WiredWX Christian Hobby Weather Tools
Would you like to react to this message? Create an account in a few clicks or log in to continue.

WiredWX Christian Hobby Weather ToolsLog in

 


descriptiontrojan heur - Page 1 EmptyRe: trojan heur

more_horiz
2010/01/18 11:18:04 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Local\LogiShrd
[2010/01/18 11:17:21 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Roaming\Leadertech
[2010/01/18 11:16:00 | 000,199,192 | ---- | C] (Logitech Inc.) -- C:\Windows\System32\lvci1201278.dll
[2010/01/18 11:11:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\LogiShrd
[2010/01/18 11:11:13 | 000,000,000 | ---D | C] -- C:\ProgramData\LogiShrd
[2010/01/18 11:10:51 | 000,000,000 | ---D | C] -- C:\Program Files\Logitech
[2010/01/18 11:09:06 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\Documents\My Received Files
[2010/01/18 09:16:04 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\Documents\My Google Gadgets
[2010/01/18 09:00:21 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Roaming\InstallShield
[2010/01/18 09:00:13 | 000,360,448 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvraiins.dll
[2010/01/18 09:00:13 | 000,360,448 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvraidco.dll
[2010/01/18 08:47:07 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Roaming\iolo
[2010/01/18 08:47:07 | 000,000,000 | ---D | C] -- C:\ProgramData\iolo
[2010/01/18 01:14:27 | 000,000,000 | ---D | C] -- C:\ProgramData\DVD Shrink
[2010/01/18 01:14:25 | 000,000,000 | ---D | C] -- C:\Program Files\DVD Shrink
[2010/01/18 00:50:04 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\Tracing
[2010/01/18 00:45:46 | 000,054,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fssfltr.sys
[2010/01/18 00:43:38 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server Compact Edition
[2010/01/18 00:42:29 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft
[2010/01/18 00:42:21 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\microsoft
[2010/01/18 00:42:16 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live SkyDrive
[2010/01/18 00:42:02 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live
[2010/01/18 00:41:53 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2010/01/18 00:38:07 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Windows Live
[2010/01/18 00:37:48 | 001,146,184 | ---- | C] (Microsoft Corporation) -- C:\Users\HORACIO\Desktop\wlsetup-web.exe
[2010/01/18 00:28:49 | 001,974,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_42.dll
[2010/01/18 00:28:49 | 000,515,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_5.dll
[2010/01/18 00:28:49 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_5.dll
[2010/01/18 00:28:48 | 005,501,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dcsx_42.dll
[2010/01/18 00:28:48 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_42.dll
[2010/01/18 00:28:48 | 000,235,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx11_42.dll
[2010/01/18 00:28:47 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_42.dll
[2010/01/18 00:28:46 | 004,178,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_41.dll
[2010/01/18 00:28:46 | 001,846,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_41.dll
[2010/01/18 00:28:46 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_41.dll
[2010/01/18 00:28:45 | 000,517,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_4.dll
[2010/01/18 00:28:45 | 000,235,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_4.dll
[2010/01/18 00:28:45 | 000,069,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_3.dll
[2010/01/18 00:28:45 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_6.dll
[2010/01/18 00:28:42 | 000,514,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_3.dll
[2010/01/18 00:28:42 | 000,509,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_2.dll
[2010/01/18 00:28:42 | 000,235,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_3.dll
[2010/01/18 00:28:42 | 000,070,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_2.dll
[2010/01/18 00:28:42 | 000,068,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_1.dll
[2010/01/18 00:28:42 | 000,023,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_5.dll
[2010/01/18 00:28:41 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_39.dll
[2010/01/18 00:28:41 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_39.dll
[2010/01/18 00:28:41 | 000,507,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_1.dll
[2010/01/18 00:28:41 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_39.dll
[2010/01/18 00:28:41 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_2.dll
[2010/01/18 00:28:41 | 000,065,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_0.dll
[2010/01/18 00:28:40 | 003,850,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_38.dll
[2010/01/18 00:28:40 | 001,491,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_38.dll
[2010/01/18 00:28:40 | 000,479,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_0.dll
[2010/01/18 00:28:40 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_38.dll
[2010/01/18 00:28:40 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_1.dll
[2010/01/18 00:28:40 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_0.dll
[2010/01/18 00:28:40 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_4.dll
[2010/01/18 00:28:39 | 001,420,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_37.dll
[2010/01/18 00:28:39 | 000,462,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_37.dll
[2010/01/18 00:28:39 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_3.dll
[2010/01/18 00:28:38 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_37.dll
[2010/01/18 00:28:38 | 000,267,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_10.dll
[2010/01/18 00:28:37 | 001,374,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_36.dll
[2010/01/18 00:28:37 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_36.dll
[2010/01/18 00:28:36 | 003,734,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_36.dll
[2010/01/18 00:28:35 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_9.dll
[2010/01/18 00:28:34 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_35.dll
[2010/01/18 00:28:34 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_35.dll
[2010/01/18 00:28:33 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_35.dll
[2010/01/18 00:28:32 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_8.dll
[2010/01/18 00:28:32 | 000,017,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_2.dll
[2010/01/18 00:28:30 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_34.dll
[2010/01/18 00:28:30 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_34.dll
[2010/01/18 00:28:29 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_34.dll
[2010/01/18 00:28:29 | 000,081,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_3.dll
[2010/01/18 00:28:28 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_7.dll
[2010/01/18 00:28:27 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_33.dll
[2010/01/18 00:28:27 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_33.dll
[2010/01/18 00:28:27 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_33.dll
[2010/01/18 00:28:26 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_6.dll
[2010/01/18 00:28:25 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_32.dll
[2010/01/18 00:28:25 | 000,440,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10.dll
[2010/01/18 00:28:25 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_5.dll
[2010/01/18 00:28:24 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_4.dll
[2010/01/18 00:28:24 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\x3daudio1_1.dll
[2010/01/18 00:28:23 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_31.dll
[2010/01/18 00:28:23 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_3.dll
[2010/01/18 00:28:22 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_2.dll
[2010/01/18 00:28:21 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_2.dll
[2010/01/18 00:28:21 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_1.dll
[2010/01/18 00:28:20 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_1.dll
[2010/01/18 00:28:14 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_30.dll
[2010/01/18 00:28:14 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_0.dll
[2010/01/18 00:28:14 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\x3daudio1_0.dll
[2010/01/18 00:28:13 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_29.dll
[2010/01/18 00:28:13 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_28.dll
[2010/01/18 00:28:12 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_27.dll
[2010/01/18 00:28:11 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_26.dll
[2010/01/18 00:28:09 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_25.dll
[2010/01/18 00:28:08 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_24.dll
[2010/01/18 00:26:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\directx
[2010/01/17 23:53:12 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Roaming\Apple Computer
[2010/01/17 23:53:12 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Local\Apple Computer
[2010/01/17 23:53:07 | 000,107,368 | ---- | C] (GEAR Software Inc.) -- C:\Windows\System32\GEARAspi.dll
[2010/01/17 23:53:07 | 000,026,600 | ---- | C] (GEAR Software Inc.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys
[2010/01/17 23:53:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\DRVSTORE
[2010/01/17 23:52:17 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2010/01/17 23:52:16 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2010/01/17 23:52:16 | 000,000,000 | ---D | C] -- C:\ProgramData\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2010/01/17 23:51:45 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2010/01/17 23:51:01 | 000,000,000 | ---D | C] -- C:\Program Files\QuickTime
[2010/01/17 23:51:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer
[2010/01/17 23:50:45 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Local\Apple
[2010/01/17 23:50:43 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update
[2010/01/17 23:49:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple
[2010/01/17 23:49:12 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
[2010/01/17 23:49:03 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Roaming\vlc
[2010/01/17 23:44:07 | 000,000,000 | ---D | C] -- C:\Program Files\VideoLAN
[2010/01/17 23:42:39 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Roaming\VistaCodecs
[2010/01/17 23:42:36 | 000,000,000 | ---D | C] -- C:\Program Files\VistaCodecPack
[2010/01/17 23:42:10 | 000,000,000 | ---D | C] -- C:\ProgramData\VistaCodecs
[2010/01/17 23:37:39 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\Documents\Stardock
[2010/01/17 23:37:38 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Local\Stardock
[2010/01/17 23:36:50 | 000,000,000 | ---D | C] -- C:\Program Files\Stardock
[2010/01/17 23:36:50 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Stardock
[2010/01/17 23:30:00 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Roaming\Google
[2010/01/17 23:30:00 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Local\Google
[2010/01/17 23:26:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Google
[2010/01/17 23:26:23 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2010/01/17 23:24:59 | 000,056,816 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\avgntflt.sys
[2010/01/17 23:18:04 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
[2010/01/17 23:10:18 | 000,348,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtmsft.dll
[2010/01/17 23:10:18 | 000,216,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtrans.dll
[2010/01/17 23:10:18 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msls31.dll
[2010/01/17 23:10:18 | 000,125,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieakeng.dll
[2010/01/17 23:10:18 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\admparse.dll
[2010/01/17 23:10:18 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtmler.dll
[2010/01/17 23:10:18 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\imgutil.dll
[2010/01/17 23:10:18 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\corpol.dll
[2010/01/17 23:10:17 | 000,611,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll
[2010/01/17 23:10:17 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieaksie.dll
[2010/01/17 23:10:17 | 000,208,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WinFXDocObj.exe
[2010/01/17 23:10:17 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msrating.dll
[2010/01/17 23:10:17 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieakui.dll
[2010/01/17 23:10:17 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\advpack.dll
[2010/01/17 23:10:17 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inseng.dll
[2010/01/17 23:10:17 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wextract.exe
[2010/01/17 23:10:17 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pngfilt.dll
[2010/01/17 23:10:17 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\licmgr10.dll
[2010/01/17 23:10:16 | 000,445,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dll
[2010/01/17 23:10:16 | 000,420,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vbscript.dll
[2010/01/17 23:10:16 | 000,385,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\html.iec
[2010/01/17 23:10:16 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll
[2010/01/17 23:10:15 | 003,698,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dat
[2010/01/17 23:10:15 | 000,169,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iexpress.exe
[2010/01/17 23:10:15 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PDMSetup.exe
[2010/01/17 23:10:15 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RegisterIEPKEYs.exe
[2010/01/17 23:10:15 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SetIEInstalledDate.exe
[2010/01/17 23:10:15 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SetDepNx.exe
[2010/01/17 23:09:00 | 000,000,000 | -H-D | C] -- C:\Windows\msdownld.tmp
[2010/01/17 22:54:27 | 000,411,368 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\deploytk.dll
[2010/01/17 22:29:18 | 000,000,000 | ---D | C] -- C:\Program Files\AGEIA Technologies
[2010/01/17 22:29:10 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Wise Installation Wizard
[2010/01/17 22:27:57 | 000,182,888 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcod178.dll
[2010/01/17 22:27:57 | 000,182,888 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcod.dll
[2010/01/17 22:27:56 | 000,000,000 | ---D | C] -- C:\NVIDIA
[2010/01/17 22:25:40 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Roaming\Macromedia
[2010/01/17 22:25:40 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Roaming\Adobe
[2010/01/17 22:25:38 | 000,000,000 | ---D | C] -- C:\Windows\System32\Macromed
[2010/01/17 22:24:49 | 000,000,000 | ---D | C] -- C:\Program Files\SystemRequirementsLab
[2010/01/17 22:15:17 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
[2010/01/17 22:08:14 | 000,000,000 | ---D | C] -- C:\Windows\Debug
[2010/01/17 22:07:04 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
[2010/01/17 22:06:50 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2010/01/17 22:06:01 | 000,000,000 | ---D | C] -- C:\Windows\Panther
[2010/01/17 22:05:48 | 000,000,000 | ---D | C] -- C:\Boot
[2010/01/17 22:05:35 | 000,000,000 | ---D | C] -- C:\Windows\System32\OEM
[2010/01/17 22:04:44 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2010/01/17 22:04:44 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2010/01/17 21:54:08 | 000,000,000 | ---D | C] -- C:\Program Files\CONEXANT
[2010/01/17 21:53:38 | 000,986,624 | ---- | C] (Conexant Systems, Inc.) -- C:\Windows\System32\drivers\HSX_DPV.sys
[2010/01/17 21:53:38 | 000,659,968 | ---- | C] (Conexant Systems, Inc.) -- C:\Windows\System32\drivers\HSX_CNXT.sys
[2010/01/17 21:53:38 | 000,386,560 | ---- | C] (Conexant Systems, Inc.) -- C:\Windows\System32\drivers\XAudio.exe
[2010/01/17 21:53:38 | 000,258,048 | ---- | C] (Conexant Systems, Inc.) -- C:\Windows\System32\drivers\HSXHWBS2.sys
[2010/01/17 21:53:38 | 000,163,840 | ---- | C] (Conexant Systems, Inc) -- C:\Windows\System32\uci32113.dll
[2010/01/17 21:53:38 | 000,094,208 | ---- | C] (Conexant) -- C:\Windows\System32\mdmxsdk.dll
[2010/01/17 21:53:38 | 000,012,672 | ---- | C] (Conexant) -- C:\Windows\System32\drivers\mdmxsdk.sys
[2010/01/17 21:53:38 | 000,008,192 | ---- | C] (Conexant Systems, Inc.) -- C:\Windows\System32\drivers\XAudio.sys
[2010/01/17 21:51:50 | 000,000,000 | ---D | C] -- C:\Program Files\AMD
[2010/01/17 21:50:30 | 000,000,000 | ---D | C] -- C:\Windows\System32\RTCOM
[2010/01/17 21:49:28 | 000,319,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\DIFxAPI.dll
[2010/01/17 21:49:23 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2010/01/17 21:49:07 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2010/01/17 21:46:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\vmm32
[2010/01/17 21:46:55 | 000,000,000 | ---D | C] -- C:\Program Files\Dell
[2010/01/17 21:34:05 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA
[2010/01/17 21:26:17 | 000,289,792 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll
[2010/01/17 21:26:17 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\t2embed.dll
[2010/01/17 21:26:17 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fontsub.dll
[2010/01/17 21:26:17 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\System32\atmlib.dll
[2010/01/17 21:26:17 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dciman32.dll
[2010/01/17 21:25:17 | 000,272,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\polstore.dll
[2010/01/17 21:25:17 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winipsec.dll
[2010/01/17 21:21:04 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netiohlp.dll
[2010/01/17 21:21:04 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NETSTAT.EXE
[2010/01/17 21:21:04 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ARP.EXE
[2010/01/17 21:21:04 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ROUTE.EXE
[2010/01/17 21:21:04 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netevent.dll
[2010/01/17 21:21:04 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MRINFO.EXE
[2010/01/17 21:21:04 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\finger.exe
[2010/01/17 21:21:04 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TCPSVCS.EXE
[2010/01/17 21:21:04 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\HOSTNAME.EXE
[2010/01/17 21:17:56 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\L2SecHC.dll
[2010/01/17 21:17:55 | 000,302,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wlansec.dll
[2010/01/17 21:17:55 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wlanmsm.dll
[2010/01/17 21:17:55 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wlanhlp.dll
[2010/01/17 21:17:55 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wlanapi.dll
[2010/01/17 21:16:52 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msxml3r.dll
[2010/01/17 21:16:51 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msxml6r.dll
[2010/01/17 21:16:21 | 001,073,152 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcpluir.dll
[2010/01/17 21:16:21 | 000,753,664 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcplui.exe
[2010/01/17 21:16:21 | 000,413,696 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcpl.cpl
[2010/01/17 21:16:21 | 000,307,200 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvexpbar.dll
[2010/01/17 21:15:22 | 001,259,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\lsasrv.dll
[2010/01/17 21:13:33 | 002,868,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mf.dll
[2010/01/17 21:13:33 | 000,098,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfps.dll
[2010/01/17 21:13:33 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rrinstaller.exe
[2010/01/17 21:13:33 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfpmp.exe
[2010/01/17 21:13:33 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mferror.dll
[2010/01/17 21:13:32 | 002,386,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMVCORE.DLL
[2010/01/17 21:12:27 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll
[2010/01/17 21:04:42 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Local\SupportSoft
[2010/01/17 21:04:20 | 000,000,000 | ---D | C] -- C:\ProgramData\SupportSoft
[2010/01/17 21:04:15 | 000,000,000 | ---D | C] -- C:\ProgramData\PCDr
[2010/01/17 21:04:15 | 000,000,000 | ---D | C] -- C:\ProgramData\PC-Doctor
[2010/01/17 21:03:55 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\supportsoft
[2010/01/17 21:03:55 | 000,000,000 | ---D | C] -- C:\Program Files\Dell Support Center
[2010/01/17 21:03:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Dell
[2010/01/17 21:03:44 | 000,000,000 | ---D | C] -- C:\dell
[2010/01/17 21:03:12 | 003,600,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
[2010/01/17 21:03:12 | 003,548,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
[2010/01/17 21:02:11 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Local\Deployment
[2010/01/17 21:02:11 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Local\Apps
[2010/01/17 20:58:10 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\aaclient.dll
[2010/01/17 20:58:10 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tsgqec.dll
[2010/01/17 20:55:03 | 000,714,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\timedate.cpl
[2010/01/17 20:54:01 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Roaming\mIRC

