No me deja instalar Nod32 (SOLUCIONADO)

Cerrado
FelixAlv
Mensajes: 12
Registrado: 16 Nov 2009, 20:35

No me deja instalar Nod32 (SOLUCIONADO)

Mensaje por FelixAlv » 16 Nov 2009, 20:47

Buenas noches, antetodo agradecerles de antemano la ayuda que veo aportan mediante este foro.

Les explico mi problema, Tengo dos ordenadores conectados en red, en los dos tenia instalado el Nod32 version 2.5 con una licencia legal, en el ordenador de mi hija han empezado a aparecer avisos de infecccion, por lo que me he actualizado mi ordenador con la version 4 del Nod 32 para poder hacer un cd de rescate, en principio parece que ha limpiado el de mi hija, pero el problema me viene cuando intento instalar la version 4 en su ordenador.

Parece que en la instalacion todo va bien, hasta que empieza a cargar servicios, donde sale una pantalla avisandome que ha fallado el inicio del servicio Eset Service (ekrn) donde se detiene la instalacion.

Despues de limpiar el PC de mi hija le pasé el Ccleaner para limpiar el registro, no se si esto puede influir en algo.

La version 2.5 si me la deja instalar, pero no me fio por lo que me gustaria instalarle la 4 que es la que yo ya tengo en el mio.

¿pueden [i]echarme[/i] una mano?

Gracias por anticipado y saludos

Avatar de Usuario
msc hotline sat
Mensajes: 93500
Registrado: 09 Mar 2004, 20:39
Ubicación: BARCELONA (ESPAÑA)
Contactar:

Re: No me deja instalar Nod32

Mensaje por msc hotline sat » 16 Nov 2009, 21:01

Hay muchos virus cuyos restos impiden instalar antivirus, incluso resto de versiones anteriores de los mismos antivirus



No sé si ha desinstalado totalmente el viejo NOD32 para instalar el nuevo, pero si no lo ha hecho, hagalo, y tras reiniciar, pruebe instalarlo, y si asi no va, podemos pensar que hay algun resto vírico que está incordianso, por lo que en tal caso, posteenos con un copiar y pegar, el informe generado por el SPROCES:


[quote="msc"]
[b]SPROCES.EXE[/b] (herramienta de investigación)

http://www.zonavirus.com/descargas/sproces.asp



Y tras pulsar en SALIR, posteanos el contenido del C:\SPROCLOG.TXT [/quote]

lo analizaremos e informaremos al respecto.



saludos



16-11-2009

FelixAlv
Mensajes: 12
Registrado: 16 Nov 2009, 20:35

Re: No me deja instalar Nod32

Mensaje por FelixAlv » 17 Nov 2009, 18:16

Gracias por su prontitud de respuesta.

Le adjunto el log resultante en dos post, ya que en uno no cabe



(16-11-2009 20:25:33 GMT)

SProces v4.2 (c)2009 S.G.H. / Satinfo S.L.

-------------------------------------------

Sistema Operativo: Microsoft Windows XP (v5.1.2600) Service Pack 2

Parche MS08-067 (Servicio Servidor) Instalado.

Internet Explorer: (v6.0.2900.2180) ;SP2;

Nombre Equipo: PC-PAULA

Nombre Usuario: Compaq_Propietario



Procesos Activos:

C:\WINDOWS\SYSTEM32\SMSS.EXE

C:\WINDOWS\SYSTEM32\WINLOGON.EXE

C:\WINDOWS\SYSTEM32\SERVICES.EXE

C:\WINDOWS\SYSTEM32\LSASS.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\WINDOWS\SYSTEM32\SPOOLSV.EXE

C:\ARCHIVOS DE PROGRAMA\ARCHIVOS COMUNES\APPLE\MOBILE DEVICE SUPPORT\BIN\APPLEMOBILEDEVICESERVICE.EXE

C:\ARCHIVOS DE PROGRAMA\CYBERLINK\POWERCINEMA\KERNEL\TV\CLCAPSVC.EXE

C:\ARCHIVOS DE PROGRAMA\CYBERLINK\POWERCINEMA\KERNEL\CLML_NTSERVICE\CLMLSERVER.EXE

C:\ARCHIVOS DE PROGRAMA\ARCHIVOS COMUNES\LIGHTSCRIBE\LSSRVC.EXE

C:\ARCHIVOS DE PROGRAMA\ESET\NOD32KRN.EXE

C:\WINDOWS\EXPLORER.EXE

C:\ARCHIVOS DE PROGRAMA\MICROSOFT\SEARCH ENHANCEMENT PACK\SEAPORT\SEAPORT.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\ARCHIVOS DE PROGRAMA\CYBERLINK\POWERCINEMA\KERNEL\TV\CLSCHED.EXE

C:\ARCHIVOS DE PROGRAMA\CYBERLINK\POWERCINEMA\PCMSERVICE.EXE

C:\ARCHIVOS DE PROGRAMA\HP\HP SOFTWARE UPDATE\HPWUSCHD2.EXE

C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\E_FATIADE.EXE

C:\ARCHIVOS DE PROGRAMA\ARCHIVOS COMUNES\REAL\UPDATE_OB\REALSCHED.EXE

C:\WINDOWS\SYSTEM32\RUNDLL32.EXE

C:\HP\KBD\KBD.EXE

C:\ARCHIVOS DE PROGRAMA\ADOBE\PHOTOSHOP ALBUM STARTER EDITION\3.2\APPS\APDPROXY.EXE

C:\ARCHIVOS DE PROGRAMA\NOKIA\NOKIA PC SUITE 6\LAUNCHAPPLICATION.EXE

C:\ARCHIVOS DE PROGRAMA\ESET\NOD32KUI.EXE

C:\ARCHIVOS DE PROGRAMA\ARCHIVOS COMUNES\AHEAD\LIB\NMBGMONITOR.EXE

C:\ARCHIVOS DE PROGRAMA\PC CONNECTIVITY SOLUTION\SERVICELAYER.EXE

C:\ARCHIVOS DE PROGRAMA\INTERNET EXPLORER\IEXPLORE.EXE

C:\ARCHIVOS DE PROGRAMA\HP\DIGITAL IMAGING\BIN\HPQIMZONE.EXE

C:\WINDOWS\ALCXMNTR.EXE

C:\WINDOWS\SYSTEM\HPSYSDRV.EXE

C:\ARCHIVOS DE PROGRAMA\JAVA\JRE1.5.0_05\BIN\JUSCHED.EXE

C:\ARCHIVOS DE PROGRAMA\ITUNES\ITUNESHELPER.EXE

C:\ARCHIVOS DE PROGRAMA\IPOD\BIN\IPODSERVICE.EXE

C:\ARCHIVOS DE PROGRAMA\MICROSOFT OFFICE\OFFICE11\WINWORD.EXE

C:\ARCHIVOS DE PROGRAMA\INTERNET EXPLORER\IEXPLORE.EXE

C:\ARCHIVOS DE PROGRAMA\WINDOWS LIVE\TOOLBAR\WLTUSER.EXE

C:\ARCHIVOS DE PROGRAMA\MESSENGER\MSMSGS.EXE

C:\DOCUMENTS AND SETTINGS\COMPAQ_PROPIETARIO\ESCRITORIO\SPROCES.EXE



R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.es/

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.live.com

R3 - URLSearchHook: Hook de búsqueda de direcciones URL de Microsoft - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - %SystemRoot%\system32\shdocvw.dll

F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\sdra64.exe,

O1 - Hosts: 127.0.0.1 localhost

O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - (no file)

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Archivos de programa\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Archivos de programa\Java\jre1.6.0_02\bin\ssv.dll

O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Archivos de programa\Windows Live\Toolbar\wltcore.dll

O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Archivos de programa\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Archivos de programa\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Archivos de programa\Windows Live\Toolbar\wltcore.dll

O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Archivos de programa\Archivos comunes\Ahead\lib\NMBgMonitor.exe"

O4 - HKCU\..\Run: [updateMgr] C:\Archivos de programa\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_0

O4 - HKCU\..\Run: [Owns inside] C:\DOCUME~1\COMPAQ~1\DATOSD~1\MATHEX~1\Data Bin Atom.exe

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect

O4 - HKLM\..\Run: [PCMService] "C:\Archivos de programa\CyberLink\PowerCinema\PCMService.exe"

O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE

O4 - HKLM\..\Run: [PCDrProfiler]

O4 - HKLM\..\Run: [HPBootOp] "C:\Archivos de programa\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run

O4 - HKLM\..\Run: [HP Software Update] C:\Archivos de programa\HP\HP Software Update\HPwuSchd2.exe

O4 - HKLM\..\Run: [EPSON Stylus DX4800 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIADE.EXE /P26 "EPSON Stylus DX4800 Series" /O6 "USB001" /M "Stylus DX4800"

O4 - HKLM\..\Run: [TkBellExe] "C:\Archivos de programa\Archivos comunes\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE

O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Archivos de programa\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe"

O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Archivos de programa\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Archivos de programa\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [Base frag grid bows] C:\Documents and Settings\All Users\Datos de programa\Cast ping base frag\Debug Meta.exe

O4 - HKLM\..\Run: [Windows System Defender] "C:\Documents and Settings\All Users\Datos de programa\cfa1f21\WScfa1.exe" /s /d

O4 - HKLM\..\Run: [nod32kui] "C:\Archivos de programa\Eset\nod32kui.exe" /WAITSERVICE

O4 - Global Startup: Adobe Gamma Loader.lnk

O4 - Global Startup: Inicio rápido de HP Photosmart Premier.lnk

O8 - Extra context menu item: Abrir en nueva ficha de fondo - res://C:\Archivos de programa\Windows Live Toolbar\Components\es-es\msntabres.dll.mui/229?b9768a46791c46329156ea99bfa6b9c7

O8 - Extra context menu item: Abrir en nueva ficha en primer plano - res://C:\Archivos de programa\Windows Live Toolbar\Components\es-es\msntabres.dll.mui/230?b9768a46791c46329156ea99bfa6b9c7

O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\ARCHIV~1\MICROS~3\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Archivos de programa\Java\jre1.6.0_02\bin\ssv.dll

O9 - Extra button: Agregar entrada - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Archivos de programa\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: Referencia - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARCHIV~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: Ayuda para la conexión - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Archivos de programa\Messenger\msmsgs.exe

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab

O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB

O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://paulanavarro10paulaspain.spaces.live.com//PhotoUpload/MsnPUpld.cab

O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/ES-ES/a-UNO1/GAME_UNO1.cab

O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Plug-in 1.6.0_02) - http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab

O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab

O16 - DPF: {CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA} (Java Plug-in 1.5.0_05) - http://java.sun.com/update/1.5.0/jinstall-1_5_0_05-windows-i586.cab

O16 - DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} (Java Plug-in 1.5.0_10) - http://java.sun.com/update/1.5.0/jinstall-1_5_0_10-windows-i586.cab

O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} (Java Plug-in 1.6.0_01) - http://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab

O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} (Java Plug-in 1.6.0_02) - http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab

O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} (Java Plug-in 1.6.0_02) - http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab

O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://www.adobe.com/products/acrobat/nos/gp.cab

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - http://fpdownload.macromedia.com/get/flashplayer/current/swflash.cab

O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

O17 - HKLM\System\CCS\Services\Tcpip\..\{4BBD15CE-1FC3-4DDC-A56D-0313141B094B}: NameServer = 80.58.0.33,80.58.32.97

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARCHIV~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARCHIV~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL

O18 - Protocol: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\ARCHIV~1\ARCHIV~1\MICROS~1\WEBCOM~1\10\OWC10.DLL

O18 - Protocol: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} - C:\ARCHIV~1\ARCHIV~1\MICROS~1\WEBCOM~1\11\OWC11.DLL

O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Archivos de programa\Windows Live\Mail\mailcomm.dll

O20 - Winlogon Notify: WGALOGON - (no file)

O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - %SystemRoot%\system32\SHELL32.dll

O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - %SystemRoot%\system32\SHELL32.dll

O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - %SystemRoot%\system32\webcheck.dll

O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll

O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Precargador Browseui - %SystemRoot%\system32\browseui.dll

O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Demonio de caché de las categorías de componente - %SystemRoot%\system32\browseui.dll



Información Adicional:

