• Registrarse
  • Iniciar sesión


  • Página 2 de 3 PrimeroPrimero 123 ÚltimoÚltimo
    Resultados 11 al 20 de 27

    Pc Lento

    Me ocurre tanto en Mozilla como en Explorer OTL logfile created on: 03/09/2012 0:28:40 - Run 1 OTL by OldTimer - Version 3.2.59.1 Folder = C:\Users\UloJd\Downloads Home Premium Edition Service Pack 1 (Version = 6.1.7601) ...

    1. #11
      Usuario Avatar de Ulo198
      Registrado
      mar 2008
      Ubicación
      Valencia
      Mensajes
      227

      Re: Pc Lento

      Me ocurre tanto en Mozilla como en Explorer

      OTL logfile created on: 03/09/2012 0:28:40 - Run 1
      OTL by OldTimer - Version 3.2.59.1 Folder = C:\Users\UloJd\Downloads
      Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
      Internet Explorer (Version = 9.0.8112.16421)
      Locale: 00000C0A | Country: España | Language: ESN | Date Format: dd/MM/yyyy

      2,99 Gb Total Physical Memory | 1,65 Gb Available Physical Memory | 54,97% Memory free
      5,99 Gb Paging File | 4,34 Gb Available in Paging File | 72,54% Paging File free
      Paging file location(s): ?:\pagefile.sys [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
      Drive C: | 288,32 Gb Total Space | 36,95 Gb Free Space | 12,82% Space Free | Partition Type: NTFS

      Computer Name: TAITU | User Name: UloJd | Logged in as Administrator.
      Boot Mode: Normal | Scan Mode: All users
      Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

      ========== Processes (SafeList) ==========

      PRC - C:\Users\UloJd\Downloads\OTL.exe (OldTimer Tools)
      PRC - C:\Archivos de programa\Mozilla Firefox\firefox.exe (Mozilla Corporation)
      PRC - C:\Archivos de programa\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
      PRC - C:\Archivos de programa\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
      PRC - C:\ProgramData\Browser Manager\2.2.565.25\{16cdff19-861d-48e3-a751-d99a27784753}\browsemngr.exe ()
      PRC - C:\Archivos de programa\TomTom HOME 2\TomTomHOMEService.exe (TomTom)
      PRC - C:\Archivos de programa\TomTom HOME 2\TomTomHOMERunner.exe (TomTom)
      PRC - C:\Archivos de programa\Java\jre7\bin\javaw.exe (Oracle Corporation)
      PRC - C:\Archivos de programa\IObit\Advanced SystemCare 5\ASCTray.exe (IObit)
      PRC - C:\Archivos de programa\IObit\Advanced SystemCare 5\ASCService.exe (IObit)
      PRC - C:\Archivos de programa\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe (NVIDIA Corporation)
      PRC - C:\Archivos de programa\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation)
      PRC - C:\Archivos de programa\IObit\IObit Malware Fighter\IMFsrv.exe (IObit)
      PRC - C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE (Microsoft Corp.)
      PRC - C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.)
      PRC - C:\Windows\explorer.exe (Microsoft Corporation)
      PRC - C:\Archivos de programa\Secunia\PSI\psia.exe (Secunia)
      PRC - C:\Archivos de programa\Secunia\PSI\sua.exe (Secunia)
      PRC - C:\Archivos de programa\Windows Media Player\wmplayer.exe (Microsoft Corporation)
      PRC - C:\Windows\System32\taskhost.exe (Microsoft Corporation)
      PRC - C:\Archivos de programa\Sony\Reader\Data\bin\launcher\Reader Library Launcher.exe (Sony Corporation)
      PRC - C:\Archivos de programa\Nero\Tools\InCD\NBHRegInCDSrv.exe (Nero AG)
      PRC - C:\Archivos de programa\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero AG)
      PRC - C:\Archivos de programa\Packard Bell\Packard Bell PowerSave Solution\ePowerSvc.exe (Acer Incorporated)
      PRC - C:\Archivos de programa\WIDCOMM\Bluetooth Software\btwdins.exe (Broadcom Corporation.)
      PRC - \\?\C:\Windows\System32\wbem\WMIADAP.EXE ()
      PRC - C:\Archivos de programa\Launch Manager\LManager.exe (Dritek System Inc.)
      PRC - C:\Archivos de programa\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe (NewTech Infosystems, Inc.)
      PRC - C:\Archivos de programa\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION)
      PRC - C:\Archivos de programa\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe ()


      ========== Modules (No Company Name) ==========

      MOD - C:\Archivos de programa\Mozilla Firefox\mozjs.dll ()
      MOD - c:\ProgramData\Browser Manager\2.2.565.25\{16cdff19-861d-48e3-a751-d99a27784753}\browsemngr.dll ()
      MOD - C:\ProgramData\Browser Manager\2.2.565.25\{16cdff19-861d-48e3-a751-d99a27784753}\browsemngr.exe ()
      MOD - C:\Windows\System32\Macromed\Flash\NPSWF32.dll ()
      MOD - C:\Archivos de programa\Sony\Reader\Data\bin\launcher\connectionDetector.dll ()
      MOD - C:\Archivos de programa\Sony\Reader\Data\bin\launcher\fsk.dll ()
      MOD - C:\Archivos de programa\Sony\Reader\Data\bin\launcher\FskNetInterface.dll ()
      MOD - C:\Archivos de programa\Sony\Reader\Data\bin\launcher\FskTimeHardware.dll ()
      MOD - C:\Archivos de programa\Sony\Reader\Data\bin\launcher\ticket.dll ()
      MOD - C:\Archivos de programa\Sony\Reader\Data\bin\launcher\ebookDeviceNotifier.dll ()
      MOD - C:\Archivos de programa\Sony\Reader\Data\bin\FskinLocalize.dll ()
      MOD - C:\Archivos de programa\Sony\Reader\Data\bin\FskPower.dll ()
      MOD - C:\Archivos de programa\Sony\Reader\Data\bin\FskDocumentViewer.dll ()
      MOD - C:\Archivos de programa\Sony\Reader\Data\bin\FskMobileMediaDevice.dll ()
      MOD - C:\Archivos de programa\Sony\Reader\Data\bin\Fskin.dll ()
      MOD - C:\Archivos de programa\Sony\Reader\Data\bin\FskMediaPlayers.dll ()
      MOD - C:\Archivos de programa\Sony\Reader\Data\bin\launcher\USBDetector.dll ()
      MOD - C:\Archivos de programa\Sony\Reader\Data\bin\FskSecurity.dll ()
      MOD - C:\Archivos de programa\Sony\Reader\Data\bin\launcher\ebookUsb.dll ()
      MOD - C:\Archivos de programa\Launch Manager\CdDirIo.dll ()
      MOD - C:\Archivos de programa\Epson Software\Event Manager\Assistants\Scan Assistant\ScanEngine.dll ()
      MOD - C:\Archivos de programa\Epson Software\Event Manager\Assistants\Scan Assistant\Satwain.dll ()
      MOD - C:\Archivos de programa\Launch Manager\PowerUtl.dll ()


      ========== Services (SafeList) ==========

      SRV - (mdsrv) -- File not found
      SRV - (EasyHideIP) -- File not found
      SRV - (MozillaMaintenance) -- C:\Archivos de programa\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
      SRV - (avast! Antivirus) -- C:\Archivos de programa\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
      SRV - (Browser Manager) -- C:\ProgramData\Browser Manager\2.2.565.25\{16cdff19-861d-48e3-a751-d99a27784753}\browsemngr.exe ()
      SRV - (TomTomHOMEService) -- C:\Archivos de programa\TomTom HOME 2\TomTomHOMEService.exe (TomTom)
      SRV - (AdvancedSystemCareService5) -- C:\Archivos de programa\IObit\Advanced SystemCare 5\ASCService.exe (IObit)
      SRV - (nvUpdatusService) -- C:\Archivos de programa\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe (NVIDIA Corporation)
      SRV - (IMFservice) -- C:\Archivos de programa\IObit\IObit Malware Fighter\IMFsrv.exe (IObit)
      SRV - (odserv) -- C:\Archivos de programa\Common Files\microsoft shared\OFFICE12\ODSERV.EXE (Microsoft Corporation)
      SRV - (wlidsvc) -- C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.)
      SRV - (Secunia PSI Agent) -- C:\Archivos de programa\Secunia\PSI\psia.exe (Secunia)
      SRV - (Secunia Update Agent) -- C:\Archivos de programa\Secunia\PSI\sua.exe (Secunia)
      SRV - (WMPNetworkSvc) -- C:\Archivos de programa\Windows Media Player\wmpnetwk.exe (Microsoft Corporation)
      SRV - (WatAdminSvc) -- C:\Windows\System32\Wat\WatAdminSvc.exe (Microsoft Corporation)
      SRV - (osppsvc) -- C:\Archivos de programa\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation)
      SRV - (ose) -- C:\Archivos de programa\Common Files\microsoft shared\Source Engine\OSE.EXE (Microsoft Corporation)
      SRV - (NeroRegInCDSrv) -- C:\Archivos de programa\Nero\Tools\InCD\NBHRegInCDSrv.exe (Nero AG)
      SRV - (InCDSrv) -- C:\Archivos de programa\Nero\Tools\InCD\InCDSrv.exe (Nero AG)
      SRV - (Nero BackItUp Scheduler 4.0) -- C:\Archivos de programa\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero AG)
      SRV - (ePowerSvc) -- C:\Archivos de programa\Packard Bell\Packard Bell PowerSave Solution\ePowerSvc.exe (Acer Incorporated)
      SRV - (btwdins) -- C:\Archivos de programa\WIDCOMM\Bluetooth Software\btwdins.exe (Broadcom Corporation.)
      SRV - (SensrSvc) -- C:\Windows\System32\sensrsvc.dll (Microsoft Corporation)
      SRV - (WinDefend) -- C:\Archivos de programa\Windows Defender\MpSvc.dll (Microsoft Corporation)
      SRV - (NTI IScheduleSvc) -- C:\Archivos de programa\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe (NewTech Infosystems, Inc.)
      SRV - (HsfXAudioService) -- C:\Windows\System32\XAudio32.dll (Conexant Systems, Inc.)
      SRV - (AdobeActiveFileMonitor6.0) -- C:\Archivos de programa\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe ()


      ========== Driver Services (SafeList) ==========

      DRV - (SmartDefragDriver) -- System32\Drivers\SmartDefragDriver.sys File not found
      DRV - (afhlscw3) -- File not found
      DRV - (a4r6pueo) -- File not found
      DRV - (aswSnx) -- C:\Windows\System32\drivers\aswSnx.sys (AVAST Software)
      DRV - (aswSP) -- C:\Windows\System32\drivers\aswSP.sys (AVAST Software)
      DRV - (aswTdi) -- C:\Windows\System32\drivers\aswTdi.sys (AVAST Software)
      DRV - (aswMonFlt) -- C:\Windows\System32\drivers\aswMonFlt.sys (AVAST Software)
      DRV - (aswRdr) -- C:\Windows\System32\drivers\aswRdr2.sys (AVAST Software)
      DRV - (aswFsBlk) -- C:\Windows\System32\drivers\aswFsBlk.sys (AVAST Software)
      DRV - (sptd) -- C:\Windows\System32\drivers\sptd.sys (Duplex Secure Ltd.)
      DRV - (aswKbd) -- C:\Windows\System32\drivers\aswKbd.sys (AVAST Software)
      DRV - (nvlddmkm) -- C:\Windows\System32\drivers\nvlddmkm.sys (NVIDIA Corporation)
      DRV - (FileMonitor) -- C:\Archivos de programa\IObit\IObit Malware Fighter\Drivers\win7_x86\FileMonitor.sys ()
      DRV - (NVHDA) -- C:\Windows\System32\drivers\nvhda32v.sys (NVIDIA Corporation)
      DRV - (UrlFilter) -- C:\Archivos de programa\IObit\IObit Malware Fighter\Drivers\win7_x86\UrlFilter.sys (IObit.com)
      DRV - (RegFilter) -- C:\Archivos de programa\IObit\IObit Malware Fighter\Drivers\win7_x86\RegFilter.sys (IObit.com)
      DRV - (PfFilter) -- C:\Archivos de programa\IObit\Protected Folder\pffilter.sys (IObit Information Technology)
      DRV - (TsUsbFlt) -- C:\Windows\System32\drivers\TsUsbFlt.sys (Microsoft Corporation)
      DRV - (WinUsb) -- C:\Windows\System32\drivers\winusb.sys (Microsoft Corporation)
      DRV - (PSI) -- C:\Windows\System32\drivers\psi_mf.sys (Secunia)
      DRV - (InCDFs) -- C:\Windows\System32\drivers\InCDFs.sys (Nero AG)
      DRV - (InCDRec) -- C:\Windows\System32\drivers\InCDRec.sys (Nero AG)
      DRV - (InCDPass) -- C:\Windows\System32\drivers\InCDPass.sys (Nero AG)
      DRV - (ss_bmdm) -- C:\Windows\System32\drivers\ss_bmdm.sys (MCCI Corporation)
      DRV - (ss_bserd) -- C:\Windows\System32\drivers\ss_bserd.sys (MCCI Corporation)
      DRV - (ss_bbus) -- C:\Windows\System32\drivers\ss_bbus.sys (MCCI)
      DRV - (ss_bmdfl) -- C:\Windows\System32\drivers\ss_bmdfl.sys (MCCI Corporation)
      DRV - (netw5v32) -- C:\Windows\System32\drivers\netw5v32.sys (Intel Corporation)
      DRV - (k57nd60x) -- C:\Windows\System32\drivers\k57nd60x.sys (Broadcom Corporation)
      DRV - (VIAHdAudAddService) -- C:\Windows\System32\drivers\viahduaa.sys (VIA Technologies, Inc.)
      DRV - (bqusbser) -- C:\Windows\System32\drivers\Mousbser.sys (Motorola Incorporated)
      DRV - (XAudio) -- C:\Windows\System32\drivers\XAudio32.sys (Conexant Systems, Inc.)


