• Registrarse
  • Iniciar sesión


  • Página 1 de 2 12 ÚltimoÚltimo
    Resultados 1 al 10 de 12

    Después de eliminar virus, no aparece Centro de Seguridad en la lista de services.msc

    Resumen del tema: Después de eliminar virus, no aparece Centro de Seguridad en la lista de services.msc - Pues eso, la PC de mi madre se infectó de un virus que bloqueaba los ejecutables (.exe), y al intentar correr algún programa me mostraba la ventana de "Abrir con...", dejando la PC completamente inutilizable ...

      
    1. #1
      Usuario Avatar de cplatt
      Registrado
      may 2011
      Ubicación
      HERMOSILLO
      Mensajes
      9

      Triste Después de eliminar virus, no aparece Centro de Seguridad en la lista de services.msc

      Pues eso, la PC de mi madre se infectó de un virus que bloqueaba los ejecutables (.exe), y al intentar correr algún programa me mostraba la ventana de "Abrir con...", dejando la PC completamente inutilizable (segun Panda ActiveScanner, tenía más de 119 infecciones). Afortunadamente pude solucionarlo viendo entradas de este foro, lo arreglé con Panda ActiveScanner, rkill y malwarebytes en modo a prueba de fallos.

      Después de eso la compu volvió a ser usable, solo que faltó un detalle... En el centro de actividades, en concreto el Centro de Seguridad, no puede activarse...

      Si entro a services.msc, el servicio del Centro de Seguridad no aparece... por lo tanto, no lo puedo iniciar, ni detener, ni nada... y cuando trato de activarlo desde el Centro de Actividades me dice simplemente "No se puede iniciar el centro de seguridad de windows"... eso sin más y sin un código de error...

      Les agradecería mucho su ayuda... le volví a pasar el malwarebytes (escanéo rápido esta vez), el Panda Cloud (full scan) y nada más me falta el spybot...

      Espero que tenga solución... en verdad llevo horas en google y en vuestro foro buscando a alguien que le haya pasado lo mismo... pero veo que todos encuentran el servicio en la lista y queda bien con eso... a mí ni me aparece...

      Gracias de antemano por su ayuda...
      Última edición por cplatt fecha: 29/05/11 a las 01:32:34

    2. #2
      Ex-Colaborador Avatar de Rollinguit
      Registrado
      sep 2009
      Ubicación
      Argentina
      Mensajes
      6.229

      Re: Después de eliminar virus, no aparece Centro de Seguridad en la lista de services

      Hola cplatt.




      Podrías pegar el reporte de Malwarebytes, Rkill y Panda ActiveScan (dode detectaron las amenazas), para analizarlos.

      Malwareytes: dentro del programa en la pestaña "Registros".
      Rkill:
      C:\rkill.log

      Saludos!

      Blog | Antivirus Online | Eliminar Malwares | Antivirus Gratis


      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    3. #3
      Usuario Avatar de cplatt
      Registrado
      may 2011
      Ubicación
      HERMOSILLO
      Mensajes
      9

      Re: Después de eliminar virus, no aparece Centro de Seguridad en la lista de services

      Gracias por responder...

      Los reportes son bastante extensos como para atiborrar la pantalla, así que los subí a mega (solo 4 kbs):

      Rkill
      Código:
      This log file is located at C:\rkill.log. 
      Please post this only if requested to by the person helping you. 
      Otherwise you can close this log when you wish. 
      
      Rkill was run on 28/05/2011 at 19:49:05. 
      Operating System: Windows 7 Home Basic 
      
      
      Processes terminated by Rkill or while it was running: 
      
      
      
      Rkill completed on 28/05/2011 at 19:49:22.
      Malwarebytes
      Código:
      Malwarebytes' Anti-Malware 1.50.1.1100
      www.malwarebytes.org
      
      Versión de la Base de Datos: 6707
      
      Windows 6.1.7600 (Safe Mode)
      Internet Explorer 8.0.7600.16385
      
      28/05/2011 07:43:03 p.m.
      mbam-log-2011-05-28 (19-43-03).txt
      
      Tipos de Análisis: Análisis Completo (C:\|D:\|)
      Objetos examinados: 361715
      Tiempo transcurrido: 46 minuto(s), 1 segundo(s)
      
      Procesos en Memoria Infectados: 0
      Módulos de Memoria Infectados: 1
      Claves del Registro Infectadas: 8
      Valores del Registro Infectados: 6
      Elementos de Datos del Registro Infectados: 7
      Carpetas Infectadas: 0
      Archivos Infectados: 55
      
      Procesos en Memoria Infectados:
      (No se han detectado elementos maliciosos)
      
      Módulos de Memoria Infectados:
      c:\Windows\System32\hgrykvag.dll (IPH.GenericBHO) -> Delete on reboot.
      
      Claves del Registro Infectadas:
      HKEY_CLASSES_ROOT\CLSID\{6F2B64C6-9604-ECBD-0319-F7428D12B773} (IPH.GenericBHO) -> Quarantined and deleted successfully.
      HKEY_CLASSES_ROOT\Xcbkrubg (IPH.GenericBHO) -> Quarantined and deleted successfully.
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6F2B64C6-9604-ECBD-0319-F7428D12B773} (IPH.GenericBHO) -> Quarantined and deleted successfully.
      HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6F2B64C6-9604-ECBD-0319-F7428D12B773} (IPH.GenericBHO) -> Quarantined and deleted successfully.
      HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\kmhfoot (Trojan.Agent.Gen) -> Quarantined and deleted successfully.
      HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\msupdate (Spyware.Passwords.XGen) -> Quarantined and deleted successfully.
      HKEY_CLASSES_ROOT\CLSID\{D7FFD784-5276-42D1-887B-00267870A4C7} (Trojan.BHO) -> Quarantined and deleted successfully.
      HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\GoogleUpdateBeta (Backdoor.IRCBot) -> Quarantined and deleted successfully.
      
      Valores del Registro Infectados:
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\WinDLL (service.exe) (Worm.Agent) -> Value: WinDLL (service.exe) -> Quarantined and deleted successfully.
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Firewall (Trojan.VirTool) -> Value: Firewall -> Quarantined and deleted successfully.
      HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\UpdateWindows (Trojan.VirTool) -> Value: UpdateWindows -> Quarantined and deleted successfully.
      HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\engel (Trojan.Proxy) -> Value: engel -> Quarantined and deleted successfully.
      HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\zeeeceh (Backdoor.Bot) -> Value: zeeeceh -> Quarantined and deleted successfully.
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\SysRun (Trojan.BHO) -> Value: SysRun -> Quarantined and deleted successfully.
      
      Elementos de Datos del Registro Infectados:
      HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SecurityProviders (Spyware.Passwords.XGen) -> Bad: (mitgmkpu.dll) Good: () -> Quarantined and deleted successfully.
      HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SecurityProviders (Spyware.Passwords.XGen) -> Bad: (momaymly.dll) Good: () -> Quarantined and deleted successfully.
      HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SecurityProviders (Spyware.Passwords.XGen) -> Bad: (mijuwlgv.dll) Good: () -> Quarantined and deleted successfully.
      HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SecurityProviders (Spyware.Passwords.XGen) -> Bad: (mrirwhxd.dll) Good: () -> Quarantined and deleted successfully.
      HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SecurityProviders (Spyware.Passwords.XGen) -> Bad: (mdivgqce.dll) Good: () -> Quarantined and deleted successfully.
      HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SecurityProviders (Spyware.Passwords.XGen) -> Bad: (mymxlivh.dll) Good: () -> Quarantined and deleted successfully.
      HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\(default) (Hijack.StartMenuInternet) -> Bad: ("C:\Windows\system32\config\systemprofile\AppData\Local\nxm.exe" -a "C:\Program Files\Internet Explorer\iexplore.exe") Good: (iexplore.exe) -> Quarantined and deleted successfully.
      
      Carpetas Infectadas:
      (No se han detectado elementos maliciosos)
      