----------------------

Clave "HKLM\...\Image File Execution Options\a.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\aAvgApi.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\AAWTray.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\About.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ackwin32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\Ad-Aware.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\adaware.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\advxdwin.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\AdwarePrj.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\agent.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\agentsvr.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\agentw.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\alertsvc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\alevir.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\alogserv.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\AlphaAV"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\AlphaAV.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\AluSchedulerSvc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\amon9x.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\anti-trojan.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\Anti-Virus Professional.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\AntispywarXP2009.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\antivirus.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\AntivirusPlus"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\AntivirusPlus.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\AntivirusPro_2010.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\AntivirusXP"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\AntivirusXP.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\antivirusxppro2009.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\AntiVirus_Pro.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ants.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\apimonitor.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\aplica32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\apvxdwin.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\arr.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\Arrakis3.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ashAvast.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ashBug.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ashChest.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ashCnsnt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ashDisp.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ashLogV.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ashMaiSv.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ashPopWz.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ashQuick.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ashServ.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ashSimp2.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ashSimpl.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ashSkPcc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ashSkPck.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ashUpd.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ashWebSv.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\aswChLic.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\aswRegSvr.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\aswRunDll.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\aswUpdSv.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\atcon.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\atguard.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\atro55en.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\atupdater.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\atwatch.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\au.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\aupdate.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\auto-protect.nav80try.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\autodown.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\autotrace.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\autoupdate.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\av360.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avadmin.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\AVCare.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avcenter.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avciman.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avconfig.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avconsol.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ave32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\AVENGINE.EXE"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avgcc32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avgchk.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avgcmgr.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avgcsrvx.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avgctrl.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avgdumpx.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avgemc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avgiproxy.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avgnsx.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avgnt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avgrsx.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avgscanx.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avgserv.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avgserv9.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avgsrmax.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avgtray.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avgui.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avgupd.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avgw.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avgwdsvc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avkpop.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avkserv.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avkservice.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avkwctl9.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avltmain.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avmailc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avmcdlg.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avnotify.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avnt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avp32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avpcc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avpdos32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avpm.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avptc32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avpupd.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avsched32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avsynmgr.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avupgsvc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\AVWEBGRD.EXE"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avwin.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avwin95.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avwinnt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avwsc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avwupd.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avwupd32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avwupsrv.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avxmonitor9x.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avxmonitornt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\avxquar.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\b.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\backweb.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bargains.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bdagent.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bdfvcl.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bdfvwiz.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\BDInProcPatch.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bdmcon.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\BDMsnScan.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bdreinit.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bdsubwiz.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\BDSurvey.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bdtkexec.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bdwizreg.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bd_professional.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\beagle.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\belt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bidef.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bidserver.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bipcp.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bipcpevalsetup.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bisp.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\blackd.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\blackice.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\blink.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\blss.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bootconf.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bootwarn.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\borg2.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bpc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\brasil.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\brastk.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\brw.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bs120.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bspatch.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bundle.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\bvt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\c.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cavscan.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ccapp.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ccevtmgr.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ccpxysvc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ccSvcHst.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cdp.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cfd.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cfgwiz.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cfiadmin.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cfiaudit.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cfinet.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cfinet32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cfp.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cfpconfg.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cfplogvw.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cfpupdat.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\Cl.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\claw95.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\claw95cf.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\clean.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cleaner.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cleaner3.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cleanIELow.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cleanpc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\click.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cmd32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cmdagent.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cmesys.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cmgrdian.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cmon016.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\connectionmonitor.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\control"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cpd.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cpf9x206.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cpfnt206.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\crashrep.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\csc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cssconfg.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cssupdat.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cssurf.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ctrl.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cv.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cwnb181.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\cwntdwmo.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\d.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\datemanager.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\dcomx.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\defalert.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\defscangui.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\defwatch.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\deloeminfs.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\deputy.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\divx.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\dllcache.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\dllreg.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\doors.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\dop.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\dpf.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\dpfsetup.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\dpps2.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\driverctrl.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\drwatson.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\drweb32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\drwebupw.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\dssagent.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\dvp95.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\dvp95_0.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ecengine.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\efpeadm.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\egui.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ekrn.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\emsw.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ent.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\esafe.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\escanhnt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\escanv95.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\espwatch.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ethereal.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\etrustcipe.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\evpn.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\exantivirus-cnet.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\exe.avxw.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\expert.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\explore.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\f-agnt95.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\f-prot.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\f-prot95.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\f-stopw.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fact.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fameh32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fast.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fch32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fih32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\findviru.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\firewall.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fixcfg.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fixfp.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fnrb32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fp-win.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fp-win_trial.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fprot.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\frmwrk32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\frw.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fsaa.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fsav.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fsav32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fsav530stbyb.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fsav530wtbyb.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fsav95.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fsgk32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fsm32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fsma32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\fsmb32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\gator.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\gav.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\gbmenu.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\gbn976rl.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\gbpoll.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\generics.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\gmt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\guard.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\guarddog.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\guardgui.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\hacktracersetup.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\hbinst.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\hbsrv.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\History.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\homeav2010.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\hotactio.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\hotpatch.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\htlog.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\htpatch.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\hwpe.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\hxdl.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\hxiul.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\iamapp.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\iamserv.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\iamstats.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ibmasn.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ibmavsp.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\icload95.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\icloadnt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\icmon.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\icsupp95.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\icsuppnt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\Identity.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\idle.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\iedll.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\iedriver.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\IEShow.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\iface.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ifw2000.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\inetlnfo.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\infus.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\infwin.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\init.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\init32.exe "

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\intdel.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\intren.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\iomon98.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\istsvc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\jammer.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\jdbgmrg.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\jedi.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\JsRcGen.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\kavlite40eng.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\kavpers40eng.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\kavpf.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\kazza.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\keenvalue.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\kerio-pf-213-en-win.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\kerio-wrl-421-en-win.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\kerio-wrp-421-en-win.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\killprocesssetup161.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\launcher.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ldnetmon.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ldpro.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ldpromenu.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ldscan.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\licmgr.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\livesrv.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\lnetinfo.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\loader.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\localnet.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\lockdown.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\lockdown2000.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\lookout.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\lordpe.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\lsetup.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\luall.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\luau.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\lucomserver.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\luinit.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\luspt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\MalwareRemoval.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mapisvc32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mcagent.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mcmnhdlr.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mcmscsvc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mcnasvc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mcproxy.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\McSACore.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mcshell.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mcshield.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mcsysmon.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mctool.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mcupdate.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mcvsrte.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mcvsshld.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\md.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mfin32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mfw2en.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mfweng3.02d30.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mgavrtcl.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mgavrte.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mghtml.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mgui.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\minilog.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mmod.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\monitor.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\moolive.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mostat.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mpfagent.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mpfservice.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\MPFSrv.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mpftray.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mrflux.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\msa.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\msapp.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\MSASCui.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\msbb.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\msblast.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mscache.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\msccn32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mscman.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\msconfig"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\msdm.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\msdos.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\msiexec16.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mslaugh.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\msmgt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\msmsgri32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mssmmc32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mssys.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\msvxd.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mu0311ad.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\mwatch.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\n32scanw.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\nav.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\navap.navapsvc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\navapsvc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\navapw32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\navdx.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\navlu32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\navnt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\navstub.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\navw32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\navwnt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\nc2000.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ncinst4.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ndd32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\neomonitor.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\neowatchlog.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\netarmor.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\netd32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\netinfo.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\netmon.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\netscanpro.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\netspyhunter-1.2.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\netutils.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\nisserv.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\nisum.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\nmain.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\nod32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\normist.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\norton_internet_secu_3.0_407.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\notstart.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\npf40_tw_98_nt_me_2k.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\npfmessenger.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\nprotect.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\npscheck.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\npssvc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\nsched32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\nssys32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\nstask32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\nsupdate.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\nt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ntrtscan.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ntvdm.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ntxconfig.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\nui.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\nupgrade.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\nvarch16.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\nvc95.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\nvsvc32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\nwinst4.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\nwservice.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\nwtool16.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\OAcat.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\OAhlp.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\OAReg.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\oasrv.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\oaui.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\oaview.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ODSW.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ollydbg.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\onsrvr.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\optimize.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ostronet.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\otfix.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\outpost.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\outpostinstall.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\outpostproinstall.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ozn695m5.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\padmin.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\panixk.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\patch.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pav.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pavcl.exe"

"Debugger"="svchost.exe"



Continua...............

FelixAlv
Mensajes: 12
Registrado: 16 Nov 2009, 20:35

Re: No me deja instalar Nod32

Mensaje por FelixAlv » 17 Nov 2009, 18:17

Continuación........



Clave "HKLM\...\Image File Execution Options\PavFnSvr.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pavproxy.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pavprsrv.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pavsched.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pavsrv51.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pavw.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pccwin98.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pcfwallicon.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pcip10117_0.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pcscan.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pctsAuxs.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pctsGui.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pctsSvc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pctsTray.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\PC_Antispyware2010.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pdfndr.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pdsetup.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\PerAvir.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\periscope.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\persfw.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\personalguard"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\personalguard.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\perswf.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pf2.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pfwadmin.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pgmonitr.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pingscan.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\platin.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pop3trap.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\poproxy.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\popscan.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\portdetective.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\portmonitor.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\powerscan.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ppinupdt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pptbc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ppvstop.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\prizesurfer.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\prmt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\prmvr.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\procdump.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\processmonitor.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\procexplorerv1.0.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\programauditor.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\proport.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\protector.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\protectx.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\PSANCU.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\PSANHost.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\PSANToManager.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\PsCtrls.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\PsImSvc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\PskSvc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\pspf.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\PSUNMain.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\purge.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\qconsole.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\qh.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\qserver.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\Quick Heal.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\QuickHealCleaner.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\rapapp.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\rav7.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\rav7win.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\rav8win32eng.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ray.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\rb32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\rcsync.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\realmon.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\reged.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\regedt32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\rescue.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\rescue32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\rrguard.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\rscdwld.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\rshell.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\rtvscan.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\rtvscn95.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\rulaunch.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\rwg"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\rwg.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\SafetyKeeper.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\safeweb.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\sahagent.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\Save.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\SaveArmor.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\SaveDefense.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\SaveKeep.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\savenow.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\sbserv.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\sc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\scam32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\scan32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\scan95.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\scanpm.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\scrscan.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\seccenter.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\Secure Veteran.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\secureveteran.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\Security Center.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\SecurityFighter.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\securitysoldier.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\serv95.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\setloadorder.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\setupvameeval.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\setup_flowprotector_us.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\sgssfw32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\sh.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\shellspyinstall.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\shield.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\shn.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\showbehind.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\signcheck.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\smart.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\smartprotector.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\smc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\smrtdefp.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\sms.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\smss32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\snetcfg.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\soap.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\sofi.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\SoftSafeness.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\sperm.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\spf.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\sphinx.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\spoler.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\spoolcv.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\spoolsv32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\spywarexpguard.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\spyxx.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\srexe.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\srng.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ss3edit.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ssgrate.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\ssg_4104.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\st2.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\start.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\stcloader.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\supftrl.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\support.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\supporter5.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\svc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\svchostc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\svchosts.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\svshost.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\sweep95.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\sweepnet.sweepsrv.sys.swnetsup.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\symlcsvc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\symproxysvc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\symtray.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\system.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\system32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\sysupd.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\tapinstall.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\taskmgr.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\taumon.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\tbscan.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\tc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\tca.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\tcm.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\tds-3.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\tds2-98.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\tds2-nt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\teekids.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\tfak.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\tfak5.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\tgbob.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\titanin.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\titaninxp.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\TPSrv.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\trickler.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\trjscan.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\trjsetup.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\trojantrap3.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\TrustWarrior.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\tsadbot.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\tsc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\tvmd.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\tvtmd.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\uiscan.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\undoboot.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\updat.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\upgrad.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\upgrepl.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\utpost.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vbcmserv.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vbcons.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vbust.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vbwin9x.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vbwinntw.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vcsetup.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vet32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vet95.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vettray.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vfsetup.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vir-help.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\virusmdpersonalfirewall.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\VisthAux.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\VisthLic.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\VisthUpd.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vnlan300.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vnpc3000.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vpc32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vpc42.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vpfw30s.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vptray.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vscan40.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vscenu6.02d30.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vsched.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vsecomr.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vshwin32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vsisetup.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vsmain.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vsmon.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vsserv.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vsstat.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vswin9xe.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vswinntse.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\vswinperse.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\w32dsm89.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\W3asbas.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\w9x.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\watchdog.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\webdav.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\WebProxy.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\webscanx.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\webtrap.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\wfindv32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\whoswatchingme.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\wimmun32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\win-bugsfix.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\win32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\win32us.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\winactive.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\winav.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\windll32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\window.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\windows Police Pro.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\windows.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\wininetd.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\wininitx.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\winlogin.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\winmain.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\winppr32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\winrecon.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\winservn.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\winssk32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\winstart.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\winstart001.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\wintsk32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\winupdate.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\wkufind.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\wnad.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\wnt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\wradmin.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\wrctrl.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\wsbgate.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\wscfxas.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\wscfxav.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\wscfxfw.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\wsctool.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\wupdater.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\wupdt.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\wyvernworksfirewall.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\xpdeluxe.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\xpf202en.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\xp_antispyware.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\zapro.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\zapsetup3001.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\zatutor.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\zonalm2601.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\zonealarm.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\_avp32.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\_avpcc.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\_avpm.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\~1.exe"

"Debugger"="svchost.exe"

Clave "HKLM\...\Image File Execution Options\~2.exe"

"Debugger"="svchost.exe"



Listado de Servicios (Carga Automatica):

----------------------------------------

O23 - Service: AMON - Eset - C:\WINDOWS\system32\drivers\amon.sys

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Archivos de programa\Archivos comunes\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Archivos de programa\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe

O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Archivos de programa\CyberLink\PowerCinema\Kernel\TV\CLSched.exe

O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Archivos de programa\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe

O23 - Service: Iniciador de procesos de servidor DCOM (DcomLaunch) - Unknown owner - C:\WINDOWS\system32\svchost -k DcomLaunch (file missing)

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Archivos de programa\Archivos comunes\LightScribe\LSSrvc.exe

O23 - Service: NOD32 Kernel Service (NOD32krn) - Unknown owner - C:\Archivos de programa\Eset\nod32krn.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: Llamada a procedimiento remoto (RPC) (RpcSs) - Unknown owner - C:\WINDOWS\system32\svchost -k rpcss (file missing)



Listado de Servicios (Carga Manual):

------------------------------------

O23 - Service: Service for Realtek AC97 Audio (WDM) (ALCXWDM) - Realtek Semiconductor Corp. - C:\WINDOWS\SYSTEM32\drivers\ALCXWDM.SYS

O23 - Service: Servicio del administrador de discos lógicos (dmadmin) - Microsoft Corp., VERITAS Software - C:\WINDOWS\System32\dmadmin.exe

O23 - Service: GEAR ASPI Filter Driver (GEARAspiWDM) - GEAR Software Inc. - C:\WINDOWS\SYSTEM32\DRIVERS\GEARAspiWDM.sys

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Archivos de programa\Archivos comunes\InstallShield\Driver\1050\Intel 32\IDriverT.exe

O23 - Service: Servicio del iPod (iPod Service) - Apple Inc. - C:\Archivos de programa\iPod\bin\iPodService.exe

O23 - Service: LT Modem Driver (ltmodem5) - LT - C:\WINDOWS\SYSTEM32\DRIVERS\ltmdmnt.sys

O23 - Service: Pinnacle Marvin Bus (MarvinBus) - Pinnacle Systems GmbH - C:\WINDOWS\SYSTEM32\DRIVERS\MarvinBus.sys

O23 - Service: Nokia USB Phone Parent (nmwcd) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcd.sys

O23 - Service: Nokia USB Generic (nmwcdc) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcdc.sys

O23 - Service: Nokia USB Port (nmwcdcj) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcdcj.sys

O23 - Service: Nokia USB Modem (nmwcdcm) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcdcm.sys

O23 - Service: nv - NVIDIA Corporation - C:\WINDOWS\SYSTEM32\DRIVERS\nv4_mini.sys

O23 - Service: PS2 (Ps2) - Hewlett-Packard Company - C:\WINDOWS\SYSTEM32\DRIVERS\PS2.sys

O23 - Service: Controlador de vínculo paralelo directo (Ptilink) - Parallel Technologies, Inc. - C:\WINDOWS\SYSTEM32\DRIVERS\ptilink.sys

O23 - Service: Realtek 10/100/1000 NIC Family all in one NDIS XP Driver (RTL8023xp) - Realtek Semiconductor Corporation - C:\WINDOWS\SYSTEM32\DRIVERS\Rtnicxp.sys

O23 - Service: Controlador de Windows NT del adaptador Fast Ethernet PCI basado en Realtek RTL8139(A/B/C) (rtl8139) - Realtek Semiconductor Corporation - C:\WINDOWS\SYSTEM32\DRIVERS\RTL8139.SYS

O23 - Service: Secdrv - Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K. - C:\WINDOWS\SYSTEM32\DRIVERS\secdrv.sys

O23 - Service: ServiceLayer - Nokia. - C:\Archivos de programa\PC Connectivity Solution\ServiceLayer.exe

O23 - Service: USB2.0 PC Camera (SNP2STD) (SNP2STD) - Unknown owner - C:\WINDOWS\SYSTEM32\DRIVERS\snp2sxp.sys (file missing)

O23 - Service: Servicios de Terminal Server (TermService) - Unknown owner - C:\WINDOWS\System32\svchost -k DComLaunch (file missing)

O23 - Service: Apple Mobile USB Driver (USBAAPL) - Apple, Inc. - C:\WINDOWS\SYSTEM32\Drivers\usbaapl.sys



Listado de Servicios (Deshabilitados):

--------------------------------------

O23 - Service: dmboot - Microsoft Corp., Veritas Software - C:\WINDOWS\SYSTEM32\drivers\dmboot.sys

O23 - Service: dmio - Microsoft Corp., Veritas Software - C:\WINDOWS\SYSTEM32\drivers\dmio.sys

O23 - Service: dmload - Microsoft Corp., Veritas Software. - C:\WINDOWS\SYSTEM32\drivers\dmload.sys

O23 - Service: InCD File System (InCDFs) - Unknown owner - C:\WINDOWS\SYSTEM32\drivers\InCDFs.sys (file missing)

O23 - Service: Controlador de procesador Intel (intelppm) - Unknown owner - C:\WINDOWS\SYSTEM32\DRIVERS\intelppm.sys (file missing)



36 Servicios.

10 de Carga Automatica.

