• Registrarse
  • Iniciar sesión


  • Resultados 1 al 4 de 4

    ¿Mixnycakpemv.exe?

    Me llamareis de todo por no usar antivirus pero desde que tengo ordenador, hace ya 10 años, me ha parecido una herramienta que hasta hoy no habia necesitado. A lo que voy, el otro dia ...

    1. #1
      Usuario Avatar de Catilan
      Registrado
      sep 2012
      Ubicación
      Zaragoza
      Mensajes
      2

      ¿Mixnycakpemv.exe?

      Me llamareis de todo por no usar antivirus pero desde que tengo ordenador, hace ya 10 años, me ha parecido una herramienta que hasta hoy no habia necesitado.

      A lo que voy, el otro dia al arrancar el ordenador, me aparece una notificacion de una aplicacion que llama Mixnycakpemv.exe para que le permita el acceso a mi equipo, obviamente yo le doy siempre a cancelar pero este mensaje vuelve a salir. He estado buscando informacion sobre esto y la verdad no me aparece nada en ningun sitio. No descargo nada de ningun sitio extraño salvo ultimamente que me estoy descargando capitulos de Series.ly pero nunca he tenido ningun problema. Si alguien pudiese echarme una mano seria de gran ayuda.

      Gracias de antemano,

      Un saludo!

    2. #2
      Moderador.
      Avatar de @Tincho
      Registrado
      may 2008
      Ubicación
      Argentina
      Mensajes
      14.701

      Re: ¿Mixnycakpemv.exe?

      Buenas.

      Descargá OTL By OldTimer a Tu escritorio

      Ejecutá OTL

      • Cerrá todos programas que tengas abiertos y Hacé doble click en el ícono de OTL para ejecutarlo.
      • Dejalo correr sin interrumpirlo hasta que termine el Análisis.
      • Cuando la interfaz aparesca, solo debes cambiar Abajo de: "Tipo de Análisis" poniendo Resultado Minimo.
      • Marcá las opciones: Buscar LOP y Buscar Purity.
      • Marcá las Opciones Omitir Archivos De Microsoft y Usar Listado de Compañias Reconocidas.
      • Por favor No cambies el resto de la configuración a menos que te lo solicitemos.


      • Presioná el boton .
      • Una vez que termine, se abrirán dos (2) archivos, OTL.Txt y Extras.Txt. Éstos aparecerán grabados en el mismo lugar OTL.exe fue descargado.
      • Copiá y pegá el contenido del archivo OTL.txt en tu próxima respuesta.



      Debido al accionar de las infecciones, que impide la ejecución de Todo lo relacionado a Antimalwares, vas a descargar OTL con su Extensión modificada desde cualquiera de los enlaces de abajo, para que este pueda correr.



      Nota:
      Cuando utilice estos enlaces, use Internet Explorer.

      Si utiliza Firefox, haga un clic derecho y seleccione "Guardar enlace como", de lo contrario, en algunos sistemas, cuando se intenta abrir el archivo, aparecería como una secuéncia de comandos y sólo verás muchas líneas de código en la pantalla.

      Una vez descargado OTL con su extensión cambiada, ejecútelo tal cual está explicado anteriormente.


      Nos traes el reporte de OTL.

      Saludos.
      Tyny's
      If on your journey, you should encounter God, God will be cut!

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    3. #3
      Usuario Avatar de Catilan
      Registrado
      sep 2012
      Ubicación
      Zaragoza
      Mensajes
      2

      Re: ¿Mixnycakpemv.exe?

      OTL logfile created on: 19/09/2012 16:05:55 - Run 1
      OTL by OldTimer - Version 3.2.64.0 Folder = C:\Users\user\Desktop
      64bit-Windows Vista Home Premium Edition (Version = 6.0.6000) - Type = NTWorkstation
      Internet Explorer (Version = 7.0.6000.16982)
      Locale: 00000C0A | Country: España | Language: ESN | Date Format: dd/MM/yyyy

      4,00 Gb Total Physical Memory | 2,56 Gb Available Physical Memory | 64,12% Memory free
      8,14 Gb Paging File | 6,66 Gb Available in Paging File | 81,74% Paging File free
      Paging file location(s): ?:\pagefile.sys [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
      Drive C: | 143,19 Gb Total Space | 18,92 Gb Free Space | 13,21% Space Free | Partition Type: NTFS
      Drive D: | 143,19 Gb Total Space | 142,91 Gb Free Space | 99,81% Space Free | Partition Type: NTFS

      Computer Name: USER1 | User Name: user | Logged in as Administrator.
      Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
      Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