descriptiontrojan heur - Page 1 EmptyRe: trojan heur

more_horiz
[2010/01/17 20:54:01 | 000,000,000 | ---D | C] -- C:\Program Files\mIRC
[2010/01/17 20:50:58 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Mpeg2Data.ax
[2010/01/17 20:48:12 | 000,623,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\localspl.dll
[2010/01/17 20:47:30 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msvfw32.dll
[2010/01/17 20:47:30 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\avifil32.dll
[2010/01/17 20:47:30 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mciavi32.dll
[2010/01/17 20:47:30 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\avicap32.dll
[2010/01/17 20:42:07 | 001,808,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0046.dll
[2010/01/17 20:42:07 | 001,793,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0045.dll
[2010/01/17 20:42:07 | 001,558,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0049.dll
[2010/01/17 20:42:07 | 001,411,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0047.dll
[2010/01/17 20:42:06 | 005,499,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0022.dll
[2010/01/17 20:42:06 | 002,136,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0021.dll
[2010/01/17 20:42:06 | 001,782,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0039.dll
[2010/01/17 20:42:06 | 001,236,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0020.dll
[2010/01/17 20:42:05 | 007,964,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0024.dll
[2010/01/17 20:42:05 | 006,224,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0027.dll
[2010/01/17 20:42:05 | 005,791,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0026.dll
[2010/01/17 20:42:05 | 004,175,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0010.dll
[2010/01/17 20:42:04 | 006,781,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0019.dll
[2010/01/17 20:42:04 | 004,981,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0013.dll
[2010/01/17 20:42:04 | 003,331,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0018.dll
[2010/01/17 20:42:04 | 002,466,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0011.dll
[2010/01/17 20:42:03 | 011,722,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0001.dll
[2010/01/17 20:42:03 | 004,164,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0002.dll
[2010/01/17 20:42:03 | 001,452,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0003.dll
[2010/01/17 20:42:02 | 003,419,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons004a.dll
[2010/01/17 20:42:02 | 001,702,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons004b.dll
[2010/01/17 20:42:01 | 006,014,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons001a.dll
[2010/01/17 20:42:01 | 004,093,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons004c.dll
[2010/01/17 20:42:01 | 004,045,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons003e.dll
[2010/01/17 20:42:01 | 001,972,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons004e.dll
[2010/01/17 20:42:01 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons002a.dll
[2010/01/17 20:42:00 | 006,585,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons001b.dll
[2010/01/17 20:42:00 | 006,346,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons001d.dll
[2010/01/17 20:41:59 | 009,892,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons000a.dll
[2010/01/17 20:41:59 | 006,237,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons000c.dll
[2010/01/17 20:41:59 | 005,654,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons000f.dll
[2010/01/17 20:41:59 | 001,722,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons000d.dll
[2010/01/17 20:41:58 | 007,042,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons081a.dll
[2010/01/17 20:41:58 | 005,090,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0416.dll
[2010/01/17 20:41:58 | 005,031,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0816.dll
[2010/01/17 20:41:58 | 004,616,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0414.dll
[2010/01/17 20:41:57 | 005,071,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsModels0011.dll
[2010/01/17 20:41:57 | 003,104,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0047.dll
[2010/01/17 20:41:57 | 003,104,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0046.dll
[2010/01/17 20:41:57 | 003,104,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0045.dll
[2010/01/17 20:41:56 | 003,104,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0049.dll
[2010/01/17 20:41:56 | 003,104,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0039.dll
[2010/01/17 20:41:56 | 003,104,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0020.dll
[2010/01/17 20:41:56 | 001,965,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0024.dll
[2010/01/17 20:41:56 | 001,801,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0022.dll
[2010/01/17 20:41:56 | 001,801,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0021.dll
[2010/01/17 20:41:55 | 004,495,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0010.dll
[2010/01/17 20:41:55 | 003,466,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0013.dll
[2010/01/17 20:41:55 | 002,657,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0011.dll
[2010/01/17 20:41:55 | 001,966,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0027.dll
[2010/01/17 20:41:55 | 001,965,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0026.dll
[2010/01/17 20:41:54 | 004,497,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0019.dll
[2010/01/17 20:41:54 | 002,599,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0001.dll
[2010/01/17 20:41:54 | 001,965,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0018.dll
[2010/01/17 20:41:54 | 001,965,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0003.dll
[2010/01/17 20:41:54 | 001,965,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0002.dll
[2010/01/17 20:41:54 | 001,523,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0000.dll
[2010/01/17 20:41:53 | 004,875,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0009.dll
[2010/01/17 20:41:53 | 003,104,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData004b.dll
[2010/01/17 20:41:53 | 003,104,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData004a.dll
[2010/01/17 20:41:53 | 002,243,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0007.dll
[2010/01/17 20:41:52 | 003,104,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData004e.dll
[2010/01/17 20:41:52 | 003,104,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData004c.dll
[2010/01/17 20:41:52 | 001,965,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData001a.dll
[2010/01/17 20:41:52 | 001,801,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData003e.dll
[2010/01/17 20:41:52 | 001,801,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData002a.dll
[2010/01/17 20:41:51 | 009,847,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData000a.dll
[2010/01/17 20:41:51 | 004,495,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData001d.dll
[2010/01/17 20:41:51 | 002,643,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData000c.dll
[2010/01/17 20:41:51 | 001,965,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData001b.dll
[2010/01/17 20:41:50 | 004,495,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0416.dll
[2010/01/17 20:41:50 | 004,495,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0414.dll
[2010/01/17 20:41:50 | 002,342,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData000d.dll
[2010/01/17 20:41:50 | 001,965,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData000f.dll
[2010/01/17 20:41:49 | 006,917,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0c1a.dll
[2010/01/17 20:41:49 | 004,495,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0816.dll
[2010/01/17 20:41:49 | 001,965,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData0c1a.dll
[2010/01/17 20:41:49 | 001,965,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsData081a.dll
[2010/01/17 20:39:21 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\kbd106n.dll
[2010/01/17 20:32:20 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\httpapi.dll
[2010/01/17 20:32:20 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\nshhttp.dll
[2010/01/17 20:30:09 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\printcom.dll
[2010/01/17 20:29:35 | 002,036,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2010/01/17 20:29:18 | 000,181,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MpSigStub.exe
[2010/01/17 20:28:56 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wshrm.dll
[2010/01/17 20:28:19 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdxm.tlb
[2010/01/17 20:28:19 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\amcompat.tlb
[2010/01/17 20:24:11 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2010/01/17 20:09:51 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netfxperf.dll
[2010/01/17 20:00:43 | 004,240,384 | ---- | C] (Microsoft) -- C:\Windows\System32\GameUXLegacyGDFs.dll
[2010/01/17 20:00:43 | 001,696,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\gameux.dll
[2010/01/17 20:00:43 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Apphlpdm.dll
[2010/01/17 19:59:56 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\INETRES.dll
[2010/01/17 19:58:16 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rastls.dll
[2010/01/17 19:58:03 | 000,355,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WSDApi.dll
[2010/01/17 19:57:12 | 000,604,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMSPDMOD.DLL
[2010/01/17 19:56:38 | 000,310,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\unregmp2.exe
[2010/01/17 19:56:37 | 008,147,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmploc.DLL
[2010/01/17 19:56:35 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spwmp.dll
[2010/01/17 19:56:35 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxmasf.dll
[2010/01/17 19:56:34 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdxm.ocx
[2010/01/17 19:15:59 | 000,000,000 | R--D | C] -- C:\Users\HORACIO\Searches
[2010/01/17 19:15:51 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Roaming\Identities
[2010/01/17 19:15:49 | 000,000,000 | R--D | C] -- C:\Users\HORACIO\Contacts
[2010/01/17 19:15:47 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Local\VirtualStore
[2010/01/17 19:15:41 | 000,000,000 | -HSD | C] -- C:\Users\HORACIO\AppData\Local\Temporary Internet Files
[2010/01/17 19:15:41 | 000,000,000 | -HSD | C] -- C:\Users\HORACIO\Templates
[2010/01/17 19:15:41 | 000,000,000 | -HSD | C] -- C:\Users\HORACIO\Start Menu
[2010/01/17 19:15:41 | 000,000,000 | -HSD | C] -- C:\Users\HORACIO\SendTo
[2010/01/17 19:15:41 | 000,000,000 | -HSD | C] -- C:\Users\HORACIO\Recent
[2010/01/17 19:15:41 | 000,000,000 | -HSD | C] -- C:\Users\HORACIO\PrintHood
[2010/01/17 19:15:41 | 000,000,000 | -HSD | C] -- C:\Users\HORACIO\NetHood
[2010/01/17 19:15:41 | 000,000,000 | -HSD | C] -- C:\Users\HORACIO\Documents\My Videos
[2010/01/17 19:15:41 | 000,000,000 | -HSD | C] -- C:\Users\HORACIO\Documents\My Pictures
[2010/01/17 19:15:41 | 000,000,000 | -HSD | C] -- C:\Users\HORACIO\Documents\My Music
[2010/01/17 19:15:41 | 000,000,000 | -HSD | C] -- C:\Users\HORACIO\My Documents
[2010/01/17 19:15:41 | 000,000,000 | -HSD | C] -- C:\Users\HORACIO\Local Settings
[2010/01/17 19:15:41 | 000,000,000 | -HSD | C] -- C:\Users\HORACIO\AppData\Local\History
[2010/01/17 19:15:41 | 000,000,000 | -HSD | C] -- C:\Users\HORACIO\Cookies
[2010/01/17 19:15:41 | 000,000,000 | -HSD | C] -- C:\Users\HORACIO\Application Data
[2010/01/17 19:15:41 | 000,000,000 | -HSD | C] -- C:\Users\HORACIO\AppData\Local\Application Data
[2010/01/17 19:15:40 | 000,000,000 | --SD | C] -- C:\Users\HORACIO\AppData\Roaming\Microsoft
[2010/01/17 19:15:40 | 000,000,000 | R--D | C] -- C:\Users\HORACIO\Videos
[2010/01/17 19:15:40 | 000,000,000 | R--D | C] -- C:\Users\HORACIO\Saved Games
[2010/01/17 19:15:40 | 000,000,000 | R--D | C] -- C:\Users\HORACIO\Pictures
[2010/01/17 19:15:40 | 000,000,000 | R--D | C] -- C:\Users\HORACIO\Music
[2010/01/17 19:15:40 | 000,000,000 | R--D | C] -- C:\Users\HORACIO\Links
[2010/01/17 19:15:40 | 000,000,000 | R--D | C] -- C:\Users\HORACIO\Favorites
[2010/01/17 19:15:40 | 000,000,000 | R--D | C] -- C:\Users\HORACIO\Downloads
[2010/01/17 19:15:40 | 000,000,000 | R--D | C] -- C:\Users\HORACIO\Documents
[2010/01/17 19:15:40 | 000,000,000 | R--D | C] -- C:\Users\HORACIO\Desktop
[2010/01/17 19:15:40 | 000,000,000 | -H-D | C] -- C:\Users\HORACIO\AppData
[2010/01/17 19:15:40 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Local\Microsoft
[2010/01/17 19:15:40 | 000,000,000 | ---D | C] -- C:\Users\HORACIO\AppData\Roaming\Media Center Programs
[2010/01/17 19:14:51 | 002,421,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wucltux.dll
[2010/01/17 19:14:51 | 000,044,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups2.dll
[2010/01/17 19:14:23 | 000,575,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapi.dll
[2010/01/17 19:14:23 | 000,087,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wudriver.dll
[2010/01/17 19:14:23 | 000,035,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups.dll
[2010/01/17 19:13:52 | 000,171,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuwebv.dll
[2010/01/17 19:13:52 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapp.exe
[2010/01/17 19:09:07 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2010/01/11 22:18:00 | 013,679,720 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcpl.dll
