programa que se abre y cierra automaticamente

Responder
SAND96
Mensajes: 4
Registrado: 14 Jul 2013, 10:27

programa que se abre y cierra automaticamente

Mensaje por SAND96 » 14 Jul 2013, 10:49

mi problema es que desde ayer un programa aparece en la barra de tareas es una imagen de una camara y una impresora que se abre y cierra solo y dura 1 segundo o 2 necesito su ayuda: https://foros.zonavirus.com/viewtopic.php?f=5&t=13046

Mi problema es parecido al de este Tema.

me alegraria mucho que alguien me pueda ayudar.

de ante mano Gracias por su ayuda

Avatar de Usuario
msc hotline sat
Mensajes: 93500
Registrado: 09 Mar 2004, 20:39
Ubicación: BARCELONA (ESPAÑA)
Contactar:

Re: programa que se abre y cierra automaticamente

Mensaje por msc hotline sat » 14 Jul 2013, 19:52

El Tema al que haces referencia es de hace 7 años, y no es probable que tenga nada que ver, aunque tuviera sintomas parecidos.



Pruebe el ELISTARA:


[quote="para DESCARGAR el ELISTARA, msc"]



http://www.zonavirus.com/descargas/elistara.asp



Tras probarlo, reiniciar y postearnos el contenido de C:\infosat.txt para ver el

resultado del proceso [/quote]




y si no detectara malwares ni pidiera envio de sospechosos, lanzar el SPROCES y

pulsar en SALIR, tras lo cual generará informe en c:\sproclog.txt, que nos puede

postear para analizar:


[quote="para DESCARGAR el SPROCES, msc"]



http://www.zonavirus.com/descargas/sproces.asp


[/quote]


saludos



ms, 14-7-2013

SAND96
Mensajes: 4
Registrado: 14 Jul 2013, 10:27

Re: programa que se abre y cierra automaticamente

Mensaje por SAND96 » 16 Jul 2013, 07:10

Esto es lo que me salio despues de pasar el ELISTART:



(16-7-2013 04:28:47 (GMT))

EliStartPage v28.11 (c)2013 S.G.H. / Satinfo S.L. (Actualizado el 15 de Julio del 2013)

--------------------------------------------------

Sistema Operativo: Windows 7 Starter (6.1.7601) SERVICE PACK 1

Usuario: STALIN

ID de Usuario: S-1-5-21-904707231-156115092-1859394121-1000

Cadenas Víricas: 19843



Lista de Acciones (por Acción Directa):

Sospechosa Clave "HKLM\...\Image File Execution Options\ACRORD32.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DTAGENT.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DTIMGEDITOR.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DTPRO.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\EXCEL.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\INFOPATH.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\LAUNCHER.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSACCESS.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSOXMLED.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSPUB.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSTORE.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ONENOTE.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\OUTLOOK.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PCCOMPANION.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\POWERPNT.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SETUP.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\UNINSTALL.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WINWORD.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Eliminada Carpeta "C:\ProgramData\MPK"

Eliminadas las Paginas de Inicio y de Busqueda del IE

Eliminados Ficheros Temporales del IE



(16-7-2013 04:30:41 (GMT))

EliStartPage v28.11 (c)2013 S.G.H. / Satinfo S.L. (Actualizado el 15 de Julio del 2013)

--------------------------------------------------

Sistema Operativo: Windows 7 Starter (6.1.7601) SERVICE PACK 1

Usuario: usuario

ID de Usuario: S-1-5-21-904707231-156115092-1859394121-1001

Cadenas Víricas: 19843



Lista de Acciones (por Acción Directa):

Sospechosa Clave "HKLM\...\Image File Execution Options\ACRORD32.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DTAGENT.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DTIMGEDITOR.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DTPRO.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\EXCEL.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\INFOPATH.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\LAUNCHER.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSACCESS.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSOXMLED.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSPUB.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSTORE.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ONENOTE.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\OUTLOOK.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PCCOMPANION.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\POWERPNT.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SETUP.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\UNINSTALL.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WINWORD.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Eliminadas las Paginas de Inicio y de Busqueda del IE

Eliminados Ficheros Temporales del IE



(16-7-2013 04:42:16 (GMT))

EliStartPage v28.11 (c)2013 S.G.H. / Satinfo S.L. (Actualizado el 15 de Julio del 2013)

--------------------------------------------------

Sistema Operativo: Windows 7 Starter (6.1.7601) SERVICE PACK 1

Usuario: STALIN

ID de Usuario: S-1-5-21-904707231-156115092-1859394121-1000

Cadenas Víricas: 19843



Lista de Acciones (por Acción Directa):

Sospechosa Clave "HKLM\...\Image File Execution Options\ACRORD32.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DTAGENT.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DTIMGEDITOR.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DTPRO.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\EXCEL.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\INFOPATH.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\LAUNCHER.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSACCESS.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSOXMLED.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSPUB.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSTORE.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ONENOTE.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\OUTLOOK.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PCCOMPANION.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\POWERPNT.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SETUP.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\UNINSTALL.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WINWORD.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Eliminadas las Paginas de Inicio y de Busqueda del IE

Eliminados Ficheros Temporales del IE



(16-7-2013 04:42:29 (GMT))

EliStartPage v28.11 (c)2013 S.G.H. / Satinfo S.L. (Actualizado el 15 de Julio del 2013)

--------------------------------------------------

Sistema Operativo: Windows 7 Starter (6.1.7601) SERVICE PACK 1

Usuario: usuario

ID de Usuario: S-1-5-21-904707231-156115092-1859394121-1001

Cadenas Víricas: 19843



Lista de Acciones (por Acción Directa):

Sospechosa Clave "HKLM\...\Image File Execution Options\ACRORD32.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DTAGENT.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DTIMGEDITOR.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DTPRO.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\EXCEL.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\INFOPATH.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\LAUNCHER.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSACCESS.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSOXMLED.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSPUB.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSTORE.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ONENOTE.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\OUTLOOK.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PCCOMPANION.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\POWERPNT.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SETUP.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\UNINSTALL.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WINWORD.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Eliminadas las Paginas de Inicio y de Busqueda del IE

Eliminados Ficheros Temporales del IE



(16-7-2013 05:08:14 (GMT))

EliStartPage v28.11 (c)2013 S.G.H. / Satinfo S.L. (Actualizado el 15 de Julio del 2013)

--------------------------------------------------

Sistema Operativo: Windows 7 Starter (6.1.7601) SERVICE PACK 1

Usuario: usuario

ID de Usuario: S-1-5-21-904707231-156115092-1859394121-1001

Cadenas Víricas: 19843



Lista de Acciones (por Exploración):

Explorando "C:\"



Nº Total de Directorios: 26152

Nº Total de Ficheros: 159638

Nº de Ficheros Analizados: 43448

Nº de Ficheros Infectados: 0

Nº de Ficheros Limpiados: 0



......................................

paso el otro programa que me pasaron? o con esto me pueden ayudar?

SAND96
Mensajes: 4
Registrado: 14 Jul 2013, 10:27

Re: programa que se abre y cierra automaticamente

Mensaje por SAND96 » 16 Jul 2013, 07:18

Esto es lo que me salio con el programa Sproces:



(16-7-2013 05:14:43 GMT)

SProces v7.2 (c)2013 S.G.H. / Satinfo S.L.

-------------------------------------------

Sistema Operativo: Windows 7 Starter (v6.1.7601) Service Pack 1

Internet Explorer: (v9.0.8112.16421) 0

Equipo: STALIN-PC

Usuario: STALIN

Sesión de Usuario: STALIN



60 Procesos Activos:

C:\WINDOWS\SYSTEM32\SMSS.EXE

C:\PROGRA~1\AVG\AVG2012\AVGRSX.EXE

C:\PROGRAM FILES\AVG\AVG2012\AVGCSRVX.EXE

C:\WINDOWS\SYSTEM32\CSRSS.EXE

C:\WINDOWS\SYSTEM32\WININIT.EXE

C:\WINDOWS\SYSTEM32\CSRSS.EXE

C:\WINDOWS\SYSTEM32\SERVICES.EXE

C:\WINDOWS\SYSTEM32\WINLOGON.EXE

C:\WINDOWS\SYSTEM32\LSASS.EXE

C:\WINDOWS\SYSTEM32\LSM.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\AVASTSVC.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\PROGRAM FILES\AVG\AVG2012\AVGWDSVC.EXE

C:\WINDOWS\SYSTEM32\TASKHOST.EXE

C:\WINDOWS\SYSTEM32\DWM.EXE

C:\WINDOWS\EXPLORER.EXE

C:\PROGRAMDATA\BANDA ANCHA MOVIL\ONLINEUPDATE\OUC.EXE

D:\PREY\PLATFORM\WINDOWS\CRONSVC.EXE

C:\PROGRAMDATA\DATACARDSERVICE\HWDEVICESERVICE.EXE

C:\PROGRAMDATA\DATACARDSERVICE\DCSHELPER.EXE

C:\PROGRAMDATA\MOVISTAR NAVEGACION MOVIL\ONLINEUPDATE\OUC.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUNEUPUTILITIESSERVICE32.EXE

C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\WINDOWS LIVE\WLIDSVC.EXE

C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\WINDOWS LIVE\WLIDSVCM.EXE

C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUNEUPUTILITIESAPP32.EXE

C:\PROGRAM FILES\AVG\AVG2012\AVGIDSAGENT.EXE

C:\PROGRAM FILES\AVG\AVG2012\AVGNSX.EXE

C:\PROGRAM FILES\AVG\AVG2012\AVGEMCX.EXE

C:\PROGRAMDATA\DATACARDSERVICE\DCSHELPER.EXE

C:\PROGRAM FILES\MOVISTAR NAVEGACION MOVIL\MOVISTAR NAVEGACION MOVIL.EXE

C:\WINDOWS\SYSTEM32\UI0DETECT.EXE

C:\WINDOWS\SYSTEM32\WUDFHOST.EXE

C:\PROGRAM FILES\AVG\AVG2012\AVGTRAY.EXE

C:\PROGRAM FILES\WINDOWS SIDEBAR\SIDEBAR.EXE

C:\WINDOWS\SYSTEM32\SEARCHINDEXER.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\SETUP\AVAST.SET

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\USERS\STALIN\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\CHROME.EXE

C:\USERS\STALIN\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\CHROME.EXE

C:\USERS\STALIN\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\CHROME.EXE

C:\USERS\STALIN\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\CHROME.EXE

C:\USERS\STALIN\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\CHROME.EXE

C:\USERS\STALIN\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\CHROME.EXE

C:\WINDOWS\SYSTEM32\AUDIODG.EXE

C:\USERS\STALIN\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\CHROME.EXE

C:\WINDOWS\SYSTEM32\SEARCHPROTOCOLHOST.EXE

C:\WINDOWS\SYSTEM32\SEARCHFILTERHOST.EXE

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

C:\USERS\STALIN\FAVORITES\DOWNLOADS\NUEVA CARPETA (3)\SPROCES.EXE



R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch

R0 - HKUS\S-1-5-21-904707231-156115092-1859394121-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank (User 'usuario')

R0 - HKUS\S-1-5-21-904707231-156115092-1859394121-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch (User 'usuario')

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll

O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll

O2 - BHO: phpnuke Helper Object - {890CA547-B66C-48BF-9663-DBE0BFDC7D0C} - C:\Program Files\phpnuke\phpnuke\1.8.11.8\bh\phpnuke.dll

O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll

O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll

O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files\Microsoft\BingBar\BingExt.dll"

O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll

O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "C:\Program Files\DAEMON Tools Pro\DTAgent.exe" -autorun

O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKLM\..\Run: [AVG_TRAY] "C:\Program Files\AVG\AVG2012\avgtray.exe"

O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'Servicio Local')

O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'Servicio Local')

O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'Servicio de red')

O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'Servicio de red')

O8 - Extra context menu item: Buscar en la web - C:\Program Files\SweetIM\Toolbars\Internet Explorer\resources\menuext.html

O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MIF5BA~1\Office12\EXCEL.EXE/3000

O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MIF5BA~1\Office12\EXCEL.EXE/3000 (User 'usuario')

O8 - Extra context menu item: Search the Web - C:\Program Files\SweetIM\Toolbars\Internet Explorer\resources\menuext.html (User 'usuario')

O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll

O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MIF5BA~1\Office12\ONBttnIE.dll

O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll

O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MIF5BA~1\Office12\REFIEBAR.DLL

O10 - Unknown file in Winsock LSP: C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\WINDOWS LIVE\WLIDNSP.DLL

O10 - Unknown file in Winsock LSP: C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\WINDOWS LIVE\WLIDNSP.DLL

O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

O17 - HKLM\System\CCS\Services\Tcpip\..\{4825B809-22D9-4BAE-84E9-FC2C31284453}: NameServer = 200.24.208.1 200.24.194.83

O17 - HKLM\System\CCS\Services\Tcpip\..\{917A19B4-139D-4DAB-B8BB-E0F0A383D6BB}: NameServer = 200.24.208.1 200.24.194.83

O17 - HKLM\System\CCS\Services\Tcpip\..\{A7AA208E-96B4-4822-B780-D9535937B442}: NameServer = 200.24.208.1 200.24.194.83

O17 - HKLM\System\CCS\Services\Tcpip\..\{B17063CF-5F2B-4873-B474-6246E701B29E}: NameServer = 200.24.208.1 200.24.194.83

O17 - HKLM\System\CCS\Services\Tcpip\..\{B1889FDA-CA2A-431E-BCD5-21590898C69A}: NameServer = 200.24.208.1 200.24.194.83

O17 - HKLM\System\CCS\Services\Tcpip\..\{B2A94E6D-16E5-431F-9EF2-646EC0840794}: NameServer = 200.24.208.1 200.24.194.83

O17 - HKLM\System\CCS\Services\Tcpip\..\{C25F3DA2-52DA-4003-A6B9-2B36EA13A698}: NameServer = 200.24.208.1 200.24.194.83

O17 - HKLM\System\CCS\Services\Tcpip\..\{E820830E-EFB1-4C79-82EB-BBB9F6CCD72F}: NameServer = 200.24.208.1 200.24.194.83

O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.dll

O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.dll

O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll

O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

O20 - Winlogon Notify: IGFXCUI - IGFXDEV.DLL

O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - (no file)

O22 - ShellExecuteHooks: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll



Información Adicional:

----------------------

Clave "HKLM\...\Image File Execution Options\AcroRd32.exe"

"Debugger"=""C:\Program Files\TuneUp Utilities 2012\TUAutoReactivator32.exe""

Clave "HKLM\...\Image File Execution Options\dtagent.exe"

"Debugger"=""C:\Program Files\TuneUp Utilities 2012\TUAutoReactivator32.exe""

Clave "HKLM\...\Image File Execution Options\dtimgeditor.exe"

"Debugger"=""C:\Program Files\TuneUp Utilities 2012\TUAutoReactivator32.exe""

Clave "HKLM\...\Image File Execution Options\dtpro.exe"

"Debugger"=""C:\Program Files\TuneUp Utilities 2012\TUAutoReactivator32.exe""

Clave "HKLM\...\Image File Execution Options\excel.exe"

"Debugger"=""C:\Program Files\TuneUp Utilities 2012\TUAutoReactivator32.exe""

Clave "HKLM\...\Image File Execution Options\infopath.exe"

"Debugger"=""C:\Program Files\TuneUp Utilities 2012\TUAutoReactivator32.exe""

Clave "HKLM\...\Image File Execution Options\launcher.exe"

"Debugger"=""C:\Program Files\TuneUp Utilities 2012\TUAutoReactivator32.exe""

Clave "HKLM\...\Image File Execution Options\msaccess.exe"

"Debugger"=""C:\Program Files\TuneUp Utilities 2012\TUAutoReactivator32.exe""

Clave "HKLM\...\Image File Execution Options\msoxmled.exe"

"Debugger"=""C:\Program Files\TuneUp Utilities 2012\TUAutoReactivator32.exe""

Clave "HKLM\...\Image File Execution Options\mspub.exe"

"Debugger"=""C:\Program Files\TuneUp Utilities 2012\TUAutoReactivator32.exe""

Clave "HKLM\...\Image File Execution Options\mstore.exe"

"Debugger"=""C:\Program Files\TuneUp Utilities 2012\TUAutoReactivator32.exe""

Clave "HKLM\...\Image File Execution Options\onenote.exe"

"Debugger"=""C:\Program Files\TuneUp Utilities 2012\TUAutoReactivator32.exe""

Clave "HKLM\...\Image File Execution Options\outlook.exe"

"Debugger"=""C:\Program Files\TuneUp Utilities 2012\TUAutoReactivator32.exe""

Clave "HKLM\...\Image File Execution Options\pccompanion.exe"

"Debugger"=""C:\Program Files\TuneUp Utilities 2012\TUAutoReactivator32.exe""

Clave "HKLM\...\Image File Execution Options\powerpnt.exe"

"Debugger"=""C:\Program Files\TuneUp Utilities 2012\TUAutoReactivator32.exe""

Clave "HKLM\...\Image File Execution Options\setup.exe"

"Debugger"=""C:\Program Files\TuneUp Utilities 2012\TUAutoReactivator32.exe""

Clave "HKLM\...\Image File Execution Options\uninstall.exe"

"Debugger"=""C:\Program Files\TuneUp Utilities 2012\TUAutoReactivator32.exe""

Clave "HKLM\...\Image File Execution Options\winword.exe"

"Debugger"=""C:\Program Files\TuneUp Utilities 2012\TUAutoReactivator32.exe""

WinSys\Drivers\adp94xx.sys (de 422976 bytes) () Adaptec, Inc.

WinSys\Drivers\aswSnx.sys (de 435032 bytes) () AVAST Software

WinSys\Drivers\bxvbdx.sys (de 430080 bytes) () Broadcom Corporation

WinSys\Drivers\dxgkrnl.sys (de 728448 bytes) () Microsoft Corporation

WinSys\Drivers\elxstor.sys (de 453712 bytes) () Emulex

WinSys\Drivers\http.sys (de 513536 bytes) () Microsoft Corporation

WinSys\Drivers\mod7700.sys (de 861696 bytes) () DiBcom SA

WinSys\Drivers\ndis.sys (de 712576 bytes) () Microsoft Corporation

WinSys\Drivers\PEAuth.sys (de 586752 bytes) () Microsoft Corporation

WinSys\Drivers\spsys.sys (de 405504 bytes) () Microsoft Corporation

WinSys\Drivers\sptd.sys (de 466008 bytes) () Duplex Secure Ltd.

WinSys\Drivers\Wdf01000.sys (de 526952 bytes) () Microsoft Corporation



Listado de Servicios (Carga Automatica):

----------------------------------------

O23 - Service: aswMonFlt - AVAST Software - C:\Windows\system32\drivers\aswMonFlt.sys

O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe

O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe

O23 - Service: WatchDog de AVG (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\avgwdsvc.exe

O23 - Service: Banda Ancha Móvil. OUC (Banda Ancha Móvil. RunOuc) - Unknown owner - C:\Program Files\Banda Ancha Movil\UpdateDog\ouc.exe

O23 - Service: Cron Service for Prey (CronService) - Fork Ltd. - D:\Prey\platform\windows\cronsvc.exe

O23 - Service: HWDeviceService.exe - Unknown owner - C:\ProgramData\DatacardService\HWDeviceService.exe

O23 - Service: movistar Navegación Móvil. OUC (movistar Navegación Móvil. RunOuc) - Unknown owner - C:\Program Files\movistar Navegacion Movil\UpdateDog\ouc.exe

O23 - Service: NetGroup Packet Filter Driver (NPF) - CACE Technologies, Inc. - C:\WINDOWS\SYSTEM32\drivers\npf.sys

O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe



Listado de Servicios (Carga Manual):

------------------------------------

O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

O23 - Service: adp94xx - Adaptec, Inc. - C:\WINDOWS\system32\DRIVERS\adp94xx.sys

O23 - Service: adpahci - Adaptec, Inc. - C:\WINDOWS\system32\DRIVERS\adpahci.sys

O23 - Service: adpu320 - Adaptec, Inc. - C:\WINDOWS\system32\DRIVERS\adpu320.sys

O23 - Service: aic78xx - Adaptec, Inc. - C:\WINDOWS\system32\DRIVERS\djsvs.sys

O23 - Service: aliide - Acer Laboratories Inc. - C:\WINDOWS\system32\drivers\aliide.sys

O23 - Service: amdsata - Advanced Micro Devices - C:\WINDOWS\system32\drivers\amdsata.sys

O23 - Service: amdsbs - AMD Technologies Inc. - C:\WINDOWS\system32\DRIVERS\amdsbs.sys

O23 - Service: arc - Adaptec, Inc. - C:\WINDOWS\system32\DRIVERS\arc.sys

O23 - Service: arcsas - Adaptec, Inc. - C:\WINDOWS\system32\DRIVERS\arcsas.sys

O23 - Service: AVGIDSDriver - AVG Technologies CZ, s.r.o. - C:\WINDOWS\SYSTEM32\DRIVERS\avgidsdriverx.sys

O23 - Service: AVGIDSFilter - AVG Technologies CZ, s.r.o. - C:\WINDOWS\SYSTEM32\DRIVERS\avgidsfilterx.sys

