Aqui vengo con los reportes
Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 14-04-2023
Ejecutado por Hetitor (administrador) sobre TRABAJO (Micro-Star International Co., Ltd. MS-7C52) (17-04-2023 18:20:35)
Ejecutado desde C:\Users\Hetitor\Dropbox\Mi PC (TRABAJO)\Desktop\FRST64.exe
Perfiles cargados: Hetitor
Plataforma: Microsoft Windows 10 Pro Versión 22H2 19045.2728 (X64) Idioma: Español (México) -> Español (España, internacional)
Navegador predeterminado: Opera
Modo de Inicio: Normal
==================== Procesos (Lista blanca) =================
(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.133\BraveCrashHandler.exe
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.133\BraveCrashHandler64.exe
(C:\Program Files (x86)\DFX\dfx.exe ->) (FxSound, LLC -> ) C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp32.exe
(C:\Program Files (x86)\DFX\dfx.exe ->) (FxSound, LLC -> ) C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp64.exe
(DriverStore\FileRepository\u0366052.inf_amd64_27b70634fe4a2a8e\B359612\atiesrxx.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0366052.inf_amd64_27b70634fe4a2a8e\B359612\atieclxx.exe
(FxSound, LLC -> ) [Archivo no firmado] C:\Program Files (x86)\DFX\dfx.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.202\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.202\GoogleCrashHandler64.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(services.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0366052.inf_amd64_27b70634fe4a2a8e\B359612\atiesrxx.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Arvato Digital Services Canada Inc -> arvato digital services llc) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(services.exe ->) (Huawei Technologies Co., Ltd. -> ) [Archivo no firmado] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
(services.exe ->) (IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe
(services.exe ->) (IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MsMpEng.exe
(services.exe ->) (ORANGE VIEW LIMITED -> iTop Inc.) C:\Program Files (x86)\iTop Data Recovery\IDRService.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_550508a90a3c9a47\RtkAudUService64.exe <2>
(services.exe ->) (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE
(services.exe ->) (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe
(services.exe ->) (SEIKO EPSON Corporation -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
(services.exe ->) (voidtools -> voidtools) E:\Utilitarios\Everything\Everything.exe
(services.exe ->) (Wondershare Technology Co.,Ltd -> Wondershare) C:\ProgramData\Wondershare\Service\InstallAssistService.exe
(services.exe ->) (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) C:\Program Files (x86)\Common Files\Zoom\Support\CptService.exe
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2310.3.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(svchost.exe ->) (IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe
(svchost.exe ->) (IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\Driver Booster\9.5.0\Scheduler.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.BingWeather_4.53.50501.0_x64__8wekyb3d8bbwe\Microsoft.Msn.Weather.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.21374.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.21374.0_x64__8wekyb3d8bbwe\HxTsr.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23022.140.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Speech_OneCore\common\SpeechRuntime.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(svchost.exe ->) (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCUpdate.exe
==================== Registro (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)
HKLM\...\Run: [RunSmartForeFile] => C:\Users\Hetitor\AppData\Local\SmartGenius\resources\KeyboardDriver\SmartHIDStart.exe [524288 2019-10-16] () [Archivo no firmado]
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_550508a90a3c9a47\RtkAudUService64.exe [1618320 2022-11-16] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [FxSound Enhancer] => C:\Program Files (x86)\DFX\dfx.exe [1780728 2019-07-26] (FxSound, LLC -> ) [Archivo no firmado]
HKLM-x32\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\\isuspm.exe [2075480 ] (Flexera Software LLC -> Flexera Software LLC.)
HKLM\...\Policies\Explorer: [NoWindowsUpdate] 1
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restricción <==== ATENCIÓN
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restricción <==== ATENCIÓN
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender Security Center: Restricción <==== ATENCIÓN
HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\...\Run: [Opera Stable] => C:\Users\Hetitor\AppData\Local\Programs\Opera\launcher.exe [2686872 2023-04-05] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\...\Policies\Explorer: [NoSecurityTab] 1
HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\...\MountPoints2: {1fa4afb0-1901-11ed-9dd4-2cf05d3fbd97} - "I:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\...\MountPoints2: {b6cbe226-4a1c-11ed-9ddf-2cf05d3fbd97} - "I:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\ssText3d.scr [224768 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Print\Monitors\EPSON XP-211 214 216 Series 64MonitorBE: C:\WINDOWS\system32\E_ILMBLDE.DLL [179712 2022-09-17] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION)
HKLM\...\Print\Monitors\EpsonNet Print Port: C:\WINDOWS\system32\enppmon.dll [558592 2012-11-12] (SEIKO EPSON CORPORATION) [Archivo no firmado]
HKLM\...\Print\Monitors\Wondershare PDFelement Monitor: C:\WINDOWS\system32\PEPrinterMonitor.dll [285232 2023-02-15] (Wondershare Technology Co.,Ltd -> Wondershare Software)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\112.0.5615.86\Installer\chrmstp.exe [2023-04-14] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\112.1.50.118\Installer\chrmstp.exe [2023-04-14] (Brave Software, Inc. -> Brave Software, Inc.)
