• Registrarse
  • Iniciar sesión


  • Página 3 de 4 PrimeroPrimero 1234 ÚltimoÚltimo
    Resultados 21 al 30 de 33

    Problema con ventanas emergentes (eoRezo) y portatil congelado.

    Antes de comprobar otros asuntos, ahora sigue estos pasos : MUY Importante ~ Realiza una copia de seguridad del registro con >> Erunt . Y después ejecuta de nuevo OTL.exe Copia y Pega el código ...

    1. #21
      Moderador Gral.
      Avatar de @Javier_HF
      Registrado
      jun 2006
      Ubicación
      Spain.
      Mensajes
      21.692

      Re: Problema con ventanas emergentes (eoRezo) y portatil congelado.

      Antes de comprobar otros asuntos, ahora sigue estos pasos :

      MUY Importante ~ Realiza una copia de seguridad del registro con >> Erunt.

      Y después ejecuta de nuevo OTL.exe

      Copia y Pega el código que está dentro del recuadro de abajo en la sección Análisis Personalizado / Código de Reparación.

      Código:
      :OTL
      DRV - (UIUSys) -- system32\DRIVERS\UIUSYS.SYS File not found
      DRV - (NwlnkFwd) -- system32\DRIVERS\nwlnkfwd.sys File not found
      DRV - (NwlnkFlt) -- system32\DRIVERS\nwlnkflt.sys File not found
      DRV - (IpInIp) -- system32\DRIVERS\ipinip.sys File not found
      SRV - (SPTISRV) -- C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe File not found
      SRV - (MSCSPTISRV) -- C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe File not found
      IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\..\URLSearchHook: {687578b9-7132-4a7a-80e4-30ee31099e03} - No CLSID value found
      IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\..\URLSearchHook: {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - No CLSID value found
      IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>;*.offerbox.com
      FF - user.js - File not found
      FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.13.2: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.13.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
      FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:6.0.11
      FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13
      FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}:6.0.15
      FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17
      FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
      FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
      FF - HKLM\Software\MozillaPlugins\@veetle.com/vbp;version=0.9.17: C:\Program Files\Veetle\VLCBroadcast\npvbp.dll File not found
      FF - HKCU\Software\MozillaPlugins\@facebook.com/FBPlugin,version=1.0.3: C:\Users\AyR\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll File not found
      [2012/12/08 14:37:36 | 000,001,356 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-es.xml
      [2013/02/20 21:45:01 | 000,002,086 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\twitter.xml
      O4 - HKU\S-1-5-21-2916581329-1141900253-794385938-1000..\Run: [AdobeBridge] File not found
      O4 - HKLM..\Run: [AML] C:\Program Files\Sony\VAIO Launcher\AML.exe (Sony)
      O13 - gopher Prefix: missing
      O33 - MountPoints2\{797f7f82-c6ec-11df-8c34-00214fb4f8b8}\Shell\AutoRun\command - "" = G:\SanDiskMediaManager.EXE
      O33 - MountPoints2\{b4bd0fae-a4b6-11df-9363-001dba80f662}\Shell - "" = AutoRun
      O33 - MountPoints2\{b4bd0fae-a4b6-11df-9363-001dba80f662}\Shell\AutoRun\command - "" = H:\LaunchU3.exe -a
      O33 - MountPoints2\{fbac6768-261d-11de-b8c4-00214fb4f8b8}\Shell\AutoRun\command - "" = G:\RECYCLER\S-1-6-21-2434476501-1644491937-600003330-1213\autorunme.exe
      O33 - MountPoints2\{fbac6768-261d-11de-b8c4-00214fb4f8b8}\Shell\open\command - "" = G:\RECYCLER\S-1-6-21-2434476501-1644491937-600003330-1213\autorunme.exe
      :Files
      ipconfig /flushdns /c
      ipconfig /renew /c
      :Commands
      [PURITY]
      [EMPTYFLASH]
      [EMPTYTEMP]
      [RESETHOSTS]
      Presiona el Botón Reparar para lanzar la eliminación. Después presionas en OK.

      OTL va a Reiniciar el ordenador para completar la eliminación.

      Guardas el nuevo reporte generado, y lo copias y pegas en tu próxima respuesta.

      Antes de contestarnos, y después de pasar OTL, revisa/actualiza tu versión de Java(Muy Importante) >> Descarga gratuita del software de Java

      Y cuando nos contestes dinos que versión de Java se ha quedado instalada >> ¿Cómo puedo comprobar si Java funciona en mi equipo?

      Recuerda ponernos el log de OTL, y dinos también que versión de Java tienes ahora y como sigue el ordenador, en relación al problema planteado.

      Saludos.
      Quien no lo intenta no lo consigue | ;-)

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    2. #22
      Usuario Avatar de Roxo
      Registrado
      may 2008
      Ubicación
      Irlanda
      Mensajes
      75

      Re: Problema con ventanas emergentes (eoRezo) y portatil congelado.

      Hola Javierhf,

      Me ha sido imposible realizar copia del seguridad del registro con ERUNT.

      Veamos, este el reporte de que me pides de OTL:

      ***************************************************************************
      All processes killed
      Error: Unable to interpret <DRV - (UIUSys) -- system32\DRIVERS\UIUSYS.SYS File not found> in the current context!
      Error: Unable to interpret <DRV - (NwlnkFwd) -- system32\DRIVERS\nwlnkfwd.sys File not found> in the current context!
      Error: Unable to interpret <DRV - (NwlnkFlt) -- system32\DRIVERS\nwlnkflt.sys File not found> in the current context!
      Error: Unable to interpret <DRV - (IpInIp) -- system32\DRIVERS\ipinip.sys File not found> in the current context!
      Error: Unable to interpret <SRV - (SPTISRV) -- C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe File not found> in the current context!
      Error: Unable to interpret <SRV - (MSCSPTISRV) -- C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe File not found> in the current context!
      Error: Unable to interpret <IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\..\URLSearchHook: {687578b9-7132-4a7a-80e4-30ee31099e03} - No CLSID value found> in the current context!
      Error: Unable to interpret <IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\..\URLSearchHook: {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - No CLSID value found> in the current context!
      Error: Unable to interpret <IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>;*.offerbox.com> in the current context!
      Error: Unable to interpret <FF - user.js - File not found> in the current context!
      Error: Unable to interpret <FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.13.2: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)> in the current context!
      Error: Unable to interpret <FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.13.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)> in the current context!
      Error: Unable to interpret <FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:6.0.11> in the current context!
      Error: Unable to interpret <FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13> in the current context!
      Error: Unable to interpret <FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}:6.0.15> in the current context!
      Error: Unable to interpret <FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17> in the current context!
      Error: Unable to interpret <FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20> in the current context!
      Error: Unable to interpret <FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found> in the current context!
      Error: Unable to interpret <FF - HKLM\Software\MozillaPlugins\@veetle.com/vbp;version=0.9.17: C:\Program Files\Veetle\VLCBroadcast\npvbp.dll File not found> in the current context!
      Error: Unable to interpret <FF - HKCU\Software\MozillaPlugins\@facebook.com/FBPlugin,version=1.0.3: C:\Users\AyR\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll File not found> in the current context!
      Error: Unable to interpret <[2012/12/08 14:37:36 | 000,001,356 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-es.xml> in the current context!
      Error: Unable to interpret <[2013/02/20 21:45:01 | 000,002,086 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\twitter.xml> in the current context!
      Error: Unable to interpret <O4 - HKU\S-1-5-21-2916581329-1141900253-794385938-1000..\Run: [AdobeBridge] File not found> in the current context!
      Error: Unable to interpret <O4 - HKLM..\Run: [AML] C:\Program Files\Sony\VAIO Launcher\AML.exe (Sony)> in the current context!
      Error: Unable to interpret <O13 - gopher Prefix: missing> in the current context!
      Error: Unable to interpret <O33 - MountPoints2\{797f7f82-c6ec-11df-8c34-00214fb4f8b8}\Shell\AutoRun\command - "" = G:\SanDiskMediaManager.EXE> in the current context!
      Error: Unable to interpret <O33 - MountPoints2\{b4bd0fae-a4b6-11df-9363-001dba80f662}\Shell - "" = AutoRun> in the current context!
      Error: Unable to interpret <O33 - MountPoints2\{b4bd0fae-a4b6-11df-9363-001dba80f662}\Shell\AutoRun\command - "" = H:\LaunchU3.exe -a> in the current context!
      Error: Unable to interpret <O33 - MountPoints2\{fbac6768-261d-11de-b8c4-00214fb4f8b8}\Shell\AutoRun\command - "" = G:\RECYCLER\S-1-6-21-2434476501-1644491937-600003330-1213\autorunme.exe> in the current context!
      Error: Unable to interpret <O33 - MountPoints2\{fbac6768-261d-11de-b8c4-00214fb4f8b8}\Shell\open\command - "" = G:\RECYCLER\S-1-6-21-2434476501-1644491937-600003330-1213\autorunme.exe> in the current context!
      ========== FILES ==========
      < ipconfig /flushdns /c >
      Windows IP Configuration
      Successfully flushed the DNS Resolver Cache.
      C:\Users\AyR\Desktop\Antiviruses\cmd.bat deleted successfully.
      C:\Users\AyR\Desktop\Antiviruses\cmd.txt deleted successfully.
      < ipconfig /renew /c >
      Windows IP Configuration
      No operation can be performed on Local Area Connection while it has its media disconnected.
      Wireless LAN adapter Wireless Network Connection:
      Connection-specific DNS Suffix . : home
      Link-local IPv6 Address . . . . . : fe80::1961:c263:160:bd51%11
      IPv4 Address. . . . . . . . . . . : 192.168.1.14
      Subnet Mask . . . . . . . . . . . : 255.255.255.0
      Default Gateway . . . . . . . . . : 192.168.1.1
      Ethernet adapter Local Area Connection:
      Media State . . . . . . . . . . . : Media disconnected
      Connection-specific DNS Suffix . :
      Tunnel adapter Local Area Connection* 6:
      Media State . . . . . . . . . . . : Media disconnected
      Connection-specific DNS Suffix . :
      Tunnel adapter Local Area Connection* 11:
      Media State . . . . . . . . . . . : Media disconnected
      Connection-specific DNS Suffix . :
      Tunnel adapter Local Area Connection* 12:
      Connection-specific DNS Suffix . :
      IPv6 Address. . . . . . . . . . . : 2001:0:5ef5:79fb:24d7:2195:3f57:fef1
      Link-local IPv6 Address . . . . . : fe80::24d7:2195:3f57:fef1%15
      Default Gateway . . . . . . . . . : ::
      Tunnel adapter Local Area Connection* 13:
      Media State . . . . . . . . . . . : Media disconnected
      Connection-specific DNS Suffix . : home
      C:\Users\AyR\Desktop\Antiviruses\cmd.bat deleted successfully.
      C:\Users\AyR\Desktop\Antiviruses\cmd.txt deleted successfully.
      ========== COMMANDS ==========

      [EMPTYFLASH]

      User: Administrator

      User: Administrator.AyR-Laptop
      ->Flash cache emptied: 59415 bytes

      User: All Users

      User: AyR
      ->Flash cache emptied: 2017658 bytes

      User: Default
      ->Flash cache emptied: 56673 bytes

      User: Default User
      ->Flash cache emptied: 0 bytes

      User: Public

      Total Flash Files Cleaned = 2.00 mb


      [EMPTYTEMP]

      User: Administrator

      User: Administrator.AyR-Laptop
      ->Temp folder emptied: 67893 bytes
      ->Temporary Internet Files folder emptied: 48094142 bytes
      ->Java cache emptied: 0 bytes
      ->FireFox cache emptied: 9614674 bytes
      ->Flash cache emptied: 0 bytes

      User: All Users

      User: AyR
      ->Temp folder emptied: 1998 bytes
      ->Temporary Internet Files folder emptied: 32902 bytes
      ->Java cache emptied: 2680172 bytes
      ->FireFox cache emptied: 7657839 bytes
      ->Flash cache emptied: 0 bytes

      User: Default
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 33170 bytes
      ->Flash cache emptied: 0 bytes

      User: Default User
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 0 bytes
      ->Flash cache emptied: 0 bytes

      User: Public

      %systemdrive% .tmp files removed: 0 bytes
      %systemroot% .tmp files removed: 0 bytes
      %systemroot%\System32 .tmp files removed: 0 bytes
      %systemroot%\System32\drivers .tmp files removed: 0 bytes
      Windows Temp folder emptied: 63134 bytes
      %systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
      RecycleBin emptied: 0 bytes

      Total Files Cleaned = 65.00 mb

      C:\Windows\System32\drivers\etc\Hosts moved successfully.
      HOSTS file reset successfully

      OTL by OldTimer - Version 3.2.69.0 log created on 03122013_141624

      Files\Folders moved on Reboot...

      PendingFileRenameOperations files...

      Registry entries deleted on Reboot...
      *****************************************************************************

      Tambien he reinstalado Java, la version SE 7 Update 17 y parace que funciona correctamente.

      En relacion al problema tanto de ventanas emergentes como al bloqueo del sistema, han mejorado notablemente pero como te comentaba el post anterior a raiz de este proceso cuando reinicio el portatil me aparece este mensaje:

      "AML has stopped working: A problem caused the program to stop working correctly. Windows will close the the program and notify you if a solution is available."

      Y una única opcion en la ventana que pone "Close Program". La verdad no se muy bien que es esto ya tambien parace que el sistema al iniciar esta bloqueando programas de inicio.

      En el menu de la barra de inicio tambien aparece un icono de Blocked Startup Programs, si accedo me da opciones para ver y quitar o reactivar programas bloqueados.

    3. #23
      Moderador Gral.
      Avatar de @Javier_HF
      Registrado
      jun 2006
      Ubicación
      Spain.
      Mensajes
      21.692

      Re: Problema con ventanas emergentes (eoRezo) y portatil congelado.

      Saca un nuevo log de OTL, como el que te indicamos en el post 2, pero solo la parte de OTL.

      Saludos.
      Quien no lo intenta no lo consigue | ;-)

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    4. #24
      Usuario Avatar de Roxo
      Registrado
      may 2008
      Ubicación
      Irlanda
      Mensajes
      75

      Re: Problema con ventanas emergentes (eoRezo) y portatil congelado.

      Hola Javierf:

      Ahi van los reportes de OTL, el primero:


      OTL logfile created on: 12/03/2013 19:51:56 - Run 3
      OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\AyR\Desktop\Antiviruses
      Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
      Internet Explorer (Version = 7.0.6002.18005)
      Locale: 00001809 | Country: Ireland | Language: ENI | Date Format: dd/MM/yyyy

      2.97 Gb Total Physical Memory | 1.39 Gb Available Physical Memory | 46.78% Memory free
      6.13 Gb Paging File | 4.46 Gb Available in Paging File | 72.78% Paging File free
      Paging file location(s): ?:\pagefile.sys [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
      Drive C: | 286.82 Gb Total Space | 106.51 Gb Free Space | 37.14% Space Free | Partition Type: NTFS

      Computer Name: AYR-LAPTOP | User Name: AyR | Logged in as Administrator.
      Boot Mode: Normal | Scan Mode: All users
      Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

      ========== Processes (SafeList) ==========

      PRC - C:\Users\AyR\Desktop\Antiviruses\OTL.exe (OldTimer Tools)
      PRC - c:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Corporation)
      PRC - c:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation)
      PRC - C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
      PRC - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
      PRC - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
      PRC - C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
      PRC - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
      PRC - C:\Program Files\WinZip\WZQKPICK32.EXE (WinZip Computing, S.L.)
      PRC - C:\Program Files\Sony\VAIO Media plus\VMpTtray.exe (Sony Corporation)
      PRC - C:\Program Files\Sony\VAIO Update 5\VAIOUpdt.exe (Sony Corporation)
      PRC - C:\Program Files\Sony\VAIO Update Common\VUAgent.exe (Sony Corporation)
      PRC - C:\Program Files\Common Files\ArcSoft\esinter\Bin\eservutil.exe (ArcSoft Inc.)
      PRC - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ArcSoft Inc.)
      PRC - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac (ArcSoft Inc.)
      PRC - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
      PRC - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
      PRC - C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe (Sony Corporation)
      PRC - C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel(R) Corporation)
      PRC - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel(R) Corporation)
      PRC - C:\Windows\explorer.exe (Microsoft Corporation)
      PRC - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe (Sony Corporation)
      PRC - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe (Sony Corporation)
      PRC - C:\Program Files\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe (Sony Corporation)
      PRC - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
      PRC - C:\Program Files\Sony\Network Utility\NSUService.exe (Sony Corporation)
      PRC - C:\Program Files\Sony\Network Utility\LANUtil.exe (Sony Corporation)
      PRC - C:\Program Files\Sony\VAIO Event Service\VESMgr.exe (Sony Corporation)
      PRC - C:\Program Files\Sony\VAIO Event Service\VESMgrSub.exe (Sony Corporation)
      PRC - C:\Windows\RTKAUDIOSERVICE.EXE (Realtek Semiconductor)
      PRC - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
      PRC - C:\Program Files\Sony\VAIO Power Management\SPMgr.exe (Sony Corporation)
      PRC - C:\Program Files\Sony\VAIO Power Management\SPMService.exe (Sony Corporation)
      PRC - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Intel Corporation)
      PRC - C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
      PRC - C:\Program Files\Sony\ISB Utility\ISBMgr.exe (Sony Corporation)
      PRC - C:\Program Files\Sony\SonicStage Mastering Studio\Audio Filter\SSMSFilter.exe (Sony Corporation)
      PRC - C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe (InterVideo)


      ========== Modules (No Company Name) ==========

      MOD - C:\Windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll ()
      MOD - C:\Windows\assembly\GAC_MSIL\SMDiagnostics\3.0.0.0__b77a5c561934e089\SMDiagnostics.dll ()
      MOD - C:\Windows\assembly\GAC_MSIL\System.ServiceModel\3.0.0.0__b77a5c561934e089\System.ServiceModel.dll ()
      MOD - C:\Windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll ()
      MOD - C:\Windows\assembly\GAC_MSIL\System.IdentityModel\3.0.0.0__b77a5c561934e089\System.IdentityModel.dll ()
      MOD - C:\Windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll ()
      MOD - C:\Windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll ()
      MOD - C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll ()
      MOD - C:\Windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll ()
      MOD - C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll ()
      MOD - C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll ()
      MOD - C:\Windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.Xml.dll ()
      MOD - C:\Windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll ()
      MOD - C:\Windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.dll ()
      MOD - C:\Windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll ()
      MOD - C:\Windows\assembly\GAC_MSIL\System.IdentityModel.Selectors\3.0.0.0__b77a5c561934e089\System.IdentityModel.Selectors.dll ()
      MOD - C:\Windows\assembly\GAC_MSIL\SPMDam\3.1.0.6020__1b3c579b6925895f\SPMDam.dll ()
      MOD - C:\Windows\assembly\GAC_MSIL\SPMCommon\3.1.0.6020__e3c7096ba83f9295\SPMCommon.dll ()
      MOD - C:\Program Files\WIDCOMM\Bluetooth Software\BTKeyInd.dll ()


      ========== Services (SafeList) ==========

      SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
      SRV - (MozillaMaintenance) -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
      SRV - (NisSrv) -- c:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Corporation)
      SRV - (MsMpSvc) -- c:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation)
      SRV - (SkypeUpdate) -- C:\Program Files\Skype\Updater\Updater.exe (Skype Technologies)
      SRV - (AdobeARMservice) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
      SRV - (MBAMService) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
      SRV - (MBAMScheduler) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
      SRV - (SOHDms) -- C:\Program Files\Common Files\Sony Shared\SOHLib\SOHDms.exe (Sony Corporation)
      SRV - (SOHPlMgr) -- C:\Program Files\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe (Sony Corporation)
      SRV - (SOHDs) -- C:\Program Files\Common Files\Sony Shared\SOHLib\SOHDs.exe (Sony Corporation)
      SRV - (SOHCImp) -- C:\Program Files\Common Files\Sony Shared\SOHLib\SOHCImp.exe (Sony Corporation)
      SRV - (SOHDBSvr) -- C:\Program Files\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe (Sony Corporation)
      SRV - (VUAgent) -- C:\Program Files\Sony\VAIO Update Common\VUAgent.exe (Sony Corporation)
      SRV - (ADExchange) -- C:\Program Files\Common Files\ArcSoft\esinter\Bin\eservutil.exe (ArcSoft Inc.)
      SRV - (FLEXnet Licensing Service) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
      SRV - (ACDaemon) -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
      SRV - (SwitchBoard) -- C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
      SRV - (VcmIAlzMgr) -- C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe (Sony Corporation)
      SRV - (VcmXmlIfHelper) -- C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper.exe (Sony Corporation)
      SRV - (EvtEng) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel(R) Corporation)
      SRV - (RegSrvc) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel(R) Corporation)
      SRV - (PACSPTISVR) -- C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe (Sony Corporation)
      SRV - (Vcsw) -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe (Sony Corporation)
      SRV - (VzCdbSvc) -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe (Sony Corporation)
      SRV - (VAIO Entertainment TV Device Arbitration Service) -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe (Sony Corporation)
      SRV - (VCFw) -- C:\Program Files\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe (Sony Corporation)
      SRV - (NSUService) -- C:\Program Files\Sony\Network Utility\NSUService.exe (Sony Corporation)
      SRV - (VAIO Event Service) -- C:\Program Files\Sony\VAIO Event Service\VESMgr.exe (Sony Corporation)
      SRV - (RtkAudioService) -- C:\Windows\RTKAUDIOSERVICE.EXE (Realtek Semiconductor)
      SRV - (VAIO Power Management) -- C:\Program Files\Sony\VAIO Power Management\SPMService.exe (Sony Corporation)
      SRV - (IAANTMON) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Intel Corporation)
      SRV - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
      SRV - (IviRegMgr) -- C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe (InterVideo)


      ========== Driver Services (SafeList) ==========

      DRV - (NisDrv) -- C:\Windows\System32\drivers\NisDrvWFP.sys (Microsoft Corporation)
      DRV - (MBAMProtector) -- C:\Windows\System32\drivers\mbam.sys (Malwarebytes Corporation)
      DRV - (NETw5v32) -- C:\Windows\System32\drivers\NETw5v32.sys (Intel Corporation)
      DRV - (nvlddmkm) -- C:\Windows\System32\drivers\nvlddmkm.sys (NVIDIA Corporation)
      DRV - (NVHDA) -- C:\Windows\System32\drivers\nvhda32v.sys (NVIDIA Corporation)
      DRV - (DMICall) -- C:\Windows\System32\drivers\DMICall.sys (Sony Corporation)
      DRV - (rimsptsk) -- C:\Windows\System32\drivers\rimsptsk.sys (REDC)
      DRV - (risdptsk) -- C:\Windows\System32\drivers\risdptsk.sys (REDC)
      DRV - (WimFltr) -- C:\Windows\System32\drivers\WimFltr.sys (Microsoft Corporation)
      DRV - (SFEP) -- C:\Windows\System32\drivers\SFEP.sys (Sony Corporation)
      DRV - (XAudio) -- C:\Windows\System32\drivers\XAudio.sys (Conexant Systems, Inc.)
      DRV - (regi) -- C:\Windows\System32\drivers\regi.sys (InterVideo)
      DRV - (Afc) -- C:\Windows\System32\drivers\afc.sys (Arcsoft, Inc.)


      ========== Standard Registry (SafeList) ==========


      ========== Internet Explorer ==========

      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Sony: Community: Welcome to the Sony Community for Computing
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google
      IE - HKLM\..\SearchScopes,DefaultScope =
      IE - HKLM\..\SearchScopes\{04AC67CA-CEC5-44DC-BF66-52D1201ED2F2}: "URL" = http://www.google.co.uk/search?hl=en&q={searchTerms}&meta=


      IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
      IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
      IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

      IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

      IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Sony: Community: Welcome to the Sony Community for Computing
      IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.sonystyle-europe.comht [Binary data over 200 bytes]
      IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Upgrade to Google Chrome
      IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = Google
      IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google
      IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
      IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\..\URLSearchHook: {687578b9-7132-4a7a-80e4-30ee31099e03} - No CLSID value found
      IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\..\URLSearchHook: {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - No CLSID value found
      IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\..\SearchScopes,DefaultScope =
      IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\..\SearchScopes\{04AC67CA-CEC5-44DC-BF66-52D1201ED2F2}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7SNYK_en-GB
      IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
      IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
      IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\..\SearchScopes\{F6A4E11F-182E-4857-8E48-7E1456A1053F}: "URL" = http://www3.iamwired.net/websearch.php?src=tops&search={SearchTerms}
      IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
      IE - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>;*.offerbox.com

      ========== FireFox ==========

      FF - prefs.js..browser.startup.homepage: "http://www.google.es/"
      FF - prefs.js..extensions.enabledAddons: %7Ba3a5c777-f583-4fef-9380-ab4add1bc2a8%7D:5.1
      FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:19.0.2
      FF - user.js - File not found

      FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_11_6_602_171.dll ()
      FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
      FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
      FF - HKLM\Software\MozillaPlugins\@canon.com/EPPEX: C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
      FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Web Player\npdivx32.dll (DivX,Inc.)
      FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll (DivX, Inc)
      FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.17.2: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.17.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@veetle.com/vbp;version=0.9.17: C:\Program Files\Veetle\VLCBroadcast\npvbp.dll File not found
      FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
      FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
      FF - HKCU\Software\MozillaPlugins\@facebook.com/FBPlugin,version=1.0.3: C:\Users\AyR\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll File not found

      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 19.0.2\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2013/03/10 1505 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 19.0.2\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2013/02/23 09:04:41 | 000,000,000 | ---D | M]

      [2013/03/10 15:06:03 | 000,000,000 | ---D | M] (No name found) -- C:\Users\AyR\AppData\Roaming\Mozilla\Extensions
      [2010/05/19 01:27:43 | 000,000,000 | ---D | M] (No name found) -- C:\Users\AyR\AppData\Roaming\Mozilla\Extensions\[email protected]
      [2013/03/10 15:42:22 | 000,000,000 | ---D | M] (No name found) -- C:\Users\AyR\AppData\Roaming\Mozilla\Firefox\Profiles\zdr3i4ef.default\extensions
      [2013/03/10 15:42:22 | 000,014,005 | ---- | M] () (No name found) -- C:\Users\AyR\AppData\Roaming\Mozilla\Firefox\Profiles\zdr3i4ef.default\extensions\{a3a5c777-f583-4fef-9380-ab4add1bc2a8}.xpi
      [2013/03/10 1505 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
      [2013/02/20 21:44:43 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
      [2013/03/07 15:31:00 | 000,263,064 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
      [2013/03/07 15:30:20 | 000,002,465 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
      [2013/03/07 15:30:20 | 000,002,086 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\twitter.xml

      O1 HOSTS File: ([2013/03/12 14:16:38 | 000,000,098 | ---- | M]) - C:\Windows\System32\drivers\etc\Hosts
      O1 - Hosts: 127.0.0.1 localhost
      O1 - Hosts: ::1 localhost
      O2 - BHO: (Aplicación auxiliar de vínculos de Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
      O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
      O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
      O2 - BHO: (CBrowserHelperObject Object) - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Google BAE\BAE.dll (Your Company Name)
      O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
      O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
      O3 - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
      O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
      O4 - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
      O4 - HKLM..\Run: [AdobeCS4ServiceManager] C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe (Adobe Systems Incorporated)
      O4 - HKLM..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin File not found
      O4 - HKLM..\Run: [AML] C:\Program Files\Sony\VAIO Launcher\AML.exe (Sony)
      O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
      O4 - HKLM..\Run: [ArcSoft Connection Service] C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ArcSoft Inc.)
      O4 - HKLM..\Run: [ArgenteRC] C:\Program Files\Argente - Registry Cleaner\ArgenteRC.exe (Argente Software)
      O4 - HKLM..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (CANON INC.)
      O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
      O4 - HKLM..\Run: [ISBMgr.exe] C:\Program Files\Sony\ISB Utility\ISBMgr.exe (Sony Corporation)
      O4 - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
      O4 - HKLM..\Run: [NvCplDaemon] C:\Windows\System32\NvCpl.dll (NVIDIA Corporation)
      O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
      O4 - HKLM..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
      O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
      O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
      O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
      O4 - HKU\S-1-5-21-2916581329-1141900253-794385938-1000..\Run: [NSUFloatingUI] C:\Program Files\Sony\Network Utility\LANUtil.exe (Sony Corporation)
      O4 - HKU\S-1-5-21-2916581329-1141900253-794385938-1000..\Run: [VMpTtray.exe] C:\Program Files\Sony\VAIO Media plus\VMpTtray.exe (Sony Corporation)
      O4 - Startup: C:\Users\AyR\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Audio Filter.lnk = C:\Program Files\Sony\SonicStage Mastering Studio\Audio Filter\SSMSFilter.exe (Sony Corporation)
      O4 - Startup: C:\Users\AyR\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE ()
      O7 - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
      O8 - Extra context menu item: Append to existing PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
      O8 - Extra context menu item: Convert link target to Adobe PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
      O8 - Extra context menu item: Convert link target to existing PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
      O8 - Extra context menu item: Convert selected links to Adobe PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
      O8 - Extra context menu item: Convert selected links to existing PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
      O8 - Extra context menu item: Convert selection to Adobe PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
      O8 - Extra context menu item: Convert selection to existing PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
      O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
      O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
      O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
      O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
      O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
      O13 - gopher Prefix: missing
      O15 - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\..Trusted Domains: corel.com ([]http in Trusted sites)
      O15 - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\..Trusted Domains: corel.com ([www] * in Trusted sites)
      O15 - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\..Trusted Domains: intervideo.com ([]http in Trusted sites)
      O15 - HKU\S-1-5-21-2916581329-1141900253-794385938-1000\..Trusted Domains: intervideo.com ([www] * in Trusted sites)
      O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Reg Error: Value error.)
      O16 - DPF: {CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_06)
      O16 - DPF: {CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_33)
      O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 10.17.2)
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{22175AD7-8AF6-4186-8A12-64AF706C52B9}: DhcpNameServer = 192.168.1.1
      O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
      O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
      O20 - Winlogon\Notify\VESWinlogon: DllName - (VESWinlogon.dll) - C:\Windows\System32\VESWinlogon.dll (Sony Corporation)
      O24 - Desktop WallPaper: C:\Users\AyR\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
      O24 - Desktop BackupWallPaper: C:\Users\AyR\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
      O32 - HKLM CDRom: AutoRun - 1
      O32 - AutoRun File - [2006/09/18 22:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
      O33 - MountPoints2\{b4bd0fae-a4b6-11df-9363-001dba80f662}\Shell - "" = AutoRun
      O33 - MountPoints2\{fbac6768-261d-11de-b8c4-00214fb4f8b8}\Shell\open\command - "" = G:\RECYCLER\S-1-6-21-2434476501-1644491937-600003330-1213\autorunme.exe
      O34 - HKLM BootExecute: (autocheck autochk *)
      O35 - HKLM\..comfile [open] -- "%1" %*
      O35 - HKLM\..exefile [open] -- "%1" %*
      O37 - HKLM\...com [@ = comfile] -- "%1" %*
      O37 - HKLM\...exe [@ = exefile] -- "%1" %*
      O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
      O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

      NetSvcs: FastUserSwitchingCompatibility - File not found
      NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
      NetSvcs: Nla - File not found
      NetSvcs: Ntmssvc - File not found
      NetSvcs: NWCWorkstation - File not found
      NetSvcs: Nwsapagent - File not found
      NetSvcs: SRService - File not found
      NetSvcs: WmdmPmSp - File not found
      NetSvcs: LogonHours - File not found
      NetSvcs: PCAudit - File not found
      NetSvcs: helpsvc - File not found
      NetSvcs: uploadmgr - File not found


      CREATERESTOREPOINT
      Restore point Set: OTL Restore Point

      ========== Files/Folders - Created Within 30 Days ==========

      [2013/03/12 14:16:24 | 000,000,000 | ---D | C] -- C:\_OTL
      [2013/03/12 14:05:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ERUNT
      [2013/03/12 14:05:46 | 000,000,000 | ---D | C] -- C:\Program Files\ERUNT
      [2013/03/10 16:11:29 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update
      [2013/03/10 1520 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service
      [2013/03/08 03:12:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler
      [2013/03/08 03:12:35 | 000,000,000 | ---D | C] -- C:\Program Files\Defraggler
      [2013/03/08 03:04:01 | 000,000,000 | ---D | C] -- C:\Users\AyR\AppData\Roaming\GlarySoft
      [2013/03/08 02:44:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities
      [2013/03/08 02:44:24 | 000,000,000 | ---D | C] -- C:\Program Files\Glary Utilities
      [2013/03/08 02:43:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Argente - Registry Cleaner
      [2013/03/08 02:43:03 | 000,000,000 | ---D | C] -- C:\Program Files\Argente - Registry Cleaner
      [2013/03/01 22:00:03 | 000,000,000 | ---D | C] -- C:\Users\AyR\Desktop\Antiviruses
      [2013/03/01 13:08:04 | 000,000,000 | ---D | C] -- C:\_AT-Destroyer
      [2013/02/21 18:26:41 | 000,000,000 | ---D | C] -- C:\Users\AyR\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
      [2013/02/21 18:26:40 | 000,000,000 | ---D | C] -- C:\Program Files\VS Revo Group
      [2013/02/21 15:32:39 | 000,000,000 | ---D | C] -- C:\Users\AyR\Doctor Web
      [2013/02/20 21:44:42 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
      [2013/02/20 2133 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
      [2013/02/20 2125 | 000,021,104 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
      [2013/02/20 2125 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
      [2013/02/19 21:02:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
      [2013/02/19 21:02:27 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype
      [2013/02/19 21:02:23 | 000,000,000 | R--D | C] -- C:\Program Files\Skype
      [2013/02/16 11:15:41 | 001,051,984 | ---- | C] (BitTorrent Inc.) -- C:\Users\AyR\Desktop\utorrent.exe
      [2013/02/16 10:07:02 | 000,000,000 | ---D | C] -- C:\Users\AyR\Desktop\Patrones

      ========== Files - Modified Within 30 Days ==========

      [2013/03/12 19:07:07 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
      [2013/03/12 18:36:55 | 000,003,616 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
      [2013/03/12 18:36:55 | 000,003,616 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
      [2013/03/12 16:55:58 | 000,000,308 | ---- | M] () -- C:\Windows\tasks\GlaryInitialize.job
      [2013/03/12 16:55:55 | 000,027,649 | ---- | M] () -- C:\ProgramData\nvModes.001
      [2013/03/12 16:44:43 | 012,526,688 | ---- | M] () -- C:\Windows\System32\perfh009.dat
      [2013/03/12 16:44:43 | 011,574,450 | ---- | M] () -- C:\Windows\System32\perfc009.dat
      [2013/03/12 16:37:14 | 000,000,433 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts.ics
      [2013/03/12 16:36:47 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
      [2013/03/12 16:36:43 | 3186,683,904 | -HS- | M] () -- C:\hiberfil.sys
      [2013/03/12 14:17:22 | 000,002,140 | ---- | M] () -- C:\Windows\bthservsdp.dat
      [2013/03/12 14:16:38 | 000,000,098 | ---- | M] () -- C:\Windows\System32\drivers\etc\Hosts
      [2013/03/12 14:06:01 | 000,000,913 | ---- | M] () -- C:\Users\AyR\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk
      [2013/03/12 14:05:47 | 000,000,714 | ---- | M] () -- C:\Users\AyR\Desktop\ERUNT.lnk
      [2013/03/10 15:42:15 | 000,000,846 | ---- | M] () -- C:\Users\AyR\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox (2).lnk
      [2013/03/10 1520 | 000,000,846 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
      [2013/03/08 02:45:48 | 000,002,591 | ---- | M] () -- C:\Users\AyR\Desktop\Word.lnk
      [2013/03/05 15:14:35 | 000,002,377 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
      [2013/03/04 18:24:55 | 000,109,594 | ---- | M] () -- C:\Users\AyR\Desktop\medidas-patrones1.jpg
      [2013/03/03 14:58:13 | 000,074,267 | ---- | M] () -- C:\Users\AyR\Desktop\TABLA-DE-MEDIDAS-PARA-NIÑOS-NIÑAS-REVISTA-BURDA.jpg
      [2013/03/03 12:20:05 | 000,013,901 | ---- | M] () -- C:\Users\AyR\Desktop\vestido largo.jpg
      [2013/03/01 15:54:00 | 000,002,708 | ---- | M] () -- C:\Users\AyR\AppData\Local\d3d9caps.dat
      [2013/02/27 06:00:50 | 000,002,155 | ---- | M] () -- C:\Windows\epplauncher.mif
      [2013/02/22 21:13:28 | 000,020,092 | ---- | M] () -- C:\Users\AyR\Desktop\vestido corte imperio patron.jpg
      [2013/02/22 19:50:10 | 000,002,723 | ---- | M] () -- C:\Users\AyR\Desktop\Outlook.lnk
      [2013/02/22 19:28:48 | 000,000,938 | ---- | M] () -- C:\Users\AyR\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
      [2013/02/19 20:49:46 | 000,000,830 | ---- | M] () -- C:\Windows\System32\InstallUtil.InstallLog
      [2013/02/17 09:47:24 | 000,002,595 | ---- | M] () -- C:\Users\AyR\Desktop\Excel.lnk
      [2013/02/16 11:16:05 | 000,338,815 | ---- | M] () -- C:\Users\AyR\AppData\Local\speeddial.crx
      [2013/02/16 11:15:42 | 001,051,984 | ---- | M] (BitTorrent Inc.) -- C:\Users\AyR\Desktop\utorrent.exe
      [2013/02/14 05:47:10 | 003,968,416 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT

      ========== Files Created - No Company Name ==========

      [2013/03/12 14:06:01 | 000,000,913 | ---- | C] () -- C:\Users\AyR\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk
      [2013/03/12 14:05:47 | 000,000,714 | ---- | C] () -- C:\Users\AyR\Desktop\ERUNT.lnk
      [2013/03/10 16:11:30 | 000,001,830 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
      [2013/03/10 16:07:03 | 000,000,830 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
      [2013/03/10 15:42:15 | 000,000,846 | ---- | C] () -- C:\Users\AyR\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox (2).lnk
      [2013/03/10 1520 | 000,000,858 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
      [2013/03/10 1520 | 000,000,846 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
      [2013/03/08 02:44:38 | 000,000,308 | ---- | C] () -- C:\Windows\tasks\GlaryInitialize.job
      [2013/03/07 20:31:29 | 3186,683,904 | -HS- | C] () -- C:\hiberfil.sys
      [2013/03/04 18:24:55 | 000,109,594 | ---- | C] () -- C:\Users\AyR\Desktop\medidas-patrones1.jpg
      [2013/03/03 14:58:13 | 000,074,267 | ---- | C] () -- C:\Users\AyR\Desktop\TABLA-DE-MEDIDAS-PARA-NIÑOS-NIÑAS-REVISTA-BURDA.jpg
      [2013/03/03 12:20:04 | 000,013,901 | ---- | C] () -- C:\Users\AyR\Desktop\vestido largo.jpg
      [2013/02/22 21:12:35 | 000,020,092 | ---- | C] () -- C:\Users\AyR\Desktop\vestido corte imperio patron.jpg
      [2013/02/22 19:28:48 | 000,000,938 | ---- | C] () -- C:\Users\AyR\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
      [2013/02/19 21:02:28 | 000,002,377 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk
      [2013/02/16 11:17:45 | 000,000,830 | ---- | C] () -- C:\Windows\System32\InstallUtil.InstallLog
      [2013/02/16 11:16:28 | 000,338,815 | ---- | C] () -- C:\Users\AyR\AppData\Local\speeddial.crx
      [2012/08/30 19:49:45 | 000,027,649 | ---- | C] () -- C:\ProgramData\nvModes.001
      [2012/08/30 19:49:33 | 000,027,649 | ---- | C] () -- C:\ProgramData\nvModes.dat
      [2011/02/18 0233 | 000,000,258 | RHS- | C] () -- C:\ProgramData\ntuser.pol
      [2010/09/23 13:53:44 | 000,000,097 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
      [2009/11/25 23:08:35 | 000,003,350 | ---- | C] () -- C:\Users\AyR\AppData\Local\bezuilyd.dat
      [2009/02/18 22:35:55 | 000,193,536 | ---- | C] () -- C:\Users\AyR\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
      [2009/02/18 19:18:15 | 000,002,708 | ---- | C] () -- C:\Users\AyR\AppData\Local\d3d9caps.dat

      ========== ZeroAccess Check ==========

      [2006/11/02 13:54:22 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

      [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

      [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
      "" = %SystemRoot%\system32\shell32.dll -- [2012/06/08 18:47:00 | 011,586,048 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
      "" = %systemroot%\system32\wbem\fastprox.dll -- [2009/04/11 07:28:19 | 000,614,912 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
      "" = %systemroot%\system32\wbem\wbemess.dll -- [2009/04/11 07:28:25 | 000,347,648 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Both

      ========== LOP Check ==========

      [2012/05/31 12:57:52 | 000,000,000 | ---D | M] -- C:\Users\AyR\AppData\Roaming\BitTorrent
      [2012/03/13 01:47:36 | 000,000,000 | ---D | M] -- C:\Users\AyR\AppData\Roaming\Canon
      [2012/03/12 23:58:54 | 000,000,000 | ---D | M] -- C:\Users\AyR\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
      [2012/11/16 19:56:43 | 000,000,000 | ---D | M] -- C:\Users\AyR\AppData\Roaming\Dropbox
      [2011/06/27 01:02:54 | 000,000,000 | ---D | M] -- C:\Users\AyR\AppData\Roaming\ePaperPress
      [2010/05/19 01:27:41 | 000,000,000 | ---D | M] -- C:\Users\AyR\AppData\Roaming\Flickr
      [2013/03/08 03:04:01 | 000,000,000 | ---D | M] -- C:\Users\AyR\AppData\Roaming\GlarySoft
      [2009/02/18 23:06:59 | 000,000,000 | ---D | M] -- C:\Users\AyR\AppData\Roaming\InterVideo
      [2009/09/27 17:05:23 | 000,000,000 | ---D | M] -- C:\Users\AyR\AppData\Roaming\live-player
      [2009/05/03 01:30:15 | 000,000,000 | ---D | M] -- C:\Users\AyR\AppData\Roaming\Panasonic
      [2010/09/05 21:07:07 | 000,000,000 | ---D | M] -- C:\Users\AyR\AppData\Roaming\Quitometro
      [2010/12/25 19:27:34 | 000,000,000 | ---D | M] -- C:\Users\AyR\AppData\Roaming\Uniblue
      [2013/03/08 0324 | 000,000,000 | ---D | M] -- C:\Users\AyR\AppData\Roaming\uTorrent
      [2011/08/29 22:58:49 | 000,000,000 | ---D | M] -- C:\Users\AyR\AppData\Roaming\WindSolutions

      ========== Purity Check ==========



      ========== Custom Scans ==========

      < %SYSTEMDRIVE%\*.* >
      [2013/03/01 19:39:57 | 000,017,034 | ---- | M] () -- C:\AdwCleaner[R1].txt
      [2013/03/01 19:41:15 | 000,017,154 | ---- | M] () -- C:\AdwCleaner[R2].txt
      [2013/03/01 19:40:24 | 000,000,325 | ---- | M] () -- C:\AdwCleaner[S1].txt
      [2013/03/01 19:41:29 | 000,017,348 | ---- | M] () -- C:\AdwCleaner[S2].txt
      [2010/07/20 18:19:23 | 000,000,056 | -H-- | M] () -- C:\AT-Cuarentena
      [2013/03/07 17:01:01 | 000,002,750 | ---- | M] () -- C:\AT-Destroyer.txt
      [2006/09/18 22:43:36 | 000,000,024 | ---- | M] () -- C:\autoexec.bat
      [2009/04/11 07:36:36 | 000,333,257 | RHS- | M] () -- C:\bootmgr
      [2008/07/25 04:19:45 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK
      [2006/09/18 22:43:37 | 000,000,010 | ---- | M] () -- C:\config.sys
      [2013/03/12 16:36:43 | 3186,683,904 | -HS- | M] () -- C:\hiberfil.sys
      [2008/08/19 15:48:01 | 000,000,187 | ---- | M] () -- C:\Installer_Setup.log
      [2010/04/30 19:12:45 | 000,000,155 | ---- | M] () -- C:\mbam-error.txt
      [2013/03/12 16:36:41 | 3500,298,240 | -HS- | M] () -- C:\pagefile.sys
      [2010/09/13 02:08:31 | 000,000,002 | ---- | M] () -- C:\SMPCount.txt
      [2009/05/03 01:19:32 | 000,000,026 | ---- | M] () -- C:\UpdaterforApp.ini
      [2008/08/19 15:43:56 | 000,385,958 | ---- | M] () -- C:\vcredist_x86.log

      ========== Alternate Data Streams ==========

      @Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:7715B65F

      < End of report >

    5. #25
      Usuario Avatar de Roxo
      Registrado
      may 2008
      Ubicación
      Irlanda
      Mensajes
      75

      Re: Problema con ventanas emergentes (eoRezo) y portatil congelado.

      Y este es el Extras de OTL, el segundo,


      OTL Extras logfile created on: 12/03/2013 19:51:56 - Run 3
      OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\AyR\Desktop\Antiviruses
      Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
      Internet Explorer (Version = 7.0.6002.18005)
      Locale: 00001809 | Country: Ireland | Language: ENI | Date Format: dd/MM/yyyy

      2.97 Gb Total Physical Memory | 1.39 Gb Available Physical Memory | 46.78% Memory free
      6.13 Gb Paging File | 4.46 Gb Available in Paging File | 72.78% Paging File free
      Paging file location(s): ?:\pagefile.sys [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
      Drive C: | 286.82 Gb Total Space | 106.51 Gb Free Space | 37.14% Space Free | Partition Type: NTFS

      Computer Name: AYR-LAPTOP | User Name: AyR | Logged in as Administrator.
      Boot Mode: Normal | Scan Mode: All users
      Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

      ========== Extra Registry (SafeList) ==========


      ========== File Associations ==========

      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
      .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
      .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
      .url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l

      [HKEY_USERS\S-1-5-21-2916581329-1141900253-794385938-1000\SOFTWARE\Classes\<extension>]
      .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

      ========== Shell Spawning ==========

      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
      batfile [open] -- "%1" %*
      cmdfile [open] -- "%1" %*
      comfile [open] -- "%1" %*
      cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
      exefile [open] -- "%1" %*
      helpfile [open] -- Reg Error: Key error.
      hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
      inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
      InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
      piffile [open] -- "%1" %*
      regfile [merge] -- Reg Error: Key error.
      scrfile [config] -- "%1"
      scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
      scrfile [open] -- "%1" /S
      txtfile [edit] -- Reg Error: Key error.
      Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
      Directory [AddToPlaylistVLC] -- C:\Program Files\VideoLAN\VLC\vlc.exe --started-from-file --playlist-enqueue "%1" ()
      Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS5.1\Bridge.exe "%L" (Adobe Systems, Inc.)
      Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
      Directory [Digital Photo Professional] -- C:\Program Files\Canon\Digital Photo Professional\DPPViewer.exe /path "%1" (CANON INC.)
      Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
      Directory [PlayWithVLC] -- C:\Program Files\VideoLAN\VLC\vlc.exe --started-from-file --no-playlist-enqueue "%1" ()
      Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
      Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
      Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

      ========== Security Center Settings ==========

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
      "cval" = 1

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiSpyware]
      "DisableMonitoring" = 1

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
      "AntiVirusOverride" = 0
      "AntiSpywareOverride" = 0
      "FirewallOverride" = 0
      "VistaSp1" = Reg Error: Unknown registry data type -- File not found
      "VistaSp2" = Reg Error: Unknown registry data type -- File not found

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

      ========== Firewall Settings ==========

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
      "EnableFirewall" = 1
      "DisableNotifications" = 0

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
      "EnableFirewall" = 1
      "DisableNotifications" = 0

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
      "EnableFirewall" = 1
      "DisableNotifications" = 0

      ========== Authorized Applications List ==========


      ========== Vista Active Open Ports Exception List ==========

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
      "{00748400-087D-4D4E-B0A1-8A044EB74CA6}" = lport=5353 | protocol=6 | dir=in | name=adobe csi cs4 |
      "{0F21A8A5-013E-4A48-841E-4ECD1E109CE7}" = lport=2869 | protocol=6 | dir=in | app=system |
      "{166D6243-2311-4662-9C69-0B5437F4BFA9}" = lport=445 | protocol=6 | dir=in | app=system |
      "{24D4B61C-6604-4357-94DC-A799B8BE4A7A}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
      "{3F07DC04-735F-45BA-B04D-71AC8DD02B06}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
      "{4294149F-1AED-4FDA-B2A6-29914014FF6C}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
      "{44471CDD-3362-499D-9F5C-54539362931E}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
      "{559C9E45-A22C-4DAD-8A27-839D2750BDA3}" = rport=137 | protocol=17 | dir=out | app=system |
      "{5E13CAF7-5F18-4B57-BB7F-018BCB36EC9B}" = lport=138 | protocol=17 | dir=in | app=system |
      "{5EDF10A7-7A42-46B8-A97F-1D72C5425EB2}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
      "{60723E30-134A-4C53-A1D4-087536FCE9E7}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |
      "{6BF97A6B-5973-4C3F-97EE-605A6EE07892}" = rport=139 | protocol=6 | dir=out | app=system |
      "{6DB772A0-6141-4FD3-B1C5-AC6AB21B5735}" = rport=445 | protocol=6 | dir=out | app=system |
      "{742E4B56-0757-4642-A576-468F79FD033F}" = lport=5353 | protocol=6 | dir=in | name=adobe csi cs4 |
      "{7FDC889F-F922-46EF-9986-6F793EFCB03B}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
      "{8EC5ECFA-394D-40FC-AA0F-E337549C4BF1}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
      "{9CE5DE03-1449-4261-B14C-A46F45E14370}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office12\outlook.exe |
      "{A0FC6BEB-089E-4966-ABF2-AD89F72BA2F7}" = rport=2869 | protocol=6 | dir=out | app=system |
      "{A1AF98D6-90C1-477A-9BA3-0EAA29ED76C8}" = lport=139 | protocol=6 | dir=in | app=system |
      "{B6E7018B-E7BD-4419-8B2C-2F4D65842DC3}" = rport=138 | protocol=17 | dir=out | app=system |
      "{C331F987-5E46-4EE2-92AA-755526BE4B2B}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
      "{CC37CA2D-E833-4D81-932A-D71671553DCD}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
      "{D15F73DB-6967-46BA-B49C-CB5B69FADCBB}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
      "{D7032C7F-AF33-4319-A7D3-FE8CC92DF9F5}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
      "{D8D3A699-9E09-4871-AAB6-FD37A9335EEC}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
      "{E7C5F28D-7AEB-415F-9F58-7186802C496A}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
      "{EA2E00E8-2035-44EA-9422-6A56183969E3}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
      "{F40984FD-F7E2-4A75-BCF5-BB75A0FC315F}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
      "{FB4475E1-4214-4F87-BE52-F4A9904AC0F7}" = lport=137 | protocol=17 | dir=in | app=system |

      ========== Vista Active Application Exception List ==========

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
      "{1C77BA81-9BE5-4BF3-9960-3EE5FBF2BF9D}" = protocol=58 | dir=in | [email protected],-148 |
      "{1F0908C9-141B-46C4-B658-C67056AE8D4F}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
      "{2204FCBC-63D5-4625-B91B-A2A6310FBC69}" = dir=in | app=c:\program files\skype\phone\skype.exe |
      "{23780C7E-5B98-47AE-A296-390777D82F36}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
      "{24CBEC12-23B3-4B5E-9C0F-265822FA611B}" = protocol=58 | dir=out | [email protected],-28546 |
      "{2D7296E7-B866-4DDB-8E01-55C562735AC5}" = protocol=17 | dir=in | app=c:\program files\common files\adobe\cs4servicemanager\cs4servicemanager.exe |
      "{31BB3688-F97A-4014-A8FF-FED58DFFD271}" = protocol=6 | dir=in | app=c:\program files\google\google talk\googletalk.exe |
      "{4568E404-C005-4C79-8766-89A304464E6F}" = dir=in | app=c:\program files\common files\apple\apple application support\webkit2webprocess.exe |
      "{4A711529-B177-48AA-B2BF-39C0848FF536}" = protocol=1 | dir=in | [email protected],-28543 |
      "{622C596A-0DD6-44CE-A2A4-D3DF69A45A7F}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\groove.exe |
      "{64C17519-83E5-4E90-BC4C-CA56419D4032}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
      "{6F3D6139-FCAF-4FB0-8A56-1DC71ED9F1F6}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
      "{7749599E-51D2-4693-A9B9-D0A11680B491}" = protocol=6 | dir=in | app=c:\program files\itunes\itunes.exe |
      "{7A63B34F-F404-4968-8E35-62BA64BF9E25}" = protocol=58 | dir=in | [email protected],-28545 |
      "{7BBACE5A-640D-49D2-B97F-778403D4122B}" = protocol=6 | dir=in | app=c:\program files\common files\adobe\cs4servicemanager\cs4servicemanager.exe |
      "{83C611A5-1B1E-4986-A8A2-BAFAD10463EC}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\groove.exe |
      "{85D18836-CC1B-4802-91F9-B8801467B02A}" = protocol=6 | dir=in | app=c:\program files\common files\adobe\cs4servicemanager\cs4servicemanager.exe |
      "{90775640-736D-437D-821B-9EE7B4E42E5D}" = protocol=1 | dir=out | [email protected],-28544 |
      "{91937B9E-5422-4067-8838-5713C234DD4A}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
      "{939B7E06-64B0-4759-9BE5-BB1F05FE408C}" = protocol=6 | dir=in | app=c:\windows\system32\msiexec.exe |
      "{99DF12A7-8543-46EF-A9D3-7E5F308FF3B2}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
      "{A7841862-53AD-4BDA-8133-7B20326F3FC8}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
      "{B05BD668-6871-41E6-81A4-8F88D72FE525}" = protocol=17 | dir=in | app=c:\windows\system32\msiexec.exe |
      "{B23A330B-F330-4BB4-9B95-D191FB65F38A}" = protocol=17 | dir=in | app=c:\program files\common files\adobe\cs4servicemanager\cs4servicemanager.exe |
      "{C4ADEC35-BBC1-4B0C-ABBB-64FE27FBF667}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
      "{F1C3A4B2-FF8C-460A-B36D-E4B42021D78F}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
      "{F87F9326-9F8E-4BF2-94DE-990119F97AA2}" = protocol=17 | dir=in | app=c:\program files\google\google talk\googletalk.exe |
      "TCP Query User{258E7205-C5A9-4FFF-8C64-021EBD3E523F}C:\program files\martview\ieembed.exe" = protocol=6 | dir=in | app=c:\program files\martview\ieembed.exe |
      "TCP Query User{C14176AC-7EDA-4A31-953B-89A1759D09AA}C:\program files\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe |
      "TCP Query User{D5D6CCB9-0454-4292-89BB-81333278D518}C:\program files\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
      "TCP Query User{EB12E24B-E0E8-4C39-9947-1B79BAB32298}C:\program files\microsoft office\office12\groove.exe" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\groove.exe |
      "TCP Query User{FC43EA62-A07C-420F-B9A8-250BB8CDED66}C:\program files\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
      "TCP Query User{FE75087A-6A5A-47AB-A75E-188344BD2469}C:\program files\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\plugin-container.exe |
      "UDP Query User{101E4B1D-7031-4FA7-8578-9166B993D9BE}C:\program files\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe |
      "UDP Query User{2F096A26-AB38-422A-89EA-1B45A0B5CAAB}C:\program files\martview\ieembed.exe" = protocol=17 | dir=in | app=c:\program files\martview\ieembed.exe |
      "UDP Query User{5DD94037-872B-4B67-AF33-2707D13D1A62}C:\program files\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\plugin-container.exe |
      "UDP Query User{B2EEF0D6-2268-4E92-BED8-014122C800C4}C:\program files\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
      "UDP Query User{D1648CB4-FD30-46CD-BE83-F4869EAC61E4}C:\program files\microsoft office\office12\groove.exe" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\groove.exe |
      "UDP Query User{DC37904C-FEF8-4891-9DC0-E7335FD376BA}C:\program files\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |

      ========== HKEY_LOCAL_MACHINE Uninstall List ==========

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
      "{009E7FB7-1775-4D89-8956-F5C9A1C019FC}" = DSD Playback Plug-in
      "{01FDC9FC-4D4F-4DB0-ACD1-D3E8E1D52902}" = Sony Video Shared Library
      "{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
      "{05308C4E-7285-4066-BAE3-6B50DA6ED755}" = Adobe Update Manager CS4
      "{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
      "{08E81ABD-79F7-49C2-881F-FD6CB0975693}" = Roxio Central Data
      "{098A2A49-7CF3-4F08-A38D-FB879117152A}" = Adobe Color NA Extra Settings CS4
      "{0D6013AB-A0C7-41DC-973C-E93129C9A29F}" = Adobe Color JA Extra Settings CS4
      "{0DC0E85F-36E4-463B-B3EA-4CD8ED2222A1}" = Adobe Color EU Recommended Settings CS4
      "{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
      "{0F723FC1-7606-4867-866C-CE80AD292DAF}" = Adobe CSI CS4
      "{12D0BE8D-538C-4AB1-86DE-C540308F50DA}" = VAIO Content Metadata Manager Settings
      "{14291118-0C19-45EA-A4FA-5C1C0F5FDE09}" = Primo
      "{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}" = Microsoft Works
      "{15D5C238-4C2E-4AEA-A66D-D6989A4C586B}" = VAIO Launcher
      "{1618734A-3957-4ADD-8199-F973763109A8}" = Adobe Anchor Service CS4
      "{18510937-0146-417B-95D8-14706649C384}" = VAIO Content Metadata Manager Settings
      "{1B47F7BA-7CF9-4F00-9340-099E3A004059}" = VAIO Update Merge Module x86
      "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
      "{1F54DAFA-9261-4A62-B59D-6C9F26B48FE4}" = Roxio Central Tools
      "{2018C019-30D9-4240-8C01-0865C10DCF5A}" = VAIO Presentation Support
      "{20471B27-D702-4FE8-8DEC-0702CC8C0A85}" = WinDVD BD for VAIO
      "{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk" = Google Talk (remove only)
      "{23825B69-36DF-4DAD-9CFD-118D11D80F16}" = VAIO Content Folder Setting
      "{26A24AE4-039D-4CA4-87B4-2F83216033FF}" = Java(TM) 6 Update 33
      "{26A24AE4-039D-4CA4-87B4-2F83217017FF}" = Java 7 Update 17
      "{291FB4BF-EEC7-4CF9-8469-F39ED1DBC4D8}" = VAIO Content Metadata XML Interface Library
      "{3248F0A8-6813-11D6-A77B-00B0D0160060}" = Java(TM) 6 Update 6
      "{326DC400-1FC4-4D7D-946D-06D1EAB93200}" = VAIO Guide 
      "{3521BDBD-D453-5D9F-AA55-44B75D214629}" = Adobe Community Help
      "{36C31591-9483-45A5-990D-C9E5D4DC5998}" = Style Flocker for InDesign CS3
      "{390DD8BB-BB57-4942-A029-2D913E4E9D74}" = Microsoft Security Client
      "{3A4E8896-C2E7-4084-A4A4-B8FD1894E739}" = Adobe XMP Panels CS4
      "{3B659FAD-E772-44A3-B7E7-560FF084669F}" = VAIO Smart Network
      "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
      "{3D3E663D-4E7E-4577-A560-7ECDDD45548A}" = PVSonyDll
      "{3DA8DF9A-044E-46C4-8531-DEDBB0EE37FF}" = Adobe WinSoft Linguistics Plugin
      "{3EE33958-7381-4E7B-A4F3-6E43098E9E9C}" = Browser Address Error Redirector
      "{4882EBF5-CA37-4EF4-BCB8-9B0E78B907D0}" = VAIO Content Metadata Intelligent Analyzing Manager
      "{497A1721-088F-41EF-8876-B43C9DA5528B}" = ArcSoft Software Suite
      "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
      "{4DCEA9C1-4D6E-41BF-A854-28CFA8B56DBF}" = Click to Disc Editor
      "{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.1
      "{4EA55D20-27FB-45D7-8726-147E8A5F6C62}" = VAIO MusicBox
      "{533D0A8A-D7E7-4F15-BC9E-FF2916A6BAA7}" = DSD Direct Player
      "{537BF16E-7412-448C-95D8-846E85A1D817}" = Roxio Easy Media Creator 10 LJ
      "{57B955CE-B5D3-495D-AF1B-FAEE0540BFEF}" = VAIO Data Restore Tool
      "{596BED91-A1D8-4DF1-8CD1-1C777F7588AC}" = VAIO DVD Menu Data Basic
      "{5BEE8F1F-BD32-4553-8107-500439E43BD7}" = VAIO Update
      "{5C5EE8F2-0B38-4C13-AE4E-A87A237FE718}" =
      "{5F5867F0-2D23-4338-A206-01A76C823924}" = VAIO Power Management
      "{6332AFF1-9D9A-429C-AA03-F82749FA4F49}" = SonicStage Mastering Studio
      "{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
      "{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites
      "{68A69CFF-130D-4CDE-AB0E-7374ECB144C8}" = Click to Disc
      "{69995C7A-062A-4A90-A4DF-8C22895DF522}" = iTunes
      "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
      "{6B1F20F2-6321-4669-A58C-33DF8E7517FF}" = VAIO Entertainment Platform
      "{6FA8BA2C-052B-4072-B8E2-2302C268BE9E}" = VAIO Movie Story Template Data
      "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
      "{72042FA6-5609-489F-A8EA-3C2DD650F667}" = VAIO Control Center
      "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
      "{72EEB695-388B-4835-8EA6-0C04545B06B9}" = Intel(R) PROSet/Wireless WiFi Software
      "{73A4F29F-31AC-4EBD-AA1B-0CC5F18C8F83}" = Roxio Central Audio
      "{767CC44C-9BBC-438D-BAD3-FD4595DD148B}" = VC80CRTRedist - 8.0.50727.762
      "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
      "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
      "{7B63B2922B174135AFC0E1377DD81EC2}" = DivX Codec
      "{7C404084-C5A6-42FF-B731-0BAC79A6E134}" = Configuración de funciones originales del VAIO
      "{820D3F45-F6EE-4AAF-81EF-CE21FF21D230}" = Adobe Type Support CS4
      "{82D5BACA-3619-4D34-99DB-3A65CFB4DA33}" = DSD Direct
      "{83877DB1-8B77-45BC-AB43-2BAC22E093E0}" = Adobe Bridge CS4
      "{842B4B72-9E8F-4962-B3C1-1C422A5C4434}" = Suite Shared Configuration CS4
      "{8ADFC4160D694100B5B8A22DE9DCABD9}" = DivX Player
      "{8BD60AEF-3F9D-47AE-B80A-FB7FFCE335A0}" = VAIO Movie Story
      "{8DE50158-80AA-4FF2-9E9F-0A7C46F71FCD}" = VAIO Media plus
      "{90120000-0015-0C0A-0000-0000000FF1CE}" = Microsoft Office Access MUI (Spanish) 2007
      "{90120000-0015-0C0A-0000-0000000FF1CE}_ENTERPRISE_{D79E9128-A250-4155-BE90-2BE81DE0406A}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90120000-0016-0C0A-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Spanish) 2007
      "{90120000-0016-0C0A-0000-0000000FF1CE}_ENTERPRISE_{D79E9128-A250-4155-BE90-2BE81DE0406A}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90120000-0018-0C0A-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Spanish) 2007
      "{90120000-0018-0C0A-0000-0000000FF1CE}_ENTERPRISE_{D79E9128-A250-4155-BE90-2BE81DE0406A}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90120000-0019-0C0A-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Spanish) 2007
      "{90120000-0019-0C0A-0000-0000000FF1CE}_ENTERPRISE_{D79E9128-A250-4155-BE90-2BE81DE0406A}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90120000-001A-0C0A-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Spanish) 2007
      "{90120000-001A-0C0A-0000-0000000FF1CE}_ENTERPRISE_{D79E9128-A250-4155-BE90-2BE81DE0406A}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90120000-001B-0C0A-0000-0000000FF1CE}" = Microsoft Office Word MUI (Spanish) 2007
      "{90120000-001B-0C0A-0000-0000000FF1CE}_ENTERPRISE_{D79E9128-A250-4155-BE90-2BE81DE0406A}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90120000-001F-0403-0000-0000000FF1CE}" = Microsoft Office Proof (Catalan) 2007
      "{90120000-001F-0403-0000-0000000FF1CE}_ENTERPRISE_{BEADB115-DB47-4BD0-A9EC-AE585AFAB2D8}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
      "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
      "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
      "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
      "{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
      "{90120000-001F-0416-0000-0000000FF1CE}" = Microsoft Office Proof (Portuguese (Brazil)) 2007
      "{90120000-001F-0416-0000-0000000FF1CE}_ENTERPRISE_{8A524694-0CA4-476A-9301-B1E9D70FC952}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
      "{90120000-001F-042D-0000-0000000FF1CE}" = Microsoft Office Proof (Basque) 2007
      "{90120000-001F-042D-0000-0000000FF1CE}_ENTERPRISE_{017A6981-5E03-4A97-830A-35FE0927BB7F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
      "{90120000-001F-0456-0000-0000000FF1CE}" = Microsoft Office Proof (Galician) 2007
      "{90120000-001F-0456-0000-0000000FF1CE}_ENTERPRISE_{A3A03B41-14EA-4E50-97D8-FCF429AE0CCB}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
      "{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
      "{90120000-001F-0C0A-0000-0000000FF1CE}_ENTERPRISE_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
      "{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
      "{90120000-002C-0C0A-0000-0000000FF1CE}" = Microsoft Office Proofing (Spanish) 2007
      "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
      "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90120000-0044-0C0A-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Spanish) 2007
      "{90120000-0044-0C0A-0000-0000000FF1CE}_ENTERPRISE_{D79E9128-A250-4155-BE90-2BE81DE0406A}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90120000-006E-0C0A-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Spanish) 2007
      "{90120000-006E-0C0A-0000-0000000FF1CE}_ENTERPRISE_{430AE3E6-E982-4958-90FC-1C062BC74E22}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90120000-00A1-0C0A-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Spanish) 2007
      "{90120000-00A1-0C0A-0000-0000000FF1CE}_ENTERPRISE_{D79E9128-A250-4155-BE90-2BE81DE0406A}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90120000-00BA-0C0A-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Spanish) 2007
      "{90120000-00BA-0C0A-0000-0000000FF1CE}_ENTERPRISE_{D79E9128-A250-4155-BE90-2BE81DE0406A}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
      "{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager
      "{9158FF30-78D7-40EF-B83E-451AC5334640}" = Adobe Photoshop CS5.1
      "{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
      "{94D398EB-D2FD-4FD1-B8C4-592635E8A191}" = Adobe CMaps CS4
      "{95229EF6-F4A1-413A-BA50-668311FAFE19}" = VAIO Original Function Settings
      "{96D0B6C6-5A72-4B47-8583-A87E55F5FE81}" =
      "{97DF4674-AB43-11D5-91C9-005004F84FA1}" = Dialang V1 Beta
      "{989ED050-E296-4FDC-9E4E-C48B4AF76E32}" = VAIO Content Metadata Intelligent Analyzing Manager
      "{98FC7A64-774B-49B5-B046-4B4EBC053FA9}" = VAIO MusicBox Sample Music
      "{9973498D-EA29-4A68-BE0B-C88D6E03E928}" = ArcSoft WebCam Companion 2
      "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
      "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
      "{9C1C8A04-F8CA-4472-A92D-4288CE32DE86}" = SonicStage Mastering Studio Plugins
      "{A3563827-B0DB-44DC-B037-15CC4E5E692F}" = VAIO Content Metadata XML Interface Library
      "{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
      "{A7DA438C-2E43-4C20-BFDA-C1F4A6208558}" = Setting Utility Series
      "{AC76BA86-1033-F400-BA7E-000000000003}" = Adobe Acrobat 8 Standard - English, Français, Deutsch
      "{AC76BA86-7AD7-1034-7B44-AA1000000001}" = Adobe Reader X (10.1.6) - Español
      "{AEA6A4C2-7C4E-48F9-A770-879DE2EDEE1B}" = OpenMG Secure Module 5.4.00
      "{AEF8B78C-4F3E-41F1-9C2D-88150D4BB3AD}" = Sony Home Network Library
      "{B13A7C41581B411290FBC0395694E2A9}" = DivX Converter
      "{B1991F22-4F93-4D11-9866-A7DFE551DF9E}" = VAIO Content Metadata Intelligent Analyzing Manager
      "{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0
      "{B25563A0-41F4-4A81-A6C1-6DBC0911B1F3}" = VAIO Movie Story
      "{B3668C08-EBB1-40F4-B4F9-4F8E13501A7D}" = VAIO Entertainment Platform
      "{B3DAF54F-DB25-4586-9EF1-96D24BB14088}" = Windows Movie Maker 2.6
      "{B6A26DE5-F2B5-4D58-9570-4FC760E00FCD}" = Roxio Central Copy
      "{B6D38690-755E-4F40-A35A-23F8BC2B86AC}" = Microsoft_VC90_MFCLOC_x86
      "{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Web Player
      "{B7C03E84-AF46-42F4-809D-D4127D9086D0}" = VAIO Edit Components 6.4
      "{BACD22AE-5B6B-4F23-B506-3FCFF13AC137}" = VAIO Media plus
      "{BB4E33EC-8181-4685-96F7-8554293DEC6A}" = Adobe Output Module
      "{C042D7B5-DC07-4727-8630-89E690D2BAAE}" = MartView
      "{C0482AA0-9CDF-49B4-9B39-551FD1A7A7E6}" = VAIO Movie Story 1.5 Upgrade
      "{C52E3EC1-048C-45E1-8D53-10B0C6509683}" = Adobe Default Language CS4
      "{C7477742-DDB4-43E5-AC8D-0259E1E661B1}" = VAIO Event Service
      "{C9E14402-3631-4182-B377-6B0DFB1C0339}" = QuickTime
      "{CC75AB5C-2110-4A7F-AF52-708680D22FE8}" = Photoshop Camera Raw
      "{CD95F661-A5C4-44F5-A6AA-ECDD91C240CC}" = WinZip 16.0
      "{CE2121C6-C94D-4A73-8EA4-6943F33EE335}" = Music Transfer
      "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
      "{CF0F8D1B-5FB9-468D-BD88-E6239906D2B7}" = Click to Disc
      "{D03482C5-9AD8-496D-B388-692AE04C93AF}" = Bonjour
      "{D035FBF6-FDEF-487D-89CA-6F9DD07B783F}" = Dolby Control Center
      "{D03D02D8-AB64-4785-A48E-5AA8B0FB8C14}" = Sony Home Network Library
      "{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
      "{D2D23D08-D10E-43D6-883C-78E0B2AC9CC6}" = VU5x86
      "{D5068583-D569-468B-9755-5FBF5848F46F}" = Sony Picture Utility
      "{D60F97EC-EF06-4E1E-B0D1-C2CBABA62FA3}" = VAIO Wallpaper Contents
      "{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
      "{DF0415CC-0563-407F-B560-9B7F277122C5}" = VAIO BD Menu Data
      "{DF7DB916-90E5-40F2-9010-B8125EB5FD6F}" = SonicStage Mastering Studio Audio Filter
      "{E464702F-5433-46EC-8F65-159276C0A54F}" = WIDCOMM Bluetooth Software 6.2.0.4100
      "{E4715C25-7114-4F40-A915-C1951D4D7520}" = VAIO Update Merge Module x86
      "{E6A3770D-C87A-4505-B8C6-A4CF96AC395C}" = SonicStage Mastering Studio
      "{E8EE9410-8AC4-4F43-A626-DDECA75C79F3}" = Adobe Setup
      "{E9CBC8FA-BF1F-4956-8B75-0D314682FE5F}" = ArcSoft Panorama Maker 6
      "{EC37A846-53AC-4DA7-98FA-76A4E74AA900}" = SonicStage Mastering Studio Audio Filter Custom Preset
      "{ED439A64-F018-4DD4-8BA5-328D85AB09AB}" = Roxio Central Core
      "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
      "{F5266D28-E0B2-4130-BFC5-EE155AD514DC}" = Apple Application Support
      "{F8EF2B3F-C345-4F20-8FE4-791A20333CD5}" = Adobe ExtendScript Toolkit CS4
      "{F93C84A6-0DC6-42AF-89FA-776F7C377353}" = Adobe PDF Library Files CS4
      "{FCDD51BB-CAD0-4BB1-B7DF-CE86D1032794}" = Adobe Fonts All
      "{FE23D063-934D-4829-A0D8-00634CE79B4A}" = Adobe AIR
      "{FE51662F-D8F6-43B5-99D9-D4894AF00F83}" = Roxio Easy Media Creator Home
      "{FFA98080-B0C6-11D5-91CB-005004F84FA1}" = Sun Java Runtime Environment and JMF
      "Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites
      "Adobe AIR" = Adobe AIR
      "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
      "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
      "Adobe_b2d6abde968e6f277ddbfd501383e02" = Adobe Creative Suite 4 Master Collection
      "Argente - Registry Cleaner_is1" = Argente - Registry Cleaner 3.1.0.1
      "Autopano Giga" = Autopano Giga
      "AutopanoGiga2.5" = Kolor Autopano Giga 2.5
      "CameraWindowDVC6" = Canon Utilities CameraWindow DC_DV 6 for ZoomBrowser EX
      "CameraWindowLauncher" = Canon Utilities CameraWindow
      "CANON iMAGE GATEWAY Task" = CANON iMAGE GATEWAY Task for ZoomBrowser EX
      "Canon Internet Library for ZoomBrowser EX" = Canon Internet Library for ZoomBrowser EX
      "CanonMyPrinter" = Canon Utilities My Printer
      "CCleaner" = CCleaner
      "chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
      "CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_104D0200" = HDAUDIO SoftV92 Data Fax Modem with SmartCP
      "Defraggler" = Defraggler
      "DivX Plus DirectShow Filters" = DivX Plus DirectShow Filters
      "DPP" = Canon Utilities Digital Photo Professional 3.3
      "Easy-PhotoPrint EX" = Canon Utilities Easy-PhotoPrint EX
      "ENTERPRISE" = Microsoft Office Enterprise 2007
      "EOS Utility" = Canon Utilities EOS Utility
      "ERUNT_is1" = ERUNT 1.1j
      "Flickr Uploadr" = Flickr Uploadr 3.2.1
      "Glary Utilities_is1" = Glary Utilities 2.53.0.1726
      "InstallShield_{20471B27-D702-4FE8-8DEC-0702CC8C0A85}" = WinDVD BD for VAIO
      "InstallShield_{4DCEA9C1-4D6E-41BF-A854-28CFA8B56DBF}" = Click to Disc Editor
      "InstallShield_{AEA6A4C2-7C4E-48F9-A770-879DE2EDEE1B}" = OpenMG Secure Module 5.4.00
      "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware versión 1.70.0.1100
      "MarketingTools" = VAIO Marketing Tools
      "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
      "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
      "Microsoft Security Client" = Microsoft Security Essentials
      "Mozilla Firefox 19.0.2 (x86 en-US)" = Mozilla Firefox 19.0.2 (x86 en-US)
      "MozillaMaintenanceService" = Mozilla Maintenance Service
      "MyCamera" = Canon Utilities MyCamera
      "NVIDIA Drivers" = NVIDIA Drivers
      "Original Data Security Tools" = Canon Utilities Original Data Security Tools
      "PhotoStitch" = Canon Utilities PhotoStitch
      "Picture Style Editor" = Canon Utilities Picture Style Editor
      "RAW Image Task" = Canon RAW Image Task for ZoomBrowser EX
      "Recuva" = Recuva
      "RemoteCaptureTask" = Canon Utilities RemoteCapture Task for ZoomBrowser EX
      "Revo Uninstaller" = Revo Uninstaller 1.94
      "Speccy" = Speccy
      "SynTPDeinstKey" = Synaptics Pointing Device Driver
      "uTorrent" = µTorrent
      "VLC media player" = VLC media player 0.9.8a
      "WinRAR archiver" = Compresor WinRAR
      "ZoomBrowser EX" = Canon Utilities ZoomBrowser EX
      "ZoomBrowser EX Memory Card Utility" = Canon ZoomBrowser EX Memory Card Utility

      ========== HKEY_USERS Uninstall List ==========

      [HKEY_USERS\S-1-5-21-2916581329-1141900253-794385938-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
      "CopyTrans Suite" = Desinstalación de CopyTrans Suite solamente

      ========== Last 20 Event Log Errors ==========

      [ Application Events ]
      Error - 12/03/2013 11:38:37 | Computer Name = AyR-Laptop | Source = Windows Search Service | ID = 3013
      Description =

      Error - 12/03/2013 11:38:37 | Computer Name = AyR-Laptop | Source = Windows Search Service | ID = 3013
      Description =

      Error - 12/03/2013 11:38:37 | Computer Name = AyR-Laptop | Source = Windows Search Service | ID = 3013
      Description =

      Error - 12/03/2013 11:38:37 | Computer Name = AyR-Laptop | Source = Windows Search Service | ID = 3013
      Description =

      Error - 12/03/2013 11:38:37 | Computer Name = AyR-Laptop | Source = Windows Search Service | ID = 3013
      Description =

      Error - 12/03/2013 11:38:37 | Computer Name = AyR-Laptop | Source = Windows Search Service | ID = 3013
      Description =

      Error - 12/03/2013 11:38:38 | Computer Name = AyR-Laptop | Source = Windows Search Service | ID = 3013
      Description =

      Error - 12/03/2013 11:38:38 | Computer Name = AyR-Laptop | Source = Windows Search Service | ID = 3013
      Description =

      Error - 12/03/2013 11:44:40 | Computer Name = AyR-Laptop | Source = LoadPerf | ID = 3012
      Description =

      Error - 12/03/2013 11:44:40 | Computer Name = AyR-Laptop | Source = LoadPerf | ID = 3011
      Description =

      [ OSession Events ]
      Error - 16/03/2012 14:52:44 | Computer Name = AyR-Laptop | Source = Microsoft Office 12 Sessions | ID = 7001
      Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
      12.0.6612.1000, Microsoft Office Version: 12.0.6612.1000. This session lasted 944
      seconds with 660 seconds of active time. This session ended with a crash.

      Error - 30/08/2012 08:11:27 | Computer Name = AyR-Laptop | Source = Microsoft Office 12 Sessions | ID = 7001
      Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
      12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 1157
      seconds with 60 seconds of active time. This session ended with a crash.

      [ System Events ]
      Error - 12/03/2013 09:17:17 | Computer Name = AyR-Laptop | Source = Service Control Manager | ID = 7011
      Description =

      Error - 12/03/2013 09:18:40 | Computer Name = AyR-Laptop | Source = Service Control Manager | ID = 7000
      Description =

      Error - 12/03/2013 09:23:35 | Computer Name = AyR-Laptop | Source = Service Control Manager | ID = 7011
      Description =

      Error - 12/03/2013 1000 | Computer Name = AyR-Laptop | Source = EventLog | ID = 6008
      Description = The previous system shutdown at 14:58:15 on 12/03/2013 was unexpected.

      Error - 12/03/2013 1021 | Computer Name = AyR-Laptop | Source = Service Control Manager | ID = 7000
      Description =

      Error - 12/03/2013 10:19:51 | Computer Name = AyR-Laptop | Source = Service Control Manager | ID = 7011
      Description =

      Error - 12/03/2013 11:36:48 | Computer Name = AyR-Laptop | Source = EventLog | ID = 6008
      Description = The previous system shutdown at 16:07:48 on 12/03/2013 was unexpected.

      Error - 12/03/2013 11:37:13 | Computer Name = AyR-Laptop | Source = Service Control Manager | ID = 7000
      Description =

      Error - 12/03/2013 11:37:36 | Computer Name = AyR-Laptop | Source = ipnathlp | ID = 31004
      Description = The DNS proxy agent was unable to allocate 0 bytes of memory. This
      may indicate that the system is low on virtual memory, or that the memory manager
      has encountered an internal error.

      Error - 12/03/2013 11:56:27 | Computer Name = AyR-Laptop | Source = Service Control Manager | ID = 7011
      Description =


      < End of report >

    6. #26
      Moderador Gral.
      Avatar de @Javier_HF
      Registrado
      jun 2006
      Ubicación
      Spain.
      Mensajes
      21.692

      Re: Problema con ventanas emergentes (eoRezo) y portatil congelado.

      Ejecuta de nuevo OTL.exe

      Copia y Pega el código que está dentro del recuadro de abajo en la sección Análisis Personalizado / Código de Reparación.

      Código:
      :OTL
      O4 - HKLM..\Run: [AML] C:\Program Files\Sony\VAIO Launcher\AML.exe (Sony)
      :Files
      ipconfig /flushdns /c
      ipconfig /renew /c
      :Commands
      [PURITY]
      [EMPTYFLASH]
      [EMPTYTEMP]
      [RESETHOSTS]
      Presiona el Botón Reparar para lanzar la eliminación. Después presionas en OK.

      OTL va a Reiniciar el ordenador para completar la eliminación.

      Guardas el nuevo reporte generado, y lo copias y pegas en tu próxima respuesta, coméntanos también como sigue el ordenador ahora, en relación al ultimo problema planteado.

      Saludos.
      Quien no lo intenta no lo consigue | ;-)

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    7. #27
      Usuario Avatar de Roxo
      Registrado
      may 2008
      Ubicación
      Irlanda
      Mensajes
      75

      Re: Problema con ventanas emergentes (eoRezo) y portatil congelado.

      Hola Javierhf,


      He completado el paso del OTL, este es el informe:

      All processes killed
      ========== OTL ==========
      Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\AML deleted successfully.
      C:\Program Files\Sony\VAIO Launcher\AML.exe moved successfully.
      ========== FILES ==========
      < ipconfig /flushdns /c >
      Windows IP Configuration
      Successfully flushed the DNS Resolver Cache.
      C:\Users\AyR\Desktop\Antiviruses\cmd.bat deleted successfully.
      C:\Users\AyR\Desktop\Antiviruses\cmd.txt deleted successfully.
      < ipconfig /renew /c >
      Windows IP Configuration
      No operation can be performed on Local Area Connection while it has its media disconnected.
      Wireless LAN adapter Wireless Network Connection:
      Connection-specific DNS Suffix . : home
      Link-local IPv6 Address . . . . . : fe80::1961:c263:160:bd51%11
      IPv4 Address. . . . . . . . . . . : 192.168.1.14
      Subnet Mask . . . . . . . . . . . : 255.255.255.0
      Default Gateway . . . . . . . . . : 192.168.1.1
      Ethernet adapter Local Area Connection:
      Media State . . . . . . . . . . . : Media disconnected
      Connection-specific DNS Suffix . :
      Tunnel adapter Local Area Connection* 6:
      Media State . . . . . . . . . . . : Media disconnected
      Connection-specific DNS Suffix . :
      Tunnel adapter Local Area Connection* 11:
      Media State . . . . . . . . . . . : Media disconnected
      Connection-specific DNS Suffix . :
      Tunnel adapter Local Area Connection* 12:
      Connection-specific DNS Suffix . :
      IPv6 Address. . . . . . . . . . . : 2001:0:5ef5:79fd:185d:3ea3:c1df:e64
      Link-local IPv6 Address . . . . . : fe80::185d:3ea3:c1df:e64%15
      Default Gateway . . . . . . . . . : ::
      Tunnel adapter Local Area Connection* 13:
      Media State . . . . . . . . . . . : Media disconnected
      Connection-specific DNS Suffix . : home
      C:\Users\AyR\Desktop\Antiviruses\cmd.bat deleted successfully.
      C:\Users\AyR\Desktop\Antiviruses\cmd.txt deleted successfully.
      ========== COMMANDS ==========

      [EMPTYFLASH]

      User: Administrator

      User: Administrator.AyR-Laptop
      ->Flash cache emptied: 0 bytes

      User: All Users

      User: AyR
      ->Flash cache emptied: 794 bytes

      User: Default
      ->Flash cache emptied: 0 bytes

      User: Default User
      ->Flash cache emptied: 0 bytes

      User: Public

      Total Flash Files Cleaned = 0.00 mb


      [EMPTYTEMP]

      User: Administrator

      User: Administrator.AyR-Laptop
      ->Temp folder emptied: 401516 bytes
      ->Temporary Internet Files folder emptied: 33170 bytes
      ->Java cache emptied: 0 bytes
      ->FireFox cache emptied: 0 bytes
      ->Flash cache emptied: 0 bytes

      User: All Users

      User: AyR
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 33170 bytes
      ->Java cache emptied: 125049 bytes
      ->FireFox cache emptied: 15299623 bytes
      ->Flash cache emptied: 0 bytes

      User: Default
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 33170 bytes
      ->Flash cache emptied: 0 bytes

      User: Default User
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 0 bytes
      ->Flash cache emptied: 0 bytes

      User: Public

      %systemdrive% .tmp files removed: 0 bytes
      %systemroot% .tmp files removed: 0 bytes
      %systemroot%\System32 .tmp files removed: 0 bytes
      %systemroot%\System32\drivers .tmp files removed: 0 bytes
      Windows Temp folder emptied: 55004 bytes
      %systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
      RecycleBin emptied: 1051984 bytes

      Total Files Cleaned = 16.00 mb

      C:\Windows\System32\drivers\etc\Hosts moved successfully.
      HOSTS file reset successfully

      OTL by OldTimer - Version 3.2.69.0 log created on 03142013_161920

      Files\Folders moved on Reboot...

      PendingFileRenameOperations files...

      Registry entries deleted on Reboot...

    8. #28
      Usuario Avatar de Roxo
      Registrado
      may 2008
      Ubicación
      Irlanda
      Mensajes
      75
      Como ya te he comentado el rendimiento del sistema ha mejorado notablemente y ya no se bloquea. Solamente me queda una pequeña duda porque a raiz de este proceso cuando enciendo el portatil me aparece este mensaje:

      "AML has stopped working: A problem caused the program to stop working correctly. Windows will close the the program and notify you if a solution is available."

      Y una única opcion en la ventana que pone "Close Program". La verdad no se muy bien que es esto ya tambien parace que el sistema al iniciar esta bloqueando programas de inicio.

      En el menu de la barra de inicio tambien aparece un icono de Blocked Startup Programs, si accedo me da opciones para ver y quitar o reactivar programas bloqueados.

      Saludos

      ***********************************


      Javierhf, ya no me aparece el mensaje "AML has stopped working: A problem caused the program to stop working correctly. Windows will close the the program and notify you if a solution is available." cuando reinicio el sistema pero sigue apareciendo en el menu de la barra de inicio el icono de Blocked Startup Programs, si accedo me da opciones para ver y quitar o reactivar programas bloqueados. Esto no me aparecia antes... debemos dejarlo asi?

      saludos!
      Última edición por @Javier_HF fecha: 14/03/13 a las 20:47:37 Razón: Unir mensajes.

    9. #29
      Moderador Gral.
      Avatar de @Javier_HF
      Registrado
      jun 2006
      Ubicación
      Spain.
      Mensajes
      21.692

      Re: Problema con ventanas emergentes (eoRezo) y portatil congelado.

      Pero no decías que SI te seguía saliendo, como es que ahora a los 14m ya no te sale ese mensaje. ????

      Saludos.
      Quien no lo intenta no lo consigue | ;-)

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    10. #30
      Usuario Avatar de Roxo
      Registrado
      may 2008
      Ubicación
      Irlanda
      Mensajes
      75

      Re: Problema con ventanas emergentes (eoRezo) y portatil congelado.

      Perdona fue un fallo mio... te confirmo que el mensaje de AML que me salia al reiniciar el sistema ya no aprece, pero sigue apareciendo un en el menu de la barra de inicio el icono de Blocked Startup Programs, si accedo me da opciones para ver y quitar o reactivar programas bloqueados.