Thank you for the help, it's greatly appreciated. Here are the results for the OTL.
OTL logfile created on: 1/20/2012 6:32:59 PM - Run 2
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Erendira Jimenez\Documents
Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.19088)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1.94 Gb Total Physical Memory | 1.24 Gb Available Physical Memory | 64.14% Memory free
4.10 Gb Paging File | 3.61 Gb Available in Paging File | 88.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 455.72 Gb Total Space | 341.46 Gb Free Space | 74.93% Space Free | Partition Type: NTFS
Drive D: | 10.00 Gb Total Space | 3.80 Gb Free Space | 37.97% Space Free | Partition Type: NTFS
Drive E: | 496.34 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Computer Name: MEDUSA | User Name: Erendira Jimenez | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ========== PRC - [2012/01/18 17:52:17 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\Erendira Jimenez\Documents\OTL.scr
PRC - [2012/01/14 12:49:32 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2011/08/11 17:38:07 | 000,116,608 | ---- | M] (SUPERAntiSpyware.com) -- C:\Program Files\SUPERAntiSpyware\SASCore.exe
PRC - [2008/10/29 00:29:41 | 002,927,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
========== Modules (No Company Name) ========== MOD - [2012/01/14 12:49:32 | 002,124,760 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2011/11/07 18:49:48 | 008,522,400 | ---- | M] () -- C:\Windows\System32\Macromed\Flash\NPSWF32.dll
MOD - [2011/07/22 12:37:56 | 000,202,032 | ---- | M] () -- C:\Program Files\Defender Pro\Defender Pro\txmlutil.dll
MOD - [2010/06/29 10:31:12 | 000,652,800 | ---- | M] () -- C:\Program Files\IZArc\IZArcCM.dll
========== Win32 Services (SafeList) ========== SRV - [2011/08/11 17:38:07 | 000,116,608 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- C:\Program Files\SUPERAntiSpyware\SASCORE.EXE -- (!SASCORE)
SRV - [2011/08/02 13:21:52 | 001,506,536 | ---- | M] (Defender Pro) [Auto | Stopped] -- C:\Program Files\Defender Pro\Defender Pro\vsserv.exe -- (VSSERV)
SRV - [2011/08/02 13:21:48 | 000,050,128 | ---- | M] (Defender Pro) [Auto | Stopped] -- C:\Program Files\Defender Pro\Defender Pro\updatesrv.exe -- (UPDATESRV)
SRV - [2011/08/02 13:19:54 | 000,307,544 | ---- | M] (Defender Pro) [On_Demand | Stopped] -- C:\Program Files\Common Files\Defender Pro\Defender Pro Arrakis Server\bin\arrakis3.exe -- (Update Server)
SRV - [2009/03/24 13:11:44 | 000,415,024 | ---- | M] (BitDefender SRL) [Auto | Stopped] -- C:\livesrv.exe -- (LIVESRV)
SRV - [2009/01/26 14:31:10 | 001,153,368 | ---- | M] (Safer Networking Ltd.) [Auto | Stopped] -- C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe -- (SBSDWSCService)
SRV - [2008/11/09 14:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Disabled | Stopped] -- C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService)
SRV - [2007/03/19 11:44:44 | 000,070,656 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\DellSupport\brkrsvc.exe -- (DSBrokerService)
SRV - [2006/10/23 06:50:35 | 000,046,640 | ---- | M] (AOL LLC) [Disabled | Stopped] -- C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe -- (AOL ACS)
========== Driver Services (SafeList) ========== DRV - [2011/07/22 20:20:05 | 000,311,248 | ---- | M] (BitDefender S.R.L.) [File_System | Auto | Stopped] -- C:\Windows\System32\drivers\trufos.sys -- (trufos)
DRV - [2011/07/22 10:27:02 | 000,012,880 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Stopped] -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV)
DRV - [2011/07/15 16:11:48 | 000,451,864 | ---- | M] (BitDefender) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\avckf.sys -- (avckf)
DRV - [2011/07/15 16:11:46 | 000,596,600 | ---- | M] (BitDefender) [File_System | Boot | Stopped] -- C:\Windows\system32\DRIVERS\avc3.sys -- (avc3)
DRV - [2011/07/15 16:11:46 | 000,240,184 | ---- | M] (BitDefender) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\avchv.sys -- (avchv)
DRV - [2011/07/12 15:55:22 | 000,067,664 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Stopped] -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL)
DRV - [2011/06/17 19:54:44 | 000,063,568 | ---- | M] (Windows ® Win 7 DDK provider) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\bdsandbox.sys -- (bdsandbox)
DRV - [2011/04/14 08:24:14 | 000,075,264 | ---- | M] () [File_System | Unknown | Running] -- C:\Windows\System32\drivers\dfsc.sys -- (DfsC)
DRV - [2011/03/24 15:36:18 | 000,353,096 | ---- | M] (BitDefender) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\bdfsfltr.sys -- (bdfsfltr)
DRV - [2011/03/01 17:45:36 | 000,074,320 | ---- | M] (BitDefender LLC) [Kernel | System | Running] -- c:\Program Files\Common Files\Defender Pro\Defender Pro Firewall\bdfndisf6.sys -- (BdfNdisf)
DRV - [2011/03/01 17:45:32 | 000,130,640 | ---- | M] (BitDefender LLC) [Kernel | System | Running] -- C:\Program Files\Common Files\Defender Pro\Defender Pro Firewall\bdftdif.sys -- (bdftdif)
DRV - [2010/01/19 19:32:40 | 000,085,128 | ---- | M] (BitDefender) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\bdvedisk.sys -- (BDVEDISK)
DRV - [2009/08/14 07:45:24 | 000,021,248 | -H-- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Program Files\Common Files\Motive\MREMP50.sys -- (MREMP50)
DRV - [2009/08/14 07:45:24 | 000,020,096 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Program Files\Common Files\Motive\MRESP50.sys -- (MRESP50)
