| |||||||
| Temas Solucionados Casos de HijackThis y Malwares resueltos. (Solo lectura) |
![]() |
| | Enviar a: | Herramientas |
![]() | ![]() |
| |||
| re: Pc infectada y no puedo ejecutar casi nada para desinfectarla. (Solucionado) 2ª PARTE: . ---- Previous Run ------- . c:\documents and settings\pc\Datos de programa\drivers\wfsintwq.sys c:\windows\system32\a1.dll c:\windows\system32\ammpp.dll c:\windows\system32\ban_list.txt c:\windows\system32\KGyGaAvL.sys c:\windows\system32\mdelk.exe c:\windows\system32\wintems.exe . ((((((((((((((((((((((((((((((((((((((( Drivers/Services ))))))))))))))))))))))))))))))))))))))))))))))))) . -------\Service_SROSA -------\Legacy_SROSA -------\Legacy_SROSA -------\Service_srosa ((((((((((((((((((((((((( Files Created from 2009-04-26 to 2009-05-26 ))))))))))))))))))))))))))))))) . 2017-02-26 14:51 . 2007-03-02 10:05 -------- d-----w c:\archivos de programa\Babylon 2009-05-23 16:55 . 2009-02-05 20:04 97480 ----a-w c:\windows\system32\AvastSS.scr 2009-05-23 16:55 . 2009-02-05 20:08 93296 ----a-w c:\windows\system32\drivers\aswmon.sys 2009-05-23 16:54 . 2009-02-05 20:11 1256296 ----a-w c:\windows\system32\aswBoot.exe 2009-05-21 08:57 . 2009-05-26 20:04 -------- d--h--w c:\documents and settings\pc\Datos de programa\drivers 2009-05-20 22:11 . 2009-05-20 22:15 -------- d-----w C:\_QBagle 2009-05-20 22:10 . 2009-02-20 12:36 474 ----a-w c:\windows\UBagle.bat 2009-05-18 07:58 . 2009-05-18 07:58 8704 ----a-w c:\documents and settings\pc\Datos de programa\Thinstall\12-26-2008 17.43\4000002600003h\GetPopupInfo.exe 2009-05-18 07:57 . 2009-05-18 07:57 -------- d-----w c:\documents and settings\pc\Datos de programa\Thinstall 2009-05-09 07:04 . 2001-10-19 12:40 438608 ----a-w c:\windows\system32\wmv8dmod.dll 2009-05-09 07:04 . 2001-10-19 12:40 665424 ----a-w c:\windows\system32\wmv8dmoe.dll 2009-05-09 07:04 . 2001-10-19 12:39 572752 ----a-w c:\windows\system32\wmvdmoe.dll 2009-05-09 07:04 . 2001-10-19 12:40 1683792 ----a-w c:\windows\system32\wmvcore2.dll 2009-05-07 22:39 . 2009-05-07 22:39 -------- d-----w c:\documents and settings\pc\Datos de programa\KeePass 2009-05-07 22:38 . 2009-05-07 22:39 -------- d-----w c:\archivos de programa\KeePass Password Safe 2009-05-07 06:47 . 2004-08-04 18:46 520192 ----a-w c:\windows\system32\wscma2u.exe 2009-05-07 06:47 . 2009-05-07 06:47 -------- d-----w c:\archivos de programa\AnMing 2009-05-06 18:24 . 2009-05-06 18:24 -------- d-----w c:\archivos de programa\Pegasys Inc 2009-05-05 18:15 . 2009-05-05 18:15 -------- d-----w c:\archivos de programa\CDex_170b2 2009-05-05 07:36 . 2009-05-05 07:36 592 ----a-w c:\windows\chgkey.vbs 2009-05-05 03:55 . 2009-05-21 23:11 -------- d-----w c:\archivos de programa\EsetOnlineScanner 2009-05-03 05:40 . 1997-04-29 06:06 90624 ----a-w c:\windows\system32\pnc32301.dll 2009-05-03 05:40 . 1997-04-29 06:06 85504 ----a-w c:\windows\system32\encdnet.dll 2009-05-03 05:40 . 1997-04-29 06:06 72704 ----a-w c:\windows\system32\ra3228_8.dll 2009-05-03 05:40 . 1997-04-29 06:06 140288 ----a-w c:\windows\system32\ra3214_4.dll 2009-05-03 05:40 . 1997-04-29 06:06 13824 ----a-w c:\windows\system32\ra32dnet.dll 2009-05-03 05:40 . 1997-05-01 13:01 127023 ----a-w c:\windows\c96unins.exe 2009-05-02 04:54 . 2009-05-02 05:28 -------- d-----w c:\archivos de programa\Dealio 2009-05-01 15:04 . 2009-05-02 03:50 2188 ----a-w c:\windows\system32\SpoonUninstall-dBpowerAMP WMA V9 Codec.dat 2009-05-01 15:02 . 2009-05-02 03:51 35139 ----a-w c:\windows\system32\SpoonUninstall-dBpowerAMP Music Converter.dat 2009-05-01 15:02 . 2009-05-01 15:02 -------- d-----w c:\archivos de programa\Illustrate 2009-05-01 02:56 . 2009-05-02 04:54 -------- d-----w c:\archivos de programa\CDex130 2009-04-29 18:46 . 2009-01-19 03:48 43008 ----a-w c:\documents and settings\pc\Datos de programa\Mozilla\Firefox\Profiles\bgcs5rqs.default \extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\metricsloader.dll 2009-04-29 18:46 . 2009-01-19 03:48 43008 ----a-w c:\documents and settings\pc\Datos de programa\Mozilla\Firefox\Profiles\bgcs5rqs.default \extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\googletoolbarloader.dll 2009-04-29 18:46 . 2009-01-19 03:48 245248 ----a-w c:\documents and settings\pc\Datos de programa\Mozilla\Firefox\Profiles\bgcs5rqs.default \extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries\metrics-ff2.dll 2009-04-29 18:46 . 2009-01-19 03:48 243200 ----a-w c:\documents and settings\pc\Datos de programa\Mozilla\Firefox\Profiles\bgcs5rqs.default \extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries\metrics-ff3.dll 2009-04-29 18:46 . 2009-01-19 03:48 239616 ----a-w c:\documents and settings\pc\Datos de programa\Mozilla\Firefox\Profiles\bgcs5rqs.default \extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries\googletoolbar-ff3.dll 2009-04-29 18:46 . 2009-01-19 03:48 233984 ----a-w c:\documents and settings\pc\Datos de programa\Mozilla\Firefox\Profiles\bgcs5rqs.default \extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries\googletoolbar-ff2.dll 2009-04-29 15:44 . 2009-04-29 15:46 -------- d-----w c:\documents and settings\All Users\Datos de programa\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906} 2009-04-29 15:34 . 2009-04-29 15:34 75048 ----a-w c:\documents and settings\All Users\Datos de programa\Apple Computer\Installer Cache\iTunes 8.1.1.10\SetupAdmin.exe 2009-04-29 15:30 . 2009-04-29 15:30 -------- d-----w c:\archivos de programa\Apple Software Update 2009-04-27 08:23 . 2009-05-14 09:23 -------- d-----w C:\CODIGOS . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))) )) . 2009-05-26 20:09 . 2002-09-24 11:00 579660 ----a-w c:\windows\system32\perfh00A.dat 2009-05-26 20:09 . 2002-09-24 11:00 126874 ----a-w c:\windows\system32\perfc00A.dat 2009-05-26 20:09 . 2007-10-02 03:56 50460 ----a-w c:\windows\system32\perfc0c0.dat 2009-05-26 20:09 . 2007-10-02 03:56 362502 ----a-w c:\windows\system32\perfh0c0.dat 2009-05-26 10:24 . 2006-11-15 01:06 -------- d-----w c:\archivos de programa\Winamp 2009-05-23 03:33 . 2007-09-01 19:34 -------- d-----w c:\documents and settings\All Users\Datos de programa\Spybot - Search & Destroy 2009-05-21 08:56 . 2007-09-02 02:38 -------- d-----w c:\archivos de programa\CCleaner 2009-05-20 22:57 . 2007-10-15 16:11 -------- d-----w c:\archivos de programa\Spybot - Search & Destroy 2009-05-20 21:15 . 2008-03-07 20:06 -------- d---a-w c:\documents and settings\All Users\Datos de programa\TEMP 2009-05-20 06:53 . 2009-04-18 04:15 -------- d-----w c:\archivos de programa\SpywareBlaster 2009-05-13 14:28 . 2007-03-23 19:53 -------- d-----w c:\documents and settings\All Users\Datos de programa\Microsoft Help 2009-05-06 18:26 . 2006-05-08 12:08 -------- d--h--w c:\archivos de programa\InstallShield Installation Information 2009-05-05 07:36 . 2009-05-05 07:36 592 ----a-w c:\windows\chgkey.vbs 2009-05-04 09:30 . 2008-04-21 08:13 -------- d-----w c:\archivos de programa\IEPro 2009-05-04 08:54 . 2009-04-07 08:03 117760 ----a-w c:\documents and settings\pc\Datos de programa\SUPERAntiSpyware.com\SUPERAntiSpyware\SDD LLS\UIREPAIR.DLL 2009-05-04 08:50 . 2008-12-06 17:42 -------- d-----w c:\archivos de programa\SUPERAntiSpyware 2009-05-02 15:50 . 2009-04-08 01:20 -------- d-----w c:\archivos de programa\Free Audio Pack 2009-05-02 05:37 . 2008-11-24 19:11 -------- d-----w c:\archivos de programa\Malwarebytes' Anti-Malware 2009-05-02 05:37 . 2008-12-05 02:55 2967799 ----a-w c:\documents and settings\All Users\Datos de programa\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe 2009-05-02 04:54 . 2007-12-31 02:23 -------- d-----w c:\archivos de programa\dBpoweramp 2009-04-29 15:51 . 2006-11-11 17:02 -------- d-----w c:\archivos de programa\QuickTime 2009-04-29 15:46 . 2007-11-28 15:41 -------- d-----w c:\archivos de programa\iTunes 2009-04-29 15:44 . 2007-07-06 04:53 -------- d-----w c:\archivos de programa\Archivos comunes\Apple 2009-04-29 15:43 . 2008-03-29 04:56 -------- d-----w c:\archivos de programa\Bonjour 2009-04-24 17:49 . 2009-04-24 17:49 -------- d-----w c:\archivos de programa\Archivos comunes\PCSuite 2009-04-24 17:49 . 2009-04-24 17:49 -------- d-----w c:\archivos de programa\Archivos comunes\Nokia 2009-04-24 17:49 . 2007-11-26 17:15 -------- d-----w c:\archivos de programa\Nokia 2009-04-24 17:48 . 2009-04-24 17:48 -------- d-----w c:\archivos de programa\PC Connectivity Solution 2009-04-24 17:47 . 2008-12-31 18:56 -------- d-----w c:\documents and settings\All Users\Datos de programa\Installations 2009-04-24 17:47 . 2009-04-24 17:47 8192 ----a-w c:\documents and settings\All Users\Datos de programa\Installations\{7694EC32-CB0E-4B35-9088-7B320CB1F4FE}\Installer\CommonCustomActions\Uninst CCD.exe 2009-04-24 17:47 . 2009-04-24 17:47 61440 ----a-w c:\documents and settings\All Users\Datos de programa\Installations\{7694EC32-CB0E-4B35-9088-7B320CB1F4FE}\Installer\CommonCustomActions\Uninst PCSFEMsi.exe 2009-04-24 17:47 . 2009-04-24 17:47 10240 ----a-w c:\documents and settings\All Users\Datos de programa\Installations\{7694EC32-CB0E-4B35-9088-7B320CB1F4FE}\Installer\CommonCustomActions\Uninst PCS.exe 2009-04-24 17:46 . 2009-04-24 17:47 34172648 ----a-w c:\documents and settings\All Users\Datos de programa\Installations\{7694EC32-CB0E-4B35-9088-7B320CB1F4FE}\Nokia_PC_Suite_7_1_26_0_spa.exe 2009-04-24 05:07 . 2006-11-21 17:17 -------- d-----w c:\archivos de programa\DivX 2009-04-24 05:07 . 2009-04-24 05:07 -------- d-----w c:\archivos de programa\Archivos comunes\DivX Shared 2009-04-24 02:38 . 2009-04-24 02:38 -------- d-----w c:\archivos de programa\IZArc 2009-04-20 23:17 . 2009-04-20 23:17 -------- d-----w c:\archivos de programa\Archivos comunes\Ahead 2009-04-20 17:55 . 2006-05-08 11:56 -------- d-----w c:\archivos de programa\Ahead 2009-04-20 06:21 . 2007-06-08 08:48 -------- d-----w c:\archivos de programa\Messenger Plus! Live 2009-04-18 04:28 . 2008-12-17 17:07 -------- d-----w c:\archivos de programa\TuneUp Utilities 2009 2009-04-18 04:13 . 2008-04-22 03:50 -------- d-----w c:\archivos de programa\SpywareBlaster 4.0 2009-04-15 20:24 . 2009-04-15 20:24 90112 ----a-w c:\windows\system32\dpl100.dll 2009-04-15 20:24 . 2009-04-15 20:24 823296 ----a-w c:\windows\system32\divx_xx0c.dll 2009-04-15 20:24 . 2009-04-15 20:24 823296 ----a-w c:\windows\system32\divx_xx07.dll 2009-04-15 20:24 . 2009-04-15 20:24 815104 ----a-w c:\windows\system32\divx_xx0a.dll 2009-04-15 20:24 . 2009-04-15 20:24 802816 ----a-w c:\windows\system32\divx_xx11.dll 2009-04-15 20:24 . 2009-04-15 20:24 684032 ----a-w c:\windows\system32\DivX.dll 2009-04-08 01:22 . 2009-04-08 01:22 -------- d-----w c:\archivos de programa\Search Settings 2009-04-07 20:52 . 2007-06-03 17:30 -------- d-----w c:\archivos de programa\Java 2009-04-07 20:49 . 2009-04-03 17:35 152576 ----a-w c:\documents and settings\pc\Datos de programa\Sun\Java\jre1.6.0_13\lzma.dll 2009-04-06 13:32 . 2008-11-24 19:11 38496 ----a-w c:\windows\system32\drivers\mbamswissarmy.sys 2009-04-06 13:32 . 2008-11-24 19:11 15504 ----a-w c:\windows\system32\drivers\mbam.sys 2009-04-03 16:23 . 2009-04-03 16:23 -------- d-----w c:\archivos de programa\eRightSoft 2009-04-03 15:49 . 2009-04-02 16:19 -------- d-----w c:\documents and settings\pc\Datos de programa\FileZilla 2009-04-01 01:43 . 2007-04-22 22:55 -------- d-----w c:\documents and settings\pc\Datos de programa\Vso 2009-03-31 21:01 . 2009-03-31 21:01 -------- d-----w c:\archivos de programa\VSO 2009-03-19 14:32 . 2009-03-19 14:32 23400 ----a-w c:\documents and settings\All Users\Datos de programa\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}\x86\x86\GEARAspiWDM.sys 2009-03-11 17:00 . 2008-12-03 03:09 410984 ----a-w c:\windows\system32\deploytk.dll 2009-03-11 16:57 . 2009-03-11 16:57 152576 ----a-w c:\documents and settings\pc\Datos de programa\Sun\Java\jre1.6.0_12\lzma.dll 2009-03-06 14:20 . 2004-08-19 12:42 286720 ----a-w c:\windows\system32\pdh.dll 2009-03-03 00:06 . 2005-09-02 23:06 826368 ----a-w c:\windows\system32\wininet.dll 2009-04-15 20:24 . 2009-04-15 20:24 1044480 ----a-w c:\archivos de programa\mozilla firefox\plugins\libdivx.dll 2009-04-15 20:24 . 2009-04-15 20:24 200704 ----a-w c:\archivos de programa\mozilla firefox\plugins\ssldivx.dll 2007-01-31 08:55 . 2007-01-31 08:55 8 --sh--r c:\windows\system32\6BE4B929DA.sys 2006-05-03 10:06 . 2009-04-03 16:24 163328 --sh--r c:\windows\system32\flvDX.dll 2007-02-21 11:47 . 2009-04-03 16:24 31232 --sh--r c:\windows\system32\msfDX.dll . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run] "ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360] "IncrediMail"="c:\archivos de programa\IncrediMail\bin\IncMail.exe" [2009-01-15 251264] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run] "UnlockerAssistant"="c:\archivos de programa\Unlocker\UnlockerAssistant.exe" [2009-05-25 868352] "Adobe Photo Downloader"="c:\archivos de programa\Nokia\3.0\Apps\apdproxy.exe" [2005-07-14 57344] "ISUSPM Startup"="c:\archivos de programa\Archivos comunes\InstallShield\UpdateService\isuspm.exe" [2005-08-11 249856] "ISUSScheduler"="c:\archivos de programa\Archivos comunes\InstallShield\UpdateService\issch.exe" [2005-08-11 81920] "WinampAgent"="c:\archivos de programa\Winamp\winampa.exe" [2009-04-10 37888] "NeroFilterCheck"="c:\windows\system32\NeroCheck.e xe" [2001-07-09 155648] "QuickTime Task"="c:\archivos de programa\QuickTime\qttask.exe" [2009-01-05 413696] "iTunesHelper"="c:\archivos de programa\iTunes\iTunesHelper.exe" [2009-04-02 342312] "Adobe Reader Speed Launcher"="c:\archivos de programa\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-10-15 39792] "avast!"