• Registrarse
  • Iniciar sesión


  • Página 1 de 2 12 ÚltimoÚltimo
    Resultados 1 al 10 de 19

    Desinstalar Nation Zoom (Solucionado)

    Resumen del tema: Desinstalar Nation Zoom (Solucionado) - Buenas tardes!!!! Acudo a vosotros porque estoy bastante liado. Resulta que como otros usuarios de este foro descargué una versión de Java y sin darme cuenta, por lo rápido que lo hice, se me coló ...

      
    1. #1
      Usuario Avatar de Agustí Gas
      Registrado
      dic 2008
      Ubicación
      Castellón
      Mensajes
      16

      Desinstalar Nation Zoom (Solucionado)

      Buenas tardes!!!! Acudo a vosotros porque estoy bastante liado. Resulta que como otros usuarios de este foro descargué una versión de Java y sin darme cuenta, por lo rápido que lo hice, se me coló el dichoso buscador. El caso es que pensé que con el Adwcleaner tendría bastante, y le pasé dicho programa, y no le hizo efecto, poco después he probado pasarle el Malwarebytes, el Ccleaner, otra vez el Malwarebytes en modo administrador, otra vez el Adwcleaner, enfín, que en este momento no se en que situación estoy. Lo único que he conseguido es que en Chrome y en el Explorer no me aparezca, pero me va todo el sistema muy lento. En el Firefox sigue saliendo cada vez que intento abrirlo. Llegado a este punto, no se que hacer más y es por eso por lo que os solicito vuestra ayuda, gracias de antemano

    2. #2
      Moderadora
      Avatar de @Daniela
      Registrado
      abr 2011
      Ubicación
      España
      Mensajes
      9.410

      Re: Desinstalar Nation Zoom

      Hola Agustí Gas

      Pega los últimos reportes que tengas de Malwarebyte y AdwCleaner, para revisarlos.

      Un saludo
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    3. #3
      Usuario Avatar de Agustí Gas
      Registrado
      dic 2008
      Ubicación
      Castellón
      Mensajes
      16
      ¿sabes donde se guardan dichos reportes? es que tal como han acabado los programas, los he cerrado y no he tenido la precaución de copiarlos

      He encontrado el reporte de Adwcleaner, aquí te lo dejo:

      # AdwCleaner v3.014 - Reporte Creado 04/12/2013 en 18:57:29
      # Actualizado 01/12/2013 por Xplode
      # Sistema Operativo : Windows 7 Home Premium Service Pack 1 (64 bits)
      # Nombre de usuario : Agustí - GAS
      # Ejecutado desde : C:\Users\Agustí\Downloads\AdwCleaner.exe
      # Opción : Limpiar

      ***** [ Servicios ] *****


      ***** [ Archivos / Carpetas ] *****


      ***** [ Accesos directos ] *****


      ***** [ Registro ] *****


      ***** [ Navegadores ] *****

      -\\ Internet Explorer v11.0.9600.16428


      -\\ Mozilla Firefox v25.0.1 (ca)

      [ Archivo : C:\Users\Agustí\AppData\Roaming\Mozilla\Firefox\Profiles\t933p114.default\prefs.js ]


      [ Archivo : C:\Users\David\AppData\Roaming\Mozilla\Firefox\Profiles\qd60jgd5.default\prefs.js ]


      [ Archivo : C:\Users\Elisa\AppData\Roaming\Mozilla\Firefox\Profiles\2b45mi1z.default\prefs.js ]


      -\\ Google Chrome v31.0.1650.57

      [ Archivo : C:\Users\Agustí\AppData\Local\Google\Chrome\User Data\Default\preferences ]


      [ Archivo : C:\Users\David\AppData\Local\Google\Chrome\User Data\Default\preferences ]


      [ Archivo : C:\Users\Elisa\AppData\Local\Google\Chrome\User Data\Default\preferences ]


      *************************

      AdwCleaner[R0].txt - [11364 octets] - [11/09/2013 0711]
      AdwCleaner[R1].txt - [5331 octets] - [02/10/2013 15:06:46]
      AdwCleaner[R2].txt - [1506 octets] - [02/10/2013 20:40:40]
      AdwCleaner[R3].txt - [11351 octets] - [20/10/2013 21:05:40]
      AdwCleaner[R4].txt - [9799 octets] - [02/12/2013 00:20:11]
      AdwCleaner[R5].txt - [2220 octets] - [03/12/2013 14:01:46]
      AdwCleaner[R6].txt - [2055 octets] - [03/12/2013 21:12:16]
      AdwCleaner[R7].txt - [2109 octets] - [04/12/2013 18:56:09]
      AdwCleaner[S0].txt - [10983 octets] - [11/09/2013 07:11:53]
      AdwCleaner[S2].txt - [1565 octets] - [02/10/2013 20:41:39]
      AdwCleaner[S3].txt - [9409 octets] - [20/10/2013 21:06:58]
      AdwCleaner[S4].txt - [9219 octets] - [02/12/2013 00:21:44]
      AdwCleaner[S5].txt - [2234 octets] - [03/12/2013 14:03:36]
      AdwCleaner[S6].txt - [2110 octets] - [03/12/2013 21:13:42]

      y aquí te dejo el reporte del Malwarebytes:

      Malwarebytes Anti-Malware (PRO) 1.75.0.1300
      Malwarebytes : Free anti-malware download

      Versión de la Base de Datos: v2013.12.04.06

      Windows 7 Service Pack 1 x64 NTFS
      Internet Explorer 11.0.9600.16428
      Agustí :: GAS [administrador]

      Protección: Personas de movilidad reducida

      04/12/2013 17:06:01
      mbam-log-2013-12-04 (17-06-01).txt

      Tipos de Análisis: Análisis Completo (C:\|)
      Opciones de análisis activado: Memoria | Inicio | Registro | Sistema de archivos | Heurística/Extra | Heurística/Shuriken | PUP | PUM
      Opciones de análisis desactivados: P2P
      Objetos examinados: 470334
      Tiempo transcurrido: 1 hora(s), 45 minuto(s), 20 segundo(s)

      Procesos en Memoria Detectados: 0
      (No se han detectado elementos maliciosos)

      Módulos de Memoria Detectados: 0
      (No se han detectado elementos maliciosos)

      Claves del Registro Detectados: 0
      (No se han detectado elementos maliciosos)

      Valores del Registro Detectados: 0
      (No se han detectado elementos maliciosos)

      Elementos de Datos del Registro Detectados: 0
      (No se han detectado elementos maliciosos)

      Carpetas Detectadas: 0
      (No se han detectado elementos maliciosos)

      Archivos Detectados: 0
      (No se han detectado elementos maliciosos)

      fin)

    4. #4
      Moderadora
      Avatar de @Daniela
      Registrado
      abr 2011
      Ubicación
      España
      Mensajes
      9.410

      Re: Desinstalar Nation Zoom

      Hola

      Los reportes que has puesto, son los que te he pedido

      Descarga >> OTL By OldTimer a tu escritorio.

      Para Ejecutar OTL sigue estos pasos :

      • Cerrar todos programas que tengas abiertos y hacer doble click en el ícono de OTL para ejecutarlo.
      • Dejarlo correr y esperar a que aparezca el menú de OTL..
      • Cuando salga el menú de OTL, debes cambiar debajo de: "Tipo de Análisis" poniendo Resultado Mínimo.
      • Marcar la casilla Analizar Todos.
      • Marcar las opciones:Buscar LOP y Buscar Purity
      • Marcar las Opciones: Omitir Archivos De Microsoft y Usar Listado de Compañías Reconocidas.
      • Copiar y Pegar las líneas del siguiente script bajo la casilla Análisis Personalizados/Código de Reparación:

        NOTA: No copiar la palabra Código:
        Código:
        netsvcs
        msconfig
        %SYSTEMDRIVE%\*.*
        CREATERESTOREPOINT


      • Por favor No cambies el resto de la configuración a menos que te lo solicitemos.


      • Presionar el botón .
      • Una vez que termine, se abrirán dos (2) archivos, OTL.Txt y Extras.Txt. Éstos archivos estarán grabados en el mismo lugar donde OTL.exe fue descargado.
      • Copiar y pegar el contenido del archivo OTL.txt en tu próxima respuesta.


      Un saludo
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    5. #5
      Usuario Avatar de Agustí Gas
      Registrado
      dic 2008
      Ubicación
      Castellón
      Mensajes
      16

      Re: Desinstalar Nation Zoom

      Buenas noches Daniela!!! disculpa el retraso en mi respuesta, no he podido hacerlo antes por motivos de trabajo, aún decirte que estoy muy agradecido por la gran labor que haceis, de nuevo gracias anticipadas. Aquí te dejo el primer reporte, en el próximo post pongo el otro, es que son muy grandes para ir en un post solo,


      OTL Extras logfile created on: 06/12/2013 20:59:03 - Run 1
      OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Agustí\Desktop
      64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
      Internet Explorer (Version = 9.11.9600.16428)
      Locale: 00000403 | Country: España | Language: CAT | Date Format: dd/MM/yyyy

      2,96 Gb Total Physical Memory | 1,90 Gb Available Physical Memory | 64,04% Memory free
      5,92 Gb Paging File | 4,50 Gb Available in Paging File | 75,98% Paging File free
      Paging file location(s): ?:\pagefile.sys [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
      Drive C: | 218,20 Gb Total Space | 59,01 Gb Free Space | 27,04% Space Free | Partition Type: NTFS

      Computer Name: GAS | User Name: Agustí | Logged in as Administrator.
      Boot Mode: Normal | Scan Mode: All users
      Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: Off | File Age = 30 Days

      ========== Extra Registry (SafeList) ==========


      ========== File Associations ==========

      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
      .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
      .html [@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
      .js [@ = jsfile] -- C:\Windows\SysWow64\CScript.exe (Microsoft Corporation)
      .jse [@ = JSEFile] -- C:\Windows\SysWow64\CScript.exe (Microsoft Corporation)
      .vbe [@ = VBEFile] -- C:\Windows\SysWow64\CScript.exe (Microsoft Corporation)
      .vbs [@ = VBSFile] -- C:\Windows\SysWow64\CScript.exe (Microsoft Corporation)
      .wsf [@ = WSFFile] -- C:\Windows\SysWow64\CScript.exe (Microsoft Corporation)

      [HKEY_USERS\S-1-5-21-3673474698-1000241783-4157340767-1000\SOFTWARE\Classes\<extension>]
      .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)

      ========== Shell Spawning ==========

      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
      batfile [open] -- "%1" %*
      cmdfile [open] -- "%1" %*
      comfile [open] -- "%1" %*
      cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
      exefile [open] -- "%1" %*
      helpfile [open] -- Reg Error: Key error.
      htafile [open] -- "%1" %*
      htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
      htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
      htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
      http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
      https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
      inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
      jsfile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
      jsefile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
      piffile [open] -- "%1" %*
      regfile [merge] -- Reg Error: Key error.
      scrfile [config] -- "%1"
      scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
      scrfile [open] -- "%1" /S
      txtfile [edit] -- Reg Error: Key error.
      vbefile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
      vbsfile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
      wsffile [open] -- %SystemRoot%\SysWow64\CScript.exe "%1" %* (Microsoft Corporation)
      Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
      Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
      Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
      Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
      Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
      Folder [explore] -- Reg Error: Value error.
      Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
      Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
      CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

