Notepad.exe consume CPU - Otro caso

Hola,

Como he visto en el foro, hay varios compañeros con el mismo problema del notepad.exe consumiendo todos los recursos de la CPU.

Abro un nuevo tema tal y como requerís para personalizar la solución en cada caso. Ya ejecuté los programas que mencionais en otros hilos, por lo que os paso directamente los logs.

Muchas gracias!

Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 25-12-2019
Ejecutado por samur (administrador) sobre MAC-YOGA (LENOVO 80V4) (26-12-2019 11:47:43)
Ejecutado desde C:\Users\samur\Desktop
Perfiles cargados: samur (Perfiles disponibles: samur)
Platform: Windows 10 Home Versión 1909 18363.535 (X64) Idioma: Español (España, internacional)
Navegador predeterminado: Chrome
Modo de Inicio: Normal
Tutorial para Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Procesos (Lista blanca) =================

(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)

(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Adobe Systems, Incorporated -> Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe
(Cisco Systems, Inc. -> Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe
(Cisco Systems, Inc. -> Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe
(Citrix Systems, Inc. -> Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\ICA Client\AuthManager\AuthManSvr.exe
(Citrix Systems, Inc. -> Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\ICA Client\concentr.exe
(Citrix Systems, Inc. -> Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\ICA Client\Receiver\Receiver.exe
(Citrix Systems, Inc. -> Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\ICA Client\redirector.exe
(Citrix Systems, Inc. -> Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\ICA Client\SelfServicePlugin\SelfService.exe
(Citrix Systems, Inc. -> Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\ICA Client\SelfServicePlugin\SelfServicePlugin.exe
(Citrix Systems, Inc. -> Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe
(Dolby Laboratories, Inc. -> Dolby Laboratories, Inc.) C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe
(Dolby Laboratories, Inc. -> Dolby Laboratories, Inc.) C:\Program Files\Dolby\Dolby DAX2\DAX2_APP\DolbyDAX2TrayIcon.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Helios Software Solutions Ltd -> Helios Software Solutions) C:\Program Files\TextPad 8\TextPad.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_7948ecc1af5c27e1\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_7948ecc1af5c27e1\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_7948ecc1af5c27e1\IntelCpHDCPSvc.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_7948ecc1af5c27e1\IntelCpHeciSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel(R) Software Development Products -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_fd0b4b97d35097fa\aesm_service.exe
(Intel(R) Trust Services -> Intel(R) Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\SocketHeciServer.exe
(Lenovo (Beijing) Limited -> Lenovo Group Limited) C:\Users\samur\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe
(LENOVO -> ) C:\Program Files\Lenovo\LenovoUtility\utility.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.CompanionApp.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.Device.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(LENOVO -> Lenovo) C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe
(LENOVO -> Lenovo) C:\Program Files (x86)\Lenovo\GDCAgentSetupRed\GDCAgent.exe
(LENOVO -> Lenovo) C:\Program Files\Lenovo\YMC\ymc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\samur\AppData\Local\Microsoft\OneDrive\19.192.0926.0012\FileCoAuth.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\samur\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
(Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.) C:\Windows\V0790Mon.exe
(Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\NisSrv.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Plex, Inc -> Plex, Inc.) C:\Program Files (x86)\Plex\Plex Media Server\Plex Update Service.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Skillbrains) [Archivo no firmado] C:\Program Files (x86)\Skillbrains\lightshot\5.4.0.35\Lightshot.exe
(Spotify AB -> Spotify Ltd) C:\Users\samur\AppData\Roaming\Spotify\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Users\samur\AppData\Roaming\Spotify\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Users\samur\AppData\Roaming\Spotify\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Users\samur\AppData\Roaming\Spotify\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Users\samur\AppData\Roaming\Spotify\Spotify.exe
(SweetLabs Inc. -> SweetLabs, Inc) C:\Users\samur\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe

==================== Registro (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Run: [LenovoUtility] => C:\Program Files\Lenovo\LenovoUtility\utility.exe [791848 2016-09-27] (LENOVO -> )
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320584 2016-05-31] (Intel(R) Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18388928 2018-02-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1505736 2018-02-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1505736 2018-02-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [DAX2_APP] => C:\Program Files\Dolby\Dolby DAX2\DAX2_APP\DolbyDAX2TrayIcon.exe [876032 2017-10-12] (Dolby Laboratories, Inc. -> Dolby Laboratories, Inc.)
HKLM\...\Run: [C:\WINDOWS\system32\V0790Ext.ax] => C:\WINDOWS\system32\RegSvr32.exe /s C:\WINDOWS\system32\V0790Ext.ax
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [1871344 2018-02-22] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [225944 2017-04-11] (OOO Lightshot -> )
HKLM-x32\...\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] => C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe [1319936 2018-03-17] (Cisco Systems, Inc. -> Cisco Systems, Inc.)
HKLM-x32\...\Run: [ConnectionCenter] => C:\Program Files (x86)\Citrix\ICA Client\concentr.exe [795744 2019-09-18] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
HKLM-x32\...\Run: [Redirector] => C:\Program Files (x86)\Citrix\ICA Client\redirector.exe [460384 2019-09-18] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
HKLM-x32\...\Run: [V0790Mon.exe] => C:\WINDOWS\V0790Mon.exe [41600 2015-09-17] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.)
HKLM-x32\...\Run: [C:\WINDOWS\System32\V0790Ext.ax] => C:\WINDOWS\system32\RegSvr32.exe /s C:\WINDOWS\System32\V0790Ext.ax
HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\Run: [Spotify] => C:\Users\samur\AppData\Roaming\Spotify\Spotify.exe [22151072 2019-12-20] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\Run: [1195698C55D131E6986DD84CB5C62249524D0F6B._service_run] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1704944 2019-12-14] (Google LLC -> Google LLC)
HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\Run: [] =>  [X]
HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\Run: [d5c2a517] => C:\ProgramData\Intel\Wireless\04152d2\hadjhdb.exe C:\ProgramData\Intel\Wireless\04152d2\6f63120.au3
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\79.0.3945.88\Installer\chrmstp.exe [2019-12-17] (Google LLC -> Google LLC)
Startup: C:\Users\samur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Enviar a OneNote.lnk [2019-09-23]
ShortcutTarget: Enviar a OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)

==================== Tareas programadas (Lista blanca) ============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

Task: {15D94855-193B-4CD2-913B-6E40D7277D97} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-03-06] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1B383C67-1619-4D32-8CBF-C662E16531FD} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3788144 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1BE738B4-4B75-4701-BBF2-24428EBC3D31} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2090312 2019-12-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {1C12F5C3-B3F7-4E04-8277-C6F517FE4ECD} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1758488 2019-08-01] (Lenovo -> )
Task: {1EFDC75A-5E13-4DC5-8A3E-7EE28A07A203} - System32\Tasks\App Explorer => C:\Users\samur\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe [7399080 2019-06-04] (SweetLabs Inc. -> SweetLabs, Inc) <==== ATENCIÓN
Task: {2577527D-CA64-4AC8-B94D-49F5C02D0E82} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {2B0DD2F1-F492-4E1A-B889-361069237C76} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\aa1329bf-f732-40df-b436-382b4d07da7f => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [77208 2019-09-23] (Lenovo -> Lenovo Group Ltd.)
Task: {2DB24AFD-0F20-4961-8F79-5A80C74D0E74} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems)
Task: {43437CF0-3FDC-41C0-B4C4-2553771F6B51} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [897008 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5EA262C9-5D5A-423C-8FDB-CB8F7632479C} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24671608 2019-12-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {60112E27-15DC-4FDB-A333-7742BA958BE4} - System32\Tasks\CyberLink\Photo Master Gadget startup => C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoMasterWorker.exe [745240 2016-04-22] (CyberLink Corp. -> CyberLink Corp.)
Task: {64B591D7-5F53-4D1D-B2FA-23A654384A76} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [155472 2019-12-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {6BE84F40-EE2F-4CD8-AFBE-E5FB9DA70525} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {77285063-3288-4274-9103-5BA44609D56F} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-2777594838-992919689-2335980850-1001 => C:\Users\samur\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe [86824 2019-12-18] (Lenovo (Beijing) Limited -> Lenovo Group Limited)
Task: {7A88DC77-7C0F-447C-9A2D-8083DF8C7AF8} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-03-06] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7BC71C82-ACB2-48D5-BE98-FF0CA41A4A12} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2107800 2019-12-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {808CB9E4-6442-4823-922C-51ACAAED363D} - System32\Tasks\update-S-1-5-21-2777594838-992919689-2335980850-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {814C9113-7C94-443F-8A8A-097205CC62B3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8A047DBC-7F56-4501-8BF0-A1695D81EFE4} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1758488 2019-08-01] (Lenovo -> )
Task: {8B1E2197-B9B7-464C-92C5-B4E782D7554E} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\618b7460-8806-4753-a6d8-c85ceb7eeaf6 => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [77208 2019-09-23] (Lenovo -> Lenovo Group Ltd.)
Task: {91B8778C-F82D-49FE-B9A8-4CE54B820708} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {A2460C06-54CA-46C9-AFB2-58F5395EC28A} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\IntelPTTEKRecertification.exe [816960 2017-10-11] (Intel(R) Trust Services -> Intel(R) Corporation)
Task: {A402DC67-1EBE-4CD2-934F-D0C69A32FCFE} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [155472 2019-12-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {A4684FF3-0D04-43DE-A8AD-6642F0501874} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24671608 2019-12-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {A5039F18-18C2-416D-B08E-05B9844CAA59} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A51A56B8-F7F4-4F0F-A4FF-745EC140768E} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler  /v start /t reg_dword /d 1 /f /reg:32
Task: {AB6981B6-C3F1-4C2A-BD3F-D34BA576F94D} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [54144 2019-09-23] (Lenovo -> Lenovo Group Ltd.)
Task: {BD113A3E-1D2A-48AB-BAF2-FDE5AAB4B551} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {BF43E142-4E0B-4AF4-BDBA-9E2981CA1C0F} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2107800 2019-12-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {BFA37720-230A-4296-AD90-134BA8796BA9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-10-23] (Google Inc -> Google Inc.)
Task: {D288F281-7803-426E-AE20-323E6AF205D7} - System32\Tasks\Nvbackend => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
Task: {D50508C6-5163-4BD7-B8C0-D62C069ACEF8} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [648504 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D73EF0E0-FD8E-4930-BF82-7AD39EEA37E0} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D7C9C17D-D2FA-44CB-BA33-201E1D270D72} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {E001782B-4755-46F4-B7CC-D2BCD0754A03} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E01FD6E6-A3C4-4102-9A98-5EC5FC5B9454} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => %windir%\system32\sc.exe START ImControllerService
Task: {E4B49B01-FB06-4339-986A-6D1A1261D80B} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\8e816930-fece-4b4c-a26e-54092fbbfc36 => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [77208 2019-09-23] (Lenovo -> Lenovo Group Ltd.)
Task: {E8B70436-70A9-4D11-AE22-A55A833B2455} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [897008 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F2B493DC-BCA9-4DB2-925E-2B89B23D29A5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-10-23] (Google Inc -> Google Inc.)
Task: {FB5E8363-F7D2-495F-8909-324E5B3E7EA4} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)

