Here it is the first log:
OTL logfile created on: 2/9/2012 8:17:26 PM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\DCO-TECH01\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1.49 Gb Total Physical Memory | 1.06 Gb Available Physical Memory | 70.88% Memory free
2.84 Gb Paging File | 2.48 Gb Available in Paging File | 87.17% Paging File free
Paging file location(s): C:\pagefile.sys 1536 1536 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 29.47 Gb Total Space | 2.19 Gb Free Space | 7.42% Space Free | Partition Type: NTFS
Drive D: | 45.00 Gb Total Space | 32.11 Gb Free Space | 71.36% Space Free | Partition Type: NTFS
Computer Name: DCO-D420-01 | User Name: DCO-TECH01 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012/02/09 20:15:42 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\DCO-TECH01\Desktop\OTL.exe
PRC - [2012/02/03 03:04:52 | 000,419,096 | ---- | M] (BitDefender SRL) -- C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe
PRC - [2012/02/03 03:04:47 | 000,782,336 | ---- | M] (BitDefender S.R.L.) -- C:\Program Files\BitDefender\BitDefender 2009\bdagent.exe
PRC - [2012/01/19 04:47:20 | 003,027,840 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe
PRC - [2012/01/13 14:53:18 | 000,652,360 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2009/04/06 14:12:02 | 001,626,112 | ---- | M] (BitDefender S. R. L.) -- C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe
PRC - [2009/03/27 15:25:28 | 000,438,272 | ---- | M] () -- C:\Program Files\BitDefender\BitDefender 2009\seccenter.exe
PRC - [2009/01/13 11:28:46 | 001,528,608 | ---- | M] (Cisco Systems, Inc.) -- C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
PRC - [2008/04/13 17:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007/04/27 07:40:00 | 000,206,400 | ---- | M] (SafeNet, Inc) -- C:\Program Files\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe
========== Modules (No Company Name) ==========
MOD - [2011/05/22 10:21:36 | 000,093,696 | ---- | M] () -- C:\Program Files\FileZilla FTP Client\fzshellext.dll
MOD - [2009/04/13 11:53:26 | 000,233,472 | ---- | M] () -- C:\Program Files\BitDefender\BitDefender 2009\ENU\seccenter.ui
MOD - [2009/04/06 11:41:58 | 000,221,184 | ---- | M] () -- C:\Program Files\BitDefender\BitDefender 2009\bdfltlib.dll
MOD - [2009/03/27 15:25:28 | 000,438,272 | ---- | M] () -- C:\Program Files\BitDefender\BitDefender 2009\seccenter.exe
MOD - [2009/03/26 11:36:22 | 000,167,936 | ---- | M] () -- C:\Program Files\BitDefender\BitDefender 2009\agentreg.dll
MOD - [2009/02/23 10:44:34 | 000,045,056 | ---- | M] () -- C:\Program Files\BitDefender\BitDefender 2009\actxcont.dll
MOD - [2009/01/13 11:29:00 | 000,197,408 | ---- | M] () -- C:\WINDOWS\system32\vpnapi.dll
MOD - [2008/10/09 16:31:54 | 000,192,512 | ---- | M] () -- C:\WINDOWS\system32\txmlutil.dll
MOD - [2008/10/09 16:31:54 | 000,192,512 | ---- | M] () -- C:\Program Files\Common Files\BitDefender\BitDefender Update Service\txmlutil.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [Auto | Stopped] -- -- (SentinelKeysServer)
SRV - File not found [Auto | Stopped] -- -- (Pml Driver HPZ12)
SRV - File not found [Auto | Stopped] -- -- (Net Driver HPZ12)
SRV - File not found [Auto | Stopped] -- -- (KeyServ)
SRV - File not found [Disabled | Stopped] -- -- (gupdatem) Google Update Service (gupdatem)
SRV - File not found [Disabled | Stopped] -- -- (gupdate) Google Update Service (gupdate)
SRV - [2012/02/03 03:04:52 | 000,419,096 | ---- | M] (BitDefender SRL) [Auto | Running] -- C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe -- (LIVESRV)
SRV - [2012/02/03 03:04:45 | 000,323,584 | ---- | M] (S.C. BitDefender S.R.L) [On_Demand | Stopped] -- C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\scan.dll -- (scan)
SRV - [2012/01/19 04:47:20 | 003,027,840 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe -- (TeamViewer7)
SRV - [2012/01/13 14:53:18 | 000,652,360 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2010/06/25 10:07:20 | 000,117,264 | ---- | M] (CACE Technologies, Inc.) [Disabled | Stopped] -- C:\Program Files\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)
SRV - [2009/04/06 14:12:02 | 001,626,112 | ---- | M] (BitDefender S. R. L.) [Auto | Running] -- C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe -- (VSSERV)
SRV - [2009/01/13 11:28:46 | 001,528,608 | ---- | M] (Cisco Systems, Inc.) [Auto | Running] -- C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe -- (CVPND)
SRV - [2008/10/15 16:13:58 | 000,439,632 | ---- | M] (RealVNC Ltd.) [Disabled | Stopped] -- C:\Program Files\RealVNC\VNC4\WinVNC4.exe -- (WinVNC4)