="c:\archiv~1\ALWILS~1\Avast4\ashDisp. exe" [2009-05-25 81000] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\Cur rentVersion\Run] "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360] c:\documents and settings\All Users\Men£ Inicio\Programas\Inicio\ Adobe Gamma Loader.lnk - c:\archivos de programa\Archivos comunes\Adobe\Calibration\Adobe Gamma Loader.exe [2006-11-11 110592] [HKEY_CURRENT_USER\software\microsoft\windows\curre ntversion\policies\system] "disableregistrytoosl"= 0 (0x0) [HKEY_CURRENT_USER\software\microsoft\windows\curre ntversion\policies\explorer] "Start_NotifyNewApps"= 0 (0x0) "NoDevMgrUpdate"= 1 (0x1) [hkey_local_machine\software\microsoft\windows\curr entversion\explorer\ShellExecuteHooks] "{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\archivos de programa\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon] 2008-07-23 14:28 352256 ------w c:\archivos de programa\SUPERAntiSpyware\SASWINLO.dll [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menú Inicio^Programas^Inicio^Adobe Gamma Loader.lnk] [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menú Inicio^Programas^Inicio^Microsoft Office.lnk] [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menú Inicio^Programas^Inicio^OpenOffice.org 2.0.lnk] [HKLM\~\startupfolder\C:^Documents and Settings^pc^Menú Inicio^Programas^Inicio^Adobe Gamma.lnk] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services] "WMPNetworkSvc"=3 (0x3) "usnjsvc"=3 (0x3) "ose"=3 (0x3) "odserv"=3 (0x3) "iPod Service"=3 (0x3) "gusvc"=3 (0x3) "FLEXnet Licensing Service"=3 (0x3) "Diskeeper"=2 (0x2) "Bonjour Service"=2 (0x2) "Adobe LM Service"=3 (0x3) [HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\run-] "QuickTime Task"="c:\archivos de programa\QuickTime\qttask.exe" -atboottime "Adobe Reader Speed Launcher"="c:\archivos de programa\Adobe\Reader 8.0\Reader\Reader_sl.exe" [HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\run-disabled] "TkBellExe"="c:\archivos de programa\Archivos comunes\Real\Update_OB\realsched.exe" -osboot [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall] "DisableMonitoring"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpo licy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "c:\\Archivos de programa\\IncrediMail\\bin\\IncMail.exe"= "e:\\eMule\\emule.exe"= "c:\\Archivos de programa\\IncrediMail\\bin\\IMApp.exe"= "c:\\Archivos de programa\\IncrediMail\\bin\\ImpCnt.exe"= "c:\\Archivos de programa\\IncrediMail\\bin\\ImLc.exe"= "c:\\Archivos de programa\\Ares\\Ares.exe"= "c:\\Archivos de programa\\Zattoo\\Zattoo1.exe"= "c:\\Archivos de programa\\Mozilla Firefox\\firefox.exe"= "c:\\Archivos de programa\\Nero\\Nero8\\Nero ShowTime\\ShowTime.exe"= "c:\\Archivos de programa\\IEPro\\MiniDM.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "c:\\Archivos de programa\\Microsoft Office\\Office12\\OUTLOOK.EXE"= "c:\\Archivos de programa\\Real Player\\realplay.exe"= "c:\\Archivos de programa\\Windows Live\\Messenger\\msnmsgr.exe"= "c:\\Archivos de programa\\Windows Live\\Messenger\\livecall.exe"= "c:\\Archivos de programa\\IncrediMail\\bin\\ImSc.exe"= "c:\\Archivos de programa\\Bonjour\\mDNSResponder.exe"= "c:\\Archivos de programa\\iTunes\\iTunes.exe"= [HKLM\~\services\sharedaccess\parameters\firewallpo licy\standardprofile\GloballyOpenPorts\List] "25:TCP"= 25:TCP:File and Printer Sharing "8127:TCP"= 8127:TCP:ural "5486:TCP"= 5486:TCP:ural "7628:TCP"= 7628:TCP:ural R0 m5289;m5289;c:\windows\system32\drivers\m5289.sys [10/11/2006 20:59 52480] R0 uliagpkx;ULi AGP Bus Filter Driver;c:\windows\system32\drivers\AGPKX.SYS [10/11/2006 20:58 45056] R1 SASDIFSV;SASDIFSV;c:\archivos de programa\SUPERAntiSpyware\sasdifsv.sys [17/11/2008 16:11 8944] R1 SASKUTIL;SASKUTIL;c:\archivos de programa\SUPERAntiSpyware\SASKUTIL.SYS [17/11/2008 16:11 55024] R2 TuneUp.ProgramStatisticsSvc;TuneUp Program Statistics Service;c:\windows\system32\TUProgSt.exe [21/01/2009 1:00 603904] R3 ULI5261XP;ULi M526X Ethernet NT Driver;c:\windows\system32\drivers\ULILAN51.SYS [10/11/2006 20:58 28672] S1 aswSP;avast! Self Protection; [x] S2 2432FD36B1F1BBD4CAE9F66729E42B7A;2432FD36B1F1BBD4C AE9F66729E42B7A;cmd /k start /i "/dC:" "c:\combo-fix\HIDEC.exe" "c:\combo-fix\SWREG.EXE" ACL "HKEY_LOCAL_MACHINE\System\CurrentControlSet\Enum\ Root\LEGACY_Beep" /RESET /Q --> cmd [?] S2 aswFsBlk;aswFsBlk;c:\windows\system32\DRIVERS\aswF sBlk.sys --> c:\windows\system32\DRIVERS\aswFsBlk.sys [?] S2 jupiw32;MicroTek scanner driver;c:\windows\system32\rundll32.exe jupiw32.dll,ural --> c:\windows\system32\rundll32.exe jupiw32.dll,ural [?] S3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\archivos de programa\MAGIX\Common\Database\bin\fbserver.exe [18/06/2008 21:48 1527900] S3 MTK;Media Technology Kernel Driver;c:\windows\system32\drivers\MTK.SYS [03/10/2007 23:24 14495] S3 SASENUM;SASENUM;c:\archivos de programa\SUPERAntiSpyware\SASENUM.SYS [17/11/2008 16:11 7408] S3 TVICHW32;TVICHW32;c:\windows\system32\drivers\TVIC HW32.SYS [04/10/2007 12:06 23600] HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs UxTuneUp . Contents of the 'Scheduled Tasks' folder 2009-05-22 c:\windows\Tasks\AppleSoftwareUpdate.job - c:\archivos de programa\Apple Software Update\SoftwareUpdate.exe [2008-07-30 10:34] 2007-12-14 c:\windows\Tasks\Copia de seguridad.job - c:\windows\system32\ntbackup.exe [2004-08-19 02:19] 2009-05-26 c:\windows\Tasks\Mantenimiento con 1 clic.job - c:\archivos de programa\TuneUp Utilities 2009\OneClickStarter.exe [2008-12-12 14:00] . - - - - ORPHANS REMOVED - - - - SafeBoot-AVG Anti-Spyware Driver SafeBoot-procexp90.Sys SafeBoot-AVG Anti-Spyware Guard . ------- Supplementary Scan ------- . uStart Page = about:blank uInternet Settings,ProxyOverride = *.local IE: &Add animation to IncrediMail Style Box - c:\archivos de programa\IncrediMail\bin\resources\WebMenuImg.htm IE: {{000002a3-84fe-43f1-b958-f2c3ca804f1a} - {CD275D4E-791A-4993-9D4D-6A071EDD2709} - c:\archivos de programa\IEPro\iepro.dll Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - c:\archivos de programa\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} - hxxp://downloads.ewido.net/ewidoOnlineScan.cab DPF: {C1BAC744-8F0B-11D0-89E7-00C0A8295197} - hxxp://www.crtvg.es/camweb/camera.cab FF - ProfilePath - c:\documents and settings\pc\Datos de programa\Mozilla\Firefox\Profiles\bgcs5rqs.default \ FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q= FF - prefs.js: browser.search.selectedEngine - Google FF - prefs.js: browser.startup.homepage - FF - component: c:\archivos de programa\Nokia\Nokia PC Suite 7\bkmrksync\components\BkMrkExt.dll . ************************************************** ************************ catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2009-05-26 22:08 Windows 5.1.2600 Service Pack 3 NTFS scanning hidden processes ... scanning hidden autostart entries ... scanning hidden files ... scan completed successfully hidden files: 0 ************************************************** ************************ [HKEY_LOCAL_MACHINE\System\ControlSet004\Services\2 432FD36B1F1BBD4CAE9F66729E42B7A] "ImagePath"="cmd /k start /i \"/d%systemdrive%\" \"c:\combo-fix\HIDEC.exe\" \"c:\combo-fix\SWREG.EXE\" ACL \"HKEY_LOCAL_MACHINE\System\CurrentControlSet\Enum \Root\LEGACY_Beep\" /RESET /Q" . --------------------- LOCKED REGISTRY KEYS --------------------- [HKEY_USERS\S-1-5-21-1218614049-1890655171-3945156927-1003\Software\Microsoft\SystemCertificates\Address Book*] @Allowed: (Read) (RestrictedCode) @Allowed: (Read) (RestrictedCode) [HKEY_USERS\S-1-5-21-1218614049-1890655171-3945156927-1003\Software\Microsoft\Windows\CurrentVersion\She ll Extensions\Approved\{42D26869-571D-466B-B926-EF369D6CC96D}*] @Allowed: (Read) (RestrictedCode) @Allowed: (Read) (RestrictedCode) "iabikihipacganjnhm"=hex:6a,61,6f,6d,6d,69,66,62,6 1,6e,69,6e,6f,6f,66,69,62,68, 6d,6a,00,00 "hahhppimickiamni"=hex:6b,61,6f,6d,70,69,65,63,6c, 64,6f,6f,62,6b,61,70,70,69, 66,69,61,67,00,00 [HKEY_LOCAL_MACHINE\software\Classes\AVIFile\shell\ open] @DACL=(02 0000) @="&Abrir" [HKEY_LOCAL_MACHINE\software\Classes\AVIFile\shell\ play] @DACL=(02 0000) "MUIVerb"=expand:"@c:\\WINDOWS\\inf\\unregmp2. exe,-9991" @="Repr&oducir" [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{42D2686 9-571D-466B-B926-EF369D6CC96D}\InProcServer32*] "jalhndfhnbinigbnpobh"=hex:6a,61,6f,6d,6d,69,66,62 ,61,6e,69,6e,6f,6f,66,69,62, 68,6d,6a,00,00 "ialhhehgaicbnbfhdb"=hex:6b,61,6f,6d,70,69,65,63,6 c,64,6f,6f,62,6b,61,70,70,69, 66,69,61,67,00,00 [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{47629D4 B-2AD3-4e50-B716-A66C15C63153}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "cd042efbbd7f7af1647644e76e06692b"=hex:c8,28,51,af ,b0,29,a3,98,f5,50,f4,06,7e, b4,81,65,e2,63,26,f1,3f,c8,ff,68,41,78,54,6b,cb,25 ,73,5e,e2,63,26,f1,3f,c8,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{604BB98 A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "bca643cdc5c2726b20d2ecedcc62c59b"=hex:6a,9c,d6,61 ,af,45,84,18,9b,7b,34,ac,94, c1,74,0b,6a,9c,d6,61,af,45,84,18,38,bb,d5,45,c2,68 ,70,5c,6a,9c,d6,61,af,45,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{684373F B-9CD8-4e47-B990-5A4466C16034}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "2c81e34222e8052573023a60d06dd016"=hex:ff,7c,85,e0 ,43,d4,0e,fe,0e,29,38,5a,5f, af,7b,57,ff,7c,85,e0,43,d4,0e,fe,e7,38,ef,42,95,63 ,97,c3,ff,7c,85,e0,43,d4,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{74554CC D-F60F-4708-AD98-D0152D08C8B9}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "2582ae41fb52324423be06337561aa48"=hex:3e,1e,9e,e0 ,57,5a,93,61,67,27,bc,56,2b, 58,f4,b7,86,8c,21,01,be,91,eb,e7,ba,33,a5,03,1a,41 ,48,16,86,8c,21,01,be,91,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{7EB537F 9-A916-4339-B91B-DED8E83632C0}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "caaeda5fd7a9ed7697d9686d4b818472"=hex:f5,1d,4d,73 ,a8,13,5c,05,78,55,a4,5d,c2, bf,27,7a,f5,1d,4d,73,a8,13,5c,05,1d,83,69,e8,ac,fb ,66,38,f5,1d,4d,73,a8,13,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{948395E 8-7A56-4fb1-843B-3E52D94DB145}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "a4a1bcf2cc2b8bc3716b74b2b4522f5d"=hex:50,93,e5,ab ,ec,6a,4e,ab,a7,d1,10,e2,1b, e1,84,52,df,20,58,62,78,6b,cf,c8,4e,9e,52,48,ec,c0 ,a7,1c,df,20,58,62,78,6b,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{AC3ED30 B-6F1A-4bfc-A4F6-2EBDCCD34C19}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "4d370831d2c43cd13623e232fed27b7b"=hex:fb,a7,78,e6 ,12,2f,9a,ea,95,0e,b8,93,16, 21,99,a5,fb,a7,78,e6,12,2f,9a,ea,e2,c6,0d,83,3a,45 ,f8,77,fb,a7,78,e6,12,2f,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{DE5654C A-EB84-4df9-915B-37E957082D6D}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "1d68fe701cdea33e477eb204b76f993d"=hex:01,3a,48,fc ,e8,04,4a,f1,8f,d9,5c,ac,04, 01,4d,5e,01,3a,48,fc,e8,04,4a,f1,82,29,83,2f,7d,40 ,7b,d2,01,3a,48,fc,e8,04,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{E39C35E 8-7488-4926-92B2-2F94619AC1A5}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "1fac81b91d8e3c5aa4b0a51804d844a3"=hex:51,fa,6e,91 ,28,9e,14,cc,27,bc,02,eb,81, c4,17,49,f6,0f,4e,58,98,5b,89,c9,25,df,65,00,2e,63 ,32,b1,f6,0f,4e,58,98,5b,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{EACAFCE 5-B0E2-4288-8073-C02FF9619B6F}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "f5f62a6129303efb32fbe080bb27835b"=hex:3d,ce,ea,26 ,2d,45,aa,78,ea,47,10,91,79, 13,b9,3d,3d,ce,ea,26,2d,45,aa,78,37,32,9f,41,5c,1f ,78,77,3d,ce,ea,26,2d,45,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{F8F02AD D-7366-4186-9488-C21CB8B3DCEC}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "fd4e2e1a3940b94dceb5a6a021f2e3c6"=hex:e3,0e,66,d5 ,eb,bc,2f,6b,11,c9,26,0b,a8, 6c,ad,37,2a,b7,cc,b5,b9,7f,41,e7,8b,2c,6d,d9,31,77 ,a6,50,2a,b7,cc,b5,b9,7f,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{FEE45DE 2-A467-4bf9-BF2D-1411304BCD84}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "8a8aec57dd6508a385616fbc86791ec2"=hex:fa,ea,66,7f ,d4,3b,6b,70,1b,9a,70,5c,04, 2b,19,04,6c,43,2d,1e,aa,22,2f,9c,92,e1,1e,0f,d6,06 ,73,36,6c,43,2d,1e,aa,22,\ [HKEY_LOCAL_MACHINE\software\Classes\mpegfile\Defau ltIcon] @DACL=(02 0000) @="c:\\WINDOWS\\system32\\wmploc.dll,-733" [HKEY_LOCAL_MACHINE\software\Classes\mpegfile\shell \open] @DACL=(02 0000) @="&Abrir" "LegacyDisable"="" [HKEY_LOCAL_MACHINE\software\Classes\mpegfile\shell \play] @DACL=(02 0000) "MUIVerb"=expand:"@c:\\WINDOWS\\inf\\unregmp2. exe,-9991" @="Repr&oducir" "LegacyDisable"="" [HKEY_LOCAL_MACHINE\software\Microsoft\Advanced INF Setup\IE40.BrowseUI\RegBackup] @DACL=(02 0000) [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\Curr entVersion\Installer\UserData\LocalSystem\Componen ts\h–€|ÿÿÿÿ¤•€|ù•9~*] "A0C0110900063D11C8EF10054038389C"="C?\\WINDOWS\\s ystem32\\FM20ENU.DLL" "A0C0710900063D11C8EF10054038389C"="C?\\WINDOWS\\s ystem32\\FM20ENU.DLL" . --------------------- DLLs Loaded Under Running Processes --------------------- - - - - - - - > 'winlogon.exe'(964) c:\archivos de programa\SUPERAntiSpyware\SASWINLO.dll - - - - - - - > 'explorer.exe'(2364) c:\windows\system32\WPDShServiceObj.dll c:\archivos de programa\Nokia\Nokia PC Suite 7\PhoneBrowser.dll c:\archivos de programa\Nokia\Nokia PC Suite 7\NGSCM.DLL c:\archivos de programa\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_spa.nlr c:\archivos de programa\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr c:\windows\system32\PortableDeviceTypes.dll c:\windows\system32\PortableDeviceApi.dll . ------------------------ Other Running Processes ------------------------ . c:\archivos de programa\Archivos comunes\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe c:\archivos de programa\Bonjour\mDNSResponder.exe c:\archivos de programa\Nero\Nero8\Nero BackItUp\NBService.exe c:\windows\system32\PSIService.exe c:\windows\system32\wscntfy.exe c:\archivos de programa\iPod\bin\iPodService.exe c:\archivos de programa\IncrediMail\bin\IMApp.exe . ************************************************** ************************ . Completion time: 2009-05-26 22:19 - machine was rebooted ComboFix-quarantined-files.txt 2009-05-26 20:19 ComboFix2.txt 2009-05-22 20:05 Pre-Run: 10.188.673.024 bytes libres Post-Run: 10.371.534.848 bytes libres 1358 --- E O F --- 2009-05-13 14:28 De nuevo muchas gracias por tu ayuda. Salu2. |