21 de Carga Manual.

5 Deshabilitados.

FelixAlv
Mensajes: 12
Registrado: 16 Nov 2009, 20:35

Re: No me deja instalar Nod32

Mensaje por FelixAlv » 17 Nov 2009, 18:21

El Nod32 ver 2,5 lo desinstale y despues reinicie antes de intentar cargar la versión 4 pero tambien se interrumpia en el mismo punto, ante la impotencia de poderlo instalar ha vuelto a poner mientrastanto la version anterior.



Saludos

Avatar de Usuario
msc hotline sat
Mensajes: 93500
Registrado: 09 Mar 2004, 20:39
Ubicación: BARCELONA (ESPAÑA)
Contactar:

Re: No me deja instalar Nod32

Mensaje por msc hotline sat » 17 Nov 2009, 18:52

Pues de entrada faltan parches :



Sistema Operativo: Microsoft Windows XP (v5.1.2600) Service Pack 2





Los 1073 del SP3 y suponemos que posteriores...



Lance un windowsupdxate e instale los que encuentre a faltar.







Y Ahí tiene un bicho gordo:



F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\sdra64.exe,



es un Rootkit ZBOT, para el que le hará falta el ELISTARA + EliNOTIF


[quote]
[b] ELISTARA.EXE: [/b]

http://www.zonavirus.com/descargas/elistara.asp



[b] ELINOTIF.DLL:[/b]

http://www.zonavirus.com/descargas/elinotif.asp



Descargue las dos en una misma carpeta y pruebe el ELISTARA, y tras reiniciar y posteenos el contenido de C:\infosat.txt para ver el resultado del proceso
[/quote]




Y CON ELLO QUIZAS ENCONTRÁ SOSPECHOSOS ESTOS OTROS:



O4 - HKLM\..\Run: [Base frag grid bows] C:\Documents and Settings\All Users\Datos de programa\Cast ping base frag\Debug Meta.exe



O4 - HKLM\..\Run: [Windows System Defender] "C:\Documents and Settings\All Users\Datos de programa\cfa1f21\WScfa1.exe" /s /d





y aunque no fuera el caso, envienoslos para analizar



C:\Documents and Settings\All Users\Datos de programa\Cast ping base frag\Debug Meta.exe



C:\Documents and Settings\All Users\Datos de programa\cfa1f21\WScfa1.exe



junto con este otro:



C:\WINDOWS\SYSTEM32\IMON.DLL



pues prometen...



recuerde:



[b]¿Como enviar las muestras a zonavirus? - Para ello recordar[/b]:

https://foros.zonavirus.com/viewtopic.php?f=5&t=14253





Tras recibir el/los fichero/s, lo/s analizaremos e implementaremos su control y eliminacion, si procede, en nuestras utilidades, de lo cual informaremos



saludos



ms, 17-11-2009

ref SP/Ba+41.38+2.18

FelixAlv
Mensajes: 12
Registrado: 16 Nov 2009, 20:35

Re: No me deja instalar Nod32

Mensaje por FelixAlv » 17 Nov 2009, 20:59

Hola de nuevo, tras instalar todas las actualizaciones y pasar el ElistrarA, ellog resultante es el siguiente:





(17-11-2009 19:39:08 (GMT))

EliStartPage v19.71 (c)2009 S.G.H. / Satinfo S.L. (Actualizado el 17 de Noviembre del 2009)

--------------------------------------------------

Lista de Acciones (por Acción Directa):

C:\WINDOWS\ALCXMNTR.EXE --> Eliminado SpyRealtek

Eliminada Clave "HKLM\...\Image File Execution Options\A.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AAVGAPI.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AAWTRAY.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ABOUT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ACKWIN32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AD-AWARE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ADAWARE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ADVXDWIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ADWAREPRJ.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AGENT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AGENTSVR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AGENTW.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ALERTSVC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ALEVIR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ALOGSERV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ALPHAAV"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ALPHAAV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ALUSCHEDULERSVC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AMON9X.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ANTI-TROJAN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ANTI-VIRUS PROFESSIONAL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ANTISPYWARXP2009.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ANTIVIRUS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ANTIVIRUSPLUS"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ANTIVIRUSPLUS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ANTIVIRUSPRO_2010.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ANTIVIRUSXP"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ANTIVIRUSXP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ANTIVIRUSXPPRO2009.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ANTIVIRUS_PRO.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ANTS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\APIMONITOR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\APLICA32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\APVXDWIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ARR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ARRAKIS3.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ASHAVAST.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ASHBUG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ASHCHEST.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ASHCNSNT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ASHDISP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ASHLOGV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ASHMAISV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ASHPOPWZ.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ASHQUICK.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ASHSERV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ASHSIMP2.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ASHSIMPL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ASHSKPCC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ASHSKPCK.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ASHUPD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ASHWEBSV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ASWCHLIC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ASWREGSVR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ASWRUNDLL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ASWUPDSV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ATCON.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ATGUARD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ATRO55EN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ATUPDATER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ATWATCH.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AU.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AUPDATE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AUTO-PROTECT.NAV80TRY.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AUTODOWN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AUTOTRACE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AUTOUPDATE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AV360.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVADMIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVCARE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVCENTER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVCIMAN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVCONFIG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVCONSOL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVE32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVENGINE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVGCC32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVGCHK.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVGCMGR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVGCSRVX.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVGCTRL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVGDUMPX.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVGEMC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVGIPROXY.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVGNSX.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVGNT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVGRSX.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVGSCANX.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVGSERV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVGSERV9.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVGSRMAX.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVGTRAY.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVGUI.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVGUPD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVGW.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVGWDSVC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVKPOP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVKSERV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVKSERVICE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVKWCTL9.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVLTMAIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVMAILC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVMCDLG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVNOTIFY.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVNT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVP32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVPCC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVPDOS32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVPM.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVPTC32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVPUPD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVSCHED32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVSYNMGR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVUPGSVC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVWEBGRD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVWIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVWIN95.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVWINNT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVWSC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVWUPD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVWUPD32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVWUPSRV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVXMONITOR9X.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVXMONITORNT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\AVXQUAR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\B.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BACKWEB.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BARGAINS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BDAGENT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BDFVCL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BDFVWIZ.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BDINPROCPATCH.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BDMCON.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BDMSNSCAN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BDREINIT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BDSUBWIZ.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BDSURVEY.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BDTKEXEC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BDWIZREG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BD_PROFESSIONAL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BEAGLE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BELT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BIDEF.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BIDSERVER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BIPCP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BIPCPEVALSETUP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BISP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BLACKD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BLACKICE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BLINK.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BLSS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BOOTCONF.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BOOTWARN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BORG2.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BPC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BRASIL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BRASTK.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BRW.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BS120.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BSPATCH.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BUNDLE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\BVT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\C.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CAVSCAN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CCAPP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CCEVTMGR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CCPXYSVC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CCSVCHST.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CDP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CFD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CFGWIZ.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CFIADMIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CFIAUDIT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CFINET.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CFINET32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CFP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CFPCONFG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CFPLOGVW.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CFPUPDAT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CLAW95.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CLAW95CF.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CLEAN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CLEANER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CLEANER3.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CLEANIELOW.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CLEANPC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CLICK.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CMD32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CMDAGENT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CMESYS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CMGRDIAN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CMON016.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CONNECTIONMONITOR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CONTROL"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CPD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CPF9X206.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CPFNT206.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CRASHREP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CSC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CSSCONFG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CSSUPDAT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CSSURF.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CTRL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CWNB181.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\CWNTDWMO.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\D.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DATEMANAGER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DCOMX.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DEFALERT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DEFSCANGUI.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DEFWATCH.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DELOEMINFS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DEPUTY.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DIVX.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DLLCACHE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DLLREG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DOORS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DOP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DPF.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DPFSETUP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DPPS2.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DRIVERCTRL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DRWATSON.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DRWEB32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DRWEBUPW.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DSSAGENT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DVP95.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\DVP95_0.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ECENGINE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\EFPEADM.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\EGUI.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\EKRN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\EMSW.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ENT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ESAFE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ESCANHNT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ESCANV95.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ESPWATCH.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ETHEREAL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ETRUSTCIPE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\EVPN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\EXANTIVIRUS-CNET.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\EXE.AVXW.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\EXPERT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\EXPLORE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\F-AGNT95.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\F-PROT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\F-PROT95.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\F-STOPW.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FACT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FAMEH32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FAST.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FCH32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FIH32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FINDVIRU.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FIREWALL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FIXCFG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FIXFP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FNRB32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FP-WIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FP-WIN_TRIAL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FPROT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FRMWRK32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FRW.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FSAA.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FSAV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FSAV32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FSAV530STBYB.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FSAV530WTBYB.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FSAV95.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FSGK32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FSM32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FSMA32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\FSMB32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\GATOR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\GAV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\GBMENU.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\GBN976RL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\GBPOLL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\GENERICS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\GMT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\GUARD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\GUARDDOG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\GUARDGUI.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\HACKTRACERSETUP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\HBINST.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\HBSRV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\HISTORY.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\HOMEAV2010.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\HOTACTIO.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\HOTPATCH.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\HTLOG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\HTPATCH.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\HWPE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\HXDL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\HXIUL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\IAMAPP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\IAMSERV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\IAMSTATS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\IBMASN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\IBMAVSP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ICLOAD95.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ICLOADNT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ICMON.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ICSUPP95.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ICSUPPNT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\IDENTITY.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\IDLE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\IEDLL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\IEDRIVER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\IESHOW.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\IFACE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\IFW2000.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\INETLNFO.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\INFUS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\INFWIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\INIT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\INIT32.EXE "

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\INTDEL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\INTREN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\IOMON98.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ISTSVC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\JAMMER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\JDBGMRG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\JEDI.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\JSRCGEN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\KAVLITE40ENG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\KAVPERS40ENG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\KAVPF.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\KAZZA.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\KEENVALUE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\KERIO-PF-213-EN-WIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\KERIO-WRL-421-EN-WIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\KERIO-WRP-421-EN-WIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\KILLPROCESSSETUP161.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\LAUNCHER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\LDNETMON.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\LDPRO.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\LDPROMENU.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\LDSCAN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\LICMGR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\LIVESRV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\LNETINFO.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\LOADER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\LOCALNET.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\LOCKDOWN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\LOCKDOWN2000.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\LOOKOUT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\LORDPE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\LSETUP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\LUALL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\LUAU.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\LUCOMSERVER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\LUINIT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\LUSPT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MALWAREREMOVAL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MAPISVC32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MCAGENT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MCMNHDLR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MCMSCSVC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MCNASVC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MCPROXY.EXE"

"Debugger"="SVCHOST.EXE"





Continua......
Última edición por FelixAlv el 17 Nov 2009, 21:02, editado 1 vez en total.

FelixAlv
Mensajes: 12
Registrado: 16 Nov 2009, 20:35

Re: No me deja instalar Nod32

Mensaje por FelixAlv » 17 Nov 2009, 21:01

Continua.......



