OTL was downloaded in spanish, so I am not sure I got all the settings correctly. I have an image (print screen) of how I set the settings, I can attach it, but mainly I couldn't figuere out the UseSafeList part. Here is the OTL.txt. BTW, Windows seems to be working OK, except for the internet explorer and the fact that I can still see System Check on startup and on desktop.
OTL logfile created on: 03/02/2012 03:34:26 p.m. - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Verónica Barrera J\Mis documentos\Descargas
Windows XP Home Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000080A | Country: México | Language: ESM | Date Format: dd/MM/yyyy
2.00 Gb Total Physical Memory | 1.57 Gb Available Physical Memory | 78.72% Memory free
2.23 Gb Paging File | 1.97 Gb Available in Paging File | 88.47% Paging File free
Paging file location(s): C:\pagefile.sys 384 768 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Archivos de programa
Drive C: | 37.21 Gb Total Space | 10.94 Gb Free Space | 29.40% Space Free | Partition Type: NTFS
Computer Name: VERONICA | User Name: Verónica Barrera J | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Documents and Settings\Verónica Barrera J\Mis documentos\Descargas\OTL.exe (OldTimer Tools)
PRC - C:\Archivos de programa\Archivos comunes\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
PRC - C:\Archivos de programa\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
PRC - C:\Archivos de programa\Archivos comunes\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
PRC - C:\Program Files\Real\RealPlayer\Update\realsched.exe (RealNetworks, Inc.)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Archivos de programa\WinZip\WZQKPICK.EXE (WinZip Computing, Inc.)
PRC - C:\Archivos de programa\Dell\Dell Laser MFP 1600n\PSU\ScanToPc.exe ()
PRC - C:\WINDOWS\SYSTEM32\DSentry.exe (Dell - Advanced Desktop Engineering)
========== Modules (No Company Name) ==========
MOD - C:\Archivos de programa\Archivos comunes\Apple\Apple Application Support\zlib1.dll ()
MOD - C:\Archivos de programa\Archivos comunes\Apple\Apple Application Support\libxml2.dll ()
MOD - C:\Archivos de programa\Archivos comunes\Adobe\Acrobat\ActiveX\pdfshell.ESP ()
MOD - C:\Archivos de programa\Dell\Dell Laser MFP 1600n\PSU\ScanToPc.exe ()
MOD - C:\Archivos de programa\Dell\Dell Laser MFP 1600n\PSU\IMFilter.dll ()
========== Win32 Services (SafeList) ==========
SRV - (AppMgmt) -- File not found
SRV - (MBAMService) -- C:\Archivos de programa\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
SRV - (Apple Mobile Device) -- C:\Archivos de programa\Archivos comunes\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
========== Driver Services (SafeList) ==========
DRV - (MBAMProtector) -- C:\WINDOWS\SYSTEM32\DRIVERS\mbam.sys (Malwarebytes Corporation)
DRV - (SASKUTIL) -- C:\Archivos de programa\SUPERAntiSpyware\SASKUTIL.SYS (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (SASDIFSV) -- C:\Archivos de programa\SUPERAntiSpyware\sasdifsv.sys (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (FANTOM) -- C:\WINDOWS\SYSTEM32\DRIVERS\fantom.sys (National Instruments Corporation)
DRV - (2WIREPCP) -- C:\WINDOWS\SYSTEM32\DRIVERS\2WirePCP.sys (2Wire, Inc.)
DRV - (MDC8021X) AEGIS Protocol (IEEE 802.1x) -- C:\WINDOWS\SYSTEM32\DRIVERS\mdc8021x.sys (Meetinghouse Data Communications)
DRV - (vrskbdft) -- C:\WINDOWS\System32\drivers\vrskbdft.sys (HAURI)
DRV - (rtl8180) Realtek RTL8180 Wireless LAN (Mini-) -- C:\WINDOWS\SYSTEM32\DRIVERS\RTL8180.sys (Realtek Semiconductor Corporation )
DRV - (HSFHWBS2) -- C:\WINDOWS\SYSTEM32\DRIVERS\HSFHWBS2.sys (Conexant Systems, Inc.)
DRV - (winachsf) -- C:\WINDOWS\SYSTEM32\DRIVERS\HSF_CNXT.sys (Conexant Systems, Inc.)
DRV - (HSF_DP) -- C:\WINDOWS\SYSTEM32\DRIVERS\HSF_DP.sys (Conexant Systems, Inc.)
