• Registrarse
  • Iniciar sesión


  • Página 3 de 8 PrimeroPrimero 1234567 ... ÚltimoÚltimo
    Resultados 21 al 30 de 76

    Webs searches

    Hola Daniela. He vuelto a reinstalar dropbox y me vuelve a salir los avisos..... mi gozo en un pozo. ¿Alguna idea? Gracias...

    1. #21
      Usuario Avatar de casanovamar
      Registrado
      ago 2006
      Ubicación
      España
      Mensajes
      67

      Re: Webs searches

      Hola Daniela.
      He vuelto a reinstalar dropbox y me vuelve a salir los avisos..... mi gozo en un pozo.
      ¿Alguna idea?

      Gracias

    2. #22
      Moderadora Gral.
      Avatar de @Daniela
      Registrado
      abr 2011
      Ubicación
      España
      Mensajes
      24.349

      Re: Webs searches

      Hola

      Vuelve a desinstalar Dropbox en la opción Avanzada como te indiqué, reinicias el PC y ejecuta OTL con la configuración del post #4, vamos a ver si queda algo y lo eliminamos antes de volverlo a instalar.

      Trae el reporte de OTL.

      Un saludo
      ✿◕‿◕✿ La impaciencia no es buena compañía ✿◕‿◕✿

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    3. #23
      Usuario Avatar de casanovamar
      Registrado
      ago 2006
      Ubicación
      España
      Mensajes
      67

      Re: Webs searches

      Después de pasar OTL, tengo dos consultas.
      En el cuadro de anális personalizado/Código de reparación, ha desaparecido el script que he puesto del post 4, pero se ha quedado %SYSTEMDRIVE%\*.*, no se si es normal, o tendría que desaparecer todo o quedar todo.

      Por otro lado, tan solo me ha salido el archivo OTL.txt. El segundo archivo, Extras.txt no ha salido. Se que no lo necesitabas, pero no se si debería salir para el buen funcionamiento del programa.

      Y ahora te pego el reporte.

    4. #24
      Usuario Avatar de casanovamar
      Registrado
      ago 2006
      Ubicación
      España
      Mensajes
      67

      Re: Webs searches

      OTL logfile created on: 7/28/2015 5:58:41 PM - Run 3
      OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Usuario\Desktop
      64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
      Internet Explorer (Version = 9.11.9600.17914)
      Locale: 00000409 | Country: España | Language: ESN | Date Format: dd/MM/yyyy

      3.68 Gb Total Physical Memory | 2.33 Gb Available Physical Memory | 63.23% Memory free
      7.36 Gb Paging File | 5.91 Gb Available in Paging File | 80.39% Paging File free
      Paging file location(s): ?:\pagefile.sys [binary data]

      %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
      Drive C: | 452.88 Gb Total Space | 95.01 Gb Free Space | 20.98% Space Free | Partition Type: NTFS
      Drive D: | 12.79 Gb Total Space | 1.57 Gb Free Space | 12.27% Space Free | Partition Type: NTFS

      Computer Name: USUARIO-HP | User Name: Usuario | Logged in as Administrator.
      Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
      Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

      ========== Processes (SafeList) ==========

      PRC - C:\Users\Usuario\Desktop\OTL.exe (OldTimer Tools)
      PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
      PRC - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe (Adobe Systems Inc.)
      PRC - C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe (Panda Security, S.L.)
      PRC - C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe (Panda Security, S.L.)
      PRC - C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe (Panda Security, S.L.)
      PRC - C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe (Panda Security, S.L.)
      PRC - C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe (TeamViewer GmbH)
      PRC - C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe (Research In Motion Limited)
      PRC - C:\Program Files (x86)\Nero\Update\NASvc.exe (Nero AG)
      PRC - c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe (Hewlett-Packard Development Company, L.P)
      PRC - c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe (Hewlett-Packard)
      PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation)
      PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation)


      ========== Modules (No Company Name) ==========

      MOD - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\locale\es_es\acrotray.esp ()


      ========== Services (SafeList) ==========

      SRV:64bit: - (IEEtwCollectorService) -- C:\Windows\SysNative\IEEtwCollector.exe (Microsoft Corporation)
      SRV:64bit: - (DiagTrack) -- C:\Windows\SysNative\diagtrack.dll (Microsoft Corporation)
      SRV:64bit: - (WinDefend) -- C:\Program Files\Windows Defender\mpsvc.dll (Microsoft Corporation)
      SRV:64bit: - (DpHost) -- c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe (DigitalPersona, Inc.)
      SRV:64bit: - (HFGService) -- C:\Windows\SysNative\HFGService.dll (CSR, plc)
      SRV:64bit: - (AppMgmt) -- C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
      SRV - (dbupdatem) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc.)
      SRV - (dbupdate) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc.)
      SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
      SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
      SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
      SRV - (MBAMService) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
      SRV - (HP Support Assistant Service) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe (Hewlett-Packard Company)
      SRV - (PSUAService) -- C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe (Panda Security, S.L.)
      SRV - (NanoServiceMain) -- C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe (Panda Security, S.L.)
      SRV - (SkypeUpdate) -- C:\Program Files (x86)\Skype\Updater\Updater.exe (Skype Technologies)
      SRV - (PandaAgent) -- C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe (Panda Security, S.L.)
      SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
      SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
      SRV - (Sony PC Companion) -- C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe (Avanquest Software)
      SRV - (ServiceLayer) -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe (Nokia)
      SRV - (TeamViewer7) -- C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe (TeamViewer GmbH)
      SRV - (NAUpdate) -- C:\Program Files (x86)\Nero\Update\NASvc.exe (Nero AG)
      SRV - (Steam Client Service) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation)
      SRV - (cbVSCService) -- C:\Program Files (x86)\Cobian Backup 10\cbVSCService.exe (CobianSoft, Luis Cobian)
      SRV - (GameConsoleService) -- C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe (WildTangent, Inc.)
      SRV - (HP ProtectTools Service) -- c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe (Hewlett-Packard Development Company, L.P)
      SRV - (HPFSService) -- c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe (Hewlett-Packard)
      SRV - (FLCDLOCK) -- c:\Windows\SysWOW64\flcdlock.exe (Hewlett-Packard Ltd)
      SRV - (UNS) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation)
      SRV - (LMS) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation)
      SRV - (NMSAccess64) -- C:\Windows\SysWOW64\NMSAccess64.exe ()
      SRV - (PRESTO 10.14) -- C:\Program Files (x86)\Presto 10.14\netmemohasp.exe ()


      ========== Driver Services (SafeList) ==========

      DRV:64bit: - (GUBootStartup) -- C:\Windows\SysNative\drivers\GUBootStartup.sys (Glarysoft Ltd)
      DRV:64bit: - (MBAMWebAccessControl) -- C:\Windows\SysNative\drivers\mwac.sys (Malwarebytes Corporation)
      DRV:64bit: - (MBAMProtector) -- C:\Windows\SysNative\drivers\mbam.sys (Malwarebytes Corporation)
      DRV:64bit: - (PSINReg) -- C:\Windows\SysNative\drivers\PSINReg.sys (Panda Security, S.L.)
      DRV:64bit: - (PSINKNC) -- C:\Windows\SysNative\drivers\PSINKNC.sys (Panda Security, S.L.)
      DRV:64bit: - (PSINProt) -- C:\Windows\SysNative\drivers\PSINProt.sys (Panda Security, S.L.)
      DRV:64bit: - (PSINProc) -- C:\Windows\SysNative\drivers\PSINProc.sys (Panda Security, S.L.)
      DRV:64bit: - (PSINAflt) -- C:\Windows\SysNative\drivers\PSINAflt.sys (Panda Security, S.L.)
      DRV:64bit: - (PSINFile) -- C:\Windows\SysNative\drivers\PSINFile.sys (Panda Security, S.L.)
      DRV:64bit: - (NNSTLSC) -- C:\Windows\SysNative\drivers\NNStlsc.sys (Panda Security, S.L.)
      DRV:64bit: - (NNSSTRM) -- C:\Windows\SysNative\drivers\NNSStrm.sys (Panda Security, S.L.)
      DRV:64bit: - (NNSSMTP) -- C:\Windows\SysNative\drivers\NNSSmtp.sys (Panda Security, S.L.)
      DRV:64bit: - (NNSPROT) -- C:\Windows\SysNative\drivers\NNSProt.sys (Panda Security, S.L.)
      DRV:64bit: - (NNSPRV) -- C:\Windows\SysNative\drivers\NNSPrv.sys (Panda Security, S.L.)
      DRV:64bit: - (NNSPOP3) -- C:\Windows\SysNative\drivers\NNSPop3.sys (Panda Security, S.L.)
      DRV:64bit: - (NNSPIHSW) -- C:\Windows\SysNative\drivers\NNSPihsw.sys (Panda Security, S.L.)
      DRV:64bit: - (NNSPICC) -- C:\Windows\SysNative\drivers\NNSpicc.sys (Panda Security, S.L.)
      DRV:64bit: - (NNSHTTP) -- C:\Windows\SysNative\drivers\NNSHttp.sys (Panda Security, S.L.)
      DRV:64bit: - (NNSIDS) -- C:\Windows\SysNative\drivers\NNSIds.sys (Panda Security, S.L.)
      DRV:64bit: - (NNSHTTPS) -- C:\Windows\SysNative\drivers\NNSHttps.sys (Panda Security, S.L.)
      DRV:64bit: - (NNSALPC) -- C:\Windows\SysNative\drivers\NNSAlpc.sys (Panda Security, S.L.)
      DRV:64bit: - (PSKMAD) -- C:\Windows\SysNative\drivers\PSKMAD.sys (Panda Security, S.L.)
      DRV:64bit: - (NNSNAHSL) -- C:\Windows\SysNative\drivers\NNSNAHSL.sys (Panda Security, S.L.)
      DRV:64bit: - (A38CCID) -- C:\Windows\SysNative\drivers\a38ccid.sys (Advanced Card Systems Ltd.)
      DRV:64bit: - (ACSSCR) -- C:\Windows\SysNative\drivers\a38usb.sys (Advanced Card Systems Ltd.)
      DRV:64bit: - (seehcri) -- C:\Windows\SysNative\drivers\seehcri.sys (Sony Ericsson Mobile Communications)
      DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
      DRV:64bit: - (ggsemc) -- C:\Windows\SysNative\drivers\ggsemc.sys (Sony Ericsson Mobile Communications)
      DRV:64bit: - (ggflt) -- C:\Windows\SysNative\drivers\ggflt.sys (Sony Ericsson Mobile Communications)
      DRV:64bit: - (RdpVideoMiniport) -- C:\Windows\SysNative\drivers\rdpvideominiport.sys (Microsoft Corporation)
      DRV:64bit: - (pccsmcfd) -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys (Nokia)
      DRV:64bit: - (XXLHASP) -- C:\Windows\SysNative\drivers\XXLHASP.sys ()
      DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
      DRV:64bit: - (RimUsb) -- C:\Windows\SysNative\drivers\RimUsb_AMD64.sys (Research In Motion Limited)
      DRV:64bit: - (RimVSerPort) -- C:\Windows\SysNative\drivers\RimSerial_AMD64.sys (Research in Motion Ltd)
      DRV:64bit: - (libusb0) -- C:\Windows\SysNative\drivers\libusb0.sys (libusb-win32 / Wiki / Home)
      DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
      DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
      DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
      DRV:64bit: - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek )
      DRV:64bit: - (TFsExDisk) -- C:\Windows\SysNative\drivers\TFsExDisk.sys (Teruten Inc)
      DRV:64bit: - (igfx) -- C:\Windows\SysNative\drivers\igdkmd64.sys (Intel Corporation)
      DRV:64bit: - (iaStor) -- C:\Windows\SysNative\drivers\iaStor.sys (Intel Corporation)
      DRV:64bit: - (Impcd) -- C:\Windows\SysNative\drivers\Impcd.sys (Intel Corporation)
      DRV:64bit: - (BthAudioHF) -- C:\Windows\SysNative\drivers\BthAudioHF.sys (CSR, plc)
      DRV:64bit: - (csr_a2dp) -- C:\Windows\SysNative\drivers\bthav.sys (CSR, plc)
      DRV:64bit: - (DAMDrv) -- C:\Windows\SysNative\drivers\DAMDrv64.sys (Hewlett-Packard Development Company L.P.)
      DRV:64bit: - (HECIx64) -- C:\Windows\SysNative\drivers\HECIx64.sys (Intel Corporation)
      DRV:64bit: - (BthAvrcp) -- C:\Windows\SysNative\drivers\BthAvrcp.sys (CSR, plc)
      DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
      DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
      DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
      DRV:64bit: - (ROOTMODEM) -- C:\Windows\SysNative\drivers\rootmdm.sys (Microsoft Corporation)
      DRV:64bit: - (Dot4Scan) -- C:\Windows\SysNative\drivers\Dot4Scan.sys (Microsoft Corporation)
      DRV:64bit: - (seacusb) -- C:\Windows\SysNative\drivers\seacusb.sys (Seac Banche)
      DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
      DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
      DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
      DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
      DRV:64bit: - (Ext2fs) -- C:\Windows\SysNative\drivers\ext2fs.sys (Stephan Schreiber)
      DRV:64bit: - (IfsMount) -- C:\Windows\SysNative\drivers\ifsmount.sys (Stephan Schreiber)
      DRV:64bit: - (OxPPort) -- C:\Windows\SysNative\drivers\OxPPort.sys (OEM)
      DRV:64bit: - (Hardlock) -- C:\Windows\SysNative\drivers\hardlock.sys (Aladdin Knowledge Systems Ltd.)
      DRV - (TFsExDisk) -- C:\Windows\SysWOW64\drivers\TFsExDisk.Sys (Teruten Inc)
      DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)


      ========== Standard Registry (SafeList) ==========


      ========== Internet Explorer ==========

      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Google
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = Google
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = Google
      IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google
      IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
      IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Google
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = Google
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = Google
      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google
      IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
      IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


      IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
      IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
      IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

      IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

      IE - HKU\S-1-5-21-2898600843-1572375225-654772463-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Google
      IE - HKU\S-1-5-21-2898600843-1572375225-654772463-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = Google
      IE - HKU\S-1-5-21-2898600843-1572375225-654772463-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Upgrade to Google Chrome
      IE - HKU\S-1-5-21-2898600843-1572375225-654772463-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = Google
      IE - HKU\S-1-5-21-2898600843-1572375225-654772463-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google
      IE - HKU\S-1-5-21-2898600843-1572375225-654772463-1001\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = Upgrade to Google Chrome
      IE - HKU\S-1-5-21-2898600843-1572375225-654772463-1001\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = Google
      IE - HKU\S-1-5-21-2898600843-1572375225-654772463-1001\..\SearchScopes,DefaultScope = {7FE06BE9-A91D-43D9-8AE9-313B83B13352}
      IE - HKU\S-1-5-21-2898600843-1572375225-654772463-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
      IE - HKU\S-1-5-21-2898600843-1572375225-654772463-1001\..\SearchScopes\{7FE06BE9-A91D-43D9-8AE9-313B83B13352}: "URL" = https://www.google.com/search?q={searchTerms}
      IE - HKU\S-1-5-21-2898600843-1572375225-654772463-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

      ========== FireFox ==========

      FF - prefs.js..browser.search.countryCode: "ES"
      FF - prefs.js..browser.search.region: "ES"
      FF - prefs.js..browser.search.useDBForOrder: true
      FF - prefs.js..extensions.enabledAddons: foxmarks%40kei.com:4.3.7.1-signed
      FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:39.0
      FF - user.js - File not found

      FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll ( Microsoft Corporation)
      FF:64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)
      FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll ()
      FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf: C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
      FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
      FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
      FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.51.2: C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.51.2: C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll ( Microsoft Corporation)
      FF - HKLM\Software\MozillaPlugins\@RIM.com/WebSLLauncher,version=1.0: C:\Program Files (x86)\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ()
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll (Google Inc.)
      FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.8: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
      FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.2.1: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
      FF - HKLM\Software\MozillaPlugins\Adobe Acrobat: C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
      FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
      FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
      FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Users\Usuario\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
      FF - HKCU\Software\MozillaPlugins\@talk.google.com/O1DPlugin: C:\Users\Usuario\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
      FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Usuario\AppData\Local\Google\Update\1.3.28.1\npGoogleUpdate3.dll (Google Inc.)
      FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Usuario\AppData\Local\Google\Update\1.3.28.1\npGoogleUpdate3.dll (Google Inc.)

      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 39.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 39.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 38.1.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2015/05/20 09:30:56 | 000,000,000 | ---D | M]
      FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 38.1.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins

      [2014/02/10 20:39:27 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Usuario\AppData\Roaming\mozilla\Extensions
      [2014/02/10 20:39:27 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Usuario\AppData\Roaming\mozilla\Extensions\[email protected]
      [2015/07/22 17:06:32 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Usuario\AppData\Roaming\mozilla\Firefox\Profiles\d2src4b9.default\extensions
      [2015/07/22 17:06:32 | 000,000,000 | ---D | M] ("urn:mozilla:install-manifest" em:id="[email protected]" em:name="Xmarks" em:type="2" em:unpack="true" em:version="4.3.7.1-signed" em:creator="Todd Agulnick" em:description="Bookmark Sync and Web Discovery" em:homepageURL="http://www.xmarks.com/" em:optionsURL="chrome://foxmarks/content/foxmarks-dialog.xul" em:iconURL="chrome://foxmarks/skin/images/foxmarks.ico" em:developer="LastPass">) -- C:\Users\Usuario\AppData\Roaming\mozilla\Firefox\Profiles\d2src4b9.default\extensions\[email protected]
      [2015/07/23 19:16:44 | 000,001,669 | ---- | M] () -- C:\Users\Usuario\AppData\Roaming\mozilla\firefox\profiles\d2src4b9.default\searchplugins\googletranslate.xml
      [2015/07/22 16:26:12 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\browser\extensions
      [2015/07/22 16:26:13 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

      ========== Chrome ==========

      CHR - Extension: No name found = C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0\
      CHR - Extension: No name found = C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0\
      CHR - Extension: No name found = C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\knipolnnllmklapflnccelgolnpehhpl\2015.715.433.1_0\
      CHR - Extension: No name found = C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.2.0_0\
      CHR - Extension: No name found = C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0\

      O1 HOSTS File: ([2015/07/20 10:43:57 | 000,000,098 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
      O1 - Hosts: 127.0.0.1 localhost
      O1 - Hosts: ::1 localhost
      O2:64bit: - BHO: (Adobe Acrobat Create PDF Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
      O2:64bit: - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
      O2:64bit: - BHO: (Adobe Acrobat Create PDF from Selection) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
      O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll (Oracle Corporation)
      O2 - BHO: (Adobe Acrobat Create PDF Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
      O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll (Oracle Corporation)
      O2 - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
      O2 - BHO: (Adobe Acrobat Create PDF from Selection) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
      O3:64bit: - HKLM\..\Toolbar: (Adobe Acrobat Create PDF Toolbar) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
      O3 - HKLM\..\Toolbar: (Adobe Acrobat Create PDF Toolbar) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
      O3:64bit: - HKU\S-1-5-21-2898600843-1572375225-654772463-1001\..\Toolbar\WebBrowser: (Adobe Acrobat Create PDF Toolbar) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
      O3 - HKU\S-1-5-21-2898600843-1572375225-654772463-1001\..\Toolbar\WebBrowser: (Adobe Acrobat Create PDF Toolbar) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
      O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
      O4 - HKLM..\Run: [] File not found
      O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
      O4 - HKLM..\Run: [Cobian Backup 10] C:\Program Files (x86)\Cobian Backup 10\Cobian.exe (Luis Cobian, CobianSoft)
      O4 - HKLM..\Run: [PSUAMain] C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe (Panda Security, S.L.)
      O4 - HKLM..\Run: [RIMBBLaunchAgent.exe] C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe (Research In Motion Limited)
      O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
      O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
      O4 - HKU\S-1-5-21-2898600843-1572375225-654772463-1001..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
      O4 - HKU\S-1-5-21-2898600843-1572375225-654772463-1001..\Run: [Dropbox Update] "C:\Users\Usuario\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c File not found
      O4 - HKU\S-1-5-21-2898600843-1572375225-654772463-1001..\Run: [GoogleChromeAutoLaunch_CF0D12F859BF15DAB73FDD0B7E1E013D] C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
      O4 - HKU\S-1-5-21-2898600843-1572375225-654772463-1001..\Run: [GoogleDriveSync] C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Google)
      O4 - HKU\S-1-5-21-2898600843-1572375225-654772463-1001..\Run: [GUDelayStartup] C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe (Glarysoft Ltd)
      O4 - Startup: C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mozilla Thunderbird.lnk = C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Mozilla Corporation)
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktop = 0
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: MaxGPOScriptWait = 600
      O7 - HKU\S-1-5-21-2898600843-1572375225-654772463-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
      O7 - HKU\S-1-5-21-2898600843-1572375225-654772463-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktop = 0
      O8:64bit: - Extra context menu item: Anexar a PDF existente - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html File not found
      O8:64bit: - Extra context menu item: Anexar destino de vínculo a PDF existente - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html File not found
      O8:64bit: - Extra context menu item: Convertir a Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html File not found
      O8:64bit: - Extra context menu item: Convertir destino de vínculo a Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html File not found
      O8 - Extra context menu item: Anexar a PDF existente - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html File not found
      O8 - Extra context menu item: Anexar destino de vínculo a PDF existente - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html File not found
      O8 - Extra context menu item: Convertir a Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html File not found
      O8 - Extra context menu item: Convertir destino de vínculo a Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html File not found
      O9:64bit: - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
      O9:64bit: - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
      O9 - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
      O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
      O9 - Extra Button: Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll (Microsoft Corporation)
      O9 - Extra 'Tools' menuitem : &Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll (Microsoft Corporation)
      O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL (Microsoft Corporation)
      O1364bit: - gopher Prefix: missing
      O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jin...ndows-i586.cab (Java Plug-in 11.51.2)
      O16 - DPF: {CAFEEFAC-0017-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jin...ndows-i586.cab (Java Plug-in 1.7.0_05)
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{4C8F2406-F4C8-49C9-B909-1674C69EC854}: DhcpNameServer = 192.168.1.1
      O18:64bit: - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
      O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
      O20 - AppInit_DLLs: (c:\progra~2\google\google~1\go36f4~1.dll) - c:\progra~2\google\google~1\go36f4~1.dll (Google)
      O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
      O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
      O20 - HKLM Winlogon: UserInit - (C:\Windows\SysWOW64\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
      O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
      O32 - HKLM CDRom: AutoRun - 1
      O34 - HKLM BootExecute: (autocheck autochk *)
      O35:64bit: - HKLM\..comfile [open] -- "%1" %*
      O35:64bit: - HKLM\..exefile [open] -- "%1" %*
      O35 - HKLM\..comfile [open] -- "%1" %*
      O35 - HKLM\..exefile [open] -- "%1" %*
      O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
      O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
      O37 - HKLM\...com [@ = comfile] -- "%1" %*
      O37 - HKLM\...exe [@ = exefile] -- "%1" %*
      O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
      O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
      O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

      NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)

      MsConfig:64bit - StartUpReg: Acrobat Assistant 8.0 - hkey= - key= - File not found
      MsConfig:64bit - StartUpReg: Adobe Acrobat Synchronizer - hkey= - key= - File not found
      MsConfig:64bit - StartUpReg: Adobe ARM - hkey= - key= - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
      MsConfig:64bit - StartUpReg: AdobeAAMUpdater-1.0 - hkey= - key= - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
      MsConfig:64bit - State: "startup" - Reg Error: Key error.

      CREATERESTOREPOINT
      Restore point Set: OTL Restore Point

      ========== Files/Folders - Created Within 30 Days ==========

      [2015/07/28 10:07:18 | 000,061,712 | ---- | C] (Panda Security, S.L.) -- C:\Windows\SysNative\drivers\PSKMAD.sys
      [2015/07/22 18:05:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
      [2015/07/22 16:46:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Dropbox
      [2015/07/22 16:26:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
      [2015/07/22 13:52:06 | 000,000,000 | ---D | C] -- C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
      [2015/07/22 13:52:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VS Revo Group
      [2015/07/22 13:50:37 | 002,623,656 | ---- | C] (VS Revo Group Ltd.) -- C:\Users\Usuario\Desktop\revosetup.exe
      [2015/07/22 10:34:57 | 000,000,000 | ---D | C] -- C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Photos Backup
      [2015/07/21 16:53:45 | 000,000,000 | ---D | C] -- C:\Users\Usuario\Desktop\Datos antiguos de Firefox
      [2015/07/20 19:01:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDisplay
      [2015/07/20 19:01:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CDisplay
      [2015/07/20 13:44:06 | 000,000,000 | ---D | C] -- C:\Users\Usuario\AppData\Roaming\PDAppFlex
      [2015/07/20 10:42:48 | 000,000,000 | ---D | C] -- C:\_OTL
      [2015/07/20 10:20:36 | 000,000,000 | ---D | C] -- C:\Windows\ERUNT
      [2015/07/17 08:56:36 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Usuario\Desktop\OTL.exe
      [2015/07/16 11:43:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes' Anti-Malware (portable)
      [2015/07/16 11:20:40 | 000,000,000 | ---D | C] -- C:\ProgramData\GlarySoft
      [2015/07/16 11:15:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5
      [2015/07/16 11:15:44 | 000,020,160 | ---- | C] (Glarysoft Ltd) -- C:\Windows\SysNative\drivers\GUBootStartup.sys
      [2015/07/16 11:15:43 | 000,000,000 | ---D | C] -- C:\Users\Usuario\AppData\Roaming\DiskDefrag
      [2015/07/16 11:15:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Glary Utilities 5
      [2015/07/16 08:07:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
      [2015/07/15 18:36:45 | 024,345,872 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Usuario\Desktop\mbam-setup-2.1.8.1057.exe
      [2015/07/15 17:53:10 | 000,113,880 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys
      [2015/07/15 17:52:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
      [2015/07/15 17:52:53 | 000,107,736 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbamchameleon.sys
      [2015/07/15 17:52:53 | 000,063,704 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mwac.sys
      [2015/07/15 17:52:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes Anti-Malware
      [2015/07/14 19:17:06 | 000,000,000 | ---D | C] -- C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader
      [2015/07/14 19:15:18 | 000,000,000 | ---D | C] -- C:\Users\Usuario\AppData\Local\JDownloader v2.0
      [2015/07/14 18:49:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader 2
      [2015/07/14 18:48:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\JDownloader 2
      [2015/07/13 13:41:22 | 000,000,000 | ---D | C] -- C:\Users\Usuario\AppData\Roaming\FLEXnet
      [2015/07/13 13:40:45 | 000,000,000 | ---D | C] -- C:\Users\Usuario\AppData\Local\Plantronics
      [2015/07/13 13:38:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Plantronics
      [2015/07/01 18:17:35 | 000,000,000 | ---D | C] -- C:\Users\Usuario\AppData\Roaming\.opentach

      ========== Files - Modified Within 30 Days ==========

      [2015/07/28 17:52:00 | 000,001,096 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
      [2015/07/28 17:51:54 | 000,000,990 | ---- | M] () -- C:\Windows\tasks\DropboxUpdateTaskMachineCore.job
      [2015/07/28 17:51:29 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
      [2015/07/28 17:51:17 | 2962,575,360 | -HS- | M] () -- C:\hiberfil.sys
      [2015/07/28 17:39:04 | 000,000,994 | ---- | M] () -- C:\Windows\tasks\DropboxUpdateTaskMachineUA.job
      [2015/07/28 17:37:00 | 000,000,838 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
      [2015/07/28 17:35:02 | 000,016,976 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
      [2015/07/28 17:35:02 | 000,016,976 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
      [2015/07/28 17:34:20 | 000,001,118 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2898600843-1572375225-654772463-1001UA.job
      [2015/07/28 17:32:00 | 000,001,100 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
      [2015/07/28 17:13:00 | 000,001,010 | ---- | M] () -- C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-2898600843-1572375225-654772463-1001UA.job
      [2015/07/28 17:13:00 | 000,000,958 | ---- | M] () -- C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-2898600843-1572375225-654772463-1001Core.job
      [2015/07/28 04:34:00 | 000,001,066 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2898600843-1572375225-654772463-1001Core.job
      [2015/07/27 15:18:04 | 000,000,340 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForUsuario.job
      [2015/07/22 18:05:09 | 000,002,044 | ---- | M] () -- C:\Users\Public\Desktop\Google Slides.lnk
      [2015/07/22 18:05:09 | 000,002,042 | ---- | M] () -- C:\Users\Public\Desktop\Google Sheets.lnk
      [2015/07/22 18:05:09 | 000,002,032 | ---- | M] () -- C:\Users\Public\Desktop\Google Docs.lnk
      [2015/07/22 13:52:06 | 000,001,266 | ---- | M] () -- C:\Users\Usuario\Desktop\Revo Uninstaller.lnk
      [2015/07/22 13:50:40 | 002,623,656 | ---- | M] (VS Revo Group Ltd.) -- C:\Users\Usuario\Desktop\revosetup.exe
      [2015/07/22 13:21:11 | 000,147,472 | ---- | M] () -- C:\Users\Usuario\Desktop\20150716-Re_TRANSPORTES CASANOVA Y PARRA_ S.L. - Auditoría 2014-3907.pdf
      [2015/07/22 03:18:47 | 000,526,976 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
      [2015/07/21 13:47:12 | 000,113,880 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys
      [2015/07/21 13:33:44 | 024,345,872 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Usuario\Desktop\mbam-setup-2.1.8.1057.exe
      [2015/07/21 13:32:49 | 002,248,704 | ---- | M] () -- C:\Users\Usuario\Desktop\adwcleaner_4.208.exe
      [2015/07/20 16:46:25 | 000,003,294 | ---- | M] () -- C:\Users\Usuario\opentach.conf
      [2015/07/20 16:45:35 | 000,002,309 | ---- | M] () -- C:\Users\Usuario\Desktop\Opentach.lnk
      [2015/07/20 16:43:46 | 000,005,827 | ---- | M] () -- C:\Users\Usuario\Desktop\start.jnlp
      [2015/07/20 12:02:06 | 000,013,442 | ---- | M] () -- C:\Users\Usuario\Desktop\NRC 303 ASJ-2T.pdf
      [2015/07/20 11:44:28 | 000,013,456 | ---- | M] () -- C:\Users\Usuario\Desktop\NRC 303 CyP-2T.pdf
      [2015/07/20 11:15:37 | 000,001,199 | ---- | M] () -- C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mozilla Thunderbird.lnk
      [2015/07/20 10:43:57 | 000,000,098 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\Hosts
      [2015/07/20 10:17:27 | 000,781,312 | ---- | M] () -- C:\Users\Usuario\Desktop\delfix.exe
      [2015/07/17 08:56:40 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Usuario\Desktop\OTL.exe
      [2015/07/16 11:43:07 | 000,107,736 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbamchameleon.sys
      [2015/07/16 11:15:44 | 000,020,160 | ---- | M] (Glarysoft Ltd) -- C:\Windows\SysNative\drivers\GUBootStartup.sys
      [2015/07/13 17:54:18 | 001,687,128 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
      [2015/07/13 17:54:18 | 000,751,318 | ---- | M] () -- C:\Windows\SysNative\perfh00A.dat
      [2015/07/13 17:54:18 | 000,657,158 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
      [2015/07/13 17:54:18 | 000,160,360 | ---- | M] () -- C:\Windows\SysNative\perfc00A.dat
      [2015/07/13 17:54:18 | 000,122,970 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat

      ========== Files Created - No Company Name ==========

      [2015/07/28 11:33:20 | 000,000,994 | ---- | C] () -- C:\Windows\tasks\DropboxUpdateTaskMachineUA.job
      [2015/07/28 11:33:20 | 000,000,990 | ---- | C] () -- C:\Windows\tasks\DropboxUpdateTaskMachineCore.job
      [2015/07/22 18:05:09 | 000,002,044 | ---- | C] () -- C:\Users\Public\Desktop\Google Slides.lnk
      [2015/07/22 18:05:09 | 000,002,042 | ---- | C] () -- C:\Users\Public\Desktop\Google Sheets.lnk
      [2015/07/22 18:05:09 | 000,002,032 | ---- | C] () -- C:\Users\Public\Desktop\Google Docs.lnk
      [2015/07/22 16:26:15 | 000,001,161 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
      [2015/07/22 13:52:06 | 000,001,266 | ---- | C] () -- C:\Users\Usuario\Desktop\Revo Uninstaller.lnk
      [2015/07/22 13:21:08 | 000,147,472 | ---- | C] () -- C:\Users\Usuario\Desktop\20150716-Re_TRANSPORTES CASANOVA Y PARRA_ S.L. - Auditoría 2014-3907.pdf
      [2015/07/21 13:32:29 | 002,248,704 | ---- | C] () -- C:\Users\Usuario\Desktop\adwcleaner_4.208.exe
      [2015/07/20 16:45:35 | 000,002,309 | ---- | C] () -- C:\Users\Usuario\Desktop\Opentach.lnk
      [2015/07/20 16:43:59 | 000,005,827 | ---- | C] () -- C:\Users\Usuario\Desktop\start.jnlp
      [2015/07/20 12:33:08 | 000,002,453 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat XI Pro.lnk
      [2015/07/20 12:33:08 | 000,002,212 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe FormsCentral.lnk
      [2015/07/20 12:33:08 | 000,002,051 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller XI.lnk
      [2015/07/20 12:02:06 | 000,013,442 | ---- | C] () -- C:\Users\Usuario\Desktop\NRC 303 ASJ-2T.pdf
      [2015/07/20 11:44:28 | 000,013,456 | ---- | C] () -- C:\Users\Usuario\Desktop\NRC 303 CyP-2T.pdf
      [2015/07/20 11:15:37 | 000,001,211 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk
      [2015/07/20 11:15:37 | 000,001,199 | ---- | C] () -- C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mozilla Thunderbird.lnk
      [2015/07/20 10:17:24 | 000,781,312 | ---- | C] () -- C:\Users\Usuario\Desktop\delfix.exe
      [2015/07/16 11:15:49 | 000,001,094 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5.lnk
      [2014/01/11 21:11:51 | 000,191,466 | ---- | C] () -- C:\Users\Usuario\CertificadoResidencia.pdf
      [2013/07/01 13:11:18 | 000,000,831 | ---- | C] () -- C:\Users\Usuario\opentach.conf.bak
      [2013/07/01 13:11:06 | 000,003,294 | ---- | C] () -- C:\Users\Usuario\opentach.conf
      [2013/04/25 11:06:52 | 000,004,366 | ---- | C] () -- C:\Users\Usuario\AppData\Roaming\bfldb.csv
      [2013/04/11 12:31:38 | 000,038,450 | ---- | C] () -- C:\Users\Usuario\AppData\Roaming\Valores separados por comas (Windows).ADR
      [2012/11/06 20:47:28 | 000,037,337 | ---- | C] () -- C:\Users\Usuario\AppData\Roaming\Valores separados por comas (DOS).ADR
      [2012/07/12 1316 | 000,000,019 | ---- | C] () -- C:\Users\Usuario\AppData\Local\llftool.license
      [2012/07/12 13:09:17 | 000,000,001 | ---- | C] () -- C:\Users\Usuario\AppData\Local\llftool.4.25.agreement
      [2011/10/27 18:50:49 | 000,004,096 | -H-- | C] () -- C:\Users\Usuario\AppData\Local\keyfile3.drm
      [2011/10/17 16:48:05 | 000,000,001 | ---- | C] () -- C:\Users\Usuario\AppData\Local\llftool.4.12.agreement
      [2011/10/12 2224 | 000,001,854 | ---- | C] () -- C:\Users\Usuario\AppData\Roaming\GhostObjGAFix.xml
      [2011/09/23 08:25:11 | 000,000,017 | ---- | C] () -- C:\Users\Usuario\AppData\Local\resmon.resmoncfg
      [2011/09/20 17:52:51 | 000,000,363 | ---- | C] () -- C:\Users\Usuario\Equipo - Acceso directo.lnk

      ========== ZeroAccess Check ==========

      [2015/07/22 17:42:18 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-2898600843-1572375225-654772463-1001\$R3DICHT\l
      [2014/05/30 19:39:33 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-2898600843-1572375225-654772463-1001\$RF9SRQ7\l
      [2015/07/28 10:14:14 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-2898600843-1572375225-654772463-1001\$RL0QFQE\l
      [2015/07/28 17:47:10 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-2898600843-1572375225-654772463-1001\$RYU317O\l
      [2014/07/28 10:06:26 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-2898600843-1572375225-654772463-1001\$RZMD508\l
      [2009/07/14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