Eliminada Clave "HKLM\...\Image File Execution Options\MCSACORE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MCSHELL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MCSHIELD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MCSYSMON.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MCTOOL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MCUPDATE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MCVSRTE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MCVSSHLD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MFIN32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MFW2EN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MFWENG3.02D30.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MGAVRTCL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MGAVRTE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MGHTML.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MGUI.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MINILOG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MMOD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MONITOR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MOOLIVE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MOSTAT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MPFAGENT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MPFSERVICE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MPFSRV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MPFTRAY.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MRFLUX.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MSA.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MSAPP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MSASCUI.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MSBB.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MSBLAST.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MSCACHE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MSCCN32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MSCMAN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MSCONFIG"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MSDM.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MSDOS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MSIEXEC16.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MSLAUGH.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MSMGT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MSMSGRI32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MSSMMC32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MSSYS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MSVXD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MU0311AD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\MWATCH.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\N32SCANW.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NAV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NAVAP.NAVAPSVC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NAVAPSVC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NAVAPW32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NAVDX.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NAVLU32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NAVNT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NAVSTUB.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NAVW32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NAVWNT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NC2000.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NCINST4.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NDD32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NEOMONITOR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NEOWATCHLOG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NETARMOR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NETD32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NETINFO.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NETMON.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NETSCANPRO.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NETSPYHUNTER-1.2.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NETUTILS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NISSERV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NISUM.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NMAIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NOD32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NORMIST.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NORTON_INTERNET_SECU_3.0_407.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NOTSTART.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NPF40_TW_98_NT_ME_2K.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NPFMESSENGER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NPROTECT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NPSCHECK.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NPSSVC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NSCHED32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NSSYS32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NSTASK32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NSUPDATE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NTRTSCAN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NTVDM.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NTXCONFIG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NUI.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NUPGRADE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NVARCH16.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NVC95.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NVSVC32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NWINST4.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NWSERVICE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\NWTOOL16.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\OACAT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\OAHLP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\OAREG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\OASRV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\OAUI.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\OAVIEW.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ODSW.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\OLLYDBG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ONSRVR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\OPTIMIZE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\OSTRONET.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\OTFIX.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\OUTPOST.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\OUTPOSTINSTALL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\OUTPOSTPROINSTALL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\OZN695M5.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PADMIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PANIXK.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PATCH.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PAV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PAVCL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PAVFNSVR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PAVPROXY.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PAVPRSRV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PAVSCHED.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PAVSRV51.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PAVW.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PCCWIN98.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PCFWALLICON.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PCIP10117_0.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PCSCAN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PCTSAUXS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PCTSGUI.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PCTSSVC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PCTSTRAY.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PC_ANTISPYWARE2010.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PDFNDR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PDSETUP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PERAVIR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PERISCOPE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PERSFW.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PERSONALGUARD"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PERSONALGUARD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PERSWF.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PF2.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PFWADMIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PGMONITR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PINGSCAN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PLATIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\POP3TRAP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\POPROXY.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\POPSCAN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PORTDETECTIVE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PORTMONITOR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\POWERSCAN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PPINUPDT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PPTBC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PPVSTOP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PRIZESURFER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PRMT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PRMVR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PROCDUMP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PROCESSMONITOR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PROCEXPLORERV1.0.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PROGRAMAUDITOR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PROPORT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PROTECTOR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PROTECTX.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PSANCU.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PSANHOST.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PSANTOMANAGER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PSCTRLS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PSIMSVC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PSKSVC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PSPF.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PSUNMAIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\PURGE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\QCONSOLE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\QH.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\QSERVER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\QUICK HEAL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\QUICKHEALCLEANER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\RAPAPP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\RAV7.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\RAV7WIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\RAV8WIN32ENG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\RAY.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\RB32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\RCSYNC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\REALMON.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\REGED.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\REGEDT32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\RESCUE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\RESCUE32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\RRGUARD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\RSCDWLD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\RSHELL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\RTVSCAN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\RTVSCN95.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\RULAUNCH.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\RWG"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\RWG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SAFETYKEEPER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SAFEWEB.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SAHAGENT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SAVE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SAVEARMOR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SAVEDEFENSE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SAVEKEEP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SAVENOW.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SBSERV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SCAM32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SCAN32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SCAN95.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SCANPM.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SCRSCAN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SECCENTER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SECURE VETERAN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SECUREVETERAN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SECURITY CENTER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SECURITYFIGHTER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SECURITYSOLDIER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SERV95.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SETLOADORDER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SETUPVAMEEVAL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SETUP_FLOWPROTECTOR_US.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SGSSFW32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SH.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SHELLSPYINSTALL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SHIELD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SHN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SHOWBEHIND.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SIGNCHECK.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SMART.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SMARTPROTECTOR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SMC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SMRTDEFP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SMS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SMSS32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SNETCFG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SOAP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SOFI.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SOFTSAFENESS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SPERM.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SPF.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SPHINX.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SPOLER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SPOOLCV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SPOOLSV32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SPYWAREXPGUARD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SPYXX.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SREXE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SRNG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SS3EDIT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SSGRATE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SSG_4104.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ST2.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\START.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\STCLOADER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SUPFTRL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SUPPORT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SUPPORTER5.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SVC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SVCHOSTC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SVCHOSTS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SVSHOST.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SWEEP95.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SWEEPNET.SWEEPSRV.SYS.SWNETSUP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SYMLCSVC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SYMPROXYSVC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SYMTRAY.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SYSTEM.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SYSTEM32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\SYSUPD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TAPINSTALL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TASKMGR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TAUMON.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TBSCAN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TCA.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TCM.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TDS-3.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TDS2-98.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TDS2-NT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TEEKIDS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TFAK.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TFAK5.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TGBOB.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TITANIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TITANINXP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TPSRV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TRICKLER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TRJSCAN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TRJSETUP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TROJANTRAP3.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TRUSTWARRIOR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TSADBOT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TSC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TVMD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\TVTMD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\UISCAN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\UNDOBOOT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\UPDAT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\UPGRAD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\UPGREPL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\UTPOST.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VBCMSERV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VBCONS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VBUST.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VBWIN9X.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VBWINNTW.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VCSETUP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VET32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VET95.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VETTRAY.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VFSETUP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VIR-HELP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VIRUSMDPERSONALFIREWALL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VISTHAUX.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VISTHLIC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VISTHUPD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VNLAN300.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VNPC3000.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VPC32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VPC42.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VPFW30S.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VPTRAY.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VSCAN40.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VSCENU6.02D30.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VSCHED.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VSECOMR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VSHWIN32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VSISETUP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VSMAIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VSMON.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VSSERV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VSSTAT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VSWIN9XE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VSWINNTSE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\VSWINPERSE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\W32DSM89.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\W3ASBAS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\W9X.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WATCHDOG.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WEBDAV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WEBPROXY.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WEBSCANX.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WEBTRAP.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WFINDV32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WHOSWATCHINGME.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WIMMUN32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WIN-BUGSFIX.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WIN32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WIN32US.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WINACTIVE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WINAV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WINDLL32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WINDOW.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WINDOWS POLICE PRO.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WINDOWS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WININETD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WININITX.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WINLOGIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WINMAIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WINPPR32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WINRECON.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WINSERVN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WINSSK32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WINSTART.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WINSTART001.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WINTSK32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WINUPDATE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WKUFIND.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WNAD.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WNT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WRADMIN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WRCTRL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WSBGATE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WSCFXAS.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WSCFXAV.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WSCFXFW.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WSCTOOL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WUPDATER.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WUPDT.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\WYVERNWORKSFIREWALL.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\XPDELUXE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\XPF202EN.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\XP_ANTISPYWARE.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ZAPRO.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ZAPSETUP3001.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ZATUTOR.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ZONALM2601.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\ZONEALARM.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\_AVP32.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\_AVPCC.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\_AVPM.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\~1.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Clave "HKLM\...\Image File Execution Options\~2.EXE"

"Debugger"="SVCHOST.EXE"

Eliminada Carpeta "%WinSys%\Lowsec"

Eliminadas las Paginas de Inicio y de Busqueda del IE

Eliminados Ficheros Temporales del IE

Detectado AUTORUN.INF en la Unidad (L)

ShellExecute=Info.exe protect.ed 480 480

Si Desconoce la Aplicación, por favor envienosla

acompañada del AUTORUN.INF a "virus@satinfo.es". Gracias.



(17-11-2009 19:41:33 (GMT))

EliStartPage v19.71 (c)2009 S.G.H. / Satinfo S.L. (Actualizado el 17 de Noviembre del 2009)

--------------------------------------------------

Lista de Acciones (por Exploración):

Explorando "C:\"

C:\hp\drivers\audio_realtek\ALCXMNTR.EXE --> Eliminado, SpyRealtek



Nº Total de Directorios: 7769

Nº Total de Ficheros: 86001

Nº de Ficheros Analizados: 27832

Nº de Ficheros Infectados: 1

Nº de Ficheros Limpiados: 1

Avatar de Usuario
msc hotline sat
Mensajes: 93500
Registrado: 09 Mar 2004, 20:39
Ubicación: BARCELONA (ESPAÑA)
Contactar:

Re: No me deja instalar Nod32

Mensaje por msc hotline sat » 17 Nov 2009, 21:09

Pues es raro que el ELISTARA no le pidiera el SDRA64, quizas aun está la clave pero ya no hay el fichero ...



De todas formas, arranque en modo seguro con funciones de red, y mire si encuentra estos





C:\WINDOWS\system32\sdra64.exe



C:\Documents and Settings\All Users\Datos de programa\Cast ping base frag\Debug Meta.exe



C:\Documents and Settings\All Users\Datos de programa\cfa1f21\WScfa1.exe



C:\WINDOWS\SYSTEM32\IMON.DLL





y si los encuentra, envienoslos para analizar



saludos



ms, 17-11-2009

FelixAlv
Mensajes: 12
Registrado: 16 Nov 2009, 20:35

Re: No me deja instalar Nod32

Mensaje por FelixAlv » 17 Nov 2009, 21:12

Y el nuevo log despues de volver a pasar el SProces:



(17-11-2009 20:11:10 GMT)

SProces v4.2 (c)2009 S.G.H. / Satinfo S.L.

-------------------------------------------

Sistema Operativo: Microsoft Windows XP (v5.1.2600) Service Pack 3

Parche MS08-067 (Servicio Servidor) Instalado.

Internet Explorer: (v8.0.6001.18702) 0

Nombre Equipo: PC-PAULA

Nombre Usuario: Compaq_Propietario



Procesos Activos:

C:\WINDOWS\SYSTEM32\SMSS.EXE

C:\WINDOWS\SYSTEM32\WINLOGON.EXE

C:\WINDOWS\SYSTEM32\SERVICES.EXE

C:\WINDOWS\SYSTEM32\LSASS.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\WINDOWS\SYSTEM32\SPOOLSV.EXE

C:\ARCHIVOS DE PROGRAMA\ARCHIVOS COMUNES\APPLE\MOBILE DEVICE SUPPORT\BIN\APPLEMOBILEDEVICESERVICE.EXE

C:\ARCHIVOS DE PROGRAMA\CYBERLINK\POWERCINEMA\KERNEL\TV\CLCAPSVC.EXE

C:\ARCHIVOS DE PROGRAMA\CYBERLINK\POWERCINEMA\KERNEL\CLML_NTSERVICE\CLMLSERVER.EXE

C:\ARCHIVOS DE PROGRAMA\ARCHIVOS COMUNES\LIGHTSCRIBE\LSSRVC.EXE

C:\ARCHIVOS DE PROGRAMA\ESET\NOD32KRN.EXE

C:\WINDOWS\EXPLORER.EXE

C:\ARCHIVOS DE PROGRAMA\MICROSOFT\SEARCH ENHANCEMENT PACK\SEAPORT\SEAPORT.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\ARCHIVOS DE PROGRAMA\CYBERLINK\POWERCINEMA\KERNEL\TV\CLSCHED.EXE

C:\ARCHIVOS DE PROGRAMA\CYBERLINK\POWERCINEMA\PCMSERVICE.EXE

C:\ARCHIVOS DE PROGRAMA\HP\HP SOFTWARE UPDATE\HPWUSCHD2.EXE

C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\E_FATIADE.EXE

C:\ARCHIVOS DE PROGRAMA\ARCHIVOS COMUNES\REAL\UPDATE_OB\REALSCHED.EXE

C:\HP\KBD\KBD.EXE

C:\ARCHIVOS DE PROGRAMA\ADOBE\PHOTOSHOP ALBUM STARTER EDITION\3.2\APPS\APDPROXY.EXE

C:\ARCHIVOS DE PROGRAMA\ARCHIVOS COMUNES\AHEAD\LIB\NMBGMONITOR.EXE

C:\ARCHIVOS DE PROGRAMA\PC CONNECTIVITY SOLUTION\SERVICELAYER.EXE

C:\WINDOWS\SYSTEM32\CTFMON.EXE

C:\ARCHIVOS DE PROGRAMA\HP\DIGITAL IMAGING\BIN\HPQIMZONE.EXE

C:\WINDOWS\SYSTEM\HPSYSDRV.EXE

C:\ARCHIVOS DE PROGRAMA\JAVA\JRE1.5.0_05\BIN\JUSCHED.EXE

C:\ARCHIVOS DE PROGRAMA\ITUNES\ITUNESHELPER.EXE

C:\ARCHIVOS DE PROGRAMA\IPOD\BIN\IPODSERVICE.EXE

C:\ARCHIVOS DE PROGRAMA\INTERNET EXPLORER\IEXPLORE.EXE

C:\ARCHIVOS DE PROGRAMA\INTERNET EXPLORER\IEXPLORE.EXE

C:\ARCHIVOS DE PROGRAMA\WINDOWS LIVE\TOOLBAR\WLTUSER.EXE

C:\DOCUMENTS AND SETTINGS\COMPAQ_PROPIETARIO\ESCRITORIO\SPROCES.EXE



R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.es/

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch

R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll

F2 - REG:system.ini: UserInit=C:\WINDOWS\SYSTEM32\Userinit.exe,

O1 - Hosts: 127.0.0.1 localhost

O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - (no file)

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Archivos de programa\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Archivos de programa\Java\jre1.6.0_02\bin\ssv.dll

O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Archivos de programa\Windows Live\Toolbar\wltcore.dll

O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Archivos de programa\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Archivos de programa\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Archivos de programa\Windows Live\Toolbar\wltcore.dll

O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Archivos de programa\Archivos comunes\Ahead\lib\NMBgMonitor.exe"

O4 - HKCU\..\Run: [updateMgr] C:\Archivos de programa\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_0

O4 - HKCU\..\Run: [Owns inside] C:\DOCUME~1\COMPAQ~1\DATOSD~1\MATHEX~1\Data Bin Atom.exe

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect

O4 - HKLM\..\Run: [PCMService] "C:\Archivos de programa\CyberLink\PowerCinema\PCMService.exe"

O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE

O4 - HKLM\..\Run: [PCDrProfiler]

O4 - HKLM\..\Run: [HPBootOp] "C:\Archivos de programa\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run

O4 - HKLM\..\Run: [HP Software Update] C:\Archivos de programa\HP\HP Software Update\HPwuSchd2.exe

O4 - HKLM\..\Run: [EPSON Stylus DX4800 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIADE.EXE /P26 "EPSON Stylus DX4800 Series" /O6 "USB001" /M "Stylus DX4800"

O4 - HKLM\..\Run: [TkBellExe] "C:\Archivos de programa\Archivos comunes\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE

O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Archivos de programa\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe"

O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Archivos de programa\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Archivos de programa\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [Base frag grid bows] C:\Documents and Settings\All Users\Datos de programa\Cast ping base frag\Debug Meta.exe

O4 - HKLM\..\Run: [Windows System Defender] "C:\Documents and Settings\All Users\Datos de programa\cfa1f21\WScfa1.exe" /s /d

O4 - HKLM\..\Run: [nod32kui] "C:\Archivos de programa\Eset\nod32kui.exe" /WAITSERVICE

O4 - Global Startup: Adobe Gamma Loader.lnk

O4 - Global Startup: Inicio rápido de HP Photosmart Premier.lnk

O8 - Extra context menu item: Abrir en nueva ficha de fondo - res://C:\Archivos de programa\Windows Live Toolbar\Components\es-es\msntabres.dll.mui/229?b9768a46791c46329156ea99bfa6b9c7

O8 - Extra context menu item: Abrir en nueva ficha en primer plano - res://C:\Archivos de programa\Windows Live Toolbar\Components\es-es\msntabres.dll.mui/230?b9768a46791c46329156ea99bfa6b9c7

O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\ARCHIV~1\MICROS~3\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Archivos de programa\Java\jre1.6.0_02\bin\ssv.dll

O9 - Extra button: Agregar entrada - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Archivos de programa\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: Referencia - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARCHIV~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: Ayuda para la conexión - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Archivos de programa\Messenger\msmsgs.exe

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O10 - Unknown file in Winsock LSP: C:\WINDOWS\SYSTEM32\IMON.DLL

O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab

O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB

O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://paulanavarro10paulaspain.spaces.live.com//PhotoUpload/MsnPUpld.cab

O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/ES-ES/a-UNO1/GAME_UNO1.cab

O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Plug-in 1.6.0_02) - http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab

O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab

O16 - DPF: {CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA} (Java Plug-in 1.5.0_05) - http://java.sun.com/update/1.5.0/jinstall-1_5_0_05-windows-i586.cab

O16 - DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} (Java Plug-in 1.5.0_10) - http://java.sun.com/update/1.5.0/jinstall-1_5_0_10-windows-i586.cab

O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} (Java Plug-in 1.6.0_01) - http://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab

O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} (Java Plug-in 1.6.0_02) - http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab

O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} (Java Plug-in 1.6.0_02) - http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab

O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://www.adobe.com/products/acrobat/nos/gp.cab

