Error APPCRASH Explorer.EXE

Buenas tardes a todos, Hacía mucho tiempo que no me veía en una situación similar y os consultaba sobre un problema. De hecho he tenido que crear un usuario de nuevo porque parecía el mio caducado o anulado.

Desde hace algún tiempo con cierta frecuencia me daba un pantallazo mi Windows7 Home x64. Ahora no puedo copiar ningún archivo o directorio dándome este log:

Firma con problemas:

  • Nombre del evento de problema: APPCRASH*
  • Nombre de la aplicación: Explorer.EXE*
  • Versión de la aplicación: 6.1.7601.23537*
  • Marca de tiempo de la aplicación: 57c44efe*
  • Nombre del módulo con errores: StackHash_16e3*
  • Versión del módulo con errores: 0.0.0.0*
  • Marca de tiempo del módulo con errores: 00000000*
  • Código de excepción: c0000005*
  • Desplazamiento de excepción: 0000000000000007*
  • Versión del sistema operativo: 6.1.7601.2.1.0.768.3*
  • Id. de configuración regional: 3082*
  • Información adicional 1: 16e3*
  • Información adicional 2: 16e3f2c68fbd51835632289bdb3943d6*
  • Información adicional 3: 2ece*
  • Información adicional 4: 2ece6d1458046b573147b8a413969308*

Lea nuestra declaración de privacidad en línea:

Si la declaración de privacidad en línea no está disponible, lea la declaración de privacidad sin conexión:

  • C:\Windows\system32\es-ES\erofflps.txt*

Me da fallo a la hora de instalar cualquier soft de analisis: Malwarebytes,ccleaner…

Podéis analizarlo y/o darme alguna guía de como solucionarlo? Muchas gracias de antemano

Hola @agusrr

Re-Bienvenido al Foro!!!

Te dejo algo de Info sobre lo sucedido:


Realiza lo siguiente:

1.- Desactiva temporalmente tu antivirus y cualquier programa de seguridad.

2.- Descarga Farbar Recovery Scan Tool. en el escritorio, seleccionando la versión adecuada para la arquitectura (32 o 64bits) de su equipo. >> Como saber si mi Windows es de 32 o 64 bits.?

  • Ejecuta FRST.exe.
  • En el mensaje de la ventana del Disclaimer, pulsamos Yes
  • En la ventana principal pulsamos en el botón Scan/Analizar y esperamos a que concluya el proceso.
  • Se abrirán dos(2) archivos(Logs), Frst.txt y Addition.txt, estos quedaran grabados en el escritorio.

Guía: Como Ejecutar FRST

3.- En tu próxima respuesta, pega los reportes generados.

Guía : ¿Como Pegar reportes en el Foro?

Esperamos esos reporte.

Salu2

Buenos días, pego recortes, Un saludo


Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 08-03-2020
Ejecutado por Laura (administrador) sobre LAURA-PC (Acer Aspire 5820TG) (21-03-2020 09:51:16)
Ejecutado desde Z:\soft virus
Perfiles cargados: Laura (Perfiles disponibles: Laura)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Idioma: Español (España, internacional)
Internet Explorer Versión 11 (Navegador predeterminado: IE)
Modo de Inicio: Normal
Tutorial para Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Procesos (Lista blanca) =================

(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)

(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Optical Drive Power Management\ODDPWR.exe
(AlcorMicro Co., Ltd.) [Archivo no firmado] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Panda Security S.L -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANHost.exe
(Panda Security S.L -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAService.exe

==================== Registro (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Run: [ODDPwr] => C:\Program Files\Acer\Optical Drive Power Management\ODDPwr.exe [222240 2010-02-05] (Acer Incorporated -> Acer Incorporated)
HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [320000 2009-04-09] (AlcorMicro Co., Ltd.) [Archivo no firmado]
HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1289296 2010-02-25] (Dritek System Inc. -> Dritek System Inc.)
HKU\S-1-5-21-2932545729-706692963-2365314865-1000\...\Run: [] => [X]
HKU\S-1-5-21-2932545729-706692963-2365314865-1000\...\Run: [Google Update] => C:\Users\Laura\AppData\Local\Google\Update\1.3.35.452\GoogleUpdateCore.exe [217544 2020-03-21] (Google LLC -> Google LLC)
HKU\S-1-5-21-2932545729-706692963-2365314865-1000\...\MountPoints2: {063f3aad-b160-11df-b7b9-c80aa96554d2} - E:\StartVMCLite.exe
HKU\S-1-5-21-2932545729-706692963-2365314865-1000\...\MountPoints2: {063f3aaf-b160-11df-b7b9-c80aa96554d2} - E:\StartVMCLite.exe
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{73FA19D0-2D75-11D2-995D-00C04F98BBC9}] -> 
HKLM\Software\...\Authentication\Credential Providers: [{50968FF7-10C1-4fb3-98B0-CD654D6CB97E}] -> C:\Program Files\WIDCOMM\Bluetooth Software\\BtwCP.dll [2009-10-02] (Broadcom Corporation -> Broadcom Corporation.)
HKLM\Software\...\Authentication\Credential Providers: [{F8A0B131-5F68-486c-8040-7E8FC3C85BB6}] -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL [2011-03-28] (Microsoft Corporation -> Microsoft Corp.)
GroupPolicyScripts: Restricción <==== ATENCIÓN
GroupPolicyScripts-x32: Restricción <==== ATENCIÓN

==================== Tareas programadas (Lista blanca) ============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

Task: {08F93AAA-C526-4D1E-89F0-D0C78B082D12} - \{20ED886C-8DCB-4DA8-92E9-48923C99DD9D} -> Ningún archivo <==== ATENCIÓN
Task: {21022455-6815-4F4E-8027-EF112FE12B67} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {3FE35C05-C6B1-4BDD-8C43-8D54ED0C316B} - \{30668650-4476-4FF1-A7F7-3A4E120684DA} -> Ningún archivo <==== ATENCIÓN
Task: {493C3B09-8FDA-4BD4-AE7B-9CC95BEE6D5E} - \{41FCB608-7FD9-40D2-B657-93A443D5BBF8} -> Ningún archivo <==== ATENCIÓN
Task: {549D06EB-E640-4361-BDC8-2D961BCDCE28} - \{CFC7BC84-BE9D-4E56-A685-33B5DCC1023C} -> Ningún archivo <==== ATENCIÓN
Task: {5C5A3C2B-91F9-457B-BC45-AE59F96D7264} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18233016 2020-02-28] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {5E73F1DC-6042-45B9-B495-E0ECE9AD71E8} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2932545729-706692963-2365314865-1000UA => C:\Users\Laura\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-27] (Google Inc -> Google Inc.)
Task: {602D6C4B-1E6A-4498-92BD-7CBB227473DA} - System32\Tasks\{75BFE955-1CC4-4871-B278-61BB5319E783} => "C:\Program Files (x86)\Internet Explorer\iexplore.exe" hxxp://ui.skype.com/ui/0/6.11.0.102/es/abandoninstall?source=lightinstaller&page=tsBing
Task: {732EF4BB-6D9D-44BE-ADD0-0ECBE0FD97AB} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2932545729-706692963-2365314865-1000UA => C:\Users\Laura\AppData\Local\Dropbox\Update\DropboxUpdate.exe [143144 2016-04-21] (Dropbox, Inc -> Dropbox, Inc.)
Task: {807FAAE2-7AA4-4C0F-BF02-46ABB5FCFCB4} - System32\Tasks\Recovery Management\Burn Notification => C:\Program Files\Acer\Acer eRecovery Management\NotificationCenter\Notification.exe [675840 2009-07-09] (Acer) [Archivo no firmado]
Task: {8CB449E3-3A62-4833-A9D9-E6FB3BE0E03F} - System32\Tasks\{BF22517D-98D5-4109-B16A-DDCD09564DE6} => "C:\Program Files (x86)\Internet Explorer\iexplore.exe" hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=6.11.0.102&LastError=404
Task: {9395142A-B7A0-4AB2-8BB2-9B640582F1F3} - System32\Tasks\{BBD0BF47-5E64-475A-AAAB-567B0EA264DC} => C:\Windows\system32\pcalua.exe -a "C:\Users\Laura\Desktop\AGUSTÍN\DVD\Instalaciones de Programas\Comprimidores\Alcohol 120% v1.9.2.1705 Multilanguage + serial (OK)\setup.exe" -d "C:\Users\Laura\Desktop\AGUSTÍN\DVD\Instalaciones de Programas\Comprimidores\Alcohol 120% v1.9.2.1705 Multilanguage + serial (OK)"
Task: {944ED847-89C0-4825-91ED-179A2CE1FB08} - System32\Tasks\{799DF16A-0C99-4925-B0D9-25A2967FF9AC} => "C:\Program Files (x86)\Internet Explorer\iexplore.exe" hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=7.17.0.106&LastError=12002
Task: {9A0C7454-EC8A-41DD-AA0C-64D509298869} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2932545729-706692963-2365314865-1000Core => C:\Users\Laura\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-27] (Google Inc -> Google Inc.)
Task: {ABB0597C-86EC-43BF-A6E1-15D2116D0907} - System32\Tasks\{957DC12D-267B-4E12-8A49-231F474C0FC2} => C:\Windows\system32\pcalua.exe -a "C:\Users\Laura\Favorites\Downloads\XperiaCompanion (1).exe" -d C:\Users\Laura\Favorites\Downloads
Task: {AF398E51-1096-4B7E-996B-B1D8FEBD6E16} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-02-28] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {BACD38C1-121E-4CD3-9AE7-41602FDA198F} - \{ED909B00-C094-4E0C-A9C7-7DFB2E3232B1} -> Ningún archivo <==== ATENCIÓN
Task: {D0409EB4-88C8-4AA6-8305-66B0757AE804} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-03-12] (Adobe Inc. -> Adobe)
Task: {E66390B1-1B4C-413D-8160-A6B725ADCA4C} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2932545729-706692963-2365314865-1000Core => C:\Users\Laura\AppData\Local\Dropbox\Update\DropboxUpdate.exe [143144 2016-04-21] (Dropbox, Inc -> Dropbox, Inc.)
Task: {F3FB2C3D-D68D-49F4-851C-47164E6FB64A} - \CreateChoiceProcessTask -> Ningún archivo <==== ATENCIÓN
Task: {F6BC8887-DAA3-466F-8FC5-760647389427} - System32\Tasks\{2D7F4B18-9DD9-4D9D-8BCD-53CD9CD511A8} => "C:\Program Files (x86)\Internet Explorer\iexplore.exe" hxxp://ui.skype.com/ui/0/6.11.0.102/es/abandoninstall?source=lightinstaller&page=tsBing
Task: {F72F118B-7A4A-4C4C-AF9F-21508182F6B4} - System32\Tasks\{82BB1D7E-8672-4964-A066-18577A25F741} => "C:\Program Files (x86)\Internet Explorer\iexplore.exe" hxxp://ui.skype.com/ui/0/6.1.0.129.272/es/abandoninstall?page=tsMain
Task: {FC3C919B-9686-48DC-BA0D-82AA55A10645} - System32\Tasks\{C91E8291-CD84-4B72-8AB4-7CD6E23255E4} => "C:\Program Files (x86)\Internet Explorer\iexplore.exe" hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=6.11.0.102&LastError=404

