Problemas al navegar

Buenos dias desde que hace uns cinco dias conecte el telefono movil al ordenador, siempre que conecto un pendriver o una tarjeta de memoria de fotos por ejemplo la CF que es la que huso el ordenador seme cuelga, retiembla la pantalla, no puedo si siquiera habrir carpetas o pestañas. Le he pasado el Avats Premier, Malwarebyterantimalware, incluso AdwCleaner. todo ello con el telefono conectadoy no me ha detectado nada. Una vez que saco cualquiera de estas herramientas de puerto USB. el pc va normal. Si se les ocurre algo estoy a la espera y agradecido de ante mano. Un saludo.

Hola @Gentxo_Guijo, bienvenido al foro de Infospyware. El mejor foro de resolución de problemas. Intentaré resolver su problema pero necesitaré de su paciencia ya que tendremos que hacer varias pruebas.

Envíeme los informes de detección de malewares que usted pudo obtener.

:one: CCleaner

Descarga, instala y/o actualiza Ccleaner

Consulta si es necesario su manual

  • Abres Ccleaner. Pestaña Custom Clean (Limpieza personalizada). Dejas como está configurada predeterminadamente :arrow_forward: haces clic en Analyze (Analizar) y esperas que termine :arrow_forward: clic en Run Cleaner (Ejecutar Limpiador).

:two: Malewarebytes Anti-Maleware

Envíame el informe de Malewarebyte Antimaleware. Si no hiciste un Análisis Personalizado, le sugiero que siga los siguientes pasos.

Descarga, actualiza y ejecuta Malwarebytes’ Anti-Malware , revisa en detalle el manual, para que sepas usarlo y configurarlo. Te doy las instrucciones de esta versión 3:

  • Realiza un Análisis Personalizado (Scan > Custom Scan > botón Configure Scan) , marcando Todas las casillas de la derecha y de la Izquierda actualizando si te lo pide. Ver la imagen mostrada para mayor claridad.
  • Pulsar en “Eliminar Seleccionados” para enviarlo a la cuarentena y Reinicias el sistema.
  • Para acceder posteriormente al informe del análisis: Informes >> Registro de análisis >> Pulsar en >> Exportar >> Copiar al Portapapeles, y lo pegas en tu respuesta

imagen

:three: Realiza un escaneo en línea ESET Online Scanner

Me envías el informe del análisis (ver el Manual).

Manual de ESET Online Scanner.

:four: ZHPCleaner

Ejecutar ZHPCleaner siguiendo su manual. Anexas el reporte en un nuevo mensaje del foro.

:five: CCleaner

  • clic en la pestaña Registro :arrow_forward: clic en buscar problemas y esperas que termine :arrow_forward: clic en Reparar Seleccionadas y haces una copia de seguridad

imagen

Buenos dias Frica te pongo informe de Malewarebytes Anti-Maleware que ha resultado Cero. Te ire pasando el resto segun baya haciendolos, pues este ha tardado mucho en terminar no se como ira el de ESET que es el siguiente. Malwarebytes

Al final te pongo el resultado del escaneo del dia anterio y que esta en Cuarentena.

-Detalles del registro-
Fecha del análisis: 28/10/19
Hora del análisis: 15:15
Archivo de registro: 5b743a88-f98d-11e9-967a-20cf303a4ff6.json

-Información del software-
Versión: 3.8.3.2965
Versión de los componentes: 1.0.629
Versión del paquete de actualización: 1.0.13097
Licencia: Gratis

-Información del sistema-
SO: Windows 10 (Build 18362.418)
CPU: x64
Sistema de archivos: NTFS
Usuario: DESKTOP-P2G5KEN\gentxo

-Resumen del análisis-
Tipo de análisis: Análisis personalizado
Análisis iniciado por:: Manual
Resultado: Completado
Objetos analizados: 651089
Amenazas detectadas: 0
Amenazas en cuarentena: 0
Tiempo transcurrido: 9 hr, 25 min, 53 seg

-Opciones de análisis-
Memoria: Activado
Inicio: Activado
Sistema de archivos: Activado
Archivo: Activado
Rootkits: Activado
Heurística: Activado
PUP: Detectar
PUM: Detectar

-Detalles del análisis-
Proceso: 0
(No hay elementos maliciosos detectados)

Módulo: 0
(No hay elementos maliciosos detectados)

Clave del registro: 0
(No hay elementos maliciosos detectados)

Valor del registro: 0
(No hay elementos maliciosos detectados)

Datos del registro: 0
(No hay elementos maliciosos detectados)

Secuencia de datos: 0
(No hay elementos maliciosos detectados)

Carpeta: 0
(No hay elementos maliciosos detectados)

Archivo: 0
(No hay elementos maliciosos detectados)

Sector físico: 0
(No hay elementos maliciosos detectados)

WMI: 0
(No hay elementos maliciosos detectados)


(end)



Malwarebytes
www.malwarebytes.com

-Detalles del registro-
Fecha del análisis: 27/10/19
Hora del análisis: 22:53
Archivo de registro: 2cb3591a-f904-11e9-be83-20cf303a4ff6.json

-Información del software-
Versión: 3.8.3.2965
Versión de los componentes: 1.0.629
Versión del paquete de actualización: 1.0.13089
Licencia: Gratis

-Información del sistema-
SO: Windows 10 (Build 18362.418)
CPU: x64
Sistema de archivos: NTFS
Usuario: DESKTOP-P2G5KEN\gentxo

-Resumen del análisis-
Tipo de análisis: Análisis personalizado
Análisis iniciado por:: Manual
Resultado: Completado
Objetos analizados: 579473
Amenazas detectadas: 5
Amenazas en cuarentena: 5
Tiempo transcurrido: 2 hr, 9 min, 17 seg

-Opciones de análisis-
Memoria: Activado
Inicio: Activado
Sistema de archivos: Activado
Archivo: Activado
Rootkits: Desactivado
Heurística: Activado
PUP: Detectar
PUM: Detectar

-Detalles del análisis-
Proceso: 0
(No hay elementos maliciosos detectados)

Módulo: 0
(No hay elementos maliciosos detectados)

Clave del registro: 0
(No hay elementos maliciosos detectados)

Valor del registro: 0
(No hay elementos maliciosos detectados)

Datos del registro: 0
(No hay elementos maliciosos detectados)

Secuencia de datos: 0
(No hay elementos maliciosos detectados)

Carpeta: 0
(No hay elementos maliciosos detectados)

Archivo: 5
CrackTool.Agent, C:\USERS\GENTXO\ONEDRIVE\ESCRITORIO\ARCRIVOS EJECUTABLES\ADOBE PHOTOSHOP CC 2017\ACTIVADOR\ACTIVADOR DEL PHOTOSHOP CC 2017.RAR, En cuarentena, [6042], [445980],1.0.13089
CrackTool.Agent, C:\USERS\GENTXO\ONEDRIVE\ESCRITORIO\ARCRIVOS EJECUTABLES\ADOBE PHOTOSHOP CC 2017\ACTIVADOR\ACTIVADOR DEL PHOTOSHOP CC 2017\AMTEMU.V0.9.2-PAINTER.EXE, En cuarentena, [6042], [445980],1.0.13089
CrackTool.Agent, I:\ARCHIVOS EJECUTABLES 1\ADOBE PHOTOSHOP CC 2017\ACTIVADOR\ACTIVADOR DEL PHOTOSHOP CC 2017\AMTEMU.V0.9.2-PAINTER.EXE, En cuarentena, [6042], [445980],1.0.13089
Generic.Malware/Suspicious, I:\ARCHIVOS EJECUTABLES 1\CCLANER PRO\S3S3CL1N3R546.AP.ZENTINELS\2.SERIAL\2.SERIAL.RAR, En cuarentena, [0], [392686],1.0.13089
CrackTool.Agent, I:\ARCHIVOS EJECUTABLES 1\ADOBE PHOTOSHOP CC 2017\ACTIVADOR\ACTIVADOR DEL PHOTOSHOP CC 2017.RAR, En cuarentena, [6042], [445980],1.0.13089

Sector físico: 0
(No hay elementos maliciosos detectados)

WMI: 0
(No hay elementos maliciosos detectados)


(end)

07:08:41 # product=EOS
# version=8
# esetonlinescanner_esn.exe=3.1.10.0
# country="Spain"
# lang=3082
07:12:37 # product=EOS
# version=8
# stats_enabled=0
07:14:45 CmlLineScanner cannot load dll:C:\Users\gentxo\AppData\Local\ESET\ESETOnlineScanner\esets_apiW No se puede encontrar el módulo especificado.

07:14:45 # product=EOS
# version=8
# ESETOnlineScanner_ESL.exe=3.1.10.0
# country="Spain"
# lang=13322
07:15:20 # product=EOS
# version=8
# stats_enabled=0
12:55:35 CmlLineScanner cannot load dll:C:\Users\gentxo\AppData\Local\ESET\ESETOnlineScanner\esets_apiW No se puede encontrar el módulo especificado.

12:55:35 # product=EOS
# version=8
# ESETOnlineScanner_ESL.exe=3.1.10.0
# country="Spain"
# lang=13322
13:01:19 Updating
13:01:19 Update Init
13:01:21 Update Download
13:03:27 esets_scanner_reload returned 0
13:03:27 g_uiModuleBuild: 43264
13:03:27 Update Finalize
13:03:27 Call m_esets_charon_send
13:03:27 Call m_esets_charon_destroy
13:03:27 Updated modules version: 43264
13:03:43 Call m_esets_charon_setup_create
13:03:43 Call m_esets_charon_create
13:03:43 m_esets_charon_create OK
13:03:43 Call m_esets_charon_start_send_thread
13:03:43 Call m_esets_charon_setup_set
13:03:43 m_esets_charon_setup_set OK
13:03:43 Scanner engine: 43264

~ ZHPCleaner v2019.10.26.154 by Nicolas Coolman (2019/10/26)
~ Run by gentxo (Administrator)  (29/10/2019 18:10:26)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Scanner
~ Report : C:\Users\gentxo\Desktop\ZHPCleaner (S).txt
~ Quarantine : C:\Users\gentxo\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ System Restore Point : 
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Home, 64-bit  (Build 18362)


---\\  Alternate Data Stream (ADS). (0)
~ No malintencionados o innecesarios artículos encontrados.


---\\  Servicios (0)
~ No malintencionados o innecesarios artículos encontrados.


---\\  Navegadores de Internet (0)
~ No malintencionados o innecesarios artículos encontrados.


---\\  Hosts carpeta (1)
~ El archivo hosts es legítimo (29)


---\\  Tareas automáticas programadas. (0)
~ No malintencionados o innecesarios artículos encontrados.


---\\  Explorador ( Archivos, Carpetas ) (6)
ENCONTRADOS carpeta: C:\Windows\Prefetch\DESKTOPPLAYER.UWP.EXE-CA59B5E5.pf    =>Adware.CrossRider
ENCONTRADOS carpeta: C:\Windows\Prefetch\KMSAUTO NET.EXE-584A10DE.pf    =>HackTool.WinActivator
ENCONTRADOS carpeta: C:\ProgramData\Microsoft Toolkit\Settings.xml    =>HackTool.AutoKMS
ENCONTRADOS archivo: C:\ProgramData\Microsoft Toolkit  =>HackTool.AutoKMS
ENCONTRADOS carpeta: C:\Users\gentxo\AppData\Local\MSfree Inc\kmsauto.ini    =>HackTool.WinActivator
ENCONTRADOS archivo: C:\Users\gentxo\AppData\Local\MSfree Inc  =>HackTool.WinActivator


---\\  Registro ( Claves, Valores, Datos) (1)
ENCONTRADOS clave: HKEY_USERS\S-1-5-21-2658357981-3838521205-1574942035-1001\SOFTWARE\Classes\fastplayerdvd [URL:fastplayerdvd]  =>PUP.Optional.FastPlayer


---\\  Resumen de elementos en su estación de trabajo (4)
https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/  =>Adware.CrossRider
https://nicolascoolman.eu/2017/01/13/hacktool-winactivator/  =>HackTool.WinActivator
https://nicolascoolman.eu/2017/02/02/hacktool-autokms/  =>HackTool.AutoKMS
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/  =>PUP.Optional.FastPlayer


---\\ Resultado de la reparación.
~ ninguna reparación hecha
~ Google Chrome OK
~ Mozilla Firefox OK
~ Internet Explorer OK


---\\ STATISTIQUES
~ Items escaneado : 104184
~ Items encontrado : 11
~ artículos cancelados : 0
~ Items opciones : 6/13
~ Ahorro de espacio (bytes) : 0


~ End of search in 00h10mn30s

---\\  Reporte (0)
ZHPCleaner-[S]-29102019-18_20_56.txt

Te pongo otro Log de ZHP porque me creo dos en el escritorio y ante la duda te pongo los dos. Espero no complicarte mucho. Un saludo.

~ ZHPCleaner v2019.10.26.154 by Nicolas Coolman (2019/10/26)
~ Run by gentxo (Administrator)  (29/10/2019 18:32:50)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Reparar
~ Report : C:\Users\gentxo\Desktop\ZHPCleaner (R).txt
~ Quarantine : C:\Users\gentxo\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ System Restore Point : OK
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Home, 64-bit  (Build 18362)


---\\  Alternate Data Stream (ADS). (0)
~ No malintencionados o innecesarios artículos encontrados.


---\\  Servicios (0)
~ No malintencionados o innecesarios artículos encontrados.


---\\  Navegadores de Internet (0)
~ No malintencionados o innecesarios artículos encontrados.


---\\  Hosts carpeta (1)
~ El archivo hosts es legítimo (29)


---\\  Tareas automáticas programadas. (0)
~ No malintencionados o innecesarios artículos encontrados.


---\\  Explorador ( Archivos, Carpetas ) (4)
MOVIDO carpeta: C:\Windows\Prefetch\DESKTOPPLAYER.UWP.EXE-CA59B5E5.pf    =>Adware.CrossRider
MOVIDO carpeta: C:\Windows\Prefetch\KMSAUTO NET.EXE-584A10DE.pf    =>HackTool.WinActivator
MOVIDO archivo: C:\ProgramData\Microsoft Toolkit  =>HackTool.AutoKMS
MOVIDO archivo: C:\Users\gentxo\AppData\Local\MSfree Inc  =>HackTool.WinActivator


---\\  Registro ( Claves, Valores, Datos) (1)
BORRADOS clave*: HKEY_USERS\S-1-5-21-2658357981-3838521205-1574942035-1001\SOFTWARE\Classes\fastplayerdvd [URL:fastplayerdvd]  =>PUP.Optional.FastPlayer


---\\  Resumen de elementos en su estación de trabajo (4)
https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/  =>Adware.CrossRider
https://nicolascoolman.eu/2017/01/13/hacktool-winactivator/  =>HackTool.WinActivator
https://nicolascoolman.eu/2017/02/02/hacktool-autokms/  =>HackTool.AutoKMS
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/  =>PUP.Optional.FastPlayer


---\\ Limpieza adicional. (7)
~ Clave de registro Tracing borrados (7)
~ Quitar los antiguos informes de ZHPCleaner. (0)


---\\ Resultado de la reparación.
~ Reparación llevada a cabo con éxito
~ Google Chrome OK
~ Mozilla Firefox OK
~ Internet Explorer OK


---\\ STATISTIQUES
~ Items escaneado : 2040
~ Items encontrado : 0
~ artículos cancelados : 0
~ Items opciones : 6/13
~ Ahorro de espacio (bytes) : 0


~ End of clean in 00h00mn18s

---\\  Reporte (2)
ZHPCleaner-[S]-29102019-18_20_56.txt
ZHPCleaner-[R]-29102019-18_33_08.txt

El informe de ESET no se cual has pegado pero no corresponde al escaneo de maleware. Además lo has vuelto a pegar como antes. ¿has leido el enlace sobre cómo pegar informe que te envíe?

Prueba con el método 2 o 3 por ejemplo. Es más sencillo de lo que tú seguramente piensas. Inténtalo de nuevo porque se nos hace muy difícil leer los informes porque salen todas las líneas sin separar. El método 3 quizá le resulte más sencillo:

Es que no he sido capaz de guardar el informe de EST Queria guardarlo en una carpeta pero no se guardaba lo he tenido que cojer de la carpeta Tem. Probare con el metodo 2 ó 3 Un pregunta tengo que volver a escanear con EST par ver el nuevo informe?

Necesito ver si quedan infecciones y si se han eliminado correctamente. Por favor vuelve a pasar ESET.

07:08:41 # product=EOS
# version=8
# esetonlinescanner_esn.exe=3.1.10.0
# country="Spain"
# lang=3082
07:12:37 # product=EOS
# version=8
# stats_enabled=0
07:14:45 CmlLineScanner cannot load dll:C:\Users\gentxo\AppData\Local\ESET\ESETOnlineScanner\esets_apiW No se puede encontrar el módulo especificado.

07:14:45 # product=EOS
# version=8
# ESETOnlineScanner_ESL.exe=3.1.10.0
# country="Spain"
# lang=13322
07:15:20 # product=EOS
# version=8
# stats_enabled=0
12:55:35 CmlLineScanner cannot load dll:C:\Users\gentxo\AppData\Local\ESET\ESETOnlineScanner\esets_apiW No se puede encontrar el módulo especificado.

