• Registrarse
  • Iniciar sesión


  • Página 1 de 2 12 ÚltimoÚltimo
    Resultados 1 al 10 de 14

    Eliminar Awesomehp (Solucionado)

    Resumen del tema: Eliminar Awesomehp (Solucionado) - Buenas tardes, tras probar de todo he seguido tus indicaciones y estos son los resultados del OTL. TL logfile created on: 27/01/2014 15 29 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = ...

      
    1. #1
      Usuario Avatar de jlbpmr
      Registrado
      ene 2014
      Ubicación
      España
      Mensajes
      8

      Eliminar Awesomehp (Solucionado)

      Buenas tardes, tras probar de todo he seguido tus indicaciones y estos son los resultados del OTL.

      TL logfile created on: 27/01/2014 1529 - Run 1
      OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jos\Downloads
      64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
      Internet Explorer (Version = 9.10.9200.16750)
      Locale: 00000C0A | Country: España | Language: ESN | Date Format: dd/MM/yyyy

      3,89 Gb Total Physical Memory | 2,54 Gb Available Physical Memory | 65,28% Memory free
      7,89 Gb Paging File | 6,50 Gb Available in Paging File | 82,36% Paging File free
      Paging file location(s): ?:\pagefile.sys [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
      Drive C: | 119,23 Gb Total Space | 43,14 Gb Free Space | 36,18% Space Free | Partition Type: NTFS
      Drive D: | 157,84 Gb Total Space | 137,97 Gb Free Space | 87,41% Space Free | Partition Type: NTFS

      Computer Name: JOSELUIS-LEIRE | User Name: Jose Luis y Leire | Logged in as Administrator.
      Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
      Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

      ========== Processes (SafeList) ==========

      PRC - C:\Users\Jos\Downloads\OTL.exe (OldTimer Tools)
      PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
      PRC - C:\Program Files\Classic Shell\ClassicShellService.exe (IvoSoft)
      PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
      PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
      PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
      PRC - C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe (ASUSTeK Computer Inc.)
      PRC - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe (ASUS)
      PRC - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (ASUSTek Computer Inc.)
      PRC - C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe (ASUSTeK Computer Inc.)
      PRC - C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe (ASUSTek Computer Inc.)
      PRC - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe (ASUSTek Computer Inc.)
      PRC - C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ASUSTek Computer Inc.)
      PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation)
      PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation)
      PRC - C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (ASUSTek Computer Inc.)
      PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation)
      PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation)
      PRC - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe (ASUSTek Computer Inc.)
      PRC - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe (ASUS)
      PRC - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (ASUS)


      ========== Modules (No Company Name) ==========

      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\e6606a84f8a4cdc18c74e63ec807c689\System.Windows.Forms.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\c508451271803f1677317735db499f5c\System.Configuration.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\3e52c3479469fe72eed0716b48859e91\WindowsBase.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\624ad6159b6e241ad6d28bf4dca9f14b\System.Xml.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\123cf617d7b6b31c44e39f8594f064c5\System.Xaml.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\3603744988436295da5d16e76038e484\System.Drawing.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\Presentatioaec034ca#\cb65dcc8c60f33d257283ef1416a2175\PresentationFramework.Aero2.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\Presentatio5ae0f00f#\972bf4ffab06e561447d12baf3b3dfa9\PresentationFramework.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\5b504b7cd800dcd6c06d841d94ca099a\PresentationCore.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System\375a937eec7d6faa53ac11ab2973eb76\System.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\5e3a9f3d64adfb3c69b49d37368bf454\mscorlib.ni.dll ()
      MOD - C:\Program Files (x86)\Free Download Manager\fdmumsp.dll ()


      ========== Services (SafeList) ==========

      SRV:64bit: - (WSService) -- C:\Windows\SysNative\WSService.dll (Microsoft Corporation)
      SRV:64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation)
      SRV:64bit: - (Wcmsvc) -- C:\Windows\SysNative\wcmsvc.dll (Microsoft Corporation)
      SRV:64bit: - (DsmSvc) -- C:\Windows\SysNative\DeviceSetupManager.dll (Microsoft Corporation)
      SRV:64bit: - (netprofm) -- C:\Windows\SysNative\netprofmsvc.dll (Microsoft Corporation)
      SRV:64bit: - (BrokerInfrastructure) -- C:\Windows\SysNative\bisrv.dll (Microsoft Corporation)
      SRV:64bit: - (ClassicShellService) -- C:\Program Files\Classic Shell\ClassicShellService.exe (IvoSoft)
      SRV:64bit: - (AudioEndpointBuilder) -- C:\Windows\SysNative\AudioEndpointBuilder.dll (Microsoft Corporation)
      SRV:64bit: - (TimeBroker) -- C:\Windows\SysNative\TimeBrokerServer.dll (Microsoft Corporation)
      SRV:64bit: - (SystemEventsBroker) -- C:\Windows\SysNative\SystemEventsBrokerServer.dll (Microsoft Corporation)
      SRV:64bit: - (wlidsvc) -- C:\Windows\SysNative\wlidsvc.dll (Microsoft Corporation)
      SRV:64bit: - (LSM) -- C:\Windows\SysNative\lsm.dll (Microsoft Corporation)
      SRV:64bit: - (PrintNotify) -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll (Microsoft Corporation)
      SRV:64bit: - (fhsvc) -- C:\Windows\SysNative\fhsvc.dll (Microsoft Corporation)
      SRV:64bit: - (WiaRpc) -- C:\Windows\SysNative\wiarpc.dll (Microsoft Corporation)
      SRV:64bit: - (VaultSvc) -- C:\Windows\SysNative\vaultsvc.dll (Microsoft Corporation)
      SRV:64bit: - (svsvc) -- C:\Windows\SysNative\svsvc.dll (Microsoft Corporation)
      SRV:64bit: - (Netlogon) -- C:\Windows\SysNative\netlogon.dll (Microsoft Corporation)
      SRV:64bit: - (NcaSvc) -- C:\Windows\SysNative\NcaSvc.dll (Microsoft Corporation)
      SRV:64bit: - (NcdAutoSetup) -- C:\Windows\SysNative\NcdAutoSetup.dll (Microsoft Corporation)
      SRV:64bit: - (KeyIso) -- C:\Windows\SysNative\keyiso.dll (Microsoft Corporation)
      SRV:64bit: - (EFS) -- C:\Windows\SysNative\efssvc.dll (Microsoft Corporation)
      SRV:64bit: - (DeviceAssociationService) -- C:\Windows\SysNative\das.dll (Microsoft Corporation)
      SRV:64bit: - (AllUserInstallAgent) -- C:\Windows\SysNative\AUInstallAgent.dll (Microsoft Corporation)
      SRV:64bit: - (vmicvss) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
      SRV:64bit: - (vmictimesync) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
      SRV:64bit: - (vmicshutdown) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
      SRV:64bit: - (vmicrdv) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
      SRV:64bit: - (vmickvpexchange) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
      SRV:64bit: - (vmicheartbeat) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
      SRV:64bit: - (Intel(R) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel(R) Corporation)
      SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
      SRV - (MBAMService) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
      SRV - (MBAMScheduler) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
      SRV - (Asus WebStorage Windows Service) -- C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe ()
      SRV - (PrintNotify) -- C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll (Microsoft Corporation)
      SRV - (cphs) -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe (Intel Corporation)
      SRV - (StorSvc) -- C:\Windows\SysWOW64\StorSvc.dll (Microsoft Corporation)
      SRV - (ASLDRService) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe (ASUSTek Computer Inc.)
      SRV - (UNS) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation)
      SRV - (LMS) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation)
      SRV - (Intel(R) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation)
      SRV - (jhi_service) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation)
      SRV - (ASUS InstantOn) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe (ASUS)
      SRV - (ATKGFNEXSrv) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (ASUS)


      ========== Driver Services (SafeList) ==========

      DRV:64bit: - (WFPLWFS) -- C:\Windows\SysNative\Drivers\wfplwfs.sys (Microsoft Corporation)
      DRV:64bit: - (spaceport) -- C:\Windows\SysNative\Drivers\spaceport.sys (Microsoft Corporation)
      DRV:64bit: - (USBHUB3) -- C:\Windows\SysNative\Drivers\USBHUB3.SYS (Microsoft Corporation)
      DRV:64bit: - (dam) -- C:\Windows\SysNative\Drivers\dam.sys (Microsoft Corporation)
      DRV:64bit: - (TPM) -- C:\Windows\SysNative\Drivers\tpm.sys (Microsoft Corporation)
      DRV:64bit: - (GPIOClx0101) -- C:\Windows\SysNative\Drivers\msgpioclx.sys (Microsoft Corporation)
      DRV:64bit: - (USBXHCI) -- C:\Windows\SysNative\Drivers\USBXHCI.SYS (Microsoft Corporation)
      DRV:64bit: - (UCX01000) -- C:\Windows\SysNative\Drivers\UCX01000.SYS (Microsoft Corporation)
      DRV:64bit: - (WdBoot) -- C:\Windows\SysNative\Drivers\WdBoot.sys (Microsoft Corporation)
      DRV:64bit: - (WdFilter) -- C:\Windows\SysNative\Drivers\WdFilter.sys (Microsoft Corporation)
      DRV:64bit: - (sdbus) -- C:\Windows\SysNative\Drivers\sdbus.sys (Microsoft Corporation)
      DRV:64bit: - (BthAvrcpTg) -- C:\Windows\SysNative\Drivers\BthAvrcpTg.sys (Microsoft Corporation)
      DRV:64bit: - (MBAMProtector) -- C:\Windows\SysNative\Drivers\mbam.sys (Malwarebytes Corporation)
      DRV:64bit: - (storahci) -- C:\Windows\SysNative\Drivers\storahci.sys (Microsoft Corporation)
      DRV:64bit: - (pdc) -- C:\Windows\SysNative\Drivers\pdc.sys (Microsoft Corporation)
      DRV:64bit: - (msgpiowin32) -- C:\Windows\SysNative\Drivers\msgpiowin32.sys (Microsoft Corporation)
      DRV:64bit: - (bthhfhid) -- C:\Windows\SysNative\Drivers\BthhfHid.sys (Microsoft Corporation)
      DRV:64bit: - (hidi2c) -- C:\Windows\SysNative\Drivers\hidi2c.sys (Microsoft Corporation)
      DRV:64bit: - (FxPPM) -- C:\Windows\SysNative\Drivers\fxppm.sys (Microsoft Corporation)
      DRV:64bit: - (ATP) -- C:\Windows\SysNative\Drivers\AsusTP.sys (ASUS Corporation)
      DRV:64bit: - (RdpVideoMiniport) -- C:\Windows\SysNative\Drivers\rdpvideominiport.sys (Microsoft Corporation)
      DRV:64bit: - (sdstor) -- C:\Windows\SysNative\Drivers\sdstor.sys (Microsoft Corporation)
      DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\Drivers\evbda.sys (Broadcom Corporation)
      DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\Drivers\bxvbda.sys (Broadcom Corporation)
      DRV:64bit: - (igfx) -- C:\Windows\SysNative\Drivers\igdkmd64.sys (Intel Corporation)
      DRV:64bit: - (kbfiltr) -- C:\Windows\SysNative\Drivers\kbfiltr.sys ( )
      DRV:64bit: - (RTL8168) -- C:\Windows\SysNative\Drivers\Rt630x64.sys (Realtek )
      DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
      DRV:64bit: - (condrv) -- C:\Windows\SysNative\Drivers\condrv.sys (Microsoft Corporation)
      DRV:64bit: - (VSTXRAID) -- C:\Windows\SysNative\Drivers\VSTXRAID.SYS (VIA Corporation)
      DRV:64bit: - (VerifierExt) -- C:\Windows\SysNative\Drivers\VerifierExt.sys (Microsoft Corporation)
      DRV:64bit: - (UASPStor) -- C:\Windows\SysNative\Drivers\uaspstor.sys (Microsoft Corporation)
      DRV:64bit: - (acpiex) -- C:\Windows\SysNative\Drivers\acpiex.sys (Microsoft Corporation)
      DRV:64bit: - (mvumis) -- C:\Windows\SysNative\Drivers\mvumis.sys (Marvell Semiconductor, Inc.)
      DRV:64bit: - (stexstor) -- C:\Windows\SysNative\Drivers\stexstor.sys (Promise Technology, Inc.)
      DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\Drivers\lsi_sas2.sys (LSI Corporation)
      DRV:64bit: - (LSI_SSS) -- C:\Windows\SysNative\Drivers\lsi_sss.sys (LSI Corporation)
      DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\Drivers\HpSAMD.sys (Hewlett-Packard Company)
      DRV:64bit: - (EhStorTcgDrv) -- C:\Windows\SysNative\Drivers\EhStorTcgDrv.sys (Microsoft Corporation)
      DRV:64bit: - (EhStorClass) -- C:\Windows\SysNative\Drivers\EhStorClass.sys (Microsoft Corporation)
      DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\Drivers\amdsbs.sys (AMD Technologies Inc.)
      DRV:64bit: - (3ware) -- C:\Windows\SysNative\Drivers\3ware.sys (LSI)
      DRV:64bit: - (amdsata) -- C:\Windows\SysNative\Drivers\amdsata.sys (Advanced Micro Devices)
      DRV:64bit: - (amdxata) -- C:\Windows\SysNative\Drivers\amdxata.sys (Advanced Micro Devices)
      DRV:64bit: - (CLFS) -- C:\Windows\SysNative\Drivers\clfs.sys (Microsoft Corporation)
      DRV:64bit: - (vpci) -- C:\Windows\SysNative\Drivers\vpci.sys (Microsoft Corporation)
      DRV:64bit: - (terminpt) -- C:\Windows\SysNative\Drivers\terminpt.sys (Microsoft Corporation)
      DRV:64bit: - (mshidumdf) -- C:\Windows\SysNative\Drivers\mshidumdf.sys (Microsoft Corporation)
      DRV:64bit: - (BasicDisplay) -- C:\Windows\SysNative\Drivers\BasicDisplay.sys (Microsoft Corporation)
      DRV:64bit: - (HyperVideo) -- C:\Windows\SysNative\Drivers\HyperVideo.sys (Microsoft Corporation)
      DRV:64bit: - (BasicRender) -- C:\Windows\SysNative\Drivers\BasicRender.sys (Microsoft Corporation)
      DRV:64bit: - (gencounter) -- C:\Windows\SysNative\Drivers\vmgencounter.sys (Microsoft Corporation)
      DRV:64bit: - (kdnic) -- C:\Windows\SysNative\Drivers\kdnic.sys (Microsoft Corporation)
      DRV:64bit: - (acpitime) -- C:\Windows\SysNative\Drivers\acpitime.sys (Microsoft Corporation)
      DRV:64bit: - (npsvctrig) -- C:\Windows\SysNative\Drivers\npsvctrig.sys (Microsoft Corporation)
      DRV:64bit: - (WpdUpFltr) -- C:\Windows\SysNative\Drivers\WpdUpFltr.sys (Microsoft Corporation)
      DRV:64bit: - (acpipagr) -- C:\Windows\SysNative\Drivers\acpipagr.sys (Microsoft Corporation)
      DRV:64bit: - (hyperkbd) -- C:\Windows\SysNative\Drivers\hyperkbd.sys (Microsoft Corporation)
      DRV:64bit: - (SerCx) -- C:\Windows\SysNative\Drivers\SerCx.sys (Microsoft Corporation)
      DRV:64bit: - (SpbCx) -- C:\Windows\SysNative\Drivers\SpbCx.sys (Microsoft Corporation)
      DRV:64bit: - (TsUsbGD) -- C:\Windows\SysNative\Drivers\TsUsbGD.sys (Microsoft Corporation)
      DRV:64bit: - (BthHFEnum) -- C:\Windows\SysNative\Drivers\bthhfenum.sys (Microsoft Corporation)
      DRV:64bit: - (dmvsc) -- C:\Windows\SysNative\Drivers\dmvsc.sys (Microsoft Corporation)
      DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\Drivers\TsUsbFlt.sys (Microsoft Corporation)
      DRV:64bit: - (wpcfltr) -- C:\Windows\SysNative\Drivers\wpcfltr.sys (Microsoft Corporation)
      DRV:64bit: - (NdisImPlatform) -- C:\Windows\SysNative\Drivers\NdisImPlatform.sys (Microsoft Corporation)
      DRV:64bit: - (MsLldp) -- C:\Windows\SysNative\Drivers\mslldp.sys (Microsoft Corporation)
      DRV:64bit: - (Ndu) -- C:\Windows\SysNative\Drivers\Ndu.sys (Microsoft Corporation)
      DRV:64bit: - (AiCharger) -- C:\Windows\SysNative\Drivers\AiCharger.sys (ASUSTek Computer Inc.)
      DRV:64bit: - (iaStorA) -- C:\Windows\SysNative\Drivers\iaStorA.sys (Intel Corporation)
      DRV:64bit: - (MEIx64) -- C:\Windows\SysNative\Drivers\HECIx64.sys (Intel Corporation)
      DRV:64bit: - (IntcDAud) -- C:\Windows\SysNative\Drivers\IntcDAud.sys (Intel(R) Corporation)
      DRV:64bit: - (RSBASTOR) -- C:\Windows\SysNative\Drivers\RtsBaStor.sys (Realtek Semiconductor Corp.)
      DRV:64bit: - (AgereSoftModem) -- C:\Windows\SysNative\Drivers\agrsm64.sys (LSI Corp)
      DRV:64bit: - (NETwNs64) -- C:\Windows\SysNative\Drivers\NETwNs64.sys (Intel Corporation)
      DRV:64bit: - (e1iexpress) -- C:\Windows\SysNative\Drivers\e1i63x64.sys (Intel Corporation)
      DRV:64bit: - (athr) -- C:\Windows\SysNative\Drivers\athrx.sys (Qualcomm Atheros Communications, Inc.)
      DRV:64bit: - (HIDSwitch) -- C:\Windows\SysNative\Drivers\AsHIDSwitch64.sys (ASUS)
      DRV - (ATKWMIACPIIO) -- C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys (ASUS)
      DRV - (ASMMAP64) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys (ASUS)


