• Registrarse
  • Iniciar sesión


  • Página 1 de 2 12 ÚltimoÚltimo
    Resultados 1 al 10 de 14

    www_getwindowinfo no puedo eliminarlo

    hola, desde hace unos dias he estado tratando de eliminar esta molestia pero no he podido, ya le corri el antimalwares, spybot, at destruyer, combo fix y nada, sigue estando ahi. actualmente tengo el log ...

    1. #1
      Usuario Avatar de anmerob
      Registrado
      nov 2012
      Ubicación
      chiapas, mexico
      Mensajes
      8

      www_getwindowinfo no puedo eliminarlo

      hola, desde hace unos dias he estado tratando de eliminar esta molestia pero no he podido, ya le corri el antimalwares, spybot, at destruyer, combo fix y nada, sigue estando ahi. actualmente tengo el log del atdestroyer, espero puedan apoyarme.

      ######################## AT-Destroyer [2.1] By Infospyware.
      Hora/Día/Mes/Año: 12:39:41 \\\ 06/03/2013
      AT-Destroyer 2.1 By Infospyware ---> www.infospyware.com
      Última actualización: 30/11/2012
      Opción escogida: 2 :Buscar y Destruir
      Versión Internet Explorer:9.0.8112.16421
      Mozilla Firefox:17.0.1.4715
      Google Chrome:25.0.1364.152
      Privilegios: Adrian - Administrador
      Modo Actual: Modo Seguro.
      Nombre del pc: PILAR-HP
      Información del sistema operativo:X86-WIN_7-Service Pack 1
      nombre del usuario:Adrian
      Lenguaje del sistema: Español



      >>>>>>> Servicios <<<<<<<



      >>>>>> Carpetas <<<<<<



      >>>>>> Archivos <<<<<<



      >>>>>> Registro <<<<<<



      >>>>>> Heurística <<<<<<



      >>>>>> Internet Explorer <<<<<<

      Start Page==www.google.com
      Local Page==C:\Windows\System32\blank.htm
      Search Page==http://go.microsoft.com/fwlink/?LinkId=54896
      Default_search_url==http://go.microsoft.com/fwlink/?LinkId=54896
      Default_Page_URL==http://go.microsoft.com/fwlink/?LinkId=69157


      ''HKCU\Software\Microsoft\Internet Explorer\Main''
      Start Page==www.google.com
      Local Page==C:\Windows\system32\blank.htm
      Search Page==http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
      Default_search_url==
      Default_Page_URL==


      HKEY_USERS\S-1-5-21-3198627322-2388337089-2187697259-1002\Software\Microsoft\Internet Explorer\Main''
      Start Page==www.google.com
      Local Page==C:\Windows\system32\blank.htm
      Search Page==http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
      Default_search_url==
      Default_Page_URL==


      >>>>>> Firefox <<<<<<

      user_pref("browser.startup.homepage", "http://google.com");


      >>>>>> Plugins Firefox <<<<<<

      HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer
      HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=
      HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0
      HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=1.6.0_37
      HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin
      HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0
      HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0
      HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0
      HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922
      HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109

      >>>>>> Google Chrome <<<<<<

      "homepage": "http://www.google.com/",
      "homepage_changed": true,
      "homepage_is_newtabpage": false,


      >>>>>> Extensiones Google Chrome <<<<<<

      C:\Users\Adrian\AppData\Local\Google\Chrome\User Data\Default\Extensions\1
      C:\Users\Adrian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaojmikegpiepcfdkkjaplodkpfmlo

      ======== Listado ===========

      [23/08/2012 01:06 p.m.] [25/02/2012 02:40 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\Apple Computer
      [11/10/2012 12:15 p.m.] [21/03/2012 10:34 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\ArcSoft
      [14/02/2012 01:00 p.m.] [14/02/2012 01:00 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\ATI
      [28/03/2012 09:49 a.m.] [28/03/2012 09:49 a.m.] [DI] C:\Users\Adrian\AppData\Roaming\Blackberry Desktop
      [25/06/2012 09:22 a.m.] [25/06/2012 09:22 a.m.] [RDI] C:\Users\Adrian\AppData\Roaming\Brother
      [21/06/2012 06:58 p.m.] [21/06/2012 06:58 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\ControlCenter4
      [21/03/2012 12:40 p.m.] [21/03/2012 12:40 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\CyberLink
      [26/04/2012 10:34 p.m.] [26/04/2012 10:32 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\DocumentsToGoDesktop
      [06/03/2013 11:35 a.m.] [14/02/2012 01:30 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\Dropbox
      [14/03/2012 12:22 p.m.] [14/03/2012 12:22 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\Epson
      [01/12/2012 10:17 p.m.] [01/12/2012 10:17 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\ESET
      [20/10/2012 05:42 p.m.] [20/10/2012 05:42 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\fbDownloader
      [21/06/2012 06:58 p.m.] [21/06/2012 06:58 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\FLEXnet
      [06/11/2012 11:26 a.m.] [31/10/2012 01:21 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\Google
      [26/06/2012 05:28 p.m.] [14/02/2012 03:10 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\Hewlett-Packard
      [20/10/2012 05:42 p.m.] [20/10/2012 05:42 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\HMN
      [21/11/2012 11:01 a.m.] [14/02/2012 12:59 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\hpqLog
      [04/02/2013 12:48 p.m.] [28/01/2013 12:25 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\HpUpdate
      [14/02/2012 12:58 p.m.] [14/02/2012 12:58 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\Identities
      [14/03/2012 12:21 p.m.] [14/03/2012 12:21 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\InstallShield
      [18/09/2012 08:00 p.m.] [18/09/2012 07:57 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\KG Monitor
      [14/02/2012 01:03 p.m.] [14/02/2012 01:03 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\Macromedia
      [05/03/2013 06:03 p.m.] [05/03/2013 06:03 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\Malwarebytes
      [29/10/2012 08:20 p.m.] [13/02/2012 07:48 p.m.] [SDI] C:\Users\Adrian\AppData\Roaming\Microsoft
      [27/09/2012 08:44 p.m.] [14/02/2012 01:01 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\Mozilla
      [21/03/2012 12:49 p.m.] [21/03/2012 12:49 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\Namco
      [27/06/2012 03:08 p.m.] [21/06/2012 05:28 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\Nuance
      [28/09/2012 01:38 p.m.] [28/09/2012 01:38 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\ooVoo Details
      [29/10/2012 07:58 p.m.] [29/10/2012 07:58 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\PDFReaderPackages
      [25/02/2012 02:27 p.m.] [25/02/2012 02:27 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\Research In Motion
      C:\Users\Adrian\AppData\Roaming\Rim.Desktop.Exception.log [AI] 3.60 KB ( )
      C:\Users\Adrian\AppData\Roaming\Rim.Desktop.HttpServerSetup.log [AI] 3.08 KB ( )
      C:\Users\Adrian\AppData\Roaming\Rim.DesktopHelper.Exception.log [AI] 1.65 KB ( )
      [20/10/2012 05:42 p.m.] [20/10/2012 05:42 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\SDIV 2.0
      [06/03/2013 11:31 a.m.] [14/02/2012 05:39 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\Skype
      [14/02/2012 12:59 p.m.] [14/02/2012 12:59 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\Synaptics
      [10/12/2012 11:42 p.m.] [06/12/2012 10:30 a.m.] [D] C:\Users\Adrian\AppData\Roaming\Systweak
      [25/02/2012 01:39 p.m.] [25/02/2012 01:39 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\TeamViewer
      [06/12/2012 10:22 a.m.] [06/12/2012 10:22 a.m.] [DI] C:\Users\Adrian\AppData\Roaming\Thunderbird
      [23/08/2012 01:02 p.m.] [04/07/2012 04:44 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\WildTangent
      [20/10/2012 05:52 p.m.] [20/10/2012 05:52 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\Windows Live Writer
      [20/09/2012 10:12 p.m.] [20/09/2012 10:11 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\WinRAR
      [27/06/2012 03:08 p.m.] [27/06/2012 03:08 p.m.] [DI] C:\Users\Adrian\AppData\Roaming\Zeon
      [25/02/2012 02:37 p.m.] [25/02/2012 02:37 p.m.] [D] C:\Program Files\Apple Software Update
      [24/11/2011 07:35 p.m.] [24/11/2011 07:35 p.m.] [HSDLI] C:\Program Files\Archivos comunes
      [19/05/2011 02:39 p.m.] [19/05/2011 02:39 p.m.] [D] C:\Program Files\Atheros
      [19/05/2011 02:34 p.m.] [19/05/2011 02:34 p.m.] [D] C:\Program Files\ATI
      [19/05/2011 02:35 p.m.] [19/05/2011 02:34 p.m.] [D] C:\Program Files\ATI Technologies
      [19/05/2011 02:40 p.m.] [19/05/2011 02:39 p.m.] [D] C:\Program Files\Bluetooth Suite
      [25/02/2012 02:36 p.m.] [25/02/2012 02:36 p.m.] [D] C:\Program Files\Bonjour
      [21/06/2012 05:33 p.m.] [21/06/2012 05:32 p.m.] [D] C:\Program Files\Brother
      [21/06/2012 05:33 p.m.] [21/06/2012 05:33 p.m.] [D] C:\Program Files\Browny02
      [05/03/2013 11:53 p.m.] [05/03/2013 11:53 p.m.] [D] C:\Program Files\CCleaner
      [19/05/2011 02:39 p.m.] [19/05/2011 02:39 p.m.] [D] C:\Program Files\Cisco
      [05/03/2013 11:27 p.m.] [13/07/2009 09:37 p.m.] [D] C:\Program Files\Common Files
      [21/06/2012 05:33 p.m.] [21/06/2012 05:33 p.m.] [D] C:\Program Files\ControlCenter4
      [19/05/2011 02:48 p.m.] [19/05/2011 02:47 p.m.] [D] C:\Program Files\CyberLink
      C:\Program Files\desktop.ini [HSA] 174 bytes( 0)
      [26/04/2012 10:32 p.m.] [26/04/2012 10:32 p.m.] [D] C:\Program Files\Documents To Go Desktop
      [27/09/2012 08:45 p.m.] [27/09/2012 05:05 p.m.] [D] C:\Program Files\DownloadManager
      [27/04/2011 02:22 p.m.] [13/07/2009 11:52 p.m.] [D] C:\Program Files\DVD Maker
      [20/10/2012 05:27 p.m.] [20/10/2012 05:27 p.m.] [D] C:\Program Files\EazelBar
      [14/03/2012 12:23 p.m.] [14/03/2012 12:20 p.m.] [D] C:\Program Files\epson
      [14/03/2012 12:22 p.m.] [14/03/2012 12:22 p.m.] [D] C:\Program Files\Epson Software
      [27/04/2011 04:40 a.m.] [27/04/2011 04:40 a.m.] [D] C:\Program Files\Evernote
      [27/09/2012 08:45 p.m.] [27/09/2012 04:27 p.m.] [D] C:\Program Files\ffdshow
      [31/10/2012 01:18 p.m.] [31/10/2012 01:16 p.m.] [D] C:\Program Files\Google
      [31/10/2012 01:21 p.m.] [31/10/2012 01:21 p.m.] [D] C:\Program Files\GUMDF99.tmp
      [27/09/2012 04:27 p.m.] [27/09/2012 04:27 p.m.] [D] C:\Program Files\Haali
      [28/01/2013 12:26 p.m.] [02/12/2010 07:30 p.m.] [D] C:\Program Files\Hewlett-Packard
      [28/01/2013 12:25 p.m.] [28/01/2013 12:23 p.m.] [D] C:\Program Files\HP
      [27/04/2011 04:45 a.m.] [27/04/2011 04:41 a.m.] [D] C:\Program Files\HP Games
      [25/10/2012 11:31 p.m.] [20/10/2012 05:22 p.m.] [D] C:\Program Files\Iminent
      [29/10/2012 11:18 a.m.] [29/10/2012 11:18 a.m.] [D] C:\Program Files\Inbox.com
      [21/11/2012 11:07 a.m.] [27/04/2011 04:45 a.m.] [HD] C:\Program Files\InstallShield Installation Information
      [16/02/2013 12:38 p.m.] [13/07/2009 09:37 p.m.] [D] C:\Program Files\Internet Explorer
      [20/04/2012 08:03 p.m.] [20/04/2012 08:03 p.m.] [D] C:\Program Files\iPod
      [20/04/2012 08:04 p.m.] [20/04/2012 08:03 p.m.] [D] C:\Program Files\iTunes
      [15/02/2012 06:14 p.m.] [15/02/2012 06:14 p.m.] [D] C:\Program Files\Java
      [16/11/2012 10:56 p.m.] [18/09/2012 07:57 p.m.] [D] C:\Program Files\KG Monitor
      [22/03/2012 12:03 a.m.] [21/03/2012 10:36 p.m.] [D] C:\Program Files\Kodak
      [05/03/2013 05:59 p.m.] [05/03/2013 05:59 p.m.] [D] C:\Program Files\Malwarebytes' Anti-Malware
      [19/05/2011 02:51 p.m.] [19/05/2011 02:51 p.m.] [D] C:\Program Files\Microsoft
      [13/02/2012 05:41 p.m.] [13/02/2012 05:41 p.m.] [D] C:\Program Files\Microsoft Analysis Services
      [13/07/2009 11:52 p.m.] [13/07/2009 11:52 p.m.] [D] C:\Program Files\Microsoft Games
      [13/02/2012 05:45 p.m.] [27/04/2011 04:47 a.m.] [D] C:\Program Files\Microsoft Office
      [01/03/2013 10:26 a.m.] [13/02/2012 06:00 p.m.] [D] C:\Program Files\Microsoft Security Client
      [07/08/2012 01:29 p.m.] [26/06/2012 06:42 p.m.] [D] C:\Program Files\Microsoft Silverlight
      [20/10/2012 04:04 p.m.] [20/10/2012 04:04 p.m.] [D] C:\Program Files\Microsoft SkyDrive
      [20/10/2012 05:40 p.m.] [20/10/2012 05:40 p.m.] [D] C:\Program Files\Microsoft SQL Server Compact Edition
      [14/02/2012 07:27 a.m.] [13/02/2012 05:45 p.m.] [D] C:\Program Files\Microsoft.NET
      [05/12/2012 04:42 p.m.] [05/12/2012 04:41 p.m.] [D] C:\Program Files\Mozilla Firefox
      [27/09/2012 08:45 p.m.] [27/09/2012 04:19 p.m.] [D] C:\Program Files\Mozilla Sunbird
      [13/07/2009 11:52 p.m.] [13/07/2009 11:52 p.m.] [D] C:\Program Files\MSBuild
      [13/02/2012 06:17 p.m.] [13/02/2012 06:17 p.m.] [D] C:\Program Files\MSECache
      [21/06/2012 05:24 p.m.] [21/06/2012 05:24 p.m.] [D] C:\Program Files\MSXML 4.0
      [11/07/2012 10:14 a.m.] [11/07/2012 10:14 a.m.] [D] C:\Program Files\MyWebFace_5a
      [22/08/2012 10:54 a.m.] [21/06/2012 05:27 p.m.] [D] C:\Program Files\Nuance
      [24/11/2011 07:38 a.m.] [27/04/2011 04:41 a.m.] [RD] C:\Program Files\Online Services
      [21/03/2012 10:49 p.m.] [21/03/2012 10:48 p.m.] [D] C:\Program Files\QuickTime
      [19/05/2011 02:37 p.m.] [19/05/2011 02:36 p.m.] [D] C:\Program Files\Realtek
      [06/03/2013 10:57 a.m.] [22/10/2012 02:10 p.m.] [D] C:\Program Files\RebateInformer
      [13/07/2009 11:52 p.m.] [13/07/2009 11:52 p.m.] [D] C:\Program Files\Reference Assemblies
      [25/02/2012 02:25 p.m.] [25/02/2012 02:25 p.m.] [D] C:\Program Files\Research In Motion
      [10/05/2012 02:07 p.m.] [10/05/2012 02:07 p.m.] [D] C:\Program Files\Research In Motion Limited
      [05/02/2013 10:34 a.m.] [14/02/2012 05:38 p.m.] [RD] C:\Program Files\Skype
      [06/12/2012 10:23 a.m.] [06/12/2012 10:23 a.m.] [D] C:\Program Files\Softonic
      [06/03/2013 12:38 p.m.] [17/12/2012 01:32 p.m.] [D] C:\Program Files\Spybot - Search & Destroy
      [06/03/2013 12:11 p.m.] [06/03/2013 12:11 p.m.] [D] C:\Program Files\Spybot - Search & Destroy 2
      [19/05/2011 02:38 p.m.] [19/05/2011 02:38 p.m.] [D] C:\Program Files\Synaptics
      [19/05/2011 02:36 p.m.] [19/05/2011 02:36 p.m.] [HD] C:\Program Files\Temp
      [13/07/2009 11:53 p.m.] [13/07/2009 11:53 p.m.] [HD] C:\Program Files\Uninstall Information
      [24/09/2012 10:14 a.m.] [27/04/2011 04:41 a.m.] [D] C:\Program Files\WildTangent Games
      [27/04/2011 02:22 p.m.] [13/07/2009 11:52 p.m.] [D] C:\Program Files\Windows Defender
      [20/10/2012 05:41 p.m.] [27/04/2011 04:49 a.m.] [D] C:\Program Files\Windows Live
      [27/04/2011 02:22 p.m.] [13/07/2009 09:37 p.m.] [D] C:\Program Files\Windows Mail
      [27/04/2011 02:22 p.m.] [13/07/2009 11:52 p.m.] [D] C:\Program Files\Windows Media Player
      [24/11/2011 07:35 p.m.] [13/07/2009 09:37 p.m.] [D] C:\Program Files\Windows NT
      [27/04/2011 02:22 p.m.] [13/07/2009 11:52 p.m.] [D] C:\Program Files\Windows Photo Viewer
      [20/11/2010 03:33 p.m.] [13/07/2009 11:52 p.m.] [D] C:\Program Files\Windows Portable Devices
      [24/11/2011 07:38 a.m.] [13/07/2009 11:52 p.m.] [D] C:\Program Files\Windows Sidebar
      [01/10/2012 03:13 p.m.] [20/09/2012 10:11 p.m.] [D] C:\Program Files\WinRAR
      [27/04/2011 04:48 a.m.] [27/04/2011 04:48 a.m.] [D] C:\Program Files\WinZip
      [22/10/2012 03:02 p.m.] [27/04/2011 04:50 a.m.] [D] C:\Program Files\Xobni
      [27/09/2012 08:44 p.m.] [27/09/2012 05:16 p.m.] [D] C:\Program Files\Yontoo
      [19/05/2011 02:44 p.m.] [19/05/2011 02:44 p.m.] [DI] C:\ProgramData\AMD
      C:\ProgramData\Ament.ini [AI] 57 bytes 0
      [25/02/2012 02:37 p.m.] [25/02/2012 02:36 p.m.] [DI] C:\ProgramData\Apple
      [20/04/2012 08:03 p.m.] [25/02/2012 02:38 p.m.] [DI] C:\ProgramData\Apple Computer
      [13/07/2009 11:53 p.m.] [13/07/2009 11:53 p.m.] [HSDLI] C:\ProgramData\Application Data
      [22/03/2012 12:09 a.m.] [21/03/2012 10:37 p.m.] [HD] C:\ProgramData\ArcSoft
      [17/11/2012 03:51 p.m.] [17/11/2012 03:51 p.m.] [DI] C:\ProgramData\Ask
      [14/02/2012 12:59 p.m.] [19/05/2011 02:38 p.m.] [DI] C:\ProgramData\Atheros
      [19/05/2011 03:00 p.m.] [19/05/2011 03:00 p.m.] [DI] C:\ProgramData\ATI
      [21/06/2012 06:59 p.m.] [14/05/2012 09:17 a.m.] [DI] C:\ProgramData\boost_interprocess
      [21/06/2012 05:54 p.m.] [21/06/2012 05:23 p.m.] [DI] C:\ProgramData\Brother
      [27/09/2012 04:27 p.m.] [27/09/2012 04:27 p.m.] [DI] C:\ProgramData\Codecs Pack Manager
      [21/06/2012 05:33 p.m.] [21/06/2012 05:33 p.m.] [DI] C:\ProgramData\ControlCenter4
      [29/09/2012 06:37 p.m.] [21/03/2012 12:40 p.m.] [DI] C:\ProgramData\CyberLink
      [24/11/2011 07:35 p.m.] [24/11/2011 07:35 p.m.] [HSDLI] C:\ProgramData\Datos de programa
      [13/07/2009 11:53 p.m.] [13/07/2009 11:53 p.m.] [HSDLI] C:\ProgramData\Desktop
      [24/11/2011 07:35 p.m.] [24/11/2011 07:35 p.m.] [HSDLI] C:\ProgramData\Documentos
      [13/07/2009 11:53 p.m.] [13/07/2009 11:53 p.m.] [HSDLI] C:\ProgramData\Documents
      [14/03/2012 12:23 p.m.] [14/03/2012 12:21 p.m.] [DI] C:\ProgramData\EPSON
      [24/11/2011 07:35 p.m.] [24/11/2011 07:35 p.m.] [HSDLI] C:\ProgramData\Escritorio
      [13/07/2009 11:53 p.m.] [13/07/2009 11:53 p.m.] [HSDLI] C:\ProgramData\Favorites
      [24/11/2011 07:35 p.m.] [24/11/2011 07:35 p.m.] [HSDLI] C:\ProgramData\Favoritos
      [21/06/2012 05:27 p.m.] [21/06/2012 05:27 p.m.] [DI] C:\ProgramData\FLEXnet
      [31/10/2012 01:17 p.m.] [31/10/2012 01:17 p.m.] [DI] C:\ProgramData\Google
      [14/02/2012 03:10 p.m.] [27/04/2011 04:48 a.m.] [DI] C:\ProgramData\Hewlett-Packard
      [28/01/2013 12:24 p.m.] [28/01/2013 12:24 p.m.] [DI] C:\ProgramData\HP
      [05/03/2013 05:59 p.m.] [05/03/2013 05:59 p.m.] [DI] C:\ProgramData\Malwarebytes
      [24/11/2011 07:35 p.m.] [24/11/2011 07:35 p.m.] [HSDLI] C:\ProgramData\Menú Inicio
      [06/03/2013 12:11 p.m.] [13/07/2009 09:37 p.m.] [SDI] C:\ProgramData\Microsoft
      [16/02/2013 08:08 a.m.] [13/02/2012 05:41 p.m.] [DI] C:\ProgramData\Microsoft Help
      [20/10/2012 04:04 p.m.] [20/10/2012 04:04 p.m.] [DI] C:\ProgramData\Microsoft SkyDrive
      [11/07/2012 04:54 p.m.] [11/07/2012 04:54 p.m.] [DI] C:\ProgramData\Mozilla
      [13/02/2012 05:57 p.m.] [19/05/2011 02:50 p.m.] [DI] C:\ProgramData\Norton
      [19/05/2011 02:50 p.m.] [19/05/2011 02:50 p.m.] [DI] C:\ProgramData\NortonInstaller
      [22/08/2012 10:54 a.m.] [21/06/2012 05:27 p.m.] [DI] C:\ProgramData\Nuance
      [29/10/2012 08:20 p.m.] [29/10/2012 08:20 p.m.] [DI] C:\ProgramData\PDFC
      [24/11/2011 07:35 p.m.] [24/11/2011 07:35 p.m.] [HSDLI] C:\ProgramData\Plantillas
      [25/02/2012 02:25 p.m.] [25/02/2012 02:25 p.m.] [DI] C:\ProgramData\Research In Motion
      [22/08/2012 10:51 a.m.] [21/06/2012 05:28 p.m.] [DI] C:\ProgramData\ScanSoft
      [05/02/2013 10:34 a.m.] [27/04/2011 04:48 a.m.] [DI] C:\ProgramData\Skype
      [06/03/2013 12:35 p.m.] [17/12/2012 01:32 p.m.] [DI] C:\ProgramData\Spybot - Search & Destroy
      [13/07/2009 11:53 p.m.] [13/07/2009 11:53 p.m.] [HSDLI] C:\ProgramData\Start Menu
      [27/04/2011 04:52 a.m.] [27/04/2011 04:52 a.m.] [DI] C:\ProgramData\Sun
      [04/02/2013 02:33 p.m.] [04/02/2013 02:33 p.m.] [DI] C:\ProgramData\Synaptics
      [19/05/2011 02:48 p.m.] [19/05/2011 02:46 p.m.] [DI] C:\ProgramData\Temp
      [13/07/2009 11:53 p.m.] [13/07/2009 11:53 p.m.] [HSDLI] C:\ProgramData\Templates
      [02/12/2012 12:26 a.m.] [27/04/2011 04:41 a.m.] [DI] C:\ProgramData\WildTangent
      [27/04/2011 04:48 a.m.] [27/04/2011 04:48 a.m.] [DI] C:\ProgramData\WinZip
      [22/08/2012 10:54 a.m.] [22/08/2012 10:54 a.m.] [DI] C:\ProgramData\Zeon
      [25/02/2012 02:40 p.m.] [25/02/2012 02:38 p.m.] [DI] C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
      [21/11/2012 11:00 a.m.] [21/11/2012 11:00 a.m.] [DI] C:\ProgramData\{9BF4D58B-C6D6-467B-BC5A-FD0C1278F4AF}