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - http://fpdownload.macromedia.com/get/flashplayer/current/swflash.cab

O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

O17 - HKLM\System\CCS\Services\Tcpip\..\{4BBD15CE-1FC3-4DDC-A56D-0313141B094B}: NameServer = 80.58.0.33,80.58.32.97

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARCHIV~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARCHIV~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL

O18 - Protocol: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\ARCHIV~1\ARCHIV~1\MICROS~1\WEBCOM~1\10\OWC10.DLL

O18 - Protocol: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} - C:\ARCHIV~1\ARCHIV~1\MICROS~1\WEBCOM~1\11\OWC11.DLL

O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Archivos de programa\Windows Live\Mail\mailcomm.dll

O20 - Winlogon Notify: DIMSNTFY - %SYSTEMROOT%\SYSTEM32\DIMSNTFY.DLL

O20 - Winlogon Notify: WGALOGON - (no file)

O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - %SystemRoot%\system32\SHELL32.dll

O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - %SystemRoot%\system32\SHELL32.dll

O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll

O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll

O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Precargador Browseui - %SystemRoot%\system32\browseui.dll

O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Demonio de caché de las categorías de componente - %SystemRoot%\system32\browseui.dll



Información Adicional:

----------------------



Listado de Servicios (Carga Automatica):

----------------------------------------

O23 - Service: AMON - Eset - C:\WINDOWS\system32\drivers\amon.sys

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Archivos de programa\Archivos comunes\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Archivos de programa\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe

O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Archivos de programa\CyberLink\PowerCinema\Kernel\TV\CLSched.exe

O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Archivos de programa\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe

**O23 - Service: Iniciador de procesos de servidor DCOM (DcomLaunch) - Unknown owner - C:\WINDOWS\system32\svchost -k DcomLaunch (file missing)

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Archivos de programa\Archivos comunes\LightScribe\LSSrvc.exe

O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Archivos de programa\Eset\nod32krn.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: Llamada a procedimiento remoto (RPC) (RpcSs) - Unknown owner - C:\WINDOWS\system32\svchost -k rpcss (file missing)



Listado de Servicios (Carga Manual):

------------------------------------

O23 - Service: Service for Realtek AC97 Audio (WDM) (ALCXWDM) - Realtek Semiconductor Corp. - C:\WINDOWS\SYSTEM32\drivers\ALCXWDM.SYS

O23 - Service: Servicio del administrador de discos lógicos (dmadmin) - Microsoft Corp., VERITAS Software - C:\WINDOWS\System32\dmadmin.exe

O23 - Service: GEAR ASPI Filter Driver (GEARAspiWDM) - GEAR Software Inc. - C:\WINDOWS\SYSTEM32\DRIVERS\GEARAspiWDM.sys

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Archivos de programa\Archivos comunes\InstallShield\Driver\1050\Intel 32\IDriverT.exe

O23 - Service: Servicio del iPod (iPod Service) - Apple Inc. - C:\Archivos de programa\iPod\bin\iPodService.exe

O23 - Service: LT Modem Driver (ltmodem5) - LT - C:\WINDOWS\SYSTEM32\DRIVERS\ltmdmnt.sys

O23 - Service: Pinnacle Marvin Bus (MarvinBus) - Pinnacle Systems GmbH - C:\WINDOWS\SYSTEM32\DRIVERS\MarvinBus.sys

O23 - Service: Nokia USB Phone Parent (nmwcd) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcd.sys

O23 - Service: Nokia USB Generic (nmwcdc) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcdc.sys

O23 - Service: Nokia USB Port (nmwcdcj) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcdcj.sys

O23 - Service: Nokia USB Modem (nmwcdcm) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcdcm.sys

O23 - Service: nv - NVIDIA Corporation - C:\WINDOWS\SYSTEM32\DRIVERS\nv4_mini.sys

O23 - Service: PS2 (Ps2) - Hewlett-Packard Company - C:\WINDOWS\SYSTEM32\DRIVERS\PS2.sys

O23 - Service: Controlador de vínculo paralelo directo (Ptilink) - Parallel Technologies, Inc. - C:\WINDOWS\SYSTEM32\DRIVERS\ptilink.sys

O23 - Service: Realtek 10/100/1000 NIC Family all in one NDIS XP Driver (RTL8023xp) - Realtek Semiconductor Corporation - C:\WINDOWS\SYSTEM32\DRIVERS\Rtnicxp.sys

O23 - Service: Controlador de Windows NT del adaptador Fast Ethernet PCI basado en Realtek RTL8139(A/B/C) (rtl8139) - Realtek Semiconductor Corporation - C:\WINDOWS\SYSTEM32\DRIVERS\RTL8139.SYS

O23 - Service: Secdrv - Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K. - C:\WINDOWS\SYSTEM32\DRIVERS\secdrv.sys

O23 - Service: ServiceLayer - Nokia. - C:\Archivos de programa\PC Connectivity Solution\ServiceLayer.exe

O23 - Service: USB2.0 PC Camera (SNP2STD) (SNP2STD) - Unknown owner - C:\WINDOWS\SYSTEM32\DRIVERS\snp2sxp.sys (file missing)

O23 - Service: Servicios de Terminal Server (TermService) - Unknown owner - C:\WINDOWS\System32\svchost -k DComLaunch (file missing)

O23 - Service: Apple Mobile USB Driver (USBAAPL) - Apple, Inc. - C:\WINDOWS\SYSTEM32\Drivers\usbaapl.sys



Listado de Servicios (Deshabilitados):

--------------------------------------

O23 - Service: dmboot - Microsoft Corp., Veritas Software - C:\WINDOWS\SYSTEM32\drivers\dmboot.sys

O23 - Service: dmio - Microsoft Corp., Veritas Software - C:\WINDOWS\SYSTEM32\drivers\dmio.sys

O23 - Service: dmload - Microsoft Corp., Veritas Software. - C:\WINDOWS\SYSTEM32\drivers\dmload.sys

O23 - Service: InCD File System (InCDFs) - Unknown owner - C:\WINDOWS\SYSTEM32\drivers\InCDFs.sys (file missing)



35 Servicios.

10 de Carga Automatica.

21 de Carga Manual.

4 Deshabilitados.

Avatar de Usuario
msc hotline sat
Mensajes: 93500
Registrado: 09 Mar 2004, 20:39
Ubicación: BARCELONA (ESPAÑA)
Contactar:

Re: No me deja instalar Nod32

Mensaje por msc hotline sat » 17 Nov 2009, 21:23

Pues mas de lo mismo que el log anterior...



Mire si encuentra los ficheros indicados en mi ultimo post y envienoslos.



De todas formas, ahora que ya ha hecho la primera limpieza con el ELISTARA, pruebelo de nuevo y posteenos nuevo infosat.txt, gracias



Nos falta que al pulsar en SALIR, detecte la existencia del SDRA64.EXE, sino, nos quedaremos con las ganas ! :?



saludos



ms, 17-11-2009

FelixAlv
Mensajes: 12
Registrado: 16 Nov 2009, 20:35

Re: No me deja instalar Nod32

Mensaje por FelixAlv » 17 Nov 2009, 22:47

nuevo log del ElistarA



(17-11-2009 21:31:58 (GMT))

EliStartPage v19.71 (c)2009 S.G.H. / Satinfo S.L. (Actualizado el 17 de Noviembre del 2009)

--------------------------------------------------

Lista de Acciones (por Acción Directa):

Eliminados Ficheros Temporales del IE

Detectado AUTORUN.INF en la Unidad (L)

ShellExecute=Info.exe protect.ed 480 480

Si Desconoce la Aplicación, por favor envienosla

acompañada del AUTORUN.INF a "virus@satinfo.es". Gracias.



(17-11-2009 21:32:05 (GMT))

EliStartPage v19.71 (c)2009 S.G.H. / Satinfo S.L. (Actualizado el 17 de Noviembre del 2009)

--------------------------------------------------

Lista de Acciones (por Exploración):

Explorando "C:\"



Nº Total de Directorios: 7794

Nº Total de Ficheros: 86100

Nº de Ficheros Analizados: 27861

Nº de Ficheros Infectados: 0

Nº de Ficheros Limpiados: 0

FelixAlv
Mensajes: 12
Registrado: 16 Nov 2009, 20:35

Re: No me deja instalar Nod32

Mensaje por FelixAlv » 17 Nov 2009, 22:50

Y nuevo log del SProces



(17-11-2009 21:48:19 GMT)

SProces v4.2 (c)2009 S.G.H. / Satinfo S.L.

-------------------------------------------

Sistema Operativo: Microsoft Windows XP (v5.1.2600) Service Pack 3

Parche MS08-067 (Servicio Servidor) Instalado.

Internet Explorer: (v8.0.6001.18702) 0

Nombre Equipo: PC-PAULA

Nombre Usuario: Compaq_Propietario



Procesos Activos:

C:\WINDOWS\SYSTEM32\SMSS.EXE

C:\WINDOWS\SYSTEM32\WINLOGON.EXE

C:\WINDOWS\SYSTEM32\SERVICES.EXE

C:\WINDOWS\SYSTEM32\LSASS.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\WINDOWS\SYSTEM32\SPOOLSV.EXE

C:\ARCHIVOS DE PROGRAMA\ARCHIVOS COMUNES\APPLE\MOBILE DEVICE SUPPORT\BIN\APPLEMOBILEDEVICESERVICE.EXE

C:\ARCHIVOS DE PROGRAMA\CYBERLINK\POWERCINEMA\KERNEL\TV\CLCAPSVC.EXE

C:\ARCHIVOS DE PROGRAMA\CYBERLINK\POWERCINEMA\KERNEL\CLML_NTSERVICE\CLMLSERVER.EXE

C:\ARCHIVOS DE PROGRAMA\ESET\ESET SMART SECURITY\EKRN.EXE

C:\ARCHIVOS DE PROGRAMA\ARCHIVOS COMUNES\LIGHTSCRIBE\LSSRVC.EXE

C:\WINDOWS\SYSTEM32\NVSVC32.EXE

C:\WINDOWS\EXPLORER.EXE

C:\ARCHIVOS DE PROGRAMA\MICROSOFT\SEARCH ENHANCEMENT PACK\SEAPORT\SEAPORT.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\ARCHIVOS DE PROGRAMA\CYBERLINK\POWERCINEMA\KERNEL\TV\CLSCHED.EXE

C:\ARCHIVOS DE PROGRAMA\CYBERLINK\POWERCINEMA\PCMSERVICE.EXE

C:\ARCHIVOS DE PROGRAMA\HP\HP SOFTWARE UPDATE\HPWUSCHD2.EXE

C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\E_FATIADE.EXE

C:\ARCHIVOS DE PROGRAMA\ARCHIVOS COMUNES\REAL\UPDATE_OB\REALSCHED.EXE

C:\HP\KBD\KBD.EXE

C:\ARCHIVOS DE PROGRAMA\ESET\ESET SMART SECURITY\EGUI.EXE

C:\ARCHIVOS DE PROGRAMA\ARCHIVOS COMUNES\AHEAD\LIB\NMBGMONITOR.EXE

C:\ARCHIVOS DE PROGRAMA\PC CONNECTIVITY SOLUTION\SERVICELAYER.EXE

C:\WINDOWS\SYSTEM32\CTFMON.EXE

C:\ARCHIVOS DE PROGRAMA\HP\DIGITAL IMAGING\BIN\HPQIMZONE.EXE

C:\WINDOWS\SYSTEM\HPSYSDRV.EXE

C:\ARCHIVOS DE PROGRAMA\JAVA\JRE1.5.0_05\BIN\JUSCHED.EXE

C:\ARCHIVOS DE PROGRAMA\ITUNES\ITUNESHELPER.EXE

C:\ARCHIVOS DE PROGRAMA\IPOD\BIN\IPODSERVICE.EXE

C:\ARCHIVOS DE PROGRAMA\INTERNET EXPLORER\IEXPLORE.EXE

C:\ARCHIVOS DE PROGRAMA\INTERNET EXPLORER\IEXPLORE.EXE

C:\ARCHIVOS DE PROGRAMA\INTERNET EXPLORER\IEXPLORE.EXE

C:\ARCHIVOS DE PROGRAMA\WINDOWS LIVE\TOOLBAR\WLTUSER.EXE

C:\DOCUMENTS AND SETTINGS\COMPAQ_PROPIETARIO\ESCRITORIO\SPROCES.EXE



R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.es/

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch

R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll

F2 - REG:system.ini: UserInit=C:\WINDOWS\SYSTEM32\Userinit.exe,

O1 - Hosts: 127.0.0.1 localhost

O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - (no file)

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Archivos de programa\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Archivos de programa\Java\jre1.6.0_02\bin\ssv.dll

O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Archivos de programa\Windows Live\Toolbar\wltcore.dll

O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Archivos de programa\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Archivos de programa\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Archivos de programa\Windows Live\Toolbar\wltcore.dll

O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Archivos de programa\Archivos comunes\Ahead\lib\NMBgMonitor.exe"

O4 - HKCU\..\Run: [updateMgr] C:\Archivos de programa\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_0

O4 - HKCU\..\Run: [Owns inside] C:\DOCUME~1\COMPAQ~1\DATOSD~1\MATHEX~1\Data Bin Atom.exe

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect

O4 - HKLM\..\Run: [PCMService] "C:\Archivos de programa\CyberLink\PowerCinema\PCMService.exe"

O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE

O4 - HKLM\..\Run: [PCDrProfiler]

O4 - HKLM\..\Run: [HPBootOp] "C:\Archivos de programa\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run

O4 - HKLM\..\Run: [HP Software Update] C:\Archivos de programa\HP\HP Software Update\HPwuSchd2.exe

O4 - HKLM\..\Run: [EPSON Stylus DX4800 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIADE.EXE /P26 "EPSON Stylus DX4800 Series" /O6 "USB001" /M "Stylus DX4800"

O4 - HKLM\..\Run: [TkBellExe] "C:\Archivos de programa\Archivos comunes\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE

O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Archivos de programa\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe"

O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Archivos de programa\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Archivos de programa\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [Base frag grid bows] C:\Documents and Settings\All Users\Datos de programa\Cast ping base frag\Debug Meta.exe

O4 - HKLM\..\Run: [Windows System Defender] "C:\Documents and Settings\All Users\Datos de programa\cfa1f21\WScfa1.exe" /s /d

O4 - HKLM\..\Run: [egui] "C:\Archivos de programa\ESET\ESET Smart Security\egui.exe" /hide /waitservice

O4 - Global Startup: Adobe Gamma Loader.lnk

O4 - Global Startup: Inicio rápido de HP Photosmart Premier.lnk

O8 - Extra context menu item: Abrir en nueva ficha de fondo - res://C:\Archivos de programa\Windows Live Toolbar\Components\es-es\msntabres.dll.mui/229?b9768a46791c46329156ea99bfa6b9c7