      ========== Security Center Settings ==========

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
      "DisableMonitoring" = 1

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

      ========== System Restore Settings ==========

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
      "DisableSR" = 0

      ========== Firewall Settings ==========

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
      "DisableNotifications" = 0
      "EnableFirewall" = 1

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
      "DisableNotifications" = 0
      "EnableFirewall" = 1

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
      "DisableNotifications" = 0
      "EnableFirewall" = 1

      ========== Authorized Applications List ==========


      ========== Vista Active Open Ports Exception List ==========

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
      "{02167E8B-F23E-49B1-A354-00E474F5F5ED}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |
      "{04356C62-6DA1-4F1B-9D30-1534C5A48D3F}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
      "{054E6EDC-65B7-44BD-8BD4-9647AC872A98}" = lport=49181 | protocol=6 | dir=in | name=akamai netsession interface |
      "{0A0484CE-881E-4A1C-9657-E1779D106B98}" = lport=49172 | protocol=6 | dir=in | name=akamai netsession interface |
      "{0DEA680C-985A-418B-81CD-CF3AAE28D049}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
      "{119E1D96-9B3E-4E5E-B04D-4119C7B24DD5}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
      "{129EAF1F-B7E3-447E-BE38-7100606606F8}" = lport=5353 | protocol=6 | dir=in | name=adobe csi cs4 |
      "{13F0E74D-BD33-4DA5-A111-308A2C634269}" = rport=137 | protocol=17 | dir=out | app=system |
      "{17138A16-90A2-4C22-B1F0-6EB3EBC4D148}" = lport=5000 | protocol=17 | dir=in | name=akamai netsession interface |
      "{17732DC3-F701-41E9-A9A2-01B691043BC7}" = lport=445 | protocol=6 | dir=in | app=system |
      "{218DA824-63D9-4B83-A77D-8B9095D62044}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
      "{21CA0C0A-BC8B-43D9-A2DE-CF13DC19506A}" = lport=2869 | protocol=6 | dir=in | app=system |
      "{2B2F2B84-C7EE-4846-80E7-06AE08AF8358}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
      "{38AA6692-F184-426A-BF3A-22F43E398CA6}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
      "{39C508EF-65C1-4EE6-B582-90FCD1DCC739}" = lport=2869 | protocol=6 | dir=in | app=system |
      "{39F76BAD-9541-419C-B0E9-003354B6EBCC}" = lport=137 | protocol=17 | dir=in | app=system |
      "{3DD348BA-F4EA-4B27-B6D9-8184718BA5E0}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
      "{44F5636A-F3AB-495B-8594-C38073999C65}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
      "{4EA7C69F-6B8A-4BAC-AED7-FCCD2BC03CFB}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
      "{51BAE5AF-6515-4433-BFCC-69252BE928F7}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
      "{538D1DE8-4145-4B22-B0EE-C71F94AF9101}" = rport=10243 | protocol=6 | dir=out | app=system |
      "{53D04F01-78F8-4DC1-812B-3F94C76B4B30}" = rport=139 | protocol=6 | dir=out | app=system |
      "{60799585-53AE-4BC2-9E2A-33BE729420BB}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
      "{6AA322FD-CA02-4E79-87FC-0CB3A630BECB}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
      "{6F301243-7112-471E-9167-2F2F072EE6CA}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
      "{700BB0C5-5BB3-4A78-BC4C-92E9DFF342ED}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
      "{74E7F5D2-F384-4A50-9DE4-327E6FB5CD39}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
      "{75DBAEE0-8238-4961-81FC-315F075764EF}" = lport=49171 | protocol=6 | dir=in | name=akamai netsession interface |
      "{914DC344-366D-498D-A8FD-3D1DCC53DC78}" = rport=138 | protocol=17 | dir=out | app=system |
      "{958B2841-5B31-4435-B7F4-162C8C188811}" = rport=445 | protocol=6 | dir=out | app=system |
      "{9FE5D2F3-7387-4EB8-A118-C40E70D5EF10}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
      "{A02C1384-8478-4675-A6B0-AEBC3E7D1D17}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
      "{A791D771-6B25-49D6-955F-66414C86F9A7}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
      "{B1B93BB0-870B-45EB-85EA-28D4C65A4164}" = lport=2869 | protocol=6 | dir=in | app=system |
      "{B466FEEB-AA74-43F4-B030-C45AC4304B7B}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
      "{B51AA94E-0056-4AB0-8132-B27E004F581B}" = lport=10243 | protocol=6 | dir=in | app=system |
      "{B54C4034-6629-4312-9DCC-E74AFE2BCADF}" = lport=138 | protocol=17 | dir=in | app=system |
      "{B847E3C7-4BCB-40B4-933D-A15E263C3FB5}" = lport=2869 | protocol=6 | dir=in | app=system |
      "{B862B223-6BD7-43AC-9FFC-F39C7E093F36}" = lport=139 | protocol=6 | dir=in | app=system |
      "{D644712B-F608-4604-8872-25CCBAA14A42}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
      "{D8AC6F85-D194-4017-ACA3-9064BBE671BA}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
      "{EAF4213C-DB4E-405A-A780-E7EC6DC1D156}" = lport=5000 | protocol=17 | dir=in | name=akamai netsession interface |
      "{F891BB6E-510A-41A6-BB30-4C3823F72F31}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
      "{F9EC5630-7C1D-47A8-8F80-02AE0844827D}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
      "{FB4A7F23-9BF6-433D-9B51-B79F1F649F5C}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
      "{FE588871-964B-4281-BFEA-86D0E438A01D}" = lport=49171 | protocol=6 | dir=in | name=akamai netsession interface |

      ========== Vista Active Application Exception List ==========

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
      "{0519288D-D3BA-4C2B-84EB-62A752C766AA}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
      "{0E30B343-FC8A-41C8-BF08-F30908BE3911}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
      "{0E649EB2-9F61-4126-A186-D50E90E0B3D9}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
      "{1599D9C6-8648-44EF-926B-D2E31761CB5D}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2014\avgnsa.exe |
      "{2212E434-0AD4-4088-A039-A59954524F41}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2014\avgemca.exe |
      "{2AB8ED41-5AD6-4601-9BE3-69E0983C8D44}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
      "{3F34F2A5-5F43-4D6A-86A6-747F381A05F9}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
      "{4DCD8CE9-974A-4AC3-BD42-EAF83D0CBA2E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
      "{54D656ED-87DA-48A1-BA78-9D077FEB8CD3}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2014\avgnsa.exe |
      "{54F6E053-27A7-4D13-9F71-98128E0282BC}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
      "{56D19345-D141-4E85-9A4F-3631E21D1749}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
      "{5735989A-AAD3-4D40-9A8D-2C7035A615B6}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
      "{623757E0-0F80-41D8-BD99-9C9BCF68D60F}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2014\avgmfapx.exe |
      "{640E30F5-E229-41EF-886B-6990086DB1BB}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
      "{67E08B69-53F7-4640-A858-F8B2F248B17F}" = protocol=6 | dir=in | app=c:\windows\syswow64\msiexec.exe |
      "{717A7F0B-B8BE-4B33-A0B3-DDCB8F50642C}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
      "{744F0B41-8EB7-4BDB-B285-790A3FF0C967}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
      "{76D92C10-2A3E-462D-9CD4-52E23E0DF2A3}" = protocol=6 | dir=out | app=%systemroot%\system32\wudfhost.exe |
      "{781AED15-0377-471D-9C36-C720A45CCE30}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
      "{7A22EC18-6158-41BF-810C-F7708F6CAC9E}" = protocol=6 | dir=in | app=c:\users\agustí\appdata\roaming\bittorrent\bittorrent.exe |
      "{7B017582-3F06-420A-A166-B072F8948F0A}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
      "{7D311D1E-D172-412D-8AAA-00C2DC7EA16C}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2014\avgdiagex.exe |
      "{820C95EE-5CE7-43E4-BB88-162A55D59A84}" = protocol=6 | dir=out | app=system |
      "{8739136A-96B5-4B2B-80A5-C4F1E91E3020}" = protocol=58 | dir=in | app=system |
      "{87602089-FF8F-4925-B4CE-A51583759292}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2014\avgdiagex.exe |
      "{87CC9A23-730F-460A-92E6-5AE5DD1F8B11}" = protocol=17 | dir=in | app=c:\program files (x86)\arcsoft\totalmedia 3.5\totalmedia.exe |
      "{8A41083D-6194-4B11-9EEB-113BEF269B40}" = protocol=17 | dir=in | app=c:\users\agustí\appdata\roaming\bittorrent\bittorrent.exe |
      "{8C39695F-4805-4504-9379-BAC3B307F456}" = protocol=17 | dir=in | app=c:\windows\syswow64\msiexec.exe |
      "{8EA8A9FD-154B-4395-9A3D-E989D553FA50}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
      "{90FE4CC2-777E-44A5-986A-8DBD28185D55}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
      "{91086FCD-C5FD-4167-B6C9-381DA5FDEC81}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2014\avgdiagex.exe |
      "{925EFCB7-3DBB-4315-99F6-60A384044677}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
      "{92723C8E-FADC-4313-9F4A-4AA21C5DA8C2}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2014\avgmfapx.exe |
      "{A4B515C8-52D9-4E61-A22A-25C667F48611}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2014\avgnsa.exe |
      "{ACBB4F6E-D6D2-44D3-BA43-2222C4DF63F0}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
      "{B26809C2-9F85-437E-83CD-60F56DD7C357}" = protocol=6 | dir=in | app=c:\program files (x86)\arcsoft\totalmedia 3.5\totalmedia.exe |
      "{B8E13F6F-FD06-46F4-B028-02ECC167B936}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
      "{BCF1E834-FC4A-48A0-A952-9AF500B6DDD3}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe |
      "{C19D933F-5F5E-40DA-84C7-45CEE03EF7A7}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
      "{C3FC97A5-6636-4182-9BDE-CCEA8EC39F22}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2014\avgemca.exe |
      "{C74EBA1F-3648-4FBF-B977-8590F3E46300}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2014\avgemca.exe |
      "{CAFA0269-068A-4786-9F3A-CEF8080DEF7F}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2014\avgnsa.exe |
      "{CC11863B-3783-420D-A2C1-BBC96705D8DF}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2014\avgemca.exe |
      "{D33D0921-CDDC-40DA-A418-0E82601646EA}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
      "{D34E03EF-E395-4B7B-9859-9224A2137BA5}" = dir=in | app=c:\users\agustí\appdata\local\facebook\video\skype\facebookvideocalling.exe |
      "{D4AE126B-9FEA-4EE7-811B-636A7068BD97}" = protocol=6 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
      "{D5687938-BD21-4EBA-BD4B-5A9D64061654}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2014\avgdiagex.exe |
      "{D83DF053-DCD5-47FC-8705-AAD2081B3760}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
      "{D9BC3A0C-B592-4712-A7A4-62080E24EDDF}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
      "{E2C03CDF-E29A-48FF-8F52-46A5FFCE4856}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 |
      "{E86E76B5-6EF2-4DC5-B2D2-E50B84417DA9}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
      "TCP Query User{18E46FCB-9CF3-492C-8E61-87DE1DE56913}C:\program files (x86)\google\google earth\plugin\geplugin.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\plugin\geplugin.exe |
      "TCP Query User{1DB48A50-1931-4B40-9624-3DC28FF2FCA2}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |
      "TCP Query User{377C96CF-4648-405A-A039-08ACDC275F39}C:\users\elisa\appdata\roaming\vseeinstall\vsee.exe" = protocol=6 | dir=in | app=c:\users\elisa\appdata\roaming\vseeinstall\vsee.exe |
      "TCP Query User{3E550A75-9D5C-4399-8008-194B6F967602}C:\program files (x86)\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\program files (x86)\spotify\spotify.exe |
      "TCP Query User{63FF254F-7116-4FE3-A5FF-EF5D529E4379}C:\program files (x86)\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\program files (x86)\spotify\spotify.exe |
      "TCP Query User{68EE4AA8-358B-41EF-9ECC-BB61B35C3968}C:\users\elisa\appdata\roaming\vseeinstall\vsee.exe" = protocol=6 | dir=in | app=c:\users\elisa\appdata\roaming\vseeinstall\vsee.exe |
      "TCP Query User{69D6A47D-9C3E-4C7F-9CF1-4EC02C19A961}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe |
      "TCP Query User{72B594AF-0995-453B-B528-97A85E3E1922}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe |
      "TCP Query User{803C3D28-4E12-40F6-912C-31C3B4F3FB18}C:\users\david\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\david\appdata\roaming\spotify\spotify.exe |
      "TCP Query User{8ACAD4C4-230C-4065-BC99-F0D30CEE786D}C:\users\david\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\david\appdata\roaming\spotify\spotify.exe |
      "TCP Query User{A0FA9469-7D47-433A-89DB-BB63AFF76834}C:\users\elisa\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\elisa\appdata\roaming\spotify\spotify.exe |
      "TCP Query User{DDB12888-60D1-4412-9C12-55EB015C2211}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |
      "TCP Query User{F26AAC5C-9FF8-489E-84D8-C357C1EEC630}C:\program files (x86)\videolan\vlc\vlc.exe" = protocol=6 | dir=in | app=c:\program files (x86)\videolan\vlc\vlc.exe |
      "TCP Query User{F3AE4361-2A42-4545-8DBC-FC9465319CE4}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
      "UDP Query User{371F8363-5991-4313-B508-90E48650EBB8}C:\program files (x86)\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\program files (x86)\spotify\spotify.exe |
      "UDP Query User{3C01FB5B-2DE8-4B37-823C-2B5F32A2ADB6}C:\program files (x86)\videolan\vlc\vlc.exe" = protocol=17 | dir=in | app=c:\program files (x86)\videolan\vlc\vlc.exe |
      "UDP Query User{4654EE7A-A67A-45F5-B19B-44A71604A543}C:\users\elisa\appdata\roaming\vseeinstall\vsee.exe" = protocol=17 | dir=in | app=c:\users\elisa\appdata\roaming\vseeinstall\vsee.exe |
      "UDP Query User{532146BA-0A89-4703-B97B-5A6D1BCC927F}C:\program files (x86)\google\google earth\plugin\geplugin.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\plugin\geplugin.exe |
      "UDP Query User{5AE9DBBF-F161-4C88-8EE7-103420F039B5}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |
      "UDP Query User{74222806-9C88-48C8-A77F-EB7DF9523662}C:\users\david\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\david\appdata\roaming\spotify\spotify.exe |
      "UDP Query User{7789037A-70DB-4208-9313-211CD93227AC}C:\program files (x86)\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\program files (x86)\spotify\spotify.exe |
      "UDP Query User{8DD05DB9-EC86-416F-B86D-0E9B737B070D}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe |
      "UDP Query User{92EDACBB-A25D-484B-B562-80BDFCF6BA9F}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe |
      "UDP Query User{AEC990D3-360F-4021-8C73-15175E645A74}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |
      "UDP Query User{C43A3A95-6CC4-4099-BB7A-267D2F7E01CD}C:\users\david\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\david\appdata\roaming\spotify\spotify.exe |
      "UDP Query User{C9814D31-CA08-4B47-AFBF-1A421A42FECC}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
      "UDP Query User{DC5B5837-2A17-4B28-B174-AD55556BB415}C:\users\elisa\appdata\roaming\vseeinstall\vsee.exe" = protocol=17 | dir=in | app=c:\users\elisa\appdata\roaming\vseeinstall\vsee.exe |
      "UDP Query User{F7439C64-E22F-473F-895A-4889F72E0DD4}C:\users\elisa\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\elisa\appdata\roaming\spotify\spotify.exe |

