OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\UNKNOWN\Downloads
Starter Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000c0a | Country: España | Language: ESN | Date Format: dd/MM/yyyy
1013,09 Mb Total Physical Memory | 120,90 Mb Available Physical Memory | 11,93% Memory free
1,99 Gb Paging File | 0,58 Gb Available in Paging File | 28,99% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 219,79 Gb Total Space | 189,34 Gb Free Space | 86,15% Space Free | Partition Type: NTFS
Computer Name: UNKNOWN-PC | User Name: UNKNOWN | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/08/06 17:21:20 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\UNKNOWN\Downloads\OTL.com
PRC - [2011/08/03 14:24:10 | 000,136,360 | ---- | M] (Avira GmbH) -- C:\Archivos de programa\Avira\AntiVir Desktop\sched.exe
PRC - [2011/08/03 14:24:07 | 000,428,200 | ---- | M] (Avira GmbH) -- C:\Archivos de programa\Avira\AntiVir Desktop\avwebgrd.exe
PRC - [2011/08/03 14:24:06 | 000,340,136 | ---- | M] (Avira GmbH) -- C:\Archivos de programa\Avira\AntiVir Desktop\avmailc.exe
PRC - [2011/08/03 14:24:06 | 000,281,768 | ---- | M] (Avira GmbH) -- C:\Archivos de programa\Avira\AntiVir Desktop\avgnt.exe
PRC - [2011/08/03 14:24:06 | 000,269,480 | ---- | M] (Avira GmbH) -- C:\Archivos de programa\Avira\AntiVir Desktop\avguard.exe
PRC - [2011/08/03 12:05:04 | 001,694,720 | ---- | M] (NetcoSolutions) -- C:\Archivos de programa\HMA! Pro VPN\bin\HMA! Pro VPN.exe
PRC - [2011/06/17 15:30:34 | 000,024,336 | ---- | M] (SANDBOXIE L.T.D) -- C:\Archivos de programa\Sandboxie\SandboxieRpcSs.exe
PRC - [2011/06/17 15:30:34 | 000,018,704 | ---- | M] (SANDBOXIE L.T.D) -- C:\Archivos de programa\Sandboxie\SandboxieDcomLaunch.exe
PRC - [2011/06/17 15:30:34 | 000,015,632 | ---- | M] (SANDBOXIE L.T.D) -- C:\Archivos de programa\Sandboxie\SandboxieCrypto.exe
PRC - [2011/06/17 15:30:30 | 000,412,432 | ---- | M] (SANDBOXIE L.T.D) -- C:\Archivos de programa\Sandboxie\SbieCtrl.exe
PRC - [2011/06/17 15:30:26 | 000,072,464 | ---- | M] (SANDBOXIE L.T.D) -- C:\Archivos de programa\Sandboxie\SbieSvc.exe
PRC - [2011/06/03 07:56:57 | 000,271,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe
PRC - [2011/03/28 20:31:16 | 000,193,920 | ---- | M] (Microsoft Corp.) -- C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
PRC - [2011/03/28 20:31:14 | 001,713,536 | ---- | M] (Microsoft Corp.) -- C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
PRC - [2011/02/25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2010/11/20 14:17:56 | 001,121,792 | ---- | M] (Microsoft Corporation) -- C:\Archivos de programa\Windows Media Player\wmpnetwk.exe
PRC - [2010/11/20 14:17:47 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2010/11/12 08:24:10 | 001,602,344 | ---- | M] (ELAN Microelectronics Corp.) -- C:\Archivos de programa\Elantech\ETDCtrlHelper.exe
PRC - [2010/11/12 08:24:08 | 001,812,264 | ---- | M] (ELAN Microelectronics Corp.) -- C:\Archivos de programa\Elantech\ETDCtrl.exe
PRC - [2010/10/13 10:19:10 | 000,075,776 | ---- | M] (MediaTek Inc.) -- C:\Archivos de programa\instanet city\WmMMgr.exe
PRC - [2010/10/13 10:18:50 | 000,122,938 | ---- | M] (MediaTek Inc.) -- C:\Archivos de programa\instanet city\WSRV.exe
PRC - [2010/08/31 17:14:56 | 012,609,352 | ---- | M] () -- C:\Archivos de programa\Video Web Camera\VideoWebCamera.exe
PRC - [2010/08/10 11:06:16 | 000,975,952 | ---- | M] (Dritek System Inc.) -- C:\Archivos de programa\Launch Manager\LManager.exe
PRC - [2010/08/10 11:06:16 | 000,321,104 | ---- | M] (Dritek System Inc.) -- C:\Archivos de programa\Launch Manager\dsiwmis.exe
PRC - [2010/08/10 11:06:16 | 000,305,744 | ---- | M] (Dritek System Inc.) -- C:\Archivos de programa\Launch Manager\LMworker.exe
PRC - [2010/07/27 14:46:08 | 000,249,136 | ---- | M] (Microsoft Corporation) -- C:\Archivos de programa\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
PRC - [2010/06/11 14:28:06 | 000,715,296 | ---- | M] (Acer Incorporated) -- C:\Archivos de programa\Packard Bell\Packard Bell Power Management\ePowerTray.exe
PRC - [2010/06/11 14:28:02 | 000,735,776 | ---- | M] (Acer Incorporated) -- C:\Archivos de programa\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
PRC - [2010/06/11 14:27:54 | 000,469,536 | ---- | M] (Acer Incorporated) -- C:\Archivos de programa\Packard Bell\Packard Bell Power Management\ePowerEvent.exe
PRC - [2010/04/24 01:10:54 | 000,209,768 | ---- | M] (Microsoft Corporation) -- C:\Archivos de programa\Microsoft Application Virtualization Client\sftvsa.exe
PRC - [2010/04/24 01:10:44 | 000,483,688 | ---- | M] (Microsoft Corporation) -- C:\Archivos de programa\Microsoft Application Virtualization Client\sftlist.exe
PRC - [2010/02/28 02:33:14 | 000,821,664 | ---- | M] (Microsoft Corporation) -- C:\Archivos de programa\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
PRC - [2010/01/29 02:27:36 | 000,243,232 | ---- | M] (Acer Group) -- C:\Archivos de programa\Packard Bell\Packard Bell Updater\UpdaterService.exe
PRC - [2010/01/14 22:12:21 | 000,076,968 | ---- | M] (Avira GmbH) -- C:\Archivos de programa\Avira\AntiVir Desktop\avshadow.exe
PRC - [2010/01/08 15:21:22 | 000,023,584 | ---- | M] (Acer Incorporated) -- C:\Archivos de programa\Packard Bell\Registration\GREGsvc.exe
PRC - [2009/06/04 15:28:36 | 000,184,320 | ---- | M] (Ours Technology Inc.) -- C:\Archivos de programa\PackardBellXSync\Deployment\Functions\{AA58F999-6D97-42c2-A69F-8CC04D18D944}\OMEA.exe
PRC - [2008/11/09 22:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) -- C:\Archivos de programa\Yahoo!\SoftwareUpdate\YahooAUService.exe
========== Modules (SafeList) ==========
MOD - [2011/08/06 17:21:20 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\UNKNOWN\Downloads\OTL.com
MOD - [2010/11/20 13:55:09 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
MOD - [2010/06/11 14:29:10 | 000,215,584 | ---- | M] (Acer Incorporated) -- C:\Archivos de programa\Packard Bell\Packard Bell Power Management\SysHook.dll
========== Win32 Services (SafeList) ==========
SRV - [2011/08/03 14:24:10 | 000,136,360 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2011/08/03 14:24:07 | 000,428,200 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE -- (AntiVirWebService)
SRV - [2011/08/03 14:24:06 | 000,340,136 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avmailc.exe -- (AntiVirMailService)
SRV - [2011/08/03 14:24:06 | 000,269,480 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2011/08/02 14:40:46 | 000,867,080 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2011/07/13 16:00:16 | 000,036,352 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\HMA! Pro VPN\bin\openvpnserv.exe -- (OpenVPNService)