      ==================== EOF ==================
      Última edición por anmerob fecha: 06/03/13 a las 14:58:55

    2. #2
      Moderador Gral.
      Avatar de @Leosolari
      Registrado
      jun 2007
      Ubicación
      Argentina
      Mensajes
      58.637

      Re: www_getwindowinfo no puedo eliminarlo

      Hola


      Descargá a Tu escritorio la Herramienta Adwcleaner

      • Cerrá Todos los programas que tengas abiertos.
      • Clic derecho sobre su ícono y elegis Ejecutar Como Administrador.
      • Pulsas el Boton Supresión.
      • Seguí las Instrucciones. La Herramienta va a pedir Reiniciar el sistema, lo cual debes aceptar.
      • Guardas el reporte generado en el Escritorio, para pegarlo en Tu próxima respuesta.






      Saludos
      Síguenos en Twitter y hazte nuestro amigo en Facebook.

    3. #3
      Usuario Avatar de anmerob
      Registrado
      nov 2012
      Ubicación
      chiapas, mexico
      Mensajes
      8

      Re: www_getwindowinfo no puedo eliminarlo

      aqui esta el reporte aunque el problema persiste

      # AdwCleaner v2.114 - Fichero creado el 06/03/2013 a 13:06:31
      # Actualizado el 05/03/2013 por Xplode
      # Sistema operativo : Windows 7 Starter Service Pack 1 (32 bits)
      # Usuario : Adrian - PILAR-HP
      # Modo de inicio : Normal
      # Ejecutado desde : C:\Users\Adrian\Downloads\adwcleaner.exe
      # Opción [Supresión]


      ***** [Servicios] *****


      ***** [Ficheros / Carpetas] *****

      Carpeta Suprimido : C:\Program Files\Iminent
      Carpeta Suprimido : C:\Program Files\Inbox.com
      Carpeta Suprimido : C:\Program Files\RebateInformer
      Carpeta Suprimido : C:\Program Files\Softonic
      Carpeta Suprimido : C:\Program Files\Yontoo
      Carpeta Suprimido : C:\ProgramData\Ask
      Carpeta Suprimido : C:\ProgramData\boost_interprocess
      Carpeta Suprimido : C:\ProgramData\Codecs Pack Manager
      Carpeta Suprimido : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RebateInformer
      Carpeta Suprimido : C:\Users\Adrian\AppData\Local\APN
      Carpeta Suprimido : C:\Users\Adrian\AppData\Local\fbDownloader
      Carpeta Suprimido : C:\Users\Adrian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaojmikegpiepcfdkkjaplodkpfmlo
      Carpeta Suprimido : C:\Users\Adrian\AppData\LocalLow\AskToolbar
      Carpeta Suprimido : C:\Users\Adrian\AppData\LocalLow\BabylonToolbar
      Carpeta Suprimido : C:\Users\Adrian\AppData\LocalLow\FunWebProducts
      Carpeta Suprimido : C:\Users\Adrian\AppData\LocalLow\MyWebFace_5a
      Carpeta Suprimido : C:\Users\Adrian\AppData\LocalLow\MyWebSearch
      Carpeta Suprimido : C:\Users\Adrian\AppData\LocalLow\RebateInformer
      Carpeta Suprimido : C:\Users\Adrian\AppData\LocalLow\Softonic
      Carpeta Suprimido : C:\Users\Adrian\AppData\LocalLow\Toolbar4
      Carpeta Suprimido : C:\Users\Adrian\AppData\Roaming\fbDownloader
      Carpeta Suprimido : C:\Users\Adrian\AppData\Roaming\HMN
      Carpeta Suprimido : C:\Users\Adrian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\fbDownloader
      Carpeta Suprimido : C:\Users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\yjyxj7ef.default\extensions\{EB9394A3-4AD6-4918-9537-31A1FD8E8EDF}
      Carpeta Suprimido : C:\Users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\yjyxj7ef.default\extensions\[email protected]_5a.com
      Carpeta Suprimido : C:\Users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\yjyxj7ef.default\extensions\[email protected]
      Carpeta Suprimido : C:\Users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\yjyxj7ef.default\extensions\[email protected]
      Carpeta Suprimido : C:\Users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\yjyxj7ef.default\extensions\[email protected]
      Carpeta Suprimido : C:\Users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\yjyxj7ef.default\extensions\[email protected]
      Carpeta Suprimido : C:\Users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\yjyxj7ef.default\extensions\[email protected]
      Carpeta Suprimido : C:\Users\Adrian\AppData\Roaming\SDIV 2.0
      Carpeta Suprimido : C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
      Carpeta Suprimido : C:\Windows\system32\Browser Manager
      Fichero Suprimido : C:\Program Files\Mozilla FireFox\searchplugins\FBDownloader.xml
      Fichero Suprimido : C:\Users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\yjyxj7ef.default\BrowserMngr_extensions.sqlite
      Fichero Suprimido : C:\Users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\yjyxj7ef.default\browsermngr_prefs.js
      Fichero Suprimido : C:\Users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\yjyxj7ef.default\searchplugins\Askcom.xml
      Fichero Suprimido : C:\Users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\yjyxj7ef.default\searchplugins\BabylonMngr.xml
      Fichero Suprimido : C:\Users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\yjyxj7ef.default\searchplugins\bProtect.xml
      Fichero Suprimido : C:\Users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\yjyxj7ef.default\searchplugins\browsemngr.xml
      Fichero Suprimido : C:\Users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\yjyxj7ef.default\searchplugins\funmoods.xml
      Fichero Suprimido : C:\Users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\yjyxj7ef.default\searchplugins\softonic.xml
      Fichero Suprimido : C:\Users\Public\Desktop\RebateGiant.com.url
      Fichero Suprimido : C:\Users\Public\Desktop\RebateInformer.lnk
      Suprimido al reiniciar : C:\Program Files\MyWebFace_5a