GroupPolicy: Restricción - Chrome <==== ATENCIÓN
Policies: C:\ProgramData\NTUSER.pol: Restricción <==== ATENCIÓN
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN
==================== Tareas programadas (Lista blanca) ============
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
Task: {028FEF17-6C16-4388-B442-DCD6D4821454} - System32\Tasks\CorelUpdateHelperTaskCore => c:\Program Files (x86)\Corel\CUH\v2\CUH.exe [3813600 2021-12-03] (Corel Corporation -> Corel Corporation)
Task: {0B34C75C-8748-4500-80D5-6467B0151602} - System32\Tasks\NvStray\NvStrayService_bk4888 => C:\ProgramData\Dllhost\dllhost.exe [73216 2023-04-12] (Microsoft® Windows® Operating System) [Archivo no firmado] <==== ATENCIÓN
Task: {0D608E80-8841-417A-AA43-CCB6CA8435B1} - System32\Tasks\SmartGameBooster Startup => E:\Program Files (x86)\PCGameBoost\Smart Game Booster\4.5.0\SgbTray.exe /auto (Ningún archivo)
Task: {114F4531-9618-49EA-9D8E-9BED73DEC0C7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MpCmdRun.exe [1645864 2023-04-05] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {1308D9E8-1A82-41F2-B40D-BAB1FAF64A64} - System32\Tasks\Opera scheduled Autoupdate 1680459401 => C:\Users\Hetitor\AppData\Local\Programs\Opera\launcher.exe [2686872 2023-04-05] (Opera Norway AS -> Opera Software)
Task: {145D99FF-C18F-4483-96D3-DF41CBB223D9} - System32\Tasks\PinnacleStudio26Notifier => C:\Program Files\Pinnacle\Studio 26\programs\PinnacleNotifierWrapper.exe [21280 2022-08-08] (Corel Corporation -> Pinnacle)
Task: {1B120F0A-1060-4659-9413-97B2A858E36C} - System32\Tasks\Driver Booster SkipUAC (Hetitor) => C:\Program Files (x86)\IObit\Driver Booster\9.5.0\DriverBooster.exe [8671216 2022-08-08] (IObit CO., LTD -> IObit)
Task: {1CE71FC3-534D-43ED-AD6A-0933491538F9} - System32\Tasks\Sump Task (One-Time) => C:\Program Files (x86)\IObit\Advanced SystemCare\sump.exe /sup2 (Ningún archivo)
Task: {25139AB0-4E16-4612-9737-680385E63700} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\9.5.0\Scheduler.exe [157784 2022-06-28] (IObit CO., LTD -> IObit)
Task: {2EED9CE6-B480-40B4-87A8-E20D8B34E84C} - System32\Tasks\PinnacleStudio26Updater => C:\Program Files\Pinnacle\Studio 26\programs\PSNotification.exe [560448 2022-08-08] (Corel Corporation -> )
Task: {2FA53A28-FCBA-40F5-B3A7-47B94536A1D1} - System32\Tasks\GoogleUpdateTaskMachineUA{07BD952B-8FC7-47AE-8C4F-27A14ACB7D71} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-05-01] (Google LLC -> Google LLC)
Task: {3FE53E39-E50C-4665-B227-AA2B81DED826} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26409896 2023-04-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {44E5FD25-D221-4BFA-B45C-C539A1814FEA} - System32\Tasks\PowerControl LG => C:\Program [Argument = Files (x86)\PowerControl\PowerControl_Svc.exe] <==== ATENCIÓN
Task: {4EF2FB43-D9E6-4F45-A263-75B2BE273F92} - System32\Tasks\UeOXSlDflTLkWFXmg => C:\WINDOWS\Temp\LuyNZEGQuNMvSruo\uKEjodmVZyXxorr\foajlWb.exe 5C /site_id 525403 /S (Ningún archivo) <==== ATENCIÓN
Task: {4FB1207C-51CB-4513-95D1-1639E52723CD} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144264 2023-04-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {4FED1C23-87A8-45AB-BD1F-8B2B9D51F752} - System32\Tasks\iTop Data Recovery Update => C:\Program Files (x86)\iTop Data Recovery\AutoUpdate.exe [3068160 2022-08-26] (ORANGE VIEW LIMITED -> iTop Inc.)
Task: {5200D5C4-A4F9-4C23-9E4E-E2146D4810FE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MpCmdRun.exe [1645864 2023-04-05] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {55943CD3-C3B1-4B23-938C-867EA230EAA2} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-06-05] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {5A67B1F4-C64D-44A8-97E9-08C9CDBC90D4} - System32\Tasks\dllhost => C:\ProgramData\Dllhost\dllhost.exe [73216 2023-04-12] (Microsoft® Windows® Operating System) [Archivo no firmado] <==== ATENCIÓN
Task: {6860628D-5255-4BCA-9F43-AAE14C3E3EF3} - System32\Tasks\ASC_SkipUac_Hetitor => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [10938888 2023-01-04] (IObit CO., LTD -> IObit)
Task: {6B94A230-1FC6-45BA-9A84-B550BCD90AEB} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703544 2023-03-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "1e4945f9-fdc3-471a-b9fb-1f2f2f5c3889" --version "6.10.10347" --silent
Task: {6EDBCADB-70A4-41F5-A108-3EE8C9E20EAE} - System32\Tasks\oneetx.exe => C:\Users\Hetitor\AppData\Local\Temp\595f021478\oneetx.exe (Ningún archivo) <==== ATENCIÓN
Task: {722F9F26-7DD4-4346-AF85-79F91092A359} - System32\Tasks\iTop Data Recovery SkipUAC (Hetitor) => C:\Program Files (x86)\iTop Data Recovery\iTopDataRecovery.exe [3596544 2022-09-15] (ORANGE VIEW LIMITED -> iTop Inc.)
Task: {847BCD4A-0DBE-4C56-823C-F986547F545A} - System32\Tasks\CorelUpdateHelperTask-399CF6193D924866B3B3A31F702D4776 => c:\Program Files (x86)\Corel\CUH\v2\CUH.exe [3813600 2021-12-03] (Corel Corporation -> Corel Corporation)
Task: {9783E3A9-60B6-4A65-ACC8-371CEFBBC391} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144264 2023-04-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {9C099FAE-DFA2-4FAF-986A-147E9650E7A4} - System32\Tasks\GoogleUpdateTaskMachineCore{560E2F15-AE99-4452-AA28-7785963C6DF8} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-05-01] (Google LLC -> Google LLC)
Task: {9EF1A309-1B86-469A-882C-E5B94A46E58C} - System32\Tasks\ASC_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe [5444104 2022-12-29] (IObit CO., LTD -> IObit)
Task: {B1946CFB-318A-4942-90A1-813821000505} - System32\Tasks\Driver Booster Update => C:\Program Files (x86)\IObit\Driver Booster\9.5.0\AutoUpdate.exe [2478608 2022-08-03] (IObit CO., LTD -> IObit)
Task: {B59B0118-3021-4833-89F0-05B83067A94E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MpCmdRun.exe [1645864 2023-04-05] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B5DBC53B-AD1F-4AFA-A117-3F2BEC08FEC9} - System32\Tasks\PowerControl HR => C:\Program [Argument = Files (x86)\PowerControl\PowerControl_Svc.exe] <==== ATENCIÓN
Task: {BA0F9C6C-C0A6-4E9F-A8C5-E6079824EECD} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe [5253304 2023-03-24] (Microsoft Windows -> Microsoft Corporation)
Task: {BA377635-5F95-450B-95A2-C2D315698C5F} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-06-05] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {BC441D81-C4EF-4D48-A5BA-D9BAE9C6C0C3} - System32\Tasks\Time Trigger Task => C:\Users\Hetitor\AppData\Local\64cc3223-6318-409e-9f16-0433cd0f4f7c\6OPI.exe --Task (Ningún archivo) <==== ATENCIÓN
Task: {C8FCCE2D-2E52-41D2-81F6-F4EBB9E48A6B} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-1406036411-3523515736-3522702373-1001 => E:\Users\Hetitor\AppData\Local\MEGAsync\MEGAupdater.exe (Ningún archivo)
Task: {CC5C5D64-0EBE-4599-B09F-2B434F30167C} - System32\Tasks\Uninstaller_SkipUac_Hetitor => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [9395720 2023-02-06] (IObit CO., LTD -> IObit)
Task: {D266F565-94DF-4406-81F8-5F2BF9CD09C4} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26409896 2023-04-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {D7C1DC2D-38D0-4986-A079-22902BE3FEB6} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2113024 2022-08-08] () [Archivo no firmado]
Task: {D891A6E4-E822-4F40-A30F-1515187B3439} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [168840 2023-04-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {E090B2ED-ECED-44A4-96F7-D728AB8A6149} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1406036411-3523515736-3522702373-1001UA => C:\Users\Hetitor\AppData\Local\DropboxUpdate\Update\DropboxUpdate.exe [130320 2023-03-22] (Dropbox, Inc -> Dropbox, Inc.)
Task: {E0F390AE-9C2A-49AD-9721-D9AEB8785863} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1406036411-3523515736-3522702373-1001Core => C:\Users\Hetitor\AppData\Local\DropboxUpdate\Update\DropboxUpdate.exe [130320 2023-03-22] (Dropbox, Inc -> Dropbox, Inc.)
Task: {E30D29C9-D8A0-42A3-ACFA-D665D79E4CDB} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2023-03-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {E31BA2CD-2122-40E7-8F9E-0ECF2E83D719} - System32\Tasks\BlueStacksHelper_nxt => C:\Program Files\BlueStacks_nxt\BlueStacksHelper.exe [275136 2022-07-18] (Bluestack Systems, Inc -> BlueStack Systems, Inc.)
Task: {E70A0BA0-EB7C-4D0C-90E1-EFA0CA9B9FCE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MpCmdRun.exe [1645864 2023-04-05] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {EA275496-9615-473E-BA4D-3C13EA33F144} - System32\Tasks\CCleanerSkipUAC - Hetitor => C:\Program Files\CCleaner\CCleaner.exe [33038648 2023-03-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {F717C52A-CC38-4180-BB07-F025AE944E40} - System32\Tasks\XUNFTmghEIzGRiC => rundll32 "C:\Program Files (x86)\NAjTmNFbU\HoMORs.dll",#1 <==== ATENCIÓN
(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)
Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1406036411-3523515736-3522702373-1001Core.job => C:\Users\Hetitor\AppData\Local\DropboxUpdate\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1406036411-3523515736-3522702373-1001UA.job => C:\Users\Hetitor\AppData\Local\DropboxUpdate\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\UeOXSlDflTLkWFXmg.job => C:\WINDOWS\Temp\LuyNZEGQuNMvSruo\uKEjodmVZyXxorr\foajlWb.exe <==== ATENCIÓN
Task: C:\WINDOWS\Tasks\XUNFTmghEIzGRiC.job => C:\Program Files (x86)\NAjTmNFbU\HoMORs.dll
==================== Internet (Lista blanca) ====================
(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)
Hosts: Hay más de una entrada en Hosts. Consulte la sección Hosts de Addition.txt
Tcpip\Parameters: [DhcpNameServer] 181.45.64.81 200.115.192.90 190.55.60.129
Tcpip\..\Interfaces\{c971d8ab-7c0a-4447-b6a5-d69135873033}: [DhcpNameServer] 181.45.64.81 200.115.192.90 190.55.60.129
Edge:
=======
Edge Extension: (Sin Nombre) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [no encontrado]
Edge Extension: (Sin Nombre) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [no encontrado]
Edge Extension: (Sin Nombre) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [no encontrado]
Edge Extension: (Sin Nombre) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [no encontrado]
Edge DefaultProfile: Default
Edge Profile: C:\Users\Hetitor\AppData\Local\Microsoft\Edge\User Data\Default [2023-04-13]
Edge HomePage: Default -> hxxp://www.google.com.ar/
Edge Extension: (Sin Nombre) - C:\Users\Hetitor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bacakpdjpomjaelpkpkabmedhkoongbi [2023-04-13]
Edge Extension: (Pop up blocker for Chrome™ - Poper Blocker) - C:\Users\Hetitor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bkkbcggnhapdmkeljlodobbkopceiche [2023-04-01]
Edge Extension: (OneTab) - C:\Users\Hetitor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall [2022-05-18]
Edge Extension: (Search by Image (by Google)) - C:\Users\Hetitor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dajedkncpodkggklbegccjpmnglmnflm [2020-09-04]
Edge Extension: (Extensión Web de Dragon) - C:\Users\Hetitor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ddaloccgjfibfpkalenodgehlhkgoahe [2022-12-16]
Edge Extension: (TeraBox Download Assistant) - C:\Users\Hetitor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dpadflhmiohjfhhaehelneimpllfbpcg [2023-04-01]
Edge Extension: (Avast Passwords) - C:\Users\Hetitor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\emhginjpijfggbofeediiojmdlmlkoik [2020-09-04]
Edge Extension: (Edge relevant text changes) - C:\Users\Hetitor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-04-06]
Edge Extension: (Video DownloadHelper) - C:\Users\Hetitor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmkaglaafmhbcpleggkmaliipiilhldn [2022-12-06]
Edge Extension: (IDM Integration Module) - C:\Users\Hetitor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\llbjbkhnmlidjebalopleeepgdfgcpec [2023-04-11]
Edge Extension: (Flashcontrol) - C:\Users\Hetitor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mfidmkgnfgnkihnjeklbekckimkipmoe [2020-09-04]
Edge Extension: (AdBlock: el mejor bloqueador de anuncios) - C:\Users\Hetitor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2023-02-21]
Edge Extension: (Traductor profesional) - C:\Users\Hetitor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ppfelpdoigkaanbepmpaocoinmdaclde [2021-01-04]
Edge Profile: C:\Users\Hetitor\AppData\Local\Microsoft\Edge\User Data\Guest Profile [2023-04-13]
Edge Profile: C:\Users\Hetitor\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2023-04-13]
Edge Extension: (IDM Integration Module) - C:\Users\Hetitor\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\llbjbkhnmlidjebalopleeepgdfgcpec [2020-09-25]
Edge HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [dpadflhmiohjfhhaehelneimpllfbpcg] - F:\TeraBox\terabox_ext_chrome.crx <no encontrado>
Edge HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [llbjbkhnmlidjebalopleeepgdfgcpec] - E:\Utilitarios\Internet Download Manager\IDMEdgeExt.crx <no encontrado>
Edge HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - H:\Utilitarios\Internet Download Manager\IDMGCExt.crx <no encontrado>
Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
FireFox:
========
FF HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\...\SeaMonkey\Extensions: [[email protected]] - C:\Users\Hetitor\AppData\Roaming\IDMidmmzcc5
FF Extension: (IDM CC) - C:\Users\Hetitor\AppData\Roaming\IDMidmmzcc5 [2023-04-10] [Heredado] [no firmado]
FF HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\...\SeaMonkey\Extensions: [[email protected]] - E:\Utilitarios\Internet Download Manager\idmmzcc2.xpi => no encontrado
FF Plugin: @java.com/DTPlugin,version=11.361.2 -> C:\Program Files\Java\jre1.8.0_361\bin\dtplugin\npDeployJava1.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.361.2 -> C:\Program Files\Java\jre1.8.0_361\bin\plugin2\npjp2.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-11-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> E:\Multimediales\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: nuance.com/DgnRia2_x86_64 -> C:\Program Files (x86)\Nuance\NaturallySpeaking15\Program\x64\npDgnRia2_x64.dll [2018-06-20] (Nuance Communications, Inc. -> Nuance Communications, Inc.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-11-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @terabox.com/YunWebDetectPlugin -> F:\TeraBox\npYunWebDetect.dll [2022-03-01] (フレックステック株式会社 -> Flextech Inc.)
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Multimediales\VLC\npvlc.dll [Ningún archivo]
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Multimediales\VLC\npvlc.dll [Ningún archivo]
FF Plugin-x32: @videolan.org/vlc,version=3.0.17.4 -> C:\Multimediales\VLC\npvlc.dll [Ningún archivo]
FF Plugin-x32: nuance.com/DgnRia2 -> C:\Program Files (x86)\Nuance\NaturallySpeaking15\Program\npDgnRia2.dll [2018-06-20] (Nuance Communications, Inc. -> Nuance Communications, Inc.)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default [2023-04-13]
CHR Notifications: Default -> hxxps://calendar.google.com; hxxps://duo.google.com; hxxps://www.facebook.com
CHR HomePage: Default -> hxxps://www.google.com.ar/
CHR StartupUrls: Default -> "hxxp://www.google.com.ar/"
CHR Extension: (OneTab) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall [2022-05-09]
CHR Extension: (Extensión Web de Dragon) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddaloccgjfibfpkalenodgehlhkgoahe [2022-12-16]
CHR Extension: (Tampermonkey) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2022-11-30]
CHR Extension: (Sin Nombre) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpadflhmiohjfhhaehelneimpllfbpcg [2023-04-13]
CHR Extension: (Causality Games) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\femoooemgmjaebeodbbikbkmhlafenpl [2023-01-01]
CHR Extension: (AdBlock: el mejor bloqueador de anuncios) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2023-02-16]
CHR Extension: (AirDroid) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkgndiocipalkpejnpafdbdlfdjihomd [2022-05-01]
CHR Extension: (Zoom) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmbjbjdpkobdjplfobhljndfdfdipjhg [2022-05-01]
CHR Extension: (Cut the Rope) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfbadlndcminbkfojhlimnkgaackjmdo [2023-04-13]
CHR Extension: (ahi-ta! Tu asistente personal para el Super) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkhpbpgagbfgijdoofjbfglpbjdbomnc [2023-04-06]
CHR Extension: (Media Easy Download) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\kkhiafihmhpggmhhahdjhkpjmpnmemcf [2022-09-25]
CHR Extension: (Reproductor M3U8 - HLS + DASH Player) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\lcipembjfkmeggpihdpdgnjildgniffl [2022-05-01]
CHR Extension: (Video DownloadHelper) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2022-10-13]
CHR Extension: (AirDroid Remote Control Plugin) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\macmgoeeggnlnmpiojbcniblabkdjphe [2022-05-01]
CHR Extension: (WGT Golf Game) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpedbpkelbhcbkdaglillalioeeekbpb [2022-05-01]
CHR Extension: (IDM Integration Module) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2023-04-01]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-05-01]
CHR HKLM\...\Chrome\Extension: [joiapjkjgbcljoopaenlplkfapolkdhp]
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - E:\Utilitarios\Internet Download Manager\IDMGCExt.crx <no encontrado>
CHR HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [dpadflhmiohjfhhaehelneimpllfbpcg] - F:\TeraBox\terabox_ext_chrome.crx <no encontrado>
CHR HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - E:\Utilitarios\Internet Download Manager\IDMGCExt.crx <no encontrado>
CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - E:\Utilitarios\Internet Download Manager\IDMGCExt.crx <no encontrado>
Opera:
=======
OPR Profile: C:\Users\Hetitor\AppData\Roaming\Opera Software\Opera Stable [2023-04-17]
OPR Notifications: Opera Stable -> hxxps://calendar.google.com; hxxps://davidalcaraztutoriales.blogspot.com; hxxps://forospyware.com; hxxps://meet.google.com; hxxps://personalchat.epiron.com.ar; hxxps://tntsports.com.ar; hxxps://web.whatsapp.com; hxxps://www.buscasencuentras.net; hxxps://www.facebook.com; hxxps://www.turismocity.com.ar
OPR StartupUrls: Opera Stable -> "hxxp://www.google.com.ar/"
OPR DefaultSearchURL: Opera Stable -> hxxps://www.google.com/search?client=opera&q={searchTerms}&sourceid=opera&ie={inputEncoding}&oe={outputEncoding}
OPR DefaultSearchKeyword: Opera Stable -> g
OPR Extension: (Rich Hints Agent) - C:\Users\Hetitor\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2023-03-22]
OPR Extension: (MyJDownloader Browser Extension) - C:\Users\Hetitor\AppData\Roaming\Opera Software\Opera Stable\Extensions\fbclnkmbcmdfamfeaagadifibbongnmf [2023-04-13]
OPR Extension: (EverSync - Sync bookmarks, backup favorites) - C:\Users\Hetitor\AppData\Roaming\Opera Software\Opera Stable\Extensions\ffhogmjbkahkkpjpjmeppoegnjhpopmc [2020-09-28]
OPR Extension: (ImTranslator: Traductor, Diccionario, Voz) - C:\Users\Hetitor\AppData\Roaming\Opera Software\Opera Stable\Extensions\glaedmooikiamindhmfcfccncmmdagge [2023-04-13]
