Open office 4.1.6 no abre


#1

Desde que hice la anterior reparación el open office no me funciona. Lo desinstalé y lo volví a instalar , pero ahora me dice fatal error, y no se abre. No sé si es por que como bloqueador de anuncios le puse el malwrebytes o por que .


#2

Hola

Desinstalas usando Revo…

Descarga e instalas >> Revo Uninstaller | InfoSpyware

Luego, segun manual de Revo >> https://forospyware.com/t/manual-de-revo-uninstaller/3264, desinstalas el / los programas indicados, seleccionando cuando lo indique Revo, el Modo Avanzado

Marcas NOMBRE PROGRAMA y pulsas desinstalar en el menu de Revo, en Modo Avanzado

Cuando lo hagas, se iniciara el desinstalador de NOMBRE DE PROGRAMA y al finalizar (si alguno te pide reiniciar, pulsas en NO o Cancelar y continuas con Revo), realizas:

  • Pulsas Analizar en Revo, para que analice los restos del programa

  • Pulsas seleccionar todo, para eliminar restos del registro

  • Pulsas borrar todo

  • Pulsas siguiente

  • Pulsas seleccionar todo, para eliminar, si hay, carpetas

  • Pulsas borrar todo

  • Pulsas finalizar

Luego lo reinstalas https://www.openoffice.org/es/

Comentas


#3

No sé si no he hecho bien la desintalación pero me vuelve a dar el mismo problema.

Voy a volverlo tal y como me has dicho siguiendo con con cuidado la s instrucciones. Luego te digo.

Es que se mete el desinstalador que lleva el open office y el solo se pone a desisntalarlo.

Lo he vuelto a hacer desde el desinstalador de REVO, pero me sigue dando el mismo error . No sé que puede pasara. :sweat::sweat:

sale una ventana con un triángulo amarillo que dice: faltal error open office No se puede iniciar la aplicación context = bundled caught unexpeted excepción.


#4

sí eso es correcto … lo primero se va a iniciar el desinstalador del propio programa y cuando finalice es cuando debe seguir los pasos que se indican con revo


#5

**Lo he vuelto a hacer desde el desinstalador de REVO, pero me sigue dando el mismo error . Lo he vuelto a hacer desde el desinstalador de REVO, pero me sigue dando el mismo error . No sé que puede pasara. :sweat::sweat:

sale una ventana con un triángulo amarillo que dice: faltal error open office No se puede iniciar la aplicación context = bundled caught unexpeted excepción.


#6

Desinstala de nuevo con Revo y me pegas estos logs (No reinstales hasta que te indique)

  • Desactiva Temporalmente tu antivirus y cualquier programa de seguridad.

  • Descarga a Tu Escritorio >> Esto es muy importante<<.,Fabar Recovery Scan Tool, considerando la versión adecuada para tu equipo. (32 o 64 bits) :arrow_forward: ¿Cómo saber si mi Windows es de 32 o 64 bits?

  • Doble clic para ejecutar Frst.exe. En la ventana del Disclaimer, presiona Yes.

  • En la nueva ventana que se abre, presiona el botón Scan y espera a que concluya el análisis.

  • Se abrirán dos (2) archivos (Logs), Frst.txt y Addition.txt, que estarán grabados en Tu escritorio.

En Tu próxima respuesta, copias y pegas los dos reportes Frst.txt y Addition.txt de FRST

Nota: Si el/los reportes solicitados no entraran en una sola respuesta porque superan la cantidad de caracteres permitidos, puedes utilizar dos o mas respuestas para pegarlos completamente.


#7

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 24.02.2019 02 Ran by muriel11 (administrator) on MURIEL (25-02-2019 15:38:36) Running from C:\Users\muriel11\Downloads Loaded Profiles: muriel11 & (Available Profiles: UpdatusUser & muriel11) Platform: Windows 10 Home Version 1803 17134.407 (X64) Language: Español (España, internacional) Default browser: FF Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Panda Security S.L -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe
(Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe
(Atheros) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Intel® Upgrade Service -> Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\rempl\sedsvc.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\rempl\sedlauncher.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.39.222.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.39.222.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Realtek Semiconductor Corp -> Realtek semiconductor) C:\Windows\RTFTrack.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Lenovo (Beijing) Limited -> Lenovo) C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe
(Lenovo (Beijing) Limited -> Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo (Beijing) Limited -> Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Hewlett Packard -> Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP ENVY 4520 series\Bin\ScanToPCActivationApp.exe
(Piriform Ltd -> Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(CyberLink -> CyberLink Corp.) C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe
(Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.18114.17710.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.Device.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\msiexec.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3242696 2015-10-07] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.)
HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [6334096 2012-10-17] (Realtek Semiconductor Corp -> Realtek semiconductor)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13262480 2012-12-07] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1256080 2012-12-03] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [OnekeyStudio] => C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe [4196432 2012-09-14] (Lenovo (Beijing) Limited -> Lenovo)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17080376 2013-03-28] (Lenovo (Beijing) Limited -> Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [191544 2013-03-28] (Lenovo (Beijing) Limited -> Lenovo(beijing) Limited)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1812544 2016-09-12] (NVIDIA Corporation -> NVIDIA Corporation)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3933496 2012-09-20] (Logitech -> Logitech, Inc.)
HKLM-x32\...\Run: [YouCam Tray] => C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [168464 2012-10-30] (CyberLink -> CyberLink Corp.)
HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [217088 2012-04-18] (CyberLink Corp.) [File not signed]
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [1686528 2012-03-27] (Wondershare) [File not signed]
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
HKLM-x32\...\Run: [PSUAMain] => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [153296 2018-05-30] (Panda Security S.L. -> Panda Security, S.L.)
HKU\S-1-5-21-2269503168-2857107802-113313676-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150325612\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8944344 2016-09-28] (Piriform Ltd -> Piriform Ltd)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\Run: [HP ENVY 4520 series (NET)] => C:\Program Files\HP\HP ENVY 4520 series\Bin\ScanToPCActivationApp.exe [3651080 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #4] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #5] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #6] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #7] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #8] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #9] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #10] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #11] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #12] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #13] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #14] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #15] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #17] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8944344 2016-09-28] (Piriform Ltd -> Piriform Ltd)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\Run: [HP ENVY 4520 series (NET)] => C:\Program Files\HP\HP ENVY 4520 series\Bin\ScanToPCActivationApp.exe [3651080 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #4] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #5] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #6] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #7] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #8] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #9] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #10] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #11] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #12] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #13] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #14] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #15] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #17] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKLM\...\Drivers32: [msacm.clmp3enc] => C:\Program Files (x86)\Lenovo\Power2Go\CLMP3Enc.ACM [217088 2005-05-13] (CyberLink Corp.) [File not signed]
HKLM\Software\...\Authentication\Credential Providers: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\WINDOWS\system32\AthCredentialProvider.dll [2012-09-29] (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed]
HKLM\Software\...\Authentication\Credential Provider Filters: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\WINDOWS\system32\AthCredentialProvider.dll [2012-09-29] (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed]

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\..\Interfaces\{3d82afe7-adbb-4463-89d0-fe66d6c162a7}: [DhcpNameServer] 62.81.29.254 62.81.16.213
Tcpip\..\Interfaces\{63801e64-cc31-490a-b990-8b0e9c4c2ec7}: [NameServer] 87.216.1.65,87.216.1.66

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13.msn.com
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13.msn.com
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2269503168-2857107802-113313676-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150325612 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2012-09-29] (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed]
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-02-28] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-28] (Oracle America, Inc. -> Oracle Corporation)

Edge: 
======
Edge HomeButtonPage: HKU\S-1-5-21-2269503168-2857107802-113313676-1002 -> about:start

FireFox:
========
FF DefaultProfile: 124gsmrc.default-1542898610200
FF ProfilePath: C:\Users\muriel11\AppData\Roaming\Mozilla\Firefox\Profiles\124gsmrc.default-1542898610200 [2019-02-25]
FF Extension: (Malwarebytes Browser Extension) - C:\Users\muriel11\AppData\Roaming\Mozilla\Firefox\Profiles\124gsmrc.default-1542898610200\Extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [2019-02-19]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_142.dll [2019-02-12] (Adobe Systems Incorporated -> )
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN -> VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_142.dll [2019-02-12] (Adobe Systems Incorporated -> )
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-02-28] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-28] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.1.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2269503168-2857107802-113313676-1002: intel.com/AppUp -> C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp.dll [No File]
FF Plugin HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128: intel.com/AppUp -> C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp.dll [No File]

Chrome: 
=======
CHR HKLM\...\Chrome\Extension: [fagakgcelolinfnkfgekcnedpaklfcok] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [ipmkfpcnmccejididiaagpgchgjfajgp] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144072 2015-10-07] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.)
R2 igfxCUIService1.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [337888 2016-05-03] (Intel(R) pGFX -> Intel Corporation)
R2 ImControllerService; C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [71336 2019-01-07] (Lenovo -> Lenovo Group Ltd.)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation -> Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6562472 2019-02-01] (Malwarebytes Corporation -> Malwarebytes)
R2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [109024 2017-11-08] (Panda Security S.L. -> Panda Security, S.L.)
S3 Panda VPN Service; C:\Program Files (x86)\Panda Security\Panda Security Protection\Hydra.Sdk.Windows.Service.exe [320848 2017-11-20] (AnchorFree Inc -> )
R2 PandaAgent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [86104 2016-07-19] (Panda Security S.L -> Panda Security, S.L.)
R2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [48784 2018-05-30] (Panda Security S.L. -> Panda Security, S.L.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4451616 2018-04-12] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [107136 2018-09-21] (Microsoft Corporation -> Microsoft Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2012-09-29] (Atheros) [File not signed]
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem"
S3 WerSvc; %SystemRoot%\System32\WerSvc.dll [X]

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aftap0901; C:\WINDOWS\System32\drivers\aftap0901.sys [48624 2017-11-16] (AnchorFree Inc -> The OpenVPN Project)
R3 athr; C:\WINDOWS\System32\drivers\athw8x.sys [4233728 2018-04-12] (Microsoft Windows -> Qualcomm Atheros Communications, Inc.)
R3 BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [610336 2016-07-13] (Microsoft Windows Hardware Compatibility Publisher -> Qualcomm Atheros)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [153328 2019-01-08] (Malwarebytes Corporation -> Malwarebytes)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [198512 2019-02-22] (Malwarebytes Corporation -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-02-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [127136 2019-02-24] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [72864 2019-02-24] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [274416 2019-02-24] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [114040 2019-02-24] (Malwarebytes Corporation -> Malwarebytes)
R1 NNSALPC; C:\WINDOWS\system32\DRIVERS\NNSALPC.sys [108000 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSHTTP; C:\WINDOWS\system32\DRIVERS\NNSHTTP.sys [211936 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSHTTPS; C:\WINDOWS\system32\DRIVERS\NNSHTTPS.sys [121312 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSIDS; C:\WINDOWS\system32\DRIVERS\NNSIDS.sys [126432 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSNAHSL; C:\WINDOWS\system32\DRIVERS\NNSNAHSL.sys [99512 2017-09-26] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSPICC; C:\WINDOWS\system32\DRIVERS\NNSPICC.sys [118240 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSPIHSW; C:\WINDOWS\system32\DRIVERS\NNSPIHSW.sys [91616 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSPOP3; C:\WINDOWS\system32\DRIVERS\NNSPOP3.sys [135648 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSPROT; C:\WINDOWS\system32\DRIVERS\NNSPROT.sys [336352 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSPRV; C:\WINDOWS\system32\DRIVERS\NNSPRV.sys [249312 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSSMTP; C:\WINDOWS\system32\DRIVERS\NNSSMTP.sys [123360 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSSTRM; C:\WINDOWS\system32\DRIVERS\NNSSTRM.sys [281056 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSTLSC; C:\WINDOWS\system32\DRIVERS\NNSTLSC.sys [125920 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvltwu.inf_amd64_0221ce4ec0827f74\nvlddmkm.sys [14190520 2017-01-17] (NVIDIA Corporation -> NVIDIA Corporation)
S3 OXSDIDRV_x64; C:\WINDOWS\system32\DRIVERS\OXSDIDRV_x64.sys [51760 2009-09-28] (Oxford Semiconductor Ltd -> )
S3 OXUDIDRV; C:\WINDOWS\system32\Drivers\OXUDIDRV_X64.sys [31280 2010-05-25] (Oxford Semiconductor Ltd -> )
R2 PSINAflt; C:\WINDOWS\system32\DRIVERS\PSINAflt.sys [191448 2017-11-08] (Panda Security S.L. -> Panda Security, S.L.)
R2 PSINFile; C:\WINDOWS\System32\DRIVERS\PSINFile.sys [153992 2018-01-23] (Panda Security S.L. -> Panda Security, S.L.)
R1 PSINKNC; C:\WINDOWS\system32\DRIVERS\PSINKNC.sys [207248 2018-01-30] (Panda Security S.L. -> Panda Security, S.L.)
R2 PSINProc; C:\WINDOWS\System32\DRIVERS\PSINProc.sys [146912 2017-10-17] (Panda Security S.L. -> Panda Security, S.L.)
R2 PSINProt; C:\WINDOWS\system32\DRIVERS\PSINProt.sys [159200 2017-10-17] (Panda Security S.L. -> Panda Security, S.L.)
R2 PSINReg; C:\WINDOWS\system32\DRIVERS\PSINReg.sys [129504 2017-10-17] (Panda Security S.L. -> Panda Security, S.L.)
R3 PSKMAD; C:\WINDOWS\System32\DRIVERS\PSKMAD.sys [72648 2017-05-22] (Panda Security S.L. -> Panda Security, S.L.)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [604160 2018-04-12] (Microsoft Windows -> Realtek )
R3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [8230160 2012-10-17] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [35784 2016-10-26] (Avira Operations GmbH & Co. KG -> The OpenVPN Project)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44616 2018-04-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [26880 2015-11-12] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [331680 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [44032 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
S3 wsvd; C:\WINDOWS\system32\DRIVERS\wsvd.sys [102376 2012-06-13] (CyberLink -> "CyberLink)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-02-25 15:38 - 2019-02-25 15:40 - 000030420 _____ C:\Users\muriel11\Downloads\FRST.txt
2019-02-25 15:38 - 2019-02-25 15:38 - 000000000 ____D C:\FRST
2019-02-25 15:29 - 2019-02-25 15:29 - 002433536 _____ (Farbar) C:\Users\muriel11\Downloads\FRST64.exe
2019-02-24 14:40 - 2019-02-24 14:41 - 130827497 _____ C:\Users\muriel11\Downloads\Apache_OpenOffice_4.1.6_Win_x86_install_es(1).exe
2019-02-24 14:27 - 2019-02-24 14:27 - 000001090 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk
2019-02-24 14:27 - 2019-02-24 14:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2019-02-24 14:27 - 2019-02-24 14:27 - 000000000 ____D C:\Program Files\VS Revo Group
2019-02-24 14:26 - 2019-02-24 14:26 - 007127416 _____ (VS Revo Group ) C:\Users\muriel11\Downloads\revosetup(2).exe
2019-02-24 09:55 - 2019-02-24 09:55 - 000000000 ____D C:\Users\muriel11\Desktop\OpenOffice 4.1.6 (es) Installation Files
2019-02-24 09:29 - 2019-02-24 09:29 - 000274416 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2019-02-24 09:29 - 2019-02-24 09:29 - 000127136 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2019-02-24 09:29 - 2019-02-24 09:29 - 000114040 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2019-02-24 09:29 - 2019-02-24 09:29 - 000072864 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2019-02-23 19:43 - 2019-02-07 15:36 - 1597216725 _____ C:\Users\muriel11\Downloads\Sueño en otro idioma (2017).mkv
2019-02-22 18:12 - 2019-02-22 18:12 - 000198512 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2019-02-22 18:12 - 2019-02-22 18:12 - 000001923 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2019-02-22 18:12 - 2019-02-22 18:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-02-22 18:12 - 2019-02-01 11:20 - 000020936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2019-02-22 18:12 - 2019-01-08 15:32 - 000153328 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2019-02-18 18:28 - 2019-02-18 18:28 - 000003309 _____ C:\Users\muriel11\Downloads\Torero! (Carlos Velo, 1956).srt
2019-02-17 19:30 - 2019-02-17 19:40 - 2135809498 _____ C:\Users\muriel11\Downloads\Petra.mp4
2019-02-17 19:22 - 2019-02-17 19:22 - 000014491 _____ C:\Users\muriel11\Downloads\Petra.srt
2019-02-15 14:55 - 2019-02-15 14:55 - 000000000 ____D C:\Users\muriel11\AppData\Local\PackageStaging
2019-02-10 09:31 - 2019-02-01 11:05 - 000000000 ____D C:\Users\muriel11\Desktop\MAM
2019-02-03 14:16 - 2019-02-03 14:17 - 000015208 _____ C:\Users\muriel11\Downloads\factura alter computer.pdf
2019-02-03 11:55 - 2019-02-03 11:56 - 000072715 _____ C:\Users\muriel11\Downloads\Transit.2018.es.srt
2019-01-28 19:15 - 1601-06-12 20:10 - 000056509 _____ C:\Users\muriel11\Downloads\Torero.torrent
2019-01-28 19:14 - 2019-01-28 19:14 - 000056509 _____ C:\Users\muriel11\Downloads\Torero.txt
2019-01-27 09:40 - 2019-01-07 18:38 - 000205992 _____ (Lenovo Group Ltd.) C:\WINDOWS\system32\Lenovo.Modern.CoreTypes.dll
2019-01-27 09:40 - 2019-01-07 18:38 - 000130216 _____ (Lenovo Group Ltd.) C:\WINDOWS\system32\Lenovo.Modern.Utilities.dll
2019-01-27 09:40 - 2019-01-07 18:38 - 000097448 _____ (Lenovo Group Ltd.) C:\WINDOWS\system32\Lenovo.Modern.ImController.ImClient.dll
2019-01-27 09:40 - 2019-01-07 18:38 - 000043688 _____ (Lenovo Group Ltd.) C:\WINDOWS\system32\Lenovo.ImController.EventLogging.dll

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-02-25 15:34 - 2018-04-12 00:30 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-02-25 15:30 - 2018-04-12 00:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-02-25 15:27 - 2016-11-18 19:11 - 000000000 ____D C:\Users\muriel11\AppData\LocalLow\Mozilla
2019-02-25 15:24 - 2018-06-11 17:42 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-02-25 15:06 - 2018-06-11 18:14 - 000004206 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{625E84F4-8970-4A63-9DD9-6566CA911685}
2019-02-25 15:03 - 2016-05-17 23:20 - 000000000 __SHD C:\Users\muriel11\IntelGraphicsProfiles
2019-02-24 09:29 - 2018-06-11 17:42 - 000499400 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-02-24 09:29 - 2016-05-17 22:44 - 000000000 ____D C:\ProgramData\NVIDIA
2019-02-24 09:28 - 2018-06-11 18:14 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-02-24 09:28 - 2018-04-11 22:04 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-02-24 09:14 - 2018-04-12 00:36 - 000000000 ____D C:\WINDOWS\INF
2019-02-24 09:14 - 2013-12-05 23:20 - 000000000 ____D C:\Users\muriel11\AppData\Local\CrashDumps
2019-02-24 09:06 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-02-23 19:47 - 2013-11-16 20:38 - 000000000 ____D C:\Users\muriel11\AppData\Roaming\vlc
2019-02-23 13:29 - 2018-04-12 00:38 - 000000000 ___HD C:\Program Files\WindowsApps
2019-02-22 18:12 - 2018-04-12 00:38 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-02-22 18:12 - 2014-07-16 15:14 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-02-22 15:37 - 2018-03-13 17:54 - 000000000 ___HD C:\Users\muriel11\MicrosoftEdgeBackups
2019-02-15 23:11 - 2013-12-01 13:57 - 000000000 ____D C:\Users\muriel11\Desktop\qBittorrent completos
2019-02-15 21:01 - 2017-11-23 16:43 - 000000000 ____D C:\Program Files\Mozilla Firefox
2019-02-15 21:01 - 2017-10-05 16:05 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-02-15 19:25 - 2017-09-24 16:19 - 000000000 ____D C:\Program Files\rempl
2019-02-14 17:01 - 2017-11-23 16:43 - 000001016 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2019-02-13 21:00 - 2018-06-11 18:14 - 000004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2019-02-12 21:31 - 2013-11-14 19:52 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-02-12 21:29 - 2013-11-14 19:52 - 129330784 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-02-12 16:28 - 2019-01-12 16:36 - 000004606 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier
2019-02-12 16:28 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2019-02-12 16:28 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\Macromed
2019-02-11 16:34 - 2013-11-30 18:10 - 000000000 ____D C:\Users\muriel11\Desktop\Incoming
2019-02-11 16:34 - 2013-11-12 17:09 - 000001133 _____ C:\Users\muriel11\Desktop\Cyberlink Power2Go.lnk
2019-02-11 16:27 - 2019-01-10 22:05 - 000000000 ____D C:\Users\muriel11\Desktop\Rosalía-el mal querer
2019-02-11 16:16 - 2016-05-08 19:26 - 000000000 ____D C:\Users\muriel11\Desktop\río escondido-1948
2019-02-09 16:12 - 2016-08-30 18:19 - 000000000 ____D C:\Users\muriel11\Desktop\Valurile Dunarii (Liviu Ciulei, 1959)rum
2019-02-08 14:55 - 2018-07-02 20:50 - 000000000 ____D C:\ProgramData\Packages
2019-02-07 22:15 - 2015-03-28 15:25 - 000000000 ___RD C:\Users\muriel11\Desktop\Cargas de cámara
2019-02-06 17:23 - 2016-08-13 20:58 - 000000000 ____D C:\Users\muriel11\Desktop\Deadlock (Roland Klick, 1970)
2019-02-02 23:53 - 2018-11-14 17:36 - 000835480 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2019-02-02 23:53 - 2018-11-14 17:36 - 000179600 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2019-01-29 20:28 - 2013-11-12 18:23 - 000000000 ____D C:\ProgramData\Mozilla

==================== Files in the root of some directories =======

2015-10-21 16:17 - 2015-10-21 16:17 - 000478720 _____ () C:\Users\muriel11\setup.exe
2014-07-17 15:03 - 2014-07-17 15:03 - 000003584 _____ () C:\Users\muriel11\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\dllhost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\dllhost.exe => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2018-06-11 17:42

==================== End of FRST.txt ============================

#8

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24.02.2019 02 Ran by muriel11 (25-02-2019 15:40:37) Running from C:\Users\muriel11\Downloads Windows 10 Home Version 1803 17134.407 (X64) (2018-06-11 17:15:24) Boot Mode: Normal ==========================================================

==================== Accounts: =============================

Administrador (S-1-5-21-2269503168-2857107802-113313676-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2269503168-2857107802-113313676-503 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2269503168-2857107802-113313676-1004 - Limited - Enabled)
Invitado (S-1-5-21-2269503168-2857107802-113313676-501 - Limited - Disabled)
muriel11 (S-1-5-21-2269503168-2857107802-113313676-1002 - Administrator - Enabled) => C:\Users\muriel11
UpdatusUser (S-1-5-21-2269503168-2857107802-113313676-1001 - Limited - Enabled) => C:\Users\UpdatusUser
WDAGUtilityAccount (S-1-5-21-2269503168-2857107802-113313676-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Panda Dome (Disabled - Up to date) {CF440CD9-5435-10B1-04E0-7768B6F10320}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Panda Dome (Disabled - Up to date) {7425ED3D-720F-1F3F-3E50-4C1ACD76499D}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Actualización de NVIDIA 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.142 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.23) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.23 - Adobe Systems Incorporated)
CCleaner (HKLM\...\CCleaner) (Version: 5.23 - Piriform)
ELAN Touchpad 11.15.0.18_X64 (HKLM\...\Elantech) (Version: 11.15.0.18 - ELAN Microelectronic Corp.)
eMule (HKLM-x32\...\eMule) (Version:  - )
Energy Management (HKLM-x32\...\{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 8.0.2.4 - Lenovo) Hidden
Energy Management (HKLM-x32\...\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 8.0.2.4 - Lenovo)
HP Dropbox Plugin (HKLM-x32\...\{D1C1B048-C9E8-4DF9-BAE8-45F2BA467426}) (Version: 36.0.31.53050 - Hewlett-Packard Co.)
HP ENVY 4520 series Software básico del dispositivo (HKLM\...\{1A67878A-0096-4AA9-A803-06FE96A329B4}) (Version: 36.0.72.54013 - Hewlett-Packard Co.)
HP Google Drive Plugin (HKLM-x32\...\{6651A86A-07EA-43E0-B4EC-4E1D809AC99E}) (Version: 36.0.31.53050 - Hewlett-Packard Co.)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.2932 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.6.0.1030 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.2.9200.10192 - Realtek Semiconductor Corp.)
Lenovo OneKey Recovery (HKLM\...\{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.0.0.1219 - CyberLink Corp.) Hidden
Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.0.0.1219 - CyberLink Corp.)
Lenovo YouCam (HKLM-x32\...\{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 4.1.3423 - CyberLink Corp.) Hidden
Lenovo YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 4.1.3423 - CyberLink Corp.)
Malwarebytes versión 3.7.1.2839 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.7.1.2839 - Malwarebytes)
MediaInfo 0.7.74 (HKLM\...\MediaInfo) (Version: 0.7.74 - MediaArea.net)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
MKVToolNix 6.5.0 (HKLM-x32\...\MKVToolNix) (Version: 6.5.0 - Moritz Bunkus)
Mozilla Firefox 65.0.1 (x64 es-AR) (HKLM\...\Mozilla Firefox 65.0.1 (x64 es-AR)) (Version: 65.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 57.0 - Mozilla)
NVIDIA Controlador de gráficos 376.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 376.54 - NVIDIA Corporation)
NVIDIA Software del sistema PhysX 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation)
Onekey Theater (HKLM-x32\...\{91CC5BAE-A098-40D3-A43B-C0DC7CE263FE}) (Version: 3.0.1.0 - Lenovo)
Panda Devices Agent (HKLM-x32\...\{3F9548B2-0B34-4453-A92E-35056B053F19}) (Version: 1.08.00 - Panda Security) Hidden
Panda Devices Agent (HKLM-x32\...\Panda Devices Agent) (Version: 1.03.08 - Panda Security) Hidden
Panda Dome (HKLM\...\{DC22166B-6F26-4E2E-BFDE-CC3578246940}) (Version: 9.14.00 - Panda Security) Hidden
Panda Dome (HKLM-x32\...\Panda Universal Agent Endpoint) (Version: 18.6.0 - Panda Security)
Panel de control de NVIDIA 376.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 376.54 - NVIDIA Corporation) Hidden
Paquete de controladores de Windows - Lenovo (ACPIVPC) System  (06/15/2012 8.1.0.1) (HKLM\...\71BC3FD63F450BA0A957AAECBDB4A000C4F2BE42) (Version: 06/15/2012 8.1.0.1 - Lenovo)
Paquete de controladores de Windows - Lenovo (WUDFRd) LenovoVhid  (06/19/2012 10.13.29.733) (HKLM\...\8A223E56FB1ED4F697B54E5BF96F1EB63B512684) (Version: 06/19/2012 10.13.29.733 - Lenovo)
Power2Go (HKLM-x32\...\{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 5.6.0.9109 - CyberLink Corp.)
qBittorrent 3.1.0 (HKLM-x32\...\qbittorrent) (Version: 3.1.0 - The qBittorrent project)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.210 - Qualcomm Atheros Communications)
Qualcomm Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.2.612.2012 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6798 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.8400.39029 - Realtek Semiconductor Corp.)
RemoteComms External Disk Access (HKLM-x32\...\{04FCD5DE-1662-4F99-BDA9-C57212113EF2}) (Version: 1.25.0003 - PLX Technology)
Revo Uninstaller 2.0.6 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.6 - VS Revo Group, Ltd.)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Subtitle Edit 3.2.8 (HKLM-x32\...\SubtitleEdit_is1) (Version: 3.2.8.1220 - Nikse)
SugarSync Manager (HKLM-x32\...\SugarSync) (Version: 1.9.61.90905 - SugarSync, Inc.)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{C99F4AFA-B32C-4063-865C-D7B5CC0A78FB}) (Version: 2.54.0.0 - Microsoft Corporation)
UpdateAssistant (HKLM\...\{E1D7CB46-BAE9-4D58-99C4-582332B1755A}) (Version: 1.13.0.0 - Microsoft Corporation) Hidden
VLC media player (HKLM\...\VLC media player) (Version: 3.0.3 - VideoLAN)
Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
Windows Setup Remediations (x64) (KB4023057) (HKLM\...\{5534e02f-0f5d-40dd-ba92-bea38d22384d}.sdb) (Version:  - )
WinRAR 4.01 beta 1 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.01.1 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation)
CustomCLSID: HKU\S-1-5-21-2269503168-2857107802-113313676-1002_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation)
ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc. -> SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc. -> SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc. -> SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc. -> SugarSync, Inc.)
ContextMenuHandlers1: [SugarSync] -> {305BC11B-5175-492B-B569-866547FCDA40} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc. -> SugarSync, Inc.)
ContextMenuHandlers1: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAShell.dll [2018-05-30] (Panda Security S.L. -> Panda Security, S.L.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2011-05-10] () [File not signed]
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2011-05-10] () [File not signed]
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-02-01] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> No File
ContextMenuHandlers4: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2011-05-10] () [File not signed]
ContextMenuHandlers4-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2011-05-10] () [File not signed]
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2016-05-03] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2016-12-29] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers5: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAShell.dll [2018-05-30] (Panda Security S.L. -> Panda Security, S.L.)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-02-01] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [SugarSync] -> {305BC11B-5175-492B-B569-866547FCDA40} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc. -> SugarSync, Inc.)
ContextMenuHandlers6: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAShell.dll [2018-05-30] (Panda Security S.L. -> Panda Security, S.L.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2011-05-10] () [File not signed]
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2011-05-10] () [File not signed]

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {211E2F3D-2A72-4A1A-8507-E25713ADFC84} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe (Lenovo -> Lenovo Group Ltd.)
Task: {2641BA28-5547-4460-A357-BF93AA11D6DC} - System32\Tasks\{EB965C6C-E3DA-4D94-B39C-D73F0EB053A1} => C:\Program Files (x86)\Panda Security\Panda Security Protection\JobLauncher.exe (Panda Security S.L. -> Panda Security, S.L.)
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe
Task: {448926E8-B521-4A5F-A4DE-E6C058115BD2} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => "%windir%\system32\sc.exe" START ImControllerService
Task: {45ECD13C-80D0-4854-9587-3D9CCAC3C4F2} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\68ad1ecb-5324-4acc-9051-ebb1f5ea86d9 => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (Lenovo -> Lenovo Group Ltd.)
Task: {4CF240ED-A276-4146-AD30-C03F6C1F9016} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\1b8e7f1b-3bf1-47bd-b167-f32c2adf97c7 => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (Lenovo -> Lenovo Group Ltd.)
Task: {58B62A1A-72FB-4A49-9A9B-33846E5D3AA4} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_142_Plugin.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {716D5080-13F9-49D8-A1F5-47DA3BEC4A10} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK
Task: {7E965514-BCD4-4E79-B99E-4C5B241BA7A9} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\d0ce21b4-047f-41ce-884f-b932debc3483 => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (Lenovo -> Lenovo Group Ltd.)
Task: {8B924CE2-3373-4404-ACC6-6356727D3A58} - System32\Tasks\{E345C531-A687-4BC2-A7BC-9B6003E3272A} => C:\Program Files (x86)\Panda Security\Panda Security Protection\JobLauncher.exe (Panda Security S.L. -> Panda Security, S.L.)
Task: {8EC53FD9-442C-4F17-9EA5-60A99BB815BD} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Task: {A0D30488-571A-424F-87EE-E404FC92FCEC} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler  /v start /t reg_dword /d 1 /f /reg:32
Task: {A866795C-21D4-4D34-B0C9-904F905A24D5} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\df9d4865-49b8-4abe-8fd5-19fc30a22faf => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (Lenovo -> Lenovo Group Ltd.)
Task: {C0AA4AD3-1BE2-4475-914E-804FB13BE645} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {E2A16761-4973-49B2-81C3-A3FA9E14D9BC} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe (Piriform Ltd -> Piriform Ltd)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\{E345C531-A687-4BC2-A7BC-9B6003E3272A}.job => C:\Program Files (x86)\Panda Security\Panda Security Protection\JobLauncher.exe
Task: C:\WINDOWS\Tasks\{EB965C6C-E3DA-4D94-B39C-D73F0EB053A1}.job => C:\Program Files (x86)\Panda Security\Panda Security Protection\JobLauncher.exe

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2012-09-29 18:18 - 2012-09-29 18:18 - 000323584 ____R (Atheros) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
2016-09-28 17:26 - 2016-09-28 17:26 - 000069632 _____ () [File not signed] C:\Program Files\CCleaner\lang\lang-1034.dll
2012-04-20 13:49 - 2012-04-20 13:49 - 001198080 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Intel\iCLS Client\libeay32.dll
2017-11-20 20:58 - 2019-02-01 09:56 - 000438272 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\Qt5WinExtras.dll
2017-11-20 20:58 - 2019-02-01 09:56 - 004571648 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\Qt5Widgets.dll
2017-11-20 20:58 - 2019-02-01 09:56 - 005139968 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\Qt5Gui.dll
2017-11-20 20:58 - 2019-02-01 09:56 - 002950144 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\Qt5Qml.dll
2017-11-20 20:58 - 2019-02-01 09:56 - 003084800 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\Qt5Quick.dll
2017-11-20 20:58 - 2019-02-01 09:55 - 005010944 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\Qt5Core.dll
2017-11-20 20:58 - 2019-02-01 09:56 - 002234880 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\Qt5Network.dll
2019-02-22 18:12 - 2019-02-01 09:56 - 001181184 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\platforms\qwindows.dll
2019-02-22 18:12 - 2019-02-01 09:56 - 000124928 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\styles\qwindowsvistastyle.dll
2019-02-22 18:12 - 2019-02-01 09:56 - 000026112 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\imageformats\qico.dll
2019-02-22 18:12 - 2019-02-01 09:56 - 000020992 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\imageformats\qsvg.dll
2017-11-20 20:58 - 2019-02-01 09:56 - 000259584 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\Qt5Svg.dll
2019-02-22 18:12 - 2019-02-01 09:56 - 000014848 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\QtQuick.2\qtquick2plugin.dll
2019-02-22 18:12 - 2019-02-01 09:56 - 000729088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\QtQuick\Controls\qtquickcontrolsplugin.dll
2019-02-22 18:12 - 2019-02-01 09:56 - 000073216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\QtQuick\Layouts\qquicklayoutsplugin.dll
2019-02-22 18:12 - 2019-02-01 09:56 - 000179712 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\QtQuick\Dialogs\dialogplugin.dll
2019-02-22 18:12 - 2019-02-01 09:56 - 000014848 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\QtQuick\Window.2\windowplugin.dll
2019-02-22 18:12 - 2019-02-01 09:56 - 000014848 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\QtQml\Models.2\modelsplugin.dll
2019-02-22 18:12 - 2019-02-01 09:56 - 000101888 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\QtQuick\PrivateWidgets\widgetsplugin.dll
2018-06-11 17:53 - 2018-06-11 17:53 - 001093120 _____ (Microsoft Corporation) [File not signed] C:\WINDOWS\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8f\MFC80U.DLL
2018-12-04 12:45 - 2018-08-12 21:29 - 001255424 _____ (Robert Simpson, et al.) [File not signed] C:\ProgramData\Lenovo\iMController\Plugins\GenericMessagingPlugin\x86\x86\SQLite.Interop.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NanoServiceMain => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PSUAService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NanoServiceMain => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PSUAService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 14:25 - 2018-11-19 23:19 - 000000027 _____ C:\WINDOWS\system32\drivers\etc\hosts

127.0.0.1       localhost

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path: C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x86;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x64;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150325268\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150325409\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-21-2269503168-2857107802-113313676-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150325612\Control Panel\Desktop\\Wallpaper -> 
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\muriel11\AppData\Roaming\Mozilla\Firefox\Fondo de escritorio.bmp
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\Control Panel\Desktop\\Wallpaper -> C:\Users\muriel11\AppData\Roaming\Mozilla\Firefox\Fondo de escritorio.bmp
DNS Servers: 87.216.1.65 - 87.216.1.66
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (No File)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{E5F019B1-BE5D-4654-A731-E0808AE64391}C:\program files\hp\hp envy 4520 series\bin\hpnetworkcommunicatorcom.exe] => (Allow) C:\program files\hp\hp envy 4520 series\bin\hpnetworkcommunicatorcom.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP)
FirewallRules: [UDP Query User{E27660AF-A3C2-4D7D-A316-DDFAD9A15CD0}C:\program files\hp\hp envy 4520 series\bin\hpnetworkcommunicatorcom.exe] => (Allow) C:\program files\hp\hp envy 4520 series\bin\hpnetworkcommunicatorcom.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP)
FirewallRules: [TCP Query User{C776FECA-5C95-469D-90BD-1E190E1296BF}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe (hxxp://www.emule-project.net) [File not signed]
FirewallRules: [UDP Query User{1DEA9CAA-8D5C-4DEC-A22C-D659B516F9B6}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe (hxxp://www.emule-project.net) [File not signed]
FirewallRules: [{09A9AAE9-F6CD-45F3-9F98-CEF1D0C228D6}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{30D7B759-E091-481E-BADD-F2778D5A961B}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{87778C9F-0C1B-4D3F-AFB5-BC3CB6124919}C:\program files (x86)\qbittorrent\qbittorrent.exe] => (Allow) C:\program files (x86)\qbittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [UDP Query User{A5AF8879-24F2-44FF-85EE-292C7BFDE847}C:\program files (x86)\qbittorrent\qbittorrent.exe] => (Allow) C:\program files (x86)\qbittorrent\qbittorrent.exe () [File not signed]

==================== Restore Points =========================

23-02-2019 14:01:46 Windows Update
24-02-2019 09:17:02 Quitado OpenOffice 4.1.2
24-02-2019 14:43:03 Instalado OpenOffice 4.1.6
24-02-2019 14:54:56 Quitado OpenOffice 4.1.6
24-02-2019 15:03:52 Instalado OpenOffice 4.1.6

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (02/25/2019 03:34:09 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Error del Servicio de instantáneas de volumen: error inesperado al llamar a la rutina QueryFullProcessImageNameW. HR = 0x80070006, Controlador no válido.
.


Operación:
   Ejecutando operación asincrónica

Contexto:
   Estado actual: DoSnapshotSet

Error: (02/24/2019 02:55:18 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Error del Servicio de instantáneas de volumen: error inesperado al llamar a la rutina QueryFullProcessImageNameW. HR = 0x80070006, Controlador no válido.
.


Operación:
   Ejecutando operación asincrónica

Contexto:
   Estado actual: DoSnapshotSet

Error: (02/24/2019 02:54:09 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Error del Servicio de instantáneas de volumen: error inesperado al llamar a la rutina QueryFullProcessImageNameW. HR = 0x80070006, Controlador no válido.
.


Operación:
   Ejecutando operación asincrónica

Contexto:
   Estado actual: DoSnapshotSet

Error: (02/24/2019 02:35:58 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Error del Servicio de instantáneas de volumen: error inesperado al llamar a la rutina QueryFullProcessImageNameW. HR = 0x80070006, Controlador no válido.
.


Operación:
   Ejecutando operación asincrónica

Contexto:
   Estado actual: DoSnapshotSet

Error: (02/24/2019 02:34:34 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Error del Servicio de instantáneas de volumen: error inesperado al consultar la interfaz IVssWriterCallback. HR = 0x80070005, Acceso denegado.
.
A menudo ocurre por una configuración de seguridad incorrecta en el proceso de escritura o de solicitud.


Operación:
   Recopilando datos del escritor

Contexto:
   Id. de clase del escritor: {e8132975-6f93-4464-a53e-1050253ae220}
   Nombre del escritor: System Writer
   Id. de instancia del escritor: {2e600812-11c8-4973-8e39-0f5a54c0e342}

Error: (02/24/2019 09:14:11 AM) (Source: ESENT) (EventID: 455) (User: )
Description: CCleaner64 (11288,R,98) testing: Error -1032 (0xfffffbf8) al abrir un archivo de registro C:\Users\muriel11\AppData\Local\Microsoft\Windows\WebCache\V01.log.

Error: (02/24/2019 09:14:11 AM) (Source: ESENT) (EventID: 490) (User: )
Description: CCleaner64 (11288,R,98) testing: Al intentar abrir el archivo "C:\Users\muriel11\AppData\Local\Microsoft\Windows\WebCache\V01.log" para acceso de lectura y escritura se produjo el error de sistema 32 (0x00000020): "El proceso no tiene acceso al archivo porque está siendo utilizado por otro proceso. ". La operación para abrir el archivo se cerrará con el error -1032 (0xfffffbf8).

Error: (02/03/2019 12:29:03 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: qbittorrent.exe, versión: 3.1.0.0, marca de tiempo: 0x525a70e6
Nombre del módulo con errores: qbittorrent.exe, versión: 3.1.0.0, marca de tiempo: 0x525a70e6
Código de excepción: 0xc0000005
Desplazamiento de errores: 0x004b2d86
Identificador del proceso con errores: 0x236c
Hora de inicio de la aplicación con errores: 0x01d4bb3bb5a1c550
Ruta de acceso de la aplicación con errores: C:\Program Files (x86)\qBittorrent\qbittorrent.exe
Ruta de acceso del módulo con errores: C:\Program Files (x86)\qBittorrent\qbittorrent.exe
Identificador del informe: 1c738f79-7157-472a-98b7-bc391f62d659
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:


System errors:
=============
Error: (02/25/2019 03:33:39 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: El servicio WerSvc se cerró con el siguiente error: 
No se puede encontrar el módulo especificado.

Error: (02/25/2019 03:33:39 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: El servicio WerSvc se cerró con el siguiente error: 
No se puede encontrar el módulo especificado.

Error: (02/25/2019 03:33:24 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: El servicio WerSvc se cerró con el siguiente error: 
No se puede encontrar el módulo especificado.

Error: (02/25/2019 03:33:24 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: El servicio WerSvc se cerró con el siguiente error: 
No se puede encontrar el módulo especificado.

Error: (02/25/2019 03:31:33 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: El servicio WerSvc se cerró con el siguiente error: 
No se puede encontrar el módulo especificado.

Error: (02/25/2019 03:31:33 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: El servicio WerSvc se cerró con el siguiente error: 
No se puede encontrar el módulo especificado.

Error: (02/25/2019 03:31:18 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: El servicio WerSvc se cerró con el siguiente error: 
No se puede encontrar el módulo especificado.

Error: (02/25/2019 03:31:18 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: El servicio WerSvc se cerró con el siguiente error: 
No se puede encontrar el módulo especificado.


CodeIntegrity:
===================================

Date: 2018-10-13 00:09:56.304
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume5\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-10-13 00:09:55.321
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume5\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-10-12 09:14:30.155
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume5\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-10-12 09:14:29.843
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume5\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-10-11 20:00:36.643
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume5\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-10-11 20:00:36.643
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume5\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-10-11 08:31:32.143
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume5\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-10-11 08:31:30.107
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume5\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz
Percentage of memory in use: 46%
Total physical RAM: 8047.52 MB
Available physical RAM: 4274.2 MB
Total Virtual: 9327.52 MB
Available Virtual: 5584.19 MB

==================== Drives ================================

Drive c: (Windows8_OS) (Fixed) (Total:883.41 GB) (Free:613.59 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:22.54 GB) NTFS

\\?\Volume{453e8671-94c1-4647-aaf7-a19de07f24d4}\ (WINRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.63 GB) NTFS
\\?\Volume{37fdce83-2ad0-4b76-a178-6f0a2fb12de2}\ () (Fixed) (Total:0.77 GB) (Free:0.76 GB) NTFS
\\?\Volume{0283a48a-c06c-4384-87e5-685fd5665466}\ (PBR_DRV) (Fixed) (Total:20 GB) (Free:10.73 GB) NTFS
\\?\Volume{5b50a8eb-be91-44ff-b43a-2de2f610138b}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 37AFB0ED)

Partition: GPT.

==================== End of Addition.txt ============================

#9

Primeramente corta y pega, FRST.exe en el Escritorio, pues se indicaba claramente que habia que ejecutarlo desde esa ubicacion y no desde una carpeta


Bien… y ahora sigue estos pasos, MUY Importante ~ Realiza una copia de seguridad del registro :

  • Para hacerlo descarga Delfix en tu escritorio.

  • Doble clic para ejecutarlo.(Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona "Ejecutar como Administrador.")

  • Atención, ahora marca/selecciona únicamente la casilla "Create registry backup", las demás NO

  • Pulsar en Run.

Se abrirá el informe (DelFix.txt), guárdalo por si fuera necesario y cierra la herramienta.


En el equipo con los demas programas cerrados:

Inicio >>> Ejecutar >>>Escribes notepad.exe.

Ahora copia y pega estos archivos dentro del Notepad:


Start
CreateRestorePoint:
CloseProcesses:

HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\Run: [HP ENVY 4520 series (NET)] => C:\Program Files\HP\HP ENVY 4520 series\Bin\ScanToPCActivationApp.exe [3651080 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #4] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #5] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #6] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #7] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #8] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #9] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #10] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #11] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #12] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #13] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #14] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #15] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #17] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\Run: [HP ENVY 4520 series (NET)] => C:\Program Files\HP\HP ENVY 4520 series\Bin\ScanToPCActivationApp.exe [3651080 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #4] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #5] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #6] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #7] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #8] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #9] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #10] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #11] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #12] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #13] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #14] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #15] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #17] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
SearchScopes HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2269503168-2857107802-113313676-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150325612 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
CHR HKLM\...\Chrome\Extension: [fagakgcelolinfnkfgekcnedpaklfcok] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [ipmkfpcnmccejididiaagpgchgjfajgp] - hxxps://clients2.google.com/service/update2/crx
S3 WerSvc; %SystemRoot%\System32\WerSvc.dll [X]
2015-10-21 16:17 - 2015-10-21 16:17 - 000478720 _____ () C:\Users\muriel11\setup.exe
2014-07-17 15:03 - 2014-07-17 15:03 - 000003584 _____ () C:\Users\muriel11\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> No File
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> No File



HOSTS:
REMOVEPROXY:
EMPTYTEMP:
CMD: netsh winsock reset
CMD: ipconfig /renew
CMD: ipconfig /flushdns
CMD: bitsadmin /reset /allusers
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
END

Lo guardas bajo el nombre de fixlist.txt en el escritorio <<< Esto es muy importante.<<

Nota: Es importante que la Hta Frst.exe y fixlist.txt se encuentren en la misma ubicación (escritorio) o si no no trabajara.

  • Y ahora usa esta Faq de Windows ¿Cómo iniciar Windows en Modo Seguro (Aplicable a Windows 10)?, para trabajar desde ese modo de windows. (Usa el Metodo 1 y si no puedes, usa el Metodo 2)

  • Ejecutas Frst.exe.

  • Presionas el botón Fix y aguardas a que termine.

  • La Herramienta guardara el reporte en tu escritorio (Fixlog.txt).

Lo pegas en tu próxima respuesta, comentado como va el problema


#10
Fix result of Farbar Recovery Scan Tool (x64) Version: 24.02.2019 02
Ran by muriel11 (25-02-2019 21:21:34) Run:1
Running from C:\Users\muriel11\Desktop
Loaded Profiles: muriel11 (Available Profiles: UpdatusUser & muriel11)
Boot Mode: Safe Mode (with Networking)
==============================================

fixlist content:
*****************
:
CloseProcesses:

HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\Run: [HP ENVY 4520 series (NET)] => C:\Program Files\HP\HP ENVY 4520 series\Bin\ScanToPCActivationApp.exe [3651080 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #4] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #5] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #6] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #7] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #8] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #9] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #10] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #11] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #12] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #13] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #14] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #15] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #17] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\Run: [HP ENVY 4520 series (NET)] => C:\Program Files\HP\HP ENVY 4520 series\Bin\ScanToPCActivationApp.exe [3651080 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #4] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #5] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #6] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #7] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #8] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #9] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #10] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #11] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #12] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #13] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #14] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #15] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #17] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
SearchScopes HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2269503168-2857107802-113313676-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150325612 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
CHR HKLM\...\Chrome\Extension: [fagakgcelolinfnkfgekcnedpaklfcok] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [ipmkfpcnmccejididiaagpgchgjfajgp] - hxxps://clients2.google.com/service/update2/crx
S3 WerSvc; %SystemRoot%\System32\WerSvc.dll [X]
2015-10-21 16:17 - 2015-10-21 16:17 - 000478720 _____ () C:\Users\muriel11\setup.exe
2014-07-17 15:03 - 2014-07-17 15:03 - 000003584 _____ () C:\Users\muriel11\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> No File
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> No File



HOSTS:
REMOVEPROXY:

Este último reporter me ha dado bastanates problemas ya que me daba error . No sé… al final ha salido esto. :disappointed_relieved::roll_eyes:


#11

Este último log…esta entero???


#14
Fix result of Farbar Recovery Scan Tool (x64) Version: 25.02.2019 01
Ran by muriel11 (26-02-2019 16:05:55) Run:2
Running from C:\Users\muriel11\Desktop
Loaded Profiles: muriel11 (Available Profiles: UpdatusUser & muriel11)
Boot Mode: Safe Mode (with Networking)
==============================================

fixlist content:
*****************
Start
CreateRestorePoint:
CloseProcesses:

HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\Run: [HP ENVY 4520 series (NET)] => C:\Program Files\HP\HP ENVY 4520 series\Bin\ScanToPCActivationApp.exe [3651080 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #4] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #5] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #6] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #7] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #8] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #9] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #10] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #11] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #12] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #13] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #14] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #15] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002\...\RunOnce: [Application Restart #17] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\Run: [HP ENVY 4520 series (NET)] => C:\Program Files\HP\HP ENVY 4520 series\Bin\ScanToPCActivationApp.exe [3651080 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #4] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #5] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #6] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #7] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #8] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #9] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #10] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #11] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #12] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #13] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #14] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #15] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #17] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
SearchScopes HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2269503168-2857107802-113313676-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150325612 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
CHR HKLM\...\Chrome\Extension: [fagakgcelolinfnkfgekcnedpaklfcok] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [ipmkfpcnmccejididiaagpgchgjfajgp] - hxxps://clients2.google.com/service/update2/crx
S3 WerSvc; %SystemRoot%\System32\WerSvc.dll [X]
2015-10-21 16:17 - 2015-10-21 16:17 - 000478720 _____ () C:\Users\muriel11\setup.exe
2014-07-17 15:03 - 2014-07-17 15:03 - 000003584 _____ () C:\Users\muriel11\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> No File
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> No File



HOSTS:
REMOVEPROXY:
EMPTYTEMP:
CMD: netsh winsock reset
CMD: ipconfig /renew
CMD: ipconfig /flushdns
CMD: bitsadmin /reset /allusers
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
END
*****************

Error: Restore point can only be created in normal mode.
Processes closed successfully.
"HKU\S-1-5-21-2269503168-2857107802-113313676-1002\Software\Microsoft\Windows\CurrentVersion\Run\\HP ENVY 4520 series (NET)" => not found
"HKU\S-1-5-21-2269503168-2857107802-113313676-1002\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Application Restart #4" => not found
"HKU\S-1-5-21-2269503168-2857107802-113313676-1002\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Application Restart #5" => not found
"HKU\S-1-5-21-2269503168-2857107802-113313676-1002\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Application Restart #6" => not found
"HKU\S-1-5-21-2269503168-2857107802-113313676-1002\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Application Restart #7" => not found
"HKU\S-1-5-21-2269503168-2857107802-113313676-1002\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Application Restart #8" => not found
"HKU\S-1-5-21-2269503168-2857107802-113313676-1002\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Application Restart #9" => not found
"HKU\S-1-5-21-2269503168-2857107802-113313676-1002\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Application Restart #10" => not found
"HKU\S-1-5-21-2269503168-2857107802-113313676-1002\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Application Restart #11" => not found
"HKU\S-1-5-21-2269503168-2857107802-113313676-1002\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Application Restart #12" => not found
"HKU\S-1-5-21-2269503168-2857107802-113313676-1002\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Application Restart #13" => not found
"HKU\S-1-5-21-2269503168-2857107802-113313676-1002\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Application Restart #14" => not found
"HKU\S-1-5-21-2269503168-2857107802-113313676-1002\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Application Restart #15" => not found
"HKU\S-1-5-21-2269503168-2857107802-113313676-1002\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Application Restart #17" => not found
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\Run: [HP ENVY 4520 series (NET)] => C:\Program Files\HP\HP ENVY 4520 series\Bin\ScanToPCActivationApp.exe [3651080 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP) => Error: No automatic fix found for this entry.
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #4] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP) => Error: No automatic fix found for this entry.
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #5] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP) => Error: No automatic fix found for this entry.
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #6] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP) => Error: No automatic fix found for this entry.
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #7] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP) => Error: No automatic fix found for this entry.
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #8] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP) => Error: No automatic fix found for this entry.
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #9] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP) => Error: No automatic fix found for this entry.
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #10] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP) => Error: No automatic fix found for this entry.
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #11] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP) => Error: No automatic fix found for this entry.
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #12] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP) => Error: No automatic fix found for this entry.
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #13] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP) => Error: No automatic fix found for this entry.
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #14] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP) => Error: No automatic fix found for this entry.
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #15] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP) => Error: No automatic fix found for this entry.
HKU\S-1-5-21-2269503168-2857107802-113313676-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150326128\...\RunOnce: [Application Restart #17] => C:\Program Files\HP\HP ENVY 4520 series\Bin\OneClick.exe [7383048 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP) => Error: No automatic fix found for this entry.
SearchScopes HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = => Error: No automatic fix found for this entry.
SearchScopes: HKU\S-1-5-21-2269503168-2857107802-113313676-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-02252019150325612 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = => Error: No automatic fix found for this entry.
HKLM\SOFTWARE\Google\Chrome\Extensions\fagakgcelolinfnkfgekcnedpaklfcok => not found
HKLM\SOFTWARE\Google\Chrome\Extensions\flliilndjeohchalpbbcdekjklbdgfkk => not found
HKLM\SOFTWARE\Google\Chrome\Extensions\ipmkfpcnmccejididiaagpgchgjfajgp => not found
WerSvc => service not found.
"C:\Users\muriel11\setup.exe" => not found
"C:\Users\muriel11\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini" => not found
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ FileSyncEx => not found
HKLM\Software\Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => not found
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\ FileSyncEx => not found
HKLM\Software\Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => not found
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

========= RemoveProxy: =========

"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
"HKU\S-1-5-21-2269503168-2857107802-113313676-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
"HKU\S-1-5-21-2269503168-2857107802-113313676-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully


========= End of RemoveProxy: =========


========= netsh winsock reset =========


El cat logo Winsock se restableci¢ correctamente.
Debe reiniciar el equipo para completar el restablecimiento.


========= End of CMD: =========


========= ipconfig /renew =========


Configuraci¢n IP de Windows

No se puede realizar ninguna operaci¢n en Ethernet mientras los medios
est‚n desconectados.
No se puede realizar ninguna operaci¢n en Wi-Fi mientras los medios
est‚n desconectados.
No se puede realizar ninguna operaci¢n en Conexi¢n de  rea local* 5 mientras los medios
est‚n desconectados.
No se puede realizar ninguna operaci¢n en Conexi¢n de  rea local* 6 mientras los medios
est‚n desconectados.
No se puede realizar ninguna operaci¢n en Ethernet 2 mientras los medios
est‚n desconectados.

========= End of CMD: =========


========= ipconfig /flushdns =========


Configuraci¢n IP de Windows

Se vaci¢ correctamente la cach‚ de resoluci¢n de DNS.

========= End of CMD: =========


========= bitsadmin /reset /allusers =========


BITSADMIN version 3.0
BITS administration utility.
(C) Copyright Microsoft Corp.

Unable to connect to BITS - 0x8007043c
El servicio no puede iniciarse en modo a prueba de errores



========= End of CMD: =========


========= netsh advfirewall reset =========

Aceptar


========= End of CMD: =========


========= netsh advfirewall set allprofiles state ON =========

Aceptar


========= End of CMD: =========


========= netsh int ipv4 reset =========

Reenv¡o de compartimiento se restableci¢ correctamente.
Compartimiento se restableci¢ correctamente.
Protocolo de control se restableci¢ correctamente.
Solicitud de secuencia eco se restableci¢ correctamente.
Global se restableci¢ correctamente.
Interfaz se restableci¢ correctamente.
Direcci¢n de difusi¢n por proximidad (a se restableci¢ correctamente.
Direcciones de multidifusi¢n se restableci¢ correctamente.
Direcci¢n de unidifusi¢n se restableci¢ correctamente.
Vecino se restableci¢ correctamente.
Ruta de acceso se restableci¢ correctamente.
Posible se restableci¢ correctamente.
Directiva de prefijo se restableci¢ correctamente.
Vecino de proxy se restableci¢ correctamente.
Ruta se restableci¢ correctamente.
Prefijo de sitio se restableci¢ correctamente.
Subinterfaz se restableci¢ correctamente.
Patr¢n de reactivaci¢n se restableci¢ correctamente.
Resolver vecino se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Error al restablecer .
Acceso denegado.

 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.


========= End of CMD: =========


========= netsh int ipv6 reset =========

Reenv¡o de compartimiento se restableci¢ correctamente.
Compartimiento se restableci¢ correctamente.
Protocolo de control se restableci¢ correctamente.
Solicitud de secuencia eco se restableci¢ correctamente.
Global se restableci¢ correctamente.
Interfaz se restableci¢ correctamente.
Direcci¢n de difusi¢n por proximidad (a se restableci¢ correctamente.
Direcciones de multidifusi¢n se restableci¢ correctamente.
Direcci¢n de unidifusi¢n se restableci¢ correctamente.
Vecino se restableci¢ correctamente.
Ruta de acceso se restableci¢ correctamente.
Posible se restableci¢ correctamente.
Directiva de prefijo se restableci¢ correctamente.
Vecino de proxy se restableci¢ correctamente.
Ruta se restableci¢ correctamente.
Prefijo de sitio se restableci¢ correctamente.
Subinterfaz se restableci¢ correctamente.
Patr¢n de reactivaci¢n se restableci¢ correctamente.
Resolver vecino se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Error al restablecer .
Acceso denegado.

 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.


========= End of CMD: =========


=========== EmptyTemp: ==========

BITS transfer queue => 8675328 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 14785484 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 111745 B
Edge => 11264 B
Chrome => 0 B
Firefox => 303932042 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 10994 B
LocalService => 0 B
NetworkService => 0 B
NetworkService => 0 B
UpdatusUser => 0 B
muriel11 => 437574 B

RecycleBin => 54787308 B
EmptyTemp: => 365 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 16:06:56 ====

#15

Intenta reinstalar Office


#16

Desactiva la proteccion de Panda antes de instalar


#17

Ya lo he instalado de nuevo, ahora parece que se abre bien.

Pero por que te decía en el post anterior, el fixlist.txt desaparecía del escritorio cuando estaba ejecutand frst.exe en modo seguro.???

Ahora me tienes que decir como borro todas estas herramienta que he utilizado. Gracias.


#18

El Fixlist se elimina cuando se ejecuta el script, es normal

Para eliminar las herramientas usadas en la desinfección, realizas:

  • Descargas y Ejecutas >> Delfix, en tu escritorio.

  • Doble clic para ejecutarlo.(Si usas Windows Vista/7 /8 /10,presiona clic derecho y selecciona >>;Ejecutar como Administrador.)

  • Marca solamente la casilla Remove disinfection tools

  • Pulsar en Run.

Se abrirá el informe (DelFix.txt), guárdalo por si fuera necesario y cierra la herramienta.

Si queda alguna herramienta, la desinstalas desde panel de Windows y aquellas que no estén listadas, se eliminan directamente.


Me alegro de haberte podido ayudar! :+1:


TEMA SOLUCIONADO


cerrado #19