SRV - [2011/06/17 15:30:26 | 000,072,464 | ---- | M] (SANDBOXIE L.T.D) [Auto | Running] -- C:\Program Files\Sandboxie\SbieSvc.exe -- (SbieSvc)
SRV - [2010/10/13 10:18:50 | 000,122,938 | ---- | M] (MediaTek Inc.) [Auto | Running] -- C:\Program Files\instanet city\WSRV.exe -- (MediaTek WiMAX Connection Manager)
SRV - [2010/08/10 11:06:16 | 000,321,104 | ---- | M] (Dritek System Inc.) [Auto | Running] -- C:\Archivos de programa\Launch Manager\dsiwmis.exe -- (DsiWMIService)
SRV - [2010/06/11 14:28:02 | 000,735,776 | ---- | M] (Acer Incorporated) [Auto | Running] -- C:\Archivos de programa\Packard Bell\Packard Bell Power Management\ePowerSvc.exe -- (ePowerSvc)
SRV - [2010/04/24 01:10:54 | 000,209,768 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe -- (sftvsa)
SRV - [2010/04/24 01:10:44 | 000,483,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe -- (sftlist)
SRV - [2010/04/04 01:01:24 | 000,246,520 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files\Packard Bell Games\Packard Bell Game Console\GameConsoleService.exe -- (GameConsoleService)
SRV - [2010/01/29 02:27:36 | 000,243,232 | ---- | M] (Acer Group) [Auto | Running] -- C:\Archivos de programa\Packard Bell\Packard Bell Updater\UpdaterService.exe -- (Updater Service)
SRV - [2010/01/08 15:21:22 | 000,023,584 | ---- | M] (Acer Incorporated) [Auto | Running] -- C:\Archivos de programa\Packard Bell\Registration\GREGsvc.exe -- (GREGService)
SRV - [2009/10/09 05:45:56 | 000,169,312 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- c:\Archivos de programa\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe -- (AdobeActiveFileMonitor8.0)
SRV - [2009/07/14 03:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Archivos de programa\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2008/11/09 22:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Auto | Running] -- C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService)
========== Driver Services (SafeList) ==========
DRV - [2011/08/03 14:24:10 | 000,138,192 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\System32\drivers\avipbb.sys -- (avipbb)
DRV - [2011/08/03 14:24:10 | 000,066,616 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\Windows\System32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2011/07/13 16:00:14 | 000,026,112 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\tap0901.sys -- (tap0901)
DRV - [2011/06/17 15:30:20 | 000,128,272 | ---- | M] (SANDBOXIE L.T.D) [Kernel | On_Demand | Running] -- C:\Archivos de programa\Sandboxie\SbieDrv.sys -- (SbieDrv)
DRV - [2010/11/20 12:24:41 | 000,052,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2010/10/26 13:39:16 | 000,131,584 | ---- | M] (MediaTek Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\mt7118vu.sys -- (MT7118VU)
DRV - [2010/08/24 11:55:52 | 000,068,208 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\L1C62x86.sys -- (L1C)
DRV - [2010/07/15 23:57:36 | 001,906,024 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\athr.sys -- (athr)
DRV - [2010/06/17 08:50:38 | 000,082,768 | ---- | M] (ENE Technology Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\EUCR6SK.SYS -- (EUCR)
DRV - [2010/04/24 01:10:54 | 000,019,304 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Sftvollh.sys -- (Sftvol)
DRV - [2010/04/24 01:10:52 | 000,021,864 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\Sftredirlh.sys -- (Sftredir)
DRV - [2010/04/24 01:10:50 | 000,195,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Sftplaylh.sys -- (Sftplay)
DRV - [2010/04/24 01:10:44 | 000,550,760 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Sftfslh.sys -- (Sftfs)
DRV - [2010/01/14 10:07:52 | 000,015,360 | ---- | M] (MediaTek Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\mtkwmptv.sys -- (MTKWMPROT)
DRV - [2009/12/30 11:21:18 | 000,027,192 | ---- | M] (VS Revo Group) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\revoflt.sys -- (Revoflt)
DRV - [2009/07/14 01:45:33 | 000,083,456 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\serial.sys -- (Serial)
DRV - [2009/05/11 10:12:49 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\System32\drivers\ssmdrv.sys -- (ssmdrv)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://packardbell.msn.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://packardbell.msn.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://packardbell.msn.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpWinExt,version=5.0: C:\Program Files\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\UNKNOWN\AppData\Local\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\UNKNOWN\AppData\Local\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\MSN Toolbar\Platform\6.0.2282.0\Firefox [2011/08/02 14:34:22 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{27182e60-b5f3-411c-b545-b44205977502}: C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension\ [2011/08/02 14:34:25 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}: C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DMExtension\ [2011/08/02 14:34:29 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/08/02 23:04:24 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/08/02 23:48:51 | 000,000,000 | ---D | M]
[2011/08/02 23:04:47 | 000,000,000 | ---D | M] (No name found) -- C:\Users\UNKNOWN\AppData\Roaming\mozilla\Extensions
[2011/08/02 23:04:24 | 000,000,000 | ---D | M] (No name found) -- C:\Archivos de programa\Mozilla Firefox\extensions
File not found (No name found) --
[2011/07/08 09:16:28 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2010/01/01 10:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
O1 HOSTS File: ([2009/06/10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Archivos de programa\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Archivos de programa\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
O2 - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
O2 - BHO: (Bing Bar BHO) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Archivos de programa\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll (Microsoft Corporation)
O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Archivos de programa\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll (Yahoo! Inc)
O3 - HKLM\..\Toolbar: (@C:\Program Files\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll,-100) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Archivos de programa\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Barra Yahoo!) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Archivos de programa\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No CLSID value found.