      ========== Standard Registry (SafeList) ==========


      ========== Internet Explorer ==========

      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search, =
      IE - HKLM\..\SearchScopes,DefaultScope = {afdbddaa-5d3f-42ee-b79c-185a7020515b}
      IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
      IE - HKLM\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACPW
      IE - HKLM\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2346205


      IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\SOFTWARE\Microsoft\Internet Explorer\Main,BrowserMngr Start Page = http://search.babylon.com/?affID=112209&tt=120812_bandext_3312_5&babsrc=HP_ss&mntrId=1e80877a0000000000000022fa1bb1c8
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://es.ask.com?o=15003&l=dis
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\SOFTWARE\Microsoft\Internet Explorer\Search, =
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\..\SearchScopes,BrowserMngrDefaultScope = {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\..\SearchScopes,DefaultScope = {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/?q={searchTerms}&affID=112209&tt=120812_bandext_3312_5&babsrc=SP_ss&mntrId=1e80877a0000000000000022fa1bb1c8
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=SPC2&o=15000&src=kw&q={searchTerms}&locale=&apn_ptnrs=PV&apn_dtid=YYYYYYYYES&apn_uid=63A3A260-B117-40F9-B0AC-407BEBCC4FA5&apn_sauid=E57A3398-90C0-46B4-9C3F-C141151E4625
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\..\SearchScopes\{6BB4813A-038E-4DDB-85A5-C5BC6A2D43B9}: "URL" = http://es.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=685749&p={searchTerms}
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\..\SearchScopes\{9181D9D0-A582-44FE-803F-55C01F93CF57}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7ACPW_esES339ES339
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\..\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}: "URL" = http://www.daemon-search.com/search/web?q={searchTerms}
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2346205
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>

      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com

      ========== FireFox ==========

      FF - prefs.js..browser.search.defaultengine: "Ask.com"
      FF - prefs.js..browser.search.defaultenginename: "Search the web (Babylon)"
      FF - prefs.js..browser.search.order.1: "Search the web (Babylon)"
      FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=685749&ilc=12"
      FF - prefs.js..browser.search.selectedEngine: "Search the web (Babylon)"
      FF - prefs.js..browser.search.useDBForOrder: true
      FF - prefs.js..browser.startup.homepage: "www.google.es"
      FF - prefs.js..extensions.enabledItems: {FFB96CC1-7EB3-449D-B827-DB661701C6BB}:1.3.153.0

      FF - user.js..browser.search.defaultengine: "Ask.com"
      FF - user.js..browser.search.defaultenginename: "Search the web (Babylon)"
      FF - user.js..browser.search.order.1: "Search the web (Babylon)"
      FF - user.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=685749&ilc=12"
      FF - user.js..browser.search.selectedEngine: "Search the web (Babylon)"
      FF - user.js..browser.search.useDBForOrder: true
      FF - user.js..browser.startup.homepage: "www.google.es"
      FF - user.js..extensions.enabledItems: {FFB96CC1-7EB3-449D-B827-DB661701C6BB}:1.3.153.0

      FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
      FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
      FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
      FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
      FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.5.1: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.5.1: C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
      FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5: C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@mywebsearch.com/Plugin: File not found
      FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=15.0.0.198: c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
      FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=15.0.0.198: c:\program files\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
      FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=15.0.0.198: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
      FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=15.0.0.198: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
      FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=15.0.0.198: c:\program files\real\realplayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
      FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
      FF - HKLM\Software\MozillaPlugins\@sony.com/eBookLibrary: C:\Program Files\Sony\Reader\Data\bin\npebldetectmoz.dll (Sony Corporation)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@veetle.com/veetleCorePlugin,version=0.9.18: C:\Program Files\Veetle\plugins\npVeetle.dll (Veetle Inc)
      FF - HKLM\Software\MozillaPlugins\@veetle.com/veetlePlayerPlugin,version=0.9.18: C:\Program Files\Veetle\Player\npvlc.dll (Veetle Inc)
      FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

      FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2012/04/26 10:52:42 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\Alwil Software\Avast5\WebRep\FF [2012/08/29 16:15:31 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/08/28 20:20:26 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012/08/17 10:54:55 | 000,000,000 | ---D | M]
      FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{b64982b1-d112-42b5-b1e4-d3867c4533f8}: C:\ProgramData\Browser Manager\2.2.565.25\{16cdff19-861d-48e3-a751-d99a27784753}\FirefoxExtension [2012/08/14 00:02:28 | 000,000,000 | ---D | M]
      FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 15.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/08/28 20:20:26 | 000,000,000 | ---D | M]
      FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 15.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012/08/17 10:54:55 | 000,000,000 | ---D | M]

      [2010/11/22 16:24:14 | 000,000,000 | ---D | M] (No name found) -- C:\Users\UloJd\AppData\Roaming\mozilla\Extensions
      [2010/11/22 16:24:14 | 000,000,000 | ---D | M] (No name found) -- C:\Users\UloJd\AppData\Roaming\mozilla\Extensions\[email protected]
      [2012/08/29 16:09:25 | 000,000,000 | ---D | M] (No name found) -- C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions
      [2010/04/28 11:33:46 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
      [2012/08/29 16:09:25 | 000,000,000 | ---D | M] (WOT) -- C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
      [2012/06/28 14:08:04 | 000,000,000 | ---D | M] (Bitdefender QuickScan) -- C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}
      [2012/08/24 22:05:39 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
      [2011/05/18 00:07:39 | 000,000,000 | ---D | M] (No name found) -- C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\nostmp
      [2012/01/02 21:35:51 | 000,000,000 | ---D | M] (No name found) -- C:\Archivos de programa\Mozilla Firefox\extensions
      [2012/08/29 16:15:31 | 000,000,000 | ---D | M] (avast! WebRep) -- C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST5\WEBREP\FF
      [2012/08/24 22:05:37 | 000,270,021 | ---- | M] () (No name found) -- C:\USERS\ULOJD\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\WMAGEVS6.DEFAULT\EXTENSIONS\{E4A8A97B-F2ED-450B-B12D-EE082BA24781}.XPI
      [2012/08/28 20:20:26 | 000,266,720 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
      [2012/08/28 20:20:23 | 000,002,465 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
      [2012/08/28 20:20:23 | 000,002,253 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\twitter.xml

      O1 HOSTS File: ([2011/11/17 16:08:17 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
      O1 - Hosts: 127.0.0.1 localhost
      O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
      O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Archivos de programa\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation)
      O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Archivos de programa\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
      O2 - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
      O2 - BHO: (Easy Photo Print) - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Archivos de programa\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
      O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\Archivos de programa\Google\GoogleToolbar1.dll (Google Inc.)
      O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Archivos de programa\Google\GoogleToolbarNotifier\3.1.415.1646\swg.dll (Google Inc.)
      O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Archivos de programa\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
      O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Archivos de programa\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation)
      O2 - BHO: (GretechBHO Class) - {F0181C6E-9218-4792-9F3C-E8DF52B2F1AC} - C:\Archivos de programa\GRETECH\GomPicker\GomPickerBHO.dll (Gretech Corporation)
      O3 - HKLM\..\Toolbar: (&Google) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\Archivos de programa\Google\GoogleToolbar1.dll (Google Inc.)
      O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Archivos de programa\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
      O3 - HKLM\..\Toolbar: (Easy Photo Print) - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Archivos de programa\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
      O3 - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Archivos de programa\Google\GoogleToolbar1.dll (Google Inc.)
      O4 - HKLM..\Run: [avast] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)
      O4 - HKLM..\Run: [LManager] C:\Archivos de programa\Launch Manager\LManager.exe (Dritek System Inc.)
      O4 - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000..\Run: [Advanced SystemCare 5] C:\Program Files\IObit\Advanced SystemCare 5\ASCTray.exe (IObit)
      O4 - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
      O4 - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000..\Run: [SmartRAM] C:\Program Files\IObit\Advanced SystemCare 5\Suo10_SmartRAM.exe (IObit)
      O4 - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000..\Run: [TomTomHOME.exe] C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe (TomTom)
      O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
      O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
      O4 - HKU\S-1-5-21-1196197786-1625652641-2687219695-1002..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
      O7 - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 157
      O8 - Extra context menu item: &Enviar a OneNote - C:\Archivos de programa\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
      O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr (Google Inc.)
      O8 - Extra context menu item: E&xportar a Microsoft Excel - C:\Archivos de programa\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation)
      O8 - Extra context menu item: Enviar imagen al dispositivo &Bluetooth... - C:\Archivos de programa\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
      O8 - Extra context menu item: Enviar página al dispositivo &Bluetooth... - C:\Archivos de programa\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
      O9 - Extra Button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Archivos de programa\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
      O9 - Extra 'Tools' menuitem : @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Archivos de programa\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
      O9 - Extra Button: Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Archivos de programa\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
      O9 - Extra 'Tools' menuitem : &Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Archivos de programa\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
      O9 - Extra Button: Notas &vinculadas de OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Archivos de programa\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
      O9 - Extra 'Tools' menuitem : Notas &vinculadas de OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Archivos de programa\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
      O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Archivos de programa\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
      O9 - Extra Button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Archivos de programa\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
      O9 - Extra 'Tools' menuitem : @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Archivos de programa\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Archivos de programa\Bonjour\mdnsNSP.dll (Apple Inc.)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
      O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab (QuickTime Object)
      O16 - DPF: {0742B9EF-8C83-41CA-BFBA-830A59E23533} https://oas.support.microsoft.com/ActiveX/MSDcode.cab (Microsoft Data Collection Control)
      O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1276292516427 (MUWebControl Class)
      O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab (OnlineScanner Control)
      O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab (Facebook Photo Uploader 5 Control)
      O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 10.5.1)
      O16 - DPF: {8C922C73-FFFA-45A3-B2C2-BC1E30074267} http://www.sony.es/bravia/RegistrationAgent.cab (WalkmanRegistrar Object)
      O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab (PhotoPickConvert Class)
      O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
      O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
      O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 10.5.1)
      O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
      O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 192.168.0.1
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{74F33C26-0741-4A3F-BB95-BB3164018CD8}: DhcpNameServer = 192.168.0.1 192.168.0.1
      O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Archivos de programa\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
      O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Archivos de programa\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
      O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - c:\Archivos de programa\Common Files\microsoft shared\Information Retrieval\msitss.dll (Microsoft Corporation)
      O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Archivos de programa\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
      O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Archivos de programa\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
      O18 - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Archivos de programa\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll (Microsoft Corporation)
      O18 - Protocol\Filter\text/xml {807573E5-5146-11D5-A672-00B0D022E945} - C:\Archivos de programa\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL (Microsoft Corporation)
      O20 - AppInit_DLLs: (c:\progra~2\browse~1\22565~1.25\{16cdf~1\browse~1.dll) - c:\ProgramData\Browser Manager\2.2.565.25\{16cdff19-861d-48e3-a751-d99a27784753}\browsemngr.dll ()
      O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
      O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O24 - Desktop WallPaper: C:\Users\UloJd\AppData\Roaming\Microsoft\Windows Photo Gallery\Papel tapiz de Galería fotográfica de Windows.jpg
      O24 - Desktop BackupWallPaper: C:\Users\UloJd\AppData\Roaming\Microsoft\Windows Photo Gallery\Papel tapiz de Galería fotográfica de Windows.jpg
      O32 - HKLM CDRom: AutoRun - 1
      O32 - AutoRun File - [2009/06/10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
      O33 - MountPoints2\{8422b19d-553b-11e0-8fa3-001d72fee0f9}\Shell - "" = AutoRun
      O33 - MountPoints2\{8422b19d-553b-11e0-8fa3-001d72fee0f9}\Shell\AutoRun\command - "" = F:\VTP_Manager.exe
      O33 - MountPoints2\{c3c48edf-a167-11e0-8fc4-001d72fee0f9}\Shell - "" = AutoRun
      O33 - MountPoints2\{c3c48edf-a167-11e0-8fc4-001d72fee0f9}\Shell\AutoRun\command - "" = G:\VTP_Manager.exe
      O33 - MountPoints2\{f84338ed-a95e-11e1-83a0-001d72fee0f9}\Shell - "" = AutoRun
      O33 - MountPoints2\{f84338ed-a95e-11e1-83a0-001d72fee0f9}\Shell\AutoRun\command - "" = H:\wyeth.exe
      O33 - MountPoints2\{fc8f8833-5246-11e0-b459-001d72fee0f9}\Shell - "" = AutoRun
      O33 - MountPoints2\{fc8f8833-5246-11e0-b459-001d72fee0f9}\Shell\AutoRun\command - "" = F:\VTP_Manager.exe
      O34 - HKLM BootExecute: (autocheck autochk *)
      O35 - HKLM\..comfile [open] -- "%1" %*
      O35 - HKLM\..exefile [open] -- "%1" %*
      O37 - HKLM\...com [@ = comfile] -- "%1" %*
      O37 - HKLM\...exe [@ = exefile] -- "%1" %*
      O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
      O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
      O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

      NetSvcs: FastUserSwitchingCompatibility - File not found
      NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
      NetSvcs: Nla - File not found
      NetSvcs: Ntmssvc - File not found
      NetSvcs: NWCWorkstation - File not found
      NetSvcs: Nwsapagent - File not found
      NetSvcs: SRService - File not found
      NetSvcs: WmdmPmSp - File not found
      NetSvcs: LogonHours - File not found
      NetSvcs: PCAudit - File not found
      NetSvcs: helpsvc - File not found
      NetSvcs: uploadmgr - File not found

