• Registrarse
  • Iniciar sesión


  • Página 1 de 2 12 ÚltimoÚltimo
    Resultados 1 al 10 de 20

    No funciona el Windows defender en mi PC( Windows Vista)

    Hola, desde hace unos días no puedo abrir imágenes ni programas de edición de imágenes. Windows defender no funciona en mi sistema y me sale una ventanita diciendo que el explorador de windows se cerrará, ...

    1. #1
      Usuario Avatar de Laura Zion
      Registrado
      nov 2012
      Ubicación
      Parma, Italy
      Mensajes
      12

      No funciona el Windows defender en mi PC( Windows Vista)

      Hola, desde hace unos días no puedo abrir imágenes ni programas de edición de imágenes. Windows defender no funciona en mi sistema y me sale una ventanita diciendo que el explorador de windows se cerrará, lo mismo ocurre cuando intento abrir una imagen o el photoshop.
      He hecho un examen con CCleaner y Malwarebytes, y también con mi Antivirus y dice que tengo varios elementos dañinos(creo recordar que se llamaba pup.blabbers o algo parecido...)En estos dos exámenes de detección de virus, desinfecté mi PC ;pero aún tengo el mismo problema con el Windows defender.
      Las actualizaciones del PC están todas instaladas, aún asi no tengo manera de poder abrir imágenes.
      Ayuda!!!
      Última edición por Laura Zion fecha: 05/11/12 a las 07:47:22

    2. #2
      Moderador
      Avatar de @Maxfernandez
      Registrado
      dic 2007
      Ubicación
      Venezuela
      Mensajes
      16.076

      Re: No funciona el Windows defender en mi PC( Windows Vista)

      Hola.

      Haz esto:

      1.- Reinicia el ordenador como si fueses a ingresar en modo seguro (a prueba de fallos) pero escoge la opción "Ultima configuración buena conocida" en el menú de opciones.

      2.-Descarga Farbar Service Scanner a tu escritorio.

      • Ejecuta FSS.exe (Si usas Windows Vista o 7 Presiona clic derecho y selecciona "Ejecutar como Administrador.")
      • Marca las siguientes casillas
        • Security Center/Action Center.
        • Windows Update.
        • Windows Defender.
      • Pulsa en el botón Scan.


      Se abrirá un Bloc de notas copia y pega el contenido en tu próxima respuesta.
      [email protected]


      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    3. #3
      Usuario Avatar de Laura Zion
      Registrado
      nov 2012
      Ubicación
      Parma, Italy
      Mensajes
      12

      Re: No funciona el Windows defender en mi PC( Windows Vista)

      Farbar Service Scanner Version: 07-11-2012
      Ran by Madworld (administrator) on 06-11-2012 at 23:02:03
      Running from "C:\Users\Madworld\Desktop"
      Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86)
      Boot Mode: Normal
      ****************************************************************



      Security Center:
      ============

      Windows Update:
      ============

      Windows Autoupdate Disabled Policy:
      ============================


      Windows Defender:
      ==============
      WinDefend Service is not running. Checking service configuration:
      The start type of WinDefend service is OK.
      The ImagePath of WinDefend service is OK.
      The ServiceDll of WinDefend service is OK.


      Windows Defender Disabled Policy:
      ==========================
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender]
      "DisableAntiSpyware"=DWORD:1


      Other Services:
      ==============


      File Check:
      ========
      C:\Windows\system32\wscsvc.dll => MD5 is legit
      C:\Windows\system32\wbem\WMIsvc.dll => MD5 is legit
      C:\Windows\system32\wuaueng.dll => MD5 is legit
      C:\Windows\system32\qmgr.dll => MD5 is legit
      C:\Windows\system32\es.dll => MD5 is legit
      C:\Windows\system32\cryptsvc.dll
      [2012-10-09 20:37] - [2012-06-02 01:02] - 0133120 ____A (Microsoft Corporation) F1E8C34892336D33EDDCDFE44E474F64

      C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
      C:\Windows\system32\svchost.exe => MD5 is legit
      C:\Windows\system32\rpcss.dll => MD5 is legit


      **** End of log ****

    4. #4
      Moderador
      Avatar de @Maxfernandez
      Registrado
      dic 2007
      Ubicación
      Venezuela
      Mensajes
      16.076

      Re: No funciona el Windows defender en mi PC( Windows Vista)

      Hola.

      Con mucha atención realizaras lo siguiente:

      Paso 1.-: Descarga el archivo llamado Vista.zip.



      • Lo descomprimes.
      • Encontraras varios archivos en su interior.


      Botón derecho uno a uno sobre los siguientes >>> Luego presionas Combinar.

      • windefend.reg

      Nota: solo los .reg que están indicados.

      Paso 2.-: Dentro de los archivos que anteriormente descargaste (Vista.zip) busca y ejecuta (doble clic sobre el).


      • start_services.bat.



      Paso 3.-: Reinicia el equipo.


      Paso 4.-: Comprueba si se solucionaron los errores y vuelve a ejecutar FSS.exe tal como ya lo hiciste anteriormente y nos pegas un nuevo reporte.


      Nota Importante: este procedimiento es para este usuario en particular y su sistema Operativo, si tiene el mismo problema, abra un nuevo tema en nuestro Foro de Virus.

      Salu2.
      [email protected]


      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    5. #5
      Usuario Avatar de Laura Zion
      Registrado
      nov 2012
      Ubicación
      Parma, Italy
      Mensajes
      12

      Re: No funciona el Windows defender en mi PC( Windows Vista)

      Windows Defender:
      ==============
      WinDefend Service is not running. Checking service configuration:
      The start type of WinDefend service is set to Disabled. The default start type is Auto.
      The ImagePath of WinDefend service is OK.
      The ServiceDll of WinDefend service is OK.


      Windows Defender Disabled Policy:
      ==========================
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender]
      "DisableAntiSpyware"=DWORD:1


      Other Services:
      ==============


      File Check:
      ========
      C:\Windows\system32\nsisvc.dll => MD5 is legit
      C:\Windows\system32\Drivers\nsiproxy.sys => MD5 is legit
      C:\Windows\system32\dhcpcsvc.dll => MD5 is legit
      C:\Windows\system32\Drivers\afd.sys => MD5 is legit
      C:\Windows\system32\Drivers\tdx.sys => MD5 is legit
      C:\Windows\system32\Drivers\tcpip.sys => MD5 is legit
      C:\Windows\system32\dnsrslvr.dll => MD5 is legit
      C:\Windows\system32\wscsvc.dll => MD5 is legit
      C:\Windows\system32\wbem\WMIsvc.dll => MD5 is legit
      C:\Windows\system32\wuaueng.dll => MD5 is legit
      C:\Windows\system32\qmgr.dll => MD5 is legit
      C:\Windows\system32\es.dll => MD5 is legit
      C:\Windows\system32\cryptsvc.dll
      [2012-10-09 20:37] - [2012-06-02 01:02] - 0133120 ____A (Microsoft Corporation) F1E8C34892336D33EDDCDFE44E474F64

      C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
      C:\Windows\system32\svchost.exe => MD5 is legit
      C:\Windows\system32\rpcss.dll => MD5 is legit


      **** End of log ****

    6. #6
      Moderador
      Avatar de @Maxfernandez
      Registrado
      dic 2007
      Ubicación
      Venezuela
      Mensajes
      16.076

      Re: No funciona el Windows defender en mi PC( Windows Vista)

      Hola.

      1. Ejecuta Farbar Service Scanner.

        • Doble clic al archivo FSS.exe (Si usas Windows Vista o 7 Presiona clic derecho y selecciona "Ejecutar como Administrador.")
        • Asegurate que todas las casillas esten desmarcadas.
        • En el cuadro de búsqueda (search) pega lo siguiente:
          Código:
          WinDefend
        • Pulsa en el botón Export Service.


        Se abrirá un Block de notas copia y pega el contenido en tu próxima respuesta.

      2. Descarga OTL a tu escritorio.
        • Cerrar todas las ventanas y programas abiertos antes de ejecutarlo.
        • Hacer doble click en el ícono OTL.exe para comenzar.
        • Cuando la interfaz aparesca, marcar las siguienes opciones: bajo de: "Tipo de Análisis" cambielo a Resultado Mínimo
        • Cambia a Todos donde dice Registro Normal
        • Marcar las opciones: Buscar LOP y Buscar Purity
        • Presione el boton Análizar
          Una vez termine, se abrirán dos (2) archivos, OTL.Txt y Extras.Txt.
          Por favor copiar y pegar el contenido de OTL.Txt en su siguiente Post
      Nota: Por favor No cambiar el resto de la configuración a menos que se le indique.

      Saludos.
      [email protected]


      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    7. #7
      Usuario Avatar de Laura Zion
      Registrado
      nov 2012
      Ubicación
      Parma, Italy
      Mensajes
      12

      Re: No funciona el Windows defender en mi PC( Windows Vista)

      Windows Registry Editor Version 5.00

      [HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\WinDefend]
      "DisplayName"="Windows Defender"
      "ErrorControl"=dword:00000001
      "Group"="COM Infrastructure"
      "ImagePath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
      74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,\
      00,76,00,63,00,68,00,6f,00,73,00,74,00,2e,00,65,00,78,00,65,00,20,00,2d,00,\
      6b,00,20,00,73,00,65,00,63,00,73,00,76,00,63,00,73,00,00,00
      "Start"=dword:00000004
      "Type"=dword:00000020
      "Description"="@%ProgramFiles%\\Windows Defender\\MsMpRes.dll,-3068"
      "DependOnService"=hex(7):52,00,70,00,63,00,53,00,73,00,00,00,00,00
      "ObjectName"="LocalSystem"
      "ServiceSidType"=dword:00000001
      "RequiredPrivileges"=hex(7):53,00,65,00,49,00,6d,00,70,00,65,00,72,00,73,00,6f,\
      00,6e,00,61,00,74,00,65,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,\
      65,00,00,00,53,00,65,00,42,00,61,00,63,00,6b,00,75,00,70,00,50,00,72,00,69,\
      00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,00,52,00,65,00,73,00,\
      74,00,6f,00,72,00,65,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,65,\
      00,00,00,53,00,65,00,44,00,65,00,62,00,75,00,67,00,50,00,72,00,69,00,76,00,\
      69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,00,43,00,68,00,61,00,6e,00,67,\
      00,65,00,4e,00,6f,00,74,00,69,00,66,00,79,00,50,00,72,00,69,00,76,00,69,00,\
      6c,00,65,00,67,00,65,00,00,00,53,00,65,00,53,00,65,00,63,00,75,00,72,00,69,\
      00,74,00,79,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,\
      00,00
      "FailureActions"=hex:80,51,01,00,00,00,00,00,00,00,00,00,03,00,00,00,14,00,00,\
      00,01,00,00,00,60,ea,00,00,01,00,00,00,60,ea,00,00,00,00,00,00,00,00,00,00

      [HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\WinDefend\Enum]
      "0"="Root\\LEGACY_WINDEFEND\\0000"
      "Count"=dword:00000001
      "NextInstance"=dword:00000001

      [HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\WinDefend\Parameters]
      "ServiceDllUnloadOnStop"=dword:00000001
      "ServiceDll"=hex(2):25,00,50,00,72,00,6f,00,67,00,72,00,61,00,6d,00,46,00,69,\
      00,6c,00,65,00,73,00,25,00,5c,00,57,00,69,00,6e,00,64,00,6f,00,77,00,73,00,\
      20,00,44,00,65,00,66,00,65,00,6e,00,64,00,65,00,72,00,5c,00,6d,00,70,00,73,\
      00,76,00,63,00,2e,00,64,00,6c,00,6c,00,00,00

      [HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\WinDefend\Security]
      "Security"=hex:01,00,14,80,04,01,00,00,10,01,00,00,14,00,00,00,30,00,00,00,02,\
      00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
      00,00,02,00,d4,00,07,00,00,00,00,00,28,00,ff,01,0f,00,01,06,00,00,00,00,00,\
      05,50,00,00,00,b5,89,fb,38,19,84,c2,cb,5c,6c,23,6d,57,00,77,6e,c0,02,64,87,\
      00,0b,28,00,00,00,00,10,01,06,00,00,00,00,00,05,50,00,00,00,b5,89,fb,38,19,\
      84,c2,cb,5c,6c,23,6d,57,00,77,6e,c0,02,64,87,00,00,14,00,fd,01,02,00,01,01,\
      00,00,00,00,00,05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,\
      05,20,00,00,00,20,02,00,00,00,00,14,00,9d,01,02,00,01,01,00,00,00,00,00,05,\
      04,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,06,00,00,00,00,\
      00,28,00,15,00,00,00,01,06,00,00,00,00,00,05,50,00,00,00,49,59,9d,77,91,56,\
      e5,55,dc,f4,e2,0e,a7,8b,eb,ca,7b,42,13,56,01,01,00,00,00,00,00,05,12,00,00,\
      00,01,01,00,00,00,00,00,05,12,00,00,00

    8. #8
      Usuario Avatar de Laura Zion
      Registrado
      nov 2012
      Ubicación
      Parma, Italy
      Mensajes
      12

      Re: No funciona el Windows defender en mi PC( Windows Vista)

      contenido de OTL.Txt :

      OTL logfile created on: 08/11/2012 1:05:02 - Run 1
      OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Madworld\Desktop
      Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
      Internet Explorer (Version = 9.0.8112.16421)
      Locale: 00000C0A | Country: España | Language: ESN | Date Format: dd/MM/yyyy

      3,00 Gb Total Physical Memory | 1,74 Gb Available Physical Memory | 57,99% Memory free
      6,20 Gb Paging File | 4,88 Gb Available in Paging File | 78,72% Paging File free
      Paging file location(s): ?:\pagefile.sys [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
      Drive C: | 220,54 Gb Total Space | 114,23 Gb Free Space | 51,79% Space Free | Partition Type: NTFS
      Drive D: | 12,34 Gb Total Space | 3,00 Gb Free Space | 24,31% Space Free | Partition Type: NTFS

      Computer Name: CARMEN | User Name: Madworld | Logged in as Administrator.
      Boot Mode: Normal | Scan Mode: Current user
      Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

      ========== Processes (SafeList) ==========

      PRC - C:\Users\Madworld\Desktop\OTL.exe (OldTimer Tools)
      PRC - C:\Program Files\AVG\AVG2013\avgui.exe (AVG Technologies CZ, s.r.o.)
      PRC - C:\Program Files\AVG\AVG2013\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
      PRC - C:\Program Files\AVG\AVG2013\avgnsx.exe (AVG Technologies CZ, s.r.o.)
      PRC - C:\Program Files\AVG\AVG2013\avgrsx.exe (AVG Technologies CZ, s.r.o.)
      PRC - C:\Program Files\AVG\AVG2013\avgidsagent.exe (AVG Technologies CZ, s.r.o.)
      PRC - C:\Program Files\AVG\AVG2013\avgemcx.exe (AVG Technologies CZ, s.r.o.)
      PRC - C:\Program Files\AVG\AVG2013\avgcsrvx.exe (AVG Technologies CZ, s.r.o.)
      PRC - C:\Program Files\BrowserCompanion\BCHelper.exe (Blabbers Communications LTD)
      PRC - C:\Program Files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe (Research In Motion Limited)
      PRC - C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe (Motorola Inc.)
      PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
      PRC - C:\WINDOWS\System32\conime.exe (Microsoft Corporation)
      PRC - C:\WINDOWS\System32\NMSAccess32.exe ()
      PRC - C:\Program Files\Synaptics\SynTP\SynTPStart.exe (Synaptics, Inc.)
      PRC - C:\WINDOWS\RtHDVCpl.exe (Realtek Semiconductor)
      PRC - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Intel Corporation)
      PRC - C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
      PRC - C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe (Wireless Service)


      ========== Modules (No Company Name) ==========

      MOD - C:\Program Files\BrowserCompanion\sqlite3.dll ()
      MOD - C:\WINDOWS\System32\WlanApp.dll ()
      MOD - C:\Program Files\Hp\QuickPlay\Kernel\TV\CLTinyDB.dll ()
      MOD - C:\Program Files\Hp\QuickPlay\Kernel\TV\CLCapEngine.dll ()
      MOD - C:\Program Files\Hp\QuickPlay\Kernel\TV\CLSchMgr.dll ()
      MOD - C:\Program Files\Hp\QuickPlay\Kernel\TV\CLCapSvcps.dll ()
      MOD - C:\Program Files\Hp\QuickPlay\Kernel\common\MCEMediaStatus.dll ()
      MOD - C:\Program Files\Common Files\LightScribe\QtGui4.dll ()
      MOD - C:\Program Files\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll ()
      MOD - C:\Program Files\Common Files\LightScribe\QtCore4.dll ()


      ========== Services (SafeList) ==========

      SRV - (.1214294769) -- C:\Program Files\1214294769\Madworld1214294769L.exe File not found
      SRV - (avgwd) -- C:\Program Files\AVG\AVG2013\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
      SRV - (AVGIDSAgent) -- C:\Program Files\AVG\AVG2013\avgidsagent.exe (AVG Technologies CZ, s.r.o.)
      SRV - (SkypeUpdate) -- C:\Program Files\Skype\Updater\Updater.exe (Skype Technologies)
      SRV - (FLEXnet Licensing Service) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
      SRV - (NMSAccess32) -- C:\WINDOWS\System32\NMSAccess32.exe ()
      SRV - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
      SRV - (IAANTMON) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Intel Corporation)
      SRV - (Com4Qlb) -- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe (Hewlett-Packard Development Company, L.P.)
      SRV - (IDriverT) -- C:\Program Files\Roxio\Roxio MyDVD Premier\InstallShield\Driver\1050\Intel 32\IDriverT.exe (Macrovision Corporation)


      ========== Driver Services (SafeList) ==========

      DRV - (NwlnkFwd) -- system32\DRIVERS\nwlnkfwd.sys File not found
      DRV - (NwlnkFlt) -- system32\DRIVERS\nwlnkflt.sys File not found
      DRV - (IpInIp) -- system32\DRIVERS\ipinip.sys File not found
      DRV - (hwdatacard) -- system32\DRIVERS\ewusbmdm.sys File not found
      DRV - (blbdrive) -- C:\Windows\system32\drivers\blbdrive.sys File not found
      DRV - (Avgmfx86) -- C:\WINDOWS\System32\drivers\avgmfx86.sys (AVG Technologies CZ, s.r.o.)
      DRV - (Avgldx86) -- C:\WINDOWS\System32\drivers\avgldx86.sys (AVG Technologies CZ, s.r.o.)
      DRV - (Avgtdix) -- C:\WINDOWS\System32\drivers\avgtdix.sys (AVG Technologies CZ, s.r.o.)
      DRV - (Avglogx) -- C:\WINDOWS\System32\drivers\avglogx.sys (AVG Technologies CZ, s.r.o.)
      DRV - (AVGIDSShim) -- C:\WINDOWS\System32\drivers\avgidsshimx.sys (AVG Technologies CZ, s.r.o. )
      DRV - (AVGIDSHX) -- C:\WINDOWS\System32\drivers\avgidshx.sys (AVG Technologies CZ, s.r.o. )
      DRV - (Avgrkx86) -- C:\WINDOWS\System32\drivers\avgrkx86.sys (AVG Technologies CZ, s.r.o.)
      DRV - (AVGIDSDriver) -- C:\WINDOWS\System32\drivers\avgidsdriverx.sys (AVG Technologies CZ, s.r.o. )
      DRV - (NETwLv32) -- C:\WINDOWS\System32\drivers\NETwLv32.sys (Intel Corporation)
      DRV - (smserial) -- C:\WINDOWS\System32\drivers\smserial.sys (Motorola Inc.)
      DRV - (nvlddmkm) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys (NVIDIA Corporation)
      DRV - (ZTEusbnet) -- C:\WINDOWS\System32\drivers\ZTEusbnet.sys (ZTE Corporation)
      DRV - (ZTEusbvoice) -- C:\WINDOWS\System32\drivers\zteusbvoice.sys (ZTE Incorporated)
      DRV - (ZTEusbser6k) -- C:\WINDOWS\System32\drivers\ZTEusbser6k.sys (ZTE Incorporated)
      DRV - (ZTEusbnmea) -- C:\WINDOWS\System32\drivers\ZTEusbnmea.sys (ZTE Incorporated)
      DRV - (ZTEusbmdm6k) -- C:\WINDOWS\System32\drivers\ZTEusbmdm6k.sys (ZTE Incorporated)
      DRV - (massfilter) -- C:\WINDOWS\System32\drivers\massfilter.sys (ZTE Incorporated)
      DRV - (NETw5v32) -- C:\WINDOWS\System32\drivers\NETw5v32.sys (Intel Corporation)
      DRV - (netr28u) -- C:\WINDOWS\System32\drivers\netr28u.sys (Ralink Technology Corp.)
      DRV - (NETw4v32) -- C:\WINDOWS\System32\drivers\NETw4v32.sys (Intel Corporation)
      DRV - (RTL8169) -- C:\WINDOWS\System32\drivers\Rtlh86.sys (Realtek Corporation )
      DRV - (HpqRemHid) -- C:\WINDOWS\System32\drivers\HpqRemHid.sys (Hewlett-Packard Development Company, L.P.)
      DRV - (HpqKbFiltr) -- C:\WINDOWS\System32\drivers\HpqKbFiltr.sys (Hewlett-Packard Development Company, L.P.)
      DRV - (rismxdp) -- C:\WINDOWS\System32\drivers\rixdptsk.sys (REDC)
      DRV - (rimmptsk) -- C:\WINDOWS\System32\drivers\rimmptsk.sys (REDC)
      DRV - (rimsptsk) -- C:\WINDOWS\System32\drivers\rimsptsk.sys (REDC)
      DRV - (NETw3v32) -- C:\WINDOWS\System32\drivers\NETw3v32.sys (Intel® Corporation)
      DRV - (ANIO) -- C:\WINDOWS\System32\ANIO.sys (Alpha Networks Inc.)


      ========== Standard Registry (All) ==========


      ========== Internet Explorer ==========

      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = Bing
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft
      IE - HKLM\..\URLSearchHook: {9c905b42-976e-43c1-bc30-fc5937017909} - C:\Program Files\shARES\tbshAR.dll (Conduit Ltd.)
      IE - HKLM\..\SearchScopes,DefaultScope = {afdbddaa-5d3f-42ee-b79c-185a7020515b}
      IE - HKLM\..\SearchScopes\{0CCCA5AD-897C-4905-BCDB-5E64778A1294}: "URL" = http://es.kelkoopartners.net/ctl/do/search?siteSearchQuery={searchTerms}&fromform=true&x=true&y=true&partner=hp&partnerId=96913937
      IE - HKLM\..\SearchScopes\{5E565573-14BC-4B7B-AA16-FC078082CC59}: "URL" = http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=1127&query={searchTerms}&invocationType=tb50hpcnnbie7-es-es
      IE - HKLM\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT1854633

      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm
      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Page_Transitions = 1
      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.es/
      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
      IE - HKCU\..\URLSearchHook: {91C18ED5-5E1C-4AE5-A148-A861DE8C8E16} - No CLSID value found
      IE - HKCU\..\URLSearchHook: {9c905b42-976e-43c1-bc30-fc5937017909} - C:\Program Files\shARES\tbshAR.dll (Conduit Ltd.)
      IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\System32\ieframe.dll (Microsoft Corporation)
      IE - HKCU\..\SearchScopes,DefaultScope = {9F3C9795-A687-4E47-806B-3A879FB44B18}
      IE - HKCU\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/web/{searchTerms}?babsrc=SP_ss&affID=101387&mntrId=f0a5ff03000000000000001cbfab5d33
      IE - HKCU\..\SearchScopes\{33B43352-97E5-47CC-AC4D-B9F6E8B5ECA8}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=100000027&src=crm&q={searchTerms}&locale=es_ES&apn_ptnrs=U3&apn_dtid=OSJ222SUES&apn_uid=60E40803-4083-4A73-94B5-D23BEDD31D2D&apn_sauid=87E06226-A75B-4246-81F4-43D33C419966
      IE - HKCU\..\SearchScopes\{9F3C9795-A687-4E47-806B-3A879FB44B18}: "URL" = http://www.google.es/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}
      IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      ========== FireFox ==========

      FF - prefs.js..browser.search.defaultenginename: "Search the web (Babylon)"
      FF - prefs.js..browser.search.order.1: "Search the web (Babylon)"
      FF - prefs.js..browser.search.selectedEngine: "Search the web (Babylon)"
      FF - prefs.js..browser.startup.homepage: "http://search.babylon.com/?babsrc=HP_ss&affID=101387&mntrId=f0a5ff03000000000000001cbfab5d33"
      FF - prefs.js..extensions.enabledAddons: [email protected]:1.5.0
      FF - prefs.js..extensions.enabledAddons: [email protected]:0.85.88
      FF - prefs.js..extensions.enabledAddons: [email protected]:1.0.5
      FF - prefs.js..extensions.enabledAddons: {972ce4c6-7e08-4474-a285-3208198ce6fd}:11.0
      FF - prefs.js..keyword.URL: "http://search.babylon.com/?babsrc=SP_ss&mntrId=f0a5ff03000000000000001cbfab5d33&tlver=1.5.29.1&instlRef=sst&babTrack&q="


      FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
      FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Web Player\npdivx32.dll (DivX,Inc.)
      FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.9.2: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.3: C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5: C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@rim.com/npappworld: C:\Program Files\Research In Motion Limited\Complemento para explorador de BlackBerry App World\npappworld.dll ()
      FF - HKLM\Software\MozillaPlugins\@RIM.com/WebSLLauncher,version=1.0: C:\Program Files\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ()
      FF - HKLM\Software\MozillaPlugins\@viewpoint.com/VMP: C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll ()
      FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Madworld\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
      FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Madworld\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)

      FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009/07/01 14:11:05 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 11.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/10/29 00:49:35 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 11.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012/11/06 22:36:47 | 000,000,000 | ---D | M]

      [2012/03/30 14:26:22 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\Extensions
      [2012/10/06 13:32:36 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\Firefox\Profiles\irc0tnyq.default\extensions
      [2012/11/06 22:37:06 | 000,000,000 | ---D | M] (Browser Companion Helper) -- C:\Users\Madworld\AppData\Roaming\mozilla\Firefox\Profiles\irc0tnyq.default\extensions\[email protected]
      [2012/11/06 22:37:06 | 000,000,000 | ---D | M] ("I Want This") -- C:\Users\Madworld\AppData\Roaming\mozilla\Firefox\Profiles\irc0tnyq.default\extensions\[email protected]
      [2012/11/06 22:37:06 | 000,000,000 | ---D | M] (Babylon) -- C:\Users\Madworld\AppData\Roaming\mozilla\Firefox\Profiles\irc0tnyq.default\extensions\[email protected]
      [2012/11/06 22:37:06 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\Firefox\Profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\extensionCode
      [2012/11/06 22:37:06 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\Firefox\Profiles\irc0tnyq.default\extensions\[email protected]\firefox-production\chrome\content\extensionCode
      [2012/10/07 04:30:35 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\firefox\profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache\011f52b019dfc80eedf4923b9cf70424_expire
      [2012/10/06 12:42:15 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\firefox\profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache\0324adea3b6ec02af09ea4ae9424591b_expire
      [2012/10/06 12:42:19 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\firefox\profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache\0e607f1c9db393880b0e8d9a5f0e6a56_expire
      [2012/10/26 22:25:54 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\firefox\profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache\292124057d00cb0fa73db6b90d079658_expire
      [2012/10/07 04:30:35 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\firefox\profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache\35c5ead7c694459d2b46d88482247348_expire
      [2012/10/06 12:42:17 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\firefox\profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache\4d3d10bd28ff623813254a49b26be41f_expire
      [2012/08/26 15:50:04 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\firefox\profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache\5496a80fec56909d677fa574ae75bd3d_expire
      [2012/10/26 22:25:54 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\firefox\profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache\79fb7d8c9c120c501ff74f2666f1ed76_expire
      [2012/10/07 04:30:35 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\firefox\profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache\aa707a6960d8be8e4f938cd6ea9017ad_expire
      [2012/10/06 12:42:16 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\firefox\profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache\c35cfd75531450ddd7c5a167199afe47_expire
      [2012/10/06 12:42:18 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\firefox\profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache\c5538e5049ca9b04ad62d9a930947369_expire
      [2012/08/26 15:50:04 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\firefox\profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache\d83bb387de1d7c4401815e133de06c6b_expire
      [2012/10/06 12:42:17 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\firefox\profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache\e919434ec29526b28593c426e4264271_expire
      [2012/10/06 12:42:16 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\firefox\profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache\ec1b37806815747883da20a9da47407e_expire
      [2012/10/06 12:42:19 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\firefox\profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache\ece71b71690fad200cbed95871ef4bb2_expire
      [2012/10/26 22:25:54 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\firefox\profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache\ee1ab4cb8e86769e288abaa46407a623_expire
      [2012/10/06 12:42:18 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\firefox\profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache\f03527c67e08602d2e4c18ae7867300d_expire
      [2012/08/26 15:50:04 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\firefox\profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache\f282d4c379729cc39bc619fc8a44d455_expire
      [2012/10/06 12:42:17 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\firefox\profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache\fa74672918974682c82b8d91dfbe0d6b_expire
      [2012/10/06 12:42:17 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\Madworld\AppData\Roaming\mozilla\firefox\profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache\ff4d692d5e7cccbc4b3e9ef4062b1c6f_expire
      [2012/03/30 14:25:39 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
      [2012/03/30 14:25:39 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
      [2012/03/13 05:38:06 | 000,097,208 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
      [2008/11/21 22:45:04 | 001,332,224 | ---- | M] (DivX,Inc.) -- C:\Program Files\mozilla firefox\plugins\npdivx32.dll
      [2010/09/23 13:42:24 | 000,095,672 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\mozilla firefox\plugins\nppdf32.dll
      [2009/11/21 13:21:25 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin.dll
      [2009/11/21 13:21:25 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll
      [2009/11/21 13:21:25 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll
      [2009/11/21 13:21:25 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll
      [2009/11/21 13:21:25 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll
      [2009/11/21 13:21:26 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll
      [2009/11/21 13:21:26 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll
      [2012/08/03 21:23:44 | 000,002,288 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml
      [2012/03/13 06:06:36 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
      [2012/03/13 07:14:58 | 000,003,996 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\drae.xml
      [2012/03/13 07:14:58 | 000,001,143 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-es.xml
      [2012/03/13 06:06:36 | 000,002,364 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml
      [2012/03/13 06:06:36 | 000,002,040 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\twitter.xml
      [2012/03/13 07:14:58 | 000,001,178 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-es.xml
      [2012/03/13 07:14:58 | 000,001,102 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-es.xml

      ========== Chrome ==========

      CHR - homepage: Google
      CHR - default_search_provider: Search the web (Babylon) (Enabled)
      CHR - default_search_provider: search_url = http://search.babylon.com/web/{searchTerms}?babsrc=SP_ss&affID=101387&mntrId=f0a5ff03000000000000001cbfab5d33
      CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
      CHR - homepage: Google
      CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
      CHR - plugin: Native Client (Enabled) = C:\Users\Madworld\AppData\Local\Google\Chrome\Application\23.0.1271.64\ppGoogleNaClPluginChrome.dll
      CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Madworld\AppData\Local\Google\Chrome\Application\23.0.1271.64\pdf.dll
      CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Madworld\AppData\Local\Google\Chrome\Application\23.0.1271.64\gcswf32.dll
      CHR - plugin: Shockwave Flash (Disabled) = C:\Users\Madworld\AppData\Local\Google\Chrome\User Data\PepperFlash\11.1.31.203\pepflashplayer.dll
      CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32.dll
      CHR - plugin: Norton Confidential (Enabled) = C:\Users\Madworld\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2012.5.0.140_0\npcoplgn.dll
      CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Adobe\Reader 8.0\Reader\Browser\nppdf32.dll
      CHR - plugin: Java Deployment Toolkit 6.0.290.11 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll
      CHR - plugin: Java(TM) Platform SE 6 U29 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
      CHR - plugin: DivX Web Player (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npdivx32.dll
      CHR - plugin: QuickTime Plug-in 7.6.5 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
      CHR - plugin: QuickTime Plug-in 7.6.5 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
      CHR - plugin: QuickTime Plug-in 7.6.5 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
      CHR - plugin: QuickTime Plug-in 7.6.5 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
      CHR - plugin: QuickTime Plug-in 7.6.5 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
      CHR - plugin: QuickTime Plug-in 7.6.5 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
      CHR - plugin: QuickTime Plug-in 7.6.5 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
      CHR - plugin: Microsoft Office Live Plug-in for Firefox (Enabled) = C:\Program Files\Microsoft\Office Live\npOLW.dll
      CHR - plugin: MetaStream 3 Plugin (Enabled) = C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll
      CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
      CHR - plugin: Google Update (Enabled) = C:\Users\Madworld\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll
      CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll
      CHR - plugin: Windows Presentation Foundation (Enabled) = c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
      CHR - Extension: YouTube = C:\Users\Madworld\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_1\
      CHR - Extension: B\u00FAsqueda de Google = C:\Users\Madworld\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_1\
      CHR - Extension: Gmail = C:\Users\Madworld\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\

      O1 HOSTS File: ([2010/09/13 15:05:13 | 000,000,851 | ---- | M]) - C:\WINDOWS\System32\drivers\etc\hosts
      O1 - Hosts: 127.0.0.1 localhost
      O1 - Hosts: ::1 localhost
      O2 - BHO: (Browser Companion Helper) - {00cbb66b-1d3b-46d3-9577-323a336acb50} - C:\Program Files\BrowserCompanion\jsloader.dll ()
      O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
      O2 - BHO: (Aplicación auxiliar de vínculos de Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
      O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
      O2 - BHO: (no name) - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - No CLSID value found.
      O2 - BHO: (BrowserHelper Class) - {8A9D74F9-560B-4FE7-ABEB-3B2E638E5CD6} - C:\Program Files\SGPSA\SearchAssistant.dll File not found
      O2 - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
      O2 - BHO: (Browser Companion Helper Verifier) - {963B125B-8B21-49A2-A3A8-E37092276531} - C:\Program Files\BrowserCompanion\updatebhoWin32.dll ()
      O2 - BHO: (shARES Toolbar) - {9c905b42-976e-43c1-bc30-fc5937017909} - C:\Program Files\shARES\tbshAR.dll (Conduit Ltd.)
      O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
      O3 - HKLM\..\Toolbar: (shARES Toolbar) - {9c905b42-976e-43c1-bc30-fc5937017909} - C:\Program Files\shARES\tbshAR.dll (Conduit Ltd.)
      O3 - HKLM\..\Toolbar: (no name) - {DE9C389F-3316-41A7-809B-AA305ED9D922} - No CLSID value found.
      O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
      O3 - HKCU\..\Toolbar\WebBrowser: (shARES Toolbar) - {9C905B42-976E-43C1-BC30-FC5937017909} - C:\Program Files\shARES\tbshAR.dll (Conduit Ltd.)
      O3 - HKCU\..\Toolbar\WebBrowser: (&Links) - {F2CF5485-4E02-4F68-819C-B92DE9277049} - C:\WINDOWS\System32\ieframe.dll (Microsoft Corporation)
      O4 - HKLM..\Run: [Adobe ARM] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
      O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
      O4 - HKLM..\Run: [AdobeCS4ServiceManager] C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe (Adobe Systems Incorporated)
      O4 - HKLM..\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe (Wireless Service)
      O4 - HKLM..\Run: [AVG_UI] C:\Program Files\AVG\AVG2013\avgui.exe (AVG Technologies CZ, s.r.o.)
      O4 - HKLM..\Run: [Browser companion helper] C:\Program Files\BrowserCompanion\BCHelper.exe (Blabbers Communications LTD)
      O4 - HKLM..\Run: [FBSSA] C:\Program Files\SGPSA\ie3sh.exe File not found
      O4 - HKLM..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe (Hewlett-Packard)
      O4 - HKLM..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\hpwuschd2.exe (Hewlett-Packard)
      O4 - HKLM..\Run: [hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe (Hewlett-Packard Development Company, L.P.)
      O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
      O4 - HKLM..\Run: [NvCplDaemon] C:\Windows\System32\NvCpl.dll (NVIDIA Corporation)
      O4 - HKLM..\Run: [OnScreenDisplay] C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe ( Hewlett-Packard Development Company, L.P.)
      O4 - HKLM..\Run: [QlbCtrl] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe ( Hewlett-Packard Development Company, L.P.)
      O4 - HKLM..\Run: [QPService] C:\Program Files\HP\QuickPlay\QPService.exe (CyberLink Corp.)
      O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\QTTask.exe (Apple Inc.)
      O4 - HKLM..\Run: [RIMBBLaunchAgent.exe] C:\Program Files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe (Research In Motion Limited)
      O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
      O4 - HKLM..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe (Motorola Inc.)
      O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Common Files\Java\Java Update\jusched.exe (Sun Microsystems, Inc.)
      O4 - HKLM..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated)
      O4 - HKLM..\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe (Synaptics, Inc.)
      O4 - HKLM..\Run: [UCam_Menu] C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
      O4 - HKLM..\Run: [WAWifiMessage] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe (Hewlett-Packard Development Company, L.P.)
      O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
      O4 - HKCU..\Run: [AdobeBridge] File not found
      O4 - HKCU..\Run: [ehTray.exe] C:\WINDOWS\ehome\ehtray.exe (Microsoft Corporation)
      O4 - HKCU..\Run: [Google Update] C:\Users\Madworld\AppData\Local\Google\Update\GoogleUpdate.exe (Google Inc.)
      O4 - HKCU..\Run: [ISUSPM] C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe (Macrovision Corporation)
      O4 - HKCU..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe (Hewlett-Packard Company)
      O4 - HKCU..\Run: [Nokia Internet Modem] "C:\Program Files\Nokia\Nokia Internet Modem\WellPhone2.exe" /background File not found
      O4 - HKCU..\Run: [Sidebar] C:\Program Files\windows sidebar\sidebar.exe (Microsoft Corporation)
      O4 - HKCU..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\wmpnscfg.exe (Microsoft Corporation)
      O4 - Startup: C:\Users\Madworld\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Recorte de pantalla e Inicio rápido de OneNote 2007.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: BindDirectlyToPropertySetStorage = 0
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 2
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableStatusMessages = 0
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
      O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFolderOptions = 0
      O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149
      O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
      O8 - Extra context menu item: E&xportar a Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
      O9 - Extra Button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
      O9 - Extra 'Tools' menuitem : @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
      O9 - Extra Button: Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
      O9 - Extra 'Tools' menuitem : &Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
      O9 - Extra Button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - Reg Error: Key error. File not found
      O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\WINDOWS\System32\nlaapi.dll (Microsoft Corporation)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\WINDOWS\System32\NapiNSP.dll (Microsoft Corporation)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\WINDOWS\System32\pnrpnsp.dll (Microsoft Corporation)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\System32\pnrpnsp.dll (Microsoft Corporation)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\WINDOWS\System32\winrnr.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000021 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000022 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000023 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000024 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000025 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000026 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000027 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000028 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000029 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000030 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000031 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000032 - C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation)
      O13 - gopher Prefix: missing
      O15 - HKCU\..Trusted Ranges: Range1 ([http] in Intranet local)
      O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://appldnld.apple.com.edgesuite....x/qtplugin.cab (QuickTime Object)
      O16 - DPF: {0972B098-DEE9-4279-AC7E-4BAAA029102D} http://assets.photobox.com/assets/au...20091001020847 (PhotoboxPhotowaysUploader5 Control)
      O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} http://upload.facebook.com/controls/...oUploader5.cab (Facebook Photo Uploader 5 Control)
      O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} http://gfx1.hotmail.com/mail/w3/reso...PUpldes-es.cab (MSN Photo Upload Tool)
      O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} http://express.foto.com/ImageUploader5.cab (Image Uploader Control)
      O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} http://download.divx.com/player/DivXBrowserPlugin.cab (DivXBrowserPlugin Object)
      O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebook.com/controls/...Uploader55.cab (Facebook Photo Uploader 5 Control)
      O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Reg Error: Value error.)
      O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get.../ultrashim.cab (Reg Error: Key error.)
      O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_29)
      O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 10.9.2)
      O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} http://content.systemrequirementslab...l_4.5.11.0.cab (SysInfo Class)
      O16 - DPF: {DE22A7AB-A739-4C58-AD52-21F9CD6306B7} http://download.microsoft.com/downlo...4/clearadj.cab (CTAdjust Class)
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{34462E64-7F53-42C8-9099-1A162D18B0E6}: DhcpNameServer = 192.168.1.254
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{836686A6-23DB-449B-BC78-05E55A1348FC}: DhcpNameServer = 212.73.32.3 212.73.32.67
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E29645F0-9407-448E-8B5A-54AD0946616E}: DhcpNameServer = 192.168.0.1
      O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll (Microsoft Corporation)
      O18 - Protocol\Handler\base64 {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files\BrowserCompanion\tdataprotocol.dll ()
      O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\System32\urlmon.dll (Microsoft Corporation)
      O18 - Protocol\Handler\chrome {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files\BrowserCompanion\tdataprotocol.dll ()
      O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\System32\MSVidCtl.dll (Microsoft Corporation)
      O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\System32\urlmon.dll (Microsoft Corporation)
      O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\System32\urlmon.dll (Microsoft Corporation)
      O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\System32\urlmon.dll (Microsoft Corporation)
      O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\System32\urlmon.dll (Microsoft Corporation)
      O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\System32\itss.dll (Microsoft Corporation)
      O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll (Microsoft Corporation)
      O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
      O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\System32\urlmon.dll (Microsoft Corporation)
      O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll (Microsoft Corporation)
      O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\System32\inetcomm.dll (Microsoft Corporation)
      O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\System32\urlmon.dll (Microsoft Corporation)
      O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
      O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\System32\itss.dll (Microsoft Corporation)
      O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\microsoft shared\Information Retrieval\msitss.dll (Microsoft Corporation)
      O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
      O18 - Protocol\Handler\prox {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files\BrowserCompanion\tdataprotocol.dll ()
      O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll (Microsoft Corporation)
      O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
      O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\System32\MSVidCtl.dll (Microsoft Corporation)
      O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll (Microsoft Corporation)
      O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
      O18 - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll (Microsoft Corporation)
      O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
      O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
      O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
      O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
      O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\WINDOWS\System32\userinit.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\Windows\System32\shell32.dll (Microsoft Corporation)
      O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\Windows\System32\sysdm.cpl (Microsoft Corporation)
      O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\System32\webcheck.dll (Microsoft Corporation)
      O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon - C:\WINDOWS\System32\browseui.dll (Microsoft Corporation)
      O24 - Desktop WallPaper: C:\Users\Madworld\AppData\Roaming\Microsoft\Windows Photo Gallery\Papel tapiz de Galería fotográfica de Windows.jpg
      O24 - Desktop BackupWallPaper: C:\Users\Madworld\AppData\Roaming\Microsoft\Windows Photo Gallery\Papel tapiz de Galería fotográfica de Windows.jpg
      O29 - HKLM SecurityProviders - (credssp.dll) - C:\Windows\System32\credssp.dll (Microsoft Corporation)
      O30 - LSA: Authentication Packages - (msv1_0) - C:\Windows\System32\msv1_0.dll (Microsoft Corporation)
      O30 - LSA: Security Packages - (kerberos) - C:\Windows\System32\kerberos.dll (Microsoft Corporation)
      O30 - LSA: Security Packages - (msv1_0) - C:\Windows\System32\msv1_0.dll (Microsoft Corporation)
      O30 - LSA: Security Packages - (schannel) - C:\Windows\System32\schannel.dll (Microsoft Corporation)
      O30 - LSA: Security Packages - (wdigest) - C:\Windows\System32\wdigest.dll (Microsoft Corporation)
      O30 - LSA: Security Packages - (tspkg) - C:\Windows\System32\tspkg.dll (Microsoft Corporation)
      O31 - SafeBoot: AlternateShell - cmd.exe
      O32 - HKLM CDRom: AutoRun - 1
      O32 - AutoRun File - [2006/09/18 22:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
      O32 - AutoRun File - [2005/09/11 16:18:54 | 000,000,340 | -HS- | M] () - D:\AUTOMODE -- [ NTFS ]
      O33 - MountPoints2\{53205f7e-6d5a-11de-b370-001e6819acc5}\Shell - "" = AutoRun
      O33 - MountPoints2\{53205f7e-6d5a-11de-b370-001e6819acc5}\Shell\AutoRun\command - "" = G:\LaunchU3.exe -a
      O33 - MountPoints2\{8e3bcbea-9d83-11df-a4d2-00a0c6000000}\Shell - "" = AutoRun
      O33 - MountPoints2\{8e3bcbea-9d83-11df-a4d2-00a0c6000000}\Shell\AutoRun\command - "" = G:\setup_vmc_lite.exe /checkApplicationPresence
      O33 - MountPoints2\{a9b3fe4f-a5f5-11df-8461-001e6819acc5}\Shell - "" = AutoRun
      O33 - MountPoints2\{a9b3fe4f-a5f5-11df-8461-001e6819acc5}\Shell\AutoRun\command - "" = F:\setup_vmc_lite.exe /checkApplicationPresence
      O33 - MountPoints2\{a9b3fe51-a5f5-11df-8461-001e6819acc5}\Shell - "" = AutoRun
      O33 - MountPoints2\{a9b3fe51-a5f5-11df-8461-001e6819acc5}\Shell\AutoRun\command - "" = F:\setup_vmc_lite.exe /checkApplicationPresence
      O33 - MountPoints2\{b3570081-77f7-11e1-88e0-001e6819acc5}\Shell - "" = AutoRun
      O33 - MountPoints2\{b3570081-77f7-11e1-88e0-001e6819acc5}\Shell\AutoRun\command - "" = F:\application\Setup.exe
      O33 - MountPoints2\{d5409505-c88a-11dd-979c-001e6819acc5}\Shell - "" = AutoRun
      O33 - MountPoints2\{d5409505-c88a-11dd-979c-001e6819acc5}\Shell\AutoRun\command - "" = F:\AutoRun.exe
      O33 - MountPoints2\{d5409529-c88a-11dd-979c-001e6819acc5}\Shell - "" = AutoRun
      O33 - MountPoints2\{d5409529-c88a-11dd-979c-001e6819acc5}\Shell\AutoRun\command - "" = F:\AutoRun.exe
      O34 - HKLM BootExecute: (autocheck autochk *)
      O35 - HKLM\..comfile [open] -- "%1" %*
      O35 - HKLM\..exefile [open] -- "%1" %*
      O37 - HKLM\...com [@ = comfile] -- "%1" %*
      O37 - HKLM\...exe [@ = exefile] -- "%1" %*
      O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
      O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

      ========== Files/Folders - Created Within 30 Days ==========

      [2012/11/08 01:01:19 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Madworld\Desktop\OTL.exe
      [2012/11/07 15:39:09 | 000,000,000 | ---D | C] -- C:\Users\Madworld\Desktop\Vista
      [2012/11/06 23:00:28 | 000,694,507 | ---- | C] (Farbar) -- C:\Users\Madworld\Desktop\FSS.exe
      [2012/11/05 22:38:28 | 000,000,000 | ---D | C] -- C:\Users\Madworld\AppData\Local\{629CBFCD-48D0-4937-A4C2-0E1B2930BD26}
      [2012/10/30 21:02:35 | 000,000,000 | ---D | C] -- C:\Users\Madworld\AppData\Local\{B4825FAC-4454-430E-9626-7BEEFA426C97}
      [2012/10/29 01:39:06 | 000,000,000 | ---D | C] -- C:\Users\Madworld\AppData\Roaming\Apple Computer
      [2012/10/29 01:04:57 | 000,000,000 | ---D | C] -- C:\Users\Madworld\AppData\Roaming\Malwarebytes
      [2012/10/29 01:04:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
      [2012/10/29 01:04:47 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
      [2012/10/29 00:51:34 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
      [2012/10/29 00:48:46 | 000,000,000 | ---D | C] -- C:\Program Files\QuickTime(95)
      [2012/10/29 00:34:27 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update(0)
      [2012/10/28 16:47:46 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation
      [2012/10/28 16:46:12 | 000,000,000 | ---D | C] -- C:\Users\Madworld\{affdbf26-28cd-4520-bee1-89d33757ee98}
      [2012/10/28 16:44:16 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
      [2012/10/27 16:11:41 | 000,000,000 | ---D | C] -- C:\Users\Madworld\Documents\BlackBerry
      [2012/10/27 1647 | 000,000,000 | ---D | C] -- C:\Program Files\Research In Motion Limited
      [2012/10/27 16:09:05 | 000,000,000 | ---D | C] -- C:\Users\Madworld\AppData\Local\Research In Motion
      [2012/10/27 16:08:58 | 000,000,000 | ---D | C] -- C:\Users\Madworld\AppData\Roaming\Research In Motion
      [2012/10/27 16:05:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlackBerry
      [2012/10/27 16:05:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Research In Motion
      [2012/10/27 16:05:02 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\XCPCSync.OEM
      [2012/10/27 16:05:02 | 000,000,000 | ---D | C] -- C:\Program Files\Research In Motion
      [2012/10/27 16:05:02 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Research In Motion
      [2012/10/27 13:31:29 | 000,000,000 | ---D | C] -- C:\NVIDIA
      [2012/10/27 13:23:15 | 000,000,000 | ---D | C] -- C:\Program Files\SystemRequirementsLab
      [2012/10/26 16:53:19 | 002,382,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
      [2012/10/26 16:53:16 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
      [2012/10/26 16:53:16 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
      [2012/10/26 16:53:16 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
      [2012/10/26 16:53:15 | 000,607,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
      [2012/10/26 16:53:12 | 001,800,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll
      [2012/10/26 16:53:12 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll
      [2012/10/26 16:53:09 | 001,427,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
      [2012/10/26 16:49:39 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
      [2012/10/26 16:43:40 | 000,246,760 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\javaws.exe
      [2012/10/26 16:43:09 | 000,174,056 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\javaw.exe
      [2012/10/26 16:43:09 | 000,093,672 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\WindowsAccessBridge.dll
      [2012/10/26 16:43:08 | 000,174,056 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\java.exe
      [2012/10/25 23:47:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
      [2012/10/22 14:29:44 | 000,000,000 | ---D | C] -- C:\Users\Madworld\AppData\Local\{552A117F-D6BC-42BA-8ED2-9BCF8B32678A}
      [2012/10/22 11:11:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Conjunto de programas de NCH
      [2012/10/22 11:11:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Utilidades
      [2012/10/21 12:34:36 | 000,000,000 | ---D | C] -- C:\Users\Madworld\AppData\Roaming\AVG2013
      [2012/10/21 12:32:50 | 000,000,000 | ---D | C] -- C:\Users\Madworld\AppData\Roaming\TuneUp Software
      [2012/10/21 12:31:47 | 000,000,000 | -H-D | C] -- C:\$AVG
      [2012/10/21 12:31:46 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG2013
      [2012/10/21 12:29:56 | 000,000,000 | ---D | C] -- C:\Program Files\AVG
      [2012/10/17 16:04:17 | 000,000,000 | ---D | C] -- C:\Users\Madworld\Documents\Downloads
      [2012/10/15 11:58:48 | 000,000,000 | ---D | C] -- C:\Users\Madworld\AppData\Local\{402CE158-6388-4412-BD14-BDC285E687D0}
      [2012/10/09 20:39:16 | 003,602,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
      [2012/10/09 20:39:16 | 003,550,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
      [2012/10/09 20:37:30 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll

      ========== Files - Modified Within 30 Days ==========

      [2055/09/19 07:29:11 | 000,002,012 | ---- | M] () -- C:\Windows\System32\NAV_75_cltDynam.dat
      [2012/11/08 01:01:25 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Madworld\Desktop\OTL.exe
      [2012/11/08 00:38:00 | 000,001,122 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1391232487-138261970-863980433-1000UA.job
      [2012/11/08 00:04:34 | 000,003,168 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
      [2012/11/08 00:04:34 | 000,003,168 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
      [2012/11/07 22:11:02 | 000,689,244 | ---- | M] () -- C:\Windows\System32\perfh00A.dat
      [2012/11/07 22:11:02 | 000,600,940 | ---- | M] () -- C:\Windows\System32\perfh009.dat
      [2012/11/07 22:11:02 | 000,137,376 | ---- | M] () -- C:\Windows\System32\perfc00A.dat
      [2012/11/07 22:11:02 | 000,108,822 | ---- | M] () -- C:\Windows\System32\perfc009.dat
      [2012/11/07 22:07:17 | 000,000,163 | ---- | M] () -- C:\Users\Public\Documents\hpqp.ini
      [2012/11/07 22:06:26 | 000,032,156 | ---- | M] () -- C:\ProgramData\nvModes.001
      [2012/11/07 22:05:33 | 000,032,156 | ---- | M] () -- C:\ProgramData\nvModes.dat
      [2012/11/07 22:04:39 | 000,065,536 | ---- | M] () -- C:\Windows\System32\Ikeext.etl
      [2012/11/07 22:04:31 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
      [2012/11/07 22:04:27 | 3219,578,880 | -HS- | M] () -- C:\hiberfil.sys
      [2012/11/07 15:38:33 | 000,014,499 | ---- | M] () -- C:\Users\Madworld\Desktop\Vista.zip
      [2012/11/07 00:52:03 | 000,092,672 | ---- | M] () -- C:\Users\Madworld\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
      [2012/11/06 23:45:52 | 000,002,057 | ---- | M] () -- C:\Users\Madworld\Desktop\Google Chrome.lnk
      [2012/11/06 23:01:03 | 000,694,507 | ---- | M] (Farbar) -- C:\Users\Madworld\Desktop\FSS.exe
      [2012/10/27 16:08:03 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_RimUsb_01007.Wdf
      [2012/10/27 16:07:26 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_RimSerial_01007.Wdf
      [2012/10/27 16:05:55 | 000,002,056 | ---- | M] () -- C:\Users\Public\Desktop\BlackBerry Desktop Software.lnk
      [2012/10/27 12:51:16 | 000,007,808 | ---- | M] () -- C:\Users\Madworld\AppData\Local\d3d9caps.dat
      [2012/10/26 16:42:20 | 000,093,672 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\WindowsAccessBridge.dll
      [2012/10/26 16:42:17 | 000,821,736 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\npDeployJava1.dll
      [2012/10/26 16:42:17 | 000,246,760 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\javaws.exe
      [2012/10/26 16:42:17 | 000,174,056 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\javaw.exe
      [2012/10/26 16:42:17 | 000,174,056 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\java.exe
      [2012/10/26 16:42:16 | 000,746,984 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\deployJava1.dll
      [2012/10/26 16:19:23 | 002,634,096 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
      [2012/10/26 10:38:01 | 000,001,070 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1391232487-138261970-863980433-1000Core.job
      [2012/10/25 23:47:57 | 000,000,818 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2013.lnk
      [2012/10/21 23:07:16 | 000,000,334 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForMadworld.job

      ========== Files Created - No Company Name ==========

      [2012/11/07 22:04:26 | 3219,578,880 | -HS- | C] () -- C:\hiberfil.sys
      [2012/11/07 15:38:33 | 000,014,499 | ---- | C] () -- C:\Users\Madworld\Desktop\Vista.zip
      [2012/11/07 00:51:32 | 736,704,512 | ---- | C] () -- C:\Users\Madworld\Desktop\[Divx-ITA] American Pie 2.avi
      [2012/10/27 16:08:03 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_RimUsb_01007.Wdf
      [2012/10/27 16:07:26 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_RimSerial_01007.Wdf
      [2012/10/27 16:05:55 | 000,002,056 | ---- | C] () -- C:\Users\Public\Desktop\BlackBerry Desktop Software.lnk
      [2012/10/22 11:11:09 | 000,000,981 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Express Zip, programa para comprimir archivos.lnk
      [2012/10/21 12:32:51 | 000,000,818 | ---- | C] () -- C:\Users\Public\Desktop\AVG 2013.lnk
      [2012/03/27 16:52:35 | 000,000,564 | ---- | C] () -- C:\Users\Madworld\AppData\Local\FSCache.dat
      [2012/02/24 12:38:23 | 000,000,050 | ---- | C] () -- C:\Windows\MegaManager.INI
      [2011/12/15 23:58:36 | 021,073,936 | ---- | C] () -- C:\Program Files\vlc-1.1.11-win32.exe
      [2011/09/15 01:11:16 | 001,048,576 | ---- | C] () -- C:\Windows\System32\syndata.bin
      [2009/10/19 21:40:42 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
      [2009/04/13 13:50:24 | 000,000,235 | ---- | C] () -- C:\Users\Madworld\AppData\Roaming\devices.xml
      [2009/04/13 13:50:24 | 000,000,012 | ---- | C] () -- C:\Users\Madworld\AppData\Roaming\settings.xml
      [2009/02/15 13:25:54 | 000,007,808 | ---- | C] () -- C:\Users\Madworld\AppData\Local\d3d9caps.dat
      [2008/12/26 15:05:50 | 000,032,156 | ---- | C] () -- C:\ProgramData\nvModes.dat
      [2008/12/26 15:05:50 | 000,032,156 | ---- | C] () -- C:\ProgramData\nvModes.001
      [2008/12/06 02:37:06 | 000,027,620 | ---- | C] () -- C:\Users\Madworld\AppData\Roaming\nvModes.001
      [2008/12/06 02:31:32 | 000,027,620 | ---- | C] () -- C:\Users\Madworld\AppData\Roaming\nvModes.dat
      [2008/12/05 19:15:04 | 000,092,672 | ---- | C] () -- C:\Users\Madworld\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

      ========== ZeroAccess Check ==========

      [2006/11/02 13:54:22 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

      [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

      [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
      "" = %SystemRoot%\system32\shell32.dll -- [2012/06/08 18:47:00 | 011,586,048 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
      "" = %systemroot%\system32\wbem\fastprox.dll -- [2009/04/11 07:28:19 | 000,614,912 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
      "" = %systemroot%\system32\wbem\wbemess.dll -- [2009/04/11 07:28:25 | 000,347,648 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Both

      ========== LOP Check ==========

      [2012/07/23 12:23:41 | 000,000,000 | ---D | M] -- C:\Users\Madworld\AppData\Roaming\Anvsoft
      [2012/10/21 12:34:36 | 000,000,000 | ---D | M] -- C:\Users\Madworld\AppData\Roaming\AVG2013
      [2012/08/03 21:23:40 | 000,000,000 | ---D | M] -- C:\Users\Madworld\AppData\Roaming\Babylon
      [2012/08/12 19:20:19 | 000,000,000 | ---D | M] -- C:\Users\Madworld\AppData\Roaming\Dropbox
      [2009/03/18 16:55:09 | 000,000,000 | ---D | M] -- C:\Users\Madworld\AppData\Roaming\FotoPrix
      [2009/01/12 15:16:00 | 000,000,000 | ---D | M] -- C:\Users\Madworld\AppData\Roaming\Megaupload
      [2011/10/29 23:14:24 | 000,000,000 | ---D | M] -- C:\Users\Madworld\AppData\Roaming\Nik Software
      [2012/02/25 14:55:40 | 000,000,000 | ---D | M] -- C:\Users\Madworld\AppData\Roaming\Pixmantec
      [2012/10/27 16:11:36 | 000,000,000 | ---D | M] -- C:\Users\Madworld\AppData\Roaming\Research In Motion
      [2012/11/06 22:37:06 | 000,000,000 | ---D | M] -- C:\Users\Madworld\AppData\Roaming\Spotify
      [2012/10/21 12:32:50 | 000,000,000 | ---D | M] -- C:\Users\Madworld\AppData\Roaming\TuneUp Software
      [2010/08/01 16:54:34 | 000,000,000 | ---D | M] -- C:\Users\Madworld\AppData\Roaming\Vodafone

      ========== Purity Check ==========



      < End of report >

    9. #9
      Moderador
      Avatar de @Maxfernandez
      Registrado
      dic 2007
      Ubicación
      Venezuela
      Mensajes
      16.076

      Re: No funciona el Windows defender en mi PC( Windows Vista)

      Hola.

      Realice lo siguiente:

      1. Sombree el contenido del siguiente recuadro (excepto la palabra código), luego haga clic derecho con el ratón > Copiar.
        Código:
        :OTL
        SRV - (.1214294769) -- C:\Program Files\1214294769\Madworld1214294769L.exe File not found
        MOD - C:\Program Files\BrowserCompanion\sqlite3.dll ()
        IE - HKLM\..\URLSearchHook: {9c905b42-976e-43c1-bc30-fc5937017909} - C:\Program Files\shARES\tbshAR.dll (Conduit Ltd.)
        IE - HKLM\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT1854633
        IE - HKCU\..\URLSearchHook: {9c905b42-976e-43c1-bc30-fc5937017909} - C:\Program Files\shARES\tbshAR.dll (Conduit Ltd.)
        IE - HKCU\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/web/{searchTerms}?babsrc=SP_ss&affID=101387&mntrId=f0a5ff03000000000000001cbfab5d33
        IE - HKCU\..\SearchScopes\{33B43352-97E5-47CC-AC4D-B9F6E8B5ECA8}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=100000027&src=crm&q={searchTerms}&locale=es_ES&apn_ptnrs=U3&apn_dtid=OSJ222SUES&apn_uid=60E40803-4083-4A73-94B5-D23BEDD31D2D&apn_sauid=87E06226-A75B-4246-81F4-43D33C419966
        FF - prefs.js..browser.search.defaultenginename: "Search the web (Babylon)"
        FF - prefs.js..browser.search.order.1: "Search the web (Babylon)"
        FF - prefs.js..browser.search.selectedEngine: "Search the web (Babylon)"
        FF - prefs.js..browser.startup.homepage: "http://search.babylon.com/?babsrc=HP_ss&affID=101387&mntrId=f0a5ff03000000000000001cbfab5d33"
        FF - prefs.js..extensions.enabledAddons: [email protected]:1.5.0
        FF - prefs.js..keyword.URL: "http://search.babylon.com/?babsrc=SP_ss&mntrId=f0a5ff03000000000000001cbfab5d33&tlver=1.5.29.1&instlRef=sst&babTrack&q="
        [2012/11/06 22:37:06 | 000,000,000 | ---D | M] (Browser Companion Helper) -- C:\Users\Madworld\AppData\Roaming\mozilla\Firefox\Profiles\irc0tnyq.default\extensions\[email protected]
        CHR - default_search_provider: search_url = http://search.babylon.com/web/{searchTerms}?babsrc=SP_ss&affID=101387&mntrId=f0a5ff03000000000000001cbfab5d33
        O2 - BHO: (Browser Companion Helper) - {00cbb66b-1d3b-46d3-9577-323a336acb50} - C:\Program Files\BrowserCompanion\jsloader.dll ()
        O2 - BHO: (BrowserHelper Class) - {8A9D74F9-560B-4FE7-ABEB-3B2E638E5CD6} - C:\Program Files\SGPSA\SearchAssistant.dll File not found
        O2 - BHO: (Browser Companion Helper Verifier) - {963B125B-8B21-49A2-A3A8-E37092276531} - C:\Program Files\BrowserCompanion\updatebhoWin32.dll ()
        O2 - BHO: (shARES Toolbar) - {9c905b42-976e-43c1-bc30-fc5937017909} - C:\Program Files\shARES\tbshAR.dll (Conduit Ltd.)
        O3 - HKLM\..\Toolbar: (shARES Toolbar) - {9c905b42-976e-43c1-bc30-fc5937017909} - C:\Program Files\shARES\tbshAR.dll (Conduit Ltd.)
        O3 - HKLM\..\Toolbar: (no name) - {DE9C389F-3316-41A7-809B-AA305ED9D922} - No CLSID value found.
        O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
        O3 - HKCU\..\Toolbar\WebBrowser: (shARES Toolbar) - {9C905B42-976E-43C1-BC30-FC5937017909} - C:\Program Files\shARES\tbshAR.dll (Conduit Ltd.)
        O4 - HKLM..\Run: [Browser companion helper] C:\Program Files\BrowserCompanion\BCHelper.exe (Blabbers Communications LTD)
        O4 - HKLM..\Run: [FBSSA] C:\Program Files\SGPSA\ie3sh.exe File not found
        O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
        [2055/09/19 07:29:11 | 000,002,012 | ---- | M] () -- C:\Windows\System32\NAV_75_cltDynam.dat
        
        :reg
        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender]
        "DisableAntiSpyware"=dword:00000000
        [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinDefend]
        "Start"=dword:00000002
        
        :files
        ipconfig /flushdns /c
        C:\Program Files\BrowserCompanion /s
        
        
        :commands
        [emptytemp]
        [createrestorepoint]
      2. Ejecutar OTL.exe
        • Clic derecho con el ratón bajo la casilla Análisis Personalizados/Código de Reparación > Pegar.
        • Luego haga clic en el botón Reparar ubicado en la parte superior.
        • Deje que el programa se ejecute sin trabas, reinicie cuando lo pida hacer.
        • Al reiniciar se creará un reporte por defecto en C:\_OTL\MovedFiles, copie y pegue ese log en la próxima respuesta.



      3. Descargue UsbFix By El Desaparecido C_XX a tu escritorio y lo ejecuta de este modo:
        1. Conecte todos sus dispositivos extraibles, Pendrive\Micro SD, etc.
        2. Haga doble Click sobre USBFix
        3. Pulse sobre la opción Supresión
        4. Aparecerá una advertencia para que conecte sus USB, pulse en Aceptar y proceso de desinfección/vacunación se iniciará.
        5. Durante el análisis el escritorio puede desaparecer, esto es normal, si USBFix le pide reiniciar el sistema acepte y reinicie su equipo.
        6. Al finalizar, USBFix genera un reporte, el cual se encuentra generalmente en C:\USBFix.txt debe pegar su contenido en el próximo mensaje
        Nota UsbFix creará una carpeta oculta llamada "autorun.inf" en cada partición y cada unidad USB que se encuentre conectado al momento de ejecutar este. No elimine esta carpeta ... eso le ayudará a proteger sus dispositivos USB de futuras infecciones.



      Nos comenta los resultados.

      Saludos.
      [email protected]


      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    10. #10
      Usuario Avatar de Laura Zion
      Registrado
      nov 2012
      Ubicación
      Parma, Italy
      Mensajes
      12

      Re: No funciona el Windows defender en mi PC( Windows Vista)

      All processes killed
      ========== OTL ==========
      Service .1214294769 stopped successfully!
      Service .1214294769 deleted successfully!
      File C:\Program Files\1214294769\Madworld1214294769L.exe File not found not found.
      Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{9c905b42-976e-43c1-bc30-fc5937017909} deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9c905b42-976e-43c1-bc30-fc5937017909}\ deleted successfully.
      C:\Program Files\shARES\tbshAR.dll moved successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\ not found.
      Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{9c905b42-976e-43c1-bc30-fc5937017909} deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9c905b42-976e-43c1-bc30-fc5937017909}\ not found.
      File C:\Program Files\shARES\tbshAR.dll not found.
      Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}\ not found.
      Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33B43352-97E5-47CC-AC4D-B9F6E8B5ECA8}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33B43352-97E5-47CC-AC4D-B9F6E8B5ECA8}\ not found.
      Prefs.js: "Search the web (Babylon)" removed from browser.search.defaultenginename
      Prefs.js: "Search the web (Babylon)" removed from browser.search.order.1
      Prefs.js: "Search the web (Babylon)" removed from browser.search.selectedEngine
      Prefs.js: "http://search.babylon.com/?babsrc=HP_ss&affID=101387&mntrId=f0a5ff03000000000000001cbfab5d33" removed from browser.startup.homepage
      Prefs.js: [email protected]:1.5.0 removed from extensions.enabledAddons
      Prefs.js: "http://search.babylon.com/?babsrc=SP_ss&mntrId=f0a5ff03000000000000001cbfab5d33&tlver=1.5.29.1&instlRef=sst&babTrack&q=" removed from keyword.URL
      C:\Users\Madworld\AppData\Roaming\mozilla\Firefox\Profiles\irc0tnyq.default\extensions\[email protected]\components folder moved successfully.
      C:\Users\Madworld\AppData\Roaming\mozilla\Firefox\Profiles\irc0tnyq.default\extensions\[email protected]\chrome\content\cache folder moved successfully.
      C:\Users\Madworld\AppData\Roaming\mozilla\Firefox\Profiles\irc0tnyq.default\extensions\[email protected]\chrome\content folder moved successfully.
      C:\Users\Madworld\AppData\Roaming\mozilla\Firefox\Profiles\irc0tnyq.default\extensions\[email protected]\chrome folder moved successfully.
      C:\Users\Madworld\AppData\Roaming\mozilla\Firefox\Profiles\irc0tnyq.default\extensions\[email protected] folder moved successfully.
      Use Chrome's Settings page to remove the default_search_provider items.
      Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00cbb66b-1d3b-46d3-9577-323a336acb50}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00cbb66b-1d3b-46d3-9577-323a336acb50}\ deleted successfully.
      C:\Program Files\BrowserCompanion\jsloader.dll moved successfully.
      Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8A9D74F9-560B-4FE7-ABEB-3B2E638E5CD6}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A9D74F9-560B-4FE7-ABEB-3B2E638E5CD6}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{963B125B-8B21-49A2-A3A8-E37092276531}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{963B125B-8B21-49A2-A3A8-E37092276531}\ deleted successfully.
      C:\Program Files\BrowserCompanion\updatebhoWin32.dll moved successfully.
      Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9c905b42-976e-43c1-bc30-fc5937017909}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9c905b42-976e-43c1-bc30-fc5937017909}\ not found.
      File C:\Program Files\shARES\tbshAR.dll not found.
      Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{9c905b42-976e-43c1-bc30-fc5937017909} deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9c905b42-976e-43c1-bc30-fc5937017909}\ not found.
      File C:\Program Files\shARES\tbshAR.dll not found.
      Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{DE9C389F-3316-41A7-809B-AA305ED9D922} deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DE9C389F-3316-41A7-809B-AA305ED9D922}\ not found.
      Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}\ not found.
      Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{9C905B42-976E-43C1-BC30-FC5937017909} deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C905B42-976E-43C1-BC30-FC5937017909}\ not found.
      File C:\Program Files\shARES\tbshAR.dll not found.
      Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Browser companion helper deleted successfully.
      C:\Program Files\BrowserCompanion\BCHelper.exe moved successfully.
      Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\FBSSA deleted successfully.
      Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\DisableRegistryTools deleted successfully.
      C:\WINDOWS\System32\NAV_75_cltDynam.dat moved successfully.
      ========== REGISTRY ==========
      Unable to set value : HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"|dword:00000000 /E!
      HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinDefend\\"Start"|dword:00000002 /E : value set successfully!
      ========== FILES ==========
      < ipconfig /flushdns /c >
      Configuraci¢n IP de Windows
      Se vaci¢ correctamente la cach‚ de resoluci¢n de DNS.
      C:\Users\Madworld\Desktop\cmd.bat deleted successfully.
      C:\Users\Madworld\Desktop\cmd.txt deleted successfully.
      C:\Program Files\BrowserCompanion folder moved successfully.
      ========== COMMANDS ==========

      [EMPTYTEMP]

      User: All Users

      User: Default
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 33170 bytes

      User: Default User
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 0 bytes

      User: Madworld
      ->Temp folder emptied: 283212 bytes
      ->Temporary Internet Files folder emptied: 170057 bytes
      ->Java cache emptied: 39512608 bytes
      ->FireFox cache emptied: 43239056 bytes
      ->Google Chrome cache emptied: 420226293 bytes
      ->Flash cache emptied: 80388 bytes

      User: Public

      User: UpdatusUser
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 32768 bytes

      %systemdrive% .tmp files removed: 0 bytes
      %systemroot% .tmp files removed: 0 bytes
      %systemroot%\System32 .tmp files removed: 0 bytes
      %systemroot%\System32\drivers .tmp files removed: 0 bytes
      Windows Temp folder emptied: 68 bytes
      RecycleBin emptied: 181660648 bytes

      Total Files Cleaned = 653,00 mb

      Restore point Set: OTL Restore Point

      OTL by OldTimer - Version 3.2.69.0 log created on 11082012_123400

      Files\Folders moved on Reboot...
      C:\Users\Madworld\AppData\Local\Temp\ehmsas.txt moved successfully.

      PendingFileRenameOperations files...

      Registry entries deleted on Reboot...

    Página 1 de 2 12 ÚltimoÚltimo