DRV - (bcm4sbxp) -- C:\WINDOWS\SYSTEM32\DRIVERS\bcm4sbxp.sys (Broadcom Corporation)
DRV - (omci) -- C:\WINDOWS\SYSTEM32\DRIVERS\omci.sys (Dell Computer Corporation)
DRV - (ENETHUSB) -- C:\WINDOWS\SYSTEM32\DRIVERS\enethusb.sys (Efficient Networks, Inc.)
DRV - (EL90XBC) -- C:\WINDOWS\SYSTEM32\DRIVERS\EL90XBC5.SYS (3Com Corporation)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL =
http://www.google.com/ie
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.dell.com/
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page =
http://www.dell.com/
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.dell.com/
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page =
http://www.dell.com/
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-409304385-768972678-2457951874-1006\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKU\S-1-5-21-409304385-768972678-2457951874-1006\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL =
http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
IE - HKU\S-1-5-21-409304385-768972678-2457951874-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.bleepingcomputer.com/virus-removal/remove-system-check
IE - HKU\S-1-5-21-409304385-768972678-2457951874-1006\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://www.google.com/ie
IE - HKU\S-1-5-21-409304385-768972678-2457951874-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-409304385-768972678-2457951874-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Archivos de programa\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Archivos de programa\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Archivos de programa\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pack.google.com/Google Updater;version=14: C:\Archivos de programa\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll (Google)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=12.0.1.647: c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=12.0.1.647: c:\program files\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=12.0.1.652: C:\Documents and Settings\All Users\Datos de programa\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.652: C:\Documents and Settings\All Users\Datos de programa\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.647: c:\program files\real\realplayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Archivos de programa\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Archivos de programa\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@unity3d.com/UnityPlayer: C:\Archivos de programa\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Verónica Barrera J\Configuración local\Datos de programa\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Verónica Barrera J\Configuración local\Datos de programa\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\Documents and Settings\All Users\Datos de programa\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2011/07/04 22:56:12 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.17\extensions\\Components: C:\Archivos de programa\Mozilla Firefox\components [2011/11/23 19:59:23 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.17\extensions\\Plugins: C:\Archivos de programa\Mozilla Firefox\plugins [2011/11/23 20:00:43 | 000,000,000 | ---D | M]
[2010/07/28 11:27:52 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Verónica Barrera J\Datos de programa\Mozilla\Extensions
[2011/07/04 09:33:06 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Verónica Barrera J\Datos de programa\Mozilla\Firefox\Profiles\62rw5oor.default\extensions
[2008/05/17 12:22:04 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Documents and Settings\Verónica Barrera J\Datos de programa\Mozilla\Firefox\Profiles\62rw5oor.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
[2011/06/08 21:35:58 | 000,002,396 | ---- | M] () -- C:\Documents and Settings\Verónica Barrera J\Datos de programa\Mozilla\Firefox\Profiles\62rw5oor.default\searchplugins\askcom.xml
[2011/11/26 16:59:29 | 000,000,000 | ---D | M] (No name found) -- C:\Archivos de programa\Mozilla Firefox\extensions
[2008/05/09 16:19:59 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Archivos de programa\Mozilla Firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
[2008/05/09 16:19:52 | 000,000,000 | ---D | M] (Mozilla Firefox distributed by RealNetworks) -- C:\Archivos de programa\Mozilla Firefox\extensions\realplayer@partners.mozilla.com
[2011/03/17 09:18:45 | 000,002,456 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\mercadolibre-mx.xml
[2011/03/17 09:18:45 | 000,001,178 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\wikipedia-es.xml
[2011/03/17 09:18:45 | 000,001,102 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\yahoo-mx.xml
========== Chrome ==========
CHR - default_search_provider: Google ()
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?client=chrome&hl={language}&q={searchTerms}
O1 HOSTS File: ([2012/02/02 10:22:12 | 000,000,027 | ---- | M]) - C:\WINDOWS\SYSTEM32\DRIVERS\ETC\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Archivos de programa\Archivos comunes\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Datos de programa\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (DriveLetterAccess) - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\SYSTEM32\dla\tfswshx.dll (Sonic Solutions)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Archivos de programa\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll (Google Inc.)
O3 - HKU\S-1-5-21-409304385-768972678-2457951874-1006\..\Toolbar\ShellBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found.