(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)

Task: C:\WINDOWS\Tasks\update-S-1-5-21-2777594838-992919689-2335980850-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
Task: C:\WINDOWS\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe

==================== Internet (Lista blanca) ====================

(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{38c017e1-8331-46f1-9f74-bf1bb97fc583}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{8a9ecfa4-ef4c-4ed4-9a04-bf6e8c1be26a}: [DhcpNameServer] 172.20.88.3

Internet Explorer:
==================
HKU\S-1-5-21-2777594838-992919689-2335980850-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.bing.com/search?FORM=INCOH1&PC=IC05&PTAG=ICO-21dc45fd
HKU\S-1-5-21-2777594838-992919689-2335980850-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-2777594838-992919689-2335980850-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com/
SearchScopes: HKU\S-1-5-21-2777594838-992919689-2335980850-1001 -> DefaultScope {B9DCA7BE-0FDB-4B1A-8E6C-5FE4AC48B16C} URL = 
SearchScopes: HKU\S-1-5-21-2777594838-992919689-2335980850-1001 -> {B9DCA7BE-0FDB-4B1A-8E6C-5FE4AC48B16C} URL = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
BHO: WebEx Productivity Tools -> {90E2BA2E-DD1B-4cde-9134-7A8B86D33CA7} -> C:\Program Files (x86)\WebEx\Productivity Tools\ptonecli64.dll => Ningún archivo
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2018-02-22] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2018-02-22] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2018-02-22] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2018-02-22] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2018-02-22] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - WebEx Productivity Tools - {90E2BA2E-DD1B-4cde-9134-7A8B86D33CA7} - C:\Program Files (x86)\WebEx\Productivity Tools\ptonecli64.dll Ningún archivo
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2018-02-22] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
DPF: HKLM-x32 {2c8ffa64-e3f7-49ae-87c2-49018fde3aea} C:\Users\samur\AppData\Local\Temp\f5tmp\OesisInspector.cab
DPF: HKLM-x32 {41EF3CD2-D8CC-4438-84B1-280BB4E77C8E} C:\Users\samur\AppData\Local\Temp\f5tmp\f5tunsrv.cab
DPF: HKLM-x32 {45B69029-F3AB-4204-92DE-D5140C3E8E74} C:\Users\samur\AppData\Local\Temp\f5tmp\InstallerControl.cab
DPF: HKLM-x32 {57C76689-F052-487B-A19F-855AFDDF28EE} C:\Users\samur\AppData\Local\Temp\f5tmp\f5InspectionHost.cab
DPF: HKLM-x32 {A83FB16F-F96A-4724-A5B1-AC999860A218} C:\Users\samur\AppData\Local\Temp\f5tmp\OesisInspector.cab
DPF: HKLM-x32 {E0FF21FA-B857-45C5-8621-F120A0C17FF2} C:\Users\samur\AppData\Local\Temp\f5tmp\urxhost.cab
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
Filter-x32: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-09-18] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-09-18] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-09-18] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-09-18] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-09-18] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-09-18] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-09-18] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-09-18] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-09-18] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-09-18] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-09-18] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-09-18] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-09-18] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-09-18] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-09-18] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-09-18] (Citrix Systems, Inc. -> Citrix Systems, Inc.)

Edge: 
======
DownloadDir: C:\Users\samur\Downloads

FireFox:
========
FF DefaultProfile: k51hinsg.default
FF ProfilePath: C:\Users\samur\AppData\Roaming\Mozilla\Firefox\Profiles\k51hinsg.default [2019-11-07]
FF Homepage: Mozilla\Firefox\Profiles\k51hinsg.default -> hxxps://www.bing.com/?PC=JV01
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2018-02-22]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Citrix.com/npican -> C:\Program Files (x86)\Citrix\ICA Client\npicaN.dll [2019-09-18] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-14] (Google LLC -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-14] (Google LLC -> Google LLC)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2018-02-22] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2777594838-992919689-2335980850-1001: @zoom.us/ZoomVideoPlugin -> C:\Users\samur\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2019-11-19] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FF Plugin HKU\S-1-5-21-2777594838-992919689-2335980850-1001: LWAPlugin15.8 -> C:\Users\samur\AppData\Roaming\Mozilla\Plugins\npLWAPlugin15.8.dll [2013-03-13] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin HKU\S-1-5-21-2777594838-992919689-2335980850-1001: SkypeForBusinessPlugin-16.2 -> C:\Users\samur\AppData\Local\Microsoft\SkypeForBusinessPlugin\16.2.0.498\npGatewayNpapi.dll [2019-07-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin HKU\S-1-5-21-2777594838-992919689-2335980850-1001: SkypeForBusinessPlugin64-16.2 -> C:\Users\samur\AppData\Local\Microsoft\SkypeForBusinessPlugin\16.2.0.498\npGatewayNpapi-x64.dll [2019-07-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Users\samur\AppData\Roaming\mozilla\plugins\npLWAPlugin15.8.dll [2019-01-14]

Chrome: 
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> hxxp://www.google.com
CHR StartupUrls: Default -> "hxxp://www.google.com"
CHR DefaultSearchKeyword: Default -> t
CHR Notifications: Default -> hxxps://meet.google.com
CHR Profile: C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default [2019-12-26]
CHR Extension: (Presentaciones) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-05-03]
CHR Extension: (Simple Allow Copy) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\aefehdhdciieocakfobpaaolhipkcpgc [2019-08-12]
CHR Extension: (Flash Video Downloader) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiimdkdngfcipjohbjenkahhlhccpdbc [2019-08-21]
CHR Extension: (Documentos) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-05-03]
CHR Extension: (Google Drive) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-10-23]
CHR Extension: (MindMeister) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdehgigffdnkjpaindemkaniebfaepjm [2018-05-03]
CHR Extension: (YouTube) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-05-03]
CHR Extension: (Google Tasks) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\dmglolhoplikcoamfgjgammjbgchgjdd [2018-11-01]
CHR Extension: (Google Play Música) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\fahmaaghhglfmonjliepjlchgpgfmobi [2018-10-09]
CHR Extension: (Hojas de cálculo) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-05-03]
CHR Extension: (Escritorio Remoto de Chrome) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2019-07-29]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-17]
CHR Extension: (AdBlock: el mejor bloqueador de anuncios) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-12-19]
CHR Extension: (Citrix Workspace) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\haiffjcadagjlijoggckpgfnoeiflnem [2019-12-26]
CHR Extension: (TeamGantt Project Management) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcoffgicdhbbbpdopfhaemdbdglnkcok [2018-05-03]
CHR Extension: (Gestión de proyectos Gantter) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\himomacamcpodhkahelbnmaddladgjgo [2019-09-17]
CHR Extension: (Google Keep: notas y listas) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2019-12-19]
CHR Extension: (Formularios de Google) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhknlonaankphkkbnmjdlpehkinifeeg [2018-05-03]
CHR Extension: (Cisco Webex Extension) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlhmfgmfgeifomenelglieieghnjghma [2019-07-12]
CHR Extension: (Player para ver Movistar+) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\kenfcfndncbbggmafjjeihkdclggbojn [2019-03-08]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-06]
CHR Extension: (Gmail) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-11]
CHR Extension: (Chrome Media Router) - C:\Users\samur\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-12-19]
CHR Profile: C:\Users\samur\AppData\Local\Google\Chrome\User Data\Guest Profile [2018-11-01]
CHR Profile: C:\Users\samur\AppData\Local\Google\Chrome\User Data\System Profile [2018-11-01]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]

==================== Servicios (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R2 AESMService; C:\WINDOWS\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_fd0b4b97d35097fa\aesm_service.exe [716824 2019-09-22] (Intel(R) Software Development Products -> Intel Corporation)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3147344 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2914896 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AtherosSvc; C:\WINDOWS\System32\drivers\AdminService.exe [414696 2018-01-09] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R2 CCSDK; C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe [666608 2016-03-22] (LENOVO -> Lenovo)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11345992 2019-11-28] (Microsoft Corporation -> Microsoft Corporation)
R2 Dolby DAX2 API Service; C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe [197120 2017-07-13] (Dolby Laboratories, Inc. -> Dolby Laboratories, Inc.)
R2 GDCAgent; C:\Program Files (x86)\Lenovo\GDCAgentSetupRed\GDCAgent.exe [1210352 2016-03-22] (LENOVO -> Lenovo)
R2 ImControllerService; C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [77208 2019-09-23] (Lenovo -> Lenovo Group Ltd.)
R3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\SocketHeciServer.exe [742704 2017-10-11] (Intel(R) Trust Services -> Intel(R) Corporation)
S2 Intel(R) TPM Provisioning Service; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\TPMProvisioningService.exe [668472 2017-10-11] (Intel(R) Trust Services -> Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [213648 2017-11-08] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-03-06] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-03-06] (NVIDIA Corporation -> NVIDIA Corporation)
R2 PlexUpdateService; C:\Program Files (x86)\Plex\Plex Media Server\Plex Update Service.exe [2241512 2018-10-30] (Plex, Inc -> Plex, Inc.)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [324544 2018-02-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [276616 2018-03-14] (Synaptics Incorporated -> Synaptics Incorporated)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2019-12-08] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2019-12-08] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 ymc; C:\Program Files\Lenovo\YMC\ymc.exe [49032 2016-12-23] (LENOVO -> Lenovo)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Controladores (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
R3 BtFilter; C:\WINDOWS\System32\drivers\btfilter.sys [65448 2018-01-09] (WDKTestCert aswbldsv,131431045756648395 -> Qualcomm)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvlt.inf_amd64_9f64373ec8cdb3d1\nvlddmkm.sys [17538080 2018-04-11] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-06-13] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 RSP2STOR; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [337920 2017-05-07] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
R3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [3238368 2017-10-31] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [64648 2018-03-14] (Synaptics Incorporated -> Synaptics Incorporated)
S3 V0790Vid; C:\WINDOWS\system32\DRIVERS\V0790Vid.sys [390648 2015-09-17] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.)
R1 vbdenum; C:\WINDOWS\System32\drivers\vbdenum.sys [119432 2019-07-24] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
S3 vpnva; C:\WINDOWS\System32\drivers\vpnva64-6.sys [74120 2018-03-17] (Cisco Systems, Inc. -> Cisco Systems, Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [45664 2019-12-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [355760 2019-12-08] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2019-12-08] (Microsoft Windows -> Microsoft Corporation)
S3 wsvd; C:\WINDOWS\system32\DRIVERS\wsvd.sys [102376 2012-06-13] (CyberLink -> "CyberLink)

==================== NetSvcs (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)