DRV - [2009/07/14 17:54:00 | 009,557,216 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2008/01/18 23:55:27 | 000,066,560 | ---- | M] () [Kernel | System | Running] -- C:\Windows\System32\drivers\smb.sys -- (Smb) Message-oriented TCP/IP and TCP/IPv6 Protocol (SMB session)
DRV - [2007/03/15 07:57:30 | 001,059,112 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvmfdx32.sys -- (NVENETFD)
DRV - [2007/02/25 11:10:48 | 000,005,376 | --S- | M] (Gteko Ltd.) [Kernel | Auto | Stopped] -- C:\Windows\System32\drivers\dsunidrv.sys -- (dsunidrv)
DRV - [2006/11/02 01:36:43 | 002,028,032 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\atikmdag.sys -- (R300)
DRV - [2006/11/02 01:30:55 | 000,200,704 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\e1e6032.sys -- (e1express) Intel®
DRV - [2006/11/01 14:18:15 | 000,033,588 | ---- | M] (America Online, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\wanatw4.sys -- (wanatw) WAN Miniport (ATW)
DRV - [2006/10/18 12:08:18 | 000,258,048 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\HSXHWBS2.sys -- (HSXHWBS2)
DRV - [2006/10/05 16:07:28 | 000,004,736 | ---- | M] (Gteko Ltd.) [Kernel | On_Demand | Stopped] -- C:\Program Files\DellSupport\GTAction\triggers\DSproct.sys -- (DSproct)
DRV - [2006/08/04 18:39:10 | 000,008,192 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Stopped] -- C:\Windows\System32\drivers\XAudio.sys -- (XAudio)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.google.co...=us&ibd=3071018IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.google.com/ieIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
http://search.msn.com/spbasic.htmIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore =
http://www.google.com/IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL =
http://www.google.com/ieIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://www.google.com/ieIE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ========== FF - prefs.js..browser.startup.homepage: "
http://www.google.com/" FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Web Player\npdivx32.dll File not found
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: File not found
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Motive.com/NpMotive,version=1.0: C:\Program Files\Common Files\Motive\npMotive.dll (Motive, Inc.)
FF - HKLM\Software\MozillaPlugins\
[email protected]/YahooActiveXPluginBridge;version=1.0.0.1: C:\Program Files\Yahoo!\Common\npyaxmpb.dll File not found
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/01/14 12:49:33 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012/01/03 14:18:44 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\
[email protected]: C:\Program Files\Defender Pro\Defender Pro\bdtbext\ [2012/01/03 14:31:39 | 000,000,000 | ---D | M]
[2011/02/23 22:46:25 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Erendira Jimenez\AppData\Roaming\Mozilla\Extensions
[2011/12/12 21:07:10 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Erendira Jimenez\AppData\Roaming\Mozilla\Firefox\Profiles\db8lrqx1.default\extensions
[2011/02/25 09:00:34 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Erendira Jimenez\AppData\Roaming\Mozilla\Firefox\Profiles\db8lrqx1.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011/12/12 21:07:10 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Users\Erendira Jimenez\AppData\Roaming\Mozilla\Firefox\Profiles\db8lrqx1.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2011/03/21 13:12:22 | 000,000,000 | ---D | M] (Search Toolbar) -- C:\Users\Erendira Jimenez\AppData\Roaming\Mozilla\Firefox\Profiles\db8lrqx1.default\extensions\
[email protected][2011/03/21 13:12:22 | 000,001,919 | ---- | M] () -- C:\Users\Erendira Jimenez\AppData\Roaming\Mozilla\Firefox\Profiles\db8lrqx1.default\searchplugins\bing-zugo.xml
[2012/01/14 12:49:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
() (No name found) -- C:\USERS\ERENDIRA JIMENEZ\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\DB8LRQX1.DEFAULT\EXTENSIONS\
[email protected][2012/01/14 12:49:33 | 000,121,816 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2010/10/06 19:18:35 | 000,091,552 | ---- | M] (Coupons, Inc.) -- C:\Program Files\mozilla firefox\plugins\npCouponPrinter.dll
[2011/05/04 03:52:23 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2010/10/06 19:18:37 | 000,091,552 | ---- | M] (Coupons, Inc.) -- C:\Program Files\mozilla firefox\plugins\npMozCouponPrinter.dll
[2011/12/26 23:10:21 | 000,003,747 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\avg-secure-search.xml
[2012/01/14 12:49:30 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2012/01/14 12:49:30 | 000,002,040 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\twitter.xml
========== Chrome ========== O1 HOSTS File: ([2011/08/10 12:40:04 | 000,435,610 | R--- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1 www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1 www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1 www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1 www.0scan.com
O1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1 www.1000gratisproben.com
O1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1 www.1001namen.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1 www.100888290cs.com
O1 - Hosts: 127.0.0.1 www.100sexlinks.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1 www.10sek.com
O1 - Hosts: 127.0.0.1 www.1-2005-search.com
O1 - Hosts: 127.0.0.1 1-2005-search.com
O1 - Hosts: 127.0.0.1 123fporn.info
O1 - Hosts: 15019 more lines...