      MsConfig - StartUpReg: Adobe ARM - hkey= - key= - c:\Archivos de programa\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
      MsConfig - StartUpReg: Adobe Reader Speed Launcher - hkey= - key= - c:\Archivos de programa\Adobe\Reader 9.0\Reader\reader_sl.exe (Adobe Systems Incorporated)
      MsConfig - StartUpReg: DAEMON Tools Lite - hkey= - key= - c:\program files\daemon tools lite\dtlite.exe (DT Soft Ltd)
      MsConfig - StartUpReg: EEventManager - hkey= - key= - c:\Archivos de programa\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION)
      MsConfig - StartUpReg: EPSON SX210 Series (Copiar 1) - hkey= - key= - File not found
      MsConfig - StartUpReg: HFALoader - hkey= - key= - c:\program files\hamster soft\free zip archiver\hamsterarc.exe (Hamster Soft)
      MsConfig - StartUpReg: InCD - hkey= - key= - c:\Archivos de programa\Nero\Tools\InCD\InCD.exe (Nero AG)
      MsConfig - StartUpReg: NBHGui - hkey= - key= - c:\Archivos de programa\Nero\Tools\InCD\NBHGui.exe (Nero AG)
      MsConfig - StartUpReg: NvCplDaemon - hkey= - key= - Reg Error: Value error. File not found
      MsConfig - StartUpReg: NvMediaCenter - hkey= - key= - Reg Error: Value error. File not found
      MsConfig - StartUpReg: offerbox - hkey= - key= - File not found
      MsConfig - StartUpReg: QuickTime Task - hkey= - key= - c:\program files\quicktime\qttask.exe (Apple Inc.)
      MsConfig - StartUpReg: Reader Library Launcher - hkey= - key= - c:\Archivos de programa\Sony\Reader\Data\bin\launcher\Reader Library Launcher.exe (Sony Corporation)
      MsConfig - StartUpReg: SmartRAM - hkey= - key= - C:\Program Files\IObit\Advanced SystemCare 5\Suo10_SmartRAM.exe (IObit)
      MsConfig - StartUpReg: Spotify Web Helper - hkey= - key= - C:\Users\UloJd\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe ()
      MsConfig - StartUpReg: SunJavaUpdateSched - hkey= - key= - c:\Archivos de programa\Common Files\Java\Java Update\jusched.exe (Sun Microsystems, Inc.)
      MsConfig - StartUpReg: TkBellExe - hkey= - key= - c:\program files\real\realplayer\Update\realsched.exe (RealNetworks, Inc.)
      MsConfig - StartUpReg: TomTomHOME.exe - hkey= - key= - C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe (TomTom)
      MsConfig - StartUpReg: VIAAUD - hkey= - key= - C:\Archivos de programa\VIA\VIAudioi\VDeck\viaaud.exe (VIA)
      MsConfig - State: "startup" - 2

      CREATERESTOREPOINT
      Restore point Set: OTL Restore Point

      ========== Files/Folders - Created Within 30 Days ==========

      [2012/09/02 11:18:25 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{D66BFE94-A046-4234-B30F-EF93F510808D}
      [2012/09/02 02:04:39 | 000,036,864 | ---- | C] (NirSoft) -- C:\Windows\nircmd.exe
      [2012/09/01 11:49:16 | 000,000,000 | ---D | C] -- C:\Users\UloJd\Desktop\JdPuta
      [2012/09/01 11:17:42 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{43B925D1-3AFE-44BD-8A8F-A4E097CE2F32}
      [2012/08/31 19:54:50 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{74AEE9F2-9493-43C5-AC22-1AEE050DC3ED}
      [2012/08/30 19:53:58 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{9A3A3C77-36D3-45AF-914C-D485FCAC5351}
      [2012/08/30 07:53:23 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{E5F99F21-D17F-4130-9654-C36BBD9A0DE2}
      [2012/08/30 01:16:09 | 000,000,000 | ---D | C] -- C:\Users\UloJd\Desktop\Nueva carpeta
      [2012/08/29 19:50:23 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{20AE6E7C-BED3-494C-9785-04A9292D2E60}
      [2012/08/28 17:21:09 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Sports Interactive
      [2012/08/28 16:51:55 | 000,000,000 | ---D | C] -- C:\Program Files\VictorVal
      [2012/08/28 12:23:54 | 000,000,000 | ---D | C] -- C:\Users\UloJd\Desktop\Camino.a.la.libertad.[DVD5]
      [2012/08/28 09:18:36 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{CD6AE688-D1B7-4439-8591-435CE68BEAE7}
      [2012/08/27 12:08:34 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{EAF90BAF-6545-4082-9D38-EF4D3C706A2D}
      [2012/08/26 12:07:45 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{E3029CE3-B482-4060-9244-72B96FC45495}
      [2012/08/25 10:55:51 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{FC2746D3-361B-4629-80D9-7089364064D2}
      [2012/08/24 10:23:03 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\My Games
      [2012/08/24 09:27:37 | 000,000,000 | ---D | C] -- C:\Program Files\2K Games
      [2012/08/23 21:25:53 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{4D81BEFC-85A0-4252-B529-0555EAC1C01B}
      [2012/08/23 09:25:19 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{4377216A-6F8F-455B-A202-68AA0E7BD572}
      [2012/08/22 20:16:59 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{5231EA32-B9F2-484B-AE0C-167831D1D846}
      [2012/08/22 14:43:00 | 000,000,000 | ---D | C] -- C:\Users\UloJd\Desktop\Civilization IV Complete Edition [PC-DVD][Multi5][Spanish][www.consolasatope.com]
      [2012/08/22 08:15:25 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{C9866DD0-853D-4185-8299-C9408693AAF0}
      [2012/08/21 13:01:15 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{C84AFB1C-30D4-45FC-A529-CEAAD04EFA01}
      [2012/08/20 19:30:42 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
      [2012/08/20 19:24:12 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Analysis Services
      [2012/08/20 18:16:34 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\MicrosoftStore
      [2012/08/20 11:54:31 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{9BE5F0B9-5D00-47CA-B0CC-D3F2F75BC615}
      [2012/08/20 10:17:02 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation
      [2012/08/20 09:53:41 | 000,061,248 | ---- | C] (Khronos Group) -- C:\Windows\System32\OpenCL.dll
      [2012/08/20 09:37:52 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
      [2012/08/19 11:53:49 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{43EDB98F-9967-43F7-9A32-078B8AA76C5B}
      [2012/08/18 23:43:43 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{D92EFC13-32FA-4292-A746-2DD4BB30C733}
      [2012/08/18 23:43:28 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{365272A2-9860-498B-A133-ED0C7C515976}
      [2012/08/18 11:42:55 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{D98C3EF0-ABD3-4052-A520-FE89BC6230C7}
      [2012/08/18 11:42:43 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{47EB21C8-E843-4ADC-AE2B-4F59DFCBAFC1}
      [2012/08/17 22:06:21 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{141A2DC1-B33B-4892-BE6D-9CE6BB5F85C0}
      [2012/08/17 22:06:10 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{CCF88BA9-A432-4782-9DFE-F80B69349D54}
      [2012/08/17 10:05:26 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{0EC29262-4415-44C2-9709-DB93CEEDA96C}
      [2012/08/17 10:05:04 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{B0835663-D17D-44E4-A7E2-7BEE6F83541E}
      [2012/08/16 10:06:13 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{FB2A5B1C-7BFF-4A41-AAB0-2E0B9909E565}
      [2012/08/16 10:05:59 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{17D61C4D-817C-42C9-BFA7-FA97C761AADF}
      [2012/08/14 20:50:38 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{D7FA6D6E-676E-449D-BE6E-EDD4B8F93F5D}
      [2012/08/14 20:50:25 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{8C3A4C15-8ED4-48FC-95C0-1154814356D3}
      [2012/08/14 08:49:56 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{C57C52BF-CE91-4871-BF92-419FA07C3B90}
      [2012/08/14 08:49:37 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{CC37ACF9-F98E-4F97-85A6-52142C1FCD49}
      [2012/08/14 00:02:34 | 000,000,000 | ---D | C] -- C:\Users\UloJd\Start Menu
      [2012/08/14 00:02:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Browser Manager
      [2012/08/13 15:29:22 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{BDE582B4-E8BB-4911-A532-8318E461D02A}
      [2012/08/13 15:29:05 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{32612627-C978-4E9F-9E10-DEE2670E3EC2}
      [2012/08/13 02:53:55 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{9C83D72E-EA41-488C-A675-142F76DEB150}
      [2012/08/13 02:53:42 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{EC070CF6-18F1-4B84-837E-670EC7AEE137}
      [2012/08/12 12:08:08 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{C889F834-A303-4952-BD97-92ACB43F42A9}
      [2012/08/12 12:07:55 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{AA3E8DEA-3E70-44B7-93D0-32C3303E6AF2}
      [2012/08/12 00:07:26 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{DA652181-8122-4CF3-AB54-2D1873290425}
      [2012/08/12 00:06:39 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{94E7F7E7-80E8-46B7-B3DD-13D5584D998C}
      [2012/08/11 12:06:04 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{0A78B4F2-4149-463B-AB85-70955A00A892}
      [2012/08/11 12:05:02 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{D7E00007-2EF6-4C1D-AD93-1F1C0376F130}
      [2012/08/10 15:45:21 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{DE157CDA-B506-4C2F-8D38-01496BC89A8C}
      [2012/08/10 15:44:33 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{4FACFF49-07C4-4AA6-ACC0-A9A13F558AE2}
      [2012/08/10 02:01:31 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{8B26BBD1-91DC-47D3-8C85-E462EC558EB0}
      [2012/08/10 02:01:17 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{020A86A2-00E3-4B4B-AC47-C70BE74DC9E6}
      [2012/08/09 1052 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{0625A963-726F-4A54-8553-85298FCA75D4}
      [2012/08/09 1038 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{83F80E47-E60F-40A2-B9E7-FE526BC70B80}
      [2012/08/08 13:17:40 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{EB41FB56-825B-40F3-827D-3F545AC8E2E7}
      [2012/08/08 13:17:23 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{99FC8947-BB90-4590-8838-3F9A49319045}
      [2012/08/07 23:08:53 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{69CDAE2E-9DDA-440A-9CCB-4C9E1CC66A3E}
      [2012/08/07 23:08:40 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{2D49FDDD-3946-4407-8A42-9DB0A41D771B}
      [2012/08/07 10:00:44 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{75FA377D-B1B5-4B9E-92A0-29CDDBE84737}
      [2012/08/07 10:00:33 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{C959E1D5-C33F-42BF-BE95-77F7A35A66FA}
      [2012/08/06 22:00:02 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{A52A135F-1D28-4A3A-A400-F7CD97D08031}
      [2012/08/06 21:59:51 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{093F096E-2796-4CBE-8D11-BFD334EF221E}
      [2012/08/06 09:59:20 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{4B485ED6-5C2F-4921-B370-89EAB18D3FF5}
      [2012/08/06 09:58:58 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{5BA3BEF4-1117-466B-B876-3DB6BB06BE6D}
      [2012/08/05 11:47:09 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Roaming\AbaEnglishRt.19ECF44F1B9DAF7C7A64FDC21A008AB0C5135E2F.1
      [2012/08/05 11:45:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ABA English Course
      [2012/08/05 11:45:46 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ABA English Course
      [2012/08/05 11:44:35 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR
      [2012/08/05 11:44:08 | 000,000,000 | ---D | C] -- C:\EnglishCourse
      [2012/08/05 11:12:29 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{9040F7BF-CD44-4CE7-A335-6C2CB3511558}
      [2012/08/05 11:12:12 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{109A8E3B-0569-4687-8F81-294267DFCD2C}
      [2012/08/04 2227 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{B8B5C7DD-64A7-4650-A7C9-96EF7C15316A}
      [2012/08/04 2215 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{AE522C59-E354-4B0C-8005-B39414A140FB}
      [2012/08/04 10:09:40 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{C9404D12-CB1D-430F-B44E-2B06785B2C52}
      [2012/08/04 10:08:20 | 000,000,000 | ---D | C] -- C:\Users\UloJd\AppData\Local\{AFA2A5BF-C115-467D-86A6-6BAD4DC8B554}
      [3 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
      [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

