This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

[Closed] help! somethign is controling my pc

16 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

hello, i need help cleaning my pc i just install HJT and did a scan but now it been deleted from my pc. thanks in advance.

here is the log

Logfile of HijackThis v1.99.1
Scan saved at 01:19:05 p.m., on 19/08/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
E:\WINDOWS\System32\smss.exe
E:\WINDOWS\system32\winlogon.exe
E:\WINDOWS\system32\services.exe
E:\WINDOWS\system32\lsass.exe
E:\WINDOWS\system32\svchost.exe
E:\WINDOWS\System32\svchost.exe
E:\WINDOWS\system32\spoolsv.exe
E:\WINDOWS\Explorer.EXE
E:\WINDOWS\system32\wins.exe
E:\ARCHIV~1\A4Tech\Mouse\Amoumain.exe
E:\Archivos de programa\EPSON\Ink Monitor\InkMonitor.exe
E:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAAL.EXE
E:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBVL.EXE
E:\Archivos de programa\QuickTime\qttask.exe
E:\WINDOWS\system32\LeChucK.exe
E:\Archivos de programa\MySpace\IM\MySpaceIM.exe
E:\WINDOWS\system32\ctfmon.exe
E:\Archivos de programa\Messenger\msmsgs.exe
E:\Archivos de programa\iTunes\iTunesHelper.exe
E:\Archivos de programa\Lavasoft\Ad-Aware 2007\aawservice.exe
E:\Archivos de programa\SpeedBit Video Accelerator\VideoAccelerator.exe
E:\Archivos de programa\Java\jre1.6.0_01\bin\jusched.exe
E:\ARCHIV~1\Grisoft\AVG7\avgamsvr.exe
E:\Archivos de programa\Internet Explorer\iexplore.exe
E:\ARCHIV~1\Grisoft\AVG7\avgupsvc.exe
E:\Archivos de programa\Internet Explorer\iexplore.exe
E:\Archivos de programa\Archivos comunes\Microsoft Shared\VS7Debug\mdm.exe
E:\WINDOWS\system32\nvsvc32.exe
E:\WINDOWS\system32\svchost.exe
E:\ARCHIV~1\SPEEDB~1\VideoAcceleratorService.exe
E:\Archivos de programa\iPod\bin\iPodService.exe
E:\ARCHIV~1\SPEEDB~1\VideoAcceleratorEngine.exe
E:\Archivos de programa\Java\jre1.6.0_01\bin\jucheck.exe
E:\Archivos de programa\Mozilla Firefox\firefox.exe
E:\Archivos de programa\Hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Vínculos
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - E:\Archivos de programa\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {39f25b12-74ff-4079-a51f-1d70f5b08b84} - E:\WINDOWS\system32\ixt0.dll (file missing)
O2 - BHO: ohb - {5ED7D3DE-6DBE-4516-8712-01B1B64B7057} - (no file)
O2 - BHO: GamesBar - {6F282B65-56BF-4BD1-A8B2-A4449A05863D} - E:\Archivos de programa\GamesBar\oberontb.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - E:\Archivos de programa\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O3 - Toolbar: (no name) - {37B85A29-692B-4205-9CAD-2626E4993404} - (no file)
O3 - Toolbar: (no name) - {052b12f7-86fa-4921-8482-26c42316b522} - (no file)
O3 - Toolbar: GamesBar - {6F282B65-56BF-4BD1-A8B2-A4449A05863D} - E:\Archivos de programa\GamesBar\oberontb.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "E:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] E:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] E:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE E:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE E:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [WheelMouse] E:\ARCHIV~1\A4Tech\Mouse\Amoumain.exe
O4 - HKLM\..\Run: [Ink Monitor] E:\Archivos de programa\EPSON\Ink Monitor\InkMonitor.exe
O4 - HKLM\..\Run: [EPSON Stylus C67 Series] E:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAAL.EXE /P23 "EPSON Stylus C67 Series" /O6 "USB001" /M "Stylus C67"
O4 - HKLM\..\Run: [EPSON Stylus CX4900 Series] E:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBVL.EXE /FU "E:\WINDOWS\TEMP\E_S34A9.tmp" /EF "HKLM"
O4 - HKLM\..\Run: [BearShare] "E:\Archivos de programa\BearShare\BearShare.exe" /pause
