• Registrarse
  • Iniciar sesión


  • Resultados 1 al 6 de 6

    Se me abren paginas de publicidad en IE y Firefox (Solucionado)

    Resumen del tema: Se me abren paginas de publicidad en IE y Firefox (Solucionado) - Buen dia agradezco me puedan ayudar con el siguiente problema. Sucede que abro Firefox y cuando voy abrir algunas pestaña me aparecen paginas de publicidad como Enterfactory, adultfriend entre otras. Pero tengo varios problemás más. ...

      
    1. #1
      Usuario Avatar de Sir.K
      Registrado
      jun 2011
      Ubicación
      Bucaramanga
      Mensajes
      3

      Se me abren paginas de publicidad en IE y Firefox (Solucionado)

      Buen dia agradezco me puedan ayudar con el siguiente problema. Sucede que abro Firefox y cuando voy abrir algunas pestaña me aparecen paginas de publicidad como Enterfactory, adultfriend entre otras. Pero tengo varios problemás más.

      Ya tengo el CCleaner, Malwarebytes, Spybot, Hijack this y mi antivirus es McAFee. .

      Ayer pude eliminar o poner en cuarentena varios archivos del spyware falso "win 7 security 2012" usando el Malwarebytes.

      También les cuento que el Spybot me ha encontrado dos problemas con los nombres Babylon.toolbar y Facemoods pero no me deja eliminarlos por que me sale un error que dice "This action may not be permorfed completely since you are not at administrator. If you want this performed for all users, please run this aplication elevated as an administrator"


      He utilizado todos los programas mencionados pero aún me sigue apareciendo el problema de la publicidad.


      Este es el hijack log. Gracias de antemano por la ayuda que me puedan brindar.

      Logfile of Trend Micro HijackThis v2.0.4
      Scan saved at 09:32:28 a.m., on 11/06/2011
      Platform: Windows 7 SP1 (WinNT 6.00.3505)
      MSIE: Internet Explorer v9.00 (9.00.8112.16421)
      Boot mode: Normal

      Running processes:
      C:\Program Files (x86)\STMicroelectronics\AccelerometerP11\FF_Protection.exe
      C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe
      C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
      C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe
      C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe
      C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
      C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
      C:\Program Files (x86)\Mozilla Firefox\firefox.exe
      C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
      C:\Program Files (x86)\Dell Stage\Dell Stage\stage_secondary.exe
      C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
      C:\Program Files (x86)\RocketDock\RocketDock.exe
      C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe
      C:\Windows\SysWOW64\DllHost.exe

      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
      F2 - REG:system.ini: UserInit=userinit.exe,
      O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
      O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
      O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20110529082219.dll
      O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
      O2 - BHO: Aplicación auxiliar de inicio de sesión de Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
      O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
      O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
      O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
      O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
      O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
      O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
      O4 - HKLM\..\Run: [USB Antivirus] C:\Program Files (x86)\USB Disk Security\RunUSBGuard.exe
      O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
      O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
      O4 - HKLM\..\RunOnce: [Launcher] C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\Launcher.exe
      O4 - HKLM\..\RunOnce: [DSUpdateLauncher] "C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\hstart.exe" /NOCONSOLE /D="C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate" /RUNAS "C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpd.exe"
      O4 - HKLM\..\RunOnce: [STToasterLauncher] C:\Program Files (x86)\Dell DataSafe Local Backup\toasterLauncher.exe
      O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
      O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
      O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
      O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
      O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
      O9 - Extra button: Enviar a Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
      O9 - Extra 'Tools' menuitem: Enviar a &Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
      O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
      O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
      O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
      O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
      O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
      O16 - DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D} (SysInfo Class) - http://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_cyri_4.4.16.0.cab
      O17 - HKLM\System\CCS\Services\Tcpip\..\{1453EB8E-7DC3-48E4-8D02-9BA16DBA5157}: NameServer = 208.67.222.222,208.67.220.220
      O17 - HKLM\System\CS1\Services\Tcpip\..\{1453EB8E-7DC3-48E4-8D02-9BA16DBA5157}: NameServer = 208.67.222.222,208.67.220.220
      O17 - HKLM\System\CS2\Services\Tcpip\..\{1453EB8E-7DC3-48E4-8D02-9BA16DBA5157}: NameServer = 208.67.222.222,208.67.220.220
      O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
      O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
      O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
      O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
      O23 - Service: @%SystemRoot%\system32\aelupsvc.dll,-1 (AeLookupSvc) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
      O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
      O23 - Service: @%systemroot%\system32\appidsvc.dll,-100 (AppIDSvc) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%systemroot%\system32\appinfo.dll,-100 (Appinfo) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-204 (AudioEndpointBuilder) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-200 (AudioSrv) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
      O23 - Service: @%SystemRoot%\system32\AxInstSV.dll,-103 (AxInstSV) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\bdesvc.dll,-100 (BDESVC) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\bfe.dll,-1001 (BFE) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\qmgr.dll,-1000 (BITS) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%systemroot%\system32\browser.dll,-100 (Browser) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\System32\bthserv.dll,-101 (bthserv) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - c:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
      O23 - Service: @%SystemRoot%\System32\certprop.dll,-11 (CertPropSvc) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\cryptsvc.dll,-1001 (CryptSvc) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @oleres.dll,-5012 (DcomLaunch) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\defragsvc.dll,-101 (defragsvc) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\dhcpcore.dll,-100 (Dhcp) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\System32\dnsapi.dll,-101 (Dnscache) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%systemroot%\system32\dot3svc.dll,-1102 (dot3svc) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%systemroot%\system32\dps.dll,-500 (DPS) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%systemroot%\system32\eapsvc.dll,-1 (EapHost) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
      O23 - Service: @%SystemRoot%\ehome\ehrecvr.exe,-101 (ehRecvr) - Unknown owner - C:\Windows\ehome\ehRecvr.exe
      O23 - Service: @%SystemRoot%\ehome\ehsched.exe,-101 (ehSched) - Unknown owner - C:\Windows\ehome\ehsched.exe
      O23 - Service: @%SystemRoot%\system32\wevtsvc.dll,-200 (eventlog) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @comres.dll,-2450 (EventSystem) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
      O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
      O23 - Service: @%systemroot%\system32\fdrespub.dll,-100 (FDResPub) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%systemroot%\system32\FntCache.dll,-100 (FontCache) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: GoToAssist - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files (x86)\Citrix\GoToAssist\514\g2aservice.exe
      O23 - Service: @gpapi.dll,-112 (gpsvc) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: Servicio de actualización de Google (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
      O23 - Service: Google Update Servicio (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
      O23 - Service: @%SystemRoot%\System32\hidserv.dll,-101 (hidserv) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\kmsvc.dll,-6 (hkmsvc) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\System32\ListSvc.dll,-100 (HomeGroupListener) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\System32\provsvc.dll,-100 (HomeGroupProvider) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
      O23 - Service: @%SystemRoot%\system32\ikeext.dll,-501 (IKEEXT) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%systemroot%\system32\IPBusEnum.dll,-102 (IPBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\iphlpsvc.dll,-500 (iphlpsvc) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
      O23 - Service: @comres.dll,-2946 (KtmRm) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%systemroot%\system32\srvsvc.dll,-100 (LanmanServer) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%systemroot%\system32\wkssvc.dll,-100 (LanmanWorkstation) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\lltdres.dll,-1 (lltdsvc) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\lmhsvc.dll,-101 (lmhosts) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
      O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
      O23 - Service: McAfee Servicio Personal Firewall (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
      O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
      O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
      O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
      O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
      O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
      O23 - Service: McShield - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
      O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
      O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
      O23 - Service: @%systemroot%\system32\mmcss.dll,-100 (MMCSS) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\FirewallAPI.dll,-23090 (MpsSvc) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
      O23 - Service: @%SystemRoot%\system32\iscsidsc.dll,-5000 (MSiSCSI) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) - Unknown owner - C:\Windows\system32\msiexec.exe
      O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
      O23 - Service: @%SystemRoot%\system32\qagentrt.dll,-6 (napagent) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
      O23 - Service: @%SystemRoot%\system32\netman.dll,-109 (Netman) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\netprofm.dll,-202 (netprofm) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\System32\nlasvc.dll,-1 (NlaSvc) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\nsisvc.dll,-200 (nsi) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
      O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
      O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8004 (p2pimsvc) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8006 (p2psvc) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\pcasvc.dll,-1 (PcaSvc) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%systemroot%\sysWow64\perfhost.exe,-2 (PerfHost) - Unknown owner - C:\Windows\SysWow64\perfhost.exe
      O23 - Service: @%systemroot%\system32\pla.dll,-500 (pla) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\umpnpmgr.dll,-100 (PlugPlay) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\pnrpauto.dll,-8002 (PNRPAutoReg) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8000 (PNRPsvc) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\System32\polstore.dll,-5010 (PolicyAgent) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\umpo.dll,-100 (Power) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%systemroot%\system32\profsvc.dll,-300 (ProfSvc) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
      O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%Systemroot%\system32\rasauto.dll,-200 (RasAuto) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%Systemroot%\system32\rasmans.dll,-200 (RasMan) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
      O23 - Service: RoxMediaDB12OEM - Sonic Solutions - C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe
      O23 - Service: Roxio Hard Drive Watcher 12 (RoxWatch12) - Sonic Solutions - C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe
      O23 - Service: @%windir%\system32\RpcEpMap.dll,-1001 (RpcEptMapper) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
      O23 - Service: @oleres.dll,-5010 (RpcSs) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
      O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
      O23 - Service: @%SystemRoot%\System32\SCardSvr.dll,-1 (SCardSvr) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\schedsvc.dll,-100 (Schedule) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\System32\certprop.dll,-13 (SCPolicySvc) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\sdrsvc.dll,-107 (SDRSVC) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\Sens.dll,-200 (SENS) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\System32\sensrsvc.dll,-1000 (SensrSvc) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\System32\SessEnv.dll,-1026 (SessionEnv) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: SoftThinks Agent Service (SftService) - SoftThinks SAS - C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE
      O23 - Service: @%SystemRoot%\system32\ipnathlp.dll,-106 (SharedAccess) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-12288 (ShellHWDetection) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
      O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
      O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
      O23 - Service: @%SystemRoot%\system32\sppuinotify.dll,-103 (sppuinotify) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%systemroot%\system32\ssdpsrv.dll,-100 (SSDPSRV) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\sstpsvc.dll,-200 (SstpSvc) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
      O23 - Service: @%SystemRoot%\system32\wiaservc.dll,-9 (stisvc) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files (x86)\Common Files\SureThing Shared\stllssvr.exe
      O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
      O23 - Service: @%SystemRoot%\System32\swprv.dll,-103 (swprv) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\sysmain.dll,-1000 (SysMain) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\TabSvc.dll,-100 (TabletInputService) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\tapisrv.dll,-10100 (TapiSrv) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\tbssvc.dll,-100 (TBS) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\System32\termsrv.dll,-268 (TermService) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\System32\themeservice.dll,-8192 (Themes) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%systemroot%\system32\mmcss.dll,-102 (THREADORDER) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\trkwks.dll,-1 (TrkWks) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\servicing\TrustedInstaller.exe,-100 (TrustedInstaller) - Unknown owner - C:\Windows\servicing\TrustedInstaller.exe
      O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe
      O23 - Service: TurboBoost - Intel(R) Corporation - C:\Program Files\Intel\TurboBoost\TurboBoost.exe
      O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
      O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
      O23 - Service: @%systemroot%\system32\upnphost.dll,-213 (upnphost) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\dwm.exe,-2000 (UxSms) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\System32\uxtuneup.dll,-4096 (UxTuneUp) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
      O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
      O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
      O23 - Service: @%SystemRoot%\system32\w32time.dll,-200 (W32Time) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
      O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
      O23 - Service: @%systemroot%\system32\wbiosrvc.dll,-100 (WbioSrvc) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\wcncsvc.dll,-3 (wcncsvc) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\WcsPlugInService.dll,-200 (WcsPlugInService) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%systemroot%\system32\wdi.dll,-502 (WdiServiceHost) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%systemroot%\system32\wdi.dll,-500 (WdiSystemHost) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%systemroot%\system32\webclnt.dll,-100 (WebClient) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\wecsvc.dll,-200 (Wecsvc) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\System32\wercplsupport.dll,-101 (wercplsupport) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\System32\wersvc.dll,-100 (WerSvc) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\winhttp.dll,-100 (WinHttpAutoProxySvc) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%Systemroot%\system32\wbem\wmisvc.dll,-205 (Winmgmt) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%Systemroot%\system32\wsmsvc.dll,-101 (WinRM) - Unknown owner - C:\Windows\System32\svchost.exe
      O23 - Service: @%SystemRoot%\System32\wlansvc.dll,-257 (Wlansvc) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
      O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
      O23 - Service: @%SystemRoot%\system32\wpcsvc.dll,-100 (WPCSvc) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\wpdbusenum.dll,-100 (WPDBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%systemroot%\system32\wuaueng.dll,-105 (wuauserv) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\system32\wudfsvc.dll,-1000 (wudfsvc) - Unknown owner - C:\Windows\system32\svchost.exe
      O23 - Service: @%SystemRoot%\System32\wwansvc.dll,-257 (WwanSvc) - Unknown owner - C:\Windows\system32\svchost.exe