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (no name) - {5AA2BA46-9913-4dc7-9620-69AB0FA17AE7} - No CLSID value found.
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O2 - BHO: (CBrowserHelperObject Object) - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll (Dell Inc.)
O2 - BHO: (Yontoo Layers) - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files\Yontoo Layers Client\YontooIEClient.dll (Yontoo LLC)
O3 - HKLM\..\Toolbar: (&Google) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (no name) - {5AA2BA46-9913-4dc7-9620-69AB0FA17AE7} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Adobe Photo Downloader] C:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [BDAgent] C:\Program Files\Defender Pro\Defender Pro\bdagent.exe (Defender Pro)
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKCU..\Run: [Messenger (Yahoo!)] C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe (Yahoo! Inc.)
O4 - HKCU..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware.com)
O4 - HKCU..\RunOnce: [FlashPlayerUpdate] C:\Windows\System32\Macromed\Flash\FlashUtil11c_Plugin.exe (Adobe Systems, Inc.)
O4 - Startup: C:\Users\Erendira Jimenez\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: LogonHoursAction = 2
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DontDisplayLogonHoursWarnings = 1
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8}
http://download.micr.../OGAControl.cab (Office Genuine Advantage Validation Tool)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000}
http://download.macr...director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700}
http://download.micr...heckControl.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {1E3F1348-4370-4BBE-A67A-CC7ED824CA85}
http://download.micr...helpcontrol.cab (Microsoft Genuine Advantage Self Support Tool)
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537}
http://gfx1.hotmail....NPUplden-us.cab (MSN Photo Upload Tool)
O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3}
http://cdnimg.piczo....st_uploader.cab (Image Uploader Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147}
http://gfx2.hotmail....NPUplden-us.cab (Windows Live Hotmail Photo Upload Tool)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2417E80F-3348-4F93-8BFF-9691FF0E00A4}: DhcpNameServer = 192.168.1.254
O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - (C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL) - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
O24 - Desktop BackupWallPaper: C:\Users\Erendira Jimenez\AppData\Roaming\Microsoft\Internet Explorer\Internet Explorer Wallpaper.bmp
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 15:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2011/08/11 12:22:22 | 000,000,036 | R--- | M] () - E:\Autorun.inf -- [ CDFS ]
O33 - MountPoints2\{035ae00c-7d6a-11dc-8cfa-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{035ae00c-7d6a-11dc-8cfa-806e6f6e6963}\Shell\AutoRun\command - "" = E:\DefenderPro15in1.exe -- [2011/08/03 08:57:44 | 000,803,840 | R--- | M] ()
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found
CREATERESTOREPOINT
Error creating restore point.
========== Files/Folders - Created Within 30 Days ========== [2012/01/20 18:25:37 | 000,000,000 | ---D | C] -- C:\Users\Erendira Jimenez\Documents\F
[2012/01/19 21:13:04 | 000,000,000 | ---D | C] -- C:\Users\Erendira Jimenez\Documents\images
[2012/01/18 18:15:33 | 000,000,000 | ---D | C] -- C:\Users\Erendira Jimenez\AppData\Local\CrashDumps
[2012/01/18 17:52:16 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Users\Erendira Jimenez\Documents\OTL.scr
[2012/01/16 17:34:32 | 000,000,000 | ---D | C] -- C:\Users\Erendira Jimenez\Documents\bootloader
[2012/01/15 19:21:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Windows Genuine Advantage
[2012/01/13 19:01:14 | 000,000,000 | ---D | C] -- C:\Users\Erendira Jimenez\Documents\Shimeji Halloween
[2012/01/13 16:53:35 | 000,000,000 | ---D | C] -- C:\Program Files\Magical Jelly Bean
[2012/01/13 16:53:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeyFinder
[2012/01/13 16:52:41 | 001,174,617 | ---- | C] (Magical Jelly Bean ) -- C:\Users\Erendira Jimenez\Documents\KeyFinderInstaller.exe
[2012/01/04 18:31:39 | 000,000,000 | ---D | C] -- C:\Users\Erendira Jimenez\AppData\Local\Proxure
[2012/01/04 18:30:36 | 000,000,000 | ---D | C] -- C:\ProgramData\ClubSanDisk
[2012/01/03 14:59:39 | 000,038,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\WdfLdr.sys
[2012/01/03 14:52:43 | 000,933,888 | ---- | C] (BitDefender S.R.L.) -- C:\bdsubwiz.exe
[2012/01/03 14:52:43 | 000,933,888 | ---- | C] (BitDefender S.R.L.) -- C:\bdGUICtl.dll
[2012/01/03 14:52:43 | 000,593,920 | ---- | C] (BitDefender S.R.L.
http://www.bitdefender.com) -- C:\WSLib.dll
[2012/01/03 14:52:43 | 000,415,024 | ---- | C] (BitDefender SRL) -- C:\livesrv.exe
[2012/01/03 14:52:43 | 000,139,264 | ---- | C] (BitDefender SRL) -- C:\upgrepl.exe
[2012/01/03 14:52:43 | 000,094,208 | ---- | C] (BitDefender S.R.L.
http://www.bitdefender.com) -- C:\WSPack.dll
[2012/01/03 14:52:43 | 000,086,016 | ---- | C] (BitDefender S.R.L.) -- C:\txmlx.dll
[2012/01/03 14:52:43 | 000,086,016 | ---- | C] (BitDefender S.R.L.
