Foros de daboweb

SEGURIDAD INFORMATICA, Firewall, parches, vacunas, antivirus, anti troyanos, spyware etc => Seguridad Informatica - Firewall - Virus - Troyanos - Spyware - Ad Aware - Malware => Mensaje iniciado por: Trebol en 16 de Agosto de 2010, 10:47:19 pm

Título: a s-quared o similar
Publicado por: Trebol en 16 de Agosto de 2010, 10:47:19 pm
El escaneo de squeared on-line (sin tener que descargar programa) sabéis si sigue disponible, es que lo busco desde destroyerweb y aparece enlace roto... Qué otro tipo spyware, malware on-line me recomendarían para pasar.
de momento el antivirus y el spyware me sale limpio, sin embargo me sale en alguna ocasión una ventana de publi automaticamente... me tiene  :???:
Título: Re: a s-quared o similar
Publicado por: Mr_X en 16 de Agosto de 2010, 11:24:58 pm
a-squared (http://www.emsisoft.org/es/software/ax/)... Y saca un log del HijackThis...
Título: Re: a s-quared o similar
Publicado por: Trebol en 17 de Agosto de 2010, 04:17:54 pm
pregunta: Si el escaneo es on-line, sin necesidad de descarga de archivos ni ejcutables, porque me pide instalar complemento Emisoft web malwarescanner?? acepto y parece ser un archivo o no lo es??
No quisiera de momento estar bajando programas, si fuera on-line mejor, así evito conflictos.
Título: Re: a s-quared o similar
Publicado por: Mr_X en 17 de Agosto de 2010, 04:59:39 pm
Cualquier analizador on-line necesita instalar algún complemento para que funcione, por lo que deberás aceptar la instalación...
Título: Re: a s-quared o similar
Publicado por: Trebol en 17 de Agosto de 2010, 08:33:04 pm
lo haré. cuantos escaner son aconsejables hacer con mismo analizador. o mejor complementar con otros....
Título: Re: a s-quared o similar
Publicado por: Mr_X en 17 de Agosto de 2010, 09:32:00 pm
Por lo menos usa dos diferentes...
Saca el log del HijackThis...
Título: Re: a s-quared o similar
Publicado por: Trebol en 18 de Agosto de 2010, 04:18:40 pm
C:\Windows\System32\vwbudlmrkgsxcwamb.dll    detected: Virus.Ezula!IK
C:\Windows\system32\vwbudlmrkgsxcwamb.dll    detected: Virus.Ezula!IK
C:\Windows\system32\vwbudlmrkgsxcwamb.dll    detected: Virus.Ezula!IK
C:\Windows\system32\vwbudlmrkgsxcwamb.dll    detected: Virus.Ezula!IK
C:\Windows\system32\vwbudlmrkgsxcwamb.dll    detected: Virus.Ezula!IK
C:\Users\miequipo\AppData\Roaming\Microsoft\Windows\Cookies\miequipo@doubleclick[2].txt    detected: Trace.TrackingCookie.doubleclick!A2
C:\Users\miequipo\AppData\Roaming\Microsoft\Windows\Cookies\miequipo@tradedoubler[2].txt    detected: Trace.TrackingCookie.tradedoubler!A2
C:\Users\miequipo\AppData\Roaming\Microsoft\Windows\Cookies\miequipo@weborama[1].txt    detected: Trace.TrackingCookie.weborama!A2

entre otros cookies los envié a cuarentena, ahora he reecho el scaneo y siguen saliendo los mismos que me indicaba antes y yo los envié a cuarentena, es esto normal??

pasé otro on-line el Av scanner y no me salió nada...  :???: :???: hice el completo, zonas críticas e individuales... mi antivirus no me pilla nada tampoco... pero sigue


No sé que ventanita es esta, porque juegos no pillo, la web será estupenda, pero me tiene frita el banner http://www.travian.net/landingpage/?ad=10235_2222203222&ce_cid=000xRL9UQan51u8Sxe58lk3EmJ000000

aunque suene friki no me había pillado con virus ni estas intrusiones antes, me colo bien  :pardiez: :juer:
Título: Re: a s-quared o similar
Publicado por: Mr_X en 18 de Agosto de 2010, 04:37:58 pm
Saca el log del HijackThis...
Título: Re: a s-quared o similar
Publicado por: Trebol en 18 de Agosto de 2010, 04:54:32 pm
conocéis éste programa me hn recomendado usar OTMoveIt
Título: Re: a s-quared o similar
Publicado por: Trebol en 18 de Agosto de 2010, 04:55:14 pm
Saca el log del HijackThis...

me da cosa petarme yo el registro al tocarlo para sacar el log no he hecho nunca
¿tardaría mucho en pasarlo? porque sino tendría dejarlo para más tarde.
Título: Re: a s-quared o similar
Publicado por: Trebol en 18 de Agosto de 2010, 04:57:20 pm
Saca el log del HijackThis...

desde qué programa sería??
Título: Re: a s-quared o similar
Publicado por: Mr_X en 18 de Agosto de 2010, 05:03:57 pm
No es tan difícil ni tan riesgoso... Para empezar, haz copia de seguridad del registro utilizando el ERUNT (clic aquí) (http://www.daboweb.com/foros/index.php/topic,27469.0.html) y ya después sigue las instrucciones para sacar el log del HijackThis (clic aquí) (http://www.daboweb.com/foros/index.php/topic,13633.0.html)...
Título: Re: a s-quared o similar
Publicado por: Trebol en 18 de Agosto de 2010, 05:10:44 pm
porqué unos dan limio y otros no, por ejemplo a scanner en zona crítica y equipo lo da limpio, al igual que mi antivirus y spwaryre sin embargo a-squered me da la infección  :???:
Título: Re: a s-quared o similar
Publicado por: Trebol en 18 de Agosto de 2010, 05:15:11 pm
No es tan difícil ni tan riesgoso... Para empezar, haz copia de seguridad del registro utilizando el ERUNT (clic aquí) (http://www.daboweb.com/foros/index.php/topic,27469.0.html) y ya después sigue las instrucciones para sacar el log del HijackThis (clic aquí) (http://www.daboweb.com/foros/index.php/topic,13633.0.html)...

qué erunt descargo???
Título: Re: a s-quared o similar
Publicado por: Mr_X en 18 de Agosto de 2010, 05:19:39 pm
Citar
erunt-setup.exe (772 KB)
Título: Re: a s-quared o similar
Publicado por: Trebol en 18 de Agosto de 2010, 10:58:13 pm
Os pego el Log, a ver que es lo que le pasa a mi amigote, que sin él no puedo estar ni vivir, se me cierra el aire de la puerta (es un simil pero verdad)
Gracias antemano.

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:58:45, on 18/08/2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18943)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE


Ahora puedo cerrar la ventana que me apareció junto al log y en caso de necesitarlo se vuelve abrir o debo guardarlo, junto a copiado en txt
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Launch Manager\LManager.exe
C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe
C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe
C:\Program Files\Acer\OrbiCam10\OrbiCam.exe
C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
C:\Program Files\QuickTime\qttask.exe
C:\Windows\WindowsMobile\wmdSync.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
C:\Windows\System32\rundll32.exe
C:\Acer\Empowering Technology\ACER.EMPOWERING.FRAMEWORK.SUPERVISOR.EXE
C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE
C:\Users\nombredemiequipo\AppData\Local\Temp\RtkBtMnt.exe
C:\Windows\system32\taskeng.exe
C:\Acer\Empowering Technology\ePower\ePower_DMC.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SCServer\SCServer.exe
C:\Program Files\Windows Live\Toolbar\wltuser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\System32\regsvr32.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\nombredemiequipo\Carpeta A\log registro\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.terra.es/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://es.es.acer.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://es.es.acer.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aplicación auxiliar de vínculos de Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Windows\system32\ActiveToolBand.dll
O2 - BHO: Aplicación auxiliar de inicio de sesión de Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: revenuebuster browser enhancer - {A5CE0CEF-B946-16F5-8F76-0EA9B787A9FA} - C:\Windows\system32\vwbudlmrkgsxcwamb.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Barra Yahoo! con bloqueador de ventanas emergentes - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Windows\system32\eDStoolbar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKLM\..\Run: [WarReg_PopUp] C:\Acer\WR_PopUp\WarReg_PopUp.exe
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LVCOMSX] "C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe"
O4 - HKLM\..\Run: [AcerOrbicamRibbon] "C:\Program Files\Acer\OrbiCam10\OrbiCam.exe" /hide
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Windows Mobile-based device management] %windir%\WindowsMobile\wmdSync.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [hrpjsbqiuf] C:\Windows\System32\regsvr32.exe /s "C:\Windows\system32\vwbudlmrkgsxcwamb.dll"
O4 - HKCU\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -startup
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
O4 - Startup: ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE
O4 - Global Startup: Empowering Technology Launcher.lnk = ?
O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Agregar entrada - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Agregar entrada en Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
O16 - DPF: {E62A8B6B-D91C-457C-B1FB-20CC2D96B4EC} (Comodo AV Scanner ActiveX) - http://eu5.download.comodo.com/avs/ComodoAVScanner.cab
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: @%SystemRoot%\system32\aelupsvc.dll,-1 (AeLookupSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe
O23 - Service: Apache2.2 - Apache Software Foundation - C:\xampp\apache\bin\httpd.exe
O23 - Service: @%systemroot%\system32\appinfo.dll,-100 (Appinfo) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-204 (AudioEndpointBuilder) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-200 (Audiosrv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\bfe.dll,-1001 (BFE) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\qmgr.dll,-1000 (BITS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\browser.dll,-100 (Browser) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-11 (CertPropSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: @%SystemRoot%\system32\cryptsvc.dll,-1001 (CryptSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @oleres.dll,-5012 (DcomLaunch) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe
O23 - Service: @%SystemRoot%\system32\dhcpcsvc.dll,-100 (Dhcp) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\dnsapi.dll,-101 (Dnscache) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dot3svc.dll,-1102 (dot3svc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dps.dll,-500 (DPS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\eapsvc.dll,-1 (EapHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\ehome\ehrecvr.exe,-101 (ehRecvr) - Unknown owner - C:\Windows\ehome\ehRecvr.exe
O23 - Service: @%SystemRoot%\ehome\ehsched.exe,-101 (ehSched) - Unknown owner - C:\Windows\ehome\ehsched.exe
O23 - Service: @%SystemRoot%\ehome\ehstart.dll,-101 (ehstart) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
O23 - Service: @%SystemRoot%\system32\emdmgmt.dll,-1000 (EMDMgmt) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: eNet Service - Acer Inc. - C:\Acer\Empowering Technology\eNet\eNet Service.exe
O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe
O23 - Service: @%SystemRoot%\system32\wevtsvc.dll,-200 (Eventlog) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @comres.dll,-2450 (EventSystem) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fdPHost.dll,-100 (fdPHost) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\fdrespub.dll,-100 (FDResPub) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\FntCache.dll,-100 (FontCache) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @gpapi.dll,-112 (gpsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\hidserv.dll,-101 (hidserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\kmsvc.dll,-6 (hkmsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ikeext.dll,-501 (IKEEXT) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\IPBusEnum.dll,-102 (IPBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\iphlpsvc.dll,-200 (iphlpsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\irmon.dll,-2000 (Irmon) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe
O23 - Service: @comres.dll,-2946 (KtmRm) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\srvsvc.dll,-100 (LanmanServer) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wkssvc.dll,-100 (LanmanWorkstation) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: @%SystemRoot%\system32\lltdres.dll,-1 (lltdsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\lmhsvc.dll,-101 (lmhosts) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\mmcss.dll,-100 (MMCSS) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: @%SystemRoot%\system32\FirewallAPI.dll,-23090 (MpsSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe
O23 - Service: @%SystemRoot%\system32\iscsidsc.dll,-5000 (MSiSCSI) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) - Unknown owner - C:\Windows\system32\msiexec.exe
O23 - Service: MySQL - MySQL AB - C:\xampp\mysql\bin\mysqld.exe
O23 - Service: @%SystemRoot%\system32\qagentrt.dll,-6 (napagent) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe
O23 - Service: @%SystemRoot%\system32\netman.dll,-109 (Netman) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\netprof.dll,-246 (netprofm) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\nlasvc.dll,-1 (NlaSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\nsisvc.dll,-200 (nsi) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8004 (p2pimsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8006 (p2psvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pcasvc.dll,-1 (PcaSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\pla.dll,-500 (pla) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\umpnpmgr.dll,-100 (PlugPlay) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8002 (PNRPAutoReg) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8000 (PNRPsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\polstore.dll,-5010 (PolicyAgent) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\profsvc.dll,-300 (ProfSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Programador de LiveUpdate automático - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%windir%\WindowsMobile\rapimgr.dll,-104 (RapiMgr) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasauto.dll,-200 (RasAuto) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasmans.dll,-200 (RasMan) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @regsvc.dll,-1 (RemoteRegistry) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe
O23 - Service: @oleres.dll,-5010 (RpcSs) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe
O23 - Service: @%SystemRoot%\System32\SCardSvr.dll,-1 (SCardSvr) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\schedsvc.dll,-100 (Schedule) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-13 (SCPolicySvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sdrsvc.dll,-107 (SDRSVC) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Sens.dll,-200 (SENS) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\SessEnv.dll,-1026 (SessionEnv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-12288 (ShellHWDetection) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe
O23 - Service: @%SystemRoot%\system32\SLUINotify.dll,-103 (SLUINotify) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe
O23 - Service: @%systemroot%\system32\ssdpsrv.dll,-100 (SSDPSRV) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sstpsvc.dll,-200 (SstpSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wiaservc.dll,-9 (stisvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\swprv.dll,-103 (swprv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sysmain.dll,-1000 (SysMain) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\TabSvc.dll,-100 (TabletInputService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tapisrv.dll,-10100 (TapiSrv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tbssvc.dll,-100 (TBS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\termsrv.dll,-268 (TermService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-8192 (Themes) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\mmcss.dll,-102 (THREADORDER) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\trkwks.dll,-1 (TrkWks) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\servicing\TrustedInstaller.exe,-100 (TrustedInstaller) - Unknown owner - C:\Windows\servicing\TrustedInstaller.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe
O23 - Service: @%systemroot%\system32\upnphost.dll,-213 (upnphost) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\dwm.exe,-2000 (UxSms) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe
O23 - Service: @%SystemRoot%\system32\w32time.dll,-200 (W32Time) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%windir%\WindowsMobile\wcescomm.dll,-40079 (WcesComm) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wcncsvc.dll,-3 (wcncsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\WcsPlugInService.dll,-200 (WcsPlugInService) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-502 (WdiServiceHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-500 (WdiSystemHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\webclnt.dll,-100 (WebClient) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wecsvc.dll,-200 (Wecsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wercplsupport.dll,-101 (wercplsupport) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wersvc.dll,-100 (WerSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\winhttp.dll,-100 (WinHttpAutoProxySvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmisvc.dll,-205 (Winmgmt) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wsmsvc.dll,-101 (WinRM) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wlansvc.dll,-257 (Wlansvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe
O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files\Windows Media Player\wmpnetwk.exe
O23 - Service: @%SystemRoot%\system32\wpcsvc.dll,-100 (WPCSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wpdbusenum.dll,-100 (WPDBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wscsvc.dll,-200 (wscsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\SearchIndexer.exe,-103 (WSearch) - Unknown owner - C:\Windows\system32\SearchIndexer.exe
O23 - Service: @%systemroot%\system32\wuaueng.dll,-105 (wuauserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wudfsvc.dll,-1000 (wudfsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 23447 bytes
Título: Re: a s-quared o similar
Publicado por: Mr_X en 19 de Agosto de 2010, 12:48:41 am
Reinicia en Modo seguro, ejecuta el HijackThis, marca la casilla a la izquierda de las siguientes entradas y dale al botón [Fix checked]:

Código: [Seleccionar]
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O2 - BHO: revenuebuster browser enhancer - {A5CE0CEF-B946-16F5-8F76-0EA9B787A9FA} - C:\Windows\system32\vwbudlmrkgsxcwamb.dll

O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

O4 - HKLM\..\Run: [hrpjsbqiuf] C:\Windows\System32\regsvr32.exe /s "C:\Windows\system32\vwbudlmrkgsxcwamb.dll"

Reinicia normal, actualiza el Norton y pásalo reiniciando en Modo seguro... Saca un nuevo log del HijackThis...
Título: Re: a s-quared o similar
Publicado por: Trebol en 19 de Agosto de 2010, 01:03:49 am
Reinicia en Modo seguro, ejecuta el HijackThis, marca la casilla a la izquierda de las siguientes entradas y dale al botón [Fix checked]:

Código: [Seleccionar]
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O2 - BHO: revenuebuster browser enhancer - {A5CE0CEF-B946-16F5-8F76-0EA9B787A9FA} - C:\Windows\system32\vwbudlmrkgsxcwamb.dll

O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

O4 - HKLM\..\Run: [hrpjsbqiuf] C:\Windows\System32\regsvr32.exe /s "C:\Windows\system32\vwbudlmrkgsxcwamb.dll"

Reinicia normal, actualiza el Norton y pásalo reiniciando en Modo seguro... Saca un nuevo log del HijackThis...


No pasa nada si cierro el log que apareció para reiniciar equipo??
Y por otro lado, no tengo norton, tengo avast instalado
¿Lo ves infectado?
Título: Re: a s-quared o similar
Publicado por: Mr_X en 19 de Agosto de 2010, 01:53:58 am
No, no pasa nada si lo cierras. Entonces, reinicias normal, actualizas el Avast (es que hay rastros de productos de Symantec en tu equipo y me confundí), reinicias en modo seguro y pasas el el antivirus. Reinicias otra vez en Modo seguro y sacas el nuevo log del HijackThis...
Título: Re: a s-quared o similar
Publicado por: Trebol en 19 de Agosto de 2010, 04:07:33 pm
Nuevo Log a ver como seguimos ;)  :???:

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:08:16, on 19/08/2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18943)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Launch Manager\LManager.exe
C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe
C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe
C:\Program Files\Acer\OrbiCam10\OrbiCam.exe
C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
C:\Program Files\QuickTime\qttask.exe
C:\Windows\WindowsMobile\wmdSync.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
C:\Windows\system32\taskeng.exe
C:\Acer\Empowering Technology\ACER.EMPOWERING.FRAMEWORK.SUPERVISOR.EXE
C:\Windows\System32\rundll32.exe
C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE
C:\Acer\Empowering Technology\ePower\ePower_DMC.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Users\miequipo\Carpeta A\log registro\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.terra.es/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://es.es.acer.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://es.es.acer.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aplicación auxiliar de vínculos de Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Windows\system32\ActiveToolBand.dll
O2 - BHO: Aplicación auxiliar de inicio de sesión de Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Barra Yahoo! con bloqueador de ventanas emergentes - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Windows\system32\eDStoolbar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKLM\..\Run: [WarReg_PopUp] C:\Acer\WR_PopUp\WarReg_PopUp.exe
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LVCOMSX] "C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe"
O4 - HKLM\..\Run: [AcerOrbicamRibbon] "C:\Program Files\Acer\OrbiCam10\OrbiCam.exe" /hide
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Windows Mobile-based device management] %windir%\WindowsMobile\wmdSync.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKCU\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -startup
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
O4 - Startup: ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE
O4 - Global Startup: Empowering Technology Launcher.lnk = ?
O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Agregar entrada - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Agregar entrada en Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
O16 - DPF: {E62A8B6B-D91C-457C-B1FB-20CC2D96B4EC} (Comodo AV Scanner ActiveX) - http://eu5.download.comodo.com/avs/ComodoAVScanner.cab
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: @%SystemRoot%\system32\aelupsvc.dll,-1 (AeLookupSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe
O23 - Service: Apache2.2 - Apache Software Foundation - C:\xampp\apache\bin\httpd.exe
O23 - Service: @%systemroot%\system32\appinfo.dll,-100 (Appinfo) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-204 (AudioEndpointBuilder) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-200 (Audiosrv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\bfe.dll,-1001 (BFE) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\qmgr.dll,-1000 (BITS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\browser.dll,-100 (Browser) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-11 (CertPropSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: @%SystemRoot%\system32\cryptsvc.dll,-1001 (CryptSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @oleres.dll,-5012 (DcomLaunch) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe
O23 - Service: @%SystemRoot%\system32\dhcpcsvc.dll,-100 (Dhcp) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\dnsapi.dll,-101 (Dnscache) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dot3svc.dll,-1102 (dot3svc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dps.dll,-500 (DPS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\eapsvc.dll,-1 (EapHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\ehome\ehrecvr.exe,-101 (ehRecvr) - Unknown owner - C:\Windows\ehome\ehRecvr.exe
O23 - Service: @%SystemRoot%\ehome\ehsched.exe,-101 (ehSched) - Unknown owner - C:\Windows\ehome\ehsched.exe
O23 - Service: @%SystemRoot%\ehome\ehstart.dll,-101 (ehstart) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
O23 - Service: @%SystemRoot%\system32\emdmgmt.dll,-1000 (EMDMgmt) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: eNet Service - Acer Inc. - C:\Acer\Empowering Technology\eNet\eNet Service.exe
O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe
O23 - Service: @%SystemRoot%\system32\wevtsvc.dll,-200 (Eventlog) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @comres.dll,-2450 (EventSystem) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fdPHost.dll,-100 (fdPHost) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\fdrespub.dll,-100 (FDResPub) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\FntCache.dll,-100 (FontCache) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @gpapi.dll,-112 (gpsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\hidserv.dll,-101 (hidserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\kmsvc.dll,-6 (hkmsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ikeext.dll,-501 (IKEEXT) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\IPBusEnum.dll,-102 (IPBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\iphlpsvc.dll,-200 (iphlpsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\irmon.dll,-2000 (Irmon) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe
O23 - Service: @comres.dll,-2946 (KtmRm) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\srvsvc.dll,-100 (LanmanServer) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wkssvc.dll,-100 (LanmanWorkstation) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: @%SystemRoot%\system32\lltdres.dll,-1 (lltdsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\lmhsvc.dll,-101 (lmhosts) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\mmcss.dll,-100 (MMCSS) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: @%SystemRoot%\system32\FirewallAPI.dll,-23090 (MpsSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe
O23 - Service: @%SystemRoot%\system32\iscsidsc.dll,-5000 (MSiSCSI) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) - Unknown owner - C:\Windows\system32\msiexec.exe
O23 - Service: MySQL - MySQL AB - C:\xampp\mysql\bin\mysqld.exe
O23 - Service: @%SystemRoot%\system32\qagentrt.dll,-6 (napagent) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe
O23 - Service: @%SystemRoot%\system32\netman.dll,-109 (Netman) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\netprof.dll,-246 (netprofm) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\nlasvc.dll,-1 (NlaSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\nsisvc.dll,-200 (nsi) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8004 (p2pimsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8006 (p2psvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pcasvc.dll,-1 (PcaSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\pla.dll,-500 (pla) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\umpnpmgr.dll,-100 (PlugPlay) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8002 (PNRPAutoReg) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8000 (PNRPsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\polstore.dll,-5010 (PolicyAgent) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\profsvc.dll,-300 (ProfSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Programador de LiveUpdate automático - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%windir%\WindowsMobile\rapimgr.dll,-104 (RapiMgr) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasauto.dll,-200 (RasAuto) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasmans.dll,-200 (RasMan) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @regsvc.dll,-1 (RemoteRegistry) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe
O23 - Service: @oleres.dll,-5010 (RpcSs) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe
O23 - Service: @%SystemRoot%\System32\SCardSvr.dll,-1 (SCardSvr) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\schedsvc.dll,-100 (Schedule) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-13 (SCPolicySvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sdrsvc.dll,-107 (SDRSVC) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Sens.dll,-200 (SENS) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\SessEnv.dll,-1026 (SessionEnv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-12288 (ShellHWDetection) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe
O23 - Service: @%SystemRoot%\system32\SLUINotify.dll,-103 (SLUINotify) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe
O23 - Service: @%systemroot%\system32\ssdpsrv.dll,-100 (SSDPSRV) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sstpsvc.dll,-200 (SstpSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wiaservc.dll,-9 (stisvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\swprv.dll,-103 (swprv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sysmain.dll,-1000 (SysMain) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\TabSvc.dll,-100 (TabletInputService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tapisrv.dll,-10100 (TapiSrv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tbssvc.dll,-100 (TBS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\termsrv.dll,-268 (TermService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-8192 (Themes) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\mmcss.dll,-102 (THREADORDER) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\trkwks.dll,-1 (TrkWks) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\servicing\TrustedInstaller.exe,-100 (TrustedInstaller) - Unknown owner - C:\Windows\servicing\TrustedInstaller.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe
O23 - Service: @%systemroot%\system32\upnphost.dll,-213 (upnphost) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\dwm.exe,-2000 (UxSms) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe
O23 - Service: @%SystemRoot%\system32\w32time.dll,-200 (W32Time) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%windir%\WindowsMobile\wcescomm.dll,-40079 (WcesComm) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wcncsvc.dll,-3 (wcncsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\WcsPlugInService.dll,-200 (WcsPlugInService) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-502 (WdiServiceHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-500 (WdiSystemHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\webclnt.dll,-100 (WebClient) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wecsvc.dll,-200 (Wecsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wercplsupport.dll,-101 (wercplsupport) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wersvc.dll,-100 (WerSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\winhttp.dll,-100 (WinHttpAutoProxySvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmisvc.dll,-205 (Winmgmt) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wsmsvc.dll,-101 (WinRM) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wlansvc.dll,-257 (Wlansvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe
O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files\Windows Media Player\wmpnetwk.exe
O23 - Service: @%SystemRoot%\system32\wpcsvc.dll,-100 (WPCSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wpdbusenum.dll,-100 (WPDBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wscsvc.dll,-200 (wscsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\SearchIndexer.exe,-103 (WSearch) - Unknown owner - C:\Windows\system32\SearchIndexer.exe
O23 - Service: @%systemroot%\system32\wuaueng.dll,-105 (wuauserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wudfsvc.dll,-1000 (wudfsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 22667 bytes
Título: Re: a s-quared o similar
Publicado por: Trebol en 19 de Agosto de 2010, 05:11:17 pm
hay algún problema en mientras resolvemos la desinfección trabajar en equipo??
Repaso nuevamente a-squeared o av scanner u otro??
Título: Re: a s-quared o similar
Publicado por: Mr_X en 19 de Agosto de 2010, 05:12:41 pm
Claro, puedes seguir trabajando...

El log lo veo normal ¿encontró algo el Avast?

Saca un log del Autoruns (clic aquí) (http://www.daboweb.com/foros/index.php/topic,25707.0.html)...
Título: Re: a s-quared o similar
Publicado por: Trebol en 19 de Agosto de 2010, 05:31:57 pm
Claro, puedes seguir trabajando...

El log lo veo normal ¿encontró algo el Avast?

Saca un log del Autoruns (clic aquí) (http://www.daboweb.com/foros/index.php/topic,25707.0.html)...

No, no encontro nada el avast, pase en modo normal, y minucioso y no pillo nada, aunque antes de pasar el autonrun tampoco, porlo que no sé si me convence se ha desinfectado ¿cómo poder comprobar?
Título: Re: a s-quared o similar
Publicado por: Trebol en 19 de Agosto de 2010, 05:45:22 pm
No me ha aparecido exportar, por lo qu he guardado directamtnet txt  Aver qué nos dice el señorin ahora ycómo va y que más cuidados necesita, que me las esta haciendo pasar!!!

"HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Startup"   ""   ""   ""
"HKCU\Software\Policies\Microsoft\Windows\System\Scripts\Logon"   ""   ""   ""
"HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Logon"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit"   ""   ""   ""
"HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Shutdown"   ""   ""   ""
"HKCU\Software\Policies\Microsoft\Windows\System\Scripts\Logoff"   ""   ""   ""
"HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Logoff"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Startup"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Startup"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Shutdown"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Shutdown"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System\Shell"   ""   ""   ""
"HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System\Shell"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Taskman"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run"   ""   ""   ""
+ "AcerOrbicamRibbon"   "Camera Software"   "(Verified) Logitech Inc"   "c:\program files\acer\orbicam10\orbicam.exe"
+ "Adobe ARM"   "Adobe Reader and Acrobat Manager"   "(Verified) Adobe Systems, Incorporated"   "c:\program files\common files\adobe\arm\1.0\adobearm.exe"
+ "Adobe Reader Speed Launcher"   "Adobe Acrobat SpeedLauncher"   "(Verified) Adobe Systems, Incorporated"   "c:\program files\adobe\reader 8.0\reader\reader_sl.exe"
+ "avast5"   "avast! Antivirus"   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\avastui.exe"
+ "eDataSecurity Loader"   "eDataSecurity System Loader( Load and prepare enviroment )"   "(Not verified) HiTRUST"   "c:\acer\empowering technology\edatasecurity\edsloader.exe"
+ "LManager"   "Acer Launch Manager Keyboard Application"   "(Not verified) Dritek System Inc."   "c:\program files\launch manager\lmanager.exe"
+ "LogitechCommunicationsManager"   "Communications Manager"   "(Verified) Logitech Inc"   "c:\program files\common files\logitech\lcommgr\communications_helper.exe"
+ "LVCOMSX"   "LVCom Server"   "(Verified) Logitech Inc"   "c:\program files\common files\logitech\lcommgr\lvcomsx.exe"
+ "QuickTime Task"   "QuickTime Task"   "(Not verified) Apple Computer, Inc."   "c:\program files\quicktime\qttask.exe"
+ "WarReg_PopUp"   "WR_PopUp"   "(Not verified) Acer Inc."   "c:\acer\wr_popup\warreg_popup.exe"
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce"   ""   ""   ""
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup"   ""   ""   ""
+ "Empowering Technology Launcher.lnk"   "Acer eAP Launch Tool"   "(Not verified) Acer Inc."   "c:\acer\empowering technology\eaplauncher.exe"
+ "NkbMonitor.exe.lnk"   "PictureProject Monitor"   "(Not verified) Nikon Corporation"   "c:\program files\nikon\pictureproject\nkbmonitor.exe"
"C:\Users\miequipo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup"   ""   ""   ""
+ "ERUNT AutoBackup.lnk"   ""   ""   "c:\program files\erunt\autoback.exe"
"HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\Load"   ""   ""   ""
"HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\Run"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Run"   ""   ""   ""
+ "ISUSPM Startup"   "InstallShield Update Service Update Manager"   "(Not verified) Macrovision Corporation"   "c:\program files\common files\installshield\updateservice\isuspm.exe"
+ "updateMgr"   ""   ""   "File not found: C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe"
"HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce"   ""   ""   ""
"HKCU\SOFTWARE\Classes\Protocols\Filter"   ""   ""   ""
"HKLM\SOFTWARE\Classes\Protocols\Filter"   ""   ""   ""
"HKCU\SOFTWARE\Classes\Protocols\Handler"   ""   ""   ""
"HKLM\SOFTWARE\Classes\Protocols\Handler"   ""   ""   ""
"HKCU\SOFTWARE\Microsoft\Internet Explorer\Desktop\Components"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components"   ""   ""   ""
"HKCU\SOFTWARE\Microsoft\Active Setup\Installed Components"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad"   ""   ""   ""
"HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks"   ""   ""   ""
"HKCU\Software\Classes\*\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers"   ""   ""   ""
+ "avast"   "avast! Shell Extension"   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\ashshell.dll"
+ "EDSshellExt"   "Shell Extension Module"   "(Not verified) HiTRUST"   "c:\windows\system32\edsshellext.dll"
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
"HKCU\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKCU\Software\Classes\Directory\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers"   ""   ""   ""
+ "EDSshellExt"   "Shell Extension Module"   "(Not Verified) HiTRUST"   "c:\windows\system32\edsshellext.dll"
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not Verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
"HKCU\Software\Classes\Directory\Shellex\DragDropHandlers"   ""   ""   ""
"HKLM\Software\Classes\Directory\Shellex\DragDropHandlers"   ""   ""   ""
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not Verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
"HKCU\Software\Classes\Directory\Shellex\PropertySheetHandlers"   ""   ""   ""
"HKLM\Software\Classes\Directory\Shellex\PropertySheetHandlers"   ""   ""   ""
"HKCU\Software\Classes\Directory\Shellex\CopyHookHandlers"   ""   ""   ""
"HKLM\Software\Classes\Directory\Shellex\CopyHookHandlers"   ""   ""   ""
+ "FileZilla3CopyHook"   "fzshellext Dynamic Link Library"   ""   "c:\program files\filezilla ftp client\fzshellext.dll"
"HKCU\Software\Classes\Folder\Shellex\ColumnHandlers"   ""   ""   ""
"HKLM\Software\Classes\Folder\Shellex\ColumnHandlers"   ""   ""   ""
+ "PDF Shell Extension"   "PDF Shell Extension"   "(Not verified) Adobe Systems, Inc."   "c:\program files\common files\adobe\acrobat\activex\pdfshell.dll"
"HKCU\Software\Classes\Folder\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers"   ""   ""   ""
+ "avast"   "avast! Shell Extension"   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\ashshell.dll"
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not Verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
"HKCU\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers"   ""   ""   ""
"HKCU\Software\Microsoft\Ctf\LangBarAddin"   ""   ""   ""
"HKLM\Software\Microsoft\Ctf\LangBarAddin"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved"   ""   ""   ""
+ "Carpetas Web"   ""   ""   "c:\program files\common files\microsoft shared\web folders\msonsext.dll"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved"   ""   ""   ""
+ "avast"   "avast! Shell Extension"   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\ashshell.dll"
+ "EPM-PO Shell Extension"   ""   ""   "File not found: epm-po.dll"
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not Verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not Verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not Verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects"   ""   ""   ""
+ "Aplicación auxiliar de vínculos de Adobe PDF Reader"   "Adobe PDF Helper for Internet Explorer"   "(Verified) Adobe Systems, Incorporated"   "c:\program files\common files\adobe\acrobat\activex\acroiehelper.dll"
+ "ShowBarObj Class"   "ActiveToolBand Module"   "(Not verified) HiTRUST"   "c:\windows\system32\activetoolband.dll"
+ "Yahoo! Toolbar Helper"   "Yahoo! Toolbar"   "(Verified) Yahoo! Inc."   "c:\program files\yahoo!\companion\installs\cpn\yt.dll"
"HKCU\Software\Microsoft\Internet Explorer\UrlSearchHooks"   ""   ""   ""
"HKLM\Software\Microsoft\Internet Explorer\Toolbar"   ""   ""   ""
+ "Acer eDataSecurity Management"   "eDStoolbar Module"   "(Not verified) HiTRUST"   "c:\windows\system32\edstoolbar.dll"
+ "Barra Yahoo! con bloqueador de ventanas emergentes"   "Yahoo! Toolbar"   "(Verified) Yahoo! Inc."   "c:\program files\yahoo!\companion\installs\cpn\yt.dll"
"HKCU\Software\Microsoft\Internet Explorer\Explorer Bars"   ""   ""   ""
"HKLM\Software\Microsoft\Internet Explorer\Explorer Bars"   ""   ""   ""
"HKCU\Software\Microsoft\Internet Explorer\Extensions"   ""   ""   ""
"HKLM\Software\Microsoft\Internet Explorer\Extensions"   ""   ""   ""
"Task Scheduler"   ""   ""   ""
"HKLM\System\CurrentControlSet\Services"   ""   ""   ""
+ "aawservice"   "Protects your computer from spyware"   "(Verified) Lavasoft AB"   "c:\program files\lavasoft\ad-aware\aawservice.exe"
+ "Apache2.2"   "Apache/2.2.14 (Win32) DAV/2 mod_ssl/2.2.14 OpenSSL/0.9.8l mod_autoindex_color PHP/5.3.1 mod_apreq2-20090110/2.7.1 mod_perl/2.0.4 Perl/v5.10.1"   "(Verified) Carsten Wiedmann"   "c:\xampp\apache\bin\httpd.exe"
+ "avast! Antivirus"   "Administra e implementa los servicios de avast! antivirus para este equipo. Esto incluye la protección residente, el baúl de virus y el programador de tareas."   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\avastsvc.exe"
+ "avast! Mail Scanner"   "Implementa el análisis de correo electrónico de avast! antivirus."   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\avastsvc.exe"
+ "avast! Web Scanner"   "Implementa análisis de la web (HTTP) de avast! antivirus."   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\avastsvc.exe"
+ "CLTNetCnService"   "Symantec Lic NetConnect Service"   ""   "File not found: C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe"
+ "eLockService"   "Acer eLock Management Service"   "(Not verified) Acer Inc."   "c:\acer\empowering technology\elock\service\elockserv.exe"
+ "eNet Service"   "Acer eNet Management Service"   "(Not verified) Acer Inc."   "c:\acer\empowering technology\enet\enet service.exe"
+ "eRecoveryService"   "Acer eRecovery Management"   "(Not verified) Acer Inc."   "c:\acer\empowering technology\erecovery\erecoveryservice.exe"
+ "eSettingsService"   "Acer eSettings Management Service"   ""   "c:\acer\empowering technology\esettings\service\capuserv.exe"
+ "EvtEng"   "Manages the event trace messages for all the Intel® PROSet/Wireless Software components."   "(Not verified) Intel(R) Corporation"   "c:\program files\intel\wifi\bin\evteng.exe"
+ "IDriverT"   "Provides support for the Running Object Table for InstallShield Drivers"   "(Not verified) Macrovision Corporation"   "c:\program files\common files\installshield\driver\11\intel 32\idrivert.exe"
+ "LightScribeService"   "Used by the LightScribe software components to support 3rd party disc labeling applications using the LightScribe COM Application Programming Interface (LSCAPI). This service needs to run for LightScribe direct disc labeling to work."   "(Not verified) Hewlett-Packard Company"   "c:\program files\common files\lightscribe\lssrvc.exe"
+ "LiveUpdate"   "Motor del núcleo de LiveUpdate"   "(Verified) Symantec Corporation"   "c:\program files\symantec\liveupdate\lucomserver_3_2.exe"
+ "MobilityService"   ""   ""   "c:\acer\mobility center\mobilityservice.exe"
+ "MySQL"   "MySQL Server (Win32)"   "(Verified) Carsten Wiedmann"   "c:\xampp\mysql\bin\mysqld.exe"
+ "Programador de LiveUpdate automático"   "Administra la programación de las sesiones de LiveUpdate automático"   "(Verified) Symantec Corporation"   "c:\program files\symantec\liveupdate\aluschedulersvc.exe"
+ "RegSrvc"   "Provides registry access to all Intel® PROSet/Wireless Software components"   "(Not verified) Intel(R) Corporation"   "c:\program files\common files\intel\wirelesscommon\regsrvc.exe"
+ "RichVideo"   "RichVideo Module"   ""   "c:\program files\cyberlink\shared files\richvideo.exe"
+ "WMIService"   "Acer ePower Management Service"   "(Not verified) acer"   "c:\acer\empowering technology\epower\epowersvc.exe"
"HKLM\System\CurrentControlSet\Services"   ""   ""   ""
+ "aswFsBlk"   "avast! mini-filter driver (aswFsBlk)"   "(Verified) ALWIL Software"   "c:\windows\system32\drivers\aswfsblk.sys"
+ "aswMonFlt"   "avast! mini-filter driver (aswMonFlt)"   "(Verified) ALWIL Software"   "c:\windows\system32\drivers\aswmonflt.sys"
+ "aswRdr"   "avast! TDI Redirect driver"   "(Verified) ALWIL Software"   "c:\windows\system32\drivers\aswrdr.sys"
+ "aswSP"   "avast! Self Protection"   "(Verified) ALWIL Software"   "c:\windows\system32\drivers\aswsp.sys"
+ "aswTdi"   "avast! Network Shield TDI driver"   "(Verified) ALWIL Software"   "c:\windows\system32\drivers\aswtdi.sys"
+ "DritekPortIO"   "General Port I/O"   "(Verified) Dritek System Inc."   "c:\program files\launch manager\dportio.sys"
+ "int15"   "Acer int15 service"   ""   "c:\acer\empowering technology\erecovery\int15.sys"
+ "IpInIp"   "IP in IP Tunnel Driver"   ""   "File not found: system32\DRIVERS\ipinip.sys"
+ "NTIDrvr"   "NTI CD-ROM Filter Driver"   "(Not verified) NewTech Infosystems, Inc."   "c:\windows\system32\drivers\ntidrvr.sys"
+ "NwlnkFlt"   "IPX Traffic Filter Driver"   ""   "File not found: system32\DRIVERS\nwlnkflt.sys"
+ "NwlnkFwd"   "IPX Traffic Forwarder Driver"   ""   "File not found: system32\DRIVERS\nwlnkfwd.sys"
+ "PSDFilter"   "PSDFilter Filter Driver"   "(Not verified) HiTRUST"   "c:\windows\system32\drivers\psdfilter.sys"
+ "PSDNServ"   "PSD Named Pipe Driver"   "(Not verified) HiTRUST"   "c:\windows\system32\drivers\psdnserv.sys"
+ "psdvdisk"   "PSD Virtual Disk Driver"   "(Not verified) HiTRUST"   "c:\windows\system32\drivers\psdvdisk.sys"
+ "UBHelper"   ""   ""   "c:\windows\system32\drivers\ubhelper.sys"
+ "UIUSys"   ""   ""   "File not found: system32\DRIVERS\UIUSYS.SYS"
"HKCU\Software\Microsoft\Windows NT\CurrentVersion\Drivers32"   ""   ""   ""
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32"   ""   ""   ""
+ "msacm.mkdmp3enc"   ""   ""   "File not found: C:\PROGRA~1\ACERAR~1\DVWIZA~1\Kernel\Burner\MKDMP3Enc.ACM"
"HKCU\Software\Classes\Filter"   ""   ""   ""
"HKLM\Software\Classes\Filter"   ""   ""   ""
"HKLM\Software\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance"   ""   ""   ""
+ "Aspect Ratio Resizer 16x9"   "Aspect Ratio Converter"   "(Not verified) muvee Technologies Pte Ltd"   "c:\program files\common files\muvee technologies\030625\aspectratioconverter16x9.ax"
+ "Aspect Ratio Resizer 4x3"   "Aspect Ratio Converter"   "(Not verified) muvee Technologies Pte Ltd"   "c:\program files\common files\muvee technologies\030625\aspectratioconverter4x3.ax"
+ "CyberLink AudAna Filter"   "CLAudAna"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdaudana.dll"
+ "CyberLink Audio Commercial Cut Analyzer"   "CLAudCM"   "(Not verified) Cyberlink Corp."   "c:\program files\cyberlink\powerproducer\claudcm.ax"
+ "CyberLink Audio Commercial Cut Analyzer"   "CLAudCM"   "(Not verified) Cyberlink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\video\claudcm.ax"
+ "CyberLink Audio Commercial Cut Analyzer"   "CLAuCM"   "(Not verified) Cyberlink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\claudcm.ax"
+ "CyberLink Audio Decoder"   "CyberLink Audio Decoder Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvclaud.ax"
+ "CyberLink Audio Decoder"   "CyberLink Audio Decoder Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\claud.ax"
+ "CyberLink Audio Decoder"   "CyberLink Audio Decoder Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdaud.ax"
+ "CyberLink Audio Decoder"   "CyberLink Audio Decoder Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\ppaud.ax"
+ "CyberLink Audio Decoder (PCM45)"   "CyberLink Audio Decoder Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\claud.ax"
+ "CyberLink Audio Decoder (PCM45)"   "CyberLink Audio Decoder Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\claud.ax"
+ "CyberLink Audio Effect"   "CyberLink Audio Effect Filter"   "(Not verified) CyberLink Corporation"   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\claudfx.ax"
+ "CyberLink Audio Effect (PCM45)"   "CyberLink Audio Effect Filter"   "(Not verified) CyberLink Corporation"   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\claudfx.ax"
+ "CyberLink Audio Effect (PCM45)"   "CyberLink Audio Effect Filter"   "(Not verified) CyberLink Corporation"   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\claudfx.ax"
+ "CyberLink Audio Encoder"   "CyberLink Audio Encoder Filter"   "(Not verified) Cyberlink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\claudenc.ax"
+ "CyberLink Audio Encoder"   "CyberLink Audio Encoder Filter"   "(Not verified) Cyberlink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdaudenc.ax"
+ "CyberLink Audio Encoder"   "CyberLink Audio Encoder Filter"   "(Not verified) Cyberlink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvclaudenc.ax"
+ "CyberLink Audio Noise Reduction"   "CLAuNR"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\claunrwrapper.ax"
+ "CyberLink Audio Noise Reduction"   "CLAuNR"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\claunrwrapper.ax"
+ "CyberLink Audio Null Renderer Filter"   "CLScnDt2"   "(Not verified) ????"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdaudionullrenderer.dll"
+ "CyberLink Audio Resampler"   "CLAuRsmpl.ax"   "(Not verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\ppaursmpl.ax"
+ "CyberLink Audio Resampler"   "CLAuRsmpl.ax"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvaursmpl.ax"
+ "CyberLink Audio Resampler"   "CLAuRsmpl.ax"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\claursmpl.ax"
+ "CyberLink Audio Resampler"   "CLAuRsmpl.ax"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdaursmpl.ax"
+ "CyberLink AudioCD Filter (PCM45)"   "CyberLink AudioCD Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\claudiocd.ax"
+ "CyberLink AudioCD Filter (PCM45)"   "CyberLink AudioCD Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\claudiocd.ax"
+ "Cyberlink Byte Counter Filter"   "Cyberlink Byte Counter Filter"   "(Not verified) CyberLink Corporation"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvbytecounter.ax"
+ "CyberLink DDR"   "CyberLink DDR"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvrender.ax"
+ "CyberLink Demultiplexer"   "MPEG-2 Dempltiplexer"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\cldemuxer.ax"
+ "CyberLink Demultiplexer"   "MPEG-2 Dempltiplexer"   "(Not verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\ppdemuxer.ax"
+ "CyberLink Demultiplexer"   "MPEG-2 Dempltiplexer"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvcldemuxer.ax"
+ "CyberLink Demultiplexer"   "MPEG-2 Dempltiplexer"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mddemuxer.ax"
+ "CyberLink Demultiplexer (PCM45)"   "MPEG-2 Dempltiplexer"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\cldemuxer.ax"
+ "CyberLink Demultiplexer (PCM45)"   "MPEG-2 Dempltiplexer"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\cldemuxer.ax"
+ "CyberLink Double Pin Tee"   "Cyberlink Double Tee Filter"   "(Not verified) CtberLink Corporation"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvdoubletee.ax"
+ "Cyberlink Dump Dispatch Filter"   "Cyberlink File Dump Dispatch Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\cldumpdispatch.ax"
+ "Cyberlink Dump Dispatch Filter"   "Cyberlink File Dump Dispatch Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mddumpdispatch.ax"
+ "Cyberlink Dump Dispatch Filter"   "Cyberlink File Dump Dispatch Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvcldumpdispatch.ax"
+ "Cyberlink Dump Filter"   "Cyberlink File Dump Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvcldump.ax"
+ "Cyberlink Dump Filter"   "Cyberlink File Dump Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\cldump.ax"
+ "Cyberlink Dump Filter"   "Cyberlink File Dump Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mddump.ax"
+ "CyberLink DV Buffer"   "DV dump Filter"   "(Not verified) CyberLink Corporation"   "c:\program files\cyberlink\powerproducer\ppdvdump.ax"
+ "CyberLink DV Buffer"   "CLDVBuffer Filter"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvbuffer.ax"
+ "CyberLink DV Dump Filter"   "DV dump Filter"   "(Not verified) CyberLink Corporation"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvdump.ax"
+ "CyberLink DV Filter"   "DVTCR"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvtcr.ax"
+ "CyberLink DV Reader Filter"   "DVMultReader Filter"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvdvmrd.ax"
+ "CyberLink DVD Navigator"   "CyberLink DVD Navigation Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\ppnavx.ax"
+ "CyberLink DVD Navigator (PCM45)"   "CyberLink DVD Navigation Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\clnavx.ax"
+ "CyberLink DVD Navigator (PCM45)"   "CyberLink DVD Navigation Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\clnavx.ax"
+ "CyberLink DVSD Modifier"   "Cyberlink DVSD Modifier"   "(Not verified) Cyberlink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvsdmodifier.ax"
+ "CyberLink Editing Service 3.0 (Source)"   "CES Kernel"   "(Not verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\cledtkrn.dll"
+ "CyberLink Editing Service 3.0 (Source)"   "CES Kernel"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\cledtkrn.dll"
+ "CyberLink Editing Service 3.0 (Source)"   "CES Kernel"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\cledtkrn.dll"
+ "CyberLink Frame Parser"   "CLFParser"   "(Not verified) CyberLink"   "c:\program files\cyberlink\powerproducer\clfparser.ax"
+ "Cyberlink Gate Filter"   "CLGate"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvgate.ax"
+ "CyberLink Line21 Decoder Filter (PCM45)"   "CyberLink Line21 Decoder Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\clline21.ax"
+ "CyberLink Line21 Decoder Filter (PCM45)"   "CyberLink Line21 Decoder Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\clline21.ax"
+ "CyberLink Load Image Filter"   "CLImage"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\climage.ax"
+ "CyberLink Load Image Filter"   "CLImage"   "(Not verified) CyberLink"   "c:\program files\cyberlink\shared files\climage.ax"
+ "CyberLink Load Image Filter"   "CLImage"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\climage.ax"
+ "CyberLink MP3 Wrapper-PCM"   "CyberLink MP3 Wrapper"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\music\clmp3wrap.ax"
+ "CyberLink MP3 Wrapper-PCM"   "CyberLink MP3 Wrapper"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\music\clmp3wrap.ax"
+ "CyberLink MPEG Decoder"   "CyberLink Video/SP Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdmvd.ax"
+ "CyberLink MPEG Muxer"   "MpgMux"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvmpgmux.ax"
+ "CyberLink MPEG Muxer"   "MpgMux"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\mpgmux.ax"
+ "CyberLink MPEG Muxer"   "MpgMux"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdmpgmux.ax"
+ "CyberLink MPEG Splitter"   "CyberLink MPEG Splitter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\video\clsplter.ax"
+ "CyberLink MPEG Video Encoder"   "CyberLink MPEG Video Encoder                               "   "(Not verified) CyberLink Corp.                                            "   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\clvidenc.ax"
+ "CyberLink MPEG Video Encoder"   "CyberLink MPEG Video Encoder                               "   "(Not verified) CyberLink Corp.                                            "   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdvidenc.ax"
+ "CyberLink MPEG Video Encoder"   "CyberLink MPEG Video Encoder                               "   "(Not verified) CyberLink Corp.                                            "   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvvidenc.ax"
+ "Cyberlink Scene Detect Filter"   "CLScnDt"   "(Not verified) CyberLink"   "c:\program files\cyberlink\powerproducer\ppscndt.ax"
+ "CyberLink Scene Detect Filter 2"   "CLScnDt2"   "(Not verified) ????"   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\clscndt2.dll"
+ "CyberLink SnapShot Filter"   "CLSnapShot Filter"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvsnapshot.ax"
+ "CyberLink SnapShotTIP Filter"   ""   ""   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvclsshot.ax"
+ "CyberLink Stamp Effect"   ""   "(Not verified) CyberLink corporate"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvstampeffect.ax"
+ "Cyberlink Sub-Picture Filter"   "Cyberlink Sub-Picture Filter"   "(Not verified) Cyberlink"   "c:\program files\cyberlink\powerproducer\clsubpic.ax"
+ "Cyberlink SubTitle Importor (PCM45)"   "CLSubTitle.ax"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\clsubtitle.ax"
+ "Cyberlink SubTitle Importor (PCM45)"   "CLSubTitle.ax"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\clsubtitle.ax"
+ "CyberLink TimeStretch Filter"   "CLAuTS.ax"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\clauts.ax"
+ "CyberLink TimeStretch Filter (CES)"   "CLAuTS.ax"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\clauts.ax"
+ "CyberLink TimeStretch Filter (PCM45)"   "CLAuTS.ax"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\clauts.ax"
+ "CyberLink TimeStretch Filter (PCM45)"   "CLAuTS.ax"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\clauts.ax"
+ "CyberLink TL MPEG Splitter"   "CyberLink MPEG Splitter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\cltlmsplter.ax"
+ "CyberLink TL MPEG Splitter"   "CyberLink MPEG Splitter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvtlmsplter.ax"
+ "CyberLink TL MPEG-1 Splitter"   "CyberLink MPEG Splitter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdtlm1splter.ax"
+ "CyberLink TL MPEG-2 Splitter"   "CyberLink MPEG Splitter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdtlm2splter.ax"
+ "Cyberlink TS Information"   "CLTSInfo"   "(Not verified) Cyberlink"   "c:\program files\cyberlink\powerproducer\pptsinfo.ax"
+ "Cyberlink TS Information"   "CLTSInfo"   "(Not verified) Cyberlink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvcltsinfo.ax"
+ "CyberLink VAudAna Filter"   "CLVAudAna"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdvaudana.dll"
+ "CyberLink VidAna Filter"   "CLVidAna"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdvidana.dll"
+ "CyberLink Video Effect"   "CLVidFx"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvclvidfx.ax"
+ "CyberLink Video Effect"   "CLVidFx"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\clvidfx.ax"
+ "CyberLink Video Effect"   "CLVidFx"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\clvidfx.ax"
+ "CyberLink Video Effect (PCM45)"   "CLVidFx"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\clvidfx.ax"
+ "CyberLink Video Effect (PCM45)"   "CLVidFx"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\clvidfx.ax"
+ "CyberLink Video Regulator"   "CLRGL"   "(Not verified) Cyberlink"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\clrgl.ax"
+ "CyberLink Video Regulator"   "CLRGL"   "(Not verified) Cyberlink"   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\clrgl.ax"
+ "Cyberlink Video Regulator"   "CyberLink Video Regulator"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvresample.ax"
+ "CyberLink Video Stabilizer"   "CLVideoDeShaking"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\clvideostabilizer.ax"
+ "CyberLink Video/SP Decoder"   "CyberLink Video/SP Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvvsd.ax"
+ "CyberLink Video/SP Decoder"   "CyberLink Video/SP Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\clvsd.ax"
+ "CyberLink Video/SP Decoder"   "CyberLink Video/SP Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdvsd.ax"
+ "CyberLink Video/SP Decoder"   "CyberLink Video/SP Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\ppvsd.ax"
+ "CyberLink Video/SP Decoder (PCM45)"   "CyberLink Video/SP Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\clvsd.ax"
+ "CyberLink Video/SP Decoder (PCM45)"   "CyberLink Video/SP Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\clvsd.ax"
+ "CyberLink Video/SP Decoder (ShEX)"   "CyberLink Video/SP Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\video\climagevsd.ax"
+ "CyberLink Video/SP Decoder (ShEX)"   "CyberLink Video/SP Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\video\climagevsd.ax"
+ "CyberLink YUY2 DeInterlace"   "DitlYuY2"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvditlyuy2.ax"
+ "CyberLink YUY2 Sub-Sampling"   "SubYUY2 Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvsubyuy2.ax"
+ "Honestech VCD/SVCD Encoder"   "honest technology, VCD/SVCD encoder"   "(Not verified) honest technology"   "c:\windows\system32\htvcdsvcd70.ax"
+ "IDM Filter"   "idmf"   "(Not verified) Cyberlink"   "c:\program files\acer arcade deluxe\dvdivine\kernel\video\idmf.ax"
+ "IDM Filter"   "idmf"   "(Not verified) Cyberlink"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdidmf.ax"
+ "IDM Filter"   "idmf"   "(Not verified) Cyberlink"   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\idmf.ax"
+ "MainConcept (Nikon) MPEG Audio Decoder"   "MPEG Video and Audio Decoder"   "(Not verified) MainConcept AG (Nikon)"   "c:\program files\common files\nikon\mpeg\nikondsmpeg.ax"
+ "MainConcept (Nikon) MPEG Encoder"   "MPEG Encoder and Muxer"   "(Not verified) MainConcept AG (Nikon)"   "c:\program files\common files\nikon\mpeg\nikonesmpeg.ax"
+ "MainConcept (Nikon) MPEG Splitter"   "Mpeg I/II Splitter"   "(Not verified) MainConcept AG (Nikon)"   "c:\program files\common files\nikon\mpeg\nikonspmpeg.ax"
+ "MainConcept (Nikon) MPEG Video Decoder"   "MPEG Video and Audio Decoder"   "(Not Verified) MainConcept AG (Nikon)"   "c:\program files\common files\nikon\mpeg\nikondsmpeg.ax"
+ "MDR TL MPEG Splitter"   "CyberLink MPEG Splitter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdtlmsplter.ax"
+ "muvee Music Analyser"   "Music Analyser Filter for muvee autoProducer"   "(Not verified) muvee Technologies Pte Ltd"   "c:\program files\common files\muvee technologies\030625\mvmanalyse.ax"
+ "muvee Video Analyser"   "Video Analyser Filter for muvee autoProducer"   "(Not verified) muvee Technologies Pte Ltd"   "c:\program files\common files\muvee technologies\030625\mvvanalyse.ax"
+ "muvee WAV Encoder"   "mvWavEncoder Filter (Sample)"   "(Not verified) Microsoft Corporation"   "c:\program files\common files\muvee technologies\030625\mvwavenc.ax"
+ "PDR Video Effect"   "CLVidFx"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\clvidfx.ax"
+ "PowerProducer Double Tee"   "Cyberlink Double Tee Filter"   "(Not verified) CtberLink Corporation"   "c:\program files\cyberlink\powerproducer\ppdoubletee.ax"
+ "PP Audio Decoder"   "CyberLink Audio Decoder Filter"   "(Not verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\claud.ax"
+ "PP Audio Effect"   "CyberLink Audio Effect Filter"   "(Not verified) CyberLink Corporation"   "c:\program files\cyberlink\powerproducer\claudfx.ax"
+ "PP Audio Encoder"   "CyberLink Audio Encoder Filter"   "(Not verified) Cyberlink Corp."   "c:\program files\cyberlink\powerproducer\ppaudenc.ax"
+ "PP Audio Noise Reduction (CES)"   "CLAuNR"   "(Not verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\claunrwrapper.ax"
+ "PP Byte Counter"   "PP Byte Counter"   "(Not verified) CyberLink Corporation"   "c:\program files\cyberlink\powerproducer\ppbytecounter.ax"
+ "PP DDR"   "PP DDR"   "(Not verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\pprender.ax"
+ "PP Dump Dispatch Filter"   "Cyberlink File Dump Dispatch Filter"   "(Not verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\ppdumpdispatch.ax"
+ "PP Dump Filter"   "Cyberlink File Dump Filter"   "(Not verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\ppdump.ax"
+ "PP DV Buffer"   "CLDVBuffer Filter"   "(Not verified) CyberLink"   "c:\program files\cyberlink\powerproducer\ppdvbuffer.ax"
+ "PP DV Dump Filter"   "DV dump Filter"   "(Not Verified) CyberLink Corporation"   "c:\program files\cyberlink\powerproducer\ppdvdump.ax"
+ "PP DV Reader Filter"   "DVMultReader Filter"   "(Not verified) CyberLink"   "c:\program files\cyberlink\powerproducer\ppdvmrd.ax"
+ "PP DV TCR"   "DVTCR"   "(Not verified) CyberLink"   "c:\program files\cyberlink\powerproducer\ppdvtcr.ax"
+ "PP File Reader (Async.)"   "Cyberlink MPEG File Reader"   "(Not verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\ppreader.ax"
+ "PP Gate Filter"   "CLGate"   "(Not verified) CyberLink"   "c:\program files\cyberlink\powerproducer\ppgate.ax"
+ "PP IDM"   "idmf"   "(Not verified) Cyberlink"   "c:\program files\cyberlink\powerproducer\ppidmf.ax"
+ "PP M2V Writer"   "CLM2VWriter"   "(Not verified) CyberLink"   "c:\program files\cyberlink\powerproducer\ppm2vwriter.ax"
+ "PP MPEG Muxer"   "MpgMux"   "(Not verified) CyberLink"   "c:\program files\cyberlink\powerproducer\ppmpgmux.ax"
+ "PP MPEG Video Encoder"   "CyberLink MPEG Video Encoder                               "   "(Not verified) CyberLink Corp.                                            "   "c:\program files\cyberlink\powerproducer\ppvidenc.ax"
+ "PP MPEG-1 Splitter"   "CyberLink MPEG Splitter"   "(Not verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\ppm1splter.ax"
+ "PP MPEG-2 Splitter"   "CyberLink MPEG Splitter"   "(Not verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\ppm2splter.ax"
+ "PP PCM Wrapper"   "PP PCM Wrapper"   "(Not verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\pppcmenc.ax"
+ "PP Snapshot Filter"   "CLSnapShot Filter"   "(Not verified) CyberLink"   "c:\program files\cyberlink\powerproducer\ppsnapshot.ax"
+ "PP SnapShotTIP Filter"   "CLSShot"   "(Not verified) CyberLink"   "c:\program files\cyberlink\powerproducer\ppsshot.ax"
+ "PP TimeStretch Filter (CES)"   "CLAuTS.ax"   "(Not verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\clauts.ax"
+ "PP TL MPEG Splitter"   "CyberLink MPEG Splitter"   "(Not verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\pptlmsplter.ax"
+ "PP Video Decoder"   "CyberLink Video/SP Filter"   "(Not verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\ppgenericvsd.ax"
+ "PP Video Effect"   "CLVidFx"   "(Not verified) CyberLink"   "c:\program files\cyberlink\powerproducer\ppvidfx.ax"
+ "PP Video Regulator"   "CyberLink Video Regulator"   "(Not verified) CyberLink"   "c:\program files\cyberlink\powerproducer\ppresample.ax"
+ "PP Video Regulator"   "CLRGL"   "(Not verified) Cyberlink"   "c:\program files\cyberlink\powerproducer\clrgl.ax"
+ "PP Video Stabilizer"   "CLVideoDeShaking"   "(Not verified) CyberLink"   "c:\program files\cyberlink\powerproducer\clvideostabilizer.ax"
+ "PP WAV Dest"   "CLWavDest"   "(Not verified) CyberLink"   "c:\program files\cyberlink\powerproducer\ppwavdest.ax"
+ "PP WAV Dest"   "CLWavDest"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\clwavdest.ax"
+ "PP YUY2 Deinterlace"   "DitlYuY2"   "(Not verified) CyberLink"   "c:\program files\cyberlink\powerproducer\ppditlyuy2.ax"
+ "PP YUY2 Sub-Sampling"   "SubYUY2 Filter"   "(Not verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\ppsubyuy2.ax"
+ "QuickTime Encoder"   "QuickTime Encoder"   "(Not verified) muvee Technologies"   "c:\program files\common files\muvee technologies\030625\quicktimesink.ax"
+ "QuickTime Source Filter"   "QuickTimeSource Module"   ""   "c:\program files\common files\muvee technologies\030625\quicktimesource.dll"
+ "QuickTimeRenderer Filter"   "QuickTimeRenderer Filter"   "(Not verified) muvee Technologies Pte. Ltd."   "c:\program files\common files\muvee technologies\030625\quicktimerenderer.ax"
+ "Time Regulator"   "TimeRegulator"   "(Not verified) cyberlink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvavi_audtr.ax"
+ "Time Regulator"   "TimeRegulator"   "(Not verified) cyberlink"   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\avi_audtr.ax"
+ "Time Regulator"   "TimeRegulator"   "(Not verified) cyberlink"   "c:\program files\cyberlink\powerproducer\avi_audtr.ax"
"HKLM\Software\Classes\CLSID\{AC757296-3522-4E11-9862-C17BE5A1767E}\Instance"   ""   ""   ""
"HKLM\Software\Classes\CLSID\{7ED96837-96F0-4812-B211-F13C24117ED3}\Instance"   ""   ""   ""
"HKLM\Software\Classes\CLSID\{ABE3B9A4-257D-4B97-BD1A-294AF496222E}\Instance"   ""   ""   ""
"HKLM\System\CurrentControlSet\Control\Session Manager\BootExecute"   ""   ""   ""
+ "lsdelete"   ""   "(Verified) Lavasoft AB"   "c:\windows\system32\lsdelete.exe"
"HKLM\System\CurrentControlSet\Control\Session Manager\SetupExecute"   ""   ""   ""
"HKLM\System\CurrentControlSet\Control\Session Manager\Execute"   ""   ""   ""
"HKLM\System\CurrentControlSet\Control\Session Manager\S0InitialCommand"   ""   ""   ""
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options"   ""   ""   ""
"HKLM\Software\Microsoft\Command Processor\Autorun"   ""   ""   ""
"HKCU\Software\Microsoft\Command Processor\Autorun"   ""   ""   ""
"HKCU\SOFTWARE\Classes\Exefile\Shell\Open\Command\(Default)"   ""   ""   ""
"HKLM\SOFTWARE\Classes\Exefile\Shell\Open\Command\(Default)"   ""   ""   ""
"HKLM\Software\Classes\.exe"   ""   ""   ""
"HKCU\Software\Classes\.exe"   ""   ""   ""
"HKLM\Software\Classes\.cmd"   ""   ""   ""
"HKCU\Software\Classes\.cmd"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\Appinit_Dlls"   ""   ""   ""
"HKLM\System\CurrentControlSet\Control\Session Manager\KnownDlls"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\System"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\UIHost"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Provider Filters"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\PLAP Providers"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GinaDLL"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Taskman"   ""   ""   ""
"HKCU\SOFTWARE\Policies\Microsoft\Windows\Control Panel\Desktop\Scrnsave.exe"   ""   ""   ""
"HKCU\Control Panel\Desktop\Scrnsave.exe"   ""   ""   ""
"HKLM\System\CurrentControlSet\Control\BootVerificationProgram\ImagePath"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\SaveDumpStart"   ""   ""   ""
"HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries"   ""   ""   ""
"HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries"   ""   ""   ""
"HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors"   ""   ""   ""
"HKLM\SYSTEM\CurrentControlSet\Control\SecurityProviders\SecurityProviders"   ""   ""   ""
"HKLM\SYSTEM\CurrentControlSet\Control\Lsa\Authentication Packages"   ""   ""   ""
"HKLM\SYSTEM\CurrentControlSet\Control\Lsa\Notification Packages"   ""   ""   ""
"HKLM\SYSTEM\CurrentControlSet\Control\Lsa\Security Packages"   ""   ""   ""
"HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order"   ""   ""   ""
"C:\Users\miequipo\AppData\Local\Microsoft\Windows Sidebar\Settings.ini"   ""   ""   ""
Título: Re: a s-quared o similar
Publicado por: Trebol en 19 de Agosto de 2010, 06:11:17 pm
me recomiendas pase un antivirus on-line y cual??
Gracias y disculpen.
Título: Re: a s-quared o similar
Publicado por: Mr_X en 19 de Agosto de 2010, 06:38:27 pm
No, no encontro nada el avast, pase en modo normal, y minucioso y no pillo nada, aunque antes de pasar el autonrun tampoco, porlo que no sé si me convence se ha desinfectado ¿cómo poder comprobar?

Los logs no muestran nada raro... ¿Cómo se comporta el equipo?

Prueba pasar algún antivirus 'on-line', como, por ejemplo, el TrendMicro (http://housecall.trendmicro.com/es/) y/o el Panda (http://www.pandasecurity.com/spain/homeusers/solutions/activescan/)...
Título: Re: a s-quared o similar
Publicado por: Trebol en 19 de Agosto de 2010, 11:00:02 pm
lo noto un poco mejor, pero a la hora de iniciar como que tarda un poco, no sé... he vuelto a hacerle un escaneo desde todos los estados con avast y no me coge nada.
Por esto pregunto si uno on-line o el squared nuevamente, confío en que si me dices esta limpio ;)

De ambos antivirus hay que bajar un .exe para usarlos no???

Y si no es mucha la pregunta... Qué archivos tenía afectados?? los que señale en el log de autoruns ?¿?¿? es para saber un poco
Título: Re: a s-quared o similar
Publicado por: Mr_X en 20 de Agosto de 2010, 01:11:27 am
Para que te sientas más segura, pasa lo antivirus en línea. Y sí, tienes que descargar un ejecutable para usar la revisión en línea...

El problema eran el archivo C:\Windows\system32\vwbudlmrkgsxcwamb.dll y una entrada del registro de Windows que hacía que siempre estuviera activo el anterior...
Título: Re: a s-quared o similar
Publicado por: Trebol en 20 de Agosto de 2010, 01:32:37 am
Para que te sientas más segura, pasa lo antivirus en línea. Y sí, tienes que descargar un ejecutable para usar la revisión en línea...

El problema eran el archivo C:\Windows\system32\vwbudlmrkgsxcwamb.dll y una entrada del registro de Windows que hacía que siempre estuviera activo el anterior...

Gracias Mr_X por la infor del que andaba dando guerra, paso el on-line y cuento, sólo una pregunta, el trendmicro, hay dos versiones de descarga, entre lo dos... ¿cual más fiable?
Título: Re: a s-quared o similar
Publicado por: Mr_X en 20 de Agosto de 2010, 01:37:30 am
... sólo una pregunta, el trendmicro, hay dos versiones de descarga, entre lo dos... ¿cual más fiable?

No es que sean dos versiones diferentes en cuanto a funcionalidad, sino son para dos diferentes tipos de sistema operativo. En tu caso:

Citar
Descargar HouseCall 7.1 (32 bits)
Título: Re: a s-quared o similar
Publicado por: Trebol en 20 de Agosto de 2010, 02:04:52 am
... sólo una pregunta, el trendmicro, hay dos versiones de descarga, entre lo dos... ¿cual más fiable?

No es que sean dos versiones diferentes en cuanto a funcionalidad, sino son para dos diferentes tipos de sistema operativo. En tu caso:

Citar
Descargar HouseCall 7.1 (32 bits)

ok, eso haré... te gusta más que panda no??
Título: Re: a s-quared o similar
Publicado por: Trebol en 20 de Agosto de 2010, 03:55:40 pm
Pillados 2  :pardiez: :pardiez: :pardiez: :pardiez: :verysad: tipo virus  :verysad: y acción solucionado una vez seleccione solucionar... por lo que presupongo ahora no debe haber nada ¿sin embargo, qué puedo continuar haciendo para asegurar todo esta limpio ahora?