(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)

Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2932545729-706692963-2365314865-1000Core.job => C:\Users\Laura\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2932545729-706692963-2365314865-1000UA.job => C:\Users\Laura\AppData\Local\Dropbox\Update\DropboxUpdate.exe

==================== Internet (Lista blanca) ====================

(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)

Winsock: Catalog5 05 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280 2011-03-28] (Microsoft Corporation -> Microsoft Corp.)
Winsock: Catalog5 06 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280 2011-03-28] (Microsoft Corporation -> Microsoft Corp.)
Winsock: Catalog5-x64 05 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171392 2011-03-28] (Microsoft Corporation -> Microsoft Corp.)
Winsock: Catalog5-x64 06 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171392 2011-03-28] (Microsoft Corporation -> Microsoft Corp.)
Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 1.1.1.1
Tcpip\..\Interfaces\{74AD2F4A-85BA-4ED6-9439-9EE0F4F18867}: [DhcpNameServer] 192.168.100.1
Tcpip\..\Interfaces\{916B6CEE-5C69-4A23-871C-AF72C5913451}: [DhcpNameServer] 8.8.8.8 1.1.1.1
Tcpip\..\Interfaces\{CF83EB2B-7267-4775-884A-54482F484274}: [NameServer] 8.8.8.8,8.8.4.4
HKLM\System\...\Parameters\PersistentRoutes: [0.0.0.0,0.0.0.0,192.168.1.100,-1]

Internet Explorer:
==================
HKU\S-1-5-21-2932545729-706692963-2365314865-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://google.es/
HKU\S-1-5-21-2932545729-706692963-2365314865-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=0c0a&m=aspire_5820tg&r=27360710t906l0443z195t4531k280
SearchScopes: HKLM-x32 -> DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW
SearchScopes: HKLM-x32 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW
SearchScopes: HKU\S-1-5-21-2932545729-706692963-2365314865-1000 -> DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW_es
SearchScopes: HKU\S-1-5-21-2932545729-706692963-2365314865-1000 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW_es
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corporation -> Microsoft Corp.)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2013-05-08] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2010-11-08] (Canon Inc. -> CANON INC.)
BHO-x32: Aplicación auxiliar de inicio de sesión de Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corporation -> Microsoft Corp.)
BHO-x32: Sin Nombre -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> Ningún archivo
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2010-11-08] (Canon Inc. -> CANON INC.)
Toolbar: HKU\S-1-5-21-2932545729-706692963-2365314865-1000 -> Sin Nombre - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} -  Ningún archivo
DPF: HKLM-x32 {2DAB6EF1-66C3-427C-87CD-8DC448C47EAE} hxxps://www5.aeat.es/es13/h/tgvicab.cab
DPF: HKLM-x32 {947B00D2-962D-4A35-9E48-98EE6A442B41} hxxps://www1.agenciatributaria.gob.es/ADUA/internet/aded1503.cab
DPF: HKLM-x32 {B785FA3C-1DE9-4D20-8396-613C486FE95E} hxxps://www1.agenciatributaria.gob.es/es13/h/cactivex.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} -  Ningún archivo

FireFox:
========
FF HKLM-x32\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => no encontrado
FF Plugin: @microsoft.com/GENUINE -> disabled [Ningún archivo]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [2010-04-15] (CANON INC.) [Archivo no firmado]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Ningún archivo]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @nokia.com/EnablerPlugin -> C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll [2012-10-13] (Nokia ->  )
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll [2013-05-08] (Adobe Systems, Incorporated -> Adobe Systems Inc.)

Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default [2020-03-21]
CHR Notifications: Default -> hxxps://forospyware.com
CHR HomePage: Default -> hxxps://www.google.es/
CHR StartupUrls: Default -> "hxxp://google.es/"
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Chrome Media Router) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-03-20]
StartMenuInternet: Google Chrome.LJMXQ35HEO5Y64UEFXOLXQDPCE - C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe

==================== Servicios (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

S4 AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [202752 2010-01-22] (Microsoft Windows Hardware Compatibility Publisher -> AMD)
S4 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [75624 2012-01-05] (Alcohol Soft -> Alcohol Soft Development Team)
S4 ePowerSvc; C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exe [819232 2010-01-20] (Acer Incorporated -> Acer Incorporated)
S4 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [116104 2010-04-05] (Canon Inc. -> )
S4 LMS; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [262144 2009-09-30] (Intel Corporation) [Archivo no firmado]
S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6933272 2020-03-20] (Malwarebytes Inc -> Malwarebytes)
R2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANHost.exe [142072 2015-10-18] (Panda Security S.L -> Panda Security, S.L.)
S4 ODDPwrSvc; C:\Program Files\Acer\Optical Drive Power Management\ODDPWRSvc.exe [171040 2010-02-05] (Acer Incorporated -> Acer Incorporated)
S4 PandaAgent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [84176 2019-02-19] (Panda Security S.L. -> Panda Security, S.L.)
R2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAService.exe [38136 2015-10-22] (Panda Security S.L -> Panda Security, S.L.)
S4 RichVideo; C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe [244904 2010-02-03] (CyberLink -> ) [Archivo no firmado]
S4 SCPDFReadSpool; C:\Program Files (x86)\SolidDocuments\Solid Converter PDF\SCPDFV6\SolidConverterPDFServicex64.exe [320512 2009-10-23] (Solid Documents, LLC) [Archivo no firmado]
S4 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [Archivo no firmado]
S4 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5436176 2015-02-17] (TeamViewer -> TeamViewer GmbH)
S4 UNS; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2314240 2009-09-30] (Intel Corporation) [Archivo no firmado]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
R2 wlidsvc; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2292096 2011-03-28] (Microsoft Corporation -> Microsoft Corp.)
S4 NTI IScheduleSvc; C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe [X]
S4 NTIBackupSvc; C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [X]
S4 NTISchedulerSvc; C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [X]
S4 Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [X]

===================== Controladores (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R3 amdkmdag; C:\Windows\System32\DRIVERS\atipmdag.sys [6233088 2010-01-22] (Microsoft Windows Hardware Compatibility Publisher -> ATI Technologies Inc.)
R3 amdkmdap; C:\Windows\System32\DRIVERS\atikmpag.sys [161280 2010-01-22] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
S3 AmUStor; C:\Windows\System32\drivers\AmUStor.SYS [40448 2009-05-26] (Microsoft Windows Hardware Compatibility Publisher -> Alcor Micro, Corp.)
R3 athr; C:\Windows\System32\DRIVERS\athrx.sys [1550848 2009-11-06] (Microsoft Windows Hardware Compatibility Publisher -> Atheros Communications, Inc.)
S3 athrusb; C:\Windows\System32\DRIVERS\athrxusb.sys [561664 2007-01-29] (Microsoft Windows Hardware Compatibility Publisher -> Atheros Communications, Inc.)
R3 AtiHDAudioService; C:\Windows\System32\drivers\AtihdW76.sys [104976 2016-03-01] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
S3 AVerAF35; C:\Windows\System32\Drivers\AVerAF35.sys [511232 2009-10-19] (AVerMedia TECHNOLOGIES, Inc.) [Archivo no firmado]
S3 hwdatacard; C:\Windows\System32\DRIVERS\ewusbmdm.sys [112512 2007-11-05] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [214496 2020-03-20] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248968 2020-03-20] (Malwarebytes Inc -> Malwarebytes)
S3 netr28ux; C:\Windows\System32\DRIVERS\netr28ux.sys [867328 2009-06-10] (Microsoft Windows -> Ralink Technology Corp.)
S3 nmwcd; C:\Windows\System32\drivers\ccdcmbx64.sys [19968 2012-06-11] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 nmwcdc; C:\Windows\System32\drivers\ccdcmbox64.sys [27136 2012-06-11] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 nmwcdnsucx64; C:\Windows\System32\drivers\nmwcdnsucx64.sys [12800 2012-06-11] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 nmwcdnsux64; C:\Windows\System32\drivers\nmwcdnsux64.sys [171008 2012-06-11] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
R1 NNSALPC; C:\Windows\System32\DRIVERS\NNSAlpc.sys [94456 2015-07-09] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSHTTP; C:\Windows\System32\DRIVERS\NNSHttp.sys [201976 2015-07-09] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSHTTPS; C:\Windows\System32\DRIVERS\NNSHttps.sys [110840 2015-07-09] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSIDS; C:\Windows\System32\DRIVERS\NNSIds.sys [110840 2015-07-09] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSNAHSL; C:\Windows\System32\DRIVERS\NNSNAHSL.sys [57648 2015-05-20] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSPICC; C:\Windows\System32\DRIVERS\NNSPicc.sys [103160 2015-07-09] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSPIHSW; C:\Windows\System32\DRIVERS\NNSPihsw.sys [73464 2015-08-31] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSPOP3; C:\Windows\System32\DRIVERS\NNSPop3.sys [124152 2015-07-09] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSPROT; C:\Windows\System32\DRIVERS\NNSProt.sys [300280 2015-07-09] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSPRV; C:\Windows\System32\DRIVERS\NNSPrv.sys [170232 2015-07-09] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSSMTP; C:\Windows\System32\DRIVERS\NNSSmtp.sys [113400 2015-07-09] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSSTRM; C:\Windows\System32\DRIVERS\NNSStrm.sys [257784 2015-07-09] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSTLSC; C:\Windows\System32\DRIVERS\NNSTlsc.sys [106232 2015-07-09] (Panda Security S.L. -> Panda Security, S.L.)
S3 pccsmcfd; C:\Windows\System32\DRIVERS\pccsmcfdx64.sys [26112 2012-06-27] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
R2 PSINAflt; C:\Windows\System32\DRIVERS\PSINAflt.sys [164088 2015-07-19] (Panda Security S.L. -> Panda Security, S.L.)
R2 PSINFile; C:\Windows\System32\DRIVERS\PSINFile.sys [121592 2015-07-19] (Panda Security S.L. -> Panda Security, S.L.)
R1 PSINKNC; C:\Windows\System32\DRIVERS\psinknc.sys [197880 2015-07-19] (Panda Security S.L. -> Panda Security, S.L.)
R2 PSINProc; C:\Windows\System32\DRIVERS\PSINProc.sys [124152 2015-07-19] (Panda Security S.L. -> Panda Security, S.L.)
R2 PSINProt; C:\Windows\System32\DRIVERS\PSINProt.sys [134392 2015-07-19] (Panda Security S.L. -> Panda Security, S.L.)
R2 PSINReg; C:\Windows\System32\DRIVERS\PSINReg.sys [107768 2015-07-19] (Panda Security S.L. -> Panda Security, S.L.)
R3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [61712 2015-05-22] (Panda Security S.L. -> Panda Security, S.L.)
S3 pwdrvio; C:\Windows\system32\pwdrvio.sys [19936 2010-04-09] (MT SOLUTION LTD -> )
S3 pwdspio; C:\Windows\system32\pwdspio.sys [13280 2010-04-09] (MT SOLUTION LTD -> )
S3 RTL2832UBDA; C:\Windows\SysWOW64\drivers\RTL2832UBDA.sys [117152 2009-10-26] (Realtek Semiconductor Corp -> REALTEK SEMICONDUCTOR Corp.)
S3 RTL2832UUSB; C:\Windows\SysWOW64\Drivers\RTL2832UUSB.sys [38944 2009-10-26] (Realtek Semiconductor Corp -> REALTEK SEMICONDUCTOR Corp.)
S3 RTL2832U_IRHID; C:\Windows\SysWOW64\DRIVERS\RTL2832U_IRHID.sys [44320 2009-10-05] (Realtek Semiconductor Corp -> Realtek)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2013-09-20] (Duplex Secure Ltd -> Duplex Secure Ltd.)
S3 upperdev; C:\Windows\System32\DRIVERS\usbser_lowerfltx64.sys [9216 2012-06-11] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 UsbserFilt; C:\Windows\System32\DRIVERS\usbser_lowerfltjx64.sys [9216 2012-06-11] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
U3 arxofnxb; C:\Windows\System32\Drivers\arxofnxb.sys [0 0000-00-00] (Intel Corporation) <==== ATENCIÓN (cero bytes Archivo/Carpeta)
S3 ALSysIO; \??\C:\Users\Laura\AppData\Local\Temp\ALSysIO64.sys [X] <==== ATENCIÓN
S1 Cinemsup; \??\C:\Windows\system32\drivers\cinemsup.sys [X]
S3 VMnetAdapter; system32\DRIVERS\vmnetadapter.sys [X]

==================== NetSvcs (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)


==================== Un mes (creado) ===================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-03-21 09:50 - 2020-03-21 09:52 - 000000000 ____D C:\FRST
2020-03-21 00:03 - 2020-03-21 00:03 - 000000000 ____D C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2020-03-20 22:15 - 2020-03-20 22:24 - 000214496 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
2020-03-20 22:14 - 2020-03-20 22:15 - 000248968 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2020-03-20 21:18 - 2020-03-20 21:18 - 000000000 ____D C:\Users\Laura\AppData\Local\mbam
2020-03-20 21:09 - 2020-03-20 21:09 - 000001952 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2020-03-20 21:09 - 2020-03-20 21:09 - 000001952 _____ C:\ProgramData\Desktop\Malwarebytes.lnk
2020-03-20 21:09 - 2020-03-20 21:09 - 000000000 ____D C:\Users\Laura\AppData\Local\mbamtray
2020-03-20 21:09 - 2020-03-20 21:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2020-03-20 21:07 - 2020-03-20 21:07 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2020-03-20 21:07 - 2020-03-20 21:07 - 000000000 ____D C:\ProgramData\Malwarebytes
2020-03-20 21:07 - 2020-03-20 21:07 - 000000000 ____D C:\Program Files\Malwarebytes
2020-03-20 20:55 - 2020-03-20 21:56 - 000000870 _____ C:\Users\Public\Desktop\CCleaner.lnk
2020-03-20 20:55 - 2020-03-20 21:56 - 000000870 _____ C:\ProgramData\Desktop\CCleaner.lnk
2020-03-20 20:55 - 2020-03-20 20:55 - 000003870 _____ C:\Windows\system32\Tasks\CCleaner Update
2020-03-20 20:55 - 2020-03-20 20:55 - 000002808 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC
2020-03-20 20:55 - 2020-03-20 20:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2020-03-20 20:55 - 2020-03-20 20:55 - 000000000 ____D C:\Program Files\CCleaner
2020-03-20 20:20 - 2015-05-22 09:45 - 000061712 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSKMAD.sys
2020-03-20 00:50 - 2020-03-20 00:50 - 000003812 _____ C:\Users\Laura\Desktop\Exercise 3.odt
2020-03-18 21:09 - 2020-03-18 21:11 - 000395603 _____ C:\Users\Laura\Desktop\Sin título.wma
2020-03-17 18:26 - 2020-03-18 19:26 - 000000000 ____D C:\Users\Laura\Desktop\APUNTES PERSONALES

==================== Un mes (modificado) ==================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-03-21 09:51 - 2016-04-21 17:42 - 000001002 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2932545729-706692963-2365314865-1000UA.job
2020-03-21 04:16 - 2009-07-14 05:45 - 000009920 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2020-03-21 04:16 - 2009-07-14 05:45 - 000009920 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2020-03-21 00:51 - 2016-04-21 17:42 - 000000950 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2932545729-706692963-2365314865-1000Core.job
2020-03-21 00:43 - 2013-07-16 19:35 - 000003712 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-2932545729-706692963-2365314865-1000UA
2020-03-21 00:43 - 2013-07-16 19:35 - 000003440 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-2932545729-706692963-2365314865-1000Core
2020-03-21 00:04 - 2013-05-21 20:02 - 000000000 ____D C:\Users\Laura\AppData\Roaming\Dropbox
2020-03-20 22:23 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-03-20 22:11 - 2014-06-01 23:59 - 002579889 ____H C:\Users\Laura\AppData\Local\IconCache.db.backup
2020-03-20 22:08 - 2010-07-28 19:05 - 000000000 ____D C:\Users\Laura\AppData\Roaming\Skype
2020-03-20 21:39 - 2009-07-14 05:45 - 000431320 _____ C:\Windows\system32\FNTCACHE.DAT
2020-03-20 21:37 - 2017-01-31 23:32 - 000000000 ____D C:\FSTool
2020-03-20 21:33 - 2010-07-21 18:04 - 000095392 _____ C:\Users\Laura\AppData\Local\GDIPFONTCACHEV1.DAT
2020-03-20 21:18 - 2014-02-21 01:57 - 000000000 ____D C:\Users\Laura\AppData\Local\cache
2020-03-20 21:10 - 2010-03-03 08:00 - 000000000 ____D C:\Program Files (x86)\Acer
2020-03-20 21:10 - 2010-03-03 07:55 - 000000000 ____D C:\ProgramData\Acer
2020-03-20 21:10 - 2010-03-03 07:54 - 000000000 ____D C:\Program Files\Acer
2020-03-20 21:09 - 2010-07-23 18:41 - 000000000 ____D C:\Program Files (x86)\Acer Arcade Deluxe
2020-03-20 21:08 - 2010-07-21 18:04 - 000000000 ____D C:\Users\Laura
2020-03-20 21:07 - 2017-01-31 22:30 - 000000000 ____D C:\AdwCleaner
2020-03-20 20:55 - 2012-09-15 20:00 - 000000000 ____D C:\ProgramData\VMware
2020-03-20 20:55 - 2010-07-21 23:56 - 000747646 _____ C:\Windows\system32\perfh00A.dat
2020-03-20 20:55 - 2010-07-21 23:56 - 000159086 _____ C:\Windows\system32\perfc00A.dat
2020-03-20 20:55 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf
2020-03-20 20:52 - 2012-09-15 20:08 - 000000000 ____D C:\Users\Laura\AppData\Roaming\VMware
2020-03-20 20:52 - 2011-02-14 21:24 - 000000000 ____D C:\Program Files (x86)\ProgDVB
2020-03-20 20:50 - 2012-08-08 12:10 - 000000000 ____D C:\Windows\pss
2020-03-20 20:48 - 2010-07-23 18:41 - 000000000 ____D C:\ProgramData\Temp
2020-03-20 20:46 - 2011-02-14 20:48 - 000000000 ____D C:\dvbdream
2020-03-20 20:46 - 2010-03-03 07:32 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2020-03-20 18:50 - 2009-07-14 06:08 - 000032624 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2020-03-20 18:21 - 2013-05-26 17:15 - 002220678 _____ C:\Windows\ntbtlog.txt
2020-03-20 00:20 - 2019-10-01 09:06 - 000000000 ____D C:\Users\Laura\Desktop\COLE 2019
2020-03-20 00:19 - 2019-05-29 23:20 - 000000000 ____D C:\Users\Laura\Desktop\DOCUMENTACIÓN CALLE CANTAREROS
2020-03-20 00:18 - 2014-12-21 12:57 - 000000000 ____D C:\Users\Laura\Desktop\SUPERMEZCLA
2020-03-20 00:17 - 2019-11-21 11:25 - 000000000 ____D C:\Users\Laura\Desktop\MATERIAL CLASES PARTICULARES 2019-2020
2020-03-20 00:17 - 2019-06-22 19:46 - 000000000 ____D C:\Users\Laura\Desktop\MATERIAL  CLASES  JUNIO
2020-03-19 19:49 - 2012-08-08 12:12 - 000002419 _____ C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-03-19 19:49 - 2012-08-08 12:12 - 000002382 _____ C:\Users\Laura\Desktop\Google Chrome.lnk
2020-03-19 01:12 - 2010-08-02 11:12 - 000000000 ____D C:\Users\Laura\Documents\Mis archivos recibidos
2020-03-18 19:35 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\system32\NDF
2020-03-17 19:24 - 2016-11-07 10:55 - 000000000 ____D C:\Users\Laura\Desktop\DOCUMENTOS COLE Y CLASES PARTICULARES
2020-03-17 19:13 - 2010-07-31 17:30 - 000000000 ____D C:\Users\Laura\AppData\Local\ElevatedDiagnostics
2020-03-12 00:39 - 2013-10-29 11:23 - 000004320 _____ C:\Windows\system32\Tasks\Adobe Flash Player Updater
2020-03-12 00:39 - 2012-05-23 16:26 - 000842296 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
2020-03-12 00:39 - 2011-11-16 11:36 - 000000000 ____D C:\Windows\system32\Macromed
2020-03-12 00:39 - 2011-08-22 15:38 - 000175160 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2020-03-12 00:39 - 2010-03-03 08:11 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2020-03-10 09:04 - 2009-07-14 06:13 - 001685008 _____ C:\Windows\system32\PerfStringBackup.INI

==================== Archivos en la raíz de algunos directorios ========

2010-03-03 07:46 - 2009-02-10 21:23 - 000192484 _____ () C:\Program Files (x86)\Common Files\Acer GameZone online.ico
2010-08-11 23:38 - 2016-05-18 17:33 - 000031232 _____ () C:\Users\Laura\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2010-09-30 10:03 - 2010-09-30 10:03 - 000004096 ____H () C:\Users\Laura\AppData\Local\keyfile3.drm
2020-03-20 20:15 - 2020-03-20 20:17 - 000011400 _____ () C:\Users\Laura\AppData\Local\MyWinLockerInstaller.txt-20200320.log

==================== SigCheck ============================

(No existe una corrección automática para los archivos que no pasan la verificación.)


LastRegBack: 2020-03-21 00:37
==================== Final de FRST.txt ========================

Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 08-03-2020
Ejecutado por Laura (21-03-2020 09:53:21)
Ejecutado desde Z:\soft virus
Windows 7 Home Premium Service Pack 1 (X64) (2010-07-21 17:04:01)
Modo de Inicio: Normal
==========================================================


==================== Cuentas: =============================

Administrador (S-1-5-21-2932545729-706692963-2365314865-500 - Administrator - Disabled)
HomeGroupUser$ (S-1-5-21-2932545729-706692963-2365314865-1002 - Limited - Enabled)
Invitado (S-1-5-21-2932545729-706692963-2365314865-501 - Limited - Disabled)
Laura (S-1-5-21-2932545729-706692963-2365314865-1000 - Administrator - Enabled) => C:\Users\Laura

==================== Centro de Seguridad ========================

(Si una entrada es incluida en el fixlist, será eliminada.)

