Malwarebytes
www.malwarebytes.com
-Detalles del registro-
Fecha del análisis: 30/6/21
Hora del análisis: 15:40
Archivo de registro: c3166308-d9a8-11eb-b995-985aebce19b9.json
-Información del software-
Versión: 4.4.0.117
Versión de los componentes: 1.0.1344
Versión del paquete de actualización: 1.0.42473
Licencia: Prueba
-Información del sistema-
SO: Windows 7 Service Pack 1
CPU: x64
Sistema de archivos: NTFS
Usuario: pks-PC\pks
-Resumen del análisis-
Tipo de análisis: Análisis de amenazas
Análisis iniciado por:: Manual
Resultado: Completado
Objetos analizados: 261852
Amenazas detectadas: 30
Amenazas en cuarentena: 0
Tiempo transcurrido: 4 min, 35 seg
-Opciones de análisis-
Memoria: Activado
Inicio: Activado
Sistema de archivos: Activado
Archivo: Activado
Rootkits: Desactivado
HeurÃstica: Activado
PUP: Detectar
PUM: Detectar
-Detalles del análisis-
Proceso: 0
(No hay elementos maliciosos detectados)
Módulo: 0
(No hay elementos maliciosos detectados)
Clave del registro: 4
Trojan.Glupteba.E, HKU\S-1-5-21-1864888813-928069299-2780987225-1000\SOFTWARE\MICROSOFT\aad81103, Sin acciones por parte del usuario, 514, 821174, 1.0.42473, , ame, , ,
Trojan.Glupteba, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Winmon, Sin acciones por parte del usuario, 4421, 781348, , , , , ,
Trojan.Glupteba.E, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WinmonFS, Sin acciones por parte del usuario, 514, 781211, 1.0.42473, , ame, , ,
Trojan.Glupteba.E, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WinmonProcessMonitor, Sin acciones por parte del usuario, 514, 781210, 1.0.42473, , ame, , ,
Valor del registro: 8
Trojan.Glupteba.E, HKU\S-1-5-21-1864888813-928069299-2780987225-1000\SOFTWARE\MICROSOFT\aad81103|CAMPAIGNID, Sin acciones por parte del usuario, 514, 821174, 1.0.42473, , ame, , ,
PUP.Optional.DriverPack.BITSRST, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{4DE36FDA-D09A-4752-875B-5FEFD5C6748C}, Sin acciones por parte del usuario, 6060, 820531, 1.0.42473, , ame, , ,
Trojan.Glupteba.E, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{83598FBD-22D2-467B-BB69-2D302FC33147}, Sin acciones por parte del usuario, 514, 795081, 1.0.42473, , ame, , ,
Trojan.Glupteba.E, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{054AF7BE-ACF7-46AB-A975-D8B7F81344AD}, Sin acciones por parte del usuario, 514, 795081, 1.0.42473, , ame, , ,
Trojan.Glupteba.E, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{338F807F-4403-4ABB-950C-702B7C76473A}, Sin acciones por parte del usuario, 514, 795081, 1.0.42473, , ame, , ,
Trojan.Glupteba.E, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{8A363131-4807-4DAD-901E-75841A0E1C79}, Sin acciones por parte del usuario, 514, 795081, 1.0.42473, , ame, , ,
Trojan.Glupteba.E, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{13D154B4-951D-4A5B-B3E8-F0AF92136F45}, Sin acciones por parte del usuario, 514, 795081, 1.0.42473, , ame, , ,
Trojan.Glupteba.E, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{4C25A053-9B8F-4E7D-B0AF-742B5643EB47}, Sin acciones por parte del usuario, 514, 795081, 1.0.42473, , ame, , ,
Datos del registro: 0
(No hay elementos maliciosos detectados)
Secuencia de datos: 0
(No hay elementos maliciosos detectados)
Carpeta: 0
(No hay elementos maliciosos detectados)
Archivo: 18
Trojan.Ranumbot, C:\WINDOWS\WINDEFENDER.EXE, Sin acciones por parte del usuario, 7832, 854955, 1.0.42473, 772A1230057BFF7E036E02B1, dds, 01312580, 6512AE7C9F36206F6433F78296102419, 6B9468EFEE35A8454A7FB395F43E5BDD14DF918437661846D7D6EC199BA08883
Backdoor.Bot, C:\USERS\PKS\APPDATA\LOCAL\TEMP\WUP\WUP.EXE, Sin acciones por parte del usuario, 3611, 874960, 1.0.42473, 0A2675B58C63F54C016E574F, dds, 01312580, CE4395EDBBF9869A5E276781AF2E0FB5, F059A5358C24CC362C2F74B362C75E02035FDF82F9FFAE8D553AFEE1A271AFD0