O8 - Extra context menu item: Abrir en nueva ficha en primer plano - res://C:\Archivos de programa\Windows Live Toolbar\Components\es-es\msntabres.dll.mui/230?b9768a46791c46329156ea99bfa6b9c7

O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\ARCHIV~1\MICROS~3\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Archivos de programa\Java\jre1.6.0_02\bin\ssv.dll

O9 - Extra button: Agregar entrada - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Archivos de programa\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: Referencia - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARCHIV~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: Ayuda para la conexión - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Archivos de programa\Messenger\msmsgs.exe

O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab

O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB

O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://paulanavarro10paulaspain.spaces.live.com//PhotoUpload/MsnPUpld.cab

O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/ES-ES/a-UNO1/GAME_UNO1.cab

O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Plug-in 1.6.0_02) - http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab

O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab

O16 - DPF: {CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA} (Java Plug-in 1.5.0_05) - http://java.sun.com/update/1.5.0/jinstall-1_5_0_05-windows-i586.cab

O16 - DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} (Java Plug-in 1.5.0_10) - http://java.sun.com/update/1.5.0/jinstall-1_5_0_10-windows-i586.cab

O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} (Java Plug-in 1.6.0_01) - http://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab

O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} (Java Plug-in 1.6.0_02) - http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab

O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} (Java Plug-in 1.6.0_02) - http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab

O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://www.adobe.com/products/acrobat/nos/gp.cab

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - http://fpdownload.macromedia.com/get/flashplayer/current/swflash.cab

O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

O17 - HKLM\System\CCS\Services\Tcpip\..\{4BBD15CE-1FC3-4DDC-A56D-0313141B094B}: NameServer = 80.58.0.33,80.58.32.97

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARCHIV~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARCHIV~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL

O18 - Protocol: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\ARCHIV~1\ARCHIV~1\MICROS~1\WEBCOM~1\10\OWC10.DLL

O18 - Protocol: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} - C:\ARCHIV~1\ARCHIV~1\MICROS~1\WEBCOM~1\11\OWC11.DLL

O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Archivos de programa\Windows Live\Mail\mailcomm.dll

O20 - Winlogon Notify: DIMSNTFY - %SYSTEMROOT%\SYSTEM32\DIMSNTFY.DLL

O20 - Winlogon Notify: WGALOGON - (no file)

O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - %SystemRoot%\system32\SHELL32.dll

O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - %SystemRoot%\system32\SHELL32.dll

O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll

O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll

O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Precargador Browseui - %SystemRoot%\system32\browseui.dll

O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Demonio de caché de las categorías de componente - %SystemRoot%\system32\browseui.dll



Información Adicional:

----------------------



Listado de Servicios (Carga Automatica):

----------------------------------------

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Archivos de programa\Archivos comunes\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Archivos de programa\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe

O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Archivos de programa\CyberLink\PowerCinema\Kernel\TV\CLSched.exe

O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Archivos de programa\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe

**O23 - Service: Iniciador de procesos de servidor DCOM (DcomLaunch) - Unknown owner - C:\WINDOWS\system32\svchost -k DcomLaunch (file missing)

O23 - Service: eamon - ESET - C:\WINDOWS\SYSTEM32\DRIVERS\eamon.sys

O23 - Service: ESET Service (ekrn) - ESET - C:\Archivos de programa\ESET\ESET Smart Security\ekrn.exe

O23 - Service: epfw - ESET - C:\WINDOWS\SYSTEM32\DRIVERS\epfw.sys

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Archivos de programa\Archivos comunes\LightScribe\LSSrvc.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: Llamada a procedimiento remoto (RPC) (RpcSs) - Unknown owner - C:\WINDOWS\system32\svchost -k rpcss (file missing)



Listado de Servicios (Carga Manual):

------------------------------------

O23 - Service: Service for Realtek AC97 Audio (WDM) (ALCXWDM) - Realtek Semiconductor Corp. - C:\WINDOWS\SYSTEM32\drivers\ALCXWDM.SYS

O23 - Service: Servicio del administrador de discos lógicos (dmadmin) - Microsoft Corp., VERITAS Software - C:\WINDOWS\System32\dmadmin.exe

O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Archivos de programa\ESET\ESET Smart Security\EHttpSrv.exe

O23 - Service: Eset Personal Firewall (Epfwndis) - ESET - C:\WINDOWS\SYSTEM32\DRIVERS\Epfwndis.sys

O23 - Service: GEAR ASPI Filter Driver (GEARAspiWDM) - GEAR Software Inc. - C:\WINDOWS\SYSTEM32\DRIVERS\GEARAspiWDM.sys

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Archivos de programa\Archivos comunes\InstallShield\Driver\1050\Intel 32\IDriverT.exe

O23 - Service: Servicio del iPod (iPod Service) - Apple Inc. - C:\Archivos de programa\iPod\bin\iPodService.exe

O23 - Service: LT Modem Driver (ltmodem5) - LT - C:\WINDOWS\SYSTEM32\DRIVERS\ltmdmnt.sys

O23 - Service: Pinnacle Marvin Bus (MarvinBus) - Pinnacle Systems GmbH - C:\WINDOWS\SYSTEM32\DRIVERS\MarvinBus.sys

O23 - Service: Nokia USB Phone Parent (nmwcd) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcd.sys

O23 - Service: Nokia USB Generic (nmwcdc) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcdc.sys

O23 - Service: Nokia USB Port (nmwcdcj) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcdcj.sys

O23 - Service: Nokia USB Modem (nmwcdcm) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcdcm.sys

O23 - Service: nv - NVIDIA Corporation - C:\WINDOWS\SYSTEM32\DRIVERS\nv4_mini.sys

O23 - Service: PS2 (Ps2) - Hewlett-Packard Company - C:\WINDOWS\SYSTEM32\DRIVERS\PS2.sys

O23 - Service: Controlador de vínculo paralelo directo (Ptilink) - Parallel Technologies, Inc. - C:\WINDOWS\SYSTEM32\DRIVERS\ptilink.sys

O23 - Service: Realtek 10/100/1000 NIC Family all in one NDIS XP Driver (RTL8023xp) - Realtek Semiconductor Corporation - C:\WINDOWS\SYSTEM32\DRIVERS\Rtnicxp.sys

O23 - Service: Controlador de Windows NT del adaptador Fast Ethernet PCI basado en Realtek RTL8139(A/B/C) (rtl8139) - Realtek Semiconductor Corporation - C:\WINDOWS\SYSTEM32\DRIVERS\RTL8139.SYS

O23 - Service: Secdrv - Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K. - C:\WINDOWS\SYSTEM32\DRIVERS\secdrv.sys

O23 - Service: ServiceLayer - Nokia. - C:\Archivos de programa\PC Connectivity Solution\ServiceLayer.exe

O23 - Service: USB2.0 PC Camera (SNP2STD) (SNP2STD) - Unknown owner - C:\WINDOWS\SYSTEM32\DRIVERS\snp2sxp.sys (file missing)

O23 - Service: Servicios de Terminal Server (TermService) - Unknown owner - C:\WINDOWS\System32\svchost -k DComLaunch (file missing)

O23 - Service: Apple Mobile USB Driver (USBAAPL) - Apple, Inc. - C:\WINDOWS\SYSTEM32\Drivers\usbaapl.sys



Listado de Servicios (Deshabilitados):

--------------------------------------

O23 - Service: dmboot - Microsoft Corp., Veritas Software - C:\WINDOWS\SYSTEM32\drivers\dmboot.sys

O23 - Service: dmio - Microsoft Corp., Veritas Software - C:\WINDOWS\SYSTEM32\drivers\dmio.sys

O23 - Service: dmload - Microsoft Corp., Veritas Software. - C:\WINDOWS\SYSTEM32\drivers\dmload.sys

O23 - Service: InCD File System (InCDFs) - Unknown owner - C:\WINDOWS\SYSTEM32\drivers\InCDFs.sys (file missing)



38 Servicios.

11 de Carga Automatica.

23 de Carga Manual.

4 Deshabilitados.

Avatar de Usuario
msc hotline sat
Mensajes: 93500
Registrado: 09 Mar 2004, 20:39
Ubicación: BARCELONA (ESPAÑA)
Contactar:

Re: No me deja instalar Nod32

Mensaje por msc hotline sat » 18 Nov 2009, 05:48

Pues el informe del ELISTARA es correcto, lo de



[i]EliStartPage v19.71 (c)2009 S.G.H. / Satinfo S.L. (Actualizado el 17 de Noviembre del 2009)

--------------------------------------------------

Lista de Acciones (por Acción Directa):

Eliminados Ficheros Temporales del IE

Detectado AUTORUN.INF en la Unidad (L)

ShellExecute=Info.exe protect.ed 480 480

Si Desconoce la Aplicación, por favor envienosla

acompañada del AUTORUN.INF a "virus@satinfo.es". Gracias.[/i]




es típico en ordenadores como los HP/Compaq que tienen una partición reservada a disposicion de los técnicos, es algo conocido y normal en algunos "De marca"



Y respecto el log, vemos que hay la carga de estos dos sospechosos:



O4 - HKLM\..\Run: [Base frag grid bows] C:\Documents and Settings\All Users\Datos de programa\Cast ping base frag\Debug Meta.exe



O4 - HKLM\..\Run: [Windows System Defender] "C:\Documents and Settings\All Users\Datos de programa\cfa1f21\WScfa1.exe" /s /d



Te los hemos pedido para analizar, en cuanto los recibamos los analizaremos e informaremos



saludos



ms, 18-11-2009

Avatar de Usuario
msc hotline sat
Mensajes: 93500
Registrado: 09 Mar 2004, 20:39
Ubicación: BARCELONA (ESPAÑA)
Contactar:

Re: No me deja instalar Nod32

Mensaje por msc hotline sat » 18 Nov 2009, 09:57

No hemos recibido todos los ficheros pedidos, pero este conviene que de momento le añada .VIR a su extension del siguiente fichero, para que tras reiniciar, ya no se ponga en marcha:



File Debug_Meta.exe received on 2009.11.18 08:49:15 (UTC)



Result: 6/41 (14.64%)



Lo detectan como sospechoso de Swizzor , si bien solo 6 AV de los 41 del VirusTotal.



Pasamos a monitorizarlo e ikmplementar su control y eliminacion, si procede, en el proximo ELISTARA 19.72 de hoy, de lo cual informaremos



Lo del pantallazo indicando lo del AUTORUN.INF ya le hemos dicho que no haga caso, es propio de ordenadores de marca como los HP/COMPAQ, que disponen de una partición especial reservada para servicio técnico



Y recuerde que nos falta recibir para analizar este otro:



C:\Documents and Settings\All Users\Datos de programa\cfa1f21\WScfa1.exe"



saludos



ms, 18-11-2009







NOTA el otro que nos ha enviado, IMON.DLL, parece que se trata de una librería de ESET (NOD32):

http://www.processlibrary.com/es/directory/files/imon/402234

déjelo estar :) ms.

FelixAlv
Mensajes: 12
Registrado: 16 Nov 2009, 20:35

Re: No me deja instalar Nod32

Mensaje por FelixAlv » 18 Nov 2009, 18:25

Hola de nuevo y de nuevo gracias por vuestra ayuda

He renombrado el fichero que comentais Debug_Meta.exe con la extension Vir

El otro fichero, C:\Documents and Settings\All Users\Datos de programa\cfa1f21\WScfa1.exe no esta, la carpeta cfa1f21 no exixte en mi PC ni el fichero ni la carpeta (he mostrado los archivos ocultos)



y vuelvo a pasar el log resultante con el Proces, despues de los cambios que he hecho y despues de reiniciar



(18-11-2009 17:15:07 GMT)

SProces v4.2 (c)2009 S.G.H. / Satinfo S.L.

-------------------------------------------

Sistema Operativo: Microsoft Windows XP (v5.1.2600) Service Pack 3

Parche MS08-067 (Servicio Servidor) Instalado.

Internet Explorer: (v8.0.6001.18702) 0

Nombre Equipo: PC-PAULA

Nombre Usuario: Compaq_Propietario



Procesos Activos:

C:\WINDOWS\SYSTEM32\SMSS.EXE

C:\WINDOWS\SYSTEM32\WINLOGON.EXE

C:\WINDOWS\SYSTEM32\SERVICES.EXE

C:\WINDOWS\SYSTEM32\LSASS.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\WINDOWS\SYSTEM32\SPOOLSV.EXE

C:\WINDOWS\EXPLORER.EXE

C:\ARCHIVOS DE PROGRAMA\CYBERLINK\POWERCINEMA\KERNEL\TV\CLCAPSVC.EXE

C:\ARCHIVOS DE PROGRAMA\CYBERLINK\POWERCINEMA\KERNEL\CLML_NTSERVICE\CLMLSERVER.EXE

C:\ARCHIVOS DE PROGRAMA\ESET\ESET SMART SECURITY\EKRN.EXE

C:\ARCHIVOS DE PROGRAMA\ARCHIVOS COMUNES\LIGHTSCRIBE\LSSRVC.EXE

C:\WINDOWS\SYSTEM32\NVSVC32.EXE

C:\ARCHIVOS DE PROGRAMA\CYBERLINK\POWERCINEMA\PCMSERVICE.EXE

C:\ARCHIVOS DE PROGRAMA\HP\HP SOFTWARE UPDATE\HPWUSCHD2.EXE

C:\WINDOWS\SYSTEM32\RUNDLL32.EXE

C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\E_FATIADE.EXE

C:\ARCHIVOS DE PROGRAMA\ARCHIVOS COMUNES\REAL\UPDATE_OB\REALSCHED.EXE

C:\HP\KBD\KBD.EXE

C:\ARCHIVOS DE PROGRAMA\ESET\ESET SMART SECURITY\EGUI.EXE

C:\ARCHIVOS DE PROGRAMA\ARCHIVOS COMUNES\AHEAD\LIB\NMBGMONITOR.EXE

C:\ARCHIVOS DE PROGRAMA\MICROSOFT\SEARCH ENHANCEMENT PACK\SEAPORT\SEAPORT.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\ARCHIVOS DE PROGRAMA\CYBERLINK\POWERCINEMA\KERNEL\TV\CLSCHED.EXE