12:55:35 # product=EOS
# version=8
# ESETOnlineScanner_ESL.exe=3.1.10.0
# country="Spain"
# lang=13322
13:01:19 Updating
13:01:19 Update Init
13:01:21 Update Download
13:03:27 esets_scanner_reload returned 0
13:03:27 g_uiModuleBuild: 43264
13:03:27 Update Finalize
13:03:27 Call m_esets_charon_send
13:03:27 Call m_esets_charon_destroy
13:03:27 Updated modules version: 43264
13:03:43 Call m_esets_charon_setup_create
13:03:43 Call m_esets_charon_create
13:03:43 m_esets_charon_create OK
13:03:43 Call m_esets_charon_start_send_thread
13:03:43 Call m_esets_charon_setup_set
13:03:43 m_esets_charon_setup_set OK
13:03:43 Scanner engine: 43264
18:05:12 # product=EOS
# version=8
# stats_enabled=0
# rating=0
# feedback=
sh=2F4C82D6AEB1449C3CF6168E3B88C11EAC048775 ft=0 fh=0000000001dc3000 vn="una variante de Win32/UwS.SlimDrivers.A aplicación (eliminado)" ac=C fn="C:\AdwCleaner\Quarantine\v1\20181214.130748\1\Downloaded Installers\{984D8789-07A6-4CD8-9766-35408C67395D}\setup.msi#7B238CD47778005F"
sh=54F422D5F22D4A98D719A183E57025F735F834D7 ft=0 fh=0000000001c32000 vn="una variante de Win32/UwS.SlimDrivers.A aplicación (eliminado)" ac=C fn="C:\AdwCleaner\Quarantine\v1\20181214.130748\1\Downloaded Installers\{D606EFF9-3813-4875-B455-AECD2E7B0676}\setup.msi#7B238CD47778005F"
sh=D7E4DFA28072175D1E0A40FD9741FEA9A17E32CE ft=0 fh=0000000001dbe000 vn="una variante de Win32/UwS.SlimDrivers.A aplicación (eliminado)" ac=C fn="C:\AdwCleaner\Quarantine\v1\20190703.170223\1\Downloaded Installers\{630C3D8E-2BEE-465F-9E59-BB069ED10761}\setup.msi#7B238CD47778005F"
sh=CCEE4E865C59426F5486E515E3AA5D7D53821A14 ft=1 fh=00000000002e53b8 vn="Win32/Bundled.Toolbar.Google.D aplicación potencialmente no segura (error al eliminando (Acceso denegado))" ac=I fn="C:\Program Files\AVAST Software\Avast\setup\aswOfferTool.exe"
sh=CCEE4E865C59426F5486E515E3AA5D7D53821A14 ft=1 fh=00000000002e53b8 vn="Win32/Bundled.Toolbar.Google.D aplicación potencialmente no segura (error al eliminando (Acceso denegado))" ac=I fn="C:\Program Files\AVAST Software\Avast\setup\offertool_x64_ais-959.vpx"
sh=0AD280A273B6B6A2B19035793C0FF8C4F1A4936C ft=0 fh=0000000000000190 vn="BAT/HostsChanger.A aplicación potencialmente no segura (desinfectado por eliminación)" ac=C fn="C:\Users\gentxo\Desktop\CURCUMA Y PAPAYA\Malwarebytes.Anti-Malware.Premium.v2.2.1.1043.Multilingual.Final.Incl.Fix\disable_activation.cmd"
sh=2ACA80C79B637D86785B636D079C240AC9EDA050 ft=0 fh=00000000003f0800 vn="Win32/TrojanDropper.Agent.SEG troyano (eliminado)" ac=C fn="C:\Users\gentxo\Desktop\FILMORA\EXPRESS BURN 7\express_burn_7_0804a0414546603ff_76389_ed8862a901.iso"
sh=0AD280A273B6B6A2B19035793C0FF8C4F1A4936C ft=0 fh=0000000000000190 vn="BAT/HostsChanger.A aplicación potencialmente no segura (desinfectado por eliminación)" ac=C fn="C:\Users\gentxo\Documents\MEGA\MICROSFT OFFICE 2019\Desktop\CURCUMA Y PAPAYA\Malwarebytes.Anti-Malware.Premium.v2.2.1.1043.Multilingual.Final.Incl.Fix\disable_activation.cmd"
sh=A7476F1D732C0B4B762E5490D3B061BE089E74E4 ft=1 fh=0000000005724868 vn="Win32/FusionCore.AR aplicación potencialmente no deseada (desinfectado por eliminación)" ac=C fn="C:\Users\gentxo\Downloads\FormatFactory2019_07_27\FFSetup4.8.0.0.exe"
sh=C710B0EF88029D2B9EC60F10B8D7C0817EFA2CD8 ft=1 fh=0000000001267b30 vn="Win32/Bundled.Toolbar.Google.D aplicación potencialmente no segura (desinfectado por eliminación)" ac=C fn="C:\Users\gentxo\Downloads\ccsetup551.exe"
sh=20F1FD6FD9CB308DECA66ED30BD64A8EF53707C3 ft=0 fh=000000000287440d vn="una variante de Win32/Keygen.CX aplicación potencialmente no segura (eliminado)" ac=C fn="I:\Archivos Ejecutables 1\CCLANER PRO\S3S3CL1N3R546.AP.ZENTINELS.rar"
sh=66874294436C1558BF4745FAF3D8E31DC47864C6 ft=1 fh=0000000004414240 vn="una variante de Win32/FusionCore.AQ aplicación potencialmente no deseada (desinfectado por eliminación)" ac=C fn="I:\Archivos Ejecutables 1\FORMATFACTORY\formatfactory-4-6-1-0.exe"
sh=D06B2DFD92C8A0F1A6B2C45407248C7F1C21A329 ft=1 fh=0000000000946a40 vn="Win32/Adware.Linkular.AB aplicación (desinfectado por eliminación)" ac=C fn="I:\Archivos Ejecutables 1\IMAGE RESIZER 4 Y 5+ CRACK\vso-image-resizer-4-1-0-2-es-en-win.exe"
sh=DECF4FD6E3E2C55A2798CE91B56452F9FDDB7288 ft=1 fh=0000000003d00cce vn="una variante de Win32/HostsEditor.A aplicación potencialmente no segura (desinfectado por eliminación)" ac=C fn="I:\Archivos Ejecutables 1\MALWAREBYTES PREMIUN\MBYTES371.WIN.AP.ZENTINELS\INSTALAR.exe"
sh=9055491DF1B3569FD4832E088C791BEEFAD163B0 ft=0 fh=0000000003d1eb16 vn="una variante de Win32/HostsEditor.A aplicación potencialmente no segura (eliminado)" ac=C fn="I:\Archivos Ejecutables 1\MALWAREBYTES PREMIUN\MBYTES371.WIN.AP.ZENTINELS.rar"
sh=CD7BCBB637AFF53616E57457F67B5068022F5E72 ft=0 fh=00000000002bff5c vn="una variante de MSIL/HackKMS.I aplicación potencialmente no segura (eliminado)" ac=C fn="I:\Archivos Ejecutables 1\Office 2013\ACTIVADOR OFFICE 2013 EN W 10\KMSAuto Net.rar"
sh=D7FB3C296798142D7A8ED7F88B1C6579878CAEFF ft=0 fh=00000000023f6355 vn="una variante de MSIL/HackKMS.G aplicación potencialmente no segura (eliminado)" ac=C fn="I:\Archivos Ejecutables 1\Office 2013\Activador Y Tutorial\MTK242.rar"
sh=66874294436C1558BF4745FAF3D8E31DC47864C6 ft=1 fh=0000000004414240 vn="una variante de Win32/FusionCore.AQ aplicación potencialmente no deseada (desinfectado por eliminación)" ac=C fn="I:\Archivos Ejecutables 1\formatfactory-4-6-1-0.exe"
sh=A2F899C2E7B8BF71A3DB849883BE4A296427D62E ft=1 fh=000000000024a2c0 vn="Win32/OpenCandy.J aplicación potencialmente no segura (eliminado)" ac=C fn="I:\Archivos Ejecutables 1\uTorrent.exe"
18:05:13 Call m_esets_charon_send
18:05:13 Call m_esets_charon_destroy
19:18:38 # product=EOS
# version=8
# ESETOnlineScanner_ESL.exe=3.1.10.0
# country="Spain"
# lang=13322
19:19:05 # product=EOS
# version=8
# stats_enabled=0
19:19:09 # product=EOS
# version=8
# ESETOnlineScanner_ESL.exe=3.1.10.0
# country="Spain"
# lang=13322
19:24:16 # product=EOS
# version=8
# stats_enabled=0
19:24:17 Call m_esets_charon_send
19:24:17 Call m_esets_charon_destroy
19:25:25 # product=EOS
# version=8
# ESETOnlineScanner_ESL.exe=3.1.10.0
# country="Spain"
# lang=13322
19:26:31 Updating
19:26:31 Update Init
19:26:47 Update Download
19:27:23 esets_scanner_reload returned 0
19:27:23 g_uiModuleBuild: 43268
19:27:23 Update Finalize
19:27:23 Call m_esets_charon_send
19:27:23 Call m_esets_charon_destroy
19:27:23 Updated modules version: 43268
19:27:39 Call m_esets_charon_setup_create
19:27:39 Call m_esets_charon_create
19:27:39 m_esets_charon_create OK
19:27:39 Call m_esets_charon_start_send_thread
19:27:39 Call m_esets_charon_setup_set
19:27:39 m_esets_charon_setup_set OK
19:27:39 Scanner engine: 43268
22:30:30 # product=EOS
# version=8
# stats_enabled=0
22:30:31 Call m_esets_charon_send
22:30:31 Call m_esets_charon_destroy

Ahora vamos a pasar una herramienta avanzada para analizar más en profundidad su equipo.

Realiza lo siguiente:

1.- Desactiva temporalmente tu antivirus y cualquier programa de seguridad.

2.- Descarga Farbar Recovery Scan Tool. en el escritorio, seleccionando la versión adecuada para la arquitectura (32 o 64bits) de su equipo. [size=1] >> Como saber si mi Windows es de 32 o 64 bits.?[/size]

  • Ejecuta FRST.exe.
  • En el mensaje de la ventana del Disclaimer, pulsamos Yes
  • En la ventana principal pulsamos en el botón Scan y esperamos a que concluya el proceso.
  • Se abrirán dos(2) archivos(Logs), Frst.txt y Addition.txt, estos quedaran grabados en el escritorio.

Guía: Como Ejecutar FRST

3.- En tu próxima respuesta, pega los reportes generados.

Guía : ¿Como Pegar reportes en el Foro?

Esperamos esos reporte.

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-10-2019
Ran by gentxo (29-10-2019 23:46:23)
Running from C:\Users\gentxo\Desktop\HERRAMIENTAS DE DESINFECCION\FRST64
Windows 10 Home Version 1903 18362.418 (X64) (2019-08-11 22:35:26)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrador (S-1-5-21-2658357981-3838521205-1574942035-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2658357981-3838521205-1574942035-503 - Limited - Disabled)
gentxo (S-1-5-21-2658357981-3838521205-1574942035-1001 - Administrator - Enabled) => C:\Users\gentxo
HomeGroupUser$ (S-1-5-21-2658357981-3838521205-1574942035-1003 - Limited - Enabled)
Invitado (S-1-5-21-2658357981-3838521205-1574942035-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-2658357981-3838521205-1574942035-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Disabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
FW: Avast Antivirus (Disabled) {B693136B-F6EE-DD1C-A0EF-229B8B0B29C4}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Actualización de NVIDIA 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation)
Adobe Acrobat Reader DC - Español (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-AC0F074E4100}) (Version: 19.021.20049 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 32.0.0.89 - Adobe Systems Incorporated)
Adobe Bridge CC 2018 (HKLM-x32\...\KBRG_8_0_1) (Version: 8.0.1 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 4.8.2.476 - Adobe Systems Incorporated)
Adobe Media Encoder CC 2018 (HKLM-x32\...\AME_12_1_1) (Version: 12.1.1 - Adobe Systems Incorporated)
Adobe Photoshop CC 2018 (HKLM-x32\...\PHSP_19_1_1) (Version: 19.1.1 - Adobe Systems Incorporated)
Adobe Premiere Pro CC 2018 (HKLM-x32\...\PPRO_12_1_1) (Version: 12.1.1 - Adobe Systems Incorporated)
Amazon Photos (HKU\S-1-5-21-2658357981-3838521205-1574942035-1001\...\Amazon Photos) (Version: 5.9.5 - Amazon.com, Inc.)
Argente - Registry Cleaner 3.1.0.1 (HKLM-x32\...\Argente - Registry Cleaner_is1) (Version: 3.1.0.1 - Argente Software)
Avast Cleanup Premium (HKLM-x32\...\{075CC190-59EE-499F-828B-0B5C098C8C15}_is1) (Version: 19.1.7734 - AVAST Software)
Avast Premium Security (HKLM-x32\...\Avast Antivirus) (Version: 19.8.2393 - AVAST Software)
Bing Bar (HKLM-x32\...\{3611CA6C-5FCA-4900-A329-6A118123CCFC}) (Version: 7.1.355.0 - Microsoft Corporation)
CCleaner (HKLM\...\CCleaner) (Version: 5.63 - Piriform)
Eines de correcció del Microsoft Office 2013: català (HKLM-x32\...\{90150000-001F-0403-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version:  - )
FastStone Image Viewer 6.4 (HKLM-x32\...\FastStone Image Viewer) (Version: 6.4 - FastStone Soft)
Ferramentas de verificación de Microsoft Office 2013 - Galego (HKLM-x32\...\{90150000-001F-0456-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
FormatFactory 4.8.0.0 (HKLM-x32\...\FormatFactory) (Version: 4.8.0.0 - Free Time)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 78.0.3904.70 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.301 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.123 - Google Inc.) Hidden
HP ENVY 110 series Ayuda (HKLM-x32\...\{D4444B31-E9E9-4389-B35D-41B5BCA5E9FB}) (Version: 140.0.2.2 - Hewlett Packard)
HP ENVY 110 series Estudio para la mejora del producto (HKLM\...\{BAC25988-811D-409B-A221-32F01C48F8BC}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP ENVY 110 series Software básico del dispositivo (HKLM\...\{C630CC65-5052-4453-BC78-CF0681C3AD5D}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HTC Driver Installer (HKLM-x32\...\{4CEEE5D0-F905-4688-B9F9-ECC710507796}) (Version: 4.17.0.001 - HTC Corporation)
HTC Sync Manager (HKLM-x32\...\{231D0C79-98A6-4693-A366-36DE7D7346EC}) (Version: 3.1.88.3 - HTC)
Hugin (HKLM\...\{2B0ABE08-721A-4DC6-A924-811B70495C1A}) (Version: 20.19.0 - Hugin developer team)
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
IPTInstaller (HKLM-x32\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.9 - HTC)
Light Image Resizer 5.1.2.0 (HKLM-x32\...\{D5C093E0-D3DF-42D3-AFD6-CAAFB6985CBC}_is1) (Version: 5.1.2.0 - ObviousIdea)
Logitech SetPoint 6.69 (HKLM\...\sp6) (Version: 6.69.123 - Logitech)
MAGIX Speed burnR (MSI) (HKLM\...\{F96D6182-9F8E-44FF-A77E-86B22EACCD38}) (Version: 7.0.1.27 - MAGIX AG) Hidden
MAGIX Video deluxe 2014 Premium (HKLM\...\{B7086268-EA37-405A-A2F9-60A52E7BC528}) (Version: 13.0.2.8 - MAGIX AG) Hidden
Malwarebytes versión 3.8.3.2965 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.8.3.2965 - Malwarebytes)
Microsoft Office Professional Plus 2013 (HKLM-x32\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2658357981-3838521205-1574942035-1001\...\OneDriveSetup.exe) (Version: 19.152.0927.0012 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.15.26706 (HKLM-x32\...\{95ac1cfa-f4fb-4d1b-8912-7f9d5fbb140d}) (Version: 14.15.26706.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.15.26706 (HKLM-x32\...\{7e9fae12-5bbf-47fb-b944-09c49e75c061}) (Version: 14.15.26706.0 - Microsoft Corporation)
Microsoft Visual C++ Run Time  Lib Setup (HKLM-x32\...\{AAF4238F-7C29-451D-9925-C753271A5728}) (Version: 1.0.0 - Microsoft)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Movavi Video Converter 18 Premium (HKLM-x32\...\Movavi Video Converter 18 Premium) (Version: 18.3.1 - Movavi)
Mozilla Firefox 70.0 (x64 es-ES) (HKLM\...\Mozilla Firefox 70.0 (x64 es-ES)) (Version: 70.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 70.0 - Mozilla)
Mozilla Thunderbird 60.9.0 (x86 es-ES) (HKLM-x32\...\Mozilla Thunderbird 60.9.0 (x86 es-ES)) (Version: 60.9.0 - Mozilla)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
Nik Collection (HKLM-x32\...\Nik Collection) (Version: 1.2.11 - Google)
Nitro Pro 8 (HKLM\...\{CF0C0800-91E5-4DD5-9D39-5AC1678EDF80}) (Version: 8.5.1.10 - Nitro)
NVIDIA Controlador de audio HD 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM-x32\...\{90150000-001F-040C-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Panel de control de NVIDIA 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 342.01 - NVIDIA Corporation) Hidden
Paquete de controladores de Windows - Phase One / Mamiya V-Grip USB Driver (12/03/2014 1.2.0.0) (HKLM\...\3F504CC0B024052107934E093CC26DA720256A7A) (Version: 12/03/2014 1.2.0.0 - Phase One / Mamiya)
Paquete de controladores de Windows - Phase One A/S (WinUSB) USBDevice  (12/14/2018 1.15.0.0) (HKLM\...\9398055CF8BEEF1D6FCF147047450F15A1C7AF2A) (Version: 12/14/2018 1.15.0.0 - Phase One A/S)
Paquete de idioma de Microsoft Visual Studio 2010 Tools para Office Runtime (x64) - ESN (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - ESN) (Version: 10.0.50903 - Microsoft Corporation)
Programa Saal Design (HKLM-x32\...\{CB151870-B711-E4E0-EDC2-19D7A047E986}) (Version: 4.1 - Saal Digital Fotoservice GmbH) Hidden
Revisores de Texto do Microsoft Office 2013 – Português do Brasil (HKLM-x32\...\{90150000-001F-0416-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Revo Uninstaller Pro 3.2.0 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.2.0 - VS Revo Group, Ltd.)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{7F6C4883-A18C-459A-82C1-A2F9403F2DA6}) (Version:  - Microsoft)
Telegram Desktop version 1.3.14 (HKU\S-1-5-21-2658357981-3838521205-1574942035-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 1.3.14 - Telegram Messenger LLP)
Update for Skype for Business 2015 (KB4475564) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{14E2D22A-5164-4E35-8239-E2DB5D6B9A09}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB4475564) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUS_{14E2D22A-5164-4E35-8239-E2DB5D6B9A09}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB4475564) 32-Bit Edition (HKLM-x32\...\{90150000-012B-0C0A-0000-0000000FF1CE}_Office15.PROPLUS_{14E2D22A-5164-4E35-8239-E2DB5D6B9A09}) (Version:  - Microsoft)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{16AD6161-2E47-4BF1-AA77-0946EFE93E08}) (Version: 2.61.0.0 - Microsoft Corporation)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{F14FB68A-9188-4036-AD0D-D054BC9C9291}) (Version: 2.59.0.0 - Microsoft Corporation)
UpdateAssistant (HKLM-x32\...\{7C070E60-8769-4763-BBD8-7537A28A60D4}) (Version: 1.10.0.0 - Microsoft Corporation) Hidden
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.6 - VideoLAN)
WhatsApp (HKU\S-1-5-21-2658357981-3838521205-1574942035-1001\...\WhatsApp) (Version: 0.3.5148 - WhatsApp)
Winamp (HKLM-x32\...\Winamp) (Version: 5.666  - Nullsoft, Inc)
WinRAR 5.61 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.61.0 - win.rar GmbH)
Wondershare Filmora9(Build 9.1.1) (HKLM\...\Wondershare Filmora9_is1) (Version:  - Wondershare Software)

