This\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...arm1=seconduser

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...arm1=seconduser

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...arm1=seconduser

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...arm1=seconduser

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: (no name) - {A2DA9276-0D8E-493D-BC21-7E3BECEC0EA7} - C:\WINDOWS\system32\pmnnm.dll (file missing)

O2 - BHO: Comodo VerificationEngine Browser Helper - {A968A4B4-C492-4834-B651-17602C3885C8} - C:\Program Files\Comodo\VEngine\ESigil.dll

O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe

O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe

O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe

O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run

O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe

O4 - HKLM\..\Run: [bcmwltry] bcmwltry.exe

O4 - HKLM\..\Run: [removecpl] RemoveCpl.exe

O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"

O4 - HKLM\..\Run: [DiscWizardMonitor.exe] C:\Program Files\Seagate\DiscWizard\DiscWizardMonitor.exe

O4 - HKLM\..\Run: [AcronisTimounterMonitor] C:\Program Files\Seagate\DiscWizard\TimounterMonitor.exe

O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program Files\Common Files\Seagate\Schedule2\schedhlp.exe"

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

O4 - HKLM\..\Run: [COMODO Firewall Pro] "G:\Comodo\Comodo Firewall\cfp.exe" -s

O4 - HKLM\..\Run: [iTunesHelper] "G:\iTunes\iTunesHelper.exe"

O4 - HKLM\..\Run: [cnfgCav] "G:\Comodo\Comodo AntiVirus\CMain.exe"

O4 - HKLM\..\Run: [bOC-425] G:\Comodo\COMODO~2\BOC425.exe

O4 - HKLM\..\Run: [VEngine] C:\Program Files\Comodo\VEngine\VEngine.exe

O4 - HKLM\..\RunServices: [Windows Recycler] ljmwjfh.exe

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'Default user')

O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe

O4 - Startup: OpenOffice.org 2.3.lnk = C:\Program Files\OpenOffice.org 2.3\program\quickstart.exe

O4 - Global Startup: Updates from HP.lnk = C:\Program Files\Updates from HP\9972322\Program\Updates from HP.exe

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll

O9 - Extra button: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm

O9 - Extra 'Tools' menuitem: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab

O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab

O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by117w.bay117.mail.live.com/mail/re...es/MsnPUpld.cab

O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/EN-US/a-UNO1/GAME_UNO1.cab

O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab

O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab

O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab

O16 - DPF: {CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA} (Java Plug-in 1.5.0) -

O16 - DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} (Java Plug-in 1.5.0_06) -

O16 - DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} (Java Plug-in 1.5.0_10) -

O16 - DPF: {CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA} (Java Plug-in 1.5.0_11) -

O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab31267.cab

O20 - AppInit_DLLs: C:\WINDOWS\system32\guard32.dll

O20 - Winlogon Notify: monln - C:\WINDOWS\SYSTEM32\monln.dll

O20 - Winlogon Notify: pmnnm - C:\WINDOWS\system32\pmnnm.dll (file missing)

O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Seagate\Schedule2\schedul2.exe

O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe

O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - G:\Avast\aswUpdSv.exe (file missing)

O23 - Service: avast! Antivirus - Unknown owner - G:\Avast\ashServ.exe (file missing)

O23 - Service: avast! Mail Scanner - Unknown owner - G:\Avast\ashMaiSv.exe (file missing)

O23 - Service: avast! Web Scanner - Unknown owner - G:\Avast\ashWebSv.exe (file missing)

O23 - Service: BOCore - COMODO - G:\Comodo\Comodo AntiMalware\BOCORE.exe

O23 - Service: COMODO Firewall Pro Helper Service (cmdAgent) - COMODO - G:\Comodo\Comodo Firewall\cmdagent.exe

O23 - Service: Comodo Anti-Virus and Anti-Spyware Service - Comodo Inc. - C:\Program Files\Comodo\common\CAVASpy\cavasm.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

--

End of file - 10286 bytes

Link to post
Share on other sites

Open HijackThis and place a check next to the following:

O2 - BHO: (no name) - {A2DA9276-0D8E-493D-BC21-7E3BECEC0EA7} - C:\WINDOWS\system32\pmnnm.dll (file missing)

O4 - HKLM\..\RunServices: [Windows Recycler] ljmwjfh.exe

O20 - Winlogon Notify: pmnnm - C:\WINDOWS\system32\pmnnm.dll (file missing)

Please download VundoFix.exe to your desktop

  • Double-click VundoFix.exe to run it.
  • Click the Scan for Vundo button.
  • Once it's done scanning, click the Remove Vundo button.
  • You will receive a prompt asking if you want to remove the files, click YES
  • Once you click yes, your desktop will go blank as it starts removing Vundo.
  • When completed, it will prompt that it will reboot your computer, click OK.
  • Please post the contents of C:\vundofix.txt and a the DSS from below in a reply to this thread.

Note: It is possible that VundoFix encountered a file it could not remove. In this case, VundoFix will run on reboot, simply follow the above instructions starting from "Click the Scan for Vundo button" when VundoFix appears upon rebooting.

Deckard's System Scanner

Download Deckard's System Scanner (DSS) to your Desktop. Note: You must be logged onto an account with administrator privileges.

  1. Close all applications and windows.
  2. Double-click on dss.exe to run it, and follow the prompts.
  3. When the scan is complete, two text files will open - main.txt <- this one will be maximized and extra.txt <-this one will be minimized
  4. Copy (Ctrl+A then Ctrl+C) and paste (Ctrl+V) the contents of main.txt here.
  5. Please attach extra.txt to your post.

To attach a file to a new post, simply

  1. Go to the Atachments section on the post composition page.(just below the text entry window), and
  2. copy and paste the following into the "Select a file" box:

    C:\Deckard\System Scanner\extra.txt


  3. Click Upload.

What DSS will do:

  • create a new System Restore point in Windows XP and Vista.
  • clean your Temporary Files, Downloaded Program Files, and Internet Cache Files, and also empty the Recycle Bin on all drives.
  • check some important areas of your system and produce a report for your analyst to review. DSS automatically runs HijackThis for you, but it will also install and place a shortcut to HijackThis on your desktop if you do not already have HijackThis installed.

Link to post
Share on other sites

Thank you so much for your help, but the error about updates from HP is still showing up on startup =(

VundoFix didn't find anything.....

"VundoFix V6.7.7

Checking Java version...

Scan started at 4:53:43 PM 1/8/2008

Listing files found while scanning....

No infected files were found.

Beginning removal..."

And nothing showed up on "main.txt" from DSS at all. "extra.txt" is attached.

Here is my new HijackThis log:

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 7:42:40 PM, on 1/8/2008

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16574)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\LEXBCES.EXE

C:\WINDOWS\system32\LEXPPS.EXE

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Common Files\Seagate\Schedule2\schedul2.exe

C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

G:\Comodo\Comodo AntiMalware\BOCORE.exe

G:\Comodo\Comodo Firewall\cmdagent.exe

C:\Program Files\Comodo\common\CAVASpy\cavasm.exe

C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE

C:\WINDOWS\system32\HPZipm12.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\hkcmd.exe

C:\WINDOWS\system32\igfxpers.exe

C:\Program Files\HP\HP Software Update\HPWuSchd2.exe

C:\WINDOWS\system32\bcmwltry.exe

C:\Program Files\Common Files\Real\Update_OB\realsched.exe

C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe

C:\Program Files\Seagate\DiscWizard\DiscWizardMonitor.exe

C:\Program Files\Seagate\DiscWizard\TimounterMonitor.exe

C:\Program Files\Common Files\Seagate\Schedule2\schedhlp.exe

G:\Comodo\Comodo Firewall\cfp.exe

G:\iTunes\iTunesHelper.exe

G:\Comodo\Comodo AntiVirus\CMain.exe

G:\Comodo\COMODO~2\BOC425.exe

C:\Program Files\Comodo\VEngine\VEngine.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\iPod\bin\iPodService.exe

G:\Comodo\Comodo AntiVirus\Cavaud.exe

C:\WINDOWS\SOUNDMAN.EXE

C:\WINDOWS\ALCMTR.EXE

C:\WINDOWS\ALCWZRD.EXE

c:\windows\system\hpsysdrv.exe

C:\WINDOWS\system32\wuauclt.exe

G:\Mozilla\firefox.exe

G:\Hijack This\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...arm1=seconduser

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...arm1=seconduser

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...arm1=seconduser

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...arm1=seconduser

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Comodo VerificationEngine Browser Helper - {A968A4B4-C492-4834-B651-17602C3885C8} - C:\Program Files\Comodo\VEngine\ESigil.dll

O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe

O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe

O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe

O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run

O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe

O4 - HKLM\..\Run: [bcmwltry] bcmwltry.exe

O4 - HKLM\..\Run: [removecpl] RemoveCpl.exe

O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"

O4 - HKLM\..\Run: [DiscWizardMonitor.exe] C:\Program Files\Seagate\DiscWizard\DiscWizardMonitor.exe

O4 - HKLM\..\Run: [AcronisTimounterMonitor] C:\Program Files\Seagate\DiscWizard\TimounterMonitor.exe

O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program Files\Common Files\Seagate\Schedule2\schedhlp.exe"

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

O4 - HKLM\..\Run: [COMODO Firewall Pro] "G:\Comodo\Comodo Firewall\cfp.exe" -s

O4 - HKLM\..\Run: [iTunesHelper] "G:\iTunes\iTunesHelper.exe"

O4 - HKLM\..\Run: [cnfgCav] "G:\Comodo\Comodo AntiVirus\CMain.exe"

O4 - HKLM\..\Run: [bOC-425] G:\Comodo\COMODO~2\BOC425.exe

O4 - HKLM\..\Run: [VEngine] C:\Program Files\Comodo\VEngine\VEngine.exe

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'Default user')

O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe

O4 - Startup: OpenOffice.org 2.3.lnk = C:\Program Files\OpenOffice.org 2.3\program\quickstart.exe

O4 - Global Startup: Updates from HP.lnk = C:\Program Files\Updates from HP\9972322\Program\Updates from HP.exe

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll

O9 - Extra button: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm

O9 - Extra 'Tools' menuitem: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab

O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab

O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by117w.bay117.mail.live.com/mail/re...es/MsnPUpld.cab

O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/EN-US/a-UNO1/GAME_UNO1.cab

O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab

O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab

O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab

O16 - DPF: {CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA} (Java Plug-in 1.5.0) -

O16 - DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} (Java Plug-in 1.5.0_06) -

O16 - DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} (Java Plug-in 1.5.0_10) -

O16 - DPF: {CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA} (Java Plug-in 1.5.0_11) -

O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab31267.cab

O20 - AppInit_DLLs: C:\WINDOWS\system32\guard32.dll

O20 - Winlogon Notify: monln - C:\WINDOWS\SYSTEM32\monln.dll

O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Seagate\Schedule2\schedul2.exe

O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe

O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - G:\Avast\aswUpdSv.exe (file missing)

O23 - Service: avast! Antivirus - Unknown owner - G:\Avast\ashServ.exe (file missing)

O23 - Service: avast! Mail Scanner - Unknown owner - G:\Avast\ashMaiSv.exe (file missing)

O23 - Service: avast! Web Scanner - Unknown owner - G:\Avast\ashWebSv.exe (file missing)

O23 - Service: BOCore - COMODO - G:\Comodo\Comodo AntiMalware\BOCORE.exe

O23 - Service: COMODO Firewall Pro Helper Service (cmdAgent) - COMODO - G:\Comodo\Comodo Firewall\cmdagent.exe

O23 - Service: Comodo Anti-Virus and Anti-Spyware Service - Comodo Inc. - C:\Program Files\Comodo\common\CAVASpy\cavasm.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

--

End of file - 9961 bytes

extra.txt

Link to post
Share on other sites

Will you check in the C:\Deckard folder and see if there is a copt of the main.txt in there.

I'm thinking it maybe got erased from Notepad somehow when it opened.

I've never see it create an extra and NOT a main before. Ill post more once I get home from work this afternoon.

Link to post
Share on other sites

Yeah, there is a main there but it is completely empty. However, I found another file called "moved.txt" which kind of looks like it might be what you're looking for. How that happened I have absolutely no idea, but here it is:

Directories/Files moved to C:\Deckard\System Scanner\backup

2007-04-03 20:08:51 0 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\$27741BB3.t$m

2007-02-28 22:00:13 2128 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\%CUUNI000.2007Feb28-190013.LOG

2007-02-28 22:12:57 2113 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\%CUUNI000.2007Feb28-191257.LOG

2005-11-02 19:30:42 3584 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\18e1b0.mst

2007-11-13 12:47:02 4364800 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\2a7b3e.msi

2007-12-19 16:13:46 14475264 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\2b4c2a.msi

2007-12-16 16:43:45 0 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\2l67D.tmp

2007-11-28 18:41:21 0 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\2ou185.tmp

2005-11-02 19:30:42 3584 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\327164.mst

2005-11-02 19:30:42 3584 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\328d0a.mst

2005-11-02 19:30:42 3584 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\51c50b.mst

2005-11-02 19:30:42 3584 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\521e37.mst

2005-11-02 19:30:42 3584 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\52b278.mst

2005-11-02 19:30:42 3584 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\539ead.mst

2005-11-02 19:30:42 3584 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\53aae2.mst

2005-11-02 19:30:42 3584 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\53b2f0.mst

2005-11-02 19:30:42 3584 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\53b998.mst

2005-11-02 19:30:42 3584 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\53c2a0.mst

2005-11-02 19:30:42 3584 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\53ea5c.mst

2007-05-04 18:36:53 778 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\5QWZ366M.htm

2007-07-31 18:47:52 22074880 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\6cecc.msi

2007-12-11 21:05:42 102324 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\71e1_appcompat.txt

2007-11-24 22:05:23 88226 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\7481_appcompat.txt

2007-12-20 15:04:36 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\7zS7A.tmp

2005-11-02 19:30:42 3584 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\91b1d.mst

2007-08-19 13:47:40 24135232 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\aax16A.tmp.exe <Verified; DivX, Inc.; >

2007-12-27 13:50:15 26056 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\AAX6B.tmp

2007-08-18 21:45:27 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Adobe

2007-12-27 17:25:33 59964 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Adobelm_Cleanup.0001 <Not Verified; Macrovision Europe Ltd.; Macrovision Europe Ltd. Cleanup>

2007-03-25 19:40:31 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Adobelm_Cleanup.0001.dir.0001

2007-03-18 00:36:05 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Adobelm_Cleanup.0001.dir.0002

2007-11-17 18:29:43 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Adobelm_Cleanup.0001.dir.0003

2007-10-11 18:51:28 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Adobelm_Cleanup.0001.dir.0006

2007-10-14 16:29:53 14444 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\All_The_Pretty_Horses.avi.torrent

2007-12-19 17:36:25 4392 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\ASPNETSetup.log

2007-08-05 13:56:44 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\AutoRun

2005-10-11 11:05:19 733184 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\AutoRun.exe <Not Verified; Electronic Arts Inc.; Electronic Arts AutoRun>

2005-10-10 13:32:44 573440 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\AutoRunGUI.dll <Not Verified; Electronic Arts Inc.; AutoRun GUI>

2007-10-08 16:55:14 622474 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\avg7inst.log

2007-07-04 12:36:18 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\bye10E.tmp