      ========== Files - Modified Within 30 Days ==========

      [2012/09/03 00:29:31 | 000,999,974 | ---- | M] () -- C:\Windows\System32\perfh009.dat
      [2012/09/03 00:29:31 | 000,760,334 | ---- | M] () -- C:\Windows\System32\perfh00A.dat
      [2012/09/03 00:29:31 | 000,453,930 | ---- | M] () -- C:\Windows\System32\perfc009.dat
      [2012/09/03 00:29:31 | 000,162,968 | ---- | M] () -- C:\Windows\System32\perfc00A.dat
      [2012/09/03 00:11:01 | 000,001,086 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
      [2012/09/02 22:05:21 | 000,006,428 | ---- | M] () -- C:\Users\UloJd\Desktop\musiki.odt
      [2012/09/02 16:11:09 | 000,001,082 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
      [2012/09/02 15:58:12 | 000,000,366 | ---- | M] () -- C:\Windows\tasks\ReclaimerUpdateXML_UloJd.job
      [2012/09/02 10:53:25 | 000,001,216 | ---- | M] () -- C:\Users\UloJd\Documents\cc_20120902_105314.reg
      [2012/09/02 10:51:14 | 000,000,971 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
      [2012/09/02 10:26:05 | 000,011,440 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
      [2012/09/02 10:26:05 | 000,011,440 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
      [2012/09/02 10:18:49 | 000,000,376 | ---- | M] () -- C:\Windows\tasks\RNUpgradeHelperLogonPrompt_UloJd.job
      [2012/09/02 10:17:47 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
      [2012/09/02 10:17:33 | 2411,864,064 | -HS- | M] () -- C:\hiberfil.sys
      [2012/09/01 14:55:03 | 000,000,370 | ---- | M] () -- C:\Windows\tasks\ReclaimerUpdateFiles_UloJd.job
      [2012/08/30 01:58:57 | 734,015,488 | ---- | M] () -- C:\Users\UloJd\Desktop\Te.Doy.Mis.Ojos.[dvdrip][spanish][www.lokotorrents.com]
      [2012/08/29 16:15:32 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt
      [2012/08/29 02:21:51 | 733,335,552 | ---- | M] () -- C:\Users\UloJd\Desktop\Mi.Vida.Sin.Mi.[Spanish.DvDRip].[www.aZtrem.com].avi
      [2012/08/21 16:24:53 | 000,431,616 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
      [2012/08/21 15:34:41 | 000,000,180 | ---- | M] () -- C:\Users\UloJd\Documents\cc_20120821_153434.reg
      [2012/08/21 11:13:15 | 000,729,752 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswSnx.sys
      [2012/08/21 11:13:15 | 000,355,632 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswSP.sys
      [2012/08/21 11:13:15 | 000,054,232 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswTdi.sys
      [2012/08/21 11:13:14 | 000,058,680 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswMonFlt.sys
      [2012/08/21 11:13:14 | 000,044,784 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswRdr2.sys
      [2012/08/21 11:13:13 | 000,021,256 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswFsBlk.sys
      [2012/08/21 11:12:33 | 000,041,224 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
      [2012/08/21 11:12:23 | 000,227,648 | ---- | M] (AVAST Software) -- C:\Windows\System32\aswBoot.exe
      [2012/08/20 19:33:08 | 006,938,401 | ---- | M] () -- C:\Users\UloJd\Desktop\cvnews82.pdf
      [2012/08/17 10:54:55 | 000,001,986 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk
      [2012/08/07 17:23:35 | 000,001,236 | ---- | M] () -- C:\Users\Public\Desktop\Uninstaller.lnk
      [2012/08/07 17:23:33 | 000,001,185 | ---- | M] () -- C:\Users\Public\Desktop\Advanced SystemCare 5.lnk
      [2012/08/04 10:42:36 | 000,001,073 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
      [3 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
      [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

      ========== Files Created - No Company Name ==========

      [2012/09/02 10:53:23 | 000,001,216 | ---- | C] () -- C:\Users\UloJd\Documents\cc_20120902_105314.reg
      [2012/09/02 02:04:39 | 000,069,660 | ---- | C] () -- C:\Windows\Fart.exe
      [2012/09/02 02:04:39 | 000,022,528 | ---- | C] () -- C:\Windows\AT-Uninstall.exe
      [2012/09/02 02:04:39 | 000,011,776 | ---- | C] () -- C:\Windows\Colous.exe
      [2012/08/28 12:29:04 | 733,335,552 | ---- | C] () -- C:\Users\UloJd\Desktop\Mi.Vida.Sin.Mi.[Spanish.DvDRip].[www.aZtrem.com].avi
      [2012/08/28 12:28:12 | 734,015,488 | ---- | C] () -- C:\Users\UloJd\Desktop\Te.Doy.Mis.Ojos.[dvdrip][spanish][www.lokotorrents.com]
      [2012/08/21 15:34:39 | 000,000,180 | ---- | C] () -- C:\Users\UloJd\Documents\cc_20120821_153434.reg
      [2012/08/20 19:33:08 | 006,938,401 | ---- | C] () -- C:\Users\UloJd\Desktop\cvnews82.pdf
      [2012/08/20 13:24:31 | 000,000,376 | ---- | C] () -- C:\Windows\tasks\RNUpgradeHelperLogonPrompt_UloJd.job
      [2012/08/20 13:24:25 | 000,000,370 | ---- | C] () -- C:\Windows\tasks\ReclaimerUpdateFiles_UloJd.job
      [2012/08/20 13:24:18 | 000,000,366 | ---- | C] () -- C:\Windows\tasks\ReclaimerUpdateXML_UloJd.job
      [2012/08/20 09:53:40 | 000,004,359 | ---- | C] () -- C:\Windows\System32\nvinfo.pb
      [2012/08/06 15:34:17 | 000,001,986 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk
      [2012/06/19 10:51:58 | 000,000,193 | ---- | C] () -- C:\Windows\WORDPAD.INI
      [2012/06/17 02:19:52 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini
      [2011/12/17 21:09:42 | 000,000,275 | ---- | C] () -- C:\Users\UloJd\AppData\Local\HamsterVideoConverterSettings.cfg
      [2011/06/28 17:05:27 | 000,210,944 | ---- | C] () -- C:\Windows\System32\MSVCRT10.DLL
      [2011/04/09 18:55:28 | 000,179,261 | ---- | C] () -- C:\Windows\System32\xlive.dll.cat
      [2011/02/21 15:33:53 | 000,000,062 | ---- | C] () -- C:\Windows\MyProg.ini
      [2011/02/21 15:24:48 | 000,000,016 | ---- | C] () -- C:\Windows\System32\PCProxyOff.ini
      [2011/02/21 15:24:37 | 000,073,728 | ---- | C] () -- C:\Windows\System32\VistaInfo32.dll
      [2010/10/04 15:17:53 | 000,178,176 | ---- | C] () -- C:\Windows\System32\unrar.dll
      [2010/10/02 15:28:16 | 000,005,110 | ---- | C] () -- C:\ProgramData\ojobkspa.ako
      [2010/10/02 15:20:16 | 000,815,104 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
      [2010/10/02 15:20:15 | 000,180,224 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
      [2010/01/14 12:35:32 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
      [2009/11/21 16:20:42 | 000,007,680 | ---- | C] () -- C:\Users\UloJd\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
      [2009/09/08 15:34:34 | 000,001,024 | ---- | C] () -- C:\Users\UloJd\.rnd
      [2009/08/12 20:54:09 | 000,008,427 | ---- | C] () -- C:\Users\UloJd\AppData\Roaming\.civclientrc

      ========== LOP Check ==========

      [2010/10/21 00:24:50 | 000,000,000 | -HSD | M] -- C:\Users\UloJd\AppData\Roaming\.#
      [2009/11/15 18:18:49 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\.freeciv
      [2012/08/05 11:47:09 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\AbaEnglishRt.19ECF44F1B9DAF7C7A64FDC21A008AB0C5135E2F.1
      [2012/03/07 09:24:18 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\calibre
      [2009/08/10 00:50:45 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\CheckPoint
      [2012/08/29 04:32:51 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\DAEMON Tools Lite
      [2012/03/15 15:36:40 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\EPSON
      [2010/04/13 00:34:43 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\FreeBurner
      [2012/01/18 23:29:12 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\freeTVRadio
      [2010/06/19 22:51:02 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\FUJIFILM
      [2010/04/07 11:57:22 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\GARMIN
      [2010/12/12 19:27:44 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\GetRightToGo
      [2012/04/26 10:52:42 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\HamsterSoft
      [2012/02/12 13:15:37 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\IObit
      [2010/08/30 00:32:33 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\Messenger Detect
      [2010/10/02 15:28:18 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\MOVAVI
      [2009/09/28 11:20:35 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\My Games
      [2011/04/16 01:01:08 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\Nvu
      [2009/12/13 03:12:17 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\OpenOffice.org
      [2009/11/15 18:19:24 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\Packard Bell
      [2012/08/21 09:02:31 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\QuickScan
      [2011/11/02 21:17:43 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\Sports Interactive
      [2012/06/03 12:51:42 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\Spotify
      [2009/10/02 02:03:37 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\temp
      [2010/11/22 16:24:13 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\TomTom
      [2010/01/31 02:21:43 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\TuneUp Software
      [2010/02/13 20:19:39 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\WinAVI
      [2010/10/21 00:21:11 | 000,000,000 | ---D | M] -- C:\Users\UloJd\AppData\Roaming\Windows Live Writer
      [2012/09/01 14:55:03 | 000,000,370 | ---- | M] () -- C:\Windows\Tasks\ReclaimerUpdateFiles_UloJd.job
      [2012/09/02 15:58:12 | 000,000,366 | ---- | M] () -- C:\Windows\Tasks\ReclaimerUpdateXML_UloJd.job
      [2012/09/02 10:18:49 | 000,000,376 | ---- | M] () -- C:\Windows\Tasks\RNUpgradeHelperLogonPrompt_UloJd.job
      [2012/08/09 18:19:38 | 000,032,518 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

      ========== Purity Check ==========



      ========== Custom Scans ==========

      < %SYSTEMDRIVE%\*.* >
      [2012/09/02 22:00:08 | 000,002,668 | ---- | M] () -- C:\AT-Destroyer.txt
      [2009/06/10 23:42:20 | 000,000,024 | ---- | M] () -- C:\autoexec.bat
      [2010/11/20 14:40:07 | 000,383,786 | RHS- | M] () -- C:\bootmgr
      [2009/11/15 17:45:23 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK
      [2009/06/10 23:42:20 | 000,000,010 | ---- | M] () -- C:\config.sys
      [2012/09/02 10:17:33 | 2411,864,064 | -HS- | M] () -- C:\hiberfil.sys
      [2011/11/24 13:25:32 | 000,002,689 | ---- | M] () -- C:\InfoSat.txt
      [2010/05/01 19:32:18 | 000,000,155 | ---- | M] () -- C:\mbam-error.txt
      [2012/09/02 10:17:38 | 3215,818,752 | -HS- | M] () -- C:\pagefile.sys
      [2009/05/12 02:59:40 | 000,003,586 | -HS- | M] () -- C:\Patch.rev
      [2009/05/23 16:19:30 | 000,000,180 | RHS- | M] () -- C:\Preload.rev
      [2012/09/02 21:58:26 | 000,000,120 | ---- | M] () -- C:\prueba.txt
      [2012/06/26 00:33:40 | 524,288,000 | ---- | M] () -- C:\REMOVE_THIS_FILE.livecd.swap
      [2012/06/25 16:59:41 | 000,139,106 | ---- | M] () -- C:\TDSSKiller.2.7.41.0_25.06.2012_16.54.32_log.txt
      [2012/06/25 1721 | 000,139,106 | ---- | M] () -- C:\TDSSKiller.2.7.41.0_25.06.2012_17.00.02_log.txt
      [2012/06/26 21:02:55 | 000,000,348 | ---- | M] () -- C:\TDSSKiller.2.7.41.0_26.06.2012_21.02.43_log.txt
      [2012/06/26 21:44:57 | 000,141,526 | ---- | M] () -- C:\TDSSKiller.2.7.42.0_26.06.2012_21.04.08_log.txt
      [2012/06/26 22:11:27 | 000,135,426 | ---- | M] () -- C:\TDSSKiller.2.7.42.0_26.06.2012_22.05.08_log.txt

      ========== Alternate Data Streams ==========

      @Alternate Data Stream - 105 bytes -> C:\ProgramData\Temp:5C321E34

      < End of report >

    2. #12
      Ex-Colaborador Avatar de Fer21021
      Registrado
      abr 2008
      Ubicación
      Argentina
      Mensajes
      6.216

      Re: Pc Lento

      Realiza lo siguiente por favor.


      Ejecuta OTL.exe

      Copia y Pega el código que está dentro del recuadro de abajo en la sección Análisis Personalizado / Código de Reparación.


      Código:
      :OTL
      SRV - (mdsrv) -- File not found
      SRV - (EasyHideIP) -- File not found
      DRV - (afhlscw3) -- File not found
      DRV - (a4r6pueo) -- File not found
      DRV - (SmartDefragDriver) -- System32\Drivers\SmartDefragDriver.sys File not found
      IE - HKLM\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2346205
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\SOFTWARE\Microsoft\Internet Explorer\Main,BrowserMngr Start Page = http://search.babylon.com/?affID=112209&tt=120812_bandext_3312_5&babsrc=HP_ss&mntrId=1e80877a0000000000000022fa1bb1c8
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://es.ask.com?o=15003&l=dis
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\..\SearchScopes,BrowserMngrDefaultScope = {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\..\SearchScopes,DefaultScope = {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/?q={searchTerms}&affID=112209&tt=120812_bandext_3312_5&babsrc=SP_ss&mntrId=1e80877a0000000000000022fa1bb1c8
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=SPC2&o=15000&src=kw&q={searchTerms}&locale=&apn_ptnrs=PV&apn_dtid=YYYYYYYYES&apn_uid=63A3A260-B117-40F9-B0AC-407BEBCC4FA5&apn_sauid=E57A3398-90C0-46B4-9C3F-C141151E4625
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\..\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}: "URL" = http://www.daemon-search.com/search/web?q={searchTerms}
      IE - HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2346205
      FF - prefs.js..browser.search.defaultengine: "Ask.com"
      FF - prefs.js..browser.search.defaultenginename: "Search the web (Babylon)"
      FF - prefs.js..browser.search.order.1: "Search the web (Babylon)"
      FF - prefs.js..browser.search.selectedEngine: "Search the web (Babylon)"
      FF - user.js..browser.search.defaultengine: "Ask.com"
      FF - user.js..browser.search.defaultenginename: "Search the web (Babylon)"
      FF - user.js..browser.search.order.1: "Search the web (Babylon)"
      FF - user.js..browser.search.selectedEngine: "Search the web (Babylon)"
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
      FF - HKLM\Software\MozillaPlugins\@mywebsearch.com/Plugin: File not found
      FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
      [2010/11/22 16:24:14 | 000,000,000 | ---D | M] (No name found) -- C:\Users\UloJd\AppData\Roaming\mozilla\Extensions
      [2010/11/22 16:24:14 | 000,000,000 | ---D | M] (No name found) -- C:\Users\UloJd\AppData\Roaming\mozilla\Extensions\[email protected]
      [2012/08/29 16:09:25 | 000,000,000 | ---D | M] (No name found) -- C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions
      [2011/05/18 00:07:39 | 000,000,000 | ---D | M] (No name found) -- C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\nostmp
      [3 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
      [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
      @Alternate Data Stream - 105 bytes -> C:\ProgramData\Temp:5C321E34
      
      :Files
      C:\Users\UloJd\AppData\Roaming\Babylon
      C:\ProgramData\Babylon
      C:\ProgramData\Temp:5C321E34
      ipconfig /flushdns /c
      
      :Commands
      [PURITY]
      [EMPTYFLASH]
      [EMPTYTEMP]
      [RESETHOSTS]
      
      
      Presiona el Botón Reparar para lanzar la eliminación. Presionas OK.