      Archivos Infectados:
      c:\Windows\System32\hgrykvag.dll (IPH.GenericBHO) -> Quarantined and deleted successfully.
      c:\Windows\service.exe (Worm.Agent) -> Quarantined and deleted successfully.
      c:\Users\eduardo\AppData\Roaming\firewall update.exe (Trojan.VirTool) -> Quarantined and deleted successfully.
      c:\Users\eduardo\AppData\Roaming\updates\updates.exe (Trojan.Proxy) -> Quarantined and deleted successfully.
      c:\Users\eduardo\zeeeceh.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
      c:\Windows\System32\mitgmkpu.dll (Spyware.Passwords.XGen) -> Quarantined and deleted successfully.
      c:\Windows\System32\momaymly.dll (Spyware.Passwords.XGen) -> Quarantined and deleted successfully.
      c:\Windows\System32\mijuwlgv.dll (Spyware.Passwords.XGen) -> Quarantined and deleted successfully.
      c:\Windows\System32\mrirwhxd.dll (Spyware.Passwords.XGen) -> Quarantined and deleted successfully.
      c:\Windows\System32\mdivgqce.dll (Spyware.Passwords.XGen) -> Quarantined and deleted successfully.
      c:\Windows\System32\mymxlivh.dll (Spyware.Passwords.XGen) -> Quarantined and deleted successfully.
      c:\Windows\System32\drivers\kmhfoot.exe (Trojan.Agent.Gen) -> Quarantined and deleted successfully.
      c:\Windows\System32\mssrv32.exe (Spyware.Passwords.XGen) -> Quarantined and deleted successfully.
      c:\Windows\System32\svshost.dll (Trojan.BHO) -> Quarantined and deleted successfully.
      c:\$Recycle.Bin\s-1-5-21-1855103910-1296302430-1705687183-1000\$R8NKW8S.exe (Trojan.VirTool) -> Quarantined and deleted successfully.
      c:\$Recycle.Bin\s-1-5-21-1855103910-1296302430-1705687183-1000\$RT9XNL2.exe (RiskWare.Tool.CK) -> Quarantined and deleted successfully.
      c:\programdata\dhcpcores.dll (Trojan.Agent) -> Quarantined and deleted successfully.
      c:\Users\eduardo\l.exe (Trojan.FraudPack.Gen) -> Quarantined and deleted successfully.
      c:\Users\eduardo\nvt32.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
      c:\Users\eduardo\o.exe (Trojan.FraudPack.Gen) -> Quarantined and deleted successfully.
      c:\Users\eduardo\pvc32.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
      c:\Users\eduardo\svc32.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
      c:\Users\eduardo\AppData\Local\Temp\37F2.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully.
      c:\Users\eduardo\AppData\Local\Temp\3ED5.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully.
      c:\Users\eduardo\AppData\Local\Temp\4818.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully.
      c:\Users\eduardo\AppData\Local\Temp\539D.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully.
      c:\Users\eduardo\AppData\Local\Temp\5F7F.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully.
      c:\Users\eduardo\AppData\Local\Temp\693D.tmp (Spyware.Passwords.XGen) -> Quarantined and deleted successfully.
      c:\Users\eduardo\AppData\Local\Temp\7705.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully.
      c:\Users\eduardo\AppData\Local\Temp\DD55.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully.
      c:\Users\eduardo\AppData\Local\Temp\EAFC.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully.
      c:\Users\eduardo\AppData\Local\Temp\F799.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully.
      c:\Users\eduardo\AppData\Roaming\microsoft\Windows\start menu\Programs\Startup\mousedriver.exe (Trojan.Proxy) -> Quarantined and deleted successfully.
      c:\Users\eduardo\Desktop\programas\sketch up\sketch up pro8\Sketchup\keygen.exe (RiskWare.Tool.CK) -> Quarantined and deleted successfully.
      c:\Windows\System32\wininet.exe (Backdoor.Syrutrk) -> Quarantined and deleted successfully.
      c:\Windows\System32\drivers\kmhfoot.exe105 (Trojan.Agent.Gen) -> Quarantined and deleted successfully.
      c:\Windows\System32\drivers\kmhfoot.exe773 (Trojan.Agent.Gen) -> Quarantined and deleted successfully.
      c:\Windows\Temp\cgjf\setup.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
      c:\Windows\Temp\deto\setup.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
      c:\Windows\Temp\fbqt\setup.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
      c:\Windows\Temp\gopq\setup.exe (Spyware.Passwords.XGen) -> Quarantined and deleted successfully.
      c:\Windows\Temp\gpif\setup.exe (Trojan.Agent.Gen) -> Quarantined and deleted successfully.
      c:\Windows\Temp\ifuk\setup.exe (Spyware.Passwords.XGen) -> Quarantined and deleted successfully.
      c:\Windows\Temp\isvi\setup.exe (Backdoor.Syrutrk) -> Quarantined and deleted successfully.
      c:\Windows\Temp\jrmg\setup.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
      c:\Windows\Temp\kdrh\setup.exe (Spyware.Passwords.XGen) -> Quarantined and deleted successfully.
      c:\Windows\Temp\kobb\setup.exe (Trojan.Agent.Gen) -> Quarantined and deleted successfully.
      c:\Windows\Temp\muym\setup.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
      c:\Windows\Temp\owfq\setup.exe (Malware.Packer.GenX) -> Quarantined and deleted successfully.
      c:\Windows\Temp\payd\setup.exe (Spyware.Passwords.XGen) -> Quarantined and deleted successfully.
      c:\Windows\Temp\qxin\setup.exe (Spyware.Passwords.XGen) -> Quarantined and deleted successfully.
      c:\Windows\Temp\tvty\setup.exe (Spyware.Passwords.XGen) -> Quarantined and deleted successfully.
      c:\Windows\Temp\wegl\setup.exe (Trojan.Agent.Gen) -> Quarantined and deleted successfully.
      c:\Windows\Temp\wvxk\setup.exe (Spyware.Passwords.XGen) -> Quarantined and deleted successfully.
      c:\Users\eduardo\iexplore.exe (Trojan.Agent) -> Quarantined and deleted successfully.
      Panda ActiveScan
      Código:
      ;***********************************************************************************************************************************************************************************
      ANALYSIS: 2011-05-28 19:16:45
      PROTECTIONS: 1
      MALWARE: 51
      SUSPECTS: 2
      ;***********************************************************************************************************************************************************************************
      PROTECTIONS
      Description                                  Version                       Active    Updated
      ;===================================================================================================================================================================================
      Norton Internet Security                                                   No        No
      ;===================================================================================================================================================================================
      MALWARE
      Id        Description                        Type                Active    Severity  Disinfectable  Disinfected Location
      ;===================================================================================================================================================================================
      00139059  Cookie/Traffic Marketplace         TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@trafficmp[1].txt
      00139061  Cookie/Doubleclick                 TrackingCookie      No        0         Yes            No           c:\users\eduardo\appdata\local\temp\low\cookies\eduardo@doubleclick[1].txt
      00139061  Cookie/Doubleclick                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@doubleclick[4].txt
      00139061  Cookie/Doubleclick                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@doubleclick[3].txt
      00139061  Cookie/Doubleclick                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@doubleclick[2].txt
      00139061  Cookie/Doubleclick                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@doubleclick[1].txt
      00139061  Cookie/Doubleclick                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@doubleclick[5].txt
      00139064  Cookie/Atlas DMT                   TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@atdmt[1].txt
      00139064  Cookie/Atlas DMT                   TrackingCookie      No        0         Yes            No           c:\users\eduardo\appdata\local\temp\low\cookies\eduardo@atdmt[2].txt
      00139064  Cookie/Atlas DMT                   TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@atdmt[3].txt
      00145457  Cookie/FastClick                   TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@fastclick[2].txt
      00145738  Cookie/Mediaplex                   TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@mediaplex[3].txt
      00145738  Cookie/Mediaplex                   TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@mediaplex[2].txt
      00145738  Cookie/Mediaplex                   TrackingCookie      No        0         Yes            No           c:\users\eduardo\appdata\local\temp\low\cookies\eduardo@mediaplex[2].txt
      00145738  Cookie/Mediaplex                   TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@mediaplex[4].txt
      00167647  Cookie/Yadro                       TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@yadro[1].txt
      00167704  Cookie/Xiti                        TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@xiti[1].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][9].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][8].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][7].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][5].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][1].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][2].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][3].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][6].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][11].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][4].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\users\eduardo\appdata\local\temp\low\cookies\[email protected][2].txt
      00168061  Cookie/Apmebf                      TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@apmebf[5].txt
      00168061  Cookie/Apmebf                      TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@apmebf[2].txt
      00168061  Cookie/Apmebf                      TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@apmebf[1].txt
      00168061  Cookie/Apmebf                      TrackingCookie      No        0         Yes            No           c:\users\eduardo\appdata\roaming\microsoft\windows\cookies\eduardo@apmebf[1].txt
      00168061  Cookie/Apmebf                      TrackingCookie      No        0         Yes            No           c:\users\eduardo\appdata\local\temp\low\cookies\eduardo@apmebf[1].txt
      00168061  Cookie/Apmebf                      TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@apmebf[4].txt
      00168090  Cookie/Serving-sys                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@serving-sys[3].txt
      00168090  Cookie/Serving-sys                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@serving-sys[1].txt
      00168090  Cookie/Serving-sys                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@serving-sys[4].txt
      00168090  Cookie/Serving-sys                 TrackingCookie      No        0         Yes            No           c:\users\eduardo\appdata\roaming\microsoft\windows\cookies\eduardo@serving-sys[1].txt
      00168090  Cookie/Serving-sys                 TrackingCookie      No        0         Yes            No           c:\users\eduardo\appdata\local\temp\low\cookies\eduardo@serving-sys[1].txt
      00168093  Cookie/Serving-sys                 TrackingCookie      No        0         Yes            No           c:\users\eduardo\appdata\local\temp\low\cookies\[email protected][1].txt
      00168109  Cookie/Adtech                      TrackingCookie      No        0         Yes            No           c:\users\eduardo\appdata\roaming\microsoft\windows\cookies\eduardo@adtech[1].txt
      00168109  Cookie/Adtech                      TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@adtech[1].txt
      00169190  Cookie/Advertising                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@advertising[2].txt
      00170554  Cookie/Overture                    TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@overture[2].txt
      00170554  Cookie/Overture                    TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@overture[1].txt
      00170554  Cookie/Overture                    TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@overture[3].txt
      00170554  Cookie/Overture                    TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@overture[4].txt
      00170554  Cookie/Overture                    TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@overture[5].txt
      00172221  Cookie/Zedo                        TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@zedo[1].txt
      00191644  Cookie/adultfriendfinder           TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@adultfriendfinder[4].txt
      00191644  Cookie/adultfriendfinder           TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@adultfriendfinder[1].txt
      00191644  Cookie/adultfriendfinder           TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@adultfriendfinder[2].txt
      00191644  Cookie/adultfriendfinder           TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@adultfriendfinder[3].txt
      00535733  W32/LdPinch.AVK.worm               Virus/Worm          No        0         Yes            No           c:\windows\service.exe
      00624454  Trj/Genetic.gen                    Virus/Trojan        No        0         Yes            No           c:\windows\system32\wqyczuwd.dll
      00624454  Trj/Genetic.gen                    Virus/Trojan        Yes       0         Yes            No           c:\windows\system32\hgrykvag.dll
      00624454  Trj/Genetic.gen                    Virus/Trojan        No        0         Yes            No           c:\programdata\dhcpcores.dll
      00684797  ACAD/Bursted.F                     Virus/Trojan        No        0         Yes            No           c:\users\eduardo\appdata\roaming\autodesk\autocad 2010\r18.0\enu\support\acadapp.lsp
      00684797  ACAD/Bursted.F                     Virus/Trojan        No        0         Yes            No           c:\users\eduardo\desktop\taller vi\agencia automotriz\autocad\agencia automotriz\acad.lsp
      00684797  ACAD/Bursted.F                     Virus/Trojan        No        0         Yes            No           c:\users\eduardo\desktop\cd agencia automotriz\autocad agencia automotriz\acad.lsp
      03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\programdata\microsoft\windows defender\localcopy\{23173037-eefa-8406-abc2-5bd4769b7794}-system.ni.dll
      03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\programdata\microsoft\windows defender\localcopy\{94ec3494-8bbb-e783-dc06-8c49c5cd3554}-setup.exe
      03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\programdata\microsoft\windows defender\localcopy\{1780ea59-4744-ca9c-c69c-5a7506d8031c}-system.core.ni.dll
      03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\programdata\microsoft\windows defender\localcopy\{16795af9-f338-ccef-ed5f-ce40181151d7}-system.net.ni.dll
      03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\programdata\microsoft\windows defender\localcopy\{b71d66f6-0e49-feb4-80da-78c24ad234da}-system.windows.browser.ni.dll
      03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\programdata\microsoft\windows defender\localcopy\{1f00b591-737e-af8d-0efc-680fa3048670}-setup.exe
      03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\programdata\microsoft\windows defender\localcopy\{4c8eab5b-819c-8bc6-cc54-af2dd3c58827}-system.runtime.serialization.ni.dll
      03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\programdata\microsoft\windows defender\localcopy\{0aae66f6-ea48-5648-c542-ba8f986e19a8}-system.xml.ni.dll
      03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\programdata\microsoft\windows defender\localcopy\{07335744-d1aa-15bb-d74d-ef4fa7ee3b9c}-system.windows.ni.dll
      03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\programdata\microsoft\windows defender\localcopy\{dd397f7d-91dd-efb4-a9d2-29663063ddbf}-system.servicemodel.web.ni.dll
      03074964  Trj/CI.A                           Virus/Trojan        Yes       0         Yes            No           c:\windows\system32\drivers\kmhfoot.exe
      03074964  Trj/CI.A                           Virus/Trojan        No        0         Yes            No           c:\windows\system32\drivers\kmhfoot.exe105
      03074964  Trj/CI.A€´T�à6               Virus/Trojan        No        0         Yes            No           c:\windows\system32\drivers\kmhfoot.exe773
      03074964  Trj/CI.A€´T�à6               Virus/Trojan        No        0         Yes            No           c:\windows\temp\gpif\setup.exe
      03074964  Trj/CI.A€´T�à6               Virus/Trojan        No        0         Yes            No           c:\windows\temp\kobb\setup.exe
      03074964  Trj/CI.A                           Virus/Trojan        No        0         Yes            No           c:\windows\temp\wegl\setup.exe
      03074964  Trj/CI.A                           Virus/Trojan        No        0         Yes            No           c:\windows\temp\goo50bf.tmpt.exe
      03074964  Trj/CI.A                           Virus/Trojan        No        0         Yes            No           c:\windows\temp\tvty\setup.exe
      05646626  W32/Sality.AO                      Virus               No        1         No             No           e:\autoplay\docs\portables\novedades\wireless key view\wireles keyview.exe[wirelesskeyview.exe]
      05788070  Bck/Agent.DPD                      Virus/Trojan        No        1         Yes            No           c:\windows\system32\wininet.exe
      05788070  Bck/Agent.DPD                      Virus/Trojan        No        1         Yes            No           c:\windows\temp\isvi\setup.exe
      05948426  Generic Malware                    Virus/Trojan        No        0         Yes            No           c:\users\eduardo\appdata\roaming\firewall update.exe
      05948426  Generic Malware                    Virus/Trojan        No        0         Yes            No           c:\$recycle.bin\s-1-5-21-1855103910-1296302430-1705687183-1000\$r8nkw8s.exe
      07918681  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\windows\system32\svshost.dll
      08337664  Trj/Agent.ONL                      Virus/Trojan        No        0         Yes            No           c:\windows\system32\mitgmkpu.dll
      08337665  Trj/Agent.ONL                      Virus/Trojan        No        0         Yes            No           c:\windows\temp\wvxk\setup.exe
      08337693  W32/Vobfus.GEP                     Virus               No        1         Yes            No           c:\users\eduardo\l.exe
      08347119  Trj/Alureon.CN                     Virus/Trojan        No        0         Yes            No           c:\users\eduardo\appdata\local\temp\4818.tmp
      08350490  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\users\eduardo\k8nlbz6ce1.exe
      08351011  Generic Malware                    Virus/Trojan        No        0         Yes            No           c:\users\eduardo\j0gzwo455fy3.exe
      08359780  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\windows\temp\jrmg\setup.exe
      08359780  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\windows\temp\deto\setup.exe
      08359780  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\windows\temp\cgjf\setup.exe
      08359780  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\windows\temp\muym\setup.exe
      08362764  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\users\eduardo\o.exe
      08364949  Generic Malware                    Virus/Trojan        Yes       0         Yes            No           c:\windows\system32\mssrv32.exe
      08364965  Generic Trojan                     Virus/Trojan        Yes       0         Yes            No           c:\users\eduardo\appdata\roaming\microsoft\windows\start menu\programs\startup\mousedriver.exe
      08364965  Generic Trojan                     Virus/Trojan        Yes       0         Yes            No           c:\users\eduardo\appdata\roaming\updates\updates.exe
      08365020  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\windows\temp\payd\setup.exe
      08366150  Generic Malware                    Virus/Trojan        No        0         Yes            No           c:\users\eduardo\ruorx.exe
      08367009  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\users\eduardo\appdata\local\temp\7705.tmp
      08375180  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\windows\temp\ckat\setup.exe
      08375180  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\windows\temp\hpbc\setup.exe
      08391971  Generic Malware                    Virus/Trojan        No        0         Yes            No           c:\windows\system32\momaymly.dll
      08393830  Generic Malware                    Virus/Trojan        No        0         Yes            No           c:\windows\temp\gopq\setup.exe
      08393830  Generic Malware                    Virus/Trojan        No        0         Yes            No           c:\windows\temp\ifuk\setup.exe
      08413413  Generic Malware                    Virus/Trojan        No        0         Yes            No           c:\users\eduardo\nvt32.exe
      08419423  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\users\eduardo\appdata\local\temp\3ed5.tmp
      08421506  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\users\eduardo\appdata\local\temp\693d.tmp
      08423738  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\users\eduardo\svc32.exe
      08435608  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\windows\temp\fbqt\setup.exe
      08437805  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\users\eduardo\appdata\local\temp\f799.tmp
      08437805  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\users\eduardo\appdata\local\temp\539d.tmp
      08439904  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\users\eduardo\appdata\local\temp\5f7f.tmp
      08439904  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\users\eduardo\appdata\local\temp\eafc.tmp
      08439904  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\users\eduardo\appdata\local\temp\dd55.tmp
      08439904  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\users\eduardo\appdata\local\temp\37f2.tmp
      08442920  Adware/SecurityCenter              Adware              No        1         Yes            No           c:\users\eduardo\pvc32.exe
      08465133  Generic Malware                    Virus/Trojan        No        0         Yes            No           c:\windows\temp\owfq\setup.exe
      08467418  Generic Trojan¼Èrt?*         Virus/Trojan        No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\local\mekomdo.dll
      ;===================================================================================================================================================================================
      SUSPECTS
      Sent      Location
      ;===================================================================================================================================================================================
      No        c:\users\eduardo\zeeeceh.exe
      No        c:\windows\temp\jtmc\setup.exe
      ;===================================================================================================================================================================================
      VULNERABILITIES
      Id        Severity       Description
      ;===================================================================================================================================================================================
      ;===================================================================================================================================================================================

      Saludos y gracias!
      Última edición por Rollinguit fecha: 29/05/11 a las 02:13:00 Razón: Colocar reportes subidos a página hosting

    4. #4
      Ex-Colaborador Avatar de Rollinguit
      Registrado
      sep 2009
      Ubicación
      Argentina
      Mensajes
      6.229

      Re: Después de eliminar virus, no aparece Centro de Seguridad en la lista de services

      Realiza lo siguiente:
      Si utilizas Spybot Search & Destroy desactivas el Tea Timer

      1.-
      Descarga, instala y/o actualiza (fundamental):



      *IMPORTANTE* Conecta tus dispotivos USB al ordenador al realizar los análisis, marcando la unidad que le corresponda.
      2.-


      3.- (Modo seguro)

      Ejecuta:

      Ccleaner, usando sus opciones:
      • Limpiador: para borrar cookies, temporales de Internet y todos los archivos que este te muestre como obsoletos;
      • Registro: para limpiar todo el Registro de Windows haciendo Copia de Seguridad.
      UsbFix.exe, siguiendo los pasos de su Manual en su opción "Supresión". Al finalizar pega el reporte en tu próxima respuesta.

