OTL logfile created on: 4/29/2012 4:53:10 PM - Run 1
OTL by OldTimer - Version 3.2.42.2 Folder = C:\Users\Xavi\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.96 Gb Total Physical Memory | 1.85 Gb Available Physical Memory | 62.45% Memory free
6.13 Gb Paging File | 5.06 Gb Available in Paging File | 82.51% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 149.00 Gb Total Space | 41.46 Gb Free Space | 27.82% Space Free | Partition Type: NTFS
Computer Name: XAVI-PC | User Name: Xavi | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012/04/29 16:52:24 | 000,595,456 | ---- | M] (OldTimer Tools) -- C:\Users\Xavi\Desktop\OTL.exe
PRC - [2012/04/04 15:56:40 | 000,654,408 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2011/06/06 12:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2011/03/21 13:56:16 | 001,230,704 | ---- | M] () -- C:\Program Files\DivX\DivX Update\DivXUpdate.exe
PRC - [2009/11/19 18:15:46 | 000,583,016 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\Content Transfer\ContentTransferWMDetector.exe
PRC - [2009/04/10 23:27:38 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2008/11/18 20:19:28 | 000,483,420 | ---- | M] (IDT, Inc.) -- C:\Program Files\IDT\WDM\sttray.exe
PRC - [2008/11/18 20:19:28 | 000,241,746 | ---- | M] (IDT, Inc.) -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_ae0b52e0\stacsv.exe
PRC - [2008/11/17 19:22:44 | 000,081,920 | ---- | M] (Andrea Electronics Corporation) -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_ae0b52e0\AEstSrv.exe
PRC - [2008/08/01 23:12:24 | 000,200,704 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\Apoint.exe
PRC - [2008/06/30 10:36:44 | 000,040,960 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\hidfind.exe
PRC - [2008/05/23 14:06:08 | 000,128,296 | ---- | M] (CyberLink Corp.) -- C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
PRC - [2008/03/21 20:32:04 | 000,046,376 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\ApMsgFwd.exe
PRC - [2007/12/10 19:55:26 | 000,323,584 | ---- | M] (PixArt Imaging Incorporation) -- C:\Windows\PixArt\Pac207\Monitor.exe
PRC - [2007/10/25 17:23:36 | 000,049,152 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\ApntEx.exe
========== Modules (No Company Name) ==========
MOD - [2011/06/24 22:56:36 | 000,087,328 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2011/06/24 22:56:14 | 001,241,888 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2011/05/28 22:04:56 | 000,140,288 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll
MOD - [2011/03/21 13:57:34 | 000,096,112 | ---- | M] () -- C:\Program Files\DivX\DivX Update\DivXUpdateCheck.dll
MOD - [2011/03/21 13:56:16 | 001,230,704 | ---- | M] () -- C:\Program Files\DivX\DivX Update\DivXUpdate.exe
MOD - [2007/08/14 15:43:46 | 006,365,184 | ---- | M] () -- C:\Program Files\Common Files\LightScribe\QtGui4.dll
MOD - [2007/07/12 13:55:52 | 000,131,072 | ---- | M] () -- C:\Program Files\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll
MOD - [2007/07/12 13:55:28 | 001,581,056 | ---- | M] () -- C:\Program Files\Common Files\LightScribe\QtCore4.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\mwsarcpkt.dll -- (WISTechVIDCAP)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\swwd.dll -- (w810mdfl)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SetupSys.dll -- (VAIOMediaPlatform-VideoServer-UPnP)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\aswrdr.dll -- (USA49W2KP)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\lxcf_device.dll -- (TVALG)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\Pnp680r.dll -- (tmtdi)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\oracle_load_balancer_60_server-forms6ip14.dll -- (symantecantibotfilter)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\hpt3xx.dll -- (sonicatheaterinstallerservice)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\winmgmt.dll -- (siskp)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\flashcom.dll -- (sfrem01)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\NwSapAgent.dll -- (server)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\isdrv122.dll -- (rsvchost)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\id2scaps.dll -- (relational)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ngdbserv.dll -- (ql1240)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\nwlnkipx.dll -- (ql10wnt)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\odclientservice.dll -- (qkbfiltr)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\nmap.dll -- (pdlnebas)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SetupNT.dll -- (pctavsvc)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\qkbfiltr.dll -- (ntrtscan)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\W55U01.dll -- (mnsframework)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tandpl.dll -- (mgabgexe)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\eventclientmultiplexer.dll -- (mcrdsvc)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\slabser.dll -- (MaxtorFrontPanel1)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\iAimFP6.dll -- (lxcd_device)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\nwlnknb.dll -- (lxby_device)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ood2000.dll -- (LHidUsbK)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\AVerBDA.dll -- (lbtserv)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\F700ius.dll -- (konfig)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SiS300i.dll -- (imapiservice)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\dsNcAdpt.dll -- (firelm01)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tosrfsnd.dll -- (epsonbidirectionalservice)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\CA561.dll -- (EACSvrMngr)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\streamip.dll -- (DniVad)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\vrfwsvc.dll -- (diskperf)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\rapapp.dll -- (ctaud2k)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\xmlprov.dll -- (cics.region2)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ESMCR.dll -- (CAMFLT)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\Tb2RCAssist.dll -- (awhost32)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\PEVSystemStart.dll -- (atitunep)
SRV - File not found [Auto | Stopped] -- %systemroot%\system32\cwafadmincontroller.dll -- (aavmker4)
SRV - [2012/04/13 20:48:09 | 000,253,088 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/04/04 15:56:40 | 000,654,408 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2011/06/06 12:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2008/11/18 20:19:28 | 000,241,746 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_ae0b52e0\stacsv.exe -- (STacSV)
SRV - [2008/11/17 19:22:44 | 000,081,920 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_ae0b52e0\AEstSrv.exe -- (AESTFilters)
SRV - [2008/01/20 21:23:32 | 000,272,952 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ipinip.sys -- (IpInIp)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\SystemRequirementsLab\cpudrv.sys -- (cpudrv)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Users\Xavi\AppData\Local\Temp\catchme.sys -- (catchme)
DRV - [2012/04/04 15:56:40 | 000,022,344 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2012/03/09 09:12:36 | 000,121,208 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AnyDVD.sys -- (AnyDVD)
DRV - [2011/07/31 00:00:46 | 000,436,792 | ---- | M] (Duplex Secure Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\sptd.sys -- (sptd)
DRV - [2008/11/18 20:19:28 | 000,393,216 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\stwrt.sys -- (STHDA)
DRV - [2008/07/24 18:42:48 | 000,170,032 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Apfiltr.sys -- (ApfiltrService)
DRV - [2008/02/13 17:17:26 | 000,618,112 | ---- | M] (PixArt Imaging Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\PFC027.SYS -- (PAC207)
DRV - [2004/02/04 10:27:56 | 000,049,536 | ---- | M] (Texas Instruments Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tiehdusb.sys -- (TIEHDUSB)
DRV - [2002/07/17 16:20:32 | 000,084,832 | ---- | M] (Adaptec) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ASPI32.SYS -- (ASPI)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-2520783751-165864320-3817540785-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/
IE - HKU\S-1-5-21-2520783751-165864320-3817540785-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-2520783751-165864320-3817540785-1000\..\SearchScopes,DefaultScope = {95B7759C-8C7F-4BF1-B163-73684A933233}
IE - HKU\S-1-5-21-2520783751-165864320-3817540785-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-2520783751-165864320-3817540785-1000\..\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}: "URL" =
http://isearch.avg.com/search?cid={...b8ee9c60b8c&lang=en&ds=AVG&pr=pr&d=2012-04-28 13:12:33&v=11.0.0.9&sap=dsp&q={searchTerms}
IE - HKU\S-1-5-21-2520783751-165864320-3817540785-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-2520783751-165864320-3817540785-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
O1 HOSTS File: ([2012/04/29 07:58:07 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O4 - HKLM..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe (Alps Electric Co., Ltd.)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [ContentTransferWMDetector.exe] C:\Program Files\Sony\Content Transfer\ContentTransferWMDetector.exe (Sony Corporation)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe (Nero AG)
O4 - HKLM..\Run: [PAC207_Monitor] C:\Windows\PixArt\Pac207\Monitor.exe (PixArt Imaging Incorporation)
O4 - HKLM..\Run: [PDVDDXSrv] C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe (CyberLink Corp.)
