Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 25-11-2019 01
Ran by Juanvi Maciá (administrator) on JUANVIMACIA-PC (ASUSTeK Computer Inc. K53SV) (27-11-2019 17:47:27)
Running from C:\Users\Juanvi Maciá\Desktop
Loaded Profiles: Juanvi Maciá (Available Profiles: Juanvi Maciá & DefaultAppPool)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Español (España, internacional)
Internet Explorer Version 11 (Default browser: Opera)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(ASUSTeK Computer Inc. -> ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUSTeK Computer Inc. -> ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel(R) Turbo Boost Technology Monitor -> Intel(R) Corporation) C:\Program Files\Intel\TurboBoost\TurboBoost.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Native Instruments GmbH) [File not signed] C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files (x86)\Opera\65.0.3467.48\opera_crashreporter.exe
(Paragon Software GmbH -> ) C:\Program Files (x86)\Paragon Software\HFS+ for Windows\apmwinsrv.exe
(Ralink Technology Corporation -> Ralink Technology, Corp.) C:\Program Files (x86)\TP-LINK\COMMON\RaRegistry.exe
(Ralink Technology Corporation -> Ralink Technology, Corp.) C:\Program Files (x86)\TP-LINK\COMMON\RaRegistry64.exe
(RealNetworks, Inc. -> ) C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(SIEMENS AG -> Siemens AG) C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\pniomgr.exe
(Siemens AG -> SIEMENS AG) C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7epasrv64x.exe
(Siemens AG -> SIEMENS AG) C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oiehsx64.exe
(Siemens AG -> SIEMENS AG) C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oPNDiscoveryx64.exe
(Siemens AG -> SIEMENS AG) C:\Program Files\Common Files\Siemens\Automation\TraceEngine\bin\S7TraceService64x.exe
(Trend Micro, Inc. -> Trend Micro Inc.) C:\Program Files\Trend Micro\Titanium\TiMiniService.exe
(Trend Micro, Inc. -> Trend Micro Inc.) C:\Program Files\Trend Micro\Titanium\TiResumeSrv.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Trend Micro Client Framework] => C:\Program Files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe [192520 2010-10-12] (Trend Micro, Inc. -> Trend Micro Inc.)
HKLM\...\Run: [IntelPAN] => C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1935120 2011-05-02] (Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation)
HKLM\...\Run: [PAC7302_Monitor] => C:\Windows\PixArt\PAC7302\Monitor.exe [319488 2006-11-03] (PixArt Imaging Inc. -> PixArt Imaging Incorporation)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5732992 2010-08-17] (ASUSTeK Computer Inc. -> ASUS)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-07] (ASUSTeK Computer Inc. -> ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUSTeK Computer Inc. -> ASUS)
HKLM-x32\...\Run: [Wireless Console 3] => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1601536 2010-09-24] () [File not signed]
HKU\S-1-5-21-1893348870-2340729745-2570756490-1001\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-06] (Acresso Software Inc. -> Acresso Corporation)
HKU\S-1-5-21-1893348870-2340729745-2570756490-1001\...\Run: [f.lux] => C:\Users\Juanvi Maciá\AppData\Local\FluxSoftware\Flux\flux.exe [1384968 2019-08-16] (F.lux Software LLC -> f.lux Software LLC)
HKU\S-1-5-21-1893348870-2340729745-2570756490-1001\...\Policies\Explorer: [NoSaveSettings] 0
HKU\S-1-5-21-1893348870-2340729745-2570756490-1001\...\MountPoints2: {bbd55c10-a03a-11e9-b251-14dae9cb0def} - G:\OnePlus_setup.exe /s
HKU\S-1-5-21-1893348870-2340729745-2570756490-1001\...\Winlogon: [Shell] C:\Windows\Explorer.exe [3229696 2016-08-29] (Microsoft Windows -> Microsoft Corporation) <==== ATTENTION
HKU\S-1-5-18\...\Run: [KSS] => "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan\kss.exe" autorun
HKLM\Software\...\AppCompatFlags\Custom\Siemens.Automation.Portal.exe: [{fdfc9ea1-fd21-4102-983e-f54931742522}.sdb] -> Siemens.Automation.Portal.exe
HKLM\Software\...\AppCompatFlags\InstalledSDB\{fdfc9ea1-fd21-4102-983e-f54931742522}: [DatabasePath] -> C:\Windows\AppPatch\Custom\{fdfc9ea1-fd21-4102-983e-f54931742522}.sdb [2014-12-17]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\69.0.3497.92\Installer\chrmstp.exe [2018-09-11] (Google Inc -> Google Inc.)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\...\Authentication\Credential Providers: [{06FE45A8-6D92-44ba-A0F1-9A9BCDC8F5A7}] -> C:\Program Files (x86)\ASUS\SmartLogon\system\FaceCredentialProvider64.dll [2011-01-10] (ASUSTeK Computer Inc. -> ASUS)
HKLM\Software\...\Authentication\Credential Providers: [{F8A0B131-5F68-486c-8040-7E8FC3C85BB6}] -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL [2011-03-28] (Microsoft Corporation -> Microsoft Corp.)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [182784 2019-11-26] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [159704 2019-11-26] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TP-LINK Wireless Client Utility.lnk [2016-10-30]
ShortcutTarget: TP-LINK Wireless Client Utility.lnk -> C:\Program Files (x86)\TP-LINK\COMMON\TWCU.exe (TP-LINK Technology, Corp.) [File not signed]
Startup: C:\Users\Juanvi Maciá\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DesktopEarth AutoStart.lnk [2016-10-30]
ShortcutTarget: DesktopEarth AutoStart.lnk -> C:\Program Files (x86)\DesktopEarth\DesktopEarth.exe (Marton Anka -> Marton Anka, Inc.)
BootExecute: autocheck autochk *
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {07920ED0-164D-4755-9B2A-1EA5A8443DCF} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [657856 2018-01-04] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {0913C241-2FE2-46E4-83B5-A7F7B14D7F7F} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [745920 2018-01-04] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {121829BD-A6B4-4EB1-82FF-8DB6294AC8DF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {130C7818-2FE1-4450-852D-FBA6334778C1} - System32\Tasks\{0F5D3E9E-4829-4288-82A1-46DDE9019FC2} => C:\Windows\system32\pcalua.exe -a E:\setup.exe -d E:\
Task: {13D0DC0B-55D8-4ABC-B087-5CBCE6D73BBE} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-1893348870-2340729745-2570756490-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [187984 2013-08-14] (RealNetworks, Inc. -> RealNetworks, Inc.)
Task: {16C3F571-EAC9-4AEB-A549-C8F67945AC8D} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1893348870-2340729745-2570756490-1001 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [187984 2013-08-14] (RealNetworks, Inc. -> RealNetworks, Inc.)
Task: {18DA91FB-A5F6-43C7-880B-40F7DB58D14C} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe
Task: {23255536-36F7-4469-A864-A47C016901BD} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [977024 2010-12-02] (ASUSTeK Computer Inc. -> ASUS)
Task: {2EF4BF13-0392-465E-BBB8-9D8DA290124C} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1506384 2019-11-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {461B903E-24E3-4877-8016-E81F9944F49B} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [964544 2018-01-04] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {46EBDA77-7BC5-46AF-8A87-0EE96A47E703} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1893348870-2340729745-2570756490-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [187984 2013-08-14] (RealNetworks, Inc. -> RealNetworks, Inc.)
Task: {554AB856-D024-416A-BD2A-B712B26DA160} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [657856 2018-01-04] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {56A8204E-7A5C-4EDE-91EC-1C500B465A8D} - System32\Tasks\{DD183FE3-30C1-4178-8E71-AE6ADF177BB3} => C:\Windows\system32\pcalua.exe -a F:\SONIDO\ASIO4ALL_2_7_English.exe -d F:\SONIDO
Task: {5B607613-3356-4EFC-B02C-41BD73DD1405} - System32\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-1893348870-2340729745-2570756490-1001 => C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe [233048 2013-08-14] (RealNetworks, Inc. -> RealNetworks, Inc.)
Task: {60F398C6-F009-4FEB-B4EF-955537F134F2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2017-04-20] (Google Inc -> Google Inc.)
Task: {72ADBBA1-4FF3-4AA3-866B-CE5F2C6AD3A4} - System32\Tasks\{E15AFA55-BD3F-47A3-9762-E5FB6961929F} => C:\Windows\system32\pcalua.exe -a "D:\Cavanilles 2015-16\Integración de Sistemas\TIA13\SP1\dotnetfx35.exe" -d "D:\Cavanilles 2015-16\Integración de Sistemas\TIA13\SP1"
Task: {785E20C7-EBD9-4798-A7AF-709490C53E7F} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-14] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {7A76BBC0-F7B0-4A08-A29E-61BC03F46AA2} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [521152 2018-01-04] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7FD56C79-39E2-48D3-934B-8FBDA8776F1A} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2018-01-04] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {84A77F86-B445-48DE-B57F-B89B693CD5C2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2017-04-20] (Google Inc -> Google Inc.)
Task: {898A6E74-8509-49E5-A2F8-C6ED4A7BB33A} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984 2011-06-01] (Apple Inc. -> Apple Inc.)
Task: {93A4B1BD-CBA3-41CE-B116-22860FA03423} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [1864640 2018-01-04] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {9497A1D7-93AF-4C2B-B5BE-BE542BE7624D} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems)
Task: {9F226DE9-1AC7-4793-9AA8-0AB0843CDA26} - System32\Tasks\{A6D8E19A-B8B9-4040-A896-E5AC72843642} => C:\Windows\system32\pcalua.exe -a "C:\Users\Juanvi Maciá\Desktop\setup.exe" -d "C:\Users\Juanvi Maciá\Desktop"
Task: {AB6B9B39-50E3-4CED-A819-CA70224DF96A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-11-14] (Adobe Inc. -> Adobe)
Task: {AC51A54D-931B-43B0-A0C6-B112C5D4E53B} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1893348870-2340729745-2570756490-1001 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [187984 2013-08-14] (RealNetworks, Inc. -> RealNetworks, Inc.)
Task: {BB8F52CF-5C89-41D5-8EDF-D006A62896C2} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-1893348870-2340729745-2570756490-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [187984 2013-08-14] (RealNetworks, Inc. -> RealNetworks, Inc.)
Task: {C791F54F-B798-44AD-A4A9-A33859A75DC9} - System32\Tasks\Opera scheduled Autoupdate 1409512163 => C:\Program Files (x86)\Opera\launcher.exe [1528344 2019-11-20] (Opera Software AS -> Opera Software)
Task: {C856626B-FC6D-417A-94F1-44EBF31933D8} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [305792 2010-11-15] (ASUSTeK Computer Inc. -> ASUS)
Task: {C9BAD74F-CB8E-4A8D-B3FF-538D5E58D155} - System32\Tasks\{BC735718-C399-4862-9931-0B8F16D9A8CF} => C:\Windows\system32\pcalua.exe -a E:\Autorun.exe -d E:\
Task: {D02FCF48-91BA-424B-89AD-30C91DFD2D45} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {D77B5F4C-9E68-4961-8232-9A41EC478E4D} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5732992 2010-08-17] (ASUSTeK Computer Inc. -> ASUS)
Task: {D9715896-039E-41E5-A7ED-A3665440E834} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1893348870-2340729745-2570756490-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [187984 2013-08-14] (RealNetworks, Inc. -> RealNetworks, Inc.)
Task: {DC3518AB-07D1-4E0E-A006-EFD7A7AE2D43} - System32\Tasks\RtHDVBg_ListenToDevice => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1506384 2019-11-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {DE564331-9D22-465C-A336-2BD546DF7EFB} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-14] (Piriform Software Ltd -> Piriform Ltd)
Task: {EB7B1D38-3DF5-47F6-879E-673D79C173C6} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [745920 2018-01-04] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {EDA355AA-09BB-4B31-A3DC-E111C158EB90} - System32\Tasks\GU5SkipUAC => C:\Program Files (x86)\Glary Utilities 5\Integrator.exe [915952 2019-03-25] (Glarysoft LTD -> Glarysoft Ltd)
Task: {F0D3089D-D5BC-4783-8573-9221F79F539C} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_293_pepper.exe [1453112 2019-11-14] (Adobe Inc. -> Adobe)
Task: {F6684217-46E9-48B2-A385-3D9D1381833F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 07 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280 2011-03-28] (Microsoft Corporation -> Microsoft Corp.)
Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280 2011-03-28] (Microsoft Corporation -> Microsoft Corp.)
Winsock: Catalog5 10 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 07 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171392 2011-03-28] (Microsoft Corporation -> Microsoft Corp.)
Winsock: Catalog5-x64 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171392 2011-03-28] (Microsoft Corporation -> Microsoft Corp.)
Winsock: Catalog5-x64 10 C:\Program Files\Bonjour\mdnsNSP.dll [132968 2011-08-30] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{FB8CD6A2-D505-43A2-9484-B06CDEEBF17B}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP06&src=IE-SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP06&src=IE-SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP06&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP06&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-1893348870-2340729745-2570756490-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: TmIEPlugInBHO Class -> {1CA1377B-DC1D-4A52-9585-6E06050FAC53} -> C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg.dll [2010-09-17] (Trend Micro, Inc. -> Trend Micro Inc.)
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2019-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corporation -> Microsoft Corp.)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2011-04-13] (Google Inc -> Google Inc.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll [2011-04-13] (Google Inc -> Google Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
BHO: TmBpIeBHO Class -> {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} -> C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe64.dll [2010-09-17] (Trend Micro, Inc. -> Trend Micro Inc.)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: TmIEPlugInBHO Class -> {1CA1377B-DC1D-4A52-9585-6E06050FAC53} -> C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg32.dll [2010-09-17] (Trend Micro, Inc. -> Trend Micro Inc.)
BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2013-08-14] (RealNetworks, Inc. -> RealDownloader)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2019-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Aplicación auxiliar de inicio de sesión de Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corporation -> Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: TmBpIeBHO Class -> {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} -> C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe32.dll [2010-09-17] (Trend Micro, Inc. -> Trend Micro Inc.)
BHO-x32: Google Dictionary Compression sdch -> {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} -> C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll [2011-04-13] (Google Inc -> Google Inc.)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation -> Microsoft Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2011-04-13] (Google Inc -> Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2011-04-13] (Google Inc -> Google Inc.)
Handler: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe64.dll [2010-09-17] (Trend Micro, Inc. -> Trend Micro Inc.)
Handler-x32: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe32.dll [2010-09-17] (Trend Micro, Inc. -> Trend Micro Inc.)
Handler: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg.dll [2010-09-17] (Trend Micro, Inc. -> Trend Micro Inc.)
Handler-x32: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg32.dll [2010-09-17] (Trend Micro, Inc. -> Trend Micro Inc.)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
FireFox:
========
FF HKLM-x32\...\Firefox\Extensions: [{22C7F6C6-8D67-4534-92B5-529A0EC09405}] - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\firefoxextension
FF Extension: (Trend Micro NSC Firefox Extension) - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\firefoxextension [2011-04-13] [Legacy] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: (RealDownloader) - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013-09-12] [Legacy] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [No File]
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll [No File]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-07-19] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @real.com/nppl3260;version=16.0.3.51 -> c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll [2013-09-12] (RealNetworks, Inc. -> RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlchromebrowserrecordext;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll [2013-08-14] (RealNetworks, Inc.) [File not signed]
FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll [2013-08-14] (RealNetworks, Inc.) [File not signed]
FF Plugin-x32: @real.com/nprndlpepperflashvideoshim;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll [2013-08-14] (RealNetworks, Inc.) [File not signed]
FF Plugin-x32: @real.com/nprpchromebrowserrecordext;version=15.0.6.14 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll [2012-10-18] (RealNetworks, Inc.) [File not signed]
FF Plugin-x32: @real.com/nprphtml5videoshim;version=15.0.6.14 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll [2012-10-18] (RealNetworks, Inc.) [File not signed]
FF Plugin-x32: @real.com/nprpplugin;version=16.0.3.51 -> c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll [2013-09-12] (RealNetworks, Inc. -> RealPlayer)
FF Plugin-x32: @realnetworks.com/npdlplugin;version=1 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll [2013-08-14] (RealNetworks, Inc. -> RealDownloader)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-08-30] (Google Inc -> Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-08-30] (Google Inc -> Google Inc.)
FF Plugin-x32: @www.dlmanager.net/omaha/tools//Software Update;version=8 -> C:\Program Files (x86)\Software\Update\1.2.201.0\npSoftwareOneClick8.dll [No File]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-10-16] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: ZEON/PDF,version=2.0 -> C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll [2010-01-23] (Zeon Corporation -> Zeon Corporation)
FF Plugin HKU\S-1-5-21-1893348870-2340729745-2570756490-1001: @octoshape.com/Octoshape Streaming Services,version=1.0 -> C:\Users\Juanvi Maciá\AppData\Roaming\Octoshape\Octoshape Streaming Services\sua-1103234-0-npoctoshape.dll [2011-03-23] (Octoshape -> Octoshape ApS)
FF Plugin HKU\S-1-5-21-1893348870-2340729745-2570756490-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Juanvi Maciá\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-12-17] (Unity Technologies ApS -> Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Users\Juanvi Maciá\AppData\Roaming\mozilla\plugins\npoctoshape.dll [2014-05-08]
FF Plugin ProgramFiles/Appdata: C:\Users\Juanvi Maciá\AppData\Roaming\mozilla\plugins\npPxPlay.dll [2014-05-08]
StartMenuInternet: FIREFOX.EXE - firefox.exe
Chrome:
=======
CHR DefaultProfile: Default
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\Juanvi Maciá\AppData\Local\Google\Chrome\User Data\Default [2019-11-27]
CHR Extension: (Tampermonkey) - C:\Users\Juanvi Maciá\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2018-09-12]
CHR Extension: (RealDownloader) - C:\Users\Juanvi Maciá\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji [2017-04-20]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Juanvi Maciá\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Chrome Media Router) - C:\Users\Juanvi Maciá\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-11-05]
CHR HKU\S-1-5-21-1893348870-2340729745-2570756490-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [dhdgffkkebhmkfjojejmpbldmpobfkfo] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-08-14]
Opera:
=======
OPR Notifications: hxxps://web.wallapop.com; hxxps://www.facebook.com; hxxps://www.hola.com; hxxps://www.youtube.com
OPR Extension: (uBlock Origin) - C:\Users\Juanvi Maciá\AppData\Roaming\Opera Software\Opera Stable\Extensions\kccohkcpppjjkkjppopfnflnebibpida [2019-11-20]
OPR Extension: (Stylus) - C:\Users\Juanvi Maciá\AppData\Roaming\Opera Software\Opera Stable\Extensions\kdinfjomkigjcjcbigolloleeiianaif [2019-08-20]
OPR Extension: (minerBlock) - C:\Users\Juanvi Maciá\AppData\Roaming\Opera Software\Opera Stable\Extensions\ommpkaoknnopoeipocpeenjolbnabkfm [2019-06-23]
StartMenuInternet: (HKLM) Opera - C:\Program Files\Opera x64\Opera.exe
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 Amsp; C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe [267480 2010-09-17] (Trend Micro, Inc. -> Trend Micro Inc.)
R2 apmwinsrv; C:\Program Files (x86)\Paragon Software\HFS+ for Windows\apmwinsrv.exe [1879744 2017-10-11] (Paragon Software GmbH -> )
S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2012-10-26] (Brother Industries, Ltd.) [File not signed]
S2 ICEsoundService; C:\Windows\system32\ICEsoundService64.exe [806352 2019-11-26] (ICEpower a/s -> ICEpower)
S4 Macromedia Licensing Service; C:\Program Files (x86)\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe [68096 2015-05-11] () [File not signed]
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6744288 2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-05-02] (Intel Corporation - Mobile Wireless Group -> )
R2 NIHardwareService; C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe [5352960 2011-03-09] (Native Instruments GmbH) [File not signed]
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2018-01-04] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2018-01-04] (NVIDIA Corporation -> NVIDIA Corporation)
R2 RalinkRegistryWriter; C:\Program Files (x86)\TP-LINK\COMMON\RaRegistry.exe [374112 2011-03-14] (Ralink Technology Corporation -> Ralink Technology, Corp.)
R2 RalinkRegistryWriter64; C:\Program Files (x86)\TP-LINK\COMMON\RaRegistry64.exe [451936 2011-03-14] (Ralink Technology Corporation -> Ralink Technology, Corp.)
R2 RapiMgr; C:\Windows\WindowsMobile\rapimgr.dll [225672 2007-05-31] (Microsoft Corporation -> Microsoft Corporation)
R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-08-14] (RealNetworks, Inc. -> )
R2 s7oiehsx64; C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oiehsx64.exe [388832 2014-11-28] (Siemens AG -> SIEMENS AG)
R2 S7TraceServiceX; C:\Program Files\Common Files\Siemens\Automation\TraceEngine\bin\S7TraceService64X.exe [277728 2014-11-28] (Siemens AG -> SIEMENS AG)
S4 ScsiAccess; C:\Program Files (x86)\Photodex\ProShowGold\ScsiAccess.exe [181312 2012-03-11] () [File not signed]
S4 ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [575488 2008-09-08] (Nokia.) [File not signed]
R2 SIMATIC PnDiscovery Service; C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oPNDiscoveryx64.exe [495328 2014-11-28] (Siemens AG -> SIEMENS AG)
R3 TiMiniService; C:\Program Files\Trend Micro\Titanium\TiMiniService.exe [241488 2010-09-17] (Trend Micro, Inc. -> Trend Micro Inc.)
