Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-10-2014
Ran by JOSE (administrator) on ACER-A04555092B on 04-10-2014 03:16:50
Running from C:\Users\JOSE\Desktop\Accesos ACER W7\PROTECCION
Loaded Profile: JOSE (Available profiles: JOSE)
Platform: Windows 7 Home Premium (X64) OS Language: Español (España, internacional)
Internet Explorer Version 8
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
(Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
(Acronis) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
(Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
(LSI Corporation) C:\Program Files\LSI SoftModem\agr64svc.exe
() C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
(Automation Anywhere, Inc.) C:\Program Files (x86)\Automation Anywhere Server 6.6\Client\Automation Anywhere Service.exe
(Automation Anywhere, Inc.) C:\Program Files (x86)\Automation Anywhere Server 6.6\Client\AAService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\MWLService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.3.6321.0\AdAwareTray.exe
(Microsoft Corporation) C:\Windows\winsxs\amd64_microsoft-windows-sidebar_31bf3856ad364e35_6.1.7600.16385_none_2ad19d644059217d\sidebar.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Hidfind.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApntEx.exe
() C:\Program Files (x86)\Launchy\Launchy.exe
(Bartels Media GmbH) Y:\PORTABLES\OFICINA\PhraseExpress v10.1.24ACER\phraseexpress.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2012\avgtray.exe
(Acronis) C:\Program Files (x86)\Acronis\TrueImageHome\OnlineBackupStandalone\TrueImageMonitor.exe
(Acronis) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe
(Acer) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
() Y:\DittoPrg64\Ditto.exe
(DonationCoder) Y:\PORTABLES\MULTIMEDIA\ScreenShotCaptor\ScreenshotCaptor.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Jan Fiala) Y:\PORTABLES\DESARROLLO\PSPad\PSPad.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [8060960 2009-08-06] (Realtek Semiconductor)
HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-06-05] (Intel Corporation)
HKLM\...\Run: [Apoint] => C:\Program Files\Apoint2K\Apoint.exe [295936 2009-05-22] (Alps Electric Co., Ltd.)
HKLM\...\Run: [Acer ePower Management] => C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [828960 2009-08-05] (Acer Incorporated)
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [390728 2010-12-06] (Acronis)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [RegistrarCeresCertStoreDLL] => C:\Program Files (x86)\FNMT-RCM\uccs.exe [40960 2013-10-30] (C3PO, S.A.)
HKLM\...\Run: [AdAwareTray] => C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.3.6321.0\AdAwareTray.exe [8886592 2014-08-27] ()
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2009-07-02] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AVG_TRAY] => C:\Program Files (x86)\AVG\AVG2012\avgtray.exe [2598520 2012-11-19] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [SAOB Monitor] => C:\Program Files (x86)\Acronis\TrueImageHome\OnlineBackupStandalone\TrueImageMonitor.exe [2536752 2010-11-16] (Acronis)
HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [5542488 2010-12-06] (Acronis)
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-4181878685-1256529413-3482687557-1000\...\Run: [Screenshot Captor] => Y:\PORTABLES\Multimedia\ScreenShotCaptor\ScreenshotCaptor.exe [7963832 2014-07-01] (DonationCoder)
HKU\S-1-5-21-4181878685-1256529413-3482687557-1000\...\Run: [Sidebar] => C:\Windows\winsxs\amd64_microsoft-windows-sidebar_31bf3856ad364e35_6.1.7600.16385_none_2ad19d644059217d\sidebar.exe [1475072 2009-07-14] (Microsoft Corporation)
HKU\S-1-5-21-4181878685-1256529413-3482687557-1000\...\Run: [Ditto] => Y:\Dittoprg64\Ditto.exe [1880064 2014-07-13] ()
HKU\S-1-5-21-4181878685-1256529413-3482687557-1000\...\Run: [GoogleChromeAutoLaunch_EE0E85543B1990E5E61A6663EAD29973] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [852808 2014-09-23] (Google Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FileBox eXtender.lnk
ShortcutTarget: FileBox eXtender.lnk -> C:\Program Files (x86)\FileBX\FileBX.exe (Hyperionics Technology LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Launchy.lnk
ShortcutTarget: Launchy.lnk -> C:\Program Files (x86)\Launchy\Launchy.exe ()
Startup: C:\Users\JOSE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MiddleButton.ahk.lnk
ShortcutTarget: MiddleButton.ahk.lnk -> O:\Mis documentos en O\SCRIPTING\MiddleMouseClick\MiddleButton.ahk ()
Startup: C:\Users\JOSE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PhraseExpress.lnk
ShortcutTarget: PhraseExpress.lnk -> Y:\PORTABLES\OFICINA\PhraseExpress v10.1.24ACER\phraseexpress.exe (Bartels Media GmbH)
ShellIconOverlayIdentifiers: [egisPSDP] -> {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA} => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x64\psdprotect.dll (Egis Technology Inc.)
ShellIconOverlayIdentifiers: [Identificador de icono superpuesto para firmas digitales de AutoCAD] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll (Autodesk, Inc.)
ShellIconOverlayIdentifiers-x32: [egisPSDP] -> {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA} => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\psdprotect.dll (Egis Technology Inc.)