==================== Un mes (creado) ===================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2019-12-26 11:47 - 2019-12-26 11:48 - 000048611 _____ C:\Users\samur\Desktop\FRST.txt
2019-12-26 11:47 - 2019-12-26 11:40 - 002271744 _____ (Farbar) C:\Users\samur\Desktop\FRST64.exe
2019-12-26 11:42 - 2019-12-26 11:43 - 000045784 _____ C:\Users\samur\Downloads\Addition.txt
2019-12-26 11:42 - 2019-12-26 11:43 - 000000240 _____ C:\DelFix.txt
2019-12-26 11:42 - 2019-12-26 11:42 - 000797760 _____ C:\Users\samur\Downloads\delfix.exe
2019-12-26 11:42 - 2019-12-26 11:42 - 000000000 ____D C:\WINDOWS\ERUNT
2019-12-26 11:40 - 2019-12-26 11:48 - 000000000 ____D C:\FRST
2019-12-26 11:40 - 2019-12-26 11:43 - 000072747 _____ C:\Users\samur\Downloads\FRST.txt
2019-12-26 11:40 - 2019-12-26 11:40 - 002271744 _____ (Farbar) C:\Users\samur\Downloads\FRST64.exe
2019-12-26 10:57 - 2019-12-26 10:57 - 000124711 _____ C:\Users\samur\Downloads\CV - Europass - Alejandro Cabanillas.pdf
2019-12-24 10:30 - 2019-12-24 10:30 - 000135288 _____ C:\Users\samur\Downloads\IñigoGarcia-CondeTrueba.pdf
2019-12-24 10:27 - 2019-12-24 10:27 - 000474118 _____ C:\Users\samur\Downloads\Lima Mendia Gerald.pdf
2019-12-23 11:25 - 2019-12-23 11:25 - 000305338 _____ C:\Users\samur\Downloads\CV_David_Howe.pdf
2019-12-20 16:09 - 2019-12-20 16:09 - 000000000 ___HD C:\OneDriveTemp
2019-12-20 10:35 - 2019-12-20 10:35 - 001710299 _____ C:\Users\samur\Downloads\IMG_1225.HEIC
2019-12-20 10:32 - 2019-12-20 10:32 - 001230823 _____ C:\Users\samur\Downloads\IMG_1192 2.HEIC
2019-12-20 09:55 - 2019-12-20 09:55 - 000010787 _____ C:\Users\samur\Downloads\cabify-sale-ESP19NS433596.pdf
2019-12-20 09:51 - 2019-12-20 09:51 - 000010960 _____ C:\Users\samur\Downloads\cabify-sale-ESP19NS327567.pdf
2019-12-20 09:50 - 2019-12-20 09:50 - 000248813 _____ C:\Users\samur\Downloads\Hotel Barcelona 8 Diciembre 2019.pdf
2019-12-20 09:44 - 2019-12-20 09:44 - 000142920 _____ C:\Users\samur\Downloads\Madrid-Barcelona 8 Diciembre 2019.pdf
2019-12-18 17:11 - 2019-12-18 17:21 - 000886021 _____ C:\Users\samur\Downloads\Actividades Suplementarias Core Connector.pdf
2019-12-18 15:19 - 2019-12-18 15:19 - 016198993 _____ C:\Users\samur\Downloads\CCW_SuplementalActivities.pdf
2019-12-18 13:57 - 2019-12-18 13:57 - 007174612 _____ C:\Users\samur\Downloads\Curso EIB - Simple Integrations (1).pdf
2019-12-18 13:57 - 2019-12-18 13:57 - 004629772 _____ C:\Users\samur\Downloads\Curso Core Connectors y Document Transformation (1).pdf
2019-12-18 13:57 - 2019-12-18 13:57 - 000850617 _____ C:\Users\samur\Downloads\CCTP_Definitivo.pdf
2019-12-18 13:57 - 2019-12-18 13:57 - 000289173 _____ C:\Users\samur\Downloads\Class Files WD29 (1).zip
2019-12-18 13:57 - 2019-12-18 13:57 - 000001495 _____ C:\Users\samur\Downloads\Act3.2_EA.xsl
2019-12-18 13:56 - 2019-12-18 13:56 - 000346700 _____ C:\Users\samur\Downloads\EIB Actividad Extra (1).pdf
2019-12-18 13:56 - 2019-12-18 13:56 - 000308185 _____ C:\Users\samur\Downloads\Final Activity EIB (1).pdf
2019-12-18 13:55 - 2019-12-18 13:55 - 000002889 _____ C:\Users\samur\Downloads\SA16 ETV XML Formatting with Classes.xsl
2019-12-18 13:55 - 2019-12-18 13:55 - 000002402 _____ C:\Users\samur\Downloads\SA16 XTT Formatting.xsl
2019-12-18 13:55 - 2019-12-18 13:55 - 000002099 _____ C:\Users\samur\Downloads\SA14 XTT Delimited Formatting.xsl
2019-12-18 13:55 - 2019-12-18 13:55 - 000001911 _____ C:\Users\samur\Downloads\SA13 XTT Fixed Length Formatting.xsl
2019-12-18 13:55 - 2019-12-18 13:55 - 000001890 _____ C:\Users\samur\Downloads\SA15 ETV XML Formatting.xsl
2019-12-18 12:47 - 2019-12-18 12:47 - 000725196 _____ C:\Users\samur\Downloads\Happy New Year 2020-2 (1) (1).mp4
2019-12-18 12:40 - 2019-12-18 12:40 - 000725196 _____ C:\Users\samur\Downloads\Happy New Year 2020-2 (1).mp4
2019-12-18 12:28 - 2019-12-18 12:28 - 001344961 _____ C:\Users\samur\Downloads\P0 Requirements - Skill Survey App V0.3.pptx
2019-12-18 10:35 - 2019-12-18 10:35 - 000019014 _____ C:\Users\samur\Downloads\PES changes 16 DEC 2019.xlsx
2019-12-17 23:54 - 2019-12-17 23:54 - 000010713 _____ C:\Users\samur\Downloads\CoreConnectorsClassFiles_31v1.zip
2019-12-17 13:20 - 2019-12-17 13:22 - 009843296 _____ (Martin Prikryl ) C:\Users\samur\Downloads\WinSCP-5.15.9-Setup.exe
2019-12-17 11:30 - 2019-12-17 11:34 - 000346700 _____ C:\Users\samur\Downloads\EIB Actividad Extra.pdf
2019-12-16 18:15 - 2019-12-16 18:26 - 000308185 _____ C:\Users\samur\Downloads\Final Activity EIB.pdf
2019-12-16 13:26 - 2019-12-16 13:26 - 000289173 _____ C:\Users\samur\Downloads\Class Files WD29.zip
2019-12-16 00:41 - 2019-12-16 00:41 - 000011314 _____ C:\Users\samur\Downloads\3b-W28 Core Connectors and Document Transformation Class Files.zip
2019-12-15 22:53 - 2019-12-15 22:53 - 000000000 ___DL C:\Users\samur\AppData\LocalLow\PlayReady
2019-12-14 03:51 - 2019-12-14 03:51 - 025443840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 018020352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 009927992 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-12-14 03:51 - 2019-12-14 03:51 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 007600448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 006516648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 006083832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 005943296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 005914112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 005764664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 004129416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 002800640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-12-14 03:51 - 2019-12-14 03:51 - 002762296 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 002698768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-12-14 03:51 - 2019-12-14 03:51 - 002494432 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 002147328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 002082208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 001743888 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 001697280 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 001664904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 001647072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 001539584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 001413840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 001399312 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-12-14 03:51 - 2019-12-14 03:51 - 001261464 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 001098928 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-12-14 03:51 - 2019-12-14 03:51 - 001054864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000921600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000842552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000822416 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2019-12-14 03:51 - 2019-12-14 03:51 - 000797112 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000774456 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-12-14 03:51 - 2019-12-14 03:51 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000674280 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2019-12-14 03:51 - 2019-12-14 03:51 - 000673456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2019-12-14 03:51 - 2019-12-14 03:51 - 000646144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000593128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2019-12-14 03:51 - 2019-12-14 03:51 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000511000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000406480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys
2019-12-14 03:51 - 2019-12-14 03:51 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2019-12-14 03:51 - 2019-12-14 03:51 - 000210744 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cdfs.sys
2019-12-14 03:51 - 2019-12-14 03:51 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000097080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000089536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdProxy.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000032056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
2019-12-14 03:51 - 2019-12-14 03:51 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2019-12-14 03:51 - 2019-12-14 03:51 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2019-12-14 03:50 - 2019-12-14 03:50 - 007905000 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-12-14 03:50 - 2019-12-14 03:50 - 007278592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-12-14 03:50 - 2019-12-14 03:50 - 007263992 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-12-14 03:50 - 2019-12-14 03:50 - 003729408 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-12-14 03:50 - 2019-12-14 03:50 - 003703296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-12-14 03:50 - 2019-12-14 03:50 - 002716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-12-14 03:50 - 2019-12-14 03:50 - 002284544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-12-14 03:50 - 2019-12-14 03:50 - 001757304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-12-14 03:50 - 2019-12-14 03:50 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-12-14 03:50 - 2019-12-14 03:50 - 001656600 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2019-12-14 03:50 - 2019-12-14 03:50 - 001512528 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-12-14 03:50 - 2019-12-14 03:50 - 001451520 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2019-12-14 03:50 - 2019-12-14 03:50 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-12-14 03:50 - 2019-12-14 03:50 - 001182448 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-12-14 03:50 - 2019-12-14 03:50 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-12-14 03:50 - 2019-12-14 03:50 - 001066496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-12-14 03:50 - 2019-12-14 03:50 - 001006904 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2019-12-14 03:50 - 2019-12-14 03:50 - 000986936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys
2019-12-14 03:50 - 2019-12-14 03:50 - 000878080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2019-12-14 03:50 - 2019-12-14 03:50 - 000826368 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
2019-12-14 03:50 - 2019-12-14 03:50 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-12-14 03:50 - 2019-12-14 03:50 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-12-14 03:50 - 2019-12-14 03:50 - 000530944 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2019-12-14 03:50 - 2019-12-14 03:50 - 000524264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2019-12-14 03:50 - 2019-12-14 03:50 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-12-14 03:50 - 2019-12-14 03:50 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-12-14 03:50 - 2019-12-14 03:50 - 000422712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2019-12-14 03:50 - 2019-12-14 03:50 - 000404480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\exfat.sys
2019-12-14 03:50 - 2019-12-14 03:50 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-12-14 03:50 - 2019-12-14 03:50 - 000127272 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2019-12-14 03:50 - 2019-12-14 03:50 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2019-12-14 03:50 - 2019-12-14 03:50 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2019-12-14 03:50 - 2019-12-14 03:50 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2019-12-14 03:50 - 2019-12-14 03:50 - 000067112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2019-12-14 03:50 - 2019-12-14 03:50 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelineprxy.dll
2019-12-14 03:50 - 2019-12-14 03:50 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevQueryBroker.dll
2019-12-14 03:50 - 2019-12-14 03:50 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll
2019-12-10 11:30 - 2019-12-10 11:30 - 000000165 ____H C:\Users\samur\Downloads\~$PerformanceManagementPeopleSoftModifications.xlsx
2019-12-09 00:15 - 2019-12-09 00:15 - 007174612 _____ C:\Users\samur\Downloads\Curso EIB - Simple Integrations.pdf
2019-12-08 16:54 - 2019-12-08 21:01 - 004652488 _____ C:\Users\samur\Downloads\Curso Core Connectors y Document Transformation.pdf
2019-12-05 17:53 - 2019-12-05 17:53 - 000064920 _____ C:\Users\samur\Downloads\Carlos Torres Bañon.pdf
2019-12-04 16:31 - 2019-12-04 16:31 - 000010970 _____ C:\Users\samur\Downloads\Monday Lunch.xlsx
2019-12-04 13:01 - 2019-12-04 13:01 - 000091319 _____ C:\Users\samur\Downloads\My_Team_s_Upcoming_Time_Off_-_Unicorn (1).json
2019-12-04 12:01 - 2019-12-04 12:01 - 000091319 _____ C:\Users\samur\Downloads\My_Team_s_Upcoming_Time_Off_-_Unicorn.json
2019-12-02 15:27 - 2019-12-02 15:27 - 001074160 _____ C:\Users\samur\Downloads\Mockup P1 - approved changes commented.pptx
2019-12-02 13:13 - 2019-12-02 13:16 - 000032467 _____ C:\Users\samur\Downloads\dictionary.zip
2019-12-01 21:02 - 2019-12-01 21:02 - 000000000 ____D C:\testintel2
2019-11-29 15:48 - 2019-11-29 15:58 - 000045142 _____ C:\Users\samur\Downloads\unicorn_object_fields.xlsx
2019-11-28 17:25 - 2019-11-28 17:25 - 000012684 _____ C:\Users\samur\Downloads\Lists (1).xlsx
2019-11-28 16:34 - 2019-11-28 16:34 - 000022681 _____ C:\Users\samur\Downloads\Categories (1).xlsx
2019-11-27 18:00 - 2019-11-27 18:00 - 000245403 _____ C:\Users\samur\Downloads\CV-SergioMoratilla.pdf
2019-11-27 12:32 - 2019-11-27 12:32 - 000002741 _____ C:\Users\samur\Downloads\984c3467338c6d70de4e4124b6ba16a3 (1).svg
2019-11-27 12:31 - 2019-11-27 12:31 - 000002741 _____ C:\Users\samur\Downloads\984c3467338c6d70de4e4124b6ba16a3.svg
2019-11-27 10:23 - 2019-11-27 10:23 - 000012684 _____ C:\Users\samur\Downloads\Lists.xlsx
2019-11-27 10:21 - 2019-11-27 10:21 - 000022681 _____ C:\Users\samur\Downloads\Categories.xlsx
2019-11-27 10:10 - 2019-11-27 10:10 - 001235356 _____ C:\Users\samur\Downloads\Mockup P1 (1).pptx
2019-11-26 17:55 - 2019-12-18 14:01 - 000000000 ____D C:\Users\samur\AppData\Roaming\Postman
2019-11-26 17:55 - 2019-12-18 11:45 - 000000000 ____D C:\Users\samur\AppData\Local\Postman
2019-11-26 17:55 - 2019-12-09 15:18 - 000002213 _____ C:\Users\samur\Desktop\Postman.lnk
2019-11-26 17:55 - 2019-12-09 15:18 - 000000000 ____D C:\Users\samur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Postman
2019-11-26 17:55 - 2019-11-26 17:55 - 078034528 _____ (Postman) C:\Users\samur\Downloads\Postman-win64-7.12.0-Setup.exe
2019-11-26 17:55 - 2019-11-26 17:55 - 000000000 ____D C:\Users\samur\Postman

==================== Un mes (modificado) ==================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2019-12-26 11:46 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-12-26 11:18 - 2018-05-04 09:30 - 000000000 ____D C:\Users\samur\AppData\Roaming\Spotify
2019-12-26 11:02 - 2019-08-30 03:58 - 001775182 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-12-26 11:02 - 2019-03-19 12:59 - 000789814 _____ C:\WINDOWS\system32\perfh00A.dat
2019-12-26 11:02 - 2019-03-19 12:59 - 000156068 _____ C:\WINDOWS\system32\perfc00A.dat
2019-12-26 11:02 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF
2019-12-26 10:59 - 2019-10-04 09:01 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2019-12-26 10:59 - 2019-10-04 09:01 - 000000000 ___HD C:\ProgramData\Documents\AdobeGCData
2019-12-26 10:59 - 2016-09-27 21:33 - 000000000 ____D C:\ProgramData\NVIDIA
2019-12-26 10:56 - 2018-05-03 15:52 - 000000000 ____D C:\Users\samur\AppData\Local\Host App Service
2019-12-26 10:54 - 2019-08-30 03:57 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-12-26 10:54 - 2019-08-30 03:50 - 000000000 ____D C:\Users\samur
2019-12-26 10:54 - 2019-08-30 03:45 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-12-26 10:54 - 2018-05-04 09:31 - 000000000 ____D C:\Users\samur\AppData\Local\Spotify
2019-12-26 10:54 - 2018-05-03 12:16 - 000000000 ___RD C:\Users\samur\OneDrive
2019-12-26 10:54 - 2018-05-03 12:12 - 000000000 __SHD C:\Users\samur\IntelGraphicsProfiles
2019-12-24 10:30 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-12-24 10:30 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-12-20 13:56 - 2018-05-16 09:21 - 000000000 ____D C:\Users\samur\AppData\Local\LenovoServiceBridge
2019-12-19 19:00 - 2018-05-03 12:12 - 000000000 ____D C:\Users\samur\AppData\Local\Packages
2019-12-19 12:45 - 2019-02-14 12:23 - 000000000 ____D C:\Users\samur\Documents\Archivos de Outlook
2019-12-18 19:55 - 2018-05-18 17:40 - 000000600 _____ C:\Users\samur\AppData\Roaming\winscp.rnd
2019-12-18 12:40 - 2018-05-05 11:21 - 000000000 ____D C:\Users\samur\AppData\Roaming\vlc
2019-12-18 11:45 - 2019-08-27 17:48 - 000000000 ____D C:\Users\samur\AppData\Local\SquirrelTemp
2019-12-17 22:53 - 2018-10-23 16:45 - 000002306 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-12-17 22:53 - 2018-10-23 16:45 - 000002265 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-12-17 22:53 - 2018-10-23 16:45 - 000002265 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2019-12-17 14:01 - 2018-05-03 16:29 - 000000000 ____D C:\Program Files\Microsoft Office
2019-12-17 13:22 - 2018-05-18 17:36 - 000001147 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinSCP.lnk
2019-12-17 13:22 - 2018-05-18 17:36 - 000001135 _____ C:\Users\Public\Desktop\WinSCP.lnk
2019-12-17 13:22 - 2018-05-18 17:36 - 000001135 _____ C:\ProgramData\Desktop\WinSCP.lnk
2019-12-17 13:22 - 2018-05-18 17:36 - 000000000 ____D C:\Program Files (x86)\WinSCP
2019-12-14 04:23 - 2019-08-30 03:45 - 000455192 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-12-14 04:23 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SystemResources
2019-12-14 04:23 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-12-14 04:23 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-12-14 04:23 - 2019-03-19 05:37 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2019-12-14 04:23 - 2018-05-03 14:14 - 000000000 ___RD C:\Users\samur\3D Objects
2019-12-14 04:23 - 2015-11-03 20:24 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-12-14 03:59 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-12-14 03:58 - 2018-05-03 14:43 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-12-14 03:53 - 2018-05-03 14:42 - 129221664 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-12-14 03:41 - 2019-08-30 03:57 - 000003622 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2019-12-14 03:41 - 2019-08-30 03:57 - 000003498 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2019-12-08 14:46 - 2018-05-03 15:59 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-12-08 14:37 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-12-07 19:37 - 2018-05-03 18:15 - 000000000 ____D C:\Users\samur\AppData\Local\PlaceholderTileLogoFolder
2019-12-06 10:00 - 2019-08-20 09:03 - 000000000 ____D C:\Users\samur\IdeaProjects

==================== Archivos en la raíz de algunos directorios ========

2018-05-18 17:40 - 2019-12-18 19:55 - 000000600 _____ () C:\Users\samur\AppData\Roaming\winscp.rnd
2018-09-30 00:12 - 2018-09-30 00:12 - 000000000 _____ () C:\Users\samur\AppData\Local\oobelibMkey.log
2018-05-04 16:53 - 2018-05-04 16:53 - 000000003 _____ () C:\Users\samur\AppData\Local\updater.log
2018-05-04 16:53 - 2018-10-19 16:44 - 000000425 _____ () C:\Users\samur\AppData\Local\UserProducts.xml

==================== SigCheck ============================

(No existe una corrección automática para los archivos que no pasan la verificación.)

==================== Final de FRST.txt ========================
Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 25-12-2019
Ejecutado por samur (26-12-2019 11:49:17)
Ejecutado desde C:\Users\samur\Desktop
Windows 10 Home Versión 1909 18363.535 (X64) (2019-08-30 02:58:10)
Modo de Inicio: Normal
==========================================================


==================== Cuentas: =============================

Administrador (S-1-5-21-2777594838-992919689-2335980850-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2777594838-992919689-2335980850-503 - Limited - Disabled)
Invitado (S-1-5-21-2777594838-992919689-2335980850-501 - Limited - Disabled)
samur (S-1-5-21-2777594838-992919689-2335980850-1001 - Administrator - Enabled) => C:\Users\samur
WDAGUtilityAccount (S-1-5-21-2777594838-992919689-2335980850-504 - Limited - Disabled)

==================== Centro de Seguridad ========================

(Si una entrada es incluida en el fixlist, será eliminada.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Programas instalados ======================

(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)

