• Registrarse
  • Iniciar sesión


  • Página 1 de 3 123 ÚltimoÚltimo
    Resultados 1 al 10 de 22

    Páginas de publicidad (Reabierto)

    Hola! hace unas semanas me descargue el ares y desde entonces se me abren páginas de anuncios solas en cuanto conecto el ordenador a internet. Y ahora mismo acabo de descargarme skype y no me ...

    1. #1
      Usuario Avatar de urru
      Registrado
      jun 2012
      Ubicación
      Bizkaia
      Mensajes
      73

      Páginas de publicidad (Reabierto)

      Hola! hace unas semanas me descargue el ares y desde entonces se me abren páginas de anuncios solas en cuanto conecto el ordenador a internet. Y ahora mismo acabo de descargarme skype y no me anda ni el facebook, creo que tengo un virus de los grandes en el ordenador. La página a la cual me remite una vez que intento entrar en facebook es esta:
      http://assist.babylon.com/babylonassista/dnsassist/main?domain=check6only.facebook.comajax%2Fv6.php%3Fv%3Dcheck6only%26pingonly%3Dfalse
      ¿Alguien me puede ayudar? Gracias!

    2. #2
      Moderador Gral.
      Avatar de @Leosolari
      Registrado
      jun 2007
      Ubicación
      Argentina
      Mensajes
      58.637

      Re: Páginas de publicidad

      Hola



      • Desactivá temporalmente el Antivirus y/o Antispyware. Cómo deshabilitar temporalmente su Antivirus

      • Descarga la Herramienta AT-Destroyer (by InfoSpyware)

      • Ejecuta la herramienta como administrador.
      • (Si usas Windows Vista o 7 Presiona clic derecho y selecciona "Ejecutar como Administrador.")

      • Aparecerá el Disclaimer de la herramienta. Presiona .

      • Presiona sobre la opción 1 (Buscar y Destruir)

      • La herramienta desconectará el escritorio moméntaneamente.

      • En caso de estar infectado,la herramienta lo indicará con lineas rojas donde se haya encontrado la infección,sino,serán lineas verdes.

      • Una vez terminado el escaneo,podrás volver a ver el escritorio y se te abrirá un reporte,que deberás copiar en tu próxima respuesta comentando cómo funciona el sistema.




      Ahora, Por favor, seguí este procedimiento:



      PASO 1

      Descargá estas herramientas a Tu escritorio, pero No ejecutes nada aún:


      º Glary Utilities y lo instalas según Su manual.

      º Malwarebytes y lo instalas y actualizas según su manual.



      PASO 2

      Ejecutá las herramientas en este órden:



      1.- Glary Utilities
      • Presioná el Boton Mantenimiento un Clic
      • Presioná el Boton Ver Resultados y esperá a que termine.
      • Cuando termine, presionas el Boton Reparar Problemas.





      2.- Malwarebytes

      Seleccionas hacer un "escaneo completo". Una vez finalizado, si detecta algo, pulsá "Quitar lo Seleccionado" como lo muestra Esta Imagen
      Si te pide reiniciar, lo haces.






      En Tu pròxima respuesta debes poner lo siguiente:

      º El Reporte de Malwarebytes (Está en Su Pestaña Registro)
      º El reporte de AT-Destroyer.
      º Como va tu ordenador ahora.





      Saludos
      Síguenos en Twitter y hazte nuestro amigo en Facebook.

    3. #3
      Usuario Avatar de urru
      Registrado
      jun 2012
      Ubicación
      Bizkaia
      Mensajes
      73

      Re: Páginas de publicidad

      ya tengo el primer problema, no se me descarga at-destroyer

    4. #4
      Usuario Avatar de urru
      Registrado
      jun 2012
      Ubicación
      Bizkaia
      Mensajes
      73

      Re: Páginas de publicidad

      Malwarebytes Anti-Malware 1.65.0.1400
      Malwarebytes : Free anti-malware download

      Versión de la Base de Datos: v2012.10.16.14

      Windows 7 Service Pack 1 x64 NTFS
      Internet Explorer 9.0.8112.16421
      Propietario :: PROPIETARIO-PC [administrador]

      17/10/2012 0:29:32
      mbam-log-2012-10-17 (00-29-32).txt

      Tipos de Análisis: Análisis Completo (C:\|D:\|E:\|)
      Opciones de análisis activado: Memoria | Inicio | Registro | Sistema de archivos | Heurística/Extra | Heurística/Shuriken | PUP | PUM
      Opciones de análisis desactivados: P2P
      Objetos examinados: 438549
      Tiempo transcurrido: 1 hora(s), 9 minuto(s), 37 segundo(s)

      Procesos en Memoria Detectados: 0
      (No se han detectado elementos maliciosos)

      Módulos de Memoria Detectados: 0
      (No se han detectado elementos maliciosos)

      Claves del Registro Detectados: 5
      HKCR\CLSID\{00cbb66b-1d3b-46d3-9577-323a336acb50} (PUP.Blabbers) -> No se tomaron medidas.
      HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00CBB66B-1D3B-46D3-9577-323A336ACB50} (PUP.Blabbers) -> No se tomaron medidas.
      HKCR\CLSID\{5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} (PUP.Blabbers) -> No se tomaron medidas.
      HKCR\CLSID\{963B125B-8B21-49A2-A3A8-E37092276531} (PUP.Blabbers) -> No se tomaron medidas.
      HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{963B125B-8B21-49A2-A3A8-E37092276531} (PUP.Blabbers) -> No se tomaron medidas.

      Valores del Registro Detectados: 0
      (No se han detectado elementos maliciosos)

    5. #5
      Usuario Avatar de urru
      Registrado
      jun 2012
      Ubicación
      Bizkaia
      Mensajes
      73

      Re: Páginas de publicidad

      #################################################### A/T-Destroyer by InfoSpyware ############

      A/T-Destroyer 1.0.7 By Infospyware
      InfoSpyware
      Fecha iniciada en el analisis 17/10/2012
      Hora iniciada en el analisis 023,11
      Usuario Actual : [C:\Users\Propietario]
      Sistema Operativo: Windows 7 Home Premium
      Arquitectura: Sistema operativo de 64 bits
      Versión Internet Explorer: 9.0.8112.16421
      Modo Actual: Modo Normal.
      Privilegios: [Propietario-Administrador]
      Versión Google Chrome:
      Versión Mozilla Firefox: 15.0.1