el disck cleaner?... pasar nuevo otro antivirus-online, av scanner, a-squeared???
Gracias nuevamente.
Título: Re: a s-quared o similar
Publicado por: Mr_X en 20 de Agosto de 2010, 04:23:49 pm
¿Qué virus detectó?
Saca logs de HijackThis y Autoruns...
Título: Re: a s-quared o similar
Publicado por: Trebol en 20 de Agosto de 2010, 04:26:48 pm
mal sasfis-1 si me das un minuto te los pego ya  ;-)
Título: Re: a s-quared o similar
Publicado por: Trebol en 20 de Agosto de 2010, 04:38:30 pm
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:39:37, on 20/08/2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18943)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Launch Manager\LManager.exe
C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe
C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe
C:\Program Files\Acer\OrbiCam10\OrbiCam.exe
C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
C:\Program Files\QuickTime\qttask.exe
C:\Windows\WindowsMobile\wmdSync.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
C:\Windows\System32\rundll32.exe
C:\Acer\Empowering Technology\ACER.EMPOWERING.FRAMEWORK.SUPERVISOR.EXE
C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE
C:\Windows\system32\taskeng.exe
C:\Acer\Empowering Technology\ePower\ePower_DMC.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Windows\System32\mobsync.exe
C:\Windows\System32\notepad.exe
C:\Users\miequipo\Carpeta A\log registro\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.terra.es/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://es.es.acer.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://es.es.acer.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aplicación auxiliar de vínculos de Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Windows\system32\ActiveToolBand.dll
O2 - BHO: Aplicación auxiliar de inicio de sesión de Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Barra Yahoo! con bloqueador de ventanas emergentes - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Windows\system32\eDStoolbar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKLM\..\Run: [WarReg_PopUp] C:\Acer\WR_PopUp\WarReg_PopUp.exe
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LVCOMSX] "C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe"
O4 - HKLM\..\Run: [AcerOrbicamRibbon] "C:\Program Files\Acer\OrbiCam10\OrbiCam.exe" /hide
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Windows Mobile-based device management] %windir%\WindowsMobile\wmdSync.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKCU\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -startup
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
O4 - Startup: ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE
O4 - Global Startup: Empowering Technology Launcher.lnk = ?
O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Agregar entrada - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Agregar entrada en Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
O16 - DPF: {E62A8B6B-D91C-457C-B1FB-20CC2D96B4EC} (Comodo AV Scanner ActiveX) - http://eu5.download.comodo.com/avs/ComodoAVScanner.cab
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: @%SystemRoot%\system32\aelupsvc.dll,-1 (AeLookupSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe
O23 - Service: Apache2.2 - Apache Software Foundation - C:\xampp\apache\bin\httpd.exe
O23 - Service: @%systemroot%\system32\appinfo.dll,-100 (Appinfo) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-204 (AudioEndpointBuilder) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-200 (Audiosrv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\bfe.dll,-1001 (BFE) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\qmgr.dll,-1000 (BITS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\browser.dll,-100 (Browser) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-11 (CertPropSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: @%SystemRoot%\system32\cryptsvc.dll,-1001 (CryptSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @oleres.dll,-5012 (DcomLaunch) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe
O23 - Service: @%SystemRoot%\system32\dhcpcsvc.dll,-100 (Dhcp) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\dnsapi.dll,-101 (Dnscache) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dot3svc.dll,-1102 (dot3svc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dps.dll,-500 (DPS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\eapsvc.dll,-1 (EapHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\ehome\ehrecvr.exe,-101 (ehRecvr) - Unknown owner - C:\Windows\ehome\ehRecvr.exe
O23 - Service: @%SystemRoot%\ehome\ehsched.exe,-101 (ehSched) - Unknown owner - C:\Windows\ehome\ehsched.exe
O23 - Service: @%SystemRoot%\ehome\ehstart.dll,-101 (ehstart) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
O23 - Service: @%SystemRoot%\system32\emdmgmt.dll,-1000 (EMDMgmt) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: eNet Service - Acer Inc. - C:\Acer\Empowering Technology\eNet\eNet Service.exe
O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe
O23 - Service: @%SystemRoot%\system32\wevtsvc.dll,-200 (Eventlog) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @comres.dll,-2450 (EventSystem) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fdPHost.dll,-100 (fdPHost) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\fdrespub.dll,-100 (FDResPub) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\FntCache.dll,-100 (FontCache) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @gpapi.dll,-112 (gpsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\hidserv.dll,-101 (hidserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\kmsvc.dll,-6 (hkmsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ikeext.dll,-501 (IKEEXT) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\IPBusEnum.dll,-102 (IPBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\iphlpsvc.dll,-200 (iphlpsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\irmon.dll,-2000 (Irmon) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe
O23 - Service: @comres.dll,-2946 (KtmRm) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\srvsvc.dll,-100 (LanmanServer) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wkssvc.dll,-100 (LanmanWorkstation) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: @%SystemRoot%\system32\lltdres.dll,-1 (lltdsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\lmhsvc.dll,-101 (lmhosts) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\mmcss.dll,-100 (MMCSS) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: @%SystemRoot%\system32\FirewallAPI.dll,-23090 (MpsSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe
O23 - Service: @%SystemRoot%\system32\iscsidsc.dll,-5000 (MSiSCSI) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) - Unknown owner - C:\Windows\system32\msiexec.exe
O23 - Service: MySQL - MySQL AB - C:\xampp\mysql\bin\mysqld.exe
O23 - Service: @%SystemRoot%\system32\qagentrt.dll,-6 (napagent) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe
O23 - Service: @%SystemRoot%\system32\netman.dll,-109 (Netman) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\netprof.dll,-246 (netprofm) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\nlasvc.dll,-1 (NlaSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\nsisvc.dll,-200 (nsi) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8004 (p2pimsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8006 (p2psvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pcasvc.dll,-1 (PcaSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\pla.dll,-500 (pla) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\umpnpmgr.dll,-100 (PlugPlay) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8002 (PNRPAutoReg) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8000 (PNRPsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\polstore.dll,-5010 (PolicyAgent) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\profsvc.dll,-300 (ProfSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Programador de LiveUpdate automático - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%windir%\WindowsMobile\rapimgr.dll,-104 (RapiMgr) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasauto.dll,-200 (RasAuto) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasmans.dll,-200 (RasMan) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @regsvc.dll,-1 (RemoteRegistry) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe
O23 - Service: @oleres.dll,-5010 (RpcSs) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe
O23 - Service: @%SystemRoot%\System32\SCardSvr.dll,-1 (SCardSvr) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\schedsvc.dll,-100 (Schedule) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-13 (SCPolicySvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sdrsvc.dll,-107 (SDRSVC) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Sens.dll,-200 (SENS) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\SessEnv.dll,-1026 (SessionEnv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-12288 (ShellHWDetection) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe
O23 - Service: @%SystemRoot%\system32\SLUINotify.dll,-103 (SLUINotify) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe
O23 - Service: @%systemroot%\system32\ssdpsrv.dll,-100 (SSDPSRV) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sstpsvc.dll,-200 (SstpSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wiaservc.dll,-9 (stisvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\swprv.dll,-103 (swprv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sysmain.dll,-1000 (SysMain) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\TabSvc.dll,-100 (TabletInputService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tapisrv.dll,-10100 (TapiSrv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tbssvc.dll,-100 (TBS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\termsrv.dll,-268 (TermService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-8192 (Themes) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\mmcss.dll,-102 (THREADORDER) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\trkwks.dll,-1 (TrkWks) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\servicing\TrustedInstaller.exe,-100 (TrustedInstaller) - Unknown owner - C:\Windows\servicing\TrustedInstaller.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe
O23 - Service: @%systemroot%\system32\upnphost.dll,-213 (upnphost) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\dwm.exe,-2000 (UxSms) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe
O23 - Service: @%SystemRoot%\system32\w32time.dll,-200 (W32Time) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%windir%\WindowsMobile\wcescomm.dll,-40079 (WcesComm) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wcncsvc.dll,-3 (wcncsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\WcsPlugInService.dll,-200 (WcsPlugInService) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-502 (WdiServiceHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-500 (WdiSystemHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\webclnt.dll,-100 (WebClient) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wecsvc.dll,-200 (Wecsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wercplsupport.dll,-101 (wercplsupport) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wersvc.dll,-100 (WerSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\winhttp.dll,-100 (WinHttpAutoProxySvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmisvc.dll,-205 (Winmgmt) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wsmsvc.dll,-101 (WinRM) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wlansvc.dll,-257 (Wlansvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe
O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files\Windows Media Player\wmpnetwk.exe
O23 - Service: @%SystemRoot%\system32\wpcsvc.dll,-100 (WPCSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wpdbusenum.dll,-100 (WPDBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wscsvc.dll,-200 (wscsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\SearchIndexer.exe,-103 (WSearch) - Unknown owner - C:\Windows\system32\SearchIndexer.exe
O23 - Service: @%systemroot%\system32\wuaueng.dll,-105 (wuauserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wudfsvc.dll,-1000 (wudfsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 22791 bytes









y autorun

"HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Startup"   ""   ""   ""
"HKCU\Software\Policies\Microsoft\Windows\System\Scripts\Logon"   ""   ""   ""
"HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Logon"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit"   ""   ""   ""
"HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Shutdown"   ""   ""   ""
"HKCU\Software\Policies\Microsoft\Windows\System\Scripts\Logoff"   ""   ""   ""
"HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Logoff"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Startup"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Startup"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Shutdown"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Shutdown"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System\Shell"   ""   ""   ""
"HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System\Shell"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Taskman"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run"   ""   ""   ""
+ "AcerOrbicamRibbon"   "Camera Software"   "(Verified) Logitech Inc"   "c:\program files\acer\orbicam10\orbicam.exe"
+ "Adobe ARM"   "Adobe Reader and Acrobat Manager"   "(Verified) Adobe Systems, Incorporated"   "c:\program files\common files\adobe\arm\1.0\adobearm.exe"
+ "Adobe Reader Speed Launcher"   "Adobe Acrobat SpeedLauncher"   "(Verified) Adobe Systems, Incorporated"   "c:\program files\adobe\reader 8.0\reader\reader_sl.exe"
+ "avast5"   "avast! Antivirus"   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\avastui.exe"
+ "eDataSecurity Loader"   "eDataSecurity System Loader( Load and prepare enviroment )"   "(Not Verified) HiTRUST"   "c:\acer\empowering technology\edatasecurity\edsloader.exe"
+ "LManager"   "Acer Launch Manager Keyboard Application"   "(Not Verified) Dritek System Inc."   "c:\program files\launch manager\lmanager.exe"
+ "LogitechCommunicationsManager"   "Communications Manager"   "(Verified) Logitech Inc"   "c:\program files\common files\logitech\lcommgr\communications_helper.exe"
+ "LVCOMSX"   "LVCom Server"   "(Verified) Logitech Inc"   "c:\program files\common files\logitech\lcommgr\lvcomsx.exe"
+ "QuickTime Task"   "QuickTime Task"   "(Not Verified) Apple Computer, Inc."   "c:\program files\quicktime\qttask.exe"
+ "WarReg_PopUp"   "WR_PopUp"   "(Not Verified) Acer Inc."   "c:\acer\wr_popup\warreg_popup.exe"
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce"   ""   ""   ""
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup"   ""   ""   ""
+ "Empowering Technology Launcher.lnk"   "Acer eAP Launch Tool"   "(Not Verified) Acer Inc."   "c:\acer\empowering technology\eaplauncher.exe"
+ "NkbMonitor.exe.lnk"   "PictureProject Monitor"   "(Not Verified) Nikon Corporation"   "c:\program files\nikon\pictureproject\nkbmonitor.exe"
"C:\Users\Arantxa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup"   ""   ""   ""
+ "ERUNT AutoBackup.lnk"   ""   ""   "c:\program files\erunt\autoback.exe"
"HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\Load"   ""   ""   ""
"HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\Run"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Run"   ""   ""   ""
+ "ISUSPM Startup"   "InstallShield Update Service Update Manager"   "(Not Verified) Macrovision Corporation"   "c:\program files\common files\installshield\updateservice\isuspm.exe"
+ "updateMgr"   ""   ""   "File not found: C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe"
"HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce"   ""   ""   ""
"HKCU\SOFTWARE\Classes\Protocols\Filter"   ""   ""   ""
"HKLM\SOFTWARE\Classes\Protocols\Filter"   ""   ""   ""
"HKCU\SOFTWARE\Classes\Protocols\Handler"   ""   ""   ""
"HKLM\SOFTWARE\Classes\Protocols\Handler"   ""   ""   ""
"HKCU\SOFTWARE\Microsoft\Internet Explorer\Desktop\Components"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components"   ""   ""   ""
"HKCU\SOFTWARE\Microsoft\Active Setup\Installed Components"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad"   ""   ""   ""
"HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks"   ""   ""   ""
"HKCU\Software\Classes\*\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers"   ""   ""   ""
+ "avast"   "avast! Shell Extension"   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\ashshell.dll"
+ "EDSshellExt"   "Shell Extension Module"   "(Not Verified) HiTRUST"   "c:\windows\system32\edsshellext.dll"
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not Verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
"HKCU\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKCU\Software\Classes\Directory\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers"   ""   ""   ""
+ "EDSshellExt"   "Shell Extension Module"   "(Not Verified) HiTRUST"   "c:\windows\system32\edsshellext.dll"
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not Verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
"HKCU\Software\Classes\Directory\Shellex\DragDropHandlers"   ""   ""   ""
"HKLM\Software\Classes\Directory\Shellex\DragDropHandlers"   ""   ""   ""
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not Verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
"HKCU\Software\Classes\Directory\Shellex\PropertySheetHandlers"   ""   ""   ""
"HKLM\Software\Classes\Directory\Shellex\PropertySheetHandlers"   ""   ""   ""
"HKCU\Software\Classes\Directory\Shellex\CopyHookHandlers"   ""   ""   ""
"HKLM\Software\Classes\Directory\Shellex\CopyHookHandlers"   ""   ""   ""
+ "FileZilla3CopyHook"   "fzshellext Dynamic Link Library"   ""   "c:\program files\filezilla ftp client\fzshellext.dll"
"HKCU\Software\Classes\Folder\Shellex\ColumnHandlers"   ""   ""   ""
"HKLM\Software\Classes\Folder\Shellex\ColumnHandlers"   ""   ""   ""
+ "PDF Shell Extension"   "PDF Shell Extension"   "(Not Verified) Adobe Systems, Inc."   "c:\program files\common files\adobe\acrobat\activex\pdfshell.dll"
"HKCU\Software\Classes\Folder\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers"   ""   ""   ""
+ "avast"   "avast! Shell Extension"   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\ashshell.dll"
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not Verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
"HKCU\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers"   ""   ""   ""
"HKCU\Software\Microsoft\Ctf\LangBarAddin"   ""   ""   ""
"HKLM\Software\Microsoft\Ctf\LangBarAddin"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved"   ""   ""   ""
+ "Carpetas Web"   ""   ""   "c:\program files\common files\microsoft shared\web folders\msonsext.dll"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved"   ""   ""   ""
+ "avast"   "avast! Shell Extension"   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\ashshell.dll"
+ "EPM-PO Shell Extension"   ""   ""   "File not found: epm-po.dll"
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not Verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not Verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not Verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects"   ""   ""   ""
+ "Aplicación auxiliar de vínculos de Adobe PDF Reader"   "Adobe PDF Helper for Internet Explorer"   "(Verified) Adobe Systems, Incorporated"   "c:\program files\common files\adobe\acrobat\activex\acroiehelper.dll"
+ "ShowBarObj Class"   "ActiveToolBand Module"   "(Not Verified) HiTRUST"   "c:\windows\system32\activetoolband.dll"
+ "Yahoo! Toolbar Helper"   "Yahoo! Toolbar"   "(Verified) Yahoo! Inc."   "c:\program files\yahoo!\companion\installs\cpn\yt.dll"
"HKCU\Software\Microsoft\Internet Explorer\UrlSearchHooks"   ""   ""   ""
"HKLM\Software\Microsoft\Internet Explorer\Toolbar"   ""   ""   ""
+ "Acer eDataSecurity Management"   "eDStoolbar Module"   "(Not Verified) HiTRUST"   "c:\windows\system32\edstoolbar.dll"
+ "Barra Yahoo! con bloqueador de ventanas emergentes"   "Yahoo! Toolbar"   "(Verified) Yahoo! Inc."   "c:\program files\yahoo!\companion\installs\cpn\yt.dll"
"HKCU\Software\Microsoft\Internet Explorer\Explorer Bars"   ""   ""   ""
"HKLM\Software\Microsoft\Internet Explorer\Explorer Bars"   ""   ""   ""
"HKCU\Software\Microsoft\Internet Explorer\Extensions"   ""   ""   ""
"HKLM\Software\Microsoft\Internet Explorer\Extensions"   ""   ""   ""
"Task Scheduler"   ""   ""   ""
"HKLM\System\CurrentControlSet\Services"   ""   ""   ""
+ "aawservice"   "Protects your computer from spyware"   "(Verified) Lavasoft AB"   "c:\program files\lavasoft\ad-aware\aawservice.exe"
+ "Apache2.2"   "Apache/2.2.14 (Win32) DAV/2 mod_ssl/2.2.14 OpenSSL/0.9.8l mod_autoindex_color PHP/5.3.1 mod_apreq2-20090110/2.7.1 mod_perl/2.0.4 Perl/v5.10.1"   "(Verified) Carsten Wiedmann"   "c:\xampp\apache\bin\httpd.exe"
+ "avast! Antivirus"   "Administra e implementa los servicios de avast! antivirus para este equipo. Esto incluye la protección residente, el baúl de virus y el programador de tareas."   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\avastsvc.exe"
+ "avast! Mail Scanner"   "Implementa el análisis de correo electrónico de avast! antivirus."   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\avastsvc.exe"
+ "avast! Web Scanner"   "Implementa análisis de la web (HTTP) de avast! antivirus."   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\avastsvc.exe"
+ "CLTNetCnService"   "Symantec Lic NetConnect Service"   ""   "File not found: C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe"
+ "eLockService"   "Acer eLock Management Service"   "(Not Verified) Acer Inc."   "c:\acer\empowering technology\elock\service\elockserv.exe"
+ "eNet Service"   "Acer eNet Management Service"   "(Not Verified) Acer Inc."   "c:\acer\empowering technology\enet\enet service.exe"
+ "eRecoveryService"   "Acer eRecovery Management"   "(Not Verified) Acer Inc."   "c:\acer\empowering technology\erecovery\erecoveryservice.exe"
+ "eSettingsService"   "Acer eSettings Management Service"   ""   "c:\acer\empowering technology\esettings\service\capuserv.exe"
+ "EvtEng"   "Manages the event trace messages for all the Intel® PROSet/Wireless Software components."   "(Not Verified) Intel(R) Corporation"   "c:\program files\intel\wifi\bin\evteng.exe"
+ "IDriverT"   "Provides support for the Running Object Table for InstallShield Drivers"   "(Not Verified) Macrovision Corporation"   "c:\program files\common files\installshield\driver\11\intel 32\idrivert.exe"
+ "LightScribeService"   "Used by the LightScribe software components to support 3rd party disc labeling applications using the LightScribe COM Application Programming Interface (LSCAPI). This service needs to run for LightScribe direct disc labeling to work."   "(Not Verified) Hewlett-Packard Company"   "c:\program files\common files\lightscribe\lssrvc.exe"
+ "LiveUpdate"   "Motor del núcleo de LiveUpdate"   "(Verified) Symantec Corporation"   "c:\program files\symantec\liveupdate\lucomserver_3_2.exe"
+ "MobilityService"   ""   ""   "c:\acer\mobility center\mobilityservice.exe"
+ "MySQL"   "MySQL Server (Win32)"   "(Verified) Carsten Wiedmann"   "c:\xampp\mysql\bin\mysqld.exe"
+ "Programador de LiveUpdate automático"   "Administra la programación de las sesiones de LiveUpdate automático"   "(Verified) Symantec Corporation"   "c:\program files\symantec\liveupdate\aluschedulersvc.exe"
+ "RegSrvc"   "Provides registry access to all Intel® PROSet/Wireless Software components"   "(Not Verified) Intel(R) Corporation"   "c:\program files\common files\intel\wirelesscommon\regsrvc.exe"
+ "RichVideo"   "RichVideo Module"   ""   "c:\program files\cyberlink\shared files\richvideo.exe"
+ "WMIService"   "Acer ePower Management Service"   "(Not Verified) acer"   "c:\acer\empowering technology\epower\epowersvc.exe"
"HKLM\System\CurrentControlSet\Services"   ""   ""   ""
+ "aswFsBlk"   "avast! mini-filter driver (aswFsBlk)"   "(Verified) ALWIL Software"   "c:\windows\system32\drivers\aswfsblk.sys"
+ "aswMonFlt"   "avast! mini-filter driver (aswMonFlt)"   "(Verified) ALWIL Software"   "c:\windows\system32\drivers\aswmonflt.sys"
+ "aswRdr"   "avast! TDI Redirect driver"   "(Verified) ALWIL Software"   "c:\windows\system32\drivers\aswrdr.sys"
+ "aswSP"   "avast! Self Protection"   "(Verified) ALWIL Software"   "c:\windows\system32\drivers\aswsp.sys"
+ "aswTdi"   "avast! Network Shield TDI driver"   "(Verified) ALWIL Software"   "c:\windows\system32\drivers\aswtdi.sys"
+ "DritekPortIO"   "General Port I/O"   "(Verified) Dritek System Inc."   "c:\program files\launch manager\dportio.sys"
+ "int15"   "Acer int15 service"   ""   "c:\acer\empowering technology\erecovery\int15.sys"
+ "IpInIp"   "IP in IP Tunnel Driver"   ""   "File not found: system32\DRIVERS\ipinip.sys"
+ "NTIDrvr"   "NTI CD-ROM Filter Driver"   "(Not Verified) NewTech Infosystems, Inc."   "c:\windows\system32\drivers\ntidrvr.sys"
+ "NwlnkFlt"   "IPX Traffic Filter Driver"   ""   "File not found: system32\DRIVERS\nwlnkflt.sys"
+ "NwlnkFwd"   "IPX Traffic Forwarder Driver"   ""   "File not found: system32\DRIVERS\nwlnkfwd.sys"
+ "PSDFilter"   "PSDFilter Filter Driver"   "(Not Verified) HiTRUST"   "c:\windows\system32\drivers\psdfilter.sys"
+ "PSDNServ"   "PSD Named Pipe Driver"   "(Not Verified) HiTRUST"   "c:\windows\system32\drivers\psdnserv.sys"
+ "psdvdisk"   "PSD Virtual Disk Driver"   "(Not Verified) HiTRUST"   "c:\windows\system32\drivers\psdvdisk.sys"
+ "UBHelper"   ""   ""   "c:\windows\system32\drivers\ubhelper.sys"
+ "UIUSys"   ""   ""   "File not found: system32\DRIVERS\UIUSYS.SYS"
"HKCU\Software\Microsoft\Windows NT\CurrentVersion\Drivers32"   ""   ""   ""
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32"   ""   ""   ""
+ "msacm.mkdmp3enc"   ""   ""   "File not found: C:\PROGRA~1\ACERAR~1\DVWIZA~1\Kernel\Burner\MKDMP3Enc.ACM"
"HKCU\Software\Classes\Filter"   ""   ""   ""
"HKLM\Software\Classes\Filter"   ""   ""   ""
"HKLM\Software\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance"   ""   ""   ""
+ "Aspect Ratio Resizer 16x9"   "Aspect Ratio Converter"   "(Not Verified) muvee Technologies Pte Ltd"   "c:\program files\common files\muvee technologies\030625\aspectratioconverter16x9.ax"
+ "Aspect Ratio Resizer 4x3"   "Aspect Ratio Converter"   "(Not Verified) muvee Technologies Pte Ltd"   "c:\program files\common files\muvee technologies\030625\aspectratioconverter4x3.ax"
+ "CyberLink AudAna Filter"   "CLAudAna"   "(Not Verified) CyberLink"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdaudana.dll"
+ "CyberLink Audio Commercial Cut Analyzer"   "CLAudCM"   "(Not Verified) Cyberlink Corp."   "c:\program files\cyberlink\powerproducer\claudcm.ax"
+ "CyberLink Audio Commercial Cut Analyzer"   "CLAudCM"   "(Not Verified) Cyberlink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\video\claudcm.ax"
+ "CyberLink Audio Commercial Cut Analyzer"   "CLAuCM"   "(Not Verified) Cyberlink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\claudcm.ax"
+ "CyberLink Audio Decoder"   "CyberLink Audio Decoder Filter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvclaud.ax"
+ "CyberLink Audio Decoder"   "CyberLink Audio Decoder Filter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\claud.ax"
+ "CyberLink Audio Decoder"   "CyberLink Audio Decoder Filter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdaud.ax"
+ "CyberLink Audio Decoder"   "CyberLink Audio Decoder Filter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\ppaud.ax"
+ "CyberLink Audio Decoder (PCM45)"   "CyberLink Audio Decoder Filter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\claud.ax"
+ "CyberLink Audio Decoder (PCM45)"   "CyberLink Audio Decoder Filter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\claud.ax"
+ "CyberLink Audio Effect"   "CyberLink Audio Effect Filter"   "(Not Verified) CyberLink Corporation"   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\claudfx.ax"
+ "CyberLink Audio Effect (PCM45)"   "CyberLink Audio Effect Filter"   "(Not Verified) CyberLink Corporation"   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\claudfx.ax"
+ "CyberLink Audio Effect (PCM45)"   "CyberLink Audio Effect Filter"   "(Not Verified) CyberLink Corporation"   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\claudfx.ax"
+ "CyberLink Audio Encoder"   "CyberLink Audio Encoder Filter"   "(Not Verified) Cyberlink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\claudenc.ax"
+ "CyberLink Audio Encoder"   "CyberLink Audio Encoder Filter"   "(Not Verified) Cyberlink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdaudenc.ax"
+ "CyberLink Audio Encoder"   "CyberLink Audio Encoder Filter"   "(Not Verified) Cyberlink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvclaudenc.ax"
+ "CyberLink Audio Noise Reduction"   "CLAuNR"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\claunrwrapper.ax"
+ "CyberLink Audio Noise Reduction"   "CLAuNR"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\claunrwrapper.ax"
+ "CyberLink Audio Null Renderer Filter"   "CLScnDt2"   "(Not Verified) ????"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdaudionullrenderer.dll"
+ "CyberLink Audio Resampler"   "CLAuRsmpl.ax"   "(Not Verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\ppaursmpl.ax"
+ "CyberLink Audio Resampler"   "CLAuRsmpl.ax"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvaursmpl.ax"
+ "CyberLink Audio Resampler"   "CLAuRsmpl.ax"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\claursmpl.ax"
+ "CyberLink Audio Resampler"   "CLAuRsmpl.ax"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdaursmpl.ax"
+ "CyberLink AudioCD Filter (PCM45)"   "CyberLink AudioCD Filter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\claudiocd.ax"
+ "CyberLink AudioCD Filter (PCM45)"   "CyberLink AudioCD Filter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\claudiocd.ax"
+ "Cyberlink Byte Counter Filter"   "Cyberlink Byte Counter Filter"   "(Not Verified) CyberLink Corporation"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvbytecounter.ax"
+ "CyberLink DDR"   "CyberLink DDR"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvrender.ax"
+ "CyberLink Demultiplexer"   "MPEG-2 Dempltiplexer"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\cldemuxer.ax"
+ "CyberLink Demultiplexer"   "MPEG-2 Dempltiplexer"   "(Not Verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\ppdemuxer.ax"
+ "CyberLink Demultiplexer"   "MPEG-2 Dempltiplexer"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvcldemuxer.ax"
+ "CyberLink Demultiplexer"   "MPEG-2 Dempltiplexer"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mddemuxer.ax"
+ "CyberLink Demultiplexer (PCM45)"   "MPEG-2 Dempltiplexer"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\cldemuxer.ax"
+ "CyberLink Demultiplexer (PCM45)"   "MPEG-2 Dempltiplexer"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\cldemuxer.ax"
+ "CyberLink Double Pin Tee"   "Cyberlink Double Tee Filter"   "(Not Verified) CtberLink Corporation"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvdoubletee.ax"
+ "Cyberlink Dump Dispatch Filter"   "Cyberlink File Dump Dispatch Filter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\cldumpdispatch.ax"
+ "Cyberlink Dump Dispatch Filter"   "Cyberlink File Dump Dispatch Filter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mddumpdispatch.ax"
+ "Cyberlink Dump Dispatch Filter"   "Cyberlink File Dump Dispatch Filter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvcldumpdispatch.ax"
+ "Cyberlink Dump Filter"   "Cyberlink File Dump Filter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvcldump.ax"
+ "Cyberlink Dump Filter"   "Cyberlink File Dump Filter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\cldump.ax"
+ "Cyberlink Dump Filter"   "Cyberlink File Dump Filter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mddump.ax"
+ "CyberLink DV Buffer"   "DV dump Filter"   "(Not Verified) CyberLink Corporation"   "c:\program files\cyberlink\powerproducer\ppdvdump.ax"
+ "CyberLink DV Buffer"   "CLDVBuffer Filter"   "(Not Verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvbuffer.ax"
+ "CyberLink DV Dump Filter"   "DV dump Filter"   "(Not Verified) CyberLink Corporation"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvdump.ax"
+ "CyberLink DV Filter"   "DVTCR"   "(Not Verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvtcr.ax"
+ "CyberLink DV Reader Filter"   "DVMultReader Filter"   "(Not Verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvdvmrd.ax"
+ "CyberLink DVD Navigator"   "CyberLink DVD Navigation Filter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\ppnavx.ax"
+ "CyberLink DVD Navigator (PCM45)"   "CyberLink DVD Navigation Filter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\clnavx.ax"
+ "CyberLink DVD Navigator (PCM45)"   "CyberLink DVD Navigation Filter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\clnavx.ax"
+ "CyberLink DVSD Modifier"   "Cyberlink DVSD Modifier"   "(Not Verified) Cyberlink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvsdmodifier.ax"
+ "CyberLink Editing Service 3.0 (Source)"   "CES Kernel"   "(Not Verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\cledtkrn.dll"
+ "CyberLink Editing Service 3.0 (Source)"   "CES Kernel"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\cledtkrn.dll"
+ "CyberLink Editing Service 3.0 (Source)"   "CES Kernel"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\cledtkrn.dll"
+ "CyberLink Frame Parser"   "CLFParser"   "(Not Verified) CyberLink"   "c:\program files\cyberlink\powerproducer\clfparser.ax"
+ "Cyberlink Gate Filter"   "CLGate"   "(Not Verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvgate.ax"
+ "CyberLink Line21 Decoder Filter (PCM45)"   "CyberLink Line21 Decoder Filter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\clline21.ax"
+ "CyberLink Line21 Decoder Filter (PCM45)"   "CyberLink Line21 Decoder Filter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\clline21.ax"
+ "CyberLink Load Image Filter"   "CLImage"   "(Not Verified) CyberLink"   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\climage.ax"
+ "CyberLink Load Image Filter"   "CLImage"   "(Not Verified) CyberLink"   "c:\program files\cyberlink\shared files\climage.ax"
+ "CyberLink Load Image Filter"   "CLImage"   "(Not Verified) CyberLink"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\climage.ax"
+ "CyberLink MP3 Wrapper-PCM"   "CyberLink MP3 Wrapper"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\music\clmp3wrap.ax"
+ "CyberLink MP3 Wrapper-PCM"   "CyberLink MP3 Wrapper"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\music\clmp3wrap.ax"
+ "CyberLink MPEG Decoder"   "CyberLink Video/SP Filter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdmvd.ax"
+ "CyberLink MPEG Muxer"   "MpgMux"   "(Not Verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvmpgmux.ax"
+ "CyberLink MPEG Muxer"   "MpgMux"   "(Not Verified) CyberLink"   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\mpgmux.ax"
+ "CyberLink MPEG Muxer"   "MpgMux"   "(Not Verified) CyberLink"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdmpgmux.ax"
+ "CyberLink MPEG Splitter"   "CyberLink MPEG Splitter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\video\clsplter.ax"
+ "CyberLink MPEG Video Encoder"   "CyberLink MPEG Video Encoder                               "   "(Not Verified) CyberLink Corp.                                            "   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\clvidenc.ax"
+ "CyberLink MPEG Video Encoder"   "CyberLink MPEG Video Encoder                               "   "(Not Verified) CyberLink Corp.                                            "   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdvidenc.ax"
+ "CyberLink MPEG Video Encoder"   "CyberLink MPEG Video Encoder                               "   "(Not Verified) CyberLink Corp.                                            "   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvvidenc.ax"
+ "Cyberlink Scene Detect Filter"   "CLScnDt"   "(Not Verified) CyberLink"   "c:\program files\cyberlink\powerproducer\ppscndt.ax"
+ "CyberLink Scene Detect Filter 2"   "CLScnDt2"   "(Not Verified) ????"   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\clscndt2.dll"
+ "CyberLink SnapShot Filter"   "CLSnapShot Filter"   "(Not Verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvsnapshot.ax"
+ "CyberLink SnapShotTIP Filter"   ""   ""   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvclsshot.ax"
+ "CyberLink Stamp Effect"   ""   "(Not Verified) CyberLink corporate"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvstampeffect.ax"
+ "Cyberlink Sub-Picture Filter"   "Cyberlink Sub-Picture Filter"   "(Not Verified) Cyberlink"   "c:\program files\cyberlink\powerproducer\clsubpic.ax"
+ "Cyberlink SubTitle Importor (PCM45)"   "CLSubTitle.ax"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\clsubtitle.ax"
+ "Cyberlink SubTitle Importor (PCM45)"   "CLSubTitle.ax"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\clsubtitle.ax"
+ "CyberLink TimeStretch Filter"   "CLAuTS.ax"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\clauts.ax"
+ "CyberLink TimeStretch Filter (CES)"   "CLAuTS.ax"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\clauts.ax"
+ "CyberLink TimeStretch Filter (PCM45)"   "CLAuTS.ax"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\clauts.ax"
+ "CyberLink TimeStretch Filter (PCM45)"   "CLAuTS.ax"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\clauts.ax"
+ "CyberLink TL MPEG Splitter"   "CyberLink MPEG Splitter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\cltlmsplter.ax"
+ "CyberLink TL MPEG Splitter"   "CyberLink MPEG Splitter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvtlmsplter.ax"
+ "CyberLink TL MPEG-1 Splitter"   "CyberLink MPEG Splitter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdtlm1splter.ax"
+ "CyberLink TL MPEG-2 Splitter"   "CyberLink MPEG Splitter"   "(Not Verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdtlm2splter.ax"
+ "Cyberlink TS Information"   "CLTSInfo"   "(Not Verified) Cyberlink"   "c:\program files\cyberlink\powerproducer\pptsinfo.ax"
+ "Cyberlink TS Information"   "CLTSInfo"   "(Not Verified) Cyberlink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvcltsinfo.ax"
+ "CyberLink VAudAna Filter"   "CLVAudAna"   "(Not Verified) CyberLink"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdvaudana.dll"
+ "CyberLink VidAna Filter"   "CLVidAna"   "(Not Verified) CyberLink"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdvidana.dll"
+ "CyberLink Video Effect"   "CLVidFx"   "(Not Verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvclvidfx.ax"
+ "CyberLink Video Effect"   "CLVidFx"   "(Not Verified) CyberLink"   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\clvidfx.ax"
+ "CyberLink Video Effect"   "CLVidFx"   "(Not Verified) CyberLink"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\clvidfx.ax"
+ "CyberLink Vide
Título: Re: a s-quared o similar
Publicado por: Trebol en 20 de Agosto de 2010, 05:00:34 pm
Si existe la posibilidad en que me den algún consejo sobre qué hacer si véis el log os lo agradezco. Sin equipo no puedo  :-o :dabo: :dabo:


va, venga, os lo pago en unos envíos de jamoncetes
Título: Re: a s-quared o similar
Publicado por: Mr_X en 20 de Agosto de 2010, 05:18:27 pm
Los logs se ven limpios. ¿Qué virus detectó?
Título: Re: a s-quared o similar
Publicado por: Trebol en 20 de Agosto de 2010, 05:43:20 pm
tipo mal sasfis-1 con tres rayas rojas

cuando inico equipo me sale una ventana que me indica que hay un programa con servidor ocupado, que de a cambiar y así hasta que arranca creo que es el acer enet management porque me dice que comprueba su estado
Título: Re: a s-quared o similar
Publicado por: Mr_X en 20 de Agosto de 2010, 07:22:04 pm
¿Estás pasando el antivirus iniciando en Modo seguro?
Título: Re: a s-quared o similar
Publicado por: Trebol en 20 de Agosto de 2010, 08:01:53 pm
¿Estás pasando el antivirus iniciando en Modo seguro?

sí, porqué si no es indiscreccion :juer:
Título: Re: a s-quared o similar
Publicado por: Mr_X en 20 de Agosto de 2010, 08:09:05 pm
Porque en Modo seguro es más fácil detectar/eliminar 'malware'...

También saca los logs iniciando en Modo seguro, que todos los has mandado iniciando Normal...
Título: Re: a s-quared o similar
Publicado por: Trebol en 21 de Agosto de 2010, 12:52:09 am
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:30:49, on 20/08/2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18943)
Boot mode: Safe mode