      Permite que OTL Reinicie el ordenador para completar la eliminación.


      Guardas el nuevo reporte generado. Lo copias y pegas en Tu próxima respuesta me comentas como sigue el ordenador ahora.

      Saludos.
      »» »» »».......Persevera y triunfarás........«« «« ««

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    3. #13
      Usuario Avatar de Ulo198
      Registrado
      mar 2008
      Ubicación
      Valencia
      Mensajes
      227

      Re: Pc Lento

      Seguimos teniendo al Babylon por ahi rondando. El PC tarda en arrancar bastante, aunque eso lleva tiempo pasandome. Internet sigue yendo lento.

      Saludos

      All processes killed
      ========== OTL ==========
      Service mdsrv stopped successfully!
      Service mdsrv deleted successfully!
      File File not found not found.
      Service EasyHideIP stopped successfully!
      Service EasyHideIP deleted successfully!
      File File not found not found.
      Error: No service named afhlscw3 was found to stop!
      Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\afhlscw3 deleted successfully.
      File File not found not found.
      Error: No service named a4r6pueo was found to stop!
      Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\a4r6pueo deleted successfully.
      File File not found not found.
      Service SmartDefragDriver stopped successfully!
      Service SmartDefragDriver deleted successfully!
      File System32\Drivers\SmartDefragDriver.sys File not found not found.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\ not found.
      HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\BrowserMngr Start Page| /E : value set successfully!
      HKU\S-1-5-21-1196197786-1625652641-2687219695-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page Restore| /E : value set successfully!
      HKEY_USERS\S-1-5-21-1196197786-1625652641-2687219695-1000\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
      HKEY_USERS\S-1-5-21-1196197786-1625652641-2687219695-1000\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
      Registry key HKEY_USERS\S-1-5-21-1196197786-1625652641-2687219695-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
      Registry key HKEY_USERS\S-1-5-21-1196197786-1625652641-2687219695-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}\ not found.
      Registry key HKEY_USERS\S-1-5-21-1196197786-1625652641-2687219695-1000\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}\ not found.
      Registry key HKEY_USERS\S-1-5-21-1196197786-1625652641-2687219695-1000\Software\Microsoft\Internet Explorer\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}\ not found.
      Registry key HKEY_USERS\S-1-5-21-1196197786-1625652641-2687219695-1000\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\ not found.
      Prefs.js: "Ask.com" removed from browser.search.defaultengine
      Prefs.js: "Search the web (Babylon)" removed from browser.search.defaultenginename
      Prefs.js: "Search the web (Babylon)" removed from browser.search.order.1
      Prefs.js: "Search the web (Babylon)" removed from browser.search.selectedEngine
      C:\Users\UloJd\AppData\Roaming\Mozilla\FireFox\Profiles\wmagevs6.default\user.js moved successfully.
      Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@microsoft.com/GENUINE\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@mywebsearch.com/Plugin\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=\ deleted successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Extensions\[email protected] folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Extensions folder moved successfully.
      Folder C:\Users\UloJd\AppData\Roaming\mozilla\Extensions\[email protected]\ not found.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\skin\third-party folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\skin folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\modules\util folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\modules\third-party folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\modules folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\zh-TW folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\zh-CN folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\uk-UA folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\uk folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\tr-TR folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\tr folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\sv-SE folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\sr folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\sk-SK folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\si-LK folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\ru-RU folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\ru folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\ro folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\pt-BR folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\pl folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\nl folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\lt folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\ko-KR folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\ja-JP folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\it-IT folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\it folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\hu folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\he-IL folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\gl-ES folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\fr folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\fi-FI folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\fi folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\fa-IR folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\et-EE folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\es-MX folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\es-ES folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\es-CL folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\es-AR folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\es folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\en-US folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\el folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\de folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\da folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\cs-CZ folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\cs folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\ca-AD folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale\ar folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\locale folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\defaults\preferences folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\defaults folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\content\third-party folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\content folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\components folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781} folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\plugins folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\META-INF folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\defaults\preferences folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\defaults folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\chrome\skin\images folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\chrome\skin folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\chrome\locale\ro-RO folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\chrome\locale\en-US folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\chrome\locale folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\chrome\content folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\chrome folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360} folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}\META-INF folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}\chrome folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}\defaults\preferences folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}\defaults folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}\chrome folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\nostmp folder moved successfully.
      C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions folder moved successfully.
      Folder C:\Users\UloJd\AppData\Roaming\mozilla\Firefox\Profiles\wmagevs6.default\extensions\nostmp\ not found.
      C:\Windows\System32\tmp1871.tmp deleted successfully.
      C:\Windows\System32\tmp1872.tmp deleted successfully.
      C:\Windows\System32\tmp26D3.tmp deleted successfully.
      C:\Windows\msdownld.tmp folder deleted successfully.
      ADS C:\ProgramData\Temp:5C321E34 deleted successfully.
      ========== FILES ==========
      File\Folder C:\Users\UloJd\AppData\Roaming\Babylon not found.
      File\Folder C:\ProgramData\Babylon not found.
      File\Folder C:\ProgramData\Temp:5C321E34 not found.
      < ipconfig /flushdns /c >
      Configuraci¢n IP de Windows
      Se vaci¢ correctamente la cach‚ de resoluci¢n de DNS.
      C:\Users\UloJd\Downloads\cmd.bat deleted successfully.
      C:\Users\UloJd\Downloads\cmd.txt deleted successfully.
      ========== COMMANDS ==========

      [EMPTYFLASH]

      User: All Users

      User: Default
      ->Flash cache emptied: 56466 bytes

      User: Default User
      ->Flash cache emptied: 0 bytes

      User: Public

      User: UloJd
      ->Flash cache emptied: 470 bytes

      User: UpdatusUser
      ->Flash cache emptied: 56466 bytes

      Total Flash Files Cleaned = 0,00 mb


      [EMPTYTEMP]

      User: All Users

      User: Default
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 33170 bytes
      ->Flash cache emptied: 0 bytes

      User: Default User
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 0 bytes
      ->Flash cache emptied: 0 bytes

      User: Public

      User: UloJd
      ->Temp folder emptied: 927130 bytes
      ->Temporary Internet Files folder emptied: 1473639 bytes
      ->Java cache emptied: 15001407 bytes
      ->FireFox cache emptied: 65898180 bytes
      ->Flash cache emptied: 0 bytes

      User: UpdatusUser
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 33170 bytes
      ->Flash cache emptied: 0 bytes

      %systemdrive% .tmp files removed: 0 bytes
      %systemroot% .tmp files removed: 0 bytes
      %systemroot%\System32 .tmp files removed: 0 bytes
      %systemroot%\System32\drivers .tmp files removed: 0 bytes
      Windows Temp folder emptied: 756133 bytes
      RecycleBin emptied: 0 bytes

      Total Files Cleaned = 80,00 mb

      C:\Windows\System32\drivers\etc\Hosts moved successfully.
      HOSTS file reset successfully

      OTL by OldTimer - Version 3.2.59.1 log created on 09032012_014724

      Files\Folders moved on Reboot...
      File\Folder C:\Windows\temp\TMP0000066CD8285C63AD67A95B not found!

      PendingFileRenameOperations files...

      Registry entries deleted on Reboot...

    4. #14
      Ex-Colaborador Avatar de Fer21021
      Registrado
      abr 2008
      Ubicación
      Argentina
      Mensajes
      6.216

      Re: Pc Lento

      Buenas,

      Seguramente, hay otra infección que esta interfiriendo en el tema.


      - Descarga la herramienta ComboFix.exe y guárdala en el escritorio.
      • ------------------------------------------------
      • Desactiva temporalmente el Antivirus y/o Antispyware.
      • Cierra todas las ventanas abiertas.
      • Hacele doble clic al archivo ComboFix.exe y seguí las instrucciones.
      • Cuando termine, generara un registro en C:\ComboFix.txt.
        • *Nota* Mientras CF este trabajando no mover el mouse ya que pararía su proceso.
        • *Nota* ComboFix puede reiniciar automáticamente el PC para completar el proceso de eliminación.


      Atención!! No use ComboFix a menos que se le haya indicado específicamente en su mensaje por un integrante de nuestro Staff. Es una herramienta de gran alcance destinada por su creador a ser usada bajo la orientación y supervisión de un experto, no para uso privado. El uso de ComboFix incorrectamente podría generar problemas en su sistema. Por favor, lea las "Negaciones de la Garantía" de ComboFix.
      • Reinicia y pega el reporte de C:\ComboFix.txt en este mismo mensaje.



      Saludos.
      »» »» »».......Persevera y triunfarás........«« «« ««

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    5. #15
      Usuario Avatar de Ulo198
      Registrado
      mar 2008
      Ubicación
      Valencia
      Mensajes
      227