| InfoSpyware | ||
| |
![]() | ![]() |
| ||||
| re: Pc infectada y no puedo ejecutar casi nada para desinfectarla. (Solucionado) Si ves el reporte, CF elimina lo que ya habíamos eliminado anteriormente. Es decir, o te confundes de reporte, o tiene algún tipo de programa que está volviendo todo atrás. Me cuentas al respecto. Saludos Novedades del Foro | Antivirus Online | Eliminar Malwares | Políticas del Foro | Blog * Ayúdanos haciendo una DONACIÓN para poder seguir Ayudando. * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro. |
![]() | ![]() |
![]() | ![]() |
| ||||
| re: Pc infectada y no puedo ejecutar casi nada para desinfectarla. (Solucionado) Descarga y ejecuta en Modo Seguro, Dr. Web CureIT Además, también ejecuta Avira Anti Rootkit Desinstala CF nuevamente, y te descargas la última versión para repetir el procedimiento, y asegurarnos de que el `problema no está en la herramienta. Y me dejas los reportes, además de un LOG de Hijackthis. Saludos Novedades del Foro | Antivirus Online | Eliminar Malwares | Políticas del Foro | Blog * Ayúdanos haciendo una DONACIÓN para poder seguir Ayudando. * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro. |
![]() | ![]() |
| |||
| re: Pc infectada y no puedo ejecutar casi nada para desinfectarla. (Solucionado) Como no puedo ejecutar en modo seguro le pasé el SafeBootKeyRepair, pero no pudo solucionarlo. Te pego el reporte para que lo veas. Reg export of SafeBoot key after repair: ======================== Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\system\currentcontrolset\contro l\safeboot] ======================== SafeBoot registry key needs repairs. This machine cannot enter Safe Mode. ~~\SafeBoot\Minimal\Base ~~\SafeBoot\Minimal\Boot Bus Extender ~~\SafeBoot\Minimal\Boot file system ~~\SafeBoot\Minimal\dmboot.sys ~~\SafeBoot\Minimal\dmio.sys ~~\SafeBoot\Minimal\dmload.sys ~~\SafeBoot\Minimal\dmserver ~~\SafeBoot\Minimal\File system ~~\SafeBoot\Minimal\Filter ~~\SafeBoot\Minimal\PCI Configuration ~~\SafeBoot\Minimal\Primary disk ~~\SafeBoot\Minimal\RpcSs ~~\SafeBoot\Minimal\SCSI Class ~~\SafeBoot\Minimal\sermouse.sys ~~\SafeBoot\Minimal\System Bus Extender ~~\SafeBoot\Minimal\vga.sys ~~\SafeBoot\Minimal\vgasave.sys ~~\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318} ~~\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318} ~~\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318} ~~\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318} ~~\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318} ~~\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F} ======================== Error: Key: system\currentcontrolset\control\safeboot\minimal does not exist! Tampoco he podido pasarle Avira Anti Rootkit, me lo descargué del enlace que me pusiste y cuando lo voy a abrir me dice que el archivo tiene un formato desconocido o esta dañado. Así que no pude ejecutar el Dr web Cureit, ni el Avira anti rootkit. Una pregunta, el reporte del HJTInstall lo pego en este mismo tema? |
![]() | ![]() |
| ||||
| re: Pc infectada y no puedo ejecutar casi nada para desinfectarla. (Solucionado) Novedades del Foro | Antivirus Online | Eliminar Malwares | Políticas del Foro | Blog * Ayúdanos haciendo una DONACIÓN para poder seguir Ayudando. * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro. |
![]() | ![]() |
| |||
| re: Pc infectada y no puedo ejecutar casi nada para desinfectarla. (Solucionado) Salva, perdona por tardar en contestar. Te cuento. En vista de que seguia igual, he vuelto a empezar de nuevo, y lo que hice fue ejecutar el Fs-Fixbagle otra vez, el cuál encontró un montón de cosas. Después reinicie y sin abrir el internet explorer (pues cada vez que lo abria dejaban de funcionar todos los programas), pude pasarle el Dr Web Cureit, el cual me encontró un montón de cosas también. Te queria pegar el reporte DrWebCureit, pero se ha guardado en formato .csv y al querer copiarlo y pegarlo aquí las letras bailan y no se entiende muy bien. ¿Cómo hago?. Probé haber si podia pasarle el SafeModeRepair para poder iniciar en modo seguro y fíjate que si pude. Le pasé también el ccleaner para limpiar. Pasé también el Malwarebytes y este me salió limpio. Volví a pasarle el combofix, que me encontró algo así como 132 cositas de ná. Todo esto sin abrir el explorer, pues le tengo miedo a abrirlo y que me salga la dichosa ventanita y me dejen de funcionar los programas. El avira antirootkit tool sigo sin poder descomprimir el archivo, me dice que es de un formato desconocido o está dañado. Me lo volví a bajar de la página de Avira pero me sale lo mismo. Me queda por hacer el scanner online con el Kaspersky, pero tengo entendido que solo se puede hacer con el explorer, que el firefox no sirve. Tu me dirás si encuentras algo en los reportes que te mando. Perdona por todas las molestias, y muchas gracias por tu ayuda. |
![]() | ![]() |
| |||
| re: Pc infectada y no puedo ejecutar casi nada para desinfectarla. (Solucionado) *REPORTE DEL FS-FIXBAGLE* Microsoft Windows XP Professional ( v5.1.2600 ) Service Pack 3 X86-based PC ( Uniprocessor Free : AMD Athlon(tm) 64 Processor 3500+ ) BIOS : Default System BIOS USER : pc ( Administrator ) BOOT : Normal boot A:\ (USB) C:\ (Local Disk) - NTFS - Total:39 Go (Free:9 Go) D:\ (Local Disk) - NTFS - Total:72 Go (Free:65 Go) E:\ (Local Disk) - NTFS - Total:298 Go (Free:194 Go) F:\ (CD or DVD) G:\ (CD or DVD) H:\ (USB) I:\ (USB) J:\ (USB) K:\ (USB) Inicio: 0:17:03 Fecha : 28/05/2009 --------------------\\ Procesos infectados --------------------\\ Archivos Infectados C:\WINDOWS\system32\ban_list.txt - Eliminado C:\WINDOWS\system32\mdelk.exe - Eliminado C:\WINDOWS\system32\wintems.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\m\flec006.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\M\data.oct - Eliminado C:\Documents and Settings\pc\Datos de programa\M\list.oct - Eliminado C:\Documents and Settings\pc\Datos de programa\M\srvlist.oct - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\srosa2.sys - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\wfsintwq.sys - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\winupgro.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1000238.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1000598.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1000628.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1003472.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1004394.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1004534.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1005015.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1005846.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1005866.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1010993.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1012636.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1013136.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1060174.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1060775.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1060805.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1067324.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1067885.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1067895.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1068216.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1069648.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1069748.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1069958.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1074114.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1075125.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1075326.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1076007.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1076978.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1077008.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\110528.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1130295.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1131256.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1131316.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\113352.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1133710.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\113373.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1138717.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1139418.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1139538.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1140059.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1141150.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1141291.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1198082.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1220224.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1221336.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1221416.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\122636.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\124378.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\124388.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1290926.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1313278.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1313979.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1370911.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1371612.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1372032.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1374426.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1378972.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1379663.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1379804.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1380304.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1381226.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\1381316.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\148553.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\150085.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\150696.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15477485.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15477495.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15477505.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15530521.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15531763.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15532424.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15554386.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15569998.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15618358.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15621061.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15622183.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15673767.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15674068.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15674178.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15720755.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15781672.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15781712.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15781722.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15847607.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15849229.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15849730.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15896898.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15899702.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15905360.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15959007.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15959328.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\15959438.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16004393.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16023730.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16024842.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16025513.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16029348.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16029358.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16029369.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16032974.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16033034.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16033074.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16040705.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16042167.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16043018.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16044220.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16103455.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16179244.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16179284.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16179304.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16310513.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16317503.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16317523.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16317563.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16320838.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16322340.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16322991.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16326085.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16326095.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16326115.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16328729.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16328769.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16328789.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16385290.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16385941.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16386282.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16398589.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16399801.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16400442.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16401444.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16446308.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16446378.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16446438.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16451956.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16457124.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16457835.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16458456.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16459627.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16459777.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16459878.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16474769.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16503060.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16503090.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16503130.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16645955.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16645995.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16646035.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16713472.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16714053.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16714384.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16774190.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16774240.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16774310.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16776663.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16781680.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16782281.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16782662.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16783303.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16783383.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\16783403.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\168502.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\169934.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\170425.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\182993.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\184244.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\184925.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\185837.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\187639.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\188190.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\198044.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\200808.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\201960.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\217743.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\220777.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\222740.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\235688.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\238753.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\240766.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\270188.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\272982.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\273102.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\284929.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\288454.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\288975.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\292200.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\296095.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\296215.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31183829.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31184020.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31184090.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31239720.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31241973.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31243235.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31292696.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31295971.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31297263.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31432888.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31433228.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31433368.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31478673.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31791553.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31792735.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31794488.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31798373.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31798383.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31798393.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31801207.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31801247.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31801297.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31810360.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31811732.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31812644.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31816579.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\318768.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31884156.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31898036.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31898056.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\31898066.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\32030727.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\32036696.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\32036776.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\32036846.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\32104644.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\32105274.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\32105685.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\32166743.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\32166843.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\32166923.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\32169367.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\32352260.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\32352700.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\32353181.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\32353982.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\32354052.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\32354172.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\341911.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\344905.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\3541652.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\3544116.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\3544206.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\3593497.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\3594718.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\3595429.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\3596261.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\3597653.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\3598123.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\3645331.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\3647975.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\3650038.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\3701963.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\3706049.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\3706249.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\3753967.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\37558366.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\37558696.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\37558976.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\37616129.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\37618903.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\37620265.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\37829606.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\37829636.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\37829676.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\37837257.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\37837267.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\37837367.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\37967013.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\37967023.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\37967063.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\37991228.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\37991238.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\37991248.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\38039557.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\38039568.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\38039628.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\38056091.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\38056101.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\398472.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\403570.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\403650.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4060729.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4076922.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4077573.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4080457.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4081268.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4081368.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4084112.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4084843.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4084893.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4092474.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4094056.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4094828.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4095839.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4155935.