O4 - HKLM..\Run: [Acer ePower Management] C:\Archivos de programa\Packard Bell\Packard Bell Power Management\ePowerTray.exe (Acer Incorporated)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [ETDCtrl] C:\Archivos de programa\Elantech\ETDCtrl.exe (ELAN Microelectronics Corp.)
O4 - HKLM..\Run: [LManager] C:\Archivos de programa\Launch Manager\LManager.exe (Dritek System Inc.)
O4 - HKLM..\Run: [OMEA] C:\Program Files\PackardBellXSync\Deployment\Functions\{AA58F999-6D97-42c2-A69F-8CC04D18D944}\OMEA.exe (Ours Technology Inc.)
O4 - HKCU..\Run: [Messenger (Yahoo!)] C:\Archivos de programa\Yahoo!\Messenger\YahooMessenger.exe (Yahoo! Inc.)
O4 - HKCU..\Run: [SandboxieControl] C:\Program Files\Sandboxie\SbieCtrl.exe (SANDBOXIE L.T.D)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9 - Extra Button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Archivos de programa\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Archivos de programa\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira GmbH)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira GmbH)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira GmbH)
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 109.108.191.15 109.108.191.16
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Archivos de programa\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Archivos de programa\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Archivos de programa\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Archivos de programa\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/06/10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{f6b58a0a-bd07-11e0-aa97-90004e1db54a}\Shell - "" = AutoRun
O33 - MountPoints2\{f6b58a0a-bd07-11e0-aa97-90004e1db54a}\Shell\AutoRun\command - "" = D:\SetupLoader.exe
O33 - MountPoints2\D\Shell - "" = AutoRun
O33 - MountPoints2\D\Shell\AutoRun\command - "" = D:\SetupLoader.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/08/06 16:18:22 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\Adobe
[2011/08/06 14:56:43 | 000,000,000 | R--D | C] -- C:\Sandbox
[2011/08/06 14:54:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie
[2011/08/06 14:54:29 | 000,000,000 | ---D | C] -- C:\Program Files\Sandboxie
[2011/08/06 12:15:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HMA! Pro VPN
[2011/08/06 12:14:53 | 000,000,000 | ---D | C] -- C:\Program Files\HMA! Pro VPN
[2011/08/06 06:27:32 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\VS Revo Group
[2011/08/06 06:23:37 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{67A34C9D-500F-42E4-ACC8-FDAA1E7D4262}
[2011/08/06 06:23:12 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{995151EE-528E-4601-B9FF-A546AC538EC7}
[2011/08/06 06:03:45 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Avira
[2011/08/06 06:01:43 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{89CB3EBD-1E22-4C77-846E-500F99839F15}
[2011/08/06 06:01:04 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{CB333A0E-4532-437F-B3DA-4C9AF810BAAF}
[2011/08/06 03:02:21 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2011/08/06 00:32:46 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\Desktop\Havij 1.15 - Advanced SQL Injection
[2011/08/06 00:30:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Havij
[2011/08/06 00:30:09 | 000,000,000 | ---D | C] -- C:\Program Files\Havij
[2011/08/05 17:44:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (Español)
[2011/08/05 17:16:12 | 000,000,000 | ---D | C] -- C:\ProgramData\VirtualizedApplications
[2011/08/05 15:50:30 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{EC31197B-3009-4AB8-B9B1-1DF59D0FFFE7}
[2011/08/05 15:50:06 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{81FAF6FE-221C-4970-A819-CC75121C7A80}
[2011/08/05 15:09:23 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2011/08/05 15:04:13 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\SoftGrid Client
[2011/08/05 15:04:09 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\SoftGrid Client
[2011/08/05 15:02:15 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
[2011/08/05 15:02:14 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Application Virtualization Client
[2011/08/05 15:01:42 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\TP
[2011/08/05 02:51:41 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\Desktop\Release
[2011/08/04 20:02:03 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\S-unno
[2011/08/04 20:00:27 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\S-unno
[2011/08/04 20:00:20 | 000,000,000 | ---D | C] -- C:\Program Files\S-unno
[2011/08/04 15:10:57 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{A1EF4115-BD14-470B-AF4C-11DA4254A378}
[2011/08/04 15:10:28 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{CB8A4B3C-195A-45C7-ACF6-6FACD7D856C1}
[2011/08/04 12:35:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\mIRC
[2011/08/04 12:35:33 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\mIRC
[2011/08/04 12:35:32 | 000,000,000 | ---D | C] -- C:\Program Files\mIRC
[2011/08/04 02:55:38 | 002,785,719 | ---- | C] (ITSecTeam ) -- C:\Users\UNKNOWN\AppData\Roaming\Havij1.14Free.exe
[2011/08/04 00:16:09 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{855A5766-B58E-4CE9-A004-F677798721A5}
[2011/08/04 00:15:53 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Windows Live Writer
[2011/08/04 00:15:53 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\Windows Live Writer
[2011/08/03 20:30:50 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\Desktop\sqliHelper 2.7
[2011/08/03 15:15:17 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\uTorrent
[2011/08/03 15:02:21 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2011/08/03 15:02:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2011/08/03 15:02:15 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2011/08/03 08:59:08 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{61227F6E-7F97-439B-8A09-46296B88B11E}
[2011/08/03 01:15:46 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\WinRAR
[2011/08/03 00:37:55 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2011/08/03 00:36:35 | 000,000,000 | ---D | C] -- C:\1e1619c8cdc3c4fecf960457b5dfa0
[2011/08/03 00:13:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\XPSViewer
[2011/08/03 00:13:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\es-ES
[2011/08/03 00:13:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\es
[2011/08/03 00:13:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\0C0A
[2011/08/03 00:13:02 | 000,000,000 | ---D | C] -- C:\Windows\es-ES
[2011/08/03 00:11:04 | 000,033,792 | ---- | C] (Marvell) -- C:\Windows\System32\drivers\es-ES\yk62x86.sys.mui
[2011/08/03 00:11:04 | 000,011,264 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\es-ES\BrSerId.sys.mui
[2011/08/03 00:11:04 | 000,011,264 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\es-ES\BrSerIb.sys.mui