[2010/01/11 22:18:00 | 001,515,112 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvsvcr.dll
[2010/01/11 22:18:00 | 000,962,664 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvsvc.dll
[2010/01/11 22:18:00 | 000,129,640 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvvsvc.exe
[2010/01/11 22:18:00 | 000,110,696 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvmctray.dll
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2010/02/02 19:45:39 | 003,145,728 | -HS- | M] () -- C:\Users\HORACIO\NTUSER.DAT
[2010/02/02 19:43:11 | 000,827,424 | -HS- | M] () -- C:\Windows\System32\drivers\fidbox2.dat
[2010/02/02 19:34:38 | 000,000,496 | ---- | M] () -- C:\Users\Public\Desktop\RDesc.lnk
[2010/02/02 19:34:13 | 000,006,004 | -HS- | M] () -- C:\Windows\System32\drivers\fidbox2.idx
[2010/02/02 19:34:12 | 000,900,026 | ---- | M] (Bllua ) -- C:\Users\HORACIO\Desktop\Instalar_RDesc_2.27.exe
[2010/02/02 19:30:34 | 000,003,664 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010/02/02 19:30:34 | 000,003,664 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010/02/02 18:47:00 | 000,000,888 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2010/02/02 18:36:04 | 006,299,344 | ---- | M] () -- C:\Users\HORACIO\Desktop\Resetter_v2.2.0.0.rar
[2010/02/02 17:30:42 | 000,052,941 | ---- | M] () -- C:\ProgramData\nvModes.dat
[2010/02/02 17:30:42 | 000,052,941 | ---- | M] () -- C:\ProgramData\nvModes.001
[2010/02/02 17:30:41 | 000,000,000 | ---- | M] () -- C:\Windows\System32\drivers\lvuvc.hs
[2010/02/02 17:30:40 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010/02/02 15:48:25 | 000,000,426 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{0DA21C02-D373-4E84-BC24-7AB1B6914BEF}.job
[2010/02/02 13:19:03 | 000,077,312 | ---- | M] () -- C:\Users\HORACIO\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/02/02 13:11:09 | 000,001,854 | ---- | M] () -- C:\Users\Public\Desktop\Safari.lnk
[2010/02/02 13:10:45 | 000,694,964 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2010/02/02 13:10:45 | 000,598,350 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010/02/02 13:10:45 | 000,101,988 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010/02/02 13:09:52 | 029,635,880 | ---- | M] (Apple Inc.) -- C:\Users\HORACIO\Desktop\SafariSetup.exe
[2010/02/02 13:04:36 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2010/02/02 13:04:36 | 000,000,374 | ---- | M] () -- C:\Windows\tasks\AWC Startup.job
[2010/02/02 13:04:00 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010/02/02 13:03:48 | 3756,412,928 | -HS- | M] () -- C:\hiberfil.sys
[2010/02/02 13:02:52 | 006,924,320 | -HS- | M] () -- C:\Windows\System32\drivers\fidbox.dat
[2010/02/02 13:02:52 | 000,058,320 | -HS- | M] () -- C:\Windows\System32\drivers\fidbox.idx
[2010/02/02 13:02:48 | 000,524,288 | -HS- | M] () -- C:\Users\HORACIO\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000001.regtrans-ms
[2010/02/02 13:02:48 | 000,065,536 | -HS- | M] () -- C:\Users\HORACIO\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TM.blf
[2010/02/02 13:02:43 | 003,293,202 | -H-- | M] () -- C:\Users\HORACIO\AppData\Local\IconCache.db
[2010/02/02 12:49:44 | 000,000,872 | ---- | M] () -- C:\Users\HORACIO\Desktop\WinAVI MP4 Converter.lnk
[2010/02/02 12:36:53 | 000,000,621 | ---- | M] () -- C:\Users\HORACIO\Desktop\Amazing Bubbles 3D Screensaver.lnk
[2010/02/02 12:36:29 | 001,244,718 | ---- | M] (Rixane Interactive ) -- C:\Users\HORACIO\Desktop\amazingbubbles3d_dc.exe
[2010/02/02 12:30:46 | 000,000,137 | ---- | M] () -- C:\Users\HORACIO\Desktop\IObit Freeware.url
[2010/02/02 01:21:11 | 000,548,864 | ---- | M] (OldTimer Tools) -- C:\Users\HORACIO\Desktop\OTL.exe
[2010/02/02 01:15:21 | 000,093,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\dxsdkuninst.exe
[2010/02/02 00:00:29 | 000,000,374 | ---- | M] () -- C:\Windows\tasks\NeroLiveEpgUpdate-HORACIO-PC_HORACIO.job
[2010/02/01 11:39:12 | 000,001,670 | ---- | M] () -- C:\Users\HORACIO\Desktop\CCleaner.lnk
[2010/02/01 11:38:53 | 003,370,400 | ---- | M] (Piriform Ltd) -- C:\Users\HORACIO\Desktop\ccsetup228.exe
[2010/01/31 21:34:07 | 001,146,696 | ---- | M] (Microsoft Corporation) -- C:\Users\HORACIO\Desktop\wlsetup-custom.exe
[2010/01/31 17:51:39 | 000,001,104 | ---- | M] () -- C:\Users\HORACIO\Desktop\CNET TechTracker.lnk
[2010/01/31 17:51:39 | 000,001,096 | ---- | M] () -- C:\Users\HORACIO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CNET TechTracker.lnk
[2010/01/31 17:48:47 | 003,404,816 | ---- | M] (CBS Interactive) -- C:\Users\HORACIO\Desktop\CNET_TechTracker_1_3_52_Setup.exe
[2010/01/31 12:19:42 | 000,000,818 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/01/31 01:02:29 | 000,000,136 | ---- | M] () -- C:\Users\HORACIO\Desktop\Microsoft Flight Simulator X - Shortcut.lnk
[2010/01/30 11:47:55 | 000,105,648 | ---- | M] () -- C:\Users\HORACIO\AppData\Local\GDIPFONTCACHEV1.DAT
[2010/01/30 11:42:30 | 000,392,296 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2010/01/30 11:13:00 | 000,000,169 | ---- | M] () -- C:\Users\HORACIO\AppData\Roaming\default.rss
[2010/01/29 10:49:16 | 000,000,827 | ---- | M] () -- C:\Users\HORACIO\Desktop\KAV7-CM-20100726-0784C95D.KEY
[2010/01/29 01:47:37 | 000,001,931 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2010/01/27 12:48:37 | 000,011,909 | ---- | M] () -- C:\My_CFix_Quarantine.zip
[2010/01/27 12:38:05 | 000,011,909 | ---- | M] () -- C:\My_AVZ_Quarantine.zip
[2010/01/27 12:37:59 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts
[2010/01/27 11:48:58 | 000,000,215 | ---- | M] () -- C:\Windows\system.ini
[2010/01/27 00:51:11 | 000,000,902 | ---- | M] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2010/01/26 09:43:59 | 000,000,054 | ---- | M] () -- C:\Users\HORACIO\AppData\Roaming\2ef08e46
[2010/01/25 16:44:45 | 000,000,333 | ---- | M] () -- C:\Windows\win.ini
[2010/01/25 14:49:29 | 000,812,344 | ---- | M] (Trend Micro Inc.) -- C:\Users\HORACIO\Desktop\HJTInstall.exe
[2010/01/25 00:05:23 | 000,239,120 | ---- | M] (Kaspersky Lab) -- C:\Windows\System32\drivers\klif.sys
[2010/01/25 00:05:23 | 000,033,808 | ---- | M] (Kaspersky Lab) -- C:\Windows\System32\drivers\klbg.sys
[2010/01/25 00:05:22 | 000,108,059 | ---- | M] () -- C:\Windows\System32\drivers\klin.dat
[2010/01/25 00:05:22 | 000,095,259 | ---- | M] () -- C:\Windows\System32\drivers\klick.dat
[2010/01/24 23:43:54 | 009,953,316 | ---- | M] () -- C:\Users\HORACIO\Desktop\reguistro recien copiado.reg
[2010/01/24 22:54:42 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2010/01/24 22:54:42 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010/01/24 22:54:23 | 000,000,209 | ---- | M] () -- C:\Windows\wininit.ini
[2010/01/24 21:00:20 | 000,000,042 | ---- | M] () -- C:\Windows\System32\scud.udf
[2010/01/24 20:06:40 | 000,000,232 | ---- | M] () -- C:\Windows\reimage.ini
[2010/01/24 20:04:27 | 000,000,166 | ---- | M] () -- C:\Windows\System32\Compress.res
[2010/01/24 19:35:41 | 016,409,960 | ---- | M] (Safer Networking Limited ) -- C:\Users\HORACIO\Desktop\spybotsd162.exe
[2010/01/23 23:27:10 | 000,000,056 | ---- | M] () -- C:\Users\HORACIO\AppData\Local\84756-11986-27475-00TC1-94865
[2010/01/23 20:43:10 | 000,001,700 | ---- | M] () -- C:\Users\HORACIO\Desktop\LimeWire 5.4.6.lnk
[2010/01/23 20:42:53 | 018,848,592 | ---- | M] (Lime Wire LLC) -- C:\Users\HORACIO\Desktop\LimeWireWin.exe
[2010/01/22 15:54:25 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_07_00.Wdf
[2010/01/22 01:37:34 | 000,319,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\DIFxAPI.dll
[2010/01/22 01:13:37 | 000,000,916 | ---- | M] () -- C:\Users\HORACIO\Desktop\Driver Genius Professional Edition.lnk
[2010/01/20 22:18:59 | 000,001,851 | ---- | M] () -- C:\Users\Public\Desktop\TuneUp Utilities.lnk
[2010/01/20 21:03:58 | 000,004,767 | ---- | M] () -- C:\Windows\Irremote.ini
[2010/01/20 21:00:05 | 000,002,527 | ---- | M] () -- C:\Users\Public\Desktop\Nero StartSmart.lnk
[2010/01/19 23:51:47 | 000,000,037 | ---- | M] () -- C:\Windows\sys05420.ini
[2010/01/19 19:49:59 | 000,000,376 | ---- | M] () -- C:\Windows\ODBC.INI
[2010/01/19 02:28:59 | 000,000,749 | RH-- | M] () -- C:\Windows\WindowsShell.Manifest
[2010/01/19 01:54:35 | 000,101,888 | ---- | M] (Infineon Technologies AG) -- C:\Windows\System32\ifxcardm.dll
[2010/01/19 01:54:35 | 000,082,432 | ---- | M] (Gemalto, Inc.) -- C:\Windows\System32\axaltocm.dll
[2010/01/19 00:43:45 | 000,002,033 | ---- | M] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2010/01/18 22:05:25 | 000,000,734 | ---- | M] () -- C:\Users\Public\Desktop\AOL 9.5.lnk
[2010/01/18 22:00:48 | 000,000,335 | ---- | M] () -- C:\Windows\nsreg.dat
[2010/01/18 21:30:07 | 000,000,852 | ---- | M] () -- C:\Users\HORACIO\Documents\imap.aol.com.iaf
[2010/01/18 19:06:39 | 000,000,919 | ---- | M] () -- C:\Users\HORACIO\Desktop\YouTube Downloader.lnk
[2010/01/18 12:59:48 | 000,061,224 | ---- | M] () -- C:\Users\HORACIO\GoToAssistDownloadHelper.exe
[2010/01/18 12:38:55 | 000,000,877 | ---- | M] () -- C:\Users\Public\Desktop\Game Booster.lnk
[2010/01/18 12:35:09 | 000,001,014 | ---- | M] () -- C:\Users\Public\Desktop\Advanced SystemCare.lnk
[2010/01/18 09:04:50 | 039,282,438 | ---- | M] () -- C:\Users\HORACIO\Documents\R180772.exe
[2010/01/18 08:59:54 | 021,378,440 | ---- | M] () -- C:\Users\HORACIO\Documents\R152143.EXE
[2010/01/18 08:52:21 | 000,000,000 | ---- | M] () -- C:\Windows\I531_1013.INI
[2010/01/18 08:47:09 | 000,074,703 | ---- | M] () -- C:\Windows\System32\mfc45.dll
[2010/01/18 08:37:06 | 000,056,816 | ---- | M] (Avira GmbH) -- C:\Windows\System32\drivers\avgntflt.sys
[2010/01/18 00:43:01 | 000,002,077 | ---- | M] () -- C:\Users\HORACIO\Desktop\Windows Live Mail.lnk
[2010/01/18 00:42:39 | 000,001,985 | ---- | M] () -- C:\Users\HORACIO\Desktop\Windows Live Messenger .lnk
[2010/01/18 00:37:52 | 001,146,184 | ---- | M] (Microsoft Corporation) -- C:\Users\HORACIO\Desktop\wlsetup-web.exe
[2010/01/17 23:53:10 | 000,001,804 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2010/01/17 23:51:20 | 000,001,726 | ---- | M] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2010/01/17 23:46:14 | 018,030,130 | ---- | M] () -- C:\Users\HORACIO\Documents\vlc-1.0.3-win32.exe
[2010/01/17 23:37:39 | 000,001,849 | ---- | M] () -- C:\Users\HORACIO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Stardock ObjectDock.lnk
[2010/01/17 23:36:55 | 000,000,941 | ---- | M] () -- C:\Users\Public\Desktop\ObjectDock.lnk
[2010/01/17 22:05:49 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK
[2010/01/17 21:26:17 | 000,289,792 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll
[2010/01/17 21:26:17 | 000,156,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\t2embed.dll
[2010/01/17 21:26:17 | 000,072,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\fontsub.dll
[2010/01/17 21:26:17 | 000,034,304 | ---- | M] (Adobe Systems) -- C:\Windows\System32\atmlib.dll
[2010/01/17 21:26:17 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dciman32.dll
[2010/01/17 21:25:17 | 000,272,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\polstore.dll
[2010/01/17 21:25:17 | 000,061,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\winipsec.dll
[2010/01/17 21:24:18 | 000,001,820 | ---- | M] () -- C:\Windows\System32\rasctrnm.h
[2010/01/17 21:21:04 | 000,105,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\netiohlp.dll
[2010/01/17 21:21:04 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NETSTAT.EXE
[2010/01/17 21:21:04 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ARP.EXE
[2010/01/17 21:21:04 | 000,017,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ROUTE.EXE
[2010/01/17 21:21:04 | 000,017,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\netevent.dll
[2010/01/17 21:21:04 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\MRINFO.EXE
[2010/01/17 21:21:04 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\finger.exe
[2010/01/17 21:21:04 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\TCPSVCS.EXE
[2010/01/17 21:21:04 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\HOSTNAME.EXE
[2010/01/17 21:17:56 | 002,501,921 | ---- | M] () -- C:\Windows\System32\wlan.tmf
[2010/01/17 21:17:56 | 000,127,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\L2SecHC.dll
[2010/01/17 21:17:55 | 000,302,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wlansec.dll
[2010/01/17 21:17:55 | 000,293,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wlanmsm.dll
[2010/01/17 21:17:55 | 000,068,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wlanhlp.dll
[2010/01/17 21:17:55 | 000,065,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wlanapi.dll
[2010/01/17 21:16:52 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msxml3r.dll
[2010/01/17 21:16:51 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msxml6r.dll
[2010/01/17 21:15:22 | 001,259,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lsasrv.dll
[2010/01/17 21:13:33 | 002,868,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mf.dll
[2010/01/17 21:13:33 | 000,098,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mfps.dll
[2010/01/17 21:13:33 | 000,053,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\rrinstaller.exe
[2010/01/17 21:13:33 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mfpmp.exe
[2010/01/17 21:13:33 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mferror.dll
[2010/01/17 21:13:32 | 002,386,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\WMVCORE.DLL
[2010/01/17 21:12:27 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll
[2010/01/17 21:04:17 | 000,001,980 | ---- | M] () -- C:\Users\Public\Desktop\Dell Support Center.lnk
[2010/01/17 21:03:12 | 003,600,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
[2010/01/17 21:03:12 | 003,548,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
[2010/01/17 20:58:10 | 000,136,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\aaclient.dll
[2010/01/17 20:58:10 | 000,053,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\tsgqec.dll
[2010/01/17 20:55:03 | 000,714,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\timedate.cpl
[2010/01/17 20:54:01 | 000,000,748 | ---- | M] () -- C:\Users\Public\Desktop\mIRC.lnk
[2010/01/17 20:50:58 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\Mpeg2Data.ax
[2010/01/17 20:48:12 | 000,623,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\localspl.dll
[2010/01/17 20:47:30 | 000,123,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msvfw32.dll
[2010/01/17 20:47:30 | 000,091,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\avifil32.dll
[2010/01/17 20:47:30 | 000,082,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mciavi32.dll
[2010/01/17 20:47:30 | 000,065,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\avicap32.dll
[2010/01/17 20:42:07 | 001,808,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0046.dll
[2010/01/17 20:42:07 | 001,793,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0045.dll
[2010/01/17 20:42:07 | 001,558,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0049.dll
[2010/01/17 20:42:07 | 001,411,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0047.dll
[2010/01/17 20:42:06 | 005,499,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0022.dll
[2010/01/17 20:42:06 | 002,136,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0021.dll
[2010/01/17 20:42:06 | 001,782,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0039.dll
[2010/01/17 20:42:06 | 001,236,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0020.dll
[2010/01/17 20:42:05 | 007,964,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0024.dll
[2010/01/17 20:42:05 | 006,224,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0027.dll
[2010/01/17 20:42:05 | 005,791,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0026.dll
[2010/01/17 20:42:05 | 004,175,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0010.dll
[2010/01/17 20:42:04 | 006,781,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0019.dll
[2010/01/17 20:42:04 | 004,981,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0013.dll
[2010/01/17 20:42:04 | 003,331,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0018.dll
[2010/01/17 20:42:04 | 002,466,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0011.dll
[2010/01/17 20:42:03 | 011,722,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0001.dll
[2010/01/17 20:42:03 | 004,164,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0002.dll
[2010/01/17 20:42:03 | 001,452,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0003.dll
[2010/01/17 20:42:02 | 004,093,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons004c.dll
[2010/01/17 20:42:02 | 003,419,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons004a.dll
[2010/01/17 20:42:02 | 001,702,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons004b.dll
[2010/01/17 20:42:01 | 006,014,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons001a.dll
[2010/01/17 20:42:01 | 004,045,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons003e.dll
[2010/01/17 20:42:01 | 001,972,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons004e.dll
[2010/01/17 20:42:01 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons002a.dll
[2010/01/17 20:42:00 | 009,892,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons000a.dll
[2010/01/17 20:42:00 | 006,585,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons001b.dll
[2010/01/17 20:42:00 | 006,346,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons001d.dll
[2010/01/17 20:41:59 | 006,237,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons000c.dll
[2010/01/17 20:41:59 | 005,654,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons000f.dll
[2010/01/17 20:41:59 | 004,616,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0414.dll
[2010/01/17 20:41:59 | 001,722,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons000d.dll
[2010/01/17 20:41:58 | 007,042,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons081a.dll
[2010/01/17 20:41:58 | 005,090,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0416.dll
[2010/01/17 20:41:58 | 005,031,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0816.dll
[2010/01/17 20:41:57 | 005,071,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsModels0011.dll
[2010/01/17 20:41:57 | 003,104,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0049.dll
[2010/01/17 20:41:57 | 003,104,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0047.dll
[2010/01/17 20:41:57 | 003,104,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0046.dll
[2010/01/17 20:41:57 | 003,104,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0045.dll
[2010/01/17 20:41:56 | 003,104,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0039.dll
[2010/01/17 20:41:56 | 003,104,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0020.dll
[2010/01/17 20:41:56 | 001,965,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0024.dll
[2010/01/17 20:41:56 | 001,801,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0022.dll
[2010/01/17 20:41:56 | 001,801,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0021.dll
[2010/01/17 20:41:55 | 004,495,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0010.dll
[2010/01/17 20:41:55 | 003,466,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0013.dll
[2010/01/17 20:41:55 | 002,657,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0011.dll
[2010/01/17 20:41:55 | 001,966,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0027.dll
[2010/01/17 20:41:55 | 001,965,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0026.dll
[2010/01/17 20:41:54 | 004,497,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0019.dll
[2010/01/17 20:41:54 | 002,599,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0001.dll
[2010/01/17 20:41:54 | 001,965,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0018.dll
[2010/01/17 20:41:54 | 001,965,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0003.dll
[2010/01/17 20:41:54 | 001,965,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0002.dll
[2010/01/17 20:41:54 | 001,523,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0000.dll
[2010/01/17 20:41:53 | 004,875,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0009.dll
[2010/01/17 20:41:53 | 003,104,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData004c.dll
[2010/01/17 20:41:53 | 003,104,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData004b.dll
[2010/01/17 20:41:53 | 003,104,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData004a.dll
[2010/01/17 20:41:53 | 002,243,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0007.dll
[2010/01/17 20:41:52 | 003,104,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData004e.dll
[2010/01/17 20:41:52 | 001,965,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData001b.dll
[2010/01/17 20:41:52 | 001,965,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData001a.dll
[2010/01/17 20:41:52 | 001,801,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData003e.dll
[2010/01/17 20:41:52 | 001,801,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData002a.dll
[2010/01/17 20:41:51 | 009,847,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData000a.dll
[2010/01/17 20:41:51 | 004,495,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData001d.dll
[2010/01/17 20:41:51 | 002,643,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData000c.dll
[2010/01/17 20:41:50 | 004,495,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0816.dll
[2010/01/17 20:41:50 | 004,495,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0416.dll
[2010/01/17 20:41:50 | 004,495,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0414.dll
[2010/01/17 20:41:50 | 002,342,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData000d.dll
[2010/01/17 20:41:50 | 001,965,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData000f.dll
[2010/01/17 20:41:49 | 006,917,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0c1a.dll
[2010/01/17 20:41:49 | 001,965,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData0c1a.dll
[2010/01/17 20:41:49 | 001,965,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NlsData081a.dll
[2010/01/17 20:39:21 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\kbd106n.dll
[2010/01/17 20:32:20 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\httpapi.dll
[2010/01/17 20:32:20 | 000,024,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\nshhttp.dll
[2010/01/17 20:30:09 | 000,037,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\printcom.dll
[2010/01/17 20:29:35 | 002,036,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2010/01/17 20:28:56 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wshrm.dll
[2010/01/17 20:28:19 | 000,043,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msdxm.tlb
[2010/01/17 20:28:19 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\amcompat.tlb
[2010/01/17 20:15:32 | 024,444,928 | ---- | M] () -- C:\Windows\ocsetup_install_NetFx3.etl
[2010/01/17 20:15:31 | 000,196,608 | ---- | M] () -- C:\Windows\ocsetup_cbs_install_NetFx3.perf
[2010/01/17 20:15:31 | 000,065,536 | ---- | M] () -- C:\Windows\ocsetup_cbs_install_NetFx3.dpx
[2010/01/17 20:09:51 | 000,041,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\netfxperf.dll
[2010/01/17 20:00:43 | 004,240,384 | ---- | M] (Microsoft) -- C:\Windows\System32\GameUXLegacyGDFs.dll
[2010/01/17 20:00:43 | 001,696,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\gameux.dll
[2010/01/17 20:00:43 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\Apphlpdm.dll
[2010/01/17 19:59:56 | 000,084,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\INETRES.dll
[2010/01/17 19:58:16 | 000,243,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\rastls.dll
[2010/01/17 19:58:03 | 000,355,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\WSDApi.dll
[2010/01/17 19:57:12 | 000,604,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\WMSPDMOD.DLL
[2010/01/17 19:56:38 | 000,310,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\unregmp2.exe
[2010/01/17 19:56:37 | 008,147,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wmploc.DLL
[2010/01/17 19:56:35 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spwmp.dll
[2010/01/17 19:56:35 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dxmasf.dll
[2010/01/17 19:56:34 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msdxm.ocx
[2010/01/17 19:19:32 | 000,000,680 | ---- | M] () -- C:\Users\HORACIO\AppData\Local\d3d9caps.dat
[2010/01/17 19:17:12 | 000,524,288 | -HS- | M] () -- C:\Users\HORACIO\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000002.regtrans-ms
[2010/01/17 19:15:41 | 000,000,020 | -HS- | M] () -- C:\Users\HORACIO\ntuser.ini
[2010/01/17 19:14:51 | 002,421,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wucltux.dll
[2010/01/17 19:14:51 | 000,044,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wups2.dll
[2010/01/17 19:14:23 | 000,575,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wuapi.dll
[2010/01/17 19:14:23 | 000,087,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wudriver.dll
[2010/01/17 19:14:23 | 000,035,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wups.dll
[2010/01/17 19:13:52 | 000,171,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wuwebv.dll
[2010/01/17 19:13:52 | 000,033,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wuapp.exe
[2010/01/17 19:09:55 | 000,041,176 | ---- | M] () -- C:\Windows\System32\license.rtf
[2010/01/14 11:12:06 | 000,181,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\MpSigStub.exe
[2010/01/11 23:03:33 | 014,924,392 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvoglv32.dll
[2010/01/11 23:03:33 | 011,639,400 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvcompiler.dll
[2010/01/11 23:03:33 | 011,586,280 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvlddmkm.sys
[2010/01/11 23:03:33 | 009,388,648 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvd3dum.dll
[2010/01/11 23:03:33 | 004,321,384 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvwgf2um.dll
[2010/01/11 23:03:33 | 004,077,672 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvenc.dll
[2010/01/11 23:03:33 | 004,061,800 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvcuda.dll
[2010/01/11 23:03:33 | 002,243,176 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvid.dll
[2010/01/11 23:03:33 | 001,280,616 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvapi.dll
[2010/01/11 23:03:33 | 000,795,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dpinst.exe
[2010/01/11 23:03:33 | 000,182,888 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvcod189.dll
[2010/01/11 23:03:33 | 000,068,200 | ---- | M] (Khronos Group) -- C:\Windows\System32\OpenCL.dll
[2010/01/11 23:03:33 | 000,010,920 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvBridge.kmd
[2010/01/11 23:03:33 | 000,007,437 | ---- | M] () -- C:\Windows\System32\nvinfo.pb
[2010/01/11 22:18:44 | 000,271,481 | ---- | M] () -- C:\Windows\System32\NvApps.xml
[2010/01/11 22:18:44 | 000,065,332 | ---- | M] () -- C:\Windows\System32\NvwsApps.xml
[2010/01/11 22:18:00 | 013,679,720 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvcpl.dll