      ====== Servicios Eliminados By A/T-Destroyer ======




      ====== Claves Eliminadas By A/T-Destroyer ======


      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run | ( DATAMNGR )
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar | ( {99079a25-328f-4bd4-be04-00955acaa0a7} )
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar | ( {98889811-442D-49dd-99D7-DC866BE87DBC} )
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar | ( {F9639E4A-801B-4843-AEE3-03D9DA199E77} )
      HKEY_CURRENT_USER\Software\DataMngr
      HKEY_CURRENT_USER\Software\DataMngr\Chrome
      HKEY_CURRENT_USER\Software\DataMngr\Chrome\FF
      HKEY_CURRENT_USER\Software\DataMngr\Files
      HKEY_CURRENT_USER\Software\DataMngr\Files\ChromeHomepage
      HKEY_CURRENT_USER\Software\DataMngr\Files\Homepage
      HKEY_CURRENT_USER\Software\DataMngr\Files\SelectedSearch
      HKEY_CURRENT_USER\Software\DataMngr\Files\UrlbarSearch
      HKEY_CURRENT_USER\Software\DataMngr\IEBHO
      HKEY_CURRENT_USER\Software\DataMngr\IEBHO\Components
      HKEY_CURRENT_USER\Software\DataMngr\IEBHO\RelatedSearch
      HKEY_CURRENT_USER\Software\DataMngr\List
      HKEY_CURRENT_USER\Software\DataMngr\List\Item1
      HKEY_CURRENT_USER\Software\DataMngr\List\Item1\Protected1
      HKEY_CURRENT_USER\Software\DataMngr\List\Item1\Protected2
      HKEY_CURRENT_USER\Software\DataMngr\List\Item1\Protected3
      HKEY_CURRENT_USER\Software\DataMngr\List\Item2
      HKEY_CURRENT_USER\Software\DataMngr\List\Item3
      HKEY_CURRENT_USER\Software\DataMngr\List\Item4
      HKEY_CURRENT_USER\Software\DataMngr\Toolbar
      HKEY_CURRENT_USER\Software\DataMngr
      HKEY_CURRENT_USER\Software\DataMngr_Toolbar\Values
      HKEY_CURRENT_USER\Software\DataMngr_Toolbar
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\Chrome
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\Chrome\FF
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\Files
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\Files\Homepage
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\Files\SelectedSearch
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\Files\UrlbarSearch
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\IEBHO
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\IEBHO\Components
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\IEBHO\RelatedSearch
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\List
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\List\Item1
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\List\Item1\Protected1
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\List\Item1\Protected2
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\List\Item1\Protected3
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\List\Item2
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\List\Item3
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\List\Item4
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\Toolbar
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr
      HKEY_CLASSES_ROOT\SearchQUIEHelper.DNSGuard
      HKEY_CLASSES_ROOT\SearchQUIEHelper.DNSGuard\CLSID
      HKEY_CLASSES_ROOT\SearchQUIEHelper.DNSGuard\CurVer
      HKEY_CLASSES_ROOT\SearchQUIEHelper.DNSGuard
      HKEY_CLASSES_ROOT\SearchQUIEHelper.DNSGuard.1
      HKEY_CLASSES_ROOT\SearchQUIEHelper.DNSGuard.1\CLSID
      HKEY_CLASSES_ROOT\SearchQUIEHelper.DNSGuard.1
      HKEY_LOCAL_MACHINE\SOFTWARE\SearchquMediabarTb
      HKEY_LOCAL_MACHINE\SOFTWARE\SearchquMediabarTb
      HKEY_CLASSES_ROOT\AppID\BrowserConnection.DLL
      HKEY_CLASSES_ROOT\AppID\BrowserConnection.DLL
      HKEY_CLASSES_ROOT\AppID\DnsBHO.DLL
      HKEY_CLASSES_ROOT\AppID\DnsBHO.DLL
      HKEY_CLASSES_ROOT\CLSID\{99079a25-328f-4bd4-be04-00955acaa0a7}
      HKEY_CLASSES_ROOT\CLSID\{99079a25-328f-4bd4-be04-00955acaa0a7}\InprocServer32
      HKEY_CLASSES_ROOT\CLSID\{99079a25-328f-4bd4-be04-00955acaa0a7}
      HKEY_CLASSES_ROOT\CLSID\{9D717F81-9148-4f12-8568-69135F087DB0}
      HKEY_CLASSES_ROOT\CLSID\{9D717F81-9148-4f12-8568-69135F087DB0}\InprocServer32
      HKEY_CLASSES_ROOT\CLSID\{9D717F81-9148-4f12-8568-69135F087DB0}\ProgID
      HKEY_CLASSES_ROOT\CLSID\{9D717F81-9148-4f12-8568-69135F087DB0}\Programmable
      HKEY_CLASSES_ROOT\CLSID\{9D717F81-9148-4f12-8568-69135F087DB0}\TypeLib
      HKEY_CLASSES_ROOT\CLSID\{9D717F81-9148-4f12-8568-69135F087DB0}\VersionIndependentProgID
      HKEY_CLASSES_ROOT\CLSID\{9D717F81-9148-4f12-8568-69135F087DB0}
      HKEY_CLASSES_ROOT\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87}
      HKEY_CLASSES_ROOT\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87}\InprocServer32
      HKEY_CLASSES_ROOT\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87}\Programmable
      HKEY_CLASSES_ROOT\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87}
      HKEY_CLASSES_ROOT\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515}
      HKEY_CLASSES_ROOT\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515}\InprocServer32
      HKEY_CLASSES_ROOT\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515}\ProgID
      HKEY_CLASSES_ROOT\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515}\TypeLib
      HKEY_CLASSES_ROOT\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515}\VersionIndependentProgID
      HKEY_CLASSES_ROOT\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515}
      HKEY_CLASSES_ROOT\TypeLib\{5B4144E1-B61D-495A-9A50-CD1A95D86D15}\1.0
      HKEY_CLASSES_ROOT\TypeLib\{5B4144E1-B61D-495A-9A50-CD1A95D86D15}\1.0\0
      HKEY_CLASSES_ROOT\TypeLib\{5B4144E1-B61D-495A-9A50-CD1A95D86D15}\1.0\0\win32
      HKEY_CLASSES_ROOT\TypeLib\{5B4144E1-B61D-495A-9A50-CD1A95D86D15}\1.0\0\win64
      HKEY_CLASSES_ROOT\TypeLib\{5B4144E1-B61D-495A-9A50-CD1A95D86D15}\1.0\FLAGS
      HKEY_CLASSES_ROOT\TypeLib\{5B4144E1-B61D-495A-9A50-CD1A95D86D15}\1.0\HELPDIR
      HKEY_CLASSES_ROOT\TypeLib\{5B4144E1-B61D-495A-9A50-CD1A95D86D15}
      HKEY_CLASSES_ROOT\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9}\1.0
      HKEY_CLASSES_ROOT\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9}\1.0\0
      HKEY_CLASSES_ROOT\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9}\1.0\0\win32
      HKEY_CLASSES_ROOT\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9}\1.0\0\win64
      HKEY_CLASSES_ROOT\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9}\1.0\FLAGS
      HKEY_CLASSES_ROOT\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9}\1.0\HELPDIR
      HKEY_CLASSES_ROOT\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9}
      HKEY_CLASSES_ROOT\TypeLib\{841D5A49-E48D-413C-9C28-EB3D9081D705}\1.0
      HKEY_CLASSES_ROOT\TypeLib\{841D5A49-E48D-413C-9C28-EB3D9081D705}\1.0\0
      HKEY_CLASSES_ROOT\TypeLib\{841D5A49-E48D-413C-9C28-EB3D9081D705}\1.0\0\win32
      HKEY_CLASSES_ROOT\TypeLib\{841D5A49-E48D-413C-9C28-EB3D9081D705}\1.0\0\win64
      HKEY_CLASSES_ROOT\TypeLib\{841D5A49-E48D-413C-9C28-EB3D9081D705}\1.0\FLAGS
      HKEY_CLASSES_ROOT\TypeLib\{841D5A49-E48D-413C-9C28-EB3D9081D705}\1.0\HELPDIR
      HKEY_CLASSES_ROOT\TypeLib\{841D5A49-E48D-413C-9C28-EB3D9081D705}
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99079a25-328f-4bd4-be04-00955acaa0a7}
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99079a25-328f-4bd4-be04-00955acaa0a7}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}\InprocServer32
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}\ProgID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}\Programmable
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}\VersionIndependentProgID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BrowserConnection.Loader
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BrowserConnection.Loader\CLSID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BrowserConnection.Loader\CurVer
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BrowserConnection.Loader
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BrowserConnection.Loader.1
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BrowserConnection.Loader.1\CLSID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BrowserConnection.Loader.1
      HKEY_CLASSES_ROOT\AppID\escort.DLL
      HKEY_CLASSES_ROOT\AppID\escort.DLL
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4a99-B4B6-146BF802613B}
      HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4a99-B4B6-146BF802613B}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF7FEC6D-451B-4452-9D26-7E10C6B5DB6E}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF7FEC6D-451B-4452-9D26-7E10C6B5DB6E}\InprocServer32
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF7FEC6D-451B-4452-9D26-7E10C6B5DB6E}\ProgID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF7FEC6D-451B-4452-9D26-7E10C6B5DB6E}\Programmable
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF7FEC6D-451B-4452-9D26-7E10C6B5DB6E}\TypeLib
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF7FEC6D-451B-4452-9D26-7E10C6B5DB6E}\VersionIndependentProgID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF7FEC6D-451B-4452-9D26-7E10C6B5DB6E}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED0E67AD-926C-4008-87E5-03CF72AA2A7E}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED0E67AD-926C-4008-87E5-03CF72AA2A7E}\InprocServer32
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED0E67AD-926C-4008-87E5-03CF72AA2A7E}\ProgID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED0E67AD-926C-4008-87E5-03CF72AA2A7E}\Programmable
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED0E67AD-926C-4008-87E5-03CF72AA2A7E}\TypeLib
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED0E67AD-926C-4008-87E5-03CF72AA2A7E}\VersionIndependentProgID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED0E67AD-926C-4008-87E5-03CF72AA2A7E}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C1545464-C77C-4130-A572-1C619E2895FE}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C1545464-C77C-4130-A572-1C619E2895FE}\InprocServer32
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C1545464-C77C-4130-A572-1C619E2895FE}\ProgID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C1545464-C77C-4130-A572-1C619E2895FE}\Programmable
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C1545464-C77C-4130-A572-1C619E2895FE}\TypeLib
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C1545464-C77C-4130-A572-1C619E2895FE}\VersionIndependentProgID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C1545464-C77C-4130-A572-1C619E2895FE}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C01315C7-B4E2-4864-B43D-5FAFC414D179}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C01315C7-B4E2-4864-B43D-5FAFC414D179}\LocalServer32
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C01315C7-B4E2-4864-B43D-5FAFC414D179}\ProgID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C01315C7-B4E2-4864-B43D-5FAFC414D179}\Programmable
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C01315C7-B4E2-4864-B43D-5FAFC414D179}\TypeLib
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C01315C7-B4E2-4864-B43D-5FAFC414D179}\VersionIndependentProgID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C01315C7-B4E2-4864-B43D-5FAFC414D179}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99}\InprocServer32
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99}\ProgID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99}\Programmable
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99}\TypeLib
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99}\VersionIndependentProgID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}\instl
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}\instl\data
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}\instl\dfltLng
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}
      HKEY_CURRENT_USER\Software\ImInstaller
      HKEY_CURRENT_USER\Software\ImInstaller\IncrediMail
      HKEY_CURRENT_USER\Software\ImInstaller
      HKEY_LOCAL_MACHINE\SOFTWARE\Conduit\AppPaths
      HKEY_LOCAL_MACHINE\SOFTWARE\Conduit\AppPaths\client
      HKEY_LOCAL_MACHINE\SOFTWARE\Conduit\Community Alerts
      HKEY_LOCAL_MACHINE\SOFTWARE\Conduit\HomePage
      HKEY_LOCAL_MACHINE\SOFTWARE\Conduit
      HKEY_LOCAL_MACHINE\SOFTWARE\Iminent
      HKEY_LOCAL_MACHINE\SOFTWARE\Iminent
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{336D0C35-8A85-403a-B9D2-65C292C39087}
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{336D0C35-8A85-403a-B9D2-65C292C39087}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\YontooIEClient.DLL
      HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
      HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}\InProcServer32
      HKLM\SOFTWARE\Classes\CLSID\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7E84186E-B5DE-4226-8A66-6E49C6B511B4}
      HKLM\SOFTWARE\Classes\CLSID\{7E84186E-B5DE-4226-8A66-6E49C6B511B4}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80922ee0-8a76-46ae-95d5-bd3c3fe0708d}
      HKLM\SOFTWARE\Classes\CLSID\{80922ee0-8a76-46ae-95d5-bd3c3fe0708d}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99066096-8989-4612-841F-621A01D54AD7}
      HKLM\SOFTWARE\Classes\CLSID\{99066096-8989-4612-841F-621A01D54AD7}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}\InprocServer32
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}\ProgID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}\Programmable
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}\TypeLib
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}\VersionIndependentProgID
      HKLM\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}\InprocServer32
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}\ProgID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}\Programmable
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}\TypeLib
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}\VersionIndependentProgID
      HKLM\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44b0-A826-84C829536E93}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44b0-A826-84C829536E93}\defaultEnableAppsList
      HKLM\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44b0-A826-84C829536E93}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}\NumMethods
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}\ProxyStubClsid32
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}\TypeLib
      HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}\NumMethods
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}\ProxyStubClsid32
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}\TypeLib
      HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}\1.0
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}\1.0\0
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}\1.0\0\win32
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}\1.0\FLAGS
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}\1.0\HELPDIR
      HKLM\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YontooIEClient.Api
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YontooIEClient.Api\CLSID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YontooIEClient.Api\CurVer
      HKLM\SOFTWARE\Classes\YontooIEClient.Api
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YontooIEClient.Api.1
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YontooIEClient.Api.1\CLSID
      HKLM\SOFTWARE\Classes\YontooIEClient.Api.1
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YontooIEClient.Layers
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YontooIEClient.Layers\CLSID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YontooIEClient.Layers\CurVer
      HKLM\SOFTWARE\Classes\YontooIEClient.Layers
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YontooIEClient.Layers.1
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YontooIEClient.Layers.1\CLSID
      HKLM\SOFTWARE\Classes\YontooIEClient.Layers.1
      HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc
      HKLM\SOFTWARE\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
      HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\Complitly.DLL
      HKLM\SOFTWARE\Classes\AppID\Complitly.DLL
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{442F13BC-2031-42D5-9520-437F65271153}
      HKLM\SOFTWARE\Classes\AppID\{442F13BC-2031-42D5-9520-437F65271153}
      HKLM\SOFTWARE\Classes\CLSID\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
      HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\dlfienamagdnkekbbbocojppncdambda
      HKLM\SOFTWARE\Google\Chrome\Extensions\dlfienamagdnkekbbbocojppncdambda
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4FFBB818-B13C-11E0-931D-B2664824019B}_is1
      HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4FFBB818-B13C-11E0-931D-B2664824019B}_is1
      HKEY_LOCAL_MACHINE\SOFTWARE\SimplyGen\Marker
      HKLM\SOFTWARE\SimplyGen