BootExecute: autocheck autochk * C:\PROGRA~2\AVG\AVG2012\avgrsa.exe /sync /restartsdnclean64.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
BHO: AVG Do Not Track -> {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} -> C:\Program Files (x86)\AVG\AVG2012\avgdtiea.dll (AVG Technologies CZ, s.r.o.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg64.dll (Google Inc.)
BHO-x32: AVG Do Not Track -> {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} -> C:\Program Files (x86)\AVG\AVG2012\avgdtiex.dll (AVG Technologies CZ, s.r.o.)
BHO-x32: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Aplicación auxiliar de inicio de sesión en la cuenta Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO-x32: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.)
BHO-x32: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - No File
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgppa.dll (AVG Technologies CZ, s.r.o.)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files (x86)\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL (Microsoft Corporation)
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgpp.dll (AVG Technologies CZ, s.r.o.)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.5.1
FireFox:
========
FF ProfilePath: Y:\FIREFOX PERFILES\PEPE
FF NewTab: hxxp://duckduckgo.com
FF SearchEngineOrder.1: Google
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1211151.dll (Adobe Systems, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\alexa.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\alltheinternet.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\ask.uk.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\blekko-https.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\blekko.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\bmrk-file-host-search.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\businesscom.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\crawlersrch.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\diccionario-de-espaol-rae.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\diigo--google.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\diigo-customize-search.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\dogpile.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\duckduckgo-http.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\duckduckgo.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\f-secure-search.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\facebook-search.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\facebook.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\filezcom.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\google-images.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\google-language-de.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\google-language-fr.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\honsearch.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\ixquick-https---espanol.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\kartoocom.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\mozilla-add-ons.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\omgili.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\qrobeit.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\rapidlibrarycom.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\rebuscalo.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\rollyo-jamn.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\rollyo-winxppro.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\sweetim.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\userlogos.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\warech.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\web-search-powered-by-google.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\webster.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\wordpot---the-keyword-finder.xml
FF SearchPlugin: Y:\FIREFOX PERFILES\PEPE\searchplugins\yahoo_ff.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\drae.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-es.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-es.xml
FF Extension: Diccionario de Español/España - Y:\FIREFOX PERFILES\PEPE\Extensions\es-es@dictionaries.addons.mozilla.org [2014-07-14]
FF Extension: Lazarus: Form Recovery - Y:\FIREFOX PERFILES\PEPE\Extensions\lazarus@interclue.com [2014-06-17]
FF Extension: TabGroups Manager - Y:\FIREFOX PERFILES\PEPE\Extensions\{ca526f8b-9e0a-4756-9077-19d6f3e64ea8} [2014-07-29]
FF Extension: fireform - Y:\FIREFOX PERFILES\PEPE\Extensions\fireform@mozilla.org.xpi [2014-07-29]
FF Extension: DuckDuckGo Plus - Y:\FIREFOX PERFILES\PEPE\Extensions\jid1-ZAdIEUB7XOzOJw@jetpack.xpi [2014-08-18]
FF Extension: Español (España) Language Pack - Y:\FIREFOX PERFILES\PEPE\Extensions\langpack-es-ES@firefox.mozilla.org.xpi [2014-07-14]
FF Extension: The Addon Bar (restored) - Y:\FIREFOX PERFILES\PEPE\Extensions\the-addon-bar@GeekInTraining-GiT.xpi [2014-10-04]
FF Extension: Alexa Sparky - Y:\FIREFOX PERFILES\PEPE\Extensions\toolbar@alexa.com.xpi [2014-07-29]
FF Extension: NoScript - Y:\FIREFOX PERFILES\PEPE\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2014-08-26]
FF Extension: Adblock Plus - Y:\FIREFOX PERFILES\PEPE\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-07-29]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-09-26]
FF HKLM-x32\...\Firefox\Extensions: [{F53C93F1-07D5-430c-86D4-C9531B27DFAF}] - C:\Program Files (x86)\AVG\AVG2012\Firefox\DoNotTrack
FF Extension: AVG Do Not Track - C:\Program Files (x86)\AVG\AVG2012\Firefox\DoNotTrack [2012-07-07]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2014-03-29]
Chrome:
=======
CHR Profile: C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Awesome Screenshot: Capture & Annotate) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\alelhddbbhepgpmgidjdcjakblofbmce [2014-09-26]
CHR Extension: (Google Docs) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-03-30]