      Re: Pc Lento

      Este es el informe

      ComboFix 12-09-03.01 - UloJd 03/09/2012 9:17.1.2 - x86
      Microsoft Windows 7 Home Premium 6.1.7601.1.1252.34.3082.18.3067.2198 [GMT 2:00]
      Running from: c:\users\UloJd\Downloads\ComboFix.exe
      AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
      SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
      SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
      .
      .
      ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
      .
      .
      C:\InfoSat.txt
      c:\users\UloJd\AppData\Roaming\.#
      c:\users\UloJd\AppData\Roaming\Error.log
      c:\windows\system32\_packet.dlluninstall
      .
      .
      ((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
      .
      .
      -------\Legacy_NPF
      .
      .
      ((((((((((((((((((((((((( Files Created from 2012-08-03 to 2012-09-03 )))))))))))))))))))))))))))))))
      .
      .
      2012-09-03 07:32 . 2012-09-03 07:36 -------- d-----w- c:\users\UloJd\AppData\Local\temp
      2012-09-03 07:32 . 2012-09-03 07:32 -------- d-----w- c:\users\Default\AppData\Local\temp
      2012-09-02 23:47 . 2012-09-02 23:47 -------- d-----w- C:\_OTL
      2012-09-02 00:04 . 2012-06-29 11:55 22528 ----a-w- c:\windows\AT-Uninstall.exe
      2012-09-02 00:04 . 2012-03-12 21:27 11776 ----a-w- c:\windows\Colous.exe
      2012-09-02 00:04 . 2008-03-25 08:39 69660 ----a-w- c:\windows\Fart.exe
      2012-08-28 18:20 . 2012-08-28 18:20 73696 ----a-w- c:\program files\Mozilla Firefox\breakpadinjector.dll
      2012-08-28 14:51 . 2012-08-28 14:51 -------- d-----w- c:\program files\VictorVal
      2012-08-24 08:23 . 2012-08-28 12:52 -------- d-----w- c:\users\UloJd\AppData\Local\My Games
      2012-08-24 07:27 . 2012-08-24 07:27 -------- d-----w- c:\program files\2K Games
      2012-08-20 17:24 . 2012-08-20 17:24 -------- d-----w- c:\program files\Microsoft Analysis Services
      2012-08-20 16:16 . 2012-08-20 16:16 -------- d-----w- c:\users\UloJd\AppData\Local\MicrosoftStore
      2012-08-20 08:17 . 2012-08-31 10:24 -------- d-----w- c:\users\UpdatusUser
      2012-08-20 08:17 . 2011-10-15 08:53 487232 ----a-w- c:\windows\system32\nvhotkey.dll
      2012-08-20 08:17 . 2011-10-15 08:53 3074368 ----a-w- c:\windows\system32\nvsvcr.dll
      2012-08-20 08:17 . 2011-10-15 08:53 123712 ----a-w- c:\windows\system32\nvshext.dll
      2012-08-20 08:17 . 2011-10-15 08:53 1136448 ----a-w- c:\windows\system32\nvvsvc.exe
      2012-08-20 08:17 . 2011-10-15 08:53 6350144 ----a-w- c:\windows\system32\nvcpl.dll
      2012-08-20 08:17 . 2011-10-15 08:53 3840320 ----a-w- c:\windows\system32\nvsvc.dll
      2012-08-20 08:17 . 2011-10-15 08:53 203072 ----a-w- c:\windows\system32\nvmctray.dll
      2012-08-20 08:17 . 2011-10-15 08:53 602432 ----a-w- c:\windows\system32\easyupdatusapiu.dll
      2012-08-20 08:17 . 2012-08-20 08:17 -------- d-----w- c:\programdata\NVIDIA Corporation
      2012-08-20 07:37 . 2012-08-20 08:17 -------- d-----w- c:\program files\NVIDIA Corporation
      2012-08-16 08:13 . 2012-07-18 17:47 2345984 ----a-w- c:\windows\system32\win32k.sys
      2012-08-16 08:13 . 2012-05-05 07:46 400896 ----a-w- c:\windows\system32\srcore.dll
      2012-08-16 08:13 . 2012-02-11 05:43 492032 ----a-w- c:\windows\system32\win32spl.dll
      2012-08-16 08:13 . 2012-02-11 05:37 317440 ----a-w- c:\windows\system32\spoolsv.exe
      2012-08-16 08:13 . 2012-07-04 21:14 102912 ----a-w- c:\windows\system32\browser.dll
      2012-08-16 08:13 . 2012-07-04 21:14 41984 ----a-w- c:\windows\system32\browcli.dll
      2012-08-16 08:13 . 2012-05-14 04:33 769024 ----a-w- c:\windows\system32\localspl.dll
      2012-08-13 22:02 . 2012-08-13 22:02 -------- d-----w- c:\programdata\Browser Manager
      2012-08-05 09:47 . 2012-08-05 09:47 -------- d-----w- c:\users\UloJd\AppData\Roaming\AbaEnglishRt.19ECF44F1B9DAF7C7A64FDC21A008AB0C5135E2F.1
      2012-08-05 09:44 . 2012-08-05 09:47 -------- d-----w- c:\program files\Common Files\Adobe AIR
      2012-08-05 09:44 . 2012-08-05 09:47 -------- d-----w- C:\EnglishCourse
      .
      .
      .
      (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
      .
      2012-09-03 01:45 . 2012-09-02 19:58 56200 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{C942F33A-DEDF-4C63-9962-895F40E5B061}\offreg.dll
      2012-08-23 07:15 . 2012-08-31 09:22 7022536 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{C942F33A-DEDF-4C63-9962-895F40E5B061}\mpengine.dll
      2012-08-21 09:13 . 2011-07-01 23:06 729752 ----a-w- c:\windows\system32\drivers\aswSnx.sys
      2012-08-21 09:13 . 2009-08-08 23:51 54232 ----a-w- c:\windows\system32\drivers\aswTdi.sys
      2012-08-21 09:13 . 2009-08-08 23:51 355632 ----a-w- c:\windows\system32\drivers\aswSP.sys
      2012-08-21 09:13 . 2012-06-08 11:12 44784 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
      2012-08-21 09:13 . 2009-08-08 23:51 58680 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
      2012-08-21 09:13 . 2009-08-08 23:51 21256 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
      2012-08-21 09:12 . 2010-09-01 08:02 41224 ----a-w- c:\windows\avastSS.scr
      2012-08-21 09:12 . 2009-08-08 23:51 227648 ----a-w- c:\windows\system32\aswBoot.exe
      2012-07-03 11:46 . 2009-08-08 23:36 22344 ----a-w- c:\windows\system32\drivers\mbam.sys
      2012-06-06 18:59 . 2012-06-06 18:59 1070152 ----a-w- c:\windows\system32\MSCOMCTL.OCX
      2012-06-06 05:05 . 2012-07-23 14:17 1390080 ----a-w- c:\windows\system32\msxml6.dll
      2012-06-06 05:05 . 2012-07-23 14:17 1236992 ----a-w- c:\windows\system32\msxml3.dll
      2012-06-06 05:03 . 2012-07-23 14:17 805376 ----a-w- c:\windows\system32\cdosys.dll
      2012-08-28 18:20 . 2011-10-07 10:49 266720 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
      .
      .
      ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
      .
      .
      *Note* empty entries & legit default entries are not shown
      REGEDIT4
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
      @="{472083B0-C522-11CF-8763-00608CC02F24}"
      [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
      2012-08-21 09:12 121528 ----a-w- c:\program files\Alwil Software\Avast5\ashShell.dll
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\NBHShellExt]
      @="{8D2223A2-B3C6-4e32-B096-CDD11F628C60}"
      [HKEY_CLASSES_ROOT\CLSID\{8D2223A2-B3C6-4e32-B096-CDD11F628C60}]
      2009-10-16 09:44 97072 ----a-w- c:\program files\Nero\Tools\InCD\NBHshx.dll
      .
      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "Advanced SystemCare 5"="c:\program files\IObit\Advanced SystemCare 5\ASCTray.exe" [2012-05-28 288128]
      "SmartRAM"="c:\program files\IObit\Advanced SystemCare 5\Suo10_SmartRAM.exe" [2012-07-31 428928]
      "DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2012-02-13 3481408]
      "TomTomHOME.exe"="c:\program files\TomTom HOME 2\TomTomHOMERunner.exe" [2012-07-26 247768]
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "LManager"="c:\program files\Launch Manager\LManager.exe" [2009-04-02 866824]
      "avast"="c:\program files\Alwil Software\Avast5\avastUI.exe" [2012-08-21 4282728]
      "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-17 252296]
      "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-07-31 38872]
      "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-11 919008]
      .
      c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
      Secunia PSI Tray.lnk - c:\program files\Secunia\PSI\psi_tray.exe [2011-1-10 291896]
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
      "ConsentPromptBehaviorAdmin"= 5 (0x5)
      "ConsentPromptBehaviorUser"= 3 (0x3)
      "EnableUIADesktopToggle"= 0 (0x0)
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
      "AppInit_DLLs"=c:\progra~2\BROWSE~1\22565~1.25\{16CDF~1\browsemngr.dll
      .
      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
      Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
      .
      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice]
      @="Service"
      HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon
      HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
      2012-07-11 19:00 919008 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
      2012-07-31 11:20 38872 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
      2012-02-13 08:06 3481408 ----a-w- c:\program files\DAEMON Tools Lite\DTLite.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EEventManager]
      2008-12-04 12:24 665424 ------w- c:\progra~1\EPSONS~1\EVENTM~1\EEventManager.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON SX210 Series (Copiar 1)]
      2008-11-05 13:00 199680 ----a-w- c:\windows\System32\spool\drivers\w32x86\3\E_FATIFDE.EXE
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HFALoader]
      2011-11-09 18:36 2324992 ----a-w- c:\program files\Hamster Soft\Free ZIP Archiver\HamsterArc.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\InCD]
      2009-10-16 09:44 1060136 ----a-w- c:\program files\Nero\Tools\InCD\InCD.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBHGui]
      2009-10-16 09:44 1600816 ----a-w- c:\program files\Nero\Tools\InCD\NBHGui.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
      2011-07-05 16:36 421888 ----a-w- c:\program files\QuickTime\QTTask.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Reader Library Launcher]
      2010-07-12 23:34 906648 ----a-w- c:\program files\Sony\Reader\Data\bin\launcher\Reader Library Launcher.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SmartRAM]
      2012-07-31 14:27 428928 ----a-w- c:\program files\IObit\Advanced SystemCare 5\Suo10_SmartRAM.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify Web Helper]
      2012-05-15 18:18 932528 ----a-w- c:\users\UloJd\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
      2012-01-17 09:07 252296 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
      2011-12-01 10:03 296056 ----a-w- c:\program files\Real\RealPlayer\Update\realsched.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe]
      2012-07-26 12:16 247768 ----a-w- c:\program files\TomTom HOME 2\TomTomHOMERunner.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VIAAUD]
      2009-06-04 03:19 413696 ----a-r- c:\program files\VIA\VIAudioi\VDeck\viaaud.exe
      .
      [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
      "AlcoholAutomount"="c:\program files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
      "DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" -autorun
      "EPSON SX100 Series"=c:\windows\system32\spool\DRIVERS\W32X86\3\E_FATIEDE.EXE /FU "c:\windows\TEMP\E_S7013.tmp" /EF "HKCU"
      "EPSON SX100 Series (Copiar 1)"=c:\windows\system32\spool\DRIVERS\W32X86\3\E_FATIEDE.EXE /FU "c:\windows\TEMP\E_S26F3.tmp" /EF "HKCU"
      "EPSON SX210 Series"=c:\windows\system32\spool\DRIVERS\W32X86\3\E_FATIFDE.EXE /FU "c:\windows\TEMP\E_SF18F.tmp" /EF "HKCU"
      "ehTray.exe"=c:\windows\ehome\ehTray.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
      "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
      "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
      "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe"
      "QuickTime Task"="c:\program files\QuickTime\QTTask.exe" -atboottime
      "Acer ePower Management"=c:\program files\Packard Bell\Packard Bell PowerSave Solution\ePowerTrayLauncher.exe
      "ContentTransferWMDetector.exe"=c:\program files\Sony\Content Transfer\ContentTransferWMDetector.exe
      "BackupManagerTray"="c:\program files\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe" -k
      "VideoWebCamera"="c:\program files\VideoWebCamera\VideoWebCamera.exe" -a
      "TkBellExe"="c:\program files\real\realplayer\Update\realsched.exe" -osboot
      .
      R0 SmartDefragDriver;SmartDefragDriver;c:\windows\System32\Drivers\SmartDefragDriver.sys [x]
      R2 gupdate;Servicio Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [x]
      R3 bqusbser;WCDMA USB Device for Serial Communication;c:\windows\system32\DRIVERS\Mousbser.sys [x]
      R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [x]
      R3 FileMonitor;FileMonitor;c:\program files\IObit\IObit Malware Fighter\Drivers\win7_x86\FileMonitor.sys [x]
      R3 gupdatem;Servicio de Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [x]
      R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [x]
      R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [x]
      R3 RegFilter;RegFilter;c:\program files\IObit\IObit Malware Fighter\drivers\win7_x86\regfilter.sys [x]
      R3 ss_bbus;SAMSUNG USB Mobile Device (WDM);c:\windows\system32\DRIVERS\ss_bbus.sys [x]
      R3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter);c:\windows\system32\DRIVERS\ss_bmdfl.sys [x]
      R3 ss_bmdm;SAMSUNG USB Mobile Modem;c:\windows\system32\DRIVERS\ss_bmdm.sys [x]
      R3 ss_bserd;SAMSUNG USB Mobile Logging Driver;c:\windows\system32\DRIVERS\ss_bserd.sys [x]
      R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
      R3 UrlFilter;UrlFilter;c:\program files\IObit\IObit Malware Fighter\drivers\win7_x86\UrlFilter.sys [x]
      R3 WatAdminSvc;Servicio de tecnologías de activación de Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
      S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x]
      S1 aswKbd;aswKbd; [x]
      S1 aswSnx;aswSnx; [x]
      S1 aswSP;aswSP; [x]
      S2 AdvancedSystemCareService5;Advanced SystemCare Service 5;c:\program files\IObit\Advanced SystemCare 5\ASCService.exe [x]
      S2 aswFsBlk;aswFsBlk; [x]
      S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
      S2 Browser Manager;Browser Manager;c:\programdata\Browser Manager\2.2.565.25\{16cdff19-861d-48e3-a751-d99a27784753}\browsemngr.exe [x]
      S2 ePowerSvc;Acer ePower Service;c:\program files\Packard Bell\Packard Bell PowerSave Solution\ePowerSvc.exe [x]
      S2 HsfXAudioService;HsfXAudioService;c:\windows\system32\svchost.exe [x]
      S2 IMFservice;IMF Service;c:\program files\IObit\IObit Malware Fighter\IMFsrv.exe [x]
      S2 NeroRegInCDSrv;Nero Registry InCD Service;c:\program files\Nero\Tools\InCD\NBHRegInCDSrv.exe [x]
      S2 NTI IScheduleSvc;NTI IScheduleSvc;c:\program files\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe [x]
      S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [x]
      S2 PfFilter;PfFilter;c:\program files\IObit\Protected Folder\pffilter.sys [x]
      S2 Secunia PSI Agent;Secunia PSI Agent;c:\program files\Secunia\PSI\PSIA.exe [x]
      S2 Secunia Update Agent;Secunia Update Agent;c:\program files\Secunia\PSI\sua.exe [x]
      S2 TomTomHOMEService;TomTomHOMEService;c:\program files\TomTom HOME 2\TomTomHOMEService.exe [x]
      S3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet: NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60x.sys [x]
      S3 netw5v32;Controlador del adaptador Intel(R) Wireless WiFi Link 5000 Series para Windows Vista de 32 bits;c:\windows\system32\DRIVERS\netw5v32.sys [x]
      S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32v.sys [x]
      S3 PSI;PSI;c:\windows\system32\DRIVERS\psi_mf.sys [x]
      S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [x]
      .
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
      HsfXAudioService REG_MULTI_SZ HsfXAudioService
      .
      Contents of the 'Scheduled Tasks' folder
      .
      2012-09-03 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
      - c:\program files\Google\Update\GoogleUpdate.exe [2010-06-09 21:42]
      .
      2012-09-03 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
      - c:\program files\Google\Update\GoogleUpdate.exe [2010-06-09 21:42]
      .
      2012-09-01 c:\windows\Tasks\ReclaimerUpdateFiles_UloJd.job
      - c:\users\UloJd\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\10.10\agent\rnupgagent.exe [2012-08-20 08:22]
      .
      2012-09-02 c:\windows\Tasks\ReclaimerUpdateXML_UloJd.job
      - c:\users\UloJd\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\10.10\agent\rnupgagent.exe [2012-08-20 08:22]
      .
      2012-09-03 c:\windows\Tasks\RNUpgradeHelperLogonPrompt_UloJd.job
      - c:\users\UloJd\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\10.10\agent\rnupgagent.exe [2012-08-20 08:22]
      .
      .
      ------- Supplementary Scan -------
      .
      uStart Page = hxxp://www.google.com
      mStart Page = hxxp://www.google.com
      uInternet Settings,ProxyOverride = <local>
      IE: &Enviar a OneNote - c:\progra~1\MICROS~3\Office14\ONBttnIE.dll/105
      IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
      IE: E&xportar a Microsoft Excel - c:\progra~1\MICROS~3\Office14\EXCEL.EXE/3000
      IE: Enviar imagen al dispositivo &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
      IE: Enviar página al dispositivo &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
      TCP: DhcpNameServer = 192.168.0.1 192.168.0.1
      DPF: {8C922C73-FFFA-45A3-B2C2-BC1E30074267} - hxxp://www.sony.es/bravia/RegistrationAgent.cab
      FF - ProfilePath - c:\users\UloJd\AppData\Roaming\Mozilla\Firefox\Profiles\wmagevs6.default\
      FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon)
      FF - prefs.js: browser.startup.homepage - hxxp://search.babylon.com/?affID=112209&tt=120812_bandext_3312_5&babsrc=HP_ss&mntrId=1e80877a0000000000000022fa1bb1c8
      .
      .
      ------- File Associations -------
      .
      inifile=Notepad.exe "%1"
      txtfile=Notepad.exe "%1"
      .txt=STDUViewerFile
      .
      - - - - ORPHANS REMOVED - - - -
      .
      SafeBoot-17631167.sys
      MSConfigStartUp-offerbox - c:\program files\offerbox\offerbox.exe
      .
      .
      .
      --------------------- LOCKED REGISTRY KEYS ---------------------
      .
      [HKEY_USERS\S-1-5-21-1196197786-1625652641-2687219695-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice]
      @Denied: (2) (LocalSystem)
      "Progid"="WindowsLiveMail.Email.1"
      .
      [HKEY_USERS\S-1-5-21-1196197786-1625652641-2687219695-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice]
      @Denied: (2) (LocalSystem)
      "Progid"="WindowsLiveMail.VCard.1"
      .
      [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Uninstall\{34A0FF07-F11A-4157-84A3-92F8AD688CBF}]
      "SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
      00,5c,00,4d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
      .
      [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
      @Denied: (A) (Users)
      @Denied: (A) (Everyone)
      @Allowed: (B 1 2 3 4 5) (S-1-5-20)
      "BlindDial"=dword:00000000
      .
      [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
      @Denied: (A) (Users)
      @Denied: (A) (Everyone)
      @Allowed: (B 1 2 3 4 5) (S-1-5-20)
      "BlindDial"=dword:00000000
      .
      [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
      @Denied: (A) (Users)
      @Denied: (A) (Everyone)
      @Allowed: (B 1 2 3 4 5) (S-1-5-20)
      "BlindDial"=dword:00000000
      .
      [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
      @Denied: (A) (Users)
      @Denied: (A) (Everyone)
      @Allowed: (B 1 2 3 4 5) (S-1-5-20)
      "BlindDial"=dword:00000000
      .
      [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
      @Denied: (Full) (Everyone)
      .
      --------------------- DLLs Loaded Under Running Processes ---------------------
      .
      - - - - - - - > 'Explorer.exe'(1056)
      c:\program files\Nero\Tools\InCD\NBHshx.dll
      c:\program files\WIDCOMM\Bluetooth Software\btncopy.dll
      .
      ------------------------ Other Running Processes ------------------------
      .
      c:\windows\system32\nvvsvc.exe
      c:\program files\NVIDIA Corporation\Display\nvxdsync.exe
      c:\windows\system32\nvvsvc.exe
      c:\program files\Alwil Software\Avast5\AvastSvc.exe
      c:\windows\system32\taskhost.exe
      c:\program files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
      c:\program files\Bonjour\mDNSResponder.exe
      c:\windows\system32\schtasks.exe
      c:\windows\system32\conhost.exe
      c:\program files\WIDCOMM\Bluetooth Software\btwdins.exe
      c:\program files\Common Files\Nero\Nero BackItUp 4\NBService.exe
      c:\program files\IObit\Smart Defrag 2\SmartDefrag.exe
      c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
      c:\program files\NVIDIA Corporation\Display\nvtray.exe
      c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
      c:\windows\system32\conhost.exe
      c:\\?\c:\windows\system32\wbem\WMIADAP.EXE
      c:\windows\system32\sppsvc.exe
      c:\windows\system32\AUDIODG.EXE
      .
      **************************************************************************
      .
      Completion time: 2012-09-03 09:43:54 - machine was rebooted
      ComboFix-quarantined-files.txt 2012-09-03 07:43
      .
      Pre-Run: 38.406.156.288 bytes libres
      Post-Run: 38.131.294.208 bytes libres
      .
      - - End Of File - - AD452B925456640FA283B14EAA670C95

