Buen domingo, Chicloi. Le agradezco su respuesta y de antemano su ayuda para intentar solucionar mi problema.
He encontrado el reporte del Malwarebytes, el del ESET no sé como generarlo pero le informaré el archivo que envío a cuarentena.
Sobre su pregunta, he instalado un activador del office pero lo hice hace años. Hace unas semanas lo volví a utilizar para reactivarlo pero fue el mismo activador.
ESET Antivirus
2025-10-29 11:58:42
Archivo
C:\Windows\System32\Drives\wsddprm.sys
Tamaño
42.5 kb
Nombre de la detección
Win64/VulnDrives.WarsawPM.D potentially unsafe application
Malwarebytes
www.malwarebytes.com
-Detalhes do Relatório-
Data da análise: 29/10/2025
Hora da análise: 06:38
Arquivo de relatório: f7094798-b4aa-11f0-94f6-0ae0afa51b1d.json
-Informações do Software-
Versão: 5.4.1.215
Versão de componentes: 142.0.5389
Versão do pacote de definições: 1.0.104333
Licença: Gratuita
-Informações do Sistema-
Sistema operacional: Windows 10 (Build 19045.6456)
Processador: x64
Sistema de arquivos: NTFS
Usuário: DESKTOP-6TT5F34\User
-Resumo da Análise-
Tipo de análise: Análise Customizada
Análise Iniciada Por: Manual
Resultado: Concluído
Objetos verificados: 663125
Ameaças detectadas: 18
Ameaças em quarentena: 18
Tempo decorrido: 1 hr, 20 min, 28 seg
-Opções da Análise-
Memória: Habilitado
Inicialização: Habilitado
Sistema de arquivos: Habilitado
Arquivos compactados: Habilitado
Rootkits: Desabilitado
Heurística: Habilitado
Programa Potencialmente Indesejado: Detectar
PUM (modificação potencialmente indesejada): Detectar
-Detalhes da Análise-
Processo: 0
(Nenhum item malicioso detectado)
Módulo: 0
(Nenhum item malicioso detectado)
Chave de registro: 0
(Nenhum item malicioso detectado)
Valor de registro: 0
(Nenhum item malicioso detectado)
Dados de registro: 0
(Nenhum item malicioso detectado)
Fluxo de dados: 0
(Nenhum item malicioso detectado)
Pasta: 1
Trojan.FakeGoogleJS, C:\USERS\USER\APPDATA\LOCAL\VDVERHRQCV, Quarentena, 21191, 1358169, 1.0.104333, , ame, , ,
Arquivo: 17
PUP.Optional.BrightData, C:\PROGRAMDATA\BRIGHTDATA\1E1ED6FD22002CDE8B5A7D5E7F0DD614DE67B485\BRD_SDK64_CLR.DLL, Quarentena, 16765, 1351477, 1.0.104333, , ame, , D15771E4FC3CAE6F49DE1FD24EDBA294, 68E06417DA0B4ECCE6C94CFA135E7658CCEC282AFAA107E26D3CDA14671EBBF4
PUP.Optional.BrightData, C:\PROGRAMDATA\BRIGHTDATA\C786A302B42DBA7236BDE68AEE6A8A77FF4ED7E2\BRD_SDK64_CLR.DLL, Quarentena, 16765, 1351477, 1.0.104333, , ame, , 1E6D6C9D676381353577585C0603FE45, 5CA52C3680324343B89BF40DF9D12B2E4970B15AB633872F91ADABB7F5E7C6AC
PUP.Optional.BrightData, C:\PROGRAMDATA\BRIGHTDATA\B28C1E9CAC8B1A16B6F7581ABA14245101B187FB\BRD_SDK64_CLR.DLL, Quarentena, 16765, 1351477, 1.0.104333, , ame, , D15771E4FC3CAE6F49DE1FD24EDBA294, 68E06417DA0B4ECCE6C94CFA135E7658CCEC282AFAA107E26D3CDA14671EBBF4
PUP.Optional.BrightData, C:\PROGRAMDATA\BRIGHTDATA\C1EAD343865723EBDA7EBE9B522CC230CFA2744D\BRD_SDK64_CLR.DLL, Quarentena, 16765, 1351477, 1.0.104333, , ame, , F784ED41E4FE7712C4B72D3A9B516F76, AECA8360C5A8FA0FEFD6BE43B203580D34C9F0398D0A11576BCDA8E878012944
Malware.AI.1123752985, C:\USERS\USER\APPDATA\LOCAL\VIDEODOWNLOADER\UPDATETOOL\CHECKUP.EXE, Quarentena, 1000000, 0, 1.0.104333, A354E2B42C4BC4FB42FB1C19, dds, 03588844, 3367AF896067803581B456B03EAD9214, 6995818A3BFA23D5B9736EB14D61920F30F864481272DE39D03FCA5CBADE152D
Trojan.FakeGoogleJS, C:\USERS\USER\APPDATA\LOCAL\VDVERHRQCV\MANIFEST.JSON, Quarentena, 21191, 1358169, 1.0.104333, , ame, , 4C4082E89303B254DA04A24D2D2633BC, 9BDCF6409F7424AF2DDC729ADBCF6DD00144258B05FFBD94FCE463F258C9BFAA
PUP.Optional.BundleInstaller, C:\USERS\USER\DOWNLOADS\ATUBE_CATCHER_SETUP_10.9.3_X64_OS.EXE, Quarentena, 153, 821683, 1.0.104333, , ame, , 1EA608A69245499F0DB513B6D7DDCA6D, F89CE42ED8387282290B53B93D6D35DB7B0D0971BA66E205B6B88DA3EDFFFCC4
PUP.Optional.BundleInstaller, C:\USERS\USER\DOWNLOADS\ATUBE_CATCHER_SETUP_10.10.0_X64.EXE, Quarentena, 153, 821683, 1.0.104333, , ame, , 6C06298721EDD1E6860A4E26E9BB17C6, 53E4DD75C81C1083ADC2B1CE8F8BDAB87768AB32D9CB112D24D451F9C24F079B
Malware.AI.1123752985, C:\USERS\USER\APPDATA\ROAMING\EASEUS\EVDSDK\CHECKUP.EXE, Quarentena, 1000000, 0, 1.0.104333, A354E2B42C4BC4FB42FB1C19, dds, 03588844, 3367AF896067803581B456B03EAD9214, 6995818A3BFA23D5B9736EB14D61920F30F864481272DE39D03FCA5CBADE152D
Malware.AI.3345680753, C:\USERS\USER\APPDATA\ROAMING\KRUAOQ COMPETATION CORP\SUAIQI APP\LIBPKCS11-HELPER-1.DLL, Quarentena, 1000000, 0, 1.0.104333, A5A84A81ED860CE2C76B0971, dds, 03588844, CF6C0BFEAD4B36B28310427EC631D70D, 1F05342E4FE05B810359561E14C9B2C105FD230C9BFF16B6A43026239CF0BC1F
PUP.Optional.FormatFactory, C:\USERS\USER\DOWNLOADS\FORMATFACTORY2024_11_09\FFSETUP5.20.0.0.EXE, Quarentena, 6975, 1287514, 1.0.104333, , ame, , FA701D9A2F97BD4A47205A0D3F0AB601, 2CAF3479FE1EC606695E9694BDD09BF3AF1BE6531743C812B09394D70CF03939
PUP.Optional.BundleInstaller, C:\USERS\USER\DOWNLOADS\ATUBE_CATCHER_SETUP_10.9.5_X64_OS.EXE, Quarentena, 153, 821683, 1.0.104333, , ame, , B422AC3BB62A3298008766DF4AF95D58, 215931F4F8FA82EC1294BFE3AE7B4C3219719AD6C28E6BB9564AF14EFC9AF437
PUP.Optional.FormatFactory, D:\PROGRAM FILES\FORMATFACTORY5.20.0.0\FORMATFACTORY.EXE, Quarentena, 6975, 1289733, 1.0.104333, , ame, , 9D7128F68F7BFB8BEAA76484209A192F, 249DFFDD74B30B0020A4F5D490E1D6C16630777E3461D466C64BD13155D57801
PUP.Optional.FormatFactory, C:\DOCUMENTS AND SETTINGS\PUBLIC\Desktop\Format Factory.lnk, Quarentena, 6975, 1289733, 1.0.104333, , ame, , BB571FAA91B514EC7DBE0147B427F1AD, 5663507F5595757D79B7C31E716214B7324DB14C5C535E055461705C2213944F
Trojan.MetaSploit, D:\PROGRAM FILES\BANDICAM 5.0.1.1799\BANDICAMPORTABLENONADMIN.EXE, Quarentena, 15697, 1193971, 1.0.104333, , ame, , 3F7B7CD6882CAA420856795EEAD6D23E, 0A0DD1B424A0315FB192789DBDAD9445EEAAC3F0A36E6AD35748A7CF8E7404A2
PUP.Optional.BrightData, D:\PROGRAM FILES\FORMATFACTORY5.20.0.0\LUM_SDK64.DLL, Quarentena, 16765, 1293179, 1.0.104333, , ame, , 8754DC7283316D4862BB176F54861458, 37F41A61BA3CB1C6E1407A3D9DA874039AFD15CCBA24F48FFEBB319B2B87C3DA
PUP.Optional.BrightData, D:\PROGRAM FILES\FORMATFACTORY5.20.0.0\NET_UPDATER64.EXE, Quarentena, 16765, 1293179, 1.0.104333, , ame, , 66EDB29D7A1C4D8EBBBA7EE104662AE0, 355325AA2BB7ACA9708B87880F8892E8C477DAF1AB401AD59EE641B157AEFFE6
Setor físico: 0
(Nenhum item malicioso detectado)
Instrumentação do Windows (WMI): 0
(Nenhum item malicioso detectado)
(end)
Espero sus comentarios.