DDS (Ver_2012-11-20.01) - NTFS_x86 Internet Explorer: 8.0.6001.18702 Run by Owner at 22:00:10 on 2013-01-23 Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.1471.335 [GMT -5:00] . AV: AVG Anti-Virus 2013 *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF} . ============== Running Processes ================ . C:\WINDOWS\system32\spoolsv.exe C:\Program Files\SUPERAntiSpyware\SASCORE.EXE C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe C:\WINDOWS\System32\nvsvc32.exe C:\Program Files\Softex\OmniPass\Omniserv.exe C:\Program Files\Softex\OmniPass\OPXPApp.exe C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\System32\alg.exe C:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe C:\Program Files\HP\HP Software Update\HPWuSchd.exe C:\HP\KBD\KBD.EXE C:\Program Files\Multimedia Card Reader\shwicon2k.exe C:\WINDOWS\ALCXMNTR.EXE C:\WINDOWS\system32\rundll32.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe C:\Program Files\interMute\SpamSubtract\SpamSubtract.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\WINDOWS\system32\wbem\wmiprvse.exe C:\WINDOWS\System32\svchost.exe -k netsvcs C:\WINDOWS\System32\svchost.exe -k NetworkService C:\WINDOWS\System32\svchost.exe -k LocalService C:\WINDOWS\System32\svchost.exe -k LocalService . ============== Pseudo HJT Report =============== . uStart Page = hxxp://finance.yahoo.com/ uSearch Bar = hxxp://srch-us9.hpwis.com/ uSearch Page = hxxp://srch-us9.hpwis.com/ uDefault_Page_URL = hxxp://us9.hpwis.com/ uDefault_Search_URL = hxxp://srch-us9.hpwis.com/ mSearch Bar = hxxp://srch-us9.hpwis.com/ uProxyOverride = localhost BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll BHO: : {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - c:\program files\microsoft money\system\mnyside.dll BHO: CNavExtBho Class: {BDF3E430-B101-42AD-A544-FADC6B084872} - BHO: WeCareReminder Class: {D824F0DE-3D60-4F57-9EB1-66033ECD8ABB} - c:\documents and settings\all users\application data\wecarereminder\IEHelperv2.5.0.dll BHO: {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - TB: HP View: {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\program files\hewlett-packard\digital imaging\bin\hpdtlk02.dll TB: : - LocalServer32 - TB: HP View: {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\program files\hewlett-packard\digital imaging\bin\hpdtlk02.dll EB: {32683183-48a0-441b-a342-7c2a440a9478} - EB: hp view: {8F4902B6-6C04-4ade-8052-AA58578A21BD} - c:\windows\system32\shdocvw.dll uRun: [BackupNotify] c:\program files\hewlett-packard\digital imaging\bin\backupnotify.exe uRun: [NVIEW] rundll32.exe nview.dll,nViewLoadHook uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background uRun: [Itibiti.exe] c:\program files\itibiti soft phone\Itibiti.exe uRun: [SUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe mRun: [hpsysdrv] c:\windows\system\hpsysdrv.exe mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe mRun: [CamMonitor] c:\program files\hewlett-packard\digital imaging\\unload\hpqcmon.exe mRun: [HP Software Update] "c:\program files\hp\hp software update\HPWuSchd.exe" mRun: [HPHUPD05] c:\program files\hewlett-packard\{45b6180b-dcab-4093-8ee8-6164457517f0}\hphupd05.exe mRun: [HPHmon05] c:\windows\system32\hphmon05.exe mRun: [KBD] c:\hp\kbd\KBD.EXE mRun: [StorageGuard] "c:\program files\common files\sonic\update manager\sgtray.exe" /r mRun: [TkBellExe] "c:\program files\common files\real\update_ob\realsched.exe" -osboot mRun: [AutoTKit] c:\hp\bin\AUTOTKIT.EXE mRun: [Recguard] c:\windows\sminst\RECGUARD.EXE mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup mRun: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect mRun: [PS2] c:\windows\system32\ps2.exe mRun: [Sunkist2k] c:\program files\multimedia card reader\shwicon2k.exe mRun: [AVG_UI] "c:\program files\avg\avg2013\avgui.exe" /TRAYONLY mRun: [AlcxMonitor] ALCXMNTR.EXE mRun: [QuickFinder Scheduler] "c:\program files\wordperfect office 11\programs\QFSCHD110.EXE" mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe" StartupFolder: c:\docume~1\owner\startm~1\programs\startup\spamsu~1.lnk - c:\program files\intermute\spamsubtract\SpamSubtract.exe StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\hpdigi~1.lnk - c:\program files\hewlett-packard\digital imaging\bin\hpqtra08.exe StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\quicke~1.lnk - c:\program files\quicken\bagent.exe StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\update~1.lnk - c:\program files\updates from hp\137903\program\BackWeb-137903.exe uPolicies-Explorer: NoDriveTypeAutoRun = dword:145 mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1 mPolicies-Explorer: NoDriveTypeAutoRun = dword:145 IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\windows\system32\msjava.dll IE: {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - {DD6687B5-CB43-4211-BFC9-2942CCBDCB3E} - c:\program files\microsoft money\system\mnyside.dll IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe LSP: SpSubLSP.dll DPF: DirectAnimation Java Classes - file://c:\windows\java\classes\dajava.cab DPF: Microsoft XML Parser for Java - file://c:\windows\java\classes\xmldso.cab DPF: {4B54A9DE-EF1C-4EBE-A328-7C28EA3B433A} - hxxp://quickscan.bitdefender.com/qsax/qsax.cab DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/products/plugin/1.4/jinstall-14_02-windows-i586.cab DPF: {CAFEEFAC-0014-0001-0002-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/1.4/jinstall-14_02-windows-i586.cab DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab TCP: NameServer = 209.18.47.61 209.18.47.62 TCP: Interfaces\{71E0B485-8793-4C90-B0BB-4E041D1C2FBB} : DHCPNameServer = 209.18.47.61 209.18.47.62 Notify: igfxcui - igfxsrvc.dll Notify: OPXPGina - c:\program files\softex\omnipass\opxpgina.dll SEH: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - c:\program files\superantispyware\SASSEH.DLL . ================= FIREFOX =================== . FF - ProfilePath - c:\documents and settings\owner\application data\mozilla\firefox\profiles\nnyvx7il.default\ FF - prefs.js: browser.search.selectedEngine - Google FF - prefs.js: browser.startup.homepage - hxxp://finance.yahoo.com/|about:home FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?ei=UTF-8&fr=w3i&type=W3i_DS,157,0_0,Search,20130104,6902,0,64,0&p= FF - plugin: c:\program files\adobe\reader 11.0\reader\air\nppdf32.dll FF - plugin: c:\program files\real\realone player\netscape6\nppl3260.dll FF - plugin: c:\program files\real\realone player\netscape6\nprjplug.dll FF - plugin: c:\program files\real\realone player\netscape6\nprpjplug.dll FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_5_502_146.dll FF - ExtSQL: 2013-01-23 12:13; foxmarks@kei.com; c:\documents and settings\owner\application data\mozilla\firefox\profiles\nnyvx7il.default\extensions\foxmarks@kei.com . ---- FIREFOX POLICIES ---- FF - user.js: yahoo.ytff.general.dontshowhpoffer - true ============= SERVICES / DRIVERS =============== . R0 AVGIDSHX;AVGIDSHX;c:\windows\system32\drivers\avgidshx.sys [2012-10-15 55776] R0 Avglogx;AVG Logging Driver;c:\windows\system32\drivers\avglogx.sys [2012-9-21 177376] R0 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\drivers\avgmfx86.sys [2012-11-15 94048] R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [2012-9-14 35552] R1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\avgidsdriverx.sys [2012-10-22 179936] R1 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\avgidsshimx.sys [2012-9-21 19936] R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [2012-10-2 159712] R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [2012-9-21 164832] R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2011-7-22 12880] R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2011-7-12 67664] R2 !SASCORE;SAS Core Service;c:\program files\superantispyware\SASCore.exe [2012-7-11 116608] R2 AVGIDSAgent;AVGIDSAgent;c:\program files\avg\avg2013\avgidsagent.exe [2012-11-15 5814904] R2 avgwd;AVG WatchDog;c:\program files\avg\avg2013\avgwdsvc.exe [2012-10-22 196664] R2 MBAMScheduler;MBAMScheduler;c:\program files\malwarebytes' anti-malware\mbamscheduler.exe [2013-1-22 398184] R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2013-1-22 682344] R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-1-22 21104] S2 mrtRate;mrtRate; [x] . =============== Created Last 30 ================ . 2013-01-23 23:28:33 -------- d-----w- c:\documents and settings\owner\application data\QuickScan 2013-01-23 22:36:31 -------- d-----w- c:\program files\ESET 2013-01-23 04:33:07 -------- d-sh--w- c:\documents and settings\owner\PrivacIE 2013-01-23 04:25:28 -------- d-----w- c:\documents and settings\owner\local settings\application data\Google 2013-01-23 04:25:25 -------- d-----w- c:\documents and settings\owner\application data\SUPERAntiSpyware.com 2013-01-23 04:25:10 -------- d-----w- c:\program files\SUPERAntiSpyware 2013-01-23 04:25:10 -------- d-----w- c:\documents and settings\all users\application data\SUPERAntiSpyware.com 2013-01-22 18:09:06 -------- d-----w- c:\documents and settings\all users\application data\WeCareReminder 2013-01-22 18:05:29 -------- d-----w- c:\documents and settings\all users\application data\APN 2013-01-22 13:12:31 -------- d-----w- c:\program files\common files\Borland Shared 2013-01-22 13:12:13 -------- d-----w- c:\windows\ShellNew 2013-01-22 13:11:51 -------- d-----w- c:\program files\WordPerfect Office 11 2013-01-22 13:11:51 -------- d-----w- c:\program files\common files\Corel 2013-01-22 13:00:18 -------- dc-h--w- c:\windows\ie8 2013-01-22 12:07:00 -------- d-sh--w- c:\documents and settings\owner\IETldCache 2013-01-22 08:15:14 521728 -c----w- c:\windows\system32\dllcache\jsdbgui.dll 2013-01-22 08:12:16 6144 -c----w- c:\windows\system32\dllcache\iecompat.dll 2013-01-22 08:11:04 -------- d-----w- c:\windows\ie8updates 2013-01-22 08:10:10 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll 2013-01-22 08:10:08 630272 -c----w- c:\windows\system32\dllcache\msfeeds.dll 2013-01-22 08:10:08 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll 2013-01-22 08:10:07 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll 2013-01-22 08:10:07 2000384 -c----w- c:\windows\system32\dllcache\iertutil.dll 2013-01-22 08:10:04 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll 2013-01-22 08:10:04 11111424 -c----w- c:\windows\system32\dllcache\ieframe.dll 2013-01-22 07:51:54 -------- d-----w- c:\windows\wt 2013-01-22 07:22:29 -------- d-----w- c:\program files\MSXML 4.0 2013-01-22 07:02:09 272128 -c----w- c:\windows\system32\dllcache\bthport.sys 2013-01-22 07:01:37 953856 -c----w- c:\windows\system32\dllcache\mfc40u.dll 2013-01-22 07:00:15 456320 -c----w- c:\windows\system32\dllcache\mrxsmb.sys 2013-01-22 06:59:25 617472 -c----w- c:\windows\system32\dllcache\comctl32.dll 2013-01-22 06:58:43 471552 -c----w- c:\windows\system32\dllcache\aclayers.dll 2013-01-22 06:58:27 536576 -c----w- c:\windows\system32\dllcache\msado15.dll 2013-01-22 06:58:07 81920 -c----w- c:\windows\system32\dllcache\fontsub.dll 2013-01-22 06:58:06 119808 -c----w- c:\windows\system32\dllcache\t2embed.dll 2013-01-22 06:58:01 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys 2013-01-22 06:56:11 331776 -c----w- c:\windows\system32\dllcache\msadce.dll 2013-01-22 06:55:13 744448 -c----w- c:\windows\system32\dllcache\helpsvc.exe 2013-01-22 06:54:54 3558912 -c----w- c:\windows\system32\dllcache\moviemk.exe 2013-01-22 06:54:26 40960 -c----w- c:\windows\system32\dllcache\ndproxy.sys 2013-01-22 06:54:18 153088 -c----w- c:\windows\system32\dllcache\triedit.dll 2013-01-22 06:45:53 105472 -c----w- c:\windows\system32\dllcache\mup.sys 2013-01-22 06:43:45 284160 -c----w- c:\windows\system32\dllcache\pdh.dll 2013-01-22 06:43:31 401408 -c----w- c:\windows\system32\dllcache\rpcss.dll 2013-01-22 06:43:27 110592 -c----w- c:\windows\system32\dllcache\services.exe 2013-01-22 06:43:21 473600 -c----w- c:\windows\system32\dllcache\fastprox.dll 2013-01-22 06:43:16 227840 -c----w- c:\windows\system32\dllcache\wmiprvse.exe 2013-01-22 06:43:10 453120 -c----w- c:\windows\system32\dllcache\wmiprvsd.dll 2013-01-22 06:42:58 617472 -c----w- c:\windows\system32\dllcache\advapi32.dll 2013-01-22 06:38:48 -------- d-----w- c:\documents and settings\owner\application data\Malwarebytes 2013-01-22 06:38:29 -------- d-----w- c:\documents and settings\all users\application data\Malwarebytes 2013-01-22 06:38:26 21104 ----a-w- c:\windows\system32\drivers\mbam.sys 2013-01-22 06:38:26 139784 -c----w- c:\windows\system32\dllcache\rdpwd.sys 2013-01-22 06:38:26 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware 2013-01-22 06:37:25 290560 -c----w- c:\windows\system32\dllcache\atmfd.dll 2013-01-22 06:34:35 758784 -c--a-w- c:\windows\system32\dllcache\vgx.dll 2013-01-22 06:33:53 718336 -c----w- c:\windows\system32\dllcache\ntdll.dll 2013-01-22 06:33:50 2192896 -c----w- c:\windows\system32\dllcache\ntoskrnl.exe 2013-01-22 06:33:50 2148864 -c----w- c:\windows\system32\dllcache\ntkrnlmp.exe 2013-01-22 06:33:49 2069632 -c----w- c:\windows\system32\dllcache\ntkrnlpa.exe 2013-01-22 06:33:49 2027520 -c----w- c:\windows\system32\dllcache\ntkrpamp.exe 2013-01-22 06:33:08 218112 -c----w- c:\windows\system32\dllcache\wordpad.exe 2013-01-22 06:32:38 10496 -c----w- c:\windows\system32\dllcache\ndistapi.sys 2013-01-22 06:32:24 3072 -c----w- c:\windows\system32\dllcache\iacenc.dll 2013-01-22 06:32:24 3072 ------w- c:\windows\system32\iacenc.dll 2013-01-22 06:27:46 45568 -c----w- c:\windows\system32\dllcache\wab.exe 2013-01-22 06:27:34 590848 -c----w- c:\windows\system32\dllcache\rpcrt4.dll 2013-01-22 06:27:33 5120 ----a-w- c:\windows\system32\xpsp4res.dll 2013-01-22 06:25:40 -------- d-----w- c:\windows\system32\PreInstall 2013-01-22 06:25:35 -------- d--h--w- c:\windows\$hf_mig$ 2013-01-22 06:19:10 21504 ----a-w- c:\windows\system32\hidserv.dll 2013-01-22 06:19:08 14592 ----a-w- c:\windows\system32\drivers\kbdhid.sys 2013-01-22 06:12:51 -------- d-----w- C:\I386 2013-01-22 06:10:18 -------- d-----w- c:\documents and settings\owner\local settings\application data\Mozilla 2013-01-22 06:03:17 -------- d-----r- C:\Program Files 2013-01-22 06:03:13 -------- d-----r- c:\documents and settings\all users\Documents 2013-01-22 06:02:48 -------- d-----r- c:\windows\Offline Web Pages 2013-01-22 06:01:57 -------- d-----w- c:\documents and settings\owner\application data\AVG2013 2013-01-22 06:01:19 -------- dcsh--r- c:\windows\system32\dllcache 2013-01-22 06:01:04 -------- d-----w- c:\documents and settings\owner\application data\TuneUp Software 2013-01-22 06:00:29 -------- d--h--w- C:\$AVG 2013-01-22 06:00:29 -------- d-----w- c:\documents and settings\all