SRV - [2007/04/27 07:40:00 | 000,206,400 | ---- | M] (SafeNet, Inc) [Auto | Running] -- C:\Program Files\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe -- (SentinelProtectionServer)
SRV - [2006/05/23 06:41:10 | 001,220,096 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\Avaya\MV_Manager\bin\MV_Manager_Service.exe -- (MV_Manager_Svr)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Running] -- -- (catchme)
DRV - [2012/02/03 03:04:51 | 000,146,312 | ---- | M] (BitDefender S.R.L. Bucharest, ROMANIA) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\bdfm.sys -- (bdfm)
DRV - [2011/12/16 08:53:01 | 000,025,088 | ---- | M] (TeamViewer GmbH) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\teamviewervpn.sys -- (teamviewervpn)
DRV - [2011/12/10 15:24:06 | 000,020,464 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2011/09/19 10:40:13 | 000,232,512 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV - [2010/06/25 10:07:14 | 000,035,088 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\npf.sys -- (NPF)
DRV - [2009/04/06 16:44:58 | 000,266,376 | ---- | M] (BitDefender S.R.L. Bucharest, ROMANIA) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\bdfsfltr.sys -- (bdfsfltr)
DRV - [2009/04/03 17:49:38 | 000,039,808 | ---- | M] (BitDefender S.R.L.) [Kernel | On_Demand | Stopped] -- C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\trufos.sys -- (Trufos)
DRV - [2009/01/13 11:27:38 | 000,306,811 | ---- | M] (Cisco Systems, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\CVPNDRVA.sys -- (CVPNDRVA)
DRV - [2009/01/12 12:27:58 | 000,008,832 | ---- | M] (BitDefender S.R.L.) [Kernel | On_Demand | Running] -- C:\Program Files\BitDefender\BitDefender 2009\bdselfpr.sys -- (BDSelfPr)
DRV - [2008/09/02 14:32:06 | 000,013,056 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\profos.sys -- (Profos)
DRV - [2008/08/28 17:17:38 | 000,131,856 | ---- | M] (Deterministic Networks, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\dne2000.sys -- (DNE)
DRV - [2008/08/21 18:49:56 | 000,008,320 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\motccgpfl.sys -- (motccgpfl)
DRV - [2008/08/21 18:49:22 | 000,018,688 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\motccgp.sys -- (motccgp)
DRV - [2007/11/14 18:05:16 | 000,394,952 | ---- | M] (Zone Labs, LLC) [Kernel | Auto | Running] -- C:\WINDOWS\system32\vsdatant.sys -- (vsdatant)
DRV - [2007/10/10 17:41:50 | 000,042,112 | ---- | M] (Motorola Inc) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\motodrv.sys -- (MotDev)
DRV - [2007/06/18 15:18:26 | 000,023,680 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\motport.sys -- (motport)
DRV - [2007/06/18 15:18:26 | 000,023,680 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\motmodem.sys -- (motmodem)
DRV - [2007/01/31 01:37:18 | 000,056,320 | ---- | M] (O2Micro) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\oz776.sys -- (guardian2)
DRV - [2007/01/18 19:28:02 | 000,005,275 | ---- | M] (Cisco Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\CVirtA.sys -- (CVirtA)
DRV - [2006/03/24 00:34:30 | 001,156,648 | ---- | M] (SigmaTel, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sthda.sys -- (STHDA)
DRV - [2005/10/26 09:01:02 | 000,142,720 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\b57xp32.sys -- (b57w2k)
DRV - [2005/08/30 16:59:00 | 000,094,000 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_mdm.sys -- (ss_mdm)
DRV - [2005/08/30 16:58:56 | 000,008,304 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_mdfl.sys -- (ss_mdfl)
DRV - [2005/08/30 16:57:18 | 000,058,320 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bus.sys -- (ss_bus) SAMSUNG Mobile USB Device 1.0 driver (WDM)
DRV - [2003/07/16 03:27:40 | 000,043,264 | R--- | M] (Prolific Technology Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ser2pl.sys -- (Ser2pl)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Page_URL =
www.google.com.mx/ig/dell?hl=en&client=dell-row-rel&channel=mx&ibd=3070619
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL =
http://www.google.com/ie
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page =
www.google.com.mx/ig/dell?hl=en&client=dell-row-rel&channel=mx&ibd=3070619
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://www.google.com/ie
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..extensions.enabledItems:
jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26
FF - prefs.js..network.proxy.no_proxies_on: "ipoffice"
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Web Player\npdivx32.dll (DivX,Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: File not found
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll File not found
[2010/07/08 23:36:22 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\DCO-TECH01\Application Data\Mozilla\Extensions
[2011/11/05 11:49:34 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\DCO-TECH01\Application Data\Mozilla\Firefox\Profiles\ccdb0exi.default\extensions
[2010/07/12 20:57:38 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\DCO-TECH01\Application Data\Mozilla\Firefox\Profiles\ccdb0exi.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2012/01/25 15:18:54 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2012/01/10 10:06:22 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
[2012/02/03 15:39:20 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2011/03/18 12:32:12 | 000,091,552 | ---- | M] (Coupons, Inc.) -- C:\Program Files\mozilla firefox\plugins\npCouponPrinter.dll
[2011/05/04 03:52:23 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2011/03/18 12:32:14 | 000,091,552 | ---- | M] (Coupons, Inc.) -- C:\Program Files\mozilla firefox\plugins\npMozCouponPrinter.dll
O1 HOSTS File: ([2012/02/08 22:57:35 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (AvayaIEHlprObj Class) - {E6DF0B46-7D6F-407A-A6A2-62D17A021A9A} - C:\Program Files\Avaya\Avaya IP Softphone\AvayaWebDial.dll ()
O2 - BHO: (no name) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - No CLSID value found.
O3 - HKCU\..\Toolbar\ShellBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O4 - HKLM..\Run: [BDAgent] C:\Program Files\BitDefender\BitDefender 2009\bdagent.exe (BitDefender S.R.L.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Recovery present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8}
http://download.microsoft.com/download/e/7/3/e7345c16-80aa-4488-ae10-9ac6be844f99/OGAControl.cab (Office Genuine Advantage Validation Tool)
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5}
http://download.eset.com/special/eos/OnlineScanner.cab (OnlineScanner Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab (Reg Error: Value error.)
O16 - DPF: {C7DB51B4-BCF7-4923-8874-7F1A0DC92277}
http://office.microsoft.com/officeupdate/content/opuc4.cab (Office Update Installation Engine)
O16 - DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}
http://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0015-0000-0015-ABCDEFFEDCBA}
http://java.sun.com/update/1.5.0/jinstall-1_5_0_15-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30)
O16 - DPF: {D1E7CBDA-E60E-4970-A01C-37301EF7BF98}
http://service.futuremark.com/virtualmark/tc/FMSI.cab (Reg Error: Value error.)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C}
https://cisco.webex.com/client/T27L/event/ieatgpc.cab (GpcContainer Class)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Value error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.1 209.18.47.61 209.18.47.62
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{85DBE165-68E3-4A74-811F-ED32CF47F2D3}: DhcpNameServer = 10.0.0.1 209.18.47.61 209.18.47.62
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\DCO-TECH01\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\DCO-TECH01\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2004/08/11 15:15:00 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.ffds - C:\Program Files\Combined Community Codec Pack\Filters\FFDShow\ff_vfw.dll ()
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 30 Days ==========
[2012/02/09 20:15:37 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\DCO-TECH01\Desktop\OTL.exe
[2012/02/09 15:16:29 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2012/02/07 11:59:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\TeamViewer 7
[2012/02/04 19:44:16 | 004,396,501 | R--- | C] (Swearware) -- C:\Documents and Settings\DCO-TECH01\Desktop\ComboFix.exe
[2012/02/04 15:37:09 | 000,083,968 | ---- | C] (Esage Lab) -- C:\Documents and Settings\DCO-TECH01\Desktop\boot_cleaner.exe
[2012/02/04 14:26:54 | 004,733,440 | ---- | C] (AVAST Software) -- C:\Documents and Settings\DCO-TECH01\Desktop\aswMBR.exe
[2012/02/04 12:18:10 | 000,607,260 | R--- | C] (Swearware) -- C:\Documents and Settings\DCO-TECH01\Desktop\dds.scr
[2012/02/03 13:25:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\SecTaskMan
[2012/02/03 13:25:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Security Task Manager
[2012/02/03 13:25:06 | 000,000,000 | ---D | C] -- C:\Program Files\Security Task Manager
[2012/02/03 02:31:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\BitDefender 2009
[2012/02/03 02:31:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Application Data\BitDefender
[2012/02/03 02:30:34 | 000,000,000 | ---D | C] -- C:\Program Files\BitDefender
[2012/02/03 02:30:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\BitDefender
[2012/02/03 02:29:29 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\BitDefender
[2012/02/02 23:51:52 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2012/02/01 14:07:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Cisco Systems VPN Client
[2012/02/01 14:07:54 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Deterministic Networks
[2012/02/01 12:16:51 | 000,000,000 | ---D | C] -- C:\TDSSKiller_Quarantine
[2012/01/31 03:51:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Sun
[2012/01/31 03:51:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Macromedia
[2012/01/31 03:51:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Adobe
[2012/01/31 03:32:50 | 000,020,464 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2012/01/30 16:40:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Desktop\it
[2012/01/26 11:18:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp
[2012/01/25 15:54:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\DWG Viewer
[2012/01/25 14:28:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Dell Accessories
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Real
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\PrintMe Internet Printing
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\NetWaiting
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Modem Helper
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Microsoft Silverlight
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Microsoft Office Live Meeting 2007
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Microsoft Office
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Malwarebytes' Anti-Malware
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\IP Office
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\ImgBurn
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\HP
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Games
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\FileZilla FTP Client
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\EPSON
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\DWG Viewer
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\DivX
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\DAEMON Tools Lite
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Coupons
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Combined Community Codec Pack
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Avira
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Avaya University
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Avaya Solutions
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Avaya Reliable Data Transport Tool
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Avaya IP Softphone
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Avaya
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Audio Related Programs
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Advanced SystemCare 4
[2012/01/25 14:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\3CDaemon
[2012/01/25 14:28:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\WinSCP
[2012/01/25 14:28:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\WinPcap
[2012/01/25 14:28:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Windows Live
[2012/01/25 14:28:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Viking
[2012/01/25 14:28:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\VideoLAN
[2012/01/25 14:28:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\TFTPSuite95Pro
[2012/01/25 14:28:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Samsung PC Studio 3
[2012/01/25 14:28:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\RealVNC
[2012/01/25 01:48:00 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2012/01/25 01:46:31 | 000,518,144 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2012/01/25 01:46:31 | 000,406,528 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2012/01/25 01:46:31 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2012/01/25 01:46:31 | 000,060,416 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2012/01/25 01:46:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2012/01/25 01:37:55 | 000,000,000 | ---D | C] -- C:\Qoobox
[2012/01/24 11:05:13 | 000,000,000 | R--D | C] -- C:\Documents and Settings\DCO-TECH01\Recent
[2012/01/23 20:04:32 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Administrative Tools
[2012/01/23 18:28:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Sun
[2012/01/23 18:22:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Macromedia
[2012/01/23 18:22:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Adobe
[2012/01/18 01:38:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Desktop\Ip Office R7
[2012/01/17 01:46:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\IP Office
[2012/01/17 01:35:23 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SafeNet Sentinel
[2012/01/12 16:23:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Local Settings\Application Data\PCHealth
[2012/01/11 16:31:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\DCO-TECH01\Desktop\New Folder
========== Files - Modified Within 30 Days ==========
[2012/02/09 20:15:42 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\DCO-TECH01\Desktop\OTL.exe
[2012/02/09 14:05:01 | 000,000,292 | ---- | M] () -- C:\WINDOWS\tasks\wavepadShakeIcon.job
[2012/02/08 22:57:35 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2012/02/08 22:32:05 | 000,452,974 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012/02/08 22:32:05 | 000,076,522 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2012/02/08 22:28:28 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012/02/08 22:27:14 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012/02/08 22:27:10 | 1600,249,856 | -HS- | M] () -- C:\hiberfil.sys
[2012/02/08 14:05:00 | 000,000,292 | ---- | M] () -- C:\WINDOWS\tasks\wavepadDowngrade.job
[2012/02/08 00:04:01 | 000,000,512 | ---- | M] () -- C:\Documents and Settings\DCO-TECH01\Desktop\MBR.dat
[2012/02/07 19:35:06 | 000,000,055 | ---- | M] () -- C:\WINDOWS\ATTWKTOP.INI
[2012/02/07 11:59:55 | 000,000,815 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\TeamViewer 7.lnk
[2012/02/05 13:18:41 | 000,002,220 | ---- | M] () -- C:\WINDOWS\System32\BDUpdateV1.xml
[2012/02/04 19:46:52 | 000,000,480 | ---- | M] () -- C:\Documents and Settings\DCO-TECH01\Desktop\Shortcut to ComboFix.lnk
[2012/02/04 19:44:16 | 004,396,501 | R--- | M] (Swearware) -- C:\Documents and Settings\DCO-TECH01\Desktop\ComboFix.exe
[2012/02/04 14:24:20 | 004,733,440 | ---- | M] (AVAST Software) -- C:\Documents and Settings\DCO-TECH01\Desktop\aswMBR.exe
[2012/02/04 12:15:42 | 000,607,260 | R--- | M] (Swearware) -- C:\Documents and Settings\DCO-TECH01\Desktop\dds.scr
[2012/02/03 03:04:51 | 000,146,312 | ---- | M] (BitDefender S.R.L. Bucharest, ROMANIA) -- C:\WINDOWS\System32\drivers\bdfm.sys
[2012/02/03 02:34:34 | 000,000,850 | ---- | M] () -- C:\WINDOWS\System32\ProductTweaks.xml
[2012/02/03 02:34:34 | 000,000,385 | ---- | M] () -- C:\WINDOWS\System32\user_gensett.xml
[2012/02/02 16:45:28 | 000,192,541 | ---- | M] () -- C:\Documents and Settings\DCO-TECH01\Local Settings\Application Data\census.cache
[2012/02/02 16:45:09 | 000,175,270 | ---- | M] () -- C:\Documents and Settings\DCO-TECH01\Local Settings\Application Data\ars.cache
[2012/02/02 16:24:08 | 000,000,036 | ---- | M] () -- C:\Documents and Settings\DCO-TECH01\Local Settings\Application Data\housecall.guid.cache
[2012/02/02 10:36:26 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2012/02/02 10:36:26 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2012/02/02 09:39:49 | 000,396,850 | ---- | M] () -- C:\Documents and Settings\DCO-TECH01\Desktop\MARSH CD JUAREZ.pdf
[2012/02/01 14:11:02 | 000,001,594 | ---- | M] () -- C:\WINDOWS\VPNInstall.MIF
[2012/02/01 14:06:54 | 000,001,594 | ---- | M] () -- C:\WINDOWS\VPNUnInstall.MIF
[2012/01/31 11:49:29 | 000,001,324 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2012/01/31 03:33:09 | 000,000,802 | ---- | M] () -- C:\Documents and Settings\DCO-TECH01\Application Data\Microsoft\Internet Explorer\Quick Launch\Malwarebytes Anti-Malware.lnk
[2012/01/30 17:53:12 | 000,025,510 | ---- | M] () -- C:\Documents and Settings\DCO-TECH01\Desktop\MXCHH21MARSHPBX2.cfg
[2012/01/30 17:51:25 | 000,024,901 | ---- | M] () -- C:\Documents and Settings\DCO-TECH01\Desktop\MXCHH21MARSHPBX.cfg
[2012/01/30 17:36:08 | 000,000,600 | ---- | M] () -- C:\Documents and Settings\DCO-TECH01\PUTTY.RND
[2012/01/30 16:35:02 | 015,311,903 | ---- | M] () -- C:\Documents and Settings\DCO-TECH01\Desktop\g430_sw_31_20_1.bin
[2012/01/30 15:01:54 | 000,013,091 | ---- | M] () -- C:\Documents and Settings\DCO-TECH01\Desktop\PREDIAL MOM.htm
[2012/01/30 12:47:54 | 012,780,091 | ---- | M] () -- C:\Documents and Settings\DCO-TECH01\Desktop\g430_sw_30_12_1.bin
[2012/01/27 19:12:35 | 001,562,174 | ---- | M] () -- C:\Documents and Settings\DCO-TECH01\Desktop\COMPROBACION LAREDO.pdf
