[code]
Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 19-04-2020
Ejecutado por Jose luis (administrador) sobre JOSE (Hewlett-Packard 500-108es) (19-04-2020 17:18:20)
Ejecutado desde C:\Users\Jose luis\Desktop
Perfiles cargados: Jose luis (Perfiles disponibles: Jose luis & Carla & Guadalupe & CARLILLA)
Platform: Windows 10 Home Versión 1703 15063.483 (X64) Idioma: Español (España, internacional)
Navegador predeterminado: Chrome
Modo de Inicio: Normal
Tutorial para Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Procesos (Lista blanca) =================
(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(CyberLink Corp. -> CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <10>
(Hewlett-Packard Company -> HP) C:\Windows\System32\HPSIsvc.exe
(Integrated Device Technology Inc. -> Hewlett-Packard ) [Archivo no firmado] C:\Program Files\IDT\WDM\Beats64.exe
(Lexmark International, Inc. -> ) C:\Windows\System32\lxctcoms.exe
(Lexmark International, Inc. -> ) C:\Program Files (x86)\Lexmark 5400 Series\lxctmon.exe
(Lexmark International, Inc. -> Lexmark International Inc.) C:\Program Files (x86)\Lexmark 5400 Series\ezprint.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe <2>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Jose luis\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\InstallAgentUserBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(TomTom International BV -> TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe
(TomTom International BV -> TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
==================== Registro (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Run: [BeatsOSDApp] => C:\Program Files\IDT\WDM\beats64.exe [41664 2012-08-23] (Integrated Device Technology Inc. -> Hewlett-Packard ) [Archivo no firmado]
HKLM\...\Run: [lxctmon.exe] => C:\Program Files (x86)\Lexmark 5400 Series\lxctmon.exe [291760 2007-03-19] (Lexmark International, Inc. -> )
HKLM\...\Run: [EzPrint] => C:\Program Files (x86)\Lexmark 5400 Series\ezprint.exe [82864 2007-03-19] (Lexmark International, Inc. -> Lexmark International Inc.)
HKLM\...\Run: [LXCTCATS] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\LXCTtime.dll [31744 2006-11-21] (Microsoft Windows Hardware Compatibility Publisher -> Lexmark International Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [KeePass 2 PreLoad] => C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [2756672 2016-03-09] (Open Source Developer, Dominik Reichl -> Dominik Reichl)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [Lexmark 5400 Series] => C:\Program Files (x86)\Lexmark 5400 Series\fm3032.exe [304048 2007-03-19] (Lexmark International, Inc. -> )
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-09-05] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
HKLM-x32\...\Run: [WSVCUUpdateHelper.exe] => C:\Program Files (x86)\Wondershare\Video Converter Free\WSVCUUpdateHelper.exe
HKU\S-1-5-21-3983175719-3118912899-1399192978-1001\...\Run: [TomTomHOME.exe] => C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [248176 2014-06-05] (TomTom International BV -> TomTom)
HKU\S-1-5-21-3983175719-3118912899-1399192978-1001\...\Run: [GarminExpressTrayApp] => "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
HKU\S-1-5-18\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [30796352 2018-10-24] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries)
HKLM\Software\Microsoft\Active Setup\Installed Components: [>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] -> %SystemRoot%\inf\unregmp2.exe /ShowWMP
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.163\Installer\chrmstp.exe [2020-04-07] (Google LLC -> Google LLC)
GroupPolicyUsers\S-1-5-21-3983175719-3118912899-1399192978-1007\User: Restricción <==== ATENCIÓN
GroupPolicyUsers\S-1-5-21-3983175719-3118912899-1399192978-1005\User: Restricción <==== ATENCIÓN
GroupPolicyUsers\S-1-5-21-3983175719-3118912899-1399192978-1004\User: Restricción <==== ATENCIÓN
GroupPolicyUsers\S-1-5-21-3983175719-3118912899-1399192978-1001\User: Restricción <==== ATENCIÓN
==================== Tareas programadas (Lista blanca) ============
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
Task: {0B1AA4E9-B1CC-4DF6-B65B-CF4EC92E7895} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe
Task: {0DDB73BB-E9A8-48C7-85F5-43E1321ED4B3} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {1245AE1C-28DB-44C4-AF1C-A247E987569E} - \Safer-Networking\Spybot - Search and Destroy\Scan the system -> Ningún archivo <==== ATENCIÓN
Task: {12DC55F9-66B7-4521-8E44-E13008939F8D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-30] (Google Inc -> Google Inc.)
Task: {1435C042-1D82-4BFB-BA9F-1675E4BBF8EB} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Ningún archivo <==== ATENCIÓN
Task: {14B62DAC-034B-46D1-95DB-C49DF49CED0A} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Ningún archivo <==== ATENCIÓN
Task: {1A2EF7B6-DCAD-4099-BFBC-3A3EEEB4874F} - \WPD\SqmUpload_S-1-5-21-3983175719-3118912899-1399192978-1005 -> Ningún archivo <==== ATENCIÓN
Task: {1BB25231-B4FA-450D-A74D-F6930DC6DC5C} - \WPD\SqmUpload_S-1-5-21-3983175719-3118912899-1399192978-1007 -> Ningún archivo <==== ATENCIÓN
Task: {1D42E14D-FF75-46B2-A779-135DF09F34DB} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Ningún archivo <==== ATENCIÓN
Task: {2032629A-D5E5-45A4-8019-EF6EEC2862B7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-30] (Google Inc -> Google Inc.)
Task: {30CE5829-A456-4ED9-B8B3-56DDBF40D854} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\BrowserChoice\browserchoice.exe
Task: {3141AAC7-DE44-4B29-9D2D-F58CA6F46ABD} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1}
Task: {3499F7BC-998D-4110-A090-1CFFA5018663} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Ningún archivo <==== ATENCIÓN
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe
Task: {36EFD748-3B72-4029-83A7-CFB70A2A1FD7} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload => {EBF00FCB-0769-4B81-9BEC-6C05514111AA}
Task: {38743FC0-944D-40CA-8E8C-76E770D1A589} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [126152 2020-04-15] (Mozilla Corporation -> Mozilla Foundation)
Task: {3E1B2C7E-BBDF-4E75-A329-04C16F2DD8AE} - System32\Tasks\HPCeeScheduleForJose luis => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [91704 2010-09-14] (Hewlett-Packard Company -> Hewlett-Packard)
Task: {44C05CAE-68DD-4D81-BABC-2EAC452E9185} - \Safer-Networking\Spybot - Search and Destroy\Check for updates -> Ningún archivo <==== ATENCIÓN
Task: {50D2C867-B992-46C9-B3AB-096E414CCC32} - System32\Tasks\GoogleUpdateTaskMachineCore1d35fc28de4502f => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-30] (Google Inc -> Google Inc.)
Task: {5A3FB241-0B11-4EA5-BC66-0D9F1B406040} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\BthSQM => {C8367320-6F85-11E0-A1F0-0800200C9A66} C:\WINDOWS\System32\BthTelemetry.dll [31744 2017-03-18] (Microsoft Windows -> Microsoft Corporation)
Task: {6313D1D1-6F52-4461-B097-BABA2A36D072} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [39920 2018-10-24] (Garmin International, Inc. -> )
Task: {6A6F3AF5-55F1-4255-B032-10AC62B36525} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Ningún archivo <==== ATENCIÓN
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}
Task: {725A0185-A379-4E9E-BFB9-AE5F7823A68F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
Task: {7C0C03ED-4D20-4255-B657-BB8A2195D44E} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E}
Task: {7F96FAEF-5DDF-4114-85E8-042522077683} - \WPD\SqmUpload_S-1-5-21-3983175719-3118912899-1399192978-1001 -> Ningún archivo <==== ATENCIÓN
Task: {8028A273-CD12-4B91-BC11-493945BA6F41} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Ningún archivo <==== ATENCIÓN
Task: {84D04020-4F84-4C67-925F-F7339D647FC9} - System32\Tasks\CLMLSvc_P2G8 => c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [110144 2013-03-12] (CyberLink Corp. -> CyberLink)
Task: {85A053CB-907C-4E22-957C-C838DBF43949} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task => {1B1F472E-3221-4826-97DB-2C2324D389AE}
Task: {88A0C421-2FE6-4C63-A566-C41DDE1AA7D1} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Ningún archivo <==== ATENCIÓN
Task: {89DB11BE-3797-4DB7-BE48-69011DCC8D4D} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Ningún archivo <==== ATENCIÓN
Task: {9460C3BA-4E04-4994-A4CD-A4F7F3629E02} - \Safer-Networking\Spybot - Search and Destroy\Refresh immunization -> Ningún archivo <==== ATENCIÓN
Task: {94CD9053-54E4-4574-ADC3-46C128E1EEF8} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61}
Task: {9DE20837-6E66-40E2-B823-1968FF59ACD8} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_23_0_0_207_pepper.exe [1224896 2016-12-03] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {9E61C8D7-DFE3-4B53-88DF-71F1F6022487} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Ningún archivo <==== ATENCIÓN
Task: {B48CC9F6-9E49-483F-9402-BA47B492EDF8} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {BF67746E-D9CD-4062-921D-A3C49F69DCAC} - System32\Tasks\Microsoft\Windows\rempl\shell-maintenance => C:\Program Files\rempl\remsh.exe
Task: {C1F3FB78-67D0-4B6B-AFC0-BBF11F1EA36E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe
Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371}
Task: {D07606A0-0810-4E89-ABA9-3CF69CF5BA5A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe
Task: {D35DC6A8-6C2C-4C03-A612-F9884C1DA8DD} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe
Task: {DB437BFD-F45B-41A3-8E60-D368AD337A61} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Ningún archivo <==== ATENCIÓN
Task: {DB664755-0A09-4C2C-B8FC-AD1A55FCEE4E} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Ningún archivo <==== ATENCIÓN
Task: {E36A871D-D15D-4EF3-BEA3-469EDB40988D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPSFReport.exe
Task: {F143B6F9-04DC-40CC-B022-4A5BEE5138B1} - \WPD\SqmUpload_S-1-5-21-3983175719-3118912899-1399192978-1004 -> Ningún archivo <==== ATENCIÓN
Task: {F50F9C5A-8AB7-403A-AEC2-E4D19BF05AAA} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_23_0_0_207_pepper.exe
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForJose luis.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Internet (Lista blanca) ====================
(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)
Winsock: Catalog5 07 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704 2011-08-31] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 07 C:\Program Files\Bonjour\mdnsNSP.dll [132968 2011-08-31] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 80.58.61.250 80.58.61.254
Tcpip\..\Interfaces\{e423c327-f3d7-4aa6-9c36-991afd7d0b62}: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{e6f4e342-eb46-45ee-9014-6bebb9068199}: [DhcpNameServer] 80.58.61.250 80.58.61.254
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPCON13/31
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCON13/31
HKU\S-1-5-21-3983175719-3118912899-1399192978-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.es/
HKU\S-1-5-21-3983175719-3118912899-1399192978-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCON13/31
URLSearchHook: [S-1-5-21-3983175719-3118912899-1399192978-1004-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-04192020171654164] ATENCIÓN => No se encuentra URLSearchHook predeterminado
SearchScopes: HKLM -> {67A06221-294A-46FE-91E6-9391F74DA707} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/1185-154363-12092-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
SearchScopes: HKLM-x32 -> {67A06221-294A-46FE-91E6-9391F74DA707} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/1185-154363-12092-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3983175719-3118912899-1399192978-1001 -> {67A06221-294A-46FE-91E6-9391F74DA707} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-3983175719-3118912899-1399192978-1001 -> {c2b8e594-d284-ef0b-2c66-48a9c98914bc} URL = hxxps://search.gmx.com/web/result?origin=p_jkld_es&p=jkld&p_brw=ie&p_mkt=es&p_tsrc=301&p_w=y0w45&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3983175719-3118912899-1399192978-1001 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/1185-154363-12092-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2015-09-22] (Eyeo GmbH -> Eyeo GmbH)
BHO-x32: Lexmark Barra de herramientas -> {1017A80C-6F09-4548-A84D-EDD6AC9525F0} -> C:\Program Files\Lexmark Toolbar\toolband.dll [2006-08-09] () [Archivo no firmado]
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\ssv.dll [2017-10-29] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-10-29] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2015-09-22] (Eyeo GmbH -> Eyeo GmbH)
Toolbar: HKLM-x32 - Lexmark Barra de herramientas - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll [2006-08-09] () [Archivo no firmado]
Toolbar: HKU\S-1-5-21-3983175719-3118912899-1399192978-1001 -> Sin Nombre - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Ningún archivo
FireFox:
========
FF DefaultProfile: ivhtrqef.default
FF ProfilePath: C:\Users\Jose luis\AppData\Roaming\TomTom\HOME\Profiles\1f865sas.default [2014-07-20]
FF Extension: (Emulator) - C:\Users\Jose luis\AppData\Roaming\TomTom\HOME\Profiles\1f865sas.default\Extensions\[email protected] [2014-07-20] [Heredado] [no firmado]
FF Extension: (Map status indicator) - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\[email protected] [2014-07-20] [Heredado] [no firmado]
FF ProfilePath: C:\Users\Jose luis\AppData\Roaming\Mozilla\Firefox\Profiles\ivhtrqef.default [2020-04-18]
FF Homepage: Mozilla\Firefox\Profiles\ivhtrqef.default -> hxxps://search.gmx.com/start?src=p_jkld_es&p=jkld&p_brw=ff&p_mkt=es&p_tsrc=301&p_w=y0w45
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\dtplugin\npDeployJava1.dll [2017-10-29] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\plugin2\npjp2.dll [2017-10-29] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2015-09-24] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\Jose luis\AppData\Local\Google\Chrome\User Data\Default [2020-04-19]
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxps://www.google.com/?hl=es&gws_rd=ssl"
CHR Extension: (Presentaciones) - C:\Users\Jose luis\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-29]
CHR Extension: (Documentos) - C:\Users\Jose luis\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-29]
CHR Extension: (Google Drive) - C:\Users\Jose luis\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-01-04]
CHR Extension: (YouTube) - C:\Users\Jose luis\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-30]
CHR Extension: (Adblock Plus - bloqueador de anuncios gratis) - C:\Users\Jose luis\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2020-04-06]
CHR Extension: (Búsqueda de Google) - C:\Users\Jose luis\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-01-04]
CHR Extension: (Hojas de cálculo) - C:\Users\Jose luis\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-29]
CHR Extension: (Extensión de Trusted Shops para Google Chrome) - C:\Users\Jose luis\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcpnemckonbbmnoakbjgjkgokkbaeo [2020-03-04]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Jose luis\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-06]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Jose luis\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-28]
CHR Extension: (Gmail) - C:\Users\Jose luis\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-01]
CHR Extension: (Chrome Media Router) - C:\Users\Jose luis\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-04]
==================== Servicios (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
R2 AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [263200 2015-07-31] (Microsoft Windows Hardware Compatibility Publisher -> AMD)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [351944 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R2 CLHNServiceForPowerDVD12; c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe [89864 2013-06-10] (CyberLink Corp. -> CyberLink Corp.)
R2 CyberLink PowerDVD 12 Media Server Monitor Service; c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [77576 2013-06-10] (CyberLink Corp. -> CyberLink)
R2 CyberLink PowerDVD 12 Media Server Service; c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [294664 2013-06-10] (CyberLink Corp. -> CyberLink)
R2 HPSIService; C:\WINDOWS\system32\HPSIsvc.exe [126880 2012-09-27] (Hewlett-Packard Company -> HP)
R2 lxct_device; C:\WINDOWS\system32\lxctcoms.exe [566192 2007-03-19] (Lexmark International, Inc. -> )
R2 lxct_device; C:\WINDOWS\SysWOW64\lxctcoms.exe [537520 2007-03-19] (Lexmark International, Inc. -> )
S2 MapsBroker; C:\WINDOWS\System32\moshost.dll [90624 2017-03-18] (Microsoft Corporation) [Archivo no firmado]
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6933272 2020-04-19] (Malwarebytes Inc -> Malwarebytes)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation -> Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-07-14] (Microsoft Corporation -> Microsoft Corporation)
S2 HP Support Assistant Service; "C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe" [X]
S3 WsDrvInst; "C:\Program Files (x86)\Wondershare\Video Converter Free\Transfer\DriverInstall.exe" [X]
===================== Controladores (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
S0 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [21629472 2015-07-31] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [680992 2015-07-31] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R0 amdkmpfd; C:\WINDOWS\System32\drivers\amdkmpfd.sys [82696 2015-07-31] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [102912 2015-05-28] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
S3 DrvAgent64; C:\WINDOWS\SysWOW64\Drivers\DrvAgent64.SYS [13824 2015-06-04] (Phoenix Technologies) [Archivo no firmado]
R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [153312 2020-04-19] (Malwarebytes Corporation -> Malwarebytes)
R3 L1C; C:\WINDOWS\System32\drivers\L1C63x64.sys [121344 2017-03-18] (Microsoft Windows -> Qualcomm Atheros Co., Ltd.)
R3 libusb0; C:\WINDOWS\system32\DRIVERS\libusb0.sys [44480 2011-05-17] (Akeo Consulting -> hxxp://libusb-win32.sourceforge.net)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [214496 2020-04-19] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2020-04-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [195432 2020-04-19] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [73584 2020-04-19] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248968 2020-04-19] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [124560 2020-04-19] (Malwarebytes Inc -> Malwarebytes)
S3 mvusbews; C:\WINDOWS\System32\Drivers\mvusbews.sys [20480 2012-12-24] (Microsoft Windows Hardware Compatibility Publisher -> Marvell Semiconductor, Inc.)
R3 netr28x; C:\WINDOWS\System32\drivers\netr28x.sys [2537984 2017-03-18] (Microsoft Windows -> MediaTek Inc.)
R2 ntk_PowerDVD12; c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\ntk_PowerDVD12_64.sys [84168 2013-03-12] (CyberLink Corp. -> Cyberlink Corp.)
S3 SDFRd; C:\WINDOWS\System32\drivers\SDFRd.sys [31128 2017-03-18] (Microsoft Windows -> )
S3 ssudobex; C:\WINDOWS\system32\DRIVERS\ssudobex.sys [206080 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.(www.devguru.co.kr))
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Windows -> Microsoft Corporation)
R3 WinDriver6; C:\WINDOWS\system32\drivers\windrvr6.sys [254464 2019-07-19] (Microsoft Windows Hardware Compatibility Publisher -> Jungo)
==================== NetSvcs (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
==================== Un mes (creado) ===================
(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)
2020-04-19 17:18 - 2020-04-19 17:19 - 000030862 _____ C:\Users\Jose luis\Desktop\FRST.txt
2020-04-19 17:16 - 2020-04-19 17:19 - 000000000 ____D C:\FRST
2020-04-19 17:11 - 2020-04-19 17:06 - 002281984 _____ (Farbar) C:\Users\Jose luis\Desktop\FRST64.exe
2020-04-19 16:54 - 2020-04-19 16:54 - 000000000 ___HD C:\OneDriveTemp
2020-04-19 16:53 - 2020-04-19 16:53 - 000073584 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2020-04-19 16:53 - 2020-04-19 16:53 - 000000000 ____D C:\Users\Jose luis\AppData\LocalLow\IGDump
2020-04-19 16:52 - 2020-04-19 16:52 - 000248968 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2020-04-19 16:52 - 2020-04-19 16:52 - 000195432 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2020-04-19 16:52 - 2020-04-19 16:52 - 000124560 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2020-04-19 09:52 - 2020-04-19 09:52 - 000214496 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2020-04-19 09:52 - 2020-04-19 09:52 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2020-04-19 09:52 - 2020-04-19 09:52 - 000020936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2020-04-19 09:52 - 2020-04-19 09:52 - 000002028 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2020-04-19 09:52 - 2020-04-19 09:52 - 000000000 ____D C:\Users\Jose luis\AppData\Local\mbamtray
2020-04-19 09:52 - 2020-04-19 09:52 - 000000000 ____D C:\Users\Jose luis\AppData\Local\mbam
2020-04-19 09:52 - 2020-04-19 09:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2020-04-19 09:52 - 2020-04-19 09:52 - 000000000 ____D C:\Program Files\Malwarebytes
2020-04-19 03:44 - 2020-04-19 03:44 - 000007602 _____ C:\Users\Jose luis\AppData\Local\Resmon.ResmonCfg
2020-04-18 17:34 - 2020-04-18 17:34 - 000336079 _____ C:\Users\Jose luis\Downloads\MOD.036-3_signed.pdf
2020-04-18 17:34 - 2020-04-18 17:34 - 000176591 _____ C:\Users\Jose luis\Downloads\Certificado+cuotas+RETA_signed.pdf
2020-04-18 17:33 - 2020-04-18 17:33 - 000456317 _____ C:\Users\Jose luis\Downloads\JustificanteSolicitud.pdf
2020-04-18 17:06 - 2020-04-18 17:06 - 000038347 _____ C:\Users\Jose luis\.pdfbox.cache
2020-04-18 17:03 - 2020-04-18 17:23 - 000000000 ____D C:\Users\Jose luis\.afirma
2020-04-18 17:03 - 2020-04-18 17:03 - 000001014 _____ C:\Users\Public\Desktop\AutoFirma.lnk
2020-04-18 17:03 - 2020-04-18 17:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoFirma
2020-04-18 16:58 - 2020-04-18 17:03 - 000000000 ____D C:\Program Files\AutoFirma
2020-04-18 16:53 - 2020-04-18 16:54 - 196393977 _____ C:\Users\Jose luis\Downloads\AutoFirma64.zip
2020-04-18 16:24 - 2020-04-18 16:24 - 002905441 _____ C:\Users\Jose luis\Downloads\Mensaje_sin_título.zip
2020-04-18 15:02 - 2020-04-18 15:02 - 000305719 _____ C:\Users\Jose luis\Downloads\2807F1.pdf
2020-04-18 04:36 - 2020-04-18 04:41 - 000000000 ____D C:\Users\Jose luis\Downloads\Artico [1080p][Castellano][wWw.EliteTorrent.IO]
2020-04-18 04:36 - 2020-04-18 04:36 - 000011777 _____ C:\Users\Jose luis\Downloads\Artico_1080p_Castellano.torrent
2020-04-18 04:28 - 2020-04-18 04:41 - 000000000 ____D C:\Users\Jose luis\Downloads\Kreepers [1080p][Castellano][wWw.EliteTorrent.IO]
2020-04-18 04:28 - 2020-04-18 04:28 - 000012783 _____ C:\Users\Jose luis\Downloads\Kreepers_1080p_Castellano.torrent
2020-04-18 04:22 - 2020-04-18 04:41 - 000000000 ____D C:\Users\Jose luis\AppData\LocalLow\uTorrent
2020-04-18 04:15 - 2020-04-18 04:29 - 000000000 ____D C:\Users\Jose luis\Downloads\Por amor o por dinero [1080p][Castellano][wWw.EliteTorrent.BZ]
2020-04-18 04:15 - 2020-04-18 04:15 - 000017830 _____ C:\Users\Jose luis\Downloads\Por_amor_o_por_dinero_MicroHD_1080p (3).torrent
2020-04-18 04:02 - 2020-04-18 04:02 - 000017830 _____ C:\Users\Jose luis\Downloads\Por_amor_o_por_dinero_MicroHD_1080p (2).torrent
2020-04-18 03:58 - 2020-04-18 03:58 - 000017830 _____ C:\Users\Jose luis\Downloads\Por_amor_o_por_dinero_MicroHD_1080p (1).torrent
2020-04-18 03:48 - 2020-04-18 03:48 - 000017830 _____ C:\Users\Jose luis\Downloads\Por_amor_o_por_dinero_MicroHD_1080p.torrent
2020-04-17 20:37 - 2020-04-17 20:37 - 014566496 _____ (ESET spol. s r.o.) C:\Users\Jose luis\Downloads\esetonlinescanner (1).exe
2020-04-17 20:37 - 2020-04-17 20:37 - 000000720 _____ C:\Users\Jose luis\Desktop\ESET Online Scanner.lnk
2020-04-17 20:33 - 2020-04-17 20:33 - 014566496 _____ (ESET spol. s r.o.) C:\Users\Jose luis\Downloads\esetonlinescanner.exe
2020-04-17 20:33 - 2020-04-17 20:33 - 000000799 _____ C:\Users\Jose luis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2020-04-17 20:33 - 2020-04-17 20:33 - 000000000 ____D C:\Users\Jose luis\AppData\Local\ESET
2020-04-17 20:19 - 2020-04-17 20:19 - 038191600 _____ (Panda Security ) C:\Users\Jose luis\Downloads\PandaCloudCleaner.exe
2020-04-17 15:35 - 2020-04-19 17:15 - 000000000 ____D C:\Users\Jose luis\Desktop\Virus
2020-04-17 08:24 - 2020-04-17 08:29 - 000000000 ____D C:\Users\Jose luis\Downloads\Buenos Principios [1080p][Castellano][wWw.EliteTorrent.NL]
2020-04-17 08:22 - 2020-04-17 08:29 - 000000000 ____D C:\Users\Jose luis\Downloads\El ritmo de la venganza [DVDR][Castellano][wWw.EliteTorrent.NL]
2020-04-17 08:18 - 2020-04-17 08:29 - 000000000 ____D C:\Users\Jose luis\Downloads\Malasaña 32 [HDR][Castellano][wWw.EliteTorrent.NL]
2020-04-17 08:16 - 2020-04-17 08:27 - 000000000 ____D C:\Users\Jose luis\Downloads\Toc Toc [1080p][Español][wWw.EliteTorrent.BiZ]
2020-04-17 07:53 - 2020-04-17 08:03 - 1481801728 _____ C:\Users\Jose luis\Downloads\La noche que mi madre mato a mi padre (HDRip) (EliteTorrent.net).avi
2020-04-17 07:47 - 2020-04-17 07:49 - 2014570496 _____ C:\Users\Jose luis\Downloads\La gran familia espanola (HDRip) (EliteTorrent.net).avi
2020-04-17 07:46 - 2020-04-17 07:48 - 2030831616 _____ C:\Users\Jose luis\Downloads\Contratiempo (HDRip) (EliteTorrent.net).avi
2020-04-15 11:43 - 2020-04-15 11:43 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2020-04-15 11:32 - 2020-04-15 19:56 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2020-04-11 21:32 - 2020-04-17 07:39 - 000000000 ____D C:\Users\Jose luis\Downloads\El Guardian Invisible [BluRayRIP][AC3 5.1 Español Castellano][2017]
2020-04-05 21:44 - 2020-04-05 21:44 - 000000000 ____D C:\ProgramData\Intel
2020-04-04 00:59 - 2020-04-04 01:16 - 000000000 ____D C:\Users\Jose luis\Downloads\El Fotografo de Mauthausen [BluRay Rip][AC3 2.0 Castellano][2019][www.pctnew.com]
2020-04-04 00:54 - 2020-04-04 00:57 - 2045382656 _____ C:\Users\Jose luis\Downloads\Dunkerque HDRip www.DESCARGASMIX.com.avi
2020-04-04 00:34 - 2020-04-04 01:16 - 000000000 ____D C:\Users\Jose luis\Downloads\El diario de Noa [DVDRIP][Spanish][www.pctorrent.com]
2020-04-04 00:28 - 2020-04-04 01:16 - 000000000 ____D C:\Users\Jose luis\Downloads\Heidi 2015 [BRrip X264 MKV][Castellano]
2020-03-29 20:02 - 2020-03-29 20:02 - 000000000 ____D C:\Users\Carla\Desktop\CARTAS GUADA
2020-03-28 21:45 - 2020-03-28 22:10 - 000000000 ____D C:\Users\Jose luis\Downloads\Asesinato en Reunion [HDTV][Castellano][wWw.EliteTorrent.IO]
2020-03-27 21:40 - 2020-04-17 23:52 - 000000000 ____D C:\Users\Jose luis\Downloads\Vistas
2020-03-24 22:11 - 2020-03-24 22:15 - 000000000 ____D C:\Users\Jose luis\Desktop\Unidad USB
2020-03-20 16:46 - 2020-04-18 16:32 - 000000000 ____D C:\Users\Jose luis\Desktop\Asepeyo
2020-03-20 16:45 - 2020-03-20 16:45 - 000379512 _____ C:\Users\Jose luis\Downloads\Formulario-solicitud-cese-actividad-trabajador-autonomo-COVID-19-ES.zip
==================== Un mes (modificado) ==================
(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)
2020-04-19 17:12 - 2014-05-08 23:23 - 000001243 _____ C:\Users\Jose luis\Desktop\Windows.Defender.lnk
2020-04-19 16:58 - 2017-07-14 15:20 - 000004206 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{876B55CB-2105-43C9-92C5-E610F5EDB24A}
2020-04-19 16:57 - 2017-07-14 14:51 - 020434126 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-04-19 16:57 - 2017-03-20 07:11 - 010675530 _____ C:\WINDOWS\system32\perfh00A.dat
2020-04-19 16:57 - 2017-03-20 07:11 - 003170470 _____ C:\WINDOWS\system32\perfc00A.dat
2020-04-19 16:54 - 2014-05-09 03:43 - 000000000 __RDO C:\Users\Jose luis\OneDrive
2020-04-19 16:52 - 2017-07-14 15:20 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-04-19 15:43 - 2017-03-18 13:40 - 001048576 _____ C:\WINDOWS\system32\config\BBI
2020-04-19 15:43 - 2015-08-31 00:20 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2020-04-19 14:57 - 2017-07-14 14:47 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-04-19 14:31 - 2017-07-14 14:51 - 000000000 ____D C:\Users\Jose luis
2020-04-19 12:24 - 2014-05-08 20:32 - 000000000 ____D C:\Users\Jose luis\AppData\Local\Hewlett-Packard
2020-04-19 12:24 - 2014-05-08 20:15 - 000000000 ____D C:\Users\Jose luis\AppData\Roaming\Hewlett-Packard
2020-04-19 12:24 - 2014-02-03 20:09 - 000000000 ____D C:\Program Files (x86)\CyberLink
2020-04-19 12:24 - 2014-02-03 20:02 - 000000000 ____D C:\ProgramData\Hewlett-Packard
2020-04-19 12:24 - 2014-02-03 20:01 - 000000000 ____D C:\Program Files (x86)\Hewlett-Packard
2020-04-19 12:24 - 2013-10-11 13:58 - 000000000 _RSHD C:\hp
2020-04-19 12:16 - 2016-11-17 02:01 - 000000000 ____D C:\AdwCleaner
2020-04-19 09:52 - 2017-03-18 23:03 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2020-04-19 09:52 - 2015-03-13 00:28 - 000000000 ____D C:\ProgramData\Malwarebytes
2020-04-18 13:44 - 2014-05-09 22:58 - 000000000 ____D C:\Users\Jose luis\AppData\Roaming\uTorrent
2020-04-18 04:22 - 2019-07-08 17:42 - 000000000 ____D C:\Users\Jose luis\AppData\Local\BitTorrentHelper
2020-04-17 23:19 - 2017-07-30 18:36 - 000003366 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3983175719-3118912899-1399192978-1001
2020-04-17 23:19 - 2015-08-31 00:42 - 000002455 _____ C:\Users\Jose luis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-04-15 19:56 - 2014-05-11 00:09 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-04-15 12:07 - 2017-01-08 19:59 - 000000000 ____D C:\Users\Jose luis\AppData\LocalLow\Mozilla
2020-04-15 11:43 - 2014-05-11 00:09 - 000001239 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-04-11 19:58 - 2015-10-14 20:20 - 000000000 ____D C:\Program Files\Lx_cats
2020-04-10 19:56 - 2019-09-13 16:50 - 000000358 _____ C:\WINDOWS\Tasks\HPCeeScheduleForJose luis.job
2020-04-10 13:04 - 2019-09-13 16:50 - 000003266 _____ C:\WINDOWS\system32\Tasks\HPCeeScheduleForJose luis
2020-04-07 20:11 - 2014-05-10 10:17 - 000002306 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-04-07 20:11 - 2014-05-10 10:17 - 000002265 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-04-01 19:37 - 2017-07-14 15:20 - 000004198 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{F8D0330D-164F-4575-B772-5C58C241FE77}
2020-03-21 20:22 - 2017-09-18 16:43 - 000003358 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3983175719-3118912899-1399192978-1004
2020-03-21 20:22 - 2015-10-12 11:07 - 000002443 _____ C:\Users\Carla\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-03-21 20:22 - 2015-10-12 11:07 - 000000000 ___RD C:\Users\Carla\OneDrive
2020-03-21 10:23 - 2017-11-18 10:52 - 000003528 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore1d35fc28de4502f
2020-03-21 10:23 - 2017-07-14 15:20 - 000003622 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
==================== Archivos en la raíz de algunos directorios ========
2017-11-17 18:38 - 2017-11-17 18:38 - 007649280 _____ () C:\Program Files (x86)\GUT8D24.tmp
2005-04-08 04:16 - 2015-03-06 17:56 - 000412172 ____H () C:\Users\Jose luis\AppData\Roaming\Jose luislog.dat
2015-06-28 21:13 - 2017-09-05 23:08 - 000003584 _____ () C:\Users\Jose luis\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2020-04-19 03:44 - 2020-04-19 03:44 - 000007602 _____ () C:\Users\Jose luis\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(No existe una corrección automática para los archivos que no pasan la verificación.)
LastRegBack: 2020-04-12 19:43
==================== Final de FRST.txt ========================
[/code]