O4 - HKLM\..\Run: [ERS_check] "E:\Archivos de programa\Archivos comunes\WinAntiVirus Pro 2006\ers_startupmon.exe"
O4 - HKLM\..\Run: [DC6_check] "E:\Archivos de programa\Archivos comunes\WinAntiVirus Pro 2006\dc6_startupmon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "E:\Archivos de programa\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [AVG7_CC] E:\ARCHIV~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [SunJavaUpdateSched] "E:\Archivos de programa\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [wosa] E:\DOCUME~1\pc\CONFIG~1\Temp\woso.exe
O4 - HKLM\..\Run: [iTunesHelper] "E:\Archivos de programa\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [DownloadAccelerator] "E:\Archivos de programa\DAP\DAP.EXE" /STARTUP
O4 - HKLM\..\Run: [SpeedBitVideoAccelerator] "E:\Archivos de programa\SpeedBit Video Accelerator\VideoAccelerator.exe"
O4 - HKLM\..\Run: [Base frag grid bows] E:\Documents and Settings\All Users\Datos de programa\Cast ping base frag\Grim Funk.exe
O4 - HKCU\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "E:\Archivos de programa\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Idol Axis] E:\DOCUME~1\pc\DATOSD~1\DVDANT~1\WaitOnce.exe
O4 - HKCU\..\Run: [MySpaceIM] E:\Archivos de programa\MySpace\IM\MySpaceIM.exe
O4 - HKCU\..\Run: [MsnMsgr] "E:\Archivos de programa\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [avpa] E:\WINDOWS\system32\avpo.exe
O4 - HKCU\..\Run: [amva] E:\WINDOWS\system32\amvo.exe
O4 - HKCU\..\Run: [kamsoft] E:\WINDOWS\system32\ckvo.exe
O4 - Global Startup: Microsoft Office.lnk = E:\Archivos de programa\Microsoft Office\Office10\OSA.EXE
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O8 - Extra context menu item: &Clean Traces - E:\Archivos de programa\DAP\Privacy Package\dapcleanerie.htm
O8 - Extra context menu item: &Download with &DAP - E:\Archivos de programa\DAP\dapextie.htm
O8 - Extra context menu item: Download &all with DAP - E:\Archivos de programa\DAP\dapextie2.htm
O8 - Extra context menu item: E&xportar a Microsoft Excel - res://E:\ARCHIV~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {1A93C934-025B-4c3a-B38E-9654A7003239} - E:\Archivos de programa\GamesBar\oberontb.dll
O9 - Extra 'Tools' menuitem: GamesBar - {1A93C934-025B-4c3a-B38E-9654A7003239} - E:\Archivos de programa\GamesBar\oberontb.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Archivos de programa\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Archivos de programa\Messenger\msmsgs.exe
O12 - Plugin for .spop: E:\Archivos de programa\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://anavli.spaces.live.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/ES-AR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe…nt.cab31267.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe…nt.cab56907.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - E:\ARCHIV~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - E:\ARCHIV~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: winbue32 - winbue32.dll (file missing)
O21 - SSODL: cussers - {ff170564-36c8-43f7-9100-559e166405cf} - (no file)
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - E:\Archivos de programa\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - E:\ARCHIV~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - E:\ARCHIV~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - E:\Archivos de programa\Archivos comunes\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Servicio del iPod (iPod Service) - Apple Inc. - E:\Archivos de programa\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - E:\WINDOWS\system32\nvsvc32.exe
O23 - Service: VideoAcceleratorService - Speedbit Ltd. - E:\ARCHIV~1\SPEEDB~1\VideoAcceleratorService.exe
Hi, and Welcome to WhatTheTech :)