      ========== Processes (SafeList) ==========

      PRC - C:\Users\user\Desktop\OTL.exe (OldTimer Tools)
      PRC - C:\Users\user\mixnycakpemv.exe (Unisys)
      PRC - C:\Users\user\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe ()
      PRC - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation)
      PRC - C:\Program Files (x86)\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe (Symantec Corporation)
      PRC - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe (Intel Corporation)
      PRC - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANOTIF.EXE (Intel Corporation)
      PRC - C:\Program Files (x86)\Launch Manager\QtZgAcer.EXE (Dritek System Inc.)
      PRC - C:\Program Files (x86)\Acer Arcade Deluxe\Play Movie\PMVService.exe (CyberLink Corp.)
      PRC - C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe (Acer Inc.)
      PRC - C:\Program Files (x86)\Acer Arcade Deluxe\TV Joy\Kernel\TV\TVECapSvc.exe ()
      PRC - C:\Program Files (x86)\Acer Arcade Deluxe\TV Joy\Kernel\TV\TVESched.exe ()
      PRC - C:\Program Files (x86)\Acer Arcade Deluxe\TV Joy\TVEService.exe (CyberLink Corp.)
      PRC - C:\Program Files (x86)\Acer\Acer VCM\acp2HID.exe (Acer Inc.)
      PRC - C:\Program Files (x86)\Acer Arcade Deluxe\SportsCap\Kernel\MagicSports\MSPMirage.exe ()
      PRC - C:\Program Files (x86)\Acer\Acer VCM\AcerVCMProxy.exe (Acer)
      PRC - C:\Program Files (x86)\Symantec\LiveUpdate\ALUSchedulerSvc.exe (Symantec Corporation)
      PRC - C:\Program Files (x86)\Common Files\Symantec Shared\ccApp.exe (Symantec Corporation)
      PRC - C:\Program Files (x86)\Common Files\Symantec Shared\ccSvcHst.exe (Symantec Corporation)
      PRC - C:\Program Files (x86)\Common Files\Symantec Shared\AppCore\AppSvc32.exe (Symantec Corporation)


      ========== Modules (No Company Name) ==========

      MOD - C:\Users\user\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe ()
      MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\1d1239cae67610d8659752751abc7856\System.Windows.Forms.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\f9c517646d0706b9c61a41af685ff6b7\System.Drawing.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System\2e356db128ec7354bd70a3ecc84b1f87\System.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\4b10d8196bb368996ec5d24fca777456\mscorlib.ni.dll ()
      MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll ()
      MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll ()
      MOD - C:\Program Files (x86)\Acer Arcade Deluxe\TV Joy\Kernel\TV\CLTinyDB.dll ()
      MOD - C:\Program Files (x86)\Acer Arcade Deluxe\TV Joy\Kernel\TV\CLCapEngine.dll ()
      MOD - C:\Program Files (x86)\Acer Arcade Deluxe\TV Joy\Kernel\TV\CLSchMgr.dll ()
      MOD - C:\Program Files (x86)\Acer Arcade Deluxe\TV Joy\Kernel\TV\CLCapSvcps.dll ()
      MOD - C:\Program Files (x86)\Acer Arcade Deluxe\SportsCap\Kernel\MagicSports\MSPMirage.exe ()
      MOD - C:\Program Files (x86)\Cyberlink\Shared files\RichVideops.dll ()
      MOD - C:\Program Files (x86)\Acer Arcade Deluxe\SportsCap\Kernel\MagicSports\MediaObj.dll ()
      MOD - C:\Program Files (x86)\Acer Arcade Deluxe\SportsCap\Kernel\MagicSports\optcvw7.dll ()