C:\WINDOWS\SYSTEM32\CTFMON.EXE

C:\ARCHIVOS DE PROGRAMA\HP\DIGITAL IMAGING\BIN\HPQIMZONE.EXE

C:\ARCHIVOS DE PROGRAMA\PC CONNECTIVITY SOLUTION\SERVICELAYER.EXE

C:\WINDOWS\SYSTEM\HPSYSDRV.EXE

C:\ARCHIVOS DE PROGRAMA\JAVA\JRE1.5.0_05\BIN\JUSCHED.EXE

C:\ARCHIVOS DE PROGRAMA\INTERNET EXPLORER\IEXPLORE.EXE

C:\ARCHIVOS DE PROGRAMA\INTERNET EXPLORER\IEXPLORE.EXE

C:\ARCHIVOS DE PROGRAMA\WINDOWS LIVE\TOOLBAR\WLTUSER.EXE

C:\ARCHIVOS DE PROGRAMA\APPLE SOFTWARE UPDATE\SOFTWAREUPDATE.EXE

C:\WINDOWS\SYSTEM32\DLLHOST.EXE

C:\WINDOWS\SYSTEM32\MSIEXEC.EXE

C:\ARCHIVOS DE PROGRAMA\ARCHIVOS COMUNES\APPLE\MOBILE DEVICE SUPPORT\BIN\APPLEMOBILEDEVICESERVICE.EXE

C:\ARCHIVOS DE PROGRAMA\BONJOUR\MDNSRESPONDER.EXE

C:\WINDOWS\SYSTEM32\MSIEXEC.EXE

C:\WINDOWS\SYSTEM32\MSIEXEC.EXE

C:\DOCUMENTS AND SETTINGS\COMPAQ_PROPIETARIO\ESCRITORIO\SPROCES.EXE



R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.es/

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local (0)

R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll

F2 - REG:system.ini: UserInit=C:\WINDOWS\SYSTEM32\Userinit.exe,

O1 - Hosts: 127.0.0.1 localhost

O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - (no file)

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Archivos de programa\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Archivos de programa\Java\jre1.6.0_02\bin\ssv.dll

O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Archivos de programa\Windows Live\Toolbar\wltcore.dll

O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Archivos de programa\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Archivos de programa\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Archivos de programa\Windows Live\Toolbar\wltcore.dll

O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Archivos de programa\Archivos comunes\Ahead\lib\NMBgMonitor.exe"

O4 - HKCU\..\Run: [updateMgr] C:\Archivos de programa\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_0

O4 - HKCU\..\Run: [Owns inside] C:\DOCUME~1\COMPAQ~1\DATOSD~1\MATHEX~1\Data Bin Atom.exe

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect

O4 - HKLM\..\Run: [PCMService] "C:\Archivos de programa\CyberLink\PowerCinema\PCMService.exe"

O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE

O4 - HKLM\..\Run: [PCDrProfiler]

O4 - HKLM\..\Run: [HPBootOp] "C:\Archivos de programa\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run

O4 - HKLM\..\Run: [HP Software Update] C:\Archivos de programa\HP\HP Software Update\HPwuSchd2.exe

O4 - HKLM\..\Run: [EPSON Stylus DX4800 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIADE.EXE /P26 "EPSON Stylus DX4800 Series" /O6 "USB001" /M "Stylus DX4800"

O4 - HKLM\..\Run: [TkBellExe] "C:\Archivos de programa\Archivos comunes\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE

O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Archivos de programa\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe"

O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Archivos de programa\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Archivos de programa\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [Base frag grid bows] C:\Documents and Settings\All Users\Datos de programa\Cast ping base frag\Debug Meta.exe

O4 - HKLM\..\Run: [Windows System Defender] "C:\Documents and Settings\All Users\Datos de programa\cfa1f21\WScfa1.exe" /s /d

O4 - HKLM\..\Run: [egui] "C:\Archivos de programa\ESET\ESET Smart Security\egui.exe" /hide /waitservice

O4 - HKLM\..\Run: [QuickTime Task] "C:\Archivos de programa\QuickTime\QTTask.exe" -atboottime

O4 - Global Startup: Adobe Gamma Loader.lnk

O4 - Global Startup: Inicio rápido de HP Photosmart Premier.lnk

O8 - Extra context menu item: Abrir en nueva ficha de fondo - res://C:\Archivos de programa\Windows Live Toolbar\Components\es-es\msntabres.dll.mui/229?b9768a46791c46329156ea99bfa6b9c7

O8 - Extra context menu item: Abrir en nueva ficha en primer plano - res://C:\Archivos de programa\Windows Live Toolbar\Components\es-es\msntabres.dll.mui/230?b9768a46791c46329156ea99bfa6b9c7

O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\ARCHIV~1\MICROS~3\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Archivos de programa\Java\jre1.6.0_02\bin\npjpi160_02.dll

O9 - Extra button: Agregar entrada - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Archivos de programa\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: Referencia - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARCHIV~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: Ayuda para la conexión - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Archivos de programa\Messenger\msmsgs.exe

O10 - Unknown file in Winsock LSP: C:\ARCHIVOS DE PROGRAMA\BONJOUR\MDNSNSP.DLL

O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab

O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB

O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://paulanavarro10paulaspain.spaces.live.com//PhotoUpload/MsnPUpld.cab

O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/ES-ES/a-UNO1/GAME_UNO1.cab

O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Plug-in 1.6.0_02) - http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab

O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab

O16 - DPF: {CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA} (Java Plug-in 1.5.0_05) - http://java.sun.com/update/1.5.0/jinstall-1_5_0_05-windows-i586.cab

O16 - DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} (Java Plug-in 1.5.0_10) - http://java.sun.com/update/1.5.0/jinstall-1_5_0_10-windows-i586.cab

O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} (Java Plug-in 1.6.0_01) - http://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab

O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} (Java Plug-in 1.6.0_02) - http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab

O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} (Java Plug-in 1.6.0_02) - http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab

O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://www.adobe.com/products/acrobat/nos/gp.cab

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - http://fpdownload.macromedia.com/get/flashplayer/current/swflash.cab

O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

O17 - HKLM\System\CCS\Services\Tcpip\..\{4BBD15CE-1FC3-4DDC-A56D-0313141B094B}: NameServer = 80.58.0.33,80.58.32.97

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARCHIV~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARCHIV~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL

O18 - Protocol: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\ARCHIV~1\ARCHIV~1\MICROS~1\WEBCOM~1\10\OWC10.DLL

O18 - Protocol: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} - C:\ARCHIV~1\ARCHIV~1\MICROS~1\WEBCOM~1\11\OWC11.DLL

O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Archivos de programa\Windows Live\Mail\mailcomm.dll

O20 - Winlogon Notify: DIMSNTFY - %SYSTEMROOT%\SYSTEM32\DIMSNTFY.DLL

O20 - Winlogon Notify: WGALOGON - (no file)

O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - %SystemRoot%\system32\SHELL32.dll

O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - %SystemRoot%\system32\SHELL32.dll

O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll

O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll

O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Precargador Browseui - %SystemRoot%\system32\browseui.dll

O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Demonio de caché de las categorías de componente - %SystemRoot%\system32\browseui.dll



Información Adicional:

----------------------



Listado de Servicios (Carga Automatica):

----------------------------------------

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Archivos de programa\Archivos comunes\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: Servicio Bonjour (Bonjour Service) - Apple Inc. - C:\Archivos de programa\Bonjour\mDNSResponder.exe

O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Archivos de programa\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe

O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Archivos de programa\CyberLink\PowerCinema\Kernel\TV\CLSched.exe

O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Archivos de programa\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe

**O23 - Service: Iniciador de procesos de servidor DCOM (DcomLaunch) - Unknown owner - C:\WINDOWS\system32\svchost -k DcomLaunch (file missing)

O23 - Service: eamon - ESET - C:\WINDOWS\SYSTEM32\DRIVERS\eamon.sys

O23 - Service: ESET Service (ekrn) - ESET - C:\Archivos de programa\ESET\ESET Smart Security\ekrn.exe

O23 - Service: epfw - ESET - C:\WINDOWS\SYSTEM32\DRIVERS\epfw.sys

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Archivos de programa\Archivos comunes\LightScribe\LSSrvc.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: Llamada a procedimiento remoto (RPC) (RpcSs) - Unknown owner - C:\WINDOWS\system32\svchost -k rpcss (file missing)



Listado de Servicios (Carga Manual):

------------------------------------

O23 - Service: Service for Realtek AC97 Audio (WDM) (ALCXWDM) - Realtek Semiconductor Corp. - C:\WINDOWS\SYSTEM32\drivers\ALCXWDM.SYS

O23 - Service: Servicio del administrador de discos lógicos (dmadmin) - Microsoft Corp., VERITAS Software - C:\WINDOWS\System32\dmadmin.exe

O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Archivos de programa\ESET\ESET Smart Security\EHttpSrv.exe

O23 - Service: Eset Personal Firewall (Epfwndis) - ESET - C:\WINDOWS\SYSTEM32\DRIVERS\Epfwndis.sys

O23 - Service: GEAR ASPI Filter Driver (GEARAspiWDM) - GEAR Software Inc. - C:\WINDOWS\SYSTEM32\DRIVERS\GEARAspiWDM.sys

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Archivos de programa\Archivos comunes\InstallShield\Driver\1050\Intel 32\IDriverT.exe

O23 - Service: LT Modem Driver (ltmodem5) - LT - C:\WINDOWS\SYSTEM32\DRIVERS\ltmdmnt.sys

O23 - Service: Pinnacle Marvin Bus (MarvinBus) - Pinnacle Systems GmbH - C:\WINDOWS\SYSTEM32\DRIVERS\MarvinBus.sys

O23 - Service: Nokia USB Phone Parent (nmwcd) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcd.sys

O23 - Service: Nokia USB Generic (nmwcdc) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcdc.sys

O23 - Service: Nokia USB Port (nmwcdcj) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcdcj.sys

O23 - Service: Nokia USB Modem (nmwcdcm) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcdcm.sys

O23 - Service: nv - NVIDIA Corporation - C:\WINDOWS\SYSTEM32\DRIVERS\nv4_mini.sys

O23 - Service: PS2 (Ps2) - Hewlett-Packard Company - C:\WINDOWS\SYSTEM32\DRIVERS\PS2.sys

O23 - Service: Controlador de vínculo paralelo directo (Ptilink) - Parallel Technologies, Inc. - C:\WINDOWS\SYSTEM32\DRIVERS\ptilink.sys

O23 - Service: Realtek 10/100/1000 NIC Family all in one NDIS XP Driver (RTL8023xp) - Realtek Semiconductor Corporation - C:\WINDOWS\SYSTEM32\DRIVERS\Rtnicxp.sys

O23 - Service: Controlador de Windows NT del adaptador Fast Ethernet PCI basado en Realtek RTL8139(A/B/C) (rtl8139) - Realtek Semiconductor Corporation - C:\WINDOWS\SYSTEM32\DRIVERS\RTL8139.SYS

O23 - Service: Secdrv - Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K. - C:\WINDOWS\SYSTEM32\DRIVERS\secdrv.sys

O23 - Service: ServiceLayer - Nokia. - C:\Archivos de programa\PC Connectivity Solution\ServiceLayer.exe

O23 - Service: USB2.0 PC Camera (SNP2STD) (SNP2STD) - Unknown owner - C:\WINDOWS\SYSTEM32\DRIVERS\snp2sxp.sys (file missing)

O23 - Service: Servicios de Terminal Server (TermService) - Unknown owner - C:\WINDOWS\System32\svchost -k DComLaunch (file missing)

O23 - Service: Apple Mobile USB Driver (USBAAPL) - Apple, Inc. - C:\WINDOWS\SYSTEM32\Drivers\usbaapl.sys



Listado de Servicios (Deshabilitados):

--------------------------------------

O23 - Service: dmboot - Microsoft Corp., Veritas Software - C:\WINDOWS\SYSTEM32\drivers\dmboot.sys

O23 - Service: dmio - Microsoft Corp., Veritas Software - C:\WINDOWS\SYSTEM32\drivers\dmio.sys

O23 - Service: dmload - Microsoft Corp., Veritas Software. - C:\WINDOWS\SYSTEM32\drivers\dmload.sys

O23 - Service: InCD File System (InCDFs) - Unknown owner - C:\WINDOWS\SYSTEM32\drivers\InCDFs.sys (file missing)



38 Servicios.

12 de Carga Automatica.

22 de Carga Manual.

4 Deshabilitados.

Avatar de Usuario
msc hotline sat
Mensajes: 93500
Registrado: 09 Mar 2004, 20:39
Ubicación: BARCELONA (ESPAÑA)
Contactar:

Re: No me deja instalar Nod32

Mensaje por msc hotline sat » 18 Nov 2009, 18:49

Bien, pero no estaría de mas que eliminaras estas dos claves:



O4 - HKLM\..\Run: [Base frag grid bows] C:\Documents and Settings\All Users\Datos de programa\Cast ping base frag\Debug Meta.exe



O4 - HKLM\..\Run: [Windows System Defender] "C:\Documents and Settings\All Users\Datos de programa\cfa1f21\WScfa1.exe" /s /d





[b]¿Como enviar las muestras a zonavirus? - Para ello recordar[/b]:

https://foros.zonavirus.com/viewtopic.php?f=5&t=14253



y tras ello pruebes de instalar de nuevo el NOD32, y si aun tuvieras problemas, desinstalalo totalmente pues vemos que hay claves instaladas del mismo y pueden molestar:



O4 - HKLM\..\Run: [Base frag grid bows] C:\Documents and Settings\All Users\Datos de programa\Cast ping base frag\Debug Meta.exe

O4 - HKLM\..\Run: [Windows System Defender] "C:\Documents and Settings\All Users\Datos de programa\cfa1f21\WScfa1.exe" /s /d







O4 - HKLM\..\Run: [egui] "C:\Archivos de programa\ESET\ESET Smart Security\egui.exe" /hide /waitservice

O23 - Service: eamon - ESET - C:\WINDOWS\SYSTEM32\DRIVERS\eamon.sys

O23 - Service: ESET Service (ekrn) - ESET - C:\Archivos de programa\ESET\ESET Smart Security\ekrn.exe

O23 - Service: epfw - ESET - C:\WINDOWS\SYSTEM32\DRIVERS\epfw.sys

O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Archivos de programa\ESET\ESET Smart Security\EHttpSrv.exe

O23 - Service: Eset Personal Firewall (Epfwndis) - ESET - C:\WINDOWS\SYSTEM32\DRIVERS\Epfwndis.sys



y mas que puede haber fuera del log, dentro del registro.



Pero si no te dan problema, y puedes instalar a pesar de ellas, dejalas estar...



saludos



ms, 18-11-2009

FelixAlv
Mensajes: 12
Registrado: 16 Nov 2009, 20:35

Re: No me deja instalar Nod32

Mensaje por FelixAlv » 18 Nov 2009, 20:04

Adjunto el nuevo log despues de eliminar las claves que me comenta con el HJT, el Nod ya logré instalarlo tras pasar el ElistarA en procesos anteriores, he instalado el Nod Smart Security 4 en vez del Nod32 v4 y parece que funciona correctamente, he hecho un escaneo del disco C y me dice que esta limpio.

¿esta ya todo correcto?

El PC en verdad funciona bastante rápido, como el primer dia :wink:

FelixAlv
Mensajes: 12
Registrado: 16 Nov 2009, 20:35

Re: No me deja instalar Nod32

Mensaje por FelixAlv » 18 Nov 2009, 20:05

El Log:



(18-11-2009 18:56:34 GMT)

SProces v4.2 (c)2009 S.G.H. / Satinfo S.L.