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4231754.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4232285.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4361932.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4369022.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4369372.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4369402.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4436839.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4438331.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4439022.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4499840.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4500741.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4500781.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4504176.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4509183.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4510295.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4510565.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4511236.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4512248.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\4512308.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\458509.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\460882.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\461814.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\511335.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\515961.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\521519.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\581716.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\587574.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\588245.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\623987.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\625369.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\626030.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\629024.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\629845.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\629855.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\632449.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\633170.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\633180.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\636775.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\639729.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\641572.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\642183.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\647330.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\648422.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\649844.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\652868.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\654340.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\654360.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\654591.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\657275.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\658016.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\658026.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\664705.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\666388.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\667199.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\710701.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\731812.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\732313.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\732323.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\744200.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\745271.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\745722.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\749477.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\750328.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\750399.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\753924.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\754715.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\754725.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\762236.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\763788.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\764309.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\765120.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\795884.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\796465.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\796485.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\828661.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\845335.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\845836.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\864212.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\871933.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\872234.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\872294.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\89568.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\927593.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\93194.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\93274.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\939771.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\940131.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\941033.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\941153.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\941343.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\941794.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\942735.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\943146.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\943166.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\944968.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\946160.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\946300.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\949284.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\950066.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\950076.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\957727.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\959880.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\960721.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\964727.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\975352.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\997564.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\998325.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\998335.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\drivers\downld\999867.exe - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\(GRABADO)Kaspersky.Antivirus.Per sonal.Pro.v5.0.388-FR.Incl-Keys.par.eMule-Paradise.com.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\3D Chains 2.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\3DMark Vantage 1.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\A-one Video To Audio Convertor 4.54 (With Crack).zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\a-squared Command Line Scanner 3.5.0.6.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\A123 DVD to Zune Ripper 3.8.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\AbsoluteShield Internet Eraser Lite 2.51.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\acxFusion 1.4.3.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Advanced Word to Pdf Converter 4.9.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\AGUTA PAD Submitter 1.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\AlbumGen 2.0 Key.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\American English Pronunciation Patterns Pro 3.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Antechinus Audio Editor 2.4.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\AreaZoom 3.2.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Audio WAV To MP3 Converter v1.2.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\AV4 Customer Order Management for Avon Representatives 5.8.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Avast PE 4.7.817 key.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Awesome Geology from Space Screen Saver 1.0 [Cracked].zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Batch Sizer 1.03.18.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\BayGenie 2.8.7.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Bear Up To Nature 1.0.6.2634.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\BetaMaths 2.0.0.14.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Billion NetWatcher 2.1.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Boson NetSim 5 5.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Bryce Presets 5.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Cards Right Now 1.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Chasys Draw Artist 2.55.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\CINEBENCH 10.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\CodeTwo Exchange Rules 2.0.1.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Cool Mp3 Splitter Joiner 2.25.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\CSS Write Pro.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\D back 1.68.4.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Da Vinci 1.0.0.1452 [KeyGen].zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Daikatana deathmatch demo.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Database to Shop 1.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Digital Teacher 4.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\DigitByte WMV To Wav Converter 1.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\DocPoint 7.02.01.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Doodle Nanny 1.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\DTweak Pro 2.9.1.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Easy Audio Converter 2.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\EasyRecorder 5.5.3 [With Crack].zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\EF Commander 6.81.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Envy Trailer.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Evidence Exterminator 2.2.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Evil Cards 3.7.2332.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Excel Sort & Filter List Software 7.0 [With Crack].zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Extension Killer 1.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\EZ MPEG TO WMV Converter 1.0 [Patch].zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Fast Printer Chooser 2.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\FilePush 2.3.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\First Steps to Immediate Cash - Free eBook 1.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\FlyChat 1.1.1.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Fright House Screensaver 1.1 [With Crack].zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Gold Calculator Gold Edition 3.21 [With Crack].zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Google Define 1.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Google Pack 2.1.810.31257 Beta.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Guitar Scales Method 1.0.25 (Key+Serial).zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Hikkup 1.0.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Hip Hop, Graffiti, and Cars Screensaver 1.5.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Icon to Any 3.02 [Serial].zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Image to PDF Desktop Application 1.51.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\ImageResiZor 2.14 build 203.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\ImageToASCII 1.1.0.1.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\ImDa 1.1.4.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\IniCon (With Crack).zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Instant RAM Booster 1.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Iris Network Traffic Analyzer 4 5 (Sniffer) (Test%C3%A9).zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\ITLocus Charting 1.4.15 (Key+Serial).zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Kaspersky Anti-Virus Personal 8.0.0.506.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Keygen.Avg.Antivirus.7.1.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\KookieJar 6.3.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Library Data Manager 1.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Magical Balance 1.5.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\MathAid Precalculus 28.63 (With Crack).zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\McGill English Dictionary of Rhyme 1.2.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\MechWarrior 4 Vengeance - Hogs Back map.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Media Code Speed Edit 1.1.0.6.