      ***** [Registro] *****

      Clave Supprimida : HKCU\Software\957d6dde76aeb45
      Clave Supprimida : HKCU\Software\APN
      Clave Supprimida : HKCU\Software\AppDataLow\Software\AskToolbar
      Clave Supprimida : HKCU\Software\AppDataLow\Software\Fun Web Products
      Clave Supprimida : HKCU\Software\AppDataLow\Software\FunWebProducts
      Clave Supprimida : HKCU\Software\AppDataLow\Software\MyWebFace_5a
      Clave Supprimida : HKCU\Software\Ask.com
      Clave Supprimida : HKCU\Software\BrowserMngr
      Clave Supprimida : HKCU\Software\CToolbar
      Clave Supprimida : HKCU\Software\FBDownloader
      Clave Supprimida : HKCU\Software\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje
      Clave Supprimida : HKCU\Software\Iminent
      Clave Supprimida : HKCU\Software\InstallCore
      Clave Supprimida : HKCU\Software\lollipop
      Clave Supprimida : HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
      Clave Supprimida : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
      Clave Supprimida : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
      Clave Supprimida : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
      Clave Supprimida : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{C04B7D22-5AEC-4561-8F49-27F6269208F6}
      Clave Supprimida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
      Clave Supprimida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF}
      Clave Supprimida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{CCB69577-088B-4004-9ED8-FF5BCC83A039}
      Clave Supprimida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CCB69577-088B-4004-9ED8-FF5BCC83A039}
      Clave Supprimida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{042DA63B-0933-403D-9395-B49307691690}
      Clave Supprimida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{148DCAEC-C91D-441D-A0E7-519A0673E7F5}
      Clave Supprimida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8736C681-37A0-40C6-A0F0-4C083409151C}
      Clave Supprimida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C522512A-9C2C-4DE5-9F63-976B560FEF14}
      Clave Supprimida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CC99A798-FD3D-4AB4-969E-6071612524F9}
      Clave Supprimida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CCB69577-088B-4004-9ED8-FF5BCC83A039}
      Clave Supprimida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D3D233D5-9F6D-436C-B6C7-E63F77503B30}
      Clave Supprimida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F464A68D-1CF2-4991-93AB-A84351D7F676}
      Clave Supprimida : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\FBDownloader
      Clave Supprimida : HKCU\Software\Softonic
      Clave Supprimida : HKCU\Software\TutoTag
      Clave Supprimida : HKLM\Software\APN
      Clave Supprimida : HKLM\Software\AskToolbar
      Clave Supprimida : HKLM\Software\BrowserMngr
      Clave Supprimida : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
      Clave Supprimida : HKLM\SOFTWARE\Classes\AppID\{4CE516A7-F7AC-4628-B411-8F886DC5733E}
      Clave Supprimida : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
      Clave Supprimida : HKLM\SOFTWARE\Classes\AppID\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
      Clave Supprimida : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
      Clave Supprimida : HKLM\SOFTWARE\Classes\AppID\{7E8A36EA-2501-4ED3-A3C8-CFA9143FB169}
      Clave Supprimida : HKLM\SOFTWARE\Classes\AppID\{960DF771-CFCB-4E53-A5B5-6EF2BBE6E706}
      Clave Supprimida : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
      Clave Supprimida : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
      Clave Supprimida : HKLM\SOFTWARE\Classes\AppID\{B15F118E-AF21-45E8-A809-29FDD7362565}
      Clave Supprimida : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
      Clave Supprimida : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
      Clave Supprimida : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
      Clave Supprimida : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
      Clave Supprimida : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
      Clave Supprimida : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
      Clave Supprimida : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
      Clave Supprimida : HKLM\SOFTWARE\Classes\AppID\TbCommonUtils.DLL
      Clave Supprimida : HKLM\SOFTWARE\Classes\AppID\TbHelper.EXE
      Clave Supprimida : HKLM\SOFTWARE\Classes\AppID\Toolbar.DLL
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{0FD143A0-6594-407B-B064-8E2E56F67DAF}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{183643C8-EE67-4574-9A38-927852E34163}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{29920769-9B2C-4D1E-97FA-74E478E9B371}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{3AC2FE63-1635-4022-94F2-971789585872}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{41B7C739-4708-42A5-85CA-EEDE4C816578}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{46954B3B-41EC-48C6-94C9-E5257B70E1B2}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{4EF645BD-65B0-4F98-AD56-D0437B7045F6}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{54BBAEB3-DD44-4C9F-8145-7503CAC042F9}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{54ECA872-DB2A-4C6B-BBB2-F3777C6786CC}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{6372C122-1E82-494A-9D5A-DE31ED303036}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{75CDADBD-7A6C-4CED-9EA7-93ED462CCF71}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{7F8F6D0F-EB19-43CB-BD5A-FB5DA9814A51}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{8736C681-37A0-40C6-A0F0-4C083409151C}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{87A787F4-0758-43D1-A750-48B715F185B3}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{8DBC9EFE-0351-4572-B62C-4EEB5EA10F0E}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{91244959-96FF-47D5-A989-ACE3CC7DB0B1}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{A3E2F089-DDBB-4CBF-B06C-5D44DA316ED3}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{A5679AB0-C59E-49E7-83C4-5289F844A6E0}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{AF808758-C780-404C-A4EE-4526323FD9B6}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{CA0167C2-6295-41B8-9BDA-704B2F5E4CD9}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{CC99A798-FD3D-4AB4-969E-6071612524F9}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{CCB69577-088B-4004-9ED8-FF5BCC83A039}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{D749CF46-ABB0-4A52-BAF6-34461B8DD8CE}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CLSID\{DB35C569-5624-4CFC-8043-E5139F55A073}
      Clave Supprimida : HKLM\SOFTWARE\Classes\CShared.TB4Client
      Clave Supprimida : HKLM\SOFTWARE\Classes\CShared.TB4Script
      Clave Supprimida : HKLM\SOFTWARE\Classes\CShared.TB4Server
      Clave Supprimida : HKLM\SOFTWARE\Classes\CShared.TB4Server2
      Clave Supprimida : HKLM\SOFTWARE\Classes\escort.escortIEPane
      Clave Supprimida : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\esrv.funmoodsESrvc
      Clave Supprimida : HKLM\SOFTWARE\Classes\esrv.funmoodsESrvc.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\funmoods.dskBnd
      Clave Supprimida : HKLM\SOFTWARE\Classes\funmoods.dskBnd.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\funmoods.funmoodsHlpr
      Clave Supprimida : HKLM\SOFTWARE\Classes\funmoods.funmoodsHlpr.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\Inbox.AppServer
      Clave Supprimida : HKLM\SOFTWARE\Classes\Inbox.IBX404
      Clave Supprimida : HKLM\SOFTWARE\Classes\Inbox.JSServer
      Clave Supprimida : HKLM\SOFTWARE\Classes\Inbox.Toolbar
      Clave Supprimida : HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
      Clave Supprimida : HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{01C78433-6FDF-4E5A-A82D-B535C32E03DF}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{087CDC12-0A11-4D1D-8DCF-44185D7C3496}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{088BF3A9-6AE8-47B9-A3FB-26262F236C79}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{1C888195-0160-4883-91B7-294C0CE2F277}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{2263BE11-ACB7-49D9-8313-6B1D5CC42FAA}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{28C3737A-32D1-492D-B76B-8D75EBBFB887}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{2AC7B9EB-3881-4EB9-8DEE-0A731A309FDE}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{349C0469-ACDD-49DF-9B3E-0D82E7C7DC4D}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{41226591-6F7A-4082-B63A-67FE4A0CF7A6}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{41349826-5C7F-4BF0-8279-5DAF1DE6E9AE}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{55D69CD1-6715-4C40-BF05-9519AC4DC6E6}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{604EA016-1EDE-41E6-A23E-76CF8F2A4808}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{66C8FD57-54C4-4D4F-BC95-DCCC763B410A}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{717BAE33-7061-4279-8AE5-6C13BC8AF3F9}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{84F06F7A-F811-48D7-8B34-3F4145183D8F}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{88F6D55F-AA3F-4003-BE69-4AC1998D6492}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{8DBCDED5-08AD-41A2-9BBC-235D84F4FE06}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{97FC5555-8BDC-40EA-8DE2-B1E46B9EA629}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{99ACA0F7-D864-45CB-8C40-FD42A077E7CA}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{A0F66203-1A86-4812-9603-A57E09A4D7A3}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{B3BA5582-79A9-464D-A7FA-711C5888C6E9}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{BC39D1B3-4471-41C1-AACA-E097FAF4B7AA}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{CE057E0D-2D7E-4DFF-A890-07BA69B8C762}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{DEB85542-1311-4EC6-8A32-5372EB27FC94}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{E9BBD270-4B87-4EE2-912F-6635674986C0}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
      Clave Supprimida : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.DynamicBarButton
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.DynamicBarButton.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.FeedManager
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.FeedManager.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.HTMLMenu
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.HTMLMenu.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.MultipleButton
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.MultipleButton.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.PseudoTransparentPlugin
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.PseudoTransparentPlugin.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.Radio
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.Radio.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.ScriptButton
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.ScriptButton.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.SettingsPlugin
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.SettingsPlugin.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.SkinLauncher
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.SkinLauncher.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.ThirdPartyInstaller
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.ThirdPartyInstaller.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.UrlAlertButton
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.UrlAlertButton.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.XMLSessionPlugin
      Clave Supprimida : HKLM\SOFTWARE\Classes\MyWebFace_5a.XMLSessionPlugin.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\Prod.cap
      Clave Supprimida : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\inbox
      Clave Supprimida : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\rebinfo
      Clave Supprimida : HKLM\SOFTWARE\Classes\RebateI.Rebate Informer BHO
      Clave Supprimida : HKLM\SOFTWARE\Classes\RebateI.RebateInformImageGen
      Clave Supprimida : HKLM\SOFTWARE\Classes\RebateInf.RebateInfObj
      Clave Supprimida : HKLM\SOFTWARE\Classes\srv.SoftonicSrvc
      Clave Supprimida : HKLM\SOFTWARE\Classes\srv.SoftonicSrvc.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils
      Clave Supprimida : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager
      Clave Supprimida : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager
      Clave Supprimida : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\TbHelper.TbRequest
      Clave Supprimida : HKLM\SOFTWARE\Classes\TbHelper.TbRequest.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\TbHelper.TbTask
      Clave Supprimida : HKLM\SOFTWARE\Classes\TbHelper.TbTask.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper
      Clave Supprimida : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\Toolbar.BandObject
      Clave Supprimida : HKLM\SOFTWARE\Classes\Toolbar.BandObject.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\Toolbar.ToolbarHelperObject
      Clave Supprimida : HKLM\SOFTWARE\Classes\Toolbar.ToolbarHelperObject.1
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{0DCBCA67-3A6B-40F7-BD56-B99244B5DF81}
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{11D9E165-B8C1-4734-A56C-BC4FCACA966B}
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{438B047C-C041-4D15-98CF-A97C6B366C28}
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{506F578A-91E1-46CE-830F-E2F4268E9966}
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{615E8AA1-6BB8-4A3D-A1CC-373194DB612C}
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{654C3FF4-265E-409B-92A6-537574DECF60}
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{6857AC4A-95B4-4E2C-B2D2-8A235FCCEF4A}
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{6915A0BA-FDE9-429F-A4B0-96E4302227AC}
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{8011A14A-90D9-45DE-B3DD-6D657667397E}
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{819FFE20-35C7-4925-8CDA-4E0E2DB94302}
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{8FFDF636-0D87-4B33-B9E9-79A53F6E1DAE}
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{B1000508-EFB9-4EAD-BB09-CE6899719B97}
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{B15F118E-AF21-45E8-A809-29FDD7362565}
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{B87F8B63-7274-43FD-87FA-09D3B7496148}
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{C4BAE205-5E02-4E32-876E-F34B4E2D000C}
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{CBEF8724-D080-4737-88DA-111EEC6651AA}
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{CE2E3004-A9B4-4CCE-A818-16631D861260}
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{D56886D9-719D-4A9C-98BF-98B4EB5AD805}
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
      Clave Supprimida : HKLM\SOFTWARE\Classes\TypeLib\{FAC8C849-4BB4-4E6F-BDED-6DCBAF1A6713}
      Clave Supprimida : HKLM\Software\CToolbar
      Clave Supprimida : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaojmikegpiepcfdkkjaplodkpfmlo
      Clave Supprimida : HKLM\SOFTWARE\Google\Chrome\Extensions\pgafcinpmmpklohkojmllohdhomoefph
      Clave Supprimida : HKLM\Software\Iminent
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2263BE11-ACB7-49D9-8313-6B1D5CC42FAA}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{612AD33D-9824-4E87-8396-92374E91C4BB}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6372C122-1E82-494A-9D5A-DE31ED303036}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{768AF043-5C5B-408B-A3E0-671B60E3FCD3}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{97FC5555-8BDC-40EA-8DE2-B1E46B9EA629}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9CF034EA-7B46-48D3-8895-8A14B32AE445}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F0999591-2EDB-4A3E-907E-337B1591F643}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASAPI32
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASMANCS
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Tracing\BabylonTC_RASAPI32
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Tracing\BabylonTC_RASMANCS
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Tracing\FunmoodsLatest_RASAPI32
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Tracing\FunmoodsLatest_RASMANCS
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Tracing\softonic_ggl_1_RASAPI32
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Tracing\softonic_ggl_1_RASMANCS
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CCB69577-088B-4004-9ED8-FF5BCC83A039}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D3D233D5-9F6D-436C-B6C7-E63F77503B30}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{08858AF6-42AD-4914-95D2-AC3AB0DC8E28}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{41B7C739-4708-42A5-85CA-EEDE4C816578}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{75CDADBD-7A6C-4CED-9EA7-93ED462CCF71}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{91244959-96FF-47D5-A989-ACE3CC7DB0B1}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C522512A-9C2C-4DE5-9F63-976B560FEF14}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{CCB69577-088B-4004-9ED8-FF5BCC83A039}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D749CF46-ABB0-4A52-BAF6-34461B8DD8CE}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F464A68D-1CF2-4991-93AB-A84351D7F676}
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\063A857434EDED11A893800002C0A966
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\120DFADEB50841F408F04D2A278F9509
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B5BAE2ED018083A4C8DA86D6E3F4B024
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
      Clave Supprimida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4EF645BD-65B0-4F98-AD56-D0437B7045F6}_is1
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
      Clave Supprimida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Softonic
      Clave Supprimida : HKLM\SOFTWARE\MozillaPlugins\@MyWebFace_5a.com/Plugin
      Clave Supprimida : HKLM\Software\MyWebFace_5a
      Clave Supprimida : HKLM\Software\Softonic
      Clave Supprimida : HKLM\Software\Tutorials
      Valor Supprimida : HKCU\Software\Microsoft\Internet Explorer\Main [BrowserMngr Start Page]
      Valor Supprimida : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
      Valor Supprimida : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [BrowserMngrDefaultScope]
      Valor Supprimida : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D7E97865-918F-41E4-9CD0-25AB1C574CE8}]
      Valor Supprimida : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{D3D233D5-9F6D-436C-B6C7-E63F77503B30}]
      Valor Supprimida : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Protector]
      Valor Supprimida : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [RebateInformer]
      Valor Supprimida : HKCU\Software\Mozilla\Firefox\Extensions [{ED76C299-85BC-4891-9237-74A140C28832}]
      Valor Supprimida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{D7E97865-918F-41E4-9CD0-25AB1C574CE8}]
      Valor Supprimida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [MyWebFace_5a Browser Plugin Loader]
      Valor Supprimida : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [[email protected]_5a.com]
      Valor Supprimida : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [[email protected]]

      ***** [Navegadores] *****

      -\\ Internet Explorer v9.0.8112.16464

      Sustituido : [HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls - Tabs] = hxxp://search.softonic.com/INF00041/tb_v1?SearchSource=15&cc= --> hxxp://www.google.com

      -\\ Mozilla Firefox v17.0.1 (es-MX)

      Fichero : C:\Users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\yjyxj7ef.default\prefs.js

      C:\Users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\yjyxj7ef.default\user.js ... Suprimido !

      Supprimida : user_pref("avg.install.userHPSettings", "hxxp://search.babylon.com/?affID=110823&tt=270912_7a_3912_7[...]
      Supprimida : user_pref("avg.install.userSPSettings", "Search the web (Babylon)");
      Supprimida : user_pref("browser.newtab.url", "hxxp://search.fbdownloader.com/?channel=sfmx202fbdgy16");
      Supprimida : user_pref("extensions.BabylonToolbar.admin", false);
      Supprimida : user_pref("extensions.BabylonToolbar.aflt", "babsst");
      Supprimida : user_pref("extensions.BabylonToolbar.appId", "{BDB69379-802F-4eaf-B541-F8DE92DD98DB}");
      Supprimida : user_pref("extensions.BabylonToolbar.autoRvrt", "false");
      Supprimida : user_pref("extensions.BabylonToolbar.babExt", "");
      Supprimida : user_pref("extensions.BabylonToolbar.babTrack", "affID=110823&tt=270912_7a_3912_7");
      Supprimida : user_pref("extensions.BabylonToolbar.bbDpng", "24");
      Supprimida : user_pref("extensions.BabylonToolbar.cntry", "MX");
      Supprimida : user_pref("extensions.BabylonToolbar.dfltLng", "en");
      Supprimida : user_pref("extensions.BabylonToolbar.dfltSrch", false);
      Supprimida : user_pref("extensions.BabylonToolbar.dpk", "");
      Supprimida : user_pref("extensions.BabylonToolbar.envrmnt", "production");
      Supprimida : user_pref("extensions.BabylonToolbar.excTlbr", false);
      Supprimida : user_pref("extensions.BabylonToolbar.hdrMd5", "617F78369D9E0C8610A6560C0C3F792A");
      Supprimida : user_pref("extensions.BabylonToolbar.hmpg", true);
      Supprimida : user_pref("extensions.BabylonToolbar.id", "ba84cf740000000000000aa3c4caf00d");
      Supprimida : user_pref("extensions.BabylonToolbar.instlDay", "15679");
      Supprimida : user_pref("extensions.BabylonToolbar.instlRef", "na");
      Supprimida : user_pref("extensions.BabylonToolbar.lastVrsnTs", "1.8.3.816:01:19");
      Supprimida : user_pref("extensions.BabylonToolbar.mntrvrsn", "1.3.1");
      Supprimida : user_pref("extensions.BabylonToolbar.newTab", false);
      Supprimida : user_pref("extensions.BabylonToolbar.pnu_base", "{\"newVrsn\":\"44\",\"lastVrsn\":\"44\",\"vrsnLoad\[...]
      Supprimida : user_pref("extensions.BabylonToolbar.pnu_tb9", "{\"newVrsn\":\"1\",\"lastVrsn\":\"1\",\"vrsnLoad\":\[...]
      Supprimida : user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar");
      Supprimida : user_pref("extensions.BabylonToolbar.prtnrId", "babylon");
      Supprimida : user_pref("extensions.BabylonToolbar.sg", "azb");
      Supprimida : user_pref("extensions.BabylonToolbar.smplGrp", "azb");
      Supprimida : user_pref("extensions.BabylonToolbar.srcExt", "ss");
      Supprimida : user_pref("extensions.BabylonToolbar.tlbrId", "base");
      Supprimida : user_pref("extensions.BabylonToolbar.tlbrSrchUrl", "hxxp://search.babylon.com/?babsrc=TB_def&mntrId=[...]
      Supprimida : user_pref("extensions.BabylonToolbar.vrsn", "1.8.3.8");
      Supprimida : user_pref("extensions.BabylonToolbar.vrsnTs", "1.8.3.816:01:19");
      Supprimida : user_pref("extensions.BabylonToolbar.vrsni", "1.8.3.8");
      Supprimida : user_pref("extensions.BabylonToolbar_i.babExt", "");
      Supprimida : user_pref("extensions.BabylonToolbar_i.babTrack", "affID=110823&tt=270912_7a_3912_7");
      Supprimida : user_pref("extensions.BabylonToolbar_i.newTab", false);
      Supprimida : user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://search.babylon.com/?affID=17426&tl=wgkn22[...]
      Supprimida : user_pref("extensions.BabylonToolbar_i.smplGrp", "none");
      Supprimida : user_pref("extensions.BabylonToolbar_i.srcExt", "ss");
      Supprimida : user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.8.3.817:39:51");
      Supprimida : user_pref("extensions.Softonic.admin", false);
      Supprimida : user_pref("extensions.Softonic.aflt", "SD");
      Supprimida : user_pref("extensions.Softonic.autoRvrt", "false");
      Supprimida : user_pref("extensions.Softonic.cntry", "MX");
      Supprimida : user_pref("extensions.Softonic.cv", "cv5");
      Supprimida : user_pref("extensions.Softonic.dfltLng", "es");
      Supprimida : user_pref("extensions.Softonic.dfltSrch", true);
      Supprimida : user_pref("extensions.Softonic.dspNew", "Search the web (Softonic)");
      Supprimida : user_pref("extensions.Softonic.dspOld", "FBDownloader Search");
      Supprimida : user_pref("extensions.Softonic.envrmnt", "production");
      Supprimida : user_pref("extensions.Softonic.excTlbr", false);
      Supprimida : user_pref("extensions.Softonic.hdrMd5", "7BB770F0A7B7545143714968B3D66FC5");
      Supprimida : user_pref("extensions.Softonic.hmpg", true);
      Supprimida : user_pref("extensions.Softonic.hmpgUrl", "hxxp://search.softonic.com/INF00041/tb_v1?SearchSource=13&[...]
      Supprimida : user_pref("extensions.Softonic.hpNew", "hxxp://search.softonic.com/INF00041/tb_v1?SearchSource=13&cc[...]
      Supprimida : user_pref("extensions.Softonic.hpOld", "hxxp://search.fbdownloader.com/?channel=sfmx202fbdgy16");
      Supprimida : user_pref("extensions.Softonic.id", "ba84cf740000000000000aa3c4caf00d");
      Supprimida : user_pref("extensions.Softonic.instlDay", "15680");
      Supprimida : user_pref("extensions.Softonic.instlRef", "INF00041");
      Supprimida : user_pref("extensions.Softonic.keyWordUrl", "hxxp://search.softonic.com/INF00041/tb_v1?SearchSource=[...]
      Supprimida : user_pref("extensions.Softonic.lastVrsnTs", "1.6.7.410:23:18");
      Supprimida : user_pref("extensions.Softonic.mntrvrsn", "1.3.0");
      Supprimida : user_pref("extensions.Softonic.newTab", true);
      Supprimida : user_pref("extensions.Softonic.newTabUrl", "hxxp://search.softonic.com/INF00041/tb_v1?SearchSource=1[...]
      Supprimida : user_pref("extensions.Softonic.prdct", "Softonic");
      Supprimida : user_pref("extensions.Softonic.prtnrId", "softonic");
      Supprimida : user_pref("extensions.Softonic.rvrtMsg", "Click Yes to keep current home page and default search set[...]
      Supprimida : user_pref("extensions.Softonic.sg", "az");
      Supprimida : user_pref("extensions.Softonic.smplGrp", "none");
      Supprimida : user_pref("extensions.Softonic.srchPrvdr", "Search the web (Softonic)");
      Supprimida : user_pref("extensions.Softonic.tlbrId", "BASEirobinhoodActive");
      Supprimida : user_pref("extensions.Softonic.tlbrSrchUrl", "hxxp://search.softonic.com/INF00041/tb_v1?SearchSource[...]
      Supprimida : user_pref("extensions.Softonic.vrsn", "1.6.7.4");
      Supprimida : user_pref("extensions.Softonic.vrsnTs", "1.6.7.410:23:18");
      Supprimida : user_pref("extensions.Softonic.vrsni", "1.6.7.4");
      Supprimida : user_pref("extensions.Softonic_i.dnsErr", true);
      Supprimida : user_pref("extensions.Softonic_i.hmpg", true);
      Supprimida : user_pref("extensions.Softonic_i.newTab", true);
      Supprimida : user_pref("extensions.Softonic_i.smplGrp", "none");
      Supprimida : user_pref("extensions.Softonic_i.vrsnTs", "1.6.7.410:23:18");
      Supprimida : user_pref("extensions.asktb.ff-original-keyword-url", "");
      Supprimida : user_pref("extensions.enabledAddons", "ffxtlbra%40softonic.com:1.6.0,%7B972ce4c6-7e08-4474-a285-3208[...]
      Supprimida : user_pref("extensions.funmoods.aflt", "ironpub");
      Supprimida : user_pref("extensions.funmoods.autoRvrt", false);
      Supprimida : user_pref("extensions.funmoods.cntry", "MX");
      Supprimida : user_pref("extensions.funmoods.cv", "cv5");
      Supprimida : user_pref("extensions.funmoods.dfltLng", "");
      Supprimida : user_pref("extensions.funmoods.dfltSrch", true);
      Supprimida : user_pref("extensions.funmoods.dnsErr", true);
      Supprimida : user_pref("extensions.funmoods.envrmnt", "production");
      Supprimida : user_pref("extensions.funmoods.excTlbr", false);
      Supprimida : user_pref("extensions.funmoods.hdrMd5", "83C96BB005BBBD07C11EB892A10BDFF8");
      Supprimida : user_pref("extensions.funmoods.hmpg", true);
      Supprimida : user_pref("extensions.funmoods.hmpgUrl", "hxxp://searchfunmoods.com/?f=1&a=ironpub&chnl=ironpub&cd=2[...]
      Supprimida : user_pref("extensions.funmoods.id", "9C8E994264A2CF74");
      Supprimida : user_pref("extensions.funmoods.instlDay", "15611");
      Supprimida : user_pref("extensions.funmoods.instlRef", "ironpub");
      Supprimida : user_pref("extensions.funmoods.isdcmntcmplt", true);
      Supprimida : user_pref("extensions.funmoods.lastVrsnTs", "1.5.23.229:31:28");
      Supprimida : user_pref("extensions.funmoods.mntrvrsn", "1.3.0");
      Supprimida : user_pref("extensions.funmoods.newTab", true);
      Supprimida : user_pref("extensions.funmoods.newTabUrl", "hxxp://searchfunmoods.com/?f=2&a=ironpub&chnl=ironpub&cd[...]
      Supprimida : user_pref("extensions.funmoods.prdct", "funmoods");
      Supprimida : user_pref("extensions.funmoods.prtnrId", "funmoods");
      Supprimida : user_pref("extensions.funmoods.sg", "none");
      Supprimida : user_pref("extensions.funmoods.smplGrp", "none");
      Supprimida : user_pref("extensions.funmoods.srchPrvdr", "Search");
      Supprimida : user_pref("extensions.funmoods.tlbrId", "base");
      Supprimida : user_pref("extensions.funmoods.tlbrSrchUrl", "hxxp://searchfunmoods.com/?f=3&a=ironpub&chnl=ironpub&[...]
      Supprimida : user_pref("extensions.funmoods.vrsn", "1.5.23.22");
      Supprimida : user_pref("extensions.funmoods.vrsnTs", "1.5.23.229:31:28");
      Supprimida : user_pref("extensions.funmoods.vrsni", "1.5.23.22");
      Supprimida : user_pref("extensions.funmoods_i.newTab", true);
      Supprimida : user_pref("extensions.funmoods_i.smplGrp", "none");
      Supprimida : user_pref("extensions.funmoods_i.vrsnTs", "1.5.23.229:31:28");

      -\\ Google Chrome v25.0.1364.152

      Fichero : C:\Users\Adrian\AppData\Local\Google\Chrome\User Data\Default\Preferences

      [OK] El fichero no contiene ninguna entrada ilegítima.