2002-01-01 02:23:10 29772 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\c704_appcompat.txt

2007-07-06 23:17:00 29654 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\c93b_appcompat.txt

2007-11-25 11:42:40 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\CDIResData

2007-12-19 17:39:26 31396 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\cleanup_actions.log

2007-12-19 17:39:34 560 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\cleanup_errors.log

2007-12-19 17:39:34 369052 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\cleanup_main.log

2007-11-23 14:04:33 5924 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Click.wav

2007-11-24 18:01:37 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\comodo

2007-11-25 11:25:00 454447 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\comodo Uninstall.zip

2007-02-22 22:12:21 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\CopyFileList

2007-11-24 18:01:12 155 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\debugf.txt

2007-11-25 11:34:51 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Drivers

2007-11-23 22:41:37 88226 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\e159_appcompat.txt

2002-01-01 02:23:14 71768 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\E186.dmp

2007-12-08 19:16:49 0 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\e53DC.tmp

2005-10-11 11:05:19 339968 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\eauninstall.exe <Not Verified; Electronic Arts Inc.; EA Uninstall>

2007-08-06 19:37:24 27 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\enum.txt

2007-06-01 00:45:08 70294 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\f184_appcompat.txt

2008-01-07 17:52:45 1279573 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\fla15.tmp

2007-12-20 12:32:58 2079718 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\fla7.tmp

2007-12-21 13:01:21 1655469 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\fla8.tmp

2007-12-20 12:33:19 58071 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\flaA.tmp

2007-11-24 22:42:25 304 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\GEARInstall.log

2005-09-08 14:44:41 73728 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Harry Potter and the Goblet of Fire_uninst.exe <Not Verified; Electronic Arts Inc.; Uninstall CDKey>

2007-04-10 21:13:58 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPHMSI_BufferChm.log

2007-04-10 21:14:14 462 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPHMSI_CustomerResearchQFolder.log

2007-04-10 21:16:15 462 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPHMSI_DeviceManagementQFolder.log

2007-04-10 21:12:21 554 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPHMSI_eSupportQFolder.log

2007-04-10 21:15:25 278 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPHMSI_hph_software.log

2007-04-10 21:15:32 278 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPHMSI_hph_software_req.log

2007-04-10 21:17:03 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPHMSI_HPPhotoSmartExpress.log

2007-04-10 21:13:23 554 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPHMSI_hpproductassistant.log

2007-04-10 21:15:05 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPHMSI_ImageZoneExpress.log

2007-04-10 21:14:17 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPHMSI_Mars.log

2007-04-10 21:15:35 370 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPHMSI_Readme.log

2007-04-10 21:13:53 462 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPHMSI_SolutionCenter.log

2007-04-10 21:16:49 462 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPHMSI_Status.log

2007-04-10 21:16:53 278 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPHMSI_Toolbox.log

2007-04-10 21:16:40 278 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPHMSI_TrayApp.log

2007-04-10 21:16:31 278 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPHMSI_Unload.log

2007-04-10 21:16:04 370 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPHMSI_WebReg.log

2005-06-01 16:23:46 14467 -----n--- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hphscr08.dat

2007-08-19 14:14:32 22751 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPHscr12.dat

2007-02-28 22:05:00 45674 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPHUNI008.2007Feb28-190500.LOG

2007-08-19 14:15:16 31051 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPHUNI012.2007Aug19-141516.LOG

2005-04-20 04:03:28 6700 -----n--- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpiscr01.dat

2007-02-28 22:03:22 7923 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPIUNI001.2007Feb28-190322.LOG

2007-02-28 22:05:25 2147 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpoapd000.log

2007-08-19 14:14:35 554402 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpodvd09.log

2005-05-23 20:27:04 21124 -----n--- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpomdl07.dat

2005-05-23 20:24:34 10986 -----n--- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hposcr07.dat

2007-02-28 22:07:23 101478 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpoUNI007.2007Feb28-190723.LOG

2007-08-19 14:10:27 27394 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpqbud01.dat

2005-05-11 18:17:28 17288 -----n--- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpqbud04.dat

2007-08-19 13:54:39 23067 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpqbud05.dat

2007-08-19 13:56:40 22863 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpqhsc01.dat

2005-06-01 16:01:28 19604 -----n--- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpqscr01.dat

2007-08-19 13:56:11 2237 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpqUNI000.2007Aug19-135611.LOG

2007-08-19 13:57:09 1746 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpqUNI000.2007Aug19-135709.LOG

2007-08-19 14:12:38 1772 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpqUNI001.2007Aug19-141238.LOG

2007-08-04 18:41:50 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPSU7-7E.NPM

2007-03-31 20:57:16 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPSU89GO.48G

2007-08-04 18:41:52 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPSUGJYN.DJ1

2007-08-04 18:41:39 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\HPSUMQDD.GB8

2007-04-10 21:14:06 2221 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzarp000.log

2007-04-10 21:14:21 2220 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzarp001.log

2007-04-10 21:16:11 2477 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzarp002.log

2007-04-10 21:17:10 2225 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzarp003.log

2007-04-10 21:12:01 1791 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzcdl000.log

2007-04-10 21:23:39 2558 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzcdl001.log

2007-04-10 21:24:14 2573 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzcdl002.log

2007-08-19 13:24:51 2524 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzcdl003.log

2007-08-19 13:24:53 2534 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzcdl004.log

2007-04-10 21:09:07 8574 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzchk000.log

2007-04-10 21:11:44 4349 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzdui000.log

2006-06-04 00:16:04 216864 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzEN4pi.hlp

2007-04-10 21:09:24 1787 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzgat000.log

2007-02-28 21:55:30 752 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi000.log

2007-02-28 21:55:38 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi001.log

2007-02-28 21:55:44 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi002.log

2007-02-28 21:56:50 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi003.log

2007-02-28 21:56:53 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi004.log

2007-02-28 21:56:56 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi005.log

2007-02-28 21:57:04 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi006.log

2007-02-28 21:57:07 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi007.log

2007-02-28 21:57:18 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi008.log

2007-02-28 21:57:23 4766 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi009.log

2006-02-03 11:15:05 1101824 -----n--- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi01.exe <Not Verified; Hewlett-Packard; HP Installer>

2007-02-28 21:57:30 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi010.log

2007-02-28 21:57:40 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi011.log

2007-02-28 22:00:40 752 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi012.log

2007-02-28 22:00:54 1350 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi013.log

2007-02-28 22:03:56 1216 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi014.log

2007-02-28 22:04:06 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi015.log

2007-02-28 22:04:33 1350 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi016.log

2007-02-28 22:05:26 752 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi017.log

2007-02-28 22:05:46 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi018.log

2007-02-28 22:06:03 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi019.log

2007-02-28 22:06:06 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi020.log

2007-02-28 22:06:24 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi021.log

2007-02-28 22:06:47 1126 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi022.log

2007-02-28 22:06:53 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi023.log

2007-02-28 22:08:32 752 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi024.log

2007-02-28 22:08:39 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi025.log

2007-02-28 22:08:48 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi026.log

2007-02-28 22:09:09 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi027.log

2007-02-28 22:09:28 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi028.log

2007-02-28 22:09:52 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi029.log

2007-02-28 22:10:02 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi030.log

2007-02-28 22:10:10 992 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi031.log

2007-02-28 22:11:09 753 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi032.log

2007-02-28 22:12:48 993 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi033.log

2007-04-10 21:13:59 4849 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi034.log

2007-04-10 21:14:02 1834 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi035.log

2007-04-10 21:14:17 3233 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi036.log

2007-04-10 21:14:19 1834 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi037.log

2007-04-10 21:15:05 2512 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi038.log

2007-04-10 21:16:04 4379 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi039.log

2007-04-10 21:16:06 2182 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi040.log

2007-04-10 21:17:04 6254 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi041.log

2007-04-10 21:17:07 2298 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi042.log

2007-04-10 21:17:27 1718 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi043.log

2007-04-10 21:17:29 2310 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi044.log

2007-04-10 21:17:30 1718 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi045.log

2007-04-10 21:23:37 2493 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi046.log

2007-04-10 21:24:12 2341 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi047.log

2007-04-10 21:24:28 2298 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi048.log

2007-08-19 13:24:54 2068 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi049.log

2007-08-19 13:55:04 1791 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi050.log

2007-08-19 13:55:08 2041 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi051.log

2007-08-19 13:55:27 2199 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi052.log

2007-08-19 13:55:34 2065 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi053.log

2007-08-19 13:55:45 2065 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi054.log

2007-08-19 13:56:47 1793 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi055.log

2007-08-19 13:56:56 2067 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi056.log

2007-08-19 14:10:53 1793 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi057.log

2007-08-19 14:11:19 2182 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi058.log

2007-08-19 14:11:39 2182 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi059.log

2007-08-19 14:12:14 2067 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi060.log

2007-08-19 14:12:19 2067 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi061.log

2007-08-19 14:12:33 2067 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi062.log

2007-08-19 14:14:36 1793 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi063.log

2007-08-19 14:14:38 2067 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi064.log

2007-08-19 14:14:42 2067 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi065.log

2007-08-19 14:14:59 2067 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzmsi066.log

2007-04-10 21:09:55 1416 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpznop000.log

2007-04-10 21:12:02 1719 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpznop001.log

2007-04-10 21:09:07 5718 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzopt000.log

2007-04-10 20:50:38 82126 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzpad000.htm

2007-04-10 21:48:44 23686 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzpad001.htm

2007-08-19 13:25:19 13870 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzpad002.htm

2007-04-10 21:07:57 1338 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzpnp000.log

2007-04-10 21:10:43 3904 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzpnp001.log

2007-04-10 21:17:26 2703 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzpnp002.log

2007-04-10 21:09:31 2024 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzprl000.log

2007-04-10 21:09:59 2414 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzprl001.log

2007-04-10 21:10:01 2348 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzprl002.log

2007-04-10 21:10:20 4785 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzprl003.log

2007-04-10 21:11:55 2372 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzprl004.log

2007-04-10 21:11:57 2369 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzprl005.log

2007-04-10 21:12:09 2003 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzprl006.log

2007-04-10 21:14:06 2267 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzprl007.log

2007-04-10 21:14:20 2329 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzprl008.log

2007-04-10 21:15:08 1991 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzprl009.log

2007-04-10 21:17:10 2333 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzprl010.log

2007-04-10 21:17:24 3374 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzprl011.log

2007-04-10 21:07:58 1735 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzpsc000.log

2007-04-10 21:09:08 2102 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzpsc001.log

2007-04-10 21:42:43 4215 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzpsl000.log

2007-08-19 13:25:14 4220 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzpsl001.log

2007-04-10 21:09:35 2046 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzrcv000.log

2007-04-10 21:16:09 1827 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzrcv001.log

2007-04-10 21:16:10 2199 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzrcv002.log

2007-04-10 21:17:28 1827 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzrcv003.log

2007-04-10 21:08:15 2810 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzrei000.log

2007-02-20 21:33:31 942 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr000.log

2007-02-20 21:33:41 904 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr001.log

2007-02-28 21:54:36 825 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr002.log

2007-02-28 22:00:13 12691 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr003.log

2007-02-28 22:00:26 860 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr004.log

2007-02-28 22:00:32 940 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr005.log

2007-02-28 22:00:37 860 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr006.log

2007-02-28 22:03:22 6337 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr007.log

2007-02-28 22:03:34 942 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr008.log

2007-02-28 22:05:00 8959 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr009.log

2006-02-03 11:18:51 978944 -----n--- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr01.exe <Not Verified; Hewlett-Packard; HP Installer>

2005-06-01 16:01:28 10621 -----n--- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr01.exe.dat

2007-02-28 22:05:11 970 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr010.log

2007-02-28 22:07:23 25795 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr011.log

2007-02-28 22:07:38 837 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr012.log

2007-02-28 22:10:31 8724 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr013.log

2007-02-28 22:08:34 119236 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr013_MSI_0.log

2007-02-28 22:11:03 830 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr014.log

2007-02-28 22:12:57 6318 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr015.log

2007-02-28 22:11:10 116950 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr015_MSI_0.log

2007-02-28 22:13:14 824 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr016.log

2007-02-28 22:13:23 848 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr017.log

2007-08-19 13:56:11 9200 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr019.log

2007-08-19 13:55:07 110838 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr019_MSI_0.log

2007-08-19 13:56:40 2090 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr020.log

2007-08-19 13:57:09 7836 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr021.log

2007-08-19 13:56:48 109812 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr021_MSI_0.log

2007-08-19 14:10:28 2299 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr022.log

2007-08-19 14:12:52 10492 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr023.log

2007-08-19 14:10:58 109248 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr023_MSI_0.log

2007-08-19 14:14:06 2378 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr024.log

2007-08-19 14:14:25 2383 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr025.log

2007-08-19 14:14:33 2378 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr026.log

2007-08-19 14:15:22 14001 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzscr027.log

2007-04-10 21:17:44 18625 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzset000.log

2007-04-10 21:14:08 1589 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzset001.log

2007-04-10 21:14:22 1590 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzset002.log

2007-04-10 21:16:07 1589 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzset003.log

2007-04-10 21:17:12 1589 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzset004.log

2007-04-10 21:25:41 3790 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzset005.log

2007-04-10 21:43:14 3725 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzset006.log

2007-08-19 13:25:17 4589 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzset007.log

2007-04-10 21:08:43 1539 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzshl000.log

2007-04-10 21:09:52 4954 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzshl001.log

2007-04-10 21:12:00 1539 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzshl002.log

2007-04-10 21:12:10 1535 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzshl003.log

2007-04-10 21:09:24 3430 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzsui000.log

2007-04-10 21:10:20 1450 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzwis000.log

2007-04-10 21:17:25 1466 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzwis001.log

2007-04-10 21:09:39 1482 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzwrp000.log

2007-04-10 21:09:55 1507 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzwrp001.log

2007-04-10 21:10:39 1526 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzwrp002.log

2007-04-10 21:08:41 3437 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpzwup000.log

2007-04-10 21:24:11 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_MSI.D2300_help_install.log

2007-04-10 21:23:34 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_MSI.D2300_install.log

2007-02-28 22:09:51 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{00f3791b-7a9f-41e9-92ac-9fe6ea96c48c}_PC_{6BB6627C-694F-4FDC-A3E5-C7F4BED4C724}_uninstall.log

2007-02-28 22:06:47 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{105d9372-3ced-4e84-b864-3afb2245164a}_PC_{C506A18C-1469-4678-B094-F4EC9DAE6DB7}_uninstall.log

2007-08-19 13:56:56 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{10e65ed7-1ce3-4422-896b-fa5055abeb5e}_PC_{E1B80DEE-A795-4258-8445-074C06AE3AB8}_uninstall.log

2007-02-28 22:03:56 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{1b80e5e7-5e21-4314-aa4f-2aa91129e069}_PC_{769A295C-DCF4-41d6-AFBA-7D9394B23AFE}_uninstall.log

2007-02-28 21:56:50 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{1ebbfb17-01cc-45cc-8754-62e7f6016186}_PC_{03B1B42B-F6DE-41d9-8CFF-DC44E895C7A7}_uninstall.log

2007-08-19 13:55:27 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{29288fbb-da46-4ac2-84b9-7a8367fe60df}_PC_{4EA684E9-5C81-4033-A696-3019EC57AC3A}_uninstall.log

