Firewall Windows 10 Defender 0x80070422 Error

Hola, si, mejor continuar, haré las pruebas según me digáis hasta solucionarlo. Gracias. saludos.

Hola @Dhampird

Perfecto.

Desinstala Nod con su herramienta especifica tal como te indique en el Post 25.

Reinicias , y aquí vuelves a repetir la ejecución de FSS.exe y FRST como ya lo has hecho anteriormente y nos traes los tres reportes.

Salu2

FSS:

Farbar Service Scanner Version: 14-12-2019
Ran by DHAMPIRD (administrator) on 26-01-2020 at 18:34:06
Running from "C:\Users\DHAMPIRD\Desktop"
Microsoft Windows 10 Pro  (X64)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo.com is accessible.


Windows Firewall:
=============
mpsdrv Service is not running. Checking service configuration:
The start type of mpsdrv service is OK.
The ImagePath of mpsdrv service is OK.
Checking LEGACY_mpsdrv: ATTENTION!=====> Unable to open LEGACY_mpsdrv\0000 registry key. The key does not exist.

MpsSvc Service is not running. Checking service configuration:
The start type of MpsSvc service is set to Disabled. The default start type is Auto.
The ImagePath of MpsSvc: "%SystemRoot%\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p".
The ServiceDll of MpsSvc service is OK.


Firewall Disabled Policy: 
==================


System Restore:
============

System Restore Policy: 
========================


Security Center:
============


Windows Update:
============

Windows Autoupdate Disabled Policy: 
============================


Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
The start type of WinDefend service is set to Disabled. The default start type is Auto.
The ImagePath of WinDefend: ""C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MsMpEng.exe"".


Windows Defender Disabled Policy: 
==========================


Other Services:
==============


File Check:
========
C:\Windows\System32\nsisvc.dll => File is digitally signed
C:\Windows\System32\drivers\nsiproxy.sys => File is digitally signed
C:\Windows\System32\drivers\afd.sys => File is digitally signed
C:\Windows\System32\drivers\tdx.sys => File is digitally signed
C:\Windows\System32\Drivers\tcpip.sys => File is digitally signed
C:\Windows\System32\dnsrslvr.dll => File is digitally signed
C:\Windows\System32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\System32\mpssvc.dll => File is digitally signed
C:\Windows\System32\bfe.dll => File is digitally signed
C:\Windows\System32\drivers\mpsdrv.sys => File is digitally signed
C:\Windows\System32\SDRSVC.dll => File is digitally signed
C:\Windows\System32\vssvc.exe => File is digitally signed
C:\Windows\System32\wscsvc.dll => File is digitally signed
C:\Windows\System32\wbem\WMIsvc.dll => File is digitally signed
C:\Windows\System32\wuaueng.dll => File is digitally signed
C:\Windows\System32\qmgr.dll => File is digitally signed
C:\Windows\System32\es.dll => File is digitally signed
C:\Windows\System32\cryptsvc.dll => File is digitally signed
C:\Program Files\Windows Defender\MpSvc.dll => File is digitally signed
C:\Windows\System32\ipnathlp.dll => File is digitally signed
C:\Windows\System32\iphlpsvc.dll => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed


**** End of log ****

FRST PARTE1:

Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 26-01-2020
Ejecutado por DHAMPIRD (administrador) sobre FOXHOUNDI7 (Gigabyte Technology Co., Ltd. To be filled by O.E.M.) (26-01-2020 18:35:57)
Ejecutado desde C:\Users\DHAMPIRD\Desktop
Perfiles cargados: DHAMPIRD (Perfiles disponibles: DHAMPIRD)
Platform: Windows 10 Pro Versión 1909 18363.592 (X64) Idioma: Español (España, internacional)
Navegador predeterminado: FF
Modo de Inicio: Normal
Tutorial para Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Procesos (Lista blanca) =================

(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)

() [Archivo no firmado] C:\altera\13.0\quartus\bin64\jtagserver.exe
() [Archivo no firmado] C:\Program Files (x86)\ccxgui\ccxStream.exe
() [Archivo no firmado] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
() [Archivo no firmado] C:\Program Files\Elgato\SoundCapture\SoundCapture.exe
([XC]D-Ice) [Archivo no firmado] C:\Program Files (x86)\ccxgui\ccXservice.exe
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Aleksey Cherkasskiy -> ) [Archivo no firmado] C:\Program Files (x86)\HDD Health\HDDHealthService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
(Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe
(Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc. -> Apple, Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\secd.exe
(Arvato Digital Services Canada Inc -> arvato digital services llc) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(Autodesk, Inc -> Autodesk Inc.) C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe
(Autodesk, Inc -> Autodesk Inc.) C:\Windows\Temp\AdAppMgrUpdater.exe
(Corsair Memory, Inc. -> Corsair Memory, Inc) C:\Program Files\Elgato\StreamDeck\StreamDeck.exe
(Corsair Memory, Inc. -> Elgato Systems) C:\Program Files\Elgato\ControlCenter\ControlCenter.exe
(Disc Soft Ltd -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Pro\DiscSoftBusServicePro.exe
(Disc Soft Ltd -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\89.4.278\QtWebEngineProcess.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\89.4.278\QtWebEngineProcess.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\89.4.278\QtWebEngineProcess.exe
(FSL - Freesoftland) [Archivo no firmado] C:\Program Files (x86)\FSL\IconRestorer\IconRestorer.exe
(Google Inc.) [Archivo no firmado] C:\Program Files (x86)\Google\Gmail Notifier\gnotify.exe
(Google LLC -> ) C:\Program Files\Google\Drive\googledrivesync.exe
(Google LLC -> ) C:\Program Files\Google\Drive\googledrivesync.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.422\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.422\GoogleCrashHandler64.exe
(GuinpinSoft inc) [Archivo no firmado] C:\Program Files\Common Files\cdarbsvc\cdarbsvc_v1.0.0_x64.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation - Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel(R) Intel Network Drivers -> Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Logitech Inc -> ) C:\Program Files\Logitech\Collaboration\Services\Video\RightSightAPI\crashpad_handler.exe
(Logitech Inc -> Logitech Europe S.A.) C:\Program Files\Logitech\Collaboration\Services\Video\RightSightAPI\RightSightService.exe
(Logitech Inc -> Logitech) C:\Program Files\Logitech\Collaboration\Services\Video\ServiceLayer.exe
(Logitech Inc -> Logitech) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOverlay.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech\LogiOptions\LogiOptions.exe
(Logitech Inc -> Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.exe
(Logitech Inc -> Logitech,Inc.) C:\Program Files (x86)\Common Files\LogiShrd\LogiFEPluginforLync2010\4.0\LogiFEC.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\Office15\MSOSYNC.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Users\DHAMPIRD\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\dfsvc.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.590_none_5efc551459114cb9\TiWorker.exe
(Mixbyte Inc -> Ellora Assets Corp.) C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Nero AG -> Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Nullsoft, Inc.) [Archivo no firmado] C:\Program Files (x86)\Winamp\winampa.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Plex, Inc -> ) C:\Program Files (x86)\Plex\Plex Media Server\Plex Tuner Service.exe
(Plex, Inc -> Plex, Inc.) C:\Program Files (x86)\Plex\Plex Media Server\Plex DLNA Server.exe
(Plex, Inc -> Plex, Inc.) C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe
(Plex, Inc -> Plex, Inc.) C:\Program Files (x86)\Plex\Plex Media Server\Plex Update Service.exe
(Plex, Inc -> Python Software Foundation) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe
(Plex, Inc -> Python Software Foundation) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Sony Mobile Communications AB -> Sony) [Archivo no firmado] C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe
(Tim Kosse -> FileZilla Project) C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe
(Wacom Technology Corp. -> Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe
(Wacom Technology Corporation -> Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe
(Wacom Technology Corporation -> Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe
(Wacom Technology Corporation -> Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe
(Wacom Technology Corporation -> Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe
(WESTERN DIGITAL TECHNOLOGIES -> Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
(WESTERN DIGITAL TECHNOLOGIES -> Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe

==================== Registro (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8497368 2015-07-07] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-07-27] (Intel Corporation - Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [Elgato Sound Capture] => C:\Program Files\Elgato\SoundCapture\SoundCapture.exe [1234944 2019-02-12] () [Archivo no firmado]
HKLM\...\Run: [Control Center] => C:\Program Files\Elgato\ControlCenter\ControlCenter.exe [835944 2019-02-08] (Corsair Memory, Inc. -> Elgato Systems)
HKLM\...\Run: [Stream Deck] => C:\Program Files\Elgato\StreamDeck\StreamDeck.exe [8130920 2019-04-17] (Corsair Memory, Inc. -> Corsair Memory, Inc)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [302904 2019-10-25] (Apple Inc. -> Apple Inc.)
HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [2109064 2019-11-27] (Logitech Inc -> Logitech, Inc.)
HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe [1178400 2015-08-07] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [6261760 2020-01-23] (Dropbox, Inc -> Dropbox, Inc.)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [Archivo no firmado]
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [1871344 2018-02-02] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
HKLM-x32\...\Run: [WD Drive Unlocker] => C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe [1694080 2013-06-18] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.)
HKLM-x32\...\Run: [WD Quick View] => C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe [5571944 2016-04-19] (WESTERN DIGITAL TECHNOLOGIES -> Western Digital Technologies, Inc.)
HKLM-x32\...\Run: [Autodesk Desktop App] => C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AutodeskDesktopApp.exe [721856 2016-07-01] (Autodesk, Inc -> Autodesk, Inc.)
HKLM-x32\...\Run: [WinampAgent] => C:\Program Files (x86)\Winamp\winampa.exe [74752 2012-06-28] (Nullsoft, Inc.) [Archivo no firmado]
HKLM-x32\...\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] => C:\Program Files (x86)\Google\Gmail Notifier\gnotify.exe [479232 2005-07-15] (Google Inc.) [Archivo no firmado]
HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [167936 2008-07-07] (PowerISO Computing, Inc.) [Archivo no firmado]
HKLM-x32\...\Run: [CloneCDTray] => C:\Program Files (x86)\SlySoft\CloneCD\CloneCDTray.exe [57344 2009-01-29] (SlySoft, Inc.) [Archivo no firmado]
HKLM-x32\...\Run: [Nikon Message Center 2] => C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe [619008 2010-05-25] (Nikon Corporation) [Archivo no firmado]
HKLM-x32\...\Run: [MMTray] => C:\Program Files (x86)\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe [114688 2003-10-01] (MUSICMATCH, Inc.) [Archivo no firmado]
HKLM-x32\...\Run: [FileZilla Server Interface] => C:\Program Files (x86)\FileZilla Server\FileZilla Server Interface.exe [2770088 2017-02-08] (Tim Kosse -> FileZilla Project)
HKLM-x32\...\Run: [iSkysoft Helper Compact.exe] => C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe [2138272 2016-10-08] (Shenzhen Yi Xing Investment Co., Ltd. -> iSkySoft)
HKLM-x32\...\Run: [LogiFEPluginforLync2010] => C:\Program Files (x86)\Common Files\LogiShrd\LogiFEPluginforLync2010\4.0\LogiFEC.exe [296216 2018-02-12] (Logitech Inc -> Logitech,Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [646160 2019-12-11] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [1421736 2017-03-28] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries)
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3284944 2019-11-14] (Valve -> Valve Corporation)
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2019-10-25] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\Run: [XperiaCompanionAgent] => C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe [2097024 2017-03-21] (Sony Mobile Communications AB -> Sony) [Archivo no firmado]
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [110392 2019-10-25] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [67896 2019-10-25] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\Run: [iCloudPhotos] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe [356664 2019-10-25] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\Run: [Discord] => C:\Users\DHAMPIRD\AppData\Local\Discord\app-0.0.305\Discord.exe [81780056 2019-03-07] (Discord Inc. -> Discord Inc.)
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\Run: [DisplayFusion] => C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [9013136 2018-06-27] (Binary Fortress Software Ltd. -> Binary Fortress Software)
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\Run: [Plex Media Server] => C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe [24120296 2019-10-08] (Plex, Inc -> Plex, Inc.)
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [47552040 2019-12-22] (Google LLC -> )
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\Run: [DAEMON Tools Pro Agent] => C:\Program Files\DAEMON Tools Pro\DTAgent.exe [4506304 2017-05-17] (Disc Soft Ltd -> Disc Soft Ltd)
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-10-14] (Piriform Software Ltd -> Piriform Ltd)
HKU\S-1-5-18\...\Run: [Plex Media Server] => C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe [24120296 2019-10-08] (Plex, Inc -> Plex, Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\79.0.3945.130\Installer\chrmstp.exe [2020-01-16] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GIGABYTE OC_GURU.lnk [2016-07-12]
ShortcutTarget: GIGABYTE OC_GURU.lnk -> C:\Program Files (x86)\GIGABYTE\GIGABYTE OC_GURU II\OC_GURU.exe (GIGABYTE Technology Co.,Ltd.) [Archivo no firmado]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HDDHealth.lnk [2019-08-10]
ShortcutTarget: HDDHealth.lnk -> C:\Program Files (x86)\HDD Health\hddhealth.exe (Aleksey Cherkasskiy -> PANTERASoft) [Archivo no firmado]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Logitech Desktop Messenger.lnk [2016-08-14]
ShortcutTarget: Logitech Desktop Messenger.lnk -> C:\Program Files (x86)\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe (Logitech) [Archivo no firmado]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\myiHome Server.lnk [2019-02-22]
ShortcutTarget: myiHome Server.lnk -> C:\Program Files (x86)\myiHome\app\myiHome-server.exe () [Archivo no firmado]
Startup: C:\Users\DHAMPIRD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\IconRestorer.lnk [2018-08-30]
ShortcutTarget: IconRestorer.lnk -> C:\Program Files (x86)\FSL\IconRestorer\IconRestorer.exe (FSL - Freesoftland) [Archivo no firmado]
Startup: C:\Users\DHAMPIRD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2018-02-06]
ShortcutTarget: MEGAsync.lnk -> C:\Users\DHAMPIRD\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited -> Mega Limited)

==================== Tareas programadas (Lista blanca) ============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

Task: {0EFD3FCB-C309-47A0-BFC4-4DA10C51CF71} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload => {EBF00FCB-0769-4B81-9BEC-6C05514111AA}
Task: {11FA98AF-E466-4B43-BCFC-00CB85E594AB} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {154DB33C-D05B-478C-A85A-D588ED62AFAB} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems)
Task: {155C0CAD-D188-48F0-A155-7544DE8A546E} - System32\Tasks\{672B90E3-A8A3-40CC-90A1-24CCB547A947} => C:\Windows\system32\pcalua.exe -a "D:\PC SOFT\SOFTWARE\TOOL.VISUAL BASIC\Visual Basic Runtimes\Visual Basic runtimes.exe" -d "D:\PC SOFT\SOFTWARE\TOOL.VISUAL BASIC\Visual Basic Runtimes"
Task: {1D06A6D2-0110-41E5-A1E2-769442D2078D} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_321_Plugin.exe [1458232 2020-01-21] (Adobe Inc. -> Adobe)
Task: {2A8C4A0A-4380-423D-AA48-74A922EE57DC} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {2D7B3A7E-AC61-4C13-8567-65DFF489972B} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {307EAC23-0F1A-43B3-B15E-59D4B8FBB068} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-14] (Piriform Software Ltd -> Piriform Ltd)
Task: {31625531-F27E-48E1-827D-3517C282F752} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-14] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {31E90574-84A9-47D4-8CB1-C48004F6E0D6} - System32\Tasks\{CD065C4C-4BE5-40D0-8A89-499708668B6A} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Ps2\hdl_dumb-0.8.3\hdl_dumb.exe" -d "C:\Program Files (x86)\Ps2\hdl_dumb-0.8.3"
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe
Task: {380C03C0-B724-43A3-B5BF-B8FE96607634} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {4AC3A237-4DDC-455F-A563-7F74271057DB} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-07-28] (Dropbox, Inc -> Dropbox, Inc.)
Task: {5170E9E4-952D-45A0-A65E-292D4A266AAD} - System32\Tasks\Microsoft\VisualStudio\VSIX Auto Update 15.6.152 => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\VSIXAutoUpdate.exe [197056 2018-03-20] (Microsoft Corporation -> )
Task: {51729D3C-90A4-410B-BB70-484D33232F29} - System32\Tasks\Microsoft Office 15 Sync Maintenance for FOXHOUNDi7-DHAMPIRD FOXHOUNDi7 => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [470720 2014-11-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {537E51EF-2428-4E9E-A6B8-3879FDB058EB} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {58F0E95E-3362-47E6-9C0B-63A24DC86600} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2016-07-12] (Google Inc -> Google Inc.)
Task: {5A3FB241-0B11-4EA5-BC66-0D9F1B406040} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\BthSQM => {C8367320-6F85-11E0-A1F0-0800200C9A66} C:\WINDOWS\System32\BthTelemetry.dll [32256 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Task: {697AB824-3A7F-423C-857A-E6FEABAB3628} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1722880 2019-06-25] () [Archivo no firmado]
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}
Task: {741FE548-6201-4214-B612-8F6B31BB8FB7} - System32\Tasks\{3D22ECEA-BF69-4F06-ACAE-BC5C0FE5B693} => C:\Users\DHAMPIRD\AppData\Local\Temp\mwbF4E3.tmp\mb-support.exe
Task: {7596F2DC-3AA6-4974-ADA6-0867D9A94A65} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7AF1CBE3-5BCB-4435-98A5-CB630A56099C} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-01-21] (Adobe Inc. -> Adobe)
Task: {7C810065-0373-4D8D-92FF-F2C0E0ED5A3F} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-3597564769-968549059-3920177797-1005 => C:\Users\DHAMPIRD\AppData\Local\MEGAsync\MEGAupdater.exe [615160 2019-06-28] (Mega Limited -> Mega Limited)
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task => {1B1F472E-3221-4826-97DB-2C2324D389AE}
Task: {8EE3756D-C642-4D0C-AF80-57008E3FA9D7} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {9EF4F4A6-1261-442B-A5A3-F4EA5A2B20D3} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {A4BC941D-73E6-4E1F-963F-E75DB256EBB8} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-07-28] (Dropbox, Inc -> Dropbox, Inc.)
Task: {AC364387-4F5D-49C2-9A29-FF0E0F292200} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.)
Task: {B1B2FA4B-3EC4-4D1A-B42F-7C3E81580980} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B26DD0F3-25B1-4B95-941A-D952845F2FD4} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [653848 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {BD293954-FDEA-4DE7-8091-2CC38B2F1869} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C34A8F91-AD9A-4F3A-B286-1DDB9FED031D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {C9DEA6FB-DB92-435F-B4EC-B0A5DAA9ED1E} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {CA7B314B-D9D2-4D95-A0A9-F0B5650CF259} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3302880 2019-12-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371}
Task: {F1D96832-118B-46DB-ADC7-768A8357020F} - System32\Tasks\AdobeAAMUpdater-1.0-FOXHOUNDi7-DHAMPIRD => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {F6F6D1CE-F46E-47A1-A447-F5C2DD312115} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F9B5F139-6F34-4634-B9C4-6607803B3930} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [39848 2017-03-28] (Garmin International, Inc. -> )
Task: {FCF90515-72C1-4B79-9137-A42EA3DAB559} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2016-07-12] (Google Inc -> Google Inc.)
Task: {FD9002B0-2C22-48E0-8C63-D2E96B6B99E9} - System32\Tasks\Apple Diagnostics => C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe [67896 2019-10-25] (Apple Inc. -> Apple Inc.)

(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe

==================== Internet (Lista blanca) ====================

(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)

Hosts: Hay más de una entrada en Hosts. Consulte la sección Hosts de Addition.txt
Tcpip\Parameters: [DhcpNameServer] 213.60.205.175
Tcpip\..\Interfaces\{79d115bc-ecf5-42c2-b808-5545f548ba5c}: [DhcpNameServer] 213.60.205.175

Internet Explorer:
==================
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.es/
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2014-11-12] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_241\bin\ssv.dll [2020-01-21] (Oracle America, Inc. -> Oracle Corporation)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2016-06-30] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2014-11-12] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_241\bin\jp2ssv.dll [2020-01-21] (Oracle America, Inc. -> Oracle Corporation)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2016-06-30] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-10-22] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_241\bin\ssv.dll [2020-01-21] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2016-06-30] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2014-11-12] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_241\bin\jp2ssv.dll [2020-01-21] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2016-06-30] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2016-06-30] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2016-06-30] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKU\S-1-5-21-3597564769-968549059-3920177797-1005 -> Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2016-06-30] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2014-10-15] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF DefaultProfile: c5y9yd2v.default-1496602388133
FF ProfilePath: C:\Users\DHAMPIRD\AppData\Roaming\Mozilla\Firefox\Profiles\c5y9yd2v.default-1496602388133 [2020-01-26]
FF DownloadDir: F:\WEBDOWN
FF Homepage: Mozilla\Firefox\Profiles\c5y9yd2v.default-1496602388133 -> hxxps://www.google.es
FF Notifications: Mozilla\Firefox\Profiles\c5y9yd2v.default-1496602388133 -> hxxps://www.aussiearcade.com; hxxps://web.wallapop.com; hxxps://darkumbra.net; hxxps://newsupdatesky.info; hxxps://emumovies.com; hxxps://hyperspin-fe.com; hxxps://entierradegamers.com; hxxps://www.softzone.es; hxxps://mail.google.com; hxxps://oraronerethet.info; hxxps://andalbrighth.pro; hxxps://uploadbuzz.org; hxxps://errorkit.com; hxxps://clk.ink; hxxps://www.subdivx.com; hxxps://www.avpasion.com; hxxp://localhost:8096; hxxps://oko.sh; hxxps://descargarsubs.xyz; hxxps://0.nextyourcontent.com; hxxps://1.nextyourcontent.com; hxxps://notification-list.com; hxxps://www.adslzone.net; hxxps://forospyware.com; hxxps://gplinks.in; hxxps://descargaonline.xyz; hxxps://estoyhechouncocinillas.com; hxxps://www.radikal-gamez.net
FF Extension: (signTextJS plus) - C:\Users\DHAMPIRD\AppData\Roaming\Mozilla\Firefox\Profiles\c5y9yd2v.default-1496602388133\Extensions\[email protected] [2019-02-13]
FF Extension: (Hola VPN Proxy) - C:\Users\DHAMPIRD\AppData\Roaming\Mozilla\Firefox\Profiles\c5y9yd2v.default-1496602388133\Extensions\{b2c23af9-126b-4273-952f-6b1809356086}.xpi [2018-06-09]
FF Extension: (Adblock Plus - bloqueador de anuncios gratis) - C:\Users\DHAMPIRD\AppData\Roaming\Mozilla\Firefox\Profiles\c5y9yd2v.default-1496602388133\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2019-10-23]
FF Extension: (Greasemonkey) - C:\Users\DHAMPIRD\AppData\Roaming\Mozilla\Firefox\Profiles\c5y9yd2v.default-1496602388133\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2019-06-13]
FF Extension: (MTS  play  youtube inside facebook) - C:\Users\DHAMPIRD\AppData\Roaming\Mozilla\Firefox\Profiles\c5y9yd2v.default-1496602388133\Extensions\{fb6ba290-4286-46bb-a8a4-225d1e4fe6ce}.xpi [2018-10-20]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2018-02-02]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_321.dll [2020-01-21] (Adobe Inc. -> )
FF Plugin: @java.com/DTPlugin,version=11.241.2 -> C:\Program Files\Java\jre1.8.0_241\bin\dtplugin\npDeployJava1.dll [2020-01-21] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.241.2 -> C:\Program Files\Java\jre1.8.0_241\bin\plugin2\npjp2.dll [2020-01-21] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-07-29] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_321.dll [2020-01-21] (Adobe Inc. -> )
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.241.2 -> C:\Program Files (x86)\Java\jre1.8.0_241\bin\dtplugin\npDeployJava1.dll [2020-01-21] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.241.2 -> C:\Program Files (x86)\Java\jre1.8.0_241\bin\plugin2\npjp2.dll [2020-01-21] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2014-10-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-13] (Google LLC -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-13] (Google LLC -> Google LLC)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Ningún archivo]
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Ningún archivo]
FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Ningún archivo]
FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Ningún archivo]
FF Plugin-x32: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Ningún archivo]
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2018-02-02] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-12-02] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-07-29] (Adobe Systems Incorporated -> Adobe Systems)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2020-01-26]

Chrome: 
=======
CHR Profile: C:\Users\DHAMPIRD\AppData\Local\Google\Chrome\User Data\Default [2020-01-26]
CHR Notifications: Default -> hxxps://mail.google.com; hxxps://web.wallapop.com
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Extension: (Presentaciones) - C:\Users\DHAMPIRD\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-02-01]
CHR Extension: (Documentos) - C:\Users\DHAMPIRD\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-02-01]
CHR Extension: (Google Drive) - C:\Users\DHAMPIRD\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-07-12]
CHR Extension: (YouTube) - C:\Users\DHAMPIRD\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-07-12]
CHR Extension: (Adblock Plus - bloqueador de anuncios gratis) - C:\Users\DHAMPIRD\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-12-09]
CHR Extension: (Búsqueda de Google) - C:\Users\DHAMPIRD\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-07-12]
CHR Extension: (Adobe Acrobat) - C:\Users\DHAMPIRD\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2019-10-15]
CHR Extension: (Hojas de cálculo) - C:\Users\DHAMPIRD\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-02-01]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\DHAMPIRD\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-11-08]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\DHAMPIRD\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2019-05-27]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\DHAMPIRD\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-15]
CHR Extension: (Gmail) - C:\Users\DHAMPIRD\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-27]
CHR Extension: (Chrome Media Router) - C:\Users\DHAMPIRD\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-12-09]
CHR Profile: C:\Users\DHAMPIRD\AppData\Local\Google\Chrome\User Data\System Profile [2019-12-26]
CHR HKU\S-1-5-21-3597564769-968549059-3920177797-1005\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]

==================== Servicios (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R2 AdAppMgrSvc; C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe [1295376 2016-07-01] (Autodesk, Inc -> Autodesk Inc.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3147344 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2914896 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2019-10-07] (Apple Inc. -> Apple Inc.)
R2 ccXgui; C:\Program Files (x86)\ccxgui\ccXservice.exe [173568 2004-04-23] ([XC]D-Ice) [Archivo no firmado]
R2 CdRomArbiterService; C:\Program Files\Common Files\cdarbsvc\cdarbsvc_v1.0.0_x64.exe [8704 2019-06-14] (GuinpinSoft inc) [Archivo no firmado]
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-07-28] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-07-28] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [44552 2020-01-23] (Dropbox, Inc -> Dropbox, Inc.)
R3 Disc Soft Pro Bus Service; C:\Program Files\DAEMON Tools Pro\DiscSoftBusServicePro.exe [1841344 2017-05-17] (Disc Soft Ltd -> Disc Soft Ltd)
S2 DisplayFusionService; C:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe [5598624 2018-06-27] (Binary Fortress Software Ltd. -> Binary Fortress Software)
R2 FileZilla Server; C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe [859304 2017-02-08] (Tim Kosse -> FileZilla Project)
S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [81280 2019-06-13] (Mixbyte Inc -> Freemake)
R2 FreemakeVideoCapture; C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [17792 2019-06-13] (Mixbyte Inc -> Ellora Assets Corp.)
S2 Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [1099280 2017-03-28] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries)
R2 HDDHealth; C:\Program Files (x86)\HDD Health\HDDHealthService.exe [17760 2013-03-08] (Aleksey Cherkasskiy -> ) [Archivo no firmado]
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-03] (Macrovision Corporation) [Archivo no firmado]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel® Trusted Connect Service -> Intel(R) Corporation)
S3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Archivo no firmado]
R2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Archivo no firmado]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [207648 2015-08-07] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R2 JTAGServer; C:\altera\13.0\quartus\bin64\jtagserver.exe [268800 2013-04-25] () [Archivo no firmado]
S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6960640 2019-12-05] (Malwarebytes Inc -> Malwarebytes)
S3 mi-raysat_3dsmax2015_64; C:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64server.exe [86016 2011-09-15] () [Archivo no firmado]
R2 nebula; C:\Program Files\Logitech\Collaboration\Services\Video\ServiceLayer.exe [4489352 2019-06-12] (Logitech Inc -> Logitech)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2213696 2018-09-10] (Electronic Arts, Inc. -> Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3084104 2018-09-10] (Electronic Arts, Inc. -> Electronic Arts)
R2 PlexUpdateService; C:\Program Files (x86)\Plex\Plex Media Server\Plex Update Service.exe [2137064 2019-10-08] (Plex, Inc -> Plex, Inc.)
R2 PSI_SVC_2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2014-04-30] (Arvato Digital Services Canada Inc -> arvato digital services llc)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5796168 2019-09-09] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [Archivo no firmado]
R2 WDBackup; C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [1049464 2016-04-19] (WESTERN DIGITAL TECHNOLOGIES -> Western Digital Technologies, Inc.)
R2 WDDriveService; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [314744 2016-04-19] (WESTERN DIGITAL TECHNOLOGIES -> Western Digital Technologies, Inc.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\NisSrv.exe [3201616 2019-10-29] (Microsoft Windows Publisher -> Microsoft Corporation)
S4 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MsMpEng.exe [103168 2019-10-29] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.237\WsAppService.exe [495720 2018-07-04] (Wondershare Technology Co.,Ltd -> Wondershare)
S2 WsDrvInst; C:\Program Files (x86)\Wondershare\drfone\Library\DriverInstaller\DriverInstall.exe [120016 2018-07-04] (Wondershare Technology Co.,Ltd -> Wondershare)
R2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [2169800 2018-06-19] (Wacom Technology Corporation -> Wacom Technology, Corp.)
R2 XperiaCompanionService; C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe [2205568 2017-03-21] (Sony Mobile Communications AB -> Sony) [Archivo no firmado]
S3 ekrnEpfw; "C:\Program Files\ESET\ESET Security\ekrn.exe" [X]
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 