O4 - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe (IDT, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: AllowLegacyWebView = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: AllowUnhashedWebView = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2520783751-165864320-3817540785-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2520783751-165864320-3817540785-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {8CFCF42C-1C64-47D6-AEEC-F9D001832ED3}
http://xserv.dell.com/DellDriverScanner/DellSystem.CAB (DellSystem.Scanner)
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3}
http://floridakeysmedia.tv/axiscam/Codebase/AxisCamControl.ocx (CamImage Class)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F}
http://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_intel_4.5.5.0.cab (Reg Error: Key error.)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{22C08851-91BF-4C13-B29F-02B840FACF95}: DhcpNameServer = 192.168.1.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\img24.jpg
O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\img24.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 16:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: CAMFLT - %systemroot%\system32\ESMCR.dll File not found
NetSvcs: diskperf - %systemroot%\system32\vrfwsvc.dll File not found
NetSvcs: DniVad - %systemroot%\system32\streamip.dll File not found
NetSvcs: mgabgexe - %systemroot%\system32\tandpl.dll File not found
NetSvcs: firelm01 - %systemroot%\system32\dsNcAdpt.dll File not found
NetSvcs: LHidUsbK - %systemroot%\system32\ood2000.dll File not found
NetSvcs: ntrtscan - %systemroot%\system32\qkbfiltr.dll File not found
NetSvcs: w810mdfl - %systemroot%\system32\swwd.dll File not found
NetSvcs: konfig - %systemroot%\system32\F700ius.dll File not found
NetSvcs: epsonbidirectionalservice - %systemroot%\system32\tosrfsnd.dll File not found
NetSvcs: tmtdi - %systemroot%\system32\Pnp680r.dll File not found
NetSvcs: ctaud2k - %systemroot%\system32\rapapp.dll File not found
NetSvcs: atitunep - %systemroot%\system32\PEVSystemStart.dll File not found
NetSvcs: imapiservice - %systemroot%\system32\SiS300i.dll File not found
NetSvcs: ql1240 - %systemroot%\system32\ngdbserv.dll File not found
NetSvcs: cics.region2 - %systemroot%\system32\xmlprov.dll File not found
NetSvcs: lbtserv - %systemroot%\system32\AVerBDA.dll File not found
NetSvcs: mcrdsvc - %systemroot%\system32\eventclientmultiplexer.dll File not found
NetSvcs: VAIOMediaPlatform-VideoServer-UPnP - %systemroot%\system32\SetupSys.dll File not found
NetSvcs: siskp - %systemroot%\system32\winmgmt.dll File not found
NetSvcs: ultra66 - File not found
NetSvcs: ESMCR - File not found
NetSvcs: deventagent - File not found
NetSvcs: Wbutton - File not found
NetSvcs: alertmanager - File not found
NetSvcs: pdlnebas - %systemroot%\system32\nmap.dll File not found
NetSvcs: aavmker4 - %systemroot%\system32\cwafadmincontroller.dll File not found
NetSvcs: MaxtorFrontPanel1 - %systemroot%\system32\slabser.dll File not found
NetSvcs: USA49W2KP - %systemroot%\system32\aswrdr.dll File not found
NetSvcs: EACSvrMngr - %systemroot%\system32\CA561.dll File not found
NetSvcs: symantecantibotfilter - %systemroot%\system32\oracle_load_balancer_60_server-forms6ip14.dll File not found
NetSvcs: mnsframework - %systemroot%\system32\W55U01.dll File not found
NetSvcs: rsvchost - %systemroot%\system32\isdrv122.dll File not found
NetSvcs: lxby_device - %systemroot%\system32\nwlnknb.dll File not found
NetSvcs: sonicatheaterinstallerservice - %systemroot%\system32\hpt3xx.dll File not found
NetSvcs: relational - %systemroot%\system32\id2scaps.dll File not found
NetSvcs: server - %systemroot%\system32\NwSapAgent.dll File not found
NetSvcs: lxcd_device - %systemroot%\system32\iAimFP6.dll File not found
NetSvcs: sfrem01 - %systemroot%\system32\flashcom.dll File not found
NetSvcs: ql10wnt - %systemroot%\system32\nwlnkipx.dll File not found
NetSvcs: pctavsvc - %systemroot%\system32\SetupNT.dll File not found
NetSvcs: WISTechVIDCAP - %systemroot%\system32\mwsarcpkt.dll File not found
NetSvcs: qkbfiltr - %systemroot%\system32\odclientservice.dll File not found
NetSvcs: TVALG - %systemroot%\system32\lxcf_device.dll File not found
NetSvcs: awhost32 - %systemroot%\system32\Tb2RCAssist.dll File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found
Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: MSVideo8 - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\Windows\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.DIVX - C:\Windows\System32\DivX.dll (DivX, Inc.)
