Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

How to remove spyware and malware in Windows /


  • Please log in to reply

#1
walkermoore20

walkermoore20

    New Member

  • Member
  • Pip
  • 1 posts
OTL logfile created on: 06/08/2011 17:22:05 - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\UNKNOWN\Downloads
Starter Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000c0a | Country: España | Language: ESN | Date Format: dd/MM/yyyy

1013,09 Mb Total Physical Memory | 120,90 Mb Available Physical Memory | 11,93% Memory free
1,99 Gb Paging File | 0,58 Gb Available in Paging File | 28,99% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 219,79 Gb Total Space | 189,34 Gb Free Space | 86,15% Space Free | Partition Type: NTFS

Computer Name: UNKNOWN-PC | User Name: UNKNOWN | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/08/06 17:21:20 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\UNKNOWN\Downloads\OTL.com
PRC - [2011/08/03 14:24:10 | 000,136,360 | ---- | M] (Avira GmbH) -- C:\Archivos de programa\Avira\AntiVir Desktop\sched.exe
PRC - [2011/08/03 14:24:07 | 000,428,200 | ---- | M] (Avira GmbH) -- C:\Archivos de programa\Avira\AntiVir Desktop\avwebgrd.exe
PRC - [2011/08/03 14:24:06 | 000,340,136 | ---- | M] (Avira GmbH) -- C:\Archivos de programa\Avira\AntiVir Desktop\avmailc.exe
PRC - [2011/08/03 14:24:06 | 000,281,768 | ---- | M] (Avira GmbH) -- C:\Archivos de programa\Avira\AntiVir Desktop\avgnt.exe
PRC - [2011/08/03 14:24:06 | 000,269,480 | ---- | M] (Avira GmbH) -- C:\Archivos de programa\Avira\AntiVir Desktop\avguard.exe
PRC - [2011/08/03 12:05:04 | 001,694,720 | ---- | M] (NetcoSolutions) -- C:\Archivos de programa\HMA! Pro VPN\bin\HMA! Pro VPN.exe
PRC - [2011/06/17 15:30:34 | 000,024,336 | ---- | M] (SANDBOXIE L.T.D) -- C:\Archivos de programa\Sandboxie\SandboxieRpcSs.exe
PRC - [2011/06/17 15:30:34 | 000,018,704 | ---- | M] (SANDBOXIE L.T.D) -- C:\Archivos de programa\Sandboxie\SandboxieDcomLaunch.exe
PRC - [2011/06/17 15:30:34 | 000,015,632 | ---- | M] (SANDBOXIE L.T.D) -- C:\Archivos de programa\Sandboxie\SandboxieCrypto.exe
PRC - [2011/06/17 15:30:30 | 000,412,432 | ---- | M] (SANDBOXIE L.T.D) -- C:\Archivos de programa\Sandboxie\SbieCtrl.exe
PRC - [2011/06/17 15:30:26 | 000,072,464 | ---- | M] (SANDBOXIE L.T.D) -- C:\Archivos de programa\Sandboxie\SbieSvc.exe
PRC - [2011/06/03 07:56:57 | 000,271,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe
PRC - [2011/03/28 20:31:16 | 000,193,920 | ---- | M] (Microsoft Corp.) -- C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
PRC - [2011/03/28 20:31:14 | 001,713,536 | ---- | M] (Microsoft Corp.) -- C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
PRC - [2011/02/25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2010/11/20 14:17:56 | 001,121,792 | ---- | M] (Microsoft Corporation) -- C:\Archivos de programa\Windows Media Player\wmpnetwk.exe
PRC - [2010/11/20 14:17:47 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2010/11/12 08:24:10 | 001,602,344 | ---- | M] (ELAN Microelectronics Corp.) -- C:\Archivos de programa\Elantech\ETDCtrlHelper.exe
PRC - [2010/11/12 08:24:08 | 001,812,264 | ---- | M] (ELAN Microelectronics Corp.) -- C:\Archivos de programa\Elantech\ETDCtrl.exe
PRC - [2010/10/13 10:19:10 | 000,075,776 | ---- | M] (MediaTek Inc.) -- C:\Archivos de programa\instanet city\WmMMgr.exe
PRC - [2010/10/13 10:18:50 | 000,122,938 | ---- | M] (MediaTek Inc.) -- C:\Archivos de programa\instanet city\WSRV.exe
PRC - [2010/08/31 17:14:56 | 012,609,352 | ---- | M] () -- C:\Archivos de programa\Video Web Camera\VideoWebCamera.exe
PRC - [2010/08/10 11:06:16 | 000,975,952 | ---- | M] (Dritek System Inc.) -- C:\Archivos de programa\Launch Manager\LManager.exe
PRC - [2010/08/10 11:06:16 | 000,321,104 | ---- | M] (Dritek System Inc.) -- C:\Archivos de programa\Launch Manager\dsiwmis.exe
PRC - [2010/08/10 11:06:16 | 000,305,744 | ---- | M] (Dritek System Inc.) -- C:\Archivos de programa\Launch Manager\LMworker.exe
PRC - [2010/07/27 14:46:08 | 000,249,136 | ---- | M] (Microsoft Corporation) -- C:\Archivos de programa\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
PRC - [2010/06/11 14:28:06 | 000,715,296 | ---- | M] (Acer Incorporated) -- C:\Archivos de programa\Packard Bell\Packard Bell Power Management\ePowerTray.exe
PRC - [2010/06/11 14:28:02 | 000,735,776 | ---- | M] (Acer Incorporated) -- C:\Archivos de programa\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
PRC - [2010/06/11 14:27:54 | 000,469,536 | ---- | M] (Acer Incorporated) -- C:\Archivos de programa\Packard Bell\Packard Bell Power Management\ePowerEvent.exe
PRC - [2010/04/24 01:10:54 | 000,209,768 | ---- | M] (Microsoft Corporation) -- C:\Archivos de programa\Microsoft Application Virtualization Client\sftvsa.exe
PRC - [2010/04/24 01:10:44 | 000,483,688 | ---- | M] (Microsoft Corporation) -- C:\Archivos de programa\Microsoft Application Virtualization Client\sftlist.exe
PRC - [2010/02/28 02:33:14 | 000,821,664 | ---- | M] (Microsoft Corporation) -- C:\Archivos de programa\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
PRC - [2010/01/29 02:27:36 | 000,243,232 | ---- | M] (Acer Group) -- C:\Archivos de programa\Packard Bell\Packard Bell Updater\UpdaterService.exe
PRC - [2010/01/14 22:12:21 | 000,076,968 | ---- | M] (Avira GmbH) -- C:\Archivos de programa\Avira\AntiVir Desktop\avshadow.exe
PRC - [2010/01/08 15:21:22 | 000,023,584 | ---- | M] (Acer Incorporated) -- C:\Archivos de programa\Packard Bell\Registration\GREGsvc.exe
PRC - [2009/06/04 15:28:36 | 000,184,320 | ---- | M] (Ours Technology Inc.) -- C:\Archivos de programa\PackardBellXSync\Deployment\Functions\{AA58F999-6D97-42c2-A69F-8CC04D18D944}\OMEA.exe
PRC - [2008/11/09 22:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) -- C:\Archivos de programa\Yahoo!\SoftwareUpdate\YahooAUService.exe