AV: Panda Free Antivirus (Enabled - Up to date) {AAF74A68-8713-CDF1-004F-30003398BE9E}
AV: Malwarebytes (Disabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Panda Free Antivirus (Enabled - Up to date) {1196AB8C-A129-C27F-3AFF-0B72481FF423}
AS: Malwarebytes (Disabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Panda Firewall (Disabled) {92CCCB4D-CD7C-CCA9-2B10-9935CD4BF9E5}

==================== Programas instalados ======================

(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)

Acer Arcade Movie (HKLM-x32\...\{B906C11A-D193-4143-9FA7-E2EE8A5A8F21}) (Version: 9.0.6302 - CyberLink Corp.) Hidden
Acer Crystal Eye Webcam (HKLM-x32\...\{7760D94E-B1B5-40A0-9AA0-ABF942108755}) (Version: 5.2.11.2 - Suyin Optronics Corp)
Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 4.05.3003 - Acer Incorporated)
Acer GameZone Console (HKLM-x32\...\{8ed9688e-4f79-4308-91ca-f1c37ca142b4}_is1) (Version: 5.1.0.2 - Oberon Media, Inc.)
Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.0222.2010 - Acer Incorporated)
Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.6.0.19120 - Adobe Systems Incorporated)
Adobe Flash Player 32 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 32.0.0.344 - Adobe)
Adobe Reader 9.5.5 MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-A91000000001}) (Version: 9.5.5 - Adobe Systems Incorporated)
Advertising Center (HKLM-x32\...\{b2ec4a38-b545-4a00-8214-13fe0e915e6d}) (Version: 0.0.0.1 - Nero AG) Hidden
Alcor Micro USB Card Reader (HKLM-x32\...\{5A22D889-FBDD-4AE8-86EC-089D45FC133E}) (Version: 1.2.17.05001 - Alcor Micro Corp.) Hidden
Alcor Micro USB Card Reader (HKLM-x32\...\InstallShield_{5A22D889-FBDD-4AE8-86EC-089D45FC133E}) (Version: 1.2.17.05001 - Alcor Micro Corp.)
Ares 2.1.7 (HKLM-x32\...\Ares) (Version: 2.1.7-Build#3041 - Ares Development Group)
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.23 - Atheros Communications Inc.)
ATI Catalyst Install Manager (HKLM\...\{9D360EAD-35A6-238B-9790-94408681FC5D}) (Version: 3.0.778.0 - ATI Technologies, Inc.)
Autoescuela - Aprueba conmigo (HKLM-x32\...\{A59238A0-1361-6E82-AF06-4E971023BF57}) (Version: 1.01 - Micronet S.A.) Hidden
Autoescuela - Aprueba conmigo (HKLM-x32\...\Autoescuela.94B5F9259202C4C0E57B769C4039424AA7641595.1) (Version: v1.01 - Micronet S.A.)
Canon Easy-PhotoPrint EX (HKLM-x32\...\Easy-PhotoPrint EX) (Version:  - )
Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version:  - )
Canon Inkjet Printer Driver Add-On Module (HKLM\...\CANONIJINBOXADDON100) (Version:  - )
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version:  - )
Canon MP Navigator EX 4.0 (HKLM-x32\...\MP Navigator EX 4.0) (Version:  - )
Canon MP280 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP280_series) (Version:  - )
Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version:  - )
Canon Solution Menu EX (HKLM-x32\...\CanonSolutionMenuEX) (Version:  - )
ccc-core-static (HKLM-x32\...\{A26E29A7-6FE5-85B1-7CD0-2A5DBA10D2A1}) (Version: 2010.0122.858.16002 - Nombre de su organización) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.64 - Piriform)
Compresor WinRAR (HKLM-x32\...\WinRAR archiver) (Version:  - )
Core Temp version 0.99.8 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 0.99.8 - Arthur Liberman)
CutePDF Writer 2.8 (HKLM\...\CutePDF Writer Installation) (Version:  - )
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
DolbyFiles (HKLM-x32\...\{b1adf008-e898-4fe2-8a1f-690d9a06acaf}) (Version: 2.0 - Nero AG) Hidden
Dropbox (HKU\S-1-5-21-2932545729-706692963-2365314865-1000\...\Dropbox) (Version: 93.4.273 - Dropbox, Inc.)
E.M. PowerPoint Video Converter 3.20 (HKLM-x32\...\E.M. PowerPoint Video Converter_is1) (Version:  - EffectMatrix, Inc.)
Elecard MPEG Player (HKLM-x32\...\Elecard MPEG Player 5.6.90513) (Version: 5.6.90513 - Elecard)
eSobi v2 (HKLM-x32\...\{15D967B5-A4BE-42AE-9E84-64CD062B25AA}) (Version: 2.0.4.000274 - esobi Inc.) Hidden
eSobi v2 (HKLM-x32\...\InstallShield_{15D967B5-A4BE-42AE-9E84-64CD062B25AA}) (Version: 2.0.4.000274 - esobi Inc.)
ffdshow (HKLM-x32\...\ffdshow) (Version: 20050611 - Milan Cutka)
First Class Flurry (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115208410}) (Version:  - Oberon Media)
FormatFactory 2.96 (HKLM-x32\...\FormatFactory) (Version: 2.96 - Free Time)
Galería fotográfica de Windows Live (HKLM-x32\...\{E85A4EFC-82F2-4CEE-8A8E-62FDAD353A66}) (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Google Chrome (HKU\S-1-5-21-2932545729-706692963-2365314865-1000\...\Google Chrome) (Version: 80.0.3987.149 - Google LLC)
Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version:  - )
High-Definition Video Playback 10 (HKLM-x32\...\{237CCB62-8454-43E3-B158-3ACD0134852E}) (Version: 7.0.11400.29.0 - Nero AG) Hidden
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.5.6.1001 - Intel Corporation)
Intel(R) Turbo Boost Technology Driver (HKLM-x32\...\{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}) (Version: 01.00.01.1002 - Intel Corporation)
Junk Mail filter update (HKLM-x32\...\{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}) (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
K-Lite Codec Pack 6.3.0 (Full) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 6.3.0 - )
Launch Manager (HKLM-x32\...\LManager) (Version: 4.0.5 - Acer Inc.)
Malwarebytes version 4.1.0.56 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.1.0.56 - Malwarebytes)
MediaShow Espresso (HKLM-x32\...\{4968622A-4D3F-489E-9ACE-5FEC4CC0BDE3}) (Version: 5.5.1403_23691 - CyberLink Corp.) Hidden
Microsoft .NET Framework 4.6.1 (español) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 3082) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft Office Professional Edition 2003 (HKLM-x32\...\{90110C0A-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Works (HKLM-x32\...\{38BB21D5-B0D1-41DA-A0B0-1EFB5EF4AAC2}) (Version: 9.7.0621 - Microsoft Corporation)
MPEG2 Decoders (HKLM-x32\...\MPEG2_Decoders) (Version:  - )
MSVC80_x64_v2 (HKLM\...\{4D668D4F-FAA2-4726-834C-31F4614F312E}) (Version: 1.0.3.0 - Nokia) Hidden
MSVC80_x86_v2 (HKLM-x32\...\{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}) (Version: 1.0.3.0 - Nokia) Hidden
MSVC90_x64 (HKLM\...\{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}) (Version: 1.0.1.2 - Nokia) Hidden
MSVC90_x86 (HKLM-x32\...\{AF111648-99A1-453E-81DD-80DBBF6DAD0D}) (Version: 1.0.1.2 - Nokia) Hidden
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB973685) (HKLM-x32\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation)
Nero BackItUp 10 (HKLM-x32\...\{68AB6930-5BFF-4FF6-923B-516A91984FE6}) (Version: 5.4.11800.21.100 - Nero AG)
Nero Burning ROM 10 (HKLM-x32\...\{7A5D731D-B4B3-490E-B339-75685712BAAB}) (Version: 10.0.11100.10.100 - Nero AG)
Nero BurnRights 10 (HKLM-x32\...\{943CFD7D-5336-47AF-9418-E02473A5A517}) (Version: 4.0.11000.12.100 - Nero AG)
Nero CoverDesigner 10 (HKLM-x32\...\{FCF00A6E-FB58-477A-ABE9-232907105521}) (Version: 5.0.10900.11.100 - Nero AG)
Nero DiscSpeed 10 (HKLM-x32\...\{34490F4E-48D0-492E-8249-B48BECF0537C}) (Version: 6.0.10800.7.100 - Nero AG)
Nero Express 10 (HKLM-x32\...\{70550193-1C22-445C-8FA4-564E155DB1A7}) (Version: 10.0.11000.10.100 - Nero AG)
Nero InfoTool 10 (HKLM-x32\...\{F412B4AF-388C-4FF5-9B2F-33DB1C536953}) (Version: 7.0.10800.8.100 - Nero AG)
Nero MediaHub 10 (HKLM-x32\...\{1F7FB68F-52F6-46A3-B42F-38CE46295AE5}) (Version: 1.0.13400.11.100 - Nero AG)
Nero Multimedia Suite 10 (HKLM-x32\...\{277C1559-4CF7-44FF-8D07-98AA9C13AABD}) (Version: 10.0.13200 - Nero AG)
Nero Recode 10 (HKLM-x32\...\{8ECEC853-5C3D-4B10-B5C7-FF11FF724807}) (Version: 4.6.10900.4.100 - Nero AG)
Nero RescueAgent 10 (HKLM-x32\...\{E337E787-CF61-4B7B-B84F-509202A54023}) (Version: 3.0.10900.9.100 - Nero AG)
Nero SoundTrax 10 (HKLM-x32\...\{E1EE5339-5D32-458F-BAAB-B19F6301BCE2}) (Version: 4.6.10600.2.100 - Nero AG)
Nero StartSmart 10 (HKLM-x32\...\{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}) (Version: 10.0.11200.12.100 - Nero AG)
Nero Update (HKLM-x32\...\{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}) (Version: 1.0.0017 - Nero AG)
Nero Vision 10 (HKLM-x32\...\{9A4297F3-2A51-4ED9-92CA-4BCB8380947E}) (Version: 7.0.11100.8.100 - Nero AG)
Nero WaveEditor 10 (HKLM-x32\...\{EDCDFAD5-DF80-4600-A493-E9DAD6810230}) (Version: 5.6.10600.2.100 - Nero AG)
Nokia Connectivity Cable Driver (HKLM-x32\...\{0906982B-A432-4C06-8F01-C01BE1143779}) (Version: 7.1.92.0 - Nokia)
Nokia PC Suite (HKLM-x32\...\{225DB4AA-3CFF-47E8-B3C8-6DAD713E986E}) (Version: 7.1.51.0 - Nokia) Hidden
Nokia PC Suite (HKLM-x32\...\Nokia PC Suite) (Version: 7.1.51.0 - Nokia)
Nokia Suite (HKLM-x32\...\{33EBF075-8593-4698-BDAF-CF8DED80BB5B}) (Version: 3.6.36.0 - Nokia) Hidden
Nokia Suite (HKLM-x32\...\Nokia Suite) (Version: 3.6.36.0 - Nokia)
Optical Drive Power Management (HKLM-x32\...\{AE09C972-EEB2-4DA5-8090-0FCF54576854}) (Version: 1.01.3006 - Acer Incorporated)
Panda Devices Agent (HKLM-x32\...\{DB0164A2-ADE9-4FEE-B080-D506BDD6427F}) (Version: 1.08.09 - Panda Security) Hidden
Panda Devices Agent (HKLM-x32\...\Panda Devices Agent) (Version: 1.03.09 - Panda Security) Hidden
Panda Free Antivirus (HKLM\...\{293AA48A-DFC2-4F7D-9ED7-1A0F25CB5368}) (Version: 8.04.00.0000 - Panda Security) Hidden
Panda Free Antivirus (HKLM-x32\...\Panda Universal Agent Endpoint) (Version: 16.0.2 - Panda Security)
Paquete de compatibilidad para 2007 Office system (HKLM-x32\...\{90120000-0020-0C0A-0000-0000000FF1CE}) (Version: 12.0.6425.1000 - Microsoft Corporation)
Paquete de controladores de Windows - Nokia Modem  (06/09/2010 4.5) (HKLM\...\34EA302E7F4CBD17A19E33BBCB72363234956D7E) (Version: 06/09/2010 4.5 - Nokia)
Paquete de controladores de Windows - Nokia Modem  (06/09/2010 7.01.0.7) (HKLM\...\EEEE705096F837B7907659F100C9FE6DA001970F) (Version: 06/09/2010 7.01.0.7 - Nokia)
Paquete de controladores de Windows - Nokia pccsmcfd LegacyDriver  (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia)
PC Connectivity Solution (HKLM-x32\...\{BA77F9D2-CD35-41EB-9BC9-769879DFF8A6}) (Version: 12.0.48.0 - Nokia)
PX Profile Update (HKLM-x32\...\{E5405C62-539F-3774-10D3-FAC8F4CA1B4C}) (Version: 1.00.1. - AMD) Hidden
REALTEK DTV USB DEVICE (HKLM-x32\...\{DDBB7C89-1A09-441E-AA0F-6AA465755C17}) (Version: 1.00.0000 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6050 - Realtek Semiconductor Corp.)
Registro de usuario de Canon MP280 series (HKLM-x32\...\Registro de usuario de Canon MP280 series) (Version:  - )
Samsung Kies (HKLM-x32\...\{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.3.14044_16 - Samsung Electronics Co., Ltd.) Hidden
Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.3.14044_16 - Samsung Electronics Co., Ltd.)
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.43.0 - SAMSUNG Electronics Co., Ltd.)
Skype Click to Call (HKLM-x32\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 5.6.8442 - Skype Technologies S.A.)
Skype™ 7.41 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.41.101 - Skype Technologies S.A.)
Solid Converter PDF (HKLM-x32\...\{56BFAA6E-2BCC-4AED-9233-84731E66B205}) (Version: 6.0.669.0 - SolidDocuments)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 14.0.6.0 - Synaptics Incorporated)
TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.39052 - TeamViewer)
VLC media player 1.1.4 (HKLM-x32\...\VLC media player) (Version: 1.1.4 - VideoLAN)
Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.00.3012 - Acer Incorporated)
WIDCOMM Bluetooth Software (HKLM\...\{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}) (Version: 6.2.1.800 - Broadcom Corporation)
Winamp (HKLM-x32\...\Winamp) (Version: 5.6  - Nullsoft, Inc)
Winamp Detector Plug-in (HKU\S-1-5-21-2932545729-706692963-2365314865-1000\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc)
Windows Driver Package - Broadcom Bluetooth  (07/30/2009 6.2.0.9405) (HKLM\...\6B6B5E96843E55CF5CF8C7E45FB457F1FE642FF1) (Version: 07/30/2009 6.2.0.9405 - Broadcom)
Windows Driver Package - Broadcom Bluetooth  (09/11/2009 6.2.0.9407) (HKLM\...\3932CA781A7894D20116FDF60F878301800EA8AB) (Version: 09/11/2009 6.2.0.9407 - Broadcom)
Windows Driver Package - Broadcom HIDClass  (07/28/2009 6.2.0.9800) (HKLM\...\3BA80AB4C7E9F8497C115C844953A3D4BEB84D21) (Version: 07/28/2009 6.2.0.9800 - Broadcom)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Sync (HKLM-x32\...\{914DD274-9C5D-44CA-9AC7-12B8D2D4DA08}) (Version: 14.0.8117.416 - Microsoft Corporation)