      ========== Standard Registry (SafeList) ==========


      ========== Internet Explorer ==========

      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Awesomehp
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.awesomehp.com/web/?type=ds&ts=1390585689&from=tugs&uid=HitachiXHTS545032A7E380_TA8B113VJAGRKNJAGRKNX&q={searchTerms}
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.awesomehp.com/web/?type=ds&ts=1390585689&from=tugs&uid=HitachiXHTS545032A7E380_TA8B113VJAGRKNJAGRKNX&q={searchTerms}
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Awesomehp
      IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
      IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASU2JS
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Awesomehp
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.awesomehp.com/web/?type=ds&ts=1390585689&from=tugs&uid=HitachiXHTS545032A7E380_TA8B113VJAGRKNJAGRKNX&q={searchTerms}
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.awesomehp.com/web/?type=ds&ts=1390585689&from=tugs&uid=HitachiXHTS545032A7E380_TA8B113VJAGRKNJAGRKNX&q={searchTerms}
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Awesomehp
      IE - HKLM\..\SearchScopes,DefaultScope =
      IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


      IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
      IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
      IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

      IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

      IE - HKU\S-1-5-21-1710089055-1895873784-4135953973-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Awesomehp
      IE - HKU\S-1-5-21-1710089055-1895873784-4135953973-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google
      IE - HKU\S-1-5-21-1710089055-1895873784-4135953973-1001\..\SearchScopes,DefaultScope = {696EFADB-49B2-4A15-807A-80717A6DD24A}
      IE - HKU\S-1-5-21-1710089055-1895873784-4135953973-1001\..\SearchScopes\{696EFADB-49B2-4A15-807A-80717A6DD24A}: "URL" = http://www.google.com/search?hl=en&q={searchTerms}
      IE - HKU\S-1-5-21-1710089055-1895873784-4135953973-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


      ========== FireFox ==========

      FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
      FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/Lync,version=15.0: C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.8: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
      FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.1: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
      FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.2: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
      FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

      FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\[email protected]: C:\Program Files\McAfee\MSK

      [2012/10/01 19:43:54 | 000,034,016 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll

      O1 HOSTS File: ([2012/07/26 06:26:49 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\Drivers\etc\hosts
      O2:64bit: - BHO: (ExplorerBHO Class) - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
      O2:64bit: - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL (Microsoft Corporation)
      O2:64bit: - BHO: (ClassicIE9BHO Class) - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_64.dll (IvoSoft)
      O2 - BHO: (ExplorerBHO Class) - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
      O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL (Microsoft Corporation)
      O2 - BHO: (Free Download Manager) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files (x86)\Free Download Manager\iefdm2.dll (FreeDownloadManager.ORG)
      O2 - BHO: (Microsoft SkyDrive Pro Browser Helper) - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL (Microsoft Corporation)
      O2 - BHO: (ClassicIE9BHO Class) - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_32.dll (IvoSoft)
      O3:64bit: - HKLM\..\Toolbar: (Classic Explorer Bar) - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
      O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
      O3 - HKLM\..\Toolbar: (Classic Explorer Bar) - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
      O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
      O4:64bit: - HKLM..\Run: [ACMON] C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (ASUS)
      O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
      O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
      O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
      O4 - HKLM..\Run: [] File not found
      O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
      O4 - HKLM..\Run: [ASUSWebStorage] C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe (ASUS Cloud Corporation)
      O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Main present
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
      O8:64bit: - Extra context menu item: &Enviar a OneNote - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105 File not found
      O8:64bit: - Extra context menu item: Descargar con Free Download Manager - C:\Program Files (x86)\Free Download Manager\dllink.htm ()
      O8:64bit: - Extra context menu item: Descargar la selección con Free Download Manager - C:\Program Files (x86)\Free Download Manager\dlselected.htm ()
      O8:64bit: - Extra context menu item: Descargar todo con Free Download Manager - C:\Program Files (x86)\Free Download Manager\dlall.htm ()
      O8:64bit: - Extra context menu item: Descargar video con Free Download Manager - C:\Program Files (x86)\Free Download Manager\dlfvideo.htm ()
      O8:64bit: - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000 File not found
      O8 - Extra context menu item: &Enviar a OneNote - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105 File not found
      O8 - Extra context menu item: Descargar con Free Download Manager - C:\Program Files (x86)\Free Download Manager\dllink.htm ()
      O8 - Extra context menu item: Descargar la selección con Free Download Manager - C:\Program Files (x86)\Free Download Manager\dlselected.htm ()
      O8 - Extra context menu item: Descargar todo con Free Download Manager - C:\Program Files (x86)\Free Download Manager\dlall.htm ()
      O8 - Extra context menu item: Descargar video con Free Download Manager - C:\Program Files (x86)\Free Download Manager\dlfvideo.htm ()
      O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000 File not found
      O9:64bit: - Extra 'Tools' menuitem : Classic IE9 Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE9_32.exe (IvoSoft)
      O9 - Extra 'Tools' menuitem : Classic IE9 Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE9_32.exe (IvoSoft)
      O1364bit: - gopher Prefix: missing
      O13 - gopher Prefix: missing
      O16 - DPF: {1ABA5FAC-1417-422B-BA82-45C35E2C908B} http://kitchenplanner.ikea.com/ES/Co...IKEA_Win32.cab (20-20 3D Viewer for IKEA)
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.142.144.66 212.142.144.98
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B7F6A087-27DA-428D-AF97-E7337F007B3C}: DhcpNameServer = 212.142.144.66 212.142.144.98
      O18 - Protocol\Handler\ms-help - No CLSID value found
      O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
      O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
      O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
      O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O30 - LSA: Security Packages - (livessp) - File not found
      O32 - HKLM CDRom: AutoRun - 1
      O34 - HKLM BootExecute: (autocheck autochk *)
      O35:64bit: - HKLM\..comfile [open] -- "%1" %*
      O35:64bit: - HKLM\..exefile [open] -- "%1" %*
      O35 - HKLM\..comfile [open] -- "%1" %*
      O35 - HKLM\..exefile [open] -- "%1" %*
      O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
      O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
      O37 - HKLM\...com [@ = comfile] -- "%1" %*
      O37 - HKLM\...exe [@ = exefile] -- "%1" %*
      O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
      O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

      NetSvcs:64bit: wlidsvc - C:\Windows\SysNative\wlidsvc.dll (Microsoft Corporation)
      NetSvcs:64bit: DsmSvc - C:\Windows\SysNative\DeviceSetupManager.dll (Microsoft Corporation)
      NetSvcs:64bit: NcaSvc - C:\Windows\SysNative\NcaSvc.dll (Microsoft Corporation)
      NetSvcs:64bit: SystemEventsBroker - C:\Windows\SysNative\SystemEventsBrokerServer.dll (Microsoft Corporation)


      CREATERESTOREPOINT
      Restore point Set: OTL Restore Point

      ========== Files/Folders - Created Within 30 Days ==========

      [2014/01/27 10:26:22 | 000,000,000 | ---D | C] -- C:\programa
      [2014/01/27 10:26:22 | 000,000,000 | ---D | C] -- C:\de
      [2014/01/26 18:37:37 | 000,000,000 | ---D | C] -- C:\Users\Jos\AppData\Roaming\Malwarebytes
      [2014/01/26 18:37:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
      [2014/01/26 18:37:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
      [2014/01/26 18:37:34 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
      [2014/01/26 18:37:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
      [2014/01/25 23:11:19 | 000,000,000 | ---D | C] -- C:\Windows\Minidump
      [2014/01/25 21:41:30 | 000,000,000 | ---D | C] -- C:\AdwCleaner
      [2014/01/24 18:52:07 | 000,000,000 | ---D | C] -- C:\Users\Jos\AppData\Local\cache
      [2014/01/24 18:48:56 | 000,000,000 | ---D | C] -- C:\ProgramData\IePluginService

      ========== Files - Modified Within 30 Days ==========

      [2014/01/27 14:24:58 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
      [2014/01/27 11:55:06 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys
      [2014/01/27 11:55:03 | 3338,358,784 | -HS- | M] () -- C:\hiberfil.sys
      [2014/01/26 18:37:35 | 000,001,115 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
      [2014/01/25 23:11:13 | 433,040,298 | ---- | M] () -- C:\Windows\MEMORY.DMP
      [2014/01/25 16:51:45 | 000,002,259 | ---- | M] () -- C:\Windows\epplauncher.mif
      [2014/01/15 21:51:15 | 000,799,280 | ---- | M] () -- C:\Windows\SysNative\perfh00A.dat
      [2014/01/15 21:51:15 | 000,710,244 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
      [2014/01/15 21:51:15 | 000,163,056 | ---- | M] () -- C:\Windows\SysNative\perfc00A.dat
      [2014/01/15 21:51:15 | 000,132,614 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
      [2014/01/15 21:51:14 | 001,798,556 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
      [2014/01/12 12:42:47 | 007,144,183 | ---- | M] () -- C:\Users\Jos\Documents\1988 nº 271.pdf

      ========== Files Created - No Company Name ==========

      [2014/01/26 18:37:35 | 000,001,115 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
      [2014/01/25 23:11:13 | 433,040,298 | ---- | C] () -- C:\Windows\MEMORY.DMP
      [2014/01/25 16:51:45 | 000,002,259 | ---- | C] () -- C:\Windows\epplauncher.mif
      [2014/01/12 12:42:47 | 007,144,183 | ---- | C] () -- C:\Users\Jos\Documents\1988 nº 271.pdf
      [2013/09/11 09:03:04 | 000,083,968 | ---- | C] () -- C:\Windows\SysWow64\OEMLicense.dll
      [2013/06/05 10:42:41 | 000,217,457 | ---- | C] () -- C:\Windows\hpoins19.dat.temp
      [2013/06/05 10:42:41 | 000,015,561 | ---- | C] () -- C:\Windows\hpomdl19.dat.temp
      [2013/05/26 14:24:43 | 000,217,554 | ---- | C] () -- C:\Windows\hpoins19.dat
      [2013/05/26 14:24:43 | 000,015,561 | ---- | C] () -- C:\Windows\hpomdl19.dat
      [2013/05/25 10:40:26 | 000,000,311 | ---- | C] () -- C:\Users\Jos\AppData\Roaming\Weather Meter_Settings.ini
      [2013/05/25 02:07:25 | 000,000,408 | ---- | C] () -- C:\Users\Jos\AppData\Roaming\sp_data.sys
      [2012/09/07 05:39:53 | 000,272,928 | ---- | C] () -- C:\Windows\SysWow64\igvpkrng600.bin
      [2012/09/07 05:39:36 | 000,064,512 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll
      [2012/09/07 05:39:33 | 000,963,388 | ---- | C] () -- C:\Windows\SysWow64\igcodeckrng600.bin
      [2012/08/04 19:52:38 | 000,024,576 | ---- | C] () -- C:\ProgramData\SetStretch.exe
      [2012/08/04 19:52:38 | 000,000,217 | ---- | C] () -- C:\ProgramData\SetStretch.cmd
      [2012/07/26 09:13:10 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
      [2012/07/26 09:13:09 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
      [2012/07/26 08:21:26 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
      [2012/07/26 02:17:42 | 000,043,520 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
      [2012/07/25 21:37:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
      [2012/07/25 21:28:31 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
      [2012/06/02 15:31:19 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
      [2012/04/20 14:59:44 | 000,001,536 | ---- | C] () -- C:\Windows\SysWow64\IusEventLog.dll

      ========== ZeroAccess Check ==========

      [2012/11/07 22:36:42 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

      [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

      [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

      [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

      [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
      "" = C:\Windows\SysNative\shell32.dll -- [2013/08/02 07:28:20 | 019,758,080 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
      "" = %SystemRoot%\system32\shell32.dll -- [2013/08/02 06:08:10 | 017,561,088 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
      "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2012/07/26 04:05:38 | 001,004,544 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
      "" = %systemroot%\system32\wbem\fastprox.dll -- [2012/07/26 04:18:27 | 000,784,896 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
      "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2012/07/26 04:07:41 | 000,455,680 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Both

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

      ========== LOP Check ==========

      [2013/05/24 18:45:36 | 000,000,000 | ---D | M] -- C:\Users\Jos\AppData\Roaming\ASUS
      [2013/05/25 02:07:43 | 000,000,000 | ---D | M] -- C:\Users\Jos\AppData\Roaming\ASUS WebStorage
      [2013/08/08 23:03:05 | 000,000,000 | ---D | M] -- C:\Users\Jos\AppData\Roaming\dcdb
      [2013/08/08 23:03:03 | 000,000,000 | ---D | M] -- C:\Users\Jos\AppData\Roaming\dcdb.CD97172A60C8A280219A1491E77640CEF925B9AD.1
      [2013/12/30 07:59:26 | 000,000,000 | ---D | M] -- C:\Users\Jos\AppData\Roaming\Dropbox
      [2013/08/30 13:13:55 | 000,000,000 | ---D | M] -- C:\Users\Jos\AppData\Roaming\DVDVideoSoft
      [2014/01/27 15:04:56 | 000,000,000 | ---D | M] -- C:\Users\Jos\AppData\Roaming\Free Download Manager
      [2013/07/09 16:08:52 | 000,000,000 | ---D | M] -- C:\Users\Jos\AppData\Roaming\FreeVideoConverter
      [2013/05/25 10:09:15 | 000,000,000 | ---D | M] -- C:\Users\Jos\AppData\Roaming\TuneUp Software

      ========== Purity Check ==========



      ========== Custom Scans ==========

    2. #2
      Moderadora
      Avatar de @Daniela
      Registrado
      abr 2011
      Ubicación
      España
      Mensajes
      11.105

      Re: no consigo eliminar awesomehp

      Hola jlbpmr


      Realiza los siguientes pasos (Si tienes alguna herramienta descargada, no tienes que volver a daescargarla):

      1) Descarga Malwarebytes

      • Instalas Malwarebytes y le das a actualizar
      • Realizas un análisis completo
      • Una vez finalizado, pulsa sobre "Mostrar los Resultados " y "Eliminar Seleccionadas", si se da el caso
      • En el caso de que te pida reiniciar, reinicia


      2) Descarga >> AdwCleaner | InfoSpyware en el escritorio.

      • Desactiva temporalmente el Antivirus >> Cómo deshabilitar temporalmente su Antivirus.
      • Cierra también todos los programas que tengas abiertos.
      • Ejecuta Adwcleaner.exe (Si usas Windows Vista/7 u 8 presiona clic derecho y selecciona "Ejecutar como Administrador.")
      • Pulsar en el botón Escanear, y espera a que se realice el proceso, inmediatamente pulsa sobre el botónLimpiar.
      • Espera a que se complete y sigue las instrucciones, si te pidiera Reiniciar el sistemaAceptas.
      • Guardas el reporte que te aparecerá, para copiarlo y pegarlo en tu próxima respuesta.
      • El informe también se puede encontrar en "C:\AdwCleaner\AdwCleaner[S0].txt"


      3) Descarga CCleaner

      • Instala Ccleaner
      • Abres Ccleaner en la pestaña limpiador dejas como esta configurada predeterminadamente, haces clic en analizar esperas que termine > clic en ejecutar limpiador
      • clic en la pestaña Registro > clic en buscar problemas esperas que termine > clic en Reparar Seleccionadas y haces una copia de seguridad
      • Vuelves a darle clic en buscar problemas hasta que no encuentre ninguno.


      4) Descarga >> OTL By OldTimer a tu escritorio. Mueve OTL al escritorio, lo tienes en la carpeta de descarga.

      Para Ejecutar OTL sigue estos pasos :

      • Cerrar todos programas que tengas abiertos y hacer doble click en el ícono de OTL para ejecutarlo.
      • Dejarlo correr y esperar a que aparezca el menú de OTL..
      • Cuando salga el menú de OTL, debes cambiar debajo de: "Tipo de Análisis" poniendo Resultado Mínimo.
      • Marcar la casilla Analizar Todos.
      • Marcar las opciones:Buscar LOP y Buscar Purity
      • Marcar las Opciones: Omitir Archivos De Microsoft y Usar Listado de Compañías Reconocidas.
      • Copiar y Pegar las líneas del siguiente script bajo la casilla Análisis Personalizados/Código de Reparación:

        NOTA: No copiar la palabra Código:
        Código:
        netsvcs
        msconfig
        %SYSTEMDRIVE%\*.*
        CREATERESTOREPOINT


      • Por favor No cambies el resto de la configuración a menos que te lo solicitemos.


      • Presionar el botón .
      • Una vez que termine, se abrirán dos (2) archivos, OTL.Txt y Extras.Txt. Éstos archivos estarán grabados en el mismo lugar donde OTL.exe fue descargado.
      • Copiar y pegar el contenido del archivo OTL.txt en tu próxima respuesta.


      Pega los reportes de Malwarebytes, OTL.txt y AdwCleaner y comentas como va el problema.

      Pega los reportes completos, el de OTL no lo está.

      Un saludo
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    3. #3
      Usuario Avatar de jlbpmr
      Registrado
      ene 2014
      Ubicación
      España
      Mensajes
      8
      Ya esta hecho eso, todo lo he pasado hasta dos veces, localice en el disco duro una carpeta HP que se creo el dia que me empezó el virus, como no se podía borrar la he borrado desde MS-DOS, ahora ya no aparece, pero al abrir la primera vez el Explorer sigue apareciendo la puñetera awesomehp.

      Te pegue el de OTL.
      Quieres mas ?? Hago los otros ???

    4. #4
      Moderadora
      Avatar de @Daniela
      Registrado
      abr 2011
      Ubicación
      España
      Mensajes
      11.105

      Re: Eliminar Awesomehp

      Hola

      De acuerdo

      Pon los últimos reportes de Malwarebyte y AdwCleaner que tienes.

      Y el reporte de OTL pégalo completo para poder indicarte la reparación.

      Por lo menos pega desde:

      ========== Purity Check ==========



      ========== Custom Scans ==========[/QUOTE]

      Hasta < End of report > completo

      Un saludo
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    5. #5
      Usuario Avatar de jlbpmr
      Registrado
      ene 2014
      Ubicación
      España
      Mensajes
      8

      Re: Eliminar Awesomehp

      El de Adwcleaner es este.

      # AdwCleaner v3.017 - Reporte Creado 27/01/2014 en 17:58:01
      # Actualizado 12/01/2014 por Xplode
      # Sistema Operativo : Windows 8 (64 bits)
      # Nombre de usuario : Jose Luis y Leire - JOSELUIS-LEIRE
      # Ejecutado desde : C:\Users\Jos\Downloads\adwcleaner.exe
      # Opción : Limpiar

      ***** [ Servicios ] *****


      ***** [ Archivos / Carpetas ] *****


      ***** [ Accesos directos ] *****


      ***** [ Registro ] *****


      ***** [ Navegadores ] *****

      -\\ Internet Explorer v10.0.9200.16537


      *************************

      AdwCleaner[R0].txt - [2729 octets] - [25/01/2014 21:41:32]
      AdwCleaner[R1].txt - [784 octets] - [25/01/2014 21:51:46]
      AdwCleaner[R2].txt - [843 octets] - [25/01/2014 22:02:25]
      AdwCleaner[R3].txt - [902 octets] - [25/01/2014 23:40:52]
      AdwCleaner[R4].txt - [961 octets] - [26/01/2014 21:51:26]
      AdwCleaner[R5].txt - [1081 octets] - [27/01/2014 10:37:45]
      AdwCleaner[R6].txt - [1201 octets] - [27/01/2014 11:53:25]
      AdwCleaner[R7].txt - [1321 octets] - [27/01/2014 17:57:08]
      AdwCleaner[S0].txt - [2259 octets] - [25/01/2014 21:48:16]
      AdwCleaner[S1].txt - [1019 octets] - [26/01/2014 21:55:19]
      AdwCleaner[S2].txt - [1141 octets] - [27/01/2014 10:38:19]
      AdwCleaner[S3].txt - [1261 octets] - [27/01/2014 11:54:21]
      AdwCleaner[S4].txt - [1241 octets] - [27/01/2014 17:58:01]

      ########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [1301 octets] ##########

    6. #6
      Usuario Avatar de jlbpmr
      Registrado
      ene 2014
      Ubicación
      España
      Mensajes
      8

      Re: Eliminar Awesomehp

      El de OTL, esta en un archivo en el disco duro, te lo copio entero.

      OTL logfile created on: 27/01/2014 1529 - Run 1
      OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jos\Downloads
      64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
      Internet Explorer (Version = 9.10.9200.16750)
      Locale: 00000C0A | Country: España | Language: ESN | Date Format: dd/MM/yyyy

      3,89 Gb Total Physical Memory | 2,54 Gb Available Physical Memory | 65,28% Memory free
      7,89 Gb Paging File | 6,50 Gb Available in Paging File | 82,36% Paging File free
      Paging file location(s): ?:\pagefile.sys [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
      Drive C: | 119,23 Gb Total Space | 43,14 Gb Free Space | 36,18% Space Free | Partition Type: NTFS
      Drive D: | 157,84 Gb Total Space | 137,97 Gb Free Space | 87,41% Space Free | Partition Type: NTFS

      Computer Name: JOSELUIS-LEIRE | User Name: Jose Luis y Leire | Logged in as Administrator.
      Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
      Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

      ========== Processes (SafeList) ==========

      PRC - C:\Users\Jos\Downloads\OTL.exe (OldTimer Tools)
      PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
      PRC - C:\Program Files\Classic Shell\ClassicShellService.exe (IvoSoft)
      PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
      PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
      PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
      PRC - C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe (ASUSTeK Computer Inc.)
      PRC - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe (ASUS)
      PRC - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (ASUSTek Computer Inc.)
      PRC - C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe (ASUSTeK Computer Inc.)
      PRC - C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe (ASUSTek Computer Inc.)
      PRC - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe (ASUSTek Computer Inc.)
      PRC - C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ASUSTek Computer Inc.)
      PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation)
      PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation)
      PRC - C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (ASUSTek Computer Inc.)
      PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation)
      PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation)
      PRC - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe (ASUSTek Computer Inc.)
      PRC - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe (ASUS)
      PRC - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (ASUS)


      ========== Modules (No Company Name) ==========

      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\e6606a84f8a4cdc18c74e63ec807c689\System.Windows.Forms.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\c508451271803f1677317735db499f5c\System.Configuration.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\3e52c3479469fe72eed0716b48859e91\WindowsBase.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\624ad6159b6e241ad6d28bf4dca9f14b\System.Xml.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\123cf617d7b6b31c44e39f8594f064c5\System.Xaml.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\3603744988436295da5d16e76038e484\System.Drawing.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\Presentatioaec034ca#\cb65dcc8c60f33d257283ef1416a2175\PresentationFramework.Aero2.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\Presentatio5ae0f00f#\972bf4ffab06e561447d12baf3b3dfa9\PresentationFramework.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\5b504b7cd800dcd6c06d841d94ca099a\PresentationCore.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System\375a937eec7d6faa53ac11ab2973eb76\System.ni.dll ()
      MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\5e3a9f3d64adfb3c69b49d37368bf454\mscorlib.ni.dll ()
      MOD - C:\Program Files (x86)\Free Download Manager\fdmumsp.dll ()


      ========== Services (SafeList) ==========

      SRV:64bit: - (WSService) -- C:\Windows\SysNative\WSService.dll (Microsoft Corporation)
      SRV:64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation)
      SRV:64bit: - (Wcmsvc) -- C:\Windows\SysNative\wcmsvc.dll (Microsoft Corporation)
      SRV:64bit: - (DsmSvc) -- C:\Windows\SysNative\DeviceSetupManager.dll (Microsoft Corporation)
      SRV:64bit: - (netprofm) -- C:\Windows\SysNative\netprofmsvc.dll (Microsoft Corporation)
      SRV:64bit: - (BrokerInfrastructure) -- C:\Windows\SysNative\bisrv.dll (Microsoft Corporation)
      SRV:64bit: - (ClassicShellService) -- C:\Program Files\Classic Shell\ClassicShellService.exe (IvoSoft)
      SRV:64bit: - (AudioEndpointBuilder) -- C:\Windows\SysNative\AudioEndpointBuilder.dll (Microsoft Corporation)
      SRV:64bit: - (TimeBroker) -- C:\Windows\SysNative\TimeBrokerServer.dll (Microsoft Corporation)
      SRV:64bit: - (SystemEventsBroker) -- C:\Windows\SysNative\SystemEventsBrokerServer.dll (Microsoft Corporation)
      SRV:64bit: - (wlidsvc) -- C:\Windows\SysNative\wlidsvc.dll (Microsoft Corporation)
      SRV:64bit: - (LSM) -- C:\Windows\SysNative\lsm.dll (Microsoft Corporation)
      SRV:64bit: - (PrintNotify) -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll (Microsoft Corporation)
      SRV:64bit: - (fhsvc) -- C:\Windows\SysNative\fhsvc.dll (Microsoft Corporation)
      SRV:64bit: - (WiaRpc) -- C:\Windows\SysNative\wiarpc.dll (Microsoft Corporation)
      SRV:64bit: - (VaultSvc) -- C:\Windows\SysNative\vaultsvc.dll (Microsoft Corporation)
      SRV:64bit: - (svsvc) -- C:\Windows\SysNative\svsvc.dll (Microsoft Corporation)
      SRV:64bit: - (Netlogon) -- C:\Windows\SysNative\netlogon.dll (Microsoft Corporation)
      SRV:64bit: - (NcaSvc) -- C:\Windows\SysNative\NcaSvc.dll (Microsoft Corporation)
      SRV:64bit: - (NcdAutoSetup) -- C:\Windows\SysNative\NcdAutoSetup.dll (Microsoft Corporation)
      SRV:64bit: - (KeyIso) -- C:\Windows\SysNative\keyiso.dll (Microsoft Corporation)
      SRV:64bit: - (EFS) -- C:\Windows\SysNative\efssvc.dll (Microsoft Corporation)
      SRV:64bit: - (DeviceAssociationService) -- C:\Windows\SysNative\das.dll (Microsoft Corporation)
      SRV:64bit: - (AllUserInstallAgent) -- C:\Windows\SysNative\AUInstallAgent.dll (Microsoft Corporation)
      SRV:64bit: - (vmicvss) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
      SRV:64bit: - (vmictimesync) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
      SRV:64bit: - (vmicshutdown) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
      SRV:64bit: - (vmicrdv) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
      SRV:64bit: - (vmickvpexchange) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
      SRV:64bit: - (vmicheartbeat) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
      SRV:64bit: - (Intel(R) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel(R) Corporation)
      SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
      SRV - (MBAMService) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
      SRV - (MBAMScheduler) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
      SRV - (Asus WebStorage Windows Service) -- C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe ()
      SRV - (PrintNotify) -- C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll (Microsoft Corporation)
      SRV - (cphs) -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe (Intel Corporation)
      SRV - (StorSvc) -- C:\Windows\SysWOW64\StorSvc.dll (Microsoft Corporation)
      SRV - (ASLDRService) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe (ASUSTek Computer Inc.)
      SRV - (UNS) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation)
      SRV - (LMS) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation)
      SRV - (Intel(R) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation)
      SRV - (jhi_service) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation)
      SRV - (ASUS InstantOn) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe (ASUS)
      SRV - (ATKGFNEXSrv) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (ASUS)