http://www.bitdefender.com) -- C:\WSUtils.dll
[2012/01/03 14:52:43 | 000,077,824 | ---- | C] (BitDefender S.R.L.) -- C:\BDUtils.dll
[2012/01/03 14:52:43 | 000,040,960 | ---- | C] (BitDefender LLC) -- C:\npcomm.dll
[2012/01/03 14:52:43 | 000,024,576 | ---- | C] (BitDefender S.R.L.) -- C:\bdch.dll
[2012/01/03 14:52:42 | 000,192,512 | ---- | C] (BitDefender S.R.L.) -- C:\bdsubmit.dll
[2012/01/03 14:52:42 | 000,102,400 | ---- | C] (BitDefender) -- C:\bdcore.dll
[2012/01/03 14:52:42 | 000,092,160 | ---- | C] (SOFTWIN SRL) -- C:\bdc.exe
[2012/01/03 14:52:27 | 000,000,000 | ---D | C] -- C:\Plugins
[2012/01/03 14:52:27 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\BitDefender
[2012/01/03 14:31:21 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2012/01/02 15:13:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Office Genuine Advantage
[2012/01/01 19:43:05 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\sun
[2012/01/01 19:30:47 | 000,000,000 | ---D | C] -- C:\Users\Erendira Jimenez\Desktop\OpenOffice.org 3.3 (en-US) Installation Files
[2011/12/30 13:56:21 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\EA Games
[2011/12/30 13:38:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES
[2011/12/30 13:21:57 | 000,000,000 | ---D | C] -- C:\Program Files\EA GAMES
[2011/12/27 14:17:13 | 000,000,000 | ---D | C] -- C:\Users\Erendira Jimenez\AppData\Roaming\BitDefender
[2011/12/27 14:14:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Bitdefender
[2011/12/27 14:12:31 | 000,000,000 | ---D | C] -- C:\Users\Erendira Jimenez\{67261125-7228-4c07-84ae-eaff1bc24e84}
[2011/12/27 14:11:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defender Pro
[2011/12/27 14:11:18 | 000,000,000 | ---D | C] -- C:\Users\Erendira Jimenez\AppData\Roaming\Defender Pro
[2011/12/27 14:10:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Defender Pro
[2011/12/27 14:09:34 | 000,000,000 | ---D | C] -- C:\Users\Erendira Jimenez\AppData\Roaming\QuickScan
[2011/12/27 14:08:14 | 000,311,248 | ---- | C] (BitDefender S.R.L.) -- C:\Windows\System32\drivers\trufos.sys
[2011/12/27 14:08:10 | 000,000,000 | ---D | C] -- C:\Program Files\Defender Pro
[2011/12/27 14:08:09 | 000,353,096 | ---- | C] (BitDefender) -- C:\Windows\System32\drivers\bdfsfltr.sys
[2011/12/27 14:07:32 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Defender Pro
[2011/12/26 22:37:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
[2011/12/26 22:37:35 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2011/12/26 22:28:06 | 000,000,000 | -H-D | C] -- C:\ProgramData\Common Files
[2011/12/26 22:27:07 | 000,000,000 | ---D | C] -- C:\ProgramData\MFAData
[2011/12/23 14:18:02 | 000,000,000 | ---D | C] -- C:\Users\Erendira Jimenez\Documents\Symantec
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2012/01/20 15:57:38 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/01/19 21:38:49 | 005,184,104 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2012/01/19 21:38:49 | 001,693,866 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2012/01/18 18:17:56 | 219,991,544 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2012/01/18 17:53:00 | 000,302,592 | ---- | M] () -- C:\vhx17wux.exe
[2012/01/18 17:52:17 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\Erendira Jimenez\Documents\OTL.scr
[2012/01/16 22:19:35 | 000,004,164 | ---- | M] () -- C:\Users\Erendira Jimenez\AppData\Roaming\wklnhst.dat
[2012/01/16 17:52:01 | 000,000,414 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{9CE2503E-15EB-4F2D-AE89-2D349FCBCB7A}.job
[2012/01/16 17:51:59 | 000,003,568 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2012/01/16 17:51:59 | 000,003,568 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2012/01/16 17:35:53 | 000,000,680 | ---- | M] () -- C:\Users\Erendira Jimenez\AppData\Local\d3d9caps.dat
[2012/01/16 17:34:13 | 000,132,466 | ---- | M] () -- C:\Users\Erendira Jimenez\Documents\bootloader.zip
[2012/01/16 16:23:08 | 000,005,300 | ---- | M] () -- C:\history.xml
[2012/01/16 16:22:28 | 000,001,456 | ---- | M] () -- C:\v_live_s.xml
[2012/01/15 19:30:35 | 001,439,447 | ---- | M] () -- C:\Users\Erendira Jimenez\Documents\Windows6.1-KB971033-x86.MSU
[2012/01/15 18:35:49 | 000,003,120 | ---- | M] () -- C:\Windows\System32\FEHXUQ9Q.ocx
[2012/01/13 19:00:55 | 006,308,636 | ---- | M] () -- C:\Users\Erendira Jimenez\Documents\Shimeji Halloween.rar
[2012/01/13 16:52:57 | 001,174,617 | ---- | M] (Magical Jelly Bean ) -- C:\Users\Erendira Jimenez\Documents\KeyFinderInstaller.exe
[2012/01/04 18:32:25 | 000,000,288 | ---- | M] () -- C:\Users\Erendira Jimenez\AppData\Roaming\.backup.dm