O23 - Service: AVGIDSShim - AVG Technologies CZ, s.r.o. - C:\WINDOWS\SYSTEM32\DRIVERS\avgidsshimx.sys

O23 - Service: Broadcom NetXtreme II VBD (b06bdrv) - Broadcom Corporation - C:\WINDOWS\system32\DRIVERS\bxvbdx.sys

O23 - Service: Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0 (b57nd60x) - Broadcom Corporation - C:\WINDOWS\SYSTEM32\DRIVERS\b57nd60x.sys

O23 - Service: Brother USB Mass-Storage Lower Filter Driver (BrFiltLo) - Brother Industries, Ltd. - C:\WINDOWS\system32\DRIVERS\BrFiltLo.sys

O23 - Service: Brother USB Mass-Storage Upper Filter Driver (BrFiltUp) - Brother Industries, Ltd. - C:\WINDOWS\system32\DRIVERS\BrFiltUp.sys

O23 - Service: Brother MFC Serial Port Interface Driver (WDM) (Brserid) - Brother Industries Ltd. - C:\WINDOWS\System32\Drivers\Brserid.sys

O23 - Service: Brother WDM Serial driver (BrSerWdm) - Brother Industries Ltd. - C:\WINDOWS\System32\Drivers\BrSerWdm.sys

O23 - Service: Brother MFC USB Fax Only Modem (BrUsbMdm) - Brother Industries Ltd. - C:\WINDOWS\System32\Drivers\BrUsbMdm.sys

O23 - Service: Brother MFC USB Serial WDM Driver (BrUsbSer) - Brother Industries Ltd. - C:\WINDOWS\System32\Drivers\BrUsbSer.sys

O23 - Service: cmdide - CMD Technology, Inc. - C:\WINDOWS\system32\drivers\cmdide.sys

O23 - Service: Broadcom NetXtreme II 10 GigE VBD (ebdrv) - Broadcom Corporation - C:\WINDOWS\system32\DRIVERS\evbdx.sys

O23 - Service: elxstor - Emulex - C:\WINDOWS\system32\DRIVERS\elxstor.sys

O23 - Service: HUAWEI USB-WWAN miniport (ewusbmbb) - Huawei Technologies Co., Ltd. - C:\WINDOWS\SYSTEM32\DRIVERS\ewusbwwan.sys

O23 - Service: HUAWEI USB-NDIS miniport (ewusbnet) - Unknown owner - C:\WINDOWS\SYSTEM32\DRIVERS\ewusbnet.sys (file missing)

O23 - Service: Huawei MobileBroadband USB PNP Device (ew_hwusbdev) - Huawei Technologies Co., Ltd. - C:\WINDOWS\SYSTEM32\DRIVERS\ew_hwusbdev.sys

O23 - Service: huawei_CompositeFilter (ew_usbenumfilter) - Huawei Technologies Co., Ltd. - C:\WINDOWS\SYSTEM32\DRIVERS\ew_usbenumfilter.sys

O23 - Service: SEMC USB Flash Driver Filter (ggflt) - Sony Ericsson Mobile Communications - C:\WINDOWS\SYSTEM32\DRIVERS\ggflt.sys

O23 - Service: SEMC USB Flash Driver (ggsemc) - Sony Ericsson Mobile Communications - C:\WINDOWS\SYSTEM32\DRIVERS\ggsemc.sys

O23 - Service: Hauppauge Consumer Infrared Receiver (hcw85cir) - Hauppauge Computer Works, Inc. - C:\WINDOWS\system32\drivers\hcw85cir.sys

O23 - Service: HpSAMD - Hewlett-Packard Company - C:\WINDOWS\system32\drivers\HpSAMD.sys

O23 - Service: HUAWEI Mobile Connect - USB Smart Card Reader (Huawei) - Huawei Tech. Co., Ltd. - C:\WINDOWS\SYSTEM32\DRIVERS\ewdcsc.sys

O23 - Service: huawei_cdcacm - Huawei Technologies Co., Ltd. - C:\WINDOWS\SYSTEM32\DRIVERS\ew_jucdcacm.sys

O23 - Service: huawei_enumerator - Huawei Technologies Co., Ltd. - C:\WINDOWS\SYSTEM32\DRIVERS\ew_jubusenum.sys

O23 - Service: Huawei DataCard USB Modem and USB Serial (hwdatacard) - Huawei Technologies Co., Ltd. - C:\WINDOWS\SYSTEM32\DRIVERS\ewusbmdm.sys