      4.- (Modo normal)
      Ejecuta TDSSKiller como detalla su manual. Al finalizar pegas el reporte en tu próxima respuesta.

      5.-
      Realizar un nuevo análisis completo con Panda ActiveScan 2.0, al finalizar *IMPORTANTE* presiona el simbolo Exportar a y en tu próxima respuesta pegas el reporte.


      En tu próxima respuesta pega los reportes:
      UsbFix
      TDSSKiller
      Panda ActiveScan 2.0
      Comentanos como te fue y como funciona el sistema ...

      Blog | Antivirus Online | Eliminar Malwares | Antivirus Gratis


      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    5. #5
      Usuario Avatar de cplatt
      Registrado
      may 2011
      Ubicación
      HERMOSILLO
      Mensajes
      9

      Re: Después de eliminar virus, no aparece Centro de Seguridad en la lista de services

      Bueno, aquí van los reportes!

      UbsFix:

      Código:
      ############################## | UsbFix 7.046 | [Supresión]
      
      Usuario: eduardo (Administrador) # EDUARDOQ [Hewlett-Packard Compaq Presario CQ40 Notebook PC]
      Actualizado el 23/05/2011 por TeamXscript
      Comenzó a 23:55:08 | 28/05/2011
      Sitio web: http://www.teamxscript.org
      Submit your sample: http://www.teamxscript.org/Upload.php
      Contacto: [email protected]
      
      CPU: Intel(R) Celeron(R) CPU 900 @ 2.20GHz
      Microsoft Windows 7 Home Basic  (6.1.7600 32-Bit) # 
      Internet Explorer 9.0.8112.16421
      
      Firewall de Windows: Discapacitado /!\
      RAM -> 1979 Mb 
      C:\ (%systemdrive%) -> Disco fijo # 220 Gb (161 Mb libre(s) - 73%) [] # NTFS
      D:\ -> Disco fijo # 13 Gb (2 Mb libre(s) - 16%) [RECOVERY] # NTFS
      E:\ -> CD-ROM
      F:\ -> Disco extraíble # 985 Mb (763 Mb libre(s) - 77%) [] # FAT
      
      ################## | Archivos # Carpetas infectadas |
      
      
      Suprimido ! C:\$RECYCLE.BIN\S-1-5-21-1855103910-1296302430-1705687183-1000
      Suprimido ! C:\$RECYCLE.BIN\S-1-5-21-1855103910-1296302430-1705687183-500
      Suprimido ! C:\$RECYCLE.BIN\S-1-5-21-378229692-1643794698-2874218803-500
      Suprimido ! D:\$RECYCLE.BIN\S-1-5-21-1855103910-1296302430-1705687183-1000
      Suprimido ! D:\$RECYCLE.BIN\S-1-5-21-1855103910-1296302430-1705687183-500
      Suprimido ! D:\$RECYCLE.BIN\S-1-5-21-794179250-992005997-2480673491-1000
      Suprimido ! D:\$RECYCLE.BIN\S-1-5-21-794179250-992005997-2480673491-500
      
      ################## | Registro |
      
      Suprimido ! HKLM\software\microsoft\windows nt\currentversion\winlogon|Taskman
      
      ################## | Mountpoints2 |
      
      Suprimido ! HKCU\.\.\.\.\Explorer\MountPoints2\{7992aef8-4f57-11e0-be54-002622b8ba5b}
      Suprimido ! HKCU\.\.\.\.\Explorer\MountPoints2\{d72d204e-6615-11e0-bf96-002622b8ba5b}
      
      ################## | Listing |
      
      [28/05/2011 - 23:55:34 | SHD ] 	C:\$Recycle.Bin
      [12/04/2011 - 09:13:32 | D ] 	C:\Agencia Autos
      [06/02/2011 - 12:14:38 | D ] 	C:\Archivos de programa
      [09/03/2011 - 10:01:57 | D ] 	C:\Autodesk
      [10/06/2009 - 14:42:20 | N | 24] 	C:\autoexec.bat
      [15/09/2009 - 23:06:12 | SHD ] 	C:\boot
      [13/07/2009 - 18:38:58 | RASH | 383562] 	C:\bootmgr
      [10/06/2009 - 14:42:20 | N | 10] 	C:\config.sys
      [13/07/2009 - 21:53:55 | SHD ] 	C:\Documents and Settings
      [28/05/2011 - 23:34:45 | ASH | 1556324352] 	C:\hiberfil.sys
      [05/02/2011 - 16:40:33 | D ] 	C:\HP
      [05/02/2011 - 16:25:01 | D ] 	C:\Intel
      [28/05/2011 - 20:37:48 | N | 0] 	C:\IO.SYS
      [28/05/2011 - 20:37:48 | N | 0] 	C:\MSDOS.SYS
      [06/02/2011 - 16:28:29 | RHD ] 	C:\MSOCache
      [28/05/2011 - 23:34:48 | ASH | 2075099136] 	C:\pagefile.sys
      [13/07/2009 - 19:37:05 | D ] 	C:\PerfLogs
      [28/05/2011 - 21:40:08 | D ] 	C:\Program Files
      [28/05/2011 - 21:40:08 | HD ] 	C:\ProgramData
      [06/02/2011 - 12:17:11 | SHD ] 	C:\Recovery
      [28/05/2011 - 19:49:22 | N | 359] 	C:\rkill.log
      [06/02/2011 - 12:20:25 | D ] 	C:\SwSetup
      [28/05/2011 - 21:25:15 | SHD ] 	C:\System Volume Information
      [06/02/2011 - 12:17:21 | D ] 	C:\SYSTEM.SAV
      [28/05/2011 - 23:50:26 | N | 68100] 	C:\TDSSKiller.2.5.3.0_28.05.2011_23.47.46_log.txt
      [28/05/2011 - 23:55:34 | D ] 	C:\UsbFix
      [28/05/2011 - 23:55:11 | A | 861] 	C:\UsbFix.txt
      [06/02/2011 - 12:14:49 | D ] 	C:\Users
      [28/05/2011 - 23:47:47 | D ] 	C:\Windows
      [28/05/2011 - 23:55:34 | SHD ] 	D:\$RECYCLE.BIN
      [25/05/2010 - 21:48:06 | SHD ] 	D:\boot
      [14/07/2009 - 11:39:00 | ASH | 383562] 	D:\bootmgr
      [28/05/2011 - 16:10:00 | N | 3288] 	D:\bootsqm.dat
      [06/02/2011 - 12:20:28 | N | 0] 	D:\BT_COMPAQ.FLG
      [08/12/2009 - 15:35:39 | N | 432] 	D:\CSP.DAT
      [08/12/2009 - 15:44:34 | N | 11403] 	D:\DeployRp.log
      [25/05/2010 - 21:48:06 | D ] 	D:\hp
      [29/01/2011 - 10:09:11 | N | 21] 	D:\HPSF_Rep.txt
      [25/05/2010 - 21:47:56 | N | 8] 	D:\HP_WSD.dat
      [06/02/2011 - 12:20:28 | N | 22] 	D:\language.ini
      [12/11/2010 - 22:02:38 | N | 3654604] 	D:\laura pausini - entre tu y mil mares.mp3
      [25/05/2010 - 21:48:06 | D ] 	D:\preload
      [06/02/2011 - 12:17:21 | SD ] 	D:\Recovery
      [08/12/2009 - 15:44:29 | N | 0] 	D:\RPCONFIG.LOG
      [06/02/2011 - 12:22:55 | SHD ] 	D:\System Volume Information
      [25/05/2010 - 21:48:06 | D ] 	D:\system.sav
      [23/05/2011 - 22:04:14 | N | 162] 	D:\~$abajo final duarte.docx
      [27/09/2007 - 18:57:42 | N | 501593] 	F:\INITRD.CGZ
      [27/09/2007 - 18:54:56 | N | 11603] 	F:\ISOLINUX.BIN
      [23/09/2007 - 12:50:24 | N | 180] 	F:\ISOLINUX.CFG
      [23/09/2007 - 17:00:34 | N | 1942] 	F:\README.TXT
      [27/09/2007 - 18:57:42 | N | 1453810] 	F:\SCSI.CGZ
      [08/04/2007 - 11:46:58 | N | 147] 	F:\SYSLINUX.CFG
      [06/04/2007 - 11:22:14 | N | 30208] 	F:\SYSLINUX.EXE
      [23/01/2008 - 22:00:36 | N | 1910] 	F:\Traduccion al español.txt
      [27/09/2007 - 17:41:14 | N | 931288] 	F:\VMLINUZ
      [27/09/2007 - 18:57:42 | N | 2048] 	F:\BOOT.CAT
      [27/09/2007 - 18:57:42 | N | 1456] 	F:\BOOT.MSG
      [28/05/2011 - 10:32:12 | N | 10092] 	F:\ldlinux.sys
      [10/05/2011 - 00:08:46 | D ] 	F:\virus killer
      [28/05/2011 - 19:16:46 | N | 24959] 	F:\ActiveScan.txt
      [28/05/2011 - 20:20:40 | N | 178612] 	F:\FixWin.zip
      [28/05/2011 - 20:36:42 | D ] 	F:\Spotmau.PowerSuite.2011.v6.0.0.0907.Golden.Edition.HAPPY.NEW.YEAR-CRD
      [28/05/2011 - 20:21:28 | D ] 	F:\FixWin
      [28/05/2011 - 19:49:24 | N | 359] 	F:\rkill.log
      [28/05/2011 - 22:27:34 | N | 9923] 	F:\mbam-log-2011-05-28 (19-43-03).txt
      [28/05/2011 - 22:30:06 | N | 4738] 	F:\reportes.zip
      [28/05/2011 - 23:50:16 | N | 67996] 	F:\TDSSKiller.2.5.3.0_28.05.2011_23.47.46_log11.txt
      [28/05/2011 - 23:54:52 | N | 1364] 	F:\UsbFix.txt
      
      ################## | Vaccin |
      
      C:\Autorun.inf -> Vacuna creada por UsbFix (TeamXscript)
      D:\Autorun.inf -> Vacuna creada por UsbFix (TeamXscript)
      F:\Autorun.inf -> Vacuna creada por UsbFix (TeamXscript)
      
      ################## | Upload |
      
      Por favor, envie el archivo: C:\UsbFix_Upload_Me_EDUARDOQ.zip
      http://www.teamxscript.org/Upload.php
      Gracias por su contribución.
      
      ################## | E.O.F |
      TDSSKiller:

      Aquí debo haceru una nota: corrí este programa por error en modo a prueba de fallos (y no en modo normal). Cuando me dí cuenta del hecho, TDSSKiller ya había detectado código malicioso. Entonces en lugar de darle skip o cure, le dí "x" para cerrar el programa y volver a ejecutarlo en modo normal... pero aunque le dí "x", el programa se cargó al virus y dijo que cuando reiniciara el equipo iba a estar todo listo... entonces agrego este reporte.

      Después volví a correr este programa en modo normal pero ya no encontró nada...