[2011/08/03 00:11:04 | 000,010,752 | ---- | C] (Agere Systems) -- C:\Windows\System32\drivers\es-ES\ltmdmnt.sys.mui
[2011/08/03 00:11:00 | 000,004,096 | ---- | C] (SCM Microsystems, Inc.) -- C:\Windows\System32\drivers\es-ES\pscr.sys.mui
[2011/08/03 00:11:00 | 000,002,560 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\es-ES\BrParwdm.sys.mui
[2011/08/03 00:05:18 | 000,000,000 | ---D | C] -- C:\Windows\NAPP_Dism_Log
[2011/08/02 23:14:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2011/08/02 23:14:01 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011/08/02 23:04:32 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Mozilla
[2011/08/02 23:04:21 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2011/08/02 22:53:24 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2011/08/02 22:51:46 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\Google
[2011/08/02 21:02:47 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\Mozilla
[2011/08/02 20:56:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\SPReview
[2011/08/02 20:55:34 | 000,000,000 | ---D | C] -- C:\Windows\System32\EventProviders
[2011/08/02 20:21:56 | 000,093,696 | ---- | C] (Windows ® Codename Longhorn DDK provider) -- C:\Windows\System32\fms.dll
[2011/08/02 20:02:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
[2011/08/02 20:01:47 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\ssmdrv.sys
[2011/08/02 20:01:44 | 000,138,192 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\avipbb.sys
[2011/08/02 20:01:44 | 000,066,616 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\avgntflt.sys
[2011/08/02 20:01:44 | 000,051,992 | ---- | C] (AVIRA GmbH) -- C:\Windows\System32\drivers\avgntdd.sys
[2011/08/02 20:01:44 | 000,017,016 | ---- | C] (AVIRA GmbH) -- C:\Windows\System32\drivers\avgntmgr.sys
[2011/08/02 20:01:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
[2011/08/02 20:01:32 | 000,000,000 | ---D | C] -- C:\Program Files\Avira
[2011/08/02 19:33:46 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\VS Revo Group
[2011/08/02 19:33:36 | 000,027,192 | ---- | C] (VS Revo Group) -- C:\Windows\System32\drivers\revoflt.sys
[2011/08/02 19:33:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
[2011/08/02 19:33:32 | 000,000,000 | ---D | C] -- C:\Program Files\VS Revo Group
[2011/08/02 19:24:30 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{3EDEC198-A05B-4B66-B3F3-CC07C51A34D7}
[2011/08/02 19:24:12 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\Tracing
[2011/08/02 19:20:05 | 000,000,000 | ---D | C] -- C:\Windows\en
[2011/08/02 19:16:09 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
[2011/08/02 19:15:40 | 000,000,000 | ---D | C] -- C:\Windows\es
[2011/08/02 19:04:23 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\Windows Live
[2011/08/02 17:17:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Yahoo! Companion
[2011/08/02 17:17:38 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Yahoo!
[2011/08/02 17:15:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Yahoo! Messenger
[2011/08/02 17:15:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Yahoo!
[2011/08/02 17:09:03 | 000,000,000 | ---D | C] -- C:\Program Files\Yahoo!
[2011/08/02 16:01:10 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Adobe
[2011/08/02 15:54:35 | 000,015,360 | ---- | C] (MediaTek Inc.) -- C:\Windows\System32\drivers\mtkwmptv.sys
[2011/08/02 15:54:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\instanet city
[2011/08/02 15:54:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Green Packet WiMAX Modem
[2011/08/02 15:13:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\DRVSTORE
[2011/08/02 15:13:40 | 000,000,000 | ---D | C] -- C:\Program Files\instanet city
[2011/08/02 15:11:08 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Macromedia
[2011/08/02 15:10:53 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2011/08/02 15:10:53 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Searches
[2011/08/02 15:10:53 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2011/08/02 15:10:46 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Identities
[2011/08/02 15:10:44 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Contacts
[2011/08/02 15:09:16 | 000,000,000 | ---D | C] -- C:\Program Files\PB Accessory Store
[2011/08/02 15:08:44 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\VirtualStore
[2011/08/02 15:08:42 | 000,000,000 | --SD | C] -- C:\Users\UNKNOWN\AppData\Roaming\Microsoft
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Videos
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Saved Games
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Pictures
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Music
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Links
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Favorites
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Downloads
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Documents
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Desktop
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\SendTo
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Reciente
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Plantillas
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Documents\Mis vídeos
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Documents\Mis imágenes
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Mis documentos
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Documents\Mi música
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Menú Inicio
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Impresoras
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\AppData\Local\Historial
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Entorno de red
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Datos de programa
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\AppData\Local\Datos de programa
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Cookies
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Configuración local
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\AppData\Local\Archivos temporales de Internet
[2011/08/02 15:08:42 | 000,000,000 | -H-D | C] -- C:\Users\UNKNOWN\AppData
[2011/08/02 15:08:42 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\Temp
[2011/08/02 15:08:42 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\Microsoft
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\Recovery
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\ProgramData\Plantillas
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Mis vídeos
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Mis imágenes
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Mi música
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\ProgramData\Menú Inicio
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoritos
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\ProgramData\Escritorio
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\ProgramData\Documentos
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\ProgramData\Datos de programa
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\Archivos de programa
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\Program Files\Archivos comunes
[2011/08/02 14:46:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Packard Bell XSync
[2011/08/02 14:46:37 | 000,000,000 | ---D | C] -- C:\Program Files\PackardBellXSync
[2011/08/02 14:44:55 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server Compact Edition
[2011/08/02 14:43:49 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\microsoft
[2011/08/02 14:43:21 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live
[2011/08/02 14:43:04 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2011/08/02 14:41:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Windows Live
[2011/08/02 14:40:46 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Macrovision Shared
[2011/08/02 14:38:32 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PX Storage Engine
[2011/08/02 14:36:23 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2011/08/02 14:34:23 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft
[2011/08/02 14:34:21 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Toolbar
[2011/08/02 14:34:16 | 000,000,000 | ---D | C] -- C:\Program Files\Bing Bar Installer
[2011/08/02 14:31:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Web Camera
[2011/08/02 14:31:46 | 000,000,000 | ---D | C] -- C:\Program Files\Video Web Camera
[2011/08/02 14:31:23 | 000,000,000 | ---D | C] -- C:\Program Files\Elantech
[2011/08/02 14:28:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Packard Bell Documentation
[2011/08/02 14:28:41 | 000,000,000 | ---D | C] -- C:\book
[2011/08/02 14:24:47 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2011/08/02 14:24:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\Lang
[2011/08/02 14:21:41 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2011/07/13 16:00:14 | 000,026,112 | ---- | C] (The OpenVPN Project) -- C:\Windows\System32\drivers\tap0901.sys
========== Files - Modified Within 30 Days ==========
[2011/08/06 17:01:01 | 000,001,118 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4219616174-2794619187-1302624758-1000UA.job
[2011/08/06 15:15:14 | 000,001,424 | ---- | M] () -- C:\Windows\Sandboxie.ini
[2011/08/06 14:54:30 | 000,001,065 | ---- | M] () -- C:a
[2011/08/06 11:06:59 | 000,002,858 | ---- | M] () -- C:\Users\UNKNOWN\Documents\cc_20110806_110639.reg
[2011/08/06 10:01:02 | 000,001,066 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4219616174-2794619187-1302624758-1000Core.job
[2011/08/06 03:14:14 | 000,008,160 | ---- | M] () -- C:\Users\UNKNOWN\Desktop\My CCs and Other information.rtf
[2011/08/06 03:02:45 | 000,704,284 | ---- | M] () -- C:\Windows\System32\perfh00A.dat
[2011/08/06 03:02:45 | 000,616,452 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011/08/06 03:02:45 | 000,137,992 | ---- | M] () -- C:\Windows\System32\perfc00A.dat
[2011/08/06 03:02:45 | 000,106,574 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011/08/06 00:30:19 | 000,000,891 | ---- | M] () -- C:\Users\Public\Desktop\Havij.lnk
[2011/08/06 00:15:16 | 003,041,521 | ---- | M] () -- C:\Users\UNKNOWN\Desktop\Havij 1.15 Pro - Advanced SQL Injection.rar
[2011/08/05 23:58:43 | 002,960,468 | ---- | M] () -- C:\Users\UNKNOWN\Desktop\Havij 1.15 Pro Cracked.rar
[2011/08/05 13:53:44 | 000,000,193 | ---- | M] () -- C:\Windows\WORDPAD.INI
[2011/08/05 02:41:39 | 000,360,631 | ---- | M] () -- C:\Users\UNKNOWN\Desktop\Admin loggin.rtf
[2011/08/04 21:26:12 | 000,836,771 | ---- | M] () -- C:\Users\UNKNOWN\Desktop\Great Email Passwords List1.html
[2011/08/04 20:00:28 | 000,000,981 | ---- | M] () -- C:\Users\Public\Desktop\S-unno.lnk
[2011/08/04 19:27:24 | 000,090,584 | -H-- | M] () -- C:\Windows\System32\mlfcache.dat
[2011/08/04 12:35:33 | 000,000,925 | ---- | M] () -- C:\Users\Public\Desktop\mIRC.lnk
[2011/08/04 03:28:37 | 000,004,228 | ---- | M] () -- C:\Users\UNKNOWN\Documents\cc_20110804_032817.reg
[2011/08/04 03:04:04 | 002,785,719 | ---- | M] (ITSecTeam ) -- C:\Users\UNKNOWN\AppData\Roaming\Havij1.14Free.exe
[2011/08/04 03:04:03 | 003,158,016 | ---- | M] () -- C:\Users\UNKNOWN\AppData\Roaming\Havij1.14 Pro.exe
[2011/08/04 02:09:50 | 000,071,680 | ---- | M] () -- C:\Users\UNKNOWN\AppData\Roaming\chrtmp
[2011/08/03 14:24:10 | 000,138,192 | ---- | M] (Avira GmbH) -- C:\Windows\System32\drivers\avipbb.sys
[2011/08/03 14:24:10 | 000,066,616 | ---- | M] (Avira GmbH) -- C:\Windows\System32\drivers\avgntflt.sys
[2011/08/03 08:56:05 | 000,263,056 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2011/08/03 00:12:45 | 000,341,432 | ---- | M] () -- C:\Windows\System32\perfi00A.dat
[2011/08/03 00:12:45 | 000,041,390 | ---- | M] () -- C:\Windows\System32\perfd00A.dat
[2011/08/03 00:11:37 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2011/08/03 00:11:04 | 000,033,792 | ---- | M] (Marvell) -- C:\Windows\System32\drivers\es-ES\yk62x86.sys.mui
[2011/08/03 00:11:04 | 000,011,264 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\es-ES\BrSerId.sys.mui
[2011/08/03 00:11:04 | 000,011,264 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\es-ES\BrSerIb.sys.mui
[2011/08/03 00:11:04 | 000,010,752 | ---- | M] (Agere Systems) -- C:\Windows\System32\drivers\es-ES\ltmdmnt.sys.mui
[2011/08/03 00:11:00 | 000,004,096 | ---- | M] (SCM Microsystems, Inc.) -- C:\Windows\System32\drivers\es-ES\pscr.sys.mui
[2011/08/03 00:11:00 | 000,002,560 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\es-ES\BrParwdm.sys.mui
[2011/08/03 00:05:18 | 000,011,453 | ---- | M] () -- C:\Windows\ChangeLang_Done.tag
[2011/08/02 23:14:03 | 000,000,981 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011/08/02 23:04:26 | 000,001,112 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2011/08/02 22:53:29 | 000,002,300 | ---- | M] () -- C:\Users\UNKNOWN\Desktop\Google Chrome.lnk
[2011/08/02 21:11:19 | 000,072,822 | ---- | M] () -- C:\Windows\System32\ieuinit.inf
[2011/08/02 21:02:52 | 000,000,000 | ---- | M] () -- C:\Windows\nsreg.dat
[2011/08/02 20:02:08 | 000,002,028 | ---- | M] () -- C:\Users\Public\Desktop\Avira AntiVir Control Center.lnk
[2011/08/02 19:33:39 | 000,001,246 | ---- | M] () -- C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk
[2011/08/02 18:18:22 | 000,001,766 | ---- | M] () -- C:\Users\Public\Desktop\Selección del Explorador.lnk
[2011/08/02 17:18:38 | 000,000,064 | ---- | M] () -- C:\Windows\wininit.ini
[2011/08/02 17:16:10 | 000,001,123 | ---- | M] () -- C:\Users\Public\Desktop\Yahoo! Messenger.lnk
[2011/08/02 15:54:32 | 000,002,701 | ---- | M] () -- C:\Users\Public\Desktop\instanet city.lnk
[2011/08/02 15:09:17 | 000,001,960 | ---- | M] () -- C:\Users\Public\Desktop\PB Accessorios.lnk
[2011/08/02 15:07:32 | 000,044,132 | ---- | M] () -- C:\Windows\System32\license.rtf