Packages:
=========
360 Viewer -> C:\Program Files\WindowsApps\Microsoft.360Viewer_2.3.5.0_neutral__8wekyb3d8bbwe [2019-05-18] (Microsoft Corporation)
AdBlock -> C:\Program Files\WindowsApps\BetaFish.AdBlock_2.9.0.0_neutral__c1wakc4j0nefm [2019-02-27] (BetaFish)
Adblock Plus -> C:\Program Files\WindowsApps\EyeoGmbH.AdblockPlus_0.9.18.0_neutral__d55gg7py3s0m0 [2019-10-22] (eyeo GmbH)
Candy Crush Soda Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSodaSaga_1.150.300.0_x86__kgqvnymyfvs32 [2019-10-16] (king.com)
Complemento de Fotos -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2017.39121.36610.0_x64__8wekyb3d8bbwe [2018-09-13] (Microsoft Corporation)
Correo y Calendario -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20218.0_x64__8wekyb3d8bbwe [2019-09-25] (Microsoft Corporation) [MS Ad]
GMessenger Free -> C:\Program Files\WindowsApps\VirtualPulse.GMessengerFree_1.43.120.0_x64__nh7p8cqfc4t04 [2019-08-04] (Virtual Pulse)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-20] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-20] (Microsoft Corporation) [MS Ad]
Microsoft News: Noticias destacadas en español -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-11] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.10022.0_x64__8wekyb3d8bbwe [2019-10-09] (Microsoft Studios) [MS Ad]
MSN Deportes -> C:\Program Files\WindowsApps\Microsoft.BingSports_4.31.11905.0_x64__8wekyb3d8bbwe [2019-07-19] (Microsoft Corporation) [MS Ad]
MSN Dinero -> C:\Program Files\WindowsApps\Microsoft.BingFinance_4.31.11905.0_x64__8wekyb3d8bbwe [2019-07-19] (Microsoft Corporation) [MS Ad]
MSN El Tiempo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-11] (Microsoft Corporation) [MS Ad]
Player for Media -> C:\Program Files\WindowsApps\VirtualPulse.PlayerforMedia_1.69.153.0_x64__nh7p8cqfc4t04 [2019-08-17] (Virtual Pulse)
Twitter -> C:\Program Files\WindowsApps\9E2F88E3.Twitter_6.1.4.1000_neutral__wgeqdkkx372wm [2018-09-09] (Twitter Inc.)
Ultra Wide Video -> C:\Program Files\WindowsApps\16256sithrebel15.UltraWideVideo_1.0.2.0_neutral__ev392xfsfddmw [2018-04-24] (sithrebel15)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2658357981-3838521205-1574942035-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-71A591663D0D} -> [Creative Cloud Files] => C:\Users\gentxo\Creative Cloud Files [2018-02-16 13:21]
CustomCLSID: HKU\S-1-5-21-2658357981-3838521205-1574942035-1001_Classes\CLSID\{9B57F475-CCB0-4C85-88A9-2AA9A6C0809A} -> [Amazon Drive] => I:\MIS IMAGENES\Amazon Drive [2018-03-02 23:58]
CustomCLSID: HKU\S-1-5-21-2658357981-3838521205-1574942035-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Inc. -> Adobe Systems)
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} =>  -> No File
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} =>  -> No File
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} =>  -> No File
ShellIconOverlayIdentifiers: [   AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [   AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [   AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-09-21] (AVAST Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} =>  -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} =>  -> No File
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> No File
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-09-21] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
ContextMenuHandlers1: [FormatFactoryShell] -> {A3888923-CFD3-4A6B-89BF-08E6B95716E8} => C:\Program Files (x86)\FormatFactory\ShellEx64_106.dll [2019-07-02] (Free Time) [File not signed]
ContextMenuHandlers1: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} =>  -> No File
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>  -> No File
ContextMenuHandlers1: [NP8ShellExtension] -> {9C4B85B8-956C-49BF-9BA5-101384E562B2} => C:\Program Files\Common Files\Nitro\Pro\8.0\NPShellExtension64.dll [2013-03-05] (Nitro PDF Software -> Nitro PDF)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} =>  -> No File
ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>  -> No File
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-09-21] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>  -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} =>  -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} =>  -> No File
ContextMenuHandlers4: [FormatFactoryShell] -> {A3888923-CFD3-4A6B-89BF-08E6B95716E8} => C:\Program Files (x86)\FormatFactory\ShellEx64_106.dll [2019-07-02] (Free Time) [File not signed]
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>  -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> No File
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2016-11-14] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-09-21] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
ContextMenuHandlers6: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} =>  -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> No File
ContextMenuHandlers6: [RUShellExt] -> {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} => C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll [2012-12-29] (VS Revo Group -> VS Revo Group)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [vidc.i420] => C:\WINDOWS\system32\lvcod64.dll [175392 2012-10-26] (Logitech, Inc. -> Logitech Inc.)
HKLM\...\Drivers32: [vidc.i420] => C:\Windows\SysWOW64\lvcodec2.dll [305000 2012-10-26] (Logitech, Inc. -> Logitech Inc.)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\gentxo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome\Logitech Unifying for Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=agpmgihmmmfkbhckmciedmhincdggomo

==================== Loaded Modules (Whitelisted) =============

2018-05-11 06:29 - 2016-09-12 14:53 - 048936448 _____ () [File not signed] C:\Program Files (x86)\AVAST Software\Avast Cleanup\libcef.dll
2019-07-02 10:29 - 2019-07-02 10:29 - 000301568 _____ (Free Time) [File not signed] C:\Program Files (x86)\FormatFactory\ShellEx64_106.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-2658357981-3838521205-1574942035-1001\...\localhost -> localhost

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-07-10 12:04 - 2019-08-28 18:28 - 000000949 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1  skipittok.com
0.0.0.0  telemetry.malwarebytes.com
0.0.0.0 serius.mwbsys.com
0.0.0.0 keystone.mwbsys.com

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2658357981-3838521205-1574942035-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "Logitech Download Assistant"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0"
HKLM\...\StartupApproved\Run: => "EvtMgr6"
HKLM\...\StartupApproved\Run32: => "HP Software Update"
HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud"
HKLM\...\StartupApproved\Run32: => "Wondershare Helper Compact.exe"
HKU\S-1-5-21-2658357981-3838521205-1574942035-1001\...\StartupApproved\Run: => "OneDriveSetup"
HKU\S-1-5-21-2658357981-3838521205-1574942035-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2658357981-3838521205-1574942035-1001\...\StartupApproved\Run: => "HP ENVY 110 series (NET)"
HKU\S-1-5-21-2658357981-3838521205-1574942035-1001\...\StartupApproved\Run: => "uTorrent"
HKU\S-1-5-21-2658357981-3838521205-1574942035-1001\...\StartupApproved\Run: => "Amazon Photos"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{AFC436DB-4E41-42A3-B00E-BCCEA0EACE86}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Package\PTInstOnline.exe (暇光软件科技(上海)有限公司 -> Free Time Co., Ltd.)
FirewallRules: [{281392F6-4B3D-4B31-9AFD-E3C2AF14E950}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe (暇光软件科技(上海)有限公司 -> Free Time Co., Ltd.)
FirewallRules: [{D4115C80-48BC-4C37-BB42-7C3579DB91E3}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe (Free Time Co., Ltd. -> Free Time Co., Ltd.)
FirewallRules: [{5235AFDB-4378-45D9-AF1F-D5A98DC5D76F}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe (Free Time Co., Ltd. -> Free Time Co., Ltd.)
FirewallRules: [{3815C6FD-8D16-401A-B650-7940AB6CF1D2}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe (暇光软件科技(上海)有限公司 -> Free Time Co., Ltd.)
FirewallRules: [{239CD391-D807-4614-976F-F34C8B733936}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe (暇光软件科技(上海)有限公司 -> Free Time Co., Ltd.)
FirewallRules: [{E6A4E5E4-099C-4178-904E-DDEEDB69F75D}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe (Free Time Co., Ltd. -> Free Time Co., Ltd.)
FirewallRules: [{A19C942F-023F-4321-B754-FCA204FEE5F2}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe (暇光软件科技(上海)有限公司 -> Free Time Co., Ltd.)
FirewallRules: [{6327D48E-EA68-4D56-877E-90F7E3EF9269}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe (Free Time Co., Ltd. -> Free Time Co., Ltd.)
FirewallRules: [UDP Query User{7A445921-B893-4A38-A692-35E3FE41894E}C:\program files\hp\hp envy 110 series\bin\hpnetworkcommunicator.exe] => (Block) C:\program files\hp\hp envy 110 series\bin\hpnetworkcommunicator.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [TCP Query User{E6716628-D298-46F8-BECB-C0FC1B1BCB18}C:\program files\hp\hp envy 110 series\bin\hpnetworkcommunicator.exe] => (Block) C:\program files\hp\hp envy 110 series\bin\hpnetworkcommunicator.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{285C2DA9-24A2-4565-92A3-801BA39ADEA0}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A1D2859B-3CD5-4046-87FD-2E20BCFD78C1}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{06A36C23-C6BA-494F-B08B-E7FF64D641D8}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{DA2F7D83-69C0-45D0-B2C0-0EB9B17DC48B}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C4C89972-FA4B-47DF-A454-3EB264FA204B}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.)
FirewallRules: [{4F9CC553-31D4-4FA4-BECD-273379994E09}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.)
FirewallRules: [UDP Query User{E54A838F-795B-41F3-BEA6-3AC578DDF2C0}C:\program files\hp\hp envy 110 series\bin\hpnetworkcommunicatorcom.exe] => (Block) C:\program files\hp\hp envy 110 series\bin\hpnetworkcommunicatorcom.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [TCP Query User{EF7F998D-5765-4EBF-97A6-1ECDE5F1A50C}C:\program files\hp\hp envy 110 series\bin\hpnetworkcommunicatorcom.exe] => (Block) C:\program files\hp\hp envy 110 series\bin\hpnetworkcommunicatorcom.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{D76E9E7D-F5D3-4431-A95B-0A22EC548A5E}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{EE66C2FF-3EE9-4173-919E-C5FB67ABC004}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{96724839-A0FC-42C8-BD06-859E6E3ACC7C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

19-10-2019 09:09:33 Punto de control programado
29-10-2019 18:31:33 ZHPcleaner

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (10/29/2019 11:41:03 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (13460,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (10/29/2019 11:39:06 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Error al generar el contexto de activación para "C:\Users\gentxo\Desktop\HERRAMIENTAS DE DESINFECCION\esetsmartinstaller_esn.exe". Error en el archivo de manifiesto o directiva "" en la línea .
Una versión de componente requerida por la aplicación está en conflicto con la versión de otro componente activo.
Los componentes en conflicto son:.
Componente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.18362.418_none_e6c6b287130d565d.manifest.
Componente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.18362.418_none_2e73e95e27897f63.manifest.

Error: (10/29/2019 11:36:20 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Error al generar el contexto de activación para "C:\Users\gentxo\Desktop\HERRAMIENTAS DE DESINFECCION\esetsmartinstaller_esn.exe". Error en el archivo de manifiesto o directiva "" en la línea .
Una versión de componente requerida por la aplicación está en conflicto con la versión de otro componente activo.
Los componentes en conflicto son:.
Componente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.18362.418_none_e6c6b287130d565d.manifest.
Componente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.18362.418_none_2e73e95e27897f63.manifest.

Error: (10/29/2019 11:29:49 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (13020,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (10/29/2019 11:17:56 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (12952,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (10/29/2019 11:06:58 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Error al generar el contexto de activación para "C:\Users\gentxo\Desktop\HERRAMIENTAS DE DESINFECCION\esetsmartinstaller_esn.exe". Error en el archivo de manifiesto o directiva "" en la línea .
Una versión de componente requerida por la aplicación está en conflicto con la versión de otro componente activo.
Los componentes en conflicto son:.
Componente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.18362.418_none_e6c6b287130d565d.manifest.
Componente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.18362.418_none_2e73e95e27897f63.manifest.

Error: (10/29/2019 11:06:20 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Error al generar el contexto de activación para "C:\Users\gentxo\Desktop\HERRAMIENTAS DE DESINFECCION\esetsmartinstaller_esn.exe". Error en el archivo de manifiesto o directiva "" en la línea .
Una versión de componente requerida por la aplicación está en conflicto con la versión de otro componente activo.
Los componentes en conflicto son:.
Componente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.18362.418_none_e6c6b287130d565d.manifest.
Componente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.18362.418_none_2e73e95e27897f63.manifest.

Error: (10/29/2019 11:00:45 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Error al generar el contexto de activación para "C:\Users\gentxo\Desktop\HERRAMIENTAS DE DESINFECCION\esetsmartinstaller_esn.exe". Error en el archivo de manifiesto o directiva "" en la línea .
Una versión de componente requerida por la aplicación está en conflicto con la versión de otro componente activo.
Los componentes en conflicto son:.
Componente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.18362.418_none_e6c6b287130d565d.manifest.
Componente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.18362.418_none_2e73e95e27897f63.manifest.


System errors:
=============
Error: (10/29/2019 07:27:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio eapihdrv no pudo iniciarse debido al siguiente error: 
Se ha bloqueado la descarga de este controlador

Error: (10/29/2019 07:27:25 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\gentxo\AppData\Local\Temp\ehdrv.sys

Error: (10/29/2019 07:27:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio eapihdrv no pudo iniciarse debido al siguiente error: 
Se ha bloqueado la descarga de este controlador

Error: (10/29/2019 07:27:24 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\gentxo\AppData\Local\Temp\ehdrv.sys

Error: (10/29/2019 07:27:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio eapihdrv no pudo iniciarse debido al siguiente error: 
Se ha bloqueado la descarga de este controlador

Error: (10/29/2019 07:27:24 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\gentxo\AppData\Local\Temp\ehdrv.sys

Error: (10/29/2019 07:27:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio eapihdrv no pudo iniciarse debido al siguiente error: 
Se ha bloqueado la descarga de este controlador

Error: (10/29/2019 07:27:24 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\gentxo\AppData\Local\Temp\ehdrv.sys


Windows Defender:
===================================
Date: 2019-10-29 16:01:24.944
Description: 
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para más información, consulta lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win32/AutoKMS&threatid=2147685180&enterprise=0
Nombre: HackTool:Win32/AutoKMS
Id.: 2147685180
Gravedad: Alta
Categoría: Herramienta
Ruta de acceso: containerfile:_I:\Archivos Ejecutables 1\Office 2013\Activador Y Tutorial\MTK242.exe; file:_I:\Archivos Ejecutables 1\Office 2013\Activador Y Tutorial\MTK242.exe; file:_I:\Archivos Ejecutables 1\Office 2013\Activador Y Tutorial\MTK242.exe->[SAResource]
Origen de detección: Equipo local
Tipo de detección: FastPath
Origen de detección: Protección en tiempo real
Usuario: DESKTOP-P2G5KEN\gentxo
Nombre de proceso: C:\Users\gentxo\Desktop\HERRAMIENTAS DE DESINFECCION\ESET\ESETOnlineScanner_ESL.exe
Versión de inteligencia de seguridad: AV: 1.305.914.0, AS: 1.305.914.0, NIS: 1.305.914.0
Versión de motor: AM: 1.1.16500.1, NIS: 1.1.16500.1

Date: 2019-10-29 16:00:46.439
Description: 
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para más información, consulta lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win32/AutoKMS&threatid=2147685180&enterprise=0
Nombre: HackTool:Win32/AutoKMS
Id.: 2147685180
Gravedad: Alta
Categoría: Herramienta
Ruta de acceso: containerfile:_I:\Archivos Ejecutables 1\Office 2013\Activador Y Tutorial\MTK242.exe; file:_I:\Archivos Ejecutables 1\Office 2013\Activador Y Tutorial\MTK242.exe; file:_I:\Archivos Ejecutables 1\Office 2013\Activador Y Tutorial\MTK242.exe->[SAResource]
Origen de detección: Equipo local
Tipo de detección: FastPath
Origen de detección: Protección en tiempo real
Usuario: DESKTOP-P2G5KEN\gentxo
Nombre de proceso: C:\Users\gentxo\Desktop\HERRAMIENTAS DE DESINFECCION\ESET\ESETOnlineScanner_ESL.exe
Versión de inteligencia de seguridad: AV: 1.305.914.0, AS: 1.305.914.0, NIS: 1.305.914.0
Versión de motor: AM: 1.1.16500.1, NIS: 1.1.16500.1

Date: 2019-10-29 16:00:43.131
Description: 
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para más información, consulta lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win32/AutoKMS&threatid=2147685180&enterprise=0
Nombre: HackTool:Win32/AutoKMS
Id.: 2147685180
Gravedad: Alta
Categoría: Herramienta
Ruta de acceso: file:_I:\Archivos Ejecutables 1\Office 2013\Activador Y Tutorial\MTK242.exe->[SAResource]
Origen de detección: Equipo local
Tipo de detección: FastPath
Origen de detección: Protección en tiempo real
Usuario: DESKTOP-P2G5KEN\gentxo
Nombre de proceso: C:\Users\gentxo\Desktop\HERRAMIENTAS DE DESINFECCION\ESET\ESETOnlineScanner_ESL.exe
Versión de inteligencia de seguridad: AV: 1.305.914.0, AS: 1.305.914.0, NIS: 1.305.914.0
Versión de motor: AM: 1.1.16500.1, NIS: 1.1.16500.1

Date: 2019-10-29 16:00:27.081
Description: 
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para más información, consulta lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win32/AutoKMS&threatid=2147685180&enterprise=0
Nombre: HackTool:Win32/AutoKMS
Id.: 2147685180
Gravedad: Alta
Categoría: Herramienta
Ruta de acceso: file:_I:\Archivos Ejecutables 1\Office 2013\ACTIVADOR OFFICE 2013 EN W 10\KMSAuto Net.exe
Origen de detección: Equipo local
Tipo de detección: Concreto
Origen de detección: Protección en tiempo real
Usuario: DESKTOP-P2G5KEN\gentxo
Nombre de proceso: C:\Users\gentxo\Desktop\HERRAMIENTAS DE DESINFECCION\ESET\ESETOnlineScanner_ESL.exe
Versión de inteligencia de seguridad: AV: 1.305.914.0, AS: 1.305.914.0, NIS: 1.305.914.0
Versión de motor: AM: 1.1.16500.1, NIS: 1.1.16500.1

CodeIntegrity:
===================================

Date: 2019-10-29 23:39:51.038
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-10-29 23:39:49.020
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-10-29 23:39:46.980
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-10-29 23:39:44.939
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-10-29 23:39:41.533
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-10-29 23:39:39.496
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-10-29 23:39:33.970
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.

