Programs will not start

Discussion in 'Windows - Virus and spyware problems' started by feruz86, Jan 23, 2008.

  1. feruz86

    feruz86 Member

    Joined:
    Jun 9, 2006
    Messages:
    22
    Likes Received:
    0
    Trophy Points:
    11
    Hey, I have a Dell laptop with windows XP. There are sometimes that when I turn on my computer I go to the start menu and click on any program (firefox, msn messenger etc...) and it seems that it is loading the program, but like ten seconds after nothing happens. What may be causing this, any ideas?

    Thanx
     
  2. QuikDraw

    QuikDraw Regular member

    Joined:
    Sep 29, 2007
    Messages:
    808
    Likes Received:
    0
    Trophy Points:
    26
    Last edited: Jan 25, 2008
  3. feruz86

    feruz86 Member

    Joined:
    Jun 9, 2006
    Messages:
    22
    Likes Received:
    0
    Trophy Points:
    11
    Hey Quick Draw, thanks a lot for your fast response. I did Start> Run> type: regsvr32 /i shell32.dll, rebooted and apparently the problem is solved. However I downloaded HJK and did a system scan, could you take a look at it? here's my logfile:

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 11:34:27 PM, on 1/25/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Archivos de programa\Intel\Wireless\Bin\S24EvMon.exe
    C:\Archivos de programa\Archivos comunes\Symantec Shared\ccSetMgr.exe
    C:\Archivos de programa\Archivos comunes\Symantec Shared\ccEvtMgr.exe
    C:\Archivos de programa\Archivos comunes\Symantec Shared\SPBBC\SPBBCSvc.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Archivos de programa\Archivos comunes\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Archivos de programa\WIDCOMM\Bluetooth Software\bin\btwdins.exe
    C:\WINDOWS\system32\cisvc.exe
    C:\Archivos de programa\Symantec AntiVirus\DefWatch.exe
    C:\Archivos de programa\Intel\Wireless\Bin\EvtEng.exe
    C:\Archivos de programa\Hotspot Shield\bin\openvpnas.exe
    C:\Archivos de programa\Intel\Wireless\Bin\RegSrvc.exe
    C:\WINDOWS\system32\tcpsvcs.exe
    C:\WINDOWS\System32\snmp.exe
    C:\Archivos de programa\Symantec AntiVirus\Rtvscan.exe
    C:\Archivos de programa\Intel\Wireless\Bin\WLKeeper.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\stsystra.exe
    C:\Archivos de programa\Synaptics\SynTP\SynTPEnh.exe
    C:\Archivos de programa\ATI Technologies\ATI.ACE\cli.exe
    C:\Archivos de programa\Dell\QuickSet\quickset.exe
    C:\WINDOWS\system32\RunDll32.exe
    C:\Archivos de programa\Java\jre1.6.0_03\bin\jusched.exe
    C:\Archivos de programa\Adobe\Reader 8.0\Reader\Reader_sl.exe
    C:\Archivos de programa\Microsoft Office\Office12\GrooveMonitor.exe
    C:\Archivos de programa\Archivos comunes\Symantec Shared\ccApp.exe
    C:\ARCHIV~1\SYMANT~1\VPTray.exe
    C:\Archivos de programa\iTunes\iTunesHelper.exe
    C:\Archivos de programa\Saitek\Software\ProfilerU.exe
    C:\Archivos de programa\Saitek\Software\SaiMfd.exe
    C:\Archivos de programa\Intel\Wireless\bin\ZCfgSvc.exe
    C:\Archivos de programa\Intel\Wireless\Bin\ifrmewrk.exe
    C:\Archivos de programa\MSN Messenger\MsnMsgr.Exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Archivos de programa\WIDCOMM\Bluetooth Software\BTTray.exe
    C:\Archivos de programa\Intel\Wireless\Bin\Dot1XCfg.exe
    C:\Archivos de programa\ATI Technologies\ATI.ACE\cli.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Archivos de programa\iPod\bin\iPodService.exe
    C:\ARCHIV~1\Mozilla Firefox\firefox.exe
    C:\Archivos de programa\MSN Messenger\msnmsgr.exe
    C:\Archivos de programa\MSN Messenger\usnsvc.exe
    C:\Archivos de programa\Trend Micro\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Vínculos
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Archivos de programa\Archivos comunes\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\ARCHIV~1\MICROS~3\Office12\GRA8E1~1.DLL
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Archivos de programa\Java\jre1.6.0_03\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
    O4 - HKLM\..\Run: [SynTPEnh] C:\Archivos de programa\Synaptics\SynTP\SynTPEnh.exe
    O4 - HKLM\..\Run: [ATICCC] "C:\Archivos de programa\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
    O4 - HKLM\..\Run: [Dell QuickSet] C:\Archivos de programa\Dell\QuickSet\quickset.exe
    O4 - HKLM\..\Run: [AudCtrl] RunDll32 AudCtrl.dll,RCMonitor
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Archivos de programa\Java\jre1.6.0_03\bin\jusched.exe"
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Archivos de programa\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [GrooveMonitor] "C:\Archivos de programa\Microsoft Office\Office12\GrooveMonitor.exe"
    O4 - HKLM\..\Run: [ccApp] "C:\Archivos de programa\Archivos comunes\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [vptray] C:\ARCHIV~1\SYMANT~1\VPTray.exe
    O4 - HKLM\..\Run: [\\DANIELA\EPSON Stylus CX1500 Dany] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I4V1.EXE /P34 "\\DANIELA\EPSON Stylus CX1500 Dany" /O6 "USB001" /M "Stylus CX1500"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Archivos de programa\QuickTime\QTTask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Archivos de programa\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [Profiler] C:\Archivos de programa\Saitek\Software\ProfilerU.exe
    O4 - HKLM\..\Run: [SaiMfd] C:\Archivos de programa\Saitek\Software\SaiMfd.exe
    O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Archivos de programa\Intel\Wireless\bin\ZCfgSvc.exe"
    O4 - HKLM\..\Run: [IntelWireless] "C:\Archivos de programa\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Archivos de programa\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICIO LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Servicio de red')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - Startup: Adobe Gamma.lnk = C:\Archivos de programa\Archivos comunes\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Startup: Recorte de pantalla e Inicio rápido de OneNote 2007.lnk = C:\Archivos de programa\Microsoft Office\Office12\ONENOTEM.EXE
    O4 - Global Startup: BTTray.lnk = ?
    O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\ARCHIV~1\MICROS~3\Office12\EXCEL.EXE/3000
    O8 - Extra context menu item: Enviar a &Bluetooth - C:\Archivos de programa\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Archivos de programa\Java\jre1.6.0_03\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Consola de Sun Java - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Archivos de programa\Java\jre1.6.0_03\bin\ssv.dll
    O9 - Extra button: Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\ARCHIV~1\MICROS~3\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: &Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\ARCHIV~1\MICROS~3\Office12\ONBttnIE.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARCHIV~1\MICROS~3\Office12\REFIEBAR.DLL
    O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Archivos de programa\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Archivos de programa\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Archivos de programa\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Archivos de programa\Messenger\msmsgs.exe
    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\ARCHIV~1\MICROS~3\Office12\GR99D3~1.DLL
    O23 - Service: Adobe LM Service - Adobe Systems - C:\Archivos de programa\Archivos comunes\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Archivos de programa\Archivos comunes\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Archivos de programa\WIDCOMM\Bluetooth Software\bin\btwdins.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Archivos de programa\Archivos comunes\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Archivos de programa\Archivos comunes\Symantec Shared\ccSetMgr.exe
    O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Archivos de programa\Symantec AntiVirus\DefWatch.exe
    O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Archivos de programa\Intel\Wireless\Bin\EvtEng.exe
    O23 - Service: Hotspot Shield Service (HotspotShieldService) - Unknown owner - C:\Archivos de programa\Hotspot Shield\bin\openvpnas.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Archivos de programa\Archivos comunes\InstallShield\Driver\1150\Intel 32\IDriverT.exe
    O23 - Service: iPod Service - Apple Inc. - C:\Archivos de programa\iPod\bin\iPodService.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\ARCHIV~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Archivos de programa\Intel\Wireless\Bin\RegSrvc.exe
    O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Archivos de programa\Intel\Wireless\Bin\S24EvMon.exe
    O23 - Service: SAVRoam (SavRoam) - symantec - C:\Archivos de programa\Symantec AntiVirus\SavRoam.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Archivos de programa\Archivos comunes\Symantec Shared\SNDSrvc.exe
    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Archivos de programa\Archivos comunes\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Archivos de programa\Symantec AntiVirus\Rtvscan.exe
    O23 - Service: Intel(R) PROSet/Wireless SSO Service (WLANKEEPER) - Intel Corporation - C:\Archivos de programa\Intel\Wireless\Bin\WLKeeper.exe

    --
    End of file - 9869 bytes


    Thank you very much!
     
  4. QuikDraw

    QuikDraw Regular member

    Joined:
    Sep 29, 2007
    Messages:
    808
    Likes Received:
    0
    Trophy Points:
    26
    Your log is almost clean! However, there are a few entries that need be fixed. Run HJK. Click, Do a scan only. Place a tick next to each item listed below. Click Fix Checked. Close HJK.

    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

    O4 - Global Startup: BTTray.lnk = ?

    These entries don't need to load at startup. Start> run> type, msconfig> startup tab> untick the items listed below. Click apply. Reboot.

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Archivos de programa\QuickTime\QTTask.exe" -atboottime

    O4 - HKLM\..\Run: [iTunesHelper] "C:\Archivos de programa\iTunes\iTunesHelper.exe"

    If you use Windows Messenger, make sure your running version 8.1, earlier versions have security issues.

    You may want to add more protection by installing a couple of good Anti-Spyware applications.

    Had a little trouble reading your language, but I think I understood it enough to recognise what was what. LOL

    Run an online scanner. Housecall is one of the very few online scanners that actually disinfect viruses etc. You will need to use Internet Explorer for this scanner. Also, you may want to update IE6 to IE7, which has much better security and a tab browser. http://www.microsoft.com/windows/downloads/ie/getitnow.mspx

    Forgot to tell you earlier, but you should rename hijackthis.exe to crusy.exe or something. This is because some malware can hide from hijackthis.exe.