CHR Extension: (Task Timer) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\aomfjmibjhhfdenfkpaodhnlhkolngif [2014-10-03]
CHR Extension: (Google Drive) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-03-30]
CHR Extension: (YouTube) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-03-30]
CHR Extension: (Last updated at $time$ on $date$) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-09-26]
CHR Extension: (TimeDoser) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmkneeaihlcdllananjlkmppnkdahdcc [2014-10-03]
CHR Extension: (Google Search) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-03-30]
CHR Extension: (Light) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\dacdieigeclacgkdlmnojihknoblpafo [2014-10-03]
CHR Extension: (Fluency Tutor™ for Google (Teacher App)) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejajakfhhhhkifioabcekjjlhpoiijfa [2014-09-26]
CHR Extension: (GNotes Extension) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\idpclaojcopihmplcfnmgfkllldpajen [2014-09-26]
CHR Extension: (DéjàClick for Chrome™) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\jndncliamncgdmjicflfcbklpedknkph [2014-09-26]
CHR Extension: (Little Alchemy) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd [2014-10-03]
CHR Extension: (Business Process Simulator) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\lagcfcefblfnmjkkkdekiidfefhgodmk [2014-10-03]
CHR Extension: (Skype Click to Call) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2014-05-18]
CHR Extension: (Wordtracker Scout) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkalodfoplipapmeogaehmiabdhhjapb [2014-09-26]
CHR Extension: (Google Drawings) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkaakpdehdafacodkgkpghoibnmamcme [2014-10-03]
CHR Extension: (Google Wallet) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-30]
CHR Extension: (Scientific Calculator) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\npoipmeppdioagbkigdlnpmjphnolaog [2014-10-03]
CHR Extension: (Any.do) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocgddccilgpeepgglnlpchkpgamkgmld [2014-10-03]
CHR Extension: (NotScripts) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\odjhifogjcknibkahlpidmdajjpkkcfn [2014-09-29]
CHR Extension: (ScriptSafe) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiigbmnaadbkfbmpbfijlflahbdbdgdf [2014-09-29]
CHR Extension: (Readability) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\oknpjjbmpnndlpmnhmekjpocelpnlfdi [2014-09-26]
CHR Extension: (Accurate Ruler) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\pemefhlbiinkcopbapnfghcnjhlgceof [2014-10-03]
CHR Extension: (Gmail) - C:\Users\JOSE\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-03-30]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-04-11]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [172344 2014-09-21] (SUPERAntiSpyware.com)
S4 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [69632 2010-04-08] (Adobe Systems) [File not signed]
R2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [18656 2011-02-02] ()
R2 Automation Anywhere Server Service 6.6; C:\Program Files (x86)\Automation Anywhere Server 6.6\Client\Automation Anywhere Service.exe [1142881 2010-12-14] (Automation Anywhere, Inc.) [File not signed]
S2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2012\avgidsagent.exe [5175856 2013-10-16] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe [193288 2012-02-14] (AVG Technologies CZ, s.r.o.)
S4 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390720 2014-04-11] (Microsoft Corporation)
S4 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1764992 2014-04-11] (Microsoft Corporation)
S4 cbVSCService11; C:\Program Files (x86)\Cobian Backup 11\cbVSCService11.exe [67584 2013-03-07] (CobianSoft, Luis Cobian) [File not signed]
S4 CobianBackup11; C:\Program Files (x86)\Cobian Backup 11\cbService.exe [1131008 2013-03-07] (Luis Cobian, CobianSoft) [File not signed]
S2 LavasoftAdAwareService11; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.3.6321.0\AdAwareService.exe [706864 2014-08-27] ()
S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.0.285\McCHSvc.exe [234776 2012-09-05] (McAfee, Inc.)
S4 MoboroboDeviceService; C:\Program Files (x86)\MoboRobo\MoboroboDeviceService.exe [70952 2014-03-28] ()
R2 MWLService; C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe [311592 2009-08-07] (Egis Technology Inc.)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
S3 TriDefService; C:\Program Files (x86)\TriDef 3D\TriDef\Common\TriDefService.exe [1327104 2009-09-15] () [File not signed]
S2 Unchecky; C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe [111208 2014-09-28] (RaMMicHaeL)
S3 WefiEngSvc; C:\Program Files (x86)\WeFi\WefiEngSvc.exe [120152 2010-11-03] (WeFi)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R3 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [127328 2012-12-10] (AVG Technologies CZ, s.r.o. )
R3 AVGIDSFilter; C:\Windows\System32\DRIVERS\avgidsfiltera.sys [29776 2011-12-23] (AVG Technologies CZ, s.r.o. )
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [28480 2012-04-19] (AVG Technologies CZ, s.r.o. )
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [307040 2012-11-08] (AVG Technologies CZ, s.r.o.)
R1 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [47696 2011-12-23] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [36944 2012-01-31] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [384800 2013-04-11] (AVG Technologies CZ, s.r.o.)
S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [17480 2013-03-07] () [File not signed]
S3 epmntdrv; C:\Windows\SysWOW64\epmntdrv.sys [13896 2013-03-07] () [File not signed]
S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [9800 2013-03-07] () [File not signed]
S3 EuGdiDrv; C:\Windows\SysWOW64\EuGdiDrv.sys [9160 2013-03-07] () [File not signed]
S3 EZUSB; C:\Windows\System32\DRIVERS\ezusb64.sys [33280 2007-02-06] (Castles Technology Co.,Ltd)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [389240 2014-07-10] (BitDefender S.R.L.)
