(I've just recovered Internet access in all browsers... I am about to cry. I will run xb391 now)
OTL.txt
OTL logfile created on: 14/04/2010 08:36:54 a.m. - Run 1
OTL by OldTimer - Version 3.2.1.1 Folder = C:\Documents and Settings\Administrador\Escritorio
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00002C0A | Country: Argentina | Language: ESS | Date Format: dd/MM/yyyy
1.012,00 Mb Total Physical Memory | 156,00 Mb Available Physical Memory | 15,00% Memory free
2,00 Gb Paging File | 1,00 Gb Available in Paging File | 40,00% Paging File free
Paging file location(s): C:\pagefile.sys 1512 3024 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Archivos de programa
Drive C: | 143,19 Gb Total Space | 130,42 Gb Free Space | 91,08% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: Equipo01
Current User Name: Administrador
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ========== PRC - C:\Documents and Settings\Administrador\Escritorio\OTL.exe (OldTimer Tools)
PRC - C:\WINDOWS\Temp\jkos-Administrador\binaries\ScanningProcess.exe (Kaspersky Lab.)
PRC - C:\Documents and Settings\Administrador\Configuración local\Datos de programa\Google\Chrome\Application\chrome.exe (Google Inc.)
PRC - C:\Archivos de programa\Alwil Software\Avast5\AvastUI.exe (ALWIL Software)
PRC - C:\Archivos de programa\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)
PRC - C:\Archivos de programa\Java\jre6\bin\java.exe (Sun Microsystems, Inc.)
PRC - C:\WINDOWS\Temp\RtkBtMnt.exe (Realtek Semiconductor Corp.)
PRC - C:\WINDOWS\system32\TUProgSt.exe (TuneUp Software)
PRC - C:\Archivos de programa\Opera\opera.exe (Opera Software)
PRC - C:\Archivos de programa\Archivos comunes\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (Apple Inc.)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Archivos de programa\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe (Sony Corporation)
PRC - C:\Archivos de programa\TaskSwitchXP\TaskSwitchXP.exe (Alexander Avdonin)
PRC - C:\WINDOWS\system32\DLA\DLACTRLW.EXE (Sonic Solutions)
PRC - C:\Archivos de programa\Google\Gmail Notifier\gnotify.exe (Google Inc.)
========== Modules (SafeList) ========== MOD - C:\Documents and Settings\Administrador\Escritorio\OTL.exe (OldTimer Tools)
========== Win32 Services (SafeList) ========== SRV - (avast! Web Scanner) -- C:\Archivos de programa\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)
SRV - (avast! Mail Scanner) -- C:\Archivos de programa\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)
SRV - (avast! Antivirus) -- C:\Archivos de programa\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)
SRV - (TuneUp.ProgramStatisticsSvc) -- C:\WINDOWS\system32\TUProgSt.exe (TuneUp Software)
SRV - (TuneUp.Defrag) -- C:\WINDOWS\system32\TuneUpDefragService.exe (TuneUp Software)
SRV - (Apple Mobile Device) -- C:\Archivos de programa\Archivos comunes\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (UxTuneUp) -- C:\WINDOWS\system32\uxtuneup.dll (TuneUp Software)
SRV - (ose) -- C:\Archivos de programa\Archivos comunes\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)
========== Driver Services (SafeList) ========== DRV - (aswTdi) -- C:\WINDOWS\system32\drivers\aswTdi.sys (ALWIL Software)
DRV - (aswSP) -- C:\WINDOWS\system32\drivers\aswSP.sys (ALWIL Software)
DRV - (aswRdr) -- C:\WINDOWS\system32\drivers\aswRdr.sys (ALWIL Software)
DRV - (aswMon2) -- C:\WINDOWS\system32\drivers\aswmon2.sys (ALWIL Software)
DRV - (aswFsBlk) -- C:\WINDOWS\system32\drivers\aswFsBlk.sys (ALWIL Software)
DRV - (Aavmker4) -- C:\WINDOWS\system32\drivers\aavmker4.sys (ALWIL Software)
DRV - (sptd) -- C:\WINDOWS\System32\Drivers\sptd.sys ()
DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- C:\WINDOWS\system32\drivers\RtkHDAud.sys (Realtek Semiconductor Corp.)
DRV - (ZTEusbser6k) -- C:\WINDOWS\system32\drivers\ZTEusbser6k.sys (ZTE Incorporated)
DRV - (ZTEusbnmea) -- C:\WINDOWS\system32\drivers\ZTEusbnmea.sys (ZTE Incorporated)
DRV - (ZTEusbmdm6k) -- C:\WINDOWS\system32\drivers\ZTEusbmdm6k.sys (ZTE Incorporated)
DRV - (RTLE8023xp) -- C:\WINDOWS\system32\drivers\Rtenicxp.sys (Realtek Semiconductor Corporation )
DRV - (AR5416) -- C:\WINDOWS\system32\drivers\athw.sys (Atheros Communications, Inc.)