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\media hive 0.9 Build 1229.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Messenger Backup 3.5.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Middleware (convert text-file to xml-file) 0.5.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\MTBF Calculator 1.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\myPM SCG 2.1.1.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Netcam Watcher Pro 1.6.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Paper Shredder 1.4.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\PcBoost 3.10.9.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\PDF Measure It 1.06.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Personal Health Desk 1.11.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\PhoneBook95 Standard Edition 2.71.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\PHP Processor 1.4.1.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Posture 1 XP English 1.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\PrintPunk 1.1.4 (Patch).zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\QuadSucker-News 4.8 (Key).zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\QuikCalc Amortization 4.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Recovery for Project 1.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Remote System Query Utility 2008.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\rifiuti2 0.5.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\RipEditBurn Plus 1.0.14 [Patch].zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\RIPStrike Back 2.0.1.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Sasdoc 1.1.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Scrum Dashboard 2.3.0.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Security Update 2003-11-19 for Panther 1.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Serial Port Splitter 3.6.4.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Seven Seas (Palm OS) 2.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Shipment Tracker 1.7.2.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Simnor Metronome 1.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Site Statistics 2.1 (Key).zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Sloud UB Composer 1.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\SoftBooking 1.0.65.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Spector Pro 6.0 (KeyGen).zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\SpectroChord 1.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Stamper 0.8.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\StarQuiz 2.6.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\StockQuery 3.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Superversion Dutch PalmOS 2.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\T@imeCalc 1.12.8 Key.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\USB Lock RP 3.8.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Virtual Flash Drive 3.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Visual WebGui Enterprise Manager 1.0.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\VisualKii Full 1.0 With Crack.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\VnDict - Vietnamese Dictionaries 1.0.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\Volkswagen Concept C Screensaver.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\WebYep 1.1.14.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\WickedOrange - WindowOnTop 0.1.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\WinEject 2.00.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\XKat 2.02.zip - Eliminado C:\Documents and Settings\pc\Datos de programa\m\shared\ZG Words 1.7.zip - Eliminado --------------------\\ Carpetas infectadas C:\Documents and Settings\pc\Datos de programa\m\shared - Eliminada C:\Documents and Settings\pc\Datos de programa\m - Eliminada C:\Documents and Settings\pc\Datos de programa\drivers - Eliminada --------------------\\ Rogue Software --------------------\\ Claves Registro Clave Eliminada - HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Servic es\srosa Clave Eliminada - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\s rosa Clave Eliminada - HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\R oot\LEGACY_SROSA Clave Eliminada - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\ LEGACY_SROSA Clave Eliminada - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\ LEGACY_SROSA Clave Eliminada - HKEY_CURRENT_USER\Software\bisoft Clave Eliminada - HKEY_CURRENT_USER\Software\DateTime4 --------------------\\ Catchme Report catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2009-05-28 00:18:32 Windows 5.1.2600 Service Pack 3 NTFS scanning hidden processes ... scanning hidden registry entries ... [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\WindowsUpdate\Services\7971f918-a847-4430-9279-4a52d1efe18d] "AuthorizationCab"="muauth.cab" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher] "TracesProcessed"=dword:000000f6 "TracesSuccessful"=dword:00000070 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="" "DeviceNotSelectedTimeout"="15" "GDIProcessHandleQuota"=dword:00002710 "Spooler"="yes" "swapdisk"="" "TransmissionRetryTimeout"="90" "USERProcessHandleQuota"=dword:00002710 "LoadAppInit_DLLs"=dword:00000001 [HKEY_CURRENT_USER\Software\Microsoft\Windows\Curre ntVersion\Shell Extensions\Approved\{42D26869-571D-466B-B926-EF369D6CC96D}] "iabikihipacganjnhm"=hex:6a,61,6f,6d,6d,69,66,62,6 1,6e,69,6e,6f,6f,66,69,62,68,6d,6a,00,.. "hahhppimickiamni"=hex:6b,61,6f,6d,70,69,65,63,6c, 64,6f,6f,62,6b,61,70,70,69,66,69,61,.. scanning hidden files ... scan completed successfully hidden processes: 0 hidden files: 0 --------------------\\FS-FixBagle - v2.0.0 |
![]() | ![]() |
| |||
| re: Pc infectada y no puedo ejecutar casi nada para desinfectarla. (Solucionado) *REPORTE DEL COMBOFIX* ComboFix 09-05-26.05 - pc 28/05/2009 22:17.5 - NTFSx86 Microsoft Windows XP Professional 5.1.2600.3.1252.34.3082.18.1279.859 [GMT 2:00] Running from: c:\documents and settings\pc\Escritorio\ComboFix.exe WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !! . ((((((((((((((((((((((((( Files Created from 2009-04-28 to 2009-05-28 ))))))))))))))))))))))))))))))) . 2017-02-26 14:51 . 2007-03-02 10:05 -------- d-----w c:\archivos de programa\Babylon 2009-05-28 20:15 . 2009-05-28 20:15 -------- d-----w c:\windows\LastGood 2009-05-20 22:11 . 2009-05-20 22:15 -------- d-----w C:\_QBagle 2009-05-20 22:10 . 2009-02-20 12:36 474 ----a-w c:\windows\UBagle.bat 2009-05-18 07:58 . 2009-05-18 07:58 8704 ----a-w c:\documents and settings\pc\Datos de programa\Thinstall\12-26-2008 17.43\4000002600003h\GetPopupInfo.exe 2009-05-18 07:57 . 2009-05-18 07:57 -------- d-----w c:\documents and settings\pc\Datos de programa\Thinstall 2009-05-09 07:04 . 2001-10-19 12:40 438608 ----a-w c:\windows\system32\wmv8dmod.dll 2009-05-09 07:04 . 2001-10-19 12:40 665424 ----a-w c:\windows\system32\wmv8dmoe.dll 2009-05-09 07:04 . 2001-10-19 12:39 572752 ----a-w c:\windows\system32\wmvdmoe.dll 2009-05-09 07:04 . 2001-10-19 12:40 1683792 ----a-w c:\windows\system32\wmvcore2.dll 2009-05-07 22:39 . 2009-05-07 22:39 -------- d-----w c:\documents and settings\pc\Datos de programa\KeePass 2009-05-07 22:38 . 2009-05-07 22:39 -------- d-----w c:\archivos de programa\KeePass Password Safe 2009-05-07 06:47 . 2004-08-04 18:46 520192 ----a-w c:\windows\system32\wscma2u.exe 2009-05-07 06:47 . 2009-05-07 06:47 -------- d-----w c:\archivos de programa\AnMing 2009-05-06 18:24 . 2009-05-06 18:24 -------- d-----w c:\archivos de programa\Pegasys Inc 2009-05-05 18:15 . 2009-05-05 18:15 -------- d-----w c:\archivos de programa\CDex_170b2 2009-05-05 07:36 . 2009-05-05 07:36 592 ----a-w c:\windows\chgkey.vbs 2009-05-05 03:55 . 2009-05-21 23:11 -------- d-----w c:\archivos de programa\EsetOnlineScanner 2009-05-03 05:40 . 1997-04-29 06:06 90624 ----a-w c:\windows\system32\pnc32301.dll 2009-05-03 05:40 . 1997-04-29 06:06 85504 ----a-w c:\windows\system32\encdnet.dll 2009-05-03 05:40 . 1997-04-29 06:06 72704 ----a-w c:\windows\system32\ra3228_8.dll 2009-05-03 05:40 . 1997-04-29 06:06 140288 ----a-w c:\windows\system32\ra3214_4.dll 2009-05-03 05:40 . 1997-04-29 06:06 13824 ----a-w c:\windows\system32\ra32dnet.dll 2009-05-03 05:40 . 1997-05-01 13:01 127023 ----a-w c:\windows\c96unins.exe 2009-05-02 04:54 . 2009-05-02 05:28 -------- d-----w c:\archivos de programa\Dealio 2009-05-01 15:04 . 2009-05-02 03:50 2188 ----a-w c:\windows\system32\SpoonUninstall-dBpowerAMP WMA V9 Codec.dat 2009-05-01 15:02 . 2009-05-02 03:51 35139 ----a-w c:\windows\system32\SpoonUninstall-dBpowerAMP Music Converter.dat 2009-05-01 15:02 . 2009-05-01 15:02 -------- d-----w c:\archivos de programa\Illustrate 2009-05-01 02:56 . 2009-05-02 04:54 -------- d-----w c:\archivos de programa\CDex130 2009-04-29 18:46 . 2009-01-19 03:48 43008 ----a-w c:\documents and settings\pc\Datos de programa\Mozilla\Firefox\Profiles\bgcs5rqs.default \extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\metricsloader.dll 2009-04-29 18:46 . 2009-01-19 03:48 43008 ----a-w c:\documents and settings\pc\Datos de programa\Mozilla\Firefox\Profiles\bgcs5rqs.default \extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\googletoolbarloader.dll 2009-04-29 18:46 . 2009-01-19 03:48 245248 ----a-w c:\documents and settings\pc\Datos de programa\Mozilla\Firefox\Profiles\bgcs5rqs.default \extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries\metrics-ff2.dll 2009-04-29 18:46 . 2009-01-19 03:48 243200 ----a-w c:\documents and settings\pc\Datos de programa\Mozilla\Firefox\Profiles\bgcs5rqs.default \extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries\metrics-ff3.dll 2009-04-29 18:46 . 2009-01-19 03:48 239616 ----a-w c:\documents and settings\pc\Datos de programa\Mozilla\Firefox\Profiles\bgcs5rqs.default \extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries\googletoolbar-ff3.dll 2009-04-29 18:46 . 2009-01-19 03:48 233984 ----a-w c:\documents and settings\pc\Datos de programa\Mozilla\Firefox\Profiles\bgcs5rqs.default \extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries\googletoolbar-ff2.dll 2009-04-29 15:44 . 2009-04-29 15:46 -------- d-----w c:\documents and settings\All Users\Datos de programa\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906} 2009-04-29 15:34 . 2009-04-29 15:34 75048 ----a-w c:\documents and settings\All Users\Datos de programa\Apple Computer\Installer Cache\iTunes 8.1.1.10\SetupAdmin.exe 2009-04-29 15:30 . 2009-04-29 15:30 -------- d-----w c:\archivos de programa\Apple Software Update . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))) )) . 2009-05-28 20:14 . 2007-10-02 03:56 50460 ----a-w c:\windows\system32\perfc0c0.dat 2009-05-28 20:14 . 2007-10-02 03:56 362502 ----a-w c:\windows\system32\perfh0c0.dat 2009-05-28 20:14 . 2002-09-24 11:00 579660 ----a-w c:\windows\system32\perfh00A.dat 2009-05-28 20:14 . 2002-09-24 11:00 126874 ----a-w c:\windows\system32\perfc00A.dat 2009-05-28 20:06 . 2008-12-10 15:09 -------- d-----w c:\archivos de programa\Alwil Software 2009-05-28 19:51 . 2007-09-02 02:38 -------- d-----w c:\archivos de programa\CCleaner 2009-05-27 22:39 . 2007-08-08 20:50 -------- d-----w c:\archivos de programa\Unlocker 2009-05-26 21:08 . 2007-09-01 19:34 -------- d-----w c:\documents and settings\All Users\Datos de programa\Spybot - Search & Destroy 2009-05-26 21:07 . 2008-03-07 20:06 -------- d---a-w c:\documents and settings\All Users\Datos de programa\TEMP 2009-05-26 21:06 . 2009-04-18 04:15 -------- d-----w c:\archivos de programa\SpywareBlaster 2009-05-26 10:24 . 2006-11-15 01:06 -------- d-----w c:\archivos de programa\Winamp 2009-05-20 22:57 . 2007-10-15 16:11 -------- d-----w c:\archivos de programa\Spybot - Search & Destroy 2009-05-13 14:28 . 2007-03-23 19:53 -------- d-----w c:\documents and settings\All Users\Datos de programa\Microsoft Help 2009-05-06 18:26 . 2006-05-08 12:08 -------- d--h--w c:\archivos de programa\InstallShield Installation Information 2009-05-05 07:36 . 2009-05-05 07:36 592 ----a-w c:\windows\chgkey.vbs 2009-05-04 09:30 . 2008-04-21 08:13 -------- d-----w c:\archivos de programa\IEPro 2009-05-04 08:54 . 2009-04-07 08:03 117760 ----a-w c:\documents and settings\pc\Datos de programa\SUPERAntiSpyware.com\SUPERAntiSpyware\SDD LLS\UIREPAIR.DLL 2009-05-04 08:50 . 2008-12-06 17:42 -------- d-----w c:\archivos de programa\SUPERAntiSpyware 2009-05-02 15:50 . 2009-04-08 01:20 -------- d-----w c:\archivos de programa\Free Audio Pack 2009-05-02 05:37 . 2008-11-24 19:11 -------- d-----w c:\archivos de programa\Malwarebytes' Anti-Malware 2009-05-02 05:37 . 2008-12-05 02:55 2967799 ----a-w c:\documents and settings\All Users\Datos de programa\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe 2009-05-02 04:54 . 2007-12-31 02:23 -------- d-----w c:\archivos de programa\dBpoweramp 2009-04-29 15:51 . 2006-11-11 17:02 -------- d-----w c:\archivos de programa\QuickTime 2009-04-29 15:46 . 