      --
      End of file - 26606 bytes
      Última edición por Sir.K fecha: 11/06/11 a las 12:06:45

    2. #2
      Moderador Gral.
      Avatar de Tyny's
      Registrado
      may 2008
      Ubicación
      Argentina
      Mensajes
      14.671

      Re: Se me abren paginas de publicidad en IE y Firefox

      Buenas Sir.K


      Lectura Útil
      Consejos para antes de publicar un nuevo mensaje
      Políticas del Foro de InfoSpyware

      _____________________________________

      Atención importante:

      Realiza el siguiente procedimiento respetando el orden de los pasos. A su ves lee los manuales de las herramientas que te recomendamos. Si un paso resulta imposible realizar continua con el siguiente.



      _____________________________

      Paso.- 1




      Paso .-2

      Ejecuta en orden:



      • Ccleaner como lo indica su manual.
      • Malwarebytes’ Anti-Malware En su opción de examen completo , al finalizar presionas Mostrar Resultados y luego
        Quitar lo Seleccionado . si pide reiniciar lo haces.
      • TDSSKILLER como indica su manual.




      • Desactiva temporalmente el Antivirus y/o Antispyware.
        • Cierra todas las ventanas abiertas.
        • Haz doble clic al archivo ComboFix.exe y sigue las instrucciones.
        • Cuando termine, generará un registro en C:\ComboFix.txt.
          • *Nota* Mientras CF este trabajando no mover el mouse ya que pararía su proceso.
          • *Nota* ComboFix puede reiniciar automáticamente el PC para completar el proceso de eliminación.




      Atención!! No use ComboFix a menos que se le haya indicado específicamente en su mensaje por un integrante de nuestro Staff. Es una herramienta de gran alcance destinada por su creador a ser usada bajo la orientación y supervisión de un experto, no para uso privado. El uso de ComboFix incorrectamente podría generar problemas en su sistema. Por favor, lea las "Negaciones de la Garantía" de ComboFix.
      • Reinicia y pega el reporte de C:\ComboFix.txt en este mismo mensaje.

      __________________________

      Nos traes los reporte de:

      ° Malwarebytes.
      ° ComboFix.
      ° TDSSKILLER
      ° Nos comentas como funciona tu sistema.

      Saludos.
      If on your journey, you should encounter God, God will be cut!


      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    3. #3
      Usuario Avatar de Sir.K
      Registrado
      jun 2011
      Ubicación
      Bucaramanga
      Mensajes
      3

      Re: Se me abren paginas de publicidad en IE y Firefox

      Muchas gracias por tu respuesta Tyny's. Antes de leer tu respuesta había ejecutado el Spybot en modo seguro y pude eliminar los problemas que tenía con "Babylon y Face Moods".

      Ahora que leí tu respuesta hice todo lo que me sugeriste y estos son los reportes o logs que me solicitaste. Estoy atento a sus consideraciones.



      MALWARE BYTES' REPORT

      Malwarebytes' Anti-Malware 1.51.0.1200
      www.malwarebytes.org

      Versión de la Base de Datos: 6834

      Windows 6.1.7601 Service Pack 1 (Safe Mode)
      Internet Explorer 9.0.8112.16421

      11/06/2011 09:14:43 p.m.
      mbam-log-2011-06-11 (21-14-43).txt

      Tipos de Análisis: Análisis Completo (C:\|)
      Objetos examinados: 441246
      Tiempo transcurrido: 47 minuto(s), 28 segundo(s)

      Procesos en Memoria Infectados: 0
      Módulos de Memoria Infectados: 0
      Claves del Registro Infectadas: 0
      Valores del Registro Infectados: 0
      Elementos de Datos del Registro Infectados: 0
      Carpetas Infectadas: 0
      Archivos Infectados: 0

      Procesos en Memoria Infectados:
      (No se han detectado elementos maliciosos)

      Módulos de Memoria Infectados:
      (No se han detectado elementos maliciosos)

      Claves del Registro Infectadas:
      (No se han detectado elementos maliciosos)

      Valores del Registro Infectados:
      (No se han detectado elementos maliciosos)

      Elementos de Datos del Registro Infectados:
      (No se han detectado elementos maliciosos)

      Carpetas Infectadas:
      (No se han detectado elementos maliciosos)

      Archivos Infectados:
      (No se han detectado elementos maliciosos)