DRV - (M3000Srv) -- C:\WINDOWS\system32\drivers\M3000KNT.sys ()
DRV - (SynTP) -- C:\WINDOWS\system32\drivers\SynTP.sys (Synaptics, Inc.)
DRV - (HDAudBus) -- C:\WINDOWS\system32\drivers\hdaudbus.sys (Windows (R) Server 2003 DDK provider)
DRV - (ialm) -- C:\WINDOWS\system32\drivers\igxpmp32.sys (Intel Corporation)
DRV - (DLAUDFAM) -- C:\WINDOWS\system32\DLA\DLAUDFAM.SYS (Sonic Solutions)
DRV - (DLAUDF_M) -- C:\WINDOWS\system32\DLA\DLAUDF_M.SYS (Sonic Solutions)
DRV - (DLAIFS_M) -- C:\WINDOWS\system32\DLA\DLAIFS_M.SYS (Sonic Solutions)
DRV - (DLABOIOM) -- C:\WINDOWS\system32\DLA\DLABOIOM.SYS (Sonic Solutions)
DRV - (DLAOPIOM) -- C:\WINDOWS\system32\DLA\DLAOPIOM.SYS (Sonic Solutions)
DRV - (DLAPoolM) -- C:\WINDOWS\system32\DLA\DLAPoolM.SYS (Sonic Solutions)
DRV - (DLADResN) -- C:\WINDOWS\system32\DLA\DLADResN.SYS (Sonic Solutions)
DRV - (DRVMCDB) -- C:\WINDOWS\System32\Drivers\DRVMCDB.SYS (Sonic Solutions)
DRV - (DLACDBHM) -- C:\WINDOWS\system32\drivers\DLACDBHM.SYS (Sonic Solutions)
DRV - (DLARTL_N) -- C:\WINDOWS\system32\drivers\DLARTL_N.SYS (Sonic Solutions)
DRV - (DRVNDDM) -- C:\WINDOWS\system32\drivers\DRVNDDM.SYS (Sonic Solutions)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.busca7.com/IE - HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchURL\g, =
http://www.google.es/custom?sa=B%FAsque ... 1&hl=es&q=%s
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.busca7.com/IE - HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchURL\g, =
http://www.google.es/custom?sa=B%FAsque ... 1&hl=es&q=%s
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.busca7.com/IE - HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchURL\g, =
http://www.google.es/custom?sa=B%FAsque ... 1&hl=es&q=%s
IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.busca7.com/IE - HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchURL\g, =
http://www.google.es/custom?sa=B%FAsque ... 1&hl=es&q=%s
IE - HKU\S-1-5-21-1614895754-842925246-515967899-500\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKU\S-1-5-21-1614895754-842925246-515967899-500\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL =
http://www.google.com/search?q={searchTerms}
IE - HKU\S-1-5-21-1614895754-842925246-515967899-500\Software\Microsoft\Internet Explorer\SearchURL\g, =
http://www.google.es/custom?sa=B%FAsque ... 1&hl=es&q=%s
IE - HKU\S-1-5-21-1614895754-842925246-515967899-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ========== FF - prefs.js..extensions.enabledItems:
jqs@sun.com:1.0
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.5\extensions\\Components: C:\Archivos de programa\Mozilla Firefox\components [2010/03/05 17:41:11 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.5\extensions\\Plugins: C:\Archivos de programa\Mozilla Firefox\plugins [2010/04/13 18:49:28 | 000,000,000 | ---D | M]
[2009/12/01 20:48:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrador\Datos de programa\Mozilla\Extensions
[2009/12/01 20:48:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrador\Datos de programa\Mozilla\Firefox\Profiles\kdh80l4x.default\extensions
[2010/04/13 18:49:29 | 000,000,000 | ---D | M] -- C:\Archivos de programa\Mozilla Firefox\extensions
[2006/12/08 20:53:48 | 000,003,996 | ---- | M] () -- C:\Archivos de programa\Mozilla Firefox\searchplugins\drae.xml
[2008/09/19 11:19:12 | 000,000,751 | ---- | M] () -- C:\Archivos de programa\Mozilla Firefox\searchplugins\eBay-es.xml
[2008/03/12 20:27:40 | 000,001,178 | ---- | M] () -- C:\Archivos de programa\Mozilla Firefox\searchplugins\wikipedia-es.xml
[2006/12/08 20:53:48 | 000,000,798 | ---- | M] () -- C:\Archivos de programa\Mozilla Firefox\searchplugins\yahoo-es.xml
O1 HOSTS File: ([2001/08/24 15:00:00 | 000,000,792 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (DriveLetterAccess) - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\DLA\DLASHX_W.DLL (Sonic Solutions)
O2 - BHO: (Windows Live Aplicación auxiliar de inicio de sesión) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O3 - HKU\S-1-5-21-1614895754-842925246-515967899-500\..\Toolbar\WebBrowser: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O4 - HKLM..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] C:\Archivos de programa\Google\Gmail Notifier\gnotify.exe (Google Inc.)
