• Registrarse
  • Iniciar sesión


  • Resultados 1 al 4 de 4

    Ayuda con Browser AdBlocker en Chrome

    Saludos. No he podido eliminar la extensión Browser Adblocker en Google Chrome. Ya he pasado el antivirus (Avast Free), AdwCleaner, junkware removal tool, y el Malwarebytes como se sugería en Internet, pero aun así no ...

    1. #1
      Usuario Avatar de Effril
      Registrado
      jul 2015
      Ubicación
      Chile
      Mensajes
      2

      Ayuda con Browser AdBlocker en Chrome

      Saludos. No he podido eliminar la extensión Browser Adblocker en Google Chrome. Ya he pasado el antivirus (Avast Free), AdwCleaner, junkware removal tool, y el Malwarebytes como se sugería en Internet, pero aun así no se elimina. Pegaré lo que me sale en los informes:

      # AdwCleaner v4.207 - Registro generado 08/07/2015 en 14:59:33
      # Actualizado 21/06/2015 por Xplode
      # Base de datos : 2015-07-05.2 [Servidor]
      # Sistema operativo : Windows 8 Single Language (x64)
      # Nombre de usuario : joaquin - SAMSUNG
      # Ejecutado desde : C:\Users\joaquin\Desktop\AdwCleaner.exe
      # Opción : Escanear

      ***** [ Servicios ] *****


      ***** [ Archivos / Carpetas ] *****


      ***** [ Tareas programadas... ] *****


      ***** [ Accesos directos ] *****


      ***** [ Registro ] *****


      ***** [ Navegadores Web ] *****

      -\\ Internet Explorer v10.0.9200.17028


      -\\ Google Chrome v38.0.2125.111

      [C:\Users\joaquin\AppData\Local\Google\Chrome\User Data\Default\Preferences] - Encontrado [Startup_URLs] : hxxp://websearch.search-plaza.info/?pid=2967&r=2014/11/16&hid=9176543044691672217&lg=EN&cc=CL&unqvl=69

      -\\ Comodo Dragon v


      -\\ Chrome Canary v


      *************************

      AdwCleaner[R0].txt - [5785 bytes] - [07/07/2015 19:48:30]
      AdwCleaner[R1].txt - [1420 bytes] - [07/07/2015 19:55:33]
      AdwCleaner[R2].txt - [1520 bytes] - [08/07/2015 14:28:19]
      AdwCleaner[R3].txt - [1092 bytes] - [08/07/2015 14:59:33]
      AdwCleaner[S0].txt - [5266 bytes] - [07/07/2015 19:51:40]
      AdwCleaner[S1].txt - [1475 bytes] - [07/07/2015 19:57:39]
      AdwCleaner[S2].txt - [1575 bytes] - [08/07/2015 14:30:49]

      ########## EOF - C:\AdwCleaner\AdwCleaner[R3].txt - [1328 bytes] ##########







      ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
      Junkware Removal Tool (JRT) by Malwarebytes
      Version: 7.3.7 (07.08.2015:2)
      OS: Windows 8 Single Language x64
      Ran by joaquin on 08-07-2015 at 15:04:13,11
      ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




      ~~~ Services



      ~~~ Tasks



      ~~~ Registry Values



      ~~~ Registry Keys



      ~~~ Files

      Successfully deleted: [File] C:\Users\joaquin\AppData\Roaming\appdataFr25.bin



      ~~~ Folders



      ~~~ Chrome


      [C:\Users\joaquin\appdata\local\Google\Chrome\User Data\Default\Preferences] - default search provider reset

      [C:\Users\joaquin\appdata\local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:

      [C:\Users\joaquin\appdata\local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset

      [C:\Users\joaquin\appdata\local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:





      ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
      Scan was completed on 08-07-2015 at 15:06:56,98
      End of JRT log
      ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~






      Malwarebytes Anti-Malware
      www.malwarebytes.org

      Fecha del análisis: 08-07-2015
      Hora del análisis: 15:14
      Archivo de registro: MWBAM.txt
      Administrador: Sí

      Versión: 2.1.8.1057
      Base de datos de malwares: v2015.07.08.05
      Base de datos de rootkits: v2015.07.07.01
      Licencia: Prueba
      Protección contra el malware: Activado
      Protección contra sitios web maliciosos: Activado
      Autoprotección: Desactivado

      SO: Windows 8
      CPU: x64
      Sistema de archivos: NTFS
      Usuario: joaquin

      Tipo de análisis: Análisis de amenazas
      Resultado: Completado
      Objetos analizados: 444480
      Tiempo transcurrido: 24 min, 49 seg

      Memoria: Activado
      Inicio: Activado
      Sistema de archivos: Activado
      Archivo: Activado
      Rootkits: Activado
      Heurística: Activado
      PUP: Activado
      PUM: Activado

      Procesos: 0
      (No hay elementos maliciosos detectados)

      Módulos: 0
      (No hay elementos maliciosos detectados)

      Claves del registro: 0
      (No hay elementos maliciosos detectados)

      Valores del registro: 0
      (No hay elementos maliciosos detectados)

      Datos del registro: 0
      (No hay elementos maliciosos detectados)

      Carpetas: 0
      (No hay elementos maliciosos detectados)

      Archivos: 1
      PUP.Optional.AppDataFR.A, C:\Users\joaquin\AppData\Roaming\appdataFr25.bin, , [282d9e41cac042f40c4c778946be1de3],

      Sectores físicos: 0
      (No hay elementos maliciosos detectados)


      (end)

    2. #2
      Ex-Colaborador Avatar de @Fabian_Dres
      Registrado
      ago 2008
      Ubicación
      Chile
      Mensajes
      15.103

      Re: Ayuda con Browser AdBlocker en Chrome

      Bienvenido a InfoSpyware.com, Effril





      Realiza lo siguiente:


      ! Es importante ¡ descargar y ejecutar desde tu escritorio: OTL.exe By OldTimer

      Asegúrate de que la siguiente configuración sea la correcta de lo contrario deberás repetir el proceso.