2007-11-28 15:41 -------- d-----w c:\archivos de programa\iTunes 2009-04-29 15:44 . 2007-07-06 04:53 -------- d-----w c:\archivos de programa\Archivos comunes\Apple 2009-04-29 15:43 . 2008-03-29 04:56 -------- d-----w c:\archivos de programa\Bonjour 2009-04-24 17:49 . 2009-04-24 17:49 -------- d-----w c:\archivos de programa\Archivos comunes\PCSuite 2009-04-24 17:49 . 2009-04-24 17:49 -------- d-----w c:\archivos de programa\Archivos comunes\Nokia 2009-04-24 17:49 . 2007-11-26 17:15 -------- d-----w c:\archivos de programa\Nokia 2009-04-24 17:48 . 2009-04-24 17:48 -------- d-----w c:\archivos de programa\PC Connectivity Solution 2009-04-24 17:47 . 2008-12-31 18:56 -------- d-----w c:\documents and settings\All Users\Datos de programa\Installations 2009-04-24 17:47 . 2009-04-24 17:47 8192 ----a-w c:\documents and settings\All Users\Datos de programa\Installations\{7694EC32-CB0E-4B35-9088-7B320CB1F4FE}\Installer\CommonCustomActions\Uninst CCD.exe 2009-04-24 17:47 . 2009-04-24 17:47 61440 ----a-w c:\documents and settings\All Users\Datos de programa\Installations\{7694EC32-CB0E-4B35-9088-7B320CB1F4FE}\Installer\CommonCustomActions\Uninst PCSFEMsi.exe 2009-04-24 17:47 . 2009-04-24 17:47 10240 ----a-w c:\documents and settings\All Users\Datos de programa\Installations\{7694EC32-CB0E-4B35-9088-7B320CB1F4FE}\Installer\CommonCustomActions\Uninst PCS.exe 2009-04-24 17:46 . 2009-04-24 17:47 34172648 ----a-w c:\documents and settings\All Users\Datos de programa\Installations\{7694EC32-CB0E-4B35-9088-7B320CB1F4FE}\Nokia_PC_Suite_7_1_26_0_spa.exe 2009-04-24 05:07 . 2006-11-21 17:17 -------- d-----w c:\archivos de programa\DivX 2009-04-24 05:07 . 2009-04-24 05:07 -------- d-----w c:\archivos de programa\Archivos comunes\DivX Shared 2009-04-24 02:38 . 2009-04-24 02:38 -------- d-----w c:\archivos de programa\IZArc 2009-04-20 23:17 . 2009-04-20 23:17 -------- d-----w c:\archivos de programa\Archivos comunes\Ahead 2009-04-20 17:55 . 2006-05-08 11:56 -------- d-----w c:\archivos de programa\Ahead 2009-04-20 06:21 . 2007-06-08 08:48 -------- d-----w c:\archivos de programa\Messenger Plus! Live 2009-04-18 04:28 . 2008-12-17 17:07 -------- d-----w c:\archivos de programa\TuneUp Utilities 2009 2009-04-18 04:13 . 2008-04-22 03:50 -------- d-----w c:\archivos de programa\SpywareBlaster 4.0 2009-04-15 20:24 . 2009-04-15 20:24 90112 ----a-w c:\windows\system32\dpl100.dll 2009-04-15 20:24 . 2009-04-15 20:24 823296 ----a-w c:\windows\system32\divx_xx0c.dll 2009-04-15 20:24 . 2009-04-15 20:24 823296 ----a-w c:\windows\system32\divx_xx07.dll 2009-04-15 20:24 . 2009-04-15 20:24 815104 ----a-w c:\windows\system32\divx_xx0a.dll 2009-04-15 20:24 . 2009-04-15 20:24 802816 ----a-w c:\windows\system32\divx_xx11.dll 2009-04-15 20:24 . 2009-04-15 20:24 684032 ----a-w c:\windows\system32\DivX.dll 2009-04-08 01:22 . 2009-04-08 01:22 -------- d-----w c:\archivos de programa\Search Settings 2009-04-07 20:52 . 2007-06-03 17:30 -------- d-----w c:\archivos de programa\Java 2009-04-07 20:49 . 2009-04-03 17:35 152576 ----a-w c:\documents and settings\pc\Datos de programa\Sun\Java\jre1.6.0_13\lzma.dll 2009-04-06 13:32 . 2008-11-24 19:11 38496 ----a-w c:\windows\system32\drivers\mbamswissarmy.sys 2009-04-06 13:32 . 2008-11-24 19:11 15504 ----a-w c:\windows\system32\drivers\mbam.sys 2009-04-03 16:23 . 2009-04-03 16:23 -------- d-----w c:\archivos de programa\eRightSoft 2009-04-03 15:49 . 2009-04-02 16:19 -------- d-----w c:\documents and settings\pc\Datos de programa\FileZilla 2009-04-01 01:43 . 2007-04-22 22:55 -------- d-----w c:\documents and settings\pc\Datos de programa\Vso 2009-03-31 21:01 . 2009-03-31 21:01 -------- d-----w c:\archivos de programa\VSO 2009-03-19 14:32 . 2009-03-19 14:32 23400 ----a-w c:\documents and settings\All Users\Datos de programa\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}\x86\x86\GEARAspiWDM.sys 2009-03-11 17:00 . 2008-12-03 03:09 410984 ----a-w c:\windows\system32\deploytk.dll 2009-03-11 16:57 . 2009-03-11 16:57 152576 ----a-w c:\documents and settings\pc\Datos de programa\Sun\Java\jre1.6.0_12\lzma.dll 2009-03-06 14:20 . 2004-08-19 12:42 286720 ----a-w c:\windows\system32\pdh.dll 2009-03-03 00:06 . 2005-09-02 23:06 826368 ----a-w c:\windows\system32\wininet.dll 2009-04-15 20:24 . 2009-04-15 20:24 1044480 ----a-w c:\archivos de programa\mozilla firefox\plugins\libdivx.dll 2009-04-15 20:24 . 2009-04-15 20:24 200704 ----a-w c:\archivos de programa\mozilla firefox\plugins\ssldivx.dll 2007-01-31 08:55 . 2007-01-31 08:55 8 --sh--r c:\windows\system32\6BE4B929DA.sys 2006-05-03 10:06 . 2009-04-03 16:24 163328 --sh--r c:\windows\system32\flvDX.dll 2007-02-21 11:47 . 2009-04-03 16:24 31232 --sh--r c:\windows\system32\msfDX.dll . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run] "ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run] "Adobe Photo Downloader"="c:\archivos de programa\Nokia\3.0\Apps\apdproxy.exe" [2005-07-14 57344] "ISUSPM Startup"="c:\archivos de programa\Archivos comunes\InstallShield\UpdateService\isuspm.exe" [2005-08-11 249856] "ISUSScheduler"="c:\archivos de programa\Archivos comunes\InstallShield\UpdateService\issch.exe" [2005-08-11 81920] "WinampAgent"="c:\archivos de programa\Winamp\winampa.exe" [2009-04-10 37888] "NeroFilterCheck"="c:\windows\system32\NeroCheck.e xe" [2001-07-09 155648] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\Cur rentVersion\Run] "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360] c:\documents and settings\All Users\Men£ Inicio\Programas\Inicio\ Adobe Gamma Loader.lnk - c:\archivos de programa\Archivos comunes\Adobe\Calibration\Adobe Gamma Loader.exe [2006-11-11 110592] [HKEY_CURRENT_USER\software\microsoft\windows\curre ntversion\policies\system] "disableregistrytoosl"= 0 (0x0) [HKEY_CURRENT_USER\software\microsoft\windows\curre ntversion\policies\explorer] "Start_NotifyNewApps"= 0 (0x0) "NoDevMgrUpdate"= 1 (0x1) [hkey_local_machine\software\microsoft\windows\curr entversion\explorer\ShellExecuteHooks] "{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\archivos de programa\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon] 2008-07-23 14:28 352256 ------w c:\archivos de programa\SUPERAntiSpyware\SASWINLO.dll [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menú Inicio^Programas^Inicio^Adobe Gamma Loader.lnk] [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menú Inicio^Programas^Inicio^Microsoft Office.lnk] [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menú Inicio^Programas^Inicio^OpenOffice.org 2.0.lnk] [HKLM\~\startupfolder\C:^Documents and Settings^pc^Menú Inicio^Programas^Inicio^Adobe Gamma.lnk] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services] "WMPNetworkSvc"=3 (0x3) "usnjsvc"=3 (0x3) "ose"=3 (0x3) "odserv"=3 (0x3) "iPod Service"=3 (0x3) "gusvc"=3 (0x3) "FLEXnet Licensing Service"=3 (0x3) "Diskeeper"=2 (0x2) "Bonjour Service"=2 (0x2) "Adobe LM Service"=3 (0x3) [HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\run-] "QuickTime Task"="c:\archivos de programa\QuickTime\qttask.exe" -atboottime "Adobe Reader Speed Launcher"="c:\archivos de programa\Adobe\Reader 8.0\Reader\Reader_sl.exe" "iTunesHelper"="c:\archivos de programa\iTunes\iTunesHelper.exe" [HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\run-disabled] "TkBellExe"="c:\archivos de programa\Archivos comunes\Real\Update_OB\realsched.exe" -osboot [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall] "DisableMonitoring"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpo licy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "c:\\Archivos de programa\\IncrediMail\\bin\\IncMail.exe"= "e:\\eMule\\emule.exe"= "c:\\Archivos de programa\\IncrediMail\\bin\\IMApp.exe"= "c:\\Archivos de programa\\IncrediMail\\bin\\ImpCnt.exe"= "c:\\Archivos de programa\\IncrediMail\\bin\\ImLc.exe"= "c:\\Archivos de programa\\Ares\\Ares.exe"= "c:\\Archivos de programa\\Zattoo\\Zattoo1.exe"= "c:\\Archivos de programa\\Mozilla Firefox\\firefox.exe"= "c:\\Archivos de programa\\Nero\\Nero8\\Nero ShowTime\\ShowTime.exe"= "c:\\Archivos de programa\\IEPro\\MiniDM.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "c:\\Archivos de programa\\Microsoft Office\\Office12\\OUTLOOK.EXE"= "c:\\Archivos de programa\\Real Player\\realplay.exe"= "c:\\Archivos de programa\\Windows Live\\Messenger\\msnmsgr.exe"= "c:\\Archivos de programa\\Windows Live\\Messenger\\livecall.exe"= "c:\\Archivos de programa\\IncrediMail\\bin\\ImSc.exe"= "c:\\Archivos de programa\\Bonjour\\mDNSResponder.exe"= "c:\\Archivos de programa\\iTunes\\iTunes.exe"= [HKLM\~\services\sharedaccess\parameters\firewallpo licy\standardprofile\GloballyOpenPorts\List] "25:TCP"= 25:TCP:File and Printer Sharing "8127:TCP"= 8127:TCP:ural "5486:TCP"= 5486:TCP:ural "7628:TCP"= 7628:TCP:ural R0 m5289;m5289;c:\windows\system32\drivers\m5289.sys [10/11/2006 20:59 52480] R0 uliagpkx;ULi AGP Bus Filter Driver;c:\windows\system32\drivers\AGPKX.SYS [10/11/2006 20:58 45056] R1 SASDIFSV;SASDIFSV;c:\archivos de programa\SUPERAntiSpyware\sasdifsv.sys [17/11/2008 16:11 8944] R1 SASKUTIL;SASKUTIL;c:\archivos de programa\SUPERAntiSpyware\SASKUTIL.SYS [17/11/2008 16:11 55024] R2 TuneUp.ProgramStatisticsSvc;TuneUp Program Statistics Service;c:\windows\system32\TUProgSt.exe [21/01/2009 1:00 603904] R3 ULI5261XP;ULi M526X Ethernet NT Driver;c:\windows\system32\drivers\ULILAN51.SYS [10/11/2006 20:58 28672] S2 2432FD36B1F1BBD4CAE9F66729E42B7A;2432FD36B1F1BBD4C AE9F66729E42B7A;cmd /k start /i "/dC:" "c:\combo-fix\HIDEC.exe" "c:\combo-fix\SWREG.EXE" ACL "HKEY_LOCAL_MACHINE\System\CurrentControlSet\Enum\ Root\LEGACY_Beep" /RESET /Q --> cmd [?] S2 jupiw32;MicroTek scanner driver;c:\windows\system32\rundll32.exe jupiw32.dll,ural --> c:\windows\system32\rundll32.exe jupiw32.dll,ural [?] S3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\archivos de programa\MAGIX\Common\Database\bin\fbserver.exe [18/06/2008 21:48 1527900] S3 MTK;Media Technology Kernel Driver;c:\windows\system32\drivers\MTK.SYS [03/10/2007 23:24 14495] S3 SASENUM;SASENUM;c:\archivos de programa\SUPERAntiSpyware\SASENUM.SYS [17/11/2008 16:11 7408] S3 TVICHW32;TVICHW32;c:\windows\system32\drivers\TVIC HW32.SYS [04/10/2007 12:06 23600] HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs UxTuneUp . Contents of the 'Scheduled Tasks' folder 2009-05-22 c:\windows\Tasks\AppleSoftwareUpdate.job - c:\archivos de programa\Apple Software Update\SoftwareUpdate.exe [2008-07-30 10:34] 2007-12-14 c:\windows\Tasks\Copia de seguridad.job - c:\windows\system32\ntbackup.exe [2004-08-19 02:19] 2009-05-28 c:\windows\Tasks\Mantenimiento con 1 clic.job - c:\archivos de programa\TuneUp Utilities 2009\OneClickStarter.exe [2008-12-12 14:00] . - - - - ORPHANS REMOVED - - - - SafeBoot-procexp90.Sys . ------- Supplementary Scan ------- . uStart Page = about:blank uInternet Settings,ProxyOverride = *.local IE: &Add animation to IncrediMail Style Box - c:\archivos de programa\IncrediMail\bin\resources\WebMenuImg.htm IE: {{000002a3-84fe-43f1-b958-f2c3ca804f1a} - {CD275D4E-791A-4993-9D4D-6A071EDD2709} - c:\archivos de programa\IEPro\iepro.dll Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - c:\archivos de programa\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} - hxxp://downloads.ewido.net/ewidoOnlineScan.cab DPF: {C1BAC744-8F0B-11D0-89E7-00C0A8295197} - hxxp://www.crtvg.es/camweb/camera.cab FF - ProfilePath - c:\documents and settings\pc\Datos de programa\Mozilla\Firefox\Profiles\bgcs5rqs.default \ FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q= FF - prefs.js: browser.search.selectedEngine - Google FF - prefs.js: browser.startup.homepage - FF - component: c:\archivos de programa\Nokia\Nokia PC Suite 7\bkmrksync\components\BkMrkExt.dll ---- FIREFOX POLICIES ---- FF - user.js: network.http.max-persistent-connections-per-server - 4 FF - user.js: nglayout.initialpaint.delay - 600 FF - user.js: content.notify.interval - 600000 FF - user.js: content.max.tokenizing.time - 1800000 FF - user.js: content.switch.threshold - 600000 . ************************************************** ************************ catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2009-05-28 22:21 Windows 5.1.2600 Service Pack 3 NTFS scanning hidden processes ... scanning hidden autostart entries ... scanning hidden files ... scan completed successfully hidden files: 0 ************************************************** ************************ [HKEY_LOCAL_MACHINE\System\ControlSet004\Services\2 432FD36B1F1BBD4CAE9F66729E42B7A] "ImagePath"="cmd /k start /i \"/d%systemdrive%\" \"c:\combo-fix\HIDEC.exe\" \"c:\combo-fix\SWREG.EXE\" ACL \"HKEY_LOCAL_MACHINE\System\CurrentControlSet\Enum \Root\LEGACY_Beep\" /RESET /Q" . --------------------- LOCKED REGISTRY KEYS --------------------- [HKEY_USERS\S-1-5-21-1218614049-1890655171-3945156927-1003\Software\Microsoft\SystemCertificates\Address Book*] @Allowed: (Read) (RestrictedCode) @Allowed: (Read) (RestrictedCode) [HKEY_USERS\S-1-5-21-1218614049-1890655171-3945156927-1003\Software\Microsoft\Windows\CurrentVersion\She