      TDSSKILLER LOG

      21:27:31.0367 2600 TDSS rootkit removing tool 2.5.4.0 Jun 7 2011 17:31:48
      2011/06/11 21:27:33.0368 2600 ================================================================================
      2011/06/11 21:27:33.0368 2600 SystemInfo:
      2011/06/11 21:27:33.0368 2600
      2011/06/11 21:27:33.0368 2600 OS Version: 6.1.7601 ServicePack: 1.0
      2011/06/11 21:27:33.0368 2600 Product type: Workstation
      2011/06/11 21:27:33.0368 2600 ComputerName: KMI-PC
      2011/06/11 21:27:33.0369 2600 UserName: Kmi
      2011/06/11 21:27:33.0369 2600 Windows directory: C:\Windows
      2011/06/11 21:27:33.0369 2600 System windows directory: C:\Windows
      2011/06/11 21:27:33.0369 2600 Running under WOW64
      2011/06/11 21:27:33.0369 2600 Processor architecture: Intel x64
      2011/06/11 21:27:33.0369 2600 Number of processors: 4
      2011/06/11 21:27:33.0369 2600 Page size: 0x1000
      2011/06/11 21:27:33.0369 2600 Boot type: Safe boot with network
      2011/06/11 21:27:33.0369 2600 ================================================================================
      2011/06/11 21:27:33.0732 2600 Initialize success
      2011/06/11 21:27:36.0305 2364 ================================================================================
      2011/06/11 21:27:36.0305 2364 Scan started
      2011/06/11 21:27:36.0305 2364 Mode: Manual;
      2011/06/11 21:27:36.0305 2364 ================================================================================
      2011/06/11 21:27:37.0128 2364 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
      2011/06/11 21:27:37.0197 2364 Acceler (7a505465bbb1eb8b5ad4d76e8749383b) C:\Windows\system32\DRIVERS\Accelern.sys
      2011/06/11 21:27:37.0293 2364 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
      2011/06/11 21:27:37.0327 2364 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
      2011/06/11 21:27:37.0378 2364 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
      2011/06/11 21:27:37.0418 2364 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
      2011/06/11 21:27:37.0462 2364 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
      2011/06/11 21:27:37.0582 2364 AFD (d31dc7a16dea4a9baf179f3d6fbdb38c) C:\Windows\system32\drivers\afd.sys
      2011/06/11 21:27:37.0636 2364 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
      2011/06/11 21:27:37.0685 2364 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
      2011/06/11 21:27:37.0736 2364 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
      2011/06/11 21:27:37.0786 2364 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
      2011/06/11 21:27:37.0805 2364 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
      2011/06/11 21:27:37.0846 2364 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
      2011/06/11 21:27:37.0890 2364 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
      2011/06/11 21:27:37.0927 2364 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
      2011/06/11 21:27:38.0004 2364 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
      2011/06/11 21:27:38.0050 2364 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
      2011/06/11 21:27:38.0074 2364 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
      2011/06/11 21:27:38.0158 2364 aswFsBlk (f1dbe3d02ffcdee5246f29b0ecebe6e0) C:\Windows\system32\drivers\aswFsBlk.sys
      2011/06/11 21:27:38.0231 2364 aswMonFlt (f3e75dd1bcc358fb4629357ad09e7c84) C:\Windows\system32\drivers\aswMonFlt.sys
      2011/06/11 21:27:38.0278 2364 aswRdr (fccbdc045dc12afd1508205117e7ed11) C:\Windows\system32\drivers\aswRdr.sys
      2011/06/11 21:27:38.0355 2364 aswSnx (5824dca602a0a30e866bc2ac98c6d970) C:\Windows\system32\drivers\aswSnx.sys
      2011/06/11 21:27:38.0391 2364 aswSP (af07b4bef920f90205148f3a05e2974c) C:\Windows\system32\drivers\aswSP.sys
      2011/06/11 21:27:38.0449 2364 aswTdi (a3eca5af3b4823a523c285a8df0f9e4f) C:\Windows\system32\drivers\aswTdi.sys
      2011/06/11 21:27:38.0469 2364 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
      2011/06/11 21:27:38.0529 2364 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
      2011/06/11 21:27:38.0651 2364 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
      2011/06/11 21:27:38.0678 2364 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
      2011/06/11 21:27:38.0754 2364 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
      2011/06/11 21:27:38.0819 2364 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
      2011/06/11 21:27:38.0872 2364 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
      2011/06/11 21:27:38.0898 2364 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
      2011/06/11 21:27:38.0923 2364 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
      2011/06/11 21:27:38.0983 2364 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
      2011/06/11 21:27:39.0004 2364 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
      2011/06/11 21:27:39.0037 2364 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
      2011/06/11 21:27:39.0088 2364 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
      2011/06/11 21:27:39.0157 2364 BthEnum (cf98190a94f62e405c8cb255018b2315) C:\Windows\system32\drivers\BthEnum.sys
      2011/06/11 21:27:39.0169 2364 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
      2011/06/11 21:27:39.0232 2364 BthPan (02dd601b708dd0667e1331fa8518e9ff) C:\Windows\system32\DRIVERS\bthpan.sys
      2011/06/11 21:27:39.0269 2364 BTHPORT (0d25b6d300ba26a5f2c3b2a8e96b158b) C:\Windows\System32\Drivers\BTHport.sys
      2011/06/11 21:27:39.0307 2364 BTHUSB (1f9912f8ec5bfa53432e71e150636a8a) C:\Windows\System32\Drivers\BTHUSB.sys
      2011/06/11 21:27:39.0354 2364 btwampfl (7a2ce8c1bf4daa1f2766e21e9ca11078) C:\Windows\system32\drivers\btwampfl.sys
      2011/06/11 21:27:39.0407 2364 btwaudio (a75bf6802a967f5aacecc3c67febdf55) C:\Windows\system32\drivers\btwaudio.sys
      2011/06/11 21:27:39.0463 2364 btwavdt (d895dc213edbda5fcc53aad1f1e0e63b) C:\Windows\system32\drivers\btwavdt.sys
      2011/06/11 21:27:39.0515 2364 btwl2cap (07096d2bc22ccb6cea5a532df0be8a75) C:\Windows\system32\DRIVERS\btwl2cap.sys
      2011/06/11 21:27:39.0530 2364 btwrchid (6d7aa2bde0135599c5f230d69db3b420) C:\Windows\system32\DRIVERS\btwrchid.sys
      2011/06/11 21:27:39.0595 2364 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
      2011/06/11 21:27:39.0655 2364 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\drivers\cdrom.sys
      2011/06/11 21:27:39.0745 2364 cfwids (676535b3156fecf7133cf80b4d2f6cf7) C:\Windows\system32\drivers\cfwids.sys
      2011/06/11 21:27:39.0790 2364 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
      2011/06/11 21:27:39.0847 2364 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
      2011/06/11 21:27:39.0942 2364 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
      2011/06/11 21:27:39.0996 2364 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
      2011/06/11 21:27:40.0048 2364 CNG (d5fea92400f12412b3922087c09da6a5) C:\Windows\system32\Drivers\cng.sys
      2011/06/11 21:27:40.0086 2364 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
      2011/06/11 21:27:40.0127 2364 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys
      2011/06/11 21:27:40.0170 2364 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
      2011/06/11 21:27:40.0230 2364 CtClsFlt (fbe228abeab2be13b9c3a3a112d4d8dc) C:\Windows\system32\DRIVERS\CtClsFlt.sys
      2011/06/11 21:27:40.0339 2364 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
      2011/06/11 21:27:40.0396 2364 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
      2011/06/11 21:27:40.0442 2364 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
      2011/06/11 21:27:40.0525 2364 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
      2011/06/11 21:27:40.0582 2364 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
      2011/06/11 21:27:40.0669 2364 eamonm (398fdc5694f2ba9e51e321ca40d1706e) C:\Windows\system32\DRIVERS\eamonm.sys
      2011/06/11 21:27:40.0806 2364 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
      2011/06/11 21:27:40.0887 2364 ehdrv (e99457900012b53b2226f146ecaf9136) C:\Windows\system32\DRIVERS\ehdrv.sys
      2011/06/11 21:27:40.0990 2364 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
      2011/06/11 21:27:41.0023 2364 epfwwfpr (a2af094dcbe8bff7e898d327750506a0) C:\Windows\system32\DRIVERS\epfwwfpr.sys
      2011/06/11 21:27:41.0082 2364 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
      2011/06/11 21:27:41.0175 2364 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
      2011/06/11 21:27:41.0207 2364 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
      2011/06/11 21:27:41.0254 2364 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
      2011/06/11 21:27:41.0299 2364 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
      2011/06/11 21:27:41.0345 2364 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
      2011/06/11 21:27:41.0385 2364 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
      2011/06/11 21:27:41.0437 2364 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
      2011/06/11 21:27:41.0497 2364 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
      2011/06/11 21:27:41.0525 2364 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys
      2011/06/11 21:27:41.0581 2364 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
      2011/06/11 21:27:41.0624 2364 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
      2011/06/11 21:27:41.0711 2364 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
      2011/06/11 21:27:41.0759 2364 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
      2011/06/11 21:27:41.0808 2364 HECIx64 (b6ac71aaa2b10848f57fc49d55a651af) C:\Windows\system32\DRIVERS\HECIx64.sys
      2011/06/11 21:27:41.0825 2364 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
      2011/06/11 21:27:41.0852 2364 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
      2011/06/11 21:27:41.0864 2364 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
      2011/06/11 21:27:41.0902 2364 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\drivers\hidusb.sys
      2011/06/11 21:27:41.0999 2364 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
      2011/06/11 21:27:42.0068 2364 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
      2011/06/11 21:27:42.0122 2364 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
      2011/06/11 21:27:42.0196 2364 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys
      2011/06/11 21:27:42.0263 2364 iaStor (abbf174cb394f5c437410a788b7e404a) C:\Windows\system32\DRIVERS\iaStor.sys
      2011/06/11 21:27:42.0341 2364 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
      2011/06/11 21:27:42.0536 2364 igfx (1be8d9ca4f2363b8e8015621878e0043) C:\Windows\system32\DRIVERS\igdkmd64.sys
      2011/06/11 21:27:42.0709 2364 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
      2011/06/11 21:27:42.0758 2364 Impcd (dd587a55390ed2295bce6d36ad567da9) C:\Windows\system32\DRIVERS\Impcd.sys
      2011/06/11 21:27:42.0839 2364 IntcAzAudAddService (f61d360072b67f5667765a2534b672d6) C:\Windows\system32\drivers\RTKVHD64.sys
      2011/06/11 21:27:42.0911 2364 IntcDAud (03c74719d48056a1078f3a51ceb76baa) C:\Windows\system32\DRIVERS\IntcDAud.sys
      2011/06/11 21:27:42.0968 2364 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
      2011/06/11 21:27:43.0019 2364 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
      2011/06/11 21:27:43.0080 2364 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
      2011/06/11 21:27:43.0151 2364 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
      2011/06/11 21:27:43.0190 2364 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
      2011/06/11 21:27:43.0232 2364 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
      2011/06/11 21:27:43.0298 2364 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
      2011/06/11 21:27:43.0334 2364 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
      2011/06/11 21:27:43.0387 2364 JMCR (43f319de026e04b9cf9219a14bf24fe8) C:\Windows\system32\DRIVERS\jmcr.sys
      2011/06/11 21:27:43.0438 2364 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\drivers\kbdclass.sys
      2011/06/11 21:27:43.0485 2364 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\drivers\kbdhid.sys
      2011/06/11 21:27:43.0510 2364 KSecDD (ccd53b5bd33ce0c889e830d839c8b66e) C:\Windows\system32\Drivers\ksecdd.sys
      2011/06/11 21:27:43.0555 2364 KSecPkg (9ff918a261752c12639e8ad4208d2c2f) C:\Windows\system32\Drivers\ksecpkg.sys
      2011/06/11 21:27:43.0595 2364 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
      2011/06/11 21:27:43.0653 2364 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
      2011/06/11 21:27:43.0763 2364 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
      2011/06/11 21:27:43.0783 2364 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
      2011/06/11 21:27:43.0845 2364 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
      2011/06/11 21:27:43.0898 2364 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
      2011/06/11 21:27:43.0968 2364 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
      2011/06/11 21:27:44.0026 2364 MBAMProtector (ed49fd1373de93617a1f6d128d98fe4d) C:\Windows\system32\drivers\mbam.sys
      2011/06/11 21:27:44.0143 2364 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
      2011/06/11 21:27:44.0197 2364 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
      2011/06/11 21:27:44.0257 2364 mfeapfk (31338e489314ae2a29534fbaa7ad2f1b) C:\Windows\system32\drivers\mfeapfk.sys
      2011/06/11 21:27:44.0281 2364 mfeavfk (5822e70233218bcf22a65fcea74d012d) C:\Windows\system32\drivers\mfeavfk.sys
      2011/06/11 21:27:44.0307 2364 mfefirek (5a24e7c834576313d8c5eaf0825da844) C:\Windows\system32\drivers\mfefirek.sys
      2011/06/11 21:27:44.0347 2364 mfehidk (a2607740bb18d631da01e01dcb81843b) C:\Windows\system32\drivers\mfehidk.sys
      2011/06/11 21:27:44.0393 2364 mfenlfk (50c3a9d7465d385061c0601deefb5a8e) C:\Windows\system32\DRIVERS\mfenlfk.sys
      2011/06/11 21:27:44.0437 2364 mferkdet (edf5ee799a0b3ed6dce8bb16a51f3d1f) C:\Windows\system32\drivers\mferkdet.sys
      2011/06/11 21:27:44.0502 2364 mfewfpk (9182faf9addd5ea6308d155ceb502c6f) C:\Windows\system32\drivers\mfewfpk.sys
      2011/06/11 21:27:44.0529 2364 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
      2011/06/11 21:27:44.0556 2364 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
      2011/06/11 21:27:44.0616 2364 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\drivers\mouclass.sys
      2011/06/11 21:27:44.0652 2364 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
      2011/06/11 21:27:44.0723 2364 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
      2011/06/11 21:27:44.0766 2364 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
