Bienvenido: ( Identificarse | Registrarse )      
Foros de Trucos Windows
 
Closed TopicStart new topicStart Poll

Outline · [ Estándar ] · Lineal+

> problemas al arranque

hades1986
post Jul 8 2008, 11:03 PM
Publicado: #1


Newbie
*

Grupo: Members
Mensajes: 6
Registrado: 17-April 08
Miembro nº: 229.162



al arrancar me tira estos dos errores, si pueden decirme si ven algo en log de hjt, pase antivirus VGA y nada, algunos de los online que proponen y nada tampoco.
el error es el siguiente
"rundll32.exe - urqOIyab.dll"
"rundll32.exe - cbxndvng.dll"


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:45:16, on 08/07/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16681)
Boot mode: Normal

Running processes:
C:\Program Files\DigitalPersona\Bin\DpAgent.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\HP\Digital Imaging\bin\HpqSRmon.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\XemiComputers\Active Desktop Calendar\ADC.exe
C:\Program Files\Microsoft Encarta\Encarta 2007 Biblioteca Premium DVD\EDICT.EXE
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Apoint2K\ApMsgFwd.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Alwil Software\Avast4\ashSimpl.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.busca7.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.busca7.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.busca7.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer proporcionado por Windows uE
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Barra Yahoo! con bloqueador de ventanas emergentes - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: Aplicación auxiliar de vínculos de Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Aplicación auxiliar de inicio de sesión - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - (no file)
O3 - Toolbar: (no name) - {D4919423-011C-4FDA-8AC1-6A37E496EC39} - (no file)
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [OnScreenDisplay] C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe
O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\YouCam" update "Software\CyberLink\YouCam\1.0"
O4 - HKLM\..\Run: [DpAgent] C:\Program Files\DigitalPersona\Bin\dpagent.exe
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [HP Health Check Scheduler] [ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [WAWifiMessage] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Active Desktop Calendar] C:\Program Files\XemiComputers\Active Desktop Calendar\ADC.exe
O4 - HKCU\..\Run: [E07EXLRD_1835523] "C:\Program Files\Microsoft Encarta\Encarta 2007 Biblioteca Premium DVD\EDICT.EXE" -m
O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares\Ares.exe" -h
O4 - HKCU\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -startup
O4 - HKCU\..\Run: [MSServer] rundll32.exe C:\Users\Humberto\AppData\Local\Temp\cbXNDVNG.dll,#1
O4 - HKCU\..\Run: [cmds] rundll32.exe C:\Users\Humberto\AppData\Local\Temp\urqOIyab.dll,c
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICIO LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICIO LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'Servicio de red')
O4 - Global Startup: BTTray.lnk = ?
O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Enviar imagen al dispositivo &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Enviar página al dispositivo &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Consola de Sun Java - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Barra de búsqueda de Encarta - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O13 - Gopher Prefix:
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/spanish/kavwebscan_unicode.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O21 - SSODL: axrfgvek - {B2132240-9556-4597-BDE9-B22987DC97ED} - C:\Windows\axrfgvek.dll (file missing)
O21 - SSODL: okmdepgb - {9B2FA55E-6FF8-41EB-A77F-3F613235F3AF} - C:\Windows\okmdepgb.dll (file missing)
O21 - SSODL: RunMon - {a345c27f-c65d-4108-a20a-1489a0e31217} - C:\Windows\Resources\RunMon.dll
O21 - SSODL: CheckCheck - {96d5f2ec-9aeb-431e-9356-1bd3c0b72601} - C:\Windows\Resources\CheckCheck.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe
O23 - Service: Biometric Authentication Service (DpHost) - DigitalPersona, Inc. - C:\Program Files\DigitalPersona\Bin\DpHostW.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\HP Games\My HP Game Console\GameConsoleService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: QuickPlay Background Capture Service (QBCS) (QPCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\QPCapSvc.exe
O23 - Service: QuickPlay Task Scheduler (QTS) (QPSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\QPSched.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 13229 bytes



User is offlineProfile CardPM
Go to the top of the page
+Quote Post
Caito
post Jul 9 2008, 12:14 AM
Publicado: #2


No Spiware
Group Icon

Grupo: Supervisor Global
Mensajes: 16.641
Registrado: 15-August 04
Desde: Argentina
Miembro nº: 13.043



Empieza haciendo esto:

En Este Orden:

Actualiza tu sistema, Aqui (Si no puedes Omite este paso)

Borra todas las cookies y el registro con CCleaner:

Vete a Panel de Control--> Java y elimina todos los archivos temporales. (Si utilizas JAVA)

Borrar archivos temporales--> Desde Inicio, Ejecutar, escribe %TEMP%, pulsa Enter y elimina todo el contenido.

Pasale el Avg-antispyware. (Actualizalo, y al acabar el Scaneo elije la opcion eliminar, despues guarda el report y lo pegas)

Ademas, haz un Scan on Line

Pega un nuevo Log del Hijackthis, mas los Reports de Avg-Antispyware y el Scan on Line.
Saludos
Caito



User is offlineProfile CardPM
Go to the top of the page
+Quote Post
hades1986
post Jul 9 2008, 07:43 PM
Publicado: #3


Newbie
*

Grupo: Members
Mensajes: 6
Registrado: 17-April 08
Miembro nº: 229.162



Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:38:28, on 09/07/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16681)
Boot mode: Normal

Running processes:
C:\Program Files\DigitalPersona\Bin\DpAgent.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\HP\Digital Imaging\bin\HpqSRmon.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\XemiComputers\Active Desktop Calendar\ADC.exe
C:\Program Files\Microsoft Encarta\Encarta 2007 Biblioteca Premium DVD\EDICT.EXE
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Apoint2K\ApMsgFwd.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.busca7.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.busca7.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.busca7.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer proporcionado por Windows uE
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Barra Yahoo! con bloqueador de ventanas emergentes - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: Aplicación auxiliar de vínculos de Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Aplicación auxiliar de inicio de sesión - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - (no file)
O3 - Toolbar: (no name) - {D4919423-011C-4FDA-8AC1-6A37E496EC39} - (no file)
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [OnScreenDisplay] C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe
O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\YouCam" update "Software\CyberLink\YouCam\1.0"
O4 - HKLM\..\Run: [DpAgent] C:\Program Files\DigitalPersona\Bin\dpagent.exe
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [HP Health Check Scheduler] [ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [WAWifiMessage] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Active Desktop Calendar] C:\Program Files\XemiComputers\Active Desktop Calendar\ADC.exe
O4 - HKCU\..\Run: [E07EXLRD_1835523] "C:\Program Files\Microsoft Encarta\Encarta 2007 Biblioteca Premium DVD\EDICT.EXE" -m
O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares\Ares.exe" -h
O4 - HKCU\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -startup
O4 - HKCU\..\Run: [MSServer] rundll32.exe C:\Users\Humberto\AppData\Local\Temp\cbXNDVNG.dll,#1
O4 - HKCU\..\Run: [cmds] rundll32.exe C:\Users\Humberto\AppData\Local\Temp\urqOIyab.dll,c
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICIO LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICIO LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'Servicio de red')
O4 - Global Startup: BTTray.lnk = ?
O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Enviar imagen al dispositivo &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Enviar página al dispositivo &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Consola de Sun Java - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Barra de búsqueda de Encarta - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O13 - Gopher Prefix:
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/spanish/kavwebscan_unicode.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O21 - SSODL: axrfgvek - {B2132240-9556-4597-BDE9-B22987DC97ED} - C:\Windows\axrfgvek.dll (file missing)
O21 - SSODL: okmdepgb - {9B2FA55E-6FF8-41EB-A77F-3F613235F3AF} - C:\Windows\okmdepgb.dll (file missing)
O21 - SSODL: RunMon - {a345c27f-c65d-4108-a20a-1489a0e31217} - C:\Windows\Resources\RunMon.dll
O21 - SSODL: CheckCheck - {96d5f2ec-9aeb-431e-9356-1bd3c0b72601} - C:\Windows\Resources\CheckCheck.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe
O23 - Service: Biometric Authentication Service (DpHost) - DigitalPersona, Inc. - C:\Program Files\DigitalPersona\Bin\DpHostW.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\HP Games\My HP Game Console\GameConsoleService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: QuickPlay Background Capture Service (QBCS) (QPCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\QPCapSvc.exe
O23 - Service: QuickPlay Task Scheduler (QTS) (QPSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\QPSched.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 13256 bytes