    Windows Defender and AVG Anti-Spyware do a pretty good job for free applications. Or Spybot: Search and Destroy and Ad-aware 2007, are two other Anti-Spyware choices. Just make sure you turn off the Real Time protection in Spybot called Teatimer, it's a resource hog.

    Download this registry cleaning tool. Use it once a week. http://www.ccleaner.com/download.

    Run Disc Cleanup and Disc Defragmenter.

    Start> run> type, sfc /scannow This is Windows System File Checker. It will take about 15 minutes to run.

    Here's a little something else to play around with.
    http://www.updatexp.com/windows-xp-chkdsk.html

    If your using Cable High Speed Internet, here's a Firefox tweak to make web pages load "Lighting fast"

    Note: This tweak will only work with High Speed Internet.

    ***Firefox***
    1) Type, About:Config
    2) Filter 'Network'
    3) Double click pipeling and set it to TRUE
    4) Double click pipeling. Maxrequests to set value from 4' to a higher value like 10.

    QuikDraw
     
    Last edited: Jan 26, 2008
  5. feruz86

    feruz86 Member

    Joined:
    Jun 9, 2006
    Messages:
    22
    Likes Received:
    0
    Trophy Points:
    11
    Thanks a lot for responding so quick again.
    ok, I already fixed the entries you told me, I also removed these from the startup:
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Archivos de programa\QuickTime\QTTask.exe" -atboottime

    O4 - HKLM\..\Run: [iTunesHelper] "C:\Archivos de programa\iTunes\iTunesHelper.exe"

    My Windows Messenger is version 8.1 so I did not need to update that.
    Sorry about that, I'm from Mexico so my computer is configured in spanish.

    I ran the online scanner and it detected some problems with some cookies, nothing to worry about.
    I also downloaded Windows Defender but it did not detected anything strange. CCleaner was very useful for cleaning the registry and other temp. files. Very good program.
    According to my computer, my hard drive doesn't need to be defragmented.
    Thank you very much for helping me with my problem Quick Draw
     
  6. QuikDraw

    QuikDraw Regular member

    Joined:
    Sep 29, 2007
    Messages:
    808
    Likes Received:
    0
    Trophy Points:
    26
    Housecall, is a great online scanner. Once you became more familiar with using Housecall you'll get better results. Which did you use, Java-based or Browser plug-in? Did you update to IE7? Did you download, update, and run AVG? Pay no attention to what windows tells you about the HDD needing or not needing to be defragmented. Just do it. You'll want to run Crap Cleaner at least once per week. Did you tweak Firefox? OK, let me know when your ready for more?

    Quikdraw
     
  7. feruz86

    feruz86 Member

    Joined:
    Jun 9, 2006
    Messages:
    22
    Likes Received:
    0
    Trophy Points:
    11
    Hey, I used the Java-based version of housecall after updating to IE7. I didn't have time to download AVG I think I will download it tonight or tomorrow morning.
    Ok so I will not pay attention to what windows tells me about my HDD so I will defragment it in a while.
    Yeah, I will run CCleaner once a week, I did tweak my firefox as you told me, but I really can't notice the difference when loading web pages. I have 1Mb DSL internet connection maybe it is not fast enough for the tweak to work, don't you think?
    Feruz
     
  8. feruz86

    feruz86 Member

    Joined:
    Jun 9, 2006
    Messages:
    22
    Likes Received:
    0
    Trophy Points:
    11
    I forgot to tell you that yes, I'm ready for more LOL.
     
  9. QuikDraw

    QuikDraw Regular member

    Joined:
    Sep 29, 2007
    Messages:
    808
    Likes Received:
    0
    Trophy Points:
    26
    Easier to just copy and paste what I said earlier about the Firefox tweak.
    If your using Cable High Speed Internet, here's a Firefox tweak to make web pages load "Lighting Fast"

    Note: This tweak will only work with High Speed Internet.

    No big deal, you can just change it back. Your connection is too slow.

    If you go back and read a little more about Housecall. You'll find using the browser-based add-on has more choices in scanning. As I said, earlier you'll need to get familiar with running it. To change to the browser-based kernel, you'll have to go into Internet options> manage add-ons> and remove the Java-based kernel, then install the browser-based. This is how Housecall worked best for me.

    Download Deckard's System Scanner (DSS) and save it to your Desktop.
    http://www.geekstogo.com/forum/index.php?autocom=downloads&showfile=19
    DISCONNECT FROM THE INTERNET...REMOVE THE PLUG FROM THE BACK OF THE COMPUTER

    Close all other windows before proceeding.

    This means TURN OFF ALL other security programmes.
    Norton Anti-virus, AVG Anti-spyware or any other security programmes you`re running.

    Double-click on dss.exe and follow the prompts.
    When it has finished, dss will open two Notepads main.txt and extra.txt -- please attach the main.txt and extra.txt in your next reply.

    Re-enable your security programmes and reconnect to the net.
     
    Last edited: Jan 28, 2008
  10. feruz86

    feruz86 Member

    Joined:
    Jun 9, 2006
    Messages:
    22
    Likes Received:
    0
    Trophy Points:
    11
    Ok, here are the results after using dss

    Main.txt:

    Deckard's System Scanner v20071014.68
    Run by Fernando on 2008-01-29 14:05:13
    Computer is in Normal Mode.
    --------------------------------------------------------------------------------

    -- System Restore --------------------------------------------------------------

    Successfully created a Deckard's System Scanner Restore Point.


    -- Last 5 Restore Point(s) --
    82: 2008-01-29 20:05:20 UTC - RP194 - Deckard's System Scanner Restore Point
    81: 2008-01-27 19:49:35 UTC - RP193 - Removed Windows Live installer
    80: 2008-01-27 19:09:33 UTC - RP192 - Software Distribution Service 3.0
    79: 2008-01-27 19:03:05 UTC - RP191 - Installed Windows Defender
    78: 2008-01-27 18:57:40 UTC - RP190 - Installed Windows Defender


    -- First Restore Point --
    1: 2007-11-14 00:16:54 UTC - RP113 - Punto de control del sistema


    Backed up registry hives.
    Performed disk cleanup.



    -- HijackThis (run as Fernando.exe) --------------------------------------------

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 2:07:06 PM, on 1/29/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16574)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Archivos de programa\Windows Defender\MsMpEng.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Archivos de programa\Intel\Wireless\Bin\S24EvMon.exe
    C:\Archivos de programa\Archivos comunes\Symantec Shared\ccSetMgr.exe
    C:\Archivos de programa\Archivos comunes\Symantec Shared\ccEvtMgr.exe
    C:\Archivos de programa\Archivos comunes\Symantec Shared\SPBBC\SPBBCSvc.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Archivos de programa\Archivos comunes\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Archivos de programa\WIDCOMM\Bluetooth Software\bin\btwdins.exe
    C:\WINDOWS\system32\cisvc.exe
    C:\Archivos de programa\Symantec AntiVirus\DefWatch.exe
    C:\Archivos de programa\Intel\Wireless\Bin\EvtEng.exe
    C:\Archivos de programa\Hotspot Shield\bin\openvpnas.exe
    C:\Archivos de programa\Intel\Wireless\Bin\RegSrvc.exe
    C:\WINDOWS\system32\tcpsvcs.exe
    C:\WINDOWS\System32\snmp.exe
    C:\Archivos de programa\Symantec AntiVirus\Rtvscan.exe
    C:\Archivos de programa\Intel\Wireless\Bin\WLKeeper.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\stsystra.exe
    C:\Archivos de programa\Synaptics\SynTP\SynTPEnh.exe
    C:\Archivos de programa\ATI Technologies\ATI.ACE\cli.exe
    C:\Archivos de programa\Dell\QuickSet\quickset.exe
    C:\WINDOWS\system32\RunDll32.exe
    C:\Archivos de programa\Java\jre1.6.0_03\bin\jusched.exe
    C:\Archivos de programa\Microsoft Office\Office12\GrooveMonitor.exe
    C:\Archivos de programa\Archivos comunes\Symantec Shared\ccApp.exe
    C:\ARCHIV~1\SYMANT~1\VPTray.exe
    C:\Archivos de programa\Saitek\Software\ProfilerU.exe
    C:\Archivos de programa\Saitek\Software\SaiMfd.exe
    C:\Archivos de programa\Intel\Wireless\bin\ZCfgSvc.exe
    C:\Archivos de programa\Intel\Wireless\Bin\ifrmewrk.exe
    C:\Archivos de programa\Windows Defender\MSASCui.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Archivos de programa\WIDCOMM\Bluetooth Software\BTTray.exe
    C:\Archivos de programa\Intel\Wireless\Bin\Dot1XCfg.exe
    C:\Archivos de programa\ATI Technologies\ATI.ACE\cli.exe
    C:\WINDOWS\system32\cidaemon.exe
    C:\Archivos de programa\MSN Messenger\usnsvc.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\Documents and Settings\Fernando\Escritorio\dss.exe
    C:\ARCHIV~1\TRENDM~1\HIJACK~1\Fernando.exe

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Vínculos
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Archivos de programa\Archivos comunes\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\ARCHIV~1\MICROS~3\Office12\GRA8E1~1.DLL
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Archivos de programa\Java\jre1.6.0_03\bin\ssv.dll
    O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
    O4 - HKLM\..\Run: [SynTPEnh] C:\Archivos de programa\Synaptics\SynTP\SynTPEnh.exe
    O4 - HKLM\..\Run: [ATICCC] "C:\Archivos de programa\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
    O4 - HKLM\..\Run: [Dell QuickSet] C:\Archivos de programa\Dell\QuickSet\quickset.exe
    O4 - HKLM\..\Run: [AudCtrl] RunDll32 AudCtrl.dll,RCMonitor
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Archivos de programa\Java\jre1.6.0_03\bin\jusched.exe"
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Archivos de programa\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [GrooveMonitor] "C:\Archivos de programa\Microsoft Office\Office12\GrooveMonitor.exe"
    O4 - HKLM\..\Run: [ccApp] "C:\Archivos de programa\Archivos comunes\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [vptray] C:\ARCHIV~1\SYMANT~1\VPTray.exe
    O4 - HKLM\..\Run: [\\DANIELA\EPSON Stylus CX1500 Dany] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I4V1.EXE /P34 "\\DANIELA\EPSON Stylus CX1500 Dany" /O6 "USB001" /M "Stylus CX1500"
    O4 - HKLM\..\Run: [Profiler] C:\Archivos de programa\Saitek\Software\ProfilerU.exe
    O4 - HKLM\..\Run: [SaiMfd] C:\Archivos de programa\Saitek\Software\SaiMfd.exe
    O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Archivos de programa\Intel\Wireless\bin\ZCfgSvc.exe"
    O4 - HKLM\..\Run: [IntelWireless] "C:\Archivos de programa\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
    O4 - HKLM\..\Run: [Windows Defender] "C:\Archivos de programa\Windows Defender\MSASCui.exe" -hide
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Archivos de programa\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICIO LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Servicio de red')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - Startup: Adobe Gamma.lnk = C:\Archivos de programa\Archivos comunes\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Startup: Recorte de pantalla e Inicio rápido de OneNote 2007.lnk = C:\Archivos de programa\Microsoft Office\Office12\ONENOTEM.EXE
    O4 - Global Startup: BTTray.lnk = ?
    O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\ARCHIV~1\MICROS~3\Office12\EXCEL.EXE/3000
    O8 - Extra context menu item: Enviar a &Bluetooth - C:\Archivos de programa\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Archivos de programa\Java\jre1.6.0_03\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Consola de Sun Java - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Archivos de programa\Java\jre1.6.0_03\bin\ssv.dll
    O9 - Extra button: Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\ARCHIV~1\MICROS~3\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: &Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\ARCHIV~1\MICROS~3\Office12\ONBttnIE.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARCHIV~1\MICROS~3\Office12\REFIEBAR.DLL
    O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Archivos de programa\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Archivos de programa\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Archivos de programa\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Archivos de programa\Messenger\msmsgs.exe
    O16 - DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} (Trend Micro ActiveX Scan Agent 6.6) - http://housecall65.trendmicro.com/housecall/applet/html/native/x86/win32/activex/hcImpl.cab
    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\ARCHIV~1\MICROS~3\Office12\GR99D3~1.DLL
    O23 - Service: Adobe LM Service - Adobe Systems - C:\Archivos de programa\Archivos comunes\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Archivos de programa\Archivos comunes\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Archivos de programa\WIDCOMM\Bluetooth Software\bin\btwdins.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Archivos de programa\Archivos comunes\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Archivos de programa\Archivos comunes\Symantec Shared\ccSetMgr.exe
    O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Archivos de programa\Symantec AntiVirus\DefWatch.exe
    O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Archivos de programa\Intel\Wireless\Bin\EvtEng.exe
    O23 - Service: Hotspot Shield Service (HotspotShieldService) - Unknown owner - C:\Archivos de programa\Hotspot Shield\bin\openvpnas.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Archivos de programa\Archivos comunes\InstallShield\Driver\1150\Intel 32\IDriverT.exe
    O23 - Service: iPod Service - Apple Inc. - C:\Archivos de programa\iPod\bin\iPodService.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\ARCHIV~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Archivos de programa\Intel\Wireless\Bin\RegSrvc.exe
    O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Archivos de programa\Intel\Wireless\Bin\S24EvMon.exe
    O23 - Service: SAVRoam (SavRoam) - symantec - C:\Archivos de programa\Symantec AntiVirus\SavRoam.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Archivos de programa\Archivos comunes\Symantec Shared\SNDSrvc.exe
    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Archivos de programa\Archivos comunes\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Archivos de programa\Symantec AntiVirus\Rtvscan.exe
    O23 - Service: Intel(R) PROSet/Wireless SSO Service (WLANKEEPER) - Intel Corporation - C:\Archivos de programa\Intel\Wireless\Bin\WLKeeper.exe

    --
    End of file - 10513 bytes

    -- HijackThis Fixed Entries (C:\ARCHIV~1\TRENDM~1\HIJACK~1\backups\) -----------

    backup-20080126-142858-817 O4 - Global Startup: BTTray.lnk = ?
    backup-20080126-142858-899 O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

    -- File Associations -----------------------------------------------------------

    All associations okay.


    -- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

    R1 APPDRV - c:\windows\system32\drivers\appdrv.sys <Not Verified; Dell Inc; Application Driver>
    R2 BTSERIAL (Bluetooth Serial Driver) - c:\windows\system32\drivers\btserial.sys <Not Verified; Broadcom Corporation.; Bluetooth Software 5.0.1.2609>
    R3 SaiMini - c:\windows\system32\drivers\saimini.sys <Not Verified; Saitek; Configuration Software>
    R3 SaiNtBus - c:\windows\system32\drivers\saibus.sys <Not Verified; Saitek; Configuration Software>
    R3 tapvpn (TAP VPN Adapter) - c:\windows\system32\drivers\tapvpn.sys <Not Verified; The OpenVPN Project; TAP-Win32 Virtual Network Driver>

    S0 cercsr6 - c:\windows\system32\drivers\cercsr6.sys <Not Verified; Adaptec, Inc.; Dell RAID Controller>
    S3 btwhid - c:\windows\system32\drivers\btwhid.sys <Not Verified; Broadcom Corporation.; Bluetooth Software 5.0.1.2609>
    S3 btwmodem (Bluetooth Modem) - c:\windows\system32\drivers\btwmodem.sys <Not Verified; Broadcom Corporation.; Bluetooth Software 5.0.1.2609>
    S3 ezplay (VSO Software ezplay) - c:\windows\system32\drivers\ezplay.sys <Not Verified; VSO Software; ezplay driver>
    S3 pcouffin (VSO Software pcouffin) - c:\windows\system32\drivers\pcouffin.sys <Not Verified; VSO Software; Patin couffin engine>
    S3 TIEHDUSB - c:\windows\system32\drivers\tiehdusb.sys <Not Verified; Texas Instruments Incorporated; Texas Instruments Incorporated Educational Handheld Device>
    S3 UIUSys (Conexant Setup API) - c:\windows\system32\drivers\uiusys.sys (file missing)


    -- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------

    R2 Apple Mobile Device - "c:\archivos de programa\archivos comunes\apple\mobile device support\bin\applemobiledeviceservice.exe" <Not Verified; Apple, Inc.; Apple Mobile Device Service>
    R2 HotspotShieldService (Hotspot Shield Service) - c:\archivos de programa\hotspot shield\bin\openvpnas.exe
    R2 RegSrvc (Intel(R) PROSet/Wireless Registry Service) - c:\archivos de programa\intel\wireless\bin\regsrvc.exe <Not Verified; Intel Corporation; Intel(R) PROSet/Wireless Registry Service>
    R2 WLANKEEPER (Intel(R) PROSet/Wireless SSO Service) - c:\archivos de programa\intel\wireless\bin\wlkeeper.exe <Not Verified; Intel Corporation; SSO Service>


    -- Device Manager: Disabled ----------------------------------------------------

    No disabled devices found.


    -- Scheduled Tasks -------------------------------------------------------------

    2008-01-29 09:32:35 344 --ah----- C:\WINDOWS\Tasks\MP Scheduled Scan.job


    -- Files created between 2007-12-29 and 2008-01-29 -----------------------------

    2008-01-27 13:09:21 0 d-------- C:\Archivos de programa\CCleaner
    2008-01-27 13:03:07 0 d-------- C:\Archivos de programa\Windows Defender
    2008-01-26 15:07:26 0 d-------- C:\WINDOWS\system32\es-es
    2008-01-26 15:02:11 0 d-------- C:\WINDOWS\network diagnostic
    2008-01-26 14:29:38 0 d-------- C:\WINDOWS\pss
    2008-01-25 23:34:14 0 d-------- C:\Archivos de programa\Trend Micro
    2008-01-23 17:38:51 0 d--hs--c- C:\Archivos de programa\Archivos comunes\WindowsLiveInstaller
    2008-01-21 11:19:05 0 d-------- C:\WINDOWS\Performance
    2008-01-21 11:18:38 0 d-------- C:\Archivos de programa\Microsoft Windows Vista Upgrade Advisor
    2008-01-20 13:35:34 501760 --a------ C:\WINDOWS\system32\Deutz Engine.exe
    2008-01-03 13:04:35 0 d-------- C:\Archivos de programa\MSXML 6.0
    2007-12-31 11:21:54 118403 --a------ C:\WINDOWS\Combat Flight Sim 3 Loader For Multi CPU Machines Uninstaller.exe


    -- Find3M Report ---------------------------------------------------------------

    2008-01-29 14:04:35 0 d-------- C:\Archivos de programa\Symantec AntiVirus
    2008-01-27 22:14:19 0 d-------- C:\Documents and Settings\Fernando\Datos de programa\uTorrent
    2008-01-24 14:50:09 0 d-------- C:\Archivos de programa\Xmoto
    2008-01-23 21:43:06 0 d-------- C:\Documents and Settings\Fernando\Datos de programa\LimeWire
    2008-01-23 20:35:49 0 d-------- C:\Archivos de programa\Archivos comunes\Wise Installation Wizard
    2008-01-23 17:38:51 0 d-------- C:\Archivos de programa\Archivos comunes
    2008-01-01 21:18:30 466600 --a------ C:\WINDOWS\system32\perfh00A.dat
    2008-01-01 21:18:30 83026 --a------ C:\WINDOWS\system32\perfc00A.dat
    2008-01-01 21:18:04 376832 --a------ C:\WINDOWS\system32\AegisI5Installer.exe <Not Verified; ; AegisInstall Application>
    2008-01-01 21:13:10 0 d-------- C:\Documents and Settings\Fernando\Datos de programa\Intel
    2007-12-30 01:37:00 0 d-------- C:\Archivos de programa\Microsoft Games
    2007-12-20 23:29:26 0 d-------- C:\Archivos de programa\Saitek
    2007-12-20 23:29:24 0 d--h----- C:\Archivos de programa\InstallShield Installation Information
    2007-12-09 00:26:58 0 d-------- C:\Archivos de programa\Hotspot Shield
    2007-12-02 17:14:49 0 d-------- C:\Documents and Settings\Fernando\Datos de programa\teamspeak2
    2007-11-29 20:05:02 0 d-------- C:\Archivos de programa\Teamspeak
    2007-11-29 12:16:57 0 d-------- C:\Archivos de programa\Solid Edge V19
    2007-11-28 20:20:59 8582 --a------ C:\WINDOWS\system32\SpoonUninstall-dBpoweramp DSP Effects.dat
    2007-11-26 15:10:33 94208 --a------ C:\Documents and Settings\Fernando\Datos de programa\ezplay.sys <Not Verified; VSO Software; ezplay driver>
    2007-11-26 15:10:33 33 --a------ C:\Documents and Settings\Fernando\Datos de programa\ezplay.log
    2007-11-26 15:10:33 1104 --a------ C:\Documents and Settings\Fernando\Datos de programa\ezplay.inf
    2007-11-26 15:10:33 7861 --a------ C:\Documents and Settings\Fernando\Datos de programa\ezplay.cat
    2007-11-26 15:10:32 33 --a------ C:\Documents and Settings\Fernando\Datos de programa\pcouffin.log
    2007-11-26 15:10:31 47360 --a------ C:\Documents and Settings\Fernando\Datos de programa\pcouffin.sys <Not Verified; VSO Software; Patin couffin engine>
    2007-11-26 15:10:31 1144 --a------ C:\Documents and Settings\Fernando\Datos de programa\pcouffin.inf
    2007-11-26 15:10:31 7887 --a------ C:\Documents and Settings\Fernando\Datos de programa\pcouffin.cat
    2007-11-26 14:35:10 125 --a------ C:\Documents and Settings\Fernando\Datos de programa\ezplay.ini