      Código:
      2011/05/28 23:47:46.0009 0632	TDSS rootkit removing tool 2.5.3.0 May 25 2011 07:09:24
      2011/05/28 23:47:46.0524 0632	================================================================================
      2011/05/28 23:47:46.0524 0632	SystemInfo:
      2011/05/28 23:47:46.0524 0632	
      2011/05/28 23:47:46.0524 0632	OS Version: 6.1.7600 ServicePack: 0.0
      2011/05/28 23:47:46.0524 0632	Product type: Workstation
      2011/05/28 23:47:46.0524 0632	ComputerName: EDUARDOQ
      2011/05/28 23:47:46.0524 0632	UserName: eduardo
      2011/05/28 23:47:46.0524 0632	Windows directory: C:\Windows
      2011/05/28 23:47:46.0524 0632	System windows directory: C:\Windows
      2011/05/28 23:47:46.0524 0632	Processor architecture: Intel x86
      2011/05/28 23:47:46.0524 0632	Number of processors: 1
      2011/05/28 23:47:46.0524 0632	Page size: 0x1000
      2011/05/28 23:47:46.0524 0632	Boot type: Safe boot with network
      2011/05/28 23:47:46.0524 0632	================================================================================
      2011/05/28 23:47:47.0943 0632	Initialize success
      2011/05/28 23:47:53.0528 0504	================================================================================
      2011/05/28 23:47:53.0528 0504	Scan started
      2011/05/28 23:47:53.0528 0504	Mode: Manual; 
      2011/05/28 23:47:53.0528 0504	================================================================================
      2011/05/28 23:47:54.0059 0504	1394ohci        (6d2aca41739bfe8cb86ee8e85f29697d) C:\Windows\system32\DRIVERS\1394ohci.sys
      2011/05/28 23:47:54.0183 0504	ACPI            (f0e07d144c8685b8774bc32fc8da4df0) C:\Windows\system32\DRIVERS\ACPI.sys
      2011/05/28 23:47:54.0308 0504	AcpiPmi         (98d81ca942d19f7d9153b095162ac013) C:\Windows\system32\DRIVERS\acpipmi.sys
      2011/05/28 23:47:54.0464 0504	adp94xx         (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys
      2011/05/28 23:47:54.0589 0504	adpahci         (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys
      2011/05/28 23:47:54.0729 0504	adpu320         (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys
      2011/05/28 23:47:54.0917 0504	AFD             (ddc040fdb01ef1712a6b13e52afb104c) C:\Windows\system32\drivers\afd.sys
      2011/05/28 23:47:55.0073 0504	AgereSoftModem  (07758c2196a62f207f77556311e7459a) C:\Windows\system32\DRIVERS\AGRSM.sys
      2011/05/28 23:47:55.0197 0504	agp440          (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\DRIVERS\agp440.sys
      2011/05/28 23:47:55.0322 0504	aic78xx         (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys
      2011/05/28 23:47:55.0463 0504	aliide          (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\DRIVERS\aliide.sys
      2011/05/28 23:47:55.0572 0504	amdagp          (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\DRIVERS\amdagp.sys
      2011/05/28 23:47:55.0681 0504	amdide          (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\DRIVERS\amdide.sys
      2011/05/28 23:47:55.0821 0504	AmdK8           (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys
      2011/05/28 23:47:55.0946 0504	AmdPPM          (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys
      2011/05/28 23:47:56.0071 0504	amdsata         (19ce906b4cdc11fc4fef5745f33a63b6) C:\Windows\system32\drivers\amdsata.sys
      2011/05/28 23:47:56.0196 0504	amdsbs          (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys
      2011/05/28 23:47:56.0289 0504	amdxata         (869e67d66be326a5a9159fba8746fa70) C:\Windows\system32\drivers\amdxata.sys
      2011/05/28 23:47:56.0430 0504	ApfiltrService  (7df70a08b56cbbc874744d9b0b396272) C:\Windows\system32\DRIVERS\Apfiltr.sys
      2011/05/28 23:47:56.0539 0504	AppID           (feb834c02ce1e84b6a38f953ca067706) C:\Windows\system32\drivers\appid.sys
      2011/05/28 23:47:56.0695 0504	arc             (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys
      2011/05/28 23:47:56.0804 0504	arcsas          (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys
      2011/05/28 23:47:56.0929 0504	AsyncMac        (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys
      2011/05/28 23:47:57.0054 0504	atapi           (338c86357871c167a96ab976519bf59e) C:\Windows\system32\DRIVERS\atapi.sys
      2011/05/28 23:47:57.0194 0504	b06bdrv         (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys
      2011/05/28 23:47:57.0335 0504	b57nd60x        (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys
      2011/05/28 23:47:57.0553 0504	BCM43XX         (b9e94d37fc08525d893b632a0ca2e18c) C:\Windows\system32\DRIVERS\bcmwl6.sys
      2011/05/28 23:47:57.0849 0504	Beep            (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys
      2011/05/28 23:47:58.0005 0504	blbdrive        (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys
      2011/05/28 23:47:58.0130 0504	bowser          (9a5c671b7fbae4865149bb11f59b91b2) C:\Windows\system32\DRIVERS\bowser.sys
      2011/05/28 23:47:58.0239 0504	BrFiltLo        (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys
      2011/05/28 23:47:58.0364 0504	BrFiltUp        (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys
      2011/05/28 23:47:58.0473 0504	Brserid         (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys
      2011/05/28 23:47:58.0598 0504	BrSerWdm        (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys
      2011/05/28 23:47:58.0707 0504	BrUsbMdm        (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys
      2011/05/28 23:47:58.0832 0504	BrUsbSer        (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys
      2011/05/28 23:47:58.0957 0504	BthEnum         (2865a5c8e98c70c605f417908cebb3a4) C:\Windows\system32\DRIVERS\BthEnum.sys
      2011/05/28 23:47:59.0066 0504	BTHMODEM        (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys
      2011/05/28 23:47:59.0191 0504	BthPan          (ad1872e5829e8a2c3b5b4b641c3eab0e) C:\Windows\system32\DRIVERS\bthpan.sys
      2011/05/28 23:47:59.0331 0504	BTHPORT         (4a34888e13224678dd062466afec4240) C:\Windows\system32\Drivers\BTHport.sys
      2011/05/28 23:47:59.0456 0504	BTHUSB          (fa04c63916fa221dbb91fce153d07a55) C:\Windows\system32\Drivers\BTHUSB.sys
      2011/05/28 23:47:59.0612 0504	cdfs            (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys
      2011/05/28 23:47:59.0721 0504	cdrom           (ba6e70aa0e6091bc39de29477d866a77) C:\Windows\system32\DRIVERS\cdrom.sys
      2011/05/28 23:47:59.0862 0504	circlass        (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys
      2011/05/28 23:47:59.0971 0504	CLFS            (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys
      2011/05/28 23:48:00.0143 0504	CmBatt          (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys
      2011/05/28 23:48:00.0252 0504	cmdide          (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\DRIVERS\cmdide.sys
      2011/05/28 23:48:00.0392 0504	CNG             (1b675691ed940766149c93e8f4488d68) C:\Windows\system32\Drivers\cng.sys
      2011/05/28 23:48:00.0533 0504	Compbatt        (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys
      2011/05/28 23:48:00.0657 0504	CompositeBus    (f1724ba27e97d627f808fb0ba77a28a6) C:\Windows\system32\DRIVERS\CompositeBus.sys
      2011/05/28 23:48:00.0798 0504	crcdisk         (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys
      2011/05/28 23:48:00.0969 0504	dc3d            (b6672f62f75fb952d7ae7cb4e80011a9) C:\Windows\system32\DRIVERS\dc3d.sys
      2011/05/28 23:48:01.0110 0504	DfsC            (8e09e52ee2e3ceb199ef3dd99cf9e3fb) C:\Windows\system32\Drivers\dfsc.sys
      2011/05/28 23:48:01.0235 0504	discache        (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys
      2011/05/28 23:48:01.0359 0504	Disk            (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys
      2011/05/28 23:48:01.0500 0504	drmkaud         (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys
      2011/05/28 23:48:01.0625 0504	DXGKrnl         (1679a4669326cb1a67cc95658d273234) C:\Windows\System32\drivers\dxgkrnl.sys
      2011/05/28 23:48:01.0827 0504	ebdrv           (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys
      2011/05/28 23:48:02.0061 0504	elxstor         (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys
      2011/05/28 23:48:02.0186 0504	ErrDev          (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\DRIVERS\errdev.sys
      2011/05/28 23:48:02.0327 0504	exfat           (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys
      2011/05/28 23:48:02.0451 0504	fastfat         (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys
      2011/05/28 23:48:02.0576 0504	fdc             (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys
      2011/05/28 23:48:02.0701 0504	FileInfo        (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys
      2011/05/28 23:48:02.0810 0504	Filetrace       (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys
      2011/05/28 23:48:02.0951 0504	flpydisk        (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys
      2011/05/28 23:48:03.0091 0504	FltMgr          (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys
      2011/05/28 23:48:03.0216 0504	FsDepends       (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys
      2011/05/28 23:48:03.0341 0504	Fs_Rec          (a574b4360e438977038aae4bf60d79a2) C:\Windows\system32\drivers\Fs_Rec.sys
      2011/05/28 23:48:03.0450 0504	fvevol          (dafbd9fe39197495aed6d51f3b85b5d2) C:\Windows\system32\DRIVERS\fvevol.sys
      2011/05/28 23:48:03.0575 0504	gagp30kx        (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys
      2011/05/28 23:48:03.0762 0504	hcw85cir        (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys
      2011/05/28 23:48:03.0902 0504	HdAudAddService (3530cad25deba7dc7de8bb51632cbc5f) C:\Windows\system32\drivers\HdAudio.sys
      2011/05/28 23:48:04.0027 0504	HDAudBus        (717a2207fd6f13ad3e664c7d5a43c7bf) C:\Windows\system32\DRIVERS\HDAudBus.sys
      2011/05/28 23:48:04.0136 0504	HidBatt         (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys
      2011/05/28 23:48:04.0261 0504	HidBth          (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys
      2011/05/28 23:48:04.0386 0504	HidIr           (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys
      2011/05/28 23:48:04.0526 0504	HidUsb          (25072fb35ac90b25f9e4e3bacf774102) C:\Windows\system32\DRIVERS\hidusb.sys
      2011/05/28 23:48:04.0635 0504	HpqKbFiltr      (1210960ff8928950d2a786895b0c424a) C:\Windows\system32\DRIVERS\HpqKbFiltr.sys
      2011/05/28 23:48:04.0776 0504	HpSAMD          (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\DRIVERS\HpSAMD.sys
      2011/05/28 23:48:04.0901 0504	HTTP            (c531c7fd9e8b62021112787c4e2c5a5a) C:\Windows\system32\drivers\HTTP.sys
      2011/05/28 23:48:05.0025 0504	hwpolicy        (8305f33cde89ad6c7a0763ed0b5a8d42) C:\Windows\system32\drivers\hwpolicy.sys
      2011/05/28 23:48:05.0150 0504	i8042prt        (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\DRIVERS\i8042prt.sys
      2011/05/28 23:48:05.0291 0504	iaStorV         (71f1a494fedf4b33c02c4a6a28d6d9e9) C:\Windows\system32\drivers\iaStorV.sys
      2011/05/28 23:48:05.0571 0504	igfx            (315aaaa2bc9bc778adc0454b3ca8dcce) C:\Windows\system32\DRIVERS\igdkmd32.sys
      2011/05/28 23:48:05.0790 0504	iirsp           (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys
      2011/05/28 23:48:05.0946 0504	IntcHdmiAddService (264632ade8127b7baa2190cf6fad435b) C:\Windows\system32\drivers\IntcHdmi.sys
      2011/05/28 23:48:06.0024 0504	intelide        (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\DRIVERS\intelide.sys
      2011/05/28 23:48:06.0149 0504	intelppm        (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys
      2011/05/28 23:48:06.0258 0504	IpFilterDriver  (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys
      2011/05/28 23:48:06.0383 0504	IPMIDRV         (e4454b6c37d7ffd5649611f6496308a7) C:\Windows\system32\DRIVERS\IPMIDrv.sys
      2011/05/28 23:48:06.0492 0504	IPNAT           (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys
      2011/05/28 23:48:06.0617 0504	IRENUM          (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys
      2011/05/28 23:48:06.0726 0504	isapnp          (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\DRIVERS\isapnp.sys
      2011/05/28 23:48:06.0944 0504	iScsiPrt        (ed46c223ae46c6866ab77cdc41c404b7) C:\Windows\system32\DRIVERS\msiscsi.sys
      2011/05/28 23:48:07.0085 0504	JMCR            (65da9fa42c0972fe5b9b7d6047f06f4c) C:\Windows\system32\DRIVERS\jmcr.sys
      2011/05/28 23:48:07.0225 0504	kbdclass        (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\DRIVERS\kbdclass.sys
      2011/05/28 23:48:07.0350 0504	kbdhid          (3d9f0ebf350edcfd6498057301455964) C:\Windows\system32\DRIVERS\kbdhid.sys
      2011/05/28 23:48:07.0475 0504	KSecDD          (e36a061ec11b373826905b21be10948f) C:\Windows\system32\Drivers\ksecdd.sys
      2011/05/28 23:48:07.0615 0504	KSecPkg         (365c6154bbbc5377173f1ca7bfb6cc59) C:\Windows\system32\Drivers\ksecpkg.sys
      2011/05/28 23:48:07.0802 0504	lltdio          (f7611ec07349979da9b0ae1f18ccc7a6) C:\Windows\system32\DRIVERS\lltdio.sys
      2011/05/28 23:48:07.0958 0504	LSI_FC          (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys
      2011/05/28 23:48:08.0067 0504	LSI_SAS         (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys
      2011/05/28 23:48:08.0208 0504	LSI_SAS2        (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys
      2011/05/28 23:48:08.0301 0504	LSI_SCSI        (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys
      2011/05/28 23:48:08.0442 0504	luafv           (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys
      2011/05/28 23:48:08.0551 0504	megasas         (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys
      2011/05/28 23:48:08.0676 0504	MegaSR          (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys
      2011/05/28 23:48:08.0847 0504	Modem           (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys
      2011/05/28 23:48:08.0972 0504	monitor         (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys
      2011/05/28 23:48:09.0081 0504	mouclass        (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\DRIVERS\mouclass.sys
      2011/05/28 23:48:09.0222 0504	mouhid          (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys
      2011/05/28 23:48:09.0331 0504	mountmgr        (921c18727c5920d6c0300736646931c2) C:\Windows\system32\drivers\mountmgr.sys
      2011/05/28 23:48:09.0440 0504	mpio            (2af5997438c55fb79d33d015c30e1974) C:\Windows\system32\DRIVERS\mpio.sys
      2011/05/28 23:48:09.0565 0504	mpsdrv          (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys
      2011/05/28 23:48:09.0674 0504	MRxDAV          (b1be47008d20e43da3adc37c24cdb89d) C:\Windows\system32\drivers\mrxdav.sys
      2011/05/28 23:48:09.0783 0504	mrxsmb          (b4c76ef46322a9711c7b0f4e21ef6ea5) C:\Windows\system32\DRIVERS\mrxsmb.sys
      2011/05/28 23:48:09.0924 0504	mrxsmb10        (e593d45024a3fdd11e93cc4a6ca91101) C:\Windows\system32\DRIVERS\mrxsmb10.sys
      2011/05/28 23:48:10.0049 0504	mrxsmb20        (a9f86c82c9cc3b679cc3957e1183a30f) C:\Windows\system32\DRIVERS\mrxsmb20.sys
      2011/05/28 23:48:10.0158 0504	msahci          (4326d168944123f38dd3b2d9c37a0b12) C:\Windows\system32\DRIVERS\msahci.sys
      2011/05/28 23:48:10.0267 0504	msdsm           (455029c7174a2dbb03dba8a0d8bddd9a) C:\Windows\system32\DRIVERS\msdsm.sys
      2011/05/28 23:48:10.0407 0504	Msfs            (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys
      2011/05/28 23:48:10.0517 0504	mshidkmdf       (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys
      2011/05/28 23:48:10.0626 0504	msisadrv        (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\DRIVERS\msisadrv.sys
      2011/05/28 23:48:10.0782 0504	MSKSSRV         (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys
      2011/05/28 23:48:10.0907 0504	MSPCLOCK        (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys
      2011/05/28 23:48:11.0031 0504	MSPQM           (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys
      2011/05/28 23:48:11.0141 0504	MsRPC           (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys
      2011/05/28 23:48:11.0281 0504	mssmbios        (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\DRIVERS\mssmbios.sys
      2011/05/28 23:48:11.0390 0504	MSTEE           (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys
      2011/05/28 23:48:11.0499 0504	MTConfig        (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys
      2011/05/28 23:48:11.0624 0504	Mup             (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys
      2011/05/28 23:48:11.0780 0504	NativeWifiP     (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys
      2011/05/28 23:48:11.0905 0504	NDIS            (23759d175a0a9baaf04d05047bc135a8) C:\Windows\system32\drivers\ndis.sys
      2011/05/28 23:48:12.0030 0504	NdisCap         (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys
      2011/05/28 23:48:12.0155 0504	NdisTapi        (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys
      2011/05/28 23:48:12.0279 0504	Ndisuio         (b30ae7f2b6d7e343b0df32e6c08fce75) C:\Windows\system32\DRIVERS\ndisuio.sys
      2011/05/28 23:48:12.0389 0504	NdisWan         (267c415eadcbe53c9ca873dee39cf3a4) C:\Windows\system32\DRIVERS\ndiswan.sys
      2011/05/28 23:48:12.0498 0504	NDProxy         (af7e7c63dcef3f8772726f86039d6eb4) C:\Windows\system32\drivers\NDProxy.sys
      2011/05/28 23:48:12.0623 0504	NetBIOS         (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys
      2011/05/28 23:48:12.0732 0504	NetBT           (dd52a733bf4ca5af84562a5e2f963b91) C:\Windows\system32\DRIVERS\netbt.sys
      2011/05/28 23:48:12.0919 0504	netr73          (76b1157ef850830c5ece61d3e591ca8b) C:\Windows\system32\DRIVERS\netr73.sys
      2011/05/28 23:48:13.0137 0504	netw5v32        (58218ec6b61b1169cf54aab0d00f5fe2) C:\Windows\system32\DRIVERS\netw5v32.sys
      2011/05/28 23:48:13.0387 0504	nfrd960         (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys
      2011/05/28 23:48:13.0559 0504	Npfs            (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys
      2011/05/28 23:48:13.0683 0504	nsiproxy        (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys
      2011/05/28 23:48:13.0839 0504	Ntfs            (187002ce05693c306f43c873f821381f) C:\Windows\system32\drivers\Ntfs.sys
      2011/05/28 23:48:14.0011 0504	NuidFltr        (ef2b9a14ec5dd74ade3417faf1b45e16) C:\Windows\system32\DRIVERS\NuidFltr.sys
      2011/05/28 23:48:14.0120 0504	Null            (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys
      2011/05/28 23:48:14.0261 0504	NVENETFD        (b5e37e31c053bc9950455a257526514b) C:\Windows\system32\DRIVERS\nvm62x32.sys
      2011/05/28 23:48:14.0370 0504	nvraid          (f1b0bed906f97e16f6d0c3629d2f21c6) C:\Windows\system32\drivers\nvraid.sys
      2011/05/28 23:48:14.0479 0504	nvstor          (4520b63899e867f354ee012d34e11536) C:\Windows\system32\drivers\nvstor.sys
      2011/05/28 23:48:14.0838 0504	nv_agp          (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\DRIVERS\nv_agp.sys
      2011/05/28 23:48:14.0994 0504	ohci1394        (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\DRIVERS\ohci1394.sys
      2011/05/28 23:48:15.0290 0504	Parport         (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys
      2011/05/28 23:48:15.0399 0504	partmgr         (ff4218952b51de44fe910953a3e686b9) C:\Windows\system32\drivers\partmgr.sys
      2011/05/28 23:48:15.0524 0504	Parvdm          (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys
      2011/05/28 23:48:15.0649 0504	pci             (c858cb77c577780ecc456a892e7e7d0f) C:\Windows\system32\DRIVERS\pci.sys
      2011/05/28 23:48:15.0805 0504	pciide          (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\DRIVERS\pciide.sys
      2011/05/28 23:48:15.0914 0504	pcmcia          (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys
      2011/05/28 23:48:16.0086 0504	pcw             (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys
      2011/05/28 23:48:16.0460 0504	PEAUTH          (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys
      2011/05/28 23:48:16.0757 0504	Point32         (60a044879c4fa76314494f5fddc43b93) C:\Windows\system32\DRIVERS\point32.sys
      2011/05/28 23:48:17.0022 0504	PptpMiniport    (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys
      2011/05/28 23:48:17.0147 0504	Processor       (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys
      2011/05/28 23:48:17.0303 0504	Psched          (6270ccae2a86de6d146529fe55b3246a) C:\Windows\system32\DRIVERS\pacer.sys
      2011/05/28 23:48:17.0505 0504	PSINAflt        (761137e2f080d7f68bfcafde85714ab6) C:\Windows\system32\DRIVERS\PSINAflt.sys
      2011/05/28 23:48:17.0677 0504	PSINFile        (609080ae780c41a96561ccdb2ffa069f) C:\Windows\system32\DRIVERS\PSINFile.sys
      2011/05/28 23:48:17.0833 0504	PSINKNC         (112bda7b6143606873ef6e88ec5d770d) C:\Windows\system32\DRIVERS\psinknc.sys
      2011/05/28 23:48:18.0036 0504	PSINProc        (2c0fa15decc0d0002db79e976f33aa2a) C:\Windows\system32\DRIVERS\PSINProc.sys
      2011/05/28 23:48:18.0192 0504	PSINProt        (95d9e03ba28bf3997b9ff6e67a7010d4) C:\Windows\system32\DRIVERS\PSINProt.sys
      2011/05/28 23:48:18.0379 0504	PxHelp20        (b572ed0c3e6165643fa116af20425a54) C:\Windows\system32\DRIVERS\PxHelp20.sys
      2011/05/28 23:48:18.0535 0504	ql2300          (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys
      2011/05/28 23:48:18.0707 0504	ql40xx          (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys
      2011/05/28 23:48:18.0878 0504	QWAVEdrv        (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys
      2011/05/28 23:48:19.0034 0504	RasAcd          (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys
      2011/05/28 23:48:19.0221 0504	RasAgileVpn     (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys
      2011/05/28 23:48:19.0362 0504	Rasl2tp         (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys
      2011/05/28 23:48:19.0533 0504	RasPppoe        (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys
      2011/05/28 23:48:19.0705 0504	RasSstp         (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys
      2011/05/28 23:48:19.0845 0504	rdbss           (835d7e81bf517a3b72384bdcc85e1ce6) C:\Windows\system32\DRIVERS\rdbss.sys
      2011/05/28 23:48:19.0955 0504	rdpbus          (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys
      2011/05/28 23:48:20.0079 0504	RDPCDD          (1e016846895b15a99f9a176a05029075) C:\Windows\system32\DRIVERS\RDPCDD.sys
      2011/05/28 23:48:20.0220 0504	RDPENCDD        (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys
      2011/05/28 23:48:20.0345 0504	RDPREFMP        (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys
      2011/05/28 23:48:20.0469 0504	RDPWD           (801371ba9782282892d00aadb08ee367) C:\Windows\system32\drivers\RDPWD.sys
      2011/05/28 23:48:20.0594 0504	rdyboost        (4ea225bf1cf05e158853f30a99ca29a7) C:\Windows\system32\drivers\rdyboost.sys
      2011/05/28 23:48:20.0735 0504	RFCOMM          (cb928d9e6daf51879dd6ba8d02f01321) C:\Windows\system32\DRIVERS\rfcomm.sys
      2011/05/28 23:48:20.0891 0504	rspndr          (032b0d36ad92b582d869879f5af5b928) C:\Windows\system32\DRIVERS\rspndr.sys
      2011/05/28 23:48:21.0015 0504	RTL8167         (26a9d6227d12b9d9da5a81bb9b55d810) C:\Windows\system32\DRIVERS\Rt86win7.sys
      2011/05/28 23:48:21.0343 0504	sbp2port        (34ee0c44b724e3e4ce2eff29126de5b5) C:\Windows\system32\DRIVERS\sbp2port.sys
      2011/05/28 23:48:21.0515 0504	scfilter        (a95c54b2ac3cc9c73fcdf9e51a1d6b51) C:\Windows\system32\DRIVERS\scfilter.sys
      2011/05/28 23:48:21.0671 0504	sdbus           (7b48cff3a475fe849dea65ec4d35c425) C:\Windows\system32\DRIVERS\sdbus.sys
      2011/05/28 23:48:21.0827 0504	secdrv          (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
      2011/05/28 23:48:21.0983 0504	Serenum         (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys
      2011/05/28 23:48:22.0107 0504	Serial          (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\Windows\system32\DRIVERS\serial.sys
      2011/05/28 23:48:22.0232 0504	sermouse        (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys
      2011/05/28 23:48:22.0388 0504	sffdisk         (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\DRIVERS\sffdisk.sys
      2011/05/28 23:48:22.0544 0504	sffp_mmc        (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\DRIVERS\sffp_mmc.sys
      2011/05/28 23:48:22.0653 0504	sffp_sd         (4f1e5b0fe7c8050668dbfade8999aefb) C:\Windows\system32\DRIVERS\sffp_sd.sys
      2011/05/28 23:48:22.0856 0504	sfloppy         (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys
      2011/05/28 23:48:23.0090 0504	sisagp          (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\DRIVERS\sisagp.sys
      2011/05/28 23:48:23.0387 0504	SiSRaid2        (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys
      2011/05/28 23:48:23.0589 0504	SiSRaid4        (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys
      2011/05/28 23:48:23.0870 0504	Smb             (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys
      2011/05/28 23:48:24.0089 0504	spldr           (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys
      2011/05/28 23:48:24.0354 0504	srv             (4a9b0f215de2519e2363f91df25c1e97) C:\Windows\system32\DRIVERS\srv.sys
      2011/05/28 23:48:24.0619 0504	srv2            (14c44875518ae1c982e54ea8c5f7fe28) C:\Windows\system32\DRIVERS\srv2.sys
      2011/05/28 23:48:24.0884 0504	SrvHsfHDA       (e00fdfaff025e94f9821153750c35a6d) C:\Windows\system32\DRIVERS\VSTAZL3.SYS
      2011/05/28 23:48:25.0196 0504	SrvHsfV92       (ceb4e3b6890e1e42dca6694d9e59e1a0) C:\Windows\system32\DRIVERS\VSTDPV3.SYS
      2011/05/28 23:48:25.0446 0504	SrvHsfWinac     (bc0c7ea89194c299f051c24119000e17) C:\Windows\system32\DRIVERS\VSTCNXT3.SYS
      2011/05/28 23:48:25.0711 0504	srvnet          (07a14223b0a50e76ade003fdf95d4fec) C:\Windows\system32\DRIVERS\srvnet.sys
      2011/05/28 23:48:25.0945 0504	stexstor        (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys
      2011/05/28 23:48:26.0226 0504	STHDA           (e69a606872650b46de54ec15dcc93529) C:\Windows\system32\DRIVERS\stwrt.sys
      2011/05/28 23:48:26.0647 0504	swenum          (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\DRIVERS\swenum.sys
      2011/05/28 23:48:26.0865 0504	Tcpip           (bb7f39c31c4a4417fd318e7cd184e225) C:\Windows\system32\drivers\tcpip.sys
      2011/05/28 23:48:27.0037 0504	TCPIP6          (bb7f39c31c4a4417fd318e7cd184e225) C:\Windows\system32\DRIVERS\tcpip.sys
      2011/05/28 23:48:27.0162 0504	tcpipreg        (e64444523add154f86567c469bc0b17f) C:\Windows\system32\drivers\tcpipreg.sys
      2011/05/28 23:48:27.0302 0504	TDPIPE          (1875c1490d99e70e449e3afae9fcbadf) C:\Windows\system32\drivers\tdpipe.sys
      2011/05/28 23:48:27.0411 0504	TDTCP           (7551e91ea999ee9a8e9c331d5a9c31f3) C:\Windows\system32\drivers\tdtcp.sys
      2011/05/28 23:48:27.0521 0504	tdx             (cb39e896a2a83702d1737bfd402b3542) C:\Windows\system32\DRIVERS\tdx.sys
      2011/05/28 23:48:27.0645 0504	TermDD          (c36f41ee20e6999dbf4b0425963268a5) C:\Windows\system32\DRIVERS\termdd.sys
      2011/05/28 23:48:27.0817 0504	tssecsrv        (98ae6fa07d12cb4ec5cf4a9bfa5f4242) C:\Windows\system32\DRIVERS\tssecsrv.sys
      2011/05/28 23:48:27.0973 0504	tunnel          (3e461d890a97f9d4c168f5fda36e1d00) C:\Windows\system32\DRIVERS\tunnel.sys
      2011/05/28 23:48:28.0098 0504	uagp35          (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys
      2011/05/28 23:48:28.0223 0504	udfs            (09cc3e16f8e5ee7168e01cf8fcbe061a) C:\Windows\system32\DRIVERS\udfs.sys
      2011/05/28 23:48:28.0379 0504	uliagpkx        (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\DRIVERS\uliagpkx.sys
      2011/05/28 23:48:28.0503 0504	umbus           (049b3a50b3d646baeeee9eec9b0668dc) C:\Windows\system32\DRIVERS\umbus.sys
      2011/05/28 23:48:28.0628 0504	UmPass          (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys
      2011/05/28 23:48:28.0753 0504	usbccgp         (8455c4ed038efd09e99327f9d2d48ffa) C:\Windows\system32\DRIVERS\usbccgp.sys
      2011/05/28 23:48:28.0878 0504	usbcir          (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\DRIVERS\usbcir.sys
      2011/05/28 23:48:28.0987 0504	usbehci         (1c333bfd60f2fed2c7ad5daf533cb742) C:\Windows\system32\DRIVERS\usbehci.sys
      2011/05/28 23:48:29.0112 0504	usbhub          (ee6ef93ccfa94fae8c6ab298273d8ae2) C:\Windows\system32\DRIVERS\usbhub.sys
      2011/05/28 23:48:29.0221 0504	usbohci         (a6fb7957ea7afb1165991e54ce934b74) C:\Windows\system32\DRIVERS\usbohci.sys
      2011/05/28 23:48:29.0346 0504	usbprint        (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys
      2011/05/28 23:48:29.0471 0504	USBSTOR         (1c4287739a93594e57e2a9e6a3ed7353) C:\Windows\system32\DRIVERS\USBSTOR.SYS
      2011/05/28 23:48:29.0595 0504	usbuhci         (78780c3ebce17405b1ccd07a3a8a7d72) C:\Windows\system32\DRIVERS\usbuhci.sys
      2011/05/28 23:48:29.0720 0504	usbvideo        (b5f6a992d996282b7fae7048e50af83a) C:\Windows\System32\Drivers\usbvideo.sys
      2011/05/28 23:48:29.0845 0504	vdrvroot        (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\DRIVERS\vdrvroot.sys
      2011/05/28 23:48:29.0970 0504	vga             (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys
      2011/05/28 23:48:30.0079 0504	VgaSave         (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys
      2011/05/28 23:48:30.0219 0504	vhdmp           (3be6e1f3a4f1afec8cee0d7883f93583) C:\Windows\system32\DRIVERS\vhdmp.sys
      2011/05/28 23:48:30.0344 0504	viaagp          (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\DRIVERS\viaagp.sys
      2011/05/28 23:48:30.0469 0504	ViaC7           (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys
      2011/05/28 23:48:30.0594 0504	viaide          (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\DRIVERS\viaide.sys
      2011/05/28 23:48:30.0687 0504	volmgr          (384e5a2aa49934295171e499f86ba6f3) C:\Windows\system32\DRIVERS\volmgr.sys
      2011/05/28 23:48:30.0812 0504	volmgrx         (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys
      2011/05/28 23:48:30.0921 0504	volsnap         (58df9d2481a56edde167e51b334d44fd) C:\Windows\system32\DRIVERS\volsnap.sys
      2011/05/28 23:48:31.0046 0504	vsmraid         (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys
      2011/05/28 23:48:31.0171 0504	vwifibus        (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\system32\DRIVERS\vwifibus.sys
      2011/05/28 23:48:31.0311 0504	vwififlt        (7090d3436eeb4e7da3373090a23448f7) C:\Windows\system32\DRIVERS\vwififlt.sys
      2011/05/28 23:48:31.0452 0504	WacomPen        (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys
      2011/05/28 23:48:31.0577 0504	WANARP          (692a712062146e96d28ba0b7d75de31b) C:\Windows\system32\DRIVERS\wanarp.sys
      2011/05/28 23:48:31.0608 0504	Wanarpv6        (692a712062146e96d28ba0b7d75de31b) C:\Windows\system32\DRIVERS\wanarp.sys
      2011/05/28 23:48:31.0733 0504	Wd              (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys
      2011/05/28 23:48:31.0857 0504	Wdf01000        (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys
      2011/05/28 23:48:32.0060 0504	WfpLwf          (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys
      2011/05/28 23:48:32.0169 0504	WIMMount        (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys
      2011/05/28 23:48:32.0372 0504	WmiAcpi         (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\DRIVERS\wmiacpi.sys
      2011/05/28 23:48:32.0528 0504	ws2ifsl         (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys
      2011/05/28 23:48:32.0669 0504	WudfPf          (6f9b6c0c93232cff47d0f72d6db1d21e) C:\Windows\system32\drivers\WudfPf.sys
      2011/05/28 23:48:32.0762 0504	MBR (0x1B8)     (8207763beda3258263acda732c1cf617) \Device\Harddisk0\DR0
      2011/05/28 23:48:32.0778 0504	\Device\Harddisk0\DR0 - detected Rootkit.Win32.TDSS.tdl4 (0)
      2011/05/28 23:48:32.0793 0504	MBR (0x1B8)     (9ea3c774c540dd0b7fc5d1a94ca173f1) \Device\Harddisk1\DR1
      2011/05/28 23:48:32.0825 0504	================================================================================
      2011/05/28 23:48:32.0825 0504	Scan finished
      2011/05/28 23:48:32.0825 0504	================================================================================
      2011/05/28 23:48:32.0840 1196	Detected object count: 1
      2011/05/28 23:48:32.0840 1196	Actual detected object count: 1
      2011/05/28 23:49:34.0445 1196	\Device\Harddisk0\DR0 (Rootkit.Win32.TDSS.tdl4) - will be cured after reboot
      2011/05/28 23:49:34.0445 1196	\Device\Harddisk0\DR0 - ok
      2011/05/28 23:49:34.0445 1196	Rootkit.Win32.TDSS.tdl4(\Device\Harddisk0\DR0) - User select action: Cure
      Panda ActiveScanner 2:

      Código:
      ;***********************************************************************************************************************************************************************************
      ANALYSIS: 2011-05-29 10:47:48
      PROTECTIONS: 2
      MALWARE: 20
      SUSPECTS: 0
      ;***********************************************************************************************************************************************************************************
      PROTECTIONS
      Description                                  Version                       Active    Updated
      ;===================================================================================================================================================================================
      Windows Defender                                                           No        Yes
      Spybot - Search and Destroy                  1.0.0.6                       No        Yes
      ;===================================================================================================================================================================================
      MALWARE
      Id        Description                        Type                Active    Severity  Disinfectable  Disinfected Location
      ;===================================================================================================================================================================================
      00139059  Cookie/Traffic Marketplace         TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@trafficmp[1].txt
      00139061  Cookie/Doubleclick                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@doubleclick[6].txt
      00139061  Cookie/Doubleclick                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@doubleclick[1].txt
      00139061  Cookie/Doubleclick                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@doubleclick[2].txt
      00139061  Cookie/Doubleclick                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@doubleclick[3].txt
      00139061  Cookie/Doubleclick                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@doubleclick[4].txt
      00139061  Cookie/Doubleclick                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@doubleclick[5].txt
      00139061  Cookie/Doubleclick                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@doubleclick[7].txt
      00139064  Cookie/Atlas DMT                   TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@atdmt[1].txt
      00139064  Cookie/Atlas DMT                   TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@atdmt[3].txt
      00145457  Cookie/FastClick                   TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@fastclick[2].txt
      00145738  Cookie/Mediaplex                   TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@mediaplex[3].txt
      00145738  Cookie/Mediaplex                   TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@mediaplex[4].txt
      00145738  Cookie/Mediaplex                   TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@mediaplex[2].txt
      00167647  Cookie/Yadro                       TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@yadro[1].txt
      00167704  Cookie/Xiti                        TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@xiti[1].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][3].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][2].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][1].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][5].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][6].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][7].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][8].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][9].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][11].txt
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected]
      00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][4].txt
      00168061  Cookie/Apmebf                      TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@apmebf[2].txt
      00168061  Cookie/Apmebf                      TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@apmebf[5].txt
      00168061  Cookie/Apmebf                      TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@apmebf[4].txt
      00168061  Cookie/Apmebf                      TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@apmebf[1].txt
      00168090  Cookie/Serving-sys                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@serving-sys[1].txt
      00168090  Cookie/Serving-sys                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@serving-sys[4].txt
      00168090  Cookie/Serving-sys                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@serving-sys[3].txt
      00168109  Cookie/Adtech                      TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@adtech[1].txt
      00169190  Cookie/Advertising                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@advertising[1].txt
      00169190  Cookie/Advertising                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@advertising[2].txt
      00170554  Cookie/Overture                    TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@overture[4].txt
      00170554  Cookie/Overture                    TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@overture[3].txt
      00170554  Cookie/Overture                    TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@overture[7].txt
      00170554  Cookie/Overture                    TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@overture[5].txt
      00170554  Cookie/Overture                    TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\eduardoq$@overture[2].txt
      00170554  Cookie/Overture                    TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@overture[2].txt
      00170554  Cookie/Overture                    TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@overture[1].txt
      00172221  Cookie/Zedo                        TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@zedo[1].txt
      00191644  Cookie/adultfriendfinder           TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@adultfriendfinder[6].txt
      00191644  Cookie/adultfriendfinder           TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@adultfriendfinder[4].txt
      00191644  Cookie/adultfriendfinder           TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@adultfriendfinder[3].txt
      00191644  Cookie/adultfriendfinder           TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@adultfriendfinder[1].txt
      00191644  Cookie/adultfriendfinder           TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@adultfriendfinder[2].txt
      00207338  Cookie/Target                      TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\system@target[1].txt
      00325830  Cookie/Bridgetrack                 TrackingCookie      No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][1].txt
      00684797  ACAD/Bursted.F                     Virus/Trojan        No        0         Yes            No           c:\users\eduardo\desktop\taller vi\agencia automotriz\autocad\agencia automotriz\acad.lsp
      00684797  ACAD/Bursted.F                     Virus/Trojan        No        0         Yes            No           c:\users\eduardo\appdata\roaming\autodesk\autocad 2010\r18.0\enu\support\acadapp.lsp
      00684797  ACAD/Bursted.F                     Virus/Trojan        No        0         Yes            No           c:\users\eduardo\desktop\cd agencia automotriz\autocad agencia automotriz\acad.lsp
      03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\programdata\microsoft\windows defender\localcopy\{1f00b591-737e-af8d-0efc-680fa3048670}-setup.exe
      03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\programdata\microsoft\windows defender\localcopy\{94ec3494-8bbb-e783-dc06-8c49c5cd3554}-setup.exe
      03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\programdata\microsoft\windows defender\localcopy\{b71d66f6-0e49-feb4-80da-78c24ad234da}-system.windows.browser.ni.dll
      03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\programdata\microsoft\windows defender\localcopy\{07335744-d1aa-15bb-d74d-ef4fa7ee3b9c}-system.windows.ni.dll
      03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\programdata\microsoft\windows defender\localcopy\{dd397f7d-91dd-efb4-a9d2-29663063ddbf}-system.servicemodel.web.ni.dll
      03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\programdata\microsoft\windows defender\localcopy\{23173037-eefa-8406-abc2-5bd4769b7794}-system.ni.dll
      03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\programdata\microsoft\windows defender\localcopy\{1780ea59-4744-ca9c-c69c-5a7506d8031c}-system.core.ni.dll
      03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\programdata\microsoft\windows defender\localcopy\{16795af9-f338-ccef-ed5f-ce40181151d7}-system.net.ni.dll
      03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\programdata\microsoft\windows defender\localcopy\{0aae66f6-ea48-5648-c542-ba8f986e19a8}-system.xml.ni.dll
      03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\programdata\microsoft\windows defender\localcopy\{4c8eab5b-819c-8bc6-cc54-af2dd3c58827}-system.runtime.serialization.ni.dll
      08467418  Generic Trojan                     Virus/Trojan        No        0         Yes            No           c:\windows\system32\config\systemprofile\appdata\local\mekomdo.dll
      ;===================================================================================================================================================================================
      SUSPECTS
      Sent      Location
      ;===================================================================================================================================================================================
      ;===================================================================================================================================================================================
      VULNERABILITIES
      Id        Severity       Description
      ;===================================================================================================================================================================================
      ;===================================================================================================================================================================================
      Gracias por la ayuda de nuevo!

    6. #6
      Ex-Colaborador Avatar de Rollinguit
      Registrado
      sep 2009
      Ubicación
      Argentina
      Mensajes
      6.229

      Re: Después de eliminar virus, no aparece Centro de Seguridad en la lista de services

      ¿Con respecto al Centro de Seguridad de Windows, se ha solucionado el inconveniente?

      Blog | Antivirus Online | Eliminar Malwares | Antivirus Gratis


      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    7. #7
      Usuario Avatar de cplatt
      Registrado
      may 2011
      Ubicación
      HERMOSILLO
      Mensajes
      9

      Re: Después de eliminar virus, no aparece Centro de Seguridad en la lista de services

      Aún no...

      Sigue sin aparecer el servicio en cuestión en la lista y el mismo mensaje de error cuando se intenta activar desde el Centro de Actividades..
      Última edición por cplatt fecha: 29/05/11 a las 16:27:59

    8. #8
      Ex-Colaborador Avatar de Rollinguit
      Registrado
      sep 2009
      Ubicación
      Argentina
      Mensajes
      6.229

      Re: Después de eliminar virus, no aparece Centro de Seguridad en la lista de services

      Realiza lo siguiente:

      1.-
      • Desinstala desde Inicio / Panel de Control / Programas - Programas y características:

      Spybot - Search and Destroy
      2-
      Para desinstalar UsbFix.exe, siga estos pasos:
      • Ejecute UsbFix
      • Seguido pulse la opción "Desinstalar"
      • Aparecera una nueva ventana mencionando lo siguiente "UsbFix se ha desinstalado!"
      • Acepte para finalizar.
      3.-


      - Descarga la herramienta ComboFix.exe y guárdala en el escritorio.

      • Si te pide actualizar "Aceptas".
      • Desactiva temporalmente el Antivirus y/o Antispyware.
      • Cierra todas las ventanas abiertas.
      • Hacele doble clic al archivo ComboFix.exe y seguí las instrucciones. Importante instalar Recovery Console.
      • Cuando termine, generara un registro en C:\ComboFix.txt.
        • *Nota* Mientras CF este trabajando no mover el mouse ya que pararía su proceso.
        • *Nota* ComboFix puede reiniciar automáticamente el PC para completar el proceso de eliminación.




      Atención!! No use ComboFix a menos que se le haya indicado específicamente en su mensaje por un integrante de nuestro Staff. Es una herramienta de gran alcance destinada por su creador a ser usada bajo la orientación y supervisión de un experto, no para uso privado. El uso de ComboFix incorrectamente podría generar problemas en su sistema. Por favor, lea las "Negaciones de la Garantía" de ComboFix.
      • Reinicia y pega el reporte de C:\ComboFix.txt en este mismo mensaje. Comentando como esta funcionado tu sistema y detallando el error que aparece sobre el Centro de Seguridad de Windows.

      Blog | Antivirus Online | Eliminar Malwares | Antivirus Gratis


      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    9. #9
      Usuario Avatar de cplatt
      Registrado
      may 2011
      Ubicación
      HERMOSILLO
      Mensajes
      9

      Re: Después de eliminar virus, no aparece Centro de Seguridad en la lista de services

      Aquí el reporte de ComboFix:

      ComboFix 11-05-28.01 - eduardo 29/05/2011 13:32:40.1.1 - x86
      Microsoft Windows 7 Home Basic 6.1.7600.0.1252.52.3082.18.1979.1298 [GMT -7:00]
      Running from: c:\users\eduardo\Desktop\ComboFix.exe
      AV: Norton Internet Security *Disabled/Outdated* {88C95A36-8C3B-2F2C-1B8B-30FCCFDC4855}
      FW: Norton Internet Security *Disabled* {B0F2DB13-C654-2E74-30D4-99C9310F0F2E}
      SP: Norton Internet Security *Disabled/Updated* {33A8BBD2-AA01-20A2-213B-0B8EB45B02E8}
      SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
      .
      .
      ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
      .
      .
      c:\users\eduardo\AppData\Roaming\updates
      c:\windows\system32\tmp.tmp
      .
      .
      ((((((((((((((((((((((((( Files Created from 2011-04-28 to 2011-05-29 )))))))))))))))))))))))))))))))
      .
      .
      2011-05-29 20:40 . 2011-05-29 20:40 -------- d-----w- c:\users\eduardo\AppData\Local\temp
      2011-05-29 20:40 . 2011-05-29 20:40 -------- d-----w- c:\users\Default\AppData\Local\temp
      2011-05-29 18:45 . 2011-01-17 05:38 161792 ----a-w- c:\windows\system32\d3d10_1.dll
      2011-05-29 17:09 . 2011-04-09 06:13 3957632 ----a-w- c:\windows\system32\ntkrnlpa.exe
      2011-05-29 17:09 . 2011-04-09 06:13 3901824 ----a-w- c:\windows\system32\ntoskrnl.exe
      2011-05-29 17:09 . 2011-04-09 05:56 123904 ----a-w- c:\windows\system32\poqexec.exe
      2011-05-29 17:09 . 2011-04-22 19:36 26496 ----a-w- c:\windows\system32\drivers\Diskdump.sys
      2011-05-29 07:08 . 2009-06-30 17:37 28552 ----a-w- c:\windows\system32\drivers\pavboot.sys
      2011-05-29 07:08 . 2011-05-29 07:08 -------- d--h--w- c:\windows\AxInstSV
      2011-05-29 07:06 . 2011-05-29 07:06 -------- d-----w- c:\users\eduardo\AppData\Local\Mozilla
      2011-05-29 06:43 . 2011-05-29 20:28 -------- d-----w- C:\UsbFix
      2011-05-29 06:30 . 2011-05-29 06:30 -------- d-----w- c:\windows\system32\wbem\en-US
      2011-05-29 04:40 . 2011-05-29 20:19 -------- d-----w- c:\program files\Spybot - Search & Destroy
      2011-05-29 04:40 . 2011-05-29 20:18 -------- d-----w- c:\programdata\Spybot - Search & Destroy
      2011-05-29 04:19 . 2011-05-29 04:20 -------- d-----w- c:\program files\CCleaner
      2011-05-29 03:07 . 2011-05-29 03:07 -------- d-----w- c:\users\eduardo\AppData\Roaming\Panda Security
      2011-05-29 03:02 . 2011-05-29 03:02 -------- d-----w- c:\users\eduardo\AppData\Local\panda2_0dn
      2011-05-29 03:02 . 2011-05-29 20:21 -------- d-----w- c:\programdata\Panda Security URL Filtering
      2011-05-29 03:02 . 2011-05-29 03:02 -------- d-----w- c:\programdata\Panda Security
      2011-05-29 01:18 . 2011-05-29 01:18 -------- d-----w- c:\users\eduardo\AppData\Roaming\Malwarebytes
      2011-05-29 01:17 . 2010-12-21 01:09 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
      2011-05-29 01:17 . 2011-05-29 01:17 -------- d-----w- c:\programdata\Malwarebytes
      2011-05-29 01:17 . 2011-05-29 01:17 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
      2011-05-29 01:17 . 2010-12-21 01:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
      2011-05-29 00:03 . 2011-05-29 00:03 281 ----a-w- c:\programdata\bdinstall.bin
      2011-05-28 23:39 . 2011-05-29 07:08 -------- d-----w- c:\program files\Panda Security
      2011-05-28 23:35 . 2011-05-28 23:35 -------- d-----w- c:\users\eduardo\AppData\Roaming\QuickScan
      2011-05-28 23:25 . 2011-05-28 23:25 -------- d-----w- c:\users\eduardo\AppData\Local\Apps
      2011-05-27 21:14 . 2011-05-27 21:14 0 ---ha-w- c:\users\eduardo\AppData\Local\BIT32F6.tmp
      2011-05-24 12:31 . 2011-05-24 12:32 -------- d-----w- c:\users\eduardo\AppData\Local\{72AAEF7F-4FE5-48CD-934E-9FA7A03D0C7F}
      2011-05-24 06:23 . 2011-05-24 06:23 -------- d-----w- c:\users\eduardo\AppData\Local\ElevatedDiagnostics
      2011-05-23 19:48 . 2011-05-23 19:48 -------- d-----w- c:\users\eduardo\AppData\Local\{5117B1CF-9193-40E2-B510-03258EDF96CA}
      2011-05-23 07:42 . 2011-05-23 07:42 -------- d-----w- c:\users\eduardo\AppData\Local\{FA949AA4-EA27-43CB-A46E-819123A892CE}
      2011-05-23 07:12 . 2011-05-23 07:13 -------- d-----w- c:\users\eduardo\AppData\Local\{FC188559-469E-4116-84E2-973C85088B02}
      2011-05-21 01:00 . 2011-05-21 01:00 0 ---ha-w- c:\users\eduardo\AppData\Local\BITDF9A.tmp
      2011-05-20 17:37 . 2011-05-20 17:38 -------- d-----w- c:\users\eduardo\AppData\Local\{1BB05310-B4FE-49B3-BF29-4B265A84C0B9}
      2011-05-20 03:47 . 2011-05-20 03:48 -------- d-----w- c:\users\eduardo\AppData\Local\{192E724B-6767-4D40-86D4-E0119AEC01D5}
      2011-05-19 14:49 . 2011-05-19 14:49 -------- d-----w- c:\users\eduardo\AppData\Local\{6166379B-A71B-4979-A33F-B6F230A19E5A}
      2011-05-19 01:15 . 2011-05-19 01:16 -------- d-----w- c:\users\eduardo\AppData\Local\{846E6761-9F6A-435B-A5D3-FCFC6B5B96F3}
      2011-05-18 06:59 . 2011-05-18 07:00 -------- d-----w- c:\users\eduardo\AppData\Local\{10D7B014-94BF-4F9D-B7D5-1A10B49B364A}
      2011-05-17 01:30 . 2011-05-17 01:30 -------- d-----w- c:\users\eduardo\AppData\Local\Apple Computer
      2011-05-17 01:12 . 2011-05-17 01:12 -------- d-----w- c:\users\eduardo\AppData\Roaming\Apple Computer
      2011-05-17 01:12 . 2011-05-17 01:12 0 ---ha-w- c:\users\eduardo\AppData\Local\BIT2480.tmp
      2011-05-14 00:59 . 2011-05-14 00:59 0 ---ha-w- c:\users\eduardo\AppData\Local\BIT6131.tmp
      2011-05-13 03:14 . 2011-05-13 03:14 -------- d-----w- c:\users\eduardo\AppData\Local\{6F38C9C3-7515-4207-93E6-F6D83E1E9CB5}
      2011-05-12 14:19 . 2011-05-12 14:19 -------- d-----w- c:\users\eduardo\AppData\Local\{E9175829-0CCB-4B20-8C06-ED186BFC2F5D}
      2011-05-11 23:35 . 2011-05-11 23:35 -------- d-----w- c:\users\eduardo\AppData\Local\{80B45EDE-5E0A-4BAF-A59D-4AB0E2F4AE09}
      2011-05-11 10:23 . 2011-05-11 10:23 0 ---ha-w- c:\users\eduardo\AppData\Local\BIT78FD.tmp
      2011-05-10 23:06 . 2011-05-10 23:06 -------- d-----w- c:\users\eduardo\AppData\Local\{2AAF5A32-0D91-4C06-9B50-BDF0237D457E}
      2011-05-09 21:29 . 2011-05-09 21:30 -------- d-----w- c:\users\eduardo\AppData\Local\{20354647-1492-4FEC-8027-3879963CBE4E}
      2011-05-09 03:45 . 2011-05-09 03:45 -------- d-----w- c:\users\eduardo\AppData\Local\{A3C6667A-432E-4BCB-9F79-F9E6898D3491}
      2011-05-08 15:42 . 2011-05-08 15:43 -------- d-----w- c:\users\eduardo\AppData\Local\{3D9612DC-A45A-494E-9C0D-2B408499C65D}
      2011-05-08 01:47 . 2011-04-11 07:04 7071056 ------w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{DB788729-D118-4E8A-8010-12310C1012D0}\mpengine.dll
      2011-05-07 16:38 . 2011-05-07 16:38 0 ---ha-w- c:\users\eduardo\AppData\Local\BIT8220.tmp
      2011-05-07 05:46 . 2011-05-07 05:46 -------- d-----w- c:\users\eduardo\AppData\Local\{D4B212F8-F155-43E5-9352-4353DBDFB23A}
      2011-05-06 00:55 . 2011-05-06 00:55 -------- d-----w- c:\users\eduardo\AppData\Local\{DA09AE03-E527-4501-93A5-2B68AFA44E60}
      2011-05-04 23:05 . 2011-05-04 23:06 -------- d-----w- c:\users\eduardo\AppData\Local\{587354B1-8573-4D81-8E0D-BB6E15B6AFC6}
      2011-05-04 11:03 . 2011-05-04 11:03 -------- d-----w- c:\users\eduardo\AppData\Local\{070EFD18-8B60-4A84-88D5-348B39F92785}
      2011-05-03 23:01 . 2011-05-03 23:01 -------- d-----w- c:\users\eduardo\AppData\Local\{DC787A8F-EC6E-46E5-96EA-547186705D42}
      2011-05-02 23:47 . 2011-05-02 23:47 -------- d-----w- c:\users\eduardo\AppData\Local\{19892448-B47C-4B29-A790-ED95ECF8A33E}
      2011-05-02 00:00 . 2011-05-02 00:01 -------- d-----w- c:\users\eduardo\AppData\Local\{59FEA152-ACD5-494A-948D-478422E6E24E}
      2011-05-01 23:40 . 2011-05-01 23:40 -------- d-----w- c:\users\eduardo\AppData\Local\{73601A16-BE53-4E57-8585-3F80667BD9EF}
      2011-04-30 23:16 . 2011-04-30 23:17 -------- d-----w- c:\users\eduardo\AppData\Local\{44AE44BD-7F5F-4959-AF1E-495E1E0A0BA3}
      2011-04-29 20:44 . 2011-04-29 20:44 -------- d-----w- c:\users\eduardo\AppData\Local\{53B14529-9981-40DB-8A8C-A5A56806D041}
      .
      .
      .
      (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
      .
      2011-05-29 06:56 . 2011-05-29 06:56 12412 ----a-w- C:\UsbFix_Upload_Me_EDUARDOQ.zip
      2011-05-25 02:14 . 2011-04-08 03:15 222080 ------w- c:\windows\system32\MpSigStub.exe
      2011-04-27 20:18 . 2011-04-27 20:18 0 ---ha-w- c:\users\eduardo\AppData\Local\BIT2C2.tmp
      2011-03-12 11:31 . 2011-04-28 03:42 442880 ----a-w- c:\windows\system32\XpsPrint.dll
      2011-03-12 04:44 . 2010-06-24 18:33 18328 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
      2011-03-11 05:44 . 2011-04-28 03:43 146304 ----a-w- c:\windows\system32\drivers\storport.sys
      2011-03-11 05:44 . 2011-04-28 03:43 143744 ----a-w- c:\windows\system32\drivers\nvstor.sys
      2011-03-11 05:44 . 2011-04-28 03:43 1210240 ----a-w- c:\windows\system32\drivers\ntfs.sys
      2011-03-11 05:44 . 2011-04-28 03:43 117120 ----a-w- c:\windows\system32\drivers\nvraid.sys
      2011-03-11 05:43 . 2011-04-28 03:43 332160 ----a-w- c:\windows\system32\drivers\iaStorV.sys
      2011-03-11 05:43 . 2011-04-28 03:43 80256 ----a-w- c:\windows\system32\drivers\amdsata.sys
      2011-03-11 05:43 . 2011-04-28 03:43 22400 ----a-w- c:\windows\system32\drivers\amdxata.sys
      2011-03-11 05:40 . 2011-04-15 00:44 1137664 ----a-w- c:\windows\system32\mfc42.dll
      2011-03-11 05:40 . 2011-04-15 00:44 1164288 ----a-w- c:\windows\system32\mfc42u.dll
      2011-03-11 05:39 . 2011-04-28 03:43 1686016 ----a-w- c:\windows\system32\esent.dll
      2011-03-11 05:37 . 2011-04-28 03:43 74240 ----a-w- c:\windows\system32\fsutil.exe
      2011-03-08 05:38 . 2011-04-15 00:52 740864 ----a-w- c:\windows\system32\inetcomm.dll
      2011-03-03 05:29 . 2011-04-15 00:46 132608 ----a-w- c:\windows\system32\dnsrslvr.dll
      2011-03-03 05:27 . 2011-04-15 00:46 28672 ----a-w- c:\windows\system32\dnscacheugc.exe
      2011-03-03 03:31 . 2011-04-16 02:04 2331136 ----a-w- c:\windows\system32\win32k.sys
      2011-04-14 16:43 . 2011-05-29 07:06 142296 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
      .
      .
      ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
      .
      .
      *Note* empty entries & legit default entries are not shown
      REGEDIT4
      .
      [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4}]
      2010-12-19 14:46 86696 ----a-w- c:\program files\Panda Security\Panda Security Toolbar\PandaSecurityDx.dll
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
      "{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4}"= "c:\program files\Panda Security\Panda Security Toolbar\PandaSecurityDx.dll" [2010-12-19 86696]
      .
      [HKEY_CLASSES_ROOT\clsid\{b821bf60-5c2d-41eb-92dc-3e4ccd3a22e4}]
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\Panda Malware Icon]
      @="{F5D1CF73-C196-48F8-AAAC-B9181E22B4E6}"
      [HKEY_CLASSES_ROOT\CLSID\{F5D1CF73-C196-48F8-AAAC-B9181E22B4E6}]
      2010-12-17 01:18 320832 ----a-w- c:\program files\Panda Security\Panda Cloud Antivirus\PSUNShell.dll
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\Panda Suspect Icon]
      @="{9AE343CB-BA45-4618-AF6A-0230EE6FC793}"
      [HKEY_CLASSES_ROOT\CLSID\{9AE343CB-BA45-4618-AF6A-0230EE6FC793}]
      2010-12-17 01:18 320832 ----a-w- c:\program files\Panda Security\Panda Cloud Antivirus\PSUNShell.dll
      .
      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "LightScribe Control Panel"="c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe" [2009-06-17 2363392]
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "Apoint"="c:\program files\Apoint2K\Apoint.exe" [2009-05-15 282624]
      "QPService"="c:\program files\HP\QuickPlay\QPService.exe" [2009-06-23 468264]
      "QlbCtrl.exe"="c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2009-06-24 320056]
      "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-05-14 248552]
      "IntelliPoint"="c:\program files\Microsoft IntelliPoint\ipoint.exe" [2010-07-21 1797008]
      "PSUNMain"="c:\program files\Panda Security\Panda Cloud Antivirus\PSUNMain.exe" [2010-12-17 423232]
      "Panda Security URL Filtering"="c:\programdata\Panda Security URL Filtering\Panda_URL_Filtering.exe" [2011-05-17 231592]
      "SysTrayApp"="c:\program files\IDT\WDM\sttray.exe" [2010-03-23 495708]
      .
      [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
      "ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2009-07-14 8704]
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
      "ConsentPromptBehaviorUser"= 3 (0x3)
      "EnableUIADesktopToggle"= 0 (0x0)
      .
      [HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\system]
      "WallpaperStyle"= 2
      .
      [HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
      "HideSCAHealth"= 1 (0x1)
      .
      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
      Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
      .
      [HKLM\~\startupfolder\C:^Users^eduardo^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Recorte de pantalla e Inicio rápido de OneNote 2007.lnk]
      path=c:\users\eduardo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Recorte de pantalla e Inicio rápido de OneNote 2007.lnk
      backup=c:\windows\pss\Recorte de pantalla e Inicio rápido de OneNote 2007.lnk.Startup
      backupExtension=.Startup
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
      2009-02-27 15:10 35696 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
      2008-10-25 18:44 31072 ----a-w- c:\program files\Microsoft Office\Office12\GrooveMonitor.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
      2009-09-03 23:04 174104 ----a-w- c:\windows\System32\hkcmd.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
      2008-12-08 12:50 54576 ----a-w- c:\program files\Hp\HP Software Update\hpwuschd2.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
      2009-09-03 23:04 141848 ----a-w- c:\windows\System32\igfxtray.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes' Anti-Malware (reboot)]
      2010-12-21 01:08 963976 ----a-w- c:\program files\Malwarebytes' Anti-Malware\mbam.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NortonOnlineBackupReminder]
      2009-05-12 15:09 581480 ----a-w- c:\program files\Symantec\Norton Online Backup\Activation\NobuActivation.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence]
      2009-09-03 23:04 151064 ----a-w- c:\windows\System32\igfxpers.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
      2010-11-30 00:38 421888 ----a-w- c:\program files\QuickTime\QTTask.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UCam_Menu]
      2009-02-17 20:21 218408 ------w- c:\program files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdatePRCShortCut]
      2009-05-19 20:16 222504 ----a-w- c:\program files\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WirelessAssistant]
      2009-07-23 09:04 498744 ----a-w- c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
      .
      R2 bkcatfil;Performance Counters for Windows Support;c:\windows\System32\svchost.exe [2009-07-14 20992]
      R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
      R2 gupdate;Servicio de actualización de Google (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2011-04-22 136176]
      R2 mi-raysat_3dsmax2011_32;mental ray 3.8 Satellite for Autodesk 3ds Max 2011 32-bit 32-bit;c:\program files\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_32server.exe [2010-03-10 86016]
      R3 dc3d;Controlador de detección de dispositivos de hardware de Microsoft;c:\windows\system32\DRIVERS\dc3d.sys [2010-07-02 44432]
      R3 gupdatem;Google Update Servicio (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [2011-04-22 136176]
      R3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys [2009-07-23 116136]
      R3 netr73;Controlador de tarjeta LAN inalámbrica USB RT73 para Vista;c:\windows\system32\DRIVERS\netr73.sys [2009-07-13 545792]
      R3 netw5v32;Controlador del adaptador Intel(R) Wireless WiFi Link 5000 Series para Windows Vista de 32 bits;c:\windows\system32\DRIVERS\netw5v32.sys [2009-07-13 4231168]
      R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL3.SYS [2009-07-13 207360]
      R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV3.SYS [2009-07-13 980992]
      R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT3.SYS [2009-07-13 661504]
      S0 pavboot;pavboot;c:\windows\system32\drivers\pavboot.sys [2009-06-30 28552]
      S1 PSINKNC;PSINKNC;c:\windows\system32\DRIVERS\psinknc.sys [2010-12-17 126536]
      S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-13 48128]
      S2 AESTFilters;Andrea ST Filters Service;c:\windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9691412ff1876250\aestsrv.exe [2009-03-03 81920]
      S2 NanoServiceMain;Panda Cloud Antivirus Service;c:\program files\Panda Security\Panda Cloud Antivirus\PSANHost.exe [2010-12-17 140608]
      S2 PSINAflt;PSINAflt;c:\windows\system32\DRIVERS\PSINAflt.sys [2010-12-17 141384]
      S2 PSINFile;PSINFile;c:\windows\system32\DRIVERS\PSINFile.sys [2010-12-17 99400]
      S2 PSINProc;PSINProc;c:\windows\system32\DRIVERS\PSINProc.sys [2010-12-17 111176]
      S2 PSINProt;PSINProt;c:\windows\system32\DRIVERS\PSINProt.sys [2010-12-17 113736]
      S3 Com4QLBEx;Com4QLBEx;c:\program files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2009-05-05 228408]
      S3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI;c:\windows\system32\drivers\IntcHdmi.sys [2009-07-10 122880]
      S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2009-05-23 167936]
      .
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
      LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS FontCache fdrespub AppIDSvc QWAVE wcncsvc SensrSvc
      .
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
      bkcatfil
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
      2009-06-17 11:11 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
      .
      Contents of the 'Scheduled Tasks' folder
      .
      2011-05-29 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
      - c:\program files\Google\Update\GoogleUpdate.exe [2011-04-22 22:38]
      .
      2011-05-29 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
      - c:\program files\Google\Update\GoogleUpdate.exe [2011-04-22 22:38]
      .
      .
      ------- Supplementary Scan -------
      .
      uInternet Settings,ProxyServer = proxy.uson.mx:8080
      uInternet Settings,ProxyOverride = 127-0-0-1;148.255.*;*.uson.mx;<local>
      IE: E&xportar a Microsoft Excel - c:\progra~1\MIF5BA~1\Office12\EXCEL.EXE/3000
      IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html
      TCP: DhcpNameServer = 192.168.0.1
      FF - ProfilePath - c:\users\eduardo\AppData\Roaming\Mozilla\Firefox\Profiles\x0i1gamw.default\
      .
      .
      ------- File Associations -------
      .
      .scr=AutoCADScriptFile
      .
      - - - - ORPHANS REMOVED - - - -
      .
      HKLM-RunOnce-<NO NAME> - (no file)
      Notify-mekomdo - c:\windows\system32\config\systemprofile\AppData\Local\mekomdo.dll
      SafeBoot-Wdf01000.sys
      AddRemove-LSI Soft Modem - c:\windows\agrsmdel
      .
      .
      .
      --------------------- LOCKED REGISTRY KEYS ---------------------
      .
      [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
      @Denied: (A) (Users)
      @Denied: (A) (Everyone)
      @Allowed: (B 1 2 3 4 5) (S-1-5-20)
      "BlindDial"=dword:00000000
      "MSCurrentCountry"=dword:000000b5
      .
      [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
      @Denied: (Full) (Everyone)
      .
      Completion time: 2011-05-29 13:43:41
      ComboFix-quarantined-files.txt 2011-05-29 20:43
      .
      Pre-Run: 171,669,065,728 bytes libres
      Post-Run: 171,601,092,608 bytes libres
      .
      - - End Of File - - 2EDCF8ECB43EFAF6A262785D74D29484