Date: 2019-10-29 23:39:33.951
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.

==================== Memory info =========================== 

BIOS: American Megatrends Inc. 1101 08/18/2010
Motherboard: ASUSTeK Computer INC. P7H55-M
Processor: Intel(R) Core(TM) i5 CPU 760 @ 2.80GHz
Percentage of memory in use: 82%
Total physical RAM: 6109.99 MB
Available physical RAM: 1058.74 MB
Total Virtual: 9053.99 MB
Available Virtual: 3065.68 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:249.68 GB) (Free:127.47 GB) NTFS
Drive i: (Nuevo vol) (Fixed) (Total:1612.79 GB) (Free:780.65 GB) NTFS

\\?\Volume{15a51092-0000-0000-0000-100000000000}\ () (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 1863 GB) (Disk ID: 15A51092)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=249.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=1612.8 GB) - (Type=0F Extended)

==================== End of Addition.txt =======================

Primera parte del FRST.exe.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 29-10-2019
Ran by gentxo (administrator) on DESKTOP-P2G5KEN (30-10-2019 10:50:10)
Running from C:\Users\gentxo\Desktop\HERRAMIENTAS DE DESINFECCION\FRST64
Loaded Profiles: gentxo (Available Profiles: gentxo)
Platform: Windows 10 Home Version 1903 18362.418 (X64) Language: Español (España, internacional)
Default browser: FF
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Hewlett Packard -> Hewlett-Packard Co.) C:\Program Files\HP\HP ENVY 110 series\Bin\HPNetworkCommunicatorCom.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files (x86)\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation -> Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\SeaPort.EXE
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1908.0.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20218.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20218.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Nitro PDF Software -> Nitro PDF Software) C:\Program Files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Piriform Software Ltd -> Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1794888 2018-02-15] (NVIDIA Corporation -> NVIDIA Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [268680 2019-09-21] (AVAST Software s.r.o. -> AVAST Software)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3136136 2019-01-30] (Logitech Inc -> Logitech, Inc.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3942864 2018-02-15] (Logitech -> Logitech, Inc.)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2622520 2019-05-19] (Adobe Inc. -> Adobe Inc.)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-2658357981-3838521205-1574942035-1001\...\Run: [HP ENVY 110 series (NET)] => C:\Program Files\HP\HP ENVY 110 series\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.)
HKU\S-1-5-21-2658357981-3838521205-1574942035-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-10-14] (Piriform Software Ltd -> Piriform Ltd)
HKU\S-1-5-21-2658357981-3838521205-1574942035-1001\...\Run: [Amazon Photos] => C:\Users\gentxo\AppData\Local\Amazon Drive\AmazonPhotos.exe [8482472 2019-06-17] (Amazon Services LLC -> Amazon.com Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.70\Installer\chrmstp.exe [2019-10-29] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast Cleanup Premium.lnk [2019-06-06]
ShortcutTarget: Avast Cleanup Premium.lnk -> C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe (AVAST Software s.r.o. -> AVAST Software)
Startup: C:\Users\gentxo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Supervisar alertas de tinta - HP ENVY 110 series (Red).lnk [2019-10-30]
ShortcutAndArgument: Supervisar alertas de tinta - HP ENVY 110 series (Red).lnk -> C:\WINDOWS\system32\RunDll32.exe => "C:\Program Files\HP\HP ENVY 110 series\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=CN18GC212W05QS;CONNECTION=NW;MONITOR=1;
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0D040293-E146-4A10-99F6-ECD76F312741} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {1160863B-52A9-4610-AB73-9B444DFD78EF} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-14] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {17D3858A-78ED-4512-AFC7-82FAD5395C76} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-16] (Google Inc -> Google Inc.)
Task: {23206072-B8BA-4DD9-8AC8-D84DA2E7EC29} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\gentxo\Desktop\HERRAMIENTAS DE DESINFECCION\ESET\ESETOnlineScanner_ESL.exe [8166712 2019-10-29] (ESET, spol. s r.o. -> ESET spol. s r.o.)
Task: {2834466A-7C55-4914-A6E6-EE56B6B06249} - System32\Tasks\Avast TUNEUP Update => C:\Program Files (x86)\AVAST Software\Avast Cleanup\TUNEUpdate.exe [1659000 2019-07-25] (AVAST Software s.r.o. -> AVAST Software)
Task: {2C590933-1444-4E1A-9A15-F7BFEFED5FA1} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe
Task: {2D2F40D2-FB31-46EA-A0F9-BE9B1F315EFE} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantCalendarRun => C:\WINDOWS\UpdateAssistant\UpdateAssistant.exe [0 0000-00-00] (Microsoft Corporation) (Access Denied)
Task: {2E55109D-AB8A-47DD-8364-3BFC25A65020} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\gentxo\Desktop\HERRAMIENTAS DE DESINFECCION\ESET\ESETOnlineScanner_ESL.exe [8166712 2019-10-29] (ESET, spol. s r.o. -> ESET spol. s r.o.)
Task: {37D010D8-E645-4518-AC27-1D52B7CDF246} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-16] (Google Inc -> Google Inc.)
Task: {3A325271-4A8B-44A7-822D-67E2F6E831EC} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3933576 2019-09-21] (AVAST Software s.r.o. -> AVAST Software)
Task: {3AA77FD1-96EC-4391-9821-4276DBAEE71C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {3E6C64BD-C81D-41C7-88F2-2B8ED7A12A68} - System32\Tasks\HPCustParticipation HP ENVY 110 series => C:\Program Files\HP\HP ENVY 110 series\Bin\HPCustPartic.exe [4119656 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.)
Task: {77A464A6-94EB-4792-81D0-2CFCB17D02FB} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1873288 2019-09-18] (AVAST Software s.r.o. -> AVAST Software)
Task: {8AD3EF50-F61E-4FFE-925E-9EC5AACC2D87} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateAssistant => C:\WINDOWS\UpdateAssistant\UpdateAssistant.exe [0 0000-00-00] (Microsoft Corporation) (Access Denied)
Task: {8DDFD7DD-8D7E-4EA7-B32A-B3BA7DDD591A} - System32\Tasks\Avast Cleanup Update => C:\Program Files (x86)\AVAST Software\Avast Cleanup\TUNEUpdate.exe [1659000 2019-07-25] (AVAST Software s.r.o. -> AVAST Software)
Task: {976769AD-D09A-4A04-B93F-6347BE4A611E} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-14] (Piriform Software Ltd -> Piriform Ltd)
Task: {9B572B30-303F-4AF4-A48A-23E3C02065CE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems)
Task: {C6A87806-0A3D-4DB0-B1DF-C6F7AD6CAE71} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-P2G5KEN-gentxo => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {DF2AB968-719F-4D86-B8A9-A4070D52169D} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK
Task: {ECED2469-6DCF-4824-8478-4E6C25363F68} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {ED3614A7-78BD-4FCD-A534-43839FFD4271} - System32\Tasks\HPCustPartic.exe_{EC269164-295E-4245-88FF-8620786E15BE} => C:\Program Files\HP\HP ENVY 110 series\Bin\HPCustPartic.exe [4119656 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.)
Task: {F781674B-570D-4A32-9888-FA0C1445074F} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantWakeupRun => C:\WINDOWS\UpdateAssistant\UpdateAssistant.exe [0 0000-00-00] (Microsoft Corporation) (Access Denied)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{048474e0-d55b-4701-8cba-75170450f172}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{c89d9c19-d7a3-4855-98af-e426aa8fc990}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
SearchScopes: HKU\S-1-5-21-2658357981-3838521205-1574942035-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE04
SearchScopes: HKU\S-1-5-21-2658357981-3838521205-1574942035-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE04
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2019-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2019-01-30] (Logitech Inc -> Logitech, Inc.)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2019-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2019-01-30] (Logitech Inc -> Logitech, Inc.)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll [2012-01-25] (Microsoft Corporation -> Microsoft Corporation.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll [2012-01-25] (Microsoft Corporation -> Microsoft Corporation.)

Edge: 
======
DownloadDir: C:\Users\gentxo\Downloads
Edge Extension: (Adblock Plus) -> 10_EyeoGmbHAdblockPlus_d55gg7py3s0m0 => C:\Program Files\WindowsApps\EyeoGmbH.AdblockPlus_0.9.18.0_neutral__d55gg7py3s0m0 [2019-10-22]
Edge Extension: (Ultra Wide Video) -> EdgeExtension_16256sithrebel15UltraWideVideo_ev392xfsfddmw => C:\Program Files\WindowsApps\16256sithrebel15.UltraWideVideo_1.0.2.0_neutral__ev392xfsfddmw [2018-04-24]
Edge Extension: (AdBlock) -> EdgeExtension_BetaFishAdBlock_c1wakc4j0nefm => C:\Program Files\WindowsApps\BetaFish.AdBlock_2.9.0.0_neutral__c1wakc4j0nefm [2019-02-27]
Edge Extension: (360 Viewer) -> EdgeExtension_Microsoft360Viewer_8wekyb3d8bbwe => C:\Program Files\WindowsApps\Microsoft.360Viewer_2.3.5.0_neutral__8wekyb3d8bbwe [2019-05-18]

FireFox:
========
FF DefaultProfile: wgkihghn.default-1572041501251
FF ProfilePath: C:\Users\gentxo\AppData\Roaming\Mozilla\Firefox\Profiles\wgkihghn.default-1572041501251 [2019-10-30]
FF Extension: (Google Translator for Firefox) - C:\Users\gentxo\AppData\Roaming\Mozilla\Firefox\Profiles\wgkihghn.default-1572041501251\Extensions\[email protected] [2019-10-25]
FF Extension: (Logitech SetPoint) - C:\Users\gentxo\AppData\Roaming\Mozilla\Firefox\Profiles\wgkihghn.default-1572041501251\Extensions\{84380428-8c9d-4bdf-913d-b2c34d6562d9}.xpi [2019-10-25]
FF Extension: (ImTranslator: Traductor, Diccionario, Voz) - C:\Users\gentxo\AppData\Roaming\Mozilla\Firefox\Profiles\wgkihghn.default-1572041501251\Extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi [2019-10-25]
FF Extension: (Adblock Plus - bloqueador de anuncios gratis) - C:\Users\gentxo\AppData\Roaming\Mozilla\Firefox\Profiles\wgkihghn.default-1572041501251\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2019-10-25]
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2019-05-19] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-10-11] (Adobe Inc. -> Adobe Systems Inc.)