ll Extensions\Approved\{42D26869-571D-466B-B926-EF369D6CC96D}*] @Allowed: (Read) (RestrictedCode) @Allowed: (Read) (RestrictedCode) "iabikihipacganjnhm"=hex:6a,61,6f,6d,6d,69,66,62,6 1,6e,69,6e,6f,6f,66,69,62,68, 6d,6a,00,00 "hahhppimickiamni"=hex:6b,61,6f,6d,70,69,65,63,6c, 64,6f,6f,62,6b,61,70,70,69, 66,69,61,67,00,00 [HKEY_LOCAL_MACHINE\software\Classes\AVIFile\shell\ open] @DACL=(02 0000) @="&Abrir" [HKEY_LOCAL_MACHINE\software\Classes\AVIFile\shell\ play] @DACL=(02 0000) "MUIVerb"=expand:"@c:\\WINDOWS\\inf\\unregmp2. exe,-9991" @="Repr&oducir" [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{42D2686 9-571D-466B-B926-EF369D6CC96D}\InProcServer32*] "jalhndfhnbinigbnpobh"=hex:6a,61,6f,6d,6d,69,66,62 ,61,6e,69,6e,6f,6f,66,69,62, 68,6d,6a,00,00 "ialhhehgaicbnbfhdb"=hex:6b,61,6f,6d,70,69,65,63,6 c,64,6f,6f,62,6b,61,70,70,69, 66,69,61,67,00,00 [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{47629D4 B-2AD3-4e50-B716-A66C15C63153}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "cd042efbbd7f7af1647644e76e06692b"=hex:c8,28,51,af ,b0,29,a3,98,f5,50,f4,06,7e, b4,81,65,e2,63,26,f1,3f,c8,ff,68,41,78,54,6b,cb,25 ,73,5e,e2,63,26,f1,3f,c8,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{604BB98 A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "bca643cdc5c2726b20d2ecedcc62c59b"=hex:6a,9c,d6,61 ,af,45,84,18,9b,7b,34,ac,94, c1,74,0b,6a,9c,d6,61,af,45,84,18,38,bb,d5,45,c2,68 ,70,5c,6a,9c,d6,61,af,45,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{684373F B-9CD8-4e47-B990-5A4466C16034}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "2c81e34222e8052573023a60d06dd016"=hex:ff,7c,85,e0 ,43,d4,0e,fe,0e,29,38,5a,5f, af,7b,57,ff,7c,85,e0,43,d4,0e,fe,e7,38,ef,42,95,63 ,97,c3,ff,7c,85,e0,43,d4,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{74554CC D-F60F-4708-AD98-D0152D08C8B9}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "2582ae41fb52324423be06337561aa48"=hex:3e,1e,9e,e0 ,57,5a,93,61,67,27,bc,56,2b, 58,f4,b7,86,8c,21,01,be,91,eb,e7,ba,33,a5,03,1a,41 ,48,16,86,8c,21,01,be,91,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{7EB537F 9-A916-4339-B91B-DED8E83632C0}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "caaeda5fd7a9ed7697d9686d4b818472"=hex:f5,1d,4d,73 ,a8,13,5c,05,78,55,a4,5d,c2, bf,27,7a,f5,1d,4d,73,a8,13,5c,05,1d,83,69,e8,ac,fb ,66,38,f5,1d,4d,73,a8,13,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{948395E 8-7A56-4fb1-843B-3E52D94DB145}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "a4a1bcf2cc2b8bc3716b74b2b4522f5d"=hex:50,93,e5,ab ,ec,6a,4e,ab,a7,d1,10,e2,1b, e1,84,52,df,20,58,62,78,6b,cf,c8,4e,9e,52,48,ec,c0 ,a7,1c,df,20,58,62,78,6b,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{AC3ED30 B-6F1A-4bfc-A4F6-2EBDCCD34C19}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "4d370831d2c43cd13623e232fed27b7b"=hex:fb,a7,78,e6 ,12,2f,9a,ea,95,0e,b8,93,16, 21,99,a5,fb,a7,78,e6,12,2f,9a,ea,e2,c6,0d,83,3a,45 ,f8,77,fb,a7,78,e6,12,2f,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{DE5654C A-EB84-4df9-915B-37E957082D6D}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "1d68fe701cdea33e477eb204b76f993d"=hex:01,3a,48,fc ,e8,04,4a,f1,8f,d9,5c,ac,04, 01,4d,5e,01,3a,48,fc,e8,04,4a,f1,82,29,83,2f,7d,40 ,7b,d2,01,3a,48,fc,e8,04,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{E39C35E 8-7488-4926-92B2-2F94619AC1A5}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "1fac81b91d8e3c5aa4b0a51804d844a3"=hex:51,fa,6e,91 ,28,9e,14,cc,27,bc,02,eb,81, c4,17,49,f6,0f,4e,58,98,5b,89,c9,25,df,65,00,2e,63 ,32,b1,f6,0f,4e,58,98,5b,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{EACAFCE 5-B0E2-4288-8073-C02FF9619B6F}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "f5f62a6129303efb32fbe080bb27835b"=hex:3d,ce,ea,26 ,2d,45,aa,78,ea,47,10,91,79, 13,b9,3d,3d,ce,ea,26,2d,45,aa,78,37,32,9f,41,5c,1f ,78,77,3d,ce,ea,26,2d,45,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{F8F02AD D-7366-4186-9488-C21CB8B3DCEC}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "fd4e2e1a3940b94dceb5a6a021f2e3c6"=hex:e3,0e,66,d5 ,eb,bc,2f,6b,11,c9,26,0b,a8, 6c,ad,37,2a,b7,cc,b5,b9,7f,41,e7,8b,2c,6d,d9,31,77 ,a6,50,2a,b7,cc,b5,b9,7f,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{FEE45DE 2-A467-4bf9-BF2D-1411304BCD84}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "8a8aec57dd6508a385616fbc86791ec2"=hex:fa,ea,66,7f ,d4,3b,6b,70,1b,9a,70,5c,04, 2b,19,04,6c,43,2d,1e,aa,22,2f,9c,92,e1,1e,0f,d6,06 ,73,36,6c,43,2d,1e,aa,22,\ [HKEY_LOCAL_MACHINE\software\Classes\mpegfile\Defau ltIcon] @DACL=(02 0000) @="c:\\WINDOWS\\system32\\wmploc.dll,-733" [HKEY_LOCAL_MACHINE\software\Classes\mpegfile\shell \open] @DACL=(02 0000) @="&Abrir" "LegacyDisable"="" [HKEY_LOCAL_MACHINE\software\Classes\mpegfile\shell \play] @DACL=(02 0000) "MUIVerb"=expand:"@c:\\WINDOWS\\inf\\unregmp2. exe,-9991" @="Repr&oducir" "LegacyDisable"="" [HKEY_LOCAL_MACHINE\software\Microsoft\Advanced INF Setup\IE40.BrowseUI\RegBackup] @DACL=(02 0000) [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\Curr entVersion\Installer\UserData\LocalSystem\Componen ts\h–€|ÿÿÿÿ¤•€|ù•9~*] "A0C0110900063D11C8EF10054038389C"="C?\\WINDOWS\\s ystem32\\FM20ENU.DLL" "A0C0710900063D11C8EF10054038389C"="C?\\WINDOWS\\s ystem32\\FM20ENU.DLL" . --------------------- DLLs Loaded Under Running Processes --------------------- - - - - - - - > 'winlogon.exe'(912) c:\archivos de programa\SUPERAntiSpyware\SASWINLO.dll - - - - - - - > 'explorer.exe'(2800) c:\windows\system32\WPDShServiceObj.dll c:\windows\system32\PortableDeviceTypes.dll c:\windows\system32\PortableDeviceApi.dll . Completion time: 2009-05-28 22:25 ComboFix-quarantined-files.txt 2009-05-28 20:24 Pre-Run: 10.538.758.144 bytes libres Post-Run: 10.536.857.600 bytes libres 364 --- E O F --- 2009-05-28 20:15 |
![]() | ![]() |
| |||
| re: Pc infectada y no puedo ejecutar casi nada para desinfectarla. (Solucionado) Y aquí te dejo el reporte del HJT. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 22:01:03, on 28/05/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16827) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Archivos de programa\Nokia\3.0\Apps\apdproxy.exe C:\Archivos de programa\Winamp\winampa.exe C:\WINDOWS\system32\ctfmon.exe C:\Archivos de programa\Archivos comunes\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Archivos de programa\Bonjour\mDNSResponder.exe C:\Archivos de programa\Nero\Nero8\Nero BackItUp\NBService.exe C:\WINDOWS\system32\PSIService.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\TUProgSt.exe C:\WINDOWS\system32\wscntfy.exe C:\Archivos de programa\Trend Micro\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Vínculos O2 - BHO: IE7Pro - {00011268-E188-40DF-A514-835FCD78B1BF} - C:\Archivos de programa\IEPro\iepro.dll O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Archivos de programa\Real Player\rpbrowserrecordplugin.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\ARCHIV~1\SPYBOT~1\SDHelper.dll O2 - BHO: IESessions.Manager - {6ECF15F0-468D-4E25-8997-1C710E80F5CD} - C:\Program Files\IESessions\IESessions.dll O2 - BHO: Windows Live Aplicación auxiliar de inicio de sesión - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Archivos de programa\Google\Google Toolbar\GoogleToolbar.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Archivos de programa\Google\GoogleToolbarNotifier\5.1.1309.357 2\swg.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Archivos de programa\Java\jre6\bin\jp2ssv.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Archivos de programa\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Archivos de programa\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Archivos de programa\Google\Google Toolbar\GoogleToolbar.dll O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Archivos de programa\Nokia\3.0\Apps\apdproxy.exe" O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Archivos de programa\Archivos comunes\InstallShield\UpdateService\isuspm.exe" -startup O4 - HKLM\..\Run: [ISUSScheduler] "C:\Archivos de programa\Archivos comunes\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [WinampAgent] "C:\Archivos de programa\Winamp\winampa.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [avast!] C:\ARCHIV~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Archivos de programa\Archivos comunes\Adobe\Calibration\Adobe Gamma Loader.exe O8 - Extra context menu item: &Add animation to IncrediMail Style Box - C:\Archivos de programa\IncrediMail\bin\resources\WebMenuImg.htm O9 - Extra button: IE7Pro Grab and Drag - {000002a3-84fe-43f1-b958-f2c3ca804f1a} - C:\Archivos de programa\IEPro\iepro.dll O9 - Extra 'Tools' menuitem: IE7Pro Grab and Drag - {000002a3-84fe-43f1-b958-f2c3ca804f1a} - C:\Archivos de programa\IEPro\iepro.dll O9 - Extra button: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Archivos de programa\IEPro\iepro.dll O9 - Extra 'Tools' menuitem: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Archivos de programa\IEPro\iepro.dll O9 - Extra button: IESessions - {32FF09D3-2F66-4814-AA2C-835D5D2BF0FD} - C:\Program Files\IESessions\IESessions.dll O9 - Extra 'Tools' menuitem: IESessions - {32FF09D3-2F66-4814-AA2C-835D5D2BF0FD} - C:\Program Files\IESessions\IESessions.dll O9 - Extra button: Referencia - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARCHIV~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\WINDOWS\system32\shdocvw.dll O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\WINDOWS\system32\shdocvw.dll O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\ARCHIV~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\ARCHIV~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Archivos de programa\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Archivos de programa\Messenger\msmsgs.exe O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://downloads.ewido.net/ewidoOnlineScan.cab O16 - DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} (Trend Micro ActiveX Scan Agent 6.6) - http://housecall65.trendmicro.com/housecall/applet/html/native/x86/win32/activex/hcImpl.cab O16 - DPF: {238F6F83-B8B4-11CF-8771-00A024541EE3} - http://a516.g.akamai.net/f/516/25175/7d/runaware.download.akamai.com/25175/citrix/wficat-no-eula.cab O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - http://www.eset.eu/buxus/docs/OnlineScanner.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1164660535676 O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1228546246854 O16 - DPF: {C1BAC744-8F0B-11D0-89E7-00C0A8295197} (Cameractl Class) - http://www.crtvg.es/camweb/camera.cab O17 - HKLM\System\CS1\Services\Tcpip\..\{09F294F0-1A57-4301-AB29-61B9ADFCA1E0}: NameServer = 192.168.1.1 O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Archivos de programa\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll O20 - Winlogon Notify: !SASWinLogon - C:\Archivos de programa\SUPERAntiSpyware\SASWINLO.dll O23 - Service: 2432FD36B1F1BBD4CAE9F66729E42B7A - Unknown owner - cmd /k start /i "/dC:" "C:\Combo-Fix\HIDEC.exe" "C:\Combo-Fix\SWREG.EXE" ACL "HKEY_LOCAL_MACHINE\System\CurrentControlSet\Enum\ Root\LEGACY_Beep" /RESET /Q (file missing) O23 - Service: Apple Mobile Device - Apple Inc. - C:\Archivos de programa\Archivos comunes\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Servicio Bonjour (Bonjour Service) - Apple Inc. - C:\Archivos de programa\Bonjour\mDNSResponder.exe O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Archivos de programa\MAGIX\Common\Database\bin\fbserver.exe O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Archivos de programa\Archivos comunes\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Archivos de programa\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Archivos de programa\Archivos comunes\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Servicio del iPod (iPod Service) - Apple Inc. - C:\Archivos de programa\iPod\bin\iPodService.exe O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Archivos de programa\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Archivos de programa\Archivos comunes\Nero\Lib\NMIndexingService.exe O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe O23 - Service: ServiceLayer - Nokia. - C:\Archivos de programa\PC Connectivity Solution\ServiceLayer.exe O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\WINDOWS\System32\TuneUpDefragService.exe O23 - Service: TuneUp Program Statistics Service (TuneUp.ProgramStatisticsSvc) - TuneUp Software - C:\WINDOWS\System32\TUProgSt.exe -- End of file - 9828 bytes |
![]() |
| Herramientas | |
| |
![]() |
Temas Similares | ![]() |
| Tema | Autor | Foro | Respuestas | Último mensaje |
| virus msn+no abre administrador de tareas | landreal | Foro de Virus y Spywares | 6 | 22/09/08 23:14:48 |
| Ventanas CiD (Solucionado) | letskilmemylove | Temas Solucionados | 9 | 17/05/08 00:23:24 |
| Reinicio de Pc al navegar en "Mis Imagenes" | GDC | Foro de Virus y Spywares | 31 | 05/05/08 01:09:31 |
| No puedo eliminar SpyAgent | Sa-sa | Foro de Virus y Spywares | 24 | 02/10/07 15:11:43 |