Autor Tema: se me abren webs de publicidad  (Leído 8915 veces)

Desconectado rosaescala

  • Junior Member
  • **
  • Mensajes: 47
se me abren webs de publicidad
« en: 09 de Diciembre de 2009, 05:35:15 pm »
Hola a tod@s!

Mi ordenador está infectado, no se exactamente con qué..He pasado el avg, el spyboot, el ad ware, y no detecta nada..pero contínuamente se me abren webs de juegos, casinos, publicidad...
 
Me he bajado el GMer, (abajo os adjunto el registro) no puedo eliminar nada, solo copiarlo y cuando le doy de nuevo a scan se me reinicia el ordenador con un mensaje de que ha surgido un problema, más abajo os adjunto el mensaje de error que sale cuando se vuelve a encender..

Si alguien me pudiera ayuda.. muchas gracias


GMER 1.0.15.15273 - http://www.gmer.net
Rootkit quick scan 2009-12-09 17:34:13
Windows 6.0.6001 Service Pack 1
Running: gmer.exe; Driver: C:\Users\Rosa\AppData\Local\Temp\kxldikow.sys


---- System - GMER 1.0.15 ----

Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  ZwCreateFile [0x8C3819BE]
Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  ZwCreateProcess [0x8C381958]
Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  ZwCreateProcessEx [0x8C38196C]
Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  ZwMapViewOfSection [0x8C3819FC]
Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  ZwNotifyChangeKey [0x8C381A3F]
Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  ZwOpenProcess [0x8C381930]
Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  ZwOpenThread [0x8C381944]
Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  ZwProtectVirtualMemory [0x8C3819D2]
Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  ZwReplaceKey [0x8C381A67]
Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  ZwRestoreKey [0x8C381A53]
Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  ZwSetContextThread [0x8C3819AA]
Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  ZwSetInformationProcess [0x8C381996]
Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  ZwTerminateProcess [0x8C381A2B]
Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  ZwUnmapViewOfSection [0x8C381A12]
Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  ZwYieldExecution [0x8C3819E8]
Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  ZwCreateUserProcess [0x8C381982]
Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  NtCreateFile
Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  NtMapViewOfSection
Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  NtOpenProcess
Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  NtOpenThread
Code            \SystemRoot\system32\drivers\mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)  NtSetInformationProcess

---- Devices - GMER 1.0.15 ----

AttachedDevice  \FileSystem\Ntfs \Ntfs                                                                        mfehidk.sys (Host Intrusion Detection Link Driver/McAfee, Inc.)
AttachedDevice  \Driver\tdx \Device\Ip                                                                        Mpfp.sys (McAfee Personal Firewall Plus Driver/McAfee, Inc.)
AttachedDevice  \Driver\tdx \Device\Tcp                                                                       Mpfp.sys (McAfee Personal Firewall Plus Driver/McAfee, Inc.)
AttachedDevice  \Driver\tdx \Device\Udp                                                                       Mpfp.sys (McAfee Personal Firewall Plus Driver/McAfee, Inc.)
AttachedDevice  \Driver\tdx \Device\RawIp                                                                     Mpfp.sys (McAfee Personal Firewall Plus Driver/McAfee, Inc.)
AttachedDevice  \Driver\kbdclass \Device\KeyboardClass0                                                       Wdf01000.sys (WDF dinámico/Microsoft Corporation)
AttachedDevice  \Driver\kbdclass \Device\KeyboardClass1                                                       Wdf01000.sys (WDF dinámico/Microsoft Corporation)

---- EOF - GMER 1.0.15 ----



Firma con problemas:
  Nombre del evento de problema:   BlueScreen
  Versión del sistema operativo:   6.0.6001.2.1.0.768.3
  Id. de configuración regional:   3082

Información adicional del problema:
  BCCode:   be
  BCP1:   806340E8
  BCP2:   03E45161
  BCP3:   84419B08
  BCP4:   0000000B
  OS Version:   6_0_6001
  Service Pack:   1_0
  Product:   768_1

Archivos que ayudan a describir el problema:
  C:\Windows\Minidump\Mini120909-02.dmp
  C:\Users\Rosa\AppData\Local\Temp\WER-90480-0.sysdata.xml
  C:\Users\Rosa\AppData\Local\Temp\WER82A6.tmp.version.txt

Lea nuestra declaración de privacidad:
  http://go.microsoft.com/fwlink/?linkid=50163&clcid=0x0c0a



Desconectado Mr_X

  • Moderador
  • ******
  • Mensajes: 2635
Re: se me abren webs de publicidad
« Respuesta #1 en: 09 de Diciembre de 2009, 06:02:15 pm »
Saca un log del HijackThis (clic aquí) y otro del Autoruns (clic aquí)...
"... I'll wait I sow the seed, I set the scene and I watch the world go by..."

Desconectado rosaescala

  • Junior Member
  • **
  • Mensajes: 47
Re: se me abren webs de publicidad
« Respuesta #2 en: 09 de Diciembre de 2009, 11:43:53 pm »
Muchas gracias!!

te adjunto el hijackthis, el registro del autrun es demasiado largo si eligo todas las opciones,debo restringir las opciones??

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:25:37, on 09/12/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v8.00 (8.00.6001.18865)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\Toshiba\ConfigFree\NDSTray.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\IDM\Desktop SMS\DesktopSMS.exe
C:\Program Files\Toshiba\Toshiba Online Product Information\TOPI.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe
C:\Program Files\Toshiba\Power Saver\TPwrMain.exe
C:\Program Files\Toshiba\SmoothView\SmoothView.exe
C:\Program Files\Toshiba\FlashCards\TCrdMain.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Toshiba\TOSCDSPD\TOSCDSPD.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Siemens\CardOS API\bin\siecacst.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
C:\Program Files\Camera Assistant Software for Toshiba\CEC_MAIN.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\Windows Mail\WinMail.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Toshiba\ConfigFree\CFSwMgr.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
c:\PROGRA~1\mcafee\msc\mcuimgr.exe
C:\Windows\system32\conime.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Alwil Software\Avast4\ashSimpl.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.es
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.es
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.es
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Aplicación auxiliar de vínculos de Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Automated Content Enhancer - {1D74E9DD-8987-448b-B2CB-67FFF2B8A932} - C:\Program Files\Automated Content Enhancer\4.1.0.5190\ACEIEAddOn.dll
O2 - BHO: McAntiPhishingBHO - {377C180E-6F0E-4D4C-980F-F45BD3D40CF4} - c:\PROGRA~1\mcafee\msk\mcapbho.dll
O2 - BHO: Customized Platform Advancer - {42C7C39F-3128-4a17-BDB7-91C46032B5B9} - C:\Program Files\Customized Platform Advancer\3.1.0.1630\CPAIEAddOn.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
O2 - BHO: Windows Live Aplicación auxiliar de inicio de sesión - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: Content Management Wizard - {B72681C0-A222-4b21-A0E2-53A5A5CA3D41} - C:\Program Files\Content Management Wizard\1.1.0.1870\CMWIE.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll
O2 - BHO: TCP - {CAC89FF9-34A9-4431-8CFE-292A47F843BC} - C:\Program Files\Textual Content Provider\1.1.0.1610\TCPIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: Web Search Operator - {EB4A577D-BCAD-4b1c-8AF2-9A74B8DD3431} - C:\Program Files\Web Search Operator\3.1.0.1840\wso.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [ITSecMng] %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
O4 - HKLM\..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [Desktop SMS] C:\Program Files\IDM\Desktop SMS\DesktopSMS.exe /auto
O4 - HKLM\..\Run: [topi] C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe -startup
O4 - HKLM\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Camera Assistant Software] "C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe" /start
O4 - HKLM\..\Run: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE
O4 - HKLM\..\Run: [HSON] %ProgramFiles%\TOSHIBA\TBS\HSON.exe
O4 - HKLM\..\Run: [SmoothView] %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe
O4 - HKLM\..\Run: [00TCrdMain] %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe
O4 - HKLM\..\Run: [Toshiba Registration] C:\Program Files\Toshiba\Registration\ToshibaRegistration.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [TOSCDSPD] TOSCDSPD.EXE
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICIO LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICIO LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'Servicio de red')
O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files\Toshiba\TRDCReminder\TRDCReminder.exe (User 'Default user')
O4 - Startup: OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O4 - Global Startup: CardOS API.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Agregar entrada - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Agregar entrada en Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: eBay - Compra, vende y diviértete - {76577871-04EC-495E-A12B-91F7C3600AFA} - http://rover.ebay.com/rover/1/1185-44560-9400-3/4 (file missing)
O9 - Extra button: Amazon.co.uk - {8A918C1D-E123-4E36-B562-5C1519E434CE} - http://www.amazon.co.uk/exec/obidos/redirect-home?tag=Toshibaukbholink-21&site=home (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O13 - Gopher Prefix:
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: Administrador de Google Desktop 5.9.909.30391 (GoogleDesktopManager-093009-130223) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: O2Micro Flash Memory Card Service (o2flash) - O2Micro International - C:\Program Files\O2Micro Flash Memory Card Driver\o2flash.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: TOSHIBA Navi Support Service (TNaviSrv) - TOSHIBA Corporation - C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\Windows\system32\TODDSrv.exe
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - Unknown owner - c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe (file missing)
O23 - Service: TOSHIBA SMART Log Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 13794 bytes

Desconectado Mr_X

  • Moderador
  • ******
  • Mensajes: 2635
Re: se me abren webs de publicidad
« Respuesta #3 en: 10 de Diciembre de 2009, 01:29:49 am »
Reinicia en Modo seguro; ejecuta el HijackThis, marca la casilla a la izquierda de las siguientes entradas y dale al botón [Fix checked]:

Código: [Seleccionar]
O2 - BHO: Automated Content Enhancer - {1D74E9DD-8987-448b-B2CB-67FFF2B8A932} - C:\Program Files\Automated Content Enhancer\4.1.0.5190\ACEIEAddOn.dll

O2 - BHO: Customized Platform Advancer - {42C7C39F-3128-4a17-BDB7-91C46032B5B9} - C:\Program Files\Customized Platform Advancer\3.1.0.1630\CPAIEAddOn.dll

O2 - BHO: Content Management Wizard - {B72681C0-A222-4b21-A0E2-53A5A5CA3D41} - C:\Program Files\Content Management Wizard\1.1.0.1870\CMWIE.dll

O2 - BHO: TCP - {CAC89FF9-34A9-4431-8CFE-292A47F843BC} - C:\Program Files\Textual Content Provider\1.1.0.1610\TCPIE.dll

O2 - BHO: Web Search Operator - {EB4A577D-BCAD-4b1c-8AF2-9A74B8DD3431} - C:\Program Files\Web Search Operator\3.1.0.1840\wso.dll

Reinica normal, actualiza el Avast y el Spybot S&D y pásalos iniciando en Modo seguro... Saca un nuevo log del HijackThis... Para el log de Autoruns debes marcar las dos primeras opciones del menú 'Options'...
"... I'll wait I sow the seed, I set the scene and I watch the world go by..."

Desconectado rosaescala

  • Junior Member
  • **
  • Mensajes: 47
Re: se me abren webs de publicidad
« Respuesta #4 en: 11 de Diciembre de 2009, 06:36:49 pm »
Aqui va!

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:32:39, on 11/12/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v8.00 (8.00.6001.18865)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Toshiba\ConfigFree\NDSTray.exe
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\IDM\Desktop SMS\DesktopSMS.exe
C:\Program Files\Toshiba\Toshiba Online Product Information\TOPI.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe
C:\Program Files\Toshiba\Power Saver\TPwrMain.exe
C:\Program Files\Toshiba\SmoothView\SmoothView.exe
C:\Program Files\Toshiba\FlashCards\TCrdMain.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
C:\Program Files\Toshiba\TOSCDSPD\TOSCDSPD.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Camera Assistant Software for Toshiba\CEC_MAIN.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Siemens\CardOS API\bin\siecacst.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\Windows Mail\WinMail.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Toshiba\ConfigFree\CFSwMgr.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Windows\system32\conime.exe
c:\PROGRA~1\mcafee\msc\mcuimgr.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\wuauclt.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.es
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.es
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.es
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Aplicación auxiliar de vínculos de Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: McAntiPhishingBHO - {377C180E-6F0E-4D4C-980F-F45BD3D40CF4} - c:\PROGRA~1\mcafee\msk\mcapbho.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
O2 - BHO: Windows Live Aplicación auxiliar de inicio de sesión - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [ITSecMng] %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
O4 - HKLM\..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [Desktop SMS] C:\Program Files\IDM\Desktop SMS\DesktopSMS.exe /auto
O4 - HKLM\..\Run: [topi] C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe -startup
O4 - HKLM\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Camera Assistant Software] "C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe" /start
O4 - HKLM\..\Run: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE
O4 - HKLM\..\Run: [HSON] %ProgramFiles%\TOSHIBA\TBS\HSON.exe
O4 - HKLM\..\Run: [SmoothView] %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe
O4 - HKLM\..\Run: [00TCrdMain] %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe
O4 - HKLM\..\Run: [Toshiba Registration] C:\Program Files\Toshiba\Registration\ToshibaRegistration.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [TOSCDSPD] TOSCDSPD.EXE
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICIO LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICIO LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'Servicio de red')
O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files\Toshiba\TRDCReminder\TRDCReminder.exe (User 'Default user')
O4 - Startup: OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O4 - Global Startup: CardOS API.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Agregar entrada - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Agregar entrada en Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: eBay - Compra, vende y diviértete - {76577871-04EC-495E-A12B-91F7C3600AFA} - http://rover.ebay.com/rover/1/1185-44560-9400-3/4 (file missing)
O9 - Extra button: Amazon.co.uk - {8A918C1D-E123-4E36-B562-5C1519E434CE} - http://www.amazon.co.uk/exec/obidos/redirect-home?tag=Toshibaukbholink-21&site=home (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O13 - Gopher Prefix:
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: Administrador de Google Desktop 5.9.909.30391 (GoogleDesktopManager-093009-130223) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: O2Micro Flash Memory Card Service (o2flash) - O2Micro International - C:\Program Files\O2Micro Flash Memory Card Driver\o2flash.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: TOSHIBA Navi Support Service (TNaviSrv) - TOSHIBA Corporation - C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\Windows\system32\TODDSrv.exe
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - Unknown owner - c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe (file missing)
O23 - Service: TOSHIBA SMART Log Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 13020 bytes



Autorun

"HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Startup"   ""   ""   ""
"HKCU\Software\Policies\Microsoft\Windows\System\Scripts\Logon"   ""   ""   ""
"HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Logon"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit"   ""   ""   ""
"HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Shutdown"   ""   ""   ""
"HKCU\Software\Policies\Microsoft\Windows\System\Scripts\Logoff"   ""   ""   ""
"HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Logoff"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Startup"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Startup"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Shutdown"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Shutdown"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System\Shell"   ""   ""   ""
"HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System\Shell"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Taskman"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run"   ""   ""   ""
+ "00TCrdMain"   "TOSHIBA Flash Cards"   "TOSHIBA Corporation"   "c:\program files\toshiba\flashcards\tcrdmain.exe"
+ "Adobe Reader Speed Launcher"   "Adobe Acrobat SpeedLauncher"   "Adobe Systems Incorporated"   "c:\program files\adobe\reader 8.0\reader\reader_sl.exe"
+ "avast!"   "avast! service GUI component"   "ALWIL Software"   "c:\program files\alwil software\avast4\ashdisp.exe"
+ "Camera Assistant Software"   "traybar"   "Chicony"   "c:\program files\camera assistant software for toshiba\traybar.exe"
+ "Desktop SMS"   "Desktop SMS - German"   "Interactive Digital Media"   "c:\program files\idm\desktop sms\desktopsms.exe"
+ "Google Desktop Search"   "Google Desktop"   "Google"   "c:\program files\google\google desktop search\googledesktop.exe"
+ "HSON"   "HotStartOn"   "TOSHIBA Corporation"   "c:\program files\toshiba\tbs\hson.exe"
+ "ITSecMng"   ""   ""   "File not found: C:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START"
+ "mcagent_exe"   "McAfee Integrated Security Platform"   "McAfee, Inc."   "c:\program files\mcafee.com\agent\mcagent.exe"
+ "NDSTray.exe"   "ConfigFree(TM) Task tray menu"   "TOSHIBA CORPORATION"   "C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe"
+ "SmoothView"   "SmoothView"   "TOSHIBA Corporation"   "c:\program files\toshiba\smoothview\smoothview.exe"
+ "StartCCC"   ""   ""   "c:\program files\ati technologies\ati.ace\core-static\clistart.exe"
+ "SunJavaUpdateSched"   "Java(TM) Platform SE binary"   "Sun Microsystems, Inc."   "c:\program files\java\jre6\bin\jusched.exe"
+ "SynTPEnh"   "Synaptics TouchPad Enhancements"   "Synaptics, Inc."   "c:\program files\synaptics\syntp\syntpenh.exe"
+ "topi"   "TOSHIBA Online Product Information"   "TOSHIBA"   "c:\program files\toshiba\toshiba online product information\topi.exe"
+ "Toshiba Registration"   "Vista Registration"   "Toshiba"   "c:\program files\toshiba\registration\toshibaregistration.exe"
+ "TPwrMain"   "TOSHIBA Power Saver"   "TOSHIBA Corporation"   "c:\program files\toshiba\power saver\tpwrmain.exe"
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce"   ""   ""   ""
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup"   ""   ""   ""
+ "CardOS API.lnk"   "Certstore Application"   "Siemens AG"   "c:\program files\siemens\cardos api\bin\siecacst.exe"
"C:\Users\Rosa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup"   ""   ""   ""
+ "OpenOffice.org 3.0.lnk"   ""   ""   "c:\program files\openoffice.org 3\program\quickstart.exe"
"HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\Load"   ""   ""   ""
"HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\Run"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Run"   ""   ""   ""
+ "SpybotSD TeaTimer"   "System settings protector"   "Safer Networking Limited"   "c:\program files\spybot - search & destroy\teatimer.exe"
+ "swg"   "GoogleToolbarNotifier"   "Google Inc."   "c:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe"
+ "TOSCDSPD"   "Es"   ""   "C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe"
"HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce"   ""   ""   ""
"HKCU\SOFTWARE\Classes\Protocols\Filter"   ""   ""   ""
"HKLM\SOFTWARE\Classes\Protocols\Filter"   ""   ""   ""
"HKCU\SOFTWARE\Classes\Protocols\Handler"   ""   ""   ""
"HKLM\SOFTWARE\Classes\Protocols\Handler"   ""   ""   ""
"HKCU\SOFTWARE\Microsoft\Internet Explorer\Desktop\Components"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components"   ""   ""   ""
"HKCU\SOFTWARE\Microsoft\Active Setup\Installed Components"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler"   ""   ""   ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad"   ""   ""   ""
"HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks"   ""   ""   ""
"HKCU\Software\Classes\*\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers"   ""   ""   ""
+ "avast"   "avast! Shell Extension"   "ALWIL Software"   "c:\program files\alwil software\avast4\ashshell.dll"
+ "LavasoftShellExt"   "Shell Extension"   ""   "c:\program files\lavasoft\ad-aware\shellext.dll"
+ "McCtxMenu"   "McAfee VirusScan - Context Menu"   "McAfee, Inc."   "c:\program files\mcafee\virusscan\mcctxmnu.dll"
+ "WinRAR"   ""   ""   "c:\program files\winrar\rarext.dll"
"HKCU\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKCU\Software\Classes\Directory\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers"   ""   ""   ""
+ "WinRAR"   ""   ""   "c:\program files\winrar\rarext.dll"
"HKCU\Software\Classes\Directory\Shellex\DragDropHandlers"   ""   ""   ""
"HKLM\Software\Classes\Directory\Shellex\DragDropHandlers"   ""   ""   ""
+ "WinRAR"   ""   ""   "c:\program files\winrar\rarext.dll"
"HKCU\Software\Classes\Directory\Shellex\PropertySheetHandlers"   ""   ""   ""
"HKLM\Software\Classes\Directory\Shellex\PropertySheetHandlers"   ""   ""   ""
"HKCU\Software\Classes\Directory\Shellex\CopyHookHandlers"   ""   ""   ""
"HKLM\Software\Classes\Directory\Shellex\CopyHookHandlers"   ""   ""   ""
"HKCU\Software\Classes\Folder\Shellex\ColumnHandlers"   ""   ""   ""
"HKLM\Software\Classes\Folder\Shellex\ColumnHandlers"   ""   ""   ""
+ "PDF Shell Extension"   "PDF Shell Extension"   "Adobe Systems, Inc."   "c:\program files\common files\adobe\acrobat\activex\pdfshell.dll"
+ "{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}"   ""   "Sun Microsystems, Inc."   "c:\program files\openoffice.org 3\basis\program\shlxthdl\shlxthdl.dll"
"HKCU\Software\Classes\Folder\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers"   ""   ""   ""
+ "avast"   "avast! Shell Extension"   "ALWIL Software"   "c:\program files\alwil software\avast4\ashshell.dll"
+ "LavasoftShellExt"   "Shell Extension"   ""   "c:\program files\lavasoft\ad-aware\shellext.dll"
+ "McCtxMenu"   "McAfee VirusScan - Context Menu"   "McAfee, Inc."   "c:\program files\mcafee\virusscan\mcctxmnu.dll"
+ "WinRAR"   ""   ""   "c:\program files\winrar\rarext.dll"
"HKCU\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers"   ""   ""   ""
"HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers"   ""   ""   ""
+ "ACE"   "ACE Context Menu"   ""   "c:\program files\ati technologies\ati.ace\core-static\atiacmxx.dll"
"HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers"   ""   ""   ""
"HKCU\Software\Microsoft\Ctf\LangBarAddin"   ""   ""   ""
"HKLM\Software\Microsoft\Ctf\LangBarAddin"   ""   ""   ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved"   ""   ""   ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved"   ""   ""   ""
+ "avast"   "avast! Shell Extension"   "ALWIL Software"   "c:\program files\alwil software\avast4\ashshell.dll"
+ "Catalyst Context Menu extension"   "ACE Context Menu"   ""   "c:\program files\ati technologies\ati.ace\core-static\atiacmxx.dll"
+ "OpenOffice.org Column Handler"   ""   "Sun Microsystems, Inc."   "c:\program files\openoffice.org 3\basis\program\shlxthdl\shlxthdl.dll"
+ "OpenOffice.org Infotip Handler"   ""   "Sun Microsystems, Inc."   "c:\program files\openoffice.org 3\basis\program\shlxthdl\shlxthdl.dll"
+ "OpenOffice.org Property Sheet Handler"   ""   "Sun Microsystems, Inc."   "c:\program files\openoffice.org 3\basis\program\shlxthdl\shlxthdl.dll"
+ "OpenOffice.org Thumbnail Viewer"   ""   "Sun Microsystems, Inc."   "c:\program files\openoffice.org 3\basis\program\shlxthdl\shlxthdl.dll"
+ "Synaptics Control Panel"   "TouchPad Control Panel Extensions"   "Synaptics, Inc."   "c:\program files\synaptics\syntp\syntpcpl.dll"
+ "WinRAR shell extension"   ""   ""   "c:\program files\winrar\rarext.dll"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects"   ""   ""   ""
+ "Aplicación auxiliar de vínculos de Adobe PDF Reader"   "Adobe PDF Helper for Internet Explorer"   "Adobe Systems Incorporated"   "c:\program files\common files\adobe\acrobat\activex\acroiehelper.dll"
+ "Google Dictionary Compression sdch"   "Fast Search"   "Google Inc."   "c:\program files\google\google toolbar\component\fastsearch_b7c5ac242193bb3e.dll"
+ "Google Toolbar Helper"   "Google Toolbar"   "Google Inc."   "c:\program files\google\google toolbar\googletoolbar_32.dll"
+ "Google Toolbar Notifier BHO"   "GoogleToolbarNotifier"   "Google Inc."   "c:\program files\google\googletoolbarnotifier\5.4.4525.1752\swg.dll"