Running processes:
C:\Windows\Explorer.EXE
C:\Users\miequipo\Carpeta A\log registro\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.terra.es/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://es.es.acer.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://es.es.acer.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aplicación auxiliar de vínculos de Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Windows\system32\ActiveToolBand.dll
O2 - BHO: Aplicación auxiliar de inicio de sesión de Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Barra Yahoo! con bloqueador de ventanas emergentes - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Windows\system32\eDStoolbar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKLM\..\Run: [WarReg_PopUp] C:\Acer\WR_PopUp\WarReg_PopUp.exe
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LVCOMSX] "C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe"
O4 - HKLM\..\Run: [AcerOrbicamRibbon] "C:\Program Files\Acer\OrbiCam10\OrbiCam.exe" /hide
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Windows Mobile-based device management] %windir%\WindowsMobile\wmdSync.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -startup
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\Windows\system32\Macromed\Flash\FlashUtil10h_ActiveX.exe -update activex
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICIO LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICIO LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'Servicio de red')
O4 - Startup: ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE
O4 - Global Startup: Empowering Technology Launcher.lnk = ?
O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Agregar entrada - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Agregar entrada en Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
O16 - DPF: {E62A8B6B-D91C-457C-B1FB-20CC2D96B4EC} (Comodo AV Scanner ActiveX) - http://eu5.download.comodo.com/avs/ComodoAVScanner.cab
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: @%SystemRoot%\system32\aelupsvc.dll,-1 (AeLookupSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe
O23 - Service: Apache2.2 - Apache Software Foundation - C:\xampp\apache\bin\httpd.exe
O23 - Service: @%systemroot%\system32\appinfo.dll,-100 (Appinfo) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-204 (AudioEndpointBuilder) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-200 (Audiosrv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\bfe.dll,-1001 (BFE) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\qmgr.dll,-1000 (BITS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: Servicio Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%systemroot%\system32\browser.dll,-100 (Browser) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-11 (CertPropSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: @%SystemRoot%\system32\cryptsvc.dll,-1001 (CryptSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @oleres.dll,-5012 (DcomLaunch) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe
O23 - Service: @%SystemRoot%\system32\dhcpcsvc.dll,-100 (Dhcp) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\dnsapi.dll,-101 (Dnscache) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dot3svc.dll,-1102 (dot3svc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dps.dll,-500 (DPS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\eapsvc.dll,-1 (EapHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\ehome\ehrecvr.exe,-101 (ehRecvr) - Unknown owner - C:\Windows\ehome\ehRecvr.exe
O23 - Service: @%SystemRoot%\ehome\ehsched.exe,-101 (ehSched) - Unknown owner - C:\Windows\ehome\ehsched.exe
O23 - Service: @%SystemRoot%\ehome\ehstart.dll,-101 (ehstart) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
O23 - Service: @%SystemRoot%\system32\emdmgmt.dll,-1000 (EMDMgmt) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: eNet Service - Acer Inc. - C:\Acer\Empowering Technology\eNet\eNet Service.exe
O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe
O23 - Service: @%SystemRoot%\system32\wevtsvc.dll,-200 (Eventlog) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @comres.dll,-2450 (EventSystem) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fdPHost.dll,-100 (fdPHost) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\fdrespub.dll,-100 (FDResPub) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\FntCache.dll,-100 (FontCache) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @gpapi.dll,-112 (gpsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\hidserv.dll,-101 (hidserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\kmsvc.dll,-6 (hkmsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ikeext.dll,-501 (IKEEXT) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\IPBusEnum.dll,-102 (IPBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\iphlpsvc.dll,-200 (iphlpsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: Servicio del iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @%SystemRoot%\System32\irmon.dll,-2000 (Irmon) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe
O23 - Service: @comres.dll,-2946 (KtmRm) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\srvsvc.dll,-100 (LanmanServer) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wkssvc.dll,-100 (LanmanWorkstation) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: @%SystemRoot%\system32\lltdres.dll,-1 (lltdsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\lmhsvc.dll,-101 (lmhosts) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\mmcss.dll,-100 (MMCSS) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: @%SystemRoot%\system32\FirewallAPI.dll,-23090 (MpsSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe
O23 - Service: @%SystemRoot%\system32\iscsidsc.dll,-5000 (MSiSCSI) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) - Unknown owner - C:\Windows\system32\msiexec.exe
O23 - Service: MySQL - MySQL AB - C:\xampp\mysql\bin\mysqld.exe
O23 - Service: @%SystemRoot%\system32\qagentrt.dll,-6 (napagent) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe
O23 - Service: @%SystemRoot%\system32\netman.dll,-109 (Netman) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\netprof.dll,-246 (netprofm) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\nlasvc.dll,-1 (NlaSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\nsisvc.dll,-200 (nsi) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8004 (p2pimsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8006 (p2psvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pcasvc.dll,-1 (PcaSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\pla.dll,-500 (pla) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\umpnpmgr.dll,-100 (PlugPlay) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8002 (PNRPAutoReg) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8000 (PNRPsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\polstore.dll,-5010 (PolicyAgent) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\profsvc.dll,-300 (ProfSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Programador de LiveUpdate automático - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%windir%\WindowsMobile\rapimgr.dll,-104 (RapiMgr) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasauto.dll,-200 (RasAuto) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasmans.dll,-200 (RasMan) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @regsvc.dll,-1 (RemoteRegistry) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe
O23 - Service: @oleres.dll,-5010 (RpcSs) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe
O23 - Service: @%SystemRoot%\System32\SCardSvr.dll,-1 (SCardSvr) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\schedsvc.dll,-100 (Schedule) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-13 (SCPolicySvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sdrsvc.dll,-107 (SDRSVC) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Sens.dll,-200 (SENS) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\SessEnv.dll,-1026 (SessionEnv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-12288 (ShellHWDetection) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe
O23 - Service: @%SystemRoot%\system32\SLUINotify.dll,-103 (SLUINotify) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe
O23 - Service: @%systemroot%\system32\ssdpsrv.dll,-100 (SSDPSRV) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sstpsvc.dll,-200 (SstpSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wiaservc.dll,-9 (stisvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\swprv.dll,-103 (swprv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sysmain.dll,-1000 (SysMain) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\TabSvc.dll,-100 (TabletInputService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tapisrv.dll,-10100 (TapiSrv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tbssvc.dll,-100 (TBS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\termsrv.dll,-268 (TermService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-8192 (Themes) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\mmcss.dll,-102 (THREADORDER) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\trkwks.dll,-1 (TrkWks) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\servicing\TrustedInstaller.exe,-100 (TrustedInstaller) - Unknown owner - C:\Windows\servicing\TrustedInstaller.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe
O23 - Service: @%systemroot%\system32\upnphost.dll,-213 (upnphost) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\dwm.exe,-2000 (UxSms) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe
O23 - Service: @%SystemRoot%\system32\w32time.dll,-200 (W32Time) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%windir%\WindowsMobile\wcescomm.dll,-40079 (WcesComm) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wcncsvc.dll,-3 (wcncsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\WcsPlugInService.dll,-200 (WcsPlugInService) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-502 (WdiServiceHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-500 (WdiSystemHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\webclnt.dll,-100 (WebClient) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wecsvc.dll,-200 (Wecsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wercplsupport.dll,-101 (wercplsupport) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wersvc.dll,-100 (WerSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\winhttp.dll,-100 (WinHttpAutoProxySvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmisvc.dll,-205 (Winmgmt) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wsmsvc.dll,-101 (WinRM) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wlansvc.dll,-257 (Wlansvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe
O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files\Windows Media Player\wmpnetwk.exe
O23 - Service: @%SystemRoot%\system32\wpcsvc.dll,-100 (WPCSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wpdbusenum.dll,-100 (WPDBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wscsvc.dll,-200 (wscsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\SearchIndexer.exe,-103 (WSearch) - Unknown owner - C:\Windows\system32\SearchIndexer.exe
O23 - Service: @%systemroot%\system32\wuaueng.dll,-105 (wuauserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wudfsvc.dll,-1000 (wudfsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 22779 bytes

y otro log

"HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Startup"   ""   ""   ""
"HKCU\Software\Policies\Microsoft\Windows\System\Scripts\Logon"   ""   ""   ""
"HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Logon"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit"   ""   ""   ""
"HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Shutdown"   ""   ""   ""
"HKCU\Software\Policies\Microsoft\Windows\System\Scripts\Logoff"   ""   ""   ""
"HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Logoff"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Startup"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Startup"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Shutdown"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Shutdown"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System\Shell"   ""   ""   ""
"HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System\Shell"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Taskman"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run"   ""   ""   ""
+ "AcerOrbicamRibbon"   "Camera Software"   "(Verified) Logitech Inc"   "c:\program files\acer\orbicam10\orbicam.exe"
+ "Adobe ARM"   "Adobe Reader and Acrobat Manager"   "(Verified) Adobe Systems, Incorporated"   "c:\program files\common files\adobe\arm\1.0\adobearm.exe"
+ "Adobe Reader Speed Launcher"   "Adobe Acrobat SpeedLauncher"   "(Verified) Adobe Systems, Incorporated"   "c:\program files\adobe\reader 8.0\reader\reader_sl.exe"
+ "avast5"   "avast! Antivirus"   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\avastui.exe"
+ "eDataSecurity Loader"   "eDataSecurity System Loader( Load and prepare enviroment )"   "(Not verified) HiTRUST"   "c:\acer\empowering technology\edatasecurity\edsloader.exe"
+ "iTunesHelper"   "iTunesHelper"   "(Verified) Apple Inc."   "c:\program files\itunes\ituneshelper.exe"
+ "LManager"   "Acer Launch Manager Keyboard Application"   "(Not verified) Dritek System Inc."   "c:\program files\launch manager\lmanager.exe"
+ "LogitechCommunicationsManager"   "Communications Manager"   "(Verified) Logitech Inc"   "c:\program files\common files\logitech\lcommgr\communications_helper.exe"
+ "LVCOMSX"   "LVCom Server"   "(Verified) Logitech Inc"   "c:\program files\common files\logitech\lcommgr\lvcomsx.exe"
+ "QuickTime Task"   "QuickTime Task"   "(Not verified) Apple Inc."   "c:\program files\quicktime\qttask.exe"
+ "WarReg_PopUp"   "WR_PopUp"   "(Not verified) Acer Inc."   "c:\acer\wr_popup\warreg_popup.exe"
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce"   ""   ""   ""
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup"   ""   ""   ""
+ "Empowering Technology Launcher.lnk"   "Acer eAP Launch Tool"   "(Not verified) Acer Inc."   "c:\acer\empowering technology\eaplauncher.exe"
+ "NkbMonitor.exe.lnk"   "PictureProject Monitor"   "(Not verified) Nikon Corporation"   "c:\program files\nikon\pictureproject\nkbmonitor.exe"
"C:\Users\Arantxa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup"   ""   ""   ""
+ "ERUNT AutoBackup.lnk"   ""   ""   "c:\program files\erunt\autoback.exe"
"HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\Load"   ""   ""   ""
"HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\Run"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Run"   ""   ""   ""
+ "ISUSPM Startup"   "InstallShield Update Service Update Manager"   "(Not verified) Macrovision Corporation"   "c:\program files\common files\installshield\updateservice\isuspm.exe"
+ "updateMgr"   ""   ""   "File not found: C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe"
"HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce"   ""   ""   ""
+ "FlashPlayerUpdate"   "Adobe® Flash® Player Installer/Uninstaller 10.1 r53"   "(Verified) Adobe Systems Incorporated"   "c:\windows\system32\macromed\flash\flashutil10h_activex.exe"
"HKCU\SOFTWARE\Classes\Protocols\Filter"   ""   ""   ""
"HKLM\SOFTWARE\Classes\Protocols\Filter"   ""   ""   ""
"HKCU\SOFTWARE\Classes\Protocols\Handler"   ""   ""   ""
"HKLM\SOFTWARE\Classes\Protocols\Handler"   ""   ""   ""
"HKCU\SOFTWARE\Microsoft\Internet Explorer\Desktop\Components"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components"   ""   ""   ""
"HKCU\SOFTWARE\Microsoft\Active Setup\Installed Components"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad"   ""   ""   ""
"HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks"   ""   ""   ""
"HKCU\Software\Classes\*\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers"   ""   ""   ""
+ "avast"   "avast! Shell Extension"   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\ashshell.dll"
+ "EDSshellExt"   "Shell Extension Module"   "(Not verified) HiTRUST"   "c:\windows\system32\edsshellext.dll"
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
"HKCU\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKCU\Software\Classes\Directory\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers"   ""   ""   ""
+ "EDSshellExt"   "Shell Extension Module"   "(Not Verified) HiTRUST"   "c:\windows\system32\edsshellext.dll"
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not Verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
"HKCU\Software\Classes\Directory\Shellex\DragDropHandlers"   ""   ""   ""
"HKLM\Software\Classes\Directory\Shellex\DragDropHandlers"   ""   ""   ""
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not Verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
"HKCU\Software\Classes\Directory\Shellex\PropertySheetHandlers"   ""   ""   ""
"HKLM\Software\Classes\Directory\Shellex\PropertySheetHandlers"   ""   ""   ""
"HKCU\Software\Classes\Directory\Shellex\CopyHookHandlers"   ""   ""   ""
"HKLM\Software\Classes\Directory\Shellex\CopyHookHandlers"   ""   ""   ""
+ "FileZilla3CopyHook"   "fzshellext Dynamic Link Library"   ""   "c:\program files\filezilla ftp client\fzshellext.dll"
"HKCU\Software\Classes\Folder\Shellex\ColumnHandlers"   ""   ""   ""
"HKLM\Software\Classes\Folder\Shellex\ColumnHandlers"   ""   ""   ""
+ "PDF Shell Extension"   "PDF Shell Extension"   "(Not verified) Adobe Systems, Inc."   "c:\program files\common files\adobe\acrobat\activex\pdfshell.dll"
"HKCU\Software\Classes\Folder\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers"   ""   ""   ""
+ "avast"   "avast! Shell Extension"   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\ashshell.dll"
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not Verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
"HKCU\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers"   ""   ""   ""
"HKCU\Software\Microsoft\Ctf\LangBarAddin"   ""   ""   ""
"HKLM\Software\Microsoft\Ctf\LangBarAddin"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved"   ""   ""   ""
+ "Carpetas Web"   ""   ""   "c:\program files\common files\microsoft shared\web folders\msonsext.dll"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved"   ""   ""   ""
+ "avast"   "avast! Shell Extension"   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\ashshell.dll"
+ "EPM-PO Shell Extension"   ""   ""   "File not found: epm-po.dll"
+ "iTunes"   "iTunes Mini Player DLL"   "(Verified) Apple Inc."   "c:\program files\itunes\itunesminiplayer.dll"
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not Verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not Verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
+ "WinZip"   "WinZip Shell Extension DLL"   "(Not Verified) WinZip Computing, Inc."   "c:\program files\winzip\wzshlstb.dll"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects"   ""   ""   ""
+ "Aplicación auxiliar de vínculos de Adobe PDF Reader"   "Adobe PDF Helper for Internet Explorer"   "(Verified) Adobe Systems, Incorporated"   "c:\program files\common files\adobe\acrobat\activex\acroiehelper.dll"
+ "ShowBarObj Class"   "ActiveToolBand Module"   "(Not verified) HiTRUST"   "c:\windows\system32\activetoolband.dll"
+ "Yahoo! Toolbar Helper"   "Yahoo! Toolbar"   "(Verified) Yahoo! Inc."   "c:\program files\yahoo!\companion\installs\cpn\yt.dll"
"HKCU\Software\Microsoft\Internet Explorer\UrlSearchHooks"   ""   ""   ""
"HKLM\Software\Microsoft\Internet Explorer\Toolbar"   ""   ""   ""
+ "Acer eDataSecurity Management"   "eDStoolbar Module"   "(Not verified) HiTRUST"   "c:\windows\system32\edstoolbar.dll"
+ "Barra Yahoo! con bloqueador de ventanas emergentes"   "Yahoo! Toolbar"   "(Verified) Yahoo! Inc."   "c:\program files\yahoo!\companion\installs\cpn\yt.dll"
"HKCU\Software\Microsoft\Internet Explorer\Explorer Bars"   ""   ""   ""
"HKLM\Software\Microsoft\Internet Explorer\Explorer Bars"   ""   ""   ""
"HKCU\Software\Microsoft\Internet Explorer\Extensions"   ""   ""   ""
"HKLM\Software\Microsoft\Internet Explorer\Extensions"   ""   ""   ""
"Task Scheduler"   ""   ""   ""
"HKLM\System\CurrentControlSet\Services"   ""   ""   ""
+ "aawservice"   "Protects your computer from spyware"   "(Verified) Lavasoft AB"   "c:\program files\lavasoft\ad-aware\aawservice.exe"
+ "Apache2.2"   "Apache/2.2.14 (Win32) DAV/2 mod_ssl/2.2.14 OpenSSL/0.9.8l mod_autoindex_color PHP/5.3.1 mod_apreq2-20090110/2.7.1 mod_perl/2.0.4 Perl/v5.10.1"   "(Verified) Carsten Wiedmann"   "c:\xampp\apache\bin\httpd.exe"
+ "Apple Mobile Device"   "Proporciona la interfaz a los dispositivos móviles de Apple."   "(Verified) Apple Inc."   "c:\program files\common files\apple\mobile device support\applemobiledeviceservice.exe"
+ "avast! Antivirus"   "Administra e implementa los servicios de avast! antivirus para este equipo. Esto incluye la protección residente, el baúl de virus y el programador de tareas."   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\avastsvc.exe"
+ "avast! Mail Scanner"   "Implementa el análisis de correo electrónico de avast! antivirus."   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\avastsvc.exe"
+ "avast! Web Scanner"   "Implementa análisis de la web (HTTP) de avast! antivirus."   "(Verified) ALWIL Software"   "c:\program files\alwil software\avast5\avastsvc.exe"
+ "Bonjour Service"   "Permite que los dispositivos de hardware y los servicios de software se configuren automáticamente en la red y anuncien su presencia."   "(Verified) Apple Inc."   "c:\program files\bonjour\mdnsresponder.exe"
+ "CLTNetCnService"   "Symantec Lic NetConnect Service"   ""   "File not found: C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe"
+ "eLockService"   "Acer eLock Management Service"   "(Not verified) Acer Inc."   "c:\acer\empowering technology\elock\service\elockserv.exe"
+ "eNet Service"   "Acer eNet Management Service"   "(Not verified) Acer Inc."   "c:\acer\empowering technology\enet\enet service.exe"
+ "eRecoveryService"   "Acer eRecovery Management"   "(Not verified) Acer Inc."   "c:\acer\empowering technology\erecovery\erecoveryservice.exe"
+ "eSettingsService"   "Acer eSettings Management Service"   ""   "c:\acer\empowering technology\esettings\service\capuserv.exe"
+ "EvtEng"   "Manages the event trace messages for all the Intel® PROSet/Wireless Software components."   "(Not verified) Intel(R) Corporation"   "c:\program files\intel\wifi\bin\evteng.exe"
+ "IDriverT"   "Provides support for the Running Object Table for InstallShield Drivers"   "(Not verified) Macrovision Corporation"   "c:\program files\common files\installshield\driver\11\intel 32\idrivert.exe"
+ "iPod Service"   "Servicios de administración del hardware del iPod"   "(Verified) Apple Inc."   "c:\program files\ipod\bin\ipodservice.exe"
+ "LightScribeService"   "Used by the LightScribe software components to support 3rd party disc labeling applications using the LightScribe COM Application Programming Interface (LSCAPI). This service needs to run for LightScribe direct disc labeling to work."   "(Not verified) Hewlett-Packard Company"   "c:\program files\common files\lightscribe\lssrvc.exe"
+ "LiveUpdate"   "Motor del núcleo de LiveUpdate"   "(Verified) Symantec Corporation"   "c:\program files\symantec\liveupdate\lucomserver_3_2.exe"
+ "MobilityService"   ""   ""   "c:\acer\mobility center\mobilityservice.exe"
+ "MySQL"   "MySQL Server (Win32)"   "(Verified) Carsten Wiedmann"   "c:\xampp\mysql\bin\mysqld.exe"
+ "Programador de LiveUpdate automático"   "Administra la programación de las sesiones de LiveUpdate automático"   "(Verified) Symantec Corporation"   "c:\program files\symantec\liveupdate\aluschedulersvc.exe"
+ "RegSrvc"   "Provides registry access to all Intel® PROSet/Wireless Software components"   "(Not verified) Intel(R) Corporation"   "c:\program files\common files\intel\wirelesscommon\regsrvc.exe"
+ "RichVideo"   "RichVideo Module"   ""   "c:\program files\cyberlink\shared files\richvideo.exe"
+ "WMIService"   "Acer ePower Management Service"   "(Not verified) acer"   "c:\acer\empowering technology\epower\epowersvc.exe"
"HKLM\System\CurrentControlSet\Services"   ""   ""   ""
+ "aswFsBlk"   "avast! mini-filter driver (aswFsBlk)"   "(Verified) ALWIL Software"   "c:\windows\system32\drivers\aswfsblk.sys"
+ "aswMonFlt"   "avast! mini-filter driver (aswMonFlt)"   "(Verified) ALWIL Software"   "c:\windows\system32\drivers\aswmonflt.sys"
+ "aswRdr"   "avast! TDI Redirect driver"   "(Verified) ALWIL Software"   "c:\windows\system32\drivers\aswrdr.sys"
+ "aswSP"   "avast! Self Protection"   "(Verified) ALWIL Software"   "c:\windows\system32\drivers\aswsp.sys"
+ "aswTdi"   "avast! Network Shield TDI driver"   "(Verified) ALWIL Software"   "c:\windows\system32\drivers\aswtdi.sys"
+ "DritekPortIO"   "General Port I/O"   "(Verified) Dritek System Inc."   "c:\program files\launch manager\dportio.sys"
+ "int15"   "Acer int15 service"   ""   "c:\acer\empowering technology\erecovery\int15.sys"
+ "IpInIp"   "IP in IP Tunnel Driver"   ""   "File not found: system32\DRIVERS\ipinip.sys"
+ "NTIDrvr"   "NTI CD-ROM Filter Driver"   "(Not verified) NewTech Infosystems, Inc."   "c:\windows\system32\drivers\ntidrvr.sys"
+ "NwlnkFlt"   "IPX Traffic Filter Driver"   ""   "File not found: system32\DRIVERS\nwlnkflt.sys"
+ "NwlnkFwd"   "IPX Traffic Forwarder Driver"   ""   "File not found: system32\DRIVERS\nwlnkfwd.sys"
+ "PSDFilter"   "PSDFilter Filter Driver"   "(Not verified) HiTRUST"   "c:\windows\system32\drivers\psdfilter.sys"
+ "PSDNServ"   "PSD Named Pipe Driver"   "(Not verified) HiTRUST"   "c:\windows\system32\drivers\psdnserv.sys"
+ "psdvdisk"   "PSD Virtual Disk Driver"   "(Not verified) HiTRUST"   "c:\windows\system32\drivers\psdvdisk.sys"
+ "UBHelper"   ""   ""   "c:\windows\system32\drivers\ubhelper.sys"
+ "UIUSys"   ""   ""   "File not found: system32\DRIVERS\UIUSYS.SYS"
"HKCU\Software\Microsoft\Windows NT\CurrentVersion\Drivers32"   ""   ""   ""
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32"   ""   ""   ""
+ "msacm.mkdmp3enc"   ""   ""   "File not found: C:\PROGRA~1\ACERAR~1\DVWIZA~1\Kernel\Burner\MKDMP3Enc.ACM"
"HKCU\Software\Classes\Filter"   ""   ""   ""
"HKLM\Software\Classes\Filter"   ""   ""   ""
"HKLM\Software\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance"   ""   ""   ""
+ "Aspect Ratio Resizer 16x9"   "Aspect Ratio Converter"   "(Not verified) muvee Technologies Pte Ltd"   "c:\program files\common files\muvee technologies\030625\aspectratioconverter16x9.ax"
+ "Aspect Ratio Resizer 4x3"   "Aspect Ratio Converter"   "(Not verified) muvee Technologies Pte Ltd"   "c:\program files\common files\muvee technologies\030625\aspectratioconverter4x3.ax"
+ "CyberLink AudAna Filter"   "CLAudAna"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdaudana.dll"
+ "CyberLink Audio Commercial Cut Analyzer"   "CLAudCM"   "(Not verified) Cyberlink Corp."   "c:\program files\cyberlink\powerproducer\claudcm.ax"
+ "CyberLink Audio Commercial Cut Analyzer"   "CLAudCM"   "(Not verified) Cyberlink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\video\claudcm.ax"
+ "CyberLink Audio Commercial Cut Analyzer"   "CLAuCM"   "(Not verified) Cyberlink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\claudcm.ax"
+ "CyberLink Audio Decoder"   "CyberLink Audio Decoder Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvclaud.ax"
+ "CyberLink Audio Decoder"   "CyberLink Audio Decoder Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\claud.ax"
+ "CyberLink Audio Decoder"   "CyberLink Audio Decoder Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdaud.ax"
+ "CyberLink Audio Decoder"   "CyberLink Audio Decoder Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\ppaud.ax"
+ "CyberLink Audio Decoder (PCM45)"   "CyberLink Audio Decoder Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\claud.ax"
+ "CyberLink Audio Decoder (PCM45)"   "CyberLink Audio Decoder Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\claud.ax"
+ "CyberLink Audio Effect"   "CyberLink Audio Effect Filter"   "(Not verified) CyberLink Corporation"   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\claudfx.ax"
+ "CyberLink Audio Effect (PCM45)"   "CyberLink Audio Effect Filter"   "(Not verified) CyberLink Corporation"   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\claudfx.ax"
+ "CyberLink Audio Effect (PCM45)"   "CyberLink Audio Effect Filter"   "(Not verified) CyberLink Corporation"   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\claudfx.ax"
+ "CyberLink Audio Encoder"   "CyberLink Audio Encoder Filter"   "(Not verified) Cyberlink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\claudenc.ax"
+ "CyberLink Audio Encoder"   "CyberLink Audio Encoder Filter"   "(Not verified) Cyberlink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdaudenc.ax"
+ "CyberLink Audio Encoder"   "CyberLink Audio Encoder Filter"   "(Not verified) Cyberlink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvclaudenc.ax"
+ "CyberLink Audio Noise Reduction"   "CLAuNR"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\claunrwrapper.ax"
+ "CyberLink Audio Noise Reduction"   "CLAuNR"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\claunrwrapper.ax"
+ "CyberLink Audio Null Renderer Filter"   "CLScnDt2"   "(Not verified) ????"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdaudionullrenderer.dll"
+ "CyberLink Audio Resampler"   "CLAuRsmpl.ax"   "(Not verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\ppaursmpl.ax"
+ "CyberLink Audio Resampler"   "CLAuRsmpl.ax"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvaursmpl.ax"
+ "CyberLink Audio Resampler"   "CLAuRsmpl.ax"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\claursmpl.ax"
+ "CyberLink Audio Resampler"   "CLAuRsmpl.ax"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdaursmpl.ax"
+ "CyberLink AudioCD Filter (PCM45)"   "CyberLink AudioCD Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\claudiocd.ax"
+ "CyberLink AudioCD Filter (PCM45)"   "CyberLink AudioCD Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\claudiocd.ax"
+ "Cyberlink Byte Counter Filter"   "Cyberlink Byte Counter Filter"   "(Not verified) CyberLink Corporation"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvbytecounter.ax"
+ "CyberLink DDR"   "CyberLink DDR"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvrender.ax"
+ "CyberLink Demultiplexer"   "MPEG-2 Dempltiplexer"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\cldemuxer.ax"
+ "CyberLink Demultiplexer"   "MPEG-2 Dempltiplexer"   "(Not verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\ppdemuxer.ax"
+ "CyberLink Demultiplexer"   "MPEG-2 Dempltiplexer"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvcldemuxer.ax"
+ "CyberLink Demultiplexer"   "MPEG-2 Dempltiplexer"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mddemuxer.ax"
+ "CyberLink Demultiplexer (PCM45)"   "MPEG-2 Dempltiplexer"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\cldemuxer.ax"
+ "CyberLink Demultiplexer (PCM45)"   "MPEG-2 Dempltiplexer"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\cldemuxer.ax"
+ "CyberLink Double Pin Tee"   "Cyberlink Double Tee Filter"   "(Not verified) CtberLink Corporation"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvdoubletee.ax"
+ "Cyberlink Dump Dispatch Filter"   "Cyberlink File Dump Dispatch Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\cldumpdispatch.ax"
+ "Cyberlink Dump Dispatch Filter"   "Cyberlink File Dump Dispatch Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mddumpdispatch.ax"
+ "Cyberlink Dump Dispatch Filter"   "Cyberlink File Dump Dispatch Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvcldumpdispatch.ax"
+ "Cyberlink Dump Filter"   "Cyberlink File Dump Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvcldump.ax"
+ "Cyberlink Dump Filter"   "Cyberlink File Dump Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\cldump.ax"
+ "Cyberlink Dump Filter"   "Cyberlink File Dump Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mddump.ax"
+ "CyberLink DV Buffer"   "DV dump Filter"   "(Not verified) CyberLink Corporation"   "c:\program files\cyberlink\powerproducer\ppdvdump.ax"
+ "CyberLink DV Buffer"   "CLDVBuffer Filter"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvbuffer.ax"
+ "CyberLink DV Dump Filter"   "DV dump Filter"   "(Not verified) CyberLink Corporation"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvdump.ax"
+ "CyberLink DV Filter"   "DVTCR"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvtcr.ax"
+ "CyberLink DV Reader Filter"   "DVMultReader Filter"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvdvmrd.ax"
+ "CyberLink DVD Navigator"   "CyberLink DVD Navigation Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\ppnavx.ax"
+ "CyberLink DVD Navigator (PCM45)"   "CyberLink DVD Navigation Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\clnavx.ax"
+ "CyberLink DVD Navigator (PCM45)"   "CyberLink DVD Navigation Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\clnavx.ax"
+ "CyberLink DVSD Modifier"   "Cyberlink DVSD Modifier"   "(Not verified) Cyberlink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvsdmodifier.ax"
+ "CyberLink Editing Service 3.0 (Source)"   "CES Kernel"   "(Not verified) CyberLink Corp."   "c:\program files\cyberlink\powerproducer\cledtkrn.dll"
+ "CyberLink Editing Service 3.0 (Source)"   "CES Kernel"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\cledtkrn.dll"
+ "CyberLink Editing Service 3.0 (Source)"   "CES Kernel"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\cledtkrn.dll"
+ "CyberLink Frame Parser"   "CLFParser"   "(Not verified) CyberLink"   "c:\program files\cyberlink\powerproducer\clfparser.ax"
+ "Cyberlink Gate Filter"   "CLGate"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvgate.ax"
+ "CyberLink Line21 Decoder Filter (PCM45)"   "CyberLink Line21 Decoder Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\clline21.ax"
+ "CyberLink Line21 Decoder Filter (PCM45)"   "CyberLink Line21 Decoder Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\clline21.ax"
+ "CyberLink Load Image Filter"   "CLImage"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\climage.ax"
+ "CyberLink Load Image Filter"   "CLImage"   "(Not verified) CyberLink"   "c:\program files\cyberlink\shared files\climage.ax"
+ "CyberLink Load Image Filter"   "CLImage"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\climage.ax"
+ "CyberLink MP3 Wrapper-PCM"   "CyberLink MP3 Wrapper"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\music\clmp3wrap.ax"
+ "CyberLink MP3 Wrapper-PCM"   "CyberLink MP3 Wrapper"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\music\clmp3wrap.ax"
+ "CyberLink MPEG Decoder"   "CyberLink Video/SP Filter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdmvd.ax"
+ "CyberLink MPEG Muxer"   "MpgMux"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvmpgmux.ax"
+ "CyberLink MPEG Muxer"   "MpgMux"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\mpgmux.ax"
+ "CyberLink MPEG Muxer"   "MpgMux"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdmpgmux.ax"
+ "CyberLink MPEG Splitter"   "CyberLink MPEG Splitter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\video\clsplter.ax"
+ "CyberLink MPEG Video Encoder"   "CyberLink MPEG Video Encoder                               "   "(Not verified) CyberLink Corp.                                            "   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\clvidenc.ax"
+ "CyberLink MPEG Video Encoder"   "CyberLink MPEG Video Encoder                               "   "(Not verified) CyberLink Corp.                                            "   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdvidenc.ax"
+ "CyberLink MPEG Video Encoder"   "CyberLink MPEG Video Encoder                               "   "(Not verified) CyberLink Corp.                                            "   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvvidenc.ax"
+ "Cyberlink Scene Detect Filter"   "CLScnDt"   "(Not verified) CyberLink"   "c:\program files\cyberlink\powerproducer\ppscndt.ax"
+ "CyberLink Scene Detect Filter 2"   "CLScnDt2"   "(Not verified) ????"   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\clscndt2.dll"
+ "CyberLink SnapShot Filter"   "CLSnapShot Filter"   "(Not verified) CyberLink"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvsnapshot.ax"
+ "CyberLink SnapShotTIP Filter"   ""   ""   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvclsshot.ax"
+ "CyberLink Stamp Effect"   ""   "(Not verified) CyberLink corporate"   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvstampeffect.ax"
+ "Cyberlink Sub-Picture Filter"   "Cyberlink Sub-Picture Filter"   "(Not verified) Cyberlink"   "c:\program files\cyberlink\powerproducer\clsubpic.ax"
+ "Cyberlink SubTitle Importor (PCM45)"   "CLSubTitle.ax"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\clsubtitle.ax"
+ "Cyberlink SubTitle Importor (PCM45)"   "CLSubTitle.ax"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\clsubtitle.ax"
+ "CyberLink TimeStretch Filter"   "CLAuTS.ax"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\clauts.ax"
+ "CyberLink TimeStretch Filter (CES)"   "CLAuTS.ax"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\clauts.ax"
+ "CyberLink TimeStretch Filter (PCM45)"   "CLAuTS.ax"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\movie\clauts.ax"
+ "CyberLink TimeStretch Filter (PCM45)"   "CLAuTS.ax"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\movie\clauts.ax"
+ "CyberLink TL MPEG Splitter"   "CyberLink MPEG Splitter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dvdivine\kernel\burner\cltlmsplter.ax"
+ "CyberLink TL MPEG Splitter"   "CyberLink MPEG Splitter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\dv wizard\kernel\powerdv\dvtlmsplter.ax"
+ "CyberLink TL MPEG-1 Splitter"   "CyberLink MPEG Splitter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdtlm1splter.ax"
+ "CyberLink TL MPEG-2 Splitter"   "CyberLink MPEG Splitter"   "(Not verified) CyberLink Corp."   "c:\program files\acer arcade deluxe\videomagician\kernel\editmovie\mdtlm2splter.ax"
+ "Cyberlink TS Information"   "CLTSInfo"   "(Not verified) Cyberlink"   "c:\program files\cyberlink\powerproducer\pptsinfo.ax"
+ "Cyberli
Título: Re: a s-quared o similar
Publicado por: Trebol en 21 de Agosto de 2010, 12:19:41 pm
cómo veis los Log :???:
Título: Re: a s-quared o similar
Publicado por: destroyer en 22 de Agosto de 2010, 01:10:39 pm
Dale tiempo a Mr_X que les eche un vistazo a los logs, y te pueda aconsejar el procedimiento a realizar.