Trojan.Glupteba, C:\WINDOWS\SYSTEM32\DRIVERS\WINMON.SYS, Sin acciones por parte del usuario, 4421, 781348, 1.0.42473, 0317EDF9403370E14DD1FBE9, dds, 01312580, 69989105F151015C16A2F422F5722590, B1C321B5E495473A401BD6E6ADFE1EC931F8247B1B2646B0E259BFF011A0958C
Trojan.Glupteba.E, C:\WINDOWS\SYSTEM32\DRIVERS\WINMONFS.SYS, Sin acciones por parte del usuario, 514, 781211, , , , , C6100C067D1E619B730BF23AB4045B17, F632800DC961C46374DBA818B8AF17F1B770BFCB2D868E5CE10F2151B264EA26
Trojan.Ceprolad, C:\USERS\PKS\APPDATA\LOCAL\TEMP\CSRSS\SCHEDULED.EXE, Sin acciones por parte del usuario, 6055, 831103, 1.0.42473, , ame, , 3C9EEC833A10A9CF9EA3645CF01167AE, D1A49E28A86C69135687FF6FFACFECAC770BB0ECBE9443C5AD1B1EAEF8E53CA8
Trojan.Glupteba, C:\USERS\PKS\APPDATA\LOCAL\TEMP\CSRSS\GETFP.EXE, Sin acciones por parte del usuario, 4421, 916786, 1.0.42473, F30B467512B99CA1D9A2868D, dds, 01312580, 941B755A404A616A55EA57FF4DBFE184, 9AFABDF762EA2E412019CE0F6004F7FE1C948F2B36E1AAB347E623FEDD5EF440
Malware.AI.4146523321, C:\USERS\PKS\APPDATA\LOCAL\TEMP\CSRSS\GETDISKSPACE.EXE, Sin acciones por parte del usuario, 1000000, 0, 1.0.42473, EBC9438573A1237AF726ECB9, dds, 01312580, 8FA6BDDC1A44FDD411EFF61A2B11D4CF, BE5404679F1A6CC100FDCC660EB2E849E50F32EC94A9190CA625EFE3B2C70914
Malware.AI.4218077589, C:\USERS\PKS\APPDATA\LOCAL\TEMP\CSRSS\REMOVESMBDEPS1801.EXE, Sin acciones por parte del usuario, 1000000, 0, 1.0.42473, 56E5203B837EFF16FB6AC195, dds, 01312580, 1F4CF84B4E0C57DFBF5611749F7C907D, D338E58F41CB6AB1361FC574182F68B74EC955A93FC64E8D06972468398E67AD
Bitcoin.Trojan.Miner.DDS, C:\USERS\PKS\APPDATA\LOCAL\TEMP\CSRSS\WUP\XARCH\WUP.EXE, Sin acciones por parte del usuario, 1000002, 0, 1.0.42473, F24CB72F397483E1616D5702, dds, 01312580, 8BC0535A7B801F05FD80D46525666576, B80914FAF6F1C7FD6CBF6F6832BEBF2B9DE726FF9AE10683787BA7EC436B38A2
Generic.Trojan.Malicious.DDS, C:\USERS\PKS\APPDATA\LOCAL\TEMP\CSRSS\ML20201223.EXE, Sin acciones por parte del usuario, 1000002, 0, 1.0.42473, 9A7A6AFB3102800D547A4E88, dds, 01312580, D54ADE674CB0C3E6D322ED7380E8ADF6, 5191548B8EDF4B98E623F055F5205E2DB17AA220C28928B1DA1C3A9BA1A75EE0
Trojan.Dropper, C:\USERS\PKS\APPDATA\LOCAL\TEMP\CSRSS\NUPLOAD05053.EXE, Sin acciones por parte del usuario, 604, 937705, 1.0.42473, 1A4E2ECD268030C63A556B6C, dds, 01312580, 04C1F4395F80A3890AA8B12EBC2B4855, FAD16599A866F466BDEFF2A716B9AA79FAA6677F2895F0B262CF9402DEB4B66C
Malware.AI.2231924781, C:\USERS\PKS\APPDATA\LOCAL\TEMP\CSRSS\KILLPROCESS2005.EXE, Sin acciones por parte del usuario, 1000000, 0, 1.0.42473, ED4AA48599916E6A8508782D, dds, 01312580, 1510073EF64B27437486F97CA9C1398A, DE0C1F000485654F9305B396FFDB009DBBC4D8671C951EE3D67F6AD64F7045D7
Malware.Heuristic.1003, C:\USERS\PKS\APPDATA\LOCAL\TEMP\CSRSS\SMBSCANLOCAL0906.EXE, Sin acciones por parte del usuario, 1000001, 0, 1.0.42473, 0000000000000000000003EB, dds, 01312580, 6BE10A13C17391218704DC24B34CF736, 9A74640CA638B274BC8E81F4561B4C48B0C5FBCB78F6350801746003DED565EB
Generic.Trojan.Malicious.DDS, C:\USERS\PKS\APPDATA\LOCAL\TEMP\CSRSS\MG20201223-1.EXE, Sin acciones por parte del usuario, 1000002, 0, 1.0.42473, 9A7A6AFB3102800D547A4E88, dds, 01312580, 0A13D106FA3997A0C911EDD5AA0E147A, 5E46ECFFCFF9440E97BF4F0A85AD34132407F925B27A8759F5A01DE5EA4DA6AF
Trojan.Dropper.GO, C:\USERS\PKS\APPDATA\LOCAL\TEMP\CSRSS\WW31.EXE, Sin acciones por parte del usuario, 8032, 944512, 1.0.42473, 2B817CE6404AE18D25E5BCA9, dds, 01312580, 9A4B7B0849A274F6F7AC13C7577DAAD8, C1D5A585FCE188423D31DF3EA806272F3DAA5EB989E18E9ECF3D94B97B965F8E
PUP.Optional.PushNotifications, C:\USERS\PKS\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Preferences, Sin acciones por parte del usuario, 203, 888597, 1.0.42473, , ame, , F364A4E11172BA0183115DCD35875937, F8BAC0244319E6C9EF3A230E0ECC94BB8DA76180D6674339349C49677F66EDBB