+ "Java(tm) Plug-In 2 SSV Helper"   "Java(TM) Platform SE binary"   "Sun Microsystems, Inc."   "c:\program files\java\jre6\bin\jp2ssv.dll"
+ "McAfee Phishing Filter"   "McAfee Phishing BHO"   "McAfee, Inc."   "c:\program files\mcafee\msk\mcapbho.dll"
+ "scriptproxy"   "VSCore Script Scanner"   "McAfee, Inc."   "c:\program files\mcafee\virusscan\scriptsn.dll"
+ "Spybot-S&D IE Protection"   "SBSD IE Protection"   "Safer Networking Limited"   "c:\program files\spybot - search & destroy\sdhelper.dll"
"HKCU\Software\Microsoft\Internet Explorer\UrlSearchHooks"   ""   ""   ""
"HKLM\Software\Microsoft\Internet Explorer\Toolbar"   ""   ""   ""
+ "Google Toolbar"   "Google Toolbar"   "Google Inc."   "c:\program files\google\google toolbar\googletoolbar_32.dll"
"HKCU\Software\Microsoft\Internet Explorer\Explorer Bars"   ""   ""   ""
"HKLM\Software\Microsoft\Internet Explorer\Explorer Bars"   ""   ""   ""
"HKCU\Software\Microsoft\Internet Explorer\Extensions"   ""   ""   ""
"HKLM\Software\Microsoft\Internet Explorer\Extensions"   ""   ""   ""
+ "Amazon.co.uk"   ""   ""   "File not found: http://www.amazon.co.uk/exec/obidos/redirect-home?tag=Toshibaukbholink-21&site=home"
+ "eBay - Compra, vende y diviértete"   ""   ""   "File not found: http://rover.ebay.com/rover/1/1185-44560-9400-3/4"
"Task Scheduler"   ""   ""   ""
+ "\Ad-Aware Update (Weekly)"   "Ad-Aware Admin Application"   "Lavasoft"   "c:\program files\lavasoft\ad-aware\ad-awareadmin.exe"
+ "\McDefragTask"   "QuickClean Console Application"   "McAfee, Inc."   "c:\program files\mcafee\mqc\qcconsol.exe"
+ "\McQcTask"   "QuickClean Console Application"   "McAfee, Inc."   "c:\program files\mcafee\mqc\qcconsol.exe"
+ "\Microsoft\Windows\Wired\GatherWiredInfo"   ""   ""   "c:\windows\system32\gatherwiredinfo.vbs"
+ "\Microsoft\Windows\Wireless\GatherWirelessInfo"   ""   ""   "c:\windows\system32\gatherwirelessinfo.vbs"
+ "\OGADaily"   ""   ""   "c:\windows\system32\ogaverify.exe"
+ "\OGALogon"   ""   ""   "c:\windows\system32\ogaverify.exe"
"HKLM\System\CurrentControlSet\Services"   ""   ""   ""
+ "aswUpdSv"   "Brinda actualizaciones automáticas para el antivirus avast!."   "ALWIL Software"   "c:\program files\alwil software\avast4\aswupdsv.exe"
+ "Ati External Event Utility"   "ATI External Event Utility EXE Module"   "ATI Technologies Inc."   "c:\windows\system32\ati2evxx.exe"
+ "avast! Antivirus"   "Administra e implementa los servicios de antivirus avast! para este ordenador/computador/PC. Esto incluye protección residente, el baúl de virus y el programador de tareas."   "ALWIL Software"   "c:\program files\alwil software\avast4\ashserv.exe"
+ "avast! Mail Scanner"   "Implementa la comprobación del correo para el antivirus avast!"   "ALWIL Software"   "c:\program files\alwil software\avast4\ashmaisv.exe"
+ "avast! Web Scanner"   "Implementa la comprobación de webs (HTTP) para el antivirus avast!"   "ALWIL Software"   "c:\program files\alwil software\avast4\ashwebsv.exe"
+ "ConfigFree Service"   "You can't stop this service, if you want to keep ConfigFree functionality fine."   "TOSHIBA CORPORATION"   "c:\program files\toshiba\configfree\cfsvcs.exe"
+ "GoogleDesktopManager-093009-130223"   "Actualiza Google Desktop con las funciones y prestaciones más recientes. Este servicio sólo se ejecuta periódicamente y no afecta al rendimiento de tu equipo. En caso de detener o inhabilitar dicho servicio, el funcionamiento de Google Desktop podría no ser el deseado."   "Google"   "c:\program files\google\google desktop search\googledesktop.exe"
+ "gusvc"   "Google Updater keeps your Google software up to date. If Google Updater Service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work."   "Google"   "c:\program files\google\common\google updater\googleupdaterservice.exe"
+ "IDriverT"   "Provides support for the Running Object Table for InstallShield Drivers"   "Macrovision Corporation"   "c:\program files\common files\installshield\driver\11\intel 32\idrivert.exe"
+ "Lavasoft Ad-Aware Service"   "Ad-Aware Service"   "Lavasoft"   "c:\program files\lavasoft\ad-aware\aawservice.exe"
+ "mcmscsvc"   "McAfee Protection Manager"   "McAfee, Inc."   "c:\program files\mcafee\msc\mcmscsvc.exe"
+ "McNASvc"   "Allows McAfee applications to communicate securely on the local network."   "McAfee, Inc."   "c:\program files\common files\mcafee\mna\mcnasvc.exe"
+ "McODS"   "Analiza las ubicaciones especificadas de este equipo para comprobar si hay virus u otras amenazas. El servicio se ejecuta para análisis programados y análisis manuales."   "McAfee, Inc."   "c:\program files\mcafee\virusscan\mcods.exe"
+ "McProxy"   "McAfee Proxy Service"   "McAfee, Inc."   "c:\program files\common files\mcafee\mcproxy\mcproxy.exe"
+ "McShield"   "Analiza los archivos para comprobar si hay virus y otras amenazas cuando este equipo accede a ellos."   "McAfee, Inc."   "c:\program files\mcafee\virusscan\mcshield.exe"
+ "McSysmon"   "Controla los cambios potencialmente no autorizados en este equipo."   "McAfee, Inc."   "c:\program files\mcafee\virusscan\mcsysmon.exe"
+ "MpfService"   "Ayuda a proteger el equipo de intrusiones y permite gestionar los programas de confianza del equipo."   "McAfee, Inc."   "c:\program files\mcafee\mpf\mpfsrv.exe"
+ "MSK80Service"   "Este servicio filtra los mensajes de correo electrónico del equipo"   "McAfee, Inc."   "c:\program files\mcafee\msk\msksrver.exe"
+ "o2flash"   "O2 Flash Memory Service"   "O2Micro International"   "c:\program files\o2micro flash memory card driver\o2flash.exe"
+ "SBSDWSCService"   "Spybot-S&D Security Center integration"   "Safer Networking Ltd."   "c:\program files\spybot - search & destroy\sdwinsec.exe"
+ "TNaviSrv"   "TOSHIBA Navi Support Service"   "TOSHIBA Corporation"   "c:\program files\toshiba\toshiba dvd player\tnavisrv.exe"
+ "TODDSrv"   "TDCSrv Application"   "TOSHIBA Corporation"   "c:\windows\system32\toddsrv.exe"
+ "TosCoSrv"   "Ahorro de energía de Toshiba administra la configuración de ahorro de energía admitida por Toshiba. Dicha configuración no funciona cuando el servicio se ha detenido."   "TOSHIBA Corporation"   "c:\program files\toshiba\power saver\toscosrv.exe"
+ "TOSHIBA Bluetooth Service"   ""   ""   "File not found: c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe"
+ "TOSHIBA SMART Log Service"   "TosIPCSrv.exe"   "TOSHIBA Corporation"   "c:\program files\toshiba\smartlogservice\tosipcsrv.exe"
+ "UleadBurningHelper"   "ULCDRSvr"   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\dvd\ulcdrsvr.exe"
+ "XAudioService"   "User-mode gate for Modem Speakerphone"   "Conexant Systems, Inc."   "c:\windows\system32\drivers\xaudio.exe"
"HKLM\System\CurrentControlSet\Services"   ""   ""   ""
+ "ASPI32"   "ASPI for WIN32 Kernel Driver"   "Adaptec"   "c:\windows\system32\drivers\aspi32.sys"
+ "aswFsBlk"   "avast! mini-filter driver (aswFsBlk)"   "ALWIL Software"   "c:\windows\system32\drivers\aswfsblk.sys"
+ "aswMonFlt"   "avast! mini-filter driver (aswMonFlt)"   "ALWIL Software"   "c:\windows\system32\drivers\aswmonflt.sys"
+ "aswRdr"   "avast! TDI RDR Driver"   "ALWIL Software"   "c:\windows\system32\drivers\aswrdr.sys"
+ "aswSP"   "avast! self protection module"   "ALWIL Software"   "c:\windows\system32\drivers\aswsp.sys"
+ "aswTdi"   "avast! TDI Filter Driver"   "ALWIL Software"   "c:\windows\system32\drivers\aswtdi.sys"
+ "atikmdag"   "ATI Radeon Kernel Mode Driver"   "ATI Technologies Inc."   "c:\windows\system32\drivers\atikmdag.sys"
+ "AtiPcie"   "ATI PCIE Driver for ATI PCIE chipset"   "ATI Technologies Inc."   "c:\windows\system32\drivers\atipcie.sys"
+ "BrFiltLo"   "Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver"   "Brother Industries, Ltd."   "c:\windows\system32\drivers\brfiltlo.sys"
+ "BrFiltUp"   "Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver"   "Brother Industries, Ltd."   "c:\windows\system32\drivers\brfiltup.sys"
+ "BrUsbSer"   "Brother USB Serial Driver"   "Brother Industries Ltd."   "c:\windows\system32\drivers\brusbser.sys"
+ "CnxtHdAudAddService"   "High Definition Audio Function Driver"   "Conexant Systems Inc."   "c:\windows\system32\drivers\chdart.sys"
+ "cxbu0wdm"   "PC/SC IFD handler for CCID compliant CardMan"   "OMNIKEY"   "c:\windows\system32\drivers\cxbu0wdm.sys"
+ "E1G60"   "Controlador deserializado NDIS 6 de adaptador PRO/1000 Intel(R)"   "Intel Corporation"   "c:\windows\system32\drivers\e1g60i32.sys"
+ "HSF_DPV"   "HSF_DP driver"   "Conexant Systems, Inc."   "c:\windows\system32\drivers\hsx_dpv.sys"
+ "HSXHWAZL"   "HSF_HWAZL WDM driver"   "Conexant Systems, Inc."   "c:\windows\system32\drivers\hsxhwazl.sys"
+ "IpInIp"   "IP in IP Tunnel Driver"   ""   "File not found: system32\DRIVERS\ipinip.sys"
+ "Lbd"   "Ad-Aware mini-filter driver"   "Lavasoft AB"   "c:\windows\system32\drivers\lbd.sys"
+ "mdmxsdk"   "Diagnostic Interface x86 Driver"   "Conexant"   "c:\windows\system32\drivers\mdmxsdk.sys"
+ "mfeavfk"   "Anti-Virus File System Filter Driver"   "McAfee, Inc."   "c:\windows\system32\drivers\mfeavfk.sys"
+ "mfebopk"   "Buffer Overflow Protection Driver"   "McAfee, Inc."   "c:\windows\system32\drivers\mfebopk.sys"
+ "mfehidk"   "Host Intrusion Detection Link Driver"   "McAfee, Inc."   "c:\windows\system32\drivers\mfehidk.sys"
+ "mferkdk"   "VSCore Code Analysis Driver"   "McAfee, Inc."   "c:\windows\system32\drivers\mferkdk.sys"
+ "mfesmfk"   "System Monitor Filter Driver"   "McAfee, Inc."   "c:\windows\system32\drivers\mfesmfk.sys"
+ "MPFP"   "McAfee Personal Firewall Plus Driver"   "McAfee, Inc."   "c:\windows\system32\drivers\mpfp.sys"
+ "NwlnkFlt"   "IPX Traffic Filter Driver"   ""   "File not found: system32\DRIVERS\nwlnkflt.sys"
+ "NwlnkFwd"   "IPX Traffic Forwarder Driver"   ""   "File not found: system32\DRIVERS\nwlnkfwd.sys"
+ "O2MDRDR"   "o2media"   "O2Micro "   "c:\windows\system32\drivers\o2media.sys"
+ "pavboot"   "Panda Boot Driver"   "Panda Security, S.L."   "c:\windows\system32\drivers\pavboot.sys"
+ "PxHelp20"   "Px Engine Device Driver for Windows 2000/XP"   "Sonic Solutions"   "c:\windows\system32\drivers\pxhelp20.sys"
+ "QIOMem"   "Generic IO & Memory Access"   "TOSHIBA"   "c:\windows\system32\drivers\qiomem.sys"
+ "RTL8187B"   "Realtek RTL8187B NDIS Driver"   "Realtek Semiconductor Corporation                           "   "c:\windows\system32\drivers\rtl8187b.sys"
+ "RtlProt"   "Realtke RtlProt WLAN Utility Protocol Driver"   "Windows (R) Codename Longhorn DDK provider"   "c:\windows\system32\drivers\rtlprot.sys"
+ "secdrv"   "Macrovision SECURITY Driver"   "Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K."   "c:\windows\system32\drivers\secdrv.sys"
+ "sscdbus"   "SAMSUNG USB Composite Device Driver"   "MCCI"   "c:\windows\system32\drivers\sscdbus.sys"
+ "sscdmdfl"   "SAMSUNG CDMA Modem Filter"   "MCCI"   "c:\windows\system32\drivers\sscdmdfl.sys"
+ "sscdmdm"   "SAMSUNG CDMA Modem Drivers"   "MCCI"   "c:\windows\system32\drivers\sscdmdm.sys"
+ "StarOpen"   ""   ""   "c:\windows\system32\drivers\staropen.sys"
+ "SynTP"   "Synaptics Touchpad Driver"   "Synaptics, Inc."   "c:\windows\system32\drivers\syntp.sys"
+ "tdcmdpst"   "Toshiba ODD Writing Driver For x86."   "TOSHIBA Corporation."   "c:\windows\system32\drivers\tdcmdpst.sys"
+ "tos_sps32"   "tos_sps2"   "TOSHIBA Corporation"   "c:\windows\system32\drivers\tos_sps32.sys"
+ "Tosrfcom"   ""   ""   "File not found: C:\Windows\System32\Drivers\Tosrfcom.sys"
+ "tosrfec"   "TOSHIBA Bluetooth EC Driver"   "TOSHIBA Corporation"   "c:\windows\system32\drivers\tosrfec.sys"
+ "TVALZ"   "TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver"   "TOSHIBA Corporation"   "c:\windows\system32\drivers\tvalz_o.sys"
+ "UVCFTR"   "UVCFTR_S.sys"   "Chicony Electronics Co., Ltd."   "c:\windows\system32\drivers\uvcftr_s.sys"
+ "winachsf"   "HSF_CNXT driver"   "Conexant Systems, Inc."   "c:\windows\system32\drivers\hsx_cnxt.sys"
+ "XAudio"   "Modem Audio Device Driver"   "Conexant Systems, Inc."   "c:\windows\system32\drivers\xaudio.sys"
+ "yukonwlh"   "Miniport Driver for Marvell Yukon Ethernet Controller."   "Marvell"   "c:\windows\system32\drivers\yk60x86.sys"
"HKCU\Software\Microsoft\Windows NT\CurrentVersion\Drivers32"   ""   ""   ""
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32"   ""   ""   ""
+ "msacm.ac3filter"   ""   ""   "c:\windows\system32\ac3filter.acm"
+ "msacm.dvacm"   "Ulead DV Audio ACM Driver"   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\vio\dvacm.acm"
+ "msacm.l3acm"   "MPEG Layer-3 Audio Codec for MSACM"   "Fraunhofer Institut Integrierte Schaltungen IIS"   "c:\windows\system32\l3codeca.acm"
+ "vidc.cvid"   "Códec Cinepak®"   "Radius Inc."   "c:\windows\system32\iccvid.dll"
+ "vidc.ffds"   "DirectShow and VFW video and audio decoding/encoding/processing filter"   ""   "c:\windows\system32\ffdshow.ax"
"HKCU\Software\Classes\Filter"   ""   ""   ""
"HKLM\Software\Classes\Filter"   ""   ""   ""
"HKLM\Software\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance"   ""   ""   ""
+ "AAC Encoder"   "AACEnc"   "InterVider"   "c:\program files\intervideo\common\bin\aacenc.ax"
+ "AC3Filter"   "ac3filter"   ""   "c:\program files\xp codec pack\filters\ac3filter.ax"
+ "AsyncEx"   ""   ""   "c:\program files\ares\asyncex.ax"
+ "Avi Source"   "Avi Splitter"   "Gabest"   "c:\windows\system32\avisplitter.ax"
+ "Avi Splitter"   "Avi Splitter"   "Gabest"   "c:\windows\system32\avisplitter.ax"
+ "CDXA Reader"   "CDXA Reader Filter"   "Gabest"   "c:\windows\system32\cdxareader.ax"
+ "CoreAAC Audio Decoder"   "CoreAAC"   ""   "c:\windows\system32\coreaac.ax"
+ "CoreFLAC Audio Decoder"   "CoreFLAC Audio Decoder & Source DirectShow Filter"   "-"   "c:\windows\system32\coreflacdecoder.ax"
+ "CoreFLAC Audio Source"   "CoreFLAC Audio Decoder & Source DirectShow Filter"   "-"   "c:\windows\system32\coreflacdecoder.ax"
+ "CoreVorbis Audio Decoder"   "CoreVorbis"   "-"   "c:\windows\system32\corevorbis.ax"
+ "Dib Output"   ""   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\filters\diboutput.ax"
+ "Dib Receive"   ""   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\filters\dibreceive.ax"
+ "DirectVobSub"   "VobSub & TextSub filter for DirectShow/VirtualDub/Avisynth"   "Gabest"   "c:\windows\system32\vsfilter.dll"
+ "DirectVobSub (auto-loading version)"   "VobSub & TextSub filter for DirectShow/VirtualDub/Avisynth"   "Gabest"   "c:\windows\system32\vsfilter.dll"
+ "DTS/AC3/DD+ Source"   "DTS/AC3 Sorce Filter"   "Gabest"   "c:\program files\xp codec pack\filters\dtsac3source.ax"
+ "DV ACM V/A Source Filter"   ""   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\filters\dvsf.ax"
+ "DV V/A Source Filter"   ""   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\filters\dvsf.ax"
+ "DV Video Source Filter"   ""   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\filters\dvsf.ax"
+ "ffdshow Audio Decoder"   "DirectShow and VFW video and audio decoding/encoding/processing filter"   ""   "c:\windows\system32\ffdshow.ax"
+ "ffdshow Audio Processor"   "DirectShow and VFW video and audio decoding/encoding/processing filter"   ""   "c:\windows\system32\ffdshow.ax"
+ "ffdshow raw video filter"   "DirectShow and VFW video and audio decoding/encoding/processing filter"   ""   "c:\windows\system32\ffdshow.ax"
+ "ffdshow subtitles filter"   "DirectShow and VFW video and audio decoding/encoding/processing filter"   ""   "c:\windows\system32\ffdshow.ax"
+ "ffdshow Video Decoder"   "DirectShow and VFW video and audio decoding/encoding/processing filter"   ""   "c:\windows\system32\ffdshow.ax"
+ "File Source (MP3)"   ""   ""   "c:\program files\ares\mp3source.ax"
+ "FunBox Audio Codec Filter"   "FunBox Audio Codec Filter"   "Mobile Leader"   "c:\program files\samsung\samsung pc studio 3\funaudiocodecfilter.ax"
+ "FunBox Audio EQ Filter"   "FunBox Audio Equalizer Filter"   "Mobile Leader"   "c:\program files\samsung\samsung pc studio 3\funeqfilter.ax"
+ "FunBox Avi Source"   ""   ""   "File not found: C:\Program Files\Samsung\Samsung PC Studio 3\FunAviSplitter.ax"
+ "FunBox Avi Splitter"   ""   ""   "File not found: C:\Program Files\Samsung\Samsung PC Studio 3\FunAviSplitter.ax"
+ "FunBox Conversion Filter"   "FunBox Conversion Filter"   "Mobile Leader"   "c:\program files\samsung\samsung pc studio 3\funconvfilter.ax"
+ "FunBox Image Decoder Filter"   "FunImgFilter Dynamic Link Library"   "Mobile Leader"   "c:\program files\samsung\samsung pc studio 3\funimgfilter.ax"
+ "FunBox Mp3 Decoder Filter"   "FunMpgDecFilter Dynamic Link Library"   "Mobile Leader"   "c:\program files\samsung\samsung pc studio 3\funmp3decfilter.ax"
+ "FunBox MPEG Decoder Filter"   "FunBox Decoder Filter"   "Mobile Leader"   "c:\program files\samsung\samsung pc studio 3\fundecfilter.ax"
+ "FunBox MPEG Encoder Filter"   "FunBox Encoder Filter"   "Mobile Leader"   "c:\program files\samsung\samsung pc studio 3\funencfilter.ax"
+ "FunBox Mpg Decoder Filter"   "FunMpgDecFilter Dynamic Link Library"   "Mobile Leader"   "c:\program files\samsung\samsung pc studio 3\funmpgdecfilter.ax"
+ "FunBox Mpg Grab Filter"   "FunMpgGrabFilter Dynamic Link Library"   "Mobile Leader"   "c:\program files\samsung\samsung pc studio 3\funmpggrabfilter.ax"
+ "FunBox Ogg Decoder Filter"   "FunOggDecFilter Dynamic Link Library"   "Mobile Leader"   "c:\program files\samsung\samsung pc studio 3\funoggdecfilter.ax"
+ "FunBox Sample Grabber Filter"   "FunBox SampleGrabber Filter"   "MobileLeader"   "c:\program files\samsung\samsung pc studio 3\funsamplegrabberfilter.ax"
+ "FunBox Subtitle Filter"   "FunBox Subtitle Filter"   "Mobile Leader"   "c:\program files\samsung\samsung pc studio 3\funsubfilter.ax"
+ "FunBox Video Adjust Filter"   "FunBox Video Adjust Filter"   "Mobile Leader"   "c:\program files\samsung\samsung pc studio 3\funvideoadjustfilter.ax"
+ "FunBox Video Codec Filter"   "FunBox Video Codec Filter"   "Mobile Leader"   "c:\program files\samsung\samsung pc studio 3\funvideocodecfilter.ax"
+ "FunBox Video Resize Filter"   "FunBox Video Resize Filter"   "Mobile Leader"   "c:\program files\samsung\samsung pc studio 3\funvideoresizefilter.ax"
+ "GPL MPEG-1/2 Decoder"   "GPL MPEG-1/2 Decoder Filter for DirectShow"   "Peter Wimmer, Gabest"   "c:\windows\system32\gplmpgdec.ax"
+ "InterVideo AAC (XForm) Decoder"   "InterVideo AAC Decoder"   "InterVideo Inc."   "c:\program files\intervideo\common\bin\iviaacdec.ax"
+ "Intervideo AMR Decoder"   "IVI AMR Decoding"   "Intervideo, Inc."   "c:\program files\intervideo\common\bin\amrdec.ax"
+ "Intervideo AMR Encoder"   "IVI AMR Encoding"   "Intervideo, Inc."   "c:\program files\intervideo\common\bin\amrenc.ax"
+ "InterVideo Audio Encoder"   "InterVideo?Audio Encoder Filter"   "InterVideo Inc."   "c:\program files\intervideo\common\bin\iviaenc.ax"
+ "InterVideo Demux"   "InterVideo® MPEG System Demultiplexer Filter"   "InterVideo Inc."   "c:\program files\intervideo\common\bin\ividemxx.ax"
+ "InterVideo Down Scale Filter"   "InterVideo® Down Scale Filter"   "InterVideo Inc."   "c:\program files\intervideo\common\bin\ividowns.ax"
+ "InterVideo DV Pre-Process"   "InterVideo DV Pre-Process Filter"   "InterVideo"   "c:\program files\intervideo\common\bin\dvprocs.ax"
+ "InterVideo DVB DSM-CC Filter"   "InterVideo DVB DSM-CC Decoder"   "InterVideo, Inc."   "c:\program files\intervideo\common\bin\dvbdsmcc.ax"
+ "InterVideo DVB Subpicture Filter"   "InterVideo DVB Subtitle Decoder"   "InterVideo, Inc."   "c:\program files\intervideo\common\bin\dvbspic.ax"
+ "InterVideo File Writer"   "InterVideo® File Writer Filter"   "InterVideo Inc."   "c:\program files\intervideo\common\bin\iviwrite.ax"
+ "InterVideo MPEG4 Video Decoder"   "InterVideo® MPEG4 Video Decoder Filter"   "InterVideo Inc."   "c:\program files\intervideo\common\bin\mp4vdec.ax"
+ "InterVideo MPEG4 Video Encoder"   "InterVideo® MPEG4 Video Encoder Filter"   "InterVideo Inc."   "c:\program files\intervideo\common\bin\mp4venc.ax"
+ "InterVideo Multiplexer"   "InterVideo® MPEG System Multiplexer Filter"   "InterVideo Inc."   "c:\program files\intervideo\common\bin\ivimux.ax"
+ "InterVideo Pre-scaling Filter"   "InterVideo® PreScale Filter"   "InterVideo Inc."   "c:\program files\intervideo\common\bin\iviscale.ax"
+ "InterVideo PSIP/SI Filter"   "InterVideo PSIP/SI Sections/Tables Filter"   "InterVideo, Inc."   "c:\program files\intervideo\common\bin\psidecod.ax"
+ "InterVideo Still Capture"   "InterVideo® Still Capture Filter"   "InterVideo Inc."   "c:\program files\intervideo\common\bin\iviscapt.ax"
+ "InterVideo Stream Buffer Filter"   "InterVideo Stream Buffer Filter"   "InterVideo Inc."   "c:\program files\intervideo\common\bin\smbuffer.ax"
+ "InterVideo Stream Writer"   "InterVideo© Stream File Writer"   "InterVideo, Inc."   "c:\program files\intervideo\common\bin\stmrite.ax"
+ "InterVideo Time Shift"   "InterVideo Time Shifting Filter"   "InterVideo Inc."   "c:\program files\intervideo\common\bin\ivits.ax"
+ "InterVideo Transport to Program Stream"   "InterVideo© Transport to Program Stream Converter"   "InterVideo, Inc."   "c:\program files\intervideo\common\bin\trtoprog.ax"
+ "InterVideo VBI Decoder"   "InterVideo VBI Decoder Filter"   "InterVideo, Inc."   "c:\program files\intervideo\common\bin\ivvbidec.ax"
+ "InterVideo Video Encoder"   "InterVideo® MPEG Video Encoder Filter"   "InterVideo Inc."   "c:\program files\intervideo\common\bin\ivivenc.ax"
+ "Matroska Source"   "Matroska Splitter"   "Gabest"   "c:\windows\system32\matroskasplitter.ax"
+ "Matroska Splitter"   "Matroska Splitter"   "Gabest"   "c:\windows\system32\matroskasplitter.ax"
+ "MPEG2 TS Source"   ""   ""   "c:\program files\intervideo\common\bin\mpgtsrdr.ax"
+ "Ogg Source"   "Ogg Splitter"   "Gabest"   "c:\windows\system32\oggsplitter.ax"
+ "Ogg Splitter"   "Ogg Splitter"   "Gabest"   "c:\windows\system32\oggsplitter.ax"
+ "RadLight APE DirectShow Filter"   "RLAPEDec"   "RadLight"   "c:\windows\system32\rlapedec.ax"
+ "RadLight MPC DirectShow Filter"   "RLMPCDec"   "RadLight"   "c:\windows\system32\rlmpcdec.ax"
+ "RadLight OptimFROG DirectShow Filter"   "RLOFRDec"   "RadLight"   "c:\windows\system32\rlofrdec.ax"
+ "RadLight TTA DirectShow Filter"   "RadLight TTA DirectShow Filter"   "RadLight"   "c:\windows\system32\rlttadec.ax"
+ "RealAudio Decoder"   "RealMedia Splitter"   "Gabest"   "c:\windows\system32\realmediasplitter.ax"
+ "RealMedia Source"   "RealMedia Splitter"   "Gabest"   "c:\windows\system32\realmediasplitter.ax"
+ "RealMedia Splitter"   "RealMedia Splitter"   "Gabest"   "c:\windows\system32\realmediasplitter.ax"
+ "RealVideo Decoder"   "RealMedia Splitter"   "Gabest"   "c:\windows\system32\realmediasplitter.ax"
+ "SFVCaptureFilter"   "SmartFaceVCapt"   ""   "c:\windows\system32\smartfacevcapt.dll"
+ "SubPicture Filter"   "SubPictu ?? ?? ?????"   ""   "c:\program files\samsung\samsung pc studio 3\dexsubpicturefilter.dll"
+ "TOSHIBA Audio Decoder DVD"   "TOSHIBA Audio Decoder DVD"   "TOSHIBA Corporation"   "c:\program files\toshiba\toshiba dvd player\tosauddecl.ax"
+ "TOSHIBA Audio Rate Converter"   "TOSHIBA Audio Rate Converter"   "TOSHIBA Corporation"   "c:\program files\common files\toshiba shared\tosarc.ax"
+ "TOSHIBA DualMono"   "TOSHIBA DualMono"   "TOSHIBA Corporation"   "c:\program files\common files\toshiba shared\tosdualmono.ax"
+ "TOSHIBA DVD Navigator"   "TOSHIBA DVD Navigator"   "TOSHIBA Corporation"   "c:\program files\toshiba\toshiba dvd player\tdvdnavi.ax"
+ "TOSHIBA DVD VR Navigator"   "TOSHIBA DVD Player"   "TOSHIBA Corporation"   "c:\program files\toshiba\toshiba dvd player\tvrnavi.ax"
+ "TOSHIBA MPEG-2 Video Decoder (DVD)"   "TOSHIBA DVD Video Decoder Filter"   "TOSHIBA Corporation"   "c:\program files\toshiba\toshiba dvd player\tosmp2dvd.ax"
+ "TOSHIBA Progress Monitor"   "TOSHIBA Progress Monitor"   "TOSHIBA Corporation"   "c:\program files\toshiba\toshiba disc creator\tprogmon.ax"
+ "TOSHIBA WAV Converter"   "TOSHIBA Wav Converter"   "TOSHIBA Corporation"   "c:\program files\toshiba\toshiba disc creator\twavconv.ax"
+ "Ulead Audio Dual Channel Filter"   "Ulead Audio Dual Channel Filter"   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\mpeg\uaudiodcfilter.ax"
+ "Ulead DV Scene Detect"   "ulDvScDt"   "Ulead system Inc."   "c:\program files\common files\ulead systems\capture\uldvscdt.ax"
+ "Ulead DV Writer"   "ulDVWriter"   "Ulead System Inc."   "c:\program files\common files\ulead systems\capture\uldvrite.ax"
+ "Ulead DVB Parser"   "Ulead DVB Parser Filter"   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\mpeg\uldvbparser.ax"
+ "Ulead DVD Audio Decoder 2"   "Audio Decoder"   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\mpeg\uldvdaudio.ax"
+ "Ulead DVD Navigator"   "DVD Navigator filter"   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\dvd\uleaddvdnavigator.ax"
+ "Ulead DVD Video decoder 2"   "DVD Video Decoder with DxVA Support"   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\mpeg\uldvdvideo.ax"
+ "ULead File Source (Async.)"   "Ulead Async Filter"   "Ulead Systems"   "c:\program files\common files\ulead systems\mpeg\ulasync.ax"
+ "ULead File Writer"   "File Dump Filter"   "ULead Systems"   "c:\program files\common files\ulead systems\filters\uldump.ax"
+ "ULead Infinite Pin Tee"   "Ulead Infinite Tee Filter"   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\mpeg\uinftee.ax"
+ "Ulead MPEG Audio Decoder"   "Audio Decoder"   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\mpeg\uldvdaudio.ax"
+ "Ulead MPEG Encoder"   "MPEG Encoder and Muxer"   "ULead Systems"   "c:\program files\common files\ulead systems\mpeg\ulesmpeg.ax"
+ "Ulead MPEG Muxer"   "MPEG Muxer"   "ULead Systems"   "c:\program files\common files\ulead systems\mpeg\ulmxmpeg.ax"
+ "Ulead MPEG Splitter"   "ULead Mpeg I/II Splitter"   "ULead Systems"   "c:\program files\common files\ulead systems\mpeg\ulspmpeg.ax"
+ "Ulead MPEG Transcoder"   "ulMPGTrans"   "Ulead com"   "c:\program files\common files\ulead systems\mpeg\ulmpgtrans.ax"
+ "Ulead MPEG Video Decoder"   "MPEG Video and Audio Decoder"   "ULead Systems"   "c:\program files\common files\ulead systems\mpeg\uldsmpeg.ax"
+ "Ulead MPEG-4 Audio Decoder"   "MP4 AAC Audio Decoder Filter"   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\mpeg\uladmp4.ax"
+ "Ulead MPEG-4 Splitter"   "MP4 Splitter Filter"   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\mpeg\ulspmp4.ax"
+ "Ulead MPEG-4 Video Decoder"   "MP4 Video Decoder Filter"   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\mpeg\ulvdmp4.ax"
+ "Ulead Ogg Parser"   "ulOggParserFilter"   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\mpeg\uloggparserfilter.ax"
+ "Ulead OggVorbis Decoder"   "ulOggVorbisDecoderFilter"   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\mpeg\uloggvorbisdecoderfilter.ax"
+ "Ulead OggVorbis Encoder"   "ulOggVorbisEncoderFilter"   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\mpeg\uloggvorbisencoderfilter.ax"
+ "Ulead Push Source Filter"   "Ulead Push Source Filter"   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\mpeg\ulpushsource.ax"
+ "Ulead Sub-Picture Push Source Filter"   "Ulead Sub-Picture Push Source Filter"   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\mpeg\ulsubpicpushsource.ax"
+ "Ulead Video Deinterlace Filter"   ""   "Ulead Systems, Inc."   "c:\program files\common files\ulead systems\filters\deinterlace.ax"
"HKLM\Software\Classes\CLSID\{AC757296-3522-4E11-9862-C17BE5A1767E}\Instance"   ""   ""   ""
"HKLM\Software\Classes\CLSID\{7ED96837-96F0-4812-B211-F13C24117ED3}\Instance"   ""   ""   ""
"HKLM\Software\Classes\CLSID\{ABE3B9A4-257D-4B97-BD1A-294AF4

Desconectado Mr_X

  • Moderador
  • ******
  • Mensajes: 2635
Re: se me abren webs de publicidad
« Respuesta #5 en: 11 de Diciembre de 2009, 09:16:24 pm »
Los logs los veo limpios ¿cómo se comporta la máquina?
"... I'll wait I sow the seed, I set the scene and I watch the world go by..."

Desconectado rosaescala

  • Junior Member
  • **
  • Mensajes: 47
Re: se me abren webs de publicidad
« Respuesta #6 en: 13 de Diciembre de 2009, 11:50:46 pm »
Pues bien, lo único que me saltan estas webs cuando entro en internet..y a veces se me cambia la página de inicio..

Desconectado Mr_X

  • Moderador
  • ******
  • Mensajes: 2635
Re: se me abren webs de publicidad
« Respuesta #7 en: 16 de Diciembre de 2009, 06:15:15 am »
Haz una copia de seguridad del registro con el ERUNT (clic aquí); baja el ComboFix y pásalo iniciando en Modo seguro... Pega aquí el contenido del archivo C:\ComboFix.txt...
"... I'll wait I sow the seed, I set the scene and I watch the world go by..."

Desconectado rosaescala

  • Junior Member
  • **
  • Mensajes: 47
Re: se me abren webs de publicidad
« Respuesta #8 en: 21 de Diciembre de 2009, 06:29:12 pm »
Ahí va!

ComboFix 09-12-20.08 - Rosa 21/12/2009  18:02:00.1.2 - x86 MINIMAL
Microsoft® Windows Vista™ Home Premium   6.0.6001.1.1252.34.3082.18.1918.1399 [GMT 1:00]
Running from: c:\users\Rosa\Desktop\ComboFix.exe
AV: avast! antivirus 4.8.1229 [VPS 081215-1] *On-access scanning enabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
SP: avast! antivirus 4.8.1229 [VPS 081215-1] *enabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
SP: Spybot - Search and Destroy *enabled* (Outdated) {ED588FAF-1B8F-43B4-ACA8-8E3C85DADBE9}
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.

(((((((((((((((((((((((((   Files Created from 2009-11-21 to 2009-12-21  )))))))))))))))))))))))))))))))
.

2009-12-21 17:07 . 2009-12-21 17:07   --------   d-----w-   c:\users\Rosa\AppData\Local\temp
2009-12-21 17:07 . 2009-12-21 17:07   --------   d-----w-   c:\users\Default\AppData\Local\temp
2009-12-21 16:36 . 2009-12-21 16:37   --------   d-----w-   c:\program files\ERUNT
2009-12-09 17:21 . 2009-12-09 17:21   --------   d-----w-   c:\program files\Trend Micro
2009-12-09 02:09 . 2009-11-09 13:22   24064   ----a-w-   c:\windows\system32\nshhttp.dll
2009-12-09 02:08 . 2009-11-09 11:04   411136   ----a-w-   c:\windows\system32\drivers\http.sys
2009-12-09 02:08 . 2009-11-09 13:20   31232   ----a-w-   c:\windows\system32\httpapi.dll
2009-12-09 00:17 . 2009-12-08 21:46   15880   ----a-w-   c:\windows\system32\lsdelete.exe
2009-12-08 21:47 . 2009-09-23 12:55   64288   ----a-w-   c:\windows\system32\drivers\Lbd.sys
2009-12-08 21:46 . 2009-12-08 21:46   862040   ----a-w-   c:\programdata\Lavasoft\Ad-Aware\update\threatwork.exe
2009-12-08 21:46 . 2009-12-08 21:46   15880   ----a-w-   c:\programdata\Lavasoft\Ad-Aware\update\lsdelete.exe
2009-12-08 21:46 . 2009-12-08 21:46   206944   ----a-w-   c:\programdata\Lavasoft\Ad-Aware\update\lavamessage.dll
2009-12-08 21:46 . 2009-12-08 21:46   390288   ----a-w-   c:\programdata\Lavasoft\Ad-Aware\update\lavalicense.dll
2009-12-08 21:46 . 2009-12-08 21:46   537576   ----a-w-   c:\programdata\Lavasoft\Ad-Aware\update\aawapi.dll
2009-12-08 21:46 . 2009-12-08 21:46   370744   ----a-w-   c:\programdata\Lavasoft\Ad-Aware\update\UpdateManager.dll
2009-12-08 21:46 . 2009-12-08 21:46   163728   ----a-w-   c:\programdata\Lavasoft\Ad-Aware\update\ShellExt.dll
2009-12-08 21:46 . 2009-12-08 21:46   194104   ----a-w-   c:\programdata\Lavasoft\Ad-Aware\update\Savapibridge.dll
2009-12-08 21:45 . 2009-12-08 21:45   5908024   ----a-w-   c:\programdata\Lavasoft\Ad-Aware\update\Resources.dll
2009-12-08 21:45 . 2009-12-08 21:45   327000   ----a-w-   c:\programdata\Lavasoft\Ad-Aware\update\RPAPI.dll
2009-12-08 21:45 . 2009-12-08 21:45   87496   ----a-w-   c:\programdata\Lavasoft\Ad-Aware\update\PrivacyClean.dll
2009-12-08 21:45 . 2009-12-08 21:45   933120   ----a-w-   c:\programdata\Lavasoft\Ad-Aware\update\CEAPI.dll
2009-12-08 21:45 . 2009-12-08 21:45   641632   ----a-w-   c:\programdata\Lavasoft\Ad-Aware\update\AutoLaunch.exe
2009-12-08 21:45 . 2009-12-08 21:45   816272   ----a-w-   c:\programdata\Lavasoft\Ad-Aware\update\Ad-AwareCommand.exe
2009-12-08 21:45 . 2009-12-08 21:45   822904   ----a-w-   c:\programdata\Lavasoft\Ad-Aware\update\Ad-AwareAdmin.exe
2009-12-08 21:45 . 2009-12-08 21:45   1638640   ----a-w-   c:\programdata\Lavasoft\Ad-Aware\update\Ad-Aware.exe
2009-12-08 21:45 . 2009-12-08 21:45   788880   ----a-w-   c:\programdata\Lavasoft\Ad-Aware\update\AAWTray.exe
2009-12-08 21:45 . 2009-12-08 21:45   1184912   ----a-w-   c:\programdata\Lavasoft\Ad-Aware\update\AAWService.exe
2009-12-08 21:42 . 2009-12-08 21:42   --------   dc-h--w-   c:\programdata\{CFBD8779-FAAB-4357-84F2-1EC8619FADA6}
2009-12-08 21:42 . 2009-10-03 08:15   2924848   -c--a-w-   c:\programdata\{CFBD8779-FAAB-4357-84F2-1EC8619FADA6}\Ad-AwareInstallation.exe
2009-12-08 19:59 . 2009-08-24 12:16   378368   ----a-w-   c:\windows\system32\winhttp.dll
2009-12-08 19:50 . 2009-10-07 12:41   244224   ----a-w-   c:\windows\system32\rastls.dll
2009-12-08 19:50 . 2009-10-07 12:41   281600   ----a-w-   c:\windows\system32\raschap.dll
2009-12-01 17:38 . 2009-12-01 20:18   --------   d-----w-   c:\programdata\Spybot - Search & Destroy
2009-12-01 17:38 . 2009-12-01 17:39   --------   d-----w-   c:\program files\Spybot - Search & Destroy
2009-11-29 23:12 . 2009-11-29 23:12   --------   d-----w-   c:\program files\Textual Content Provider
2009-11-29 23:12 . 2009-11-29 23:12   --------   d-----w-   c:\program files\Content Management Wizard
2009-11-29 23:11 . 2009-11-29 23:11   --------   d-----w-   c:\users\Rosa\AppData\Local\Internet Today
2009-11-29 23:11 . 2009-11-29 23:11   --------   d-----w-   c:\program files\Internet Today
2009-11-29 23:11 . 2009-11-29 23:11   --------   d-----w-   c:\program files\Customized Platform Advancer
2009-11-29 23:11 . 2009-11-29 23:11   --------   d-----w-   c:\program files\Automated Content Enhancer
2009-11-29 23:11 . 2009-11-29 23:11   --------   d-----w-   c:\users\Rosa\AppData\Local\Web Search Operator
2009-11-29 23:11 . 2009-11-29 23:11   --------   d-----w-   c:\program files\Web Search Operator
2009-11-29 23:10 . 2009-11-29 23:17   --------   d-----w-   c:\program files\Gameztar Toolbar
2009-11-25 23:11 . 2009-10-29 09:41   2048   ----a-w-   c:\windows\system32\tzres.dll
2009-11-25 16:41 . 2009-08-10 11:01   1399296   ----a-w-   c:\windows\system32\msxml6.dll
2009-11-25 16:41 . 2009-08-10 11:00   1257472   ----a-w-   c:\windows\system32\msxml3.dll