========== Modules (SafeList) ==========

MOD - [2011/08/06 17:21:20 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\UNKNOWN\Downloads\OTL.com
MOD - [2010/11/20 13:55:09 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
MOD - [2010/06/11 14:29:10 | 000,215,584 | ---- | M] (Acer Incorporated) -- C:\Archivos de programa\Packard Bell\Packard Bell Power Management\SysHook.dll


========== Win32 Services (SafeList) ==========

SRV - [2011/08/03 14:24:10 | 000,136,360 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2011/08/03 14:24:07 | 000,428,200 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE -- (AntiVirWebService)
SRV - [2011/08/03 14:24:06 | 000,340,136 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avmailc.exe -- (AntiVirMailService)
SRV - [2011/08/03 14:24:06 | 000,269,480 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2011/08/02 14:40:46 | 000,867,080 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2011/07/13 16:00:16 | 000,036,352 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\HMA! Pro VPN\bin\openvpnserv.exe -- (OpenVPNService)
SRV - [2011/06/17 15:30:26 | 000,072,464 | ---- | M] (SANDBOXIE L.T.D) [Auto | Running] -- C:\Program Files\Sandboxie\SbieSvc.exe -- (SbieSvc)
SRV - [2010/10/13 10:18:50 | 000,122,938 | ---- | M] (MediaTek Inc.) [Auto | Running] -- C:\Program Files\instanet city\WSRV.exe -- (MediaTek WiMAX Connection Manager)
SRV - [2010/08/10 11:06:16 | 000,321,104 | ---- | M] (Dritek System Inc.) [Auto | Running] -- C:\Archivos de programa\Launch Manager\dsiwmis.exe -- (DsiWMIService)
SRV - [2010/06/11 14:28:02 | 000,735,776 | ---- | M] (Acer Incorporated) [Auto | Running] -- C:\Archivos de programa\Packard Bell\Packard Bell Power Management\ePowerSvc.exe -- (ePowerSvc)
SRV - [2010/04/24 01:10:54 | 000,209,768 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe -- (sftvsa)
SRV - [2010/04/24 01:10:44 | 000,483,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe -- (sftlist)
SRV - [2010/04/04 01:01:24 | 000,246,520 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files\Packard Bell Games\Packard Bell Game Console\GameConsoleService.exe -- (GameConsoleService)
SRV - [2010/01/29 02:27:36 | 000,243,232 | ---- | M] (Acer Group) [Auto | Running] -- C:\Archivos de programa\Packard Bell\Packard Bell Updater\UpdaterService.exe -- (Updater Service)
SRV - [2010/01/08 15:21:22 | 000,023,584 | ---- | M] (Acer Incorporated) [Auto | Running] -- C:\Archivos de programa\Packard Bell\Registration\GREGsvc.exe -- (GREGService)
SRV - [2009/10/09 05:45:56 | 000,169,312 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- c:\Archivos de programa\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe -- (AdobeActiveFileMonitor8.0)
SRV - [2009/07/14 03:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Archivos de programa\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2008/11/09 22:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Auto | Running] -- C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService)


========== Driver Services (SafeList) ==========

DRV - [2011/08/03 14:24:10 | 000,138,192 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\System32\drivers\avipbb.sys -- (avipbb)
DRV - [2011/08/03 14:24:10 | 000,066,616 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\Windows\System32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2011/07/13 16:00:14 | 000,026,112 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\tap0901.sys -- (tap0901)
DRV - [2011/06/17 15:30:20 | 000,128,272 | ---- | M] (SANDBOXIE L.T.D) [Kernel | On_Demand | Running] -- C:\Archivos de programa\Sandboxie\SbieDrv.sys -- (SbieDrv)
DRV - [2010/11/20 12:24:41 | 000,052,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2010/10/26 13:39:16 | 000,131,584 | ---- | M] (MediaTek Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\mt7118vu.sys -- (MT7118VU)
DRV - [2010/08/24 11:55:52 | 000,068,208 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\L1C62x86.sys -- (L1C)
DRV - [2010/07/15 23:57:36 | 001,906,024 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\athr.sys -- (athr)
DRV - [2010/06/17 08:50:38 | 000,082,768 | ---- | M] (ENE Technology Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\EUCR6SK.SYS -- (EUCR)
DRV - [2010/04/24 01:10:54 | 000,019,304 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Sftvollh.sys -- (Sftvol)
DRV - [2010/04/24 01:10:52 | 000,021,864 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\Sftredirlh.sys -- (Sftredir)
DRV - [2010/04/24 01:10:50 | 000,195,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Sftplaylh.sys -- (Sftplay)
DRV - [2010/04/24 01:10:44 | 000,550,760 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Sftfslh.sys -- (Sftfs)
DRV - [2010/01/14 10:07:52 | 000,015,360 | ---- | M] (MediaTek Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\mtkwmptv.sys -- (MTKWMPROT)
DRV - [2009/12/30 11:21:18 | 000,027,192 | ---- | M] (VS Revo Group) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\revoflt.sys -- (Revoflt)
DRV - [2009/07/14 01:45:33 | 000,083,456 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\serial.sys -- (Serial)
DRV - [2009/05/11 10:12:49 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\System32\drivers\ssmdrv.sys -- (ssmdrv)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://packardbell.msn.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://packardbell.msn.com

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://packardbell.msn.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========


FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpWinExt,version=5.0: C:\Program Files\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\UNKNOWN\AppData\Local\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\UNKNOWN\AppData\Local\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\MSN Toolbar\Platform\6.0.2282.0\Firefox [2011/08/02 14:34:22 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{27182e60-b5f3-411c-b545-b44205977502}: C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension\ [2011/08/02 14:34:25 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}: C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DMExtension\ [2011/08/02 14:34:29 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/08/02 23:04:24 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/08/02 23:48:51 | 000,000,000 | ---D | M]

[2011/08/02 23:04:47 | 000,000,000 | ---D | M] (No name found) -- C:\Users\UNKNOWN\AppData\Roaming\mozilla\Extensions
[2011/08/02 23:04:24 | 000,000,000 | ---D | M] (No name found) -- C:\Archivos de programa\Mozilla Firefox\extensions
File not found (No name found) --
[2011/07/08 09:16:28 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2010/01/01 10:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml

O1 HOSTS File: ([2009/06/10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Archivos de programa\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Archivos de programa\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
O2 - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
O2 - BHO: (Bing Bar BHO) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Archivos de programa\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll (Microsoft Corporation)
O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Archivos de programa\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll (Yahoo! Inc)
O3 - HKLM\..\Toolbar: (@C:\Program Files\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll,-100) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Archivos de programa\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Barra Yahoo!) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Archivos de programa\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No CLSID value found.
O4 - HKLM..\Run: [Acer ePower Management] C:\Archivos de programa\Packard Bell\Packard Bell Power Management\ePowerTray.exe (Acer Incorporated)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [ETDCtrl] C:\Archivos de programa\Elantech\ETDCtrl.exe (ELAN Microelectronics Corp.)
O4 - HKLM..\Run: [LManager] C:\Archivos de programa\Launch Manager\LManager.exe (Dritek System Inc.)
O4 - HKLM..\Run: [OMEA] C:\Program Files\PackardBellXSync\Deployment\Functions\{AA58F999-6D97-42c2-A69F-8CC04D18D944}\OMEA.exe (Ours Technology Inc.)
O4 - HKCU..\Run: [Messenger (Yahoo!)] C:\Archivos de programa\Yahoo!\Messenger\YahooMessenger.exe (Yahoo! Inc.)
O4 - HKCU..\Run: [SandboxieControl] C:\Program Files\Sandboxie\SbieCtrl.exe (SANDBOXIE L.T.D)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9 - Extra Button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Archivos de programa\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Archivos de programa\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira GmbH)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira GmbH)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira GmbH)
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 109.108.191.15 109.108.191.16
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Archivos de programa\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Archivos de programa\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Archivos de programa\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Archivos de programa\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/06/10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{f6b58a0a-bd07-11e0-aa97-90004e1db54a}\Shell - "" = AutoRun
O33 - MountPoints2\{f6b58a0a-bd07-11e0-aa97-90004e1db54a}\Shell\AutoRun\command - "" = D:\SetupLoader.exe
O33 - MountPoints2\D\Shell - "" = AutoRun
O33 - MountPoints2\D\Shell\AutoRun\command - "" = D:\SetupLoader.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/08/06 16:18:22 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\Adobe
[2011/08/06 14:56:43 | 000,000,000 | R--D | C] -- C:\Sandbox
[2011/08/06 14:54:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie
[2011/08/06 14:54:29 | 000,000,000 | ---D | C] -- C:\Program Files\Sandboxie
[2011/08/06 12:15:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HMA! Pro VPN
[2011/08/06 12:14:53 | 000,000,000 | ---D | C] -- C:\Program Files\HMA! Pro VPN
[2011/08/06 06:27:32 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\VS Revo Group
[2011/08/06 06:23:37 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{67A34C9D-500F-42E4-ACC8-FDAA1E7D4262}
[2011/08/06 06:23:12 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{995151EE-528E-4601-B9FF-A546AC538EC7}
[2011/08/06 06:03:45 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Avira
[2011/08/06 06:01:43 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{89CB3EBD-1E22-4C77-846E-500F99839F15}
[2011/08/06 06:01:04 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{CB333A0E-4532-437F-B3DA-4C9AF810BAAF}
[2011/08/06 03:02:21 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2011/08/06 00:32:46 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\Desktop\Havij 1.15 - Advanced SQL Injection
[2011/08/06 00:30:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Havij
[2011/08/06 00:30:09 | 000,000,000 | ---D | C] -- C:\Program Files\Havij
[2011/08/05 17:44:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (Español)
[2011/08/05 17:16:12 | 000,000,000 | ---D | C] -- C:\ProgramData\VirtualizedApplications
[2011/08/05 15:50:30 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{EC31197B-3009-4AB8-B9B1-1DF59D0FFFE7}
[2011/08/05 15:50:06 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{81FAF6FE-221C-4970-A819-CC75121C7A80}
[2011/08/05 15:09:23 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2011/08/05 15:04:13 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\SoftGrid Client
[2011/08/05 15:04:09 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\SoftGrid Client
[2011/08/05 15:02:15 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
[2011/08/05 15:02:14 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Application Virtualization Client
[2011/08/05 15:01:42 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\TP
[2011/08/05 02:51:41 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\Desktop\Release
[2011/08/04 20:02:03 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\S-unno
[2011/08/04 20:00:27 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\S-unno
[2011/08/04 20:00:20 | 000,000,000 | ---D | C] -- C:\Program Files\S-unno
[2011/08/04 15:10:57 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{A1EF4115-BD14-470B-AF4C-11DA4254A378}
[2011/08/04 15:10:28 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{CB8A4B3C-195A-45C7-ACF6-6FACD7D856C1}
[2011/08/04 12:35:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\mIRC
[2011/08/04 12:35:33 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\mIRC
[2011/08/04 12:35:32 | 000,000,000 | ---D | C] -- C:\Program Files\mIRC
[2011/08/04 02:55:38 | 002,785,719 | ---- | C] (ITSecTeam ) -- C:\Users\UNKNOWN\AppData\Roaming\Havij1.14Free.exe
[2011/08/04 00:16:09 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{855A5766-B58E-4CE9-A004-F677798721A5}
[2011/08/04 00:15:53 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Windows Live Writer
[2011/08/04 00:15:53 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\Windows Live Writer
[2011/08/03 20:30:50 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\Desktop\sqliHelper 2.7
[2011/08/03 15:15:17 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\uTorrent
[2011/08/03 15:02:21 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2011/08/03 15:02:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2011/08/03 15:02:15 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2011/08/03 08:59:08 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{61227F6E-7F97-439B-8A09-46296B88B11E}
[2011/08/03 01:15:46 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\WinRAR
[2011/08/03 00:37:55 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2011/08/03 00:36:35 | 000,000,000 | ---D | C] -- C:\1e1619c8cdc3c4fecf960457b5dfa0
[2011/08/03 00:13:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\XPSViewer
[2011/08/03 00:13:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\es-ES
[2011/08/03 00:13:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\es
[2011/08/03 00:13:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\0C0A
[2011/08/03 00:13:02 | 000,000,000 | ---D | C] -- C:\Windows\es-ES
[2011/08/03 00:11:04 | 000,033,792 | ---- | C] (Marvell) -- C:\Windows\System32\drivers\es-ES\yk62x86.sys.mui
[2011/08/03 00:11:04 | 000,011,264 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\es-ES\BrSerId.sys.mui
[2011/08/03 00:11:04 | 000,011,264 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\es-ES\BrSerIb.sys.mui
[2011/08/03 00:11:04 | 000,010,752 | ---- | C] (Agere Systems) -- C:\Windows\System32\drivers\es-ES\ltmdmnt.sys.mui
[2011/08/03 00:11:00 | 000,004,096 | ---- | C] (SCM Microsystems, Inc.) -- C:\Windows\System32\drivers\es-ES\pscr.sys.mui
[2011/08/03 00:11:00 | 000,002,560 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\es-ES\BrParwdm.sys.mui
[2011/08/03 00:05:18 | 000,000,000 | ---D | C] -- C:\Windows\NAPP_Dism_Log
[2011/08/02 23:14:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2011/08/02 23:14:01 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011/08/02 23:04:32 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Mozilla
[2011/08/02 23:04:21 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2011/08/02 22:53:24 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2011/08/02 22:51:46 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\Google
[2011/08/02 21:02:47 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\Mozilla
[2011/08/02 20:56:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\SPReview
[2011/08/02 20:55:34 | 000,000,000 | ---D | C] -- C:\Windows\System32\EventProviders
[2011/08/02 20:21:56 | 000,093,696 | ---- | C] (Windows ® Codename Longhorn DDK provider) -- C:\Windows\System32\fms.dll
[2011/08/02 20:02:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
[2011/08/02 20:01:47 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\ssmdrv.sys
[2011/08/02 20:01:44 | 000,138,192 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\avipbb.sys
[2011/08/02 20:01:44 | 000,066,616 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\avgntflt.sys
[2011/08/02 20:01:44 | 000,051,992 | ---- | C] (AVIRA GmbH) -- C:\Windows\System32\drivers\avgntdd.sys
[2011/08/02 20:01:44 | 000,017,016 | ---- | C] (AVIRA GmbH) -- C:\Windows\System32\drivers\avgntmgr.sys
[2011/08/02 20:01:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
[2011/08/02 20:01:32 | 000,000,000 | ---D | C] -- C:\Program Files\Avira
[2011/08/02 19:33:46 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\VS Revo Group
[2011/08/02 19:33:36 | 000,027,192 | ---- | C] (VS Revo Group) -- C:\Windows\System32\drivers\revoflt.sys
[2011/08/02 19:33:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
[2011/08/02 19:33:32 | 000,000,000 | ---D | C] -- C:\Program Files\VS Revo Group
[2011/08/02 19:24:30 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\{3EDEC198-A05B-4B66-B3F3-CC07C51A34D7}
[2011/08/02 19:24:12 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\Tracing
[2011/08/02 19:20:05 | 000,000,000 | ---D | C] -- C:\Windows\en
[2011/08/02 19:16:09 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
[2011/08/02 19:15:40 | 000,000,000 | ---D | C] -- C:\Windows\es
[2011/08/02 19:04:23 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\Windows Live
[2011/08/02 17:17:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Yahoo! Companion
[2011/08/02 17:17:38 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Yahoo!
[2011/08/02 17:15:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Yahoo! Messenger
[2011/08/02 17:15:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Yahoo!
[2011/08/02 17:09:03 | 000,000,000 | ---D | C] -- C:\Program Files\Yahoo!
[2011/08/02 16:01:10 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Adobe
[2011/08/02 15:54:35 | 000,015,360 | ---- | C] (MediaTek Inc.) -- C:\Windows\System32\drivers\mtkwmptv.sys
[2011/08/02 15:54:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\instanet city
[2011/08/02 15:54:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Green Packet WiMAX Modem
[2011/08/02 15:13:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\DRVSTORE
[2011/08/02 15:13:40 | 000,000,000 | ---D | C] -- C:\Program Files\instanet city
[2011/08/02 15:11:08 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Macromedia
[2011/08/02 15:10:53 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2011/08/02 15:10:53 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Searches
[2011/08/02 15:10:53 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2011/08/02 15:10:46 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Identities
[2011/08/02 15:10:44 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Contacts
[2011/08/02 15:09:16 | 000,000,000 | ---D | C] -- C:\Program Files\PB Accessory Store
[2011/08/02 15:08:44 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\VirtualStore
[2011/08/02 15:08:42 | 000,000,000 | --SD | C] -- C:\Users\UNKNOWN\AppData\Roaming\Microsoft
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Videos
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Saved Games
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Pictures
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Music
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Links
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Favorites
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Downloads
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Documents
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\Desktop
[2011/08/02 15:08:42 | 000,000,000 | R--D | C] -- C:\Users\UNKNOWN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\SendTo
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Reciente
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Plantillas
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Documents\Mis vídeos
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Documents\Mis imágenes
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Mis documentos
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Documents\Mi música
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Menú Inicio
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Impresoras
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\AppData\Local\Historial
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Entorno de red
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Datos de programa
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\AppData\Local\Datos de programa
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Cookies
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\Configuración local
[2011/08/02 15:08:42 | 000,000,000 | -HSD | C] -- C:\Users\UNKNOWN\AppData\Local\Archivos temporales de Internet
[2011/08/02 15:08:42 | 000,000,000 | -H-D | C] -- C:\Users\UNKNOWN\AppData
[2011/08/02 15:08:42 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\Temp
[2011/08/02 15:08:42 | 000,000,000 | ---D | C] -- C:\Users\UNKNOWN\AppData\Local\Microsoft
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\Recovery
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\ProgramData\Plantillas
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Mis vídeos
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Mis imágenes
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Mi música
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\ProgramData\Menú Inicio
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoritos
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\ProgramData\Escritorio
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\ProgramData\Documentos
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\ProgramData\Datos de programa
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\Archivos de programa
[2011/08/02 15:08:28 | 000,000,000 | -HSD | C] -- C:\Program Files\Archivos comunes
[2011/08/02 14:46:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Packard Bell XSync
[2011/08/02 14:46:37 | 000,000,000 | ---D | C] -- C:\Program Files\PackardBellXSync
[2011/08/02 14:44:55 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server Compact Edition
[2011/08/02 14:43:49 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\microsoft
[2011/08/02 14:43:21 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live
[2011/08/02 14:43:04 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2011/08/02 14:41:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Windows Live
[2011/08/02 14:40:46 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Macrovision Shared
[2011/08/02 14:38:32 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PX Storage Engine
[2011/08/02 14:36:23 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2011/08/02 14:34:23 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft
[2011/08/02 14:34:21 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Toolbar
[2011/08/02 14:34:16 | 000,000,000 | ---D | C] -- C:\Program Files\Bing Bar Installer
[2011/08/02 14:31:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Web Camera
[2011/08/02 14:31:46 | 000,000,000 | ---D | C] -- C:\Program Files\Video Web Camera
[2011/08/02 14:31:23 | 000,000,000 | ---D | C] -- C:\Program Files\Elantech
[2011/08/02 14:28:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Packard Bell Documentation
[2011/08/02 14:28:41 | 000,000,000 | ---D | C] -- C:\book
[2011/08/02 14:24:47 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2011/08/02 14:24:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\Lang
[2011/08/02 14:21:41 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2011/07/13 16:00:14 | 000,026,112 | ---- | C] (The OpenVPN Project) -- C:\Windows\System32\drivers\tap0901.sys

========== Files - Modified Within 30 Days ==========

[2011/08/06 17:01:01 | 000,001,118 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4219616174-2794619187-1302624758-1000UA.job
[2011/08/06 15:15:14 | 000,001,424 | ---- | M] () -- C:\Windows\Sandboxie.ini
[2011/08/06 14:54:30 | 000,001,065 | ---- | M] () -- C:a
[2011/08/06 11:06:59 | 000,002,858 | ---- | M] () -- C:\Users\UNKNOWN\Documents\cc_20110806_110639.reg
[2011/08/06 10:01:02 | 000,001,066 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4219616174-2794619187-1302624758-1000Core.job
[2011/08/06 03:14:14 | 000,008,160 | ---- | M] () -- C:\Users\UNKNOWN\Desktop\My CCs and Other information.rtf
[2011/08/06 03:02:45 | 000,704,284 | ---- | M] () -- C:\Windows\System32\perfh00A.dat
[2011/08/06 03:02:45 | 000,616,452 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011/08/06 03:02:45 | 000,137,992 | ---- | M] () -- C:\Windows\System32\perfc00A.dat
[2011/08/06 03:02:45 | 000,106,574 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011/08/06 00:30:19 | 000,000,891 | ---- | M] () -- C:\Users\Public\Desktop\Havij.lnk
[2011/08/06 00:15:16 | 003,041,521 | ---- | M] () -- C:\Users\UNKNOWN\Desktop\Havij 1.15 Pro - Advanced SQL Injection.rar
[2011/08/05 23:58:43 | 002,960,468 | ---- | M] () -- C:\Users\UNKNOWN\Desktop\Havij 1.15 Pro Cracked.rar
[2011/08/05 13:53:44 | 000,000,193 | ---- | M] () -- C:\Windows\WORDPAD.INI
[2011/08/05 02:41:39 | 000,360,631 | ---- | M] () -- C:\Users\UNKNOWN\Desktop\Admin loggin.rtf
[2011/08/04 21:26:12 | 000,836,771 | ---- | M] () -- C:\Users\UNKNOWN\Desktop\Great Email Passwords List1.html
[2011/08/04 20:00:28 | 000,000,981 | ---- | M] () -- C:\Users\Public\Desktop\S-unno.lnk
[2011/08/04 19:27:24 | 000,090,584 | -H-- | M] () -- C:\Windows\System32\mlfcache.dat
[2011/08/04 12:35:33 | 000,000,925 | ---- | M] () -- C:\Users\Public\Desktop\mIRC.lnk
[2011/08/04 03:28:37 | 000,004,228 | ---- | M] () -- C:\Users\UNKNOWN\Documents\cc_20110804_032817.reg
[2011/08/04 03:04:04 | 002,785,719 | ---- | M] (ITSecTeam ) -- C:\Users\UNKNOWN\AppData\Roaming\Havij1.14Free.exe
[2011/08/04 03:04:03 | 003,158,016 | ---- | M] () -- C:\Users\UNKNOWN\AppData\Roaming\Havij1.14 Pro.exe
[2011/08/04 02:09:50 | 000,071,680 | ---- | M] () -- C:\Users\UNKNOWN\AppData\Roaming\chrtmp
[2011/08/03 14:24:10 | 000,138,192 | ---- | M] (Avira GmbH) -- C:\Windows\System32\drivers\avipbb.sys
[2011/08/03 14:24:10 | 000,066,616 | ---- | M] (Avira GmbH) -- C:\Windows\System32\drivers\avgntflt.sys
[2011/08/03 08:56:05 | 000,263,056 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2011/08/03 00:12:45 | 000,341,432 | ---- | M] () -- C:\Windows\System32\perfi00A.dat
[2011/08/03 00:12:45 | 000,041,390 | ---- | M] () -- C:\Windows\System32\perfd00A.dat
[2011/08/03 00:11:37 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2011/08/03 00:11:04 | 000,033,792 | ---- | M] (Marvell) -- C:\Windows\System32\drivers\es-ES\yk62x86.sys.mui
[2011/08/03 00:11:04 | 000,011,264 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\es-ES\BrSerId.sys.mui
[2011/08/03 00:11:04 | 000,011,264 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\es-ES\BrSerIb.sys.mui
[2011/08/03 00:11:04 | 000,010,752 | ---- | M] (Agere Systems) -- C:\Windows\System32\drivers\es-ES\ltmdmnt.sys.mui
[2011/08/03 00:11:00 | 000,004,096 | ---- | M] (SCM Microsystems, Inc.) -- C:\Windows\System32\drivers\es-ES\pscr.sys.mui
[2011/08/03 00:11:00 | 000,002,560 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\es-ES\BrParwdm.sys.mui
[2011/08/03 00:05:18 | 000,011,453 | ---- | M] () -- C:\Windows\ChangeLang_Done.tag
[2011/08/02 23:14:03 | 000,000,981 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011/08/02 23:04:26 | 000,001,112 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2011/08/02 22:53:29 | 000,002,300 | ---- | M] () -- C:\Users\UNKNOWN\Desktop\Google Chrome.lnk
[2011/08/02 21:11:19 | 000,072,822 | ---- | M] () -- C:\Windows\System32\ieuinit.inf
[2011/08/02 21:02:52 | 000,000,000 | ---- | M] () -- C:\Windows\nsreg.dat
[2011/08/02 20:02:08 | 000,002,028 | ---- | M] () -- C:\Users\Public\Desktop\Avira AntiVir Control Center.lnk
[2011/08/02 19:33:39 | 000,001,246 | ---- | M] () -- C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk
[2011/08/02 18:18:22 | 000,001,766 | ---- | M] () -- C:\Users\Public\Desktop\Selección del Explorador.lnk
[2011/08/02 17:18:38 | 000,000,064 | ---- | M] () -- C:\Windows\wininit.ini
[2011/08/02 17:16:10 | 000,001,123 | ---- | M] () -- C:\Users\Public\Desktop\Yahoo! Messenger.lnk
[2011/08/02 15:54:32 | 000,002,701 | ---- | M] () -- C:\Users\Public\Desktop\instanet city.lnk
[2011/08/02 15:09:17 | 000,001,960 | ---- | M] () -- C:\Users\Public\Desktop\PB Accessorios.lnk
[2011/08/02 15:07:32 | 000,044,132 | ---- | M] () -- C:\Windows\System32\license.rtf
[2011/08/02 14:44:56 | 000,000,020 | ---- | M] () -- C:\Windows\Ì÷q
[2011/08/02 14:40:24 | 000,001,183 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Photoshop Elements 8.0.lnk
[2011/08/02 14:31:49 | 000,002,025 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\VideoWebCamera.exe.lnk
[2011/08/02 14:28:12 | 000,013,972 | ---- | M] () -- C:\Windows\System32\results.xml
[2011/08/02 14:25:45 | 000,000,006 | ---- | M] () -- C:\Windows\System32\PLD_Framework.cmd
[2011/07/13 16:00:14 | 000,026,112 | ---- | M] (The OpenVPN Project) -- C:\Windows\System32\drivers\tap0901.sys

========== Files Created - No Company Name ==========

[2011/08/06 14:54:56 | 000,001,065 | ---- | C] () -- C:\Users\UNKNOWN\Desktop\Sandboxed Web Browser.lnk
[2011/08/06 14:54:54 | 000,001,424 | ---- | C] () -- C:\Windows\Sandboxie.ini
[2011/08/06 12:51:55 | 000,000,069 | ---- | C] () -- C:\RunSC.bat
[2011/08/06 12:15:08 | 000,001,125 | ---- | C] () -- C:\Users\Public\Desktop\HMA! Pro VPN.lnk
[2011/08/06 11:06:54 | 000,002,858 | ---- | C] () -- C:\Users\UNKNOWN\Documents\cc_20110806_110639.reg
[2011/08/06 00:30:19 | 000,000,891 | ---- | C] () -- C:\Users\Public\Desktop\Havij.lnk
[2011/08/06 00:15:11 | 003,041,521 | ---- | C] () -- C:\Users\UNKNOWN\Desktop\Havij 1.15 Pro - Advanced SQL Injection.rar
[2011/08/05 23:58:29 | 002,960,468 | ---- | C] () -- C:\Users\UNKNOWN\Desktop\Havij 1.15 Pro Cracked.rar
[2011/08/05 13:53:44 | 000,000,193 | ---- | C] () -- C:\Windows\WORDPAD.INI
[2011/08/04 21:26:12 | 000,836,771 | ---- | C] () -- C:\Users\UNKNOWN\Desktop\Great Email Passwords List1.html
[2011/08/04 20:00:28 | 000,000,981 | ---- | C] () -- C:\Users\Public\Desktop\S-unno.lnk
[2011/08/04 19:27:24 | 000,090,584 | -H-- | C] () -- C:\Windows\System32\mlfcache.dat
[2011/08/04 12:35:33 | 000,000,925 | ---- | C] () -- C:\Users\Public\Desktop\mIRC.lnk
[2011/08/04 03:28:24 | 000,004,228 | ---- | C] () -- C:\Users\UNKNOWN\Documents\cc_20110804_032817.reg
[2011/08/04 02:56:06 | 003,158,016 | ---- | C] () -- C:\Users\UNKNOWN\AppData\Roaming\Havij1.14 Pro.exe
[2011/08/04 02:56:05 | 000,071,680 | ---- | C] () -- C:\Users\UNKNOWN\AppData\Roaming\chrtmp
[2011/08/03 22:32:52 | 000,360,631 | ---- | C] () -- C:\Users\UNKNOWN\Desktop\Admin loggin.rtf
[2011/08/03 20:31:40 | 000,008,160 | ---- | C] () -- C:\Users\UNKNOWN\Desktop\My CCs and Other information.rtf
[2011/08/03 00:18:43 | 000,011,453 | ---- | C] () -- C:\Windows\ChangeLang_Done.tag
[2011/08/03 00:13:47 | 000,341,432 | ---- | C] () -- C:\Windows\System32\perfi00A.dat
[2011/08/03 00:13:46 | 000,704,284 | ---- | C] () -- C:\Windows\System32\perfh00A.dat
[2011/08/03 00:13:46 | 000,137,992 | ---- | C] () -- C:\Windows\System32\perfc00A.dat
[2011/08/03 00:13:46 | 000,041,390 | ---- | C] () -- C:\Windows\System32\perfd00A.dat
[2011/08/03 00:11:37 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2011/08/02 23:14:03 | 000,000,981 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011/08/02 23:04:25 | 000,001,124 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2011/08/02 23:04:25 | 000,001,112 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2011/08/02 22:53:29 | 000,002,300 | ---- | C] () -- C:\Users\UNKNOWN\Desktop\Google Chrome.lnk
[2011/08/02 22:51:49 | 000,001,118 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4219616174-2794619187-1302624758-1000UA.job
[2011/08/02 22:51:47 | 000,001,066 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4219616174-2794619187-1302624758-1000Core.job
[2011/08/02 21:51:39 | 000,001,413 | ---- | C] () -- C:\Users\UNKNOWN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2011/08/02 21:11:19 | 000,072,822 | ---- | C] () -- C:\Windows\System32\ieuinit.inf
[2011/08/02 21:02:52 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2011/08/02 20:24:24 | 000,146,852 | ---- | C] () -- C:\Windows\System32\systemsf.ebd
[2011/08/02 20:20:45 | 000,010,429 | ---- | C] () -- C:\Windows\System32\ScavengeSpace.xml
[2011/08/02 20:20:15 | 000,105,559 | ---- | C] () -- C:\Windows\System32\RacRules.xml
[2011/08/02 20:02:08 | 000,002,028 | ---- | C] () -- C:\Users\Public\Desktop\Avira AntiVir Control Center.lnk
[2011/08/02 19:33:39 | 000,001,246 | ---- | C] () -- C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk
[2011/08/02 19:15:11 | 000,001,263 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Movie Maker.lnk
[2011/08/02 19:14:16 | 000,001,332 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Photo Gallery.lnk
[2011/08/02 19:13:21 | 000,001,416 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
[2011/08/02 19:12:44 | 000,002,444 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk
[2011/08/02 18:18:22 | 000,001,766 | ---- | C] () -- C:\Users\Public\Desktop\Selección del Explorador.lnk
[2011/08/02 17:18:38 | 000,000,064 | ---- | C] () -- C:\Windows\wininit.ini
[2011/08/02 17:16:10 | 000,001,123 | ---- | C] () -- C:\Users\Public\Desktop\Yahoo! Messenger.lnk
[2011/08/02 15:54:32 | 000,002,701 | ---- | C] () -- C:\Users\Public\Desktop\instanet city.lnk
[2011/08/02 15:13:40 | 001,892,820 | ---- | C] () -- C:\Windows\System32\drivers\mt7118u.bin
[2011/08/02 15:09:17 | 000,001,960 | ---- | C] () -- C:\Users\Public\Desktop\PB Accessorios.lnk
[2011/08/02 14:44:55 | 000,000,020 | ---- | C] () -- C:\Windows\Ì÷q
[2011/08/02 14:40:24 | 000,001,195 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop Elements 8.0.lnk
[2011/08/02 14:40:24 | 000,001,183 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Photoshop Elements 8.0.lnk
[2011/08/02 14:36:25 | 000,002,435 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2010.lnk
[2011/08/02 14:34:30 | 000,001,350 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Default Manager.lnk
[2011/08/02 14:31:49 | 000,002,025 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\VideoWebCamera.exe.lnk
[2011/08/02 14:28:12 | 000,013,972 | ---- | C] () -- C:\Windows\System32\results.xml
[2011/08/02 14:21:41 | 796,729,344 | -HS- | C] () -- C:\hiberfil.sys
[2010/11/23 13:46:11 | 000,247,560 | ---- | C] () -- C:\Windows\System32\drivers\RTConvEQ.dat
[2010/11/23 13:46:11 | 000,039,672 | ---- | C] () -- C:\Windows\System32\drivers\RtPCEE3.DAT
[2010/11/23 13:46:11 | 000,016,406 | ---- | C] () -- C:\Windows\System32\drivers\RtPCEE4.DAT
[2010/11/23 13:46:11 | 000,001,448 | ---- | C] () -- C:\Windows\System32\drivers\RtHdatEx.dat
[2010/11/23 13:46:11 | 000,000,520 | ---- | C] () -- C:\Windows\System32\drivers\RTEQEX3.dat
[2010/11/23 13:46:11 | 000,000,520 | ---- | C] () -- C:\Windows\System32\drivers\RTEQEX2.dat
[2010/11/23 13:46:11 | 000,000,520 | ---- | C] () -- C:\Windows\System32\drivers\RTEQEX1.dat
[2010/11/23 13:46:11 | 000,000,520 | ---- | C] () -- C:\Windows\System32\drivers\RTEQEX0.dat
[2010/11/23 13:46:11 | 000,000,176 | ---- | C] () -- C:\Windows\System32\drivers\RTHDAEQ1.dat
[2010/11/23 13:46:11 | 000,000,032 | ---- | C] () -- C:\Windows\System32\drivers\rtkhdaud.dat
[2010/11/23 13:02:55 | 000,361,808 | ---- | C] () -- C:\Windows\EMCRI_E.dll
[2009/07/14 06:57:37 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009/07/14 06:33:53 | 000,263,056 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2009/07/14 04:05:48 | 000,616,452 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2009/07/14 04:05:48 | 000,291,294 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2009/07/14 04:05:48 | 000,106,574 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2009/07/14 04:05:48 | 000,031,548 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2009/07/14 04:05:05 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2009/07/14 04:04:11 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2009/07/14 01:55:01 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009/07/14 01:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
[2009/07/14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
[2009/06/10 23:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat

========== LOP Check ==========

[2011/08/04 21:03:12 | 000,000,000 | ---D | M] -- C:\Users\UNKNOWN\AppData\Roaming\S-unno
[2011/08/06 06:18:51 | 000,000,000 | ---D | M] -- C:\Users\UNKNOWN\AppData\Roaming\SoftGrid Client
[2011/08/05 15:04:52 | 000,000,000 | ---D | M] -- C:\Users\UNKNOWN\AppData\Roaming\TP
[2011/08/03 16:01:43 | 000,000,000 | ---D | M] -- C:\Users\UNKNOWN\AppData\Roaming\uTorrent
[2011/08/06 06:27:32 | 000,000,000 | ---D | M] -- C:\Users\UNKNOWN\AppData\Roaming\VS Revo Group
[2011/08/04 00:15:53 | 000,000,000 | ---D | M] -- C:\Users\UNKNOWN\AppData\Roaming\Windows Live Writer
[2009/07/14 06:53:46 | 000,010,864 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



< End of report >


OTL Extras logfile created on: 06/08/2011 17:22:06 - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\UNKNOWN\Downloads
Starter Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000c0a | Country: España | Language: ESN | Date Format: dd/MM/yyyy

1013,09 Mb Total Physical Memory | 120,90 Mb Available Physical Memory | 11,93% Memory free
1,99 Gb Paging File | 0,58 Gb Available in Paging File | 28,99% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 219,79 Gb Total Space | 189,34 Gb Free Space | 86,15% Space Free | Partition Type: NTFS

Computer Name: UNKNOWN-PC | User Name: UNKNOWN | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{08234a0d-cf39-4dca-99f0-0c5cb496da81}" = Barra de Bing
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0D261C88-454B-46FE-B43B-640E621BDA11}" = Windows Live Mail
"{17DFE37C-064E-4834-AD8F-A4B2B4DF68F8}" = Adobe Photoshop Elements 8.0
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{1CAC7A41-583B-4483-9FA5-3E5465AFF8C2}" = Microsoft Default Manager
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{21DAB643-1115-48A1-B949-FC4BD1ACE1E1}" = instanet city
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{2A3FC24C-6EC0-4519-A52B-FDA4EA9B2D24}" = Windows Live Messenger
"{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.® AR81Family Gigabit/Fast Ethernet Driver
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3DB0448D-AD82-4923-B305-D001E521A964}" = Packard Bell Power Management
"{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel® Rapid Storage Technology
"{48C0DC5E-820A-44F2-890E-29B68EDD3C78}" = Windows Live Writer
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{5D273F60-0525-48BA-A5FB-D0CAA4A952AE}" = Windows Live Movie Maker
"{5F6E7CB6-8015-4004-BCAD-D446946B4A65}" = S-unno
"{64EF903E-D00A-414C-94A4-FBA368FFCDC9}" = Packard Bell Social Networks
"{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1" = Revo Uninstaller Pro 2.5.3
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{77477AEA-5757-47D8-8B33-939F43D82218}" = Windows Live UX Platform Language Pack
"{77C4850C-3592-4A2F-B652-ACB77A1EF77C}" = Bing Bar Platform
"{7D1C7B9F-2744-4388-B128-5C75B8BCCC84}" = Windows Live Essentials
"{7F811A54-5A09-4579-90E1-C93498E230D9}" = Packard Bell Recovery Management
"{83299633-1261-47A3-84F3-6F02B4B8CDB1}" = Video Web Camera
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8FF3891F-01B5-4A71-BFCD-20761890471C}" = Windows Live Messenger
"{90140000-006D-0C0A-0000-0000000FF1CE}" = Hacer clic y ejecutar de Microsoft Office 2010
"{90140011-0066-0C0A-0000-0000000FF1CE}" = Microsoft Office Starter 2010 - Español
"{914DD274-9C5D-44CA-9AC7-12B8D2D4DA08}" = Windows Live Sync
"{928B06E4-DDAA-476A-926A-641620326327}" = Microsoft Search Enhancement Pack
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{9EB6EAE1-5CFC-46F1-9FB9-5FDA335DDE3D}" = Packard Bell XSync
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A41A708E-3BE6-4561-855D-44027C1CF0F8}" = Windows Live Photo Common
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer
"{AC76BA86-7AD7-FFFF-7B44-A91000000001}" = Adobe Reader 9.1 MUI
"{AF844339-2F8A-4593-81B3-9F4C54038C4E}" = Windows Live MIME IFilter
"{C6150D8A-86ED-41D3-87BB-F3BB51B0B77F}" = Windows Live ID Sign-in Assistant
"{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
"{E727A662-AF9F-4DEE-81C5-F4A1686F3DFC}" = Windows Live Writer Resources
"{E85A4EFC-82F2-4CEE-8A8E-62FDAD353A66}" = Galería fotográfica de Windows Live
"{EE171732-BEB4-4576-887D-CB62727F01CA}" = Packard Bell Updater
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"3B29FD3CCF1F5B855DA0C521597413EBABE97DFB" = ENE USB Card Reader Driver
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Photoshop Elements 8.0" = Adobe Photoshop Elements 8.0
"Avira AntiVir Desktop" = Avira AntiVir Premium
"CCleaner" = CCleaner
"Elantech" = ETDWare PS/2-X86 8.0.6.0_WHQL
"Havij_is1" = Havij 1.15 Pro
"HDMI" = Intel® Graphics Media Accelerator Driver
"HMA! Pro VPN" = HMA! Pro VPN 2.6.9
"Identity Card" = Identity Card
"InstallShield_{64EF903E-D00A-414C-94A4-FBA368FFCDC9}" = Packard Bell Social Networks
"InstallShield_{9EB6EAE1-5CFC-46F1-9FB9-5FDA335DDE3D}" = Packard Bell XSync
"LManager" = Launch Manager
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"mIRC" = mIRC
"Mozilla Firefox 5.0.1 (x86 en-US)" = Mozilla Firefox 5.0.1 (x86 en-US)
"Office14.Click2Run" = Hacer clic y ejecutar de Microsoft Office 2010
"Packard Bell Game Console" = Packard Bell Game Console
"Packard Bell Registration" = Packard Bell Registration
"Packard Bell Screensaver" = Packard Bell ScreenSaver
"Packard Bell Welcome Center" = Welcome Center
"Sandboxie" = Sandboxie 3.56 (32-bit)
"WildTangent packardbell Master Uninstall" = Packard Bell Games
"WinLiveSuite" = Windows Live Essentials
"WinRAR archiver" = WinRAR 4.01 (32-bit)
"WT088226" = Bejeweled 2 Deluxe
"WT088235" = Chuzzle Deluxe
"WT088238" = Diner Dash 2 Restaurant Rescue
"WT088260" = Farm Frenzy
"WT088268" = Insaniquarium Deluxe
"WT088269" = Jewel Quest Solitaire 2
"WT088283" = Plants vs. Zombies
"WT088292" = Zuma Deluxe
"WT088376" = Blackhawk Striker 2
"WT088396" = Dora's Carnival Adventure
"WT088416" = FATE
"WT088420" = Final Drive Nitro
"WT088444" = Jewel Quest
"WT088452" = Penguins!
"WT088456" = Polar Bowler
"WT088508" = Virtual Villagers 4 - The Tree of Life
"WT088531" = Zuma's Revenge
"WT088656" = Jewel Quest - Heritage
"Yahoo! Companion" = Barra Yahoo!
"Yahoo! Messenger" = Yahoo! Messenger
"Yahoo! Software Update" = Yahoo! Software Update