      ========== HKEY_LOCAL_MACHINE Uninstall List ==========

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
      "{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
      "{04668DF2-D32F-4555-9C7E-35523DCD6544}" = Control ActiveX de Windows Live Mesh para conexiones remotas
      "{05308C4E-7285-4066-BAE3-6B50DA6ED755}" = Adobe Update Manager CS4
      "{054EFA56-2AC1-48F4-A883-0AB89874B972}" = Adobe Extension Manager CS4
      "{07A8ED9E-B98E-437F-B750-241B412BE924}" = Garmin USB Drivers
      "{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
      "{098727E1-775A-4450-B573-3F441F1CA243}" = kuler
      "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
      "{0D261C88-454B-46FE-B43B-640E621BDA11}" = Windows Live Mail
      "{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help
      "{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}" = PlayStation(R)Store
      "{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
      "{0F723FC1-7606-4867-866C-CE80AD292DAF}" = Adobe CSI CS4
      "{13766F76-6C8C-4E57-A9F3-3212D1C6E0D1}" = Dell DataSafe Online
      "{14AFE241-FC6E-4FDB-BCA0-7AD6F4974171}" = Adobe Setup
      "{1618734A-3957-4ADD-8199-F973763109A8}" = Adobe Anchor Service CS4
      "{1CFDFFDB-6646-43D6-8141-A77443F6BF98}" = Topo España V.3.0
      "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
      "{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
      "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
      "{29E44E9D-ACB2-4D2D-849F-5361C941B7E1}" = ArcSoft TotalMedia 3.5
      "{30C8AA56-4088-426F-91D1-0EDFD3A25678}" = Adobe Dreamweaver CS4
      "{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
      "{38BB21D5-B0D1-41DA-A0B0-1EFB5EF4AAC2}" = Microsoft Works
      "{39F6E2B4-CFE8-C30A-66E8-489651F0F34C}" = Adobe Media Player
      "{3A4E8896-C2E7-4084-A4A4-B8FD1894E739}" = Adobe XMP Panels CS4
      "{48C0DC5E-820A-44F2-890E-29B68EDD3C78}" = Windows Live Writer
      "{4943EFF5-229F-435D-BEA9-BE3CAEA783A7}" = Adobe Service Manager Extension
      "{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module
      "{56009CA3-423B-41F8-884A-E5B049534F15}" = Kaspersky Security Scan
      "{5D273F60-0525-48BA-A5FB-D0CAA4A952AE}" = Windows Live Movie Maker
      "{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
      "{63EC2120-1742-4625-AA47-C6A8AEC9C64C}" = Apple Application Support
      "{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module
      "{67F0E67A-8E93-4C2C-B29D-47C48262738A}" = Adobe Device Central CS4
      "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
      "{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
      "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
      "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
      "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
      "{77477AEA-5757-47D8-8B33-939F43D82218}" = Windows Live UX Platform Language Pack
      "{78A96B4C-A643-4D0F-98C2-A8E16A6669F9}" = Windows Live Messenger Companion Core
      "{78DAE910-CA72-450E-AD22-772CB1A00678}" = Windows Live Mesh
      "{7A5B4D34-7FB3-44E6-9DCC-4AF507700A1E}" = OpenOffice.org 3.4.1
      "{7D1C7B9F-2744-4388-B128-5C75B8BCCC84}" = Windows Live Essentials
      "{7D542452-84EB-47C0-97BA-735C523AB555}" = Garmin Training Center
      "{7DB9F1E5-9ACB-410D-A7DC-7A3D023CE045}" = Dell Getting Started Guide
      "{820D3F45-F6EE-4AAF-81EF-CE21FF21D230}" = Adobe Type Support CS4
      "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
      "{83877DB1-8B77-45BC-AB43-2BAC22E093E0}" = Adobe Bridge CS4
      "{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
      "{842B4B72-9E8F-4962-B3C1-1C422A5C4434}" = Suite Shared Configuration CS4
      "{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
      "{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
      "{8D8024F1-2945-49A5-9B78-5AB7B11D7942}_is1" = Auslogics Internet Optimizer
      "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
      "{8FF3891F-01B5-4A71-BFCD-20761890471C}" = Windows Live Messenger
      "{90120000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2007
      "{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90120000-0015-0C0A-0000-0000000FF1CE}" = Microsoft Office Access MUI (Spanish) 2007
      "{90120000-0015-0C0A-0000-0000000FF1CE}_PROPLUS_{D79E9128-A250-4155-BE90-2BE81DE0406A}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90120000-0016-0C0A-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Spanish) 2007
      "{90120000-0016-0C0A-0000-0000000FF1CE}_PROPLUS_{D79E9128-A250-4155-BE90-2BE81DE0406A}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90120000-0018-0C0A-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Spanish) 2007
      "{90120000-0018-0C0A-0000-0000000FF1CE}_PROPLUS_{D79E9128-A250-4155-BE90-2BE81DE0406A}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90120000-0019-0C0A-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Spanish) 2007
      "{90120000-0019-0C0A-0000-0000000FF1CE}_PROPLUS_{D79E9128-A250-4155-BE90-2BE81DE0406A}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90120000-001A-0C0A-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Spanish) 2007
      "{90120000-001A-0C0A-0000-0000000FF1CE}_PROPLUS_{D79E9128-A250-4155-BE90-2BE81DE0406A}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90120000-001B-0C0A-0000-0000000FF1CE}" = Microsoft Office Word MUI (Spanish) 2007
      "{90120000-001B-0C0A-0000-0000000FF1CE}_PROPLUS_{D79E9128-A250-4155-BE90-2BE81DE0406A}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90120000-001F-0403-0000-0000000FF1CE}" = Microsoft Office Proof (Catalan) 2007
      "{90120000-001F-0403-0000-0000000FF1CE}_PROPLUS_{BEADB115-DB47-4BD0-A9EC-AE585AFAB2D8}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
      "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
      "{90120000-001F-0409-0000-0000000FF1CE}_PROPLUS_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
      "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
      "{90120000-001F-040C-0000-0000000FF1CE}_PROPLUS_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
      "{90120000-001F-0416-0000-0000000FF1CE}" = Microsoft Office Proof (Portuguese (Brazil)) 2007
      "{90120000-001F-0416-0000-0000000FF1CE}_PROPLUS_{8A524694-0CA4-476A-9301-B1E9D70FC952}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
      "{90120000-001F-042D-0000-0000000FF1CE}" = Microsoft Office Proof (Basque) 2007
      "{90120000-001F-042D-0000-0000000FF1CE}_PROPLUS_{017A6981-5E03-4A97-830A-35FE0927BB7F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
      "{90120000-001F-0456-0000-0000000FF1CE}" = Microsoft Office Proof (Galician) 2007
      "{90120000-001F-0456-0000-0000000FF1CE}_PROPLUS_{A3A03B41-14EA-4E50-97D8-FCF429AE0CCB}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
      "{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
      "{90120000-001F-0C0A-0000-0000000FF1CE}_PROPLUS_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
      "{90120000-0020-0C0A-0000-0000000FF1CE}" = Paquete de compatibilidad para 2007 Office system
      "{90120000-002A-0000-1000-0000000FF1CE}_PROPLUS_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90120000-002A-0C0A-1000-0000000FF1CE}_PROPLUS_{430AE3E6-E982-4958-90FC-1C062BC74E22}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90120000-002C-0C0A-0000-0000000FF1CE}" = Microsoft Office Proofing (Spanish) 2007
      "{90120000-0044-0C0A-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Spanish) 2007
      "{90120000-0044-0C0A-0000-0000000FF1CE}_PROPLUS_{D79E9128-A250-4155-BE90-2BE81DE0406A}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90120000-006E-0C0A-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Spanish) 2007
      "{90120000-006E-0C0A-0000-0000000FF1CE}_PROPLUS_{430AE3E6-E982-4958-90FC-1C062BC74E22}" = Microsoft Office 2007 Service Pack 3 (SP3)
      "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
      "{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
      "{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
      "{939C80FA-96C9-44A6-B318-8E7D8BD8481B}" = Messenger Companion
      "{94D398EB-D2FD-4FD1-B8C4-592635E8A191}" = Adobe CMaps CS4
      "{95120000-00AF-0C0A-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (Spanish)
      "{95140000-007A-0C0A-0000-0000000FF1CE}" = Microsoft Office Outlook Connector
      "{96AD3B61-EAE2-11E2-9E72-B8AC6F98CCE3}" = Google Earth
      "{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}" = Visual Studio 2012 x86 Redistributables
      "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
      "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
      "{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
      "{9F74B6DE-B89C-4532-AFED-5AB0CCAAC1DF}_is1" = TCX Converter 2.0.24
      "{a0fe116e-9a8a-466f-aee0-625cb7c207e3}" = Microsoft Visual C++ 2005 Redistributable - KB2467175
      "{A20F162B-9C72-4093-9C15-8BCDF2D90D30}" = Snap.Do
      "{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
      "{A41A708E-3BE6-4561-855D-44027C1CF0F8}" = Windows Live Photo Common
      "{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
      "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
      "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
      "{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
      "{AC76BA86-7AD7-1034-7B44-AA1000000001}" = Adobe Reader X (10.1.8) - Español
      "{B29AD377-CC12-490A-A480-1452337C618D}" = Connect
      "{B3DAF54F-DB25-4586-9EF1-96D24BB14088}" = Windows Movie Maker 2.6
      "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
      "{B92C5909-1D37-4C51-8397-A28BB28E5DC3}" = Facebook Video Calling 1.2.0.287
      "{BB4E33EC-8181-4685-96F7-8554293DEC6A}" = Adobe Output Module
      "{C52E3EC1-048C-45E1-8D53-10B0C6509683}" = Adobe Default Language CS4
      "{CC75AB5C-2110-4A7F-AF52-708680D22FE8}" = Photoshop Camera Raw
      "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
      "{CFF8B8E8-E086-4DE0-935F-FE22CAB54F80}" = Microsoft Search Enhancement Pack
      "{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
      "{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
      "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
      "{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
      "{DDBB7C89-1A09-441E-AA0F-6AA465755C17}" = REALTEK DTV USB DEVICE
      "{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
      "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
      "{E28B1E6F-E0AA-4228-AB89-DB4A0C89D426}" = AVerTV
      "{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}" = Microsoft Office Suite Activation Assistant
      "{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
      "{E727A662-AF9F-4DEE-81C5-F4A1686F3DFC}" = Windows Live Writer Resources
      "{E85A4EFC-82F2-4CEE-8A8E-62FDAD353A66}" = Galería fotográfica de Windows Live
      "{EA6EB7D0-C920-4434-B43D-0DDD0AF8F497}" = Garmin MapSource
      "{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module
      "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10
      "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
      "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
      "{F0E64E2E-3A60-40D8-A55D-92F6831875DA}" = Adobe Search for Help
      "{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}" = Microsoft Office Live Add-in 1.5
      "{F8EF2B3F-C345-4F20-8FE4-791A20333CD5}" = Adobe ExtendScript Toolkit CS4
      "{F93C84A6-0DC6-42AF-89FA-776F7C377353}" = Adobe PDF Library Files CS4
      "{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}" = Visual Studio 2008 x64 Redistributables
      "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
      "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
      "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
      "aTube Catcher" = aTube Catcher
      "chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
      "com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
      "Google Chrome" = Google Chrome
      "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware versión 1.75.0.1300
      "MiPony" = MiPony 2.0.2
      "Mozilla Firefox 25.0.1 (x86 ca)" = Mozilla Firefox 25.0.1 (x86 ca)
      "MozillaMaintenanceService" = Mozilla Maintenance Service
      "Nero7_is1" = Nero 7.10.1.0
      "PROPLUS" = Microsoft Office Professional Plus 2007
      "TRU-Install" = TRU-Install
      "VLC media player" = VLC media player 2.0.4
      "WildTangent dell Master Uninstall" = Juegos WildTangent
      "WinLiveSuite" = Windows Live Essentials
      "WinRAR archiver" = Compresor WinRAR

      ========== HKEY_USERS Uninstall List ==========

      [HKEY_USERS\S-1-5-21-3673474698-1000241783-4157340767-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
      "BitTorrent" = BitTorrent

      ========== Last 20 Event Log Errors ==========

      [ Application Events ]
      Error - 05/12/2013 10:22:43 | Computer Name = Gas | Source = Microsoft-Windows-EapHost | ID = 2002
      Description = Omitiendo: error de validación de Eap method DLL path name. Error:
      typeId=17, authorId=9, vendorId=0, vendorType=0

      Error - 05/12/2013 10:22:43 | Computer Name = Gas | Source = Microsoft-Windows-EapHost | ID = 2002
      Description = Omitiendo: error de validación de Eap method DLL path name. Error:
      typeId=25, authorId=9, vendorId=0, vendorType=0

      Error - 05/12/2013 10:22:43 | Computer Name = Gas | Source = Microsoft-Windows-EapHost | ID = 2002
      Description = Omitiendo: error de validación de Eap method DLL path name. Error:
      typeId=43, authorId=9, vendorId=0, vendorType=0

      Error - 05/12/2013 18:11:21 | Computer Name = Gas | Source = Microsoft-Windows-EapHost | ID = 2002
      Description = Omitiendo: error de validación de Eap method DLL path name. Error:
      typeId=17, authorId=9, vendorId=0, vendorType=0

      Error - 05/12/2013 18:11:21 | Computer Name = Gas | Source = Microsoft-Windows-EapHost | ID = 2002
      Description = Omitiendo: error de validación de Eap method DLL path name. Error:
      typeId=25, authorId=9, vendorId=0, vendorType=0

      Error - 05/12/2013 18:11:21 | Computer Name = Gas | Source = Microsoft-Windows-EapHost | ID = 2002
      Description = Omitiendo: error de validación de Eap method DLL path name. Error:
      typeId=43, authorId=9, vendorId=0, vendorType=0

      Error - 06/12/2013 15:25:29 | Computer Name = Gas | Source = Microsoft-Windows-EapHost | ID = 2002
      Description = Omitiendo: error de validación de Eap method DLL path name. Error:
      typeId=17, authorId=9, vendorId=0, vendorType=0

      Error - 06/12/2013 15:25:29 | Computer Name = Gas | Source = Microsoft-Windows-EapHost | ID = 2002
      Description = Omitiendo: error de validación de Eap method DLL path name. Error:
      typeId=25, authorId=9, vendorId=0, vendorType=0

      Error - 06/12/2013 15:25:29 | Computer Name = Gas | Source = Microsoft-Windows-EapHost | ID = 2002
      Description = Omitiendo: error de validación de Eap method DLL path name. Error:
      typeId=43, authorId=9, vendorId=0, vendorType=0

      Error - 06/12/2013 15:54:47 | Computer Name = Gas | Source = Application Hang | ID = 1002
      Description = El programa OTL.exe, versión 3.2.69.0, dejó de interactuar con Windows
      y se cerró. Para ver si hay más información disponible acerca del problema, compruebe
      el historial de problemas en el panel de control Centro de actividades. Identificador
      de proceso: 135c Hora de inicio: 01cef2bc93c41a1e Hora de finalización: 0 Ruta de
      acceso de la aplicación: C:\Users\Agustí\Desktop\OTL.exe Identificador de informe:


      [ Media Center Events ]
      Error - 04/09/2012 17:07:46 | Computer Name = Gas | Source = MCUpdate | ID = 0
      Description = 23:07:46 - Error al conectarse a Internet. 23:07:46 - No se puede
      establecer contacto con el servidor..

      Error - 04/09/2012 17:07:56 | Computer Name = Gas | Source = MCUpdate | ID = 0
      Description = 23:07:51 - Error al conectarse a Internet. 23:07:51 - No se puede
      establecer contacto con el servidor..

      Error - 15/11/2012 18:59:02 | Computer Name = Gas | Source = MCUpdate | ID = 0
      Description = 23:59:02 - Error al conectarse a Internet. 23:59:02 - No se puede
      establecer contacto con el servidor..

      Error - 15/11/2012 19:59:37 | Computer Name = Gas | Source = MCUpdate | ID = 0
      Description = 0:59:37 - Error al conectarse a Internet. 0:59:37 - No se puede
      establecer contacto con el servidor..

      Error - 18/12/2012 14:06:42 | Computer Name = Gas | Source = MCUpdate | ID = 0
      Description = 19:06:42 - Error al conectarse a Internet. 19:06:42 - No se puede
      establecer contacto con el servidor..

      Error - 18/12/2012 14:07:20 | Computer Name = Gas | Source = MCUpdate | ID = 0
      Description = 19:07:11 - Error al conectarse a Internet. 19:07:11 - No se puede
      establecer contacto con el servidor..

      Error - 18/12/2012 15:07:51 | Computer Name = Gas | Source = MCUpdate | ID = 0
      Description = 20:07:51 - Error al conectarse a Internet. 20:07:51 - No se puede
      establecer contacto con el servidor..

      Error - 18/12/2012 15:08:22 | Computer Name = Gas | Source = MCUpdate | ID = 0
      Description = 20:08:20 - Error al conectarse a Internet. 20:08:20 - No se puede
      establecer contacto con el servidor..

      Error - 18/12/2012 1629 | Computer Name = Gas | Source = MCUpdate | ID = 0
      Description = 2129 - Error al conectarse a Internet. 2129 - No se puede
      establecer contacto con el servidor..

      Error - 18/12/2012 16:11:00 | Computer Name = Gas | Source = MCUpdate | ID = 0
      Description = 2158 - Error al conectarse a Internet. 2158 - No se puede
      establecer contacto con el servidor..

      [ OSession Events ]
      Error - 25/12/2011 19:57:13 | Computer Name = Gas | Source = Microsoft Office 12 Sessions | ID = 7001
      Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
      12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 6
      seconds with 0 seconds of active time. This session ended with a crash.

      Error - 26/12/2011 10:12:30 | Computer Name = Gas | Source = Microsoft Office 12 Sessions | ID = 7001
      Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
      12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 6
      seconds with 0 seconds of active time. This session ended with a crash.

      Error - 26/12/2011 10:13:10 | Computer Name = Gas | Source = Microsoft Office 12 Sessions | ID = 7001
      Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
      12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 5
      seconds with 0 seconds of active time. This session ended with a crash.

      Error - 26/12/2011 10:13:30 | Computer Name = Gas | Source = Microsoft Office 12 Sessions | ID = 7001
      Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
      12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 8
      seconds with 0 seconds of active time. This session ended with a crash.

      Error - 26/12/2011 10:21:13 | Computer Name = Gas | Source = Microsoft Office 12 Sessions | ID = 7001
      Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
      12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 5
      seconds with 0 seconds of active time. This session ended with a crash.

      Error - 26/12/2011 10:22:41 | Computer Name = Gas | Source = Microsoft Office 12 Sessions | ID = 7001
      Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
      12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 27
      seconds with 0 seconds of active time. This session ended with a crash.

      Error - 26/12/2011 12:15:41 | Computer Name = Gas | Source = Microsoft Office 12 Sessions | ID = 7001
      Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
      12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 22
      seconds with 0 seconds of active time. This session ended with a crash.

      Error - 26/12/2011 20:22:24 | Computer Name = Gas | Source = Microsoft Office 12 Sessions | ID = 7001
      Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
      12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 4
      seconds with 0 seconds of active time. This session ended with a crash.

      Error - 29/12/2011 22:11:29 | Computer Name = Gas | Source = Microsoft Office 12 Sessions | ID = 7001
      Description = ID: 3, Application Name: Microsoft Office PowerPoint, Application
      Version: 12.0.6600.1000, Microsoft Office Version: 12.0.6425.1000. This session
      lasted 28 seconds with 0 seconds of active time. This session ended with a crash.

      Error - 25/08/2012 16:09:51 | Computer Name = Gas | Source = Microsoft Office 12 Sessions | ID = 7001
      Description = ID: 3, Application Name: Microsoft Office PowerPoint, Application
      Version: 12.0.6600.1000, Microsoft Office Version: 12.0.6612.1000. This session
      lasted 18285 seconds with 3720 seconds of active time. This session ended with
      a crash.

      [ System Events ]
      Error - 04/12/2013 16:38:37 | Computer Name = Gas | Source = DCOM | ID = 10010
      Description =

      Error - 05/12/2013 10:22:45 | Computer Name = Gas | Source = Service Control Manager | ID = 7023
      Description = El servicio Akamai NetSession Interface se cerró con el siguiente
      error: %%126

      Error - 05/12/2013 10:22:54 | Computer Name = Gas | Source = Service Control Manager | ID = 7026
      Description = El siguiente controlador de inicio del sistema o de inicio del arranque
      no se cargó correctamente: vflt

      Error - 05/12/2013 10:24:55 | Computer Name = Gas | Source = Service Control Manager | ID = 7001
      Description = El servicio Enumerador de bus IP PnP-X depende del servicio Host de
      proveedor de detección de función, el cual no pudo iniciarse debido al siguiente
      error: %%1058

      Error - 05/12/2013 18:11:25 | Computer Name = Gas | Source = Service Control Manager | ID = 7023
      Description = El servicio Akamai NetSession Interface se cerró con el siguiente
      error: %%126

      Error - 05/12/2013 18:11:45 | Computer Name = Gas | Source = Service Control Manager | ID = 7026
      Description = El siguiente controlador de inicio del sistema o de inicio del arranque
      no se cargó correctamente: vflt

      Error - 05/12/2013 18:13:46 | Computer Name = Gas | Source = Service Control Manager | ID = 7001
      Description = El servicio Enumerador de bus IP PnP-X depende del servicio Host de
      proveedor de detección de función, el cual no pudo iniciarse debido al siguiente
      error: %%1058

      Error - 06/12/2013 15:25:32 | Computer Name = Gas | Source = Service Control Manager | ID = 7023
      Description = El servicio Akamai NetSession Interface se cerró con el siguiente
      error: %%126

      Error - 06/12/2013 15:25:57 | Computer Name = Gas | Source = Service Control Manager | ID = 7026
      Description = El siguiente controlador de inicio del sistema o de inicio del arranque
      no se cargó correctamente: vflt

      Error - 06/12/2013 15:27:58 | Computer Name = Gas | Source = Service Control Manager | ID = 7001
      Description = El servicio Enumerador de bus IP PnP-X depende del servicio Host de
      proveedor de detección de función, el cual no pudo iniciarse debido al siguiente
      error: %%1058


      < End of report >

    6. #6
      Usuario Avatar de Agustí Gas
      Registrado
      dic 2008
      Ubicación
      Castellón
      Mensajes
      16

      Re: Desinstalar Nation Zoom

      aquí va el otro,


      OTL logfile created on: 06/12/2013 20:59:03 - Run 1
      OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Agustí\Desktop
      64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
      Internet Explorer (Version = 9.11.9600.16428)
      Locale: 00000403 | Country: España | Language: CAT | Date Format: dd/MM/yyyy

      2,96 Gb Total Physical Memory | 1,90 Gb Available Physical Memory | 64,04% Memory free
      5,92 Gb Paging File | 4,50 Gb Available in Paging File | 75,98% Paging File free
      Paging file location(s): ?:\pagefile.sys [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
      Drive C: | 218,20 Gb Total Space | 59,01 Gb Free Space | 27,04% Space Free | Partition Type: NTFS

      Computer Name: GAS | User Name: Agustí | Logged in as Administrator.
      Boot Mode: Normal | Scan Mode: All users
      Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: Off | File Age = 30 Days

      ========== Processes (All) ==========

      PRC - C:\Users\Agustí\Desktop\OTL.exe (OldTimer Tools)
      PRC - C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe (AVG Technologies CZ, s.r.o.)
      PRC - C:\Program Files (x86)\AVG\AVG2014\avgui.exe (AVG Technologies CZ, s.r.o.)
      PRC - C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
      PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
      PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
      PRC - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe (Skype Technologies S.A.)
      PRC - C:\Users\Agustí\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
      PRC - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
      PRC - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe (Kaspersky Lab ZAO)
      PRC - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (Microsoft Corporation)
      PRC - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
      PRC - C:\Program Files\Dell\DellDock\DockLogin.exe (Stardock Corporation)


      ========== Modules (No Company Name) ==========

      MOD - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\qtscript4.dll ()
      MOD - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\qtgui4.dll ()
      MOD - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\qtnetwork4.dll ()
      MOD - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\qtsql4.dll ()
      MOD - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\qtdeclarative4.dll ()
      MOD - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\qtcore4.dll ()


      ========== Services (SafeList) ==========

      SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
      SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
      SRV - (AVGIDSAgent) -- C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe (AVG Technologies CZ, s.r.o.)
      SRV - (avgwd) -- C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
      SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
      SRV - (MBAMService) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
      SRV - (MBAMScheduler) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
      SRV - (Skype C2C Service) -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe (Skype Technologies S.A.)
      SRV - (SkypeUpdate) -- C:\Program Files (x86)\Skype\Updater\Updater.exe (Skype Technologies)
      SRV - (KSS) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe (Kaspersky Lab ZAO)
      SRV - (GameConsoleService) -- C:\Program Files (x86)\WildTangent\Dell Games\Dell Game Console\GameConsoleService.exe (WildTangent, Inc.)
      SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
      SRV - (ACDaemon) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
      SRV - (STacSV) -- C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\STacSV64.exe (IDT, Inc.)
      SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)


      ========== Driver Services (SafeList) ==========

      DRV - (RTL2832UUSB) -- C:\Windows\SysWOW64\drivers\RTL2832UUSB.sys (REALTEK SEMICONDUCTOR Corp.)
      DRV - (RTL2832UBDA) -- C:\Windows\SysWOW64\drivers\RTL2832UBDA.sys (REALTEK SEMICONDUCTOR Corp.)
      DRV - (RTL2832U_IRHID) -- C:\Windows\SysWOW64\drivers\RTL2832U_IRHID.sys (Realtek)
      DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)
      DRV - (swmsflt) -- C:\Windows\SysWOW64\drivers\swmsflt.sys ()


      ========== Standard Registry (SafeList) ==========


      ========== Internet Explorer ==========

      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Google
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = Google
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search bar = Internet Explorer 6 Search Companion is no longer supported.
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.nationzoom.com/web/?type=ds&ts=1385927476&from=tugs&uid=SAMSUNGXHM250HI_S1YKJU0SC34485C34485&q={searchTerms}
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = Reg Error: Value error.
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = Google
      IE - HKLM\..\SearchScopes,DefaultScope =
      IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


      IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
      IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
      IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

      IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

      IE - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Google
      IE - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = Descubre tu nuevo navegador
      IE - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = Google
      IE - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
      IE - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = Google
      IE - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = Google
      IE - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\..\SearchScopes,DefaultScope =
      IE - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR
      IE - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
      IE - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = mcgrawhill

      ========== FireFox ==========

      FF - prefs.js..browser.search.defaultenginename: "nationzoom"
      FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&ilc=12&type=714647"
      FF - prefs.js..browser.search.selectedEngine: "nationzoom"
      FF - prefs.js..browser.search.useDBForOrder: "false"
      FF - prefs.js..browser.startup.homepage: "http://www.google.es/"
      FF - prefs.js..extensions.enabledAddons: %7Be001c731-5e37-4538-a5cb-8168736a2360%7D:0.9.9.119
      FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:25.0.1
      FF - user.js - File not found

      FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll ()
      FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
      FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin: C:\Program Files (x86)\Java\jre6\bin\dtplugin\npDeployJava1.dll File not found
      FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre1.6.0_20\bin\new_plugin\npjp2.dll File not found
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
      FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.3: C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5: C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@oberon-media.com/ONCAdapter: C:\Program Files (x86)\Common Files\Oberon Media\NCAdapter\1.0.0.7\npapicomadapter.dll (Oberon-Media )
      FF - HKLM\Software\MozillaPlugins\@playstation.com/PsndlCheck,version=1.00: File not found
      FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=12.0.1.669: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
      FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.669: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.4: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
      FF - HKLM\Software\MozillaPlugins\@zylom.com/ZylomGamesPlayer: C:\Users\Agustí\AppData\Roaming\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll (Zylom)
      FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
      FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\Agustí\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)

      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/11/06 06:33:06 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/11/06 06:33:07 | 000,000,000 | ---D | M]

      [2012/10/29 21:22:50 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Agustí\AppData\Roaming\Mozilla\Extensions
      [2013/12/03 17:22:09 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Agustí\AppData\Roaming\Mozilla\Firefox\Profiles\t933p114.default\extensions
      [2012/12/10 18:52:44 | 000,000,000 | ---D | M] (Bitdefender QuickScan) -- C:\Users\Agustí\AppData\Roaming\Mozilla\Firefox\Profiles\t933p114.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}
      [2013/10/09 21:31:08 | 000,915,554 | ---- | M] () (No name found) -- C:\Users\Agustí\AppData\Roaming\Mozilla\Firefox\Profiles\t933p114.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
      [2010/10/30 07:33:33 | 000,001,832 | ---- | M] () -- C:\Users\Agustí\AppData\Roaming\Mozilla\Firefox\Profiles\t933p114.default\searchplugins\bing.xml
      [2013/08/03 05:46:15 | 000,006,350 | ---- | M] () -- C:\Users\Agustí\AppData\Roaming\Mozilla\Firefox\Profiles\t933p114.default\searchplugins\Google.xml
      [2013/09/11 05:04:07 | 000,000,921 | ---- | M] () -- C:\Users\Agustí\AppData\Roaming\Mozilla\Firefox\Profiles\t933p114.default\searchplugins\yahoo.xml
      [2013/11/21 06:59:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
      [2013/11/06 06:33:06 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
      [2013/11/06 06:33:06 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
      [2013/11/06 06:33:06 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
      [2013/11/06 06:33:05 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
      [2013/11/15 2250 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
      File not found (No name found) -- C:\USERS\AGUSTÃ*\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T933P114.DEFAULT\EXTENSIONS\{E001C731-5E37-4538-A5CB-8168736A2360}
      [2013/12/01 20:51:18 | 000,000,565 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\nationzoom.xml

      ========== Chrome ==========

      CHR - default_search_provider: Google (Enabled)
      CHR - default_search_provider: search_url = http://www.google.com/search?q={searchTerms}
      CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms},
      CHR - Extension: Google Wallet = C:\Users\Agustí\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_1\
      CHR - Extension: Google Wallet = C:\Users\Agustí\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_1\

      O1 HOSTS File: ([2013/12/03 20:26:29 | 000,000,000 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
      O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No CLSID value found.
      O3 - HKLM\..\Toolbar: (no name) - {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} - No CLSID value found.
      O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
      O3 - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
      O3 - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\..\Toolbar\WebBrowser: (no name) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No CLSID value found.
      O3 - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\..\Toolbar\WebBrowser: (no name) - {9C905B42-976E-43C1-BC30-FC5937017909} - No CLSID value found.
      O3 - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\..\Toolbar\WebBrowser: (no name) - {AC6FAD42-419E-4F3A-ABDE-1BC6CE916B7D} - No CLSID value found.
      O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
      O4 - HKLM..\Run: [AVG_UI] C:\Program Files (x86)\AVG\AVG2014\avgui.exe (AVG Technologies CZ, s.r.o.)
      O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
      O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
      O4 - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000..\Run: [Facebook Update] C:\Users\Agustí\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
      O4 - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000..\Run: [KSS] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe (Kaspersky Lab ZAO)
      O4 - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE (SUPERAntiSpyware)
      O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
      O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
      O4 - Startup: C:\Users\Agustí\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
      O4 - Startup: C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock.lnk = File not found
      O4 - Startup: C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
      O4 - Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk = File not found
      O4 - Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk = File not found
      O4 - Startup: C:\Users\Elisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 3
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
      O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 3
      O7 - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0
      O8 - Extra context menu item: Ajouter à un fichier PDF existant - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html File not found
      O8 - Extra context menu item: Ajouter la cible du lien à un fichier PDF existant - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html File not found
      O8 - Extra context menu item: Convertir au format Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html File not found
      O8 - Extra context menu item: Convertir la cible du lien au format Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html File not found
      O8 - Extra context menu item: Descargar con Mipony - C:\Program Files (x86)\MiPony\Browser\IEContext.htm ()
      O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office10\EXCEL.EXE/3000 File not found
      O8 - Extra context menu item: Enviar a &Bluetooth - C:\Program Files (x86)\btsendto_ie_ctx.htm File not found
      O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html File not found
      O13 - gopher Prefix: missing
      O16 - DPF: {61FA0CB0-0806-46EA-B784-0F843285BA23} http://estaticosak1.tuenti.com/clien...ader.31740.cab (TuentiFotoUploader Control)
      O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/ge...nt/swflash.cab (Shockwave Flash Object)
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{4FADD7E9-1DFB-4CFC-9DF9-2A80F41B88E8}: DhcpNameServer = 192.168.1.1
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{83EB2203-053A-4049-B3E2-2CA907AAE333}: DhcpNameServer = 192.168.1.1
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9C56F1B2-BCCB-45F2-B91F-9E6146EC5DDA}: NameServer = 212.73.32.3 212.73.32.67
      O18 - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
      O18 - Protocol\Handler\msdaipp\oledb - No CLSID value found
      O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
      O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
      O20 - AppInit_DLLs: (c:\progra~2\optimi~1\optpro~1.dll) - File not found
      O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
      O21 - SSODL: IconPackager Repair - {1799460C-0BC8-4865-B9DF-4A36CD703FF0} - C:\Program Files (x86)\Stardock\Object Desktop\IconPackager\iprepair.dll (Stardock.net, Inc)
      O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O32 - HKLM CDRom: AutoRun - 1
      O32 - AutoRun File - [2013/12/03 20:26:29 | 000,000,000 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
      O32 - AutoRun File - [2011/11/16 03:40:11 | 000,000,000 | ---D | M] - C:\Autorun.inf -- [ NTFS ]
      O33 - MountPoints2\{748e2895-3791-11e0-9e4f-0026b91c853b}\Shell - "" = AutoRun
      O33 - MountPoints2\{84c2eaa6-f830-11e0-8672-0026b91c853b}\Shell - "" = AutoRun
      O33 - MountPoints2\{9ac89c3a-1844-11e0-b079-0026b91c853b}\Shell - "" = AutoRun
      O33 - MountPoints2\{c3348e56-ed0c-11df-b158-0026b91c853b}\Shell - "" = AutoRun
      O34 - HKLM BootExecute: (autocheck autochk *)
      O35 - HKLM\..comfile [open] -- "%1" %*
      O35 - HKLM\..exefile [open] -- "%1" %*
      O37 - HKLM\...com [@ = comfile] -- "%1" %*
      O37 - HKLM\...exe [@ = exefile] -- "%1" %*
      O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
      O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
      O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)


      MsConfig:64bit - StartUpReg: BitTorrent - hkey= - key= - C:\Program Files (x86)\BitTorrent\BitTorrent.exe (BitTorrent Inc.)
      MsConfig:64bit - StartUpReg: Dell Webcam Central - hkey= - key= - C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe (Creative Technology Ltd)
      MsConfig:64bit - StartUpReg: Desktop Disc Tool - hkey= - key= - File not found
      MsConfig:64bit - StartUpReg: Malwarebytes' Anti-Malware - hkey= - key= - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
      MsConfig:64bit - StartUpReg: QuickSet - hkey= - key= - File not found
      MsConfig:64bit - StartUpReg: Skype - hkey= - key= - C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Technologies S.A.)
      MsConfig:64bit - StartUpReg: SugarSync - hkey= - key= - File not found
      MsConfig:64bit - StartUpReg: SUPERAntiSpyware - hkey= - key= - File not found
      MsConfig:64bit - StartUpReg: swg - hkey= - key= - File not found
      MsConfig:64bit - StartUpReg: SysTrayApp - hkey= - key= - C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
      MsConfig:64bit - State: "startup" - Reg Error: Key error.

      CREATERESTOREPOINT
      Restore point Set: OTL Restore Point

      ========== Files/Folders - Created Within 30 Days ==========

      [2013/12/06 20:41:41 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Agustí\Desktop\OTL.exe
      [2013/12/03 20:24:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Wise Installation Wizard
      [2013/11/27 15:48:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
      [2013/11/22 10:42:30 | 000,000,000 | ---D | C] -- C:\Users\Agustí\AppData\Local\{B5F6DC6F-48B6-4BF2-91D6-8CF95DC7E4F8}
      [2013/11/11 23:56:28 | 000,000,000 | ---D | C] -- C:\Users\Agustí\Desktop\Mitja Castelló 2.013
      [2013/11/10 15:51:44 | 000,000,000 | ---D | C] -- C:\Users\Agustí\AppData\Local\{F081BEBF-4C79-4E19-B865-65A7C00AAC4D}
      [2013/11/07 08:44:37 | 000,000,000 | ---D | C] -- C:\Users\Agustí\musica per a correr
      [2013/11/07 07:42:05 | 000,000,000 | ---D | C] -- C:\Users\Agustí\aTubeCatcher
      [2013/11/07 07:39:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher
      [2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

      ========== Files - Modified Within 30 Days ==========

      [2013/12/06 21:01:10 | 008,650,752 | -HS- | M] () -- C:\Users\Agustí\ntuser.dat
      [2013/12/06 20:41:44 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Agustí\Desktop\OTL.exe
      [2013/12/06 20:39:56 | 000,001,100 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
      [2013/12/06 20:26:15 | 000,001,096 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
      [2013/12/06 20:25:30 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
      [2013/12/06 20:25:26 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
      [2013/12/06 00:08:00 | 000,000,838 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
      [2013/12/05 15:59:47 | 000,002,143 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
      [2013/12/05 15:51:43 | 000,000,932 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3673474698-1000241783-4157340767-1000UA.job
      [2013/12/04 21:38:32 | 002,267,897 | -H-- | M] () -- C:\Users\Agustí\AppData\Local\IconCache.db
      [2013/12/03 20:26:29 | 000,000,000 | ---- | M] () -- C:\autoexec.bat
      [2013/12/03 17:34:29 | 000,016,284 | ---- | M] () -- C:\Windows\SysWow64\ieuinit.inf
      [2013/12/03 17:18:09 | 000,001,113 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
      [2013/12/03 14:40:22 | 000,000,983 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
      [2013/11/28 00:43:01 | 000,000,910 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3673474698-1000241783-4157340767-1000Core.job
      [2013/11/27 15:48:37 | 000,000,943 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2014.lnk
      [2013/11/22 10:31:43 | 000,033,654 | ---- | M] () -- C:\Users\Agustí\Desktop\mdolores.jpg.png
      [2013/11/22 09:57:49 | 000,120,528 | ---- | M] () -- C:\Users\Agustí\Desktop\Sin título.png
      [2013/11/07 07:40:24 | 000,002,082 | ---- | M] () -- C:\Users\Public\Desktop\Video Search.lnk
      [2013/11/07 07:40:20 | 000,001,152 | ---- | M] () -- C:\Users\Public\Desktop\aTube Catcher.lnk
      [2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

      ========== Files Created - No Company Name ==========

      [2013/12/03 20:26:29 | 000,000,000 | ---- | C] () -- C:\autoexec.bat
      [2013/12/03 17:34:29 | 000,016,284 | ---- | C] () -- C:\Windows\SysWow64\ieuinit.inf
      [2013/11/22 10:31:43 | 000,033,654 | ---- | C] () -- C:\Users\Agustí\Desktop\mdolores.jpg.png
      [2013/11/22 09:57:48 | 000,120,528 | ---- | C] () -- C:\Users\Agustí\Desktop\Sin título.png
      [2013/11/07 07:40:20 | 000,001,152 | ---- | C] () -- C:\Users\Public\Desktop\aTube Catcher.lnk
      [2013/09/29 11:02:51 | 000,001,701 | ---- | C] () -- C:\Program Files (x86)\Mozilla Firefoxnation-secure-search.xml
      [2013/02/17 21:36:49 | 002,267,897 | -H-- | C] () -- C:\Users\Agustí\AppData\Local\IconCache.db
      [2012/07/09 04:55:37 | 000,524,288 | -HS- | C] () -- C:\Users\Agustí\ntuser.dat{cb7c5b79-c979-11e1-a01c-0026b91c853b}.TMContainer00000000000000000002.regtrans-ms
      [2012/07/09 04:55:37 | 000,524,288 | -HS- | C] () -- C:\Users\Agustí\ntuser.dat{cb7c5b79-c979-11e1-a01c-0026b91c853b}.TMContainer00000000000000000001.regtrans-ms
      [2012/07/09 04:55:37 | 000,065,536 | -HS- | C] () -- C:\Users\Agustí\ntuser.dat{cb7c5b79-c979-11e1-a01c-0026b91c853b}.TM.blf
      [2012/06/24 14:55:06 | 000,524,288 | -HS- | C] () -- C:\Users\Agustí\ntuser.dat{fbfdbaab-bdfb-11e1-a065-0026b91c853b}.TMContainer00000000000000000002.regtrans-ms
      [2012/06/24 14:55:06 | 000,524,288 | -HS- | C] () -- C:\Users\Agustí\ntuser.dat{fbfdbaab-bdfb-11e1-a065-0026b91c853b}.TMContainer00000000000000000001.regtrans-ms
      [2012/06/24 14:55:06 | 000,065,536 | -HS- | C] () -- C:\Users\Agustí\ntuser.dat{fbfdbaab-bdfb-11e1-a065-0026b91c853b}.TM.blf
      [2012/05/29 20:34:15 | 000,524,288 | -HS- | C] () -- C:\Users\Agustí\ntuser.dat{937dc462-a9c2-11e1-a8b4-0026b91c853b}.TMContainer00000000000000000002.regtrans-ms
      [2012/05/29 20:34:15 | 000,524,288 | -HS- | C] () -- C:\Users\Agustí\ntuser.dat{937dc462-a9c2-11e1-a8b4-0026b91c853b}.TMContainer00000000000000000001.regtrans-ms
      [2012/05/29 20:34:15 | 000,065,536 | -HS- | C] () -- C:\Users\Agustí\ntuser.dat{937dc462-a9c2-11e1-a8b4-0026b91c853b}.TM.blf
      [2011/07/22 14:51:59 | 000,524,288 | -HS- | C] () -- C:\Users\Agustí\ntuser.dat{95dd1a72-b469-11e0-8020-0026b91c853b}.TMContainer00000000000000000002.regtrans-ms
      [2011/07/22 14:51:59 | 000,524,288 | -HS- | C] () -- C:\Users\Agustí\ntuser.dat{95dd1a72-b469-11e0-8020-0026b91c853b}.TMContainer00000000000000000001.regtrans-ms
      [2011/07/22 14:51:59 | 000,065,536 | -HS- | C] () -- C:\Users\Agustí\ntuser.dat{95dd1a72-b469-11e0-8020-0026b91c853b}.TM.blf
      [2011/03/22 23:04:33 | 000,000,000 | ---- | C] () -- C:\Users\Agustí\AppData\Roaming\wklnhst.dat
      [2010/09/20 15:41:08 | 000,153,088 | ---- | C] () -- C:\Program Files (x86)\UNWISE.EXE
      [2010/02/20 16:22:40 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
      [2010/01/29 19:56:31 | 000,079,096 | ---- | C] () -- C:\Users\Agustí\AppData\Roaming\GDIPFONTCACHEV1.DAT
      [2010/01/26 23:02:59 | 000,011,776 | ---- | C] () -- C:\Users\Agustí\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
      [2010/01/25 22:43:55 | 000,118,096 | ---- | C] () -- C:\Users\Agustí\AppData\Local\GDIPFONTCACHEV1.DAT
      [2010/01/25 22:43:43 | 000,524,288 | -HS- | C] () -- C:\Users\Agustí\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000002.regtrans-ms
      [2010/01/25 22:43:43 | 000,524,288 | -HS- | C] () -- C:\Users\Agustí\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000001.regtrans-ms
      [2010/01/25 22:43:43 | 000,065,536 | -HS- | C] () -- C:\Users\Agustí\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TM.blf
      [2010/01/25 22:43:43 | 000,000,020 | -HS- | C] () -- C:\Users\Agustí\ntuser.ini
      [2010/01/25 22:43:42 | 008,650,752 | -HS- | C] () -- C:\Users\Agustí\ntuser.dat

      ========== ZeroAccess Check ==========

      [2009/07/14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

      [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

      [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

      [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

      [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
      "" = C:\Windows\SysNative\shell32.dll -- [2013/07/26 03:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
      "" = %SystemRoot%\system32\shell32.dll -- [2013/07/26 02:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
      "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
      "" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 13:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
      "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Both

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

      ========== LOP Check ==========

      [2012/01/16 12:40:49 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\Auslogics
      [2013/01/14 15:21:27 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\AVG
      [2010/12/28 11:02:46 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\AVG10
      [2013/10/04 13:22:28 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\AVG2014
      [2013/12/04 21:38:35 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\BitTorrent
      [2012/08/24 15:00:03 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\BSplayer
      [2012/06/17 00:25:37 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\BSplayer Pro
      [2013/10/09 22:59:57 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\Carnival Software
      [2011/05/07 00:21:09 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\GARMIN
      [2011/12/29 04:33:32 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\GetRightToGo
      [2012/01/06 05:39:06 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\GlarySoft
      [2013/12/02 21:43:17 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\Mipony
      [2011/02/10 05:20:59 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\mojosoft
      [2011/01/13 12:51:16 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\OpenOffice.org
      [2011/12/29 04:13:24 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\Panda Security
      [2013/12/02 14:33:11 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\QuickScan
      [2012/01/13 16:53:19 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\RegistryKeys
      [2011/02/13 16:34:33 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\Sierra Wireless
      [2012/03/06 14:56:03 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\Sony
      [2012/03/06 15:11:09 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\Sony Network Entertainment International LLC
      [2011/05/11 08:15:25 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\TCXConverter
      [2010/12/24 09:34:09 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\Telefónica
      [2011/02/13 16:41:48 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\Telefónica Móviles
      [2011/03/22 23:04:35 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\Template
      [2013/04/10 19:59:14 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\TuneUp Software
      [2010/11/10 21:59:04 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\Vodafone
      [2010/01/26 16:07:33 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\WildTangent
      [2010/01/26 16:54:23 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\Windows Live Writer
      [2011/04/02 03:36:16 | 000,000,000 | ---D | M] -- C:\Users\Agustí\AppData\Roaming\Zylom
      [2013/10/10 11:52:13 | 000,000,000 | ---D | M] -- C:\Users\David\AppData\Roaming\AVG2014
      [2012/08/09 15:21:17 | 000,000,000 | ---D | M] -- C:\Users\David\AppData\Roaming\BSplayer
      [2012/08/01 18:46:19 | 000,000,000 | ---D | M] -- C:\Users\David\AppData\Roaming\Mipony
      [2012/09/11 21:37:40 | 000,000,000 | ---D | M] -- C:\Users\David\AppData\Roaming\OpenOffice.org
      [2013/08/02 11:41:45 | 000,000,000 | ---D | M] -- C:\Users\David\AppData\Roaming\PearlMountain
      [2013/12/05 23:13:50 | 000,000,000 | ---D | M] -- C:\Users\David\AppData\Roaming\Spotify
      [2012/06/19 21:54:18 | 000,000,000 | ---D | M] -- C:\Users\David\AppData\Roaming\TuneUp Software
      [2013/02/09 17:47:01 | 000,000,000 | ---D | M] -- C:\Users\David\AppData\Roaming\WildTangent
      [2012/05/31 11:33:47 | 000,000,000 | ---D | M] -- C:\Users\David\AppData\Roaming\Xuletas.es
      [2012/11/08 22:32:25 | 000,000,000 | ---D | M] -- C:\Users\Default\AppData\Roaming\TuneUp Software
      [2012/11/08 22:32:25 | 000,000,000 | ---D | M] -- C:\Users\Default User\AppData\Roaming\TuneUp Software
      [2013/01/16 09:23:48 | 000,000,000 | ---D | M] -- C:\Users\Elisa\AppData\Roaming\AVG
      [2013/10/05 08:56:08 | 000,000,000 | ---D | M] -- C:\Users\Elisa\AppData\Roaming\AVG2014
      [2012/09/24 18:54:18 | 000,000,000 | ---D | M] -- C:\Users\Elisa\AppData\Roaming\OpenOffice.org
      [2013/12/05 15:29:04 | 000,000,000 | ---D | M] -- C:\Users\Elisa\AppData\Roaming\Spotify
      [2013/04/12 19:09:43 | 000,000,000 | ---D | M] -- C:\Users\Elisa\AppData\Roaming\TuneUp Software
      [2013/10/11 16:41:06 | 000,000,000 | ---D | M] -- C:\Users\Elisa\AppData\Roaming\VSee
      [2013/10/11 16:38:31 | 000,000,000 | ---D | M] -- C:\Users\Elisa\AppData\Roaming\VSeeInstall