O23 - Service: Controladora RAID de Intel para Windows 7 (iaStorV) - Intel Corporation - C:\WINDOWS\system32\drivers\iaStorV.sys

O23 - Service: igfx - Intel Corporation - C:\WINDOWS\SYSTEM32\DRIVERS\igdkmd32.sys

O23 - Service: iirsp - Intel Corp./ICP vortex GmbH - C:\WINDOWS\system32\DRIVERS\iirsp.sys

O23 - Service: LSI_FC - LSI Corporation - C:\WINDOWS\system32\DRIVERS\lsi_fc.sys

O23 - Service: LSI_SAS - LSI Corporation - C:\WINDOWS\system32\DRIVERS\lsi_sas.sys

O23 - Service: LSI_SAS2 - LSI Corporation - C:\WINDOWS\system32\DRIVERS\lsi_sas2.sys

O23 - Service: LSI_SCSI - LSI Corporation - C:\WINDOWS\system32\DRIVERS\lsi_scsi.sys

O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.0.285\McCHSvc.exe

O23 - Service: megasas - LSI Corporation - C:\WINDOWS\system32\DRIVERS\megasas.sys

O23 - Service: MegaSR - LSI Corporation, Inc. - C:\WINDOWS\system32\DRIVERS\MegaSR.sys

O23 - Service: nfrd960 - IBM Corporation - C:\WINDOWS\system32\DRIVERS\nfrd960.sys

O23 - Service: Nokia USB Phone Parent Driver (nmwcd) - Nokia - C:\WINDOWS\SYSTEM32\drivers\ccdcmb.sys

O23 - Service: Nokia USB Communication Driver (nmwcdc) - Nokia - C:\WINDOWS\SYSTEM32\drivers\ccdcmbo.sys

O23 - Service: Nokia USB Flashing Phone Parent (nmwcdnsu) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcdnsu.sys

O23 - Service: Nokia USB Flashing Generic (nmwcdnsuc) - Nokia - C:\WINDOWS\SYSTEM32\drivers\nmwcdnsuc.sys

O23 - Service: nvraid - NVIDIA Corporation - C:\WINDOWS\system32\drivers\nvraid.sys

O23 - Service: nvstor - NVIDIA Corporation - C:\WINDOWS\system32\drivers\nvstor.sys

O23 - Service: PCCS Mode Change Filter Driver (pccsmcfd) - Nokia - C:\WINDOWS\SYSTEM32\DRIVERS\pccsmcfd.sys

O23 - Service: Modem Interface USB Device for Legacy Serial Communication (qcusbser) - TCT International Mobile Ltd - C:\WINDOWS\SYSTEM32\DRIVERS\qcusbser.sys

O23 - Service: ql2300 - QLogic Corporation - C:\WINDOWS\system32\DRIVERS\ql2300.sys

O23 - Service: ql40xx - QLogic Corporation - C:\WINDOWS\system32\DRIVERS\ql40xx.sys

O23 - Service: Controlador NT de Realtek 8167 (RTL8167) - Realtek Corporation - C:\WINDOWS\SYSTEM32\DRIVERS\Rt86win7.sys

O23 - Service: Sony Ericsson sef3x1 Device Driver (sef3x1) - Sony Ericsson Mobile Communications - C:\WINDOWS\SYSTEM32\DRIVERS\sef3x1.sys

O23 - Service: SiSRaid2 - Silicon Integrated Systems Corp. - C:\WINDOWS\system32\DRIVERS\SiSRaid2.sys

O23 - Service: SiSRaid4 - Silicon Integrated Systems - C:\WINDOWS\system32\DRIVERS\sisraid4.sys

O23 - Service: smserial - Motorola Inc. - C:\WINDOWS\SYSTEM32\DRIVERS\smserial.sys

O23 - Service: stexstor - Promise Technology - C:\WINDOWS\system32\DRIVERS\stexstor.sys

O23 - Service: TuneUpUtilitiesDrv - TuneUp Software - C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesDriver32.sys

O23 - Service: upperdev - Nokia - C:\WINDOWS\SYSTEM32\DRIVERS\usbser_lowerflt.sys

O23 - Service: UsbserFilt - Nokia - C:\WINDOWS\SYSTEM32\DRIVERS\usbser_lowerfltj.sys

O23 - Service: viaide - VIA Technologies, Inc. - C:\WINDOWS\system32\drivers\viaide.sys