µTorrent (HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\uTorrent) (Version: 3.5.5.45311 - BitTorrent Inc.)
ActivePresenter (HKLM\...\{A2A40277-D807-4754-95A3-2F294C2C51D3}_is1) (Version: 7.5.9 - Atomi Systems, Inc.)
Actualización de NVIDIA 37.0.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 37.0.0.0 - NVIDIA Corporation) Hidden
Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0C0F074E4100}) (Version: 18.011.20038 - Adobe Systems Incorporated)
Adobe SVG Viewer 3.0 (HKLM-x32\...\Adobe SVG Viewer) (Version:  3.0 - )
Asistente para actualización a Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22589 - Microsoft Corporation)
AutoFirma (HKLM-x32\...\AutoFirma) (Version: 1.6.3 - Gobierno de España)
BIG-IP Edge Client Components (All Users) (HKLM-x32\...\F5 Networks Client Components) (Version: 71.2019.0119.0331 - F5 Networks, Inc.)
CCSDK Customer Engagement Service (HKLM-x32\...\{AE75190B-11B4-4F90-8254-DAB275CF2557}_is1) (Version: 1.3.0.3 - Lenovo)
Cisco AnyConnect Secure Mobility Client  (HKLM-x32\...\Cisco AnyConnect Secure Mobility Client) (Version: 4.6.00362 - Cisco Systems, Inc.)
Cisco AnyConnect Secure Mobility Client (HKLM-x32\...\{511F072A-BBE3-4BE8-92BF-6C497DB76179}) (Version: 4.6.00362 - Cisco Systems, Inc.) Hidden
Cisco Webex Meetings (HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\ActiveTouchMeetingClient) (Version:  - Cisco Webex LLC)
Citrix PackageInstaller (HKLM-x32\...\{98679fb6-b653-4863-9ae1-1b287a8a7c1e}) (Version: 1.0.0.0 - Citrix Systems, Inc.)
Citrix Workspace 1909 (HKLM-x32\...\CitrixOnlinePluginPackWeb) (Version: 19.9.0.21 - Citrix Systems, Inc.)
Dolby Audio X2 Windows API SDK (HKLM\...\{F994125B-7BF5-4A38-A569-82833CEB24DC}) (Version: 0.8.4.83 - Dolby Laboratories, Inc.)
Dolby Audio X2 Windows APP (HKLM\...\{4A02DCED-C2B0-4DD3-87BD-7D8E68D6AF3C}) (Version: 0.8.6.75 - Dolby Laboratories, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 79.0.3945.88 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.421 - Google LLC) Hidden
GoTo Opener (HKLM-x32\...\{665DF231-32BE-46BA-ABD2-B0D69F8314FF}) (Version: 1.0.494 - LogMeIn, Inc.)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1054 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 23.20.16.4973 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 15.0.0.1039 - Intel Corporation)
Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.63.1620.3 - Intel Corporation)
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.47.866.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{246c6cc0-9810-4728-9a29-28474de2eec5}) (Version: 1.47.866.0 - Intel Corporation) Hidden
IntelliJ IDEA Community Edition 2019.1.4 (HKLM-x32\...\IntelliJ IDEA Community Edition 2019.1.4) (Version: 191.8026.42 - JetBrains s.r.o.)
Lenovo App Explorer (HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\Host App Service) (Version: 0.273.3.522 - SweetLabs for Lenovo)
Lenovo OneKey Recovery (HKLM\...\{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.1.0.4706 - CyberLink Corp.) Hidden
Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.1.0.4706 - CyberLink Corp.)
Lenovo Photo Master (HKLM-x32\...\{BC94C56A-3649-420C-8756-2ADEBE399D33}) (Version: 2.1.5222.01 - CyberLink Corp.)
Lenovo Service Bridge (HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1) (Version: 5.0.0.4 - Lenovo)
Lenovo System Update (HKLM-x32\...\TVSU_is1) (Version: 5.07.0088 - Lenovo)
Lenovo Yoga Mode Control (HKLM\...\{3F2E25D6-49D3-45D5-A7BD-13F5D6F64171}_is1) (Version: 2.0.0.9 - Lenovo)
LenovoUtility (HKLM-x32\...\{6ADA7E88-8D16-4D0D-BC90-2B93AC5E56DA}) (Version: 3.0.0.4 - Lenovo) Hidden
LenovoUtility (HKLM-x32\...\InstallShield_{6ADA7E88-8D16-4D0D-BC90-2B93AC5E56DA}) (Version: 3.0.0.4 - Lenovo)
Lightshot-5.4.0.35 (HKLM-x32\...\{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1) (Version: 5.4.0.35 - Skillbrains)
Live! Cam Chat HD VF0790 Driver (1.00.07.00) (HKLM\...\Creative VF0790) (Version:  - Creative Technology Ltd.)
Manuales de usuario (HKLM-x32\...\{7042D952-EE42-4C09-A23D-E7AE4D047007}) (Version: 6.0.0.0 - Lenovo) Hidden
Microsoft ASP.NET MVC 2 (HKLM-x32\...\{DD8FF2F3-0D97-4CF3-AF78-FA0E1B242244}) (Version: 2.0.60926.0 - Microsoft Corporation)
Microsoft Lync Web App Plug-in (HKLM\...\{BE6D5464-0B1F-46CC-8973-F9651FE6A45A}) (Version: 15.8.8308.965 - Microsoft Corporation)
Microsoft Office 365 Business - es-es (HKLM\...\O365BusinessRetail - es-es) (Version: 16.0.12228.20364 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\OneDriveSetup.exe) (Version: 19.192.0926.0012 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.16.27012 (HKLM-x32\...\{427ada59-85e7-4bc8-b8d5-ebf59db60423}) (Version: 14.16.27012.6 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.16.27012 (HKLM-x32\...\{67f67547-9693-4937-aa13-56e296bd40f6}) (Version: 14.16.27012.6 - Microsoft Corporation)
Mozilla Firefox 69.0.1 (x64 es-ES) (HKLM\...\Mozilla Firefox 69.0.1 (x64 es-ES)) (Version: 69.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 65.0.1 - Mozilla)
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.7.1 - Notepad++ Team)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.15 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.19.0.107 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.19.0.107 - NVIDIA Corporation)
NVIDIA Software del sistema PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.12228.20364 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.12228.20364 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0C0A-1000-0000000FF1CE}) (Version: 16.0.12228.20364 - Microsoft Corporation) Hidden
Online Plug-in (HKLM-x32\...\{51059DCA-191F-49CD-8A37-FE5516EA52C9}) (Version: 19.9.0.21 - Citrix Systems, Inc.) Hidden
Panel de control de NVIDIA 391.25 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 391.25 - NVIDIA Corporation) Hidden
Plex Media Server (HKLM-x32\...\{6d7fe5a0-cecb-4bb9-88f0-fef90aa02f9a}) (Version: 1.13.9.5456 - Plex, Inc.)
Plex Media Server (HKLM-x32\...\{D3D8D681-AF07-4212-BA66-AA70B7999E8C}) (Version: 1.13.9456 - Plex, Inc.) Hidden
Postman-win64-7.14.0 (HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\Postman) (Version: 7.14.0 - Postman)
Qualcomm Atheros 11ac Wireless LAN Installer (HKLM-x32\...\{20CA507E-24AA-4741-87CF-CC1B250790B7}) (Version: 11.0.10366 - Qualcomm Atheros)
Qualcomm Atheros Bluetooth Installer (64) (HKLM\...\{628988B4-3FA5-4EA6-BAA3-DA640F6718BD}) (Version: 10.0.0.242 - Qualcomm Atheros)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.15063.29094 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform)
Self-service Plug-in (HKLM-x32\...\{8F40AC80-5BCE-4D4D-B6A4-C69330B3F140}) (Version: 19.9.0.12 - Citrix Systems, Inc.) Hidden
Skype Meetings App (HKLM-x32\...\{893CD2E6-9458-4415-8934-A89C7E3AEA92}) (Version: 16.2.0.498 - Microsoft Corporation)
Skype versión 8.52 (HKLM-x32\...\Skype_is1) (Version: 8.52 - Skype Technologies S.A.)
Software Logitech Unifying 2.50 (HKLM\...\Logitech Unifying) (Version: 2.50.25 - Logitech)
Software para dispositivos de chipset Intel® (HKLM-x32\...\{aaa7f0fb-02dc-4576-beef-7d24842c5fbe}) (Version: 10.1.1.32 - Intel(R) Corporation) Hidden
Spotify (HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\Spotify) (Version: 1.1.22.633.g1bab253a - Spotify AB)
Stopping Plex (HKLM-x32\...\{379E74EF-C9E3-4524-8DD8-11DB443FB6F0}) (Version: 1.13.9456 - Plex, Inc.) Hidden
Teams Machine-Wide Installer (HKLM-x32\...\{731F6BAA-A986-45A4-8936-7C3AAAAA760B}) (Version: 1.2.0.19260 - Microsoft Corporation)
TextPad 8 (HKLM\...\{6437A18A-5868-4510-8057-62EBEA5231D8}) (Version: 8.1.2 - Helios)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{9CBA860F-7437-4A75-941C-8EF559F2D145}) (Version: 2.52.0.0 - Microsoft Corporation)
User Manuals (HKLM-x32\...\InstallShield_{7042D952-EE42-4C09-A23D-E7AE4D047007}) (Version: 6.0.0.0 - Lenovo)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.8 - VideoLAN)
VoIPSoftClient (HKLM-x32\...\{B8BC399C-C7C3-4882-8E59-0CD296A1A3A9}) (Version: 1.3.9 - Level3)
Vulkan Run Time Libraries 1.0.54.1 (HKLM\...\VulkanRT1.0.54.1) (Version: 1.0.54.1 - Intel Corporation Inc.)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1-2) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1-3) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
wcpcli (HKLM\...\{355BF43E-A586-4A5A-BDA9-7BC624900D8C}) (Version: 2.1.3 - Workday)
WinRAR 5.60 beta 2 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.60.2 - win.rar GmbH)
WinRAR Universal Crack (HKLM-x32\...\WinRAR Universal Crack) (Version: 5.50 - Crackingpatching.com Team)
WinSCP 5.15.9 (HKLM-x32\...\winscp3_is1) (Version: 5.15.9 - Martin Prikryl)
Zoom (HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\ZoomUMX) (Version: 4.5 - Zoom Video Communications, Inc.)

Packages:
=========
Complemento de Fotos -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2017.39121.36610.0_x64__8wekyb3d8bbwe [2019-06-05] (Microsoft Corporation)
Lenovo Settings -> C:\Program Files\WindowsApps\LenovoCorporation.LenovoSettings_3.177.0.0_x86__4642shxvsv8s2 [2018-05-03] (LENOVO INCORPORATED.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-02-05] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-02-05] (Microsoft Corporation) [MS Ad]
Microsoft News: Noticias destacadas en español -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.34.13393.0_x64__8wekyb3d8bbwe [2019-12-24] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.5.12061.0_x64__8wekyb3d8bbwe [2019-12-14] (Microsoft Studios) [MS Ad]
MSN Deportes -> C:\Program Files\WindowsApps\Microsoft.BingSports_4.34.13393.0_x64__8wekyb3d8bbwe [2019-12-24] (Microsoft Corporation) [MS Ad]
MSN Dinero -> C:\Program Files\WindowsApps\Microsoft.BingFinance_4.34.13393.0_x64__8wekyb3d8bbwe [2019-12-24] (Microsoft Corporation) [MS Ad]
MSN El Tiempo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.34.13393.0_x64__8wekyb3d8bbwe [2019-12-24] (Microsoft Corporation) [MS Ad]
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.95.602.0_x64__mcm4njqhnhss8 [2019-10-25] (Netflix, Inc.)
Portal de cuenta de Lenovo -> C:\Program Files\WindowsApps\LenovoCorporation.LenovoID_2.0.37.0_x86__4642shxvsv8s2 [2018-05-03] (LENOVO INCORPORATED.)

==================== Personalizado CLSID (Lista blanca): ==============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

CustomCLSID: HKU\S-1-5-21-2777594838-992919689-2335980850-1001_Classes\CLSID\{3E3AD4BD-346A-460A-80E8-90699B75C00B}\InprocServer32 -> C:\Users\samur\AppData\Local\Microsoft\SkypeForBusinessPlugin\16.2.0.498\GatewayActiveX-x64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2777594838-992919689-2335980850-1001_Classes\CLSID\{5A9E21A2-851A-4BEB-B16F-DBBE7D648AF9}\InprocServer32 -> C:\Program Files\TextPad 8\System\ShellExt64.dll (Helios Software Solutions Ltd -> )
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-17] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2019-06-16] (Notepad++ -> )
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-03-31] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-03-31] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> Ningún archivo
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_7948ecc1af5c27e1\igfxDTCM.dll [2018-03-16] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2018-03-16] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-17] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-03-31] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-03-31] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1_S-1-5-21-2777594838-992919689-2335980850-1001: [TextPad8] -> {5A9E21A2-851A-4BEB-B16F-DBBE7D648AF9} => C:\Program Files\TextPad 8\System\ShellExt64.dll [2017-03-10] (Helios Software Solutions Ltd -> )

==================== Codecs (Lista blanca) ====================

==================== Accesos directos & WMI ========================

(Las entradas pueden ser listadas para ser restauradas o eliminadas.)