Chrome: 
=======
CHR HomePage: Default -> hxxp://www.google.com
CHR Profile: C:\Users\gentxo\AppData\Local\Google\Chrome\User Data\Default [2019-10-29]
CHR Extension: (Presentaciones) - C:\Users\gentxo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-02-16]
CHR Extension: (Logitech Unifying for Chrome) - C:\Users\gentxo\AppData\Local\Google\Chrome\User Data\Default\Extensions\agpmgihmmmfkbhckmciedmhincdggomo [2018-02-19]
CHR Extension: (Documentos) - C:\Users\gentxo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-02-19]
CHR Extension: (Google Drive) - C:\Users\gentxo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-02-19]
CHR Extension: (YouTube) - C:\Users\gentxo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-02-19]
CHR Extension: (Logitech Smooth Scrolling) - C:\Users\gentxo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkpejdfnpdkhifgbancbammdijojoffk [2018-02-19]
CHR Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\gentxo\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2019-03-12]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\gentxo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-26]
CHR Extension: (Avast Online Security) - C:\Users\gentxo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2019-03-12]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\gentxo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Gmail) - C:\Users\gentxo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-02-19]
CHR Extension: (Chrome Media Router) - C:\Users\gentxo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-03-12]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [816184 2019-05-19] (Adobe Inc. -> Adobe Inc.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3147344 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2914896 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6085360 2019-09-26] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [996880 2019-09-21] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [417536 2019-09-21] (AVAST Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-09-21] (AVAST Software s.r.o. -> AVAST Software)
R2 CleanupPSvc; C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupSvc.exe [10287216 2019-07-25] (AVAST Software s.r.o. -> AVAST Software)
S4 HTCMonitorService; C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2016-09-20] (Nero AG -> Nero AG)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbamservice.exe [6744288 2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
R2 NitroDriverReadSpool8; C:\Program Files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe [230408 2013-03-05] (Nitro PDF Software -> Nitro PDF Software)
S4 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2013-10-17] () [File not signed]
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\NisSrv.exe [3201616 2019-10-29] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MsMpEng.exe [103168 2019-10-29] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [204824 2019-09-21] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [274456 2019-09-21] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [209552 2019-09-21] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [65120 2019-09-21] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16304 2019-09-21] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42736 2019-09-21] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [171520 2019-09-21] (AVAST Software s.r.o. -> AVAST Software)
R1 aswNetSec; C:\WINDOWS\System32\drivers\aswNetSec.sys [552848 2019-09-21] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [110320 2019-09-21] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83792 2019-09-21] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [848432 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [460448 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [236024 2019-09-21] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [316528 2019-09-21] (AVAST Software s.r.o. -> AVAST Software)
S3 epmntdrv; C:\WINDOWS\system32\epmntdrv.sys [34368 2018-01-16] (CHENGDU YIWO Tech Development Co., Ltd. -> )
R0 EPMVolFlt; C:\WINDOWS\System32\drivers\EPMVolFlt.sys [30320 2017-11-23] (CHENGDU YIWO Tech Development Co., Ltd. -> Windows (R) Codename Longhorn DDK provider)
R0 EUBAKUP; C:\WINDOWS\System32\drivers\eubakup.sys [73328 2018-05-15] (Microsoft Windows Hardware Compatibility Publisher -> CHENGDU YIWO Tech Development Co., Ltd)
R0 EUBKMON; C:\WINDOWS\System32\drivers\EUBKMON.sys [53360 2018-05-15] (Microsoft Windows Hardware Compatibility Publisher -> )
R1 EUDSKACS; C:\WINDOWS\system32\drivers\eudskacs.sys [22640 2018-05-15] (Microsoft Windows Hardware Compatibility Publisher -> CHENGDU YIWO Tech Development Co., Ltd)
R1 EUFDDISK; C:\WINDOWS\system32\drivers\EuFdDisk.sys [341104 2018-05-15] (Microsoft Windows Hardware Compatibility Publisher -> CHENGDU YIWO Tech Development Co., Ltd)
S3 EuGdiDrv; C:\WINDOWS\system32\EuGdiDrv.sys [10848 2016-07-11] (CHENGDU YIWO Tech Development Co., Ltd. -> ) [File not signed]
S3 htcnprot; C:\WINDOWS\system32\DRIVERS\htcnprot.sys [36928 2013-10-17] (HTC Corp. -> Windows (R) Win 7 DDK provider)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-06-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [275232 2019-10-29] (Malwarebytes Corporation -> Malwarebytes)
R3 MTsensor; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [17280 2018-02-15] (ASUSTeK Computer Inc. -> )
U5 vwifimp; C:\Windows\System32\Drivers\vwifimp.sys [50176 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46472 2019-10-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [351968 2019-10-29] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [53984 2019-10-29] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-10-29 23:42 - 2019-10-30 10:50 - 000000000 ____D C:\FRST
2019-10-29 18:52 - 2019-10-29 18:52 - 000275232 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2019-10-29 18:50 - 2019-10-29 18:50 - 000011750 _____ C:\WINDOWS\system32\cc_20191029_185029.reg
2019-10-29 18:20 - 2019-10-29 18:20 - 000002611 _____ C:\Users\gentxo\Desktop\ZHPCleaner (S).txt
2019-10-29 18:08 - 2019-10-29 23:12 - 000000921 _____ C:\Users\gentxo\Desktop\ZHPCleaner.lnk
2019-10-29 18:08 - 2019-10-29 23:12 - 000000000 ____D C:\Users\gentxo\AppData\Roaming\ZHP
2019-10-29 18:08 - 2019-10-29 18:08 - 000000000 ____D C:\Users\gentxo\AppData\Local\ZHP
2019-10-29 18:04 - 2019-10-29 18:04 - 000003880 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onLogOn
2019-10-29 18:04 - 2019-10-29 18:04 - 000003438 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onTime
2019-10-29 12:53 - 2019-10-29 12:53 - 000000000 ____D C:\Program Files (x86)\ESET
2019-10-29 07:10 - 2019-10-29 23:41 - 000001002 _____ C:\Users\gentxo\Desktop\ESET Online Scanner.lnk
2019-10-29 07:08 - 2019-10-29 07:08 - 000001119 _____ C:\Users\gentxo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2019-10-29 07:08 - 2019-10-29 07:08 - 000000000 ____D C:\Users\gentxo\AppData\Local\ESET
2019-10-28 15:04 - 2019-10-28 15:04 - 000001357 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2019-10-28 15:04 - 2019-10-28 15:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-10-28 15:04 - 2019-09-30 06:25 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2019-10-28 15:04 - 2019-06-26 13:00 - 000020936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2019-10-28 14:49 - 2019-10-29 23:36 - 000000000 ____D C:\Users\gentxo\Desktop\HERRAMIENTAS DE DESINFECCION
2019-10-28 08:47 - 2019-10-28 08:48 - 000591944 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-10-25 23:11 - 2019-10-25 23:11 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2019-10-25 23:11 - 2019-10-25 23:11 - 000000993 _____ C:\Users\Public\Desktop\Firefox.lnk
2019-10-25 23:11 - 2019-10-25 23:11 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-10-25 23:10 - 2019-10-25 23:11 - 000000000 ____D C:\Program Files\Mozilla Firefox
2019-10-25 23:09 - 2019-10-25 23:09 - 000318448 _____ (Mozilla) C:\Users\gentxo\Downloads\Firefox Installer (3).exe
2019-10-25 23:08 - 2019-10-25 23:08 - 000001804 _____ C:\WINDOWS\system32\cc_20191026_000823.reg
2019-10-25 22:58 - 2019-10-25 23:11 - 000000000 ____D C:\Users\gentxo\Desktop\Datos antiguos de Firefox
2019-10-25 22:55 - 2019-10-25 22:55 - 000001140 _____ C:\WINDOWS\system32\cc_20191025_235544.reg
2019-10-25 22:51 - 2019-10-25 22:51 - 000004686 _____ C:\WINDOWS\system32\cc_20191025_235113.reg
2019-10-25 22:51 - 2019-10-25 22:51 - 000001418 _____ C:\WINDOWS\system32\cc_20191025_235137.reg
2019-10-25 22:50 - 2019-10-25 22:50 - 000253948 _____ C:\WINDOWS\system32\cc_20191025_235048.reg
2019-10-25 22:40 - 2019-10-25 22:40 - 000001154 _____ C:\WINDOWS\system32\cc_20191025_234029.reg
2019-10-25 22:17 - 2019-10-25 22:17 - 000000000 ____D C:\Users\gentxo\Desktop\ADWCLEANER
2019-10-25 13:31 - 2019-10-25 13:33 - 000000000 ____D C:\Users\gentxo\Desktop\COMERCIAL NARO
2019-10-23 19:15 - 2019-10-25 13:59 - 000000000 ____D C:\Users\gentxo\AppData\LocalLow\uTorrent
2019-10-20 07:51 - 2019-10-20 07:51 - 000004076 _____ C:\WINDOWS\system32\cc_20191020_085146.reg
2019-10-18 08:02 - 2019-10-18 08:02 - 000000000 ____D C:\Program Files\DIFX
2019-10-13 21:10 - 2019-10-13 21:10 - 000000000 ____D C:\Users\gentxo\AppData\Local\Phase_One
2019-10-13 20:56 - 2019-10-18 08:08 - 000000000 ____D C:\Users\gentxo\AppData\Local\CaptureOne
2019-10-13 20:56 - 2019-10-13 20:56 - 000000000 ____D C:\ProgramData\Phase One
2019-10-13 20:43 - 2019-10-24 17:58 - 000000000 ____D C:\Users\gentxo\Desktop\Capture One 12
2019-10-11 07:42 - 2019-10-11 07:42 - 000002574 _____ C:\WINDOWS\system32\cc_20191011_084249.reg
2019-10-10 08:52 - 2019-10-10 08:52 - 025443840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2019-10-10 08:52 - 2019-10-10 08:52 - 019811840 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2019-10-10 08:52 - 2019-10-10 08:52 - 004129616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-10-10 08:52 - 2019-10-10 08:52 - 003525592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-10-10 08:52 - 2019-10-10 08:52 - 003365376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2019-10-10 08:52 - 2019-10-10 08:52 - 002494440 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-10-10 08:52 - 2019-10-10 08:52 - 002422592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2019-10-10 08:52 - 2019-10-10 08:52 - 002314648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2019-10-10 08:52 - 2019-10-10 08:52 - 002236144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-10-10 08:52 - 2019-10-10 08:52 - 002138472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2019-10-10 08:52 - 2019-10-10 08:52 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-10-10 08:52 - 2019-10-10 08:52 - 001273392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2019-10-10 08:52 - 2019-10-10 08:52 - 001152016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-10-10 08:52 - 2019-10-10 08:52 - 001098712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2019-10-10 08:52 - 2019-10-10 08:52 - 001012792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2019-10-10 08:52 - 2019-10-10 08:52 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2019-10-10 08:52 - 2019-10-10 08:52 - 000537600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2019-10-10 08:52 - 2019-10-10 08:52 - 000516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 025900544 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 022628352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 018019840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 017787392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 014816256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 009928504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 008010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 007600664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 007195648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 007015936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 006517640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 006232064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 005915648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 005041664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 004562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 004538880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 004012544 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 003771392 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 003701760 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 002861568 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 002762504 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2019-10-10 08:51 - 2019-10-10 08:51 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2019-10-10 08:51 - 2019-10-10 08:51 - 002723328 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-10-10 08:51 - 2019-10-10 08:51 - 002703360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 002456064 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 002448712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 002284032 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 002114048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 002095104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 002081976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 002000168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 001952360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 001847808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 001830200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 001743672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 001730560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 001721144 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 001687040 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 001664928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 001656392 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 001563648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 001562424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 001439744 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 001394488 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 001283072 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 001217904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 001084432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 001066496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000904208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000890472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000880088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000856576 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2019-10-10 08:51 - 2019-10-10 08:51 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000829536 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 000818688 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000774672 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 000758584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mousocoreworker.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000690176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000679880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000669496 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000598024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 000595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2019-10-10 08:51 - 2019-10-10 08:51 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000520192 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000516408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 000515896 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000466416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000462136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000456504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2019-10-10 08:51 - 2019-10-10 08:51 - 000452408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000422008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000412152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 000404392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000380216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000324408 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000300184 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000225080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2019-10-10 08:51 - 2019-10-10 08:51 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2019-10-10 08:51 - 2019-10-10 08:51 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000220472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 000202040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2019-10-10 08:51 - 2019-10-10 08:51 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000193592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2019-10-10 08:51 - 2019-10-10 08:51 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000165832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000150328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2019-10-10 08:51 - 2019-10-10 08:51 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2019-10-10 08:51 - 2019-10-10 08:51 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000039304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NtlmShared.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000037176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2019-10-10 08:51 - 2019-10-10 08:51 - 000033048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NtlmShared.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindflt.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2019-10-10 08:51 - 2019-10-10 08:51 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2019-10-10 08:51 - 2019-10-10 08:51 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2019-10-10 08:50 - 2019-10-10 08:50 - 000436536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2019-10-10 08:50 - 2019-10-10 08:50 - 000158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2019-10-10 08:31 - 2019-10-10 08:31 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2019-10-10 08:31 - 2019-10-10 08:31 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2019-10-08 05:51 - 2019-10-08 05:51 - 000002792 _____ C:\WINDOWS\system32\cc_20191008_065129.reg
2019-10-04 08:58 - 2019-10-04 08:58 - 000939008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-10-04 08:58 - 2019-10-04 08:58 - 000742912 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2019-10-04 08:58 - 2019-10-04 08:58 - 000722944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2019-10-04 08:58 - 2019-10-04 08:58 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2019-10-04 08:58 - 2019-10-04 08:58 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2019-10-04 08:58 - 2019-10-04 08:58 - 000387832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2019-10-04 08:58 - 2019-10-04 08:58 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2019-10-04 08:58 - 2019-10-04 08:58 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeUISrv.exe
2019-10-04 08:57 - 2019-10-04 08:57 - 005764872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 004481536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 002258856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 002132280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 001788728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 001692160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 001616784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 001510752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 001505320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 001297936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 001263616 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 001244944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 001178816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 001080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000904704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000893952 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2019-10-04 08:57 - 2019-10-04 08:57 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000783480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-10-04 08:57 - 2019-10-04 08:57 - 000772656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000647168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000568336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000546816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourceMapper.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000510464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000501232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp_win.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000500736 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2019-10-04 08:57 - 2019-10-04 08:57 - 000487576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll

Segunda parte del FRST.exe.


2019-10-04 08:57 - 2019-10-04 08:57 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000463272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiagn.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000421376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2019-10-04 08:57 - 2019-10-04 08:57 - 000417280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiag.exe
2019-10-04 08:57 - 2019-10-04 08:57 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiag.exe
2019-10-04 08:57 - 2019-10-04 08:57 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glu32.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000236520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgmgr32.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000210744 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\glu32.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000158208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2019-10-04 08:57 - 2019-10-04 08:57 - 000143808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imm32.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000139264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prntvpt.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000137864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devobj.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000116904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000110080 _____ C:\WINDOWS\system32\ResBParser.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000105832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2019-10-04 08:57 - 2019-10-04 08:57 - 000100664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys
2019-10-04 08:57 - 2019-10-04 08:57 - 000093712 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000084496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-10-04 08:57 - 2019-10-04 08:57 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvvmtransport.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe
2019-10-04 08:57 - 2019-10-04 08:57 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvvmtransport.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devrtl.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000021544 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2019-10-04 08:57 - 2019-10-04 08:57 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin
2019-10-04 08:57 - 2019-10-04 08:57 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2019-10-04 08:57 - 2019-10-04 08:57 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2019-10-04 08:57 - 2019-10-04 08:57 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2019-10-04 08:57 - 2019-10-04 08:57 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2019-10-04 08:57 - 2019-10-04 08:57 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2019-10-04 08:57 - 2019-10-04 08:57 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2019-10-04 08:57 - 2019-10-04 08:57 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2019-10-04 08:57 - 2019-10-04 08:57 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin
2019-10-04 08:57 - 2019-10-04 08:57 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin
2019-10-04 08:57 - 2019-10-04 08:57 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin
2019-10-04 08:57 - 2019-10-04 08:57 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2019-10-04 08:56 - 2019-10-04 08:56 - 006084048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 005865272 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizimg.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 005105152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 003964056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-10-04 08:56 - 2019-10-04 08:56 - 003742032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 002821120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 002799616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-10-04 08:56 - 2019-10-04 08:56 - 002772032 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 002160640 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 001957008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 001913296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 001857024 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 001845408 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 001664376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 001473488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 001412096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 001334064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdrecordcpu.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 001154656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 001054872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 001047968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000792296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000784384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000673080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000652800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000629248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000612864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000599040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2019-10-04 08:56 - 2019-10-04 08:56 - 000541480 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000539648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9on12.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000507704 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000507152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000450360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11on12.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000383984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000379840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000375720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000346624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\secproc.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2019-10-04 08:56 - 2019-10-04 08:56 - 000315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000285256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000283688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdwriter.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000278080 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2019-10-04 08:56 - 2019-10-04 08:56 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2019-10-04 08:56 - 2019-10-04 08:56 - 000243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\prntvpt.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000176440 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlib.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2019-10-04 08:56 - 2019-10-04 08:56 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComposableShellProxyStub.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2019-10-04 08:56 - 2019-10-04 08:56 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ForceSync.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000125232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2019-10-04 08:56 - 2019-10-04 08:56 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2019-10-04 08:56 - 2019-10-04 08:56 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe
2019-10-04 08:56 - 2019-10-04 08:56 - 000089544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe
2019-10-04 08:56 - 2019-10-04 08:56 - 000073024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000066832 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnppolicy.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnrollCtrl.exe
2019-10-04 08:56 - 2019-10-04 08:56 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AssignedAccessRuntime.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2019-10-04 08:56 - 2019-10-04 08:56 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
2019-10-04 08:56 - 2019-10-04 08:56 - 000016696 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizres.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000011576 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlibres.dll
2019-10-04 08:56 - 2019-10-04 08:56 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 007905000 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 007848192 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 007263992 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 006425600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 006227624 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 006164480 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 004612520 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-10-04 08:55 - 2019-10-04 08:55 - 004046336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 003727360 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-10-04 08:55 - 2019-10-04 08:55 - 003590968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-10-04 08:55 - 2019-10-04 08:55 - 003553280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 003386880 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 003184128 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 003105280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 002590208 _____ C:\WINDOWS\system32\dwmscene.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 002552120 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 002466304 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 002120704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 002069504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 001940952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 001819136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 001757096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-10-04 08:55 - 2019-10-04 08:55 - 001657856 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 001616608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdrecordcpu.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 001607680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 001543168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 001512320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-10-04 08:55 - 2019-10-04 08:55 - 001482040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2019-10-04 08:55 - 2019-10-04 08:55 - 001383856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 001372160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-10-04 08:55 - 2019-10-04 08:55 - 001261800 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 001182240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-10-04 08:55 - 2019-10-04 08:55 - 001150240 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 001091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 001036800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 001029432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2019-10-04 08:55 - 2019-10-04 08:55 - 001023128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 001009152 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000984376 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000975872 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000944664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000931840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2019-10-04 08:55 - 2019-10-04 08:55 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-10-04 08:55 - 2019-10-04 08:55 - 000858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000841216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9on12.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000833312 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2019-10-04 08:55 - 2019-10-04 08:55 - 000759488 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000732176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2019-10-04 08:55 - 2019-10-04 08:55 - 000674072 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2019-10-04 08:55 - 2019-10-04 08:55 - 000656960 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11on12.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000639400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000617784 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000606208 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000558592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-10-04 08:55 - 2019-10-04 08:55 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-10-04 08:55 - 2019-10-04 08:55 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000442704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-10-04 08:55 - 2019-10-04 08:55 - 000398728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2019-10-04 08:55 - 2019-10-04 08:55 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000363624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000342896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdwriter.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000338432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000334936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposableShellProxyStub.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000293344 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgmgr32.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\directxdatabaseupdater.exe
2019-10-04 08:55 - 2019-10-04 08:55 - 000284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgiadaptercache.exe
2019-10-04 08:55 - 2019-10-04 08:55 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000179512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2019-10-04 08:55 - 2019-10-04 08:55 - 000176152 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000159112 _____ (Microsoft Corporation) C:\WINDOWS\system32\devobj.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000152408 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000140496 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000132408 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2019-10-04 08:55 - 2019-10-04 08:55 - 000130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000119840 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2019-10-04 08:55 - 2019-10-04 08:55 - 000116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe
2019-10-04 08:55 - 2019-10-04 08:55 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellExtFramework.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000105272 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe
2019-10-04 08:55 - 2019-10-04 08:55 - 000092624 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostw.exe
2019-10-04 08:55 - 2019-10-04 08:55 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2019-10-04 08:55 - 2019-10-04 08:55 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollCtrl.exe
2019-10-04 08:55 - 2019-10-04 08:55 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessRuntime.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\devrtl.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000053248 _____ C:\WINDOWS\system32\Drivers\UsbPmApi.sys
2019-10-04 08:55 - 2019-10-04 08:55 - 000047616 _____ C:\WINDOWS\system32\UsbPmApi.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000047000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2019-10-04 08:55 - 2019-10-04 08:55 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2019-10-04 08:55 - 2019-10-04 08:55 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000020944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmsgapi.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2019-10-04 08:55 - 2019-10-04 08:55 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2019-10-04 08:55 - 2019-10-04 08:55 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2019-10-04 08:54 - 2019-10-04 08:54 - 002120272 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-10-04 08:54 - 2019-10-04 08:54 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-10-04 08:54 - 2019-10-04 08:54 - 001413704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-10-04 08:54 - 2019-10-04 08:54 - 000735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-10-04 08:54 - 2019-10-04 08:54 - 000589384 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-10-04 08:54 - 2019-10-04 08:54 - 000551952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2019-10-04 08:54 - 2019-10-04 08:54 - 000449888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2019-10-04 08:54 - 2019-10-04 08:54 - 000415808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2019-10-04 08:54 - 2019-10-04 08:54 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2019-10-04 08:54 - 2019-10-04 08:54 - 000355000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2019-10-04 08:54 - 2019-10-04 08:54 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-10-04 08:54 - 2019-10-04 08:54 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ManageCI.dll
2019-10-04 08:54 - 2019-10-04 08:54 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2019-10-04 08:54 - 2019-10-04 08:54 - 000223032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2019-10-04 08:54 - 2019-10-04 08:54 - 000208184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2019-10-04 08:54 - 2019-10-04 08:54 - 000201016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2019-10-04 08:54 - 2019-10-04 08:54 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2019-10-04 08:54 - 2019-10-04 08:54 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2019-10-04 08:54 - 2019-10-04 08:54 - 000151568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2019-10-04 08:54 - 2019-10-04 08:54 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll
2019-10-04 08:54 - 2019-10-04 08:54 - 000088352 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2019-10-04 08:54 - 2019-10-04 08:54 - 000079376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\uaspstor.sys
2019-10-04 08:54 - 2019-10-04 08:54 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2019-10-04 08:54 - 2019-10-04 08:54 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidspi.sys
2019-10-04 08:54 - 2019-10-04 08:54 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2019-10-04 08:54 - 2019-10-04 08:54 - 000052752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmstorfl.sys
2019-10-04 08:54 - 2019-10-04 08:54 - 000052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll
2019-10-04 08:54 - 2019-10-04 08:54 - 000043536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storvsc.sys
2019-10-04 08:54 - 2019-10-04 08:54 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe
2019-10-04 08:54 - 2019-10-04 08:54 - 000028936 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2019-10-04 08:54 - 2019-10-04 08:54 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32_DeviceGuard.dll
2019-10-03 11:56 - 2019-10-30 00:14 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2019-10-03 11:56 - 2019-10-29 07:02 - 000002608 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-10-30 10:50 - 2018-02-16 11:46 - 000000000 ____D C:\Users\gentxo\AppData\LocalLow\Mozilla
2019-10-30 10:45 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-10-30 10:28 - 2019-08-11 23:13 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-10-30 07:15 - 2018-12-07 07:13 - 000000000 ____D C:\Users\gentxo\AppData\Roaming\WhatsApp
2019-10-30 00:26 - 2018-02-16 12:08 - 000000000 ____D C:\Users\gentxo\AppData\Roaming\ObviousIdea
2019-10-30 00:00 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-10-30 00:00 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-10-29 23:48 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF
2019-10-29 23:15 - 2018-05-12 20:50 - 000000000 ____D C:\Users\gentxo\AppData\Local\AVAST Software
2019-10-29 19:02 - 2018-06-28 14:04 - 000000000 ____D C:\Users\gentxo\AppData\Local\CrashDumps
2019-10-29 19:00 - 2019-08-11 23:34 - 000004286 _____ C:\WINDOWS\system32\Tasks\Avast Cleanup Update
2019-10-29 18:59 - 2019-08-11 23:27 - 001684176 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-10-29 18:59 - 2019-03-19 12:59 - 000752322 _____ C:\WINDOWS\system32\perfh00A.dat
2019-10-29 18:59 - 2019-03-19 12:59 - 000147902 _____ C:\WINDOWS\system32\perfc00A.dat
2019-10-29 18:52 - 2019-08-11 23:34 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-10-29 18:51 - 2019-03-19 05:37 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2019-10-29 14:12 - 2019-07-27 13:09 - 000000000 ____D C:\Users\gentxo\Downloads\FormatFactory2019_07_27
2019-10-29 13:09 - 2018-02-15 17:21 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-10-29 07:02 - 2019-08-11 23:34 - 000003550 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2019-10-29 07:02 - 2019-08-11 23:34 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2019-10-29 07:02 - 2019-08-11 23:34 - 000003326 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2019-10-29 07:02 - 2019-08-11 23:34 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2019-10-29 07:02 - 2019-08-11 23:34 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2658357981-3838521205-1574942035-1001
2019-10-29 07:02 - 2019-08-11 23:34 - 000002590 _____ C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask
2019-10-29 07:02 - 2019-08-11 23:34 - 000002220 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2019-10-29 07:02 - 2019-08-11 23:34 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2019-10-29 03:53 - 2018-02-16 11:27 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-10-29 03:53 - 2018-02-16 11:27 - 000002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-10-28 15:04 - 2019-03-19 05:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-10-28 15:03 - 2018-02-22 20:14 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-10-28 14:47 - 2018-02-16 13:41 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2019-10-27 19:54 - 2018-02-22 19:07 - 000000000 ____D C:\Temp
2019-10-26 08:33 - 2019-06-30 13:20 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-10-25 22:42 - 2018-08-04 06:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Todo Backup 11.0
2019-10-25 13:58 - 2019-06-07 18:44 - 000000000 ____D C:\Users\gentxo\AppData\Local\BitTorrentHelper
2019-10-25 13:32 - 2019-06-19 21:20 - 000000000 ____D C:\Users\gentxo\Desktop\BARANDILLA TERRAZA PROSUPUESTO
2019-10-24 05:54 - 2018-12-07 07:13 - 000000000 ____D C:\Users\gentxo\AppData\Local\WhatsApp
2019-10-23 20:10 - 2019-08-13 21:46 - 000000000 ____D C:\Users\gentxo\Desktop\OFFICE 2013
2019-10-23 19:47 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-10-23 19:06 - 2018-05-16 11:26 - 000000000 ____D C:\Users\gentxo\AppData\Local\Microsoft Help
2019-10-22 23:03 - 2018-02-16 13:41 - 000000000 ____D C:\Program Files\CCleaner
2019-10-21 17:58 - 2019-08-11 23:34 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2019-10-20 13:18 - 2018-02-16 12:28 - 000000000 ____D C:\Users\gentxo\AppData\Roaming\vlc
2019-10-17 06:07 - 2018-03-11 07:52 - 000000000 ____D C:\Users\gentxo\Desktop\TUTORIALES DE PHOTOSHOP
2019-10-17 06:00 - 2018-02-16 13:12 - 000000000 ____D C:\Users\gentxo\AppData\Local\Adobe
2019-10-10 23:06 - 2019-03-19 05:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-10-10 23:06 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2019-10-10 23:06 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2019-10-10 23:06 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SystemResources
2019-10-10 23:06 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2019-10-10 23:06 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-10-10 23:06 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\Dism
2019-10-10 23:06 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-10-10 10:56 - 2019-09-06 08:50 - 000002449 _____ C:\Users\gentxo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-10-10 10:56 - 2018-02-15 10:03 - 000000000 ___RD C:\Users\gentxo\OneDrive
2019-10-10 09:07 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-10-10 09:06 - 2018-02-15 11:10 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-10-10 09:01 - 2018-02-15 11:10 - 127230528 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-10-10 08:59 - 2018-12-19 19:50 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2019-10-09 12:44 - 2015-07-10 12:04 - 000000167 _____ C:\WINDOWS\win.ini
2019-10-08 05:45 - 2018-02-16 11:26 - 000000000 ____D C:\Program Files (x86)\Google
2019-10-04 22:42 - 2018-02-15 15:03 - 000000000 ___RD C:\Users\gentxo\3D Objects
2019-10-04 22:42 - 2018-02-15 10:01 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-10-04 22:34 - 2019-03-19 05:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2019-10-04 22:34 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2019-10-04 22:34 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\migwiz
2019-10-04 22:34 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2019-09-30 22:14 - 2018-02-15 10:01 - 000000000 ____D C:\Users\gentxo\AppData\Local\Packages
2019-09-30 14:00 - 2018-02-16 11:14 - 000848432 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2019-09-30 14:00 - 2018-02-16 11:14 - 000460448 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys

==================== Files in the root of some directories ========

2019-02-07 12:20 - 2019-08-10 00:07 - 000000425 _____ () C:\Users\gentxo\AppData\Roaming\.ptbt0
2018-03-24 19:10 - 2019-03-10 14:40 - 000001456 _____ () C:\Users\gentxo\AppData\Local\Adobe Guardar para Web 13.0 Prefs
2018-09-28 08:24 - 2018-09-28 08:24 - 000000000 _____ () C:\Users\gentxo\AppData\Local\oobelibMkey.log

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ================

Hola:

Disculpa la demora.

Te sugiero que desinstale Avast Clean Premium y la extensión Avast SafePrice, en caso de no usarlas.

Lo mismo te digo con la barra de Bing (tienes una aplicación instalada llamada Bing Bar). Si no la usas, desinstálala.

1.- Muy Importante >>> Realizar una copia de Seguridad de su Registro.

  • Descarga y ejecuta DelFix en el escritorio de Windows.
  • Clic Derecho, “Ejecutar como Administrador”.
  • En la ventana principal, marca solamente la casilla “Create Registry Backup”.
  • Clic en Run.

Al terminar se abrirá un reporte llamado DelFix.txt, guárdelo por si fuera necesario y cierre la herramienta…

2.- Desactiva Temporalmente tu antivirus.

3.- Abre un nuevo archivo Notepad/Bloc de Notas y copia y pega este contenido:


Start
CloseProcesses:
CreateRestorePoint:
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {23206072-B8BA-4DD9-8AC8-D84DA2E7EC29} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\gentxo\Desktop\HERRAMIENTAS DE DESINFECCION\ESET\ESETOnlineScanner_ESL.exe [8166712 2019-10-29] (ESET, spol. s r.o. -> ESET spol. s r.o.)
Task: {2E55109D-AB8A-47DD-8364-3BFC25A65020} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\gentxo\Desktop\HERRAMIENTAS DE DESINFECCION\ESET\ESETOnlineScanner_ESL.exe [8166712 2019-10-29] (ESET, spol. s r.o. -> ESET spol. s r.o.)
Task: {DF2AB968-719F-4D86-B8A9-A4070D52169D} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK
SearchScopes: HKU\S-1-5-21-2658357981-3838521205-1574942035-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE04
SearchScopes: HKU\S-1-5-21-2658357981-3838521205-1574942035-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE04
CHR Extension: (Chrome Media Router) - C:\Users\gentxo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-03-12]
2019-10-29 07:02 - 2019-08-11 23:34 - 000002590 _____ C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask
2019-10-29 18:04 - 2019-10-29 18:04 - 000003880 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onLogOn
2019-10-29 18:04 - 2019-10-29 18:04 - 000003438 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onTime
2019-10-29 12:53 - 2019-10-29 12:53 - 000000000 ____D C:\Program Files (x86)\ESET
2019-10-29 07:10 - 2019-10-29 23:41 - 000001002 _____ C:\Users\gentxo\Desktop\ESET Online Scanner.lnk
2019-10-29 07:08 - 2019-10-29 07:08 - 000001119 _____ C:\Users\gentxo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2019-10-29 07:08 - 2019-10-29 07:08 - 000000000 ____D C:\Users\gentxo\AppData\Local\ESET
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} =>  -> No File
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} =>  -> No File
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} =>  -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} =>  -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
ContextMenuHandlers1: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} =>  -> No File
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>  -> No File
ContextMenuHandlers2: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} =>  -> No File
ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>  -> No File
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>  -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} =>  -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} =>  -> No File
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>  -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> No File
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
ContextMenuHandlers6: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} =>  -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> No File
ShortcutWithArgument: C:\Users\gentxo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome\Logitech Unifying for Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=agpmgihmmmfkbhckmciedmhincdggomo

CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:
END
  • Lo guardas bajo el nombre de fixlist.txt en el escritorio <<< Esto es muy importante.

Nota: Es necesario que el ejecutable Frst.exe y fixlist.txt se encuentren en la misma ubicación (escritorio) o si no la herramienta no trabajara.

  • Ejecutas Frst.exe.
  • Presionas el botón Fix y aguardas a que termine.
  • La Herramienta guardara el reporte en tu escritorio (Fixlog.txt).
  • Lo pegas en tu próxima respuesta.

Hola esto seme complica estoy seguro que algo no hago bien. He desinstalado el Avast Clean Premium, la extension de extensión Avast SafePrice, y la barra de Bing. Segudo he hecho cpopia de seguridad con DelFix que cuando lo ejecuto por defecto me sale con la casilla marcada “Remove desinfectiontools” que lo que hago es desmarcarla y marco la de “Create Registry Backup” ya que me indicas que es la unica que devo marcar y le doy Run. Y el reporte lo guardo en el escritorio en la carperta del Ejecutable Delfix. Pues todos los Exe que me indicas estan en el ecritorio cada uno en su carpeto y ahi voy guardando los respectivor reporte me sigue saliendo este mensaje. Farbar Recovery Scan Tool (x64): 01-11-2019.

No Fixilist.txt found

The fixilist.txt should be in same folder/directory thr toolis located

Tu error es el no colocar las herramientas en el escritorio. Cuando en las instrucciones ponemos

Descarga y ejecuta el programa XXX en el escritorio de Windows

significa eso mismo. No significa crear una carpeta en el escritorio y allí voy poniendo las herramientas descargada. No.

El error que te sale al ejecutar el fix de FRST te está indicando que el fichero fix.txt lo tienes en un lugar diferente a la herramienta FRST.exe. Haz lo siguiente:

  1. Copia Delfix en el escritorio (no en una carpeta creada en el escritorio).

  2. Copia tu herramienta FRST.exe en el escritorio (no en una carpeta creada en el escritorio)

  3. Copia el fichero fixlist.txt también en el escritorio.

  4. Vuelve a realizar los pasos que te indiqué.

Aqui esta el informe del proceso.

Fix result of Farbar Recovery Scan Tool (x64) Version: 01-11-2019
Ran by gentxo (04-11-2019 07:35:33) Run:1
Running from C:\Users\gentxo\Desktop
Loaded Profiles: gentxo (Available Profiles: gentxo)
Boot Mode: Normal
==============================================

fixlist content:
*****************

Start
CloseProcesses:
CreateRestorePoint:
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {23206072-B8BA-4DD9-8AC8-D84DA2E7EC29} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\gentxo\Desktop\HERRAMIENTAS DE DESINFECCION\ESET\ESETOnlineScanner_ESL.exe [8166712 2019-10-29] (ESET, spol. s r.o. -> ESET spol. s r.o.)
Task: {2E55109D-AB8A-47DD-8364-3BFC25A65020} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\gentxo\Desktop\HERRAMIENTAS DE DESINFECCION\ESET\ESETOnlineScanner_ESL.exe [8166712 2019-10-29] (ESET, spol. s r.o. -> ESET spol. s r.o.)
Task: {DF2AB968-719F-4D86-B8A9-A4070D52169D} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK
SearchScopes: HKU\S-1-5-21-2658357981-3838521205-1574942035-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE04
SearchScopes: HKU\S-1-5-21-2658357981-3838521205-1574942035-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE04
CHR Extension: (Chrome Media Router) - C:\Users\gentxo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-03-12]
2019-10-29 07:02 - 2019-08-11 23:34 - 000002590 _____ C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask
2019-10-29 18:04 - 2019-10-29 18:04 - 000003880 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onLogOn
2019-10-29 18:04 - 2019-10-29 18:04 - 000003438 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onTime
2019-10-29 12:53 - 2019-10-29 12:53 - 000000000 ____D C:\Program Files (x86)\ESET
2019-10-29 07:10 - 2019-10-29 23:41 - 000001002 _____ C:\Users\gentxo\Desktop\ESET Online Scanner.lnk
2019-10-29 07:08 - 2019-10-29 07:08 - 000001119 _____ C:\Users\gentxo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2019-10-29 07:08 - 2019-10-29 07:08 - 000000000 ____D C:\Users\gentxo\AppData\Local\ESET
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} =>  -> No File
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} =>  -> No File
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} =>  -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} =>  -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
ContextMenuHandlers1: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} =>  -> No File
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>  -> No File
ContextMenuHandlers2: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} =>  -> No File
ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>  -> No File
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>  -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} =>  -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} =>  -> No File
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>  -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> No File
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
ContextMenuHandlers6: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} =>  -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> No File
ShortcutWithArgument: C:\Users\gentxo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome\Logitech Unifying for Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=agpmgihmmmfkbhckmciedmhincdggomo

CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:
END


Processes closed successfully.
Restore point was successfully created.
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{23206072-B8BA-4DD9-8AC8-D84DA2E7EC29}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{23206072-B8BA-4DD9-8AC8-D84DA2E7EC29}" => removed successfully
C:\WINDOWS\System32\Tasks\EOSv3 Scheduler onLogOn => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EOSv3 Scheduler onLogOn" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2E55109D-AB8A-47DD-8364-3BFC25A65020}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2E55109D-AB8A-47DD-8364-3BFC25A65020}" => removed successfully
C:\WINDOWS\System32\Tasks\EOSv3 Scheduler onTime => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EOSv3 Scheduler onTime" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DF2AB968-719F-4D86-B8A9-A4070D52169D}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DF2AB968-719F-4D86-B8A9-A4070D52169D}" => removed successfully
C:\WINDOWS\System32\Tasks\CreateExplorerShellUnelevatedTask => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CreateExplorerShellUnelevatedTask" => removed successfully
"HKU\S-1-5-21-2658357981-3838521205-1574942035-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => removed successfully
HKU\S-1-5-21-2658357981-3838521205-1574942035-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => removed successfully
CHR Extension: (Chrome Media Router) - C:\Users\gentxo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-03-12] => Error: No automatic fix found for this entry.
"C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask" => not found
"C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onLogOn" => not found
"C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onTime" => not found
"C:\Program Files (x86)\ESET" => not found
"C:\Users\gentxo\Desktop\ESET Online Scanner.lnk" => not found
C:\Users\gentxo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk => moved successfully
C:\Users\gentxo\AppData\Local\ESET => moved successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ MEGA (Pending) => invalid subkey removed.
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ MEGA (Synced) => invalid subkey removed.
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ MEGA (Syncing) => invalid subkey removed.
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ MEGA (Pending) => invalid subkey removed.
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ MEGA (Synced) => invalid subkey removed.
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ MEGA (Syncing) => invalid subkey removed.
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully
"HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D}" => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\Glary Utilities => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\MEGA (Context menu) => removed successfully
HKLM\Software\Classes\Drive\ShellEx\ContextMenuHandlers\Glary Utilities => removed successfully
HKLM\Software\Classes\Drive\ShellEx\ContextMenuHandlers\MEGA (Context menu) => removed successfully
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\MEGA (Context menu) => removed successfully
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\7-Zip => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\MEGA (Context menu) => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\Offline Files => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Glary Utilities => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Offline Files => removed successfully
C:\Users\gentxo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome\Logitech Unifying for Chrome.lnk => Shortcut argument removed successfully
========= End of CMD: =========


========= RemoveProxy: =========

"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully
"HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
"HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully
"HKU\S-1-5-21-2658357981-3838521205-1574942035-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
"HKU\S-1-5-21-2658357981-3838521205-1574942035-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully


========= End of RemoveProxy: =========

C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 10510336 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 181243655 B
Java, Flash, Steam htmlcache => 397 B
Windows/system/drivers => 55502795 B
Edge => 2262396 B
Chrome => 142370 B
Firefox => 510327892 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 40246 B
NetworkService => 47670 B
gentxo => 80785691 B

RecycleBin => 566010528 B
EmptyTemp: => 1.3 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 07:38:24 ====

El fixlist se ha procesado correctamente.

¿como sigue su equipo? ¿sigues teniendo problemas al conectar un pendrive?

El problema que usted tiene puede deberse a un driver USB en estado de corrupción o bien a dispositivos de almacenamiento masivo (bien sea pendrive o tarjetas SD) corrompidas. Tampoco podemos descartar problemas en su placa base principal.

Necesito un informe de las características de su equipo:

:one: Informe de Aida64

Necesito un informe de Aida64 para ver todas las características de tu equipo:

Instale el Aida 64 desde https://www.aida64.com/downloads. Desde AIDA64,

  1. clic derecho sobre el ítem Computer (Equipo)

  2. seleccione la opción “Quick Report" (Informe rápido)

  3. Seleccione “Plain Text" (Texto sin formato)

Nos pegas el reporte en su próxima respuesta (OJO, la parte [ Debug - PCI ] del informe no hace falta que la ponga)

--> Como pegar reportes en el foro

:two: Pruebas

Para ir descartando culpables vamos a ir realizando una serie de pruebas para la que le pedimos paciencia.

  1. Prueba con el pendrive y/o tarjeta SD problemáticos en otros puertos USB del mismo equipo. ¿el problema se resuelve?

  2. Prueba con el pendrive y/o tarjeta SD problemáticos en otro equipo diferente. ¿el pendrive o SD funciona correctamente?

  3. Prueba otros pendrives diferentes en el equipo con problemas. ¿funcionan correctamente?

Parte Una.

