• Registrarse
  • Iniciar sesión


  • Página 1 de 2 12 ÚltimoÚltimo
    Resultados 1 al 10 de 14

    Virus "22find"

    Resumen del tema: Virus "22find" - Hola, estaría muy agradecido si me pudieran ayudar con este problema. Resulta que hace se metió este virus en la pc y el "avira" no logró identificarlo e eliminarlo. En primera instancia se me cerró ...

    1. #1
      Usuario Avatar de pablo_canaya
      Registrado
      ago 2008
      Ubicación
      Argentina
      Mensajes
      91

      Virus "22find"

      Hola, estaría muy agradecido si me pudieran ayudar con este problema. Resulta que hace se metió este virus en la pc y el "avira" no logró identificarlo e eliminarlo. En primera instancia se me cerró el explorador de internet, y se me creo un acceso directo a "22find", junto con su respectivo anclaje en la barra de tareas. Además,paso a ser la "página" por defecto de incio del explorador. Junto a esto, apareció una advertencia de un programa que no poseo ni tengo instalado en la barra de herramientos. Eso es todo por ahora. Ojalá me puedan ayudar. Saludos.

    2. #2
      Ex-Colaborador Avatar de Anleg_30
      Registrado
      dic 2007
      Ubicación
      Bna-Venezuela
      Mensajes
      10.546

      Re: Virus "22find"

      Buenas pablo_canaya,

      Descarga OTL.exe by Oldtimer en el Escritorio

      Cierra todas las ventanas y programas abiertos. (Importante)

      Desde Modo Normal Ejecuta OTL con Doble click sobre su ícono y solo configura lo siguiente dejando lo demas por default:
      1. Activa la casilla de "Scan All Users" (Analizar Todos )
      2. Cambia a resultado mínimo en "Tipo de Análisis"
      3. Activa la casilla de "Skip Microsoft Files" (Omitir archivos de Microsoft)
      4. Pulsa el Botón Run Scan (Analizar)


      Al finalizar, dos reportes se abriran, copia y pega solamente el de nombre:

      OTL.txt <-- (este es el que veras automaticamnte al finalizar)



      Blog | Antivirus Online | Eliminar Malwares | Antivirus Gratis

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    3. #3
      Usuario Avatar de pablo_canaya
      Registrado
      ago 2008
      Ubicación
      Argentina
      Mensajes
      91

      Re: Virus "22find"

      Hola, gracias por responder tan rápido. Le paso el reporte:

      OTL logfile created on: 26/01/2013 0:52:10 - Run 1
      OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\usuario\Desktop
      64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
      Internet Explorer (Version = 8.0.7600.16385)
      Locale: 00000c0a | Country: España | Language: ESN | Date Format: dd/MM/yyyy

      3,50 Gb Total Physical Memory | 2,48 Gb Available Physical Memory | 70,90% Memory free
      6,99 Gb Paging File | 5,45 Gb Available in Paging File | 77,90% Paging File free
      Paging file location(s): ?:\pagefile.sys [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
      Drive C: | 465,48 Gb Total Space | 298,92 Gb Free Space | 64,22% Space Free | Partition Type: NTFS

      Computer Name: USUARIO-PC | User Name: usuario | Logged in as Administrator.
      Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
      Company Name Whitelist: Off | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 360 Days

      ========== Processes (SafeList) ==========

      PRC - C:\Users\usuario\Desktop\OTL.exe (OldTimer Tools)
      PRC - C:\Program Files (x86)\Desk 365\deskSvc.exe (337 Technology Limited.)
      PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
      PRC - C:\Program Files (x86)\Software Plate\svcgdp.exe (Beijing Xing Technology Co., Ltd.)
      PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
      PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG)
      PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG)
      PRC - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe (Nero AG)
      PRC - C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG)


      ========== Modules (No Company Name) ==========

      MOD - C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ()


      ========== Services (SafeList) ==========

      SRV:64bit: - (AMD External Events Utility) -- C:\Windows\SysNative\atiesrxx.exe (AMD)
      SRV:64bit: - (AppMgmt) -- C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
      SRV - (desksvc) -- C:\Program Files (x86)\Desk 365\deskSvc.exe (337 Technology Limited.)
      SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
      SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
      SRV - (svcgdp) -- C:\Program Files (x86)\Software Plate\svcgdp.exe (Beijing Xing Technology Co., Ltd.)
      SRV - (AntiVirService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG)
      SRV - (AntiVirSchedulerService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG)
      SRV - (wlidsvc) -- C:\Archivos de programa\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.)
      SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)


      ========== Driver Services (SafeList) ==========

      DRV:64bit: - (avipbb) -- C:\Windows\SysNative\drivers\avipbb.sys (Avira GmbH)
      DRV:64bit: - (avgntflt) -- C:\Windows\SysNative\drivers\avgntflt.sys (Avira GmbH)
      DRV:64bit: - (sptd) -- C:\Windows\SysNative\drivers\sptd.sys (Duplex Secure Ltd.)
      DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
      DRV:64bit: - (EtronXHCI) -- C:\Windows\SysNative\drivers\EtronXHCI.sys (Etron Technology Inc)
      DRV:64bit: - (EtronHub3) -- C:\Windows\SysNative\drivers\EtronHub3.sys (Etron Technology Inc)
      DRV:64bit: - (RTHDMIAzAudService) -- C:\Windows\SysNative\drivers\RtHDMIVX.sys (Realtek Semiconductor Corp.)
      DRV:64bit: - (avkmgr) -- C:\Windows\SysNative\drivers\avkmgr.sys (Avira GmbH)
      DRV:64bit: - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek )
      DRV:64bit: - (amdkmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (ATI Technologies Inc.)
      DRV:64bit: - (amdkmdap) -- C:\Windows\SysNative\drivers\atikmpag.sys (Advanced Micro Devices, Inc.)
      DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
      DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
      DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
      DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
      DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
      DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
      DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
      DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
      DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
      DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
      DRV:64bit: - (rt61x64) -- C:\Windows\SysNative\drivers\netr6164.sys (Ralink Technology, Corp.)
      DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)


      ========== Standard Registry (All) ==========


      ========== Internet Explorer ==========

      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN.com
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = Bing
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = MSN.com
      IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
      IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = 22Find Portal Site
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = Bing
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = 22Find Portal Site
      IE - HKLM\..\SearchScopes,DefaultScope = {006ee092-9658-4fd6-bd8e-a21a348e59f5}
      IE - HKLM\..\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}: "URL" = http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=AR&userid=5163f09d-b8fc-4217-b3e4-f18bf3103daf&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms}
      IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


      IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      IE - HKU\S-1-5-19\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll (Microsoft Corporation)

      IE - HKU\S-1-5-20\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll (Microsoft Corporation)

      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = 22Find Portal Site
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=AR&userid=5163f09d-b8fc-4217-b3e4-f18bf3103daf&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms}
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=AR&userid=5163f09d-b8fc-4217-b3e4-f18bf3103daf&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms}
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = 22Find Portal Site
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = MSN España: Hotmail, Messenger, Skype y Cuenta Microsoft
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = es
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = F0 1E 7E C2 C1 1D CD 01 [binary data]
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=AR&userid=5163f09d-b8fc-4217-b3e4-f18bf3103daf&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms}
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=AR&userid=5163f09d-b8fc-4217-b3e4-f18bf3103daf&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms}
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll (Microsoft Corporation)
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\..\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}: "URL" = http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=AR&userid=5163f09d-b8fc-4217-b3e4-f18bf3103daf&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms}
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/?q={searchTerms}&affID=110819&babsrc=SP_ss&mntrId=b86571b7000000000000000c0a498341
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = 22Find Portal Site
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      ========== FireFox ==========

      FF - prefs.js..browser.search.defaultenginename: "22find"
      FF - prefs.js..browser.search.order.1: "22find"
      FF - prefs.js..browser.search.selectedEngine: "Google"
      FF - prefs.js..browser.search.useDBForOrder: true
      FF - prefs.js..browser.startup.homepage: "http://www.22find.com/?utm_source=b&utm_medium=gdp&from=gdp&uid=WDCXWD5000AAKS-00E4A0_WD-WCATR358077380773&ts=1359146559"
      FF - prefs.js..extensions.enabledAddons: %7Ba3a5c777-f583-4fef-9380-ab4add1bc2a8%7D:5.0
      FF - prefs.js..extensions.enabledAddons: %7B14323AEE-F6B8-4DC8-BCE3-E62645830585%7D:1.0.1
      FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:18.0.1
      FF - prefs.js..keyword.URL: "http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=AR&userid=5163f09d-b8fc-4217-b3e4-f18bf3103daf&affid=111583&searchtype=ds&babsrc=lnkry&q="


      FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_5_502_146.dll File not found
      FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_146.dll ()
      FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
      FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll ( Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
      FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\usuario\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
      FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\usuario\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)

      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 18.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/01/23 11:41:18 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 18.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/01/23 11:41:17 | 000,000,000 | ---D | M]

      [2012/04/18 21:26:15 | 000,000,000 | ---D | M] (No name found) -- C:\Users\usuario\AppData\Roaming\mozilla\Extensions
      [2013/01/25 17:42:44 | 000,000,000 | ---D | M] (No name found) -- C:\Users\usuario\AppData\Roaming\mozilla\Firefox\Profiles\t7o07l3a.default\extensions
      [2013/01/25 17:42:44 | 000,002,125 | ---- | M] () (No name found) -- C:\Users\usuario\AppData\Roaming\mozilla\firefox\profiles\t7o07l3a.default\extensions\{14323AEE-F6B8-4DC8-BCE3-E62645830585}.xpi
      [2012/12/19 23:42:40 | 000,013,972 | ---- | M] () (No name found) -- C:\Users\usuario\AppData\Roaming\mozilla\firefox\profiles\t7o07l3a.default\extensions\{a3a5c777-f583-4fef-9380-ab4add1bc2a8}.xpi
      [2012/07/19 12:54:23 | 000,002,474 | ---- | M] () -- C:\Users\usuario\AppData\Roaming\mozilla\firefox\profiles\t7o07l3a.default\searchplugins\Web Search.xml
      [2013/01/23 11:41:16 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions
      [2013/01/23 11:41:18 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
      [2013/01/23 11:41:18 | 000,262,552 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
      [2007/04/10 17:21:08 | 000,163,256 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\mozilla firefox\plugins\np-mswmp.dll
      [2012/12/18 17:07:11 | 000,106,240 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll
      [2013/01/25 17:42:46 | 000,000,757 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\22find.xml
      [2012/04/18 22:02:02 | 000,002,313 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\babylon.xml
      [2012/08/29 21:32:26 | 000,002,465 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
      [2012/12/07 13:56:23 | 000,004,095 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\drae.xml
      [2012/12/07 13:56:23 | 000,001,356 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-es.xml
      [2013/01/11 00:02:57 | 000,002,669 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\google.xml
      [2012/10/13 00:29:53 | 000,002,058 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\twitter.xml
      [2012/12/07 13:56:23 | 000,001,391 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-es.xml
      [2012/12/07 13:56:23 | 000,001,315 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-es.xml

      ========== Chrome ==========

      CHR - default_search_provider: ()
      CHR - default_search_provider: search_url =
      CHR - default_search_provider: suggest_url =
      CHR - homepage: 22Find Portal Site
      CHR - Extension: No name found = C:\Users\usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
      CHR - Extension: No name found = C:\Users\usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_1\
      CHR - Extension: No name found = C:\Users\usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
      CHR - Extension: No name found = C:\Users\usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_1\
      CHR - Extension: No name found = C:\Users\usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
      CHR - Extension: No name found = C:\Users\usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\