My name is jpshortstuff. I would be glad to take a look at your log and help you with solving any malware problems. HijackThis logs can take a while to research, so please be patient and I'd be grateful if you would note the following:
  • I will working be on your Malware issues, this may or may not, solve other issues you have with your machine.
  • The fixes are specific to your problem and should only be used for the issues on this machine.
  • Please continue to review my answers until I tell you your machine appears to be clear. Absence of symptoms does not mean that everything is clear.
  • It's often worth reading through these instructions and printing them for ease of reference.
  • If you don't know or understand something, please don't hesitate to say or ask!! It's better to be sure and safe than sorry.
  • Please reply to this thread. Do not start a new topic.
As I am still training, my posts to you will be checked by an Expert member. This will ensure that all advice and instructions I give you are accurate and safe. This may mean that my replies may take a little longer.

jpshortstuff
Hi

Identity Theft

It looks like you have been infected by a few Backdoor Trojans.

This allows hackers to remotely control your computer, steal critical system information and Download and Execute files

Its very possible that anything could have been installed on your computer by the remote attacker, including opening other backdoors and installing rootkits. While we can attempt to clean what we see in your logs, we cannot guarantee that your computer will be completely in the clear since we have no way of knowing that has been done to the computer. Your computer could be completely compromised at this moment. It may be prudent to backup your information, reformat, and reinstall.

More information on Remote Access Trojans can be found here.

I suggest you do the following immediately:
  • Call all of your banks, credit card companies, financial institutions and inform them that you may be a victim of identity theft and to put a watch on your accounts or change all your account numbers.
  • From a clean computer, change *all* your online passwords – for email, for banks, financial accounts, PayPal, eBay, online companies, any online forums or groups you belong to.
  • DO NOT change passwords or do any transactions while using the infected computer because the attacker will get the new passwords and transaction information.
If, however, you decide that the computer is not used for any sensitive work, or if you do not wish to reformat at this time, I can help you clean your computer to the best of my abilities. I must remind you that i cannot guarantee that your computer will be completely clean afterwards since we have no way of knowing what has been done to it.

To help you make your decision, here are a few related articles that i suggest you read:
  • Danger: Remote Access Trojans.
  • When should I re-format? How should I reinstall?
  • How Do I Handle Possible Identify Theft, Internet Fraud and Credit Card Fraud?
Should you have any questions, please feel free to ask.

Please let me know what you decide to do in your next post.

========
Should you wish to continue, please do the following:

We have noticed that most people seeking help from us are coming with infections contracted from the use of P2P programs.

Because of this, we felt we needed to change our policy on the use of P2P file sharing programs.

You have the following P-2-P program(s) installed
BearShare

This is how you uninstall it/them:

  • Click Start
  • Go to Control Panel
  • Go to Add/Remove Programs
  • Find and click Remove for the following (if present):
BearShare
and any other P2P programs you may have (e.g. Limewire)


Have you or an Administrator set any restrictions on this computer for regedit?

You have DownloadAcceleratorPlus installed. The free version of this program is "adware based". If you have the free version, I highly recomend you uninstall it via Start >> Control Panel >> Add/Remove Programs. See these two links for more information:
http://www.bleepingcomputer.com/uninstall/…r-Plus-DAP.html
http://www.bleepingcomputer.com/startups/D…rator-7431.html


Please download Malwarebytes' Anti-Malware to your desktop.

  • Double-click mbam-setup.exe and follow the prompts to install the program.
  • At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select Perform full scan, then click Scan.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Be sure that everything is checked, and click Remove Selected.
  • When completed, a log will open in Notepad. Please save it to a convenient location.
  • The log can also be found here:
    C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-date.txt
  • Or at C:\Program Files\Malwarebytes' Anti-Malware\Logs\log-date.txt
  • Post that log back here.
I need to see another log from HijackThis.
  • Run Hijackthis.
  • Click on Open the Misc Tools section.
  • Next click on Open uninstall manager.
  • Press the Save list button.
  • Save the file to your desktop, with the default name of uninstall_list
  • Copy & Paste the entire contents of that file in your in your next post.
Please post a new HijackThis log as well.

Thanks.
yeah sorry for the delay Malwarebytes' Anti-Malware 1.25 Versión de la Base de Datos: 1062 Windows 5.1.2600 Service Pack 2 12:07:40 a.m. 25/08/2008 mbam-log-08-25-2008 (00-07-36).txt Tipo de examen : Examen Completo (C:\|D:\|E:\|) Objetos examinados: 225692 Tiempo transcurrido: 1 hour(s), 22 minute(s), 12 second(s) Procesos en Memoria Infectados: 0 Módulos en Memoria Infectados: 1 Claves del Registro Infectadas: 28 Valores del Registro Infectados: 8 Elementos de Datos del Registro Infectados: 1 Carpetas Infectadas: 7 Ficheros Infectados: 168 Procesos en Memoria Infectados: (No se han detectado elementos maliciosos) Módulos en Memoria Infectados: E:\WINDOWS\system32\amvo0.dll (Trojan.Agent) -> No action taken. Claves del Registro Infectadas: HKEY_CLASSES_ROOT\fis.amo (Adware.SmartShopper) -> No action taken. HKEY_CLASSES_ROOT\fis.amo.1 (Adware.SmartShopper) -> No action taken. HKEY_CLASSES_ROOT\fis.momo (Adware.SmartShopper) -> No action taken. HKEY_CLASSES_ROOT\fis.momo.1 (Adware.SmartShopper) -> No action taken. HKEY_CLASSES_ROOT\fis.ohb (Adware.SmartShopper) -> No action taken. HKEY_CLASSES_ROOT\fis.ohb.1 (Adware.SmartShopper) -> No action taken. HKEY_CLASSES_ROOT\mywebsearch.pseudotransparentplugin (Adware.MyWebSearch) -> No action taken. HKEY_CLASSES_ROOT\mywebsearch.pseudotransparentplugin.1 (Adware.MyWebSearch) -> No action taken. HKEY_CLASSES_ROOT\oberontb.band (Adware.Gamesbar) -> No action taken. HKEY_CLASSES_ROOT\TypeLib\{ad76633e-e50d-4844-9e7f-4dfbc7c18467} (Adware.Gamesbar) -> No action taken. HKEY_CLASSES_ROOT\Interface\{ec1a2105-5621-440f-987d-27ef428131d9} (Adware.Gamesbar) -> No action taken. HKEY_CLASSES_ROOT\CLSID\{6f282b65-56bf-4bd1-a8b2-a4449a05863d} (Adware.Gamesbar) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6f282b65-56bf-4bd1-a8b2-a4449a05863d} (Adware.Gamesbar) -> No action taken. HKEY_CLASSES_ROOT\oberontb.band.1 (Adware.Gamesbar) -> No action taken. HKEY_CLASSES_ROOT\Interface\{2e9937fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> No action taken. HKEY_CLASSES_ROOT\Interface\{741de825-a6f0-4497-9aa6-8023cf9b0fff} (Adware.MyWebSearch) -> No action taken. HKEY_CLASSES_ROOT\CLSID\{147a976f-eee1-4377-8ea7-4716e4cdd239} (Adware.MyWebSearch) -> No action taken. HKEY_CLASSES_ROOT\CLSID\{84da4fdf-a1cf-4195-8688-3e961f505983} (Adware.MyWebSearch) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256a51-b582-467e-b8d4-7786eda79ae0} (Adware.MyWebSearch) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256a51-b582-467e-b8d4-7786eda79ae0} (Adware.MyWebSearch) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5ed7d3de-6dbe-4516-8712-01b1b64b7057} (Adware.SmartShopper) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{37b85a2b-692b-4205-9cad-2626e4993404} (Adware.MyWebSearch) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{1a93c934-025b-4c3a-b38e-9654a7003239} (Adware.Gamesbar) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\upmedia (Adware.SmartShopper) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winbue32 (Dialer) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\UpMedia (Adware.SmartShopper) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PSRV (Trojan.Agent) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> No action taken. Valores del Registro Infectados: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{6f282b65-56bf-4bd1-a8b2-a4449a05863d} (Adware.Gamesbar) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\kamsoft (Trojan.Agent) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\amva (Trojan.Agent) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\host-domain-lookup.com (Malware.Trace) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\mysearchnow.com (Malware.Trace) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\www.host-domain-lookup.com (Malware.Trace) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\www.mysearchnow.com (Malware.Trace) -> No action taken. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\BootStera (Rogue.WinAntivirus) -> No action taken. Elementos de Datos del Registro Infectados: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL\CheckedValue (Hijack.System.Hidden) -> Bad: (0) Good: (1) -> No action taken. Carpetas Infectadas: E:\Archivos de programa\MyGlobalSearch (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\1.bin (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\Cache (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\History (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\Settings (Adware.MyWebSearch) -> No action taken. E:\WINDOWS\system32\UpMedia (Adware.SmartShopper) -> No action taken. Ficheros Infectados: E:\Archivos de programa\GamesBar\oberontb.dll (Adware.Gamesbar) -> No action taken. C:\1yl2d.bat (Trojan.Vundo) -> No action taken. C:\6x8be16.cmd (Spyware.OnlineGames) -> No action taken. C:\oufddh.exe (Spyware.OnlineGames) -> No action taken. C:\u8jre9hv.bat (Spyware.OnLineGames) -> No action taken. C:\m88coaim.exe (Spyware.OnlineGames) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0058033.exe (Spyware.OnlineGames) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0058010.exe (Spyware.OnlineGames) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065207.dll (Adware.WhenUSave) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065368.exe (Spyware.OnlineGames) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065389.exe (Spyware.OnlineGames) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065443.cmd (Spyware.OnlineGames) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065468.cmd (Spyware.OnlineGames) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065506.cmd (Spyware.OnlineGames) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065532.cmd (Spyware.OnlineGames) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065554.cmd (Spyware.OnlineGames) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065575.cmd (Spyware.OnlineGames) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065596.cmd (Spyware.OnlineGames) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065711.bat (Spyware.OnLineGames) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065732.bat (Spyware.OnLineGames) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065772.bat (Spyware.OnLineGames) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067605.bat (Trojan.Vundo) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067639.bat (Trojan.Vundo) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067678.bat (Trojan.Vundo) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067712.bat (Trojan.Vundo) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067745.bat (Trojan.Vundo) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067769.bat (Trojan.Vundo) -> No action taken. C:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067989.cmd (Trojan.Agent) -> No action taken. D:\1yl2d.bat (Trojan.Vundo) -> No action taken. D:\m88coaim.exe (Spyware.OnlineGames) -> No action taken. D:\oufddh.exe (Spyware.OnlineGames) -> No action taken. D:\u8jre9hv.bat (Spyware.OnLineGames) -> No action taken. D:\6x8be16.cmd (Spyware.OnlineGames) -> No action taken. D:\programas\CORE10k.EXE (Trojan.Agent) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0058013.exe (Spyware.OnlineGames) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0058035.exe (Spyware.OnlineGames) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065371.exe (Spyware.OnlineGames) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065391.exe (Spyware.OnlineGames) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065446.cmd (Spyware.OnlineGames) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065508.cmd (Spyware.OnlineGames) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065534.cmd (Spyware.OnlineGames) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065558.cmd (Spyware.OnlineGames) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065578.cmd (Spyware.OnlineGames) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065598.cmd (Spyware.OnlineGames) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065713.bat (Spyware.OnLineGames) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065735.bat (Spyware.OnLineGames) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065774.bat (Spyware.OnLineGames) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065472.cmd (Spyware.OnlineGames) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067715.bat (Trojan.Vundo) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067611.bat (Trojan.Vundo) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067641.bat (Trojan.Vundo) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067681.bat (Trojan.Vundo) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067749.bat (Trojan.Vundo) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067776.bat (Trojan.Vundo) -> No action taken. D:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067994.cmd (Trojan.Agent) -> No action taken. E:\m88coaim.exe (Spyware.OnlineGames) -> No action taken. E:\oufddh.exe (Spyware.OnlineGames) -> No action taken. E:\1yl2d.bat (Trojan.Vundo) -> No action taken. E:\6x8be16.cmd (Spyware.OnlineGames) -> No action taken. E:\u8jre9hv.bat (Spyware.OnLineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0046598.dll (Adware.SmartShopper) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0046599.dll (Adware.SmartShopper) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0058017.exe (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0058020.exe (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0058021.dll (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0058027.dll (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0058042.exe (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0058043.dll (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0058037.exe (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065191.exe (Adware.SmartShopper) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065200.exe (Trojan.Downloader) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065374.exe (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065384.dll (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065393.exe (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065399.exe (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065400.dll (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065406.dll (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065448.cmd (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065453.exe (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065475.cmd (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065484.dll (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065513.cmd (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065526.dll (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065540.cmd (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065550.dll (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065563.cmd (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065571.dll (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065580.cmd (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065589.dll (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065601.cmd (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065604.exe (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065627.dll (Spyware.OnlineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065715.bat (Spyware.OnLineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065729.dll (Spyware.OnLineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065741.bat (Spyware.OnLineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065764.dll (Spyware.OnLineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065777.bat (Spyware.OnLineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065784.exe (Spyware.OnLineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0065785.dll (Spyware.OnLineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0066765.dll (Spyware.OnLineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067615.bat (Trojan.Vundo) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067635.dll (Spyware.OnLineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067643.bat (Trojan.Vundo) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067670.dll (Spyware.OnLineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067687.bat (Trojan.Vundo) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067705.dll (Spyware.OnLineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067718.bat (Trojan.Vundo) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067738.dll (Spyware.OnLineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067750.bat (Trojan.Vundo) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067766.dll (Spyware.OnLineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067780.bat (Trojan.Vundo) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067784.exe (Trojan.Vundo) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067785.dll (Spyware.OnLineGames) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0068001.cmd (Trojan.Agent) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0068003.exe (Trojan.Agent) -> No action taken. E:\System Volume Information\_restore{63C68254-9EBA-4F8E-8D0E-58005B43D766}\RP225\A0067797.dll (Spyware.OnLineGames) -> No action taken. E:\Documents and Settings\pc\Configuración local\Temp\yv.dll (Spyware.OnlineGames) -> No action taken. E:\Documents and Settings\pc\Configuración local\Temp\tru18.tmp (Spyware.OnlineGames) -> No action taken. E:\Documents and Settings\pc\Configuración local\Temp\tru1A.tmp (Trojan.Agent) -> No action taken. E:\Documents and Settings\pc\Configuración local\Temp\tru20.tmp (Trojan.Agent) -> No action taken. E:\Documents and Settings\pc\Configuración local\Temp\tru25.tmp (Trojan.Vaklik) -> No action taken. E:\Documents and Settings\pc\Configuración local\Temp\tru26.tmp (Trojan.Vaklik) -> No action taken. E:\Documents and Settings\pc\Configuración local\Temp\tru2B.tmp (Trojan.Vaklik) -> No action taken. E:\Documents and Settings\pc\Configuración local\Temp\tru8.tmp (Spyware.OnlineGames) -> No action taken. E:\WINDOWS\system32\UpMedia\uninstallSE.exe (Adware.SmartShopper) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\1.bin\M9FFXTBR.JAR (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\1.bin\M9FFXTBR.MANIFEST (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\1.bin\M9NTSTBR.JAR (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\1.bin\M9NTSTBR.MANIFEST (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\1.bin\M9PLUGIN.DLL (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\1.bin\MGSBAR.DLL (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\1.bin\NPMYGLSH.DLL (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\Cache\00DB95FD (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\Cache\011B2B93 (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\Cache\0136CCE1.bin (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\Cache\0136DCA0.bin (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\Cache\0136E991.bin (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\Cache\files.ini (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\History\search (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\Settings\prevcfg.htm (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\Settings\settings.dat (Adware.MyWebSearch) -> No action taken. E:\Archivos de programa\MyGlobalSearch\bar\Settings\settings.htm (Adware.MyWebSearch) -> No action taken. E:\WINDOWS\system32\winbue32.dll (Dialer) -> No action taken. E:\WINDOWS\system32\ckvo.exe (Trojan.Agent) -> No action taken. E:\1nkbd8h.bat (Trojan.Agent) -> No action taken. E:\c9hehpa.bat (Trojan.Agent) -> No action taken. E:\gumkrhf.bat (Trojan.Agent) -> No action taken. E:\ivcvknr.bat (Trojan.Agent) -> No action taken. E:\00hoeav.com (Trojan.Agent) -> No action taken. E:\r.cmd (Trojan.Agent) -> No action taken. E:\83l3v.cmd (Trojan.Agent) -> No action taken. E:\xmnm2.cmd (Trojan.Agent) -> No action taken. E:\mvxm.cmd (Trojan.Agent) -> No action taken. E:\n2de.cmd (Trojan.Agent) -> No action taken. E:\un9.cmd (Trojan.Agent) -> No action taken. E:\WINDOWS\system32\amvo.exe (Trojan.Agent) -> No action taken. E:\WINDOWS\system32\amvo0.dll (Trojan.Agent) -> No action taken. E:\WINDOWS\system32\amvo1.dll (Trojan.Agent) -> No action taken. E:\Archivos de programa\Archivos comunes\Yazzle1162OinUninstaller.exe (Adware.PurityScan) -> No action taken. E:\WINDOWS\system32\stera.job (Rogue.WinAntivirus) -> No action taken. E:\Documents and Settings\pc\Configuración local\Temp\tru4.tmp (Trojan.Agent) -> No action taken. E:\Documents and Settings\pc\Configuración local\Temp\tru5.tmp (Trojan.Agent) -> No action taken. E:\Documents and Settings\pc\Configuración local\Temp\tru6.tmp (Trojan.Agent) -> No action taken. E:\Documents and Settings\pc\Configuración local\Temp\tru7.tmp (Trojan.Agent) -> No action taken. E:\Documents and Settings\pc\Configuración local\Temp\tru9.tmp (Trojan.Agent) -> No action taken. E:\Documents and Settings\pc\Configuración local\Temp\win4A.tmp.exe (Heuristics.Malware) -> No action taken. E:\Documents and Settings\All Users\Menú Inicio\Online Security Guide.url (Rogue.Link) -> No action taken. E:\Documents and Settings\All Users\Menú Inicio\Security Troubleshooting.url (Rogue.Link) -> No action taken.
here´s the hjt log Actualización de seguridad para el Reproductor de Windows Media (KB911564) Actualización de seguridad para Windows XP (KB890046) Actualización de seguridad para Windows XP (KB893756) Actualización de seguridad para Windows XP (KB896358) Actualización de seguridad para Windows XP (KB896423) Actualización de seguridad para Windows XP (KB896424) Actualización de seguridad para Windows XP (KB896428) Actualización de seguridad para Windows XP (KB899589) Actualización de seguridad para Windows XP (KB900725) Actualización de seguridad para Windows XP (KB901190) Actualización de seguridad para Windows XP (KB901214) Actualización de seguridad para Windows XP (KB902400) Actualización de seguridad para Windows XP (KB904706) Actualización de seguridad para Windows XP (KB905414) Actualización de seguridad para Windows XP (KB905749) Actualización de seguridad para Windows XP (KB908519) Actualización de seguridad para Windows XP (KB911562) Actualización de seguridad para Windows XP (KB911567) Actualización de seguridad para Windows XP (KB912919) Actualización de seguridad para Windows XP (KB913580) Actualización de seguridad para Windows XP (KB914389) Actualización de seguridad para Windows XP (KB916281) Actualización de seguridad para Windows XP (KB917344) Actualización de seguridad para Windows XP (KB917953) Actualización de seguridad para Windows XP (KB918439) Actualización para Windows XP (KB894391) Actualización para Windows XP (KB898461) Actualización para Windows XP (KB900485) Actualización para Windows XP (KB908531) Actualización para Windows XP (KB910437) Actualización para Windows XP (KB911280) Ad-Aware 2007 Ad-Aware SE Personal Adobe Acrobat 5.0 Adobe Flash Player 9 ActiveX Adobe Shockwave Player Apple Software Update ArcSoft PhotoImpression 5 AVG 7.5 BearShare Belles Beauty Boutique Bettys Beer Bar Buildalot Build-a-lot Burger Island Burger Shop Cake Mania 2 Carrie the Caregiver Cathys Caribbean Club Companion wizard Compresor WinRAR Daycare Nightmare Diner Dash Diner Dash Flo on the Go Diner Dash Hometown Hero Download Accelerator Plus (DAP) Dream Day Wedding EPSON Scan Fashion Fits Fish Tycoon Flower Shop - Big City Break GamesBar 1.1.0.5 Gift Shop Hijackthis 1.99.1 HijackThis 1.99.1 HouseCall 6.6 Ink Monitor iOfficeWorks 7.64 iTunes Jackpot Match-Up Java™ SE Runtime Environment 6 Update 1 K-Lite Codec Pack 2.76 Full LimeWire 4.12.15 LiveReg (Symantec Corporation) LiveUpdate 1.80 (Symantec Corporation) Loco - Christmas Edition Malwarebytes' Anti-Malware Manual del usuario CX4900 Messenger Plus! Live & Sponsor (CiD) Microsoft Office XP Professional con FrontPage Miss Management Mozilla Firefox (2.0.0.16) MSN MySpaceIM Mystery Case Files - Prime Suspects Nanny Mania NVIDIA Drivers OIN Paparazzi Plant Tycoon QuickTime Revisión de Windows XP - KB873339 Revisión de Windows XP - KB886185 Revisión de Windows XP - KB887472 Revisión de Windows XP - KB887742 Revisión de Windows XP - KB888113 Revisión de Windows XP - KB888302 Revisión de Windows XP - KB890859 Revisión de Windows XP - KB891781 Roller Rush Safety Bar Shopmania Shopping Marathon Software de impresora EPSON SpeedBit Video Accelerator The Apprentice Los Angeles Tibia 7.92 Turbo Pizza Uptown Engine VIA Platform Device Manager Virtual Villagers Virtual Villagers The Lost Children Wedding Dash Winamp (remove only) Windows Installer 3.1 (KB893803) Windows Live Messenger Windows Live OneCare safety scanner Windows Media Format Runtime
Hi