O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [avast5] C:\Archivos de programa\Alwil Software\Avast5\AvastUI.exe (ALWIL Software)
O4 - HKLM..\Run: [AzMixerSel] C:\Archivos de programa\Realtek\Audio\Drivers\AzMixerSel.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [DLA] C:\WINDOWS\system32\DLA\DLACTRLW.EXE (Sonic Solutions)
O4 - HKLM..\Run: [M3000Mnt] File not found
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Archivos de programa\Archivos comunes\Java\Java Update\jusched.exe (Sun Microsystems, Inc.)
O4 - HKU\S-1-5-21-1614895754-842925246-515967899-500..\Run: [TaskSwitchXP] C:\Archivos de programa\TaskSwitchXP\TaskSwitchXP.exe (Alexander Avdonin)
O4 - HKU\.DEFAULT..\RunOnce: [nltide_2] File not found
O4 - HKU\S-1-5-18..\RunOnce: [nltide_2] File not found
O4 - HKU\S-1-5-19..\RunOnce: [nltide_2] File not found
O4 - HKU\S-1-5-20..\RunOnce: [nltide_2] File not found
O4 - Startup: C:\Documents and Settings\Administrador\Menú Inicio\Programas\Inicio\Herramienta de búsqueda de soportes de Picture Motion Browser.lnk = C:\Archivos de programa\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe (Sony Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktopCleanupWizard = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRemoteRecursiveEvents = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableStatusMessages = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: VerboseStatus = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoInternetOpenWith = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O7 - HKU\S-1-5-21-1614895754-842925246-515967899-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1614895754-842925246-515967899-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1
O7 - HKU\S-1-5-21-1614895754-842925246-515967899-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1
O7 - HKU\S-1-5-21-1614895754-842925246-515967899-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\S-1-5-21-1614895754-842925246-515967899-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O7 - HKU\S-1-5-21-1614895754-842925246-515967899-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1
O7 - HKU\S-1-5-21-1614895754-842925246-515967899-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O7 - HKU\S-1-5-21-1614895754-842925246-515967899-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSaveSettings = 0
O7 - HKU\S-1-5-21-1614895754-842925246-515967899-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMBalloonTip = 0
O7 - HKU\S-1-5-21-1614895754-842925246-515967899-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 0
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Archivos de programa\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_19)
O16 - DPF: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_19)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_19)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 200.45.191.35 200.45.48.233
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Archivos de programa\Archivos comunes\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Archivos de programa\Archivos comunes\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Archivos de programa\Archivos comunes\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Archivos de programa\Archivos comunes\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Archivos de programa\Archivos comunes\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Archivos de programa\Archivos comunes\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Archivos de programa\Archivos comunes\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Filter\text/xml {807553E5-5146-11D5-A672-00B0D022E945} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\OFFICE11\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (XPize_Logon.exe) - C:\WINDOWS\System32\XPize_Logon.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O24 - Desktop Components:0 (Mi página de inicio actual) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Administrador\Configuración local\Datos de programa\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Administrador\Configuración local\Datos de programa\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/12/01 15:01:49 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{2aa967fe-e839-11de-9221-00242b8ee52a}\Shell - "" = AutoRun
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ========== [2010/04/14 08:34:32 | 000,561,664 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Administrador\Escritorio\OTL.exe
[2010/04/13 18:52:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Datos de programa\Sun
[2010/04/13 18:52:52 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Archivos comunes\Java
[2010/04/13 18:49:27 | 000,153,376 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
[2010/04/13 18:49:27 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
[2010/04/13 18:49:27 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
[2010/04/13 17:19:10 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Datos de programa\Microsoft
[2010/04/13 17:19:10 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Configuración local\Datos de programa\Microsoft
[2010/04/13 17:19:10 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Datos de programa\Microsoft
[2010/04/13 17:19:10 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Configuración local\Datos de programa\Microsoft
[2010/04/13 17:05:21 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\appmgmt
[2010/04/07 23:45:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Datos de programa\Windows Genuine Advantage
[2010/03/31 20:48:52 | 000,000,000 | ---D | C] -- C:\Archivos de programa\TrendMicro
[2010/03/31 20:34:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrador\Datos de programa\Malwarebytes
[2010/03/31 20:34:22 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010/03/31 20:34:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Datos de programa\Malwarebytes
[2010/03/31 20:34:18 | 000,020,824 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010/03/31 20:34:18 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Malwarebytes' Anti-Malware
[2010/03/31 20:33:38 | 005,918,720 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\Administrador\Escritorio\mbam-setup.exe
[2010/03/31 11:38:06 | 000,019,024 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2010/03/31 11:38:05 | 000,162,640 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2010/03/31 11:38:04 | 000,023,376 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2010/03/31 11:38:02 | 000,046,672 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2010/03/31 11:37:59 | 000,100,432 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2010/03/31 11:37:58 | 000,094,800 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2010/03/31 11:37:58 | 000,028,880 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2010/03/31 11:37:19 | 000,153,184 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\aswBoot.exe
[2010/03/31 11:37:19 | 000,038,848 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\avastSS.scr
[2010/03/31 11:37:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Datos de programa\Alwil Software
[2010/03/31 11:37:08 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Alwil Software
[2010/03/31 11:24:52 | 000,000,000 | -H-D | C] -- C:\$AVG
[2010/03/31 10:46:37 | 000,000,000 | ---D | C] -- C:\Archivos de programa\AVG
[2010/03/31 10:46:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Datos de programa\avg9
[2010/03/31 10:46:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\SxsCaPendDel
[2010/03/29 11:08:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrador\Escritorio\Seminario Humanista I
[2010/03/25 16:11:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\Sun
[2010/03/24 22:36:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrador\Escritorio\ENALFIL
[2010/03/19 13:21:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrador\Mis documentos\S{i!