S3 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [115488 2014-03-26] (Oracle Corporation)
S3 cpuz135; \??\C:\Users\JOSE\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [X]
S3 RtsUIR; system32\DRIVERS\Rts516xIR.sys [X]
S3 USBCCID; system32\DRIVERS\RtsUCcid.sys [X]
U3 aswMBR; \??\C:\Users\JOSE\AppData\Local\Temp\aswMBR.sys [X]
U3 aswVmm; \??\C:\Users\JOSE\AppData\Local\Temp\aswVmm.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-10-04 03:03 - 2014-10-04 03:03 - 00001940 _____ () C:\Users\JOSE\Desktop\aswMBR.txt
2014-10-04 03:03 - 2014-10-04 03:03 - 00000512 _____ () C:\Users\JOSE\Desktop\MBR.dat
2014-10-04 02:55 - 2014-10-04 02:55 - 00000086 _____ () C:\Users\JOSE\Desktop\Conduit - Virus, Spyware & Malware Removal.url
2014-10-04 02:09 - 2014-10-04 02:11 - 05185536 _____ (AVAST Software) C:\Users\JOSE\Desktop\aswMBR.exe
2014-10-04 02:02 - 2014-10-04 02:02 - 00000000 ____D () C:\ProgramData\Licenses
2014-10-04 02:01 - 2014-10-04 02:09 - 00000000 ____D () C:\Program Files (x86)\SpywareBlaster
2014-10-04 02:01 - 2014-10-04 02:01 - 00001087 _____ () C:\Users\Public\Desktop\SpywareBlaster.lnk
2014-10-04 02:01 - 2014-10-04 02:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpywareBlaster
2014-10-04 01:58 - 2014-10-04 01:58 - 00000096 _____ () C:\Users\JOSE\Desktop\Post Here for Malware Removal ....url
2014-10-04 01:08 - 2014-10-04 01:08 - 00000000 ____D () C:\Program Files (x86)\ESET
2014-10-04 00:53 - 2014-10-04 00:53 - 00001145 _____ () C:\Users\JOSE\Desktop\Automatic Web Launcher.lnk
2014-10-04 00:41 - 2014-10-04 00:41 - 00001117 _____ () C:\Users\JOSE\Desktop\Gimnasia constante.lnk
2014-10-04 00:12 - 2014-10-04 00:12 - 00001106 _____ () C:\Users\JOSE\Desktop\Energy University.lnk
2014-10-03 23:22 - 2014-10-03 23:22 - 00001050 _____ () C:\Users\JOSE\Desktop\LopezRuiz.lnk
2014-10-03 23:21 - 2014-10-03 23:21 - 00001034 _____ () C:\Users\JOSE\Desktop\Conduit.lnk
2014-10-03 22:35 - 2010-04-08 20:13 - 00005680 ___SH () C:\Users\JOSE\Desktop\desktop (2).ini
2014-10-03 22:35 - 2010-04-08 20:13 - 00005680 ___SH () C:\Users\JOSE\Desktop\desktop (2) - copia.ini
2014-10-03 20:01 - 2014-10-03 20:01 - 00001204 _____ () C:\Users\JOSE\Desktop\Entrenamiento Mental-Simplifica.lnk
2014-10-03 20:00 - 2014-10-03 20:00 - 00001061 _____ () C:\Users\JOSE\Desktop\Chino-Ruso.lnk
2014-10-03 19:55 - 2014-10-03 19:55 - 00000532 _____ () C:\Windows\PFRO.log
2014-10-03 18:23 - 2014-09-29 15:38 - 00037987 _____ () C:\zoek-results2014-09-29-143831.log
2014-10-03 15:21 - 2014-10-03 15:23 - 00000000 ____D () C:\Users\JOSE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome
2014-10-03 15:21 - 2014-10-03 15:21 - 00000000 ____D () C:\Users\JOSE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-10-03 02:46 - 2014-10-03 02:46 - 00000000 ____D () C:\Users\JOSE\AppData\Roaming\Lavasoft
2014-10-03 02:45 - 2014-10-03 02:45 - 00000000 ____D () C:\Users\JOSE\AppData\Roaming\LavasoftStatistics
2014-10-03 02:45 - 2014-10-03 02:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
2014-10-03 02:31 - 2014-10-03 02:31 - 00000000 ____D () C:\Program Files\Lavasoft
2014-10-03 02:24 - 2014-10-03 02:24 - 00000000 ____D () C:\Program Files\Common Files\Lavasoft
2014-10-03 02:17 - 2014-10-03 02:17 - 00000000 ____D () C:\ProgramData\Lavasoft
2014-10-03 01:52 - 2014-10-03 01:52 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
2014-10-03 01:51 - 2014-10-03 02:39 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-10-03 01:51 - 2014-10-03 02:06 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-10-03 01:51 - 2014-10-03 01:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-10-03 01:51 - 2014-10-03 01:51 - 00001399 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-10-03 01:51 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
2014-10-03 01:43 - 2014-10-04 03:17 - 00000000 ____D () C:\FRST
2014-10-03 00:19 - 2014-10-03 00:19 - 00001145 _____ () C:\Users\JOSE\Desktop\Entrenamiento auditivo.lnk
2014-10-02 23:36 - 2014-10-02 23:36 - 00000088 _____ () C:\Users\JOSE\Desktop\Mozilla Hispano • Ver Tema - Información posicionamiento addons.url
2014-10-02 22:45 - 2014-10-02 22:45 - 00047630 _____ () C:\Users\JOSE\Desktop\Vuelta al cole con Arduino.eml
2014-10-02 22:44 - 2014-10-02 22:44 - 00015141 _____ () C:\Users\JOSE\Desktop\Mira las nuevas tarifas. Las hemos ampliado!
