• Registrarse
  • Iniciar sesión


  • Bienvenidos al Foro de InfoSpyware


    La mayor comunidad en idioma español de:


    •  » Información, Consejos y Ayuda
    •  » Para Detectar, Protegerse y Eliminar:
    •  » Virus, Spywares, Adwares, Troyanos, Rogues,
    •  » Rootkits, Keygens, Gusanos, Ransomwares, Falsos AVs,

    • ...Malwares en general y otras amenazas que inundan la internet


      Regístrese para solicitar ayuda personalizada, o siga guías de ayuda.


      Registrarse    Solicitar Ayuda


      p.s.: Pueden seguirnos en nuestras vías de difusión: Twitter, G+, Blog, Facebook.

    Página 1 de 5 12345 ÚltimoÚltimo
    Resultados 1 al 10 de 42

    Problemas con el polifix (Solucionado)

    Resumen del tema: Problemas con el polifix (Solucionado) - Hola muy buenas. Se me bloqueó el ordenador por culpa del virus del sgae (el que no te deja hacer nada salvo pagar 50€ para desbloquearlo). Intenté limpiar el pc con la herramienta del polifix,pero ...

      
    1. #1
      Usuario Avatar de Wood_04
      Registrado
      jun 2012
      Ubicación
      Barcelona
      Mensajes
      23

      Problemas con el polifix (Solucionado)

      Hola muy buenas.
      Se me bloqueó el ordenador por culpa del virus del sgae (el que no te deja hacer nada salvo pagar 50€ para desbloquearlo).
      Intenté limpiar el pc con la herramienta del polifix,pero no me ha funcionado
      Exáctamente lo que hice fué lo siguiente:
      - En un pc limpio, introduje el programa polifix.exe en un usb.
      - Encender el pc infectado en modo seguro con el simbolo del sistema.
      - Conectar el usb en el pc infectado.
      - Esperar 1 min aprox.
      - Poner el comando diskpart, luego el list volume y finalmente el exit.
      - Poner el comando (en mi caso) L:.
      - Poner el comando "polifix.exe" (con comillas).
      - Y reiniciar el pc (en este paso a lo mejor es donde he podido fallar, porque lo que hice fue apretar directamente el botón de encender del pc para apagar y después apretarlo otra vez para encenderlo, porque no sé otra forma de salir en modo seguro con simbolo de comando).

      Salvo en reiniciar no sé donde he podido fallar, y si no he fallado en nada, qué podría hacer para solucionar este problema?
      Soy bastante ignorante con estos temas, por favor, me lo podríais explicar paso a paso?
      Muchas gracias.

    2. #2
      Moderador
      Avatar de Javierhf
      Registrado
      jun 2006
      Ubicación
      España - Madrid
      Mensajes
      10.492

      Re: Problemas con el polifix

      Buenas Wood_04. al Foro.

      Temas que interesa revisar y leer :

      Consejos para antes de publicar un nuevo mensaje.

      Políticas del Foro de InfoSpyware.

      Políticas Foro Oficial de HijackThis en español.

      ¿Cómo subir imágenes al Foro? *TUTORIAL*
      ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

      Ahora vamos al problema :

      Por lo que indicas aquí :
      Cita Originalmente publicado por Wood_04 Ver Mensaje
      - Encender el pc infectado en modo seguro con el simbolo del sistema.
      - Conectar el usb en el pc infectado.
      - Esperar 1 min aprox.
      - Poner el comando diskpart, luego el list volume y finalmente el exit.
      - Poner el comando (en mi caso) L:.
      - Poner el comando "polifix.exe" (con comillas).
      - Y reiniciar el pc (en este paso a lo mejor es donde he podido fallar, porque lo que hice fue apretar directamente el botón de encender del pc para apagar y después apretarlo otra vez para encenderlo, porque no sé otra forma de salir en modo seguro con simbolo de comando).

      Salvo en reiniciar no sé donde he podido fallar, y si no he fallado en nada, qué podría hacer para solucionar este problema?
      Soy bastante ignorante con estos temas, por favor, me lo podríais explicar paso a paso?
      Muchas gracias.
      Creo que hay algo que no has entendido, en principio, tu debes esperar a que Polifix te Reinicie el equipo o te salga una indicación/cartel indicándote que esto va a suceder.

      Y lo que yo entiendo es que tú provocas el Reinicio, con lo que no dejas que Polifix haga totalmente su trabajo.

      Repite los pasos y espera el Reinicio de la maquina.

      Luego nos pones el informe del Polifix.

      Saludos.
      ~~ Quien no lo intenta, no lo Consigue. |;-) ~~

      Blog | Antivirus Online | Eliminar Malwares | Antivirus Gratis
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las últimas amenazas de la red desde >> InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso está el foro.

    3. #3
      Usuario Avatar de Wood_04
      Registrado
      jun 2012
      Ubicación
      Barcelona
      Mensajes
      23

      Re: Problemas con el polifix

      En primer lugar gracias por ayudarme.
      Tengo una pregunta.
      ¿Es normal que cuando intruduzco el comando "polifix.exe" aparezca una ventana de color azul (me imagino que será la de polifix) y de repente desaparezca? lo único que tengo es el sitio para poner los comandos.
      Otra cosa, a pesar de que desparezca la ventana azul, he esperado un buen rato, por ahora llevo 1 hora para ver si se reinicia, pero lo único que he conseguido es que se me ha apagado la pantalla, he movido el ratón, pero nada, sigue apagada. ¿Es eso normal? (en estos momentos aún lo tengo así, esperando a que haga algo).

    4. #4
      Moderador
      Avatar de Javierhf
      Registrado
      jun 2006
      Ubicación
      España - Madrid
      Mensajes
      10.492

      Re: Problemas con el polifix

      Pues efectivamente, eso que indicas NO es NORMAL.

      Reinicia el ordenador y comprueba si existe el informe de Polifix, de estar deberías encontrarlo en "C:\PoliFix-log.txt", si lo encuentras pon el informe en tu próxima respuesta.