ShortcutWithArgument: C:\Users\samur\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default

==================== Módulos cargados (Lista blanca) =============

2015-03-17 00:34 - 2015-03-17 00:34 - 000010240 _____ () [Archivo no firmado] C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\locale\es_es\acrotray.esp
2019-12-10 01:27 - 2019-05-28 14:06 - 001021440 _____ () [Archivo no firmado] C:\ProgramData\Lenovo\iMController\Plugins\LenovoWiFiSecurityPlugin\x86\x86\e_sqlite3.dll
2015-03-17 00:34 - 2015-03-17 00:34 - 000013824 _____ (Adobe Systems Inc.) [Archivo no firmado] C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\locale\es_es\Acrobat Elements\ContextMenuShim64.esp
2019-11-30 11:30 - 2019-10-27 05:36 - 001261568 _____ (Robert Simpson, et al.) [Archivo no firmado] C:\ProgramData\Lenovo\iMController\Plugins\GenericMessagingPlugin\x86\x86\SQLite.Interop.dll
2018-05-04 16:53 - 2017-05-23 13:59 - 000494080 _____ (Skillbrains) [Archivo no firmado] C:\Program Files (x86)\Skillbrains\lightshot\5.4.0.35\Lightshot.dll
2018-05-04 16:53 - 2017-05-23 13:59 - 000256000 _____ (Skillbrains) [Archivo no firmado] C:\Program Files (x86)\Skillbrains\lightshot\5.4.0.35\uploader.dll

==================== Alternate Data Streams (Lista blanca) ========

==================== Modo Seguro (Lista blanca) ==================

==================== Asociación (Lista blanca) =================

==================== Internet Explorer verificado/restringido ==========

(Si una entrada es incluida en el fixlist, será eliminada del registro.)

IE trusted site: HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\consum.es -> hxxps://intranet.consum.es
IE trusted site: HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\fnmt.es -> hxxps://fnmt.es
IE trusted site: HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\fnmt.es -> hxxp://fnmt.es
IE trusted site: HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\gob.es -> hxxps://fnmt.gob.es
IE trusted site: HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\gob.es -> hxxp://fnmt.gob.es
IE trusted site: HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\vstbridge.com -> hxxps://workdayintrotowcp.vstbridge.com
IE trusted site: HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\workday.com -> hxxps://cloud.workday.com
IE trusted site: HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\workdaysuv.com -> hxxps://workdaysuv.com

==================== Hosts contenido: =========================

(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)

2015-10-30 08:24 - 2015-10-30 08:21 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Otras Áreas ===========================

(Actualmente no existe una corrección automática para esta sección.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\iCLS\;C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\System32\OpenSSH\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files\AutoFirma\AutoFirma;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-2777594838-992919689-2335980850-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\samur\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\caribbeanshores1.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
Firewall de Windows está habilitado.

==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==

==================== Reglas de firewall (Lista blanca) ================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

FirewallRules: [UDP Query User{5058C4B7-0AB9-4074-AAE0-C125F0190F42}C:\program files\jetbrains\intellij idea community edition 2019.1.4\bin\idea64.exe] => (Allow) C:\program files\jetbrains\intellij idea community edition 2019.1.4\bin\idea64.exe (JetBrains s.r.o. -> JetBrains s.r.o.)
FirewallRules: [TCP Query User{9B535016-BD51-4601-BA98-E2D57D6255A1}C:\program files\jetbrains\intellij idea community edition 2019.1.4\bin\idea64.exe] => (Allow) C:\program files\jetbrains\intellij idea community edition 2019.1.4\bin\idea64.exe (JetBrains s.r.o. -> JetBrains s.r.o.)
FirewallRules: [UDP Query User{8A782C0D-9CD7-4107-BDC4-E2917D99DB7D}C:\program files\jetbrains\intellij idea community edition 2019.1.4\jre64\bin\java.exe] => (Allow) C:\program files\jetbrains\intellij idea community edition 2019.1.4\jre64\bin\java.exe
FirewallRules: [TCP Query User{266E7147-A60D-4678-A441-7CF1F14D360C}C:\program files\jetbrains\intellij idea community edition 2019.1.4\jre64\bin\java.exe] => (Allow) C:\program files\jetbrains\intellij idea community edition 2019.1.4\jre64\bin\java.exe
FirewallRules: [UDP Query User{8C4FD21B-C8D9-40AF-888C-7217716D26C1}C:\program files\workday\wcpcli\wcp.exe] => (Allow) C:\program files\workday\wcpcli\wcp.exe () [Archivo no firmado]
FirewallRules: [TCP Query User{33393249-AC86-4E72-9799-A6ED3AFB82B6}C:\program files\workday\wcpcli\wcp.exe] => (Allow) C:\program files\workday\wcpcli\wcp.exe () [Archivo no firmado]
FirewallRules: [{8075D08A-A9EA-4008-8646-3D425EEEAFDB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{ECF1F4E6-43A0-46AD-917C-40CE6FE4E619}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{487F15F0-0211-401B-9D11-EBD0B5FF95E8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{68260245-76ED-4E96-8076-D8D9190FE36C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F561C31A-288B-4908-B7C0-3D6DDB210B34}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{22048076-80C3-4F44-80B4-002B2BA2DBDE}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [UDP Query User{7A96DF5F-643C-4579-82FF-1E9A74E8D545}C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.498\pluginhost.exe] => (Allow) C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.498\pluginhost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{D0A89DB8-4946-4E03-90F5-C6FF804A9915}C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.498\pluginhost.exe] => (Allow) C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.498\pluginhost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{B6BDF8DD-F806-47F3-AEEB-85797BD77874}C:\program files\autofirma\autofirma\jre\bin\javaw.exe] => (Allow) C:\program files\autofirma\autofirma\jre\bin\javaw.exe
FirewallRules: [TCP Query User{DCA0751E-8453-4348-BC42-92B84E39498D}C:\program files\autofirma\autofirma\jre\bin\javaw.exe] => (Allow) C:\program files\autofirma\autofirma\jre\bin\javaw.exe
FirewallRules: [{6AB4F634-6F8F-429F-B9E1-E0BA54CFE5FF}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{94847AD4-0781-409C-BE09-4474834A4EC8}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{4B869D52-95D9-48EB-9100-D450A0322EA9}C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.282\pluginhost.exe] => (Allow) C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.282\pluginhost.exe Ningún archivo
FirewallRules: [TCP Query User{08163566-1AD8-41E0-A81A-9C35F7D16E12}C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.282\pluginhost.exe] => (Allow) C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.282\pluginhost.exe Ningún archivo
FirewallRules: [{303C7312-71CD-4ACA-BB7F-15563D92A6C5}] => (Allow) C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoPlus.exe Ningún archivo
FirewallRules: [{A1E237ED-5964-457F-BCBB-61AB9DD20AFC}] => (Allow) C:\Program Files (x86)\Lenovo\Lenovo Photo Master\subsys\AdvPhotoEditor\PhotoDirector5.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{F02B5B9F-C83E-4D0E-896F-68CB3BB4262B}] => (Allow) C:\Users\samur\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{547F30D0-8CA8-4FFC-A3BB-66E80B5E3FC5}] => (Allow) C:\Users\samur\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{DA843609-2C5D-4622-B996-A854C78E0BD3}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4C090B12-7EC7-40DC-A9BE-C2A642A847A6}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{BD37327B-178E-4055-A27A-F09A5A2172A3}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{3C769F2A-B455-4D0E-99F7-DCD5F9E0EBCA}C:\users\samur\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\samur\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{787F97F7-832B-4916-890C-BEADAEAD76BF}C:\users\samur\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\samur\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{ED8CCDCB-02DC-4F39-A04F-325001A48609}] => (Block) C:\users\samur\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{2572E92B-05B1-42DA-ACCB-6D72F61D8851}] => (Block) C:\users\samur\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{659649AB-4813-460B-AB53-5666CBEDA82C}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{CE75EB25-F6AC-4DA9-84C2-E06560FF36C9}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [{9FDCA7D9-BA44-407F-B331-49A5FADA1AAE}] => (Block) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [{8B4F742E-4290-4CE2-8466-8413721DADC5}] => (Block) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{94D265D5-E175-433F-808F-A434BC309E9C}C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.232\pluginhost.exe] => (Allow) C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.232\pluginhost.exe Ningún archivo
FirewallRules: [UDP Query User{C09E5EB9-F409-4173-84E0-A6C4671C0BC5}C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.232\pluginhost.exe] => (Allow) C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.232\pluginhost.exe Ningún archivo
FirewallRules: [TCP Query User{F69B4F13-C9B0-4865-8FBA-4F7AF4F18A9E}C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.232\pluginhost.exe] => (Allow) C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.232\pluginhost.exe Ningún archivo
FirewallRules: [UDP Query User{8588DE2A-4D00-4B24-BBFB-E53168943776}C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.232\pluginhost.exe] => (Allow) C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.232\pluginhost.exe Ningún archivo
FirewallRules: [TCP Query User{0931E28A-84A4-43C3-86B8-96F6EA632620}C:\program files (x86)\hybridaudio\voipsoftclient\voipsoftclient.exe] => (Allow) C:\program files (x86)\hybridaudio\voipsoftclient\voipsoftclient.exe (Level 3 Communications, Inc -> ) [Archivo no firmado]
FirewallRules: [UDP Query User{BFFD6ECE-ECEB-4DC7-8DBD-34A4FE102AE8}C:\program files (x86)\hybridaudio\voipsoftclient\voipsoftclient.exe] => (Allow) C:\program files (x86)\hybridaudio\voipsoftclient\voipsoftclient.exe (Level 3 Communications, Inc -> ) [Archivo no firmado]
FirewallRules: [TCP Query User{4683CBD2-1333-4177-A3F4-05980A76498D}C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.242\pluginhost.exe] => (Allow) C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.242\pluginhost.exe Ningún archivo
FirewallRules: [UDP Query User{61385E0D-9669-47DA-A72C-7CA686D05135}C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.242\pluginhost.exe] => (Allow) C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.242\pluginhost.exe Ningún archivo
FirewallRules: [TCP Query User{2CC7C44B-A20A-4AAE-BB1F-ADA5EC7315D0}C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.242\pluginhost.exe] => (Allow) C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.242\pluginhost.exe Ningún archivo
FirewallRules: [UDP Query User{A454EBA3-DAE3-4F29-824D-728232BE1C50}C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.242\pluginhost.exe] => (Allow) C:\users\samur\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.242\pluginhost.exe Ningún archivo
FirewallRules: [{1152D9D0-66AC-42AF-BE57-06DBB223B69D}] => (Allow) C:\Users\samur\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{F6023149-1CED-4E36-B187-F6998A247B1A}] => (Allow) C:\Users\samur\AppData\Roaming\Zoom\bin\airhost.exe Ningún archivo
FirewallRules: [{352EFFCD-C5FD-441E-B503-6C2C63140167}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{48EE82D5-26D4-497A-89F4-0BB6F7DB8BC8}C:\program files\microsoft office\root\office16\lync.exe] => (Allow) C:\program files\microsoft office\root\office16\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{1B8810FE-0C1F-440F-9412-5A859539BAD8}C:\program files\microsoft office\root\office16\lync.exe] => (Allow) C:\program files\microsoft office\root\office16\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{3D046E1B-8795-41A3-B17A-CC56BB925E84}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{C3389F31-4CC3-4387-B2D3-5AFC97E27748}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{5C7A4F2A-83AD-4185-B253-6283EFDE1340}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe (Plex, Inc -> Plex, Inc.)
FirewallRules: [{3270CAA7-D210-4245-9DFD-0A873CD4781F}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe (Plex, Inc -> Python Software Foundation)
FirewallRules: [{1C45C8E9-A4CA-425C-A6C0-F0C942DEB4E5}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\Plex DLNA Server.exe (Plex, Inc -> Plex, Inc.)
FirewallRules: [{DDFFCC23-60F7-49AF-A581-916BA1F54DAA}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\Plex Tuner Service.exe (Plex, Inc -> Plex)
FirewallRules: [{5D66F7E7-D7AE-4C95-A62F-D0FC02E231D8}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> )
FirewallRules: [{5CE2DA66-9E4C-431A-BC60-7D44B49E2320}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> )
FirewallRules: [{DCFC88CB-9BCE-4992-AB51-D7C527BE81DF}] => (Allow) C:\Program Files\ATOMI\ActivePresenter\ActivePresenter.exe (ATOMI SYSTEMS, INC. -> Atomi Systems, Inc.)
FirewallRules: [{7FEA0EBE-76BF-4FEC-8302-59C20A83F394}] => (Allow) C:\Program Files\ATOMI\ActivePresenter\rlactivator.exe (ATOMI SYSTEMS, INC. -> Atomi Systems, Inc.)
FirewallRules: [{11045129-08DF-4467-A090-474259FF4D41}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C1FB6341-AF7C-4D0B-A7A1-4870CD6DF675}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{5C8C9C20-D575-4D7E-8836-EB01DA60A131}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{B011B972-1B7A-4D03-840D-27FD5130AB57}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Puntos de Restauración =========================

14-12-2019 03:43:02 Windows Update

==================== Dispositivos defectuosos en el Administrador de dispositivos ============

Name: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64
Description: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Cisco Systems
Service: vpnva
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Errores del registro de eventos: ========================

Errores de aplicación:
==================
Error: (12/26/2019 11:14:31 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (4260,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (12/26/2019 10:55:58 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: svchost.exe_FrameServer, versión: 10.0.18362.1, marca de tiempo: 0x32d6c210
Nombre del módulo con errores: combase.dll, versión: 10.0.18362.449, marca de tiempo: 0xac52ea46
Código de excepción: 0xc0000005
Desplazamiento de errores: 0x00000000000bf898
Identificador del proceso con errores: 0x35fc
Hora de inicio de la aplicación con errores: 0x01d5bbd2848fe007
Ruta de acceso de la aplicación con errores: C:\WINDOWS\System32\svchost.exe
Ruta de acceso del módulo con errores: C:\WINDOWS\System32\combase.dll
Identificador del informe: 3bae0e6c-18a8-4b5d-a503-61b2c6497223
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:

Error: (12/25/2019 01:00:23 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (8172,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (12/24/2019 12:10:25 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (10536,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (12/24/2019 12:00:00 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: svchost.exe_FrameServer, versión: 10.0.18362.1, marca de tiempo: 0x32d6c210
Nombre del módulo con errores: combase.dll, versión: 10.0.18362.449, marca de tiempo: 0xac52ea46
Código de excepción: 0xc0000005
Desplazamiento de errores: 0x00000000000bf898
Identificador del proceso con errores: 0x4de8
Hora de inicio de la aplicación con errores: 0x01d5ba493522c91a
Ruta de acceso de la aplicación con errores: C:\WINDOWS\System32\svchost.exe
Ruta de acceso del módulo con errores: C:\WINDOWS\System32\combase.dll
Identificador del informe: c01e6b0e-bb80-49b7-80e8-cd145acf6ef7
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:

Error: (12/24/2019 11:13:35 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (8468,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (12/24/2019 10:46:34 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1296,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (12/24/2019 10:38:25 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (19708,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.


Errores del sistema:
=============
Error: (12/26/2019 10:54:07 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: El cierre anterior del sistema a las 12:32:45 del ‎24/‎12/‎2019 resultó inesperado.

Error: (12/20/2019 01:53:59 PM) (Source: DCOM) (EventID: 10010) (User: MAC-YOGA)
Description: El servidor {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} no se registró con DCOM dentro del tiempo de espera requerido.

Error: (12/20/2019 01:53:59 PM) (Source: DCOM) (EventID: 10010) (User: MAC-YOGA)
Description: El servidor {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} no se registró con DCOM dentro del tiempo de espera requerido.

Error: (12/20/2019 01:53:59 PM) (Source: DCOM) (EventID: 10010) (User: MAC-YOGA)
Description: El servidor {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} no se registró con DCOM dentro del tiempo de espera requerido.

Error: (12/20/2019 01:53:59 PM) (Source: DCOM) (EventID: 10010) (User: MAC-YOGA)
Description: El servidor {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} no se registró con DCOM dentro del tiempo de espera requerido.

Error: (12/20/2019 08:52:57 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: El cierre anterior del sistema a las 0:20:43 del ‎20/‎12/‎2019 resultó inesperado.

Error: (12/19/2019 01:16:09 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: El cierre anterior del sistema a las 12:40:54 del ‎19/‎12/‎2019 resultó inesperado.

Error: (12/14/2019 04:23:08 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: El servidor {A463FCB9-6B1C-4E0D-A80B-A2CA7999E25D} no se registró con DCOM dentro del tiempo de espera requerido.


Windows Defender:
===================================
Date: 2019-12-23 23:25:56.556
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {B4374303-A90C-4BB2-94E3-2A7D7CA7A4F3}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2019-12-23 12:33:46.557
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {2CF8CF8D-7D92-4F6C-9F57-123F69A64121}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2019-12-23 12:18:34.452
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {359209A5-D2EA-488A-988C-1EECEFF83C62}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2019-12-14 04:23:09.778
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {5A601469-3383-4EEF-9751-F38E4E518708}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2019-12-09 19:58:36.923
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {9A83F733-88E8-4BD2-86E3-9AFEA69BBF3D}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2019-12-20 09:03:12.750
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.307.757.0
Origen de actualización: Servidor de Microsoft Update
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\SYSTEM
Versión actual del motor: 
Versión anterior del motor: 1.1.16600.7
Código de error: 0x80240438
Descripción del error: Se produjo un problema inesperado mientras se buscaban actualizaciones. Para obtener más información sobre cómo instalar o solucionar problemas en las actualizaciones, consulte Ayuda y soporte técnico. 

Date: 2019-10-25 20:19:20.764
Description: 
La característica Protección en tiempo real de Antivirus de Windows Defender encontró un error:
Característica: Durante el acceso
Código de error: 0x80004005
Descripción del error: Error no especificado 
Motivo: El controlador de filtro no examinó los elementos y está en el modo indirecto. Esto puede deberse a recursos insuficientes.

Date: 2019-10-15 14:08:13.402
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.303.1727.0
Origen de actualización: Servidor de Microsoft Update
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\SYSTEM
Versión actual del motor: 
Versión anterior del motor: 1.1.16400.2
Código de error: 0x80240438
Descripción del error: Se produjo un problema inesperado mientras se buscaban actualizaciones. Para obtener más información sobre cómo instalar o solucionar problemas en las actualizaciones, consulte Ayuda y soporte técnico. 

==================== Información de la memoria =========================== 

BIOS: LENOVO 2XCN38WW(V2.12) 07/10/2018
Placa base: LENOVO LNVNB161216
Procesador: Intel(R) Core(TM) i5-7200U CPU @ 2.50GHz
Porcentaje de memoria en uso: 84%
RAM física total: 8001.51 MB
RAM física disponible: 1222.66 MB
Virtual total: 17582.89 MB
Virtual disponible: 7548.68 MB

==================== Unidades ================================

Drive c: (Windows) (Fixed) (Total:197.09 GB) (Free:27.66 GB) NTFS
Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:22.61 GB) NTFS

\\?\Volume{74049875-7cfa-4ddc-a0fa-d9e9a6ac6e16}\ (WINRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.49 GB) NTFS
\\?\Volume{4c5625bb-401f-4f40-af70-59fa4df7bd40}\ (LENOVO_PART) (Fixed) (Total:14.16 GB) (Free:0.65 GB) NTFS
\\?\Volume{ae0a2ac2-9bf1-4bc8-b5e6-70d3bd340b56}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32

==================== MBR & Tabla de particiones ====================

==========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: EFFB3E50)

Partition: GPT.

==================== Final de Addition.txt =======================

Hola

Primero , vas a realizar:

Muestras carpetas ocultas >>

Ver archivos ocultos en todos los Windows

Entras en Modo seguro de windows

usa esta Faq de Windows ¿Cómo iniciar Windows en Modo Seguro (Aplicable a Windows 10)?, para trabajar desde ese modo de windows. (Usa el Metodo 1 y si no puedes, usa el Metodo 2)

En el escritorio. haces boton derecho >> nuevo archivo zip.

Vas a esta carpeta:

C:\ProgramData\Intel\ Wireless

Arrastras la carpeta al archivo zip del escritorio y luego me lo mandas el zip por Mp ( mensaje privado)…para ello arrastras la carpeta al cuadro de respuesta o usas la flecha arriba del recuadro para adjuntar.

Para ello reinicia en modo normal el pc

Luego sigues las indicaciones que te pongo en la siguiente respuesta

Gracias

Luego de hacer lo anterior…reinicias el pc en modo normal y ejecutas en orden:

Bien… y ahora sigue estos pasos, MUY Importante ~ Realiza una copia de seguridad del registro :

  • Para hacerlo descarga Delfix en tu escritorio.

  • Doble clic para ejecutarlo.(Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona "Ejecutar como Administrador.")

  • Atención, ahora marca/selecciona únicamente la casilla "Create registry backup", las demás NO

  • Pulsar en Run.

Se abrirá el informe (DelFix.txt), guárdalo por si fuera necesario y cierra la herramienta.


En el equipo con los demas programas cerrados:

Inicio >>> Ejecutar >>>Escribes notepad.exe.

Ahora copia y pega estos archivos dentro del Notepad:


Start
CreateRestorePoint:
CloseProcesses:

HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\Run: [] =>  [X]
HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\Run: [d5c2a517] => C:\ProgramData\Intel\Wireless\04152d2\hadjhdb.exe C:\ProgramData\Intel\Wireless\04152d2\6f63120.au3
C:\ProgramData\Intel\Wireless
SearchScopes: HKU\S-1-5-21-2777594838-992919689-2335980850-1001 -> DefaultScope {B9DCA7BE-0FDB-4B1A-8E6C-5FE4AC48B16C} URL = 
SearchScopes: HKU\S-1-5-21-2777594838-992919689-2335980850-1001 -> {B9DCA7BE-0FDB-4B1A-8E6C-5FE4AC48B16C} URL = 
2019-12-01 21:02 - 2019-12-01 21:02 - 000000000 ____D C:\testintel2
hortcutWithArgument: C:\Users\samur\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default


HOSTS:
REMOVEPROXY:
EMPTYTEMP:
CMD: netsh winsock reset
CMD: ipconfig /renew
CMD: ipconfig /flushdns
CMD: bitsadmin /reset /allusers
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
END

Lo guardas bajo el nombre de fixlist.txt en el escritorio <<< Esto es muy importante.<<

Nota: Es importante que la Hta Frst.exe y fixlist.txt se encuentren en la misma ubicación (escritorio) o si no no trabajara.

  • Y ahora usa esta Faq de Windows ¿Cómo iniciar Windows en Modo Seguro (Aplicable a Windows 10)?, para trabajar desde ese modo de windows. (Usa el Metodo 1 y si no puedes, usa el Metodo 2)

  • Ejecutas Frst.exe.

  • Presionas el botón Fix y aguardas a que termine.

  • La Herramienta guardara el reporte en tu escritorio (Fixlog.txt).

Lo pegas en tu próxima respuesta, comentado como va el problema

Resultados de la corrección de Farbar Recovery Scan Tool (x64) Versión: 25-12-2019
Ejecutado por samur (26-12-2019 15:24:08) Run:1
Ejecutado desde C:\Users\samur\Desktop
Perfiles cargados: samur (Perfiles disponibles: samur)
Modo de Inicio: Safe Mode (with Networking)
==============================================

fixlist contenido:
*****************
Start
CreateRestorePoint:
CloseProcesses:

HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\Run: [] =>  [X]
HKU\S-1-5-21-2777594838-992919689-2335980850-1001\...\Run: [d5c2a517] => C:\ProgramData\Intel\Wireless\04152d2\hadjhdb.exe C:\ProgramData\Intel\Wireless\04152d2\6f63120.au3
C:\ProgramData\Intel\Wireless
SearchScopes: HKU\S-1-5-21-2777594838-992919689-2335980850-1001 -> DefaultScope {B9DCA7BE-0FDB-4B1A-8E6C-5FE4AC48B16C} URL = 
SearchScopes: HKU\S-1-5-21-2777594838-992919689-2335980850-1001 -> {B9DCA7BE-0FDB-4B1A-8E6C-5FE4AC48B16C} URL = 
2019-12-01 21:02 - 2019-12-01 21:02 - 000000000 ____D C:\testintel2
hortcutWithArgument: C:\Users\samur\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default


HOSTS:
REMOVEPROXY:
EMPTYTEMP:
CMD: netsh winsock reset
CMD: ipconfig /renew
CMD: ipconfig /flushdns
CMD: bitsadmin /reset /allusers
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
END
*****************

Error: El punto de restauración solamente puede ser creado en modo normal.
Procesos cerrados correctamente.
"HKU\S-1-5-21-2777594838-992919689-2335980850-1001\Software\Microsoft\Windows\CurrentVersion\Run\\" => eliminado correctamente
"HKU\S-1-5-21-2777594838-992919689-2335980850-1001\Software\Microsoft\Windows\CurrentVersion\Run\\d5c2a517" => eliminado correctamente
C:\ProgramData\Intel\Wireless => movido correctamente
"HKU\S-1-5-21-2777594838-992919689-2335980850-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => eliminado correctamente
HKU\S-1-5-21-2777594838-992919689-2335980850-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B9DCA7BE-0FDB-4B1A-8E6C-5FE4AC48B16C} => eliminado correctamente
C:\testintel2 => movido correctamente
hortcutWithArgument: C:\Users\samur\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default => Error: Ninguna corrección automática encontrada para esta entrada.
C:\Windows\System32\Drivers\etc\hosts => movido correctamente
Hosts restaurado correctamente.

========= RemoveProxy: =========

"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente
"HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente
"HKU\S-1-5-21-2777594838-992919689-2335980850-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\S-1-5-21-2777594838-992919689-2335980850-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente


========= Final de RemoveProxy: =========


========= netsh winsock reset =========


El cat logo Winsock se restableci¢ correctamente.
Debe reiniciar el equipo para completar el restablecimiento.


========= Final de CMD: =========


========= ipconfig /renew =========


Configuraci¢n IP de Windows

Error en la operaci¢n. No hay ning£n adaptador permitido para 
esta operaci¢n.

========= Final de CMD: =========


========= ipconfig /flushdns =========


Configuraci¢n IP de Windows

Se vaci¢ correctamente la cach‚ de resoluci¢n de DNS.

========= Final de CMD: =========


========= bitsadmin /reset /allusers =========


BITSADMIN version 3.0
BITS administration utility.
(C) Copyright Microsoft Corp.

Unable to connect to BITS - 0x8007043c
El servicio no puede iniciarse en modo a prueba de errores



========= Final de CMD: =========


========= netsh advfirewall reset =========

Aceptar


========= Final de CMD: =========


========= netsh advfirewall set allprofiles state ON =========

Aceptar


========= Final de CMD: =========


========= netsh int ipv4 reset =========

Reenv¡o de compartimiento se restableci¢ correctamente.
Compartimiento se restableci¢ correctamente.
Protocolo de control se restableci¢ correctamente.
Solicitud de secuencia eco se restableci¢ correctamente.
Global se restableci¢ correctamente.
Interfaz se restableci¢ correctamente.
Direcci¢n de difusi¢n por proximidad (a se restableci¢ correctamente.
Direcciones de multidifusi¢n se restableci¢ correctamente.
Direcci¢n de unidifusi¢n se restableci¢ correctamente.
Vecino se restableci¢ correctamente.
Ruta de acceso se restableci¢ correctamente.
Posible se restableci¢ correctamente.
Directiva de prefijo se restableci¢ correctamente.
Vecino de proxy se restableci¢ correctamente.
Ruta se restableci¢ correctamente.
Prefijo de sitio se restableci¢ correctamente.
Subinterfaz se restableci¢ correctamente.
Patr¢n de reactivaci¢n se restableci¢ correctamente.
Resolver vecino se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Error al restablecer .
Acceso denegado.

 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.


========= Final de CMD: =========


========= netsh int ipv6 reset =========

Reenv¡o de compartimiento se restableci¢ correctamente.
Compartimiento se restableci¢ correctamente.
Protocolo de control se restableci¢ correctamente.
Solicitud de secuencia eco se restableci¢ correctamente.
Global se restableci¢ correctamente.
Interfaz se restableci¢ correctamente.
Direcci¢n de difusi¢n por proximidad (a se restableci¢ correctamente.
Direcciones de multidifusi¢n se restableci¢ correctamente.
Direcci¢n de unidifusi¢n se restableci¢ correctamente.
Vecino se restableci¢ correctamente.
Ruta de acceso se restableci¢ correctamente.
Posible se restableci¢ correctamente.
Directiva de prefijo se restableci¢ correctamente.
Vecino de proxy se restableci¢ correctamente.
Ruta se restableci¢ correctamente.
Prefijo de sitio se restableci¢ correctamente.
Subinterfaz se restableci¢ correctamente.
Patr¢n de reactivaci¢n se restableci¢ correctamente.
Resolver vecino se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Error al restablecer .
Acceso denegado.

 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.


========= Final de CMD: =========


=========== EmptyTemp: ==========

BITS transfer queue => 10772480 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 35642592 B
Java, Flash, Steam htmlcache => 2325 B
Windows/system/drivers => 8112252 B
Edge => 9326041 B
Chrome => 363220664 B
Firefox => 327475245 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 6656 B
Users => 6656 B
ProgramData => 6656 B
Public => 6656 B
systemprofile => 6656 B
systemprofile32 => 25536 B
LocalService => 25536 B
NetworkService => 337618 B
samur => 55219005 B

RecycleBin => 10639185018 B
EmptyTemp: => 10.7 GB datos temporales Eliminados.

================================


El sistema necesita reiniciarse.

==== Final de Fixlog 15:25:35 ====

Hola,

No he conseguido mandarte por mensaje privado el zip, ya que me dice que no puedo mandar esta extensión de fichero, intente cambiando la extensión a jpeg y a txt y sin suerte.

¿Crees que el virus estaba en esa carpeta? ¿Se ven más problemas en mi PC?

Muchas gracias

Si me hubieses dicho,te habria indicado cono mandarme ese archivo…hay que dar margen antes de hacer,si lo que se indica en orden no puedes realizarlos

Ese era motivo de una infeccion que lleva afectando hace tiempo,y lo quería para mandarlo a analizar y qye sea detectado por los antivirus…

Comenta como va el pc

Comprobar si en C/frst en carpeta quarentena,esta la carpeta wirelees

Hola, no borré el archivo, asique si me dices como mandártelo lo hago ahora mismo :slight_smile:

Usa un servicio como ondrive o dropbox y me mandas el enlace o si no queires registrarte o no tienes cuenta , usa Wetranfer

En este link tienes como usarlo y luego me mandas el link con el archivo por Mp

https://forums.malwarebytes.com/topic/253245-v4-scans-not-works/?do=findComment&comment=1346310

Vete a C/Windows y abre notepad.exe

Con system explorer, comprueba si como en la imagen del usuario,en comand line, que te sale

Pon captura

No me sale ya el proceso del bloc de notas, por lo que imagino que se solucionó el problema.

Gracias!

pero debes ejecutarlo tú, es decir abrir un bloc de notas como si fueras a hacer algo con él para que el proceso este activo…es decir simplemente abre un bloc de notas déjalo abierto y comprueba en system Explorer el command line.

O simplemente en el escritorio botón derecho nuevo documento de texto y después lo mantienes abierto desde nuevo documento en blanco.

problema y la infección si está solucionada, pero necesitamos saber si el proceso ha sido limpiado también.

Tu simplemente, ejecutas un bloc de notas , lo dejas abierto, abres system explorer, boton derecho sobre el proceso notepad y “detalles del proceso”, y en el recuadro detalles, donde pone “comand line”, dime que pone o copia y pegame esa linea

Hola,

“C:\WINDOWS\system32\notepad.exe”

Parece correcto.

Si ese está correcto .

Para una última comprobación si no te importa, ejecuta el notepad.es que está en la carpeta de Windows…no en system32,en C/Windows/notepad.exe.

Doble click y lo buscas en el administrador de tareas de system Explorer y me pegas la línea a ver si está correcta también

correcto tambien!

“C:\Windows\notepad.exe”

Perfecto!! :clap:

Gracias a vosotros, ahora tenemos todos los datos para eliminar esta infeccion , que es bastante extraña.

Para eliminar las herramientas usadas en la desinfección, realizas:

  • Descargas y Ejecutas >> Delfix, en tu escritorio.

  • Doble clic para ejecutarlo.(Si usas Windows Vista/7 /8 /10,presiona clic derecho y selecciona >>;Ejecutar como Administrador.)

  • Marca solamente la casilla Remove disinfection tools

  • Pulsar en Run.

Se abrirá el informe (DelFix.txt), guárdalo por si fuera necesario y cierra la herramienta.

Si queda alguna herramienta, la desinstalas desde panel de Windows y aquellas que no estén listadas, se eliminan directamente.


Me alegro de haberte podido ayudar! :+1:


TEMA SOLUCIONADO

Este tema se cerró automáticamente 2 días después de la última publicación. No se permiten nuevas respuestas.