    -- Registry Dump ---------------------------------------------------------------

    *Note* empty entries & legit default entries are not shown


    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "SigmatelSysTrayApp"="stsystra.exe" [03/24/2006 04:30 PM C:\WINDOWS\stsystra.exe]
    "SynTPEnh"="C:\Archivos de programa\Synaptics\SynTP\SynTPEnh.exe" [03/08/2006 11:48 AM]
    "ATICCC"="C:\Archivos de programa\ATI Technologies\ATI.ACE\cli.exe" [01/02/2006 04:41 PM]
    "Dell QuickSet"="C:\Archivos de programa\Dell\QuickSet\quickset.exe" [02/20/2007 11:29 AM]
    "AudCtrl"="AudCtrl.dll" [03/21/2002 05:53 PM C:\WINDOWS\system32\AudCtrl.dll]
    "SunJavaUpdateSched"="C:\Archivos de programa\Java\jre1.6.0_03\bin\jusched.exe" [09/25/2007 01:11 AM]
    "Adobe Reader Speed Launcher"="C:\Archivos de programa\Adobe\Reader 8.0\Reader\Reader_sl.exe" [10/10/2007 06:51 PM]
    "GrooveMonitor"="C:\Archivos de programa\Microsoft Office\Office12\GrooveMonitor.exe" [10/26/2006 11:47 PM]
    "ccApp"="C:\Archivos de programa\Archivos comunes\Symantec Shared\ccApp.exe" [07/19/2006 06:26 PM]
    "vptray"="C:\ARCHIV~1\SYMANT~1\VPTray.exe" [09/27/2006 07:33 PM]
    "\\DANIELA\EPSON Stylus CX1500 Dany"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I4V1.exe" [05/31/2004 02:49 AM]
    "Profiler"="C:\Archivos de programa\Saitek\Software\ProfilerU.exe" [08/09/2006 02:23 PM]
    "SaiMfd"="C:\Archivos de programa\Saitek\Software\SaiMfd.exe" [08/14/2006 12:12 PM]
    "IntelZeroConfig"="C:\Archivos de programa\Intel\Wireless\bin\ZCfgSvc.exe" [10/08/2007 02:18 PM]
    "IntelWireless"="C:\Archivos de programa\Intel\Wireless\Bin\ifrmewrk.exe" [10/08/2007 02:13 PM]
    "Windows Defender"="C:\Archivos de programa\Windows Defender\MSASCui.exe" [11/03/2006 07:20 PM]

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "MsnMsgr"="C:\Archivos de programa\MSN Messenger\MsnMsgr.exe" [06/30/2007 11:58 PM]
    "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [08/20/2004 04:00 AM]

    C:\Documents and Settings\Fernando\Men£ Inicio\Programas\Inicio\
    Adobe Gamma.lnk - C:\Archivos de programa\Archivos comunes\Adobe\Calibration\Adobe Gamma Loader.exe [3/16/2005 6:16:50 PM]
    Recorte de pantalla e Inicio r pido de OneNote 2007.lnk - C:\Archivos de programa\Microsoft Office\Office12\ONENOTEM.EXE [10/26/2006 7:24:54 PM]

    C:\Documents and Settings\All Users\Men£ Inicio\Programas\Inicio\
    BTTray.lnk - C:\Archivos de programa\WIDCOMM\Bluetooth Software\BTTray.exe [5/24/2006 6:28:28 PM]

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
    "AllowLegacyWebView"=1 (0x1)
    "AllowUnhashedWebView"=1 (0x1)

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
    "NoSMHelp"=01000000

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
    "C:\Archivos de programa\iTunes\iTunesHelper.exe"

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
    "C:\Archivos de programa\QuickTime\QTTask.exe" -atboottime

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
    p2psvc p2psvc p2pimsvc p2pgasvc PNRPSvc


    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bd2fc74d-2740-11dc-8364-806d6172696f}]
    AutoRun\command- G:\PortableApps\PortableAppsMenu\PortableAppsMenu.exe

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d02888b1-9787-11dc-aa1b-0015c5a72ece}]
    AutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Recycled\ctfmon.exe
    Open(&0)\command- Recycled\ctfmon.exe




    -- End of Deckard's System Scanner: finished at 2008-01-29 14:07:42 ------------

    Extra.txt:

    Deckard's System Scanner v20071014.68
    Extra logfile - please post this as an attachment with your post.
    --------------------------------------------------------------------------------

    -- System Information ----------------------------------------------------------

    Microsoft Windows XP Home Edition (build 2600) SP 2.0
    Architecture: X86; Language: Spanish

    CPU 0: Genuine Intel(R) CPU T2050 @ 1.60GHz
    CPU 1: Genuine Intel(R) CPU T2050 @ 1.60GHz
    Percentage of Memory in Use: 59%
    Physical Memory (total/avail): 1022.37 MiB / 415.39 MiB
    Pagefile Memory (total/avail): 1948.12 MiB / 1429.7 MiB
    Virtual Memory (total/avail): 2047.88 MiB / 1941.04 MiB

    C: is Fixed (NTFS) - 51.43 GiB total, 26.17 GiB free.
    D: is CDROM (No Media)
    E: is CDROM (No Media)

    \\.\PHYSICALDRIVE0 - FUJITSU MHV2060BH - 54.49 GiB - 3 partitions
    \PARTITION0 - Unknown - 47.03 MiB
    \PARTITION1 (bootable) - Sistema de archivos instalables - 51.43 GiB - C:
    \PARTITION2 - Unknown - 3 GiB



    -- Security Center -------------------------------------------------------------

    AUOptions is scheduled to auto-install.
    Windows Internal Firewall is enabled.

    FirstRunDisabled is set.

    AV: Symantec AntiVirus Corporate Edition v10.1.5.5000 (Symantec Corporation) Disabled

    [HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
    "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:mad:xpsp2res.dll,-22019"
    "C:\\Archivos de programa\\MSN Messenger\\msnmsgr.exe"="C:\\Archivos de programa\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
    "C:\\Archivos de programa\\MSN Messenger\\livecall.exe"="C:\\Archivos de programa\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:mad:xpsp3res.dll,-20000"

    [HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
    "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:mad:xpsp2res.dll,-22019"
    "C:\\Archivos de programa\\MSN Messenger\\msnmsgr.exe"="C:\\Archivos de programa\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
    "C:\\Archivos de programa\\MSN Messenger\\livecall.exe"="C:\\Archivos de programa\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
    "C:\\Archivos de programa\\LimeWire\\LimeWire.exe"="C:\\Archivos de programa\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
    "C:\\Archivos de programa\\uTorrent\\uTorrent.exe"="C:\\Archivos de programa\\uTorrent\\uTorrent.exe:*:Enabled:µTorrent"
    "C:\\Archivos de programa\\Microsoft Office\\Office12\\OUTLOOK.EXE"="C:\\Archivos de programa\\Microsoft Office\\Office12\\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
    "C:\\Archivos de programa\\Microsoft Office\\Office12\\GROOVE.EXE"="C:\\Archivos de programa\\Microsoft Office\\Office12\\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
    "C:\\Archivos de programa\\Microsoft Office\\Office12\\ONENOTE.EXE"="C:\\Archivos de programa\\Microsoft Office\\Office12\\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
    "C:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\SAGENT4.EXE"="C:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\SAGENT4.EXE:*:Enabled:SAgent4"
    "C:\\Archivos de programa\\iTunes\\iTunes.exe"="C:\\Archivos de programa\\iTunes\\iTunes.exe:*:Enabled:iTunes"
    "C:\\Archivos de programa\\IVAO\\IvAp\\ivapnetint.exe"="C:\\Archivos de programa\\IVAO\\IvAp\\ivapnetint.exe:*:Enabled:ivapnetint"
    "C:\\Archivos de programa\\Microsoft Games\\Flight Simulator 9\\fs9.exe"="C:\\Archivos de programa\\Microsoft Games\\Flight Simulator 9\\fs9.exe:*:Enabled:Microsoft Flight Simulator"
    "C:\\WINDOWS\\system32\\dpnsvr.exe"="C:\\WINDOWS\\system32\\dpnsvr.exe:*:Enabled:Servidor de DirectPlay8 de Microsoft"
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:mad:xpsp3res.dll,-20000"
    "C:\\Archivos de programa\\Internet Explorer\\iexplore.exe"="C:\\Archivos de programa\\Internet Explorer\\iexplore.exe:*:Enabled:Internet Explorer"


    -- Environment Variables -------------------------------------------------------

    ALLUSERSPROFILE=C:\Documents and Settings\All Users
    APPDATA=C:\Documents and Settings\Fernando\Datos de programa
    CLASSPATH=.;C:\Archivos de programa\Java\jre1.6.0_02\lib\ext\QTJava.zip
    CLIENTNAME=Console
    CommonProgramFiles=C:\Archivos de programa\Archivos comunes
    COMPUTERNAME=FERNANDO-LAP
    ComSpec=C:\WINDOWS\system32\cmd.exe
    FP_NO_HOST_CHECK=NO
    HOMEDRIVE=C:
    HOMEPATH=\Documents and Settings\Fernando
    LOGONSERVER=\\FERNANDO-LAP
    NewEnvironment1=C:\Archivos de programa\ATI Technologies\ATI.ACE\
    NUMBER_OF_PROCESSORS=2
    OS=Windows_NT
    Path=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\Archivos de programa\Archivos comunes\Adobe\AGL;C:\Archivos de programa\QuickTime\QTSystem\
    PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
    PROCESSOR_ARCHITECTURE=x86
    PROCESSOR_IDENTIFIER=x86 Family 6 Model 14 Stepping 8, GenuineIntel
    PROCESSOR_LEVEL=6
    PROCESSOR_REVISION=0e08
    ProgramFiles=C:\Archivos de programa
    PROMPT=$P$G
    QTJAVA=C:\Archivos de programa\Java\jre1.6.0_02\lib\ext\QTJava.zip
    SESSIONNAME=Console
    SystemDrive=C:
    SystemRoot=C:\WINDOWS
    TEMP=C:\DOCUME~1\Fernando\CONFIG~1\Temp
    TMP=C:\DOCUME~1\Fernando\CONFIG~1\Temp
    USERDOMAIN=FERNANDO-LAP
    USERNAME=Fernando
    USERPROFILE=C:\Documents and Settings\Fernando
    windir=C:\WINDOWS


    -- User Profiles ---------------------------------------------------------------

    Fernando (admin)


    -- Add/Remove Programs ---------------------------------------------------------

    --> RunDll32 C:\ARCHIV~1\ARCHIV~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Archivos de programa\InstallShield Installation Information\{B7875FD9-6ADB-4D4B-A756-3A2306A3D5E1}\setup.exe" -l0xa anything
    --> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
    Actualización de seguridad para el Reproductor de Windows Media (KB911564) --> "C:\WINDOWS\$NtUninstallKB911564$\spuninst\spuninst.exe"
    Actualización de seguridad para el Reproductor de Windows Media 11 (KB936782) --> "C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
    Actualización de seguridad para el Reproductor de Windows Media 6.4 (KB925398) --> "C:\WINDOWS\$NtUninstallKB925398_WMP64$\spuninst\spuninst.exe"
    Actualización de seguridad para el Reproductor de Windows Media 9 (KB917734) --> "C:\WINDOWS\$NtUninstallKB917734_WMP9$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB890046) --> "C:\WINDOWS\$NtUninstallKB890046$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB893756) --> "C:\WINDOWS\$NtUninstallKB893756$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB896358) --> "C:\WINDOWS\$NtUninstallKB896358$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB896423) --> "C:\WINDOWS\$NtUninstallKB896423$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB896428) --> "C:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB899587) --> "C:\WINDOWS\$NtUninstallKB899587$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB899591) --> "C:\WINDOWS\$NtUninstallKB899591$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB900725) --> "C:\WINDOWS\$NtUninstallKB900725$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB901017) --> "C:\WINDOWS\$NtUninstallKB901017$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB901214) --> "C:\WINDOWS\$NtUninstallKB901214$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB902400) --> "C:\WINDOWS\$NtUninstallKB902400$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB904706) --> "C:\WINDOWS\$NtUninstallKB904706$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB905414) --> "C:\WINDOWS\$NtUninstallKB905414$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB905749) --> "C:\WINDOWS\$NtUninstallKB905749$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB908519) --> "C:\WINDOWS\$NtUninstallKB908519$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB911562) --> "C:\WINDOWS\$NtUninstallKB911562$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB911927) --> "C:\WINDOWS\$NtUninstallKB911927$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB912812) -->
    Actualización de seguridad para Windows XP (KB913580) --> "C:\WINDOWS\$NtUninstallKB913580$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB914388) --> "C:\WINDOWS\$NtUninstallKB914388$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB914389) --> "C:\WINDOWS\$NtUninstallKB914389$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB917344) --> "C:\WINDOWS\$NtUninstallKB917344$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB917953) --> "C:\WINDOWS\$NtUninstallKB917953$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB918118) --> "C:\WINDOWS\$NtUninstallKB918118$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB918439) --> "C:\WINDOWS\$NtUninstallKB918439$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB919007) --> "C:\WINDOWS\$NtUninstallKB919007$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB920213) --> "C:\WINDOWS\$NtUninstallKB920213$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB920670) --> "C:\WINDOWS\$NtUninstallKB920670$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB920683) --> "C:\WINDOWS\$NtUninstallKB920683$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB920685) --> "C:\WINDOWS\$NtUninstallKB920685$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB921503) --> "C:\WINDOWS\$NtUninstallKB921503$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB922819) --> "C:\WINDOWS\$NtUninstallKB922819$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB923191) --> "C:\WINDOWS\$NtUninstallKB923191$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB923414) --> "C:\WINDOWS\$NtUninstallKB923414$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB923689) --> "C:\WINDOWS\$NtUninstallKB923689$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB923789) --> C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
    Actualización de seguridad para Windows XP (KB923980) --> "C:\WINDOWS\$NtUninstallKB923980$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB924191) --> "C:\WINDOWS\$NtUninstallKB924191$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB924270) --> "C:\WINDOWS\$NtUninstallKB924270$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB924496) --> "C:\WINDOWS\$NtUninstallKB924496$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB924667) --> "C:\WINDOWS\$NtUninstallKB924667$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB925902) --> "C:\WINDOWS\$NtUninstallKB925902$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB926247) --> "C:\WINDOWS\$NtUninstallKB926247$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB926255) --> "C:\WINDOWS\$NtUninstallKB926255$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB926436) --> "C:\WINDOWS\$NtUninstallKB926436$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB927779) --> "C:\WINDOWS\$NtUninstallKB927779$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB927802) --> "C:\WINDOWS\$NtUninstallKB927802$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB928255) --> "C:\WINDOWS\$NtUninstallKB928255$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB928843) --> "C:\WINDOWS\$NtUninstallKB928843$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB929123) --> "C:\WINDOWS\$NtUninstallKB929123$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB929969) --> "C:\WINDOWS\$NtUninstallKB929969$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB930178) --> "C:\WINDOWS\$NtUninstallKB930178$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB931261) --> "C:\WINDOWS\$NtUninstallKB931261$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB931784) --> "C:\WINDOWS\$NtUninstallKB931784$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB932168) --> "C:\WINDOWS\$NtUninstallKB932168$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB933566) --> "C:\WINDOWS\$NtUninstallKB933566$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB933729) --> "C:\WINDOWS\$NtUninstallKB933729$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB935839) --> "C:\WINDOWS\$NtUninstallKB935839$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB935840) --> "C:\WINDOWS\$NtUninstallKB935840$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB936021) --> "C:\WINDOWS\$NtUninstallKB936021$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB937143) --> "C:\WINDOWS\$NtUninstallKB937143$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB938127) --> "C:\WINDOWS\$NtUninstallKB938127$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB938829) --> "C:\WINDOWS\$NtUninstallKB938829$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB939653) --> "C:\WINDOWS\$NtUninstallKB939653$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB941202) --> "C:\WINDOWS\$NtUninstallKB941202$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB941568) --> "C:\WINDOWS\$NtUninstallKB941568$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB941569) --> "C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB941644) --> "C:\WINDOWS\$NtUninstallKB941644$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB942615) --> "C:\WINDOWS\$NtUninstallKB942615$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB943460) --> "C:\WINDOWS\$NtUninstallKB943460$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB943485) --> "C:\WINDOWS\$NtUninstallKB943485$\spuninst\spuninst.exe"
    Actualización de seguridad para Windows XP (KB944653) --> "C:\WINDOWS\$NtUninstallKB944653$\spuninst\spuninst.exe"
    Actualización para Windows XP (KB894391) --> "C:\WINDOWS\$NtUninstallKB894391$\spuninst\spuninst.exe"
    Actualización para Windows XP (KB898461) --> "C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
    Actualización para Windows XP (KB900485) --> "C:\WINDOWS\$NtUninstallKB900485$\spuninst\spuninst.exe"
    Actualización para Windows XP (KB904942) --> "C:\WINDOWS\$NtUninstallKB904942$\spuninst\spuninst.exe"
    Actualización para Windows XP (KB908531) --> "C:\WINDOWS\$NtUninstallKB908531$\spuninst\spuninst.exe"
    Actualización para Windows XP (KB910437) --> "C:\WINDOWS\$NtUninstallKB910437$\spuninst\spuninst.exe"
    Actualización para Windows XP (KB911280) --> "C:\WINDOWS\$NtUninstallKB911280$\spuninst\spuninst.exe"
    Actualización para Windows XP (KB916595) --> "C:\WINDOWS\$NtUninstallKB916595$\spuninst\spuninst.exe"
    Actualización para Windows XP (KB920872) --> "C:\WINDOWS\$NtUninstallKB920872$\spuninst\spuninst.exe"
    Actualización para Windows XP (KB922582) --> "C:\WINDOWS\$NtUninstallKB922582$\spuninst\spuninst.exe"
    Actualización para Windows XP (KB927891) --> "C:\WINDOWS\$NtUninstallKB927891$\spuninst\spuninst.exe"
    Actualización para Windows XP (KB930916) --> "C:\WINDOWS\$NtUninstallKB930916$\spuninst\spuninst.exe"
    Actualización para Windows XP (KB931836) --> "C:\WINDOWS\$NtUninstallKB931836$\spuninst\spuninst.exe"
    Actualización para Windows XP (KB933360) --> "C:\WINDOWS\$NtUninstallKB933360$\spuninst\spuninst.exe"
    Actualización para Windows XP (KB936357) --> "C:\WINDOWS\$NtUninstallKB936357$\spuninst\spuninst.exe"
    Actualización para Windows XP (KB938828) --> "C:\WINDOWS\$NtUninstallKB938828$\spuninst\spuninst.exe"
    Actualización para Windows XP (KB942763) --> "C:\WINDOWS\$NtUninstallKB942763$\spuninst\spuninst.exe"
    Actualización para Windows XP (KB942840) --> "C:\WINDOWS\$NtUninstallKB942840$\spuninst\spuninst.exe"
    Actualización para Windows XP (KB946627) --> "C:\WINDOWS\$NtUninstallKB946627$\spuninst\spuninst.exe"
    Adobe Bridge 1.0 --> MsiExec.exe /I{B74D4E10-1033-0000-0000-000000000001}
    Adobe Common File Installer --> MsiExec.exe /I{8EDBA74D-0686-4C99-BFDD-F894678E5B39}
    Adobe Help Center 1.0 --> MsiExec.exe /I{E9787678-1033-0000-8E67-000000000001}
    Adobe Photoshop CS2 --> msiexec /I {236BB7C4-4419-42FD-0409-1E257A25E34D}
    Adobe Reader 8.1.1 --> MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A81000000003}
    Adobe Stock Photos 1.0 --> MsiExec.exe /I{786C5747-1033-0000-B58E-000000000001}
    Apple Mobile Device Support --> MsiExec.exe /I{763E8D6C-0098-4FF4-801A-3F311D2D9D80}
    Apple Software Update --> MsiExec.exe /I{492724FC-3B26-46B4-824F-3CE2722D9AA0}
    ATI - Software Uninstall Utility --> C:\Archivos de programa\ATI Technologies\UninstallAll\AtiCimUn.exe
    ATI Catalyst Control Center --> MsiExec.exe /I{A02ED372-22FA-448B-AB6A-1B0FC23B7D08}
    ATI Display Driver --> rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
    µTorrent --> "C:\Archivos de programa\uTorrent\uTorrent.exe" /UNINSTALL
    Broadcom 440x 10/100 Integrated Controller --> MsiExec.exe /X{9C9D0F85-5658-4A5E-95A9-65F7DB2916EE}
    CCleaner (remove only) --> "C:\Archivos de programa\CCleaner\uninst.exe"
    Combat Flight Sim 3 Loader For Multi CPU Machines --> C:\WINDOWS\Combat Flight Sim 3 Loader For Multi CPU Machines Uninstaller.exe
    Conexant HDA D110 MDC V.92 Modem --> C:\Archivos de programa\CONEXANT\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_14F100C3\HXFSETUP.EXE -U -Idel1028p.inf
    dBpoweramp DSP Effects --> "C:\WINDOWS\system32\SpoonUninstall.exe" <uninstall>C:\WINDOWS\system32\SpoonUninstall-dBpoweramp DSP Effects.dat
    dBpoweramp Music Converter --> "C:\WINDOWS\system32\SpoonUninstall.exe" <uninstall>C:\WINDOWS\system32\SpoonUninstall-dBpoweramp Music Converter.dat
    dBpoweramp Windows Media Audio 10 Codec --> "C:\WINDOWS\system32\SpoonUninstall.exe" <uninstall>C:\WINDOWS\system32\SpoonUninstall-dBpoweramp Windows Media Audio 10 Codec.dat
    Dell Resource CD --> MsiExec.exe /X{2764CA82-DFB9-4498-AF85-719340BF5305}
    Derive 6 Trial Edition --> C:\Archivos de programa\TI Education\Derive 6 Trial Edition\unwise.exe C:\ARCHIV~1\TIEDUC~1\DERIVE~1\INSTALL.LOG
    DivX Content Uploader --> C:\Archivos de programa\DivX\DivXContentUploaderUninstall.exe /CUPLOADER
    DivX Web Player --> C:\Archivos de programa\DivX\DivXWebPlayerUninstall.exe /PLUGIN
    DVD Decoder Pak for Windows XP --> MsiExec.exe /X{92C5DB3D-9D6F-4324-BB11-57825F4C2635}
    EAX Unified --> C:\WINDOWS\IsUninst.exe -f"C:\Archivos de programa\Creative\EAX Unified\Uninst.isu"
    getPlus(R)_dll --> rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\inf\GETPLUSd.INF, DefaultUninstall
    High Definition Audio Driver Package - KB835221 --> C:\WINDOWS\$NtUninstallKB835221WXP$\spuninst\spuninst.exe
    HijackThis 2.0.2 --> "C:\ARCHIV~1\TRENDM~1\HIJACK~1\HijackThis.exe" /uninstall
    Hotfix for Windows Media Format 11 SDK (KB933547) --> "C:\WINDOWS\$NtUninstallKB933547$\spuninst\spuninst.exe"
    Hotspot Shield 0.941 --> C:\Archivos de programa\Hotspot Shield\Uninstall.exe
    Intel(R) PROSet/Wireless Software --> C:\WINDOWS\Installer\iProInst.exe
    iTunes --> MsiExec.exe /I{974C05A0-C76C-4724-A9A2-11D5D1355729}
    IvAp v1.3.4 (b1842) --> "C:\Archivos de programa\IVAO\IvAp\unins000.exe"
    J2SE Runtime Environment 5.0 Update 3 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150030}
    Jane's Combat Simulations F/A-18 --> C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Jane's Combat Simulations\FA-18\Uninst.isu"
    Java(TM) 6 Update 2 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160020}
    Java(TM) 6 Update 3 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160030}
    Lexmark Software Uninstall --> C:\Archivos de programa\Lexmark_HostCD\Install\Uninstall.exe
    LimeWire PRO 4.12.11 --> "C:\Archivos de programa\LimeWire\uninstall.exe"
    LiveUpdate 3.1 (Symantec Corporation) --> "C:\Archivos de programa\Symantec\LiveUpdate\LSETUP.EXE" /U
    Mafia --> C:\Archivos de programa\Mafia\patch.exe
    Mafia Game --> C:\WINDOWS\system32\MafiaSetup.exe
    Magic ISO Maker v5.3 (build 0216) --> C:\ARCHIV~1\MagicISO\UNWISE.EXE C:\ARCHIV~1\MagicISO\INSTALL.LOG
    mCore --> MsiExec.exe /I{E81667C6-2856-46D6-ABEA-6A2F42166779}
    mDriver --> MsiExec.exe /I{A0F925BF-5C55-44C2-A4E7-5A4C59791C29}
    mDrWiFi --> MsiExec.exe /I{F6090A17-0967-4A8A-B3C3-422A1B514D49}
    mHlpDell --> MsiExec.exe /I{49D687E5-6784-431B-A0A2-2F23B8CC5A1B}
    Microsoft Combat Flight Simulator 3.0 --> "C:\Archivos de programa\Microsoft Games\Combat Flight Simulator 3\UNINSTAL.EXE" /runtemp /addremove
    Microsoft Compression Client Pack 1.0 for Windows XP --> "C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
    Microsoft Flight Simulator 2004 A Century of Flight --> "C:\Archivos de programa\Microsoft Games\Flight Simulator 9\UNINSTAL.EXE" /runtemp /addremove
    Microsoft Office Access MUI (Spanish) 2007 --> MsiExec.exe /X{90120000-0015-0C0A-0000-0000000FF1CE}
    Microsoft Office Enterprise 2007 --> "C:\Archivos de programa\Archivos comunes\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
    Microsoft Office Enterprise 2007 --> MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
    Microsoft Office Excel MUI (Spanish) 2007 --> MsiExec.exe /X{90120000-0016-0C0A-0000-0000000FF1CE}
    Microsoft Office Groove MUI (Spanish) 2007 --> MsiExec.exe /X{90120000-00BA-0C0A-0000-0000000FF1CE}
    Microsoft Office InfoPath MUI (Spanish) 2007 --> MsiExec.exe /X{90120000-0044-0C0A-0000-0000000FF1CE}
    Microsoft Office OneNote MUI (Spanish) 2007 --> MsiExec.exe /X{90120000-00A1-0C0A-0000-0000000FF1CE}
    Microsoft Office Outlook MUI (Spanish) 2007 --> MsiExec.exe /X{90120000-001A-0C0A-0000-0000000FF1CE}
    Microsoft Office PowerPoint MUI (Spanish) 2007 --> MsiExec.exe /X{90120000-0018-0C0A-0000-0000000FF1CE}
    Microsoft Office Proof (Basque) 2007 --> MsiExec.exe /X{90120000-001F-042D-0000-0000000FF1CE}
    Microsoft Office Proof (Catalan) 2007 --> MsiExec.exe /X{90120000-001F-0403-0000-0000000FF1CE}
    Microsoft Office Proof (English) 2007 --> MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
    Microsoft Office Proof (French) 2007 --> MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
    Microsoft Office Proof (Galician) 2007 --> MsiExec.exe /X{90120000-001F-0456-0000-0000000FF1CE}
    Microsoft Office Proof (Portuguese (Brazil)) 2007 --> MsiExec.exe /X{90120000-001F-0416-0000-0000000FF1CE}
    Microsoft Office Proof (Spanish) 2007 --> MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
    Microsoft Office Proofing (Spanish) 2007 --> MsiExec.exe /X{90120000-002C-0C0A-0000-0000000FF1CE}
    Microsoft Office Publisher MUI (Spanish) 2007 --> MsiExec.exe /X{90120000-0019-0C0A-0000-0000000FF1CE}
    Microsoft Office Shared MUI (Spanish) 2007 --> MsiExec.exe /X{90120000-006E-0C0A-0000-0000000FF1CE}
    Microsoft Office Word MUI (Spanish) 2007 --> MsiExec.exe /X{90120000-001B-0C0A-0000-0000000FF1CE}
    Microsoft Save as PDF or XPS Add-in for 2007 Microsoft Office programs --> MsiExec.exe /X{90120000-00B2-0409-0000-0000000FF1CE}
    Microsoft User-Mode Driver Framework Feature Pack 1.0 --> "C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
    mIWA --> MsiExec.exe /I{3E9D596A-61D4-4239-BD19-2DB984D2A16F}
    mLogView --> MsiExec.exe /I{0E2B0B41-7E08-4F9F-B21F-41C4133F43B7}
    mMHouse --> MsiExec.exe /I{F0BFC7EF-9CF8-44EE-91B0-158884CD87C5}
    Mozilla Firefox (2.0.0.11) --> C:\ARCHIV~1\Mozilla Firefox\uninstall\helper.exe
    mPfMgr --> MsiExec.exe /I{8B928BA1-EDEC-4227-A2DA-DD83026C36F5}
    mPfWiz --> MsiExec.exe /I{90B0D222-8C21-4B35-9262-53B042F18AF9}
    mProSafe --> MsiExec.exe /I{23FB368F-1399-4EAC-817C-4B83ECBE3D83}
    mSCfg --> MsiExec.exe /I{829CD169-E692-48E8-9BDE-A3E8D8B65538}
    mSSO --> MsiExec.exe /I{06BE8AFD-A8E2-4B63-BAE7-287016D16ACB}
    MSXML 6.0 Parser (KB933579) --> MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}
    MTL v3.0.3 --> "C:\Archivos de programa\IVAO\IvAp\unins001.exe"
    mWlsSafe --> MsiExec.exe /I{FCA651F3-5BDA-4DDA-9E4A-5D87D6914CC4}
    mWMI --> MsiExec.exe /I{63DB9CCD-2B56-4217-9A3D-507AC78320CA}
    mZConfig --> MsiExec.exe /I{94658027-9F16-4509-BBD7-A59FE57C3023}
    Paquete de controladores de Windows - Ricoh Company Memorystick Host Controller (07/09/2005 1.00.01.12) --> C:\ARCHIV~1\DIFX\DPInst.exe /u C:\WINDOWS\system32\DRVSTORE\rimsptsk_469677EEC4F8D39ABD61046D242B2A1651DE8AEF\rimsptsk.inf
    Paquete de controladores de Windows - Ricoh Company MMC Host Controller (07/14/2005 1.00.00.06) --> C:\ARCHIV~1\DIFX\DPInst.exe /u C:\WINDOWS\system32\DRVSTORE\rimmptsk_EA24AF82DAB6BA6CF6FB1A3004EE91F51D3FDCF9\rimmptsk.inf
    Paquete de controladores de Windows - Ricoh Company xD-Picture Card/SmartMedia Host Controller (07/14/2005 1.00.02.04) --> C:\ARCHIV~1\DIFX\DPInst.exe /u C:\WINDOWS\system32\DRVSTORE\rixdptsk_30B42BE4DA4D11DB80E5D3DD10180621BA0A53DD\rixdptsk.inf
    QuickSet --> C:\Archivos de programa\InstallShield Installation Information\{C5074CC4-0E26-4716-A307-960272A90040}\setup.exe -runfromtemp -l0x000a APPDRVNT4 -removeonly
    QuickTime --> MsiExec.exe /I{95A890AA-B3B1-44B6-9C18-A8F7AB3EE7FC}
    Revisión de Windows XP - KB839210 -->
    Revisión de Windows XP - KB873339 --> C:\WINDOWS\$NtUninstallKB873339$\spuninst\spuninst.exe
    Revisión de Windows XP - KB885835 --> C:\WINDOWS\$NtUninstallKB885835$\spuninst\spuninst.exe
    Revisión de Windows XP - KB885836 --> C:\WINDOWS\$NtUninstallKB885836$\spuninst\spuninst.exe
    Revisión de Windows XP - KB886185 --> C:\WINDOWS\$NtUninstallKB886185$\spuninst\spuninst.exe
    Revisión de Windows XP - KB887472 --> C:\WINDOWS\$NtUninstallKB887472$\spuninst\spuninst.exe
    Revisión de Windows XP - KB888302 --> C:\WINDOWS\$NtUninstallKB888302$\spuninst\spuninst.exe
    Revisión de Windows XP - KB890859 --> "C:\WINDOWS\$NtUninstallKB890859$\spuninst\spuninst.exe"
    Revisión de Windows XP - KB891781 --> C:\WINDOWS\$NtUninstallKB891781$\spuninst\spuninst.exe
    Revisión para el Reproductor de Windows Media 11 (KB939683) --> "C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
    Revisión para Windows XP (KB914440) --> "C:\WINDOWS\$NtUninstallKB914440$\spuninst\spuninst.exe"
    Saitek SST Programming Software --> RunDll32 C:\ARCHIV~1\ARCHIV~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Archivos de programa\InstallShield Installation Information\{967FB80D-56BD-42EF-A942-9E8C78F984A4}\Setup.exe" -l0xa -removeonly
    Security Update for CAPICOM (KB931906) --> MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
    Security Update for CAPICOM (KB931906) --> MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
    Security Update for Excel 2007 (KB936509) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {A00724F5-82C4-4924-B707-0E5A84B52471}
    Security Update for Office 2007 (KB934062) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {305D509B-F194-4638-9F0F-D9E4C05F9D33}
    Security Update for Office 2007 (KB936514) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C7A78F7F-EF32-4477-BAD7-3439EA7571BF}
    Security Update for Publisher 2007 (KB936646) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {A32E4BAF-6477-45FA-B8AB-E743FA8D63FF}
    Security Update for the 2007 Microsoft Office System (KB936960) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5E5BD655-7AA9-47F9-BB6D-A1D8CE29AC86}
    SigmaTel Audio --> RunDll32 C:\ARCHIV~1\ARCHIV~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Archivos de programa\InstallShield Installation Information\{A462213D-EED4-42C2-9A60-7BDD4D4B0B17}\setup.exe" -l0xa -remove -removeonly
    Symantec AntiVirus --> MsiExec.exe /I{33CFCF98-F8D6-4549-B469-6F4295676D83}
    Synaptics Pointing Device Driver --> rundll32.exe "C:\Archivos de programa\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
    TeamSpeak 2 RC2 --> "C:\Archivos de programa\Teamspeak\unins000.exe"
    TI Connect 1.5 --> MsiExec.exe /I{A8B94669-8654-4126-BD28-D0D2412CDED6}
    Tweak UI --> "C:\WINDOWS\system32\mshta.exe" "res://C:\WINDOWS\system32\TweakUI.exe/uninstall.hta"
    Update for Office 2007 (KB932080) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {EDC9CA29-6BC1-471C-828C-7A36109005D7}
    Update for Office 2007 (KB934391) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {B3091818-7C56-4C45-BE7D-CA23027A5EA5}
    Update for Office 2007 (KB934393) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {92FBAD46-E7F6-49FA-89B5-C39FC5BFAD15}
    Update for Outlook 2007 Junk Email Filter (kb943597) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {A751F0DB-8476-4207-956E-20AEBBA4B1DA}
    Update for Word 2007 (KB934173) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C6A89125-5473-45E3-B413-ED8186437475}
    Virtual Desktop Manager Powertoy for Windows XP --> MsiExec.exe /I{F251B999-08A9-4704-999C-9962F0DFD88E}
    WIDCOMM Bluetooth Software --> MsiExec.exe /X{3F4EC965-28EF-45C3-B063-04B25D4E9679}
    Wilco Fleet : A400M --> C:\Archivos de programa\Microsoft Games\Flight Simulator 9\Uninstal_A400M.exe
    Windows Defender --> MsiExec.exe /I{A06275F4-324B-4E85-95E6-87B2CD729401}
    Windows Driver Package - Intel (NETw4x32) net (04/30/2007 11.1.1.11) --> C:\ARCHIV~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\DPInst32.EXE /u C:\WINDOWS\system32\DRVSTORE\netw4x32_B8E7181C5675973E1CF9EA17CB3EB24902DDC2D9\netw4x32.inf
    Windows Driver Package - Intel (w29n51) net (04/04/2007 9.0.4.36) --> C:\ARCHIV~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\DPInst32.EXE /u C:\WINDOWS\system32\DRVSTORE\w29n51_02092897E25039DF89C96EBB4841ACF0590117AE\w29n51.inf
    Windows Driver Package - Intel net (04/30/2007 11.1.1.11) --> C:\ARCHIV~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\DPInst32.EXE /u C:\WINDOWS\system32\DRVSTORE\netw4k32_322EBC0DF0BD0D017FD344D7D1F0EC0A0F5AB45A\netw4k32.inf
    Windows Driver Package - Intel net (04/30/2007 11.1.1.11) --> C:\ARCHIV~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\DPInst32.EXE /u C:\WINDOWS\system32\DRVSTORE\netw4x64_3FDB2100688236429B1308C609051803854732B5\netw4x64.inf
    Windows Live Messenger --> MsiExec.exe /I{571700F0-DB9D-4B3A-B03D-35A14BB5939F}
    Windows Media Format 11 runtime --> "C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
    Windows Vista Upgrade Advisor --> MsiExec.exe /I{C6AA3FB7-804F-4808-AD91-B62D6ED9B788}
    WinRAR archiver --> C:\Archivos de programa\WinRAR\uninstall.exe
    Xvid 1.1.2 final uninstall --> "C:\Archivos de programa\Xvid\unins000.exe"


    -- Application Event Log -------------------------------------------------------

    Event Record #/Type12442 / Success
    Event Submitted/Written: 01/29/2008 09:34:26 AM
    Event ID/Source: 12001 / usnjsvc
    Event Description:
    The Messenger Sharing USN Journal Reader service started successfully.

    Event Record #/Type12434 / Warning
    Event Submitted/Written: 01/29/2008 08:39:35 AM
    Event ID/Source: 1015 / EvntAgnt
    Event Description:
    El parámetro TraceLevel no está ubicado en el Registro;
    el archivo de seguimiento predeterminado usado es 32.

    Event Record #/Type12433 / Warning
    Event Submitted/Written: 01/29/2008 08:39:35 AM
    Event ID/Source: 1003 / EvntAgnt
    Event Description:
    El parámetro TraceFileName no está ubicado en el Registro;
    el archivo de seguimiento predeterminado usado es .

    Event Record #/Type12424 / Warning
    Event Submitted/Written: 01/28/2008 10:46:36 PM
    Event ID/Source: 1524 / Userenv
    Event Description:
    Windows no puede descargar su archivo del Registro de clases - todavía está en uso por otras aplicaciones o servicios. El archivo se descargará cuando no esté en uso.

    Event Record #/Type12406 / Success
    Event Submitted/Written: 01/28/2008 06:18:51 PM
    Event ID/Source: 12001 / usnjsvc
    Event Description:
    The Messenger Sharing USN Journal Reader service started successfully.



    -- Security Event Log ----------------------------------------------------------

    No Errors/Warnings found.


    -- System Event Log ------------------------------------------------------------

    Event Record #/Type18585 / Warning
    Event Submitted/Written: 01/29/2008 02:07:23 PM
    Event ID/Source: 3004 / WinDefend
    Event Description:
    %FERNANDO-LAP27 Real-Time Protection agent has detected changes. Microsoft recommends you analyze the software that made these changes for potential risks. You can use information about how these programs operate to choose whether to allow them to run or remove them from your computer. Allow changes only if you trust the program or the software publisher. %FERNANDO-LAP27 can't undo changes that you allow.