[2010/03/18 09:18:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrador\Mis documentos\Presentación JIFA
[2010/01/15 17:16:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Configuración local\Datos de programa\Apple
[2009/12/07 21:42:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Configuración local\Datos de programa\ESET
[2009/12/01 22:02:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Configuración local\Datos de programa\Google
[2009/12/01 21:03:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Configuración local\Datos de programa\Google
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\Documents and Settings\Administrador\Escritorio\*.tmp files -> C:\Documents and Settings\Administrador\Escritorio\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2010/04/14 08:43:01 | 000,293,376 | ---- | M] () -- C:\Documents and Settings\Administrador\Escritorio\xk3931wo.exe
[2010/04/14 08:34:33 | 000,561,664 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Administrador\Escritorio\OTL.exe
[2010/04/14 08:19:01 | 000,001,102 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2010/04/14 08:15:35 | 000,002,868 | ---- | M] () -- C:\Documents and Settings\Administrador\Escritorio\reporte on line antivirus.html
[2010/04/14 08:11:00 | 000,001,160 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1614895754-842925246-515967899-500UA.job
[2010/04/14 08:00:01 | 000,000,548 | ---- | M] () -- C:\WINDOWS\tasks\Mantenimiento con 1 clic.job
[2010/04/13 20:11:00 | 000,001,108 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1614895754-842925246-515967899-500Core.job
[2010/04/13 18:48:48 | 001,124,618 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010/04/13 18:48:48 | 000,506,162 | ---- | M] () -- C:\WINDOWS\System32\perfh00A.dat
[2010/04/13 18:48:48 | 000,442,100 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010/04/13 18:48:48 | 000,091,330 | ---- | M] () -- C:\WINDOWS\System32\perfc00A.dat
[2010/04/13 18:48:48 | 000,071,844 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010/04/13 17:26:25 | 000,002,501 | ---- | M] () -- C:\Documents and Settings\Administrador\Escritorio\HiJackThis.lnk
[2010/04/13 17:20:29 | 000,001,098 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2010/04/13 17:20:25 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010/04/13 17:20:13 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/04/13 17:19:24 | 003,145,728 | -H-- | M] () -- C:\Documents and Settings\Administrador\NTUSER.DAT
[2010/04/13 17:19:24 | 000,000,192 | -HS- | M] () -- C:\Documents and Settings\Administrador\ntuser.ini
[2010/04/13 17:12:35 | 000,451,584 | ---- | M] () -- C:\Documents and Settings\Administrador\Escritorio\CKScanner.exe
[2010/04/13 15:11:19 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/03/31 11:38:08 | 000,001,768 | ---- | M] () -- C:\Documents and Settings\All Users\Escritorio\avast! Free Antivirus.lnk
[2010/03/31 11:38:00 | 000,002,958 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2010/03/31 10:29:44 | 046,914,104 | ---- | M] () -- C:\Documents and Settings\Administrador\Escritorio\setup_av_free.exe
[2010/03/30 18:30:25 | 000,017,408 | ---- | M] () -- C:\Documents and Settings\Administrador\Configuración local\Datos de programa\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/03/30 17:33:28 | 000,223,712 | ---- | M] () -- C:\Documents and Settings\Administrador\Mis documentos\Ciudad 9.jpg
[2010/03/30 17:33:19 | 000,024,064 | ---- | M] () -- C:\Documents and Settings\Administrador\Mis documentos\Ciudad 310310.doc
[2010/03/30 14:08:06 | 005,918,720 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\Administrador\Escritorio\mbam-setup.exe
[2010/03/29 15:24:58 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010/03/29 15:24:46 | 000,020,824 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010/03/27 17:29:54 | 000,042,496 | ---- | M] () -- C:\Documents and Settings\Administrador\Mis documentos\Newsletter inglés marzo.doc
[2010/03/26 19:21:17 | 000,019,968 | ---- | M] () -- C:\Documents and Settings\Administrador\Mis documentos\Idea Twitter Aventura.doc
[2010/03/26 11:32:29 | 000,257,024 | ---- | M] () -- C:\Documents and Settings\Administrador\Mis documentos\Cuan seguro es tu password.jpg
[2010/03/26 09:12:52 | 000,146,006 | ---- | M] () -- C:\Documents and Settings\Administrador\Mis documentos\wetheads_02.jpg