      ========== Services (SafeList) ==========

      SRV:64bit: - (XAudioService) -- C:\Windows\SysNative\DRIVERS\xaudio64.exe ()
      SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
      SRV - (nvUpdatusService) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation)
      SRV - (SkypeUpdate) -- C:\Program Files (x86)\Skype\Updater\Updater.exe (Skype Technologies)
      SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
      SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
      SRV - (Symantec Core LC) -- C:\Program Files (x86)\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe (Symantec Corporation)
      SRV - (IAANTMON) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe (Intel Corporation)
      SRV - (RS_Service) -- C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe (Acer Inc.)
      SRV - (eRecoveryService) -- C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe (Acer Inc.)
      SRV - (TVECapSvc) -- C:\Program Files (x86)\Acer Arcade Deluxe\TV Joy\Kernel\TV\TVECapSvc.exe ()
      SRV - (TVESched) -- C:\Program Files (x86)\Acer Arcade Deluxe\TV Joy\Kernel\TV\TVESched.exe ()
      SRV - (MobilityService) -- C:\Acer\Mobility Center\MobilityService.exe ()
      SRV - (LiveUpdate) -- C:\PROGRA~2\Symantec\LIVEUP~1\LUCOMS~1.EXE (Symantec Corporation)
      SRV - (Programador de LiveUpdate automático) -- C:\Program Files (x86)\Symantec\LiveUpdate\ALUSchedulerSvc.exe (Symantec Corporation)
      SRV - (ISPwdSvc) -- C:\Program Files (x86)\Norton Internet Security\isPwdSvc.exe (Symantec Corporation)
      SRV - (CLTNetCnService) -- C:\Program Files (x86)\Common Files\Symantec Shared\ccSvcHst.exe (Symantec Corporation)
      SRV - (ccSetMgr) -- C:\Program Files (x86)\Common Files\Symantec Shared\ccSvcHst.exe (Symantec Corporation)
      SRV - (ccEvtMgr) -- C:\Program Files (x86)\Common Files\Symantec Shared\ccSvcHst.exe (Symantec Corporation)
      SRV - (comHost) -- C:\Program Files (x86)\Common Files\Symantec Shared\VAScanner\comHost.exe (Symantec Corporation)
      SRV - (SymAppCore) -- C:\Program Files (x86)\Common Files\Symantec Shared\AppCore\AppSvc32.exe (Symantec Corporation)


      ========== Driver Services (SafeList) ==========

      DRV:64bit: - (RMCAST) -- C:\Windows\SysNative\DRIVERS\RMCAST.sys ()
      DRV:64bit: - (USBAAPL64) -- C:\Windows\SysNative\Drivers\usbaapl64.sys ()
      DRV:64bit: - (dtsoftbus01) -- C:\Windows\SysNative\DRIVERS\dtsoftbus01.sys ()
      DRV:64bit: - (cpuz135) -- C:\Windows\SysNative\drivers\cpuz135_x64.sys ()
      DRV:64bit: - (GEARAspiWDM) -- C:\Windows\SysNative\DRIVERS\GEARAspiWDM.sys ()
      DRV:64bit: - (SymEvent) -- C:\Windows\SysNative\Drivers\SYMEVENT64x86.SYS ()
      DRV:64bit: - (sdbus) -- C:\Windows\SysNative\DRIVERS\sdbus.sys ()
      DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys ()
      DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\DRIVERS\b57nd60a.sys ()
      DRV:64bit: - (winbondcir) -- C:\Windows\SysNative\DRIVERS\winbondcir.sys ()
      DRV:64bit: - (XAudio) -- C:\Windows\SysNative\DRIVERS\xaudio64.sys ()
      DRV:64bit: - (HSF_DPV) -- C:\Windows\SysNative\DRIVERS\CAX_DPV.sys ()
      DRV:64bit: - (winachsf) -- C:\Windows\SysNative\DRIVERS\CAX_CNXT.sys ()
      DRV:64bit: - (iaStor) -- C:\Windows\SysNative\drivers\iastor.sys ()
      DRV:64bit: - (SynTP) -- C:\Windows\SysNative\DRIVERS\SynTP.sys ()
      DRV:64bit: - (CAXHWAZL) -- C:\Windows\SysNative\DRIVERS\CAXHWAZL.sys ()
      DRV:64bit: - (mdmxsdk) -- C:\Windows\SysNative\DRIVERS\mdmxsdk.sys ()
      DRV:64bit: - (NETw4v64) -- C:\Windows\SysNative\DRIVERS\NETw4v64.sys ()
      DRV:64bit: - (A310) -- C:\Windows\SysNative\DRIVERS\AVerA310USB.sys ()
      DRV:64bit: - (BDASwCap) -- C:\Windows\SysNative\drivers\AVerA310Cap.sys ()
      DRV:64bit: - (SNP2UVC) -- C:\Windows\SysNative\DRIVERS\snp2uvc.sys ()
      DRV:64bit: - (rimmptsk) -- C:\Windows\SysNative\DRIVERS\rimmpx64.sys ()
      DRV:64bit: - (rismxdp) -- C:\Windows\SysNative\DRIVERS\rixdpx64.sys ()
      DRV:64bit: - (rimsptsk) -- C:\Windows\SysNative\DRIVERS\rimspx64.sys ()
      DRV:64bit: - (SRTSPL) -- C:\Windows\SysNative\Drivers\SRTSPL64.SYS ()
      DRV:64bit: - (SRTSPX) -- C:\Windows\SysNative\Drivers\SRTSPX64.SYS ()
      DRV:64bit: - (SRTSP) -- C:\Windows\SysNative\Drivers\SRTSP64.SYS ()
      DRV:64bit: - (WpdUsb) -- C:\Windows\SysNative\DRIVERS\wpdusb.sys ()
      DRV:64bit: - (SYMTDI) -- C:\Windows\SysNative\Drivers\SYMTDI.SYS ()
      DRV:64bit: - (SYMREDRV) -- C:\Windows\SysNative\Drivers\SYMREDRV.SYS ()
      DRV:64bit: - (HSFHWAZL) -- C:\Windows\SysNative\DRIVERS\VSTAZL6.SYS ()
      DRV - ({49DE1C67-83F8-4102-99E0-C16DCC7EEC796}) -- C:\Program Files (x86)\Acer Arcade Deluxe\Play Movie\000.fcl (Cyberlink Corp.)
      DRV - (SNP2UVC) -- C:\Windows\SysWOW64\drivers\snp2uvc.sys ()
      DRV - (NAVEX15) -- C:\ProgramData\Symantec\Definitions\VirusDefs\20061106.064\EX64.SYS (Symantec Corporation)
      DRV - (NAVENG) -- C:\ProgramData\Symantec\Definitions\VirusDefs\20061106.064\ENG64.SYS (Symantec Corporation)
      DRV - (IDSvia64) -- C:\ProgramData\Symantec\Definitions\SymcData\idsdefs\20061025.029\IDSviA64.sys (Symantec Corporation)
      DRV - (int15) -- C:\Acer\Empowering Technology\eRecovery\int15.sys ()