S4 TlntSvr; C:\Windows\System32\tlntsvr.exe [81920 2009-07-14] (Microsoft Windows -> Microsoft Corporation)
S3 TpMediaServer; C:\Program Files (x86)\TP-LINK\COMMON\RaMediaServer.exe [619872 2011-03-14] (Ralink Technology Corporation -> )
R2 WcesComm; C:\Windows\WindowsMobile\wcescomm.dll [443784 2007-05-31] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
R2 wlidsvc; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2292096 2011-03-28] (Microsoft Corporation -> Microsoft Corp.)
S2 HPSLPSVC; C:\Users\JUANVI~1\AppData\Local\Temp\7zS062E\hpslpsvc64.dll [X] <==== ATTENTION
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 asmthub3; C:\Windows\System32\DRIVERS\asmthub3.sys [128488 2011-06-02] (MCCI Internal Testing Software -> ASMedia Technology Inc)
R3 asmtxhci; C:\Windows\System32\DRIVERS\asmtxhci.sys [401896 2011-06-02] (MCCI Internal Testing Software -> ASMedia Technology Inc)
S3 athr; C:\Windows\System32\DRIVERS\athrx.sys [1542656 2009-10-05] (Microsoft Windows Hardware Compatibility Publisher -> Atheros Communications, Inc.)
S2 csvol; C:\Windows\System32\DRIVERS\csvol.sys [37200 2017-10-11] (Paragon Software GmbH -> Paragon Software Group)
R3 dpmconv; C:\Windows\System32\DRIVERS\dpmconv.sys [259584 2014-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Siemens AG)
R0 gpt_loader; C:\Windows\System32\DRIVERS\gpt_loader.sys [70480 2017-10-11] (Paragon Software GmbH -> )
R1 GUBootStartup; C:\Windows\System32\drivers\GUBootStartup.sys [28936 2019-04-06] (Glarysoft LTD -> Glarysoft Ltd)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2019-11-26] (Martin Malik - REALiX -> REALiX(tm))
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] (ASUSTeK Computer Inc. -> )
S3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [57344 2009-06-10] (Microsoft Windows -> Atheros Communications, Inc.)
R0 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [275232 2019-11-26] (Malwarebytes Corporation -> Malwarebytes)
S3 nmwcd; C:\Windows\System32\drivers\ccdcmbx64.sys [19968 2011-08-17] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 nmwcdc; C:\Windows\System32\drivers\ccdcmbox64.sys [27136 2011-08-17] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 nmwcdnsux64; C:\Windows\System32\drivers\nmwcdnsux64.sys [171008 2011-08-17] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 NUMARK_NC06; C:\Windows\System32\Drivers\nc06_usb.sys [466176 2013-05-15] (Ploytec GmbH -> Ploytec GmbH)
S3 NUMARK_NC06_MIDI; C:\Windows\System32\drivers\nc06midi.sys [33536 2013-05-15] (Ploytec GmbH -> Numark)
S3 NUMARK_NC06_WDM; C:\Windows\System32\drivers\nc06_wdm.sys [55552 2013-05-15] (Ploytec GmbH -> Numark)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2018-01-04] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [69840 2019-11-26] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [57792 2018-01-04] (NVIDIA Corporation -> NVIDIA Corporation)
S3 PAC7302; C:\Windows\System32\DRIVERS\PAC7302.SYS [527872 2007-11-08] (PixArt Imaging Inc. -> PixArt Imaging Inc.)
S3 pccsmcfd; C:\Windows\System32\DRIVERS\pccsmcfdx64.sys [25600 2008-08-28] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 RDID1115; C:\Windows\System32\Drivers\rdwm1115.sys [81920 2010-09-17] (Roland Corporation -> Roland Corporation)
S3 rspLLL; C:\Windows\System32\DRIVERS\rspLLL64.sys [26368 2015-07-13] (Daniel Terhell -> Resplendence Software Projects Sp.)
