• Registrarse
  • Iniciar sesión


  • Página 3 de 4 PrimeroPrimero 1234 ÚltimoÚltimo
    Resultados 21 al 30 de 32

    archivos convertidos en carpetas

    Resumen del tema: archivos convertidos en carpetas - Va el reporte del OLT.txt: OTL logfile created on: 11/01/2014 9:29:18 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Martin\Desktop 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type ...

    1. #21
      Usuario Avatar de msmartin76
      Registrado
      may 2009
      Ubicación
      madrid
      Mensajes
      36

      Re: archivos convertidos en carpetas

      Va el reporte del OLT.txt:

      OTL logfile created on: 11/01/2014 9:29:18 - Run 1
      OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Martin\Desktop
      64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
      Internet Explorer (Version = 9.10.9200.16736)
      Locale: 00000C0A | Country: España | Language: ESN | Date Format: dd/MM/yyyy

      5,90 Gb Total Physical Memory | 3,81 Gb Available Physical Memory | 64,62% Memory free
      11,80 Gb Paging File | 9,57 Gb Available in Paging File | 81,12% Paging File free
      Paging file location(s): ?:\pagefile.sys [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
      Drive C: | 443,64 Gb Total Space | 282,54 Gb Free Space | 63,69% Space Free | Partition Type: NTFS
      Drive D: | 21,83 Gb Total Space | 2,32 Gb Free Space | 10,65% Space Free | Partition Type: NTFS
      Drive F: | 614,91 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: UDF
      Drive G: | 465,11 Gb Total Space | 257,59 Gb Free Space | 55,38% Space Free | Partition Type: NTFS

      Computer Name: MARTIN-HP | User Name: Martin | Logged in as Administrator.
      Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
      Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

      ========== Processes (SafeList) ==========

      PRC - C:\Users\Martin\Desktop\OTL.exe (OldTimer Tools)
      PRC - C:\Users\Martin\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc.)
      PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
      PRC - C:\Users\Martin\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Spotify Ltd)
      PRC - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.)
      PRC - C:\Program Files (x86)\Samsung\Kies\Kies.exe (Samsung)
      PRC - C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe (Hewlett-Packard Development Company, L.P.)
      PRC - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Development Company, L.P.)
      PRC - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Hewlett-Packard Development Company, L.P.)
      PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation)
      PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation)
      PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Intel Corporation)
      PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe ()
      PRC - C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe (HP)
      PRC - C:\Program Files (x86)\HP SimplePass\TouchControl.exe (AuthenTec Inc.)
      PRC - C:\Program Files (x86)\HP SimplePass\BioMonitor.exe (HP)
      PRC - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Intel Corporation)
      PRC - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation)
      PRC - C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (CyberLink)
      PRC - C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation)
      PRC - C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation)
      PRC - C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe (Hewlett-Packard Development Company, L.P.)
      PRC - C:\Program Files (x86)\Norton Internet Security\Engine\19.1.0.28\ccSvcHst.exe (Symantec Corporation)
      PRC - C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe (Cisco Systems, Inc.)
      PRC - C:\Windows\SysWOW64\ezSharedSvcHost.exe (EasyBits Software AS)
      PRC - C:\Windows\SysWOW64\ezSharedSvcHost.exe (EasyBits Software AS)


      ========== Modules (No Company Name) ==========

      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\e9147e4c70d4e387dc4aea59ce0a219a\PresentationFramework.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\99bbd3424207d205e9e680fa712dba04\PresentationCore.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\55c245966c0b23a47587c18681457e48\System.Core.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\b1ff5e4a64c0bb0a9b039aaefcde5ea7\WindowsBase.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\85a501f8b0cb271f1bfab6532523ac3c\System.Configuration.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\d8f4106eee38420ac5eda7d630dc53fc\System.ServiceProcess.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\c8648331484537c338fe2b606a9db8b7\System.Xaml.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\b7285e9f3d19a05d5cc2c049e451685d\System.Xml.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System\08c630893416f3379c9455870908ad6c\System.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\a01e07e47ecdd94ae099e8c4bf650516\mscorlib.ni.dll ()
      MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll ()
      MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll ()


      ========== Services (SafeList) ==========

      SRV:64bit: - (STacSV) -- C:\Program Files\IDT\WDM\stacsv64.exe (IDT, Inc.)
      SRV:64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
      SRV:64bit: - (btwdins) -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (Broadcom Corporation.)
      SRV:64bit: - (hpsrv) -- C:\Windows\SysNative\hpservice.exe (Hewlett-Packard Company)
      SRV:64bit: - (TrueService) -- C:\Program Files\Common Files\AuthenTec\TrueService.exe (AuthenTec, Inc.)
      SRV:64bit: - (Intel(R) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel(R) Corporation)
      SRV:64bit: - (HPClientSvc) -- C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe (Hewlett-Packard Company)
      SRV:64bit: - (wlcrasvc) -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe (Microsoft Corporation)
      SRV - (SkypeUpdate) -- C:\Program Files (x86)\Skype\Updater\Updater.exe (Skype Technologies)
      SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
      SRV - (MBAMService) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
      SRV - (MBAMScheduler) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
      SRV - (nvUpdatusService) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation)
      SRV - (HP Support Assistant Service) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe (Hewlett-Packard Company)
      SRV - (HPWMISVC) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Hewlett-Packard Development Company, L.P.)
      SRV - (cphs) -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe (Intel Corporation)
      SRV - (UNS) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation)
      SRV - (LMS) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation)
      SRV - (jhi_service) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Intel Corporation)
      SRV - (Intel(R) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe ()
      SRV - (FPLService) -- C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe (HP)
      SRV - (IAStorDataMgrSvc) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation)
      SRV - (sftvsa) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation)
      SRV - (sftlist) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation)
      SRV - (NIS) -- C:\Program Files (x86)\Norton Internet Security\Engine\19.1.0.28\ccSvcHst.exe (Symantec Corporation)
      SRV - (OpenVPNService) -- C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe ()
      SRV - (CVPND) -- C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe (Cisco Systems, Inc.)
      SRV - (GamesAppService) -- C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe (WildTangent, Inc.)
      SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
      SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)


      ========== Driver Services (SafeList) ==========

      DRV:64bit: - (ssudmdm) -- C:\Windows\SysNative\drivers\ssudmdm.sys (DEVGURU Co., LTD.(데브구루 | 데브구루에 오ì‹*것을 환영합니다.))
      DRV:64bit: - (dg_ssudbus) -- C:\Windows\SysNative\drivers\ssudbus.sys (DEVGURU Co., LTD.(데브구루 | 데브구루에 오ì‹*것을 환영합니다.))
      DRV:64bit: - (btwl2cap) -- C:\Windows\SysNative\drivers\btwl2cap.sys (Broadcom Corporation.)
      DRV:64bit: - (btwrchid) -- C:\Windows\SysNative\drivers\btwrchid.sys (Broadcom Corporation.)
      DRV:64bit: - (btwavdt) -- C:\Windows\SysNative\drivers\btwavdt.sys (Broadcom Corporation.)
      DRV:64bit: - (btwaudio) -- C:\Windows\SysNative\drivers\btwaudio.sys (Broadcom Corporation.)
      DRV:64bit: - (btwampfl) -- C:\Windows\SysNative\drivers\btwampfl.sys (Broadcom Corporation.)
      DRV:64bit: - (bcbtums) -- C:\Windows\SysNative\drivers\bcbtums.sys (Broadcom Corporation.)
      DRV:64bit: - (STHDA) -- C:\Windows\SysNative\drivers\stwrt64.sys (IDT, Inc.)
      DRV:64bit: - (BCM43XX) -- C:\Windows\SysNative\drivers\BCMWL664.SYS (Broadcom Corporation)
      DRV:64bit: - (MBAMProtector) -- C:\Windows\SysNative\drivers\mbam.sys (Malwarebytes Corporation)
      DRV:64bit: - (pwdrvio) -- C:\Windows\SysNative\pwdrvio.sys ()
      DRV:64bit: - (pwdspio) -- C:\Windows\SysNative\pwdspio.sys ()
      DRV:64bit: - (USBAAPL64) -- C:\Windows\SysNative\drivers\usbaapl64.sys (Apple, Inc.)
      DRV:64bit: - (nvpciflt) -- C:\Windows\SysNative\drivers\nvpciflt.sys (NVIDIA Corporation)
      DRV:64bit: - (Accelerometer) -- C:\Windows\SysNative\drivers\Accelerometer.sys (Hewlett-Packard Company)
      DRV:64bit: - (hpdskflt) -- C:\Windows\SysNative\drivers\hpdskflt.sys (Hewlett-Packard Company)
      DRV:64bit: - (RdpVideoMiniport) -- C:\Windows\SysNative\drivers\rdpvideominiport.sys (Microsoft Corporation)
      DRV:64bit: - (TsUsbGD) -- C:\Windows\SysNative\drivers\TsUsbGD.sys (Microsoft Corporation)
      DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
      DRV:64bit: - (GEARAspiWDM) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys (GEAR Software Inc.)
      DRV:64bit: - (MEIx64) -- C:\Windows\SysNative\drivers\HECIx64.sys (Intel Corporation)
      DRV:64bit: - (tapoas) -- C:\Windows\SysNative\drivers\tapoas.sys (The OpenVPN Project)
      DRV:64bit: - (SymEvent) -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS (Symantec Corporation)
      DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
      DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
      DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
      DRV:64bit: - (igfx) -- C:\Windows\SysNative\drivers\igdkmd64.sys (Intel Corporation)
      DRV:64bit: - (taphss) -- C:\Windows\SysNative\drivers\taphss.sys (AnchorFree Inc)
      DRV:64bit: - (IntcDAud) -- C:\Windows\SysNative\drivers\IntcDAud.sys (Intel(R) Corporation)
      DRV:64bit: - (iusb3xhc) -- C:\Windows\SysNative\drivers\iusb3xhc.sys (Intel Corporation)
      DRV:64bit: - (iusb3hub) -- C:\Windows\SysNative\drivers\iusb3hub.sys (Intel Corporation)
      DRV:64bit: - (iusb3hcs) -- C:\Windows\SysNative\drivers\iusb3hcs.sys (Intel Corporation)
      DRV:64bit: - (iaStor) -- C:\Windows\SysNative\drivers\iaStor.sys (Intel Corporation)
      DRV:64bit: - (RSP2STOR) -- C:\Windows\SysNative\drivers\RtsP2Stor.sys (Realtek Semiconductor Corp.)
      DRV:64bit: - (SynTP) -- C:\Windows\SysNative\drivers\SynTP.sys (Synaptics Incorporated)
      DRV:64bit: - (SmbDrv) -- C:\Windows\SysNative\drivers\Smb_driver.sys (Synaptics Incorporated)
      DRV:64bit: - (Sftvol) -- C:\Windows\SysNative\drivers\Sftvollh.sys (Microsoft Corporation)
      DRV:64bit: - (Sftplay) -- C:\Windows\SysNative\drivers\Sftplaylh.sys (Microsoft Corporation)
      DRV:64bit: - (Sftredir) -- C:\Windows\SysNative\drivers\Sftredirlh.sys (Microsoft Corporation)
      DRV:64bit: - (Sftfs) -- C:\Windows\SysNative\drivers\Sftfslh.sys (Microsoft Corporation)
      DRV:64bit: - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek )
      DRV:64bit: - (ccSet_NIS) -- C:\Windows\SysNative\drivers\NISx64\1301000.01C\ccSetx64.sys (Symantec Corporation)
      DRV:64bit: - (SRTSP) -- C:\Windows\SysNative\drivers\NISx64\1301000.01C\srtsp64.sys (Symantec Corporation)
      DRV:64bit: - (SRTSPX) -- C:\Windows\SysNative\drivers\NISx64\1301000.01C\srtspx64.sys (Symantec Corporation)
      DRV:64bit: - (SymEFA) -- C:\Windows\SysNative\drivers\NISx64\1301000.01C\SymEFA64.sys (Symantec Corporation)
      DRV:64bit: - (SymNetS) -- C:\Windows\SysNative\drivers\NISx64\1301000.01C\symnets.sys (Symantec Corporation)
      DRV:64bit: - (SymDS) -- C:\Windows\SysNative\drivers\NISx64\1301000.01C\SymDS64.sys (Symantec Corporation)
      DRV:64bit: - (SymIRON) -- C:\Windows\SysNative\drivers\NISx64\1301000.01C\Ironx64.sys (Symantec Corporation)
      DRV:64bit: - (tap0901) -- C:\Windows\SysNative\drivers\tap0901.sys (The OpenVPN Project)
      DRV:64bit: - (BTWDPAN) -- C:\Windows\SysNative\drivers\btwdpan.sys (Broadcom Corporation.)
      DRV:64bit: - (CVPNDRVA) -- C:\Windows\SysNative\drivers\CVPNDRVA.sys ()
      DRV:64bit: - (sdbus) -- C:\Windows\SysNative\drivers\sdbus.sys (Microsoft Corporation)
      DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
      DRV:64bit: - (MHIKEY10) -- C:\Windows\SysNative\drivers\MHIKEY10x64.sys (Generic USB smartcard reader)
      DRV:64bit: - (clwvd) -- C:\Windows\SysNative\drivers\clwvd.sys (CyberLink Corporation)
      DRV:64bit: - (CVirtA) -- C:\Windows\SysNative\drivers\CVirtA64.sys (Cisco Systems, Inc.)
      DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
      DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
      DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
      DRV:64bit: - (SrvHsfV92) -- C:\Windows\SysNative\drivers\VSTDPV6.SYS (Conexant Systems, Inc.)
      DRV:64bit: - (SrvHsfWinac) -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS (Conexant Systems, Inc.)
      DRV:64bit: - (SrvHsfHDA) -- C:\Windows\SysNative\drivers\VSTAZL6.SYS (Conexant Systems, Inc.)
      DRV:64bit: - (NVENETFD) -- C:\Windows\SysNative\drivers\nvm62x64.sys (NVIDIA Corporation)
      DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
      DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
      DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
      DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
      DRV:64bit: - (DNE) -- C:\Windows\SysNative\drivers\dne64x.sys (Deterministic Networks, Inc.)
      DRV - (BHDrvx64) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.1.0.28\Definitions\BASHDefs\20110819.004\BHDrvx64.sys (Symantec Corporation)
      DRV - (NAVEX15) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.1.0.28\Definitions\VirusDefs\20110810.019\EX64.SYS (Symantec Corporation)
      DRV - (NAVENG) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.1.0.28\Definitions\VirusDefs\20110810.019\ENG64.SYS (Symantec Corporation)
      DRV - (IDSVia64) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.1.0.28\Definitions\IPSDefs\20110726.001\IDSviA64.sys (Symantec Corporation)
      DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)


      ========== Standard Registry (SafeList) ==========


      ========== Internet Explorer ==========

      IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
      IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox
      IE:64bit: - HKLM\..\SearchScopes\{AD9EE6CE-E6AF-4386-A5A4-148478BFCECF}: "URL" = http://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
      IE:64bit: - HKLM\..\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}: "URL" = http://es.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
      IE:64bit: - HKLM\..\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}: "URL" = http://es.wikipedia.org/wiki/Special:Search?search={searchTerms}
      IE:64bit: - HKLM\..\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC}: "URL" = http://rover.ebay.com/rover/1/1185-111090-7840-3/4?mpre=http://www.ebay.es/sch/i.html?_nkw={searchTerms}
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
      IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
      IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox
      IE - HKLM\..\SearchScopes\{AD9EE6CE-E6AF-4386-A5A4-148478BFCECF}: "URL" = http://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
      IE - HKLM\..\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}: "URL" = http://es.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
      IE - HKLM\..\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}: "URL" = http://es.wikipedia.org/wiki/Special:Search?search={searchTerms}
      IE - HKLM\..\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC}: "URL" = http://rover.ebay.com/rover/1/1185-111090-7840-3/4?mpre=http://www.ebay.es/sch/i.html?_nkw={searchTerms}


      IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



      IE - HKU\S-1-5-21-1722065157-2980826198-2433971110-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google
      IE - HKU\S-1-5-21-1722065157-2980826198-2433971110-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox
      IE - HKU\S-1-5-21-1722065157-2980826198-2433971110-1001\..\SearchScopes\{AD9EE6CE-E6AF-4386-A5A4-148478BFCECF}: "URL" = http://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
      IE - HKU\S-1-5-21-1722065157-2980826198-2433971110-1001\..\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}: "URL" = http://es.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
      IE - HKU\S-1-5-21-1722065157-2980826198-2433971110-1001\..\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}: "URL" = http://es.wikipedia.org/wiki/Special:Search?search={searchTerms}
      IE - HKU\S-1-5-21-1722065157-2980826198-2433971110-1001\..\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC}: "URL" = http://rover.ebay.com/rover/1/1185-111090-7840-3/4?mpre=http://www.ebay.es/sch/i.html?_nkw={searchTerms}
      IE - HKU\S-1-5-21-1722065157-2980826198-2433971110-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
      IE - HKU\S-1-5-21-1722065157-2980826198-2433971110-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>

      ========== FireFox ==========

      FF - prefs.js..browser.search.useDBForOrder: "false"
      FF - prefs.js..browser.startup.homepage: "google.com"
      FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:26.0
      FF - user.js - File not found

      FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_202.dll File not found
      FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
      FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_202.dll ()
      FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
      FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
      FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
      FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
      FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
      FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.52: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
      FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
      FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.45.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
      FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
      FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
      FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\Martin\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
      FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Users\Martin\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
      FF - HKCU\Software\MozillaPlugins\@talk.google.com/O1DPlugin: C:\Users\Martin\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
      FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Users\Martin\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
      FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Martin\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
      FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Martin\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)

      FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.1.0.28\IPSFFPlgn\ [2012/12/28 19:35:41 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.1.0.28\coFFPlgn\ [2014/01/11 09:27:13 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
      FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 26.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
      FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 26.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins

      [2013/01/04 11:17:52 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Martin\AppData\Roaming\Mozilla\Extensions
      [2014/01/10 1756 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\3a929j7f.default\extensions
      [2014/01/01 20:39:57 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
      [2014/01/01 20:40:02 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

      ========== Chrome ==========

      CHR - default_search_provider: Google (Enabled)
      CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
      CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter},
      CHR - Extension: Google Docs = C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\
      CHR - Extension: Google Drive = C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
      CHR - Extension: YouTube = C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
      CHR - Extension: B\u00FAsqueda de Google = C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
      CHR - Extension: Website Logon = C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpfgjjhcgfbfkkoelpepohanhmbhdanh\1.5_0\
      CHR - Extension: Norton Identity Protection = C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2012.1.0.30_0\
      CHR - Extension: Google Wallet = C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\
      CHR - Extension: Gmail = C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\

      O1 HOSTS File: ([2014/01/10 18:44:08 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
      O1 - Hosts: 127.0.0.1 localhost
      O2:64bit: - BHO: (HP SimplePass Browser Helper Object) - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass\x64\IEBHO.dll (HP)
      O2:64bit: - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
      O2 - BHO: (Norton Identity Protection) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\19.1.0.28\CoIEPlg.dll (Symantec Corporation)
      O2 - BHO: (Norton Vulnerability Protection) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\19.1.0.28\IPS\IPSBHO.dll (Symantec Corporation)
      O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
      O2 - BHO: (HP SimplePass Browser Helper Object) - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass\IEBHO.dll (HP)
      O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
      O2 - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
      O3:64bit: - HKLM\..\Toolbar: (HP SimplePass Toolbar) - {C98EE38D-21E4-4A50-907D-2B56FEC7013E} - C:\Program Files (x86)\HP SimplePass\x64\IEBHO.dll (HP)
      O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\19.1.0.28\CoIEPlg.dll (Symantec Corporation)
      O3 - HKLM\..\Toolbar: (HP SimplePass Toolbar) - {C98EE38D-21E4-4A50-907D-2B56FEC7013E} - C:\Program Files (x86)\HP SimplePass\IEBHO.dll (HP)
      O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
      O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
      O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
      O4:64bit: - HKLM..\Run: [SetDefault] C:\Program Files\Hewlett-Packard\HP LaunchBox\SetDefault.exe (Hewlett-Packard Development Company, L.P.)
      O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
      O4:64bit: - HKLM..\Run: [USBestCR] C:\Program Files (x86)\USIM Editor\iconcs5656050.exe ()
      O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
      O4 - HKLM..\Run: [Easybits Recovery] C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe (EasyBits Software AS)
      O4 - HKLM..\Run: [HP CoolSense] C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe (Hewlett-Packard Development Company, L.P.)
      O4 - HKLM..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Development Company, L.P.)
      O4 - HKLM..\Run: [HPOSD] C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe (Hewlett-Packard Development Company, L.P.)
      O4 - HKLM..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.)
      O4 - HKLM..\Run: [NeroFilterCheck] C:\Windows\SysWOW64\NeroCheck.exe (Ahead Software Gmbh)
      O4 - HKLM..\Run: [RegistrarUsrDNIeCertStoreDLL] C:\Program Files (x86)\DNIe\udcs.exe ()
      O4 - HKLM..\Run: [USB3MON] C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Intel Corporation)
      O4 - HKLM..\Run: [USBestCR] C:\Program Files (x86)\USIM Editor\iconcs5656050.exe ()
      O4 - HKU\S-1-5-21-1722065157-2980826198-2433971110-1001..\Run: [Akamai NetSession Interface] C:\Users\Martin\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc.)
      O4 - HKU\S-1-5-21-1722065157-2980826198-2433971110-1001..\Run: [KiesPreload] C:\Program Files (x86)\Samsung\Kies\Kies.exe (Samsung)
      O4 - HKU\S-1-5-21-1722065157-2980826198-2433971110-1001..\Run: [Spotify Web Helper] C:\Users\Martin\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Spotify Ltd)
      O4:64bit: - HKLM..\RunOnce: [NCPluginUpdater] C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe (Hewlett-Packard)
      O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
      O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKU\S-1-5-21-1722065157-2980826198-2433971110-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present
      O7 - HKU\S-1-5-21-1722065157-2980826198-2433971110-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
      O8:64bit: - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 File not found
      O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\SysWow64\GPhotos.scr (Google Inc.)
      O9:64bit: - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
      O9:64bit: - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
      O9 - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
      O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
      O9 - Extra Button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll (Evernote Corp., 333 W Evelyn Ave. Mountain View, CA 94041)
      O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll (Evernote Corp., 333 W Evelyn Ave. Mountain View, CA 94041)
      O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000010 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
      O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
      O13 - gopher Prefix: missing
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3652DC92-3F4D-40A3-8076-FFD3CCAE6CC1}: DhcpNameServer = 192.168.1.1
      O18:64bit: - Protocol\Handler\livecall - No CLSID value found
      O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
      O18:64bit: - Protocol\Handler\msnim - No CLSID value found
      O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
      O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
      O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
      O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
      O20:64bit: - AppInit_DLLs: (C:\Windows\System32\nvinitx.dll) - C:\Windows\SysNative\nvinitx.dll (NVIDIA Corporation)
      O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
      O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
      O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
      O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O28 - HKLM ShellExecuteHooks: {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWOW64\ezUPBHook.dll (EasyBits Software Corp.)
      O32 - HKLM CDRom: AutoRun - 1
      O32 - AutoRun File - [2013/06/21 17:25:11 | 000,000,000 | ---D | M] - C:\Autodesk -- [ NTFS ]
      O32 - AutoRun File - [2014/01/04 10:33:55 | 000,000,000 | R--D | M] - D:\Autorun.inf -- [ NTFS ]
      O32 - AutoRun File - [2009/06/19 01:12:18 | 000,000,088 | ---- | M] () - F:\autorun.inf -- [ UDF ]
      O32 - AutoRun File - [2014/01/04 10:33:55 | 000,000,000 | R--D | M] - G:\Autorun.inf -- [ NTFS ]
      O34 - HKLM BootExecute: (autocheck autochk *)
      O35:64bit: - HKLM\..comfile [open] -- "%1" %*
      O35:64bit: - HKLM\..exefile [open] -- "%1" %*
      O35 - HKLM\..comfile [open] -- "%1" %*
      O35 - HKLM\..exefile [open] -- "%1" %*
      O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
      O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
      O37 - HKLM\...com [@ = ComFile] -- "%1" %*
      O37 - HKLM\...exe [@ = exefile] -- "%1" %*
      O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
      O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
      O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)


      CREATERESTOREPOINT
      Restore point Set: OTL Restore Point

      ========== Files/Folders - Created Within 30 Days ==========

      [2014/01/11 09:27:01 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Martin\Desktop\OTL.exe
      [2014/01/10 22:06:25 | 000,386,464 | ---- | C] (Bleeping Computer, LLC) -- C:\Users\Martin\Desktop\show-hidden.exe
      [2014/01/10 18:46:26 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
      [2014/01/10 18:46:23 | 000,000,000 | ---D | C] -- C:\Windows\temp
      [2014/01/10 18:33:23 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
      [2014/01/10 18:33:23 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
      [2014/01/10 18:33:23 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
      [2014/01/10 18:33:17 | 000,000,000 | ---D | C] -- C:\Qoobox
      [2014/01/10 18:33:01 | 000,000,000 | ---D | C] -- C:\Windows\erdnt
      [2014/01/10 18:09:05 | 005,162,489 | R--- | C] (Swearware) -- C:\Users\Martin\Desktop\ComboFix.exe
      [2014/01/10 14:48:25 | 000,000,000 | ---D | C] -- C:\FRST
      [2014/01/10 14:47:41 | 001,932,166 | ---- | C] (Farbar) -- C:\Users\Martin\Desktop\FRST64.exe
      [2014/01/10 13:02:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
      [2014/01/10 09:22:37 | 000,000,000 | ---D | C] -- C:\ProgramData\MagicSoftware
      [2014/01/10 09:21:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Magic DVD Ripper
      [2014/01/10 09:21:13 | 000,000,000 | ---D | C] -- C:\Users\Martin\AppData\Local\MagicSoftware
      [2014/01/10 09:21:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MagicDVDRipper
      [2014/01/10 09:20:29 | 000,000,000 | ---D | C] -- C:\Users\Martin\AppData\Local\Ahead
      [2014/01/10 09:12:44 | 000,000,000 | ---D | C] -- C:\ProgramData\DVD Shrink
      [2014/01/10 09:12:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Shrink
      [2014/01/10 09:12:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DVD Shrink
      [2014/01/10 09:04:45 | 000,000,000 | ---D | C] -- C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nero
      [2014/01/10 09:03:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
      [2014/01/10 09:03:13 | 000,106,496 | ---- | C] (Pegasus Software) -- C:\Windows\SysWow64\TwnLib20.dll
      [2014/01/10 09:03:12 | 001,568,768 | ---- | C] (Pegasus Imaging Corp.) -- C:\Windows\SysWow64\ImagX7.dll
      [2014/01/10 09:03:12 | 000,476,320 | ---- | C] (Pegasus Imaging Corp.) -- C:\Windows\SysWow64\ImagXpr7.dll
      [2014/01/10 09:03:12 | 000,471,040 | ---- | C] (Pegasus Imaging Corp.) -- C:\Windows\SysWow64\ImagXRA7.dll
      [2014/01/10 09:03:12 | 000,262,144 | ---- | C] (Pegasus Imaging Corp.) -- C:\Windows\SysWow64\ImagXR7.dll
      [2014/01/10 09:03:12 | 000,155,648 | ---- | C] (Ahead Software Gmbh) -- C:\Windows\SysWow64\NeroCheck.exe
      [2014/01/10 09:03:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Ahead
      [2014/01/10 09:03:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Ahead
      [2014/01/10 09:02:13 | 000,000,000 | ---D | C] -- C:\Users\Martin\Documents\nero
      [2014/01/04 13:22:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ESET
      [2014/01/04 10:32:31 | 000,000,000 | ---D | C] -- C:\UsbFix
      [2014/01/04 10:25:23 | 000,000,000 | ---D | C] -- C:\Users\Martin\AppData\Roaming\Malwarebytes
      [2014/01/04 10:24:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
      [2014/01/04 10:24:46 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
      [2014/01/04 10:24:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
      [2014/01/04 10:24:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
      [2014/01/04 10:24:27 | 000,000,000 | ---D | C] -- C:\Users\Martin\AppData\Local\Programs
      [2014/01/01 20:39:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
      [2013/12/15 22:41:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
      [1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]

      ========== Files - Modified Within 30 Days ==========

      [2014/01/11 09:33:32 | 000,031,472 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
      [2014/01/11 09:33:32 | 000,031,472 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
      [2014/01/11 09:31:06 | 001,557,394 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
      [2014/01/11 09:31:06 | 000,704,518 | ---- | M] () -- C:\Windows\SysNative\perfh00A.dat
      [2014/01/11 09:31:06 | 000,616,686 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
      [2014/01/11 09:31:06 | 000,138,226 | ---- | M] () -- C:\Windows\SysNative\perfc00A.dat
      [2014/01/11 09:31:06 | 000,106,808 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
      [2014/01/11 09:27:02 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Martin\Desktop\OTL.exe
      [2014/01/11 09:24:21 | 000,001,096 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
      [2014/01/11 09:24:08 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
      [2014/01/11 09:24:03 | 456,114,175 | -HS- | M] () -- C:\hiberfil.sys
      [2014/01/10 22:14:00 | 000,001,100 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
      [2014/01/10 22:06:46 | 000,386,464 | ---- | M] (Bleeping Computer, LLC) -- C:\Users\Martin\Desktop\show-hidden.exe
      [2014/01/10 22:05:22 | 000,000,932 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1722065157-2980826198-2433971110-1001UA.job
      [2014/01/10 22:05:19 | 000,001,114 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1722065157-2980826198-2433971110-1001UA.job
      [2014/01/10 18:58:00 | 000,001,062 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1722065157-2980826198-2433971110-1001Core.job
      [2014/01/10 18:44:08 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
      [2014/01/10 18:39:00 | 000,000,910 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1722065157-2980826198-2433971110-1001Core.job
      [2014/01/10 18:26:25 | 005,162,489 | R--- | M] (Swearware) -- C:\Users\Martin\Desktop\ComboFix.exe
      [2014/01/10 14:46:40 | 001,932,166 | ---- | M] (Farbar) -- C:\Users\Martin\Desktop\FRST64.exe
      [2014/01/10 13:02:31 | 000,002,217 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
      [2014/01/10 09:21:29 | 000,001,869 | ---- | M] () -- C:\Users\Martin\Desktop\Magic DVD Ripper.lnk
      [2014/01/10 09:12:43 | 000,000,947 | ---- | M] () -- C:\Users\Martin\Desktop\DVD Shrink 3.2.lnk
      [2014/01/10 09:04:07 | 000,001,578 | ---- | M] () -- C:\Users\Public\Desktop\Nero StartSmart.lnk
      [2014/01/10 07:51:32 | 000,000,336 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForMartin.job
      [2014/01/04 10:24:47 | 000,001,113 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
      [2014/01/01 20:59:15 | 000,076,742 | ---- | M] () -- C:\Users\Martin\Documents\Sin título.jpg
      [2013/12/20 16:06:34 | 000,429,975 | ---- | M] () -- C:\Users\Martin\Documents\Membership+Card+for+820055162.pdf
      [2013/12/13 09:30:51 | 000,416,808 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
      [1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]