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 02/08/2011 19:53:44 | Computer Name = UNKNOWN-PC | Source = MsiInstaller | ID = 11935
Description =

Error - 03/08/2011 2:54:04 | Computer Name = UNKNOWN-PC | Source = MsiInstaller | ID = 11935
Description =

Error - 03/08/2011 4:29:21 | Computer Name = UNKNOWN-PC | Source = VSS | ID = 8194
Description =

Error - 03/08/2011 5:39:03 | Computer Name = UNKNOWN-PC | Source = VSS | ID = 8194
Description =

Error - 03/08/2011 6:37:11 | Computer Name = UNKNOWN-PC | Source = VSS | ID = 8194
Description =

Error - 03/08/2011 8:50:12 | Computer Name = UNKNOWN-PC | Source = VSS | ID = 8194
Description =

Error - 03/08/2011 10:00:13 | Computer Name = UNKNOWN-PC | Source = VSS | ID = 8194
Description =

Error - 03/08/2011 14:44:29 | Computer Name = UNKNOWN-PC | Source = VSS | ID = 8194
Description =

Error - 04/08/2011 3:38:34 | Computer Name = UNKNOWN-PC | Source = SideBySide | ID = 16842815
Description = Error al generar el contexto de activación para "c:\Program Files\Common
Files\Adobe AIR\Versions\1.0\Adobe AIR.dll". Error en el archivo de manifiesto
o directiva "c:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll"
en la línea 3. El valor "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR"
del atributo "version" del elemento "assemblyIdentity" no es válido.

Error - 04/08/2011 18:43:52 | Computer Name = UNKNOWN-PC | Source = RasClient | ID = 20227
Description =

[ System Events ]
Error - 03/08/2011 5:19:17 | Computer Name = UNKNOWN-PC | Source = Service Control Manager | ID = 7001
Description = El servicio Contenedor y motor de minirredirector SMB depende del
servicio Subsistema de almacenamiento en búfer redirigido, el cual no pudo iniciarse
debido al siguiente error: %%31

Error - 03/08/2011 5:19:17 | Computer Name = UNKNOWN-PC | Source = Service Control Manager | ID = 7001
Description = El servicio Minirredirector SMB 1.x depende del servicio Contenedor
y motor de minirredirector SMB, el cual no pudo iniciarse debido al siguiente error:
%%1068

Error - 03/08/2011 5:19:17 | Computer Name = UNKNOWN-PC | Source = Service Control Manager | ID = 7001
Description = El servicio Minirredirector SMB 2.0 depende del servicio Contenedor
y motor de minirredirector SMB, el cual no pudo iniciarse debido al siguiente error:
%%1068

Error - 03/08/2011 5:19:17 | Computer Name = UNKNOWN-PC | Source = Service Control Manager | ID = 7001
Description = El servicio Reconocimiento de ubicación de red depende del servicio
Servicio Interfaz de almacenamiento en red, el cual no pudo iniciarse debido al
siguiente error: %%1068

Error - 03/08/2011 5:19:19 | Computer Name = UNKNOWN-PC | Source = Service Control Manager | ID = 7026
Description = El siguiente controlador de inicio del sistema o de inicio del arranque
no se cargó correctamente: AFD avipbb cdrom DfsC discache NetBIOS NetBT nsiproxy Psched
rdbss
spldr
ssmdrv
tdx
vwififlt
Wanarpv6
WfpLwf
ws2ifsl

Error - 03/08/2011 6:22:57 | Computer Name = UNKNOWN-PC | Source = Service Control Manager | ID = 7026
Description = El siguiente controlador de inicio del sistema o de inicio del arranque
no se cargó correctamente: cdrom

Error - 03/08/2011 8:43:53 | Computer Name = UNKNOWN-PC | Source = Service Control Manager | ID = 7026
Description = El siguiente controlador de inicio del sistema o de inicio del arranque
no se cargó correctamente: cdrom

Error - 03/08/2011 8:56:56 | Computer Name = UNKNOWN-PC | Source = Service Control Manager | ID = 7026
Description = El siguiente controlador de inicio del sistema o de inicio del arranque
no se cargó correctamente: cdrom

Error - 03/08/2011 10:07:44 | Computer Name = UNKNOWN-PC | Source = Service Control Manager | ID = 7026
Description = El siguiente controlador de inicio del sistema o de inicio del arranque
no se cargó correctamente: cdrom

Error - 03/08/2011 11:27:40 | Computer Name = UNKNOWN-PC | Source = RasSstp | ID = 1
Description =


< End of report >
  • 0

Advertisements







Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP