Amenaza Bloqueada. Trojan:Win32/Wacatac.D!ml

PARTE 2

==================== Reglas de firewall (Lista blanca) ================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

FirewallRules: [{0D25A0D6-B5BD-4053-8E61-850A6EF25698}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{3AE10EBF-39A7-4247-BFD2-D7AD034BF8F2}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{AD53A691-660A-4C30-8C46-1C5F3CFE62F7}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{B6E3941D-CDE8-42A6-BFF9-D0B1E57C4516}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer Germany GmbH)
FirewallRules: [UDP Query User{37A7AF78-FFBA-40E4-88D9-65DE62C48EF9}C:\users\marco\appdata\local\programs\deckboard\deckboard.exe] => (Allow) C:\users\marco\appdata\local\programs\deckboard\deckboard.exe (Riva Farabi) [Archivo no firmado]
FirewallRules: [TCP Query User{0B725681-FECD-4641-A601-DA3C0D8D96D9}C:\users\marco\appdata\local\programs\deckboard\deckboard.exe] => (Allow) C:\users\marco\appdata\local\programs\deckboard\deckboard.exe (Riva Farabi) [Archivo no firmado]
FirewallRules: [UDP Query User{D595AE49-5BA1-4729-AB2B-01582A349CBD}D:\apex\apex\r5apex.exe] => (Allow) D:\apex\apex\r5apex.exe Ningún archivo
FirewallRules: [TCP Query User{956C4B0F-5BAC-4717-B4CB-F316D69D1B14}D:\apex\apex\r5apex.exe] => (Allow) D:\apex\apex\r5apex.exe Ningún archivo
FirewallRules: [UDP Query User{12E4C888-288A-4A66-89FA-0BFF68E11EFD}D:\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe Ningún archivo
FirewallRules: [TCP Query User{5EC75B48-4F54-47F9-B516-26D91071D37D}D:\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe Ningún archivo
FirewallRules: [{D3452F38-DF5E-429C-A9F2-3374537C82B6}] => (Allow) D:\SteamLibrary\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe Ningún archivo
FirewallRules: [{094537C2-A4E7-4BC5-8A59-1A3E5DB1C35C}] => (Allow) D:\SteamLibrary\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe Ningún archivo
FirewallRules: [UDP Query User{7DDD05DB-5F9B-4EA0-A7B0-CFB691619D7F}D:\steamlibrary\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) D:\steamlibrary\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe Ningún archivo
FirewallRules: [TCP Query User{C7A8E88C-9402-4718-8497-C502D7D2220F}D:\steamlibrary\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) D:\steamlibrary\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe Ningún archivo
FirewallRules: [{BDA45204-BA9E-45D6-A486-27B457310CD7}] => (Allow) D:\SteamLibrary\steamapps\common\Dead by Daylight\DeadByDaylight.exe Ningún archivo
FirewallRules: [{622F0716-AF6B-4AD0-B7C7-41A92A642E73}] => (Allow) D:\SteamLibrary\steamapps\common\Dead by Daylight\DeadByDaylight.exe Ningún archivo
FirewallRules: [UDP Query User{9CEFF04A-4C9A-482C-B25E-6B9C0043B7B2}C:\program files (x86)\java\jre1.8.0_221\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_221\bin\javaw.exe
FirewallRules: [TCP Query User{7C8AC135-0165-442C-BE13-9D83B2322686}C:\program files (x86)\java\jre1.8.0_221\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_221\bin\javaw.exe
FirewallRules: [UDP Query User{B4039B9E-D24C-4593-BE14-EA0A2DEBF637}C:\program files (x86)\zotacfirestorm\firestorm.exe] => (Allow) C:\program files (x86)\zotacfirestorm\firestorm.exe (PC Partner Co.Ltd) [Archivo no firmado]
FirewallRules: [TCP Query User{250C1ECA-E4FE-4968-B71E-77EE431622DB}C:\program files (x86)\zotacfirestorm\firestorm.exe] => (Allow) C:\program files (x86)\zotacfirestorm\firestorm.exe (PC Partner Co.Ltd) [Archivo no firmado]
FirewallRules: [UDP Query User{536D75CD-7414-4D46-8212-22DCA7E8F973}C:\program files (x86)\zotacfirestorm\firestorm.exe] => (Allow) C:\program files (x86)\zotacfirestorm\firestorm.exe (PC Partner Co.Ltd) [Archivo no firmado]
FirewallRules: [TCP Query User{6BD6FC81-09E0-44DB-9981-C9B7A477BF28}C:\program files (x86)\zotacfirestorm\firestorm.exe] => (Allow) C:\program files (x86)\zotacfirestorm\firestorm.exe (PC Partner Co.Ltd) [Archivo no firmado]
FirewallRules: [UDP Query User{B877FFC4-E85E-4B02-991E-CAB08450A4EB}C:\riot games\league of legends\game\league of legends.exe] => (Allow) C:\riot games\league of legends\game\league of legends.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [TCP Query User{9C156A10-A720-47EE-B05B-A81B677FE6F2}C:\riot games\league of legends\game\league of legends.exe] => (Allow) C:\riot games\league of legends\game\league of legends.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [UDP Query User{99538FE1-1ED2-4583-A1A8-08787B758767}C:\users\marco\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\marco\appdata\roaming\utorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [TCP Query User{B1CBD250-ED5B-43EE-94B2-E8C825F41696}C:\users\marco\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\marco\appdata\roaming\utorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [UDP Query User{361EB34A-51B7-493C-94E6-BC1AE92B7331}C:\program files (x86)\ivms-4200 site\ivms-4200 client\client\ivms-4200.video.c\ivms-4200.video.c.exe] => (Allow) C:\program files (x86)\ivms-4200 site\ivms-4200 client\client\ivms-4200.video.c\ivms-4200.video.c.exe (HIKVISION DIGITAL TECHNOLOGY CO.,LTD. -> )
FirewallRules: [TCP Query User{BBB2B66F-FCC0-48C1-8D2D-43106A0D8D20}C:\program files (x86)\ivms-4200 site\ivms-4200 client\client\ivms-4200.video.c\ivms-4200.video.c.exe] => (Allow) C:\program files (x86)\ivms-4200 site\ivms-4200 client\client\ivms-4200.video.c\ivms-4200.video.c.exe (HIKVISION DIGITAL TECHNOLOGY CO.,LTD. -> )
FirewallRules: [UDP Query User{0E3046D7-4856-4BC7-A192-5A44465BE71F}C:\program files (x86)\ivms-4200 site\ivms-4200 client\client\ivms-4200.devicemanagement.c\ivms-4200.devicemanagement.c.exe] => (Allow) C:\program files (x86)\ivms-4200 site\ivms-4200 client\client\ivms-4200.devicemanagement.c\ivms-4200.devicemanagement.c.exe (HIKVISION DIGITAL TECHNOLOGY CO.,LTD. -> )
FirewallRules: [TCP Query User{1C47FCA5-0FDB-494F-836B-963F27F00E54}C:\program files (x86)\ivms-4200 site\ivms-4200 client\client\ivms-4200.devicemanagement.c\ivms-4200.devicemanagement.c.exe] => (Allow) C:\program files (x86)\ivms-4200 site\ivms-4200 client\client\ivms-4200.devicemanagement.c\ivms-4200.devicemanagement.c.exe (HIKVISION DIGITAL TECHNOLOGY CO.,LTD. -> )
FirewallRules: [UDP Query User{4D459440-3AE7-4331-9A49-BE6D76550316}C:\program files (x86)\ivms-4200 site\ivms-4200 client\server\ivms-4200.devicemanagement.s\ivms-4200.devicemanagement.s.exe] => (Allow) C:\program files (x86)\ivms-4200 site\ivms-4200 client\server\ivms-4200.devicemanagement.s\ivms-4200.devicemanagement.s.exe (HIKVISION DIGITAL TECHNOLOGY CO.,LTD. -> )
FirewallRules: [TCP Query User{B99415C3-6EEF-41A6-BF51-768CDDE21FA4}C:\program files (x86)\ivms-4200 site\ivms-4200 client\server\ivms-4200.devicemanagement.s\ivms-4200.devicemanagement.s.exe] => (Allow) C:\program files (x86)\ivms-4200 site\ivms-4200 client\server\ivms-4200.devicemanagement.s\ivms-4200.devicemanagement.s.exe (HIKVISION DIGITAL TECHNOLOGY CO.,LTD. -> )
FirewallRules: [UDP Query User{B0EA0634-FBB8-41F7-BA2C-6211BF1A4823}C:\program files (x86)\ivms-4200 site\nginx\nginx.exe] => (Allow) C:\program files (x86)\ivms-4200 site\nginx\nginx.exe () [Archivo no firmado]
FirewallRules: [TCP Query User{FCA18892-2E31-45BD-9904-DFA7F11CD81C}C:\program files (x86)\ivms-4200 site\nginx\nginx.exe] => (Allow) C:\program files (x86)\ivms-4200 site\nginx\nginx.exe () [Archivo no firmado]
FirewallRules: [UDP Query User{DA38915E-93B3-4138-A5EF-BA75CB10CABF}C:\program files\obs-studio\bin\64bit\obs64.exe] => (Block) C:\program files\obs-studio\bin\64bit\obs64.exe (Hugh Bailey -> OBS)
FirewallRules: [TCP Query User{87D322D5-AB77-4E84-96B3-3DED6D64180F}C:\program files\obs-studio\bin\64bit\obs64.exe] => (Block) C:\program files\obs-studio\bin\64bit\obs64.exe (Hugh Bailey -> OBS)
FirewallRules: [{E6177D24-7150-4DAF-9D58-69CF9BDA9774}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{DA16CA73-B0FA-4059-BD72-C4502C1350E7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{3C0D8EE1-C7B9-4F0A-A1B6-DA6A5CFEA0B6}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{7227476B-2EFB-463B-97DD-3B9763C490A6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{FA2F5D26-CE83-4F90-9959-C5050E3E71E8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [UDP Query User{87B45F98-0D61-4830-9384-42532E1E54D4}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [TCP Query User{59FFCDCF-2B12-4954-86B2-FE628195FE89}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [{B87D6D9E-2E58-4ECB-8B7A-059BFD94E4DB}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{11588E99-C56A-4118-AE92-4B0B664E0C70}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{648AD75B-B0E6-43F0-ACE9-5FA95A0B40B5}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{EF3AAAC1-4DA4-4EBE-B1F7-D8DC2962B397}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [UDP Query User{B0C1F0FE-80CD-4E2B-AF86-1E836B2C787B}C:\program files\ivms-4200 station\ivms-4200\ivms-4200 client\ivms-4200.exe] => (Allow) C:\program files\ivms-4200 station\ivms-4200\ivms-4200 client\ivms-4200.exe (HANGZHOU HIKVISION DIGITAL TECHNOLOGY CO.,LTD. -> )
FirewallRules: [TCP Query User{9D755337-F7C4-43E4-974A-ED0FFAF12407}C:\program files\ivms-4200 station\ivms-4200\ivms-4200 client\ivms-4200.exe] => (Allow) C:\program files\ivms-4200 station\ivms-4200\ivms-4200 client\ivms-4200.exe (HANGZHOU HIKVISION DIGITAL TECHNOLOGY CO.,LTD. -> )
FirewallRules: [UDP Query User{4BAB6E4C-D18F-4402-9EE9-69A31A4F3390}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{94934C8D-A7E4-4A0E-8329-5C00B579D89B}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{10768261-562D-4845-9609-D295DEA4E7E2}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [TCP Query User{3E832DF1-0A2E-415F-BCCA-B45E4E50F814}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [TCP Query User{EB5E32F3-652D-4773-9663-42F2C41CC8CC}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{8E8663A8-5E9E-4A4B-9E2D-CA982678F738}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [{E273D1C1-C1F3-4539-BF18-343EE537D9C5}] => (Allow) d:\program files\txgameassistant\appmarket\AppMarket.exe Ningún archivo
FirewallRules: [{765E9EDA-2CD9-43F1-B95F-BC1A6816998C}] => (Allow) d:\program files\txgameassistant\appmarket\TInst.exe Ningún archivo
FirewallRules: [{E9516A4C-8B42-4038-A2A2-19FD35593ADC}] => (Allow) d:\program files\txgameassistant\appmarket\bugreport.exe Ningún archivo
FirewallRules: [{ABEA31DE-88DF-4488-A5D3-B6E0A82438A2}] => (Allow) d:\program files\txgameassistant\appmarket\QQExternal.exe Ningún archivo
FirewallRules: [{53C8BAD5-A4BB-4EDA-A5E5-91B8A03E4AF7}] => (Allow) d:\program files\txgameassistant\appmarket\GameDownload.exe Ningún archivo
FirewallRules: [{5F7D8359-8C14-4811-AD6B-556D4BD9E9A0}] => (Allow) d:\program files\txgameassistant\appmarket\GF186\TUpdate.exe Ningún archivo
FirewallRules: [{A18F9C2D-DC10-499C-9D49-0C4CEEAA10F4}] => (Allow) d:\program files\txgameassistant\ui\AndroidEmulator.exe Ningún archivo
FirewallRules: [{EF577BF9-A897-4161-90BB-F5852DDE5B0B}] => (Allow) d:\program files\txgameassistant\ui\adb.exe Ningún archivo
FirewallRules: [{5FFC54A0-4EBB-4356-8F2C-49FBA5668E63}] => (Allow) d:\program files\txgameassistant\ui\TInst.exe Ningún archivo
FirewallRules: [{822175D7-5F8B-4B08-97FD-B21BD5658945}] => (Allow) d:\program files\txgameassistant\ui\bugreport.exe Ningún archivo
FirewallRules: [{73C74877-EB32-47D7-A303-A7AFB90DD5CB}] => (Allow) d:\program files\txgameassistant\ui\TxGaDcc.exe Ningún archivo
FirewallRules: [{12305007-017D-4672-9D05-8A192AB38765}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C385989A-65A6-46DE-A0CF-F0B51717377C}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{7F6FDF01-4DD6-46A8-A860-AD79E4177AD0}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{9AE91FE0-4E37-49DE-9456-D061165F4BEA}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{33B91940-85AF-4559-92C3-000D58C3C7E7}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8ACF0318-EB12-49BE-A4B0-D465749E7DCD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{BFFFD239-6C2E-4CCA-A667-343468B1C69D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [TCP Query User{314F0EB0-63A8-4BFF-8A13-D2FB7FBB80DF}C:\users\marco\appdata\local\nvidia corporation\geforcenow\cef\geforcenowstreamer.exe] => (Allow) C:\users\marco\appdata\local\nvidia corporation\geforcenow\cef\geforcenowstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [UDP Query User{F76B6188-F9D9-4F83-BF6D-60D96F98CFBB}C:\users\marco\appdata\local\nvidia corporation\geforcenow\cef\geforcenowstreamer.exe] => (Allow) C:\users\marco\appdata\local\nvidia corporation\geforcenow\cef\geforcenowstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [TCP Query User{993BD994-31C8-43F8-853B-0A07D03F2396}C:\program files\adobe\adobe premiere pro cc 2019\dvaaudiofilterscan.exe] => (Block) C:\program files\adobe\adobe premiere pro cc 2019\dvaaudiofilterscan.exe (Adobe Systems Incorporated -> Adobe)
FirewallRules: [UDP Query User{99E46214-AB00-4168-AE5F-0D5E17676D67}C:\program files\adobe\adobe premiere pro cc 2019\dvaaudiofilterscan.exe] => (Block) C:\program files\adobe\adobe premiere pro cc 2019\dvaaudiofilterscan.exe (Adobe Systems Incorporated -> Adobe)
FirewallRules: [{562D7289-11D9-4C7C-A6E9-B8B3A427BE00}] => (Allow) d:\program files\txgameassistant\ui\AndroidEmulator.exe Ningún archivo
FirewallRules: [{22C4E3D0-7D25-4ABD-9C10-5DBEA933AFB8}] => (Allow) d:\program files\txgameassistant\ui\adb.exe Ningún archivo
FirewallRules: [{04016280-DEEA-4111-9380-3FC344A0790C}] => (Allow) d:\program files\txgameassistant\ui\TInst.exe Ningún archivo
FirewallRules: [{C68362A2-AF79-40E6-975C-8843D9F80018}] => (Allow) d:\program files\txgameassistant\ui\bugreport.exe Ningún archivo
FirewallRules: [{73F81711-F31A-4899-8354-5CF45D950396}] => (Allow) d:\program files\txgameassistant\ui\TxGaDcc.exe Ningún archivo
FirewallRules: [{00F54342-3F08-4AF6-88FD-E42FBB88D4D4}] => (Allow) d:\program files\txgameassistant\appmarket\AppMarket.exe Ningún archivo
FirewallRules: [{DBD8EA77-7F7A-48C1-AFC1-24D30E08255F}] => (Allow) d:\program files\txgameassistant\appmarket\TInst.exe Ningún archivo
FirewallRules: [{3A0B27F6-0047-43B3-85F8-E37876E7C708}] => (Allow) d:\program files\txgameassistant\appmarket\bugreport.exe Ningún archivo
FirewallRules: [{847B6E4C-C1BB-42A4-B826-98AE7B44FCDA}] => (Allow) d:\program files\txgameassistant\appmarket\QQExternal.exe Ningún archivo
FirewallRules: [{B872C221-590C-46F5-97D4-60A5755E4C82}] => (Allow) d:\program files\txgameassistant\appmarket\GameDownload.exe Ningún archivo
FirewallRules: [{2BA0DFC9-5AEE-4D56-B663-48DC3FA61991}] => (Allow) d:\program files\txgameassistant\appmarket\GF186\TUpdate.exe Ningún archivo
FirewallRules: [{6A235A32-70BB-4449-9372-44E9B5B84C8B}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{4343B11A-8522-48B2-B77D-B2A5ABDB1AD9}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{EF1F12A1-4E51-4C0B-8292-4B14EB620619}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{9EA8B4D0-D9DD-4C69-B687-917A02ECFA20}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{5D213663-9480-4E07-B184-42DC50813443}] => (Allow) C:\Program Files (x86)\Apowersoft\ApowerMirror\ApowerMirror.exe (Apowersoft Ltd -> Apowersoft)
FirewallRules: [{0F88CC39-A404-4B29-90E3-4D46087CB541}] => (Allow) C:\Program Files (x86)\Apowersoft\ApowerMirror\ApowerMirror.exe (Apowersoft Ltd -> Apowersoft)
FirewallRules: [TCP Query User{407AC90C-94F3-4354-BB7A-ED8193DB078D}D:\starcraft\call of duty modern warfare\modernwarfare.exe] => (Allow) D:\starcraft\call of duty modern warfare\modernwarfare.exe Ningún archivo
FirewallRules: [UDP Query User{BC58077C-FE09-45B1-A47A-42A97E8415A0}D:\starcraft\call of duty modern warfare\modernwarfare.exe] => (Allow) D:\starcraft\call of duty modern warfare\modernwarfare.exe Ningún archivo
FirewallRules: [{B6125672-32B7-4360-918A-B5D0DC17D23A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{D6424F5F-ED10-4931-AFC0-ED0B6FDBBD13}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{DA4A1559-3F70-4A62-ADB4-5E89AE01D40F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{A45B2BFF-A9E0-45BB-AF0C-E7A3E30959CC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{951B6CC5-3519-41B6-8553-5A201C17DE1D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{C63B419C-3292-4D12-BD21-F1EA7BB993FE}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{1F687274-5FBF-4D53-8D11-5793B6BC4E11}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{B25B1EBE-C56D-46DD-9E9E-C012E9E9B4BD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{7D0C3C00-5B0A-4D5B-B2F3-0D6CA7A3A521}] => (Allow) D:\SteamLibrary\steamapps\common\F1 2019\F1_2019_dx12.exe Ningún archivo
FirewallRules: [{D0F6134E-FB72-4C6C-A543-7A39BDBCEF02}] => (Allow) D:\SteamLibrary\steamapps\common\F1 2019\F1_2019_dx12.exe Ningún archivo
FirewallRules: [{ACE52D63-F499-42A8-8152-1E0E3A7E38B4}] => (Allow) D:\SteamLibrary\steamapps\common\F1 2019\F1_2019.exe Ningún archivo
FirewallRules: [{60A586C9-EB39-4D80-BFF7-C41A5AD2A17E}] => (Allow) D:\SteamLibrary\steamapps\common\F1 2019\F1_2019.exe Ningún archivo
FirewallRules: [{2280C155-F1F6-429E-9348-9676DC9D6564}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\Resolve.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.)
FirewallRules: [{B35C2C9A-C35B-4B7E-88E0-5EF0443957CA}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe () [Archivo no firmado]
FirewallRules: [{99AE4E68-CE8A-47DA-B35B-B927374BBBDC}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\DaVinciPanelDaemon.exe () [Archivo no firmado]
FirewallRules: [{14747A0D-0897-4161-A9D6-F9486B6C1CD7}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe () [Archivo no firmado]
FirewallRules: [{9A719109-0769-4ED5-983A-521A3922BEED}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\EuphonixPanelDaemon.exe () [Archivo no firmado]
FirewallRules: [{236FA325-9895-4478-9909-72EBFC100F0D}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\TangentPanelDaemon.exe () [Archivo no firmado]
FirewallRules: [{5A15091A-1662-4F2A-985B-1C85CCCBFDF4}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\DPDecoder.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [TCP Query User{657072D8-DDDE-4640-B00A-4D57478C8FAB}C:\program files\blackmagic design\davinci resolve\fuscript.exe] => (Allow) C:\program files\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty. Ltd.) [Archivo no firmado]
FirewallRules: [UDP Query User{A3A6B76E-DF46-483B-AEEB-D37454302CFE}C:\program files\blackmagic design\davinci resolve\fuscript.exe] => (Allow) C:\program files\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty. Ltd.) [Archivo no firmado]
FirewallRules: [TCP Query User{9B3F9F36-14AB-4063-83B7-4A5516F755C6}C:\program files\adobe\adobe premiere pro 2020\dvaaudiofilterscan.exe] => (Block) C:\program files\adobe\adobe premiere pro 2020\dvaaudiofilterscan.exe (Adobe Inc. -> Adobe)
FirewallRules: [UDP Query User{AB388C65-9868-4BCC-AA4E-A0C52F33A14C}C:\program files\adobe\adobe premiere pro 2020\dvaaudiofilterscan.exe] => (Block) C:\program files\adobe\adobe premiere pro 2020\dvaaudiofilterscan.exe (Adobe Inc. -> Adobe)
FirewallRules: [{EB179A04-5622-438D-8402-5E70DBE2BECD}] => (Allow) C:\Riot Games\League of Legends\LeagueClient.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [{A773AB8F-0D45-448D-A2B1-3931882E2215}] => (Allow) C:\Riot Games\League of Legends\LeagueClient.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [{CA96C26C-08A8-4C9C-8180-1E98A7A09628}] => (Allow) C:\Users\Marco\AppData\Local\Programs\Opera\67.0.3575.115\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{B7809CFD-5BA5-4640-80C9-0CCBE95E4568}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{70C734E9-E9F8-4DD2-9847-EE7CCBF6837C}C:\program files\adobe\adobe audition cc 2019\dvaaudiofilterscan.exe] => (Allow) C:\program files\adobe\adobe audition cc 2019\dvaaudiofilterscan.exe (Adobe Inc. -> Adobe)
FirewallRules: [UDP Query User{6C3A2D33-D20C-47E2-AA9C-F80A9BF2D5DE}C:\program files\adobe\adobe audition cc 2019\dvaaudiofilterscan.exe] => (Allow) C:\program files\adobe\adobe audition cc 2019\dvaaudiofilterscan.exe (Adobe Inc. -> Adobe)
FirewallRules: [{CDCD890D-524F-4BCF-BC3A-4F248BE83F75}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.130.658.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{E12A4BF5-FE8E-497F-9D56-3D56A57E1C5F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.130.658.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{CF2B11F2-5847-4261-92A0-214DCEAE7532}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.130.658.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{85FCF42D-494D-43C7-B6A0-DB2C5938BEE1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.130.658.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{9E7DE897-EA85-4DDD-8A88-429FEC27A79B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.130.658.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{182C6B96-4520-46C0-AC11-3F38CDABA531}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.130.658.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{8446CF57-59C3-449D-BE36-430A0BE668A8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.130.658.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{2275B4B9-2C21-4E01-9A76-646DA9715B74}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.130.658.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{35D5F839-57CD-45C6-87D5-195148C16BD7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{02F31F45-99F9-4B9F-AC9A-1407269DE45C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{0E00CAEB-DE66-4F64-B77C-3E5E03C51702}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{474A8E21-45D1-40AD-AF03-0C83DE0988C1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{D4395F73-C155-493A-AC24-D070D3398196}] => (Allow) C:\Users\Marco\AppData\Local\Programs\Opera\67.0.3575.137\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{EF91419C-4176-4EDB-BF36-47188C54C62D}] => (Allow) C:\Program Files (x86)\Google\Chrome Remote Desktop\83.0.4103.2\remoting_host.exe (Google LLC -> Google Inc.)
FirewallRules: [{A3CB5932-13E4-4D90-8E89-96A275417ED9}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed II\AssassinsCreedIIGame.exe (Ubisoft Entertainment -> )
FirewallRules: [{E9003DB9-A3DC-491E-BF4B-7C35D193D5EA}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed II\AssassinsCreedIIGame.exe (Ubisoft Entertainment -> )

==================== Puntos de Restauración =========================

05-04-2020 21:33:46 JRT Pre-Junkware Removal
13-04-2020 21:17:48 Windows Update
15-04-2020 22:33:23 Instalado Microsoft Visual C++ 2005 Redistributable
16-04-2020 16:48:04 JRT Pre-Junkware Removal

==================== Dispositivos defectuosos en el Administrador de dispositivos ============


==================== Errores del registro de eventos: ========================

Errores de aplicación:
==================
Error: (04/16/2020 04:54:57 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (148,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (04/16/2020 04:45:44 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: wmiprvse.exe, versión: 10.0.18362.1, marca de tiempo: 0x2b37314e
Nombre del módulo con errores: ntdll.dll, versión: 10.0.18362.719, marca de tiempo: 0x64d10ee0
Código de excepción: 0xc0000374
Desplazamiento de errores: 0x00000000000f92a9
Identificador del proceso con errores: 0x1498
Hora de inicio de la aplicación con errores: 0x01d6143844bb0e60
Ruta de acceso de la aplicación con errores: C:\WINDOWS\system32\wbem\wmiprvse.exe
Ruta de acceso del módulo con errores: C:\WINDOWS\SYSTEM32\ntdll.dll
Identificador del informe: 5e8fb3bc-c9c8-47e9-884c-a1bafe786711
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:

Error: (04/16/2020 04:34:38 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (15324,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (04/16/2020 04:24:56 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (12208,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (04/16/2020 04:10:25 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (6688,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (04/16/2020 03:57:10 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1052,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (04/16/2020 03:36:41 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: i86.exe, versión: 2.8.4.8, marca de tiempo: 0x53bcf615
Nombre del módulo con errores: KERNELBASE.dll, versión: 10.0.18362.752, marca de tiempo: 0x50555798
Código de excepción: 0xc0000409
Desplazamiento de errores: 0x00114192
Identificador del proceso con errores: 0x680
Hora de inicio de la aplicación con errores: 0x01d6142ebae51183
Ruta de acceso de la aplicación con errores: C:\Users\Marco\AppData\Local\Temp\2hi\i86.exe
Ruta de acceso del módulo con errores: C:\WINDOWS\System32\KERNELBASE.dll
Identificador del informe: 40f0ebde-7278-4bab-acc3-78aaca914b2f
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:

Error: (04/16/2020 03:32:41 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7656,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.


Errores del sistema:
=============
Error: (04/16/2020 04:48:13 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: El servicio NVIDIA LocalSystem Container terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 6000 milisegundos: Reiniciar el servicio.

Error: (04/16/2020 04:48:13 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: El servicio NVIDIA Display Container LS terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 6000 milisegundos: Reiniciar el servicio.

Error: (04/16/2020 04:46:35 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-PKRQQMV)
Description: No se puede iniciar un servidor DCOM: AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r!App.AppXgrtg5zk0qzd58y4kdyd4g0wpzdp7rhmf.mca como No disponible/No disponible. Error 
"2147958031"
al iniciar este comando:
"C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe" -ServerName:App.AppXj7d2pwbjt1by8j1s5wak729xa46cf4br.mca

Error: (04/16/2020 04:46:34 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-PKRQQMV)
Description: No se puede iniciar un servidor DCOM: AdobeNotificationClient_1.0.1.22_x86__enpm4xejd91yc!App.AppXqpex5tm0c07wf9dx3gww6zdf2gfseeyd.mca como No disponible/No disponible. Error 
"2147958031"
al iniciar este comando:
"C:\Program Files\WindowsApps\AdobeNotificationClient_1.0.1.22_x86__enpm4xejd91yc\AdobeNotificationClient.exe" -ServerName:App.AppXbdz14xebceycqvrazxqtnx89wn9e0ebz.mca

Error: (04/16/2020 04:44:54 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio QMEmulatorService no pudo iniciarse debido al siguiente error: 
El sistema no puede encontrar el archivo especificado.

Error: (04/16/2020 04:44:24 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: El servicio NVIDIA LocalSystem Container terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 6000 milisegundos: Reiniciar el servicio.

Error: (04/16/2020 04:44:23 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: El servicio Microsoft Office Click-to-Run Service terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 0 milisegundos: Reiniciar el servicio.

Error: (04/16/2020 04:44:23 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio Razer Chroma SDK Server se terminó de manera inesperada. Esto ha sucedido 1 veces.


Windows Defender:
===================================
Date: 2020-04-16 15:37:07.846
Description: 
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para más información, consulta lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Wacatac.D!ml&threatid=2147749373&enterprise=0
Nombre: Trojan:Win32/Wacatac.D!ml
Id.: 2147749373
Gravedad: Grave
Categoría: Caballo de Troya
Ruta de acceso: file:_C:\Users\Marco\AppData\Local\Temp\2hi\i86.exe; process:_pid:1664,ProcessStart:132315429990633859
Origen de detección: Equipo local
Tipo de detección: FastPath
Origen de detección: Sistema
Usuario: NT AUTHORITY\SYSTEM
Nombre de proceso: C:\Users\Marco\AppData\Local\Temp\2hi\i86.exe
Versión de inteligencia de seguridad: AV: 1.313.1687.0, AS: 1.313.1687.0, NIS: 1.313.1687.0
Versión de motor: AM: 1.1.16900.4, NIS: 1.1.16900.4

Date: 2020-04-16 15:37:07.344
Description: 
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para más información, consulta lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Wacatac.D!ml&threatid=2147749373&enterprise=0
Nombre: Trojan:Win32/Wacatac.D!ml
Id.: 2147749373
Gravedad: Grave
Categoría: Caballo de Troya
Ruta de acceso: file:_C:\Users\Marco\AppData\Local\Temp\2hi\i86.exe; process:_pid:1664,ProcessStart:132315429990633859
Origen de detección: Equipo local
Tipo de detección: FastPath
Origen de detección: Protección en tiempo real
Usuario: DESKTOP-PKRQQMV\Marco
Nombre de proceso: C:\Users\Marco\AppData\Local\Temp\2hi\i86.exe
Versión de inteligencia de seguridad: AV: 1.313.1687.0, AS: 1.313.1687.0, NIS: 1.313.1687.0
Versión de motor: AM: 1.1.16900.4, NIS: 1.1.16900.4

Date: 2020-04-16 15:36:54.591
Description: 
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para más información, consulta lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Wacatac.D!ml&threatid=2147749373&enterprise=0
Nombre: Trojan:Win32/Wacatac.D!ml
Id.: 2147749373
Gravedad: Grave
Categoría: Caballo de Troya
Ruta de acceso: file:_C:\Users\Marco\AppData\Local\Temp\2hi\i86.exe; process:_pid:1664,ProcessStart:132315429990633859
Origen de detección: Equipo local
Tipo de detección: FastPath
Origen de detección: Sistema
Usuario: NT AUTHORITY\SYSTEM
Nombre de proceso: C:\Users\Marco\AppData\Local\Temp\2hi\i86.exe
Versión de inteligencia de seguridad: AV: 1.313.1687.0, AS: 1.313.1687.0, NIS: 1.313.1687.0
Versión de motor: AM: 1.1.16900.4, NIS: 1.1.16900.4

Date: 2020-04-16 15:36:40.779
Description: 
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para más información, consulta lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Wacatac.D!ml&threatid=2147749373&enterprise=0
Nombre: Trojan:Win32/Wacatac.D!ml
Id.: 2147749373
Gravedad: Grave
Categoría: Caballo de Troya
Ruta de acceso: file:_C:\Users\Marco\AppData\Local\Temp\2hi\i86.exe
Origen de detección: Equipo local
Tipo de detección: FastPath
Origen de detección: Protección en tiempo real
Usuario: DESKTOP-PKRQQMV\Marco
Nombre de proceso: C:\Users\Marco\AppData\Local\Temp\2hi\i86.exe
Versión de inteligencia de seguridad: AV: 1.313.1687.0, AS: 1.313.1687.0, NIS: 1.313.1687.0
Versión de motor: AM: 1.1.16900.4, NIS: 1.1.16900.4

Date: 2020-04-09 13:06:02.807
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {538068C3-EB1F-41C7-851B-815FE0B6A069}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

CodeIntegrity:
===================================

Date: 2020-04-16 16:55:04.649
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2020-04-16 16:55:04.647
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2020-04-16 16:55:01.526
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2020-04-16 16:55:01.525
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2020-04-16 16:52:37.762
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2020-04-16 16:52:37.761
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2020-04-16 16:52:37.155
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2020-04-16 16:52:37.154
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

==================== Información de la memoria =========================== 

BIOS: Intel Corp. BEH6110H.86A.0120.2013.1112.1412 11/12/2013
Placa base: Intel Corporation DH61CR
Procesador: Intel(R) Core(TM) i7-3770 CPU @ 3.40GHz
Porcentaje de memoria en uso: 25%
RAM física total: 16352.09 MB
RAM física disponible: 12165.64 MB
Virtual total: 17376.09 MB
Virtual disponible: 11629.56 MB

==================== Unidades ================================

Drive c: () (Fixed) (Total:208.48 GB) (Free:29.46 GB) NTFS

\\?\Volume{5b3eb404-0000-0000-0000-100000000000}\ (Reservado para el sistema) (Fixed) (Total:0.54 GB) (Free:0.11 GB) NTFS
\\?\Volume{5b3eb404-0000-0000-0000-304134000000}\ () (Fixed) (Total:0.58 GB) (Free:0.08 GB) NTFS

==================== MBR & Tabla de particiones ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 232.9 GB) (Disk ID: 5B3EB404)
Partition 1: (Active) - (Size=549 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=208.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=592 MB) - (Type=27)

==================== Final de Addition.txt =======================