      • Cierra todos programas que tengas abiertos
      • Das doble click en el ícono de OTL para ejecutarlo.
      • Ahora en el menú solo cambias: "Tipo de Análisis" poner Resultado Mínimo.
      • Marcar las opciones: Buscar LOP y Buscar Purity.
      • Marcar las Opciones, Omitir Archivos De Microsoft y Usar Listado de Compañías Reconocidas.
      • Copia y Pega el siguiente script bajo la casilla Análisis Personalizados/Código de Reparación:



      netsvcs
      msconfig
      %SYSTEMDRIVE%\*.*
      CREATERESTOREPOINT
      No cambies el resto de la configuración a menos que te lo solicitemos.


      • Presionar el botón
      • Una vez que termine, se abrirán dos (2) archivos, OTL.Txt y Extras.Txt.
      • Éstos archivos estarán grabados en el mismo lugar donde OTL.exe fue descargado.
      • Copiar y pegar el contenido del archivo OTL.txt en tu próxima respuesta.
      Anoika


      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    3. #3
      Usuario Avatar de Effril
      Registrado
      jul 2015
      Ubicación
      Chile
      Mensajes
      2

      Re: Ayuda con Browser AdBlocker en Chrome

      OTL logfile created on: 08-07-2015 16:36:48 - Run 2
      OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\joaquin\Desktop\Nueva carpeta (2)
      64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
      Internet Explorer (Version = 9.10.9200.17028)
      Locale: 0000340A | Country: Chile | Language: ESL | Date Format: dd-MM-yyyy

      3,89 Gb Total Physical Memory | 2,30 Gb Available Physical Memory | 59,05% Memory free
      7,01 Gb Paging File | 5,41 Gb Available in Paging File | 77,12% Paging File free
      Paging file location(s): ?:\pagefile.sys [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
      Drive C: | 444,23 Gb Total Space | 341,21 Gb Free Space | 76,81% Space Free | Partition Type: NTFS

      Computer Name: SAMSUNG | User Name: joaquin | Logged in as Administrator.
      Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
      Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

      ========== Processes (SafeList) ==========

      PRC - C:\Users\joaquin\Desktop\Nueva carpeta (2)\OTL.exe (OldTimer Tools)
      PRC - C:\Program Files\AVAST Software\Avast\avastui.exe (Avast Software s.r.o.)
      PRC - C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Avast Software s.r.o.)
      PRC - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
      PRC - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
      PRC - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes Corporation)
      PRC - C:\Program Files (x86)\Samsung\Settings\CmdServer\EasySettingsCmdServer.exe ()
      PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation)
      PRC - C:\Windows\SysWOW64\WWAHost.exe (Microsoft Corporation)


      ========== Modules (No Company Name) ==========

      MOD - C:\Program Files\AVAST Software\Avast\libcef.dll ()
      MOD - C:\Program Files\AVAST Software\Avast\log.dll ()
      MOD - C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll ()
      MOD - C:\Program Files (x86)\Samsung\Settings\CmdServer\WinCRT.dll ()


      ========== Services (SafeList) ==========

      SRV:64bit: - (avast! Antivirus) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Avast Software s.r.o.)
      SRV:64bit: - (LSM) -- C:\Windows\SysNative\lsm.dll (Microsoft Corporation)
      SRV:64bit: - (WSService) -- C:\Windows\SysNative\WSService.dll (Microsoft Corporation)
      SRV:64bit: - (Wcmsvc) -- C:\Windows\SysNative\wcmsvc.dll (Microsoft Corporation)
      SRV:64bit: - (DsmSvc) -- C:\Windows\SysNative\DeviceSetupManager.dll (Microsoft Corporation)
      SRV:64bit: - (netprofm) -- C:\Windows\SysNative\netprofmsvc.dll (Microsoft Corporation)
      SRV:64bit: - (BrokerInfrastructure) -- C:\Windows\SysNative\bisrv.dll (Microsoft Corporation)
      SRV:64bit: - (AudioEndpointBuilder) -- C:\Windows\SysNative\AudioEndpointBuilder.dll (Microsoft Corporation)
      SRV:64bit: - (TimeBroker) -- C:\Windows\SysNative\TimeBrokerServer.dll (Microsoft Corporation)
      SRV:64bit: - (SystemEventsBroker) -- C:\Windows\SysNative\SystemEventsBrokerServer.dll (Microsoft Corporation)
      SRV:64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation)
      SRV:64bit: - (wlidsvc) -- C:\Windows\SysNative\wlidsvc.dll (Microsoft Corporation)
      SRV:64bit: - (Intel(R) -- C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe (Intel(R) Corporation)
      SRV:64bit: - (Intel(R) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel(R) Corporation)
      SRV:64bit: - (PrintNotify) -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll (Microsoft Corporation)
      SRV:64bit: - (fhsvc) -- C:\Windows\SysNative\fhsvc.dll (Microsoft Corporation)
      SRV:64bit: - (WiaRpc) -- C:\Windows\SysNative\wiarpc.dll (Microsoft Corporation)
      SRV:64bit: - (VaultSvc) -- C:\Windows\SysNative\vaultsvc.dll (Microsoft Corporation)
      SRV:64bit: - (svsvc) -- C:\Windows\SysNative\svsvc.dll (Microsoft Corporation)
      SRV:64bit: - (Netlogon) -- C:\Windows\SysNative\netlogon.dll (Microsoft Corporation)
      SRV:64bit: - (NcaSvc) -- C:\Windows\SysNative\NcaSvc.dll (Microsoft Corporation)
      SRV:64bit: - (NcdAutoSetup) -- C:\Windows\SysNative\NcdAutoSetup.dll (Microsoft Corporation)
      SRV:64bit: - (KeyIso) -- C:\Windows\SysNative\keyiso.dll (Microsoft Corporation)
      SRV:64bit: - (EFS) -- C:\Windows\SysNative\efssvc.dll (Microsoft Corporation)
      SRV:64bit: - (DeviceAssociationService) -- C:\Windows\SysNative\das.dll (Microsoft Corporation)
      SRV:64bit: - (AllUserInstallAgent) -- C:\Windows\SysNative\AUInstallAgent.dll (Microsoft Corporation)
      SRV:64bit: - (vmicvss) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
      SRV:64bit: - (vmictimesync) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
      SRV:64bit: - (vmicshutdown) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
      SRV:64bit: - (vmicrdv) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
      SRV:64bit: - (vmickvpexchange) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
      SRV:64bit: - (vmicheartbeat) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
      SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
      SRV - (MBAMService) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
      SRV - (MBAMScheduler) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
      SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
      SRV - (Steam Client Service) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation)
      SRV - (SWUpdateService) -- C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe (Samsung Electronics CO., LTD.)
      SRV - (AtherosSvc) -- C:\Program Files (x86)\Bluetooth Suite\adminservice.exe (Windows (R) Win 7 DDK provider)
      SRV - (ZAtheros Bt and Wlan Coex Agent) -- C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe (Atheros)
      SRV - (nvUpdatusService) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation)
      SRV - (cphs) -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe (Intel Corporation)
      SRV - (Easy Launcher) -- C:\Program Files (x86)\Samsung\Settings\CmdServer\EasyLauncher.exe (Samsung Electronics CO., LTD.)
      SRV - (AdobeActiveFileMonitor11.0) -- C:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe (Adobe Systems Incorporated)
      SRV - (UNS) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation)
      SRV - (LMS) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation)
      SRV - (jhi_service) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation)
      SRV - (Intel(R) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation)
      SRV - (PrintNotify) -- C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll (Microsoft Corporation)
      SRV - (StorSvc) -- C:\Windows\SysWOW64\StorSvc.dll (Microsoft Corporation)
      SRV - (ICCS) -- C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (Intel Corporation)


      ========== Driver Services (SafeList) ==========

      DRV:64bit: - (MBAMSwissArmy) -- C:\Windows\SysNative\Drivers\MBAMSwissArmy.sys (Malwarebytes Corporation)
      DRV:64bit: - (aswSP) -- C:\Windows\SysNative\Drivers\aswSP.sys (Avast Software s.r.o.)
      DRV:64bit: - (aswVmm) -- C:\windows\SysNative\drivers\aswVmm.sys ()
      DRV:64bit: - (aswStm) -- C:\Windows\SysNative\Drivers\aswStm.sys (Avast Software s.r.o.)
      DRV:64bit: - (aswMonFlt) -- C:\Windows\SysNative\Drivers\aswMonFlt.sys (Avast Software s.r.o.)
      DRV:64bit: - (aswRvrt) -- C:\windows\SysNative\drivers\aswRvrt.sys ()
      DRV:64bit: - (aswHwid) -- C:\Windows\SysNative\Drivers\aswHwid.sys ()
      DRV:64bit: - (aswRdr) -- C:\Windows\SysNative\Drivers\aswRdr2.sys (Avast Software s.r.o.)
      DRV:64bit: - (aswSnx) -- C:\Windows\SysNative\Drivers\aswSnx.sys (Avast Software s.r.o.)
      DRV:64bit: - (MBAMWebAccessControl) -- C:\Windows\SysNative\Drivers\mwac.sys (Malwarebytes Corporation)
      DRV:64bit: - (MBAMProtector) -- C:\Windows\SysNative\Drivers\mbam.sys (Malwarebytes Corporation)
      DRV:64bit: - (ssudmdm) -- C:\Windows\SysNative\Drivers\ssudmdm.sys (DEVGURU Co., LTD.(데브구루 | 데브구루에 오ì‹*것을 환영합니다.))
      DRV:64bit: - (dg_ssudbus) -- C:\Windows\SysNative\Drivers\ssudbus.sys (DEVGURU Co., LTD.(데브구루 | 데브구루에 오ì‹*것을 환영합니다.))
      DRV:64bit: - (BtFilter) -- C:\Windows\SysNative\Drivers\btfilter.sys (Qualcomm Atheros)
      DRV:64bit: - (BTATH_A2DP) -- C:\Windows\SysNative\Drivers\btath_a2dp.sys (Qualcomm Atheros)
      DRV:64bit: - (BTATH_HID) -- C:\Windows\SysNative\Drivers\btath_hid.sys (Qualcomm Atheros)
      DRV:64bit: - (BTATH_HCRP) -- C:\Windows\SysNative\Drivers\btath_hcrp.sys (Qualcomm Atheros)
      DRV:64bit: - (BTATH_RCP) -- C:\Windows\SysNative\Drivers\btath_rcp.sys (Qualcomm Atheros)
      DRV:64bit: - (btath_avdt) -- C:\Windows\SysNative\Drivers\btath_avdt.sys (Qualcomm Atheros)
      DRV:64bit: - (AthBTPort) -- C:\Windows\SysNative\Drivers\btath_flt.sys (Qualcomm Atheros)
      DRV:64bit: - (BTATH_LWFLT) -- C:\Windows\SysNative\Drivers\btath_lwflt.sys (Qualcomm Atheros)
      DRV:64bit: - (BTATH_BUS) -- C:\Windows\SysNative\Drivers\btath_bus.sys (Qualcomm Atheros)
      DRV:64bit: - (WFPLWFS) -- C:\Windows\SysNative\Drivers\wfplwfs.sys (Microsoft Corporation)
      DRV:64bit: - (spaceport) -- C:\Windows\SysNative\Drivers\spaceport.sys (Microsoft Corporation)
      DRV:64bit: - (USBHUB3) -- C:\Windows\SysNative\Drivers\USBHUB3.SYS (Microsoft Corporation)
      DRV:64bit: - (nvpciflt) -- C:\Windows\SysNative\Drivers\nvpciflt.sys (NVIDIA Corporation)
      DRV:64bit: - (dam) -- C:\Windows\SysNative\Drivers\dam.sys (Microsoft Corporation)
      DRV:64bit: - (TPM) -- C:\Windows\SysNative\Drivers\tpm.sys (Microsoft Corporation)
      DRV:64bit: - (GPIOClx0101) -- C:\Windows\SysNative\Drivers\msgpioclx.sys (Microsoft Corporation)
      DRV:64bit: - (USBXHCI) -- C:\Windows\SysNative\Drivers\USBXHCI.SYS (Microsoft Corporation)
      DRV:64bit: - (UCX01000) -- C:\Windows\SysNative\Drivers\UCX01000.SYS (Microsoft Corporation)
      DRV:64bit: - (sdbus) -- C:\Windows\SysNative\Drivers\sdbus.sys (Microsoft Corporation)
      DRV:64bit: - (BthAvrcpTg) -- C:\Windows\SysNative\Drivers\BthAvrcpTg.sys (Microsoft Corporation)
      DRV:64bit: - (storahci) -- C:\Windows\SysNative\Drivers\storahci.sys (Microsoft Corporation)
      DRV:64bit: - (pdc) -- C:\Windows\SysNative\Drivers\pdc.sys (Microsoft Corporation)
      DRV:64bit: - (WdBoot) -- C:\Windows\SysNative\Drivers\WdBoot.sys (Microsoft Corporation)
      DRV:64bit: - (WdFilter) -- C:\Windows\SysNative\Drivers\WdFilter.sys (Microsoft Corporation)
      DRV:64bit: - (IntcDAud) -- C:\Windows\SysNative\Drivers\IntcDAud.sys (Intel(R) Corporation)
      DRV:64bit: - (igfx) -- C:\Windows\SysNative\Drivers\igdkmd64.sys (Intel Corporation)
      DRV:64bit: - (msgpiowin32) -- C:\Windows\SysNative\Drivers\msgpiowin32.sys (Microsoft Corporation)
      DRV:64bit: - (bthhfhid) -- C:\Windows\SysNative\Drivers\BthhfHid.sys (Microsoft Corporation)
      DRV:64bit: - (hidi2c) -- C:\Windows\SysNative\Drivers\hidi2c.sys (Microsoft Corporation)
      DRV:64bit: - (iaStorA) -- C:\Windows\SysNative\Drivers\iaStorA.sys (Intel Corporation)
      DRV:64bit: - (FxPPM) -- C:\Windows\SysNative\Drivers\fxppm.sys (Microsoft Corporation)
      DRV:64bit: - (SynTP) -- C:\Windows\SysNative\Drivers\SynTP.sys (Synaptics Incorporated)
      DRV:64bit: - (RdpVideoMiniport) -- C:\Windows\SysNative\Drivers\rdpvideominiport.sys (Microsoft Corporation)
      DRV:64bit: - (sdstor) -- C:\Windows\SysNative\Drivers\sdstor.sys (Microsoft Corporation)
      DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\Drivers\evbda.sys (Broadcom Corporation)
      DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\Drivers\bxvbda.sys (Broadcom Corporation)
      DRV:64bit: - (athr) -- C:\Windows\SysNative\Drivers\athw8x.sys (Qualcomm Atheros Communications, Inc.)
      DRV:64bit: - (RTL8168) -- C:\Windows\SysNative\Drivers\Rt630x64.sys (Realtek )
      DRV:64bit: - (PxHlpa64) -- C:\Windows\SysNative\Drivers\PxHlpa64.sys (Corel Corporation)
      DRV:64bit: - (cbfs3) -- C:\Windows\SysNative\Drivers\cbfs3.sys (EldoS Corporation)
      DRV:64bit: - (RadioHIDMini) -- C:\Windows\SysNative\Drivers\RadioHIDMini.sys (Windows (R) Win 7 DDK provider)
      DRV:64bit: - (Fs_Rec) -- C:\windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
      DRV:64bit: - (condrv) -- C:\Windows\SysNative\Drivers\condrv.sys (Microsoft Corporation)
      DRV:64bit: - (VSTXRAID) -- C:\Windows\SysNative\Drivers\VSTXRAID.SYS (VIA Corporation)
      DRV:64bit: - (VerifierExt) -- C:\Windows\SysNative\Drivers\VerifierExt.sys (Microsoft Corporation)
      DRV:64bit: - (UASPStor) -- C:\Windows\SysNative\Drivers\uaspstor.sys (Microsoft Corporation)
      DRV:64bit: - (acpiex) -- C:\Windows\SysNative\Drivers\acpiex.sys (Microsoft Corporation)
      DRV:64bit: - (mvumis) -- C:\Windows\SysNative\Drivers\mvumis.sys (Marvell Semiconductor, Inc.)
      DRV:64bit: - (stexstor) -- C:\Windows\SysNative\Drivers\stexstor.sys (Promise Technology, Inc.)
      DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\Drivers\lsi_sas2.sys (LSI Corporation)
      DRV:64bit: - (LSI_SSS) -- C:\Windows\SysNative\Drivers\lsi_sss.sys (LSI Corporation)
      DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\Drivers\HpSAMD.sys (Hewlett-Packard Company)
      DRV:64bit: - (EhStorTcgDrv) -- C:\Windows\SysNative\Drivers\EhStorTcgDrv.sys (Microsoft Corporation)
      DRV:64bit: - (EhStorClass) -- C:\Windows\SysNative\Drivers\EhStorClass.sys (Microsoft Corporation)
      DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\Drivers\amdsbs.sys (AMD Technologies Inc.)
      DRV:64bit: - (3ware) -- C:\Windows\SysNative\Drivers\3ware.sys (LSI)
      DRV:64bit: - (amdsata) -- C:\Windows\SysNative\Drivers\amdsata.sys (Advanced Micro Devices)
      DRV:64bit: - (amdxata) -- C:\Windows\SysNative\Drivers\amdxata.sys (Advanced Micro Devices)
      DRV:64bit: - (CLFS) -- C:\Windows\SysNative\Drivers\clfs.sys (Microsoft Corporation)
      DRV:64bit: - (vpci) -- C:\Windows\SysNative\Drivers\vpci.sys (Microsoft Corporation)
      DRV:64bit: - (terminpt) -- C:\Windows\SysNative\Drivers\terminpt.sys (Microsoft Corporation)
      DRV:64bit: - (mshidumdf) -- C:\Windows\SysNative\Drivers\mshidumdf.sys (Microsoft Corporation)
      DRV:64bit: - (BasicDisplay) -- C:\Windows\SysNative\Drivers\BasicDisplay.sys (Microsoft Corporation)
      DRV:64bit: - (HyperVideo) -- C:\Windows\SysNative\Drivers\HyperVideo.sys (Microsoft Corporation)
      DRV:64bit: - (BasicRender) -- C:\Windows\SysNative\Drivers\BasicRender.sys (Microsoft Corporation)
      DRV:64bit: - (gencounter) -- C:\Windows\SysNative\Drivers\vmgencounter.sys (Microsoft Corporation)
      DRV:64bit: - (kdnic) -- C:\Windows\SysNative\Drivers\kdnic.sys (Microsoft Corporation)
      DRV:64bit: - (acpitime) -- C:\Windows\SysNative\Drivers\acpitime.sys (Microsoft Corporation)
      DRV:64bit: - (npsvctrig) -- C:\Windows\SysNative\Drivers\npsvctrig.sys (Microsoft Corporation)
      DRV:64bit: - (WpdUpFltr) -- C:\Windows\SysNative\Drivers\WpdUpFltr.sys (Microsoft Corporation)
      DRV:64bit: - (acpipagr) -- C:\Windows\SysNative\Drivers\acpipagr.sys (Microsoft Corporation)
      DRV:64bit: - (hyperkbd) -- C:\Windows\SysNative\Drivers\hyperkbd.sys (Microsoft Corporation)
      DRV:64bit: - (SerCx) -- C:\Windows\SysNative\Drivers\SerCx.sys (Microsoft Corporation)
      DRV:64bit: - (SpbCx) -- C:\Windows\SysNative\Drivers\SpbCx.sys (Microsoft Corporation)
      DRV:64bit: - (TsUsbGD) -- C:\Windows\SysNative\Drivers\TsUsbGD.sys (Microsoft Corporation)
      DRV:64bit: - (BthHFEnum) -- C:\Windows\SysNative\Drivers\bthhfenum.sys (Microsoft Corporation)
      DRV:64bit: - (dmvsc) -- C:\Windows\SysNative\Drivers\dmvsc.sys (Microsoft Corporation)
      DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\Drivers\TsUsbFlt.sys (Microsoft Corporation)
      DRV:64bit: - (wpcfltr) -- C:\Windows\SysNative\Drivers\wpcfltr.sys (Microsoft Corporation)
      DRV:64bit: - (BthLEEnum) -- C:\Windows\SysNative\Drivers\BthLEEnum.sys (Microsoft Corporation)
      DRV:64bit: - (NdisImPlatform) -- C:\Windows\SysNative\Drivers\NdisImPlatform.sys (Microsoft Corporation)
      DRV:64bit: - (MsLldp) -- C:\Windows\SysNative\Drivers\mslldp.sys (Microsoft Corporation)
      DRV:64bit: - (Ndu) -- C:\Windows\SysNative\Drivers\Ndu.sys (Microsoft Corporation)
      DRV:64bit: - (MEIx64) -- C:\Windows\SysNative\Drivers\HECIx64.sys (Intel Corporation)
      DRV:64bit: - (SSPORT) -- C:\Windows\SysNative\Drivers\SSPORT.SYS (Samsung Electronics)
      DRV:64bit: - (Revoflt) -- C:\Windows\SysNative\Drivers\revoflt.sys (VS Revo Group)

      ========== Standard Registry (SafeList) ==========


      ========== Internet Explorer ==========

      IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
      IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
      IE:64bit: - HKLM\..\SearchScopes\{A15774DD-9DBD-4F7B-B695-9F4E26ED5027}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=SMJB
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=sp-006&q={searchTerms}
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
      IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
      IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
      IE - HKLM\..\SearchScopes\{A15774DD-9DBD-4F7B-B695-9F4E26ED5027}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=SMJB
      IE - HKLM\..\SearchScopes\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F}: "URL" = https://www.google.com/search?trackid=sp-006&q={searchTerms}

      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=sp-006&q={searchTerms}
      IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
      IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
      IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
      IE - HKCU\..\SearchScopes\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F}: "URL" = https://www.google.com/search?trackid=sp-006&q={searchTerms}
      IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


      ========== FireFox ==========

      FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF64_18_0_0_194.dll File not found
      FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
      FF:64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll File not found
      FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_194.dll ()
      FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.66: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
      FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/Lync,version=15.0: C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.5: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
      FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.2.1: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
      FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
      FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\joaquin\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)

      FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-07-04 20:01:33 | 000,000,000 | ---D | M]

      [2012-10-01 20:43:54 | 000,034,016 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll

      ========== Chrome ==========

      CHR - plugin: Error reading preferences file
      CHR - Extension: Avast Online Security = C:\Users\joaquin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\10.2.0.190_0\

      O1 HOSTS File: ([2012-07-26 02:26:49 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\Drivers\etc\hosts
      O2:64bit: - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (Avast Software s.r.o.)
      O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (Avast Software s.r.o.)
      O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
      O4:64bit: - HKLM..\Run: [Bitcasa] C:\Program Files\Bitcasa\Bitcasa.exe (Bitcasa, Inc)
      O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
      O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
      O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
      O4:64bit: - HKLM..\Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor)
      O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
      O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o.)
      O4 - HKLM..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.)
      O4 - HKLM..\Run: [RemoteControl10] C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (CyberLink Corp.)
      O4 - HKCU..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
      O4 - HKCU..\Run: [Facebook Update] C:\Users\joaquin\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
      O4 - HKCU..\Run: [Spotify] C:\Users\joaquin\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd)
      O4 - HKCU..\Run: [Spotify Web Helper] C:\Users\joaquin\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Spotify Ltd)
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run: BtvStack = "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe" (Atheros Communications)
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SoftwareSASGeneration = 1
      O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000 File not found
      O8:64bit: - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105 File not found
      O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000 File not found
      O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105 File not found
      O1364bit: - gopher Prefix: missing
      O13 - gopher Prefix: missing
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 190.96.9.250 190.153.164.250
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C1D343A5-F5E0-42D4-9D26-5150E068F6E8}: DhcpNameServer = 190.96.9.250 190.153.164.250
      O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
      O18 - Protocol\Handler\ms-help - No CLSID value found
      O20 - AppInit_DLLs: (C:\windows\SysWOW64\nvinit.dll) - C:\Windows\SysWOW64\nvinit.dll (NVIDIA Corporation)
      O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
      O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\windows\SysWow64\userinit.exe (Microsoft Corporation)
      O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\windows\SysNative\igfxdev.dll (Intel Corporation)
      O21:64bit: - SSODL: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\Windows\SysNative\CbFsMntNtf3.dll (EldoS Corporation)
      O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O21 - SSODL: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\Windows\SysWOW64\CbFsMntNtf3.dll (EldoS Corporation)
      O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O22:64bit: - SharedTaskScheduler: {5FF49FE8-B332-4CB9-B102-FB6951629E55} - Virtual Storage Mount Notification - C:\Windows\SysNative\CbFsMntNtf3.dll (EldoS Corporation)
      O22 - SharedTaskScheduler: {5FF49FE8-B332-4CB9-B102-FB6951629E55} - Virtual Storage Mount Notification - C:\Windows\SysWOW64\CbFsMntNtf3.dll (EldoS Corporation)
      O30 - LSA: Security Packages - (livessp) - File not found
      O32 - HKLM CDRom: AutoRun - 1
      O34 - HKLM BootExecute: (autocheck autochk *)
      O35:64bit: - HKLM\..comfile [open] -- "%1" %*
      O35:64bit: - HKLM\..exefile [open] -- "%1" %*
      O35 - HKLM\..comfile [open] -- "%1" %*
      O35 - HKLM\..exefile [open] -- "%1" %*
      O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
      O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
      O37 - HKLM\...com [@ = comfile] -- "%1" %*
      O37 - HKLM\...exe [@ = exefile] -- "%1" %*
      O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
      O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

      NetSvcs:64bit: wlidsvc - C:\Windows\SysNative\wlidsvc.dll (Microsoft Corporation)
      NetSvcs:64bit: DsmSvc - C:\Windows\SysNative\DeviceSetupManager.dll (Microsoft Corporation)
      NetSvcs:64bit: NcaSvc - C:\Windows\SysNative\NcaSvc.dll (Microsoft Corporation)
      NetSvcs:64bit: SystemEventsBroker - C:\Windows\SysNative\SystemEventsBrokerServer.dll (Microsoft Corporation)


      CREATERESTOREPOINT
      Restore point Set: OTL Restore Point

      ========== Files/Folders - Created Within 30 Days ==========

      [2015-07-08 14:38:49 | 000,000,000 | ---D | C] -- C:\RegBackup
      [2015-07-08 14:33:05 | 000,000,000 | R--D | C] -- C:\Users\joaquin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
      [2015-07-07 19:48:26 | 000,000,000 | ---D | C] -- C:\AdwCleaner
      [2015-07-04 20:01:40 | 000,364,472 | ---- | C] (Avast Software s.r.o.) -- C:\windows\SysNative\aswBoot.exe
      [2015-07-03 21:41:00 | 000,000,000 | ---D | C] -- C:\Users\joaquin\AppData\Roaming\AVAST Software
      [2015-07-03 21:38:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
      [2015-07-03 21:37:04 | 001,047,320 | ---- | C] (Avast Software s.r.o.) -- C:\windows\SysNative\drivers\aswSnx.sys
      [2015-07-03 21:37:04 | 000,442,264 | ---- | C] (Avast Software s.r.o.) -- C:\windows\SysNative\drivers\aswSP.sys
      [2015-07-03 21:37:04 | 000,137,288 | ---- | C] (Avast Software s.r.o.) -- C:\windows\SysNative\drivers\aswStm.sys
      [2015-07-03 21:37:04 | 000,093,528 | ---- | C] (Avast Software s.r.o.) -- C:\windows\SysNative\drivers\aswRdr2.sys
      [2015-07-03 21:37:04 | 000,089,944 | ---- | C] (Avast Software s.r.o.) -- C:\windows\SysNative\drivers\aswMonFlt.sys
      [2015-07-03 21:36:51 | 000,043,112 | ---- | C] (Avast Software s.r.o.) -- C:\windows\avastSS.scr
      [2015-07-03 21:30:22 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
      [2015-07-03 21:29:12 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
      [2015-07-03 21:28:58 | 000,000,000 | ---D | C] -- C:\Users\joaquin\Desktop\Nueva carpeta (2)
      [2015-07-03 21:22:21 | 000,000,000 | ---D | C] -- C:\Users\joaquin\Desktop\ordenar!
      [2015-06-30 15:41:34 | 000,113,880 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\2D032C4A.sys
      [2015-06-29 18:47:39 | 000,113,880 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\MBAMSwissArmy.sys
      [2015-06-29 18:47:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
      [2015-06-29 18:47:08 | 000,109,272 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mbamchameleon.sys
      [2015-06-29 18:47:08 | 000,064,216 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mwac.sys
      [2015-06-29 18:47:08 | 000,025,816 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mbam.sys
      [2015-06-29 18:47:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes Anti-Malware
      [2015-06-29 18:47:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
      [2015-06-16 12:36:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CutterMaker
      [2013-07-29 22:38:43 | 002,064,264 | ---- | C] (Samsung Electronics) -- C:\ProgramData\MakeMarkerFile.exe
      [1 C:\windows\SysNative\*.tmp files -> C:\windows\SysNative\*.tmp -> ]
      [1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]

      ========== Files - Modified Within 30 Days ==========

      [2015-07-08 16:32:29 | 000,000,024 | ---- | M] () -- C:\Users\joaquin\AppData\Roaming\appdataFr25.bin
      [2015-07-08 1645 | 000,113,880 | ---- | M] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\MBAMSwissArmy.sys
      [2015-07-08 15:39:14 | 000,000,838 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
      [2015-07-08 14:38:59 | 000,000,207 | ---- | M] () -- C:\windows\tweaking.com-regbackup-SAMSUNG-Windows-8-Single-Language-(64-bit).dat
      [2015-07-08 14:34:14 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
      [2015-07-08 14:32:13 | 003,434,344 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT
      [2015-07-08 14:31:53 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys
      [2015-07-08 14:31:48 | 3339,894,784 | -HS- | M] () -- C:\hiberfil.sys
      [2015-07-08 14:15:08 | 000,000,952 | ---- | M] () -- C:\windows\tasks\FacebookUpdateTaskUserS-1-5-21-1629243068-1109520030-1868606107-1002UA.job
      [2015-07-08 12:32:02 | 000,000,374 | ---- | M] () -- C:\windows\tasks\VideoKeeper.job
      [2015-07-08 12:32:02 | 000,000,374 | ---- | M] () -- C:\windows\tasks\ThunderSounds.job
      [2015-07-07 23:15:01 | 000,000,930 | ---- | M] () -- C:\windows\tasks\FacebookUpdateTaskUserS-1-5-21-1629243068-1109520030-1868606107-1002Core.job
      [2015-07-07 19:44:38 | 002,244,096 | ---- | M] () -- C:\Users\joaquin\Desktop\AdwCleaner.exe
      [2015-07-07 18:58:27 | 001,798,556 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
      [2015-07-07 18:58:27 | 000,799,280 | ---- | M] () -- C:\windows\SysNative\perfh00A.dat
      [2015-07-07 18:58:27 | 000,710,244 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
      [2015-07-07 18:58:27 | 000,163,056 | ---- | M] () -- C:\windows\SysNative\perfc00A.dat
      [2015-07-07 18:58:27 | 000,132,614 | ---- | M] () -- C:\windows\SysNative\perfc009.dat
      [2015-07-04 20:02:04 | 000,001,922 | ---- | M] () -- C:\Users\Public\Desktop\Avast Free Antivirus.lnk
      [2015-07-04 15:49:09 | 000,967,787 | ---- | M] () -- C:\Users\joaquin\Desktop\dddddd.png
      [2015-07-03 21:37:40 | 000,442,264 | ---- | M] (Avast Software s.r.o.) -- C:\windows\SysNative\drivers\aswSP.sys
      [2015-07-03 21:36:57 | 000,364,472 | ---- | M] (Avast Software s.r.o.) -- C:\windows\SysNative\aswBoot.exe
      [2015-07-03 21:36:57 | 000,272,248 | ---- | M] () -- C:\windows\SysNative\drivers\aswVmm.sys
      [2015-07-03 21:36:57 | 000,137,288 | ---- | M] (Avast Software s.r.o.) -- C:\windows\SysNative\drivers\aswStm.sys
      [2015-07-03 21:36:57 | 000,089,944 | ---- | M] (Avast Software s.r.o.) -- C:\windows\SysNative\drivers\aswMonFlt.sys
      [2015-07-03 21:36:57 | 000,065,736 | ---- | M] () -- C:\windows\SysNative\drivers\aswRvrt.sys
      [2015-07-03 21:36:57 | 000,029,168 | ---- | M] () -- C:\windows\SysNative\drivers\aswHwid.sys
      [2015-07-03 21:36:56 | 000,093,528 | ---- | M] (Avast Software s.r.o.) -- C:\windows\SysNative\drivers\aswRdr2.sys
      [2015-07-03 21:36:51 | 000,043,112 | ---- | M] (Avast Software s.r.o.) -- C:\windows\avastSS.scr
      [2015-07-03 21:36:38 | 001,047,320 | ---- | M] (Avast Software s.r.o.) -- C:\windows\SysNative\drivers\aswSnx.sys
      [2015-06-30 15:41:35 | 000,113,880 | ---- | M] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\2D032C4A.sys
      [2015-06-29 18:52:02 | 000,001,106 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
      [2015-06-29 16:47:26 | 000,000,000 | ---- | M] () -- C:\Users\joaquin\AppData\Local\Temp.dat
      [2015-06-18 08:42:02 | 000,064,216 | ---- | M] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mwac.sys
      [2015-06-18 08:41:44 | 000,109,272 | ---- | M] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mbamchameleon.sys
      [2015-06-18 08:41:40 | 000,025,816 | ---- | M] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mbam.sys
      [1 C:\windows\SysNative\*.tmp files -> C:\windows\SysNative\*.tmp -> ]
      [1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]

      ========== Files Created - No Company Name ==========

      [2015-07-08 16:32:29 | 000,000,024 | ---- | C] () -- C:\Users\joaquin\AppData\Roaming\appdataFr25.bin
      [2015-07-08 14:38:59 | 000,000,207 | ---- | C] () -- C:\windows\tweaking.com-regbackup-SAMSUNG-Windows-8-Single-Language-(64-bit).dat
      [2015-07-08 14:31:53 | 003,434,344 | ---- | C] () -- C:\windows\SysNative\FNTCACHE.DAT
      [2015-07-07 19:44:30 | 002,244,096 | ---- | C] () -- C:\Users\joaquin\Desktop\AdwCleaner.exe
      [2015-07-07 15:54:17 | 000,000,838 | ---- | C] () -- C:\windows\tasks\Adobe Flash Player Updater.job
      [2015-07-04 20:02:04 | 000,001,922 | ---- | C] () -- C:\Users\Public\Desktop\Avast Free Antivirus.lnk
      [2015-07-04 15:49:08 | 000,967,787 | ---- | C] () -- C:\Users\joaquin\Desktop\dddddd.png
      [2015-07-03 21:37:04 | 000,272,248 | ---- | C] () -- C:\windows\SysNative\drivers\aswVmm.sys
      [2015-07-03 21:37:04 | 000,065,736 | ---- | C] () -- C:\windows\SysNative\drivers\aswRvrt.sys
      [2015-07-03 21:37:04 | 000,029,168 | ---- | C] () -- C:\windows\SysNative\drivers\aswHwid.sys
      [2015-06-29 18:47:22 | 000,001,106 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
      [2015-06-29 16:47:26 | 000,000,000 | ---- | C] () -- C:\Users\joaquin\AppData\Local\Temp.dat
      [2015-06-18 00:32:08 | 000,000,374 | ---- | C] () -- C:\windows\tasks\VideoKeeper.job
      [2015-06-16 12:32:14 | 000,000,374 | ---- | C] () -- C:\windows\tasks\ThunderSounds.job
      [2014-08-24 20:11:25 | 001,554,336 | ---- | C] () -- C:\windows\TotalUninstaller.exe
      [2014-07-28 07:20:35 | 000,083,968 | ---- | C] () -- C:\windows\SysWow64\OEMLicense.dll
      [2013-07-29 22:39:55 | 000,000,002 | ---- | C] () -- C:\windows\HotFixList.ini
      [2013-07-29 22:38:43 | 000,003,004 | ---- | C] () -- C:\ProgramData\MakeMarkerFile.xml