      ====== Archivos/Carpetas Eliminados By A/T-Destroyer ======

    6. #6
      Usuario Avatar de urru
      Registrado
      jun 2012
      Ubicación
      Bizkaia
      Mensajes
      73

      Re: Páginas de publicidad

      C:\Program Files (x86)\Searchqu Toolbar\Datamngr
      C:\Program Files (x86)\Searchqu Toolbar\sysid.ini
      C:\Program Files (x86)\Searchqu Toolbar\uninstall.exe
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\BrowserConnection.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\datamngr.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\datamngrUI.exe
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\DnsBHO.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\IEBHO.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\installhelper.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\x64
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\chrome.manifest
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\chrome.manifest.alt
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\components
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\content
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\install.rdf
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\components\DataMngrHlp.xpt
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\components\DataMngrHlpFF10.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\components\DataMngrHlpFF11.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\components\DataMngrHlpFF12.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\components\DataMngrHlpFF13.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\components\DataMngrHlpFF14.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\components\DataMngrHlpFF15.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\components\DataMngrHlpFF3.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\components\DataMngrHlpFF4.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\components\DataMngrHlpFF5.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\components\DataMngrHlpFF6.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\components\DataMngrHlpFF7.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\components\DataMngrHlpFF8.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\components\DataMngrHlpFF9.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\content\DataMngr.js
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\content\DnsBHO.js
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\content\Error404BHO.js
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\content\NewTabBHO.js
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\content\overlay.js
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\content\overlay.xul
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\content\RelatedSearch.js
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\content\RequestPreserver.js
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\content\SearchBHO.js
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\content\SettingManager.js
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension\content\Settings.xml
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\as_guid.dat
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\components
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\dtUser.exe
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\manifest.xml
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\searchquband.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\searchqudtx.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\uninstall.exe
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\bandoocode.js
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\data
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\lib
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\modules
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\neterror.xhtml
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\partner.coupons.xml
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\preferences.xml
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\radiobeta.js
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\template.xml
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\toolbar.htm
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\toolbar.xul
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\vmncode.js
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\vmnrsswin.xml
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\widgets
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\data\search
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\data\search\engines.xml
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\data\search\search.xsl
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\lib\about.xml
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\lib\bandoocode.js
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\lib\dtxpanel.xul
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\lib\dtxpaneltransparent.xul
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\lib\dtxpanelwin.xul
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\lib\dtxprefwin.xul
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\lib\dtxtransparentwin.xul
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\lib\dtxwin.xul
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\lib\emailnotifierproviders.xml
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\lib\external.js
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\lib\neterror.xhtml
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\lib\vmncode.js
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\lib\wmpstreamer.html
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\modules\datastore.jsm
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\modules\nsDragAndDrop.js
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\babylon_logo.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\bandoo.css
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\bluelite.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\bluesky.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\btn-search-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\btn-search.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\btn-settings-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\btn-settings.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\btn-widgets-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\btn-widgets.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\btn_settings.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\ca.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\dictionary.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\divider.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\downloadcom.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\dtxlogo.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\ebay.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\email.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\email_on.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\facebook.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\games.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\graphred0.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\graphred0_5.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\graphred1.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\graphred1_5.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\graphred2.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\graphred2_5.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\graphred3.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\graphred3_5.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\graphred4.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\graphred4_5.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\graphred5.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\graphredna.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\grey.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\ico-shield.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\icon_amazon.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\icon_games.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\icon_radio_png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\icon_seperator_png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\icon_twitter.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\icon_youtube.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\images.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\imesh.css
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lichen.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\logo-about.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\logo-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\logo-separator.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\logo.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\mail.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\maps.bmp
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\menuseparatorback.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\modify-save.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\modify.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\modifyhot.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\music.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\news.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\options
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\orange.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\pixsy.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\protect-id.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\radiobeta-buffering.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\radiobeta-connecting.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\radiobeta-playing.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\radiobeta-stopped.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\radiobeta.ico
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\relatedlinks.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\rss-collapse.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\rss-delete.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\rss-expand.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\rss-feed.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\rss-folder-remove.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\rss-folder-rename.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\rss-folder.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\rss-found.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\rss-reload.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\rss-subscribe.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\rss.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\rssback.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\rsstopback.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\search-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\search.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\searchbar
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\search_button_over_png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\search_button_png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\settings.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\shopping.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\siteinfo.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\skin-bluelite.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\skin-bluesky.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\skin-grey.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\skin-lichen.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\skin-orange.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\skin-yellow.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\skin.xml
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\technorati.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\throbber.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\toolbarsplitter.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\translate.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\video.bmp
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\vmn.css
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\vmn.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\weather.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\web.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\widgets-square-16px.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\wikipedia.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\yahoosearch.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\yellow.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\youtube.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\zoom.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\add.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\aol.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\arrow-dn.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\arrow-right-disabled.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\arrow-right.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\arrow-up.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\bg-btn-divider.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\bg-btn-end.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\bg-btn-mdl.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\bg-btn-mdl_ff.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\bg-btn-start.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\bg-btnover-divider.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\bg-btnover-end.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\bg-btnover-mdl.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\bg-btnover-mdl_ff.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\bg-btnover-start.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\blank.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\btn-widgets-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\btn-widgets.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\btnback-down-vista.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\btnback-vista.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\btnleft-down-vista.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\btnleft-vista.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\btnright-down-vista.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\btnright-vista.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\btn_slider.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\button-splitter-down-vista.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\button-splitter-vista.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\checkmark.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\chevron.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\collapse.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\comcast.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\dtx.css
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\edit-back-hot.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\edit-back.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\expand.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\found.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\gmail.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\highlight.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\highlight_blue.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\highlight_cyan.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\highlight_lime.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\highlight_magenta.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\highlight_yellow.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\hotmail.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\ico-check.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\imap.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\lastsearch-thumb-back.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\loadingMid.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\lock.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\logo-separator.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\mailcom.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\menuitem-splitter.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\menuitemback-down-vista.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\menuitemback-vista.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\menuitemleft-down-vista.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\menuitemleft-vista.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\menuitemright-down-vista.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\menuitemright-vista.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\menu_bg-basic.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\menu_separator_bar.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\menu_separator_white.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\modify.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\move.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\movetarget.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\pop.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radiobeta-buffering.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radiobeta-connecting.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radiobeta-playing.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radiobeta-stopped.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radiobeta.ico
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\reload.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\remove.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\rename.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\resize-box.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\rss.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\rsschannelback.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\RSSLogo.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\rsstabdivider.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\scroll-left.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\scroll-right.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\search-go.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\search.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\text-ellipsis.xml
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\throbber.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\toolbarsplitter.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\transparent_1px.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\yahoo.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\css
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\footer.htm
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\gamecategory.xsl
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\gameData.js
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\gameList.xsl
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\games.xsl
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\gametype.xsl
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\initHTML.html
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\popupGames.html
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\popupHTML.html
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\popupRSS.html
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\popupWidgets.html
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\scroll.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\css\panels.css
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\css\popupAbout.css
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\css\popupGames.css
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\css\popupRSS.css
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\css\popupWidgets.css
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\css
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\main.html
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\scripts
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\css\dialog.css
