Disco local (c:) lleno

@Miguelgrado tengo este antivirus por lo viso! De ahi , a donde tengo que entrar para desactivarlo?

https://www.google.es/amp/s/comofriki.com/como-desactivar-windows-defender-windows-10-8-7/amp/?espv=1

Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 13-05-2020 01
Ejecutado por alumno (administrador) sobre CI7427EA96F04D (Bangho Suma 1025) (14-05-2020 19:01:49)
Ejecutado desde F:\usuarios\alumno\Escritorio
Perfiles cargados: alumno
Platform: Windows 8.1 Pro (Update) (X64) Idioma: Español (España, internacional)
Navegador predeterminado: Chrome
Modo de Inicio: Normal
Tutorial para Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Procesos (Lista blanca) =================

(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)

( () [Archivo no firmado])  [El archivo está en uso ] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\StudentMain.exe
() [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\GATESRV.exe
() [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\MasterHelper.exe
() [Archivo no firmado] C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTDevMgr.exe
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <25>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe
(Intel Corporation) [Archivo no firmado] C:\Program Files (x86)\Intel Education Software\Device Control Service\DeviceControlService.exe
(Intel(R) Corporation) [Archivo no firmado] C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel(R) Software -> Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
(Intel(R) Software -> Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(Intel) [Archivo no firmado] C:\Program Files\Intel Learning Series\Theft Deterrent\Agent.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Motorola Solutions Inc. -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Motorola Solutions Inc. -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(NV Access Limited -> NV Access Limited) C:\Program Files (x86)\NVDA\nvda_service.exe
(OEM) [Archivo no firmado] C:\Program Files (x86)\Intel Education Software\Hard Drive Protection\Hard Drive Protection\HDPService.exe
(OEM) [Archivo no firmado] C:\Program Files (x86)\Intel Education Software\Hard Drive Protection\Hard Drive Protection\HPUtility.exe
(pdfforge GmbH -> pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(pdfforge GmbH -> pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe
(Realtek Semiconductor Corporation) [Archivo no firmado] C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTServer.exe
(strawberryperl.com) [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\bin\perl.exe
(Sun Microsystems, Inc. -> Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

==================== Registro (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\Windows\system32\DptfPolicyLpmServiceHelper.exe [111488 2013-09-17] (Intel(R) Software -> Intel Corporation)
HKLM\...\Run: [BtServer] => C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe [280576 2013-10-21] (Realtek Semiconductor Corporation) [Archivo no firmado]
HKLM\...\Run: [BTMTrayAgent] => C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [7818040 2013-10-09] (Motorola Solutions Inc. -> Motorola Solutions, Inc.)
HKLM\...\Run: [WindowsDefender] => "%ProgramFiles%\Windows Defender\MSASCuiL.exe"
HKLM-x32\...\Run: [AlwaysAware Hard-Disk Drive] => C:\Program Files (x86)\Intel Education Software\Hard Drive Protection\Hard Drive Protection\HPUtility.exe [3095552 2013-11-22] (OEM) [Archivo no firmado]
HKLM-x32\...\Run: [Agent] => C:\Archivos de programa\Intel Learning Series\Theft Deterrent\Agent.exe [307200 2013-12-18] (Intel) [Archivo no firmado]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253672 2011-01-07] (Sun Microsystems, Inc. -> Sun Microsystems, Inc.)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\81.0.4044.138\Installer\chrmstp.exe [2020-05-12] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2019-05-02] (Adobe Inc. -> Adobe Systems, Inc.)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN

==================== Tareas programadas (Lista blanca) ============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

Task: {0710B482-25DE-47D0-9DEC-6371A705DC8B} - System32\Tasks\Opera scheduled Autoupdate 1555453322 => C:\Users\alumno\AppData\Local\Programs\Opera\launcher.exe
Task: {10008CA2-9B99-43AF-A589-03A1142D4ACE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\Program Files\Windows Defender\\MpCmdRun.exe [410792 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {2AD46F08-62A8-49EF-82FA-2795517FB510} - System32\Tasks\firststart => C:\Windows\System32\changehostname.bat [132 2014-05-19] () [Archivo no firmado]
Task: {71216C4D-9AAC-44AE-A30E-6440BEC7D1C0} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1660520 2020-02-27] (Avast Software s.r.o. -> Avast Software)
Task: {79C49F31-F546-4596-8100-26BB9CF04B1C} - System32\Tasks\{D39013C3-BEA7-4455-8EF3-BE183C645607} => C:\Windows\system32\pcalua.exe -a F:\sql\setup.exe -d F:\sql
Task: {815AFBF9-CA1F-45C4-AD80-3A516DB43A35} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-11-04] (Google Inc -> Google Inc.)
Task: {84B83C55-A6E5-468A-81F1-83F9A2C08BF3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\Program Files\Windows Defender\\MpCmdRun.exe [410792 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {9DE16695-55F5-4AD5-B3C9-9E943871419E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\Program Files\Windows Defender\\MpCmdRun.exe [410792 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {CB9A1509-159E-455F-B8C6-C2E8CC66C0B0} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-178309431-3327863904-3864560324-1001 => C:\Users\alumno\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [257224 2014-05-10] (Microsoft Corporation -> Microsoft Corporation)
Task: {CD06C2F9-A1E7-4A79-9893-6911A4271955} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\Program Files\Windows Defender\\MpCmdRun.exe [410792 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {D8E004F5-2C45-41AF-BDC4-5C50026D71EA} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems)
Task: {DA6A70BB-FE15-4CC8-8A43-9AFBBB97F0D0} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {DE8832B3-D33B-4C71-991B-11055667AADA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-11-04] (Google Inc -> Google Inc.)
Task: {ED743DC5-F7A9-40BD-88EC-0BABEB4D7302} - System32\Tasks\Opera scheduled assistant Autoupdate 1555453347 => C:\Users\alumno\AppData\Local\Programs\Opera\launcher.exe

(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)


==================== Internet (Lista blanca) ====================

(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{AA54D9DE-2A46-4C4E-BC9C-439126AB0C6C}: [DhcpNameServer] 192.168.1.254

Internet Explorer:
==================
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation -> Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: PDF Architect Helper -> {3A2D5EBA-F86D-4BD3-A177-019765996711} -> C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll [2014-01-23] (pdfforge GmbH -> pdfforge GmbH)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2014-05-09] (Sun Microsystems, Inc. -> Sun Microsystems, Inc.)
Toolbar: HKLM-x32 - PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll [2014-01-23] (pdfforge GmbH -> pdfforge GmbH)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2013-02-26] (Skype Technologies SA -> Skype Technologies)

FireFox:
========
FF ProfilePath: C:\Users\alumno\AppData\Roaming\Mozilla\Firefox\Profiles\7pb5vu5c.default [2020-03-08]
FF Homepage: Mozilla\Firefox\Profiles\7pb5vu5c.default -> hxxp://www.conectarigualdad.gob.ar/
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF Extension: (PDF Architect Converter For Firefox) - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt [2014-05-09] [Heredado] [no firmado]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll [2014-05-19] (Adobe Systems Incorporated -> )
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll [2014-05-19] (Adobe Systems Incorporated -> )
FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll [2014-05-09] (Sun Microsystems, Inc.) [Archivo no firmado]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MIF5BA~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MIF5BA~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-02-04] (VideoLAN) [Archivo no firmado]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-03-05] (Adobe Inc. -> Adobe Systems Inc.)

Chrome: 
=======
CHR Profile: C:\Users\alumno\AppData\Local\Google\Chrome\User Data\Default [2020-05-14]
CHR Notifications: Default -> hxxps://abrecaminoweb.os.tc; hxxps://animemovil.com; hxxps://mail.google.com; hxxps://web.whatsapp.com; hxxps://www.facebook.com; hxxps://www.wish.com
CHR NewTab: Default ->  Not-active:"chrome-extension://apicngidjjeegmfbfgpobchlpliidibm/newtabproduct.html"
CHR Extension: (Presentaciones) - C:\Users\alumno\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-11-04]
CHR Extension: (Documentos) - C:\Users\alumno\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-11-04]
CHR Extension: (Google Drive) - C:\Users\alumno\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-11-04]
CHR Extension: (VideoDownloadConverter) - C:\Users\alumno\AppData\Local\Google\Chrome\User Data\Default\Extensions\apicngidjjeegmfbfgpobchlpliidibm [2019-10-15]
CHR Extension: (YouTube) - C:\Users\alumno\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-11-04]
CHR Extension: (Hojas de cálculo) - C:\Users\alumno\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-11-04]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\alumno\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-05-12]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\alumno\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-03]
CHR Extension: (Gmail) - C:\Users\alumno\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-05]
CHR Extension: (Chrome Media Router) - C:\Users\alumno\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-05-12]
CHR Profile: C:\Users\alumno\AppData\Local\Google\Chrome\User Data\System Profile [2019-12-24]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]

==================== Servicios (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R2 AlwaysAware HDP Service; C:\Program Files (x86)\Intel Education Software\Hard Drive Protection\Hard Drive Protection\HDPService.exe [163840 2013-08-20] (OEM) [Archivo no firmado]
R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [69120 2013-10-21] () [Archivo no firmado]
R2 Device Control Service; C:\Program Files (x86)\Intel Education Software\Device Control Service\DeviceControlService.exe [1923072 2013-12-27] (Intel Corporation) [Archivo no firmado]
S2 DptfParticipantAcpiProcessorService; C:\Windows\system32\DptfParticipantProcessorService.exe [117704 2013-09-17] (Intel(R) Software -> Intel Corporation)
S2 DptfPolicyCriticalService; C:\Windows\system32\DptfPolicyCriticalService.exe [150760 2013-09-17] (Intel(R) Software -> Intel Corporation)
S2 DptfPolicyLpmService; C:\Windows\system32\DptfPolicyLpmService.exe [124904 2013-09-17] (Intel(R) Software -> Intel Corporation)
R2 esifsvc; C:\Windows\SysWOW64\esif_uf.exe [1419424 2020-02-10] (Intel(R) Software -> Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [316760 2020-02-10] (Intel(R) pGFX -> Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-01] (Intel(R) Corporation) [Archivo no firmado]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-01] (Intel® Trusted Connect Service -> Intel(R) Corporation)
R2 nvda; C:\Program Files (x86)\NVDA\nvda_service.exe [40040 2014-03-12] (NV Access Limited -> NV Access Limited)
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1335344 2014-01-23] (pdfforge GmbH -> pdfforge GmbH)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [856112 2014-01-23] (pdfforge GmbH -> pdfforge GmbH)
R2 STUDSRV; C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\GATESRV.exe [27648 2012-04-01] () [Archivo no firmado]
S2 tcsd_win32.exe; C:\Program Files (x86)\Security Innovation\TSS\bin\tcsd_win32.exe [1636352 2012-12-10] (Security Innovation, Inc.) [Archivo no firmado]
S3 VBoxSDS; C:\Program Files\Oracle\VirtualBox\VBoxSDS.exe [692992 2019-05-13] (Oracle Corporation -> Oracle Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [X]
R2 FusionInventory-Agent; "C:\Program Files (x86)\FusionInventory-Agent\perl\bin\perl.exe" -I"C:\Program Files (x86)\FusionInventory-Agent\perl\agent" -I"C:\Program Files (x86)\FusionInventory-Agent\perl\lib" -I"C:\Program Files (x86)\FusionInventory-Agent\perl\site\lib" -I"C:\Program Files (x86)\FusionInventory-Agent\perl\vendor\lib" "C:\Program Files (x86)\FusionInventory-Agent\perl\bin\fusioninventory-win32-service"

===================== Controladores (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R3 accel; C:\Windows\System32\drivers\ADXL345accel.sys [27136 2013-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
S3 AirplaneModeHid; C:\Windows\System32\drivers\AirplaneModeHid.sys [18528 2012-12-14] (Ralink Technology Corporation -> Mediatek Technology, Corp.)
S3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [140600 2013-07-22] (Motorola Solutions Inc. -> Motorola Solutions, Inc.)
S0 CDD_HOST; C:\Windows\SysWow64\Drivers\CDD_HOST.sys [19968 2012-03-31] () [Archivo no firmado]
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [136040 2019-09-26] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 DptfDevAcpiProc; C:\Windows\system32\DRIVERS\DptfDevAcpiProc.sys [198808 2013-09-17] (Intel(R) Software -> Intel Corporation)
S3 DptfDevGen; C:\Windows\system32\DRIVERS\DptfDevGen.sys [78504 2013-09-17] (Intel(R) Software -> Intel Corporation)
S3 DptfManager; C:\Windows\system32\DRIVERS\DptfManager.sys [493240 2013-09-17] (Intel(R) Software -> Intel Corporation)
R3 dptf_acpi; C:\Windows\System32\drivers\dptf_acpi.sys [55792 2020-02-10] (Intel(R) Software -> Intel Corporation)
R3 esif_lf; C:\Windows\system32\DRIVERS\esif_lf.sys [260080 2020-02-10] (Intel(R) Software -> Intel Corporation)
R0 HDPFilter; C:\Windows\System32\DRIVERS\HDPFilter.sys [10240 2013-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2020-02-10] (Martin Malik - REALiX -> REALiX(tm))
R3 iscm; C:\Windows\System32\drivers\iscm.sys [6656 2013-12-27] (Microsoft Windows Hardware Compatibility Publisher -> )
R0 MBI; C:\Windows\System32\drivers\MBI.sys [32736 2020-02-10] (Intel(R) CherryTrail Windows -> Intel(R) Corporation)
R3 RadioButtonHidVirKbd; C:\Windows\System32\drivers\RadioButtonHidVirKbd.sys [27648 2013-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 8 DDK provider)
R3 RtkBtFilter; C:\Windows\system32\DRIVERS\RtkBtfilter.sys [719368 2020-02-10] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [424384 2020-02-10] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
R3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [7682928 2020-02-10] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation )
R3 SensorsServiceDriver; C:\Windows\System32\drivers\WUDFRd.sys [226304 2014-10-28] (Microsoft Windows -> Microsoft Corporation)
R3 smsbda; C:\Windows\system32\drivers\smsbda.sys [80000 2011-03-06] (Microsoft Windows Hardware Compatibility Publisher -> Siano)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [166760 2019-09-26] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 ssudserd; C:\Windows\system32\DRIVERS\ssudserd.sys [167232 2018-12-12] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 TDKeybd; C:\Windows\SysWow64\drivers\TDKeybd.sys [7680 2012-04-01] () [Archivo no firmado]
S3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2020-02-10] (Intel Corporation - Client Components Group -> Intel Corporation)
R3 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [236352 2019-05-13] (Oracle Corporation -> Oracle Corporation)
R1 VBoxNetLwf; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [247736 2019-05-13] (Oracle Corporation -> Oracle Corporation)
S3 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [174520 2019-05-13] (Oracle Corporation -> Oracle Corporation)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
R1 MpKsl5207c8b6; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{7075DDD9-9CEB-4A5C-AB82-765D023682A7}\MpKsl5207c8b6.sys [X]
R1 MpKslDrv; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{7075DDD9-9CEB-4A5C-AB82-765D023682A7}\MpKslDrv.sys [X]

==================== NetSvcs (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)


==================== Un mes (creado) ===================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-05-14 19:00 - 2020-05-14 19:02 - 000000000 ____D C:\FRST
2020-05-14 18:19 - 2020-05-14 18:19 - 000000000 ____D C:\Users\alumno\AppData\Roaming\Windows Live Writer
2020-05-14 18:19 - 2020-05-14 18:19 - 000000000 ____D C:\Users\alumno\AppData\Local\Windows Live Writer
2020-05-13 17:13 - 2020-05-13 17:13 - 000000000 ____D C:\Windows\pss
2020-05-13 16:49 - 2020-04-30 00:49 - 000308736 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll
2020-05-13 16:49 - 2020-04-30 00:22 - 000881664 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelinesvc.exe
2020-05-13 16:49 - 2020-04-30 00:19 - 000826368 _____ (Microsoft Corporation) C:\Windows\system32\pmcsnap.dll
2020-05-13 16:49 - 2020-04-29 23:55 - 001756672 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2020-05-13 16:49 - 2020-04-29 23:43 - 001495040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2020-05-13 16:49 - 2020-04-29 23:40 - 000309760 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll
2020-05-13 16:49 - 2020-04-29 23:37 - 000216576 _____ (Microsoft Corporation) C:\Windows\system32\tcpmon.dll
2020-05-13 16:49 - 2020-04-29 23:33 - 001096704 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2020-05-13 16:49 - 2020-04-16 03:04 - 022365896 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2020-05-13 16:49 - 2020-04-16 03:04 - 003118032 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2020-05-13 16:49 - 2020-04-16 03:04 - 001368592 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2020-05-13 16:49 - 2020-04-16 03:04 - 000722496 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2020-05-13 16:49 - 2020-04-16 03:04 - 000642488 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2020-05-13 16:49 - 2020-04-16 03:00 - 000374024 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2020-05-13 16:49 - 2020-04-16 02:15 - 025755136 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2020-05-13 16:49 - 2020-04-16 01:30 - 019795840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2020-05-13 16:49 - 2020-04-16 01:29 - 000561400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2020-05-13 16:49 - 2020-04-16 01:29 - 000493736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2020-05-13 16:49 - 2020-04-16 01:25 - 000316368 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2020-05-13 16:49 - 2020-04-16 00:40 - 002911744 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2020-05-13 16:49 - 2020-04-16 00:38 - 000581120 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2020-05-13 16:49 - 2020-04-16 00:31 - 020291072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2020-05-13 16:49 - 2020-04-16 00:31 - 000113152 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2020-05-13 16:49 - 2020-04-16 00:28 - 000186880 _____ (Microsoft Corporation) C:\Windows\system32\easwrt.dll
2020-05-13 16:49 - 2020-04-16 00:27 - 005498880 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2020-05-13 16:49 - 2020-04-16 00:27 - 000785408 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2020-05-13 16:49 - 2020-04-16 00:25 - 000546816 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.PointOfService.dll
2020-05-13 16:49 - 2020-04-16 00:14 - 000497664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2020-05-13 16:49 - 2020-04-16 00:11 - 002304000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2020-05-13 16:49 - 2020-04-16 00:07 - 000084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2020-05-13 16:49 - 2020-04-16 00:06 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Usb.dll
2020-05-13 16:49 - 2020-04-16 00:05 - 000147968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\easwrt.dll
2020-05-13 16:49 - 2020-04-16 00:04 - 000654336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2020-05-13 16:49 - 2020-04-16 00:03 - 000365568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.PointOfService.dll
2020-05-13 16:49 - 2020-04-15 23:59 - 001994240 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2020-05-13 16:49 - 2020-04-15 23:59 - 001033216 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2020-05-13 16:49 - 2020-04-15 23:54 - 015478272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2020-05-13 16:49 - 2020-04-15 23:53 - 003258368 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2020-05-13 16:49 - 2020-04-15 23:53 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2020-05-13 16:49 - 2020-04-15 23:51 - 000809472 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2020-05-13 16:49 - 2020-04-15 23:50 - 001384960 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2020-05-13 16:49 - 2020-04-15 23:49 - 002942464 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll
2020-05-13 16:49 - 2020-04-15 23:49 - 002132992 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2020-05-13 16:49 - 2020-04-15 23:48 - 000310784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Usb.dll
2020-05-13 16:49 - 2020-04-15 23:43 - 000880640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2020-05-13 16:49 - 2020-04-15 23:41 - 004112384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2020-05-13 16:49 - 2020-04-15 23:41 - 002471424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2020-05-13 16:49 - 2020-04-15 23:40 - 001085440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2020-05-13 16:49 - 2020-04-15 23:39 - 001560064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2020-05-13 16:49 - 2020-04-15 23:39 - 000696320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2020-05-13 16:49 - 2020-04-15 23:38 - 002058752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2020-05-13 16:49 - 2020-04-15 23:38 - 000333312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2020-05-13 16:49 - 2020-04-15 23:37 - 004859392 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2020-05-13 16:49 - 2020-04-15 23:35 - 013861376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2020-05-13 16:49 - 2020-04-15 23:35 - 000254976 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.HumanInterfaceDevice.dll
2020-05-13 16:49 - 2020-04-15 23:32 - 000689152 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2020-05-13 16:49 - 2020-04-15 23:30 - 014533632 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2020-05-13 16:49 - 2020-04-15 23:28 - 000902656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SmartCards.dll
2020-05-13 16:49 - 2020-04-15 23:27 - 000173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2020-05-13 16:49 - 2020-04-15 23:26 - 012880384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2020-05-13 16:49 - 2020-04-15 23:26 - 001566720 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2020-05-13 16:49 - 2020-04-15 23:26 - 000466432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2020-05-13 16:49 - 2020-04-15 23:24 - 007799296 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2020-05-13 16:49 - 2020-04-15 23:23 - 000626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SmartCards.dll
2020-05-13 16:49 - 2020-04-15 23:22 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\ConfigureExpandedStorage.dll
2020-05-13 16:49 - 2020-04-15 23:20 - 004387328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2020-05-13 16:49 - 2020-04-15 23:20 - 000052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ConfigureExpandedStorage.dll
2020-05-13 16:49 - 2020-04-15 23:19 - 001265152 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2020-05-13 16:49 - 2020-04-15 23:18 - 005271552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2020-05-13 16:49 - 2020-04-15 23:16 - 001341952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2020-05-13 16:49 - 2020-04-15 23:15 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2020-05-13 16:49 - 2020-04-15 23:15 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2020-05-13 16:49 - 2020-04-15 23:14 - 001727488 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2020-05-13 16:49 - 2020-04-15 23:11 - 001546752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2020-05-13 16:49 - 2020-04-15 23:11 - 000140288 _____ (Microsoft Corporation) C:\Windows\system32\efswrt.dll
2020-05-13 16:49 - 2020-04-15 23:11 - 000104448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efswrt.dll
2020-05-13 16:49 - 2020-04-15 23:07 - 000156160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll
2020-05-13 16:49 - 2020-04-15 23:05 - 000229888 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
2020-05-13 16:49 - 2020-04-14 04:33 - 000205824 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2020-05-13 16:49 - 2020-04-14 04:03 - 000168448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2020-05-13 16:49 - 2020-04-11 15:42 - 007362296 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2020-05-13 16:49 - 2020-04-11 15:41 - 000376568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2020-05-13 16:49 - 2020-04-11 15:39 - 001542696 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2020-05-13 16:49 - 2020-04-11 15:29 - 001737720 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2020-05-13 16:49 - 2020-04-11 14:31 - 001501096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2020-05-13 16:49 - 2020-04-11 14:04 - 004168704 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2020-05-13 16:49 - 2020-04-11 13:47 - 000332800 _____ (Microsoft Corporation) C:\Windows\system32\cscobj.dll
2020-05-13 16:49 - 2020-04-11 13:22 - 000215040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscobj.dll
2020-05-13 16:49 - 2020-04-11 12:55 - 000194560 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2020-05-13 16:49 - 2020-04-11 12:53 - 000112128 _____ (Microsoft Corporation) C:\Windows\system32\vaultcli.dll
2020-05-13 16:49 - 2020-04-11 12:48 - 001377792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2020-05-13 16:49 - 2020-04-11 12:47 - 000260608 _____ (Microsoft Corporation) C:\Windows\system32\vaultsvc.dll
2020-05-13 16:49 - 2020-04-11 12:23 - 001317888 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
2020-05-13 16:49 - 2020-04-11 12:22 - 001103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll
2020-05-13 16:49 - 2020-04-10 21:12 - 002446576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2020-05-13 16:49 - 2020-04-10 21:12 - 000428784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2020-05-13 16:49 - 2020-04-09 10:36 - 001311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
2020-05-13 16:49 - 2020-04-07 16:30 - 000988472 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2020-05-13 16:49 - 2020-04-07 16:28 - 000857320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2020-05-13 16:49 - 2020-04-07 10:55 - 003330048 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2020-05-13 16:49 - 2020-04-07 10:51 - 003636224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2020-05-13 16:49 - 2020-04-04 13:06 - 000879616 _____ (Microsoft Corporation) C:\Windows\system32\rasdlg.dll
2020-05-13 16:49 - 2020-04-04 13:01 - 001572864 _____ (Microsoft Corporation) C:\Windows\system32\wbengine.exe
2020-05-13 16:49 - 2020-04-04 12:50 - 000795136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdlg.dll
2020-05-13 16:49 - 2020-03-31 01:31 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2020-05-13 16:49 - 2020-03-31 00:59 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
2020-05-13 16:49 - 2020-03-27 11:25 - 000035840 _____ (Microsoft Corporation) C:\Windows\system32\sxssrv.dll
2020-05-13 16:49 - 2020-03-27 09:41 - 001680896 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2020-05-13 16:49 - 2020-03-23 21:29 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2020-05-13 16:49 - 2020-03-19 00:53 - 000096768 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2020-05-13 16:49 - 2020-03-19 00:17 - 000078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2020-05-13 16:49 - 2020-03-10 05:09 - 001764856 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2020-05-13 16:49 - 2020-03-10 04:57 - 001135904 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2020-05-13 16:49 - 2020-03-10 04:22 - 001489728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2020-05-13 16:49 - 2020-03-10 03:27 - 000860672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2020-05-13 16:49 - 2020-03-10 03:08 - 003727360 _____ (Microsoft Corporation) C:\Windows\system32\WinSAT.exe
2020-05-13 16:49 - 2020-03-10 02:57 - 000083456 _____ (Microsoft Corporation) C:\Windows\system32\umpo.dll
2020-05-13 16:49 - 2020-03-10 02:42 - 000452608 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll
2020-05-13 16:49 - 2020-03-08 02:20 - 000217400 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.ApplicationData.dll
2020-05-13 16:49 - 2020-03-08 01:31 - 000136816 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2020-05-13 16:49 - 2020-03-08 01:03 - 000955640 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2020-05-13 16:49 - 2020-03-08 00:44 - 000166248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.ApplicationData.dll
2020-05-13 16:49 - 2020-03-08 00:22 - 000788096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2020-05-13 16:49 - 2020-03-07 23:03 - 001479680 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2020-05-13 16:49 - 2020-03-07 22:39 - 001335808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll
2020-05-13 16:49 - 2020-03-07 22:39 - 000045056 _____ (Microsoft Corporation) C:\Windows\system32\srumapi.dll
2020-05-13 16:49 - 2020-03-07 22:37 - 000274944 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll
2020-05-13 16:49 - 2020-03-07 22:33 - 000175104 _____ (Microsoft Corporation) C:\Windows\system32\srumsvc.dll
2020-05-13 16:49 - 2020-03-07 22:29 - 003718144 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2020-05-13 16:49 - 2020-03-07 22:24 - 000606720 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2020-05-13 16:49 - 2020-03-07 22:23 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srumapi.dll
2020-05-13 16:49 - 2020-03-07 22:21 - 000214528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scecli.dll
2020-05-13 16:49 - 2020-03-07 22:19 - 000150016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srumsvc.dll
2020-05-13 16:49 - 2020-03-07 20:25 - 000353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2020-05-13 16:49 - 2020-03-07 20:25 - 000241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msltus40.dll
2020-05-13 16:49 - 2020-02-13 05:01 - 000989648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2020-05-13 16:49 - 2020-02-08 17:03 - 000162416 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2020-05-13 16:49 - 2020-02-05 11:20 - 001717760 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2020-05-13 16:49 - 2020-02-05 11:20 - 000802816 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2020-05-13 16:49 - 2020-02-05 11:20 - 000738816 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2020-05-13 16:49 - 2020-02-05 11:20 - 000634368 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2020-05-13 16:49 - 2020-02-05 11:20 - 000505344 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2020-05-13 16:49 - 2020-02-05 11:20 - 000456704 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2020-05-13 16:49 - 2020-02-05 11:20 - 000315904 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2020-05-13 16:49 - 2020-02-05 11:20 - 000257024 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll

==================== Un mes (modificado) ==================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-05-14 18:23 - 2013-08-22 12:36 - 000000000 ____D C:\Windows\AppReadiness
2020-05-14 18:22 - 2014-06-01 21:17 - 000003596 _____ C:\Windows\system32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-178309431-3327863904-3864560324-1001
2020-05-14 18:17 - 2019-05-18 13:02 - 000000000 ____D C:\Users\alumno\AppData\Local\CrashDumps
2020-05-14 15:05 - 2020-02-10 10:26 - 000000000 __SHD C:\Users\alumno\IntelGraphicsProfiles
2020-05-14 15:04 - 2014-06-01 10:13 - 000000000 ____D C:\Users\alumno
2020-05-14 14:54 - 2014-03-18 07:11 - 001822472 _____ C:\Windows\system32\PerfStringBackup.INI
2020-05-14 14:54 - 2014-03-18 06:31 - 000808246 _____ C:\Windows\system32\perfh00A.dat
2020-05-14 14:54 - 2014-03-18 06:31 - 000165434 _____ C:\Windows\system32\perfc00A.dat
2020-05-14 14:54 - 2013-08-22 10:36 - 000000000 ____D C:\Windows\Inf
2020-05-14 14:50 - 2013-08-22 11:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-05-14 13:10 - 2014-05-10 16:31 - 000000000 ____D C:\Windows\system32\MRT
2020-05-14 12:59 - 2014-05-10 16:30 - 120636720 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2020-05-13 23:04 - 2019-12-18 16:21 - 000000173 _____ C:\Users\alumno\AppData\Local\msmathematics.qat.alumno
2020-05-13 17:36 - 2014-06-04 02:02 - 000000000 ____D C:\ProgramData\Realtek
2020-05-13 17:35 - 2013-08-22 11:44 - 000532984 _____ C:\Windows\system32\FNTCACHE.DAT
2020-05-13 17:32 - 2013-08-22 10:25 - 000262144 ___SH C:\Windows\system32\config\BBI
2020-05-13 17:27 - 2018-11-16 02:09 - 000000000 ___SD C:\Windows\system32\CompatTel
2020-05-13 17:27 - 2013-08-22 12:36 - 000000000 ___RD C:\Windows\ToastData
2020-05-13 17:05 - 2013-08-22 12:20 - 000000000 ____D C:\Windows\CbsTemp
2020-05-13 00:27 - 2014-07-11 02:34 - 000000000 ____D C:\Users\alumno\AppData\Local\ElevatedDiagnostics
2020-05-13 00:24 - 2013-08-22 12:36 - 000000000 ____D C:\Windows\rescache
2020-05-12 22:30 - 2013-08-22 12:36 - 000000000 ____D C:\Windows\system32\NDF
2020-05-12 01:32 - 2018-11-04 12:31 - 000002242 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-05-12 01:08 - 2018-11-07 09:45 - 000004476 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2020-05-12 01:07 - 2018-11-21 22:26 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-05-12 01:02 - 2018-11-04 12:28 - 000003472 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-05-12 01:02 - 2018-11-04 12:28 - 000003344 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-04-30 01:24 - 2014-03-18 07:01 - 002474496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll

==================== Archivos en la raíz de algunos directorios ========

2014-06-04 02:03 - 2020-05-14 15:05 - 003703446 _____ () C:\Users\alumno\AppData\Local\BTServer.log
2018-12-24 13:09 - 2019-05-04 20:07 - 000005632 _____ () C:\Users\alumno\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2019-12-18 16:21 - 2020-05-13 23:04 - 000000173 _____ () C:\Users\alumno\AppData\Local\msmathematics.qat.alumno
2019-12-13 18:41 - 2019-12-13 18:41 - 000004002 _____ () C:\Users\alumno\AppData\Local\recently-used.xbel
2019-11-14 08:07 - 2019-11-14 08:07 - 000000000 _____ () C:\Users\alumno\AppData\Local\{0512A1CA-5330-4AB9-9053-327BEFA7B807}
2019-11-06 19:19 - 2019-11-06 19:19 - 000000000 _____ () C:\Users\alumno\AppData\Local\{0A3B49F6-AB69-41A4-A9EB-214B8DF89C94}
2019-11-15 11:52 - 2019-11-15 11:52 - 000000000 _____ () C:\Users\alumno\AppData\Local\{0FC46D3D-3B9F-44B8-800F-E8C5BCAC6054}
2019-10-31 21:49 - 2019-10-31 21:49 - 000000000 _____ () C:\Users\alumno\AppData\Local\{1A499F55-93E6-43D7-AA02-3FC8D923A038}
2019-10-29 19:42 - 2019-10-29 19:42 - 000000000 _____ () C:\Users\alumno\AppData\Local\{3384C52E-F3C1-4634-85B8-BC13EC9CB443}
2019-11-02 19:22 - 2019-11-02 19:22 - 000000000 _____ () C:\Users\alumno\AppData\Local\{4457CD55-8A98-4CD7-A718-CE100F7FE33C}
2019-11-04 19:22 - 2019-11-04 19:22 - 000000000 _____ () C:\Users\alumno\AppData\Local\{61AF6D7B-305C-42A4-972B-E923C5791613}
2019-11-07 21:02 - 2019-11-07 21:02 - 000000000 _____ () C:\Users\alumno\AppData\Local\{7B6DC75B-107D-42AE-A915-73E44A530F63}
2019-10-28 19:31 - 2019-10-28 19:31 - 000000000 _____ () C:\Users\alumno\AppData\Local\{979B0C60-A1A4-494C-B5D7-163DB8C9B59D}
2019-09-23 23:39 - 2019-09-23 23:39 - 000000000 _____ () C:\Users\alumno\AppData\Local\{9DD05177-9EDD-486C-80B9-FB2D28C3A44B}
2019-09-22 19:14 - 2019-09-22 19:14 - 000000000 _____ () C:\Users\alumno\AppData\Local\{BCF4C459-2BDA-4018-B390-56556A6DF478}
2019-11-09 19:22 - 2019-11-09 19:22 - 000000000 _____ () C:\Users\alumno\AppData\Local\{F6F0F735-491F-4365-A058-DEF9E76FF8E7}

==================== FCheck ================================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

FCheck: C:\Windows\system32\et7unst#1.exe [2014-05-18] <==== ATENCIÓN (cero bytes Archivo/Carpeta)

==================== SigCheck ============================

(No existe una corrección automática para los archivos que no pasan la verificación.)


LastRegBack: 2020-05-13 00:25
==================== Final de FRST.txt ========================
Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 13-05-2020 01
Ejecutado por alumno (14-05-2020 19:05:01)
Ejecutado desde F:\usuarios\alumno\Escritorio
Windows 8.1 Pro (Update) (X64) (2014-06-01 13:13:18)
Modo de Inicio: Normal
==========================================================


==================== Cuentas: =============================

Administrador (S-1-5-21-178309431-3327863904-3864560324-500 - Administrator - Disabled)
alumno (S-1-5-21-178309431-3327863904-3864560324-1001 - Administrator - Enabled) => C:\Users\alumno
Invitado (S-1-5-21-178309431-3327863904-3864560324-501 - Limited - Disabled)

==================== Centro de Seguridad ========================

(Si una entrada es incluida en el fixlist, será eliminada.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Programas instalados ======================

(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)

7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version:  - )
Adobe Acrobat Reader DC - Español (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-AC0F074E4100}) (Version: 20.006.20042 - Adobe Systems Incorporated)
Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated)
Alice Application (HKLM-x32\...\nbi-aliceinstaller-3.1.92.0.0) (Version:  - )
ArtRage Studio (HKLM-x32\...\{C8D47CBB-8CFC-4C03-9A3F-DEC03CE9EB86}) (Version: 3.5.11 - Ambient Design)
Avidemux 2.6 (32-bit) (HKLM-x32\...\Avidemux 2.6) (Version: 2.6.7.9014 - )
Avogadro (HKLM-x32\...\Avogadro) (Version: 1.1.1 - Humanity)
Balabolka (HKLM-x32\...\Balabolka) (Version: 2.9.0.567 - Ilya Morozov)
BKChem-0.13.0 (HKLM-x32\...\BKChem_is1) (Version:  - Beda Kosata)
calibre (HKLM-x32\...\{48C84341-E4F7-42EC-BED5-7A5CAA3291F5}) (Version: 1.33.0 - Kovid Goyal)
Celestia 1.6.1 (HKLM-x32\...\Celestia_is1) (Version:  - Shatters Software)
Classroom Management by Mythware - 2.3.0.9600 (HKLM-x32\...\e-Learning Class V6.0) (Version:  - Mythware)
Classroom Management by Mythware (HKLM-x32\...\{5FB4EEDF-6A79-45c3-B049-EF327CA03FCD}) (Version: 2.3.0.9600 - Mythware) Hidden
CodeBlocks (HKU\S-1-5-21-178309431-3327863904-3864560324-1001\...\CodeBlocks) (Version: 17.12 - The Code::Blocks Team)
Cronos (HKLM-x32\...\Cronos) (Version:  - )
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
Dev-C++ (HKLM-x32\...\Dev-C++) (Version: 5.11 - Bloodshed Software)
Driver Install (HKLM-x32\...\{A5FDBA15-2956-44C6-9AE4-DFD6C3351464}) (Version: 6.87.318.0 - Your Company Name) Hidden
EQTabla 5.20 (HKLM-x32\...\EQTabla) (Version: 5.20 - Enodisoft)
ForcePAD 2.5.0 (HKLM-x32\...\ForcePAD_is1) (Version:  - Division of Structural Mechanics)
Foxit Reader (HKLM-x32\...\Foxit Reader) (Version: 3.0.20130813 - Foxit Corporation)
FusionInventory Agent 20140309-dev (x86 edition) (HKLM-x32\...\FusionInventory-Agent) (Version: 20140309-dev - FusionInventory Team)
Galería de fotos (HKLM-x32\...\{198CEF22-A27F-4DC7-9B66-2C22A4B1CA09}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
GanttProject (HKLM-x32\...\GanttProject) (Version:  - )
GeoGebra 4.4 (HKLM-x32\...\GeoGebra 4.4) (Version: 4.4.29.0 - International GeoGebra Institute)
GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 81.0.4044.138 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
HiDTV versión 2.907 (HKLM-x32\...\{DE1660DA-BD80-467E-90D5-736C61FA9BBF}_is1) (Version: 2.907 - Geniatech)
IHMC CmapTools v5.05.01 (HKLM-x32\...\IHMC CmapTools v5.05.01) (Version: 5.0.5.1 - Institute for Human & Machine Cognition)
Intel Education Lab Camera by Intellisense (HKLM-x32\...\{CE35FE7D-97CA-472A-9A92-4C59CDFB1618}) (Version: 7.6.457 - Intellisense Co. Ltd.)
Intel Education Media Camera by Intellisense (HKLM-x32\...\{887756CB-F027-4EAA-B8FC-82A6FA115C7E}) (Version: 2.3.457 - Intellisense Co. Ltd.)
Intel powered classmate PC Theft Deterrent Agent (HKLM-x32\...\{B3E1DA24-AE04-47FC-831D-E53DEC62C221}) (Version: 2.5.2.051 - Intel)
Intel(R) Education Hard Drive Protection (HKLM-x32\...\{568401B6-0219-4409-94BF-084AFE71B2BF}) (Version: 1.6.7.101 - Nombre de su organización)
Intel(R) Education Runtime - 64 bit (HKLM\...\{6ded2f80-6eba-11e3-bd6a-00155d50bd31}) (Version: 3.2.1.5854 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.5069 - Intel Corporation)
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology(patch version 3.0.1342.2) (HKLM\...\{302600C1-6BDF-4FD1-1311-148929CC1385}) (Version: 3.1.1311.0402 - Intel Corporation)
Intel(R) Sideband Fabric Device Driver (HKLM-x32\...\C5A8BC6E-723A-4C0F-96E1-C426D1A4BCA9) (Version: 1.0.0.1002 - Intel Corporation)
Intel(R) Trusted Execution Engine (HKLM\...\{176E2755-0A17-42C6-88E2-192AB2131278}) (Version: 1.0.0.1050 - Intel Corporation)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.37 - Irfan Skiljan)
Java(TM) 6 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216025FF}) (Version: 6.0.250 - Oracle)
Junk Mail filter update (HKLM-x32\...\{0BE9E708-5DC0-4963-9CFD-0AA519090E79}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Kodu Game Lab (HKLM-x32\...\{C6E43C59-B825-479B-8AA1-97072875AB19}) (Version: 1.4.27 - Microsoft Research)
Kokori versión 1.21.6.1 (HKLM-x32\...\{C7E7BC30-9B9A-4C04-82AA-009C1F4AD97A}_is1) (Version: 1.21.6.1 - Kokori)
LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version:  - )
LibreCAD (HKLM-x32\...\LibreCAD) (Version: 2.0.0rc3 - LibreCAD Team)
LibreOffice 4.2.3.3 (HKLM-x32\...\{4117DF3C-6677-4A22-90B7-FF06923417E9}) (Version: 4.2.3.3 - The Document Foundation)
Maxima 5.31.2 (HKLM-x32\...\Maxima-5.31.2_is1) (Version: 5.31.2 - The Maxima Development Team)
Microsoft Mathematics (64 bits) (HKLM\...\{E57B7E0A-8BE5-42E2-BE60-C07ED680A063}) (Version: 4.0 - Microsoft Corporation)
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-178309431-3327863904-3864560324-1001\...\OneDriveSetup.exe) (Version: 17.0.4035.0328 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (HKLM-x32\...\{6e8f74e0-43bd-4dce-8477-6ff6828acc07}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.11.25325 (HKLM-x32\...\{6c6356fe-cbfa-4944-9bed-a9e99f45cb7a}) (Version: 14.11.25325.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft WorldWide Telescope (HKLM-x32\...\{02E7492D-C46F-4A34-A197-D1C3F19A1F4A}) (Version: 5.0.3 - Microsoft Research)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
MiEscritorio 2.4.1-SNAPSHOT (HKLM-x32\...\MiEscritorio) (Version: 2.4.1-SNAPSHOT - educ.ar)
MM7270 64bit (HKLM-x32\...\{82477A96-64AB-45E1-9196-12FA7A0AFDA5}) (Version: 6.87.318.0 - Geniatech) Hidden
MM7270 64bit (HKLM-x32\...\InstallShield_{82477A96-64AB-45E1-9196-12FA7A0AFDA5}) (Version: 6.87.318.0 - Geniatech)
Modellus X 0.5 (HKLM-x32\...\9229-1753-3261-3492) (Version: 0.5 - ModellusX)
Movie Maker (HKLM-x32\...\{9C82436F-F19C-42A4-B476-F87A28A95BF9}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 29.0.1 (x86 es-AR) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 es-AR)) (Version: 29.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
nplayer 2.2.1330 (HKLM-x32\...\nplayer 2.2.1330) (Version: 2.2.1330 - Humanity)
NVDA (HKLM-x32\...\NVDA) (Version: 2014.1 - NV Access Limited)
Oracle VM VirtualBox 6.0.8 (HKLM\...\{C549898A-9AA8-4CF6-8290-EF5DB8ECA766}) (Version: 6.0.8 - Oracle Corporation)
Paquete de idioma de Microsoft Visual Studio 2010 Tools para Office Runtime (x64) - ESN (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - ESN) (Version: 10.0.50903 - Microsoft Corporation)
PDF Architect (HKLM-x32\...\{86D8A96B-1911-4C3F-AA16-0B47E053E492}) (Version: 1.2.97.14551 - pdfforge GmbH)
PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.2 - pdfforge)
pilas-engine (HKU\S-1-5-21-178309431-3327863904-3864560324-1001\...\pilas-engine) (Version:  - )
PSeInt (HKLM-x32\...\PSeInt) (Version:  - )
Python 2.7 pygame-1.9.1 (HKLM-x32\...\{5D13804A-67B7-49DA-9B15-65B70A83B9C3}) (Version: 1.9.1 - Pete Shinners, Rene Dudfield, Marcus von Appen, Bob Pendleton, others...)
Python 2.7 pygame-1.9.2a0 (64-bit) (HKLM\...\pygame-py2.7) (Version:  - )
Python 2.7.8 (64-bit) (HKLM\...\{61121B12-88BD-4261-A6EE-AB32610A56De}) (Version: 2.7.8150 - Python Software Foundation)
REALTEK Bluetooth Driver (HKLM-x32\...\{9D3D8C60-A5EF-4123-B2B9-172095903AB}) (Version: 3.780.780.102113 - REALTEK Semiconductor Corp.)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.39052 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.20.815.2013 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8186 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver (HKLM-x32\...\{9DAABC60-A5EF-41FF-B2B9-17329590CD5}) (Version: 1.00.0234 - REALTEK Semiconductor Corp.)
scilab-5.5.0 (HKLM-x32\...\scilab-5.5.0_is1) (Version:  - Scilab Enterprises)
Scratch (HKLM-x32\...\Scratch) (Version: 1.4.0.0 - MIT Media Lab Lifelong Kindergarten Group)
Security Innovation TSS (HKLM\...\{0C11FE22-53F2-4C9B-9E79-824B10D0976E}) (Version: 2.1.42 - Security Innovation) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.)
SMS (HKLM\...\{4D36D0DE-FAA5-45FB-AEAB-5D825B523608}) (Version: 1.7.358 - Siano Mobile Silicon) Hidden
SMS (HKLM-x32\...\InstallShield_{4D36D0DE-FAA5-45FB-AEAB-5D825B523608}) (Version:  - )
Songsmith (Academic Edition) (HKLM-x32\...\{6AAB6D03-76C8-4946-9A1C-6DC3028F1982}) (Version: 12.08.2700 - Microsoft Research)
Trafico de Fauna (HKLM-x32\...\TraficoFauna) (Version:  - )
Versión de Imagen (HKLM\...\ET7UNST#1) (Version: CI5-01.01-24-07-2014 - )
VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WinRAR 5.70 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.70.0 - win.rar GmbH)
wxPython 3.0.0.0 for Python 2.6 (HKLM-x32\...\wxPython3.0-py26_is1) (Version: 3.0.0.0 - Total Control Software)
wxPython 3.0.0.0 for Python 2.7 (HKLM\...\wxPython3.0-py27_is1) (Version: 3.0.0.0 - Total Control Software)
XAMPP (HKLM\...\xampp) (Version: 7.4.1-0 - Bitnami)

Packages:
=========
Con Vos en la Web -> C:\Program Files\WindowsApps\54479MinisteriodeJusticia.ConVosenlaWeb_1.1.0.0_neutral__gsr1r81zyngs2 [2014-05-14] (Ministerio de Justicia de la Nación)
Juegos -> C:\Program Files\WindowsApps\Microsoft.XboxLIVEGames_2.0.139.0_x64__8wekyb3d8bbwe [2014-03-18] (Microsoft Corporation) [MS Ad]
MSN Noticias -> C:\Program Files\WindowsApps\Microsoft.BingNews_3.0.4.344_x64__8wekyb3d8bbwe [2018-12-08] (Microsoft Corporation) [MS Ad]
Música -> C:\Program Files\WindowsApps\Microsoft.ZuneMusic_2.6.672.0_x64__8wekyb3d8bbwe [2018-11-07] (Microsoft Corporation) [MS Ad]
Skype -> C:\Program Files\WindowsApps\Microsoft.SkypeApp_3.1.0.1016_x86__kzf8qxf38zg5c [2018-11-07] (Skype) [MS Ad]
Vídeo -> C:\Program Files\WindowsApps\Microsoft.ZuneVideo_2.6.446.0_x64__8wekyb3d8bbwe [2018-11-07] (Microsoft Corporation) [MS Ad]

==================== Personalizado CLSID (Lista blanca): ==============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

CustomCLSID: HKU\S-1-5-21-178309431-3327863904-3864560324-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation)
CustomCLSID: HKU\S-1-5-21-178309431-3327863904-3864560324-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\alumno\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\FileSyncApi64.dll (Microsoft Corporation -> Microsoft Corporation)
ShellExecuteHooks: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [6671064 2013-12-19] (Microsoft Corporation -> Microsoft Corporation)
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [4171480 2013-12-19] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Ningún archivo
ContextMenuHandlers1-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2010-11-18] (Igor Pavlov) [Archivo no firmado]
ContextMenuHandlers1: [Balabolka] -> {6CB83A5A-AA68-4895-9F54-175E789AE149} => C:\Program Files (x86)\Balabolka\BFileExt.dll [2013-02-28] (Ilya Morozov) [Archivo no firmado]
ContextMenuHandlers1: [BtSendToMenuEx] -> {CF24E6B8-F148-4BCB-9108-ADF313966E80} => C:\Program Files (x86)\REALTEK\Realtek Bluetooth\DevMenuExt.dll [2013-09-12] (Realtek Semiconductor Corporation) [Archivo no firmado]
ContextMenuHandlers1-x32: [PDFArchitectExtension] -> {DBDB3433-0E01-40CE-A026-D9F54FAC3CA9} => C:\Program Files (x86)\PDF Architect\ContextMenuExt.dll [2014-01-23] (pdfforge GmbH -> pdfforge GmbH)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers4-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2010-11-18] (Igor Pavlov) [Archivo no firmado]
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll -> Ningún archivo
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2020-02-10] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Lista blanca) ====================

==================== Accesos directos & WMI ========================

==================== Módulos cargados (Lista blanca) =============

2013-12-18 10:28 - 2013-12-18 10:28 - 000098304 _____ ( (Intel) [Archivo no firmado])  [El archivo está en uso ] C:\Archivos de programa\Intel Learning Series\Theft Deterrent\es-ES\Agent.resources.dll
2013-12-18 10:28 - 2013-12-18 10:28 - 000066048 _____ () [Archivo no firmado] C:\Archivos de programa\Intel Learning Series\Theft Deterrent\TPMCtrl_WinBond.dll
2014-03-12 22:44 - 2014-03-12 22:44 - 000095232 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\bin\libgcc_s_sjlj-1.dll
2014-03-12 22:44 - 2014-03-12 22:44 - 000860160 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\bin\libstdc++-6.dll
2014-03-12 22:44 - 2014-03-12 22:44 - 001536512 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\bin\perl518.dll
2014-03-12 22:44 - 2014-03-12 22:44 - 000014848 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\lib\auto\attributes\attributes.dll
2014-03-12 22:44 - 2014-03-12 22:44 - 000014848 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\lib\auto\Cwd\Cwd.dll
2014-03-12 22:44 - 2014-03-12 22:44 - 000035328 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\lib\auto\Encode\Encode.dll
2014-03-12 22:44 - 2014-03-12 22:44 - 000018432 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\lib\auto\Fcntl\Fcntl.dll
2014-03-12 22:44 - 2014-03-12 22:44 - 000025600 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\lib\auto\File\Glob\Glob.dll
2014-03-12 22:44 - 2014-03-12 22:44 - 000021504 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\lib\auto\IO\IO.dll
2014-03-12 22:44 - 2014-03-12 22:44 - 000038912 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\lib\auto\List\Util\Util.dll
2014-03-12 22:44 - 2014-03-12 22:44 - 000076288 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\lib\auto\POSIX\POSIX.dll
2014-03-12 22:44 - 2014-03-12 22:44 - 000083968 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\lib\auto\Storable\Storable.dll
2014-03-12 22:44 - 2014-03-12 22:44 - 000034816 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\lib\auto\threads\shared\shared.dll
2014-03-12 22:44 - 2014-03-12 22:44 - 000034304 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\lib\auto\threads\threads.dll
2014-03-12 22:44 - 2014-03-12 22:44 - 000015872 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\lib\auto\Tie\Hash\NamedCapture\NamedCapture.dll
2014-03-12 22:44 - 2014-03-12 22:44 - 000047104 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\lib\auto\Win32\Win32.dll
2014-03-12 22:46 - 2014-03-12 22:46 - 000059392 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\site\lib\auto\Win32\Daemon\Daemon.dll
2014-03-12 22:46 - 2014-03-12 22:46 - 000061440 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\vendor\lib\auto\JSON\XS\XS.dll
2014-03-12 22:46 - 2014-03-12 22:46 - 000026624 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\vendor\lib\auto\Win32\API\API.dll
2014-03-12 22:46 - 2014-03-12 22:46 - 000080384 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\vendor\lib\auto\Win32\WinError\WinError.dll
2014-03-12 22:46 - 2014-03-12 22:46 - 000163328 _____ () [Archivo no firmado] C:\Program Files (x86)\FusionInventory-Agent\perl\vendor\lib\auto\Win32API\Registry\Registry.dll
2013-12-27 13:44 - 2013-12-27 13:44 - 000055296 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel Education Software\Device Control Service\plugins\DPWiFiPower.dll
2012-04-01 11:27 - 2012-04-01 11:27 - 000110592 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Language\2058\ELCFpsvRes.dll
2012-04-01 11:27 - 2012-04-01 11:27 - 000159744 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Language\2058\FileCastRes.dll
2012-04-01 11:28 - 2012-04-01 11:28 - 000258048 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Language\2058\LibDeskMonitorRes.dll
2012-04-01 11:28 - 2012-04-01 11:28 - 000073728 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Language\2058\LibElcBaseUIRes.dll
2012-04-01 11:27 - 2012-04-01 11:27 - 000073728 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Language\2058\LibFileRecvRes.dll
2012-04-01 11:28 - 2012-04-01 11:28 - 000413696 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Language\2058\LibGroupRes.dll
2012-04-01 11:28 - 2012-04-01 11:28 - 000339968 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Language\2058\LibGroupTeachRes.dll
2012-04-01 11:28 - 2012-04-01 11:28 - 000196608 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Language\2058\LibProjectorRes.dll
2012-04-01 11:28 - 2012-04-01 11:28 - 000806912 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Language\2058\LibRemoteSettingRes.dll
2012-04-01 11:28 - 2012-04-01 11:28 - 000393216 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Language\2058\LibShareBoardRes.dll
2012-04-01 11:28 - 2012-04-01 11:28 - 000077824 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Language\2058\LibTestCenterRes.dll
2012-04-01 11:28 - 2012-04-01 11:28 - 000086016 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Language\2058\LibTestClientRes.dll
2012-04-01 11:28 - 2012-04-01 11:28 - 000081920 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Language\2058\LibTestQuizClientRes.dll
2012-04-01 11:28 - 2012-04-01 11:28 - 000122880 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Language\2058\LibTestQuizGradeRes.dll
2012-04-01 11:27 - 2012-04-01 11:27 - 002043904 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Language\2058\StudentResEx.dll
2012-04-01 11:16 - 2012-04-01 11:16 - 000204800 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\LibBaseTrans.dll
2012-04-01 11:16 - 2012-04-01 11:16 - 000048128 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\LibComLayer.dll
2012-04-01 11:17 - 2012-04-01 11:17 - 000372736 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\LibDeskMonitor.dll
2012-04-01 11:16 - 2012-04-01 11:16 - 000700416 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\LibElcBaseUI.dll
2012-04-01 11:16 - 2012-04-01 11:16 - 000167936 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\libELCFpsv.dll
2012-04-01 11:19 - 2012-04-01 11:19 - 000311296 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\LibFileCast.dll
2012-04-01 11:16 - 2012-04-01 11:16 - 000106496 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\LibFileRecv.dll
2012-04-01 11:18 - 2012-04-01 11:18 - 000839680 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\LibGroup.dll
2012-04-01 11:20 - 2012-04-01 11:20 - 000528384 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\LibGroupTeach.dll
2012-04-01 11:19 - 2012-04-01 11:19 - 000352256 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\LibProjector.dll
2012-04-01 11:17 - 2012-04-01 11:17 - 000017920 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\LibRecorder.dll
2012-04-01 11:17 - 2012-04-01 11:17 - 000901120 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\LibRemoteSetting.dll
2012-04-01 11:18 - 2012-04-01 11:18 - 000704512 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\LibShareBoard.dll
2012-04-01 11:18 - 2012-04-01 11:18 - 000196608 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\LibShGraphics.dll
2012-04-01 11:19 - 2012-04-01 11:19 - 000086016 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\libTDAjust.dll
2012-04-01 11:17 - 2012-04-01 11:17 - 000098304 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\libTDComp.dll
2012-04-01 11:17 - 2012-04-01 11:17 - 000262144 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\libTDDesk2.dll
2012-04-01 11:17 - 2012-04-01 11:17 - 000019456 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\libTDMaster.dll
2012-04-01 11:20 - 2012-04-01 11:20 - 000009216 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\LibTDProcHook.dll
2012-04-01 11:19 - 2012-04-01 11:19 - 000397312 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\LibTestCenter.dll
2012-04-01 11:20 - 2012-04-01 11:20 - 000102400 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\LibTestClient.dll
2012-04-01 11:19 - 2012-04-01 11:19 - 000020992 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\LibTestNet.dll
2012-04-01 11:19 - 2012-04-01 11:19 - 000081920 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\LibTestQuizClient.dll
2012-04-01 11:19 - 2012-04-01 11:19 - 000249856 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\LibTestQuizGrade.dll
2012-04-01 11:17 - 2012-04-01 11:17 - 000061440 _____ () [Archivo no firmado] C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\LibVoice10.dll
2014-05-09 14:18 - 2013-11-10 06:24 - 000087552 _____ () [Archivo no firmado] C:\Program Files (x86)\NVDA\_ctypes.pyd
2014-05-09 14:18 - 2013-12-12 02:07 - 000110080 _____ () [Archivo no firmado] C:\Program Files (x86)\NVDA\pywintypes27.dll
2014-05-09 14:18 - 2013-12-12 02:07 - 000027648 _____ () [Archivo no firmado] C:\Program Files (x86)\NVDA\servicemanager.pyd
2014-05-09 14:18 - 2013-12-12 02:07 - 000098816 _____ () [Archivo no firmado] C:\Program Files (x86)\NVDA\win32api.pyd
2014-05-09 14:18 - 2013-12-12 02:07 - 000042496 _____ () [Archivo no firmado] C:\Program Files (x86)\NVDA\win32service.pyd
2013-02-28 18:31 - 2013-02-28 18:31 - 000360960 _____ (Ilya Morozov) [Archivo no firmado] C:\Program Files (x86)\Balabolka\BFileExt.dll
2013-12-27 13:44 - 2013-12-27 13:44 - 000037888 _____ (Intel Corporation) [Archivo no firmado] C:\Program Files (x86)\Common Files\Intel Education\Application Support\DcsAccel.dll
2013-12-27 13:44 - 2013-12-27 13:44 - 000456192 _____ (Intel Corporation) [Archivo no firmado] C:\Program Files (x86)\Intel Education Software\Device Control Service\plugins\DPAccel.dll
2013-12-27 13:44 - 2013-12-27 13:44 - 000088064 _____ (Intel Corporation) [Archivo no firmado] C:\Program Files (x86)\Intel Education Software\Device Control Service\plugins\DPVKbd.dll
2013-08-20 15:22 - 2013-08-20 15:22 - 000004608 _____ (Microsoft Corporation) [Archivo no firmado] C:\Program Files (x86)\Intel Education Software\Hard Drive Protection\Hard Drive Protection\MSIMG32.dll
2013-08-20 15:22 - 2013-08-20 15:22 - 000180224 _____ (Microsoft Corporation) [Archivo no firmado] C:\Program Files (x86)\Intel Education Software\Hard Drive Protection\Hard Drive Protection\XmlLite.dll
2015-01-06 00:08 - 2015-01-06 00:08 - 001093120 _____ (Microsoft Corporation) [Archivo no firmado] C:\Windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8f\MFC80U.DLL
2013-09-24 15:37 - 2013-09-24 15:37 - 000879616 _____ (OEM) [Archivo no firmado] C:\Program Files (x86)\Intel Education Software\Hard Drive Protection\Hard Drive Protection\HPUtilityESM.dll
2014-05-09 14:18 - 2013-11-10 06:24 - 002449920 _____ (Python Software Foundation) [Archivo no firmado] C:\Program Files (x86)\NVDA\PYTHON27.DLL
2014-06-01 22:01 - 2012-02-14 19:37 - 000594432 _____ (Realtek Semiconductor Corp. ) [Archivo no firmado] C:\Windows\system32\Rtlihvs.dll
2014-06-04 02:02 - 2013-07-17 19:39 - 000024576 _____ (Realtek Semiconductor Corporation) [Archivo no firmado] C:\Program Files (x86)\REALTEK\Realtek Bluetooth\AvrcpIo64.dll
2014-06-04 02:02 - 2013-09-12 14:53 - 000110592 _____ (Realtek Semiconductor Corporation) [Archivo no firmado] C:\Program Files (x86)\REALTEK\Realtek Bluetooth\DevMenuExt.dll
2014-06-04 02:02 - 2013-10-10 10:56 - 000437760 _____ (Realtek Semiconductor Corporation) [Archivo no firmado] C:\Program Files (x86)\REALTEK\Realtek Bluetooth\DllMonoCtrl.dll
2014-06-04 02:02 - 2011-11-11 17:42 - 000032768 _____ (Realtek Semiconductor Corporation) [Archivo no firmado] C:\Program Files (x86)\REALTEK\Realtek Bluetooth\Dun.dll
2014-06-04 02:02 - 2013-09-04 16:36 - 000705536 _____ (Realtek Semiconductor Corporation) [Archivo no firmado] C:\Program Files (x86)\REALTEK\Realtek Bluetooth\obexpf.dll
2014-06-04 02:02 - 2013-03-01 16:17 - 000045568 _____ (Realtek Semiconductor Corporation) [Archivo no firmado] C:\Program Files (x86)\REALTEK\Realtek Bluetooth\rtsocket.dll
2014-06-04 02:02 - 2013-06-14 09:55 - 000290304 _____ (Realtek Semiconductor Corporation) [Archivo no firmado] C:\Program Files (x86)\REALTEK\Realtek Bluetooth\StereoControl.dll
2014-06-04 02:02 - 2013-07-17 19:39 - 000025600 _____ (Realtek Semiconductor Corporation) [Archivo no firmado] C:\Program Files (x86)\REALTEK\Realtek Bluetooth\VendorCmdExport.dll
2012-12-10 11:41 - 2012-12-10 11:41 - 001879040 _____ (Security Innovation, Inc.) [Archivo no firmado] C:\Program Files (x86)\Security Innovation\TSS\bin\Tsp1.dll
2012-12-10 15:39 - 2012-12-10 15:39 - 000004608 _____ (Security Innovation, Inc.) [Archivo no firmado] C:\Program Files (x86)\Security Innovation\TSS\bin\TspPopup_ESN.dll
2014-01-23 09:10 - 2014-01-23 09:10 - 000299008 _____ (The cURL library, hxxp://curl.haxx.se/) [Archivo no firmado] C:\Program Files (x86)\PDF Architect\libcurl.dll
2014-01-23 09:10 - 2014-01-23 09:10 - 001122304 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Archivo no firmado] C:\Program Files (x86)\PDF Architect\LIBEAY32.dll
2014-01-23 09:10 - 2014-01-23 09:10 - 000274432 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Archivo no firmado] C:\Program Files (x86)\PDF Architect\SSLEAY32.dll

==================== Alternate Data Streams (Lista blanca) ========

==================== Modo Seguro (Lista blanca) ==================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\STUDSRV => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TDKeybd.sys => ""="Driver"

==================== Asociación (Lista blanca) =================

==================== Internet Explorer sitios de confianza/restringidos ==========

==================== Hosts contenido: =========================

(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)

2013-08-22 10:25 - 2013-08-22 10:25 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Otras Áreas ===========================

Addition.txt. parte 1

    (Actualmente no existe una corrección automática para esta sección.)

    HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\TXE Components\TCS\;C:\Program Files\Intel\TXE Components\TCS\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Common Files\Intel Education\Application Support;C:\Program Files (x86)\Security Innovation\TSS\bin\;C:\Program Files (x86)\Calibre2\;C:\Program Files (x86)\Windows Live\Shared
    HKU\S-1-5-21-178309431-3327863904-3864560324-1001\Control Panel\Desktop\\Wallpaper -> F:\28871996_1869460966462244_4367054893135361431_n.png
    DNS Servers: 192.168.1.254
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
    Firewall de Windows está habilitado.

    Network Binding:
    =============
    Ethernet 3: VirtualBox NDIS6 Bridged Networking Driver -> oracle_vboxnetlwf (enabled) 
    Wi-Fi: VirtualBox NDIS6 Bridged Networking Driver -> oracle_vboxnetlwf (enabled) 
    VirtualBox Host-Only Network: VirtualBox NDIS6 Bridged Networking Driver -> oracle_vboxnetlwf (enabled) 

    ==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==

    (Si una entrada es incluida en el fixlist, será eliminada.)

    HKLM\...\StartupApproved\Run: => "BtServer"

    ==================== Reglas de firewall (Lista blanca) ================

    (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

    FirewallRules: [TCP Query User{DA0C6036-3569-42FD-8E0B-9B1D7D79ECF3}C:\program files\intel learning series\theft deterrent\agent.exe] => (Allow) C:\program files\intel learning series\theft deterrent\agent.exe (Intel) [Archivo no firmado]
    FirewallRules: [UDP Query User{9AA2D33E-C069-46BF-91CE-7DDD194BF95E}C:\program files\intel learning series\theft deterrent\agent.exe] => (Allow) C:\program files\intel learning series\theft deterrent\agent.exe (Intel) [Archivo no firmado]
    FirewallRules: [TCP Query User{E38A93ED-1741-4AB1-AD5F-1709FF0402CC}C:\miescritorio\aplicacion\jre6\bin\java.exe] => (Allow) C:\miescritorio\aplicacion\jre6\bin\java.exe
    FirewallRules: [UDP Query User{66035338-4253-438C-8471-1F64560E12C8}C:\miescritorio\aplicacion\jre6\bin\java.exe] => (Allow) C:\miescritorio\aplicacion\jre6\bin\java.exe
    FirewallRules: [{9D0BA6EE-1F5A-45B2-A43C-6C88664B2DB4}] => (Allow) C:\Users\alumno\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (Microsoft Corporation -> Microsoft Corporation)
    FirewallRules: [{9F6252FE-B596-447C-87FC-2576B41291DB}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation)
    FirewallRules: [{E9604B3D-BAC3-4569-9035-6C82D79266CC}] => (Allow) LPort=2869
    FirewallRules: [{476F696D-EEF4-4D2A-8D57-2F5F6253F851}] => (Allow) LPort=1900
    FirewallRules: [TCP Query User{F0BCDE66-50EA-49b8-B4B8-E255324C225D}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\GATESRV.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\GATESRV.exe () [Archivo no firmado]
    FirewallRules: [TCP Query User{71F74C2E-4A51-430e-8FAD-2797EA1ACF8B}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\GATESRV.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\GATESRV.exe () [Archivo no firmado]
    FirewallRules: [TCP Query User{C473F664-1AD8-491b-AE31-1978E1AE680A}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\GATESRV.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\GATESRV.exe () [Archivo no firmado]
    FirewallRules: [UDP Query User{020F137E-12E0-463b-8701-E68D43DEEE69}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\GATESRV.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\GATESRV.exe () [Archivo no firmado]
    FirewallRules: [UDP Query User{D443D1E0-DA88-4eda-851C-3C5FE6BDF32E}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\GATESRV.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\GATESRV.exe () [Archivo no firmado]
    FirewallRules: [UDP Query User{D112A71F-B83E-48f7-B8F6-AD04EC26638F}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\GATESRV.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\GATESRV.exe () [Archivo no firmado]
    FirewallRules: [TCP Query User{1244E463-B719-49af-9686-2F14D4B01C30}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\InstHelpApp.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\InstHelpApp.exe () [Archivo no firmado]
    FirewallRules: [TCP Query User{15189062-C4E1-4a3c-8C74-97FC8C194F8C}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\InstHelpApp.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\InstHelpApp.exe () [Archivo no firmado]
    FirewallRules: [TCP Query User{A9DA3A5C-3BF4-486f-A0FE-D75163E1D9C7}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\InstHelpApp.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\InstHelpApp.exe () [Archivo no firmado]
    FirewallRules: [UDP Query User{3FA4BF3A-2E39-4a6a-90CA-8BCE7B49F6A4}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\InstHelpApp.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\InstHelpApp.exe () [Archivo no firmado]
    FirewallRules: [UDP Query User{392FB2FA-9272-4717-B94F-3B3404081CCB}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\InstHelpApp.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\InstHelpApp.exe () [Archivo no firmado]
    FirewallRules: [UDP Query User{00069BC3-F91D-48ae-8236-A1D682A8D600}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\InstHelpApp.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\InstHelpApp.exe () [Archivo no firmado]
    FirewallRules: [TCP Query User{25E7B138-E640-4a5a-B34C-389399690B54}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\MasterHelper.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\MasterHelper.exe () [Archivo no firmado]
    FirewallRules: [TCP Query User{E5147CF3-EB3C-40a0-ACFB-F8C697EF4249}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\MasterHelper.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\MasterHelper.exe () [Archivo no firmado]
    FirewallRules: [TCP Query User{02235FA8-D629-4642-B451-C8B823684BAE}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\MasterHelper.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\MasterHelper.exe () [Archivo no firmado]
    FirewallRules: [UDP Query User{F064946F-967E-4ec7-8559-882C623DF59B}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\MasterHelper.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\MasterHelper.exe () [Archivo no firmado]
    FirewallRules: [UDP Query User{426F3374-739D-4aea-A4B1-5D1ABF18AC46}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\MasterHelper.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\MasterHelper.exe () [Archivo no firmado]
    FirewallRules: [UDP Query User{0341D0F8-DC33-4ea5-A389-B73FB903A5DF}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\MasterHelper.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\MasterHelper.exe () [Archivo no firmado]
    FirewallRules: [TCP Query User{D645904B-AD99-4a3a-B839-1AA4C87549B2}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Shutdown.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Shutdown.exe () [Archivo no firmado]
    FirewallRules: [TCP Query User{8ADDC5C8-2123-46eb-A21E-E5293E89D190}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Shutdown.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Shutdown.exe () [Archivo no firmado]
    FirewallRules: [TCP Query User{B7840EDD-AEDE-4704-BF96-C5D0C5F8E8B1}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Shutdown.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Shutdown.exe () [Archivo no firmado]
    FirewallRules: [UDP Query User{55A508A4-8887-43ad-ABCA-ACC2D3D8A879}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Shutdown.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Shutdown.exe () [Archivo no firmado]
    FirewallRules: [UDP Query User{A0121BAA-4975-42ea-9A38-BB5687430E6F}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Shutdown.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Shutdown.exe () [Archivo no firmado]
    FirewallRules: [UDP Query User{B54E5C94-791F-42f4-91DD-E634AD2D3010}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Shutdown.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\Shutdown.exe () [Archivo no firmado]
    FirewallRules: [TCP Query User{296B39DC-01D3-4629-9449-BEAA0342E6D7}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\StudentMain.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\StudentMain.exe ( () [Archivo no firmado])  [El archivo está en uso ]
    FirewallRules: [TCP Query User{2B27436F-BF73-49db-A1BB-89E88B01C4A6}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\StudentMain.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\StudentMain.exe ( () [Archivo no firmado])  [El archivo está en uso ]
    FirewallRules: [TCP Query User{34BD9CB7-AA18-4ed4-8F78-200D607268BC}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\StudentMain.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\StudentMain.exe ( () [Archivo no firmado])  [El archivo está en uso ]
    FirewallRules: [UDP Query User{56833DA7-EC31-4f6c-9EE2-237AF04FA67B}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\StudentMain.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\StudentMain.exe ( () [Archivo no firmado])  [El archivo está en uso ]
    FirewallRules: [UDP Query User{80E9D390-CF85-4bd9-A7A4-5BA2DFA3767B}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\StudentMain.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\StudentMain.exe ( () [Archivo no firmado])  [El archivo está en uso ]
    FirewallRules: [UDP Query User{F43E30AF-B975-46f9-AB4D-ECCF7AD833FB}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\StudentMain.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\StudentMain.exe ( () [Archivo no firmado])  [El archivo está en uso ]
    FirewallRules: [TCP Query User{78E76F0A-4776-4171-BF50-C921B975B9F6}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDChalk.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDChalk.exe () [Archivo no firmado]
    FirewallRules: [TCP Query User{A8127CC3-FC8C-4325-82AF-111C0C5550EE}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDChalk.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDChalk.exe () [Archivo no firmado]
    FirewallRules: [TCP Query User{26E853A9-BA28-4bf9-AF24-70C146B57F56}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDChalk.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDChalk.exe () [Archivo no firmado]
    FirewallRules: [UDP Query User{7372AC9F-4C08-4fb4-BA96-6B073663C3CF}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDChalk.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDChalk.exe () [Archivo no firmado]
    FirewallRules: [UDP Query User{7474FC82-0DAC-4259-9D23-E5A6E07B149F}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDChalk.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDChalk.exe () [Archivo no firmado]
    FirewallRules: [UDP Query User{83D711D6-24EF-48a9-9323-B1CF380D1F1B}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDChalk.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDChalk.exe () [Archivo no firmado]
    FirewallRules: [TCP Query User{AB2917B5-4625-44d1-A26A-75F2DB1A8593}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDOvrSet.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDOvrSet.exe () [Archivo no firmado]
    FirewallRules: [TCP Query User{49E52629-947A-4578-B29E-445A2E7A0ED3}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDOvrSet.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDOvrSet.exe () [Archivo no firmado]
    FirewallRules: [TCP Query User{1392D114-09E3-43ce-91B8-4B9A0F2C3EAE}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDOvrSet.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDOvrSet.exe () [Archivo no firmado]
    FirewallRules: [UDP Query User{768C3681-8896-4bf0-A4B4-337BA601306B}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDOvrSet.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDOvrSet.exe () [Archivo no firmado]
    FirewallRules: [UDP Query User{7B6F6C20-4C46-4d24-9456-99B6F1118D98}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDOvrSet.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDOvrSet.exe () [Archivo no firmado]
    FirewallRules: [UDP Query User{E383AE5D-0F81-404e-981A-889AEA5C890D}C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDOvrSet.exe] => (Allow) C:\Program Files (x86)\Intel(R) Learning Series\Classroom Management by Mythware\TDOvrSet.exe () [Archivo no firmado]
    FirewallRules: [TCP Query User{432A08FC-985B-4B19-ABAF-88CDC51991AF}C:\program files (x86)\ihmc cmaptools\jre\bin\javaw.exe] => (Allow) C:\program files (x86)\ihmc cmaptools\jre\bin\javaw.exe
    FirewallRules: [UDP Query User{9EAAB785-07D7-424F-9FA7-0BF31A7F3B6E}C:\program files (x86)\ihmc cmaptools\jre\bin\javaw.exe] => (Allow) C:\program files (x86)\ihmc cmaptools\jre\bin\javaw.exe
    FirewallRules: [TCP Query User{221D9CEF-605D-4F11-8951-62B2F9027084}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN) [Archivo no firmado]
    FirewallRules: [UDP Query User{BA7EDD39-ECA6-4AD3-8F8E-420245A7D02A}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN) [Archivo no firmado]
    FirewallRules: [TCP Query User{AF70F975-9D08-4DB8-88BD-ECC69FAB6BE1}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Allow) C:\program files (x86)\libreoffice 4\program\soffice.bin (The Document Foundation) [Archivo no firmado]
    FirewallRules: [UDP Query User{8CC1853C-5D67-4435-8F96-9594B0D7BE7A}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Allow) C:\program files (x86)\libreoffice 4\program\soffice.bin (The Document Foundation) [Archivo no firmado]
    FirewallRules: [{D0747769-CB08-4799-A5E0-5315D368814C}] => (Allow) C:\Users\alumno\AppData\Local\Programs\Opera\60.0.3255.27\opera.exe => Ningún archivo
    FirewallRules: [TCP Query User{3A08F04E-1BDA-4372-850F-27A899EAAFCA}F:\xampp\apache\bin\httpd.exe] => (Allow) F:\xampp\apache\bin\httpd.exe (Apache Software Foundation) [Archivo no firmado]
    FirewallRules: [UDP Query User{C0097345-E18D-4E48-AD40-269E9875B0E2}F:\xampp\apache\bin\httpd.exe] => (Allow) F:\xampp\apache\bin\httpd.exe (Apache Software Foundation) [Archivo no firmado]
    FirewallRules: [TCP Query User{DDC2137B-1FD2-43AB-9FD4-3010CB275C73}F:\xampp\mysql\bin\mysqld.exe] => (Block) F:\xampp\mysql\bin\mysqld.exe (MariaDB Corporation Ab -> )
    FirewallRules: [UDP Query User{D23368F8-DF21-4966-9FA0-096C9A724DD0}F:\xampp\mysql\bin\mysqld.exe] => (Block) F:\xampp\mysql\bin\mysqld.exe (MariaDB Corporation Ab -> )
    FirewallRules: [{90564E71-6617-47D7-8D20-D4332C5D9748}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

    ==================== Puntos de Restauración =========================


    ==================== Dispositivos defectuosos en el Administrador de dispositivos ============

    Name: Intel(R) Trusted Execution Engine Interface 
    Description: Intel(R) Trusted Execution Engine Interface 
    Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318}
    Manufacturer: Intel
    Service: TXEIx64
    Problem: : This device cannot start. (Code10)
    Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
    On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


    ==================== Errores del registro de eventos: ========================

    Errores de aplicación:
    ==================
    Error: (05/14/2020 06:19:59 PM) (Source: ESENT) (EventID: 482) (User: )
    Description: wlmail (260) WindowsLiveMail2: Al intentar escribir en el archivo "C:\Users\alumno\AppData\Local\Microsoft\Windows Live Mail\edbres00001.jrs", en la posición 2097152 (0x0000000000200000) 0 (0x00000000) bytes se produjo el error de sistema 112 (0x00000070) después de 0.000 segundos: "Espacio en disco insuficiente. ". La operación de escritura se cerrará con el error -1808 (0xfffff8f0). Si el error persiste, es posible que el archivo esté dañado y sea necesario restaurarlo desde una copia de seguridad anterior.

    Error: (05/14/2020 06:19:59 PM) (Source: ESENT) (EventID: 428) (User: )
    Description: wlmail (260) WindowsLiveMail2: El motor de base de datos está rechazando operaciones de actualización por falta de espacio disponible en el disco de registro.

    Error: (05/14/2020 06:19:59 PM) (Source: ESENT) (EventID: 482) (User: )
    Description: wlmail (260) WindowsLiveMail2: Al intentar escribir en el archivo "C:\Users\alumno\AppData\Local\Microsoft\Windows Live Mail\edbres00001.jrs", en la posición 2097152 (0x0000000000200000) 0 (0x00000000) bytes se produjo el error de sistema 112 (0x00000070) después de 0.000 segundos: "Espacio en disco insuficiente. ". La operación de escritura se cerrará con el error -1808 (0xfffff8f0). Si el error persiste, es posible que el archivo esté dañado y sea necesario restaurarlo desde una copia de seguridad anterior.

    Error: (05/14/2020 06:19:59 PM) (Source: ESENT) (EventID: 482) (User: )
    Description: wlmail (260) WindowsLiveMail2: Al intentar escribir en el archivo "C:\Users\alumno\AppData\Local\Microsoft\Windows Live Mail\edbtmp.log", en la posición 2097152 (0x0000000000200000) 0 (0x00000000) bytes se produjo el error de sistema 112 (0x00000070) después de 0.000 segundos: "Espacio en disco insuficiente. ". La operación de escritura se cerrará con el error -1808 (0xfffff8f0). Si el error persiste, es posible que el archivo esté dañado y sea necesario restaurarlo desde una copia de seguridad anterior.

    Error: (05/14/2020 06:19:58 PM) (Source: ESENT) (EventID: 482) (User: )
    Description: wlmail (260) WindowsLiveMail0: Al intentar escribir en el archivo "C:\Users\alumno\AppData\Local\Microsoft\Windows Live Mail\edbres00001.jrs", en la posición 2097152 (0x0000000000200000) 0 (0x00000000) bytes se produjo el error de sistema 112 (0x00000070) después de 0.000 segundos: "Espacio en disco insuficiente. ". La operación de escritura se cerrará con el error -1808 (0xfffff8f0). Si el error persiste, es posible que el archivo esté dañado y sea necesario restaurarlo desde una copia de seguridad anterior.

    Error: (05/14/2020 06:19:58 PM) (Source: ESENT) (EventID: 428) (User: )
    Description: wlmail (260) WindowsLiveMail0: El motor de base de datos está rechazando operaciones de actualización por falta de espacio disponible en el disco de registro.

    Error: (05/14/2020 06:19:58 PM) (Source: ESENT) (EventID: 482) (User: )
    Description: wlmail (260) WindowsLiveMail0: Al intentar escribir en el archivo "C:\Users\alumno\AppData\Local\Microsoft\Windows Live Mail\edbres00001.jrs", en la posición 2097152 (0x0000000000200000) 0 (0x00000000) bytes se produjo el error de sistema 112 (0x00000070) después de 0.000 segundos: "Espacio en disco insuficiente. ". La operación de escritura se cerrará con el error -1808 (0xfffff8f0). Si el error persiste, es posible que el archivo esté dañado y sea necesario restaurarlo desde una copia de seguridad anterior.

    Error: (05/14/2020 06:19:58 PM) (Source: ESENT) (EventID: 482) (User: )
    Description: wlmail (260) WindowsLiveMail0: Al intentar escribir en el archivo "C:\Users\alumno\AppData\Local\Microsoft\Windows Live Mail\edbtmp.log", en la posición 2097152 (0x0000000000200000) 0 (0x00000000) bytes se produjo el error de sistema 112 (0x00000070) después de 0.000 segundos: "Espacio en disco insuficiente. ". La operación de escritura se cerrará con el error -1808 (0xfffff8f0). Si el error persiste, es posible que el archivo esté dañado y sea necesario restaurarlo desde una copia de seguridad anterior.


    Errores del sistema:
    =============
    Error: (05/14/2020 06:21:26 PM) (Source: DCOM) (EventID: 10010) (User: CI7427EA96F04D)
    Description: El servidor {216DA6DC-BFD5-4724-817A-05A759C8F9A2} no se registró con DCOM dentro del tiempo de espera requerido.

    Error: (05/14/2020 02:50:20 PM) (Source: VBoxNetLwf) (EventID: 12) (User: )
    Description: El controlador detectó un error interno del controlador en \Device\VBoxNetLwf.

    Error: (05/14/2020 02:50:18 PM) (Source: VBoxNetLwf) (EventID: 12) (User: )
    Description: El controlador detectó un error interno del controlador en \Device\VBoxNetLwf.

    Error: (05/14/2020 02:50:01 PM) (Source: TXEIx64) (EventID: 3) (User: )
    Description: Intel(R) Trusted Execution Engine Interface driver has failed to perform handshake with the Firmware.

    Error: (05/14/2020 02:49:46 PM) (Source: Application Popup) (EventID: 1060) (User: )
    Description: \SystemRoot\SysWOW64\drivers\TDKeybd.sys

    Error: (05/14/2020 12:58:52 PM) (Source: DCOM) (EventID: 10010) (User: CI7427EA96F04D)
    Description: El servidor {1B1F472E-3221-4826-97DB-2C2324D389AE} no se registró con DCOM dentro del tiempo de espera requerido.

    Error: (05/14/2020 12:58:22 PM) (Source: DCOM) (EventID: 10010) (User: CI7427EA96F04D)
    Description: El servidor {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} no se registró con DCOM dentro del tiempo de espera requerido.

    Error: (05/13/2020 08:51:35 PM) (Source: VBoxNetLwf) (EventID: 12) (User: )
    Description: El controlador detectó un error interno del controlador en \Device\VBoxNetLwf.


    Windows Defender:
    ===================================
    Date: 2020-05-14 18:30:05.163
    Description: 
    El examen de Windows Defender se detuvo antes de completarse.
    Id. de examen: {C2D45CB6-C870-4219-ABFF-73ED3ABA53E0}
    Tipo de examen: Antimalware
    Parámetros de examen: Examen rápido
    Usuario: CI7427EA96F04D\alumno

    Date: 2020-05-14 15:04:33.100
    Description: 
    El examen de Windows Defender se detuvo antes de completarse.
    Id. de examen: {0904586D-F231-4F9C-9AF4-40D3CDCE6789}
    Tipo de examen: Antimalware
    Parámetros de examen: Examen rápido
    Usuario: NT AUTHORITY\SYSTEM

    Date: 2020-05-14 13:03:11.311
    Description: 
    El examen de Windows Defender se detuvo antes de completarse.
    Id. de examen: {A567F964-E98C-46E3-A64D-4978FD92385B}
    Tipo de examen: Antimalware
    Parámetros de examen: Examen rápido
    Usuario: NT AUTHORITY\SYSTEM

    Date: 2020-05-13 00:32:16.408
    Description: 
    El examen de Windows Defender se detuvo antes de completarse.
    Id. de examen: {D0CAFD69-49EE-4E64-9A6E-7014432CC120}
    Tipo de examen: Antimalware
    Parámetros de examen: Examen rápido
    Usuario: NT AUTHORITY\SYSTEM

    Date: 2020-03-08 18:39:05.379
    Description: 
    El examen de Windows Defender se detuvo antes de completarse.
    Id. de examen: {107FC27D-BBED-4356-9D61-8772CEA75C33}
    Tipo de examen: Antimalware
    Parámetros de examen: Examen rápido
    Usuario: NT AUTHORITY\SYSTEM

    Date: 2020-05-13 15:41:58.665
    Description: 
    Windows Defender encontró un error al intentar actualizar las firmas.
    Nueva versión de firma: 
    Versión de firma anterior: 119.0.0.0
    Origen de actualización: Centro de protección contra malware de Microsoft
    Tipo de firma: Sistema de inspección de red
    Tipo de actualización: Completa
    Usuario: NT AUTHORITY\Servicio de red
    Versión de motor actual: 
    Versión de motor anterior: 2.1.14600.4
    Código de error: 0x80072ee7
    Descripción del error: No se pudo resolver el nombre de servidor o su dirección 

    Date: 2020-05-13 15:41:58.652
    Description: 
    Windows Defender encontró un error al intentar actualizar las firmas.
    Nueva versión de firma: 
    Versión de firma anterior: 1.311.1057.0
    Origen de actualización: Centro de protección contra malware de Microsoft
    Tipo de firma: AntiSpyware
    Tipo de actualización: Completa
    Usuario: NT AUTHORITY\Servicio de red
    Versión de motor actual: 
    Versión de motor anterior: 1.1.16800.2
    Código de error: 0x80072ee7
    Descripción del error: No se pudo resolver el nombre de servidor o su dirección 

    Date: 2020-05-13 15:41:58.652
    Description: 
    Windows Defender encontró un error al intentar actualizar las firmas.
    Nueva versión de firma: 
    Versión de firma anterior: 1.311.1057.0
    Origen de actualización: Centro de protección contra malware de Microsoft
    Tipo de firma: AntiVirus
    Tipo de actualización: Completa
    Usuario: NT AUTHORITY\Servicio de red
    Versión de motor actual: 
    Versión de motor anterior: 1.1.16800.2
    Código de error: 0x80072ee7
    Descripción del error: No se pudo resolver el nombre de servidor o su dirección 

    Date: 2020-05-13 15:41:58.575
    Description: 
    Windows Defender encontró un error al intentar actualizar las firmas.
    Nueva versión de firma: 
    Versión de firma anterior: 1.311.1057.0
    Origen de actualización: Servidor de Microsoft Update
    Tipo de firma: AntiVirus
    Tipo de actualización: Completa
    Usuario: NT AUTHORITY\SYSTEM
    Versión de motor actual: 
    Versión de motor anterior: 1.1.16800.2
    Código de error: 0x8024402c
    Descripción del error: Se produjo un problema inesperado mientras se buscaban actualizaciones. Para obtener más información sobre cómo instalar o solucionar problemas en las actualizaciones, consulte Ayuda y soporte técnico. 

    Date: 2020-05-13 15:32:19.848
    Description: 
    Windows Defender encontró un error al intentar actualizar las firmas.
    Nueva versión de firma: 
    Versión de firma anterior: 119.0.0.0
    Origen de actualización: Centro de protección contra malware de Microsoft
    Tipo de firma: Sistema de inspección de red
    Tipo de actualización: Completa
    Usuario: NT AUTHORITY\Servicio de red
    Versión de motor actual: 
    Versión de motor anterior: 2.1.14600.4
    Código de error: 0x80072ee7
    Descripción del error: No se pudo resolver el nombre de servidor o su dirección 

    CodeIntegrity:
    ===================================

    Date: 2020-05-14 14:49:46.647
    Description: 
    Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\SysWOW64\drivers\TDKeybd.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

    Date: 2020-05-14 12:59:59.392
    Description: 
    Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

    Date: 2020-05-13 20:51:03.293
    Description: 
    Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\SysWOW64\drivers\TDKeybd.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

    Date: 2020-05-13 17:35:20.878
    Description: 
    Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\SysWOW64\drivers\TDKeybd.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

    Date: 2020-05-13 15:31:19.429
    Description: 
    Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\SysWOW64\drivers\TDKeybd.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

    Date: 2020-05-13 00:29:13.348
    Description: 
    Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

    Date: 2020-05-12 18:04:47.158
    Description: 
    Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\SysWOW64\drivers\TDKeybd.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

    Date: 2020-03-13 01:46:43.144
    Description: 
    Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\SysWOW64\drivers\TDKeybd.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

    ==================== Información de la memoria =========================== 

    BIOS: Phoenix Technologies Ltd. MPBYT10A.10C.0029.2014.0605.1433 06/05/2014
    Placa base: Intel Corporation Intel powered classmate PC
    Procesador: Intel(R) Celeron(R) CPU N2806 @ 1.60GHz
    Porcentaje de memoria en uso: 62%
    RAM física total: 3973.41 MB
    RAM física disponible: 1472.82 MB
    Virtual total: 4869.41 MB
    Virtual disponible: 2100.85 MB

    ==================== Unidades ================================

    Drive c: () (Fixed) (Total:40.05 GB) (Free:0.47 GB) NTFS
    Drive d: (RECURSOS) (Fixed) (Total:35 GB) (Free:4.02 GB) NTFS
    Drive f: (DATOS) (Fixed) (Total:158.52 GB) (Free:97.87 GB) NTFS

    \\?\Volume{ca712049-63c6-4d4b-a6a5-88f7b77b6b06}\ (Recuperación) (Fixed) (Total:0.29 GB) (Free:0.27 GB) NTFS

    ==================== MBR & Tabla de particiones ====================

    ==========================================================
    Disk: 0 (Size: 298.1 GB) (Disk ID: 4EFBA537)

    Partition: GPT.

    ==================== Final de Addition.txt =======================

@Miguelgrado esta es la parte 2

No veo mucho de donde sacar…aparte de algun programa muy desactualziado, como Firefox, que si lo usas deberias actualziar o si no desinstalar.

El problema es que C es un Disco con poco mas de 40 Gigas y eso a dia de hoy, para solo lo que ocupa el sistema y sus actualizaciones, es casi imposible de usar.

No se si en C tienes algo pesado como videos etc que puedas pasar a otra particion, pero si no poco mas,.

Intenta esto.

Boton derecho sobre C y abres en propiedades - herrameintas el liberador de espacio y mira si puedes limpiar las actualziaciones antiguas, que recuperaras un buen numero de Gigas

Luego ademas.

Bien… y ahora sigue estos pasos, MUY Importante ~ Realiza una copia de seguridad del registro :

  • Para hacerlo descarga Delfix en tu escritorio.

  • Doble clic para ejecutarlo.(Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona "Ejecutar como Administrador.")

  • Atención, ahora marca/selecciona únicamente las casillas Registry Backup, las demás NO

  • Pulsar en Run.

Se abrirá el informe (Delfix.txt), guárdalo por si fuera necesario y cierra la herramienta.


En el equipo con los demas programas cerrados:

Inicio >>> Ejecutar >>>Escribes notepad.exe.

Ahora copia y pega estos archivos dentro del Notepad:


Start
CreateRestorePoint:
CloseProcesses:

FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN
R1 MpKsl5207c8b6; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{7075DDD9-9CEB-4A5C-AB82-765D023682A7}\MpKsl5207c8b6.sys [X]
R1 MpKslDrv; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{7075DDD9-9CEB-4A5C-AB82-765D023682A7}\MpKslDrv.sys [X]
2019-11-14 08:07 - 2019-11-14 08:07 - 000000000 _____ () C:\Users\alumno\AppData\Local\{0512A1CA-5330-4AB9-9053-327BEFA7B807}
2019-11-06 19:19 - 2019-11-06 19:19 - 000000000 _____ () C:\Users\alumno\AppData\Local\{0A3B49F6-AB69-41A4-A9EB-214B8DF89C94}
2019-11-15 11:52 - 2019-11-15 11:52 - 000000000 _____ () C:\Users\alumno\AppData\Local\{0FC46D3D-3B9F-44B8-800F-E8C5BCAC6054}
2019-10-31 21:49 - 2019-10-31 21:49 - 000000000 _____ () C:\Users\alumno\AppData\Local\{1A499F55-93E6-43D7-AA02-3FC8D923A038}
2019-10-29 19:42 - 2019-10-29 19:42 - 000000000 _____ () C:\Users\alumno\AppData\Local\{3384C52E-F3C1-4634-85B8-BC13EC9CB443}
2019-11-02 19:22 - 2019-11-02 19:22 - 000000000 _____ () C:\Users\alumno\AppData\Local\{4457CD55-8A98-4CD7-A718-CE100F7FE33C}
2019-11-04 19:22 - 2019-11-04 19:22 - 000000000 _____ () C:\Users\alumno\AppData\Local\{61AF6D7B-305C-42A4-972B-E923C5791613}
2019-11-07 21:02 - 2019-11-07 21:02 - 000000000 _____ () C:\Users\alumno\AppData\Local\{7B6DC75B-107D-42AE-A915-73E44A530F63}
2019-10-28 19:31 - 2019-10-28 19:31 - 000000000 _____ () C:\Users\alumno\AppData\Local\{979B0C60-A1A4-494C-B5D7-163DB8C9B59D}
2019-09-23 23:39 - 2019-09-23 23:39 - 000000000 _____ () C:\Users\alumno\AppData\Local\{9DD05177-9EDD-486C-80B9-FB2D28C3A44B}
2019-09-22 19:14 - 2019-09-22 19:14 - 000000000 _____ () C:\Users\alumno\AppData\Local\{BCF4C459-2BDA-4018-B390-56556A6DF478}
2019-11-09 19:22 - 2019-11-09 19:22 - 000000000 _____ () C:\Users\alumno\AppData\Local\{F6F0F735-491F-4365-A058-DEF9E76FF8E7}
FCheck: C:\Windows\system32\et7unst#1.exe [2014-05-18] <==== ATENCIÓN (cero bytes Archivo/Carpeta)


HOSTS:
REMOVEPROXY:
EMPTYTEMP:
CMD: netsh winsock reset
CMD: ipconfig /renew
CMD: ipconfig /flushdns
CMD: bitsadmin /reset /allusers
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
END

Lo guardas bajo el nombre de fixlist.txt en el escritorio <<< Esto es muy importante.<<

Nota: Es importante que la Hta Frst.exe y fixlist.txt se encuentren en la misma ubicación (escritorio) o si no no trabajara.

  • Ejecutas Frst.exe.

  • Presionas el botón Corregir y aguardas a que termine.

  • La Herramienta guardara el reporte en tu escritorio (Fixlog.txt).

Lo pegas en tu próxima respuesta, comentado como va el problema y cuanto espacio hay libre ahora

Y una pregunta…las particiones D y F,son discos duros diferentes o son particiones del Disco C?

Si no lo sabes, boton derecho en Equipo -administrar- administrador de discos y me pones una captura o me dices cuantos Discos aparecen

Porfavor disculpeme :pleading_face: :pray: estaba terminando de presentar unos practicos y no pude terminar de hacer la limpieza y leer el mensaje . ah! a qui estan los discos que aparecen!

@Miguelgrado Disculpe mi ignorancia , queria preguntarle que tipo de DelFix tendría o me recomendaria descargar?

No entiendo…solo hay un Delfix…

Por otra parte,tienes un solo disco…venia asi particionado?’

Porque si alguin o tu lo hiciste, lo hiciste o hicieron de pena…dejar solo para el sistema 48 Gigas…cuando eso se lo come casi el sistema…

Deberia tener a lo poco 100 Gigas…

Realzias todo lo indicado y al finalizar me dices cuanto tienes libre y luego ,si eso, te indico abrir otro tema nuevo, para que alguin te ayude a si se puede, extender la Unidad C usando espacio de las otras partyciones

de allí yo elegí la primera opción que me sale . Esta bien?

No me acuerdo haber tocado nada de ese disco … creo que ya me vino así , es una net del gobierno que nos repartieron en 1er año de secundaria.

Es que no hay otra…el link que te puse te lleva a la pagina de descarga

Pues se lucieron…

@Miguelgrado

y al abrirla me sale eso :point_up_2:

Ehhhh,pero porque ,vamos a ver,pinchas el link y te lleva a la pagina de Delfix,a la derecha abajo debes dar a descagar programa y descargar el Delfix…

Lo que señalas donde pone Adwcleaner y demás…como ves no tiene enlace de descarga,son explicaciones de herramientas que Delfix puede eliminar…si tuvieras que usar Adwcleaner te pondria el link para esa herramienta…

Tienes que descargar Delfix

Resultados de la corrección de Farbar Recovery Scan Tool (x64) Versión: 13-05-2020 01
Ejecutado por alumno (15-05-2020 16:59:56) Run:1
Ejecutado desde F:\usuarios\alumno\Escritorio
Perfiles cargados: alumno
Modo de Inicio: Normal
==============================================

fixlist contenido:
*****************

Start
CreateRestorePoint:
CloseProcesses:

FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricci�n <==== ATENCI�N
R1 MpKsl5207c8b6; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{7075DDD9-9CEB-4A5C-AB82-765D023682A7}\MpKsl5207c8b6.sys [X]
R1 MpKslDrv; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{7075DDD9-9CEB-4A5C-AB82-765D023682A7}\MpKslDrv.sys [X]
2019-11-14 08:07 - 2019-11-14 08:07 - 000000000 _____ () C:\Users\alumno\AppData\Local\{0512A1CA-5330-4AB9-9053-327BEFA7B807}
2019-11-06 19:19 - 2019-11-06 19:19 - 000000000 _____ () C:\Users\alumno\AppData\Local\{0A3B49F6-AB69-41A4-A9EB-214B8DF89C94}
2019-11-15 11:52 - 2019-11-15 11:52 - 000000000 _____ () C:\Users\alumno\AppData\Local\{0FC46D3D-3B9F-44B8-800F-E8C5BCAC6054}
2019-10-31 21:49 - 2019-10-31 21:49 - 000000000 _____ () C:\Users\alumno\AppData\Local\{1A499F55-93E6-43D7-AA02-3FC8D923A038}
2019-10-29 19:42 - 2019-10-29 19:42 - 000000000 _____ () C:\Users\alumno\AppData\Local\{3384C52E-F3C1-4634-85B8-BC13EC9CB443}
2019-11-02 19:22 - 2019-11-02 19:22 - 000000000 _____ () C:\Users\alumno\AppData\Local\{4457CD55-8A98-4CD7-A718-CE100F7FE33C}
2019-11-04 19:22 - 2019-11-04 19:22 - 000000000 _____ () C:\Users\alumno\AppData\Local\{61AF6D7B-305C-42A4-972B-E923C5791613}
2019-11-07 21:02 - 2019-11-07 21:02 - 000000000 _____ () C:\Users\alumno\AppData\Local\{7B6DC75B-107D-42AE-A915-73E44A530F63}
2019-10-28 19:31 - 2019-10-28 19:31 - 000000000 _____ () C:\Users\alumno\AppData\Local\{979B0C60-A1A4-494C-B5D7-163DB8C9B59D}
2019-09-23 23:39 - 2019-09-23 23:39 - 000000000 _____ () C:\Users\alumno\AppData\Local\{9DD05177-9EDD-486C-80B9-FB2D28C3A44B}
2019-09-22 19:14 - 2019-09-22 19:14 - 000000000 _____ () C:\Users\alumno\AppData\Local\{BCF4C459-2BDA-4018-B390-56556A6DF478}
2019-11-09 19:22 - 2019-11-09 19:22 - 000000000 _____ () C:\Users\alumno\AppData\Local\{F6F0F735-491F-4365-A058-DEF9E76FF8E7}
FCheck: C:\Windows\system32\et7unst#1.exe [2014-05-18] <==== ATENCI�N (cero bytes Archivo/Carpeta)


HOSTS:
REMOVEPROXY:
EMPTYTEMP:
CMD: netsh winsock reset
CMD: ipconfig /renew
CMD: ipconfig /flushdns
CMD: bitsadmin /reset /allusers
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
END
*****************

El punto de restauración fue creado correctamente.
Procesos cerrados correctamente.
HKLM\SOFTWARE\Policies\Mozilla => eliminado correctamente
HKLM\System\CurrentControlSet\Services\MpKsl5207c8b6 => eliminado correctamente
MpKsl5207c8b6 => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\MpKslDrv => eliminado correctamente
MpKslDrv => servicio eliminado correctamente
C:\Users\alumno\AppData\Local\{0512A1CA-5330-4AB9-9053-327BEFA7B807} => movido correctamente
C:\Users\alumno\AppData\Local\{0A3B49F6-AB69-41A4-A9EB-214B8DF89C94} => movido correctamente
C:\Users\alumno\AppData\Local\{0FC46D3D-3B9F-44B8-800F-E8C5BCAC6054} => movido correctamente
C:\Users\alumno\AppData\Local\{1A499F55-93E6-43D7-AA02-3FC8D923A038} => movido correctamente
C:\Users\alumno\AppData\Local\{3384C52E-F3C1-4634-85B8-BC13EC9CB443} => movido correctamente
C:\Users\alumno\AppData\Local\{4457CD55-8A98-4CD7-A718-CE100F7FE33C} => movido correctamente
C:\Users\alumno\AppData\Local\{61AF6D7B-305C-42A4-972B-E923C5791613} => movido correctamente
C:\Users\alumno\AppData\Local\{7B6DC75B-107D-42AE-A915-73E44A530F63} => movido correctamente
C:\Users\alumno\AppData\Local\{979B0C60-A1A4-494C-B5D7-163DB8C9B59D} => movido correctamente
C:\Users\alumno\AppData\Local\{9DD05177-9EDD-486C-80B9-FB2D28C3A44B} => movido correctamente
C:\Users\alumno\AppData\Local\{BCF4C459-2BDA-4018-B390-56556A6DF478} => movido correctamente
C:\Users\alumno\AppData\Local\{F6F0F735-491F-4365-A058-DEF9E76FF8E7} => movido correctamente
C:\Windows\system32\et7unst#1.exe => movido correctamente
C:\Windows\System32\Drivers\etc\hosts => movido correctamente
Hosts restaurado correctamente.

========= RemoveProxy: =========

"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente
"HKU\S-1-5-21-178309431-3327863904-3864560324-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\S-1-5-21-178309431-3327863904-3864560324-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente


========= Final de RemoveProxy: =========


========= netsh winsock reset =========


El cat logo Winsock se restableci¢ correctamente.
Debe reiniciar el equipo para completar el restablecimiento.


========= Final de CMD: =========


========= ipconfig /renew =========


Configuraci¢n IP de Windows

No se puede realizar ninguna operaci¢n en Ethernet 3 mientras los medios
est‚n desconectados.
No se puede realizar ninguna operaci¢n en Conexi¢n de  rea local* 3 mientras los medios
est‚n desconectados.

Adaptador de Ethernet Ethernet 3:

   Estado de los medios. . . . . . . . . . . : medios desconectados
   Sufijo DNS espec¡fico para la conexi¢n. . : 

Adaptador de LAN inal mbrica Conexi¢n de  rea local* 3:

   Estado de los medios. . . . . . . . . . . : medios desconectados
   Sufijo DNS espec¡fico para la conexi¢n. . : 

Adaptador de LAN inal mbrica Wi-Fi:

   Sufijo DNS espec¡fico para la conexi¢n. . : 
   V¡nculo: direcci¢n IPv6 local. . . : fe80::d1f5:f4e9:f074:88aa%5
   Direcci¢n IPv4. . . . . . . . . . . . . . : 192.168.1.71
   M scara de subred . . . . . . . . . . . . : 255.255.255.0
   Puerta de enlace predeterminada . . . . . : 192.168.1.254

Adaptador de Ethernet VirtualBox Host-Only Network:

   Sufijo DNS espec¡fico para la conexi¢n. . : 
   V¡nculo: direcci¢n IPv6 local. . . : fe80::850e:a193:33a9:b2b3%11
   Direcci¢n IPv4. . . . . . . . . . . . . . : 192.168.56.1
   M scara de subred . . . . . . . . . . . . : 255.255.255.0
   Puerta de enlace predeterminada . . . . . : 

Adaptador de t£nel isatap.{0135FBFC-40B8-490A-AEF6-F806AAAA45C7}:

   Estado de los medios. . . . . . . . . . . : medios desconectados
   Sufijo DNS espec¡fico para la conexi¢n. . : 

Adaptador de t£nel isatap.{AA54D9DE-2A46-4C4E-BC9C-439126AB0C6C}:

   Estado de los medios. . . . . . . . . . . : medios desconectados
   Sufijo DNS espec¡fico para la conexi¢n. . : 

========= Final de CMD: =========


========= ipconfig /flushdns =========


Configuraci¢n IP de Windows

Se vaci¢ correctamente la cach‚ de resoluci¢n de DNS.

========= Final de CMD: =========


========= bitsadmin /reset /allusers =========


BITSADMIN version 3.0 [ 7.7.9600 ]
BITS administration utility.
(C) Copyright 2000-2006 Microsoft Corp.

BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.

Unable to cancel {216BA91F-FB2E-49D1-A540-6C36CAAE8FD6}.
Unable to cancel {41A51314-0E97-4717-8277-B9AAA7FBECDF}.
Unable to cancel {ECC33FF9-C730-4E8C-AEB3-99818992B3B3}.
Unable to cancel {75A48468-7E23-4929-8E24-F77D3E886E7A}.
Unable to cancel {DC0F256C-F3D4-4573-8B72-AB9AF9027A44}.
Unable to cancel {E637EC51-0F3A-43CD-80C3-A55A4254B286}.
Unable to cancel {DF6F3FCE-FD98-4EF3-9B6B-EA812CC51812}.
Unable to cancel {ADE94CFE-D853-481D-B4D3-9DF836C4FF61}.
Unable to cancel {78905238-9FA0-40B7-B266-90B6A4FDD9F1}.
Unable to cancel {B6EF8E9D-60BB-417A-816D-6B7E3C287CD3}.
Unable to cancel {B52A8D7B-6C46-4788-B9E1-887D15B21118}.
Unable to cancel {0382ACB7-3E53-4048-81B0-41C4F5EEFD1C}.
Unable to cancel {2502A2FF-9934-4CA3-BE0C-08B151CA8BCF}.
Unable to cancel {5FB8C64C-4CBB-4627-989C-E7EA1FA8D85D}.
Unable to cancel {6FD83AAC-5A23-4F84-AD75-25026EECB5AB}.
Unable to cancel {872E9557-D23B-4188-B18E-A2569CAE7969}.
Unable to cancel {AB7C1B14-503A-4DCD-9683-121BADC214B7}.
Unable to cancel {AD3B7469-6F82-4D70-A9CB-65781894641F}.
Unable to cancel {0BCBEF65-A519-4FC6-B849-56FEDF245D85}.
Unable to cancel {92E09532-6695-44A9-A62C-340C31AC5C04}.
Unable to cancel {12A0C120-54CB-4942-B469-316F5C324878}.
Unable to cancel {55BC539B-F150-4E2B-BF18-1647D157DE45}.
0 out of 22 jobs canceled.

========= Final de CMD: =========


========= netsh advfirewall reset =========

Aceptar


========= Final de CMD: =========


========= netsh advfirewall set allprofiles state ON =========

Aceptar


========= Final de CMD: =========


========= netsh int ipv4 reset =========

Global se restableci¢ correctamente.
Interfaz se restableci¢ correctamente.
Direcci¢n de unidifusi¢n se restableci¢ correctamente.
Vecino se restableci¢ correctamente.
Ruta de acceso se restableci¢ correctamente.
Error al restablecer .
Acceso denegado.

 se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.


========= Final de CMD: =========


========= netsh int ipv6 reset =========

Interfaz se restableci¢ correctamente.
Vecino se restableci¢ correctamente.
Ruta de acceso se restableci¢ correctamente.
Error al restablecer .
Acceso denegado.

 se restableci¢ correctamente.
 se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.


========= Final de CMD: =========


=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 27245073 B
Java, Flash, Steam htmlcache => 43908 B
Windows/system/drivers => 35410126 B
Edge => 0 B
Chrome => 84730751 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 128 B
systemprofile32 => 128 B
LocalService => 3496 B
NetworkService => 3267536 B
alumno => 143847063 B

RecycleBin => 0 B
EmptyTemp: => 288.9 MB datos temporales eliminados.

================================


El sistema necesita reiniciarse.

==== Final de Fixlog 17:01:13 ====

Este es el archivo que se descargo y sería la respuesta ! y me libero 1,59GB en el disco local (c:)

Eso es lo que se me liberó :point_up_2:. Cuando termino de realizar la acción corregir , me pidio reiniciar la computadora! yo aprete aceptar y se reinicio todo y luego me apareció con esa cantidad de espacio liberado.

Realizaste lo que te indique con el liberador de espacio de windows?

No habia nada de actualizaciones antiguas?

Disculpe por tardar en responder. si lo , volvi a hacer … pero cada que lo hago disminuye el espacio tipo antes tenia 1,62 GB de espacio libre ahora tengo 1,32 GB … porque pasa esto? esta bien que suceda ?