      ========== Standard Registry (SafeList) ==========


      ========== Internet Explorer ==========

      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
      IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
      IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://es.es.acer.yahoo.com
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://es.es.acer.yahoo.com
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://start.facemoods.com/?a=ddrnw&s={searchTerms}&f=4
      IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
      IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}

      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SEARCH PAGE = http://es.rd.yahoo.com/customize/ycomp/defaults/sp/*http://es.yahoo.com
      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Yahoo! Search
      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://global.acer.com [binary data]
      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.facemoods.com/?a=ddrnw
      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
      IE - HKCU\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
      IE - HKCU\..\SearchScopes,DefaultScope = {0D7562AE-8EF6-416d-A838-AB665251703A}
      IE - HKCU\..\SearchScopes\{0D7562AE-8EF6-416d-A838-AB665251703A}: "URL" = http://start.facemoods.com/?a=ddrnw&s={searchTerms}&f=4
      IE - HKCU\..\SearchScopes\{E35042EB-5091-4368-9FDA-052A83B3429F}: "URL" = http://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
      IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
      IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

      ========== FireFox ==========

      FF - prefs.js..browser.search.defaultenginename: "Google"
      FF - prefs.js..browser.startup.homepage: "http://www.google.es/"
      FF - prefs.js..extensions.enabledAddons: {EB132DB0-A4CA-11DF-9732-0E29E0D72085}:1.3
      FF - prefs.js..extensions.enabledAddons: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:1.1
      FF - prefs.js..extensions.enabledItems: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.8.20100408.6
      FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26
      FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}:6.0.29


      FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_3_300_271.dll File not found
      FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_271.dll ()
      FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
      FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
      FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.5.0: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.5.1: C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
      FF - HKLM\Software\MozillaPlugins\@raidcall.com/RCplugin: C:\Users\user\AppData\LocalLow\raidcall\plugins\webplugin.dll (Raidcall)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
      FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)

      FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{EB132DB0-A4CA-11DF-9732-0E29E0D72085}: C:\Program Files (x86)\Object\facetheme [2012/02/15 20:02:06 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/09/11 01:16:45 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/12/06 14:59:30 | 000,000,000 | ---D | M]
      FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{EB132DB0-A4CA-11DF-9732-0E29E0D72085}: C:\Program Files (x86)\Object\facetheme [2012/02/15 20:02:06 | 000,000,000 | ---D | M]
      FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 15.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/09/11 01:16:45 | 000,000,000 | ---D | M]
      FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 15.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/12/06 14:59:30 | 000,000,000 | ---D | M]