[2010/03/26 09:12:46 | 000,117,564 | ---- | M] () -- C:\Documents and Settings\Administrador\Mis documentos\wetheads_03.jpg
[2010/03/26 09:12:40 | 000,141,810 | ---- | M] () -- C:\Documents and Settings\Administrador\Mis documentos\wetheads_04.jpg
[2010/03/26 09:12:35 | 000,128,464 | ---- | M] () -- C:\Documents and Settings\Administrador\Mis documentos\wetheads_05.jpg
[2010/03/26 09:12:28 | 000,129,567 | ---- | M] () -- C:\Documents and Settings\Administrador\Mis documentos\wetheads_06.jpg
[2010/03/26 09:01:44 | 000,031,232 | ---- | M] () -- C:\Documents and Settings\Administrador\Mis documentos\Tres notas más 26 de marzo.doc
[2010/03/26 08:12:35 | 000,028,160 | ---- | M] () -- C:\Documents and Settings\Administrador\Mis documentos\Ciudad 260310.doc
[2010/03/26 08:02:12 | 000,203,090 | ---- | M] () -- C:\Documents and Settings\Administrador\Mis documentos\Ciudad6.jpg
[2010/03/23 13:09:28 | 000,032,768 | ---- | M] () -- C:\Documents and Settings\Administrador\Mis documentos\Reporter 250310.doc
[2010/03/20 11:41:06 | 000,078,336 | ---- | M] () -- C:\Documents and Settings\Administrador\Mis documentos\Reporter 220310.doc
[2010/03/19 13:26:45 | 000,143,586 | ---- | M] () -- C:\Documents and Settings\Administrador\Mis documentos\JasonHernandezIAmTheMasteroftheUniv.jpg
[2010/03/19 13:23:58 | 000,052,946 | ---- | M] () -- C:\Documents and Settings\Administrador\Mis documentos\KierstenEssenpries.jpg
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\Documents and Settings\Administrador\Escritorio\*.tmp files -> C:\Documents and Settings\Administrador\Escritorio\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ========== [2010/04/14 08:43:01 | 000,293,376 | ---- | C] () -- C:\Documents and Settings\Administrador\Escritorio\xk3931wo.exe
[2010/04/14 08:15:35 | 000,002,868 | ---- | C] () -- C:\Documents and Settings\Administrador\Escritorio\reporte on line antivirus.html
[2010/04/13 17:22:34 | 000,451,584 | ---- | C] () -- C:\Documents and Settings\Administrador\Escritorio\CKScanner.exe
[2010/03/31 20:48:55 | 000,002,501 | ---- | C] () -- C:\Documents and Settings\Administrador\Escritorio\HiJackThis.lnk
[2010/03/31 20:33:33 | 001,401,344 | ---- | C] () -- C:\Documents and Settings\Administrador\Escritorio\HijackThis.msi
[2010/03/31 11:38:08 | 000,001,768 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\avast! Free Antivirus.lnk
[2010/03/31 10:38:25 | 046,914,104 | ---- | C] () -- C:\Documents and Settings\Administrador\Escritorio\setup_av_free.exe
[2010/03/30 17:33:28 | 000,223,712 | ---- | C] () -- C:\Documents and Settings\Administrador\Mis documentos\Ciudad 9.jpg
[2010/03/30 17:31:45 | 000,024,064 | ---- | C] () -- C:\Documents and Settings\Administrador\Mis documentos\Ciudad 310310.doc
[2010/03/26 18:39:59 | 000,019,968 | ---- | C] () -- C:\Documents and Settings\Administrador\Mis documentos\Idea Twitter Aventura.doc
[2010/03/26 16:22:44 | 000,042,496 | ---- | C] () -- C:\Documents and Settings\Administrador\Mis documentos\Newsletter inglés marzo.doc
[2010/03/26 11:32:28 | 000,257,024 | ---- | C] () -- C:\Documents and Settings\Administrador\Mis documentos\Cuan seguro es tu password.jpg
[2010/03/26 09:12:52 | 000,146,006 | ---- | C] () -- C:\Documents and Settings\Administrador\Mis documentos\wetheads_02.jpg
[2010/03/26 09:12:46 | 000,117,564 | ---- | C] () -- C:\Documents and Settings\Administrador\Mis documentos\wetheads_03.jpg
[2010/03/26 09:12:40 | 000,141,810 | ---- | C] () -- C:\Documents and Settings\Administrador\Mis documentos\wetheads_04.jpg
[2010/03/26 09:12:34 | 000,128,464 | ---- | C] () -- C:\Documents and Settings\Administrador\Mis documentos\wetheads_05.jpg
[2010/03/26 09:12:28 | 000,129,567 | ---- | C] () -- C:\Documents and Settings\Administrador\Mis documentos\wetheads_06.jpg
[2010/03/26 08:02:12 | 000,203,090 | ---- | C] () -- C:\Documents and Settings\Administrador\Mis documentos\Ciudad6.jpg
[2010/03/25 21:39:45 | 000,031,232 | ---- | C] () -- C:\Documents and Settings\Administrador\Mis documentos\Tres notas más 26 de marzo.doc
[2010/03/25 20:30:31 | 000,028,160 | ---- | C] () -- C:\Documents and Settings\Administrador\Mis documentos\Ciudad 260310.doc
[2010/03/24 22:37:19 | 000,032,768 | ---- | C] () -- C:\Documents and Settings\Administrador\Mis documentos\Reporter 250310.doc
