• Registrarse
  • Iniciar sesión


  • Resultados 1 al 10 de 10

    mysearchresults.com pagina inicio

    Tengo internet xplorer 8 y se me puso sola la pagina mysearchresults.com windows 7 starter 32 bits tengo. Me gustaria que me puedan ayudar a sacarla....

    1. #1
      Usuario Avatar de Marquesy
      Registrado
      jul 2007
      Ubicación
      Argentina
      Mensajes
      107

      mysearchresults.com pagina inicio

      Tengo internet xplorer 8 y se me puso sola la pagina mysearchresults.com

      windows 7 starter 32 bits tengo.

      Me gustaria que me puedan ayudar a sacarla.

    2. #2
      Ex-Colaborador Avatar de Marr0n
      Registrado
      mar 2010
      Ubicación
      Catalunya
      Mensajes
      5.871

      Re: mysearchresults.com pagina inicio

      Haz esto:

      . Desactivas temporalmente el antivirus/antispyware. Cómo deshabilitar temporalmente su Antivirus

      . Descargas el AT-Destroyer de: AT-Destroyer by Infospyware

      . Lo ejecutas como administrador. (Si utilizas Windows Vista o 7 haces clic con el botón derecho del mouse y seleccionas Ejecutar como Administrador).

      .
      Aparecera el Disclaimer, pulsas sobre sí.

      . Presionas sobre la primera opción (Buscar y Destruir)

      . La herramienta desconectará el escritorio temporalmente.

      . Si estas infectado, el programa lo indicará mostrando líneas rojas donde se haya encontrado la infección, en caso contario se mostrarán línes verdes

      . Una vez finalizado el escan, verás que el esritorio aparece de nuevo y seguidamente aparecerá un reporte, el cual lo copiarás en tu próxima respuesta comentando el funcinamiento actual del ordenador.

      Salu2.
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    3. #3
      Usuario Avatar de Marquesy
      Registrado
      jul 2007
      Ubicación
      Argentina
      Mensajes
      107

      Re: mysearchresults.com pagina inicio

      la pagina desaparecio.

      este es el reporte.

      #################################################### A/T-Destroyer by InfoSpyware ############

      A/T-Destroyer 1.0.7 By Infospyware
      InfoSpyware
      Fecha iniciada en el analisis 20/10/2012
      Hora iniciada en el analisis 17:44:56,81
      Usuario Actual : [C:\Users\Pedro]
      Sistema Operativo: Windows 7 Starter
      Service pack: Service Pack 1
      Arquitectura: Sistema operativo de 32 bits
      Versión Internet Explorer: 8.0.7601.17514
      Modo Actual: Modo Normal.
      Privilegios: [Pedro-Administrador]
      Versión Google Chrome:
      Versión Mozilla Firefox:

      ====== Servicios Eliminados By A/T-Destroyer ======




      ====== Claves Eliminadas By A/T-Destroyer ======


      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\YontooIEClient.DLL
      HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
      HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}\InProcServer32
      HKLM\SOFTWARE\Classes\CLSID\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80922ee0-8a76-46ae-95d5-bd3c3fe0708d}
      HKLM\SOFTWARE\Classes\CLSID\{80922ee0-8a76-46ae-95d5-bd3c3fe0708d}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}\InprocServer32
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}\ProgID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}\Programmable
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}\TypeLib
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}\VersionIndependentProgID
      HKLM\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}\InprocServer32
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}\ProgID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}\Programmable
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}\TypeLib
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}\VersionIndependentProgID
      HKLM\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44b0-A826-84C829536E93}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44b0-A826-84C829536E93}\defaultEnableAppsList
      HKLM\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44b0-A826-84C829536E93}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}\NumMethods
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}\ProxyStubClsid
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}\ProxyStubClsid32
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}\TypeLib
      HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}\NumMethods
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}\ProxyStubClsid
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}\ProxyStubClsid32
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}\TypeLib
      HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}\1.0
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}\1.0\0
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}\1.0\0\win32
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}\1.0\FLAGS
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}\1.0\HELPDIR
      HKLM\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YontooIEClient.Api
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YontooIEClient.Api\CLSID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YontooIEClient.Api\CurVer
      HKLM\SOFTWARE\Classes\YontooIEClient.Api
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YontooIEClient.Api.1
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YontooIEClient.Api.1\CLSID
      HKLM\SOFTWARE\Classes\YontooIEClient.Api.1
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YontooIEClient.Layers
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YontooIEClient.Layers\CLSID
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YontooIEClient.Layers\CurVer
      HKLM\SOFTWARE\Classes\YontooIEClient.Layers
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YontooIEClient.Layers.1
      HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YontooIEClient.Layers.1\CLSID
      HKLM\SOFTWARE\Classes\YontooIEClient.Layers.1
      HKLM\SOFTWARE\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
      HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
      HKEY_LOCAL_MACHINE\SOFTWARE\Tarma Installer\Components
      HKEY_LOCAL_MACHINE\SOFTWARE\Tarma Installer\Components\{1A975F48-2A3C-44FE-A91C-49D3C12ED0BC}
      HKEY_LOCAL_MACHINE\SOFTWARE\Tarma Installer\Components\{4889CB45-FFEB-486E-8785-D034DAC2ACE6}
      HKEY_LOCAL_MACHINE\SOFTWARE\Tarma Installer\Components\{8D8654CD-7FBC-4C7E-84E9-371BFA8DB04E}
      HKEY_LOCAL_MACHINE\SOFTWARE\Tarma Installer\Components\{9307081B-7444-494C-8CF6-2FA7C0E92BFB}
      HKEY_LOCAL_MACHINE\SOFTWARE\Tarma Installer\Components\{9D9785E5-3424-40B6-A287-BA143AD53109}
      HKEY_LOCAL_MACHINE\SOFTWARE\Tarma Installer\Components\{B6783DFA-B8C8-4CB6-AB9F-EF1A1F7F7AE8}
      HKEY_LOCAL_MACHINE\SOFTWARE\Tarma Installer\Components\{BB1DCBF2-6F69-4FB5-BA9F-0B46B5F93395}
      HKEY_LOCAL_MACHINE\SOFTWARE\Tarma Installer\Products
      HKEY_LOCAL_MACHINE\SOFTWARE\Tarma Installer\Products\{361E80BE-388B-4270-BF54-A10C2B756504}
      HKEY_LOCAL_MACHINE\SOFTWARE\Tarma Installer\Products\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}
      HKLM\SOFTWARE\Tarma Installer


      ====== Archivos/Carpetas Eliminados By A/T-Destroyer ======


      C:\Program Files\Yontoo\YontooIEClient.dll
      "C:\Program Files\Yontoo"
      C:\Users\Pedro\Appdata\Local\GDIPFONTCACHEV1.DAT
      C:\Users\Pedro\AppData\Local\Temp\yontoo-c3.exe
      C:\Users\Pedro\AppData\Local\Temp\YontooSetup-S.exe


      ====== Información Extra ======


      -_-_-_-_-_-_-_-_ Configuraciones de internet Explorer -_-_-_-_-_-_-_-_
      "HKCU\Software\Microsoft\Internet Explorer\Main"
      Start Page == Google
      Search Page == Bing
      Local Page == C:\Windows\system32\blank.htm
      Default_Page_URL == V9 Portal Site

      "HKLM\Software\Microsoft\Internet Explorer\Main"
      Start Page == Google
      Search Page == Bing
      Local Page == C:\Windows\System32\blank.htm
      Default_Search_URL == Bing
      Default_Page_URL == V9 Portal Site


      "HKEY_USERS\S-1-5-21-354153199-4033259128-1652463359-1000\Software\Microsoft\Internet Explorer\Main"
      Start Page == Google
      Search Page == Bing
      Local Page == C:\Windows\system32\blank.htm
      Default_Page_URL == V9 Portal Site


      -_-_-_-_-_-_-_-_ Configuraciones de Google Chrome-_-_-_-_-_-_-_-_
      "homepage": "http://www.google.com/",
      "homepage_changed": true,
      "homepage_is_newtabpage": false,
      -_-_-_-_-_-_-_-_ Configuraciones de Google Chrome-_-_-_-_-_-_-_-_
      "homepage": "http://www.google.com/",
      "homepage_changed": true,
      "homepage_is_newtabpage": false,


      -_-_-_-_-_-_-_-_ Configuraciones de mozilla Firefox -_-_-_-_-_-_-_-_




      ======= EOF =======

    4. #4
      Ex-Colaborador Avatar de Marr0n
      Registrado
      mar 2010
      Ubicación
      Catalunya
      Mensajes
      5.871

      Re: mysearchresults.com pagina inicio

      oK.

      ¿Tienes + problemas?

      Comenta el estado en general de tu PC.

      sALU2.
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    5. #5
      Usuario Avatar de Marquesy
      Registrado
      jul 2007
      Ubicación
      Argentina
      Mensajes
      107

      Re: mysearchresults.com pagina inicio

      Apague la pc y regreso la pagina de inicio mysearchresults

      estube haciendo un analisis de superanti´spyware y me sale varios troyanos y no los puedo eliminar.

      me acabo de dar cuenta que tengo la molesta barra Search Here como la saco ?

    6. #6
      Ex-Colaborador Avatar de Marr0n
      Registrado
      mar 2010
      Ubicación
      Catalunya
      Mensajes
      5.871

      Re: mysearchresults.com pagina inicio

      Bienvenid@

      Realiza los siguientes pasos:

      . Desactivas temporalmente el antivirus/antispyware. Cómo deshabilitar temporalmente su Antivirus

      . Descargas el AT-Destroyer de: AT-Destroyer by Infospyware

      . Lo ejecutas como administrador. (Si utilizas Windows Vista o 7 haces clic con el botón derecho del mouse y seleccionas Ejecutar como Administrador).

      . Aparecera el Disclaimer, pulsas sobre .

      . Presionas sobre la primera opción (Buscar y Destruir)

      . La herramienta desconectará el escritorio temporalmente.

      . Si estas infectado, el programa lo indicará mostrando líneas rojas donde se haya encontrado la infección, en caso contario se mostrarán línes verdes

      . Una vez finalizado el escan, verás que el esritorio aparece de nuevo y seguidamente aparecerá un reporte, el cual lo copiarás en tu próxima respuesta comentando el funcinamiento actual del ordenador.

      Descarga, instala, ejecuta y actualiza >

      • En la pestaña Actualizar pulsa sobre "Buscar Actualizaciones"
      • En la pestaña Escáner tildas la casilla "Realizar un Análisis Completo."
      • Una vez finalizado, si te detecta algo eliges "quitar lo seleccionado " y lo mandas todo a la cuarentena y reinicias el sistema.
        En la pestaña "Registros", encontrarás el reporte que lo copiaras y pegaras en tu próxima respuesta para ser analizado.


      Finalmente descarga > OTL By OldTimer | InfoSpyware

      Para ejecutar OTL haz lo siguiente:

      • Cierra todos programas que tengas abiertos y haz doble click en el ícono de OTL para ejecutarlo.
      • Dejalo correr y espera a que aparezca el menú de OTL.
      • Cuando salga el menú de OTL, debes cambiar debajo de: "Tipo de Análisis" marcando Resultado Mínimo.
      • Marca la casilla Analizar Todos.
      • Marca las opciones: Buscar LOP y Buscar Purity.
      • Marca las opciones: Omitir Archivos De Microsofty Usar Listado de Compañías Reconocidas.
      • Copia y pegar las líneas del siguiente script bajo la casilla Análisis Personalizados/Código de Reparación:

        NOTA: No copiar la palabra Código.

      Código:
       
      netsvcs
      msconfig
      %SYSTEMDRIVE%\*.*
      CREATERESTOREPOINT

      • Por favor no cambies/modifiques el resto de la configuración a no ser que te lo solicite algún integrante del staff
      • Presiona el botón .
      • Una vez finalizado el exámen, aparecerán 2 archivos, OTL.Txt y Extras.Txt. Dichos archivos estarán ubicados en el lugar dodne OTL.exe ha sido descargado.
      • Copiar y pegar el contenido del archivo OTL.txt en tu próxima respuesta.


      Recuerda que en tu próxima respuesta:



      • Pon los infromes de: AT-Destroyer, y OTL.txt
      • Explica como sigue el ordenador con relación al problema inicial planteado.



      Salu2.
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    7. #7
      Usuario Avatar de Marquesy
      Registrado
      jul 2007
      Ubicación
      Argentina
      Mensajes
      107

      Troyano que no se puede eleminar

      Me sale que tengo un troyano y no lo puedo eliminar.

      Y de yapa tengo el superantispyware en ingles y se me complica.

      windows 7 starter 32 bits.

      tambien me salio esto en los elementos de registros reg

      what is browser hijack .internet explorer settings hijack

      no se si tenga algo que ver con el troyano.

    8. #8
      Usuario Avatar de Marquesy
      Registrado
      jul 2007
      Ubicación
      Argentina
      Mensajes
      107

      Re: mysearchresults.com pagina inicio

      Malwarebytes Anti-Malware (Versión de Prueba) 1.65.1.1000
      Malwarebytes : Free anti-malware download

      Versión de la Base de Datos: v2012.10.20.09

      Windows 7 Service Pack 1 x86 NTFS
      Internet Explorer 8.0.7601.17514
      Pedro :: PEDRO-HP [administrador]

      Protección: Habilitado

      20/10/2012 09:06:11 p.m.
      mbam-log-2012-10-20 (21-06-11).txt

      Tipos de Análisis: Análisis Completo (C:\|D:\|E:\|)
      Opciones de análisis activado: Memoria | Inicio | Registro | Sistema de archivos | Heurística/Extra | Heurística/Shuriken | PUP | PUM
      Opciones de análisis desactivados: P2P
      Objetos examinados: 286778
      Tiempo transcurrido: 45 minuto(s), 45 segundo(s)

      Procesos en Memoria Detectados: 0
      (No se han detectado elementos maliciosos)

      Módulos de Memoria Detectados: 0
      (No se han detectado elementos maliciosos)

      Claves del Registro Detectados: 0
      (No se han detectado elementos maliciosos)

      Valores del Registro Detectados: 0
      (No se han detectado elementos maliciosos)

      Elementos de Datos del Registro Detectados: 0
      (No se han detectado elementos maliciosos)

      Carpetas Detectadas: 0
      (No se han detectado elementos maliciosos)

      Archivos Detectados: 0
      (No se han detectado elementos maliciosos)

      fin)

      OTL logfile created on: 20/10/2012 10:36:49 p.m. - Run 1
      OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Pedro\Downloads
      Starter Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
      Internet Explorer (Version = 8.0.7601.17514)
      Locale: 00000409 | Country: Argentina | Language: ESS | Date Format: dd/MM/yyyy

      1,99 Gb Total Physical Memory | 1,44 Gb Available Physical Memory | 72,53% Memory free
      3,98 Gb Paging File | 3,33 Gb Available in Paging File | 83,75% Paging File free
      Paging file location(s): ?:\pagefile.sys [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
      Drive C: | 90,83 Gb Total Space | 66,59 Gb Free Space | 73,31% Space Free | Partition Type: NTFS
      Drive D: | 10,85 Gb Total Space | 1,33 Gb Free Space | 12,22% Space Free | Partition Type: NTFS

      Computer Name: PEDRO-HP | User Name: Pedro | Logged in as Administrator.
      Boot Mode: Normal | Scan Mode: All users
      Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

      ========== Processes (SafeList) ==========

      PRC - C:\Users\Pedro\Downloads\OTL.exe (OldTimer Tools)
      PRC - C:\Windows\System32\Macromed\Flash\FlashUtil32_11_4_402_287_ActiveX.exe (Adobe Systems Incorporated)
      PRC - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
      PRC - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE (SUPERAntiSpyware.com)
      PRC - C:\Windows\explorer.exe (Microsoft Corporation)
      PRC - C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe (Hewlett-Packard)
      PRC - C:\Program Files\PDF Complete\pdfsvc.exe (PDF Complete Inc)
      PRC - C:\Program Files\Hewlett-Packard\Shared\HPDrvMntSvc.exe (Hewlett-Packard Company)
      PRC - C:\Windows\System32\taskhost.exe (Microsoft Corporation)
      PRC - c:\Program Files\CyberLink\YouCam\YCMMirage.exe (CyberLink)
      PRC - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe (Hewlett-Packard Company)
      PRC - C:\Program Files\Hewlett-Packard\Yan_Button & OSD\FastUserSwitching.exe (Hewlett-Packard)
      PRC - C:\Program Files\Hewlett-Packard\HP Odometer\hpsysdrv.exe (Hewlett-Packard)
      PRC - C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe (Nero AG)
      PRC - C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG)


      ========== Modules (No Company Name) ==========

      MOD - C:\Program Files\FileZilla FTP Client\fzshellext.dll ()


      ========== Services (SafeList) ==========

      SRV - (EasyHideIP) -- C:\Program Files\Easy-Hide-IP\services\EasyHideIp.exe File not found
      SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
      SRV - (MBAMService) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
      SRV - (MBAMScheduler) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
      SRV - (!SASCORE) -- C:\Program Files\SUPERAntiSpyware\SASCORE.EXE (SUPERAntiSpyware.com)
      SRV - (HPAuto) -- C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe (Hewlett-Packard)
      SRV - (pdfcDispatcher) -- C:\Program Files\PDF Complete\pdfsvc.exe (PDF Complete Inc)
      SRV - (HPDrvMntSvc.exe) -- C:\Program Files\Hewlett-Packard\Shared\HPDrvMntSvc.exe (Hewlett-Packard Company)
      SRV - (GamesAppService) -- C:\Program Files\WildTangent Games\App\GamesAppService.exe (WildTangent, Inc.)
      SRV - (HPClientSvc) -- C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe (Hewlett-Packard Company)
      SRV - (WinDefend) -- C:\Program Files\Windows Defender\mpsvc.dll (Microsoft Corporation)


      ========== Driver Services (SafeList) ==========

      DRV - (MBAMProtector) -- C:\Windows\System32\drivers\mbam.sys (Malwarebytes Corporation)
      DRV - (taphss) -- C:\Windows\System32\drivers\taphss.sys (AnchorFree Inc)
      DRV - (tap0901) -- C:\Windows\System32\drivers\tap0901.sys (The OpenVPN Project)
      DRV - (SASDIFSV) -- C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS (SUPERAdBlocker.com and SUPERAntiSpyware.com)
      DRV - (SASKUTIL) -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS (SUPERAdBlocker.com and SUPERAntiSpyware.com)
      DRV - (TsUsbFlt) -- C:\Windows\System32\drivers\TsUsbFlt.sys (Microsoft Corporation)
      DRV - (TsUsbGD) -- C:\Windows\System32\drivers\TsUsbGD.sys (Microsoft Corporation)
      DRV - (clwvd) -- C:\Windows\System32\drivers\clwvd.sys (CyberLink Corporation)
      DRV - (L1C) -- C:\Windows\System32\drivers\L1C62x86.sys (Atheros Communications, Inc.)
      DRV - (ACPIService) -- C:\Windows\System32\drivers\OSDACPI.SYS ()


      ========== Standard Registry (SafeList) ==========


      ========== Internet Explorer ==========

      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com/?utm_source=b&utm_medium=sof&from=sof&uid=ST3500413AS_Z2ANMT6P&ts=1350518278
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
      IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
      IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=CPDTDF&pc=CPDTDF&src=IE-SearchBox
      IE - HKLM\..\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}: "URL" = http://eu.ask.com/web?q={searchterms}&l=dis&o=CPDTDF
      IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
      IE - HKLM\..\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}: "URL" = http://ar.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=CPDTDF
      IE - HKLM\..\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}: "URL" = http://es.wikipedia.org/wiki/Special:Search?search={searchTerms}


      IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



      IE - HKU\S-1-5-21-354153199-4033259128-1652463359-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com/?utm_source=b&utm_medium=sof&from=sof&uid=ST3500413AS_Z2ANMT6P&ts=1350518278
      IE - HKU\S-1-5-21-354153199-4033259128-1652463359-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com.ar/
      IE - HKU\S-1-5-21-354153199-4033259128-1652463359-1000\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
      IE - HKU\S-1-5-21-354153199-4033259128-1652463359-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.v9.com/web/?q={searchTerms}
      IE - HKU\S-1-5-21-354153199-4033259128-1652463359-1000\..\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}: "URL" = http://eu.ask.com/web?q={searchterms}&l=dis&o=CPDTDF
      IE - HKU\S-1-5-21-354153199-4033259128-1652463359-1000\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://search.v9.com/web/?q={searchTerms}
      IE - HKU\S-1-5-21-354153199-4033259128-1652463359-1000\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
      IE - HKU\S-1-5-21-354153199-4033259128-1652463359-1000\..\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}: "URL" = http://ar.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=CPDTDF
      IE - HKU\S-1-5-21-354153199-4033259128-1652463359-1000\..\SearchScopes\{C1F7F9A6-E8D6-44B9-BA4E-CD943878A440}: "URL" = http://www.mysearchresults.com/search?&c=3501&t=07&q={searchTerms}
      IE - HKU\S-1-5-21-354153199-4033259128-1652463359-1000\..\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}: "URL" = http://es.wikipedia.org/wiki/Special:Search?search={searchTerms}
      IE - HKU\S-1-5-21-354153199-4033259128-1652463359-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


      ========== FireFox ==========

      FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.9.2: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()



      ========== Chrome ==========

      CHR - default_search_provider: Google (Enabled)
      CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
      CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
      CHR - homepage: http://www.google.com/

      O1 HOSTS File: ([2009/06/10 18:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
      O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
      O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
      O3 - HKU\S-1-5-21-354153199-4033259128-1652463359-1000\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
      O3 - HKU\S-1-5-21-354153199-4033259128-1652463359-1000\..\Toolbar\WebBrowser: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No CLSID value found.
      O4 - HKLM..\Run: [] File not found
      O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
      O4 - HKLM..\Run: [Buttons & OSDs control application gen3] c:\Program Files\Hewlett-Packard\Yan_Button & OSD\FastUserSwitching.exe (Hewlett-Packard)
      O4 - HKLM..\Run: [hpsysdrv] c:\program files\hewlett-packard\HP odometer\hpsysdrv.exe (Hewlett-Packard)
      O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (Nero AG)
      O4 - HKLM..\Run: [PDF Complete] C:\Program Files\PDF Complete\pdfsty.exe (PDF Complete Inc)
      O4 - HKU\S-1-5-21-354153199-4033259128-1652463359-1000..\Run: [ares] C:\Program Files\Ares\Ares.exe (Ares Development Group)
      O4 - HKU\S-1-5-21-354153199-4033259128-1652463359-1000..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG)
      O4 - HKU\S-1-5-21-354153199-4033259128-1652463359-1000..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware.com)
      O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
      O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
      O13 - gopher Prefix: missing
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 200.49.130.41 200.42.4.204
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{5A8359D2-5A7C-419C-96B5-CC5AD0CC935A}: DhcpNameServer = 8.8.8.8 4.2.2.1
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F096D1F4-2C33-4276-B364-C7A57DE56B03}: DhcpNameServer = 200.49.130.41 200.42.4.204
      O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
      O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
      O32 - HKLM CDRom: AutoRun - 1
      O32 - AutoRun File - [2009/06/10 18:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
      O34 - HKLM BootExecute: (autocheck autochk *)
      O35 - HKLM\..comfile [open] -- "%1" %*
      O35 - HKLM\..exefile [open] -- "%1" %*
      O37 - HKLM\...com [@ = comfile] -- "%1" %*
      O37 - HKLM\...exe [@ = exefile] -- "%1" %*
      O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
      O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
      O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

      NetSvcs: FastUserSwitchingCompatibility - File not found
      NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
      NetSvcs: Nla - File not found
      NetSvcs: Ntmssvc - File not found
      NetSvcs: NWCWorkstation - File not found
      NetSvcs: Nwsapagent - File not found
      NetSvcs: SRService - File not found
      NetSvcs: WmdmPmSp - File not found
      NetSvcs: LogonHours - File not found
      NetSvcs: PCAudit - File not found
      NetSvcs: helpsvc - File not found
      NetSvcs: uploadmgr - File not found


      CREATERESTOREPOINT
      Restore point Set: OTL Restore Point

      ========== Files/Folders - Created Within 30 Days ==========

      [2012/10/20 20:51:00 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Roaming\Malwarebytes
      [2012/10/20 20:50:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
      [2012/10/20 20:50:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
      [2012/10/20 20:50:45 | 000,022,856 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
      [2012/10/20 20:50:45 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
      [2012/10/20 19:13:42 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Roaming\Apple Computer
      [2012/10/20 18:01:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
      [2012/10/20 18:00:59 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
      [2012/10/20 17:59:51 | 000,000,000 | ---D | C] -- C:\Program Files\Java
      [2012/10/20 17:50:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
      [2012/10/20 17:49:59 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Roaming\SUPERAntiSpyware.com
      [2012/10/20 17:49:40 | 000,000,000 | ---D | C] -- C:\Program Files\QuickTime
      [2012/10/20 17:49:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer
      [2012/10/20 17:49:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
      [2012/10/20 17:49:19 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
      [2012/10/20 17:49:19 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
      [2012/10/20 17:48:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
      [2012/10/20 17:48:39 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Local\Apple
      [2012/10/20 17:48:36 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update
      [2012/10/20 17:48:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple
      [2012/10/20 17:42:35 | 000,036,864 | ---- | C] (NirSoft) -- C:\Windows\nircmd.exe
      [2012/10/20 17:29:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
      [2012/10/20 17:29:54 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
      [2012/10/19 18:16:01 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Roaming\Google
      [2012/10/19 1803 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Local\Google
      [2012/10/19 18:09:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Google
      [2012/10/19 18:09:51 | 000,000,000 | ---D | C] -- C:\Program Files\Google
      [2012/10/19 18:09:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
      [2012/10/19 10:41:10 | 000,000,000 | ---D | C] -- C:\Users\Pedro\Desktop\My Shared Folder
      [2012/10/19 10:41:08 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Local\Ares
      [2012/10/19 10:41:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ares
      [2012/10/19 10:40:58 | 000,000,000 | ---D | C] -- C:\Program Files\Ares
      [2012/10/19 10:38:30 | 000,000,000 | ---D | C] -- C:\ProgramData\eMule
      [2012/10/19 10:28:17 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Local\CrashDumps
      [2012/10/18 21:50:23 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Local\eMule
      [2012/10/18 21:50:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMule
      [2012/10/18 21:50:20 | 000,000,000 | ---D | C] -- C:\Program Files\eMule
      [2012/10/18 21:46:37 | 000,000,000 | ---D | C] -- C:\Program Files\BitTorrent
      [2012/10/18 21:43:18 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Roaming\BitTorrent
      [2012/10/18 15:49:41 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0
      [2012/10/18 15:28:59 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\proXPN
      [2012/10/18 15:28:57 | 000,000,000 | ---D | C] -- C:\Program Files\proXPN
      [2012/10/17 2342 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Roaming\Mozilla
      [2012/10/17 21:57:07 | 000,000,000 | ---D | C] -- C:\Program Files\Email Extractor
      [2012/10/17 21:56:59 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Local\PackageAware
      [2012/10/17 20:57:58 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Roaming\Stormdance
      [2012/10/17 20:57:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoRazor
      [2012/10/17 20:57:49 | 000,000,000 | ---D | C] -- C:\Program Files\PhotoRazor
      [2012/10/17 08:17:36 | 000,000,000 | ---D | C] -- C:\Users\Pedro\Documents\Nero Home
      [2012/10/17 08:16:28 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Local\Ahead
      [2012/10/17 08:03:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hex Workshop v6
      [2012/10/17 08:03:01 | 000,000,000 | ---D | C] -- C:\Program Files\BreakPoint Software
      [2012/10/17 07:57:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 7 Ultra Edition
      [2012/10/17 07:57:36 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Roaming\Ahead
      [2012/10/17 07:57:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Ahead
      [2012/10/17 07:55:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Nero
      [2012/10/17 07:55:48 | 000,000,000 | ---D | C] -- C:\Program Files\Nero
      [2012/10/17 07:55:48 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Ahead
      [2012/10/17 07:51:17 | 000,000,000 | ---D | C] -- C:\Program Files\AskTBar
      [2012/10/17 07:25:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Tarma Installer
      [2012/10/16 23:37:26 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Roaming\FileZilla
      [2012/10/16 23:34:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
      [2012/10/16 23:34:09 | 000,000,000 | ---D | C] -- C:\Program Files\FileZilla FTP Client
      [2012/10/16 23:32:02 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Roaming\WinRAR
      [2012/10/16 23:31:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
      [2012/10/16 23:31:57 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
      [2012/10/16 23:31:39 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
      [2012/10/15 05:24:21 | 000,000,000 | ---D | C] -- C:\Program Files\Easy-Hide-IP
      [2012/10/15 04:23:46 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Local\Diagnostics
      [2012/10/15 03:49:23 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Roaming\Adobe
      [2012/10/15 02:51:37 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Local\PDFC
      [2012/10/15 02:51:26 | 000,000,000 | R--D | C] -- C:\Users\Pedro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
      [2012/10/15 02:51:26 | 000,000,000 | R--D | C] -- C:\Users\Pedro\Searches
      [2012/10/15 02:51:26 | 000,000,000 | R--D | C] -- C:\Users\Pedro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
      [2012/10/15 02:51:20 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Roaming\Identities
      [2012/10/15 02:51:19 | 000,000,000 | R--D | C] -- C:\Users\Pedro\Contacts
      [2012/10/15 02:51:01 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Local\RemEngine
      [2012/10/15 02:48:31 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Roaming\Hewlett-Packard
      [2012/10/15 02:48:26 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Local\Hewlett-Packard
      [2012/10/15 02:48:11 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Local\Hewlett-Packard_Company
      [2012/10/15 02:47:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Manuales del Usuario de HP
      [2012/10/15 02:47:33 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Local\VirtualStore
      [2012/10/15 02:47:31 | 000,000,000 | --SD | C] -- C:\Users\Pedro\AppData\Roaming\Microsoft
      [2012/10/15 02:47:31 | 000,000,000 | R--D | C] -- C:\Users\Pedro\Videos
      [2012/10/15 02:47:31 | 000,000,000 | R--D | C] -- C:\Users\Pedro\Saved Games
      [2012/10/15 02:47:31 | 000,000,000 | R--D | C] -- C:\Users\Pedro\Pictures
      [2012/10/15 02:47:31 | 000,000,000 | R--D | C] -- C:\Users\Pedro\Music
      [2012/10/15 02:47:31 | 000,000,000 | R--D | C] -- C:\Users\Pedro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
      [2012/10/15 02:47:31 | 000,000,000 | R--D | C] -- C:\Users\Pedro\Links
      [2012/10/15 02:47:31 | 000,000,000 | R--D | C] -- C:\Users\Pedro\Favorites
      [2012/10/15 02:47:31 | 000,000,000 | R--D | C] -- C:\Users\Pedro\Downloads
      [2012/10/15 02:47:31 | 000,000,000 | R--D | C] -- C:\Users\Pedro\Documents
      [2012/10/15 02:47:31 | 000,000,000 | R--D | C] -- C:\Users\Pedro\Desktop
      [2012/10/15 02:47:31 | 000,000,000 | R--D | C] -- C:\Users\Pedro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
      [2012/10/15 02:47:31 | 000,000,000 | -HSD | C] -- C:\Users\Pedro\SendTo
      [2012/10/15 02:47:31 | 000,000,000 | -HSD | C] -- C:\Users\Pedro\Reciente
      [2012/10/15 02:47:31 | 000,000,000 | -HSD | C] -- C:\Users\Pedro\Plantillas
      [2012/10/15 02:47:31 | 000,000,000 | -HSD | C] -- C:\Users\Pedro\Documents\Mis vídeos
      [2012/10/15 02:47:31 | 000,000,000 | -HSD | C] -- C:\Users\Pedro\Documents\Mis imágenes
      [2012/10/15 02:47:31 | 000,000,000 | -HSD | C] -- C:\Users\Pedro\Mis documentos
      [2012/10/15 02:47:31 | 000,000,000 | -HSD | C] -- C:\Users\Pedro\Documents\Mi música
      [2012/10/15 02:47:31 | 000,000,000 | -HSD | C] -- C:\Users\Pedro\Menú Inicio
      [2012/10/15 02:47:31 | 000,000,000 | -HSD | C] -- C:\Users\Pedro\Impresoras
      [2012/10/15 02:47:31 | 000,000,000 | -HSD | C] -- C:\Users\Pedro\AppData\Local\Historial
      [2012/10/15 02:47:31 | 000,000,000 | -HSD | C] -- C:\Users\Pedro\Entorno de red
      [2012/10/15 02:47:31 | 000,000,000 | -HSD | C] -- C:\Users\Pedro\Datos de programa
      [2012/10/15 02:47:31 | 000,000,000 | -HSD | C] -- C:\Users\Pedro\AppData\Local\Datos de programa
      [2012/10/15 02:47:31 | 000,000,000 | -HSD | C] -- C:\Users\Pedro\Cookies
      [2012/10/15 02:47:31 | 000,000,000 | -HSD | C] -- C:\Users\Pedro\Configuración local
      [2012/10/15 02:47:31 | 000,000,000 | -HSD | C] -- C:\Users\Pedro\AppData\Local\Archivos temporales de Internet
      [2012/10/15 02:47:31 | 000,000,000 | -H-D | C] -- C:\Users\Pedro\AppData
      [2012/10/15 02:47:31 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Local\Temp
      [2012/10/15 02:47:31 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Local\Microsoft
      [2012/10/15 02:47:31 | 000,000,000 | ---D | C] -- C:\Users\Pedro\AppData\Roaming\Macromedia
      [2012/10/15 02:45:06 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution

      ========== Files - Modified Within 30 Days ==========

      [2012/10/20 22:34:10 | 000,016,160 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
      [2012/10/20 22:34:10 | 000,016,160 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
      [2012/10/20 22:31:40 | 000,000,004 | ---- | M] () -- C:\ProgramData\GEN3BrightnessLevel.INI
      [2012/10/20 22:26:48 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
      [2012/10/20 22:26:44 | 1602,887,680 | -HS- | M] () -- C:\hiberfil.sys
      [2012/10/20 21:53:00 | 000,000,838 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
      [2012/10/20 20:50:49 | 000,001,069 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
      [2012/10/20 19:13:34 | 000,000,510 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task eecc0370-6952-4401-9720-9e6c3ee57c8f.job
      [2012/10/20 19:13:34 | 000,000,510 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 5c48e5f6-d3d6-4044-a013-dc980bb2d8b9.job
      [2012/10/20 17:50:04 | 000,001,817 | ---- | M] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
      [2012/10/20 17:49:27 | 000,001,963 | ---- | M] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
      [2012/10/20 17:29:56 | 000,000,967 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
      [2012/10/19 10:41:03 | 000,000,911 | ---- | M] () -- C:\Users\Public\Desktop\Ares.lnk
      [2012/10/18 21:50:47 | 000,000,961 | ---- | M] () -- C:\Users\Public\Desktop\eMule.lnk
      [2012/10/18 21:46:38 | 000,000,935 | ---- | M] () -- C:\Users\Public\Desktop\BitTorrent.lnk
      [2012/10/18 15:30:05 | 000,001,021 | ---- | M] () -- C:\Users\Pedro\Desktop\proXPN.lnk
      [2012/10/18 13:44:59 | 000,003,272 | ---- | M] () -- C:\bootsqm.dat
      [2012/10/17 20:57:50 | 000,001,015 | ---- | M] () -- C:\Users\Public\Desktop\PhotoRazor.lnk
      [2012/10/17 08:03:03 | 000,001,180 | ---- | M] () -- C:\Users\Public\Desktop\Hex Workshop Hex Editor.lnk
      [2012/10/17 07:57:58 | 000,002,730 | ---- | M] () -- C:\Users\Public\Desktop\Nero StartSmart.lnk
      [2012/10/17 07:57:58 | 000,002,634 | ---- | M] () -- C:\Users\Public\Desktop\Nero Home.lnk
      [2012/10/16 07:43:18 | 000,744,748 | ---- | M] () -- C:\Windows\System32\perfh00A.dat
      [2012/10/16 07:43:18 | 000,651,450 | ---- | M] () -- C:\Windows\System32\perfh009.dat
      [2012/10/16 07:43:18 | 000,157,248 | ---- | M] () -- C:\Windows\System32\perfc00A.dat
      [2012/10/16 07:43:18 | 000,120,382 | ---- | M] () -- C:\Windows\System32\perfc009.dat
      [2012/10/16 07:42:22 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
      [2012/10/16 05:44:24 | 000,178,211 | ---- | M] () -- C:\Windows\System32\license.rtf
      [2012/10/15 14:08:52 | 000,267,728 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
      [2012/10/15 05:24:23 | 000,000,062 | ---- | M] () -- C:\Windows\MyProg.ini
      [2012/10/15 02:47:44 | 000,000,000 | RHS- | M] () -- C:\Windows\System32\drivers\103C_HP_cPC_CQ1-1407LA_Y53316J_0U_Q3CR213_E11LA2MRW301_4A_I1598_SPEGATRON CORPORATION_V1.01_B6.08_T110318_W711-1_LC0A_M2039_J500_7Intel_86CA_91.80_#121015_N18145390;19691062_Z_G8086A001;8086A002.MRK
      [2012/09/29 19:54:26 | 000,022,856 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys

      ========== Files Created - No Company Name ==========

      [2012/10/20 22:31:40 | 000,000,004 | ---- | C] () -- C:\ProgramData\GEN3BrightnessLevel.INI
      [2012/10/20 20:50:49 | 000,001,069 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
      [2012/10/20 17:50:18 | 000,000,510 | ---- | C] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 5c48e5f6-d3d6-4044-a013-dc980bb2d8b9.job
      [2012/10/20 17:50:17 | 000,000,510 | ---- | C] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task eecc0370-6952-4401-9720-9e6c3ee57c8f.job
      [2012/10/20 17:50:04 | 000,001,817 | ---- | C] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
      [2012/10/20 17:49:27 | 000,001,963 | ---- | C] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
      [2012/10/20 17:48:37 | 000,002,519 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
      [2012/10/20 17:42:35 | 000,069,660 | ---- | C] () -- C:\Windows\Fart.exe
      [2012/10/20 17:42:35 | 000,011,776 | ---- | C] () -- C:\Windows\Colous.exe
      [2012/10/20 17:29:56 | 000,000,967 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
      [2012/10/19 18:09:49 | 000,000,838 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
      [2012/10/19 10:41:02 | 000,000,911 | ---- | C] () -- C:\Users\Public\Desktop\Ares.lnk
      [2012/10/18 21:50:47 | 000,000,961 | ---- | C] () -- C:\Users\Public\Desktop\eMule.lnk
      [2012/10/18 21:46:38 | 000,000,935 | ---- | C] () -- C:\Users\Public\Desktop\BitTorrent.lnk
      [2012/10/18 15:30:05 | 000,001,021 | ---- | C] () -- C:\Users\Pedro\Desktop\proXPN.lnk
      [2012/10/18 13:44:59 | 000,003,272 | ---- | C] () -- C:\bootsqm.dat
      [2012/10/17 20:57:49 | 000,001,015 | ---- | C] () -- C:\Users\Public\Desktop\PhotoRazor.lnk
      [2012/10/17 08:03:03 | 000,001,180 | ---- | C] () -- C:\Users\Public\Desktop\Hex Workshop Hex Editor.lnk
      [2012/10/17 07:57:58 | 000,002,730 | ---- | C] () -- C:\Users\Public\Desktop\Nero StartSmart.lnk
      [2012/10/17 07:57:58 | 000,002,634 | ---- | C] () -- C:\Users\Public\Desktop\Nero Home.lnk
      [2012/10/16 07:42:22 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
      [2012/10/15 05:24:23 | 000,000,062 | ---- | C] () -- C:\Windows\MyProg.ini
      [2012/10/15 02:51:28 | 000,001,399 | ---- | C] () -- C:\Users\Pedro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
      [2012/10/15 02:48:14 | 000,002,340 | ---- | C] () -- C:\Users\Public\Desktop\Pruebe HP MyRoom de forma gratuita.lnk
      [2012/10/15 02:48:14 | 000,002,122 | ---- | C] () -- C:\Users\Public\Desktop\HP Plus.lnk
      [2012/10/15 02:47:44 | 000,000,000 | RHS- | C] () -- C:\Windows\System32\drivers\103C_HP_cPC_CQ1-1407LA_Y53316J_0U_Q3CR213_E11LA2MRW301_4A_I1598_SPEGATRON CORPORATION_V1.01_B6.08_T110318_W711-1_LC0A_M2039_J500_7Intel_86CA_91.80_#121015_N18145390;19691062_Z_G8086A001;8086A002.MRK
      [2012/03/22 22:08:46 | 000,016,456 | ---- | C] () -- C:\Windows\System32\drivers\OSDACPI.SYS
      [2012/03/22 22:08:46 | 000,014,051 | ---- | C] () -- C:\Windows\System32\RaCoInst.dat
      [2012/03/22 22:02:27 | 000,341,432 | ---- | C] () -- C:\Windows\System32\perfi00A.dat
      [2012/03/22 22:02:25 | 000,744,748 | ---- | C] () -- C:\Windows\System32\perfh00A.dat
      [2012/03/22 22:02:25 | 000,157,248 | ---- | C] () -- C:\Windows\System32\perfc00A.dat
      [2012/03/22 22:02:25 | 000,041,390 | ---- | C] () -- C:\Windows\System32\perfd00A.dat
      [2011/03/04 01:04:58 | 000,007,736 | ---- | C] () -- C:\Windows\hpDSTRES.DLL

      ========== ZeroAccess Check ==========

      [2009/07/14 01:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

      [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

      [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
      "" = %SystemRoot%\system32\shell32.dll -- [2012/06/09 01:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
      "" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 18:29:20 | 000,606,208 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
      "" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/13 22:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Both

      ========== LOP Check ==========

      [2012/10/19 14:23:00 | 000,000,000 | ---D | M] -- C:\Users\Pedro\AppData\Roaming\BitTorrent
      [2012/10/16 23:37:35 | 000,000,000 | ---D | M] -- C:\Users\Pedro\AppData\Roaming\FileZilla
      [2012/10/17 20:57:58 | 000,000,000 | ---D | M] -- C:\Users\Pedro\AppData\Roaming\Stormdance

      ========== Purity Check ==========



      ========== Custom Scans ==========

      < %SYSTEMDRIVE%\*.* >
      [2012/10/20 19:58:00 | 000,002,521 | ---- | M] () -- C:\AT-Destroyer.txt
      [2009/06/10 18:42:20 | 000,000,024 | ---- | M] () -- C:\autoexec.bat
      [2011/02/10 18:14:43 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK
      [2012/10/18 13:44:59 | 000,003,272 | ---- | M] () -- C:\bootsqm.dat
      [2009/06/10 18:42:20 | 000,000,010 | ---- | M] () -- C:\config.sys
      [2012/10/20 22:26:44 | 1602,887,680 | -HS- | M] () -- C:\hiberfil.sys
      [2012/03/23 00:19:34 | 000,000,000 | RHS- | M] () -- C:\OS
      [2012/10/20 22:26:47 | 2137,186,304 | -HS- | M] () -- C:\pagefile.sys
      [2012/10/20 19:56:30 | 000,000,010 | ---- | M] () -- C:\prueba.txt

      < >
      [2009/07/14 01:53:46 | 000,014,408 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
      [2009/07/14 01:53:47 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
      [2012/10/19 18:09:49 | 000,000,838 | ---- | C] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
      [2012/10/20 17:50:17 | 000,000,510 | ---- | C] () -- C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task eecc0370-6952-4401-9720-9e6c3ee57c8f.job
      [2012/10/20 17:50:18 | 000,000,510 | ---- | C] () -- C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 5c48e5f6-d3d6-4044-a013-dc980bb2d8b9.job

      < End of report >

      OTL Extras logfile created on: 20/10/2012 10:36:49 p.m. - Run 1
      OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Pedro\Downloads
      Starter Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
      Internet Explorer (Version = 8.0.7601.17514)
      Locale: 00000409 | Country: Argentina | Language: ESS | Date Format: dd/MM/yyyy

      1,99 Gb Total Physical Memory | 1,44 Gb Available Physical Memory | 72,53% Memory free
      3,98 Gb Paging File | 3,33 Gb Available in Paging File | 83,75% Paging File free
      Paging file location(s): ?:\pagefile.sys [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
      Drive C: | 90,83 Gb Total Space | 66,59 Gb Free Space | 73,31% Space Free | Partition Type: NTFS
      Drive D: | 10,85 Gb Total Space | 1,33 Gb Free Space | 12,22% Space Free | Partition Type: NTFS

      Computer Name: PEDRO-HP | User Name: Pedro | Logged in as Administrator.
      Boot Mode: Normal | Scan Mode: All users
      Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

      ========== Extra Registry (SafeList) ==========


      ========== File Associations ==========

      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
      .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
      .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
      .html [@ = ChromeHTML] -- Reg Error: Key error. File not found

      [HKEY_USERS\S-1-5-21-354153199-4033259128-1652463359-1000\SOFTWARE\Classes\<extension>]
      .html [@ = ChromeHTML] -- Reg Error: Key error. File not found

      ========== Shell Spawning ==========

      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
      batfile [open] -- "%1" %*
      cmdfile [open] -- "%1" %*
      comfile [open] -- "%1" %*
      cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
      exefile [open] -- "%1" %*
      helpfile [open] -- Reg Error: Key error.
      hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
      htmlfile [edit] -- Reg Error: Key error.
      htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
      http [open] -- Reg Error: Key error.
      https [open] -- Reg Error: Key error.
      inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
      piffile [open] -- "%1" %*
      regfile [merge] -- Reg Error: Key error.
      scrfile [config] -- "%1"
      scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
      scrfile [open] -- "%1" /S
      txtfile [edit] -- Reg Error: Key error.
      Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
      Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
      Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
      Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
      Folder [explore] -- Reg Error: Value error.
      Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

      ========== Security Center Settings ==========

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
      "cval" = 1

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
      "VistaSp1" = Reg Error: Unknown registry data type -- File not found
      "AntiVirusOverride" = 0
      "AntiSpywareOverride" = 0
      "FirewallOverride" = 0

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

      ========== Firewall Settings ==========

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
      "EnableFirewall" = 1
      "DisableNotifications" = 0

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
      "EnableFirewall" = 1
      "DisableNotifications" = 0

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
      "EnableFirewall" = 1
      "DisableNotifications" = 0

      ========== Authorized Applications List ==========


      ========== Vista Active Open Ports Exception List ==========

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
      "{3B9585AF-6C91-4102-A32E-8ABEED477722}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
      "{955CBAF8-7627-43A7-8AF9-D226FA8D5285}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
      "{EDFADEFE-097A-4D13-A241-3E60FC89009B}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework\v4.0.30319\smsvchost.exe |

      ========== Vista Active Application Exception List ==========

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
      "{0973E83B-1999-44A6-B246-E5021B26EB05}" = dir=in | app=c:\program files\windows live\contacts\wlcomm.exe |
      "{1B89F400-CAC0-4B52-8E57-F6F589D8D521}" = protocol=17 | dir=in | app=c:\program files\bittorrent\bittorrent.exe |
      "{41BBC497-8CA1-4F00-A413-318F523946E7}" = protocol=6 | dir=in | app=c:\program files\bittorrent\bittorrent.exe |
      "{4F8D5B3B-167A-4D21-8B76-59882D85A5E9}" = dir=in | app=c:\program files\cyberlink\powerdvd10\powerdvd10.exe |
      "{6EBD5043-1662-4E97-AA63-B27432D43F8C}" = dir=in | app=c:\program files\common files\apple\apple application support\webkit2webprocess.exe |
      "{AFBB2799-9C62-4786-B6BE-4331473999F1}" = dir=in | app=c:\program files\cyberlink\powerdvd10\powerdvd cinema\powerdvdcinema10.exe |
      "{B456A144-94AB-4AA8-A4D4-EB659350F4EA}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
      "{FD6E07B8-6A84-4ABE-80C3-06CE55C70DAD}" = dir=in | app=c:\program files\windows live\mesh\moe.exe |
      "TCP Query User{45A12FED-A560-4572-928E-A0F594D0EA87}C:\program files\emule\emule.exe" = protocol=6 | dir=in | app=c:\program files\emule\emule.exe |
      "TCP Query User{DFB55430-C842-44C4-836D-5DC4F36F93E3}C:\program files\ares\ares.exe" = protocol=6 | dir=in | app=c:\program files\ares\ares.exe |
      "UDP Query User{2CD2227D-DE95-4F4F-819A-F1EEB1C97ED2}C:\program files\ares\ares.exe" = protocol=17 | dir=in | app=c:\program files\ares\ares.exe |
      "UDP Query User{DD1DA2F5-C1AD-41CE-93BD-410530829CD2}C:\program files\emule\emule.exe" = protocol=17 | dir=in | app=c:\program files\emule\emule.exe |

      ========== HKEY_LOCAL_MACHINE Uninstall List ==========

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
      "{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
      "{04668DF2-D32F-4555-9C7E-35523DCD6544}" = Control ActiveX de Windows Live Mesh para conexiones remotas
      "{0557BBDA-69D3-4FA4-A93C-A5300F7034B4}" = Windows Live Writer
      "{05E47624-97C4-4B22-83C8-D4E30EC3EF02}" = Windows Live Remote Client Resources
      "{06B05153-97E4-427E-B1A8-E098F6C5E52F}" = Windows Live Essentials
      "{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements
      "{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended
      "{0A1651F1-7E0F-4613-93FE-967F5BC3C1B7}" = Windows Live Remote Service Resources
      "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
      "{0D261C88-454B-46FE-B43B-640E621BDA11}" = Windows Live Mail
      "{0E64B098-8018-4256-BA23-C316A43AD9B0}" = QuickTime
      "{120C160F-F53D-4A15-A873-E79BF5B98B48}" = Windows Live Photo Common
      "{17504ED4-DB08-40A8-81C2-27D8C01581DA}" = Windows Live Remote Service Resources
      "{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
      "{19A4A990-5343-4FF7-B3B5-6F046C091EDF}" = Windows Live Remote Client
      "{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
      "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
      "{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
      "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
      "{20381A8A-808E-4A53-B6CD-AD2B85E16365}" = Windows Live UX Platform Language Pack
      "{210A03F5-B2ED-4947-B27E-516F50CBB292}" = HP Setup
      "{226F0D93-76DE-4F1C-B14D-DE10443ADB60}" = Windows Live Movie Maker
      "{227E8782-B2F4-4E97-B0EE-49DE9CC1C0C0}" = Windows Live Remote Service
      "{254C37AA-6B72-4300-84F6-98A82419187E}" = ActiveCheck component for HP Active Support Library
      "{26A24AE4-039D-4CA4-87B4-2F83217009FF}" = Java 7 Update 9
      "{2856A1C2-70C5-4EC3-AFF7-E5B51E5530A2}" = HP Client Services
      "{2902F983-B4C1-44BA-B85D-5C6D52E2C441}" = Windows Live Mesh ActiveX Control for Remote Connections
      "{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App" = Update Installer for WildTangent Games App
      "{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
      "{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
      "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
      "{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
      "{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}" = Recovery Manager
      "{464B3406-A4D0-4914-910F-7CA4380DCC13}" = Windows Live Remote Client Resources
      "{465210C4-595A-BD80-44E8-E0457D9D8432}" = Zinio Reader 4
      "{4736B0ED-F6A1-48EC-A1B7-C053027648F1}" = Galeria fotogràfica del Windows Live
      "{48C0DC5E-820A-44F2-890E-29B68EDD3C78}" = Windows Live Writer
      "{48F597DD-D397-4CFA-91A0-4C033A0113BD}" = Windows Live Mail
      "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
      "{4A275FD1-2F24-4274-8C01-813F5AD1A92D}" = Windows Live Messenger
      "{4D7BAC8A-51B8-4243-8567-1415C4272D13}" = Windows Live Writer
      "{5495E9A4-501A-4D4C-87C9-E80916CA9478}" = Windows Live UX Platform Language Pack
      "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
      "{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
      "{58A5DD4F-15CB-4342-A0E4-FC4A75F0BEFE}" = Hex Workshop v6
      "{5C8BC258-A629-4DF2-97D0-E106C2A9B1BD}" = Windows Live Remote Client Resources
      "{5D273F60-0525-48BA-A5FB-D0CAA4A952AE}" = Windows Live Movie Maker
      "{61AD15B2-50DB-4686-A739-14FE180D4429}" = Windows Live ID Sign-in Assistant
      "{625D45F0-5DCB-48BF-8770-C240A84DAAEB}" = Windows Live Mesh
      "{669D4A35-146B-4314-89F1-1AC3D7B88367}" = HPAsset component for HP Active Support Library
      "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
      "{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp" = WildTangent Games App (HP Games)
      "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
      "{71527C7C-5289-4CB2-88C9-23344C0FF6C1}" = Windows Live Movie Maker
      "{76C064E2-BB99-4453-8FDA-42BC01AD0734}" = Control ActiveX del Windows Live Mesh per a connexions remotes
      "{77477AEA-5757-47D8-8B33-939F43D82218}" = Windows Live UX Platform Language Pack
      "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
      "{78DAE910-CA72-450E-AD22-772CB1A00678}" = Windows Live Mesh
      "{7962DFC7-BBD8-4FA1-B510-46A993C2BF94}" = Windows Live Remote Client Resources
      "{7BA6DF02-B094-45D7-A3C9-BE3684253922}" = Urruneko konexioetarako Windows Live Mesh ActiveX kontrola
      "{7D1C7B9F-2744-4388-B128-5C75B8BCCC84}" = Windows Live Essentials
      "{7D926AD2-16D6-42C2-8CA1-AB09E96040BA}" = Windows Live Writer Resources
      "{7D99B933-E29C-4599-92F0-DAED2AF041E3}" = Windows Live Essentials
      "{7F2A11F4-EAE8-4325-83EC-E3E99F85169E}" = HP Support Information
      "{80956555-A512-4190-9CAD-B000C36D6B6B}" = Windows Live Messenger
      "{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
      "{86F444A5-C9B9-41DC-AF28-B5E46F5497C7}" = Windows Live Argazki Galeria
      "{889DF117-14D1-44EE-9F31-C5FB5D47F68B}" = Yontoo 1.10.02
      "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
      "{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
      "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
      "{8E285C75-9BE2-4349-972B-DECDDF472656}" = Windows Live Writer Resources
      "{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
      "{93C4B7D5-4E00-491F-BA3E-25B7B63EE7F6}" = Windows Live Mail
      "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
      "{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010
      "{95140000-00FF-0403-0000-0000000FF1CE}" = Microsoft Office Language Interface Pack 2010 - Català
      "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
      "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
      "{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
      "{9E2C5B0E-7A2D-4767-A9B2-77469FB1873A}" = Windows Live Mesh
      "{A0C91188-C88F-4E86-93E6-CD7C9A266649}" = Windows Live Mesh
      "{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
      "{A41A708E-3BE6-4561-855D-44027C1CF0F8}" = Windows Live Photo Common
      "{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
      "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
      "{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
      "{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer
      "{AE856388-AFAD-4753-81DF-D96B19D0A17C}" = Compaq Setup Manager
      "{AF844339-2F8A-4593-81B3-9F4C54038C4E}" = Windows Live MIME IFilter
      "{B8AC1A89-FFD1-4F97-8051-E505A160F562}" = HP Odometer
      "{BA4F5E73-14AD-4416-96C4-46E0F3CE9144}" = Yan_Button & OSD
      "{C1015024-0BF1-4B51-8A06-C28953687DA7}" = Windows Live Remote Service Resources
      "{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
      "{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail
      "{CB240A71-3AFC-4429-B4D4-F965B8C4267E}" = Windows Live Remote Service Resources
      "{CC4D56B7-6F18-470B-8734-ABCD75BCF4F1}" = HP Auto
      "{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware
      "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
      "{CF097717-F174-4144-954A-FBC4BF301033}" = Nero 7 Ultra Edition
      "{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
      "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
      "{D79A02E9-6713-4335-9668-AAC7474C0C0E}" = HP Vision Hardware Diagnostics
      "{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
      "{DE77FE3F-A33D-499A-87AD-5FC406617B40}" = HP Update
      "{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = CyberLink PowerDVD 10
      "{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
      "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
      "{E727A662-AF9F-4DEE-81C5-F4A1686F3DFC}" = Windows Live Writer Resources
      "{E85A4EFC-82F2-4CEE-8A8E-62FDAD353A66}" = Galería fotográfica de Windows Live
      "{E92D47A1-D27D-430A-8368-0BAFD956507D}" = HP Support Assistant
      "{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
      "{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}" = Apple Application Support
      "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
      "{F0F5D89A-197C-495B-827E-3E98B811CD2E}" = Windows Live Photo Common
      "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
      "{F13587F7-AA4C-4C2E-AE7D-F33F3CCE57A9}" = Windows Live Messenger
      "{FCBC19F7-E068-4B7A-ACBB-CE9CCEB4B21F}" = Windows Live Messenger
      "{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
      "Adobe AIR" = Adobe AIR
      "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
      "Ares" = Ares 2.1.8
      "BitTorrent" = BitTorrent
      "CCleaner" = CCleaner
      "eMule" = eMule
      "FileZilla Client" = FileZilla Client 3.5.3
      "HDMI" = Intel(R) Graphics Media Accelerator Driver
      "InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
      "InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
      "InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
      "InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = CyberLink PowerDVD 10
      "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware versión 1.65.1.1000
      "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
      "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
      "PDF Complete" = PDF Complete Special Edition
      "PhotoRazor" = PhotoRazor
      "proXPN" = proXPN 2.5.1
      "WildTangent hp Master Uninstall" = HP Games
      "WinLiveSuite" = Windows Live Essentials
      "WinRAR archiver" = WinRAR 4.20 (32-bit)
      "WT087330" = Bounce Symphony
      "WT087361" = FATE
      "WT087393" = Mah Jong Medley
      "WT087394" = Penguins!
      "WT087396" = Polar Bowler
      "WT087490" = Jewel Quest Solitaire
      "WT087510" = Slingo Deluxe
      "WT087513" = Virtual Villagers - The Secret City
      "WT087519" = Wedding Dash
      "WT087536" = Diner Dash 2 Restaurant Rescue
      "WT089308" = Blasterball 3
      "WT089328" = Farm Frenzy
      "WT089359" = Cake Mania
      "WT089362" = Agatha Christie - Peril at End House
      "WT089453" = Bejeweled 2 Deluxe
      "WT089454" = Chuzzle Deluxe
      "WT089455" = Zuma Deluxe
      "WT089458" = Plants vs. Zombies - Game of the Year
      "WT089460" = Mystery P.I. - The London Caper
      "WT089484" = Namco All-Stars PAC-MAN
      "WT089492" = Crazy Chicken Kart 2
      "WT089493" = Fishdom
      "WT089497" = Big Rig Europe
      "ZinioReader4.9310D8F796442B71068C511E15D70529A702D19D.1" = Zinio Reader 4

      ========== Last 20 Event Log Errors ==========

      [ Application Events ]
      Error - 15/10/2012 10:17:19 a.m. | Computer Name = Pedro-HP | Source = Microsoft-Windows-CAPI2 | ID = 4107
      Description = Error en la extracción de la lista raíz de terceros del archivo .CAB
      actualizado automáticamente: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
      con el error: Un certificado requerido no se encuentra dentro del periodo de validez
      cuando se ha realizado la comprobación con el reloj de sistema actual o con la
      marca de tiempo en el archivo firmado. .

      Error - 15/10/2012 10:17:19 a.m. | Computer Name = Pedro-HP | Source = Microsoft-Windows-CAPI2 | ID = 4107
      Description = Error en la extracción de la lista raíz de terceros del archivo .CAB
      actualizado automáticamente: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
      con el error: Un certificado requerido no se encuentra dentro del periodo de validez
      cuando se ha realizado la comprobación con el reloj de sistema actual o con la
      marca de tiempo en el archivo firmado. .

      Error - 15/10/2012 10:18:26 a.m. | Computer Name = Pedro-HP | Source = WinMgmt | ID = 10
      Description =

      Error - 15/10/2012 10:29:24 a.m. | Computer Name = Pedro-HP | Source = Microsoft-Windows-CAPI2 | ID = 4107
      Description = Error en la extracción de la lista raíz de terceros del archivo .CAB
      actualizado automáticamente: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
      con el error: Un certificado requerido no se encuentra dentro del periodo de validez
      cuando se ha realizado la comprobación con el reloj de sistema actual o con la
      marca de tiempo en el archivo firmado. .

      Error - 15/10/2012 10:29:24 a.m. | Computer Name = Pedro-HP | Source = Microsoft-Windows-CAPI2 | ID = 4107
      Description = Error en la extracción de la lista raíz de terceros del archivo .CAB
      actualizado automáticamente: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
      con el error: Un certificado requerido no se encuentra dentro del periodo de validez
      cuando se ha realizado la comprobación con el reloj de sistema actual o con la
      marca de tiempo en el archivo firmado. .

      Error - 15/10/2012 01:09:42 p.m. | Computer Name = Pedro-HP | Source = WinMgmt | ID = 10
      Description =

      Error - 15/10/2012 09:17:06 p.m. | Computer Name = Pedro-HP | Source = WinMgmt | ID = 10
      Description =

      Error - 16/10/2012 12:13:54 a.m. | Computer Name = Pedro-HP | Source = WinMgmt | ID = 10
      Description =

      Error - 16/10/2012 02:57:41 a.m. | Computer Name = Pedro-HP | Source = WinMgmt | ID = 10
      Description =

      Error - 16/10/2012 09:09:43 a.m. | Computer Name = Pedro-HP | Source = WinMgmt | ID = 10
      Description =

      [ System Events ]
      Error - 19/10/2012 08:23:15 a.m. | Computer Name = Pedro-HP | Source = Service Control Manager | ID = 7000
      Description = El servicio EasyHideIP no pudo iniciarse debido al siguiente error:
      %%2

      Error - 19/10/2012 09:38:35 a.m. | Computer Name = Pedro-HP | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
      Description = Error de instalación: error de Windows al instalar la siguiente actualización,
      error 0x80070643: Definition Update for Windows Defender - KB915597 (Definition
      1.139.124.0).

      Error - 19/10/2012 02:14:49 p.m. | Computer Name = Pedro-HP | Source = Service Control Manager | ID = 7000
      Description = El servicio EasyHideIP no pudo iniciarse debido al siguiente error:
      %%2

      Error - 19/10/2012 02:19:20 p.m. | Computer Name = Pedro-HP | Source = DCOM | ID = 10016
      Description =

      Error - 19/10/2012 04:09:24 p.m. | Computer Name = Pedro-HP | Source = Service Control Manager | ID = 7000
      Description = El servicio EasyHideIP no pudo iniciarse debido al siguiente error:
      %%2

      Error - 19/10/2012 05:16:30 p.m. | Computer Name = Pedro-HP | Source = DCOM | ID = 10005
      Description =

      Error - 19/10/2012 05:16:30 p.m. | Computer Name = Pedro-HP | Source = Service Control Manager | ID = 7009
      Description = Se agotó el tiempo de espera (30000 ms) para la conexión con el servicio
      Google Update Servicio (gupdatem).

      Error - 19/10/2012 05:16:30 p.m. | Computer Name = Pedro-HP | Source = Service Control Manager | ID = 7000
      Description = El servicio Google Update Servicio (gupdatem) no pudo iniciarse debido
      al siguiente error: %%1053

      Error - 19/10/2012 07:24:28 p.m. | Computer Name = Pedro-HP | Source = Service Control Manager | ID = 7000
      Description = El servicio EasyHideIP no pudo iniciarse debido al siguiente error:
      %%2

      Error - 19/10/2012 09:18:58 p.m. | Computer Name = Pedro-HP | Source = Service Control Manager | ID = 7000
      Description = El servicio EasyHideIP no pudo iniciarse debido al siguiente error:
      %%2


      < End of report >

      parece que se fue, espero que no vuelva cuando prenda.
      Última edición por Marquesy fecha: 20/10/12 a las 21:50:48

    9. #9
      Usuario Avatar de Marquesy
      Registrado
      jul 2007
      Ubicación
      Argentina
      Mensajes
      107

      Re: mysearchresults.com pagina inicio

      Se fue la pagina, pero ahora se me pone la pagina de microsoft.

      No se si sera el mismo problema, por que no me deja poner la pagina que quiero de inicio.

    10. #10
      Ex-Colaborador Avatar de Marr0n
      Registrado
      mar 2010
      Ubicación
      Catalunya
      Mensajes
      5.871

      Re: mysearchresults.com pagina inicio

      Te pido paciencia por favor, ya que analizar el log de OTL lleva su tiempo ya que es bastante complejo y a la vez es muy extenso. Contestaré a la mayor brevedad posible.


      MUY IMPORTANTE:


      • NO descargues/instales + programas mientras terminamos la desinfección.
      • NO ejecutes otras herramientas Antivirus/Antimalwares. Aunque puedes activar nuevamente tu Antivirus.
      • NO ejecutes nuevamente OTL hasta que vuelva con una respuesta.






      Saludos.
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.