Drivers32: vidc.XVID - C:\Windows\System32\xvidvfw.dll ()
Drivers32: vidc.yv12 - C:\Windows\System32\DivX.dll (DivX, Inc.)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 30 Days ==========
[2012/04/29 16:52:23 | 000,595,456 | ---- | C] (OldTimer Tools) -- C:\Users\Xavi\Desktop\OTL.exe
[2012/04/29 16:33:11 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2012/04/29 16:33:11 | 000,000,000 | ---D | C] -- C:\Users\Xavi\AppData\Local\temp
[2012/04/29 16:32:29 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2012/04/29 16:24:04 | 004,479,463 | R--- | C] (Swearware) -- C:\Users\Xavi\Desktop\ComboFix.exe
[2012/04/29 14:49:54 | 000,000,000 | ---D | C] -- C:\Users\Xavi\Desktop\bootkit_remover
[2012/04/29 14:48:43 | 004,731,392 | ---- | C] (AVAST Software) -- C:\Users\Xavi\Desktop\aswMBR.exe
[2012/04/29 14:11:45 | 000,607,260 | R--- | C] (Swearware) -- C:\Users\Xavi\Desktop\dds.scr
[2012/04/29 14:09:02 | 000,022,344 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2012/04/29 14:09:02 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2012/04/29 13:58:41 | 000,000,000 | ---D | C] -- C:\Config.Msi
[2012/04/29 13:49:02 | 000,000,000 | ---D | C] -- C:\dell
[2012/04/29 09:13:52 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2012/04/29 07:49:05 | 000,000,000 | ---D | C] -- C:\jgh15176j
[2012/04/28 14:45:17 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2012/04/28 14:45:17 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2012/04/28 14:45:17 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2012/04/28 14:38:37 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2012/04/28 14:37:20 | 000,000,000 | ---D | C] -- C:\jgh
[2012/04/28 14:37:06 | 000,000,000 | ---D | C] -- C:\Qoobox
[2012/04/28 11:09:47 | 000,000,000 | ---D | C] -- C:\Users\Xavi\AppData\Roaming\Malwarebytes
[2012/04/28 11:09:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2012/04/28 10:47:37 | 002,074,160 | ---- | C] (Kaspersky Lab ZAO) -- C:\Users\Xavi\Desktop\tdsskiller.exe
[2012/04/28 10:34:11 | 012,903,272 | ---- | C] (SUPERAntiSpyware.com) -- C:\Users\Xavi\Desktop\SUPERAntiSpywarePro.exe
[2012/04/28 10:33:06 | 010,063,000 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Xavi\Desktop\mbam-setup-1.61.0.1400.exe
[2012/04/21 14:18:34 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\Windows\System32\CSVer.dll
[2012/04/20 05:59:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft Beta
[2012/04/20 05:59:44 | 000,000,000 | ---D | C] -- C:\Program Files\World of Warcraft Beta
[2012/04/20 05:58:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Battle.net
[2012/04/09 16:09:03 | 000,000,000 | ---D | C] -- C:\Users\Xavi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
[2012/04/09 16:04:30 | 000,000,000 | ---D | C] -- C:\Users\Xavi\Documents\AnyDVDHD
[2012/04/09 16:03:16 | 000,000,000 | ---D | C] -- C:\ProgramData\SlySoft
[2012/04/09 15:59:41 | 000,000,000 | ---D | C] -- C:\Program Files\SlySoft
[2012/04/09 15:54:19 | 000,000,000 | ---D | C] -- C:\Users\Xavi\Desktop\Movies
[2012/04/09 15:53:13 | 000,000,000 | ---D | C] -- C:\ProgramData\DVD Shrink
[2012/04/09 15:53:12 | 000,000,000 | ---D | C] -- C:\Program Files\DVD Shrink
[2012/04/05 22:20:07 | 000,000,000 | ---D | C] -- C:\Users\Xavi\Documents\Ripped karaoke
[2012/04/05 22:20:06 | 000,000,000 | ---D | C] -- C:\Users\Xavi\AppData\Roaming\Doblon
[2012/04/05 22:19:42 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Doblon