O4 - HKLM..\Run: [Adobe ARM] C:\Archivos de programa\Archivos comunes\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AppleSyncNotifier] C:\Archivos de programa\Archivos comunes\Apple\Mobile Device Support\AppleSyncNotifier.exe (Apple Inc.)
O4 - HKLM..\Run: [APSDaemon] C:\Archivos de programa\Archivos comunes\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [DVDSentry] C:\WINDOWS\SYSTEM32\DSentry.exe (Dell - Advanced Desktop Engineering)
O4 - HKLM..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\hpztsb03.exe (HP)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Archivos de programa\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware (reboot)] C:\Archivos de programa\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [P3000x_S2P] C:\Archivos de programa\Dell\Dell Laser MFP 1600n\PSU\ScanToPc.exe ()
O4 - HKLM..\Run: [StorageGuard] C:\Archivos de programa\Archivos comunes\Sonic\Update Manager\sgtray.exe (Sonic Solutions)
O4 - HKLM..\Run: [TkBellExe] C:\program files\real\realplayer\update\realsched.exe (RealNetworks, Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Menú Inicio\Programas\Inicio\Prodigy.lnk = File not found
O4 - Startup: C:\Documents and Settings\All Users\Menú Inicio\Programas\Inicio\WinZip Quick Pick.lnk = C:\Archivos de programa\WinZip\WZQKPICK.EXE (WinZip Computing, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-409304385-768972678-2457951874-1006\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-409304385-768972678-2457951874-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-409304385-768972678-2457951874-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-409304385-768972678-2457951874-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Archivos de programa\Bonjour\mdnsNSP.dll (Apple Inc.)
O15 - HKU\S-1-5-21-409304385-768972678-2457951874-1006\..Trusted Domains: ([]msn in My Computer)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000}
http://fpdownload.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258}
http://fpdownload.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{753F4254-3782-4DBC-BC8D-F7D1DE336F08}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{8FB17606-38B3-4076-9793-28097967C43D}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{910EE9BB-8C4A-44A0-B267-DF3BC7E06BE9}: DhcpNameServer = 192.168.1.254
O18 - Protocol\Handler\cdo {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\Web Folders\PKMCDO.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Archivos de programa\Archivos comunes\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Archivos de programa\Archivos comunes\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Archivos de programa\Archivos comunes\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\SYSTEM32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - (C:\Archivos de programa\SUPERAntiSpyware\SASWINLO.DLL) - C:\Archivos de programa\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
O20 - Winlogon\Notify\igfxcui: DllName - (igfxsrvc.dll) - C:\WINDOWS\System32\igfxsrvc.dll (Intel Corporation)
O24 - Desktop Components:0 (Mi página de inicio actual) - About:Home
O24 - Desktop Components:1 () -
http://www.google.com.mx/imgres?q=futbol&hl=es&gbv=2&biw=1024&bih=584&tbm=isch&tbnid=PamizW5wTjS-IM:&imgrefurl=http://www.reportajes.org/2010/05/12/mundial-de-futbol-historia/&docid=YdBfzS_i6Wn5lM&imgurl=http://www.reportajes.org/wp-content/uploads/2010/05/mundial-sudafrica-2010.jpg&w=400&h=360&ei=an--ToLMJeGpsQLxr7izBA&zoom=1&iact=rc&dur=2875&sig=103333094959994790255&page=6&tbnh=109&tbnw=101&start=79&ndsp=20&ved=1t:429,r:9,s:79&tx=44&ty=6
O24 - Desktop WallPaper: C:\Documents and Settings\Verónica Barrera J\Configuración local\Datos de programa\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Verónica Barrera J\Configuración local\Datos de programa\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Archivos de programa\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2004/11/01 12:03:02 | 000,000,094 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2012/02/02 09:50:43 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2012/02/02 09:43:16 | 000,518,144 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2012/02/02 09:43:16 | 000,406,528 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2012/02/02 09:43:16 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2012/02/02 09:43:16 | 000,060,416 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2012/02/02 09:42:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2012/02/02 09:42:09 | 000,000,000 | ---D | C] -- C:\Qoobox
[2012/02/02 09:40:33 | 004,395,504 | R--- | C] (Swearware) -- C:\Documents and Settings\Verónica Barrera J\Escritorio\ComboFix.exe
[2012/01/30 16:19:01 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Verónica Barrera J\Mis documentos\Mis vídeos
[2012/01/30 16:18:53 | 000,607,260 | R--- | C] (Swearware) -- C:\Documents and Settings\Verónica Barrera J\Escritorio\dds.scr
[2012/01/30 10:24:04 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\MEN┌IN~1
[2012/01/28 18:28:31 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Verónica Barrera J\Recent
[2012/01/26 21:15:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Verónica Barrera J\Datos de programa\Malwarebytes
[2012/01/26 19:53:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Malwarebytes' Anti-Malware
[2012/01/26 19:53:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Datos de programa\Malwarebytes
[2012/01/26 19:53:14 | 000,020,464 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2012/01/26 19:53:14 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Malwarebytes' Anti-Malware
[2012/01/25 19:57:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Verónica Barrera J\Menú Inicio\Programas\System Check
[2012/01/25 19:35:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menú Inicio\Programas\iTunes
[2012/01/25 19:34:06 | 000,000,000 | ---D | C] -- C:\Archivos de programa\iPod
========== Files - Modified Within 30 Days ==========
[2012/02/03 15:40:00 | 000,001,038 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2012/02/03 15:27:13 | 000,000,318 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-409304385-768972678-2457951874-1006.job
[2012/02/03 15:27:05 | 000,000,326 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-409304385-768972678-2457951874-1006.job
[2012/02/03 15:27:01 | 000,001,170 | ---- | M] () -- C:\WINDOWS\System32\WPA.DBL
[2012/02/03 15:26:29 | 000,001,034 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2012/02/03 15:26:21 | 000,002,048 | ---- | M] () -- C:\WINDOWS\BOOTSTAT.DAT
[2012/02/03 15:26:19 | 2145,456,128 | -HS- | M] () -- C:\hiberfil.sys
[2012/02/02 10:22:12 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\ETC\hosts
[2012/02/02 09:51:08 | 000,000,327 | RHS- | M] () -- C:\BOOT.INI
[2012/02/02 09:40:33 | 004,395,504 | R--- | M] (Swearware) -- C:\Documents and Settings\Verónica Barrera J\Escritorio\ComboFix.exe
[2012/01/30 16:23:30 | 000,302,592 | ---- | M] () -- C:\Documents and Settings\Verónica Barrera J\Escritorio\bhvb7hn6.exe
[2012/01/30 16:18:56 | 000,607,260 | R--- | M] (Swearware) -- C:\Documents and Settings\Verónica Barrera J\Escritorio\dds.scr
[2012/01/30 16:16:21 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Verónica Barrera J\defogger_reenable
[2012/01/30 16:15:18 | 000,050,477 | ---- | M] () -- C:\Documents and Settings\Verónica Barrera J\Escritorio\Defogger.exe
[2012/01/30 10:58:01 | 000,000,972 | ---- | M] () -- C:\WINDOWS\tasks\Google Software Updater.job
[2012/01/30 10:09:30 | 000,684,297 | ---- | M] () -- C:\Documents and Settings\Verónica Barrera J\Escritorio\unhide.exe
[2012/01/26 21:24:40 | 000,000,869 | ---- | M] () -- C:\Documents and Settings\All Users\Escritorio\Malwarebytes Anti-Malware.lnk
[2012/01/26 19:53:21 | 000,000,833 | ---- | M] () -- C:\Documents and Settings\All Users\Escritorio\Malwarebytes' Anti-Malware.lnk
[2012/01/25 19:58:02 | 000,000,876 | ---- | M] () -- C:\Documents and Settings\Verónica Barrera J\Escritorio\System Check.lnk
[2012/01/25 19:35:29 | 000,001,613 | ---- | M] () -- C:\Documents and Settings\All Users\Escritorio\iTunes.lnk
[2012/01/25 19:20:01 | 000,000,298 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2012/01/20 19:46:30 | 000,002,551 | ---- | M] () -- C:\Documents and Settings\Verónica Barrera J\Escritorio\Microsoft Word.lnk
[2012/01/20 13:40:02 | 000,000,599 | ---- | M] () -- C:\Documents and Settings\Verónica Barrera J\Escritorio\Acceso directo a CARTA CARLOS 2011.lnk
[2012/01/09 19:44:38 | 000,002,529 | ---- | M] () -- C:\Documents and Settings\Verónica Barrera J\Escritorio\Microsoft Excel.lnk
========== Files Created - No Company Name ==========
[2012/02/02 10:15:38 | 000,001,769 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Inicio\Microsoft Office.lnk
[2012/02/02 10:15:38 | 000,001,589 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Inicio\WinZip Quick Pick.lnk
[2012/02/02 10:15:38 | 000,000,546 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Inicio\Prodigy.lnk
[2012/02/02 10:15:37 | 000,000,529 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Inicio\Digital Line Detect.lnk
[2012/02/02 10:15:30 | 000,000,888 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Windows Messenger.lnk
[2012/02/02 10:15:29 | 000,002,557 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Microsoft Word.lnk
[2012/02/02 10:15:29 | 000,002,537 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Microsoft PowerPoint.lnk
[2012/02/02 10:15:29 | 000,002,537 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Microsoft PowerPoint (2).lnk
[2012/02/02 10:15:29 | 000,002,387 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Microsoft Visual FoxPro 7.0.lnk
[2012/02/02 10:15:29 | 000,002,235 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Safari.lnk
[2012/02/02 10:15:29 | 000,001,961 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\MSN Explorer.lnk
[2012/02/02 10:15:29 | 000,001,765 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Solution Center.lnk
[2012/02/02 10:15:29 | 000,001,671 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Selector de tareas de Microsoft Works.lnk
[2012/02/02 10:15:28 | 000,002,631 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Microsoft Outlook.lnk
[2012/02/02 10:15:28 | 000,002,535 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Microsoft FrontPage.lnk
[2012/02/02 10:15:28 | 000,002,535 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Microsoft Excel.lnk
[2012/02/02 10:15:28 | 000,002,509 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Microsoft Access.lnk
[2012/02/02 10:15:28 | 000,002,347 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Adobe Reader 9.lnk
[2012/02/02 10:15:28 | 000,002,293 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Apple Software Update.lnk
[2012/02/02 10:15:28 | 000,001,534 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Calculadora.lnk
[2012/02/02 10:15:28 | 000,000,811 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Acrobat.com.lnk
[2012/02/02 09:51:08 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2012/02/02 09:51:02 | 000,260,272 | RHS- | C] () -- C:\cmldr
[2012/02/02 09:43:16 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2012/02/02 09:43:16 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2012/02/02 09:43:16 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2012/02/02 09:43:16 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2012/02/02 09:43:16 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2012/01/30 16:23:27 | 000,302,592 | ---- | C] () -- C:\Documents and Settings\Verónica Barrera J\Escritorio\bhvb7hn6.exe
[2012/01/30 16:16:21 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Verónica Barrera J\defogger_reenable
[2012/01/30 16:15:18 | 000,050,477 | ---- | C] () -- C:\Documents and Settings\Verónica Barrera J\Escritorio\Defogger.exe
[2012/01/30 10:24:09 | 000,002,229 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\Safari.lnk
[2012/01/30 10:24:09 | 000,002,000 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\Google Earth.lnk
[2012/01/30 10:24:09 | 000,001,955 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\MSN Explorer.lnk
[2012/01/30 10:24:09 | 000,001,800 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\Adobe Reader 9.lnk
[2012/01/30 10:24:09 | 000,001,777 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\SUPERAntiSpyware Free Edition.lnk
[2012/01/30 10:24:09 | 000,001,759 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\Solution Center.lnk
[2012/01/30 10:24:09 | 000,001,701 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\Mozilla Firefox.lnk
[2012/01/30 10:24:09 | 000,001,687 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\Asistente Prodigy.lnk
[2012/01/30 10:24:09 | 000,001,675 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\QuickTime Player.lnk
[2012/01/30 10:24:09 | 000,001,645 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\Learn XP.LNK
[2012/01/30 10:24:09 | 000,001,613 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\iTunes.lnk
[2012/01/30 10:24:09 | 000,001,250 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\Asistente de la impresora 656c.lnk
[2012/01/30 10:24:09 | 000,000,897 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\LEGO MINDSTORMS NXT 2.0.lnk
[2012/01/30 10:24:09 | 000,000,850 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\InterActual Player.lnk
[2012/01/30 10:24:09 | 000,000,833 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\Malwarebytes' Anti-Malware.lnk
[2012/01/30 10:24:09 | 000,000,805 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\Acrobat.com.lnk
[2012/01/30 10:24:09 | 000,000,761 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\RealPlayer.lnk
[2012/01/30 10:12:00 | 000,684,297 | ---- | C] () -- C:\Documents and Settings\Verónica Barrera J\Escritorio\unhide.exe
[2012/01/28 21:38:47 | 2145,456,128 | -HS- | C] () -- C:\hiberfil.sys
[2012/01/28 18:45:08 | 000,000,869 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\Malwarebytes Anti-Malware.lnk
[2012/01/25 19:58:02 | 000,000,876 | ---- | C] () -- C:\Documents and Settings\Verónica Barrera J\Escritorio\System Check.lnk
[2012/01/20 13:40:02 | 000,000,599 | ---- | C] () -- C:\Documents and Settings\Verónica Barrera J\Escritorio\Acceso directo a CARTA CARLOS 2011.lnk
[2011/04/26 11:22:25 | 000,028,400 | ---- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2008/07/26 19:47:24 | 000,000,127 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2008/07/05 08:35:56 | 000,001,412 | ---- | C] () -- C:\WINDOWS\cdplayer.ini
[2008/05/09 16:21:25 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2008/05/09 16:19:47 | 000,003,515 | ---- | C] () -- C:\WINDOWS\mozver.dat
[2008/01/11 23:14:47 | 000,001,751 | ---- | C] () -- C:\Documents and Settings\All Users\Datos de programa\QTSBandwidthCache
[2007/08/28 12:57:01 | 000,000,052 | ---- | C] () -- C:\WINDOWS\tb40.ini
[2007/06/15 19:51:44 | 000,000,376 | ---- | C] () -- C:\WINDOWS\mozregistry.dat
[2007/05/30 16:14:18 | 000,000,000 | ---- | C] () -- C:\WINDOWS\iplayer.INI
[2007/05/15 15:57:21 | 000,000,385 | ---- | C] () -- C:\WINDOWS\disneysy.ini
[2007/05/14 18:23:59 | 000,000,344 | ---- | C] () -- C:\WINDOWS\Disney.ini
[2007/05/14 18:23:12 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\qttask.exe
[2007/02/20 21:47:48 | 000,000,083 | -HS- | C] () -- C:\Documents and Settings\Verónica Barrera J\Datos de programa\.zreglib
[2007/02/02 09:23:09 | 000,247,296 | ---- | C] () -- C:\WINDOWS\UN160410.EXE
[2006/12/21 10:11:14 | 000,002,508 | ---- | C] () -- C:\Documents and Settings\Verónica Barrera J\Datos de programa\$_hpcst$.hpc
[2006/05/25 14:58:51 | 000,010,240 | ---- | C] () -- C:\Documents and Settings\Verónica Barrera J\Configuración local\Datos de programa\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2005/12/23 14:22:30 | 000,024,576 | ---- | C] () -- C:\WINDOWS\SvcCon.exe
[2005/12/23 14:19:04 | 000,081,920 | R--- | C] () -- C:\WINDOWS\System32\WIAEH.dll
[2005/12/23 14:19:04 | 000,077,824 | R--- | C] () -- C:\WINDOWS\System32\WIAIPH.dll
[2005/12/23 14:19:04 | 000,053,315 | R--- | C] () -- C:\WINDOWS\System32\Sswiadrv.dll
[2005/12/23 14:19:04 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\WIASTIIO.dll
[2005/11/14 11:10:54 | 000,278,528 | ---- | C] () -- C:\WINDOWS\System32\lsuninst.exe
[2005/11/14 11:10:52 | 000,143,360 | ---- | C] () -- C:\WINDOWS\System32\hUrlDn.dll
[2005/09/08 10:41:03 | 000,000,069 | ---- | C] () -- C:\WINDOWS\LIVING~2.ini
[2005/06/14 21:27:46 | 000,225,280 | ---- | C] () -- C:\WINDOWS\System32\HKDown.exe
[2005/06/01 09:06:04 | 000,000,012 | ---- | C] () -- C:\WINDOWS\3D Volcano.ini
[2005/06/01 08:29:59 | 000,974,848 | ---- | C] () -- C:\WINDOWS\vorbis.dll
[2005/06/01 08:29:59 | 000,049,152 | ---- | C] () -- C:\WINDOWS\ogg.dll
[2005/06/01 08:29:59 | 000,028,672 | ---- | C] () -- C:\WINDOWS\vorbisfile.dll
[2005/03/06 10:26:42 | 000,000,096 | ---- | C] () -- C:\WINDOWS\msje8tp.dat
[2005/03/06 10:26:38 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\Pcrypvc.dll
[2005/03/06 10:26:38 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\Pmathvc.dll
[2005/03/06 10:26:38 | 000,086,016 | ---- | C] () -- C:\WINDOWS\System32\Pyarrow.dll
[2005/03/06 10:26:38 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\Pavmsg.dll
[2005/03/06 10:26:38 | 000,072,192 | ---- | C] () -- C:\WINDOWS\System32\Pavperf.dll
[2005/03/06 10:26:38 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\Startjob.exe
[2005/03/06 10:26:37 | 000,786,432 | ---- | C] () -- C:\WINDOWS\System32\Analizar.dll
[2005/03/06 10:26:37 | 000,783,872 | ---- | C] () -- C:\WINDOWS\System32\Anasent.dll
[2005/03/06 10:26:37 | 000,278,016 | ---- | C] () -- C:\WINDOWS\System32\Pavcprox.dll
[2005/03/06 10:26:37 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\Pavjob.dll
[2005/03/06 10:26:37 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\Pavcomdl.dll
[2005/03/06 10:26:37 | 000,002,796 | ---- | C] () -- C:\WINDOWS\System32\Counters.ini
[2005/03/06 10:26:37 | 000,000,782 | ---- | C] () -- C:\WINDOWS\System32\Counter2.ini
[2005/02/15 13:00:09 | 000,071,749 | ---- | C] () -- C:\WINDOWS\hcextoutput.dll
[2005/02/15 13:00:09 | 000,000,853 | ---- | C] () -- C:\WINDOWS\tsc.ini
[2005/02/15 12:54:40 | 000,000,170 | ---- | C] () -- C:\WINDOWS\GetServer.ini
[2004/10/28 10:54:14 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2004/10/25 11:22:20 | 000,303,176 | ---- | C] () -- C:\WINDOWS\System32\TTFI6ES.dll
[2004/08/07 10:04:20 | 000,000,379 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2004/07/20 13:23:07 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\ftpupd.exe
[2004/02/05 21:26:53 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2004/02/05 21:23:07 | 000,000,138 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2004/02/05 21:19:56 | 000,000,851 | ---- | C] () -- C:\WINDOWS\orun32.ini
[2004/02/05 21:06:34 | 000,002,048 | ---- | C] () -- C:\WINDOWS\BOOTSTAT.DAT
[2004/02/05 21:05:01 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2004/02/05 21:04:58 | 000,363,688 | ---- | C] () -- C:\WINDOWS\System32\perfh00A.dat
[2004/02/05 21:04:58 | 000,312,946 | ---- | C] () -- C:\WINDOWS\System32\PERFH009.DAT
[2004/02/05 21:04:58 | 000,051,900 | ---- | C] () -- C:\WINDOWS\System32\perfc00A.dat
[2004/02/05 21:04:58 | 000,040,664 | ---- | C] () -- C:\WINDOWS\System32\PERFC009.DAT
[2004/02/05 21:04:45 | 000,003,656 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
[2004/02/05 20:54:30 | 000,000,648 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI
[2003/08/13 22:56:00 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini
[2002/10/02 03:25:10 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\OEMBIOS.BIN
[2002/10/02 03:25:10 | 000,004,594 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2002/09/23 09:21:24 | 000,166,712 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2002/09/23 09:16:04 | 000,004,207 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2002/09/23 09:13:26 | 000,021,900 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2002/09/10 07:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\MLANG.DAT
[2002/09/10 07:00:00 | 000,317,534 | ---- | C] () -- C:\WINDOWS\System32\perfi00A.dat
[2002/09/10 07:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\PERFI009.DAT
[2002/09/10 07:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\DSSEC.DAT
[2002/09/10 07:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\MIB.BIN
[2002/09/10 07:00:00 | 000,036,284 | ---- | C] () -- C:\WINDOWS\System32\perfd00A.dat
[2002/09/10 07:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\PERFD009.DAT
[2002/09/10 07:00:00 | 000,001,788 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2002/09/10 07:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\NOISE.DAT
[2001/08/29 02:32:32 | 000,008,368 | ---- | C] () -- C:\WINDOWS\System32\PrnCltUi.dll
[1999/07/23 13:46:48 | 000,000,116 | ---- | C] () -- C:\WINDOWS\AuHCcup1.ini
[1999/07/23 10:53:20 | 000,129,536 | ---- | C] () -- C:\WINDOWS\AuHCcup1.dll
< End of report >