2007-02-28 22:00:54 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{2b7ebc13-83e6-441c-9be3-79b28ce62797}_PC_{D518592A-0F1E-40ca-BECB-3D3F026C6B0D}_uninstall.log

2007-08-19 14:14:38 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{2bcf3e02-e502-4bf8-a34e-de3ff746bfe6}_PC_{D297A783-A680-4FDB-8882-913EBA36ABC5}_uninstall.log

2007-02-28 22:06:06 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{2ceebe3c-3d89-47ce-813a-c478f50e750b}_PC_{923A7F5A-1E8C-4FBE-8DF6-85940A60A79F}_uninstall.log

2007-02-28 22:08:39 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{348082c7-a032-4e1d-9b2a-41514c010335}_PC_{30C19FF2-7FBA-4d09-B9DE-1659977F64F6}_uninstall.log

2007-08-19 14:11:19 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{348082c7-a032-4e1d-9b2a-41514c010335}_PC_{DBC20735-34E6-4E97-A9E5-2066B66B243D}_uninstall.log

2007-02-28 22:10:02 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{37c5aa16-1efa-4d0c-b703-4573cc509a79}_PC_{A195B13E-A5E3-4BAF-A995-7F70F445CD06}_uninstall.log

2007-02-28 21:57:29 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{3b0f86b7-5cdc-4bde-a9f5-6befeb0e0a17}_PC_{5A01C58E-B0EC-49b9-AD71-7C0468688087}_uninstall.log

2007-02-28 22:12:48 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{3cdbd1aa-6043-454b-b3bf-29942a8da384}_PC_{172975EB-9465-4861-95B5-C7BB6D3DE62A}_uninstall.log

2007-08-19 14:11:38 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{3e1bd9d1-80f1-4965-824d-05587bd19fd5}_PC_{8331C3EA-0C91-43AA-A4D4-27221C631139}_uninstall.log

2007-02-28 22:08:48 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{3e1bd9d1-80f1-4965-824d-05587bd19fd5}_PC_{F4C2E5F5-2970-45f4-ABD3-C180C4D961C4}_uninstall.log

2007-02-28 21:55:44 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{4994e013-5933-4c44-8623-3874aa3a2a79}_PC_{A5BB5365-EFB4-44c3-A7E2-EB59B7EFD23D}_uninstall.log

2007-02-28 22:06:03 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{4ae0341a-e7d6-432f-9b4f-54b29fdd6e60}_PC_{0B33B738-AD79-4E32-90C5-E67BFB10BBFF}_uninstall.log

2007-02-28 22:05:46 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{54f90653-039f-4dea-88b9-a52874aa7845}_PC_{7850A6D2-CBEA-4728-9877-F1BEDEA9F619}_uninstall.log

2007-02-28 22:06:24 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{56eb7e15-6a60-40f6-ab41-7a494d9993f0}_PC_{CE24344F-DFD8-40C8-8FD8-C9740B5F25AC}_uninstall.log

2007-02-28 21:57:07 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{59287a8a-b1d4-4573-9b4c-3f0450ce4580}_PC_{23A7B376-BBEC-4e76-BBD7-0F155E70D74B}_uninstall.log

2007-08-19 13:55:45 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{65b97cfb-5cfb-4764-badc-0b3a756e761c}_PC_{C7F54CF8-D6FB-4E0A-93A3-E68AE0D6C476}_uninstall.log

2007-08-19 14:12:33 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{666355f1-58ed-4c37-828e-320026095d4e}_PC_{2376813B-2E5A-4641-B7B3-A0D5ADB55229}_uninstall.log

2007-08-19 13:55:34 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{68fce472-ccc6-4113-a478-3d29fc934ea0}_PC_{45B8A76B-57EC-4242-B019-066400CD8428}_uninstall.log

2007-02-28 21:55:38 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{68fce472-ccc6-4113-a478-3d29fc934ea0}_PC_{B996AE66-10DB-4ac5-B151-E8B4BFBC42FC}_uninstall.log

2007-08-19 14:14:42 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{71d4e088-f159-4b74-980f-5c5073e5ddd4}_PC_{ACCCEE83-B49B-4964-8A4F-378B8FBC9F75}_uninstall.log

2007-02-28 22:06:53 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{77bd9473-3161-41c4-a9c9-2765defdddbf}_PC_{54E3707F-808E-4fd4-95C9-15D1AB077E5D}_uninstall.log

2007-02-28 21:57:04 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{807fd1a3-51a9-4d13-adde-4612c743e522}_PC_{36E47DA1-10E1-45d9-8B19-14D19607CDCF}_uninstall.log

2007-08-19 14:14:59 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{8d3a99d4-6579-4f84-8c90-cd45d321a5d2}_PC_{36DC3E2F-CD8C-4953-9E8F-9A1916D10AA1}_uninstall.log

2007-08-19 14:12:19 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{95660bf7-6ad6-40ed-af18-f14bb0a49b29}_PC_{6909F917-5499-482e-9AA1-FAD06A99F231}_uninstall.log

2007-02-28 22:09:28 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{9716d554-3fbd-4dfd-8ae0-424efd722d74}_PC_{09984AEC-6B9F-4ca7-B78D-CB44D4771DA3}_uninstall.log

2007-02-28 21:57:18 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{ac4dd9e8-7332-41bb-9796-319dd3b34f57}_PC_{56EE8B17-8274-418d-89AC-C057C5DB251E}_uninstall.log

2007-02-28 22:09:09 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{b0564e46-594f-4e69-aef9-aee9c73050b8}_PC_{2CADCEAB-D5DA-44D6-B5FC-7DEE87AB3C0C}_uninstall.log

2007-08-19 14:12:14 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{b0564e46-594f-4e69-aef9-aee9c73050b8}_PC_{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}_uninstall.log

2007-02-28 21:57:23 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{bab4537d-89e3-44ff-bc16-2a02c84a1986}_PC_{21DB3D90-D816-4092-A260-CA3F6B55A6DD}_uninstall.log

2007-02-28 22:04:06 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{bc20db0a-0568-4377-8cec-e972b1a6cefc}_PC_{755EC5E3-FD51-46bd-A57F-7A2D56FBF061}_uninstall.log

2007-02-28 21:56:53 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{bc66aab3-06a3-444f-9cb6-40e092b3cd93}_PC_{66BA8C26-AFE4-4408-807B-43E76B57EF53}_uninstall.log

2007-02-28 22:04:33 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{c29362fb-a0c9-4bf8-b7ed-18122d686fb0}_PC_{A3455242-DAE0-4523-8242-FD82706ABF4B}_uninstall.log

2007-02-28 21:57:40 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{c6b3fd9c-72e6-4033-b0d4-4f07884aa254}_PC_{32BDCCB8-9DC8-496d-9DB1-F77510775BDB}_uninstall.log

2007-02-28 22:10:10 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{e05aaab8-a631-4790-8b28-4889fd3cd0bd}_PC_{B4D279F1-4309-49cc-A4B5-3A0D2E59C7B5}_uninstall.log

2007-02-28 21:56:56 186 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hpz_UC_{ec8829e5-f58f-4eb3-857c-36c6acf51e99}_PC_{7E27304E-BAA2-4d90-A34E-76641FAFABB4}_uninstall.log

2007-12-29 23:03:47 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\hsperfdata_HP_Owner

2005-11-02 19:25:24 24613 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\IadHide5.dll <Not Verified; BackWeb; BackWeb IAdHide>

2007-10-08 16:56:48 1994 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\IMT15.xml

2007-10-08 16:56:49 426 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\IMT16.xml

2007-10-08 16:56:49 707340 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\IMT17.xml

2007-08-25 16:19:26 1994 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\IMT58.xml

2007-08-25 16:19:26 426 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\IMT59.xml

2007-08-25 16:19:26 707340 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\IMT5A.xml

2005-08-22 03:57:26 87286 -----n--- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\isdialogbanner.bmp

2005-08-22 03:57:26 87286 -----n--- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\isdialogbannerrtl.bmp

2005-08-22 03:57:27 472310 -----n--- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\isdialogbitmap.bmp

2005-08-22 03:57:27 472310 -----n--- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\isdialogbitmaprtl.bmp

2007-11-23 22:31:39 1635 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\iTunes75Setup8C0.log

2007-11-23 22:18:07 1635 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\iTunes75SetupB30.log

2007-11-23 22:38:44 1635 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\iTunes75SetupD0C.log

2007-11-23 22:38:39 824846 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\iTunesSetupAdmin32C.log

2007-11-24 21:28:27 826 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\iTunesSetupAdmin678.log

2007-08-25 16:01:59 756 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\iTunesSetupAdmin7D4.log

2007-08-05 10:00:28 823 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\iTunesSetupAdminAAC.log

2007-08-05 09:17:08 1613 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\iTunesSetupFD8.log

2007-08-05 09:17:05 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\IXP377.TMP

2007-12-01 16:23:13 193484 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\jar_cache16941.tmp

2007-12-01 20:50:30 1638598 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\jar_cache16942.tmp

2007-04-05 21:10:41 0 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\java_install.log

2007-12-29 17:53:32 18488 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\java_install_reg.log

2007-08-05 19:37:23 1160 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\jinstall.cfg

2008-01-08 16:36:22 230892 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\jusched.log

2007-05-04 18:36:53 778 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\KWB9LESN.htm

2007-12-05 15:15:39 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\MessengerCache

2007-10-08 16:08:26 27412 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\mkd2jvgj.exe

2007-08-19 13:45:01 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\mod166.tmp

2007-11-04 11:44:53 49710 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\moz-screenshot.jpg

2007-07-29 21:52:50 67560 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\mpa02528

2007-11-23 22:38:43 120012 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\MSI4108b.LOG

2007-11-23 22:18:07 514 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\MSI420ec.LOG

2007-11-23 22:38:39 119786 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\MSI4d916.LOG

2007-11-23 22:31:39 514 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\MSI6d2d.LOG

2007-12-18 21:28:05 764 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\MSI83cb8.LOG

2007-08-19 13:40:31 326 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\MSI86a7.LOG

2007-12-19 17:33:24 786 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\MSIa3d03.LOG

2007-08-19 14:08:49 454 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\MSIa5568.LOG

2007-12-18 21:17:11 822 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\MSIaed90.LOG

2007-12-19 17:16:14 764 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\MSIdc5e9.LOG

2007-04-10 21:14:15 312 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\MsiExe000.log

2007-08-19 13:56:54 5576 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\MsiExe001.log

2007-11-28 18:36:05 0 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\n7917F.tmp

2007-11-22 10:47:18 193 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\News.txt

2007-08-19 11:29:08 56 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\nswnetoc.txt

2007-12-20 13:51:24 1542888 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\nxquf3we.exe

2007-03-25 19:40:33 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\OLSUpdate

2007-10-14 15:53:57 11783 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\o{SUMOTorrent.com}o_All_the_Pretty_Horses_Matt_Damon.torrent

2007-09-03 11:07:20 0 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\PCDR_CUI.lock

2007-05-08 23:20:10 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\pdk-HP_Owner

2002-01-01 00:10:33 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_100.dat

2007-04-04 20:49:52 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_104.dat

2007-03-25 12:27:05 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_1c0.dat

2007-02-18 19:11:19 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_1c4.dat

2007-03-26 12:18:09 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_1d8.dat

2007-08-16 18:29:27 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_1e0.dat

2007-07-29 21:49:28 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_1e8.dat

2007-05-17 18:15:22 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_224.dat

2007-05-15 20:11:52 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_240.dat

2007-08-12 01:29:00 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_244.dat

2007-03-30 22:57:16 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_268.dat

2007-08-12 01:56:40 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_278.dat

2007-03-18 11:37:28 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_2b0.dat

2007-08-12 01:48:32 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_2b4.dat

2007-08-25 13:50:59 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_2bc.dat

2007-08-07 10:18:44 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_2d8.dat

2007-05-22 17:22:14 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_2e4.dat

2007-05-14 21:07:17 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_2e8.dat

2007-05-21 15:35:27 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_2f0.dat

2007-03-20 13:03:35 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_308.dat

2007-05-21 14:24:19 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_30c.dat

2007-03-31 18:02:43 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_324.dat

2007-08-11 04:29:01 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_330.dat

2007-08-17 19:42:08 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_338.dat

2007-08-06 10:49:49 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_35c.dat

2007-08-10 18:26:17 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_394.dat

2007-08-05 11:28:24 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_3b8.dat

2007-08-07 09:36:19 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_3f0.dat

2007-04-21 21:26:17 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_440.dat

2007-02-27 17:59:42 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_47c.dat

2007-03-25 12:14:37 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_480.dat

2007-03-16 20:58:56 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_4a4.dat

2007-08-10 18:35:02 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_4bc.dat

2007-05-21 14:13:33 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_4d4.dat

2007-03-21 20:51:14 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_4dc.dat

2007-03-26 21:21:22 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_4e0.dat

2007-04-10 19:52:15 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_530.dat

2007-08-15 20:11:36 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_538.dat

2007-05-17 18:28:07 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_574.dat

2007-08-14 08:15:42 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_590.dat

2007-08-25 10:57:03 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_5a4.dat

2007-08-07 20:37:13 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_5ac.dat

2002-01-01 15:18:52 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_5e0.dat

2007-03-24 15:07:51 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_5fc.dat

2007-08-11 04:59:20 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_61c.dat

2007-08-12 01:17:59 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_628.dat

2007-08-06 10:22:01 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_630.dat

2007-08-08 19:56:43 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_650.dat

2007-08-12 01:13:37 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_658.dat

2007-08-06 09:15:31 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_668.dat

2007-08-12 01:35:26 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_680.dat

2007-08-07 19:58:09 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_684.dat

2007-08-25 13:31:27 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_6a8.dat

2007-08-25 14:27:04 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_6c4.dat

2007-08-25 11:08:16 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_6c8.dat

2007-02-28 19:43:07 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_700.dat

2007-04-03 20:07:02 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_728.dat

2007-04-02 21:49:46 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_774.dat

2007-08-12 00:41:58 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_7a8.dat

2007-02-20 19:43:26 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_7e4.dat

2007-05-21 14:16:43 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_81c.dat

2007-04-19 22:37:49 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_85c.dat

2007-10-11 17:43:13 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_86c.dat

2007-02-28 19:39:40 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_87c.dat

2007-08-14 08:23:59 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_8b4.dat

2007-12-09 09:47:39 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_99c.dat

2007-12-21 13:04:52 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_9ac.dat

2007-03-31 12:58:55 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_9b4.dat

2007-11-11 20:48:04 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_9d4.dat

2007-12-17 16:11:54 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_a48.dat

2007-08-12 06:10:02 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_ac.dat

2007-08-05 09:39:12 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_c5c.dat

2007-08-05 09:24:21 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_c6c.dat

2007-12-20 12:29:34 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_cc8.dat

2007-02-20 00:08:27 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_d0.dat

2007-08-11 04:43:24 16384 --a-----t C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Perflib_Perfdata_d8.dat

2007-10-28 11:01:11 202887168 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Photoshop Temp11845

2007-10-10 19:08:19 242491392 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Photoshop Temp123757

2007-09-15 15:43:47 176394240 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Photoshop Temp124833

2007-07-05 16:52:25 121380864 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Photoshop Temp14535

2007-03-17 23:41:13 165715968 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Photoshop Temp26211

2007-11-14 16:18:42 222351360 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Photoshop Temp26535