    For more information please see the following:
    %FERNANDO-LAP275

    Scan ID: {997C0A0E-8BD1-4C63-AF0A-CE5884E57543}

    User: FERNANDO-LAP\Fernando

    Name: %FERNANDO-LAP271

    ID: %FERNANDO-LAP272

    Severity: 1.1.1593.05

    Category: 1.1.1593.06

    Path Found: %FERNANDO-LAP276

    Alert Type: %FERNANDO-LAP278

    Detection Type: 1.1.1593.02

    Event Record #/Type18584 / Warning
    Event Submitted/Written: 01/29/2008 02:07:23 PM
    Event ID/Source: 3004 / WinDefend
    Event Description:
    %FERNANDO-LAP27 Real-Time Protection agent has detected changes. Microsoft recommends you analyze the software that made these changes for potential risks. You can use information about how these programs operate to choose whether to allow them to run or remove them from your computer. Allow changes only if you trust the program or the software publisher. %FERNANDO-LAP27 can't undo changes that you allow.

    For more information please see the following:
    %FERNANDO-LAP275

    Scan ID: {7AD9E275-D742-4517-85CA-48ED30505716}

    User: FERNANDO-LAP\Fernando

    Name: %FERNANDO-LAP271

    ID: %FERNANDO-LAP272

    Severity: 1.1.1593.05

    Category: 1.1.1593.06

    Path Found: %FERNANDO-LAP276

    Alert Type: %FERNANDO-LAP278

    Detection Type: 1.1.1593.02

    Event Record #/Type18583 / Warning
    Event Submitted/Written: 01/29/2008 02:07:23 PM
    Event ID/Source: 3004 / WinDefend
    Event Description:
    %FERNANDO-LAP27 Real-Time Protection agent has detected changes. Microsoft recommends you analyze the software that made these changes for potential risks. You can use information about how these programs operate to choose whether to allow them to run or remove them from your computer. Allow changes only if you trust the program or the software publisher. %FERNANDO-LAP27 can't undo changes that you allow.

    For more information please see the following:
    %FERNANDO-LAP275

    Scan ID: {E7F8F8E9-96E2-4EF3-80C8-A854269F277C}

    User: FERNANDO-LAP\Fernando

    Name: %FERNANDO-LAP271

    ID: %FERNANDO-LAP272

    Severity: 1.1.1593.05

    Category: 1.1.1593.06

    Path Found: %FERNANDO-LAP276

    Alert Type: %FERNANDO-LAP278

    Detection Type: 1.1.1593.02

    Event Record #/Type18582 / Warning
    Event Submitted/Written: 01/29/2008 02:07:21 PM
    Event ID/Source: 3004 / WinDefend
    Event Description:
    %FERNANDO-LAP27 Real-Time Protection agent has detected changes. Microsoft recommends you analyze the software that made these changes for potential risks. You can use information about how these programs operate to choose whether to allow them to run or remove them from your computer. Allow changes only if you trust the program or the software publisher. %FERNANDO-LAP27 can't undo changes that you allow.

    For more information please see the following:
    %FERNANDO-LAP275

    Scan ID: {7419ACDC-24FC-47AB-9851-98316892C8FB}

    User: FERNANDO-LAP\Fernando

    Name: %FERNANDO-LAP271

    ID: %FERNANDO-LAP272

    Severity: 1.1.1593.05

    Category: 1.1.1593.06

    Path Found: %FERNANDO-LAP276

    Alert Type: %FERNANDO-LAP278

    Detection Type: 1.1.1593.02

    Event Record #/Type18581 / Warning
    Event Submitted/Written: 01/29/2008 02:07:21 PM
    Event ID/Source: 3004 / WinDefend
    Event Description:
    %FERNANDO-LAP27 Real-Time Protection agent has detected changes. Microsoft recommends you analyze the software that made these changes for potential risks. You can use information about how these programs operate to choose whether to allow them to run or remove them from your computer. Allow changes only if you trust the program or the software publisher. %FERNANDO-LAP27 can't undo changes that you allow.

    For more information please see the following:
    %FERNANDO-LAP275

    Scan ID: {801E7962-C653-4C23-8A91-20EC734C914D}

    User: FERNANDO-LAP\Fernando

    Name: %FERNANDO-LAP271

    ID: %FERNANDO-LAP272

    Severity: 1.1.1593.05

    Category: 1.1.1593.06

    Path Found: %FERNANDO-LAP276

    Alert Type: %FERNANDO-LAP278

    Detection Type: 1.1.1593.02



    -- End of Deckard's System Scanner: finished at 2008-01-29 14:07:42 ------------

     
  11. QuikDraw

    QuikDraw Regular member

    Joined:
    Sep 29, 2007
    Messages:
    808
    Likes Received:
    0
    Trophy Points:
    26
    HijackThis log is clean! Deckard's log is clean! I'm still having trouble reading your lanaguage so hope I didn't miss anything. How's your PC running now? Let's run Windows System File Checker. Follow this path: start> run> type, sfc /scannow. This program takes about 15 minutes to run.
     
    Last edited: Jan 29, 2008
  12. feruz86

    feruz86 Member

    Joined:
    Jun 9, 2006
    Messages:
    22
    Likes Received:
    0
    Trophy Points:
    11
    Well, I ran the Windows System File Checker, as you said it took about 15min. to complete. When it finished it didn't show any results. Is this normal?

    Now my computer feels a bit faster and the problem with the programs not starting has gone. However I don't know why but the icons on the desktop and on my folders are displayed with name and extension. For example: dss now displays on the desktop as dss.exe or in my music folder the songs display like name_of_the_song.mp3 rather than just the name with no extension. Do you know why did this happened and how can I change it back to just displaying the name of the file???

    Thanks
    Feruz
     
  13. feruz86

    feruz86 Member

    Joined:
    Jun 9, 2006
    Messages:
    22
    Likes Received:
    0
    Trophy Points:
    11
    Don't worry about the issue with the file extensions I've already fix it.
    thanx
     
  14. QuikDraw

    QuikDraw Regular member

    Joined:
    Sep 29, 2007
    Messages:
    808
    Likes Received:
    0
    Trophy Points:
    26
    Sounds like it's running normal. My system displays the same way. You asked how to change this back, don't know. Never had anyone ask to to undo a fix. LOL When did yours change to this, after sfc /scannow or when? sfc /scannow, will automatically repair or replace any damaged system files. So what you saw was normal. As for your music folder, try this. Open my music, near the top and middle, you will see a small Icon which looks like a litte window with colored squares in it. Click on that and see if the view setting is set to DETAILS. If so, change it to one of the other settings until it looks the way you like it to be displayed. Let me know if this does the trick.
     
  15. feruz86

    feruz86 Member

    Joined:
    Jun 9, 2006
    Messages:
    22
    Likes Received:
    0
    Trophy Points:
    11
    Never mind about the music folder thing.
    Forgot to tell you that I've already downloaded AVG and during the scan it detected some tracking cookies which I deleted them. Nothing interesting. The PC runs great by now.

    However yesterday happened one thing. I was rebooting and suddenly I got a blue screen telling some issue about one device. This happens sometimes when I use my usb sound card. It is a creative sound blaster extigy. I searched for new drivers but apparently Creative discontinued this product so they are not providing updated drivers for it.
    Can I do anything to prevent these blue screens from showing??

    Thanks for your help Quick Draw.
     
  16. QuikDraw

    QuikDraw Regular member

    Joined:
    Sep 29, 2007
    Messages:
    808
    Likes Received:
    0
    Trophy Points:
    26
    For removing cookies, just us CCleaner, it's fast and simple.

    As for your BSOD issue. This is software related. You can check in computer management/ Event Viewer, for what is causing the problem. If the problem is device drivers, which I suspect it is. You will either need to download drivers which are more compatable, remove other software which may be in conflict, or upgrade you sound card. But, you probably already knew that much. You can use safe mode, or selective startup in msconfig to troubleshoot. System information/problem devices, may show something there. Also, check DirectX Diagnostic Tool. Does you MOBO have onboard sound? If so, pull the card and it's software and see if the issues goes away. If you really what to try to keep the card, you'll need to find what is in conflict with it and see if you can remove that. If not the card will have to go. But, I think there may be a workaround. How old is your computer?
     
  17. feruz86

    feruz86 Member

    Joined:
    Jun 9, 2006
    Messages:
    22
    Likes Received:
    0
    Trophy Points:
    11
    Hey, sorry for replying so late, I had a very busy week.
    Well, apparently I already got the most recent drivers for my sound card. I think I will try uninstalling it and installing it again, maybe this can help. I checked directX diagnostics and everything came out fine. Yes my MOBO has on board sound, the thing is I would not like to uninstall it because it is a laptop and I only use the external sound card when I'm home.
    My computer is a year and a half old.
    Feruz
     
  18. QuikDraw

    QuikDraw Regular member

    Joined:
    Sep 29, 2007
    Messages:
    808
    Likes Received:
    0
    Trophy Points:
    26
    Are you disabling the on-board sound in BIOS before attempting to install the third party sound card?
     
  19. feruz86

    feruz86 Member

    Joined:
    Jun 9, 2006
    Messages:
    22
    Likes Received:
    0
    Trophy Points:
    11
    Umm, no I didn't think about that. I didn't even think that could be done. Would you recommend me to do that???
     
  20. QuikDraw

    QuikDraw Regular member

    Joined:
    Sep 29, 2007
    Messages:
    808
    Likes Received:
    0
    Trophy Points:
    26
    Unless you disable the on-board sound drivers, they will conflict with the third party sound card drivers once you install the soundcards software. This is why your getting the blue screen of death.(BSOD)

    To disable the on-board sound. Reboot the computer, when it starts loading tap F2 or the DEL key until it enters the BIOS screen. Run down the list until you've located the on-board sound. Disable and save new settings, now exit. Reboot. Shut down and unplug AC power. Open your cabinet. Before you attempt to touch anything! Make sure you ground yourself to the PCs metal cabinet with one hand before touching the MOBO or soundcard. The smallest bit of static electricity from your body, will damage the circuitry. This is know as(ESD)Electro Static Discharge. Plug in sound card with your free hand. Now secure it. Close PC case and plug the AC power back in. Start the PC. After the new hardware is found you will be prompted to install the software which came with the device. At this point, it might be a good idea to install only the drivers for now to make sure everything is running correctly. Once you determine the PC is running normally, go ahead and pop the CD back into the drive and finish installing all the other goodies. Check Device Manager to make sure everything is running OK. Any questions?
     
    Last edited: Feb 4, 2008

Share This Page