      [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

      [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

      [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

      [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
      "" = C:\Windows\SysNative\shell32.dll -- [2015/02/13 07:22:33 | 014,177,280 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
      "" = %SystemRoot%\system32\shell32.dll -- [2015/02/13 07:26:18 | 012,875,264 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Apartment

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
      "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
      "" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 14:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Free

      [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
      "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
      "ThreadingModel" = Both

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

      ========== LOP Check ==========

      [2015/07/01 18:17:35 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\.opentach
      [2014/01/09 14:34:07 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\Autodesk
      [2014/01/13 16:29:59 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\bwinEspana
      [2013/06/11 18:34:42 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\calibre
      [2014/01/13 16:28:32 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\cef-cache
      [2015/07/16 11:15:43 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\DiskDefrag
      [2015/07/28 17:50:25 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\Dropbox
      [2014/11/11 17:55:31 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\Enfocus Prefs Folder
      [2013/08/14 18:50:24 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\Flexrise
      [2011/10/11 19:33:41 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\Flexrise.9F3FBFC56E7DF11606748B3513468A7A7FB809D1.1
      [2013/07/25 16:44:12 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\FotoPrix
      [2011/11/04 17:55:00 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\Foxit Software
      [2013/07/01 17:21:35 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\Garmin
      [2015/07/16 11:15:43 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\GlarySoft
      [2014/03/20 10:41:40 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\GmailNotifierPro
      [2011/10/21 08:27:07 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\HandBrake
      [2012/09/10 08:36:06 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\LucasArts
      [2011/11/02 20:13:43 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\Nokia
      [2015/03/06 09:17:13 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\OpenOffice
      [2011/11/16 13:50:54 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\OpenOffice.org
      [2013/10/17 1131 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\Oracle
      [2014/10/28 09:32:08 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\Panda Security
      [2013/04/24 18:31:06 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\PC Suite
      [2015/07/20 13:44:06 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\PDAppFlex
      [2012/03/14 20:13:30 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\Presto
      [2012/11/06 11:19:14 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\Research In Motion
      [2013/06/03 17:23:28 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\Samsung
      [2015/03/12 04:31:40 | 000,000,000 | R--D | M] -- C:\Users\Usuario\AppData\Roaming\Saved Games
      [2013/04/22 10:53:16 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\Sony
      [2013/04/25 11:12:11 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\temp
      [2011/09/16 17:32:05 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\Thunderbird
      [2011/09/16 1746 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\Thunderbird1
      [2015/07/16 10:23:02 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\uTorrent
      [2011/10/13 10:56:10 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\VOS
      [2012/09/04 13:12:41 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\Waterfox Limited
      [2011/10/26 08:32:58 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\WinBatch
      [2014/05/09 17:36:04 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\Wise

      ========== Purity Check ==========

    5. #25
      Usuario Avatar de casanovamar
      Registrado
      ago 2006
      Ubicación
      España
      Mensajes
      67

      Re: Webs searches

      ========== Custom Scans ==========

      < %SYSTEMDRIVE%\*.* >
      [2012/11/06 11:20:11 | 000,003,072 | ---- | M] () -- C:\ads_err.adi
      [2012/11/06 11:20:11 | 000,004,559 | ---- | M] () -- C:\ads_err.adm
      [2012/11/06 11:20:11 | 000,013,785 | ---- | M] () -- C:\ads_err.adt
      [2009/07/24 22:14:22 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK
      [2015/07/20 10:26:44 | 000,000,265 | ---- | M] () -- C:\DelFix.txt
      [2009/09/11 18:16:42 | 000,020,716 | ---- | M] () -- C:\eula.1028.txt
      [2009/09/11 18:16:42 | 000,020,716 | ---- | M] () -- C:\eula.1031.txt
      [2009/09/11 18:16:42 | 000,020,716 | ---- | M] () -- C:\eula.1033.txt
      [2009/09/11 18:16:42 | 000,020,716 | ---- | M] () -- C:\eula.1036.txt
      [2009/09/11 18:16:42 | 000,020,716 | ---- | M] () -- C:\eula.1040.txt
      [2009/09/11 18:16:42 | 000,009,558 | ---- | M] () -- C:\eula.1041.txt
      [2009/09/11 18:16:42 | 000,020,716 | ---- | M] () -- C:\eula.1042.txt
      [2009/09/11 18:16:42 | 000,020,716 | ---- | M] () -- C:\eula.1049.txt
      [2009/09/11 18:16:42 | 000,020,716 | ---- | M] () -- C:\eula.2052.txt
      [2009/09/11 18:16:42 | 000,020,716 | ---- | M] () -- C:\eula.3082.txt
      [2009/09/11 18:16:42 | 000,000,586 | ---- | M] () -- C:\globdata.ini
      [2015/07/28 17:51:17 | 2962,575,360 | -HS- | M] () -- C:\hiberfil.sys
      [2009/09/11 18:22:34 | 000,592,208 | ---- | M] (Microsoft Corporation) -- C:\install.exe
      [2009/09/11 18:16:42 | 000,000,659 | ---- | M] () -- C:\install.ini
      [2009/09/11 18:22:40 | 000,032,096 | ---- | M] (Microsoft Corporation) -- C:\install.res.1028.dll
      [2009/09/11 18:22:40 | 000,053,072 | ---- | M] (Microsoft Corporation) -- C:\install.res.1031.dll
      [2009/09/11 18:22:36 | 000,047,456 | ---- | M] (Microsoft Corporation) -- C:\install.res.1033.dll
      [2009/09/11 18:22:38 | 000,053,600 | ---- | M] (Microsoft Corporation) -- C:\install.res.1036.dll
      [2009/09/11 18:22:38 | 000,052,064 | ---- | M] (Microsoft Corporation) -- C:\install.res.1040.dll
      [2009/09/11 18:22:36 | 000,037,728 | ---- | M] (Microsoft Corporation) -- C:\install.res.1041.dll
      [2009/09/11 18:22:36 | 000,036,192 | ---- | M] (Microsoft Corporation) -- C:\install.res.1042.dll
      [2009/09/11 18:22:40 | 000,049,488 | ---- | M] (Корпорация Майкрософт) -- C:\install.res.1049.dll
      [2009/09/11 18:22:40 | 000,031,584 | ---- | M] (Microsoft Corporation) -- C:\install.res.2052.dll
      [2009/09/11 18:22:38 | 000,052,576 | ---- | M] (Microsoft Corporation) -- C:\install.res.3082.dll
      [2005/09/23 00:39:38 | 000,894,976 | ---- | M] (Microsoft Corporation) -- C:\msdia80.dll
      [2011/04/13 14:46:54 | 000,000,000 | RHS- | M] () -- C:\OS
      [2015/07/28 17:51:17 | 3950,104,576 | -HS- | M] () -- C:\pagefile.sys
      [2014/01/18 13:28:54 | 000,010,607 | ---- | M] () -- C:\PoliFix.txt
      [2010/08/07 03:26:40 | 000,047,104 | -HS- | M] () -- C:\Thumbs.db

      < End of report >

    6. #26
      Moderadora Gral.
      Avatar de @Daniela
      Registrado
      abr 2011
      Ubicación
      España
      Mensajes
      24.349

      Re: Webs searches

      Hola

      El reporte de Extras solo sale la primera vez que se ejecuta OTL.

      Sigue estos pasos, MUY Importante ~ Realiza una copia de seguridad del registro :

      • Para hacerlo descarga Descarga >> DelFix en tu escritorio.
        • Doble clic para ejecutarlo.(Si usas Windows Vista/7 u 8 presiona clic derecho y selecciona "Ejecutar como Administrador.")
        • Marca unicamente la casilla "Create registry backup".
      • Pulsar en Run.

        Se abrirá el informe (DelFix.txt), guárdalo por si fuera necesario y cierra la herramienta.


      Después ejecuta de nuevo OTL.exe pero en Modo Seguro

      Copia y Pega el código que está dentro del recuadro de abajo en la sección Análisis Personalizado / Código de Reparación.

      Código:
      :OTL
      SRV - (dbupdatem) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc.)
      SRV - (dbupdate) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc.)
      FF - user.js - File not found
      FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.51.2: C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
      FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.51.2: C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll (Oracle Corporation)
      O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll (Oracle Corporation)
      O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll (Oracle Corporation)
      O4 - HKLM..\Run: [] File not found
      O4 - HKU\S-1-5-21-2898600843-1572375225-654772463-1001..\Run: [Dropbox Update] "C:\Users\Usuario\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c File not found
      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
      O7 - HKU\S-1-5-21-2898600843-1572375225-654772463-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktop = 0
      O8:64bit: - Extra context menu item: Anexar a PDF existente - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html File not found
      O8:64bit: - Extra context menu item: Anexar destino de vínculo a PDF existente - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html File not found
      O8:64bit: - Extra context menu item: Convertir a Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html File not found
      O8:64bit: - Extra context menu item: Convertir destino de vínculo a Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html File not found
      O8 - Extra context menu item: Anexar a PDF existente - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html File not found
      O8 - Extra context menu item: Anexar destino de vínculo a PDF existente - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html File not found
      O8 - Extra context menu item: Convertir a Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html File not found
      O8 - Extra context menu item: Convertir destino de vínculo a Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html File not found
      O1364bit: - gopher Prefix: missing
      O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jin...ndows-i586.cab (Java Plug-in 11.51.2)
      O16 - DPF: {CAFEEFAC-0017-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jin...ndows-i586.cab (Java Plug-in 1.7.0_05)
      MsConfig:64bit - StartUpReg: Acrobat Assistant 8.0 - hkey= - key= - File not found
      MsConfig:64bit - StartUpReg: Adobe Acrobat Synchronizer - hkey= - key= - File not found
      MsConfig:64bit - State: "startup" - Reg Error: Key error.
      [2015/07/22 16:46:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Dropbox
      [2015/07/16 08:07:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
      [2015/07/28 17:51:54 | 000,000,990 | ---- | M] () -- C:\Windows\tasks\DropboxUpdateTaskMachineCore.job
      [2015/07/28 17:39:04 | 000,000,994 | ---- | M] () -- C:\Windows\tasks\DropboxUpdateTaskMachineUA.job
      [2015/07/28 17:13:00 | 000,001,010 | ---- | M] () -- C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-2898600843-1572375225-654772463-1001UA.job
      [2015/07/28 17:13:00 | 000,000,958 | ---- | M] () -- C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-2898600843-1572375225-654772463-1001Core.job
      [2015/07/22 17:42:18 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-2898600843-1572375225-654772463-1001\$R3DICHT\l
      [2014/05/30 19:39:33 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-2898600843-1572375225-654772463-1001\$RF9SRQ7\l
      [2015/07/28 10:14:14 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-2898600843-1572375225-654772463-1001\$RL0QFQE\l
      [2015/07/28 17:47:10 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-2898600843-1572375225-654772463-1001\$RYU317O\l
      [2014/07/28 10:06:26 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-2898600843-1572375225-654772463-1001\$RZMD508\l
      [2015/07/28 17:50:25 | 000,000,000 | ---D | M] -- C:\Users\Usuario\AppData\Roaming\Dropbox
      :Files
      C:\eula*.*
      C:\install*.*
      ipconfig /flushdns /c
      ipconfig /renew /c
      :Commands
      [PURITY]
      [EMPTYFLASH]
      [EMPTYTEMP]
      [RESETHOSTS]
      Presiona el Botón Reparar para lanzar la eliminación. Después presionas en OK.

      OTL va a Reiniciar el ordenador para completar la eliminación.

      Guardas el nuevo reporte generado, y lo copias y pegas en tu próxima respuesta.

      De momento Dropbox no lo vuelvas a instalar hasta que no te lo indique.

      Un saludo
      ✿◕‿◕✿ La impaciencia no es buena compañía ✿◕‿◕✿

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    7. #27
      Usuario Avatar de casanovamar
      Registrado
      ago 2006
      Ubicación
      España
      Mensajes
      67