      [2010/11/19 15:25:39 | 000,000,000 | ---D | M] (No name found) -- C:\Users\user\AppData\Roaming\mozilla\Extensions
      [2012/09/17 02:27:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\user\AppData\Roaming\mozilla\Firefox\Profiles\brdzcnz5.default\extensions
      [2012/07/25 14:15:02 | 000,741,958 | ---- | M] () (No name found) -- C:\Users\user\AppData\Roaming\mozilla\firefox\profiles\brdzcnz5.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
      [2012/09/17 02:27:57 | 000,270,876 | ---- | M] () (No name found) -- C:\Users\user\AppData\Roaming\mozilla\firefox\profiles\brdzcnz5.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi
      [2012/01/11 16:36:59 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions
      [2012/05/12 18:24:29 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\mozilla firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
      [2012/02/15 20:02:06 | 000,000,000 | ---D | M] (FaceTheme - Change your Facebook layout!) -- C:\PROGRAM FILES (X86)\OBJECT\FACETHEME
      [2012/09/11 01:16:44 | 000,266,720 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
      [2011/10/03 06:06:04 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
      [2012/08/31 17:24:04 | 000,002,465 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
      [2012/07/18 04:23:41 | 000,003,882 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\drae.xml
      [2012/06/18 12:35:15 | 000,001,143 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-es.xml
      [2011/11/14 02:17:09 | 000,002,048 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\fcmdSrch.xml
      [2012/08/31 17:24:04 | 000,002,253 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\twitter.xml
      [2012/06/18 12:35:15 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-es.xml
      [2012/06/18 12:35:15 | 000,001,102 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-es.xml

      ========== Chrome ==========

      CHR - homepage: http://start.facemoods.com/?a=ddrnw
      CHR - default_search_provider: Google (Enabled)
      CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
      CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}
      CHR - homepage: http://start.facemoods.com/?a=ddrnw
      CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
      CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.89\ppGoogleNaClPluginChrome.dll
      CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.89\pdf.dll
      CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.89\gcswf32.dll
      CHR - plugin: Shockwave Flash (Disabled) = C:\Users\user\AppData\Local\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
      CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
      CHR - plugin: Skype Toolbars (Enabled) = C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.9.0.9216_0\npSkypeChromePlugin.dll
      CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 8.0\Reader\Browser\nppdf32.dll
      CHR - plugin: Java Deployment Toolkit 6.0.290.11 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
      CHR - plugin: Java(TM) Platform SE 6 U29 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
      CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\np-mswmp.dll
      CHR - plugin: 2007 Microsoft Office system (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\NPOFF12.DLL
      CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin.dll
      CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin2.dll
      CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin3.dll
      CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin4.dll
      CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin5.dll
      CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin6.dll
      CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin7.dll
      CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
      CHR - plugin: Pando Web Plugin (Enabled) = C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
      CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
      CHR - plugin: Windows Presentation Foundation (Enabled) = C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
      CHR - Extension: SocialBro = C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\bagknoiagpifjfbempgignagkejmkljm\0.3.9_0\
      CHR - Extension: AdBlock = C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.5.45_0\