      Saludos

      Por cierto, ahora ha desaparecido de explore el babylon pero no de mozilla

    6. #16
      Ex-Colaborador Avatar de Fer21021
      Registrado
      abr 2008
      Ubicación
      Argentina
      Mensajes
      6.216

      Re: Pc Lento

      Buenas,


      1.-Abrir el Notepad (Bloc de Notas)
      • Ir a INICIO > EJECUTAR >
      • Y ahí pones notepad.exe y ACEPTAR

      2.-Ahora copia y pega estos archivos dentro del Notepad

      Código:
      KillAll::
      
      Folder:: 
      c:\users\UloJd\AppData\Roaming\AbaEnglishRt.19ECF44F1B9DAF7C7A64FDC21A008AB0C5135E2F.1
      
      Firefox::
      FF - ProfilePath - c:\users\UloJd\AppData\Roaming\Mozilla\Firefox\Profiles\wmagevs6.default\
      FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon)
      FF - prefs.js: browser.startup.homepage - hxxp://search.babylon.com/?affID=112209&tt=120812_bandext_3312_5&babsrc=HP_ss&mntrId=1e80877a0000000000000022fa1bb1c8
      FF - prefs.js: browser.startup.homepage - hxxp://search.babylon.com/?affID=112209&tt=120812_bandext_3312_5&babsrc=HP_s s&mntrId=1e80877a0000000000000022fa1bb1c8
      
      DDS::
      DPF: {8C922C73-FFFA-45A3-B2C2-BC1E30074267} - hxxp://www.sony.es/bravia/RegistrationAgent.cab
      
      ClearJavaCache::
      3.- Graba este archivo con el nombre CFScript.txt y déjalo en tu escritorio.

      4.- Arrastrar y soltar el archivo CFScript.txt dentro del archivo ComboFix.exe como lo muestra la animación de abajo. Esto activara ComboFix nuevamente.

      • Reinicia tu PC y nos dejas un el nuevo reporte de ComboFix, comentándonos como esta funcionado todo actualmente?


      Saludos.
      »» »» »».......Persevera y triunfarás........«« «« ««

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    7. #17
      Usuario Avatar de Ulo198
      Registrado
      mar 2008
      Ubicación
      Valencia
      Mensajes
      227