--------[ AIDA64 Extreme ]----------------------------------------------------------------------------------------------

    Versión                                           AIDA64 v6.10.5200/es
    Módulo de rendimiento                             4.5.811-x64
    Página principal                                  http://www.aida64.com/
    Tipo de informe                                   Informe rápido [ TRIAL VERSION ]
    Equipo                                            DESKTOP-P2G5KEN
    Generador                                         gentxo
    Sistema operativo                                 Microsoft Windows 10 Home 10.0.18362.418 (Win10 RS6 [1903] May 2019 Update)
    Fecha                                             2019-11-04
    Hora                                              19:42


--------[ Resumen ]-----------------------------------------------------------------------------------------------------

    Equipo:
      Tipo de equipo                                    Equipo basado en x64 ACPI
      Sistema operativo                                 Microsoft Windows 10 Home
      Service Pack del SO                               [ TRIAL VERSION ]
      Internet Explorer                                 11.418.18362.0
      Edge                                              44.18362.387.0
      DirectX                                           DirectX 12.0
      Nombre del equipo                                 DESKTOP-P2G5KEN
      Nombre de usuario                                 gentxo
      Dominio de inicio de sesión                       [ TRIAL VERSION ]
      Fecha / Hora                                      2019-11-04 / 19:42

    Placa base:
      Tipo de CPU                                       QuadCore Intel Core i5-760, 3077 MHz (23 x 134)
      Nombre de la placa base                           Asus P7H55-M  (1 PCI, 2 PCI-E x1, 1 PCI-E x16, 4 DDR3 DIMM, Audio, Video, Gigabit LAN)
      Chipset de la placa base                          Intel Ibex Peak H55, Intel Lynnfield
      Memoria del sistema                               [ TRIAL VERSION ]
      DIMM1: Kingston 9905471-001.A00LF                 2 GB DDR3-1333 DDR3 SDRAM  (9-9-9-24 @ 666 MHz)  (8-8-8-22 @ 609 MHz)  (7-7-7-20 @ 533 MHz)  (6-6-6-17 @ 457 MHz)
      DIMM2: Kingston 9905471-001.A00LF                 [ TRIAL VERSION ]
      DIMM3: Kingston 9905471-001.A00LF                 [ TRIAL VERSION ]
      Tipo de BIOS                                      AMI (08/18/10)
      Puerto de comunicación                            Puerto de comunicaciones (COM1)
      Puerto de comunicación                            Puerto de impresora (LPT1)

    Pantalla:
      Adaptador de vídeo                                GeForce GT 220  (1 GB)
      Adaptador de vídeo                                GeForce GT 220  (1 GB)
      Aceleradora 3D                                    nVIDIA GeForce GT 220
      Monitor                                           HP 27er (HDMI1)  [27" IPS LCD]  (3CM62318H1)

    Multimedia:
      Adaptador de audio                                nVIDIA GT216 HDMI/DP @ nVIDIA GT216 - High Definition Audio Controller
      Adaptador de audio                                nVIDIA GT216 HDMI/DP @ nVIDIA GT216 - High Definition Audio Controller
      Adaptador de audio                                nVIDIA GT216 HDMI/DP @ nVIDIA GT216 - High Definition Audio Controller
      Adaptador de audio                                nVIDIA GT216 HDMI/DP @ nVIDIA GT216 - High Definition Audio Controller
      Adaptador de audio                                Realtek ALC887 @ Intel Ibex Peak PCH - High Definition Audio Controller [B3]

    Almacenamiento:
      Controladora IDE                                  Controladora estándar PCI IDE de doble canal
      Controladora IDE                                  Controladora estándar PCI IDE de doble canal
      Controladora de almacenamiento                    Controladora de espacios de almacenamiento de Microsoft
      Unidad de disco                                   Generic USB CF Reader USB Device
      Unidad de disco                                   Generic USB MS Reader USB Device
      Unidad de disco                                   Generic USB SD Reader USB Device
      Unidad de disco                                   Generic USB xD/SM Reader USB Device
      Unidad de disco                                   ST2000DM006-2DM164 ATA Device  (2 TB, 7200 RPM, SATA-III)
      Unidad óptica                                     HL-DT-ST DVDRAM GH22NS50 ATA Device  (DVD+R9:16x, DVD-R9:12x, DVD+RW:22x/8x, DVD-RW:22x/6x, DVD-RAM:12x, DVD-ROM:16x, CD:48x/32x/48x DVD+RW/DVD-RW/DVD-RAM)
      Estado SMART de los discos duros                  Aceptar

    Particiones:
      C: (NTFS)                                         [ TRIAL VERSION ]
      I: (NTFS)                                         1612.8 GB (786.2 GB libre)
      Tamaño total                                      [ TRIAL VERSION ]

    Entrada:
      Teclado                                           Dispositivo de teclado HID
      Teclado                                           Logitech HID-compliant Unifying keyboard
      Teclado                                           Logitech HID-compliant Unifying keyboard
      Mouse                                             Logitech HID-compliant Unifying Mouse
      Mouse                                             Mouse compatible con HID

    Red:
      Dirección IP primaria                             [ TRIAL VERSION ]
      Dirección MAC primaria                            20-CF-30-3A-4F-F6
      Adaptador de red                                  D-Link AirPlus G DWL-G510 Wireless PCI Adapter(rev.C)
      Adaptador de red                                  Realtek PCIe GBE Family Controller  (192. [ TRIAL VERSION ])

    Periféricos:
      Impresora                                         Enviar a OneNote 2013
      Impresora                                         Fax
      Impresora                                         HP ENVY 110 series (Red)
      Impresora                                         HPEC3906 (HP ENVY 110 series)
      Impresora                                         Microsoft Print to PDF
      Impresora                                         Microsoft XPS Document Writer
      Impresora                                         OneNote
      Controladora USB2                                 Intel Ibex Peak PCH - USB 2.0 EHCI Controller 1 [B3]
      Controladora USB2                                 Intel Ibex Peak PCH - USB 2.0 EHCI Controller 2 [B3]
      Dispositivo USB                                   Dispositivo compuesto USB
      Dispositivo USB                                   Dispositivo de almacenamiento USB
      Dispositivo USB                                   Dispositivo de entrada USB
      Dispositivo USB                                   Generic USB Hub
      Dispositivo USB                                   Generic USB Hub
      Dispositivo USB                                   HD Webcam C270
      Dispositivo USB                                   Logitech HD Webcam C270
      Dispositivo USB                                   Logitech Unifying USB receiver
      Dispositivo USB                                   Logitech USB Camera (HD Webcam C270)
      Dispositivo USB                                   Logitech USB Input Device

    DMI:
      Vendedor del BIOS DMI                             American Megatrends Inc.
      Versión del BIOS DMI                              1101
      Fabricante del sistema DMI                        System manufacturer
      Producto del sistema DMI                          System Product Name
      Versión del sistema DMI                           System Version
      Número de serie del sistema DMI                   [ TRIAL VERSION ]
      UUID del sistema DMI                              [ TRIAL VERSION ]
      Fabricante de la placa base DMI                   ASUSTeK Computer INC.
      Producto de la placa base DMI                     P7H55-M
      Versión de la placa base DMI                      Rev X.0x
      Número de serie de la placa base DMI              [ TRIAL VERSION ]
      Fabricante del chasis DMI                         Chassis Manufacture
      Versión del chasis DMI                            Chassis Version
      Número de serie del chasis DMI                    [ TRIAL VERSION ]
      Identificador del chasis DMI                      [ TRIAL VERSION ]
      Tipo de chasis DMI                                Desktop Case
      Sockets de memoria Totales / Libres DMI           4 / 1


--------[ Nombre del equipo ]-------------------------------------------------------------------------------------------

    Comentario del equipo     Lógico    
    Nombre de NetBIOS         Lógico    DESKTOP-P2G5KEN
    Nombre de host DNS        Lógico    DESKTOP-P2G5KEN
    Nombre de dominio DNS     Lógico    
    Nombre de DNS completamente calificado  Lógico    DESKTOP-P2G5KEN
    Nombre de NetBIOS         Físico    DESKTOP-P2G5KEN
    Nombre de host DNS        Físico    DESKTOP-P2G5KEN
    Nombre de dominio DNS     Físico    
    Nombre de DNS completamente calificado  Físico    DESKTOP-P2G5KEN


--------[ DMI ]---------------------------------------------------------------------------------------------------------

  [ BIOS ]

    Propiedades del BIOS:
      Vendedor                                          American Megatrends Inc.
      Versión                                           1101
      Fecha de salida                                   08/18/2010
      Tamaño                                            8 MB
      Versión del BIOS del sistema                      8.15
      Dispositivos de arranque                          Floppy Disk, Hard Disk, CD-ROM, ATAPI ZIP, LS-120
      Capacidades                                       Flash BIOS, Shadow BIOS, Selectable Boot, EDD, BBS
      Estándares compatibles                            DMI, APM, ACPI, ESCD, PnP
      Capacidades de expansión                          ISA, PCI, USB
      Máquina virtual                                   No

    Fabricante del BIOS:
      Nombre de la empresa                              American Megatrends Inc.
      Información del producto                          https://ami.com/en/products/bios-uefi-firmware
      Ampliaciones del BIOS                             http://www.aida64.com/goto/?p=biosupdates

  [ Sistema ]

    Propiedades del sistema:
      Fabricante                                        System manufacturer
      Producto                                          System Product Name
      Versión                                           System Version
      Número de serie                                   [ TRIAL VERSION ]
      SKU#                                              To Be Filled By O.E.M.
      Familia                                           To Be Filled By O.E.M.
      ID único universal                                [ TRIAL VERSION ]
      Tipo de despertar                                 Botón de encendido/apagado

  [ Placa base ]

    Propiedades de la placa base:
      Fabricante                                        ASUSTeK Computer INC.
      Producto                                          P7H55-M
      Versión                                           Rev X.0x
      Número de serie                                   [ TRIAL VERSION ]
      Etiqueta                                          [ TRIAL VERSION ]
      Etiqueta                                          [ TRIAL VERSION ]
      Etiqueta                                          [ TRIAL VERSION ]

    Fabricante de la placa base:
      Nombre de la empresa                              ASUSTeK Computer Inc.
      Información del producto                          https://www.asus.com/Motherboards
      Descarga del BIOS                                 https://www.asus.com/support
      Actualización del controlador                     http://www.aida64.com/goto/?p=drvupdates
      Ampliaciones del BIOS                             http://www.aida64.com/goto/?p=biosupdates

  [ Chasis ]

    Propiedades del chasis:
      Fabricante                                        Chassis Manufacture
      Versión                                           Chassis Version
      Número de serie                                   [ TRIAL VERSION ]
      Etiqueta                                          [ TRIAL VERSION ]
      Tipo de chasis                                    Gabinete
      Estado del arranque                               Seguro
      Estado de alimentación                            Seguro
      Estado térmico                                    Seguro
      Estado de seguridad                               Ninguno

  [ Controladora de memoria ]

    Propiedades de controladora de memoria:
      Método de detección de errores                    64-bit ECC
      Corrección de errores                             Ninguno
      Memoria entrelazada admitida                      1-Way
      Memoria entrelazada actual                        1-Way
      Tipos de memoria compatibles                      DIMM, SDRAM
      Voltajes de memoria compatibles                   3.3V
      Tamaño máximo de los módulos de memoria           2048 MB
      Ranuras de memoria                                4

  [ Procesadores / Intel(R) Core(TM) i5 CPU 760 @ 2.80GHz ]

    Propiedades del procesador:
      Fabricante                                        Intel
      Versión                                           Intel(R) Core(TM) i5 CPU 760 @ 2.80GHz
      Número de serie                                   To Be Filled By O.E.M.
      Etiqueta                                          To Be Filled By O.E.M.
      Número de pieza                                   To Be Filled By O.E.M.
      Reloj externo                                     133 MHz
      Reloj máximo                                      3800 MHz
      Reloj actual                                      2800 MHz
      Tipo                                              Central Processor
      Voltaje                                           1.0 V
      Estado                                            Activado
      Identificación del socket                         LGA1156
      HTT / CMP Units                                   1 / 4
      Capacidades                                       64-bit

    Fabricante de la CPU:
      Nombre de la empresa                              Intel Corporation
      Información del producto                          https://ark.intel.com/content/www/us/en/ark/search.html?q=Intel%20Core%20i5-760
      Actualización del controlador                     http://www.aida64.com/goto/?p=drvupdates

  [ Cachés / L1-Cache ]

    Propiedades de la caché:
      Tipo                                              Instruction
      Estado                                            Activado
      Modo de operación                                 Write-Through
      Asociatividad                                     4-way Set-Associative
      Tamaño máximo                                     256 kB
      Tamaño instalado                                  256 kB
      Corrección de errores                             Parity
      Identificación del socket                         L1-Cache

  [ Cachés / L2-Cache ]

    Propiedades de la caché:
      Tipo                                              Unified
      Estado                                            Activado
      Modo de operación                                 Write-Through
      Asociatividad                                     8-way Set-Associative
      Tamaño máximo                                     1 MB
      Tamaño instalado                                  1 MB
      Corrección de errores                             Single-bit ECC
      Identificación del socket                         L2-Cache

  [ Cachés / L3-Cache ]

    Propiedades de la caché:
      Tipo                                              Unified
      Estado                                            Activado
      Modo de operación                                 Write-Back
      Asociatividad                                     16-way Set-Associative
      Tamaño máximo                                     8 MB
      Tamaño instalado                                  8 MB
      Corrección de errores                             Single-bit ECC
      Identificación del socket                         L3-Cache

  [ Arrays en memoria / System Memory ]

    Propiedades de array en memoria:
      Ubicación                                         Placa base
      Función de array en memoria                       Memoria del sistema
      Corrección de errores                             Ninguno
      Capacidad de memoria máx.                         16 GB
      Dispositivos de memoria                           4

  [ Módulos de memoria / DIMM0 ]

    Propiedades del módulo de memoria:
      Identificación del socket                         DIMM0
      Tipo                                              DIMM, SDRAM
      Tamaño instalado                                  2048 MB
      Tamaño activado                                   2048 MB

  [ Módulos de memoria / DIMM1 ]

    Propiedades del módulo de memoria:
      Identificación del socket                         DIMM1
      Tipo                                              DIMM, SDRAM
      Tamaño instalado                                  2048 MB
      Tamaño activado                                   2048 MB

  [ Módulos de memoria / DIMM2 ]

    Propiedades del módulo de memoria:
      Identificación del socket                         DIMM2
      Tipo                                              DIMM, SDRAM
      Tamaño instalado                                  2048 MB
      Tamaño activado                                   2048 MB

  [ Módulos de memoria / DIMM3 ]

    Propiedades del módulo de memoria:
      Identificación del socket                         DIMM3
      Tipo                                              DIMM, SDRAM
      Tamaño instalado                                  No instalado
      Tamaño activado                                   No instalado

  [ Dispositivos de memoria / DIMM0 ]

    Propiedades del dispositivo de memoria:
      Forma                                             DIMM
      Tipo                                              DDR
      Detalle                                           Synchronous
      Tamaño                                            2 GB
      Velocidad máx. de reloj                           1333 MT/s
      Ancho total                                       64 bits
      Ancho de datos                                    64 bits
      Localizador del dispositivo                       DIMM0
      Número de banco                                   BANK0
      Fabricante                                        Manufacturer0
      Número de serie                                   SerNum0
      Etiqueta                                          AssetTagNum0
      Número de pieza                                   PartNum0

  [ Dispositivos de memoria / DIMM1 ]

    Propiedades del dispositivo de memoria:
      Forma                                             DIMM
      Tipo                                              DDR
      Detalle                                           Synchronous
      Tamaño                                            2 GB
      Velocidad máx. de reloj                           1333 MT/s
      Ancho total                                       64 bits
      Ancho de datos                                    64 bits
      Localizador del dispositivo                       DIMM1
      Número de banco                                   BANK1
      Fabricante                                        Manufacturer1
      Número de serie                                   SerNum1
      Etiqueta                                          AssetTagNum1
      Número de pieza                                   PartNum1

  [ Dispositivos de memoria / DIMM2 ]

    Propiedades del dispositivo de memoria:
      Forma                                             DIMM
      Tipo                                              DDR
      Detalle                                           Synchronous
      Tamaño                                            2 GB
      Velocidad máx. de reloj                           1333 MT/s
      Ancho total                                       64 bits
      Ancho de datos                                    64 bits
      Localizador del dispositivo                       DIMM2
      Número de banco                                   BANK2
      Fabricante                                        Manufacturer2
      Número de serie                                   SerNum2
      Etiqueta                                          AssetTagNum2
      Número de pieza                                   PartNum2

  [ Dispositivos de memoria / DIMM3 ]

    Propiedades del dispositivo de memoria:
      Forma                                             DIMM
      Localizador del dispositivo                       DIMM3
      Número de banco                                   BANK3
      Fabricante                                        Manufacturer3
      Número de serie                                   SerNum3
      Etiqueta                                          AssetTagNum3
      Número de pieza                                   PartNum3

  [ Ranuras del sistema / PCIEX16_1 ]

    Propiedades de ranura del sistema:
      Identificación de la ranura                       PCIEX16_1
      Tipo                                              PCI-E
      Uso                                               En uso
      Ancho de bus de datos                             32-bit
      Longitud                                          Corto

  [ Ranuras del sistema / PCIEX1_1 ]

    Propiedades de ranura del sistema:
      Identificación de la ranura                       PCIEX1_1
      Tipo                                              PCI-E
      Uso                                               Vacío
      Ancho de bus de datos                             32-bit
      Longitud                                          Corto

  [ Ranuras del sistema / PCIEX1_2 ]

    Propiedades de ranura del sistema:
      Identificación de la ranura                       PCIEX1_2
      Tipo                                              PCI-E
      Uso                                               Vacío
      Ancho de bus de datos                             32-bit
      Longitud                                          Corto

  [ Ranuras del sistema / PCI1 ]

    Propiedades de ranura del sistema:
      Identificación de la ranura                       PCI1
      Tipo                                              PCI
      Uso                                               Vacío
      Ancho de bus de datos                             32-bit
      Longitud                                          Corto