[2011/08/02 14:44:56 | 000,000,020 | ---- | M] () -- C:\Windows\Ì÷q
[2011/08/02 14:40:24 | 000,001,183 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Photoshop Elements 8.0.lnk
[2011/08/02 14:31:49 | 000,002,025 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\VideoWebCamera.exe.lnk
[2011/08/02 14:28:12 | 000,013,972 | ---- | M] () -- C:\Windows\System32\results.xml
[2011/08/02 14:25:45 | 000,000,006 | ---- | M] () -- C:\Windows\System32\PLD_Framework.cmd
[2011/07/13 16:00:14 | 000,026,112 | ---- | M] (The OpenVPN Project) -- C:\Windows\System32\drivers\tap0901.sys
========== Files Created - No Company Name ==========
[2011/08/06 14:54:56 | 000,001,065 | ---- | C] () -- C:\Users\UNKNOWN\Desktop\Sandboxed Web Browser.lnk
[2011/08/06 14:54:54 | 000,001,424 | ---- | C] () -- C:\Windows\Sandboxie.ini
[2011/08/06 12:51:55 | 000,000,069 | ---- | C] () -- C:\RunSC.bat
[2011/08/06 12:15:08 | 000,001,125 | ---- | C] () -- C:\Users\Public\Desktop\HMA! Pro VPN.lnk
[2011/08/06 11:06:54 | 000,002,858 | ---- | C] () -- C:\Users\UNKNOWN\Documents\cc_20110806_110639.reg
[2011/08/06 00:30:19 | 000,000,891 | ---- | C] () -- C:\Users\Public\Desktop\Havij.lnk
[2011/08/06 00:15:11 | 003,041,521 | ---- | C] () -- C:\Users\UNKNOWN\Desktop\Havij 1.15 Pro - Advanced SQL Injection.rar
[2011/08/05 23:58:29 | 002,960,468 | ---- | C] () -- C:\Users\UNKNOWN\Desktop\Havij 1.15 Pro Cracked.rar
[2011/08/05 13:53:44 | 000,000,193 | ---- | C] () -- C:\Windows\WORDPAD.INI
[2011/08/04 21:26:12 | 000,836,771 | ---- | C] () -- C:\Users\UNKNOWN\Desktop\Great Email Passwords List1.html
[2011/08/04 20:00:28 | 000,000,981 | ---- | C] () -- C:\Users\Public\Desktop\S-unno.lnk
[2011/08/04 19:27:24 | 000,090,584 | -H-- | C] () -- C:\Windows\System32\mlfcache.dat
[2011/08/04 12:35:33 | 000,000,925 | ---- | C] () -- C:\Users\Public\Desktop\mIRC.lnk
[2011/08/04 03:28:24 | 000,004,228 | ---- | C] () -- C:\Users\UNKNOWN\Documents\cc_20110804_032817.reg
[2011/08/04 02:56:06 | 003,158,016 | ---- | C] () -- C:\Users\UNKNOWN\AppData\Roaming\Havij1.14 Pro.exe
[2011/08/04 02:56:05 | 000,071,680 | ---- | C] () -- C:\Users\UNKNOWN\AppData\Roaming\chrtmp
[2011/08/03 22:32:52 | 000,360,631 | ---- | C] () -- C:\Users\UNKNOWN\Desktop\Admin loggin.rtf
[2011/08/03 20:31:40 | 000,008,160 | ---- | C] () -- C:\Users\UNKNOWN\Desktop\My CCs and Other information.rtf
[2011/08/03 00:18:43 | 000,011,453 | ---- | C] () -- C:\Windows\ChangeLang_Done.tag
[2011/08/03 00:13:47 | 000,341,432 | ---- | C] () -- C:\Windows\System32\perfi00A.dat
[2011/08/03 00:13:46 | 000,704,284 | ---- | C] () -- C:\Windows\System32\perfh00A.dat
[2011/08/03 00:13:46 | 000,137,992 | ---- | C] () -- C:\Windows\System32\perfc00A.dat
[2011/08/03 00:13:46 | 000,041,390 | ---- | C] () -- C:\Windows\System32\perfd00A.dat
[2011/08/03 00:11:37 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2011/08/02 23:14:03 | 000,000,981 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011/08/02 23:04:25 | 000,001,124 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2011/08/02 23:04:25 | 000,001,112 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2011/08/02 22:53:29 | 000,002,300 | ---- | C] () -- C:\Users\UNKNOWN\Desktop\Google Chrome.lnk
[2011/08/02 22:51:49 | 000,001,118 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4219616174-2794619187-1302624758-1000UA.job
[2011/08/02 22:51:47 | 000,001,066 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4219616174-2794619187-1302624758-1000Core.job
[2011/08/02 21:51:39 | 000,001,413 | ---- | C] () -- C:\Users\UNKNOWN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2011/08/02 21:11:19 | 000,072,822 | ---- | C] () -- C:\Windows\System32\ieuinit.inf
[2011/08/02 21:02:52 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2011/08/02 20:24:24 | 000,146,852 | ---- | C] () -- C:\Windows\System32\systemsf.ebd
[2011/08/02 20:20:45 | 000,010,429 | ---- | C] () -- C:\Windows\System32\ScavengeSpace.xml
[2011/08/02 20:20:15 | 000,105,559 | ---- | C] () -- C:\Windows\System32\RacRules.xml
[2011/08/02 20:02:08 | 000,002,028 | ---- | C] () -- C:\Users\Public\Desktop\Avira AntiVir Control Center.lnk
[2011/08/02 19:33:39 | 000,001,246 | ---- | C] () -- C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk
[2011/08/02 19:15:11 | 000,001,263 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Movie Maker.lnk
[2011/08/02 19:14:16 | 000,001,332 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Photo Gallery.lnk
[2011/08/02 19:13:21 | 000,001,416 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
[2011/08/02 19:12:44 | 000,002,444 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk
[2011/08/02 18:18:22 | 000,001,766 | ---- | C] () -- C:\Users\Public\Desktop\Selección del Explorador.lnk
[2011/08/02 17:18:38 | 000,000,064 | ---- | C] () -- C:\Windows\wininit.ini
[2011/08/02 17:16:10 | 000,001,123 | ---- | C] () -- C:\Users\Public\Desktop\Yahoo! Messenger.lnk
[2011/08/02 15:54:32 | 000,002,701 | ---- | C] () -- C:\Users\Public\Desktop\instanet city.lnk
[2011/08/02 15:13:40 | 001,892,820 | ---- | C] () -- C:\Windows\System32\drivers\mt7118u.bin
[2011/08/02 15:09:17 | 000,001,960 | ---- | C] () -- C:\Users\Public\Desktop\PB Accessorios.lnk
[2011/08/02 14:44:55 | 000,000,020 | ---- | C] () -- C:\Windows\Ì÷q
[2011/08/02 14:40:24 | 000,001,195 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop Elements 8.0.lnk
[2011/08/02 14:40:24 | 000,001,183 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Photoshop Elements 8.0.lnk
[2011/08/02 14:36:25 | 000,002,435 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2010.lnk
[2011/08/02 14:34:30 | 000,001,350 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Default Manager.lnk
[2011/08/02 14:31:49 | 000,002,025 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\VideoWebCamera.exe.lnk
[2011/08/02 14:28:12 | 000,013,972 | ---- | C] () -- C:\Windows\System32\results.xml
[2011/08/02 14:21:41 | 796,729,344 | -HS- | C] () -- C:\hiberfil.sys
[2010/11/23 13:46:11 | 000,247,560 | ---- | C] () -- C:\Windows\System32\drivers\RTConvEQ.dat
[2010/11/23 13:46:11 | 000,039,672 | ---- | C] () -- C:\Windows\System32\drivers\RtPCEE3.DAT
[2010/11/23 13:46:11 | 000,016,406 | ---- | C] () -- C:\Windows\System32\drivers\RtPCEE4.DAT
[2010/11/23 13:46:11 | 000,001,448 | ---- | C] () -- C:\Windows\System32\drivers\RtHdatEx.dat
[2010/11/23 13:46:11 | 000,000,520 | ---- | C] () -- C:\Windows\System32\drivers\RTEQEX3.dat
[2010/11/23 13:46:11 | 000,000,520 | ---- | C] () -- C:\Windows\System32\drivers\RTEQEX2.dat
[2010/11/23 13:46:11 | 000,000,520 | ---- | C] () -- C:\Windows\System32\drivers\RTEQEX1.dat
[2010/11/23 13:46:11 | 000,000,520 | ---- | C] () -- C:\Windows\System32\drivers\RTEQEX0.dat
[2010/11/23 13:46:11 | 000,000,176 | ---- | C] () -- C:\Windows\System32\drivers\RTHDAEQ1.dat
[2010/11/23 13:46:11 | 000,000,032 | ---- | C] () -- C:\Windows\System32\drivers\rtkhdaud.dat