[2012/01/26 01:35:19 | 000,000,792 | ---- | M] () -- C:\Documents and Settings\DCO-TECH01\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Microsoft Office Outlook.lnk
[2012/01/26 01:26:28 | 000,329,096 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012/01/25 12:31:33 | 000,000,778 | ---- | M] () -- C:\Documents and Settings\DCO-TECH01\Application Data\Microsoft\Internet Explorer\Quick Launch\Shortcut to ASA.exe.lnk
[2012/01/25 11:43:10 | 000,000,104 | ---- | M] () -- C:\Documents and Settings\DCO-TECH01\Application Data\Microsoft\Internet Explorer\Quick Launch\Internet Explorer.lnk
[2012/01/25 06:08:06 | 000,000,746 | ---- | M] () -- C:\Documents and Settings\DCO-TECH01\Application Data\Microsoft\Internet Explorer\Quick Launch\Shortcut to OUTLOOK.EXE.lnk
[2012/01/25 01:48:09 | 000,000,327 | RHS- | M] () -- C:\boot.ini
[2012/01/23 18:18:41 | 000,000,079 | ---- | M] () -- C:\Documents and Settings\DCO-TECH01\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
[2012/01/23 13:49:12 | 000,000,211 | ---- | M] () -- C:\Boot.bak
[2012/01/20 15:21:11 | 000,000,568 | ---- | M] () -- C:\Documents and Settings\DCO-TECH01\address.ser
========== Files Created - No Company Name ==========
[2012/02/07 11:59:55 | 000,000,815 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\TeamViewer 7.lnk
[2012/02/04 19:46:52 | 000,000,480 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Desktop\Shortcut to ComboFix.lnk
[2012/02/04 15:35:55 | 000,000,512 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Desktop\MBR.dat
[2012/02/04 12:09:12 | 000,302,592 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Desktop\gmer.exe
[2012/02/03 03:23:52 | 000,002,220 | ---- | C] () -- C:\WINDOWS\System32\BDUpdateV1.xml
[2012/02/03 02:34:34 | 000,000,850 | ---- | C] () -- C:\WINDOWS\System32\ProductTweaks.xml
[2012/02/03 02:34:34 | 000,000,385 | ---- | C] () -- C:\WINDOWS\System32\user_gensett.xml
[2012/02/02 16:45:28 | 000,192,541 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Local Settings\Application Data\census.cache
[2012/02/02 16:45:09 | 000,175,270 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Local Settings\Application Data\ars.cache
[2012/02/02 16:24:08 | 000,000,036 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Local Settings\Application Data\housecall.guid.cache
[2012/02/02 09:39:45 | 000,396,850 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Desktop\MARSH CD JUAREZ.pdf
[2012/02/01 12:18:05 | 1600,249,856 | -HS- | C] () -- C:\hiberfil.sys
[2012/01/31 03:33:09 | 000,000,802 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Application Data\Microsoft\Internet Explorer\Quick Launch\Malwarebytes Anti-Malware.lnk
[2012/01/30 17:53:12 | 000,025,510 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Desktop\MXCHH21MARSHPBX2.cfg
[2012/01/30 17:43:20 | 000,024,901 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Desktop\MXCHH21MARSHPBX.cfg
[2012/01/30 16:57:10 | 014,879,965 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Desktop\640-801(New).pdf
[2012/01/30 16:33:43 | 015,311,903 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Desktop\g430_sw_31_20_1.bin
[2012/01/30 15:01:54 | 000,013,091 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Desktop\PREDIAL MOM.htm
[2012/01/30 12:47:54 | 012,780,091 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Desktop\g430_sw_30_12_1.bin
[2012/01/27 19:12:32 | 001,562,174 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Desktop\COMPROBACION LAREDO.pdf
[2012/01/26 01:35:19 | 000,000,792 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Microsoft Office Outlook.lnk
[2012/01/25 15:48:36 | 000,000,632 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Shortcut to wireshark.exe.lnk
[2012/01/25 15:20:49 | 000,000,651 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\VLC.lnk
[2012/01/25 15:14:37 | 000,000,615 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Shortcut to msmsgs.exe.lnk
[2012/01/25 15:08:21 | 000,000,667 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\Shortcut to iexplore.exe.lnk
[2012/01/25 14:28:26 | 000,000,804 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Start Menu\Programs\WavePad Sound Editor.lnk
[2012/01/25 14:05:41 | 000,000,172 | ---- | C] () -- C:\WINDOWS\uninstall.bat
[2012/01/25 14:05:23 | 000,000,292 | ---- | C] () -- C:\WINDOWS\tasks\wavepadShakeIcon.job
[2012/01/25 14:05:22 | 000,000,292 | ---- | C] () -- C:\WINDOWS\tasks\wavepadDowngrade.job
[2012/01/25 12:31:33 | 000,000,778 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Application Data\Microsoft\Internet Explorer\Quick Launch\Shortcut to ASA.exe.lnk