      ========== Purity Check ==========



      ========== Custom Scans ==========

      < %SYSTEMDRIVE%\*.* >
      [2012/01/16 12:41:40 | 000,000,000 | ---- | M] () -- C:\0x0304A000.sfl
      [2013/02/16 15:15:52 | 000,073,609 | ---- | M] () -- C:\AdwCleaner[R1].txt
      [2013/08/04 05:54:31 | 000,036,996 | ---- | M] () -- C:\AdwCleaner[S1].txt
      [2013/12/03 20:26:29 | 000,000,000 | ---- | M] () -- C:\autoexec.bat
      [2010/02/07 11:56:51 | 000,000,212 | ---- | M] () -- C:\BcBtRmv.log
      [2010/01/16 12:02:40 | 000,003,284 | ---- | M] () -- C:\dell.sdr
      [2007/11/07 08:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1028.txt
      [2007/11/07 08:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1031.txt
      [2007/11/07 08:00:40 | 000,010,134 | ---- | M] () -- C:\eula.1033.txt
      [2007/11/07 08:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1036.txt
      [2007/11/07 08:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1040.txt
      [2007/11/07 08:00:40 | 000,000,118 | ---- | M] () -- C:\eula.1041.txt
      [2007/11/07 08:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1042.txt
      [2007/11/07 08:00:40 | 000,017,734 | ---- | M] () -- C:\eula.2052.txt
      [2007/11/07 08:00:40 | 000,017,734 | ---- | M] () -- C:\eula.3082.txt
      [2007/11/07 08:00:40 | 000,001,110 | ---- | M] () -- C:\globdata.ini
      [2007/11/07 08:44:20 | 000,855,040 | ---- | M] (Microsoft Corporation) -- C:\install.exe
      [2007/11/07 08:00:40 | 000,000,843 | ---- | M] () -- C:\install.ini
      [2011/03/23 04:31:02 | 000,000,181 | ---- | M] () -- C:\INSTALL.LOG
      [2007/11/07 08:44:20 | 000,075,280 | ---- | M] (Microsoft Corporation) -- C:\install.res.1028.dll
      [2007/11/07 08:44:20 | 000,095,248 | ---- | M] (Microsoft Corporation) -- C:\install.res.1031.dll
      [2007/11/07 08:44:20 | 000,090,128 | ---- | M] (Microsoft Corporation) -- C:\install.res.1033.dll
      [2007/11/07 08:44:20 | 000,096,272 | ---- | M] (Microsoft Corporation) -- C:\install.res.1036.dll
      [2007/11/07 08:44:20 | 000,094,224 | ---- | M] (Microsoft Corporation) -- C:\install.res.1040.dll
      [2007/11/07 08:44:20 | 000,080,400 | ---- | M] (Microsoft Corporation) -- C:\install.res.1041.dll
      [2007/11/07 08:44:20 | 000,078,864 | ---- | M] (Microsoft Corporation) -- C:\install.res.1042.dll
      [2007/11/07 08:44:20 | 000,074,768 | ---- | M] (Microsoft Corporation) -- C:\install.res.2052.dll
      [2007/11/07 08:44:20 | 000,095,248 | ---- | M] (Microsoft Corporation) -- C:\install.res.3082.dll
      [2006/12/02 06:37:14 | 000,904,704 | ---- | M] (Microsoft Corporation) -- C:\msdia80.dll
      [2013/12/06 20:25:23 | 3180,179,456 | -HS- | M] () -- C:\pagefile.sys
      [2011/10/19 00:48:09 | 000,000,361 | ---- | M] () -- C:\rkill.log
      [2012/11/06 18:27:22 | 000,002,120 | ---- | M] () -- C:\scu.dat
      [2010/12/14 06:03:32 | 000,154,544 | ---- | M] () -- C:\sopcast.bmp
      [2011/11/16 03:40:14 | 027,968,522 | ---- | M] () -- C:\UsbFix_Upload_Me_GAS.zip
      [2007/11/07 08:00:40 | 000,005,686 | ---- | M] () -- C:\vcredist.bmp
      [2007/11/07 07:09:22 | 001,442,522 | ---- | M] () -- C:\VC_RED.cab
      [2007/11/07 07:12:28 | 000,232,960 | ---- | M] () -- C:\VC_RED.MSI

      ========== Alternate Data Streams ==========

      @Alternate Data Stream - 95 bytes -> C:\ProgramData\TEMP:5C321E34
      @Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:D1B5B4F1

      < End of report >

    7. #7
      Moderadora
      Avatar de @Daniela
      Registrado
      abr 2011
      Ubicación
      España
      Mensajes
      9.410

      Re: Desinstalar Nation Zoom

      Hola

      Realiza los siguientes pasos:

      MUY Importante ~ Realiza una copia de seguridad del registro con >> Erunt.

      Después ejecuta de nuevo OTL.exe

      Copia y Pega el código que está dentro del recuadro de abajo en la sección Análisis Personalizado / Código de Reparación.

      Código:
      :OTL
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search bar = Internet Explorer 6 Search Companion is no longer supported.
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.nationzoom.com/web/?type=ds&ts=1385927476&from=tugs&uid=SAMSUNGXHM250HI_S1YKJU0SC34485C34485&q={searchTerms}
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = Reg Error: Value error.
      IE - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = mcgrawhill
      FF - prefs.js..browser.search.defaultenginename: "nationzoom"
      FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&ilc=12&type=714647"
      FF - prefs.js..browser.search.selectedEngine: "nationzoom"
      FF - prefs.js..browser.search.useDBForOrder: "false"
      FF - user.js - File not found
      FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin: C:\Program Files (x86)\Java\jre6\bin\dtplugin\npDeployJava1.dll File not found
      FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre1.6.0_20\bin\new_plugin\npjp2.dll File not found
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
      FF - HKLM\Software\MozillaPlugins\@playstation.com/PsndlCheck,version=1.00: File not found
      [2013/11/06 06:33:06 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
      [2013/11/06 06:33:06 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
      [2013/12/01 20:51:18 | 000,000,565 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\nationzoom.xml
      O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No CLSID value found.
      O3 - HKLM\..\Toolbar: (no name) - {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} - No CLSID value found.
      O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
      O3 - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
      O3 - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\..\Toolbar\WebBrowser: (no name) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No CLSID value found.
      O3 - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\..\Toolbar\WebBrowser: (no name) - {9C905B42-976E-43C1-BC30-FC5937017909} - No CLSID value found.
      O3 - HKU\S-1-5-21-3673474698-1000241783-4157340767-1000\..\Toolbar\WebBrowser: (no name) - {AC6FAD42-419E-4F3A-ABDE-1BC6CE916B7D} - No CLSID value found.
      O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
      O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
      O4 - Startup: C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock.lnk = File not found
      O4 - Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk = File not found
      O4 - Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk = File not found
      O8 - Extra context menu item: Ajouter à un fichier PDF existant - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html File not found
      O8 - Extra context menu item: Ajouter la cible du lien à un fichier PDF existant - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html File not found
      O8 - Extra context menu item: Convertir au format Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html File not found
      O8 - Extra context menu item: Convertir la cible du lien au format Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html File not found
      O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office10\EXCEL.EXE/3000 File not found
      O8 - Extra context menu item: Enviar a &Bluetooth - C:\Program Files (x86)\btsendto_ie_ctx.htm File not found
      O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html File not found
      O13 - gopher Prefix: missing
      O18 - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
      O18 - Protocol\Handler\msdaipp\oledb - No CLSID value found
      O20 - AppInit_DLLs: (c:\progra~2\optimi~1\optpro~1.dll) - File not found
      O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O33 - MountPoints2\{748e2895-3791-11e0-9e4f-0026b91c853b}\Shell - "" = AutoRun
      O33 - MountPoints2\{84c2eaa6-f830-11e0-8672-0026b91c853b}\Shell - "" = AutoRun
      O33 - MountPoints2\{9ac89c3a-1844-11e0-b079-0026b91c853b}\Shell - "" = AutoRun
      O33 - MountPoints2\{c3348e56-ed0c-11df-b158-0026b91c853b}\Shell - "" = AutoRun
      MsConfig:64bit - StartUpReg: Desktop Disc Tool - hkey= - key= - File not found
      MsConfig:64bit - StartUpReg: QuickSet - hkey= - key= - File not found
      MsConfig:64bit - StartUpReg: SugarSync - hkey= - key= - File not found
      MsConfig:64bit - StartUpReg: SUPERAntiSpyware - hkey= - key= - File not found
      MsConfig:64bit - StartUpReg: swg - hkey= - key= - File not found
      MsConfig:64bit - State: "startup" - Reg Error: Key error.
      [2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
      [2011/03/22 23:04:33 | 000,000,000 | ---- | C] () -- C:\Users\Agustí\AppData\Roaming\wklnhst.dat
      @Alternate Data Stream - 95 bytes -> C:\ProgramData\TEMP:5C321E34
      @Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:D1B5B4F1
      
      :Files
      ipconfig /flushdns /c
      ipconfig /renew /c
      :Commands
      [PURITY]
      [EMPTYFLASH]
      [EMPTYTEMP]
      [RESETHOSTS]
      Presiona el Botón Reparar para lanzar la eliminación. Después presionas en OK.

      OTL va a Reiniciar el ordenador para completar la eliminación.

      Guardas el nuevo reporte generado, y lo copias y pegas en tu próxima respuesta.


      Después que realices los pasos de OTL, revisa el siguiente enlace, la parte de los navegadores, en tu caso busca si hay algo de Nation Zoom y lo eliminas.



      Tienes dos antivirus instalados Kaspersky y AVG, debes desinstalar uno con su herramienta:

      Herramientas de desinstalación de Antivirus y AntiSpyware


      Pega el reporte de OTL y comenta como sigue el problema.

      Un saludo
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    8. #8
      Usuario Avatar de Agustí Gas
      Registrado
      dic 2008
      Ubicación
      Castellón
      Mensajes
      16

      Re: Desinstalar Nation Zoom

      Buenas tardes Daniela!!! Acabo de hacer lo que me has puesto en el post anterior y después de reiniciar el ordenador el programa OTL, no me ha dejado el reporte en el escritorio... es más creo que al reiniciar se ha desinstalado dicho programa, no he abierto el Firefox por si acaso... ¿sabes donde habrá dejado el reporte? Gracias una vez más

    9. #9
      Moderadora
      Avatar de @Daniela
      Registrado
      abr 2011
      Ubicación
      España
      Mensajes
      9.410

      Re: Desinstalar Nation Zoom

      Hola

      El reporte lo encuentras aquí >> C:\_OTL\MovedFiles.

      No olvides comentar como sigue todo.

      Un saludo
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    10. #10
      Usuario Avatar de Agustí Gas
      Registrado
      dic 2008
      Ubicación
      Castellón
      Mensajes
      16

      Re: Desinstalar Nation Zoom

      Hola Daniela!!! No se que hacer, parece que al reiniciar el sistema después de pasar el OTL.exe, ha desinstalado dicho programa y no encuentro el reporte por ninguna parte, además de que sigue saliendo el dichoso Nation Zoom. Una cosa que he observado es que el programa OTL, ha durado muy poco, como si no hubiera acabado de hacer la limpieza... Espero tu respuesta para ver que tengo que hacer, y como siempre, muchas gracias por tu tiempo, un saludo

    Página 1 de 2 12 ÚltimoÚltimo