2007-03-25 19:57:14 146657280 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Photoshop Temp295307

2007-07-05 12:21:04 92184576 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Photoshop Temp31375

2007-09-03 11:37:57 271822848 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Photoshop Temp364144

2007-10-10 19:37:54 313995264 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Photoshop Temp51917

2007-07-05 15:59:31 196128768 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Photoshop Temp704293

2007-11-04 13:13:53 331161600 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Photoshop Temp739147

2007-11-16 19:19:46 203022336 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Photoshop Temp80094

2007-10-06 16:58:14 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp

2007-03-17 23:40:12 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-1

2007-07-05 16:09:30 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-10

2007-07-09 23:18:03 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-11

2007-08-05 09:19:20 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-12

2007-08-05 09:38:06 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-13

2007-10-07 13:48:22 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-14

2007-10-08 15:39:52 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-15

2007-10-14 15:59:04 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-16

2007-10-14 16:28:50 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-17

2007-10-28 11:59:36 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-18

2007-11-08 15:47:49 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-19

2007-03-25 19:33:11 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-2

2007-11-09 17:38:05 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-20

2007-11-14 15:53:21 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-21

2007-11-25 10:38:37 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-22

2007-12-01 14:33:17 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-23

2007-12-03 17:19:57 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-24

2007-12-04 16:12:08 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-25

2007-12-09 09:53:07 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-26

2007-12-11 14:13:33 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-27

2007-12-13 18:01:21 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-28

2007-12-17 17:08:15 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-29

2007-04-01 23:19:50 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-3

2007-12-19 15:54:47 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-30

2007-12-19 18:32:33 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-31

2007-12-20 12:33:19 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-32

2007-12-20 14:13:44 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-33

2007-12-21 13:01:45 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-34

2007-12-21 15:33:51 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-35

2007-12-22 14:49:42 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-36

2007-12-27 11:11:47 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-37

2007-12-28 14:11:29 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-38

2007-12-29 10:35:43 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-39

2007-04-03 21:08:09 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-4

2007-12-29 17:49:30 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-40

2008-01-07 17:59:12 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-41

2007-04-07 22:56:59 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-5

2007-04-26 21:50:56 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-6

2007-05-28 15:34:56 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-7

2007-07-04 16:59:54 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-8

2007-07-05 12:31:31 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\plugtmp-9

2007-11-24 22:41:07 46456 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\QTInstallCode.log

2007-11-23 22:57:14 2156 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\qtplugin.log

2007-03-22 17:03:35 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\RarSFX0

2007-08-25 16:16:52 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\RarSFX1

2007-12-20 13:56:04 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\RarSFX2

2007-04-06 00:34:21 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\RSPSoftware

2007-11-25 11:17:09 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\sdb19.tmp

2008-01-08 16:45:50 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\sv67n.tmp

2007-01-21 14:24:35 0 d--h----- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Temporary Directory 1 for gimp-2.2.10-i586-setup.zip

2007-01-21 14:24:35 0 d--h----- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Temporary Directory 1 for gtk+-2.8.9-setup.zip

2007-05-08 23:31:26 0 d--h----- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Temporary Directory 1 for text2pdf.zip

2007-01-21 14:24:35 0 d--h----- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Temporary Directory 2 for gimp-2.2.10-i586-setup.zip

2007-03-21 21:32:37 0 d--h----- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Temporary Directory 24 for Personal.zip

2007-03-21 21:32:43 0 d--h----- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Temporary Directory 25 for Personal.zip

2007-02-22 22:41:46 0 d--h----- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Temporary Directory 7 for Personal.zip

2004-03-22 15:22:16 132608 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\TFR253.exe <Not Verified; Microsoft Corp.; Microsoft® CoReXT>

2007-04-06 00:39:47 273 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\tmpLastPlaylist.ply

2007-12-27 17:24:44 697 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\TWAIN.LOG

2007-12-27 17:24:43 4 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Twain001.Mtx

2007-12-27 17:24:43 156 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Twunk001.MTX

2007-02-22 22:09:39 0 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Twunk002.MTX

2007-05-04 18:36:53 262448 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\UXWKB0TH.emf

2007-05-08 23:16:39 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\VBE

2007-11-28 18:35:53 0 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\vry17E.tmp

2007-03-06 23:23:08 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WER039d.dir00

2007-03-06 23:19:51 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WER09d2.dir00

2007-11-23 13:54:06 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WER1a18.dir00

2007-03-06 23:18:48 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WER1aca.dir00

2007-03-25 12:27:04 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WER1b45.dir00

2008-01-08 16:57:08 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WER22bd.dir00

2007-12-02 21:09:18 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WER29f9.dir00

2007-03-06 23:26:34 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WER3f49.dir00

2007-03-06 23:23:28 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WER566d.dir00

2007-03-06 20:13:07 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WER72a1.dir00

2007-03-06 23:19:23 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WER91cf.dir00

2002-01-01 01:55:31 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WER9a67.dir00

2007-08-14 08:23:58 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WERa6fa.dir00

2007-03-06 23:24:52 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WERa823.dir00

2007-08-06 09:16:20 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WERaf80.dir00

2007-11-09 18:41:11 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WERb4da.dir00

2007-05-21 14:21:09 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WERc8a5.dir00

2007-05-21 14:24:19 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WERc9d1.dir00

2007-08-07 20:37:13 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WERcfd4.dir00

2007-04-19 22:39:12 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WERd1d7.dir00

2007-05-21 15:42:37 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WERd4f3.dir00

2007-03-27 20:49:19 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WERd72c.dir00

2007-03-21 13:58:18 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WERdb5d.dir00

2007-03-30 22:57:15 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WERdc8f.dir00

2007-05-21 14:26:21 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WERdfca.dir00

2002-01-01 02:25:24 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WERecab.dir00

2007-12-02 21:09:13 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WERed21.dir00

2002-01-01 02:23:43 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WERf2e0.dir00

2007-05-21 14:16:43 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WERfaa6.dir00

2007-03-21 00:22:27 409 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WGANotify.settings

2007-02-11 11:55:05 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WLTB Custom Button Feeds

2007-11-21 17:20:24 1404 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\wmplog00.sqm

2006-06-24 20:38:36 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\Word8.0

2008-01-08 16:31:24 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\WPDNSE

2007-11-27 16:46:13 0 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\yvxED.tmp

2007-12-16 17:06:05 0 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\zqjAA.tmp

2007-12-01 13:27:56 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\_avast4_

2007-02-28 22:06:26 174 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\_remove_ds.log

2008-01-06 16:26:39 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\{108805E6-64B6-45CC-B9FC-4CBAC5046F1B}

2007-10-28 12:33:08 627 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\{AC76BA86-7AD7-1033-7B44-A81000000003}.ini

2008-01-06 20:53:45 0 d-------- C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\{EDC8F074-F709-4281-9547-232B8EF0EAA5}

2007-04-15 00:28:57 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~14f7b676a5161c77a7632c74c00.jpd

2007-04-15 00:28:57 2809 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~14f7b676a5161c77a7632c74c00.jpg

2007-03-20 23:13:19 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~1631ebfaa7481c7641ff2958f00.jpd

2007-03-20 23:13:19 3111 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~1631ebfaa7481c7641ff2958f00.jpg

2007-04-15 00:28:56 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~18f7b67737541c77a7254263900.jpd

2007-04-15 00:28:56 2681 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~18f7b67737541c77a7254263900.jpg

2007-04-15 00:28:56 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~1a31ebce95511c76cfe29ac5000.jpd

2007-04-15 00:28:56 2784 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~1a31ebce95511c76cfe29ac5000.jpg

2007-04-15 00:28:56 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~1e31ebce8a7c1c76f6f692da300.jpd

2007-04-15 00:28:56 2368 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~1e31ebce8a7c1c76f6f692da300.jpg

2007-03-20 23:13:20 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~2031ebce6e081c769279e127800.jpd

2007-03-20 23:13:20 2062 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~2031ebce6e081c769279e127800.jpg

2007-04-15 00:28:55 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~20d82ead50ebc1c76b921f6d4300.jpd

2007-04-15 00:28:55 1644 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~20d82ead50ebc1c76b921f6d4300.jpg

2007-03-20 23:13:20 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~257234c2aaca1c758ad206dc600.jpd

2007-03-20 23:13:20 3052 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~257234c2aaca1c758ad206dc600.jpg

2007-04-15 00:28:54 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~292d9b0deee531c77f2b651bf200.jpd

2007-04-15 00:28:54 1967 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~292d9b0deee531c77f2b651bf200.jpg

2007-03-20 23:13:19 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~2a31ebfaafe71c7639690447c00.jpd

2007-03-20 23:13:19 3452 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~2a31ebfaafe71c7639690447c00.jpg

2007-03-20 23:13:19 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~2c31ebcfa6b81c763a31e266400.jpd

2007-03-20 23:13:19 3623 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~2c31ebcfa6b81c763a31e266400.jpg

2007-04-15 00:28:56 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~2c31ebf1b7c01c76fe3a3d12300.jpd

2007-04-15 00:28:56 4419 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~2c31ebf1b7c01c76fe3a3d12300.jpg

2007-04-15 00:28:57 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~2ef7b676111e41c77a7664d8ae00.jpd

2007-04-15 00:28:57 3146 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~2ef7b676111e41c77a7664d8ae00.jpg

2007-04-15 00:28:53 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~412d9b0cad95a1c7735de6855900.jpd

2007-04-15 00:28:53 1928 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~412d9b0cad95a1c7735de6855900.jpg

2007-04-15 00:28:57 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~42f7b6775207e1c77a759ef58000.jpd

2007-04-15 00:28:57 2135 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~42f7b6775207e1c77a759ef58000.jpg

2007-04-15 00:28:58 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~445be4832caff1c77a71672000.jpd

2007-04-15 00:28:58 2247 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~445be4832caff1c77a71672000.jpg

2007-04-15 00:28:58 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~54a7cfe06c1171c7741cf021c600.jpd

2007-04-15 00:28:58 2226 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~54a7cfe06c1171c7741cf021c600.jpg

2007-03-20 23:13:20 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~55d475d31c89a1c6ec38c7bcca00.jpd

2007-03-20 23:13:20 2907 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~55d475d31c89a1c6ec38c7bcca00.jpg

2007-03-20 23:13:20 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~5631ebcf8f281c7653cb0ae3b00.jpd

2007-03-20 23:13:20 2441 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~5631ebcf8f281c7653cb0ae3b00.jpg

2007-03-20 23:13:20 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~5857234c1554e1c76903cee0b600.jpd

2007-03-20 23:13:20 1983 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~5857234c1554e1c76903cee0b600.jpg

2007-03-20 23:13:19 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~5a9ca0b7173b1c7642ff7623f00.jpd

2007-03-20 23:13:19 1870 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~5a9ca0b7173b1c7642ff7623f00.jpg

2007-03-20 23:13:17 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~5ac00cca2612c1c76b78fb513800.jpd

2007-03-20 23:13:17 2842 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~5ac00cca2612c1c76b78fb513800.jpg

2007-04-15 00:28:53 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~5d2d9b0c127b021c77f2b37cf4400.jpd

2007-04-15 00:28:53 2086 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~5d2d9b0c127b021c77f2b37cf4400.jpg

2007-03-20 23:13:19 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~5e31ebfbb1c51c762eab876a100.jpd

2007-03-20 23:13:19 3510 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~5e31ebfbb1c51c762eab876a100.jpg

2007-04-15 00:28:57 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~5ef7b6771afea1c77b42d7af5b00.jpd

2007-04-15 00:28:57 2444 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~5ef7b6771afea1c77b42d7af5b00.jpg

2007-03-20 23:13:18 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~62d171ab70edc1c76b7ea4e6f800.jpd

2007-03-20 23:13:18 1980 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~62d171ab70edc1c76b7ea4e6f800.jpg

2007-04-15 00:28:57 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~62e30a771f34c1c77a75e1b75800.jpd

2007-04-15 00:28:57 2130 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~62e30a771f34c1c77a75e1b75800.jpg

2007-04-15 00:28:55 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~63223c351b6f211c76b8fea5ff100.jpd

2007-04-15 00:28:55 2120 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~63223c351b6f211c76b8fea5ff100.jpg

2007-04-15 00:28:56 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~6a31ebcf9d701c76d16f7f3b300.jpd

2007-04-15 00:28:56 3092 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~6a31ebcf9d701c76d16f7f3b300.jpg

2007-04-15 00:28:56 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~6e1d5089ac711c7704647ebb600.jpd

2007-04-15 00:28:56 3344 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~6e1d5089ac711c7704647ebb600.jpg

2007-03-20 23:13:18 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~70d171b75f68b1c76b7d7288cb00.jpd

2007-03-20 23:13:18 1590 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~70d171b75f68b1c76b7d7288cb00.jpg

2007-03-20 23:19:51 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~7446a712af001c76b809994cc00.jpd

2007-03-20 23:19:51 2681 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~7446a712af001c76b809994cc00.jpg

2007-04-15 00:28:56 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~762557f15f6d1c76ff8e0f3e000.jpd

2007-04-15 00:28:56 4323 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~762557f15f6d1c76ff8e0f3e000.jpg

2007-03-20 23:13:20 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~7631ebcfa9341c764273770f400.jpd

2007-03-20 23:13:20 3371 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~7631ebcfa9341c764273770f400.jpg

2007-04-15 00:28:54 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~7f2d9b22ac1d11c77f2b6ea55a00.jpd

2007-04-15 00:28:54 1962 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~7f2d9b22ac1d11c77f2b6ea55a00.jpg

2007-03-20 23:13:20 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~8631ebce8c3e1c763b4a8c38f00.jpd

2007-03-20 23:13:20 2422 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~8631ebce8c3e1c763b4a8c38f00.jpg

2007-04-15 00:28:56 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~8631ebf0a9991c76fe78da4800.jpd

2007-04-15 00:28:56 3780 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~8631ebf0a9991c76fe78da4800.jpg

2007-04-15 00:28:53 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~892d9b0cb969e1c77f2b60573e00.jpd

2007-04-15 00:28:53 1847 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~892d9b0cb969e1c77f2b60573e00.jpg

2007-03-20 23:13:18 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~8ad171ab7b6e61c76b7d2047aa00.jpd

2007-03-20 23:13:18 2763 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~8ad171ab7b6e61c76b7d2047aa00.jpg

2007-04-15 00:28:57 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~8ae80d373849c1c77a76aec19400.jpd

2007-04-15 00:28:57 2993 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~8ae80d373849c1c77a76aec19400.jpg

2007-03-20 23:13:19 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~8c89ade1f04951c6537abc7c0e00.jpd

2007-03-20 23:13:19 2691 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~8c89ade1f04951c6537abc7c0e00.jpg

2007-04-15 00:28:58 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~93cd12b345dfe1c76c1122f3df00.jpd

2007-04-15 00:28:58 2154 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~93cd12b345dfe1c76c1122f3df00.jpg

2007-03-20 23:13:18 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~94d171b7811011c76b7d8b917c00.jpd

2007-03-20 23:13:18 2705 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~94d171b7811011c76b7d8b917c00.jpg

2007-03-20 23:13:19 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~9ca0b710561c7643034e0100.jpd

2007-03-20 23:13:19 2121 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~9ca0b710561c7643034e0100.jpg

2007-03-20 23:13:20 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~a8439f4d10691c7591f88f58b00.jpd