      ========== Files Created - No Company Name ==========

      [2014/01/10 18:33:23 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
      [2014/01/10 18:33:23 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
      [2014/01/10 18:33:23 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
      [2014/01/10 18:33:23 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
      [2014/01/10 18:33:23 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
      [2014/01/10 13:02:31 | 000,002,217 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
      [2014/01/10 1250 | 000,001,361 | ---- | C] () -- C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
      [2014/01/10 09:21:29 | 000,001,869 | ---- | C] () -- C:\Users\Martin\Desktop\Magic DVD Ripper.lnk
      [2014/01/10 09:12:43 | 000,000,947 | ---- | C] () -- C:\Users\Martin\Desktop\DVD Shrink 3.2.lnk
      [2014/01/10 09:04:07 | 000,001,578 | ---- | C] () -- C:\Users\Public\Desktop\Nero StartSmart.lnk
      [2014/01/04 10:24:47 | 000,001,113 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
      [2014/01/01 20:59:15 | 000,076,742 | ---- | C] () -- C:\Users\Martin\Documents\Sin título.jpg
      [2013/12/20 16:06:31 | 000,429,975 | ---- | C] () -- C:\Users\Martin\Documents\Membership+Card+for+820055162.pdf
      [2013/12/17 18:32:54 | 000,000,336 | ---- | C] () -- C:\Windows\tasks\HPCeeScheduleForMartin.job
      [2013/09/05 23:15:35 | 000,003,023 | ---- | C] () -- C:\Windows\PSPICEEV.INI
      [2013/09/05 23:15:34 | 000,176,128 | ---- | C] () -- C:\Windows\SysWow64\lffax60n.dll
      [2013/09/05 23:15:34 | 000,141,824 | ---- | C] () -- C:\Windows\SysWow64\lfcmp60n.dll
      [2013/09/05 23:15:34 | 000,110,080 | ---- | C] () -- C:\Windows\SysWow64\lfpng60n.dll
      [2013/09/05 23:15:34 | 000,046,080 | ---- | C] () -- C:\Windows\SysWow64\lftif60n.dll
      [2013/09/05 23:15:34 | 000,043,008 | ---- | C] () -- C:\Windows\SysWow64\ltfil60n.dll
      [2013/09/05 23:15:34 | 000,023,552 | ---- | C] () -- C:\Windows\SysWow64\lfpcx60n.dll
      [2013/09/05 23:15:34 | 000,022,528 | ---- | C] () -- C:\Windows\SysWow64\lfpct60n.dll
      [2013/09/05 23:15:34 | 000,022,528 | ---- | C] () -- C:\Windows\SysWow64\lfeps60n.dll
      [2013/09/05 23:15:34 | 000,022,016 | ---- | C] () -- C:\Windows\SysWow64\lfbmp60n.dll
      [2013/09/05 23:15:34 | 000,020,480 | ---- | C] () -- C:\Windows\SysWow64\lfpsd60n.dll
      [2013/09/05 23:15:34 | 000,019,968 | ---- | C] () -- C:\Windows\SysWow64\lftga60n.dll
      [2013/09/05 23:15:34 | 000,019,456 | ---- | C] () -- C:\Windows\SysWow64\lfwpg60n.dll
      [2013/09/05 23:15:34 | 000,019,456 | ---- | C] () -- C:\Windows\SysWow64\lfwmf60n.dll
      [2013/09/05 23:15:34 | 000,018,432 | ---- | C] () -- C:\Windows\SysWow64\lfmsp60n.dll
      [2013/09/05 23:15:34 | 000,017,920 | ---- | C] () -- C:\Windows\SysWow64\lfmac60n.dll
      [2013/09/05 23:15:34 | 000,017,920 | ---- | C] () -- C:\Windows\SysWow64\implode.dll
      [2013/09/05 22:34:50 | 000,000,363 | ---- | C] () -- C:\Users\Martin\AppData\Roaming\Solve Elec 2.5 Prefs
      [2013/08/02 10:28:51 | 000,216,064 | ---- | C] () -- C:\Windows\SysWow64\gcapi_dll.dll
      [2013/02/14 18:19:32 | 000,000,017 | ---- | C] () -- C:\Users\Martin\AppData\Local\resmon.resmoncfg
      [2013/02/14 17:22:12 | 003,223,552 | ---- | C] () -- C:\Program Files (x86)\01 Irresponsables.mp3
      [2013/02/14 17:22:11 | 004,506,240 | ---- | C] () -- C:\Program Files (x86)\Y Que.mp3
      [2013/02/14 17:22:11 | 004,494,933 | ---- | C] () -- C:\Program Files (x86)\02 Risa.mp3
      [2013/02/14 17:22:11 | 003,614,848 | ---- | C] () -- C:\Program Files (x86)\05 Putita.mp3
      [2013/02/13 00:28:34 | 000,001,243 | ---- | C] () -- C:\Users\Martin\Mis documentos - Acceso directo.lnk
      [2013/01/13 08:21:18 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\cd.dat
      [2013/01/10 16:41:34 | 000,168,448 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
      [2013/01/10 16:41:15 | 000,051,712 | ---- | C] () -- C:\Windows\SysWow64\coodest.dll
      [2013/01/03 17:54:17 | 001,559,018 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
      [2012/12/28 19:34:16 | 000,000,056 | -H-- | C] () -- C:\Windows\SysWow64\ezsidmv.dat
      [2012/12/18 10:06:10 | 000,030,568 | ---- | C] () -- C:\Windows\MusiccityDownload.exe
      [2012/12/18 10:06:06 | 000,974,848 | ---- | C] () -- C:\Windows\SysWow64\cis-2.4.dll
      [2012/12/18 10:06:06 | 000,081,920 | ---- | C] () -- C:\Windows\SysWow64\issacapi_bs-2.3.dll
      [2012/12/18 10:06:06 | 000,065,536 | ---- | C] () -- C:\Windows\SysWow64\issacapi_pe-2.3.dll
      [2012/12/18 10:06:06 | 000,057,344 | ---- | C] () -- C:\Windows\SysWow64\issacapi_se-2.3.dll
      [2012/05/09 08:24:54 | 000,000,068 | ---- | C] () -- C:\Windows\SysWow64\ezdigsgn.dat
      [2012/05/09 0841 | 000,963,912 | ---- | C] () -- C:\Windows\SysWow64\igkrng600.bin
      [2012/05/09 0840 | 000,261,208 | ---- | C] () -- C:\Windows\SysWow64\igfcg600m.bin
      [2012/05/09 0837 | 000,145,804 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng600.bin
      [2012/05/09 0837 | 000,058,880 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll
      [2012/05/09 0836 | 013,206,016 | ---- | C] () -- C:\Windows\SysWow64\ig4icd32.dll

      ========== ZeroAccess Check ==========

      [2009/07/14 08:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

      [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

      [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

      [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

      [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
      "" = C:\Windows\SysNative\shell32.dll -- [2013/07/26 06:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
      "" = %SystemRoot%\system32\shell32.dll -- [2013/07/26 05:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
      "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 05:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
      "" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/21 07:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
      "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 05:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Both

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

      ========== Custom Scans ==========

      < %SYSTEMDRIVE%\*.* >
      [2010/11/21 07:23:51 | 000,383,786 | RHS- | M] () -- C:\bootmgr
      [2014/01/10 18:46:22 | 000,028,457 | ---- | M] () -- C:\ComboFix.txt
      [2014/01/11 09:24:03 | 456,114,175 | -HS- | M] () -- C:\hiberfil.sys
      [2014/01/11 09:24:04 | 2039,807,999 | -HS- | M] () -- C:\pagefile.sys
      [2014/01/04 10:35:24 | 000,021,493 | ---- | M] () -- C:\UsbFix [Clean 1] MARTIN-HP.txt

      < %PROGRAMFILES%\*.* >
      [2007/11/20 21:57:56 | 003,223,552 | ---- | M] () -- C:\Program Files (x86)\01 Irresponsables.mp3
      [2007/11/20 21:57:56 | 004,494,933 | ---- | M] () -- C:\Program Files (x86)\02 Risa.mp3
      [2007/11/20 21:57:58 | 003,614,848 | ---- | M] () -- C:\Program Files (x86)\05 Putita.mp3
      [2009/07/14 08:54:24 | 000,000,174 | -HS- | M] () -- C:\Program Files (x86)\desktop.ini
      [2007/11/20 21:58:00 | 004,506,240 | ---- | M] () -- C:\Program Files (x86)\Y Que.mp3

      < %systemroot%\windows\*.exe >

      < G:\*.exe >

      ========== Files - Unicode (All) ==========
      [2013/11/08 11:48:32 | 000,450,523 | ---- | C] ()(C:\Users\Martin\Desktop\8547-716-207-Z?.01.003.pdf) -- C:\Users\Martin\Desktop\8547-716-207-ZМ.01.003.pdf
      [2013/11/08 11:48:30 | 000,450,523 | ---- | M] ()(C:\Users\Martin\Desktop\8547-716-207-Z?.01.003.pdf) -- C:\Users\Martin\Desktop\8547-716-207-ZМ.01.003.pdf
      [2013/11/08 11:36:51 | 000,580,867 | ---- | C] ()(C:\Users\Martin\Desktop\8547-716-207-Z?.01.002.pdf) -- C:\Users\Martin\Desktop\8547-716-207-ZМ.01.002.pdf
      [2013/11/08 11:36:30 | 000,580,867 | ---- | M] ()(C:\Users\Martin\Desktop\8547-716-207-Z?.01.002.pdf) -- C:\Users\Martin\Desktop\8547-716-207-ZМ.01.002.pdf
      [2013/01/18 17:45:56 | 000,000,000 | ---D | M](C:\Windows\SysWow64\??????) -- C:\Windows\SysWow64\Ɂ債Ɍ碮痚
      [2013/01/18 17:45:56 | 000,000,000 | ---D | C](C:\Windows\SysWow64\??????) -- C:\Windows\SysWow64\Ɂ債Ɍ碮痚

      < End of report >

    2. #22
      Moderador
      Avatar de M@co
      Registrado
      dic 2007
      Ubicación
      America
      Mensajes
      15.766

      Re: archivos convertidos en carpetas

      Hola.

      Realiza lo siguiente:


      1.- Crea un punto de restauración del sistema. Windows XP | Windows seven

      2.- Desactiva temporalmente el Antivirus y/o Antispyware.

      3.- Copia el contenido del siguiente recuadro (excepto la palabra código):

      Código:
      :OTL
      [2013/11/08 11:48:32 | 000,450,523 | ---- | C] ()(C:\Users\Martin\Desktop\8547-716-207-Z?.01.003.pdf) -- C:\Users\Martin\Desktop\8547-716-207-ZМ.01.003.pdf
      [2013/11/08 11:48:30 | 000,450,523 | ---- | M] ()(C:\Users\Martin\Desktop\8547-716-207-Z?.01.003.pdf) -- C:\Users\Martin\Desktop\8547-716-207-ZМ.01.003.pdf
      [2013/11/08 11:36:51 | 000,580,867 | ---- | C] ()(C:\Users\Martin\Desktop\8547-716-207-Z?.01.002.pdf) -- C:\Users\Martin\Desktop\8547-716-207-ZМ.01.002.pdf
      [2013/11/08 11:36:30 | 000,580,867 | ---- | M] ()(C:\Users\Martin\Desktop\8547-716-207-Z?.01.002.pdf) -- C:\Users\Martin\Desktop\8547-716-207-ZМ.01.002.pdf
      [2013/01/18 17:45:56 | 000,000,000 | ---D | M](C:\Windows\SysWow64\??????) -- C:\Windows\SysWow64\Ɂ債Ɍ碮痚
      [2013/01/18 17:45:56 | 000,000,000 | ---D | C](C:\Windows\SysWow64\??????) -- C:\Windows\SysWow64\Ɂ債Ɍ碮痚
      
      :files
      G:\*.exe
      attrib /d /s -r -h -s C:\Documents and Settings\Default /c
      attrib /d /s -r -h -s C:\Documents and Settings\Default\AppData /c
      attrib /d /s -r -h -s C:\Documents and Settings\Martin\AppData /c
      attrib /d /s -r -h -s C:\Documents and Settings\Martin\Desktop/c
      attrib /d /s -r -h -s C:\Documents and Settings\Public\Desktop /c
      attrib /d /s -r -h -s C:\Documents and Settings\Public\Favorites /c
      attrib /d /s -r -h -s C:\Users\Martin\AppData /c
      attrib /d /s -r -h -s C:\Users\Default /c
      attrib /d /s -r -h -s C:\Users\Martin\Desktop /c
      attrib /d /s -r -h -s C:\Users\Martin\Documents /c
      attrib /d /s -r -h -s C:\Users\Public\Desktop /c
      attrib /d /s -r -h -s C:\Users\Public\Favorites /c
      
      :commands
      [emptytemp]
      4.- Ejecuta OTL.exe
      • Pégalo bajo la casilla Análisis Personalizados/Código de Reparación.
      • Cierra todas las ventanas abiertas y luego haz clic en el botón Reparar ubicado en la parte superior.
      • Deja que el programa se ejecute sin trabas, reinicia cuando lo pida hacer.
      • Al reiniciar se creará un reporte por defecto en C:\_OTL\MovedFiles, copie y pegue ese log en la próxima respuesta.


      Recuerda dejarnos los reportes y comentar como evoluciona el problema para poder seguir con el tema...

      Saludos.

      Blog | Antivirus Online | Eliminar Malwares | Antivirus Gratis


      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    3. #23
      Usuario Avatar de msmartin76
      Registrado
      may 2009
      Ubicación
      madrid
      Mensajes
      36

      Re: archivos convertidos en carpetas

      Copio el log del OTL.