      O1 HOSTS File: ([2006/09/18 23:37:24 | 000,000,761 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
      O1 - Hosts: 127.0.0.1 localhost
      O1 - Hosts: ::1 localhost
      O2:64bit: - BHO: (no name) - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - No CLSID value found.
      O2 - BHO: (Yahoo! Toolbar Helper) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
      O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
      O2 - BHO: (Reg Error: Value error.) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - C:\Program Files (x86)\Common Files\Symantec Shared\coShared\Browser\1.0\NppBho.dll (Symantec Corporation)
      O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
      O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation)
      O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
      O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation)
      O3 - HKLM\..\Toolbar: (Show Norton Toolbar) - {90222687-F593-4738-B738-FBEE9C7B26DF} - C:\Program Files (x86)\Common Files\Symantec Shared\coShared\Browser\1.0\UIBHO.dll (Symantec Corporation)
      O3 - HKLM\..\Toolbar: (Barra Yahoo! con bloqueador de ventanas emergentes) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
      O3 - HKCU\..\Toolbar\ShellBrowser: (no name) - {5CBE3B7C-1E47-477E-A7DD-396DB0476E29} - No CLSID value found.
      O4:64bit: - HKLM..\Run: [Acer Tour Reminder] C:\Acer\AcerTour\Reminder.exe (Acer Inc.)
      O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
      O4:64bit: - HKLM..\Run: [IAAnotif] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe (Intel Corporation)
      O4:64bit: - HKLM..\Run: [PLFSet] C:\Windows\PLFSet.dll ( )
      O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Windows\RAVCpl64.exe (Realtek Semiconductor)
      O4:64bit: - HKLM..\Run: [SetPanel] C:\Acer\APanel\APanel.cmd File not found
      O4:64bit: - HKLM..\Run: [SynTPStart] C:\Archivos de programa\Synaptics\SynTP\SynTPStart.exe (Synaptics, Inc.)
      O4 - HKLM..\Run: [Acer Tour] File not found
      O4 - HKLM..\Run: [AdobeCS6ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe (Adobe Systems Incorporated)
      O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
      O4 - HKLM..\Run: [ccApp] C:\Program Files (x86)\Common Files\Symantec Shared\ccApp.exe (Symantec Corporation)
      O4 - HKLM..\Run: [eRecoveryService] File not found
      O4 - HKLM..\Run: [IS CfgWiz] C:\Program Files (x86)\Common Files\Symantec Shared\OPC\{31011D49-D90C-4da0-878B-78D28AD507AF}\cltUIStb.exe (Symantec Corporation)
      O4 - HKLM..\Run: [LManager] C:\PROGRA~2\LAUNCH~1\QtZgAcer.EXE (Dritek System Inc.)
      O4 - HKLM..\Run: [MSPService] C:\Program Files (x86)\Acer Arcade Deluxe\SportsCap\Kernel\MagicSports\MSPMirage.exe ()
      O4 - HKLM..\Run: [osCheck] C:\Program Files (x86)\Norton Internet Security\osCheck.exe (Symantec Corporation)
      O4 - HKLM..\Run: [PlayMovie] C:\Program Files (x86)\Acer Arcade Deluxe\Play Movie\PMVService.exe (CyberLink Corp.)
      O4 - HKLM..\Run: [TVEService] C:\Program Files (x86)\Acer Arcade Deluxe\TV Joy\TVEService.exe (CyberLink Corp.)
      O4 - HKLM..\Run: [WarReg_PopUp] C:\Acer\WR_PopUp\WarReg_PopUp.exe (Acer Inc.)
      O4 - HKCU..\Run: [mixnycakpemv] C:\Users\user\mixnycakpemv.exe (Unisys)
      O4 - HKCU..\Run: [Spotify] C:\Users\user\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd)
      O4 - HKCU..\Run: [Spotify Web Helper] C:\Users\user\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe ()
      O4 - HKCU..\Run: [WMPNSCFG] C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe File not found
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
      O8:64bit: - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not found
      O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not found
      O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
      O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
      O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL (Microsoft Corporation)
      O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Archivos de programa\Bonjour\mdnsNSP.dll (Apple Inc.)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
      O1364bit: - gopher Prefix: missing
      O13 - gopher Prefix: missing
      O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 10.5.0)
      O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
      O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 10.5.0)
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{21FAE7A8-C687-4494-BEFC-7EA00D4BAFAD}: DhcpNameServer = 192.168.1.1
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F7F411DA-05AB-4770-88DC-D624AF4678A1}: DhcpNameServer = 192.168.1.1
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F7F411DA-05AB-4770-88DC-D624AF4678A1}: NameServer = 80.253.65.11,80.58.0.33
      O18:64bit: - Protocol\Handler\livecall - No CLSID value found
      O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
      O18:64bit: - Protocol\Handler\msnim - No CLSID value found
      O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
      O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
      O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WI1F86~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
      O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WI1F86~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
      O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
      O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
      O18:64bit: - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Archivos de programa\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
      O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
      O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
      O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe ()
      O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
      O24 - Desktop WallPaper: C:\Users\user\AppData\Roaming\Microsoft\Windows Photo Gallery\Papel tapiz de Galería fotográfica de Windows.jpg
      O24 - Desktop BackupWallPaper: C:\Users\user\AppData\Roaming\Microsoft\Windows Photo Gallery\Papel tapiz de Galería fotográfica de Windows.jpg
      O32 - HKLM CDRom: AutoRun - 1
      O33 - MountPoints2\{979fb659-0e9c-11e1-89a5-9bc92808870b}\Shell - "" = AutoRun
      O33 - MountPoints2\{979fb659-0e9c-11e1-89a5-9bc92808870b}\Shell\AutoRun\command - "" = F:\AUTORUN.EXE
      O33 - MountPoints2\{979fb659-0e9c-11e1-89a5-9bc92808870b}\Shell\configure\command - "" = F:\SETUP.EXE
      O33 - MountPoints2\{979fb659-0e9c-11e1-89a5-9bc92808870b}\Shell\install\command - "" = F:\SETUP.EXE
      O34 - HKLM BootExecute: (autocheck autochk *)
      O35:64bit: - HKLM\..comfile [open] -- "%1" %*
      O35:64bit: - HKLM\..exefile [open] -- "%1" %*
      O35 - HKLM\..comfile [open] -- "%1" %*
      O35 - HKLM\..exefile [open] -- "%1" %*
      O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
      O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
      O37 - HKLM\...com [@ = comfile] -- "%1" %*
      O37 - HKLM\...exe [@ = exefile] -- "%1" %*
      O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
      O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