[2012/01/03 20:08:37 | 000,011,196 | -HS- | M] () -- C:\ProgramData\r05y6ic803q5dt00144apah48uul122qh4v8
[2012/01/03 15:01:08 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_avchv_01009.Wdf
[2012/01/03 15:01:07 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
[2012/01/03 15:00:32 | 000,003,120 | ---- | M] () -- C:\Windows\FDK47J7J.ocx
[2012/01/03 14:58:47 | 000,000,385 | ---- | M] () -- C:\Windows\System32\user_gensett.xml
[2012/01/03 14:53:59 | 000,000,584 | ---- | M] () -- C:\bdc.ini
[2012/01/03 14:35:18 | 000,150,317 | ---- | M] () -- C:\ProgramData\1325622406.bdinstall.bin
[2012/01/03 14:34:15 | 000,000,268 | -H-- | M] () -- C:\bdr-conf
[2012/01/03 14:31:55 | 000,001,984 | ---- | M] () -- C:\Users\Public\Desktop\Defender Pro 15-in-1.lnk
[2011/12/31 23:22:18 | 000,023,706 | ---- | M] () -- C:\Users\Erendira Jimenez\Documents\100 books to read before you die.odt
[2011/12/29 12:42:16 | 000,010,272 | ---- | M] () -- C:\Users\Erendira Jimenez\Documents\Anu.odt
[2011/12/27 14:15:44 | 000,152,909 | ---- | M] () -- C:\ProgramData\1325016466.bdinstall.bin
[2011/12/26 22:37:39 | 000,001,802 | ---- | M] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2011/12/26 21:56:00 | 000,000,448 | ---- | M] () -- C:\ProgramData\gxdqgnX3qzcjYy
[2011/12/26 21:53:03 | 000,000,312 | ---- | M] () -- C:\ProgramData\~gxdqgnX3qzcjYy
[2011/12/26 21:53:02 | 000,000,224 | ---- | M] () -- C:\ProgramData\~gxdqgnX3qzcjYyr
[2011/12/24 03:40:48 | 000,004,918 | ---- | M] () -- C:\Users\Erendira Jimenez\Documents\index.html
[2011/12/23 13:41:18 | 000,001,940 | ---- | M] () -- C:\Users\Erendira Jimenez\AppData\Local\{96C87F53-AC72-4604-A9CC-186A49F17F3C}.ini
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files Created - No Company Name ========== [2012/01/19 21:13:04 | 000,004,918 | ---- | C] () -- C:\Users\Erendira Jimenez\Documents\index.html
[2012/01/18 18:17:28 | 219,991,544 | ---- | C] () -- C:\Windows\MEMORY.DMP
[2012/01/18 17:53:00 | 000,302,592 | ---- | C] () -- C:\vhx17wux.exe
[2012/01/16 17:34:11 | 000,132,466 | ---- | C] () -- C:\Users\Erendira Jimenez\Documents\bootloader.zip
[2012/01/15 19:30:20 | 001,439,447 | ---- | C] () -- C:\Users\Erendira Jimenez\Documents\Windows6.1-KB971033-x86.MSU
[2012/01/15 18:35:49 | 000,003,120 | ---- | C] () -- C:\Windows\System32\FEHXUQ9Q.ocx
[2012/01/13 18:59:29 | 006,308,636 | ---- | C] () -- C:\Users\Erendira Jimenez\Documents\Shimeji Halloween.rar
[2012/01/12 21:24:16 | 000,000,414 | -H-- | C] () -- C:\Windows\tasks\User_Feed_Synchronization-{9CE2503E-15EB-4F2D-AE89-2D349FCBCB7A}.job
[2012/01/04 18:32:25 | 000,000,288 | ---- | C] () -- C:\Users\Erendira Jimenez\AppData\Roaming\.backup.dm
[2012/01/04 08:45:32 | 000,000,680 | ---- | C] () -- C:\Users\Erendira Jimenez\AppData\Local\d3d9caps.dat
[2012/01/03 15:04:46 | 000,005,300 | ---- | C] () -- C:\history.xml
[2012/01/03 15:01:08 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_avchv_01009.Wdf
[2012/01/03 15:01:07 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
[2012/01/03 15:00:32 | 000,003,120 | ---- | C] () -- C:\Windows\FDK47J7J.ocx
[2012/01/03 14:59:50 | 000,000,003 | ---- | C] () -- C:\Windows\System32\drivers\MsftWdf_Kernel_01009_Inbox_Critical.Wdf
[2012/01/03 14:58:47 | 000,000,385 | ---- | C] () -- C:\Windows\System32\user_gensett.xml
[2012/01/03 14:52:43 | 000,192,512 | ---- | C] () -- C:\txmlutil.dll
[2012/01/03 14:52:43 | 000,081,920 | ---- | C] () -- C:\bdss.exe
[2012/01/03 14:52:43 | 000,001,456 | ---- | C] () -- C:\v_live_s.xml
[2012/01/03 14:52:43 | 000,001,009 | ---- | C] () -- C:\bdch.ini
[2012/01/03 14:52:43 | 000,000,584 | ---- | C] () -- C:\versions.dat.4FB1D4991544C820812670B4D2A6ED09
[2012/01/03 14:52:43 | 000,000,495 | ---- | C] () -- C:\versions.id.4FB1D4991544C820812670B4D2A6ED09
[2012/01/03 14:52:42 | 000,142,848 | ---- | C] () -- C:\libfn.dll
[2012/01/03 14:52:42 | 000,135,680 | ---- | C] () -- C:\OnlineGames.exe
[2012/01/03 14:52:42 | 000,077,824 | ---- | C] () -- C:\bdupd.dll
[2012/01/03 14:52:42 | 000,053,248 | ---- | C] () -- C:\avxdisk.dll
[2012/01/03 14:52:42 | 000,027,136 | ---- | C] () -- C:\avxt.dll
[2012/01/03 14:52:42 | 000,010,240 | ---- | C] () -- C:\avxs.dll
[2012/01/03 14:52:42 | 000,001,507 | ---- | C] () -- C:\bdsubmit.ini
[2012/01/03 14:52:42 | 000,000,636 | ---- | C] () -- C:\bdc.ini.bak
[2012/01/03 14:52:42 | 000,000,584 | ---- | C] () -- C:\bdc.ini
[2012/01/03 14:52:42 | 000,000,298 | ---- | C] () -- C:\plugins.htm
[2012/01/03 14:35:18 | 000,150,317 | ---- | C] () -- C:\ProgramData\1325622406.bdinstall.bin
[2012/01/03 14:34:14 | 002,294,848 | -H-- | C] () -- C:\bdrescue.vm