.eml
2014-10-02 22:20 - 2014-10-02 22:20 - 00013524 _____ () C:\Users\JOSE\Desktop\Nueva fecha Seminario on line La medida de Turbidez.eml
2014-10-02 22:17 - 2014-10-02 22:17 - 00064033 _____ () C:\Users\JOSE\Desktop\Agenda Cultural Octubre 2014.eml
2014-10-02 22:16 - 2014-10-02 22:17 - 00099332 _____ () C:\Users\JOSE\Desktop\CIRCULAR 207.2014 - GUÍA DE APLICACIÓN DEL DB HR (NUEVA VERSIÓN).eml
2014-10-02 22:16 - 2014-10-02 22:17 - 00010663 _____ () C:\Users\JOSE\Desktop\COMIDA ANTROPOLÓGICA EL MIÉRCOLES 8 DE OCTUBRE.eml
2014-10-02 21:56 - 2014-10-02 22:13 - 00000000 ____D () C:\Users\JOSE\AppData\Local\Popcorn-Time
2014-10-02 21:13 - 2014-10-02 21:13 - 00000000 ____D () C:\Users\JOSE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time
2014-10-02 21:13 - 2014-10-02 21:13 - 00000000 ____D () C:\Users\JOSE\AppData\Local\Popcorn Time
2014-10-01 23:43 - 2014-10-01 23:43 - 00000184 _____ () C:\Users\JOSE\Desktop\Control interruptor casero de pared - Arduino Forum.URL
2014-10-01 22:28 - 2014-10-02 01:56 - 00000000 ____D () C:\Users\JOSE\AppData\Roaming\SkyPath
2014-10-01 17:00 - 2014-10-03 22:20 - 00000786 _____ () C:\Windows\setupact.log
2014-10-01 17:00 - 2014-10-01 17:00 - 00000000 _____ () C:\Windows\setuperr.log
2014-10-01 15:10 - 2014-10-01 15:10 - 00108320 _____ () C:\Users\JOSE\Documents\cc_20141001_151039.reg
2014-10-01 12:47 - 2014-10-01 12:47 - 00001102 _____ () C:\Users\JOSE\Desktop\Mozart.UNIDAD E.lnk
2014-10-01 11:43 - 2014-10-01 11:43 - 00000912 _____ () C:\Users\JOSE\Desktop\CRONO.10.2014.lnk
2014-10-01 00:18 - 2014-10-01 00:18 - 00000000 ____D () C:\Users\JOSE\AppData\Roaming\Easy Image Modifier
2014-09-30 20:51 - 2014-09-30 21:04 - 00000000 ____D () C:\Users\JOSE\Documents\Anki
2014-09-30 20:44 - 2014-09-30 20:44 - 00000758 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anki.lnk
2014-09-30 20:44 - 2014-09-30 20:44 - 00000000 ____D () C:\Program Files (x86)\Anki
2014-09-30 12:35 - 2014-09-30 12:35 - 00000000 _____ () C:\Users\JOSE\Desktop\borrador autorizacion ana.txt
2014-09-29 14:36 - 2014-10-03 18:33 - 00059967 _____ () C:\zoek-results.log
2014-09-29 00:31 - 2014-09-29 15:13 - 00000000 ____D () C:\zoek_backup
2014-09-29 00:07 - 2014-09-29 00:07 - 00000000 ____D () C:\Windows\ERUNT
2014-09-28 23:50 - 2014-09-28 23:50 - 00000000 ____D () C:\ProgramData\Unchecky
2014-09-28 23:50 - 2014-09-28 23:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unchecky
2014-09-28 23:50 - 2014-09-28 23:50 - 00000000 ____D () C:\Program Files (x86)\Unchecky
2014-09-28 16:46 - 2014-09-28 16:47 - 00000116 _____ () C:\Users\JOSE\Desktop\Borrador el ayuntamiento contra el pueblo.txt
2014-09-28 03:08 - 2014-09-28 03:15 - 00000207 _____ () C:\Users\JOSE\.languagetool.cfg
2014-09-28 01:59 - 2014-09-28 02:08 - 00000706 _____ () C:\Users\JOSE\Desktop\Borrador razonamiento endesa.txt
2014-09-28 00:00 - 2014-09-28 00:00 - 00007611 _____ () C:\Users\JOSE\AppData\Local\Resmon.ResmonCfg
2014-09-26 13:54 - 2014-09-26 13:54 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-24 22:42 - 2014-09-24 22:42 - 00000000 ____D () C:\Users\JOSE\AppData\Local\ABBYY
2014-09-24 01:57 - 2014-09-24 01:57 - 00001308 _____ () C:\Users\JOSE\Desktop\251.14.proyecto.doc.lnk
2014-09-24 01:13 - 2014-09-24 01:13 - 00001245 _____ () C:\Users\JOSE\Desktop\ReOpen.exe.lnk
2014-09-23 13:32 - 2014-09-23 13:32 - 00001982 _____ () C:\Users\JOSE\Desktop\Explorer addons Escenario Addons.bat.lnk
2014-09-22 23:06 - 2014-09-22 23:06 - 00000000 _RSHD () C:\bootwiz
2014-09-22 21:04 - 2014-09-22 21:07 - 00001024 _____ () C:\Windows\system32\AutoPartNt.let
2014-09-22 21:04 - 2014-09-22 21:04 - 03106144 _____ (Acronis) C:\Windows\system32\AutoPartNt.exe
2014-09-22 19:26 - 2014-09-22 19:26 - 00001915 _____ () C:\Users\JOSE\Desktop\002.Desactivar Internet.bat.lnk
2014-09-22 19:26 - 2014-09-22 19:26 - 00001898 _____ () C:\Users\JOSE\Desktop\002.Activar Internet.bat.lnk