[2010/01/11 22:18:00 | 001,515,112 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvsvcr.dll
[2010/01/11 22:18:00 | 000,962,664 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvsvc.dll
[2010/01/11 22:18:00 | 000,129,640 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvvsvc.exe
[2010/01/11 22:18:00 | 000,110,696 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvmctray.dll
[2010/01/07 16:07:14 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010/01/07 16:07:04 | 000,019,160 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2010/02/02 19:27:44 | 000,000,827 | ---- | C] () -- C:\Users\HORACIO\Desktop\KAV7-CM-20100726-0784C95D.KEY
[2010/02/02 18:36:02 | 006,299,344 | ---- | C] () -- C:\Users\HORACIO\Desktop\Resetter_v2.2.0.0.rar
[2010/02/02 13:11:09 | 000,001,854 | ---- | C] () -- C:\Users\Public\Desktop\Safari.lnk
[2010/02/02 12:49:44 | 000,000,872 | ---- | C] () -- C:\Users\HORACIO\Desktop\WinAVI MP4 Converter.lnk
[2010/02/02 12:36:53 | 000,000,621 | ---- | C] () -- C:\Users\HORACIO\Desktop\Amazing Bubbles 3D Screensaver.lnk
[2010/02/02 12:36:52 | 000,908,288 | ---- | C] () -- C:\Windows\Amazing Bubbles 3D.scr
[2010/02/02 12:36:52 | 000,018,902 | ---- | C] () -- C:\Windows\rixane-icon.ico
[2010/02/02 12:36:52 | 000,000,081 | ---- | C] () -- C:\Windows\amazing-bubbles-3D-homepage.url
[2010/02/02 12:36:52 | 000,000,046 | ---- | C] () -- C:\Windows\rixane-screensavers.url
[2010/02/01 11:39:12 | 000,001,670 | ---- | C] () -- C:\Users\HORACIO\Desktop\CCleaner.lnk
[2010/01/31 17:52:20 | 000,000,032 | ---- | C] () -- C:\Users\HORACIO\AppData\Local\xobni_installer_updater.log
[2010/01/31 17:51:39 | 000,001,104 | ---- | C] () -- C:\Users\HORACIO\Desktop\CNET TechTracker.lnk
[2010/01/31 17:51:39 | 000,001,096 | ---- | C] () -- C:\Users\HORACIO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CNET TechTracker.lnk
[2010/01/31 01:02:29 | 000,000,136 | ---- | C] () -- C:\Users\HORACIO\Desktop\Microsoft Flight Simulator X - Shortcut.lnk
[2010/01/30 11:13:00 | 000,000,169 | ---- | C] () -- C:\Users\HORACIO\AppData\Roaming\default.rss
[2010/01/27 12:48:37 | 000,011,909 | ---- | C] () -- C:\My_CFix_Quarantine.zip
[2010/01/27 12:38:05 | 000,011,909 | ---- | C] () -- C:\My_AVZ_Quarantine.zip
[2010/01/27 09:17:21 | 3756,412,928 | -HS- | C] () -- C:\hiberfil.sys
[2010/01/27 01:04:56 | 000,000,818 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/01/27 00:51:11 | 000,000,902 | ---- | C] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2010/01/26 11:40:43 | 000,261,632 | ---- | C] () -- C:\Windows\PEV.exe
[2010/01/26 11:40:43 | 000,077,312 | ---- | C] () -- C:\Windows\MBR.exe
[2010/01/24 23:43:53 | 009,953,316 | ---- | C] () -- C:\Users\HORACIO\Desktop\reguistro recien copiado.reg
[2010/01/24 23:40:28 | 000,108,059 | ---- | C] () -- C:\Windows\System32\drivers\klin.dat
[2010/01/24 23:40:28 | 000,095,259 | ---- | C] () -- C:\Windows\System32\drivers\klick.dat
[2010/01/24 23:39:50 | 006,924,320 | -HS- | C] () -- C:\Windows\System32\drivers\fidbox.dat
[2010/01/24 23:39:50 | 000,827,424 | -HS- | C] () -- C:\Windows\System32\drivers\fidbox2.dat
[2010/01/24 23:39:50 | 000,058,320 | -HS- | C] () -- C:\Windows\System32\drivers\fidbox.idx
[2010/01/24 23:39:50 | 000,005,976 | -HS- | C] () -- C:\Windows\System32\drivers\fidbox2.idx
[2010/01/24 22:54:42 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS
[2010/01/24 22:54:42 | 000,000,000 | RHS- | C] () -- C:\IO.SYS
[2010/01/24 21:00:20 | 000,000,042 | ---- | C] () -- C:\Windows\System32\scud.udf
[2010/01/24 20:04:27 | 000,000,166 | ---- | C] () -- C:\Windows\System32\Compress.res
[2010/01/24 20:04:23 | 000,000,232 | ---- | C] () -- C:\Windows\reimage.ini
[2010/01/24 19:52:30 | 000,000,209 | ---- | C] () -- C:\Windows\wininit.ini
[2010/01/24 10:15:16 | 000,000,054 | ---- | C] () -- C:\Users\HORACIO\AppData\Roaming\2ef08e46
[2010/01/23 23:01:23 | 000,000,056 | ---- | C] () -- C:\Users\HORACIO\AppData\Local\84756-11986-27475-00TC1-94865
[2010/01/23 20:43:10 | 000,001,700 | ---- | C] () -- C:\Users\HORACIO\Desktop\LimeWire 5.4.6.lnk
[2010/01/22 15:54:25 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_07_00.Wdf
[2010/01/22 01:55:41 | 000,007,437 | ---- | C] () -- C:\Windows\System32\nvinfo.pb
[2010/01/22 01:29:27 | 000,006,136 | ---- | C] () -- C:\Windows\System32\drivers\nvphy.bin
[2010/01/22 01:13:37 | 000,000,916 | ---- | C] () -- C:\Users\HORACIO\Desktop\Driver Genius Professional Edition.lnk
[2010/01/20 23:17:22 | 000,000,374 | ---- | C] () -- C:\Windows\tasks\NeroLiveEpgUpdate-HORACIO-PC_HORACIO.job
[2010/01/20 22:18:59 | 000,001,851 | ---- | C] () -- C:\Users\Public\Desktop\TuneUp Utilities.lnk
[2010/01/20 21:03:58 | 000,004,767 | ---- | C] () -- C:\Windows\Irremote.ini
[2010/01/20 21:00:05 | 000,002,527 | ---- | C] () -- C:\Users\Public\Desktop\Nero StartSmart.lnk
[2010/01/20 11:09:20 | 000,000,496 | ---- | C] () -- C:\Users\Public\Desktop\RDesc.lnk
[2010/01/19 23:51:47 | 000,000,037 | ---- | C] () -- C:\Windows\sys05420.ini
[2010/01/19 19:49:59 | 000,000,376 | ---- | C] () -- C:\Windows\ODBC.INI
[2010/01/19 11:47:49 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2010/01/19 11:47:36 | 011,967,524 | ---- | C] () -- C:\Windows\System32\korwbrkr.lex
[2010/01/19 10:17:35 | 000,130,008 | ---- | C] () -- C:\Windows\System32\systemsf.ebd
[2010/01/19 10:17:32 | 000,009,239 | ---- | C] () -- C:\Windows\System32\spcinstrumentation.man
[2010/01/19 10:17:25 | 000,442,788 | ---- | C] () -- C:\Windows\System32\dot3.tmf
[2010/01/19 10:17:24 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2010/01/19 10:17:23 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2010/01/19 10:17:22 | 003,662,128 | ---- | C] () -- C:\Windows\System32\locale.nls
[2010/01/19 10:17:21 | 000,392,170 | ---- | C] () -- C:\Windows\System32\onex.tmf
[2010/01/19 10:17:16 | 000,344,698 | ---- | C] () -- C:\Windows\System32\eaphost.tmf
[2010/01/19 10:16:48 | 000,208,966 | ---- | C] () -- C:\Windows\System32\WFP.TMF
[2010/01/19 10:16:48 | 000,092,918 | ---- | C] () -- C:\Windows\System32\slmgr.vbs
[2010/01/19 10:16:34 | 000,009,212 | ---- | C] () -- C:\Windows\System32\RacUR.xml
[2010/01/19 10:16:32 | 000,000,153 | ---- | C] () -- C:\Windows\System32\RacUREx.xml
[2010/01/19 00:44:43 | 000,001,931 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2010/01/19 00:43:45 | 000,002,033 | ---- | C] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2010/01/19 00:42:14 | 000,000,888 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2010/01/19 00:42:13 | 000,000,884 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2010/01/18 22:05:25 | 000,000,734 | ---- | C] () -- C:\Users\Public\Desktop\AOL 9.5.lnk
[2010/01/18 22:00:48 | 000,000,335 | ---- | C] () -- C:\Windows\nsreg.dat
[2010/01/18 21:30:07 | 000,000,852 | ---- | C] () -- C:\Users\HORACIO\Documents\imap.aol.com.iaf
[2010/01/18 19:06:39 | 000,000,919 | ---- | C] () -- C:\Users\HORACIO\Desktop\YouTube Downloader.lnk
[2010/01/18 12:59:48 | 000,061,224 | ---- | C] () -- C:\Users\HORACIO\GoToAssistDownloadHelper.exe
[2010/01/18 12:38:55 | 000,000,877 | ---- | C] () -- C:\Users\Public\Desktop\Game Booster.lnk
[2010/01/18 12:35:14 | 000,000,374 | ---- | C] () -- C:\Windows\tasks\AWC Startup.job
[2010/01/18 12:35:09 | 000,001,014 | ---- | C] () -- C:\Users\Public\Desktop\Advanced SystemCare.lnk
[2010/01/18 12:35:09 | 000,000,137 | ---- | C] () -- C:\Users\HORACIO\Desktop\IObit Freeware.url
[2010/01/18 11:46:12 | 000,195,122 | ---- | C] () -- C:\Windows\System32\winrm.vbs
[2010/01/18 11:44:33 | 000,012,198 | ---- | C] () -- C:\Windows\System32\gatherWiredInfo.vbs
[2010/01/18 11:44:31 | 000,144,909 | ---- | C] () -- C:\Windows\System32\fsmgmt.msc
[2010/01/18 11:44:26 | 000,145,455 | ---- | C] () -- C:\Windows\System32\perfmon.msc
[2010/01/18 11:44:26 | 000,000,003 | ---- | C] () -- C:\Windows\System32\drivers\MsftWdf_Kernel_01007_Inbox_Critical.Wdf
[2010/01/18 11:17:04 | 000,000,000 | ---- | C] () -- C:\Windows\System32\drivers\lvuvc.hs
[2010/01/18 11:16:51 | 000,266,828 | ---- | C] () -- C:\Windows\System32\drivers\LVAFT.cfg
[2010/01/18 11:16:00 | 000,082,289 | ---- | C] () -- C:\Windows\System32\lvcoinst.ini
[2010/01/18 09:22:12 | 000,077,312 | ---- | C] () -- C:\Users\HORACIO\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/01/18 09:06:43 | 000,000,553 | ---- | C] () -- C:\Windows\USetup.iss
[2010/01/18 09:04:11 | 039,282,438 | ---- | C] () -- C:\Users\HORACIO\Documents\R180772.exe
[2010/01/18 08:59:33 | 021,378,440 | ---- | C] () -- C:\Users\HORACIO\Documents\R152143.EXE
[2010/01/18 08:52:21 | 000,000,000 | ---- | C] () -- C:\Windows\I531_1013.INI
[2010/01/18 08:47:09 | 000,074,703 | ---- | C] () -- C:\Windows\System32\mfc45.dll
[2010/01/18 00:43:01 | 000,002,077 | ---- | C] () -- C:\Users\HORACIO\Desktop\Windows Live Mail.lnk
[2010/01/18 00:42:39 | 000,001,985 | ---- | C] () -- C:\Users\HORACIO\Desktop\Windows Live Messenger .lnk
[2010/01/17 23:53:10 | 000,001,804 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk
[2010/01/17 23:51:20 | 000,001,726 | ---- | C] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2010/01/17 23:45:06 | 018,030,130 | ---- | C] () -- C:\Users\HORACIO\Documents\vlc-1.0.3-win32.exe
[2010/01/17 23:37:39 | 000,001,849 | ---- | C] () -- C:\Users\HORACIO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Stardock ObjectDock.lnk
[2010/01/17 23:36:55 | 000,000,941 | ---- | C] () -- C:\Users\Public\Desktop\ObjectDock.lnk
[2010/01/17 23:17:22 | 000,000,426 | -H-- | C] () -- C:\Windows\tasks\User_Feed_Synchronization-{0DA21C02-D373-4E84-BC24-7AB1B6914BEF}.job
[2010/01/17 23:12:02 | 000,057,667 | ---- | C] () -- C:\Windows\System32\ieuinit.inf
[2010/01/17 22:32:06 | 000,052,941 | ---- | C] () -- C:\ProgramData\nvModes.dat
[2010/01/17 22:32:06 | 000,052,941 | ---- | C] () -- C:\ProgramData\nvModes.001
[2010/01/17 22:05:49 | 000,008,192 | R-S- | C] () -- C:\BOOTSECT.BAK
[2010/01/17 22:05:48 | 000,333,257 | RHS- | C] () -- C:\bootmgr
[2010/01/17 22:05:35 | 000,000,036 | RH-- | C] () -- C:\Windows\DELL_VERSION
[2010/01/17 21:53:38 | 000,144,360 | ---- | C] () -- C:\Windows\System32\drivers\del1028.cty
[2010/01/17 21:24:18 | 000,001,820 | ---- | C] () -- C:\Windows\System32\rasctrnm.h
[2010/01/17 21:17:56 | 002,501,921 | ---- | C] () -- C:\Windows\System32\wlan.tmf
[2010/01/17 21:04:17 | 000,001,980 | ---- | C] () -- C:\Users\Public\Desktop\Dell Support Center.lnk
[2010/01/17 20:54:01 | 000,000,748 | ---- | C] () -- C:\Users\Public\Desktop\mIRC.lnk
[2010/01/17 20:11:23 | 024,444,928 | ---- | C] () -- C:\Windows\ocsetup_install_NetFx3.etl
[2010/01/17 20:11:23 | 000,196,608 | ---- | C] () -- C:\Windows\ocsetup_cbs_install_NetFx3.perf
[2010/01/17 20:11:23 | 000,065,536 | ---- | C] () -- C:\Windows\ocsetup_cbs_install_NetFx3.dpx
[2010/01/17 19:15:43 | 000,000,680 | ---- | C] () -- C:\Users\HORACIO\AppData\Local\d3d9caps.dat
[2010/01/17 19:15:41 | 000,524,288 | -HS- | C] () -- C:\Users\HORACIO\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000002.regtrans-ms
[2010/01/17 19:15:41 | 000,524,288 | -HS- | C] () -- C:\Users\HORACIO\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000001.regtrans-ms
[2010/01/17 19:15:41 | 000,065,536 | -HS- | C] () -- C:\Users\HORACIO\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TM.blf
[2010/01/17 19:15:41 | 000,000,020 | -HS- | C] () -- C:\Users\HORACIO\ntuser.ini
[2010/01/17 19:15:40 | 003,145,728 | -HS- | C] () -- C:\Users\HORACIO\NTUSER.DAT
[2010/01/11 22:18:44 | 000,271,481 | ---- | C] () -- C:\Windows\System32\NvApps.xml
[2010/01/11 22:18:44 | 000,065,332 | ---- | C] () -- C:\Windows\System32\NvwsApps.xml
[2009/10/07 01:46:36 | 000,025,752 | ---- | C] () -- C:\Windows\System32\drivers\LVPr2Mon.sys
[2009/10/07 01:23:08 | 000,013,584 | ---- | C] () -- C:\Windows\System32\drivers\iKeyLFT2.dll
[2009/09/23 23:46:04 | 000,085,504 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll
[2009/08/03 15:07:42 | 000,403,816 | ---- | C] () -- C:\Windows\System32\OGACheckControl.dll
[2009/05/30 01:37:40 | 000,205,824 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2009/05/30 01:31:52 | 000,881,664 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2008/09/12 15:21:02 | 000,000,547 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll.manifest
[2007/09/04 11:56:10 | 000,164,352 | ---- | C] () -- C:\Windows\System32\unrar.dll
[2007/03/19 05:04:58 | 000,003,584 | ---- | C] () -- C:\Windows\System32\namResES.dll
[2007/03/19 05:04:58 | 000,003,072 | ---- | C] () -- C:\Windows\System32\namResIT.dll
[2007/03/19 05:04:58 | 000,003,072 | ---- | C] () -- C:\Windows\System32\namResFR.dll
[2007/03/19 05:04:58 | 000,003,072 | ---- | C] () -- C:\Windows\System32\namResENG.dll
[2007/03/19 05:04:58 | 000,003,072 | ---- | C] () -- C:\Windows\System32\namResDE.dll
[2007/03/19 05:04:56 | 000,003,584 | ---- | C] () -- C:\Windows\System32\namResPTB.dll
[2007/03/19 05:04:56 | 000,003,072 | ---- | C] () -- C:\Windows\System32\namResZHC.dll
[2007/03/19 05:04:56 | 000,003,072 | ---- | C] () -- C:\Windows\System32\namResKO.dll
[2007/03/19 05:04:56 | 000,003,072 | ---- | C] () -- C:\Windows\System32\namResJA.dll
[2007/03/19 05:04:54 | 000,022,016 | ---- | C] () -- C:\Windows\System32\nam_page.dll
[2007/03/19 05:04:54 | 000,003,072 | ---- | C] () -- C:\Windows\System32\namResZHT.dll
[2007/02/05 19:05:26 | 000,000,038 | ---- | C] () -- C:\Windows\AviSplitter.INI
[2006/11/02 07:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006/11/02 02:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2001/07/20 07:09:58 | 000,196,608 | ---- | C] () -- C:\Windows\System32\swfobjs.dll

========== Alternate Data Streams ==========

@Alternate Data Stream - 115 bytes -> C:\ProgramData\TEMP:A8ADE5D8
@Alternate Data Stream - 103 bytes -> C:\ProgramData\TEMP:DFC5A2B2
< End of report >

descriptiontrojan heur - Page 1 EmptyRe: trojan heur

more_horiz
this is the extra report
OTL Extras logfile created on: 2/2/2010 1:23:31 AM - Run 1
OTL by OldTimer - Version 3.1.27.1 Folder = C:\Users\HORACIO\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18882)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.00 Gb Total Physical Memory | 3.00 Gb Available Physical Memory | 72.00% Memory free
7.00 Gb Paging File | 6.00 Gb Available in Paging File | 83.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 298.04 Gb Total Space | 199.62 Gb Free Space | 66.98% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 390.62 Gb Total Space | 332.96 Gb Free Space | 85.24% Space Free | Partition Type: NTFS
Drive F: | 292.97 Gb Total Space | 246.41 Gb Free Space | 84.11% Space Free | Partition Type: NTFS
Drive G: | 247.92 Gb Total Space | 169.94 Gb Free Space | 68.55% Space Free | Partition Type: NTFS
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: HORACIO-PC
Current User Name: HORACIO
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] -- C:\PROGRA~1\MI1933~1\Office12\ONENOTE.EXE "%L" (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{23CC7D6C-44DE-41A9-A984-ABFDEA9E4BC5}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{29FA746C-D0E7-490E-80C0-83CCBB112624}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office12\outlook.exe |
"{7DE68028-D0F5-4668-BD93-3D324B173ECB}" = lport=2869 | protocol=6 | dir=in | app=system |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00E7A50B-0C75-401F-A4FA-FAF741D798A6}" = protocol=17 | dir=in | app=c:\program files\limewire\limewire.exe |
"{0365D8E7-3C2E-4F87-A2D2-EB0C99A5412F}" = protocol=6 | dir=in | app=%systemroot%\explorer.exe |
"{127A2468-2459-4D51-9D5C-1502095967BE}" = protocol=6 | dir=in | app=%systemroot%\explorer.exe |
"{14A5AEEE-7ACC-4C24-9CC8-34BF982D21A3}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{176B6002-A003-40AD-9D29-A63440A1971F}" = protocol=17 | dir=in | app=c:\program files\aol 9.5\waol.exe |
"{26B73FFC-346E-4708-8D74-74BA0FD5D32A}" = protocol=6 | dir=out | app=%systemroot%\explorer.exe |
"{39ACEBB1-E69D-4618-91EF-7898E65D4507}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
"{4014B4DD-E149-4D12-AE91-2E76EB1F0B2E}" = protocol=6 | dir=in | app=c:\program files\common files\aol\acs\aolacsd.exe |
"{40702937-73B1-4BA0-B0F8-4C308B858D61}" = protocol=6 | dir=in | app=c:\program files\itunes\itunes.exe |
"{4427C42E-9B96-4261-B9B1-592262A07861}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\groove.exe |
"{463060C8-55D9-4699-91BF-594895246ECC}" = protocol=6 | dir=in | app=c:\program files\common files\aol\topspeed\3.0\aoltpsd3.exe |
"{60F07F92-3A46-4DD3-9B7B-1F62781DD7AF}" = protocol=6 | dir=out | app=%systemroot%\explorer.exe |
"{631FA709-9EFE-416E-B337-8E13AEC7231D}" = protocol=6 | dir=in | app=c:\program files\common files\aol\loader\aolload.exe |
"{634B0789-3487-4587-94AB-50F79ABE5357}" = protocol=6 | dir=in | app=c:\program files\common files\aol\acs\aoldial.exe |
"{6A056CE6-7C00-4CD6-82F3-4E4F8BA2A150}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{7FAFD966-A976-46C7-9317-38A5DC586C1B}" = protocol=17 | dir=in | app=c:\program files\common files\aol\topspeed\3.0\aoltpsd3.exe |
"{803F4237-B775-4DCF-9BCA-297C9E5D14D2}" = protocol=17 | dir=in | app=c:\program files\logitech\logitech vid\vid.exe |
"{8156C224-BE5B-44E5-9512-3EC3A40812BF}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{85D0402B-FC8A-4BA1-86C5-121120EB9DEB}" = protocol=6 | dir=in | app=c:\program files\common files\aol\1263870160\ee\aolsoftware.exe |
"{86E06BD6-ABCD-4441-8CAE-E848623938E7}" = dir=in | app=c:\program files\windows live\sync\windowslivesync.exe |
"{8A1DAC2C-D3A4-4758-B591-AAA9CC2A9F82}" = protocol=6 | dir=in | app=c:\program files\logitech\logitech vid\vid.exe |
"{934FD6D6-AA13-4EED-AEA4-262B6ECCF692}" = protocol=6 | dir=out | app=%systemroot%\explorer.exe |
"{945FC088-F6B7-46BF-93DA-54C37CC53650}" = protocol=6 | dir=in | app=c:\program files\common files\aol\system information\sinf.exe |
"{964990C9-E885-4A5C-81F0-6826B53042C7}" = protocol=17 | dir=in | app=c:\program files\common files\aol\loader\aolload.exe |
"{A08B9794-E5A2-4954-B995-86BE2762AD7E}" = protocol=17 | dir=in | app=c:\program files\itunes\itunes.exe |
"{A5B38B81-D26C-4E40-B754-120033E81719}" = protocol=6 | dir=in | app=c:\program files\limewire\limewire.exe |
"{BA7A7DC5-5860-46E2-82B8-30102094D7F4}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\groove.exe |
"{BE5E5A27-3BF0-4165-B953-A9946FE835A8}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{D92391C5-7EF3-4422-8FA7-2AD01B633FAE}" = protocol=6 | dir=in | app=%systemroot%\explorer.exe |
"{DD06A051-1637-4F71-9345-8A0483EE6FDD}" = protocol=6 | dir=in | app=c:\program files\aol 9.5\waol.exe |
"{DDBBAD11-9A5F-488B-A73A-F1F5F23DEF2A}" = protocol=17 | dir=in | app=c:\program files\common files\aol\acs\aolacsd.exe |
"{DE4819AA-A779-4F6D-9C0A-433BD78A5258}" = protocol=17 | dir=in | app=c:\program files\common files\aol\1263870160\ee\aolsoftware.exe |
"{F4303C63-4873-4ABB-88C1-9CAC4CDAC4E9}" = protocol=17 | dir=in | app=c:\program files\common files\aol\system information\sinf.exe |
"{FE3971FC-D3BC-4319-9490-EF414A988752}" = protocol=17 | dir=in | app=c:\program files\common files\aol\acs\aoldial.exe |
"TCP Query User{03FE0169-CEDA-4076-989B-19F3394190CD}C:\program files\java\jdk1.6.0_17\jre\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jdk1.6.0_17\jre\bin\javaw.exe |
"TCP Query User{3E255A02-6B74-4D29-BEFB-CB30FFA5D291}C:\program files\mirc\mirc.exe" = protocol=6 | dir=in | app=c:\program files\mirc\mirc.exe |
"TCP Query User{A6EFDE20-4394-435B-A717-A8A9C8E67E18}C:\program files\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\java.exe |
"UDP Query User{006BBAC0-05DF-43FA-A005-BC692AB5D3C0}C:\program files\java\jdk1.6.0_17\jre\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jdk1.6.0_17\jre\bin\javaw.exe |
"UDP Query User{5BF2DA3A-7D7A-402C-8FE8-E5D41472AA92}C:\program files\mirc\mirc.exe" = protocol=17 | dir=in | app=c:\program files\mirc\mirc.exe |
"UDP Query User{72783167-F055-4883-A288-C65D5DC08F43}C:\program files\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\java.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{01AA5F2C-EEBB-47A3-AB7B-B235E620FFDB}_is1" = los Boeing 737-200 Advanced, de las Líneas Aérea LAN, SKY y AER
"{0711500B-9912-4D60-9A49-C577B4503D42}" = Nero Recode Help
"{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour
"{07FF7593-9DEA-40B5-9F87-F557E65BBF60}" = Nero Recode
"{0DFB3DE8-65B9-44FF-AA0A-3BECC5A2BFD1}" = Adobe Flash Player 10 Plugin
"{10A44844-4465-456E-8C97-80BDD4F68845}" = Windows Live ID Sign-in Assistant
"{1122AAC4-AAAA-43BF-B2D4-3C8C12378952}" = Nero InfoTool
"{11A84FCA-C3C7-4AFD-A797-111DB8569DBC}" = Nero BurningROM
"{12345674-DE9A-677A-CCEE-666356D89777}" = Nero BurnRights
"{139E303E-1050-497F-98B1-9AE87B15C463}" = Windows Live Family Safety
"{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}" = QuickTime
"{178832DE-9DE0-4C87-9F82-9315A9B03985}" = Windows Live Writer
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}" = YouTube Downloader 2.5.3
"{1B040683-C390-4711-ABC7-DA8D85E470E7}" = NeroBurningROM
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{26A24AE4-039D-4CA4-87B4-2F83216016F0}" = Java(TM) 6 Update 16
"{26A24AE4-039D-4CA4-87B4-2F83216017FF}" = Java(TM) 6 Update 18
"{2D3455A8-3B15-41A8-99F8-0D4215746463}" = Nero StartSmart
"{30120000-0044-0C0A-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Spanish) 2007 (Beta)
"{3097B151-1F61-4211-A4CC-D70127B226AE}" = SoundTrax
"{3248F0A8-6813-11D6-A77B-00B0D0160000}" = Java(TM) SE Runtime Environment 6
"{32A3A4F4-B792-11D6-A78A-00B0D0160170}" = Java(TM) SE Development Kit 6 Update 17
"{3D5044A5-97B8-45C0-B956-BB2376569188}" = Windows Live Movie Maker
"{3F30CC51-0788-487B-AA83-7214A239C0C0}" = Nero Disc Copy Gadget Help
"{3FA365DF-2D68-45ED-8F83-8C8A33E65143}" = Apple Application Support
"{42929F0F-CE14-47AF-9FC7-FF297A603021}" = Dell Resource CD
"{4847BBB9-EADD-4C92-90BF-4223B0892FF6}" = Microsoft Flight Simulator X Service Pack 2
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4D42353B-533F-4306-AD0B-7FEF292ADE04}" = Nero CoverDesigner Help
"{4E8C27C2-D727-4C00-A90E-C3F6376EEE70}" = Nero ControlCenter
"{4FBCEA31-5D18-4212-9231-DE7CF1BE7DBB}" = Logitech Vid
"{548F99E0-14CC-4D53-A7D6-4A62A5F2C748}" = Nero PhotoSnap
"{56BE5CC9-95E6-4128-ABEA-968414CA9C80}" = DolbyFiles
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{5A62A775-A29A-4CE1-BBC2-4A9CD0B211EF}" = Nero Live Help
"{5aa47dba-b584-4d47-a626-76e53f010201}" = JavaFX(TM) 1.2 SDK
"{5AE12194-3EAA-40DF-B2BF-FE1D6B78BBF4}" = Nero Vision
"{5C2E8A0F-80E2-4C68-8CC0-D8D16E7196BF}" = Nero RescueAgent Help
"{5C42EAB8-54F9-423A-948C-1CBEF25F8DB4}" = Nero PhotoSnap Help
"{5C9BB0B3-E830-4814-BBA4-D93535E1C7B9}" = Nero Live
"{6412CECE-8172-4BE5-935B-6CECACD2CA87}" = Windows Live Mail
"{6421F085-1FAA-DE13-D02A-CFB412C522A4}" = Acrobat.com
"{6580C5A3-2336-4EC5-85F1-3448C5F6208A}" = Kaspersky Anti-Virus 2009
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{74550cae-c3fe-4c94-ab8e-a26a71eb49c4}" = Nero 9
"{75321954-2589-11DC-DDCC-E98356D81493}" = Nero DriveSpeed
"{753973C4-B961-43BF-B2D4-3C8C92F7216E}" = Nero DriveSpeed
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{78523651-D8B1-11DC-CCEE-741589645873}" = Nero DiscSpeed
"{797EE0CA-8165-405C-B5CE-F11EC20F1BB0}" = Microsoft VC9 runtime libraries
"{81128EE8-8EAD-4DB0-85C6-17C2CE50FF71}" = Windows Live Essentials
"{84EBDF39-4B33-49D7-A0BD-EB6E2C4E81C1}" = Windows Live Sync
"{86170243-41F2-4B2E-9BD6-2F404B2C8E46}" = TWC Customer Controls
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8C654BD0-1949-43DE-84F2-EC2A1ABB0CB4}" = Nero ShowTime
"{8DC069E7-893C-41E1-9442-DE89FEC33371}" = Xobni Core
"{8DD0F820-3656-4AB3-A7F4-005CAA2D0897}_is1" = RDesc 2.26
"{90120000-0015-0C0A-0000-0000000FF1CE}" = Microsoft Office Access MUI (Spanish) 2007
"{90120000-0015-0C0A-0000-0000000FF1CE}_ENTERPRISE_{91A7F72A-3273-4C1E-8BE0-BC9DD0D9345C}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0C0A-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Spanish) 2007
"{90120000-0016-0C0A-0000-0000000FF1CE}_ENTERPRISE_{91A7F72A-3273-4C1E-8BE0-BC9DD0D9345C}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0C0A-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Spanish) 2007
"{90120000-0018-0C0A-0000-0000000FF1CE}_ENTERPRISE_{91A7F72A-3273-4C1E-8BE0-BC9DD0D9345C}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0C0A-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Spanish) 2007
"{90120000-0019-0C0A-0000-0000000FF1CE}_ENTERPRISE_{91A7F72A-3273-4C1E-8BE0-BC9DD0D9345C}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0C0A-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Spanish) 2007
"{90120000-001A-0C0A-0000-0000000FF1CE}_ENTERPRISE_{91A7F72A-3273-4C1E-8BE0-BC9DD0D9345C}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0C0A-0000-0000000FF1CE}" = Microsoft Office Word MUI (Spanish) 2007
"{90120000-001B-0C0A-0000-0000000FF1CE}_ENTERPRISE_{91A7F72A-3273-4C1E-8BE0-BC9DD0D9345C}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0403-0000-0000000FF1CE}" = Microsoft Office Proof (Catalan) 2007
"{90120000-001F-0403-0000-0000000FF1CE}_ENTERPRISE_{4B47C31E-46B0-462B-BEE4-DC383B6A1F2A}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0416-0000-0000000FF1CE}" = Microsoft Office Proof (Portuguese (Brazil)) 2007
"{90120000-001F-0416-0000-0000000FF1CE}_ENTERPRISE_{75EBE365-7FC5-4720-A7D3-804BF550D1BC}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-042D-0000-0000000FF1CE}" = Microsoft Office Proof (Basque) 2007
"{90120000-001F-0456-0000-0000000FF1CE}" = Microsoft Office Proof (Galician) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_ENTERPRISE_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-002C-0C0A-0000-0000000FF1CE}" = Microsoft Office Proofing (Spanish) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-006E-0C0A-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Spanish) 2007
"{90120000-006E-0C0A-0000-0000000FF1CE}_ENTERPRISE_{6113C11D-BACA-4D8E-8002-03C8D06FD5E6}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0C0A-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Spanish) 2007
"{90120000-00A1-0C0A-0000-0000000FF1CE}_ENTERPRISE_{91A7F72A-3273-4C1E-8BE0-BC9DD0D9345C}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00BA-0C0A-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Spanish) 2007
"{90120000-00BA-0C0A-0000-0000000FF1CE}_ENTERPRISE_{91A7F72A-3273-4C1E-8BE0-BC9DD0D9345C}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{926C96FB-9D0A-4504-8000-C6D3A4A3118E}" = Java DB 10.4.2.1
"{943CC0C0-2253-4FE0-9493-DD386F7857FD}" = Nero Express
"{948FFAAE-C57F-447B-9B07-3721E950BFDC}" = Nero ShowTime
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95120000-0122-0409-0000-0000000FF1CE}" = Microsoft Office Outlook Connector
"{9527A496-5DF9-412A-ADC7-168BA5379CA6}" = Microsoft Flight Simulator X
"{961D53EA-40DC-4156-AD74-25684CE05F81}" = Nero Installer
"{97F81AF1-0E47-DC99-FF1F-C8B3B9A1E18E}" = Visual C++ 8.0 ATL (x86) WinSXS MSM
"{98CB24AD-52FB-DB5F-FF1F-C8B3B9A1E18E}" = Visual C++ 8.0 CRT (x86) WinSXS MSM
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9A875B56-A35C-46BA-A3AA-DF8D03EE9F2F}" = Nero ControlCenter
"{9F3523F8-DAD7-AE52-6DA7-45CDDDF33726}" = Advertising Center
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A6FDF86A-F541-4E7B-AEA0-8849A2A700D5}" = iTunes
"{A73BEC3C-40A0-480E-87EF-EFCD33629088}" = NeroExpress
"{A8399F58-234A-48C6-BA55-30C15738BF3C}" = Nero CoverDesigner
"{A85FD55B-891B-4314-97A5-EA96C0BD80B5}" = Windows Live Messenger
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AAA12554-2589-11DC-92EF-E98356D81493}" = Nero InfoTool
"{AABBCC54-D8B1-11DC-92EF-E98356D81493}" = Nero DiscSpeed
"{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}" = Apple Mobile Device Support
"{AC76BA86-7AD7-1033-7B44-A93000000001}" = Adobe Reader 9.3
"{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9
"{AE3CF174-872C-46C6-B9F6-C0593F3BC7B8}" = Microsoft Office Live Add-in 1.4
"{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0
"{B2C12C8D-65DC-40BD-B309-5ADB0C6C8D8F}" = Nero WaveEditor
"{B96C2601-52F5-4D5D-816A-63469EA311EF}" = "Nero SoundTrax Help
"{BCD82AB5-670D-4242-90FA-1F97103C16CD}" = Movie Templates - Starter Kit
"{C084BC61-E537-11DE-8616-005056806466}" = Google Earth
"{C27BC2A2-30DD-4014-B22E-63EB0DB572F9}" = Logitech Webcam Software
"{C99C89A3-119A-45E6-B26E-DD5643CAA0C5}" = Menu Templates - Starter Kit
"{CD1826A5-CFCC-4C6E-9F9D-E181876162EA}" = Nero Rescue Agent
"{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware Free Edition
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}" = TuneUp Utilities
"{D5B46D30-F054-4C64-9C0F-97C8451E7D04}" = BtwMfcMM
"{D6C75F0B-3BC1-4FC9-B8C5-3F7E8ED059CA}" = Windows Live Photo Gallery
"{D7C206B6-1A63-4389-A8B1-8F607D0BFF1F}" = Nero StartSmart Help
"{E10DB5DA-E576-40EA-A7FC-1CB2A7B283A6}" = NVIDIA PhysX
"{E2883E8F-472F-4fb0-9522-AC9BF37916A7}" = Adobe Download Manager
"{E2DFE069-083E-4631-9B6C-43C48E991DE5}" = Junk Mail filter update
"{E3BFEE55-39E2-4BE0-B966-89FE583822C1}" = Dell Support Center (Support Software)
"{E4A8DD87-A746-4443-BF25-CAF99CED6767}" = Nero Disc Copy Gadget
"{E86156E5-9859-440D-8876-26CED1349802}" = Nero WaveEditor Help
"{EA9FFE54-D8B1-11DC-92EF-E98356D81493}" = Nero BurnRights
"{ED00D08A-3C5F-488D-93A0-A04F21F23956}" = Windows Live Communications Platform
"{EFAD4066-CAF3-4B27-9669-12EED352C376}" = NVIDIANetworkDiagnostic
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F53F6769-AC46-49E3-ABE3-2C8AFD39D0DD}" = Nero Vision
"{F6BD194C-4190-4D73-B1B1-C48C99921BFE}" = Windows Live Call
"{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}" = Vista Codec Package
"{FB3EFCD7-4E08-4197-89B9-7CCD794F91B6}" = TuneUp Utilities Language Pack (es-ES)
"{FE0646A7-19D0-41B4-A2BB-2C35D644270D}" = Windows Live OneCare safety scanner
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"Advanced SystemCare 3_is1" = Advanced SystemCare 3
"AMDAway INF" = AMDAway INF
"AOL Emergency Connect Utility 1.0" = Uninstall AOL Emergency Connect Utility 1.0
"AOL Uninstaller" = AOL Uninstaller (Choose which Products to Remove)
"CCleaner" = CCleaner
"CNXT_MODEM_PCI_VEN_14F1&DEV_2F20&SUBSYS_200F14F1" = Conexant D850 PCI V.92 Modem
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"Driver Genius Professional Edition_is1" = Driver Genius Professional Edition
"DVD Shrink_is1" = DVD Shrink 3.2
"ENTERPRISE" = Microsoft Office Enterprise 2007
"ESET Online Scanner" = ESET Online Scanner v3
"ffdshow" = ffdshow (remove only)
"Game Booster_is1" = Game Booster
"Google Chrome" = Google Chrome
"Google Desktop" = Google Desktop
"GoToAssist" = GoToAssist 8.0.0.514
"InstallShield_{9527A496-5DF9-412A-ADC7-168BA5379CA6}" = Microsoft Flight Simulator X
"InstallShield_{EFAD4066-CAF3-4B27-9669-12EED352C376}" = NVIDIANetworkDiagnostic
"InstallWIX_{6580C5A3-2336-4EC5-85F1-3448C5F6208A}" = Kaspersky Anti-Virus 2009
"LimeWire" = LimeWire 5.4.6
"lvdrivers_12.0" = Logitech Webcam Software Driver Package
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft DirectX SDK (August 2009)" = Microsoft DirectX SDK (August 2009)
"mIRC" = mIRC
"NVIDIA Display Control Panel" = NVIDIA Display Control Panel
"NVIDIA Drivers" = NVIDIA Drivers
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"ObjectDock" = ObjectDock
"SoftwareUpdUtility" = Download Updater (AOL LLC)
"SP1_9527A496-5DF9-412A-ADC7-168BA5379CA6" = Microsoft Flight Simulator X Service Pack 1
"SystemRequirementsLab" = System Requirements Lab
"TuneUp Utilities" = TuneUp Utilities
"ViewpointMediaPlayer" = Viewpoint Media Player
"VLC media player" = VLC media player 1.0.3
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinRAR archiver" = WinRAR archiver
"XobniMain" = Xobni

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-1961057425-2708360034-2878373316-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"CNET TechTracker" = CNET TechTracker
"f031ef6ac137efc5" = Dell Driver Download Manager

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 1/29/2010 2:56:37 AM | Computer Name = HORACIO-PC | Source = Perflib | ID = 1008
Description =

Error - 1/29/2010 3:06:36 AM | Computer Name = HORACIO-PC | Source = pctsSvc.exe | ID = 0
Description =

Error - 1/30/2010 2:10:13 PM | Computer Name = HORACIO-PC | Source = Application Hang | ID = 1002
Description = The program iexplore.exe version 8.0.6001.18882 stopped interacting
with Windows and was closed. To see if more information about the problem is available,
check the problem history in the Problem Reports and Solutions control panel. Process
ID: 1564 Start Time: 01caa1ce6b0970f2 Termination Time: 0

Error - 1/31/2010 10:31:13 PM | Computer Name = HORACIO-PC | Source = System Restore | ID = 8193
Description =

Error - 2/1/2010 12:51:07 PM | Computer Name = HORACIO-PC | Source = Application Hang | ID = 1002
Description = The program iexplore.exe version 8.0.6001.18882 stopped interacting
with Windows and was closed. To see if more information about the problem is available,
check the problem history in the Problem Reports and Solutions control panel. Process
ID: 103c Start Time: 01caa35e7b4c3e11 Termination Time: 0

Error - 2/2/2010 12:43:40 AM | Computer Name = HORACIO-PC | Source = Application Error | ID = 1000
Description = Faulting application iexplore.exe, version 8.0.6001.18882, time stamp
0x4b3ed243, faulting module ntdll.dll, version 6.0.6002.18005, time stamp 0x49e03821,
exception code 0xc0000005, fault offset 0x00041e3b, process id 0x14f8, application
start time 0x01caa392ccaf2700.

Error - 2/2/2010 1:59:30 AM | Computer Name = HORACIO-PC | Source = Application Hang | ID = 1002
Description = The program iexplore.exe version 8.0.6001.18882 stopped interacting
with Windows and was closed. To see if more information about the problem is available,
check the problem history in the Problem Reports and Solutions control panel. Process
ID: 17ac Start Time: 01caa3cb66aa0ef0 Termination Time: 63

Error - 2/2/2010 2:00:20 AM | Computer Name = HORACIO-PC | Source = Application Hang | ID = 1002
Description = The program iexplore.exe version 8.0.6001.18882 stopped interacting
with Windows and was closed. To see if more information about the problem is available,
check the problem history in the Problem Reports and Solutions control panel. Process
ID: 50c Start Time: 01caa3cce762f330 Termination Time: 15

Error - 2/2/2010 2:16:01 AM | Computer Name = HORACIO-PC | Source = VSS | ID = 8194
Description =

Error - 2/2/2010 2:17:19 AM | Computer Name = HORACIO-PC | Source = System Restore | ID = 8193
Description =

[ System Events ]
Error - 1/19/2010 3:28:14 AM | Computer Name = HORACIO-PC | Source = Microsoft-Windows-Eventlog | ID = 30
Description =

Error - 1/19/2010 10:46:56 AM | Computer Name = HORACIO-PC | Source = HTTP | ID = 15016
Description =

Error - 1/19/2010 10:48:20 AM | Computer Name = HORACIO-PC | Source = Service Control Manager | ID = 7000
Description =

Error - 1/19/2010 10:48:20 AM | Computer Name = HORACIO-PC | Source = Service Control Manager | ID = 7026
Description =

Error - 1/19/2010 11:01:56 AM | Computer Name = HORACIO-PC | Source = HTTP | ID = 15016
Description =

Error - 1/19/2010 11:03:19 AM | Computer Name = HORACIO-PC | Source = Service Control Manager | ID = 7000
Description =

Error - 1/19/2010 11:03:19 AM | Computer Name = HORACIO-PC | Source = Service Control Manager | ID = 7026
Description =

Error - 1/19/2010 12:52:03 PM | Computer Name = HORACIO-PC | Source = HTTP | ID = 15016
Description =

Error - 1/19/2010 12:53:26 PM | Computer Name = HORACIO-PC | Source = Service Control Manager | ID = 7000
Description =

Error - 1/19/2010 12:53:26 PM | Computer Name = HORACIO-PC | Source = Service Control Manager | ID = 7026
Description =


< End of report >

descriptiontrojan heur - Page 1 EmptyRe: trojan heur

more_horiz
i hope this is what you requested and thank you much for your help

descriptiontrojan heur - Page 1 EmptyRe: trojan heur

more_horiz
Please run OTL.exe.

  • Copy the commands with file paths below to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose Copy):


    :OTL
    O4 - HKLM..\Run: [RDesc] File not found
    O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O7 - HKU\S-1-5-21-1961057425-2708360034-2878373316-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found



  • Return to OTL, right click in the "Custom Scans/Fixes" window (under the light green bar) and choose Paste.

  • Click the red Run Fix button.
  • A fix log in Notepad will appear. Copy the contents of the fix log to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy), and paste it in your next reply.
  • Close OTL.exe
If a file or folder cannot be moved immediately you may be asked to reboot the machine to finish the move process. If you are asked to reboot the machine choose Yes.

............................................................................................

Site Admin / Security Administrator

Virus Removal ~ OS Support ~ Have we helped you? Help us! ~ GeekChat
- Please PM me if I fail to respond within 24hrs.
trojan heur - Page 1 DXwU4
trojan heur - Page 1 VvYDg

descriptiontrojan heur - Page 1 EmptyRe: trojan heur

more_horiz
HERE IS WHAT YOU ASK ME TO DO I HOPE IS OK

========== OTL ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\RDesc deleted successfully.
Registry key HKEY_USERS\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel\ not found.
Registry key HKEY_USERS\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel\ not found.
Registry key HKEY_USERS\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel\ not found.
Registry key HKEY_USERS\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel\ not found.
Registry key HKEY_USERS\S-1-5-21-1961057425-2708360034-2878373316-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\\{AEB6717E-7E19-11d0-97EE-00C04FD91972} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AEB6717E-7E19-11d0-97EE-00C04FD91972}\ not found.

OTL by OldTimer - Version 3.1.27.1 log created on 02032010_214130

descriptiontrojan heur - Page 1 EmptyRe: trojan heur

more_horiz
To remove all of the tools we used and the files and folders they created do the following:
Double click OTL.exe.

  • Click the CleanUp! button.
  • Select Yes when the "Begin cleanup Process?" prompt appears.
  • If you are prompted to Reboot during the cleanup, select Yes.
  • The tool will delete itself once it finishes.

............................................................................................

Site Admin / Security Administrator

Virus Removal ~ OS Support ~ Have we helped you? Help us! ~ GeekChat
- Please PM me if I fail to respond within 24hrs.
trojan heur - Page 1 DXwU4
trojan heur - Page 1 VvYDg

descriptiontrojan heur - Page 1 EmptyRe: trojan heur

more_horiz
i have done what you told me but you are not telling me if i had a virus or if it was one and clean it please answer me thenk you
bill

descriptiontrojan heur - Page 1 EmptyRe: trojan heur

more_horiz
How is the machine running now? Smile... The logs look good to me.

............................................................................................

Site Admin / Security Administrator

Virus Removal ~ OS Support ~ Have we helped you? Help us! ~ GeekChat
- Please PM me if I fail to respond within 24hrs.
trojan heur - Page 1 DXwU4
trojan heur - Page 1 VvYDg

descriptiontrojan heur - Page 1 EmptyRe: trojan heur

more_horiz
it is running good thank yu so much
if i want to give a donation how can i send it?
i have no credit card but a money order will do
thank you

descriptiontrojan heur - Page 1 EmptyRe: trojan heur

more_horiz
privacy_tip Permissions in this forum:
You cannot reply to topics in this forum