      Y a continuación realiza estos pasos :

      Descarga OTL By OldTimer

      >>> Para Ejecutar OTL

      • Cerrar todos programas que tengas abiertos y hacer doble click en el ícono de OTL para ejecutarlo.
      • Dejarlo correr y esperar a que aparezca el menú de OTL..
      • Cuando salga el menú de OTL, debes cambiar debajo de: "Tipo de Análisis" poniendo Resultado Mínimo.
      • Marcar la casilla Analizar Todos.
      • Marcar las opciones: Buscar LOP y Buscar Purity.
      • Marcar las Opciones >> Omitir Archivos De Microsoft y Usar Listado de Compañías Reconocidas.
      • Copiar y Pegar las lineas del siguiente script bajo la casilla Análisis Personalizados/Código de Reparación:

        NOTA: No copiar la palabra Cita.
        netsvcs
        msconfig
        %SYSTEMDRIVE%\*.*
        CREATERESTOREPOINT
      • Por favor No cambies el resto de la configuración a menos que te lo solicitemos.

      • Presionar el botón >> .
      • Una vez que termine, se abrirán dos (2) archivos, OTL.Txt y Extras.Txt. Éstos archivos estarán grabados en el mismo lugar donde OTL.exe fue descargado.
      • Copiar y pegar el contenido del archivo OTL.txt en tu próxima respuesta.



      Saludos, Javier.
      ~~ Quien no lo intenta, no lo Consigue. |;-) ~~

      Blog | Antivirus Online | Eliminar Malwares | Antivirus Gratis
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las últimas amenazas de la red desde >> InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso está el foro.

    5. #5
      Usuario Avatar de Wood_04
      Registrado
      jun 2012
      Ubicación
      Barcelona
      Mensajes
      23

      Re: Problemas con el polifix

      Tengo unas dudas, el OTL.exe supongo que lo tengo que ejecutar en el pc infectado, ¿verdad? si ése es el caso, ¿cómo lo hago, en modo seguro con el símbolo de sistema?
      Por cierto, el informe que me ha generado el polifix es es siguiente:


      #################################################### PoliFix by InfoSpyware ############

      PoliFix Versión 2.0.3 By InfoSpyware
      Windows 7 32 Bits
      Fecha: 03/06/2012
      Hora: 18:00:18
      java version "1.7.0"

    6. #6
      Moderador
      Avatar de Javierhf
      Registrado
      jun 2006
      Ubicación
      España - Madrid
      Mensajes
      10.492

      Re: Problemas con el polifix

      Cita Originalmente publicado por Wood_04 Ver Mensaje
      Tengo unas dudas, el OTL.exe supongo que lo tengo que ejecutar en el pc infectado, ¿verdad? si ése es el caso, ¿cómo lo hago, en modo seguro con el símbolo de sistema?
      Correcto lo tienes que pasar en el pc infectado.

      Y hazlo desde el modo seguro, con el que podías entrar a windows.

      Si solo te deja desde ese modo que indicas, pues entras por ahí, pero si te deja entrar en modo seguro con conexiones de red por ej. inténtalo desde ese.

      Saludos.
      Última edición por Javierhf fecha: 04/06/12 a las 08:06:10
      ~~ Quien no lo intenta, no lo Consigue. |;-) ~~

      Blog | Antivirus Online | Eliminar Malwares | Antivirus Gratis
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las últimas amenazas de la red desde >> InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso está el foro.

    7. #7
      Usuario Avatar de Wood_04
      Registrado
      jun 2012
      Ubicación
      Barcelona
      Mensajes
      23

      Re: Problemas con el polifix

      Lo he podido hacer en Modo Seguro con conexiones de red.
      Éste es el informe OTL.txt:


      OTL logfile created on: 04/06/2012 14:20:58 - Run 1
      OTL by OldTimer - Version 3.2.46.0 Folder = C:\Users\Alberto\Desktop
      64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
      Internet Explorer (Version = 9.0.8112.16421)
      Locale: 00000c0a | Country: España | Language: ESN | Date Format: dd/MM/yyyy

      5,99 Gb Total Physical Memory | 5,07 Gb Available Physical Memory | 84,60% Memory free
      11,98 Gb Paging File | 11,11 Gb Available in Paging File | 92,71% Paging File free
      Paging file location(s): ?:\pagefile.sys [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
      Drive C: | 457,95 Gb Total Space | 55,12 Gb Free Space | 12,04% Space Free | Partition Type: NTFS
      Drive D: | 458,46 Gb Total Space | 8,19 Gb Free Space | 1,79% Space Free | Partition Type: NTFS
      Drive L: | 962,09 Mb Total Space | 961,06 Mb Free Space | 99,89% Space Free | Partition Type: FAT32

      Computer Name: ALBERTO-PC | User Name: Alberto | Logged in as Administrator.
      Boot Mode: SafeMode with Networking | Scan Mode: All users | Include 64bit Scans
      Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

      ========== Processes (SafeList) ==========

      PRC - C:\Users\Alberto\Desktop\OTL.exe (OldTimer Tools)
      PRC - C:\Program Files (x86)\Ono\Centro de Servicios\ServicepointService.exe (Radialpoint Inc.)
      PRC - C:\Program Files (x86)\Ono\Servicios de seguridad Centinela ONO\RpsSecurityAwareR.exe (ONO)