[2011/12/29 12:42:13 | 000,010,272 | ---- | C] () -- C:\Users\Erendira Jimenez\Documents\Anu.odt
[2011/12/27 14:15:44 | 000,152,909 | ---- | C] () -- C:\ProgramData\1325016466.bdinstall.bin
[2011/12/27 14:14:59 | 027,319,487 | -H-- | C] () -- C:\bdrescue.gz
[2011/12/27 14:14:59 | 000,217,769 | -H-- | C] () -- C:\bdrescue
[2011/12/27 14:14:59 | 000,009,216 | -H-- | C] () -- C:\bdrescue.mbr
[2011/12/27 14:14:59 | 000,000,268 | -H-- | C] () -- C:\bdr-conf
[2011/12/27 14:11:22 | 000,001,984 | ---- | C] () -- C:\Users\Public\Desktop\Defender Pro 15-in-1.lnk
[2011/12/26 22:37:38 | 000,001,802 | ---- | C] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2011/12/26 21:53:02 | 000,000,312 | ---- | C] () -- C:\ProgramData\~gxdqgnX3qzcjYy
[2011/12/26 21:53:02 | 000,000,224 | ---- | C] () -- C:\ProgramData\~gxdqgnX3qzcjYyr
[2011/12/26 21:52:53 | 000,000,448 | ---- | C] () -- C:\ProgramData\gxdqgnX3qzcjYy
[2011/12/26 21:37:19 | 000,011,196 | -HS- | C] () -- C:\ProgramData\r05y6ic803q5dt00144apah48uul122qh4v8
[2011/08/13 08:28:29 | 000,106,605 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2011/08/13 08:28:29 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2011/08/12 16:42:10 | 000,075,264 | ---- | C] () -- C:\Windows\System32\drivers\dfsc.sys
[2011/06/17 19:54:16 | 000,021,824 | ---- | C] () -- C:\Windows\System32\bdsandboxuh.dll
[2011/05/18 15:52:39 | 000,001,940 | ---- | C] () -- C:\Users\Erendira Jimenez\AppData\Local\{96C87F53-AC72-4604-A9CC-186A49F17F3C}.ini
[2011/04/18 20:59:18 | 000,066,560 | ---- | C] () -- C:\Windows\System32\drivers\smb.sys
[2010/09/23 05:23:49 | 000,000,552 | ---- | C] () -- C:\Users\Erendira Jimenez\AppData\Local\d3d8caps.dat
[2010/06/10 08:24:55 | 000,000,184 | ---- | C] () -- C:\Windows\System32\MRT.INI
[2009/08/03 15:07:42 | 000,403,816 | ---- | C] () -- C:\Windows\System32\OGACheckControl.DLL
[2007/11/17 19:22:20 | 000,031,007 | ---- | C] () -- C:\Users\Erendira Jimenez\AppData\Roaming\UserTile.png
[2007/11/10 23:02:57 | 000,004,164 | ---- | C] () -- C:\Users\Erendira Jimenez\AppData\Roaming\wklnhst.dat
[2007/11/10 10:04:34 | 000,029,696 | ---- | C] () -- C:\Users\Erendira Jimenez\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2007/03/19 04:04:58 | 000,003,584 | ---- | C] () -- C:\Windows\System32\namResES.dll
[2007/03/19 04:04:58 | 000,003,072 | ---- | C] () -- C:\Windows\System32\namResIT.dll
[2007/03/19 04:04:58 | 000,003,072 | ---- | C] () -- C:\Windows\System32\namResFR.dll
[2007/03/19 04:04:58 | 000,003,072 | ---- | C] () -- C:\Windows\System32\namResENG.dll
[2007/03/19 04:04:58 | 000,003,072 | ---- | C] () -- C:\Windows\System32\namResDE.dll
[2007/03/19 04:04:56 | 000,003,584 | ---- | C] () -- C:\Windows\System32\namResPTB.dll
[2007/03/19 04:04:56 | 000,003,072 | ---- | C] () -- C:\Windows\System32\namResZHC.dll
[2007/03/19 04:04:56 | 000,003,072 | ---- | C] () -- C:\Windows\System32\namResKO.dll
[2007/03/19 04:04:56 | 000,003,072 | ---- | C] () -- C:\Windows\System32\namResJA.dll
[2007/03/19 04:04:54 | 000,022,016 | ---- | C] () -- C:\Windows\System32\nam_page.dll
[2007/03/19 04:04:54 | 000,003,072 | ---- | C] () -- C:\Windows\System32\namResZHT.dll
[2006/11/10 07:26:12 | 000,000,000 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat
[2006/11/02 06:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006/11/02 06:47:37 | 000,300,592 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006/11/02 06:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006/11/02 04:33:01 | 005,184,104 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006/11/02 04:33:01 | 001,693,866 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006/11/02 04:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006/11/02 04:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006/11/02 04:25:44 | 000,159,744 | ---- | C] () -- C:\Windows\System32\atitmmxx.dll
[2006/11/02 04:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006/11/02 02:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006/11/02 02:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006/11/02 01:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006/11/02 01:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
========== Custom Scans ========== < %SYSTEMDRIVE%\*.exe >[2006/10/28 23:06:34 | 000,092,160 | ---- | M] (SOFTWIN SRL) -- C:\bdc.exe
[2007/01/19 16:12:56 | 000,081,920 | ---- | M] () -- C:\bdss.exe
[2009/03/17 17:46:22 | 000,933,888 | ---- | M] (BitDefender S.R.L.) -- C:\bdsubwiz.exe
[2009/03/24 13:11:44 | 000,415,024 | ---- | M] (BitDefender SRL) -- C:\livesrv.exe
[2009/01/26 19:08:44 | 000,135,680 | ---- | M] () -- C:\OnlineGames.exe