      O1 HOSTS File: ([2012/04/18 11:18:05 | 000,000,864 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
      O1 - Hosts: 127.0.0.1 validation.sls.microsoft.com
      O2:64bit: - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Archivos de programa\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
      O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
      O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~3\Office12\GR469A~1.DLL (Microsoft Corporation)
      O2 - BHO: (Aplicación auxiliar de inicio de sesión de Windows Live ID) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
      O3:64bit: - HKLM\..\Toolbar: (no name) - {ae07101b-46d4-4a98-af68-0333ea26e113} - No CLSID value found.
      O3 - HKLM\..\Toolbar: (no name) - {ae07101b-46d4-4a98-af68-0333ea26e113} - No CLSID value found.
      O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
      O4 - HKLM..\Run: [Adobe ARM] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
      O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
      O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
      O4 - HKLM..\Run: [CheckRun22find_uninstaller] C:\Users\usuario\AppData\Roaming\CheckRun22find.exe ()
      O4 - HKLM..\Run: [GrooveMonitor] C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe (Microsoft Corporation)
      O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
      O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
      O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
      O4 - HKU\S-1-5-21-3045825028-1641346135-152900933-1000..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG)
      O4 - HKU\S-1-5-21-3045825028-1641346135-152900933-1000..\Run: [Desk 365] C:\Program Files (x86)\Desk 365\desk365.exe (337 Technology Limited.)
      O4 - HKU\S-1-5-21-3045825028-1641346135-152900933-1000..\Run: [Google Update] C:\Users\usuario\AppData\Local\Google\Update\GoogleUpdate.exe (Google Inc.)
      O4 - HKU\S-1-5-21-3045825028-1641346135-152900933-1000..\Run: [msnmsgr] C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation)
      O4 - HKU\S-1-5-21-3045825028-1641346135-152900933-1000..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation)
      O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
      O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: ForceActiveDesktopOn = 0
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
      O8:64bit: - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000 File not found
      O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000 File not found
      O9 - Extra Button: Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll (Microsoft Corporation)
      O9 - Extra 'Tools' menuitem : &Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll (Microsoft Corporation)
      O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL (Microsoft Corporation)
      O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000001 [] - C:\Windows\SysNative\nlaapi.dll (Microsoft Corporation)
      O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000002 [] - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
      O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000003 [] - C:\Windows\SysNative\winrnr.dll (Microsoft Corporation)
      O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000004 [] - C:\Windows\SysNative\NapiNSP.dll (Microsoft Corporation)
      O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000005 [] - C:\Windows\SysNative\pnrpnsp.dll (Microsoft Corporation)
      O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000006 [] - C:\Windows\SysNative\pnrpnsp.dll (Microsoft Corporation)
      O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Archivos de programa\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
      O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Archivos de programa\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
      O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
      O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
      O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
      O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
      O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
      O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
      O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000007 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
      O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000008 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
      O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000009 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
      O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000010 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\Windows\SysWOW64\nlaapi.dll (Microsoft Corporation)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\SysWOW64\winrnr.dll (Microsoft Corporation)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\SysWOW64\NapiNSP.dll (Microsoft Corporation)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Windows\SysWOW64\pnrpnsp.dll (Microsoft Corporation)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\SysWOW64\pnrpnsp.dll (Microsoft Corporation)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
      O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
      O1364bit: - gopher Prefix: missing
      O13 - gopher Prefix: missing
      O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/ge...sh/swflash.cab (Shockwave Flash Object)
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 200.51.11.7 200.51.212.7
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{5003A53A-E9F0-4888-BE44-5213C1E22F9E}: DhcpNameServer = 192.168.0.1
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{8F3A51EB-5932-4E41-BADE-31A74C856171}: DhcpNameServer = 200.51.11.7 200.51.212.7
      O18:64bit: - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysNative\MSVidCtl.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Handler\grooveLocalGWS - No CLSID value found
      O18:64bit: - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysNative\itss.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Handler\livecall - No CLSID value found
      O18:64bit: - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysNative\inetcomm.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
      O18:64bit: - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysNative\itss.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Handler\msnim - No CLSID value found
      O18:64bit: - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysNative\MSVidCtl.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
      O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
      O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
      O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\MSVidCtl.dll (Microsoft Corporation)
      O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
      O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
      O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~2\MICROS~3\Office12\GRA32A~1.DLL (Microsoft Corporation)
      O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
      O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
      O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll (Microsoft Corporation)
      O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
      O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
      O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
      O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
      O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysWOW64\inetcomm.dll (Microsoft Corporation)
      O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
      O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
      O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll (Microsoft Corporation)
      O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
      O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
      O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysWOW64\MSVidCtl.dll (Microsoft Corporation)
      O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
      O18 - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysNative\mscoree.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysNative\mscoree.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysNative\mscoree.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
      O18:64bit: - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Archivos de programa\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
      O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWow64\mscoree.dll (Microsoft Corporation)
      O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWow64\mscoree.dll (Microsoft Corporation)
      O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWow64\mscoree.dll (Microsoft Corporation)
      O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
      O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
      O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
      O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
      O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
      O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysWow64\SystemPropertiesPerformance.exe (Microsoft Corporation)
      O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~2\MICROS~3\Office12\GR469A~1.DLL (Microsoft Corporation)
      O29:64bit: - HKLM SecurityProviders - (credssp.dll) - C:\Windows\SysWow64\credssp.dll (Microsoft Corporation)
      O29 - HKLM SecurityProviders - (credssp.dll) - C:\Windows\SysWow64\credssp.dll (Microsoft Corporation)
      O30:64bit: - LSA: Authentication Packages - (msv1_0) - C:\Windows\SysNative\msv1_0.dll (Microsoft Corporation)
      O30 - LSA: Authentication Packages - (msv1_0) - C:\Windows\SysWow64\msv1_0.dll (Microsoft Corporation)
      O30:64bit: - LSA: Security Packages - (kerberos) - C:\Windows\SysNative\kerberos.dll (Microsoft Corporation)
      O30:64bit: - LSA: Security Packages - (msv1_0) - C:\Windows\SysNative\msv1_0.dll (Microsoft Corporation)
      O30:64bit: - LSA: Security Packages - (schannel) - C:\Windows\SysNative\schannel.dll (Microsoft Corporation)
      O30:64bit: - LSA: Security Packages - (wdigest) - C:\Windows\SysNative\wdigest.dll (Microsoft Corporation)
      O30:64bit: - LSA: Security Packages - (tspkg) - C:\Windows\SysNative\tspkg.dll (Microsoft Corporation)
      O30:64bit: - LSA: Security Packages - (pku2u) - C:\Windows\SysNative\pku2u.dll (Microsoft Corporation)
      O30:64bit: - LSA: Security Packages - (livessp) - C:\Windows\SysNative\livessp.dll (Microsoft Corp.)
      O30 - LSA: Security Packages - (kerberos) - C:\Windows\SysWow64\kerberos.dll (Microsoft Corporation)
      O30 - LSA: Security Packages - (msv1_0) - C:\Windows\SysWow64\msv1_0.dll (Microsoft Corporation)
      O30 - LSA: Security Packages - (schannel) - C:\Windows\SysWow64\schannel.dll (Microsoft Corporation)
      O30 - LSA: Security Packages - (wdigest) - C:\Windows\SysWow64\wdigest.dll (Microsoft Corporation)
      O30 - LSA: Security Packages - (tspkg) - C:\Windows\SysWow64\tspkg.dll (Microsoft Corporation)
      O30 - LSA: Security Packages - (pku2u) - C:\Windows\SysWow64\pku2u.dll (Microsoft Corporation)
      O30 - LSA: Security Packages - (livessp) - C:\Windows\SysWow64\livessp.dll (Microsoft Corp.)
      O31 - SafeBoot: AlternateShell - cmd.exe
      O32 - HKLM CDRom: AutoRun - 1
      O33 - MountPoints2\{1a6871f6-d1ba-11e1-86ea-50e54937d10e}\Shell - "" = AutoRun
      O33 - MountPoints2\{1a6871f6-d1ba-11e1-86ea-50e54937d10e}\Shell\AutoRun\command - "" = E:\Setup.exe
      O33 - MountPoints2\{29be4ab5-d1b5-11e1-88a0-50e54937d10e}\Shell - "" = AutoRun
      O33 - MountPoints2\{29be4ab5-d1b5-11e1-88a0-50e54937d10e}\Shell\AutoRun\command - "" = E:\Setup.exe
      O34 - HKLM BootExecute: (autocheck autochk *)
      O35:64bit: - HKLM\..comfile [open] -- "%1" %*
      O35:64bit: - HKLM\..exefile [open] -- "%1" %*
      O35 - HKLM\..comfile [open] -- "%1" %*
      O35 - HKLM\..exefile [open] -- "%1" %*
      O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
      O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
      O37 - HKLM\...com [@ = comfile] -- "%1" %*
      O37 - HKLM\...exe [@ = exefile] -- "%1" %*
      O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
      O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
      O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

      ========== Files/Folders - Created Within 360 Days ==========

      [2013/01/26 00:36:01 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\usuario\Desktop\OTL.exe
      [2013/01/25 17:53:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\337
      [2013/01/25 17:46:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365
      [2013/01/25 17:46:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Desk 365
      [2013/01/25 17:42:47 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\Desk 365
      [2013/01/25 17:11:02 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{470B24C3-CAD5-4653-8B9C-19ADEA5DFEE5}
      [2013/01/25 00:52:52 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{0282485C-B6EE-4817-A01A-D563F83B1816}
      [2013/01/24 12:52:24 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{8589C1A0-AF3D-4000-AA14-6F31B4338487}
      [2013/01/23 23:27:42 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{8F3F0994-548B-499D-B1FA-1C0A82823B2F}
      [2013/01/23 18:23:37 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\SCE
      [2013/01/23 18:17:51 | 000,000,000 | ---D | C] -- C:\Crash
      [2013/01/23 18:17:28 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\directx
      [2013/01/23 11:41:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
      [2013/01/23 11:25:17 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{C5A1BC45-E74B-4303-9F6C-B375A1CDB7B5}
      [2013/01/22 19:47:27 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{12788C6F-ECFD-46E1-98C3-FB61A28DF1ED}
      [2013/01/13 13:36:25 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{09C80668-CDB7-40C1-AFDF-2D2E61147162}
      [2013/01/12 09:55:54 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{352AC933-EE64-4B3E-8CC0-877E9D8F1ECA}
      [2013/01/11 13:23:16 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{04B7A21E-4B13-4EF1-999F-4451E35941F3}
      [2013/01/10 03:39:43 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{58A23C8F-AFD0-4FBD-A6ED-406BDE49510D}
      [2013/01/09 13:03:38 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{65314F4E-73EB-44D3-BE90-0DFA25CA65A2}
      [2013/01/08 22:57:44 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{5F006D7C-D09F-406B-87C7-1ED1E40A77B5}
      [2013/01/08 10:57:19 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{8E4DF93D-74EC-4882-8413-A25083ED1F2E}
      [2013/01/07 15:46:09 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{D8744723-176B-4E6D-BEE6-E128032B2BEC}
      [2013/01/07 0341 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{5086EF81-F7C8-45ED-84E0-4169F2A7D7EF}
      [2013/01/06 1515 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{883A8A2D-1295-4007-99FE-DD208299B4EB}
      [2013/01/05 14:16:46 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{36CB6E92-DDBD-4145-B29E-C43689CBA88B}
      [2013/01/05 02:15:26 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{9E87E670-4DF1-4D08-B8B9-3DCF8E0A85A8}
      [2013/01/04 13:19:23 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{106AFF90-2C9E-46F9-9973-82FC7A3E2310}
      [2013/01/03 21:46:34 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{BC8B2EE4-2F5F-4F7E-9422-30298609B16C}
      [2013/01/02 11:26:37 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{3B687AEF-4169-4786-A160-F45EBE849E09}
      [2013/01/01 12:58:12 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{42151E17-CDA6-4D5A-A85E-1891AD1C456C}
      [2012/12/31 13:07:53 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{2B3463E9-2D1D-4BC6-93BB-50853FC5104A}
      [2012/12/30 12:49:35 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{3FF03CDE-082C-4965-8463-203F17530506}
      [2012/12/29 23:34:11 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{F460ACFA-3D0B-49F0-925A-7B91A4D9D75E}
      [2012/12/29 11:33:43 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{52159BF2-5881-489C-A672-A63BD44CF3AD}
      [2012/12/29 00:38:53 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{836D8FAF-7F3D-4EE6-87B7-F2BA1603D935}
      [2012/12/28 11:40:57 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{29E3B0A2-35D5-4781-BA97-BFAE7BBEA5B5}
      [2012/12/27 23:40:32 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{99050BC3-29E9-4EFA-8FBE-771D959EEA4E}
      [2012/12/26 10:00:03 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{5337DBCF-A9DC-49AC-97F6-7CD1568E5A1F}
      [2012/12/25 22:52:16 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{4AA3AFD4-0EEB-49B7-86E2-06103E8C99B1}
      [2012/12/25 01:04:57 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{75D7A834-5FEC-4BE7-B8CC-24089D75E397}
      [2012/12/24 12:38:23 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{11A2519C-8DE0-4D05-B7A2-534D7581D8FC}
      [2012/12/23 12:13:23 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{CB603C6A-0468-4489-8527-99A4989BEE4D}
      [2012/12/22 09:20:11 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{0BBDD25F-FA15-4604-8D3A-8F68E432D1ED}
      [2012/12/21 09:12:28 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{9C45B9E2-6597-47F8-AB1F-0DAB315B981B}
      [2012/12/20 21:17:06 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{B121DBCC-2A41-4B5B-9072-560199A796F7}
      [2012/12/20 19:35:24 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{99698B60-6589-4396-9DAB-0FC9F7613B17}
      [2012/12/20 10:27:14 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{3F93D4E4-89D5-41AC-AF6A-70A0CD6E834E}
      [2012/12/20 10:04:51 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{E72A9300-800B-4CA3-98FF-E5B8FC22BBA3}
      [2012/12/19 08:13:43 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{26D9D9CA-0A8C-455A-8DFF-B018626778FC}
      [2012/12/18 13:43:43 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{490E3096-8CBD-4AE6-8D0F-6BBC050A7E76}
      [2012/12/17 13:14:18 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{B2DF1726-3542-4120-97AE-12D9DB297513}
      [2012/12/16 09:17:19 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{C4FD8621-6B57-4D40-9042-83C44EE79EF1}
      [2012/12/16 00:36:59 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{703A8ECF-8F76-42EF-AD0D-DFDF2E67BC58}
      [2012/12/15 12:36:33 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{B8D80B0E-FEC0-493F-A019-878F16CD71CC}
      [2012/12/15 00:36:08 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{760FB1BE-9833-4A29-A915-4F41CE441676}
      [2012/12/14 12:34:45 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{35A2A29E-AF31-4FD5-96FF-B5585B79C5F7}
      [2012/12/13 08:00:56 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{2BC976E2-431D-4A88-ABB1-998490211753}
      [2012/12/12 08:00:32 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{8D0CFEDC-0416-4914-9D30-0A31DB7CB761}
      [2012/12/11 13:07:35 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{082CE32F-0255-4496-A53D-BED9D1BAAA52}
      [2012/12/10 16:50:02 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{2B95F294-57E0-4927-976B-220B61F398B6}
      [2012/12/10 02:44:16 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{FCA1FF90-6653-49D6-94B1-C73FDD621181}
      [2012/12/09 2043 | 000,000,000 | ---D | C] -- C:\Windows\Minidump
      [2012/12/09 13:41:55 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{7C30CAA8-20E2-4FFD-844F-68BC16A58007}
      [2012/12/08 13:25:36 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{38E232B7-9C56-44AD-9C6D-0578FA01CD37}
      [2012/12/07 12:34:33 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{674D73F2-7842-4019-8140-DA6E0C4F3DBE}
      [2012/12/06 07:37:47 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{A25CA11E-FF3E-44F0-8C69-60DFA8FC86E2}
      [2012/12/05 12:56:56 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{936C2E60-E327-4712-ACAA-667CFA6E62E2}
      [2012/12/04 19:53:04 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{A7831CD0-28EB-466E-9FD5-15BEC931BAFB}
      [2012/12/03 13:15:58 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{B124F8AE-B7D5-4883-BC6A-32F33AE7B925}
      [2012/12/02 11:45:04 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{39EF262C-4742-4A96-9628-4532D59DD879}
      [2012/11/30 14:56:58 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{1860271B-50B9-46D6-8B07-62FBDC333CE4}
      [2012/11/29 08:57:58 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{12A28B9C-3F06-4820-8198-F7A8BBF4BA90}
      [2012/11/28 08:55:23 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{19B0C8DD-1172-4797-92B0-6010266810F8}
      [2012/11/27 13:27:36 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{14DEC93E-FC55-4DD3-A944-888B39ED4A47}
      [2012/11/26 12:22:35 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{241BC75B-57AE-4AEA-9990-1F970ECC1336}
      [2012/11/24 09:55:07 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{08B80314-81A8-4397-AC19-A10E016A7C4E}
      [2012/11/23 13:02:52 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{2272D7A3-080A-4173-84F8-5886656467DA}
      [2012/11/22 23:32:09 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{7E98D3AD-96E0-4427-9287-1942B0368DB7}
      [2012/11/22 09:08:06 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{948C100B-5708-4D3D-A1F4-F07BE871D275}
      [2012/11/21 08:11:23 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{CF8CF59A-A9B7-4582-8466-33C5ED37E831}
      [2012/11/20 1357 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{034B2C38-A89F-4399-8BF4-90A4664E087D}
      [2012/11/19 13:14:14 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{E81BEA28-0B55-4EE6-ACEA-274DC925FAA1}
      [2012/11/18 11:57:35 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{0FDDB9A2-1D57-4979-AF63-B2621E0C2663}
      [2012/11/16 21:59:02 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{57374C84-EBEB-4B4C-AA00-9B8CF03D2DA5}
      [2012/11/16 09:44:17 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{61DBB772-69AB-4EF3-BA6C-04359493F3DA}
      [2012/11/14 08:17:29 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{E3013BF7-0A42-4105-8027-472444F867E3}
      [2012/11/13 20:17:03 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{9ACDBF65-4B38-475B-A35C-4C4CEF6F4B78}
      [2012/11/13 13:13:54 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{09A67911-24D0-4BDB-8865-52A7198A1B43}
      [2012/11/12 13:28:01 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{26EFB857-EF46-4CFA-9808-18169BACE8FA}
      [2012/11/11 14:26:43 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{C1369399-3A5E-47DA-AB5E-9E2437F0883E}
      [2012/11/10 19:48:21 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{8783CC45-E068-4C7D-804F-05543C50A3F4}
      [2012/11/09 15:01:09 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{ECA69C0C-1AB7-4856-A504-94842BDCA938}
      [2012/11/08 09:20:41 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{75CE08FB-D5DA-4591-8E25-097F83185D00}
      [2012/11/07 08:56:17 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{4EFB03EC-F3C2-494E-9C5C-FEC16723C559}
      [2012/11/06 13:27:58 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{0CEA5D1C-B4DC-4CBE-8647-A4724F6BFC5F}
      [2012/11/05 21:38:19 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{3BFDFDB0-FFB8-45A2-992C-DF0343024BCE}
      [2012/11/03 23:54:34 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{F508104A-37CA-402D-A80A-D6DD312DA2ED}
      [2012/11/02 16:17:22 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{721BE44F-1BD6-4345-A1F2-54D7FBE42F40}
      [2012/11/01 13:03:09 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{B19DE4CE-6782-4CD2-9FDB-FD72194E2550}
      [2012/10/31 23:01:54 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{55CFB969-BFC8-4DCC-AC3F-90A5137334D7}
      [2012/10/31 09:36:22 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{12694D04-57D2-40AB-8613-B9A227F88202}
      [2012/10/30 14:26:32 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{0A856516-9E8D-4F83-8A10-6867B332E07B}
      [2012/10/29 13:07:00 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{53112F04-6199-4F6D-8E7C-81FD22F48169}
      [2012/10/28 11:02:41 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{37B3042A-D498-4E6D-914E-FE9FD1788DE7}
      [2012/10/27 00:49:12 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{DC837B84-80B8-4B65-AD6B-77667D96F9A6}
      [2012/10/25 20:34:13 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{2E28C0C6-0B46-496D-B309-4CCD32A89EFD}
      [2012/10/24 20:52:13 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{6C39D912-570A-4401-ABC7-338D98579FEC}
      [2012/10/23 13:14:02 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{24F48BEE-DDE8-4F05-9CA8-D1C64D7F5F3B}
      [2012/10/22 13:06:37 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{5D5A4650-145E-4C20-BF32-4451D59A1542}
      [2012/10/21 22:58:10 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{73FA626D-6D99-46F4-A3D8-537EA0E8FED6}
      [2012/10/21 10:47:53 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{BA90A029-4B0B-4826-B678-AD89418210A8}
      [2012/10/21 09:28:26 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{061B716E-6A35-40C8-A5EB-DDF892D63731}
      [2012/10/20 21:15:35 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{56B723BD-D477-475D-9808-497D2723E878}
      [2012/10/19 12:32:12 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{C8764A6B-A7A2-4393-9739-E46AC998AA1B}
      [2012/10/18 22:16:19 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{01C778D7-4280-473D-B5F8-A7869906A5D9}
      [2012/10/17 20:39:17 | 000,000,000 | ---D | C] -- C:\Users\usuario\Documents\aula
      [2012/10/17 1318 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{BD3FDDD8-3023-4FEB-8B8E-FD3372160B4D}
      [2012/10/16 13:18:35 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{8620FC58-0B04-453E-81AB-B5288C59A0BF}
      [2012/10/14 10:27:09 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{1F1ACC2D-2DE7-4389-895F-ED2DC89BD37B}
      [2012/10/13 09:35:16 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{E06C776C-D59E-4917-B11D-71F3F787FD4C}
      [2012/10/12 13:18:19 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{E021AD05-D0FC-4BA7-B255-D2820FFFE395}
      [2012/10/11 09:56:50 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{9C1BE888-65A0-43E9-ADDD-00DC41C32E93}
      [2012/10/10 21:55:28 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{DA16C15E-5571-48DA-B87E-046054FA0141}
      [2012/10/10 08:52:53 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{2B581A82-3E6F-42F8-8F7A-2F97CD8CEDE0}
      [2012/10/09 13:16:25 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{88A8B50E-0109-44F1-9249-CD285ABECE8D}
      [2012/10/08 21:14:43 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{D856FECE-6F34-4377-B9F1-EAF8B914211E}
      [2012/10/08 09:23:34 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{95647FD0-8609-495E-BBE5-8958B1495FF4}
      [2012/10/07 11:29:54 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{EBD7925D-DD51-461C-96E7-F3861446F55A}
      [2012/10/06 23:28:53 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{28FD6F5D-2B00-4E8A-9C9C-846F122B4D6E}
      [2012/10/05 14:33:44 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{0BD4CA39-E045-4ADD-A89A-5A770ED991D2}
      [2012/10/03 13:17:46 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{E2979E40-0F4E-406A-825A-2677CDDD5489}
      [2012/10/02 13:06:28 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{DD80358F-38F4-410F-9EA3-EC2D04393B05}
      [2012/10/01 13:15:07 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{7D75C7AE-B017-4A9E-954B-47A9236AF672}
      [2012/10/01 00:13:19 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{7F168229-9C7D-4DA5-9532-17F34DA1BD63}
      [2012/09/30 11:55:28 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{1080EF9E-0325-4021-9BB4-E2A10548BF38}
      [2012/09/29 00:34:06 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{3EAED920-BE9B-4F05-A2BF-ED34939884C5}
      [2012/09/28 12:32:18 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{4808B8D2-F9E9-4AF4-B831-040FEED287D2}
      [2012/09/27 23:33:15 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{99A8E527-910E-4FA4-81F8-296554371D5D}
      [2012/09/27 10:11:30 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{E96DE81B-E930-4AB7-9A75-4EAB96D9F118}
      [2012/09/26 16:23:23 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{8BD76B45-51E7-4F38-868C-BB91FCA04963}
      [2012/09/26 13:11:37 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{BFF184F4-8757-44DD-88FE-3625BA24F6F2}
      [2012/09/25 13:13:48 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{C8B5C5B5-3597-4C7E-B0DC-CD88C7809399}
      [2012/09/24 09:54:28 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{B4345A67-42A8-4695-B609-D65BC7474322}
      [2012/09/23 14:04:08 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{061ABA4D-8524-4E18-9EA3-D294C40510F1}
      [2012/09/21 10:09:56 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{58A2D643-845C-44F6-85F9-D85A67A8C8AA}
      [2012/09/20 12:40:27 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{77E66425-A1C7-4161-B0CE-14386897A381}
      [2012/09/19 09:48:39 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{9B964F9B-CFCA-4EFB-B685-FA29733A9A44}
      [2012/09/18 1325 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{1A651D22-AA79-428E-A1E7-5BD377EA1204}
      [2012/09/17 13:15:45 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{E67800E2-ACFE-43BC-A220-6D50F11AF8E5}
      [2012/09/16 14:07:34 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{14182781-D2BB-4B6E-B9FD-52C95BDF068B}
      [2012/09/15 12:24:58 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{9309FEC0-9966-4AB6-BAE3-66BCFD96AEE6}
      [2012/09/14 13:44:58 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{01EE844B-6CB5-489D-B510-7E3DC14709C6}
      [2012/09/13 11:17:55 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{1BFB6FEA-BBF8-48C0-B5C2-8BBFB3000C50}
      [2012/09/12 23:17:29 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{88BB0AED-4202-4A62-8816-8D654A95FEEF}
      [2012/09/12 08:47:53 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{17AC1C7E-E76E-4174-8CBA-F01C67A04D10}
      [2012/09/11 12:02:26 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{E66B4D69-94F3-445F-AF4D-1DA6AE7C125B}
      [2012/09/10 13:34:42 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{7370235F-C8E5-4F89-BE29-ABA1D29C5B31}
      [2012/09/10 13:31:50 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{7E9CD25F-BE7F-40CB-9C28-E29F60435917}
      [2012/09/09 23:32:05 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{5E7684CF-B595-44CB-92E8-EB57B4723442}
      [2012/09/08 19:52:24 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{70F1DE80-9BD4-4AD3-B800-B73C84CC8CAC}
      [2012/09/07 19:30:34 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{0F48373D-50A8-4D17-A27D-EF303B4CA1BB}
      [2012/09/05 19:26:06 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{F5CEA074-9AD5-4E01-BF30-55C458E9E83B}
      [2012/09/05 13:19:57 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{4C9BA80D-C7D2-4B5A-A0B9-BC195CBF773F}
      [2012/09/04 13:56:03 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{1FA69C9B-9F24-4F2D-9E3A-E7B3C94E093C}
      [2012/09/03 13:08:43 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{9DDAF80D-CA63-4571-865A-401C71800453}
      [2012/09/02 15:49:35 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{6DA1D78C-8B7C-46E4-9BCD-540EF206A66A}
      [2012/09/01 22:09:37 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{C4544052-513B-4FEB-BB18-ED7AE6300965}
      [2012/08/31 12:51:46 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{B51BD248-A833-44CE-826E-8642FC56E84D}
      [2012/08/29 20:49:59 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{EE4E9103-91A7-4B90-8C9D-4DFA68D941CC}
      [2012/08/29 08:41:07 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{6055EE58-53BB-4A0E-9454-6348CD5E5EF0}
      [2012/08/28 13:56:43 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{1673FB7E-5CAD-4118-BD38-4C7E6301342F}
      [2012/08/28 06:17:00 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{7AD266BD-EEE5-4412-B935-E78A2B35AA06}
      [2012/08/27 13:22:53 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{643D207F-0616-406B-8C47-5D45E5F124E2}
      [2012/08/26 13:32:42 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{D41512C9-FADC-4B55-BFEA-1AB8E143BEB9}
      [2012/08/25 23:23:14 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{493996C9-21BD-4D17-99ED-32364006A50A}
      [2012/08/25 03:18:02 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{499132F2-644D-4D24-AE68-28F78175D666}
      [2012/08/24 20:13:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
      [2012/08/24 20:12:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google

    4. #4
      Usuario Avatar de pablo_canaya
      Registrado
      ago 2008
      Ubicación
      Argentina
      Mensajes
      91

      Re: Virus "22find"

      [2012/08/24 13:37:01 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{BB43B8FA-5852-4EA9-9985-A6B3607E75E5}
      [2012/08/24 06:09:44 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{A9E041D7-FC0E-4873-9A9F-DFB87722BBAD}
      [2012/08/23 12:32:07 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{2CD3AB64-A828-449F-A0A4-C727EA4FCE2C}
      [2012/08/22 13:53:29 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{7B6E7554-17AA-45CB-B4D7-7802376EF603}
      [2012/08/22 01:53:04 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{7ACAD672-2593-41A0-B645-F2A187A5FDEB}
      [2012/08/21 13:52:36 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{A0A4EE53-BCAA-46DC-AB7C-A699E18DF8B5}
      [2012/08/20 12:15:41 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{BCD5697F-C812-4345-90A7-621A544A27CA}
      [2012/08/19 12:04:17 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{04A8C86F-258C-4836-8E9B-15C44D613253}
      [2012/08/18 23:35:40 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{7DF2C2B5-3A0F-4747-BA77-34DB6F1615B6}
      [2012/08/17 12:33:50 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{1422E0CF-C08E-492B-B2A2-C36A7C05A970}
      [2012/08/16 09:34:13 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{BB73D980-0C85-45F6-87F7-FAF88A1EC74B}
      [2012/08/15 20:34:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\omlSoft
      [2012/08/15 20:33:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Software Plate
      [2012/08/15 20:33:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\newtabs
      [2012/08/15 20:33:33 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\MediaGet2
      [2012/08/15 11:13:41 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{9468B6F2-1E9F-4A4D-9D74-E73B073DDBAE}
      [2012/08/15 11:12:33 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{4A49EC99-E030-40D4-8F74-4ED69DB33D55}
      [2012/08/14 14:45:12 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{5086E5E3-0841-4434-8766-80451C0EC625}
      [2012/08/14 14:45:00 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{9047F677-6AE6-4089-BBD3-8C7674BDD637}
      [2012/08/14 09:49:53 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{B9747D9A-B70A-4C67-B766-4EA0C1F3E932}
      [2012/08/13 21:04:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
      [2012/08/13 13:15:51 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{92D607F2-ED73-4DDC-9667-D43B558EF492}
      [2012/08/13 13:15:37 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{74698FB1-4E62-4E04-AC19-17BED902D0D5}
      [2012/08/12 23:35:53 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{DFF41357-CBD5-4D1D-A83D-510535F37513}
      [2012/08/12 23:35:40 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{C009AD16-8D44-445C-AF6E-1A8F1555D268}
      [2012/08/12 11:35:12 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{449E075F-4712-4994-8F28-065547244F00}
      [2012/08/12 11:33:04 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{818E85C0-D970-4503-8522-839B574BBBE8}
      [2012/08/11 22:03:40 | 000,000,000 | ---D | C] -- C:\Users\usuario\Documents\Libros para imprimir algún dia
      [2012/08/11 08:16:49 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{5A27BE73-08D3-447F-93A8-82071E61B6FD}
      [2012/08/10 12:52:44 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{5B3BCBC9-FCD4-47D3-8A16-D786FF78ED0C}
      [2012/08/10 12:52:32 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{C33E43A8-F439-441D-B32D-0C19D281070D}
      [2012/08/09 21:42:55 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{1F1342B6-B36A-4F86-9184-3BBAB00E3662}
      [2012/08/09 09:42:42 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{540B646C-16A2-43B6-BB89-79D77544B00D}
      [2012/08/08 08:42:36 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{EF4481D9-090F-473D-B093-ECAC9A9DEE2A}
      [2012/08/08 08:42:23 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{16652E39-7BD3-4871-93BB-0B70D64A327F}
      [2012/08/07 13:13:52 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{45CE0E58-1207-4B52-8664-274AA82C7E35}
      [2012/08/07 13:13:39 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{EF036401-4007-4715-815D-485C419ABC60}
      [2012/08/06 13:09:06 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{2E3284C0-D1FD-4DF4-9726-E4D7EDA9E12E}
      [2012/08/05 13:17:49 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{E5909032-116E-4B4D-9893-577A275651E6}
      [2012/08/05 13:17:36 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{142E8E02-E281-46FD-9767-722950804CD5}
      [2012/08/04 22:53:55 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{2202DDA8-E8C9-40B7-BA4A-DB2229EF7193}
      [2012/08/04 22:53:41 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{686BC45B-7A1E-4160-8D23-5608DBBA5468}
      [2012/08/04 03:38:22 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{4CC7F886-456A-4B7A-AC2C-F64048509060}
      [2012/08/03 12:35:34 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{E1818E09-8AC6-4A17-A85A-3E6D5554F6FE}
      [2012/08/03 12:35:19 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{BC1E0814-8D36-44AD-B7E0-948BE0B73E18}
      [2012/08/02 12:38:12 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{15DC30BF-CBDC-4326-9CB4-A131D1BBA1DC}
      [2012/08/02 12:36:04 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{963296ED-01A5-4FE4-BAE5-462AABCE1296}
      [2012/08/01 13:22:31 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{45CE0211-9B15-4CAC-8717-96C295FFBFF6}
      [2012/08/01 13:22:17 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{82FB87B3-8384-4E18-AFFB-EEA7B355EFEB}
      [2012/07/31 12:53:54 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{57BDCAF7-3C87-44B3-BEF0-B1C61D632204}
      [2012/07/31 12:50:45 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{B499811F-BD1B-42C7-8378-88BFF6015008}
      [2012/07/30 22:53:41 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{BCA791D4-AB4D-45B4-BD3B-C4ACAB6AD376}
      [2012/07/30 22:53:28 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{B4283BD9-6E6A-4F84-BA5E-E0D6B0F476EF}
      [2012/07/29 13:55:21 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{5023BFC8-C82A-4B6A-A05F-FA7BB8B6D785}
      [2012/07/29 13:54:11 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{4BFCFCA3-E475-419B-9C17-96C93BB51B75}
      [2012/07/28 03:00:52 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{3974F186-D2F6-4621-A154-42D059C0792C}
      [2012/07/28 03:00:37 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{DF2B4877-7557-4C01-943A-905C72AAE1F8}
      [2012/07/27 12:43:03 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{E463FAFC-3AE4-4C2D-B5BA-9F98A1560E87}
      [2012/07/27 12:40:53 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{757AEC2B-1D7C-4234-B1D0-732F2E5B7D24}
      [2012/07/26 21:32:28 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{7F8B0E1D-FF18-403C-A528-A081B3503438}
      [2012/07/26 21:32:14 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{BD64865C-B7CD-4A16-83EE-532138CA5386}
      [2012/07/25 13:25:23 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{88A93408-F444-4ECC-8680-866E7A80C031}
      [2012/07/25 13:23:13 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{361C8AE7-0383-41EE-929E-5534F6CCDC52}
      [2012/07/25 00:36:20 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{61F52695-27AA-4BA2-99DC-3F4E57E43645}
      [2012/07/24 12:35:54 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{40535FCF-3277-4B7C-8CE0-0336BD75C3F4}
      [2012/07/24 12:35:41 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{4511F0C5-8BFA-407B-93F7-3E8EBB3D67FC}
      [2012/07/23 14:11:01 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{D9243A8D-2100-4217-A733-E8148451499E}
      [2012/07/23 14:09:52 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{8A15C873-6F8A-4628-BAC7-A503389B59B0}
      [2012/07/22 14:54:24 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{B44CEB81-5C09-444A-9DDB-44C117AE955F}
      [2012/07/22 14:54:11 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{E76C8D88-8D2D-4040-92CB-C85C50B67EC9}
      [2012/07/21 15:44:11 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{98AEC329-D683-44D7-9F35-07239E20A9CC}
      [2012/07/21 15:43:58 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{25371357-D694-44F2-9146-7C89CBE7A607}
      [2012/07/20 22:05:34 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{7A426A3A-2C7E-4D1B-BC15-6EAEBE207992}
      [2012/07/20 12:28:37 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{69E7E413-E776-428F-89C8-CF600D319EE6}
      [2012/07/19 12:53:04 | 000,560,184 | ---- | C] (Duplex Secure Ltd.) -- C:\Windows\SysNative\drivers\sptd.sys
      [2012/07/19 12:45:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\appmgmt
      [2012/07/19 12:34:40 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\DAEMON Tools Lite
      [2012/07/19 12:34:38 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\OpenCandy
      [2012/07/19 12:34:05 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite
      [2012/07/19 12:20:38 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{3079DBAB-D931-443E-90A3-8B0EF8F2988F}
      [2012/07/19 12:20:23 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{A32A1BA8-2192-4D44-87B3-649CADCDB371}
      [2012/07/19 00:02:20 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{38E07AFB-334E-4156-8FB1-1EF467D7C6F8}
      [2012/07/18 19:15:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Hacha Pro
      [2012/07/18 12:01:53 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{F9DE59DC-7694-47D3-90E4-BCD46593D6B5}
      [2012/07/18 12:01:39 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{14BB5061-1678-4F48-A731-F72DF96BC172}
      [2012/07/17 14:44:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\uTorrent
      [2012/07/17 14:43:37 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\uTorrent
      [2012/07/17 11:55:12 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{4FEA7972-F8D0-4371-89AC-1144B0974DAA}
      [2012/07/17 11:53:04 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{E3E659DC-3270-41FD-9C2F-EA2A9832B141}
      [2012/07/16 11:27:14 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{B8FEF01E-62B1-4811-AF2B-DB39AE62ABF1}
      [2012/07/16 11:27:02 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{034DFA7B-E17B-45A7-82D7-F4F3BDB568DF}
      [2012/07/15 12:33:10 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{5022A152-88CE-463B-A818-BF32D0A72A9E}
      [2012/07/15 12:32:58 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{FCCFE119-252D-4DEE-8072-83F137416756}
      [2012/07/14 20:20:56 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{9803C11B-3A6A-4057-9689-550A6DF98783}
      [2012/07/14 20:20:43 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{8C4A7F34-F646-4223-9E06-27A601A609E2}
      [2012/07/14 13:27:51 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{08134836-13E1-45B8-AF85-C61AD70C9626}
      [2012/07/13 12:44:27 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{A23D53A3-56AB-4026-8201-734DDECEBA91}
      [2012/07/13 12:44:13 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{87A765ED-CC58-41DA-BD7F-FCF1C77B989D}
      [2012/07/12 08:57:38 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{DF2F0A37-DA57-4D8D-AF69-4E6A67E05CD9}
      [2012/07/11 19:31:40 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{5DA7F05C-FA2C-431F-95EF-65F0DF7474D6}
      [2012/07/11 19:31:28 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{2671A401-C52C-4D4A-BE13-62766E0625D2}
      [2012/07/11 15:09:43 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{384DEA43-ED4F-4FD9-91F0-68E44B2D44F3}
      [2012/07/10 13:43:00 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{7CD58F8D-5807-43D8-B764-F5781C3F92D7}
      [2012/07/10 13:42:47 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{4EFAB12E-18D7-4DDB-BA6B-DA0C0E7F80D3}
      [2012/07/09 1901 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{C4082588-C838-4E69-8A8F-261415863DCA}
      [2012/07/09 19:09:49 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{E1E02AF1-32E1-46D6-B903-114ACB0AC05A}
      [2012/07/09 12:27:48 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{20117615-8210-427C-8A4C-ECB7B5D9D5D7}
      [2012/07/09 12:27:35 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{6E53A99C-5999-4AA2-A4AA-B09BBB012203}
      [2012/07/07 14:05:48 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{7DCA196E-4A59-4C76-97DE-66AC6784F173}
      [2012/07/06 12:43:00 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{AEA476D0-3D00-42C8-9BB5-4B2C8DF44179}
      [2012/07/05 07:39:39 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{6E557622-FD7D-4709-8E55-38000F319987}
      [2012/07/05 07:39:27 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{EFC37468-B839-40F5-97B5-42020B245623}
      [2012/07/04 09:50:51 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{7C919497-DFAF-436F-A04B-F28229B1C6BF}
      [2012/07/03 14:14:06 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{CD964E50-D740-4E7A-8C53-8D2FDC5DF668}
      [2012/07/03 14:13:54 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{5EA6DA83-6B9A-4B8A-A9BB-6EDEDE228431}
      [2012/07/01 13:57:34 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{8A35EF17-6817-43E1-B360-C3C8F698A9AD}
      [2012/07/01 13:57:19 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{CB295EBC-3F04-4242-9BEA-4F600CF241A8}
      [2012/06/30 09:17:38 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{8FFE74FD-A0F8-4E5A-B90F-22B937A45149}
      [2012/06/30 09:17:25 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{59819DEF-CD69-4088-8FAB-9EE457AF2EC8}
      [2012/06/29 13:53:58 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{8F392B78-CAA1-40B2-8EF8-A166BF464601}
      [2012/06/28 14:01:19 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{D8EA5AAA-37CA-401D-9AED-C179D8317B04}
      [2012/06/28 14:01:06 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{3E2173E5-6659-4032-B6AC-3B1816E757E4}
      [2012/06/27 19:19:06 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{7503CF20-A152-44C4-9F26-3FDB2E5507DE}
      [2012/06/27 19:18:54 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{846F0CAC-DD73-4F58-9A38-EF9657908A7D}
      [2012/06/27 02:22:55 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{D9B0C40C-9033-4935-A7FF-0D88A4F5436C}
      [2012/06/27 02:22:43 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{D3856343-0DA9-4AD9-9E5B-280A71DBAF75}
      [2012/06/26 14:22:17 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{8ECC0C99-27BE-4CF0-8798-7FABD29433CF}
      [2012/06/26 14:22:02 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{23F7C0DF-F030-48F9-8013-2BB9482DA5D3}
      [2012/06/26 13:31:30 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{372E26FC-122A-4590-B7C3-8E759F3897A4}
      [2012/06/25 18:38:47 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{88EAAE19-2ADB-4F94-890F-35365015DBEA}
      [2012/06/25 18:38:34 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{09C130E5-2B8C-4E4D-BA6C-F9B348A056E8}
      [2012/06/24 20:58:28 | 000,000,000 | ---D | C] -- C:\Users\usuario\Documents\Wondershare PDF to Word
      [2012/06/24 20:58:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
      [2012/06/24 20:58:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Wondershare
      [2012/06/24 14:07:53 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{B041FA6C-DDF2-44E6-9793-EF56DA967E86}
      [2012/06/24 14:07:41 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{7DCB0AA3-F5F3-4752-A6E5-D20E1ECEBE26}
      [2012/06/24 02:07:15 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{28B2CB02-D7DF-4AA0-9E72-F3AE216F6962}
      [2012/06/24 02:07:07 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{5E59F761-6055-4A56-83A2-1B8C292541BE}
      [2012/06/23 21:51:04 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\Macromedia
      [2012/06/23 11:55:55 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{49C3C040-76A7-48D0-9D38-B93F4903BB76}
      [2012/06/23 11:55:40 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{BAC2A90F-3EBA-403B-A617-F4DDFDC482F2}
      [2012/06/23 02:42:36 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{D706CC86-70C2-46D5-A48C-60E874A82766}
      [2012/06/22 14:15:51 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{15F1CB98-F104-4779-8D94-1171F0FA1753}
      [2012/06/22 14:15:38 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{33CC6DF4-E31A-488C-BA51-1B94352A59E4}
      [2012/06/22 14:14:03 | 000,000,000 | ---D | C] -- C:\Windows\es
      [2012/06/22 13:59:32 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{F904F0B3-0978-4059-AAD0-194F9B62634D}
      [2012/06/22 12:53:36 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{9465F69B-C1AE-44B1-8954-4A0679919070}
      [2012/06/21 23:46:45 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{36C1DC7D-683A-47E8-B9DF-076DF115D3C5}
      [2012/06/20 11:09:20 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{EC6E01BB-1142-450E-A025-77EA9AD7F6A9}
      [2012/06/19 14:12:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe
      [2012/06/19 13:53:34 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{4630F7B9-E12A-4DC9-93CD-950B1CEA85B3}
      [2012/06/14 03:35:18 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{0003C591-D402-49A1-AC54-CA4524327D9D}
      [2012/06/14 03:34:40 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{94AEA0C6-5536-41C9-ACAB-A8FC72E67FE9}
      [2012/06/14 01:57:48 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{2B80C4FE-1957-4FE5-836E-32B92DCF9609}
      [2012/06/13 23:59:34 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{8BDE9693-9404-499C-83B1-A2336565DF9E}
      [2012/06/13 20:17:38 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{D4F55790-0E28-4638-914C-F41302750A09}
      [2012/06/12 14:07:43 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{3B368BD8-043B-43C4-B258-D5B5BBB68243}
      [2012/06/11 14:00:04 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{D0E50B5A-A4CB-4496-8191-48F16200E5EB}
      [2012/06/10 10:03:55 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{35D699F0-5B15-4443-B5CA-B382C23C8969}
      [2012/06/10 00:57:08 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{C93C577B-7979-4042-A543-E98CB6F902A2}
      [2012/06/09 11:07:07 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{85BE1A20-5913-4B45-972A-077197554154}
      [2012/06/08 13:14:08 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{9B700DA6-6B90-4A69-A982-FE836D9C0DCB}
      [2012/06/07 17:38:34 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{B518E5F4-CA51-4FBF-B86A-FEC191D1E148}
      [2012/06/07 12:32:06 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{9FB505E0-9D79-4397-A28D-A30D8FC54DFE}
      [2012/06/06 14:48:48 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{BAE6FE1C-84E8-4E9C-9BAF-D5B2206922F7}
      [2012/06/05 20:28:57 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{0BCCCCF7-8F5D-4A1A-91EA-9D14B0DE4374}
      [2012/06/05 13:13:47 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{9E2B3E94-D865-4C4A-900B-3BF45F65FF03}
      [2012/06/03 19:28:53 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{C17D063E-0ED5-477B-B3FB-D2117BF379C7}
      [2012/06/01 22:20:16 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{88580E25-6061-469A-885B-4E15102DC320}
      [2012/06/01 13:01:35 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{D37998D9-FB8E-4A0A-B33D-909C294AAD3C}
      [2012/05/31 21:40:33 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{5F0D3A6C-DD49-48B6-8B5F-C74B058EAD4B}
      [2012/05/30 23:08:32 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{2731524F-0089-4808-A10C-950496470443}
      [2012/05/30 17:12:14 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{DA9EBAE8-7B81-4A54-B582-4805DD6F0A67}
      [2012/05/30 16:31:33 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{2162BA94-88CD-46BF-9D30-F01F485D513A}
      [2012/05/30 15:35:14 | 000,000,000 | ---D | C] -- C:\Users\usuario\Documents\otros
      [2012/05/30 02:19:45 | 000,000,000 | ---D | C] -- C:\Users\usuario\Documents\Asterix
      [2012/05/29 13:23:43 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{E4569A30-5DC4-40FF-805A-14ECB87906B6}
      [2012/05/28 19:36:31 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{3C5BA992-40FD-4648-AD66-B77FB1285D4C}
      [2012/05/27 15:07:27 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{41ED9436-0FF6-4997-8AEF-71838C56CA95}
      [2012/05/26 20:15:20 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{08404DBB-A897-4A60-81F7-820F125177BB}
      [2012/05/26 12:22:50 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{CE131BF4-BE16-4257-9F8B-C3B8F61C9344}
      [2012/05/26 00:48:37 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\Sports Interactive
      [2012/05/26 00:48:37 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\Sports Interactive
      [2012/05/26 00:32:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SEGA
      [2012/05/25 22:59:26 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{35C3D377-89E6-4F63-A098-2FD3776A7269}
      [2012/05/25 18:49:00 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{6DEFD885-DB99-49A5-896D-716FAAD93D0D}
      [2012/05/25 18:45:52 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\Ares
      [2012/05/25 18:45:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ares
      [2012/05/25 18:45:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Ares
      [2012/05/24 12:32:52 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{83D4E710-1711-48F9-9282-C92CE0E592FC}
      [2012/05/22 20:02:23 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{79327CA1-2CB5-4811-81E0-40857EA4D022}
      [2012/05/22 15:13:19 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{255821D8-9ADA-464D-BA98-07CD4D42113C}
      [2012/05/21 19:54:53 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{D1C7A17B-9520-47B7-8532-77479C7DDF5B}
      [2012/05/20 13:14:37 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{5E703128-C65B-43AC-842E-AFC3498F6AED}
      [2012/05/19 13:58:46 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{23096488-3AA8-437F-9009-98EBC035A713}
      [2012/05/18 13:20:19 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{151F9157-4373-4CC3-BFBA-AF0AA15C08D3}
      [2012/05/18 01:13:24 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BS.Player
      [2012/05/18 01:11:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Webteh
      [2012/05/18 01:11:59 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\BSplayer Pro
      [2012/05/18 01:11:59 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\BSplayer
      [2012/05/15 18:01:17 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{ADED0654-5A6A-4FDF-B44E-14238A032139}
      [2012/05/15 13:25:19 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{AF375A2C-BF5E-4F3A-A9CC-B9DA5D50FF34}
      [2012/05/14 14:17:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
      [2012/05/14 14:17:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
      [2012/05/13 16:32:28 | 000,000,000 | ---D | C] -- C:\Users\usuario\Documents\Mis archivos recibidos
      [2012/05/09 19:29:13 | 000,000,000 | ---D | C] -- C:\Users\usuario\Documents\ICO
      [2012/05/08 16:47:47 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\Media Player Classic
      [2012/04/27 15:17:19 | 000,000,000 | ---D | C] -- C:\Users\usuario\Tracing
      [2012/04/22 12:20:12 | 000,000,000 | ---D | C] -- C:\Users\usuario\Desktop\Pablo
      [2012/04/20 18:45:12 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\Microsoft Games
      [2012/04/19 00:52:34 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\{2B64D13F-755C-4E97-8514-EE51BA92EBD4}
      [2012/04/19 00:44:06 | 000,000,000 | ---D | C] -- C:\Users\usuario\Documents\UBA
      [2012/04/19 00:40:59 | 000,000,000 | ---D | C] -- C:\Users\usuario\Música
      [2012/04/18 22:08:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\JDownloader
      [2012/04/18 22:01:54 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\Babylon
      [2012/04/18 22:01:53 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\Babylon
      [2012/04/18 22:01:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Babylon
      [2012/04/18 22:00:38 | 000,697,864 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
      [2012/04/18 22:00:38 | 000,074,248 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
      [2012/04/18 22:00:38 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Macromed
      [2012/04/18 22:00:37 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Macromed
      [2012/04/18 21:26:02 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\Mozilla
      [2012/04/18 21:26:02 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\Mozilla
      [2012/04/18 11:13:37 | 000,438,784 | ---- | C] (Ralink Technology, Corp.) -- C:\Windows\SysNative\drivers\netr6164.sys
      [2012/04/18 11:13:37 | 000,303,616 | ---- | C] (Ralink Technology, Inc.) -- C:\Windows\SysNative\RaCoInstx.dll
      [2012/04/18 11:13:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Ralink Driver
      [2012/04/18 11:13:24 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\InstallShield
      [2012/04/18 11:13:24 | 000,000,000 | ---D | C] -- C:\ProgramData\InstallShield
      [2012/04/18 11:09:27 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\Avira
      [2012/04/18 11:04:32 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\ATI
      [2012/04/18 11:04:32 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\ATI
      [2012/04/18 11:04:32 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
      [2012/04/18 11:04:16 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\Ahead
      [2012/04/18 11:01:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
      [2012/04/18 11:00:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Works
      [2012/04/18 10:59:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Visual Studio
      [2012/04/18 10:59:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DESIGNER
      [2012/04/18 10:59:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft.NET
      [2012/04/18 10:57:43 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
      [2012/04/18 10:57:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Visual Studio 8
      [2012/04/18 10:57:14 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\Microsoft Help
      [2012/04/18 10:57:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office
      [2012/04/18 10:57:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
      [2012/04/18 10:56:42 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\WinRAR
      [2012/04/18 10:56:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
      [2012/04/18 10:56:41 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
      [2012/04/18 10:56:35 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
      [2012/04/18 10:56:25 | 000,000,000 | RH-D | C] -- C:\MSOCache
      [2012/04/18 10:54:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
      [2012/04/18 10:53:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Windows Live
      [2012/04/18 10:52:47 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
      [2012/04/18 10:51:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
      [2012/04/18 10:51:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Silverlight
      [2012/04/18 10:49:26 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\Windows Live
      [2012/04/18 10:49:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Windows Live
      [2012/04/18 10:46:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
      [2012/04/18 10:46:16 | 000,839,680 | ---- | C] (www) -- C:\Windows\SysWow64\lameACM.acm
      [2012/04/18 10:46:15 | 000,151,552 | ---- | C] (fccHandler) -- C:\Windows\SysWow64\ac3acm.acm
      [2012/04/18 10:46:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\K-Lite Codec Pack
      [2012/04/18 10:43:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
      [2012/04/18 10:43:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe
      [2012/04/18 10:42:34 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\Macromedia
      [2012/04/18 10:42:34 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\Adobe
      [2012/04/18 10:42:13 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\Adobe
      [2012/04/18 10:41:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
      [2012/04/18 10:41:20 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
      [2012/04/18 10:39:11 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
      [2012/04/18 10:37:39 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\Google
      [2012/04/18 10:36:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 7 Ultra Edition
      [2012/04/18 10:25:48 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\Ahead
      [2012/04/18 10:25:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Ahead
      [2012/04/18 10:25:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Nero
      [2012/04/18 10:25:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Nero
      [2012/04/18 10:25:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Ahead
      [2012/04/18 10:18:05 | 000,132,832 | ---- | C] (Avira GmbH) -- C:\Windows\SysNative\drivers\avipbb.sys
      [2012/04/18 10:18:05 | 000,098,848 | ---- | C] (Avira GmbH) -- C:\Windows\SysNative\drivers\avgntflt.sys
      [2012/04/18 10:18:05 | 000,027,760 | ---- | C] (Avira GmbH) -- C:\Windows\SysNative\drivers\avkmgr.sys
      [2012/04/18 10:18:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
      [2012/04/18 10:18:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Avira
      [2012/04/18 10:08:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ATI
      [2012/04/18 10:08:32 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ATI Technologies
      [2012/04/18 10:08:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ATI Technologies
      [2012/04/18 10:08:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
      [2012/04/18 10:07:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ATI Technologies
      [2012/04/18 10:07:20 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies
      [2012/04/18 10:07:17 | 000,000,000 | ---D | C] -- C:\Program Files\ATI
      [2012/04/18 10:05:12 | 006,659,072 | ---- | C] (ATI Technologies Inc.) -- C:\Windows\SysNative\drivers\atikmdag.sys
      [2012/04/18 10:05:12 | 000,446,464 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\ATIDEMGX.dll
      [2012/04/18 10:05:12 | 000,195,584 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\atikmpag.sys
      [2012/04/18 10:05:12 | 000,055,296 | ---- | C] (AMD) -- C:\Windows\SysNative\coinst.dll
      [2012/04/18 10:05:08 | 004,806,144 | ---- | C] (ATI Technologies Inc. ) -- C:\Windows\SysNative\atiumd64.dll
      [2012/04/18 10:05:08 | 003,707,904 | ---- | C] (ATI Technologies Inc. ) -- C:\Windows\SysWow64\atiumdag.dll
      [2012/04/18 10:05:08 | 002,983,936 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiumdva.dll
      [2012/04/18 10:05:08 | 002,701,312 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiumd6a.dll
      [2012/04/18 10:05:08 | 000,455,168 | ---- | C] (AMD) -- C:\Windows\SysNative\atieclxx.exe
      [2012/04/18 10:05:08 | 000,421,376 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\SysNative\atipdl64.dll
      [2012/04/18 10:05:08 | 000,356,352 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\SysWow64\atipdlxx.dll
      [2012/04/18 10:05:08 | 000,278,528 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\SysWow64\Oemdspif.dll
      [2012/04/18 10:05:08 | 000,202,752 | ---- | C] (AMD) -- C:\Windows\SysNative\atiesrxx.exe
      [2012/04/18 10:05:08 | 000,143,360 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atiapfxx.exe
      [2012/04/18 10:05:08 | 000,120,320 | ---- | C] (AMD) -- C:\Windows\SysNative\atitmm64.dll
      [2012/04/18 10:05:08 | 000,118,784 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atibtmon.exe
      [2012/04/18 10:05:08 | 000,036,864 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiuxp64.dll
      [2012/04/18 10:05:08 | 000,028,160 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiuxpag.dll
      [2012/04/18 10:05:08 | 000,028,160 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiu9p64.dll
      [2012/04/18 10:05:08 | 000,020,480 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiu9pag.dll
      [2012/04/18 10:05:07 | 014,321,664 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysWow64\atioglxx.dll
      [2012/04/18 10:05:05 | 018,929,664 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atio6axx.dll
      [2012/04/18 10:05:04 | 005,186,048 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticaldd64.dll
      [2012/04/18 10:05:04 | 004,018,176 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticaldd.dll
      [2012/04/18 10:05:04 | 003,834,880 | ---- | C] (ATI Technologies Inc. ) -- C:\Windows\SysNative\atidxx64.dll
      [2012/04/18 10:05:04 | 003,164,160 | ---- | C] (ATI Technologies Inc. ) -- C:\Windows\SysWow64\atidxx32.dll
      [2012/04/18 10:05:04 | 000,553,472 | ---- | C] (ATI Technologies Inc. ) -- C:\Windows\SysNative\aticfx64.dll
      [2012/04/18 10:05:04 | 000,489,472 | ---- | C] (ATI Technologies Inc. ) -- C:\Windows\SysWow64\aticfx32.dll
      [2012/04/18 10:05:04 | 000,059,392 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\SysNative\atiedu64.dll
      [2012/04/18 10:05:04 | 000,053,248 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atimpc64.dll
      [2012/04/18 10:05:04 | 000,053,248 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\amdpcom64.dll
      [2012/04/18 10:05:04 | 000,053,248 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticalrt.dll
      [2012/04/18 10:05:04 | 000,052,224 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atimpc32.dll
      [2012/04/18 10:05:04 | 000,052,224 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\amdpcom32.dll
      [2012/04/18 10:05:04 | 000,043,008 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticalrt64.dll
      [2012/04/18 10:05:04 | 000,039,936 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticalcl64.dll
      [2012/04/18 10:05:04 | 000,016,384 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atig6txx.dll
      [2012/04/18 10:05:04 | 000,014,848 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atigktxx.dll
      [2012/04/18 10:05:04 | 000,014,848 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atig6pxx.dll
      [2012/04/18 10:05:04 | 000,012,800 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiglpxx.dll
      [2012/04/18 10:05:04 | 000,012,800 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiglpxx.dll
      [2012/04/18 10:05:04 | 000,012,288 | ---- | C] (AMD) -- C:\Windows\SysNative\atimuixx.dll
      [2012/04/18 10:05:03 | 000,334,336 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atiadlxx.dll
      [2012/04/18 10:05:03 | 000,237,568 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysWow64\atiadlxy.dll
      [2012/04/18 10:05:03 | 000,053,248 | ---- | C] (ATI Technologies Inc.) -- C:\Windows\SysNative\drivers\ati2erec.dll
      [2012/04/18 10:05:03 | 000,053,248 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticalcl.dll
      [2012/04/18 10:05:03 | 000,043,520 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\SysWow64\ati2edxx.dll
      [2012/04/18 09:51:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Etron Technology
      [2012/04/18 09:51:40 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
      [2012/04/18 09:51:05 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM
      [2012/04/18 09:51:05 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
      [2012/04/18 09:51:00 | 003,746,408 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkHDM64.dll
      [2012/04/18 09:51:00 | 003,308,376 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEP64H.dll
      [2012/04/18 09:51:00 | 002,526,824 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RHDMEx64.dll
      [2012/04/18 09:51:00 | 000,426,328 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EED64H.dll
      [2012/04/18 09:51:00 | 000,372,056 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEP64H.dll
      [2012/04/18 09:51:00 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RH3DHT64.dll
      [2012/04/18 09:51:00 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RH3DAA64.dll
      [2012/04/18 09:51:00 | 000,239,208 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\drivers\RtHDMIVX.sys
      [2012/04/18 09:51:00 | 000,204,120 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEED64H.dll
      [2012/04/18 09:51:00 | 000,136,024 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEL64H.dll
      [2012/04/18 09:51:00 | 000,118,104 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEA64H.dll
      [2012/04/18 09:51:00 | 000,097,624 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEL64H.dll
      [2012/04/18 09:51:00 | 000,092,264 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RHCoInst64.dll
      [2012/04/18 09:51:00 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEG64H.dll
      [2012/04/18 09:51:00 | 000,074,072 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEG64H.dll
      [2012/04/18 09:50:59 | 003,844,200 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkAPO64.dll
      [2012/04/18 09:50:59 | 002,649,704 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtPgEx64.dll
      [2012/04/18 09:50:59 | 002,603,864 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\WavesGUILib.dll
      [2012/04/18 09:50:59 | 001,560,168 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTSnMg64.cpl
      [2012/04/18 09:50:59 | 001,247,848 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTCOM64.dll
      [2012/04/18 09:50:59 | 000,823,912 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkApi64.dll
      [2012/04/18 09:50:59 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll
      [2012/04/18 09:50:59 | 000,375,128 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEP64A.dll
      [2012/04/18 09:50:59 | 000,331,880 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtlCPAPI64.dll
      [2012/04/18 09:50:59 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll
      [2012/04/18 09:50:59 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll
      [2012/04/18 09:50:59 | 000,211,184 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSH64.dll
      [2012/04/18 09:50:59 | 000,204,120 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEED64A.dll
      [2012/04/18 09:50:59 | 000,198,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSHP64.dll
      [2012/04/18 09:50:59 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll
      [2012/04/18 09:50:59 | 000,149,608 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCfg64.dll
      [2012/04/18 09:50:59 | 000,101,208 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEL64A.dll
      [2012/04/18 09:50:59 | 000,100,968 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoInstII64.dll
      [2012/04/18 09:50:59 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEG64A.dll
      [2012/04/18 09:50:59 | 000,014,952 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCoLDR64.dll
      [2012/04/18 09:50:58 | 002,528,832 | ---- | C] (Fortemedia Corporation) -- C:\Windows\SysNative\FMAPO64.dll
      [2012/04/18 09:50:58 | 002,131,288 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioEQ.dll
      [2012/04/18 09:50:58 | 000,958,296 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPOShell64.dll
      [2012/04/18 09:50:58 | 000,894,040 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\MBAPO64.dll
      [2012/04/18 09:50:58 | 000,750,680 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysWow64\MBAPO32.dll
      [2012/04/18 09:50:58 | 000,318,808 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO20.dll
      [2012/04/18 09:50:58 | 000,200,800 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAC64.dll
      [2012/04/18 09:50:58 | 000,108,960 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAR64.dll
      [2012/04/18 09:50:58 | 000,080,984 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\MBWrp64.dll
      [2012/04/18 09:50:58 | 000,065,112 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\MBppld64.dll
      [2012/04/18 09:50:58 | 000,060,504 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\MBPPCn64.dll
      [2012/04/18 09:50:53 | 001,698,408 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\RtlExUpd.dll
      [2012/04/18 09:50:53 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Temp
      [2012/04/18 09:50:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\InstallShield
      [2012/04/18 09:49:23 | 000,646,248 | ---- | C] (Realtek ) -- C:\Windows\SysNative\drivers\Rt64win7.sys
      [2012/04/18 09:49:23 | 000,107,552 | ---- | C] (Realtek Semiconductor Corporation) -- C:\Windows\SysNative\RTNUninst64.dll
      [2012/04/18 09:49:20 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\InstallShield Installation Information
      [2012/04/18 09:49:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Realtek
      [2012/04/17 20:06:08 | 000,000,000 | ---D | C] -- C:\Users\usuario\Desktop\backup
      [2012/04/17 1904 | 000,000,000 | R--D | C] -- C:\Users\usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
      [2012/04/17 1904 | 000,000,000 | R--D | C] -- C:\Users\usuario\Searches
      [2012/04/17 1904 | 000,000,000 | R--D | C] -- C:\Users\usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
      [2012/04/17 19:09:57 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\Identities
      [2012/04/17 19:09:56 | 000,000,000 | R--D | C] -- C:\Users\usuario\Contacts
      [2012/04/17 19:09:54 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\VirtualStore
      [2012/04/17 19:09:49 | 000,000,000 | --SD | C] -- C:\Users\usuario\AppData\Roaming\Microsoft
      [2012/04/17 19:09:49 | 000,000,000 | R--D | C] -- C:\Users\usuario\Videos
      [2012/04/17 19:09:49 | 000,000,000 | R--D | C] -- C:\Users\usuario\Saved Games
      [2012/04/17 19:09:49 | 000,000,000 | R--D | C] -- C:\Users\usuario\Pictures
      [2012/04/17 19:09:49 | 000,000,000 | R--D | C] -- C:\Users\usuario\Music
      [2012/04/17 19:09:49 | 000,000,000 | R--D | C] -- C:\Users\usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
      [2012/04/17 19:09:49 | 000,000,000 | R--D | C] -- C:\Users\usuario\Links
      [2012/04/17 19:09:49 | 000,000,000 | R--D | C] -- C:\Users\usuario\Favorites
      [2012/04/17 19:09:49 | 000,000,000 | R--D | C] -- C:\Users\usuario\Downloads
      [2012/04/17 19:09:49 | 000,000,000 | R--D | C] -- C:\Users\usuario\Documents
      [2012/04/17 19:09:49 | 000,000,000 | R--D | C] -- C:\Users\usuario\Desktop
      [2012/04/17 19:09:49 | 000,000,000 | R--D | C] -- C:\Users\usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
      [2012/04/17 19:09:49 | 000,000,000 | -HSD | C] -- C:\Users\usuario\SendTo
      [2012/04/17 19:09:49 | 000,000,000 | -HSD | C] -- C:\Users\usuario\Reciente
      [2012/04/17 19:09:49 | 000,000,000 | -HSD | C] -- C:\Users\usuario\Plantillas
      [2012/04/17 19:09:49 | 000,000,000 | -HSD | C] -- C:\Users\usuario\Documents\Mis vídeos
      [2012/04/17 19:09:49 | 000,000,000 | -HSD | C] -- C:\Users\usuario\Documents\Mis imágenes
      [2012/04/17 19:09:49 | 000,000,000 | -HSD | C] -- C:\Users\usuario\Mis documentos
      [2012/04/17 19:09:49 | 000,000,000 | -HSD | C] -- C:\Users\usuario\Documents\Mi música
      [2012/04/17 19:09:49 | 000,000,000 | -HSD | C] -- C:\Users\usuario\Menú Inicio
      [2012/04/17 19:09:49 | 000,000,000 | -HSD | C] -- C:\Users\usuario\Impresoras
      [2012/04/17 19:09:49 | 000,000,000 | -HSD | C] -- C:\Users\usuario\AppData\Local\Historial
      [2012/04/17 19:09:49 | 000,000,000 | -HSD | C] -- C:\Users\usuario\Entorno de red
      [2012/04/17 19:09:49 | 000,000,000 | -HSD | C] -- C:\Users\usuario\Datos de programa
      [2012/04/17 19:09:49 | 000,000,000 | -HSD | C] -- C:\Users\usuario\AppData\Local\Datos de programa
      [2012/04/17 19:09:49 | 000,000,000 | -HSD | C] -- C:\Users\usuario\Cookies
      [2012/04/17 19:09:49 | 000,000,000 | -HSD | C] -- C:\Users\usuario\Configuración local
      [2012/04/17 19:09:49 | 000,000,000 | -HSD | C] -- C:\Users\usuario\AppData\Local\Archivos temporales de Internet
      [2012/04/17 19:09:49 | 000,000,000 | -H-D | C] -- C:\Users\usuario\AppData
      [2012/04/17 19:09:49 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\Temp
      [2012/04/17 19:09:49 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Local\Microsoft
      [2012/04/17 19:09:49 | 000,000,000 | ---D | C] -- C:\Users\usuario\AppData\Roaming\Media Center Programs
      [2012/04/17 19:09:43 | 000,000,000 | -HSD | C] -- C:\Recovery
      [2012/04/17 19:09:43 | 000,000,000 | -HSD | C] -- C:\ProgramData\Plantillas
      [2012/04/17 19:09:43 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Mis vídeos
      [2012/04/17 19:09:43 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Mis imágenes
      [2012/04/17 19:09:43 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Mi música
      [2012/04/17 19:09:43 | 000,000,000 | -HSD | C] -- C:\ProgramData\Menú Inicio
      [2012/04/17 19:09:43 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoritos
      [2012/04/17 19:09:43 | 000,000,000 | -HSD | C] -- C:\ProgramData\Escritorio
      [2012/04/17 19:09:43 | 000,000,000 | -HSD | C] -- C:\ProgramData\Documentos
      [2012/04/17 19:09:43 | 000,000,000 | -HSD | C] -- C:\ProgramData\Datos de programa
      [2012/04/17 19:09:43 | 000,000,000 | -HSD | C] -- C:\Archivos de programa
      [2012/04/17 19:09:43 | 000,000,000 | -HSD | C] -- C:\Program Files\Archivos comunes
      [2012/04/17 15:00:04 | 000,000,000 | ---D | C] -- C:\Windows\Panther
      [2012/04/17 14:09:12 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
      [2012/04/17 14:01:01 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
      [2012/04/17 14:00:45 | 000,000,000 | -HSD | C] -- C:\System Volume Information
      [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

      ========== Files - Modified Within 360 Days ==========

      [2013/01/26 00:46:00 | 000,000,838 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
      [2013/01/26 00:36:25 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\usuario\Desktop\OTL.exe
      [2013/01/26 00:30:00 | 000,001,102 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
      [2013/01/26 00:02:00 | 000,001,118 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3045825028-1641346135-152900933-1000UA.job
      [2013/01/25 23:38:45 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
      [2013/01/25 23:38:45 | 000,001,066 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3045825028-1641346135-152900933-1000Core.job
      [2013/01/25 21:17:35 | 000,014,016 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
      [2013/01/25 21:17:35 | 000,014,016 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
      [2013/01/25 21:14:18 | 001,539,088 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
      [2013/01/25 21:14:18 | 000,697,746 | ---- | M] () -- C:\Windows\SysNative\perfh00A.dat
      [2013/01/25 21:14:18 | 000,609,896 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
      [2013/01/25 21:14:18 | 000,135,410 | ---- | M] () -- C:\Windows\SysNative\perfc00A.dat
      [2013/01/25 21:14:18 | 000,104,214 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
      [2013/01/25 2110 | 000,001,098 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
      [2013/01/25 21:09:58 | 2816,647,168 | -HS- | M] () -- C:\hiberfil.sys
      [2013/01/25 20:26:14 | 000,417,064 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
      [2013/01/25 17:42:42 | 000,002,578 | ---- | M] () -- C:\Users\usuario\Desktop\Google Chrome.lnk
      [2013/01/25 17:42:42 | 000,001,372 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
      [2013/01/24 23:04:40 | 002,039,747 | ---- | M] () -- C:\Users\usuario\Documents\luchaarmada2.pdf
      [2013/01/23 11:28:09 | 000,002,014 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk
      [2013/01/16 06:26:19 | 000,102,912 | ---- | M] () -- C:\Users\usuario\AppData\Roaming\CheckRun22find.exe
      [2013/01/08 21:47:31 | 000,697,864 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
      [2013/01/08 21:47:31 | 000,074,248 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
      [2012/08/13 20:34:04 | 000,132,832 | ---- | M] (Avira GmbH) -- C:\Windows\SysNative\drivers\avipbb.sys
      [2012/08/13 20:34:04 | 000,098,848 | ---- | M] (Avira GmbH) -- C:\Windows\SysNative\drivers\avgntflt.sys
      [2012/07/26 21:33:37 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
      [2012/07/19 12:53:04 | 000,560,184 | ---- | M] (Duplex Secure Ltd.) -- C:\Windows\SysNative\drivers\sptd.sys
      [2012/07/17 14:44:38 | 000,000,943 | ---- | M] () -- C:\Users\Public\Desktop\µTorrent.lnk
      [2012/07/11 16:00:43 | 000,003,584 | ---- | M] () -- C:\Users\usuario\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
      [2012/06/24 20:58:24 | 000,001,171 | ---- | M] () -- C:\Users\Public\Desktop\Wondershare PDF to Word.lnk
      [2012/05/27 01:07:53 | 000,000,136 | ---- | M] () -- C:\Users\usuario\Desktop\Chess Titans - Acceso directo.lnk
      [2012/05/25 18:45:48 | 000,000,951 | ---- | M] () -- C:\Users\Public\Desktop\Ares.lnk
      [2012/05/25 00:05:00 | 001,558,130 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
      [2012/05/20 02:09:21 | 000,000,151 | ---- | M] () -- C:\Windows\PhotoSnapViewer.INI
      [2012/05/18 01:13:24 | 000,001,122 | ---- | M] () -- C:\Users\usuario\Desktop\BS.Player FREE.lnk
      [2012/04/18 22:08:24 | 000,002,037 | ---- | M] () -- C:\Users\usuario\Desktop\JDownloader.lnk
      [2012/04/18 22:02:21 | 000,000,237 | ---- | M] () -- C:\user.js
      [2012/04/18 11:18:05 | 000,000,864 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts.msn
      [2012/04/18 11:18:05 | 000,000,864 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
      [2012/04/18 11:03:32 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin
      [2012/04/18 11:01:04 | 000,002,657 | ---- | M] () -- C:\Users\usuario\Desktop\Microsoft Office Word 2007.lnk
      [2012/04/18 10:58:48 | 000,002,486 | ---- | M] () -- C:\Users\usuario\Desktop\Windows Live Messenger.lnk
      [2012/04/18 10:41:21 | 000,000,822 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
      [2012/04/18 10:36:18 | 000,002,782 | ---- | M] () -- C:\Users\Public\Desktop\Nero StartSmart.lnk
      [2012/04/18 10:36:18 | 000,002,686 | ---- | M] () -- C:\Users\usuario\Desktop\Nero Home.lnk
      [2012/04/18 09:48:12 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
      [2012/04/17 14:03:53 | 000,052,732 | ---- | M] () -- C:\Windows\SysWow64\license.rtf
      [2012/04/17 14:03:53 | 000,052,732 | ---- | M] () -- C:\Windows\SysNative\license.rtf
      [2012/02/15 15:00:00 | 000,079,360 | ---- | M] () -- C:\Windows\SysWow64\ff_vfw.dll
      [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

      ========== Files Created - No Company Name ==========

      [2013/01/25 17:42:39 | 000,102,912 | ---- | C] () -- C:\Users\usuario\AppData\Roaming\CheckRun22find.exe
      [2013/01/24 23:04:40 | 002,039,747 | ---- | C] () -- C:\Users\usuario\Documents\luchaarmada2.pdf
      [2012/08/24 20:12:17 | 000,001,102 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
      [2012/08/24 20:12:16 | 000,001,098 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
      [2012/07/26 21:33:37 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
      [2012/07/17 14:44:38 | 000,000,943 | ---- | C] () -- C:\Users\Public\Desktop\µTorrent.lnk
      [2012/06/24 20:58:24 | 000,001,171 | ---- | C] () -- C:\Users\Public\Desktop\Wondershare PDF to Word.lnk
      [2012/06/19 14:12:14 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader 9.lnk
      [2012/06/19 14:12:14 | 000,002,014 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk
      [2012/05/27 01:07:53 | 000,000,136 | ---- | C] () -- C:\Users\usuario\Desktop\Chess Titans - Acceso directo.lnk
      [2012/05/25 18:45:48 | 000,000,951 | ---- | C] () -- C:\Users\Public\Desktop\Ares.lnk
      [2012/05/25 00:05:00 | 001,558,130 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
      [2012/05/20 02:09:21 | 000,000,151 | ---- | C] () -- C:\Windows\PhotoSnapViewer.INI
      [2012/05/18 01:13:24 | 000,001,122 | ---- | C] () -- C:\Users\usuario\Desktop\BS.Player FREE.lnk
      [2012/05/16 18:19:57 | 000,003,584 | ---- | C] () -- C:\Users\usuario\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
      [2012/04/27 16:11:06 | 000,002,657 | ---- | C] () -- C:\Users\usuario\Desktop\Microsoft Office Word 2007.lnk
      [2012/04/18 22:08:24 | 000,002,037 | ---- | C] () -- C:\Users\usuario\Desktop\JDownloader.lnk
      [2012/04/18 22:08:22 | 000,002,001 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader.lnk
      [2012/04/18 22:08:22 | 000,001,945 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader Uninstaller.lnk
      [2012/04/18 22:08:22 | 000,001,924 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader Update.lnk
      [2012/04/18 22:02:21 | 000,000,237 | ---- | C] () -- C:\user.js
      [2012/04/18 22:00:39 | 000,000,838 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
      [2012/04/18 21:25:57 | 000,001,384 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
      [2012/04/18 21:25:57 | 000,001,372 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
      [2012/04/18 11:03:32 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
      [2012/04/18 10:58:48 | 000,002,486 | ---- | C] () -- C:\Users\usuario\Desktop\Windows Live Messenger.lnk
      [2012/04/18 10:54:50 | 000,001,305 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Movie Maker.lnk
      [2012/04/18 10:54:28 | 000,001,374 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Photo Gallery.lnk
      [2012/04/18 10:53:57 | 000,002,522 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk
      [2012/04/18 10:46:16 | 000,650,752 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
      [2012/04/18 10:46:16 | 000,243,200 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
      [2012/04/18 10:46:16 | 000,000,414 | ---- | C] () -- C:\Windows\SysWow64\lame_acm.xml
      [2012/04/18 10:46:15 | 000,175,616 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
      [2012/04/18 10:46:14 | 000,079,360 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
      [2012/04/18 10:41:21 | 000,000,822 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
      [2012/04/18 10:39:13 | 000,002,578 | ---- | C] () -- C:\Users\usuario\Desktop\Google Chrome.lnk
      [2012/04/18 10:37:41 | 000,001,118 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3045825028-1641346135-152900933-1000UA.job
      [2012/04/18 10:37:40 | 000,001,066 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3045825028-1641346135-152900933-1000Core.job
      [2012/04/18 10:36:18 | 000,002,782 | ---- | C] () -- C:\Users\Public\Desktop\Nero StartSmart.lnk
      [2012/04/18 10:36:18 | 000,002,686 | ---- | C] () -- C:\Users\usuario\Desktop\Nero Home.lnk
      [2012/04/18 10:05:12 | 000,020,862 | ---- | C] () -- C:\Windows\atiogl.xml
      [2012/04/18 10:05:09 | 000,332,288 | ---- | C] () -- C:\Windows\SysNative\ATIODE.exe
      [2012/04/18 10:05:08 | 000,051,200 | ---- | C] () -- C:\Windows\SysNative\ATIODCLI.exe
      [2012/04/18 10:05:03 | 000,515,424 | ---- | C] () -- C:\Windows\SysWow64\atiumdva.cap
      [2012/04/18 10:05:03 | 000,515,424 | ---- | C] () -- C:\Windows\SysNative\atiumd6a.cap
      [2012/04/18 10:05:03 | 000,202,234 | ---- | C] () -- C:\Windows\SysNative\atiicdxx.dat
      [2012/04/18 10:05:03 | 000,002,023 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
      [2012/04/18 10:05:03 | 000,002,023 | ---- | C] () -- C:\Windows\SysNative\atipblag.dat
      [2012/04/18 10:05:02 | 000,038,400 | ---- | C] () -- C:\Windows\SysNative\atiapfxx.blb
      [2012/04/18 09:50:59 | 000,215,644 | ---- | C] () -- C:\Windows\SysNative\drivers\RTAIODAT.DAT
      [2012/04/18 09:49:23 | 000,074,272 | ---- | C] () -- C:\Windows\SysNative\RtNicProp64.dll
      [2012/04/18 09:48:12 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
      [2012/04/17 1909 | 000,001,647 | ---- | C] () -- C:\Users\usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
      [2012/04/17 1906 | 000,001,669 | ---- | C] () -- C:\Users\usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
      [2012/04/17 14:03:46 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
      [2012/04/17 14:03:38 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
      [2012/04/17 14:00:45 | 2816,647,168 | -HS- | C] () -- C:\hiberfil.sys

      ========== ZeroAccess Check ==========

      [2009/07/14 01:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

      [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

      [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

      [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

      [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
      "" = C:\Windows\SysNative\shell32.dll -- [2009/07/13 22:41:54 | 014,161,920 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
      "" = %SystemRoot%\system32\shell32.dll -- [2009/07/13 22:16:14 | 012,866,560 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
      "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 22:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
      "" = %systemroot%\system32\wbem\fastprox.dll -- [2009/07/13 22:15:20 | 000,605,696 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
      "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 22:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Both

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

      < End of report >

    5. #5
      Usuario Avatar de pablo_canaya
      Registrado
      ago 2008
      Ubicación
      Argentina
      Mensajes
      91

      Re: Virus "22find"

      Repetí sin darme cuenta la primer parte del informe, disculpame . Saludos
      Última edición por pablo_canaya fecha: 26/01/13 a las 00:08:37

    6. #6
      Ex-Colaborador Avatar de Anleg_30
      Registrado
      dic 2007
      Ubicación
      Bna-Venezuela
      Mensajes
      10.546

      Re: Virus "22find"

      El reporte es muy extenso, configuraste como no era el OTL.

      Instalastes por tu cuenta el programa NewTabs ?

      Vas a realizar lo siguiente:

      • Abre OTL.exe porfavor, y solo realiza lo siguiente tal cual:
      • Copia y pega el siguiente código en su marco en blanco (debajo de Código de Reparación)


      Código:
      :OTL
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = 22Find Portal Site
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = 22Find Portal Site
      IE - HKLM\..\SearchScopes,DefaultScope = {006ee092-9658-4fd6-bd8e-a21a348e59f5}
      IE - HKLM\..\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}: "URL" = http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=AR&userid=5163f09d-b8fc-4217-b3e4-f18bf3103daf&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms}
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = 22Find Portal Site
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=AR&userid=5163f09d-b8fc-4217-b3e4-f18bf3103daf&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms}
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=AR&userid=5163f09d-b8fc-4217-b3e4-f18bf3103daf&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms}
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = 22Find Portal Site
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=AR&userid=5163f09d-b8fc-4217-b3e4-f18bf3103daf&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms}
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=AR&userid=5163f09d-b8fc-4217-b3e4-f18bf3103daf&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms}
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\..\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}: "URL" = http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=AR&userid=5163f09d-b8fc-4217-b3e4-f18bf3103daf&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms}
      IE - HKU\S-1-5-21-3045825028-1641346135-152900933-1000\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = 22Find Portal Site
      FF - prefs.js..browser.search.defaultenginename: "22find"
      FF - prefs.js..browser.search.order.1: "22find"
      FF - prefs.js..browser.startup.homepage: "http://www.22find.com/?utm_source=b&utm_medium=gdp&from=gdp&uid=WDCXWD5000AAKS-00E4A0_WD-WCATR358077380773&ts=1359146559"
      FF - prefs.js..keyword.URL: "http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=AR&userid=5163f09d-b8fc-4217-b3e4-f18bf3103daf&affid=111583&searchtype=ds&babsrc=lnkry&q="
      [2012/07/19 12:54:23 | 000,002,474 | ---- | M] () -- C:\Users\usuario\AppData\Roaming\mozilla\firefox\profiles\t7o07l3a.default\searchplugins\Web Search.xml
      [2013/01/25 17:42:46 | 000,000,757 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\22find.xml
      [2012/04/18 22:02:02 | 000,002,313 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\babylon.xml
      CHR - homepage: 22Find Portal Site
      O4 - HKLM..\Run: [CheckRun22find_uninstaller] C:\Users\usuario\AppData\Roaming\CheckRun22find.exe ()
      O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      
      
      :Commands
      [emptytemp]
      • Seguidamente pulsa sobre el botón Reparar



      Deja que se ejecute y luego del reinicio me copias el reporte que genere.



      Blog | Antivirus Online | Eliminar Malwares | Antivirus Gratis

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    7. #7
      Usuario Avatar de pablo_canaya
      Registrado
      ago 2008
      Ubicación
      Argentina
      Mensajes
      91

      Re: Virus "22find"

      Hola, no instale "NewTabs".
      Te pego el reporte.

      All processes killed
      ========== OTL ==========
      HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully!
      HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{006ee092-9658-4fd6-bd8e-a21a348e59f5}\ not found.
      HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully!
      HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Bar| /E : value set successfully!
      HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Page| /E : value set successfully!
      HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
      HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Search\\Default_Search_URL| /E : value set successfully!
      HKU\S-1-5-21-3045825028-1641346135-152900933-1000\SOFTWARE\Microsoft\Internet Explorer\Search\\SearchAssistant| /E : value set successfully!
      Registry key HKEY_USERS\S-1-5-21-3045825028-1641346135-152900933-1000\Software\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{006ee092-9658-4fd6-bd8e-a21a348e59f5}\ not found.
      Registry key HKEY_USERS\S-1-5-21-3045825028-1641346135-152900933-1000\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86}\ not found.
      Prefs.js: "22find" removed from browser.search.defaultenginename
      Prefs.js: "22find" removed from browser.search.order.1
      Prefs.js: "http://www.22find.com/?utm_source=b&utm_medium=gdp&from=gdp&uid=WDCXWD5000AAKS-00E4A0_WD-WCATR358077380773&ts=1359146559" removed from browser.startup.homepage
      Prefs.js: "http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=AR&userid=5163f09d-b8fc-4217-b3e4-f18bf3103daf&affid=111583&searchtype=ds&babsrc=lnkry&q=" removed from keyword.URL
      C:\Users\usuario\AppData\Roaming\mozilla\firefox\profiles\t7o07l3a.default\searchplugins\Web Search.xml moved successfully.
      C:\Program Files (x86)\mozilla firefox\searchplugins\22find.xml moved successfully.
      C:\Program Files (x86)\mozilla firefox\searchplugins\babylon.xml moved successfully.
      Use Chrome's Settings page to change the HomePage.
      Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\CheckRun22find_uninstaller deleted successfully.
      C:\Users\usuario\AppData\Roaming\CheckRun22find.exe moved successfully.
      64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
      64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
      Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
      ========== COMMANDS ==========

      [EMPTYTEMP]

      User: All Users

      User: Default
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 0 bytes

      User: Default User
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 0 bytes

      User: Public

      User: usuario
      ->Temp folder emptied: 35148520 bytes
      ->Temporary Internet Files folder emptied: 22110675 bytes
      ->FireFox cache emptied: 169498277 bytes
      ->Google Chrome cache emptied: 27517209 bytes
      ->Flash cache emptied: 2738 bytes

      %systemdrive% .tmp files removed: 0 bytes
      %systemroot% .tmp files removed: 0 bytes
      %systemroot%\System32 .tmp files removed: 0 bytes
      %systemroot%\System32 (64bit) .tmp files removed: 0 bytes
      %systemroot%\System32\drivers .tmp files removed: 0 bytes
      Windows Temp folder emptied: 66016 bytes
      %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 50539 bytes
      RecycleBin emptied: 287990 bytes

      Total Files Cleaned = 243,00 mb


      OTL by OldTimer - Version 3.2.69.0 log created on 01262013_105241

      Files\Folders moved on Reboot...
      C:\Users\usuario\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.

      PendingFileRenameOperations files...

      Registry entries deleted on Reboot...

      ----------------------------

      Ahora me acabo de dar cuenta que el programa que se me ancla en la barra de erramientas se hace llamar "Desk 365". No se servirá de algo pero bueno. Gracias por el tiempo de dedicación. Saludos.

    8. #8
      Ex-Colaborador Avatar de Anleg_30
      Registrado
      dic 2007
      Ubicación
      Bna-Venezuela
      Mensajes
      10.546

      Re: Virus "22find"

      Hola de nuevo,

      Las páginas de inicio ya deberías poder colocar la que desees sin problemas, solo desinstala Desk 365 y newTabs y me comentas a la vuelta si siguen los mismos inconvenietes o no.



      Blog | Antivirus Online | Eliminar Malwares | Antivirus Gratis

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    9. #9
      Usuario Avatar de pablo_canaya
      Registrado
      ago 2008
      Ubicación
      Argentina
      Mensajes
      91

      Re: Virus "22find"

      Hola, con respecto al tema del desk 365 parece estar solucionado. Lo que no, es el "22find". Cada vez que abro un explorador o una pestaña sigue apareciendo ( sin ser la página de inicio). Incluso despues de haberlo desinstalado. Saludos.

    10. #10
      Ex-Colaborador Avatar de Anleg_30
      Registrado
      dic 2007
      Ubicación
      Bna-Venezuela
      Mensajes
      10.546

      Re: Virus "22find"

      No capté eso de "sin ser la página de inicio"

      Vuelve a ejecutar OTL como te indiqué al inicio y me dejas ese nuevo reporte.

      Salu2.......>



      Blog | Antivirus Online | Eliminar Malwares | Antivirus Gratis

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    Página 1 de 2 12 ÚltimoÚltimo