users\application data\AVG2013 2013-01-22 05:59:57 -------- d-----w- c:\program files\AVG 2013-01-22 05:57:13 -------- d--h--w- c:\documents and settings\all users\application data\Common Files 2013-01-22 05:57:13 -------- d-----w- c:\documents and settings\owner\local settings\application data\MFAData 2013-01-22 05:57:13 -------- d-----w- c:\documents and settings\owner\local settings\application data\Avg2013 2013-01-22 05:57:13 -------- d-----w- c:\documents and settings\all users\application data\MFAData 2013-01-22 05:40:43 -------- d-----w- c:\windows\system32\SoftwareDistribution 2013-01-22 05:39:57 221184 ----a-w- c:\windows\system32\wmpns.dll 2013-01-22 05:39:24 -------- d-----w- c:\windows\system32\wbem\AutoRecover 2013-01-22 05:31:54 -------- d-----w- c:\windows\ServicePackFiles 2013-01-22 05:28:56 39936 ----a-w- c:\windows\system32\perfctrs.dll 2013-01-22 05:27:25 9728 -c--a-w- c:\windows\system32\dllcache\label.exe 2013-01-22 05:25:59 98304 ----a-w- c:\windows\system32\ahui.exe 2013-01-22 05:08:27 74248 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2013-01-22 05:08:27 697864 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2013-01-22 04:41:13 -------- d-s---w- c:\documents and settings\owner\UserData 2013-01-22 04:36:03 -------- d-sh--r- C:\cmdcons 2013-01-22 04:35:58 -------- d-----w- c:\windows\setup.pss 2013-01-22 04:32:13 -------- d-----w- c:\program files\Java Web Start 2013-01-22 04:32:10 229487 ----a-w- c:\windows\system32\jpicpl32.cpl 2013-01-22 04:30:54 212480 ----a-w- c:\windows\PCDLIB32.DLL 2013-01-22 04:30:49 -------- d-----w- c:\program files\Encarta Online 2013-01-22 04:29:48 60160 -c--a-w- c:\windows\system32\dllcache\drmk.sys 2013-01-22 04:29:48 60160 ----a-w- c:\windows\system32\drivers\drmk.sys 2013-01-22 04:29:48 146048 -c--a-w- c:\windows\system32\dllcache\portcls.sys 2013-01-22 04:29:48 146048 ----a-w- c:\windows\system32\drivers\portcls.sys 2013-01-22 04:29:27 -------- d-----w- c:\program files\Multimedia Card Reader 2013-01-22 04:29:23 -------- d-----w- c:\windows\Downloaded Installations . ==================== Find3M ==================== . 2013-01-22 05:34:59 126976 ----a-w- c:\windows\pchealth\helpctr\vendors\cn=hewlett-packard,l=cupertino,s=ca,c=us\pavilion\xphnabs3en\plugin\bin\ContentUpdater.exe 2013-01-22 05:34:51 106496 ----a-w- c:\windows\pchealth\helpctr\vendors\cn=hewlett-packard,l=cupertino,s=ca,c=us\pavilion\xphnabs3en\plugin\bin\PluginCtrl.dll 2013-01-22 05:34:34 77824 ----a-w- c:\windows\pchealth\helpctr\vendors\cn=hewlett-packard,l=cupertino,s=ca,c=us\pavilion\xphnabs3en\plugin\bin\WinVerifyTrust.dll 2013-01-22 05:34:31 49152 ----a-w- c:\windows\pchealth\helpctr\vendors\cn=hewlett-packard,l=cupertino,s=ca,c=us\pavilion\xphnabs3en\plugin\bin\PCHI18N.dll 2013-01-22 05:34:30 122880 ----a-w- c:\windows\pchealth\helpctr\vendors\cn=hewlett-packard,l=cupertino,s=ca,c=us\pavilion\xphnabs3en\plugin\bin\SearchCtrl.dll 2013-01-22 05:34:28 159744 ----a-w- c:\windows\pchealth\helpctr\vendors\cn=hewlett-packard,l=cupertino,s=ca,c=us\pavilion\xphnabs3en\plugin\bin\PCHButton.exe 2012-12-16 12:23:59 290560 ----a-w- c:\windows\system32\atmfd.dll 2012-11-13 01:25:12 1866368 ----a-w- c:\windows\system32\win32k.sys 2012-11-06 02:01:39 1371648 ------w- c:\windows\system32\msxml6.dll 2012-11-02 02:02:42 375296 ----a-w- c:\windows\system32\dpnet.dll 2012-11-01 12:17:54 916992 ----a-w- c:\windows\system32\wininet.dll 2012-11-01 12:17:54 43520 ------w- c:\windows\system32\licmgr10.dll 2012-11-01 12:17:54 1469440 ------w- c:\windows\system32\inetcpl.cpl 2012-11-01 00:35:34 385024 ------w- c:\windows\system32\html.iec . ============= FINISH: 22:01:17.09 ===============