[2012/01/25 11:43:10 | 000,000,104 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Application Data\Microsoft\Internet Explorer\Quick Launch\Internet Explorer.lnk
[2012/01/25 06:08:06 | 000,000,746 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Application Data\Microsoft\Internet Explorer\Quick Launch\Shortcut to OUTLOOK.EXE.lnk
[2012/01/25 01:48:09 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2012/01/25 01:48:05 | 000,260,272 | RHS- | C] () -- C:\cmldr
[2012/01/25 01:46:31 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2012/01/25 01:46:31 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2012/01/25 01:46:31 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2012/01/25 01:46:31 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2012/01/25 01:46:31 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2012/01/24 16:04:58 | 000,000,079 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
[2012/01/10 09:16:05 | 000,004,096 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Local Settings\Application Data\keyfile3.drm
[2011/10/05 15:06:08 | 000,068,221 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Application Data\WavePad.dmp
[2011/01/17 17:55:06 | 000,000,055 | ---- | C] () -- C:\WINDOWS\ATTWKTOP.INI
[2010/07/11 13:22:06 | 000,121,304 | ---- | C] () -- C:\WINDOWS\HPHins15.dat
[2010/07/11 13:22:06 | 000,002,885 | ---- | C] () -- C:\WINDOWS\hphmdl15.dat
[2010/07/08 23:36:14 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010/07/01 17:21:06 | 001,217,600 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2010/06/25 10:03:12 | 000,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll
[2010/06/01 09:45:27 | 000,000,216 | ---- | C] () -- C:\WINDOWS\WOMBAT.INI
[2010/03/10 17:26:53 | 000,000,043 | ---- | C] () -- C:\WINDOWS\gswin32.ini
[2009/12/16 11:13:35 | 000,000,600 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Local Settings\Application Data\PUTTY.RND
[2009/08/03 14:07:42 | 000,403,816 | ---- | C] () -- C:\WINDOWS\System32\OGACheckControl.dll
[2009/08/03 14:07:42 | 000,230,768 | ---- | C] () -- C:\WINDOWS\System32\OGAEXEC.exe
[2009/03/10 11:29:56 | 000,000,600 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Application Data\winscp.rnd
[2009/01/13 11:29:00 | 000,197,408 | ---- | C] () -- C:\WINDOWS\System32\vpnapi.dll
[2009/01/13 11:28:44 | 000,193,312 | ---- | C] () -- C:\WINDOWS\System32\CSGina.dll
[2008/12/18 17:01:50 | 000,000,108 | ---- | C] () -- C:\WINDOWS\Lexstat.ini
[2008/12/18 17:00:43 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\lxczcnv7.dll
[2008/12/18 17:00:43 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\lxczcnv6.dll
[2008/12/18 17:00:43 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\lxczcnv5.dll
[2008/12/18 17:00:43 | 000,039,899 | ---- | C] () -- C:\WINDOWS\System32\rtsicis.ini
[2008/10/09 16:31:54 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\txmlutil.dll
[2008/10/08 10:51:26 | 000,157,629 | ---- | C] () -- C:\WINDOWS\hpoins28.dat.temp
[2008/10/08 10:51:25 | 000,000,932 | ---- | C] () -- C:\WINDOWS\hpomdl28.dat.temp
[2008/10/08 10:30:48 | 000,157,047 | ---- | C] () -- C:\WINDOWS\hpoins28.dat
[2008/10/08 10:30:48 | 000,000,932 | ---- | C] () -- C:\WINDOWS\hpomdl28.dat
[2008/08/02 22:43:27 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\LauncherAccess.dt
[2008/07/06 12:34:30 | 003,113,952 | ---- | C] () -- C:\WINDOWS\tn799dp-h0-f24-sig.bin
[2008/07/06 12:31:57 | 003,113,952 | ---- | C] () -- C:\WINDOWS\System32\tn799dp-h0-f24-sig.bin
[2007/11/05 13:50:21 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\uninstpw.exe
[2007/11/05 08:52:44 | 000,074,752 | ---- | C] () -- C:\WINDOWS\cadkasdeinst01e.exe
[2007/08/12 22:34:35 | 000,001,751 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2007/08/10 03:39:10 | 000,001,324 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2007/08/01 19:39:13 | 000,038,912 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2007/07/03 19:17:50 | 000,000,133 | ---- | C] () -- C:\Documents and Settings\DCO-TECH01\Local Settings\Application Data\fusioncache.dat
[2007/07/01 00:31:59 | 000,000,603 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2007/06/19 19:16:24 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2007/06/19 18:40:55 | 000,049,152 | ---- | C] () -- C:\WINDOWS\setpwrcg.exe
[2007/06/19 18:38:57 | 000,001,195 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI
[2007/01/31 14:50:32 | 000,913,408 | ---- | C] () -- C:\WINDOWS\System32\xreglib.dll
[2006/09/08 06:30:44 | 000,004,096 | ---- | C] () -- C:\WINDOWS\System32\detoured.dll
[2004/08/11 15:24:19 | 000,000,791 | ---- | C] () -- C:\WINDOWS\orun32.ini