      2011/06/11 21:27:44.0793 2364 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
      2011/06/11 21:27:44.0845 2364 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
      2011/06/11 21:27:44.0886 2364 mrxsmb (c2b4651001a867ff3f8865863b592991) C:\Windows\system32\DRIVERS\mrxsmb.sys
      2011/06/11 21:27:44.0935 2364 mrxsmb10 (7e79946afc5f799ab62982282be5ac13) C:\Windows\system32\DRIVERS\mrxsmb10.sys
      2011/06/11 21:27:44.0967 2364 mrxsmb20 (5fb954100cea2bfec6446fbbecaa3f79) C:\Windows\system32\DRIVERS\mrxsmb20.sys
      2011/06/11 21:27:44.0998 2364 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
      2011/06/11 21:27:45.0052 2364 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
      2011/06/11 21:27:45.0110 2364 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
      2011/06/11 21:27:45.0145 2364 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
      2011/06/11 21:27:45.0181 2364 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
      2011/06/11 21:27:45.0234 2364 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
      2011/06/11 21:27:45.0284 2364 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
      2011/06/11 21:27:45.0321 2364 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
      2011/06/11 21:27:45.0391 2364 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
      2011/06/11 21:27:45.0443 2364 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys
      2011/06/11 21:27:45.0489 2364 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
      2011/06/11 21:27:45.0504 2364 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
      2011/06/11 21:27:45.0551 2364 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
      2011/06/11 21:27:45.0621 2364 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
      2011/06/11 21:27:45.0699 2364 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
      2011/06/11 21:27:45.0730 2364 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
      2011/06/11 21:27:45.0756 2364 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
      2011/06/11 21:27:45.0814 2364 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
      2011/06/11 21:27:45.0861 2364 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
      2011/06/11 21:27:45.0930 2364 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
      2011/06/11 21:27:45.0970 2364 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
      2011/06/11 21:27:46.0015 2364 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
      2011/06/11 21:27:46.0196 2364 NETw5s64 (18555f48844c2861d9dce8f2b7223ae5) C:\Windows\system32\DRIVERS\NETw5s64.sys
      2011/06/11 21:27:46.0297 2364 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
      2011/06/11 21:27:46.0347 2364 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
      2011/06/11 21:27:46.0382 2364 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
      2011/06/11 21:27:46.0472 2364 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
      2011/06/11 21:27:46.0518 2364 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
      2011/06/11 21:27:46.0581 2364 nusb3hub (285acec1b13a15ba520aae06bacb9cff) C:\Windows\system32\DRIVERS\nusb3hub.sys
      2011/06/11 21:27:46.0622 2364 nusb3xhc (f6d625ff7b56bb6ea063f0d3a5bbc996) C:\Windows\system32\DRIVERS\nusb3xhc.sys
      2011/06/11 21:27:46.0705 2364 NVHDA (e20abd5b229760158f753ca90b97e090) C:\Windows\system32\drivers\nvhda64v.sys
      2011/06/11 21:27:46.0935 2364 nvlddmkm (536d174cb5cd021906e6035f40993493) C:\Windows\system32\DRIVERS\nvlddmkm.sys
      2011/06/11 21:27:47.0258 2364 nvpciflt (1ca55b50dbf7559ecc4f0f036edc29ec) C:\Windows\system32\DRIVERS\nvpciflt.sys
      2011/06/11 21:27:47.0318 2364 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys
      2011/06/11 21:27:47.0362 2364 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys
      2011/06/11 21:27:47.0428 2364 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
      2011/06/11 21:27:47.0483 2364 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
      2011/06/11 21:27:47.0582 2364 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
      2011/06/11 21:27:47.0641 2364 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys
      2011/06/11 21:27:47.0685 2364 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
      2011/06/11 21:27:47.0722 2364 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
      2011/06/11 21:27:47.0775 2364 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
      2011/06/11 21:27:47.0802 2364 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
      2011/06/11 21:27:47.0856 2364 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
      2011/06/11 21:27:48.0021 2364 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
      2011/06/11 21:27:48.0050 2364 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
      2011/06/11 21:27:48.0135 2364 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
      2011/06/11 21:27:48.0188 2364 PxHlpa64 (87b04878a6d59d6c79251dc960c674c1) C:\Windows\system32\Drivers\PxHlpa64.sys
      2011/06/11 21:27:48.0240 2364 qicflt (0928bd20273625622722fe1de5bbde57) C:\Windows\system32\DRIVERS\qicflt.sys
      2011/06/11 21:27:48.0314 2364 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
      2011/06/11 21:27:48.0360 2364 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
      2011/06/11 21:27:48.0385 2364 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
      2011/06/11 21:27:48.0417 2364 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
      2011/06/11 21:27:48.0467 2364 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
      2011/06/11 21:27:48.0515 2364 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
      2011/06/11 21:27:48.0559 2364 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
      2011/06/11 21:27:48.0624 2364 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
      2011/06/11 21:27:48.0673 2364 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
      2011/06/11 21:27:48.0726 2364 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
      2011/06/11 21:27:48.0760 2364 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
      2011/06/11 21:27:48.0831 2364 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
      2011/06/11 21:27:48.0873 2364 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
      2011/06/11 21:27:48.0907 2364 RDPWD (15b66c206b5cb095bab980553f38ed23) C:\Windows\system32\drivers\RDPWD.sys
      2011/06/11 21:27:48.0952 2364 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
      2011/06/11 21:27:49.0024 2364 RFCOMM (3dd798846e2c28102b922c56e71b7932) C:\Windows\system32\DRIVERS\rfcomm.sys
      2011/06/11 21:27:49.0102 2364 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
      2011/06/11 21:27:49.0148 2364 RTL8167 (4b42bc58294e83a6a92ec8b88c14c4a3) C:\Windows\system32\DRIVERS\Rt64win7.sys
      2011/06/11 21:27:49.0198 2364 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
      2011/06/11 21:27:49.0292 2364 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
      2011/06/11 21:27:49.0364 2364 sdbus (111e0ebc0ad79cb0fa014b907b231cf0) C:\Windows\system32\drivers\sdbus.sys
      2011/06/11 21:27:49.0428 2364 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
      2011/06/11 21:27:49.0501 2364 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
      2011/06/11 21:27:49.0513 2364 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
      2011/06/11 21:27:49.0571 2364 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
      2011/06/11 21:27:49.0631 2364 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
      2011/06/11 21:27:49.0661 2364 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
      2011/06/11 21:27:49.0698 2364 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
      2011/06/11 21:27:49.0712 2364 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
      2011/06/11 21:27:49.0805 2364 Sftfs (72cd52403efc137290cb5a328510ebca) C:\Windows\system32\DRIVERS\Sftfslh.sys
      2011/06/11 21:27:49.0864 2364 Sftplay (31a36ef71af36eabcc4b4f8ab8f76465) C:\Windows\system32\DRIVERS\Sftplaylh.sys
      2011/06/11 21:27:49.0887 2364 Sftredir (2d969194fcc8eb41ed1d52863bfe7f52) C:\Windows\system32\DRIVERS\Sftredirlh.sys
      2011/06/11 21:27:49.0925 2364 Sftvol (08b36d2f63af3ca2248458a4280c0c50) C:\Windows\system32\DRIVERS\Sftvollh.sys
      2011/06/11 21:27:49.0989 2364 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
      2011/06/11 21:27:50.0017 2364 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
      2011/06/11 21:27:50.0047 2364 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
      2011/06/11 21:27:50.0124 2364 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
      2011/06/11 21:27:50.0237 2364 sptd (602884696850c86434530790b110e8eb) C:\Windows\system32\Drivers\sptd.sys
      2011/06/11 21:27:50.0292 2364 srv (65bbf4920148c2ee279055da7228fc7b) C:\Windows\system32\DRIVERS\srv.sys
      2011/06/11 21:27:50.0357 2364 srv2 (da939f762a1ccc2d77428621ddbd40a7) C:\Windows\system32\DRIVERS\srv2.sys
      2011/06/11 21:27:50.0403 2364 srvnet (3f847c9dc87299516f7dc82fb6572865) C:\Windows\system32\DRIVERS\srvnet.sys
      2011/06/11 21:27:50.0492 2364 stdcfltn (92e7f6666633d2dd91d527503daa7be0) C:\Windows\system32\DRIVERS\stdcfltn.sys
      2011/06/11 21:27:50.0576 2364 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
      2011/06/11 21:27:50.0658 2364 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys
      2011/06/11 21:27:50.0751 2364 SynTP (36f506c894e1ea59c65faf6398bdf49a) C:\Windows\system32\DRIVERS\SynTP.sys
      2011/06/11 21:27:50.0853 2364 Tcpip (509383e505c973ed7534a06b3d19688d) C:\Windows\system32\drivers\tcpip.sys
      2011/06/11 21:27:50.0896 2364 TCPIP6 (509383e505c973ed7534a06b3d19688d) C:\Windows\system32\DRIVERS\tcpip.sys
      2011/06/11 21:27:50.0943 2364 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
      2011/06/11 21:27:50.0975 2364 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
      2011/06/11 21:27:51.0008 2364 TDTCP (e4245bda3190a582d55ed09e137401a9) C:\Windows\system32\drivers\tdtcp.sys
      2011/06/11 21:27:51.0071 2364 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
      2011/06/11 21:27:51.0117 2364 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys
      2011/06/11 21:27:51.0228 2364 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
      2011/06/11 21:27:51.0289 2364 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
      2011/06/11 21:27:51.0475 2364 TuneUpUtilitiesDrv (dcc94c51d27c7ec0dadeca8f64c94fcf) C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys
      2011/06/11 21:27:51.0527 2364 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
      2011/06/11 21:27:51.0587 2364 TurboB (825e7a1f48fb8bcfba27c178aab4e275) C:\Windows\system32\DRIVERS\TurboB.sys
      2011/06/11 21:27:51.0630 2364 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
      2011/06/11 21:27:51.0693 2364 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
      2011/06/11 21:27:51.0772 2364 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
      2011/06/11 21:27:51.0813 2364 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\drivers\umbus.sys
      2011/06/11 21:27:51.0851 2364 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
      2011/06/11 21:27:51.0915 2364 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys
      2011/06/11 21:27:51.0972 2364 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
      2011/06/11 21:27:52.0038 2364 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\drivers\usbehci.sys
      2011/06/11 21:27:52.0108 2364 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys
      2011/06/11 21:27:52.0141 2364 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys
      2011/06/11 21:27:52.0172 2364 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
      2011/06/11 21:27:52.0209 2364 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\drivers\USBSTOR.SYS
      2011/06/11 21:27:52.0252 2364 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys
      2011/06/11 21:27:52.0320 2364 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\system32\Drivers\usbvideo.sys
      2011/06/11 21:27:52.0400 2364 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
      2011/06/11 21:27:52.0471 2364 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
      2011/06/11 21:27:52.0493 2364 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
      2011/06/11 21:27:52.0519 2364 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
      2011/06/11 21:27:52.0569 2364 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
      2011/06/11 21:27:52.0606 2364 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
      2011/06/11 21:27:52.0664 2364 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
      2011/06/11 21:27:52.0699 2364 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
      2011/06/11 21:27:52.0732 2364 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
      2011/06/11 21:27:52.0775 2364 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys
      2011/06/11 21:27:52.0824 2364 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys
      2011/06/11 21:27:52.0878 2364 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys
      2011/06/11 21:27:52.0909 2364 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
      2011/06/11 21:27:52.0959 2364 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
      2011/06/11 21:27:52.0968 2364 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
      2011/06/11 21:27:53.0025 2364 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
      2011/06/11 21:27:53.0053 2364 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
      2011/06/11 21:27:53.0116 2364 wdkmd (fe31110e39a0b11abae1ba43a2dc94f9) C:\Windows\system32\DRIVERS\WDKMD.sys
      2011/06/11 21:27:53.0162 2364 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
      2011/06/11 21:27:53.0230 2364 WimFltr (b14ef15bd757fa488f9c970eee9c0d35) C:\Windows\system32\DRIVERS\wimfltr.sys
      2011/06/11 21:27:53.0250 2364 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
      2011/06/11 21:27:53.0519 2364 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys
      2011/06/11 21:27:53.0614 2364 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
      2011/06/11 21:27:53.0693 2364 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
      2011/06/11 21:27:53.0796 2364 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
      2011/06/11 21:27:53.0850 2364 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
      2011/06/11 21:27:53.0967 2364 MBR (0x1B8) (5c616939100b85e558da92b899a0fc36) \Device\Harddisk0\DR0
      2011/06/11 21:27:53.0990 2364 MBR (0x1B8) (66d0b28c8b44e531d0c19f436252abaa) \Device\Harddisk1\DR1
      2011/06/11 21:27:53.0995 2364 ================================================================================





      COMBOFIX LOG


      SP: McAfee Anti-Virus y Anti-Spyware *Enabled/Updated* {3D54B793-665E-3129-9103-206115370C8A}
      SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
      .
      .
      ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
      .
      .
      ---- Previous Run -------
      .
      Y:\Autorun.inf
      .
      .
      ((((((((((((((((((((((((( Files Created from 2011-05-12 to 2011-06-12 )))))))))))))))))))))))))))))))
      .
      .
      2011-06-12 08:10 . 2011-06-12 08:10 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
      2011-06-12 08:10 . 2011-06-12 08:10 -------- d-----w- c:\users\Default\AppData\Local\temp
      2011-06-12 02:58 . 2011-06-12 03:00 -------- d-----w- c:\users\TEMP
      2011-06-11 18:43 . 2011-06-11 18:43 -------- d-----w- c:\program files\ESET
      2011-06-11 14:23 . 2011-05-10 12:10 253888 ----a-w- c:\windows\system32\aswBoot.exe
      2011-06-11 14:22 . 2011-06-12 03:06 -------- d-----w- c:\programdata\AVAST Software
      2011-06-11 14:22 . 2011-06-11 14:22 -------- d-----w- c:\program files\AVAST Software
      2011-06-11 13:37 . 2011-06-11 13:37 388096 ----a-r- c:\users\Kmi\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
      2011-06-11 13:37 . 2011-06-11 13:37 -------- d-----w- c:\program files (x86)\Trend Micro
      2011-06-11 13:28 . 2011-06-11 13:28 -------- d-----w- c:\windows\system32\SPReview
      2011-06-11 13:23 . 2011-06-11 13:23 -------- d-----w- c:\windows\system32\EventProviders
      2011-06-11 13:09 . 2011-06-11 13:09 -------- d-----w- c:\users\Kmi\AppData\Local\{19E2ADF8-102A-418E-94EB-0F275E60097F}
      2011-06-11 03:05 . 2011-06-11 03:05 -------- d-----w- c:\users\Kmi\AppData\Roaming\Malwarebytes
      2011-06-11 03:05 . 2011-06-11 03:05 -------- d-----w- c:\programdata\Malwarebytes
      2011-06-11 03:05 . 2011-05-29 14:11 39984 ----a-w- c:\windows\SysWow64\drivers\mbamswissarmy.sys
      2011-06-11 03:05 . 2011-06-11 03:05 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
      2011-06-11 03:05 . 2011-05-29 14:11 25912 ----a-w- c:\windows\system32\drivers\mbam.sys
      2011-06-10 23:53 . 2011-06-10 23:53 -------- d-----w- c:\users\Kmi\AppData\Local\{8FF92413-6DAA-4F7F-89E1-DBD29130BAFC}
      2011-06-10 12:47 . 2011-06-10 12:47 -------- d-----w- c:\users\Kmi\AppData\Local\{846A6FAB-B447-43A3-BED5-175F926EC49C}
      2011-06-10 12:06 . 2011-06-12 05:53 -------- d-----w- c:\program files (x86)\Spybot - Search & Destroy
      2011-06-10 12:06 . 2011-06-12 05:53 -------- d-----w- c:\programdata\Spybot - Search & Destroy
      2011-06-10 11:34 . 2011-06-10 11:34 -------- d-----w- c:\users\Kmi\AppData\Local\{48A66C9F-2A97-498C-9D1A-3DF43B885611}
      2011-06-09 22:38 . 2011-06-09 22:38 -------- d-----w- c:\windows\Sun
      2011-06-09 20:37 . 2011-06-09 20:46 -------- d-----w- c:\program files\Babylon
      2011-06-09 20:35 . 2011-06-09 20:41 -------- d-----w- c:\users\Kmi\AppData\Local\MediaGet2
      2011-06-09 20:32 . 2011-06-09 20:32 -------- d-----w- c:\users\Kmi\LuminanceHDR
      2011-06-09 20:29 . 2011-06-09 20:29 86528 --sha-r- c:\windows\SysWow64\DHCPQECE.dll
      2011-06-09 20:19 . 2011-06-09 20:19 -------- d-----w- c:\programdata\Artizen
      2011-06-09 20:17 . 2011-06-09 20:17 -------- d-----w- c:\users\Kmi\AppData\Roaming\HDRsoft
      2011-06-09 13:26 . 2011-06-09 13:26 -------- d-----w- c:\users\Kmi\AppData\Local\{DC151A93-DE78-4DC3-B088-048AAF18EEDF}
      2011-06-08 12:31 . 2011-06-08 12:32 -------- d-----w- c:\users\Kmi\AppData\Local\{77243B69-C2D5-45DC-9F7A-09B4FD806E84}
      2011-06-07 21:47 . 2011-06-07 21:47 -------- d-----w- c:\users\Kmi\AppData\Local\{37D81609-B832-41F9-BEED-A87B97CE61D6}
      2011-06-07 20:22 . 2011-06-07 20:22 -------- d-----w- c:\users\Kmi\AppData\Local\{D31FDF8A-8159-4BB9-8584-19C81504B6F5}
      2011-06-07 01:00 . 2011-06-07 01:00 -------- d-----w- c:\program files (x86)\Rovio
      2011-06-06 23:32 . 2010-11-20 13:33 63360 ----a-w- c:\windows\system32\drivers\termdd.sys
      2011-06-06 23:31 . 2010-11-20 12:21 189952 ----a-w- c:\windows\SysWow64\wdscore.dll
      2011-06-06 23:31 . 2010-11-20 12:17 209920 ----a-w- c:\windows\SysWow64\PkgMgr.exe
      2011-06-06 23:31 . 2010-11-20 12:18 323072 ----a-w- c:\windows\SysWow64\drvstore.dll
      2011-06-06 23:31 . 2010-11-20 12:18 257024 ----a-w- c:\windows\SysWow64\dpx.dll
      2011-06-06 23:31 . 2010-11-20 12:21 363008 ----a-w- c:\windows\SysWow64\wbemcomn.dll
      2011-06-06 23:31 . 2010-11-20 12:19 606208 ----a-w- c:\windows\SysWow64\wbem\fastprox.dll
      2011-06-06 23:30 . 2010-11-20 13:27 524288 ----a-w- c:\windows\system32\wmicmiplugin.dll
      2011-06-06 23:30 . 2010-11-20 13:27 529408 ----a-w- c:\windows\system32\wbemcomn.dll
      2011-06-06 23:30 . 2010-11-20 13:27 1225216 ----a-w- c:\windows\system32\wbem\wbemcore.dll
      2011-06-06 23:29 . 2010-11-20 13:27 933376 ----a-w- c:\windows\system32\SmiEngine.dll
      2011-06-06 23:29 . 2010-11-20 13:25 199168 ----a-w- c:\windows\system32\PkgMgr.exe
      2011-06-06 23:29 . 2010-11-20 13:26 422912 ----a-w- c:\windows\system32\drvstore.dll
      2011-06-06 23:29 . 2010-11-20 13:26 399872 ----a-w- c:\windows\system32\dpx.dll
      2011-06-06 22:27 . 2011-06-06 22:28 -------- d-----w- c:\users\Kmi\AppData\Local\{8143FFD1-B421-4EC3-86DA-AC9DEC99CACE}
      2011-06-06 11:38 . 2011-06-06 11:38 -------- d-----w- c:\users\Kmi\AppData\Local\{97F37C01-5BC1-4EB6-B945-47957C3FE5F6}
      2011-06-05 21:14 . 2011-06-05 21:14 -------- d-----w- c:\users\Kmi\AppData\Local\{DBF222F8-03D8-47C2-A8D6-859FBD7459C2}
      2011-06-05 13:23 . 2011-06-05 13:23 -------- d-----w- c:\users\Kmi\AppData\Local\{7853AF10-146A-4FAB-9C42-5457614B90D0}
      2011-06-05 12:14 . 2011-06-05 12:14 -------- d-----w- c:\users\Kmi\AppData\Local\{E360E0D4-11EC-4E01-B3A6-C267FBEAC286}
      2011-06-04 13:02 . 2011-06-04 13:03 -------- d-----w- c:\users\Kmi\AppData\Local\{9703D3C6-37F4-4472-A2F7-291D564C68FE}
      2011-06-03 23:24 . 2011-06-03 23:24 -------- d-----w- c:\users\Kmi\AppData\Local\{C439BC81-EB53-45EC-A6EB-2984C71DAA54}
      2011-06-03 22:55 . 2011-06-03 22:55 -------- d-----w- c:\users\Kmi\AppData\Local\{BFC07D1B-C4EE-4CFB-AB27-A6782A58DBA7}
      2011-06-03 12:26 . 2011-06-03 12:26 -------- d-----w- c:\users\Kmi\AppData\Local\{D9B71119-9F11-40EB-BE87-BCA7AA6D0A9A}
      2011-06-02 23:37 . 2011-06-02 23:37 -------- d-----w- c:\users\Kmi\AppData\Local\{EDCC8235-A96D-4202-9478-E2605EA038BD}
      2011-06-02 11:30 . 2011-06-02 11:31 -------- d-----w- c:\users\Kmi\AppData\Local\{98BB9CF5-BFCC-42DB-9C81-B03884783609}
      2011-06-01 12:49 . 2011-06-01 12:50 -------- d-----w- c:\users\Kmi\AppData\Local\{9D755BCC-183A-4C72-9676-98E63D6D91D0}
      2011-06-01 00:49 . 2011-06-01 00:49 -------- d-----w- c:\users\Kmi\AppData\Local\{EF05CF29-AAA4-45F3-B7E4-A9387AEF8EF5}
      2011-06-01 00:02 . 2011-06-01 00:02 -------- d-----w- c:\users\Kmi\AppData\Local\{B69ADD80-BEBF-4D55-9017-43F718B00E3B}
      2011-05-30 14:57 . 2011-05-30 14:57 -------- d-----w- c:\users\Kmi\AppData\Local\{E92840F6-3654-468C-87F0-654E6C26F115}
      2011-05-30 09:22 . 2011-05-30 09:22 -------- d-----w- c:\users\Kmi\AppData\Local\{AD39D3C4-6440-423B-AB19-BCF4AB9E573A}
      2011-05-29 19:39 . 2011-05-29 19:39 -------- d-----w- c:\users\Kmi\AppData\Local\{7A04F806-9E27-4229-BEB9-28D9C76F7981}
      2011-05-29 10:55 . 2011-05-29 10:55 -------- d-----w- c:\users\Kmi\AppData\Local\{20163CD0-A0D4-422E-B49A-03818EA8FD63}
      2011-05-28 18:56 . 2011-05-28 18:56 -------- d-----w- c:\windows\SysWow64\wbem\en-US
      2011-05-28 18:56 . 2011-05-28 18:56 -------- d-----w- c:\windows\system32\wbem\en-US
      2011-05-28 13:09 . 2011-05-28 13:10 -------- d-----w- c:\users\Kmi\AppData\Local\{FB65DA64-D009-45E7-9196-539D3C49B7E4}
      2011-05-27 20:05 . 2011-05-27 20:05 -------- d-----w- c:\users\Kmi\AppData\Local\{6C429516-0F85-4BC3-B800-ABB8F9F8123A}
      2011-05-27 14:54 . 2011-05-27 14:54 -------- d-----w- c:\windows\SysWow64\Adobe
      2011-05-27 01:27 . 2011-05-27 01:27 -------- d-----w- c:\users\Kmi\AppData\Local\{33848236-0698-4AC1-A652-5A851CB8F136}
      2011-05-26 13:26 . 2011-05-26 13:26 -------- d-----w- c:\users\Kmi\AppData\Local\{E2007F0E-049E-4B42-BBC5-B1F872D2DA07}
      2011-05-25 22:29 . 2011-04-22 22:15 27520 ----a-w- c:\windows\system32\drivers\Diskdump.sys
      2011-05-25 22:24 . 2011-05-25 22:25 -------- d-----w- c:\users\Kmi\AppData\Local\{14B9A5C9-DB70-41AC-9908-49F88578CFCF}