-------------------------------------------

Sistema Operativo: Microsoft Windows XP (v5.1.2600) Service Pack 3

Parche MS08-067 (Servicio Servidor) Instalado.

Internet Explorer: (v8.0.6001.18702) 0

Nombre Equipo: PC-PAULA

Nombre Usuario: Compaq_Propietario



Procesos Activos:

C:\WINDOWS\SYSTEM32\SMSS.EXE

C:\WINDOWS\SYSTEM32\WINLOGON.EXE

C:\WINDOWS\SYSTEM32\SERVICES.EXE

C:\WINDOWS\SYSTEM32\LSASS.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\WINDOWS\SYSTEM32\SPOOLSV.EXE

C:\ARCHIVOS DE PROGRAMA\ARCHIVOS COMUNES\APPLE\MOBILE DEVICE SUPPORT\BIN\APPLEMOBILEDEVICESERVICE.EXE

C:\ARCHIVOS DE PROGRAMA\BONJOUR\MDNSRESPONDER.EXE

C:\ARCHIVOS DE PROGRAMA\CYBERLINK\POWERCINEMA\KERNEL\TV\CLCAPSVC.EXE

C:\ARCHIVOS DE PROGRAMA\CYBERLINK\POWERCINEMA\KERNEL\CLML_NTSERVICE\CLMLSERVER.EXE

C:\ARCHIVOS DE PROGRAMA\ESET\ESET SMART SECURITY\EKRN.EXE

C:\ARCHIVOS DE PROGRAMA\ARCHIVOS COMUNES\LIGHTSCRIBE\LSSRVC.EXE

C:\WINDOWS\SYSTEM32\NVSVC32.EXE

C:\ARCHIVOS DE PROGRAMA\MICROSOFT\SEARCH ENHANCEMENT PACK\SEAPORT\SEAPORT.EXE

C:\WINDOWS\EXPLORER.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\ARCHIVOS DE PROGRAMA\CYBERLINK\POWERCINEMA\KERNEL\TV\CLSCHED.EXE

C:\ARCHIVOS DE PROGRAMA\CYBERLINK\POWERCINEMA\PCMSERVICE.EXE

C:\ARCHIVOS DE PROGRAMA\HP\HP SOFTWARE UPDATE\HPWUSCHD2.EXE

C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\E_FATIADE.EXE

C:\WINDOWS\SYSTEM32\RUNDLL32.EXE

C:\ARCHIVOS DE PROGRAMA\ARCHIVOS COMUNES\REAL\UPDATE_OB\REALSCHED.EXE

C:\HP\KBD\KBD.EXE

C:\ARCHIVOS DE PROGRAMA\ESET\ESET SMART SECURITY\EGUI.EXE

C:\ARCHIVOS DE PROGRAMA\ITUNES\ITUNESHELPER.EXE

C:\ARCHIVOS DE PROGRAMA\ARCHIVOS COMUNES\AHEAD\LIB\NMBGMONITOR.EXE

C:\ARCHIVOS DE PROGRAMA\PC CONNECTIVITY SOLUTION\SERVICELAYER.EXE

C:\WINDOWS\SYSTEM32\CTFMON.EXE

C:\ARCHIVOS DE PROGRAMA\HP\DIGITAL IMAGING\BIN\HPQIMZONE.EXE

C:\ARCHIVOS DE PROGRAMA\IPOD\BIN\IPODSERVICE.EXE

C:\WINDOWS\SYSTEM\HPSYSDRV.EXE

C:\ARCHIVOS DE PROGRAMA\JAVA\JRE1.5.0_05\BIN\JUSCHED.EXE

C:\DOCUMENTS AND SETTINGS\COMPAQ_PROPIETARIO\ESCRITORIO\SPROCES.EXE



R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.es/

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local (0)

R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll

F2 - REG:system.ini: UserInit=C:\WINDOWS\SYSTEM32\Userinit.exe,

O1 - Hosts: 127.0.0.1 localhost

O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - (no file)

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Archivos de programa\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Archivos de programa\Java\jre1.6.0_02\bin\ssv.dll

O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Archivos de programa\Windows Live\Toolbar\wltcore.dll

O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Archivos de programa\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Archivos de programa\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Archivos de programa\Windows Live\Toolbar\wltcore.dll

O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Archivos de programa\Archivos comunes\Ahead\lib\NMBgMonitor.exe"

O4 - HKCU\..\Run: [updateMgr] C:\Archivos de programa\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_0

O4 - HKCU\..\Run: [Owns inside] C:\DOCUME~1\COMPAQ~1\DATOSD~1\MATHEX~1\Data Bin Atom.exe

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect

O4 - HKLM\..\Run: [PCMService] "C:\Archivos de programa\CyberLink\PowerCinema\PCMService.exe"

O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE

O4 - HKLM\..\Run: [PCDrProfiler]

O4 - HKLM\..\Run: [HPBootOp] "C:\Archivos de programa\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run

O4 - HKLM\..\Run: [HP Software Update] C:\Archivos de programa\HP\HP Software Update\HPwuSchd2.exe

O4 - HKLM\..\Run: [EPSON Stylus DX4800 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIADE.EXE /P26 "EPSON Stylus DX4800 Series" /O6 "USB001" /M "Stylus DX4800"

O4 - HKLM\..\Run: [TkBellExe] "C:\Archivos de programa\Archivos comunes\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE

O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Archivos de programa\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe"

O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Archivos de programa\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Archivos de programa\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [egui] "C:\Archivos de programa\ESET\ESET Smart Security\egui.exe" /hide /waitservice

O4 - HKLM\..\Run: [QuickTime Task] "C:\Archivos de programa\QuickTime\QTTask.exe" -atboottime

O4 - HKLM\..\Run: [iTunesHelper] "C:\Archivos de programa\iTunes\iTunesHelper.exe"

O4 - Global Startup: Adobe Gamma Loader.lnk

O4 - Global Startup: Inicio rápido de HP Photosmart Premier.lnk

O8 - Extra context menu item: Abrir en nueva ficha de fondo - res://C:\Archivos de programa\Windows Live Toolbar\Components\es-es\msntabres.dll.mui/229?b9768a46791c46329156ea99bfa6b9c7

O8 - Extra context menu item: Abrir en nueva ficha en primer plano - res://C:\Archivos de programa\Windows Live Toolbar\Components\es-es\msntabres.dll.mui/230?b9768a46791c46329156ea99bfa6b9c7

O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\ARCHIV~1\MICROS~3\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Archivos de programa\Java\jre1.6.0_02\bin\ssv.dll

O9 - Extra button: Agregar entrada - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Archivos de programa\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: Referencia - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARCHIV~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: Ayuda para la conexión - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Archivos de programa\Messenger\msmsgs.exe

O10 - Unknown file in Winsock LSP: C:\ARCHIVOS DE PROGRAMA\BONJOUR\MDNSNSP.DLL

O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab

O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB

O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://paulanavarro10paulaspain.spaces.live.com//PhotoUpload/MsnPUpld.cab

O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/ES-ES/a-UNO1/GAME_UNO1.cab

O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Plug-in 1.6.0_02) - http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab

O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab

O16 - DPF: {CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA} (Java Plug-in 1.5.0_05) - http://java.sun.com/update/1.5.0/jinstall-1_5_0_05-windows-i586.cab

O16 - DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} (Java Plug-in 1.5.0_10) - http://java.sun.com/update/1.5.0/jinstall-1_5_0_10-windows-i586.cab

O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} (Java Plug-in 1.6.0_01) - http://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab

O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} (Java Plug-in 1.6.0_02) - http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab

O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} (Java Plug-in 1.6.0_02) - http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab

O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://www.adobe.com/products/acrobat/nos/gp.cab

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - http://fpdownload.macromedia.com/get/flashplayer/current/swflash.cab

O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

O17 - HKLM\System\CCS\Services\Tcpip\..\{4BBD15CE-1FC3-4DDC-A56D-0313141B094B}: NameServer = 80.58.0.33,80.58.32.97

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARCHIV~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARCHIV~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL

O18 - Protocol: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\ARCHIV~1\ARCHIV~1\MICROS~1\WEBCOM~1\10\OWC10.DLL

O18 - Protocol: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} - C:\ARCHIV~1\ARCHIV~1\MICROS~1\WEBCOM~1\11\OWC11.DLL

O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Archivos de programa\Windows Live\Mail\mailcomm.dll

O20 - Winlogon Notify: DIMSNTFY - %SYSTEMROOT%\SYSTEM32\DIMSNTFY.DLL

O20 - Winlogon Notify: WGALOGON - (no file)

O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - %SystemRoot%\system32\SHELL32.dll

O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - %SystemRoot%\system32\SHELL32.dll

O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll

O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll

O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Precargador Browseui - %SystemRoot%\system32\browseui.dll

O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Demonio de caché de las categorías de componente - %SystemRoot%\system32\browseui.dll



Información Adicional:

----------------------



Listado de Servicios (Carga Automatica):

----------------------------------------

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Archivos de programa\Archivos comunes\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: Servicio Bonjour (Bonjour Service) - Apple Inc. - C:\Archivos de programa\Bonjour\mDNSResponder.exe

O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Archivos de programa\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe

O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Archivos de programa\CyberLink\PowerCinema\Kernel\TV\CLSched.exe

O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Archivos de programa\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe

**O23 - Service: Iniciador de procesos de servidor DCOM (DcomLaunch) - Unknown owner - C:\WINDOWS\system32\svchost -k DcomLaunch (file missing)

O23 - Service: eamon - ESET - C:\WINDOWS\SYSTEM32\DRIVERS\eamon.sys

O23 - Service: ESET Service (ekrn) - ESET - C:\Archivos de programa\ESET\ESET Smart Security\ekrn.exe

O23 - Service: epfw - ESET - C:\WINDOWS\SYSTEM32\DRIVERS\epfw.sys

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Archivos de programa\Archivos comunes\LightScribe\LSSrvc.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: Llamada a procedimiento remoto (RPC) (RpcSs) - Unknown owner - C:\WINDOWS\system32\svchost -k rpcss (file missing)



Listado de Servicios (Carga Manual):

------------------------------------

O23 - Service: Service for Realtek AC97 Audio (WDM) (ALCXWDM) - Realtek Semiconductor Corp. - C:\WINDOWS\SYSTEM32\drivers\ALCXWDM.SYS

O23 - Service: Servicio del administrador de discos lógicos (dmadmin) - Microsoft Corp., VERITAS Software - C:\WINDOWS\System32\dmadmin.exe

O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Archivos de programa\ESET\ESET Smart Security\EHttpSrv.exe

O23 - Service: Eset Personal Firewall (Epfwndis) - ESET - C:\WINDOWS\SYSTEM32\DRIVERS\Epfwndis.sys

O23 - Service: GEAR ASPI Filter Driver (GEARAspiWDM) - GEAR Software Inc. - C:\WINDOWS\SYSTEM32\DRIVERS\GEARAspiWDM.sys

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Archivos de programa\Archivos comunes\InstallShield\Driver\1050\Intel 32\IDriverT.exe

O23 - Service: Servicio del iPod (iPod Service) - Apple Inc. - C:\Archivos de programa\iPod\bin\iPodService.exe

O23 - Service: LT Modem Driver (ltmodem5) - LT - C:\WINDOWS\SYSTEM32\DRIVERS\ltmdmnt.sys

O23 - Service: Pinnacle Marvin Bus (MarvinBus) - Pinnacle Systems GmbH - C:\WINDOWS\SYSTEM32\DRIVERS\MarvinBus.sys

O23 - Service: Nokia USB Phone Parent (nmwcd) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcd.sys

O23 - Service: Nokia USB Generic (nmwcdc) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcdc.sys

O23 - Service: Nokia USB Port (nmwcdcj) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcdcj.sys

O23 - Service: Nokia USB Modem (nmwcdcm) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcdcm.sys

O23 - Service: nv - NVIDIA Corporation - C:\WINDOWS\SYSTEM32\DRIVERS\nv4_mini.sys

O23 - Service: PS2 (Ps2) - Hewlett-Packard Company - C:\WINDOWS\SYSTEM32\DRIVERS\PS2.sys

O23 - Service: Controlador de vínculo paralelo directo (Ptilink) - Parallel Technologies, Inc. - C:\WINDOWS\SYSTEM32\DRIVERS\ptilink.sys

O23 - Service: Realtek 10/100/1000 NIC Family all in one NDIS XP Driver (RTL8023xp) - Realtek Semiconductor Corporation - C:\WINDOWS\SYSTEM32\DRIVERS\Rtnicxp.sys

O23 - Service: Controlador de Windows NT del adaptador Fast Ethernet PCI basado en Realtek RTL8139(A/B/C) (rtl8139) - Realtek Semiconductor Corporation - C:\WINDOWS\SYSTEM32\DRIVERS\RTL8139.SYS

O23 - Service: Secdrv - Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K. - C:\WINDOWS\SYSTEM32\DRIVERS\secdrv.sys

O23 - Service: ServiceLayer - Nokia. - C:\Archivos de programa\PC Connectivity Solution\ServiceLayer.exe

O23 - Service: USB2.0 PC Camera (SNP2STD) (SNP2STD) - Unknown owner - C:\WINDOWS\SYSTEM32\DRIVERS\snp2sxp.sys (file missing)

O23 - Service: Servicios de Terminal Server (TermService) - Unknown owner - C:\WINDOWS\System32\svchost -k DComLaunch (file missing)

O23 - Service: Apple Mobile USB Driver (USBAAPL) - Apple, Inc. - C:\WINDOWS\SYSTEM32\Drivers\usbaapl.sys



Listado de Servicios (Deshabilitados):

--------------------------------------

O23 - Service: dmboot - Microsoft Corp., Veritas Software - C:\WINDOWS\SYSTEM32\drivers\dmboot.sys

O23 - Service: dmio - Microsoft Corp., Veritas Software - C:\WINDOWS\SYSTEM32\drivers\dmio.sys

O23 - Service: dmload - Microsoft Corp., Veritas Software. - C:\WINDOWS\SYSTEM32\drivers\dmload.sys

O23 - Service: InCD File System (InCDFs) - Unknown owner - C:\WINDOWS\SYSTEM32\drivers\InCDFs.sys (file missing)



39 Servicios.

12 de Carga Automatica.

23 de Carga Manual.

4 Deshabilitados.

Avatar de Usuario
msc hotline sat
Mensajes: 93500
Registrado: 09 Mar 2004, 20:39
Ubicación: BARCELONA (ESPAÑA)
Contactar:

Re: No me deja instalar Nod32

Mensaje por msc hotline sat » 19 Nov 2009, 06:04

Log limpio.





Pues lo celebramos, y dando por solucionado el Tema, procedemos a cerrarlo



Si nos necesita de nuevo, ya sabe donde estamos



saludos



ms, 19-11-2009

Cerrado

Volver a “Foro Virus - Cuentanos tu problema”