PUP.Optional.PushNotifications, C:\USERS\PKS\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Preferences, Sin acciones por parte del usuario, 203, 828666, 1.0.42473, , ame, , F364A4E11172BA0183115DCD35875937, F8BAC0244319E6C9EF3A230E0ECC94BB8DA76180D6674339349C49677F66EDBB
PUP.Optional.PushNotifications, C:\USERS\PKS\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Preferences, Sin acciones por parte del usuario, 203, 803463, 1.0.42473, , ame, , F364A4E11172BA0183115DCD35875937, F8BAC0244319E6C9EF3A230E0ECC94BB8DA76180D6674339349C49677F66EDBB
Sector fÃsico: 0
(No hay elementos maliciosos detectados)
WMI: 0
(No hay elementos maliciosos detectados)
(end)
Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 29-06-2021
Ejecutado por pks (30-06-2021 17:39:13)
Ejecutado desde C:\Users\pks\Desktop
Windows 7 Professional Service Pack 1 (X64) (2019-07-10 07:39:58)
Modo de Inicio: Normal
==========================================================
==================== Cuentas: =============================
Administrador (S-1-5-21-1864888813-928069299-2780987225-500 - Administrator - Disabled)
HomeGroupUser$ (S-1-5-21-1864888813-928069299-2780987225-1004 - Limited - Enabled)
Invitado (S-1-5-21-1864888813-928069299-2780987225-501 - Limited - Disabled)
pks (S-1-5-21-1864888813-928069299-2780987225-1000 - Administrator - Enabled) => C:\Users\pks
==================== Centro de Seguridad ========================
(Si una entrada es incluida en el fixlist, será eliminada.)
AV: Avast Antivirus (Disabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Disabled - Up to date) {5078598A-1FA2-C888-AA5F-A9C66537DB12}
==================== Programas instalados ======================
(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)
Adobe Dreamweaver CS6 (HKLM-x32\...\{A4ED5E53-7AA0-11E1-BF04-B2D4D4A5360E}) (Version: 12 - Adobe Systems Incorporated)
Adobe Reader 9.5.0 - Español (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-A95000000001}) (Version: 9.5.0 - Adobe Systems Incorporated)
Apple Application Support (32 bits) (HKLM-x32\...\{5C028510-A6A1-409A-A2BF-4DCB43B21EF9}) (Version: 7.6 - Apple Inc.)
Apple Application Support (64 bits) (HKLM\...\{5C7D4FCF-80C5-4520-9934-D50532AAC59C}) (Version: 7.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{B5A46811-3612-4DA5-8A5A-E6DED5D7C523}) (Version: 12.2.1.12 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{A30EA700-5515-48F0-88B0-9E99DC356B88}) (Version: 2.6.0.1 - Apple Inc.)
AutoFirma (HKLM-x32\...\AutoFirma) (Version: 1.6.5 - Gobierno de España)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 21.5.2470 - Avast Software)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
calibre (HKLM-x32\...\{DD649DA2-BBD9-4247-85DD-E04F7C1E8552}) (Version: 1.48.0 - Kovid Goyal)
CCleaner (HKLM\...\CCleaner) (Version: 5.76 - Piriform)
Configurador FNMT (HKLM-x32\...\ConfiguradorFnmt) (Version: 1.0.2 - FNMT-RCM)
Epubor Ultimate (HKLM-x32\...\Epubor Ultimate) (Version: 3.0.13.617 - Epubor Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 91.0.4472.114 - Google LLC)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.0.1428 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4276 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.7.248 - Intel Corporation)
Macromedia Extension Manager (HKLM-x32\...\{A5BA14E0-7384-11D4-BAE7-00409631A2C8}) (Version: 1.5 - Macromedia)
MacromediaDreamweaver MX 2004 (HKLM-x32\...\{05BB2EC5-6BEF-4DDC-9E75-BEE7B161157A}) (Version: 7.0 - Macromedia)
Messenger 91.5.119 (HKU\S-1-5-21-1864888813-928069299-2780987225-1000\...\c1b3adcf-2068-5e8d-b25d-30ce588e3a4c) (Version: 91.5.119 - Facebook, Inc.)