Paciencia ;)
Título: Re: a s-quared o similar
Publicado por: Mr_X en 22 de Agosto de 2010, 05:59:51 pm
Los logs los veo limpios, aunque el del Autoruns está incompleto... ¿Cómo se comporta el equipo?
Título: Re: a s-quared o similar
Publicado por: Trebol en 22 de Agosto de 2010, 10:51:07 pm
Los logs los veo limpios, aunque el del Autoruns está incompleto... ¿Cómo se comporta el equipo?

Incompleto??. Pues pego todo lo que sale en txt

El equipo, bueno, regular, inicia lento, no lo noto como hace dos semanas atrás, losnavegadores o paneles de controles no siempre responden, tardan... no sé, yo creo algo tiene, pero no sé que puede ser... voy a psarle el panda on-line a ver si me detecta algo... aunque no lo repare... por eso decía algún limpiador y reparador de registro...  :???:
Título: Re: a s-quared o similar
Publicado por: Trebol en 22 de Agosto de 2010, 11:34:52 pm
Acabo de pasar el panda on-line y me ha detectado 3 virus y unos cuantas cookies además me dice que mi antivirus esta actualizao, lo que no entiendo si es así como no los pilla él  :???: :juer: :juer:


Perdón edito, cómo puedo desinfectar los resultados que me da el Panda
Título: Re: a s-quared o similar
Publicado por: Mr_X en 23 de Agosto de 2010, 12:26:34 am
Incompleto??. Pues pego todo lo que sale en txt

El log de Autoruns no sale completo porque lo pones en el mismo mensaje del HijackThis, y el foro no soporta tantas líneas en un mismo mensaje...

Acabo de pasar el panda on-line y me ha detectado 3 virus y unos cuantas cookies además me dice que mi antivirus esta actualizao, lo que no entiendo si es así como no los pilla él  :???: :juer: :juer:

¿Qué te detecta el Panda?
Título: Re: a s-quared o similar
Publicado por: Trebol en 23 de Agosto de 2010, 01:52:54 am
virus y cookies
Título: Re: a s-quared o similar
Publicado por: Mr_X en 23 de Agosto de 2010, 03:15:22 am
virus y cookies

Ajá...

Las cookies no tienen problema, pero ¿qué virus? :pardiez:
Título: Re: a s-quared o similar
Publicado por: Trebol en 23 de Agosto de 2010, 04:19:38 pm
W32/Xor-encoded.A

perdonad, modifico, cuantos más datos quizás más pueda ser de utilidad sobre todo a quien me ayude que es quien deja los sesos... no daba cuenta había guardado los del escaneo panda online


ANALYSIS: 2010-08-22 17:28:23
PROTECTIONS: 1
MALWARE: 7
SUSPECTS: 3

********************************************************************************************
PROTECTIONS
Description                                  Version                       Active    Updated
;================================================================================================================================================================
avast! Antivirus                                                           Yes       Yes
;===================================================================================================================================================================================
MALWARE


Id        Description                        Type                Active    Severity  Disinfectable  Disinfected Location


00139061  Cookie/Doubleclick                 TrackingCookie      No        0         Yes            No           c:\users\miequipo\appdata\local\temp\low\cookies\miequipo@doubleclick[1].txt
00139064  Cookie/Atlas DMT                   TrackingCookie      No        0         Yes            No           c:\users\miequipo\appdata\roaming\microsoft\windows\cookies\miequipo@atdmt[1].txt
00167704  Cookie/Xiti                        TrackingCookie      No        0         Yes            No           c:\users\miequipo\appdata\roaming\microsoft\windows\cookies\miequipo@xiti[1].txt
00168056  Cookie/YieldManager                TrackingCookie      No        0         Yes            No           c:\users\miequipo\appdata\roaming\microsoft\windows\cookies\[email protected][1].txt
00168061  Cookie/Apmebf                      TrackingCookie      No        0         Yes            No           c:\users\miequipo\appdata\roaming\microsoft\windows\cookies\miequipo@apmebf[2].txt
00168110  Cookie/Server.iad.Liveperson       TrackingCookie      No        0         Yes            No           c:\users\miequipo\appdata\roaming\microsoft\windows\cookies\[email protected][1].txt
03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\users\miequipo\appdata\local\temp\housecall\log\159c3de0-45a3-489c-b632-be78cc3836d1\backup\122
03009106  W32/Xor-encoded.A                  Virus               No        0         Yes            No           c:\users\miequipo\appdata\local\temp\housecall\log\159c3de0-45a3-489c-b632-be78cc3836d1\backup\117

SUSPECTS
Sent      Location
;===================================================================================================================================================================================
Yes       c:\users\miequipo\appdata\local\temp\nikon\messagecenter\mca_setup_10.exe
Yes       d:\software\everest home\everest_icons.dll
Yes       d:\software\everest home\everest_xpicons.dll
;===================================================================================================================================================================================
VULNERABILITIES
Id        Severity       Description
;=========================================================================================================================================
;=======================================================================================================
Título: Re: a s-quared o similar
Publicado por: Mr_X en 23 de Agosto de 2010, 05:01:56 pm
Como te comenté, las cookies no tienen problema, bórralas desde el Internet Explorer. Lo que te detecta como 'W32/Xor-encoded.A' está en el baúl del TrendMicro, puedes eliminarlo sin problema. Y los tres bajo 'SUSPECTS' son falsos positivos...
Título: Re: a s-quared o similar
Publicado por: Trebol en 23 de Agosto de 2010, 05:16:55 pm
entonces tú dirías tengo el equipo limpio... ¿porque si hago un escaneo detecta? :???:

ya eliminé las cookies y todo siempre hago... por eso no entiendo lo de los archivos que comentaba tampoco