Hola Daniel, gracias por tu apoyo, aqui estan los logs
-------------------------------
Malwarebytes AdwCleaner 8.3.1.0
-------------------------------
Build: 11-18-2021
Database: 2021-12-02.1 (Cloud)
Support:
-------------------------------
Mode: Scan
-------------------------------
Start: 12-16-2021
Duration: 00:00:13
OS: Windows 10 Pro
Scanned: 32022
Detected: 0
***** [ Services ] *****
No malicious services found.
***** [ Folders ] *****
No malicious folders found.
***** [ Files ] *****
No malicious files found.
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious WMI found.
***** [ Shortcuts ] *****
No malicious shortcuts found.
***** [ Tasks ] *****
No malicious tasks found.
***** [ Registry ] *****
No malicious registry entries found.
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries found.
***** [ Chromium URLs ] *****
No malicious Chromium URLs found.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries found.
***** [ Firefox URLs ] *****
No malicious Firefox URLs found.
***** [ Hosts File Entries ] *****
No malicious hosts file entries found.
***** [ Preinstalled Software ] *****
No Preinstalled Software found.
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ##########
ZHP CLEANER
ZHPCleaner v2021.12.12.343 by Nicolas Coolman (2021/12/12)
~ Run by Spices (Administrator) (16/12/2021 08:18:02)
~ Web:
~ Blog:
~ Facebook
~ State version : Version OK
~ Certificate ZHPCleaner: Legal
~ Type : Scan
~ Report : C:\Users\Spices\OneDrive\Documents\OneDrive\Desktop\ZHPCleaner (S).txt
~ Quarantine : C:\Users\Spices\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Pro, 64-bit (Build 19043)
—\ Alternate Data Stream (ADS). (0)
~ No malicious or unnecessary items found. (ADS)
—\ Services (0)
~ No malicious or unnecessary items found. (Service)
—\ Browser internet (0)
~ No malicious or unnecessary items found. (Browser)
—\ Hosts file (1)
~ The hosts file is legitimate (21)
—\ Scheduled automatic tasks. (0)
~ No malicious or unnecessary items found. (Task)
—\ Explorer ( File, Folder) (7)
FOUND file: C:\Users\Spices\AppData\Local\Google\Chrome\User Data\Profile 1\Preferences =>ChromiumPreference
FOUND file: C:\Users\Spices\AppData\Local\Microsoft\Edge\User Data\Default\Preferences =>ChromiumPreference
FOUND file: C:\Windows\Prefetch\KMSPICO2021.TMP-FCDF6C27.pf =>HackTool.KMSpico
FOUND file: C:\Windows\Prefetch\KMSPICO_SETUP.EXE____________-72FEBBE7.pf =>HackTool.KMSpico
FOUND file: C:\Windows\AutoKMS\AutoKMS.log =>HackTool.AutoKMS
FOUND folder: C:\WINDOWS\AutoKMS\AutoKMS =>HackTool.AutoKMS
FOUND folder: C:\WINDOWS\AutoKMS =>HackTool.AutoKMS
—\ Registry ( Key, Value, Data) (3)
FOUND key: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A29CEAE99BA4B44AA12549884B2F90B [C:?Program Files (x86)\Common Files\Intuit\QuickBooks\QBWebConnector\Syncfusion.Shared.Windows.dll (Not File)] =>Adware.Sambreel
FOUND key: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\30568C97527E0154D9BE4C0602F7AF65 [C:?Program Files (x86)\Common Files\Intuit\QuickBooks\QBWebConnector\Syncfusion.Tools.Windows.dll (Not File)] =>Adware.Sambreel
FOUND key: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} [Piriform Software] =>Heuristic.Suspect
—\ Summary of the elements found (5)
=>ChromiumPreference
=>HackTool.KMSpico
=>HackTool.AutoKMS
=>Adware.Sambreel
=>Heuristic.Suspect
—\ Result of repair
~ Any repair made
~ Google Chrome OK
~ Internet Explorer OK
—\ Statistics
~ Items scanned : 111721
~ Items found : 14
~ Items cancelled : 0
~ Space saving (bytes) : 0
~ Items options : 9/17
—\ OPTIONS NOT ACTIVES
~ Temporary file analysis
~ Temporary folder analysis
~ Empty Folder CLSID Analysis
~ Empty Other Folder Analysis
~ Empty LocalLow Folder Analysis
~ Empty Local Folder Analysis
~ Obsolete Installer File Analysis
~ Start browsers with extensions removed
~ End of search in 00h12mn14s
—\ Reports (0)
ZHPCleaner-[S]-16122021-08_30_16.txT