      2011-05-25 12:03 . 2011-05-25 12:03 -------- d-----w- c:\users\Kmi\AppData\Local\{14759DE1-65C2-4DAE-871C-9B97E5378776}
      2011-05-25 00:00 . 2011-06-09 00:23 -------- d-----w- c:\program files\Dell Support Center
      2011-05-24 23:34 . 2011-05-24 23:34 -------- d-----w- c:\users\Kmi\AppData\Local\{53E3CCBF-B2BA-433F-8A37-7CB82BE1E6DD}
      2011-05-24 11:10 . 2011-05-24 11:11 -------- d-----w- c:\users\Kmi\AppData\Local\{EB932D3B-3F66-4D09-9BC6-84AB299C9AC4}
      2011-05-23 22:33 . 2011-05-23 22:33 -------- d-----w- c:\users\Kmi\AppData\Local\{DA644467-4BFD-475F-BFE5-1EB4F3A256B0}
      2011-05-23 13:31 . 2011-05-23 13:31 -------- d-----w- c:\users\Kmi\AppData\Local\{411B56D7-ACE9-4EDB-A760-282E95167B47}
      2011-05-23 08:05 . 2011-05-23 08:05 -------- d-----w- c:\users\Kmi\AppData\Local\{8286535E-5975-4837-AA2E-6726E8BF635E}
      2011-05-22 14:49 . 2011-05-22 14:49 -------- d-----w- c:\users\Kmi\AppData\Local\{7362B4FB-FB0E-4DB2-ACC7-42D445B48EF6}
      2011-05-21 20:08 . 2011-05-21 20:08 -------- d-----w- c:\users\Kmi\AppData\Local\{A4594944-606F-4121-A5D7-0BB3BC64E2F7}
      2011-05-21 13:20 . 2011-05-21 13:20 -------- d-----w- c:\users\Kmi\AppData\Local\{59649DED-C32A-436B-8E4F-6F1B070E8136}
      2011-05-21 01:07 . 2011-05-21 01:08 -------- d-----w- c:\users\Kmi\AppData\Local\{709E53BF-FFE0-4F95-AB09-FB5599E6161D}
      2011-05-20 12:42 . 2011-05-20 12:42 -------- d-----w- c:\users\Kmi\AppData\Local\{989A447E-3B83-4AE9-A811-4704D07074F0}
      2011-05-19 22:32 . 2011-05-19 22:32 -------- d-----w- c:\users\Kmi\AppData\Local\{140FAB31-013C-4686-BE43-339E1C942034}
      2011-05-19 00:33 . 2011-04-09 06:58 142336 ----a-w- c:\windows\system32\poqexec.exe
      2011-05-19 00:33 . 2011-04-09 05:56 123904 ----a-w- c:\windows\SysWow64\poqexec.exe
      2011-05-19 00:29 . 2011-05-19 00:29 -------- d-----w- c:\users\Kmi\AppData\Local\{66EF7C4A-FE9A-41BB-9640-51BA62C854EE}
      2011-05-18 12:28 . 2011-05-18 12:28 -------- d-----w- c:\users\Kmi\AppData\Local\{E77B04EF-8945-4720-8228-8ECD55A6D065}
      2011-05-18 00:26 . 2011-05-18 00:26 -------- d-----w- c:\users\Kmi\AppData\Local\{E202EE81-1308-4389-9455-1902BFA00766}
      2011-05-16 22:27 . 2011-05-16 22:27 -------- d-----w- c:\users\Kmi\AppData\Local\{315E7467-439A-4AAA-863A-9B41D3792A6E}
      2011-05-16 13:29 . 2011-05-16 13:30 -------- d-----w- c:\users\Kmi\AppData\Local\{21DBAEDF-7E38-498F-8D8E-8448B4926D37}
      2011-05-15 20:50 . 2011-05-15 20:51 -------- d-----w- c:\users\Kmi\AppData\Local\{F82880BA-8A52-437A-891B-F6A4B9750E90}
      2011-05-15 02:29 . 2011-05-15 02:29 -------- d-----w- c:\users\Kmi\AppData\Local\{070FDFDE-0149-4152-A37A-522B5639EAD6}
      2011-05-14 14:15 . 2011-05-14 14:15 -------- d-----w- c:\users\Kmi\AppData\Local\{C89E6F9D-7698-445F-AA9A-FC215C17D000}
      2011-05-13 14:16 . 2011-05-13 14:17 -------- d-----w- c:\users\Kmi\AppData\Local\{0971A0CF-6FBE-4A2F-BF7E-DC11AF1A4A42}
      2011-05-13 14:16 . 2011-06-10 11:40 404640 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
      .
      .
      .
      (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
      .
      2011-06-11 13:35 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
      2011-06-11 13:35 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
      2011-04-21 16:09 . 2011-02-24 13:12 235 ----a-w- c:\windows\SysWow64\nxEuUninstall.bat
      2011-04-21 16:09 . 2011-02-24 13:12 446464 ----a-w- c:\windows\NEXON_EU_DownloaderUpdater.exe
      2011-04-14 19:01 . 2011-01-25 12:09 9984 ----a-w- c:\windows\system32\drivers\mfeclnk.sys
      2011-04-14 19:01 . 2010-01-06 00:04 94992 ----a-w- c:\windows\system32\drivers\mferkdet.sys
      2011-04-14 19:01 . 2010-01-06 00:04 75160 ----a-w- c:\windows\system32\drivers\mfenlfk.sys
      2011-04-14 19:01 . 2010-01-06 00:04 63056 ----a-w- c:\windows\system32\drivers\cfwids.sys
      2011-04-14 19:01 . 2010-01-06 00:04 530304 ----a-w- c:\windows\system32\drivers\mfehidk.sys
      2011-04-14 19:01 . 2010-01-06 00:04 441840 ----a-w- c:\windows\system32\drivers\mfefirek.sys
      2011-04-14 19:01 . 2010-01-06 00:04 283744 ----a-w- c:\windows\system32\drivers\mfewfpk.sys
      2011-04-14 19:01 . 2010-01-06 00:04 190520 ----a-w- c:\windows\system32\drivers\mfeavfk.sys
      2011-04-14 19:01 . 2010-01-06 00:04 121376 ----a-w- c:\windows\system32\drivers\mfeapfk.sys
      2011-04-09 23:55 . 2011-04-09 23:55 15453336 ----a-w- c:\windows\SysWow64\xlive.dll
      2011-04-09 23:55 . 2011-04-09 23:55 13642904 ----a-w- c:\windows\SysWow64\xlivefnt.dll
      2011-04-09 07:02 . 2011-05-11 17:18 5562240 ----a-w- c:\windows\system32\ntoskrnl.exe
      2011-04-09 06:02 . 2011-05-11 17:18 3967872 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe
      2011-04-09 06:02 . 2011-05-11 17:18 3912576 ----a-w- c:\windows\SysWow64\ntoskrnl.exe
      2011-03-30 17:12 . 2011-02-12 17:30 34624 ----a-w- c:\windows\system32\TURegOpt.exe
      2011-03-30 17:07 . 2011-02-12 17:30 25920 ----a-w- c:\windows\system32\authuitu.dll
      2011-03-30 17:07 . 2011-02-12 17:30 21312 ----a-w- c:\windows\SysWow64\authuitu.dll
      2011-03-30 17:07 . 2011-02-12 17:30 36160 ----a-w- c:\windows\system32\uxtuneup.dll
      2011-03-30 17:07 . 2011-02-12 17:30 29504 ----a-w- c:\windows\SysWow64\uxtuneup.dll
      2011-03-25 03:29 . 2011-05-11 17:17 343040 ----a-w- c:\windows\system32\drivers\usbhub.sys
      2011-03-25 03:29 . 2011-05-11 17:17 98816 ----a-w- c:\windows\system32\drivers\usbccgp.sys
      2011-03-25 03:29 . 2011-05-11 17:17 325120 ----a-w- c:\windows\system32\drivers\usbport.sys
      2011-03-25 03:29 . 2011-05-11 17:17 52736 ----a-w- c:\windows\system32\drivers\usbehci.sys
      2011-03-25 03:29 . 2011-05-11 17:17 25600 ----a-w- c:\windows\system32\drivers\usbohci.sys
      2011-03-25 03:29 . 2011-05-11 17:17 30720 ----a-w- c:\windows\system32\drivers\usbuhci.sys
      2011-03-25 03:28 . 2011-05-11 17:17 7936 ----a-w- c:\windows\system32\drivers\usbd.sys
      .
      .
      ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
      .
      .
      *Note* empty entries & legit default entries are not shown
      REGEDIT4
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
      "IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2010-03-04 284696]
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce]
      "Launcher"="c:\program files (x86)\Dell DataSafe Local Backup\Components\Scheduler\Launcher.exe" [2010-07-21 165184]
      "DSUpdateLauncher"="c:\program files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\hstart.exe" [2010-07-21 18240]
      "STToasterLauncher"="c:\program files (x86)\Dell DataSafe Local Backup\toasterLauncher.exe" [2010-07-21 122176]
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
      "ConsentPromptBehaviorAdmin"= 0 (0x0)
      "ConsentPromptBehaviorUser"= 3 (0x3)
      "EnableUIADesktopToggle"= 0 (0x0)
      "PromptOnSecureDesktop"= 0 (0x0)
      .
      [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
      "AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
      .
      [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
      "mixer6"=wdmaud.drv
      .
      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
      Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
      .
      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
      @=""
      .
      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
      @=""
      .
      [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-]
      "Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
      "AdobeCS5ServiceManager"="c:\program files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
      "Dell DataSafe Online"="c:\program files (x86)\Dell DataSafe Online\DataSafeOnline.exe" /m
      "Desktop Disc Tool"="c:\program files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe"
      "SwitchBoard"=c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
      "RoxWatchTray"="c:\program files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe"
      "Dell Webcam Central"="c:\program files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2
      .
      R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
      R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
      R2 gupdate;Servicio de actualización de Google (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-02-08 136176]
      R2 RoxWatch12;Roxio Hard Drive Watcher 12;c:\program files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe [2010-09-04 219632]