O23 - Service: vsmraid - VIA Technologies Inc.,Ltd - C:\WINDOWS\system32\DRIVERS\vsmraid.sys

O23 - Service: WinRing0_1_2_0 - OpenLibSys.org - C:\Program Files\Razer\Razer Game Booster\Driver\WinRing0.sys



Listado de Servicios (Deshabilitados):

--------------------------------------

O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe

O23 - Service: Bing Bar Update Service (BBSvc) - Microsoft Corporation. - C:\Program Files\Microsoft\BingBar\BBSvc.EXE

O23 - Service: Google Update Servicio (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Update Servicio (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe

O23 - Service: PunkBuster (PnkBstrA) - Unknown owner - C:\Program Files\Electronic Arts\Medal of Honor Airborne\UnrealEngine3\MOHAGame\pb\PnkBstrA.exe (file missing)

O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - C:\Program Files\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)

O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files\Sony\Sony PC Companion\PCCService.exe

O23 - Service: TGCM_ImportWiFiSvc - Telefónica I+D - C:\Program Files\movistar\Escritorio movistar Latam\ImpWiFiSvc.exe



89 Servicios.

10 de Carga Automatica.

69 de Carga Manual.

10 Deshabilitados.

................................

espero que me puedan ayudar.....gracias

Avatar de Usuario
msc hotline sat
Mensajes: 93500
Registrado: 09 Mar 2004, 20:39
Ubicación: BARCELONA (ESPAÑA)
Contactar:

Re: programa que se abre y cierra automaticamente

Mensaje por msc hotline sat » 16 Jul 2013, 13:35

Pues de entrada desinstale el TUNE UP UTILITIES



Tras ello reinicie y comentenos el resultado, gracias



saludos



ms, 16-7-2013

SAND96
Mensajes: 4
Registrado: 14 Jul 2013, 10:27

Re: programa que se abre y cierra automaticamente

Mensaje por SAND96 » 17 Jul 2013, 01:10

Pues no...ya desinstale el Tune Up, la ventan se sigue abriendo y cerrando sola.

aunque en el informe del Elistar me sale lo mismo que antes.



Lista de Acciones (por Acción Directa):

Sospechosa Clave "HKLM\...\Image File Execution Options\ACRORD32.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DTAGENT.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DTIMGEDITOR.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DTPRO.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\EXCEL.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\INFOPATH.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\LAUNCHER.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSACCESS.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSOXMLED.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSPUB.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSTORE.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ONENOTE.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\OUTLOOK.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PCCOMPANION.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\POWERPNT.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SETUP.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\UNINSTALL.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WINWORD.EXE"

"Debugger"=""C:\PROGRAM FILES\TUNEUP UTILITIES 2012\TUAUTOREACTIVATOR32.EXE""



.......................

me recomiendan algun programa o algo para eliminar esto?

si vuelvo a instalar el sistema operativo se elimina la ventana?

Necesito su ayuda porfavor.

Avatar de Usuario
lucl
Mensajes: 6324
Registrado: 17 Ene 2006, 18:09
Ubicación: España
Contactar:

Re: programa que se abre y cierra automaticamente

Mensaje por lucl » 17 Jul 2013, 22:33

Antes de reinstalar el sistema operativo prueba a arrancar el pc en modo seguro



https://foros.zonavirus.com/viewtopic.php?f=5&t=5266



y desinstala el tune up utilities de ese modo, además ejecuta de nuevo elistara y nos vuelves a copiar el resultado. Saludos

Avatar de Usuario
msc hotline sat
Mensajes: 93500
Registrado: 09 Mar 2004, 20:39
Ubicación: BARCELONA (ESPAÑA)
Contactar:

Re: programa que se abre y cierra automaticamente

Mensaje por msc hotline sat » 14 Ago 2013, 08:54

Y vemos que está usando simultáneamente el AVAST y el AVG:





O23 - Service: aswMonFlt - AVAST Software - C:\Windows\system32\drivers\aswMonFlt.sys



O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe



O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe



O23 - Service: WatchDog de AVG (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\avgwdsvc.exe







No deben usarse dos antivirus residentes al mismo tiempo, por poder colisionar y no funcionar correctamente.



Escoja uno de los dos y desinstale el otro.



saludos





ms, 14-8-2013

Responder

Volver a “Foro Virus - Cuentanos tu problema”