[2010/11/23 13:02:55 | 000,361,808 | ---- | C] () -- C:\Windows\EMCRI_E.dll
[2009/07/14 06:57:37 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009/07/14 06:33:53 | 000,263,056 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2009/07/14 04:05:48 | 000,616,452 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2009/07/14 04:05:48 | 000,291,294 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2009/07/14 04:05:48 | 000,106,574 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2009/07/14 04:05:48 | 000,031,548 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2009/07/14 04:05:05 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2009/07/14 04:04:11 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2009/07/14 01:55:01 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009/07/14 01:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
[2009/07/14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
[2009/06/10 23:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
========== LOP Check ==========
[2011/08/04 21:03:12 | 000,000,000 | ---D | M] -- C:\Users\UNKNOWN\AppData\Roaming\S-unno
[2011/08/06 06:18:51 | 000,000,000 | ---D | M] -- C:\Users\UNKNOWN\AppData\Roaming\SoftGrid Client
[2011/08/05 15:04:52 | 000,000,000 | ---D | M] -- C:\Users\UNKNOWN\AppData\Roaming\TP
[2011/08/03 16:01:43 | 000,000,000 | ---D | M] -- C:\Users\UNKNOWN\AppData\Roaming\uTorrent
[2011/08/06 06:27:32 | 000,000,000 | ---D | M] -- C:\Users\UNKNOWN\AppData\Roaming\VS Revo Group
[2011/08/04 00:15:53 | 000,000,000 | ---D | M] -- C:\Users\UNKNOWN\AppData\Roaming\Windows Live Writer
[2009/07/14 06:53:46 | 000,010,864 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
< End of report >
OTL Extras logfile created on: 06/08/2011 17:22:06 - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\UNKNOWN\Downloads
Starter Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000c0a | Country: España | Language: ESN | Date Format: dd/MM/yyyy
1013,09 Mb Total Physical Memory | 120,90 Mb Available Physical Memory | 11,93% Memory free
1,99 Gb Paging File | 0,58 Gb Available in Paging File | 28,99% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 219,79 Gb Total Space | 189,34 Gb Free Space | 86,15% Space Free | Partition Type: NTFS
Computer Name: UNKNOWN-PC | User Name: UNKNOWN | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{08234a0d-cf39-4dca-99f0-0c5cb496da81}" = Barra de Bing
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0D261C88-454B-46FE-B43B-640E621BDA11}" = Windows Live Mail
"{17DFE37C-064E-4834-AD8F-A4B2B4DF68F8}" = Adobe Photoshop Elements 8.0
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{1CAC7A41-583B-4483-9FA5-3E5465AFF8C2}" = Microsoft Default Manager
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{21DAB643-1115-48A1-B949-FC4BD1ACE1E1}" = instanet city
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{2A3FC24C-6EC0-4519-A52B-FDA4EA9B2D24}" = Windows Live Messenger
"{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.® AR81Family Gigabit/Fast Ethernet Driver
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3DB0448D-AD82-4923-B305-D001E521A964}" = Packard Bell Power Management
"{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel® Rapid Storage Technology
"{48C0DC5E-820A-44F2-890E-29B68EDD3C78}" = Windows Live Writer
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{5D273F60-0525-48BA-A5FB-D0CAA4A952AE}" = Windows Live Movie Maker
"{5F6E7CB6-8015-4004-BCAD-D446946B4A65}" = S-unno
"{64EF903E-D00A-414C-94A4-FBA368FFCDC9}" = Packard Bell Social Networks
"{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1" = Revo Uninstaller Pro 2.5.3
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{77477AEA-5757-47D8-8B33-939F43D82218}" = Windows Live UX Platform Language Pack
"{77C4850C-3592-4A2F-B652-ACB77A1EF77C}" = Bing Bar Platform
"{7D1C7B9F-2744-4388-B128-5C75B8BCCC84}" = Windows Live Essentials
"{7F811A54-5A09-4579-90E1-C93498E230D9}" = Packard Bell Recovery Management
"{83299633-1261-47A3-84F3-6F02B4B8CDB1}" = Video Web Camera
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8FF3891F-01B5-4A71-BFCD-20761890471C}" = Windows Live Messenger
"{90140000-006D-0C0A-0000-0000000FF1CE}" = Hacer clic y ejecutar de Microsoft Office 2010
"{90140011-0066-0C0A-0000-0000000FF1CE}" = Microsoft Office Starter 2010 - Español
"{914DD274-9C5D-44CA-9AC7-12B8D2D4DA08}" = Windows Live Sync
"{928B06E4-DDAA-476A-926A-641620326327}" = Microsoft Search Enhancement Pack
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{9EB6EAE1-5CFC-46F1-9FB9-5FDA335DDE3D}" = Packard Bell XSync
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A41A708E-3BE6-4561-855D-44027C1CF0F8}" = Windows Live Photo Common
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer
"{AC76BA86-7AD7-FFFF-7B44-A91000000001}" = Adobe Reader 9.1 MUI
"{AF844339-2F8A-4593-81B3-9F4C54038C4E}" = Windows Live MIME IFilter
"{C6150D8A-86ED-41D3-87BB-F3BB51B0B77F}" = Windows Live ID Sign-in Assistant
"{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
"{E727A662-AF9F-4DEE-81C5-F4A1686F3DFC}" = Windows Live Writer Resources
"{E85A4EFC-82F2-4CEE-8A8E-62FDAD353A66}" = Galería fotográfica de Windows Live
"{EE171732-BEB4-4576-887D-CB62727F01CA}" = Packard Bell Updater
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"3B29FD3CCF1F5B855DA0C521597413EBABE97DFB" = ENE USB Card Reader Driver
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Photoshop Elements 8.0" = Adobe Photoshop Elements 8.0
"Avira AntiVir Desktop" = Avira AntiVir Premium
"CCleaner" = CCleaner
"Elantech" = ETDWare PS/2-X86 8.0.6.0_WHQL
"Havij_is1" = Havij 1.15 Pro
"HDMI" = Intel® Graphics Media Accelerator Driver
"HMA! Pro VPN" = HMA! Pro VPN 2.6.9
"Identity Card" = Identity Card
"InstallShield_{64EF903E-D00A-414C-94A4-FBA368FFCDC9}" = Packard Bell Social Networks
"InstallShield_{9EB6EAE1-5CFC-46F1-9FB9-5FDA335DDE3D}" = Packard Bell XSync
"LManager" = Launch Manager
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"mIRC" = mIRC
"Mozilla Firefox 5.0.1 (x86 en-US)" = Mozilla Firefox 5.0.1 (x86 en-US)
"Office14.Click2Run" = Hacer clic y ejecutar de Microsoft Office 2010
"Packard Bell Game Console" = Packard Bell Game Console
"Packard Bell Registration" = Packard Bell Registration
"Packard Bell Screensaver" = Packard Bell ScreenSaver
"Packard Bell Welcome Center" = Welcome Center
"Sandboxie" = Sandboxie 3.56 (32-bit)
"WildTangent packardbell Master Uninstall" = Packard Bell Games
"WinLiveSuite" = Windows Live Essentials
"WinRAR archiver" = WinRAR 4.01 (32-bit)
"WT088226" = Bejeweled 2 Deluxe
"WT088235" = Chuzzle Deluxe
"WT088238" = Diner Dash 2 Restaurant Rescue
"WT088260" = Farm Frenzy
"WT088268" = Insaniquarium Deluxe
"WT088269" = Jewel Quest Solitaire 2
"WT088283" = Plants vs. Zombies
"WT088292" = Zuma Deluxe
"WT088376" = Blackhawk Striker 2
"WT088396" = Dora's Carnival Adventure
"WT088416" = FATE
"WT088420" = Final Drive Nitro
"WT088444" = Jewel Quest
"WT088452" = Penguins!