      _________________________________________

      Y debo decir, que después de reiniciar, eso ha solucionado el problema!

      El Centro de Seguridad ya está activado!!

      Y bueno... pude activar el firewall de Windows, pero ahora el servicio que no inicia es el de Windows Defender ni tampoco reconoce al antivirus ni antispyware que tengo instalado (Panda Cloud y Spybot de nuevo).

      ¿Es esto realmente un problema para que trabajen bien los programas de seguridad que tengo? Como dato curioso, el servicio del Centro de Seguridad aún no aparece... pero después de usar el ComboFix y volver a entrar a services.msc, aparece un nuevo servicio al final de la lista llamado wscsvc... (deduzco que significa Windows Security Center Service), no tiene descripción y está como inicio retrasado.

      El error que da Windows Defender al tratar de iniciarlo es el siguiente:
      El servicio especificado no existe como servicio instalado. Código de error: 0x80070424.
      Última edición por Rollinguit fecha: 29/05/11 a las 20:27:32 Razón: Quitar etiqueta.

    10. #10
      Ex-Colaborador Avatar de Rollinguit
      Registrado
      sep 2009
      Ubicación
      Argentina
      Mensajes
      6.229

      Re: Después de eliminar virus, no aparece Centro de Seguridad en la lista de services

      Por favor realiza los pasos tal cual te menciono:

      A.-
      • Desinstala desde Inicio / Panel de Control / Programas - Programas y características:

      Spybot - Search and Destroy
      Panda Cloud Antivirus
      Norton Internet Security
      En el caso de no poder desinstalarlos correctamente observa detalladamente y sigue los 3 Pasos a seguir para una correcta desinstalación y/o limpieza de rastros.

      B.-


      1.-Abrir el Notepad (Bloc de Notas)

      • Ir a INICIO > EJECUTAR >
      • Y ahí pones notepad.exe y ACEPTAR


      2.-Ahora copia y pega estos archivos dentro del Notepad

      Código:
      KillAll::
      
      File::
      c:\users\eduardo\AppData\Local\BIT32F6.tmp
      c:\users\eduardo\AppData\Local\BITDF9A.tmp
      c:\users\eduardo\AppData\Local\BIT2480.tmp
      c:\users\eduardo\AppData\Local\BIT6131.tmp
      c:\users\eduardo\AppData\Local\BIT8220.tmp
      c:\users\eduardo\AppData\Local\BIT2C2.tmp
      
      NetSvcs::
      bkcatfil
      
      Driver::
      bkcatfil
      3.- Graba este archivo con el nombre CFScript.txt y déjalo en tu escritorio.

      4.- Arrastrar y soltar el archivo CFScript.txt dentro del archivo ComboFix.exe como lo muestra la animación de abajo. Esto activara ComboFix nuevamente.


      • Reinicia tu PC y nos dejas el nuevo reporte de ComboFix, comentándonos ¿Cómo esta funcionado todo actualmente?


      Antes de usar el CFScript....

      Blog | Antivirus Online | Eliminar Malwares | Antivirus Gratis


      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    Página 1 de 2 12 ÚltimoÚltimo