      *************************

      AdwCleaner[S1].txt - [43672 octets] - [06/03/2013 13:06:31]

      ########## EOF - C:\AdwCleaner[S1].txt - [43733 octets] ##########

    4. #4
      Moderador Gral.
      Avatar de @Leosolari
      Registrado
      jun 2007
      Ubicación
      Argentina
      Mensajes
      58.637

      Re: www_getwindowinfo no puedo eliminarlo

      Hola




      Descargá OTL By OldTimer





      >>> Ejecutá OTL
      • Cerrá todos programas que tengas abiertos y Hacé doble click en el ícono de OTL para ejecutarlo.
      • Dejalo correr sin interrumpirlo asta que termine el Análisis.
      • Cuando la interfaz aparesca, solo debes cambiar Abajo de: "Tipo de Análisis" poniendo Resultado Minimo.
      • Marcá las opciones: Buscar LOP y Buscar Purity.
      • Marcá las Opciones Omitir Archivos De Microsoft y Usar Listado de Compañias Reconocidas.
      • Pegá el siguiente script bajo la casilla Análisis Personalizados/Codigo de Reparación:

        NOTA: No copiar la palabra Cita.
        msconfig
        netsvcs
        %SYSTEMDRIVE%\*.*
        CREATERESTOREPOINT
      • Por favor No cambies el resto de la configuración a menos que te lo solicitemos.


      • Presioná el boton .
      • Una vez que termine, se abrirán dos (2) archivos, OTL.Txt y Extras.Txt. Éstos aparecerán grabados en el mismo lugar OTL.exe fue descargado.
      • Copiá y pegá el contenido del archivo OTL.txt en tu próxima respuesta.




      Saludos
      Síguenos en Twitter y hazte nuestro amigo en Facebook.

    5. #5
      Usuario Avatar de anmerob
      Registrado
      nov 2012
      Ubicación
      chiapas, mexico
      Mensajes
      8

      Re: www_getwindowinfo no puedo eliminarlo

      aqui esta el reporte

      OTL logfile created on: 06/03/2013 13:29:32 - Run 1
      OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Adrian\Downloads
      Starter Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
      Internet Explorer (Version = 9.0.8112.16421)
      Locale: 00000c0a | Country: México | Language: ESM | Date Format: dd/MM/yyyy

      1,75 Gb Total Physical Memory | 0,81 Gb Available Physical Memory | 46,41% Memory free
      3,49 Gb Paging File | 1,92 Gb Available in Paging File | 55,09% Paging File free
      Paging file location(s): ?:\pagefile.sys [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
      Drive C: | 284,94 Gb Total Space | 232,11 Gb Free Space | 81,46% Space Free | Partition Type: NTFS
      Drive D: | 12,86 Gb Total Space | 1,57 Gb Free Space | 12,25% Space Free | Partition Type: NTFS

      Computer Name: PILAR-HP | User Name: Adrian | Logged in as Administrator.
      Boot Mode: Normal | Scan Mode: Current user
      Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

      ========== Processes (SafeList) ==========

      PRC - C:\Users\Adrian\Downloads\OTL.exe (OldTimer Tools)
      PRC - C:\Archivos de programa\Google\Chrome\Application\chrome.exe (Google Inc.)
      PRC - C:\Archivos de programa\Google\Google Toolbar\GoogleToolbarUser_32.exe (Google Inc.)
      PRC - c:\Archivos de programa\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation)
      PRC - C:\Archivos de programa\Microsoft Security Client\msseces.exe (Microsoft Corporation)
      PRC - C:\Users\Adrian\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
      PRC - C:\Archivos de programa\Internet Explorer\iexplore.exe (Microsoft Corporation)
      PRC - C:\Archivos de programa\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
      PRC - C:\Archivos de programa\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
      PRC - C:\Windows\System32\taskhost.exe (Microsoft Corporation)
      PRC - C:\Archivos de programa\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.)
      PRC - C:\Archivos de programa\Spybot - Search & Destroy 2\SDWSCSvc.exe (Safer-Networking Ltd.)
      PRC - C:\Archivos de programa\Spybot - Search & Destroy 2\SDUpdSvc.exe (Safer-Networking Ltd.)
      PRC - C:\Archivos de programa\Spybot - Search & Destroy 2\SDFSSvc.exe (Safer-Networking Ltd.)
      PRC - C:\Archivos de programa\Hewlett-Packard\HP Support Framework\HPSA_Service.exe (Hewlett-Packard Company)
      PRC - C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.)
      PRC - C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE (Microsoft Corp.)
      PRC - C:\Archivos de programa\MyWebFace_5a\bar\1.bin\5abarsvc.exe (COMPANYVERS_NAME)
      PRC - C:\Archivos de programa\EazelBar\ToolbarUpdaterService.exe ()
      PRC - C:\Archivos de programa\KG Monitor\klgratis.exe ()
      PRC - C:\Archivos de programa\HP\HP Officejet Pro 8600\Bin\ScanToPCActivationApp.exe (Hewlett-Packard Co.)
      PRC - C:\Archivos de programa\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe (Research In Motion Limited)
      PRC - C:\Archivos de programa\ControlCenter4\BrCcUxSys.exe (Brother Industries, Ltd.)
      PRC - C:\Archivos de programa\ControlCenter4\BrCtrlCntr.exe (Brother Industries, Ltd.)
      PRC - C:\Archivos de programa\Bluetooth Suite\Ath_CoexAgent.exe (Atheros)
      PRC - C:\Archivos de programa\Bluetooth Suite\BtvStack.exe (Atheros Communications)
      PRC - C:\Archivos de programa\Bluetooth Suite\AthBtTray.exe (Atheros Commnucations)
      PRC - C:\Archivos de programa\Bluetooth Suite\AdminService.exe (Atheros Commnucations)
      PRC - C:\Windows\System32\atieclxx.exe (AMD)
      PRC - C:\Windows\System32\atiesrxx.exe (AMD)
      PRC - C:\Archivos de programa\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Advanced Micro Devices, Inc.)
      PRC - C:\Archivos de programa\Microsoft\BingBar\SeaPort.EXE (Microsoft Corporation)
      PRC - C:\Windows\explorer.exe (Microsoft Corporation)
      PRC - C:\Archivos de programa\CyberLink\YouCam\YCMMirage.exe (CyberLink)
      PRC - C:\Archivos de programa\Realtek\Audio\HDA\RtkNGUI.exe (Realtek Semiconductor)
      PRC - C:\Archivos de programa\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Realsil Microelectronics Inc.)
      PRC - C:\Archivos de programa\Hewlett-Packard\HP On Screen Display\HPOSD.exe (Hewlett-Packard Development Company, L.P.)
      PRC - C:\Archivos de programa\Windows Media Player\wmpnetwk.exe (Microsoft Corporation)
      PRC - C:\Archivos de programa\Kodak\MediaImpression\ArcMonitor.exe (ArcSoft, Inc.)
      PRC - C:\Archivos de programa\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Development Company, L.P.)
      PRC - C:\Archivos de programa\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Hewlett-Packard Development Company, L.P.)
      PRC - C:\Archivos de programa\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ArcSoft Inc.)
      PRC - C:\Archivos de programa\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac (ArcSoft Inc.)
      PRC - C:\Archivos de programa\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe (Hewlett-Packard Company)
      PRC - C:\Archivos de programa\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe (Hewlett-Packard Company)
      PRC - C:\Archivos de programa\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe (Advanced Micro Devices)
      PRC - C:\Archivos de programa\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
      PRC - C:\Archivos de programa\Nuance\PaperPort\pptd40nt.exe (Nuance Communications, Inc.)
      PRC - C:\Archivos de programa\Nuance\PaperPort\PDFProFiltSrvPP.exe (Nuance Communications, Inc.)
      PRC - C:\Archivos de programa\Nuance\PDF Viewer Plus\pdfPro5Hook.exe (Nuance Communications, Inc.)
      PRC - C:\Archivos de programa\Epson Software\FAX Utility\FUFAXSTM.exe (SEIKO EPSON CORPORATION)
      PRC - C:\Archivos de programa\Realtek\Audio\HDA\AERTSrv.exe (Andrea Electronics Corporation)
      PRC - C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (Acresso Corporation)


      ========== Modules (No Company Name) ==========

      MOD - C:\Archivos de programa\Google\Chrome\Application\25.0.1364.152\ppgooglenaclpluginchrome.dll ()
      MOD - C:\Archivos de programa\Google\Chrome\Application\25.0.1364.152\PepperFlash\pepflashplayer.dll ()
      MOD - C:\Archivos de programa\Google\Chrome\Application\25.0.1364.152\pdf.dll ()
      MOD - C:\Archivos de programa\Google\Chrome\Application\25.0.1364.152\libglesv2.dll ()
      MOD - C:\Archivos de programa\Google\Chrome\Application\25.0.1364.152\libegl.dll ()
      MOD - C:\Archivos de programa\Google\Chrome\Application\25.0.1364.152\ffmpegsumo.dll ()
      MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\78967b28f748b8807eaa97c1cb454adc\WindowsFormsIntegration.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\5ecf01964c70e453d71e5d7653912ff9\System.Web.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\cb562e2e4f74ae607f1186f6ec50cec7\System.Windows.Forms.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\77dfcfed5fd5f67d0d3edc545935bb21\System.Core.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\d7d20811a7ce7cc589153648cbb1ce5c\PresentationFramework.Aero.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\90b89f6e8032310e9ac72a309fd49e83\System.Runtime.Remoting.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\ff7c9a4f41f7cccc47e696c11b9f8469\PresentationFramework.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\eead6629e384a5b69f9ae35284b7eeed\System.Drawing.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\19b3d17c3ce0e264c4fb62028161adf7\PresentationCore.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\cf827fe7bc99d9bcf0ba3621054ef527\WindowsBase.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\c1a66b44c4780c039576eaf18f4cd8dc\System.Xml.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\195a77fcc6206f8bb35d419ff2cf0d72\System.Configuration.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System\369f8bdca364e2b4936d18dea582912c\System.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\7150b9136fad5b79e88f6c7f9d3d2c39\mscorlib.ni.dll ()
      MOD - C:\Archivos de programa\Spybot - Search & Destroy 2\snlFileFormats150.bpl ()
      MOD - C:\Archivos de programa\Spybot - Search & Destroy 2\snlThirdParty150.bpl ()
      MOD - C:\Archivos de programa\Spybot - Search & Destroy 2\VirtualTreesDXE150.bpl ()
      MOD - C:\Archivos de programa\Spybot - Search & Destroy 2\JSDialogPack150.bpl ()
      MOD - C:\Archivos de programa\Spybot - Search & Destroy 2\DEC150.bpl ()
      MOD - C:\Archivos de programa\KG Monitor\klgratis.exe ()
      MOD - C:\Archivos de programa\Common Files\Apple\Apple Application Support\zlib1.dll ()
      MOD - C:\Archivos de programa\Common Files\Apple\Apple Application Support\libxml2.dll ()
      MOD - C:\Windows\assembly\GAC_MSIL\PresentationFramework.resources\3.0.0.0_es_31bf3856ad364e35\PresentationFramework.resources.dll ()
      MOD - C:\Windows\assembly\GAC_MSIL\System.Core.resources\3.5.0.0_es_b77a5c561934e089\System.Core.resources.dll ()
      MOD - C:\Windows\assembly\GAC_MSIL\System.resources\2.0.0.0_es_b77a5c561934e089\System.resources.dll ()
      MOD - C:\Windows\assembly\GAC_MSIL\System.Runtime.Remoting.resources\2.0.0.0_es_b77a5c561934e089\System.Runtime.Remoting.resources.dll ()
      MOD - C:\Windows\assembly\GAC_MSIL\hpCASLLibrary\3.0.1.1__67b8d1b5179ba5f8\hpCASLLibrary.dll ()
      MOD - C:\Archivos de programa\ATI Technologies\ATI.ACE\Branding\Branding.dll ()
      MOD - C:\Archivos de programa\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll ()
      MOD - C:\Archivos de programa\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll ()
      MOD - C:\Windows\assembly\GAC_MSIL\System.Windows.Forms.resources\2.0.0.0_es_b77a5c561934e089\System.Windows.Forms.resources.dll ()
      MOD - C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_es_b77a5c561934e089\mscorlib.resources.dll ()
      MOD - C:\Archivos de programa\Hewlett-Packard\HP Wireless Assistant\HardwareAccess.dll ()
      MOD - C:\Archivos de programa\Hewlett-Packard\HP Wireless Assistant\HPCommon.XmlSerializers.dll ()
      MOD - C:\Archivos de programa\Hewlett-Packard\HP Wireless Assistant\HPWA_LogicLayer.dll ()
      MOD - C:\Archivos de programa\Brother\BrUtilities\BrLogAPI.dll ()


      ========== Services (SafeList) ==========

      SRV - (SDWSCService) -- C:\Program Files\Spybot File not found
      SRV - (SDUpdateService) -- C:\Program Files\Spybot File not found
      SRV - (SDScannerService) -- C:\Program Files\Spybot File not found
      SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
      SRV - (NisSrv) -- c:\Archivos de programa\Microsoft Security Client\NisSrv.exe (Microsoft Corporation)
      SRV - (MsMpSvc) -- c:\Archivos de programa\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation)
      SRV - (SkypeUpdate) -- C:\Archivos de programa\Skype\Updater\Updater.exe (Skype Technologies)
      SRV - (AdobeARMservice) -- C:\Archivos de programa\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
      SRV - (MBAMService) -- C:\Archivos de programa\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
      SRV - (MBAMScheduler) -- C:\Archivos de programa\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
      SRV - (HP Support Assistant Service) -- C:\Archivos de programa\Hewlett-Packard\HP Support Framework\HPSA_Service.exe (Hewlett-Packard Company)
      SRV - (fsssvc) -- C:\Archivos de programa\Windows Live\Family Safety\fsssvc.exe (Microsoft Corporation)
      SRV - (wlidsvc) -- C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.)
      SRV - (MyWebFace_5aService) -- C:\Archivos de programa\MyWebFace_5a\bar\1.bin\5abarsvc.exe (COMPANYVERS_NAME)
      SRV - (Updater Service for EazelBar) -- C:\Archivos de programa\EazelBar\ToolbarUpdaterService.exe ()
      SRV - (Atheros Bt&Wlan Coex Agent) -- C:\Archivos de programa\Bluetooth Suite\Ath_CoexAgent.exe (Atheros)
      SRV - (AtherosSvc) -- C:\Archivos de programa\Bluetooth Suite\AdminService.exe (Atheros Commnucations)
      SRV - (AMD External Events Utility) -- C:\Windows\System32\atiesrxx.exe (AMD)
      SRV - (AMD FUEL Service) -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Advanced Micro Devices, Inc.)
      SRV - (BBSvc) -- C:\Archivos de programa\Microsoft\BingBar\BBSvc.EXE (Microsoft Corporation.)
      SRV - (SeaPort) -- C:\Archivos de programa\Microsoft\BingBar\SeaPort.EXE (Microsoft Corporation)
      SRV - (XobniService) -- C:\Archivos de programa\Xobni\XobniService.exe (Xobni Corporation)
      SRV - (IconMan_R) -- C:\Archivos de programa\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Realsil Microelectronics Inc.)
      SRV - (WMPNetworkSvc) -- C:\Archivos de programa\Windows Media Player\wmpnetwk.exe (Microsoft Corporation)
      SRV - (HPWMISVC) -- C:\Archivos de programa\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Hewlett-Packard Development Company, L.P.)
      SRV - (GamesAppService) -- C:\Archivos de programa\WildTangent Games\App\GamesAppService.exe (WildTangent, Inc.)
      SRV - (HP Wireless Assistant Service) -- C:\Archivos de programa\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe (Hewlett-Packard Company)
      SRV - (AMD Reservation Manager) -- C:\Archivos de programa\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe (Advanced Micro Devices)
      SRV - (ACDaemon) -- C:\Archivos de programa\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
      SRV - (PDFProFiltSrvPP) -- C:\Archivos de programa\Nuance\PaperPort\PDFProFiltSrvPP.exe (Nuance Communications, Inc.)
      SRV - (osppsvc) -- C:\Archivos de programa\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation)
      SRV - (ose) -- C:\Archivos de programa\Common Files\microsoft shared\Source Engine\OSE.EXE (Microsoft Corporation)
      SRV - (AERTFilters) -- C:\Archivos de programa\Realtek\Audio\HDA\AERTSrv.exe (Andrea Electronics Corporation)
      SRV - (WinDefend) -- C:\Archivos de programa\Windows Defender\MpSvc.dll (Microsoft Corporation)