R3 RTSUER; C:\Windows\System32\Drivers\RtsUer.sys [424384 2019-11-26] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
R3 rtsuvc; C:\Windows\System32\DRIVERS\rtsuvc.sys [9113304 2019-11-26] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
R3 s7odpx2x64; C:\Windows\System32\DRIVERS\s7odpx2x64.sys [94432 2014-11-28] (Siemens AG -> SIEMENS AG)
R3 s7oppilx64; C:\Windows\System32\Drivers\s7oppilx64.sys [39136 2014-11-28] (Siemens AG -> SIEMENS AG)
R3 s7oppinx64; C:\Windows\System32\DRIVERS\s7oppinx64.sys [117472 2014-11-28] (Siemens AG -> SIEMENS AG)
R3 s7oserix64; C:\Windows\System32\Drivers\s7oserix64.sys [141536 2014-11-28] (Siemens AG -> SIEMENS AG)
R3 s7osmcax64; C:\Windows\System32\DRIVERS\s7osmcax64.sys [228064 2014-11-28] (Siemens AG -> SIEMENS AG)
R3 s7osobux64; C:\Windows\System32\DRIVERS\s7osobux64.sys [109792 2014-11-28] (Siemens AG -> SIEMENS AG)
R3 s7otmcd64x; C:\Windows\System32\Drivers\s7otmcd64x.sys [202976 2014-11-28] (Siemens AG -> SIEMENS AG)
R3 s7otranx64; C:\Windows\System32\DRIVERS\s7otranx64.sys [273120 2014-11-28] (Siemens AG -> SIEMENS AG)
R3 s7otsadx64; C:\Windows\System32\DRIVERS\s7otsadx64.sys [221920 2014-11-28] (Siemens AG -> SIEMENS AG)
R2 s7ousbu64x; C:\Windows\System32\DRIVERS\s7ousbu64x.sys [149216 2014-11-28] (Siemens AG -> SIEMENS AG)
R2 s7PnDiscoveryDriver; C:\Windows\System32\DRIVERS\s7PnDiscoveryDriver.sys [37600 2014-11-28] (Siemens AG -> SIEMENS AG)
S3 SiSGbeLH; C:\Windows\System32\DRIVERS\SiSG664.sys [56832 2009-06-10] (Microsoft Windows -> Silicon Integrated Systems Corp.)
R2 Snpnio; C:\Windows\System32\DRIVERS\snpnio.sys [99552 2014-11-28] (Siemens AG -> Windows (R) Win 7 DDK provider)
R2 SNTIE; C:\Windows\System32\DRIVERS\sntie.sys [285408 2014-11-28] (Siemens AG -> Siemens AG)
R0 speedfan; C:\Windows\SysWow64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
S3 SRS_SSCFilter; C:\Windows\System32\drivers\srs_sscfilter_amd64.sys [55040 2007-07-26] (Microsoft Windows Hardware Compatibility Publisher -> )
R2 tmactmon; C:\Windows\System32\DRIVERS\tmactmon.sys [90704 2010-09-17] (Trend Micro, Inc. -> Trend Micro Inc.)
R2 tmcomm; C:\Windows\System32\DRIVERS\tmcomm.sys [144464 2010-09-17] (Trend Micro, Inc. -> Trend Micro Inc.)
R2 tmevtmgr; C:\Windows\System32\DRIVERS\tmevtmgr.sys [67664 2010-09-17] (Trend Micro, Inc. -> Trend Micro Inc.)
R1 tmtdi; C:\Windows\System32\DRIVERS\tmtdi.sys [105552 2010-09-17] (Trend Micro, Inc. -> Trend Micro Inc.)
R2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13832 2010-04-17] (Intel(R) Turbo Boost Technology Monitor -> )
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] (Empty Loop -> )
S3 upperdev; C:\Windows\System32\DRIVERS\usbser_lowerfltx64.sys [9216 2011-08-17] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 UsbserFilt; C:\Windows\System32\DRIVERS\usbser_lowerfltjx64.sys [9216 2011-08-17] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
R3 vsnl2ada; C:\Windows\System32\DRIVERS\vsnl2ada.sys [128000 2014-11-28] (Microsoft Windows Hardware Compatibility Publisher -> SIEMENS AG)
S2 s7sn2srtx; system32\DRIVERS\s7sn2srtx.sys [X]
S3 VMnetAdapter; system32\DRIVERS\vmnetadapter.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)