2007-03-20 23:13:20 1260 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~a8439f4d10691c7591f88f58b00.jpg

2007-03-20 23:13:17 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~aac00ccb2163e1c76b78fee4bf00.jpd

2007-03-20 23:13:17 2109 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~aac00ccb2163e1c76b78fee4bf00.jpg

2007-10-07 14:41:43 19968 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~AutoSave-00000012.wps

2007-04-15 00:28:56 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~b2f7b67695571c77a759309be00.jpd

2007-04-15 00:28:56 1957 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~b2f7b67695571c77a759309be00.jpg

2007-04-15 00:28:58 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~b52db37ba61b71c7767388b1e00.jpd

2007-04-15 00:28:58 1336 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~b52db37ba61b71c7767388b1e00.jpg

2007-03-20 23:13:18 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~b6d171ab6b5281c76b7e196d6700.jpd

2007-03-20 23:13:18 1763 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~b6d171ab6b5281c76b7e196d6700.jpg

2007-03-20 23:13:21 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~bc881e5743d81c74e5cb7259600.jpd

2007-03-20 23:13:21 3460 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~bc881e5743d81c74e5cb7259600.jpg

2007-03-20 23:13:19 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~bdb65701116cd1c76072fff2f800.jpd

2007-03-20 23:13:19 2417 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~bdb65701116cd1c76072fff2f800.jpg

2007-04-15 00:28:56 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~be31ebcf904f1c76d08f15e3f00.jpd

2007-04-15 00:28:56 2622 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~be31ebcf904f1c76d08f15e3f00.jpg

2007-03-20 23:13:17 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~bfc2478f421a21c765e9b4e46200.jpd

2007-03-20 23:13:17 2657 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~bfc2478f421a21c765e9b4e46200.jpg

2007-03-20 23:13:18 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~c2d171aa6e6861c76b7dbed40b00.jpd

2007-03-20 23:13:18 1928 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~c2d171aa6e6861c76b7dbed40b00.jpg

2007-03-20 23:13:18 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~c6c00cca24b3e1c76b7986e2700.jpd

2007-03-20 23:13:18 2806 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~c6c00cca24b3e1c76b7986e2700.jpg

2007-03-20 23:13:19 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~c831ebcfb0eb1c763b5d1985400.jpd

2007-03-20 23:13:19 3599 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~c831ebcfb0eb1c763b5d1985400.jpg

2007-04-15 00:28:56 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~c831ebf18a7e1c76f748add5900.jpd

2007-04-15 00:28:56 2559 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~c831ebf18a7e1c76f748add5900.jpg

2007-04-15 00:28:54 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~d284ce1bd4dca1c771048839f00.jpd

2007-04-15 00:28:54 2783 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~d284ce1bd4dca1c771048839f00.jpg

2007-04-15 00:28:54 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~d29b755b60b0c1c770fdb6d81600.jpd

2007-04-15 00:28:54 2792 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~d29b755b60b0c1c770fdb6d81600.jpg

2007-03-20 23:13:21 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~d2ef5dc23221c63ce2d4f8fa00.jpd

2007-03-20 23:13:21 1920 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~d2ef5dc23221c63ce2d4f8fa00.jpg

2007-03-20 23:13:19 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~d5c256516cf71c76903307a700.jpd

2007-03-20 23:13:19 2328 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~d5c256516cf71c76903307a700.jpg

2007-03-20 23:13:18 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~dad171b68584e1c76b7d381f2e00.jpd

2007-03-20 23:13:18 2438 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~dad171b68584e1c76b7d381f2e00.jpg

2007-04-15 00:28:53 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~dd2d9b16d65721c76e99a7589300.jpd

2007-04-15 00:28:53 2216 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~dd2d9b16d65721c76e99a7589300.jpg

2007-03-20 23:13:19 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~e29ca6ee20b331c75844604c9300.jpd

2007-03-20 23:13:19 1711 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~e29ca6ee20b331c75844604c9300.jpg

2007-08-06 20:46:31 72192 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~e5.0001 <Not Verified; Macrovision Europe Ltd.; Macrovision Europe Ltd. Cleanup>

2007-03-20 23:13:19 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~ec31ebe6794d1c7641b481b6d00.jpd

2007-03-20 23:13:19 2384 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~ec31ebe6794d1c7641b481b6d00.jpg

2007-03-20 23:13:19 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~f09ca0b64ebfd1c7642ffd582000.jpd

2007-03-20 23:13:19 1908 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~f09ca0b64ebfd1c7642ffd582000.jpg

2007-03-20 23:13:17 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~f0c00ccb271601c76b7999f5400.jpd

2007-03-20 23:13:17 2165 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~f0c00ccb271601c76b7999f5400.jpg

2007-04-15 00:28:58 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~f0fd154f4674d1c76c0e7f093400.jpd

2007-04-15 00:28:58 2125 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~f0fd154f4674d1c76c0e7f093400.jpg

2007-04-15 00:28:58 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~fc10553539ee41c7704628ed2400.jpd

2007-04-15 00:28:58 3341 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~fc10553539ee41c7704628ed2400.jpg

2007-03-20 23:13:18 21 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~fcc00cca1e25f1c76b793a97300.jpd

2007-03-20 23:13:18 2049 --a------ C:\DOCUME~1\HP_Owner\LOCALS~1\Temp\~fcc00cca1e25f1c76b793a97300.jpg

2007-10-08 16:30:12 0 d-------- C:\WINDOWS\temp\1191886212

2007-10-08 16:30:32 0 d-------- C:\WINDOWS\temp\1191886232

2007-10-08 17:30:00 0 d-------- C:\WINDOWS\temp\1191889800

2007-10-08 17:30:04 0 d-------- C:\WINDOWS\temp\1191889804

2007-10-08 17:40:43 0 d-------- C:\WINDOWS\temp\1191890443

2007-10-08 17:40:47 0 d-------- C:\WINDOWS\temp\1191890447

2007-10-09 17:30:28 0 d-------- C:\WINDOWS\temp\1191976228

2007-10-09 17:30:35 0 d-------- C:\WINDOWS\temp\1191976235

2007-10-10 18:34:08 0 d-------- C:\WINDOWS\temp\1192066448

2007-10-10 18:34:14 0 d-------- C:\WINDOWS\temp\1192066454

2007-10-10 19:20:10 0 d-------- C:\WINDOWS\temp\1192069210

2007-10-10 19:20:14 0 d-------- C:\WINDOWS\temp\1192069214

2007-10-11 17:42:40 0 d-------- C:\WINDOWS\temp\1192149760

2007-10-11 17:42:49 0 d-------- C:\WINDOWS\temp\1192149769

2007-10-11 18:06:56 0 d-------- C:\WINDOWS\temp\1192151216

2007-10-11 18:07:13 0 d-------- C:\WINDOWS\temp\1192151233

2007-10-11 18:19:58 0 d-------- C:\WINDOWS\temp\1192151998

2007-10-11 18:20:00 0 d-------- C:\WINDOWS\temp\1192152000

2007-10-12 18:06:35 0 d-------- C:\WINDOWS\temp\1192237595

2007-10-12 18:06:51 0 d-------- C:\WINDOWS\temp\1192237611

2007-10-13 15:01:36 0 d-------- C:\WINDOWS\temp\1192312895

2007-10-13 15:01:46 0 d-------- C:\WINDOWS\temp\1192312906

2007-10-14 09:16:22 0 d-------- C:\WINDOWS\temp\1192378582

2007-10-14 09:16:51 0 d-------- C:\WINDOWS\temp\1192378611

2007-10-14 16:19:13 0 d-------- C:\WINDOWS\temp\1192403953

2007-10-14 16:19:21 0 d-------- C:\WINDOWS\temp\1192403961

2007-10-14 17:01:54 0 d-------- C:\WINDOWS\temp\1192406514

2007-10-14 17:02:18 0 d-------- C:\WINDOWS\temp\1192406538

2007-10-15 17:44:42 0 d-------- C:\WINDOWS\temp\1192495482

2007-10-15 17:44:55 0 d-------- C:\WINDOWS\temp\1192495495

2007-10-16 17:25:43 0 d-------- C:\WINDOWS\temp\1192580743

2007-10-16 17:26:07 0 d-------- C:\WINDOWS\temp\1192580766

2007-10-17 17:54:12 0 d-------- C:\WINDOWS\temp\1192668852

2007-10-17 17:54:21 0 d-------- C:\WINDOWS\temp\1192668861

2007-10-18 15:55:54 0 d-------- C:\WINDOWS\temp\1192748154

2007-10-18 15:56:03 0 d-------- C:\WINDOWS\temp\1192748163

2007-10-19 18:37:09 0 d-------- C:\WINDOWS\temp\1192844228

2007-10-19 18:37:18 0 d-------- C:\WINDOWS\temp\1192844238

2007-10-20 11:46:37 0 d-------- C:\WINDOWS\temp\1192905997

2007-10-20 11:46:59 0 d-------- C:\WINDOWS\temp\1192906019

2007-10-21 09:36:29 0 d-------- C:\WINDOWS\temp\1192984589

2007-10-21 09:36:53 0 d-------- C:\WINDOWS\temp\1192984613

2007-10-22 17:50:57 0 d-------- C:\WINDOWS\temp\1193100657

2007-10-22 17:51:16 0 d-------- C:\WINDOWS\temp\1193100676

2007-10-23 15:09:12 0 d-------- C:\WINDOWS\temp\1193177352

2007-10-23 15:09:27 0 d-------- C:\WINDOWS\temp\1193177367

2007-10-24 17:20:32 0 d-------- C:\WINDOWS\temp\1193271632

2007-10-24 17:20:43 0 d-------- C:\WINDOWS\temp\1193271643

2007-10-25 16:48:17 0 d-------- C:\WINDOWS\temp\1193356097

2007-10-25 16:48:53 0 d-------- C:\WINDOWS\temp\1193356133

2007-10-26 20:15:54 0 d-------- C:\WINDOWS\temp\1193454954

2007-10-26 20:16:19 0 d-------- C:\WINDOWS\temp\1193454979

2007-10-27 16:09:49 0 d-------- C:\WINDOWS\temp\1193526589

2007-10-27 16:10:24 0 d-------- C:\WINDOWS\temp\1193526624

2007-10-28 10:27:02 0 d-------- C:\WINDOWS\temp\1193592422

2007-10-28 10:27:39 0 d-------- C:\WINDOWS\temp\1193592459

2007-10-28 12:15:47 0 d-------- C:\WINDOWS\temp\1193598947

2007-10-28 12:15:57 0 d-------- C:\WINDOWS\temp\1193598957

2007-10-29 17:36:33 0 d-------- C:\WINDOWS\temp\1193704593

2007-10-29 17:36:58 0 d-------- C:\WINDOWS\temp\1193704618

2007-10-30 15:06:22 0 d-------- C:\WINDOWS\temp\1193781982

2007-10-30 15:06:35 0 d-------- C:\WINDOWS\temp\1193781995

2007-10-30 20:34:21 0 d-------- C:\WINDOWS\temp\1193801661

2007-10-30 20:34:52 0 d-------- C:\WINDOWS\temp\1193801692

2007-10-31 15:01:46 0 d-------- C:\WINDOWS\temp\1193868106

2007-10-31 15:01:55 0 d-------- C:\WINDOWS\temp\1193868115

2007-11-01 17:53:27 0 d-------- C:\WINDOWS\temp\1193964807

2007-11-01 17:53:59 0 d-------- C:\WINDOWS\temp\1193964839

2007-11-01 20:35:28 0 d-------- C:\WINDOWS\temp\1193974528

2007-11-01 20:36:01 0 d-------- C:\WINDOWS\temp\1193974561

2007-11-03 21:41:31 0 d-------- C:\WINDOWS\temp\1194151291

2007-11-03 21:42:03 0 d-------- C:\WINDOWS\temp\1194151323

2007-11-04 09:41:34 0 d-------- C:\WINDOWS\temp\1194194494

2007-11-04 09:42:01 0 d-------- C:\WINDOWS\temp\1194194521

2007-11-04 13:25:58 0 d-------- C:\WINDOWS\temp\1194207958

2007-11-04 13:26:13 0 d-------- C:\WINDOWS\temp\1194207973

2007-11-05 15:18:33 0 d-------- C:\WINDOWS\temp\1194301113

2007-11-05 15:18:43 0 d-------- C:\WINDOWS\temp\1194301123

2007-11-06 15:24:33 0 d-------- C:\WINDOWS\temp\1194387873

2007-11-06 15:24:42 0 d-------- C:\WINDOWS\temp\1194387882

2007-11-07 16:54:35 0 d-------- C:\WINDOWS\temp\1194479675

2007-11-07 16:55:14 0 d-------- C:\WINDOWS\temp\1194479714

2007-11-08 15:40:04 0 d-------- C:\WINDOWS\temp\1194561603

2007-11-08 15:40:16 0 d-------- C:\WINDOWS\temp\1194561616

2007-11-08 16:04:20 0 d-------- C:\WINDOWS\temp\1194563060

2007-11-08 16:04:24 0 d-------- C:\WINDOWS\temp\1194563064

2007-11-09 15:08:44 0 d-------- C:\WINDOWS\temp\1194646124

2007-11-09 15:09:06 0 d-------- C:\WINDOWS\temp\1194646146

2007-11-09 19:11:54 0 d-------- C:\WINDOWS\temp\1194660714

2007-11-09 19:12:07 0 d-------- C:\WINDOWS\temp\1194660727

2007-11-10 09:03:08 0 d-------- C:\WINDOWS\temp\1194710588

2007-11-10 09:03:45 0 d-------- C:\WINDOWS\temp\1194710625

2007-11-11 09:13:50 0 d-------- C:\WINDOWS\temp\1194797630

2007-11-11 09:14:30 0 d-------- C:\WINDOWS\temp\1194797670

2007-11-11 16:41:23 0 d-------- C:\WINDOWS\temp\1194824483

2007-11-11 16:41:33 0 d-------- C:\WINDOWS\temp\1194824493

2007-11-11 20:51:53 0 d-------- C:\WINDOWS\temp\1194839513

2007-11-11 20:52:06 0 d-------- C:\WINDOWS\temp\1194839526

2007-11-12 09:28:10 0 d-------- C:\WINDOWS\temp\1194884890

2007-11-12 09:28:47 0 d-------- C:\WINDOWS\temp\1194884927

2007-11-12 15:20:15 0 d-------- C:\WINDOWS\temp\1194906014

2007-11-12 15:20:26 0 d-------- C:\WINDOWS\temp\1194906026

2007-11-13 15:04:54 0 d-------- C:\WINDOWS\temp\1194991494

2007-11-13 15:05:30 0 d-------- C:\WINDOWS\temp\1194991530

2007-11-13 19:23:25 0 d-------- C:\WINDOWS\temp\1195007005

2007-11-13 19:24:02 0 d-------- C:\WINDOWS\temp\1195007042

2007-11-14 15:44:41 0 d-------- C:\WINDOWS\temp\1195080281

2007-11-14 15:44:51 0 d-------- C:\WINDOWS\temp\1195080291

2007-11-14 16:23:17 0 d-------- C:\WINDOWS\temp\1195082597

2007-11-14 16:23:24 0 d-------- C:\WINDOWS\temp\1195082604

2007-11-15 15:19:44 0 d-------- C:\WINDOWS\temp\1195165184

2007-11-15 15:20:32 0 d-------- C:\WINDOWS\temp\1195165232

2007-11-15 20:54:54 0 d-------- C:\WINDOWS\temp\1195185293

2007-11-15 20:55:06 0 d-------- C:\WINDOWS\temp\1195185306

2007-11-16 15:05:12 0 d-------- C:\WINDOWS\temp\1195250712

2007-11-16 15:05:49 0 d-------- C:\WINDOWS\temp\1195250749

2007-11-16 18:16:48 0 d-------- C:\WINDOWS\temp\1195262208

2007-11-16 18:16:53 0 d-------- C:\WINDOWS\temp\1195262213

2007-11-16 19:25:19 0 d-------- C:\WINDOWS\temp\1195266319

2007-11-16 19:25:54 0 d-------- C:\WINDOWS\temp\1195266354

2007-11-16 22:06:52 0 d-------- C:\WINDOWS\temp\1195276012

2007-11-16 22:06:58 0 d-------- C:\WINDOWS\temp\1195276018

2007-11-17 08:50:38 0 d-------- C:\WINDOWS\temp\1195314638

2007-11-17 08:50:56 0 d-------- C:\WINDOWS\temp\1195314656

2007-11-18 10:10:37 0 d-------- C:\WINDOWS\temp\1195405837

2007-11-18 10:11:01 0 d-------- C:\WINDOWS\temp\1195405861

2007-11-18 17:44:29 0 d-------- C:\WINDOWS\temp\1195433068

2007-11-18 17:44:52 0 d-------- C:\WINDOWS\temp\1195433092

2007-11-19 15:05:35 0 d-------- C:\WINDOWS\temp\1195509935

2007-11-19 15:05:48 0 d-------- C:\WINDOWS\temp\1195509948

2007-11-20 15:42:46 0 d-------- C:\WINDOWS\temp\1195598566

2007-11-20 15:43:25 0 d-------- C:\WINDOWS\temp\1195598605

2007-11-20 16:56:16 0 d-------- C:\WINDOWS\temp\1195602976

2007-11-20 16:57:00 0 d-------- C:\WINDOWS\temp\1195603020

2007-11-21 08:47:35 0 d-------- C:\WINDOWS\temp\1195660054

2007-11-21 08:48:13 0 d-------- C:\WINDOWS\temp\1195660093

2007-11-21 14:02:38 0 d-------- C:\WINDOWS\temp\1195678958

2007-11-21 14:03:10 0 d-------- C:\WINDOWS\temp\1195678990

2007-11-22 10:42:32 0 d-------- C:\WINDOWS\temp\1195753352

2007-11-22 10:42:44 0 d-------- C:\WINDOWS\temp\1195753364

2007-11-23 11:09:37 0 d-------- C:\WINDOWS\temp\1195841377

2007-11-23 11:10:00 0 d-------- C:\WINDOWS\temp\1195841400

2007-11-23 13:39:26 0 d-------- C:\WINDOWS\temp\1195850366

2007-11-23 13:39:36 0 d-------- C:\WINDOWS\temp\1195850376

2007-11-23 13:46:19 0 d-------- C:\WINDOWS\temp\1195850779

2007-11-23 13:46:24 0 d-------- C:\WINDOWS\temp\1195850784

2007-11-23 13:50:00 0 d-------- C:\WINDOWS\temp\1195851000

2007-11-23 13:50:06 0 d-------- C:\WINDOWS\temp\1195851006

2007-11-23 13:55:14 0 d-------- C:\WINDOWS\temp\1195851314

2007-11-23 13:55:24 0 d-------- C:\WINDOWS\temp\1195851324

2007-11-23 14:00:07 0 d-------- C:\WINDOWS\temp\1195851607

2007-11-23 14:00:13 0 d-------- C:\WINDOWS\temp\1195851613

2007-11-23 14:14:05 0 d-------- C:\WINDOWS\temp\1195852445

2007-11-23 14:14:14 0 d-------- C:\WINDOWS\temp\1195852454

2007-11-23 15:42:06 0 d-------- C:\WINDOWS\temp\1195857726

2007-11-23 15:42:39 0 d-------- C:\WINDOWS\temp\1195857759

2007-11-23 16:41:47 0 d-------- C:\WINDOWS\temp\1195861307

2007-11-23 16:41:51 0 d-------- C:\WINDOWS\temp\1195861311

2007-11-23 22:33:24 0 d-------- C:\WINDOWS\temp\1195882404

2007-11-23 22:33:44 0 d-------- C:\WINDOWS\temp\1195882424

2007-11-24 17:53:58 0 d-------- C:\WINDOWS\temp\1195952038

2007-11-24 17:54:03 0 d-------- C:\WINDOWS\temp\1195952043

2007-11-24 18:34:49 0 d-------- C:\WINDOWS\temp\1195954489

2007-11-24 18:34:52 0 d-------- C:\WINDOWS\temp\1195954492

2007-11-24 22:58:55 0 d-------- C:\WINDOWS\temp\1195970335

2007-11-24 22:58:58 0 d-------- C:\WINDOWS\temp\1195970338

2007-11-25 09:47:40 0 d-------- C:\WINDOWS\temp\1196009260

2007-11-25 09:47:58 0 d-------- C:\WINDOWS\temp\1196009278

2007-11-25 11:31:30 0 d-------- C:\WINDOWS\temp\1196015490

2007-11-25 11:31:42 0 d-------- C:\WINDOWS\temp\1196015502

2007-11-25 11:42:54 0 d-------- C:\WINDOWS\temp\1196016174

2007-11-25 11:42:56 0 d-------- C:\WINDOWS\temp\1196016176

2007-11-26 15:21:13 0 d-------- C:\WINDOWS\temp\1196115673

2007-11-26 15:21:19 0 d-------- C:\WINDOWS\temp\1196115679

2007-11-27 15:15:15 0 d-------- C:\WINDOWS\temp\1196201715

2007-11-27 15:15:32 0 d-------- C:\WINDOWS\temp\1196201732

2007-11-28 15:09:31 0 d-------- C:\WINDOWS\temp\1196287771

2007-11-28 15:09:38 0 d-------- C:\WINDOWS\temp\1196287778

2007-11-29 15:07:22 0 d-------- C:\WINDOWS\temp\1196374041

2007-11-29 15:07:52 0 d-------- C:\WINDOWS\temp\1196374072

2007-11-29 18:20:16 0 d-------- C:\WINDOWS\temp\1196385616

2007-11-29 18:20:49 0 d-------- C:\WINDOWS\temp\1196385649

2007-11-30 15:03:07 0 d-------- C:\WINDOWS\temp\1196460187

2007-11-30 15:03:15 0 d-------- C:\WINDOWS\temp\1196460195

2007-12-01 08:44:45 0 d-------- C:\WINDOWS\temp\1196523885

2007-12-01 08:44:54 0 d-------- C:\WINDOWS\temp\1196523894

2007-12-01 11:04:15 0 d-------- C:\WINDOWS\temp\1196532255

2007-12-01 11:04:19 0 d-------- C:\WINDOWS\temp\1196532259

2007-12-02 09:21:20 0 d-------- C:\WINDOWS\temp\1196612480

2007-12-02 09:21:59 0 d-------- C:\WINDOWS\temp\1196612519

2007-12-03 15:17:49 0 d-------- C:\WINDOWS\temp\1196720269

2007-12-03 15:18:21 0 d-------- C:\WINDOWS\temp\1196720301

2007-12-04 15:00:51 0 d-------- C:\WINDOWS\temp\1196805651

2007-12-04 15:01:25 0 d-------- C:\WINDOWS\temp\1196805685

2007-12-05 14:59:23 0 d-------- C:\WINDOWS\temp\1196891963

2007-12-05 15:00:07 0 d-------- C:\WINDOWS\temp\1196892007

2007-12-06 15:12:29 0 d-------- C:\WINDOWS\temp\1196979149

2007-12-06 15:13:03 0 d-------- C:\WINDOWS\temp\1196979183

2007-12-06 15:16:47 0 d-------- C:\WINDOWS\temp\1196979407

2007-12-06 15:16:51 0 d-------- C:\WINDOWS\temp\1196979411

2007-12-06 15:53:30 0 d-------- C:\WINDOWS\temp\1196981610

2007-12-06 15:53:55 0 d-------- C:\WINDOWS\temp\1196981634

2007-12-07 16:08:01 0 d-------- C:\WINDOWS\temp\1197068881

2007-12-07 16:08:32 0 d-------- C:\WINDOWS\temp\1197068912

2007-12-08 14:26:45 0 d-------- C:\WINDOWS\temp\1197149205

2007-12-08 14:27:12 0 d-------- C:\WINDOWS\temp\1197149232

2007-12-09 09:47:58 0 d-------- C:\WINDOWS\temp\1197218878

2007-12-09 09:48:22 0 d-------- C:\WINDOWS\temp\1197218901

2007-12-09 10:13:31 0 d-------- C:\WINDOWS\temp\1197220411

2007-12-09 10:13:37 0 d-------- C:\WINDOWS\temp\1197220417

2007-12-10 12:13:22 0 d-------- C:\WINDOWS\temp\1197314002

2007-12-10 12:13:41 0 d-------- C:\WINDOWS\temp\1197314021

2007-12-11 11:53:50 0 d-------- C:\WINDOWS\temp\1197399230

2007-12-11 11:54:10 0 d-------- C:\WINDOWS\temp\1197399250

2007-12-12 15:57:57 0 d-------- C:\WINDOWS\temp\1197500277

2007-12-12 15:58:20 0 d-------- C:\WINDOWS\temp\1197500300

2007-12-13 16:50:10 0 d-------- C:\WINDOWS\temp\1197589810

2007-12-13 16:50:39 0 d-------- C:\WINDOWS\temp\1197589839

2007-12-15 08:44:08 0 d-------- C:\WINDOWS\temp\1197733448

2007-12-15 08:44:30 0 d-------- C:\WINDOWS\temp\1197733470

2007-12-16 10:09:00 0 d-------- C:\WINDOWS\temp\1197824940

2007-12-16 10:09:30 0 d-------- C:\WINDOWS\temp\1197824970

2007-12-17 16:11:36 0 d-------- C:\WINDOWS\temp\1197933096

2007-12-17 16:11:49 0 d-------- C:\WINDOWS\temp\1197933109

2007-12-17 16:21:57 0 d-------- C:\WINDOWS\temp\1197933717

2007-12-17 16:22:20 0 d-------- C:\WINDOWS\temp\1197933740

2007-12-18 16:40:27 0 d-------- C:\WINDOWS\temp\1198021227

2007-12-18 16:40:35 0 d-------- C:\WINDOWS\temp\1198021235

2007-12-19 15:28:03 0 d-------- C:\WINDOWS\temp\1198103283

2007-12-19 15:28:14 0 d-------- C:\WINDOWS\temp\1198103294

2007-12-19 16:16:03 0 d-------- C:\WINDOWS\temp\1198106163

2007-12-19 16:16:22 0 d-------- C:\WINDOWS\temp\1198106182

2007-12-20 12:28:25 0 d-------- C:\WINDOWS\temp\1198178905

2007-12-20 12:28:33 0 d-------- C:\WINDOWS\temp\1198178913

2007-12-20 12:35:15 0 d-------- C:\WINDOWS\temp\1198179315

2007-12-20 12:35:33 0 d-------- C:\WINDOWS\temp\1198179333

2007-12-21 12:55:52 0 d-------- C:\WINDOWS\temp\1198266952

2007-12-21 12:55:59 0 d-------- C:\WINDOWS\temp\1198266959

2007-12-21 13:04:55 0 d-------- C:\WINDOWS\temp\1198267495

2007-12-21 13:05:24 0 d-------- C:\WINDOWS\temp\1198267524

2007-12-21 13:10:55 0 d-------- C:\WINDOWS\temp\1198267855

2007-12-21 13:11:25 0 d-------- C:\WINDOWS\temp\1198267885

2007-12-21 21:01:33 0 d-------- C:\WINDOWS\temp\1198296093

2007-12-21 21:01:43 0 d-------- C:\WINDOWS\temp\1198296103

2007-12-22 09:09:11 0 d-------- C:\WINDOWS\temp\1198339751

2007-12-22 09:09:24 0 d-------- C:\WINDOWS\temp\1198339764

2007-12-22 11:33:50 0 d-------- C:\WINDOWS\temp\1198348430

2007-12-22 11:33:59 0 d-------- C:\WINDOWS\temp\1198348439

2007-12-23 09:13:51 0 d-------- C:\WINDOWS\temp\1198426431

2007-12-23 09:14:27 0 d-------- C:\WINDOWS\temp\1198426467

2007-12-23 15:49:02 0 d-------- C:\WINDOWS\temp\1198450142

2007-12-23 15:49:39 0 d-------- C:\WINDOWS\temp\1198450179

2007-12-24 09:53:40 0 d-------- C:\WINDOWS\temp\1198515220

2007-12-24 09:54:19 0 d-------- C:\WINDOWS\temp\1198515259

2007-12-24 22:49:56 0 d-------- C:\WINDOWS\temp\1198561796

2007-12-24 22:50:11 0 d-------- C:\WINDOWS\temp\1198561811

2007-12-25 11:04:21 0 d-------- C:\WINDOWS\temp\1198605861

2007-12-25 11:04:29 0 d-------- C:\WINDOWS\temp\1198605869

2007-12-26 10:25:03 0 d-------- C:\WINDOWS\temp\1198689903

2007-12-26 10:25:35 0 d-------- C:\WINDOWS\temp\1198689935

2007-12-27 11:00:16 0 d-------- C:\WINDOWS\temp\1198778415

2007-12-27 11:00:54 0 d-------- C:\WINDOWS\temp\1198778454

2007-12-28 11:38:50 0 d-------- C:\WINDOWS\temp\1198867130

2007-12-28 11:39:23 0 d-------- C:\WINDOWS\temp\1198867163

2007-12-28 18:42:30 0 d-------- C:\WINDOWS\temp\1198892550

2007-12-28 18:42:38 0 d-------- C:\WINDOWS\temp\1198892558

2007-12-29 10:11:06 0 d-------- C:\WINDOWS\temp\1198948266

2007-12-29 10:11:31 0 d-------- C:\WINDOWS\temp\1198948291

2007-12-29 17:18:38 0 d-------- C:\WINDOWS\temp\1198973918

2007-12-29 17:18:47 0 d-------- C:\WINDOWS\temp\1198973927

2007-12-30 10:54:25 0 d-------- C:\WINDOWS\temp\1199037265

2007-12-30 10:54:53 0 d-------- C:\WINDOWS\temp\1199037293

2007-12-30 17:47:15 0 d-------- C:\WINDOWS\temp\1199062035

2007-12-30 17:47:53 0 d-------- C:\WINDOWS\temp\1199062073

2007-12-31 10:00:08 0 d-------- C:\WINDOWS\temp\1199120408

2007-12-31 10:00:40 0 d-------- C:\WINDOWS\temp\1199120440

2008-01-03 20:04:13 0 d-------- C:\WINDOWS\temp\1199415853

2008-01-03 20:04:46 0 d-------- C:\WINDOWS\temp\1199415886

2008-01-05 10:27:35 0 d-------- C:\WINDOWS\temp\1199554055

2008-01-05 10:28:19 0 d-------- C:\WINDOWS\temp\1199554099

2008-01-05 10:37:14 0 d-------- C:\WINDOWS\temp\1199554634

2008-01-05 10:37:50 0 d-------- C:\WINDOWS\temp\1199554670

2008-01-05 10:42:05 0 d-------- C:\WINDOWS\temp\1199554925

2008-01-05 10:42:39 0 d-------- C:\WINDOWS\temp\1199554959

2008-01-05 20:27:40 0 d-------- C:\WINDOWS\temp\1199590060

2008-01-05 20:27:45 0 d-------- C:\WINDOWS\temp\1199590065

2008-01-06 14:28:44 0 d-------- C:\WINDOWS\temp\1199654924

2008-01-06 14:29:14 0 d-------- C:\WINDOWS\temp\1199654954

2008-01-06 20:06:35 0 d-------- C:\WINDOWS\temp\1199675195

2008-01-06 20:06:41 0 d-------- C:\WINDOWS\temp\1199675201

2008-01-07 11:17:54 0 d-------- C:\WINDOWS\temp\1199729874

2008-01-07 11:18:02 0 d-------- C:\WINDOWS\temp\1199729882

2008-01-07 12:19:50 0 d-------- C:\WINDOWS\temp\1199733590

2008-01-07 12:19:54 0 d-------- C:\WINDOWS\temp\1199733594

2008-01-07 19:09:52 0 d-------- C:\WINDOWS\temp\1199758192

2008-01-07 19:10:00 0 d-------- C:\WINDOWS\temp\1199758200

2008-01-08 16:29:04 0 d-------- C:\WINDOWS\temp\1199834944

2008-01-08 16:29:11 0 d-------- C:\WINDOWS\temp\1199834951

2008-01-08 16:31:34 0 d-------- C:\WINDOWS\temp\1199835093

2008-01-08 16:32:14 0 d-------- C:\WINDOWS\temp\1199835133

2007-12-01 12:08:25 398944 --a------ C:\WINDOWS\temp\cavname170

2007-12-01 12:08:25 398944 --a------ C:\WINDOWS\temp\cavname171

2007-04-10 21:10:31 931 --a------ C:\WINDOWS\temp\CIO_NDCS.log

2006-01-02 15:49:18 0 d---s---- C:\WINDOWS\temp\Cookies

2005-11-02 19:31:41 362 --a------ C:\WINDOWS\temp\doc.log

2006-01-02 16:09:45 1414 --a------ C:\WINDOWS\temp\dtshrt.log

2007-09-25 16:43:29 847 --a------ C:\WINDOWS\temp\dw.log

2005-11-02 19:29:34 497 --a------ C:\WINDOWS\temp\ehelp.log

2005-11-02 19:13:22 144 --a------ C:\WINDOWS\temp\flash.log

2005-11-07 19:21:22 166933 --a------ C:\WINDOWS\temp\GLF40.EXE

2006-04-19 12:30:04 166948 --a------ C:\WINDOWS\temp\GLFB.EXE

2006-01-02 15:49:18 0 d---s---- C:\WINDOWS\temp\History

2005-11-02 19:24:03 13570 --a------ C:\WINDOWS\temp\hpware.log

2006-06-04 00:16:04 216864 --a------ C:\WINDOWS\temp\hpzEN4pi.hlp

2007-04-10 21:11:37 14533 --a------ C:\WINDOWS\temp\HPZIDI000.log

2007-08-17 21:29:14 2256 --a------ C:\WINDOWS\temp\HPZIDS.log

2006-04-03 21:17:12 336080 --a------ C:\WINDOWS\temp\mpasbase.vdm <Verified; Microsoft Corporation; Microsoft Malware Protection>

2006-04-03 21:17:12 8912 --a------ C:\WINDOWS\temp\mpasdlta.vdm <Verified; Microsoft Corporation; Microsoft Malware Protection>

2007-03-24 15:28:09 0 --ah----- C:\WINDOWS\temp\MpCmdRun-B9-421CFC91-A93E-42AB-A35C-F06F127FCC44.lock

2007-03-24 15:28:09 0 --ah----- C:\WINDOWS\temp\MpCmdRun-B9-53C9D589-6B66-4F30-9BAB-9A0193B0BAFC.lock

2007-10-08 15:46:00 449889 --a------ C:\WINDOWS\temp\MpCmdRun.log

2006-03-20 22:45:24 2625296 --a------ C:\WINDOWS\temp\MpEngine.dll <Verified; Microsoft Corporation; Microsoft Malware Protection>

2007-10-04 17:37:40 597854 --a------ C:\WINDOWS\temp\MpSigStub.log

2007-09-25 16:43:35 0 d-------- C:\WINDOWS\temp\MPTelemetrySubmit

2007-11-08 18:00:38 8958 --a------ C:\WINDOWS\temp\MSIad761.LOG

2007-07-10 12:32:50 14900 --a------ C:\WINDOWS\temp\netfxsl.log

2007-07-10 12:34:10 10176 --a------ C:\WINDOWS\temp\NetFxUpdate_v1.1.4322.log

2007-12-01 11:03:26 16384 --a-----t C:\WINDOWS\temp\Perflib_Perfdata_7d0.dat

2007-12-06 15:16:32 16384 --a-----t C:\WINDOWS\temp\Perflib_Perfdata_7e0.dat

2007-12-06 15:50:21 16384 --a-----t C:\WINDOWS\temp\Perflib_Perfdata_7e4.dat

2007-12-02 09:20:47 16384 --a-----t C:\WINDOWS\temp\Perflib_Perfdata_7ec.dat

2007-12-05 14:58:50 16384 --a-----t C:\WINDOWS\temp\Perflib_Perfdata_7fc.dat

2007-12-06 15:11:21 16384 --a-----t C:\WINDOWS\temp\Perflib_Perfdata_f4.dat

2008-01-05 12:57:47 0 --a------ C:\WINDOWS\temp\pw4.tmp

2008-01-05 13:00:46 0 d-------- C:\WINDOWS\temp\pw4~tmp

2005-11-02 19:31:21 71 --a------ C:\WINDOWS\temp\SCG.log

2006-01-02 16:09:39 5856 --a------ C:\WINDOWS\temp\sdpintl.ini

2007-04-10 21:11:17 540 --a------ C:\WINDOWS\temp\servic000.log

2005-11-02 19:25:48 2544 --a------ C:\WINDOWS\temp\Support.log

2005-11-02 18:50:09 0 --a----c- C:\WINDOWS\temp\T30DebugLogFile.txt

2006-01-02 15:49:18 0 d---s---- C:\WINDOWS\temp\Temporary Internet Files

2007-08-12 01:48:45 524288 --a-----t C:\WINDOWS\temp\TMP0000000117227C23B6E3496B

2007-08-15 16:38:40 524288 --a-----t C:\WINDOWS\temp\TMP000000017E142FF02926EAAB <Not Verified; Microsoft Corporation; Watson Subscriber for SENS Network Notifications>

2007-07-05 16:48:37 524288 --a-----t C:\WINDOWS\temp\TMP0000000191AA0275CE377EE7

2007-04-19 22:37:55 524288 --a-----t C:\WINDOWS\temp\TMP00000001B78A492FA1509164

2007-02-26 20:59:08 524288 --a-----t C:\WINDOWS\temp\TMP00000002DD8876A44D33318D <Not Verified; Microsoft Corporation; Microsoft® Windows® Operating System>

2007-02-18 11:44:40 524288 --a-----t C:\WINDOWS\temp\TMP000000037F5C6A726ACD5EFE

2007-04-19 22:41:37 524288 --a-----t C:\WINDOWS\temp\TMP00000003817327E0F4B8606F

2007-08-25 14:52:49 524288 --a-----t C:\WINDOWS\temp\TMP0000000392722991EB2EC724

2007-02-07 19:31:15 524288 --a-----t C:\WINDOWS\temp\TMP00000003D1D77657832D1771

2007-03-25 12:24:16 524288 --a-----t C:\WINDOWS\temp\TMP00000005219DB99CC00597B7

2007-03-25 12:16:07 524288 --a-----t C:\WINDOWS\temp\TMP000000053644C64E911BF755 <Not Verified; Microsoft Corporation; Microsoft® Windows® Operating System>

2007-03-31 13:01:14 524288 --a-----t C:\WINDOWS\temp\TMP000000056137ACB2D521A385

2007-05-21 14:18:04 524288 --a-----t C:\WINDOWS\temp\TMP0000000680EC7A8A7457495D

2007-08-12 01:14:33 524288 --a-----t C:\WINDOWS\temp\TMP00000009BF78DFA9156DF66E

2007-03-16 21:00:19 524288 --a-----t C:\WINDOWS\temp\TMP0000000B34101B644E3CDC7C

2007-08-16 18:30:39 524288 --a-----t C:\WINDOWS\temp\TMP0000000B84A0C075152683F4 <Not Verified; Microsoft Corporation; Microsoft® Windows® Operating System>

2007-08-08 19:57:26 524288 --a-----t C:\WINDOWS\temp\TMP0000000C51E2BE22D33A4F92

2007-08-15 13:01:12 524288 --a-----t C:\WINDOWS\temp\TMP0000000CE6AB1FF92FFDD9F6

2007-08-12 01:36:24 524288 --a-----t C:\WINDOWS\temp\TMP0000000D75752990F05D73BE

2007-03-26 21:54:19 524288 --a-----t C:\WINDOWS\temp\TMP0000000D84EBBB8BFC138012

2007-02-28 20:11:35 524288 --a-----t C:\WINDOWS\temp\TMP0000000D99BA8AE9D195BE0F

2007-04-02 21:51:13 524288 --a-----t C:\WINDOWS\temp\TMP0000000DE385C33AD1802257

2007-08-15 20:13:10 524288 --a-----t C:\WINDOWS\temp\TMP0000000DFC6C0323DA4CE695

2007-02-28 19:59:20 524288 --a-----t C:\WINDOWS\temp\TMP0000000E13B54D629BB9BD63

2007-08-15 20:13:10 524288 --a-----t C:\WINDOWS\temp\TMP0000000F488B32196FD5ECCC

2007-02-17 23:29:58 524288 --a-----t C:\WINDOWS\temp\TMP0000000F5E793E370A703242

2007-02-21 20:03:43 524288 --a-----t C:\WINDOWS\temp\TMP00000012450313089E8157BD <Not Verified; Microsoft Corporation; Microsoft® Windows® Operating System>

2007-02-17 23:24:20 524288 --a-----t C:\WINDOWS\temp\TMP00000012B890D620BBA32B45

2007-08-06 11:01:58 524288 --a-----t C:\WINDOWS\temp\TMP00000013C79F47BB1217809B

2007-03-21 13:50:22 524288 --a-----t C:\WINDOWS\temp\TMP000000155BE4EE2FFF365E0C

2007-04-03 20:08:49 524288 --a-----t C:\WINDOWS\temp\TMP000000161340F97429CE9357

2007-08-12 01:30:00 524288 --a-----t C:\WINDOWS\temp\TMP0000001629C49C8D4E4F33FA

2007-08-05 19:02:57 524288 --a-----t C:\WINDOWS\temp\TMP00000017E9924C71DABD591F

2007-08-05 19:08:48 524288 --a-----t C:\WINDOWS\temp\TMP0000001B274AA28D016E2B0B

2007-03-31 12:56:24 524288 --a-----t C:\WINDOWS\temp\TMP0000001E58E2659AAC5204FE

2007-02-20 00:10:01 524288 --a-----t C:\WINDOWS\temp\TMP0000001FA26524FEEED03637

2007-08-12 01:05:17 524288 --a-----t C:\WINDOWS\temp\TMP0000002526AED9B924B7F9DA

2007-03-20 13:05:24 524288 --a-----t C:\WINDOWS\temp\TMP000000266FF045BAC643A9BE

2007-02-18 19:14:09 524288 --a-----t C:\WINDOWS\temp\TMP00000028027E21A2618F82CC

2007-02-27 17:57:03 524288 --a-----t C:\WINDOWS\temp\TMP000000298131FA7A0BBCB4D2

2007-05-17 18:31:10 524288 --a-----t C:\WINDOWS\temp\TMP00000031635F202F4AB3A151

2007-02-24 10:57:33 524288 --a-----t C:\WINDOWS\temp\TMP0000003330BAC5EBB395B75B

2007-08-06 11:56:52 524288 --a-----t C:\WINDOWS\temp\TMP000000394BE30E688D509156 <Not Verified; Microsoft Corporation; Microsoft® Windows® Operating System>

2007-04-10 20:22:46 524288 --a-----t C:\WINDOWS\temp\TMP00000039E888E37B4003D259

2008-01-08 16:31:16 255 --a------ C:\WINDOWS\temp\WGAErrLog.txt

2008-01-08 16:34:27 409 --a------ C:\WINDOWS\temp\WGANotify.settings

2007-12-06 18:28:09 0 d-------- C:\WINDOWS\temp\_avast4_

2005-11-02 19:00:36 0 d-------- C:\WINDOWS\temp\_ISTMP1.DIR

2005-11-02 19:00:36 0 d-------- C:\WINDOWS\temp\_ISTMP2.DIR

2003-05-29 18:00:20 160864 --a------ C:\WINDOWS\Downloaded Program Files\messengerstatsclient.dll <Verified; Microsoft Corporation; MSN® Games by Zone.com>

2004-04-06 22:03:54 172072 --a------ C:\WINDOWS\Downloaded Program Files\MessengerStatsPAClient.dll <Not Verified; Microsoft Corporation; MSN® Games by Zone.com>

2003-05-29 18:00:18 77408 --a------ C:\WINDOWS\Downloaded Program Files\msgrchkr.dll <Verified; Microsoft Corporation; MSN® Games by Zone.com>

2006-06-20 18:44:04 379704 --a------ C:\WINDOWS\Downloaded Program Files\MsnPUpld.dll <Verified; Microsoft® Corporation; MSN Photo Upload Control>

2004-09-22 18:59:24 110592 --a------ C:\WINDOWS\Downloaded Program Files\PURen-us.dll <Not Verified; Microsoft® Corporation; MSN Photo Upload Control>

2006-09-08 06:52:24 360448 --a------ C:\WINDOWS\Downloaded Program Files\unomsnger.dll <Not Verified; Microsoft; UNO Messenger>

2005-08-14 03:26:04 113664 --a------ C:\WINDOWS\Downloaded Program Files\MsnMessengerSetupDownloader.ocx <Not Verified; Microsoft Corporation; MsnMessengerSetupDownloader>

2004-11-18 01:44:52 114728 --a------ C:\WINDOWS\Downloaded Program Files\Zintro.ocx <Not Verified; Microsoft Corporation; MSN® Games by Zone.com>

-*- End of Logfile -*-

Link to post
Share on other sites

Download Combofix to your desktop.

Doubleclick combofix.exe

Follow the prompts.

Don't click on the window while the fix is running, because that will cause your system to hang.

When finished and after reboot (in case it asks to reboot), it should open a log, combofix.txt.

Post this log in your next reply .

Link to post
Share on other sites

All right. Here it is:

ComboFix 08-01-09.2 - HP_Owner 2008-01-09 20:20:37.1 - NTFSx86

Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.128 [GMT -7:00]

Running from: C:\Documents and Settings\HP_Owner\Desktop\ComboFix.exe

* Created a new restore point

C:\ComboFix\restore_pt.dat

.

The following files were disabled during the run:

C:\WINDOWS\system32\guard32.dll

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))

.