      ========== Modules (No Company Name) ==========


      ========== Win32 Services (SafeList) ==========

      SRV:64bit: - (Mcx2Svc) -- C:\Windows\SysNative\Mcx2Svc.dll (Microsoft Corporation)
      SRV:64bit: - (RemoteAccess) -- C:\Windows\SysNative\mprdim.dll (Microsoft Corporation)
      SRV - (SkypeUpdate) -- C:\Program Files (x86)\Skype\Updater\Updater.exe (Skype Technologies)
      SRV - (scan) -- C:\Program Files (x86)\Ono\Servicios de seguridad Centinela ONO\BitDefender\scan.dll (S.C. BitDefender S.R.L)
      SRV - (BBSvc) -- C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE (Microsoft Corporation.)
      SRV - (BBUpdate) -- C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Microsoft Corporation)
      SRV - (!SASCORE) -- C:\Archivos de programa\SUPERAntiSpyware\SASCore64.exe (SUPERAntiSpyware.com)
      SRV - (ServicepointService) -- C:\Program Files (x86)\Ono\Centro de Servicios\ServicepointService.exe (Radialpoint Inc.)
      SRV - (Stereo Service) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
      SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
      SRV - (Radialpoint Security Services) -- C:\Program Files (x86)\Ono\Servicios de seguridad Centinela ONO\RpsSecurityAwareR.exe (ONO)
      SRV - (RP_FWS) -- C:\Program Files (x86)\Ono\Servicios de seguridad Centinela ONO\Fws.exe (ONO)
      SRV - (RadialpointIDSAgent) -- C:\Program Files (x86)\Ono\Servicios de seguridad Centinela ONO\AVG\Identity Protection\agent\Bin\AVGIDSAgent.exe (AVG Technologies CZ, s.r.o.)
      SRV - (FLEXnet Licensing Service) -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Macrovision Europe Ltd.)
      SRV - (RemoteAccess) -- C:\Windows\SysWOW64\mprdim.dll (Microsoft Corporation)
      SRV - (Updater Service) -- C:\Archivos de programa\Packard Bell\Packard Bell Updater\UpdaterService.exe (Acer)
      SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
      SRV - (clr_optimization_v2.0.50727_64) -- C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
      SRV - (PDEngine) -- C:\Archivos de programa\Raxco\PerfectDisk10\PDEngine.exe (Raxco Software, Inc.)
      SRV - (PDAgent) -- C:\Archivos de programa\Raxco\PerfectDisk10\PDAgent.exe (Raxco Software, Inc.)
      SRV - (Greg_Service) -- C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe (Acer Incorporated)
      SRV - (AdobeActiveFileMonitor7.0) -- c:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe (Adobe Systems Incorporated)
      SRV - (SSScsiSV) -- C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SSScsiSV.exe (Sony Corporation)
      SRV - (SonicStage Back-End Service) -- C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SsBeSvc.exe (Sony Corporation)
      SRV - (MSCSPTISRV) -- C:\Program Files (x86)\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe (Sony Corporation)
      SRV - (SPTISRV) -- C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SPTISRV.exe (Sony Corporation)
      SRV - (PACSPTISVR) -- C:\Program Files (x86)\Common Files\Sony Shared\AVLib\PACSPTISVR.exe ()


      ========== Driver Services (SafeList) ==========

      DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
      DRV:64bit: - (USBAAPL64) -- C:\Windows\SysNative\drivers\usbaapl64.sys (Apple, Inc.)
      DRV:64bit: - (RPSKT) Security Services Driver (x64) -- C:\Windows\SysNative\drivers\rp_skt64.sys (Radialpoint Inc.)
      DRV:64bit: - (RPPKT) Radialpoint Filter (x64) -- C:\Windows\SysNative\drivers\rp_pkt64.sys (Radialpoint, Inc.)
      DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
      DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
      DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
      DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
      DRV:64bit: - (udfs) -- C:\Windows\SysNative\drivers\udfs.sys (Microsoft Corporation)
      DRV:64bit: - (PxHlpa64) -- C:\Windows\SysNative\drivers\PxHlpa64.sys (Sonic Solutions)
      DRV:64bit: - (NVHDA) -- C:\Windows\SysNative\drivers\nvhda64v.sys (NVIDIA Corporation)
      DRV:64bit: - (VBoxNetAdp) -- C:\Windows\SysNative\drivers\VBoxNetAdp.sys (Sun Microsystems, Inc.)
      DRV:64bit: - (dc3d) MS Hardware Device Detection Driver (USB) -- C:\Windows\SysNative\drivers\dc3d.sys (Microsoft Corporation)
      DRV:64bit: - (bdfsfltr) -- C:\Windows\SysNative\drivers\bdfsfltr.sys (BitDefender S.R.L. Bucharest, ROMANIA)
      DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
      DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
      DRV:64bit: - (crcdisk) -- C:\Windows\SysNative\drivers\crcdisk.sys (Microsoft Corporation)
      DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
      DRV:64bit: - (ws2ifsl) -- C:\Windows\SysNative\drivers\ws2ifsl.sys (Microsoft Corporation)
      DRV:64bit: - (cdfs) -- C:\Windows\SysNative\drivers\cdfs.sys (Microsoft Corporation)
      DRV:64bit: - (e1kexpress) Intel(R) -- C:\Windows\SysNative\drivers\e1k62x64.sys (Intel Corporation)
      DRV:64bit: - (netr28x) -- C:\Windows\SysNative\drivers\netr28x.sys (Ralink Technology, Corp.)
      DRV:64bit: - (AGERESoftModem) -- C:\Windows\SysNative\drivers\agrsm64.sys (LSI Corporation)
      DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
      DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
      DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
      DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
      DRV:64bit: - (DefragFS) -- C:\Windows\SysNative\drivers\DefragFs.sys (Raxco Software, Inc.)
      DRV:64bit: - (GEARAspiWDM) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys (GEAR Software Inc.)
      DRV:64bit: - (Point64) -- C:\Windows\SysNative\drivers\point64k.sys (Microsoft Corporation)
      DRV:64bit: - (MarvinBus) -- C:\Windows\SysNative\drivers\MarvinBus64.sys (Pinnacle Systems GmbH)
      DRV - (SASDIFSV) -- C:\Archivos de programa\SUPERAntiSpyware\sasdifsv64.sys (SUPERAdBlocker.com and SUPERAntiSpyware.com)
      DRV - (SASKUTIL) -- C:\Archivos de programa\SUPERAntiSpyware\saskutil64.sys (SUPERAdBlocker.com and SUPERAntiSpyware.com)
      DRV - (RadialpointIDSDriver) -- C:\Program Files (x86)\Ono\Servicios de seguridad Centinela ONO\AVG\Identity Protection\agent\drivers\AVGIDSDriver.sys (AVG Technologies )
      DRV - (RadialpointIDSFilter) -- C:\Program Files (x86)\Ono\Servicios de seguridad Centinela ONO\AVG\Identity Protection\agent\drivers\AVGIDSFilter.sys (AVG Technologies )
      DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)


      ========== Standard Registry (SafeList) ==========


      ========== Internet Explorer ==========

      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.packardbell.com/rdr.aspx?b=ACPW&l=0c0a&m=ixtreme_m5740&r=173612092606p0335v1i5y48m30257
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.packardbell.com/rdr.aspx?b=ACPW&l=0c0a&m=ixtreme_m5740&r=173612092606p0335v1i5y48m30257
      IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
      IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
      IE:64bit: - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.packardbell.com/rdr.aspx?b=ACPW&l=0c0a&m=ixtreme_m5740&r=173612092606p0335v1i5y48m30257
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.packardbell.com/rdr.aspx?b=ACPW&l=0c0a&m=ixtreme_m5740&r=173612092606p0335v1i5y48m30257
      IE - HKLM\..\SearchScopes,DefaultScope = {67A2568C-7A0A-4EED-AECC-B5405DE63B64}
      IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
      IE - HKLM\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACPW
      IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
      IE - HKLM\..\SearchScopes\{BFFED5CA-8BDF-47CC-AED0-23F4E6D77732}: "URL" = http://search.iminent.com/?appId=&ref=toolbox&q={searchTerms}


      IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



      IE - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Preserve
      IE - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = [String data over 1000 bytes]
      IE - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://es.msn.com/?ocid=iehp
      IE - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = es-ES
      IE - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 51 0F 3F 6A C9 03 CD 01 [binary data]
      IE - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000\..\URLSearchHook: {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - No CLSID value found
      IE - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000\..\SearchScopes,DefaultScope = {67A2568C-7A0A-4EED-AECC-B5405DE63B64}
      IE - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
      IE - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000\..\SearchScopes\{48408A2D-A889-446F-B220-953E9D5B0340}: "URL" = http://www.youtube.com/results?search_query={searchTerms}&page={startPage?}&utm_source=opensearch
      IE - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACPW_esES360ES360
      IE - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
      IE - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000\..\SearchScopes\{BFFED5CA-8BDF-47CC-AED0-23F4E6D77732}: "URL" = http://search.iminent.com/?appId=&ref=toolbox&q={searchTerms}
      IE - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
      IE - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
      IE - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:62869

      ========== FireFox ==========

      FF - prefs.js..browser.search.defaultenginename: "SearchTheWeb"
      FF - prefs.js..browser.search.defaultthis.engineName: "cadenaser.com Customized Web Search"
      FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2537298&SearchSource=3&q={searchTerms}"
      FF - prefs.js..browser.search.selectedEngine: "Búsqueda de vÃ*deos en YouTube"
      FF - prefs.js..browser.search.useDBForOrder: true
      FF - prefs.js..browser.startup.homepage: "http://search.iminent.com/?appId=9c53dd3c-235e-46d6-adef-de3c97231046&lcid=3082&ref=homepage"
      FF - prefs.js..extensions.enabledItems: {23fcfd51-4958-4f00-80a3-ae97e717ed8b}:2.1.2.145
      FF - prefs.js..extensions.enabledItems: {cd02a92b-ef7b-45af-b3a7-77334be2e731}:3.9.0.3
      FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.9.8
      FF - prefs.js..extensions.enabledItems: {19503e42-ca3c-4c27-b1e2-9cdb2170ee34}:1.3.7
      FF - prefs.js..extensions.enabledItems: {b66bc4c3-6d25-4a10-8c59-01daa9063051}:1.5.5
      FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
      FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
      FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
      FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0017-0000-0000-ABCDEFFEDCBA}:7.0
      FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}:6.0.31
      FF - prefs.js..extensions.enabledItems: [email protected]:0.3
      FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:14.0.3
      FF - prefs.js..extensions.enabledItems: [email protected]:2.0.3
      FF - prefs.js..extensions.enabledItems: [email protected]:2
      FF - prefs.js..extensions.enabledItems: 4
      FF - prefs.js..extensions.enabledItems: 9
      FF - prefs.js..extensions.enabledItems: 1
      FF - prefs.js..extensions.enabledItems: [email protected]:1.3.7
      FF - prefs.js..network.proxy.ftp: "rembib.upc.edu"
      FF - prefs.js..network.proxy.ftp_port: 3128
      FF - prefs.js..network.proxy.gopher: "rembib.upc.edu"
      FF - prefs.js..network.proxy.gopher_port: 3128
      FF - prefs.js..network.proxy.http: "127.0.0.1"
      FF - prefs.js..network.proxy.http_port: 62869
      FF - prefs.js..network.proxy.share_proxy_settings: true
      FF - prefs.js..network.proxy.socks: "rembib.upc.edu"
      FF - prefs.js..network.proxy.socks_port: 3128
      FF - prefs.js..network.proxy.ssl: "rembib.upc.edu"
      FF - prefs.js..network.proxy.ssl_port: 3128
      FF - user.js - File not found

      FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_2_202_235.dll File not found
      FF:64bit: - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
      FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
      FF:64bit: - HKLM\Software\MozillaPlugins\@radialpoint.com/SPA,version=1: C:\Program Files (x86)\Ono\Centro de Servicios\nprpspa.dll (Ono)
      FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_235.dll ()
      FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
      FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
      FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
      FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
      FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: C:\Program Files (x86)\DivX\DivX Player\npDivxPlayerPlugin.dll File not found
      FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
      FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
      FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
      FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
      FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
      FF - HKLM\Software\MozillaPlugins\@radialpoint.com/SPA,version=1: C:\Program Files (x86)\Ono\Centro de Servicios\nprpspa.dll (Ono)
      FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=12.0.1.666: c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
      FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=12.0.1.666: c:\program files (x86)\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
      FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=12.0.1.666: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
      FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.666: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
      FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.666: c:\program files (x86)\real\realplayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
      FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

      FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2012/01/24 22:53:25 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2012/02/11 01:16:22 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files (x86)\Iminent\[email protected] [2012/05/03 01:52:06 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.5.6\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/04/03 17:47:23 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.5.6\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012/04/23 10:21:57 | 000,000,000 | ---D | M]