"WT088456" = Polar Bowler
"WT088508" = Virtual Villagers 4 - The Tree of Life
"WT088531" = Zuma's Revenge
"WT088656" = Jewel Quest - Heritage
"Yahoo! Companion" = Barra Yahoo!
"Yahoo! Messenger" = Yahoo! Messenger
"Yahoo! Software Update" = Yahoo! Software Update
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 02/08/2011 19:53:44 | Computer Name = UNKNOWN-PC | Source = MsiInstaller | ID = 11935
Description =
Error - 03/08/2011 2:54:04 | Computer Name = UNKNOWN-PC | Source = MsiInstaller | ID = 11935
Description =
Error - 03/08/2011 4:29:21 | Computer Name = UNKNOWN-PC | Source = VSS | ID = 8194
Description =
Error - 03/08/2011 5:39:03 | Computer Name = UNKNOWN-PC | Source = VSS | ID = 8194
Description =
Error - 03/08/2011 6:37:11 | Computer Name = UNKNOWN-PC | Source = VSS | ID = 8194
Description =
Error - 03/08/2011 8:50:12 | Computer Name = UNKNOWN-PC | Source = VSS | ID = 8194
Description =
Error - 03/08/2011 10:00:13 | Computer Name = UNKNOWN-PC | Source = VSS | ID = 8194
Description =
Error - 03/08/2011 14:44:29 | Computer Name = UNKNOWN-PC | Source = VSS | ID = 8194
Description =
Error - 04/08/2011 3:38:34 | Computer Name = UNKNOWN-PC | Source = SideBySide | ID = 16842815
Description = Error al generar el contexto de activación para "c:\Program Files\Common
Files\Adobe AIR\Versions\1.0\Adobe AIR.dll". Error en el archivo de manifiesto
o directiva "c:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll"
en la línea 3. El valor "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR"
del atributo "version" del elemento "assemblyIdentity" no es válido.
Error - 04/08/2011 18:43:52 | Computer Name = UNKNOWN-PC | Source = RasClient | ID = 20227
Description =
[ System Events ]
Error - 03/08/2011 5:19:17 | Computer Name = UNKNOWN-PC | Source = Service Control Manager | ID = 7001
Description = El servicio Contenedor y motor de minirredirector SMB depende del
servicio Subsistema de almacenamiento en búfer redirigido, el cual no pudo iniciarse
debido al siguiente error: %%31
Error - 03/08/2011 5:19:17 | Computer Name = UNKNOWN-PC | Source = Service Control Manager | ID = 7001
Description = El servicio Minirredirector SMB 1.x depende del servicio Contenedor
y motor de minirredirector SMB, el cual no pudo iniciarse debido al siguiente error:
%%1068
Error - 03/08/2011 5:19:17 | Computer Name = UNKNOWN-PC | Source = Service Control Manager | ID = 7001
Description = El servicio Minirredirector SMB 2.0 depende del servicio Contenedor
y motor de minirredirector SMB, el cual no pudo iniciarse debido al siguiente error:
%%1068
Error - 03/08/2011 5:19:17 | Computer Name = UNKNOWN-PC | Source = Service Control Manager | ID = 7001
Description = El servicio Reconocimiento de ubicación de red depende del servicio
Servicio Interfaz de almacenamiento en red, el cual no pudo iniciarse debido al
siguiente error: %%1068
Error - 03/08/2011 5:19:19 | Computer Name = UNKNOWN-PC | Source = Service Control Manager | ID = 7026
Description = El siguiente controlador de inicio del sistema o de inicio del arranque
no se cargó correctamente: AFD avipbb cdrom DfsC discache NetBIOS NetBT nsiproxy Psched
rdbss
spldr
ssmdrv
tdx
vwififlt
Wanarpv6
WfpLwf
ws2ifsl
Error - 03/08/2011 6:22:57 | Computer Name = UNKNOWN-PC | Source = Service Control Manager | ID = 7026
Description = El siguiente controlador de inicio del sistema o de inicio del arranque
no se cargó correctamente: cdrom
Error - 03/08/2011 8:43:53 | Computer Name = UNKNOWN-PC | Source = Service Control Manager | ID = 7026
Description = El siguiente controlador de inicio del sistema o de inicio del arranque
no se cargó correctamente: cdrom
Error - 03/08/2011 8:56:56 | Computer Name = UNKNOWN-PC | Source = Service Control Manager | ID = 7026
Description = El siguiente controlador de inicio del sistema o de inicio del arranque
no se cargó correctamente: cdrom
Error - 03/08/2011 10:07:44 | Computer Name = UNKNOWN-PC | Source = Service Control Manager | ID = 7026
Description = El siguiente controlador de inicio del sistema o de inicio del arranque
no se cargó correctamente: cdrom
Error - 03/08/2011 11:27:40 | Computer Name = UNKNOWN-PC | Source = RasSstp | ID = 1
Description =
< End of report >