[2012/04/05 22:19:41 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\cdrdao
[2012/04/05 22:17:35 | 000,000,000 | ---D | C] -- C:\Users\Xavi\Desktop\Karaoke Songs
[2012/03/30 21:13:27 | 000,000,000 | ---D | C] -- C:\Program Files\Doblon
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2012/04/29 16:52:24 | 000,595,456 | ---- | M] (OldTimer Tools) -- C:\Users\Xavi\Desktop\OTL.exe
[2012/04/29 16:48:15 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/04/29 16:44:01 | 000,604,502 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2012/04/29 16:44:01 | 000,104,170 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2012/04/29 16:37:31 | 000,007,728 | ---- | M] () -- C:\Users\Xavi\AppData\Local\d3d9caps.dat
[2012/04/29 16:37:26 | 000,000,878 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012/04/29 16:37:25 | 000,003,712 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2012/04/29 16:37:25 | 000,003,712 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2012/04/29 16:37:19 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/04/29 16:37:12 | 3179,663,360 | -HS- | M] () -- C:\hiberfil.sys
[2012/04/29 16:25:01 | 004,479,463 | R--- | M] (Swearware) -- C:\Users\Xavi\Desktop\ComboFix.exe
[2012/04/29 16:13:00 | 000,000,882 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/04/29 15:08:59 | 000,000,512 | ---- | M] () -- C:\Users\Xavi\Desktop\MBR.dat
[2012/04/29 14:49:18 | 004,731,392 | ---- | M] (AVAST Software) -- C:\Users\Xavi\Desktop\aswMBR.exe
[2012/04/29 14:11:45 | 000,607,260 | R--- | M] (Swearware) -- C:\Users\Xavi\Desktop\dds.scr
[2012/04/29 14:10:49 | 000,302,592 | ---- | M] () -- C:\Users\Xavi\Desktop\k12rdfp7.exe
[2012/04/29 14:09:04 | 000,000,906 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/04/29 07:58:07 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts
[2012/04/28 10:47:47 | 002,074,160 | ---- | M] (Kaspersky Lab ZAO) -- C:\Users\Xavi\Desktop\tdsskiller.exe
[2012/04/28 10:35:42 | 012,903,272 | ---- | M] (SUPERAntiSpyware.com) -- C:\Users\Xavi\Desktop\SUPERAntiSpywarePro.exe
[2012/04/28 10:33:50 | 010,063,000 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Xavi\Desktop\mbam-setup-1.61.0.1400.exe
[2012/04/21 15:13:05 | 000,012,852 | ---- | M] () -- C:\Windows\System32\results.xml
[2012/04/21 14:49:19 | 000,000,749 | ---- | M] () -- C:\Users\Public\Desktop\World of Warcraft.lnk
[2012/04/21 14:38:53 | 000,029,300 | ---- | M] () -- C:\Windows\System32\DellSystem.xml
[2012/04/20 12:46:51 | 000,000,069 | ---- | M] () -- C:\Windows\NeroDigital.ini
[2012/04/20 06:00:37 | 000,001,105 | ---- | M] () -- C:\Users\Public\Desktop\World of Warcraft Beta.lnk
[2012/04/15 20:04:43 | 000,002,377 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2012/04/09 16:03:00 | 000,000,040 | -HS- | M] () -- C:\ProgramData\.zreglib
[2012/04/09 16:02:17 | 000,241,280 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2012/04/09 15:53:13 | 000,000,792 | ---- | M] () -- C:\Users\Xavi\Desktop\DVD Shrink 3.2.lnk
[2012/04/05 22:19:43 | 000,001,008 | ---- | M] () -- C:\Users\Xavi\Desktop\Power CD+G Burner.lnk
[2012/04/04 15:56:40 | 000,022,344 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files Created - No Company Name ==========
[2012/04/29 15:08:59 | 000,000,512 | ---- | C] () -- C:\Users\Xavi\Desktop\MBR.dat
[2012/04/29 14:10:49 | 000,302,592 | ---- | C] () -- C:\Users\Xavi\Desktop\k12rdfp7.exe
[2012/04/29 14:09:04 | 000,000,906 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/04/28 14:45:17 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2012/04/28 14:45:17 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2012/04/28 14:45:17 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2012/04/28 14:45:17 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2012/04/28 14:45:17 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2012/04/28 14:30:56 | 3179,663,360 | -HS- | C] () -- C:\hiberfil.sys
[2012/04/21 15:13:05 | 000,012,852 | ---- | C] () -- C:\Windows\System32\results.xml
[2012/04/21 14:38:50 | 000,029,300 | ---- | C] () -- C:\Windows\System32\DellSystem.xml
[2012/04/20 05:59:44 | 000,001,105 | ---- | C] () -- C:\Users\Public\Desktop\World of Warcraft Beta.lnk
[2012/04/09 16:03:19 | 000,000,830 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/04/09 16:03:00 | 000,000,040 | -HS- | C] () -- C:\ProgramData\.zreglib
[2012/04/09 15:53:13 | 000,000,792 | ---- | C] () -- C:\Users\Xavi\Desktop\DVD Shrink 3.2.lnk
[2012/04/05 22:19:43 | 000,001,008 | ---- | C] () -- C:\Users\Xavi\Desktop\Power CD+G Burner.lnk
[2012/02/13 21:34:38 | 000,000,262 | ---- | C] () -- C:\Windows\{789289CA-F73A-4A16-A331-54D498CE069F}_WiseFW.ini
[2011/10/13 11:59:42 | 000,439,308 | ---- | C] () -- C:\Windows\System32\igcompkrng500.bin
[2011/10/13 11:59:40 | 000,982,240 | ---- | C] () -- C:\Windows\System32\igkrng500.bin
[2011/10/13 11:59:40 | 000,092,356 | ---- | C] () -- C:\Windows\System32\igfcg500m.bin
[2011/10/13 11:31:48 | 000,004,096 | ---- | C] ( ) -- C:\Windows\System32\IGFXDEVLib.dll
[2011/10/13 11:30:24 | 000,000,268 | ---- | C] () -- C:\Windows\System32\GfxUI.exe.config
[2011/07/31 17:12:49 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini
[2011/07/28 20:29:24 | 000,000,068 | ---- | C] () -- C:\Windows\UpTiDev.INI
[2011/06/23 23:00:59 | 000,097,496 | -H-- | C] () -- C:\Windows\System32\mlfcache.dat
[2011/06/15 09:20:52 | 000,105,240 | ---- | C] () -- C:\Windows\System32\RSTCoin.dll
[2011/06/13 02:19:57 | 000,819,200 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2011/06/13 02:19:57 | 000,180,224 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2011/06/12 17:20:36 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2011/06/12 17:19:00 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2011/06/12 17:18:53 | 000,066,560 | ---- | C] () -- C:\Windows\System32\drivers\smb.sys
[2011/06/11 19:30:54 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2011/06/11 16:25:04 | 000,008,192 | ---- | C] () -- C:\Users\Xavi\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/06/11 15:43:37 | 000,147,456 | ---- | C] () -- C:\Windows\System32\igfxCoIn_v1576.dll
[2011/06/11 11:01:23 | 000,007,728 | ---- | C] () -- C:\Users\Xavi\AppData\Local\d3d9caps.dat
========== LOP Check ==========
[2012/04/05 22:20:06 | 000,000,000 | ---D | M] -- C:\Users\Xavi\AppData\Roaming\Doblon
[2011/07/31 12:44:37 | 000,000,000 | ---D | M] -- C:\Users\Xavi\AppData\Roaming\FileZilla
[2012/01/02 01:57:17 | 000,000,000 | ---D | M] -- C:\Users\Xavi\AppData\Roaming\FrostWire
[2011/06/11 15:41:00 | 000,000,000 | ---D | M] -- C:\Users\Xavi\AppData\Roaming\TMP
[2012/04/29 16:36:37 | 000,032,526 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.* >
[2006/09/18 16:43:36 | 000,000,024 | ---- | M] () -- C:\autoexec.bat
[2009/04/10 23:36:38 | 000,333,257 | RHS- | M] () -- C:\bootmgr
[2011/06/11 13:50:24 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK
[2006/09/18 16:43:37 | 000,000,010 | ---- | M] () -- C:\config.sys
[2012/04/29 16:37:12 | 3179,663,360 | -HS- | M] () -- C:\hiberfil.sys
[2011/07/30 23:26:08 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2011/07/30 23:26:08 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2012/04/29 16:37:11 | 3493,470,208 | -HS- | M] () -- C:\pagefile.sys
< %systemroot%\Fonts\*.com >
[2006/11/02 07:37:12 | 000,026,040 | ---- | M] () -- C:\Windows\Fonts\GlobalMonospace.CompositeFont
[2006/11/02 07:37:12 | 000,026,489 | ---- | M] () -- C:\Windows\Fonts\GlobalSansSerif.CompositeFont
[2006/11/02 07:37:12 | 000,029,779 | ---- | M] () -- C:\Windows\Fonts\GlobalSerif.CompositeFont
[2011/06/12 17:37:21 | 000,037,665 | ---- | M] () -- C:\Windows\Fonts\GlobalUserInterface.CompositeFont
< %systemroot%\Fonts\*.dll >
< %systemroot%\Fonts\*.ini >
[2006/09/18 16:37:34 | 000,000,065 | ---- | M] () -- C:\Windows\Fonts\desktop.ini
< %systemroot%\Fonts\*.ini2 >
< %systemroot%\Fonts\*.exe >
< %systemroot%\system32\spool\prtprocs\w32x86\*.* >
[2006/11/02 07:35:48 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\spool\prtprocs\w32x86\jnwppr.dll
< %systemroot%\REPAIR\*.bak1 >
< %systemroot%\REPAIR\*.ini >
< %systemroot%\system32\*.jpg >
< %systemroot%\*.jpg >
< %systemroot%\*.png >
< %systemroot%\*.scr >
< %systemroot%\*._sy >
< %APPDATA%\Adobe\Update\*.* >
< %ALLUSERSPROFILE%\Favorites\*.* >
< %APPDATA%\Microsoft\*.* >
< %PROGRAMFILES%\*.* >
[2008/01/20 21:43:21 | 000,000,174 | -HS- | M] () -- C:\Program Files\desktop.ini
< %APPDATA%\Update\*.* >
< %systemroot%\*. /mp /s >
< %systemroot%\System32\config\*.sav >
[2008/01/20 22:14:18 | 016,846,848 | ---- | M] () -- C:\Windows\System32\config\COMPONENTS.SAV
[2008/01/20 22:14:08 | 000,106,496 | ---- | M] () -- C:\Windows\System32\config\DEFAULT.SAV
[2008/01/20 22:14:18 | 000,020,480 | ---- | M] () -- C:\Windows\System32\config\SECURITY.SAV
[2006/11/02 05:34:08 | 010,133,504 | ---- | M] () -- C:\Windows\System32\config\SOFTWARE.SAV
[2006/11/02 05:34:08 | 001,826,816 | ---- | M] () -- C:\Windows\System32\config\SYSTEM.SAV
< %PROGRAMFILES%\bak. /s >
< %systemroot%\system32\bak. /s >
< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >
< %systemroot%\system32\config\systemprofile\*.dat /x >
< %systemroot%\*.config >
< %systemroot%\system32\*.db >
< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2011/11/03 21:32:46 | 000,000,286 | -HS- | M] () -- C:\Users\Xavi\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini
< %USERPROFILE%\Desktop\*.exe >
[2012/04/29 14:49:18 | 004,731,392 | ---- | M] (AVAST Software) -- C:\Users\Xavi\Desktop\aswMBR.exe
[2012/04/29 16:25:01 | 004,479,463 | R--- | M] (Swearware) -- C:\Users\Xavi\Desktop\ComboFix.exe
[2012/04/29 14:10:49 | 000,302,592 | ---- | M] () -- C:\Users\Xavi\Desktop\k12rdfp7.exe
[2012/04/28 10:33:50 | 010,063,000 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Xavi\Desktop\mbam-setup-1.61.0.1400.exe
[2012/04/29 16:52:24 | 000,595,456 | ---- | M] (OldTimer Tools) -- C:\Users\Xavi\Desktop\OTL.exe
[2012/04/28 10:35:42 | 012,903,272 | ---- | M] (SUPERAntiSpyware.com) -- C:\Users\Xavi\Desktop\SUPERAntiSpywarePro.exe
[2012/04/28 10:47:47 | 002,074,160 | ---- | M] (Kaspersky Lab ZAO) -- C:\Users\Xavi\Desktop\tdsskiller.exe
< %PROGRAMFILES%\Common Files\*.* >
< %systemroot%\*.src >
< %systemroot%\install\*.* >
< %systemroot%\system32\DLL\*.* >
< %systemroot%\system32\HelpFiles\*.* >
< %systemroot%\tasks\*.* >