[2004/08/11 15:19:30 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2004/08/11 15:12:14 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2004/08/11 15:11:31 | 000,001,793 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
[2004/08/11 15:07:24 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2004/08/11 15:06:43 | 000,329,096 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2004/08/11 15:00:30 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2004/08/11 15:00:28 | 000,452,974 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2004/08/11 15:00:28 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2004/08/11 15:00:28 | 000,076,522 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2004/08/11 15:00:28 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2004/08/11 15:00:27 | 000,004,627 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2004/08/11 15:00:26 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2004/08/11 15:00:24 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2004/08/11 15:00:19 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2004/08/11 15:00:19 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2004/08/11 15:00:12 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2004/08/11 15:00:04 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2003/01/30 06:04:00 | 000,618,496 | ---- | C] () -- C:\WINDOWS\System32\stlpmt45.dll
[2003/01/07 15:05:08 | 000,002,695 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI
========== LOP Check ==========
[2009/02/11 20:59:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\2DBoy
[2010/04/17 10:53:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Applications
[2012/02/03 02:35:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\BitDefender
[2011/08/30 08:18:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\BVRP Software
[2011/09/19 10:34:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
[2010/08/25 10:41:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\magicJack
[2007/08/06 08:15:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MSScanAppDataDir
[2011/08/01 01:27:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NCH Swift Sound
[2012/02/03 13:59:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SecTaskMan
[2010/03/10 16:42:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SpeedBit
[2008/09/01 14:09:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SSScanAppDataDir
[2011/10/05 14:36:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Viking
[2007/06/19 19:09:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Wave Systems Corp
[2011/10/05 23:05:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\DCO-TECH01\Application Data\Audacity
[2012/01/25 14:36:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\DCO-TECH01\Application Data\Avaya
[2009/03/13 17:40:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\DCO-TECH01\Application Data\Avaya_GA_backup
[2012/02/03 02:31:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\DCO-TECH01\Application Data\BitDefender
[2011/09/19 10:42:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\DCO-TECH01\Application Data\DAEMON Tools Lite
[2009/10/18 10:44:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\DCO-TECH01\Application Data\DMCache
[2012/01/30 16:49:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\DCO-TECH01\Application Data\FileZilla
[2011/09/07 00:24:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\DCO-TECH01\Application Data\FutureDial
[2011/09/19 09:55:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\DCO-TECH01\Application Data\ImgBurn
[2012/02/02 23:18:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\DCO-TECH01\Application Data\IObit
[2012/01/20 18:39:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\DCO-TECH01\Application Data\mjusbsp
[2011/08/01 01:27:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\DCO-TECH01\Application Data\NCH Swift Sound
[2011/02/03 13:49:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\DCO-TECH01\Application Data\SAMSUNG
[2011/12/28 20:13:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\DCO-TECH01\Application Data\TeamViewer
[2007/08/14 15:42:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\DCO-TECH01\Application Data\Wave Systems Corp
[2012/01/11 23:38:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\DCO-TECH01\Application Data\webex
[2010/08/30 16:47:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\DCO-TECH01\Application Data\Wireshark
[2012/02/08 14:05:00 | 000,000,292 | ---- | M] () -- C:\WINDOWS\Tasks\wavepadDowngrade.job
[2012/02/09 14:05:01 | 000,000,292 | ---- | M] () -- C:\WINDOWS\Tasks\wavepadShakeIcon.job