      [2010/01/01 20:15:28 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Alberto\AppData\Roaming\mozilla\Extensions
      [2012/06/02 13:04:41 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Alberto\AppData\Roaming\mozilla\Firefox\Profiles\xu7su1i5.default\extensions
      [2012/01/25 02:24:42 | 000,000,000 | ---D | M] (FlashGot) -- C:\Users\Alberto\AppData\Roaming\mozilla\Firefox\Profiles\xu7su1i5.default\extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}
      [2010/05/01 20:36:14 | 000,000,000 | ---D | M] ("Split Browser") -- C:\Users\Alberto\AppData\Roaming\mozilla\Firefox\Profiles\xu7su1i5.default\extensions\{29c4afe1-db19-4298-8785-fcc94d1d6c1d}
      [2011/10/02 04:47:51 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Users\Alberto\AppData\Roaming\mozilla\Firefox\Profiles\xu7su1i5.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
      [2011/10/02 04:47:51 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Alberto\AppData\Roaming\mozilla\Firefox\Profiles\xu7su1i5.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}-trash
      [2011/12/08 23:44:15 | 000,000,000 | ---D | M] (FoxGame) -- C:\Users\Alberto\AppData\Roaming\mozilla\Firefox\Profiles\xu7su1i5.default\extensions\{b66bc4c3-6d25-4a10-8c59-01daa9063051}
      [2012/01/24 22:53:25 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Users\Alberto\AppData\Roaming\mozilla\Firefox\Profiles\xu7su1i5.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
      [2012/05/03 01:52:28 | 000,000,000 | ---D | M] (IMinent Toolbar) -- C:\Users\Alberto\AppData\Roaming\mozilla\Firefox\Profiles\xu7su1i5.default\extensions\{C9B68337-E93A-44EA-94DC-CB300EC06444}
      [2012/01/10 00:17:29 | 000,000,000 | ---D | M] (cadenaser.com Community Toolbar) -- C:\Users\Alberto\AppData\Roaming\mozilla\Firefox\Profiles\xu7su1i5.default\extensions\{cd02a92b-ef7b-45af-b3a7-77334be2e731}
      [2012/01/24 22:53:25 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Alberto\AppData\Roaming\mozilla\Firefox\Profiles\xu7su1i5.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
      [2012/01/26 19:12:17 | 000,000,000 | ---D | M] (TodoAnimes Stream) -- C:\Users\Alberto\AppData\Roaming\mozilla\Firefox\Profiles\xu7su1i5.default\extensions\[email protected]
      [2010/01/16 21:37:17 | 000,000,000 | ---D | M] (TVU Web Player) -- C:\Users\Alberto\AppData\Roaming\mozilla\Firefox\Profiles\xu7su1i5.default\extensions\[email protected]
      [2012/01/25 02:24:42 | 000,000,000 | ---D | M] (My-Translator) -- C:\Users\Alberto\AppData\Roaming\mozilla\Firefox\Profiles\xu7su1i5.default\extensions\[email protected]
      [2012/01/25 02:39:16 | 000,000,000 | ---D | M] (BlackFox V1-Blue) -- C:\Users\Alberto\AppData\Roaming\mozilla\Firefox\Profiles\xu7su1i5.default\extensions\[email protected]
      [2010/01/01 20:30:15 | 000,001,728 | ---- | M] () -- C:\Users\Alberto\AppData\Roaming\Mozilla\Firefox\Profiles\xu7su1i5.default\searchplugins\bsqueda-de-vdeos-en-youtube.xml
      [2010/02/26 10:44:24 | 000,000,929 | ---- | M] () -- C:\Users\Alberto\AppData\Roaming\Mozilla\Firefox\Profiles\xu7su1i5.default\searchplugins\conduit.xml
      [2012/05/09 09:15:41 | 000,002,270 | ---- | M] () -- C:\Users\Alberto\AppData\Roaming\Mozilla\Firefox\Profiles\xu7su1i5.default\searchplugins\SearchTheWeb.xml
      [2012/02/18 13:46:04 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions
      [2012/01/24 22:53:24 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
      [2012/01/24 22:53:24 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
      [2012/01/24 22:53:24 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
      [2012/02/17 12:35:39 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
      [2012/02/18 13:46:04 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}
      [2012/01/24 22:53:24 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBA}
      [2012/02/11 01:16:22 | 000,000,000 | ---D | M] (DivX Plus Web Player HTML5 <video&gt -- C:\PROGRAM FILES (X86)\DIVX\DIVX PLUS WEB PLAYER\FIREFOX\DIVXHTML5
      [2012/01/24 22:53:25 | 000,000,000 | ---D | M] (RealPlayer Browser Record Plugin) -- C:\PROGRAMDATA\REAL\REALPLAYER\BROWSERRECORDPLUGIN\FIREFOX\EXT
      [2011/11/02 00:28:02 | 000,611,224 | ---- | M] (Oracle Corporation) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
      [2006/09/28 05:45:46 | 000,053,355 | ---- | M] (Oracle Corporation) -- C:\Program Files (x86)\mozilla firefox\plugins\NPJinit13128.dll
      [2009/12/02 10:11:27 | 000,003,996 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\drae.xml
      [2009/12/02 10:11:27 | 000,000,751 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-es.xml
      [2012/04/27 13:34:14 | 000,002,157 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\SearchTheWeb.xml
      [2009/12/02 10:11:27 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-es.xml
      [2009/12/02 10:11:27 | 000,000,798 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-es.xml

      ========== Chrome ==========

      CHR - default_search_provider: B\u00FAsqueda de v\u00EDdeos en YouTube (Enabled)
      CHR - default_search_provider: search_url = http://www.youtube.com/results?search_query={searchTerms}&page={startPage?}&utm_source=opensearch
      CHR - default_search_provider: suggest_url =
      CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
      CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\19.0.1084.52\ppGoogleNaClPluginChrome.dll
      CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\19.0.1084.52\pdf.dll
      CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\19.0.1084.52\gcswf32.dll
      CHR - plugin: Shockwave Flash (Disabled) = C:\Users\Alberto\AppData\Local\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
      CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_235.dll
      CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
      CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\np-mswmp.dll
      CHR - plugin: Java Deployment Toolkit 7.0.0.147 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll
      CHR - plugin: Java(TM) Platform SE 7 (Enabled) = C:\Program Files (x86)\Java\jre7\bin\new_plugin\npjp2.dll
      CHR - plugin: DivX Player Netscape Plugin (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npDivxPlayerPlugin.dll
      CHR - plugin: Oracle JInitiator (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\NPJinit13128.dll
      CHR - plugin: 2007 Microsoft Office system (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\NPOFF12.DLL
      CHR - plugin: RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\nppl3260.dll
      CHR - plugin: RealPlayer Version Plugin (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\nprpjplug.dll
      CHR - plugin: RealPlayer(tm) HTML5VideoShim Plug-In (32-bit) (Enabled) = C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin2.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin3.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin4.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin5.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin6.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin7.dll
      CHR - plugin: RealJukebox NS Plugin (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\nprjplug.dll
      CHR - plugin: DivX VOD Helper Plug-in (Enabled) = C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
      CHR - plugin: DivX Plus Web Player (Enabled) = C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
      CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
      CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
      CHR - plugin: NVIDIA 3D Vision (Enabled) = C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
      CHR - plugin: NVIDIA 3D VISION (Enabled) = C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
      CHR - plugin: Centro de Servicios ONO (Enabled) = C:\Program Files (x86)\Ono\Centro de Servicios\nprpspa.dll
      CHR - plugin: Windows Live\u00AE Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
      CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
      CHR - plugin: RealNetworks(tm) Chrome Background Extension Plug-In (32-bit) (Enabled) = C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll
      CHR - plugin: Shockwave for Director (Enabled) = C:\Windows\system32\Adobe\Director\np32dsw.dll
      CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
      CHR - Extension: Google Translate = C:\Users\Alberto\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb\1.2.3.1_0\
      CHR - Extension: TodoAnimes Stream = C:\Users\Alberto\AppData\Local\Google\Chrome\User Data\Default\Extensions\bjboimoinamicpnlhdgklicpfllmhldk\3.1_0\
      CHR - Extension: Wolfram|Alpha (Official) = C:\Users\Alberto\AppData\Local\Google\Chrome\User Data\Default\Extensions\icncamkooinmbehmkeilcccmoljfkdhp\1.0.1_0\
      CHR - Extension: Iminent = C:\Users\Alberto\AppData\Local\Google\Chrome\User Data\Default\Extensions\igdhbblpcellaljokkpfhcjlagemhgjl\5.14.1.0_0\
      CHR - Extension: RealPlayer HTML5Video Downloader Extension = C:\Users\Alberto\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk\1.5_0\
      CHR - Extension: Google Mail Checker = C:\Users\Alberto\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\3.2_0\
      CHR - Extension: \u003Cvideo\u003E de HTML5 de DivX Plus Web Player = C:\Users\Alberto\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\