When you used MalwareBytes Anti-Malware, did you click Remove Selected? I only ask because you log shows "No Action Taken" by each entry. Please open the following file:
C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-date.txt
or C:\Program Files\Malwarebytes' Anti-Malware\Logs\log-date.txt
And check whether or not it still says "No Action Taken" (the log you posted could have been created before the items were removed).
If this log is different, please post it. If it is the same, then I'm afraid you will have to run the scan again. Please remember to click Remove Selected not Save Logfile. The log will popup after the program has removed the entries.

I can see Limewire and Bearshare in your log. If you want to continue receiving help here you must remove these programs. For more information, here is our policy:
http://forums.whatthetech.com/We_do_not_support_t91501.html

Once removed, please post a fresh HijackThis log, along with the MBAM results.

Thanks.
Hi

Are you logged in as an Administrator? If not, please try logging in as an Administrator and then try uninstalling the program again.

If this still doesn't work, have a go in safe mode.

Here are instructions for getting into safe mode:
  • Restart the computer.
  • As soon as BIOS is loaded begin tapping the F8 key until the Advanced Options menu appears.
  • Use the arrow keys to select the Safe mode menu item
  • Press Enter.
Remember to log in as an Administrator.

Then try uninstalling the program as before.

If you still get an error message, please navigate to this folder:
E:\Archivos de programa\BearShare
And see if you can see an uninstall program (usually called something like uninstall.exe, uninst.exe etc). Try double-clicking this if you can find it.

If this still doesn't work, please post exactly what error messages/behavior you are getting. Also please post the information about MBAM I asked or, and a new HijackThis log, even if you can't get BearShare to uninstall.

Did you successfully uninstall LimeWire?

Thanks.

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI