Ordenador demora al cargar las paginas

buenas tardes tengo un ordenador asus y demora muy cho al cargar las paginas y cada vez va mas lento. he hecho los pasos para la desinfeccion pero no me deja pasar el scan online. ojala puedan ayudarme

Hola @TBTMCV.

A que scan online te refieres… al de ESET Online…??

Que problemas tienes con él. :thinking:

Pon el resto de informes de las herramientas que hayas usado.

Saludos.

Hola y gracias por responder tan pronto. el malwarebytes salio bien sin detecciones. el scan de eset es el que la pagina se queda en blanco y no me deja ejecutarlo a pesar de poner los datos personales como lo pide. el ccleanner lo paso a diario y elimina todo lo que encuentra. tengo instalado el antivirus eset nod32 y envia contantes mensajes de una pagina que se llama pawotapu.com que quiere ejecutarse. este es el informe de iexplorer-

Rkill 2.9.1 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2020 BleepingComputer.com
More Information about Rkill can be found at this link:
 http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 01/09/2020 05:15:51 PM in x64 mode.
Windows Version: Windows 8.1 

Checking for Windows services to stop:

 * No malware services found to stop.

Checking for processes to terminate:

 * No malware processes found to kill.

Checking Registry for malware related settings:

 * No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

 * Windows Defender Disabled

   [HKLM\SOFTWARE\Microsoft\Windows Defender]
   "DisableAntiSpyware" = dword:00000001
 * No malware processes found to kill.

Checking Registry for malware related settings:

 * No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

 * Windows Defender Disabled

   [HKLM\SOFTWARE\Microsoft\Windows Defender]
   "DisableAntiSpyware" = dword:00000001

Searching for Missing Digital Signatures: 

 * No issues found.

Checking HOSTS File: 

 * No issues found.

Program finished at: 01/09/2020 05:22:11 PM
Execution time: 0 hours(s), 6 minute(s), and 19 seconds(s)

un saludo

Entendido y ahora para seguir revisando tu máquina realiza estos pasos, en el orden indicado y leyendo todo lo explicado. :+1:

:one: Desactiva temporalmente el Antivirus :arrow_forward: Cómo deshabilitar temporalmente su Antivirus, mientras estemos realizando TODOS los pasos.

Vamos a descargar en TU ESCRITORIO(y NO en otro lugar :face_with_monocle:) todas las herramientas que vamos a utilizar en este procedimiento (pero no las ejecutes todavía) :


:two: Ejecutas las herramientas de una en una y en el orden indicado :



CCleaner.-

  • Instalas y Ejecutas CCleaner siguiendo los pasos indicados en el manual.

  • Úsalo primero en su opción de Limpiador para borrar cookies, temporales de Internet y todos los archivos que te muestre como obsoletos.

  • Después usa su opción de Registro para limpiar todo el registro de Windows(haciendo copia de seguridad).

AdwCleaner.-

  • Ejecuta Adwcleaner.exe.

  • Pulsamos en el botón Analizar ahora, y espera a que se realice el proceso, inmediatamente pulsa siempre sobre el botón Iniciar Reparación.

  • Espera a que se complete y sigue las instrucciones, si te pidiera Reiniciar el sistema Aceptas.

  • El log/informe lo encontramos en la pestaña “Informes”, volviendo a abrir el programa si fuese necesario, para poder copiarlo y pegarlo en tu próxima respuesta.

  • El informe también se puede encontrar en C:\AdwCleaner\Logs\AdwCleaner[C00].txt

Junkware Removal Tool.-

  • Ejecuta JRT.exe.

  • Y pulsar cualquier tecla para continuar, esperar pacientemente a que termine el proceso.

  • Si en algún momento te pide Reiniciar hazlo.

  • Al finalizar, un registro/informe (JRT.txt) se guardara en el escritorio y se abrirá automáticamente.

  • Copia y pega el contenido de JRT.txt en tu próxima respuesta.

Farbar Recovery Scan Tool.-

  • Ejecuta FRST.exe.

  • En el mensaje de la ventana del Disclaimer/Responsabilidad, pulsamos Sí/Yes

  • En la ventana principal pulsamos en el botón Analizar/Scan y esperamos a que concluya el proceso.

  • Se abrirán dos(2) archivos(Logs), Frst.txt y Addition.txt, estos quedaran grabados en el escritorio.

:three: Poner los informes en tu próxima respuesta de :

  • AdwCleaner, JRT, FRST + Addition.txt, y en ese orden. :+1:

Debes copiarlos y pegarlos con todo su contenido y usaras varios mensajes si recibes un mensaje de error indicando que es muy largo(más de 64.000 caracteres aprox.).

Y nos cuentas como funciona tu equipo en relación al problema planteado. :face_with_monocle:

Saludos Javier.


# -------------------------------
# Malwarebytes AdwCleaner 8.0.1.0
# -------------------------------
# Build:    12-17-2019
# Database: 2019-12-17.1 (Local)
# Support:  https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start:    01-09-2020
# Duration: 00:00:06
# OS:       Windows 8.1
# Cleaned:  2
# Failed:   0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|ProductUpdater
Deleted       HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Run|ProductUpdater

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [5298 octets] - [09/01/2020 18:11:13]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.4 (07.09.2017)
Operating System: Windows 8.1 x64 
Ran by BUHO (Administrator) on 09/01/2020 at 18:16:18,28
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 1 

Successfully deleted: C:\ProgramData\mntemp (File) 



Registry: 0 





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 09/01/2020 at 18:18:08,86
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 08-01-2020
Ejecutado por BUHO (administrador) sobre BUHO (ASUSTeK COMPUTER INC. K5130) (09-01-2020 18:22:57)
Ejecutado desde C:\Users\BUHO\Desktop
Perfiles cargados: BUHO (Perfiles disponibles: BUHO)
Platform: Windows 8.1 (Update) (X64) Idioma: Español (España, internacional)
Navegador predeterminado: Chrome
Modo de Inicio: Normal
Tutorial para Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Procesos (Lista blanca) =================

(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)

() [Archivo no firmado] C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe
(ASUSTeK Computer Inc.) [Archivo no firmado] C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.08\AsusFanControlService.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
(bookingDesktopApp.) [Archivo no firmado] C:\Program Files (x86)\bookingDesktopApp\Update\bookingDesktopAppUpdate.exe
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Intel® Upgrade Service -> Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(INTERNET PROJECT LLC -> Ellora Assets Corp.) C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe
(MAGIX AG) [Archivo no firmado] C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe
(SUPERAntiSpyware.com -> SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE

==================== Registro (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6842000 2012-09-24] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Smart Security\ecmdS.exe [183088 2019-12-05] (ESET, spol. s r.o. -> ESET)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [302904 2019-10-25] (Apple Inc. -> Apple Inc.)
HKLM-x32\...\Run: [ASUSWebStorage] => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe [3576784 2012-12-19] (ASUS Cloud Corporation -> ASUS Cloud Corporation)
HKLM-x32\...\Run: [ASUS AiChargerPlus Execute] => C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [550272 2012-08-20] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3187360 2013-10-29] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) [Archivo no firmado]
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240 2012-09-02] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [91432 2012-03-29] (CyberLink -> CyberLink Corp.)
HKLM-x32\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-04-23] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [ISUSScheduler] => C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe [69632 2004-04-13] (InstallShield Software Corporation) [Archivo no firmado]
HKLM-x32\...\Run: [UpdatePDRShortCut] => C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe [222504 2008-01-04] (CyberLink -> CyberLink Corp.)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2087264 2014-09-11] (Wondershare software CO., LIMITED -> Wondershare)
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\Run: [] => C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844144 2013-04-23] (Samsung Electronics CO., LTD. -> Samsung)
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\Run: [ISUSPM Startup] => C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [196608 2004-04-17] (InstallShield Software Corporation) [Archivo no firmado]
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2019-10-25] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [67896 2019-10-25] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [9198000 2019-12-17] (Support.com Inc -> SUPERAntiSpyware)
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [371304 2019-09-28] (AVB Disc Soft, SIA -> Disc Soft Ltd)
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-10-16] (Piriform Software Ltd -> Piriform Ltd)
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [110392 2019-10-25] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\Run: [iCloudPhotos] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe [356664 2019-10-25] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\Run: [Chromium] => "c:\users\buho\appdata\local\chromium\application\chrome.exe" --auto-launch-at-startup --profile-directory="Default" --restore-last-session
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\Policies\Explorer: [NoDrives] 33554432
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\Policies\Explorer: [NoViewOnDrive] 33554432
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\MountPoints2: G - "G:\Setup.exe" 
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\MountPoints2: {e3324b76-99aa-11e9-bfed-d850e6c3792f} - "F:\HiSuiteDownLoader.exe" 
HKU\S-1-5-18\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-10-16] (Piriform Software Ltd -> Piriform Ltd)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\79.0.3945.88\Installer\chrmstp.exe [2019-12-17] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2019-05-03] (Adobe Inc. -> Adobe Systems, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk [2014-03-24]
ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) [Archivo no firmado]
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN

==================== Tareas programadas (Lista blanca) ============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

Task: {0DC0DAD2-F84F-429D-B085-411AE7CDE2D5} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4f47-879B-29A80C355D61}
Task: {16764A7F-7C9C-4309-A47E-DDCB1ECE69F3} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [112984 2019-12-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {1DA0B85D-589C-4273-AC09-6DA3F9619FFF} - System32\Tasks\AsusVibeSchedule => C:\Program Files (x86)\Asus\AsusVibe\AsusVibeLauncher.exe [1957040 2012-09-27] (ASUSTeK Computer Inc. -> ) [Archivo no firmado]
Task: {287EB61E-849D-44F1-BF41-56B2A8081F95} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDfE067B1}
Task: {295BADFB-2801-4065-89F0-19011AE46FF5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems)
Task: {2AE5268A-B2AD-490C-98C7-C483ACD31AFA} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.)
Task: {2B348B88-EF56-4FE1-B29F-17A6CC3E8F2E} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {2BE6F602-3372-4B41-B94C-CDEFDDDE692F} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1373592 2019-12-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {2ED8771A-D959-4A8D-A7C2-404A8CE5C0E6} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe
Task: {34D6ECEE-4971-41CB-8A82-9CB2FA330EA3} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24671608 2019-12-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {44F911DA-3CD9-4E9E-9D3F-ABA1B724CD5D} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1873288 2019-12-02] (AVAST Software s.r.o. -> AVAST Software)
Task: {699E82F3-B3AB-475E-9147-00DA19591E48} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1373592 2019-12-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {749A6921-21E5-4BC8-9C71-83313D396A48} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-12-10] (Adobe Inc. -> Adobe)
Task: {7B857988-3067-4E13-8891-998F430972F7} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {7FB2C53F-C259-462C-BBDD-005F22DBC3A3} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_303_Plugin.exe [1457720 2019-12-10] (Adobe Inc. -> Adobe)
Task: {822A9779-99FA-49C6-8425-5E3F0AF9E4C7} - System32\Tasks\ASUS\ASUS AI Suite II Execute => C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe [2935424 2012-03-13] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {8BA025A7-2ED8-47C8-8E26-D28E17379455} - System32\Tasks\ASUS\ASUS Easy Update => C:\Program Files (x86)\ASUS\ASUS Easy Update\ALU.exe [196992 2012-11-20] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {8E42716A-F643-46DF-88F9-23B2F490B8A3} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24671608 2019-12-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {9768ABD2-EB67-498E-A669-15A536AF817A} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {98517D57-CD81-491E-9502-4413367F614D} - System32\Tasks\GoogleUpdateTaskMachineUA1cf8e3b265920f6 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-31] (Google Inc -> Google Inc.)
Task: {99108A9D-1A40-42A7-9644-EFE336798A72} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-16] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {AA9B6C42-17D6-4662-A1A9-04098E285D33} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_303_pepper.exe [1453112 2019-12-10] (Adobe Inc. -> Adobe)
Task: {B570300C-51E8-4E53-A206-5979072C741F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-31] (Google Inc -> Google Inc.)
Task: {BAF7605B-5AA6-4928-AE18-9185B0B7F4C7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-16] (Piriform Software Ltd -> Piriform Ltd)
Task: {BE5E43F1-1408-4445-8809-430A27D7ABB1} - System32\Tasks\bookingDesktopAppUpdateTaskMachineCore => C:\Program Files (x86)\bookingDesktopApp\Update\bookingDesktopAppUpdate.exe [102400 2020-01-04] (bookingDesktopApp.) [Archivo no firmado]
Task: {C415FE0E-DDCB-44E0-A459-B9164B72424B} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43da-BFD7-FBEEA2180A1E}
Task: {E1FB75CF-BDDC-41F1-84B8-1BCBC9755DF5} - System32\Tasks\bookingDesktopAppUpdateTaskMachineUA => C:\Program Files (x86)\bookingDesktopApp\Update\bookingDesktopAppUpdate.exe [102400 2020-01-04] (bookingDesktopApp.) [Archivo no firmado]
Task: {E93AEE86-16CA-4D0E-8FB9-BC01DCA9BE64} - System32\Tasks\Ralilobof\{2AF63B2B-055B-1AF0-1AC7-575379802EA8} => C:\Users\BUHO\AppData\Roaming\2AF63B2B-055B-1AF0-1AC7-575379802EA8\Ralilobof.exe [2204672 2013-04-13] () [Archivo no firmado] <==== ATENCIÓN
Task: {EF616E9B-30AB-4515-81B8-673DC87D7BB4} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [112984 2019-12-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {FBDF3D1D-9FE3-4AAB-B43B-A94C03219447} - System32\Tasks\GoogleUpdateTaskMachineCore1d0414dfe761f93 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-31] (Google Inc -> Google Inc.)

(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Internet (Lista blanca) ====================

(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)

Winsock: Catalog5 07 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 07 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 212.166.211.2 212.166.132.96
Tcpip\..\Interfaces\{09B5290B-C90F-45DD-B5D4-A06E7977E320}: [DhcpNameServer] 212.166.211.2 212.166.132.96

Internet Explorer:
==================
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com/search?FORM=INCOH1&PC=IC05&PTAG=ICO-8b26bd9842fe840d
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com/?pc=ASJB
SearchScopes: HKU\S-1-5-21-3891384046-228090290-3191749971-1001 -> DefaultScope {26080cad-4adc-49ac-8c63-eda16e595cbd} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-8b26bd9842fe840d&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3891384046-228090290-3191749971-1001 -> {26080cad-4adc-49ac-8c63-eda16e595cbd} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-8b26bd9842fe840d&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3891384046-228090290-3191749971-1001 -> {4EF484F7-4B27-4610-8596-41A26A172467} URL = hxxps://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2020-01-04] (McAfee, LLC -> McAfee, Inc.)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2020-01-04] (McAfee, LLC -> McAfee, Inc.)
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} -  Ningún archivo
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} -  Ningún archivo
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} -  Ningún archivo

FireFox:
========
FF DefaultProfile: ptb4l4br.default
FF ProfilePath: C:\Users\BUHO\AppData\Roaming\Mozilla\Firefox\Profiles\ptb4l4br.default [2020-01-09]
FF Extension: (Sin Nombre) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [no encontrado]
FF Extension: (Sin Nombre) - C:\Program Files\McAfee\WebAdvisor\saffplg.xpi [no encontrado]
FF Extension: (Sin Nombre) - C:\Program Files\McAfee\WebAdvisorsaffplg.xpi [no encontrado]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2020-01-04]
FF HKLM\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird => no encontrado
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF HKLM-x32\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird => no encontrado
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_303.dll [2019-12-10] (Adobe Inc. -> )
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_303.dll [2019-12-10] (Adobe Inc. -> )
FF Plugin-x32: @bookingdesktopapp.com/bookingDesktopApp Update;version=3 -> C:\Program Files (x86)\bookingDesktopApp\Update\1.3.99.0\npbookingDesktopAppUpdate3.dll [2020-01-04] (bookingDesktopApp.) [Archivo no firmado]
FF Plugin-x32: @bookingdesktopapp.com/bookingDesktopApp Update;version=9 -> C:\Program Files (x86)\bookingDesktopApp\Update\1.3.99.0\npbookingDesktopAppUpdate3.dll [2020-01-04] (bookingDesktopApp.) [Archivo no firmado]
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-13] (Google LLC -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-13] (Google LLC -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-12-02] (Adobe Inc. -> Adobe Systems Inc.)

Chrome: 
=======
CHR DefaultProfile: Profile 2
CHR DefaultSearchURL: Profile 2 -> hxxps://es.search.yahoo.com/search?p={searchTerms}&fr=yset_chr_syc_oracle&type=default
CHR DefaultSearchKeyword: Profile 2 -> Yahoo
CHR DefaultSuggestURL: Profile 2 -> hxxps://es.search.yahoo.com/sugg/ie?output=fxjson&command={searchTerms}&nResults=10
CHR Profile: C:\Users\BUHO\AppData\Local\Google\Chrome\User Data\Guest Profile [2020-01-09]
CHR DownloadDir: C:\Users\BUHO\Desktop
CHR Profile: C:\Users\BUHO\AppData\Local\Google\Chrome\User Data\Profile 1 [2020-01-09]
CHR Extension: (Presentaciones) - C:\Users\BUHO\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-12-10]
CHR Extension: (Documentos) - C:\Users\BUHO\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2019-12-10]
CHR Extension: (Google Drive) - C:\Users\BUHO\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-12-10]
CHR Extension: (YouTube) - C:\Users\BUHO\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-12-10]
CHR Extension: (Adobe Acrobat) - C:\Users\BUHO\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2019-12-10]
CHR Extension: (Hojas de cálculo) - C:\Users\BUHO\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-12-10]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\BUHO\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-12-10]
CHR Extension: (Yahoo Partner) - C:\Users\BUHO\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\kpdmjodecdegfglgaapafjleomjjlpnh [2019-12-10]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\BUHO\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-12-10]
CHR Extension: (Gmail) - C:\Users\BUHO\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-12-10]
CHR Extension: (Chrome Media Router) - C:\Users\BUHO\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-12-10]
CHR Profile: C:\Users\BUHO\AppData\Local\Google\Chrome\User Data\Profile 2 [2020-01-09]
CHR Extension: (Adobe Acrobat) - C:\Users\BUHO\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2019-12-10]
CHR Extension: (AdBlock: el mejor bloqueador de anuncios) - C:\Users\BUHO\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-12-18]
CHR Extension: (Yahoo Partner) - C:\Users\BUHO\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\kpdmjodecdegfglgaapafjleomjjlpnh [2019-12-10]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\BUHO\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-12-10]
CHR Extension: (Chrome Media Router) - C:\Users\BUHO\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-12-12]
CHR Profile: C:\Users\BUHO\AppData\Local\Google\Chrome\User Data\System Profile [2020-01-09]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [kpdmjodecdegfglgaapafjleomjjlpnh]

==================== Servicios (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [173472 2018-04-29] (SUPERAntiSpyware.com -> SUPERAntiSpyware.com)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2019-10-07] (Apple Inc. -> Apple Inc.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2012-12-21] (ASUSTeK Computer Inc. -> )
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [951936 2012-12-21] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [149120 2012-02-17] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe [72192 2012-12-19] () [Archivo no firmado]
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.08\AsusFanControlService.exe [324608 2012-05-18] (ASUSTeK Computer Inc.) [Archivo no firmado]
S2 bookingdesktopapp; C:\Program Files (x86)\bookingDesktopApp\Update\bookingDesktopAppUpdate.exe [102400 2020-01-04] (bookingDesktopApp.) [Archivo no firmado]
S3 bookingdesktopappm; C:\Program Files (x86)\bookingDesktopApp\Update\bookingDesktopAppUpdate.exe [102400 2020-01-04] (bookingDesktopApp.) [Archivo no firmado]
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11345992 2019-11-28] (Microsoft Corporation -> Microsoft Corporation)
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4452456 2019-09-28] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2245488 2019-12-05] (ESET, spol. s r.o. -> ESET)
S3 ekrnEpfw; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2245488 2019-12-05] (ESET, spol. s r.o. -> ESET)
R2 Fabs; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [1840128 2011-05-24] (MAGIX AG) [Archivo no firmado]
S3 FirebirdServerMAGIXInstance; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [2702848 2011-04-26] (MAGIX®) [Archivo no firmado]
S3 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [73200 2018-10-30] (INTERNET PROJECT LLC -> Freemake)
R2 FreemakeVideoCapture; C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [15856 2018-10-30] (INTERNET PROJECT LLC -> Ellora Assets Corp.)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-08-21] (Intel Corporation -> Intel Corporation)
S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6960640 2019-12-02] (Malwarebytes Inc -> Malwarebytes)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [253776 2014-11-06] (CyberLink Corp. -> CyberLink)
S2 SkypeUpdate; C:\Users\BUHO\Downloads\Updater\Updater.exe [315496 2014-12-11] (Skype Software Sarl -> Skype Technologies)
R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784 2016-01-08] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
S3 WsDrvInst; C:\Program Files (x86)\Wondershare\Video Converter Ultimate\Transfer\DriverInstall.exe [107624 2018-10-10] (Wondershare Technology Co.,Ltd -> Wondershare)

===================== Controladores (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R3 AiChargerPlus; C:\Windows\SysWow64\drivers\AiChargerPlus.sys [14848 2012-04-19] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] (ASUSTeK Computer Inc. -> )
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] (ASUSTeK Computer Inc. -> )
R3 AU8168; C:\WINDOWS\system32\DRIVERS\au630x64.sys [792648 2013-09-23] (Realtek Semiconductor Corp -> Realtek )
S3 bcmfn2; C:\WINDOWS\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Broadcom Corporation -> Windows (R) Win 7 DDK provider)
S3 blackberryncm; C:\WINDOWS\system32\DRIVERS\blackberryncm6_AMD64.sys [36360 2016-04-06] (Microsoft Windows Hardware Compatibility Publisher -> BlackBerry)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [136040 2019-09-26] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2019-09-28] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2019-09-28] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [149944 2019-11-02] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15800 2019-05-30] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [189512 2019-11-02] (ESET, spol. s r.o. -> ESET)
S4 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [50488 2019-07-27] (ESET, spol. s r.o. -> ESET)
S4 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [76896 2019-07-27] (ESET, spol. s r.o. -> ESET)
R1 EpfwLWF; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [53360 2015-07-14] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [116696 2019-12-05] (ESET, spol. s r.o. -> ESET)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [216544 2019-12-29] (Malwarebytes Inc -> Malwarebytes)
S3 netr28ux; C:\WINDOWS\system32\DRIVERS\netr28ux.sys [2408208 2013-06-18] (Mediatek Inc. -> Ralink Technology Corp.)
R2 npf; C:\WINDOWS\System32\drivers\npf.sys [35344 2011-02-11] (CACE Technologies, Inc. -> CACE Technologies, Inc.)
S3 RimUsb; C:\WINDOWS\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Microsoft Windows Hardware Compatibility Publisher -> Research In Motion Limited)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166760 2019-09-26] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 ss_bserd; C:\WINDOWS\system32\DRIVERS\ss_bserd.sys [128000 2014-01-23] (MCCI Corporation -> MCCI Corporation)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2015-06-10] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
U3 aswbdisk; no ImagePath
S0 edevmon; system32\DRIVERS\edevmon.sys [X]
S2 memudrv; \??\F:\MEMU\MEmuHyperv\MEmuDrv.sys [X]
S3 xhunter1; \??\C:\WINDOWS\xhunter1.sys [X]

==================== NetSvcs (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)


==================== Un mes (creado) ===================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-01-09 18:21 - 2020-01-09 18:22 - 000046876 _____ C:\Users\BUHO\Desktop\Addition.txt
2020-01-09 18:19 - 2020-01-09 18:23 - 000034533 _____ C:\Users\BUHO\Desktop\FRST.txt
2020-01-09 18:19 - 2020-01-09 18:23 - 000000000 ____D C:\FRST
2020-01-09 18:18 - 2020-01-09 18:18 - 000000595 _____ C:\Users\BUHO\Desktop\JRTINF.txt
2020-01-09 18:18 - 2020-01-09 18:18 - 000000595 _____ C:\Users\BUHO\Desktop\JRT.txt
2020-01-09 18:15 - 2020-01-09 18:15 - 000001672 _____ C:\Users\BUHO\Desktop\AdwCleaner[C00].txt
2020-01-09 18:02 - 2020-01-09 18:02 - 001790024 _____ (Malwarebytes) C:\Users\BUHO\Desktop\JRT.exe
2020-01-09 18:01 - 2020-01-09 18:01 - 002573312 _____ (Farbar) C:\Users\BUHO\Desktop\FRST64.exe
2020-01-09 18:00 - 2020-01-09 18:01 - 008237744 _____ (Malwarebytes) C:\Users\BUHO\Desktop\adwcleaner_8.0.1.exe
2020-01-09 17:58 - 2020-01-09 18:00 - 002573312 _____ (Farbar) C:\Users\BUHO\Downloads\FRST64.exe
2020-01-09 17:56 - 2020-01-09 17:57 - 001790024 _____ (Malwarebytes) C:\Users\BUHO\Downloads\JRT.exe
2020-01-09 17:15 - 2020-01-09 17:22 - 000002782 _____ C:\Users\BUHO\Desktop\Rkill.txt
2020-01-09 17:15 - 2020-01-09 17:15 - 001802704 _____ (Bleeping Computer, LLC) C:\Users\BUHO\Downloads\iExplore (1).exe
2020-01-09 17:15 - 2020-01-09 17:15 - 000988112 _____ (Bleeping Computer, LLC) C:\Users\BUHO\Downloads\iExplore (1)64.exe
2020-01-09 15:15 - 2020-01-09 15:15 - 000000757 _____ C:\Users\BUHO\Desktop\carta2.txt
2020-01-09 12:44 - 2020-01-09 12:44 - 000001058 _____ C:\Users\BUHO\Desktop\carta.txt
2020-01-07 16:35 - 2020-01-07 16:36 - 001802704 _____ (Bleeping Computer, LLC) C:\Users\BUHO\Downloads\iExplore.exe
2020-01-06 21:45 - 2020-01-06 21:45 - 000020225 _____ C:\Users\BUHO\Downloads\1572585413-Terminator 6 [TS][Castellano][wWw.EliteTorrent.IS].torrent
2020-01-05 13:10 - 2020-01-05 13:10 - 000000046 _____ C:\Users\BUHO\AppData\Roaming\WB.CFG
2020-01-04 17:10 - 2020-01-04 17:10 - 000000000 ____D C:\WINDOWS\system32\Tasks\Ralilobof
2020-01-04 17:10 - 2020-01-04 17:10 - 000000000 ____D C:\Users\BUHO\AppData\Roaming\2AF63B2B-055B-1AF0-1AC7-575379802EA8
2020-01-04 17:10 - 2020-01-04 17:10 - 000000000 ____D C:\Users\BUHO\AppData\Local\chromium
2020-01-04 17:08 - 2020-01-04 17:08 - 000003440 _____ C:\WINDOWS\system32\Tasks\bookingDesktopAppUpdateTaskMachineUA
2020-01-04 17:08 - 2020-01-04 17:08 - 000003312 _____ C:\WINDOWS\system32\Tasks\bookingDesktopAppUpdateTaskMachineCore
2020-01-04 17:08 - 2020-01-04 17:08 - 000000000 ____D C:\Program Files (x86)\bookingDesktopApp
2020-01-04 17:07 - 2020-01-04 17:07 - 000003214 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Booking.lnk
2020-01-04 17:07 - 2020-01-04 17:07 - 000000000 ____D C:\Program Files (x86)\Booking
2020-01-04 17:07 - 2008-08-18 18:18 - 000077824 _____ (Fox Magic Software) C:\WINDOWS\SysWOW64\fmcodec.DLL
2020-01-04 17:06 - 2020-01-04 17:06 - 000000000 ____D C:\Program Files\McAfee
2019-12-30 22:28 - 2019-12-30 22:28 - 002046464 _____ C:\Users\BUHO\Downloads\HDDLLF.4.40 (2).exe
2019-12-30 22:28 - 2019-12-30 22:28 - 002046464 _____ C:\Users\BUHO\Downloads\HDDLLF.4.40 (1).exe
2019-12-30 22:28 - 2019-12-30 22:28 - 000000001 _____ C:\Users\BUHO\AppData\Local\llftool.4.40.agreement
2019-12-30 22:27 - 2019-12-30 22:27 - 002046464 _____ C:\Users\BUHO\Downloads\HDDLLF.4.40.exe
2019-12-29 12:05 - 2019-12-29 12:05 - 000216544 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2019-12-19 15:37 - 2019-12-19 15:37 - 000621864 _____ C:\Users\BUHO\Desktop\Tarragona-Constanti (poligon Riu Clar) Horaris.pdf
2019-12-19 15:37 - 2019-12-19 15:37 - 000080249 _____ C:\Users\BUHO\Desktop\Reus-Poligon-Constanti-La Pobla-El Morell-Perafort-Estacio del Camp-La Secuita (Horaris).pdf
2019-12-19 15:36 - 2019-12-19 15:36 - 000621864 _____ C:\Users\BUHO\Downloads\Tarragona-Constanti (poligon Riu Clar) Horaris.pdf
2019-12-19 15:36 - 2019-12-19 15:36 - 000080249 _____ C:\Users\BUHO\Downloads\Reus-Poligon-Constanti-La Pobla-El Morell-Perafort-Estacio del Camp-La Secuita (Horaris).pdf
2019-12-16 18:28 - 2019-12-16 18:28 - 000012758 _____ C:\Users\BUHO\Downloads\1568682212-El Juego del Asesino [1080p][castellano][wWw.EliteTorrent.IO].torrent
2019-12-16 18:26 - 2019-12-16 18:26 - 000020239 _____ C:\Users\BUHO\Downloads\1570462088-Ad Astra [TS][Castellano][wWw.EliteTorrent.IO].torrent
2019-12-16 18:25 - 2019-12-16 18:25 - 000012047 _____ C:\Users\BUHO\Downloads\1570482764-Project Gutenberg [HDrip][Subtitulado][wWw.EliteTorrent.IO].torrent
2019-12-16 18:23 - 2019-12-16 18:23 - 000018988 _____ C:\Users\BUHO\Downloads\1571614118-El Camino [HDRip][Vose][wWw.EliteTorrent.IS].torrent
2019-12-16 18:23 - 2019-12-16 18:23 - 000013445 _____ C:\Users\BUHO\Downloads\1570684516-The Final Wish [1080p][Latino][wWw.EliteTorrent.IO].torrent
2019-12-16 18:22 - 2019-12-16 18:22 - 000016098 _____ C:\Users\BUHO\Downloads\1571617275-1571019777-El Final de la Verdad [HDrip][Castellano][wWw.EliteTorrent.IS].torrent
2019-12-16 18:21 - 2019-12-16 18:21 - 000011525 _____ C:\Users\BUHO\Downloads\1571616717-1571019993-Historias de Miedo [BRS][Subtitulado][wWw.EliteTorrent.IS].torrent
2019-12-16 18:20 - 2019-12-16 18:20 - 000011219 _____ C:\Users\BUHO\Downloads\1571614720-1555945318-The Professor ans the Madman [HDrip][Subtitulado][wWw.EliteTorrent.IO].torrent
2019-12-16 18:19 - 2019-12-16 18:19 - 000012194 _____ C:\Users\BUHO\Downloads\1571608573-Fast & Furious Hobbs & Shaw  [1080p][Latino][wWw.EliteTorrent.IS].torrent
2019-12-16 18:18 - 2019-12-16 18:18 - 000014300 _____ C:\Users\BUHO\Downloads\1574084118-Joker [BRS][Castellano][wWw.EliteTorrent.IS].torrent
2019-12-16 18:12 - 2019-12-16 18:12 - 000013376 _____ C:\Users\BUHO\Downloads\1574809472-Habia una vez en Hollywood [BRS][Castellano][wWw.EliteTorrent.IS].torrent
2019-12-16 18:08 - 2019-12-16 18:08 - 000012356 _____ C:\Users\BUHO\Downloads\1558061633-La Mula [1080p][Castellano][wWw.EliteTorrent.IO].torrent
2019-12-13 19:43 - 2019-12-13 19:44 - 000000000 ____D C:\Users\BUHO\Desktop\Nueva carpeta1
2019-12-11 10:29 - 2019-11-28 11:26 - 001368072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2019-12-11 10:29 - 2019-11-28 06:20 - 004171264 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-12-11 10:29 - 2019-11-28 06:20 - 000432128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2019-12-11 10:29 - 2019-11-28 05:03 - 001085440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2019-12-11 10:29 - 2019-11-21 03:16 - 000580096 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-12-11 10:29 - 2019-11-21 03:16 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-12-11 10:29 - 2019-11-19 21:56 - 025753088 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-12-11 10:29 - 2019-11-19 21:18 - 000797184 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-12-11 10:29 - 2019-11-19 21:17 - 005500928 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2019-12-11 10:29 - 2019-11-19 20:49 - 001033216 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2019-12-11 10:29 - 2019-11-19 20:41 - 000809472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2019-12-11 10:29 - 2019-11-19 20:36 - 015445504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-12-11 10:29 - 2019-11-19 20:26 - 004859392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-12-11 10:29 - 2019-11-19 20:15 - 001566720 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-12-11 10:29 - 2019-11-19 20:04 - 000800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2019-12-11 10:29 - 2019-11-19 09:17 - 020290048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-12-11 10:29 - 2019-11-19 08:49 - 000662528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-12-11 10:29 - 2019-11-19 08:28 - 000880640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2019-12-11 10:29 - 2019-11-19 08:26 - 004112384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2019-12-11 10:29 - 2019-11-19 08:23 - 000696320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2019-12-11 10:29 - 2019-11-19 08:20 - 013838336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-12-11 10:29 - 2019-11-19 08:05 - 004387840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-12-11 10:29 - 2019-11-19 08:01 - 001331712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-12-11 10:29 - 2019-11-19 08:00 - 000710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2019-12-11 10:29 - 2019-11-15 16:54 - 001756672 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-12-11 10:29 - 2019-11-15 16:40 - 001492992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2019-12-11 10:29 - 2019-11-13 06:54 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2019-12-11 10:29 - 2019-11-13 06:54 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2019-12-11 10:29 - 2019-11-13 06:52 - 000113664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2019-12-11 10:29 - 2019-11-13 06:52 - 000078336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2019-12-11 10:29 - 2019-11-11 21:15 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelineprxy.dll
2019-12-11 10:29 - 2019-11-11 20:37 - 000881152 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
2019-12-11 10:29 - 2019-11-09 09:49 - 000409728 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2019-12-11 10:29 - 2019-11-09 02:12 - 003551232 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2019-12-11 10:29 - 2019-11-05 05:21 - 000162392 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2019-12-11 10:29 - 2019-11-05 01:06 - 000805376 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-12-11 10:29 - 2019-11-05 01:03 - 000611432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2019-12-11 10:29 - 2019-10-27 00:17 - 001717760 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-12-10 13:47 - 2020-01-09 15:58 - 000002422 _____ C:\Users\BUHO\Desktop\CHIMUELO - Chrome.lnk

==================== Un mes (modificado) ==================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-01-09 18:22 - 2013-08-22 14:36 - 000000000 ____D C:\WINDOWS\Inf
2020-01-09 18:21 - 2018-06-26 20:09 - 000004128 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2020-01-09 18:15 - 2014-04-08 15:48 - 000000000 __RDO C:\Users\BUHO\SkyDrive
2020-01-09 18:15 - 2014-03-22 21:43 - 000001114 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2020-01-09 18:13 - 2014-03-22 23:59 - 008781824 ___SH C:\Users\BUHO\Desktop\Thumbs.db
2020-01-09 18:12 - 2013-08-22 15:45 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-01-09 18:12 - 2013-08-22 14:25 - 000524288 ___SH C:\WINDOWS\system32\config\BBI
2020-01-09 18:11 - 2017-01-31 21:58 - 000000000 ____D C:\AdwCleaner
2020-01-09 17:12 - 2019-11-29 19:49 - 000000000 ___RD C:\Users\BUHO\iCloudDrive
2020-01-08 23:48 - 2019-12-02 19:40 - 000000000 ____D C:\Users\BUHO\AppData\Local\CrashDumps
2020-01-07 22:22 - 2014-04-18 13:28 - 000003958 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{3418409D-F36A-4FD7-B532-2EDD74A8F888}
2020-01-07 22:08 - 2013-08-22 16:36 - 000000000 ____D C:\WINDOWS\system32\NDF
2020-01-07 17:03 - 2014-04-25 14:32 - 000000000 ____D C:\Users\BUHO\AppData\Local\ESET
2020-01-07 09:32 - 2014-03-23 13:04 - 000003598 _____ C:\WINDOWS\system32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3891384046-228090290-3191749971-1001
2020-01-06 21:55 - 2014-03-24 23:00 - 000000000 ____D C:\Users\BUHO\AppData\Roaming\uTorrent
2020-01-06 21:40 - 2019-04-10 13:17 - 000000000 ____D C:\Users\BUHO\AppData\Local\BitTorrentHelper
2020-01-04 17:07 - 2019-12-02 15:47 - 000001353 _____ C:\Users\Public\Desktop\Music Search MP3.lnk
2020-01-04 17:07 - 2019-12-02 15:47 - 000001353 _____ C:\ProgramData\Desktop\Music Search MP3.lnk
2020-01-04 17:07 - 2019-12-02 15:47 - 000001209 _____ C:\Users\Public\Desktop\aTube Catcher.lnk
2020-01-04 17:07 - 2019-12-02 15:47 - 000001209 _____ C:\ProgramData\Desktop\aTube Catcher.lnk
2020-01-04 17:07 - 2019-12-02 15:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher
2020-01-02 16:29 - 2019-08-23 16:49 - 000011334 _____ C:\Users\BUHO\Desktop\HS MC CATERING.xlsx
2020-01-02 13:24 - 2013-11-14 08:27 - 001825894 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-01-02 13:24 - 2013-11-14 08:12 - 000805058 _____ C:\WINDOWS\system32\perfh00A.dat
2020-01-02 13:24 - 2013-11-14 08:12 - 000164494 _____ C:\WINDOWS\system32\perfc00A.dat
2020-01-01 22:54 - 2019-08-23 16:30 - 000012100 _____ C:\Users\BUHO\Desktop\HORAS RC. CATERING.xlsx
2019-12-30 22:58 - 2014-04-08 15:28 - 000000000 ____D C:\Users\BUHO
2019-12-28 21:16 - 2016-07-17 12:59 - 000000000 ____D C:\Program Files\SUPERAntiSpyware
2019-12-21 12:01 - 2015-11-13 21:35 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-12-20 21:31 - 2019-10-14 15:53 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2019-12-19 13:22 - 2014-03-22 21:35 - 000000000 ____D C:\Users\BUHO\AppData\Local\Packages
2019-12-19 13:20 - 2014-04-02 16:09 - 001202176 ___SH C:\Users\BUHO\Downloads\Thumbs.db
2019-12-17 21:40 - 2014-03-22 21:43 - 000002249 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-12-15 12:14 - 2013-08-22 16:36 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-12-15 12:11 - 2013-10-29 10:33 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2019-12-13 20:33 - 2015-02-05 15:14 - 000003408 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore1d0414dfe761f93
2019-12-13 20:33 - 2014-06-22 17:58 - 000003536 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA1cf8e3b265920f6
2019-12-13 20:17 - 2019-06-05 13:08 - 000000000 ____D C:\Users\BUHO\Desktop\msk
2019-12-12 12:39 - 2013-08-22 16:36 - 000000000 ____D C:\WINDOWS\rescache
2019-12-12 11:15 - 2018-06-26 21:08 - 000615576 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-12-11 10:43 - 2014-03-24 02:18 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-12-11 10:37 - 2014-03-24 02:18 - 129221664 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-12-11 10:36 - 2012-07-26 08:59 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-12-10 11:07 - 2017-04-20 23:09 - 000004490 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player PPAPI Notifier
2019-12-10 11:07 - 2015-02-14 16:22 - 000004296 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player Updater
2019-12-10 11:07 - 2013-08-22 16:36 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2019-12-10 11:07 - 2013-08-22 16:36 - 000000000 ____D C:\WINDOWS\system32\Macromed
2019-12-10 11:03 - 2018-03-14 00:07 - 000004482 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player NPAPI Notifier

==================== Archivos en la raíz de algunos directorios ========

2020-01-05 13:10 - 2020-01-05 13:10 - 000000046 _____ () C:\Users\BUHO\AppData\Roaming\WB.CFG
2016-01-06 23:34 - 2016-01-06 23:34 - 000000275 _____ () C:\Users\BUHO\AppData\Local\HamsterAudioConverterSettings.cfg
2019-12-30 22:28 - 2019-12-30 22:28 - 000000001 _____ () C:\Users\BUHO\AppData\Local\llftool.4.40.agreement

==================== SigCheck ============================

(No existe una corrección automática para los archivos que no pasan la verificación.)


LastRegBack: 2020-01-08 11:16
==================== Final de FRST.txt ========================

Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 08-01-2020
Ejecutado por BUHO (09-01-2020 18:23:51)
Ejecutado desde C:\Users\BUHO\Desktop
Windows 8.1 (Update) (X64) (2014-04-08 14:45:21)
Modo de Inicio: Normal
==========================================================


==================== Cuentas: =============================

Administrador (S-1-5-21-3891384046-228090290-3191749971-500 - Administrator - Disabled)
BUHO (S-1-5-21-3891384046-228090290-3191749971-1001 - Administrator - Enabled) => C:\Users\BUHO
HomeGroupUser$ (S-1-5-21-3891384046-228090290-3191749971-1005 - Limited - Enabled)
Invitado (S-1-5-21-3891384046-228090290-3191749971-501 - Limited - Disabled)

==================== Centro de Seguridad ========================

(Si una entrada es incluida en el fixlist, será eliminada.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}
AS: ESET Security (Enabled - Up to date) {333C65BB-8923-0EAA-C47E-C486E687BEFD}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ESET Cortafuegos (Disabled) {B066057A-E576-007C-D591-56C163D3B33B}

==================== Programas instalados ======================

(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)

µTorrent (HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\uTorrent) (Version: 3.5.5.45395 - BitTorrent Inc.)
Adobe Acrobat Reader DC - Español (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-AC0F074E4100}) (Version: 19.021.20061 - Adobe Systems Incorporated)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.303 - Adobe)
Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.303 - Adobe)
Adobe Photoshop Elements 2.0 (HKLM-x32\...\Adobe Photoshop Elements 2.0) (Version: 2.0 - Adobe Systems, Inc.)
AI Suite II (HKLM-x32\...\{34D3688E-A737-44C5-9E2A-FF73618728E1}) (Version: 2.01.01 - ASUSTeK Computer Inc.)
AIMP (HKLM-x32\...\AIMP) (Version: v4.00.1683, 29.12.2015 - AIMP DevTeam)
Apple Application Support (32 bits) (HKLM-x32\...\{BED24701-751B-41C5-8888-A8EABAB9FE8C}) (Version: 8.1 - Apple Inc.)
Apple Application Support (64 bits) (HKLM\...\{88F21C94-88AF-4665-AF4F-FECB1FA059B9}) (Version: 8.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{45DDDFED-AABC-450C-B49C-5B4A5E547F5B}) (Version: 13.0.0.38 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{A3985C05-7386-411F-A4BF-32A73F37EB44}) (Version: 2.6.3.1 - Apple Inc.)
ASUS Easy Update (HKLM-x32\...\{E7AA854E-6756-424E-84C2-4E47D5729AFF}) (Version: 2.00.30 - ASUSTeK Computer Inc)
ASUS Music Maker (HKLM\...\{5E00D8DF-905B-41C7-B562-C126DE3A4167}) (Version: 18.0.3.3 - MAGIX AG) Hidden
ASUS Music Maker (HKLM-x32\...\MAGIX_{5E00D8DF-905B-41C7-B562-C126DE3A4167}) (Version: 18.0.3.3 - MAGIX AG)
ASUS MX Suite (HKLM\...\{9204F334-2A46-49F1-89C4-65CEB7AC1974}) (Version: 1.13.0.121 - MAGIX AG) Hidden
ASUS MX Suite (HKLM-x32\...\MAGIX_{9204F334-2A46-49F1-89C4-65CEB7AC1974}) (Version: 1.13.0.121 - MAGIX AG)
ASUS Video easy (HKLM\...\{7DB84618-76E3-4999-A9A0-D7D756E14129}) (Version: 3.0.1.42 - MAGIX AG) Hidden
ASUS Video easy (HKLM-x32\...\MAGIX_{7DB84618-76E3-4999-A9A0-D7D756E14129}) (Version: 3.0.1.42 - MAGIX AG)
ASUS WebStorage Sync Agent (HKLM-x32\...\ASUS WebStorage) (Version: 1.1.18.159 - ASUS Cloud Corporation)
ASUSDVD (HKLM-x32\...\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.4127.52 - CyberLink Corp.) Hidden
ASUSDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.4127.52 - CyberLink Corp.)
AsusVibe2.0 (HKLM-x32\...\Asus Vibe2.0) (Version: 2.0.12.309 - ASUSTEK)
aTube Catcher (HKLM-x32\...\aTube Catcher) (Version: 3.8.7955 - DsNET Corp)
aTube Catcher versión 3.8 (HKLM-x32\...\{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1) (Version: 3.8 - DsNET Corp)
Audacity 2.1.2 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.2 - Audacity Team)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Booking (HKLM-x32\...\{13D4CD54-EA09-4FDB-B979-8B2BC0F020CA}_is1) (Version: 2.0.701 - Booking)
CCleaner (HKLM\...\CCleaner) (Version: 5.61 - Piriform)
CyberLink PowerDirector (HKLM-x32\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 7.0.2521 - CyberLink Corp.)
CyberLink PowerDirector 13 (HKLM-x32\...\{BA385AFC-00B1-417C-8C20-74B996EF3AF0}) (Version: 13.0.2307.0 - CyberLink Corp.)
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.11.0.0948 - Disc Soft Ltd)
eManual (HKLM-x32\...\{0C84E634-EB68-4A54-B21E-A05EC87A4CC5}) (Version: 1.00.05 - ASUSTeK Computer Inc.)
ESET Security (HKLM\...\{BEFBE0CD-6723-4D98-8263-9A2C376BC6CD}) (Version: 13.0.24.0 - ESET, spol. s r.o.)
Firebird SQL Server - MAGIX Edition (HKLM-x32\...\{6C5F8503-55D2-4398-858C-362B7A7AF51C}) (Version: 2.1.31.0 - MAGIX AG)
Fotogalerie (HKLM-x32\...\{0FD66C6F-4023-4C74-AF8E-9B8B2053868E}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Freemake Audio Converter versión 1.1.7 (HKLM-x32\...\Freemake Audio Converter_is1) (Version: 1.1.7 - Ellora Assets Corporation)
Freemake Video Converter versión 4.1.10 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 4.1.10 - Ellora Assets Corporation)
Galeria de Fotografias (HKLM-x32\...\{6DFF6F1B-F876-4007-AC82-42D5DDF0E090}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Galería de fotos (HKLM-x32\...\{198CEF22-A27F-4DC7-9B66-2C22A4B1CA09}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Galerie de photos (HKLM-x32\...\{F4D99A13-F63A-4FC1-8799-CFFDB78DDFB3}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 79.0.3945.88 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.421 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden
iCloud (HKLM\...\{576BC8FA-1891-47C8-8A23-F3DDB78C06DE}) (Version: 7.15.0.10 - Apple Inc.)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1281 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3412 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.6.0.1030 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
iTunes (HKLM\...\{A5117F15-A968-4C0F-A4B0-3F601C4ACC77}) (Version: 12.10.2.3 - Apple Inc.)
Junk Mail filter update (HKLM-x32\...\{0BE9E708-5DC0-4963-9CFD-0AA519090E79}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mac Blu-ray Player (HKLM-x32\...\Mac Blu-ray Player) (Version: 2.15.5.2015 - Macgo Inc.)
Malwarebytes version 4.0.4.49 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.0.4.49 - Malwarebytes)
McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.0.101 - McAfee, LLC.)
Microsoft Office 365 - es-es (HKLM\...\O365HomePremRetail - es-es) (Version: 16.0.12228.20364 - Microsoft Corporation)
Microsoft Office Profesional 2016 - es-es (HKLM\...\ProfessionalRetail - es-es) (Version: 16.0.12228.20364 - Microsoft Corporation)
Microsoft OneDrive (HKU\.DEFAULT\...\OneDriveSetup.exe) (Version: 17.3.6743.1212 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\OneDriveSetup.exe) (Version: 19.192.0926.0012 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{2DFD8316-9EF1-3210-908C-4CB61961C1AC}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{527BBE2F-1FED-3D8B-91CB-4DB0F838E69E}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Movie Maker (HKLM-x32\...\{0FD2B9C6-DB91-48EA-9518-AB5B68CA1E28}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{268F956D-2FE7-4D10-8070-A4AC3BEF54EF}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{3C5F91EF-5C0B-4D13-BCBE-0FC6FC3ED7F9}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{4FB56489-F34B-42AA-9437-FB9E0B0543F7}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{6066D3FE-3692-4449-A3C8-D1EAA2C0E9E7}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{7693587D-5D66-4208-ABEA-C370217D1D9B}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{9C82436F-F19C-42A4-B476-F87A28A95BF9}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{B1865FCC-BE34-4800-AF2F-FB0120821B6A}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{B39A6825-EA20-43EA-AB2D-A6BC0298D9A1}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{DE9C585C-8578-4A8A-B92A-BA8DF2540E21}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{E169436E-49D8-419B-A5C0-D245EAF99611}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
Nannoid 1.0 (HKLM-x32\...\Nannoid_is1) (Version:  - imitation pickles)
NewBlue Video Essentials for Windows (HKLM-x32\...\NewBlue Video Essentials for Windows) (Version: 3.0 - NewBlue)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.12228.20364 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.12228.20364 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.12228.20364 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0C0A-0000-0000000FF1CE}) (Version: 16.0.12228.20364 - Microsoft Corporation) Hidden
OpenOffice 4.1.2 (HKLM-x32\...\{74BBCD30-EB17-4909-B59F-65E0DD2B7E95}) (Version: 4.12.9782 - Apache Software Foundation)
Paquete de idioma de Microsoft Visual Studio 2010 Tools para Office Runtime (x64) - ESN (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - ESN) (Version: 10.0.50903 - Microsoft Corporation)
QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.)
Raccolta foto (HKLM-x32\...\{FA6BC7A5-85B3-4DC2-825C-D508E386151A}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.10.1226.2012 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6743 - Realtek Semiconductor Corp.)
Samsung Kies (HKLM-x32\...\{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.5.3.13043_14 - Samsung Electronics Co., Ltd.) Hidden
Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.5.3.13043_14 - Samsung Electronics Co., Ltd.)
Samsung Kies3 (HKLM-x32\...\{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.16044.2 - Samsung Electronics Co., Ltd.) Hidden
Samsung Kies3 (HKLM-x32\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.16044.2 - Samsung Electronics Co., Ltd.)
Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.59.0 - Samsung Electronics Co., Ltd.)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
Smart Switch (HKLM-x32\...\{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.1.16052.2 - Samsung Electronics Co., Ltd.) Hidden
Smart Switch (HKLM-x32\...\InstallShield_{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.1.16052.2 - Samsung Electronics Co., Ltd.)
SmartSound Quicktracks Plugin (HKLM-x32\...\{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}) (Version: 3.0.3.0 - SmartSound Software Inc) Hidden
SmartSound Quicktracks Plugin (HKLM-x32\...\InstallShield_{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}) (Version: 3.0.3.0 - SmartSound Software Inc)
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1220 - SUPERAntiSpyware.com)
Switch, convertidor de audio (HKLM-x32\...\Switch) (Version: 4.69 - NCH Software)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Why ASUS PC (HKLM-x32\...\{5648F9D9-299E-408C-AC1F-59DC75894A1F}) (Version: 1.00.02 - ASUSTeK Computer Inc.)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies)
WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
Wondershare Filmora(Build 7.0.1) (HKLM-x32\...\Wondershare Filmora_is1) (Version:  - Wondershare Software)
Wondershare Video Converter Ultimate(Build 10.3.2.182) (HKLM-x32\...\Video Converter Ultimate_is1) (Version: 10.3.2.182 - Wondershare Software)
Συλλογή φωτογραφιών (HKLM-x32\...\{032CB0D7-FDBF-4CA9-901B-A4C1B01B1777}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
影像中心 (HKLM-x32\...\{7DB15F28-5E38-476A-A773-EA07EAEAB1B3}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
照片库 (HKLM-x32\...\{25716F85-7DB7-4CB4-8BD3-1992DBA3F59C}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden

Packages:
=========
Adera -> C:\Program Files\WindowsApps\Microsoft.Adera_2.5.2.34894_x86__8wekyb3d8bbwe [2014-04-09] (Microsoft Studios)
ASUS WebStorage -> C:\Program Files\WindowsApps\ASUSCloudCorporation.MobileFileExplorer_1.0.24.190_x86__wk4d32h0cvhem [2015-05-10] (ASUS Cloud Corporation)
Fresh Paint -> C:\Program Files\WindowsApps\Microsoft.FreshPaint_2.0.15133.0_x86__8wekyb3d8bbwe [2016-01-12] (Microsoft Corporation)
Juegos -> C:\Program Files\WindowsApps\Microsoft.XboxLIVEGames_2.0.139.0_x64__8wekyb3d8bbwe [2014-04-09] (Microsoft Corporation) [MS Ad]
Microsoft Bingo -> C:\Program Files\WindowsApps\Microsoft.MicrosoftBingo_1.6.3.0_x86__8wekyb3d8bbwe [2016-10-01] (Microsoft Studios)
Microsoft Jackpot -> C:\Program Files\WindowsApps\Microsoft.MicrosoftJackpot_1.9.1110.0_x86__8wekyb3d8bbwe [2019-03-02] (Microsoft Studios) [MS Ad]
Microsoft Mahjong -> C:\Program Files\WindowsApps\Microsoft.MicrosoftMahjong_2.10.1812.2002_x86__8wekyb3d8bbwe [2019-02-02] (Microsoft Studios) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_2.11.1807.1002_x86__8wekyb3d8bbwe [2018-07-27] (Microsoft Studios) [MS Ad]
MSN Deportes -> C:\Program Files\WindowsApps\Microsoft.BingSports_3.0.4.345_x64__8wekyb3d8bbwe [2016-04-29] (Microsoft Corporation) [MS Ad]
MSN Dinero -> C:\Program Files\WindowsApps\Microsoft.BingFinance_3.0.4.344_x64__8wekyb3d8bbwe [2016-04-27] (Microsoft Corporation) [MS Ad]
MSN El Tiempo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_3.0.4.350_x64__8wekyb3d8bbwe [2016-11-22] (Microsoft Corporation) [MS Ad]
MSN Noticias -> C:\Program Files\WindowsApps\Microsoft.BingNews_3.0.4.344_x64__8wekyb3d8bbwe [2016-04-27] (Microsoft Corporation) [MS Ad]
MSN Recetas -> C:\Program Files\WindowsApps\Microsoft.BingFoodAndDrink_3.0.4.336_x64__8wekyb3d8bbwe [2015-07-14] (Microsoft Corporation) [MS Ad]
MSN Salud y Bienestar -> C:\Program Files\WindowsApps\Microsoft.BingHealthAndFitness_3.0.4.336_x64__8wekyb3d8bbwe [2015-07-14] (Microsoft Corporation) [MS Ad]
MSN Viajes -> C:\Program Files\WindowsApps\Microsoft.BingTravel_3.0.4.336_x64__8wekyb3d8bbwe [2015-07-14] (Microsoft Corporation) [MS Ad]
Música -> C:\Program Files\WindowsApps\Microsoft.ZuneMusic_2.6.672.0_x64__8wekyb3d8bbwe [2015-03-14] (Microsoft Corporation) [MS Ad]
PAC-MAN Championship Edition DX+ -> C:\Program Files\WindowsApps\NAMCOBANDAIGamesInc.PAC-MANChampionshipEditionDX_1.0.1.2_x86__gdy2aq6ez762w [2015-09-02] (NAMCO BANDAI Games Inc)
Pinball FX2 -> C:\Program Files\WindowsApps\Microsoft.Studios.PinballFx2_1.8.1.957_x86__8wekyb3d8bbwe [2015-04-14] (Microsoft Studios)
Selección del explorador -> C:\WINDOWS\BrowserChoice [2014-04-13] (Microsoft Corporation)
Taptiles -> C:\Program Files\WindowsApps\Microsoft.Taptiles_2.6.288.0_x86__8wekyb3d8bbwe [2018-10-25] (Microsoft Studios) [MS Ad]
Vídeo -> C:\Program Files\WindowsApps\Microsoft.ZuneVideo_2.6.446.0_x64__8wekyb3d8bbwe [2015-11-06] (Microsoft Corporation) [MS Ad]
VLC for Windows Store -> C:\Program Files\WindowsApps\VideoLAN.VLCforWindows8_3.1.1.0_x86__paz6r1rewnh0a [2018-08-07] (VideoLAN)
Wordament -> C:\Program Files\WindowsApps\Microsoft.Studios.Wordament_2.8.4.0_x86__8wekyb3d8bbwe [2015-06-18] (Microsoft Studios)
Xbox 360 SmartGlass -> C:\Program Files\WindowsApps\Microsoft.XboxCompanion_1.4.3.0_x64__8wekyb3d8bbwe [2014-11-27] (Microsoft Corporation) [MS Ad]

==================== Personalizado CLSID (Lista blanca): ==============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\ChromeHTML: ->  <==== ATENCIÓN
ShellIconOverlayIdentifiers: [!AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSShellExt64.dll [2012-09-27] (ASUS Cloud Corporation.) [Archivo no firmado]
ShellIconOverlayIdentifiers: [!AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSShellExt64.dll [2012-09-27] (ASUS Cloud Corporation.) [Archivo no firmado]
ShellIconOverlayIdentifiers: [!AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4D} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSShellExt64.dll [2012-09-27] (ASUS Cloud Corporation.) [Archivo no firmado]
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Ningún archivo
ContextMenuHandlers1: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll [2016-01-04] (Artem Izmaylov -> AIMP DevTeam) [Archivo no firmado]
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Smart Security\shellExt.dll [2019-12-05] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2019-10-25] (Apple Inc. -> Apple Inc.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2013-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2013-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2019-09-28] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Smart Security\shellExt.dll [2019-12-05] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers2-x32: [ShellPlusContextMenu] -> {1C311AAA-D8B1-4A0A-BEE5-2387FEC583DA} => C:\Windows\SysWow64\B4FM.dll [2009-08-21] (Ikysasoft s.r.l. uninominale) [Archivo no firmado]
ContextMenuHandlers3: [BackupContextMenuExtension] -> {b1b96b20-da1d-4a3c-92c1-7229b32f2325} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSContextMenu.DLL [2012-12-19] (ASUS Cloud Corporation -> ASUS Cloud Corporation)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2019-09-28] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers3-x32: [ShellPlusContextMenu] -> {1C311AAA-D8B1-4A0A-BEE5-2387FEC583DA} => C:\Windows\SysWow64\B4FM.dll [2009-08-21] (Ikysasoft s.r.l. uninominale) [Archivo no firmado]
ContextMenuHandlers4: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll [2016-01-04] (Artem Izmaylov -> AIMP DevTeam) [Archivo no firmado]
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\WINDOWS\system32\igfxpph.dll [2014-01-25] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Smart Security\shellExt.dll [2019-12-05] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2013-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2013-12-01] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Lista blanca) ====================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Drivers32: [VIDC.FMVC] => C:\Windows\SysWOW64\fmcodec.dll [77824 2008-08-18] (Fox Magic Software) [Archivo no firmado]
HKLM\...\Drivers32: [vidc.VP60] => C:\WINDOWS\SysWOW64\vp6vfw.dll [442368 2004-08-18] (On2.com) [Archivo no firmado]
HKLM\...\Drivers32: [vidc.VP61] => C:\WINDOWS\SysWOW64\vp6vfw.dll [442368 2004-08-18] (On2.com) [Archivo no firmado]

==================== Accesos directos & WMI ========================

(Las entradas pueden ser listadas para ser restauradas o eliminadas.)

Shortcut: C:\Users\BUHO\Favorites\Sitio para descargas de NCH Software.lnk -> hxxp://www.nch.com.au/es/index.htm
ShortcutWithArgument: C:\Users\BUHO\Desktop\CHIMUELO - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 2"
ShortcutWithArgument: C:\Users\BUHO\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\989f111b565964b\Chromium.lnk -> C:\Users\BUHO\AppData\Local\chromium\Application\chrome.exe (The Chromium Authors) -> --profile-directory=Default
ShortcutWithArgument: C:\Users\BUHO\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"

==================== Módulos cargados (Lista blanca) =============

2013-10-29 10:23 - 2010-06-29 03:58 - 000104448 ____R () [Archivo no firmado] C:\Program Files (x86)\ASUS\AXSP\1.00.19\ATKEX.dll
2013-10-29 10:23 - 2020-01-09 18:12 - 000023040 _____ () [Archivo no firmado] C:\Program Files (x86)\ASUS\AXSP\1.00.19\PEbiosinterface32.dll
2019-12-12 12:03 - 2019-12-12 12:03 - 000016384 _____ () [Archivo no firmado] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\PSIClient\d6ec2d11aad9acb3fca1b1c08d539274\PSIClient.ni.dll
2016-01-04 18:58 - 2016-01-04 18:58 - 001978440 _____ (Artem Izmaylov -> AIMP DevTeam) [Archivo no firmado] C:\Program Files (x86)\AIMP\System\aimp_menu64.dll
2012-09-27 08:15 - 2012-09-27 08:15 - 001472512 _____ (ASUS Cloud Corporation.) [Archivo no firmado] C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSShellExt64.dll
2013-10-29 10:23 - 2010-08-09 14:33 - 000108544 ____R (ASUS) [Archivo no firmado] C:\Program Files (x86)\ASUS\AAHM\1.00.20\ASACPI.DLL
2013-10-29 10:24 - 2010-10-26 11:54 - 000108544 ____R (ASUS) [Archivo no firmado] C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.08\AsAcpi.dll
2020-01-04 17:08 - 2020-01-04 17:07 - 001743360 ____T (bookingDesktopApp.) [Archivo no firmado] C:\Program Files (x86)\bookingDesktopApp\Update\1.3.99.0\bookingDesktopApppdate.dll
2019-12-12 12:03 - 2019-12-12 12:03 - 000019968 _____ (Intel Corp.) [Archivo no firmado] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\IAStorCommon\381150874a7d9193173a6be9ae02975a\IAStorCommon.ni.dll
2013-12-03 16:28 - 2012-09-02 03:04 - 000507904 _____ (Intel Corporation) [Archivo no firmado] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\ISDI2.dll
2013-12-03 16:28 - 2012-09-02 03:04 - 000269824 _____ (Intel Corporation) [Archivo no firmado] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\PsiData.dll
2019-12-12 12:02 - 2019-12-12 12:02 - 000075264 _____ (Intel Corporation) [Archivo no firmado] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\IAStorDataMgr\e07c168b405d13697bad3b81caeb8220\IAStorDataMgr.ni.dll
2019-12-12 12:02 - 2019-12-12 12:02 - 000379392 _____ (Intel Corporation) [Archivo no firmado] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\IAStorUtil\59ddf9440c94d4426cf6bf0b533d8d2b\IAStorUtil.ni.dll
2019-12-12 12:04 - 2019-12-12 12:04 - 001117184 _____ (Intel Corporation) [Archivo no firmado] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\IAStorViewModel\54bb82b116f45f590d6c5eedde68ad77\IAStorViewModel.ni.dll
2019-12-12 12:02 - 2019-12-12 12:02 - 003881984 _____ (Intel Corporation) [Archivo no firmado] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\PSI\de2a37fb81f36768aa6bc4f38d800003\PSI.ni.dll
2019-12-12 12:03 - 2019-12-12 12:03 - 000644608 _____ (Intel Corporation) [Archivo no firmado] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\PsiData\81651d84143a3ae2c3a145386777788a\PsiData.ni.dll
2019-12-12 12:03 - 2019-12-12 12:03 - 000027136 _____ (Microsoft) [Archivo no firmado] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\IAStorDataMcfeeca6f#\1940d3df103eed000444fff76f95a709\IAStorDataMgrSvcInterfaces.ni.dll

==================== Alternate Data Streams (Lista blanca) ========

(Si una entrada es incluida en el fixlist, solamente los ADS serán eliminados.)

AlternateDataStreams: C:\Users\BUHO\Datos de programa:6699d3ee8dd9cf775caae782c8f44f03 [394]
AlternateDataStreams: C:\Users\BUHO\AppData\Roaming:6699d3ee8dd9cf775caae782c8f44f03 [394]

==================== Modo Seguro (Lista blanca) ==================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""

==================== Asociación (Lista blanca) =================

==================== Internet Explorer sitios de confianza/restringidos ==========

==================== Hosts contenido: =========================

(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)

2013-08-22 14:25 - 2016-07-03 01:21 - 000000828 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Otras Áreas ===========================

(Actualmente no existe una corrección automática para esta sección.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Windows Live\Shared;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x86;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x64;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\QuickTime\QTSystem\
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\BUHO\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\podemos-vivir-en-la-luna-5.jpg
DNS Servers: El medio no está conectado a internet.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (Ningún archivo)
Firewall de Windows está habilitado.

==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==

(Si una entrada es incluida en el fixlist, será eliminada.)

HKLM\...\StartupApproved\StartupFolder: => "Adobe Gamma Loader.lnk"
HKLM\...\StartupApproved\StartupFolder: => "McAfee Security Scan Plus.lnk"
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "Adobe ARM"
HKLM\...\StartupApproved\Run32: => "ASUSPRP"
HKLM\...\StartupApproved\Run32: => "RemoteControl10"
HKLM\...\StartupApproved\Run32: => "KiesTrayAgent"
HKLM\...\StartupApproved\Run32: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "QuickTime Task"
HKLM\...\StartupApproved\Run32: => "UpdatePDRShortCut"
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\StartupApproved\Run: => "KiesPreload"
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\StartupApproved\Run: => ""
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\StartupApproved\Run: => "SUPERAntiSpyware"
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\StartupApproved\Run: => "Chromium"

==================== Reglas de firewall (Lista blanca) ================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

FirewallRules: [{7BAB65A8-993A-4AB4-800C-F880C6E28682}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE (CyberLink -> CyberLink Corp.)
FirewallRules: [{6CEE71DD-7CB0-46B5-A516-A2D19A376AB5}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe (CyberLink -> CyberLink Corp.)
FirewallRules: [{C960F7AC-D487-4E5C-8E03-4E13229F1414}] => (Allow) C:\Users\BUHO\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{359ADDD5-2E5F-4294-B0DA-6F24F8C4416E}] => (Allow) C:\Users\BUHO\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{2EE9F651-EE4D-4B30-AB42-3D35362884CC}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDirector\PDR.EXE (CyberLink -> CyberLink Corp.)
FirewallRules: [{F6D9ECD6-1492-4474-90E8-3C06F25C6A45}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2260FBFA-270A-4CCA-A5CE-D00F500F53B2}] => (Allow) LPort=2869
FirewallRules: [{2257AF30-BDEA-4DC1-9683-6F4CC12DA0A6}] => (Allow) LPort=1900
FirewallRules: [{B188D0BC-9246-45DF-A183-64A232FAC900}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{BE7C5854-5365-4FFD-BACB-9C1885043EEC}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{7F717530-B21B-4203-8BA7-9461AE121499}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{9ADF974B-3FE6-4105-9FAE-D747FAC8AADE}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{0C3FB038-A9C8-4069-8ECB-557EC1C46BC3}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{A89F8AFC-2C04-4E2D-AE11-BFEC0B1D223D}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{DE0772A6-82F3-4B51-B3AB-3F978EF92BC0}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{6766929E-A0B6-409D-946E-C934E8B9B208}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{1369C7B0-1568-475D-A37B-91FB21B7B029}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{8F280B00-06B0-466D-B3FF-A19144053608}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{9947B4DE-5F33-4997-AE37-ABAC5060CC92}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{61357A33-DE9C-41BB-902F-184EE2EAC282}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{33CDD67A-05A4-4716-9151-21B11700F4EF}] => (Allow) C:\Users\BUHO\AppData\Local\Chromium\Application\chrome.exe (The Chromium Authors) [Archivo no firmado]

==================== Puntos de Restauración =========================

19-12-2019 10:26:48 Punto de control programado
28-12-2019 17:31:08 Punto de control programado
06-01-2020 12:43:29 Punto de control programado
09-01-2020 18:16:20 JRT Pre-Junkware Removal

==================== Dispositivos defectuosos en el Administrador de dispositivos ============


==================== Errores del registro de eventos: ========================

Errores de aplicación:
==================
Error: (01/09/2020 06:16:16 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Google Update Helper -- Error 1316. La cuenta especificada ya existe.

Error: (01/09/2020 06:15:30 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: El programa Explorer.EXE, versión 6.3.9600.18460, dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible acerca del problema, compruebe el historial de problemas en el panel de control Centro de actividades.

Identificador de proceso: 5a4

Hora de inicio: 01d5c7100db43286

Hora de finalización: 390

Ruta de acceso de la aplicación: C:\WINDOWS\Explorer.EXE

Identificador de informe: a20827ba-3303-11ea-801e-d850e6c3792f

Nombre completo de paquete con errores: 

Identificador de aplicación relativa del paquete con errores:


Errores del sistema:
=============
Error: (01/09/2020 06:15:36 PM) (Source: DCOM) (EventID: 10005) (User: BUHO)
Description: Error de DCOM "1053" al intentar iniciar el servicio Disc Soft Lite Bus Service con argumentos "No disponible" para ejecutar el servidor:
{1BB2CAF7-8881-4CE8-B16A-3CA37C7C6F33}

Error: (01/09/2020 06:15:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio Disc Soft Lite Bus Service no pudo iniciarse debido al siguiente error: 
El servicio no respondió a tiempo a la solicitud de inicio o de control.

Error: (01/09/2020 06:15:36 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Se agotó el tiempo de espera (30000 ms) para la conexión con el servicio Disc Soft Lite Bus Service.

Error: (01/09/2020 06:15:06 PM) (Source: DCOM) (EventID: 10005) (User: BUHO)
Description: Error de DCOM "1053" al intentar iniciar el servicio Disc Soft Lite Bus Service con argumentos "No disponible" para ejecutar el servidor:
{1BB2CAF7-8881-4CE8-B16A-3CA37C7C6F33}

Error: (01/09/2020 06:15:06 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio Disc Soft Lite Bus Service no pudo iniciarse debido al siguiente error: 
El servicio no respondió a tiempo a la solicitud de inicio o de control.

Error: (01/09/2020 06:15:06 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Se agotó el tiempo de espera (30000 ms) para la conexión con el servicio Disc Soft Lite Bus Service.

Error: (01/09/2020 06:14:33 PM) (Source: DCOM) (EventID: 10005) (User: BUHO)
Description: Error de DCOM "1053" al intentar iniciar el servicio Disc Soft Lite Bus Service con argumentos "No disponible" para ejecutar el servidor:
{1BB2CAF7-8881-4CE8-B16A-3CA37C7C6F33}

Error: (01/09/2020 06:14:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio Disc Soft Lite Bus Service no pudo iniciarse debido al siguiente error: 
El servicio no respondió a tiempo a la solicitud de inicio o de control.


Windows Defender:
===================================
Date: 2019-10-15 16:02:57.112
Description: 
El examen de Windows Defender se detuvo antes de completarse.
Id. de examen: {D91F16C7-8703-488C-BA9D-CFCB7219D107}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2019-10-15 15:50:00.718
Description: 
El examen de Windows Defender se detuvo antes de completarse.
Id. de examen: {8CA79CC9-894C-41C8-AD49-53DBC7CD8CBF}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2019-10-15 15:06:36.832
Description: 
El examen de Windows Defender se detuvo antes de completarse.
Id. de examen: {C5A61188-7553-4F38-BD2C-D5FC5E06730B}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2019-10-15 14:52:19.730
Description: 
El examen de Windows Defender se detuvo antes de completarse.
Id. de examen: {630E9458-8574-4716-A3BA-387CAADA2CBF}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2019-10-15 14:38:20.829
Description: 
El examen de Windows Defender se detuvo antes de completarse.
Id. de examen: {D03C10FC-18E7-4B8F-ABD4-0EDBE747C361}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2019-10-14 16:56:15.159
Description: 
Windows Defender encontró un error al intentar actualizar las firmas.
Nueva versión de firma: 
Versión de firma anterior: 1.251.379.0
Origen de actualización: Servidor de Microsoft Update
Tipo de firma: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\SYSTEM
Versión de motor actual: 
Versión de motor anterior: 1.1.14104.0
Código de error: 0x8024402f
Descripción del error: Se produjo un problema inesperado mientras se buscaban actualizaciones. Para obtener más información sobre cómo instalar o solucionar problemas en las actualizaciones, consulte Ayuda y soporte técnico. 

Date: 2015-05-10 00:31:00.645
Description: 
La característica Protección en tiempo real de Windows Defender encontró un error:
Característica: Sistema de inspección de red
Código de error: 0x80004005
Descripción del error: Error no especificado 
Motivo: El sistema no tiene las actualizaciones necesarias para ejecutar el Sistema de inspección de red. Instale las actualizaciones requeridas y reinicie el equipo.

Date: 2015-05-10 00:28:52.445
Description: 
El motor de Windows Defender finalizó debido a un error inesperado.
Tipo de error: Bloqueo
Código de excepción: 0xc0000005
Recurso: 

Date: 2015-05-10 00:28:52.425
Description: 
El motor de Windows Defender finalizó debido a un error inesperado.
Tipo de error: Bloqueo
Código de excepción: 0xc0000005
Recurso: 

Date: 2014-04-24 20:54:28.493
Description: 
La característica Protección en tiempo real de Windows Defender encontró un error:
Característica: Sistema de inspección de red
Código de error: 0x80004005
Descripción del error: Error no especificado 
Motivo: La protección antimalware dejó de funcionar por motivos desconocidos. En algunos casos, reiniciar el servicio puede que resuelva el problema.

CodeIntegrity:
===================================

Date: 2020-01-09 18:23:07.825
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET Smart Security\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-01-09 18:23:07.041
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET Smart Security\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-01-09 18:23:05.211
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET Smart Security\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-01-09 18:23:04.398
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET Smart Security\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-01-09 18:23:02.599
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET Smart Security\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-01-09 18:23:01.756
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET Smart Security\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-01-09 18:22:59.990
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET Smart Security\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-01-09 18:22:59.207
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET Smart Security\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

==================== Información de la memoria =========================== 

BIOS: American Megatrends Inc. 0216 04/10/2013
Placa base: ASUSTeK COMPUTER INC. K5130
Procesador: Intel(R) Celeron(R) CPU G1620 @ 2.70GHz
Porcentaje de memoria en uso: 46%
RAM física total: 3786.86 MB
RAM física disponible: 2020.62 MB
Virtual total: 5194.86 MB
Virtual disponible: 3593.97 MB

==================== Unidades ================================

Drive c: (Windows) (Fixed) (Total:149.66 GB) (Free:44.15 GB) NTFS
Drive d: (Data) (Fixed) (Total:758.69 GB) (Free:201.58 GB) NTFS

\\?\Volume{3442eb16-25cb-49f4-9b34-ecbcd5f7ac28}\ (Windows RE tools) (Fixed) (Total:0.78 GB) (Free:0.53 GB) NTFS
\\?\Volume{f1e28343-aeb4-4844-8127-24d46ec2dbdb}\ () (Fixed) (Total:0.34 GB) (Free:0.06 GB) NTFS
\\?\Volume{2aa3b9e6-815f-4c6e-b680-144385367e4c}\ (Recovery image) (Fixed) (Total:21.66 GB) (Free:2.93 GB) NTFS

==================== MBR & Tabla de particiones ====================

==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 81066A0B)

Partition: GPT.

==================== Final de Addition.txt =======================

en principio parece ir algo mas rapido.

Bien… y ahora sigue estos pasos, :arrow_forward: MUY Importante :arrow_backward: Realiza una copia de seguridad del registro :

  • Para hacerlo descarga :arrow_forward: DelFix.exe(en tu escritorio).

  • Doble clic para ejecutarlo.(Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona -Ejecutar como Administrador-).

  • Atención, ahora marca/selecciona únicamente la casilla :white_check_mark: Create registry backup, las demás casillas NO. :face_with_monocle:

  • Pulsar en Run.

Se abrirá el informe (DelFix.txt), guárdalo por si fuera necesario y cierra la herramienta.

:warning: Con los demás programas cerrados ve a :arrow_forward: Inicio :arrow_forward: Ejecutar :arrow_forward: y escribe Notepad.exe.

  • Ahora debes copiar y pegar los códigos/líneas que están en el interior del recuadro de más abajo, dentro del Notepad.
START
CREATERESTOREPOINT:
CLOSEPROCESSES:
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\ChromeHTML: -> <==== ATENCIÓN
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Ningún archivo
AlternateDataStreams: C:\Users\BUHO\Datos de programa:6699d3ee8dd9cf775caae782c8f44f03 [394]
AlternateDataStreams: C:\Users\BUHO\AppData\Roaming:6699d3ee8dd9cf775caae782c8f44f03 [394]
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\StartupApproved\Run: => ""
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\StartupApproved\Run: => "Chromium"
HKLM\...\StartupApproved\StartupFolder: => "McAfee Security Scan Plus.lnk"
ShortcutWithArgument: C:\Users\BUHO\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\989f111b565964b\Chromium.lnk -> C:\Users\BUHO\AppData\Local\chromium\Application\chrome.exe (The Chromium Authors) -> --profile-directory=Default
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\Run: [Chromium] => "c:\users\buho\appdata\local\chromium\application\chrome.exe" --auto-launch-at-startup --profile-directory="Default" --restore-last-session
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\MountPoints2: G - "G:\Setup.exe"
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\MountPoints2: {e3324b76-99aa-11e9-bfed-d850e6c3792f} - "F:\HiSuiteDownLoader.exe"
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\79.0.3945.88\Installer\chrmstp.exe [2019-12-17] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2019-05-03] (Adobe Inc. -> Adobe Systems, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk [2014-03-24]
ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) [Archivo no firmado]
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN
Task: {44F911DA-3CD9-4E9E-9D3F-ABA1B724CD5D} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1873288 2019-12-02] (AVAST Software s.r.o. -> AVAST Software)
Task: {E93AEE86-16CA-4D0E-8FB9-BC01DCA9BE64} - System32\Tasks\Ralilobof\{2AF63B2B-055B-1AF0-1AC7-575379802EA8} => C:\Users\BUHO\AppData\Roaming\2AF63B2B-055B-1AF0-1AC7-575379802EA8\Ralilobof.exe [2204672 2013-04-13] () [Archivo no firmado] <==== ATENCIÓN
SearchScopes: HKU\S-1-5-21-3891384046-228090290-3191749971-1001 -> DefaultScope {26080cad-4adc-49ac-8c63-eda16e595cbd} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-8b26bd9842fe840d&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3891384046-228090290-3191749971-1001 -> {26080cad-4adc-49ac-8c63-eda16e595cbd} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-8b26bd9842fe840d&q={searchTerms}
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2020-01-04] (McAfee, LLC -> McAfee, Inc.)
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - Ningún archivo
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - Ningún archivo
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - Ningún archivo
FF Extension: (Sin Nombre) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [no encontrado]
FF Extension: (Sin Nombre) - C:\Program Files\McAfee\WebAdvisor\saffplg.xpi [no encontrado]
FF Extension: (Sin Nombre) - C:\Program Files\McAfee\WebAdvisorsaffplg.xpi [no encontrado]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2020-01-04]
FF HKLM\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird => no encontrado
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF HKLM-x32\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird => no encontrado
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-13] (Google LLC -> Google LLC)
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [kpdmjodecdegfglgaapafjleomjjlpnh]
U3 aswbdisk; no ImagePath
S0 edevmon; system32\DRIVERS\edevmon.sys [X]
S2 memudrv; \??\F:\MEMU\MEmuHyperv\MEmuDrv.sys [X]
S3 xhunter1; \??\C:\WINDOWS\xhunter1.sys [X]
2020-01-04 17:06 - 2020-01-04 17:06 - 000000000 ____D C:\Program Files\McAfee
HOSTS:
REMOVEPROXY:
EMPTYTEMP:
CMD: netsh winsock reset
CMD: ipconfig /renew
CMD: ipconfig /flushdns
CMD: bitsadmin /reset /allusers
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
END

Guárdalo bajo el nombre de FIXLIST.TXT en el escritorio :arrow_backward: Esto es muy importante.

:o: Nota :o: Es importante que la herramienta FRST.exe(Farbar Recovery Scanner Tool) y FIXLIST.TXT se encuentren en la misma ubicación (escritorio) o si no, no trabajara.

Y ahora usa el 2º MÉTODO: de esta Faq de Windows 8(aplicable a Windows 10) :arrow_forward: ¿Cómo iniciar Windows 8/8.1 en Modo Seguro?, para trabajar desde ese modo de windows.

  • Ejecuta FRST.exe.(Si usas Windows Vista/7/8 o 10, presiona clic derecho y seleccionas -Ejecutar como Administrador-).

  • Presionar el botón FIX/Corregir y aguardar a que termine.

  • La Herramienta guardara el reporte de reparación en el escritorio (FIXLOG.TXT).

Pegar el contenido de este fichero en tu próxima respuesta. :+1:

Reiniciar el equipo y comprobar su funcionamiento en relación al problema planteado y comentarlo.

Saludos.

Hola. adjunto el informe


Resultados de la corrección de Farbar Recovery Scan Tool (x64) Versión: 08-01-2020
Ejecutado por BUHO (11-01-2020 14:43:23) Run:1
Ejecutado desde C:\Users\BUHO\Desktop
Perfiles cargados: BUHO (Perfiles disponibles: BUHO)
Modo de Inicio: Safe Mode (with Networking)
==============================================

fixlist contenido:
*****************
START
CREATERESTOREPOINT:
CLOSEPROCESSES:
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\ChromeHTML: -> <==== ATENCI�N
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Ning�n archivo
AlternateDataStreams: C:\Users\BUHO\Datos de programa:6699d3ee8dd9cf775caae782c8f44f03 [394]
AlternateDataStreams: C:\Users\BUHO\AppData\Roaming:6699d3ee8dd9cf775caae782c8f44f03 [394]
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\StartupApproved\Run: => ""
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\StartupApproved\Run: => "Chromium"
HKLM\...\StartupApproved\StartupFolder: => "McAfee Security Scan Plus.lnk"
ShortcutWithArgument: C:\Users\BUHO\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\989f111b565964b\Chromium.lnk -> C:\Users\BUHO\AppData\Local\chromium\Application\chrome.exe (The Chromium Authors) -> --profile-directory=Default
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\Run: [Chromium] => "c:\users\buho\appdata\local\chromium\application\chrome.exe" --auto-launch-at-startup --profile-directory="Default" --restore-last-session
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\MountPoints2: G - "G:\Setup.exe"
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\MountPoints2: {e3324b76-99aa-11e9-bfed-d850e6c3792f} - "F:\HiSuiteDownLoader.exe"
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\79.0.3945.88\Installer\chrmstp.exe [2019-12-17] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2019-05-03] (Adobe Inc. -> Adobe Systems, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk [2014-03-24]
ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) [Archivo no firmado]
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricci�n <==== ATENCI�N
Task: {44F911DA-3CD9-4E9E-9D3F-ABA1B724CD5D} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1873288 2019-12-02] (AVAST Software s.r.o. -> AVAST Software)
Task: {E93AEE86-16CA-4D0E-8FB9-BC01DCA9BE64} - System32\Tasks\Ralilobof\{2AF63B2B-055B-1AF0-1AC7-575379802EA8} => C:\Users\BUHO\AppData\Roaming\2AF63B2B-055B-1AF0-1AC7-575379802EA8\Ralilobof.exe [2204672 2013-04-13] () [Archivo no firmado] <==== ATENCI�N
SearchScopes: HKU\S-1-5-21-3891384046-228090290-3191749971-1001 -> DefaultScope {26080cad-4adc-49ac-8c63-eda16e595cbd} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-8b26bd9842fe840d&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3891384046-228090290-3191749971-1001 -> {26080cad-4adc-49ac-8c63-eda16e595cbd} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-8b26bd9842fe840d&q={searchTerms}
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2020-01-04] (McAfee, LLC -> McAfee, Inc.)
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - Ning�n archivo
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - Ning�n archivo
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - Ning�n archivo
FF Extension: (Sin Nombre) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [no encontrado]
FF Extension: (Sin Nombre) - C:\Program Files\McAfee\WebAdvisor\saffplg.xpi [no encontrado]
FF Extension: (Sin Nombre) - C:\Program Files\McAfee\WebAdvisorsaffplg.xpi [no encontrado]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Extension: (McAfee� WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2020-01-04]
FF HKLM\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird => no encontrado
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF HKLM-x32\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird => no encontrado
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-13] (Google LLC -> Google LLC)
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [kpdmjodecdegfglgaapafjleomjjlpnh]
U3 aswbdisk; no ImagePath
S0 edevmon; system32\DRIVERS\edevmon.sys [X]
S2 memudrv; \??\F:\MEMU\MEmuHyperv\MEmuDrv.sys [X]
S3 xhunter1; \??\C:\WINDOWS\xhunter1.sys [X]
2020-01-04 17:06 - 2020-01-04 17:06 - 000000000 ____D C:\Program Files\McAfee
HOSTS:
REMOVEPROXY:
EMPTYTEMP:
CMD: netsh winsock reset
CMD: ipconfig /renew
CMD: ipconfig /flushdns
CMD: bitsadmin /reset /allusers
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
END
*****************

Error: El punto de restauración solamente puede ser creado en modo normal.
Procesos cerrados correctamente.
HKU\S-1-5-21-3891384046-228090290-3191749971-1001_Classes\ChromeHTML => eliminado correctamente
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => eliminado correctamente
C:\Users\BUHO\Datos de programa => ":6699d3ee8dd9cf775caae782c8f44f03" ADS eliminado correctamente
"C:\Users\BUHO\AppData\Roaming" => ":6699d3ee8dd9cf775caae782c8f44f03" ADS no encontrado.
"HKU\S-1-5-21-3891384046-228090290-3191749971-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\StartupApproved\Run: => """ => no encontrado
"HKU\S-1-5-21-3891384046-228090290-3191749971-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\HKU\S-1-5-21-3891384046-228090290-3191749971-1001\...\StartupApproved\Run: => """ => no encontrado
"HKU\S-1-5-21-3891384046-228090290-3191749971-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\Chromium" => eliminado correctamente
"HKU\S-1-5-21-3891384046-228090290-3191749971-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Chromium" => eliminado correctamente
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk" => no encontrado
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder\\McAfee Security Scan Plus.lnk" => eliminado correctamente
C:\Users\BUHO\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\989f111b565964b\Chromium.lnk => Acceso directo argumento eliminado correctamente
"HKU\S-1-5-21-3891384046-228090290-3191749971-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Chromium" => no encontrado
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\G => eliminado correctamente
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e3324b76-99aa-11e9-bfed-d850e6c3792f} => eliminado correctamente
HKLM\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96} => eliminado correctamente
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96} => eliminado correctamente
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components\{A6EADE66-0000-0000-484E-7E8A45000000} => eliminado correctamente
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk => movido correctamente
C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe => movido correctamente
HKLM\SOFTWARE\Policies\Mozilla => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{44F911DA-3CD9-4E9E-9D3F-ABA1B724CD5D}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{44F911DA-3CD9-4E9E-9D3F-ABA1B724CD5D}" => eliminado correctamente
C:\WINDOWS\System32\Tasks\Avast Software\Overseer => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Avast Software\Overseer" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E93AEE86-16CA-4D0E-8FB9-BC01DCA9BE64}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E93AEE86-16CA-4D0E-8FB9-BC01DCA9BE64}" => eliminado correctamente
C:\WINDOWS\System32\Tasks\Ralilobof\{2AF63B2B-055B-1AF0-1AC7-575379802EA8} => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Ralilobof\{2AF63B2B-055B-1AF0-1AC7-575379802EA8}" => eliminado correctamente
"HKU\S-1-5-21-3891384046-228090290-3191749971-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => eliminado correctamente
HKU\S-1-5-21-3891384046-228090290-3191749971-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{26080cad-4adc-49ac-8c63-eda16e595cbd} => eliminado correctamente
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} => eliminado correctamente
HKLM\Software\Wow6432Node\Classes\CLSID\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} => eliminado correctamente
HKLM\Software\Classes\PROTOCOLS\Handler\livecall => eliminado correctamente
HKLM\Software\Classes\PROTOCOLS\Handler\msnim => eliminado correctamente
HKLM\Software\Classes\PROTOCOLS\Handler\sacore => eliminado correctamente
C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi => ruta eliminado correctamente
C:\Program Files\McAfee\WebAdvisor\saffplg.xpi => ruta eliminado correctamente
C:\Program Files\McAfee\WebAdvisorsaffplg.xpi => ruta eliminado correctamente
"HKLM\Software\Mozilla\Firefox\Extensions\\{4ED1F68A-5463-4931-9384-8FFF5ED91D92}" => eliminado correctamente
C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi => movido correctamente
"HKLM\Software\Mozilla\Thunderbird\Extensions\\[email protected]" => eliminado correctamente
"HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\{4ED1F68A-5463-4931-9384-8FFF5ED91D92}" => eliminado correctamente
"HKLM\Software\Wow6432Node\Mozilla\Thunderbird\Extensions\\[email protected]" => eliminado correctamente
"HKLM\Software\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-13] (Google LLC" => no encontrado
C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll => movido correctamente
HKLM\SOFTWARE\Google\Chrome\Extensions\fheoggkfdfchfphceeifdbepaooicaho => eliminado correctamente
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\efaidnbmnnnibpcajpcglclefindmkaj => eliminado correctamente
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fheoggkfdfchfphceeifdbepaooicaho => eliminado correctamente
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\kpdmjodecdegfglgaapafjleomjjlpnh => eliminado correctamente
HKLM\System\CurrentControlSet\Services\aswbdisk => eliminado correctamente
aswbdisk => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\edevmon => eliminado correctamente
edevmon => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\memudrv => eliminado correctamente
memudrv => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\xhunter1 => eliminado correctamente
xhunter1 => servicio eliminado correctamente
C:\Program Files\McAfee => movido correctamente
C:\Windows\System32\Drivers\etc\hosts => movido correctamente
Hosts restaurado correctamente.

========= RemoveProxy: =========

"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente
"HKU\S-1-5-21-3891384046-228090290-3191749971-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\S-1-5-21-3891384046-228090290-3191749971-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente


========= Final de RemoveProxy: =========


========= netsh winsock reset =========


El cat logo Winsock se restableci¢ correctamente.
Debe reiniciar el equipo para completar el restablecimiento.


========= Final de CMD: =========


========= ipconfig /renew =========


Configuraci¢n IP de Windows


Adaptador de Ethernet Ethernet:

   Sufijo DNS espec¡fico para la conexi¢n. . : 
   V¡nculo: direcci¢n IPv6 local. . . : fe80::e050:32d3:9ad7:e2e3%2
   Direcci¢n IPv4. . . . . . . . . . . . . . : 192.168.0.154
   M scara de subred . . . . . . . . . . . . : 255.255.255.0
   Puerta de enlace predeterminada . . . . . : 192.168.0.1

========= Final de CMD: =========


========= ipconfig /flushdns =========


Configuraci¢n IP de Windows

Se vaci¢ correctamente la cach‚ de resoluci¢n de DNS.

========= Final de CMD: =========


========= bitsadmin /reset /allusers =========


BITSADMIN version 3.0 [ 7.7.9600 ]
BITS administration utility.
(C) Copyright 2000-2006 Microsoft Corp.

BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.

Unable to connect to BITS - 0x8007042c
No se puede iniciar el servicio o grupo de dependencia.



========= Final de CMD: =========


========= netsh advfirewall reset =========

Aceptar


========= Final de CMD: =========


========= netsh advfirewall set allprofiles state ON =========

Aceptar


========= Final de CMD: =========


========= netsh int ipv4 reset =========

Global se restableci¢ correctamente.
Interfaz se restableci¢ correctamente.
Vecino se restableci¢ correctamente.
Ruta de acceso se restableci¢ correctamente.
Error al restablecer .
Acceso denegado.

 se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.


========= Final de CMD: =========


========= netsh int ipv6 reset =========

Interfaz se restableci¢ correctamente.
Vecino se restableci¢ correctamente.
Ruta de acceso se restableci¢ correctamente.
Error al restablecer .
Acceso denegado.

 se restableci¢ correctamente.
 se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.


========= Final de CMD: =========


=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 228915478 B
Java, Flash, Steam htmlcache => 1124 B
Windows/system/drivers => 1731105 B
Edge => 0 B
Chrome => 509842199 B
Firefox => 20866407 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 128 B
systemprofile32 => 31422 B
LocalService => 31422 B
NetworkService => 937374 B
BUHO => 6329283 B

RecycleBin => 0 B
EmptyTemp: => 741.1 MB datos temporales eliminados.

================================


El sistema necesita reiniciarse.

==== Final de Fixlog 14:44:01 ====

la verdad es que se nota mucho mas rapido. pero sigue apareciendo el mensaje de pawotapu.com quiere ejecutarse. un saludo

Y ese mensaje te aparece justo en que momento…??

Y usando que navegador…??

Te salta el mensaje por parte del antivirus o donde sale ese mensaje…??

uso el navegador chrome. el mensaje sale del antivirus nod32. sale cuanda navego por internet

En cuanto a Chrome…una pregunta, :thinking: tienes ese navegador con la opción de “Sincronización” activada.??

Revisalo siguiendo estos pasos :

  • Escribes en la barra de direcciones chrome://settings/syncSetup

Y comprueba/desactiva la opción “Sincronizar todo” y después de hacerlo :

  • Escribes en la barra de direcciones chrome://settings/resetProfileSettings y aceptas la opción de “Restablecer la configuración”.

Despues de hacerlo cierras el navegador lo vuelves a iniciar y compruebas el problema.

Nos comentas resultados. :thinking:

Saludos.

no esta activa la sincronizacion.

Perfecto. :+1:

Pues realiza el siguiente paso para "Restablecer la configuración”.

Nos comentas.

ya esta hecho y significativamente funciona mas rapido. ahora lo que me sucede es que me quedo sin conexion de internet y tengo que reiniciar varias veces para volver a tener internet. he de crear otro tema o se puede ver de solucionar aqui mismo?

Hola.

El mensaje(pawotapu .com)que te salia YA NO sale…??

Esos problemas de conexión a Internet que ahora tienes han parecido justo en que momento…??

hola el mensaje de pawotapu ya no sale por fin. y de momento tampoco ha habido problemas de cortes de internet. asi que gracias por todo, y puedes dar el tema por solucionado.

Perfecto @TBTMCV :+1: excelente, nos alegra ver que ya está el problema inicial completamente arreglado, ahora solo queda eliminar las herramientas usadas.

Para hacerlo descarga :arrow_forward: DelFix.exe en tu escritorio.

  • Doble clic para ejecutarlo. (Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona - Ejecutar como Administrador -).

  • Marca todas las casillas, y pulsas en Run

Se abrirá el informe (DelFix.txt), puedes cerrarlo.


Para cualquier otro problema, no dudes en volver a postear., ya sabes dónde estamos. :+1:

Tema Solucionado.

Saludos, Javier.