===================== Controladores (Lista blanca) ===================

FRST PARTE2:

===================== Controladores (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20640 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
R1 cbfsdisk2017; C:\Windows\system32\drivers\cbfsdisk2017.sys [243976 2018-03-23] (Callback Technologies, Inc. -> Callback Technologies, Inc.)
R3 dtproscsibus; C:\WINDOWS\System32\drivers\dtproscsibus.sys [30264 2019-03-27] (Disc Soft Ltd -> Disc Soft Ltd)
R3 e60MZ0380.X64; C:\WINDOWS\System32\drivers\e60MZ0380.X64.SYS [3981608 2018-10-17] (Elgato Systems LLC -> )
R3 ElbyCDFL; C:\WINDOWS\System32\Drivers\ElbyCDFL.sys [40648 2007-02-16] (SlySoft Inc. -> SlySoft, Inc.)
R3 ElbyCDFL; C:\Windows\SysWOW64\Drivers\ElbyCDFL.sys [40648 2007-02-16] (SlySoft Inc. -> SlySoft, Inc.)
R3 ElgatoVAD; C:\WINDOWS\System32\drivers\ElgatoVAD.sys [39208 2018-07-20] (Elgato Systems LLC -> Elgato Systems GmbH)
S3 ESETCleanersDriver; C:\WINDOWS\system32\Drivers\ESETCleanersDriver.sys [181160 2019-04-11] (ESET, spol. s r.o. -> ESET)
S3 gameflt; C:\WINDOWS\System32\DriverStore\FileRepository\gameflt.inf_amd64_e3f21201adb86c74\gameflt.sys [70704 2019-10-09] (Microsoft Windows -> Microsoft Corporation)
R3 GeneStor; C:\WINDOWS\system32\DRIVERS\GeneStor.sys [130648 2016-08-22] (GENESYS LOGIC, INC. -> GenesysLogic)
S3 GPCIDrv; C:\Program Files (x86)\GIGABYTE\GIGABYTE OC_GURU II\GPCIDrv64.sys [14376 2014-08-28] (Giga-Byte Technology -> )
S3 libusbK; C:\WINDOWS\System32\drivers\libusbK.sys [47928 2018-05-04] (Travis Lee Robinson -> hxxp://libusb-win32.sourceforge.net)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-12-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R2 npf; C:\WINDOWS\System32\drivers\npf.sys [35344 2011-02-11] (CACE Technologies, Inc. -> CACE Technologies, Inc.)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_ce13a81bcfac4a48\nvlddmkm.sys [23251968 2019-12-28] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-12-07] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-03-19] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-08-25] (NVIDIA Corporation -> NVIDIA Corporation)
R1 SCDEmu; C:\Windows\System32\Drivers\SCDEmu.sys [85424 2008-07-07] (Fenghua Lee -> PowerISO Computing, Inc.)
R3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [39168 2013-05-05] (Bruce James -> Scarlet.Crush Productions)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2015-06-17] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
R3 vpnpbus; C:\WINDOWS\System32\drivers\vpnpbus.sys [19208 2018-03-23] (Callback Technologies, Inc. -> Callback Technologies, Inc.)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46472 2019-10-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [351968 2019-10-29] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [53984 2019-10-29] (Microsoft Windows -> Microsoft Corporation)
R3 XtuAcpiDriver; C:\WINDOWS\System32\drivers\XtuAcpiDriver.sys [62856 2017-10-24] (Intel Corporation -> Intel Corporation)
S3 Xvdd; C:\WINDOWS\System32\DriverStore\FileRepository\xvdd.inf_amd64_4beca0218f643d77\xvdd.sys [478256 2019-10-09] (Microsoft Windows -> Microsoft Corporation)
S3 PSKMAD; System32\DRIVERS\PSKMAD.sys [X]

==================== NetSvcs (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)


==================== Un mes (creado) ===================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-01-26 18:35 - 2020-01-26 18:38 - 000054698 _____ C:\Users\DHAMPIRD\Desktop\FRST.txt
2020-01-26 18:35 - 2020-01-26 18:35 - 000000000 ____D C:\Users\DHAMPIRD\Desktop\FRST-OlderVersion
2020-01-26 18:34 - 2020-01-26 18:34 - 000003282 _____ C:\Users\DHAMPIRD\Desktop\FSS.txt
2020-01-26 18:23 - 2020-01-26 18:23 - 000000000 ___HD C:\OneDriveTemp
2020-01-25 20:55 - 2020-01-25 20:55 - 000000000 _____ C:\Users\DHAMPIRD\Desktop\Nuevo documento de texto.txt
2020-01-25 04:12 - 2020-01-25 04:12 - 000000000 _____ C:\Users\DHAMPIRD\Desktop\xbox game bar.txt
2020-01-24 21:58 - 2020-01-24 21:58 - 1372404866 _____ C:\WINDOWS\MEMORY.DMP
2020-01-24 21:58 - 2020-01-24 21:58 - 000000000 _____ C:\WINDOWS\Minidump\012420-40281-01.dmp
2020-01-24 00:12 - 2020-01-24 00:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2020-01-23 00:24 - 2020-01-23 00:24 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys
2020-01-23 00:24 - 2020-01-23 00:24 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys
2020-01-23 00:24 - 2020-01-23 00:24 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys
2020-01-23 00:24 - 2020-01-23 00:24 - 000044552 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe
2020-01-22 21:47 - 2020-01-22 21:52 - 000000026 _____ C:\Users\DHAMPIRD\Desktop\PSIO.txt
2020-01-21 21:03 - 2020-01-21 21:02 - 000129088 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-64.dll
2020-01-21 20:16 - 2020-01-26 18:35 - 002581504 _____ (Farbar) C:\Users\DHAMPIRD\Desktop\FRST64.exe
2020-01-21 20:16 - 2020-01-21 20:16 - 000925696 _____ (Farbar) C:\Users\DHAMPIRD\Desktop\FSS.exe
2020-01-21 19:39 - 2020-01-21 19:39 - 000000000 ____D C:\Program Files\Common Files\Corel
2020-01-21 19:37 - 2020-01-21 19:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CorelDRAW Graphics Suite 2019 (64-bit)
2020-01-21 19:31 - 2020-01-21 19:31 - 000000000 ____D C:\ProgramData\UniqueId
2020-01-20 19:52 - 2020-01-20 19:52 - 000000000 _____ C:\Users\DHAMPIRD\Desktop\halloween video.txt
2020-01-19 20:11 - 2020-01-19 20:11 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Local\Halloween
2020-01-17 00:01 - 2020-01-17 00:01 - 000000000 _____ C:\Users\DHAMPIRD\Desktop\eliminar archivos  de psx del disco y comparar con lo que hay en la sd y hacer backup de la sd al disco.txt
2020-01-16 18:13 - 2020-01-16 18:13 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2020-01-15 11:55 - 2020-01-15 11:55 - 000000000 _____ C:\Users\DHAMPIRD\Desktop\twiter eliminar cuentas.txt
2020-01-15 02:17 - 2020-01-15 02:17 - 025900032 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 022627840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 018020352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 009928208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-01-15 02:17 - 2020-01-15 02:17 - 008012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 007754752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 007600448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 007016448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 006520480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 005913600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 003729408 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-01-15 02:17 - 2020-01-15 02:17 - 003703296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 002870784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 002801152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-01-15 02:17 - 2020-01-15 02:17 - 002716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-01-15 02:17 - 2020-01-15 02:17 - 002561536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 002494464 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 002473976 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 001985928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 001697280 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 001664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 001655880 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 001399096 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-01-15 02:17 - 2020-01-15 02:17 - 001330952 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 001151816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 001106944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 001098720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-01-15 02:17 - 2020-01-15 02:17 - 001051664 _____ (Microsoft Corporation) C:\WINDOWS\system32\pidgenx.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 001020032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000921600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000852480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000851456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2020-01-15 02:17 - 2020-01-15 02:17 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000689664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000678712 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000670720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2020-01-15 02:17 - 2020-01-15 02:17 - 000646144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000571392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiaaut.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-01-15 02:17 - 2020-01-15 02:17 - 000542496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000432256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2020-01-15 02:17 - 2020-01-15 02:17 - 000400696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2020-01-15 02:17 - 2020-01-15 02:17 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000363840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2020-01-15 02:17 - 2020-01-15 02:17 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-01-15 02:17 - 2020-01-15 02:17 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV1.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2020-01-15 02:17 - 2020-01-15 02:17 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\tssrvlic.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2020-01-15 02:17 - 2020-01-15 02:17 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti_ci.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000162696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2020-01-15 02:17 - 2020-01-15 02:17 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiadss.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tsusbhub.sys
2020-01-15 02:17 - 2020-01-15 02:17 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000127520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiadss.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000089536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterpriseresourcemanager.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2020-01-15 02:17 - 2020-01-15 02:17 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clfsw32.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enterpriseresourcemanager.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\LSCSHostPolicy.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\lstelemetry.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiatrace.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiatrace.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2020-01-15 02:17 - 2020-01-15 02:17 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
2020-01-15 01:58 - 2020-01-15 01:59 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2020-01-15 01:58 - 2020-01-15 01:59 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2020-01-07 14:57 - 2019-12-28 04:55 - 011843296 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2020-01-07 14:57 - 2019-12-28 04:55 - 010169416 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2020-01-07 14:57 - 2019-12-28 04:55 - 001729448 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2020-01-07 14:57 - 2019-12-28 04:55 - 001729448 _____ C:\WINDOWS\system32\vulkaninfo.exe
2020-01-07 14:57 - 2019-12-28 04:55 - 001329568 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2020-01-07 14:57 - 2019-12-28 04:55 - 001329568 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2020-01-07 14:57 - 2019-12-28 04:55 - 001079200 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2020-01-07 14:57 - 2019-12-28 04:55 - 001079200 _____ C:\WINDOWS\system32\vulkan-1.dll
2020-01-07 14:57 - 2019-12-28 04:55 - 000937888 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2020-01-07 14:57 - 2019-12-28 04:55 - 000937888 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2020-01-07 14:57 - 2019-12-28 04:55 - 000354520 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2020-01-07 14:57 - 2019-12-28 04:54 - 002076080 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2020-01-07 14:57 - 2019-12-28 04:54 - 001485688 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2020-01-07 14:57 - 2019-12-28 04:54 - 001145280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2020-01-07 14:57 - 2019-12-28 04:54 - 000824064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
2020-01-07 14:57 - 2019-12-28 04:54 - 000685256 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2020-01-07 14:57 - 2019-12-28 04:54 - 000678264 _____ C:\WINDOWS\system32\nvofapi64.dll
2020-01-07 14:57 - 2019-12-28 04:54 - 000558080 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2020-01-07 14:57 - 2019-12-28 04:54 - 000544976 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2020-01-07 14:57 - 2019-12-28 04:53 - 040510200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2020-01-07 14:57 - 2019-12-28 04:53 - 035380240 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2020-01-07 14:57 - 2019-12-28 04:53 - 015029720 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2020-01-07 14:57 - 2019-12-28 04:53 - 005383184 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2020-01-07 14:57 - 2019-12-28 04:53 - 004718512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2020-01-07 14:57 - 2019-12-28 04:53 - 001727320 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6444187.dll
2020-01-07 14:57 - 2019-12-28 04:53 - 001570160 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2020-01-07 14:57 - 2019-12-28 04:53 - 001492480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6444187.dll
2020-01-07 14:57 - 2019-12-28 04:53 - 001371512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2020-01-07 14:57 - 2019-12-28 04:53 - 001064368 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2020-01-07 14:57 - 2019-12-28 04:53 - 000813984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2020-01-03 10:58 - 2020-01-03 10:59 - 000000041 _____ C:\Users\DHAMPIRD\Desktop\mirar filefactory  cuenta que no se actualice automaticamente.txt
2020-01-03 10:49 - 2020-01-03 10:49 - 000000000 _____ C:\Users\DHAMPIRD\Desktop\mirar cuenta banned uptobox.txt

==================== Un mes (modificado) ==================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-01-26 18:37 - 2019-12-21 18:06 - 000000000 ____D C:\FRST
2020-01-26 18:30 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-01-26 18:29 - 2016-07-12 01:38 - 000000000 ____D C:\ProgramData\NVIDIA
2020-01-26 18:28 - 2019-12-02 16:15 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Local\Deployment
2020-01-26 18:28 - 2016-08-14 20:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2020-01-26 18:27 - 2019-12-02 16:14 - 000000000 ____D C:\Program Files\Logitech
2020-01-26 18:25 - 2019-02-14 12:07 - 000000000 ___RD C:\Users\DHAMPIRD\Google Drive
2020-01-26 18:24 - 2019-09-09 06:34 - 000006020 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-01-26 18:24 - 2019-03-19 12:59 - 000866628 _____ C:\WINDOWS\system32\perfh00A.dat
2020-01-26 18:24 - 2019-03-19 12:59 - 000179536 _____ C:\WINDOWS\system32\perfc00A.dat
2020-01-26 18:23 - 2019-03-22 23:34 - 000000000 ___RD C:\Users\DHAMPIRD\OneDrive
2020-01-26 18:23 - 2017-12-30 03:35 - 000000000 ___RD C:\Users\DHAMPIRD\iCloudDrive
2020-01-26 18:22 - 2019-12-02 16:11 - 000000000 ____D C:\ProgramData\Logishrd
2020-01-26 18:22 - 2016-11-18 11:35 - 000000000 ____D C:\Users\DHAMPIRD\AppData\LocalLow\Mozilla
2020-01-26 18:20 - 2018-07-06 20:17 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Roaming\WTablet
2020-01-26 18:19 - 2019-07-25 04:56 - 000008192 _____ C:\WINDOWS\SysWOW64\WDPABKP.dat
2020-01-26 18:18 - 2019-09-09 06:58 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-01-26 18:17 - 2019-03-19 05:37 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2020-01-26 18:15 - 2016-07-14 21:33 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Local\CrashDumps
2020-01-26 18:14 - 2019-12-04 23:38 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2020-01-26 17:51 - 2019-09-09 06:20 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-01-26 16:31 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-01-26 16:26 - 2016-07-12 00:47 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Local\Packages
2020-01-26 02:00 - 2016-07-29 16:36 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Local\Adobe
2020-01-25 22:37 - 2019-09-09 06:58 - 000005196 _____ C:\WINDOWS\system32\Tasks\Microsoft Office 15 Sync Maintenance for FOXHOUNDi7-DHAMPIRD FOXHOUNDi7
2020-01-25 20:39 - 2019-02-14 12:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google
2020-01-25 20:06 - 2016-08-13 19:46 - 000000000 ____D C:\Program Files\CCleaner
2020-01-25 19:37 - 2019-10-03 20:19 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2020-01-25 19:37 - 2019-10-03 20:19 - 000000000 ___HD C:\ProgramData\Documents\AdobeGCData
2020-01-25 18:54 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\NDF
2020-01-25 17:22 - 2018-10-17 00:26 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Roaming\WhatsApp
2020-01-25 16:31 - 2016-07-29 15:29 - 000000000 ___RD C:\Users\DHAMPIRD\Desktop\SECURE &CLEAN
2020-01-25 04:14 - 2016-07-23 22:50 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Roaming\vlc
2020-01-24 22:30 - 2019-09-09 05:30 - 000000000 ____D C:\Users\DHAMPIRD
2020-01-24 22:29 - 2019-09-09 06:58 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2020-01-24 22:05 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF
2020-01-24 22:04 - 2016-07-12 13:09 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Roaming\uTorrent
2020-01-24 21:10 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2020-01-24 20:44 - 2016-07-23 23:15 - 000000000 ____D C:\Program Files (x86)\Java
2020-01-24 20:42 - 2016-07-31 01:58 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Local\JDownloader v2.0
2020-01-24 00:12 - 2016-07-28 20:15 - 000000000 ____D C:\Program Files (x86)\Dropbox
2020-01-22 17:46 - 2019-04-24 23:02 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Local\cache
2020-01-21 23:57 - 2019-12-05 02:53 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2020-01-21 22:50 - 2016-08-28 14:01 - 000000132 _____ C:\Users\DHAMPIRD\AppData\Roaming\Prefs. de formato PNG de Adobe CS6
2020-01-21 22:35 - 2016-07-29 15:29 - 000000000 ___RD C:\Users\DHAMPIRD\Desktop\PROGRAMAS
2020-01-21 21:22 - 2019-09-09 06:58 - 000004564 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player NPAPI Notifier
2020-01-21 21:22 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2020-01-21 21:22 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\Macromed
2020-01-21 21:03 - 2018-09-10 22:18 - 000000000 ____D C:\Program Files\Java
2020-01-21 21:03 - 2016-07-26 22:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2020-01-21 21:02 - 2018-09-10 22:19 - 000129088 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll
2020-01-21 21:01 - 2018-09-15 05:41 - 000114232 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2020-01-21 20:50 - 2019-09-09 06:20 - 005317224 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-01-21 20:49 - 2019-12-03 20:32 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-01-21 20:49 - 2016-07-12 02:09 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-01-21 19:50 - 2016-07-20 19:11 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Roaming\Corel
2020-01-21 19:44 - 2016-07-12 01:54 - 000000000 ____D C:\ProgramData\Package Cache
2020-01-21 19:43 - 2018-01-04 20:09 - 000000000 ____D C:\Program Files (x86)\Corel
2020-01-21 19:43 - 2016-07-28 20:13 - 000000000 ____D C:\Program Files\Corel
2020-01-21 19:38 - 2016-07-20 19:02 - 000000000 ____D C:\ProgramData\Corel
2020-01-21 19:21 - 2019-03-19 05:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2020-01-21 19:21 - 2016-07-12 02:09 - 000000954 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-01-21 19:11 - 2018-04-10 23:15 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Roaming\discord
2020-01-20 22:34 - 2018-09-22 02:31 - 000000132 _____ C:\Users\DHAMPIRD\AppData\Roaming\Prefs. de formato BMP de Adobe CS6
2020-01-20 21:06 - 2016-07-20 19:23 - 000000000 ____D C:\Users\DHAMPIRD\Documents\Corel
2020-01-19 20:11 - 2018-08-28 01:25 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Local\UnrealEngine
2020-01-18 23:41 - 2018-10-17 00:25 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Local\WhatsApp
2020-01-18 16:09 - 2017-12-30 03:35 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Local\576740E3-4131-4D3D-8020-B5287E25D945.aplzod
2020-01-18 08:44 - 2016-08-14 13:53 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Local\ElevatedDiagnostics
2020-01-16 22:33 - 2016-07-12 01:48 - 000002305 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-01-16 17:59 - 2017-07-22 13:57 - 000008313 _____ C:\Users\DHAMPIRD\Desktop\ONGOING.nfo
2020-01-15 22:17 - 2019-09-09 03:54 - 000000737 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Asistente para actualización a Windows 10.lnk
2020-01-15 20:17 - 2016-08-01 14:34 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Roaming\Apple Computer
2020-01-15 20:01 - 2019-03-19 05:52 - 000000000 ___SD C:\WINDOWS\system32\UNP
2020-01-15 20:01 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SystemResources
2020-01-15 20:01 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-01-15 20:01 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-01-15 08:05 - 2019-09-09 06:58 - 000003374 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3597564769-968549059-3920177797-1005
2020-01-15 08:05 - 2019-09-09 05:30 - 000002454 _____ C:\Users\DHAMPIRD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-01-15 02:31 - 2014-12-20 22:25 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-01-15 02:22 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-01-15 02:22 - 2014-12-20 22:25 - 120202352 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2020-01-14 14:45 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-01-12 18:42 - 2018-05-07 01:42 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Roaming\obs-studio
2020-01-12 10:38 - 2019-02-22 14:48 - 000000000 ____D C:\ProgramData\boost_interprocess
2020-01-07 19:56 - 2016-07-31 00:35 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Roaming\Winamp
2020-01-07 18:11 - 2016-07-29 16:10 - 000000000 ___RD C:\Users\DHAMPIRD\Desktop\TASKS CENTER
2020-01-07 14:53 - 2019-09-09 06:58 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-07 14:53 - 2019-09-09 06:58 - 000004106 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-07 14:53 - 2019-09-09 06:58 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-07 14:53 - 2019-09-09 06:58 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-07 14:53 - 2019-09-09 06:58 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-07 14:53 - 2019-09-09 06:58 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-07 14:53 - 2019-09-09 06:58 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-07 14:53 - 2019-09-09 06:58 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-07 14:53 - 2019-09-09 06:58 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-07 14:53 - 2019-09-09 06:58 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-01-07 14:53 - 2016-07-12 01:38 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2020-01-07 14:53 - 2016-07-12 01:38 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2020-01-07 14:53 - 2016-07-12 01:34 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2020-01-05 18:21 - 2019-11-02 22:40 - 000000000 ____D C:\Users\DHAMPIRD\AppData\Local\JDownloader 2.0
2020-01-03 12:49 - 2018-02-10 17:16 - 000000000 ___RD C:\Users\DHAMPIRD\Desktop\PS4
2020-01-03 12:47 - 2018-03-22 12:04 - 000000000 ____D C:\PS4
2020-01-02 16:43 - 2019-09-09 03:54 - 000000000 ____D C:\Windows10Upgrade
2019-12-28 04:55 - 2019-11-26 19:07 - 000450176 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2019-12-28 04:53 - 2019-11-26 19:07 - 017462152 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2019-12-28 04:53 - 2019-11-26 19:07 - 000659288 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2019-12-28 04:49 - 2019-11-13 18:56 - 004229024 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2019-12-28 04:49 - 2019-09-03 19:19 - 004963480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll

==================== Archivos en la raíz de algunos directorios ========

2017-06-17 00:42 - 2017-06-17 00:42 - 000000087 _____ () C:\Users\DHAMPIRD\AppData\Roaming\1de0de73-de3e-46c6-81b0-f6455f081644
2019-06-14 05:12 - 2019-06-14 05:12 - 000000171 _____ () C:\Users\DHAMPIRD\AppData\Roaming\822f02e4-9e9a-4077-a765-71edfca16ad0
2016-08-14 19:04 - 2016-08-14 19:04 - 000000268 ___RH () C:\Users\DHAMPIRD\AppData\Roaming\Action
2016-08-14 19:04 - 2016-08-14 19:04 - 000000268 ___RH () C:\Users\DHAMPIRD\AppData\Roaming\Action Clauses
2016-08-14 19:04 - 2016-08-14 19:04 - 000000268 ___RH () C:\Users\DHAMPIRD\AppData\Roaming\Alerts
2018-05-15 11:58 - 2018-05-15 11:59 - 000054610 _____ () C:\Users\DHAMPIRD\AppData\Roaming\DB.xml
2018-09-22 02:31 - 2020-01-20 22:34 - 000000132 _____ () C:\Users\DHAMPIRD\AppData\Roaming\Prefs. de formato BMP de Adobe CS6
2016-10-03 16:03 - 2016-10-03 16:03 - 000000132 _____ () C:\Users\DHAMPIRD\AppData\Roaming\Prefs. de formato GIF de Adobe CS6
2016-08-28 14:01 - 2020-01-21 22:50 - 000000132 _____ () C:\Users\DHAMPIRD\AppData\Roaming\Prefs. de formato PNG de Adobe CS6
2016-08-01 14:39 - 2018-08-30 00:20 - 000000600 _____ () C:\Users\DHAMPIRD\AppData\Roaming\winscp.rnd
2019-02-22 00:33 - 2019-12-13 02:00 - 000000081 _____ () C:\Users\DHAMPIRD\AppData\Local\FILM_AE_LogFile.txt
2018-09-28 18:22 - 2018-09-28 18:22 - 000000000 _____ () C:\Users\DHAMPIRD\AppData\Local\oobelibMkey.log
2019-12-20 00:26 - 2019-12-20 00:26 - 000000695 _____ () C:\Users\DHAMPIRD\AppData\Local\recently-used.xbel

==================== SigCheck ============================

(No existe una corrección automática para los archivos que no pasan la verificación.)

==================== Final de FRST.txt ========================

ADDITION PARTE1:

Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 26-01-2020
Ejecutado por DHAMPIRD (26-01-2020 18:38:39)
Ejecutado desde C:\Users\DHAMPIRD\Desktop
Windows 10 Pro Versión 1909 18363.592 (X64) (2019-09-09 06:00:37)
Modo de Inicio: Normal
==========================================================


==================== Cuentas: =============================

Administrador (S-1-5-21-3597564769-968549059-3920177797-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3597564769-968549059-3920177797-503 - Limited - Disabled)
DHAMPIRD (S-1-5-21-3597564769-968549059-3920177797-1005 - Administrator - Enabled) => C:\Users\DHAMPIRD
HomeGroupUser$ (S-1-5-21-3597564769-968549059-3920177797-1003 - Limited - Enabled)
Invitado (S-1-5-21-3597564769-968549059-3920177797-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3597564769-968549059-3920177797-504 - Limited - Disabled)

==================== Centro de Seguridad ========================

(Si una entrada es incluida en el fixlist, será eliminada.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Disabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}

==================== Programas instalados ======================

(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)

µTorrent (HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\uTorrent) (Version: 3.4.2.32080 - BitTorrent Inc.)
3dsmax ancillary install (HKLM-x32\...\{7C8B5E63-821A-4DFB-BDFA-19854D88EC5C}) (Version: 1 - Autodesk) Hidden
4K Capture Utility (HKLM\...\{1269C43A-A073-46B4-BA55-15B9491E36BA}) (Version: 1.5.0.3647 - Elgato Systems)
7-Zip 4.42 (HKLM-x32\...\7-Zip) (Version:  - )
Actualización de NVIDIA 38.0.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.4.0 - NVIDIA Corporation) Hidden
Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0C0F074E4100}) (Version: 18.011.20035 - Adobe Systems Incorporated)
Adobe Acrobat Reader DC - Español (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-AC0F074E4100}) (Version: 19.021.20061 - Adobe Systems Incorporated)
Adobe After Effects CS6 (HKLM-x32\...\{4817D846-700B-474E-A31B-80892B3E92E3}) (Version: 11.0.1 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.321 - Adobe)
Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
Adobe Premiere Pro CC 2015 (HKLM-x32\...\{38C72D42-0672-43B1-9E05-E7631684F9A1}) (Version: 9.0.0 - Adobe Systems Incorporated)
Adobe Premiere Pro CS6 (HKLM-x32\...\{7176B973-6011-43C1-AEBC-2D73FE7C6982}) (Version: 6.0 - Adobe Systems Incorporated)
Aegisub 3.2.2 (HKLM\...\{24BC8B57-716C-444F-B46B-A3349B9164C5}_is1) (Version: 3.2.2 - Aegisub Team)
AIDA64 Extreme Edition v1.70 (HKLM-x32\...\AIDA64 Extreme Edition_is1) (Version: 1.70 - FinalWire Ltd.)
Aiseesoft Blu-ray Player 6.3.6 (HKLM-x32\...\{3E1A13C3-E458-4995-BEA6-4B9BE279D502}_is1) (Version: 6.3.6 - Aiseesoft Studio)
Aiseesoft Video Converter Ultimate 9.2.62 (HKLM-x32\...\{4E453AA0-3B4A-4b78-BA4B-E2EAB6DF11D6}_is1) (Version: 9.2.62 - Aiseesoft Studio)
Aliens vs Predator (HKLM-x32\...\Aliens vs Predator_is1) (Version:  - )
Anime Studio Pro 9.0 (HKLM\...\ASP900_is1) (Version: 9.0 - Smith Micro Software, Inc.)
Anime Studio Pro 9.0 (x86) (HKLM-x32\...\ASP900_is1) (Version: 9.0 - Smith Micro Software, Inc.)
ANT Drivers Installer x64 (HKLM\...\{7664AF65-7B0D-4171-9F0F-50455278B428}) (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
Aplicación de escritorio de Autodesk (HKLM-x32\...\Autodesk Desktop App) (Version: 6.2.0.174 - Autodesk)
Aplicación para detectar Winamp (HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc)
Apowersoft Video Converter Studio V4.4.8 (HKLM-x32\...\{195E8D7F-292B-4B04-A6E7-E96CAF04C767}_is1) (Version: 4.4.8 - APOWERSOFT LIMITED)
Apple Application Support (32 bits) (HKLM-x32\...\{BED24701-751B-41C5-8888-A8EABAB9FE8C}) (Version: 8.1 - Apple Inc.)
Apple Application Support (64 bits) (HKLM\...\{88F21C94-88AF-4665-AF4F-FECB1FA059B9}) (Version: 8.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{45DDDFED-AABC-450C-B49C-5B4A5E547F5B}) (Version: 13.0.0.38 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{A3985C05-7386-411F-A4BF-32A73F37EB44}) (Version: 2.6.3.1 - Apple Inc.)
Arturia V Collection 7 (HKLM\...\V Collection 7_is1) (Version: 7.0.0 - Arturia)
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.12 - Michael Tippach)
Asistente para actualización a Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22925 - Microsoft Corporation)
Audacity 2.0.4 (HKLM-x32\...\Audacity_is1) (Version: 2.0.4 - Audacity Team)
Autodesk 3ds Max 2015 (HKLM\...\{52B37EC7-D836-0410-0264-3C24BCED2010}) (Version: 17.0.630.0 - Autodesk) Hidden
Autodesk 3ds Max 2015 (HKLM\...\Autodesk 3ds Max 2015) (Version: 17.0.630.0 - Autodesk)
Autodesk 3ds Max 2015 Populate Data (HKLM\...\{57E92DED-DC6C-41E5-B9E1-76D83BD2EABE}) (Version: 17.0.0.0 - Autodesk)
Autodesk Backburner 2015 (HKLM-x32\...\{8C5F38D2-8EFE-49A4-B3F5-BF3210FED168}) (Version: 15.0.0.0 - Autodesk)
Autodesk DirectConnect 2015 64-bit (HKLM\...\{23C9ED7C-CB64-45FE-A7EA-1BA666F5589D}) (Version: 9.0.56.4 - Autodesk) Hidden
Autodesk DirectConnect 2015 64-bit (HKLM\...\Autodesk DirectConnect 2015 64-bit) (Version: 9.0.56.4 - Autodesk)
Autodesk DWF Viewer 7 (HKLM-x32\...\{9A346205-EA92-4406-B1AB-50379DA3F057}) (Version: 7.0.0 - Autodesk, Inc.)
Autodesk Inventor Server Engine for 3ds Max 2015 (HKLM\...\{9167CA34-4E48-49E3-8892-3C439739D2D3}) (Version: 17.0 - Autodesk)
Autodesk Material Library 2015 (HKLM-x32\...\{427F733F-4D6C-45BC-9324-EB743104C321}) (Version: 5.2.9.100 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2015 (HKLM-x32\...\{ABE2F70B-8D94-44E9-AA04-F0DB35063D62}) (Version: 5.2.9.100 - Autodesk)
Autodesk Material Library Medium Resolution Image Library 2015 (HKLM-x32\...\{9F6466D9-6EFC-4A10-B931-C72D1A3F1763}) (Version: 5.2.9.100 - Autodesk)
Autodesk Revit Interoperability for 3ds Max 2015 (HKLM\...\{0BB716E0-1500-0610-0000-097DC2F354DF}) (Version: 15.0.107.0 - Autodesk) Hidden
Autodesk Revit Interoperability for 3ds Max 2015 (HKLM\...\Autodesk Revit Interoperability for 3ds Max 2015) (Version: 15.0.107.0 - Autodesk)
AutoHotkey 1.1.30.00 (HKLM\...\AutoHotkey) (Version: 1.1.30.00 - Lexikos)
Backup and Sync from Google (HKLM\...\{825F60D9-2633-4D52-B2B0-5DA143433BBC}) (Version: 3.48.8668.1933 - Google, Inc.)
bl (HKLM-x32\...\{2A075BB4-E976-4278-BF3F-E5C6945D84C0}) (Version: 1.0.0 - Your Company Name) Hidden
Blender (HKLM\...\{47A0EA10-D506-4473-AE99-5E07DD1062DE}) (Version: 2.77.1 - Blender Foundation)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Camera RAW Plug-In for EPSON Creativity Suite (HKLM-x32\...\{8DAC1AE4-33D1-4A78-8A42-00E09EDECC3E}) (Version: 2.1.0.0 - )
Castlevania - The Bloodletting V.1.3 BETA (HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\Castlevania - The Bloodletting V.1.3 BETA) (Version:  - )
CCleaner (HKLM\...\{AFF38D29-AD4D-4D0F-8F39-DACC6D9F2029}) (Version: 5.19.5633 - Piriform Ltd)
CCleaner (HKLM\...\CCleaner) (Version: 5.63 - Piriform)
CDisplay 1.8 (HKLM-x32\...\CDisplay_is1) (Version:  - dvd8n)
CDRWIN 8 (HKLM-x32\...\{23D4A873-14FF-474E-0001-6529DDC11226}) (Version: 8.0.11.0121 - Engelmann Media GmbH)
CLIP STUDIO 1.7.3 (HKLM-x32\...\{49274EB8-4598-47E6-8039-9BB7CE07627E}) (Version: 1.7.3 - CELSYS)
CLIP STUDIO PAINT 1.7.3 (HKLM-x32\...\{1E4572D2-28BC-4BC9-B743-13DC6CFD71DB}) (Version: 1.7.3 - CELSYS)
CloneCD (HKLM-x32\...\CloneCD) (Version:  - SlySoft)
CloneDVD 3.6 (HKLM-x32\...\CloneDVD.exe_is1) (Version:  - Copyright (C) 2003-2005 DVD X Studios.)
ComicRack v0.9.178 (HKLM\...\ComicRack) (Version: v0.9.178 - cYo Soft)
Configuración de cámara Logitech (HKLM-x32\...\LogiUCDPP) (Version: 2.10.4.0 - Logitech Europe S.A.)
Corel Graphics - Windows Shell Extension (HKLM\...\_{39AB9389-ABC5-4603-AFB6-071BB35225E4}) (Version: 21.0.0.581 - Corel Corporation)
Corel Graphics - Windows Shell Extension (HKLM\...\{39AB9389-ABC5-4603-AFB6-071BB35225E4}) (Version: 21.0.581 - Corel Corporation) Hidden
Corel Graphics - Windows Shell Extension 32 Bit Keys (HKLM\...\{95555783-E5F3-40B2-99C7-7345C39EFF76}) (Version: 21.0.581 - Corel Corporation) Hidden
Corel Update Manager (HKLM\...\{2945B729-98C9-4A18-A24E-AD5D84BB9A8E}) (Version: 2.10.442 - Corel corporation) Hidden
CorelDRAW Graphics Suite 2019 - BR (x64) (HKLM\...\{2FE926AD-01D6-4A84-BFB0-BE6ACF5CF6C6}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - Capture (x64) (HKLM\...\{3834C5F6-5079-4C23-B8B1-F0884A02690F}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - Common (x64) (HKLM\...\{E26C03B7-3DCF-46FD-9432-B8DAB1C34AEF}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - Connect (x64) (HKLM\...\{B850B42F-249D-4C94-8536-B08205EB5C77}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - Custom Data (x64) (HKLM\...\{FD08312C-7147-4417-9C0A-DE3C45DB56B5}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - DE (x64) (HKLM\...\{1675BBEB-CD1D-443E-A8E1-DFCDF2C5B401}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - Draw (x64) (HKLM\...\{0A15F4D7-3B53-45C1-BB67-23F27FF8B75B}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - EN (x64) (HKLM\...\{43EBAA78-1F47-4627-8F0D-5DA8630B4056}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - ES (x64) (HKLM\...\{504E61BD-1A7A-4629-89FB-960E2D15F072}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - Filters (x64) (HKLM\...\{DB0939C5-03D1-474D-8F60-2EFEE40EA114}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - Font Manager (x64) (HKLM\...\{CEE73B7E-2900-4C8B-BEF8-8E6B05C7703C}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - FR (x64) (HKLM\...\{959BF271-7FEC-4C97-B20B-1E54B8EC807B}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - IPM (x64) (HKLM\...\{A3BA4B57-A263-476E-B787-B5267F35201F}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - IPM Content BR (x64) (HKLM\...\{F3F8F532-0F11-49C7-8D49-967F4581C30A}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - IPM Content DE (x64) (HKLM\...\{DD666FC6-8807-45EA-B769-56475447DF80}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - IPM Content EN (x64) (HKLM\...\{E5A6F812-B03B-4054-BDC9-E92B1BC6B052}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - IPM Content ES (x64) (HKLM\...\{1F8D0F23-5574-4A2A-B580-CCCBD2F5FCDA}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - IPM Content FR (x64) (HKLM\...\{E1CB786C-4E64-48C0-8EC3-A7E7265FD42E}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - IPM Content IT (x64) (HKLM\...\{935C5EA6-B78E-4AE0-A72B-3FB5C0DA9487}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - IPM Content NL (x64) (HKLM\...\{9AD4C3CA-5968-44E0-B0B0-443A378FA67D}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - IT (x64) (HKLM\...\{23AAF608-B935-43F6-A1DE-876FDCD433DF}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - NL (x64) (HKLM\...\{9800FB54-97EF-4444-B636-184891F7CF45}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - PHOTO-PAINT (x64) (HKLM\...\{E1DB8CE4-D01D-48AF-B0C3-189B9000756C}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - Setup Files (x64) (HKLM\...\{E82C45F0-2C79-47A5-B90B-C514724B1C48}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - VBA (x64) (HKLM\...\{E633140C-B07F-4EF6-8316-BEA221E359EF}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - Workspaces (x64) (HKLM\...\{CBF86165-DBBB-4DA7-9070-3AFC86EA4745}) (Version: 21.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 - Writing Tools (x64) (HKLM\...\{F37A71D2-9B69-45E5-B6B1-DE9D98C197FC}) (Version: 21.0 -  Corel Corporation) Hidden
CorelDRAW Graphics Suite 2019 (64-Bit) (HKLM\...\_{E82C45F0-2C79-47A5-B90B-C514724B1C48}) (Version: 21.0.0.593 - Corel Corporation)
CorelDRAW Graphics Suite 2019 (HKLM\...\{DC01BBC9-8212-45F7-A89B-FBDD4BC2B6B7}) (Version: 21.0 - Corel Corporation) Hidden
CPUID CPU-Z 1.76 (HKLM\...\CPUID CPU-Z_is1) (Version:  - ) <==== ATENCIÓN
CX4300_5500_DX4400 Manual (HKLM-x32\...\CX4300_5500_DX4400 Manual) (Version:  - )
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Pro (HKLM\...\DAEMON Tools Pro) (Version: 8.2.0.0708 - Disc Soft Ltd)
Dark Souls 3 (HKLM-x32\...\Dark Souls 3_is1) (Version:  - )
Deluge 1.3.15 (HKLM-x32\...\Deluge) (Version:  - )
DiscJuggler (HKLM-x32\...\DiscJuggler) (Version: 6.0.0.1400 - Padus Incorporated)
Discord (HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\Discord) (Version: 0.0.305 - Discord Inc.)
DisplayFusion 9.3 (HKLM-x32\...\B076073A-5527-4f4f-B46B-B10692277DA2_is1) (Version: 9.3.0.0 - Binary Fortress Software)
Dropbox (HKLM-x32\...\Dropbox) (Version: 89.4.278 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.241.1 - Dropbox, Inc.) Hidden
DVDFab (x64) 11.0.3.4 (31/05/2019) (HKLM-x32\...\DVDFab 11(x64)) (Version: 11.0.3.4 - DVDFab Software Inc.)
EAGLE 8.7.0 (HKLM\...\EAGLE_is1) (Version: 8.7.0 - Autodesk, Inc.)
EaseUS Data Recovery Wizard (HKLM\...\EaseUS Data Recovery Wizard_is1) (Version:  - EaseUS)
Eines de correcció del Microsoft Office 2013: català (HKLM\...\{90150000-001F-0403-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Elevated Installer (HKLM-x32\...\{1052502B-4C91-43F9-B160-AE39ED57C9F0}) (Version: 5.3.1.0 - Garmin Ltd or its subsidiaries) Hidden
Elgato Control Center (HKLM\...\{B84C32C4-95AA-40D2-9F90-497365C1B0A4}) (Version: 1.0.1.580 - Elgato Systems)
Elgato Game Capture HD (HKLM\...\{22094C2E-6F60-42B4-BC98-1F0A2BE5E238}) (Version: 3.70.30.3030 - Elgato Systems GmbH)
Elgato Stream Deck (HKLM\...\{8A97C794-8E45-4BA2-847A-61DD869333EE}) (Version: 4.2.1.10055 - Elgato Systems GmbH)
eLicenser Control (HKLM-x32\...\eLicenser Control) (Version:  - Steinberg Media Technologies GmbH)
Emby Server (HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\Emby Server) (Version: 4.2 - Emby Team)
eMule (HKLM-x32\...\eMule) (Version:  - )
EPSON Attach To Email (HKLM-x32\...\{20C45B32-5AB6-46A4-94EF-58950CAF05E5}) (Version: 1.01.0000 - SEIKO EPSON) Hidden
EPSON Attach To Email (HKLM-x32\...\InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5}) (Version: 1.01.0000 - SEIKO EPSON)
EPSON Copy Utility 3 (HKLM-x32\...\{67EDD823-135A-4D59-87BD-950616D6E857}) (Version: 3.2.0.0 - )
EPSON Easy Photo Print (HKLM-x32\...\{B66E665A-DF96-4C38-9422-C7F74BC1B4E5}) (Version: 1.4.2.0 - )
EPSON File Manager (HKLM-x32\...\{2EB81825-E9EE-44F4-8F51-1240C3898DC6}) (Version: 1.3.0.0 - )
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version:  - )
EPSON Scan Assistant (HKLM-x32\...\{2A88F1BF-7041-4E42-84B1-6B4ACB83AC64}) (Version: 1.10.00 - )
ESET NOD32 Antivirus 13.0.22.0 (HKLM-x32\...\ESET NOD32 Antivirus 13.0.22.0) (Version: 13.0.22.0 - ESET, spol. s r.o.)
ExactFile 1.0.0.15 (HKLM-x32\...\ExactFile_is1) (Version:  - StudyLamp Software LLC)
Extended Asian Language font pack for Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-2530-0000-AC0F074E4100}) (Version: 15.007.20033 - Adobe Systems Incorporated)
FBX Plugin 2006.08 for Max 9.0 (HKLM-x32\...\FBX Plugin 2006.08 for Max 9.0) (Version:  - )
FBX Plugin 2006.08 for Max 9.0 64 (HKLM-x32\...\FBX Plugin 2006.08 for Max 9.0 64) (Version:  - )
Ferramentas de verificación de Microsoft Office 2013 - Galego (HKLM\...\{90150000-001F-0456-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
FileZilla Client 3.20.1 (HKLM-x32\...\FileZilla Client) (Version: 3.20.1 - Tim Kosse)
FileZilla Server (HKLM-x32\...\FileZilla Server) (Version: beta 0.9.60 - FileZilla Project)
FL Studio 12 (HKLM-x32\...\FL Studio 12) (Version:  - Image-Line)
FL Studio ASIO (HKLM-x32\...\FL Studio ASIO) (Version:  - Image-Line)
FLAC To MP3 V4.0.4 (HKLM-x32\...\FLAC To MP3_is1) (Version:  - FLAC To MP3, Inc.)
FlashFXP 4 (HKLM-x32\...\FlashFXP 4) (Version: 4.4.1.1998 - OpenSight Software LLC)
Flashtool (HKLM-x32\...\Flashtool) (Version: 0.9.19.0 - Androxyde)
FlexHEX version 2.7 (HKLM-x32\...\FlexHEX_is1) (Version: 2.7 - Inv Softworks LLC)
FolderView (HKLM-x32\...\FolderView) (Version:  - )
Forza Motorsport 7 [FULL REMOVAL] (HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\{F0A95FBB-6D6A-4D41-A55F-3803B5044A45}_is1) (Version: 1.130.1736.2 - Microsoft Studios)
Freemake Video Converter versión 4.1.10 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 4.1.10 - Mixbyte Inc.)
Garmin Express (HKLM-x32\...\{BCC7CA85-E57F-452D-BB44-15A1CE018BD0}) (Version: 5.3.1.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express (HKLM-x32\...\{bd8bd200-9a60-4969-b267-6b565f36e3da}) (Version: 5.3.1.0 - Garmin Ltd or its subsidiaries)
Garmin Express Tray (HKLM-x32\...\{DA9C865D-6762-4931-8588-0B13B7A0796B}) (Version: 5.3.1.0 - Garmin Ltd or its subsidiaries) Hidden
Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\_{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation)
Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation) Hidden
GIGABYTE OC_GURU II (HKLM-x32\...\{EA298EC1-2B8F-4DA9-8C5B-BC1FCBBAD72F}) (Version: 1.90.0000 - GIGABYTE Technology Co.,Ltd.) Hidden
GIGABYTE OC_GURU II (HKLM-x32\...\InstallShield_{EA298EC1-2B8F-4DA9-8C5B-BC1FCBBAD72F}) (Version: 1.90.0000 - GIGABYTE Technology Co.,Ltd.)
Git version 2.16.2 (HKLM\...\Git_is1) (Version: 2.16.2 - The Git Development Community)
GonVisor 2.44.01 (HKLM-x32\...\GonVisor_is1) (Version:  - GON)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 79.0.3945.130 - Google LLC)
Google Earth Pro (HKLM\...\{70A0F34E-564B-4F93-ADD6-3BAEC6E44075}) (Version: 7.3.2.5776 - Google)
Google Gmail Notifier (HKLM-x32\...\{0228e555-4f9c-4e35-a3ec-b109a192b4c2}) (Version:  - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.421 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.115 - Google Inc.) Hidden
GQ USB Driver V2.0.1 (HKLM-x32\...\MCUmall USBprg GQ-4X_is1) (Version:  - MCUmall, Inc.)
GQ USB Programmer version 6.29 (HKLM-x32\...\GQ USB Programmer_is1) (Version: 6.29 - )
GQBlaster (HKLM-x32\...\{5EA55F4F-0AE6-45EE-A14E-DB2B436139AA}) (Version: 0.8 - mcumall)
Gtk# for .Net 2.12.26 (HKLM-x32\...\{BC25B808-A11C-4C9F-9C0A-6682E47AAB83}) (Version: 2.12.26 - Xamarin, Inc.)
HandBrake 1.2.1 (HKLM-x32\...\HandBrake) (Version: 1.2.1 - )
HDD Health v4.2 (HKLM-x32\...\HDD Health_is1) (Version:  - )
HDD Regenerator (HKLM-x32\...\{2445981B-A23B-4A0E-AD15-3D391BDAEC3E}) (Version: 1.71.0012 - Abstradrome)
HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.15.281 - SurfRight B.V.)
HxD Hex Editor version 1.7.7.0 (HKLM-x32\...\HxD Hex Editor_is1) (Version: 1.7.7.0 - Maël Hörz)
iCloud (HKLM\...\{576BC8FA-1891-47C8-8A23-F3DDB78C06DE}) (Version: 7.15.0.10 - Apple Inc.)
IconRestorer 1.0.8.1 SR1 (HKLM-x32\...\IconRestorer Free_is1) (Version:  - FSL - FreeSoftLand)
IL Download Manager (HKLM-x32\...\IL Download Manager) (Version:  - Image-Line)
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
Intel(R) C++ Redistributables for Windows* on Intel(R) 64 (HKLM-x32\...\{D2437C5C-2D8C-40D2-8059-689AD7239FA3}) (Version: 11.1.048 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1162 - Intel Corporation)
Intel(R) Network Connections 20.2.3001.0 (HKLM\...\PROSetDX) (Version: 20.2.3001.0 - Intel)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.6.0.1029 - Intel Corporation)
Intel(R) USB 3.0 Host Controller Adaptation Driver (HKLM\...\{9472AEE5-5D4D-4329-8BD8-B282FD33B8E0}) (Version: 1.0.1.45 - Intel Corporation)
Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation)
ips XP 1.11.2600 (HKLM-x32\...\ips XP_is1) (Version: 1.11.2600 - Tenchi wielding the Illumina sword)
iSkysoft Helper Compact 2.5.2 (HKLM-x32\...\{9BF12010-8799-41A5-A671-E9CFDE9E79F3}_is1) (Version: 2.5.2 - iSkysoft)
iSkysoft iMedia Converter Deluxe(Build 10.4.2.195) (HKLM-x32\...\iMedia Converter Deluxe_is1) (Version: 10.4.2.195 - iSkysoft Software)
IsoBuster 1.7 (HKLM-x32\...\IsoBuster_is1) (Version: 1.7 - Smart Projects)
iTunes (HKLM\...\{A5117F15-A968-4C0F-A4B0-3F601C4ACC77}) (Version: 12.10.2.3 - Apple Inc.)
Java 8 Update 241 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180241F0}) (Version: 8.0.2410.7 - Oracle Corporation)
Java 8 Update 241 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180241F0}) (Version: 8.0.2410.7 - Oracle Corporation)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
K-Lite Mega Codec Pack 15.0.0 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 15.0.0 - KLCP)
KMSpico (HKLM\...\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1) (Version:  - )
KMSpico v9.1.3 (HKLM\...\KMSpico_is1) (Version: 9.1.3 - )
LogiFEPlugin for Lync2010 (HKLM-x32\...\LogiFEPluginforLync2010) (Version: 1.2.311.0 - Logitech Europe S.A.)
Logitech Capture (HKLM\...\Capture) (Version: 1.10.110 - Logitech)
Logitech Desktop Messenger (HKLM-x32\...\{900B1197-53F5-4F46-A882-2CFFFE2EEDCB}) (Version:  - )
Logitech Options (HKLM\...\LogiOptions) (Version: 8.10.84 - Logitech)
Magic Bullet Suite v13.0.11 (HKLM-x32\...\{99487911-8011-42BC-B594-8B02BFD32B1D}_is1) (Version: 13.0.11 - Red Giant, LLC)
MakeMKV v1.14.4 (HKLM-x32\...\MakeMKV) (Version: v1.14.4 - GuinpinSoft inc)
Malwarebytes version 4.0.4.49 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.0.4.49 - Malwarebytes)
MediaInfo 0.7.59 (32-bit) (HKLM-x32\...\MediaInfo) (Version: 0.7.59 - MediaArea.net)
MediaInfo 0.7.87 (HKLM\...\MediaInfo) (Version: 0.7.87 - MediaArea.net)
MegaDownloader 1.7 (HKLM\...\{C12C2297-65A4-4E64-9AE1-29F0D947FDA0}}_is1) (Version: 1.7 - AppsForMega.info)
MEGAsync (HKLM-x32\...\MEGAsync) (Version:  - Mega Limited)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\OneDriveSetup.exe) (Version: 19.222.1110.0006 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{650c9b4a-60ec-4e4e-8d8e-32d85ce3b7c5}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.14.26429 (HKLM-x32\...\{80586c77-db42-44bb-bfc8-7aebbb220c00}) (Version: 14.14.26429.4 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.16.27012 (HKLM-x32\...\{67f67547-9693-4937-aa13-56e296bd40f6}) (Version: 14.16.27012.6 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio Installer (HKLM\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 1.15.3248.309 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2012 (HKLM-x32\...\{89ca2a32-2b52-4595-8dfd-6fe4757958d0}) (Version: 11.0.51108 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2015 (HKLM-x32\...\{dd8b09df-3ef8-49f1-bd1a-65278435860b}) (Version: 14.0.23217 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2017 (HKLM-x32\...\{5a7dc0ad-cdb2-43b5-8b82-f81065fe6092}) (Version: 15.0.26717 - Microsoft Corporation)
MKVCleaver x64 (HKLM\...\{1256E11A-B91F-4869-9DC3-EBCC7466314C}) (Version: 6.0.7 - Ilia Bakhmoutski)
MKVToolNix 8.5.1 (64bit) (HKLM-x32\...\MKVToolNix) (Version: 8.5.1 - Moritz Bunkus)
ModelSim-Altera Starter Edition 13.0.0.156 (HKLM-x32\...\ModelSim-Altera Starter Edition 13.0.0.156) (Version: 13.0 - Altera Corporation)
Monkey's Audio x64 (HKLM-x32\...\Monkey's Audio x64_is1) (Version:  - )
Movie Maker (HKLM-x32\...\{38F03569-A636-4CF3-BDDE-032C8C251304}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 72.0.2 (x64 es-ES) (HKLM\...\Mozilla Firefox 72.0.2 (x64 es-ES)) (Version: 72.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 53.0.3 - Mozilla)
MP4Tools v3.7 (HKLM-x32\...\MP4Tools_is1) (Version:  - Thüring IT-Consulting)
MUSICMATCH Jukebox (HKLM-x32\...\{45EBDA59-D33B-433A-956E-B2F236468B56}) (Version:  - )
myiHome v5.2.0 (HKLM-x32\...\myiHome_is1) (Version:  - Syabas Technology Sdn. Bhd.)
NeoBook 5.6.2 (HKLM-x32\...\{B111977A-E61A-4EA3-9F19-605E69C06D14}_is1) (Version: 5.6.2 - NeoSoft Corp.)
Nero Burning ROM 10 (HKLM-x32\...\{7A5D731D-B4B3-490E-B339-75685712BAAB}) (Version: 10.2.11000.12.100 - Nero AG)
Nero Burning ROM 10 (HKLM-x32\...\{FE83F463-7E61-4B18-9FA0-B94B90A0B6B9}) (Version: 10.5.10300 - Nero AG)
Nero BurnRights 10 (HKLM-x32\...\{943CFD7D-5336-47AF-9418-E02473A5A517}) (Version: 4.2.10300.0.102 - Nero AG)
Nero Update (HKLM-x32\...\{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}) (Version: 1.0.0018 - Nero AG)
Nikon Message Center 2 (HKLM-x32\...\{B014EE44-9197-4513-9613-71E6EB1B514E}) (Version: 2.0.1 - Nikon)
NirSoft ShellExView (HKLM-x32\...\NirSoft ShellExView) (Version:  - )
Node.js (HKLM\...\{4219DF19-09C9-47A4-88C0-49778E491E54}) (Version: 8.9.4 - Node.js Foundation)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.19 - NVIDIA Corporation) Hidden
NVIDIA Audio virtual de Miracast 419.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 419.35 - NVIDIA Corporation)
NVIDIA Controlador de audio HD 1.3.38.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.21 - NVIDIA Corporation)
NVIDIA Controlador de gráficos 441.87 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 441.87 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.20.2.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.2.34 - NVIDIA Corporation)
NVIDIA Software del sistema PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 23.0.1 - OBS Project)
obs-ios-camera-source version git (HKLM-x32\...\{EFCC1549-F2CF-4540-B258-EB26A30237D2}_is1) (Version: git - Will Townsend)
OpenToonz version 1.1.0 (HKLM\...\{D9A9B1A3-9370-4BE9-9C8F-7B52EEECB973}_is1) (Version: 1.1.0 - DWANGO Co., Ltd.)
Origin (HKLM-x32\...\Origin) (Version: 10.5.26.8488 - Electronic Arts, Inc.)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x64 Hosting Support - PTB (HKLM\...\{E237254B-36A1-3D27-815E-B37C13BE0796}) (Version: 11.0.51108 - Microsoft Corporation) Hidden
Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x86 Hosting Support - PTB (HKLM-x32\...\{03077B58-6ACF-32CA-B42A-EAA458C295A1}) (Version: 11.0.51108 - Microsoft Corporation) Hidden
Panda Cloud Cleaner (HKLM-x32\...\{92B2B132-C7F0-43DC-921A-4493C04F78A4}_is1) (Version: 1.1.10 - Panda Security)
Panel de control de NVIDIA 441.87 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 441.87 - NVIDIA Corporation) Hidden
Paquete de controladores de Windows - Altera (WinUSB) JTAG cables  (02/11/2014,2014.02.11 ) (HKLM\...\6D27F566AFC20C2281F903D0D9620D335BBAF1AB) (Version: 02/11/2014,2014.02.11  - Altera)
Paquete de controladores de Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Paquete de controladores de Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB  (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
Paquete de idioma de Microsoft Visual Studio 2010 Tools para Office Runtime (x64) - ESN (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - ESN) (Version: 10.0.50903 - Microsoft Corporation)
PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden
PDF To JPG 2.0 (HKLM-x32\...\PDF To JPG_is1) (Version:  - PDF To JPG)
ph (HKLM-x32\...\{185F9795-9663-4F13-9EF9-307A282ADB5A}) (Version: 1.0.0 - Your Company Name) Hidden
Picture Control Utility (HKLM-x32\...\{87441A59-5E64-4096-A170-14EFE67200C3}) (Version: 1.2.2 - Nikon)
Plex Media Server (HKLM-x32\...\{9296e017-c45c-484f-b51b-36a42ffa2b48}) (Version: 1.18.0.1913 - Plex, Inc.)
Plex Media Server (HKLM-x32\...\{F8ED7149-77DB-4735-873F-AA4102F2CC0D}) (Version: 1.18.1913 - Plex, Inc.) Hidden
Port Forward Network Utilities (HKLM-x32\...\{4C345FED-92FF-4F24-AD0E-F114F4216DC7}) (Version: 3.0.36 - Portforward, LLC)
Port Forwarding Wizard 4.8 (HKLM-x32\...\Port Forwarding Wizard_is1) (Version:  - upRedSun and iForwarder, Inc.)
PowerISO (HKLM-x32\...\PowerISO) (Version:  - )
Python 2.6 (64-bit) (HKLM\...\{110EB5C4-E995-4CFB-AB80-A5F315BEA9E9}) (Version: 2.6.150 - Python Software Foundation)
Python 2.7 pycrypto-2.6 (HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\pycrypto-py2.7) (Version:  - )
Python 2.7.13 (HKLM-x32\...\{4A656C6C-D24A-473F-9747-3A8D00907A03}) (Version: 2.7.13150 - Python Software Foundation)
Python 2.7.15 (64-bit) (HKLM\...\{16CD92A4-0152-4CB7-8FD6-9788D3363617}) (Version: 2.7.15150 - Python Software Foundation)
Python 3.6.4 (32-bit) (HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\{9218130b-5ad0-4cf7-82be-6993cfd6cb84}) (Version: 3.6.4150.0 - Python Software Foundation)
Python 3.6.4 Core Interpreter (32-bit) (HKLM-x32\...\{D188614B-E656-4EF1-9F5A-23559EBE8F5A}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
Python 3.6.4 Development Libraries (32-bit) (HKLM-x32\...\{C3797E33-967D-4687-8F1A-9DE771A00125}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
Python 3.6.4 Documentation (32-bit) (HKLM-x32\...\{E09874D3-E898-4AB6-B043-EE24DF786088}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
Python 3.6.4 Executables (32-bit) (HKLM-x32\...\{47A75DB9-F3F5-4697-9261-DBA5162DBB9E}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
Python 3.6.4 pip Bootstrap (32-bit) (HKLM-x32\...\{54142B43-2FA5-4BBA-BF03-27C10EB50C1E}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
Python 3.6.4 Standard Library (32-bit) (HKLM-x32\...\{2832768E-9BCA-4421-950C-7186B3BDFC45}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
Python 3.6.4 Tcl/Tk Support (32-bit) (HKLM-x32\...\{20888FA1-8127-42E3-969F-9BF93245AC83}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
Python 3.6.4 Test Suite (32-bit) (HKLM-x32\...\{D14FB2FA-51B2-415C-93BF-5053102235EE}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
Python 3.6.4 Utility Scripts (32-bit) (HKLM-x32\...\{D0730E44-E519-4F39-B926-E2FC0449D67C}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
Python 3.7.0 (64-bit) (HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\{f684de81-73c2-4924-ad43-e7ae400d47b5}) (Version: 3.7.150.0 - Python Software Foundation)
Python 3.7.0 Add to Path (64-bit) (HKLM\...\{A03DCA8A-AAD0-4A25-8CE0-D50D73797233}) (Version: 3.7.150.0 - Python Software Foundation) Hidden
Python 3.7.0 Core Interpreter (64-bit) (HKLM\...\{F046BD5A-33F4-4ABA-BD2D-0227F6291EC9}) (Version: 3.7.150.0 - Python Software Foundation) Hidden
Python 3.7.0 Development Libraries (64-bit) (HKLM\...\{61246987-8D99-44A9-8FF5-E2E3F503B72D}) (Version: 3.7.150.0 - Python Software Foundation) Hidden
Python 3.7.0 Documentation (64-bit) (HKLM\...\{E7C56E72-C80E-453B-9345-FAEAE5DB51A4}) (Version: 3.7.150.0 - Python Software Foundation) Hidden
Python 3.7.0 Executables (64-bit) (HKLM\...\{84B7971A-F59F-4247-AD34-BEC02CF85FBD}) (Version: 3.7.150.0 - Python Software Foundation) Hidden
Python 3.7.0 pip Bootstrap (64-bit) (HKLM\...\{8A6F7991-1955-4C46-8C0C-8D7C6F7042FA}) (Version: 3.7.150.0 - Python Software Foundation) Hidden
Python 3.7.0 Standard Library (64-bit) (HKLM\...\{18D93BBC-06F6-449D-96FB-CD473CFC6A6D}) (Version: 3.7.150.0 - Python Software Foundation) Hidden
Python 3.7.0 Tcl/Tk Support (64-bit) (HKLM\...\{A2FC01E0-059E-4D21-AFD2-B63A7E1EF3CD}) (Version: 3.7.150.0 - Python Software Foundation) Hidden
Python 3.7.0 Test Suite (64-bit) (HKLM\...\{E4266358-1C9B-4AF0-ABF7-72BE136904CF}) (Version: 3.7.150.0 - Python Software Foundation) Hidden
Python 3.7.0 Utility Scripts (64-bit) (HKLM\...\{9E24E01B-CBD8-4558-A56D-6188F1A3C822}) (Version: 3.7.150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM-x32\...\{D6BDDB48-938A-4384-A7BE-2B4E4931B111}) (Version: 3.7.6386.0 - Python Software Foundation)
qBittorrent 3.3.16 (HKLM-x32\...\qBittorrent) (Version: 3.3.16 - The qBittorrent project)
Quartus II Web Edition (Free) 13.0.0.156 (HKLM-x32\...\Quartus II Web Edition (Free) 13.0.0.156) (Version: 13.0 - Altera Corporation)
Quartus Prime Pro Edition Programmer and Tools 18.0.0.219 (HKLM\...\Quartus Prime Pro Edition Programmer and Tools 18.0.0.219) (Version: 18.0 - Intel Corporation)
QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7553 - Realtek Semiconductor Corp.)
Red Giant Link (HKLM-x32\...\{10F82E5B-B611-4C65-8F29-666A9EC5680A}_is1) (Version: 1.9.13.0 - Red Giant, LLC)
Revisores de Texto do Microsoft Office 2013 – Português do Brasil (HKLM\...\{90150000-001F-0416-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
SD Card Formatter (HKLM-x32\...\{10C16E01-F739-4093-89A7-E570589FA0F6}) (Version: 5.0.0 - SD Association)
Sekiro Shadows Die Twice (HKLM-x32\...\Sekiro Shadows Die Twice_is1) (Version:  - )
Service Pack 1 for Microsoft Office 2013 (KB2817430) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version:  - Microsoft)
Servicio Xperia Companion (HKLM\...\{62A561E8-3F7C-4363-AAC0-6390476CE334}) (Version: 1.5.12.0 - Sony) Hidden
SHAIO (HKLM-x32\...\SHAIO) (Version: 1.0.0.1 - getraid)
Shenmue I and II (HKLM-x32\...\Shenmue I and II_is1) (Version:  - )
Sky Player 6.3.0.0 (HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\com.bskyb.skyplayer_is1) (Version: 6.3.0.0 - Sky)
Skype™ 7.29 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.29.102 - Skype Technologies S.A.)
SmartShare (HKLM-x32\...\{BAB337AE-DD9E-45C3-BED6-0EE4732AEC60}) (Version: 2.3.1511.1201 - LG Electronics Inc.)
Software de impresora EPSON (HKLM\...\EPSON Printer and Utilities) (Version:  - SEIKO EPSON Corporation)
Software para dispositivos de chipset Intel® (HKLM-x32\...\{c7f54569-0018-439c-809a-48046a4d4ebc}) (Version: 10.1.1.9 - Intel(R) Corporation) Hidden
Sony Mobile Emma (HKLM-x32\...\Emma) (Version: 2.16.10.201607130957 - Sony Mobile Communications Inc.)
SpaceEngine versión 0.9.7.2 (HKLM-x32\...\{E65FD500-9218-44EC-9586-D39FAB4DFDAF}_is1) (Version: 0.9.7.2 - SpaceEngine)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Steinberg Cubase LE AI Elements 6 64bit (HKLM\...\{8EEEB23E-A3EB-44A4-AEE9-D2FD6F96E4A0}) (Version: 6.0.2 - Steinberg Media Technologies GmbH)
Steinberg Drum Loop Expansion 01 (HKLM-x32\...\{490BF87E-1F75-4453-BF55-9F540543A3CA}) (Version: 2.0.0.0 - Steinberg Media Technologies GmbH)
Steinberg Groove Agent ONE Content (HKLM-x32\...\{BD86F1AC-B594-46E4-85DC-1258AC9E2232}) (Version: 1.0.0.003 - Steinberg Media Technologies GmbH)
Steinberg Groove Agent ONE Vintage Beatboxes (HKLM-x32\...\{DBF4BC99-53F1-4C97-84C3-7557D103E182}) (Version: 1.0.0.000 - Steinberg Media Technologies GmbH)
Steinberg HALion Sonic SE 64bit (HKLM\...\{B99C316B-C135-43B5-8E77-2BC5E241F964}) (Version: 1.5.2 - Steinberg Media Technologies GmbH)
Steinberg HALion Sonic SE Content for Cubase LE AI Elements (HKLM-x32\...\{CF45002F-2205-4116-BB51-2D015F436CAC}) (Version: 1.5.2.000 - Steinberg Media Technologies GmbH)
Stopping Plex (HKLM-x32\...\{AD1F345D-39FB-46A0-BC4A-527CB1688EBC}) (Version: 1.18.1913 - Plex, Inc.) Hidden
Streamlabs OBS 0.12.3 (HKLM\...\029c4619-0385-5543-9426-46f9987161d9) (Version: 0.12.3 - General Workings, Inc.)
Subtitle Edit 3.3.13 (HKLM-x32\...\SubtitleEdit_is1) (Version: 3.3.13.131 - Nikse)
Tableta Wacom (HKLM\...\Wacom Tablet Driver) (Version: 6.3.30-6 - Wacom Technology Corp.)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version:  - TechPowerUp)
TegraRcmGUI (HKLM-x32\...\{D039E679-D036-455F-AC7C-377AA2191953}) (Version: 2.2.0 - eliboa) Hidden
TegraRcmGUI (HKLM-x32\...\TegraRcmGUI 2.2.0) (Version: 2.2.0 - eliboa)
Tenorshare 4uKey 2.0.0.18 (HKLM-x32\...\{Tenorshare 4uKey}_is1) (Version: 2.0.0.18 - Tenorshare, Inc.)
Toon Boom Storyboard Pro Trial (HKLM-x32\...\{52E819E9-C69A-4AF6-B2B3-BC01F8B0ECA3}) (Version: 8.1.4108 - Toon Boom Animation Inc.)
Twitch Leecher 1.8 (HKLM\...\{F6711650-3BDB-4025-82D4-0639CC06F686}) (Version: 1.8.0.0 - Franiac) Hidden
Twitch Leecher 1.8 (HKLM-x32\...\{4ef3f40e-3993-4078-af37-d9444538f014}) (Version: 1.8.0.0 - Franiac)
UltraISO Premium V9.65 (HKLM-x32\...\UltraISO_is1) (Version:  - )
Unity (HKLM-x32\...\Unity) (Version: 2017.3.1f1 - Unity Technologies ApS)
Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb)
Uplay (HKLM-x32\...\Uplay) (Version: 25.0 - Ubisoft)
Usenet.nl (HKLM-x32\...\Usenet.nl_is1) (Version:  - )
Uso a distancia de tu PS4 (HKLM-x32\...\{2571934F-1135-4D9F-996A-332AEE68593A}) (Version: 2.8.0.03041 - Sony Interactive Entertainment Inc.)
ViewNX 2 (HKLM-x32\...\{DDD62492-32A7-412B-8AF1-2CF032AD42E3}) (Version: 2.1.2 - Nikon)
Visual Studio Community 2017 (HKLM-x32\...\95d67e3c) (Version: 15.6.27428.2011 - Microsoft Corporation)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.7.1 - VideoLAN)
VNC Viewer 5.2.3 (HKLM\...\{04A52EEA-FA17-48D5-9879-1256C5263CD7}) (Version: 5.2.3 - RealVNC Ltd)
vs_communitymsi (HKLM-x32\...\{C2749223-157E-48F0-9410-A510361D6803}) (Version: 15.6.27406 - Microsoft Corporation) Hidden
vs_communitymsires (HKLM-x32\...\{340226AB-D0EF-4715-A331-AB3A416B5018}) (Version: 15.0.26621 - Microsoft Corporation) Hidden
vs_devenvmsi (HKLM-x32\...\{BFFA2FFB-1095-4ADD-A352-368806D2412B}) (Version: 15.0.26621 - Microsoft Corporation) Hidden
vs_filehandler_amd64 (HKLM-x32\...\{02DD895F-089F-4A63-81A9-78D00142AF20}) (Version: 15.6.27406 - Microsoft Corporation) Hidden
vs_filehandler_x86 (HKLM-x32\...\{E6A92308-33DF-494B-A91A-3B80FBC97F2B}) (Version: 15.6.27406 - Microsoft Corporation) Hidden
vs_FileTracker_Singleton (HKLM-x32\...\{8EB2C670-04C2-482D-BACD-B4095E27FD39}) (Version: 15.6.27309 - Microsoft Corporation) Hidden
vs_minshellinteropmsi (HKLM-x32\...\{6B45EEA3-85F8-4B26-B952-6830A45F2688}) (Version: 15.6.27323 - Microsoft Corporation) Hidden
vs_minshellmsi (HKLM-x32\...\{13E08AD0-D6AC-44C4-9F5B-0AE2EB56B105}) (Version: 15.6.27421 - Microsoft Corporation) Hidden
vs_minshellmsires (HKLM-x32\...\{E70CC1B8-7ED5-4495-9C52-603FE87F38F4}) (Version: 15.0.26621 - Microsoft Corporation) Hidden
WD Discovery Software (HKLM-x32\...\{99341ACA-2A86-4235-A636-02A2A9820987}) (Version: 1.80 - Western Digital)
WD Drive Utilities (HKLM-x32\...\{2F540611-6560-470F-924A-5F52EFA9156F}) (Version: 1.0.5.7 - Western Digital Technologies, Inc.)
WD Quick View (HKLM-x32\...\{E83047E3-B85C-40E4-A421-017B264AB761}) (Version: 2.4.16.16 - Western Digital Technologies, Inc.)
WD Security (HKLM-x32\...\{A95E3E66-D5A4-404E-997D-02562AA492E8}) (Version: 1.0.5.7 - Western Digital Technologies, Inc.)
WD SmartWare (HKLM\...\{02D359F8-1DEF-41DD-8561-99C7321BFE00}) (Version: 2.4.16.16 - Western Digital Technologies, Inc.)
WD SmartWare Installer (HKLM-x32\...\{4555885d-a64c-4234-9aac-72a8a6b5590b}) (Version: 2.4.16.16 - Western Digital Technologies, Inc.)
WhatsApp (HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\WhatsApp) (Version: 0.4.315 - WhatsApp)
Winamp (HKLM-x32\...\Winamp) (Version: 5.63  - Nullsoft, Inc)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
Windows Movie Maker 2016 (HKLM-x32\...\{3CC29C1A-B5FE-457B-8F22-32A2557A92C7}}_is1) (Version:  - windows-movie-maker.org)
Windows Movie Maker 2019 (HKLM\...\{9CC29C6A-B5FE-497B-8F23-52A2557A92C0}}_is1) (Version:  - VideoWin)
WinHex (HKLM-x32\...\WinHex) (Version:  - )
WinHTTrack Website Copier 3.49-2 (x64) (HKLM\...\WinHTTrack Website Copier_is1) (Version: 3.49.2 - HTTrack)
WinISO 5.3 (HKLM-x32\...\WinISO_is1) (Version:  - WinISO Computing Inc.)
WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies)
WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
WinSCP 5.13.3 (HKLM-x32\...\winscp3_is1) (Version: 5.13.3 - Martin Prikryl)
WinZip 17.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240D7}) (Version: 17.0.10283 - WinZip Computing, S.L. )
XAMPP (HKLM-x32\...\xampp) (Version: 7.2.2-0 - Bitnami)
XBSlink (HKLM-x32\...\XBSlink) (Version:  - )
XLink Kai (HKLM-x32\...\{B80143CB-7FCF-46F0-9A38-75BFAAB462F9}) (Version: 7.4.30.1 - Team XLink) Hidden
XLink Kai (HKLM-x32\...\{d86f7b48-48d2-4848-8a06-62ae2ab8c766}) (Version: 7.4.30.1 - Team XLink)
Xperia Companion (HKLM-x32\...\{44263da6-788d-4cd9-be25-ba05829e3fb4}) (Version: 1.5.12.0 - Sony)
Xperia Companion (HKLM-x32\...\{DE803B8F-8EFE-4018-AFD1-D0F708A75D50}) (Version: 1.5.12.0 - Sony) Hidden
yabause 0.9.15 (HKLM-x32\...\ (Win64)) (Version: 0.9.15 - Yabause team)
Yamaha Steinberg USB Driver (HKLM\...\{08D120AF-A2AF-4E3A-934C-7A48BA97DEEE}) (Version: 1.9.2 - Yamaha Corporation) Hidden
Yamaha Steinberg USB Driver (HKLM-x32\...\InstallShield_{08D120AF-A2AF-4E3A-934C-7A48BA97DEEE}) (Version: 1.9.2 - Yamaha Corporation)
YAMAHA THR Editor (HKLM-x32\...\{5115B75F-32BF-42CB-A8BC-2F0A71C4DF93}) (Version: 1.0.0 - Yamaha Corporation)
ZBrush 4R7 (HKLM-x32\...\ZBrush 4R7 4R7) (Version: 4R7 - Pixologic)
Языковой пакет для поддержки размещения набора средств Microsoft Visual Studio Tools для работы с приложениями 2012 (x64) - RUS (HKLM\...\{25FB53C5-BE4C-3B6C-A0C9-D49A39227E1E}) (Version: 11.0.51108 - Microsoft Corporation) Hidden
Языковой пакет для поддержки размещения набора средств Microsoft Visual Studio Tools для работы с приложениями 2012 (x86) - RUS (HKLM-x32\...\{68DC347D-C1C0-3DE2-A53E-CCC71DA53E57}) (Version: 11.0.51108 - Microsoft Corporation) Hidden

Packages:
=========
Candy Crush Friends -> C:\Program Files\WindowsApps\king.com.CandyCrushFriends_1.26.7.0_x86__kgqvnymyfvs32 [2019-11-29] (king.com)
Candy Crush Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSaga_1.1652.1.0_x86__kgqvnymyfvs32 [2019-12-03] (king.com)
Cooking Fever -> C:\Program Files\WindowsApps\NORDCURRENT.COOKINGFEVER_7.0.0.2_x86__m9bz608c1b9ra [2019-12-04] (Nordcurrent)
Correo y Calendario -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12228.20276.0_x64__8wekyb3d8bbwe [2019-11-26] (Microsoft Corporation) [MS Ad]
DirectX -> C:\Program Files\WindowsApps\Microsoft.DirectXRuntime_9.29.952.0_x64__8wekyb3d8bbwe [2019-09-09] (Microsoft Corporation)
DirectX -> C:\Program Files\WindowsApps\Microsoft.DirectXRuntime_9.29.952.0_x86__8wekyb3d8bbwe [2019-09-09] (Microsoft Corporation)
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.1.3801.0_x64__rz1tebttyb220 [2019-12-01] (Dolby Laboratories)
Fitbit Coach -> C:\Program Files\WindowsApps\Fitbit.FitbitCoach_4.4.133.0_x64__6mqt6hf9g46tw [2019-03-23] (Fitbit)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-03-22] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-03-22] (Microsoft Corporation) [MS Ad]
Microsoft News: Noticias destacadas en español -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.33.13094.0_x64__8wekyb3d8bbwe [2019-11-13] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.11052.0_x64__8wekyb3d8bbwe [2019-11-09] (Microsoft Studios) [MS Ad]
MSN Deportes -> C:\Program Files\WindowsApps\Microsoft.BingSports_4.31.11905.0_x64__8wekyb3d8bbwe [2019-07-20] (Microsoft Corporation) [MS Ad]
MSN Dinero -> C:\Program Files\WindowsApps\Microsoft.BingFinance_4.31.11905.0_x64__8wekyb3d8bbwe [2019-07-20] (Microsoft Corporation) [MS Ad]
MSN El Tiempo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.33.13253.0_x64__8wekyb3d8bbwe [2019-11-24] (Microsoft Corporation) [MS Ad]
MSN Recetas -> C:\Program Files\WindowsApps\Microsoft.BingFoodAndDrink_3.0.4.336_x64__8wekyb3d8bbwe [2016-07-12] (Microsoft Corporation) [MS Ad]
MSN Salud y Bienestar -> C:\Program Files\WindowsApps\Microsoft.BingHealthAndFitness_3.0.4.336_x64__8wekyb3d8bbwe [2016-07-12] (Microsoft Corporation) [MS Ad]
MSN Viajes -> C:\Program Files\WindowsApps\Microsoft.BingTravel_3.0.4.336_x64__8wekyb3d8bbwe [2016-07-12] (Microsoft Corporation) [MS Ad]
Phototastic Collage -> C:\Program Files\WindowsApps\ThumbmunkeysLtd.PhototasticCollage_2.2.16.0_x64__nfy108tqq3p12 [2019-09-26] (Thumbmunkeys Ltd) [MS Ad]
Servicios de juegos -> C:\Program Files\WindowsApps\Microsoft.GamingServices_1.34.7001.0_x64__8wekyb3d8bbwe [2019-10-09] (Microsoft Corporation)
Xbox (Beta) -> C:\Program Files\WindowsApps\Microsoft.GamingApp_1911.1001.8.0_x64__8wekyb3d8bbwe [2019-11-06] (Microsoft Corporation) [Startup Task]
Xbox One SmartGlass -> C:\Program Files\WindowsApps\Microsoft.XboxOneSmartGlass_2.2.1702.2004_x64__8wekyb3d8bbwe [2019-09-10] (Microsoft Corporation)

==================== Personalizado CLSID (Lista blanca): ==============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

CustomCLSID: HKU\S-1-5-21-3597564769-968549059-3920177797-1005_Classes\CLSID\{3560575F-7C2D-48AE-AB45-DAD430A95EBE}\InprocServer32 -> C:\Program Files\WinZip\adxloader64.dll () [Archivo no firmado]
CustomCLSID: HKU\S-1-5-21-3597564769-968549059-3920177797-1005_Classes\CLSID\{6514CF27-CAB1-4577-81A9-EC81618C5003}\InprocServer32 -> C:\Program Files (x86)\FlexHEX\FlexCtx64.dll (Inv Softworks LLC -> Inv Softworks LLC)
CustomCLSID: HKU\S-1-5-21-3597564769-968549059-3920177797-1005_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A} -> [Dropbox] => C:\Users\DHAMPIRD\Dropbox [2016-07-28 20:22]
SSODL: CallbackTechMountNotificator-cbfsdisk2017 - {3D941C7B-07D7-407E-8DA1-FB470AE7B47B} - C:\Windows\system32\CBFSDiskMntNtf2017.dll (Callback Technologies, Inc. -> Callback Technologies, Inc.)
SSODL-x32: CallbackTechMountNotificator-cbfsdisk2017 - {3D941C7B-07D7-407E-8DA1-FB470AE7B47B} - C:\Windows\SysWOW64\CBFSDiskMntNtf2017.dll (Callback Technologies, Inc. -> Callback Technologies, Inc.)
ShellServiceObjects: Virtual Storage Mount Notification -> {3D941C7B-07D7-407E-8DA1-FB470AE7B47B} => C:\Windows\system32\CBFSDiskMntNtf2017.dll [2018-03-23] (Callback Technologies, Inc. -> Callback Technologies, Inc.)
ShellServiceObjects-x32: Virtual Storage Mount Notification -> {3D941C7B-07D7-407E-8DA1-FB470AE7B47B} => C:\Windows\SysWOW64\CBFSDiskMntNtf2017.dll [2018-03-23] (Callback Technologies, Inc. -> Callback Technologies, Inc.)
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\DHAMPIRD\AppData\Local\MEGAsync\ShellExtX64.dll [2019-06-28] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\DHAMPIRD\AppData\Local\MEGAsync\ShellExtX64.dll [2019-06-28] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\DHAMPIRD\AppData\Local\MEGAsync\ShellExtX64.dll [2019-06-28] (Mega Limited -> )
ShellIconOverlayIdentifiers: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-12-22] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-12-22] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-12-22] (Google LLC -> Google)
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\DHAMPIRD\AppData\Local\MEGAsync\ShellExtX64.dll [2019-06-28] (Mega Limited -> )
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\DHAMPIRD\AppData\Local\MEGAsync\ShellExtX64.dll [2019-06-28] (Mega Limited -> )
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\DHAMPIRD\AppData\Local\MEGAsync\ShellExtX64.dll [2019-06-28] (Mega Limited -> )
ShellIconOverlayIdentifiers-x32: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2006-05-14] () [Archivo no firmado]
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> Ningún archivo
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> Ningún archivo
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1-x32: [EPPShellEx] -> {509FE1AF-ADD5-49EC-BC55-7CF81FD16E78} => C:\Program Files (x86)\EPSON\Creativity Suite\Easy Photo Print\EPPShell.dll [2006-04-13] (SEIKO EPSON CORPORATION) [Archivo no firmado]
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll -> Ningún archivo
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2019-12-22] (Google LLC -> Google)
ContextMenuHandlers1: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} =>  -> Ningún archivo
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\DHAMPIRD\AppData\Local\MEGAsync\ShellExtX64.dll [2019-06-28] (Mega Limited -> )
ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2019-10-25] (Apple Inc. -> Apple Inc.)
ContextMenuHandlers1: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files (x86)\PowerISO\PWRISOSH.DLL [2008-07-07] (PowerISO Computing, Inc.) [Archivo no firmado]
ContextMenuHandlers1: [WDBackupMenuHandler] -> {C752BC82-C19A-4827-9C15-0996BA85C180} => C:\Program Files\Western Digital\WD SmartWare\\WDContextMenuHandler.dll [2016-04-19] (WESTERN DIGITAL TECHNOLOGIES -> Western Digital Technologies, Inc.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2013-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2013-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1: [WinZip] -> {E0D79304-84BE-11CE-9641-444553540000} => C:\Program Files\WinZip\wzshls64.dll [2012-10-12] (WinZip Computing -> WinZip Computing, S.L.)
ContextMenuHandlers2: [DaemonShellExtDrive] -> {A5415364-784A-41A5-B47A-D452909CA8FF} => C:\Program Files\DAEMON Tools Pro\DTShl64.dll [2017-05-17] (Disc Soft Ltd -> Disc Soft Ltd)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll -> Ningún archivo
ContextMenuHandlers3: [DaemonShellExtImage] -> {40966797-8FFE-46C8-9EF8-7003F33CCF0F} => C:\Program Files\DAEMON Tools Pro\DTShl64.dll [2017-05-17] (Disc Soft Ltd -> Disc Soft Ltd)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-12-05] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\DHAMPIRD\AppData\Local\MEGAsync\ShellExtX64.dll [2019-06-28] (Mega Limited -> )
ContextMenuHandlers3: [UnlockerShellExtension] -> {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} => C:\Program Files\Unlocker\UnlockerCOM.dll [2010-07-15] (Empty Loop -> )
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} =>  -> Ningún archivo
ContextMenuHandlers4-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2006-05-14] () [Archivo no firmado]
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2019-12-22] (Google LLC -> Google)
ContextMenuHandlers4: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} =>  -> Ningún archivo
ContextMenuHandlers4: [WinZip] -> {E0D79304-84BE-11CE-9641-444553540000} => C:\Program Files\WinZip\wzshls64.dll [2012-10-12] (WinZip Computing -> WinZip Computing, S.L.)
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-12-24] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-17] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> Ningún archivo
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll -> Ningún archivo
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-12-05] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [UltraISO] -> {AD392E40-428C-459F-961E-9B147782D099} => C:\Program Files (x86)\UltraISO\isoshl64.dll [2014-01-02] (SHENZHEN YIBO DIGITAL SYSTEMS DEVELOPMENT CO. LTD. -> EZB Systems, Inc.)
ContextMenuHandlers6: [UnlockerShellExtension] -> {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} => C:\Program Files\Unlocker\UnlockerCOM.dll [2010-07-15] (Empty Loop -> )
ContextMenuHandlers6: [WDBackupMenuHandler] -> {C752BC82-C19A-4827-9C15-0996BA85C180} => C:\Program Files\Western Digital\WD SmartWare\\WDContextMenuHandler.dll [2016-04-19] (WESTERN DIGITAL TECHNOLOGIES -> Western Digital Technologies, Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2013-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2013-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6: [WinZip] -> {E0D79304-84BE-11CE-9641-444553540000} => C:\Program Files\WinZip\wzshls64.dll [2012-10-12] (WinZip Computing -> WinZip Computing, S.L.)
ContextMenuHandlers1_S-1-5-21-3597564769-968549059-3920177797-1005: [FlexHEX Menu] -> {6514CF27-CAB1-4577-81A9-EC81618C5003} => C:\Program Files (x86)\FlexHEX\FlexCtx64.dll [2018-06-30] (Inv Softworks LLC -> Inv Softworks LLC)

==================== Codecs (Lista blanca) ====================

ADDITION PARTE2:

==================== Codecs (Lista blanca) ====================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Drivers32: [VIDC.X264] => C:\Windows\system32\x264vfw64.dll [3799552 2017-07-30] (x264vfw project) [Archivo no firmado]
HKLM\...\Drivers32: [VIDC.HFYU] => C:\Windows\system32\huffyuv.dll [55296 2005-01-22] () [Archivo no firmado]
HKLM\...\Drivers32: [VIDC.LAGS] => C:\Windows\system32\lagarith.dll [148992 2011-12-07] ( ) [Archivo no firmado]
HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\system32\xvidvfw.dll [311296 2018-01-28] () [Archivo no firmado]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\system32\ac3acm.acm [180736 2012-07-21] (fccHandler) [Archivo no firmado]
HKLM\...\Drivers32: [msacm.vorbis] => C:\Windows\SysWOW64\vorbis.acm [1554944 2015-03-11] (HMS hxxp://hp.vector.co.jp/authors/VA012897/) [Archivo no firmado]
HKLM\...\Drivers32: [VIDC.X264] => C:\Windows\SysWOW64\x264vfw.dll [3850240 2017-07-30] (x264vfw project) [Archivo no firmado]
HKLM\...\Drivers32: [VIDC.HFYU] => C:\Windows\SysWOW64\huffyuv.dll [39936 2004-05-18] (Disappearing Inc.) [Archivo no firmado]
HKLM\...\Drivers32: [VIDC.LAGS] => C:\Windows\SysWOW64\lagarith.dll [216064 2011-12-07] ( ) [Archivo no firmado]
HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [284672 2018-01-28] () [Archivo no firmado]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\SysWOW64\ac3acm.acm [122880 2012-07-21] (fccHandler) [Archivo no firmado]
HKLM\...\Drivers32: [msacm.lameacm] => C:\Windows\SysWOW64\lameACM.acm [473088 2015-02-25] (hxxp://www.mp3dev.org/) [Archivo no firmado]
HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [112128 2015-10-24] () [Archivo no firmado]

==================== Accesos directos & WMI ========================

(Las entradas pueden ser listadas para ser restauradas o eliminadas.)

Shortcut: C:\Users\DHAMPIRD\Desktop\SWITCH\CDNSP(USAR ESTE).lnk -> C:\Users\DHAMPIRD\Desktop\SWITCH\CDNSP(USAR ESTE).bat ()
Shortcut: C:\Users\DHAMPIRD\Desktop\SWITCH\NSCB.bat.lnk -> C:\SWITCH\NSC_BUILDER-master\NSCB.bat ()
Shortcut: C:\Users\DHAMPIRD\Desktop\PS4\+++++++5.05 LAST UPDATES (USAR ESTE ES EL ULTIMO)++++++.lnk -> C:\PS4\+5.05 LAST UPDATES+\5.05 XPLOIT SERVER LAN.bat ()
Shortcut: C:\Users\DHAMPIRD\Desktop\PS4\++++++XPLOIT HEN1.8+ VR 5.05.bat.lnk -> C:\PS4\+ps4-hen-VR 505+\5.05 XPLOIT SERVER LAN.bat ()
Shortcut: C:\Users\DHAMPIRD\Desktop\PS4\5.05 XPLOIT ALL PAYLOADS SERVER LAN.bat.lnk -> C:\PS4\ALL PAYLOADS\5.05 XPLOIT SERVER LAN.bat ()
Shortcut: C:\Users\DHAMPIRD\Desktop\PS4\5.05 XPLOIT HEN V.2.1.1 DEMO FF7.bat.lnk -> C:\PS4\ps4-hen-vtx-master-2.1\exploit\5.05 XPLOIT 4.1.bat ()
Shortcut: C:\Users\DHAMPIRD\Desktop\PS4\5.05 XPLOIT HEN V1.7 SERVER LAN.lnk -> C:\PS4\5.0.5 ps4-hen-vtx v1.7\exploit\5.05 XPLOIT HEN V1.7 SERVER LAN.bat ()
Shortcut: C:\Users\DHAMPIRD\Desktop\PS4\5.05 XPLOIT SERVER LAN 1.8 HEN.bat.lnk -> C:\PS4\HEN 1.8\5.05 XPLOIT SERVER LAN 1.8 HEN.bat ()
Shortcut: C:\Users\DHAMPIRD\Desktop\PS4\5.05 XPLOIT SERVER LAN.lnk -> C:\PS4\5.05\5.05 XPLOIT SERVER LAN.bat ()
Shortcut: C:\Users\DHAMPIRD\Desktop\PS4\5.05 XPLOIT VORTEX HEN AND MIRA SERVER LAN.lnk -> C:\PS4\5.05 Vortex and MIRA\5.05 XPLOIT SERVER LAN.bat ()
Shortcut: C:\Users\DHAMPIRD\Desktop\PS4\5.05 XVORTEX SIN MIRA XPLOIT SERVER LAN.lnk -> C:\PS4\5.05-hen-vtx\exploit\5.05 XPLOIT SERVER LAN.bat ()
Shortcut: C:\Users\DHAMPIRD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DVDFab 11 (x64)\Visitar o site do DVDFab.lnk -> hxxp://www.dvdfab.cn/?s=dvdfab11&p=x64&v=11.0.3.
ShortcutWithArgument: C:\Users\DHAMPIRD\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default

==================== Módulos cargados (Lista blanca) =============

2019-07-10 14:25 - 2013-04-25 04:01 - 000028160 _____ () [Archivo no firmado] C:\altera\13.0\quartus\bin64\ccl_ver.dll
2019-07-10 14:25 - 2013-04-25 02:50 - 000879616 _____ () [Archivo no firmado] C:\altera\13.0\quartus\bin64\dinkum_alt.dll
2019-03-14 15:54 - 2019-03-14 15:54 - 000038400 _____ () [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\giflib5.dll
2019-10-14 01:58 - 2019-10-14 01:58 - 000336384 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Plex Media Server\Codecs\20fed83-2561-windows-x86\ac3_decoder.dll
2019-10-14 01:58 - 2019-10-14 01:58 - 000750080 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Plex Media Server\Codecs\20fed83-2561-windows-x86\flv_decoder.dll
2019-10-14 01:58 - 2019-10-14 01:58 - 001558016 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Plex Media Server\Codecs\20fed83-2561-windows-x86\h264_decoder.dll
2019-10-14 01:58 - 2019-10-14 01:58 - 000817152 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Plex Media Server\Codecs\20fed83-2561-windows-x86\hevc_decoder.dll
2019-10-14 01:58 - 2019-10-14 01:58 - 000578560 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Plex Media Server\Codecs\20fed83-2561-windows-x86\mp3_decoder.dll
2019-10-14 01:58 - 2019-10-14 01:58 - 000547840 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Plex Media Server\Codecs\20fed83-2561-windows-x86\mpeg1video_decoder.dll
2019-10-14 01:58 - 2019-10-14 01:58 - 000559616 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Plex Media Server\Codecs\20fed83-2561-windows-x86\mpeg2video_decoder.dll
2019-10-14 01:58 - 2019-10-14 01:58 - 001267200 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Plex Media Server\Codecs\20fed83-2561-windows-x86\mpeg4_decoder.dll
2019-10-14 01:58 - 2019-10-14 01:58 - 001496576 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Plex Media Server\Codecs\20fed83-2561-windows-x86\msmpeg4v2_decoder.dll
2019-10-14 01:58 - 2019-10-14 01:58 - 001496576 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Plex Media Server\Codecs\20fed83-2561-windows-x86\msmpeg4v3_decoder.dll
2019-10-14 01:58 - 2019-10-14 01:58 - 000257536 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Plex Media Server\Codecs\20fed83-2561-windows-x86\svq1_decoder.dll
2019-10-14 01:58 - 2019-10-14 01:58 - 002117120 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Plex Media Server\Codecs\20fed83-2561-windows-x86\vc1_decoder.dll
2019-10-14 01:58 - 2019-10-14 01:58 - 001717248 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Plex Media Server\Codecs\20fed83-2561-windows-x86\vp9_decoder.dll
2019-10-14 01:58 - 2019-10-14 01:58 - 001496576 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Plex Media Server\Codecs\20fed83-2561-windows-x86\wmv1_decoder.dll
2019-10-14 01:58 - 2019-10-14 01:58 - 002117120 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Plex Media Server\Codecs\20fed83-2561-windows-x86\wmv3_decoder.dll
2020-01-26 18:21 - 2020-01-26 18:21 - 000114176 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_ctypes.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000173056 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_elementtree.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 001808896 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_hashlib.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000032256 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_multiprocessing.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000046080 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_psutil_windows.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000047616 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_socket.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 002241024 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_ssl.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000026112 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_yappi.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000080896 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\bz2.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000016384 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\common.time34.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000007680 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\hashobjs_ext.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000301568 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\PIL._imaging.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000169472 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\pyexpat.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 001084416 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\pysqlite2._sqlite.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000548864 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\pythoncom27.dll
2020-01-26 18:21 - 2020-01-26 18:21 - 000137728 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\pywintypes27.dll
2020-01-26 18:21 - 2020-01-26 18:21 - 000010752 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\select.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000020992 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\thumbnails_ext.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000689664 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\unicodedata.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000119808 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\usb_ext.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000128512 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32api.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000438784 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32com.shell.shell.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000011776 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32crypt.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000023040 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32event.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000149504 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32file.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000223232 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32gui.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000048128 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32inet.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000029696 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32pdh.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000027648 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32pipe.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000044032 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32process.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000020480 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32profile.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000136192 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32security.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000026624 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32ts.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000034816 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\windows.conditional.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000038400 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\windows.connectivity.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000071680 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\windows.device_monitor.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000109056 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\windows.volumes.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000020480 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\windows.winwrap.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 001325056 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._controls_.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 001489408 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._core_.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 001007104 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._gdi_.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000103424 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._html2.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000916992 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._misc_.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 001039872 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._windows_.pyd
2020-01-16 10:48 - 2020-01-16 10:48 - 002253824 _____ (deniszykov) [Archivo no firmado] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\deniszykov.615d72e4#\928e841fe9166debc89365544c6fd0ca\deniszykov.WebSocketListener.ni.dll
2017-05-17 09:26 - 2019-03-27 19:15 - 005200576 _____ (Disc Soft Ltd -> Disc Soft Ltd) [Archivo no firmado] C:\Program Files\DAEMON Tools Pro\Engine.dll
2019-02-12 14:36 - 2019-02-12 14:36 - 000189952 _____ (Elgato Systems GmbH) [Archivo no firmado] C:\Program Files\Elgato\GameCapture\EGCAPILite.dll
2019-02-12 14:22 - 2019-02-12 14:22 - 001029632 _____ (Elgato Systems GmbH) [Archivo no firmado] C:\Program Files\Elgato\SoundCapture\ElgatoVAD_Router.dll
2019-07-10 14:25 - 2013-04-25 02:50 - 000070144 _____ (Intel Corporation) [Archivo no firmado] C:\altera\13.0\quartus\bin64\tbbmalloc.dll
2019-07-10 14:25 - 2013-04-25 02:50 - 000024576 _____ (Intel Corporation) [Archivo no firmado] C:\altera\13.0\quartus\bin64\tbbmalloc_proxy.dll
2020-01-16 10:48 - 2020-01-16 10:48 - 000399360 _____ (Microsoft) [Archivo no firmado] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Microsoft.W8090224c#\0b0fe551de7802c797d6aa3555972abe\Microsoft.WindowsAPICodePack.ni.dll
2020-01-26 18:21 - 2020-01-26 18:21 - 003042816 _____ (Python Software Foundation) [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\python27.dll
2016-04-19 11:02 - 2016-04-19 11:02 - 001006080 ____R (Robert Simpson, et al.) [Archivo no firmado] C:\Program Files (x86)\Western Digital\WD SmartWare\System.Data.SQLite.dll
2019-03-14 15:54 - 2019-03-14 15:54 - 001742848 _____ (SQLite Development Team) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\sqlite3.dll
2017-02-06 14:25 - 2017-02-06 14:25 - 001412608 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Archivo no firmado] C:\Program Files (x86)\FileZilla Server\libeay32.dll
2017-02-06 14:25 - 2017-02-06 14:25 - 000365056 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Archivo no firmado] C:\Program Files (x86)\FileZilla Server\ssleay32.dll
2019-03-14 15:54 - 2019-03-14 15:54 - 002278912 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\LIBEAY32.dll
2019-03-14 15:54 - 2019-03-14 15:54 - 000386560 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\ssleay32.dll
2019-03-07 19:18 - 2019-03-07 19:18 - 000047616 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\bearer\qgenericbearer.dll
2019-03-07 19:17 - 2019-03-07 19:17 - 000031744 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\imageformats\qgif.dll
2019-03-07 19:37 - 2019-03-07 19:37 - 000040960 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\imageformats\qicns.dll
2019-03-07 19:17 - 2019-03-07 19:17 - 000032256 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\imageformats\qico.dll
2019-03-07 19:18 - 2019-03-07 19:18 - 000397312 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\imageformats\qjpeg.dll
2019-03-07 19:38 - 2019-03-07 19:38 - 000025600 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\imageformats\qsvg.dll
2019-03-07 19:37 - 2019-03-07 19:37 - 000025088 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\imageformats\qtga.dll
2019-03-07 19:37 - 2019-03-07 19:37 - 000374272 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\imageformats\qtiff.dll
2019-03-07 19:37 - 2019-03-07 19:37 - 000023552 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\imageformats\qwbmp.dll
2019-03-07 19:37 - 2019-03-07 19:37 - 000491520 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\imageformats\qwebp.dll
2019-03-07 19:19 - 2019-03-07 19:19 - 001449472 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\platforms\qwindows.dll
2019-04-17 11:27 - 2019-04-17 11:27 - 006129152 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\Qt5Core.dll
2019-03-07 19:14 - 2019-03-07 19:14 - 006459392 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\Qt5Gui.dll
2019-03-07 20:14 - 2019-03-07 20:14 - 000719360 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\Qt5Multimedia.dll
2019-03-07 19:14 - 2019-03-07 19:14 - 001314816 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\Qt5Network.dll
2019-03-07 20:33 - 2019-03-07 20:33 - 000317440 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\Qt5Positioning.dll
2019-03-07 19:17 - 2019-03-07 19:17 - 000318464 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\Qt5PrintSupport.dll
2019-03-07 20:04 - 2019-03-07 20:04 - 004006400 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\Qt5Qml.dll
2019-03-07 19:59 - 2019-03-07 19:59 - 003773952 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\Qt5Quick.dll
2019-03-07 20:01 - 2019-03-07 20:01 - 000072704 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\Qt5QuickWidgets.dll
2019-03-07 19:38 - 2019-03-07 19:38 - 000331264 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\Qt5Svg.dll
2019-03-07 20:18 - 2019-03-07 20:18 - 000113664 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\Qt5WebChannel.dll
2019-03-08 00:11 - 2019-03-08 00:11 - 077765120 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\Qt5WebEngineCore.dll
2019-03-08 00:32 - 2019-03-08 00:32 - 000227840 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\Qt5WebEngineWidgets.dll
2019-03-07 20:13 - 2019-03-07 20:13 - 000148992 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\Qt5WebSockets.dll
2019-03-07 19:16 - 2019-03-07 19:16 - 005579776 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\Qt5Widgets.dll
2019-03-07 19:18 - 2019-03-07 19:18 - 000137216 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Elgato\StreamDeck\styles\qwindowsvistastyle.dll
2020-01-26 18:21 - 2020-01-26 18:21 - 000202240 _____ (wxWidgets development team) [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wxbase30u_net_vc90_x64.dll
2020-01-26 18:21 - 2020-01-26 18:21 - 002831872 _____ (wxWidgets development team) [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wxbase30u_vc90_x64.dll
2020-01-26 18:21 - 2020-01-26 18:21 - 001654784 _____ (wxWidgets development team) [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wxmsw30u_adv_vc90_x64.dll
2020-01-26 18:21 - 2020-01-26 18:21 - 006542336 _____ (wxWidgets development team) [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wxmsw30u_core_vc90_x64.dll
2020-01-26 18:21 - 2020-01-26 18:21 - 000773632 _____ (wxWidgets development team) [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wxmsw30u_html_vc90_x64.dll
2020-01-26 18:21 - 2020-01-26 18:21 - 000137216 _____ (wxWidgets development team) [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wxmsw30u_webview_vc90_x64.dll

==================== Alternate Data Streams (Lista blanca) ========

==================== Modo Seguro (Lista blanca) ==================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Asociación (Lista blanca) =================

==================== Internet Explorer sitios de confianza/restringidos ==========

==================== Hosts contenido: =========================

(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)

2018-07-31 15:50 - 2020-01-21 19:30 - 000000312 ____R C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1       localhost
127.0.0.1  apps.corel.com
127.0.0.1  mc.corel.com
127.0.0.1  origin-mc.corel.com
127.0.0.1  iws.corel.com
127.0.0.1  tsccloud.cloudapp.net
127.0.0.1  ipm.corel.com
127.0.0.1  2.18.12.147
127.0.0.1  googletagmanager.com
127.0.0.1  corelstore.com
127.0.0.1  www.corelstore.com

==================== Otras Áreas ===========================

(Actualmente no existe una corrección automática para esta sección.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Python27\;C:\Python27\Scripts;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Common Files\Intel\Shared Files\cpp\bin\Intel64;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Toon Boom Animation\Toon Boom StoryboardProTrial\nt\bin;C:\Program Files (x86)\Common Files\Autodesk Shared\;C:\Program Files\Common Files\Autodesk Shared\;C:\Program Files (x86)\Autodesk\Backburner\;C:\Program Files (x86)\Skype\Phone\;C:\Program Files\nodejs\;C:\Program Files\Git\cmd;C:\Program Files (x86)\GtkSharp\2.12\bin;c:\users\dhampird\appdata\local\programs\python\python37\Scripts;C:\Program Files (x86)\QuickTime\QTSystem\;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\System32\OpenSSH\;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files (x86)\Windows Live\Shared;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\Control Panel\Desktop\\Wallpaper -> C:\Users\DHAMPIRD\AppData\Roaming\IrfanView\IrfanView_Wallpaper.bmp
DNS Servers: 213.60.205.175
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 0) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
mpsdrv => El servicio de Firewall de Windows no se está ejecutando.
MpsSvc => El servicio de Firewall de Windows no se está ejecutando.

==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==

(Si una entrada es incluida en el fixlist, será eliminada.)

HKLM\...\StartupApproved\StartupFolder: => "HDDHealth.lnk"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0"
HKLM\...\StartupApproved\Run32: => "Acrobat Assistant 8.0"
HKLM\...\StartupApproved\Run32: => "AdobeCS6ServiceManager"
HKLM\...\StartupApproved\Run32: => "SwitchBoard"
HKLM\...\StartupApproved\Run32: => "WD Drive Unlocker"
HKLM\...\StartupApproved\Run32: => "WD Quick View"
HKLM\...\StartupApproved\Run32: => "Autodesk Desktop App"
HKLM\...\StartupApproved\Run32: => "CloneCDTray"
HKLM\...\StartupApproved\Run32: => "MMTray"
HKLM\...\StartupApproved\Run32: => "Nikon Message Center 2"
HKLM\...\StartupApproved\Run32: => "PWRISOVM.EXE"
HKLM\...\StartupApproved\Run32: => "FileZilla Server Interface"
HKLM\...\StartupApproved\Run32: => "iSkysoft Helper Compact.exe"
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\StartupApproved\StartupFolder: => "MEGAsync.lnk"
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\StartupApproved\Run: => "DAEMON Tools Pro Agent"
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\StartupApproved\Run: => "GarminExpressTrayApp"
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\StartupApproved\Run: => "XperiaCompanionAgent"
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\StartupApproved\Run: => "iCloudServices"
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\StartupApproved\Run: => "EPSON Stylus DX4400 Series (Copiar 1)"
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\StartupApproved\Run: => "iCloudPhotos"
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\StartupApproved\Run: => "ApplePhotoStreams"
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\StartupApproved\Run: => "DisplayFusion"
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

==================== Reglas de firewall (Lista blanca) ================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

FirewallRules: [{A910962C-DF36-438E-8B6E-3D6390C6F084}] => (Allow) LPort=8920
FirewallRules: [{FE4C239C-F90D-45CF-9459-28D0E37CBCBF}] => (Allow) LPort=8096
FirewallRules: [{6E168321-8409-4523-8363-5ABECE40190F}] => (Allow) LPort=7359
FirewallRules: [{28D04831-3AEF-4C51-919A-E3E08C9E036C}] => (Allow) C:\altera\13.0\quartus\bin64\jtagserver.exe () [Archivo no firmado]
FirewallRules: [{48FFBA4C-0190-4DAF-9E24-D51CD82E05EB}] => (Allow) C:\altera\13.0\quartus\bin64\jtagserver.exe () [Archivo no firmado]
FirewallRules: [UDP Query User{F7E20FFC-CF94-433D-8960-876CE64D55B0}C:\intelfpga_pro\18.0\qprogrammer\bin64\quartus_pgmw.exe] => (Allow) C:\intelfpga_pro\18.0\qprogrammer\bin64\quartus_pgmw.exe () [Archivo no firmado]
FirewallRules: [TCP Query User{4CED3F85-D677-44A5-A1FD-ADCA92CAE4FE}C:\intelfpga_pro\18.0\qprogrammer\bin64\quartus_pgmw.exe] => (Allow) C:\intelfpga_pro\18.0\qprogrammer\bin64\quartus_pgmw.exe () [Archivo no firmado]
FirewallRules: [UDP Query User{89E27FDF-F20A-4EE1-AA7E-E6FC2DE37148}C:\intelfpga_pro\18.0\qprogrammer\sopc_builder\bin\system-console.exe] => (Allow) C:\intelfpga_pro\18.0\qprogrammer\sopc_builder\bin\system-console.exe () [Archivo no firmado]
FirewallRules: [TCP Query User{1A4FC502-A34D-4140-A31B-489E9B34A23C}C:\intelfpga_pro\18.0\qprogrammer\sopc_builder\bin\system-console.exe] => (Allow) C:\intelfpga_pro\18.0\qprogrammer\sopc_builder\bin\system-console.exe () [Archivo no firmado]
FirewallRules: [{06C7E44E-2A5D-46C6-A519-F257C70B8F43}] => (Allow) C:\intelFPGA_pro\18.0\qprogrammer\bin64\jtagserver.exe () [Archivo no firmado]
FirewallRules: [{5AF7263D-2A03-4E61-A25A-F4068A67A396}] => (Allow) C:\intelFPGA_pro\18.0\qprogrammer\bin64\jtagserver.exe () [Archivo no firmado]
FirewallRules: [UDP Query User{E12C013D-BC69-4B53-8D8D-F7BC54515385}C:\program files\dvdfab 11\dvdfab64.exe] => (Allow) C:\program files\dvdfab 11\dvdfab64.exe (DVDFab Software Inc. -> DVDFab.cn)
FirewallRules: [TCP Query User{69A544C3-FB8C-4FF7-B40A-70F9197EAFED}C:\program files\dvdfab 11\dvdfab64.exe] => (Allow) C:\program files\dvdfab 11\dvdfab64.exe (DVDFab Software Inc. -> DVDFab.cn)
FirewallRules: [{0873C46A-2B21-4210-BD69-EB463BA277B2}] => (Allow) C:\Program Files (x86)\Sony\PS4 Remote Play\RemotePlay.exe (Sony Interactive Entertainment Inc. -> Sony Interactive Entertainment Inc.)
FirewallRules: [{C485F2D2-8F75-4057-9652-057C13D9D87B}] => (Allow) LPort=1900
FirewallRules: [{26CEC78D-A341-46BA-8FFD-7F51029E9233}] => (Allow) LPort=2869
FirewallRules: [{EC4EE69E-4A29-4A8C-AFA6-594EA46BCB42}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{3CF981F4-5AE6-48ED-B734-ABEDF6FBBCAC}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.)
FirewallRules: [TCP Query User{F9ABC6ED-E92B-4E98-A239-74A9A1A5BA49}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.)
FirewallRules: [UDP Query User{15D981A0-709C-4F1B-AD64-71260343D651}C:\program files (x86)\qbittorrent\qbittorrent.exe] => (Block) C:\program files (x86)\qbittorrent\qbittorrent.exe () [Archivo no firmado]
FirewallRules: [TCP Query User{2C0DE502-9E9D-4665-9CA5-7DCA6576BFB0}C:\program files (x86)\qbittorrent\qbittorrent.exe] => (Block) C:\program files (x86)\qbittorrent\qbittorrent.exe () [Archivo no firmado]
FirewallRules: [{8820A744-D333-47BE-A994-34CD973A6186}] => (Allow) C:\Program Files\Elgato\4KCaptureUtility\4KCaptureUtility.exe (Corsair Memory, Inc. -> Elgato Systems)
FirewallRules: [{22BE7613-CEAE-4731-9FB9-D4E9D81B8017}] => (Allow) C:\Program Files\Elgato\ControlCenter\ControlCenter.exe (Corsair Memory, Inc. -> Elgato Systems)
FirewallRules: [{75DA909F-1E1B-4FDF-A9A1-52328062F332}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{E99550B7-BBB0-480D-98FE-D747F41BDC6A}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{8039F889-5686-40C7-BF23-743DF6188907}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A82583A1-9A97-4B1A-9B69-E240879DFF09}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0310FDAD-6257-4279-9C72-927D0143B4AB}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{9A9135D4-144B-44A9-8D9E-166A72A81076}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1E1CAF2B-1029-4305-AC9E-D7BA52147D73}] => (Allow) C:\Users\DHAMPIRD\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.) [Archivo no firmado]
FirewallRules: [{A3E1D6C0-A220-4E1B-A8EF-AE7A0D95E638}] => (Allow) C:\Users\DHAMPIRD\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.) [Archivo no firmado]
FirewallRules: [TCP Query User{034CD533-512E-40CC-94CD-A60C15EFDE3D}C:\program files (x86)\myihome\app\myihome-server.exe] => (Allow) C:\program files (x86)\myihome\app\myihome-server.exe () [Archivo no firmado]
FirewallRules: [UDP Query User{88B89EF8-956A-484A-83E6-6C6FDEEE0FF9}C:\program files (x86)\myihome\app\myihome-server.exe] => (Allow) C:\program files (x86)\myihome\app\myihome-server.exe () [Archivo no firmado]
FirewallRules: [{293054B4-B81C-4DC7-A93C-05DF7E9DA3A5}] => (Allow) C:\Program Files (x86)\Smith Micro\Anime Studio Pro 9\Anime Studio Pro.exe (Smith Micro Software, Inc. -> Smith Micro Software, Inc.)
FirewallRules: [{6DA6A2F3-81D0-4D36-93D8-8D90B47071BC}] => (Allow) C:\Program Files (x86)\Smith Micro\Anime Studio Pro 9\Anime Studio Pro.exe (Smith Micro Software, Inc. -> Smith Micro Software, Inc.)
FirewallRules: [{2AE9DDF9-57EF-4CEE-B277-97AE68D9DC59}] => (Allow) C:\Program Files\Smith Micro\Anime Studio Pro 9\Anime Studio Pro.exe (Smith Micro Software, Inc. -> Smith Micro Software, Inc.)
FirewallRules: [{076E79AF-81F1-4883-AE5C-399525C3CE4A}] => (Allow) C:\Program Files\Smith Micro\Anime Studio Pro 9\Anime Studio Pro.exe (Smith Micro Software, Inc. -> Smith Micro Software, Inc.)
FirewallRules: [TCP Query User{23D5689C-E46C-43C9-9D9D-014D9E448813}C:\program files (x86)\western digital\wd discovery software\wd discovery.exe] => (Allow) C:\program files (x86)\western digital\wd discovery software\wd discovery.exe () [Archivo no firmado]
FirewallRules: [UDP Query User{1D485239-FA34-476E-8648-3D504A063EDE}C:\program files (x86)\western digital\wd discovery software\wd discovery.exe] => (Allow) C:\program files (x86)\western digital\wd discovery software\wd discovery.exe () [Archivo no firmado]
FirewallRules: [{0B28550C-03C0-4E01-823A-16B137414138}] => (Allow) C:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64server.exe () [Archivo no firmado]
FirewallRules: [{891D1AD9-35E5-48E9-9DCC-C3F8C96D2F7F}] => (Allow) C:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64server.exe () [Archivo no firmado]
FirewallRules: [{BBF97C9C-ADB5-4CC0-BD52-CE5984B0B859}] => (Allow) C:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64.exe (NVIDIA Corporation) [Archivo no firmado]
FirewallRules: [{51D62331-33DA-4272-BAB2-F0681EB76E12}] => (Allow) C:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64.exe (NVIDIA Corporation) [Archivo no firmado]
FirewallRules: [TCP Query User{A11BC32A-A697-4F2B-A36F-5BC57B4AA21E}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [UDP Query User{B8733577-D12E-4A2B-A747-F9F1893EB094}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{024DE33B-D02F-4F85-AEB9-051AE98F46B0}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.)
FirewallRules: [UDP Query User{9AAFC3E1-D040-4E10-8579-1EF242A71559}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.)
FirewallRules: [TCP Query User{2EDBE87A-2F65-4B64-9D19-4742968CDD4C}C:\program files\comicrack\comicrack.exe] => (Allow) C:\program files\comicrack\comicrack.exe () [Archivo no firmado]
FirewallRules: [UDP Query User{5DA6532C-D6C4-4535-B86F-668A5AEDF33E}C:\program files\comicrack\comicrack.exe] => (Allow) C:\program files\comicrack\comicrack.exe () [Archivo no firmado]
FirewallRules: [TCP Query User{67E6995C-8C9A-4153-8255-E84E9269BFDF}C:\program files (x86)\nordic games\deadfall adventures\binaries\win32\advgame-win32-shipping.exe] => (Allow) C:\program files (x86)\nordic games\deadfall adventures\binaries\win32\advgame-win32-shipping.exe () [Archivo no firmado]
FirewallRules: [UDP Query User{199CF609-674F-4797-B7A3-8DF72D7D3F6F}C:\program files (x86)\nordic games\deadfall adventures\binaries\win32\advgame-win32-shipping.exe] => (Allow) C:\program files (x86)\nordic games\deadfall adventures\binaries\win32\advgame-win32-shipping.exe () [Archivo no firmado]
FirewallRules: [{D578E6C0-4858-4082-A82E-F40BFABD609E}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{41F3BE84-2F0B-4CA8-834B-688E8E1D98C9}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{400ECE04-467A-46D8-AC24-AFBBD3EDA01E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{5AA56289-294C-4172-91FA-3F899A16BB90}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{D910058D-2CAF-4602-9722-428C0DC1AAEC}C:\program files\autodesk\3ds max 2015\3dsmax.exe] => (Allow) C:\program files\autodesk\3ds max 2015\3dsmax.exe (Autodesk, Inc -> Autodesk, Inc.)
FirewallRules: [UDP Query User{17D0BC4E-A4BF-4863-A09D-8116A395B865}C:\program files\autodesk\3ds max 2015\3dsmax.exe] => (Allow) C:\program files\autodesk\3ds max 2015\3dsmax.exe (Autodesk, Inc -> Autodesk, Inc.)
FirewallRules: [TCP Query User{2226F5C0-7A9A-473B-80F2-1460F928D494}C:\daphne\daphneloader.exe] => (Allow) C:\daphne\daphneloader.exe () [Archivo no firmado]
FirewallRules: [UDP Query User{E3AB375A-ABD9-40DB-BF4B-B1ECC630FC90}C:\daphne\daphneloader.exe] => (Allow) C:\daphne\daphneloader.exe () [Archivo no firmado]
FirewallRules: [{C325CF06-D365-4B3E-9A9E-B8BAEF1867D7}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{914E4CE1-858B-46D3-B45D-AD7BF3D8B100}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{504F69D2-E5D5-43D1-9970-D852F59E21A7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\FINAL FANTASY VII\FF7_Launcher.exe (Square Enix Ltd. -> )
FirewallRules: [{D179DBB9-ED62-42B6-8AB8-D618B09CA864}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\FINAL FANTASY VII\FF7_Launcher.exe (Square Enix Ltd. -> )
FirewallRules: [TCP Query User{A018B2A7-133B-4C89-94A9-46A5EB2E8B76}C:\program files (x86)\xbox\ccxgui\ccxstream.exe] => (Allow) C:\program files (x86)\xbox\ccxgui\ccxstream.exe () [Archivo no firmado]
FirewallRules: [UDP Query User{09A3A78D-70DF-433F-B60C-7F9B55EF951B}C:\program files (x86)\xbox\ccxgui\ccxstream.exe] => (Allow) C:\program files (x86)\xbox\ccxgui\ccxstream.exe () [Archivo no firmado]
FirewallRules: [{A517A062-DFA5-47F2-B624-25220FCE481B}] => (Allow) C:\Program Files (x86)\Sony Mobile\Emma\Emma.exe (Sony Mobile Communications -> ) [Archivo no firmado]
FirewallRules: [{44E2DF93-9447-44E1-8717-82652FB9A80E}] => (Allow) C:\Program Files (x86)\Sony Mobile\Emma\Emma.exe (Sony Mobile Communications -> ) [Archivo no firmado]
FirewallRules: [{FD249A69-0AA3-4DD2-9BF5-17094AC5A78A}] => (Block) %ProgramFiles% (x86)\Nero\Nero 10\Nero Burning ROM\nero.exe Ningún archivo
FirewallRules: [TCP Query User{4659D469-4091-4F5E-8C31-0B69AF83B828}C:\program files (x86)\myihome\app\myihome-server.exe] => (Allow) C:\program files (x86)\myihome\app\myihome-server.exe () [Archivo no firmado]
FirewallRules: [UDP Query User{15A8C5A7-EFAD-41BE-9B74-B073F0C35368}C:\program files (x86)\myihome\app\myihome-server.exe] => (Allow) C:\program files (x86)\myihome\app\myihome-server.exe () [Archivo no firmado]
FirewallRules: [TCP Query User{226D935C-BD56-4BA6-A35D-442FFFC676B9}C:\program files (x86)\xlink kai\kaiengine.exe] => (Allow) C:\program files (x86)\xlink kai\kaiengine.exe (hxxp://www.teamxlink.co.uk (Team XLink)) [Archivo no firmado]
FirewallRules: [UDP Query User{6D202FE9-2F12-4AE8-A9FA-49CEE61A66A5}C:\program files (x86)\xlink kai\kaiengine.exe] => (Allow) C:\program files (x86)\xlink kai\kaiengine.exe (hxxp://www.teamxlink.co.uk (Team XLink)) [Archivo no firmado]
FirewallRules: [{8FB96662-25D8-4338-AADD-E018B2F79E5E}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Converter Studio\Video Converter Studio.exe (Apowersoft Ltd -> Apowersoft)
FirewallRules: [{3AA6228C-A1D0-4EE8-8302-79D159D9152A}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Converter Studio\Video Converter Studio.exe (Apowersoft Ltd -> Apowersoft)
FirewallRules: [TCP Query User{B5CBA079-DBF8-4CF0-9BED-555716741450}C:\program files (x86)\ccxgui\ccxstream.exe] => (Allow) C:\program files (x86)\ccxgui\ccxstream.exe () [Archivo no firmado]
FirewallRules: [UDP Query User{C3DB772D-0145-4160-9A0F-0AC13DBAA891}C:\program files (x86)\ccxgui\ccxstream.exe] => (Allow) C:\program files (x86)\ccxgui\ccxstream.exe () [Archivo no firmado]
FirewallRules: [TCP Query User{2C250868-1A41-4ACF-B6EF-39E922225E31}C:\program files\opentoonz 1.1\opentoonz_1.1.exe] => (Allow) C:\program files\opentoonz 1.1\opentoonz_1.1.exe () [Archivo no firmado]
FirewallRules: [UDP Query User{EF858506-27CD-4D64-845B-70E4B00E02B7}C:\program files\opentoonz 1.1\opentoonz_1.1.exe] => (Allow) C:\program files\opentoonz 1.1\opentoonz_1.1.exe () [Archivo no firmado]
FirewallRules: [{CE8C06F3-E02C-4534-BA26-6C3E5722DA3F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SteamVRPerformanceTest\bin\win64\vr.exe () [Archivo no firmado]
FirewallRules: [{08F95406-5A80-45DE-A7FB-5FDD5CDD90F8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SteamVRPerformanceTest\bin\win64\vr.exe () [Archivo no firmado]
FirewallRules: [{4ADDB89E-58C8-4B0F-BB86-88883FDFF284}] => (Allow) C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanion.exe (Sony Mobile Communications AB -> Sony) [Archivo no firmado]
FirewallRules: [{78114A02-C3AD-4B36-ACB6-FC8E194F7EFB}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{3F7A43C4-9F1A-45BF-A1C3-64BF65027611}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{1588D06C-9DD9-49B8-B0C0-68C622A8B544}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe (hxxp://www.emule-project.net) [Archivo no firmado]
FirewallRules: [UDP Query User{E1C74976-7AA0-4C1C-91FD-F10FE4BEE2A0}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe (hxxp://www.emule-project.net) [Archivo no firmado]
FirewallRules: [{9F04F4F8-4D3F-4C6A-AB2E-4DAD07467E87}] => (Allow) LPort=85
FirewallRules: [{5357BC53-36D2-4D95-BD7E-5DF6DB0D566E}] => (Allow) LPort=1985
FirewallRules: [{AB891726-68F1-4D89-BF56-791F2752E148}] => (Allow) C:\Program Files (x86)\qBittorrent\qbittorrent.exe () [Archivo no firmado]
FirewallRules: [{D19B2E54-86B0-493A-89A1-8F211B36DB89}] => (Allow) C:\Program Files (x86)\qBittorrent\qbittorrent.exe () [Archivo no firmado]
FirewallRules: [{74A91729-9FDD-4437-851B-53E01F90F989}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{DB04B0DC-16C1-47AA-9830-C25F3E599F85}] => (Block) c:\Program Files\Corel\CorelDRAW Graphics Suite X8\Programs64\CorelDrw.exe Ningún archivo
FirewallRules: [{9B6F6A02-2E4E-40B1-8854-0BACC2D0BEEE}] => (Block) c:\Program Files\Corel\CorelDRAW Graphics Suite X8\Programs64\CorelPP.exe Ningún archivo
FirewallRules: [TCP Query User{AD3C2C83-D129-445E-8DE2-2729483C143A}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe (Apache Software Foundation) [Archivo no firmado]
FirewallRules: [UDP Query User{07B63E6E-8299-4CD8-A080-47234F49EAEF}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe (Apache Software Foundation) [Archivo no firmado]
FirewallRules: [TCP Query User{D9CB2431-0AE9-4A59-BBA9-A4B4D8B3D67A}C:\program files\nodejs\node.exe] => (Allow) C:\program files\nodejs\node.exe (Node.js Foundation -> Node.js)
FirewallRules: [UDP Query User{E2523B0F-3DDA-40CF-8EC8-11DF200C16A9}C:\program files\nodejs\node.exe] => (Allow) C:\program files\nodejs\node.exe (Node.js Foundation -> Node.js)
FirewallRules: [{5D9FCA19-C56B-4D99-A364-B2B7D8753363}] => (Allow) C:\Program Files\Unity\Editor\Unity.exe (Unity Technologies SF -> Unity Technologies ApS)
FirewallRules: [{78040107-A417-4322-AC41-09906EA2A2FC}] => (Block) C:\Program Files\Unity\Editor\Unity.exe (Unity Technologies SF -> Unity Technologies ApS)
FirewallRules: [{245B9D3E-1A6B-4C43-A530-E449BEE78EEC}] => (Allow) C:\Program Files\Unity\Editor\Data\Tools\nodejs\node.exe (Node.js Foundation -> Node.js) [Archivo no firmado]
FirewallRules: [{B1B6906D-C580-45FB-B69A-37A6B9F56A48}] => (Block) C:\Program Files\Unity\Editor\Data\Tools\nodejs\node.exe (Node.js Foundation -> Node.js) [Archivo no firmado]
FirewallRules: [TCP Query User{651232D9-D998-4547-B296-A86E8762E931}C:\program files\unity\editor\unity.exe] => (Allow) C:\program files\unity\editor\unity.exe (Unity Technologies SF -> Unity Technologies ApS)
FirewallRules: [UDP Query User{0FFC5579-C2B5-4610-8CD9-EF8012E984F1}C:\program files\unity\editor\unity.exe] => (Allow) C:\program files\unity\editor\unity.exe (Unity Technologies SF -> Unity Technologies ApS)
FirewallRules: [TCP Query User{B0260A66-5EF8-454B-9A6A-C2024B92B96C}C:\program files (x86)\port forwarding wizard\bin\port forwarding wizard.exe] => (Allow) C:\program files (x86)\port forwarding wizard\bin\port forwarding wizard.exe (upRedSun) [Archivo no firmado]
FirewallRules: [UDP Query User{B0BEB1BC-E43E-4059-8F06-6897ACBA4C48}C:\program files (x86)\port forwarding wizard\bin\port forwarding wizard.exe] => (Allow) C:\program files (x86)\port forwarding wizard\bin\port forwarding wizard.exe (upRedSun) [Archivo no firmado]
FirewallRules: [TCP Query User{901AB1B2-19CE-4E21-9145-931A84433703}C:\python27\python.exe] => (Allow) C:\python27\python.exe () [Archivo no firmado]
FirewallRules: [UDP Query User{61066576-34C7-44E3-AAC6-48119E753E2B}C:\python27\python.exe] => (Allow) C:\python27\python.exe () [Archivo no firmado]
FirewallRules: [TCP Query User{BF2EBBBA-AC7C-45C0-9A74-134971FDFE65}C:\program files (x86)\filezilla ftp client\filezilla.exe] => (Allow) C:\program files (x86)\filezilla ftp client\filezilla.exe (Tim Kosse -> FileZilla Project)
FirewallRules: [UDP Query User{B27A63B9-0BBC-4024-ABB1-983FF3E34DCB}C:\program files (x86)\filezilla ftp client\filezilla.exe] => (Allow) C:\program files (x86)\filezilla ftp client\filezilla.exe (Tim Kosse -> FileZilla Project)
FirewallRules: [TCP Query User{37ECEF56-C5C8-42AB-9DDD-3AC9A27545E4}C:\program files (x86)\portforward\port forward network utilities\pfportchecker.exe] => (Allow) C:\program files (x86)\portforward\port forward network utilities\pfportchecker.exe (Portforward, LLC -> portforward.com)
FirewallRules: [UDP Query User{55715CB0-F30F-49CD-B2C6-E2D595E3816C}C:\program files (x86)\portforward\port forward network utilities\pfportchecker.exe] => (Allow) C:\program files (x86)\portforward\port forward network utilities\pfportchecker.exe (Portforward, LLC -> portforward.com)
FirewallRules: [{A26CBCAC-F52C-44A1-827F-83C3CB376FA5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{0BA17663-C54B-462F-8F9C-E8376DAD67B6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{028B308E-F14A-40FA-90AB-7EACD43D4492}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{308F52E2-46A9-472C-BE19-02FD5D082462}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{AA14617B-21B4-4F3B-99F2-0C3187B10F8B}] => (Allow) C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe (Tim Kosse -> FileZilla Project)
FirewallRules: [{7E2556F9-6AA6-4D80-8449-CAD40F645348}] => (Allow) C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe (Tim Kosse -> FileZilla Project)
FirewallRules: [{42E93D13-DD7A-40CA-BFB1-4ED3BA97805F}] => (Allow) C:\Program Files (x86)\FileZilla Server\FileZilla Server Interface.exe (Tim Kosse -> FileZilla Project)
FirewallRules: [{E7F70AD0-4F13-4C96-902C-C781EDB16F88}] => (Allow) C:\Program Files (x86)\FileZilla Server\FileZilla Server Interface.exe (Tim Kosse -> FileZilla Project)
FirewallRules: [{B8700230-5A61-4939-8079-98D2A7CB3A03}] => (Allow) C:\Program Files (x86)\FileZilla Server\FileZilla Server Interface.exe (Tim Kosse -> FileZilla Project)
FirewallRules: [{FA3FF011-3990-486F-88CA-DDBAC963ACB9}] => (Allow) C:\Program Files (x86)\FileZilla Server\FileZilla Server Interface.exe (Tim Kosse -> FileZilla Project)
FirewallRules: [{044C7D0D-6015-4004-8011-5A5D5F7E4DCD}] => (Allow) C:\Program Files (x86)\FileZilla Server\FileZilla Server Interface.exe (Tim Kosse -> FileZilla Project)
FirewallRules: [{171970D4-E484-433D-8AF5-94AE2CC4857B}] => (Allow) C:\Program Files (x86)\FileZilla Server\FileZilla Server Interface.exe (Tim Kosse -> FileZilla Project)
FirewallRules: [{64D51F7C-6B49-45C7-BA79-85A4CE5BD946}] => (Allow) C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe (Tim Kosse -> FileZilla Project)
FirewallRules: [{7C428389-E6F6-4776-99DE-E720F4DF8DE1}] => (Allow) C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe (Tim Kosse -> FileZilla Project)
FirewallRules: [{181F5B93-633C-40E9-95A9-CDB3243E4A22}] => (Allow) C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe (Tim Kosse -> FileZilla Project)
FirewallRules: [{029B4BA6-A96B-4A3B-A1B4-FA14B6D8D2ED}] => (Allow) C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe (Tim Kosse -> FileZilla Project)
FirewallRules: [TCP Query User{3A000800-34C3-4B95-B7B4-486F0618C721}C:\program files (x86)\flashfxp 4\flashfxp.exe] => (Allow) C:\program files (x86)\flashfxp 4\flashfxp.exe (OpenSight Software LLC -> OpenSight Software, LLC) [Archivo no firmado]
FirewallRules: [UDP Query User{60203D46-8875-4FDD-B136-0F99FFFADCF1}C:\program files (x86)\flashfxp 4\flashfxp.exe] => (Allow) C:\program files (x86)\flashfxp 4\flashfxp.exe (OpenSight Software LLC -> OpenSight Software, LLC) [Archivo no firmado]
FirewallRules: [TCP Query User{1059EAD2-8003-4E43-97D6-59A5DDA8BB83}C:\switch\ndownloader uplauncher\ndownloader.exe] => (Allow) C:\switch\ndownloader uplauncher\ndownloader.exe (SNCF) [Archivo no firmado]
FirewallRules: [UDP Query User{2F87C482-21AD-42E1-91E8-59ECEFC8F03E}C:\switch\ndownloader uplauncher\ndownloader.exe] => (Allow) C:\switch\ndownloader uplauncher\ndownloader.exe (SNCF) [Archivo no firmado]
FirewallRules: [{970DBAA2-98E9-4652-861F-7718CB7C1BAA}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe (Plex, Inc -> Plex, Inc.)
FirewallRules: [{BD08AB63-492C-4268-BF03-F736D13DC3C1}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe (Plex, Inc -> Python Software Foundation)
FirewallRules: [{365B0F2A-6664-448D-8C70-9AC67B4E6A37}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\Plex DLNA Server.exe (Plex, Inc -> Plex, Inc.)
FirewallRules: [{E6A537E9-EA98-421B-AF6E-4BBE001EE97F}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\Plex Tuner Service.exe (Plex, Inc -> )
FirewallRules: [{8BD54E0C-7D7D-494E-93C3-ACAF6AFF644D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{7C986A2F-6BFD-48F4-A84C-3EEBBF073A84}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{FACA2E5C-4F7E-41BB-8C37-F55D0AE383B1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{AFEBA751-0C73-4538-8083-375F9644F91C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{387A957C-ADEC-4390-9D7A-8EE5447151C0}] => (Allow) LPort=1688
FirewallRules: [{2CFE1E1B-F0A0-417E-B73A-C6FBD82D63D3}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
FirewallRules: [{5D2FB513-68F0-4040-ABA7-285728FA4ED5}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{A9AF1CA7-9D97-408D-9A50-545BC48285B1}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{B8B2F446-F29B-45BF-BB24-2CC9151485F3}] => (Allow) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.EXE (Logitech Inc -> Logitech, Inc.)

==================== Puntos de Restauración =========================

ADDITION PARTE3:

==================== Puntos de Restauración =========================

15-01-2020 01:57:42 Windows Update
20-01-2020 21:08:00 Removed Corel Graphics - Windows Shell Extension.
20-01-2020 21:10:05 Removed Corel Graphics - Windows Shell Extension 32 Bit Keys.

==================== Dispositivos defectuosos en el Administrador de dispositivos ============


==================== Errores del registro de eventos: ========================

Errores de aplicación:
==================
Error: (01/26/2020 06:39:29 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7676,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (01/26/2020 06:28:55 PM) (Source: VSTO 4.0) (EventID: 4096) (User: )
Description: URI de personalización: file:///C:/ProgramData/Logishrd/LogiOptions/Plugins/ca7c0911-fbf7-4e87-9c23-25987358303b/Content/publish/LogiOptionsWordAddin.vsto
Excepción: Se está intentando desinstalar una personalización que no se ha instalado en este equipo o se ha desinstalado ya. Corrija los valores de parámetro e inténtelo de nuevo.


************** Texto de la excepción **************
Microsoft.VisualStudio.Tools.Office.Runtime.SolutionInstallerException: Se está intentando desinstalar una personalización que no se ha instalado en este equipo o se ha desinstalado ya. Corrija los valores de parámetro e inténtelo de nuevo.
   en Microsoft.VisualStudio.Tools.Office.Runtime.SolutionInstaller.ProcessInstallerOperation(ClickOnceAddInDeploymentManager clickOnceAddInDeploymentManager, OfficeAddInDeploymentManager officeAddInDeploymentManager, AddInInformation& info)
   en Microsoft.VisualStudio.Tools.Office.Runtime.SolutionInstaller.ProcessInstallerOperation(Boolean uninstall, Boolean silent, Uri manifest, Int32& errorCode, String& errorMessage)


************** Ensamblados cargados **************
mscorlib
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.4075.0 built by: NET48REL1LAST
    Código base: file:///C:/Windows/Microsoft.NET/Framework64/v4.0.30319/mscorlib.dll
----------------------------------------
Microsoft.VisualStudio.Tools.Office.Runtime
    Versión del ensamblado: 10.0.0.0
    Versión Win32: 10.0.50903.0
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/Microsoft.VisualStudio.Tools.Office.Runtime/v4.0_10.0.0.0__b03f5f7f11d50a3a/Microsoft.VisualStudio.Tools.Office.Runtime.dll
----------------------------------------
System.Core
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.4110.0 built by: NET48REL1LAST_B
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/System.Core/v4.0_4.0.0.0__b77a5c561934e089/System.Core.dll
----------------------------------------
System
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.4001.0 built by: NET48REL1LAST_C
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/System/v4.0_4.0.0.0__b77a5c561934e089/System.dll
----------------------------------------
Microsoft.VisualStudio.Tools.Applications.Hosting
    Versión del ensamblado: 10.0.0.0
    Versión Win32: 10.0.50903.0
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/Microsoft.VisualStudio.Tools.Applications.Hosting/v4.0_10.0.0.0__b03f5f7f11d50a3a/Microsoft.VisualStudio.Tools.Applications.Hosting.dll
----------------------------------------
System.Windows.Forms
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.4042.0 built by: NET48REL1LAST_C
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/System.Windows.Forms/v4.0_4.0.0.0__b77a5c561934e089/System.Windows.Forms.dll
----------------------------------------
System.Drawing
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.3752.0 built by: NET48REL1
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/System.Drawing/v4.0_4.0.0.0__b03f5f7f11d50a3a/System.Drawing.dll
----------------------------------------
Microsoft.VisualStudio.Tools.Applications.ServerDocument
    Versión del ensamblado: 10.0.0.0
    Versión Win32: 10.0.50903.0
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/Microsoft.VisualStudio.Tools.Applications.ServerDocument/v4.0_10.0.0.0__b03f5f7f11d50a3a/Microsoft.VisualStudio.Tools.Applications.ServerDocument.dll
----------------------------------------
mscorlib.resources
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.3752.0 built by: NET48REL1
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/mscorlib.resources/v4.0_4.0.0.0_es_b77a5c561934e089/mscorlib.resources.dll
----------------------------------------
Microsoft.VisualStudio.Tools.Office.Runtime.resources
    Versión del ensamblado: 10.0.0.0
    Versión Win32: 10.0.50903.0
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/Microsoft.VisualStudio.Tools.Office.Runtime.resources/v4.0_10.0.0.0_es_b03f5f7f11d50a3a/Microsoft.VisualStudio.Tools.Office.Runtime.resources.dll
----------------------------------------
System.Deployment
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.3752.0 built by: NET48REL1
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/System.Deployment/v4.0_4.0.0.0__b03f5f7f11d50a3a/System.Deployment.dll
----------------------------------------
Microsoft.VisualStudio.Tools.Applications.ServerDocument.resources
    Versión del ensamblado: 10.0.0.0
    Versión Win32: 10.0.50903.0
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/Microsoft.VisualStudio.Tools.Applications.ServerDocument.resources/v4.0_10.0.0.0_es_b03f5f7f11d50a3a/Microsoft.VisualStudio.Tools.Applications.ServerDocument.resources.dll
----------------------------------------
Microsoft.VisualStudio.Tools.Applications.Runtime
    Versión del ensamblado: 10.0.0.0
    Versión Win32: 10.0.50903.0
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/Microsoft.VisualStudio.Tools.Applications.Runtime/v4.0_10.0.0.0__b03f5f7f11d50a3a/Microsoft.VisualStudio.Tools.Applications.Runtime.dll
----------------------------------------

Error: (01/26/2020 06:28:53 PM) (Source: VSTO 4.0) (EventID: 4096) (User: )
Description: URI de personalización: file:///C:/ProgramData/Logishrd/LogiOptions/Plugins/abc9594a-1092-4a3a-8a1d-d05e602a10b8/Content/publish/LogiOptionsPowerPointAddin.vsto
Excepción: Se está intentando desinstalar una personalización que no se ha instalado en este equipo o se ha desinstalado ya. Corrija los valores de parámetro e inténtelo de nuevo.


************** Texto de la excepción **************
Microsoft.VisualStudio.Tools.Office.Runtime.SolutionInstallerException: Se está intentando desinstalar una personalización que no se ha instalado en este equipo o se ha desinstalado ya. Corrija los valores de parámetro e inténtelo de nuevo.
   en Microsoft.VisualStudio.Tools.Office.Runtime.SolutionInstaller.ProcessInstallerOperation(ClickOnceAddInDeploymentManager clickOnceAddInDeploymentManager, OfficeAddInDeploymentManager officeAddInDeploymentManager, AddInInformation& info)
   en Microsoft.VisualStudio.Tools.Office.Runtime.SolutionInstaller.ProcessInstallerOperation(Boolean uninstall, Boolean silent, Uri manifest, Int32& errorCode, String& errorMessage)


************** Ensamblados cargados **************
mscorlib
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.4075.0 built by: NET48REL1LAST
    Código base: file:///C:/Windows/Microsoft.NET/Framework64/v4.0.30319/mscorlib.dll
----------------------------------------
Microsoft.VisualStudio.Tools.Office.Runtime
    Versión del ensamblado: 10.0.0.0
    Versión Win32: 10.0.50903.0
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/Microsoft.VisualStudio.Tools.Office.Runtime/v4.0_10.0.0.0__b03f5f7f11d50a3a/Microsoft.VisualStudio.Tools.Office.Runtime.dll
----------------------------------------
System.Core
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.4110.0 built by: NET48REL1LAST_B
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/System.Core/v4.0_4.0.0.0__b77a5c561934e089/System.Core.dll
----------------------------------------
System
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.4001.0 built by: NET48REL1LAST_C
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/System/v4.0_4.0.0.0__b77a5c561934e089/System.dll
----------------------------------------
Microsoft.VisualStudio.Tools.Applications.Hosting
    Versión del ensamblado: 10.0.0.0
    Versión Win32: 10.0.50903.0
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/Microsoft.VisualStudio.Tools.Applications.Hosting/v4.0_10.0.0.0__b03f5f7f11d50a3a/Microsoft.VisualStudio.Tools.Applications.Hosting.dll
----------------------------------------
System.Windows.Forms
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.4042.0 built by: NET48REL1LAST_C
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/System.Windows.Forms/v4.0_4.0.0.0__b77a5c561934e089/System.Windows.Forms.dll
----------------------------------------
System.Drawing
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.3752.0 built by: NET48REL1
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/System.Drawing/v4.0_4.0.0.0__b03f5f7f11d50a3a/System.Drawing.dll
----------------------------------------
Microsoft.VisualStudio.Tools.Applications.ServerDocument
    Versión del ensamblado: 10.0.0.0
    Versión Win32: 10.0.50903.0
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/Microsoft.VisualStudio.Tools.Applications.ServerDocument/v4.0_10.0.0.0__b03f5f7f11d50a3a/Microsoft.VisualStudio.Tools.Applications.ServerDocument.dll
----------------------------------------
mscorlib.resources
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.3752.0 built by: NET48REL1
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/mscorlib.resources/v4.0_4.0.0.0_es_b77a5c561934e089/mscorlib.resources.dll
----------------------------------------
Microsoft.VisualStudio.Tools.Office.Runtime.resources
    Versión del ensamblado: 10.0.0.0
    Versión Win32: 10.0.50903.0
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/Microsoft.VisualStudio.Tools.Office.Runtime.resources/v4.0_10.0.0.0_es_b03f5f7f11d50a3a/Microsoft.VisualStudio.Tools.Office.Runtime.resources.dll
----------------------------------------
System.Deployment
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.3752.0 built by: NET48REL1
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/System.Deployment/v4.0_4.0.0.0__b03f5f7f11d50a3a/System.Deployment.dll
----------------------------------------
Microsoft.VisualStudio.Tools.Applications.ServerDocument.resources
    Versión del ensamblado: 10.0.0.0
    Versión Win32: 10.0.50903.0
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/Microsoft.VisualStudio.Tools.Applications.ServerDocument.resources/v4.0_10.0.0.0_es_b03f5f7f11d50a3a/Microsoft.VisualStudio.Tools.Applications.ServerDocument.resources.dll
----------------------------------------
Microsoft.VisualStudio.Tools.Applications.Runtime
    Versión del ensamblado: 10.0.0.0
    Versión Win32: 10.0.50903.0
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/Microsoft.VisualStudio.Tools.Applications.Runtime/v4.0_10.0.0.0__b03f5f7f11d50a3a/Microsoft.VisualStudio.Tools.Applications.Runtime.dll
----------------------------------------

Error: (01/26/2020 06:28:48 PM) (Source: VSTO 4.0) (EventID: 4096) (User: )
Description: URI de personalización: file:///C:/ProgramData/Logishrd/LogiOptions/Plugins/4caa44eb-cdf0-4ecd-b823-38b28187e59a/Content/publish/LogiOptionsExcelAddin.vsto
Excepción: Se está intentando desinstalar una personalización que no se ha instalado en este equipo o se ha desinstalado ya. Corrija los valores de parámetro e inténtelo de nuevo.


************** Texto de la excepción **************
Microsoft.VisualStudio.Tools.Office.Runtime.SolutionInstallerException: Se está intentando desinstalar una personalización que no se ha instalado en este equipo o se ha desinstalado ya. Corrija los valores de parámetro e inténtelo de nuevo.
   en Microsoft.VisualStudio.Tools.Office.Runtime.SolutionInstaller.ProcessInstallerOperation(ClickOnceAddInDeploymentManager clickOnceAddInDeploymentManager, OfficeAddInDeploymentManager officeAddInDeploymentManager, AddInInformation& info)
   en Microsoft.VisualStudio.Tools.Office.Runtime.SolutionInstaller.ProcessInstallerOperation(Boolean uninstall, Boolean silent, Uri manifest, Int32& errorCode, String& errorMessage)


************** Ensamblados cargados **************
mscorlib
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.4075.0 built by: NET48REL1LAST
    Código base: file:///C:/Windows/Microsoft.NET/Framework64/v4.0.30319/mscorlib.dll
----------------------------------------
Microsoft.VisualStudio.Tools.Office.Runtime
    Versión del ensamblado: 10.0.0.0
    Versión Win32: 10.0.50903.0
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/Microsoft.VisualStudio.Tools.Office.Runtime/v4.0_10.0.0.0__b03f5f7f11d50a3a/Microsoft.VisualStudio.Tools.Office.Runtime.dll
----------------------------------------
System.Core
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.4110.0 built by: NET48REL1LAST_B
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/System.Core/v4.0_4.0.0.0__b77a5c561934e089/System.Core.dll
----------------------------------------
System
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.4001.0 built by: NET48REL1LAST_C
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/System/v4.0_4.0.0.0__b77a5c561934e089/System.dll
----------------------------------------
Microsoft.VisualStudio.Tools.Applications.Hosting
    Versión del ensamblado: 10.0.0.0
    Versión Win32: 10.0.50903.0
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/Microsoft.VisualStudio.Tools.Applications.Hosting/v4.0_10.0.0.0__b03f5f7f11d50a3a/Microsoft.VisualStudio.Tools.Applications.Hosting.dll
----------------------------------------
System.Windows.Forms
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.4042.0 built by: NET48REL1LAST_C
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/System.Windows.Forms/v4.0_4.0.0.0__b77a5c561934e089/System.Windows.Forms.dll
----------------------------------------
System.Drawing
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.3752.0 built by: NET48REL1
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/System.Drawing/v4.0_4.0.0.0__b03f5f7f11d50a3a/System.Drawing.dll
----------------------------------------
Microsoft.VisualStudio.Tools.Applications.ServerDocument
    Versión del ensamblado: 10.0.0.0
    Versión Win32: 10.0.50903.0
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/Microsoft.VisualStudio.Tools.Applications.ServerDocument/v4.0_10.0.0.0__b03f5f7f11d50a3a/Microsoft.VisualStudio.Tools.Applications.ServerDocument.dll
----------------------------------------
mscorlib.resources
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.3752.0 built by: NET48REL1
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/mscorlib.resources/v4.0_4.0.0.0_es_b77a5c561934e089/mscorlib.resources.dll
----------------------------------------
Microsoft.VisualStudio.Tools.Office.Runtime.resources
    Versión del ensamblado: 10.0.0.0
    Versión Win32: 10.0.50903.0
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/Microsoft.VisualStudio.Tools.Office.Runtime.resources/v4.0_10.0.0.0_es_b03f5f7f11d50a3a/Microsoft.VisualStudio.Tools.Office.Runtime.resources.dll
----------------------------------------
System.Deployment
    Versión del ensamblado: 4.0.0.0
    Versión Win32: 4.8.3752.0 built by: NET48REL1
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/System.Deployment/v4.0_4.0.0.0__b03f5f7f11d50a3a/System.Deployment.dll
----------------------------------------
Microsoft.VisualStudio.Tools.Applications.ServerDocument.resources
    Versión del ensamblado: 10.0.0.0
    Versión Win32: 10.0.50903.0
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/Microsoft.VisualStudio.Tools.Applications.ServerDocument.resources/v4.0_10.0.0.0_es_b03f5f7f11d50a3a/Microsoft.VisualStudio.Tools.Applications.ServerDocument.resources.dll
----------------------------------------
Microsoft.VisualStudio.Tools.Applications.Runtime
    Versión del ensamblado: 10.0.0.0
    Versión Win32: 10.0.50903.0
    Código base: file:///C:/WINDOWS/Microsoft.Net/assembly/GAC_MSIL/Microsoft.VisualStudio.Tools.Applications.Runtime/v4.0_10.0.0.0__b03f5f7f11d50a3a/Microsoft.VisualStudio.Tools.Applications.Runtime.dll
----------------------------------------

Error: (01/26/2020 06:24:40 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT AUTHORITY)
Description: Error al descargar las cadenas del contador de rendimiento para el servicio WmiApRpl (WmiApRpl). El primer valor DWORD de la sección de datos contiene el código de error.

Error: (01/26/2020 06:24:40 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT AUTHORITY)
Description: Las cadenas de rendimiento del valor del Registro de rendimiento están dañadas al procesar el proveedor de contador de extensión Performance. El valor BaseIndex del Registro de rendimiento es el primer valor DWORD, el valor LastCounter es el segundo valor DWORD y el valor LastHelp es el tercer valor DWORD de la sección de datos.

Error: (01/26/2020 06:24:40 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT AUTHORITY)
Description: Las cadenas de rendimiento del valor del Registro de rendimiento están dañadas al procesar el proveedor de contador de extensión Performance. El valor BaseIndex del Registro de rendimiento es el primer valor DWORD, el valor LastCounter es el segundo valor DWORD y el valor LastHelp es el tercer valor DWORD de la sección de datos.

Error: (01/26/2020 06:22:24 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: IAStorDataMgrSvc.exe, versión: 14.6.0.1029, marca de tiempo: 0x55b5f9d3
Nombre del módulo con errores: KERNELBASE.dll, versión: 10.0.18362.535, marca de tiempo: 0x5bd9df62
Código de excepción: 0xe0434352
Desplazamiento de errores: 0x001135d2
Identificador del proceso con errores: 0x64
Hora de inicio de la aplicación con errores: 0x01d5d46d1334c56d
Ruta de acceso de la aplicación con errores: C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
Ruta de acceso del módulo con errores: C:\WINDOWS\System32\KERNELBASE.dll
Identificador del informe: 27cb1fb6-5579-46c6-bb7f-d4d05b1ee6f8
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:


Errores del sistema:
=============
Error: (01/26/2020 06:27:23 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: El servicio Servicio Orquestador de actualizaciones no respondió después de iniciar.

Error: (01/26/2020 06:24:39 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio Intel(R) Rapid Storage Technology se terminó de manera inesperada. Esto ha sucedido 1 veces.

Error: (01/26/2020 06:23:58 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: El servicio Administrador de mapas descargados no respondió después de iniciar.

Error: (01/26/2020 06:19:25 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Se agotó el tiempo de espera (45000 ms) para la conexión con el servicio WsAppService.

Error: (01/26/2020 06:19:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio DisplayFusionService no pudo iniciarse debido al siguiente error: 
El servicio no respondió a tiempo a la solicitud de inicio o de control.

Error: (01/26/2020 06:19:24 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Se agotó el tiempo de espera (45000 ms) para la conexión con el servicio DisplayFusionService.

Error: (01/26/2020 06:19:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio Origin Web Helper Service no pudo iniciarse debido al siguiente error: 
El servicio no respondió a tiempo a la solicitud de inicio o de control.

Error: (01/26/2020 06:19:23 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Se agotó el tiempo de espera (45000 ms) para la conexión con el servicio Origin Web Helper Service.


Windows Defender:
===================================
Date: 2019-11-23 12:26:00.300
Description: 
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para más información, consulta lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win64/AutoKMS&threatid=2147723334&enterprise=0
Nombre: HackTool:Win64/AutoKMS
Id.: 2147723334
Gravedad: Alta
Categoría: Herramienta
Ruta de acceso: file:_C:\Windows\SECOH-QAD.dll; file:_C:\Windows\SECOH-QAD.exe
Origen de detección: Equipo local
Tipo de detección: Concreto
Origen de detección: Protección en tiempo real
Usuario: NT AUTHORITY\SYSTEM
Nombre de proceso: C:\Program Files\KMSpico\Service_KMS.exe
Versión de inteligencia de seguridad: AV: 1.305.2668.0, AS: 1.305.2668.0, NIS: 1.305.2668.0
Versión de motor: AM: 1.1.16500.1, NIS: 1.1.16500.1

Date: 2019-11-23 12:26:00.148
Description: 
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para más información, consulta lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win64/AutoKMS&threatid=2147723334&enterprise=0
Nombre: HackTool:Win64/AutoKMS
Id.: 2147723334
Gravedad: Alta
Categoría: Herramienta
Ruta de acceso: file:_C:\Windows\SECOH-QAD.dll
Origen de detección: Equipo local
Tipo de detección: Concreto
Origen de detección: Protección en tiempo real
Usuario: NT AUTHORITY\SYSTEM
Nombre de proceso: C:\Program Files\KMSpico\Service_KMS.exe
Versión de inteligencia de seguridad: AV: 1.305.2668.0, AS: 1.305.2668.0, NIS: 1.305.2668.0
Versión de motor: AM: 1.1.16500.1, NIS: 1.1.16500.1

Date: 2019-11-23 12:15:59.045
Description: 
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para más información, consulta lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win64/AutoKMS&threatid=2147723334&enterprise=0
Nombre: HackTool:Win64/AutoKMS
Id.: 2147723334
Gravedad: Alta
Categoría: Herramienta
Ruta de acceso: file:_C:\Windows\SECOH-QAD.dll; file:_C:\Windows\SECOH-QAD.exe
Origen de detección: Equipo local
Tipo de detección: Concreto
Origen de detección: Protección en tiempo real
Usuario: NT AUTHORITY\SYSTEM
Nombre de proceso: C:\Program Files\KMSpico\Service_KMS.exe
Versión de inteligencia de seguridad: AV: 1.305.2668.0, AS: 1.305.2668.0, NIS: 1.305.2668.0
Versión de motor: AM: 1.1.16500.1, NIS: 1.1.16500.1

Date: 2019-11-23 12:15:58.586
Description: 
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para más información, consulta lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win64/AutoKMS&threatid=2147723334&enterprise=0
Nombre: HackTool:Win64/AutoKMS
Id.: 2147723334
Gravedad: Alta
Categoría: Herramienta
Ruta de acceso: file:_C:\Windows\SECOH-QAD.dll
Origen de detección: Equipo local
Tipo de detección: Concreto
Origen de detección: Protección en tiempo real
Usuario: NT AUTHORITY\SYSTEM
Nombre de proceso: C:\Program Files\KMSpico\Service_KMS.exe
Versión de inteligencia de seguridad: AV: 1.305.2668.0, AS: 1.305.2668.0, NIS: 1.305.2668.0
Versión de motor: AM: 1.1.16500.1, NIS: 1.1.16500.1

Date: 2019-11-22 23:59:05.315
Description: 
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para más información, consulta lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win64/AutoKMS&threatid=2147723334&enterprise=0
Nombre: HackTool:Win64/AutoKMS
Id.: 2147723334
Gravedad: Alta
Categoría: Herramienta
Ruta de acceso: file:_C:\Windows\SECOH-QAD.dll; file:_C:\Windows\SECOH-QAD.exe
Origen de detección: Equipo local
Tipo de detección: Concreto
Origen de detección: Protección en tiempo real
Usuario: NT AUTHORITY\SYSTEM
Nombre de proceso: C:\Program Files\KMSpico\AutoPico.exe
Versión de inteligencia de seguridad: AV: 1.305.2637.0, AS: 1.305.2637.0, NIS: 1.305.2637.0
Versión de motor: AM: 1.1.16500.1, NIS: 1.1.16500.1

Date: 2019-11-14 18:59:50.888
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.305.2064.0
Origen de actualización: Servidor de Microsoft Update
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\SYSTEM
Versión actual del motor: 
Versión anterior del motor: 1.1.16500.1
Código de error: 0x80240438
Descripción del error: Se produjo un problema inesperado mientras se buscaban actualizaciones. Para obtener más información sobre cómo instalar o solucionar problemas en las actualizaciones, consulte Ayuda y soporte técnico. 

CodeIntegrity:
===================================

Date: 2020-01-26 18:12:23.336
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-01-26 18:12:23.332
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-01-26 18:12:23.327
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-01-26 18:12:23.324
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-01-26 18:12:23.319
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-01-26 18:12:23.314
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-01-26 18:12:23.310
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-01-26 18:12:23.306
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements.

==================== Información de la memoria =========================== 

BIOS: American Megatrends Inc. F6 03/14/2016
Placa base: Gigabyte Technology Co., Ltd. B150M-D3H-CF
Procesador: Intel(R) Core(TM) i7-6700 CPU @ 3.40GHz
Porcentaje de memoria en uso: 18%
RAM física total: 32700.82 MB
RAM física disponible: 26668.54 MB
Virtual total: 37564.82 MB
Virtual disponible: 31430.12 MB

==================== Unidades ================================

Drive c: (SYSTEM) (Fixed) (Total:1861.9 GB) (Free:253.93 GB) NTFS
Drive d: (FILES1) (Fixed) (Total:3725.9 GB) (Free:127.42 GB) NTFS
Drive e: (FILES2) (Fixed) (Total:3725.9 GB) (Free:79.93 GB) NTFS
Drive f: (DOWN) (Fixed) (Total:931.51 GB) (Free:575.11 GB) NTFS

\\?\Volume{43699df2-47c0-11e6-825a-806e6f6e6963}\ (Reservado para el sistema) (Fixed) (Total:0.34 GB) (Free:0.07 GB) NTFS
\\?\Volume{583c874c-0000-0000-0000-408fd1010000}\ () (Fixed) (Total:0.78 GB) (Free:0.33 GB) NTFS

==================== MBR & Tabla de particiones ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 1863 GB) (Disk ID: 583C874C)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1861.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=795 MB) - (Type=27)

==========================================================
Disk: 1 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 2 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 3 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 8C1A533D)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== Final de Addition.txt =======================

Hola @Dhampird:

Unas consultas:

  • Tienes acceso a otro equipo con Windows 10 Pro 64 bits ??
  • Tu licencia de Windows 10 es original?
  • Todos los accesos xploit.bat que tienes en el escritorio fueron creados o instalados por ti?

Sigue estos pasos:

1.- Muy Importante >>> Realizar una copia de Seguridad de su Registro.

  • Descarga DelFix en el escritorio de Windows.
  • Clic Derecho, “Ejecutar como Administrador”.
  • En la ventana principal, marca solamente la casilla “Create Registry Backup”.
  • Clic en Run.

Al terminar se abrirá un reporte llamado DelFix.txt, guárdelo por si fuera necesario y cierre la herramienta…

2.- Desactiva Temporalmente tu antivirus.

3.- Abre un nuevo archivo Notepad/Bloc de Notas y copia y pega este contenido:

Start
CloseProcesses:
CreateRestorePoint:
Task: {155C0CAD-D188-48F0-A155-7544DE8A546E} - System32\Tasks\{672B90E3-A8A3-40CC-90A1-24CCB547A947} => C:\Windows\system32\pcalua.exe -a "D:\PC SOFT\SOFTWARE\TOOL.VISUAL BASIC\Visual Basic Runtimes\Visual Basic runtimes.exe" -d "D:\PC SOFT\SOFTWARE\TOOL.VISUAL BASIC\Visual Basic Runtimes"
Task: {31E90574-84A9-47D4-8CB1-C48004F6E0D6} - System32\Tasks\{CD065C4C-4BE5-40D0-8A89-499708668B6A} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Ps2\hdl_dumb-0.8.3\hdl_dumb.exe" -d "C:\Program Files (x86)\Ps2\hdl_dumb-0.8.3"
Task: {741FE548-6201-4214-B612-8F6B31BB8FB7} - System32\Tasks\{3D22ECEA-BF69-4F06-ACAE-BC5C0FE5B693} => C:\Users\DHAMPIRD\AppData\Local\Temp\mwbF4E3.tmp\mb-support.exe
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Ningún archivo]
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Ningún archivo]
FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Ningún archivo]
FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Ningún archivo]
CHR HKU\S-1-5-21-3597564769-968549059-3920177797-1005\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
S3 ekrnEpfw; "C:\Program Files\ESET\ESET Security\ekrn.exe" [X]
S3 ESETCleanersDriver; C:\WINDOWS\system32\Drivers\ESETCleanersDriver.sys [181160 2019-04-11] (ESET, spol. s r.o. -> ESET)
S3 PSKMAD; System32\DRIVERS\PSKMAD.sys [X]
2020-01-16 18:13 - 2020-01-16 18:13 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> Ningún archivo
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> Ningún archivo
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll -> Ningún archivo
ContextMenuHandlers1: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} =>  -> Ningún archivo
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll -> Ningún archivo
ContextMenuHandlers4: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} =>  -> Ningún archivo
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> Ningún archivo
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll -> Ningún archivo
2020-01-26 18:21 - 2020-01-26 18:21 - 000114176 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_ctypes.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000173056 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_elementtree.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 001808896 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_hashlib.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000032256 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_multiprocessing.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000046080 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_psutil_windows.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000047616 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_socket.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 002241024 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_ssl.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000026112 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_yappi.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000080896 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\bz2.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000016384 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\common.time34.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000007680 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\hashobjs_ext.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000301568 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\PIL._imaging.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000169472 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\pyexpat.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 001084416 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\pysqlite2._sqlite.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000548864 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\pythoncom27.dll
2020-01-26 18:21 - 2020-01-26 18:21 - 000137728 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\pywintypes27.dll
2020-01-26 18:21 - 2020-01-26 18:21 - 000010752 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\select.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000020992 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\thumbnails_ext.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000689664 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\unicodedata.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000119808 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\usb_ext.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000128512 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32api.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000438784 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32com.shell.shell.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000011776 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32crypt.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000023040 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32event.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000149504 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32file.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000223232 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32gui.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000048128 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32inet.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000029696 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32pdh.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000027648 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32pipe.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000044032 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32process.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000020480 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32profile.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000136192 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32security.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000026624 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32ts.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000034816 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\windows.conditional.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000038400 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\windows.connectivity.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000071680 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\windows.device_monitor.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000109056 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\windows.volumes.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000020480 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\windows.winwrap.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 001325056 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._controls_.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 001489408 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._core_.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 001007104 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._gdi_.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000103424 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._html2.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000916992 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._misc_.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 001039872 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._windows_.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 003042816 _____ (Python Software Foundation) [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\python27.dll
C:\Program Files\ESET

CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set domainprofiles state ON
CMD: netsh advfirewall set privateprofiles state ON
CMD: sc config mpssvc start= auto
CMD: sc start mpssvc
CMD: sc config mpsdrv start= auto
CMD: sc start mpssvc
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:
END
  • Lo guardas bajo el nombre de fixlist.txt en el escritorio <<< Esto es muy importante.

Nota: Es necesario que el ejecutable Frst.exe y fixlist.txt se encuentren en la misma ubicación (escritorio) o si no la herramienta no trabajara.

  • Ejecutas Frst.exe.
  • Presionas el botón Fix y aguardas a que termine.
  • La Herramienta guardara el reporte en tu escritorio (Fixlog.txt).
  • Lo pegas en tu próxima respuesta.

Nos comentas .

Salu2.