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\bg.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\btn-search.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\btn-wide-close-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\btn-wide-close.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\default.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\tab-off-l.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\tab-off-r.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\tab-on-l.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\tab-on-r.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\transparent.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\ttlbar-left.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\ttlbar-mdl.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\ttlbar-right.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\win-btm-left.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\win-btm-mdl.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\win-btm-right-resize.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\win-btm-right.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\win-left.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\win-right.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\scripts\defscript.js
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\arrow-dn.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\arrow-sml-drop.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\arrow-sml.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\arrow-up.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\arrowr-bluew5.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\bg-aboutbox.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\bg-btnover.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\bg-pnl520x390.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-addtoolbar-left-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-addtoolbar-left.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-addtoolbar-right.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-back.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-close-grey.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-close-greyover.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-drag.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-mdl-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-mdl.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-moredetails.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-next-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-next.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-play-left-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-play-left.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-previous-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-previous.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-right-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-search-pnlbtm-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-search-pnlbtm.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-try-left-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-try-left.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\bullet-orange.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\gamethumb-on.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\gamethumb2-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\ico-calendar.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\ico-dollar.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\ico-download.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\ico-joystick24.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\ico-news24.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\ico-play.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\ico-tags.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\icon-Add.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\icon-download.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\icon-Info.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\icon-play.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\icon-shop.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\menul-bgon.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\menul-bgover.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\panel-botm-noscroll.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scroll-bg-206.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scroll-bg.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scroll-topwin.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scrollb-disable.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scrollb-down.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scrollb-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scrollb.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scrollt-disable.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scrollt-down.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scrollt-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scrollt.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\searchbox-pnlbtm.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\star_x_grey.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\star_x_orange.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\TRUSTe_about.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\view-detailed-on.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\view-detailed-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\view-thumb-on.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\view-thumb-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\widgets-square-16px.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\widgets-square-24px.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\widgets.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\css
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\managerpanel.html
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\volumeslider.html
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\css\manager.css
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\css\slider.css
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\bg-pnl.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\btn-close-grey.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\btn-close-greyover.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\collapsed_button.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\expanded_button.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\ico-playstation-down.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\ico-playstation-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\ico-playstation.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\ico-radio.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\music-note.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-btn-pause-on.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-btn-pause.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-btn-play-on.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-btn-play.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-eq-bg.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-eq-buffer.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-eq-busy.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-eq-off.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-eq-on.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-eq-warning.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-options-design-on.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-options-design.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-options-on.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-options.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-volume-0.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-volume-1.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-volume-2.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-volume-3.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-volume-mute.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\scrollbar-handle.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\scrollbar-track.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\slider.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\slideron.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\track.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_02.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_03.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_04.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_06.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_07.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_08.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_09.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_10.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_11.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_12.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_13.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_14.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_15.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_16.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_18.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_19.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_20.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_21.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\btn-close-grey.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\btn-close-greyover.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\close-hot.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\close-normal.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\loadingMid.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\proxy.html
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\template.html
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\template.xml
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\templateFF.html
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\throbber.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\icons
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\icons\cond999.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\icons\icons.xml
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\icons\na-s.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\icons\na-t.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\icons\na.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\popupWeather.css
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\popupWeather.html
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\add.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\arrowr-bluew5.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\bg-pnl.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\bg-pnl520x350.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\bg-pnl520x350blue-whitebg.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\bg-pnl520x350blue.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\box-check.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\box-uncheck.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btn-close-grey.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btn-close-greyover.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btn-delete.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btn-search-pnlbtm-over.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btn-search-pnlbtm.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btnarrow-next-off.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btnarrow-next.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btnarrow-previous-off.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btnarrow-previous.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\ico-check.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\ico-hotandhumid-s.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\ico-hotandhumid.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\options-weather.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\over-blue.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\over-orange.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\powered-by-weatherbug.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\powered-by-weatherbug2.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\radio-checked.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\radio-unchecked.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\searchbox-pnlbtm.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\weather-contour.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\options\options-main.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\options\options-search.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\options\options-weather.gif
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\options\options-weather.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\options\options-widgets.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\searchbar\searchbar-background-left.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\searchbar\searchbar-background-middle.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\searchbar\searchbar-background-right.png
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\components\windowmediator.js
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\x64\BrowserConnection.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\x64\datamngr.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\x64\datamngrUI.exe
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\x64\DnsBHO.dll
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\x64\IEBHO.dll
      "C:\Program Files (x86)\Searchqu Toolbar"
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\FirefoxExtension
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\data
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\lib
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\modules
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\data\search
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton
      C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\icons
      "C:\Program Files (x86)\Searchqu Toolbar"
      C:\Users\Propietario\Appdata\Local\Ilivid Player\script.qscript
      "C:\Users\Propietario\Appdata\Local\Ilivid Player"
      "C:\ProgramData\InstallMate"
      C:\Program Files (x86)\babylontoolbar\BabylonToolbar
      C:\Program Files (x86)\babylontoolbar\BabylonToolbar\1.5.3.17
      C:\Program Files (x86)\babylontoolbar\BabylonToolbar\1.6.9.12
      C:\Program Files (x86)\babylontoolbar\BabylonToolbar\BabylonTB.xpi
      C:\Program Files (x86)\babylontoolbar\BabylonToolbar\1.5.3.17\BabylonToolbarApp.dll
      C:\Program Files (x86)\babylontoolbar\BabylonToolbar\1.5.3.17\BabylonToolbarEng.dll
      C:\Program Files (x86)\babylontoolbar\BabylonToolbar\1.5.3.17\BabylonToolbarsrv.exe
      C:\Program Files (x86)\babylontoolbar\BabylonToolbar\1.5.3.17\BabylonToolbarTlbr.dll
      C:\Program Files (x86)\babylontoolbar\BabylonToolbar\1.5.3.17\bh
      C:\Program Files (x86)\babylontoolbar\BabylonToolbar\1.5.3.17\uninstall.exe
      C:\Program Files (x86)\babylontoolbar\BabylonToolbar\1.5.3.17\bh\BabylonToolbar.dll
      C:\Program Files (x86)\babylontoolbar\BabylonToolbar\1.6.9.12\BabylonToolbarApp.dll
      C:\Program Files (x86)\babylontoolbar\BabylonToolbar\1.6.9.12\BabylonToolbarEng.dll
      C:\Program Files (x86)\babylontoolbar\BabylonToolbar\1.6.9.12\BabylonToolbarsrv.exe
      C:\Program Files (x86)\babylontoolbar\BabylonToolbar\1.6.9.12\BabylonToolbarTlbr.dll
      C:\Program Files (x86)\babylontoolbar\BabylonToolbar\1.6.9.12\bh
      C:\Program Files (x86)\babylontoolbar\BabylonToolbar\1.6.9.12\escortShld.dll
      C:\Program Files (x86)\babylontoolbar\BabylonToolbar\1.6.9.12\uninstall.exe
      C:\Program Files (x86)\babylontoolbar\BabylonToolbar\1.6.9.12\bh\BabylonToolbar.dll
      "C:\Program Files (x86)\babylontoolbar"
      C:\Users\Propietario\AppData\Roaming\Babylon\log_file.txt
      "C:\Users\Propietario\AppData\Roaming\Babylon"
      C:\Program Files (x86)\Incredibar.com\incredibar
      C:\Program Files (x86)\Incredibar.com\incredibar\1.5.11.14
      C:\Program Files (x86)\Incredibar.com\incredibar\1.5.11.14\bh
      C:\Program Files (x86)\Incredibar.com\incredibar\1.5.11.14\incredibarApp.dll
      C:\Program Files (x86)\Incredibar.com\incredibar\1.5.11.14\incredibarEng.dll
      C:\Program Files (x86)\Incredibar.com\incredibar\1.5.11.14\incredibarsrv.exe
      C:\Program Files (x86)\Incredibar.com\incredibar\1.5.11.14\incredibarTlbr.dll
      C:\Program Files (x86)\Incredibar.com\incredibar\1.5.11.14\uninstall.exe
      C:\Program Files (x86)\Incredibar.com\incredibar\1.5.11.14\bh\incredibar.dll
      "C:\Program Files (x86)\Incredibar.com"
      C:\Program Files (x86)\Conduit\Community Alerts
      C:\Program Files (x86)\Conduit\Community Alerts\Alert.dll
      "C:\Program Files (x86)\Conduit"
      C:\Users\Propietario\AppData\Roaming\Complitly\64
      C:\Users\Propietario\AppData\Roaming\Complitly\Complitly.dll
      C:\Users\Propietario\AppData\Roaming\Complitly\KeepMeUpdated.exe
      C:\Users\Propietario\AppData\Roaming\Complitly\64\Complitly64.dll
      C:\Users\Propietario\AppData\Roaming\Complitly\64\KeepMeUpdated.exe
      "C:\Users\Propietario\AppData\Roaming\Complitly"
      C:\Program Files (x86)\Complitly\chrome
      C:\Program Files (x86)\Complitly\FireFoxExtensionWithFF8Fix.exe
      C:\Program Files (x86)\Complitly\FireFoxUninstaller.exe
      C:\Program Files (x86)\Complitly\InstTracker.exe
      C:\Program Files (x86)\Complitly\[email protected]
      C:\Program Files (x86)\Complitly\System.Data.SQLite.dll
      C:\Program Files (x86)\Complitly\unins000.dat
      C:\Program Files (x86)\Complitly\unins000.exe
      C:\Program Files (x86)\Complitly\chrome\ComplitlyChrome.crx
      C:\Program Files (x86)\Complitly\[email protected]\chrome
      C:\Program Files (x86)\Complitly\[email protected]\chrome.manifest
      C:\Program Files (x86)\Complitly\[email protected]\defaults
      C:\Program Files (x86)\Complitly\[email protected]\install.rdf
      C:\Program Files (x86)\Complitly\[email protected]\chrome\content
      C:\Program Files (x86)\Complitly\[email protected]\chrome\content\appIcon.png
      C:\Program Files (x86)\Complitly\[email protected]\chrome\content\browserOverlay.xul
      C:\Program Files (x86)\Complitly\[email protected]\chrome\content\options.js
      C:\Program Files (x86)\Complitly\[email protected]\chrome\content\options.xul
      C:\Program Files (x86)\Complitly\[email protected]\chrome\content\utils.js
      C:\Program Files (x86)\Complitly\[email protected]\defaults\preferences
      C:\Program Files (x86)\Complitly\[email protected]\defaults\preferences\predictad.js
      "C:\Program Files (x86)\Complitly"
      "C:\Users\Propietario\Appdata\Local\Conduit"
      "C:\ProgramData\Babylon"
      C:\Program Files (x86)\Funmoods\funmoods
      "C:\Program Files (x86)\Funmoods"
      C:\Program Files (x86)\Yontoo\OptChrome.exe
      C:\Program Files (x86)\Yontoo\YontooIEClient.dll
      C:\Program Files (x86)\Yontoo\YontooLayers.crx
      "C:\Program Files (x86)\Yontoo"
      C:\Program Files (x86)\BrowserCompanion\blabbers-ch.crx
      C:\Program Files (x86)\BrowserCompanion\blabbers-ff-full.xpi
      C:\Program Files (x86)\BrowserCompanion\jsloader.dll
      C:\Program Files (x86)\BrowserCompanion\logo.ico
      C:\Program Files (x86)\BrowserCompanion\tdataprotocol.dll
      C:\Program Files (x86)\BrowserCompanion\terms.lnk.url
      C:\Program Files (x86)\BrowserCompanion\toolbar.dll
      C:\Program Files (x86)\BrowserCompanion\uninstall.exe
      C:\Program Files (x86)\BrowserCompanion\updatebhoWin32.dll
      C:\Program Files (x86)\BrowserCompanion\updater.ini
      C:\Program Files (x86)\BrowserCompanion\widgetserv.exe
      "C:\Program Files (x86)\BrowserCompanion"
      C:\Users\PROPIE~1\AppData\Local\Temp\searchqutoolbar-manifest.xml
      C:\Users\PROPIE~1\AppData\Local\Temp\Searchqu.ini
      C:\Program Files (x86)\mozilla firefox\searchplugins\babylon.xml
      C:\Users\Propietario\Appdata\Local\GDIPFONTCACHEV1.DAT
      C:\Windows\System32\ezsidmv.dat
      C:\user.js
      C:\Users\PROPIE~1\AppData\Local\Temp\yontoo-c2.exe
      C:\Users\PROPIE~1\AppData\Local\Temp\yontoo-c2[1].exe
      C:\Users\PROPIE~1\AppData\Local\Temp\YontooSetup-S.exe