      ========== Driver Services (SafeList) ==========

      DRV:64bit: - (WFPLWFS) -- C:\Windows\SysNative\Drivers\wfplwfs.sys (Microsoft Corporation)
      DRV:64bit: - (spaceport) -- C:\Windows\SysNative\Drivers\spaceport.sys (Microsoft Corporation)
      DRV:64bit: - (USBHUB3) -- C:\Windows\SysNative\Drivers\USBHUB3.SYS (Microsoft Corporation)
      DRV:64bit: - (dam) -- C:\Windows\SysNative\Drivers\dam.sys (Microsoft Corporation)
      DRV:64bit: - (TPM) -- C:\Windows\SysNative\Drivers\tpm.sys (Microsoft Corporation)
      DRV:64bit: - (GPIOClx0101) -- C:\Windows\SysNative\Drivers\msgpioclx.sys (Microsoft Corporation)
      DRV:64bit: - (USBXHCI) -- C:\Windows\SysNative\Drivers\USBXHCI.SYS (Microsoft Corporation)
      DRV:64bit: - (UCX01000) -- C:\Windows\SysNative\Drivers\UCX01000.SYS (Microsoft Corporation)
      DRV:64bit: - (WdBoot) -- C:\Windows\SysNative\Drivers\WdBoot.sys (Microsoft Corporation)
      DRV:64bit: - (WdFilter) -- C:\Windows\SysNative\Drivers\WdFilter.sys (Microsoft Corporation)
      DRV:64bit: - (sdbus) -- C:\Windows\SysNative\Drivers\sdbus.sys (Microsoft Corporation)
      DRV:64bit: - (BthAvrcpTg) -- C:\Windows\SysNative\Drivers\BthAvrcpTg.sys (Microsoft Corporation)
      DRV:64bit: - (MBAMProtector) -- C:\Windows\SysNative\Drivers\mbam.sys (Malwarebytes Corporation)
      DRV:64bit: - (storahci) -- C:\Windows\SysNative\Drivers\storahci.sys (Microsoft Corporation)
      DRV:64bit: - (pdc) -- C:\Windows\SysNative\Drivers\pdc.sys (Microsoft Corporation)
      DRV:64bit: - (msgpiowin32) -- C:\Windows\SysNative\Drivers\msgpiowin32.sys (Microsoft Corporation)
      DRV:64bit: - (bthhfhid) -- C:\Windows\SysNative\Drivers\BthhfHid.sys (Microsoft Corporation)
      DRV:64bit: - (hidi2c) -- C:\Windows\SysNative\Drivers\hidi2c.sys (Microsoft Corporation)
      DRV:64bit: - (FxPPM) -- C:\Windows\SysNative\Drivers\fxppm.sys (Microsoft Corporation)
      DRV:64bit: - (ATP) -- C:\Windows\SysNative\Drivers\AsusTP.sys (ASUS Corporation)
      DRV:64bit: - (RdpVideoMiniport) -- C:\Windows\SysNative\Drivers\rdpvideominiport.sys (Microsoft Corporation)
      DRV:64bit: - (sdstor) -- C:\Windows\SysNative\Drivers\sdstor.sys (Microsoft Corporation)
      DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\Drivers\evbda.sys (Broadcom Corporation)
      DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\Drivers\bxvbda.sys (Broadcom Corporation)
      DRV:64bit: - (igfx) -- C:\Windows\SysNative\Drivers\igdkmd64.sys (Intel Corporation)
      DRV:64bit: - (kbfiltr) -- C:\Windows\SysNative\Drivers\kbfiltr.sys ( )
      DRV:64bit: - (RTL8168) -- C:\Windows\SysNative\Drivers\Rt630x64.sys (Realtek )
      DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
      DRV:64bit: - (condrv) -- C:\Windows\SysNative\Drivers\condrv.sys (Microsoft Corporation)
      DRV:64bit: - (VSTXRAID) -- C:\Windows\SysNative\Drivers\VSTXRAID.SYS (VIA Corporation)
      DRV:64bit: - (VerifierExt) -- C:\Windows\SysNative\Drivers\VerifierExt.sys (Microsoft Corporation)
      DRV:64bit: - (UASPStor) -- C:\Windows\SysNative\Drivers\uaspstor.sys (Microsoft Corporation)
      DRV:64bit: - (acpiex) -- C:\Windows\SysNative\Drivers\acpiex.sys (Microsoft Corporation)
      DRV:64bit: - (mvumis) -- C:\Windows\SysNative\Drivers\mvumis.sys (Marvell Semiconductor, Inc.)
      DRV:64bit: - (stexstor) -- C:\Windows\SysNative\Drivers\stexstor.sys (Promise Technology, Inc.)
      DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\Drivers\lsi_sas2.sys (LSI Corporation)
      DRV:64bit: - (LSI_SSS) -- C:\Windows\SysNative\Drivers\lsi_sss.sys (LSI Corporation)
      DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\Drivers\HpSAMD.sys (Hewlett-Packard Company)
      DRV:64bit: - (EhStorTcgDrv) -- C:\Windows\SysNative\Drivers\EhStorTcgDrv.sys (Microsoft Corporation)
      DRV:64bit: - (EhStorClass) -- C:\Windows\SysNative\Drivers\EhStorClass.sys (Microsoft Corporation)
      DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\Drivers\amdsbs.sys (AMD Technologies Inc.)
      DRV:64bit: - (3ware) -- C:\Windows\SysNative\Drivers\3ware.sys (LSI)
      DRV:64bit: - (amdsata) -- C:\Windows\SysNative\Drivers\amdsata.sys (Advanced Micro Devices)
      DRV:64bit: - (amdxata) -- C:\Windows\SysNative\Drivers\amdxata.sys (Advanced Micro Devices)
      DRV:64bit: - (CLFS) -- C:\Windows\SysNative\Drivers\clfs.sys (Microsoft Corporation)
      DRV:64bit: - (vpci) -- C:\Windows\SysNative\Drivers\vpci.sys (Microsoft Corporation)
      DRV:64bit: - (terminpt) -- C:\Windows\SysNative\Drivers\terminpt.sys (Microsoft Corporation)
      DRV:64bit: - (mshidumdf) -- C:\Windows\SysNative\Drivers\mshidumdf.sys (Microsoft Corporation)
      DRV:64bit: - (BasicDisplay) -- C:\Windows\SysNative\Drivers\BasicDisplay.sys (Microsoft Corporation)
      DRV:64bit: - (HyperVideo) -- C:\Windows\SysNative\Drivers\HyperVideo.sys (Microsoft Corporation)
      DRV:64bit: - (BasicRender) -- C:\Windows\SysNative\Drivers\BasicRender.sys (Microsoft Corporation)
      DRV:64bit: - (gencounter) -- C:\Windows\SysNative\Drivers\vmgencounter.sys (Microsoft Corporation)
      DRV:64bit: - (kdnic) -- C:\Windows\SysNative\Drivers\kdnic.sys (Microsoft Corporation)
      DRV:64bit: - (acpitime) -- C:\Windows\SysNative\Drivers\acpitime.sys (Microsoft Corporation)
      DRV:64bit: - (npsvctrig) -- C:\Windows\SysNative\Drivers\npsvctrig.sys (Microsoft Corporation)
      DRV:64bit: - (WpdUpFltr) -- C:\Windows\SysNative\Drivers\WpdUpFltr.sys (Microsoft Corporation)
      DRV:64bit: - (acpipagr) -- C:\Windows\SysNative\Drivers\acpipagr.sys (Microsoft Corporation)
      DRV:64bit: - (hyperkbd) -- C:\Windows\SysNative\Drivers\hyperkbd.sys (Microsoft Corporation)
      DRV:64bit: - (SerCx) -- C:\Windows\SysNative\Drivers\SerCx.sys (Microsoft Corporation)
      DRV:64bit: - (SpbCx) -- C:\Windows\SysNative\Drivers\SpbCx.sys (Microsoft Corporation)
      DRV:64bit: - (TsUsbGD) -- C:\Windows\SysNative\Drivers\TsUsbGD.sys (Microsoft Corporation)
      DRV:64bit: - (BthHFEnum) -- C:\Windows\SysNative\Drivers\bthhfenum.sys (Microsoft Corporation)
      DRV:64bit: - (dmvsc) -- C:\Windows\SysNative\Drivers\dmvsc.sys (Microsoft Corporation)
      DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\Drivers\TsUsbFlt.sys (Microsoft Corporation)
      DRV:64bit: - (wpcfltr) -- C:\Windows\SysNative\Drivers\wpcfltr.sys (Microsoft Corporation)
      DRV:64bit: - (NdisImPlatform) -- C:\Windows\SysNative\Drivers\NdisImPlatform.sys (Microsoft Corporation)
      DRV:64bit: - (MsLldp) -- C:\Windows\SysNative\Drivers\mslldp.sys (Microsoft Corporation)
      DRV:64bit: - (Ndu) -- C:\Windows\SysNative\Drivers\Ndu.sys (Microsoft Corporation)
      DRV:64bit: - (AiCharger) -- C:\Windows\SysNative\Drivers\AiCharger.sys (ASUSTek Computer Inc.)
      DRV:64bit: - (iaStorA) -- C:\Windows\SysNative\Drivers\iaStorA.sys (Intel Corporation)
      DRV:64bit: - (MEIx64) -- C:\Windows\SysNative\Drivers\HECIx64.sys (Intel Corporation)
      DRV:64bit: - (IntcDAud) -- C:\Windows\SysNative\Drivers\IntcDAud.sys (Intel(R) Corporation)
      DRV:64bit: - (RSBASTOR) -- C:\Windows\SysNative\Drivers\RtsBaStor.sys (Realtek Semiconductor Corp.)
      DRV:64bit: - (AgereSoftModem) -- C:\Windows\SysNative\Drivers\agrsm64.sys (LSI Corp)
      DRV:64bit: - (NETwNs64) -- C:\Windows\SysNative\Drivers\NETwNs64.sys (Intel Corporation)
      DRV:64bit: - (e1iexpress) -- C:\Windows\SysNative\Drivers\e1i63x64.sys (Intel Corporation)
      DRV:64bit: - (athr) -- C:\Windows\SysNative\Drivers\athrx.sys (Qualcomm Atheros Communications, Inc.)
      DRV:64bit: - (HIDSwitch) -- C:\Windows\SysNative\Drivers\AsHIDSwitch64.sys (ASUS)
      DRV - (ATKWMIACPIIO) -- C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys (ASUS)
      DRV - (ASMMAP64) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys (ASUS)


      ========== Standard Registry (SafeList) ==========


      ========== Internet Explorer ==========

      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Awesomehp
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.awesomehp.com/web/?type=ds&ts=1390585689&from=tugs&uid=HitachiXHTS545032A7E380_TA8B113VJAGRKNJAGRKNX&q={searchTerms}
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.awesomehp.com/web/?type=ds&ts=1390585689&from=tugs&uid=HitachiXHTS545032A7E380_TA8B113VJAGRKNJAGRKNX&q={searchTerms}
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Awesomehp
      IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
      IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&amp;form=IE10TR&amp;src=IE10TR&amp;pc=ASU2JS
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Awesomehp
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.awesomehp.com/web/?type=ds&ts=1390585689&from=tugs&uid=HitachiXHTS545032A7E380_TA8B113VJAGRKNJAGRKNX&q={searchTerms}
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.awesomehp.com/web/?type=ds&ts=1390585689&from=tugs&uid=HitachiXHTS545032A7E380_TA8B113VJAGRKNJAGRKNX&q={searchTerms}
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Awesomehp
      IE - HKLM\..\SearchScopes,DefaultScope =
      IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


      IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
      IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
      IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

      IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

      IE - HKU\S-1-5-21-1710089055-1895873784-4135953973-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Awesomehp
      IE - HKU\S-1-5-21-1710089055-1895873784-4135953973-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google
      IE - HKU\S-1-5-21-1710089055-1895873784-4135953973-1001\..\SearchScopes,DefaultScope = {696EFADB-49B2-4A15-807A-80717A6DD24A}
      IE - HKU\S-1-5-21-1710089055-1895873784-4135953973-1001\..\SearchScopes\{696EFADB-49B2-4A15-807A-80717A6DD24A}: "URL" = http://www.google.com/search?hl=en&q={searchTerms}
      IE - HKU\S-1-5-21-1710089055-1895873784-4135953973-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


      ========== FireFox ==========

      FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
      FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/Lync,version=15.0: C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.8: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
      FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.1: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
      FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.2: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
      FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

      FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\[email protected]: C:\Program Files\McAfee\MSK

      [2012/10/01 19:43:54 | 000,034,016 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll

      O1 HOSTS File: ([2012/07/26 06:26:49 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\Drivers\etc\hosts
      O2:64bit: - BHO: (ExplorerBHO Class) - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
      O2:64bit: - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL (Microsoft Corporation)
      O2:64bit: - BHO: (ClassicIE9BHO Class) - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_64.dll (IvoSoft)
      O2 - BHO: (ExplorerBHO Class) - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
      O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL (Microsoft Corporation)
      O2 - BHO: (Free Download Manager) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files (x86)\Free Download Manager\iefdm2.dll (FreeDownloadManager.ORG)
      O2 - BHO: (Microsoft SkyDrive Pro Browser Helper) - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL (Microsoft Corporation)
      O2 - BHO: (ClassicIE9BHO Class) - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_32.dll (IvoSoft)
      O3:64bit: - HKLM\..\Toolbar: (Classic Explorer Bar) - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
      O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
      O3 - HKLM\..\Toolbar: (Classic Explorer Bar) - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
      O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
      O4:64bit: - HKLM..\Run: [ACMON] C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (ASUS)
      O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
      O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
      O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
      O4 - HKLM..\Run: [] File not found
      O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
      O4 - HKLM..\Run: [ASUSWebStorage] C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe (ASUS Cloud Corporation)
      O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Main present
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
      O8:64bit: - Extra context menu item: &Enviar a OneNote - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105 File not found
      O8:64bit: - Extra context menu item: Descargar con Free Download Manager - C:\Program Files (x86)\Free Download Manager\dllink.htm ()
      O8:64bit: - Extra context menu item: Descargar la selección con Free Download Manager - C:\Program Files (x86)\Free Download Manager\dlselected.htm ()
      O8:64bit: - Extra context menu item: Descargar todo con Free Download Manager - C:\Program Files (x86)\Free Download Manager\dlall.htm ()
      O8:64bit: - Extra context menu item: Descargar video con Free Download Manager - C:\Program Files (x86)\Free Download Manager\dlfvideo.htm ()
      O8:64bit: - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000 File not found
      O8 - Extra context menu item: &Enviar a OneNote - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105 File not found
      O8 - Extra context menu item: Descargar con Free Download Manager - C:\Program Files (x86)\Free Download Manager\dllink.htm ()
      O8 - Extra context menu item: Descargar la selección con Free Download Manager - C:\Program Files (x86)\Free Download Manager\dlselected.htm ()
      O8 - Extra context menu item: Descargar todo con Free Download Manager - C:\Program Files (x86)\Free Download Manager\dlall.htm ()
      O8 - Extra context menu item: Descargar video con Free Download Manager - C:\Program Files (x86)\Free Download Manager\dlfvideo.htm ()
      O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000 File not found
      O9:64bit: - Extra 'Tools' menuitem : Classic IE9 Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE9_32.exe (IvoSoft)
      O9 - Extra 'Tools' menuitem : Classic IE9 Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE9_32.exe (IvoSoft)
      O1364bit: - gopher Prefix: missing
      O13 - gopher Prefix: missing
      O16 - DPF: {1ABA5FAC-1417-422B-BA82-45C35E2C908B} http://kitchenplanner.ikea.com/ES/Co...IKEA_Win32.cab (20-20 3D Viewer for IKEA)
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.142.144.66 212.142.144.98
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B7F6A087-27DA-428D-AF97-E7337F007B3C}: DhcpNameServer = 212.142.144.66 212.142.144.98
      O18 - Protocol\Handler\ms-help - No CLSID value found
      O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
      O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
      O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
      O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O30 - LSA: Security Packages - (livessp) - File not found
      O32 - HKLM CDRom: AutoRun - 1
      O34 - HKLM BootExecute: (autocheck autochk *)
      O35:64bit: - HKLM\..comfile [open] -- "%1" %*
      O35:64bit: - HKLM\..exefile [open] -- "%1" %*
      O35 - HKLM\..comfile [open] -- "%1" %*
      O35 - HKLM\..exefile [open] -- "%1" %*
      O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
      O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
      O37 - HKLM\...com [@ = comfile] -- "%1" %*
      O37 - HKLM\...exe [@ = exefile] -- "%1" %*
      O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
      O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

      NetSvcs:64bit: wlidsvc - C:\Windows\SysNative\wlidsvc.dll (Microsoft Corporation)
      NetSvcs:64bit: DsmSvc - C:\Windows\SysNative\DeviceSetupManager.dll (Microsoft Corporation)
      NetSvcs:64bit: NcaSvc - C:\Windows\SysNative\NcaSvc.dll (Microsoft Corporation)
      NetSvcs:64bit: SystemEventsBroker - C:\Windows\SysNative\SystemEventsBrokerServer.dll (Microsoft Corporation)


      CREATERESTOREPOINT
      Restore point Set: OTL Restore Point

      ========== Files/Folders - Created Within 30 Days ==========

      [2014/01/27 10:26:22 | 000,000,000 | ---D | C] -- C:\programa
      [2014/01/27 10:26:22 | 000,000,000 | ---D | C] -- C:\de
      [2014/01/26 18:37:37 | 000,000,000 | ---D | C] -- C:\Users\Jos\AppData\Roaming\Malwarebytes
      [2014/01/26 18:37:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
      [2014/01/26 18:37:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
      [2014/01/26 18:37:34 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
      [2014/01/26 18:37:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
      [2014/01/25 23:11:19 | 000,000,000 | ---D | C] -- C:\Windows\Minidump
      [2014/01/25 21:41:30 | 000,000,000 | ---D | C] -- C:\AdwCleaner
      [2014/01/24 18:52:07 | 000,000,000 | ---D | C] -- C:\Users\Jos\AppData\Local\cache
      [2014/01/24 18:48:56 | 000,000,000 | ---D | C] -- C:\ProgramData\IePluginService

      ========== Files - Modified Within 30 Days ==========

      [2014/01/27 14:24:58 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
      [2014/01/27 11:55:06 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys
      [2014/01/27 11:55:03 | 3338,358,784 | -HS- | M] () -- C:\hiberfil.sys
      [2014/01/26 18:37:35 | 000,001,115 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
      [2014/01/25 23:11:13 | 433,040,298 | ---- | M] () -- C:\Windows\MEMORY.DMP
      [2014/01/25 16:51:45 | 000,002,259 | ---- | M] () -- C:\Windows\epplauncher.mif
      [2014/01/15 21:51:15 | 000,799,280 | ---- | M] () -- C:\Windows\SysNative\perfh00A.dat
      [2014/01/15 21:51:15 | 000,710,244 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
      [2014/01/15 21:51:15 | 000,163,056 | ---- | M] () -- C:\Windows\SysNative\perfc00A.dat
      [2014/01/15 21:51:15 | 000,132,614 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
      [2014/01/15 21:51:14 | 001,798,556 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
      [2014/01/12 12:42:47 | 007,144,183 | ---- | M] () -- C:\Users\Jos\Documents\1988 nº 271.pdf

      ========== Files Created - No Company Name ==========

      [2014/01/26 18:37:35 | 000,001,115 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
      [2014/01/25 23:11:13 | 433,040,298 | ---- | C] () -- C:\Windows\MEMORY.DMP
      [2014/01/25 16:51:45 | 000,002,259 | ---- | C] () -- C:\Windows\epplauncher.mif
      [2014/01/12 12:42:47 | 007,144,183 | ---- | C] () -- C:\Users\Jos\Documents\1988 nº 271.pdf
      [2013/09/11 09:03:04 | 000,083,968 | ---- | C] () -- C:\Windows\SysWow64\OEMLicense.dll
      [2013/06/05 10:42:41 | 000,217,457 | ---- | C] () -- C:\Windows\hpoins19.dat.temp
      [2013/06/05 10:42:41 | 000,015,561 | ---- | C] () -- C:\Windows\hpomdl19.dat.temp
      [2013/05/26 14:24:43 | 000,217,554 | ---- | C] () -- C:\Windows\hpoins19.dat
      [2013/05/26 14:24:43 | 000,015,561 | ---- | C] () -- C:\Windows\hpomdl19.dat
      [2013/05/25 10:40:26 | 000,000,311 | ---- | C] () -- C:\Users\Jos\AppData\Roaming\Weather Meter_Settings.ini
      [2013/05/25 02:07:25 | 000,000,408 | ---- | C] () -- C:\Users\Jos\AppData\Roaming\sp_data.sys
      [2012/09/07 05:39:53 | 000,272,928 | ---- | C] () -- C:\Windows\SysWow64\igvpkrng600.bin
      [2012/09/07 05:39:36 | 000,064,512 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll
      [2012/09/07 05:39:33 | 000,963,388 | ---- | C] () -- C:\Windows\SysWow64\igcodeckrng600.bin
      [2012/08/04 19:52:38 | 000,024,576 | ---- | C] () -- C:\ProgramData\SetStretch.exe
      [2012/08/04 19:52:38 | 000,000,217 | ---- | C] () -- C:\ProgramData\SetStretch.cmd
      [2012/07/26 09:13:10 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
      [2012/07/26 09:13:09 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
      [2012/07/26 08:21:26 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
      [2012/07/26 02:17:42 | 000,043,520 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
      [2012/07/25 21:37:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
      [2012/07/25 21:28:31 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
      [2012/06/02 15:31:19 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
      [2012/04/20 14:59:44 | 000,001,536 | ---- | C] () -- C:\Windows\SysWow64\IusEventLog.dll

      ========== ZeroAccess Check ==========

      [2012/11/07 22:36:42 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

      [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

      [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

      [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

      [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
      "" = C:\Windows\SysNative\shell32.dll -- [2013/08/02 07:28:20 | 019,758,080 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
      "" = %SystemRoot%\system32\shell32.dll -- [2013/08/02 06:08:10 | 017,561,088 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
      "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2012/07/26 04:05:38 | 001,004,544 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
      "" = %systemroot%\system32\wbem\fastprox.dll -- [2012/07/26 04:18:27 | 000,784,896 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
      "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2012/07/26 04:07:41 | 000,455,680 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Both

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

      ========== LOP Check ==========

      [2013/05/24 18:45:36 | 000,000,000 | ---D | M] -- C:\Users\Jos\AppData\Roaming\ASUS
      [2013/05/25 02:07:43 | 000,000,000 | ---D | M] -- C:\Users\Jos\AppData\Roaming\ASUS WebStorage
      [2013/08/08 23:03:05 | 000,000,000 | ---D | M] -- C:\Users\Jos\AppData\Roaming\dcdb
      [2013/08/08 23:03:03 | 000,000,000 | ---D | M] -- C:\Users\Jos\AppData\Roaming\dcdb.CD97172A60C8A280219A1491E77640CEF925B9AD.1
      [2013/12/30 07:59:26 | 000,000,000 | ---D | M] -- C:\Users\Jos\AppData\Roaming\Dropbox
      [2013/08/30 13:13:55 | 000,000,000 | ---D | M] -- C:\Users\Jos\AppData\Roaming\DVDVideoSoft
      [2014/01/27 15:04:56 | 000,000,000 | ---D | M] -- C:\Users\Jos\AppData\Roaming\Free Download Manager
      [2013/07/09 16:08:52 | 000,000,000 | ---D | M] -- C:\Users\Jos\AppData\Roaming\FreeVideoConverter
      [2013/05/25 10:09:15 | 000,000,000 | ---D | M] -- C:\Users\Jos\AppData\Roaming\TuneUp Software

      ========== Purity Check ==========



      ========== Custom Scans ==========

      < %SYSTEMDRIVE%\*.* >
      [2012/07/26 04:44:30 | 000,398,156 | RHS- | M] () -- C:\bootmgr
      [2012/06/02 15:30:55 | 000,000,001 | -HS- | M] () -- C:\BOOTNXT
      [2014/01/27 11:55:03 | 3338,358,784 | -HS- | M] () -- C:\hiberfil.sys
      [2012/08/21 14:43:34 | 006,293,504 | RH-- | M] () -- C:\K56CA.BIN
      [2012/08/21 14:42:56 | 006,293,504 | RH-- | M] () -- C:\K56CM.BIN
      [2014/01/27 11:55:06 | 4294,967,295 | -HS- | M] () -- C:\pagefile.sys
      [2014/01/27 11:55:06 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys

      < End of report >

    7. #7
      Usuario Avatar de jlbpmr
      Registrado
      ene 2014
      Ubicación
      España
      Mensajes
      8

      Re: Eliminar Awesomehp

      Tengo también este otro de OTL.