==================== Personalizado CLSID (Lista blanca): ==============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

CustomCLSID: HKU\S-1-5-21-2932545729-706692963-2365314865-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2932545729-706692963-2365314865-1000_Classes\CLSID\{46406D82-6EC0-47CC-8A75-1F33C6DEDBBE}\InprocServer32 -> C:\Users\Laura\AppData\Local\Google\Update\1.3.35.442\psuser_64.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-2932545729-706692963-2365314865-1000_Classes\CLSID\{A2C6CB58-C076-425C-ACB7-6D19D64428CD}\localserver32 -> C:\Users\Laura\AppData\Local\Google\Chrome\Application\80.0.3987.149\notification_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-2932545729-706692963-2365314865-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Laura\AppData\Local\Google\Update\1.3.35.452\psuser_64.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-2932545729-706692963-2365314865-1000_Classes\CLSID\{E9E7529D-7F09-410B-AF2A-CC154473B19C}\InprocServer32 -> C:\Users\Laura\AppData\Local\Google\Update\1.3.35.452\psuser_64.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-2932545729-706692963-2365314865-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll (Dropbox, Inc -> Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2932545729-706692963-2365314865-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll (Dropbox, Inc -> Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2932545729-706692963-2365314865-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll (Dropbox, Inc -> Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2932545729-706692963-2365314865-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll (Dropbox, Inc -> Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2932545729-706692963-2365314865-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll (Dropbox, Inc -> Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2932545729-706692963-2365314865-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll (Dropbox, Inc -> Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2932545729-706692963-2365314865-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll (Dropbox, Inc -> Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2932545729-706692963-2365314865-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll (Dropbox, Inc -> Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2932545729-706692963-2365314865-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll (Dropbox, Inc -> Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2932545729-706692963-2365314865-1000_Classes\CLSID\{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll (Dropbox, Inc -> Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2932545729-706692963-2365314865-1000_Classes\CLSID\{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll (Dropbox, Inc -> Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2932545729-706692963-2365314865-1000_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAShell.dll [2015-10-22] (Panda Security S.L -> Panda Security, S.L.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2005-06-07] () [Archivo no firmado]
ContextMenuHandlers2-x32: [AlcoholShellEx] -> {32020A01-506E-484D-A2A8-BE3CF17601C3} => C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxShlex.dll [2010-03-25] (Alcohol Soft -> Alcohol Soft Development Team)
ContextMenuHandlers2: [AlcoholShellEx64] -> {AF67B665-D752-424E-9A03-C7C218F2844F} => C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxShlEx64.dll [2010-03-25] (Alcohol Soft -> Alcohol Soft Development Team)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-03-20] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers4: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2005-06-07] () [Archivo no firmado]
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2010-01-22] (Advanced Micro Devices, Inc.) [Archivo no firmado]
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2010-01-22] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAShell.dll [2015-10-22] (Panda Security S.L -> Panda Security, S.L.)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-03-20] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAShell.dll [2015-10-22] (Panda Security S.L -> Panda Security, S.L.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2005-06-07] () [Archivo no firmado]
ContextMenuHandlers1_S-1-5-21-2932545729-706692963-2365314865-1000: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers4_S-1-5-21-2932545729-706692963-2365314865-1000: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5_S-1-5-21-2932545729-706692963-2365314865-1000: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.36.0.dll [2020-03-19] (Dropbox, Inc -> Dropbox, Inc.)

==================== Codecs (Lista blanca) ====================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [134144 2010-06-08] () [Archivo no firmado]
HKLM\...\Drivers32: [VIDC.YV12] => C:\Windows\SysWOW64\yv12vfw.dll [217088 2004-01-25] (www.helixcommunity.org) [Archivo no firmado]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\SysWOW64\ac3acm.acm [151552 2010-01-17] (fccHandler) [Archivo no firmado]
HKLM\...\Drivers32: [msacm.lameacm] => C:\Windows\SysWOW64\lameACM.acm [839680 2008-09-24] (hxxp://www.mp3dev.org/) [Archivo no firmado]
HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [5632 2005-06-09] () [Archivo no firmado]

==================== Accesos directos & WMI ========================

(Las entradas pueden ser listadas para ser restauradas o eliminadas.)

Shortcut: C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Network Shortcuts\Mis sitios Web en MSN\target.lnk -> hxxp://www.msnusers.co

==================== Módulos cargados (Lista blanca) =============

2013-04-12 18:23 - 2013-04-12 18:23 - 000612664 _____ () [Archivo no firmado] C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\SQLite3.dll
2010-07-25 20:03 - 2005-06-07 11:26 - 000043008 _____ () [Archivo no firmado] C:\Program Files (x86)\WinRAR\rarext64.dll
2010-09-30 10:30 - 2009-10-23 19:15 - 000024576 _____ () [Archivo no firmado] C:\Windows\System32\solidlocalmon.dll
2010-01-22 07:52 - 2010-01-22 07:52 - 000873984 _____ (Advanced Micro Devices, Inc.) [Archivo no firmado] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll
2010-01-22 07:51 - 2010-01-22 07:51 - 000003584 _____ (Advanced Micro Devices, Inc.) [Archivo no firmado] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiamesp.dll
2011-02-19 19:35 - 2010-10-21 05:10 - 000088576 _____ (Intel Corporation) [Archivo no firmado] C:\Windows\system32\igfxrESN.lrc
2010-08-11 16:33 - 2010-08-11 16:33 - 001658880 _____ (Microsoft Corporation) [Archivo no firmado] C:\Windows\WinSxS\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.4053_none_8444db7d32915e4c\MFC80.DLL
2010-08-11 16:33 - 2010-08-11 16:33 - 001655296 _____ (Microsoft Corporation) [Archivo no firmado] C:\Windows\WinSxS\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.4053_none_8444db7d32915e4c\MFC80U.DLL
2010-02-15 10:36 - 2010-02-15 10:36 - 000029696 _____ (Nokia) [Archivo no firmado] C:\Program Files (x86)\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_spa.nlr
2009-09-14 11:50 - 2009-09-14 11:50 - 001354752 _____ (Nokia) [Archivo no firmado] C:\Program Files (x86)\Nokia\Nokia PC Suite 7\NGSCM64.DLL
2009-05-25 12:33 - 2009-05-25 12:33 - 000888832 _____ (Nokia) [Archivo no firmado] C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PhoneBrowser64.dll
2008-08-25 07:23 - 2008-08-25 07:23 - 000573440 _____ (Nokia) [Archivo no firmado] C:\Program Files (x86)\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr

==================== Alternate Data Streams (Lista blanca) ========

(Si una entrada es incluida en el fixlist, solamente los ADS serán eliminados.)