Hola, muy buenas, sobre: -Tienes acceso a otro equipo con Windows 10 Pro 64 bits ?? Si, en otro pc que no uso online tengo Windows 10 Pro 64 bits -Tu licencia de Windows 10 es original? Si, la licencia es original. -Todos los accesos xploit.bat que tienes en el escritorio fueron creados o instalados por ti? Si, esos accesos directos de esos .bat son para diferentes versiones hack xploit ps4

He realizado todos los pasos anteriores, el firewall windows sigue con el mismo error, no lo deja activar, éste es el resultado de Fixlog.txt:

Resultados de la corrección de Farbar Recovery Scan Tool (x64) Versión: 26-01-2020
Ejecutado por DHAMPIRD (27-01-2020 03:41:53) Run:2
Ejecutado desde C:\Users\DHAMPIRD\Desktop
Perfiles cargados: DHAMPIRD (Perfiles disponibles: DHAMPIRD)
Modo de Inicio: Normal
==============================================

fixlist contenido:
*****************
Start
CloseProcesses:
CreateRestorePoint:
Task: {155C0CAD-D188-48F0-A155-7544DE8A546E} - System32\Tasks\{672B90E3-A8A3-40CC-90A1-24CCB547A947} => C:\Windows\system32\pcalua.exe -a "D:\PC SOFT\SOFTWARE\TOOL.VISUAL BASIC\Visual Basic Runtimes\Visual Basic runtimes.exe" -d "D:\PC SOFT\SOFTWARE\TOOL.VISUAL BASIC\Visual Basic Runtimes"
Task: {31E90574-84A9-47D4-8CB1-C48004F6E0D6} - System32\Tasks\{CD065C4C-4BE5-40D0-8A89-499708668B6A} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Ps2\hdl_dumb-0.8.3\hdl_dumb.exe" -d "C:\Program Files (x86)\Ps2\hdl_dumb-0.8.3"
Task: {741FE548-6201-4214-B612-8F6B31BB8FB7} - System32\Tasks\{3D22ECEA-BF69-4F06-ACAE-BC5C0FE5B693} => C:\Users\DHAMPIRD\AppData\Local\Temp\mwbF4E3.tmp\mb-support.exe
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Ningún archivo]
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Ningún archivo]
FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Ningún archivo]
FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Ningún archivo]
CHR HKU\S-1-5-21-3597564769-968549059-3920177797-1005\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
S3 ekrnEpfw; "C:\Program Files\ESET\ESET Security\ekrn.exe" [X]
S3 ESETCleanersDriver; C:\WINDOWS\system32\Drivers\ESETCleanersDriver.sys [181160 2019-04-11] (ESET, spol. s r.o. -> ESET)
S3 PSKMAD; System32\DRIVERS\PSKMAD.sys [X]
2020-01-16 18:13 - 2020-01-16 18:13 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> Ningún archivo
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> Ningún archivo
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll -> Ningún archivo
ContextMenuHandlers1: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} =>  -> Ningún archivo
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll -> Ningún archivo
ContextMenuHandlers4: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} =>  -> Ningún archivo
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> Ningún archivo
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll -> Ningún archivo
2020-01-26 18:21 - 2020-01-26 18:21 - 000114176 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_ctypes.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000173056 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_elementtree.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 001808896 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_hashlib.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000032256 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_multiprocessing.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000046080 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_psutil_windows.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000047616 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_socket.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 002241024 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_ssl.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000026112 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_yappi.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000080896 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\bz2.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000016384 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\common.time34.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000007680 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\hashobjs_ext.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000301568 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\PIL._imaging.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000169472 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\pyexpat.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 001084416 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\pysqlite2._sqlite.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000548864 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\pythoncom27.dll
2020-01-26 18:21 - 2020-01-26 18:21 - 000137728 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\pywintypes27.dll
2020-01-26 18:21 - 2020-01-26 18:21 - 000010752 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\select.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000020992 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\thumbnails_ext.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000689664 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\unicodedata.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000119808 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\usb_ext.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000128512 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32api.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000438784 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32com.shell.shell.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000011776 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32crypt.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000023040 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32event.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000149504 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32file.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000223232 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32gui.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000048128 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32inet.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000029696 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32pdh.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000027648 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32pipe.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000044032 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32process.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000020480 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32profile.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000136192 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32security.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000026624 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32ts.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000034816 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\windows.conditional.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000038400 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\windows.connectivity.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000071680 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\windows.device_monitor.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000109056 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\windows.volumes.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000020480 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\windows.winwrap.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 001325056 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._controls_.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 001489408 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._core_.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 001007104 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._gdi_.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000103424 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._html2.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 000916992 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._misc_.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 001039872 _____ () [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._windows_.pyd
2020-01-26 18:21 - 2020-01-26 18:21 - 003042816 _____ (Python Software Foundation) [Archivo no firmado] C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\python27.dll
C:\Program Files\ESET

CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set domainprofiles state ON
CMD: netsh advfirewall set privateprofiles state ON
CMD: sc config mpssvc start= auto
CMD: sc start mpssvc
CMD: sc config mpsdrv start= auto
CMD: sc start mpssvc
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:
END
*****************

Procesos cerrados correctamente.
El punto de restauración fue creado correctamente.
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{155C0CAD-D188-48F0-A155-7544DE8A546E} => eliminado correctamente
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{155C0CAD-D188-48F0-A155-7544DE8A546E} => eliminado correctamente
C:\WINDOWS\System32\Tasks\{672B90E3-A8A3-40CC-90A1-24CCB547A947} => movido correctamente
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{672B90E3-A8A3-40CC-90A1-24CCB547A947} => eliminado correctamente
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{31E90574-84A9-47D4-8CB1-C48004F6E0D6} => eliminado correctamente
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{31E90574-84A9-47D4-8CB1-C48004F6E0D6} => eliminado correctamente
C:\WINDOWS\System32\Tasks\{CD065C4C-4BE5-40D0-8A89-499708668B6A} => movido correctamente
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{CD065C4C-4BE5-40D0-8A89-499708668B6A} => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{741FE548-6201-4214-B612-8F6B31BB8FB7}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{741FE548-6201-4214-B612-8F6B31BB8FB7}" => eliminado correctamente
C:\WINDOWS\System32\Tasks\{3D22ECEA-BF69-4F06-ACAE-BC5C0FE5B693} => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{3D22ECEA-BF69-4F06-ACAE-BC5C0FE5B693}" => eliminado correctamente
HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4 => eliminado correctamente
HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.6 => eliminado correctamente
HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=3.0.3 => eliminado correctamente
HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=3.0.6 => eliminado correctamente
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\SOFTWARE\Google\Chrome\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh => eliminado correctamente
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\efaidnbmnnnibpcajpcglclefindmkaj => eliminado correctamente
HKLM\System\CurrentControlSet\Services\ekrnEpfw => eliminado correctamente
ekrnEpfw => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\ESETCleanersDriver => eliminado correctamente
ESETCleanersDriver => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\PSKMAD => eliminado correctamente
PSKMAD => servicio eliminado correctamente
C:\WINDOWS\LastGood.Tmp => movido correctamente
"AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}" => eliminado correctamente
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => eliminado correctamente
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BriefcaseMenu => eliminado correctamente
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ESET Security Shell => eliminado correctamente
HKLM\Software\Classes\CLSID\{B089FE88-FB52-11D3-BDF1-0050DA34150D} => eliminado correctamente
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\IObitUnstaler => eliminado correctamente
HKLM\Software\Classes\Drive\ShellEx\ContextMenuHandlers\ESET Security Shell => eliminado correctamente
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\IObitUnstaler => eliminado correctamente
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\BriefcaseMenu => eliminado correctamente
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\ESET Security Shell => eliminado correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_ctypes.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_elementtree.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_hashlib.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_multiprocessing.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_psutil_windows.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_socket.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_ssl.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\_yappi.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\bz2.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\common.time34.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\hashobjs_ext.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\PIL._imaging.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\pyexpat.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\pysqlite2._sqlite.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\pythoncom27.dll => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\pywintypes27.dll => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\select.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\thumbnails_ext.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\unicodedata.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\usb_ext.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32api.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32com.shell.shell.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32crypt.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32event.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32file.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32gui.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32inet.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32pdh.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32pipe.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32process.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32profile.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32security.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\win32ts.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\windows.conditional.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\windows.connectivity.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\windows.device_monitor.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\windows.volumes.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\windows.winwrap.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._controls_.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._core_.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._gdi_.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._html2.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._misc_.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\wx._windows_.pyd => movido correctamente
C:\Users\DHAMPIRD\AppData\Local\Temp\_MEI41162\python27.dll => movido correctamente
"C:\Program Files\ESET" => no encontrado

========= ipconfig /flushdns =========


Configuraci¢n IP de Windows

Se vaci¢ correctamente la cach‚ de resoluci¢n de DNS.

========= Final de CMD: =========


========= ipconfig /renew =========


Configuraci¢n IP de Windows


Adaptador de Ethernet Ethernet:

   Sufijo DNS espec¡fico para la conexi¢n. . : mundo-R.com
   V¡nculo: direcci¢n IPv6 local. . . : fe80::e9c9:1248:6d84:f5fb%8
   Direcci¢n IPv4. . . . . . . . . . . . . . : 192.168.0.12
   M scara de subred . . . . . . . . . . . . : 255.255.255.0
   Puerta de enlace predeterminada . . . . . : 192.168.0.1

========= Final de CMD: =========


========= bitsadmin /reset /allusers =========


BITSADMIN version 3.0
BITS administration utility.
(C) Copyright Microsoft Corp.

Unable to cancel {92771CC3-630B-46B9-A4F1-E3C66DC54324}.
0 out of 1 jobs canceled.

========= Final de CMD: =========


========= netsh winsock reset =========


El cat logo Winsock se restableci¢ correctamente.
Debe reiniciar el equipo para completar el restablecimiento.


========= Final de CMD: =========


========= netsh advfirewall reset =========


Error al intentar ponerse en contacto con el servicio Firewall de Windows Defender. Aseg£rate de que el servicio se est  ejecutando e intenta la solicitud de nuevo.


========= Final de CMD: =========


========= netsh advfirewall set domainprofiles state ON =========

No se encuentra el comando: advfirewall set domainprofiles state ON

========= Final de CMD: =========


========= netsh advfirewall set privateprofiles state ON =========

No se encuentra el comando: advfirewall set privateprofiles state ON

========= Final de CMD: =========


========= sc config mpssvc start= auto =========

[SC] OpenService ERROR 5:

Acceso denegado.


========= Final de CMD: =========


========= sc start mpssvc =========

[SC] StartService ERROR 1058:

No se puede iniciar el servicio, porque est  deshabilitado o porque no tiene dispositivos habilitados asociados a ‚l.


========= Final de CMD: =========


========= sc config mpsdrv start= auto =========

[SC] OpenService ERROR 5:

Acceso denegado.


========= Final de CMD: =========


========= sc start mpssvc =========

[SC] StartService ERROR 1058:

No se puede iniciar el servicio, porque est  deshabilitado o porque no tiene dispositivos habilitados asociados a ‚l.


========= Final de CMD: =========


========= netsh int ipv4 reset =========

Reenv¡o de compartimiento se restableci¢ correctamente.
Compartimiento se restableci¢ correctamente.
Protocolo de control se restableci¢ correctamente.
Solicitud de secuencia eco se restableci¢ correctamente.
Global se restableci¢ correctamente.
Interfaz se restableci¢ correctamente.
Direcci¢n de difusi¢n por proximidad (a se restableci¢ correctamente.
Direcciones de multidifusi¢n se restableci¢ correctamente.
Direcci¢n de unidifusi¢n se restableci¢ correctamente.
Vecino se restableci¢ correctamente.
Ruta de acceso se restableci¢ correctamente.
Posible se restableci¢ correctamente.
Directiva de prefijo se restableci¢ correctamente.
Vecino de proxy se restableci¢ correctamente.
Ruta se restableci¢ correctamente.
Prefijo de sitio se restableci¢ correctamente.
Subinterfaz se restableci¢ correctamente.
Patr¢n de reactivaci¢n se restableci¢ correctamente.
Resolver vecino se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Error al restablecer .
Acceso denegado.

 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.


========= Final de CMD: =========


========= netsh int ipv6 reset =========

Reenv¡o de compartimiento se restableci¢ correctamente.
Compartimiento se restableci¢ correctamente.
Protocolo de control se restableci¢ correctamente.
Solicitud de secuencia eco se restableci¢ correctamente.
Global se restableci¢ correctamente.
Interfaz se restableci¢ correctamente.
Direcci¢n de difusi¢n por proximidad (a se restableci¢ correctamente.
Direcciones de multidifusi¢n se restableci¢ correctamente.
Direcci¢n de unidifusi¢n se restableci¢ correctamente.
Vecino se restableci¢ correctamente.
Ruta de acceso se restableci¢ correctamente.
Posible se restableci¢ correctamente.
Directiva de prefijo se restableci¢ correctamente.
Vecino de proxy se restableci¢ correctamente.
Ruta se restableci¢ correctamente.
Prefijo de sitio se restableci¢ correctamente.
Subinterfaz se restableci¢ correctamente.
Patr¢n de reactivaci¢n se restableci¢ correctamente.
Resolver vecino se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Error al restablecer .
Acceso denegado.

 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.


========= Final de CMD: =========


========= RemoveProxy: =========

"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\S-1-5-21-3597564769-968549059-3920177797-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\S-1-5-21-3597564769-968549059-3920177797-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente


========= Final de RemoveProxy: =========

C:\Windows\System32\Drivers\etc\hosts => movido correctamente
Hosts restaurado correctamente.

=========== EmptyTemp: ==========

BITS transfer queue => 11558912 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 341857453 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 165873448 B
Edge => 97585 B
Chrome => 12883109 B
Firefox => 1153835092 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 231992 B
NetworkService => 231992 B
ELDI.000 => 231992 B
ELDI => 231992 B
DHAMPIRD => 486254358 B

RecycleBin => 0 B
EmptyTemp: => 2 GB datos temporales eliminados.

================================


El sistema necesita reiniciarse.

==== Final de Fixlog 03:45:17 ====

Hola @Dhampird

Perfecto.

Ahora realiza lo siguiente:

Paso 1: Descarga la herramienta de Microsoft del siguiente enlace:

Presionas en Descargar, una vez en tu escritorio ejecutas la herramienta WindowsFirewal. Diacab, y sigues los pasos.

Cualquier problema u error tomas una imagen y la subes.

Nos comentas.

Salu2

Hola aqui los mensajes de error en capturas, saludos: Clipboard00 Clipboard01 Clipboard02 Clipboard03 Clipboard04 Clipboard05 Clipboard06

Hola @Dhampird

Gracias por todas las imágenes…:+1:

Demuestran un severo daño en el Firewall o mas bien un bloqueo.

Tienes ideas si esos hack realizan algún bloqueo/modificación del Firewall, perdona la pregunta pero no soy jugadora… :upside_down_face: ya que ni siquiera por comandos se han reactivado los servicios de este…:thinking:, y si se que algunos xploit son utilizados para bloquear el Firewall.

Nos comentas.

Salu2

Hola, los xploit de ps4 lo que hacen es crear un server lan para comunicarse con la consola y lanzar el xploit via web en la consola, dudo que sea eso pues esos xploits son algo antiguos y ya no los uso y de aquellas me iba el firewall ok. Lo del firewall me suena más a algo que me entró porque estuve una temporada sin malwarebytes y al notar que el sistema me iba algo lento habia usado una util de windows para detectar problemas de spyware o algo asi y me detectara algo llamado Firewalldisabled no se qué, no recuerdo el nombre, pero habia mirado y parece que eso era spyware o algun troyano o algo asi, me da que algo me debió entrar y tocó el firewall. Luego me di cuenta de que la calculadora de windows no iba, asi como el xbox game bar y se intento reinstalarlo no me lo reinstala de la tienda windows. Me suena tambien que fuera a los registros de windows y no encontraba el registro del firewall listado, como si hubiera desaparecido.

Más cosas, hace unos 4 dias me dio una petada el sistema, y a raiz de la petada se me desabilitó la tarjeta de red, luego me fui a modo seguro y habilité la tarjeta de red de nuevo, éste fue el error:

Luego, ayer recibi otro error, creo que tiene que ver con malwarebytes, que es original, a lo mejor fue algo puntual.

Ahora mismo el sistema parece ir fluido y bien.

Hola @Dhampird

Disculpa la demora he estado investigando tu problema.

Estoy esperando una respuesta no me he olvidado de ti.

Salu2

Hola @Dhampird

Paso 1: Descarga en tu escritorio :arrow_right: Windows Repair all in one, hazlo con la versión portable suele estar la última de todas donde veas que pone Captura

  • Es un fichero ZIP con este nombre :white_check_mark: tweaking.com_windows_repair_aio.zip, lo descomprimes y ejecutas desde la carpeta que se habrá generado en tu escritorio.

  • Haces doble clic sobre el archivo Repair_Windows.exe.(Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona Ejecutar como Administrador.- )

  • Aceptas en la primera pantalla la licencia de uso pulsando en I Agree y a continuación veras la pantalla inicial del programa, donde debes seguir estos pasos :

:one: Repairs - Main.

:two: Open Repairs.



  1. Inmediatamente aparecerá una nueva ventana, desmarcas “All Repair”

  2. Colocas una marca en:

  • Reset Service Permissions
  • Restore Important Windows Services
  • Set Windows Services To Default Startup
  • Repair Windows Firewall.
  • Remove Polices Set By Infections.
  1. Presiona en “Start Repair”


El proceso ira realizando todos los pasos establecidos y cuando termine Reinicias el equipo.

Paso 2: Sigue con:

1.- Muy Importante >>> Realizar una copia de Seguridad de su Registro.

  • Descarga/Ejecuta DelFix en el escritorio de Windows.
  • Clic Derecho, “Ejecutar como Administrador”.
  • En la ventana principal, marca solamente la casilla “Create Registry Backup”.
  • Clic en Run.

Al terminar se abrirá un reporte llamado DelFix.txt, guárdelo por si fuera necesario y cierre la herramienta…

2.- Desactiva Temporalmente tu antivirus.

3.- Abre un nuevo archivo Notepad/Bloc de Notas y copia y pega este contenido:

Start
CloseProcesses:
CreateRestorePoint:
REG: REG QUERY "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mpsdrv" /s
REG: REG QUERY "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinDefend" /s

CMD: sc start mpsdrv
CMD: sc config MpsSvc start= auto
CMD: sc config WinDefend start= auto
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
RemoveProxy:
EmptyTemp:
END
  • Lo guardas bajo el nombre de fixlist.txt en el escritorio <<< Esto es muy importante.

Nota: Es necesario que el ejecutable Frst.exe y fixlist.txt se encuentren en la misma ubicación (escritorio) o si no la herramienta no trabajara.

  • Ejecutas Frst.exe.
  • Presionas el botón Fix y aguardas a que termine.
  • La Herramienta guardara el reporte en tu escritorio (Fixlog.txt).
  • Lo pegas en tu próxima respuesta.

Paso 3: Luego de reiniciar, vuelves a ejecutar FSS.exe y nos pegas su nuevo reporte.

Nos comentas.

Salu2.

1 me gusta

Hola, el Firewall vuelve a funcionar, eso parece, voy a mirar esas aplicaciones calculadora y xbox game bar que me fallaban a ver si me vuelven a funcionar.

Frst Fixlog.txt reporte de fixlog.txt

Resultados de la corrección de Farbar Recovery Scan Tool (x64) Versión: 27-01-2020
Ejecutado por DHAMPIRD (31-01-2020 17:47:35) Run:3
Ejecutado desde C:\Users\DHAMPIRD\Desktop
Perfiles cargados: DHAMPIRD (Perfiles disponibles: DHAMPIRD)
Modo de Inicio: Normal
==============================================

fixlist contenido:
*****************
Start
CloseProcesses:
CreateRestorePoint:
REG: REG QUERY "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mpsdrv" /s
REG: REG QUERY "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinDefend" /s

CMD: sc start mpsdrv
CMD: sc config MpsSvc start= auto
CMD: sc config WinDefend start= auto
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
RemoveProxy:
EmptyTemp:
END
*****************

Procesos cerrados correctamente.
El punto de restauración fue creado correctamente.

========= REG QUERY "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mpsdrv" /s =========


HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mpsdrv
    Description    REG_SZ    @%SystemRoot%\system32\drivers\mpsdrv.sys,-23093
    DisplayName    REG_SZ    @%SystemRoot%\system32\drivers\mpsdrv.sys,-23092
    ErrorControl    REG_DWORD    0x1
    Group    REG_SZ    network
    ImagePath    REG_EXPAND_SZ    System32\drivers\mpsdrv.sys
    Start    REG_DWORD    0x3
    Type    REG_DWORD    0x1

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mpsdrv\Security
    Security    REG_BINARY    01001480900000009C000000140000003000000002001C000100000002801400FF000F000101000000000001000000000200600004000000000014008500020001010000000000050B000000000014009F000E00010100000000000512000000000018009D000E0001020000000000052000000020020000000018008500000001020000000000052000000021020000010100000000000512000000010100000000000512000000



========= Final de Reg: =========


========= REG QUERY "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinDefend" /s =========


HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinDefend
    DependOnService    REG_MULTI_SZ    RpcSs
    Description    REG_SZ    @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-240
    DisplayName    REG_SZ    @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310
    ErrorControl    REG_DWORD    0x1
    FailureActions    REG_BINARY    8051010000000000010000000300000014000000030000006400000000000000640000000000000064000000
    ImagePath    REG_EXPAND_SZ    "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MsMpEng.exe"
    LaunchProtected    REG_DWORD    0x3
    ObjectName    REG_SZ    LocalSystem
    RequiredPrivileges    REG_MULTI_SZ    SeImpersonatePrivilege\0SeBackupPrivilege\0SeRestorePrivilege\0SeDebugPrivilege\0SeChangeNotifyPrivilege\0SeLoadDriverPrivilege\0SeSecurityPrivilege\0SeShutdownPrivilege\0SeIncreaseQuotaPrivilege\0SeAssignPrimaryTokenPrivilege\0SeTcbPrivilege\0SeIncreaseBasePriorityPrivilege\0SeSystemEnvironmentPrivilege\0SeTakeOwnershipPrivilege
    ServiceSidType    REG_DWORD    0x1
    Start    REG_DWORD    0x4
    Type    REG_DWORD    0x10
    FailureCommand    REG_SZ    C:\WINDOWS\system32\mrt.exe /EHB /ServiceFailure "CAMP=4.18.1910.4;approximate-> Engine=1.1.16500.1;AVSIG=1.305.2610.0;ASSIG=1.305.2610.0" /StartService /Defender /q

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinDefend\Security
    Security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



========= Final de Reg: =========


========= sc start mpsdrv =========

[SC] StartService ERROR 1056:

Ya se est  ejecutando una instancia de este servicio.


========= Final de CMD: =========


========= sc config MpsSvc start= auto =========

[SC] OpenService ERROR 5:

Acceso denegado.


========= Final de CMD: =========


========= sc config WinDefend start= auto =========

[SC] OpenService ERROR 5:

Acceso denegado.


========= Final de CMD: =========


========= netsh advfirewall reset =========

Aceptar


========= Final de CMD: =========


========= netsh advfirewall set allprofiles state ON =========

Aceptar


========= Final de CMD: =========


========= RemoveProxy: =========

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => eliminado correctamente
HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer => eliminado correctamente
HKU\S-1-5-21-3597564769-968549059-3920177797-1005\SOFTWARE\Policies\Microsoft\Internet Explorer => eliminado correctamente
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\S-1-5-21-3597564769-968549059-3920177797-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\S-1-5-21-3597564769-968549059-3920177797-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente


========= Final de RemoveProxy: =========


=========== EmptyTemp: ==========

BITS transfer queue => 11296768 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 55222468 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 163415665 B
Edge => 0 B
Chrome => 0 B
Firefox => 1116192893 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 28034 B
NetworkService => 28034 B
ELDI.000 => 28034 B
ELDI => 28034 B
DHAMPIRD => 86918777 B

RecycleBin => 0 B
EmptyTemp: => 1.3 GB datos temporales eliminados.

================================


El sistema necesita reiniciarse.

==== Final de Fixlog 17:49:49 ====

Después de reiniciar resultado FSS.exe

Farbar Service Scanner Version: 14-12-2019
Ran by DHAMPIRD (administrator) on 31-01-2020 at 18:13:59
Running from "C:\Users\DHAMPIRD\Desktop"
Microsoft Windows 10 Pro  (X64)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo.com is accessible.


Windows Firewall:
=============

Firewall Disabled Policy: 
==================


System Restore:
============

System Restore Policy: 
========================


Security Center:
============


Windows Update:
============

Windows Autoupdate Disabled Policy: 
============================


Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
The start type of WinDefend service is set to Disabled. The default start type is Auto.
The ImagePath of WinDefend: ""C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MsMpEng.exe"".


Windows Defender Disabled Policy: 
==========================


Other Services:
==============


File Check:
========
C:\Windows\System32\nsisvc.dll => File is digitally signed
C:\Windows\System32\drivers\nsiproxy.sys => File is digitally signed
C:\Windows\System32\drivers\afd.sys => File is digitally signed
C:\Windows\System32\drivers\tdx.sys => File is digitally signed
C:\Windows\System32\Drivers\tcpip.sys => File is digitally signed
C:\Windows\System32\dnsrslvr.dll => File is digitally signed
C:\Windows\System32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\System32\mpssvc.dll => File is digitally signed
C:\Windows\System32\bfe.dll => File is digitally signed
C:\Windows\System32\drivers\mpsdrv.sys => File is digitally signed
C:\Windows\System32\SDRSVC.dll => File is digitally signed
C:\Windows\System32\vssvc.exe => File is digitally signed
C:\Windows\System32\wscsvc.dll => File is digitally signed
C:\Windows\System32\wbem\WMIsvc.dll => File is digitally signed
C:\Windows\System32\wuaueng.dll => File is digitally signed
C:\Windows\System32\qmgr.dll => File is digitally signed
C:\Windows\System32\es.dll => File is digitally signed
C:\Windows\System32\cryptsvc.dll => File is digitally signed
C:\Program Files\Windows Defender\MpSvc.dll => File is digitally signed
C:\Windows\System32\ipnathlp.dll => File is digitally signed
C:\Windows\System32\iphlpsvc.dll => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed


**** End of log ****

Hola @Dhampird

Siii, Firewall funcionando…:clap::clap:

Lo que no funciona es el antivirus de Windows Defender.

Esto se soluciona instalando otro AV, pero no te recomiendo uno pirata, prueba con uno Gratuito como por ejemplo Bitdefender. o si quieres Eset, paga la licencia… :grinning:


Para ir terminando y eliminar las herramientas utilizadas:

Descargas/Ejecutas >> Delfix, desde tu escritorio.

  • Doble clic para ejecutarlo.(Si usas Windows Vista/7 /8 /10,presiona clic derecho y selecciona >> “Ejecutar como Administrador”)
  • Marca las casilla Remove disinfection tools y Purgue Sistem Restore
  • Pulsar en Run.

Se abrirá el informe (DelFix.txt), guárdalo por si fuera necesario y cierra la herramienta.

Nos comentas si todo esta en orden para dar por Solucionado el tema.


@Dhampird

Pd/ Me olvidaba Con Revo Uninstaller en su Modo Avanzado puedes desinstalar las aplicaciones y reinstalarlas desde la Tienda.

Salu2.

Hola, ok, gracias. Estoy con la tienda de windows, que dejó de funcionar a ver si la puedo restaurar y recuperar esas aplicaciones que no iban también.

Hola @Dhampird

Veamos si puedo ayudarte a solucionar los problemas de la Tienda:

Descargas >>> FixWin10.

  • Lo extraes, das doble clic sobre el Icono del programa.

No lleva Instalación. Eso si esta en Ingles.

  • En su Ventana Welcome, crearás un Punto de Restauración, dar clic en Create System Restore Point, tal como esta en su Manual.

  • Luego presionas el Punto 3 >> Re Register Store Apps.


Luego en la Ventana: Windows 10.

Das Fix en :

  • 7) Tiene problemas para descargar aplicaciones de la tienda. Borrar y restablecer la memoria caché de la tienda.

  • 8) La aplicación no se instaló desde la Tienda Windows. Código de error: 0x8024001e.

  • 9) Las aplicaciones de la Tienda Windows no se abren. Volver a registrar todas las aplicaciones.

Clic en Aceptar.


Luego vas a su Ventana: Solucionador de Problemas de Windows.

Descargas y Ejecutas el solucionador Nº4: :

Clic en Aceptar


En todos los casos, deberás seleccionar la corrección presionando en “Fix” (Ir uno a la vez), una ventana se abrirá informándote “Has aplicado con éxito esta solución. Un reinicio es requerido para ver los cambios”

Al finalizar todos los Fix reinicias el equipo, y compruebas si se soluciono el problema.

Nos comentas…

Salu2.