2014-09-22 18:56 - 2014-09-22 19:15 - 00004145 _____ () C:\Users\JOSE\Desktop\DesactivarInternet.notrota..bat
2014-09-22 15:15 - 2014-09-22 15:15 - 00000980 _____ () C:\Users\JOSE\Desktop\Teatro cine danza etc.lnk
2014-09-22 13:41 - 2014-09-22 19:23 - 00000000 ____D () C:\Users\JOSE\Desktop\Correos TB en proceso
2014-09-22 02:47 - 2014-09-22 02:47 - 00000000 ____D () C:\Users\JOSE\AppData\Roaming\Spacejock Software
2014-09-22 01:59 - 2014-09-22 01:59 - 00000926 _____ () C:\Users\JOSE\Desktop\Consultas.lnk
2014-09-22 00:57 - 2014-09-22 00:57 - 00000000 ____D () C:\Program Files (x86)\Shai Raiten
2014-09-22 00:44 - 2014-09-22 00:44 - 00002013 _____ () C:\Users\JOSE\Desktop\Reabrir residentes no imprescindibles.bat.lnk
2014-09-22 00:44 - 2014-09-22 00:44 - 00002010 _____ () C:\Users\JOSE\Desktop\reabrir servicios no imprescindibles.bat.lnk
2014-09-22 00:43 - 2014-09-22 00:43 - 00001999 _____ () C:\Users\JOSE\Desktop\matar residentes no imprescindibles.bat.lnk
2014-09-22 00:13 - 2014-09-22 00:13 - 00001915 _____ () C:\Users\JOSE\Desktop\unnecessary services w7.bat.lnk
2014-09-22 00:12 - 2014-09-22 00:12 - 00001943 _____ () C:\Users\JOSE\Desktop\desactivar-servicios-seguro.bat.txt.lnk
2014-09-22 00:12 - 2014-09-22 00:12 - 00001926 _____ () C:\Users\JOSE\Desktop\desactivar-servicios-mio.bat.lnk
2014-09-22 00:11 - 2014-09-22 00:11 - 00001454 _____ () C:\Users\JOSE\Desktop\batch.lnk
2014-09-21 20:54 - 2014-09-21 20:54 - 00001018 _____ () C:\Users\JOSE\Downloads\respaldo-configuracion-servicios.zip
2014-09-21 20:52 - 2014-09-26 00:54 - 00000000 ____D () C:\KMPlayer
2014-09-21 20:52 - 2014-09-21 20:52 - 00000000 ____D () C:\Users\JOSE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer
2014-09-21 20:29 - 2014-09-26 13:32 - 00003860 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1411327760
2014-09-21 20:29 - 2014-09-26 13:32 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-09-21 20:29 - 2014-09-21 20:29 - 00001143 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2014-09-21 20:29 - 2014-09-21 20:29 - 00000000 ____D () C:\Users\JOSE\AppData\Roaming\Opera Software
2014-09-21 20:29 - 2014-09-21 20:29 - 00000000 ____D () C:\Users\JOSE\AppData\Local\Opera Software
2014-09-21 19:57 - 2014-06-16 07:01 - 00206080 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudmdm.sys
2014-09-21 19:57 - 2014-06-16 07:01 - 00110336 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudbus.sys
2014-09-21 19:52 - 2014-09-21 19:52 - 00000898 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Waterfox.lnk
2014-09-21 19:52 - 2014-09-21 19:52 - 00000000 ____D () C:\Program Files\Waterfox
2014-09-21 19:47 - 2014-09-21 19:47 - 00000000 ____D () C:\Users\JOSE\AppData\Roaming\Oracle
2014-09-21 19:45 - 2014-09-21 19:45 - 00000000 ____D () C:\Users\JOSE\AppData\Roaming\TuneUp Software
2014-09-21 19:44 - 2014-09-21 19:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-09-21 19:44 - 2014-07-25 12:55 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-09-21 19:44 - 2014-07-25 12:49 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-09-21 19:44 - 2014-07-25 12:49 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-09-21 19:44 - 2014-07-25 12:49 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-09-21 19:43 - 2014-09-21 19:44 - 00004487 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_67-b01.log
2014-09-21 19:32 - 2014-09-21 19:32 - 00076758 _____ () C:\Users\JOSE\Documents\cc_20140921_193207.reg
2014-09-21 19:29 - 2014-09-21 19:29 - 00002770 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-09-21 19:29 - 2014-09-21 19:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-09-21 19:29 - 2014-09-21 19:29 - 00000000 ____D () C:\Program Files\CCleaner
2014-09-21 19:07 - 2014-10-01 23:01 - 00000000 ___SD () C:\Users\JOSE\Desktop\SkyPathUploads
2014-09-21 19:04 - 2014-10-01 22:27 - 00000000 ____D () C:\Users\JOSE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SkyPath