AlternateDataStreams: C:\ProgramData\Temp:0B9176C0 [256]
AlternateDataStreams: C:\ProgramData\Temp:4CF61E54 [118]
AlternateDataStreams: C:\ProgramData\Temp:4D066AD2 [132]
AlternateDataStreams: C:\ProgramData\Temp:5D7E5A8F [144]
AlternateDataStreams: C:\ProgramData\Temp:9B013599 [141]
AlternateDataStreams: C:\ProgramData\Temp:ABE89FFE [128]
AlternateDataStreams: C:\ProgramData\Temp:E1F04E8D [274]

==================== Modo Seguro (Lista blanca) ==================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\53999917.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NanoServiceMain => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PSUAService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\53999917.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcmscsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MpfService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NanoServiceMain => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PSUAService => ""="Service"

==================== Asociación (Lista blanca) =================

==================== Internet Explorer sitios de confianza/restringidos ==========

(Si una entrada es incluida en el fixlist, será eliminada del registro.)

IE trusted site: HKU\S-1-5-21-2932545729-706692963-2365314865-1000\...\fnmt.es -> hxxps://fnmt.es
IE trusted site: HKU\S-1-5-21-2932545729-706692963-2365314865-1000\...\fnmt.es -> hxxp://fnmt.es
IE trusted site: HKU\S-1-5-21-2932545729-706692963-2365314865-1000\...\gob.es -> hxxps://agenciatributaria.gob.es
IE trusted site: HKU\S-1-5-21-2932545729-706692963-2365314865-1000\...\google.es -> hxxps://www.google.es

==================== Hosts contenido: =========================

(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)

2009-07-14 03:34 - 2009-06-10 22:00 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Otras Áreas ===========================

(Actualmente no existe una corrección automática para esta sección.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\PC Connectivity Solution\;C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files\WIDCOMM\Bluetooth Software\;C:\Program Files\WIDCOMM\Bluetooth Software\syswow64;C:\Program Files (x86)\Windows Live\Shared;C:\Program Files (x86)\SKYPE\Phone\
HKU\S-1-5-21-2932545729-706692963-2365314865-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 8.8.8.8 - 1.1.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
Firewall de Windows está deshabilitado.

==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==

(Si una entrada es incluida en el fixlist, será eliminada.)

MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: AMD External Events Utility => 2
MSCONFIG\Services: AxAutoMntSrv => 2
MSCONFIG\Services: btwdins => 2
MSCONFIG\Services: DsiWMIService => 2
MSCONFIG\Services: ePowerSvc => 2
MSCONFIG\Services: Greg_Service => 2
MSCONFIG\Services: IAStorDataMgrSvc => 2
MSCONFIG\Services: IJPLMSVC => 3
MSCONFIG\Services: LMS => 2
MSCONFIG\Services: MBAMService => 2
MSCONFIG\Services: NAUpdate => 2
MSCONFIG\Services: NTI IScheduleSvc => 2
MSCONFIG\Services: NTIBackupSvc => 3
MSCONFIG\Services: NTISchedulerSvc => 2
MSCONFIG\Services: ODDPwrSvc => 2
MSCONFIG\Services: PandaAgent => 2
MSCONFIG\Services: RichVideo => 2
MSCONFIG\Services: RS_Service => 2
MSCONFIG\Services: SCPDFReadSpool => 2
MSCONFIG\Services: ServiceLayer => 3
MSCONFIG\Services: StarWindServiceAE => 2
MSCONFIG\Services: TeamViewer => 2
MSCONFIG\Services: ufad-ws60 => 3
MSCONFIG\Services: UNS => 2
MSCONFIG\Services: Updater Service => 2
MSCONFIG\Services: VMAuthdService => 2
MSCONFIG\Services: VMnetDHCP => 2
MSCONFIG\Services: VMUSBArbService => 2
MSCONFIG\Services: VMware NAT Service => 2
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Acer VCM.lnk => C:\Windows\pss\Acer VCM.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk => C:\Windows\pss\Bluetooth.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^TMMonitor.lnk => C:\Windows\pss\TMMonitor.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^Laura^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk => C:\Windows\pss\Dropbox.lnk.Startup
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
MSCONFIG\startupreg: CanonMyPrinter => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
MSCONFIG\startupreg: CanonSolutionMenuEx => C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE /logon
MSCONFIG\startupreg: CCleaner Smart Cleaning => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: Dropbox Update => "C:\Users\Laura\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c
MSCONFIG\startupreg: EgisTecLiveUpdate => "C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe"
MSCONFIG\startupreg: Google Update => "C:\Users\Laura\AppData\Local\Google\Update\1.3.35.442\GoogleUpdateCore.exe"
MSCONFIG\startupreg: HotKeysCmds => C:\Windows\system32\hkcmd.exe
MSCONFIG\startupreg: IAStorIcon => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
MSCONFIG\startupreg: IgfxTray => C:\Windows\system32\igfxtray.exe
MSCONFIG\startupreg: ISUSPM => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe -scheduler
MSCONFIG\startupreg: KiesTrayAgent => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
MSCONFIG\startupreg: Malwarebytes TrayApp => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe
MSCONFIG\startupreg: mwlDaemon => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
MSCONFIG\startupreg: NBAgent => "C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
MSCONFIG\startupreg: Nuance OmniPage 17-reminder => "C:\Program Files (x86)\Nuance\OmniPage17\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\OmniPage 17\Ereg\Ereg.ini"
MSCONFIG\startupreg: PC Suite Tray => "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
MSCONFIG\startupreg: PLFSetI => C:\Windows\PLFSetI.exe
MSCONFIG\startupreg: Prelaunch OmniPage => "C:\Program Files (x86)\Nuance\OmniPage17\OmniPage17.exe" /preload
MSCONFIG\startupreg: PSUAMain => "C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAMain.exe" /LaunchSysTray
MSCONFIG\startupreg: Skype => "C:\Program Files\SKYPE\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: StartCCC => "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
MSCONFIG\startupreg: SynTPEnh => %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
MSCONFIG\startupreg: vmware-tray => "C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe"

==================== Reglas de firewall (Lista blanca) ================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

FirewallRules: [{512869BD-07CD-492B-B153-6CF776BCA66B}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{49605E05-CD75-40AA-9F3E-8F8CA5D0B62F}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{81FD3022-CF0A-48B5-A79F-97D4D1373075}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{6347A880-7A7E-496F-B7CA-36F2FE0EF0D5}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{151D3221-0043-4FA5-9203-6BAFDF96B0CB}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{2A6B8361-28B3-4923-B3BA-D3C7C70739AF}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{859070C9-E1BB-4584-9243-BB24F93078F9}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{B3B001C5-FA75-496C-8490-647CCA7DC1B8}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{374440F4-BA60-4764-8F59-A1633E5F2723}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{F11094AC-4696-48CF-BC0D-98AB16A7A02C}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{58024B81-FCB2-4EDF-944E-D3478D5E6B1F}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{B84F38C8-B74E-4B1B-8055-42BD035411BE}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A8A4C81B-81C3-4FAD-9862-626B57F570AC}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{D6EECB45-7541-4E77-AE1E-DC9951B60698}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{38B57905-081D-4E27-AAC3-0142ED529757}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{9A2B11FB-5069-4D8E-BE08-ABE9593FBC24}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{CD98BA79-8A9F-4AC3-A5D2-5E048E60A0A1}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A6F58FEA-6244-469A-8933-0F84BC3F1188}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{1475DC63-2A11-4FCA-9E94-5F302B5A769E}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{0B1C6013-826E-4EB1-805C-2BFDEA484696}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{3472F44B-DE43-4129-A8EA-78350D177A86}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{D6B2B114-1CF8-4D85-9BBB-BBD0E7302B5B}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{0E1AEA78-E751-4475-A241-BF80E38977C5}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{00475BAC-5F65-4767-A28F-51F350BA0F80}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{593B30E9-A89D-4DD8-B0A6-405BCBFBC9FF}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{E719554A-E5DB-44DD-932F-7DE8AF447E66}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{AE8154A6-2582-4A81-B46A-1DEC7099BF31}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{9BC615D0-2C26-4F9D-8F59-8F071C9BDB9C}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{570C1B00-2953-48E6-889B-EF10F8867E11}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{B248DA8E-BA02-4629-8665-6796D251F883}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{FA6FC568-3588-420E-912C-B88C6BEF5E1E}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A3BC7523-172F-422E-979F-AE53704258A4}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7AF4190A-888C-49E9-B664-E5142B5F285E}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{6406F594-BE12-4062-A977-06A7110EF507}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{BF97CD0F-8AC7-42D2-9030-8B8E902F8CAA}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{B3F64E75-C0CE-43AE-B1D2-136145BB8F18}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7484C4BD-D42B-4860-8A7C-7F2FF25C0B15}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{37B57F34-5CF9-4463-B7F6-C88C5C2372E7}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{23BA9000-44F6-4E6E-AF1E-05C41C681414}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{ABBDBFB9-2E0D-4FA7-989E-A8F64C2CFBD5}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{03A1B7DE-73E4-44D0-8856-DED1C765506C}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{63A48C61-3BA8-4960-8495-9F6B0FA4780C}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{9294B498-CEC8-4374-A3FB-0C8DAF813AD7}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{EE6E4F0B-F9F1-4D30-8BBB-8FF0775FC621}C:\program files (x86)\winamp\winamp.exe] => (Block) C:\program files (x86)\winamp\winamp.exe (Winamp -> Nullsoft, Inc.)
FirewallRules: [UDP Query User{BA818240-17AB-49A9-B701-2EF058EB772B}C:\program files (x86)\winamp\winamp.exe] => (Block) C:\program files (x86)\winamp\winamp.exe (Winamp -> Nullsoft, Inc.)
FirewallRules: [TCP Query User{1D944167-0DCD-4354-B19F-459528FBC3C9}C:\program files (x86)\ares\ares.exe] => (Block) C:\program files (x86)\ares\ares.exe (Ares Development Group) [Archivo no firmado]
FirewallRules: [UDP Query User{57A25E04-10BF-49EC-8AED-1DFC3BC6CDE2}C:\program files (x86)\ares\ares.exe] => (Block) C:\program files (x86)\ares\ares.exe (Ares Development Group) [Archivo no firmado]
FirewallRules: [{80A1B5DB-005A-4992-A1DA-76D6A52F9B10}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8F169535-AD0C-4F6E-9929-840784ABAF45}] => (Allow) svchost.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{7BBE292D-C3B8-49E3-A80B-557A27EB2106}] => (Allow) C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{28B2DF0A-02E8-4D3A-B78A-C231B92EF2A2}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{25E3CC31-A9C5-4167-A617-F0EDCF40C0B6}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{5961AA3A-B68E-4A81-9B51-79694B8FAE16}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe (Winamp -> Nullsoft, Inc.)
FirewallRules: [UDP Query User{B329ADFD-FA90-4329-9994-A385716F8137}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe (Winamp -> Nullsoft, Inc.)
FirewallRules: [{D96DB4EA-CAC7-44B7-84EC-6B06911CA267}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{664C25F4-5C9F-47EE-8FD0-BD48246316D3}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{C1F39AFC-318C-4F9D-9DF4-629800BFBC12}C:\program files (x86)\ares\ares.exe] => (Allow) C:\program files (x86)\ares\ares.exe (Ares Development Group) [Archivo no firmado]
FirewallRules: [UDP Query User{5B17577B-CF67-4ED6-819B-074D57E1D064}C:\program files (x86)\ares\ares.exe] => (Allow) C:\program files (x86)\ares\ares.exe (Ares Development Group) [Archivo no firmado]
FirewallRules: [TCP Query User{94FB3C02-D362-4675-93D3-4DD27DB0330D}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{760B04F1-82B1-43DB-8F62-59EDD0B96F1A}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{EC689758-0E49-471B-86B3-E39B91A34179}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{12C91A44-989F-4222-B847-B44AD982FB44}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{B79438A3-F43F-4CED-B264-3633889CCF49}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{76B148AB-AB58-4D8B-836F-2D9BB7ED99A0}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{378936D0-363D-4C19-BA07-9FFBC2E6171C}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{B8EBC04F-EA0C-4788-BFC3-4825A6277604}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{002C2685-202A-48AA-8779-A91A31F4B149}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{670D4BBF-6F26-4AF9-BAA9-56F1D7E8AD16}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{08F0CA04-BBE4-4C0B-B1CB-873829212A3D}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{FCDCECFD-ECD6-4B27-98FA-F6C3B60B9494}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{49865A8B-CAF8-4F25-9197-2F0D3C34B198}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{375E10A6-9638-4891-AED8-C508182F6A23}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{1B71F491-D061-4349-ACE8-E4D218B30917}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C15C45F4-E4B4-4C97-8DD1-B17A89351317}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{954ADE0A-9000-46D3-8F70-AC020DFE5851}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A22F99BA-378C-4007-ACCA-E1E0FA3DA1AC}] => (Allow) LPort=2869
FirewallRules: [{E3B674E3-A600-4A26-94D1-1B5C4B138CC9}] => (Allow) LPort=1900
FirewallRules: [{2E7800B9-814D-4CF5-857C-AAD316E76E3D}] => (Allow) C:\Program Files (x86)\nokia\nokia suite\nokiasuite.exe (Nokia -> Nokia)
FirewallRules: [{5A7E5AC4-FCEE-4513-9181-D193D57EE577}] => (Allow) C:\Users\Laura\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
FirewallRules: [{20076132-6929-4FDF-A33F-FC6779823962}] => (Allow) C:\Users\Laura\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
FirewallRules: [{77D40B59-816C-4299-AECF-2957BA312057}] => (Allow) C:\Users\Laura\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
FirewallRules: [{EC494CA8-D71D-4659-A86C-F9AB822AFE60}] => (Allow) C:\Users\Laura\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
FirewallRules: [{C6CF2F9C-017D-4B44-8A5B-9B6C4282C136}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer -> TeamViewer GmbH)
FirewallRules: [{EB46BF94-8936-4D04-866F-64981BE64C23}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer -> TeamViewer GmbH)
FirewallRules: [{54AE5A56-9CFB-4A8D-853C-109CE75C3981}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer -> TeamViewer GmbH)
FirewallRules: [{73AB6E7D-69E8-4472-B699-143A1ABEABB6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer -> TeamViewer GmbH)
FirewallRules: [{84286A1F-94EF-407F-9094-E784F768C28C}] => (Allow) C:\Users\Laura\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Puntos de Restauración =========================


==================== Dispositivos defectuosos en el Administrador de dispositivos ============

Name: Teredo Tunneling Pseudo-Interface
Description: Adaptador de tunelización Teredo de Microsoft
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Errores del registro de eventos: ========================

Errores de aplicación:
==================
Error: (03/21/2020 04:14:37 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Error al generar el contexto de activación para "c:\program files (x86)\nokia\nokia pc suite 7\TIS_Windows7PIM.dll".
No se encontró el ensamblado dependiente Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0".
Use sxstrace.exe para obtener un diagnóstico detallado.

Error: (03/21/2020 12:37:55 AM) (Source: System Restore) (EventID: 8193) (User: )
Description: No se pudo crear el punto de restauración (proceso = C:\Windows\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation; descripción = Punto de control programado; error = 0x80070422).

Error: (03/20/2020 09:20:41 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: No se pudo crear el punto de restauración (proceso = C:\Users\Laura\AppData\Local\Temp\jrt\CreateRestorePoint.exe  "JRT Pre-Junkware Removal"; descripción = JRT Pre-Junkware Removal; error = 0x80070422).

Error: (03/20/2020 09:18:58 PM) (Source: ESENT) (EventID: 455) (User: )
Description: DllHost (4980) WebCacheLocal: Error -1811 (0xfffff8ed) al abrir un archivo de registro C:\Users\Laura\AppData\Local\Microsoft\Windows\WebCache\V01.log.

Error: (03/20/2020 09:11:33 PM) (Source: ESENT) (EventID: 454) (User: )
Description: DllHost (4980) WebCacheLocal: Error inesperado al recuperar o restaurar la base de datos -1811.

Error: (03/20/2020 09:08:31 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: No se pudo crear el punto de restauración (proceso = C:\Users\Laura\Desktop\Nueva carpeta\adwcleaner_8.0.3 (1).exe carpeta\adwcleaner_8.0.3 (1).exe" ; descripción = AdwCleaner_BeforeCleaning_20/03/2020_21:08:31; error = 0x80070422).

Error: (03/20/2020 08:48:11 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: No se pudo crear el punto de restauración (proceso = C:\Windows\system32\msiexec.exe /V; descripción = Removed Nuance OmniPage 17.; error = 0x80070422).

Error: (03/20/2020 08:47:32 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: No se pudo crear el punto de restauración (proceso = C:\Windows\system32\msiexec.exe /V; descripción = Removed Nuance OmniPage 17.; error = 0x80070422).


Errores del sistema:
=============
Error: (03/21/2020 09:49:51 AM) (Source: DCOM) (EventID: 10016) (User: Laura-PC)
Description: La configuración de permisos específico de la aplicación no concede el permiso Activación Local para la aplicación de servidor COM con CLSID 
{E579AB5F-1CC4-44B4-BED9-DE0991FF0623}
 y APPID 
{56BE716B-2F76-4DFA-8702-67AE10044F0B}
 al usuario Laura-PC\Laura con SID (S-1-5-21-2932545729-706692963-2365314865-1000) en la dirección LocalHost (con LRPC). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes.

Error: (03/21/2020 09:49:51 AM) (Source: DCOM) (EventID: 10016) (User: Laura-PC)
Description: La configuración de permisos específico de la aplicación no concede el permiso Activación Local para la aplicación de servidor COM con CLSID 
{E579AB5F-1CC4-44B4-BED9-DE0991FF0623}
 y APPID 
{56BE716B-2F76-4DFA-8702-67AE10044F0B}
 al usuario Laura-PC\Laura con SID (S-1-5-21-2932545729-706692963-2365314865-1000) en la dirección LocalHost (con LRPC). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes.

Error: (03/20/2020 10:30:27 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: El servicio Windows Update no respondió después de iniciar.

Error: (03/20/2020 10:24:50 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Error en la llamada ScRegSetValueExW para Start con el error siguiente: 
Acceso denegado.

Error: (03/20/2020 10:24:50 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: El siguiente controlador de inicio del sistema o de inicio del arranque no se cargó correctamente: 
Cinemsup

Error: (03/20/2020 10:24:50 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Error en la llamada ScRegSetValueExW para Start con el error siguiente: 
Acceso denegado.

Error: (03/20/2020 10:15:45 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio Host del servicio de diagnóstico no pudo iniciarse debido al siguiente error: 
No se puede iniciar el servicio debido a un error en el inicio de sesión.

Error: (03/20/2020 10:15:45 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: El servicio WdiServiceHost no se pudo iniciarse como NT AUTHORITY\LocalService con la contraseña configurada actualmente debido al siguiente error: 
Solicitud no compatible.


Para asegurarse de que el servicio esté correctamente configurado, use el complemento Servicios en Microsoft Management Console (MMC).


Windows Defender:
===================================
Date: 2019-08-06 14:53:03.424
Description: 
El examen de Windows Defender se detuvo antes de completarse.
Id. de examen:{C6C2495E-B22C-4259-BC86-86D47D7FCCE3}
Tipo de examen:AntiSpyware
Parámetros de examen:Examen rápido
Usuario:NT AUTHORITY\Servicio de red

Date: 2017-10-22 10:34:48.457
Description: 
El examen de Windows Defender se detuvo antes de completarse.
Id. de examen:{8AB06C2C-E955-4F3B-8C1C-6DCB50B4B280}
Tipo de examen:AntiSpyware
Parámetros de examen:Examen rápido
Usuario:NT AUTHORITY\Servicio de red

Date: 2016-11-11 10:56:38.331
Description: 
El examen de Windows Defender se detuvo antes de completarse.
Id. de examen:{21B014D3-6DF6-4FCC-8A51-71205B21B16F}
Tipo de examen:AntiSpyware
Parámetros de examen:Examen rápido
Usuario:NT AUTHORITY\Servicio de red

Date: 2016-10-19 23:22:07.332
Description: 
El examen de Windows Defender se detuvo antes de completarse.
Id. de examen:{5EF56B5B-CA49-4E04-BFDC-28DB5F12D931}
Tipo de examen:AntiSpyware
Parámetros de examen:Examen rápido
Usuario:NT AUTHORITY\Servicio de red

Date: 2015-06-23 18:16:08.952
Description: 
El examen de Windows Defender se detuvo antes de completarse.
Id. de examen:{AC54959C-BA57-452C-BE78-0521154F1AD6}
Tipo de examen:AntiSpyware
Parámetros de examen:Examen rápido
Usuario:NT AUTHORITY\Servicio de red

CodeIntegrity:
===================================

Date: 2017-03-27 19:50:34.698
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Windows\System32\dsound.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

Date: 2017-03-27 19:48:31.549
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Windows\System32\dsound.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

Date: 2017-03-27 19:31:39.877
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Windows\System32\dsound.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

Date: 2017-03-27 19:29:32.540
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Windows\System32\dsound.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

Date: 2017-03-26 21:56:24.391
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Windows\System32\dsound.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

Date: 2017-03-26 19:06:14.084
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Windows\System32\dsound.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

Date: 2017-03-26 18:57:49.240
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Windows\System32\dsound.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

Date: 2016-11-11 22:38:47.884
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Windows\System32\dsound.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

==================== Información de la memoria =========================== 

BIOS: INSYDE V1.04 03/16/2010
Placa base: Acer ZR7B
Procesador: Intel(R) Core(TM) i5 CPU M 430 @ 2.27GHz
Porcentaje de memoria en uso: 89%
RAM física total: 3894.69 MB
RAM física disponible: 418.54 MB
Virtual total: 7787.56 MB
Virtual disponible: 3186.34 MB

==================== Unidades ================================

Drive c: (Acer) (Fixed) (Total:150.01 GB) (Free:36.67 GB) NTFS
Drive z: (ARCHIVOS) (Fixed) (Total:434.06 GB) (Free:215.46 GB) NTFS

\\?\Volume{10ff60af-94cb-11df-b439-806e6f6e6963}\ (SYSTEM RESERVED) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS
\\?\Volume{10ff60ae-94cb-11df-b439-806e6f6e6963}\ (PQSERVICE) (Fixed) (Total:12 GB) (Free:1.8 GB) NTFS

==================== MBR & Tabla de particiones ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 596.2 GB) (Disk ID: 02D01B45)
Partition 1: (Not Active) - (Size=12 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=150 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=434.1 GB) - (Type=0F Extended)

==================== Final de Addition.txt =======================

Hola @agusrr

Paso 1: Desinstala con Revo Uninstaller en su Modo Avanzado:

  • Ccleaner

Manual de Revo Uninstaller.