      ========== Driver Services (SafeList) ==========

      DRV - (MpKsl1e8ec065) -- c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C42B95B1-21D6-4EFB-8108-C8647392451F}\MpKsl1e8ec065.sys File not found
      DRV - (catchme) -- C:\Users\Adrian\AppData\Local\Temp\catchme.sys File not found
      DRV - (NisDrv) -- C:\Windows\System32\drivers\NisDrvWFP.sys (Microsoft Corporation)
      DRV - (MBAMProtector) -- C:\Windows\System32\drivers\mbam.sys (Malwarebytes Corporation)
      DRV - (RdpVideoMiniport) -- C:\Windows\System32\drivers\rdpvideominiport.sys (Microsoft Corporation)
      DRV - (TsUsbGD) -- C:\Windows\System32\drivers\TsUsbGD.sys (Microsoft Corporation)
      DRV - (TsUsbFlt) -- C:\Windows\System32\drivers\TsUsbFlt.sys (Microsoft Corporation)
      DRV - (athr) -- C:\Windows\System32\drivers\athr.sys (Qualcomm Atheros Communications, Inc.)
      DRV - (BtFilter) -- C:\Windows\System32\drivers\btfilter.sys (Atheros)
      DRV - (BTATH_HCRP) -- C:\Windows\System32\drivers\btath_hcrp.sys (Atheros)
      DRV - (BTATH_RCP) -- C:\Windows\System32\drivers\btath_rcp.sys (Atheros)
      DRV - (BTATH_LWFLT) -- C:\Windows\System32\drivers\btath_lwflt.sys (Atheros)
      DRV - (AthBTPort) -- C:\Windows\System32\drivers\btath_flt.sys (Atheros)
      DRV - (BTATH_A2DP) -- C:\Windows\System32\drivers\btath_a2dp.sys (Atheros)
      DRV - (BTATH_BUS) -- C:\Windows\System32\drivers\btath_bus.sys (Atheros)
      DRV - (amdkmdag) -- C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
      DRV - (amdkmdap) -- C:\Windows\System32\drivers\atikmpag.sys (Advanced Micro Devices, Inc.)
      DRV - (RSPCIESTOR) -- C:\Windows\System32\drivers\RtsPStor.sys (Realtek Semiconductor Corp.)
      DRV - (clwvd) -- C:\Windows\System32\drivers\clwvd.sys (CyberLink Corporation)
      DRV - (usbfilter) -- C:\Windows\System32\drivers\usbfilter.sys (Advanced Micro Devices)
      DRV - (WinUsb) -- C:\Windows\System32\drivers\winusb.sys (Microsoft Corporation)
      DRV - (amd_sata) -- C:\Windows\System32\drivers\amd_sata.sys (Advanced Micro Devices)
      DRV - (amd_xata) -- C:\Windows\System32\drivers\amd_xata.sys (Advanced Micro Devices)
      DRV - (AtiPcie) -- C:\Windows\System32\drivers\AtiPcie.sys (Advanced Micro Devices Inc.)
      DRV - (AtiHdmiService) -- C:\Windows\System32\drivers\AtiHdmi.sys (ATI Technologies, Inc.)
      DRV - (amdiox86) -- C:\Windows\System32\drivers\amdiox86.sys (Advanced Micro Devices)
      DRV - (ss_bmdm) -- C:\Windows\System32\drivers\ss_bmdm.sys (MCCI Corporation)
      DRV - (ss_bbus) -- C:\Windows\System32\drivers\ss_bbus.sys (MCCI)
      DRV - (ss_bmdfl) -- C:\Windows\System32\drivers\ss_bmdfl.sys (MCCI Corporation)
      DRV - (vwifimp) -- C:\Windows\System32\drivers\vwifimp.sys (Microsoft Corporation)
      DRV - (NVENETFD) -- C:\Windows\System32\drivers\nvm62x32.sys (NVIDIA Corporation)
      DRV - (RTL8187) -- C:\Windows\System32\drivers\RTL8187.sys (Realtek Semiconductor Corporation )
      DRV - (Afc) -- C:\Windows\System32\drivers\afc.sys (Arcsoft, Inc.)


      ========== Standard Registry (SafeList) ==========


      ========== Internet Explorer ==========

      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google
      IE - HKLM\..\SearchScopes,DefaultScope =
      IE - HKLM\..\SearchScopes\{366868C2-8044-16A2-854E-59B67727A689}: "URL" = http://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox
      IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
      IE - HKLM\..\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}: "URL" = http://mx.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=CMNTDF
      IE - HKLM\..\SearchScopes\{d3f22a84-2a84-49eb-91e6-5dadaaf0165d}: "URL" = http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?p2=^GR^xdm488^S01576^mx&si=INTL_166110828&ptb=65479877-08FE-4B13-AE85-C7FE60C0588E&ind=2012071111&n=77edc4c7&psa=&st=sb&searchfor={searchTerms}
      IE - HKLM\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://searchfunmoods.com/results.php?f=4&q={searchTerms}&a=ironpub&chnl=ironpub&cd=2XzuyEtN2Y1L1Qzuzy0Czz0EzyzyyEtByCyE0AtB0C0FyByEtN0D0Tzu0StByBtCtN1L2XzutBtFtBtFtDtFtAyEyE&cr=454837710

      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google
      IE - HKCU\..\SearchScopes,DefaultScope = {31EBA568-B462-45CA-A190-E31EEDE0A898}
      IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
      IE - HKCU\..\SearchScopes\{16CC3586-3547-4025-9E2F-F04C365D8B90}: "URL" = http://search.eazel.com/results.php?cat=web&co=&lg=en&q={searchTerms}
      IE - HKCU\..\SearchScopes\{31EBA568-B462-45CA-A190-E31EEDE0A898}: "URL" = http://search.softonic.com/INF00041/tb_v1?q={searchTerms}&SearchSource=4&cc=&r=354
      IE - HKCU\..\SearchScopes\{366868C2-8044-16A2-854E-59B67727A689}: "URL" = http://search.babylon.com/?q={searchTerms}&affID=110823&tt=270912_7a_3912_7&babsrc=SP_ss&mntrId=ba84cf740000000000000aa3c4caf00d
      IE - HKCU\..\SearchScopes\{49E72376-69AF-4BC4-A7CE-D5BC956559BC}: "URL" = http://search.fbdownloader.com/search.php?channel=sfmx202fbdgy16&q={searchTerms}
      IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
      IE - HKCU\..\SearchScopes\{8D71889E-2D25-4332-A78F-6245144D4111}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000YYMX&apn_uid=55E71424-D3BF-4EFC-BC49-D9041BED9183&apn_sauid=69082972-92B9-44E8-8CB6-B3DE6CDC362C
      IE - HKCU\..\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}: "URL" = http://mx.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=CMNTDF
      IE - HKCU\..\SearchScopes\{d3f22a84-2a84-49eb-91e6-5dadaaf0165d}: "URL" = http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?p2=^GR^xdm488^S01576^mx&si=INTL_166110828&ptb=65479877-08FE-4B13-AE85-C7FE60C0588E&ind=2012071111&n=77edc4c7&psa=&st=sb&searchfor={searchTerms}
      IE - HKCU\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox
      IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
      IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

      ========== FireFox ==========

      FF - prefs.js..browser.search.useDBForOrder: true
      FF - prefs.js..browser.startup.homepage: "http://google.com"
      FF - prefs.js..keyword.URL: "https://www.google.com/search?q="
      FF - prefs.js..browser.search.order.1: "(Google)"
      FF - prefs.js..browser.search.defaultenginename: "(Google)"
      FF - prefs.js..browser.search.selectedEngine: "Google"
      FF - prefs.js..browser.search.defaulturl: "www.Google.com"
      FF - user.js - File not found

      FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_11_6_602_171.dll ()
      FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
      FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
      FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=1.6.0_37: C:\Windows\system32\npdeployJava1.dll (Sun Microsystems, Inc.)
      FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
      FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@rim.com/npappworld: C:\Program Files\Research In Motion Limited\BlackBerry App World Browser Plugin\npappworld.dll ()
      FF - HKLM\Software\MozillaPlugins\@RIM.com/WebSLLauncher,version=1.0: C:\Program Files\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ()
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files\WildTangent Games\App\BrowserIntegration\Registered\3\NP_wtapp.dll ()
      FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

      FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{EBD839AE-B08C-4fb7-859B-F54AF16C159F}: C:\Program Files\EazelBar\Firefox [2012/10/20 16:27:40 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\Hewlett-Packard\SmartPrint\QPExtension [2011/01/26 14:27:28 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/12/05 16:42:30 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\[email protected]: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
      FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/12/05 16:42:30 | 000,000,000 | ---D | M]
      FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins

      [2012/09/27 15:19:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Adrian\AppData\Roaming\mozilla\Extensions
      [2012/09/27 15:19:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Adrian\AppData\Roaming\mozilla\Extensions\{718e30fb-e89b-41dd-9da7-e25a45638b28}
      [2013/03/06 13:06:43 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Adrian\AppData\Roaming\mozilla\Firefox\Profiles\yjyxj7ef.default\extensions
      [2012/09/27 15:19:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Adrian\AppData\Roaming\mozilla\Sunbird\Profiles\4lqhifiw.default\extensions
      [2012/12/06 10:48:48 | 000,002,438 | ---- | M] () -- C:\Users\Adrian\AppData\Roaming\mozilla\firefox\profiles\yjyxj7ef.default\searchplugins\fbdownloader_search.xml
      [2012/12/05 16:41:43 | 000,000,000 | ---D | M] (No name found) -- C:\Archivos de programa\Mozilla Firefox\extensions
      [2012/12/05 16:41:43 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Archivos de programa\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
      [2012/12/05 16:41:43 | 000,000,000 | ---D | M] (Java Console) -- C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}
      File not found (No name found) -- C:\USERS\ADRIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YJYXJ7EF.DEFAULT\EXTENSIONS\[email protected]
      [2012/12/05 16:42:29 | 000,262,112 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
      [2012/09/04 15:31:01 | 000,002,465 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
      [2012/07/11 15:54:28 | 000,002,456 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\mercadolibre-mx.xml
      [2012/07/11 15:54:28 | 000,001,178 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-es.xml
      [2012/07/11 15:54:28 | 000,001,102 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-mx.xml

      ========== Chrome ==========

      CHR - default_search_provider: Google (Enabled)
      CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
      CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter}
      CHR - homepage: Google
      CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\25.0.1364.152\PepperFlash\pepflashplayer.dll
      CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
      CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\25.0.1364.152\ppGoogleNaClPluginChrome.dll
      CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\25.0.1364.152\pdf.dll
      CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin2.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin3.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin4.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin5.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin6.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin7.dll
      CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
      CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL
      CHR - plugin: RIM Handheld Application Loader (Enabled) = C:\Program Files\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll
      CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
      CHR - plugin: Java(TM) Platform SE 6 U37 (Enabled) = C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll
      CHR - plugin: BlackBerry AppWorld (Enabled) = C:\Program Files\Research In Motion Limited\BlackBerry App World Browser Plugin\npappworld.dll
      CHR - plugin: Photo Gallery (Enabled) = C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
      CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
      CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32_11_6_602_171.dll
      CHR - plugin: Java Deployment Toolkit 6.0.370.6 (Enabled) = C:\Windows\system32\npdeployJava1.dll
      CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll

      O1 HOSTS File: ([2013/03/05 23:33:52 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
      O1 - Hosts: 127.0.0.1 localhost
      O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Archivos de programa\Spybot - Search & Destroy 2\SDHelper.dll (Safer-Networking Ltd.)
      O2 - BHO: (PlusIEEventHelper Class) - {551A852F-39A6-44A7-9C13-AFBEC9185A9D} - C:\Archivos de programa\Nuance\PDF Viewer Plus\bin\PlusIEContextMenu.dll (Zeon Corporation)
      O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Archivos de programa\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
      O2 - BHO: (CIESpeechBHO Class) - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Archivos de programa\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
      O2 - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
      O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Archivos de programa\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
      O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Archivos de programa\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
      O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
      O2 - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Archivos de programa\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
      O2 - BHO: (EazelBar Helper) - {FE478DC2-E4AD-4197-8F80-5E456BEBC57F} - C:\Archivos de programa\EazelBar\Toolbar32.dll ()
      O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
      O3 - HKLM\..\Toolbar: (EazelBar) - {EBD839AE-B08C-4fb7-859B-F54AF16C159F} - C:\Archivos de programa\EazelBar\Toolbar32.dll ()
      O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
      O4 - HKLM..\Run: [ArcSoft Connection Service] C:\Archivos de programa\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ArcSoft Inc.)
      O4 - HKLM..\Run: [ArcSoft MediaImpression Monitor] C:\Archivos de programa\Kodak\MediaImpression\ArcMonitor.exe (ArcSoft, Inc.)
      O4 - HKLM..\Run: [AthBtTray] C:\Program Files\Bluetooth Suite\AthBtTray.exe (Atheros Commnucations)
      O4 - HKLM..\Run: [AtherosBtStack] C:\Program Files\Bluetooth Suite\BtvStack.exe (Atheros Communications)
      O4 - HKLM..\Run: [BrStsMon00] C:\Program Files\Browny02\Brother\BrStMonW.exe (Brother Industries, Ltd.)
      O4 - HKLM..\Run: [ControlCenter4] C:\Program Files\ControlCenter4\BrCcBoot.exe (Brother Industries, Ltd.)
      O4 - HKLM..\Run: [FUFAXSTM] C:\Program Files\Epson Software\FAX Utility\FUFAXSTM.exe (SEIKO EPSON CORPORATION)
      O4 - HKLM..\Run: [HP Quick Launch] C:\Archivos de programa\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Development Company, L.P.)
      O4 - HKLM..\Run: [HPOSD] C:\Archivos de programa\Hewlett-Packard\HP On Screen Display\HPOSD.exe (Hewlett-Packard Development Company, L.P.)
      O4 - HKLM..\Run: [HPWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe ()
      O4 - HKLM..\Run: [IndexSearch] C:\Program Files\Nuance\PaperPort\IndexSearch.exe (Nuance Communications, Inc.)
      O4 - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
      O4 - HKLM..\Run: [PaperPort PTD] C:\Program Files\Nuance\PaperPort\pptd40nt.exe (Nuance Communications, Inc.)
      O4 - HKLM..\Run: [PDF5 Registry Controller] C:\Archivos de programa\Nuance\PDF Viewer Plus\RegistryController.exe (Nuance Communications, Inc.)
      O4 - HKLM..\Run: [PDFHook] C:\Archivos de programa\Nuance\PDF Viewer Plus\pdfPro5Hook.exe (Nuance Communications, Inc.)
      O4 - HKLM..\Run: [PPort12reminder] C:\Program Files\Nuance\PaperPort\Ereg\Ereg.exe (Nuance Communications, Inc.)
      O4 - HKLM..\Run: [RIMBBLaunchAgent.exe] C:\Archivos de programa\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe (Research In Motion Limited)
      O4 - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe (Realtek Semiconductor)
      O4 - HKLM..\Run: [SDTray] C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.)
      O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
      O4 - HKCU..\Run: [HP Officejet Pro 8600 (NET)] C:\Program Files\HP\HP Officejet Pro 8600\Bin\ScanToPCActivationApp.exe (Hewlett-Packard Co.)
      O4 - HKCU..\Run: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (Acresso Corporation)
      O4 - HKCU..\Run: [klgratis.exe] C:\Archivos de programa\KG Monitor\klgratis.exe ()
      O4 - HKCU..\Run: [Spybot-S&D Cleaning] C:\Program Files\Spybot - Search & Destroy 2\SDCleaner.exe (Safer-Networking Ltd.)
      O4 - Startup: C:\Users\Adrian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Adrian\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
      O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
      O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
      O8 - Extra context menu item: &Enviar a OneNote - C:\Archivos de programa\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
      O8 - Extra context menu item: E&xportar a Microsoft Excel - C:\Archivos de programa\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation)
      O9 - Extra Button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Archivos de programa\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
      O9 - Extra 'Tools' menuitem : @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Archivos de programa\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
      O9 - Extra Button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Archivos de programa\Hewlett-Packard\SmartPrint\smartprintsetup.exe (Hewlett-Packard)
      O9 - Extra 'Tools' menuitem : SmartPrint - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Archivos de programa\Hewlett-Packard\SmartPrint\smartprintsetup.exe (Hewlett-Packard)
      O9 - Extra Button: @C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Archivos de programa\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
      O9 - Extra 'Tools' menuitem : @C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Archivos de programa\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
      O9 - Extra Button: Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Archivos de programa\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
      O9 - Extra 'Tools' menuitem : &Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Archivos de programa\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
      O9 - Extra 'Tools' menuitem : Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Archivos de programa\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
      O9 - Extra Button: Notas &vinculadas de OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Archivos de programa\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
      O9 - Extra 'Tools' menuitem : Notas &vinculadas de OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Archivos de programa\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
      O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Archivos de programa\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
      O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Archivos de programa\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
      O9 - Extra Button: @C:\Program Files\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files\Evernote\Evernote\EvernoteIE.dll (Evernote Corp., 333 W Evelyn Ave. Mountain View, CA 94041)
      O9 - Extra 'Tools' menuitem : @C:\Program Files\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files\Evernote\Evernote\EvernoteIE.dll (Evernote Corp., 333 W Evelyn Ave. Mountain View, CA 94041)
      O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Archivos de programa\Spybot - Search & Destroy 2\SDHelper.dll (Safer-Networking Ltd.)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Archivos de programa\Bonjour\mdnsNSP.dll (Apple Inc.)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Archivos de programa\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
      O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_37)
      O16 - DPF: {CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_37)
      O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_37)
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{87F33759-B4EB-4FD4-87AA-74DCE7D0CF4F}: DhcpNameServer = 10.0.140.141 10.0.140.135
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E7828DE8-5720-4A4A-AE02-64F425783315}: DhcpNameServer = 192.168.1.254
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{EF3349D9-FE20-4308-B8E2-8621FE0FD464}: NameServer = 200.33.146.241,200.33.146.249
      O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Archivos de programa\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
      O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Archivos de programa\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
      O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Archivos de programa\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
      O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Archivos de programa\Common Files\Skype\Skype4COM.dll (Skype Technologies)
      O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Archivos de programa\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
      O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Archivos de programa\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
      O18 - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Archivos de programa\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll (Microsoft Corporation)
      O18 - Protocol\Filter\text/xml {807573E5-5146-11D5-A672-00B0D022E945} - C:\Archivos de programa\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL (Microsoft Corporation)
      O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
      O20 - Winlogon\Notify\SDWinLogon: DllName - (SDWinLogon.dll) - File not found
      O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O32 - HKLM CDRom: AutoRun - 1
      O32 - AutoRun File - [2009/06/10 15:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
      O34 - HKLM BootExecute: (autocheck autochk *)
      O35 - HKLM\..comfile [open] -- "%1" %*
      O35 - HKLM\..exefile [open] -- "%1" %*
      O37 - HKLM\...com [@ = ComFile] -- "%1" %*
      O37 - HKLM\...exe [@ = exefile] -- "%1" %*
      O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
      O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
      O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)


      NetSvcs: FastUserSwitchingCompatibility - File not found
      NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
      NetSvcs: Nla - File not found
      NetSvcs: Ntmssvc - File not found
      NetSvcs: NWCWorkstation - File not found
      NetSvcs: Nwsapagent - File not found
      NetSvcs: SRService - File not found
      NetSvcs: WmdmPmSp - File not found
      NetSvcs: LogonHours - File not found
      NetSvcs: PCAudit - File not found
      NetSvcs: helpsvc - File not found
      NetSvcs: uploadmgr - File not found