[2010/03/20 10:08:44 | 000,078,336 | ---- | C] () -- C:\Documents and Settings\Administrador\Mis documentos\Reporter 220310.doc
[2010/03/19 13:26:45 | 000,143,586 | ---- | C] () -- C:\Documents and Settings\Administrador\Mis documentos\JasonHernandezIAmTheMasteroftheUniv.jpg
[2010/03/19 13:23:58 | 000,052,946 | ---- | C] () -- C:\Documents and Settings\Administrador\Mis documentos\KierstenEssenpries.jpg
[2010/01/25 14:19:52 | 000,000,156 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2010/01/25 14:19:16 | 000,003,654 | ---- | C] () -- C:\WINDOWS\System32\drivers\Sonyhcp.dll
[2009/12/05 18:58:28 | 000,017,408 | ---- | C] () -- C:\Documents and Settings\Administrador\Configuración local\Datos de programa\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/12/01 20:40:19 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4926.dll
[2009/12/01 16:33:24 | 000,254,976 | ---- | C] () -- C:\WINDOWS\System32\drivers\M3000KNT.sys
[2009/12/01 16:33:24 | 000,233,472 | ---- | C] () -- C:\WINDOWS\System32\M3000DIF.dll
[2009/12/01 16:33:24 | 000,015,190 | ---- | C] () -- C:\WINDOWS\M3000Twn.ini
[2009/12/01 15:28:01 | 000,164,352 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2009/12/01 15:28:00 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini
[2009/12/01 15:27:45 | 002,294,291 | ---- | C] () -- C:\WINDOWS\System32\x264vfw.dll
[2009/12/01 15:27:45 | 000,795,648 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2009/12/01 15:27:45 | 000,130,048 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2009/12/01 15:27:44 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2009/12/01 15:27:27 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2009/12/01 15:27:27 | 000,000,547 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest
[2009/12/01 15:21:12 | 000,000,379 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2009/12/01 15:19:11 | 000,676,224 | ---- | C] () -- C:\WINDOWS\System32\OGACheckControl.dll.bak
[2009/12/01 15:11:23 | 000,064,200 | ---- | C] () -- C:\Documents and Settings\LocalService\Configuración local\Datos de programa\FontCache3.0.0.0.dat
[2009/12/01 15:03:51 | 000,000,192 | -HS- | C] () -- C:\Documents and Settings\Administrador\ntuser.ini
[2009/12/01 15:03:49 | 003,145,728 | -H-- | C] () -- C:\Documents and Settings\Administrador\NTUSER.DAT
[2009/12/01 15:03:49 | 000,001,024 | -H-- | C] () -- C:\Documents and Settings\Administrador\NTUSER.DAT.LOG
[2009/12/01 15:01:57 | 000,717,296 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2009/01/14 19:26:03 | 000,000,863 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2008/04/28 17:58:50 | 000,005,827 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI
< End of report >
L by OldTimer - Version 3.2.1.1 Folder = C:\Documents and Settings\Administrador\Escritorio
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00002C0A | Country: Argentina | Language: ESS | Date Format: dd/MM/yyyy
1.012,00 Mb Total Physical Memory | 156,00 Mb Available Physical Memory | 15,00% Memory free
2,00 Gb Paging File | 1,00 Gb Available in Paging File | 40,00% Paging File free
Paging file location(s): C:\pagefile.sys 1512 3024 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Archivos de programa
Drive C: | 143,19 Gb Total Space | 130,42 Gb Free Space | 91,08% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: Equipo01
Current User Name: Administrador
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
[HKEY_USERS\S-1-5-21-1614895754-842925246-515967899-500\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Archivos de programa\Microsoft Office\OFFICE11\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Archivos de programa\Microsoft Office\OFFICE11\msohtmed.exe" /p %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /k cd "%L" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0
"DisableUnicastResponsesToMulticastBroadcast" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0
"DisableUnicastResponsesToMulticastBroadcast" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008
"6946:TCP" = 6946:TCP:*:Enabled:xlmfdzrm
========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Archivos de programa\Opera\opera.exe" = C:\Archivos de programa\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software)
"C:\Archivos de programa\iTunes\iTunes.exe" = C:\Archivos de programa\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.)