-------------------------------------------------------------------------------------
---------------------------------------------------------
AVG Anti-Spyware - Informe del análisis
---------------------------------------------------------

+ Creado en: 12:13:13 09/07/2008

+ Resultado del análisis:



C:\Users\Humberto\AppData\Roaming\Microsoft\Windows\Cookies\Low\humberto[arroba]2o7[1].txt -> TrackingCookie.2o7 : Limpios.
C:\Users\Humberto\AppData\Roaming\Microsoft\Windows\Cookies\Low\humberto[arroba]atdmt[2].txt -> TrackingCookie.Atdmt : Limpios.
C:\Users\Humberto\AppData\Roaming\Microsoft\Windows\Cookies\humberto[arroba]atdmt[2].txt -> TrackingCookie.Atdmt : Limpios.
C:\Users\Humberto\AppData\Roaming\Microsoft\Windows\Cookies\Low\humberto[arroba]server.iad.liveperson[2].txt -> TrackingCookie.Liveperson : Limpios.
C:\Users\Humberto\AppData\Roaming\Microsoft\Windows\Cookies\Low\humberto[arroba]tribalfusion[2].txt -> TrackingCookie.Tribalfusion : Limpios.


::Fin del informe

----------------------------------------------------------------------------------------
avast! Antirootkit, version 1.0
Scan started: miércoles, 09 de julio de 2008 03:20:53 a.m.

Process [0]
Process [4]
Process C:\Windows\System32\smss.exe [428]
Process C:\Windows\System32\csrss.exe [516]
Process C:\Windows\System32\wininit.exe [560]
Process C:\Windows\System32\csrss.exe [568]
Process C:\Windows\System32\services.exe [612]
Process C:\Windows\System32\winlogon.exe [636]
Process C:\Windows\System32\lsass.exe [656]
Process C:\Windows\System32\lsm.exe [664]
Process C:\Windows\System32\svchost.exe [820]
Process C:\Windows\System32\svchost.exe [880]
Process C:\Windows\System32\svchost.exe [912]
Process C:\Windows\System32\svchost.exe [964]
Process C:\Windows\System32\svchost.exe [996]
Process C:\Windows\System32\svchost.exe [1012]
Process C:\Windows\System32\audiodg.exe [1100]
Process C:\Windows\System32\SLsvc.exe [1128]
Process C:\Windows\servicing\TrustedInstaller.exe [1196]
Process C:\Windows\System32\svchost.exe [1212]
Process C:\Windows\System32\LogonUI.exe [1256]
Process C:\Windows\System32\svchost.exe [1508]
Process C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [1612]
Process C:\Program Files\Alwil Software\Avast4\ashServ.exe [1628]
Process C:\Windows\System32\spoolsv.exe [1852]
Process C:\Program Files\DigitalPersona\Bin\DpHostW.exe [1876]
Process C:\Windows\System32\svchost.exe [1944]
Process C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe [500]
Process C:\Program Files\Bonjour\mDNSResponder.exe [572]
Process C:\Windows\System32\svchost.exe [604]
Process C:\Program Files\Common Files\LightScribe\LSSrvc.exe [864]
Process C:\Program Files\Common Files\microsoft shared\VS7DEBUG\mdm.exe [704]
Process C:\Windows\System32\svchost.exe [1640]
Process C:\Program Files\HP\QuickPlay\Kernel\TV\QPCapSvc.exe [2004]
Process C:\Program Files\CyberLink\Shared Files\RichVideo.exe [2164]
Process C:\Windows\System32\svchost.exe [2180]
Process C:\Windows\System32\svchost.exe [2224]
Process C:\Windows\System32\SearchIndexer.exe [2248]
Process C:\Windows\System32\drivers\XAudio.exe [2276]
Process C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe [2364]
Process C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe [2408]
Process C:\Program Files\HP\QuickPlay\Kernel\TV\QPSched.exe [2760]
Process C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2856]
Process C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2896]
Process C:\Windows\System32\alg.exe [2936]
Process C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Service.exe [1320]
Process C:\Windows\System32\wbem\WMIADAP.exe [2564]
Process C:\Windows\System32\wbem\WmiPrvSE.exe [2400]
Process C:\Windows\System32\wbem\WmiPrvSE.exe [3560]
Disk 0 MBR
File C:\Windows\system32\Drivers\103C_HP_cNB_Pavilion dv2700 Notebook PC_Y5335KV_0U_Q2CE8111XJ5_E459208-165_4A_I30CD_SWistron_V80.51_F.28_T080214_WV3-0_LC0A_M2038_J250_7Intel_86FD_91.67_#071228_N11AB4353;80864229_(KL291LA#ABM)_XMOBILE_CN10_Z.MRK
File C:\Windows\system32\Drivers\1394bus.sys
File C:\Windows\system32\Drivers\acpi.sys
File C:\Windows\system32\Drivers\adp94xx.sys
File C:\Windows\system32\Drivers\adpahci.sys
File C:\Windows\system32\Drivers\adpu160m.sys
File C:\Windows\system32\Drivers\adpu320.sys
File C:\Windows\system32\Drivers\afd.sys
File C:\Windows\system32\Drivers\AGP440.sys
File C:\Windows\system32\Drivers\aliide.sys
File C:\Windows\system32\Drivers\AMDAGP.SYS
File C:\Windows\system32\Drivers\amdide.sys
File C:\Windows\system32\Drivers\amdk7.sys
File C:\Windows\system32\Drivers\amdk8.sys
File C:\Windows\system32\Drivers\Apfiltr.sys
File C:\Windows\system32\Drivers\arc.sys
File C:\Windows\system32\Drivers\arcsas.sys
File C:\Windows\system32\Drivers\aswFsBlk.sys
File C:\Windows\system32\Drivers\aswMonFlt.sys
File C:\Windows\system32\Drivers\aswRdr.sys
File C:\Windows\system32\Drivers\aswSP.sys
File C:\Windows\system32\Drivers\aswTdi.sys
File C:\Windows\system32\Drivers\asyncmac.sys
File C:\Windows\system32\Drivers\atapi.sys
File C:\Windows\system32\Drivers\ataport.sys
File C:\Windows\system32\Drivers\atswpdrv.sys
File C:\Windows\system32\Drivers\AvgAsCln.sys
File C:\Windows\system32\Drivers\battc.sys
File C:\Windows\system32\Drivers\BCMWL6.SYS
File C:\Windows\system32\Drivers\bdasup.sys
File C:\Windows\system32\Drivers\beep.sys
File C:\Windows\system32\Drivers\bowser.sys
File C:\Windows\system32\Drivers\BrFiltLo.sys
File C:\Windows\system32\Drivers\BrFiltUp.sys
File C:\Windows\system32\Drivers\bridge.sys
File C:\Windows\system32\Drivers\BrSerId.sys
File C:\Windows\system32\Drivers\BrSerWdm.sys
File C:\Windows\system32\Drivers\BrUsbMdm.sys
File C:\Windows\system32\Drivers\BrUsbSer.sys
File C:\Windows\system32\Drivers\bthenum.sys
File C:\Windows\system32\Drivers\bthmodem.sys
File C:\Windows\system32\Drivers\bthpan.sys
File C:\Windows\system32\Drivers\bthport.sys
File C:\Windows\system32\Drivers\BTHUSB.SYS
File C:\Windows\system32\Drivers\btwaudio.sys
File C:\Windows\system32\Drivers\btwavdt.sys
File C:\Windows\system32\Drivers\btwrchid.sys
File C:\Windows\system32\Drivers\cdfs.sys
File C:\Windows\system32\Drivers\cdrom.sys
File C:\Windows\system32\Drivers\CHDART.sys
File C:\Windows\system32\Drivers\CHDRT32.sys
File C:\Windows\system32\Drivers\circlass.sys
File C:\Windows\system32\Drivers\Classpnp.sys
File C:\Windows\system32\Drivers\CmBatt.sys
File C:\Windows\system32\Drivers\cmdide.sys
File C:\Windows\system32\Drivers\compbatt.sys
File C:\Windows\system32\Drivers\crashdmp.sys
File C:\Windows\system32\Drivers\crcdisk.sys
File C:\Windows\system32\Drivers\crusoe.sys
File C:\Windows\system32\Drivers\dfsc.sys
File C:\Windows\system32\Drivers\disk.sys
File C:\Windows\system32\Drivers\Diskdump.sys
File C:\Windows\system32\Drivers\djsvs.sys
File C:\Windows\system32\Drivers\drmk.sys
File C:\Windows\system32\Drivers\drmkaud.sys
File C:\Windows\system32\Drivers\Dumpata.sys
File C:\Windows\system32\Drivers\dxapi.sys
File C:\Windows\system32\Drivers\dxg.sys
File C:\Windows\system32\Drivers\dxgkrnl.sys
File C:\Windows\system32\Drivers\e100b325.sys
File C:\Windows\system32\Drivers\E1G60I32.sys
File C:\Windows\system32\Drivers\ecache.sys
File C:\Windows\system32\Drivers\elxstor.sys
File C:\Windows\system32\Drivers\es-ES
File C:\Windows\system32\Drivers\es-ES\acpi.sys.mui
File C:\Windows\system32\Drivers\es-ES\afd.sys.mui
File C:\Windows\system32\Drivers\es-ES\AGP440.sys.mui
File C:\Windows\system32\Drivers\es-ES\AMDAGP.SYS.mui
File C:\Windows\system32\Drivers\es-ES\amdide.sys.mui
File C:\Windows\system32\Drivers\es-ES\amdk7.sys.mui
File C:\Windows\system32\Drivers\es-ES\amdk8.sys.mui
File C:\Windows\system32\Drivers\es-ES\ati2mpad.sys.mui
File C:\Windows\system32\Drivers\es-ES\ati2mtag.sys.mui
File C:\Windows\system32\Drivers\es-ES\atikmdag.sys.mui
File C:\Windows\system32\Drivers\es-ES\b57nd60x.sys.mui
File C:\Windows\system32\Drivers\es-ES\battc.sys.mui
File C:\Windows\system32\Drivers\es-ES\bcm4sbxp.sys.mui
File C:\Windows\system32\Drivers\es-ES\BRPARWDM.SYS.mui
File C:\Windows\system32\Drivers\es-ES\BrSerId.sys.mui
File C:\Windows\system32\Drivers\es-ES\bthpan.sys.mui
File C:\Windows\system32\Drivers\es-ES\bthport.sys.mui
File C:\Windows\system32\Drivers\es-ES\cmbp0wdm.sys.mui
File C:\Windows\system32\Drivers\es-ES\crusoe.sys.mui
File C:\Windows\system32\Drivers\es-ES\cxbp0wdm.sys.mui
File C:\Windows\system32\Drivers\es-ES\Dot4usb.sys.mui
File C:\Windows\system32\Drivers\es-ES\dxgkrnl.sys.mui
File C:\Windows\system32\Drivers\es-ES\e100b325.sys.mui
File C:\Windows\system32\Drivers\es-ES\e1e6032.sys.mui
File C:\Windows\system32\Drivers\es-ES\E1G60I32.sys.mui
File C:\Windows\system32\Drivers\es-ES\fltmgr.sys.mui
File C:\Windows\system32\Drivers\es-ES\GAGP30KX.SYS.mui
File C:\Windows\system32\Drivers\es-ES\gpr400.sys.mui
File C:\Windows\system32\Drivers\es-ES\grserial.sys.mui
File C:\Windows\system32\Drivers\es-ES\hidbth.sys.mui
File C:\Windows\system32\Drivers\es-ES\http.sys.mui
File C:\Windows\system32\Drivers\es-ES\i8042prt.sys.mui
File C:\Windows\system32\Drivers\es-ES\intelppm.sys.mui
File C:\Windows\system32\Drivers\es-ES\IPMIDrv.sys.mui
File C:\Windows\system32\Drivers\es-ES\ipnat.sys.mui
File C:\Windows\system32\Drivers\es-ES\isapnp.sys.mui
File C:\Windows\system32\Drivers\es-ES\kbdclass.sys.mui
File C:\Windows\system32\Drivers\es-ES\kbdhid.sys.mui
File C:\Windows\system32\Drivers\es-ES\ltmdmnt.sys.mui
File C:\Windows\system32\Drivers\es-ES\luafv.sys.mui
File C:\Windows\system32\Drivers\es-ES\modem.sys.mui
File C:\Windows\system32\Drivers\es-ES\mouclass.sys.mui
File C:\Windows\system32\Drivers\es-ES\mouhid.sys.mui
File C:\Windows\system32\Drivers\es-ES\mpio.sys.mui
File C:\Windows\system32\Drivers\es-ES\msdsm.sys.mui
File C:\Windows\system32\Drivers\es-ES\mssmbios.sys.mui
File C:\Windows\system32\Drivers\es-ES\ntfs.sys.mui
File C:\Windows\system32\Drivers\es-ES\ntrigdigi.sys.mui
File C:\Windows\system32\Drivers\es-ES\nv4_mini.sys.mui
File C:\Windows\system32\Drivers\es-ES\NV_AGP.SYS.mui
File C:\Windows\system32\Drivers\es-ES\ohci1394.sys.mui
File C:\Windows\system32\Drivers\es-ES\pacer.sys.mui
File C:\Windows\system32\Drivers\es-ES\parport.sys.mui
File C:\Windows\system32\Drivers\es-ES\parvdm.sys.mui
File C:\Windows\system32\Drivers\es-ES\pci.sys.mui
File C:\Windows\system32\Drivers\es-ES\pcmcia.sys.mui
File C:\Windows\system32\Drivers\es-ES\pnpmem.sys.mui
File C:\Windows\system32\Drivers\es-ES\processr.sys.mui
File C:\Windows\system32\Drivers\es-ES\pscr.sys.mui
File C:\Windows\system32\Drivers\es-ES\qwavedrv.sys.mui
File C:\Windows\system32\Drivers\es-ES\RNDISMP.sys.mui
File C:\Windows\system32\Drivers\es-ES\rndismpx.sys.mui
File C:\Windows\system32\Drivers\es-ES\scmstcs.sys.mui
File C:\Windows\system32\Drivers\es-ES\SCR111.sys.mui
File C:\Windows\system32\Drivers\es-ES\scsiport.sys.mui
File C:\Windows\system32\Drivers\es-ES\serial.sys.mui
File C:\Windows\system32\Drivers\es-ES\sermouse.sys.mui
File C:\Windows\system32\Drivers\es-ES\serscan.sys.mui
File C:\Windows\system32\Drivers\es-ES\SISAGP.SYS.mui
File C:\Windows\system32\Drivers\es-ES\srv.sys.mui
File C:\Windows\system32\Drivers\es-ES\stcusb.sys.mui
File C:\Windows\system32\Drivers\es-ES\tpm.sys.mui
File C:\Windows\system32\Drivers\es-ES\UAGP35.SYS.mui
File C:\Windows\system32\Drivers\es-ES\ULIAGPKX.SYS.mui
File C:\Windows\system32\Drivers\es-ES\umbus.sys.mui
File C:\Windows\system32\Drivers\es-ES\VIAAGP.SYS.mui
File C:\Windows\system32\Drivers\es-ES\viac7.sys.mui
File C:\Windows\system32\Drivers\es-ES\volsnap.sys.mui
File C:\Windows\system32\Drivers\es-ES\wacompen.sys.mui
File C:\Windows\system32\Drivers\es-ES\wd.sys.mui
File C:\Windows\system32\Drivers\es-ES\wdf01000.sys.mui
File C:\Windows\system32\Drivers\es-ES\yk60x86.sys.mui
File C:\Windows\system32\Drivers\etc
File C:\Windows\system32\Drivers\etc\hosts
File C:\Windows\system32\Drivers\etc\hosts.ics
File C:\Windows\system32\Drivers\etc\lmhosts.sam
File C:\Windows\system32\Drivers\etc\networks
File C:\Windows\system32\Drivers\etc\protocol
File C:\Windows\system32\Drivers\etc\services
File C:\Windows\system32\Drivers\fastfat.sys
File C:\Windows\system32\Drivers\fdc.sys
File C:\Windows\system32\Drivers\fileinfo.sys
File C:\Windows\system32\Drivers\filetrace.sys
File C:\Windows\system32\Drivers\flpydisk.sys
File C:\Windows\system32\Drivers\fltMgr.sys
File C:\Windows\system32\Drivers\fs_rec.sys
File C:\Windows\system32\Drivers\FWPKCLNT.SYS
File C:\Windows\system32\Drivers\GAGP30KX.SYS
File C:\Windows\system32\Drivers\gm.dls
File C:\Windows\system32\Drivers\gmreadme.txt
File C:\Windows\system32\Drivers\hdaudbus.sys
File C:\Windows\system32\Drivers\HdAudio.sys
File C:\Windows\system32\Drivers\hidbth.sys
File C:\Windows\system32\Drivers\hidclass.sys
File C:\Windows\system32\Drivers\hidir.sys
File C:\Windows\system32\Drivers\hidparse.sys
File C:\Windows\system32\Drivers\hidusb.sys
File C:\Windows\system32\Drivers\HpCISSs.sys
File C:\Windows\system32\Drivers\HpqKbFiltr.sys
File C:\Windows\system32\Drivers\HpqRemHid.sys
File C:\Windows\system32\Drivers\HSFProf.cty
File C:\Windows\system32\Drivers\HSXHWAZL.sys
File C:\Windows\system32\Drivers\HSX_CNXT.sys
File C:\Windows\system32\Drivers\HSX_DPV.sys
File C:\Windows\system32\Drivers\http.sys
File C:\Windows\system32\Drivers\i2omgmt.sys
File C:\Windows\system32\Drivers\i2omp.sys
File C:\Windows\system32\Drivers\i8042prt.sys
File C:\Windows\system32\Drivers\iaStor.sys
File C:\Windows\system32\Drivers\iaStorV.sys
File C:\Windows\system32\Drivers\igdkmd32.sys
File C:\Windows\system32\Drivers\iirsp.sys
File C:\Windows\system32\Drivers\intelide.sys
File C:\Windows\system32\Drivers\intelppm.sys
File C:\Windows\system32\Drivers\ipfltdrv.sys
File C:\Windows\system32\Drivers\IPMIDrv.sys
File C:\Windows\system32\Drivers\ipnat.sys
File C:\Windows\system32\Drivers\irda.sys
File C:\Windows\system32\Drivers\irenum.sys
File C:\Windows\system32\Drivers\isapnp.sys
File C:\Windows\system32\Drivers\iteatapi.sys
File C:\Windows\system32\Drivers\iteraid.sys
File C:\Windows\system32\Drivers\kbdclass.sys
File C:\Windows\system32\Drivers\kbdhid.sys
File C:\Windows\system32\Drivers\ks.sys
File C:\Windows\system32\Drivers\ksecdd.sys
File C:\Windows\system32\Drivers\lltdio.sys
File C:\Windows\system32\Drivers\lsi_fc.sys
File C:\Windows\system32\Drivers\lsi_sas.sys
File C:\Windows\system32\Drivers\lsi_scsi.sys
File C:\Windows\system32\Drivers\luafv.sys
File C:\Windows\system32\Drivers\mcd.sys
File C:\Windows\system32\Drivers\mdmxsdk.sys
File C:\Windows\system32\Drivers\megasas.sys
File C:\Windows\system32\Drivers\modem.sys
File C:\Windows\system32\Drivers\monitor.sys
File C:\Windows\system32\Drivers\mouclass.sys
File C:\Windows\system32\Drivers\mouhid.sys
File C:\Windows\system32\Drivers\mountmgr.sys
File C:\Windows\system32\Drivers\mpio.sys
File C:\Windows\system32\Drivers\mpsdrv.sys
File C:\Windows\system32\Drivers\Mraid35x.sys
File C:\Windows\system32\Drivers\mrxdav.sys
File C:\Windows\system32\Drivers\mrxsmb.sys
File C:\Windows\system32\Drivers\mrxsmb10.sys
File C:\Windows\system32\Drivers\mrxsmb20.sys
File C:\Windows\system32\Drivers\msahci.sys
File C:\Windows\system32\Drivers\msdsm.sys
File C:\Windows\system32\Drivers\msfs.sys
File C:\Windows\system32\Drivers\MsftWdf_Kernel_01005_Inbox_Critical.Wdf
File C:\Windows\system32\Drivers\Msft_Kernel_Apfiltr_01005.Wdf
File C:\Windows\system32\Drivers\Msft_Kernel_HpqKbFiltr_01005.Wdf
File C:\Windows\system32\Drivers\msisadrv.sys
File C:\Windows\system32\Drivers\msiscsi.sys
File C:\Windows\system32\Drivers\mskssrv.sys
File C:\Windows\system32\Drivers\mspclock.sys
File C:\Windows\system32\Drivers\mspqm.sys
File C:\Windows\system32\Drivers\msrpc.sys
File C:\Windows\system32\Drivers\mssmbios.sys
File C:\Windows\system32\Drivers\mstee.sys
File C:\Windows\system32\Drivers\mup.sys
File C:\Windows\system32\Drivers\ndis.sys
File C:\Windows\system32\Drivers\ndistapi.sys
File C:\Windows\system32\Drivers\ndisuio.sys
File C:\Windows\system32\Drivers\ndiswan.sys
File C:\Windows\system32\Drivers\ndproxy.sys
File C:\Windows\system32\Drivers\netbios.sys
File C:\Windows\system32\Drivers\netbt.sys
File C:\Windows\system32\Drivers\netio.sys
File C:\Windows\system32\Drivers\NETw4v32.sys
File C:\Windows\system32\Drivers\nfrd960.sys
File C:\Windows\system32\Drivers\npfs.sys
File C:\Windows\system32\Drivers\nsiproxy.sys
File C:\Windows\system32\Drivers\ntfs.sys
File C:\Windows\system32\Drivers\ntrigdigi.sys
File C:\Windows\system32\Drivers\null.sys
File C:\Windows\system32\Drivers\nvraid.sys
File C:\Windows\system32\Drivers\nvstor.sys
File C:\Windows\system32\Drivers\NV_AGP.SYS
File C:\Windows\system32\Drivers\nwifi.sys
File C:\Windows\system32\Drivers\ohci1394.sys
File C:\Windows\system32\Drivers\pacer.sys
File C:\Windows\system32\Drivers\parport.sys
File C:\Windows\system32\Drivers\partmgr.sys
File C:\Windows\system32\Drivers\parvdm.sys
File C:\Windows\system32\Drivers\pci.sys
File C:\Windows\system32\Drivers\pciide.sys
File C:\Windows\system32\Drivers\pciidex.sys
File C:\Windows\system32\Drivers\pcmcia.sys
File C:\Windows\system32\Drivers\pcouffin.sys
File C:\Windows\system32\Drivers\PEAuth.sys
File C:\Windows\system32\Drivers\portcls.sys
File C:\Windows\system32\Drivers\processr.sys
File C:\Windows\system32\Drivers\ql2300.sys
File C:\Windows\system32\Drivers\ql40xx.sys
File C:\Windows\system32\Drivers\qwavedrv.sys
File C:\Windows\system32\Drivers\rasacd.sys
File C:\Windows\system32\Drivers\rasl2tp.sys
File C:\Windows\system32\Drivers\raspppoe.sys
File C:\Windows\system32\Drivers\raspptp.sys
File C:\Windows\system32\Drivers\rdbss.sys
File C:\Windows\system32\Drivers\RDPCDD.sys
File C:\Windows\system32\Drivers\rdpdr.sys
File C:\Windows\system32\Drivers\RDPENCDD.sys
File C:\Windows\system32\Drivers\rdpwd.sys
File C:\Windows\system32\Drivers\rfcomm.sys
File C:\Windows\system32\Drivers\rimmptsk.sys
File C:\Windows\system32\Drivers\rimsptsk.sys
File C:\Windows\system32\Drivers\rixdptsk.sys
File C:\Windows\system32\Drivers\rmcast.sys
File C:\Windows\system32\Drivers\RNDISMP.sys
File C:\Windows\system32\Drivers\rootmdm.sys
File C:\Windows\system32\Drivers\rspndr.sys
File C:\Windows\system32\Drivers\sbp2port.sys
File C:\Windows\system32\Drivers\scsiport.sys
File C:\Windows\system32\Drivers\sdbus.sys
File C:\Windows\system32\Drivers\secdrv.sys
File C:\Windows\system32\Drivers\serenum.sys
File C:\Windows\system32\Drivers\serial.sys
File C:\Windows\system32\Drivers\sermouse.sys
File C:\Windows\system32\Drivers\sffdisk.sys
File C:\Windows\system32\Drivers\sffp_mmc.sys
File C:\Windows\system32\Drivers\sffp_sd.sys
File C:\Windows\system32\Drivers\sfloppy.sys
File C:\Windows\system32\Drivers\SISAGP.SYS
File C:\Windows\system32\Drivers\sisraid2.sys
File C:\Windows\system32\Drivers\sisraid4.sys
File C:\Windows\system32\Drivers\smb.sys
File C:\Windows\system32\Drivers\smclib.sys
File C:\Windows\system32\Drivers\spldr.sys
File C:\Windows\system32\Drivers\spsys.sys
File C:\Windows\system32\Drivers\srv.sys
File C:\Windows\system32\Drivers\srv2.sys
File C:\Windows\system32\Drivers\srvnet.sys
File C:\Windows\system32\Drivers\Storport.sys
File C:\Windows\system32\Drivers\stream.sys
File C:\Windows\system32\Drivers\swenum.sys
File C:\Windows\system32\Drivers\symc8xx.sys
File C:\Windows\system32\Drivers\sym_hi.sys
File C:\Windows\system32\Drivers\sym_u3.sys
File C:\Windows\system32\Drivers\tape.sys
File C:\Windows\system32\Drivers\tcpip.sys
File C:\Windows\system32\Drivers\tcpipreg.sys
File C:\Windows\system32\Drivers\tdi.sys
File C:\Windows\system32\Drivers\tdpipe.sys
File C:\Windows\system32\Drivers\tdtcp.sys
File C:\Windows\system32\Drivers\tdx.sys
File C:\Windows\system32\Drivers\termdd.sys
File C:\Windows\system32\Drivers\tssecsrv.sys
File C:\Windows\system32\Drivers\TUNMP.SYS
File C:\Windows\system32\Drivers\tunnel.sys
File C:\Windows\system32\Drivers\UAGP35.SYS
File C:\Windows\system32\Drivers\udfs.sys
File C:\Windows\system32\Drivers\ULIAGPKX.SYS
File C:\Windows\system32\Drivers\uliahci.sys
File C:\Windows\system32\Drivers\ulsata.sys
File C:\Windows\system32\Drivers\ulsata2.sys
File C:\Windows\system32\Drivers\umbus.sys
File C:\Windows\system32\Drivers\UMDF
File C:\Windows\system32\Drivers\UMDF\es-ES
File C:\Windows\system32\Drivers\UMDF\es-ES\WpdMtpDr.dll.mui
File C:\Windows\system32\Drivers\UMDF\Msft_User_WpdFs_01_00_00.Wdf
File C:\Windows\system32\Drivers\UMDF\WpdFs.dll
File C:\Windows\system32\Drivers\umpass.sys
File C:\Windows\system32\Drivers\usb8023.sys
File C:\Windows\system32\Drivers\USBCAMD.sys
File C:\Windows\system32\Drivers\USBCAMD2.sys
File C:\Windows\system32\Drivers\usbccgp.sys
File C:\Windows\system32\Drivers\usbcir.sys
File C:\Windows\system32\Drivers\usbd.sys
File C:\Windows\system32\Drivers\usbehci.sys
File C:\Windows\system32\Drivers\usbhub.sys
File C:\Windows\system32\Drivers\usbohci.sys
File C:\Windows\system32\Drivers\usbport.sys
File C:\Windows\system32\Drivers\usbprint.sys
File C:\Windows\system32\Drivers\USBSTOR.SYS
File C:\Windows\system32\Drivers\usbuhci.sys
File C:\Windows\system32\Drivers\usbvideo.sys
File C:\Windows\system32\Drivers\vga.sys
File C:\Windows\system32\Drivers\vgapnp.sys
File C:\Windows\system32\Drivers\VIAAGP.SYS
File C:\Windows\system32\Drivers\viac7.sys
File C:\Windows\system32\Drivers\viaide.sys
File C:\Windows\system32\Drivers\videoprt.sys
File C:\Windows\system32\Drivers\volmgr.sys
File C:\Windows\system32\Drivers\volmgrx.sys
File C:\Windows\system32\Drivers\volsnap.sys
File C:\Windows\system32\Drivers\vsmraid.sys
File C:\Windows\system32\Drivers\VSTAZL3.SYS
File C:\Windows\system32\Drivers\VSTCNXT3.SYS
File C:\Windows\system32\Drivers\VSTDProf.cty
File C:\Windows\system32\Drivers\VSTDPV3.SYS
File C:\Windows\system32\Drivers\VSTEProf.cty
File C:\Windows\system32\Drivers\VSTProf.cty
File C:\Windows\system32\Drivers\VSTSProf.cty
File C:\Windows\system32\Drivers\wacompen.sys
File C:\Windows\system32\Drivers\wanarp.sys
File C:\Windows\system32\Drivers\watchdog.sys
File C:\Windows\system32\Drivers\wd.sys
File C:\Windows\system32\Drivers\Wdf01000.sys
File C:\Windows\system32\Drivers\wdfcoinstaller01005.dll
File C:\Windows\system32\Drivers\WdfLdr.sys
File C:\Windows\system32\Drivers\wmiacpi.sys
File C:\Windows\system32\Drivers\wmilib.sys
File C:\Windows\system32\Drivers\ws2ifsl.sys
File C:\Windows\system32\Drivers\WUDFPf.sys
File C:\Windows\system32\Drivers\WUDFRd.sys
File C:\Windows\system32\Drivers\XAudio.exe
File C:\Windows\system32\Drivers\XAudio.sys
File C:\Windows\system32\Drivers\yk60x86.sys
Service .NET CLR Data [???]
Service .NET CLR Networking [???]
Service .NET Data Provider for Oracle [???]
Service .NET Data Provider for SqlServer [???]
Service .NETFramework [???]
Service ACPI [C:\Windows\system32\drivers\acpi.sys]
Service Ad-Watch Connect Filter [C:\Windows\system32\drivers\NSDriver.sys]
Service Ad-Watch Real-Time Scanner [C:\Windows\system32\drivers\AWRTPD.sys]
Service Ad-Watch Registry Filter [C:\Windows\system32\drivers\AWRTRD.sys]
Service adp94xx [C:\Windows\system32\drivers\adp94xx.sys]
Service adpahci [C:\Windows\system32\drivers\adpahci.sys]
Service adpu160m [C:\Windows\system32\drivers\adpu160m.sys]
Service adpu320 [C:\Windows\system32\drivers\adpu320.sys]
Service adsi [???]
Service AeLookupSvc [C:\Windows\system32\svchost.exe]
Service AFD [C:\Windows\system32\drivers\afd.sys]
Service agp440 [C:\Windows\system32\drivers\agp440.sys]
Service aic78xx [C:\Windows\system32\drivers\djsvs.sys]
Service ALG [C:\Windows\System32\alg.exe]
Service aliide [C:\Windows\system32\drivers\aliide.sys]
Service amdagp [C:\Windows\system32\drivers\amdagp.sys]
Service amdide [C:\Windows\system32\drivers\amdide.sys]
Service AmdK7 [C:\Windows\system32\drivers\amdk7.sys]
Service AmdK8 [C:\Windows\system32\drivers\amdk8.sys]
Service ApfiltrService [C:\Windows\system32\DRIVERS\Apfiltr.sys]
Service Appinfo [C:\Windows\system32\svchost.exe]
Service arc [C:\Windows\system32\drivers\arc.sys]
Service arcsas [C:\Windows\system32\drivers\arcsas.sys]
Service aswFsBlk [C:\Windows\system32\DRIVERS\aswFsBlk.sys]
Service aswMonFlt [C:\Windows\system32\DRIVERS\aswMonFlt.sys]
Service aswRdr [C:\Windows\System32\Drivers\aswRdr.sys]
Service aswSP [C:\Windows\System32\Drivers\aswSP.sys]
Service aswTdi [C:\Windows\System32\Drivers\aswTdi.sys]
Service aswUpdSv [C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe]
Service AsyncMac [C:\Windows\system32\DRIVERS\asyncmac.sys]
Service atapi [C:\Windows\system32\drivers\atapi.sys]
Service ATSWPDRV [C:\Windows\system32\DRIVERS\ATSwpDrv.sys]
Service AudioEndpointBuilder [C:\Windows\System32\svchost.exe]
Service Audiosrv [C:\Windows\System32\svchost.exe]
Service avast! Antivirus [C:\Program Files\Alwil Software\Avast4\ashServ.exe]
Service avast! Mail Scanner [C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe]
Service avast! Web Scanner [C:\Program Files\Alwil Software\Avast4\ashWebSv.exe]
Service AVG Anti-Spyware Driver [C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys]
Service AVG Anti-Spyware Guard [C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe]
Service AvgAsCln [C:\Windows\System32\DRIVERS\AvgAsCln.sys]
Service BattC [???]
Service BCM43XV [C:\Windows\system32\DRIVERS\bcmwl6.sys]
Service Beep [C:\Windows\System32\Drivers\Beep.sys]
Service BFE [C:\Windows\system32\svchost.exe]
Service BITS [C:\Windows\System32\svchost.exe]
Service blbdrive [C:\Windows\system32\drivers\blbdrive.sys]
Service Bonjour Service [C:\Program Files\Bonjour\mDNSResponder.exe]
Service bowser [C:\Windows\system32\DRIVERS\bowser.sys]
Service BrFiltLo [C:\Windows\system32\drivers\brfiltlo.sys]
Service BrFiltUp [C:\Windows\system32\drivers\brfiltup.sys]
Service Browser [C:\Windows\System32\svchost.exe]
Service Brserid [C:\Windows\system32\drivers\brserid.sys]
Service BrSerWdm [C:\Windows\system32\drivers\brserwdm.sys]
Service BrUsbMdm [C:\Windows\system32\drivers\brusbmdm.sys]
Service BrUsbSer [C:\Windows\system32\drivers\brusbser.sys]
Service BthEnum [C:\Windows\system32\DRIVERS\BthEnum.sys]
Service BTHMODEM [C:\Windows\system32\DRIVERS\bthmodem.sys]
Service BthPan [C:\Windows\system32\DRIVERS\bthpan.sys]
Service BTHPORT [C:\Windows\System32\Drivers\BTHport.sys]
Service BthServ [C:\Windows\system32\svchost.exe]
Service BTHUSB [C:\Windows\System32\Drivers\BTHUSB.sys]
Service BTKRNL [???]
Service btwaudio [C:\Windows\system32\drivers\btwaudio.sys]
Service btwavdt [C:\Windows\system32\drivers\btwavdt.sys]
Service btwrchid [C:\Windows\system32\DRIVERS\btwrchid.sys]
Service cdfs [C:\Windows\system32\DRIVERS\cdfs.sys]
Service cdrom [C:\Windows\system32\DRIVERS\cdrom.sys]
Service CertPropSvc [C:\Windows\system32\svchost.exe]
Service circlass [C:\Windows\system32\drivers\circlass.sys]
Service CLFS [C:\Windows\System32\CLFS.sys]
Service clr_optimization_v2.0.50727_32 [C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe]
Service CmBatt [C:\Windows\system32\DRIVERS\CmBatt.sys]
Service cmdide [C:\Windows\system32\drivers\cmdide.sys]
Service CnxtHdAudService [C:\Windows\system32\drivers\CHDRT32.sys]
Service Com4Qlb [C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe]
Service Compbatt [C:\Windows\system32\DRIVERS\compbatt.sys]
Service COMSysApp [C:\Windows\system32\dllhost.exe]
Service crcdisk [C:\Windows\system32\drivers\crcdisk.sys]
Service Crusoe [C:\Windows\system32\drivers\crusoe.sys]
Service crypt32 [???]
Service CryptSvc [C:\Windows\system32\svchost.exe]
Service DCLocator [???]
Service DcomLaunch [C:\Windows\system32\svchost.exe]
Service DfsC [C:\Windows\System32\Drivers\dfsc.sys]
Service DFSR [C:\Windows\system32\DFSR.exe]
Service Dhcp [C:\Windows\system32\svchost.exe]
Service disk [C:\Windows\system32\drivers\disk.sys]
Service Dnscache [C:\Windows\system32\svchost.exe]
Service dot3svc [C:\Windows\system32\svchost.exe]
Service DpHost [C:\Program Files\DigitalPersona\Bin\DpHostW.exe]
Service DPS [C:\Windows\System32\svchost.exe]
Service drmkaud [C:\Windows\system32\drivers\drmkaud.sys]
Service DXGKrnl [C:\Windows\System32\drivers\dxgkrnl.sys]
Service E100B [C:\Windows\system32\DRIVERS\e100b325.sys]
Service E1G60 [C:\Windows\system32\DRIVERS\E1G60I32.sys]
Service eabfiltr [???]
Service eabusb [???]
Service EapHost [C:\Windows\System32\svchost.exe]
Service Ecache [C:\Windows\System32\drivers\ecache.sys]
Service ehRecvr [C:\Windows\ehome\ehRecvr.exe]
Service ehSched [C:\Windows\ehome\ehsched.exe]
Service ehstart [C:\Windows\system32\svchost.exe]
Service elxstor [C:\Windows\system32\drivers\elxstor.sys]
Service EmdCache [???]
Service EMDMgmt [C:\Windows\system32\svchost.exe]
Service ESENT [???]
Service Eventlog [C:\Windows\System32\svchost.exe]
Service EventSystem [C:\Windows\system32\svchost.exe]
Service fastfat [C:\Windows\System32\Drivers\fastfat.sys]
Service fdc [C:\Windows\system32\DRIVERS\fdc.sys]
Service fdPHost [C:\Windows\system32\svchost.exe]
Service FDResPub [C:\Windows\system32\svchost.exe]
Service FileInfo [C:\Windows\system32\drivers\fileinfo.sys]
Service Filetrace [C:\Windows\system32\drivers\filetrace.sys]
Service FLEXnet Licensing Service [C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe]
Service flpydisk [C:\Windows\system32\DRIVERS\flpydisk.sys]
Service FltMgr [C:\Windows\system32\drivers\fltmgr.sys]
Service FontCache3.0.0.0 [C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe]
Service Fs_Rec [C:\Windows\System32\Drivers\Fs_Rec.sys]
Service gagp30kx [C:\Windows\system32\drivers\gagp30kx.sys]
Service GameConsoleService [C:\Program Files\HP Games\My HP Game Console\GameConsoleService.exe]
Service gpsvc [C:\Windows\system32\svchost.exe]
Service hcw85bda [???]
Service HdAudAddService [C:\Windows\system32\drivers\CHDART.sys]
Service HDAudBus [C:\Windows\system32\DRIVERS\HDAudBus.sys]
Service HidBth [C:\Windows\system32\drivers\hidbth.sys]
Service HidIr [C:\Windows\system32\drivers\hidir.sys]
Service hidserv [C:\Windows\system32\svchost.exe]
Service HidUsb [C:\Windows\system32\DRIVERS\hidusb.sys]
Service hkmsvc [C:\Windows\System32\svchost.exe]
Service HP Health Check Service [c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe]
Service HpCISSs [C:\Windows\system32\drivers\hpcisss.sys]
Service HpqKbFiltr [C:\Windows\system32\DRIVERS\HpqKbFiltr.sys]
Service HpqRemHid [C:\Windows\system32\DRIVERS\HpqRemHid.sys]
Service hpqwmiex [C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe]
Service HSFHWAZL [C:\Windows\system32\DRIVERS\VSTAZL3.SYS]
Service HSF_DPV [C:\Windows\system32\DRIVERS\HSX_DPV.sys]
Service HSXHWAZL [C:\Windows\system32\DRIVERS\HSXHWAZL.sys]
Service HTTP [C:\Windows\system32\drivers\HTTP.sys]
Service i2omp [C:\Windows\system32\drivers\i2omp.sys]
Service i8042prt [C:\Windows\system32\DRIVERS\i8042prt.sys]
Service ialm [C:\Windows\system32\DRIVERS\igdkmd32.sys]
Service iaStor [C:\Windows\system32\DRIVERS\iaStor.sys]
Service iaStorV [C:\Windows\system32\drivers\iastorv.sys]
Service IDriverT [C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe]
Service idsvc [C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe]
Service igfx [C:\Windows\system32\DRIVERS\igdkmd32.sys]
Service iirsp [C:\Windows\system32\drivers\iirsp.sys]
Service IKEEXT [C:\Windows\system32\svchost.exe]
Service inetaccs [???]
Service intelide [C:\Windows\system32\drivers\intelide.sys]
Service intelppm [C:\Windows\system32\DRIVERS\intelppm.sys]
Service IPBusEnum [C:\Windows\system32\svchost.exe]
Service IpFilterDriver [C:\Windows\system32\DRIVERS\ipfltdrv.sys]
Service iphlpsvc [C:\Windows\System32\svchost.exe]
Service IpInIp [C:\Windows\system32\DRIVERS\ipinip.sys]
Service IPMIDRV [C:\Windows\system32\drivers\ipmidrv.sys]
Service IPNAT [C:\Windows\system32\DRIVERS\ipnat.sys]
Service IRENUM [C:\Windows\system32\drivers\irenum.sys]
Service isapnp [C:\Windows\system32\drivers\isapnp.sys]
Service iScsiPrt [C:\Windows\system32\DRIVERS\msiscsi.sys]
Service iteatapi [C:\Windows\system32\drivers\iteatapi.sys]
Service iteraid [C:\Windows\system32\drivers\iteraid.sys]
Service kbdclass [C:&


User is offlineProfile CardPM
Go to the top of the page
+Quote Post
yosoydoug
post Jul 9 2008, 09:51 PM
Publicado: #4


AnTi_MaLwArE
Group Icon

Grupo: Moderadores
Mensajes: 4.259
Registrado: 11-January 07
Desde: Paraguay
Miembro nº: 190.609



Baja este programa:
Dr.Web CureIt
ftp://ftp.drweb.com/pub/drweb/cureit/drweb-cureit.exe

Doble click en drweb-cureit.exe
Clic en Star para que comience el scaneo
Al principio verifica la memoria y tienes que cliquear Yes cuando te pregunte si quieres que tal archivo sea curado (cure it ),esto es un scan rápido
Tambien te puede aparecer un pop up ofreciendo la posibilidad de comprar el programa ,solo elimina ese pop up y sigue…
Cuando ese scan termine haz clic en Options > Change settings
Elige la solapa Scan y destildas "Heuristic analysis".
Ahora vuelve a la ventana principal y eliges los discos a scanear:
elige “All Drives”,un punto rojo te indica cuales elegiste
Haz clic en la flecha verde ubicada a la derecha y comenzará el scaneo
Click 'Yes to all' si te pregunta si quieres “Cure” o “Move “ los archivos
Cuando el scaneo termine te fijas en los archivos encontrados y junto a ellos se halla un ícono trata de cliquear en ese y si puedes cliquea en otro ícono a la derecha y elige Move incurable
Esto pondrá esos archivos en “%userprofile%\DoctorWeb\quarantaine-folder”si no han podido “curarse”.
Ahora en el Menu principal clic en File y elige save report list
Guarda ese reporte en tu escritorio (el nombre será DrWeb.csv)
Cierra el programa
Nos cuentas
Salu2
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
hades1986
post Jul 10 2008, 04:37 PM
Publicado: #5


Newbie
*

Grupo: Members
Mensajes: 6
Registrado: 17-April 08
Miembro nº: 229.162



este es el informe del drweb, los mensajes al arranque siguen existiendo, a alguien se le ocurre o ve algo mas en el log.
evdq.exe C:\Windows Trojan.Popuper.6967 Eliminado.
778670.dll C:\Windows\System32\778670 Trojan.Click.19409 Eliminado.
-----------------------------------------------------------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:34:31, on 10/07/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16681)
Boot mode: Normal

Running processes:
C:\Program Files\DigitalPersona\Bin\DpAgent.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\HP\Digital Imaging\bin\HpqSRmon.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Windows\ehome\ehtray.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\XemiComputers\Active Desktop Calendar\ADC.exe
C:\Program Files\Microsoft Encarta\Encarta 2007 Biblioteca Premium DVD\EDICT.EXE
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\Apoint2K\ApMsgFwd.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.busca7.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.busca7.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.busca7.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer proporcionado por Windows uE
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Barra Yahoo! con bloqueador de ventanas emergentes - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: Aplicación auxiliar de vínculos de Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Aplicación auxiliar de inicio de sesión - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - (no file)
O3 - Toolbar: (no name) - {D4919423-011C-4FDA-8AC1-6A37E496EC39} - (no file)
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [OnScreenDisplay] C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe
O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\YouCam" update "Software\CyberLink\YouCam\1.0"
O4 - HKLM\..\Run: [DpAgent] C:\Program Files\DigitalPersona\Bin\dpagent.exe
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [HP Health Check Scheduler] [ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [WAWifiMessage] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Active Desktop Calendar] C:\Program Files\XemiComputers\Active Desktop Calendar\ADC.exe
O4 - HKCU\..\Run: [E07EXLRD_1835523] "C:\Program Files\Microsoft Encarta\Encarta 2007 Biblioteca Premium DVD\EDICT.EXE" -m
O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares\Ares.exe" -h
O4 - HKCU\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -startup
O4 - HKCU\..\Run: [MSServer] rundll32.exe C:\Users\Humberto\AppData\Local\Temp\cbXNDVNG.dll,#1
O4 - HKCU\..\Run: [cmds] rundll32.exe C:\Users\Humberto\AppData\Local\Temp\urqOIyab.dll,c
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICIO LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICIO LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'Servicio de red')
O4 - Global Startup: BTTray.lnk = ?
O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Enviar imagen al dispositivo &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Enviar página al dispositivo &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Consola de Sun Java - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Barra de búsqueda de Encarta - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O13 - Gopher Prefix:
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/spanish/kavwebscan_unicode.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O21 - SSODL: axrfgvek - {B2132240-9556-4597-BDE9-B22987DC97ED} - C:\Windows\axrfgvek.dll (file missing)
O21 - SSODL: okmdepgb - {9B2FA55E-6FF8-41EB-A77F-3F613235F3AF} - C:\Windows\okmdepgb.dll (file missing)
O21 - SSODL: RunMon - {a345c27f-c65d-4108-a20a-1489a0e31217} - C:\Windows\Resources\RunMon.dll
O21 - SSODL: CheckCheck - {96d5f2ec-9aeb-431e-9356-1bd3c0b72601} - C:\Windows\Resources\CheckCheck.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe
O23 - Service: Biometric Authentication Service (DpHost) - DigitalPersona, Inc. - C:\Program Files\DigitalPersona\Bin\DpHostW.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\HP Games\My HP Game Console\GameConsoleService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: QuickPlay Background Capture Service (QBCS) (QPCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\QPCapSvc.exe
O23 - Service: QuickPlay Task Scheduler (QTS) (QPSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\QPSched.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 13435 bytes
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
Caito
post Jul 10 2008, 09:21 PM
Publicado: #6


No Spiware
Group Icon

Grupo: Supervisor Global
Mensajes: 16.641
Registrado: 15-August 04
Desde: Argentina
Miembro nº: 13.043



Tienes algo dry.gif
Baja este programa:Malwarebytes Anti-Malware
http://www.majorgeeks.com/Malwarebytes_Ant...ware_d5756.html
Si lo ubicas en el escritorio aparecerá este archivo:
mbam-setup.exe
le damos doble click y se abrirá , elegimos el idioma , aceptamos las condiciones de uso y comenzará la instalación.
Actualizamos la base de datos y ya tendremos el ícono para hacer la limpieza :
doble click a Malwarebytes Anti-Malware, en la siguiente ventana elegimos Escaner "realizar un examen completo" y hacemos click en "Examinar".
Luego del proceso de scaneo nos aparecerá este mensaje:
"El exámen ha terminado con éxito.Click en mostrar r