      CREATERESTOREPOINT
      Restore point Set: OTL Restore Point

      ========== Files/Folders - Created Within 30 Days ==========

      [2013/03/06 12:11:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
      [2013/03/06 12:11:47 | 000,015,224 | ---- | C] (Safer Networking Limited) -- C:\Windows\System32\sdnclean.exe
      [2013/03/06 12:11:43 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy 2
      [2013/03/06 11:36:30 | 000,000,000 | ---D | C] -- C:\Users\Adrian\Doctor Web
      [2013/03/05 23:53:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
      [2013/03/05 23:53:15 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
      [2013/03/05 23:37:24 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
      [2013/03/05 23:37:20 | 000,000,000 | ---D | C] -- C:\Windows\temp
      [2013/03/05 23:31:51 | 000,000,000 | ---D | C] -- C:\Users\Adrian\AppData\Local\temp
      [2013/03/05 23:18:18 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
      [2013/03/05 23:18:18 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
      [2013/03/05 23:18:18 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
      [2013/03/05 23:05:06 | 000,000,000 | ---D | C] -- C:\Qoobox
      [2013/03/05 23:04:37 | 000,000,000 | ---D | C] -- C:\Windows\erdnt
      [2013/03/05 18:03:31 | 000,000,000 | ---D | C] -- C:\Users\Adrian\AppData\Roaming\Malwarebytes
      [2013/03/05 17:59:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
      [2013/03/05 17:59:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
      [2013/03/05 17:59:35 | 000,021,104 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
      [2013/03/05 17:59:35 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
      [2013/02/05 10:34:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
      [2013/02/05 10:34:39 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype
      [2013/02/04 14:33:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Synaptics
      [1 C:\Program Files\*.tmp files -> C:\Program Files\*.tmp -> ]

      ========== Files - Modified Within 30 Days ==========

      [2013/03/06 13:27:00 | 000,001,024 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
      [2013/03/06 13:27:00 | 000,001,020 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
      [2013/03/06 13:15:32 | 000,016,480 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
      [2013/03/06 13:15:32 | 000,016,480 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
      [2013/03/06 13:12:54 | 000,749,132 | ---- | M] () -- C:\Windows\System32\perfh00A.dat
      [2013/03/06 13:12:54 | 000,655,100 | ---- | M] () -- C:\Windows\System32\perfh009.dat
      [2013/03/06 13:12:54 | 000,159,170 | ---- | M] () -- C:\Windows\System32\perfc00A.dat
      [2013/03/06 13:12:54 | 000,121,972 | ---- | M] () -- C:\Windows\System32\perfc009.dat
      [2013/03/06 13:07:54 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
      [2013/03/06 13:07:51 | 1405,276,160 | -HS- | M] () -- C:\hiberfil.sys
      [2013/03/06 13:06:49 | 000,000,097 | ---- | M] () -- C:\Windows\DeleteOnReboot.bat
      [2013/03/06 12:11:55 | 000,002,123 | ---- | M] () -- C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
      [2013/03/06 11:41:00 | 000,000,838 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
      [2013/03/05 23:54:58 | 000,225,950 | ---- | M] () -- C:\Users\Adrian\Documents\cc_20130305_235452.reg
      [2013/03/05 23:53:20 | 000,000,969 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
      [2013/03/05 23:33:52 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts
      [2013/03/05 17:59:45 | 000,001,071 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
      [2013/03/05 17:50:45 | 000,000,324 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForAdrian.job
      [2013/03/04 14:03:51 | 000,002,129 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
      [2013/03/01 10:27:06 | 000,001,912 | ---- | M] () -- C:\Windows\epplauncher.mif
      [2013/02/27 19:34:47 | 000,296,504 | ---- | M] () -- C:\Users\Adrian\Documents\Scan0001.pdf
      [2013/02/27 18:26:11 | 000,011,776 | ---- | M] () -- C:\Users\Adrian\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
      [2013/02/16 12:40:23 | 000,410,416 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
      [1 C:\Program Files\*.tmp files -> C:\Program Files\*.tmp -> ]

      ========== Files Created - No Company Name ==========

      [2013/03/06 13:06:38 | 000,000,097 | ---- | C] () -- C:\Windows\DeleteOnReboot.bat
      [2013/03/06 12:11:55 | 000,002,135 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
      [2013/03/06 12:11:55 | 000,002,123 | ---- | C] () -- C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
      [2013/03/05 23:54:55 | 000,225,950 | ---- | C] () -- C:\Users\Adrian\Documents\cc_20130305_235452.reg
      [2013/03/05 23:53:20 | 000,000,969 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
      [2013/03/05 23:18:18 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
      [2013/03/05 23:18:18 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
      [2013/03/05 23:18:18 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
      [2013/03/05 23:18:18 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
      [2013/03/05 23:18:18 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
      [2013/03/05 17:59:45 | 000,001,071 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
      [2013/02/27 19:34:47 | 000,296,504 | ---- | C] () -- C:\Users\Adrian\Documents\Scan0001.pdf
      [2013/01/28 12:23:17 | 000,000,057 | ---- | C] () -- C:\ProgramData\Ament.ini
      [2012/09/23 13:00:04 | 011,042,816 | ---- | C] ( ) -- C:\Windows\sspro.exe
      [2012/09/23 12:59:47 | 000,003,532 | ---- | C] () -- C:\Windows\memgprep.dll
      [2012/09/23 12:59:47 | 000,000,326 | ---- | C] () -- C:\Windows\km32hlpr.dll
      [2012/09/23 12:59:47 | 000,000,000 | ---- | C] () -- C:\Windows\wnsperf32.dll
      [2012/09/23 12:59:47 | 000,000,000 | ---- | C] () -- C:\Windows\stdensrv.dll
      [2012/09/23 12:59:47 | 000,000,000 | ---- | C] () -- C:\Windows\javexisb.dll
      [2012/09/23 12:59:47 | 000,000,000 | ---- | C] () -- C:\Windows\javexisa.dll
      [2012/09/23 12:59:47 | 000,000,000 | ---- | C] () -- C:\Windows\cr2gui32.dll
      [2012/06/21 16:33:01 | 000,045,056 | ---- | C] () -- C:\Windows\System32\BRTCPCON.DLL
      [2012/06/21 16:32:57 | 000,000,114 | ---- | C] () -- C:\Windows\System32\BRLMW03A.INI
      [2012/06/21 16:32:56 | 000,000,050 | ---- | C] () -- C:\Windows\System32\BRADM10A.DAT
      [2012/03/14 12:21:51 | 000,073,220 | ---- | C] () -- C:\Windows\System32\EPPICPrinterDB.dat
      [2012/03/14 12:21:51 | 000,001,140 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_PT.dat
      [2012/03/14 12:21:51 | 000,001,140 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_BP.dat
      [2012/03/14 12:21:51 | 000,001,137 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_ES.dat
      [2012/03/14 12:21:51 | 000,001,130 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_FR.dat
      [2012/03/14 12:21:51 | 000,001,130 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_CF.dat
      [2012/03/14 12:21:51 | 000,001,104 | ---- | C] () -- C:\Windows\System32\EPPICPresetData_EN.dat
      [2012/03/14 12:21:51 | 000,000,097 | ---- | C] () -- C:\Windows\System32\PICSDK.ini
      [2012/03/14 12:21:50 | 000,031,053 | ---- | C] () -- C:\Windows\System32\EPPICPattern131.dat
      [2012/03/14 12:21:50 | 000,029,114 | ---- | C] () -- C:\Windows\System32\EPPICPattern1.dat
      [2012/03/14 12:21:50 | 000,027,417 | ---- | C] () -- C:\Windows\System32\EPPICPattern121.dat
      [2012/03/14 12:21:50 | 000,021,021 | ---- | C] () -- C:\Windows\System32\EPPICPattern3.dat
      [2012/03/14 12:21:50 | 000,015,670 | ---- | C] () -- C:\Windows\System32\EPPICPattern5.dat
      [2012/03/14 12:21:50 | 000,013,280 | ---- | C] () -- C:\Windows\System32\EPPICPattern2.dat
      [2012/03/14 12:21:50 | 000,010,673 | ---- | C] () -- C:\Windows\System32\EPPICPattern4.dat
      [2012/03/14 12:21:50 | 000,004,943 | ---- | C] () -- C:\Windows\System32\EPPICPattern6.dat
      [2012/03/14 12:20:25 | 000,000,100 | ---- | C] () -- C:\Windows\EPSOTX320F.ini
      [2012/02/25 14:39:21 | 000,011,776 | ---- | C] () -- C:\Users\Adrian\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
      [2011/09/15 02:11:16 | 001,048,576 | ---- | C] () -- C:\Windows\System32\syndata.bin
      [2011/06/10 06:34:52 | 000,080,416 | ---- | C] () -- C:\Windows\System32\RtNicProp32.dll
      [2011/05/19 13:44:10 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
      [2011/05/19 13:36:22 | 000,000,712 | ---- | C] () -- C:\Windows\System32\drivers\RTEQEX0.dat
      [2011/05/19 13:36:22 | 000,000,176 | ---- | C] () -- C:\Windows\System32\drivers\RTHDAEQ0.dat
      [2011/04/27 13:20:28 | 000,749,132 | ---- | C] () -- C:\Windows\System32\perfh00A.dat
      [2011/04/27 13:20:28 | 000,341,432 | ---- | C] () -- C:\Windows\System32\perfi00A.dat
      [2011/04/27 13:20:28 | 000,159,170 | ---- | C] () -- C:\Windows\System32\perfc00A.dat
      [2011/04/27 13:20:28 | 000,041,390 | ---- | C] () -- C:\Windows\System32\perfd00A.dat
      [2011/04/27 03:56:28 | 000,000,211 | ---- | C] () -- C:\Windows\System32\HPWA.ini
      [2011/04/13 05:50:32 | 000,246,804 | ---- | C] () -- C:\Windows\System32\drivers\AtherosBt.bin

      ========== ZeroAccess Check ==========

      [2009/07/13 22:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

      [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

      [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
      "" = %SystemRoot%\system32\shell32.dll -- [2012/06/08 22:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
      "" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 15:29:20 | 000,606,208 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
      "" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/13 19:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Both

      ========== LOP Check ==========

      [2012/03/28 09:49:13 | 000,000,000 | ---D | M] -- C:\Users\Adrian\AppData\Roaming\Blackberry Desktop
      [2012/06/21 17:58:33 | 000,000,000 | ---D | M] -- C:\Users\Adrian\AppData\Roaming\ControlCenter4
      [2012/04/26 21:34:30 | 000,000,000 | ---D | M] -- C:\Users\Adrian\AppData\Roaming\DocumentsToGoDesktop
      [2013/03/06 13:08:45 | 000,000,000 | ---D | M] -- C:\Users\Adrian\AppData\Roaming\Dropbox
      [2012/03/14 12:22:33 | 000,000,000 | ---D | M] -- C:\Users\Adrian\AppData\Roaming\Epson
      [2012/12/01 22:17:51 | 000,000,000 | ---D | M] -- C:\Users\Adrian\AppData\Roaming\ESET
      [2012/09/18 19:00:09 | 000,000,000 | ---D | M] -- C:\Users\Adrian\AppData\Roaming\KG Monitor
      [2012/03/21 12:49:11 | 000,000,000 | ---D | M] -- C:\Users\Adrian\AppData\Roaming\Namco
      [2012/06/27 14:08:01 | 000,000,000 | ---D | M] -- C:\Users\Adrian\AppData\Roaming\Nuance
      [2012/09/28 12:38:34 | 000,000,000 | ---D | M] -- C:\Users\Adrian\AppData\Roaming\ooVoo Details
      [2012/10/29 19:58:08 | 000,000,000 | ---D | M] -- C:\Users\Adrian\AppData\Roaming\PDFReaderPackages
      [2012/02/25 14:27:35 | 000,000,000 | ---D | M] -- C:\Users\Adrian\AppData\Roaming\Research In Motion
      [2012/02/14 12:59:33 | 000,000,000 | ---D | M] -- C:\Users\Adrian\AppData\Roaming\Synaptics
      [2012/12/10 23:42:15 | 000,000,000 | ---D | M] -- C:\Users\Adrian\AppData\Roaming\Systweak
      [2012/02/25 13:39:30 | 000,000,000 | ---D | M] -- C:\Users\Adrian\AppData\Roaming\TeamViewer
      [2012/12/06 10:22:54 | 000,000,000 | ---D | M] -- C:\Users\Adrian\AppData\Roaming\Thunderbird
      [2012/08/23 12:02:52 | 000,000,000 | ---D | M] -- C:\Users\Adrian\AppData\Roaming\WildTangent
      [2012/10/20 16:52:20 | 000,000,000 | ---D | M] -- C:\Users\Adrian\AppData\Roaming\Windows Live Writer
      [2012/06/27 14:08:11 | 000,000,000 | ---D | M] -- C:\Users\Adrian\AppData\Roaming\Zeon

      ========== Purity Check ==========



      ========== Custom Scans ==========

      < %SYSTEMDRIVE%\*.* >
      [2013/03/06 13:06:49 | 000,043,803 | ---- | M] () -- C:\AdwCleaner[S1].txt
      [2012/12/06 10:23:20 | 000,000,423 | ---- | M] () -- C:\AT-Cuarentena
      [2013/03/06 12:40:55 | 000,019,211 | ---- | M] () -- C:\AT-Destroyer.txt
      [2009/06/10 15:42:20 | 000,000,024 | ---- | M] () -- C:\autoexec.bat
      [2010/11/20 15:29:06 | 000,383,786 | RHS- | M] () -- C:\bootmgr
      [2012/10/11 16:23:18 | 000,000,078 | ---- | M] () -- C:\ChromeHPLog.txt
      [2013/03/05 23:37:19 | 000,028,404 | ---- | M] () -- C:\ComboFix.txt
      [2009/06/10 15:42:20 | 000,000,010 | ---- | M] () -- C:\config.sys
      [2007/11/07 08:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1028.txt
      [2007/11/07 08:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1031.txt
      [2007/11/07 08:00:40 | 000,010,134 | ---- | M] () -- C:\eula.1033.txt
      [2007/11/07 08:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1036.txt
      [2007/11/07 08:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1040.txt
      [2007/11/07 08:00:40 | 000,000,118 | ---- | M] () -- C:\eula.1041.txt
      [2007/11/07 08:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1042.txt
      [2007/11/07 08:00:40 | 000,017,734 | ---- | M] () -- C:\eula.2052.txt
      [2007/11/07 08:00:40 | 000,017,734 | ---- | M] () -- C:\eula.3082.txt
      [2007/11/07 08:00:40 | 000,001,110 | ---- | M] () -- C:\globdata.ini
      [2013/03/06 13:07:51 | 1405,276,160 | -HS- | M] () -- C:\hiberfil.sys
      [2007/11/07 08:00:40 | 000,000,843 | ---- | M] () -- C:\install.ini
      [2007/11/07 08:03:18 | 000,076,304 | ---- | M] (Microsoft Corporation) -- C:\install.res.1028.dll
      [2007/11/07 08:03:18 | 000,096,272 | ---- | M] (Microsoft Corporation) -- C:\install.res.1031.dll
      [2007/11/07 08:03:18 | 000,091,152 | ---- | M] (Microsoft Corporation) -- C:\install.res.1033.dll
      [2007/11/07 08:03:18 | 000,097,296 | ---- | M] (Microsoft Corporation) -- C:\install.res.1036.dll
      [2007/11/07 08:03:18 | 000,095,248 | ---- | M] (Microsoft Corporation) -- C:\install.res.1040.dll
      [2007/11/07 08:03:18 | 000,081,424 | ---- | M] (Microsoft Corporation) -- C:\install.res.1041.dll
      [2007/11/07 08:03:18 | 000,079,888 | ---- | M] (Microsoft Corporation) -- C:\install.res.1042.dll
      [2007/11/07 08:03:18 | 000,075,792 | ---- | M] (Microsoft Corporation) -- C:\install.res.2052.dll
      [2007/11/07 08:03:18 | 000,096,272 | ---- | M] (Microsoft Corporation) -- C:\install.res.3082.dll
      [2012/09/28 08:30:30 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
      [2012/09/28 08:30:30 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
      [2013/03/06 13:07:51 | 1873,702,912 | -HS- | M] () -- C:\pagefile.sys
      [2007/11/07 08:00:40 | 000,005,686 | ---- | M] () -- C:\vcredist.bmp
      [2007/11/07 08:09:22 | 001,442,522 | ---- | M] () -- C:\VC_RED.cab
      [2007/11/07 08:12:28 | 000,232,960 | ---- | M] () -- C:\VC_RED.MSI

      < End of report >

    6. #6
      Moderador Gral.
      Avatar de @Leosolari
      Registrado
      jun 2007
      Ubicación
      Argentina
      Mensajes
      58.637

      Re: www_getwindowinfo no puedo eliminarlo

      Hola de Nuevo



      Desinstalà completamente Google Chrome, con todas sus configuraciones y preferencias.



      Ejecutá OTL.exe


      Copiá y Pegá el código que está dentro del recuadro de abajo en la sección Análisis Personalizado / Código de Reparación



      :OTL
      SRV - (SDWSCService) -- C:\Program Files\Spybot File not found
      SRV - (SDUpdateService) -- C:\Program Files\Spybot File not found
      SRV - (SDScannerService) -- C:\Program Files\Spybot File not found
      IE - HKLM\..\SearchScopes\{d3f22a84-2a84-49eb-91e6-5dadaaf0165d}: "URL" = http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?p2=^GR^xdm488^S01576^mx&si=INTL_166110828&ptb=65479877-08FE-4B13-AE85-C7FE60C0588E&ind=2012071111&n=77edc4c7&psa=&st=sb&searchfor={searchTerms}
      IE - HKLM\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://searchfunmoods.com/results.php?f=4&q={searchTerms}&a=ironpub&chnl=ironpub&cd=2XzuyEtN2Y1L1Qzuzy0Czz0EzyzyyEtByCyE0AtB0C0FyByEtN0D0Tzu0StByBtCtN1L2XzutBtFtBtFtDtFtAyEyE&cr=454837710
      IE - HKCU\..\SearchScopes\{16CC3586-3547-4025-9E2F-F04C365D8B90}: "URL" = http://search.eazel.com/results.php?cat=web&co=&lg=en&q={searchTerms}
      IE - HKCU\..\SearchScopes\{31EBA568-B462-45CA-A190-E31EEDE0A898}: "URL" = http://search.softonic.com/INF00041/tb_v1?q={searchTerms}&SearchSource=4&cc=&r=354
      IE - HKCU\..\SearchScopes\{366868C2-8044-16A2-854E-59B67727A689}: "URL" = http://search.babylon.com/?q={searchTerms}&affID=110823&tt=270912_7a_3912_7&babsrc=SP_ss&mntrId=ba84cf740000000000000aa3c4caf00d
      IE - HKCU\..\SearchScopes\{49E72376-69AF-4BC4-A7CE-D5BC956559BC}: "URL" = http://search.fbdownloader.com/search.php?channel=sfmx202fbdgy16&q={searchTerms}
      IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
      IE - HKCU\..\SearchScopes\{8D71889E-2D25-4332-A78F-6245144D4111}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000YYMX&apn_uid=55E71424-D3BF-4EFC-BC49-D9041BED9183&apn_sauid=69082972-92B9-44E8-8CB6-B3DE6CDC362C
      IE - HKCU\..\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}: "URL" = http://mx.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=CMNTDF
      IE - HKCU\..\SearchScopes\{d3f22a84-2a84-49eb-91e6-5dadaaf0165d}: "URL" = http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?p2=^GR^xdm488^S01576^mx&si=INTL_166110828&ptb=65479877-08FE-4B13-AE85-C7FE60C0588E&ind=2012071111&n=77edc4c7&psa=&st=sb&searchfor={searchTerms}
      FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
      FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files\WildTangent Games\App\BrowserIntegration\Registered\3\NP_wtapp.dll ()
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{EBD839AE-B08C-4fb7-859B-F54AF16C159F}: C:\Program Files\EazelBar\Firefox [2012/10/20 16:27:40 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\Hewlett-Packard\SmartPrint\QPExtension [2011/01/26 14:27:28 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/12/05 16:42:30 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
      FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/12/05 16:42:30 | 000,000,000 | ---D | M]
      FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
      [2012/09/27 15:19:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Adrian\AppData\Roaming\mozilla\Extensions
      [2012/09/27 15:19:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Adrian\AppData\Roaming\mozilla\Extensions\{718e30fb-e89b-41dd-9da7-e25a45638b28}
      [2013/03/06 13:06:43 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Adrian\AppData\Roaming\mozilla\Firefox\Profiles\yjyxj7ef.default\extensions
      [2012/09/27 15:19:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Adrian\AppData\Roaming\mozilla\Sunbird\Profiles\4lqhifiw.default\extensions
      [2012/12/06 10:48:48 | 000,002,438 | ---- | M] () -- C:\Users\Adrian\AppData\Roaming\mozilla\firefox\profiles\yjyxj7ef.default\searchplugins\fbdownloader_search.xml
      [2012/12/05 16:41:43 | 000,000,000 | ---D | M] (No name found) -- C:\Archivos de programa\Mozilla Firefox\extensions
      [2012/12/05 16:41:43 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Archivos de programa\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
      File not found (No name found) -- C:\USERS\ADRIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YJYXJ7EF.DEFAULT\EXTENSIONS\[email protected]
      CHR - default_search_provider: Google (Enabled)
      CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
      CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter}
      CHR - homepage: Google
      CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\25.0.1364.152\PepperFlash\pepflashplayer.dll
      CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
      CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\25.0.1364.152\ppGoogleNaClPluginChrome.dll
      CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\25.0.1364.152\pdf.dll
      CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin2.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin3.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin4.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin5.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin6.dll
      CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin7.dll
      CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
      CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL
      CHR - plugin: RIM Handheld Application Loader (Enabled) = C:\Program Files\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll
      CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
      CHR - plugin: Java(TM) Platform SE 6 U37 (Enabled) = C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll
      CHR - plugin: BlackBerry AppWorld (Enabled) = C:\Program Files\Research In Motion Limited\BlackBerry App World Browser Plugin\npappworld.dll
      CHR - plugin: Photo Gallery (Enabled) = C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
      CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
      CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32_11_6_602_171.dll
      CHR - plugin: Java Deployment Toolkit 6.0.370.6 (Enabled) = C:\Windows\system32\npdeployJava1.dll
      CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll
      O2 - BHO: (EazelBar Helper) - {FE478DC2-E4AD-4197-8F80-5E456BEBC57F} - C:\Archivos de programa\EazelBar\Toolbar32.dll ()
      O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
      O3 - HKLM\..\Toolbar: (EazelBar) - {EBD839AE-B08C-4fb7-859B-F54AF16C159F} - C:\Archivos de programa\EazelBar\Toolbar32.dll ()
      :Files
      ipconfig /flushdns /c
      C:\Archivos de programa\EazelBar
      :Commands
      [PURITY]
      [EMPTYTEMP]
      [EMPTYFLASH]
      [RESETHOSTS]

      Presioná el Boton Reparar para lanzar la eliminación. Presionas OK.

      OTL va a Reiniciar el ordenador para completar la eliminación.


      Guardas el nuevo reporte generado. Lo copias y pegas en Tu próxima respuesta y nos comentas como sigue el ordenador ahora.





      Saludos
      Síguenos en Twitter y hazte nuestro amigo en Facebook.

    7. #7
      Usuario Avatar de anmerob
      Registrado
      nov 2012
      Ubicación
      chiapas, mexico
      Mensajes
      8

      Re: www_getwindowinfo no puedo eliminarlo

      aqui esta el reporte, pero me sigue abriendo la ventana del IE con el getwindowinfo T_T

      All processes killed
      ========== OTL ==========
      Service SDWSCService stopped successfully!
      Service SDWSCService deleted successfully!
      File C:\Program Files\Spybot File not found not found.
      Service SDUpdateService stopped successfully!
      Service SDUpdateService deleted successfully!
      File C:\Program Files\Spybot File not found not found.
      Service SDScannerService stopped successfully!
      Service SDScannerService deleted successfully!
      File C:\Program Files\Spybot File not found not found.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{d3f22a84-2a84-49eb-91e6-5dadaaf0165d}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d3f22a84-2a84-49eb-91e6-5dadaaf0165d}\ not found.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}\ not found.
      Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{16CC3586-3547-4025-9E2F-F04C365D8B90}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16CC3586-3547-4025-9E2F-F04C365D8B90}\ not found.
      Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{31EBA568-B462-45CA-A190-E31EEDE0A898}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31EBA568-B462-45CA-A190-E31EEDE0A898}\ not found.
      Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{366868C2-8044-16A2-854E-59B67727A689}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{366868C2-8044-16A2-854E-59B67727A689}\ not found.
      Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{49E72376-69AF-4BC4-A7CE-D5BC956559BC}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49E72376-69AF-4BC4-A7CE-D5BC956559BC}\ not found.
      Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ not found.
      Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{8D71889E-2D25-4332-A78F-6245144D4111}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8D71889E-2D25-4332-A78F-6245144D4111}\ not found.
      Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}\ not found.
      Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{d3f22a84-2a84-49eb-91e6-5dadaaf0165d}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d3f22a84-2a84-49eb-91e6-5dadaaf0165d}\ not found.
      Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@Apple.com/iTunes,version=\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0\ deleted successfully.
      C:\Program Files\WildTangent Games\App\BrowserIntegration\Registered\3\NP_wtapp.dll moved successfully.
      Registry value HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{EBD839AE-B08C-4fb7-859B-F54AF16C159F} deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EBD839AE-B08C-4fb7-859B-F54AF16C159F}\ deleted successfully.
      C:\Program Files\EazelBar\Firefox\defaults\preferences folder moved successfully.
      C:\Program Files\EazelBar\Firefox\defaults folder moved successfully.
      C:\Program Files\EazelBar\Firefox\chrome\skin folder moved successfully.
      C:\Program Files\EazelBar\Firefox\chrome\content\Configuration\skin folder moved successfully.
      C:\Program Files\EazelBar\Firefox\chrome\content\Configuration\images folder moved successfully.
      C:\Program Files\EazelBar\Firefox\chrome\content\Configuration\banners folder moved successfully.
      C:\Program Files\EazelBar\Firefox\chrome\content\Configuration folder moved successfully.
      C:\Program Files\EazelBar\Firefox\chrome\content folder moved successfully.
      C:\Program Files\EazelBar\Firefox\chrome folder moved successfully.
      C:\Program Files\EazelBar\Firefox folder moved successfully.
      Registry value HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected] deleted successfully.
      C:\Program Files\Hewlett-Packard\SmartPrint\QPExtension\skin folder moved successfully.
      C:\Program Files\Hewlett-Packard\SmartPrint\QPExtension\locale\en-US folder moved successfully.
      C:\Program Files\Hewlett-Packard\SmartPrint\QPExtension\locale folder moved successfully.
      C:\Program Files\Hewlett-Packard\SmartPrint\QPExtension\content folder moved successfully.
      C:\Program Files\Hewlett-Packard\SmartPrint\QPExtension\components folder moved successfully.
      C:\Program Files\Hewlett-Packard\SmartPrint\QPExtension folder moved successfully.
      Registry value HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Components deleted successfully.
      C:\Program Files\Mozilla Firefox\components folder moved successfully.
      Registry value HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Plugins deleted successfully.
      File C:\Program Files\Mozilla Firefox\plugins not found.
      Registry value HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Components deleted successfully.
      File C:\Program Files\Mozilla Firefox\components not found.
      Registry value HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Plugins deleted successfully.
      File C:\Program Files\Mozilla Firefox\plugins not found.
      C:\Users\Adrian\AppData\Roaming\mozilla\Extensions\{718e30fb-e89b-41dd-9da7-e25a45638b28} folder moved successfully.
      C:\Users\Adrian\AppData\Roaming\mozilla\Extensions folder moved successfully.
      Folder C:\Users\Adrian\AppData\Roaming\mozilla\Extensions\{718e30fb-e89b-41dd-9da7-e25a45638b28}\ not found.
      C:\Users\Adrian\AppData\Roaming\mozilla\Firefox\Profiles\yjyxj7ef.default\extensions folder moved successfully.
      C:\Users\Adrian\AppData\Roaming\mozilla\Sunbird\Profiles\4lqhifiw.default\extensions folder moved successfully.
      C:\Users\Adrian\AppData\Roaming\mozilla\firefox\profiles\yjyxj7ef.default\searchplugins\fbdownloader_search.xml moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale\zh-TW\ffjcext folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale\zh-TW folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale\zh-CN\ffjcext folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale\zh-CN folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale\sv-SE\ffjcext folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale\sv-SE folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale\ko-KR\ffjcext folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale\ko-KR folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale\ja-JP\ffjcext folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale\ja-JP folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale\it-IT\ffjcext folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale\it-IT folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale\fr-FR\ffjcext folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale\fr-FR folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale\es-ES\ffjcext folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale\es-ES folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale\en-US\ffjcext folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale\en-US folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale\de-DE\ffjcext folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale\de-DE folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\locale folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\content\ffjcext folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome\content folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}\chrome folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\components folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\chrome\icons\default folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\chrome\icons folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\chrome folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} folder moved successfully.
      C:\Archivos de programa\Mozilla Firefox\extensions folder moved successfully.
      Folder C:\Archivos de programa\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\ not found.
      Use Chrome's Settings page to remove the default_search_provider items.
      Use Chrome's Settings page to remove the default_search_provider items.
      Use Chrome's Settings page to remove the default_search_provider items.
      Use Chrome's Settings page to change the HomePage.
      File C:\Program Files\Google\Chrome\Application\25.0.1364.152\PepperFlash\pepflashplayer.dll not found.
      File internal-remoting-viewer not found.
      File C:\Program Files\Google\Chrome\Application\25.0.1364.152\ppGoogleNaClPluginChrome.dll not found.
      File C:\Program Files\Google\Chrome\Application\25.0.1364.152\pdf.dll not found.
      C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll moved successfully.
      C:\Program Files\QuickTime\plugins\npqtplugin.dll moved successfully.
      C:\Program Files\QuickTime\plugins\npqtplugin2.dll moved successfully.
      C:\Program Files\QuickTime\plugins\npqtplugin3.dll moved successfully.
      C:\Program Files\QuickTime\plugins\npqtplugin4.dll moved successfully.
      C:\Program Files\QuickTime\plugins\npqtplugin5.dll moved successfully.
      C:\Program Files\QuickTime\plugins\npqtplugin6.dll moved successfully.
      C:\Program Files\QuickTime\plugins\npqtplugin7.dll moved successfully.
      C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL moved successfully.
      C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL moved successfully.
      C:\Program Files\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll moved successfully.
      C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll moved successfully.
      C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll moved successfully.
      C:\Program Files\Research In Motion Limited\BlackBerry App World Browser Plugin\npappworld.dll moved successfully.
      C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll moved successfully.
      C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll moved successfully.
      C:\Windows\system32\Macromed\Flash\NPSWF32_11_6_602_171.dll moved successfully.
      C:\Windows\system32\npdeployJava1.dll moved successfully.
      c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll moved successfully.
      Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FE478DC2-E4AD-4197-8F80-5E456BEBC57F}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE478DC2-E4AD-4197-8F80-5E456BEBC57F}\ deleted successfully.
      C:\Archivos de programa\EazelBar\Toolbar32.dll moved successfully.
      Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f}\ deleted successfully.
      C:\Archivos de programa\Microsoft\BingBar\BingExt.dll moved successfully.
      Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{EBD839AE-B08C-4fb7-859B-F54AF16C159F} deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EBD839AE-B08C-4fb7-859B-F54AF16C159F}\ not found.
      File C:\Archivos de programa\EazelBar\Toolbar32.dll not found.
      ========== FILES ==========
      < ipconfig /flushdns /c >
      Configuraci¢n IP de Windows
      Se vaci¢ correctamente la cach‚ de resoluci¢n de DNS.
      C:\Users\Adrian\Downloads\cmd.bat deleted successfully.
      C:\Users\Adrian\Downloads\cmd.txt deleted successfully.
      File\Folder C:\Archivos de programa\EazelBar not found.
      ========== COMMANDS ==========

      [EMPTYTEMP]

      User: Adrian
      ->Temp folder emptied: 3281408 bytes
      ->Temporary Internet Files folder emptied: 9488718 bytes
      ->Java cache emptied: 37215 bytes
      ->FireFox cache emptied: 1129851424 bytes
      ->Google Chrome cache emptied: 125260347 bytes
      ->Apple Safari cache emptied: 1003520 bytes
      ->Flash cache emptied: 763 bytes

      User: All Users

      User: Default
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 67 bytes

      User: Default User
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 0 bytes

      User: Public
      ->Temp folder emptied: 0 bytes

      %systemdrive% .tmp files removed: 0 bytes
      %systemroot% .tmp files removed: 0 bytes
      %systemroot%\System32 .tmp files removed: 0 bytes
      %systemroot%\System32\drivers .tmp files removed: 0 bytes
      Windows Temp folder emptied: 90192 bytes
      RecycleBin emptied: 0 bytes

      Total Files Cleaned = 1.210,00 mb


      [EMPTYFLASH]

      User: Adrian
      ->Flash cache emptied: 0 bytes

      User: All Users

      User: Default

      User: Default User

      User: Public

      Total Flash Files Cleaned = 0,00 mb

      C:\Windows\System32\drivers\etc\Hosts moved successfully.
      HOSTS file reset successfully

      OTL by OldTimer - Version 3.2.69.0 log created on 03062013_140454

      Files\Folders moved on Reboot...

      PendingFileRenameOperations files...

      Registry entries deleted on Reboot...

    8. #8
      Moderador Gral.
      Avatar de @Leosolari
      Registrado
      jun 2007
      Ubicación
      Argentina
      Mensajes
      58.637

      Re: www_getwindowinfo no puedo eliminarlo

      Hola


      Ejecutá nuevamente OTL.exe y presionas el Boton Limpiar.


      Esto Eliminará de Tu sistema a OTL.exe y sus archivos creados y eliminados.


      Te pedirá reiniciar el ordenador. Presionas SI, y después de reiniciar, comprobas en Funcionamiento y nos comentas como sigue.






      Descargá la herramienta ComboFix.exe a Tu escritorio.

      • Desactivá temporalmente el Antivirus y/o Antispyware. Cómo deshabilitar temporalmente su Antivirus
      • Cerrá todas las ventanas abiertas.
      • Hacá doble clic en el archivo ComboFix.exe y seguí las instrucciones.
      • Cuando termine, generará un registro en C:\ComboFix.txt.




      Notas Importantes:

      • Mientras CF este trabajando, no debes mover el mouse ya que pararía su proceso.
      • ComboFix Puede Reiniciar automáticamente el PC para completar el proceso de eliminación.
      • Una vez Terminado el Trabajo de ComboFix, podes activar Tu antivirus.
      • No Pongas los Reportes Dentro de Etiquetas Code ni HTML.




      Atención!! No use ComboFix a menos que se le haya indicado específicamente en su mensaje por un integrante de nuestro Staff. Es una herramienta de gran alcance destinada por su creador a ser usada bajo la orientación y supervisión de un experto, no para uso privado. El uso de ComboFix incorrectamente podría generar problemas en su sistema. Por favor, lea las "Negaciones de la Garantía" de ComboFix.


      El reporte generado, se encuentra en C:\ComboFix.txt . Abrilo, seleccionas Todo y lo copias y pegas en Tu próxima respuesta.



      Saludos
      Síguenos en Twitter y hazte nuestro amigo en Facebook.

    9. #9
      Usuario Avatar de anmerob
      Registrado
      nov 2012
      Ubicación
      chiapas, mexico
      Mensajes
      8

      Re: www_getwindowinfo no puedo eliminarlo

      aun sigue abriendo ventanas de IE, aqui el log del combofix

      ComboFix 13-03-05.01 - Adrian 06/03/2013 14:31:02.2.2 - x86
      Microsoft Windows 7 Starter 6.1.7601.1.1252.52.3082.18.1787.572 [GMT -6:00]
      Running from: c:\users\Adrian\Downloads\ComboFix.exe
      AV: Microsoft Security Essentials *Disabled/Updated* {3F839487-C7A2-C958-E30C-E2825BA31FB5}
      SP: Microsoft Security Essentials *Disabled/Updated* {84E27563-E198-C6D6-D9BC-D9F020245508}
      SP: Spybot - Search and Destroy *Disabled/Outdated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
      SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
      .
      .
      ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
      .
      .
      Infected copy of c:\windows\system32\userinit.exe was found and disinfected
      Restored copy from - c:\windows\erdnt\cache\userinit.exe
      .
      .
      ((((((((((((((((((((((((( Files Created from 2013-02-06 to 2013-03-06 )))))))))))))))))))))))))))))))
      .
      .
      2013-03-06 20:42 . 2013-03-06 20:42 -------- d-----w- c:\users\Default\AppData\Local\temp
      2013-03-06 19:06 . 2013-03-06 19:06 97 ----a-w- c:\windows\DeleteOnReboot.bat
      2013-03-06 18:11 . 2009-01-25 18:14 15224 ----a-w- c:\windows\system32\sdnclean.exe
      2013-03-06 18:11 . 2013-03-06 18:11 -------- d-----w- c:\program files\Spybot - Search & Destroy 2
      2013-03-06 17:36 . 2013-03-06 17:36 -------- d-----w- c:\users\Adrian\Doctor Web
      2013-03-06 15:27 . 2013-02-08 00:45 6954968 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C0FD6F29-584D-46A0-BFC5-0E31A19D6B80}\mpengine.dll
      2013-03-06 05:53 . 2013-03-06 05:53 -------- d-----w- c:\program files\CCleaner
      2013-03-06 05:31 . 2013-03-06 20:46 -------- d-----w- c:\users\Adrian\AppData\Local\temp
      2013-03-06 00:03 . 2013-03-06 00:03 -------- d-----w- c:\users\Adrian\AppData\Roaming\Malwarebytes
      2013-03-05 23:59 . 2013-03-05 23:59 -------- d-----w- c:\programdata\Malwarebytes
      2013-03-05 23:59 . 2013-03-05 23:59 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
      2013-03-05 23:59 . 2012-12-14 22:49 21104 ----a-w- c:\windows\system32\drivers\mbam.sys
      2013-03-01 16:38 . 2013-02-08 00:45 6954968 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
      2013-02-16 14:04 . 2013-01-08 22:01 768000 ----a-w- c:\program files\Common Files\Microsoft Shared\VGX\VGX.dll
      2013-02-15 15:36 . 2013-01-04 03:00 2347008 ----a-w- c:\windows\system32\win32k.sys
      2013-02-15 15:36 . 2013-01-05 05:00 3967848 ----a-w- c:\windows\system32\ntkrnlpa.exe
      2013-02-15 15:36 . 2013-01-05 05:00 3913064 ----a-w- c:\windows\system32\ntoskrnl.exe
      2013-02-15 15:36 . 2013-01-03 05:05 1293672 ----a-w- c:\windows\system32\drivers\tcpip.sys
      2013-02-15 15:36 . 2013-01-03 05:04 187752 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
      2013-02-15 15:36 . 2013-01-04 04:50 169984 ----a-w- c:\windows\system32\winsrv.dll
      2013-02-05 16:34 . 2013-02-05 16:34 -------- d-----w- c:\program files\Common Files\Skype
      .
      .
      .
      (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
      .
      2013-02-28 01:43 . 2012-04-19 22:40 691568 ----a-w- c:\windows\system32\FlashPlayerApp.exe
      2013-02-28 01:43 . 2012-02-14 01:48 71024 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
      2013-01-30 10:53 . 2012-02-14 00:06 232336 ------w- c:\windows\system32\MpSigStub.exe
      2013-01-20 21:59 . 2013-01-20 21:59 195296 ----a-w- c:\windows\system32\drivers\MpFilter.sys
      2013-01-20 21:59 . 2011-04-27 21:25 100328 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys
      2012-12-16 14:13 . 2013-01-08 00:17 295424 ----a-w- c:\windows\system32\atmfd.dll
      2012-12-16 14:13 . 2013-01-08 00:17 34304 ----a-w- c:\windows\system32\atmlib.dll
      2012-12-07 12:26 . 2013-01-28 18:02 308736 ----a-w- c:\windows\system32\Wpc.dll
      2012-12-07 12:20 . 2013-01-28 18:02 2576384 ----a-w- c:\windows\system32\gameux.dll
      2012-12-07 10:46 . 2013-01-28 18:02 43520 ----a-w- c:\windows\system32\csrr.rs
      2012-12-07 10:46 . 2013-01-28 18:02 30720 ----a-w- c:\windows\system32\usk.rs
      2012-12-07 10:46 . 2013-01-28 18:02 45568 ----a-w- c:\windows\system32\oflc-nz.rs
      2012-12-07 10:46 . 2013-01-28 18:02 44544 ----a-w- c:\windows\system32\pegibbfc.rs
      2012-12-07 10:46 . 2013-01-28 18:02 20480 ----a-w- c:\windows\system32\pegi-pt.rs
      2012-12-07 10:46 . 2013-01-28 18:02 23552 ----a-w- c:\windows\system32\oflc.rs
      2012-12-07 10:46 . 2013-01-28 18:02 20480 ----a-w- c:\windows\system32\pegi-fi.rs
      2012-12-07 10:46 . 2013-01-28 18:02 46592 ----a-w- c:\windows\system32\fpb.rs
      2012-12-07 10:46 . 2013-01-28 18:02 20480 ----a-w- c:\windows\system32\pegi.rs
      2012-12-07 10:46 . 2013-01-28 18:02 21504 ----a-w- c:\windows\system32\grb.rs
      2012-12-07 10:46 . 2013-01-28 18:02 40960 ----a-w- c:\windows\system32\cob-au.rs
      2012-12-07 10:46 . 2013-01-28 18:02 15360 ----a-w- c:\windows\system32\djctq.rs
      2012-12-07 10:46 . 2013-01-28 18:02 55296 ----a-w- c:\windows\system32\cero.rs
      2012-12-07 10:46 . 2013-01-28 18:02 51712 ----a-w- c:\windows\system32\esrb.rs
      .
      .
      ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
      .
      .
      *Note* empty entries & legit default entries are not shown
      REGEDIT4
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
      @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
      [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
      2012-10-20 21:04 220632 ----a-w- c:\users\Adrian\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
      @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
      [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
      2012-10-20 21:04 220632 ----a-w- c:\users\Adrian\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
      @="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
      [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
      2012-10-20 21:04 220632 ----a-w- c:\users\Adrian\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
      @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
      [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
      2012-11-13 23:32 129272 ----a-w- c:\users\Adrian\AppData\Roaming\Dropbox\bin\DropboxExt.17.dll
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
      @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
      [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
      2012-11-13 23:32 129272 ----a-w- c:\users\Adrian\AppData\Roaming\Dropbox\bin\DropboxExt.17.dll
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
      @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
      [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
      2012-11-13 23:32 129272 ----a-w- c:\users\Adrian\AppData\Roaming\Dropbox\bin\DropboxExt.17.dll
      .
      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "ISUSPM"="c:\programdata\FLEXnet\Connect\11\ISUSPM.exe" [2009-05-05 222496]
      "swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2012-10-31 39408]
      "HP Officejet Pro 8600 (NET)"="c:\program files\HP\HP Officejet Pro 8600\Bin\ScanToPCActivationApp.exe" [2011-09-09 1804648]
      "Skype"="c:\program files\Skype\Phone\Skype.exe" [2013-01-08 18705664]
      "Spybot-S&D Cleaning"="c:\program files\Spybot - Search & Destroy 2\SDCleaner.exe" [2012-11-13 3713032]
      "klgratis.exe"="c:\program files\KG Monitor\klgratis.exe" [2012-05-03 1182720]
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-03-04 336384]
      "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI.exe" [2011-01-11 5442152]
      "SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2011-10-14 2299176]
      "AtherosBtStack"="c:\program files\Bluetooth Suite\BtvStack.exe" [2011-04-13 498848]
      "AthBtTray"="c:\program files\Bluetooth Suite\AthBtTray.exe" [2011-04-13 302240]
      "HP Quick Launch"="c:\program files\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe" [2010-11-09 586296]
      "HPOSD"="c:\program files\Hewlett-Packard\HP On Screen Display\HPOSD.exe" [2010-12-13 318520]
      "HPWirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe" [2010-07-21 8192]
      "RIMBBLaunchAgent.exe"="c:\program files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe" [2011-09-01 90448]
      "APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-02-21 59240]
      "FUFAXSTM"="c:\program files\Epson Software\FAX Utility\FUFAXSTM.exe" [2009-12-03 847872]
      "ArcSoft Connection Service"="c:\program files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe" [2010-10-28 207424]
      "ArcSoft MediaImpression Monitor"="c:\program files\Kodak\MediaImpression\ArcMonitor.exe" [2010-11-12 73728]
      "iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2012-03-27 421736]
      "MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2013-01-27 947152]
      "ControlCenter4"="c:\program files\ControlCenter4\BrCcBoot.exe" [2011-04-20 139264]
      "BrStsMon00"="c:\program files\Browny02\Brother\BrStMonW.exe" [2010-06-10 2621440]
      "IndexSearch"="c:\program files\Nuance\PaperPort\IndexSearch.exe" [2010-03-09 46368]
      "PaperPort PTD"="c:\program files\Nuance\PaperPort\pptd40nt.exe" [2010-03-09 29984]
      "PPort12reminder"="c:\program files\Nuance\PaperPort\Ereg\Ereg.exe" [2010-02-09 328992]
      "PDFHook"="c:\program files\Nuance\PDF Viewer Plus\pdfpro5hook.exe" [2010-03-06 636192]
      "PDF5 Registry Controller"="c:\program files\Nuance\PDF Viewer Plus\RegistryController.exe" [2010-03-06 62752]
      "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-12-03 946352]
      "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-09-17 254896]
      "HP Software Update"="c:\program files\Hp\HP Software Update\HPWuSchd2.exe" [2011-03-24 49208]
      "SDTray"="c:\program files\Spybot - Search & Destroy 2\SDTray.exe" [2012-11-13 3825176]
      .
      c:\users\Adrian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
      Dropbox.lnk - c:\users\Adrian\AppData\Roaming\Dropbox\bin\Dropbox.exe [2013-1-20 28539272]
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
      "ConsentPromptBehaviorAdmin"= 5 (0x5)
      "ConsentPromptBehaviorUser"= 3 (0x3)
      "EnableUIADesktopToggle"= 0 (0x0)
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
      "midi2"=wdmaud.drv
      .
      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
      BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean.exe
      .
      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
      @="Service"
      .
      R1 MpKsl1e8ec065;MpKsl1e8ec065;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C42B95B1-21D6-4EFB-8108-C8647392451F}\MpKsl1e8ec065.sys [x]
      R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [x]
      R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [x]
      R2 XobniService;XobniService;c:\program files\Xobni\XobniService.exe [x]
      R3 BBSvc;Bing Bar Update Service;c:\program files\Microsoft\BingBar\BBSvc.EXE [x]
      R3 GamesAppService;GamesAppService;c:\program files\WildTangent Games\App\GamesAppService.exe [x]
      R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x]
      R3 NisSrv;Inspección de red de Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe [x]
      R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [x]
      R3 RTL8187;Realtek RTL8187 Wireless 802.11g 54Mbps USB 2.0 Network Adapter;c:\windows\system32\DRIVERS\RTL8187.sys [x]
      R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL3.SYS [x]
      R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV3.SYS [x]
      R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT3.SYS [x]
      R3 ss_bbus;SAMSUNG USB Mobile Device (WDM);c:\windows\system32\DRIVERS\ss_bbus.sys [x]
      R3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter);c:\windows\system32\DRIVERS\ss_bmdfl.sys [x]
      R3 ss_bmdm;SAMSUNG USB Mobile Modem;c:\windows\system32\DRIVERS\ss_bmdm.sys [x]
      R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
      R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [x]
      S0 amd_sata;amd_sata;c:\windows\system32\DRIVERS\amd_sata.sys [x]
      S0 amd_xata;amd_xata;c:\windows\system32\DRIVERS\amd_xata.sys [x]
      S2 AERTFilters;Andrea RT Filters Service;c:\program files\Realtek\Audio\HDA\AERTSrv.exe [x]
      S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
      S2 AMD FUEL Service;AMD FUEL Service;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [x]
      S2 AMD Reservation Manager;AMD Reservation Manager;c:\program files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe [x]
      S2 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent;c:\program files\Bluetooth Suite\Ath_CoexAgent.exe [x]
      S2 AtherosSvc;AtherosSvc;c:\program files\Bluetooth Suite\adminservice.exe [x]
      S2 HP Support Assistant Service;HP Support Assistant Service;c:\program files\Hewlett-Packard\HP Support Framework\hpsa_service.exe [x]
      S2 HP Wireless Assistant Service;HP Wireless Assistant Service;c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [x]
      S2 HPWMISVC;HPWMISVC;c:\program files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [x]
      S2 IconMan_R;IconMan_R;c:\program files\Realtek\Realtek PCIE Card Reader\RIconMan.exe [x]
      S2 MBAMScheduler;MBAMScheduler;c:\program files\Malwarebytes' Anti-Malware\mbamscheduler.exe [x]
      S2 MyWebFace_5aService;MyWebFaceService;c:\progra~1\MYWEBF~2\bar\1.bin\5abarsvc.exe [x]
      S2 PDFProFiltSrvPP;PDFProFiltSrvPP;c:\program files\Nuance\PaperPort\PDFProFiltSrvPP.exe [x]
      S2 Updater Service for EazelBar;Updater Service for EazelBar;c:\program files\EazelBar\ToolbarUpdaterService.exe [x]
      S3 amdiox86;AMD IO Driver;c:\windows\system32\DRIVERS\amdiox86.sys [x]
      S3 AthBTPort;Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys [x]
      S3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys [x]
      S3 BTATH_BUS;Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys [x]
      S3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys [x]
      S3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys [x]
      S3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys [x]
      S3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys [x]
      S3 clwvd;CyberLink WebCam Virtual Driver;c:\windows\system32\DRIVERS\clwvd.sys [x]
      S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x]
      S3 RSPCIESTOR;Realtek PCIE CardReader Driver;c:\windows\system32\DRIVERS\RtsPStor.sys [x]
      S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [x]
      S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys [x]
      .
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
      LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS FontCache fdrespub AppIDSvc QWAVE wcncsvc
      GPSvcGroup REG_MULTI_SZ GPSvc
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
      2013-03-06 20:13 1630672 ----a-w- c:\program files\Google\Chrome\Application\25.0.1364.152\Installer\chrmstp.exe
      .
      Contents of the 'Scheduled Tasks' folder
      .
      2013-03-06 c:\windows\Tasks\Adobe Flash Player Updater.job
      - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-19 01:43]
      .
      2013-03-06 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
      - c:\program files\Google\Update\GoogleUpdate.exe [2012-10-31 19:16]
      .
      2013-03-06 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
      - c:\program files\Google\Update\GoogleUpdate.exe [2012-10-31 19:16]
      .
      2013-03-05 c:\windows\Tasks\HPCeeScheduleForAdrian.job
      - c:\program files\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13 20:15]
      .
      .
      ------- Supplementary Scan -------
      .
      uStart Page = Google
      mStart Page = Google
      uInternet Settings,ProxyOverride = *.local
      IE: &Enviar a OneNote - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105
      IE: E&xportar a Microsoft Excel - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000
      TCP: DhcpNameServer = 192.168.1.254
      TCP: Interfaces\{EF3349D9-FE20-4308-B8E2-8621FE0FD464}: NameServer = 200.33.146.241,200.33.146.249
      FF - ProfilePath - c:\users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\yjyxj7ef.default\
      FF - prefs.js: browser.search.defaulturl - Google
      FF - prefs.js: browser.search.selectedEngine - Google
      FF - prefs.js: browser.startup.homepage - hxxp://google.com
      FF - prefs.js: keyword.URL - hxxps://www.google.com/search?q=
      .
      - - - - ORPHANS REMOVED - - - -
      .
      Notify-SDWinLogon - SDWinLogon.dll
      .
      .
      .
      --------------------- LOCKED REGISTRY KEYS ---------------------
      .
      [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
      @Denied: (A 2) (Everyone)
      @="FlashBroker"
      "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_11_6_602_171_ActiveX.exe,-101"
      .
      [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
      "Enabled"=dword:00000001
      .
      [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
      @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_11_6_602_171_ActiveX.exe"
      .
      [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
      @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
      .
      [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
      @Denied: (A 2) (Everyone)
      @="IFlashBroker5"
      .
      [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
      @="{00020424-0000-0000-C000-000000000046}"
      .
      [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
      @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
      "Version"="1.0"
      .
      [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
      @Denied: (A) (Users)
      @Denied: (A) (Everyone)
      @Allowed: (B 1 2 3 4 5) (S-1-5-20)
      "BlindDial"=dword:00000000
      .
      [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
      @Denied: (A) (Users)
      @Denied: (A) (Everyone)
      @Allowed: (B 1 2 3 4 5) (S-1-5-20)
      "BlindDial"=dword:00000000
      .
      [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
      @Denied: (Full) (Everyone)
      .
      --------------------- DLLs Loaded Under Running Processes ---------------------
      .
      - - - - - - - > 'Explorer.exe'(3064)
      c:\users\Adrian\AppData\Roaming\Dropbox\bin\DropboxExt.17.dll
      c:\program files\Hewlett-Packard\HP Support Framework\Resources\HPSFMessenger\HPSFTaskbar.dll
      c:\program files\Bluetooth Suite\AthCopyHook.dll
      c:\program files\Spybot - Search & Destroy 2\SDHelper.dll
      c:\program files\Spybot - Search & Destroy 2\snlBase150.bpl
      c:\program files\Spybot - Search & Destroy 2\snlThirdParty150.bpl
      c:\program files\Spybot - Search & Destroy 2\DEC150.bpl
      c:\program files\Spybot - Search & Destroy 2\JSDialogPack150.bpl
      c:\program files\Spybot - Search & Destroy 2\snlFileFormats150.bpl
      c:\program files\Spybot - Search & Destroy 2\VirtualTreesDXE150.bpl
      .
      ------------------------ Other Running Processes ------------------------
      .
      c:\program files\Microsoft Security Client\MsMpEng.exe
      c:\windows\system32\atieclxx.exe
      c:\program files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
      c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe
      c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
      c:\program files\Bonjour\mDNSResponder.exe
      c:\program files\Microsoft\BingBar\SeaPort.EXE
      c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
      c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
      c:\windows\system32\taskhost.exe
      c:\windows\system32\conhost.exe
      c:\program files\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
      c:\program files\Hewlett-Packard\Shared\hpqWmiEx.exe
      c:\program files\iPod\bin\iPodService.exe
      c:\program files\CyberLink\YouCam\YCMMirage.exe
      c:\windows\system32\sppsvc.exe
      c:\program files\Windows Media Player\wmpnetwk.exe
      c:\program files\Internet Explorer\IExplore.exe
      c:\program files\Internet Explorer\IExplore.exe
      c:\program files\Google\Google Toolbar\GoogleToolbarUser_32.exe
      .
      **************************************************************************
      .
      Completion time: 2013-03-06 14:50:46 - machine was rebooted
      ComboFix-quarantined-files.txt 2013-03-06 20:50
      .
      Pre-Run: 250,068,209,664 bytes libres
      Post-Run: 249,775,505,408 bytes libres
      .
      - - End Of File - - 5BDE66B807BFF4D0D4C58647782E3516

    10. #10
      Moderador Gral.
      Avatar de @Leosolari
      Registrado
      jun 2007
      Ubicación
      Argentina
      Mensajes
      58.637

      Re: www_getwindowinfo no puedo eliminarlo

      Hola de nuevo


      Realiza lo siguiente :

      • Clic en INICIO > EJECUTAR >
        • Y ahí pones notepad.exe y ACEPTAR
        • Ahora copia y pega el texto del cuadro de mas abajo dentro del Notepad


      Código:
      KillAll::
      ClearJavaCache::
      File::
      c:\windows\DeleteOnReboot.bat
      c:\program files\WildTangent Games\App\GamesAppService.exe
      c:\progra~1\MYWEBF~2\bar\1.bin\5abarsvc.exe
      Folder::
      c:\program files\EazelBar
      Driver::
      GamesAppService
      MyWebFace_5aService
      Updater Service for EazelBar


      • Guarda este archivo con el nombre CFScript.txt
      • Arrastra y suelta el archivo CFScript.txt dentro del archivo ComboFix.exe como lo muestra el screenshot de abajo.



      • ComboFix comenzará otra vez a ejecutarse. Cuando termine generara un nuevo reporte que tendras que pegar en este mismo tema.




      Después de reiniciar, comprobas en funcionamiento y nos comentás.



      saludos
      Síguenos en Twitter y hazte nuestro amigo en Facebook.

    Página 1 de 2 12 ÚltimoÚltimo