      El problema persiste. Los archivos siguen siendo carpetas

      All processes killed
      ========== OTL ==========
      File C:\Users\Martin\Desktop\8547-716-207-ZМ.01.003.pdf not found.
      File C:\Users\Martin\Desktop\8547-716-207-ZМ.01.003.pdf not found.
      File C:\Users\Martin\Desktop\8547-716-207-ZМ.01.002.pdf not found.
      File C:\Users\Martin\Desktop\8547-716-207-ZМ.01.002.pdf not found.
      C:\Windows\SysWow64\Ɂ債Ɍ碮痚 folder moved successfully.
      Folder C:\Windows\SysWow64\Ɂ債Ɍ碮痚\ not found.
      ========== FILES ==========
      File\Folder G:\*.exe not found.
      < attrib /d /s -r -h -s C:\Documents and Settings\Default /c >
      Formato de par*metros incorrecto:
      C:\Users\Martin\Desktop\cmd.bat deleted successfully.
      C:\Users\Martin\Desktop\cmd.txt deleted successfully.
      < attrib /d /s -r -h -s C:\Documents and Settings\Default\AppData /c >
      Formato de par*metros incorrecto:
      C:\Users\Martin\Desktop\cmd.bat deleted successfully.
      C:\Users\Martin\Desktop\cmd.txt deleted successfully.
      < attrib /d /s -r -h -s C:\Documents and Settings\Martin\AppData /c >
      Formato de par*metros incorrecto:
      C:\Users\Martin\Desktop\cmd.bat deleted successfully.
      C:\Users\Martin\Desktop\cmd.txt deleted successfully.
      < attrib /d /s -r -h -s C:\Documents and Settings\Martin\Desktop/c >
      Formato de par*metros incorrecto:
      C:\Users\Martin\Desktop\cmd.bat deleted successfully.
      C:\Users\Martin\Desktop\cmd.txt deleted successfully.
      < attrib /d /s -r -h -s C:\Documents and Settings\Public\Desktop /c >
      Formato de par*metros incorrecto:
      C:\Users\Martin\Desktop\cmd.bat deleted successfully.
      C:\Users\Martin\Desktop\cmd.txt deleted successfully.
      < attrib /d /s -r -h -s C:\Documents and Settings\Public\Favorites /c >
      Formato de par*metros incorrecto:
      C:\Users\Martin\Desktop\cmd.bat deleted successfully.
      C:\Users\Martin\Desktop\cmd.txt deleted successfully.
      < attrib /d /s -r -h -s C:\Users\Martin\AppData /c >
      C:\Users\Martin\Desktop\cmd.bat deleted successfully.
      C:\Users\Martin\Desktop\cmd.txt deleted successfully.
      < attrib /d /s -r -h -s C:\Users\Default /c >
      C:\Users\Martin\Desktop\cmd.bat deleted successfully.
      C:\Users\Martin\Desktop\cmd.txt deleted successfully.
      < attrib /d /s -r -h -s C:\Users\Martin\Desktop /c >
      C:\Users\Martin\Desktop\cmd.bat deleted successfully.
      C:\Users\Martin\Desktop\cmd.txt deleted successfully.
      < attrib /d /s -r -h -s C:\Users\Martin\Documents /c >
      C:\Users\Martin\Desktop\cmd.bat deleted successfully.
      C:\Users\Martin\Desktop\cmd.txt deleted successfully.
      < attrib /d /s -r -h -s C:\Users\Public\Desktop /c >
      C:\Users\Martin\Desktop\cmd.bat deleted successfully.
      C:\Users\Martin\Desktop\cmd.txt deleted successfully.
      < attrib /d /s -r -h -s C:\Users\Public\Favorites /c >
      C:\Users\Martin\Desktop\cmd.bat deleted successfully.
      C:\Users\Martin\Desktop\cmd.txt deleted successfully.
      ========== COMMANDS ==========

      [EMPTYTEMP]

      User: All Users

      User: Default
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 0 bytes

      User: Default User
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 0 bytes

      User: Martin
      ->Temp folder emptied: 236286 bytes
      ->Temporary Internet Files folder emptied: 9812898 bytes
      ->Java cache emptied: 13184524 bytes
      ->FireFox cache emptied: 162291039 bytes
      ->Google Chrome cache emptied: 7926885 bytes
      ->Flash cache emptied: 8679 bytes

      User: Public
      ->Temp folder emptied: 0 bytes

      User: UpdatusUser
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 0 bytes

      %systemdrive% .tmp files removed: 0 bytes
      %systemroot% .tmp files removed: 0 bytes
      %systemroot%\System32 .tmp files removed: 0 bytes
      %systemroot%\System32 (64bit) .tmp files removed: 0 bytes
      %systemroot%\System32\drivers .tmp files removed: 0 bytes
      Windows Temp folder emptied: 24806 bytes
      %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 113117 bytes
      RecycleBin emptied: 1903280102 bytes

      Total Files Cleaned = 2.000,00 mb


      OTL by OldTimer - Version 3.2.69.0 log created on 01142014_113304

      Files\Folders moved on Reboot...
      C:\Users\Martin\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
      C:\Users\Martin\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.

      PendingFileRenameOperations files...

      Registry entries deleted on Reboot...

    4. #24
      Moderador
      Avatar de M@co
      Registrado
      dic 2007
      Ubicación
      America
      Mensajes
      15.766

      Re: archivos convertidos en carpetas

      1.- Descarga: UnHide en el escritorio de Windows.
      • Dale doble click para ejecutarla y esperas pacientemente a que termine el proceso.


      2.- Abre la unidad donde están esas carpetas y saca unas imágenes, luego las subes en tu próxima respuesta.

      Blog | Antivirus Online | Eliminar Malwares | Antivirus Gratis


      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    5. #25
      Usuario Avatar de msmartin76
      Registrado
      may 2009
      Ubicación
      madrid
      Mensajes
      36

      Re: archivos convertidos en carpetas

      Hola

      Pego las imagenes

      No se ve ninguna carpeta ni archivo extraños adicionales a los que estaban antes de usar el UnHide
      Si se pueden ver los archivos que se han cnvertido en carpetas y tienen el simbolo del candado

      Mil gracias por la ayuda que me estas dando

      Slds






    6. #26
      Usuario Avatar de msmartin76
      Registrado
      may 2009
      Ubicación
      madrid
      Mensajes
      36

      Re: archivos convertidos en carpetas

      parece que no se pegaron las imagenes

      Van aca de nuevo






    7. #27
      Usuario Avatar de msmartin76
      Registrado
      may 2009
      Ubicación
      madrid
      Mensajes
      36

      Re: archivos convertidos en carpetas

      No se por que no se ven las imagenes

      Pruebo de nuevo






    8. #28
      Moderador
      Avatar de M@co
      Registrado
      dic 2007
      Ubicación
      America
      Mensajes
      15.766

      Re: archivos convertidos en carpetas

      Pero no son ejecutables, al parecer están bloqueadas o protegidas con contraseñas.

      Haz esto:

      Ve a MiPc y Clic en la opción Herramientas.

      Selecciona Opciones de carpeta >> Clic en la pestaña VER y desmarca la ultima casilla de la configuración avanzada.

      Aplica y Acepta

      _______

      Clic derecho a la carpeta que quieres desbloquear >> Clic en Propiedades y selecciona la pestaña Seguridad.

      Agregas tu usuario y todos los permisos de administrador.

      Importante: Luego tienes que deshacer el primer paso o sea marcar la opción de uso compartido de archivos, para que no se te bloqueen otras carpetas.

      Un saludo.

      Blog | Antivirus Online | Eliminar Malwares | Antivirus Gratis


      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    9. #29
      Usuario Avatar de msmartin76
      Registrado
      may 2009
      Ubicación
      madrid
      Mensajes
      36

      Re: archivos convertidos en carpetas

      Dentro de Opciones de carpeta >> Clic en la pestaña VER no hay ninguna casilla de confguracin avanzada para desmarcar

      De todas formas, cuando agrego a mi usuario y le doy todos los permisos me aparece este mensaje:


      Como puedes ver en la siguiente imagen, existe un usuario resaltado en azul que es muy extraño y que imagino q es lo que esta generando este problema


      Saludos y gracias

    10. #30
      Moderador
      Avatar de M@co
      Registrado
      dic 2007
      Ubicación
      America
      Mensajes
      15.766

      Re: archivos convertidos en carpetas

      Hola.

      Chequea esto

      Un saludo.

      Blog | Antivirus Online | Eliminar Malwares | Antivirus Gratis


      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.