• Registrarse
  • Iniciar sesión


  • Página 4 de 4 PrimeroPrimero 1234
    Resultados 31 al 38 de 38

    Navegadores que van muy lentos explorer y crome

    Resumen del tema: Navegadores que van muy lentos explorer y crome - Gracias por buestro interes espero noticias Un Saludo Julian...

    1. #31
      Usuario Avatar de Juliandelafuent
      Registrado
      oct 2012
      Ubicación
      Getafe
      Mensajes
      27

      Re: Navegadores que van muy lentos explorer y crome

      Gracias por buestro interes
      espero noticias

      Un Saludo

      Julian

    2. #32
      Moderador Gral.
      Avatar de Javierhf
      Registrado
      jun 2006
      Ubicación
      España - Madrid
      Mensajes
      14.777

      Re: Navegadores que van muy lentos explorer y crome

      Buenas Juliandelafuent, entro en el tema a petición del compañero M4RTYN.

      Lo primero que tienes que hacer, aunque parece que hiciste algo parecido a es esto :

      1. - Vas a Mi PC o Equipo, haces click derecho en la unidad C: y luego en Propiedades.
      2. - En la pestaña Herramientas click en el botón Comprobar Ahora.
      3. - Habilita las 2 casillas disponibles, presiona Iniciar, si el proceso no empieza desde windows, saldrá una ventana de advertencia y pulsamos el botón en el cuadro de dialogo.
      4. - Después Reinicia el equipo. Si el disco no se ha comprobado desde windows, se examinara en el próximo reinicio.
      5. - Cuando tu equipo este Reiniciando NO toques ninguna tecla ni tampoco el ratón.
      Fíjate si el proceso indica que se ha producido alguna corrección/error.

      Para verificar errores, si no lograste verlos haz esto >> Inicio > Ejecutar y escribes "eventvwr.msc" sin las comillas, en el apartado > Aplicación, buscas un evento con el ID. de tipo 1001 y que corresponda con la fecha y hora aproximada en que se realizo/inicio la comprobación, das doble click en esa línea y ahí veras la información de los pasos realizados en la comprobación.

      Saludos, Javier.
      Última edición por Javierhf fecha: 29/11/12 a las 20:27:15
      Quien no lo intenta no lo consigue | ;-)

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    3. #33
      Usuario Avatar de Juliandelafuent
      Registrado
      oct 2012
      Ubicación
      Getafe
      Mensajes
      27

      Re: Navegadores que van muy lentos explorer y crome

      Comprobando el sistema de archivos en C:
      El tipo del sistema de archivos es NTFS.

      Se ha programado una comprobación del disco.
      Windows comprobará ahora el disco.
      Limpiar incoherencias sin importancia en la unidad.
      Liberando 50 entradas de índice no usadas del índice $SII del archivo 0x9.
      Liberando 50 entradas de índice no usadas del índice $SDH del archivo 0x9.
      Liberando 50 descriptores de seguridad no usados.
      CHKDSK está comprobando el diario USN...
      Se ha completado la comprobación del diario USN.
      CHKDSK está comprobando los datos de archivo (etapa 4 de 5)...
      Comprobación de datos de archivo terminada.
      CHKDSK está comprobando el espacio disponible (etapa 5 de 5)...
      La comprobación de espacio libre se ha completado.

      51199123 KB de espacio total en disco.
      41601812 KB en 105740 archivos.
      42632 KB en 17473 índices.
      0 KB en sectores defectuosos.
      459991 KB en uso por el sistema.
      El archivo de registro ha ocupado 65536 kilobytes.
      9094688 KB disponibles en disco.

      4096 bytes en cada unidad de asignación.
      12799780 unidades de asignación en disco en total.
      2273672 unidades de asignación disponibles en disco.

      Información interna:
      d0 1f 02 00 57 e1 01 00 a4 9b 02 00 00 00 00 00 ....W...........
      ac 02 00 00 02 00 00 00 35 0d 00 00 00 00 00 00 ........5.......
      28 79 15 08 00 00 00 00 94 83 e9 53 00 00 00 00 (y.........S....
      0a 72 0e 48 00 00 00 00 26 5f 44 6e 04 00 00 00 .r.H....&_Dn....
      fe 0a 2a a4 00 00 00 00 40 16 4d c5 05 00 00 00 ..*.....@.M.....
      99 9e 36 00 00 00 00 00 c0 38 07 00 0c 9d 01 00 ..6......8......
      00 00 00 00 00 50 2c eb 09 00 00 00 41 44 00 00 .....P,.....AD..

      Windows ha finalizado la comprobación del disco.
      Espere mientras se inicia el sistema.

      Estos son los cinco informes que ha efectuado sobre la hora de inicio scandik.

      pero creo que solo lo que interesa es el ultimo informe

      Saludos, Julian
      Última edición por Javierhf fecha: 30/11/12 a las 12:23:36 Razón: Eliminar informacion innecearia.

    4. #34
      Moderador Gral.
      Avatar de Javierhf
      Registrado
      jun 2006
      Ubicación
      España - Madrid
      Mensajes
      14.777

      Re: Navegadores que van muy lentos explorer y crome

      Bien, ahora dinos en que situación esta tu problema. ???

      Saludos.
      Quien no lo intenta no lo consigue | ;-)

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    5. #35
      Usuario Avatar de Juliandelafuent
      Registrado
      oct 2012
      Ubicación
      Getafe
      Mensajes
      27

      Re: Navegadores que van muy lentos explorer y crome

      De momento parece que funciona mejor, esperemos un tiempo y veremos como va

      dentro de unos días comunicare como funciona

      Saludos y gracias


      Julián

    6. #36
      Moderador Gral.
      Avatar de Javierhf
      Registrado
      jun 2006
      Ubicación
      España - Madrid
      Mensajes
      14.777

      Re: Navegadores que van muy lentos explorer y crome

      Excelente, me alegro que el equipo vaya mejor o eso parezca, pero aunque sea así, realiza los siguientes pasos que te indico, aunque algunos ya los puedas haber realizado(o parecidos a estos) :

      Descarga(de nuevo) y ejecuta >> Ccleaner.

      • Usando primero su opción de "Limpiador" para borrar cookies, temporales de Internet y todos los archivos que te muestre como obsoletos.
      • Después usa su opción de "Registro" para limpiar todo el registro de Windows (haciendo copia de seguridad).


      Descarga, actualiza y ejecuta >> Malwarebytes’ Anti-Malware.

      • En la pestaña Actualizar pulsas sobre el botón "Buscar Actualizaciones"
      • En la pestaña Escáner marcas "Realizar un Examen Completo."
      • Con la opción de "quitar lo seleccionado" lo mandas todo a la cuarentena y reinicias el sistema.
      • En la pestaña "Registros", encontrarás el informe del MBAM, lo copias y pegas en tu próxima respuesta, para analizarlo.


      Descarga(de nuevo) >> AT-Destroyer 2.0 (by InfoSpyware) | InfoSpyware

      • Desactiva temporalmente el Antivirus y/o Antispyware.
      • Cierra TODOS los programas que puedas tener abiertos.
      • Ejecuta AT-Destroyer. (Si usas Windows Vista o 7 presiona clic derecho y selecciona "Ejecutar como Administrador.")
      • En el menú pulsa sobre la opción "Buscar y Destruir".
      • AT-Destroyer desconectará el escritorio momentáneamente.
      • Si detecta infecciones se te indicara y pulsas en Aceptar.
      • Al finalizar el proceso te pedirá Reiniciar, pulsa para Aceptar.
      • Al Iniciar de nuevo Windows se te abrirá un reporte/informe, que deberás copiar en tu próxima respuesta, comentando cómo funciona el sistema.(También puedes encontrarlo en C:\AT-Destroyer.txt)


      Y finalmente descarga >> OTL By OldTimer

      >>> Para Ejecutar OTL sigue estos pasos :

      • Cerrar todos programas que tengas abiertos y hacer doble click en el ícono de OTL para ejecutarlo.
      • Dejarlo correr y esperar a que aparezca el menú de OTL..
      • Cuando salga el menú de OTL, debes cambiar debajo de: "Tipo de Análisis" poniendo Resultado Mínimo.
      • Marcar la casilla Analizar Todos.
      • Marcar las opciones: Buscar LOP y Buscar Purity.
      • Marcar las Opciones: Omitir Archivos De Microsoft y Usar Listado de Compañías Reconocidas.
      • Copiar y Pegar las líneas del siguiente script bajo la casilla Análisis Personalizados/Código de Reparación:

        NOTA: No copiar la palabra Código:
        Código:
        netsvcs
        msconfig
        %SYSTEMDRIVE%\*.*
        CREATERESTOREPOINT


      • Por favor No cambies el resto de la configuración a menos que te lo solicitemos.


      • Presionar el botón .
      • Una vez que termine, se abrirán dos (2) archivos, OTL.Txt y Extras.Txt. Éstos archivos estarán grabados en el mismo lugar donde OTL.exe fue descargado.
      • Copiar y pegar el contenido del archivo OTL.txt en tu próxima respuesta.


      En tu próxima respuesta recuerda:

      - Ponernos los informes de Malwarebytes, AT-Destroyer y OTL.txt.

      - Y nos cuentas como funciona tu equipo, en relación al problema planteado.

      Saludos, Javier.
      Quien no lo intenta no lo consigue | ;-)

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    7. #37
      Usuario Avatar de Juliandelafuent
      Registrado
      oct 2012
      Ubicación
      Getafe
      Mensajes
      27

      Re: Navegadores que van muy lentos explorer y crome

      Buenas noches,
      te envió el resultado después de haber pasado el Cclaner,Malwarebtes,AT-Destroyer y OTL.

      El ordenador sigue sin estar bien continua tardando en abril cuando se enciende, incluso teniendo que reiniciar para poder navegar, como tarda tanto en abrir da error de tiempo.
      Con el navegador Nozila Firefox, va un poco mejor tarda vastante pero no se cuelga.
      Adjunto datos de resgistros

      Malwarebytes Anti-Malware 1.65.1.1000
      Malwarebytes : Free anti-malware download

      Versión de la Base de Datos: v2012.11.18.05

      Windows XP Service Pack 3 x86 NTFS
      Internet Explorer 8.0.6001.18702
      Julian y Rosa Mari :: CASA-1E349D0538 [administrador]

      18/11/2012 21:28:14
      mbam-log-2012-11-19 (00-16-15).txt

      Tipos de Análisis: Análisis Completo (C:\|D:\|)
      Opciones de análisis activado: Memoria | Inicio | Registro | Sistema de archivos | Heurística/Extra | Heurística/Shuriken | PUP | PUM
      Opciones de análisis desactivados: P2P
      Objetos examinados: 399870
      Tiempo transcurrido: 2 hora(s), 45 minuto(s), 55 segundo(s)

      Procesos en Memoria Detectados: 0
      (No se han detectado elementos maliciosos)

      Módulos de Memoria Detectados: 0
      (No se han detectado elementos maliciosos)

      Claves del Registro Detectados: 2
      HKCU\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\215 APPS (PUP.CrossFire.SA) -> No se tomaron medidas.
      HKLM\SOFTWARE\Google\Chrome\Extensions\kincjchfokkeneeofpeefomkikfkiedl (PUP.FCTPlugin) -> No se tomaron medidas.

      Valores del Registro Detectados: 1
      HKCU\Software\InstalledBrowserExtensions\215 Apps|5060 (PUP.CrossFire.SA) -> datos: Savings Sidekick -> No se tomaron medidas.

      Elementos de Datos del Registro Detectados: 0
      (No se han detectado elementos maliciosos)

      Carpetas Detectadas: 1
      C:\Documents and Settings\All Users\Datos de programa\IBUpdaterService (PUP.InstallBrain) -> No se tomaron medidas.

      Archivos Detectados: 9
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1289\A0514607.exe (PUP.BundleInstaller.SOL) -> No se tomaron medidas.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1289\A0514617.exe (PUP.BundleInstaller.SOL) -> No se tomaron medidas.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526427.dll (PUP.FaceThemes) -> No se tomaron medidas.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526429.exe (PUP.BundleInstaller.IB) -> No se tomaron medidas.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526430.exe (PUP.BundleInstaller.IB) -> No se tomaron medidas.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526431.exe (PUP.BundleInstaller.IB) -> No se tomaron medidas.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526432.exe (PUP.BundleInstaller.IB) -> No se tomaron medidas.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526433.exe (PUP.BundleInstaller.IB) -> No se tomaron medidas.
      C:\Documents and Settings\All Users\Datos de programa\IBUpdaterService\repository.xml (PUP.InstallBrain) -> No se tomaron medidas.

      fin)

      Malwarebytes Anti-Malware 1.65.1.1000
      Malwarebytes : Free anti-malware download

      Versión de la Base de Datos: v2012.11.18.05

      Windows XP Service Pack 3 x86 NTFS
      Internet Explorer 8.0.6001.18702
      Julian y Rosa Mari :: CASA-1E349D0538 [administrador]

      18/11/2012 21:28:14
      mbam-log-2012-11-18 (21-28-14).txt

      Tipos de Análisis: Análisis Completo (C:\|D:\|)
      Opciones de análisis activado: Memoria | Inicio | Registro | Sistema de archivos | Heurística/Extra | Heurística/Shuriken | PUP | PUM
      Opciones de análisis desactivados: P2P
      Objetos examinados: 399870
      Tiempo transcurrido: 2 hora(s), 45 minuto(s), 55 segundo(s)

      Procesos en Memoria Detectados: 0
      (No se han detectado elementos maliciosos)

      Módulos de Memoria Detectados: 0
      (No se han detectado elementos maliciosos)

      Claves del Registro Detectados: 2
      HKCU\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\215 APPS (PUP.CrossFire.SA) -> En cuarentena y eliminado con éxito.
      HKLM\SOFTWARE\Google\Chrome\Extensions\kincjchfokkeneeofpeefomkikfkiedl (PUP.FCTPlugin) -> En cuarentena y eliminado con éxito.

      Valores del Registro Detectados: 1
      HKCU\Software\InstalledBrowserExtensions\215 Apps|5060 (PUP.CrossFire.SA) -> datos: Savings Sidekick -> En cuarentena y eliminado con éxito.

      Elementos de Datos del Registro Detectados: 0
      (No se han detectado elementos maliciosos)

      Carpetas Detectadas: 1
      C:\Documents and Settings\All Users\Datos de programa\IBUpdaterService (PUP.InstallBrain) -> En cuarentena y eliminado con éxito.

      Archivos Detectados: 9
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1289\A0514607.exe (PUP.BundleInstaller.SOL) -> En cuarentena y eliminado con éxito.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1289\A0514617.exe (PUP.BundleInstaller.SOL) -> En cuarentena y eliminado con éxito.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526427.dll (PUP.FaceThemes) -> En cuarentena y eliminado con éxito.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526429.exe (PUP.BundleInstaller.IB) -> En cuarentena y eliminado con éxito.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526430.exe (PUP.BundleInstaller.IB) -> En cuarentena y eliminado con éxito.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526431.exe (PUP.BundleInstaller.IB) -> En cuarentena y eliminado con éxito.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526432.exe (PUP.BundleInstaller.IB) -> En cuarentena y eliminado con éxito.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526433.exe (PUP.BundleInstaller.IB) -> En cuarentena y eliminado con éxito.
      C:\Documents and Settings\All Users\Datos de programa\IBUpdaterService\repository.xml (PUP.InstallBrain) -> En cuarentena y eliminado con éxito.

      fin)

      ################################################## A/T-Destroyer by InfoSpyware ############

      A/T-Destroyer 1.0.7 By Infospyware
      InfoSpyware
      Fecha iniciada en el analisis 14/12/2012
      Hora iniciada en el analisis 19:39:37,60
      Usuario Actual : [C:\Documents and Settings\Julian y Rosa Mari]
      Sistema Operativo: Windows XP
      Service pack: 3
      Arquitectura: Sistema operativo de 32 bits
      Versión Internet Explorer: 8.0.6001.18702
      Modo Actual: Modo Normal.
      Privilegios: [Julian y Rosa Mari-Administrador]
      Versión Google Chrome:
      Versión Mozilla Firefox: 17.0.1

      ====== Servicios Eliminados By A/T-Destroyer ======




      ====== Claves Eliminadas By A/T-Destroyer ======


      HKEY_CURRENT_USER\Software\DataMngr
      HKEY_CURRENT_USER\Software\DataMngr\Files
      HKEY_CURRENT_USER\Software\DataMngr\Files\ChromeHomepage
      HKEY_CURRENT_USER\Software\DataMngr\Files\Homepage
      HKEY_CURRENT_USER\Software\DataMngr\Files\SelectedSearch
      HKEY_CURRENT_USER\Software\DataMngr\Files\UrlbarSearch
      HKEY_CURRENT_USER\Software\DataMngr\List
      HKEY_CURRENT_USER\Software\DataMngr\List\Item1
      HKEY_CURRENT_USER\Software\DataMngr\List\Item2
      HKEY_CURRENT_USER\Software\DataMngr\List\Item3
      HKEY_CURRENT_USER\Software\DataMngr\Toolbar
      HKEY_CURRENT_USER\Software\DataMngr
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\List
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\List\Item1
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\List\Item2
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\List\Item3
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr
      HKEY_CURRENT_USER\Software\Conduit
      HKEY_CURRENT_USER\Software\Conduit\ChromeExtData
      HKEY_CURRENT_USER\Software\Conduit\ChromeExtData\GlobalStorage
      HKEY_CURRENT_USER\Software\Conduit\ChromeExtData\GlobalStorage\Repository
      HKEY_CURRENT_USER\Software\Conduit\ChromeExtData\heaflbefplbmlakandmlpkkhciooggdp
      HKEY_CURRENT_USER\Software\Conduit\ChromeExtData\heaflbefplbmlakandmlpkkhciooggdp\Repository
      HKEY_CURRENT_USER\Software\Conduit


      ====== Archivos/Carpetas Eliminados By A/T-Destroyer ======




      ====== Información Extra ======


      -_-_-_-_-_-_-_-_ Configuraciones de internet Explorer -_-_-_-_-_-_-_-_
      "HKCU\Software\Microsoft\Internet Explorer\Main"
      -
      Start Page == Google
      -
      Search Page == Google
      -
      Local Page == C:\WINDOWS\system32\blank.htm
      -
      Default_Search_URL == Upgrade to Google Chrome
      -
      Default_Page_URL == MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft

      "HKLM\Software\Microsoft\Internet Explorer\Main"
      -
      Start Page == Google
      -
      Search Page == Bing
      -
      Local Page == C:\WINDOWS\system32\blank.htm
      -
      Default_Search_URL == Bing
      -
      Default_Page_URL == MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft


      "HKEY_USERS\S-1-5-21-1708537768-682003330-1177238915-1005\Software\Microsoft\Internet Explorer\Main"


      -_-_-_-_-_-_-_-_ Configuraciones de mozilla Firefox -_-_-_-_-_-_-_-_
      user_pref("pref.browser.homepage.disable_button.bookmark_page", false);
      user_pref("pref.browser.homepage.disable_button.current_page", false);
      user_pref("pref.browser.homepage.disable_button.restore_default", false);
      user_pref("browser.startup.homepage", "http://google.com");
      user_pref("browser.startup.homepage", "http://google.com");







      Saludos Julián de la Fuente

    8. #38
      Usuario Avatar de Juliandelafuent
      Registrado
      oct 2012
      Ubicación
      Getafe
      Mensajes
      27

      Re: Navegadores que van muy lentos explorer y crome

      Buenas noches,
      te envió el resultado después de haber pasado el Cclaner,Malwarebtes,AT-Destroyer y OTL.

      El ordenador sigue sin estar bien continua tardando en abril cuando se enciende, incluso teniendo que reiniciar para poder navegar, como tarda tanto en abrir da error de tiempo.
      Con el navegador Nozila Firefox, va un poco mejor tarda vastante pero no se cuelga.
      Adjunto datos de resgistros

      Malwarebytes Anti-Malware 1.65.1.1000
      Malwarebytes : Free anti-malware download

      Versión de la Base de Datos: v2012.11.18.05

      Windows XP Service Pack 3 x86 NTFS
      Internet Explorer 8.0.6001.18702
      Julian y Rosa Mari :: CASA-1E349D0538 [administrador]

      18/11/2012 21:28:14
      mbam-log-2012-11-19 (00-16-15).txt

      Tipos de Análisis: Análisis Completo (C:\|D:\|)
      Opciones de análisis activado: Memoria | Inicio | Registro | Sistema de archivos | Heurística/Extra | Heurística/Shuriken | PUP | PUM
      Opciones de análisis desactivados: P2P
      Objetos examinados: 399870
      Tiempo transcurrido: 2 hora(s), 45 minuto(s), 55 segundo(s)

      Procesos en Memoria Detectados: 0
      (No se han detectado elementos maliciosos)

      Módulos de Memoria Detectados: 0
      (No se han detectado elementos maliciosos)

      Claves del Registro Detectados: 2
      HKCU\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\215 APPS (PUP.CrossFire.SA) -> No se tomaron medidas.
      HKLM\SOFTWARE\Google\Chrome\Extensions\kincjchfokkeneeofpeefomkikfkiedl (PUP.FCTPlugin) -> No se tomaron medidas.

      Valores del Registro Detectados: 1
      HKCU\Software\InstalledBrowserExtensions\215 Apps|5060 (PUP.CrossFire.SA) -> datos: Savings Sidekick -> No se tomaron medidas.

      Elementos de Datos del Registro Detectados: 0
      (No se han detectado elementos maliciosos)

      Carpetas Detectadas: 1
      C:\Documents and Settings\All Users\Datos de programa\IBUpdaterService (PUP.InstallBrain) -> No se tomaron medidas.

      Archivos Detectados: 9
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1289\A0514607.exe (PUP.BundleInstaller.SOL) -> No se tomaron medidas.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1289\A0514617.exe (PUP.BundleInstaller.SOL) -> No se tomaron medidas.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526427.dll (PUP.FaceThemes) -> No se tomaron medidas.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526429.exe (PUP.BundleInstaller.IB) -> No se tomaron medidas.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526430.exe (PUP.BundleInstaller.IB) -> No se tomaron medidas.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526431.exe (PUP.BundleInstaller.IB) -> No se tomaron medidas.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526432.exe (PUP.BundleInstaller.IB) -> No se tomaron medidas.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526433.exe (PUP.BundleInstaller.IB) -> No se tomaron medidas.
      C:\Documents and Settings\All Users\Datos de programa\IBUpdaterService\repository.xml (PUP.InstallBrain) -> No se tomaron medidas.

      fin)

      Malwarebytes Anti-Malware 1.65.1.1000
      Malwarebytes : Free anti-malware download

      Versión de la Base de Datos: v2012.11.18.05

      Windows XP Service Pack 3 x86 NTFS
      Internet Explorer 8.0.6001.18702
      Julian y Rosa Mari :: CASA-1E349D0538 [administrador]

      18/11/2012 21:28:14
      mbam-log-2012-11-18 (21-28-14).txt

      Tipos de Análisis: Análisis Completo (C:\|D:\|)
      Opciones de análisis activado: Memoria | Inicio | Registro | Sistema de archivos | Heurística/Extra | Heurística/Shuriken | PUP | PUM
      Opciones de análisis desactivados: P2P
      Objetos examinados: 399870
      Tiempo transcurrido: 2 hora(s), 45 minuto(s), 55 segundo(s)

      Procesos en Memoria Detectados: 0
      (No se han detectado elementos maliciosos)

      Módulos de Memoria Detectados: 0
      (No se han detectado elementos maliciosos)

      Claves del Registro Detectados: 2
      HKCU\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\215 APPS (PUP.CrossFire.SA) -> En cuarentena y eliminado con éxito.
      HKLM\SOFTWARE\Google\Chrome\Extensions\kincjchfokkeneeofpeefomkikfkiedl (PUP.FCTPlugin) -> En cuarentena y eliminado con éxito.

      Valores del Registro Detectados: 1
      HKCU\Software\InstalledBrowserExtensions\215 Apps|5060 (PUP.CrossFire.SA) -> datos: Savings Sidekick -> En cuarentena y eliminado con éxito.

      Elementos de Datos del Registro Detectados: 0
      (No se han detectado elementos maliciosos)

      Carpetas Detectadas: 1
      C:\Documents and Settings\All Users\Datos de programa\IBUpdaterService (PUP.InstallBrain) -> En cuarentena y eliminado con éxito.

      Archivos Detectados: 9
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1289\A0514607.exe (PUP.BundleInstaller.SOL) -> En cuarentena y eliminado con éxito.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1289\A0514617.exe (PUP.BundleInstaller.SOL) -> En cuarentena y eliminado con éxito.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526427.dll (PUP.FaceThemes) -> En cuarentena y eliminado con éxito.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526429.exe (PUP.BundleInstaller.IB) -> En cuarentena y eliminado con éxito.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526430.exe (PUP.BundleInstaller.IB) -> En cuarentena y eliminado con éxito.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526431.exe (PUP.BundleInstaller.IB) -> En cuarentena y eliminado con éxito.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526432.exe (PUP.BundleInstaller.IB) -> En cuarentena y eliminado con éxito.
      C:\System Volume Information\_restore{172E4786-5EDF-4C7B-8DA4-B7B44A5C2065}\RP1305\A0526433.exe (PUP.BundleInstaller.IB) -> En cuarentena y eliminado con éxito.
      C:\Documents and Settings\All Users\Datos de programa\IBUpdaterService\repository.xml (PUP.InstallBrain) -> En cuarentena y eliminado con éxito.

      fin)

      ################################################## A/T-Destroyer by InfoSpyware ############

      A/T-Destroyer 1.0.7 By Infospyware
      InfoSpyware
      Fecha iniciada en el analisis 14/12/2012
      Hora iniciada en el analisis 19:39:37,60
      Usuario Actual : [C:\Documents and Settings\Julian y Rosa Mari]
      Sistema Operativo: Windows XP
      Service pack: 3
      Arquitectura: Sistema operativo de 32 bits
      Versión Internet Explorer: 8.0.6001.18702
      Modo Actual: Modo Normal.
      Privilegios: [Julian y Rosa Mari-Administrador]
      Versión Google Chrome:
      Versión Mozilla Firefox: 17.0.1

      ====== Servicios Eliminados By A/T-Destroyer ======




      ====== Claves Eliminadas By A/T-Destroyer ======


      HKEY_CURRENT_USER\Software\DataMngr
      HKEY_CURRENT_USER\Software\DataMngr\Files
      HKEY_CURRENT_USER\Software\DataMngr\Files\ChromeHomepage
      HKEY_CURRENT_USER\Software\DataMngr\Files\Homepage
      HKEY_CURRENT_USER\Software\DataMngr\Files\SelectedSearch
      HKEY_CURRENT_USER\Software\DataMngr\Files\UrlbarSearch
      HKEY_CURRENT_USER\Software\DataMngr\List
      HKEY_CURRENT_USER\Software\DataMngr\List\Item1
      HKEY_CURRENT_USER\Software\DataMngr\List\Item2
      HKEY_CURRENT_USER\Software\DataMngr\List\Item3
      HKEY_CURRENT_USER\Software\DataMngr\Toolbar
      HKEY_CURRENT_USER\Software\DataMngr
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\List
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\List\Item1
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\List\Item2
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr\List\Item3
      HKEY_LOCAL_MACHINE\SOFTWARE\DataMngr
      HKEY_CURRENT_USER\Software\Conduit
      HKEY_CURRENT_USER\Software\Conduit\ChromeExtData
      HKEY_CURRENT_USER\Software\Conduit\ChromeExtData\GlobalStorage
      HKEY_CURRENT_USER\Software\Conduit\ChromeExtData\GlobalStorage\Repository
      HKEY_CURRENT_USER\Software\Conduit\ChromeExtData\heaflbefplbmlakandmlpkkhciooggdp
      HKEY_CURRENT_USER\Software\Conduit\ChromeExtData\heaflbefplbmlakandmlpkkhciooggdp\Repository
      HKEY_CURRENT_USER\Software\Conduit


      ====== Archivos/Carpetas Eliminados By A/T-Destroyer ======




      ====== Información Extra ======


      -_-_-_-_-_-_-_-_ Configuraciones de internet Explorer -_-_-_-_-_-_-_-_
      "HKCU\Software\Microsoft\Internet Explorer\Main"
      -
      Start Page == Google
      -
      Search Page == Google
      -
      Local Page == C:\WINDOWS\system32\blank.htm
      -
      Default_Search_URL == Upgrade to Google Chrome
      -
      Default_Page_URL == MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft

      "HKLM\Software\Microsoft\Internet Explorer\Main"
      -
      Start Page == Google
      -
      Search Page == Bing
      -
      Local Page == C:\WINDOWS\system32\blank.htm
      -
      Default_Search_URL == Bing
      -
      Default_Page_URL == MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft


      "HKEY_USERS\S-1-5-21-1708537768-682003330-1177238915-1005\Software\Microsoft\Internet Explorer\Main"


      -_-_-_-_-_-_-_-_ Configuraciones de mozilla Firefox -_-_-_-_-_-_-_-_
      user_pref("pref.browser.homepage.disable_button.bookmark_page", false);
      user_pref("pref.browser.homepage.disable_button.current_page", false);
      user_pref("pref.browser.homepage.disable_button.restore_default", false);
      user_pref("browser.startup.homepage", "http://google.com");
      user_pref("browser.startup.homepage", "http://google.com");







      Saludos Julián de la Fuente

    9. #39
      Usuario Avatar de Juliandelafuent
      Registrado
      oct 2012
      Ubicación
      Getafe
      Mensajes
      27

      Re: Navegadores que van muy lentos explorer y crome

      te envió el resultado del OTL.

      ======= EOF =======

      OTL logfile created on: 14/12/2012 20:17:20 - Run 1
      OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Julian y Rosa Mari\Mis documentos\Downloads
      Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
      Internet Explorer (Version = 8.0.6001.18702)
      Locale: 00000C0A | Country: España | Language: ESN | Date Format: dd/MM/yyyy

      1023,53 Mb Total Physical Memory | 145,91 Mb Available Physical Memory | 14,26% Memory free
      2,40 Gb Paging File | 1,59 Gb Available in Paging File | 65,98% Paging File free
      Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Archivos de programa
      Drive C: | 48,83 Gb Total Space | 7,64 Gb Free Space | 15,65% Space Free | Partition Type: NTFS
      Drive D: | 100,22 Gb Total Space | 76,14 Gb Free Space | 75,98% Space Free | Partition Type: NTFS

      Computer Name: CASA-1E349D0538 | User Name: Julian y Rosa Mari | Logged in as Administrator.
      Boot Mode: Normal | Scan Mode: All users
      Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: Off | File Age = 30 Days

      ========== Processes (SafeList) ==========

      PRC - C:\Documents and Settings\Julian y Rosa Mari\Mis documentos\Downloads\OTL.exe (OldTimer Tools)
      PRC - C:\Archivos de programa\Google\Chrome\Application\chrome.exe (Google Inc.)
      PRC - C:\Documents and Settings\All Users\Datos de programa\Browser Manager\2.4.897.175\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\browsermngr.exe ()
      PRC - C:\Archivos de programa\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
      PRC - C:\Archivos de programa\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
      PRC - C:\Archivos de programa\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
      PRC - C:\Documents and Settings\All Users\Datos de programa\Skype\Toolbars\Skype C2C Service\c2c_service.exe (Skype Technologies S.A.)
      PRC - C:\Archivos de programa\Microsoft\BingBar\SeaPort.EXE (Microsoft Corporation)
      PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
      PRC - C:\Archivos de programa\Analog Devices\SoundMAX\SMAgent.exe (Analog Devices, Inc.)
      PRC - C:\Archivos de programa\NavNT\vptray.exe (Symantec Corporation)
      PRC - C:\Archivos de programa\NavNT\defwatch.exe (Symantec Corporation)
      PRC - C:\Archivos de programa\NavNT\rtvscan.exe (Symantec Corporation)
      PRC - C:\Archivos de programa\Archivos comunes\Microsoft Shared\VS7DEBUG\mdm.exe (Microsoft Corporation)
      PRC - C:\WINDOWS\system32\MSGSYS.EXE (Intel Corporation)


      ========== Modules (No Company Name) ==========

      MOD - C:\Documents and Settings\All Users\Datos de programa\Browser Manager\2.4.897.175\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\browsermngr.exe ()
      MOD - c:\Documents and Settings\All Users\Datos de programa\Browser Manager\2.4.897.175\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\browsermngr.dll ()
      MOD - C:\Archivos de programa\Archivos comunes\Adobe\Acrobat\ActiveX\PDFShell.ESP ()
      MOD - C:\Archivos de programa\Archivos comunes\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF ()
      MOD - C:\WINDOWS\system32\msdmo.dll ()
      MOD - C:\WINDOWS\system32\HPBHEALR.DLL ()
      MOD - C:\WINDOWS\system32\NavLogon.dll ()


      ========== Services (SafeList) ==========

      SRV - (Browser Manager) -- C:\Documents and Settings\All Users\Datos de programa\Browser Manager\2.4.897.175\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\browsermngr.exe ()
      SRV - (MBAMService) -- C:\Archivos de programa\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
      SRV - (MBAMScheduler) -- C:\Archivos de programa\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
      SRV - (Microsoft SharePoint Workspace Audit Service) -- C:\Archivos de programa\Microsoft Office\Office14\GROOVE.EXE (Microsoft Corporation)
      SRV - (Skype C2C Service) -- C:\Documents and Settings\All Users\Datos de programa\Skype\Toolbars\Skype C2C Service\c2c_service.exe (Skype Technologies S.A.)
      SRV - (BBUpdate) -- C:\Archivos de programa\Microsoft\BingBar\SeaPort.EXE (Microsoft Corporation)
      SRV - (osppsvc) -- C:\Archivos de programa\Archivos comunes\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation)
      SRV - (ose) -- C:\Archivos de programa\Archivos comunes\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)
      SRV - (SoundMAX Agent Service (default) -- C:\Archivos de programa\Analog Devices\SoundMAX\SMAgent.exe (Analog Devices, Inc.)
      SRV - (DefWatch) -- C:\Archivos de programa\NavNT\defwatch.exe (Symantec Corporation)
      SRV - (Norton AntiVirus Server) -- C:\Archivos de programa\NavNT\rtvscan.exe (Symantec Corporation)
      SRV - (MDM) -- C:\Archivos de programa\Archivos comunes\Microsoft Shared\VS7DEBUG\mdm.exe (Microsoft Corporation)


      ========== Driver Services (SafeList) ==========

      DRV - (WDICA) -- File not found
      DRV - (USBAAPL) -- System32\Drivers\usbaapl.sys File not found
      DRV - (PDRFRAME) -- File not found
      DRV - (PDRELI) -- File not found
      DRV - (PDFRAME) -- File not found
      DRV - (PDCOMP) -- File not found
      DRV - (PCIDump) -- File not found
      DRV - (lbrtfdc) -- File not found
      DRV - (i2omgmt) -- File not found
      DRV - (Changer) -- File not found
      DRV - (MBAMProtector) -- C:\WINDOWS\system32\drivers\mbam.sys (Malwarebytes Corporation)
      DRV - (sptd) -- C:\WINDOWS\system32\drivers\sptd.sys ()
      DRV - (gameenum) -- C:\WINDOWS\system32\drivers\gameenum.sys (Microsoft Corporation)
      DRV - (SISNIC) -- C:\WINDOWS\system32\drivers\sisnic.sys (SiS Corporation)
      DRV - (s716unic) -- C:\WINDOWS\system32\drivers\s716unic.sys (MCCI Corporation)
      DRV - (s716obex) -- C:\WINDOWS\system32\drivers\s716obex.sys (MCCI Corporation)
      DRV - (s716nd5) -- C:\WINDOWS\system32\drivers\s716nd5.sys (MCCI Corporation)
      DRV - (s716mdm) -- C:\WINDOWS\system32\drivers\s716mdm.sys (MCCI Corporation)
      DRV - (s716mgmt) -- C:\WINDOWS\system32\drivers\s716mgmt.sys (MCCI Corporation)
      DRV - (s716mdfl) -- C:\WINDOWS\system32\drivers\s716mdfl.sys (MCCI Corporation)
      DRV - (s716bus) -- C:\WINDOWS\system32\drivers\s716bus.sys (MCCI Corporation)
      DRV - (StarOpen) -- C:\WINDOWS\System32\drivers\StarOpen.sys ()
      DRV - (USBCCID) -- C:\WINDOWS\system32\drivers\usbccid.sys (Microsoft Corporation)
      DRV - (SymEvent) -- C:\Archivos de programa\Symantec\SYMEVENT.SYS (Symantec Corporation)
      DRV - (NAVAP) -- C:\Archivos de programa\NavNT\navap.sys ()
      DRV - (NAVAPEL) -- C:\Archivos de programa\NavNT\Navapel.sys ()
      DRV - (QCEmerald) -- C:\WINDOWS\system32\drivers\OVCE.sys (Microsoft Corporation)
      DRV - (lusbaudio) -- C:\WINDOWS\system32\drivers\OVSound2.sys (Microsoft Corporation)


      ========== Standard Registry (SafeList) ==========


      ========== Internet Explorer ==========

      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = Bing [binary data]
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = Bing [binary data]
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google
      IE - HKLM\..\SearchScopes,DefaultScope = {305868C2-8639-440D-A83B-1471396C4DB1}
      IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
      IE - HKLM\..\SearchScopes\{305868C2-8639-440D-A83B-1471396C4DB1}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7


      IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft
      IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = Bing [binary data]
      IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://g.msn.com/1me10IE8ENUS/701
      IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
      IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = Bing [binary data]
      IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft
      IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {46860713-E347-413D-A27E-E9BBBB319860}
      IE - HKU\.DEFAULT\..\SearchScopes\{46860713-E347-413D-A27E-E9BBBB319860}: "URL" = http://www.bing.com/search?q={searchTerms}&form=MS8TDF&pc=MS8TDF&src=IE-SearchBox
      IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft
      IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = Bing [binary data]
      IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://g.msn.com/1me10IE8ENUS/701
      IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
      IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = Bing [binary data]
      IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft
      IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {46860713-E347-413D-A27E-E9BBBB319860}
      IE - HKU\S-1-5-18\..\SearchScopes\{46860713-E347-413D-A27E-E9BBBB319860}: "URL" = http://www.bing.com/search?q={searchTerms}&form=MS8TDF&pc=MS8TDF&src=IE-SearchBox
      IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Main,bProtector Start Page = about:blank
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = Upgrade to Google Chrome
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = Bing [binary data]
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Upgrade to Google Chrome
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = Google
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = es
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = Upgrade to Google Chrome
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = Upgrade to Google Chrome
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\URLSearchHook: {EEE6C35D-6118-11DC-9C72-001320C79847} - No CLSID value found
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\SearchScopes,bProtectorDefaultScope = {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\SearchScopes,DefaultScope = {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?FORM=IEFM1&q={searchTerms}&src={referrer:source?}
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://www.claro-search.com/?q={searchTerms}&affID=114508&tt=4212_6&babsrc=SP_clro&mntrId=9428dd32000000000000000c6e245362
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\SearchScopes\{305868C2-8639-440D-A83B-1471396C4DB1}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7ADRA_es
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={sear
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\SearchScopes\{E9E90B53-4838-4693-8336-9EC489A97292}: "URL" = http://www.bing.com/search?q={searchTerms}&form=MS8TDF&pc=MS8TDF&src=IE-SearchBox
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local;<local>

      ========== FireFox ==========

      FF - prefs.js..browser.search.defaultenginename: "Claro Search"
      FF - prefs.js..browser.search.order.1: "Claro Search"
      FF - prefs.js..browser.search.selectedEngine: "Claro Search"
      FF - prefs.js..browser.startup.homepage: "http://google.com"
      FF - prefs.js..extensions.enabledAddons: %7B20a82645-c095-46ed-80e3-08825760534b%7D:0.0.0
      FF - prefs.js..extensions.enabledAddons: %7B97E22097-9A2F-45b1-8DAF-36AD648C7EF4%7D:15.0.4
      FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:17.0.1
      FF - prefs.js..keyword.URL: "http://www.claro-search.com/?affID=114508&tt=4212_8&babsrc=KW_clro&mntrId=9428dd32000000000000000c6e245362&q="
      FF - user.js - File not found

      FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_5_502_110.dll ()
      FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
      FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Archivos de programa\iTunes\Mozilla Plugins\npitunes.dll ()
      FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Archivos de programa\Google\Picasa3\npPicasa3.dll (Google, Inc.)
      FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.9.2: C:\Archivos de programa\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Archivos de programa\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: C:\Archivos de programa\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Archivos de programa\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\ARCHIV~1\MI1933~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.3: C:\Archivos de programa\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\ARCHIV~1\MI1933~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416: C:\Archivos de programa\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=15.0.4.53: c:\archivos de programa\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
      FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=15.0.4.53: c:\archivos de programa\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
      FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=15.0.4.53: C:\Documents and Settings\All Users\Datos de programa\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
      FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=15.0.4.53: C:\Documents and Settings\All Users\Datos de programa\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
      FF - HKLM\Software\MozillaPlugins\@real.com/nprpplugin;version=15.0.4.53: c:\archivos de programa\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Archivos de programa\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Archivos de programa\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.4: C:\Archivos de programa\VideoLAN\VLC\npvlc.dll (VideoLAN)
      FF - HKLM\Software\MozillaPlugins\@zylom.com/ZylomGamesPlayer: C:\Documents and Settings\All Users\Datos de programa\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll (Zylom)
      FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Archivos de programa\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
      FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
      FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)

      FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{97E22097-9A2F-45b1-8DAF-36AD648C7EF4}: C:\Documents and Settings\All Users\Datos de programa\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2012/06/01 18:52:55 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Components: C:\Archivos de programa\Mozilla Firefox\components [2012/12/10 22:07:13 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Plugins: C:\Archivos de programa\Mozilla Firefox\plugins
      FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\[email protected]: C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Mozilla\Firefox\Profiles/nbkof0pn.default\extensions\[email protected]
      FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{dfefbe51-ca52-484b-adf0-6b158b05262d}: C:\Documents and Settings\All Users\Datos de programa\Browser Manager\2.4.897.175\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\FirefoxExtension [2012/11/03 19:03:38 | 000,000,000 | ---D | M]

      [2012/10/22 21:50:16 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Mozilla\Extensions
      [2012/12/06 01:23:09 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Mozilla\Firefox\Profiles\0bzblq03.default\Extensions
      [2012/11/03 14:18:46 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Mozilla\Firefox\Profiles\nbkof0pn.default\extensions
      [2012/12/14 20:04:08 | 000,000,000 | ---D | M] (No name found) -- C:\Archivos de programa\Mozilla Firefox\extensions
      [2012/12/14 20:04:09 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Archivos de programa\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
      [2012/06/01 18:52:55 | 000,000,000 | ---D | M] (RealPlayer Browser Record Plugin) -- C:\DOCUMENTS AND SETTINGS\ALL USERS\DATOS DE PROGRAMA\REAL\REALPLAYER\BROWSERRECORDPLUGIN\FIREFOX\EXT
      [2009/09/16 21:38:01 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION
      [2012/12/10 22:07:12 | 000,262,112 | ---- | M] (Mozilla Foundation) -- C:\Archivos de programa\mozilla firefox\components\browsercomps.dll
      [2012/11/20 09:46:46 | 000,002,465 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\bing.xml
      [2012/11/20 09:46:46 | 000,004,095 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\drae.xml
      [2012/11/20 09:46:46 | 000,001,356 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\eBay-es.xml
      [2012/11/20 09:46:46 | 000,002,058 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\twitter.xml
      [2012/11/20 09:46:46 | 000,001,391 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\wikipedia-es.xml
      [2012/11/20 09:46:46 | 000,001,315 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\yahoo-es.xml

      ========== Chrome ==========

      CHR - homepage: Google
      CHR - default_search_provider: Google (Enabled)
      CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
      CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}&sugkey={google:suggestAPIKeyParameter}
      CHR - homepage: Google
      CHR - plugin: Shockwave Flash (Enabled) = C:\Archivos de programa\Google\Chrome\Application\23.0.1271.97\PepperFlash\pepflashplayer.dll
      CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
      CHR - plugin: Native Client (Enabled) = C:\Archivos de programa\Google\Chrome\Application\23.0.1271.97\ppGoogleNaClPluginChrome.dll
      CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Archivos de programa\Google\Chrome\Application\23.0.1271.97\pdf.dll
      CHR - plugin: Application Manager (Enabled) = C:\Documents and Settings\Julian y Rosa Mari\Configuraci\u00F3n local\Datos de programa\Google\Chrome\User Data\Default\Extensions\pgafcinpmmpklohkojmllohdhomoefph\1.0_0\spext.dll
      CHR - plugin: Conduit Chrome Plugin (Enabled) = C:\Documents and Settings\Julian y Rosa Mari\Configuraci\u00F3n local\Datos de programa\Google\Chrome\User Data\Default\Extensions\heaflbefplbmlakandmlpkkhciooggdp\10.13.1.89_0\plugins/ConduitChromeApiPlugin.dll
      CHR - plugin: Conduit Radio Plugin (Enabled) = C:\Documents and Settings\Julian y Rosa Mari\Configuraci\u00F3n local\Datos de programa\Google\Chrome\User Data\Default\Extensions\heaflbefplbmlakandmlpkkhciooggdp\10.13.1.89_0\plugins/np-cwmp.dll
      CHR - plugin: Adobe Acrobat (Enabled) = C:\Archivos de programa\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
      CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Archivos de programa\QuickTime\plugins\npqtplugin.dll
      CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Archivos de programa\QuickTime\plugins\npqtplugin2.dll
      CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Archivos de programa\QuickTime\plugins\npqtplugin3.dll
      CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Archivos de programa\QuickTime\plugins\npqtplugin4.dll
      CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Archivos de programa\QuickTime\plugins\npqtplugin5.dll
      CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Archivos de programa\QuickTime\plugins\npqtplugin6.dll
      CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Archivos de programa\QuickTime\plugins\npqtplugin7.dll
      CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Archivos de programa\Windows Media Player\npdrmv2.dll
      CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Archivos de programa\Windows Media Player\npdsplay.dll
      CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Archivos de programa\Windows Media Player\npwmsdrm.dll
      CHR - plugin: O3D Plugin (Enabled) = C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Mozilla\plugins\npo3dautoplugin.dll
      CHR - plugin: Microsoft Office 2010 (Enabled) = C:\ARCHIV~1\MI1933~1\Office14\NPAUTHZ.DLL
      CHR - plugin: Microsoft Office 2010 (Enabled) = C:\ARCHIV~1\MI1933~1\Office14\NPSPWRAP.DLL
      CHR - plugin: Picasa (Enabled) = C:\Archivos de programa\Google\Picasa3\npPicasa3.dll
      CHR - plugin: Google Update (Enabled) = C:\Archivos de programa\Google\Update\1.3.21.123\npGoogleUpdate3.dll
      CHR - plugin: Java Deployment Toolkit 7.0.90.5 (Enabled) = C:\Archivos de programa\Java\jre7\bin\dtplugin\npDeployJava1.dll
      CHR - plugin: Java(TM) Platform SE 7 U9 (Enabled) = C:\Archivos de programa\Java\jre7\bin\plugin2\npjp2.dll
      CHR - plugin: Silverlight Plug-In (Enabled) = C:\Archivos de programa\Microsoft Silverlight\5.1.10411.0\npctrl.dll
      CHR - plugin: Microsoft Office Live Plug-in for Firefox (Enabled) = C:\Archivos de programa\Microsoft\Office Live\npOLW.dll
      CHR - plugin: VLC Web Plugin (Enabled) = C:\Archivos de programa\VideoLAN\VLC\npvlc.dll
      CHR - plugin: Windows Live\u00AE Photo Gallery (Enabled) = C:\Archivos de programa\Windows Live\Photo Gallery\NPWLPG.dll
      CHR - plugin: iTunes Application Detector (Enabled) = C:\Archivos de programa\iTunes\Mozilla Plugins\npitunes.dll
      CHR - plugin: RealNetworks(tm) Chrome Background Extension Plug-In (32-bit) (Enabled) = C:\Documents and Settings\All Users\Datos de programa\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll
      CHR - plugin: RealPlayer(tm) HTML5VideoShim Plug-In (32-bit) (Enabled) = C:\Documents and Settings\All Users\Datos de programa\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
      CHR - plugin: Zylom Plugin (Enabled) = C:\Documents and Settings\All Users\Datos de programa\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll
      CHR - plugin: Windows Presentation Foundation (Enabled) = C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
      CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_5_502_110.dll
      CHR - plugin: RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) (Enabled) = c:\archivos de programa\real\realplayer\Netscape6\nppl3260.dll
      CHR - plugin: RealJukebox NS Plugin (Enabled) = c:\archivos de programa\real\realplayer\Netscape6\nprjplug.dll
      CHR - plugin: RealPlayer Download Plugin (Enabled) = c:\archivos de programa\real\realplayer\Netscape6\nprpplugin.dll
      CHR - Extension: WiseConvert 1.2 = C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\Google\Chrome\User Data\Default\Extensions\heaflbefplbmlakandmlpkkhciooggdp\10.13.1.89_0\
      CHR - Extension: RealPlayer HTML5Video Downloader Extension = C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk\1.5_0\
      CHR - Extension: Settings Protector = C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\Google\Chrome\User Data\Default\Extensions\pgafcinpmmpklohkojmllohdhomoefph\1.0_0\

      O1 HOSTS File: ([2008/04/14 13:00:00 | 000,000,792 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
      O1 - Hosts: 127.0.0.1 localhost
      O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Archivos de programa\Archivos comunes\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
      O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Datos de programa\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
      O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
      O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Archivos de programa\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
      O2 - BHO: (no name) - {73873F23-2AA2-4E18-9363-FCF60D4E14C4}9363-FCF60D4E14C4} - No CLSID value found.
      O2 - BHO: (SpecialSavings) - {74F475FA-6C75-43BD-AAB9-ECDA6184F600} - C:\Archivos de programa\SpecialSavings\SpecialSavingsSinged.dll (SpecialSavings)
      O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Archivos de programa\Java\jre7\bin\ssv.dll (Oracle Corporation)
      O2 - BHO: (Windows Live Aplicación auxiliar de inicio de sesión) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
      O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Archivos de programa\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
      O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Archivos de programa\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
      O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Archivos de programa\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
      O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Archivos de programa\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
      O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Archivos de programa\DAEMON Tools Toolbar\DTToolbar.dll ()
      O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Archivos de programa\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
      O3 - HKLM\..\Toolbar: (no name) - {D0F4A166-B8D4-48b8-9D63-80849FE137CB} - No CLSID value found.
      O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
      O3 - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
      O3 - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
      O3 - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Archivos de programa\DAEMON Tools Toolbar\DTToolbar.dll ()
      O4 - HKLM..\Run: [BCSSync] C:\Archivos de programa\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation)
      O4 - HKLM..\Run: [vptray] C:\Archivos de programa\NavNT\vptray.exe (Symantec Corporation)
      O4 - Startup: C:\Documents and Settings\Cesar\Menú Inicio\Programas\Inicio\OpenOffice.org 3.1.lnk = C:\Archivos de programa\OpenOffice.org 3\program\quickstart.exe ()
      O4 - Startup: C:\Documents and Settings\Cesar\Menú Inicio\Programas\Inicio\OpenOffice.org 3.3.lnk = C:\Archivos de programa\OpenOffice.org 3\program\quickstart.exe ()
      O4 - Startup: C:\Documents and Settings\Cesar\Menú Inicio\Programas\Inicio\OpenOffice.org 3.4.1.lnk = C:\Archivos de programa\OpenOffice.org 3\program\quickstart.exe ()
      O4 - Startup: C:\Documents and Settings\Cesar\Menú Inicio\Programas\Inicio\OpenOffice.org 3.4.lnk = C:\Archivos de programa\OpenOffice.org 3\program\quickstart.exe ()
      O4 - Startup: C:\Documents and Settings\Fernando\Menú Inicio\Programas\Inicio\OpenOffice.org 3.1.lnk = C:\Archivos de programa\OpenOffice.org 3\program\quickstart.exe ()
      O4 - Startup: C:\Documents and Settings\Fernando\Menú Inicio\Programas\Inicio\OpenOffice.org 3.3.lnk = C:\Archivos de programa\OpenOffice.org 3\program\quickstart.exe ()
      O4 - Startup: C:\Documents and Settings\Fernando\Menú Inicio\Programas\Inicio\OpenOffice.org 3.4.lnk = C:\Archivos de programa\OpenOffice.org 3\program\quickstart.exe ()
      O4 - Startup: C:\Documents and Settings\Julian y Rosa Mari\Menú Inicio\Programas\Inicio\Tabla de contenido de OneNote.onetoc2 ()
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 3
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0
      O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
      O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
      O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
      O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
      O7 - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0
      O7 - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 3
      O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.)
      O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\ARCHIV~1\MI1933~1\Office10\EXCEL.EXE/3000 File not found
      O9 - Extra Button: Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Archivos de programa\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
      O9 - Extra 'Tools' menuitem : &Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Archivos de programa\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
      O9 - Extra Button: Notas &vinculadas de OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Archivos de programa\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
      O9 - Extra 'Tools' menuitem : Notas &vinculadas de OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Archivos de programa\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
      O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Archivos de programa\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
      O9 - Extra Button: SpecialSavings - {A69A551A-1AAE-4B67-8C2E-52F8B8A19504} - C:\Archivos de programa\SpecialSavings\SpecialSavingsSinged.dll (SpecialSavings)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Archivos de programa\Bonjour\mdnsNSP.dll (Apple Inc.)
      O15 - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..Trusted Domains: aeat.es ([]http in Sitios de confianza)
      O15 - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..Trusted Domains: gob.es ([agenciatributaria] https in Sitios de confianza)
      O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} http://upload.facebook.com/controls/...oUploader5.cab (Facebook Photo Uploader 5 Control)
      O16 - DPF: {2DAB6EF1-66C3-427C-87CD-8DC448C47EAE} https://www5.aeat.es/es13/h/tgvicab.cab (CtlTGVI Class)
      O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} http://gfx2.hotmail.com/mail/w3/resources/MSNPUpld.cab (MSN Photo Upload Tool)
      O16 - DPF: {5BDBA960-6534-11D3-97C7-00500422B550} https://acceso.pullmantur.es/downloa...dolcontrol.cab (LotusDRSControl Class)
      O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/micr...?1351953278484 (MUWebControl Class)
      O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebook.com/controls/...Uploader55.cab (Facebook Photo Uploader 5 Control)
      O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jin...ndows-i586.cab (Java Plug-in 1.7.0_09)
      O16 - DPF: {947B00D2-962D-4A35-9E48-98EE6A442B41} https://www1.agenciatributaria.gob.e...t/aded1503.cab (OAdedinet Class)
      O16 - DPF: {A996E48C-D3DC-4244-89F7-AFA33EC60679} https://www.cert.fnmt.es/content/pag...os/capicom.cab (Settings Class)
      O16 - DPF: {B178DBD1-25DF-4187-9BE0-05D123B91B98} https://gestiona.madrid.org/asf_firm...WebSigner2.cab (WSCryptoSystem Class)
      O16 - DPF: {B785FA3C-1DE9-4D20-8396-613C486FE95E} https://www1.agenciatributaria.gob.e...h/cactivex.cab (AeatCtl Class)
      O16 - DPF: {CAFEEFAC-0017-0000-0009-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jin...ndows-i586.cab (Java Plug-in 1.7.0_09)
      O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jin...ndows-i586.cab (Reg Error: Key error.)
      O16 - DPF: {CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} http://fpdownload2.macromedia.com/ge...sh/swflash.cab (RealPlayer G2 Control)
      O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/ge...sh/swflash.cab (Shockwave Flash Object)
      O16 - DPF: {E008A543-CEFB-4559-912F-C27C2B89F13B} https://acceso.pullmantur.es/,DanaIn....com+dwa7W.cab (Domino Web Access 7 Control)
      O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
      O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} http://gfx2.hotmail.com/mail/w4/pr01...l/MSNPUpld.cab (Windows Live Hotmail Photo Upload Tool)
      O16 - DPF: CabBuilder http://kiw.imgag.com/imgag/kiw/toolb...lerControl.cab (Reg Error: Key error.)
      O16 - DPF: Garmin Communicator Plug-In https://static.garmincdn.com/gcp/ie/...nAxControl.CAB (Reg Error: Key error.)
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D8CBD602-6A37-4440-A0BE-7B1ACFAD00E8}: DhcpNameServer = 192.168.2.1
      O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Archivos de programa\Archivos comunes\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
      O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Archivos de programa\Archivos comunes\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
      O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Archivos de programa\Archivos comunes\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
      O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
      O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Archivos de programa\Archivos comunes\Skype\Skype4COM.dll (Skype Technologies)
      O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Archivos de programa\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
      O18 - Protocol\Filter\text/xml {807573E5-5146-11D5-A672-00B0D022E945} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\OFFICE14\MSOXMLMF.DLL (Microsoft Corporation)
      O20 - AppInit_DLLs: (c:\docume~1\alluse~1\datosd~1\browse~1\24897~1.175\{61d8b~1\browse~1.dll) - c:\Documents and Settings\All Users\Datos de programa\Browser Manager\2.4.897.175\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\browsermngr.dll ()
      O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
      O20 - Winlogon\Notify\NavLogon: DllName - (C:\WINDOWS\system32\NavLogon.dll) - C:\WINDOWS\system32\NavLogon.dll ()
      O24 - Desktop Components:0 (Mi página de inicio actual) - About:Home
      O24 - Desktop WallPaper: C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\Microsoft\Wallpaper1.bmp
      O24 - Desktop BackupWallPaper: C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\Microsoft\Wallpaper1.bmp
      O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Archivos de programa\Windows Desktop Search\MsnlNamespaceMgr.dll (Microsoft Corporation)
      O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Archivos de programa\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
      O32 - HKLM CDRom: AutoRun - 1
      O32 - AutoRun File - [2009/02/06 18:28:03 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
      O32 - AutoRun File - [2012/11/20 01:37:53 | 000,000,000 | RHSD | M] - C:\Autorun.inf -- [ NTFS ]
      O33 - MountPoints2\{1bea5be5-cf78-11de-bbc7-000c6e245362}\Shell\AutoRun\command - "" = G:\9b9w3.exe
      O33 - MountPoints2\{1bea5be5-cf78-11de-bbc7-000c6e245362}\Shell\open\Command - "" = G:\9b9w3.exe
      O33 - MountPoints2\{cfc924fc-b762-11de-bb71-000c6e245362}\Shell\AutoRun\command - "" = G:\setupSNK.exe
      O33 - MountPoints2\{fa253fc6-2aa7-11de-b967-000c6e245362}\Shell\AutoRun\command - "" = G:\2vk6wn.exe
      O33 - MountPoints2\{fa253fc6-2aa7-11de-b967-000c6e245362}\Shell\explore\Command - "" = G:\2vk6wn.exe
      O33 - MountPoints2\{fa253fc6-2aa7-11de-b967-000c6e245362}\Shell\open\Command - "" = G:\2vk6wn.exe
      O34 - HKLM BootExecute: (autocheck autochk *)
      O35 - HKLM\..comfile [open] -- "%1" %*
      O35 - HKLM\..exefile [open] -- "%1" %*
      O37 - HKLM\...com [@ = comfile] -- "%1" %*
      O37 - HKLM\...exe [@ = exefile] -- "%1" %*
      O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
      O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

      NetSvcs: 6to4 - File not found
      NetSvcs: Ias - File not found
      NetSvcs: Iprip - File not found
      NetSvcs: NWCWorkstation - File not found
      NetSvcs: Nwsapagent - File not found
      NetSvcs: WmdmPmSp - File not found

      MsConfig - Services: "Application Updater"
      MsConfig - StartUpFolder: C:^Documents and Settings^Julian y Rosa Mari^Menú Inicio^Programas^Inicio^Tabla de contenido de OneNote.onetoc2 - C:\Documents and Settings\Julian y Rosa Mari\Menú Inicio\Programas\Inicio\Tabla de contenido de OneNote.onetoc2 - ()
      MsConfig - StartUpReg: Adobe ARM - hkey= - key= - C:\Archivos de programa\Archivos comunes\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
      MsConfig - StartUpReg: Adobe Reader Speed Launcher - hkey= - key= - Reg Error: Value error. File not found
      MsConfig - StartUpReg: BluetoothAuthenticationAgent - hkey= - key= - File not found
      MsConfig - StartUpReg: ContactKeeper Birthday reminder - hkey= - key= - File not found
      MsConfig - StartUpReg: ctfmon.exe - hkey= - key= - File not found
      MsConfig - StartUpReg: DisplayTrayIcon - hkey= - key= - File not found
      MsConfig - StartUpReg: Google Update - hkey= - key= - C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\Google\Update\GoogleUpdate.exe (Google Inc.)
      MsConfig - StartUpReg: GrooveMonitor - hkey= - key= - Reg Error: Value error. File not found
      MsConfig - StartUpReg: H/PC Connection Agent - hkey= - key= - Reg Error: Value error. File not found
      MsConfig - StartUpReg: NeroFilterCheck - hkey= - key= - C:\Archivos de programa\Archivos comunes\Ahead\Lib\NeroCheck.exe (Nero AG)
      MsConfig - StartUpReg: nwiz - hkey= - key= - File not found
      MsConfig - StartUpReg: QuickTime Task - hkey= - key= - C:\Archivos de programa\QuickTime\qttask.exe (Apple Inc.)
      MsConfig - StartUpReg: SearchSettings - hkey= - key= - Reg Error: Value error. File not found
      MsConfig - StartUpReg: StatusClient - hkey= - key= - C:\Archivos de programa\Hewlett-Packard\Toolbox2.0\Apache Tomcat 4.0\webapps\Toolbox\StatusClient\StatusClient.exe (Hewlett-Packard)
      MsConfig - StartUpReg: TomcatStartup - hkey= - key= - C:\Archivos de programa\Hewlett-Packard\Toolbox2.0\hpbpsttp.exe (Hewlett-Packard)
      MsConfig - StartUpReg: vptray - hkey= - key= - C:\Archivos de programa\NavNT\vptray.exe (Symantec Corporation)
      MsConfig - StartUpReg: winlogon - hkey= - key= - Reg Error: Value error. File not found
      MsConfig - State: "system.ini" - 0
      MsConfig - State: "win.ini" - 0
      MsConfig - State: "bootini" - 0
      MsConfig - State: "services" - 2
      MsConfig - State: "startup" - 2

      CREATERESTOREPOINT
      Restore point Set: OTL Restore Point

      ========== Files/Folders - Created Within 30 Days ==========

      [2012/12/14 19:22:39 | 000,000,000 | ---D | C] -- C:\_AT-Destroyer
      [2012/12/14 16:06:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Malwarebytes' Anti-Malware
      [2012/12/14 16:06:35 | 000,022,856 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
      [2012/12/14 16:06:35 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Malwarebytes' Anti-Malware
      [2012/12/14 15:28:30 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Julian y Rosa Mari\Recent
      [2012/12/13 23:56:23 | 000,000,000 | ---D | C] -- C:\Archivos de programa\MSBuild
      [2012/12/11 19:16:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\FOTOS DEPERFECTOS CASA FER Y ALI
      [2012/12/10 23:55:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Google Chrome
      [2012/12/06 16:05:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\MIGAS
      [2012/12/06 12:16:07 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Windows Live
      [2012/12/06 01:24:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Skype
      [2012/12/06 01:24:03 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Archivos comunes\Skype
      [2012/12/06 01:23:08 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Mozilla Maintenance Service
      [2012/12/06 01:22:20 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Defraggler
      [2012/12/05 15:58:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\encuentros
      [2012/11/27 13:27:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menú Inicio\Programas\CCleaner
      [2012/11/25 11:41:18 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Mozilla Firefox
      [2012/11/24 14:41:00 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData
      [2012/11/20 20:46:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\GlarySoft
      [2012/11/20 01:37:53 | 000,000,000 | RHSD | C] -- C:\Autorun.inf
      [2012/11/19 00:42:04 | 000,036,864 | ---- | C] (NirSoft) -- C:\WINDOWS\nircmd.exe
      [2012/11/17 19:21:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\scaner del ordenador
      [2012/11/15 20:51:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\OBRAS DE TEATRO
      [2012/05/05 17:02:35 | 010,640,384 | ---- | C] (AEAT) -- C:\Documents and Settings\Julian y Rosa Mari\Actualizacion_Renta2011_windows_1_20.exe
      [2010/05/07 19:13:03 | 023,457,280 | ---- | C] (AEAT) -- C:\Documents and Settings\Julian y Rosa Mari\renta2009_windows_1_22.exe
      [2002/03/11 10:06:30 | 001,822,520 | ---- | C] (Microsoft Corporation) -- C:\Archivos de programa\instmsiw.exe
      [2002/03/11 09:45:04 | 001,708,856 | ---- | C] (Microsoft Corporation) -- C:\Archivos de programa\instmsia.exe
      [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

      ========== Files - Modified Within 30 Days ==========

      [2012/12/14 20:35:00 | 000,000,294 | ---- | M] () -- C:\WINDOWS\tasks\Browser Manager.job
      [2012/12/14 20:31:00 | 000,000,514 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{425DC01C-F6F5-4B00-97C7-06C69162B3CC}.job
      [2012/12/14 20:16:25 | 016,515,072 | ---- | M] () -- C:\Documents and Settings\Julian y Rosa Mari\ntuser.dat
      [2012/12/14 20:12:01 | 000,000,838 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
      [2012/12/14 20:11:19 | 000,001,122 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
      [2012/12/14 20:11:18 | 000,000,318 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-1708537768-682003330-1177238915-1005.job
      [2012/12/14 20:11:18 | 000,000,298 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-1708537768-682003330-1177238915-1004.job
      [2012/12/14 20:11:18 | 000,000,292 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-1708537768-682003330-1177238915-1003.job
      [2012/12/14 20:11:18 | 000,000,236 | ---- | M] () -- C:\WINDOWS\tasks\OGALogon.job
      [2012/12/14 20:11:14 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
      [2012/12/14 20:11:11 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
      [2012/12/14 20:11:09 | 1073,319,936 | -HS- | M] () -- C:\hiberfil.sys
      [2012/12/14 19:59:47 | 000,000,304 | -HS- | M] () -- C:\Documents and Settings\Julian y Rosa Mari\ntuser.ini
      [2012/12/14 19:59:00 | 000,001,126 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
      [2012/12/14 19:50:00 | 000,001,244 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1708537768-682003330-1177238915-1005UA.job
      [2012/12/14 19:11:00 | 000,001,204 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1708537768-682003330-1177238915-1004UA.job
      [2012/12/14 16:06:37 | 000,000,833 | ---- | M] () -- C:\Documents and Settings\All Users\Escritorio\Malwarebytes Anti-Malware.lnk
      [2012/12/14 14:11:00 | 000,001,152 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1708537768-682003330-1177238915-1004Core.job
      [2012/12/14 01:37:58 | 000,000,673 | ---- | M] () -- C:\WINDOWS\win.ini
      [2012/12/14 00:59:32 | 000,434,168 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
      [2012/12/13 22:40:16 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
      [2012/12/13 22:40:14 | 000,116,736 | ---- | M] () -- C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
      [2012/12/13 16:36:46 | 000,000,598 | ---- | M] () -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\Acceso directo a CONTROL KM COCHE.lnk
      [2012/12/13 16:16:58 | 000,000,994 | ---- | M] () -- C:\WINDOWS\ODBC.INI
      [2012/12/13 11:36:48 | 000,149,865 | ---- | M] () -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\CV 2012.V2 - Fernando de la Fuente.pdf
      [2012/12/12 12:50:00 | 000,001,192 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1708537768-682003330-1177238915-1005Core.job
      [2012/12/10 23:55:39 | 000,001,874 | ---- | M] () -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\Google Chrome.lnk
      [2012/12/10 21:43:58 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
      [2012/12/10 17:42:00 | 000,000,306 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-1708537768-682003330-1177238915-1004.job
      [2012/12/08 11:51:00 | 000,000,326 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-1708537768-682003330-1177238915-1005.job
      [2012/12/05 17:00:00 | 000,000,300 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-1708537768-682003330-1177238915-1003.job
      [2012/12/04 18:43:00 | 000,000,322 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
      [2012/11/26 13:27:07 | 000,000,907 | ---- | M] () -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\ContactKeeper.lnk
      [2012/11/25 17:35:06 | 000,000,197 | ---- | M] () -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\hotmail.com.url
      [2012/11/25 15:45:22 | 000,000,731 | ---- | M] () -- C:\Documents and Settings\All Users\Escritorio\CCleaner.lnk
      [2012/11/25 13:54:14 | 000,000,425 | ---- | M] () -- C:\WINDOWS\{DF1F5DA3-9011-41B8-984B-99BCBED8FDFF}_WiseFW.ini
      [2012/11/25 11:41:23 | 000,000,773 | ---- | M] () -- C:\Documents and Settings\All Users\Escritorio\Mozilla Firefox.lnk
      [2012/11/21 13:27:19 | 000,024,576 | ---- | M] () -- C:\Documents and Settings\Julian y Rosa Mari\Mis documentos\CTA HERMANOS RUIZ.mmb
      [2012/11/20 21:05:36 | 015,663,104 | ---- | M] () -- C:\Documents and Settings\Julian y Rosa Mari\ntuser.dat.gbck
      [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

      ========== Files Created - No Company Name ==========

      [2012/12/14 19:37:26 | 1073,319,936 | -HS- | C] () -- C:\hiberfil.sys
      [2012/12/14 16:06:37 | 000,000,833 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\Malwarebytes Anti-Malware.lnk
      [2012/12/14 14:45:28 | 000,000,294 | ---- | C] () -- C:\WINDOWS\tasks\Browser Manager.job
      [2012/12/13 16:36:52 | 000,000,598 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\Acceso directo a CONTROL KM COCHE.lnk
      [2012/12/13 11:36:47 | 000,149,865 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\CV 2012.V2 - Fernando de la Fuente.pdf
      [2012/12/10 23:55:39 | 000,001,874 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\Google Chrome.lnk
      [2012/12/10 23:54:23 | 000,001,126 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
      [2012/12/10 23:54:23 | 000,001,122 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
      [2012/12/06 12:54:57 | 016,515,072 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\ntuser.dat
      [2012/11/25 11:41:23 | 000,000,779 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Mozilla Firefox.lnk
      [2012/11/25 11:41:23 | 000,000,773 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\Mozilla Firefox.lnk
      [2012/11/25 11:22:32 | 000,000,197 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\hotmail.com.url
      [2012/11/25 10:32:12 | 000,000,425 | ---- | C] () -- C:\WINDOWS\{DF1F5DA3-9011-41B8-984B-99BCBED8FDFF}_WiseFW.ini
      [2012/11/19 00:42:04 | 000,069,660 | ---- | C] () -- C:\WINDOWS\Fart.exe
      [2012/11/19 00:42:04 | 000,022,528 | ---- | C] () -- C:\WINDOWS\AT-Uninstall.exe
      [2012/11/19 00:42:04 | 000,011,776 | ---- | C] () -- C:\WINDOWS\Colous.exe
      [2012/10/29 13:28:57 | 015,663,104 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\ntuser.dat.gbck
      [2012/08/17 12:42:02 | 000,000,078 | ---- | C] () -- C:\WINDOWS\gcc.INI
      [2012/07/21 14:39:55 | 001,941,296 | ---- | C] () -- C:\Documents and Settings\LocalService\Configuración local\Datos de programa\FontCache3.0.0.0.dat
      [2012/07/21 12:27:32 | 000,000,288 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\.backup.dm
      [2012/07/12 00:44:29 | 004,326,012 | -H-- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\IconCache.db
      [2012/04/10 10:05:25 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\adedinet.dll
      [2012/02/15 13:55:16 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
      [2011/09/01 12:06:26 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
      [2011/04/12 11:19:40 | 000,000,097 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\default.pls
      [2011/01/19 22:35:40 | 002,998,272 | ---- | C] () -- C:\Archivos de programa\openofficeorg33.msi
      [2011/01/19 22:34:20 | 000,475,016 | ---- | C] () -- C:\Archivos de programa\setup.exe
      [2011/01/19 22:32:58 | 127,999,348 | ---- | C] () -- C:\Archivos de programa\openofficeorg1.cab
      [2011/01/19 21:49:38 | 000,000,290 | ---- | C] () -- C:\Archivos de programa\setup.ini
      [2009/12/31 19:47:55 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Datos de programa\LauncherAccess.dt
      [2009/12/14 20:33:27 | 000,260,508 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\uanbb_nav.dat
      [2009/12/14 20:33:27 | 000,003,168 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\uanbb.dat
      [2009/12/14 20:33:27 | 000,002,617 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\uanbb_navps.dat
      [2009/09/03 15:22:16 | 000,367,963 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\ekqfgvd_nav.dat
      [2009/09/03 15:22:16 | 000,003,879 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\ekqfgvd.dat
      [2009/09/03 15:22:16 | 000,002,099 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\ekqfgvd_navps.dat
      [2009/04/13 18:29:30 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\$_hpcst$.hpc
      [2009/02/07 14:15:30 | 000,116,736 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
      [2009/02/06 18:37:04 | 000,094,904 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\GDIPFONTCACHEV1.DAT
      [2009/02/06 18:35:52 | 000,000,304 | -HS- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\ntuser.ini
      [2008/09/30 19:24:02 | 009,775,104 | ---- | C] () -- C:\Archivos de programa\openofficeorg30.msi

      ========== ZeroAccess Check ==========

      [2009/02/25 16:59:41 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini

      [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

      [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
      "" = %SystemRoot%\system32\shdocvw.dll -- [2009/07/18 17:03:54 | 001,510,400 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
      "" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009/02/09 11:52:53 | 000,473,600 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
      "" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008/04/14 13:00:00 | 000,273,920 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Both

      ========== LOP Check ==========

      [2009/10/14 11:40:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\4D
      [2009/03/12 14:57:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\Awem
      [2012/10/21 12:02:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\Babylon
      [2009/03/24 22:59:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\Bluetooth(2)
      [2012/05/29 12:04:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\boost_interprocess
      [2012/11/03 19:24:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\Browser Manager
      [2012/07/21 12:25:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\ClubSanDisk
      [2010/09/26 20:38:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\DAEMON Tools Lite
      [2011/02/07 03:38:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\GameHouse
      [2011/05/13 20:12:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\Particles
      [2012/10/21 14:22:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\PC Performer Manager
      [2011/04/15 16:36:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\PlayFirst
      [2011/02/07 01:05:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\Playrix Entertainment
      [2009/03/08 22:33:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\SpinTop Games
      [2012/11/03 14:30:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\SweetIM
      [2012/11/09 16:42:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\Tarma Installer
      [2012/12/08 01:07:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\TEMP
      [2009/03/08 22:25:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\Zylom
      [2011/07/31 21:01:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\{3C0AACBF-B491-4BE5-BAF9-AA46E0629E42}
      [2012/04/25 22:11:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
      [2011/06/12 14:02:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\{AB2D8F2E-F7AD-4446-A11A-50D846B2CF2A}
      [2011/05/03 14:37:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\OfferBox
      [2009/12/25 17:21:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\OpenOffice.org
      [2009/09/22 16:15:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\pdfforge
      [2011/03/15 19:52:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\Search Settings
      [2012/12/06 01:21:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\searchquband
      [2010/08/27 13:29:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\searchqutb
      [2012/12/06 01:21:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\searchqutoolbar
      [2009/04/13 17:52:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\Teleca
      [2012/12/06 01:21:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\Toolbar4
      [2010/06/07 16:29:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\Windows Desktop Search
      [2010/06/07 16:30:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\Windows Search
      [2010/01/13 20:59:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\Bandoo
      [2010/09/26 21:20:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\DAEMON Tools Lite
      [2011/06/27 22:52:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\EPSON
      [2010/12/05 00:27:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\FissaSearch
      [2011/03/14 20:54:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\GetRightToGo
      [2009/03/11 21:18:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\live-player
      [2010/10/05 18:39:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\LucasArts
      [2010/07/08 20:09:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\My Games
      [2011/07/09 19:32:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\OfferBox
      [2009/08/31 18:25:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\OpenOffice.org
      [2009/09/11 18:01:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\PC Suite
      [2009/09/22 18:23:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\pdfforge
      [2012/10/15 16:43:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\PriceGong
      [2011/02/24 18:14:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\Search Settings
      [2011/11/02 12:08:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\searchquband
      [2010/07/05 17:58:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\searchqutb
      [2011/11/02 12:09:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\searchqutoolbar
      [2009/05/06 10:21:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\Smart Panel
      [2009/03/26 22:03:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\Teleca
      [2012/04/17 14:05:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\Toolbar4
      [2012/02/22 13:18:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\Windows Desktop Search
      [2010/04/05 08:28:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\Windows Search
      [2012/02/20 20:40:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\AtlanticJourney
      [2012/10/29 22:33:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\BabylonToolbar
      [2012/10/29 13:02:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Claro LTD
      [2011/07/30 15:15:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Disk Cleaner
      [2010/01/15 10:38:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\EPSON
      [2012/04/22 15:39:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Funlinker
      [2011/05/13 17:20:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Funswitch
      [2011/02/07 03:38:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\GameHouse
      [2011/03/09 15:33:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\GARMIN
      [2012/12/06 01:16:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\GlarySoft
      [2009/09/08 11:47:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Leadertech
      [2011/07/14 14:33:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\LibreOffice
      [2012/11/24 13:31:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\MoneyManagerEx
      [2009/09/17 15:17:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\MSD_Soft
      [2009/03/05 21:38:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\MSNInstaller
      [2011/08/02 13:18:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\My Games
      [2009/09/08 10:33:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Nokia
      [2012/07/27 18:12:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\OfiProClientData
      [2009/02/06 20:01:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\OpenOffice.org
      [2012/08/02 09:00:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Oracle
      [2009/09/08 10:18:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\PC Suite
      [2010/01/24 15:04:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\pdfforge
      [2012/10/21 12:08:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\PerformerSoft
      [2011/04/15 16:36:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\PlayFirst
      [2010/01/01 20:30:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Samsung
      [2012/07/21 12:33:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\SanDisk SecureAccess
      [2012/05/29 12:04:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\searchqutoolbar(2)
      [2011/12/27 14:44:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Smart Panel
      [2009/09/16 21:59:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Teleca
      [2012/02/22 22:01:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\VS Revo Group
      [2012/09/05 09:16:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\VSRevoGroup
      [2012/02/19 21:12:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Windows Desktop Search
      [2010/07/26 12:58:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Windows Live Writer
      [2010/04/02 11:23:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Windows Search
      [2011/02/23 21:05:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Zylom
      [2011/05/31 12:41:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\TEMP\Datos de programa\OfferBox
      [2011/05/31 13:37:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\TEMP\Datos de programa\pdfforge

      ========== Purity Check ==========



      ========== Custom Scans ==========

      < %SYSTEMDRIVE%\*.* >
      [2003/08/29 10:19:19 | 000,004,824 | ---- | M] () -- C:\0x040a.ini
      [2003/08/29 10:19:20 | 000,089,088 | ---- | M] () -- C:\1034.mst
      [2003/08/29 10:19:21 | 000,750,805 | ---- | M] () -- C:\all98.cab
      [2012/12/14 19:43:13 | 000,003,455 | ---- | M] () -- C:\AT-Destroyer.txt
      [2009/02/06 18:28:03 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
      [2010/06/22 18:03:50 | 000,031,487 | ---- | M] () -- C:\BIBLIO.RAR
      [2011/11/01 12:51:50 | 000,000,211 | ---- | M] () -- C:\boot.ini
      [2008/04/14 13:00:00 | 000,004,952 | ---- | M] () -- C:\Bootfont.bin
      [2009/02/06 18:28:03 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
      [2003/08/29 10:23:21 | 000,151,276 | ---- | M] () -- C:\cu_readme.rtf
      [2003/08/29 10:19:22 | 008,873,215 | ---- | M] () -- C:\drv9x.cab
      [2003/08/29 10:19:24 | 003,198,026 | ---- | M] () -- C:\fonts.cab
      [2012/12/14 20:11:09 | 1073,319,936 | -HS- | M] () -- C:\hiberfil.sys
      [2003/08/29 10:19:25 | 010,915,512 | ---- | M] () -- C:\hp LaserJet 1010 Series.msi
      [2003/08/29 10:19:28 | 001,150,976 | ---- | M] (Hewlet-Packard) -- C:\hpbtpg.exe
      [2009/03/11 23:14:14 | 000,000,050 | ---- | M] () -- C:\install.bat
      [2003/08/29 10:19:29 | 001,708,856 | ---- | M] (Microsoft Corporation) -- C:\instmsia.exe
      [2003/08/29 10:19:30 | 001,822,520 | ---- | M] (Microsoft Corporation) -- C:\instmsiw.exe
      [2009/02/06 18:28:03 | 000,000,000 | ---- | M] () -- C:\IO.SYS
      [2012/11/22 16:44:36 | 000,032,087 | ---- | M] () -- C:\JavaRa.log
      [2012/07/27 16:53:27 | 000,000,569 | ---- | M] () -- C:\MGDInfo.txt
      [2009/02/06 18:28:03 | 000,000,000 | ---- | M] () -- C:\MSDOS.SYS
      [2012/12/14 19:42:44 | 000,000,572 | ---- | M] () -- C:\Navegadores.txt
      [2008/04/14 13:00:00 | 000,047,564 | ---- | M] () -- C:\NTDETECT.COM
      [2008/04/14 13:00:00 | 000,251,168 | ---- | M] () -- C:\ntldr
      [2004/02/29 16:44:34 | 000,052,576 | ---- | M] () -- C:\orange.bmp
      [2012/12/14 20:11:08 | 1610,612,736 | -HS- | M] () -- C:\pagefile.sys
      [2009/03/11 16:44:36 | 000,013,030 | ---- | M] () -- C:\PDOXUSRS.NET
      [2011/04/15 16:57:27 | 000,074,163 | ---- | M] () -- C:\playground.log
      [2012/12/14 19:39:37 | 000,000,000 | ---- | M] () -- C:\prueba.txt
      [2003/08/29 10:19:31 | 000,018,865 | ---- | M] () -- C:\readme2.txt
      [2009/03/19 10:33:14 | 000,000,062 | ---- | M] () -- C:\RECYCLERLS-1-5-21-1482476501-1644491937-682003330-1013LDesktop.ini
      [2009/03/11 23:12:59 | 000,000,390 | ---- | M] () -- C:\response.ini
      [2012/11/13 01:01:12 | 000,002,575 | ---- | M] () -- C:\scu.dat
      [2003/08/29 10:19:31 | 000,009,040 | ---- | M] () -- C:\SETCON~1.cab
      [2003/08/29 10:19:28 | 001,043,550 | ---- | M] () -- C:\setup.exe
      [2009/03/11 23:14:14 | 000,001,390 | ---- | M] () -- C:\Setup.ini
      [2009/09/21 17:21:28 | 000,000,232 | ---- | M] () -- C:\sqmdata00.sqm
      [2009/09/22 17:56:22 | 000,000,268 | ---- | M] () -- C:\sqmdata01.sqm
      [2009/09/29 19:04:07 | 000,000,268 | ---- | M] () -- C:\sqmdata02.sqm
      [2009/10/14 17:54:35 | 000,000,268 | ---- | M] () -- C:\sqmdata03.sqm
      [2009/10/14 18:06:56 | 000,000,280 | ---- | M] () -- C:\sqmdata04.sqm
      [2009/09/21 17:21:28 | 000,000,244 | ---- | M] () -- C:\sqmnoopt00.sqm
      [2009/09/22 17:56:22 | 000,000,244 | ---- | M] () -- C:\sqmnoopt01.sqm
      [2009/09/29 19:04:07 | 000,000,244 | ---- | M] () -- C:\sqmnoopt02.sqm
      [2009/10/14 17:54:35 | 000,000,244 | ---- | M] () -- C:\sqmnoopt03.sqm
      [2009/10/14 18:06:56 | 000,000,244 | ---- | M] () -- C:\sqmnoopt04.sqm
      [2003/08/29 10:19:31 | 021,863,770 | ---- | M] () -- C:\TOOLBO~1.cab
      [2011/02/23 20:53:54 | 022,443,683 | ---- | M] () -- C:\TOOLBO~1.zip
      [2009/03/11 23:14:14 | 000,000,039 | ---- | M] () -- C:\uninstall.bat
      [2011/11/13 21:27:27 | 000,000,066 | ---- | M] () -- C:\zzz.txt
      [2009/02/06 18:51:20 | 000,002,798 | ---- | M] () -- C:\_NavCClt.Log

      ========== Alternate Data Streams ==========

      @Alternate Data Stream - 160 bytes -> C:\Documents and Settings\All Users\Datos de programa\TEMP:02C1CB6D
      @Alternate Data Stream - 116 bytes -> C:\Documents and Settings\All Users\Datos de programa\TEMP:D1B5B4F1

      < End of report >

    10. #40
      Usuario Avatar de Juliandelafuent
      Registrado
      oct 2012
      Ubicación
      Getafe
      Mensajes
      27

      Re: Navegadores que van muy lentos explorer y crome

      te envió el resultado del OTL.

      ======= EOF =======

      OTL logfile created on: 14/12/2012 20:17:20 - Run 1
      OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Julian y Rosa Mari\Mis documentos\Downloads
      Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
      Internet Explorer (Version = 8.0.6001.18702)
      Locale: 00000C0A | Country: España | Language: ESN | Date Format: dd/MM/yyyy

      1023,53 Mb Total Physical Memory | 145,91 Mb Available Physical Memory | 14,26% Memory free
      2,40 Gb Paging File | 1,59 Gb Available in Paging File | 65,98% Paging File free
      Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Archivos de programa
      Drive C: | 48,83 Gb Total Space | 7,64 Gb Free Space | 15,65% Space Free | Partition Type: NTFS
      Drive D: | 100,22 Gb Total Space | 76,14 Gb Free Space | 75,98% Space Free | Partition Type: NTFS

      Computer Name: CASA-1E349D0538 | User Name: Julian y Rosa Mari | Logged in as Administrator.
      Boot Mode: Normal | Scan Mode: All users
      Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: Off | File Age = 30 Days

      ========== Processes (SafeList) ==========

      PRC - C:\Documents and Settings\Julian y Rosa Mari\Mis documentos\Downloads\OTL.exe (OldTimer Tools)
      PRC - C:\Archivos de programa\Google\Chrome\Application\chrome.exe (Google Inc.)
      PRC - C:\Documents and Settings\All Users\Datos de programa\Browser Manager\2.4.897.175\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\browsermngr.exe ()
      PRC - C:\Archivos de programa\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
      PRC - C:\Archivos de programa\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
      PRC - C:\Archivos de programa\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
      PRC - C:\Documents and Settings\All Users\Datos de programa\Skype\Toolbars\Skype C2C Service\c2c_service.exe (Skype Technologies S.A.)
      PRC - C:\Archivos de programa\Microsoft\BingBar\SeaPort.EXE (Microsoft Corporation)
      PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
      PRC - C:\Archivos de programa\Analog Devices\SoundMAX\SMAgent.exe (Analog Devices, Inc.)
      PRC - C:\Archivos de programa\NavNT\vptray.exe (Symantec Corporation)
      PRC - C:\Archivos de programa\NavNT\defwatch.exe (Symantec Corporation)
      PRC - C:\Archivos de programa\NavNT\rtvscan.exe (Symantec Corporation)
      PRC - C:\Archivos de programa\Archivos comunes\Microsoft Shared\VS7DEBUG\mdm.exe (Microsoft Corporation)
      PRC - C:\WINDOWS\system32\MSGSYS.EXE (Intel Corporation)


      ========== Modules (No Company Name) ==========

      MOD - C:\Documents and Settings\All Users\Datos de programa\Browser Manager\2.4.897.175\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\browsermngr.exe ()
      MOD - c:\Documents and Settings\All Users\Datos de programa\Browser Manager\2.4.897.175\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\browsermngr.dll ()
      MOD - C:\Archivos de programa\Archivos comunes\Adobe\Acrobat\ActiveX\PDFShell.ESP ()
      MOD - C:\Archivos de programa\Archivos comunes\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF ()
      MOD - C:\WINDOWS\system32\msdmo.dll ()
      MOD - C:\WINDOWS\system32\HPBHEALR.DLL ()
      MOD - C:\WINDOWS\system32\NavLogon.dll ()


      ========== Services (SafeList) ==========

      SRV - (Browser Manager) -- C:\Documents and Settings\All Users\Datos de programa\Browser Manager\2.4.897.175\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\browsermngr.exe ()
      SRV - (MBAMService) -- C:\Archivos de programa\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
      SRV - (MBAMScheduler) -- C:\Archivos de programa\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
      SRV - (Microsoft SharePoint Workspace Audit Service) -- C:\Archivos de programa\Microsoft Office\Office14\GROOVE.EXE (Microsoft Corporation)
      SRV - (Skype C2C Service) -- C:\Documents and Settings\All Users\Datos de programa\Skype\Toolbars\Skype C2C Service\c2c_service.exe (Skype Technologies S.A.)
      SRV - (BBUpdate) -- C:\Archivos de programa\Microsoft\BingBar\SeaPort.EXE (Microsoft Corporation)
      SRV - (osppsvc) -- C:\Archivos de programa\Archivos comunes\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation)
      SRV - (ose) -- C:\Archivos de programa\Archivos comunes\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)
      SRV - (SoundMAX Agent Service (default) -- C:\Archivos de programa\Analog Devices\SoundMAX\SMAgent.exe (Analog Devices, Inc.)
      SRV - (DefWatch) -- C:\Archivos de programa\NavNT\defwatch.exe (Symantec Corporation)
      SRV - (Norton AntiVirus Server) -- C:\Archivos de programa\NavNT\rtvscan.exe (Symantec Corporation)
      SRV - (MDM) -- C:\Archivos de programa\Archivos comunes\Microsoft Shared\VS7DEBUG\mdm.exe (Microsoft Corporation)


      ========== Driver Services (SafeList) ==========

      DRV - (WDICA) -- File not found
      DRV - (USBAAPL) -- System32\Drivers\usbaapl.sys File not found
      DRV - (PDRFRAME) -- File not found
      DRV - (PDRELI) -- File not found
      DRV - (PDFRAME) -- File not found
      DRV - (PDCOMP) -- File not found
      DRV - (PCIDump) -- File not found
      DRV - (lbrtfdc) -- File not found
      DRV - (i2omgmt) -- File not found
      DRV - (Changer) -- File not found
      DRV - (MBAMProtector) -- C:\WINDOWS\system32\drivers\mbam.sys (Malwarebytes Corporation)
      DRV - (sptd) -- C:\WINDOWS\system32\drivers\sptd.sys ()
      DRV - (gameenum) -- C:\WINDOWS\system32\drivers\gameenum.sys (Microsoft Corporation)
      DRV - (SISNIC) -- C:\WINDOWS\system32\drivers\sisnic.sys (SiS Corporation)
      DRV - (s716unic) -- C:\WINDOWS\system32\drivers\s716unic.sys (MCCI Corporation)
      DRV - (s716obex) -- C:\WINDOWS\system32\drivers\s716obex.sys (MCCI Corporation)
      DRV - (s716nd5) -- C:\WINDOWS\system32\drivers\s716nd5.sys (MCCI Corporation)
      DRV - (s716mdm) -- C:\WINDOWS\system32\drivers\s716mdm.sys (MCCI Corporation)
      DRV - (s716mgmt) -- C:\WINDOWS\system32\drivers\s716mgmt.sys (MCCI Corporation)
      DRV - (s716mdfl) -- C:\WINDOWS\system32\drivers\s716mdfl.sys (MCCI Corporation)
      DRV - (s716bus) -- C:\WINDOWS\system32\drivers\s716bus.sys (MCCI Corporation)
      DRV - (StarOpen) -- C:\WINDOWS\System32\drivers\StarOpen.sys ()
      DRV - (USBCCID) -- C:\WINDOWS\system32\drivers\usbccid.sys (Microsoft Corporation)
      DRV - (SymEvent) -- C:\Archivos de programa\Symantec\SYMEVENT.SYS (Symantec Corporation)
      DRV - (NAVAP) -- C:\Archivos de programa\NavNT\navap.sys ()
      DRV - (NAVAPEL) -- C:\Archivos de programa\NavNT\Navapel.sys ()
      DRV - (QCEmerald) -- C:\WINDOWS\system32\drivers\OVCE.sys (Microsoft Corporation)
      DRV - (lusbaudio) -- C:\WINDOWS\system32\drivers\OVSound2.sys (Microsoft Corporation)


      ========== Standard Registry (SafeList) ==========


      ========== Internet Explorer ==========

      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = Bing [binary data]
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = Bing [binary data]
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google
      IE - HKLM\..\SearchScopes,DefaultScope = {305868C2-8639-440D-A83B-1471396C4DB1}
      IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
      IE - HKLM\..\SearchScopes\{305868C2-8639-440D-A83B-1471396C4DB1}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7


      IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft
      IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = Bing [binary data]
      IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://g.msn.com/1me10IE8ENUS/701
      IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
      IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = Bing [binary data]
      IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft
      IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {46860713-E347-413D-A27E-E9BBBB319860}
      IE - HKU\.DEFAULT\..\SearchScopes\{46860713-E347-413D-A27E-E9BBBB319860}: "URL" = http://www.bing.com/search?q={searchTerms}&form=MS8TDF&pc=MS8TDF&src=IE-SearchBox
      IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft
      IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = Bing [binary data]
      IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://g.msn.com/1me10IE8ENUS/701
      IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
      IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = Bing [binary data]
      IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft
      IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {46860713-E347-413D-A27E-E9BBBB319860}
      IE - HKU\S-1-5-18\..\SearchScopes\{46860713-E347-413D-A27E-E9BBBB319860}: "URL" = http://www.bing.com/search?q={searchTerms}&form=MS8TDF&pc=MS8TDF&src=IE-SearchBox
      IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Main,bProtector Start Page = about:blank
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = Upgrade to Google Chrome
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = Bing [binary data]
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Upgrade to Google Chrome
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = Google
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = es
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = Upgrade to Google Chrome
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = Upgrade to Google Chrome
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\URLSearchHook: {EEE6C35D-6118-11DC-9C72-001320C79847} - No CLSID value found
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\SearchScopes,bProtectorDefaultScope = {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\SearchScopes,DefaultScope = {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?FORM=IEFM1&q={searchTerms}&src={referrer:source?}
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://www.claro-search.com/?q={searchTerms}&affID=114508&tt=4212_6&babsrc=SP_clro&mntrId=9428dd32000000000000000c6e245362
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\SearchScopes\{305868C2-8639-440D-A83B-1471396C4DB1}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7ADRA_es
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={sear
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\SearchScopes\{E9E90B53-4838-4693-8336-9EC489A97292}: "URL" = http://www.bing.com/search?q={searchTerms}&form=MS8TDF&pc=MS8TDF&src=IE-SearchBox
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
      IE - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local;<local>

      ========== FireFox ==========

      FF - prefs.js..browser.search.defaultenginename: "Claro Search"
      FF - prefs.js..browser.search.order.1: "Claro Search"
      FF - prefs.js..browser.search.selectedEngine: "Claro Search"
      FF - prefs.js..browser.startup.homepage: "http://google.com"
      FF - prefs.js..extensions.enabledAddons: %7B20a82645-c095-46ed-80e3-08825760534b%7D:0.0.0
      FF - prefs.js..extensions.enabledAddons: %7B97E22097-9A2F-45b1-8DAF-36AD648C7EF4%7D:15.0.4
      FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:17.0.1
      FF - prefs.js..keyword.URL: "http://www.claro-search.com/?affID=114508&tt=4212_8&babsrc=KW_clro&mntrId=9428dd32000000000000000c6e245362&q="
      FF - user.js - File not found

      FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_5_502_110.dll ()
      FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
      FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Archivos de programa\iTunes\Mozilla Plugins\npitunes.dll ()
      FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Archivos de programa\Google\Picasa3\npPicasa3.dll (Google, Inc.)
      FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.9.2: C:\Archivos de programa\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Archivos de programa\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: C:\Archivos de programa\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Archivos de programa\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\ARCHIV~1\MI1933~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.3: C:\Archivos de programa\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\ARCHIV~1\MI1933~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416: C:\Archivos de programa\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=15.0.4.53: c:\archivos de programa\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
      FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=15.0.4.53: c:\archivos de programa\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
      FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=15.0.4.53: C:\Documents and Settings\All Users\Datos de programa\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
      FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=15.0.4.53: C:\Documents and Settings\All Users\Datos de programa\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
      FF - HKLM\Software\MozillaPlugins\@real.com/nprpplugin;version=15.0.4.53: c:\archivos de programa\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Archivos de programa\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Archivos de programa\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.4: C:\Archivos de programa\VideoLAN\VLC\npvlc.dll (VideoLAN)
      FF - HKLM\Software\MozillaPlugins\@zylom.com/ZylomGamesPlayer: C:\Documents and Settings\All Users\Datos de programa\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll (Zylom)
      FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Archivos de programa\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
      FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
      FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)

      FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{97E22097-9A2F-45b1-8DAF-36AD648C7EF4}: C:\Documents and Settings\All Users\Datos de programa\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2012/06/01 18:52:55 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Components: C:\Archivos de programa\Mozilla Firefox\components [2012/12/10 22:07:13 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Plugins: C:\Archivos de programa\Mozilla Firefox\plugins
      FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\[email protected]: C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Mozilla\Firefox\Profiles/nbkof0pn.default\extensions\[email protected]
      FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{dfefbe51-ca52-484b-adf0-6b158b05262d}: C:\Documents and Settings\All Users\Datos de programa\Browser Manager\2.4.897.175\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\FirefoxExtension [2012/11/03 19:03:38 | 000,000,000 | ---D | M]

      [2012/10/22 21:50:16 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Mozilla\Extensions
      [2012/12/06 01:23:09 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Mozilla\Firefox\Profiles\0bzblq03.default\Extensions
      [2012/11/03 14:18:46 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Mozilla\Firefox\Profiles\nbkof0pn.default\extensions
      [2012/12/14 20:04:08 | 000,000,000 | ---D | M] (No name found) -- C:\Archivos de programa\Mozilla Firefox\extensions
      [2012/12/14 20:04:09 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Archivos de programa\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
      [2012/06/01 18:52:55 | 000,000,000 | ---D | M] (RealPlayer Browser Record Plugin) -- C:\DOCUMENTS AND SETTINGS\ALL USERS\DATOS DE PROGRAMA\REAL\REALPLAYER\BROWSERRECORDPLUGIN\FIREFOX\EXT
      [2009/09/16 21:38:01 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION
      [2012/12/10 22:07:12 | 000,262,112 | ---- | M] (Mozilla Foundation) -- C:\Archivos de programa\mozilla firefox\components\browsercomps.dll
      [2012/11/20 09:46:46 | 000,002,465 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\bing.xml
      [2012/11/20 09:46:46 | 000,004,095 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\drae.xml
      [2012/11/20 09:46:46 | 000,001,356 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\eBay-es.xml
      [2012/11/20 09:46:46 | 000,002,058 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\twitter.xml
      [2012/11/20 09:46:46 | 000,001,391 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\wikipedia-es.xml
      [2012/11/20 09:46:46 | 000,001,315 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\yahoo-es.xml

      ========== Chrome ==========

      CHR - homepage: Google
      CHR - default_search_provider: Google (Enabled)
      CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
      CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}&sugkey={google:suggestAPIKeyParameter}
      CHR - homepage: Google
      CHR - plugin: Shockwave Flash (Enabled) = C:\Archivos de programa\Google\Chrome\Application\23.0.1271.97\PepperFlash\pepflashplayer.dll
      CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
      CHR - plugin: Native Client (Enabled) = C:\Archivos de programa\Google\Chrome\Application\23.0.1271.97\ppGoogleNaClPluginChrome.dll
      CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Archivos de programa\Google\Chrome\Application\23.0.1271.97\pdf.dll
      CHR - plugin: Application Manager (Enabled) = C:\Documents and Settings\Julian y Rosa Mari\Configuraci\u00F3n local\Datos de programa\Google\Chrome\User Data\Default\Extensions\pgafcinpmmpklohkojmllohdhomoefph\1.0_0\spext.dll
      CHR - plugin: Conduit Chrome Plugin (Enabled) = C:\Documents and Settings\Julian y Rosa Mari\Configuraci\u00F3n local\Datos de programa\Google\Chrome\User Data\Default\Extensions\heaflbefplbmlakandmlpkkhciooggdp\10.13.1.89_0\plugins/ConduitChromeApiPlugin.dll
      CHR - plugin: Conduit Radio Plugin (Enabled) = C:\Documents and Settings\Julian y Rosa Mari\Configuraci\u00F3n local\Datos de programa\Google\Chrome\User Data\Default\Extensions\heaflbefplbmlakandmlpkkhciooggdp\10.13.1.89_0\plugins/np-cwmp.dll
      CHR - plugin: Adobe Acrobat (Enabled) = C:\Archivos de programa\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
      CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Archivos de programa\QuickTime\plugins\npqtplugin.dll
      CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Archivos de programa\QuickTime\plugins\npqtplugin2.dll
      CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Archivos de programa\QuickTime\plugins\npqtplugin3.dll
      CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Archivos de programa\QuickTime\plugins\npqtplugin4.dll
      CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Archivos de programa\QuickTime\plugins\npqtplugin5.dll
      CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Archivos de programa\QuickTime\plugins\npqtplugin6.dll
      CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Archivos de programa\QuickTime\plugins\npqtplugin7.dll
      CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Archivos de programa\Windows Media Player\npdrmv2.dll
      CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Archivos de programa\Windows Media Player\npdsplay.dll
      CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Archivos de programa\Windows Media Player\npwmsdrm.dll
      CHR - plugin: O3D Plugin (Enabled) = C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Mozilla\plugins\npo3dautoplugin.dll
      CHR - plugin: Microsoft Office 2010 (Enabled) = C:\ARCHIV~1\MI1933~1\Office14\NPAUTHZ.DLL
      CHR - plugin: Microsoft Office 2010 (Enabled) = C:\ARCHIV~1\MI1933~1\Office14\NPSPWRAP.DLL
      CHR - plugin: Picasa (Enabled) = C:\Archivos de programa\Google\Picasa3\npPicasa3.dll
      CHR - plugin: Google Update (Enabled) = C:\Archivos de programa\Google\Update\1.3.21.123\npGoogleUpdate3.dll
      CHR - plugin: Java Deployment Toolkit 7.0.90.5 (Enabled) = C:\Archivos de programa\Java\jre7\bin\dtplugin\npDeployJava1.dll
      CHR - plugin: Java(TM) Platform SE 7 U9 (Enabled) = C:\Archivos de programa\Java\jre7\bin\plugin2\npjp2.dll
      CHR - plugin: Silverlight Plug-In (Enabled) = C:\Archivos de programa\Microsoft Silverlight\5.1.10411.0\npctrl.dll
      CHR - plugin: Microsoft Office Live Plug-in for Firefox (Enabled) = C:\Archivos de programa\Microsoft\Office Live\npOLW.dll
      CHR - plugin: VLC Web Plugin (Enabled) = C:\Archivos de programa\VideoLAN\VLC\npvlc.dll
      CHR - plugin: Windows Live\u00AE Photo Gallery (Enabled) = C:\Archivos de programa\Windows Live\Photo Gallery\NPWLPG.dll
      CHR - plugin: iTunes Application Detector (Enabled) = C:\Archivos de programa\iTunes\Mozilla Plugins\npitunes.dll
      CHR - plugin: RealNetworks(tm) Chrome Background Extension Plug-In (32-bit) (Enabled) = C:\Documents and Settings\All Users\Datos de programa\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll
      CHR - plugin: RealPlayer(tm) HTML5VideoShim Plug-In (32-bit) (Enabled) = C:\Documents and Settings\All Users\Datos de programa\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
      CHR - plugin: Zylom Plugin (Enabled) = C:\Documents and Settings\All Users\Datos de programa\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll
      CHR - plugin: Windows Presentation Foundation (Enabled) = C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
      CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_5_502_110.dll
      CHR - plugin: RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) (Enabled) = c:\archivos de programa\real\realplayer\Netscape6\nppl3260.dll
      CHR - plugin: RealJukebox NS Plugin (Enabled) = c:\archivos de programa\real\realplayer\Netscape6\nprjplug.dll
      CHR - plugin: RealPlayer Download Plugin (Enabled) = c:\archivos de programa\real\realplayer\Netscape6\nprpplugin.dll
      CHR - Extension: WiseConvert 1.2 = C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\Google\Chrome\User Data\Default\Extensions\heaflbefplbmlakandmlpkkhciooggdp\10.13.1.89_0\
      CHR - Extension: RealPlayer HTML5Video Downloader Extension = C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk\1.5_0\
      CHR - Extension: Settings Protector = C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\Google\Chrome\User Data\Default\Extensions\pgafcinpmmpklohkojmllohdhomoefph\1.0_0\

      O1 HOSTS File: ([2008/04/14 13:00:00 | 000,000,792 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
      O1 - Hosts: 127.0.0.1 localhost
      O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Archivos de programa\Archivos comunes\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
      O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Datos de programa\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
      O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
      O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Archivos de programa\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
      O2 - BHO: (no name) - {73873F23-2AA2-4E18-9363-FCF60D4E14C4}9363-FCF60D4E14C4} - No CLSID value found.
      O2 - BHO: (SpecialSavings) - {74F475FA-6C75-43BD-AAB9-ECDA6184F600} - C:\Archivos de programa\SpecialSavings\SpecialSavingsSinged.dll (SpecialSavings)
      O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Archivos de programa\Java\jre7\bin\ssv.dll (Oracle Corporation)
      O2 - BHO: (Windows Live Aplicación auxiliar de inicio de sesión) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
      O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Archivos de programa\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
      O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Archivos de programa\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
      O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Archivos de programa\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
      O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Archivos de programa\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
      O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Archivos de programa\DAEMON Tools Toolbar\DTToolbar.dll ()
      O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Archivos de programa\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
      O3 - HKLM\..\Toolbar: (no name) - {D0F4A166-B8D4-48b8-9D63-80849FE137CB} - No CLSID value found.
      O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
      O3 - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
      O3 - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
      O3 - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Archivos de programa\DAEMON Tools Toolbar\DTToolbar.dll ()
      O4 - HKLM..\Run: [BCSSync] C:\Archivos de programa\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation)
      O4 - HKLM..\Run: [vptray] C:\Archivos de programa\NavNT\vptray.exe (Symantec Corporation)
      O4 - Startup: C:\Documents and Settings\Cesar\Menú Inicio\Programas\Inicio\OpenOffice.org 3.1.lnk = C:\Archivos de programa\OpenOffice.org 3\program\quickstart.exe ()
      O4 - Startup: C:\Documents and Settings\Cesar\Menú Inicio\Programas\Inicio\OpenOffice.org 3.3.lnk = C:\Archivos de programa\OpenOffice.org 3\program\quickstart.exe ()
      O4 - Startup: C:\Documents and Settings\Cesar\Menú Inicio\Programas\Inicio\OpenOffice.org 3.4.1.lnk = C:\Archivos de programa\OpenOffice.org 3\program\quickstart.exe ()
      O4 - Startup: C:\Documents and Settings\Cesar\Menú Inicio\Programas\Inicio\OpenOffice.org 3.4.lnk = C:\Archivos de programa\OpenOffice.org 3\program\quickstart.exe ()
      O4 - Startup: C:\Documents and Settings\Fernando\Menú Inicio\Programas\Inicio\OpenOffice.org 3.1.lnk = C:\Archivos de programa\OpenOffice.org 3\program\quickstart.exe ()
      O4 - Startup: C:\Documents and Settings\Fernando\Menú Inicio\Programas\Inicio\OpenOffice.org 3.3.lnk = C:\Archivos de programa\OpenOffice.org 3\program\quickstart.exe ()
      O4 - Startup: C:\Documents and Settings\Fernando\Menú Inicio\Programas\Inicio\OpenOffice.org 3.4.lnk = C:\Archivos de programa\OpenOffice.org 3\program\quickstart.exe ()
      O4 - Startup: C:\Documents and Settings\Julian y Rosa Mari\Menú Inicio\Programas\Inicio\Tabla de contenido de OneNote.onetoc2 ()
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 3
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0
      O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
      O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
      O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
      O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
      O7 - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0
      O7 - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 3
      O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.)
      O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\ARCHIV~1\MI1933~1\Office10\EXCEL.EXE/3000 File not found
      O9 - Extra Button: Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Archivos de programa\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
      O9 - Extra 'Tools' menuitem : &Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Archivos de programa\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
      O9 - Extra Button: Notas &vinculadas de OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Archivos de programa\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
      O9 - Extra 'Tools' menuitem : Notas &vinculadas de OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Archivos de programa\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
      O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Archivos de programa\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
      O9 - Extra Button: SpecialSavings - {A69A551A-1AAE-4B67-8C2E-52F8B8A19504} - C:\Archivos de programa\SpecialSavings\SpecialSavingsSinged.dll (SpecialSavings)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Archivos de programa\Bonjour\mdnsNSP.dll (Apple Inc.)
      O15 - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..Trusted Domains: aeat.es ([]http in Sitios de confianza)
      O15 - HKU\S-1-5-21-1708537768-682003330-1177238915-1005\..Trusted Domains: gob.es ([agenciatributaria] https in Sitios de confianza)
      O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} http://upload.facebook.com/controls/...oUploader5.cab (Facebook Photo Uploader 5 Control)
      O16 - DPF: {2DAB6EF1-66C3-427C-87CD-8DC448C47EAE} https://www5.aeat.es/es13/h/tgvicab.cab (CtlTGVI Class)
      O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} http://gfx2.hotmail.com/mail/w3/resources/MSNPUpld.cab (MSN Photo Upload Tool)
      O16 - DPF: {5BDBA960-6534-11D3-97C7-00500422B550} https://acceso.pullmantur.es/downloa...dolcontrol.cab (LotusDRSControl Class)
      O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/micr...?1351953278484 (MUWebControl Class)
      O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebook.com/controls/...Uploader55.cab (Facebook Photo Uploader 5 Control)
      O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jin...ndows-i586.cab (Java Plug-in 1.7.0_09)
      O16 - DPF: {947B00D2-962D-4A35-9E48-98EE6A442B41} https://www1.agenciatributaria.gob.e...t/aded1503.cab (OAdedinet Class)
      O16 - DPF: {A996E48C-D3DC-4244-89F7-AFA33EC60679} https://www.cert.fnmt.es/content/pag...os/capicom.cab (Settings Class)
      O16 - DPF: {B178DBD1-25DF-4187-9BE0-05D123B91B98} https://gestiona.madrid.org/asf_firm...WebSigner2.cab (WSCryptoSystem Class)
      O16 - DPF: {B785FA3C-1DE9-4D20-8396-613C486FE95E} https://www1.agenciatributaria.gob.e...h/cactivex.cab (AeatCtl Class)
      O16 - DPF: {CAFEEFAC-0017-0000-0009-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jin...ndows-i586.cab (Java Plug-in 1.7.0_09)
      O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jin...ndows-i586.cab (Reg Error: Key error.)
      O16 - DPF: {CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} http://fpdownload2.macromedia.com/ge...sh/swflash.cab (RealPlayer G2 Control)
      O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/ge...sh/swflash.cab (Shockwave Flash Object)
      O16 - DPF: {E008A543-CEFB-4559-912F-C27C2B89F13B} https://acceso.pullmantur.es/,DanaIn....com+dwa7W.cab (Domino Web Access 7 Control)
      O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
      O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} http://gfx2.hotmail.com/mail/w4/pr01...l/MSNPUpld.cab (Windows Live Hotmail Photo Upload Tool)
      O16 - DPF: CabBuilder http://kiw.imgag.com/imgag/kiw/toolb...lerControl.cab (Reg Error: Key error.)
      O16 - DPF: Garmin Communicator Plug-In https://static.garmincdn.com/gcp/ie/...nAxControl.CAB (Reg Error: Key error.)
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D8CBD602-6A37-4440-A0BE-7B1ACFAD00E8}: DhcpNameServer = 192.168.2.1
      O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Archivos de programa\Archivos comunes\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
      O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Archivos de programa\Archivos comunes\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
      O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Archivos de programa\Archivos comunes\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
      O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
      O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Archivos de programa\Archivos comunes\Skype\Skype4COM.dll (Skype Technologies)
      O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Archivos de programa\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
      O18 - Protocol\Filter\text/xml {807573E5-5146-11D5-A672-00B0D022E945} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\OFFICE14\MSOXMLMF.DLL (Microsoft Corporation)
      O20 - AppInit_DLLs: (c:\docume~1\alluse~1\datosd~1\browse~1\24897~1.175\{61d8b~1\browse~1.dll) - c:\Documents and Settings\All Users\Datos de programa\Browser Manager\2.4.897.175\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\browsermngr.dll ()
      O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
      O20 - Winlogon\Notify\NavLogon: DllName - (C:\WINDOWS\system32\NavLogon.dll) - C:\WINDOWS\system32\NavLogon.dll ()
      O24 - Desktop Components:0 (Mi página de inicio actual) - About:Home
      O24 - Desktop WallPaper: C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\Microsoft\Wallpaper1.bmp
      O24 - Desktop BackupWallPaper: C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\Microsoft\Wallpaper1.bmp
      O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Archivos de programa\Windows Desktop Search\MsnlNamespaceMgr.dll (Microsoft Corporation)
      O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Archivos de programa\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
      O32 - HKLM CDRom: AutoRun - 1
      O32 - AutoRun File - [2009/02/06 18:28:03 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
      O32 - AutoRun File - [2012/11/20 01:37:53 | 000,000,000 | RHSD | M] - C:\Autorun.inf -- [ NTFS ]
      O33 - MountPoints2\{1bea5be5-cf78-11de-bbc7-000c6e245362}\Shell\AutoRun\command - "" = G:\9b9w3.exe
      O33 - MountPoints2\{1bea5be5-cf78-11de-bbc7-000c6e245362}\Shell\open\Command - "" = G:\9b9w3.exe
      O33 - MountPoints2\{cfc924fc-b762-11de-bb71-000c6e245362}\Shell\AutoRun\command - "" = G:\setupSNK.exe
      O33 - MountPoints2\{fa253fc6-2aa7-11de-b967-000c6e245362}\Shell\AutoRun\command - "" = G:\2vk6wn.exe
      O33 - MountPoints2\{fa253fc6-2aa7-11de-b967-000c6e245362}\Shell\explore\Command - "" = G:\2vk6wn.exe
      O33 - MountPoints2\{fa253fc6-2aa7-11de-b967-000c6e245362}\Shell\open\Command - "" = G:\2vk6wn.exe
      O34 - HKLM BootExecute: (autocheck autochk *)
      O35 - HKLM\..comfile [open] -- "%1" %*
      O35 - HKLM\..exefile [open] -- "%1" %*
      O37 - HKLM\...com [@ = comfile] -- "%1" %*
      O37 - HKLM\...exe [@ = exefile] -- "%1" %*
      O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
      O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

      NetSvcs: 6to4 - File not found
      NetSvcs: Ias - File not found
      NetSvcs: Iprip - File not found
      NetSvcs: NWCWorkstation - File not found
      NetSvcs: Nwsapagent - File not found
      NetSvcs: WmdmPmSp - File not found

      MsConfig - Services: "Application Updater"
      MsConfig - StartUpFolder: C:^Documents and Settings^Julian y Rosa Mari^Menú Inicio^Programas^Inicio^Tabla de contenido de OneNote.onetoc2 - C:\Documents and Settings\Julian y Rosa Mari\Menú Inicio\Programas\Inicio\Tabla de contenido de OneNote.onetoc2 - ()
      MsConfig - StartUpReg: Adobe ARM - hkey= - key= - C:\Archivos de programa\Archivos comunes\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
      MsConfig - StartUpReg: Adobe Reader Speed Launcher - hkey= - key= - Reg Error: Value error. File not found
      MsConfig - StartUpReg: BluetoothAuthenticationAgent - hkey= - key= - File not found
      MsConfig - StartUpReg: ContactKeeper Birthday reminder - hkey= - key= - File not found
      MsConfig - StartUpReg: ctfmon.exe - hkey= - key= - File not found
      MsConfig - StartUpReg: DisplayTrayIcon - hkey= - key= - File not found
      MsConfig - StartUpReg: Google Update - hkey= - key= - C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\Google\Update\GoogleUpdate.exe (Google Inc.)
      MsConfig - StartUpReg: GrooveMonitor - hkey= - key= - Reg Error: Value error. File not found
      MsConfig - StartUpReg: H/PC Connection Agent - hkey= - key= - Reg Error: Value error. File not found
      MsConfig - StartUpReg: NeroFilterCheck - hkey= - key= - C:\Archivos de programa\Archivos comunes\Ahead\Lib\NeroCheck.exe (Nero AG)
      MsConfig - StartUpReg: nwiz - hkey= - key= - File not found
      MsConfig - StartUpReg: QuickTime Task - hkey= - key= - C:\Archivos de programa\QuickTime\qttask.exe (Apple Inc.)
      MsConfig - StartUpReg: SearchSettings - hkey= - key= - Reg Error: Value error. File not found
      MsConfig - StartUpReg: StatusClient - hkey= - key= - C:\Archivos de programa\Hewlett-Packard\Toolbox2.0\Apache Tomcat 4.0\webapps\Toolbox\StatusClient\StatusClient.exe (Hewlett-Packard)
      MsConfig - StartUpReg: TomcatStartup - hkey= - key= - C:\Archivos de programa\Hewlett-Packard\Toolbox2.0\hpbpsttp.exe (Hewlett-Packard)
      MsConfig - StartUpReg: vptray - hkey= - key= - C:\Archivos de programa\NavNT\vptray.exe (Symantec Corporation)
      MsConfig - StartUpReg: winlogon - hkey= - key= - Reg Error: Value error. File not found
      MsConfig - State: "system.ini" - 0
      MsConfig - State: "win.ini" - 0
      MsConfig - State: "bootini" - 0
      MsConfig - State: "services" - 2
      MsConfig - State: "startup" - 2

      CREATERESTOREPOINT
      Restore point Set: OTL Restore Point

      ========== Files/Folders - Created Within 30 Days ==========

      [2012/12/14 19:22:39 | 000,000,000 | ---D | C] -- C:\_AT-Destroyer
      [2012/12/14 16:06:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Malwarebytes' Anti-Malware
      [2012/12/14 16:06:35 | 000,022,856 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
      [2012/12/14 16:06:35 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Malwarebytes' Anti-Malware
      [2012/12/14 15:28:30 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Julian y Rosa Mari\Recent
      [2012/12/13 23:56:23 | 000,000,000 | ---D | C] -- C:\Archivos de programa\MSBuild
      [2012/12/11 19:16:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\FOTOS DEPERFECTOS CASA FER Y ALI
      [2012/12/10 23:55:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Google Chrome
      [2012/12/06 16:05:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\MIGAS
      [2012/12/06 12:16:07 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Windows Live
      [2012/12/06 01:24:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Skype
      [2012/12/06 01:24:03 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Archivos comunes\Skype
      [2012/12/06 01:23:08 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Mozilla Maintenance Service
      [2012/12/06 01:22:20 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Defraggler
      [2012/12/05 15:58:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\encuentros
      [2012/11/27 13:27:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menú Inicio\Programas\CCleaner
      [2012/11/25 11:41:18 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Mozilla Firefox
      [2012/11/24 14:41:00 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData
      [2012/11/20 20:46:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\GlarySoft
      [2012/11/20 01:37:53 | 000,000,000 | RHSD | C] -- C:\Autorun.inf
      [2012/11/19 00:42:04 | 000,036,864 | ---- | C] (NirSoft) -- C:\WINDOWS\nircmd.exe
      [2012/11/17 19:21:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\scaner del ordenador
      [2012/11/15 20:51:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\OBRAS DE TEATRO
      [2012/05/05 17:02:35 | 010,640,384 | ---- | C] (AEAT) -- C:\Documents and Settings\Julian y Rosa Mari\Actualizacion_Renta2011_windows_1_20.exe
      [2010/05/07 19:13:03 | 023,457,280 | ---- | C] (AEAT) -- C:\Documents and Settings\Julian y Rosa Mari\renta2009_windows_1_22.exe
      [2002/03/11 10:06:30 | 001,822,520 | ---- | C] (Microsoft Corporation) -- C:\Archivos de programa\instmsiw.exe
      [2002/03/11 09:45:04 | 001,708,856 | ---- | C] (Microsoft Corporation) -- C:\Archivos de programa\instmsia.exe
      [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

      ========== Files - Modified Within 30 Days ==========

      [2012/12/14 20:35:00 | 000,000,294 | ---- | M] () -- C:\WINDOWS\tasks\Browser Manager.job
      [2012/12/14 20:31:00 | 000,000,514 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{425DC01C-F6F5-4B00-97C7-06C69162B3CC}.job
      [2012/12/14 20:16:25 | 016,515,072 | ---- | M] () -- C:\Documents and Settings\Julian y Rosa Mari\ntuser.dat
      [2012/12/14 20:12:01 | 000,000,838 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
      [2012/12/14 20:11:19 | 000,001,122 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
      [2012/12/14 20:11:18 | 000,000,318 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-1708537768-682003330-1177238915-1005.job
      [2012/12/14 20:11:18 | 000,000,298 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-1708537768-682003330-1177238915-1004.job
      [2012/12/14 20:11:18 | 000,000,292 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-1708537768-682003330-1177238915-1003.job
      [2012/12/14 20:11:18 | 000,000,236 | ---- | M] () -- C:\WINDOWS\tasks\OGALogon.job
      [2012/12/14 20:11:14 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
      [2012/12/14 20:11:11 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
      [2012/12/14 20:11:09 | 1073,319,936 | -HS- | M] () -- C:\hiberfil.sys
      [2012/12/14 19:59:47 | 000,000,304 | -HS- | M] () -- C:\Documents and Settings\Julian y Rosa Mari\ntuser.ini
      [2012/12/14 19:59:00 | 000,001,126 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
      [2012/12/14 19:50:00 | 000,001,244 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1708537768-682003330-1177238915-1005UA.job
      [2012/12/14 19:11:00 | 000,001,204 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1708537768-682003330-1177238915-1004UA.job
      [2012/12/14 16:06:37 | 000,000,833 | ---- | M] () -- C:\Documents and Settings\All Users\Escritorio\Malwarebytes Anti-Malware.lnk
      [2012/12/14 14:11:00 | 000,001,152 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1708537768-682003330-1177238915-1004Core.job
      [2012/12/14 01:37:58 | 000,000,673 | ---- | M] () -- C:\WINDOWS\win.ini
      [2012/12/14 00:59:32 | 000,434,168 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
      [2012/12/13 22:40:16 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
      [2012/12/13 22:40:14 | 000,116,736 | ---- | M] () -- C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
      [2012/12/13 16:36:46 | 000,000,598 | ---- | M] () -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\Acceso directo a CONTROL KM COCHE.lnk
      [2012/12/13 16:16:58 | 000,000,994 | ---- | M] () -- C:\WINDOWS\ODBC.INI
      [2012/12/13 11:36:48 | 000,149,865 | ---- | M] () -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\CV 2012.V2 - Fernando de la Fuente.pdf
      [2012/12/12 12:50:00 | 000,001,192 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1708537768-682003330-1177238915-1005Core.job
      [2012/12/10 23:55:39 | 000,001,874 | ---- | M] () -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\Google Chrome.lnk
      [2012/12/10 21:43:58 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
      [2012/12/10 17:42:00 | 000,000,306 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-1708537768-682003330-1177238915-1004.job
      [2012/12/08 11:51:00 | 000,000,326 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-1708537768-682003330-1177238915-1005.job
      [2012/12/05 17:00:00 | 000,000,300 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-1708537768-682003330-1177238915-1003.job
      [2012/12/04 18:43:00 | 000,000,322 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
      [2012/11/26 13:27:07 | 000,000,907 | ---- | M] () -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\ContactKeeper.lnk
      [2012/11/25 17:35:06 | 000,000,197 | ---- | M] () -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\hotmail.com.url
      [2012/11/25 15:45:22 | 000,000,731 | ---- | M] () -- C:\Documents and Settings\All Users\Escritorio\CCleaner.lnk
      [2012/11/25 13:54:14 | 000,000,425 | ---- | M] () -- C:\WINDOWS\{DF1F5DA3-9011-41B8-984B-99BCBED8FDFF}_WiseFW.ini
      [2012/11/25 11:41:23 | 000,000,773 | ---- | M] () -- C:\Documents and Settings\All Users\Escritorio\Mozilla Firefox.lnk
      [2012/11/21 13:27:19 | 000,024,576 | ---- | M] () -- C:\Documents and Settings\Julian y Rosa Mari\Mis documentos\CTA HERMANOS RUIZ.mmb
      [2012/11/20 21:05:36 | 015,663,104 | ---- | M] () -- C:\Documents and Settings\Julian y Rosa Mari\ntuser.dat.gbck
      [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

      ========== Files Created - No Company Name ==========

      [2012/12/14 19:37:26 | 1073,319,936 | -HS- | C] () -- C:\hiberfil.sys
      [2012/12/14 16:06:37 | 000,000,833 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\Malwarebytes Anti-Malware.lnk
      [2012/12/14 14:45:28 | 000,000,294 | ---- | C] () -- C:\WINDOWS\tasks\Browser Manager.job
      [2012/12/13 16:36:52 | 000,000,598 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\Acceso directo a CONTROL KM COCHE.lnk
      [2012/12/13 11:36:47 | 000,149,865 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\CV 2012.V2 - Fernando de la Fuente.pdf
      [2012/12/10 23:55:39 | 000,001,874 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\Google Chrome.lnk
      [2012/12/10 23:54:23 | 000,001,126 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
      [2012/12/10 23:54:23 | 000,001,122 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
      [2012/12/06 12:54:57 | 016,515,072 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\ntuser.dat
      [2012/11/25 11:41:23 | 000,000,779 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Mozilla Firefox.lnk
      [2012/11/25 11:41:23 | 000,000,773 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\Mozilla Firefox.lnk
      [2012/11/25 11:22:32 | 000,000,197 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Escritorio\hotmail.com.url
      [2012/11/25 10:32:12 | 000,000,425 | ---- | C] () -- C:\WINDOWS\{DF1F5DA3-9011-41B8-984B-99BCBED8FDFF}_WiseFW.ini
      [2012/11/19 00:42:04 | 000,069,660 | ---- | C] () -- C:\WINDOWS\Fart.exe
      [2012/11/19 00:42:04 | 000,022,528 | ---- | C] () -- C:\WINDOWS\AT-Uninstall.exe
      [2012/11/19 00:42:04 | 000,011,776 | ---- | C] () -- C:\WINDOWS\Colous.exe
      [2012/10/29 13:28:57 | 015,663,104 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\ntuser.dat.gbck
      [2012/08/17 12:42:02 | 000,000,078 | ---- | C] () -- C:\WINDOWS\gcc.INI
      [2012/07/21 14:39:55 | 001,941,296 | ---- | C] () -- C:\Documents and Settings\LocalService\Configuración local\Datos de programa\FontCache3.0.0.0.dat
      [2012/07/21 12:27:32 | 000,000,288 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\.backup.dm
      [2012/07/12 00:44:29 | 004,326,012 | -H-- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\IconCache.db
      [2012/04/10 10:05:25 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\adedinet.dll
      [2012/02/15 13:55:16 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
      [2011/09/01 12:06:26 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
      [2011/04/12 11:19:40 | 000,000,097 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\default.pls
      [2011/01/19 22:35:40 | 002,998,272 | ---- | C] () -- C:\Archivos de programa\openofficeorg33.msi
      [2011/01/19 22:34:20 | 000,475,016 | ---- | C] () -- C:\Archivos de programa\setup.exe
      [2011/01/19 22:32:58 | 127,999,348 | ---- | C] () -- C:\Archivos de programa\openofficeorg1.cab
      [2011/01/19 21:49:38 | 000,000,290 | ---- | C] () -- C:\Archivos de programa\setup.ini
      [2009/12/31 19:47:55 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Datos de programa\LauncherAccess.dt
      [2009/12/14 20:33:27 | 000,260,508 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\uanbb_nav.dat
      [2009/12/14 20:33:27 | 000,003,168 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\uanbb.dat
      [2009/12/14 20:33:27 | 000,002,617 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\uanbb_navps.dat
      [2009/09/03 15:22:16 | 000,367,963 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\ekqfgvd_nav.dat
      [2009/09/03 15:22:16 | 000,003,879 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\ekqfgvd.dat
      [2009/09/03 15:22:16 | 000,002,099 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\ekqfgvd_navps.dat
      [2009/04/13 18:29:30 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\$_hpcst$.hpc
      [2009/02/07 14:15:30 | 000,116,736 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
      [2009/02/06 18:37:04 | 000,094,904 | ---- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\Configuración local\Datos de programa\GDIPFONTCACHEV1.DAT
      [2009/02/06 18:35:52 | 000,000,304 | -HS- | C] () -- C:\Documents and Settings\Julian y Rosa Mari\ntuser.ini
      [2008/09/30 19:24:02 | 009,775,104 | ---- | C] () -- C:\Archivos de programa\openofficeorg30.msi

      ========== ZeroAccess Check ==========

      [2009/02/25 16:59:41 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini

      [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

      [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
      "" = %SystemRoot%\system32\shdocvw.dll -- [2009/07/18 17:03:54 | 001,510,400 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
      "" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009/02/09 11:52:53 | 000,473,600 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
      "" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008/04/14 13:00:00 | 000,273,920 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Both

      ========== LOP Check ==========

      [2009/10/14 11:40:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\4D
      [2009/03/12 14:57:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\Awem
      [2012/10/21 12:02:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\Babylon
      [2009/03/24 22:59:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\Bluetooth(2)
      [2012/05/29 12:04:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\boost_interprocess
      [2012/11/03 19:24:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\Browser Manager
      [2012/07/21 12:25:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\ClubSanDisk
      [2010/09/26 20:38:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\DAEMON Tools Lite
      [2011/02/07 03:38:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\GameHouse
      [2011/05/13 20:12:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\Particles
      [2012/10/21 14:22:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\PC Performer Manager
      [2011/04/15 16:36:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\PlayFirst
      [2011/02/07 01:05:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\Playrix Entertainment
      [2009/03/08 22:33:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\SpinTop Games
      [2012/11/03 14:30:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\SweetIM
      [2012/11/09 16:42:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\Tarma Installer
      [2012/12/08 01:07:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\TEMP
      [2009/03/08 22:25:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\Zylom
      [2011/07/31 21:01:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\{3C0AACBF-B491-4BE5-BAF9-AA46E0629E42}
      [2012/04/25 22:11:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
      [2011/06/12 14:02:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\{AB2D8F2E-F7AD-4446-A11A-50D846B2CF2A}
      [2011/05/03 14:37:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\OfferBox
      [2009/12/25 17:21:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\OpenOffice.org
      [2009/09/22 16:15:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\pdfforge
      [2011/03/15 19:52:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\Search Settings
      [2012/12/06 01:21:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\searchquband
      [2010/08/27 13:29:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\searchqutb
      [2012/12/06 01:21:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\searchqutoolbar
      [2009/04/13 17:52:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\Teleca
      [2012/12/06 01:21:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\Toolbar4
      [2010/06/07 16:29:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\Windows Desktop Search
      [2010/06/07 16:30:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Cesar\Datos de programa\Windows Search
      [2010/01/13 20:59:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\Bandoo
      [2010/09/26 21:20:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\DAEMON Tools Lite
      [2011/06/27 22:52:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\EPSON
      [2010/12/05 00:27:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\FissaSearch
      [2011/03/14 20:54:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\GetRightToGo
      [2009/03/11 21:18:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\live-player
      [2010/10/05 18:39:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\LucasArts
      [2010/07/08 20:09:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\My Games
      [2011/07/09 19:32:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\OfferBox
      [2009/08/31 18:25:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\OpenOffice.org
      [2009/09/11 18:01:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\PC Suite
      [2009/09/22 18:23:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\pdfforge
      [2012/10/15 16:43:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\PriceGong
      [2011/02/24 18:14:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\Search Settings
      [2011/11/02 12:08:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\searchquband
      [2010/07/05 17:58:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\searchqutb
      [2011/11/02 12:09:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\searchqutoolbar
      [2009/05/06 10:21:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\Smart Panel
      [2009/03/26 22:03:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\Teleca
      [2012/04/17 14:05:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\Toolbar4
      [2012/02/22 13:18:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\Windows Desktop Search
      [2010/04/05 08:28:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Fernando\Datos de programa\Windows Search
      [2012/02/20 20:40:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\AtlanticJourney
      [2012/10/29 22:33:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\BabylonToolbar
      [2012/10/29 13:02:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Claro LTD
      [2011/07/30 15:15:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Disk Cleaner
      [2010/01/15 10:38:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\EPSON
      [2012/04/22 15:39:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Funlinker
      [2011/05/13 17:20:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Funswitch
      [2011/02/07 03:38:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\GameHouse
      [2011/03/09 15:33:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\GARMIN
      [2012/12/06 01:16:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\GlarySoft
      [2009/09/08 11:47:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Leadertech
      [2011/07/14 14:33:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\LibreOffice
      [2012/11/24 13:31:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\MoneyManagerEx
      [2009/09/17 15:17:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\MSD_Soft
      [2009/03/05 21:38:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\MSNInstaller
      [2011/08/02 13:18:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\My Games
      [2009/09/08 10:33:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Nokia
      [2012/07/27 18:12:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\OfiProClientData
      [2009/02/06 20:01:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\OpenOffice.org
      [2012/08/02 09:00:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Oracle
      [2009/09/08 10:18:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\PC Suite
      [2010/01/24 15:04:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\pdfforge
      [2012/10/21 12:08:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\PerformerSoft
      [2011/04/15 16:36:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\PlayFirst
      [2010/01/01 20:30:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Samsung
      [2012/07/21 12:33:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\SanDisk SecureAccess
      [2012/05/29 12:04:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\searchqutoolbar(2)
      [2011/12/27 14:44:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Smart Panel
      [2009/09/16 21:59:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Teleca
      [2012/02/22 22:01:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\VS Revo Group
      [2012/09/05 09:16:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\VSRevoGroup
      [2012/02/19 21:12:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Windows Desktop Search
      [2010/07/26 12:58:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Windows Live Writer
      [2010/04/02 11:23:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Windows Search
      [2011/02/23 21:05:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Julian y Rosa Mari\Datos de programa\Zylom
      [2011/05/31 12:41:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\TEMP\Datos de programa\OfferBox
      [2011/05/31 13:37:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\TEMP\Datos de programa\pdfforge

      ========== Purity Check ==========



      ========== Custom Scans ==========

      < %SYSTEMDRIVE%\*.* >
      [2003/08/29 10:19:19 | 000,004,824 | ---- | M] () -- C:\0x040a.ini
      [2003/08/29 10:19:20 | 000,089,088 | ---- | M] () -- C:\1034.mst
      [2003/08/29 10:19:21 | 000,750,805 | ---- | M] () -- C:\all98.cab
      [2012/12/14 19:43:13 | 000,003,455 | ---- | M] () -- C:\AT-Destroyer.txt
      [2009/02/06 18:28:03 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
      [2010/06/22 18:03:50 | 000,031,487 | ---- | M] () -- C:\BIBLIO.RAR
      [2011/11/01 12:51:50 | 000,000,211 | ---- | M] () -- C:\boot.ini
      [2008/04/14 13:00:00 | 000,004,952 | ---- | M] () -- C:\Bootfont.bin
      [2009/02/06 18:28:03 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
      [2003/08/29 10:23:21 | 000,151,276 | ---- | M] () -- C:\cu_readme.rtf
      [2003/08/29 10:19:22 | 008,873,215 | ---- | M] () -- C:\drv9x.cab
      [2003/08/29 10:19:24 | 003,198,026 | ---- | M] () -- C:\fonts.cab
      [2012/12/14 20:11:09 | 1073,319,936 | -HS- | M] () -- C:\hiberfil.sys
      [2003/08/29 10:19:25 | 010,915,512 | ---- | M] () -- C:\hp LaserJet 1010 Series.msi
      [2003/08/29 10:19:28 | 001,150,976 | ---- | M] (Hewlet-Packard) -- C:\hpbtpg.exe
      [2009/03/11 23:14:14 | 000,000,050 | ---- | M] () -- C:\install.bat
      [2003/08/29 10:19:29 | 001,708,856 | ---- | M] (Microsoft Corporation) -- C:\instmsia.exe
      [2003/08/29 10:19:30 | 001,822,520 | ---- | M] (Microsoft Corporation) -- C:\instmsiw.exe
      [2009/02/06 18:28:03 | 000,000,000 | ---- | M] () -- C:\IO.SYS
      [2012/11/22 16:44:36 | 000,032,087 | ---- | M] () -- C:\JavaRa.log
      [2012/07/27 16:53:27 | 000,000,569 | ---- | M] () -- C:\MGDInfo.txt
      [2009/02/06 18:28:03 | 000,000,000 | ---- | M] () -- C:\MSDOS.SYS
      [2012/12/14 19:42:44 | 000,000,572 | ---- | M] () -- C:\Navegadores.txt
      [2008/04/14 13:00:00 | 000,047,564 | ---- | M] () -- C:\NTDETECT.COM
      [2008/04/14 13:00:00 | 000,251,168 | ---- | M] () -- C:\ntldr
      [2004/02/29 16:44:34 | 000,052,576 | ---- | M] () -- C:\orange.bmp
      [2012/12/14 20:11:08 | 1610,612,736 | -HS- | M] () -- C:\pagefile.sys
      [2009/03/11 16:44:36 | 000,013,030 | ---- | M] () -- C:\PDOXUSRS.NET
      [2011/04/15 16:57:27 | 000,074,163 | ---- | M] () -- C:\playground.log
      [2012/12/14 19:39:37 | 000,000,000 | ---- | M] () -- C:\prueba.txt
      [2003/08/29 10:19:31 | 000,018,865 | ---- | M] () -- C:\readme2.txt
      [2009/03/19 10:33:14 | 000,000,062 | ---- | M] () -- C:\RECYCLERLS-1-5-21-1482476501-1644491937-682003330-1013LDesktop.ini
      [2009/03/11 23:12:59 | 000,000,390 | ---- | M] () -- C:\response.ini
      [2012/11/13 01:01:12 | 000,002,575 | ---- | M] () -- C:\scu.dat
      [2003/08/29 10:19:31 | 000,009,040 | ---- | M] () -- C:\SETCON~1.cab
      [2003/08/29 10:19:28 | 001,043,550 | ---- | M] () -- C:\setup.exe
      [2009/03/11 23:14:14 | 000,001,390 | ---- | M] () -- C:\Setup.ini
      [2009/09/21 17:21:28 | 000,000,232 | ---- | M] () -- C:\sqmdata00.sqm
      [2009/09/22 17:56:22 | 000,000,268 | ---- | M] () -- C:\sqmdata01.sqm
      [2009/09/29 19:04:07 | 000,000,268 | ---- | M] () -- C:\sqmdata02.sqm
      [2009/10/14 17:54:35 | 000,000,268 | ---- | M] () -- C:\sqmdata03.sqm
      [2009/10/14 18:06:56 | 000,000,280 | ---- | M] () -- C:\sqmdata04.sqm
      [2009/09/21 17:21:28 | 000,000,244 | ---- | M] () -- C:\sqmnoopt00.sqm
      [2009/09/22 17:56:22 | 000,000,244 | ---- | M] () -- C:\sqmnoopt01.sqm
      [2009/09/29 19:04:07 | 000,000,244 | ---- | M] () -- C:\sqmnoopt02.sqm
      [2009/10/14 17:54:35 | 000,000,244 | ---- | M] () -- C:\sqmnoopt03.sqm
      [2009/10/14 18:06:56 | 000,000,244 | ---- | M] () -- C:\sqmnoopt04.sqm
      [2003/08/29 10:19:31 | 021,863,770 | ---- | M] () -- C:\TOOLBO~1.cab
      [2011/02/23 20:53:54 | 022,443,683 | ---- | M] () -- C:\TOOLBO~1.zip
      [2009/03/11 23:14:14 | 000,000,039 | ---- | M] () -- C:\uninstall.bat
      [2011/11/13 21:27:27 | 000,000,066 | ---- | M] () -- C:\zzz.txt
      [2009/02/06 18:51:20 | 000,002,798 | ---- | M] () -- C:\_NavCClt.Log

      ========== Alternate Data Streams ==========

      @Alternate Data Stream - 160 bytes -> C:\Documents and Settings\All Users\Datos de programa\TEMP:02C1CB6D
      @Alternate Data Stream - 116 bytes -> C:\Documents and Settings\All Users\Datos de programa\TEMP:D1B5B4F1

      < End of report >

    Página 4 de 4 PrimeroPrimero 1234