      R3 btwampfl;Bluetooth AMP USB Filter;c:\windows\system32\drivers\btwampfl.sys [x]
      R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [x]
      R3 gupdatem;Google Update Servicio (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-02-08 136176]
      R3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys [x]
      R3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys [x]
      R3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;c:\program files\Intel\WiFi\bin\PanDhcpDns.exe [2010-03-05 340240]
      R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [x]
      R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-10 4925184]
      R3 RoxMediaDB12OEM;RoxMediaDB12OEM;c:\program files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe [2010-09-04 1116656]
      R3 SwitchBoard;SwitchBoard;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
      R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
      R3 TurboBoost;TurboBoost;c:\program files\Intel\TurboBoost\TurboBoost.exe [2009-11-02 126352]
      R3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [x]
      R3 WatAdminSvc;Servicio de tecnologías de activación de Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
      R3 WinPhlash;WinPhlash;c:\users\Kmi\AppData\Local\Temp\Winphlash64\PHLASHNT.SYS [x]
      R4 McOobeSv;McAfee OOBE Service;c:\program files\Common Files\mcafee\McSvcHost\McSvHost.exe [2010-03-10 355440]
      R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]
      S0 mfewfpk;McAfee Inc. mfewfpk;c:\windows\system32\drivers\mfewfpk.sys [x]
      S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys [x]
      S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys [x]
      S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [x]
      S0 stdcfltn;Disk Class Filter Driver for Accelerometer;c:\windows\system32\DRIVERS\stdcfltn.sys [x]
      S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [x]
      S1 mfenlfk;McAfee NDIS Light Filter;c:\windows\system32\DRIVERS\mfenlfk.sys [x]
      S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
      S2 AERTFilters;Andrea RT Filters Service;c:\program files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-17 98208]
      S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2010-02-28 821664]
      S2 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [x]
      S2 ekrn;ESET Service;c:\program files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2010-08-12 810144]
      S2 epfwwfpr;epfwwfpr;c:\windows\system32\DRIVERS\epfwwfpr.sys [x]
      S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-04 13336]
      S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2011-05-29 366640]
      S2 McMPFSvc;McAfee Servicio Personal Firewall;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe [2010-03-10 355440]
      S2 McNaiAnn;McAfee VirusScan Announcer;c:\program files\Common Files\mcafee\McSvcHost\McSvHost.exe [2010-03-10 355440]
      S2 mfefire;McAfee Firewall Core Service;c:\program files\Common Files\McAfee\SystemCore\\mfefire.exe [2011-04-14 245352]
      S2 mfevtp;McAfee Validation Trust Protection Service;c:\program files\Common Files\McAfee\SystemCore\mfevtps.exe [2011-04-14 149032]
      S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2010-08-25 1620584]
      S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2010-04-24 483688]
      S2 SftService;SoftThinks Agent Service;c:\program files (x86)\Dell DataSafe Local Backup\sftservice.EXE [2010-08-20 689472]
      S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2010-08-25 235624]
      S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe [2011-03-30 2026304]
      S2 TurboB;Turbo Boost UI Monitor driver;c:\windows\system32\DRIVERS\TurboB.sys [x]
      S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-06-30 2533400]
      S3 Acceler;Accelerometer Service;c:\windows\system32\DRIVERS\Accelern.sys [x]
      S3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys [x]
      S3 CtClsFlt;Creative Camera Class Upper Filter Driver;c:\windows\system32\DRIVERS\CtClsFlt.sys [x]
      S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [x]
      S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [x]
      S3 IntcDAud;Sonido Intel(R) para pantallas;c:\windows\system32\DRIVERS\IntcDAud.sys [x]
      S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x]
      S3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys [x]
      S3 NETw5s64;Controlador del adaptador Intel(R) Wireless WiFi Link para Windows 7 de 64 bits;c:\windows\system32\DRIVERS\NETw5s64.sys [x]
      S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [x]
      S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [x]
      S3 qicflt;upper Device Filter Driver;c:\windows\system32\DRIVERS\qicflt.sys [x]
      S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
      S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys [x]
      S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys [x]
      S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys [x]
      S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys [x]
      S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2010-04-24 209768]
      S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys [2010-11-30 11856]
      S3 wdkmd;Intel WiDi KMD;c:\windows\system32\DRIVERS\WDKMD.sys [x]
      .
      .
      --- Other Services/Drivers In Memory ---
      .
      *Deregistered* - mfeavfk01
      .
      Contents of the 'Scheduled Tasks' folder
      .
      2011-06-12 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
      - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-02-08 18:40]
      .
      2011-06-12 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
      - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-02-08 18:40]
      .
      2011-05-25 c:\windows\Tasks\PCDoctorBackgroundMonitorTask.job
      - c:\program files\Dell Support Center\uaclauncher.exe [2011-05-16 22:16]
      .
      2011-06-11 c:\windows\Tasks\SystemToolsDailyTest.job
      - c:\program files\Dell Support Center\uaclauncher.exe [2011-05-16 22:16]
      .
      .
      --------- x86-64 -----------
      .
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2010-11-09 6539880]
      "RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2010-11-03 2181224]
      "NVHotkey"="c:\windows\system32\nvHotkey.dll" [2010-08-25 283240]
      "IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-09-02 161304]
      "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-09-02 386584]
      "IntelWireless"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2010-03-05 1928976]
      "egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2010-08-12 2916584]
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
      "LoadAppInit_DLLs"=0x1
      "AppInit_DLLs"=c:\windows\System32\nvinitx.dll
      .
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
      UxTuneUp
      .
      ------- Supplementary Scan -------
      .
      uLocal Page = c:\windows\system32\blank.htm
      uStart Page = hxxp://www.google.com/
      mLocal Page = c:\windows\SysWOW64\blank.htm
      TCP: DhcpNameServer = 192.168.4.1
      TCP: Interfaces\{1453EB8E-7DC3-48E4-8D02-9BA16DBA5157}: NameServer = 208.67.222.222,208.67.220.220
      TCP: Interfaces\{1453EB8E-7DC3-48E4-8D02-9BA16DBA5157}\A6E6E627374757666637: NameServer = 208.67.222.222,208.67.220.220
      FF - ProfilePath - c:\users\Kmi\AppData\Roaming\Mozilla\Firefox\Profiles\ivtkahws.default\
      FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/
      FF - prefs.js: keyword.URL - hxxp://start.facemoods.com/results.php?f=5&a=ddr&q=
      FF - user.js: network.http.max-persistent-connections-per-server - 4
      FF - user.js: nglayout.initialpaint.delay - 600
      FF - user.js: content.notify.interval - 600000
      FF - user.js: content.max.tokenizing.time - 1800000
      FF - user.js: content.switch.threshold - 600000
      .
      - - - - ORPHANS REMOVED - - - -
      .
      Toolbar-Locked - (no file)
      Toolbar-Locked - (no file)
      AddRemove-Adobe Shockwave Player - c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe
      .
      .
      .
      Completion time: 2011-06-12 03:21:16
      ComboFix-quarantined-files.txt 2011-06-12 08:21
      .
      Pre-Run: 18.093.600.768 bytes libres
      Post-Run: 17.599.827.968 bytes libres
      .
      - - End Of File - - 2DD634B43391E71168F70B9AA62A70EE
      Última edición por Sir.K fecha: 12/06/11 a las 05:41:52