[2009/03/16 13:27:04 | 000,139,264 | ---- | M] (BitDefender SRL) -- C:\upgrepl.exe
[2012/01/18 17:53:00 | 000,302,592 | ---- | M] () -- C:\vhx17wux.exe
< MD5 for: EXPLORER.EXE >[2008/10/29 00:20:29 | 002,923,520 | ---- | M] (Microsoft Corporation) MD5=37440D09DEAE0B672A04DCCF7ABF06BE -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.16771_none_4f83bb287ccdb7e3\explorer.exe
[2008/10/29 00:29:41 | 002,927,104 | ---- | M] (Microsoft Corporation) MD5=4F554999D7D5F05DAAEBBA7B5BA1089D -- C:\Windows\explorer.exe
[2008/10/29 00:29:41 | 002,927,104 | ---- | M] (Microsoft Corporation) MD5=4F554999D7D5F05DAAEBBA7B5BA1089D -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.18164_none_5177ca9879e978e8\explorer.exe
[2008/10/29 21:59:17 | 002,927,616 | ---- | M] (Microsoft Corporation) MD5=50BA5850147410CDE89C523AD3BC606E -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.22298_none_51e4f8c7931bd1e1\explorer.exe
[2007/11/17 03:07:16 | 002,923,520 | ---- | M] (Microsoft Corporation) MD5=6D06CD98D954FE87FB2DB8108793B399 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.16549_none_4fac29707cae347a\explorer.exe
[2007/11/17 03:07:16 | 002,923,520 | ---- | M] (Microsoft Corporation) MD5=BD06F0BF753BC704B653C3A50F89D362 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.20668_none_501f261995dcf2cf\explorer.exe
[2009/04/11 00:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) MD5=D07D4C3038F3578FFCE1C0237F2A1253 -- C:\Windows\SoftwareDistribution\Download\bcfed137e95e2bc1b83ef80262a82b16\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6002.18005_none_53a0201e76de3a0b\explorer.exe
[2008/10/27 20:15:02 | 002,923,520 | ---- | M] (Microsoft Corporation) MD5=E7156B0B74762D9DE0E66BDCDE06E5FB -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.20947_none_5033cb5995cd990b\explorer.exe
[2006/11/02 03:45:07 | 002,923,520 | ---- | M] (Microsoft Corporation) MD5=FD8C53FB002217F6F888BCF6F5D7084D -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.16386_none_4f7de5167cd15deb\explorer.exe
[2008/01/19 01:33:10 | 002,927,104 | ---- | M] (Microsoft Corporation) MD5=FFA764631CB70A30065C12EF8E174F9F -- C:\Windows\SoftwareDistribution\Download\b2ee164db645e6bc8d77bb51f082e3b3\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.18000_none_51b4a71279bc6ebf\explorer.exe
[2008/01/19 01:33:10 | 002,927,104 | ---- | M] (Microsoft Corporation) MD5=FFA764631CB70A30065C12EF8E174F9F -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.18000_none_51b4a71279bc6ebf\explorer.exe
< MD5 for: SVCHOST.EXE >[2006/11/02 03:45:47 | 000,022,016 | ---- | M] (Microsoft Corporation) MD5=10DA15933D582D2FEDCF705EFE394B09 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.0.6000.16386_none_b38497a50862ad11\svchost.exe
[2008/01/19 01:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=3794B461C45882E06856F282EEF025AF -- C:\Windows\SoftwareDistribution\Download\b2ee164db645e6bc8d77bb51f082e3b3\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.0.6001.18000_none_b5bb59a1054dbde5\svchost.exe
[2008/01/19 01:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=3794B461C45882E06856F282EEF025AF -- C:\Windows\System32\svchost.exe
[2008/01/19 01:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=3794B461C45882E06856F282EEF025AF -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.0.6001.18000_none_b5bb59a1054dbde5\svchost.exe
< MD5 for: USERINIT.EXE >[2008/01/19 01:33:33 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E135526E9785D085BCD9AEDE6FBCBF9 -- C:\Windows\SoftwareDistribution\Download\b2ee164db645e6bc8d77bb51f082e3b3\x86_microsoft-windows-userinit_31bf3856ad364e35_6.0.6001.18000_none_dc28ba15d1aff80b\userinit.exe
[2008/01/19 01:33:33 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E135526E9785D085BCD9AEDE6FBCBF9 -- C:\Windows\System32\userinit.exe
[2008/01/19 01:33:33 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E135526E9785D085BCD9AEDE6FBCBF9 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.0.6001.18000_none_dc28ba15d1aff80b\userinit.exe
[2006/11/02 03:45:50 | 000,024,576 | ---- | M] (Microsoft Corporation) MD5=22027835939F86C3E47AD8E3FBDE3D11 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.0.6000.16386_none_d9f1f819d4c4e737\userinit.exe
< MD5 for: WINLOGON.EXE >[2009/04/11 00:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\SoftwareDistribution\Download\bcfed137e95e2bc1b83ef80262a82b16\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6002.18005_none_71ae7a22d2134741\winlogon.exe
[2006/11/02 03:45:57 | 000,308,224 | ---- | M] (Microsoft Corporation) MD5=9F75392B9128A91ABAFB044EA350BAAD -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6000.16386_none_6d8c3f1ad8066b21\winlogon.exe