      Re: Webs searches

      Hola Daniela.
      Te pego el reporte de OTL

      All processes killed
      ========== OTL ==========
      Error: No service named dbupdatem was found to stop!
      Service\Driver key dbupdatem not found.
      File C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe not found.
      Error: No service named dbupdate was found to stop!
      Service\Driver key dbupdate not found.
      File C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe not found.
      Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@java.com/DTPlugin,version=11.51.2\ deleted successfully.
      C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll moved successfully.
      Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.51.2\ deleted successfully.
      C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll moved successfully.
      Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\ deleted successfully.
      C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll moved successfully.
      Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DBC80044-A445-435b-BC74-9C25C1C588A9}\ deleted successfully.
      C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll moved successfully.
      Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
      Registry value HKEY_USERS\S-1-5-21-2898600843-1572375225-654772463-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Dropbox Update deleted successfully.
      Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoActiveDesktop deleted successfully.
      Registry value HKEY_USERS\S-1-5-21-2898600843-1572375225-654772463-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDesktop deleted successfully.
      64bit-Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Anexar a PDF existente\ deleted successfully.
      64bit-Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Anexar destino de vínculo a PDF existente\ deleted successfully.
      64bit-Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Convertir a Adobe PDF\ deleted successfully.
      64bit-Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Convertir destino de vínculo a Adobe PDF\ deleted successfully.
      Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Anexar a PDF existente\ not found.
      Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Anexar destino de vínculo a PDF existente\ not found.
      Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Convertir a Adobe PDF\ not found.
      Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Convertir destino de vínculo a Adobe PDF\ not found.
      Starting removal of ActiveX control {8AD9C840-044E-11D1-B3E9-00805F499D93}
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
      Starting removal of ActiveX control {CAFEEFAC-0017-0000-0005-ABCDEFFEDCBA}
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0017-0000-0005-ABCDEFFEDCBA}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0017-0000-0005-ABCDEFFEDCBA}\ deleted successfully.
      Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0017-0000-0005-ABCDEFFEDCBA}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0017-0000-0005-ABCDEFFEDCBA}\ not found.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0017-0000-0005-ABCDEFFEDCBA}\ not found.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\StartUpReg\Acrobat Assistant 8.0\ not found.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\StartUpReg\Adobe Acrobat Synchronizer\ not found.
      C:\Program Files (x86)\Dropbox\CrashReports folder moved successfully.
      C:\Program Files (x86)\Dropbox folder moved successfully.
      C:\Program Files (x86)\Common Files\Java\Java Update folder moved successfully.
      C:\Program Files (x86)\Common Files\Java folder moved successfully.
      File C:\Windows\tasks\DropboxUpdateTaskMachineCore.job not found.
      File C:\Windows\tasks\DropboxUpdateTaskMachineUA.job not found.
      C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2898600843-1572375225-654772463-1001UA.job moved successfully.
      C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2898600843-1572375225-654772463-1001Core.job moved successfully.
      C:\$Recycle.bin\S-1-5-21-2898600843-1572375225-654772463-1001\$R3DICHT\l folder moved successfully.
      C:\$Recycle.bin\S-1-5-21-2898600843-1572375225-654772463-1001\$RF9SRQ7\l folder moved successfully.
      C:\$Recycle.bin\S-1-5-21-2898600843-1572375225-654772463-1001\$RL0QFQE\l folder moved successfully.
      C:\$Recycle.bin\S-1-5-21-2898600843-1572375225-654772463-1001\$RYU317O\l folder moved successfully.
      C:\$Recycle.bin\S-1-5-21-2898600843-1572375225-654772463-1001\$RZMD508\l folder moved successfully.
      C:\Users\Usuario\AppData\Roaming\Dropbox folder moved successfully.
      ========== FILES ==========
      C:\eula.1028.txt moved successfully.
      C:\eula.1031.txt moved successfully.
      C:\eula.1033.txt moved successfully.
      C:\eula.1036.txt moved successfully.
      C:\eula.1040.txt moved successfully.
      C:\eula.1041.txt moved successfully.
      C:\eula.1042.txt moved successfully.
      C:\eula.1049.txt moved successfully.
      C:\eula.2052.txt moved successfully.
      C:\eula.3082.txt moved successfully.
      C:\install.exe moved successfully.
      C:\install.ini moved successfully.
      C:\install.res.1028.dll moved successfully.
      C:\install.res.1031.dll moved successfully.
      C:\install.res.1033.dll moved successfully.
      C:\install.res.1036.dll moved successfully.
      C:\install.res.1040.dll moved successfully.
      C:\install.res.1041.dll moved successfully.
      C:\install.res.1042.dll moved successfully.
      C:\install.res.1049.dll moved successfully.
      C:\install.res.2052.dll moved successfully.
      C:\install.res.3082.dll moved successfully.
      < ipconfig /flushdns /c >
      Configuraci¢n IP de Windows
      No se puede vaciar la cach‚ de resoluci¢n de DNS: Error de una funci¢n durante la ejecuci¢n.
      C:\Users\Usuario\Desktop\cmd.bat deleted successfully.
      C:\Users\Usuario\Desktop\cmd.txt deleted successfully.
      < ipconfig /renew /c >
      Configuraci¢n IP de Windows
      C:\Users\Usuario\Desktop\cmd.bat deleted successfully.
      C:\Users\Usuario\Desktop\cmd.txt deleted successfully.
      ========== COMMANDS ==========

      [EMPTYFLASH]

      User: All Users

      User: Default
      ->Flash cache emptied: 0 bytes

      User: Default User
      ->Flash cache emptied: 0 bytes

      User: Public

      User: Usuario
      ->Flash cache emptied: 1320 bytes

      Total Flash Files Cleaned = 0.00 mb


      [EMPTYTEMP]

      User: All Users

      User: Default
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 0 bytes
      ->Flash cache emptied: 0 bytes

      User: Default User
      ->Temp folder emptied: 0 bytes
      ->Temporary Internet Files folder emptied: 0 bytes
      ->Flash cache emptied: 0 bytes

      User: Public

      User: Usuario
      ->Temp folder emptied: 1294960 bytes
      ->Temporary Internet Files folder emptied: 2335728 bytes
      ->Java cache emptied: 74083453 bytes
      ->FireFox cache emptied: 374600729 bytes
      ->Google Chrome cache emptied: 1905008 bytes
      ->Flash cache emptied: 0 bytes

      %systemdrive% .tmp files removed: 0 bytes
      %systemroot% .tmp files removed: 0 bytes
      %systemroot%\System32 .tmp files removed: 0 bytes
      %systemroot%\System32 (64bit) .tmp files removed: 0 bytes
      %systemroot%\System32\drivers .tmp files removed: 0 bytes
      Windows Temp folder emptied: 4771302 bytes
      %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 128 bytes
      RecycleBin emptied: 194661159 bytes

      Total Files Cleaned = 623.00 mb

      C:\Windows\System32\drivers\etc\Hosts moved successfully.
      HOSTS file reset successfully

      OTL by OldTimer - Version 3.2.69.0 log created on 07292015_094231

      Files\Folders moved on Reboot...
      C:\Users\Usuario\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
      C:\Users\Usuario\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.

      PendingFileRenameOperations files...

      Registry entries deleted on Reboot...

    8. #28
      Moderadora Gral.
      Avatar de @Daniela
      Registrado
      abr 2011
      Ubicación
      España
      Mensajes
      24.349

      Re: Webs searches

      Hola

      Realiza los siguientes pasos:

      Descarga >> Malwarebytes Anti-Rootkit (Beta) y descomprimes el contenido en tu escritorio.

      • Abre la carpeta Mbar, haces doble clic en el archivo Mbar.exe
      • En la ventana que saldrá pulsas en "Next".
      • Pulsar en "Update", y cuando termine en "Next"
      • Ahora inicias el análisis pulsando en el botón "Scan"
      • Al terminar, si existe infección pulsamos en "CleanUp" y si no hay infección pulsamos en ""Exit"


      Al terminar busca en la carpeta Mbar, y abres los archivos mbar-log.txt y system-log.txt, nos copias el contenido en la siguiente respuesta y comentas resultados.

      Después de ejecutar MBAR, vuelve a ejecutar OTL y traes un nuevo reporte para ver si se ha eliminado todo de Dropbox.

      Un saludo
      ✿◕‿◕✿ La impaciencia no es buena compañía ✿◕‿◕✿

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    9. #29
      Usuario Avatar de casanovamar
      Registrado
      ago 2006
      Ubicación
      España
      Mensajes
      67

      Re: Webs searches

      Hola Daniela.
      Al iniciar Malwarebytes me ha saido esta ventana
      https://www.dropbox.com/s/nyev0kx9of..._1035.JPG?dl=0

      No consigo que la foto se vea directamente. No se como lo hice con las anteriores capturas de pantalla que te puse.
      Le he dado a no y voy a pasar la herramienta.
      Luego te comento.

    10. #30
      Usuario Avatar de casanovamar
      Registrado
      ago 2006
      Ubicación
      España
      Mensajes
      67

      Re: Webs searches

      mbar-log

      Malwarebytes Anti-Rootkit BETA 1.09.1.1004
      www.malwarebytes.org

      Database version:
      main: v2014.11.18.05
      rootkit: v2014.11.12.01

      Windows 7 Service Pack 1 x64 NTFS
      Internet Explorer 11.0.9600.17914
      Usuario :: USUARIO-HP [administrator]

      30/07/2015 10:08:13
      mbar-log-2015-07-30 (10-08-13).txt

      Scan type: Quick scan
      Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
      Scan options disabled:
      Objects scanned: 348617
      Time elapsed: 14 minute(s), 8 second(s)

      Memory Processes Detected: 0
      (No malicious items detected)

      Memory Modules Detected: 0
      (No malicious items detected)

      Registry Keys Detected: 0
      (No malicious items detected)

      Registry Values Detected: 0
      (No malicious items detected)

      Registry Data Items Detected: 0
      (No malicious items detected)

      Folders Detected: 0
      (No malicious items detected)

      Files Detected: 0
      (No malicious items detected)

      Physical Sectors Detected: 0
      (No malicious items detected)

      (end)