    4. #4
      Moderador Gral.
      Avatar de Tyny's
      Registrado
      may 2008
      Ubicación
      Argentina
      Mensajes
      14.671

      Re: Se me abren paginas de publicidad en IE y Firefox

      Buenas.


      Como funciona tu navegador.


      Salu2
      If on your journey, you should encounter God, God will be cut!


      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    5. #5
      Usuario Avatar de Sir.K
      Registrado
      jun 2011
      Ubicación
      Bucaramanga
      Mensajes
      3

      Re: Se me abren paginas de publicidad en IE y Firefox

      muchas gracias Tyny's. Funciona muy muy bien. No hay rastros de ningún malware.

      Gracias nuevamente

    6. #6
      Moderador Gral.
      Avatar de Tyny's
      Registrado
      may 2008
      Ubicación
      Argentina
      Mensajes
      14.671

      Re: Se me abren paginas de publicidad en IE y Firefox

      Para terminar solo te quedaría desinstalar CF de la siguiente manera:

      • Ir a Inicio > Ejecutar
      • Escribir lo siguiente: ComboFix /Uninstall como muestra la imagen debajo:

      • Esto activara el desinstalador de ComboFix abriendo su pantalla principal y luego de unos segundos veras ("ComboFix is uninstalled")


      Si este procedimiento Falla Descarga OTC.exe en el escritorio. Lo ejecutas y presionas Cleanup.



      Consejos Utiles





      ____________________________

      **Tema solucionado** Si queres reabrir el tema hace clic aquique un moderador atendera tu consulta.
      Como recomendación final, te invitamos a seguirnos en nuestros canales de difusión: Blog, Twitter, Facebook, vía E-Mail, para estar al tanto de los nuevos malwares y como prevenirlos.

      Saludos.
      Atentamente
      El Equipo de InfoSpyware
      www.infospyware.com
      www.forospyware.com

      Twitter: @InfoSpyware
      If on your journey, you should encounter God, God will be cut!


      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.