      Re: Pc Lento

      El nuevo reporte,

      Saludos

      ComboFix 12-09-03.07 - UloJd 04/09/2012 9:41.2.2 - x86
      Microsoft Windows 7 Home Premium 6.1.7601.1.1252.34.3082.18.3067.2152 [GMT 2:00]
      Running from: c:\users\UloJd\Downloads\ComboFix.exe
      Command switches used :: c:\users\UloJd\Desktop\CFScript.txt
      AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
      SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
      SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
      * Created a new restore point
      .
      .
      ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
      .
      .
      c:\users\UloJd\AppData\Roaming\AbaEnglishRt.19ECF44F1B9DAF7C7A64FDC21A008AB0C5135E2F.1
      c:\users\UloJd\AppData\Roaming\AbaEnglishRt.19ECF44F1B9DAF7C7A64FDC21A008AB0C5135E2F.1\Local Store\AUDIT.ALU
      c:\users\UloJd\AppData\Roaming\Error.log
      .
      .
      ((((((((((((((((((((((((( Files Created from 2012-08-04 to 2012-09-04 )))))))))))))))))))))))))))))))
      .
      .
      2012-09-04 07:53 . 2012-09-04 07:57 -------- d-----w- c:\users\UloJd\AppData\Local\temp
      2012-09-04 07:53 . 2012-09-04 07:53 -------- d-----w- c:\users\Default\AppData\Local\temp
      2012-09-02 23:47 . 2012-09-02 23:47 -------- d-----w- C:\_OTL
      2012-09-02 00:04 . 2012-06-29 11:55 22528 ----a-w- c:\windows\AT-Uninstall.exe
      2012-09-02 00:04 . 2012-03-12 21:27 11776 ----a-w- c:\windows\Colous.exe
      2012-09-02 00:04 . 2008-03-25 08:39 69660 ----a-w- c:\windows\Fart.exe
      2012-08-28 18:20 . 2012-08-28 18:20 73696 ----a-w- c:\program files\Mozilla Firefox\breakpadinjector.dll
      2012-08-28 14:51 . 2012-08-28 14:51 -------- d-----w- c:\program files\VictorVal
      2012-08-24 08:23 . 2012-08-28 12:52 -------- d-----w- c:\users\UloJd\AppData\Local\My Games
      2012-08-24 07:27 . 2012-08-24 07:27 -------- d-----w- c:\program files\2K Games
      2012-08-20 17:24 . 2012-08-20 17:24 -------- d-----w- c:\program files\Microsoft Analysis Services
      2012-08-20 16:16 . 2012-08-20 16:16 -------- d-----w- c:\users\UloJd\AppData\Local\MicrosoftStore
      2012-08-20 08:17 . 2012-08-31 10:24 -------- d-----w- c:\users\UpdatusUser
      2012-08-20 08:17 . 2011-10-15 08:53 487232 ----a-w- c:\windows\system32\nvhotkey.dll
      2012-08-20 08:17 . 2011-10-15 08:53 3074368 ----a-w- c:\windows\system32\nvsvcr.dll
      2012-08-20 08:17 . 2011-10-15 08:53 123712 ----a-w- c:\windows\system32\nvshext.dll
      2012-08-20 08:17 . 2011-10-15 08:53 1136448 ----a-w- c:\windows\system32\nvvsvc.exe
      2012-08-20 08:17 . 2011-10-15 08:53 6350144 ----a-w- c:\windows\system32\nvcpl.dll
      2012-08-20 08:17 . 2011-10-15 08:53 3840320 ----a-w- c:\windows\system32\nvsvc.dll
      2012-08-20 08:17 . 2011-10-15 08:53 203072 ----a-w- c:\windows\system32\nvmctray.dll
      2012-08-20 08:17 . 2011-10-15 08:53 602432 ----a-w- c:\windows\system32\easyupdatusapiu.dll
      2012-08-20 08:17 . 2012-08-20 08:17 -------- d-----w- c:\programdata\NVIDIA Corporation
      2012-08-20 07:37 . 2012-08-20 08:17 -------- d-----w- c:\program files\NVIDIA Corporation
      2012-08-16 08:13 . 2012-07-18 17:47 2345984 ----a-w- c:\windows\system32\win32k.sys
      2012-08-16 08:13 . 2012-05-05 07:46 400896 ----a-w- c:\windows\system32\srcore.dll
      2012-08-16 08:13 . 2012-02-11 05:43 492032 ----a-w- c:\windows\system32\win32spl.dll
      2012-08-16 08:13 . 2012-02-11 05:37 317440 ----a-w- c:\windows\system32\spoolsv.exe
      2012-08-16 08:13 . 2012-07-04 21:14 102912 ----a-w- c:\windows\system32\browser.dll
      2012-08-16 08:13 . 2012-07-04 21:14 41984 ----a-w- c:\windows\system32\browcli.dll
      2012-08-16 08:13 . 2012-05-14 04:33 769024 ----a-w- c:\windows\system32\localspl.dll
      2012-08-13 22:02 . 2012-08-13 22:02 -------- d-----w- c:\programdata\Browser Manager
      2012-08-05 09:44 . 2012-08-05 09:47 -------- d-----w- c:\program files\Common Files\Adobe AIR
      2012-08-05 09:44 . 2012-08-05 09:47 -------- d-----w- C:\EnglishCourse
      .
      .
      .
      (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
      .
      2012-09-04 00:07 . 2012-09-02 19:58 56200 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{C942F33A-DEDF-4C63-9962-895F40E5B061}\offreg.dll
      2012-08-23 07:15 . 2012-08-31 09:22 7022536 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{C942F33A-DEDF-4C63-9962-895F40E5B061}\mpengine.dll
      2012-08-21 09:13 . 2011-07-01 23:06 729752 ----a-w- c:\windows\system32\drivers\aswSnx.sys
      2012-08-21 09:13 . 2009-08-08 23:51 54232 ----a-w- c:\windows\system32\drivers\aswTdi.sys
      2012-08-21 09:13 . 2009-08-08 23:51 355632 ----a-w- c:\windows\system32\drivers\aswSP.sys
      2012-08-21 09:13 . 2012-06-08 11:12 44784 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
      2012-08-21 09:13 . 2009-08-08 23:51 58680 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
      2012-08-21 09:13 . 2009-08-08 23:51 21256 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
      2012-08-21 09:12 . 2010-09-01 08:02 41224 ----a-w- c:\windows\avastSS.scr
      2012-08-21 09:12 . 2009-08-08 23:51 227648 ----a-w- c:\windows\system32\aswBoot.exe
      2012-07-03 11:46 . 2009-08-08 23:36 22344 ----a-w- c:\windows\system32\drivers\mbam.sys
      2012-06-06 18:59 . 2012-06-06 18:59 1070152 ----a-w- c:\windows\system32\MSCOMCTL.OCX
      2012-08-28 18:20 . 2011-10-07 10:49 266720 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
      .
      .
      ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
      .
      .
      *Note* empty entries & legit default entries are not shown
      REGEDIT4
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
      @="{472083B0-C522-11CF-8763-00608CC02F24}"
      [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
      2012-08-21 09:12 121528 ----a-w- c:\program files\Alwil Software\Avast5\ashShell.dll
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\NBHShellExt]
      @="{8D2223A2-B3C6-4e32-B096-CDD11F628C60}"
      [HKEY_CLASSES_ROOT\CLSID\{8D2223A2-B3C6-4e32-B096-CDD11F628C60}]
      2009-10-16 09:44 97072 ----a-w- c:\program files\Nero\Tools\InCD\NBHshx.dll
      .
      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "Advanced SystemCare 5"="c:\program files\IObit\Advanced SystemCare 5\ASCTray.exe" [2012-05-28 288128]
      "SmartRAM"="c:\program files\IObit\Advanced SystemCare 5\Suo10_SmartRAM.exe" [2012-07-31 428928]
      "DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2012-02-13 3481408]
      "TomTomHOME.exe"="c:\program files\TomTom HOME 2\TomTomHOMERunner.exe" [2012-07-26 247768]
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "LManager"="c:\program files\Launch Manager\LManager.exe" [2009-04-02 866824]
      "avast"="c:\program files\Alwil Software\Avast5\avastUI.exe" [2012-08-21 4282728]
      "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-17 252296]
      "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-07-31 38872]
      "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-11 919008]
      .
      c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
      Secunia PSI Tray.lnk - c:\program files\Secunia\PSI\psi_tray.exe [2011-1-10 291896]
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
      "ConsentPromptBehaviorAdmin"= 5 (0x5)
      "ConsentPromptBehaviorUser"= 3 (0x3)
      "EnableUIADesktopToggle"= 0 (0x0)
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
      "AppInit_DLLs"=c:\progra~2\BROWSE~1\22565~1.25\{16CDF~1\browsemngr.dll
      .
      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
      Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
      .
      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice]
      @="Service"
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
      2012-07-11 19:00 919008 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
      2012-07-31 11:20 38872 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
      2012-02-13 08:06 3481408 ----a-w- c:\program files\DAEMON Tools Lite\DTLite.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EEventManager]
      2008-12-04 12:24 665424 ------w- c:\progra~1\EPSONS~1\EVENTM~1\EEventManager.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON SX210 Series (Copiar 1)]
      2008-11-05 13:00 199680 ----a-w- c:\windows\System32\spool\drivers\w32x86\3\E_FATIFDE.EXE
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HFALoader]
      2011-11-09 18:36 2324992 ----a-w- c:\program files\Hamster Soft\Free ZIP Archiver\HamsterArc.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\InCD]
      2009-10-16 09:44 1060136 ----a-w- c:\program files\Nero\Tools\InCD\InCD.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBHGui]
      2009-10-16 09:44 1600816 ----a-w- c:\program files\Nero\Tools\InCD\NBHGui.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
      2011-07-05 16:36 421888 ----a-w- c:\program files\QuickTime\QTTask.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Reader Library Launcher]
      2010-07-12 23:34 906648 ----a-w- c:\program files\Sony\Reader\Data\bin\launcher\Reader Library Launcher.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SmartRAM]
      2012-07-31 14:27 428928 ----a-w- c:\program files\IObit\Advanced SystemCare 5\Suo10_SmartRAM.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify Web Helper]
      2012-05-15 18:18 932528 ----a-w- c:\users\UloJd\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
      2012-01-17 09:07 252296 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
      2011-12-01 10:03 296056 ----a-w- c:\program files\Real\RealPlayer\Update\realsched.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe]
      2012-07-26 12:16 247768 ----a-w- c:\program files\TomTom HOME 2\TomTomHOMERunner.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VIAAUD]
      2009-06-04 03:19 413696 ----a-r- c:\program files\VIA\VIAudioi\VDeck\viaaud.exe
      .
      [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
      "AlcoholAutomount"="c:\program files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
      "DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" -autorun
      "EPSON SX100 Series"=c:\windows\system32\spool\DRIVERS\W32X86\3\E_FATIEDE.EXE /FU "c:\windows\TEMP\E_S7013.tmp" /EF "HKCU"
      "EPSON SX100 Series (Copiar 1)"=c:\windows\system32\spool\DRIVERS\W32X86\3\E_FATIEDE.EXE /FU "c:\windows\TEMP\E_S26F3.tmp" /EF "HKCU"
      "EPSON SX210 Series"=c:\windows\system32\spool\DRIVERS\W32X86\3\E_FATIFDE.EXE /FU "c:\windows\TEMP\E_SF18F.tmp" /EF "HKCU"
      "ehTray.exe"=c:\windows\ehome\ehTray.exe
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
      "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
      "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
      "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe"
      "QuickTime Task"="c:\program files\QuickTime\QTTask.exe" -atboottime
      "Acer ePower Management"=c:\program files\Packard Bell\Packard Bell PowerSave Solution\ePowerTrayLauncher.exe
      "ContentTransferWMDetector.exe"=c:\program files\Sony\Content Transfer\ContentTransferWMDetector.exe
      "BackupManagerTray"="c:\program files\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe" -k
      "VideoWebCamera"="c:\program files\VideoWebCamera\VideoWebCamera.exe" -a
      "TkBellExe"="c:\program files\real\realplayer\Update\realsched.exe" -osboot
      .
      R0 SmartDefragDriver;SmartDefragDriver;c:\windows\System32\Drivers\SmartDefragDriver.sys [x]
      R2 gupdate;Servicio Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [x]
      R3 bqusbser;WCDMA USB Device for Serial Communication;c:\windows\system32\DRIVERS\Mousbser.sys [x]
      R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [x]
      R3 FileMonitor;FileMonitor;c:\program files\IObit\IObit Malware Fighter\Drivers\win7_x86\FileMonitor.sys [x]
      R3 gupdatem;Servicio de Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [x]
      R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [x]
      R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [x]
      R3 RegFilter;RegFilter;c:\program files\IObit\IObit Malware Fighter\drivers\win7_x86\regfilter.sys [x]
      R3 ss_bbus;SAMSUNG USB Mobile Device (WDM);c:\windows\system32\DRIVERS\ss_bbus.sys [x]
      R3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter);c:\windows\system32\DRIVERS\ss_bmdfl.sys [x]
      R3 ss_bmdm;SAMSUNG USB Mobile Modem;c:\windows\system32\DRIVERS\ss_bmdm.sys [x]
      R3 ss_bserd;SAMSUNG USB Mobile Logging Driver;c:\windows\system32\DRIVERS\ss_bserd.sys [x]
      R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
      R3 UrlFilter;UrlFilter;c:\program files\IObit\IObit Malware Fighter\drivers\win7_x86\UrlFilter.sys [x]
      R3 WatAdminSvc;Servicio de tecnologías de activación de Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
      S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x]
      S1 aswKbd;aswKbd; [x]
      S1 aswSnx;aswSnx; [x]
      S1 aswSP;aswSP; [x]
      S2 AdvancedSystemCareService5;Advanced SystemCare Service 5;c:\program files\IObit\Advanced SystemCare 5\ASCService.exe [x]
      S2 aswFsBlk;aswFsBlk; [x]
      S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
      S2 Browser Manager;Browser Manager;c:\programdata\Browser Manager\2.2.565.25\{16cdff19-861d-48e3-a751-d99a27784753}\browsemngr.exe [x]
      S2 ePowerSvc;Acer ePower Service;c:\program files\Packard Bell\Packard Bell PowerSave Solution\ePowerSvc.exe [x]
      S2 HsfXAudioService;HsfXAudioService;c:\windows\system32\svchost.exe [x]
      S2 IMFservice;IMF Service;c:\program files\IObit\IObit Malware Fighter\IMFsrv.exe [x]
      S2 NeroRegInCDSrv;Nero Registry InCD Service;c:\program files\Nero\Tools\InCD\NBHRegInCDSrv.exe [x]
      S2 NTI IScheduleSvc;NTI IScheduleSvc;c:\program files\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe [x]
      S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [x]
      S2 PfFilter;PfFilter;c:\program files\IObit\Protected Folder\pffilter.sys [x]
      S2 Secunia PSI Agent;Secunia PSI Agent;c:\program files\Secunia\PSI\PSIA.exe [x]
      S2 Secunia Update Agent;Secunia Update Agent;c:\program files\Secunia\PSI\sua.exe [x]
      S2 TomTomHOMEService;TomTomHOMEService;c:\program files\TomTom HOME 2\TomTomHOMEService.exe [x]
      S3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet: NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60x.sys [x]
      S3 netw5v32;Controlador del adaptador Intel(R) Wireless WiFi Link 5000 Series para Windows Vista de 32 bits;c:\windows\system32\DRIVERS\netw5v32.sys [x]
      S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32v.sys [x]
      S3 PSI;PSI;c:\windows\system32\DRIVERS\psi_mf.sys [x]
      S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [x]
      .
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
      HsfXAudioService REG_MULTI_SZ HsfXAudioService
      .
      Contents of the 'Scheduled Tasks' folder
      .
      2012-09-04 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
      - c:\program files\Google\Update\GoogleUpdate.exe [2010-06-09 21:42]
      .
      2012-09-04 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
      - c:\program files\Google\Update\GoogleUpdate.exe [2010-06-09 21:42]
      .
      2012-09-03 c:\windows\Tasks\ReclaimerUpdateFiles_UloJd.job
      - c:\users\UloJd\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\10.10\agent\rnupgagent.exe [2012-08-20 08:22]
      .
      2012-09-03 c:\windows\Tasks\ReclaimerUpdateXML_UloJd.job
      - c:\users\UloJd\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\10.10\agent\rnupgagent.exe [2012-08-20 08:22]
      .
      2012-09-04 c:\windows\Tasks\RNUpgradeHelperLogonPrompt_UloJd.job
      - c:\users\UloJd\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\10.10\agent\rnupgagent.exe [2012-08-20 08:22]
      .
      .
      ------- Supplementary Scan -------
      .
      uStart Page = hxxp://www.google.com
      mStart Page = hxxp://www.google.com
      uInternet Settings,ProxyOverride = <local>
      IE: &Enviar a OneNote - c:\progra~1\MICROS~3\Office14\ONBttnIE.dll/105
      IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
      IE: E&xportar a Microsoft Excel - c:\progra~1\MICROS~3\Office14\EXCEL.EXE/3000
      IE: Enviar imagen al dispositivo &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
      IE: Enviar página al dispositivo &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
      TCP: DhcpNameServer = 192.168.0.1 192.168.0.1
      FF - ProfilePath - c:\users\UloJd\AppData\Roaming\Mozilla\Firefox\Profiles\wmagevs6.default\
      .
      .
      --------------------- LOCKED REGISTRY KEYS ---------------------
      .
      [HKEY_USERS\S-1-5-21-1196197786-1625652641-2687219695-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice]
      @Denied: (2) (LocalSystem)
      "Progid"="WindowsLiveMail.Email.1"
      .
      [HKEY_USERS\S-1-5-21-1196197786-1625652641-2687219695-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice]
      @Denied: (2) (LocalSystem)
      "Progid"="WindowsLiveMail.VCard.1"
      .
      [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Uninstall\{34A0FF07-F11A-4157-84A3-92F8AD688CBF}]
      "SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
      00,5c,00,4d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
      .
      [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
      @Denied: (A) (Users)
      @Denied: (A) (Everyone)
      @Allowed: (B 1 2 3 4 5) (S-1-5-20)
      "BlindDial"=dword:00000000
      .
      [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
      @Denied: (A) (Users)
      @Denied: (A) (Everyone)
      @Allowed: (B 1 2 3 4 5) (S-1-5-20)
      "BlindDial"=dword:00000000
      .
      [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
      @Denied: (A) (Users)
      @Denied: (A) (Everyone)
      @Allowed: (B 1 2 3 4 5) (S-1-5-20)
      "BlindDial"=dword:00000000
      .
      [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
      @Denied: (A) (Users)
      @Denied: (A) (Everyone)
      @Allowed: (B 1 2 3 4 5) (S-1-5-20)
      "BlindDial"=dword:00000000
      .
      [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
      @Denied: (Full) (Everyone)
      .
      --------------------- DLLs Loaded Under Running Processes ---------------------
      .
      - - - - - - - > 'Explorer.exe'(2168)
      c:\program files\Nero\Tools\InCD\NBHshx.dll
      c:\program files\WIDCOMM\Bluetooth Software\btncopy.dll
      .
      ------------------------ Other Running Processes ------------------------
      .
      c:\windows\system32\nvvsvc.exe
      c:\program files\NVIDIA Corporation\Display\nvxdsync.exe
      c:\windows\system32\nvvsvc.exe
      c:\program files\Alwil Software\Avast5\AvastSvc.exe
      c:\windows\system32\taskhost.exe
      c:\program files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
      c:\program files\Bonjour\mDNSResponder.exe
      c:\program files\WIDCOMM\Bluetooth Software\btwdins.exe
      c:\windows\system32\schtasks.exe
      c:\windows\system32\conhost.exe
      c:\program files\Common Files\Nero\Nero BackItUp 4\NBService.exe
      c:\program files\IObit\Smart Defrag 2\SmartDefrag.exe
      c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
      c:\program files\NVIDIA Corporation\Display\nvtray.exe
      c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
      c:\windows\system32\conhost.exe
      c:\windows\system32\sppsvc.exe
      c:\windows\system32\taskhost.exe
      c:\windows\system32\AUDIODG.EXE
      .
      **************************************************************************
      .
      Completion time: 2012-09-04 10:04:32 - machine was rebooted
      ComboFix-quarantined-files.txt 2012-09-04 08:04
      ComboFix2.txt 2012-09-03 07:43
      .
      Pre-Run: 32.780.353.536 bytes libres
      Post-Run: 34.440.343.552 bytes libres
      .
      - - End Of File - - 93075D4BE5019BB33233CCC9E744D969

    8. #18
      Ex-Colaborador Avatar de Fer21021
      Registrado
      abr 2008
      Ubicación
      Argentina
      Mensajes
      6.216

      Re: Pc Lento

      Buenas,

      Comenta como esta todo.


      Saludos.
      »» »» »».......Persevera y triunfarás........«« «« ««

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    9. #19
      Usuario Avatar de Ulo198
      Registrado
      mar 2008
      Ubicación
      Valencia
      Mensajes
      227

      Re: Pc Lento

      Bueno, ahora funciona un poco más rápido, pero el señor babylon sigue campando a sus anchas por el mozilla

      Gracias

    10. #20
      Usuario Avatar de Ulo198
      Registrado
      mar 2008
      Ubicación
      Valencia
      Mensajes
      227

      Re: Pc Lento

      Por cierto, no se me oye el GOM player