      OTL Extras logfile created on: 27/01/2014 1529 - Run 1
      OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jos\Downloads
      64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
      Internet Explorer (Version = 9.10.9200.16750)
      Locale: 00000C0A | Country: España | Language: ESN | Date Format: dd/MM/yyyy

      3,89 Gb Total Physical Memory | 2,54 Gb Available Physical Memory | 65,28% Memory free
      7,89 Gb Paging File | 6,50 Gb Available in Paging File | 82,36% Paging File free
      Paging file location(s): ?:\pagefile.sys [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
      Drive C: | 119,23 Gb Total Space | 43,14 Gb Free Space | 36,18% Space Free | Partition Type: NTFS
      Drive D: | 157,84 Gb Total Space | 137,97 Gb Free Space | 87,41% Space Free | Partition Type: NTFS

      Computer Name: JOSELUIS-LEIRE | User Name: Jose Luis y Leire | Logged in as Administrator.
      Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
      Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

      ========== Extra Registry (SafeList) ==========


      ========== File Associations ==========

      64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
      .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
      .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
      .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
      .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

      ========== Shell Spawning ==========

      64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
      batfile [open] -- "%1" %*
      cmdfile [open] -- "%1" %*
      comfile [open] -- "%1" %*
      exefile [open] -- "%1" %*
      helpfile [open] -- Reg Error: Key error.
      htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
      htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
      http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
      https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
      inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
      InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
      InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
      piffile [open] -- "%1" %*
      regfile [merge] -- Reg Error: Key error.
      scrfile [config] -- "%1"
      scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
      scrfile [open] -- "%1" /S
      txtfile [edit] -- Reg Error: Key error.
      Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
      Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
      Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
      Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
      Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
      Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
      Folder [explore] -- Reg Error: Value error.
      Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
      Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
      CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
      batfile [open] -- "%1" %*
      cmdfile [open] -- "%1" %*
      comfile [open] -- "%1" %*
      cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
      exefile [open] -- "%1" %*
      helpfile [open] -- Reg Error: Key error.
      htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
      htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
      http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
      https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
      inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
      piffile [open] -- "%1" %*
      regfile [merge] -- Reg Error: Key error.
      scrfile [config] -- "%1"
      scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
      scrfile [open] -- "%1" /S
      txtfile [edit] -- Reg Error: Key error.
      Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
      Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
      Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
      Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
      Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
      Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
      Folder [explore] -- Reg Error: Value error.
      Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
      Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
      CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

      ========== Security Center Settings ==========

      64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
      "cval" = 1

      64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

      64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
      "VistaSp1" = CE 37 E6 AF FF 6A CD 01 [binary data]
      "AntiVirusOverride" = 0
      "AntiSpywareOverride" = 0
      "FirewallOverride" = 0

      64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

      ========== Firewall Settings ==========

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
      "EnableFirewall" = 1
      "DisableNotifications" = 0

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
      "EnableFirewall" = 1
      "DisableNotifications" = 0

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
      "EnableFirewall" = 1
      "DisableNotifications" = 0

      ========== Authorized Applications List ==========


      ========== Vista Active Open Ports Exception List ==========

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
      "{11A72BE6-1995-4714-93AE-99D27AD9D598}" = rport=445 | protocol=6 | dir=out | app=system |
      "{1B49D75D-FED7-4759-BFC5-F0AD7A010512}" = lport=138 | protocol=17 | dir=in | app=system |
      "{27D25FE0-5DC8-4AAC-9DDC-F3FD54143ED0}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
      "{338BE704-7677-4B85-986B-224A83878859}" = rport=138 | protocol=17 | dir=out | app=system |
      "{3EA63D75-84C8-4730-9AD0-2155182BF925}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
      "{4C831D3E-950F-459A-B252-7BDBE1A7B46F}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
      "{57EB9BAE-F53D-4E6A-8188-E75D2CE68BFE}" = lport=137 | protocol=17 | dir=in | app=system |
      "{738ADE0A-83A9-4E90-98F2-BFA9FAD3ACFE}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
      "{770D8D50-AA27-4F97-B8C7-661A90413892}" = lport=139 | protocol=6 | dir=in | app=system |
      "{79A5E91A-230D-4FDD-ACF1-04D15724005D}" = lport=10243 | protocol=6 | dir=in | app=system |
      "{8164B1BC-3E26-4AC3-8B2E-F06C43E0FA81}" = rport=10243 | protocol=6 | dir=out | app=system |
      "{99284D65-9EAF-4798-966B-D01F14D34F18}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
      "{A30AC5A7-88BD-48D8-89E6-6B8C454765FC}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
      "{BD33F78D-4EBA-4072-8EF4-30D274B2CF3D}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
      "{CDBFEDCD-C613-4840-95C8-BFC0503413AF}" = rport=139 | protocol=6 | dir=out | app=system |
      "{D49B0B4B-A6D6-4C80-9D52-C3F92BF2107D}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
      "{D4C24B35-E907-42FC-8BB4-78073A28C386}" = rport=137 | protocol=17 | dir=out | app=system |
      "{D6F495B7-25BD-41B7-9EDD-1444A2A6E89C}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
      "{E04978A5-BEAF-4C6D-82DD-206D21BB4936}" = lport=445 | protocol=6 | dir=in | app=system |
      "{F3D2C14A-BEE1-4C8F-9B1B-DA96D9D440F0}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
      "{FAD4B624-4FBE-470A-A038-B7F3A5829CFE}" = lport=2869 | protocol=6 | dir=in | app=system |

      ========== Vista Active Application Exception List ==========

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
      "{016F39F4-46CA-47FB-9AA9-E62050154E8E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
      "{06B1F564-AFED-4A70-9F66-6374B2BE24D9}" = dir=out | name=wordament |
      "{0A2C3A77-9BD9-4B25-8272-A990FDD53CB3}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe |
      "{1224C905-AC0F-4388-B932-1093DFAC4EE7}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
      "{1393C36E-1593-4FDD-8866-AE99AE23EEB3}" = dir=out | name=@{microsoft.bingmaps_1.6.1528.2509_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} |
      "{1872A534-42D3-441A-B97B-B3103A979324}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
      "{1A5D8DE9-44E6-4C79-A247-7482A42B3B2E}" = dir=out | name=@{microsoft.zunemusic_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} |
      "{248342F2-3B86-4120-A355-1FD016D54409}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
      "{2AD4C2D0-528E-47E6-8A29-74B6B821B295}" = protocol=17 | dir=in | app=c:\users\jos\appdata\roaming\dropbox\bin\dropbox.exe |
      "{3A609FEA-594D-493A-8844-87225D938010}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\lync.exe |
      "{431E7AB2-6A7B-4377-986A-14599C8A3FDE}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
      "{461A9C87-6A95-412F-BD85-84F57A1C51D9}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
      "{4904E278-E913-49B3-9821-8E1EECA0891F}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
      "{4C9B9DC7-8E58-46AF-AAB8-B6A75525A6CD}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
      "{54EC88DB-AA69-4D7D-A35D-A4D09A8151D1}" = dir=out | name=pocoyo tv |
      "{5DCD3991-7A0A-4B09-8498-25CAF3ADE8F6}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
      "{6483ADEF-6084-42D9-85B7-338BA3766436}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
      "{767935C1-560C-4B1E-B219-CDF550379282}" = dir=out | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} |
      "{784ECF97-DC23-4447-A603-EAEB241F58F4}" = protocol=6 | dir=out | app=system |
      "{7E5A79E8-4390-4C18-BF1A-294B22FF8363}" = dir=out | name=fresh paint |
      "{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
      "{855929EC-0D3B-4605-9D28-CCF43E109B75}" = dir=out | name=@{microsoft.bingtravel_1.2.0.145_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} |
      "{8564041F-DA81-49A5-BEA0-A8E2B7B9E312}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
      "{869AAF23-2C52-4390-843E-04C777E53F12}" = dir=out | name=@{microsoft.bingfinance_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} |
      "{8ACF7FD0-9F84-47DC-87A0-E47EDDC21A69}" = dir=out | name=microsoft solitaire collection |
      "{8CB04131-DB36-4BC0-8767-3B7B106E69DB}" = dir=out | name=adera |
      "{941AF7D1-8BF0-4765-98BC-947AD3611C72}" = protocol=6 | dir=in | app=c:\users\jos\appdata\roaming\dropbox\bin\dropbox.exe |
      "{963D15C9-1970-4651-9A7A-6FE6EA1260D6}" = dir=out | name=@{microsoft.bingweather_2.0.0.288_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} |
      "{968C9D45-6086-4DC8-ACAA-58C1A01251E2}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
      "{99A33D84-5162-4A79-A896-E585E7F83EB4}" = dir=out | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} |
      "{A0BEB4B6-6138-4E07-BE57-BFE0E95B8169}" = dir=out | name=windows_ie_ac_001 |
      "{A838B61F-E880-45EE-A7CC-97F30C80B53D}" = dir=out | name=skype |
      "{AD786121-9F7B-40D5-AC4E-B36C541CF16C}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
      "{B025D539-4466-496B-8C11-FAD86E935D8D}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
      "{B43CEA0B-5222-4227-8672-DADC3F9BE140}" = dir=out | name=@{microsoft.bingsports_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} |
      "{B4BB8784-C2F7-40B8-AD74-629F317CDB34}" = dir=out | name=@{microsoft.reader_6.2.9200.20623_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} |
      "{C3D96939-333A-4C4B-A361-5EC16A4B526F}" = dir=in | name=@{microsoft.reader_6.2.9200.20623_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} |
      "{C693B729-017D-4D2B-A3F2-ABA59DC2FE3B}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
      "{CEEAC1BF-7ABF-4D60-A9D4-02467E15DE26}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe |
      "{CFA8100E-A503-4CFC-8AAA-2D1C231179A6}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
      "{D1466D6D-5CA4-4531-8C2F-CEEF3BDA3E4B}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\lync.exe |
      "{D6B3F1DD-222D-46CA-8ED6-B159E7B76A83}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
      "{D6F8E176-EA51-4984-BCA9-5B708DF6B10F}" = dir=out | name=@{microsoft.zunevideo_1.3.59.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
      "{E46ABDD9-FE0E-4890-9E86-AEC7C9EFCF93}" = dir=out | name=@{microsoft.xboxlivegames_1.3.10.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} |
      "{E5F520FC-3D8E-405C-9381-C13A68B203F5}" = dir=out | name=@{microsoft.bingnews_2.0.0.273_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} |
      "{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
      "{E88D93F1-DC46-403E-85AE-41CD99CD081F}" = dir=in | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} |
      "{E9D5AE4B-53BA-4A92-94ED-325D722547FE}" = dir=out | name=@{microsoft.microsoftskydrive_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftskydrive/resources/shortproductname} |
      "{EE253CF9-AC36-44B6-9D4F-E047092EA70C}" = dir=in | name=skype |
      "{F21A6B0A-22EA-4D06-B397-65CF259750E5}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
      "{F619FF14-1510-4903-AC1C-16D6842C53D8}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
      "{FAF80A45-1E3B-4C29-863E-4150FB9B4A1C}" = dir=out | name=taptiles |
      "{FB4124A5-B99C-4838-B52A-B7E267213EF0}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
      "{FB78C68D-E7DE-47D8-8B3F-247ABE06191F}" = dir=in | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} |
      "TCP Query User{01BE82E0-D35D-4B06-A741-6567F5A6353A}C:\program files (x86)\free download manager\fdm.exe" = protocol=6 | dir=in | app=c:\program files (x86)\free download manager\fdm.exe |
      "TCP Query User{6144CD2F-6D22-4B6A-A191-4F4299D861E3}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe" = protocol=6 | dir=in | app=c:\windows\microsoft.net\framework\v2.0.50727\vbc.exe |
      "TCP Query User{E5DEFF95-7DA6-451D-AE5C-9A192C8FB907}C:\program files (x86)\free download manager\fdm.exe" = protocol=6 | dir=in | app=c:\program files (x86)\free download manager\fdm.exe |
      "UDP Query User{0B0DE853-7A80-4B3E-854D-75BB58DA0178}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe" = protocol=17 | dir=in | app=c:\windows\microsoft.net\framework\v2.0.50727\vbc.exe |
      "UDP Query User{14361028-88BC-4881-9DF2-3F771742E419}C:\program files (x86)\free download manager\fdm.exe" = protocol=17 | dir=in | app=c:\program files (x86)\free download manager\fdm.exe |
      "UDP Query User{DDEA53E3-EA6B-4570-AE0A-3466783180D5}C:\program files (x86)\free download manager\fdm.exe" = protocol=17 | dir=in | app=c:\program files (x86)\free download manager\fdm.exe |

      ========== HKEY_LOCAL_MACHINE Uninstall List ==========

      64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
      "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
      "{6BFAB6C1-6D46-46DB-A538-A269907C9F2F}" = Network64
      "{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}" = HP Photosmart Officejet and Deskjet All-In-One Driver Software
      "{7F34ADBE-77C0-47A0-BBC6-B3DA16CE8E68}" = Classic Shell
      "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
      "{90150000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2013
      "{90150000-0015-0C0A-1000-0000000FF1CE}" = Microsoft Access MUI (Spanish) 2013
      "{90150000-0016-0C0A-1000-0000000FF1CE}" = Microsoft Excel MUI (Spanish) 2013
      "{90150000-0018-0C0A-1000-0000000FF1CE}" = Microsoft PowerPoint MUI (Spanish) 2013
      "{90150000-0019-0C0A-1000-0000000FF1CE}" = Microsoft Publisher MUI (Spanish) 2013
      "{90150000-001A-0C0A-1000-0000000FF1CE}" = Microsoft Outlook MUI (Spanish) 2013
      "{90150000-001B-0C0A-1000-0000000FF1CE}" = Microsoft Word MUI (Spanish) 2013
      "{90150000-001F-0403-1000-0000000FF1CE}" = Eines de correcció del Microsoft Office 2013: català
      "{90150000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - English
      "{90150000-001F-040C-1000-0000000FF1CE}" = Outils de vérification linguistique 2013 de Microsoft Office*- Français
      "{90150000-001F-0416-1000-0000000FF1CE}" = Revisores de Texto do Microsoft Office 2013 – Português do Brasil
      "{90150000-001F-042D-1000-0000000FF1CE}" = Microsoft Office zuzenketa-tresnak 2013 - Euskara
      "{90150000-001F-0456-1000-0000000FF1CE}" = Ferramentas de verificación de Microsoft Office 2013 - Galego
      "{90150000-001F-0C0A-1000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - Español
      "{90150000-002C-0C0A-1000-0000000FF1CE}" = Microsoft Office Proofing (Spanish) 2013
      "{90150000-0044-0C0A-1000-0000000FF1CE}" = Microsoft InfoPath MUI (Spanish) 2013
      "{90150000-006E-0C0A-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Spanish) 2013
      "{90150000-0090-0C0A-1000-0000000FF1CE}" = Microsoft DCF MUI (Spanish) 2013
      "{90150000-00A1-0C0A-1000-0000000FF1CE}" = Microsoft OneNote MUI (Spanish) 2013
      "{90150000-00BA-0C0A-1000-0000000FF1CE}" = Microsoft Groove MUI (Spanish) 2013
      "{90150000-00C1-0000-1000-0000000FF1CE}" = Microsoft Office 32-bit Components 2013
      "{90150000-00C1-0C0A-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Spanish) 2013
      "{90150000-00E1-0C0A-1000-0000000FF1CE}" = Microsoft Office OSM MUI (Spanish) 2013
      "{90150000-00E2-0C0A-1000-0000000FF1CE}" = Microsoft Office OSM UX MUI (Spanish) 2013
      "{90150000-012B-0C0A-1000-0000000FF1CE}" = Microsoft Lync MUI (Spanish) 2013
      "{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}" = ASUS Power4Gear Hybrid
      "{F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}" = Intel® Trusted Connect Service Client
      "{FF21C3E6-97FD-474F-9518-8DCBE94C2854}" = 64 Bit HP CIO Components Installer
      "C01F56FBD9B141017E63E2A1A141E59934D4DC67" = Paquete de controladores de Windows - ASUS (ATP) Mouse (10/29/2012 1.0.0.148)
      "CCleaner" = CCleaner
      "Office15.PROPLUS" = Microsoft Office Professional Plus 2013
      "WinRAR archiver" = WinRAR 4.20 (64-bit)