[2008/01/19 01:33:37 | 000,314,880 | ---- | M] (Microsoft Corporation) MD5=C2610B6BDBEFC053BBDAB4F1B965CB24 -- C:\Windows\SoftwareDistribution\Download\b2ee164db645e6bc8d77bb51f082e3b3\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6001.18000_none_6fc30116d4f17bf5\winlogon.exe
[2008/01/19 01:33:37 | 000,314,880 | ---- | M] (Microsoft Corporation) MD5=C2610B6BDBEFC053BBDAB4F1B965CB24 -- C:\Windows\System32\winlogon.exe
[2008/01/19 01:33:37 | 000,314,880 | ---- | M] (Microsoft Corporation) MD5=C2610B6BDBEFC053BBDAB4F1B965CB24 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6001.18000_none_6fc30116d4f17bf5\winlogon.exe
< %systemroot%\*. /mp /s > < hklm\software\clients\startmenuinternet|command /rs >HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\HideIconsCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /HideShortcuts [2012/01/14 12:49:30 | 000,715,216 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ShowIconsCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /ShowShortcuts [2012/01/14 12:49:30 | 000,715,216 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ReinstallCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal [2012/01/14 12:49:30 | 000,715,216 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\open\command\\: C:\Program Files\Mozilla Firefox\firefox.exe [2012/01/14 12:49:32 | 000,924,632 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\properties\command\\: "C:\Program Files\Mozilla Firefox\firefox.exe" -preferences [2012/01/14 12:49:32 | 000,924,632 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\safemode\command\\: "C:\Program Files\Mozilla Firefox\firefox.exe" -safe-mode [2012/01/14 12:49:32 | 000,924,632 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\HideIconsCommand: "C:\Windows\system32\ie4uinit.exe" -hide [2011/05/27 22:32:51 | 000,173,568 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ShowIconsCommand: "C:\Windows\system32\ie4uinit.exe" -show [2011/05/27 22:32:51 | 000,173,568 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ReinstallCommand: "C:\Windows\system32\ie4uinit.exe" -reinstall [2011/05/27 22:32:51 | 000,173,568 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\naom\command\\: "C:\Program Files\Internet Explorer\iexplore.exe" -extoff [2011/05/28 00:09:21 | 000,638,232 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\open\command\\: "C:\Users\Jazmin\AppData\Local\imx.exe" -a "C:\Program Files\Internet Explorer\iexplore.exe"
< hklm\software\clients\startmenuinternet|command /64 /rs >HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\HideIconsCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /HideShortcuts [2012/01/14 12:49:30 | 000,715,216 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ShowIconsCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /ShowShortcuts [2012/01/14 12:49:30 | 000,715,216 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ReinstallCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal [2012/01/14 12:49:30 | 000,715,216 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\open\command\\: C:\Program Files\Mozilla Firefox\firefox.exe [2012/01/14 12:49:32 | 000,924,632 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\properties\command\\: "C:\Program Files\Mozilla Firefox\firefox.exe" -preferences [2012/01/14 12:49:32 | 000,924,632 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\safemode\command\\: "C:\Program Files\Mozilla Firefox\firefox.exe" -safe-mode [2012/01/14 12:49:32 | 000,924,632 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\HideIconsCommand: "C:\Windows\system32\ie4uinit.exe" -hide [2011/05/27 22:32:51 | 000,173,568 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ShowIconsCommand: "C:\Windows\system32\ie4uinit.exe" -show [2011/05/27 22:32:51 | 000,173,568 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ReinstallCommand: "C:\Windows\system32\ie4uinit.exe" -reinstall [2011/05/27 22:32:51 | 000,173,568 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\naom\command\\: "C:\Program Files\Internet Explorer\iexplore.exe" -extoff [2011/05/28 00:09:21 | 000,638,232 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\open\command\\: "C:\Users\Jazmin\AppData\Local\imx.exe" -a "C:\Program Files\Internet Explorer\iexplore.exe"
========== Hard Links - Junction Points - Mount Points - Symbolic Links ==========[C:\Windows\$NtUninstallKB26185$] -> Error: Cannot create file handle -> Unknown point type
========== Alternate Data Streams ========== @Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:A31FAD21
< End of report >