Paso 2: Descarga del siguiente enlace la herramienta MB-Clean.exe, la ejecutas siguiendo los pasos, esto eliminara los restos de Malwarebytes en tu Sistema.

Paso 3: Ejecutaste FRST desde un lugar incorrecto:

  • Ejecutado desde Z:\soft virus

Corta el ejecutable y pegalo en tu escritorio (El escritorio de C: o donde tienes instalado tu Sistema Operativo) <<< Esto es Muy Importante. No debe estar dentro de otra carpeta.

Paso 4: Luego sigue estos pasos:

1.- Muy Importante >>> Realizar una copia de Seguridad de su Registro.

  • Descarga DelFix en el escritorio de Windows.
  • Clic Derecho, “Ejecutar como Administrador”.
  • En la ventana principal, marca solamente la casilla “Create Registry Backup”.
  • Clic en Run.

Al terminar se abrirá un reporte llamado DelFix.txt, guárdelo por si fuera necesario y cierre la herramienta…

2.- Desactiva Temporalmente tu antivirus.

3.- Abre un nuevo archivo Notepad/Bloc de Notas y copia y pega este contenido:

Start
CloseProcesses:
CreateRestorePoint:
KU\S-1-5-21-2932545729-706692963-2365314865-1000\...\Run: [] => [X]
HKU\S-1-5-21-2932545729-706692963-2365314865-1000\...\MountPoints2: {063f3aad-b160-11df-b7b9-c80aa96554d2} - E:\StartVMCLite.exe
HKU\S-1-5-21-2932545729-706692963-2365314865-1000\...\MountPoints2: {063f3aaf-b160-11df-b7b9-c80aa96554d2} - E:\StartVMCLite.exe
GroupPolicyScripts: Restricción <==== ATENCIÓN
GroupPolicyScripts-x32: Restricción <==== ATENCIÓN
Task: {08F93AAA-C526-4D1E-89F0-D0C78B082D12} - \{20ED886C-8DCB-4DA8-92E9-48923C99DD9D} -> Ningún archivo <==== ATENCIÓN
Task: {3FE35C05-C6B1-4BDD-8C43-8D54ED0C316B} - \{30668650-4476-4FF1-A7F7-3A4E120684DA} -> Ningún archivo <==== ATENCIÓN
Task: {493C3B09-8FDA-4BD4-AE7B-9CC95BEE6D5E} - \{41FCB608-7FD9-40D2-B657-93A443D5BBF8} -> Ningún archivo <==== ATENCIÓN
Task: {549D06EB-E640-4361-BDC8-2D961BCDCE28} - \{CFC7BC84-BE9D-4E56-A685-33B5DCC1023C} -> Ningún archivo <==== ATENCIÓN
Task: {602D6C4B-1E6A-4498-92BD-7CBB227473DA} - System32\Tasks\{75BFE955-1CC4-4871-B278-61BB5319E783} => "C:\Program Files (x86)\Internet Explorer\iexplore.exe" hxxp://ui.skype.com/ui/0/6.11.0.102/es/abandoninstall?source=lightinstaller&page=tsBing
Task: {8CB449E3-3A62-4833-A9D9-E6FB3BE0E03F} - System32\Tasks\{BF22517D-98D5-4109-B16A-DDCD09564DE6} => "C:\Program Files (x86)\Internet Explorer\iexplore.exe" hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=6.11.0.102&LastError=404
Task: {9395142A-B7A0-4AB2-8BB2-9B640582F1F3} - System32\Tasks\{BBD0BF47-5E64-475A-AAAB-567B0EA264DC} => C:\Windows\system32\pcalua.exe -a "C:\Users\Laura\Desktop\AGUSTÍN\DVD\Instalaciones de Programas\Comprimidores\Alcohol 120% v1.9.2.1705 Multilanguage + serial (OK)\setup.exe" -d "C:\Users\Laura\Desktop\AGUSTÍN\DVD\Instalaciones de Programas\Comprimidores\Alcohol 120% v1.9.2.1705 Multilanguage + serial (OK)"
Task: {944ED847-89C0-4825-91ED-179A2CE1FB08} - System32\Tasks\{799DF16A-0C99-4925-B0D9-25A2967FF9AC} => "C:\Program Files (x86)\Internet Explorer\iexplore.exe" hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=7.17.0.106&LastError=12002
Task: {ABB0597C-86EC-43BF-A6E1-15D2116D0907} - System32\Tasks\{957DC12D-267B-4E12-8A49-231F474C0FC2} => C:\Windows\system32\pcalua.exe -a "C:\Users\Laura\Favorites\Downloads\XperiaCompanion (1).exe" -d C:\Users\Laura\Favorites\Downloads
Task: {F3FB2C3D-D68D-49F4-851C-47164E6FB64A} - \CreateChoiceProcessTask -> Ningún archivo <==== ATENCIÓN
Task: {F6BC8887-DAA3-466F-8FC5-760647389427} - System32\Tasks\{2D7F4B18-9DD9-4D9D-8BCD-53CD9CD511A8} => "C:\Program Files (x86)\Internet Explorer\iexplore.exe" hxxp://ui.skype.com/ui/0/6.11.0.102/es/abandoninstall?source=lightinstaller&page=tsBing
Task: {F72F118B-7A4A-4C4C-AF9F-21508182F6B4} - System32\Tasks\{82BB1D7E-8672-4964-A066-18577A25F741} => "C:\Program Files (x86)\Internet Explorer\iexplore.exe" hxxp://ui.skype.com/ui/0/6.1.0.129.272/es/abandoninstall?page=tsMain
Task: {FC3C919B-9686-48DC-BA0D-82AA55A10645} - System32\Tasks\{C91E8291-CD84-4B72-8AB4-7CD6E23255E4} => "C:\Program Files (x86)\Internet Explorer\iexplore.exe" hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=6.11.0.102&LastError=404
HKU\S-1-5-21-2932545729-706692963-2365314865-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=0c0a&m=aspire_5820tg&r=27360710t906l0443z195t4531k280
SearchScopes: HKLM-x32 -> DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW
SearchScopes: HKLM-x32 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW
SearchScopes: HKU\S-1-5-21-2932545729-706692963-2365314865-1000 -> DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW_es
SearchScopes: HKU\S-1-5-21-2932545729-706692963-2365314865-1000 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW_es
BHO-x32: Sin Nombre -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> Ningún archivo
Toolbar: HKU\S-1-5-21-2932545729-706692963-2365314865-1000 -> Sin Nombre - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} -  Ningún archivo
FF HKLM-x32\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => no encontrado
FF Plugin: @microsoft.com/GENUINE -> disabled [Ningún archivo]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Ningún archivo]
S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6933272 2020-03-20] (Malwarebytes Inc -> Malwarebytes)
R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [214496 2020-03-20] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248968 2020-03-20] (Malwarebytes Inc -> Malwarebytes)
2020-03-20 22:15 - 2020-03-20 22:24 - 000214496 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
2020-03-20 22:14 - 2020-03-20 22:15 - 000248968 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2020-03-20 21:18 - 2020-03-20 21:18 - 000000000 ____D C:\Users\Laura\AppData\Local\mbam
2020-03-20 21:09 - 2020-03-20 21:09 - 000001952 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2020-03-20 21:09 - 2020-03-20 21:09 - 000001952 _____ C:\ProgramData\Desktop\Malwarebytes.lnk
2020-03-20 21:09 - 2020-03-20 21:09 - 000000000 ____D C:\Users\Laura\AppData\Local\mbamtray
2020-03-20 21:09 - 2020-03-20 21:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2020-03-20 21:07 - 2020-03-20 21:07 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2020-03-20 21:07 - 2020-03-20 21:07 - 000000000 ____D C:\ProgramData\Malwarebytes
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-03-20] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-03-20] (Malwarebytes Corporation -> Malwarebytes)
2020-03-20 21:07 - 2020-03-20 21:07 - 000000000 ____D C:\Program Files\Malwarebytes
S4 NTI IScheduleSvc; C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe [X]
S4 NTIBackupSvc; C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [X]
S4 NTISchedulerSvc; C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [X]
S4 Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [X]
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
U3 arxofnxb; C:\Windows\System32\Drivers\arxofnxb.sys [0 0000-00-00] (Intel Corporation) <==== ATENCIÓN (cero bytes Archivo/Carpeta)
S3 ALSysIO; \??\C:\Users\Laura\AppData\Local\Temp\ALSysIO64.sys [X] <==== ATENCIÓN
S1 Cinemsup; \??\C:\Windows\system32\drivers\cinemsup.sys [X]
S3 VMnetAdapter; system32\DRIVERS\vmnetadapter.sys [X]
2020-03-20 21:07 - 2017-01-31 22:30 - 000000000 ____D C:\AdwCleaner
2020-03-20 20:48 - 2010-07-23 18:41 - 000000000 ____D C:\ProgramData\Temp
AV: Malwarebytes (Disabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Malwarebytes (Disabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AlternateDataStreams: C:\ProgramData\Temp:0B9176C0 [256]
AlternateDataStreams: C:\ProgramData\Temp:4CF61E54 [118]
AlternateDataStreams: C:\ProgramData\Temp:4D066AD2 [132]
AlternateDataStreams: C:\ProgramData\Temp:5D7E5A8F [144]
AlternateDataStreams: C:\ProgramData\Temp:9B013599 [141]
AlternateDataStreams: C:\ProgramData\Temp:ABE89FFE [128]
AlternateDataStreams: C:\ProgramData\Temp:E1F04E8D [274]
MSCONFIG\Services: MBAMService => 2
MSCONFIG\startupreg: Malwarebytes TrayApp => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe

CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:
END
  • Lo guardas bajo el nombre de fixlist.txt en el escritorio <<< Esto es muy importante.

Nota: Es necesario que el ejecutable Frst.exe y fixlist.txt se encuentren en la misma ubicación (escritorio) o si no la herramienta no trabajara.

  • Ejecutas Frst.exe.
  • Presionas el botón Fix/Corregir y aguardas a que termine.
  • La Herramienta guardara el reporte en tu escritorio (Fixlog.txt).
  • Lo pegas en tu próxima respuesta.

Vuelves, NO INSTALAS NADA QUE NO TE PIDA, y nos comentas si continua el problema.

Salu2.

Hola, Me fue de gran ayuda!!! Por fin pude mover mis archivos a un lugar seguro y pude formatear y ahora va todo como la seda. Estaba apurado porque no podía rescatar mi información. Ahora con W7 Home x64 recién instalado de fabrica, todo operativo excepto un detalle poco importante. No tengo conexión a Internet con Internet Explorer 8. Me manejo con Chrome. Muchas gracias.

Hola @agusrr

Lastima que tuvieras que formatear.

Y una pena que no nos trajeras los reportes, aunque entiendo tu urgencia. :upside_down_face:

Debes instalar todas las actualizaciones, que serán muchas, para que te quede un Windows 7 lo mas seguro posible, ya que no recibe mas nuevas actualizaciones.

En cuanto puedas y por tu seguridad deberías mudarte a un Windows 10.

Cerramos el tema.

Salu2