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
      "{06A1D88C-E102-4527-AF70-29FFD7AF215A}" = Scan
      "{0919D141-CCBC-4751-997D-E022345643BE}" = 1400
      "{0969AF05-4FF6-4C00-9406-43599238DE0D}" = ASUS Splendid Video Enhancement Technology
      "{0A5B39D2-7ED6-4779-BCC9-37F381139DB3}" = Adobe AIR
      "{104066F4-5897-4067-85D3-4C88B67CCF75}" = AIO_Scan
      "{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}" = DeviceDiscovery
      "{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}" = HPProductAssistant
      "{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}" = ASUS LifeFrame3
      "{292F0F52-B62D-4E71-921B-89A682402201}" = Toolbox
      "{2DFDE21D-AFFE-4CDD-BBD4-3B7832BEC036}" = AIO_CDB_Software
      "{4D3286A6-F6AB-498A-82A4-E4F040529F3D}" = ASUS Smart Gesture
      "{58172D66-2F69-4215-9AEC-ED8196023736}" = ASUS Tutor
      "{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}" = Status
      "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
      "{6A3C2391-BCE2-4D28-A336-73B953B4502F}" = 1400Trb
      "{6FBE200D-1F00-40B7-BF48-FEB265AADE94}" = 1400_Help
      "{749F674B-2674-47E8-879C-5626A06B2A91}" = ASUS InstantOn
      "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
      "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
      "{89ECB85A-D933-4CEA-9116-5CBC9C2ED95B}" = ASUS Instant Connect
      "{8EE94FD8-5F52-4463-A340-185D16328158}" = WebReg
      "{8F21291E-0444-4B1D-B9F9-4370A73E346D}" = WinFlash
      "{9294F169-72EE-4D74-AE92-CA25F64B4FF8}" = Fax
      "{9B362566-EC1B-4700-BB9C-EC661BDE2175}" = DocProc
      "{9BE466FF-70B7-4DA8-807C-DB4C3610FDAA}" = Copy
      "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
      "{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}" = ASUS USB Charger Plus
      "{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}" = ATK Package
      "{AC76BA86-7AD7-FFFF-7B44-AA0000000001}" = Adobe Reader X (10.1.9) MUI
      "{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}" = HP Update
      "{BB3447F6-9553-4AA9-960E-0DB5310C5779}" = GPBaseService2
      "{BC5DD87B-0143-4D14-AAE6-97109614DC6B}" = SolutionCenter
      "{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}" = Destinations
      "{C1594429-8296-4652-BF54-9DBE4932A44C}" = Realtek PCIE Card Reader
      "{CAE4213F-F797-439D-BD9E-79B71D115BE3}" = HPPhotoGadget
      "{CD31E63D-47FD-491C-8117-CF201D0AFAB5}" = TrayApp
      "{D360FA88-17C8-4F14-B67F-13AAF9607B12}" = MarketResearch
      "{D5045A94-1D46-44A7-9C4F-7D05B40D82EC}" = AIO_CDB_ProductContext
      "{DE18940E-5986-480A-8518-7327D14756D3}" = 8GadgetPack
      "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
      "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
      "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
      "{FA0FF682-CC70-4C57-93CD-E276F3E7537E}" = BufferChm
      "{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}" = ASUS Live Update
      "{FCB3772C-B7D0-4933-B1A9-3707EBACC573}" = Intel(R) SDK for OpenCL - CPU Only Runtime Package
      "Adobe AIR" = Adobe AIR
      "Asus Vibe2.0" = AsusVibe2.0
      "ASUS WebStorage" = ASUS WebStorage Sync Agent
      "Free Download Manager_is1" = Free Download Manager 3.9.2
      "Free Video Converter_is1" = Free Video Converter V 3.1
      "Free Video Dub_is1" = Free Video Dub version 2.0.21.827
      "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware versión 1.75.0.1300
      "VLC media player" = VLC media player 2.1.2

      ========== HKEY_USERS Uninstall List ==========

      [HKEY_USERS\S-1-5-21-1710089055-1895873784-4135953973-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
      "Dropbox" = Dropbox

      ========== Last 20 Event Log Errors ==========

      [ Application Events ]
      Error - 25/01/2014 16:13:09 | Computer Name = JoseLuis-Leire | Source = Application Error | ID = 1000
      Description = Nombre de la aplicación con errores: IEXPLORE.EXE, versión: 10.0.9200.16537,
      marca de tiempo: 0x512347f7 Nombre del módulo con errores: ntdll.dll, versión: 6.2.9200.16578,
      marca de tiempo: 0x515fac6e Código de excepción: 0xc0000374 Desplazamiento de errores:
      0x000daa3c Identificador del proceso con errores: 0x1088 Hora de inicio de la aplicación
      con errores: 0x01cf1a09737c2a3c Ruta de acceso de la aplicación con errores: C:\Program
      Files (x86)\Internet Explorer\IEXPLORE.EXE Ruta de acceso del módulo con errores:
      C:\Windows\SYSTEM32\ntdll.dll Identificador del informe: 1b4594b6-85fd-11e3-be9f-08606e06faa9
      Nombre
      completo del paquete con errores: Identificador de aplicación relativa del paquete
      con errores:

      Error - 25/01/2014 16:13:11 | Computer Name = JoseLuis-Leire | Source = Application Error | ID = 1000
      Description = Nombre de la aplicación con errores: IEXPLORE.EXE, versión: 10.0.9200.16537,
      marca de tiempo: 0x512347f7 Nombre del módulo con errores: ntdll.dll, versión: 6.2.9200.16578,
      marca de tiempo: 0x515fac6e Código de excepción: 0xc0000374 Desplazamiento de errores:
      0x000daa3c Identificador del proceso con errores: 0x54 Hora de inicio de la aplicación
      con errores: 0x01cf1a09c927bab5 Ruta de acceso de la aplicación con errores: C:\Program
      Files (x86)\Internet Explorer\IEXPLORE.EXE Ruta de acceso del módulo con errores:
      C:\Windows\SYSTEM32\ntdll.dll Identificador del informe: 1cf05f54-85fd-11e3-be9f-08606e06faa9
      Nombre
      completo del paquete con errores: Identificador de aplicación relativa del paquete
      con errores:

      Error - 25/01/2014 16:13:19 | Computer Name = JoseLuis-Leire | Source = Application Error | ID = 1000
      Description = Nombre de la aplicación con errores: IEXPLORE.EXE, versión: 10.0.9200.16537,
      marca de tiempo: 0x512347f7 Nombre del módulo con errores: ntdll.dll, versión: 6.2.9200.16578,
      marca de tiempo: 0x515fac6e Código de excepción: 0xc0000374 Desplazamiento de errores:
      0x000daa3c Identificador del proceso con errores: 0x13f4 Hora de inicio de la aplicación
      con errores: 0x01cf1a09e2852c47 Ruta de acceso de la aplicación con errores: C:\Program
      Files (x86)\Internet Explorer\IEXPLORE.EXE Ruta de acceso del módulo con errores:
      C:\Windows\SYSTEM32\ntdll.dll Identificador del informe: 212b985d-85fd-11e3-be9f-08606e06faa9
      Nombre
      completo del paquete con errores: Identificador de aplicación relativa del paquete
      con errores:

      Error - 25/01/2014 16:13:26 | Computer Name = JoseLuis-Leire | Source = Application Error | ID = 1000
      Description = Nombre de la aplicación con errores: IEXPLORE.EXE, versión: 10.0.9200.16537,
      marca de tiempo: 0x512347f7 Nombre del módulo con errores: ntdll.dll, versión: 6.2.9200.16578,
      marca de tiempo: 0x515fac6e Código de excepción: 0xc0000374 Desplazamiento de errores:
      0x000daa3c Identificador del proceso con errores: 0xc80 Hora de inicio de la aplicación
      con errores: 0x01cf1a09e7e00269 Ruta de acceso de la aplicación con errores: C:\Program
      Files (x86)\Internet Explorer\IEXPLORE.EXE Ruta de acceso del módulo con errores:
      C:\Windows\SYSTEM32\ntdll.dll Identificador del informe: 25cceea5-85fd-11e3-be9f-08606e06faa9
      Nombre
      completo del paquete con errores: Identificador de aplicación relativa del paquete
      con errores:

      Error - 25/01/2014 16:14:09 | Computer Name = JoseLuis-Leire | Source = Application Error | ID = 1000
      Description = Nombre de la aplicación con errores: IEXPLORE.EXE, versión: 10.0.9200.16537,
      marca de tiempo: 0x512347f7 Nombre del módulo con errores: ntdll.dll, versión: 6.2.9200.16578,
      marca de tiempo: 0x515fac6e Código de excepción: 0xc0000374 Desplazamiento de errores:
      0x000daa3c Identificador del proceso con errores: 0xc14 Hora de inicio de la aplicación
      con errores: 0x01cf1a09fd2820c3 Ruta de acceso de la aplicación con errores: C:\Program
      Files (x86)\Internet Explorer\IEXPLORE.EXE Ruta de acceso del módulo con errores:
      C:\Windows\SYSTEM32\ntdll.dll Identificador del informe: 3f4ac20f-85fd-11e3-be9f-08606e06faa9
      Nombre
      completo del paquete con errores: Identificador de aplicación relativa del paquete
      con errores:

      Error - 25/01/2014 16:14:46 | Computer Name = JoseLuis-Leire | Source = Application Error | ID = 1000
      Description = Nombre de la aplicación con errores: IEXPLORE.EXE, versión: 10.0.9200.16537,
      marca de tiempo: 0x512347f7 Nombre del módulo con errores: ntdll.dll, versión: 6.2.9200.16578,
      marca de tiempo: 0x515fac6e Código de excepción: 0xc0000374 Desplazamiento de errores:
      0x000daa3c Identificador del proceso con errores: 0xd28 Hora de inicio de la aplicación
      con errores: 0x01cf1a0a16efe5cb Ruta de acceso de la aplicación con errores: C:\Program
      Files (x86)\Internet Explorer\IEXPLORE.EXE Ruta de acceso del módulo con errores:
      C:\Windows\SYSTEM32\ntdll.dll Identificador del informe: 5552392c-85fd-11e3-be9f-08606e06faa9
      Nombre
      completo del paquete con errores: Identificador de aplicación relativa del paquete
      con errores:

      Error - 25/01/2014 16:15:20 | Computer Name = JoseLuis-Leire | Source = Application Error | ID = 1000
      Description = Nombre de la aplicación con errores: IEXPLORE.EXE, versión: 10.0.9200.16537,
      marca de tiempo: 0x512347f7 Nombre del módulo con errores: ntdll.dll, versión: 6.2.9200.16578,
      marca de tiempo: 0x515fac6e Código de excepción: 0xc0000374 Desplazamiento de errores:
      0x000daa3c Identificador del proceso con errores: 0xda4 Hora de inicio de la aplicación
      con errores: 0x01cf1a0a2b328593 Ruta de acceso de la aplicación con errores: C:\Program
      Files (x86)\Internet Explorer\IEXPLORE.EXE Ruta de acceso del módulo con errores:
      C:\Windows\SYSTEM32\ntdll.dll Identificador del informe: 6985ee53-85fd-11e3-be9f-08606e06faa9
      Nombre
      completo del paquete con errores: Identificador de aplicación relativa del paquete
      con errores:

      Error - 25/01/2014 16:15:39 | Computer Name = JoseLuis-Leire | Source = Application Error | ID = 1000
      Description = Nombre de la aplicación con errores: IEXPLORE.EXE, versión: 10.0.9200.16537,
      marca de tiempo: 0x512347f7 Nombre del módulo con errores: ntdll.dll, versión: 6.2.9200.16578,
      marca de tiempo: 0x515fac6e Código de excepción: 0xc0000374 Desplazamiento de errores:
      0x000daa3c Identificador del proceso con errores: 0x1350 Hora de inicio de la aplicación
      con errores: 0x01cf1a0a3224be9b Ruta de acceso de la aplicación con errores: C:\Program
      Files (x86)\Internet Explorer\IEXPLORE.EXE Ruta de acceso del módulo con errores:
      C:\Windows\SYSTEM32\ntdll.dll Identificador del informe: 74c0f87b-85fd-11e3-be9f-08606e06faa9
      Nombre
      completo del paquete con errores: Identificador de aplicación relativa del paquete
      con errores:

      Error - 25/01/2014 16:22:57 | Computer Name = JoseLuis-Leire | Source = Application Error | ID = 1000
      Description = Nombre de la aplicación con errores: IEXPLORE.EXE, versión: 10.0.9200.16537,
      marca de tiempo: 0x512347f7 Nombre del módulo con errores: ntdll.dll, versión: 6.2.9200.16578,
      marca de tiempo: 0x515fac6e Código de excepción: 0xc0000374 Desplazamiento de errores:
      0x000daa3c Identificador del proceso con errores: 0x7ec Hora de inicio de la aplicación
      con errores: 0x01cf1a0b3ba5da3d Ruta de acceso de la aplicación con errores: C:\Program
      Files (x86)\Internet Explorer\IEXPLORE.EXE Ruta de acceso del módulo con errores:
      C:\Windows\SYSTEM32\ntdll.dll Identificador del informe: 7a1fed14-85fe-11e3-be9f-08606e06faa9
      Nombre
      completo del paquete con errores: Identificador de aplicación relativa del paquete
      con errores:

      Error - 25/01/2014 16:23:03 | Computer Name = JoseLuis-Leire | Source = Application Error | ID = 1000
      Description = Nombre de la aplicación con errores: IEXPLORE.EXE, versión: 10.0.9200.16537,
      marca de tiempo: 0x512347f7 Nombre del módulo con errores: ntdll.dll, versión: 6.2.9200.16578,
      marca de tiempo: 0x515fac6e Código de excepción: 0xc0000374 Desplazamiento de errores:
      0x000daa3c Identificador del proceso con errores: 0x10f8 Hora de inicio de la aplicación
      con errores: 0x01cf1a0b3f2f4cef Ruta de acceso de la aplicación con errores: C:\Program
      Files (x86)\Internet Explorer\IEXPLORE.EXE Ruta de acceso del módulo con errores:
      C:\Windows\SYSTEM32\ntdll.dll Identificador del informe: 7d83fd2b-85fe-11e3-be9f-08606e06faa9
      Nombre
      completo del paquete con errores: Identificador de aplicación relativa del paquete
      con errores:

      Error - 25/01/2014 16:43:50 | Computer Name = JoseLuis-Leire | Source = Application Error | ID = 1000
      Description = Nombre de la aplicación con errores: IEXPLORE.EXE, versión: 10.0.9200.16537,
      marca de tiempo: 0x512347f7 Nombre del módulo con errores: ntdll.dll, versión: 6.2.9200.16578,
      marca de tiempo: 0x515fac6e Código de excepción: 0xc0000374 Desplazamiento de errores:
      0x000daa3c Identificador del proceso con errores: 0x34 Hora de inicio de la aplicación
      con errores: 0x01cf1a0e25559616 Ruta de acceso de la aplicación con errores: C:\Program
      Files (x86)\Internet Explorer\IEXPLORE.EXE Ruta de acceso del módulo con errores:
      C:\Windows\SYSTEM32\ntdll.dll Identificador del informe: 649c5caa-8601-11e3-be9f-08606e06faa9
      Nombre
      completo del paquete con errores: Identificador de aplicación relativa del paquete
      con errores:

      [ System Events ]
      Error - 22/01/2014 7:55:51 | Computer Name = JoseLuis-Leire | Source = Schannel | ID = 36874
      Description = Se recibió una solicitud de conexión SSL 3.0 de una aplicación cliente
      remota, pero ninguno de los conjuntos de aplicaciones de cifrado compatibles con
      la aplicación cliente es compatible con el servidor. Error de la solicitud de conexión
      SSL.

      Error - 22/01/2014 7:55:51 | Computer Name = JoseLuis-Leire | Source = Schannel | ID = 36888
      Description = Se generó una alerta irrecuperable y se envió al extremo remoto. Esto
      puede provocar la finalización de la conexión. El código de error irrecuperable
      definido del protocolo TLS es 40. El estado del error SChannel de Windows es 107.

      Error - 22/01/2014 7:55:51 | Computer Name = JoseLuis-Leire | Source = Schannel | ID = 36874
      Description = Se recibió una solicitud de conexión SSL 3.0 de una aplicación cliente
      remota, pero ninguno de los conjuntos de aplicaciones de cifrado compatibles con
      la aplicación cliente es compatible con el servidor. Error de la solicitud de conexión
      SSL.

      Error - 22/01/2014 7:55:51 | Computer Name = JoseLuis-Leire | Source = Schannel | ID = 36888
      Description = Se generó una alerta irrecuperable y se envió al extremo remoto. Esto
      puede provocar la finalización de la conexión. El código de error irrecuperable
      definido del protocolo TLS es 40. El estado del error SChannel de Windows es 107.

      Error - 22/01/2014 7:55:51 | Computer Name = JoseLuis-Leire | Source = Schannel | ID = 36874
      Description = Se recibió una solicitud de conexión SSL 3.0 de una aplicación cliente
      remota, pero ninguno de los conjuntos de aplicaciones de cifrado compatibles con
      la aplicación cliente es compatible con el servidor. Error de la solicitud de conexión
      SSL.

      Error - 22/01/2014 7:55:51 | Computer Name = JoseLuis-Leire | Source = Schannel | ID = 36888
      Description = Se generó una alerta irrecuperable y se envió al extremo remoto. Esto
      puede provocar la finalización de la conexión. El código de error irrecuperable
      definido del protocolo TLS es 40. El estado del error SChannel de Windows es 107.

      Error - 22/01/2014 7:55:51 | Computer Name = JoseLuis-Leire | Source = Schannel | ID = 36874
      Description = Se recibió una solicitud de conexión SSL 3.0 de una aplicación cliente
      remota, pero ninguno de los conjuntos de aplicaciones de cifrado compatibles con
      la aplicación cliente es compatible con el servidor. Error de la solicitud de conexión
      SSL.

      Error - 22/01/2014 7:55:51 | Computer Name = JoseLuis-Leire | Source = Schannel | ID = 36888
      Description = Se generó una alerta irrecuperable y se envió al extremo remoto. Esto
      puede provocar la finalización de la conexión. El código de error irrecuperable
      definido del protocolo TLS es 40. El estado del error SChannel de Windows es 107.

      Error - 22/01/2014 1622 | Computer Name = JoseLuis-Leire | Source = EventLog | ID = 6008
      Description = El cierre anterior del sistema a las 19:47:26 del ?22/?01/?2014 resultó
      inesperado.

      Error - 22/01/2014 16:11:22 | Computer Name = JoseLuis-Leire | Source = DCOM | ID = 10016
      Description =


      < End of report >

    8. #8
      Moderadora
      Avatar de @Daniela
      Registrado
      abr 2011
      Ubicación
      España
      Mensajes
      11.105

      Re: Eliminar Awesomehp

      Hola

      Mueve OTL al escritorio.

      Ahora sigue estos pasos, MUY Importante ~ Realiza una copia de seguridad del registro :

      • Para hacerlo descarga >> DelFix.exe en tu escritorio.
        • Doble clic para ejecutarlo.(Si usas Windows Vista/7 u 8 presiona clic derecho y selecciona "Ejecutar como Administrador.")
        • Marca unicamente la casilla "Create registry backup".
      • Pulsar en Run.

        Se abrirá el informe (DelFix.txt), guárdalo por si fuera necesario y cierra la herramienta.


      Después ejecuta de nuevo OTL.exe

      Copia y Pega el código que está dentro del recuadro de abajo en la sección Análisis Personalizado / Código de Reparación.

      Código:
      :OTL
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Awesomehp
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.awesomehp.com/web/?type=ds&ts=1390585689&from=tugs&uid=HitachiXHTS545032A7E380_TA8B113VJAGRKNJAGRKNX&q={searchTerms}
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.awesomehp.com/web/?type=ds&ts=1390585689&from=tugs&uid=HitachiXHTS545032A7E380_TA8B113VJAGRKNJAGRKNX&q={searchTerms}
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Awesomehp
      IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Awesomehp
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.awesomehp.com/web/?type=ds&ts=1390585689&from=tugs&uid=HitachiXHTS545032A7E380_TA8B113VJAGRKNJAGRKNX&q={searchTerms}
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.awesomehp.com/web/?type=ds&ts=1390585689&from=tugs&uid=HitachiXHTS545032A7E380_TA8B113VJAGRKNJAGRKNX&q={searchTerms}
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Awesomehp
      IE - HKU\S-1-5-21-1710089055-1895873784-4135953973-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Awesomehp
      O3:*64bit:* - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
      O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
      O4 - HKLM..\Run: [] File not found
      O8:*64bit:* - Extra context menu item: &Enviar a OneNote - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105 File not found
      O8:*64bit:* - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000 File not found
      O8 - Extra context menu item: &Enviar a OneNote - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105 File not found
      O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000 File not found
      O13*64bit:* - gopher Prefix: missing
      O13 - gopher Prefix: missing
      O18 - Protocol\Handler\ms-help - No CLSID value found
      O21:*64bit:* - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      
      :Files
      ipconfig /flushdns /c
      ipconfig /renew /c
      :Commands
      [PURITY]
      [EMPTYFLASH]
      [EMPTYTEMP]
      [RESETHOSTS]
      Presiona el Botón Reparar para lanzar la eliminación. Después presionas en OK.

      OTL va a Reiniciar el ordenador para completar la eliminación.

      Guardas el nuevo reporte generado, y lo copias y pegas en tu próxima respuesta.

      Comenta como sigue el problema.

      Un saludo
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    9. #9
      Usuario Avatar de jlbpmr
      Registrado
      ene 2014
      Ubicación
      España
      Mensajes
      8
      Estoy pasando ahora mismo el Malwarebytes, ya sabes que esto tarda una eternidad.

      Lo que me pone en el Malwarebytes.

      alwarebytes Anti-Malware (Versión de Prueba) 1.75.0.1300
      Malwarebytes : Free Anti-Malware

      Versión de la Base de Datos: v2014.01.26.05

      Windows 8 x64 NTFS
      Internet Explorer 10.0.9200.16750
      Jose Luis y Leire :: JOSELUIS-LEIRE [administrador]

      Protección: Habilitado

      27/01/2014 18:29:38
      mbam-log-2014-01-27 (18-29-38).txt

      Tipos de Análisis: Análisis Completo (C:\|)
      Opciones de análisis activado: Memoria | Inicio | Registro | Sistema de archivos | Heurística/Extra | Heurística/Shuriken | PUP | PUM
      Opciones de análisis desactivados: P2P
      Objetos examinados: 355567
      Tiempo transcurrido: 1 hora(s), 3 minuto(s), 33 segundo(s)

      Procesos en Memoria Detectados: 0
      (No se han detectado elementos maliciosos)

      Módulos de Memoria Detectados: 0
      (No se han detectado elementos maliciosos)

      Claves del Registro Detectados: 0
      (No se han detectado elementos maliciosos)

      Valores del Registro Detectados: 0
      (No se han detectado elementos maliciosos)

      Elementos de Datos del Registro Detectados: 0
      (No se han detectado elementos maliciosos)

      Carpetas Detectadas: 0
      (No se han detectado elementos maliciosos)

      Archivos Detectados: 0
      (No se han detectado elementos maliciosos)

      fin)

      Me ha salido esto. Por cierto, al abrir el Explorer para escribirte, sigue saliendo la puñetera paginita.

      All processes killed
      ========== OTL ==========
      HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully!
      HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Search_URL| /E : value set successfully!
      HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Page| /E : value set successfully!
      HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
      HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully!
      HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Search_URL| /E : value set successfully!
      HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Page| /E : value set successfully!
      HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
      HKU\S-1-5-21-1710089055-1895873784-4135953973-1001\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully!
      Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
      Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
      Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\&Enviar a OneNote\ deleted successfully.
      Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\E&xportar a Microsoft Excel\ deleted successfully.
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\Prefixes\\gopher|:gopher:// /E : value set successfully!
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ms-help\ deleted successfully.
      File Protocol\Handler\ms-help - No CLSID value found not found.
      Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
      ========== FILES ==========
      < ipconfig /flushdns /c >
      Configuraci¢n IP de Windows
      Se vaci¢ correctamente la cach‚ de resoluci¢n de DNS.
      C:\Users\Jos\Desktop\cmd.bat deleted successfully.
      C:\Users\Jos\Desktop\cmd.txt deleted successfully.
      < ipconfig /renew /c >
      Configuraci¢n IP de Windows
      No se puede realizar ninguna operaci¢n en Conexi¢n de *rea local* 12 mientras los medios
      est‚n desconectados.
      No se puede realizar ninguna operaci¢n en Ethernet mientras los medios
      est‚n desconectados.
      Adaptador de LAN inal*mbrica Conexi¢n de *rea local* 12:
      Estado de los medios. . . . . . . . . . . : medios desconectados
      Sufijo DNS espec¡fico para la conexi¢n. . :
      Adaptador de LAN inal*mbrica Wi-Fi:
      Sufijo DNS espec¡fico para la conexi¢n. . :
      V¡nculo: direcci¢n IPv6 local. . . : fe80::c4bc:ae2c:634:ebaf%16
      Direcci¢n IPv4. . . . . . . . . . . . . . : 192.168.0.14
      M*scara de subred . . . . . . . . . . . . : 255.255.255.0
      Puerta de enlace predeterminada . . . . . : 192.168.0.1
      Adaptador de Ethernet Ethernet:
      Estado de los medios. . . . . . . . . . . : medios desconectados
      Sufijo DNS espec¡fico para la conexi¢n. . :
      Adaptador de t£nel isatap.{B7F6A087-27DA-428D-AF97-E7337F007B3C}:
      Estado de los medios. . . . . . . . . . . : medios desconectados
      Sufijo DNS espec¡fico para la conexi¢n. . :
      Adaptador de t£nel Teredo Tunneling Pseudo-Interface:
      Sufijo DNS espec¡fico para la conexi¢n. . :
      Direcci¢n IPv6 . . . . . . . . . . : 2001:0:5ef5:79fd:3c40:3a4a:3f57:fff1
      V¡nculo: direcci¢n IPv6 local. . . : fe80::3c40:3a4a:3f57:fff1%15
      Puerta de enlace predeterminada . . . . . : ::
      C:\Users\Jos\Desktop\cmd.bat deleted successfully.
      C:\Users\Jos\Desktop\cmd.txt deleted successfully.
      ========== COMMANDS ==========

      [EMPTYFLASH]

      User: All Users

      User: Default
      ->Flash cache emptied: 57472 bytes

      User: Default User
      ->Flash cache emptied: 0 bytes

      User: Jos
      ->Flash cache emptied: 97377 bytes

      User: Public

      Total Flash Files Cleaned = 0,00 mb


      [EMPTYTEMP]

      User: All Users

      User: Default
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 0 bytes
      ->Flash cache emptied: 0 bytes

      User: Default User
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 0 bytes
      ->Flash cache emptied: 0 bytes

      User: Jos
      ->Temp folder emptied: 56364569 bytes
      ->Temporary Internet Files folder emptied: 274028946 bytes
      ->Java cache emptied: 131172 bytes
      ->Flash cache emptied: 0 bytes

      User: Public

      %systemdrive% .tmp files removed: 0 bytes
      %systemroot% .tmp files removed: 0 bytes
      %systemroot%\System32 .tmp files removed: 0 bytes
      %systemroot%\System32 (64bit) .tmp files removed: 0 bytes
      %systemroot%\System32\drivers .tmp files removed: 0 bytes
      Windows Temp folder emptied: 232558 bytes
      %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 128 bytes
      RecycleBin emptied: 0 bytes

      Total Files Cleaned = 315,00 mb

      C:\Windows\System32\drivers\etc\Hosts moved successfully.
      HOSTS file reset successfully

      OTL by OldTimer - Version 3.2.69.0 log created on 01272014_193942

      Files\Folders moved on Reboot...
      File\Folder C:\Users\Jos\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LK30E5NC\xd_arbiter[1].htm not found!
      File\Folder C:\Users\Jos\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LK30E5NC\xd_arbiter[2].htm not found!
      C:\Users\Jos\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\IJM2F6BI\postmessageRelay[1].htm moved successfully.
      C:\Users\Jos\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\9GIUR6D9\zrt_lookup[2].htm moved successfully.
      C:\Users\Jos\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\87DA5XK5\ads[3].htm moved successfully.
      C:\Users\Jos\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\3J8HX4S8\t478320[1].htm moved successfully.
      C:\Users\Jos\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\AntiPhishing\7A7E08C8-3FF5-45F2-873D-A84D669DC82F.dat moved successfully.
      C:\Users\Jos\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\MSIMGSIZ.DAT moved successfully.
      C:\Users\Jos\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.

      PendingFileRenameOperations files...

      Registry entries deleted on Reboot...

    10. #10
      Moderadora
      Avatar de @Daniela
      Registrado
      abr 2011
      Ubicación
      España
      Mensajes
      11.105

      Re: Eliminar Awesomehp

      Hola

      Revisa el siguiente enlace la parte de los navegadores, en tu caso busca todo lo que no conozcas o hayas instalado, lo eliminas.


      Comenta como sigue.

      Un saludo
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    Página 1 de 2 12 ÚltimoÚltimo