OPR Extension: (Opera Wallet) - C:\Users\Hetitor\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2023-04-01]
OPR Extension: (Download with Internet Download Manager) - C:\Users\Hetitor\AppData\Roaming\Opera Software\Opera Stable\Extensions\kajaikkhnmegmfnlifeklklaienhdekb [2023-04-13]
OPR Extension: (Amazon Assistant Promotion) - C:\Users\Hetitor\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-08-13]
OPR Extension: (Side Calculator) - C:\Users\Hetitor\AppData\Roaming\Opera Software\Opera Stable\Extensions\kfdfpgeiehibehpmgjnkekpenkkfajlj [2020-09-11]
OPR Extension: (Instalar Extensiones de Chrome) - C:\Users\Hetitor\AppData\Roaming\Opera Software\Opera Stable\Extensions\kipjbhgniklcnglfaldilecjomjaddfi [2023-04-13]
OPR Extension: (Opera AI Prompts) - C:\Users\Hetitor\AppData\Roaming\Opera Software\Opera Stable\Extensions\mljbnbeedpkgakdchcmfapkjhfcogaoc [2023-04-02]
OPR Extension: (Speed Dial [FVD] - New Tab Page, 3D, Sync...) - C:\Users\Hetitor\AppData\Roaming\Opera Software\Opera Stable\Extensions\pncpfofkienlinhfknpmgjnjhdoclfhh [2020-09-19]
Brave:
=======
BRA Profile: C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2023-04-13]
BRA HomePage: Default -> hxxp://www/google.com.ar
BRA StartupUrls: Default -> "hxxp://www.google.com.ar/"
BRA Extension: (Traductor de Google) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2023-03-25]
BRA Extension: (OneTab) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall [2022-05-15]
BRA Extension: (Extensión Web de Dragon) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ddaloccgjfibfpkalenodgehlhkgoahe [2022-12-22]
BRA Extension: (Sin Nombre) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\dpadflhmiohjfhhaehelneimpllfbpcg [2023-04-13]
BRA Extension: (Cablevisión Flow) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\gfbnbmbkemlokfckhdoaakhjogffkinc [2021-06-05]
BRA Extension: (AdBlock: el mejor bloqueador de anuncios) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2023-02-22]
BRA Extension: (AdBlocker Sentinel - Lataa sisältöä nopeammin) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\icngebmpnhfbjilmgbdfjbfdhcnocjac [2023-02-22]
BRA Extension: (Reproductor M3U8 - HLS + DASH Player) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\lcipembjfkmeggpihdpdgnjildgniffl [2022-04-15]
BRA Extension: (Video DownloadHelper) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2022-10-14]
BRA Extension: (Sin Nombre) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2023-04-13]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2023-04-12]
BRA Extension: (Brave NTP sponsored images) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\alkblaadjjijngaehljijdimckobegga [2023-04-12]
BRA Extension: (Brave NTP background images) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2022-08-11]
BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications List (plaintext))) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2023-04-12]
BRA Extension: (Wallet Data Files Updater) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2023-04-12]
BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2022-11-30]
BRA Extension: (Brave Ad Block Updater (EasyList Spanish (plaintext))) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\fejmaeodjeekfldnbegjagemjgnmhfof [2023-04-12]
BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2023-04-09]
BRA Extension: (Brave NTP sponsored images) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\golcdmhaefcpmdoofahgnhnfldidgjfl [2023-01-30]
BRA Extension: (Brave Ad Block Updater (Default (plaintext))) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2023-04-12]
BRA Extension: (Brave SpeedReader Updater) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2022-03-19]
BRA Extension: (Brave Ad Block Updater (Adguard Spanish/Portuguese (plaintext))) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\meimhmgfbckapkbbbdaoefgnbppmkodp [2023-04-12]
BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2023-03-25]
BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2023-04-12]
BRA Extension: (Brave Ad Block Updater (EasyList Spanish)) - C:\Users\Hetitor\AppData\Local\BraveSoftware\Brave-Browser\User Data\pdecoifadfkklajdlmndjpkhabpklldh [2022-11-30]
==================== Servicios (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
"oijoyoed" => servicio fue desbloqueado. <==== ATENCIÓN
R2 AdvancedSystemCareService16; C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe [1879616 2022-12-14] (IObit CO., LTD -> IObit)
S3 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [100424 2022-05-02] (Apple Inc. -> Apple Inc.)
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-06-05] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-06-05] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 BraveVpnService; C:\Program Files\BraveSoftware\Brave-Browser\Application\112.1.50.118\brave_vpn_helper.exe [3018032 2023-04-13] (Brave Software, Inc. -> Brave Software, Inc.)
S3 CamoService; C:\Program Files (x86)\Camo Studio\CamoService.exe [105424 2022-10-19] (Reincubate Ltd -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12634544 2023-04-06] (Microsoft Corporation -> Microsoft Corporation)
S3 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [440808 2017-03-22] (Digital Wave Ltd -> Digital Wave Ltd.)
S3 DragonLoggerService; C:\Program Files (x86)\Common Files\Nuance\loggerservice.exe [167776 2018-06-20] (Nuance Communications, Inc. -> Nuance Communications, Inc.)
R2 EpsonCustomerResearchParticipation; C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe [678328 2018-06-11] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [144560 2012-05-17] (SEIKO EPSON Corporation -> Seiko Epson Corporation)
R2 EPSON_PM_RPCV4_06; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE [152640 2013-04-15] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
R2 Everything; E:\Utilitarios\Everything\Everything.exe [2265096 2022-10-09] (voidtools -> voidtools)
R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [236864 2022-06-24] (Huawei Technologies Co., Ltd. -> ) [Archivo no firmado]
R2 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [167432 2022-10-20] (IObit CO., LTD -> IObit)
R2 iTopDataRecoveryService3; C:\Program Files (x86)\iTop Data Recovery\IDRService.exe [1947824 2022-06-15] (ORANGE VIEW LIMITED -> iTop Inc.)
S2 oijoyoed; C:\WINDOWS\SysWOW64\oijoyoed\yhnywld.exe [0 0000-00-00] () [Acceso Denegado]
S2 PowerControl; C:\Program Files (x86)\PowerControl1\PowerControl_Svc.exe [391168 2023-04-12] () [Archivo no firmado]
R2 PSI_SVC_2; C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2014-04-30] (Arvato Digital Services Canada Inc -> arvato digital services llc)
S3 SandraAgentSrv; C:\Utilitarios\SiSoftware Sandra Lite 2020\RpcAgentSrv.exe [137558 2023-04-13] () [Archivo no firmado]
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [226976 2023-03-24] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 SU10Guard; C:\Windows\WC24YK7X\SU10Guard.exe [72776 2020-05-30] (Greatis Software LLC -> Greatis Software, LLC)
S3 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [15549240 2023-03-22] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\NisSrv.exe [3228400 2023-04-05] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MsMpEng.exe [133536 2023-04-05] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 Wondershare InstallAssist; C:\ProgramData\Wondershare\Service\InstallAssistService.exe [269200 2020-09-07] (Wondershare Technology Co.,Ltd -> Wondershare)
S3 BraveElevationService1d94187fc8a26a4; "C:\Program Files\BraveSoftware\Brave-Browser\Application\112.1.50.118\elevation_service.exe" [X]
S3 TeraBoxUtility; F:\TeraBox\YunUtilityService.exe [X]
R2 ZoomCptService; "C:\Program Files (x86)\Common Files\Zoom\Support\CptService.exe" -user_path "C:\Users\Hetitor\AppData\Roaming\Zoom"
===================== Controladores (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
R3 amdfendrmgr; C:\WINDOWS\System32\drivers\amdfendrmgr.sys [33728 2021-12-13] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [36928 2022-08-15] (ASMedia Technology Inc. -> Advanced Micro Devices, Inc)
S2 AMDRyzenMasterDriverV19; no ImagePath
R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [65168 2021-08-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
S3 ampa; C:\Windows\system32\ampa.sys [38320 2017-02-28] (CHENGDU AOMEI Tech Co., Ltd. -> )
S3 AscFileFilter; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscFileFilter.sys [47904 2022-12-14] (IObit CO., LTD -> IObit)
S3 AscRegistryFilter; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscRegistryFilter.sys [46552 2022-12-14] (IObit CO., LTD -> IObit)
S3 AxtuDrv; C:\Windows\SysWOW64\Drivers\AxtuDrv.sys [21288 2020-09-04] (ASROCK Incorporation -> RW-Everything)
R2 BlueStacksDrv_nxt; C:\Program Files\BlueStacks_nxt\BstkDrv_nxt.sys [321792 2022-07-18] (Bluestack Systems, Inc -> Bluestack System Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Archivo no firmado]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Archivo no firmado]
R3 camodriver; C:\WINDOWS\System32\DriverStore\FileRepository\camodriver.inf_amd64_e8f1fff31f6ea749\camodriver.sys [38904 2022-09-19] (WDKTestCert onnev,132798829937203863 -> Reincubate Ltd.)
R3 Camo_e070661c-ac3f-4aae-aa3f-7d4e8ded5142; C:\WINDOWS\System32\drivers\vacrnckd.sys [175616 2022-09-02] (Microsoft Windows Hardware Compatibility Publisher -> Reincubate)
S3 cpuz150; no ImagePath
R3 cpuz154; C:\WINDOWS\temp\cpuz154\cpuz154_x64.sys [40976 2023-04-17] (Microsoft Windows Hardware Compatibility Publisher -> CPUID)
S3 ddmdrv; C:\Windows\system32\ddmdrv.sys [35760 2016-12-27] (CHENGDU AOMEI Tech Co., Ltd. -> )
S3 DFX11_1; C:\WINDOWS\system32\drivers\dfx11_1x64.sys [28008 2018-03-08] (Power Technology -> Windows (R) Win 7 DDK provider)
R3 DFX12; C:\WINDOWS\system32\drivers\dfx12x64.sys [39048 2018-03-08] (Power Technology -> Windows (R) Win 7 DDK provider)
R1 dokan1; C:\WINDOWS\System32\DRIVERS\dokan1.sys [131080 2019-07-24] (D3L -> Dokan Project)
R3 e2esoft_ivcamaudio_simple; C:\WINDOWS\system32\drivers\iVCamAud.sys [255464 2020-11-04] (Shanghai Yitu Information Technology Co., Ltd. -> e2eSoft)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2020-09-06] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 GeneStor; C:\WINDOWS\System32\drivers\GeneStor.sys [136688 2022-09-17] (GENESYS LOGIC, INC. -> Genesys Logic)
S3 gFilterMouUsb; C:\WINDOWS\System32\drivers\gFilterMouUsb.sys [30576 2019-10-16] (KYE SYSTEMS CORP. -> KYE Systems Corp.)
S3 gKbdfltr; C:\WINDOWS\System32\drivers\gKbdfltr.sys [29576 2019-10-16] (KYE SYSTEMS CORP. -> )
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2022-06-24] (Huawei Technologies Co., Ltd.) [Archivo no firmado]
R2 IDMWFP; C:\WINDOWS\system32\DRIVERS\idmwfp.sys [171512 2023-02-15] (Microsoft Windows Hardware Compatibility Publisher -> Tonec Inc.)
R3 iobit_monitor_server2021; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\Monitor_win10_x64.sys [33256 2022-12-14] (IObit CO., LTD -> IObit)
R3 ioFakDrv; C:\WINDOWS\System32\drivers\ioFakDrv.sys [35928 2019-10-16] (KYE Systems Corp -> KYE System Corp.)
R3 ioFakMap; C:\WINDOWS\System32\drivers\ioFakMap.sys [24664 2019-10-16] (KYE Systems Corp -> KYE System Corp.)
R3 IUFileFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUFileFilter.sys [43896 2023-01-13] (IObit Information Technology -> IObit)
R3 IUProcessFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUProcessFilter.sys [37112 2023-01-13] (IObit Information Technology -> IObit)
R3 IURegistryFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IURegistryFilter.sys [51128 2023-01-13] (IObit Information Technology -> IObit)
R3 iVCam; C:\WINDOWS\system32\DRIVERS\iVCam.sys [1092552 2021-12-03] (Shanghai Yitu Information Technology Co., Ltd. -> e2eSoft)
R3 MpKsl0cd716c2; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3C0383CF-A8F5-48B0-ABB6-5542B3D9069D}\MpKslDrv.sys [211208 2023-04-17] (Microsoft Windows -> Microsoft Corporation)
S3 MpKsl6a25811a; C:\WINDOWS\system32\MpEngineStore\MpKslDrv.sys [211208 2023-04-17] (Microsoft Windows -> Microsoft Corporation)
S3 pwdrvio; C:\Windows\system32\pwdrvio.sys [19152 2013-09-30] (MiniTool Solution Ltd -> )
S3 pwdspio; C:\Windows\system32\pwdspio.sys [12504 2013-09-30] (MiniTool Solution Ltd -> )
S3 SANDRA; C:\UTILITARIOS\SiSoftware Sandra Lite 2020\WNt600x64\Sandra.sys [23112 2009-08-07] (SiSoftware Ltd -> SiSoftware)
S2 SecDrv; C:\WINDOWS\SysWOW64\drivers\SECDRV.SYS [28400 2023-04-12] () [Archivo no firmado]
R0 sptd2; C:\WINDOWS\System32\Drivers\sptd2.sys [203832 2022-08-09] (Disc Soft Ltd -> Duplex Secure Ltd)
S3 vmulti; C:\WINDOWS\System32\drivers\vmulti.sys [10752 2018-12-11] (Windows (R) Win 7 DDK provider) [Archivo no firmado]
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49600 2023-04-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [497920 2023-04-05] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99608 2023-04-05] (Microsoft Windows -> Microsoft Corporation)
S3 X86BDA; C:\WINDOWS\System32\drivers\OEMDrv.sys [268416 2011-06-08] () [Archivo no firmado]
U3 aswbdisk; no ImagePath