========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0228e555-4f9c-4e35-a3ec-b109a192b4c2}" = Google Gmail Notifier
"{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour
"{0761C9A8-8F3A-4216-B4A7-B7AFBF24A24A}" = HiJackThis
"{1206EF92-2E83-4859-ACCB-2048C3CB7DA6}" = Sonic UDF Reader
"{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}" = QuickTime
"{1CB92574-96F2-467B-B793-5CEB35C40C29}" = Image Resizer Powertoy for Windows XP
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{26604C7E-A313-4D12-867F-7C6E7820BE4C}" = JMicron JMB38X Flash Media Controller
"{26A24AE4-039D-4CA4-87B4-2F83216011FF}" = Java(TM) 6 Update 19
"{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Atheros for Acer Driver v7.6.0.224_Foxconn Installation Program
"{2BD2FA21-B51D-4F01-94A7-AC16737B2163}" = Adobe Flash Player 10 ActiveX
"{2EAF7E61-068E-11DF-953C-005056806466}" = Google Earth
"{38A0481D-544D-4C01-BB32-39332391D012}" = Windows Live Call
"{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform
"{3FA365DF-2D68-45ED-8F83-8C8A33E65143}" = Apple Application Support
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{55A29068-F2CE-456C-9148-C869879E2357}" = TuneUp Utilities 2009
"{5C29CB8B-AC1E-4114-8D68-9CD080140D4A}" = Sony USB Driver
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{7593234B-2AEB-4FC9-B02D-C9B30D86084C}" = Windows Live Asistente para el inicio de sesión
"{81063354-9060-42B2-A000-1EBE96778AA9}" = iTunes
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8F94D5AC-C1C6-432D-8924-2F5EEBC28446}" = Windows Live Essentials
"{90110C0A-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{93D34EE3-99B3-4DB1-8B0A-0A657466F90D}" = Movistar 3.5G
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}" = Apple Mobile Device Support
"{AD72CFB4-C2BF-424E-9DF0-C7BAD1F30A11}" = Adobe Shockwave Player
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C1DA9C11-9488-5882-2087-33EC06344A76}" = TweetDeck
"{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.1
"{D5068583-D569-468B-9755-5FBF5848F46F}" = Sony Picture Utility
"{D6E4E5D6-7693-4BB4-95BA-21F38FAFEE90}" = Safari
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F2FFEEAA-0B48-4342-9B67-12ABB0B58F24}" = Windows Live Messenger
"{F7952CA2-A925-4CA1-A934-A46E8EC9CA18}" = Acer Crystal Eye Webcam 1.0.1.3
"{FB8148DD-C575-4B0A-9F6C-0CFC46937930}" = Opera 10.10
"Adobe AIR" = Adobe AIR
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"avast5" = avast! Free Antivirus
"CCleaner" = CCleaner (remove only)
"EVEREST Ultimate Edition_is1" = EVEREST Ultimate Edition v4.60
"HDMI" = Intel(R) Graphics Media Accelerator Driver
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 4.4.2
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.0.5)" = Mozilla Firefox (3.0.5)
"Nero8WinuE_is1" = Nero 8.3.2.1
"Picasa 3" = Picasa 3
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"TaskSwitchXP" = TaskSwitchXP
"TweetDeckFast.FFF259DC0CE2657847BBB4AFF0E62062EFC56543.1" = TweetDeck
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinRAR archiver" = Compresor WinRAR
"XPize Darkside" = XPize Darkside 2.1
========== HKEY_USERS Uninstall List ========== [HKEY_USERS\S-1-5-21-1614895754-842925246-515967899-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome
========== Last 10 Event Log Errors ========== [ Application Events ]
Error - 22/02/2010 10:11:38 a.m. | Computer Name = Equipo01 | Source = Google Update | ID = 20
Description =
Error - 22/02/2010 11:03:38 a.m. | Computer Name = Equipo01 | Source = Google Update | ID = 20
Description =
Error - 22/02/2010 11:11:38 a.m. | Computer Name = Equipo01 | Source = Google Update | ID = 20
Description =
Error - 22/02/2010 12:03:40 p.m. | Computer Name = Equipo01 | Source = Google Update | ID = 20
Description =
Error - 22/02/2010 12:11:38 p.m. | Computer Name = Equipo01 | Source = Google Update | ID = 20
Description =
Error - 22/02/2010 01:03:37 p.m. | Computer Name = Equipo01 | Source = Google Update | ID = 20
Description =
Error - 22/02/2010 01:11:38 p.m. | Computer Name = Equipo01 | Source = Google Update | ID = 20
Description =
Error - 24/02/2010 09:02:01 p.m. | Computer Name = Equipo01 | Source = Google Update | ID = 20
Description =
Error - 24/02/2010 09:09:13 p.m. | Computer Name = Equipo01 | Source = Google Update | ID = 20
Description =