Microsoft .NET Framework 4.7.2 (español) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 3082) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft .NET Framework 4.7.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Movavi Business Suite 2020 (HKU\S-1-5-21-1864888813-928069299-2780987225-1000\...\Movavi Business Suite 2020) (Version: 20.0.0 - Movavi)
Movavi Screen Capture Studio 7 (HKLM-x32\...\Movavi Screen Capture Studio 7) (Version: 7.3.0 - Movavi)
Movavi Video Suite 2020 (HKU\S-1-5-21-1864888813-928069299-2780987225-1000\...\Movavi Video Suite 2020) (Version: 20.1.0 - Movavi)
Mozilla Firefox 88.0.1 (x64 es-ES) (HKLM\...\Mozilla Firefox 88.0.1 (x64 es-ES)) (Version: 88.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 85.0.2 - Mozilla)
Paquete de controladores de Windows - Apple Inc. (AppleCamera) Image (11/21/2013 5.0.22.0) (HKLM\...\1FCF3C93707C46D648F0B00E216A55E96DEB5A17) (Version: 11/21/2013 5.0.22.0 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. (AppleUSBEthernet) Net (02/01/2008 3.10.3.10) (HKLM\...\D53CBF2C12DF51DA5E9C1A9DA97FF0DCA0C524C5) (Version: 02/01/2008 3.10.3.10 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Bluetooth (03/01/2010 3.0.0.5) (HKLM\...\EA3C044F6FD39CEC8F4F596836BF4197E97E1D39) (Version: 03/01/2010 3.0.0.5 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Broadcom Bluetooth (04/10/2013 5.0.4.0) (HKLM\...\EC3BA08E32AD503AB708B97F11CE09D06BCC9604) (Version: 04/10/2013 5.0.4.0 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Broadcom Bluetooth (07/31/2015 6.0.6100.0) (HKLM\...\8F0EDB7FDBC8E1501FC134846F23B8B02EDBC2A0) (Version: 07/31/2015 6.0.6100.0 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Display (01/23/2009 3.0.0.0) (HKLM\...\E0EAD0CEA9119B77350ED4DE28D9A82E57014D94) (Version: 01/23/2009 3.0.0.0 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple IR Receiver (02/21/2008 2.0.4.0) (HKLM\...\D5BB697E7D0C75712F3AD00AB1B85412CB5C0FD3) (Version: 02/21/2008 2.0.4.0 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Keyboard (01/10/2014 5.0.8.0) (HKLM\...\ABCCA6C3F97A148D7C69114CB55DFA9D46053BEA) (Version: 01/10/2014 5.0.8.0 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Keyboard (10/29/2012 5.0.3.0) (HKLM\...\59357B4067FCABD09BD751BD9A00336CF05B2E22) (Version: 10/29/2012 5.0.3.0 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Multitouch (09/04/2013 5.0.2.0) (HKLM\...\277F15E06E6EEB458048F41BCB8FB843B3241E95) (Version: 09/04/2013 5.0.2.0 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Multitouch (09/11/2012 4.0.3.0) (HKLM\...\B374E899604BD9007FF7564A07F627CCDA58763C) (Version: 09/11/2012 4.0.3.0 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Multitouch Mouse (09/11/2012 4.0.3.0) (HKLM\...\742CB1BDA52EA9F1BBE482DA6DAA17944652B476) (Version: 09/11/2012 4.0.3.0 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple ODD (05/17/2010 3.1.0.0) (HKLM\...\D6B4CB6AD2F81752C2EF8DCF6AD5EBC567ADD45C) (Version: 05/17/2010 3.1.0.0 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple SD Card Reader (07/22/2013 1.0.0.1) (HKLM\...\D323E2C0C5E4948B07EE346CF62161281B0A8578) (Version: 07/22/2013 1.0.0.1 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple System Device (05/20/2013 5.0.2.0) (HKLM\...\1A9F109A8ACEE4CA1F898708DBB0FBA6EF0587FC) (Version: 05/20/2013 5.0.2.0 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple System Device (08/28/2012 5.0.0.0) (HKLM\...\051EC488BEF1D02E9051B188C43B026A88E197E5) (Version: 08/28/2012 5.0.0.0 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Wireless Mouse (06/01/2011 4.0.0.1) (HKLM\...\D088EE4BD2819FBA2B349EF9D55176F223419BE6) (Version: 06/01/2011 4.0.0.1 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Wireless Trackpad (10/29/2011 5.0.0.0) (HKLM\...\551732BB0872DA97E26385C221B172A5BD4DE93C) (Version: 10/29/2011 5.0.0.0 - Apple Inc.)