2014-09-21 19:04 - 2014-09-21 19:04 - 00000000 ____D () C:\Program Files\Imageshack
2014-09-21 17:28 - 2014-10-03 22:27 - 00000000 ____D () C:\ProgramData\WeFi
2014-09-21 15:49 - 2014-09-21 15:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PPC Keyword Generator
2014-09-21 15:49 - 2014-09-21 15:49 - 00000000 ____D () C:\Program Files (x86)\PPC Keyword Generator
2014-09-21 15:46 - 2014-09-21 15:46 - 00001101 _____ () C:\Users\JOSE\AppData\Roaming\Microsoft\Windows\Start Menu\Dictionary.lnk
2014-09-21 15:46 - 2014-09-21 15:46 - 00000000 ____D () C:\Program Files (x86)\Dictionary
2014-09-21 15:36 - 2014-09-21 15:36 - 00000000 ____D () C:\Users\JOSE\Documents\Launch-n-Go
2014-09-21 15:31 - 2014-09-21 17:28 - 00000000 ____D () C:\Users\JOSE\Documents\Automation Anywhere Server
2014-09-21 15:31 - 2014-09-21 15:31 - 00000000 ____D () C:\Users\Public\Documents\MS Engine
2014-09-21 15:28 - 2014-09-21 15:28 - 00000000 ____D () C:\Users\JOSE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Automation Anywhere Server 6.6
2014-09-21 15:27 - 2014-09-21 15:28 - 00000000 ____D () C:\Program Files (x86)\Automation Anywhere Server 6.6
2014-09-21 15:21 - 2014-09-21 15:21 - 00000000 ____D () C:\Users\JOSE\AppData\Local\Auspex
2014-09-21 15:14 - 2014-09-21 15:14 - 00000000 ____D () C:\Users\JOSE\AppData\Roaming\www.kiwix.org
2014-09-21 15:14 - 2014-09-21 15:14 - 00000000 ____D () C:\Users\JOSE\AppData\Local\www.kiwix.org
2014-09-21 14:36 - 2014-10-03 22:23 - 00000330 _____ () C:\Windows\Tasks\WefiStartup.job
2014-09-21 14:36 - 2014-09-21 20:08 - 00002550 _____ () C:\Windows\System32\Tasks\WefiStartup
2014-09-21 14:36 - 2014-09-21 14:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WeFi
2014-09-21 14:35 - 2014-09-21 14:36 - 00000000 ____D () C:\Program Files (x86)\WeFi
2014-09-21 13:12 - 2014-09-21 13:12 - 00000000 __HDC () C:\ProgramData\{A87EB928-0C6C-4071-AEF1-59E32BAEDF1B}
2014-09-21 13:12 - 2014-09-21 13:12 - 00000000 ____D () C:\Users\JOSE\AppData\Roaming\Stardock
2014-09-21 13:11 - 2014-09-21 13:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fences
2014-09-21 13:11 - 2014-09-21 13:11 - 00000000 ____D () C:\Program Files (x86)\Stardock
2014-09-21 05:22 - 2014-09-20 17:53 - 00001038 _____ () C:\Users\JOSE\Desktop\SOFTWARE NUEVO por probar.lnk
2014-09-21 05:22 - 2014-09-20 17:53 - 00001029 _____ () C:\Users\JOSE\Desktop\RecH.vbox.lnk
2014-09-21 05:22 - 2014-09-20 17:53 - 00000796 _____ () C:\Users\JOSE\Desktop\Utilidades Varias - Acceso directo.lnk
2014-09-21 05:21 - 2014-09-20 17:53 - 00001502 _____ () C:\Users\JOSE\Desktop\mv expedientes.lnk
2014-09-21 05:21 - 2014-09-20 17:53 - 00001462 _____ () C:\Users\JOSE\Desktop\mv comunicaciones.lnk
2014-09-21 05:21 - 2014-09-20 17:53 - 00001458 _____ () C:\Users\JOSE\Desktop\mv fusión total.lnk
2014-09-21 05:21 - 2014-09-20 17:53 - 00001438 _____ () C:\Users\JOSE\Desktop\mv luis yanes bello.lnk
2014-09-21 05:21 - 2014-09-20 17:53 - 00001378 _____ () C:\Users\JOSE\Desktop\FRASEO 2014.lnk
2014-09-21 05:21 - 2014-09-20 17:53 - 00001021 _____ () C:\Users\JOSE\Desktop\PRUEBAS SEO 2014.lnk
2014-09-21 05:21 - 2014-09-20 17:53 - 00000989 _____ () C:\Users\JOSE\Desktop\PROTECCION - Acceso directo.lnk
2014-09-21 05:21 - 2014-09-20 17:53 - 00000951 _____ () C:\Users\JOSE\Desktop\FRASEO.lnk
2014-09-21 05:21 - 2014-07-05 13:27 - 00000000 _____ () C:\Users\JOSE\Desktop\Instrucciones.txt
2014-09-21 05:20 - 2014-09-20 17:53 - 00001129 _____ () C:\Users\JOSE\Desktop\Beyondo.SEO.FRASEO.vbox.lnk
2014-09-21 05:20 - 2014-09-20 17:53 - 00000954 _____ () C:\Users\JOSE\Desktop\Descargas MER.lnk
2014-09-21 05:19 - 2014-09-20 17:53 - 00000923 _____ () C:\Users\JOSE\Desktop\251.14.javier.lnk
2014-09-21 05:19 - 2014-09-20 17:53 - 00000923 _____ () C:\Users\JOSE\Desktop\247.14.Segundo Generador.lnk
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-10-04 03:18 - 2014-04-05 11:58 - 00000838 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-10-04 03:01 - 2014-04-03 02:00 - 00000000 ____D () C:\Users\JOSE\AppData\Roaming\Thunderbird