      ========== Files/Folders - Created Within 30 Days ==========

      [2012/09/19 15:59:35 | 000,600,064 | ---- | C] (OldTimer Tools) -- C:\Users\user\Desktop\OTL.exe
      [2012/09/10 13:00:44 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
      [2012/09/10 13:00:44 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
      [2012/09/07 00:49:19 | 000,102,912 | ---- | C] (Unisys) -- C:\Users\user\mixnycakpemv.exe
      [2012/09/01 23:19:43 | 000,000,000 | ---D | C] -- C:\Users\user\AppData\Local\Spotify
      [2012/09/01 23:18:10 | 000,000,000 | ---D | C] -- C:\Users\user\AppData\Roaming\Spotify

      ========== Files - Modified Within 30 Days ==========

      [2012/09/19 15:59:38 | 000,600,064 | ---- | M] (OldTimer Tools) -- C:\Users\user\Desktop\OTL.exe
      [2012/09/19 15:53:33 | 000,003,072 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
      [2012/09/19 15:53:33 | 000,003,072 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
      [2012/09/19 15:48:01 | 000,001,096 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
      [2012/09/19 14:54:30 | 000,002,299 | ---- | M] () -- C:\Users\user\AppData\Roaming\acervcmtmp.ini
      [2012/09/19 14:53:38 | 000,001,092 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
      [2012/09/19 14:53:28 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
      [2012/09/19 14:53:25 | 4293,320,704 | -HS- | M] () -- C:\hiberfil.sys
      [2012/09/19 12:24:15 | 000,066,048 | ---- | M] () -- C:\Users\user\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
      [2012/09/19 01:02:18 | 000,000,680 | ---- | M] () -- C:\Users\user\AppData\Local\d3d9caps.dat
      [2012/09/07 00:48:53 | 000,102,912 | ---- | M] (Unisys) -- C:\Users\user\mixnycakpemv.exe
      [2012/09/05 10:43:49 | 000,002,029 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
      [2012/09/04 10:09:20 | 001,538,808 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
      [2012/09/04 10:09:20 | 000,697,036 | ---- | M] () -- C:\Windows\SysNative\perfh00A.dat
      [2012/09/04 10:09:20 | 000,618,960 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
      [2012/09/04 10:09:20 | 000,125,554 | ---- | M] () -- C:\Windows\SysNative\perfc00A.dat
      [2012/09/04 10:09:20 | 000,106,744 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
      [2012/09/01 23:19:42 | 000,001,710 | ---- | M] () -- C:\Users\user\Desktop\Spotify.lnk

      ========== Files Created - No Company Name ==========

      [2012/09/10 15:58:51 | 4293,320,704 | -HS- | C] () -- C:\hiberfil.sys
      [2012/09/01 23:19:42 | 000,001,710 | ---- | C] () -- C:\Users\user\Desktop\Spotify.lnk
      [2012/09/01 23:19:42 | 000,001,696 | ---- | C] () -- C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
      [2012/06/11 19:48:36 | 000,000,600 | ---- | C] () -- C:\Users\user\AppData\Local\PUTTY.RND
      [2012/03/03 15:53:25 | 000,024,226 | ---- | C] () -- C:\Users\user\AppData\Roaming\UserTile.png
      [2011/03/24 22:59:53 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
      [2011/02/09 15:28:20 | 000,002,299 | ---- | C] () -- C:\Users\user\AppData\Roaming\acervcmtmp.ini
      [2011/01/01 23:31:28 | 000,066,048 | ---- | C] () -- C:\Users\user\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
      [2010/11/20 13:15:29 | 000,000,268 | ---- | C] () -- C:\Windows\{789289CA-F73A-4A16-A331-54D498CE069F}_WiseFW.ini
      [2010/11/18 20:24:13 | 000,086,016 | ---- | C] () -- C:\Windows\Hide.exe
      [2010/11/18 20:24:09 | 000,000,030 | ---- | C] () -- C:\Windows\SetPanel.ini
      [2010/11/18 20:23:57 | 000,000,053 | ---- | C] () -- C:\Windows\REMOVEHD.INI
      [2010/11/18 20:23:56 | 000,000,092 | ---- | C] () -- C:\Windows\CLEANUP.INI
      [2010/11/18 12:00:54 | 000,000,680 | ---- | C] () -- C:\Users\user\AppData\Local\d3d9caps.dat
      [2010/11/18 11:57:14 | 000,000,069 | ---- | C] () -- C:\Windows\eAPLauncher.ini
      [2010/11/18 11:57:01 | 000,016,384 | ---- | C] () -- C:\Windows\SysWow64\LauncheRyAgentUser.exe
      [2010/11/18 11:57:01 | 000,016,384 | ---- | C] ( ) -- C:\Windows\SysWow64\ClearEvent.exe
      [2010/11/18 11:54:10 | 001,729,152 | ---- | C] () -- C:\Windows\SysWow64\drivers\snp2uvc.sys
      [2010/11/18 11:54:10 | 000,172,032 | ---- | C] ( ) -- C:\Windows\SysWow64\rsnp2uvc.dll
      [2010/11/18 11:42:02 | 000,000,732 | ---- | C] () -- C:\Users\user\AppData\Local\d3d9caps64.dat
      [2010/11/18 11:28:11 | 000,001,132 | ---- | C] () -- C:\Windows\RtDefLvl.ini
      [2010/10/21 22:36:20 | 000,203,264 | ---- | C] () -- C:\Users\user\AppData\Local\GetToolbar.exe