      O1 HOSTS File: ([2011/11/26 05:41:40 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
      O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
      O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
      O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
      O2 - BHO: (TBSB01620 Class) - {58124A0B-DC32-4180-9BFF-E0E21AE34026} - C:\Program Files (x86)\IMinent Toolbar\tbcore3.dll ()
      O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
      O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
      O2 - BHO: (no name) - {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - No CLSID value found.
      O2 - BHO: (IMinent WebBooster (BHO)) - {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} - C:\Program Files (x86)\Iminent\Iminent.WebBooster.InternetExplorer.dll (Iminent)
      O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
      O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
      O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
      O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
      O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
      O3 - HKLM\..\Toolbar: (IMinent Toolbar) - {977AE9CC-AF83-45E8-9E03-E2798216E2D5} - C:\Program Files (x86)\IMinent Toolbar\tbcore3.dll ()
      O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
      O3 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
      O3:64bit: - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
      O4:64bit: - HKLM..\Run: [IntelliPoint] C:\Program Files\Microsoft IntelliPoint\ipoint.exe (Microsoft Corporation)
      O4:64bit: - HKLM..\Run: [itype] C:\Program Files\Microsoft IntelliType Pro\itype.exe (Microsoft Corporation)
      O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Archivos de programa\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
      O4 - HKLM..\Run: [660.exe] C:\Program Files (x86)\LP\9140\660.exe File not found
      O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
      O4 - HKLM..\Run: [CSO.exe] C:\Program Files (x86)\Ono\Centro de Servicios\CSO.exe (Ono)
      O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
      O4 - HKLM..\Run: [F3C.exe] C:\Program Files (x86)\LP\17D0\F3C.exe File not found
      O4 - HKLM..\Run: [Iminent] C:\Program Files (x86)\Iminent\Iminent.exe (Iminent)
      O4 - HKLM..\Run: [IminentMessenger] C:\Program Files (x86)\Iminent\Iminent.Messengers.exe (Iminent)
      O4 - HKLM..\Run: [NortonOnlineBackupReminder] C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe (Symantec Corporation)
      O4 - HKLM..\Run: [NWEReboot] File not found
      O4 - HKLM..\Run: [Packard Bell Photo Frame] C:\Program Files (x86)\Packard Bell Photo Frame\ButtonMonitor.exe (IOI)
      O4 - HKLM..\Run: [TkBellExe] c:\program files (x86)\real\realplayer\Update\realsched.exe (RealNetworks, Inc.)
      O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
      O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [0B4.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\C700\0B4.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [15E.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\7730\15E.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [1D4.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\8030\1D4.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [203.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\7710\203.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [2A4.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\F750\2A4.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [2A7.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\A730\2A7.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [2E4.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\B7C0\2E4.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [3BC.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\2730\3BC.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [47A.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\0780\47A.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [548.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\7740\548.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [5AA.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\A700\5AA.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [5B9.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\8740\5B9.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [5FB.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\E730\5FB.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [6C7.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\37D0\6C7.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [72D.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\0760\72D.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [811.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\73C0\811.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [878.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\87A0\878.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [940.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\4730\940.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [983.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\6790\983.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [A21.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\6020\A21.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [AEB.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\C7F0\AEB.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [B9B.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\2770\B9B.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG)
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [D16.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\2730\D16.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [D29.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\E760\D29.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [DD2.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\37A0\DD2.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [E12.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\27B0\E12.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [E8A.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\7740\E8A.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [F3B.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\F700\F3B.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [F3C.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\17D0\F3C.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [FD7.exe] C:\Users\Alberto\AppData\Roaming\Microsoft\47B0\FD7.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [Megakey] C:\Users\Alberto\AppData\Local\Megamedia\Megakey\Megakey.exe /Tray File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [MegakeyUpdater] C:\Users\Alberto\AppData\Local\Megamedia\Megakey\MegakeyUpdater.exe File not found
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [Software Suite SE] C:\Program Files (x86)\Packard Bell\Software Suite SE\SoftSuiteSE.exe (Acer Incorporated)
      O4 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000..\Run: [SUPERAntiSpyware] C:\Archivos de programa\SUPERAntiSpyware\SUPERANTISPYWARE.EXE (SUPERAntiSpyware.com)
      O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
      O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
      O4 - Startup: C:\Users\Alberto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\cs8v0k.exe.lnk = C:\Users\Alberto\AppData\Local\Temp\cs8v0k.exe ()
      F3:64bit: - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000 WinNT: Load - (C:\Users\Alberto\AppData\Roaming\1F48D\lvvm.exe) - File not found
      F3 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000 WinNT: Load - (C:\Users\Alberto\AppData\Roaming\1F48D\lvvm.exe) - File not found
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 4214783
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HideSCAHealth = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 [2011/12/26 1841 | 000,000,000 | ---D | M]
      O9 - Extra Button: Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll (Microsoft Corporation)
      O9 - Extra 'Tools' menuitem : &Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll (Microsoft Corporation)
      O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL (Microsoft Corporation)
      O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Archivos de programa\Bonjour\mdnsNSP.dll (Apple Inc.)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
      O1364bit: - gopher Prefix: missing
      O13 - gopher Prefix: missing
      O15 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000\..Trusted Domains: gob.es ([agenciatributaria] https in Trusted sites)
      O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} http://web.atar.rima-tde.net/sdccommon/download/tgctlcm.cab (Support.com Configuration Class)
      O16 - DPF: {2DAB6EF1-66C3-427C-87CD-8DC448C47EAE} https://www5.aeat.es/es13/h/tgvicab.cab (CtlTGVI Class)
      O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinstall-1_7_0-windows-i586.cab (Java Plug-in 1.7.0)
      O16 - DPF: {947B00D2-962D-4A35-9E48-98EE6A442B41} https://www1.agenciatributaria.gob.es/ADUA/internet/aded1503.cab (OAdedinet Class)
      O16 - DPF: {B785FA3C-1DE9-4D20-8396-613C486FE95E} https://www1.agenciatributaria.gob.es/es13/h/cactivex.cab (AeatCtl Class)
      O16 - DPF: {CAFECAFE-0013-0001-0028-ABCDEFABCDEF} Reg Error: Value error. (JInitiator 1.3.1.28)
      O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
      O16 - DPF: {CAFEEFAC-0017-0000-0000-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0-windows-i586.cab (Java Plug-in 1.7.0)
      O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.7.0)
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.81.29.254 62.42.230.24
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{583A0DC9-CB62-49DE-881D-82A764B59665}: DhcpNameServer = 62.81.29.254 62.42.230.24
      O18:64bit: - Protocol\Handler\grooveLocalGWS - No CLSID value found
      O18:64bit: - Protocol\Handler\livecall - No CLSID value found
      O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
      O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
      O18:64bit: - Protocol\Handler\msnim - No CLSID value found
      O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
      O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
      O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
      O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
      O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
      O18:64bit: - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Archivos de programa\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
      O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
      O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
      O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
      O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
      O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
      O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
      O20 - HKU\S-1-5-21-1487224699-2417306446-4145645453-1000 Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
      O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O32 - HKLM CDRom: AutoRun - 1
      O34 - HKLM BootExecute: (PDBoot.exe)
      O34 - HKLM BootExecute: (autocheck autochk *)
      O35:64bit: - HKLM\..comfile [open] -- "%1" %*
      O35:64bit: - HKLM\..exefile [open] -- "%1" %*
      O35 - HKLM\..comfile [open] -- "%1" %*
      O35 - HKLM\..exefile [open] -- "%1" %*
      O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
      O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
      O37 - HKLM\...com [@ = comfile] -- "%1" %*
      O37 - HKLM\...exe [@ = exefile] -- "%1" %*
      O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
      O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
      O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)