2014-10-04 02:55 - 2010-04-08 18:34 - 01719262 _____ () C:\Windows\WindowsUpdate.log
2014-10-04 02:44 - 2010-04-08 21:12 - 00001100 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-10-04 02:12 - 2010-04-08 18:50 - 00000000 ____D () C:\ProgramData\Temp
2014-10-03 22:29 - 2009-07-14 05:45 - 00017376 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-10-03 22:29 - 2009-07-14 05:45 - 00017376 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-10-03 22:20 - 2010-04-08 21:12 - 00001096 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-10-03 22:20 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-10-03 20:05 - 2014-03-27 14:34 - 00000000 ____D () C:\Users\JOSE\Documents\PhraseExpress
2014-10-03 19:53 - 2014-05-06 20:41 - 00000000 ____D () C:\AdwCleaner
2014-10-03 17:42 - 2014-04-10 22:09 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-10-03 17:02 - 2010-04-08 21:33 - 00000000 ____D () C:\Windows\system32\Drivers\Avg
2014-10-03 15:39 - 2014-04-18 02:31 - 00000000 ___RD () C:\Users\JOSE\Desktop\Accesos ACER W7
2014-10-02 22:55 - 2014-04-10 21:41 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-10-02 21:09 - 2014-04-05 10:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-10-02 21:09 - 2014-04-05 10:33 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-10-02 21:09 - 2014-04-05 10:33 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-10-02 01:33 - 2014-04-08 03:03 - 00115584 _____ () C:\Users\JOSE\AppData\Roaming\GDIPFONTCACHEV1.DAT
2014-10-01 01:20 - 2010-04-09 04:26 - 00744986 _____ () C:\Windows\system32\perfh00A.dat
2014-10-01 01:20 - 2010-04-09 04:26 - 00157454 _____ () C:\Windows\system32\perfc00A.dat
2014-10-01 01:20 - 2009-07-14 06:13 - 01669262 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-28 03:08 - 2010-04-08 18:39 - 00000000 ____D () C:\Users\JOSE
2014-09-26 22:11 - 2014-04-10 04:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-23 03:08 - 2005-07-04 01:11 - 00057344 _____ (Optimum X) C:\Users\JOSE\Desktop\Shortcut.exe
2014-09-23 01:14 - 2014-04-12 20:48 - 00000000 ____D () C:\Users\JOSE\AppData\Roaming\Acronis
2014-09-22 16:19 - 2010-03-14 19:12 - 00001461 _____ () C:\Users\JOSE\Desktop\MakeExeFromBat.bat
2014-09-22 00:23 - 2014-04-08 14:37 - 00000000 ____D () C:\Factusol 2000
2014-09-21 21:53 - 2014-04-05 11:58 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-21 21:53 - 2014-04-05 11:58 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-21 21:53 - 2014-04-05 11:58 - 00003776 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-09-21 19:57 - 2014-04-30 06:39 - 00000000 ____D () C:\Program Files (x86)\Samsung
2014-09-21 19:44 - 2014-04-08 00:27 - 00000000 ____D () C:\Program Files (x86)\Java
2014-09-21 19:33 - 2009-07-27 21:41 - 00000000 ____D () C:\Windows\Panther
2014-09-21 17:58 - 2014-04-10 21:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-09-21 17:58 - 2014-04-10 21:41 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-09-21 17:38 - 2010-04-08 21:12 - 00004096 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-09-21 17:38 - 2010-04-08 21:12 - 00003844 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-09-21 15:36 - 2014-04-26 00:18 - 00000000 ____D () C:\Users\JOSE\Documents\Automation Anywhere
2014-09-21 05:18 - 2010-04-08 20:14 - 00000000 ___RD () C:\Users\JOSE\Desktop\Utilidades Varias
2014-09-21 05:01 - 2014-04-22 05:07 - 00000000 ____D () C:\Users\JOSE\AppData\Roaming\OpenOffice.org2
2014-09-21 05:01 - 2014-03-28 04:41 - 00000000 ____D () C:\Windows\pss
2014-09-21 03:22 - 2014-05-15 23:03 - 00000000 ____D () C:\Windows\System32\Tasks\NCH Software
Some content of TEMP:
====================
C:\Users\JOSE\AppData\Local\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-09-22 23:33
==================== End Of Log ============================