D:\Autorun.inf

.

((((((((((((((((((((((((( Files Created from 2007-12-10 to 2008-01-10 )))))))))))))))))))))))))))))))

.

2008-01-09 20:14 . 2000-08-31 08:00 51,200 --a------ C:\WINDOWS\NirCmd.exe

2008-01-08 17:23 . 2008-01-08 17:23 <DIR> d----c--- C:\Deckard

2008-01-08 16:53 . 2008-01-08 16:53 <DIR> d----c--- C:\VundoFix Backups

2008-01-05 13:00 . 1998-05-07 10:57 143,872 --a------ C:\WINDOWS\system32\iacenc.dll

2007-12-20 15:17 . 2007-12-20 15:18 <DIR> d-------- C:\Documents and Settings\HP_Owner\Application Data\Thunderbird

2007-12-20 15:13 . 2008-01-09 20:10 <DIR> d-------- C:\Program Files\Mozilla Thunderbird

2007-12-20 14:03 . 2007-12-20 14:06 <DIR> d----c--- C:\Documents and Settings\All Users\Application Data\BOC425

2007-12-20 14:03 . 2008-01-09 20:53 9,078 --a------ C:\WINDOWS\BOC425.INI

2007-12-19 17:42 . 2007-12-19 17:43 <DIR> d-------- C:\Program Files\OpenOffice.org 2.3

.

(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2008-01-10 03:54 --------- d-----w C:\Documents and Settings\HP_Owner\Application Data\OpenOffice.org2

2008-01-10 00:58 --------- d-----w C:\Documents and Settings\HP_Owner\Application Data\LimeWire

2008-01-07 00:20 --------- d--h--w C:\Program Files\InstallShield Installation Information

2007-12-20 22:02 --------- d-----w C:\Program Files\Comodo

2007-12-20 22:02 --------- d-----w C:\Documents and Settings\HP_Owner\Application Data\Comodo

2007-12-20 00:09 --------- d-----w C:\Program Files\Java

2007-12-02 01:13 --------- d-----w C:\Program Files\MyEmoticons

2007-11-26 17:38 238,848 ----a-w C:\WINDOWS\UNBOC.EXE

2007-11-25 18:34 79,096 ----a-w C:\WINDOWS\system32\drivers\cmdGuard.sys

2007-11-25 18:34 23,672 ----a-w C:\WINDOWS\system32\drivers\cmdhlp.sys

2007-11-25 18:18 --------- d-----w C:\Program Files\IrfanView

2007-11-25 05:47 102,400 ----a-w C:\WINDOWS\system32\drivers\cavasm.sys

2007-11-25 05:42 --------- d-----w C:\Program Files\iPod

2007-11-25 03:58 --------- d-----w C:\Documents and Settings\HP_Owner\Application Data\Talkback

2007-11-25 03:52 --------- d-----w C:\Documents and Settings\HP_Owner\Application Data\Apple Computer

2007-11-25 03:51 --------- dc----w C:\Documents and Settings\All Users\Application Data\Apple Computer

2007-11-25 02:03 --------- d-----w C:\Documents and Settings\HP_Owner\Application Data\SiteAdvisor

2007-11-25 01:40 --------- dc----w C:\Documents and Settings\All Users\Application Data\Comodo

2007-11-24 05:57 --------- d-----w C:\Program Files\QuickTime

2007-11-24 04:13 --------- dc----w C:\Documents and Settings\Administrator\Application Data\Apple Computer

2007-11-23 21:17 --------- dc----w C:\Documents and Settings\All Users\Application Data\Seagate

2007-11-23 21:11 392,320 ----a-w C:\WINDOWS\system32\drivers\timntr.sys

2007-11-23 21:11 32,768 ----a-w C:\WINDOWS\system32\drivers\tifsfilt.sys

2007-11-23 21:10 120,992 ----a-w C:\WINDOWS\system32\drivers\snapman.sys

2007-11-23 21:10 --------- d-----w C:\Program Files\Common Files\Seagate

2007-11-23 21:09 --------- d-----w C:\Program Files\Seagate

2007-11-13 10:25 20,480 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys

2007-10-18 23:41 31,824 ----a-w C:\Documents and Settings\HP_Owner\Application Data\wklnhst.dat

2007-05-04 21:21 32 -c--a-r C:\Documents and Settings\All Users\hash.dat

2006-07-02 23:52 595,493 --sha-w C:\WINDOWS\system32\mnnmp.bak2

.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Note* empty entries & legit default entries are not shown

REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-03 22:00 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"High Definition Audio Property Page Shortcut"="HDAShCut.exe" [2005-01-07 18:07 61952 C:\WINDOWS\system32\HdAShCut.exe]

"HotKeysCmds"="C:\WINDOWS\system32\hkcmd.exe" [2005-06-08 03:59 77824]

"Persistence"="C:\WINDOWS\system32\igfxpers.exe" [2005-06-08 04:03 114688]

"PCDrProfiler"="" []

"HPBootOp"="C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" [2005-02-25 16:34 245760]

"HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2006-02-19 05:41 49152]

"bcmwltry"="bcmwltry.exe" [2003-07-25 16:28 462848 C:\WINDOWS\system32\bcmwltry.exe]

"removecpl"="RemoveCpl.exe" []

"Symantec NetDriver Monitor"="C:\PROGRA~1\SYMNET~1\SNDMon.exe" [ ]

"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2006-11-05 18:11 185896]

"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 19:51 39792]

"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11 132496]

"DiscWizardMonitor.exe"="C:\Program Files\Seagate\DiscWizard\DiscWizardMonitor.exe" [2007-04-19 21:24 1169744]

"AcronisTimounterMonitor"="C:\Program Files\Seagate\DiscWizard\TimounterMonitor.exe" [2007-04-19 21:38 1945688]

"Acronis Scheduler2 Service"="C:\Program Files\Common Files\Seagate\Schedule2\schedhlp.exe" [2007-04-19 21:29 149024]

"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2007-11-14 23:43 286720]

"COMODO Firewall Pro"="G:\Comodo\Comodo Firewall\cfp.exe" [2007-11-25 11:34 1481984]

"iTunesHelper"="G:\iTunes\iTunesHelper.exe" [2007-11-15 13:11 267048]

"cnfgCav"="G:\Comodo\Comodo AntiVirus\CMain.exe" [2007-11-24 22:47 110592]

"BOC-425"="G:\Comodo\COMODO~2\BOC425.exe" [2007-11-26 10:38 342272]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]

"DWQueuedReporting"="C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" [2005-04-25 16:45 36040]

C:\Documents and Settings\HP_Owner\Start Menu\Programs\Startup\

Adobe Gamma.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2005-03-16 22:16:50]

OpenOffice.org 2.3.lnk - C:\Program Files\OpenOffice.org 2.3\program\quickstart.exe [2007-08-17 21:57:56]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\

Updates from HP.lnk - C:\Program Files\Updates from HP\9972322\Program\Updates from HP.exe [2005-11-02 19:25:29]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\monln]

monln.dll 2007-11-24 22:47 216576 C:\WINDOWS\system32\monln.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]

"AppInit_DLLs"= C:\WINDOWS\system32\guard32.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]

Authentication Packages REG_MULTI_SZ msv1_0 relog_ap

R0 Cavasm;Cavasm;C:\WINDOWS\system32\DRIVERS\cavasm.sys [2007-11-24 22:47]

R1 cmdGuard;COMODO Firewall Pro Sandbox Driver;C:\WINDOWS\system32\DRIVERS\cmdguard.sys [2007-11-25 11:34]

R1 cmdHlp;COMODO Firewall Pro Helper Driver;C:\WINDOWS\system32\DRIVERS\cmdhlp.sys [2007-11-25 11:34]

R2 Comodo Anti-Virus and Anti-Spyware Service;Comodo Anti-Virus and Anti-Spyware Service;"C:\Program Files\Comodo\common\CAVASpy\cavasm.exe" [2007-11-24 22:47]

R3 BOCDRIVE;BOClean Kernel Monitor.;G:\Comodo\Comodo AntiMalware\BOCDRIVE.sys [2007-04-17 14:14]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{2d435b36-e506-11d9-9b78-e6b009352ae7}]

\Shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Info.exe protect.ed 480 480

.

Contents of the 'Scheduled Tasks' folder

"2007-12-28 00:33:47 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"

- C:\Program Files\Apple Software Update\SoftwareUpdate.exe

"2008-01-10 03:03:00 C:\WINDOWS\Tasks\Check Updates for Windows Live Toolbar.job"

- C:\Program Files\Windows Live Toolbar\MSNTBUP.EXE

.

**************************************************************************

catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2008-01-09 20:53:12

Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully

hidden files: 0

**************************************************************************

.

Completion time: 2008-01-09 21:01:40 - machine was rebooted

ComboFix-quarantined-files.txt 2008-01-10 04:00:52

.

2008-01-09 22:46:45 --- E O F ---

Link to post
Share on other sites

After DSS cleaned all that stuff out...looking pretty good.

Let's look from another angle

Please run the F-Secure Online Scanner

Note: This Scanner is for Internet Explorer Only!

  • Click on the Start Scanning button at bottom of page.
  • Accept the License Agreement and the ActiveX install.
  • Once the ActiveX installs,Click Full System Scan
  • Once the download completes,the scan will begin automatically.
  • The scan will take some time to finish,so please be patient.
  • When the scan completes, click the Automatic cleaning (recommended) button.
  • Click the Show Report button and Copy&Paste the entire report to your Desktop and post a copy here please, along with a fresh HijackThis log.

2.

Link to post
Share on other sites

Haha, thanks. It's pretty amazing how you can read and understand all that stuff.

My computer does seem to running a lot smoother. But the updates from HP error message persists.....!

I'm starting to think that maybe it's not my computer??

Anyway, about the online scanner, I opened IE and went to run it, but I kept getting the error message "Insufficient rights to use ActiveX controls! Please check your user rights and Internet Explorer security settings" and then the thing freezes. Um? I don't ever use IE anyway..

Do you want me to just post a fresh HijackThis log?

Link to post
Share on other sites
I'm starting to think that maybe it's not my computer

I have a tendancy to agree, I'd really like to see a scan tho.

This one will run on your computer instead.

Download Dr.Web CureIt to the desktop:

ftp://ftp.drweb.com/pub/drweb/cureit/drweb-cureit.exe

  • Double click the drweb-cureit.exe file and Allow to run the express scan
  • This will scan the files currently running in memory and when something is found, click the yes button when it asks you if you want to cure it. This is only a short scan.
  • Once the short scan has finished, mark the drives that you want to scan.
  • Select all drives. A red dot shows which drives have been chosen.
  • Click the green arrow at the right, and the scan will start.
  • Click 'Yes to all' if it asks if you want to cure/move the file.
  • When the scan has finished, in the menu, click file and choose save report list
  • Save the report to your desktop. The report will be called DrWeb.csv
  • Close Dr.Web Cureit.

Post the Cureit log and a HJT log please

Have you tried re-installing the HP Update software yet??

Link to post
Share on other sites

"Errors encountered while performing the operation. Look at the information window for more details."

Extracting be-cureit.dwl

Extracting bg-cureit.dwl

Extracting crw44400.cdb

Extracting crw44401.cdb

Extracting crw44402.cdb

Extracting crw44403.cdb

Extracting crw44404.cdb

Extracting crw44405.cdb

Extracting crw44406.cdb

Extracting crw44407.cdb

Extracting crw44408.cdb

Extracting crw44409.cdb

Extracting crw44410.cdb

Extracting crw44411.cdb

Extracting crw44412.cdb

Extracting crw44413.cdb

Extracting crw44414.cdb

Extracting crw44415.cdb

Extracting crw44416.cdb

Extracting crw44417.cdb

Extracting crw44418.cdb

Extracting crwebase.cdb

Extracting crwnasty.cdb

Extracting crwrisky.cdb

Extracting crwtoday.cdb

Extracting cs-cureit.dwl

Extracting cwn44401.cdb

Extracting cwntoday.cdb

Extracting cwrtoday.cdb

Extracting de-cureit.dwl

Extracting dwebio16.dll

Extracting dwebio32.dll

Extracting dwebllio.dll

Extracting el-cureit.dwl

Extracting en-drwebgui.chm

Extracting eo-cureit.dwl

Cannot open eo-cureit.dwl

Extracting es-cureit.dwl

Extracting et-cureit.dwl

Extracting fr-cureit.dwl

Extracting hu-cureit.dwl

Extracting it-cureit.dwl

Extracting ja-cureit.dwl

Extracting ko-cureit.dwl

Extracting lt-cureit.dwl

Cannot open lt-cureit.dwl

Extracting lv-cureit.dwl

Extracting nl-cureit.dwl

Extracting pl-cureit.dwl

Cannot open pl-cureit.dwl

Extracting pt-cureit.dwl

Extracting ru-cureit.dwl

Extracting ru-drwebgui.chm

Extracting setup.dll

Extracting setup.exe

Extracting setup.key

Extracting setup_me.ini

Extracting setup_xp.ini

Extracting sk-cureit.dwl

Extracting tr-cureit.dwl

Extracting uk-cureit.dwl

Extracting zh-cn-cureit.dwl

Extracting zh-tr-cureit.dwl

Extracting _start.dat

Extracting _start.exe

Extracting crw44419.cdb

Extracting crw44420.cdb

Extracting crw44421.cdb

I'm starting to get worried again..

And no, I haven't tried reinstalling the HP software but that is a good idea. I will try it!

Link to post
Share on other sites

Sorry for the delay..had a crazy week end.

Looks like your Active X controls are just shut off.

Let see if we can get a scan going.

Open IE and click on Tools>Internet Options>Security(tab)> Make sure the Globe(Internet) is hilightedthen click Default Level>Apply>Click the Advanced (tab)>Restore Defaults>Apply>OK

Reboot and try the F-secure scan again OR the following..either is fine.

Using Internet Explorer please do an online scan with Kaspersky Online Scanner

Click on Kaspersky Online Scanner

Click "I accept"

You will be prompted to install an ActiveX component from Kaspersky, Click Yes.

  • The program will launch and then start to download the latest definition files.
  • Once the scanner is installed and the definitions downloaded, click Next.
  • Now click on Scan Settings
  • In the scan settings make sure that the following are selected:
    • Scan using the following Anti-Virus database:
      • Extended (If available otherwise Standard)

      [*]Scan Options:

      • Scan Archives
      • Scan Mail Bases

    [*]Click OK

    [*]Now under select a target to scan select My Computer

    [*]The scan will take a while so be patient and let it run. Once the scan is complete it will display if your system has been infected.

    [*]Now click on the Save report button.

    [*]Call it Kaspersky.txt

    [*]Expand the arrow beside "file types" and save as .txt file.

    [*]Save the file to your desktop.

    [*]Copy and paste that information in your next post.

*Note

If you have Internet Explorer 7 installed:

If you have trouble getting past the initial download you may need to use the "zoom" tool at bottom right of the scanner window and increase it to 125% to see and press the "accept" button.

Page will reload and you should be able to carry on scan.

If the KAV log has your email all over it -- please attach it rather than copy/paste.

Make SURE to watch your IE screen for the YELLOW Information Bar that may pop up at top of IE windows about ActiveX..Just click the bar and choose Install if it pops up

Link to post
Share on other sites
Guest
This topic is now closed to further replies.