      CREATERESTOREPOINT
      Unable to start System Restore Service. Error code 1084

      ========== Files/Folders - Created Within 30 Days ==========

      [2012/06/04 14:16:35 | 000,596,480 | ---- | C] (OldTimer Tools) -- C:\Users\Alberto\Desktop\OTL.exe
      [2012/06/03 03:07:29 | 000,036,864 | ---- | C] (NirSoft) -- C:\Windows\nircmd.exe

      ========== Files - Modified Within 30 Days ==========

      [2012/06/04 14:20:50 | 000,000,302 | ---- | M] () -- C:\Windows\tasks\RealUpgradeScheduledTaskS-1-5-21-1487224699-2417306446-4145645453-1000.job
      [2012/06/04 14:13:17 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
      [2012/06/04 14:13:12 | 529,879,039 | -HS- | M] () -- C:\hiberfil.sys
      [2012/06/04 1420 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Alberto\Desktop\OTL.exe
      [2012/06/03 19:38:33 | 000,009,920 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
      [2012/06/03 19:38:33 | 000,009,920 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
      [2012/06/03 19:35:50 | 000,000,974 | ---- | M] () -- C:\Users\Alberto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\cs8v0k.exe.lnk
      [2012/06/03 19:35:22 | 000,001,098 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
      [2012/06/03 17:59:00 | 003,502,868 | ---- | M] () -- C:\Windows\SysNative\perfh00A.dat
      [2012/06/03 17:59:00 | 001,428,644 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
      [2012/06/03 17:59:00 | 001,054,882 | ---- | M] () -- C:\Windows\SysNative\perfc00A.dat
      [2012/06/03 17:59:00 | 000,882,160 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
      [2012/06/03 17:59:00 | 000,005,218 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
      [2012/06/03 01:33:00 | 000,001,102 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
      [2012/05/29 20:16:28 | 000,449,991 | ---- | M] () -- C:\Users\Alberto\Documents\Memòria Pràctica 4.pdf
      [2012/05/24 10:34:14 | 000,002,356 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
      [2012/05/10 20:45:35 | 000,526,616 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT

      ========== Files Created - No Company Name ==========

      [2012/06/04 14:20:50 | 000,000,302 | ---- | C] () -- C:\Windows\tasks\RealUpgradeScheduledTaskS-1-5-21-1487224699-2417306446-4145645453-1000.job
      [2012/06/03 02:00:18 | 000,000,974 | ---- | C] () -- C:\Users\Alberto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\cs8v0k.exe.lnk
      [2012/05/29 20:16:26 | 000,449,991 | ---- | C] () -- C:\Users\Alberto\Documents\Memòria Pràctica 4.pdf
      [2012/04/30 14:42:43 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\adedinet.dll
      [2012/02/18 14:11:30 | 000,180,224 | ---- | C] () -- C:\Windows\IsUninst.exe
      [2012/02/17 12:48:59 | 000,036,962 | ---- | C] () -- C:\Windows\SysWow64\ActPanel.dll
      [2012/02/05 23:03:55 | 000,532,480 | ---- | C] () -- C:\Windows\SysWow64\CddbPlaylist2Sony.dll
      [2011/10/31 03:52:51 | 000,009,728 | ---- | C] () -- C:\Users\Alberto\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
      [2010/11/21 18:05:28 | 000,212,992 | ---- | C] () -- C:\Windows\SysWow64\WMIMPLEX.dll
      [2010/11/21 18:05:28 | 000,031,232 | ---- | C] () -- C:\Windows\SysWow64\maplec.dll
      [2010/11/21 18:05:28 | 000,020,480 | ---- | C] () -- C:\Windows\SysWow64\maplecompat.dll
      [2010/07/18 18:21:11 | 000,000,039 | ---- | C] () -- C:\Windows\Irremote.ini

      ========== LOP Check ==========

      [2011/12/27 00:31:57 | 000,000,000 | ---D | M] -- C:\Users\Alberto\AppData\Roaming\0E11F
      [2011/12/27 00:31:57 | 000,000,000 | ---D | M] -- C:\Users\Alberto\AppData\Roaming\1F48D
      [2012/06/03 02:01:26 | 000,000,000 | ---D | M] -- C:\Users\Alberto\AppData\Roaming\BitTorrent
      [2011/02/25 2314 | 000,000,000 | ---D | M] -- C:\Users\Alberto\AppData\Roaming\HTML Executable
      [2012/05/03 01:52:37 | 000,000,000 | ---D | M] -- C:\Users\Alberto\AppData\Roaming\Iminent
      [2010/01/02 02:18:01 | 000,000,000 | ---D | M] -- C:\Users\Alberto\AppData\Roaming\Imperivm Civitas II
      [2012/05/01 02:24:18 | 000,000,000 | ---D | M] -- C:\Users\Alberto\AppData\Roaming\Leadertech
      [2010/01/12 01:00:25 | 000,000,000 | ---D | M] -- C:\Users\Alberto\AppData\Roaming\Mis archivos de El Señor de los Anillos, El Resurgir del Rey Brujo
      [2011/12/08 00:33:37 | 000,000,000 | ---D | M] -- C:\Users\Alberto\AppData\Roaming\Mis archivos de La Batalla por la Tierra Media™ II
      [2011/12/26 02:51:40 | 000,000,000 | ---D | M] -- C:\Users\Alberto\AppData\Roaming\Ono
      [2009/12/30 03:50:45 | 000,000,000 | ---D | M] -- C:\Users\Alberto\AppData\Roaming\Packard Bell
      [2012/01/24 22:53:25 | 000,000,000 | ---D | M] -- C:\Users\Alberto\AppData\Roaming\Prisa TV
      [2010/07/19 21:45:18 | 000,000,000 | ---D | M] -- C:\Users\Alberto\AppData\Roaming\Softplicity
      [2010/05/04 14:36:45 | 000,000,000 | ---D | M] -- C:\Users\Alberto\AppData\Roaming\Xilisoft
      [2011/12/21 13:49:12 | 000,000,386 | ---- | M] () -- C:\Windows\Tasks\At1.job
      [2011/12/21 04:55:04 | 000,000,386 | ---- | M] () -- C:\Windows\Tasks\At2.job
      [2011/12/26 05:35:04 | 000,000,386 | ---- | M] () -- C:\Windows\Tasks\At3.job
      [2012/05/28 14:30:55 | 000,032,646 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

      ========== Purity Check ==========



      ========== Custom Scans ==========

      < %SYSTEMDRIVE%\*.* >
      [2009/08/17 03:25:22 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK
      [2012/06/04 14:13:12 | 529,879,039 | -HS- | M] () -- C:\hiberfil.sys
      [2010/02/28 02:51:50 | 000,002,644 | ---- | M] () -- C:\OPTInstall.log
      [2011/10/05 19:01:00 | 000,024,331 | ---- | M] () -- C:\OWS_FilesNotFound.txt
      [2012/06/04 14:13:12 | 2138,161,151 | -HS- | M] () -- C:\pagefile.sys
      [2012/06/03 18:00:19 | 000,000,216 | ---- | M] () -- C:\PoliFix.txt
      [2009/08/17 02:42:15 | 000,002,035 | ---- | M] () -- C:\RHDSetup.log

      ========== Alternate Data Streams ==========

      @Alternate Data Stream - 64 bytes -> C:\Users\Alberto\Desktop\1270510236886.avi:TOC.WMV
      @Alternate Data Stream - 164 bytes -> C:\Users\Alberto\Desktop\Crachan.jpg:3or4kl4x13tuuug3Byamue2s4b

      < End of report >

    8. #8
      Usuario Avatar de Wood_04
      Registrado
      jun 2012
      Ubicación
      Barcelona
      Mensajes
      23

      Re: Problemas con el polifix

      Javier, me gustaría saber si tienes noticias nuevas sobre mi problema.
      Muchas gracias de antemano.

    9. #9
      Moderador
      Avatar de Javierhf
      Registrado
      jun 2006
      Ubicación
      España - Madrid
      Mensajes
      10.492

      Re: Problemas con el polifix

      Cita Originalmente publicado por Wood_04 Ver Mensaje
      Javier, me gustaría saber si tienes noticias nuevas sobre mi problema.
      Muchas gracias de antemano.
      Perdona no me había llegado tu notificación.

      Necesitamos que busques este archivo >> C:\Users\Alberto\AppData\Local\Temp\cs8v0k.exe

      Antes de buscarlo realiza estos pasos por si esta oculto >> Ver archivos ocultos en todos los Windows.

      Lo comprimes como zip o rar y nos lo subes a un servidor de ficheros como este >> https://hotfile.com/ o alguno similar.

      Después me pasas por mensaje privado(MP) el link(enlace) para poder descargarlo y analizarlo, muchas gracias.

      Saludos.
      ~~ Quien no lo intenta, no lo Consigue. |;-) ~~

      Blog | Antivirus Online | Eliminar Malwares | Antivirus Gratis
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las últimas amenazas de la red desde >> InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso está el foro.

    10. #10
      Usuario Avatar de Wood_04
      Registrado
      jun 2012
      Ubicación
      Barcelona
      Mensajes
      23

      Re: Problemas con el polifix

      Te he enviado el mensaje privado, lo único es que no sé si lo has recibido porque en la carpeta de mensajes enviados me aparece 0 mensajes.
      Gracias por tu ayuda.

    Página 1 de 5 12345 ÚltimoÚltimo