Error - 01/03/2010 02:09:15 p.m. | Computer Name = Equipo01 | Source = Google Update | ID = 20
Description =
[ System Events ]
Error - 06/02/2010 10:07:38 a.m. | Computer Name = Equipo01 | Source = DCOM | ID = 10005
Description = DCOM ha obtenido un error "%1058" al intentar iniciar el servicio
StiSvc con argumentos "" para ejecutar el servidor: {A1F4E726-8CF1-11D1-BF92-0060081ED811}
Error - 06/02/2010 10:07:41 a.m. | Computer Name = Equipo01 | Source = DCOM | ID = 10005
Description = DCOM ha obtenido un error "%1058" al intentar iniciar el servicio
StiSvc con argumentos "" para ejecutar el servidor: {A1F4E726-8CF1-11D1-BF92-0060081ED811}
Error - 06/02/2010 10:07:52 a.m. | Computer Name = Equipo01 | Source = DCOM | ID = 10005
Description = DCOM ha obtenido un error "%1058" al intentar iniciar el servicio
StiSvc con argumentos "" para ejecutar el servidor: {A1F4E726-8CF1-11D1-BF92-0060081ED811}
Error - 06/02/2010 10:07:55 a.m. | Computer Name = Equipo01 | Source = DCOM | ID = 10005
Description = DCOM ha obtenido un error "%1058" al intentar iniciar el servicio
StiSvc con argumentos "" para ejecutar el servidor: {A1F4E726-8CF1-11D1-BF92-0060081ED811}
Error - 06/02/2010 11:11:30 a.m. | Computer Name = Equipo01 | Source = DCOM | ID = 10005
Description = DCOM ha obtenido un error "%1058" al intentar iniciar el servicio
StiSvc con argumentos "" para ejecutar el servidor: {A1F4E726-8CF1-11D1-BF92-0060081ED811}
Error - 16/02/2010 07:57:53 p.m. | Computer Name = Equipo01 | Source = Service Control Manager | ID = 7023
Description = El servicio Adaptador de rendimiento de WMI terminó con el error:
%%2147500037
Error - 17/02/2010 05:32:36 p.m. | Computer Name = Equipo01 | Source = ACPIEC | ID = 327681
Description = \Device\ACPIEC: el hardware del controlador incrustado (EC) no respondió
dentro del período de tiempo de espera. Esto puede indicar que hay un error en
el hardware o firmware, o posiblemente una BIOS malamente diseñada que tiene acceso
a EC de una manera no segura. El controlador EC recuperará la transacción errónea
si es posible.
Error - 18/02/2010 08:29:29 a.m. | Computer Name = Equipo01 | Source = Dhcp | ID = 1002
Description = La concesión de la dirección IP 192.168.1.131 para la tarjeta de red
con la dirección de red 00242B8EE52A ha sido denegada por el servidor DHCP 10.1.14.2
(el servidor DHCP envió un mensaje DHCPNACK).
Error - 18/02/2010 10:27:54 a.m. | Computer Name = Equipo01 | Source = Dhcp | ID = 1000
Description = Su equipo ha perdido la concesión de su dirección IP 10.254.14.4 en
la tarjeta de red con dirección de red 00242B8EE52A.
Error - 20/02/2010 01:42:36 p.m. | Computer Name = Equipo01 | Source = Dhcp | ID = 1002
Description = La concesión de la dirección IP 192.168.4.191 para la tarjeta de red
con la dirección de red 00242B8EE52A ha sido denegada por el servidor DHCP 192.168.100.252
(el servidor DHCP envió un mensaje DHCPNACK).
[ TuneUp Events ]
Error - 31/03/2010 07:34:37 p.m. | Computer Name = Equipo01 | Source = TuneUp Program Statistics | ID = 131840
Description = SQL Error: near "anti": syntax error; when executing SQL: INSERT INTO
ActiveApps (Started, Exe, ProcID, Resumed) VALUES ('2010-03-31 20:34:37', '\device\harddiskvolume2\archivos
de programa\malwarebytes' anti-malware\mbam.exe','452',0)
Error - 31/03/2010 07:35:02 p.m. | Computer Name = Equipo01 | Source = TuneUp Program Statistics | ID = 131840
Description = SQL Error: near "anti": syntax error; when executing SQL: INSERT INTO
ActiveApps (Started, Exe, ProcID, Resumed) VALUES ('2010-03-31 20:35:02', '\device\harddiskvolume2\archivos
de programa\malwarebytes' anti-malware\mbam.exe','892',0)
Error - 03/04/2010 06:32:01 p.m. | Computer Name = Equipo01 | Source = TuneUp Program Statistics | ID = 131840
Description = SQL Error: near "anti": syntax error; when executing SQL: INSERT INTO
ActiveApps (Started, Exe, ProcID, Resumed) VALUES ('2010-04-03 19:32:01', '\device\harddiskvolume2\archivos
de programa\malwarebytes' anti-malware\mbam.exe','3836',0)
Error - 03/04/2010 06:32:16 p.m. | Computer Name = Equipo01 | Source = TuneUp Program Statistics | ID = 131840
Description = SQL Error: near "anti": syntax error; when executing SQL: INSERT INTO
ActiveApps (Started, Exe, ProcID, Resumed) VALUES ('2010-04-03 19:32:16', '\device\harddiskvolume2\archivos
de programa\malwarebytes' anti-malware\mbam.exe','3024',0)
< End of report >