      ========== ZeroAccess Check ==========

      [2006/11/02 17:30:40 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

      ========== LOP Check ==========

      [2010/12/16 11:24:32 | 000,000,000 | ---D | M] -- C:\Users\user\AppData\Roaming\Acer
      [2012/08/11 12:45:23 | 000,000,000 | ---D | M] -- C:\Users\user\AppData\Roaming\Caiw
      [2012/06/06 16:37:23 | 000,000,000 | ---D | M] -- C:\Users\user\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
      [2012/09/10 13:55:20 | 000,000,000 | ---D | M] -- C:\Users\user\AppData\Roaming\DAEMON Tools Lite
      [2012/05/31 00:37:05 | 000,000,000 | ---D | M] -- C:\Users\user\AppData\Roaming\Dropbox
      [2012/08/10 20:57:17 | 000,000,000 | ---D | M] -- C:\Users\user\AppData\Roaming\FileZilla
      [2010/11/19 22:20:37 | 000,000,000 | ---D | M] -- C:\Users\user\AppData\Roaming\LolClient
      [2012/05/24 16:00:17 | 000,000,000 | ---D | M] -- C:\Users\user\AppData\Roaming\LolClient2
      [2011/03/05 13:21:53 | 000,000,000 | ---D | M] -- C:\Users\user\AppData\Roaming\Mumble
      [2012/03/03 15:53:24 | 000,000,000 | ---D | M] -- C:\Users\user\AppData\Roaming\PeerNetworking
      [2012/05/28 16:38:02 | 000,000,000 | ---D | M] -- C:\Users\user\AppData\Roaming\redsn0w
      [2012/05/24 19:15:00 | 000,000,000 | ---D | M] -- C:\Users\user\AppData\Roaming\Softplicity
      [2012/09/19 15:59:10 | 000,000,000 | ---D | M] -- C:\Users\user\AppData\Roaming\Spotify
      [2011/12/16 20:08:15 | 000,000,000 | ---D | M] -- C:\Users\user\AppData\Roaming\TS3Client
      [2012/04/27 16:41:56 | 000,000,000 | ---D | M] -- C:\Users\user\AppData\Roaming\Xepiah
      [2012/04/25 13:46:14 | 000,000,000 | ---D | M] -- C:\Users\user\AppData\Roaming\Ysig

      ========== Purity Check ==========



      < End of report >

    4. #4
      Moderador.
      Avatar de @Tincho
      Registrado
      may 2008
      Ubicación
      Argentina
      Mensajes
      14.701

      Re: ¿Mixnycakpemv.exe?

      Buenas.



      Ejecutá OTL.exe


      1.- Copiar el siguiente texto (excluyendo la palabra Código):
      Código:
      :OTL
      O4 - HKCU..\Run: [mixnycakpemv] C:\Users\user\mixnycakpemv.exe (Unisys)
      
      
      :Commands
      [PURITY] 
      [RESETHOSTS]
      [EMPTYFLASH]
      [EMPTYTEMP]
      [CREATERESTOREPOINT]
      2.- Pegar el contenido sobre el apartado: Análisis Personalizados /Código de Reparación.


      3.- Presionar el botón Reparar para comenzar el procedimiento. Presionar OK.


      OTL va a reiniciar el ordenador para completar el procedimiento.

      Guardar el nuevo reporte generado. Copiar y pegarlo en su próxima respuesta, comentando como funciona el Sistema.
      Tyny's
      If on your journey, you should encounter God, God will be cut!

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.