Paquete de controladores de Windows - Atheros Communications Inc. (athr) Net (11/13/2010 9.2.0.113) (HKLM\...\F0A3F8394866FA91E82C8D5AB92C918FE40FE1DF) (Version: 11/13/2010 9.2.0.113 - Atheros Communications Inc.)
Paquete de controladores de Windows - Broadcom (b57nd60a) Net (09/04/2012 15.4.0.17) (HKLM\...\75E64992A03EC5E73D33586790CC506561DCC5DB) (Version: 09/04/2012 15.4.0.17 - Broadcom)
Paquete de controladores de Windows - Broadcom (B57ports) Net (06/16/2009 1.0.0.1) (HKLM\...\FC2077892425ED71A137B1CB6D99A9CA7475435D) (Version: 06/16/2009 1.0.0.1 - Broadcom)
Paquete de controladores de Windows - Broadcom (BCM43XX) Net (11/13/2012 5.106.199.1) (HKLM\...\3D6DDDCF8961C8C866F6660579A59B5B6CFA281F) (Version: 11/13/2012 5.106.199.1 - Broadcom)
Paquete de controladores de Windows - Broadcom (BCM43XX) Net (12/13/2013 6.30.223.215) (HKLM\...\A5E73046BA905B7B0235AB40FA98A4E3AB96E00E) (Version: 12/13/2013 6.30.223.215 - Broadcom)
Paquete de controladores de Windows - Broadcom Corporation (bScsiSDa) SDHost (08/14/2012 1.0.0.243) (HKLM\...\ADF3AD5C5705E56E7DEA1447D58EFF216BA1223D) (Version: 08/14/2012 1.0.0.243 - Broadcom Corporation)
Paquete de controladores de Windows - Cirrus Logic, Inc. (CirrusFilter) MEDIA (02/19/2013 6.6001.1.40) (HKLM\...\969EFE1D5E95B01D3C42B9D0363FA64AF9E336E7) (Version: 02/19/2013 6.6001.1.40 - Cirrus Logic, Inc.)
Paquete de controladores de Windows - Cirrus Logic, Inc. (CirrusFilter) MEDIA (11/09/2012 6.6001.1.38) (HKLM\...\907F370097451D1FE9BF31A43BF04CDAF69407D4) (Version: 11/09/2012 6.6001.1.38 - Cirrus Logic, Inc.)
Paquete de controladores de Windows - Cirrus Logic, Inc. (CirrusLFD) MEDIA (10/03/2013 6.6001.3.13) (HKLM\...\9EBC96DD99F2C854D540FBF6A16A557BADDBC228) (Version: 10/03/2013 6.6001.3.13 - Cirrus Logic, Inc.)
Paquete de controladores de Windows - Intel (e1express) Net (03/26/2010 9.13.41.0) (HKLM\...\159439476E3A00F9FAE49DD6C1A78F2F6288A5B9) (Version: 03/26/2010 9.13.41.0 - Intel)
Paquete de controladores de Windows - Intel (e1kexpress) Net (04/12/2010 11.6.92.0) (HKLM\...\5BEF08C10896D86DC13394FFA75874564B700368) (Version: 04/12/2010 11.6.92.0 - Intel)
Paquete de controladores de Windows - Intel (e1qexpress) Net (12/04/2009 11.4.7.0) (HKLM\...\57AFA39B22ADEC4E383572E9331167546EB3C9C7) (Version: 12/04/2009 11.4.7.0 - Intel)
Paquete de controladores de Windows - Intel (e1rexpress) Net (01/07/2010 11.4.16.0) (HKLM\...\F71DB41300D30088C8D3716343D1429488E605C1) (Version: 01/07/2010 11.4.16.0 - Intel)
Paquete de controladores de Windows - Intel (e1yexpress) Net (04/07/2010 10.1.9.0) (HKLM\...\CB599752301BCA080D135697FDD05900F5A5CF4C) (Version: 04/07/2010 10.1.9.0 - Intel)
Paquete de controladores de Windows - Intel System (07/20/2007 1.2.76.0) (HKLM\...\E2708073906571A0B56F17FD825EF19281ECE29B) (Version: 07/20/2007 1.2.76.0 - Intel)
Paquete de controladores de Windows - Marvell (yukonx64) Net (12/06/2007 10.51.1.3) (HKLM\...\CDD703ED0B390A5643DB748EBFA5BD55FEEC0D8A) (Version: 12/06/2007 10.51.1.3 - Marvell)
Paquete de controladores de Windows - NVIDIA Corporation (NVHDA) MEDIA (07/03/2012 1.3.18.0) (HKLM\...\B46A8C1640335CA36A800E2C6D832964F6F58B54) (Version: 07/03/2012 1.3.18.0 - NVIDIA Corporation)
Photodex Presenter (HKLM-x32\...\Photodex Presenter) (Version: - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5936 - Realtek Semiconductor Corp.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.12 - VideoLAN)
WinRAR 5.91 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.91.0 - win.rar GmbH)
==================== Personalizado CLSID (Lista blanca): ==============
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
CustomCLSID: HKU\S-1-5-21-1864888813-928069299-2780987225-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation - pGFX -> Intel Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-06-29] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-06-29] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-06-29] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2020-06-25] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2020-06-25] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-06-29] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll -> Ningún archivo
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2015-08-27] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-06-29] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2020-06-25] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2020-06-25] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Lista blanca) ====================
==================== Accesos directos & WMI ========================
(Las entradas pueden ser listadas para ser restauradas o eliminadas.)
WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
==================== Módulos cargados (Lista blanca) =============
2021-06-29 21:18 - 2021-06-29 21:18 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\3082\avast.local_vc142.crt\api-ms-win-core-file-l1-2-0.dll
2021-06-29 21:18 - 2021-06-29 21:18 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\3082\avast.local_vc142.crt\api-ms-win-core-file-l2-1-0.dll
2021-06-29 21:18 - 2021-06-29 21:18 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\3082\avast.local_vc142.crt\api-ms-win-core-localization-l1-2-0.dll
2021-06-29 21:18 - 2021-06-29 21:18 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\3082\avast.local_vc142.crt\api-ms-win-core-processthreads-l1-1-1.dll
2021-06-29 21:18 - 2021-06-29 21:18 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\3082\avast.local_vc142.crt\api-ms-win-core-synch-l1-2-0.dll
2021-06-29 21:18 - 2021-06-29 21:18 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\3082\avast.local_vc142.crt\api-ms-win-core-timezone-l1-1-0.dll
2021-06-29 21:18 - 2021-06-29 21:18 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\3082\avast.local_vc142.crt\api-ms-win-crt-convert-l1-1-0.dll
2021-06-29 21:18 - 2021-06-29 21:18 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\3082\avast.local_vc142.crt\api-ms-win-crt-heap-l1-1-0.dll
2021-06-29 21:18 - 2021-06-29 21:18 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\3082\avast.local_vc142.crt\api-ms-win-crt-runtime-l1-1-0.dll
2021-06-29 21:18 - 2021-06-29 21:18 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\3082\avast.local_vc142.crt\api-ms-win-crt-stdio-l1-1-0.dll
2021-06-29 21:18 - 2021-06-29 21:18 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\3082\avast.local_vc142.crt\api-ms-win-crt-string-l1-1-0.dll
2021-06-29 21:18 - 2021-06-29 21:18 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\3082\avast.local_vc142.crt\ucrtbase.DLL
2021-06-29 21:18 - 2021-06-29 21:18 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\3082\avast.local_vc142.crt\VCRUNTIME140.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\api-ms-win-core-file-l1-2-0.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\api-ms-win-core-file-l2-1-0.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\api-ms-win-core-localization-l1-2-0.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\api-ms-win-core-processthreads-l1-1-1.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\api-ms-win-core-synch-l1-2-0.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\api-ms-win-core-timezone-l1-1-0.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\api-ms-win-crt-convert-l1-1-0.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\api-ms-win-crt-environment-l1-1-0.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\api-ms-win-crt-filesystem-l1-1-0.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\api-ms-win-crt-heap-l1-1-0.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\api-ms-win-crt-locale-l1-1-0.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\api-ms-win-crt-math-l1-1-0.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\api-ms-win-crt-multibyte-l1-1-0.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\api-ms-win-crt-runtime-l1-1-0.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\api-ms-win-crt-stdio-l1-1-0.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\api-ms-win-crt-string-l1-1-0.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\api-ms-win-crt-time-l1-1-0.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\api-ms-win-crt-utility-l1-1-0.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\MSVCP140.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\ucrtbase.DLL
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\VCRUNTIME140.dll
2021-06-30 13:04 - 2021-06-30 13:04 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\21063004\avast.local_vc142.crt\VCRUNTIME140_1.dll
==================== Alternate Data Streams (Lista blanca) ========
==================== Modo Seguro (Lista blanca) ==================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"
==================== Asociación (Lista blanca) =================
==================== Internet Explorer (Versión 11) (Lista blanca) ==========
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-01-03] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation -> Microsoft Corporation)
==================== Hosts contenido: =========================
(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)
2009-07-14 04:34 - 2009-06-10 23:00 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts
==================== Otras Ãreas ===========================
(Actualmente no existe una corrección automática para esta sección.)
HKU\S-1-5-21-1864888813-928069299-2780987225-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\pks\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 212.166.210.80 - 212.166.132.104
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Firewall de Windows está habilitado.
==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==
(Si una entrada es incluida en el fixlist, será eliminada.)
MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
MSCONFIG\startupreg: AdobeCS6ServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
MSCONFIG\startupreg: Apple_KbdMgr => C:\Program Files\Boot Camp\Bootcamp.exe
MSCONFIG\startupreg: BCSSync => "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
MSCONFIG\startupreg: BlackViolet => "C:\Windows\rss\csrss.exe"
MSCONFIG\startupreg: CCleaner Smart Cleaning => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: HotKeysCmds => "C:\Windows\system32\hkcmd.exe"
MSCONFIG\startupreg: IgfxTray => "C:\Windows\system32\igfxtray.exe"
MSCONFIG\startupreg: Persistence => "C:\Windows\system32\igfxpers.exe"
MSCONFIG\startupreg: USB3MON => "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
MSCONFIG\startupreg: Wondershare Helper Compact.exe => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
==================== Reglas de firewall (Lista blanca) ================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
FirewallRules: [SPPSVC-In-TCP] => (Allow) C:\Windows\system32\sppsvc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) C:\Windows\system32\sppsvc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{5D1A9710-3940-4171-8CEC-59BCA5C53D3A}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{6784DE8C-E61E-415E-84EB-12224EF3E4C9}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{8FDB7A9E-79C2-4676-856F-740654B854FC}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{888433DF-365F-4BEF-B7FA-1F2E1AA87130}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{FF612671-2BFA-4C73-9D44-E4F299B7DC75}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{C04A8ABE-E83A-4507-854F-C743BE7E6311}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{F121BCC7-4EE4-4885-90BC-A1E86ED43EAF}C:\program files (x86)\epubor\ultimate\epuborultimate.exe] => (Allow) C:\program files (x86)\epubor\ultimate\epuborultimate.exe (Wuhan JinDu Technology Ltd. -> )
FirewallRules: [UDP Query User{C0835CF0-F5E1-4CC7-B8EC-6D39021C6FAF}C:\program files (x86)\epubor\ultimate\epuborultimate.exe] => (Allow) C:\program files (x86)\epubor\ultimate\epuborultimate.exe (Wuhan JinDu Technology Ltd. -> )
FirewallRules: [TCP Query User{28DCE3CC-94EF-4FBE-84C2-A5047AC8DB9A}C:\program files\videolan\vlc\vlc.exe] => (Block) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{E47B5ECD-561A-4131-8B1B-116D280CB4A3}C:\program files\videolan\vlc\vlc.exe] => (Block) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [{DD99FFB5-21F9-47E7-A25D-83CAEE77CE63}] => (Allow) C:\Program Files (x86)\Songr\Songr.exe => Ningún archivo
FirewallRules: [{06975CF5-F341-48BD-A373-C356A735CEAE}] => (Allow) C:\Program Files (x86)\Songr\Songr.exe => Ningún archivo
FirewallRules: [{565B0D3C-8FB5-4B39-B617-BECCCDE253E9}] => (Allow) C:\Program Files (x86)\Songr\Songr.exe => Ningún archivo
FirewallRules: [{B48D5CB2-B500-4F0B-A501-EBD0170A2719}] => (Allow) C:\Program Files (x86)\Songr\Songr.exe => Ningún archivo
FirewallRules: [TCP Query User{C4E1C93E-DB9D-4C22-9EDC-C4DAFB98805E}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{C9FB2293-2383-425C-979C-442EFDDB5EE8}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{5D7CE3A9-A353-4BE1-A770-E33157C1345C}C:\program files (x86)\epubor\ultimate\epuborultimate.exe] => (Allow) C:\program files (x86)\epubor\ultimate\epuborultimate.exe (Wuhan JinDu Technology Ltd. -> )
FirewallRules: [UDP Query User{120A9415-7221-450A-97EE-880326FB66CC}C:\program files (x86)\epubor\ultimate\epuborultimate.exe] => (Allow) C:\program files (x86)\epubor\ultimate\epuborultimate.exe (Wuhan JinDu Technology Ltd. -> )
FirewallRules: [{AF3AF51D-89FB-4129-8AF5-FC8B1F11B631}] => (Allow) C:\Program Files (x86)\Apowersoft\ApowerManager\ApowerManager.exe => Ningún archivo
FirewallRules: [{D3A19B60-DB49-4A63-A3D3-17B18DC77129}] => (Allow) C:\Program Files (x86)\Apowersoft\ApowerManager\ApowerManager.exe => Ningún archivo
FirewallRules: [{8B507845-3086-429C-9C2E-753BA8116995}] => (Allow) C:\Program Files (x86)\Apowersoft\ApowerManager\ApowerManagerCoreServices.exe => Ningún archivo
FirewallRules: [{782CBE07-199A-43B9-855D-3475FED59A5F}] => (Allow) C:\Program Files (x86)\Apowersoft\ApowerManager\ApowerManagerCoreServices.exe => Ningún archivo
FirewallRules: [{D9A862AE-FDA4-4815-8669-9D0CCDFA2215}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
==================== Puntos de Restauración =========================
==================== Dispositivos defectuosos en el Administrador de dispositivos ============
==================== Errores del registro de eventos: ========================
Errores de aplicación:
==================
Error: (06/30/2021 05:00:19 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: No se pudo reactivar el filtro de eventos con la consulta "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" en el espacio de nombres "//./root/CIMV2" por el error 0x80041003. Los eventos no se podrán entregar a través de este filtro hasta que se corrija este problema.
Error: (06/30/2021 04:37:15 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: No se pudo reactivar el filtro de eventos con la consulta "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" en el espacio de nombres "//./root/CIMV2" por el error 0x80041003. Los eventos no se podrán entregar a través de este filtro hasta que se corrija este problema.
Error: (06/30/2021 03:30:21 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: No se pudo reactivar el filtro de eventos con la consulta "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" en el espacio de nombres "//./root/CIMV2" por el error 0x80041003. Los eventos no se podrán entregar a través de este filtro hasta que se corrija este problema.
Error: (06/30/2021 03:07:44 PM) (Source: ESENT) (EventID: 489) (User: )
Description: CCleaner64 (4964) Al intentar abrir el archivo "C:\Users\pks\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat" para acceso de sólo lectura se produjo el error de sistema 32 (0x00000020): "El proceso no tiene acceso al archivo porque está siendo utilizado por otro proceso. ". La operación para abrir el archivo se cerrará con el error -1032 (0xfffffbf8).
Error: (06/30/2021 12:23:21 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: No se pudo reactivar el filtro de eventos con la consulta "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" en el espacio de nombres "//./root/CIMV2" por el error 0x80041003. Los eventos no se podrán entregar a través de este filtro hasta que se corrija este problema.
Error: (06/30/2021 12:16:54 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2852337
Error: (06/30/2021 12:16:54 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2852337
Error: (06/30/2021 12:16:54 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Errores del sistema:
=============
Error: (06/30/2021 05:02:06 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio Servicio de Avast Browser Update (avast) no pudo iniciarse debido al siguiente error:
El sistema no puede encontrar el archivo especificado.
Error: (06/30/2021 05:00:46 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio Windows Presentation Foundation Font Cache 3.0.0.0 no pudo iniciarse debido al siguiente error:
El servicio no respondió a tiempo a la solicitud de inicio o de control.
Error: (06/30/2021 05:00:46 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Se agotó el tiempo de espera (30000 ms) para la conexión con el servicio Windows Presentation Foundation Font Cache 3.0.0.0.
Error: (06/30/2021 04:39:18 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio Servicio de Avast Browser Update (avast) no pudo iniciarse debido al siguiente error:
El sistema no puede encontrar el archivo especificado.
Error: (06/30/2021 03:31:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio Servicio de Avast Browser Update (avast) no pudo iniciarse debido al siguiente error:
El sistema no puede encontrar el archivo especificado.
Error: (06/30/2021 03:30:20 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio Windows Presentation Foundation Font Cache 3.0.0.0 no pudo iniciarse debido al siguiente error:
El servicio no respondió a tiempo a la solicitud de inicio o de control.
Error: (06/30/2021 03:30:20 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Se agotó el tiempo de espera (30000 ms) para la conexión con el servicio Windows Presentation Foundation Font Cache 3.0.0.0.
Error: (06/30/2021 03:26:08 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: El módulo de extensibilidad de WLAN se detuvo inesperadamente.
Ruta de acceso del módulo: C:\Windows\System32\bcmihvsrv64.dll
==================== Información de la memoria ===========================
BIOS: Apple Inc. 228.0.0.0.0 06/13/2019
Placa base: Apple Inc. Mac-6F01561E16C75D06
Procesador: Intel(R) Core(TM) i5-3210M CPU @ 2.50GHz
Porcentaje de memoria en uso: 69%
RAM fÃsica total: 4002.69 MB
RAM fÃsica disponible: 1211.18 MB
Virtual total: 8003.52 MB
Virtual disponible: 5231.52 MB
==================== Unidades ================================
Drive c: (BOOTCAMP) (Fixed) (Total:233.67 GB) (Free:178.87 GB) NTFS ==>[unidad con componentes de arranque (obtenido de BCD)]
==================== MBR & Tabla de particiones ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 00007763)
Partition: GPT.
Partition 2: (Not Active) - (Size=231.9 GB) - (Type=FF)
Partition 3: (Active) - (Size=233.7 GB) - (Type=07 NTFS)
==================== Final de Addition.txt =========