      ========== ZeroAccess Check ==========

      [2014-07-29 14:29:37 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini

      [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

      [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

      [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

      [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
      "" = C:\Windows\SysNative\shell32.dll -- [2014-03-28 05:23:06 | 019,759,104 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
      "" = %SystemRoot%\system32\shell32.dll -- [2014-03-28 03:18:26 | 017,562,112 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
      "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2012-07-26 00:05:38 | 001,004,544 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
      "" = %systemroot%\system32\wbem\fastprox.dll -- [2012-07-26 00:18:27 | 000,784,896 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
      "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2012-07-26 00:07:41 | 000,455,680 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Both

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

      ========== LOP Check ==========

      [2014-08-02 14:31:28 | 000,000,000 | ---D | M] -- C:\Users\joaquin\AppData\Roaming\.mono
      [2015-07-03 21:41:00 | 000,000,000 | ---D | M] -- C:\Users\joaquin\AppData\Roaming\AVAST Software
      [2015-01-05 19:49:21 | 000,000,000 | ---D | M] -- C:\Users\joaquin\AppData\Roaming\LolClient
      [2014-08-02 14:26:56 | 000,000,000 | ---D | M] -- C:\Users\joaquin\AppData\Roaming\Pokémon Trading Card Game Online
      [2014-09-29 08:54:32 | 000,000,000 | ---D | M] -- C:\Users\joaquin\AppData\Roaming\Publish Providers
      [2014-12-31 13:01:12 | 000,000,000 | ---D | M] -- C:\Users\joaquin\AppData\Roaming\Riot Games
      [2014-09-29 08:54:29 | 000,000,000 | ---D | M] -- C:\Users\joaquin\AppData\Roaming\Sony
      [2015-06-08 09:07:19 | 000,000,000 | ---D | M] -- C:\Users\joaquin\AppData\Roaming\Spotify
      [2014-12-20 20:20:46 | 000,000,000 | ---D | M] -- C:\Users\joaquin\AppData\Roaming\StunlockStudios
      [2014-07-27 17:58:28 | 000,000,000 | ---D | M] -- C:\Users\joaquin\AppData\Roaming\Synaptics

      ========== Purity Check ==========



      ========== Custom Scans ==========

      < %SYSTEMDRIVE%\*.* >
      [2012-07-26 00:44:30 | 000,398,156 | RHS- | M] () -- C:\bootmgr
      [2012-06-02 11:30:55 | 000,000,001 | -HS- | M] () -- C:\BOOTNXT
      [2015-07-08 14:31:48 | 3339,894,784 | -HS- | M] () -- C:\hiberfil.sys
      [2013-07-29 22:42:08 | 000,000,032 | ---- | M] () -- C:\kiessetup.log
      [2015-07-08 14:31:52 | 3355,443,200 | -HS- | M] () -- C:\pagefile.sys
      [2013-07-29 20:30:06 | 000,002,214 | ---- | M] () -- C:\RHDSetup.log
      [2013-07-29 20:32:00 | 000,000,203 | ---- | M] () -- C:\setup.log
      [2015-07-08 14:31:53 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys

      < End of report >

    4. #4
      Ex-Colaborador Avatar de @Fabian_Dres
      Registrado
      ago 2008
      Ubicación
      Chile
      Mensajes
      15.103

      Re: Ayuda con Browser AdBlocker en Chrome

      Antes de realizar e siguiente proceso de eliminación es !importante¡ realizar una copia de seguridad del registro.

      Para hacerlo descarga en tu escritorio: DelFix
      • Doble clic para ejecutarlo.(Si usas Windows Vista/7 u 8 presiona clic derecho y selecciona "Ejecutar como Administrador.")
      • Marca unicamente la casilla "Create registry backup".
      • Pulsar en Run.




      Ahora, Inicia Windows en 'Modo seguro a prueba de fallos' y desde hay ejecuta nuevamente OTL.exe

      Copia y Pega el código que está dentro del recuadro de abajo en la sección Análisis Personalizado / Código de Reparación.



      Código:
      :OTL
      IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
      IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
      IE:64bit: - HKLM\..\SearchScopes\{A15774DD-9DBD-4F7B-B695-9F4E26ED5027}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=SMJB
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
      IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
      IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
      IE - HKLM\..\SearchScopes\{A15774DD-9DBD-4F7B-B695-9F4E26ED5027}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=SMJB
      IE - HKLM\..\SearchScopes\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F}: "URL" = https://www.google.com/search?trackid=sp-006&q={searchTerms}
      IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
      IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
      FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF64_18_0_0_194.dll File not found
      FF:64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll File not found
      CHR - plugin: Error reading preferences file
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
      O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000 File not found
      O8:64bit: - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105 File not found
      O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000 File not found
      O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105 File not found
      O1364bit: - gopher Prefix: missing
      O13 - gopher Prefix: missing
      O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
      O18 - Protocol\Handler\ms-help - No CLSID value found
      O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
      O30 - LSA: Security Packages - (livessp) - File not found
      [1 C:\windows\SysNative\*.tmp files -> C:\windows\SysNative\*.tmp -> ]
      [1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]
      [2015-07-08 16:32:29 | 000,000,024 | ---- | M] () -- C:\Users\joaquin\AppData\Roaming\appdataFr25.bin
      [2015-07-08 16:32:29 | 000,000,024 | ---- | C] () -- C:\Users\joaquin\AppData\Roaming\appdataFr25.bin
      :Files
      ipconfig /flushdns /c
      ipconfig /renew /c
      :Commands
      [PURITY]
      [EMPTYFLASH]
      [EMPTYTEMP]
      [RESETHOSTS]



      • Presiona el Botón Reparar para lanzar la eliminación. Después presionas en OK.
      • OTL va a Reiniciar el ordenador para completar la eliminación.
      • Guardas el nuevo reporte generado, y lo copias y pegas en tu próxima respuesta.
      • Comenta como sigue el problema.
      Anoika


      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.