.
((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-12-17 12:05 . 2008-01-21 07:23   667382   ----a-w-   c:\windows\system32\perfh00A.dat
2009-12-17 12:05 . 2008-01-21 07:23   129912   ----a-w-   c:\windows\system32\perfc00A.dat
2009-12-09 02:31 . 2006-11-02 11:18   --------   d-----w-   c:\program files\Windows Mail
2009-12-09 02:14 . 2008-03-03 13:56   --------   d-----w-   c:\programdata\Microsoft Help
2009-11-24 23:54 . 2008-10-09 15:57   1280480   ----a-w-   c:\windows\system32\aswBoot.exe
2009-11-24 23:50 . 2008-10-09 15:57   114768   ----a-w-   c:\windows\system32\drivers\aswSP.sys
2009-11-24 23:50 . 2008-10-09 15:57   20560   ----a-w-   c:\windows\system32\drivers\aswFsBlk.sys
2009-11-24 23:49 . 2008-10-09 15:57   53328   ----a-w-   c:\windows\system32\drivers\aswMonFlt.sys
2009-11-24 23:49 . 2008-10-09 15:58   48560   ----a-w-   c:\windows\system32\drivers\aswTdi.sys
2009-11-24 23:48 . 2008-10-09 15:58   23120   ----a-w-   c:\windows\system32\drivers\aswRdr.sys
2009-11-24 23:47 . 2008-10-09 15:57   97480   ----a-w-   c:\windows\system32\AvastSS.scr
2009-11-21 06:40 . 2009-12-08 20:00   916480   ----a-w-   c:\windows\system32\wininet.dll
2009-11-21 06:34 . 2009-12-08 20:00   109056   ----a-w-   c:\windows\system32\iesysprep.dll
2009-11-21 06:34 . 2009-12-08 20:00   71680   ----a-w-   c:\windows\system32\iesetup.dll
2009-11-21 04:59 . 2009-12-08 20:00   133632   ----a-w-   c:\windows\system32\ieUnatt.exe
2009-11-11 22:52 . 2009-11-11 22:49   --------   d-----w-   c:\users\Rosa\AppData\Roaming\BonkEnc
2009-11-11 22:47 . 2009-11-11 22:46   --------   d-----w-   c:\program files\BonkEnc
2009-10-26 22:54 . 2008-09-01 17:42   119656   ----a-w-   c:\users\Rosa\AppData\Local\GDIPFONTCACHEV1.DAT
2009-09-30 16:15 . 2009-09-30 16:15   471664   ----a-w-   c:\programdata\Google\Google Toolbar\Update\gtbC42C.tmp.exe
2009-09-23 21:25 . 2009-07-06 15:55   1924440   ----a-w-   c:\users\Rosa\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\fpupdatepl\fpupdatepl.exe
2009-11-02 20:44 . 2009-11-02 20:44   119808   ----a-w-   c:\program files\mozilla firefox\components\GoogleDesktopMozilla.dll
.

(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MsnMsgr"="c:\program files\Windows Live\Messenger\MsnMsgr.Exe" [2009-07-26 3883856]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-12-30 39408]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
"SpybotSD TeaTimer"="c:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2009-01-26 2144088]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-21 202240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184]
"NDSTray.exe"="NDSTray.exe" [BU]
"mcagent_exe"="c:\program files\McAfee.com\Agent\mcagent.exe" [2007-08-03 582992]
"Google Desktop Search"="c:\program files\Google\Google Desktop Search\GoogleDesktop.exe" [2009-11-02 30192]
"Desktop SMS"="c:\program files\IDM\Desktop SMS\DesktopSMS.exe" [2007-07-23 1507328]
"topi"="c:\program files\TOSHIBA\Toshiba Online Product Information\topi.exe" [2007-07-10 581632]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 90112]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-11-29 1029416]
"Camera Assistant Software"="c:\program files\Camera Assistant Software for Toshiba\traybar.exe" [2007-10-25 413696]
"TPwrMain"="c:\program files\TOSHIBA\Power Saver\TPwrMain.EXE" [2008-01-17 431456]
"HSON"="c:\program files\TOSHIBA\TBS\HSON.exe" [2007-10-31 54608]
"SmoothView"="c:\program files\Toshiba\SmoothView\SmoothView.exe" [2008-01-25 509816]
"00TCrdMain"="c:\program files\TOSHIBA\FlashCards\TCrdMain.exe" [2008-01-22 712704]
"Toshiba Registration"="c:\program files\Toshiba\Registration\ToshibaRegistration.exe" [2007-05-04 571024]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 39792]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-07-25 149280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"GrpConv"="grpconv -o" [X]

c:\users\Rosa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
ERUNT AutoBackup.lnk - c:\program files\ERUNT\AUTOBACK.EXE [2005-10-20 38912]
OpenOffice.org 3.0.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2008-9-12 384000]

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
CardOS API.lnk - c:\program files\Siemens\CardOS API\bin\siecacst.exe [2009-4-16 81920]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\progra~1\Google\GOOGLE~3\GOEC62~1.DLL

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
@=""

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiSpyware]
"DisableMonitoring"=dword:00000001

R0 Lbd;Lbd;c:\windows\System32\drivers\Lbd.sys [08/12/2009 22:47 64288]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [24/09/2009 12:17 1184912]
R3 O2MDRDR;O2MDRDR;c:\windows\System32\drivers\o2media.sys [15/01/2008 10:34 48472]
R3 QIOMem;Generic IO & Memory Access;c:\windows\System32\drivers\QIOMem.sys [09/04/2007 16:13 8192]
S0 pavboot;pavboot;c:\windows\System32\drivers\pavboot.sys [14/10/2008 21:58 28544]
S1 aswSP;avast! Self Protection;c:\windows\System32\drivers\aswSP.sys [09/10/2008 16:57 114768]
S1 RtlProt;Realtke RtlProt WLAN Utility Protocol Driver;c:\windows\System32\drivers\RtlProt.sys [01/09/2008 18:41 25896]
S2 aswFsBlk;aswFsBlk;c:\windows\System32\drivers\aswFsBlk.sys [09/10/2008 16:57 20560]
S2 aswMonFlt;aswMonFlt;c:\windows\System32\drivers\aswMonFlt.sys [09/10/2008 16:57 53328]
S2 ConfigFree Service;ConfigFree Service;c:\program files\Toshiba\ConfigFree\CFSvcs.exe [25/12/2007 13:07 40960]
S2 SBSDWSCService;SBSD Security Center Service;c:\program files\Spybot - Search & Destroy\SDWinSec.exe [01/12/2009 18:38 1153368]
S2 TOSHIBA SMART Log Service;TOSHIBA SMART Log Service;c:\program files\Toshiba\SMARTLogService\TosIPCSrv.exe [03/12/2007 16:03 126976]
S3 CnxtHdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service;c:\windows\System32\drivers\CHDART.sys [03/03/2008 11:48 187904]
S3 cxbu0wdm;CardMan 3x21;c:\windows\System32\drivers\cxbu0wdm.sys [15/01/2008 11:39 97792]
S3 fssfltr;FssFltr;c:\windows\System32\drivers\fssfltr.sys [30/09/2009 21:49 54632]
S3 fsssvc;Servicio de Windows Live Protección infantil;c:\program files\Windows Live\Family Safety\fsssvc.exe [05/08/2009 21:48 704864]
S3 GoogleDesktopManager-093009-130223;Administrador de Google Desktop 5.9.909.30391;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [03/03/2008 12:40 30192]
S3 RTL8187B;Adaptador de red USB 2.0 de 54 Mbps inalámbrico 802.11b/g Realtek RTL8187B;c:\windows\System32\drivers\rtl8187B.sys [01/09/2008 18:27 290304]

--- Other Services/Drivers In Memory ---

*NewlyCreated* - ECACHE
*NewlyCreated* - PXHELP20
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.es
uSearchURL,(Default) = hxxp://www.google.com/keyword/%s
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xportar a Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: {{76577871-04EC-495E-A12B-91F7C3600AFA} - http://rover.ebay.com/rover/1/1185-44560-9400-3/4
IE: {{8A918C1D-E123-4E36-B562-5C1519E434CE} - http://www.amazon.co.uk/exec/obidos/redirect-home?tag=Toshibaukbholink-21&site=home
FF - ProfilePath - c:\users\Rosa\AppData\Roaming\Mozilla\Firefox\Profiles\ttcb5wg9.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.es/firefox?client=firefox-a&rls=org.mozilla:es-ES:official
FF - component: c:\program files\Automated Content Enhancer\4.1.0.5190\FF\components\ACEFFAddOn.dll
FF - component: c:\program files\Customized Platform Advancer\3.1.0.1630\FF\components\CPAFFAddOn.dll
FF - component: c:\program files\Mozilla Firefox\components\GoogleDesktopMozilla.dll
FF - component: c:\program files\Web Search Operator\3.1.0.1840\FF\components\WSOFFAddOn.dll
FF - plugin: c:\program files\Google\Picasa3\npPicasa3.dll
FF - plugin: c:\program files\Microsoft\Office Live\npOLW.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: c:\users\Rosa\AppData\Roaming\Mozilla\Firefox\Profiles\ttcb5wg9.default\extensions\[email protected]\platform\WINNT_x86-msvc\plugins\npmnqmp071303000005.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- FIREFOX POLICIES ----
FF - user.js: yahoo.homepage.dontask - true.
- - - - ORPHANS REMOVED - - - -

HKCU-Run-TOSCDSPD - TOSCDSPD.EXE
HKLM-Run-ITSecMng - c:\program files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe
HKLM-RunOnce-<NO NAME> - (no file)



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-12-21 18:07
Windows 6.0.6001 Service Pack 1 NTFS

scanning hidden processes ... 

scanning hidden autostart entries ...

scanning hidden files ... 

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------

[HKEY_USERS\S-1-5-21-3054458559-2666710965-1660682944-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*¶*û*c%\OpenWithList]
@Class="Shell"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Completion time: 2009-12-21  18:10:05
ComboFix-quarantined-files.txt  2009-12-21 17:10

Pre-Run: 60.518.289.408 bytes libres
Post-Run: 61.004.636.160 bytes libres

- - End Of File - - C611BB2D059A1FA3FEE8E98623582906

Desconectado rosaescala

  • Junior Member
  • **
  • Mensajes: 47
Re: se me abren webs de publicidad
« Respuesta #9 en: 31 de Diciembre de 2009, 12:25:05 am »
Estoy un poco desesperada!

He vuelto a pasar el avast en modo seguro y me ha saltado un virus, era un gusano, como no me dejaba enviarlo al baúl, he enviado el archivo a la papelera de reciclaje..

En el análisis del hijackthis, con mis reducidos conocimientos, veo raro estos dos registros, porque al darle a reparar/eliminar vuelven a aparecer...

O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files\Toshiba\TRDCReminder\TRDCReminder.exe (User 'Default user')
O9 - Extra button: eBay - Compra, vende y diviértete - {76577871-04EC-495E-A12B-91F7C3600AFA} - http://rover.ebay.com/rover/1/1185-44560-9400-3/4 (file missing)


Gracias y feliz año nuevo!!

 

Aviso Legal | Política de Privacidad | Política de Cookies

el contenido de la web se rige bajo licencia
Creative Commons License