[2012/04/29 16:48:15 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/04/29 16:37:26 | 000,000,878 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012/04/29 16:13:00 | 000,000,882 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/04/29 16:37:24 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2012/04/29 16:36:37 | 000,032,526 | ---- | M] () -- C:\Windows\tasks\SCHEDLGU.TXT
< %systemroot%\system32\rundll\*.* >
< %systemroot%\winn32\*.* >
< %systemroot%\Java\*.* >
< %systemroot%\system32\test\*.* >
< %systemroot%\system32\Rundll32\*.* >
< %systemroot%\AppPatch\Custom\*.* >
< %APPDATA%\Roaming\Microsoft\Windows\Recent\*.lnk /x >
< %PROGRAMFILES%\PC-Doctor\Downloads\*.* >
< %PROGRAMFILES%\Internet Explorer\*.tmp >
< %PROGRAMFILES%\Internet Explorer\*.dat >
< %USERPROFILE%\My Documents\*.exe >
< %USERPROFILE%\*.exe >
< %systemroot%\ADDINS\*.* >
< %systemroot%\assembly\*.bak2 >
< %systemroot%\Config\*.* >
< %systemroot%\REPAIR\*.bak2 >
< %systemroot%\SECURITY\Database\*.sdb /x >
< %systemroot%\SYSTEM\*.bak2 >
< %systemroot%\Web\*.bak2 >
< %systemroot%\Driver Cache\*.* >
< %PROGRAMFILES%\Mozilla Firefox\0*.exe >
< %ProgramFiles%\Microsoft Common\*.* >
< %ProgramFiles%\TinyProxy. >
< %USERPROFILE%\Favorites\*.url /x >
[2011/06/11 11:01:36 | 000,000,402 | -HS- | M] () -- C:\Users\Xavi\Favorites\desktop.ini
< %systemroot%\system32\*.bk >
< %systemroot%\*.te >
< %systemroot%\system32\system32\*.* >
< %ALLUSERSPROFILE%\*.dat /x >
[2012/04/09 16:03:00 | 000,000,040 | -HS- | M] () -- C:\ProgramData\.zreglib
< %systemroot%\system32\drivers\*.rmv >
< dir /b "%systemroot%\system32\*.exe" | find /i " " /c >
< dir /b "%systemroot%\*.exe" | find /i " " /c >
< %PROGRAMFILES%\Microsoft\*.* >
< %systemroot%\System32\Wbem\proquota.exe >
< %PROGRAMFILES%\Mozilla Firefox\*.dat >
< %USERPROFILE%\Cookies\*.txt /x >
< %SystemRoot%\system32\fonts\*.* >
< %systemroot%\system32\winlog\*.* >
< %systemroot%\system32\Language\*.* >
< %systemroot%\system32\Settings\*.* >
< %systemroot%\system32\*.quo >
< %SYSTEMROOT%\AppPatch\*.exe >
< %SYSTEMROOT%\inf\*.exe >
< %SYSTEMROOT%\Installer\*.exe >
< %systemroot%\system32\config\*.bak2 >
< %systemroot%\system32\Computers\*.* >
< %SystemRoot%\system32\Sound\*.* >
< %SystemRoot%\system32\SpecialImg\*.* >
< %SystemRoot%\system32\code\*.* >
< %SystemRoot%\system32\draft\*.* >
< %SystemRoot%\system32\MSSSys\*.* >
< %ProgramFiles%\Javascript\*.* >
< %systemroot%\pchealth\helpctr\System\*.exe /s >
< %systemroot%\Web\*.exe >
< %systemroot%\system32\msn\*.* >
< %systemroot%\system32\*.tro >
< %AppData%\Microsoft\Installer\msupdates\*.* >
< %ProgramFiles%\Messenger\*.* >
< %systemroot%\system32\systhem32\*.* >
< %systemroot%\system\*.exe >
< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2012-04-11 08:10:34
< MD5 for: SMB.SYS >
[2008/01/20 21:25:00 | 000,066,560 | ---- | M] (Microsoft Corporation) MD5=031E6BCD53C9B2B9ACE111EAFEC347B6 -- C:\Windows\winsxs\x86_microsoft-windows-nbsmb_31bf3856ad364e35_6.0.6001.18000_none_5f6a9133f7f64138\smb.sys
[2009/04/10 21:45:24 | 000,066,560 | ---- | M] () MD5=638F8C9A536F9973D4C65D525B2C7582 -- C:\Windows\System32\drivers\smb.sys
[2009/04/10 23:45:22 | 000,066,560 | ---- | M] (Microsoft Corporation) MD5=7B75299A4D201D6A6533603D6914AB04 -- C:\Windows\SoftwareDistribution\Download\bcfed137e95e2bc1b83ef80262a82b16\x86_microsoft-windows-nbsmb_31bf3856ad364e35_6.0.6002.18005_none_61560a3ff5180c84\smb.sys
< End of report >