      ====== Información Extra ======


      -_-_-_-_-_-_-_-_ Configuraciones de internet Explorer -_-_-_-_-_-_-_-_
      "HKCU\Software\Microsoft\Internet Explorer\Main"
      Start Page == Google
      Search Page == Bing
      Local Page == C:\Windows\system32\blank.htm
      Default_Page_URL == about:blank

      "HKLM\Software\Microsoft\Internet Explorer\Main"
      Start Page == Google
      Search Page == Bing
      Local Page == C:\Windows\SysWOW64\blank.htm
      Default_Search_URL == Bing
      Default_Page_URL == about:blank


      "HKEY_USERS\S-1-5-21-840094794-581582924-3824028662-1000\Software\Microsoft\Internet Explorer\Main"
      Start Page == Google
      Search Page == Bing
      Local Page == C:\Windows\system32\blank.htm
      Default_Page_URL == about:blank


      -_-_-_-_-_-_-_-_ Configuraciones de Google Chrome-_-_-_-_-_-_-_-_
      "homepage" : "http://search.conduit.com/?ctid=CT3227980&SearchSource=48",
      "homepage_is_newtabpage" : false,
      -_-_-_-_-_-_-_-_ Configuraciones de Google Chrome-_-_-_-_-_-_-_-_
      "homepage" : "http://search.conduit.com/?ctid=CT3227980&SearchSource=48",
      "homepage_is_newtabpage" : false,


      -_-_-_-_-_-_-_-_ Configuraciones de mozilla Firefox -_-_-_-_-_-_-_-_
      user_pref("CT2851619.smartbar.homepage", true);
      user_pref("browser.startup.homepage", "http://google.com");
      user_pref("CT2851619.smartbar.homepage", true);
      user_pref("browser.startup.homepage", "http://google.com");




      ======= EOF =======

    7. #7
      Usuario Avatar de urru
      Registrado
      jun 2012
      Ubicación
      Bizkaia
      Mensajes
      73

      Re: Páginas de publicidad

      el ordenador sigue llendo mal a pesar de haber seguido los pasos que me indicaste.

    8. #8
      Moderador Gral.
      Avatar de @Leosolari
      Registrado
      jun 2007
      Ubicación
      Argentina
      Mensajes
      58.637

      Re: Páginas de publicidad

      Hola


      Tu Ordenador es lo mas parecido a un zoológico que he visto ... No se puede infectar tanto a un PC:






      Descargá la herramienta ComboFix.exe a Tu escritorio.

      • Desactivá temporalmente el Antivirus y/o Antispyware. Cómo deshabilitar temporalmente su Antivirus
      • Cerrá todas las ventanas abiertas.
      • Hacá doble clic en el archivo ComboFix.exe y seguí las instrucciones.
      • Cuando termine, generará un registro en C:\ComboFix.txt.




      Notas Importantes:

      • Mientras CF este trabajando, no debes mover el mouse ya que pararía su proceso.
      • ComboFix Puede Reiniciar automáticamente el PC para completar el proceso de eliminación.
      • Una vez Terminado el Trabajo de ComboFix, podes activar Tu antivirus.
      • No Pongas los Reportes Dentro de Etiquetas Code ni HTML.




      Atención!! No use ComboFix a menos que se le haya indicado específicamente en su mensaje por un integrante de nuestro Staff. Es una herramienta de gran alcance destinada por su creador a ser usada bajo la orientación y supervisión de un experto, no para uso privado. El uso de ComboFix incorrectamente podría generar problemas en su sistema. Por favor, lea las "Negaciones de la Garantía" de ComboFix.


      El reporte generado, se encuentra en C:\ComboFix.txt . Abrilo, seleccionas Todo y lo copias y pegas en Tu próxima respuesta.



      Saludos
      Síguenos en Twitter y hazte nuestro amigo en Facebook.

    9. #9
      Usuario Avatar de urru
      Registrado
      jun 2012
      Ubicación
      Bizkaia
      Mensajes
      73

      Re: Páginas de publicidad

      ComboFix 12-10-17.05 - Propietario 17/10/2012 22:25:39.1.2 - x64
      Microsoft Windows 7 Home Premium 6.1.7601.1.1252.34.3082.18.6111.4537 [GMT 2:00]
      Running from: c:\users\Propietario\Downloads\ComboFix.exe
      AV: Norton 360 *Disabled/Outdated* {63DF5164-9100-186D-2187-8DC619EFD8BF}
      FW: Norton 360 *Disabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
      SP: Norton 360 *Disabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}
      SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
      * Created a new restore point
      .
      .
      ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
      .
      .
      c:\program files (x86)\DealPly
      c:\program files (x86)\DealPly\DealPly.crx
      c:\program files (x86)\DealPly\DealPly.xpi
      c:\program files (x86)\DealPly\DealPlyIE.dll
      c:\program files (x86)\DealPly\DealPlyTune.dll
      c:\program files (x86)\DealPly\DealPlyUpdate.exe
      c:\program files (x86)\DealPly\DealPlyUpdate.log
      c:\program files (x86)\DealPly\DealPlyUpdateRun.exe
      c:\program files (x86)\DealPly\icon.ico
      c:\program files (x86)\DealPly\uninst.exe
      c:\windows\assembly\tmp\U
      .
      .
      ((((((((((((((((((((((((( Files Created from 2012-09-17 to 2012-10-17 )))))))))))))))))))))))))))))))
      .
      .
      2012-10-17 20:37 . 2012-10-17 20:37 69000 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{85DBDBB3-4564-4916-89CE-175B1FF88497}\offreg.dll
      2012-10-17 20:35 . 2012-10-17 20:35 -------- d-----w- c:\users\Default\AppData\Local\temp
      2012-10-16 22:28 . 2012-10-16 22:28 -------- d-----w- c:\users\Propietario\AppData\Roaming\GlarySoft
      2012-10-16 22:25 . 2012-10-16 22:25 -------- d-----w- c:\users\Propietario\AppData\Roaming\Malwarebytes
      2012-10-16 22:25 . 2012-10-16 22:25 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
      2012-10-16 22:25 . 2012-09-07 15:04 25928 ----a-w- c:\windows\system32\drivers\mbam.sys
      2012-10-16 22:22 . 2012-10-16 22:22 -------- d-----w- c:\program files (x86)\Glary Utilities
      2012-10-16 22:06 . 2012-06-29 11:55 22528 ----a-w- c:\windows\AT-Uninstall.exe
      2012-10-16 20:58 . 2012-10-17 19:54 -------- d-----w- c:\users\Propietario\AppData\Roaming\Skype
      2012-10-16 20:57 . 2012-10-16 20:58 -------- d-----r- c:\program files (x86)\Skype
      2012-10-16 20:57 . 2012-10-16 20:57 -------- d-----w- c:\program files (x86)\Common Files\Skype
      2012-10-16 20:50 . 2012-10-16 20:50 -------- d-----w- c:\programdata\Browser Manager
      2012-10-16 20:50 . 2012-10-16 20:50 -------- d-----w- c:\users\Propietario\AppData\Local\Wajam
      2012-10-10 09:28 . 2012-08-24 18:05 220160 ----a-w- c:\windows\system32\wintrust.dll
      2012-10-10 09:28 . 2012-08-24 16:57 172544 ----a-w- c:\windows\SysWow64\wintrust.dll
      2012-10-10 09:28 . 2012-09-14 19:19 2048 ----a-w- c:\windows\system32\tzres.dll
      2012-10-10 09:28 . 2012-09-14 18:28 2048 ----a-w- c:\windows\SysWow64\tzres.dll
      2012-10-10 09:28 . 2012-08-11 00:56 715776 ----a-w- c:\windows\system32\kerberos.dll
      2012-10-10 09:28 . 2012-08-10 23:56 542208 ----a-w- c:\windows\SysWow64\kerberos.dll
      2012-10-10 09:28 . 2012-06-02 05:41 184320 ----a-w- c:\windows\system32\cryptsvc.dll
      2012-10-10 09:28 . 2012-06-02 05:41 140288 ----a-w- c:\windows\system32\cryptnet.dll
      2012-10-10 09:28 . 2012-06-02 05:41 1464320 ----a-w- c:\windows\system32\crypt32.dll
      2012-10-10 09:28 . 2012-06-02 04:36 140288 ----a-w- c:\windows\SysWow64\cryptsvc.dll
      2012-10-10 09:28 . 2012-06-02 04:36 1159680 ----a-w- c:\windows\SysWow64\crypt32.dll
      2012-10-10 09:28 . 2012-06-02 04:36 103936 ----a-w- c:\windows\SysWow64\cryptnet.dll
      2012-10-02 10:17 . 2012-10-02 10:17 5171904 ----a-w- c:\program files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\components\SkypeFfComponent.dll
      2012-09-26 09:18 . 2012-08-21 21:01 245760 ----a-w- c:\windows\system32\OxpsConverter.exe
      2012-09-24 19:21 . 2012-09-24 19:21 -------- d-----w- c:\programdata\McAfee Security Scan
      2012-09-24 19:21 . 2012-10-07 19:21 -------- d-----w- c:\program files (x86)\McAfee Security Scan
      .
      .
      .
      (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
      .
      2012-10-11 07:52 . 2010-02-25 21:00 65309168 ----a-w- c:\windows\system32\MRT.exe
      2012-09-13 13:26 . 2012-08-27 09:32 1259888 ----a-w- c:\windows\system32\dmwu.exe
      2012-09-13 13:25 . 2012-08-27 09:32 35328 ----a-w- c:\windows\system32\ImHttpComm.dll
      2012-08-22 18:12 . 2012-09-12 12:14 1913200 ----a-w- c:\windows\system32\drivers\tcpip.sys
      2012-08-22 18:12 . 2012-09-12 12:14 950128 ----a-w- c:\windows\system32\drivers\ndis.sys
      2012-08-22 18:12 . 2012-09-12 12:14 376688 ----a-w- c:\windows\system32\drivers\netio.sys
      2012-08-22 18:12 . 2012-09-12 12:14 288624 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
      2012-08-20 17:38 . 2012-10-10 09:29 44032 ----a-w- c:\windows\apppatch\acwow64.dll
      2012-08-02 17:58 . 2012-09-12 12:14 574464 ----a-w- c:\windows\system32\d3d10level9.dll
      2012-08-02 16:57 . 2012-09-12 12:14 490496 ----a-w- c:\windows\SysWow64\d3d10level9.dll
      2010-10-16 10:50 . 2010-12-11 11:04 3056008 ----a-w- c:\program files (x86)\Common Files\AskToolbarInstaller.exe
      .
      .
      ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
      .
      .
      *Note* empty entries & legit default entries are not shown
      REGEDIT4
      .
      [HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{e5593220-bcaf-4b30-89fe-af988d0eacaa}]
      2011-11-07 13:26 81920 ----a-w- c:\program files (x86)\searchresults\toolbar2X.dll
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
      "{e5593220-bcaf-4b30-89fe-af988d0eacaa}"= "c:\program files (x86)\searchresults\toolbar2X.dll" [2011-11-07 81920]
      .
      [HKEY_CLASSES_ROOT\clsid\{e5593220-bcaf-4b30-89fe-af988d0eacaa}]
      .
      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "HPADVISOR"="c:\program files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe" [2009-07-15 1668664]
      "LightScribe Control Panel"="c:\program files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" [2009-06-17 2363392]
      "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]
      "ares"="c:\program files (x86)\Ares\Ares.exe" [2012-02-02 3209216]
      "iztuohb"="c:\users\propietario\appdata\local\lollipop\iztuohb.exe" [2012-10-08 815104]
      "Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2012-07-13 17418928]
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
      "StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-07-02 98304]
      "HPCam_Menu"="c:\program files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" [2009-02-25 218408]
      "QlbCtrl.exe"="c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2009-06-24 320056]
      "UpdatePRCShortCut"="c:\program files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504]
      "Easybits Recovery"="c:\program files (x86)\EasyBits For Kids\ezRecover.exe" [2009-06-22 60464]
      "HP Software Update"="c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [2008-12-08 54576]
      "WirelessAssistant"="c:\program files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2009-07-23 498744]
      "QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2010-03-17 421888]
      "AdobeCS4ServiceManager"="c:\program files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" [2008-08-14 611712]
      "GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
      "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-27 919008]
      "AVP"="c:\program files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe" [2011-04-24 202296]
      "ApplicationBlocker"="c:\programdata\ApplicationBlocker\applicationblocker.dll" [2010-05-06 563200]
      .
      c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
      AutoStart IR.lnk - c:\program files (x86)\WinTV\Ir.exe [2010-2-28 110647]
      McAfee Security Scan Plus.lnk - c:\program files (x86)\McAfee Security Scan\3.0.207\SSScheduler.exe [2011-6-17 272528]
      WinTV Recording Status..lnk - c:\program files (x86)\WinTV\WinTV7\WinTVTray.exe [2010-2-28 98304]
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
      "ConsentPromptBehaviorAdmin"= 5 (0x5)
      "ConsentPromptBehaviorUser"= 3 (0x3)
      "EnableUIADesktopToggle"= 0 (0x0)
      "HideFastUserSwitching"= 0 (0x0)
      .
      [HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\system]
      "WallpaperStyle"= 2
      .
      [hkey_local_machine\software\Wow6432Node\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
      .
      [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
      "LoadAppInit_DLLs"=1 (0x1)
      "AppInit_DLLs"=c:\progra~3\BROWSE~1\23796~1.11\{16CDF~1\browsemngr.dll
      .
      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
      Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
      .
      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
      @="Driver"
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
      "DisableMonitoring"=dword:00000001
      .
      R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
      R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
      R3 Com4QLBEx;Com4QLBEx;c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2009-05-05 228408]
      R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;c:\program files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2010-05-14 1038088]
      R3 hcw17bda;Hauppauge SMS1000-based;c:\windows\system32\drivers\hcw17bda.sys [2009-06-29 61696]
      R3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files (x86)\McAfee Security Scan\3.0.207\McCHSvc.exe [2011-06-17 237008]
      R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-09-09 114144]
      R3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
      R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]
      R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]
      R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]
      R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
      R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [2009-10-16 50176]
      R3 WatAdminSvc;Servicio de tecnologías de activación de Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-06-04 1255736]
      R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys [2009-06-10 389120]
      S1 kl2;kl2;c:\windows\system32\DRIVERS\kl2.sys [2011-03-04 11864]
      S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys [2011-03-10 29488]
      S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
      S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-07-27 63960]
      S2 AESTFilters;Andrea ST Filters Service;c:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe [2009-03-02 89600]
      S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-07-02 203264]
      S2 BBSvc;Bing Bar Update Service;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-10-21 196176]
      S2 BBUpdate;BBUpdate;c:\program files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-10-13 249648]
      S2 ezSharedSvc;Easybits Shared Services for Windows;c:\windows\system32\svchost.exe [2009-07-14 27136]
      S2 hpsrv;HP Service;c:\windows\system32\Hpservice.exe [2011-05-13 30520]
      S2 NMSAccess64;NMSAccess64;c:\windows\SysWOW64\NMSAccess64.exe [2009-01-12 82872]
      S2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-10-02 3064000]
      S2 Web Assistant Updater;Web Assistant Updater;c:\program files\Web Assistant\ExtensionUpdaterService.exe [2012-08-23 188760]
      S2 WebOptimizer;WebOptimizer;c:\windows\system32\dmwu.exe [2012-09-13 1259888]
      S3 enecir;ENE CIR Receiver;c:\windows\system32\DRIVERS\enecir.sys [2009-06-29 70656]
      S3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys [2009-07-21 140712]
      S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys [2009-11-02 22544]
      S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2010-06-23 344680]
      S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
      .
      .
      --- Other Services/Drivers In Memory ---
      .
      *NewlyCreated* - WS2IFSL
      .
      HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
      ezSharedSvc
      .
      [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
      2009-06-17 10:11 451872 ----a-w- c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe
      .
      Contents of the 'Scheduled Tasks' folder
      .
      2012-10-17 c:\windows\Tasks\GlaryInitialize.job
      - c:\program files (x86)\Glary Utilities\initialize.exe [2012-10-16 19:59]
      .
      .
      --------- X64 Entries -----------
      .
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "SmartMenu"="c:\program files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe" [2009-07-21 610872]
      "SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2010-03-23 487424]
      .
      ------- Supplementary Scan -------
      .
      uStart Page = hxxp://www.google.com
      uLocal Page = c:\windows\system32\blank.htm
      mDefault_Page_URL = about:blank
      mStart Page = hxxp://www.google.com
      mLocal Page = c:\windows\SysWOW64\blank.htm
      uInternet Settings,ProxyOverride = *.local
      IE: &AOL Toolbar Buscar - c:\programdata\AOL\ieToolbar\resources\es-ES\local\search.html
      IE: E&xportar a Microsoft Excel - c:\progra~2\MICROS~4\Office12\EXCEL.EXE/3000
      TCP: DhcpNameServer = 80.58.61.250 80.58.61.254
      DPF: {61FA0CB0-0806-46EA-B784-0F843285BA23} - hxxp://estaticosak1.tuenti.com/client_apps/TuentiPhotoUploader.31740.cab
      FF - ProfilePath - c:\users\Propietario\AppData\Roaming\Mozilla\Firefox\Profiles\v5hrebjd.default\
      FF - prefs.js: browser.search.selectedEngine -
      FF - prefs.js: browser.startup.homepage - hxxps://www.google.es
      FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2851619&SearchSource=2&q=
      FF - prefs.js: network.proxy.type - 0
      FF - ExtSQL: 2012-08-19 02:13; {99079a25-328f-4bd4-be04-00955acaa0a7}; c:\users\Propietario\AppData\Roaming\Mozilla\Firefox\Profiles\v5hrebjd.default\extensions\{99079a25-328f-4bd4-be04-00955acaa0a7}
      FF - ExtSQL: 2012-08-30 23:10; {33e0daa6-3af3-d8b5-6752-10e949c61516}; c:\users\Propietario\AppData\Roaming\Mozilla\Firefox\Profiles\v5hrebjd.default\extensions\{33e0daa6-3af3-d8b5-6752-10e949c61516}
      FF - ExtSQL: 2012-09-03 20:10; [email protected]; c:\program files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\FFExt\[email protected]
      FF - ExtSQL: 2012-09-03 20:10; [email protected]; c:\program files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\FFExt\[email protected]
      FF - ExtSQL: 2012-09-03 20:10; [email protected]; c:\program files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\FFExt\[email protected]
      FF - ExtSQL: 2012-09-07 22:21; [email protected]; c:\users\Propietario\AppData\Roaming\Mozilla\Firefox\Profiles\v5hrebjd.default\extensions\[email protected]
      FF - ExtSQL: 2012-09-09 19:33; [email protected]; c:\users\Propietario\AppData\Roaming\Mozilla\Firefox\Profiles\v5hrebjd.default\extensions\[email protected]
      FF - ExtSQL: 2012-10-16 22:50; [email protected]; c:\users\Propietario\AppData\Roaming\Mozilla\Firefox\Profiles\v5hrebjd.default\extensions\[email protected]
      FF - ExtSQL: 2012-10-16 22:50; {b64982b1-d112-42b5-b1e4-d3867c4533f8}; c:\programdata\Browser Manager\2.3.796.11\{16cdff19-861d-48e3-a751-d99a27784753}\FirefoxExtension
      FF - ExtSQL: 2012-10-16 22:58; {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}; c:\program files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
      FF - user.js: extensions.BabylonToolbar_i.id - e4e7ec8f000000000000904ce535c1a8
      FF - user.js: extensions.BabylonToolbar_i.hardId - e4e7ec8f000000000000904ce535c1a8
      FF - user.js: extensions.BabylonToolbar_i.instlDay - 15528
      FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
      FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
      FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
      FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
      FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
      FF - user.js: extensions.BabylonToolbar_i.tlbrId - base
      FF - user.js: extensions.BabylonToolbar_i.instlRef - sst
      FF - user.js: extensions.incredibar_i.newTab - false
      FF - user.js: extensions.incredibar_i.tlbrSrchUrl - hxxp://mystart.Incredibar.com/?a=6PQCJGIay2&loc=IB_TB&i=26&search=
      FF - user.js: extensions.incredibar_i.id - e4e7ec8f000000000000904ce535c1a8
      FF - user.js: extensions.incredibar_i.instlDay - 15528
      FF - user.js: extensions.incredibar_i.vrsn - 1.5.11.14
      FF - user.js: extensions.incredibar_i.vrsni - 1.5.11.14
      FF - user.js: extensions.incredibar_i.vrsnTs - 1.5.11.1413:18
      FF - user.js: extensions.incredibar_i.prtnrId - Incredibar
      FF - user.js: extensions.incredibar_i.prdct - incredibar
      FF - user.js: extensions.incredibar_i.aflt - orgnl
      FF - user.js: extensions.incredibar_i.smplGrp - none
      FF - user.js: extensions.incredibar_i.tlbrId - base
      FF - user.js: extensions.incredibar_i.instlRef -
      FF - user.js: extensions.incredibar_i.dfltLng -
      FF - user.js: extensions.incredibar_i.excTlbr - false
      FF - user.js: extensions.incredibar_i.ms_url_id -
      FF - user.js: extensions.incredibar_i.upn2 - 6PQCJGIay2
      FF - user.js: extensions.incredibar_i.upn2n - 92543188887996550
      FF - user.js: extensions.incredibar_i.productid - 26
      FF - user.js: extensions.incredibar_i.installerproductid - 26
      FF - user.js: extensions.incredibar_i.did - 10665
      FF - user.js: extensions.incredibar_i.ppd -
      FF - user.js: extentions.y2layers.installId - 6f2eb6c8-5aa7-4129-bdbc-9711cc4fbe74
      FF - user.js: extentions.y2layers.defaultEnableAppsList - twittube,buzzdock,YontooNewOffers
      FF - user.js: extensions.autoDisableScopes - 14
      FF - user.js: extensions.BabylonToolbar.autoRvrt - false
      FF - user.js: extensions.BabylonToolbar_i.newTab - false
      FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=115290&tt=040912_ctrl_3612_8
      FF - user.js: extensions.BabylonToolbar_i.babExt -
      FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
      FF - user.js: extensions.BabylonToolbar.tlbrSrchUrl - hxxp://search.babylon.com/?babsrc=TB_def&mntrId=e4e7ec8f000000000000904ce535c1a8&q=
      FF - user.js: extensions.BabylonToolbar.id - e4e7ec8f000000000000904ce535c1a8
      FF - user.js: extensions.BabylonToolbar.appId - {BDB69379-802F-4eaf-B541-F8DE92DD98DB}
      FF - user.js: extensions.BabylonToolbar.instlDay - 15629
      FF - user.js: extensions.BabylonToolbar.vrsn - 1.8.3.8
      FF - user.js: extensions.BabylonToolbar.vrsni - 1.8.3.8
      FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.8.3.822:50
      FF - user.js: extensions.BabylonToolbar.prtnrId - babylon
      FF - user.js: extensions.BabylonToolbar.prdct - BabylonToolbar
      FF - user.js: extensions.BabylonToolbar.aflt - babsst
      FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
      FF - user.js: extensions.BabylonToolbar.tlbrId - base
      FF - user.js: extensions.BabylonToolbar.instlRef - sst
      FF - user.js: extensions.BabylonToolbar.dfltLng - en
      FF - user.js: extensions.BabylonToolbar.excTlbr - false
      FF - user.js: extensions.BabylonToolbar.admin - false
      .
      - - - - ORPHANS REMOVED - - - -
      .
      URLSearchHooks-{db131c55-60c8-4adc-84dc-9e76ab06e2dc} - (no file)
      BHO-{00cbb66b-1d3b-46d3-9577-323a336acb50} - (no file)
      BHO-{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99} - (no file)
      BHO-{9D717F81-9148-4f12-8568-69135F087DB0} - (no file)
      BHO-{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448} - c:\program files (x86)\DealPly\DealPlyIE.dll
      Toolbar-10 - (no file)
      HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
      BHO-{336D0C35-8A85-403a-B9D2-65C292C39087} - (no file)
      Toolbar-10 - (no file)
      WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
      WebBrowser-{DB131C55-60C8-4ADC-84DC-9E76AB06E2DC} - (no file)
      WebBrowser-{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - (no file)
      HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
      AddRemove-Adobe Shockwave Player - c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe
      AddRemove-DealPly - c:\program files (x86)\DealPly\uninst.exe
      AddRemove-EasyBits Magic Desktop - c:\windows\system32\ezMDUninstall.exe
      .
      .
      .
      [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BFE]
      "ImagePath"="."
      .
      [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\MpsSvc]
      "ImagePath"="."
      .
      --------------------- LOCKED REGISTRY KEYS ---------------------
      .
      [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
      @Denied: (Full) (Everyone)
      .
      ------------------------ Other Running Processes ------------------------
      .
      c:\program files (x86)\Bonjour\mDNSResponder.exe
      c:\progra~2\WinTV\TVServer\HAUPPA~1.EXE
      c:\program files (x86)\Common Files\LightScribe\LSSrvc.exe
      c:\program files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
      c:\program files (x86)\CyberLink\Shared files\RichVideo.exe
      c:\program files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe
      c:\program files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
      .
      **************************************************************************
      .
      Completion time: 2012-10-17 22:44:26 - machine was rebooted
      ComboFix-quarantined-files.txt 2012-10-17 20:44
      .
      Pre-Run: 352.336.105.472 bytes libres
      Post-Run: 351.888.125.952 bytes libres
      .
      - - End Of File - - 4124635707B6A2C011A6B3CB8446948A

    10. #10
      Moderador Gral.
      Avatar de @Leosolari
      Registrado
      jun 2007
      Ubicación
      Argentina
      Mensajes
      58.637

      Re: Páginas de publicidad

      Hola de nuevo


      Realiza lo siguiente :

      • Clic en INICIO > EJECUTAR >
        • Y ahí pones notepad.exe y ACEPTAR
        • Ahora copia y pega el texto del cuadro de mas abajo dentro del Notepad


      Código:
      KillAll::
      ClearJavaCache::
      File::
      c:\program files (x86)\searchresults\toolbar2X.dll
      c:\users\propietario\appdata\local\lollipop\iztuohb.exe
      Folder::
      c:\program files (x86)\searchresults
      Firefox::
      FF - ProfilePath - c:\users\Propietario\AppData\Roaming\Mozilla\Firefox\Profiles\v5hrebjd.default\
      FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2851619&SearchSource=2&q=
      FF - ExtSQL: 2012-08-19 02:13; {99079a25-328f-4bd4-be04-00955acaa0a7}; c:\users\Propietario\AppData\Roaming\Mozilla\Firefox\Profiles\v5hrebjd.default\extensions\{99079a25-328f-4bd4-be04-00955acaa0a7}
      FF - ExtSQL: 2012-08-30 23:10; {33e0daa6-3af3-d8b5-6752-10e949c61516}; c:\users\Propietario\AppData\Roaming\Mozilla\Firefox\Profiles\v5hrebjd.default\extensions\{33e0daa6-3af3-d8b5-6752-10e949c61516}
      FF - ExtSQL: 2012-09-03 20:10; [email protected]; c:\program files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\FFExt\[email protected]
      FF - ExtSQL: 2012-09-03 20:10; [email protected]; c:\program files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\FFExt\[email protected]
      FF - ExtSQL: 2012-09-03 20:10; [email protected]; c:\program files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\FFExt\[email protected]
      FF - ExtSQL: 2012-09-07 22:21; [email protected]; c:\users\Propietario\AppData\Roaming\Mozilla\Firefox\Profiles\v5hrebjd.default\extensions\[email protected]
      FF - ExtSQL: 2012-09-09 19:33; [email protected]; c:\users\Propietario\AppData\Roaming\Mozilla\Firefox\Profiles\v5hrebjd.default\extensions\[email protected]
      FF - ExtSQL: 2012-10-16 22:50; [email protected]; c:\users\Propietario\AppData\Roaming\Mozilla\Firefox\Profiles\v5hrebjd.default\extensions\[email protected]
      FF - ExtSQL: 2012-10-16 22:50; {b64982b1-d112-42b5-b1e4-d3867c4533f8}; c:\programdata\Browser Manager\2.3.796.11\{16cdff19-861d-48e3-a751-d99a27784753}\FirefoxExtension
      FF - ExtSQL: 2012-10-16 22:58; {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}; c:\program files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
      FF - user.js: extensions.BabylonToolbar_i.id - e4e7ec8f000000000000904ce535c1a8
      FF - user.js: extensions.BabylonToolbar_i.hardId - e4e7ec8f000000000000904ce535c1a8
      FF - user.js: extensions.BabylonToolbar_i.instlDay - 15528
      FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
      FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
      FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
      FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
      FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
      FF - user.js: extensions.BabylonToolbar_i.tlbrId - base
      FF - user.js: extensions.BabylonToolbar_i.instlRef - sst
      FF - user.js: extensions.incredibar_i.newTab - false
      FF - user.js: extensions.incredibar_i.tlbrSrchUrl - hxxp://mystart.Incredibar.com/?a=6PQCJGIay2&loc=IB_TB&i=26&search=
      FF - user.js: extensions.incredibar_i.id - e4e7ec8f000000000000904ce535c1a8
      FF - user.js: extensions.incredibar_i.instlDay - 15528
      FF - user.js: extensions.incredibar_i.vrsn - 1.5.11.14
      FF - user.js: extensions.incredibar_i.vrsni - 1.5.11.14
      FF - user.js: extensions.incredibar_i.vrsnTs - 1.5.11.1413:18
      FF - user.js: extensions.incredibar_i.prtnrId - Incredibar
      FF - user.js: extensions.incredibar_i.prdct - incredibar
      FF - user.js: extensions.incredibar_i.aflt - orgnl
      FF - user.js: extensions.incredibar_i.smplGrp - none
      FF - user.js: extensions.incredibar_i.tlbrId - base
      FF - user.js: extensions.incredibar_i.instlRef -
      FF - user.js: extensions.incredibar_i.dfltLng -
      FF - user.js: extensions.incredibar_i.excTlbr - false
      FF - user.js: extensions.incredibar_i.ms_url_id -
      FF - user.js: extensions.incredibar_i.upn2 - 6PQCJGIay2
      FF - user.js: extensions.incredibar_i.upn2n - 92543188887996550
      FF - user.js: extensions.incredibar_i.productid - 26
      FF - user.js: extensions.incredibar_i.installerproductid - 26
      FF - user.js: extensions.incredibar_i.did - 10665
      FF - user.js: extensions.incredibar_i.ppd -
      FF - user.js: extentions.y2layers.installId - 6f2eb6c8-5aa7-4129-bdbc-9711cc4fbe74
      FF - user.js: extentions.y2layers.defaultEnableAppsList - twittube,buzzdock,YontooNewOffers
      FF - user.js: extensions.autoDisableScopes - 14
      FF - user.js: extensions.BabylonToolbar.autoRvrt - false
      FF - user.js: extensions.BabylonToolbar_i.newTab - false
      FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=115290&tt=040912_ctrl_3612_8
      FF - user.js: extensions.BabylonToolbar_i.babExt -
      FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
      FF - user.js: extensions.BabylonToolbar.tlbrSrchUrl - hxxp://search.babylon.com/?babsrc=TB_def&mntrId=e4e7ec8f000000000000904ce535c1a8&q=
      FF - user.js: extensions.BabylonToolbar.id - e4e7ec8f000000000000904ce535c1a8
      FF - user.js: extensions.BabylonToolbar.appId - {BDB69379-802F-4eaf-B541-F8DE92DD98DB}
      FF - user.js: extensions.BabylonToolbar.instlDay - 15629
      FF - user.js: extensions.BabylonToolbar.vrsn - 1.8.3.8
      FF - user.js: extensions.BabylonToolbar.vrsni - 1.8.3.8
      FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.8.3.822:50
      FF - user.js: extensions.BabylonToolbar.prtnrId - babylon
      FF - user.js: extensions.BabylonToolbar.prdct - BabylonToolbar
      FF - user.js: extensions.BabylonToolbar.aflt - babsst
      FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
      FF - user.js: extensions.BabylonToolbar.tlbrId - base
      FF - user.js: extensions.BabylonToolbar.instlRef - sst
      FF - user.js: extensions.BabylonToolbar.dfltLng - en
      FF - user.js: extensions.BabylonToolbar.excTlbr - false
      FF - user.js: extensions.BabylonToolbar.admin - false
      Registry::
      [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
      "{e5593220-bcaf-4b30-89fe-af988d0eacaa}"=-
      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "iztuohb"=-


      • Guarda este archivo con el nombre CFScript.txt
      • Arrastra y suelta el archivo CFScript.txt dentro del archivo ComboFix.exe como lo muestra el screenshot de abajo.



      • ComboFix comenzará otra vez a ejecutarse. Cuando termine generara un nuevo reporte que tendras que pegar en este mismo tema.




      Después de reiniciar, comprobas en funcionamiento y nos comentás.



      saludos
      Síguenos en Twitter y hazte nuestro amigo en Facebook.

    Página 1 de 3 123 ÚltimoÚltimo