  [ Conectores de puertos / PS/2 Keyboard ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    Keyboard Port
      Diseño de referencia interna                      PS/2 Keyboard
      Tipo de conector interno                          Ninguno
      Diseño de referencia externa                      PS/2 Keyboard
      Tipo de conector externo                          PS/2

  [ Conectores de puertos / USB9_10 ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    USB
      Diseño de referencia interna                      USB9_10
      Tipo de conector interno                          Ninguno
      Diseño de referencia externa                      USB9_10
      Tipo de conector externo                          USB

  [ Conectores de puertos / USB11_12 ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    USB
      Diseño de referencia interna                      USB11_12
      Tipo de conector interno                          Ninguno
      Diseño de referencia externa                      USB11_12
      Tipo de conector externo                          USB

  [ Conectores de puertos / GbE LAN ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    Network Port
      Diseño de referencia interna                      GbE LAN
      Tipo de conector interno                          Ninguno
      Diseño de referencia externa                      GbE LAN
      Tipo de conector externo                          RJ-45

  [ Conectores de puertos / AUDIO ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    Audio Port
      Diseño de referencia interna                      AUDIO
      Tipo de conector interno                          Ninguno
      Diseño de referencia externa                      AUDIO

  [ Conectores de puertos / Audio_Line_In ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    Audio Port
      Diseño de referencia interna                      Audio_Line_In
      Tipo de conector interno                          Ninguno
      Diseño de referencia externa                      Audio_Line_In
      Tipo de conector externo                          Mini-jack (headphones)

  [ Conectores de puertos / Audio_Line_Out ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    Audio Port
      Diseño de referencia interna                      Audio_Line_Out
      Tipo de conector interno                          Ninguno
      Diseño de referencia externa                      Audio_Line_Out
      Tipo de conector externo                          Mini-jack (headphones)

  [ Conectores de puertos / Audio_Mic_In ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    Audio Port
      Diseño de referencia interna                      Audio_Mic_In
      Tipo de conector interno                          Ninguno
      Diseño de referencia externa                      Audio_Mic_In
      Tipo de conector externo                          Mini-jack (headphones)

  [ Conectores de puertos / Audio_Center/Sub ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    Audio Port
      Diseño de referencia interna                      Audio_Center/Sub
      Tipo de conector interno                          Ninguno
      Diseño de referencia externa                      Audio_Center/Sub
      Tipo de conector externo                          Mini-jack (headphones)

  [ Conectores de puertos / Audio_Rear ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    Audio Port
      Diseño de referencia interna                      Audio_Rear
      Tipo de conector interno                          Ninguno
      Diseño de referencia externa                      Audio_Rear
      Tipo de conector externo                          Mini-jack (headphones)

  [ Conectores de puertos / Audio_Side ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    Audio Port
      Diseño de referencia interna                      Audio_Side
      Tipo de conector interno                          Ninguno
      Diseño de referencia externa                      Audio_Side
      Tipo de conector externo                          Mini-jack (headphones)

  [ Conectores de puertos / LPT 1 ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    Parallel Port ECP/EPP
      Diseño de referencia interna                      LPT
      Tipo de conector interno                          Ninguno
      Diseño de referencia externa                      LPT 1
      Tipo de conector externo                          DB-25 pin male

  [ Conectores de puertos / Panel ]

    Propiedades del conector del puerto:
      Diseño de referencia interna                      Panel
      Tipo de conector interno                          Ninguno
      Diseño de referencia externa                      Panel

  [ Conectores de puertos / SPDIFO ]

    Propiedades del conector del puerto:
      Diseño de referencia interna                      SPDIFO
      Tipo de conector interno                          Ninguno
      Diseño de referencia externa                      SPDIFO

  [ Conectores de puertos / SATA1 ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    SATA
      Diseño de referencia interna                      SATA1
      Tipo de conector interno                          SATA/SAS Plug Receptacle
      Tipo de conector externo                          Ninguno

  [ Conectores de puertos / SATA2 ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    SATA
      Diseño de referencia interna                      SATA2
      Tipo de conector interno                          SATA/SAS Plug Receptacle
      Tipo de conector externo                          Ninguno

  [ Conectores de puertos / SATA3 ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    SATA
      Diseño de referencia interna                      SATA3
      Tipo de conector interno                          SATA/SAS Plug Receptacle
      Tipo de conector externo                          Ninguno

  [ Conectores de puertos / SATA4 ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    SATA
      Diseño de referencia interna                      SATA4
      Tipo de conector interno                          SATA/SAS Plug Receptacle
      Tipo de conector externo                          Ninguno

  [ Conectores de puertos / SATA5 ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    SATA
      Diseño de referencia interna                      SATA5
      Tipo de conector interno                          SATA/SAS Plug Receptacle
      Tipo de conector externo                          Ninguno

  [ Conectores de puertos / SATA6 ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    SATA
      Diseño de referencia interna                      SATA6
      Tipo de conector interno                          SATA/SAS Plug Receptacle
      Tipo de conector externo                          Ninguno

  [ Conectores de puertos / USB1_2 ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    USB
      Diseño de referencia interna                      USB1_2
      Tipo de conector interno                          USB
      Tipo de conector externo                          Ninguno

  [ Conectores de puertos / USB3_4 ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    USB
      Diseño de referencia interna                      USB3_4
      Tipo de conector interno                          USB
      Tipo de conector externo                          Ninguno

  [ Conectores de puertos / USB5_6 ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    USB
      Diseño de referencia interna                      USB5_6
      Tipo de conector interno                          USB
      Tipo de conector externo                          Ninguno

  [ Conectores de puertos / USB7_8 ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    USB
      Diseño de referencia interna                      USB7_8
      Tipo de conector interno                          USB
      Tipo de conector externo                          Ninguno

  [ Conectores de puertos / AAFP ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    Audio Port
      Diseño de referencia interna                      AAFP
      Tipo de conector interno                          Mini-jack (headphones)
      Tipo de conector externo                          Ninguno

  [ Conectores de puertos / SPDIF OUT ]

    Propiedades del conector del puerto:
      Diseño de referencia interna                      SPDIF OUT
      Tipo de conector externo                          Ninguno

  [ Conectores de puertos / CPU_FAN ]

    Propiedades del conector del puerto:
      Diseño de referencia interna                      CPU_FAN
      Tipo de conector externo                          Ninguno

  [ Conectores de puertos / CHA_FAN1 ]

    Propiedades del conector del puerto:
      Diseño de referencia interna                      CHA_FAN1
      Tipo de conector externo                          Ninguno

  [ Conectores de puertos / PRI_EIDE ]

    Propiedades del conector del puerto:
      Tipo de puerto                                    SATA
      Diseño de referencia interna                      PRI_EIDE
      Tipo de conector interno                          SATA/SAS Plug Receptacle
      Tipo de conector externo                          Ninguno

  [ Conectores de puertos / COM1 ]

    Propiedades del conector del puerto:
      Diseño de referencia interna                      COM1
      Tipo de conector externo                          Ninguno

  [ Conectores de puertos / VGA ]

    Propiedades del conector del puerto:
      Diseño de referencia interna                      VGA
      Tipo de conector externo                          Ninguno

  [ Conectores de puertos / HDMI ]

    Propiedades del conector del puerto:
      Diseño de referencia interna                      HDMI
      Tipo de conector externo                          Ninguno

  [ Dispositivos integrados / Onboard Ethernet ]

    Propiedades del dispositivo integrado:
      Descripción                                       Onboard Ethernet
      Tipo                                              Ethernet
      Estado                                            Activado

  [ Dispositivos integrados / Onboard Audio ]

    Propiedades del dispositivo integrado:
      Descripción                                       Onboard Audio
      Tipo                                              Sound
      Estado                                            Activado

  [ Dispositivos integrados / Onboard Ethernet ]

    Propiedades del dispositivo integrado:
      Descripción                                       Onboard Ethernet
      Tipo                                              Ethernet
      Estado                                            Activado
      Bus / Dispositivo / Función                       255 / 31 / 7

  [ Dispositivos integrados / Onboard Audio ]

    Propiedades del dispositivo integrado:
      Descripción                                       Onboard Audio
      Tipo                                              Sound
      Estado                                            Activado
      Bus / Dispositivo / Función                       255 / 31 / 7

  [ Misceláneos ]

    Misceláneos:
      OEM String                                        20CF303A4FF6
      OEM String                                        To Be Filled By O.E.M.
      OEM String                                        To Be Filled By O.E.M.
      OEM String                                        To Be Filled By O.E.M.


--------[ Overclock ]---------------------------------------------------------------------------------------------------

    Propiedades de la CPU:
      Tipo de CPU                                       QuadCore Intel Core i5-760
      Alias de la CPU                                   Lynnfield
      Escalonamiento de la CPU                          B1
      Engineering Sample                                No
      CPUID Nombre de la CPU                            Intel(R) Core(TM) i5 CPU 760 @ 2.80GHz
      Revisión de CPUID                                 000106E5h

    Velocidad de la CPU:
      Reloj de la CPU                                   3345.0 MHz  (original: [ TRIAL VERSION ] MHz, overclock: 19%)
      Multiplicador de la CPU                           25x
      FSB de la CPU                                     133.8 MHz  (original: 133 MHz)
      Reloj QPI                                         2408.4 MHz
      Reloj del puente norte                            2140.8 MHz
      Bus de la memoria                                 669.0 MHz
      Relación DRAM:FSB                                 5:1

    Caché de la CPU:
      Caché de código L1                                32 kB per core
      Caché de datos L1                                 [ TRIAL VERSION ]
      Caché L2                                          256 kB per core  (On-Die, ECC, Full-Speed)
      Caché L3                                          8 MB  (On-Die, ECC, Full-Speed)

    Propiedades de la placa base:
      ID de la placa base                               67-1101-000001-00101111-081810-P55$A1577001_BIOS DATE: 08/18/10 11:36:01 VER: 08.00.15
      Nombre de la placa base                           Asus P7H55-M  (1 PCI, 2 PCI-E x1, 1 PCI-E x16, 4 DDR3 DIMM, Audio, Video, Gigabit LAN)

    Propiedades del chipset:
      Chipset de la placa base                          Intel Ibex Peak H55, Intel Lynnfield
      Tiempos de Memoria                                9-9-9-24  (CL-RCD-RP-RAS)
      Command Rate (CR)                                 [ TRIAL VERSION ]
      DIMM1: Kingston 9905471-001.A00LF                 2 GB DDR3-1333 DDR3 SDRAM  (9-9-9-24 @ 666 MHz)  (8-8-8-22 @ 609 MHz)  (7-7-7-20 @ 533 MHz)  (6-6-6-17 @ 457 MHz)
      DIMM2: Kingston 9905471-001.A00LF                 [ TRIAL VERSION ]
      DIMM3: Kingston 9905471-001.A00LF                 [ TRIAL VERSION ]

    Propiedades del BIOS:
      Fecha del BIOS del sistema                        08/18/10
      Fecha del BIOS de vídeo                           02/06/10
      Versión del BIOS DMI                              1101

    Propiedades del procesador gráfico:
      Adaptador de vídeo                                Asus ENGT220
      Nombre código de la GPU                           GT216-300  (PCI Express 2.0 x16 10DE / 0A20, Rev A2)
      Reloj de la GPU (Geometric Domain)                135 MHz  (original: [ TRIAL VERSION ] MHz)
      Reloj de la GPU (Shader Domain)                   270 MHz  (original: [ TRIAL VERSION ] MHz)
      Reloj de la memoria                               135 MHz  (original: 790 MHz)


--------[ Administración de energía ]-----------------------------------------------------------------------------------

    Propiedades de administración de energía:
      Fuente de energía actual                          Línea CA
      Estado de la batería                              Sin batería
      Tiempo de vida de batería llena                   Desconocido
      Tiempo de vida restante de la batería             Desconocido


--------[ Equipo portátil ]---------------------------------------------------------------------------------------------

    Compatibilidad con plataforma Centrino (Carmel):
      CPU: Intel Pentium M (Banias/Dothan)              No  (Intel Core i5-760)
      Chipset: Intel i855GM/PM                          No  (Intel Ibex Peak H55, Intel Lynnfield)
      WLAN: Intel PRO/Wireless                          No
      Sistema: Compatible con Centrino                  No

    Compatibilidad con plataforma Centrino (Sonoma):
      CPU: Intel Pentium M (Dothan)                     No  (Intel Core i5-760)
      Chipset: Intel i915GM/PM                          No  (Intel Ibex Peak H55, Intel Lynnfield)
      WLAN: Intel PRO/Wireless 2200/2915                No
      Sistema: Compatible con Centrino                  No

    Compatibilidad con plataforma Centrino (Napa):
      CPU: Intel Core (Yonah) / Core 2 (Merom)          No  (Intel Core i5-760)
      Chipset: Intel i945GM/PM                          No  (Intel Ibex Peak H55, Intel Lynnfield)
      WLAN: Intel PRO/Wireless 3945/3965                No
      Sistema: Compatible con Centrino                  No

    Compatibilidad con plataforma Centrino (Santa Rosa):
      CPU: Intel Core 2 (Merom/Penryn)                  No  (Intel Core i5-760)
      Chipset: Intel GM965/PM965                        No  (Intel Ibex Peak H55, Intel Lynnfield)
      WLAN: Intel Wireless WiFi Link 4965               No
      Sistema: Compatible con Centrino                  No

    Compatibilidad con plataforma Centrino 2 (Montevina):
      CPU: Intel Core 2 (Penryn)                        No  (Intel Core i5-760)
      Chipset: Mobile Intel 4 Series                    No  (Intel Ibex Peak H55, Intel Lynnfield)
      WLAN: Intel WiFi Link 5000 Series                 No
      Sistema: Compatible con Centrino 2                No

    Compatibilidad con plataforma Centrino (Calpella):
      CPU: Intel Core i3/i5/i7 (Arrandale/Clarksfield)  No  (Intel Core i5-760)
      Chipset: Mobile Intel 5 Series                    No  (Intel Ibex Peak H55, Intel Lynnfield)
      WLAN: Intel Centrino Advanced-N / Ultimate-N / Wireless-NNo
      Sistema: Compatible con Centrino                  No

    Compatibilidad con plataforma Centrino (Huron River):
      CPU: Intel Core i3/i5/i7 (Sandy Bridge-MB)        No  (Intel Core i5-760)
      Chipset: Mobile Intel 6 Series                    No  (Intel Ibex Peak H55, Intel Lynnfield)
      WLAN: Intel Centrino Advanced-N / Ultimate-N / Wireless-NNo
      Sistema: Compatible con Centrino                  No

    Compatibilidad con plataforma Centrino (Chief River):
      CPU: Intel Core i3/i5/i7 (Ivy Bridge-MB)          No  (Intel Core i5-760)
      Chipset: Mobile Intel 7 Series                    No  (Intel Ibex Peak H55, Intel Lynnfield)
      WLAN: Intel Centrino Advanced-N / Ultimate-N / Wireless-NNo
      Sistema: Compatible con Centrino                  No

    Compatibilidad con plataforma Centrino (Shark Bay-MB):
      CPU: Intel Core i3/i5/i7 (Haswell-MB)             No  (Intel Core i5-760)
      Chipset: Mobile Intel 8/9 Series                  No  (Intel Ibex Peak H55, Intel Lynnfield)
      WLAN: Intel Centrino Advanced-N / Ultimate-N / Wireless-NNo
      Sistema: Compatible con Centrino                  No


--------[ Sensor ]------------------------------------------------------------------------------------------------------

    Propiedades de sensores:
      Tipo de sensor                                    Winbond W83667HG  (ISA 290h)
      Tipo de sensor de la GPU                          Diode  (NV-Diode)
      Nombre de la placa base                           Asus P7H55 / P7H55-M / P7H55D-M / P7Q57-M Series
      Intrusión detectada en el chasis                  Sí

    Temperaturas:
      Placa base                                        31 °C
      CPU                                               49 °C
      CPU # 1 / núcleo # 1                              53 °C
      CPU # 1 / núcleo # 2                              53 °C
      CPU # 1 / núcleo # 3                              55 °C
      CPU # 1 / núcleo # 4                              53 °C
      diodo GPU                                         37 °C
      ST2000DM006-2DM164                                [ TRIAL VERSION ]

    Ventiladores:
      CPU                                               1654 RPM

    Valores de voltaje:
      Núcleo de la CPU                                  1.008 V
      +3.3 V                                            3.360 V
      +5 V                                              5.160 V
      +12 V                                             [ TRIAL VERSION ]
      Puesta en espera +5 V                             5.212 V

    Valores de energía:
      GPU TDP%                                          [ TRIAL VERSION ]
      Debug Info F                                      FF 33 FF / FF FF
      Debug Info T                                      31 49 84
      Debug Info V                                      7E DE D2 D2 D7 FF 2C (01)
      Debug Info I                                      C1 B353

¡Ese si es el informe que quiero!

Lo analizo y espero el resultado de las pruebas que te dije.

Buenas noches Frica solo decirte que el ordenador va perfectamente no cuales son los ultimos resultados pero creo estar seguro que parte del problema que tenia en un principio tenia que ver con las pilas tanto del Teclado como del Mouse que estaban muy consumidas. Te digo esto porque despues de todo lo que hemos hecho, cuando le daba al Enter, o las teclas en cruz de avance retroceso Etc.habrir pagina, o ventana nueva. Pues en estos casos se colgaba, retenblaba la pagina, el escritorio. o el Mouse pensando con el circulito girando en la punta. Hata que el otro dia se agoto la pila de Mouse y cambie tambien la del teclado pues le quedaba una rayita y desde ese momentos se estabilizo todo. Solo añadir que mi Teclado y Mouse son laser por eso lo de las pilas. Un saludo.

Pues me alegra saber estas buenas noticias. Antes de dar el tema por solucionado vamos a eliminar las herramientas usadas.

Para eliminar algunas de las herramientas usadas, sigue estos pasos:

  • Para hacerlo descarga >>DelFix en tu escritorio . Consulta su manual en caso necesario.

  • Doble clic para ejecutarlo. (Si usas Windows Vista/7 u 8 presiona clic derecho y selecciona "Ejecutar como Administrador” )

  • Marca “ Remove desinfection tools, y pulsas en Run

  • Pulsar en Run .

Al terminar Se abrirá un reporte llamado DelFix.txt , verifica que se hayan eliminado las herramientas usadas para desinfectar el Pc