Problemas con Win7 y Office 2016

Hola , tengo el siguiente problema de un dia para otro el office me pidió licencia , la verdad estaba medicado , lo trate de medicar de nuevo y nada , probé muchas vacunas, lo desinstale el office y sale un error que no se puede instalar (después sale una ventana Microsoft Setup Bootstrapper dejo de funcionar , le pase un antivirus y me borro el crome y Firefox no así el internet explorer del cual escribo, todo lo demás función perfecto , ah ahora no me deja instalar ni crome ni Firefox, estoy desconcertado , primera vez que ocurre algo asi, revise la integridad de archivos con sfc /scannow y están ok,alguna idea

Hola @WALLY

Para desinstalar Office completamente utiliza su Herramienta especifica ve a la Opción 2 de el enlace:

Luego de desinstalarlo no lo reinstales aun.

Que antivirus ejecutaste?


Para ver los restos que quedaron en el ordenador realiza lo siguiente:

1.- Desactiva temporalmente tu antivirus y cualquier programa de seguridad.

2.- Descarga Farbar Recovery Scan Tool. en el escritorio, seleccionando la versión adecuada para la arquitectura (32 o 64bits) de su equipo. >> Como saber si mi Windows es de 32 o 64 bits.?

  • Ejecuta FRST.exe.
  • En el mensaje de la ventana del Disclaimer, pulsamos Yes
  • En la ventana principal pulsamos en el botón Scan/Analizar y esperamos a que concluya el proceso.
  • Se abrirán dos(2) archivos(Logs), Frst.txt y Addition.txt, estos quedaran grabados en el escritorio.

Guía: Como Ejecutar FRST

3.- En tu próxima respuesta, pega los reportes generados.

Guía : ¿Como Pegar reportes en el Foro?

Esperamos esos reporte.

Salu2

==================== Internet (Lista blanca) ====================

(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)

Winsock: Catalog5 07 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => Ningún archivo 
Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => Ningún archivo 
Winsock: Catalog5 09 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 200.83.1.4 190.160.0.14 200.30.192.15
Tcpip\..\Interfaces\{BDDD6E62-2F7C-479E-BCB2-D39D43C155B7}: [NameServer] 208.67.222.222,208.67.220.220
Tcpip\..\Interfaces\{BDDD6E62-2F7C-479E-BCB2-D39D43C155B7}: [DhcpNameServer] 200.83.1.4 190.160.0.14 200.30.192.15

Internet Explorer:
==================
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.msn.com/?OCID=IE11FREDHP&PC=UF01
BHO: Prot-On Internet Explorer -> {1F27E08D-FBB3-4456-83ED-90976FF4DDA7} -> C:\Program Files\Prot-On\Prot-On Addin Internet Explorer\adxloader.dll [2015-07-23] (Proteccion On-Line, S.L. -> )
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_221\bin\ssv.dll [2019-10-03] (Oracle America, Inc. -> Oracle Corporation)
BHO: Foxit PhantomPDF Create PDF ToolBar Helper -> {A5DD10F7-5ABB-4EEF-B4C8-6748D44DAF2A} -> C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [2017-12-11] (Foxit Software Incorporated -> )
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-10-03] (Oracle America, Inc. -> Oracle Corporation)
Toolbar: HKLM - Foxit PhantomPDF Create PDF ToolBar - {BFD9D8A8-57FF-488A-B919-065EC77CF82F} - C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [2017-12-11] (Foxit Software Incorporated -> )
Toolbar: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000 -> Foxit PhantomPDF Create PDF ToolBar - {BFD9D8A8-57FF-488A-B919-065EC77CF82F} - C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [2017-12-11] (Foxit Software Incorporated -> )

FireFox:
========
FF DefaultProfile: msasqecp.default
FF ProfilePath: C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\msasqecp.default [2019-06-12]
FF ProfilePath: C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release [2020-05-09]
FF DownloadDir: C:\Users\Walter\Desktop\Reales
FF Notifications: Mozilla\Firefox\Profiles\y5vs2xqm.default-release -> hxxps://mail.yahoo.com; hxxps://matemathweb.com; hxxps://www.jagranjosh.com; hxxps://maranhesduve.club; hxxps://forospyware.com; hxxps://www3.lucienmann.pro; hxxps://www.instagram.com; hxxps://mail.google.com; hxxps://www.pinterest.cl; hxxps://web.whatsapp.com; hxxps://r4cp.overiesarticu.info
FF Extension: (All Downloader Professional) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\[email protected] [2019-07-15]
FF Extension: (Bookmarks Organizer) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\[email protected] [2019-09-29]
FF Extension: (Custom Google Visited Link Color) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\[email protected] [2019-06-16]
FF Extension: (Turbo Download Manager (3rd edition)) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\[email protected] [2020-05-09]
FF Extension: (MyJDownloader Browser Extension) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\[email protected] [2019-10-16] [UpdateUrl:hxxps://my.jdownloader.org/extensions/firefox.json]
FF Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\[email protected] [2020-05-09]
FF Extension: (S3.Translator) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\{3a2831f6-37df-4a42-baf6-0b81d5b6a68f}.xpi [2019-10-16] [UpdateUrl:hxxps://clients2.google.com/service/update2/crx]
FF Extension: (YouTube mp3 Downloader) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\{3d1fbee0-687c-4032-9815-0f4519252d44}.xpi [2019-10-18]
FF Extension: (Download Links) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\{7b15cfea-42ba-4409-9dd9-00e954f9a9ac}.xpi [2019-07-15]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\FirefoxAddin\FFExtnHTML2PDF.xpi
FF Extension: (Foxit PDF Creator) - C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\FirefoxAddin\FFExtnHTML2PDF.xpi [2017-12-01] [Heredado]
FF Plugin: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2017-12-01] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2017-12-01] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2017-12-01] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2017-12-01] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-10-03] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-10-03] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin HKU\S-1-5-21-1069064461-1938371621-2346768231-1000: @zoom.us/ZoomVideoPlugin -> C:\Users\Walter\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2020-04-04] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)

Chrome: 
=======
CHR Profile: C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default [2020-04-04]
CHR Notifications: Default -> hxxps://www.facebook.com
CHR Extension: (Presentaciones) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-07-16]
CHR Extension: (Documentos) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-07-16]
CHR Extension: (Google Drive) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-07-16]
CHR Extension: (YouTube) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-07-16]
CHR Extension: (DownAlbum) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgjnhhjpfcdhbhlcmmjppicjmgfkppok [2020-03-08]
CHR Extension: (Foxit PDF Creator) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\cifnddnffldieaamihfkhkdgnbhfmaci [2019-08-30]
CHR Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2020-03-31]
CHR Extension: (Hojas de cálculo) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-07-16]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-31]
CHR Extension: (AVG SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbckjcfnjmoiinpgddefodcighgikkgn [2020-01-15]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Gmail) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-07-16]
CHR Extension: (Chrome Media Router) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-04]
CHR HKLM\...\Chrome\Extension: [cifnddnffldieaamihfkhkdgnbhfmaci] - C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\ChromeAddin\ChromeAddin.crx [2017-12-01]
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn]

==================== Servicios (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R2 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [319376 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 AVG Firewall; C:\Program Files\AVG\Antivirus\afwServ.exe [881576 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R3 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [4950464 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S2 dbupdate; C:\Program Files\Dropbox\Update\DropboxUpdate.exe [143144 2019-06-15] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files\Dropbox\Update\DropboxUpdate.exe [143144 2019-06-15] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [37384 2020-04-28] (Dropbox, Inc -> Dropbox, Inc.)
R2 FolderSize; C:\Program Files\FolderSize\FolderSizeSvc.exe [114688 2013-02-13] (Brio) [Archivo no firmado]
S3 FoxitPhantomService; C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\FoxitConnectedPDFService.exe [1658944 2017-12-12] (Foxit Software Incorporated -> Foxit Software Inc.)
R2 HuaweiHiSuiteService.exe; C:\Program Files\HiSuite\HandSetService\HuaweiHiSuiteService.exe [154432 2019-08-18] (Huawei Technologies Co., Ltd. -> ) [Archivo no firmado]
R2 reaConverter_service; C:\Program Files\reaConverter 7 Standard\rc_service.exe [5752832 2018-06-05] (reaConverter LLC) [Archivo no firmado]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Windows -> Microsoft Corporation)

===================== Controladores (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R1 avgArPot; C:\Windows\System32\drivers\avgArPot.sys [176048 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgbidsdriver; C:\Windows\System32\drivers\avgbidsdriver.sys [187736 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgbidsh; C:\Windows\System32\drivers\avgbidsh.sys [143192 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgbuniv; C:\Windows\System32\drivers\avgbuniv.sys [56664 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgKbd; C:\Windows\System32\drivers\avgKbd.sys [41520 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 avgMonFlt; C:\Windows\System32\drivers\avgMonFlt.sys [148512 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgNetHub; C:\Windows\System32\drivers\avgNetHub.sys [356072 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R3 avgNetNd6; C:\Windows\System32\DRIVERS\avgNetNd6.sys [28408 2019-10-31] (AVG Technologies CZ, s.r.o. -> AVG Technologies CZ, s.r.o.)
R1 avgRdr; C:\Windows\System32\drivers\avgRdr2.sys [94400 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgRvrt; C:\Windows\System32\drivers\avgRvrt.sys [73624 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgSnx; C:\Windows\System32\drivers\avgSnx.sys [691840 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgSP; C:\Windows\System32\drivers\avgSP.sys [396616 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 avgStm; C:\Windows\System32\drivers\avgStm.sys [177608 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgVmm; C:\Windows\System32\drivers\avgVmm.sys [278232 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 DFX11_1; C:\Windows\System32\drivers\dfx11_1.sys [24424 2015-08-31] (Power Technology -> Windows (R) Win 7 DDK provider)
R3 DFX12; C:\Windows\System32\drivers\dfx12.sys [26104 2015-11-12] (Power Technology -> Windows (R) Win 7 DDK provider)
S2 DgiVecp; C:\Windows\system32\Drivers\DgiVecp.sys [38400 2009-03-02] (Samsung Electronics Co., Ltd.) [Archivo no firmado]
R3 DLKRTE32; C:\Windows\System32\DRIVERS\DLKRTE32.sys [399360 2011-08-04] (Microsoft Windows Hardware Compatibility Publisher -> D-Link Corp. )
S3 ew_usbccgpfilter; C:\Windows\System32\DRIVERS\ew_usbccgpfilter.sys [15360 2019-08-18] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R3 gHidPnp; C:\Windows\System32\Drivers\gHidPnp.Sys [20480 2019-06-13] (Microsoft Windows Hardware Compatibility Publisher -> )
R2 giveio; C:\Windows\system32\giveio.sys [5248 1996-04-03] () [Archivo no firmado]
R3 gMouUsb; C:\Windows\System32\DRIVERS\gMouUsb.sys [11520 2019-06-13] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 hitmanpro37; C:\Windows\system32\drivers\hitmanpro37.sys [38224 2019-09-21] (SurfRight B.V. -> )
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO32.SYS [23840 2019-11-07] (Martin Malik - REALiX -> REALiX(tm))
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [102272 2019-08-18] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R2 RtNdPt60; C:\Windows\System32\DRIVERS\RtNdPt60.sys [33056 2011-06-15] (Realtek Semiconductor Corp -> Realtek )
S3 RTTEAMPT; C:\Windows\System32\DRIVERS\RtTeam60.sys [40736 2011-06-15] (Realtek Semiconductor Corp -> Realtek Corporation)
S3 RTVLANPT; C:\Windows\System32\DRIVERS\RtVlan620.sys [27752 2011-09-16] (Realtek Semiconductor Corp -> Realtek Corporation)
R2 speedfan; C:\Windows\system32\speedfan.sys [24184 2012-12-29] (SOKNO S.R.L. -> Almico Software)
R2 SSPORT; C:\Windows\system32\Drivers\SSPORT.sys [5120 2017-11-08] (Samsung Electronics) [Archivo no firmado]
S3 TEAM; C:\Windows\System32\DRIVERS\RtTeam60.sys [40736 2011-06-15] (Realtek Semiconductor Corp -> Realtek Corporation)
S3 AscFileControl; \??\C:\Program Files\IObit\Advanced SystemCare\drivers\win7_x86\AscFileControl.sys [X]
S3 AscFileFilter; \??\C:\Program Files\IObit\Advanced SystemCare\drivers\win7_x86\AscFileFilter.sys [X]
S3 AscRegistryFilter; \??\C:\Program Files\IObit\Advanced SystemCare\drivers\win7_x86\AscRegistryFilter.sys [X]
S3 catchme; \??\C:\Users\Walter\AppData\Local\Temp\catchme.sys [X] <==== ATENCIÓN
S3 CLMirrorDriver; system32\DRIVERS\CLMirrorDriver.sys [X]
S3 clwvd8; system32\DRIVERS\clwvd8.sys [X]
S3 cpuz145; \??\C:\Windows\temp\cpuz145\cpuz145_x32.sys [X]
S3 iobit_monitor_server; \??\C:\Program Files\IObit\Advanced SystemCare\drivers\Monitor_x86.sys [X]
S0 MBAMSwissArmy; System32\Drivers\mbamswissarmy.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)


==================== Un mes (creado) ===================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-05-10 02:17 - 2020-05-10 02:18 - 000016725 _____ C:\Users\Walter\Desktop\FRST.txt
2020-05-10 02:14 - 2020-05-10 02:08 - 002011136 _____ (Farbar) C:\Users\Walter\Desktop\FRST.exe
2020-05-10 02:13 - 2020-05-10 02:13 - 000000000 ____D C:\Users\Walter\AppData\Local\SaraResults
2020-05-10 02:08 - 2020-05-10 02:08 - 002011136 _____ (Farbar) C:\Users\Walter\Downloads\FRST.exe
2020-05-10 02:07 - 2020-05-10 02:07 - 000000000 ____D C:\Users\Walter\AppData\Local\SaRALogs
2020-05-10 02:06 - 2020-05-10 02:07 - 000000000 ____D C:\Users\Walter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Corporation
2020-05-10 02:06 - 2020-05-10 02:06 - 000000520 _____ C:\Users\Walter\Desktop\Asistente para soporte y recuperación de Microsoft.appref-ms
2020-05-10 02:01 - 2020-05-10 02:13 - 000000000 ____D C:\Users\Walter\AppData\Local\Deployment
2020-05-09 21:55 - 2020-05-09 21:56 - 001295576 _____ (Google LLC) C:\Users\Walter\Downloads\ChromeSetup.exe
2020-05-09 21:52 - 2020-05-09 21:52 - 000319736 _____ (Mozilla) C:\Users\Walter\Downloads\Firefox Installer.exe
2020-05-09 21:43 - 2020-05-09 21:43 - 000000000 ____D C:\Users\Lisyy\AppData\Local\Microsoft Help
2020-05-09 21:41 - 2020-05-09 21:41 - 000000000 ____D C:\Users\Lisyy\AppData\Roaming\ReaConverter7
2020-05-09 21:37 - 2020-05-09 21:37 - 000000000 ____D C:\Users\Walter\AppData\LocalLow\uTorrent
2020-05-09 21:21 - 2020-05-09 21:21 - 000026462 _____ C:\ComboFix.txt
2020-05-09 21:17 - 2020-05-09 21:17 - 000000000 ____D C:\$AV_AVG
2020-05-09 21:03 - 2011-06-26 03:45 - 000256000 _____ C:\Windows\PEV.exe
2020-05-09 21:03 - 2010-11-07 14:20 - 000208896 _____ C:\Windows\MBR.exe
2020-05-09 21:03 - 2009-04-20 01:56 - 000060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2020-05-09 21:03 - 2000-08-30 21:00 - 000518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2020-05-09 21:03 - 2000-08-30 21:00 - 000406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2020-05-09 21:03 - 2000-08-30 21:00 - 000098816 _____ C:\Windows\sed.exe
2020-05-09 21:03 - 2000-08-30 21:00 - 000080412 _____ C:\Windows\grep.exe
2020-05-09 21:03 - 2000-08-30 21:00 - 000068096 _____ C:\Windows\zip.exe
2020-05-09 21:02 - 2020-05-09 21:21 - 000000000 ____D C:\Qoobox
2020-05-09 21:02 - 2020-05-09 21:21 - 000000000 ____D C:\ComboFix
2020-05-09 21:02 - 2020-05-09 21:19 - 000000000 ____D C:\Windows\erdnt
2020-05-09 20:50 - 2020-05-09 21:47 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Herramientas de Microsoft Office 2016
2020-05-09 20:47 - 2020-05-09 21:47 - 000000000 ____D C:\Program Files\Microsoft Office
2020-05-09 20:47 - 2020-05-09 20:47 - 000000000 ___RD C:\MSOCache
2020-05-09 20:47 - 2020-05-09 20:47 - 000000000 ____D C:\Users\Walter\AppData\Local\Microsoft Help
2020-05-09 20:45 - 2020-05-09 20:45 - 000000000 ____D C:\Windows\system32\appmgmt
2020-05-09 20:19 - 2020-05-09 20:19 - 000001021 _____ C:\Users\Walter\Desktop\MEGAsync.lnk
2020-05-09 20:19 - 2020-05-09 20:19 - 000000000 ____D C:\Users\Walter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync
2020-05-09 20:19 - 2020-05-09 20:19 - 000000000 ____D C:\Users\Walter\AppData\Local\MEGAsync
2020-05-09 20:15 - 2020-05-09 20:17 - 035158928 _____ (MEGA Limited) C:\Users\Walter\Desktop\MEGAsyncSetup.exe
2020-05-09 19:39 - 2020-05-09 19:39 - 000000366 _____ C:\Users\Walter\Desktop\dia de madre.txt
2020-05-09 19:37 - 2020-05-10 00:36 - 000000508 _____ C:\Users\Walter\Desktop\Nuevo documento de texto (2).txt
2020-05-09 18:44 - 2020-05-09 18:45 - 000000000 ____D C:\Users\Walter\AppData\Local\MSfree Inc
2020-05-09 18:40 - 2020-05-09 18:40 - 000000000 ____D C:\Users\Walter\Desktop\kms activador-20200509T213922Z-001
2020-05-09 18:39 - 2020-05-09 18:39 - 003474405 _____ C:\Users\Walter\Desktop\kms activador-20200509T213922Z-001.zip
2020-05-09 18:20 - 2020-05-09 18:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
2020-05-09 18:20 - 2010-12-05 23:16 - 000090112 _____ (Vestris Inc.) C:\Windows\system32\Vestris.ResourceLib.dll
2020-05-04 22:19 - 2020-05-04 22:19 - 002862599 _____ C:\Users\Walter\Desktop\licencia.pdf
2020-05-03 19:59 - 2020-05-09 18:33 - 000000000 ____D C:\Users\Walter\Desktop\490_MyCrochet
2020-05-03 19:57 - 2020-05-03 19:57 - 000127309 _____ C:\Users\Walter\Desktop\490_MyCrochet.zip
2020-05-03 19:53 - 2020-05-03 19:53 - 003757863 _____ C:\Users\Walter\Desktop\Revista de crochet.pdf
2020-05-03 19:45 - 2020-05-03 19:46 - 000000000 ____D C:\Users\Walter\Desktop\Revista16
2020-05-03 19:44 - 2014-05-17 00:20 - 005244457 _____ C:\Users\Walter\Desktop\Revista16.rar
2020-05-03 17:31 - 2020-05-03 17:31 - 003139242 _____ C:\Users\Walter\Desktop\itaa.pdf
2020-05-03 17:22 - 2020-05-03 17:22 - 000002727 _____ C:\Users\Walter\Desktop\Nuevo documento de texto.bat
2020-05-03 17:22 - 2020-05-03 17:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2020-05-03 17:21 - 2020-05-03 17:21 - 000000000 _____ C:\Users\Walter\Desktop\Nuevo documento de texto.txt
2020-05-03 17:09 - 2020-05-09 18:20 - 000003366 _____ C:\Windows\system32\Tasks\AutoPico Daily Restart
2020-05-03 17:07 - 2020-05-03 17:07 - 001971426 _____ C:\Users\Walter\Desktop\Activador auto pico.rar
2020-05-03 17:07 - 2020-05-03 17:07 - 000000000 ____D C:\Users\Walter\Desktop\Activador auto pico
2020-05-03 16:48 - 2020-05-03 16:48 - 000000000 ____D C:\Users\Walter\Desktop\archive
2020-05-03 16:48 - 2020-05-03 16:47 - 000323801 _____ C:\Users\Walter\Desktop\archive.zip
2020-05-03 16:47 - 2020-05-03 16:47 - 000000000 ____D C:\Users\Walter\Desktop\ita
2020-05-03 16:46 - 2020-05-03 16:46 - 000000000 ____D C:\Users\Walter\Desktop\Reales
2020-05-03 16:43 - 2020-05-03 15:36 - 000284864 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\avgBoot.exe
2020-05-03 16:43 - 2020-05-03 15:36 - 000177608 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgStm.sys
2020-05-03 16:43 - 2020-05-03 15:36 - 000148512 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgMonFlt.sys
2020-05-03 15:46 - 2020-05-03 15:52 - 000000000 ____D C:\Users\Walter\Desktop\ANTES DE MAYO
2020-05-03 15:38 - 2020-05-09 21:34 - 000117992 _____ C:\Users\Lisyy\AppData\Local\GDIPFONTCACHEV1.DAT
2020-05-03 15:36 - 2020-05-03 15:37 - 000356072 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgNetHub.sys
2020-05-03 15:36 - 2020-05-03 15:36 - 000177608 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\asw2d1190390ed607b5.tmp
2020-05-03 15:36 - 2020-05-03 15:36 - 000148512 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\aswb2722a6320cc56fa.tmp
2020-04-28 16:55 - 2020-04-28 16:55 - 000037384 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe
2020-04-28 16:55 - 2020-04-28 16:55 - 000036848 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys
2020-04-28 16:55 - 2020-04-28 16:55 - 000036848 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys
2020-04-28 16:55 - 2020-04-28 16:55 - 000036848 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys

==================== Un mes (modificado) ==================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-05-10 02:17 - 2019-06-23 21:02 - 000000000 ____D C:\FRST
2020-05-10 02:17 - 2019-06-13 18:03 - 000000000 ____D C:\Users\Walter\AppData\Roaming\uTorrent
2020-05-10 02:09 - 2019-06-15 23:52 - 000000938 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2020-05-10 02:01 - 2019-06-15 21:55 - 000000000 ____D C:\Users\Walter\AppData\Local\Apps\2.0
2020-05-10 00:37 - 2019-10-31 20:38 - 000000000 ____D C:\ProgramData\Avg
2020-05-09 23:09 - 2019-06-15 23:52 - 000000934 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2020-05-09 21:49 - 2019-06-12 18:18 - 000117992 _____ C:\Users\Walter\AppData\Local\GDIPFONTCACHEV1.DAT
2020-05-09 21:47 - 2009-07-13 23:37 - 000000000 ____D C:\Program Files\Common Files\System
2020-05-09 21:47 - 2009-07-13 23:37 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2020-05-09 21:47 - 2009-07-13 23:04 - 000000433 _____ C:\Windows\win.ini
2020-05-09 21:44 - 2009-07-14 01:34 - 000026544 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2020-05-09 21:44 - 2009-07-14 01:34 - 000026544 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2020-05-09 21:40 - 2020-04-03 13:49 - 000000464 __RSH C:\Users\Lisyy\ntuser.pol
2020-05-09 21:40 - 2020-04-03 13:49 - 000000000 ____D C:\Users\Lisyy
2020-05-09 21:37 - 2019-06-13 18:46 - 000000000 ____D C:\Users\Walter\AppData\Local\BitTorrentHelper
2020-05-09 21:36 - 2009-07-14 01:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-05-09 21:31 - 2009-07-14 01:33 - 000450872 _____ C:\Windows\system32\FNTCACHE.DAT
2020-05-09 21:18 - 2009-07-13 23:04 - 000000243 _____ C:\Windows\system.ini
2020-05-09 21:14 - 2019-07-17 02:53 - 000000000 ____D C:\Program Files\DFX
2020-05-09 21:14 - 2019-06-12 17:39 - 000000000 ____D C:\Users\Walter
2020-05-09 21:02 - 2019-06-12 17:55 - 000000000 ____D C:\Users\Walter\AppData\LocalLow\Mozilla
2020-05-09 20:45 - 2020-02-27 12:06 - 000000000 ____D C:\Program Files\Common Files\Apple
2020-05-09 20:45 - 2019-10-22 22:11 - 000000000 ____D C:\ProgramData\Apple
2020-05-09 20:39 - 2020-02-27 12:26 - 000000000 ___RD C:\Users\Walter\iCloudDrive
2020-05-09 20:39 - 2020-02-27 12:07 - 000000000 ____D C:\Users\Walter\AppData\Roaming\Apple Computer
2020-05-09 20:31 - 2019-06-12 17:55 - 000000000 ____D C:\Program Files\Mozilla Maintenance Service
2020-05-09 20:31 - 2019-06-12 17:55 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-05-09 18:20 - 2019-06-12 18:16 - 000000000 ____D C:\Program Files\KMSpico
2020-05-09 17:43 - 2019-07-16 17:31 - 000002168 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-05-03 18:29 - 2019-10-31 20:48 - 000001914 _____ C:\Users\Public\Desktop\AVG Internet Security.lnk
2020-05-03 18:29 - 2019-10-31 20:48 - 000001914 _____ C:\ProgramData\Desktop\AVG Internet Security.lnk
2020-05-03 17:26 - 2019-11-14 22:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google
2020-05-03 17:22 - 2019-06-15 23:52 - 000000000 ____D C:\Program Files\Dropbox
2020-05-03 16:47 - 2019-09-28 00:57 - 000000000 ____D C:\Users\Walter\Desktop\doublekiller
2020-05-03 16:43 - 2019-10-31 20:48 - 000004162 _____ C:\Windows\system32\Tasks\Antivirus Emergency Update
2020-05-03 16:43 - 2009-07-13 23:37 - 000000000 ____D C:\Windows\system32\NDF
2020-05-03 16:42 - 2020-02-24 23:20 - 000000000 ____D C:\Users\Walter\AppData\Local\ElevatedDiagnostics
2020-05-03 15:37 - 2019-10-31 20:47 - 000396616 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSP.sys
2020-05-03 15:36 - 2019-10-31 20:52 - 000187736 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsdriver.sys
2020-05-03 15:36 - 2019-10-31 20:52 - 000143192 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsh.sys
2020-05-03 15:36 - 2019-10-31 20:52 - 000056664 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbuniv.sys
2020-05-03 15:36 - 2019-10-31 20:52 - 000041520 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgKbd.sys
2020-05-03 15:36 - 2019-10-31 20:47 - 000691840 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSnx.sys
2020-05-03 15:36 - 2019-10-31 20:47 - 000278232 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgVmm.sys
2020-05-03 15:36 - 2019-10-31 20:47 - 000176048 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgArPot.sys
2020-05-03 15:36 - 2019-10-31 20:47 - 000094400 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRdr2.sys
2020-05-03 15:36 - 2019-10-31 20:47 - 000073624 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRvrt.sys

==================== Archivos en la raíz de algunos directorios ========

2019-12-25 02:05 - 2019-12-27 21:58 - 000038081 _____ () C:\Users\Walter\AppData\Roaming\downloads.json
2019-08-17 01:07 - 2019-08-17 01:08 - 1215017038 _____ () C:\Users\Walter\AppData\Roaming\job6.tif
2019-08-17 01:07 - 2019-08-17 01:07 - 000223380 _____ () C:\Users\Walter\AppData\Roaming\PPL.jpg
2019-11-01 16:08 - 2019-11-01 16:11 - 000000132 _____ () C:\Users\Walter\AppData\Roaming\Prefs. de formato PNG de Adobe CS6
2019-06-15 14:39 - 2019-06-15 14:39 - 000000001 _____ () C:\Users\Walter\AppData\Local\llftool.4.30.agreement
2019-10-19 16:19 - 2019-10-19 16:19 - 000000218 _____ () C:\Users\Walter\AppData\Local\recently-used.xbel
2019-06-23 21:08 - 2019-06-23 21:08 - 000007605 _____ () C:\Users\Walter\AppData\Local\Resmon.ResmonCfg

==================== FLock ==============================

2019-12-27 22:42 C:\Users\Walter\Application Data
    texto preformateado con sangría de 4 espacio
==================== SigCheck ============================

(No existe una corrección automática para los archivos que no pasan la verificación.)


LastRegBack: 2020-05-03 18:03
======[Code============= Final de FRST.txt ========================
Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x86) Versión: 10-05-2020 01
Ejecutado por Walter (10-05-2020 02:18:42)
Ejecutado desde C:\Users\Walter\Desktop
Windows 7 Ultimate Service Pack 1 (X86) (2019-06-12 20:39:00)
Modo de Inicio: Normal
==========================================================


==================== Cuentas: =============================

Administrador (S-1-5-21-1069064461-1938371621-2346768231-500 - Administrator - Disabled)
Invitado (S-1-5-21-1069064461-1938371621-2346768231-501 - Limited - Disabled)
Lisyy (S-1-5-21-1069064461-1938371621-2346768231-1001 - Administrator - Enabled) => C:\Users\Lisyy
Walter (S-1-5-21-1069064461-1938371621-2346768231-1000 - Administrator - Enabled) => C:\Users\Walter

==================== Centro de Seguridad ========================

(Si una entrada es incluida en el fixlist, será eliminada.)


==================== Programas instalados ======================

(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)

µTorrent (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\uTorrent) (Version: 3.5.5.45628 - BitTorrent Inc.)
Advanced PDF Password Recovery (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\Advanced PDF Password Recovery) (Version: 5.0 - ElcomSoft Co. Ltd.)
Advanced RAR Repair v1.2 (HKLM\...\Advanced RAR Repair v1.2) (Version:  - )
AllDup 4.4.8 (HKLM\...\AllDup_is1) (Version: 4.4.8 - Michael Thummerer Software Design)
Asistente para soporte y recuperación de Microsoft (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\f9a89bd2a46a7606) (Version: 17.0.4589.1 - Microsoft Corporation)
AVG Internet Security (HKLM\...\AVG Antivirus) (Version: 20.2.3116 - AVG Technologies)
Backup and Sync from Google (HKLM\...\{DFF4DF6D-C6E5-455A-B12A-F2489DA136A8}) (Version: 3.49.9800.0000 - Google, Inc.)
BitRecover DJVU Converter Wizard (HKLM\...\BitRecover DJVU Converter Wizard_is1) (Version:  - BitRecover)
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
Card Reader Patch 1.0 for Windows 7 (HKLM\...\Card Reader Windows 7 Patch_is1) (Version:  - )
CCleaner (HKLM\...\CCleaner) (Version:  - )
CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.8.7042 - CDBurnerXP)
Common Desktop Agent (HKLM\...\{031A0E14-0413-4C97-9772-2639B782F46F}) (Version: 1.62.0 - OEM) Hidden
Cool Edit Pro 2.0 (HKLM\...\Cool Edit Pro 2.0) (Version:  - )
CrystalDiskInfo 8.3.1 (HKLM\...\CrystalDiskInfo_is1) (Version: 8.3.1 - Crystal Dew World)
CutMaster 2D Professional  1.3.3.1 (HKLM\...\{793D175B-2E6E-4CF7-AA75-FDA0691173E4}) (Version: 1.3.3.1 - CODE011)
DFX (HKLM\...\DFX) (Version: 12.017.0.0 - Power Technology)
DGE-560T Gigabit PCI Express Ethernet Adapter (HKLM\...\{6E01C07D-A44B-406E-A0DC-DEF62181E6E7}) (Version: 7.47.706.2011 - D-Link)
Diagnóstico de impresoras Samsung (HKLM\...\Samsung Printer Diagnostics) (Version: 1.0.0.15 - Samsung Electronics Co., Ltd.)
DjVu To PDF Converter Software (HKLM\...\DjVu To PDF Converter Software_is1) (Version:  - Sobolsoft)
DjVuLibre DjView  3.5.27+4.11 (HKLM\...\DjVuLibre+DjView) (Version: 3.5.27+4.11 - DjVuZone)
Driver Booster 7 (HKLM\...\Driver Booster_is1) (Version: 7.0.2 - IObit)
Dropbox (HKLM\...\Dropbox) (Version: 96.4.172 - Dropbox, Inc.)
Dropbox Update Helper (HKLM\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.295.1 - Dropbox, Inc.) Hidden
eMule (HKLM\...\eMule) (Version:  - )
Evince 2.32.0 (HKLM\...\{923638DC-4B4D-4678-BA52-2905B6BAA431}) (Version: 2.32.0 - (Custom build))
File Magic (HKLM\...\File Magic_is1) (Version: 1.9.8.19 - Solvusoft Corporation)
Folder Size (HKLM\...\{FC8D21C8-7B29-4104-ADB0-FEE9CA1C7922}) (Version: 2.6 - Brio)
Foxit Advanced PDF Editor 3 (HKLM\...\B521582C-6BE3-491D-BCC8-FFB8301298E9_is1) (Version: 3.0.5.0 - Foxit Corporation)
Foxit PhantomPDF (HKLM\...\{7BDAB862-E01F-11E7-986C-000C296BF29B}) (Version: 9.0.1.1049 - Foxit Software Inc.)
Generador de Ejercicios de Matemáticas (HKLM\...\Generador de Ejercicios de Matemáticas_is1) (Version:  - )
GeoGebra Classic (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\GeoGebra_6) (Version: 6.0.564 - International GeoGebra Institute)
Google Chrome (HKLM\...\Google Chrome) (Version: 81.0.4044.138 - Google LLC)
Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
HiSuite (HKLM\...\Hi Suite) (Version: 9.1.0.309 - )
HP Deskjet 2050 J510 series Ayuda (HKLM\...\{7A3DF2E2-CF13-44FB-A93E-F71D5381DB3F}) (Version: 140.0.61.61 - Hewlett Packard)
HP Deskjet 2050 J510 series Estudio para la mejora del producto (HKLM\...\{2ED491F9-E343-45CC-A624-B538615FAABD}) (Version: 28.0.1313.0 - Hewlett-Packard Co.)
HP Deskjet 2050 J510 series Software básico del dispositivo (HKLM\...\{A3FF4458-CC45-4EBC-A7C3-0A843BDC9177}) (Version: 28.0.1313.0 - Hewlett-Packard Co.)
HP Photo Creations (HKLM\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Update (HKLM\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HxD Hex Editor version 1.7.7.0 (HKLM\...\HxD Hex Editor_is1) (Version: 1.7.7.0 - Maël Hörz)
iCloud (HKLM\...\{C2ECA4B2-8D56-47B7-8CAE-1E3109B78AC2}) (Version: 7.17.0.13 - Apple Inc.)
Jamorama Bonus Software (HKLM\...\{58BA953D-D4CD-4F0D-BAD8-0AAF34634E8E}) (Version: 1.0 - Rock Star Recipes)
Java 8 Update 221 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180221F0}) (Version: 8.0.2210.11 - Oracle Corporation)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
KMSpico (HKLM\...\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1) (Version:  - )
LizardTech DjVu Control (HKLM\...\{105CFC7C-6992-11D5-BD9D-000102C10FD8}) (Version:  - )
MathType 6 (HKLM\...\DSMT6) (Version: 6.9 - Design Science, Inc.)
MEGAsync (HKLM\...\MEGAsync) (Version:  - Mega Limited)
Merlín Generador de Ejercicios (HKLM\...\Merlín Generador de Ejercicios_is1) (Version:  - )
Microsoft .NET Framework 4.8 (español) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 3082) (Version: 4.8.03761 - Microsoft Corporation)
Microsoft .NET Framework 4.8 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.8.03761 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\OneDriveSetup.exe) (Version: 17.3.4604.0120 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61187 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.7523 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.7523 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.23.27820 (HKLM\...\{45231ab4-69fd-486a-859d-7a59fcd11013}) (Version: 14.23.27820.0 - Microsoft Corporation)
Microsoft Visual F# 2.0 Runtime (HKLM\...\{85467CBC-7A39-33C9-8940-D72D9269B84F}) (Version: 10.0.40219 - Microsoft Corporation)
Mozilla Firefox 75.0 (x86 es-CL) (HKLM\...\Mozilla Firefox 75.0 (x86 es-CL)) (Version: 75.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 75.0.0.7398 - Mozilla)
Nexus Radio (HKLM\...\{8763793B-4D7D-49C8-A859-5C582EC02640}) (Version: 5.7.1 - Talam Group, LLC)
NVIDIA Controlador de audio HD 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10.57.35 - NVIDIA Corporation)
Panel de control de NVIDIA 309.08 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 309.08 - NVIDIA Corporation) Hidden
Photoshop Cs6 versión Final (HKLM\...\{5CF1F901-ED27-4C34-A9CE-A10E8C1DDDB2}_is1) (Version: Final - Braian Urzagaste)
Prot-On (HKLM\...\{49706C83-0F5C-468B-BAF6-FFA902F84232}_is1) (Version: 3.2.0 - Grupo CMC)
Prot-On Addin Internet Explorer (HKLM\...\{E2B9C2B3-EE8E-4553-9460-FA9D48413A03}) (Version: 1.2.6 - Prot-On) Hidden
Prot-On Client (HKLM\...\{320F5315-0391-49FF-A604-5665205969E8}) (Version: 3.2.0 - Prot-On) Hidden
Prot-On MSOffice Addin (HKLM\...\{950BCEE9-BC9C-4292-94D7-880CF1535273}) (Version: 3.1.0 - Prot-On) Hidden
Prot-On MSOutlook Addin (HKLM\...\{ACCA97CF-C308-480A-9995-C5606B36F16D}) (Version: 3.0.2 - Prot-On) Hidden
Prot-On VLC Player (HKLM\...\{42DFEF82-E0A0-4572-8544-FD69A158ABEC}) (Version: 1.0.0 - Prot-On) Hidden
Prot-On Windows Explorer Addin (HKLM\...\{D70CFAFA-CBD5-44F6-AE7A-C4776043AA2A}) (Version: 3.0.1 - Prot-On) Hidden
PSM (HKLM\...\{8C9FEBED-FEB5-4AC5-BB1A-2E4FD243DB32}) (Version: 1.0.0.0 - )
reaConverter 7 Standard (HKLM\...\{659727C6-7267-4076-803B-351A467F6CAF}_is1) (Version: 7.4.08.0 - reaConverter LLC)
Realtek Ethernet Diagnostic Utility (HKLM\...\{DADC7AB0-E554-4705-9F6A-83EA82ED708E}) (Version: 1.00.0000 - Realtek)
Samsung Easy Printer Manager (HKLM\...\Samsung Easy Printer Manager) (Version: 2.00.01.24 - HP Printing Korea Co., Ltd.)
Samsung ML-2160 Series (HKLM\...\Samsung ML-2160 Series) (Version: 1.23 (08-04-2015) - Samsung Electronics Co., Ltd.)
Samsung Printer Live Update (HKLM\...\Samsung Printer Live Update) (Version: 1.01.00:04(2013-04-22) - Samsung Electronics Co., Ltd.)
Samsung Scan Process Machine (HKLM\...\Samsung Scan Process Machine) (Version: 1.03.05.28 - Samsung Electronics Co., Ltd.) Hidden
Screamer Radio (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\Screamer) (Version: 1.7265.31862 - Steamcore)
SpeedFan (remove only) (HKLM\...\SpeedFan) (Version:  - )
TechSmith Screen Capture Codec (HKLM\...\{84FE50F5-B0F3-4D18-8BE8-A4DEEE0C37AD}) (Version: 4.1.1.0 - TechSmith Corporation) Hidden
Teleport Pro (HKLM\...\Teleport Pro) (Version: 1.72 - Tennyson Maxwell Information Systems, Inc.)
TeraCopy version 3.26 (HKLM\...\TeraCopy_is1) (Version: 3.26 - Code Sector)
Total Video Converter 3.71 100812 (HKLM\...\Total Video Converter 3.71_is1) (Version:  - EffectMatrix Inc.)
Tweaking.com - Windows Repair (HKLM\...\Tweaking.com - Windows Repair) (Version: 4.4.5 - Tweaking.com)
Ultracopier 2.0.4.6 (HKLM\...\Ultracopier) (Version: 2.0.4.6 - Ultracopier)
uTorrent Web (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\utweb) (Version: 0.22.0 - BitTorrent, Inc.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.8 - VideoLAN)
WinHTTrack Website Copier 3.44-1 (HKLM\...\WinHTTrack Website Copier_is1) (Version: 3.44.1 - HTTrack)
WinRAR 5.40 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
Wolfram Mathematica 11.3 (M-WIN-L 11.3.0 5944644) (HKLM\...\M-WIN-L 11.3.0 5944644_is1) (Version: 11.3.0 - Wolfram Research, Inc.)
WolframScript (A-WIN32-WolframScript 11.3.0 2018030401) (HKLM\...\{F8D88AF3-43F1-4818-B6DB-0D38F8E42833}) (Version: 11.3.49 - Wolfram Research, Inc.)
Wondershare Helper Compact 2.5.2 (HKLM\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.5.2 - Wondershare)
Wondershare PDFelement 7 Pro(Build 7.0.3) (HKLM\...\{77078E40-A92E-47FD-A0F6-168A4BF6CF3A}_is1) (Version: 7.0.3.4309 - Wondershare Software Co.,Ltd.)
ZaraRadio 1.6.2 (HKLM\...\ZaraRadio_is1) (Version:  - Kero Systems S.L.)
Zoom (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\ZoomUMX) (Version: 4.6 - Zoom Video Communications, Inc.)

==================== Personalizado CLSID (Lista blanca): ==============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{0000002F-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{00020421-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{00020422-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{00020423-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{00020425-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{0002E005-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\OLE32.DLL (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{0713E8A2-850A-101B-AFC0-4210102A8DA7}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{0713E8D2-850A-101B-AFC0-4210102A8DA7}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{0BE35203-8F91-11CE-9DE3-00AA004BB851}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{0BE35204-8F91-11CE-9DE3-00AA004BB851}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{1EFB6596-857C-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{2C247F23-8591-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{35053A22-8589-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{373FF7F0-EB8B-11CD-8820-08002B2F4F5A}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{46763EE0-CAB2-11CE-8C20-00AA0051E5D4}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{48E59293-9880-11CF-9754-00AA00C00908}\InprocServer32 -> C:\Windows\system32\msinet.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{58DA8D8A-9D6A-101B-AFC0-4210102A8DA7}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{58DA8D8F-9D6A-101B-AFC0-4210102A8DA7}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{612A8624-0FB3-11CE-8747-524153480004}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{66833FE6-8583-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{68D44A27-FFB6-4B89-A3E5-7B0E50A7AB33}\InprocServer32 -> C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\catchcopy32.dll () [Archivo no firmado]
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{6B7E638F-850A-101B-AFC0-4210102A8DA7}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{8E3867A3-8586-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{9ED94440-E5E8-101B-B9B5-444553540000}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{B196B286-BAB4-101A-B69C-00AA00341D07}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{BDD1F04B-858B-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{C1A8AF25-1257-101B-8FB0-0020AF039CA3}\InprocServer32 -> C:\Windows\system32\mci32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{C74190B6-8589-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{D5DE8D20-5BB8-11D1-A1E3-00A0C90F2731}\InprocServer32 -> C:\Windows\System32\msvbvm60.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{DD9DA666-8594-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{F08DF954-8592-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{F9043C85-F6F2-101A-A3C9-08002B2F49FB}\InprocServer32 -> C:\Windows\system32\comdlg32.ocx (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ShellIconOverlayIdentifiers: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [  0Prot-On] -> {E3A2C9DF-E2E6-459E-9BFD-11EAB3B300CA} => C:\Program Files\Prot-On\Prot-On Windows Explorer Addin\ProtOnShellExt.dll [2017-11-21] (Cognicase Management Consulting, S.L. -> Protección On-Line)
ShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll [2020-04-06] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll [2020-04-06] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll [2020-04-06] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Ningún archivo
ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [Foxit_ConvertToPDF] -> {C5269811-4A29-4818-A4BB-111F9FC63A5F} => C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x86.dll [2017-12-11] (Foxit Software Incorporated -> Foxit Software Inc.)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu32.dll [2020-04-06] (Google LLC -> Google)
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams.dll [2020-01-22] (Apple Inc. -> Apple Inc.)
ContextMenuHandlers1: [Prot-On] -> {88514224-0423-46C9-9A3D-3DFD29BF676D} => C:\Program Files\Prot-On\Prot-On Windows Explorer Addin\ProtOnShellExt.dll [2017-11-21] (Cognicase Management Consulting, S.L. -> Protección On-Line)
ContextMenuHandlers1: [ReaConverter7_std] -> {0C83C06D-41F5-4666-B1C2-0923EA75EB10} => C:\Program Files\reaConverter 7 Standard\ncontext.dll [2018-06-05] () [Archivo no firmado]
ContextMenuHandlers1: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> )
ContextMenuHandlers1: [TVCShellExt] -> {4E33A7F5-8083-4C08-9D45-C5CED88F5C04} => C:\Program Files\Total Video Converter\TVCShellExt.dll [2010-07-29] () [Archivo no firmado]
ContextMenuHandlers1: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ContextMenuHandlers2: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> )
ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Ningún archivo
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu32.dll [2020-04-06] (Google LLC -> Google)
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ContextMenuHandlers4: [MSSE] -> {0365FE2C-F183-4091-AC82-BFC39FB75C49} =>  -> Ningún archivo
ContextMenuHandlers4: [Prot-On] -> {88514224-0423-46C9-9A3D-3DFD29BF676D} => C:\Program Files\Prot-On\Prot-On Windows Explorer Addin\ProtOnShellExt.dll [2017-11-21] (Cognicase Management Consulting, S.L. -> Protección On-Line)
ContextMenuHandlers4: [ReaConverter7_std] -> {0C83C06D-41F5-4666-B1C2-0923EA75EB10} => C:\Program Files\reaConverter 7 Standard\ncontext.dll [2018-06-05] () [Archivo no firmado]
ContextMenuHandlers4: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> )
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2015-01-30] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers5: [Prot-On] -> {88514224-0423-46C9-9A3D-3DFD29BF676D} => C:\Program Files\Prot-On\Prot-On Windows Explorer Addin\ProtOnShellExt.dll [2017-11-21] (Cognicase Management Consulting, S.L. -> Protección On-Line)
ContextMenuHandlers6: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers6: [Fast Explorer] -> {693BE9C0-BEC3-11D2-B4C1-C33BBD3AD64B} => C:\ProgramData\AllDup\FEShlExt.dll [2008-08-21] (Alex Yakovlev) [Archivo no firmado]
ContextMenuHandlers6: [Foxit_ConvertToPDF] -> {C5269811-4A29-4818-A4BB-111F9FC63A5F} => C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x86.dll [2017-12-11] (Foxit Software Incorporated -> Foxit Software Inc.)
ContextMenuHandlers6: [ReaConverter7_std] -> {0C83C06D-41F5-4666-B1C2-0923EA75EB10} => C:\Program Files\reaConverter 7 Standard\ncontext.dll [2018-06-05] () [Archivo no firmado]
ContextMenuHandlers6: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> )
ContextMenuHandlers6: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Lista blanca) ====================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Drivers32: [vidc.tscc] => C:\Windows\system32\tsccvid.dll [854016 2016-12-12] (TechSmith Corporation) [Archivo no firmado]

==================== Accesos directos & WMI ========================

==================== Módulos cargados (Lista blanca) =============

2007-07-24 09:39 - 2007-07-24 09:39 - 000475136 _____ ( (DMSoft Technologies) [Archivo no firmado])  [El archivo está en uso ] C:\Program Files\Nexus Radio\SkinCrafter2.dll
2002-08-29 14:28 - 2002-08-29 14:28 - 000132350 _____ () [Archivo no firmado] C:\Program Files\Nexus Radio\CurlLib.dll
2016-09-02 23:25 - 2020-02-19 20:36 - 000279040 _____ () [Archivo no firmado] C:\Program Files\Nexus Radio\Search.lib
2019-07-17 00:36 - 2018-06-05 19:34 - 001103872 _____ () [Archivo no firmado] C:\Program Files\reaConverter 7 Standard\ncontext.dll
2020-02-18 01:45 - 2010-07-29 18:19 - 000234496 _____ () [Archivo no firmado] C:\Program Files\Total Video Converter\TVCShellExt.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000515548 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libbz2.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001192734 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libgcc_s_sjlj-1.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 004563422 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libharfbuzz-0.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 002434939 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libopus-0.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001078923 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libpcre-1.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000608101 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libpcre2-16-0.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001798314 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libpng16-16.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001294446 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libstdc++-6.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000892631 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libzstd.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000105472 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\zlib1.dll
2019-06-14 17:27 - 2015-03-18 12:13 - 001325568 _____ () [Archivo no firmado] C:\Windows\system32\spool\DRIVERS\W32X86\3\ssj1mdu.dll
2007-04-26 16:41 - 2007-04-26 16:41 - 000078336 _____ (BrewIdeas@Emil Weiss) [Archivo no firmado] C:\Program Files\Nexus Radio\BassVis.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001521105 _____ (Free Software Foundation) [Archivo no firmado] C:\Program Files\Ultracopier\libiconv-2.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000785319 _____ (Free Software Foundation) [Archivo no firmado] C:\Program Files\Ultracopier\libintl-8.dll
2019-05-20 16:00 - 2019-05-20 16:00 - 000104960 _____ (hxxp://www.emule-project.net) [Archivo no firmado] C:\Program Files\eMule\lang\es_ES_T.dll
1998-07-28 04:00 - 1998-07-28 04:00 - 000119568 _____ (Microsoft Corporation) [Archivo no firmado] C:\Windows\system32\VB6ES.DLL
2020-03-15 23:49 - 2020-03-15 23:49 - 000626688 _____ (Microsoft Corporation) [Archivo no firmado] C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6229_none_d089f796442de10e\MSVCR80.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000052142 _____ (MingW-W64 Project. All rights reserved.) [Archivo no firmado] C:\Program Files\Ultracopier\libwinpthread-1.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 003572771 _____ (The FreeType Project) [Archivo no firmado] C:\Program Files\Ultracopier\libfreetype-6.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 004820092 _____ (The GLib developer community) [Archivo no firmado] C:\Program Files\Ultracopier\libglib-2.0-0.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 003140601 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [Archivo no firmado] C:\Program Files\Ultracopier\libcrypto-1_1.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000925292 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [Archivo no firmado] C:\Program Files\Ultracopier\libssl-1_1.dll
2017-09-14 03:37 - 2017-09-14 03:37 - 000026112 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qgif.dll
2017-09-14 03:42 - 2017-09-14 03:42 - 000033280 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qicns.dll
2017-09-14 03:37 - 2017-09-14 03:37 - 000027648 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qico.dll
2017-09-14 03:37 - 2017-09-14 03:37 - 000245760 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qjpeg.dll
2017-09-14 03:42 - 2017-09-14 03:42 - 000021504 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qsvg.dll
2017-09-14 03:42 - 2017-09-14 03:42 - 000020992 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qtga.dll
2017-09-14 03:42 - 2017-09-14 03:42 - 000316416 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qtiff.dll
2017-09-14 03:42 - 2017-09-14 03:42 - 000019968 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qwbmp.dll
2017-09-14 03:42 - 2017-09-14 03:42 - 000322560 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qwebp.dll
2017-09-14 03:37 - 2017-09-14 03:37 - 001010688 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\platforms\qwindows.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 005868032 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5Core.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 005350400 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5Gui.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000894464 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5Multimedia.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001565184 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5Network.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 005420544 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5Widgets.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000212480 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5WinExtras.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000183808 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5Xml.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000975872 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\qt-plugins\platforms\qwindows.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000179200 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\qt-plugins\styles\qwindowsvistastyle.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001086976 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\CopyEngine\Ultracopier-Spec\copyEngine.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000368640 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\Listener\catchcopy-v0002\listener.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000345088 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\pluginLoader.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000020992 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\SessionLoader\Windows\sessionLoader.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000612864 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\Themes\Oxygen\interface.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000786432 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\Themes\Oxygen2\interface.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000614400 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\Themes\Supercopier\interface.dll
2007-05-21 10:42 - 2007-05-21 10:42 - 000093240 _____ (Un4seen Developments) [Archivo no firmado] C:\Program Files\Nexus Radio\Bass.dll
2007-01-08 13:15 - 2007-01-08 13:15 - 000010296 _____ (Un4seen Developments) [Archivo no firmado] C:\Program Files\Nexus Radio\BassEnc.dll
2006-11-25 12:20 - 2006-11-25 12:20 - 000014904 _____ (Un4seen Developments) [Archivo no firmado] C:\Program Files\Nexus Radio\BassWMA.dll
2019-06-14 16:44 - 2006-09-18 01:57 - 000019456 _____ (Windows (R) 2000 DDK provider) [Archivo no firmado] C:\Windows\system32\spool\PRTPROCS\W32X86\ML2150pc.dll
2019-06-14 17:27 - 2015-03-18 12:13 - 000029696 _____ (Windows (R) Codename Longhorn DDK provider) [Archivo no firmado] C:\Windows\system32\spool\PRTPROCS\W32X86\ssj1mpc.dll
2019-08-20 00:35 - 2017-10-19 11:17 - 000228864 _____ (Wondershare Software) [Archivo no firmado] C:\Windows\System32\WSPDFelementMonitor.dll

==================== Alternate Data Streams (Lista blanca) ========

(Si una entrada es incluida en el fixlist, solamente los ADS serán eliminados.)

AlternateDataStreams: C:\Users\Walter\Desktop\TeamViewer_Setup_es.exe:com.dropbox.attributes [168]

==================== Modo Seguro (Lista blanca) ==================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppXSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BFE => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BITS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\camsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ClipSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dps => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\lfsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MpsSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\semgrsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SharedAccess => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\shellhwdetection => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TokenBroker => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRemoveSafeBoot => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vss => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WSService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppXSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BITS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\camsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ClipSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dps => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\lfsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\msiserver => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SamSs => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\semgrsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\shellhwdetection => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv2 => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srvnet => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TokenBroker => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRemoveSafeBoot => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vss => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WSService => ""="Service"

==================== Asociación (Lista blanca) =================

==================== Internet Explorer sitios de confianza/restringidos ==========

==================== Hosts contenido: =========================

(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)

2009-07-13 23:04 - 2020-05-09 21:17 - 000000027 _____ C:\Windows\system32\drivers\etc\hosts
127.0.0.1       localhost

==================== Otras Áreas ===========================

(Actualmente no existe una corrección automática para esta sección.)

HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\Control Panel\Desktop\\Wallpaper -> 
HKU\S-1-5-21-1069064461-1938371621-2346768231-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Lisyy\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 208.67.222.222 - 208.67.220.220
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Firewall de Windows está habilitado.

==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==

(Si una entrada es incluida en el fixlist, será eliminada.)

MSCONFIG\Services: MozillaMaintenance => 3
MSCONFIG\Services: Service KMSELDI => 2
MSCONFIG\startupfolder: C:^Users^Walter^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Enviar a OneNote.lnk => C:\Windows\pss\Enviar a OneNote.lnk.Startup
MSCONFIG\startupreg: CDAServer => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
MSCONFIG\startupreg: DFX => C:\Program Files\DFX\DFX.exe -startup
MSCONFIG\startupreg: HP Software Update => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
MSCONFIG\startupreg: Prot-On Client => C:\Program Files\Prot-On\Prot-On Client\Prot-On.exe
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: Wondershare Helper Compact.exe => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe

==================== Reglas de firewall (Lista blanca) ================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

FirewallRules: [{5651DE06-38A5-48CD-B413-BB44AFE801BA}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{088BA72E-4042-4EE6-87FF-F4D91A882E1E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{FD4FA28A-A414-41B9-9A02-4E6693333E62}] => (Allow) C:\Users\Walter\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{5775980F-2B83-4087-BBFA-976DFD93D180}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F681522F-90D7-4F6A-AC51-E02AB4250D61}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\Mathematica.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{47938BE3-9C0A-42C4-A620-B63EC3AF7C62}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\Mathematica.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{72C773EC-2B98-49DE-906A-B30027B17309}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\MathKernel.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{2C133FBC-275B-4BAF-A86C-0D9D72E1AD01}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\MathKernel.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{644E63FB-46E8-47C1-B30F-69C4529119E5}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\math.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{3E26B6D0-E49C-4A17-BB3D-8013040ED315}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\math.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{DE4BE075-AB03-46BE-9161-AA81C7B940ED}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\SystemFiles\Components\WSMCore\bin\SessionManager.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{360A56A3-CAD2-4938-868F-6440327B23AA}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\SystemFiles\Components\WSMCore\bin\SessionManager.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{FDB15244-446A-40CA-9484-F387EC4719F1}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\SystemFiles\Components\WSMCore\bin\WSMKernelX.exe (Wolfram Research, Inc. -> )
FirewallRules: [{4F16E0AA-3439-434E-8C89-2CC44F89A8A4}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\SystemFiles\Components\WSMCore\bin\WSMKernelX.exe (Wolfram Research, Inc. -> )
FirewallRules: [{2B6E45BF-CBFE-49C1-964C-7D34B1ABF0D4}] => (Allow) C:\Users\Walter\AppData\Roaming\uTorrent Web\utweb.exe (Jenkins Win Client Build SPC -> BitTorrent Inc.) [Archivo no firmado]
FirewallRules: [{74CDB6E1-EC9E-4B86-B0DE-C74FFA99713D}] => (Allow) C:\Users\Walter\AppData\Roaming\uTorrent Web\utweb.exe (Jenkins Win Client Build SPC -> BitTorrent Inc.) [Archivo no firmado]
FirewallRules: [{C73D0CD7-B120-4CC0-A548-34833981DB4F}] => (Allow) C:\Users\Walter\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{5F0FC81D-78FD-4C12-A42D-3E4179E10606}] => (Allow) C:\Users\Walter\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{69481938-5CF8-4FB6-9A72-B8643034AE32}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\EasyPrinterManagerV2.exe (HP Inc. -> )
FirewallRules: [{942AE59E-257E-486B-AC2E-523FB5FDBF80}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\OrderSupplies.exe (HP Inc. -> HP Printing Korea Co., Ltd.)
FirewallRules: [{AE7AD63A-2AFB-4869-848B-78B91C33DF08}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\EPM2AlertList.exe (HP Inc. -> HP Printing Korea Co., Ltd.)
FirewallRules: [{42DAB400-90A5-4A8F-9B20-3B3CF2404D0C}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\EPM2Migrator.exe (HP Inc. -> )
FirewallRules: [{203B22BE-4A5F-4EE6-B9FB-7C270340A1C0}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [TCP Query User{C21302DF-DD38-4D12-9E57-96D07F94640A}C:\program files\emule\emule.exe] => (Allow) C:\program files\emule\emule.exe (hxxps://www.emule-project.net) [Archivo no firmado]
FirewallRules: [UDP Query User{0E83F3AF-EF89-40AD-9134-3BAAC368B4C7}C:\program files\emule\emule.exe] => (Allow) C:\program files\emule\emule.exe (hxxps://www.emule-project.net) [Archivo no firmado]
FirewallRules: [TCP Query User{039E7DE3-D553-49D6-B01B-8E799458B01C}C:\program files\prot-on\prot-on client\prot-on.exe] => (Allow) C:\program files\prot-on\prot-on client\prot-on.exe (Cognicase Management Consulting, S.L. -> Grupo CMC)
FirewallRules: [UDP Query User{5E2000F6-70E2-47C2-8A33-EADCB2C38133}C:\program files\prot-on\prot-on client\prot-on.exe] => (Allow) C:\program files\prot-on\prot-on client\prot-on.exe (Cognicase Management Consulting, S.L. -> Grupo CMC)
FirewallRules: [TCP Query User{F1E95A4E-08B5-4D5C-94C6-48E329D27499}P:\zfinal\portable foxit pdf editor 2.0.1011.exe] => (Block) P:\zfinal\portable foxit pdf editor 2.0.1011.exe => Ningún archivo
FirewallRules: [UDP Query User{66F0EC20-92B5-4582-9AB9-160CF8400667}P:\zfinal\portable foxit pdf editor 2.0.1011.exe] => (Block) P:\zfinal\portable foxit pdf editor 2.0.1011.exe => Ningún archivo
FirewallRules: [TCP Query User{8CC8B2F5-B2EF-4047-AD89-AD679A62F98A}C:\users\walter\appdata\local\jdownloader 2.0\jdownloader2.exe] => (Allow) C:\users\walter\appdata\local\jdownloader 2.0\jdownloader2.exe (Appwork GmbH -> AppWork GmbH)
FirewallRules: [UDP Query User{BC3010BC-5A12-4250-AC42-AFC19E80E19D}C:\users\walter\appdata\local\jdownloader 2.0\jdownloader2.exe] => (Allow) C:\users\walter\appdata\local\jdownloader 2.0\jdownloader2.exe (Appwork GmbH -> AppWork GmbH)
FirewallRules: [{C825AD97-284C-478A-B9F6-CB04F909AA25}] => (Allow) C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\USBSetup.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [TCP Query User{122F3BC9-4551-48F0-AB73-78A6509DB3C4}C:\users\walter\desktop\portable foxit pdf editor 2.0.1011.exe] => (Block) C:\users\walter\desktop\portable foxit pdf editor 2.0.1011.exe (Foxit Software Company -> Foxit Software Company) [Archivo no firmado]
FirewallRules: [UDP Query User{7A690458-30C4-4855-AADE-A9630EB35D67}C:\users\walter\desktop\portable foxit pdf editor 2.0.1011.exe] => (Block) C:\users\walter\desktop\portable foxit pdf editor 2.0.1011.exe (Foxit Software Company -> Foxit Software Company) [Archivo no firmado]
FirewallRules: [TCP Query User{15BEDE75-5162-4AC0-AAEF-FED22E4B9142}H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe] => (Block) H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe => Ningún archivo
FirewallRules: [UDP Query User{BF4E2245-AAFA-4265-BE8A-722D20A0AEB1}H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe] => (Block) H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe => Ningún archivo
FirewallRules: [{0D27637D-057C-4211-A7F6-892C6F64FC69}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{34E6655E-0CE2-43B8-9BC4-5516F13A7B50}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{1CBCE44B-6D8B-4950-96AE-1FA640E7F149}] => (Allow) C:\Users\Walter\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{954913D4-C09A-4A41-854C-F2814C9F8B59}] => (Allow) C:\Program Files\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
FirewallRules: [{48464FF8-9DED-4BCE-A2C7-5EB12A889355}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Puntos de Restauración =========================

No se pudieron listar los puntos de restauración
Comprobar el servicio "winmgmt" o reparar WMI.


==================== Dispositivos defectuosos en el Administrador de dispositivos ============


==================== Errores del registro de eventos: ========================

Errores de aplicación:
==================
Error: (05/10/2020 02:15:33 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: El programa FRST.exe, versión 10.5.2020.1, dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible acerca del problema, compruebe el historial de problemas en el panel de control Centro de actividades.

Identificador de proceso: 1c88

Hora de inicio: 01d62689eefbe930

Hora de finalización: 23

Ruta de acceso de la aplicación: C:\Users\Walter\Desktop\FRST.exe

Identificador de informe: 39585901-927d-11ea-a614-001e9086406c

Error: (05/10/2020 02:09:19 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: Microsoft.Sara.exe, versión: 17.0.4589.1, marca de tiempo: 0x5e9dc1fb
Nombre del módulo con errores: dfshim.dll, versión: 4.0.41210.0, marca de tiempo: 0x53634c47
Código de excepción: 0xc0000005
Desplazamiento de errores: 0x000240d9
Id. del proceso con errores: 0x1518
Hora de inicio de la aplicación con errores: 0x01d62689164209d0
Ruta de acceso de la aplicación con errores: C:\Users\Walter\AppData\Local\Apps\2.0\3ANVPQHK.3CP\JZ84N2V5.Z1K\micr..tion_5329ec537c0b4b5c_0011.0000_f40b2d128fa78cb4\Microsoft.Sara.exe
Ruta de acceso del módulo con errores: C:\Windows\system32\dfshim.dll
Id. del informe: 66a5e6d0-927c-11ea-a614-001e9086406c

Error: (05/10/2020 02:09:16 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplicación: Microsoft.Sara.exe
Versión de Framework: v4.0.30319
Descripción: el proceso terminó debido a una excepción no controlada.
Información de la excepción: System.AccessViolationException
   en System.Deployment.Internal.Isolation.Manifest.IHashElementEntry.get_AllData()
   en System.Deployment.Application.Manifest.DependentAssembly..ctor(System.Deployment.Internal.Isolation.Manifest.AssemblyReferenceEntry)
   en System.Deployment.Application.Manifest.AssemblyManifest.get_DependentAssemblies()
   en System.Deployment.Application.Manifest.AssemblyManifest.GetPrivateAssembliesInGroup(System.String, Boolean)
   en System.Deployment.Application.ComponentStore.CheckGroupInstalled(System.Deployment.Application.DefinitionAppId, System.Deployment.Application.Manifest.AssemblyManifest, System.String)
   en System.Deployment.Application.SubscriptionStore.CheckGroupInstalled(System.Deployment.Application.SubscriptionState, System.Deployment.Application.DefinitionAppId, System.Deployment.Application.Manifest.AssemblyManifest, System.String)
   en System.Deployment.Application.DeploymentManager.SynchronizeGroupCore(Boolean, System.Deployment.Application.SyncGroupHelper)
   en System.Deployment.Application.DeploymentManager.Synchronize(System.String)
   en System.Deployment.Application.ApplicationDeployment.DownloadFileGroup(System.String)
   en Microsoft.Sara.Framework.Common.Util.AssemblyLoader.ResolveAssemblyFromClickOnceCloud(System.String, System.String)
   en Microsoft.Sara.Framework.Common.Util.ReflectionHelper.GetSaraTypeFromFullClassName(System.String, System.String)
   en Microsoft.Sara.Plugins.Common.AnalyzerBaseWorkflow.PrepareExecute()
   en Microsoft.Sara.Plugins.Common.AnalyzerWorkflow.PrepareExecute()
   en Microsoft.Sara.Framework.TaskEngine.Engine.WorkflowBase.Run()
   en Microsoft.Sara.Framework.TaskEngine.Engine.WorkflowBase+<>c__DisplayClass25_1.<TryExecuteAsync>b__0()
   en System.Threading.ThreadHelper.ThreadStart_Context(System.Object)
   en System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   en System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   en System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
   en System.Threading.ThreadHelper.ThreadStart()

Error: (05/09/2020 09:47:58 PM) (Source: MsiInstaller) (EventID: 1043) (User: NT AUTHORITY)
Description: No se pudo finalizar una transacción de Windows Installer PROPLUS. Error 1603 al finalizar la transacción.

Error: (05/09/2020 09:28:07 PM) (Source: MsiInstaller) (EventID: 1043) (User: NT AUTHORITY)
Description: No se pudo finalizar una transacción de Windows Installer PROPLUS. Error 1603 al finalizar la transacción.

Error: (05/09/2020 09:22:44 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Error en Servicios de cifrado mientras se procesaba el objeto "System Writer" de la llamada OnIdentity().

Details:
AddWin32ServiceFiles: Unable to back up image of service Centro de seguridad since QueryServiceConfig API failed

System Error:
El sistema no puede encontrar el archivo especificado.
.

Error: (05/09/2020 09:22:32 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Error en Servicios de cifrado mientras se procesaba el objeto "System Writer" de la llamada OnIdentity().

Details:
AddWin32ServiceFiles: Unable to back up image of service Centro de seguridad since QueryServiceConfig API failed

System Error:
El sistema no puede encontrar el archivo especificado.
.

Error: (05/09/2020 09:19:19 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: Dropbox.exe, versión: 96.4.172.0, marca de tiempo: 0x5ea889c0
Nombre del módulo con errores: ole32.dll, versión: 6.1.7601.24537, marca de tiempo: 0x5dce0da9
Código de excepción: 0xc0000005
Desplazamiento de errores: 0x00021c24
Id. del proceso con errores: 0x1330
Hora de inicio de la aplicación con errores: 0x01d626605bf89530
Ruta de acceso de la aplicación con errores: C:\Program Files\Dropbox\Client\Dropbox.exe
Ruta de acceso del módulo con errores: C:\Windows\system32\ole32.dll
Id. del informe: e361ae80-9253-11ea-8859-001e9086406c


Errores del sistema:
=============
Error: (05/09/2020 10:08:00 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Se recibió la siguiente alerta irrecuperable: 20.

Error: (05/09/2020 09:40:52 PM) (Source: DCOM) (EventID: 10005) (User: )
Description: Error de DCOM "1083" al intentar iniciar el servicio winmgmt con argumentos "" para ejecutar el servidor:
{8BC3F05E-D86B-11D0-A075-00C04FB68820}

Error: (05/09/2020 09:37:48 PM) (Source: DCOM) (EventID: 10005) (User: )
Description: Error de DCOM "1083" al intentar iniciar el servicio winmgmt con argumentos "" para ejecutar el servidor:
{8BC3F05E-D86B-11D0-A075-00C04FB68820}

Error: (05/09/2020 09:37:02 PM) (Source: DCOM) (EventID: 10005) (User: )
Description: Error de DCOM "1083" al intentar iniciar el servicio winmgmt con argumentos "" para ejecutar el servidor:
{8BC3F05E-D86B-11D0-A075-00C04FB68820}

Error: (05/09/2020 09:37:02 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: El siguiente controlador de inicio del sistema o de inicio del arranque no se cargó correctamente: 
MBAMSwissArmy

Error: (05/09/2020 09:36:44 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: El servicio Conexión compartida a Internet (ICS) depende del servicio Instrumental de administración de Windows, el cual no pudo iniciarse debido al siguiente error: 
Este servicio se configuró para ejecutarse en un programa ejecutable, pero el programa no implementa el servicio.

Error: (05/09/2020 09:36:44 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: El servicio Aplicación auxiliar IP depende del servicio Instrumental de administración de Windows, el cual no pudo iniciarse debido al siguiente error: 
Este servicio se configuró para ejecutarse en un programa ejecutable, pero el programa no implementa el servicio.

Error: (05/09/2020 09:36:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio DgiVecp no pudo iniciarse debido al siguiente error: 
El sistema no puede encontrar el dispositivo especificado.


Windows Defender:
===================================
Date: 2019-09-21 19:41:11.851
Description: 
El examen de Windows Defender se detuvo antes de completarse.
Id. de examen:{73906222-3806-4599-B6B6-178593CF89DC}
Tipo de examen:AntiSpyware
Parámetros de examen:Examen rápido
Usuario:MI_TARRO\Walter

==================== Información de la memoria =========================== 

BIOS: American Megatrends Inc. 080015 05/16/2008
Placa base: ECS GF7100/7050PVT-M3
Procesador: Intel(R) Core(TM)2 Duo CPU E7500 @ 2.93GHz
Porcentaje de memoria en uso: 89%
RAM física total: 2815.24 MB
RAM física disponible: 302.18 MB
Virtual total: 5630.48 MB
Virtual disponible: 1866.19 MB

==================== Unidades ================================

Drive c: () (Fixed) (Total:223.47 GB) (Free:141.42 GB) NTFS
Drive d: (210916-1) (Fixed) (Total:910.16 GB) (Free:131.9 GB) NTFS
Drive e: (210916-2) (Fixed) (Total:910.16 GB) (Free:306.86 GB) NTFS
Drive f: (210916-3) (Fixed) (Total:974.08 GB) (Free:273.4 GB) NTFS
Drive i: (walter) (Fixed) (Total:100.72 GB) (Free:79.1 GB) NTFS
Drive j: (ws250709 [musica-video-ima]) (Fixed) (Total:185.55 GB) (Free:22.83 GB) NTFS
Drive k: (ws-07-10-2016) (Fixed) (Total:145.84 GB) (Free:75.28 GB) NTFS
Drive l: (WS 18-05-2019) (Fixed) (Total:21.83 GB) (Free:14.82 GB) NTFS
Drive m: (260614 UTILIDADES) (Fixed) (Total:6.72 GB) (Free:0.81 GB) NTFS
Drive n: (280418 FORMULARIOS) (Fixed) (Total:5 GB) (Free:0.11 GB) NTFS

\\?\Volume{fa15edcb-8d50-11e9-bad8-806e6f6e6963}\ (Reservado para el sistema) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS
\\?\Volume{e19c37d4-8d59-11e9-af97-806e6f6e6963}\ (Reservado para el sistema) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS

==================== MBR & Tabla de particiones ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: 49414AEC)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=223.5 GB) - (Type=07 NTFS)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 2794.5 GB) (Disk ID: 03DD17B9)

Partition: GPT.

==========================================================
Disk: 2 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 00290029)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=100.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=364.9 GB) - (Type=0F Extended)

==================== Final  Addition.txt =======================

Hola @WALLY, solo entro para hacerte un comentario y que no perdáis tiempo.

El informe que has puesto de FRST.txt esta incompleto, fíjate en lo que pusiste y añade la parte inicial que falta en tu próxima respuestas.

Sigan ustedes. :wave:

Saludos.

==================== Internet (Lista blanca) ====================

(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)

Winsock: Catalog5 07 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => Ningún archivo 
Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => Ningún archivo 
Winsock: Catalog5 09 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 200.83.1.4 190.160.0.14 200.30.192.15
Tcpip\..\Interfaces\{BDDD6E62-2F7C-479E-BCB2-D39D43C155B7}: [NameServer] 208.67.222.222,208.67.220.220
Tcpip\..\Interfaces\{BDDD6E62-2F7C-479E-BCB2-D39D43C155B7}: [DhcpNameServer] 200.83.1.4 190.160.0.14 200.30.192.15

Internet Explorer:
==================
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.msn.com/?OCID=IE11FREDHP&PC=UF01
BHO: Prot-On Internet Explorer -> {1F27E08D-FBB3-4456-83ED-90976FF4DDA7} -> C:\Program Files\Prot-On\Prot-On Addin Internet Explorer\adxloader.dll [2015-07-23] (Proteccion On-Line, S.L. -> )
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_221\bin\ssv.dll [2019-10-03] (Oracle America, Inc. -> Oracle Corporation)
BHO: Foxit PhantomPDF Create PDF ToolBar Helper -> {A5DD10F7-5ABB-4EEF-B4C8-6748D44DAF2A} -> C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [2017-12-11] (Foxit Software Incorporated -> )
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-10-03] (Oracle America, Inc. -> Oracle Corporation)
Toolbar: HKLM - Foxit PhantomPDF Create PDF ToolBar - {BFD9D8A8-57FF-488A-B919-065EC77CF82F} - C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [2017-12-11] (Foxit Software Incorporated -> )
Toolbar: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000 -> Foxit PhantomPDF Create PDF ToolBar - {BFD9D8A8-57FF-488A-B919-065EC77CF82F} - C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [2017-12-11] (Foxit Software Incorporated -> )

FireFox:
========
FF DefaultProfile: msasqecp.default
FF ProfilePath: C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\msasqecp.default [2019-06-12]
FF ProfilePath: C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release [2020-05-09]
FF DownloadDir: C:\Users\Walter\Desktop\Reales
FF Notifications: Mozilla\Firefox\Profiles\y5vs2xqm.default-release -> hxxps://mail.yahoo.com; hxxps://matemathweb.com; hxxps://www.jagranjosh.com; hxxps://maranhesduve.club; hxxps://forospyware.com; hxxps://www3.lucienmann.pro; hxxps://www.instagram.com; hxxps://mail.google.com; hxxps://www.pinterest.cl; hxxps://web.whatsapp.com; hxxps://r4cp.overiesarticu.info
FF Extension: (All Downloader Professional) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\[email protected] [2019-07-15]
FF Extension: (Bookmarks Organizer) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\[email protected] [2019-09-29]
FF Extension: (Custom Google Visited Link Color) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\[email protected] [2019-06-16]
FF Extension: (Turbo Download Manager (3rd edition)) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\[email protected] [2020-05-09]
FF Extension: (MyJDownloader Browser Extension) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\[email protected] [2019-10-16] [UpdateUrl:hxxps://my.jdownloader.org/extensions/firefox.json]
FF Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\[email protected] [2020-05-09]
FF Extension: (S3.Translator) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\{3a2831f6-37df-4a42-baf6-0b81d5b6a68f}.xpi [2019-10-16] [UpdateUrl:hxxps://clients2.google.com/service/update2/crx]
FF Extension: (YouTube mp3 Downloader) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\{3d1fbee0-687c-4032-9815-0f4519252d44}.xpi [2019-10-18]
FF Extension: (Download Links) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\{7b15cfea-42ba-4409-9dd9-00e954f9a9ac}.xpi [2019-07-15]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\FirefoxAddin\FFExtnHTML2PDF.xpi
FF Extension: (Foxit PDF Creator) - C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\FirefoxAddin\FFExtnHTML2PDF.xpi [2017-12-01] [Heredado]
FF Plugin: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2017-12-01] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2017-12-01] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2017-12-01] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2017-12-01] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-10-03] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-10-03] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin HKU\S-1-5-21-1069064461-1938371621-2346768231-1000: @zoom.us/ZoomVideoPlugin -> C:\Users\Walter\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2020-04-04] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)

Chrome: 
=======
CHR Profile: C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default [2020-04-04]
CHR Notifications: Default -> hxxps://www.facebook.com
CHR Extension: (Presentaciones) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-07-16]
CHR Extension: (Documentos) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-07-16]
CHR Extension: (Google Drive) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-07-16]
CHR Extension: (YouTube) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-07-16]
CHR Extension: (DownAlbum) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgjnhhjpfcdhbhlcmmjppicjmgfkppok [2020-03-08]
CHR Extension: (Foxit PDF Creator) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\cifnddnffldieaamihfkhkdgnbhfmaci [2019-08-30]
CHR Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2020-03-31]
CHR Extension: (Hojas de cálculo) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-07-16]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-31]
CHR Extension: (AVG SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbckjcfnjmoiinpgddefodcighgikkgn [2020-01-15]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Gmail) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-07-16]
CHR Extension: (Chrome Media Router) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-04]
CHR HKLM\...\Chrome\Extension: [cifnddnffldieaamihfkhkdgnbhfmaci] - C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\ChromeAddin\ChromeAddin.crx [2017-12-01]
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn]

==================== Servicios (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R2 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [319376 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 AVG Firewall; C:\Program Files\AVG\Antivirus\afwServ.exe [881576 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R3 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [4950464 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S2 dbupdate; C:\Program Files\Dropbox\Update\DropboxUpdate.exe [143144 2019-06-15] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files\Dropbox\Update\DropboxUpdate.exe [143144 2019-06-15] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [37384 2020-04-28] (Dropbox, Inc -> Dropbox, Inc.)
R2 FolderSize; C:\Program Files\FolderSize\FolderSizeSvc.exe [114688 2013-02-13] (Brio) [Archivo no firmado]
S3 FoxitPhantomService; C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\FoxitConnectedPDFService.exe [1658944 2017-12-12] (Foxit Software Incorporated -> Foxit Software Inc.)
R2 HuaweiHiSuiteService.exe; C:\Program Files\HiSuite\HandSetService\HuaweiHiSuiteService.exe [154432 2019-08-18] (Huawei Technologies Co., Ltd. -> ) [Archivo no firmado]
R2 reaConverter_service; C:\Program Files\reaConverter 7 Standard\rc_service.exe [5752832 2018-06-05] (reaConverter LLC) [Archivo no firmado]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Windows -> Microsoft Corporation)

===================== Controladores (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R1 avgArPot; C:\Windows\System32\drivers\avgArPot.sys [176048 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgbidsdriver; C:\Windows\System32\drivers\avgbidsdriver.sys [187736 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgbidsh; C:\Windows\System32\drivers\avgbidsh.sys [143192 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgbuniv; C:\Windows\System32\drivers\avgbuniv.sys [56664 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgKbd; C:\Windows\System32\drivers\avgKbd.sys [41520 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 avgMonFlt; C:\Windows\System32\drivers\avgMonFlt.sys [148512 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgNetHub; C:\Windows\System32\drivers\avgNetHub.sys [356072 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R3 avgNetNd6; C:\Windows\System32\DRIVERS\avgNetNd6.sys [28408 2019-10-31] (AVG Technologies CZ, s.r.o. -> AVG Technologies CZ, s.r.o.)
R1 avgRdr; C:\Windows\System32\drivers\avgRdr2.sys [94400 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgRvrt; C:\Windows\System32\drivers\avgRvrt.sys [73624 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgSnx; C:\Windows\System32\drivers\avgSnx.sys [691840 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgSP; C:\Windows\System32\drivers\avgSP.sys [396616 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 avgStm; C:\Windows\System32\drivers\avgStm.sys [177608 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgVmm; C:\Windows\System32\drivers\avgVmm.sys [278232 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 DFX11_1; C:\Windows\System32\drivers\dfx11_1.sys [24424 2015-08-31] (Power Technology -> Windows (R) Win 7 DDK provider)
R3 DFX12; C:\Windows\System32\drivers\dfx12.sys [26104 2015-11-12] (Power Technology -> Windows (R) Win 7 DDK provider)
S2 DgiVecp; C:\Windows\system32\Drivers\DgiVecp.sys [38400 2009-03-02] (Samsung Electronics Co., Ltd.) [Archivo no firmado]
R3 DLKRTE32; C:\Windows\System32\DRIVERS\DLKRTE32.sys [399360 2011-08-04] (Microsoft Windows Hardware Compatibility Publisher -> D-Link Corp. )
S3 ew_usbccgpfilter; C:\Windows\System32\DRIVERS\ew_usbccgpfilter.sys [15360 2019-08-18] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R3 gHidPnp; C:\Windows\System32\Drivers\gHidPnp.Sys [20480 2019-06-13] (Microsoft Windows Hardware Compatibility Publisher -> )
R2 giveio; C:\Windows\system32\giveio.sys [5248 1996-04-03] () [Archivo no firmado]
R3 gMouUsb; C:\Windows\System32\DRIVERS\gMouUsb.sys [11520 2019-06-13] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 hitmanpro37; C:\Windows\system32\drivers\hitmanpro37.sys [38224 2019-09-21] (SurfRight B.V. -> )
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO32.SYS [23840 2019-11-07] (Martin Malik - REALiX -> REALiX(tm))
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [102272 2019-08-18] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R2 RtNdPt60; C:\Windows\System32\DRIVERS\RtNdPt60.sys [33056 2011-06-15] (Realtek Semiconductor Corp -> Realtek )
S3 RTTEAMPT; C:\Windows\System32\DRIVERS\RtTeam60.sys [40736 2011-06-15] (Realtek Semiconductor Corp -> Realtek Corporation)
S3 RTVLANPT; C:\Windows\System32\DRIVERS\RtVlan620.sys [27752 2011-09-16] (Realtek Semiconductor Corp -> Realtek Corporation)
R2 speedfan; C:\Windows\system32\speedfan.sys [24184 2012-12-29] (SOKNO S.R.L. -> Almico Software)
R2 SSPORT; C:\Windows\system32\Drivers\SSPORT.sys [5120 2017-11-08] (Samsung Electronics) [Archivo no firmado]
S3 TEAM; C:\Windows\System32\DRIVERS\RtTeam60.sys [40736 2011-06-15] (Realtek Semiconductor Corp -> Realtek Corporation)
S3 AscFileControl; \??\C:\Program Files\IObit\Advanced SystemCare\drivers\win7_x86\AscFileControl.sys [X]
S3 AscFileFilter; \??\C:\Program Files\IObit\Advanced SystemCare\drivers\win7_x86\AscFileFilter.sys [X]
S3 AscRegistryFilter; \??\C:\Program Files\IObit\Advanced SystemCare\drivers\win7_x86\AscRegistryFilter.sys [X]
S3 catchme; \??\C:\Users\Walter\AppData\Local\Temp\catchme.sys [X] <==== ATENCIÓN
S3 CLMirrorDriver; system32\DRIVERS\CLMirrorDriver.sys [X]
S3 clwvd8; system32\DRIVERS\clwvd8.sys [X]
S3 cpuz145; \??\C:\Windows\temp\cpuz145\cpuz145_x32.sys [X]
S3 iobit_monitor_server; \??\C:\Program Files\IObit\Advanced SystemCare\drivers\Monitor_x86.sys [X]
S0 MBAMSwissArmy; System32\Drivers\mbamswissarmy.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)


==================== Un mes (creado) ===================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-05-10 02:17 - 2020-05-10 02:18 - 000016725 _____ C:\Users\Walter\Desktop\FRST.txt
2020-05-10 02:14 - 2020-05-10 02:08 - 002011136 _____ (Farbar) C:\Users\Walter\Desktop\FRST.exe
2020-05-10 02:13 - 2020-05-10 02:13 - 000000000 ____D C:\Users\Walter\AppData\Local\SaraResults
2020-05-10 02:08 - 2020-05-10 02:08 - 002011136 _____ (Farbar) C:\Users\Walter\Downloads\FRST.exe
2020-05-10 02:07 - 2020-05-10 02:07 - 000000000 ____D C:\Users\Walter\AppData\Local\SaRALogs
2020-05-10 02:06 - 2020-05-10 02:07 - 000000000 ____D C:\Users\Walter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Corporation
2020-05-10 02:06 - 2020-05-10 02:06 - 000000520 _____ C:\Users\Walter\Desktop\Asistente para soporte y recuperación de Microsoft.appref-ms
2020-05-10 02:01 - 2020-05-10 02:13 - 000000000 ____D C:\Users\Walter\AppData\Local\Deployment
2020-05-09 21:55 - 2020-05-09 21:56 - 001295576 _____ (Google LLC) C:\Users\Walter\Downloads\ChromeSetup.exe
2020-05-09 21:52 - 2020-05-09 21:52 - 000319736 _____ (Mozilla) C:\Users\Walter\Downloads\Firefox Installer.exe
2020-05-09 21:43 - 2020-05-09 21:43 - 000000000 ____D C:\Users\Lisyy\AppData\Local\Microsoft Help
2020-05-09 21:41 - 2020-05-09 21:41 - 000000000 ____D C:\Users\Lisyy\AppData\Roaming\ReaConverter7
2020-05-09 21:37 - 2020-05-09 21:37 - 000000000 ____D C:\Users\Walter\AppData\LocalLow\uTorrent
2020-05-09 21:21 - 2020-05-09 21:21 - 000026462 _____ C:\ComboFix.txt
2020-05-09 21:17 - 2020-05-09 21:17 - 000000000 ____D C:\$AV_AVG
2020-05-09 21:03 - 2011-06-26 03:45 - 000256000 _____ C:\Windows\PEV.exe
2020-05-09 21:03 - 2010-11-07 14:20 - 000208896 _____ C:\Windows\MBR.exe
2020-05-09 21:03 - 2009-04-20 01:56 - 000060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2020-05-09 21:03 - 2000-08-30 21:00 - 000518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2020-05-09 21:03 - 2000-08-30 21:00 - 000406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2020-05-09 21:03 - 2000-08-30 21:00 - 000098816 _____ C:\Windows\sed.exe
2020-05-09 21:03 - 2000-08-30 21:00 - 000080412 _____ C:\Windows\grep.exe
2020-05-09 21:03 - 2000-08-30 21:00 - 000068096 _____ C:\Windows\zip.exe
2020-05-09 21:02 - 2020-05-09 21:21 - 000000000 ____D C:\Qoobox
2020-05-09 21:02 - 2020-05-09 21:21 - 000000000 ____D C:\ComboFix
2020-05-09 21:02 - 2020-05-09 21:19 - 000000000 ____D C:\Windows\erdnt
2020-05-09 20:50 - 2020-05-09 21:47 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Herramientas de Microsoft Office 2016
2020-05-09 20:47 - 2020-05-09 21:47 - 000000000 ____D C:\Program Files\Microsoft Office
2020-05-09 20:47 - 2020-05-09 20:47 - 000000000 ___RD C:\MSOCache
2020-05-09 20:47 - 2020-05-09 20:47 - 000000000 ____D C:\Users\Walter\AppData\Local\Microsoft Help
2020-05-09 20:45 - 2020-05-09 20:45 - 000000000 ____D C:\Windows\system32\appmgmt
2020-05-09 20:19 - 2020-05-09 20:19 - 000001021 _____ C:\Users\Walter\Desktop\MEGAsync.lnk
2020-05-09 20:19 - 2020-05-09 20:19 - 000000000 ____D C:\Users\Walter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync
2020-05-09 20:19 - 2020-05-09 20:19 - 000000000 ____D C:\Users\Walter\AppData\Local\MEGAsync
2020-05-09 20:15 - 2020-05-09 20:17 - 035158928 _____ (MEGA Limited) C:\Users\Walter\Desktop\MEGAsyncSetup.exe
2020-05-09 19:39 - 2020-05-09 19:39 - 000000366 _____ C:\Users\Walter\Desktop\dia de madre.txt
2020-05-09 19:37 - 2020-05-10 00:36 - 000000508 _____ C:\Users\Walter\Desktop\Nuevo documento de texto (2).txt
2020-05-09 18:44 - 2020-05-09 18:45 - 000000000 ____D C:\Users\Walter\AppData\Local\MSfree Inc
2020-05-09 18:40 - 2020-05-09 18:40 - 000000000 ____D C:\Users\Walter\Desktop\kms activador-20200509T213922Z-001
2020-05-09 18:39 - 2020-05-09 18:39 - 003474405 _____ C:\Users\Walter\Desktop\kms activador-20200509T213922Z-001.zip
2020-05-09 18:20 - 2020-05-09 18:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
2020-05-09 18:20 - 2010-12-05 23:16 - 000090112 _____ (Vestris Inc.) C:\Windows\system32\Vestris.ResourceLib.dll
2020-05-04 22:19 - 2020-05-04 22:19 - 002862599 _____ C:\Users\Walter\Desktop\licencia.pdf
2020-05-03 19:59 - 2020-05-09 18:33 - 000000000 ____D C:\Users\Walter\Desktop\490_MyCrochet
2020-05-03 19:57 - 2020-05-03 19:57 - 000127309 _____ C:\Users\Walter\Desktop\490_MyCrochet.zip
2020-05-03 19:53 - 2020-05-03 19:53 - 003757863 _____ C:\Users\Walter\Desktop\Revista de crochet.pdf
2020-05-03 19:45 - 2020-05-03 19:46 - 000000000 ____D C:\Users\Walter\Desktop\Revista16
2020-05-03 19:44 - 2014-05-17 00:20 - 005244457 _____ C:\Users\Walter\Desktop\Revista16.rar
2020-05-03 17:31 - 2020-05-03 17:31 - 003139242 _____ C:\Users\Walter\Desktop\itaa.pdf
2020-05-03 17:22 - 2020-05-03 17:22 - 000002727 _____ C:\Users\Walter\Desktop\Nuevo documento de texto.bat
2020-05-03 17:22 - 2020-05-03 17:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2020-05-03 17:21 - 2020-05-03 17:21 - 000000000 _____ C:\Users\Walter\Desktop\Nuevo documento de texto.txt
2020-05-03 17:09 - 2020-05-09 18:20 - 000003366 _____ C:\Windows\system32\Tasks\AutoPico Daily Restart
2020-05-03 17:07 - 2020-05-03 17:07 - 001971426 _____ C:\Users\Walter\Desktop\Activador auto pico.rar
2020-05-03 17:07 - 2020-05-03 17:07 - 000000000 ____D C:\Users\Walter\Desktop\Activador auto pico
2020-05-03 16:48 - 2020-05-03 16:48 - 000000000 ____D C:\Users\Walter\Desktop\archive
2020-05-03 16:48 - 2020-05-03 16:47 - 000323801 _____ C:\Users\Walter\Desktop\archive.zip
2020-05-03 16:47 - 2020-05-03 16:47 - 000000000 ____D C:\Users\Walter\Desktop\ita
2020-05-03 16:46 - 2020-05-03 16:46 - 000000000 ____D C:\Users\Walter\Desktop\Reales
2020-05-03 16:43 - 2020-05-03 15:36 - 000284864 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\avgBoot.exe
2020-05-03 16:43 - 2020-05-03 15:36 - 000177608 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgStm.sys
2020-05-03 16:43 - 2020-05-03 15:36 - 000148512 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgMonFlt.sys
2020-05-03 15:46 - 2020-05-03 15:52 - 000000000 ____D C:\Users\Walter\Desktop\ANTES DE MAYO
2020-05-03 15:38 - 2020-05-09 21:34 - 000117992 _____ C:\Users\Lisyy\AppData\Local\GDIPFONTCACHEV1.DAT
2020-05-03 15:36 - 2020-05-03 15:37 - 000356072 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgNetHub.sys
2020-05-03 15:36 - 2020-05-03 15:36 - 000177608 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\asw2d1190390ed607b5.tmp
2020-05-03 15:36 - 2020-05-03 15:36 - 000148512 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\aswb2722a6320cc56fa.tmp
2020-04-28 16:55 - 2020-04-28 16:55 - 000037384 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe
2020-04-28 16:55 - 2020-04-28 16:55 - 000036848 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys
2020-04-28 16:55 - 2020-04-28 16:55 - 000036848 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys
2020-04-28 16:55 - 2020-04-28 16:55 - 000036848 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys

==================== Un mes (modificado) ==================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-05-10 02:17 - 2019-06-23 21:02 - 000000000 ____D C:\FRST
2020-05-10 02:17 - 2019-06-13 18:03 - 000000000 ____D C:\Users\Walter\AppData\Roaming\uTorrent
2020-05-10 02:09 - 2019-06-15 23:52 - 000000938 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2020-05-10 02:01 - 2019-06-15 21:55 - 000000000 ____D C:\Users\Walter\AppData\Local\Apps\2.0
2020-05-10 00:37 - 2019-10-31 20:38 - 000000000 ____D C:\ProgramData\Avg
2020-05-09 23:09 - 2019-06-15 23:52 - 000000934 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2020-05-09 21:49 - 2019-06-12 18:18 - 000117992 _____ C:\Users\Walter\AppData\Local\GDIPFONTCACHEV1.DAT
2020-05-09 21:47 - 2009-07-13 23:37 - 000000000 ____D C:\Program Files\Common Files\System
2020-05-09 21:47 - 2009-07-13 23:37 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2020-05-09 21:47 - 2009-07-13 23:04 - 000000433 _____ C:\Windows\win.ini
2020-05-09 21:44 - 2009-07-14 01:34 - 000026544 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2020-05-09 21:44 - 2009-07-14 01:34 - 000026544 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2020-05-09 21:40 - 2020-04-03 13:49 - 000000464 __RSH C:\Users\Lisyy\ntuser.pol
2020-05-09 21:40 - 2020-04-03 13:49 - 000000000 ____D C:\Users\Lisyy
2020-05-09 21:37 - 2019-06-13 18:46 - 000000000 ____D C:\Users\Walter\AppData\Local\BitTorrentHelper
2020-05-09 21:36 - 2009-07-14 01:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-05-09 21:31 - 2009-07-14 01:33 - 000450872 _____ C:\Windows\system32\FNTCACHE.DAT
2020-05-09 21:18 - 2009-07-13 23:04 - 000000243 _____ C:\Windows\system.ini
2020-05-09 21:14 - 2019-07-17 02:53 - 000000000 ____D C:\Program Files\DFX
2020-05-09 21:14 - 2019-06-12 17:39 - 000000000 ____D C:\Users\Walter
2020-05-09 21:02 - 2019-06-12 17:55 - 000000000 ____D C:\Users\Walter\AppData\LocalLow\Mozilla
2020-05-09 20:45 - 2020-02-27 12:06 - 000000000 ____D C:\Program Files\Common Files\Apple
2020-05-09 20:45 - 2019-10-22 22:11 - 000000000 ____D C:\ProgramData\Apple
2020-05-09 20:39 - 2020-02-27 12:26 - 000000000 ___RD C:\Users\Walter\iCloudDrive
2020-05-09 20:39 - 2020-02-27 12:07 - 000000000 ____D C:\Users\Walter\AppData\Roaming\Apple Computer
2020-05-09 20:31 - 2019-06-12 17:55 - 000000000 ____D C:\Program Files\Mozilla Maintenance Service
2020-05-09 20:31 - 2019-06-12 17:55 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-05-09 18:20 - 2019-06-12 18:16 - 000000000 ____D C:\Program Files\KMSpico
2020-05-09 17:43 - 2019-07-16 17:31 - 000002168 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-05-03 18:29 - 2019-10-31 20:48 - 000001914 _____ C:\Users\Public\Desktop\AVG Internet Security.lnk
2020-05-03 18:29 - 2019-10-31 20:48 - 000001914 _____ C:\ProgramData\Desktop\AVG Internet Security.lnk
2020-05-03 17:26 - 2019-11-14 22:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google
2020-05-03 17:22 - 2019-06-15 23:52 - 000000000 ____D C:\Program Files\Dropbox
2020-05-03 16:47 - 2019-09-28 00:57 - 000000000 ____D C:\Users\Walter\Desktop\doublekiller
2020-05-03 16:43 - 2019-10-31 20:48 - 000004162 _____ C:\Windows\system32\Tasks\Antivirus Emergency Update
2020-05-03 16:43 - 2009-07-13 23:37 - 000000000 ____D C:\Windows\system32\NDF
2020-05-03 16:42 - 2020-02-24 23:20 - 000000000 ____D C:\Users\Walter\AppData\Local\ElevatedDiagnostics
2020-05-03 15:37 - 2019-10-31 20:47 - 000396616 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSP.sys
2020-05-03 15:36 - 2019-10-31 20:52 - 000187736 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsdriver.sys
2020-05-03 15:36 - 2019-10-31 20:52 - 000143192 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsh.sys
2020-05-03 15:36 - 2019-10-31 20:52 - 000056664 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbuniv.sys
2020-05-03 15:36 - 2019-10-31 20:52 - 000041520 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgKbd.sys
2020-05-03 15:36 - 2019-10-31 20:47 - 000691840 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSnx.sys
2020-05-03 15:36 - 2019-10-31 20:47 - 000278232 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgVmm.sys
2020-05-03 15:36 - 2019-10-31 20:47 - 000176048 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgArPot.sys
2020-05-03 15:36 - 2019-10-31 20:47 - 000094400 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRdr2.sys
2020-05-03 15:36 - 2019-10-31 20:47 - 000073624 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRvrt.sys

==================== Archivos en la raíz de algunos directorios ========

2019-12-25 02:05 - 2019-12-27 21:58 - 000038081 _____ () C:\Users\Walter\AppData\Roaming\downloads.json
2019-08-17 01:07 - 2019-08-17 01:08 - 1215017038 _____ () C:\Users\Walter\AppData\Roaming\job6.tif
2019-08-17 01:07 - 2019-08-17 01:07 - 000223380 _____ () C:\Users\Walter\AppData\Roaming\PPL.jpg
2019-11-01 16:08 - 2019-11-01 16:11 - 000000132 _____ () C:\Users\Walter\AppData\Roaming\Prefs. de formato PNG de Adobe CS6
2019-06-15 14:39 - 2019-06-15 14:39 - 000000001 _____ () C:\Users\Walter\AppData\Local\llftool.4.30.agreement
2019-10-19 16:19 - 2019-10-19 16:19 - 000000218 _____ () C:\Users\Walter\AppData\Local\recently-used.xbel
2019-06-23 21:08 - 2019-06-23 21:08 - 000007605 _____ () C:\Users\Walter\AppData\Local\Resmon.ResmonCfg

==================== FLock ==============================

2019-12-27 22:42 C:\Users\Walter\Application Data

==================== SigCheck ============================

(No existe una corrección automática para los archivos que no pasan la verificación.)


LastRegBack: 2020-05-03 18:03
==================== Final de FRST.txt ========================
Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x86) Versión: 10-05-2020 01
Ejecutado por Walter (10-05-2020 02:18:42)
Ejecutado desde C:\Users\Walter\Desktop
Windows 7 Ultimate Service Pack 1 (X86) (2019-06-12 20:39:00)
Modo de Inicio: Normal
==========================================================


==================== Cuentas: =============================

Administrador (S-1-5-21-1069064461-1938371621-2346768231-500 - Administrator - Disabled)
Invitado (S-1-5-21-1069064461-1938371621-2346768231-501 - Limited - Disabled)
Lisyy (S-1-5-21-1069064461-1938371621-2346768231-1001 - Administrator - Enabled) => C:\Users\Lisyy
Walter (S-1-5-21-1069064461-1938371621-2346768231-1000 - Administrator - Enabled) => C:\Users\Walter

==================== Centro de Seguridad ========================

(Si una entrada es incluida en el fixlist, será eliminada.)


==================== Programas instalados ======================

(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)

µTorrent (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\uTorrent) (Version: 3.5.5.45628 - BitTorrent Inc.)
Advanced PDF Password Recovery (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\Advanced PDF Password Recovery) (Version: 5.0 - ElcomSoft Co. Ltd.)
Advanced RAR Repair v1.2 (HKLM\...\Advanced RAR Repair v1.2) (Version:  - )
AllDup 4.4.8 (HKLM\...\AllDup_is1) (Version: 4.4.8 - Michael Thummerer Software Design)
Asistente para soporte y recuperación de Microsoft (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\f9a89bd2a46a7606) (Version: 17.0.4589.1 - Microsoft Corporation)
AVG Internet Security (HKLM\...\AVG Antivirus) (Version: 20.2.3116 - AVG Technologies)
Backup and Sync from Google (HKLM\...\{DFF4DF6D-C6E5-455A-B12A-F2489DA136A8}) (Version: 3.49.9800.0000 - Google, Inc.)
BitRecover DJVU Converter Wizard (HKLM\...\BitRecover DJVU Converter Wizard_is1) (Version:  - BitRecover)
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
Card Reader Patch 1.0 for Windows 7 (HKLM\...\Card Reader Windows 7 Patch_is1) (Version:  - )
CCleaner (HKLM\...\CCleaner) (Version:  - )
CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.8.7042 - CDBurnerXP)
Common Desktop Agent (HKLM\...\{031A0E14-0413-4C97-9772-2639B782F46F}) (Version: 1.62.0 - OEM) Hidden
Cool Edit Pro 2.0 (HKLM\...\Cool Edit Pro 2.0) (Version:  - )
CrystalDiskInfo 8.3.1 (HKLM\...\CrystalDiskInfo_is1) (Version: 8.3.1 - Crystal Dew World)
CutMaster 2D Professional  1.3.3.1 (HKLM\...\{793D175B-2E6E-4CF7-AA75-FDA0691173E4}) (Version: 1.3.3.1 - CODE011)
DFX (HKLM\...\DFX) (Version: 12.017.0.0 - Power Technology)
DGE-560T Gigabit PCI Express Ethernet Adapter (HKLM\...\{6E01C07D-A44B-406E-A0DC-DEF62181E6E7}) (Version: 7.47.706.2011 - D-Link)
Diagnóstico de impresoras Samsung (HKLM\...\Samsung Printer Diagnostics) (Version: 1.0.0.15 - Samsung Electronics Co., Ltd.)
DjVu To PDF Converter Software (HKLM\...\DjVu To PDF Converter Software_is1) (Version:  - Sobolsoft)
DjVuLibre DjView  3.5.27+4.11 (HKLM\...\DjVuLibre+DjView) (Version: 3.5.27+4.11 - DjVuZone)
Driver Booster 7 (HKLM\...\Driver Booster_is1) (Version: 7.0.2 - IObit)
Dropbox (HKLM\...\Dropbox) (Version: 96.4.172 - Dropbox, Inc.)
Dropbox Update Helper (HKLM\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.295.1 - Dropbox, Inc.) Hidden
eMule (HKLM\...\eMule) (Version:  - )
Evince 2.32.0 (HKLM\...\{923638DC-4B4D-4678-BA52-2905B6BAA431}) (Version: 2.32.0 - (Custom build))
File Magic (HKLM\...\File Magic_is1) (Version: 1.9.8.19 - Solvusoft Corporation)
Folder Size (HKLM\...\{FC8D21C8-7B29-4104-ADB0-FEE9CA1C7922}) (Version: 2.6 - Brio)
Foxit Advanced PDF Editor 3 (HKLM\...\B521582C-6BE3-491D-BCC8-FFB8301298E9_is1) (Version: 3.0.5.0 - Foxit Corporation)
Foxit PhantomPDF (HKLM\...\{7BDAB862-E01F-11E7-986C-000C296BF29B}) (Version: 9.0.1.1049 - Foxit Software Inc.)
Generador de Ejercicios de Matemáticas (HKLM\...\Generador de Ejercicios de Matemáticas_is1) (Version:  - )
GeoGebra Classic (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\GeoGebra_6) (Version: 6.0.564 - International GeoGebra Institute)
Google Chrome (HKLM\...\Google Chrome) (Version: 81.0.4044.138 - Google LLC)
Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
HiSuite (HKLM\...\Hi Suite) (Version: 9.1.0.309 - )
HP Deskjet 2050 J510 series Ayuda (HKLM\...\{7A3DF2E2-CF13-44FB-A93E-F71D5381DB3F}) (Version: 140.0.61.61 - Hewlett Packard)
HP Deskjet 2050 J510 series Estudio para la mejora del producto (HKLM\...\{2ED491F9-E343-45CC-A624-B538615FAABD}) (Version: 28.0.1313.0 - Hewlett-Packard Co.)
HP Deskjet 2050 J510 series Software básico del dispositivo (HKLM\...\{A3FF4458-CC45-4EBC-A7C3-0A843BDC9177}) (Version: 28.0.1313.0 - Hewlett-Packard Co.)
HP Photo Creations (HKLM\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Update (HKLM\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HxD Hex Editor version 1.7.7.0 (HKLM\...\HxD Hex Editor_is1) (Version: 1.7.7.0 - Maël Hörz)
iCloud (HKLM\...\{C2ECA4B2-8D56-47B7-8CAE-1E3109B78AC2}) (Version: 7.17.0.13 - Apple Inc.)
Jamorama Bonus Software (HKLM\...\{58BA953D-D4CD-4F0D-BAD8-0AAF34634E8E}) (Version: 1.0 - Rock Star Recipes)
Java 8 Update 221 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180221F0}) (Version: 8.0.2210.11 - Oracle Corporation)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
KMSpico (HKLM\...\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1) (Version:  - )
LizardTech DjVu Control (HKLM\...\{105CFC7C-6992-11D5-BD9D-000102C10FD8}) (Version:  - )
MathType 6 (HKLM\...\DSMT6) (Version: 6.9 - Design Science, Inc.)
MEGAsync (HKLM\...\MEGAsync) (Version:  - Mega Limited)
Merlín Generador de Ejercicios (HKLM\...\Merlín Generador de Ejercicios_is1) (Version:  - )
Microsoft .NET Framework 4.8 (español) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 3082) (Version: 4.8.03761 - Microsoft Corporation)
Microsoft .NET Framework 4.8 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.8.03761 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\OneDriveSetup.exe) (Version: 17.3.4604.0120 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61187 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.7523 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.7523 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.23.27820 (HKLM\...\{45231ab4-69fd-486a-859d-7a59fcd11013}) (Version: 14.23.27820.0 - Microsoft Corporation)
Microsoft Visual F# 2.0 Runtime (HKLM\...\{85467CBC-7A39-33C9-8940-D72D9269B84F}) (Version: 10.0.40219 - Microsoft Corporation)
Mozilla Firefox 75.0 (x86 es-CL) (HKLM\...\Mozilla Firefox 75.0 (x86 es-CL)) (Version: 75.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 75.0.0.7398 - Mozilla)
Nexus Radio (HKLM\...\{8763793B-4D7D-49C8-A859-5C582EC02640}) (Version: 5.7.1 - Talam Group, LLC)
NVIDIA Controlador de audio HD 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10.57.35 - NVIDIA Corporation)
Panel de control de NVIDIA 309.08 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 309.08 - NVIDIA Corporation) Hidden
Photoshop Cs6 versión Final (HKLM\...\{5CF1F901-ED27-4C34-A9CE-A10E8C1DDDB2}_is1) (Version: Final - Braian Urzagaste)
Prot-On (HKLM\...\{49706C83-0F5C-468B-BAF6-FFA902F84232}_is1) (Version: 3.2.0 - Grupo CMC)
Prot-On Addin Internet Explorer (HKLM\...\{E2B9C2B3-EE8E-4553-9460-FA9D48413A03}) (Version: 1.2.6 - Prot-On) Hidden
Prot-On Client (HKLM\...\{320F5315-0391-49FF-A604-5665205969E8}) (Version: 3.2.0 - Prot-On) Hidden
Prot-On MSOffice Addin (HKLM\...\{950BCEE9-BC9C-4292-94D7-880CF1535273}) (Version: 3.1.0 - Prot-On) Hidden
Prot-On MSOutlook Addin (HKLM\...\{ACCA97CF-C308-480A-9995-C5606B36F16D}) (Version: 3.0.2 - Prot-On) Hidden
Prot-On VLC Player (HKLM\...\{42DFEF82-E0A0-4572-8544-FD69A158ABEC}) (Version: 1.0.0 - Prot-On) Hidden
Prot-On Windows Explorer Addin (HKLM\...\{D70CFAFA-CBD5-44F6-AE7A-C4776043AA2A}) (Version: 3.0.1 - Prot-On) Hidden
PSM (HKLM\...\{8C9FEBED-FEB5-4AC5-BB1A-2E4FD243DB32}) (Version: 1.0.0.0 - )
reaConverter 7 Standard (HKLM\...\{659727C6-7267-4076-803B-351A467F6CAF}_is1) (Version: 7.4.08.0 - reaConverter LLC)
Realtek Ethernet Diagnostic Utility (HKLM\...\{DADC7AB0-E554-4705-9F6A-83EA82ED708E}) (Version: 1.00.0000 - Realtek)
Samsung Easy Printer Manager (HKLM\...\Samsung Easy Printer Manager) (Version: 2.00.01.24 - HP Printing Korea Co., Ltd.)
Samsung ML-2160 Series (HKLM\...\Samsung ML-2160 Series) (Version: 1.23 (08-04-2015) - Samsung Electronics Co., Ltd.)
Samsung Printer Live Update (HKLM\...\Samsung Printer Live Update) (Version: 1.01.00:04(2013-04-22) - Samsung Electronics Co., Ltd.)
Samsung Scan Process Machine (HKLM\...\Samsung Scan Process Machine) (Version: 1.03.05.28 - Samsung Electronics Co., Ltd.) Hidden
Screamer Radio (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\Screamer) (Version: 1.7265.31862 - Steamcore)
SpeedFan (remove only) (HKLM\...\SpeedFan) (Version:  - )
TechSmith Screen Capture Codec (HKLM\...\{84FE50F5-B0F3-4D18-8BE8-A4DEEE0C37AD}) (Version: 4.1.1.0 - TechSmith Corporation) Hidden
Teleport Pro (HKLM\...\Teleport Pro) (Version: 1.72 - Tennyson Maxwell Information Systems, Inc.)
TeraCopy version 3.26 (HKLM\...\TeraCopy_is1) (Version: 3.26 - Code Sector)
Total Video Converter 3.71 100812 (HKLM\...\Total Video Converter 3.71_is1) (Version:  - EffectMatrix Inc.)
Tweaking.com - Windows Repair (HKLM\...\Tweaking.com - Windows Repair) (Version: 4.4.5 - Tweaking.com)
Ultracopier 2.0.4.6 (HKLM\...\Ultracopier) (Version: 2.0.4.6 - Ultracopier)
uTorrent Web (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\utweb) (Version: 0.22.0 - BitTorrent, Inc.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.8 - VideoLAN)
WinHTTrack Website Copier 3.44-1 (HKLM\...\WinHTTrack Website Copier_is1) (Version: 3.44.1 - HTTrack)
WinRAR 5.40 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
Wolfram Mathematica 11.3 (M-WIN-L 11.3.0 5944644) (HKLM\...\M-WIN-L 11.3.0 5944644_is1) (Version: 11.3.0 - Wolfram Research, Inc.)
WolframScript (A-WIN32-WolframScript 11.3.0 2018030401) (HKLM\...\{F8D88AF3-43F1-4818-B6DB-0D38F8E42833}) (Version: 11.3.49 - Wolfram Research, Inc.)
Wondershare Helper Compact 2.5.2 (HKLM\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.5.2 - Wondershare)
Wondershare PDFelement 7 Pro(Build 7.0.3) (HKLM\...\{77078E40-A92E-47FD-A0F6-168A4BF6CF3A}_is1) (Version: 7.0.3.4309 - Wondershare Software Co.,Ltd.)
ZaraRadio 1.6.2 (HKLM\...\ZaraRadio_is1) (Version:  - Kero Systems S.L.)
Zoom (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\ZoomUMX) (Version: 4.6 - Zoom Video Communications, Inc.)

==================== Personalizado CLSID (Lista blanca): ==============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{0000002F-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{00020421-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{00020422-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{00020423-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{00020425-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{0002E005-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\OLE32.DLL (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{0713E8A2-850A-101B-AFC0-4210102A8DA7}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{0713E8D2-850A-101B-AFC0-4210102A8DA7}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{0BE35203-8F91-11CE-9DE3-00AA004BB851}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{0BE35204-8F91-11CE-9DE3-00AA004BB851}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{1EFB6596-857C-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{2C247F23-8591-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{35053A22-8589-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{373FF7F0-EB8B-11CD-8820-08002B2F4F5A}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{46763EE0-CAB2-11CE-8C20-00AA0051E5D4}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{48E59293-9880-11CF-9754-00AA00C00908}\InprocServer32 -> C:\Windows\system32\msinet.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{58DA8D8A-9D6A-101B-AFC0-4210102A8DA7}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{58DA8D8F-9D6A-101B-AFC0-4210102A8DA7}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{612A8624-0FB3-11CE-8747-524153480004}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{66833FE6-8583-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{68D44A27-FFB6-4B89-A3E5-7B0E50A7AB33}\InprocServer32 -> C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\catchcopy32.dll () [Archivo no firmado]
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{6B7E638F-850A-101B-AFC0-4210102A8DA7}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{8E3867A3-8586-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{9ED94440-E5E8-101B-B9B5-444553540000}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{B196B286-BAB4-101A-B69C-00AA00341D07}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{BDD1F04B-858B-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{C1A8AF25-1257-101B-8FB0-0020AF039CA3}\InprocServer32 -> C:\Windows\system32\mci32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{C74190B6-8589-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{D5DE8D20-5BB8-11D1-A1E3-00A0C90F2731}\InprocServer32 -> C:\Windows\System32\msvbvm60.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{DD9DA666-8594-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{F08DF954-8592-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{F9043C85-F6F2-101A-A3C9-08002B2F49FB}\InprocServer32 -> C:\Windows\system32\comdlg32.ocx (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ShellIconOverlayIdentifiers: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [  0Prot-On] -> {E3A2C9DF-E2E6-459E-9BFD-11EAB3B300CA} => C:\Program Files\Prot-On\Prot-On Windows Explorer Addin\ProtOnShellExt.dll [2017-11-21] (Cognicase Management Consulting, S.L. -> Protección On-Line)
ShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll [2020-04-06] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll [2020-04-06] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll [2020-04-06] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Ningún archivo
ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [Foxit_ConvertToPDF] -> {C5269811-4A29-4818-A4BB-111F9FC63A5F} => C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x86.dll [2017-12-11] (Foxit Software Incorporated -> Foxit Software Inc.)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu32.dll [2020-04-06] (Google LLC -> Google)
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams.dll [2020-01-22] (Apple Inc. -> Apple Inc.)
ContextMenuHandlers1: [Prot-On] -> {88514224-0423-46C9-9A3D-3DFD29BF676D} => C:\Program Files\Prot-On\Prot-On Windows Explorer Addin\ProtOnShellExt.dll [2017-11-21] (Cognicase Management Consulting, S.L. -> Protección On-Line)
ContextMenuHandlers1: [ReaConverter7_std] -> {0C83C06D-41F5-4666-B1C2-0923EA75EB10} => C:\Program Files\reaConverter 7 Standard\ncontext.dll [2018-06-05] () [Archivo no firmado]
ContextMenuHandlers1: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> )
ContextMenuHandlers1: [TVCShellExt] -> {4E33A7F5-8083-4C08-9D45-C5CED88F5C04} => C:\Program Files\Total Video Converter\TVCShellExt.dll [2010-07-29] () [Archivo no firmado]
ContextMenuHandlers1: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ContextMenuHandlers2: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> )
ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Ningún archivo
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu32.dll [2020-04-06] (Google LLC -> Google)
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ContextMenuHandlers4: [MSSE] -> {0365FE2C-F183-4091-AC82-BFC39FB75C49} =>  -> Ningún archivo
ContextMenuHandlers4: [Prot-On] -> {88514224-0423-46C9-9A3D-3DFD29BF676D} => C:\Program Files\Prot-On\Prot-On Windows Explorer Addin\ProtOnShellExt.dll [2017-11-21] (Cognicase Management Consulting, S.L. -> Protección On-Line)
ContextMenuHandlers4: [ReaConverter7_std] -> {0C83C06D-41F5-4666-B1C2-0923EA75EB10} => C:\Program Files\reaConverter 7 Standard\ncontext.dll [2018-06-05] () [Archivo no firmado]
ContextMenuHandlers4: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> )
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2015-01-30] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers5: [Prot-On] -> {88514224-0423-46C9-9A3D-3DFD29BF676D} => C:\Program Files\Prot-On\Prot-On Windows Explorer Addin\ProtOnShellExt.dll [2017-11-21] (Cognicase Management Consulting, S.L. -> Protección On-Line)
ContextMenuHandlers6: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers6: [Fast Explorer] -> {693BE9C0-BEC3-11D2-B4C1-C33BBD3AD64B} => C:\ProgramData\AllDup\FEShlExt.dll [2008-08-21] (Alex Yakovlev) [Archivo no firmado]
ContextMenuHandlers6: [Foxit_ConvertToPDF] -> {C5269811-4A29-4818-A4BB-111F9FC63A5F} => C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x86.dll [2017-12-11] (Foxit Software Incorporated -> Foxit Software Inc.)
ContextMenuHandlers6: [ReaConverter7_std] -> {0C83C06D-41F5-4666-B1C2-0923EA75EB10} => C:\Program Files\reaConverter 7 Standard\ncontext.dll [2018-06-05] () [Archivo no firmado]
ContextMenuHandlers6: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> )
ContextMenuHandlers6: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Lista blanca) ====================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Drivers32: [vidc.tscc] => C:\Windows\system32\tsccvid.dll [854016 2016-12-12] (TechSmith Corporation) [Archivo no firmado]

==================== Accesos directos & WMI ========================

==================== Módulos cargados (Lista blanca) =============

2007-07-24 09:39 - 2007-07-24 09:39 - 000475136 _____ ( (DMSoft Technologies) [Archivo no firmado])  [El archivo está en uso ] C:\Program Files\Nexus Radio\SkinCrafter2.dll
2002-08-29 14:28 - 2002-08-29 14:28 - 000132350 _____ () [Archivo no firmado] C:\Program Files\Nexus Radio\CurlLib.dll
2016-09-02 23:25 - 2020-02-19 20:36 - 000279040 _____ () [Archivo no firmado] C:\Program Files\Nexus Radio\Search.lib
2019-07-17 00:36 - 2018-06-05 19:34 - 001103872 _____ () [Archivo no firmado] C:\Program Files\reaConverter 7 Standard\ncontext.dll
2020-02-18 01:45 - 2010-07-29 18:19 - 000234496 _____ () [Archivo no firmado] C:\Program Files\Total Video Converter\TVCShellExt.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000515548 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libbz2.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001192734 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libgcc_s_sjlj-1.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 004563422 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libharfbuzz-0.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 002434939 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libopus-0.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001078923 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libpcre-1.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000608101 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libpcre2-16-0.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001798314 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libpng16-16.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001294446 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libstdc++-6.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000892631 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libzstd.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000105472 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\zlib1.dll
2019-06-14 17:27 - 2015-03-18 12:13 - 001325568 _____ () [Archivo no firmado] C:\Windows\system32\spool\DRIVERS\W32X86\3\ssj1mdu.dll
2007-04-26 16:41 - 2007-04-26 16:41 - 000078336 _____ (BrewIdeas@Emil Weiss) [Archivo no firmado] C:\Program Files\Nexus Radio\BassVis.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001521105 _____ (Free Software Foundation) [Archivo no firmado] C:\Program Files\Ultracopier\libiconv-2.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000785319 _____ (Free Software Foundation) [Archivo no firmado] C:\Program Files\Ultracopier\libintl-8.dll
2019-05-20 16:00 - 2019-05-20 16:00 - 000104960 _____ (hxxp://www.emule-project.net) [Archivo no firmado] C:\Program Files\eMule\lang\es_ES_T.dll
1998-07-28 04:00 - 1998-07-28 04:00 - 000119568 _____ (Microsoft Corporation) [Archivo no firmado] C:\Windows\system32\VB6ES.DLL
2020-03-15 23:49 - 2020-03-15 23:49 - 000626688 _____ (Microsoft Corporation) [Archivo no firmado] C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6229_none_d089f796442de10e\MSVCR80.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000052142 _____ (MingW-W64 Project. All rights reserved.) [Archivo no firmado] C:\Program Files\Ultracopier\libwinpthread-1.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 003572771 _____ (The FreeType Project) [Archivo no firmado] C:\Program Files\Ultracopier\libfreetype-6.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 004820092 _____ (The GLib developer community) [Archivo no firmado] C:\Program Files\Ultracopier\libglib-2.0-0.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 003140601 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [Archivo no firmado] C:\Program Files\Ultracopier\libcrypto-1_1.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000925292 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [Archivo no firmado] C:\Program Files\Ultracopier\libssl-1_1.dll
2017-09-14 03:37 - 2017-09-14 03:37 - 000026112 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qgif.dll
2017-09-14 03:42 - 2017-09-14 03:42 - 000033280 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qicns.dll
2017-09-14 03:37 - 2017-09-14 03:37 - 000027648 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qico.dll
2017-09-14 03:37 - 2017-09-14 03:37 - 000245760 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qjpeg.dll
2017-09-14 03:42 - 2017-09-14 03:42 - 000021504 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qsvg.dll
2017-09-14 03:42 - 2017-09-14 03:42 - 000020992 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qtga.dll
2017-09-14 03:42 - 2017-09-14 03:42 - 000316416 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qtiff.dll
2017-09-14 03:42 - 2017-09-14 03:42 - 000019968 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qwbmp.dll
2017-09-14 03:42 - 2017-09-14 03:42 - 000322560 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qwebp.dll
2017-09-14 03:37 - 2017-09-14 03:37 - 001010688 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\platforms\qwindows.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 005868032 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5Core.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 005350400 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5Gui.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000894464 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5Multimedia.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001565184 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5Network.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 005420544 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5Widgets.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000212480 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5WinExtras.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000183808 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5Xml.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000975872 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\qt-plugins\platforms\qwindows.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000179200 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\qt-plugins\styles\qwindowsvistastyle.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001086976 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\CopyEngine\Ultracopier-Spec\copyEngine.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000368640 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\Listener\catchcopy-v0002\listener.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000345088 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\pluginLoader.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000020992 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\SessionLoader\Windows\sessionLoader.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000612864 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\Themes\Oxygen\interface.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000786432 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\Themes\Oxygen2\interface.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000614400 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\Themes\Supercopier\interface.dll
2007-05-21 10:42 - 2007-05-21 10:42 - 000093240 _____ (Un4seen Developments) [Archivo no firmado] C:\Program Files\Nexus Radio\Bass.dll
2007-01-08 13:15 - 2007-01-08 13:15 - 000010296 _____ (Un4seen Developments) [Archivo no firmado] C:\Program Files\Nexus Radio\BassEnc.dll
2006-11-25 12:20 - 2006-11-25 12:20 - 000014904 _____ (Un4seen Developments) [Archivo no firmado] C:\Program Files\Nexus Radio\BassWMA.dll
2019-06-14 16:44 - 2006-09-18 01:57 - 000019456 _____ (Windows (R) 2000 DDK provider) [Archivo no firmado] C:\Windows\system32\spool\PRTPROCS\W32X86\ML2150pc.dll
2019-06-14 17:27 - 2015-03-18 12:13 - 000029696 _____ (Windows (R) Codename Longhorn DDK provider) [Archivo no firmado] C:\Windows\system32\spool\PRTPROCS\W32X86\ssj1mpc.dll
2019-08-20 00:35 - 2017-10-19 11:17 - 000228864 _____ (Wondershare Software) [Archivo no firmado] C:\Windows\System32\WSPDFelementMonitor.dll

==================== Alternate Data Streams (Lista blanca) ========

(Si una entrada es incluida en el fixlist, solamente los ADS serán eliminados.)

AlternateDataStreams: C:\Users\Walter\Desktop\TeamViewer_Setup_es.exe:com.dropbox.attributes [168]

==================== Modo Seguro (Lista blanca) ==================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppXSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BFE => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BITS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\camsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ClipSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dps => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\lfsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MpsSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\semgrsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SharedAccess => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\shellhwdetection => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TokenBroker => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRemoveSafeBoot => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vss => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WSService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppXSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BITS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\camsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ClipSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dps => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\lfsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\msiserver => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SamSs => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\semgrsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\shellhwdetection => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv2 => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srvnet => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TokenBroker => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRemoveSafeBoot => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vss => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WSService => ""="Service"

==================== Asociación (Lista blanca) =================

==================== Internet Explorer sitios de confianza/restringidos ==========

==================== Hosts contenido: =========================

(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)

2009-07-13 23:04 - 2020-05-09 21:17 - 000000027 _____ C:\Windows\system32\drivers\etc\hosts
127.0.0.1       localhost

==================== Otras Áreas ===========================

(Actualmente no existe una corrección automática para esta sección.)

HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\Control Panel\Desktop\\Wallpaper -> 
HKU\S-1-5-21-1069064461-1938371621-2346768231-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Lisyy\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 208.67.222.222 - 208.67.220.220
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Firewall de Windows está habilitado.

==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==

(Si una entrada es incluida en el fixlist, será eliminada.)

MSCONFIG\Services: MozillaMaintenance => 3
MSCONFIG\Services: Service KMSELDI => 2
MSCONFIG\startupfolder: C:^Users^Walter^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Enviar a OneNote.lnk => C:\Windows\pss\Enviar a OneNote.lnk.Startup
MSCONFIG\startupreg: CDAServer => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
MSCONFIG\startupreg: DFX => C:\Program Files\DFX\DFX.exe -startup
MSCONFIG\startupreg: HP Software Update => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
MSCONFIG\startupreg: Prot-On Client => C:\Program Files\Prot-On\Prot-On Client\Prot-On.exe
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: Wondershare Helper Compact.exe => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe

==================== Reglas de firewall (Lista blanca) ================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

FirewallRules: [{5651DE06-38A5-48CD-B413-BB44AFE801BA}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{088BA72E-4042-4EE6-87FF-F4D91A882E1E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{FD4FA28A-A414-41B9-9A02-4E6693333E62}] => (Allow) C:\Users\Walter\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{5775980F-2B83-4087-BBFA-976DFD93D180}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F681522F-90D7-4F6A-AC51-E02AB4250D61}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\Mathematica.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{47938BE3-9C0A-42C4-A620-B63EC3AF7C62}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\Mathematica.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{72C773EC-2B98-49DE-906A-B30027B17309}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\MathKernel.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{2C133FBC-275B-4BAF-A86C-0D9D72E1AD01}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\MathKernel.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{644E63FB-46E8-47C1-B30F-69C4529119E5}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\math.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{3E26B6D0-E49C-4A17-BB3D-8013040ED315}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\math.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{DE4BE075-AB03-46BE-9161-AA81C7B940ED}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\SystemFiles\Components\WSMCore\bin\SessionManager.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{360A56A3-CAD2-4938-868F-6440327B23AA}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\SystemFiles\Components\WSMCore\bin\SessionManager.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{FDB15244-446A-40CA-9484-F387EC4719F1}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\SystemFiles\Components\WSMCore\bin\WSMKernelX.exe (Wolfram Research, Inc. -> )
FirewallRules: [{4F16E0AA-3439-434E-8C89-2CC44F89A8A4}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\SystemFiles\Components\WSMCore\bin\WSMKernelX.exe (Wolfram Research, Inc. -> )
FirewallRules: [{2B6E45BF-CBFE-49C1-964C-7D34B1ABF0D4}] => (Allow) C:\Users\Walter\AppData\Roaming\uTorrent Web\utweb.exe (Jenkins Win Client Build SPC -> BitTorrent Inc.) [Archivo no firmado]
FirewallRules: [{74CDB6E1-EC9E-4B86-B0DE-C74FFA99713D}] => (Allow) C:\Users\Walter\AppData\Roaming\uTorrent Web\utweb.exe (Jenkins Win Client Build SPC -> BitTorrent Inc.) [Archivo no firmado]
FirewallRules: [{C73D0CD7-B120-4CC0-A548-34833981DB4F}] => (Allow) C:\Users\Walter\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{5F0FC81D-78FD-4C12-A42D-3E4179E10606}] => (Allow) C:\Users\Walter\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{69481938-5CF8-4FB6-9A72-B8643034AE32}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\EasyPrinterManagerV2.exe (HP Inc. -> )
FirewallRules: [{942AE59E-257E-486B-AC2E-523FB5FDBF80}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\OrderSupplies.exe (HP Inc. -> HP Printing Korea Co., Ltd.)
FirewallRules: [{AE7AD63A-2AFB-4869-848B-78B91C33DF08}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\EPM2AlertList.exe (HP Inc. -> HP Printing Korea Co., Ltd.)
FirewallRules: [{42DAB400-90A5-4A8F-9B20-3B3CF2404D0C}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\EPM2Migrator.exe (HP Inc. -> )
FirewallRules: [{203B22BE-4A5F-4EE6-B9FB-7C270340A1C0}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [TCP Query User{C21302DF-DD38-4D12-9E57-96D07F94640A}C:\program files\emule\emule.exe] => (Allow) C:\program files\emule\emule.exe (hxxps://www.emule-project.net) [Archivo no firmado]
FirewallRules: [UDP Query User{0E83F3AF-EF89-40AD-9134-3BAAC368B4C7}C:\program files\emule\emule.exe] => (Allow) C:\program files\emule\emule.exe (hxxps://www.emule-project.net) [Archivo no firmado]
FirewallRules: [TCP Query User{039E7DE3-D553-49D6-B01B-8E799458B01C}C:\program files\prot-on\prot-on client\prot-on.exe] => (Allow) C:\program files\prot-on\prot-on client\prot-on.exe (Cognicase Management Consulting, S.L. -> Grupo CMC)
FirewallRules: [UDP Query User{5E2000F6-70E2-47C2-8A33-EADCB2C38133}C:\program files\prot-on\prot-on client\prot-on.exe] => (Allow) C:\program files\prot-on\prot-on client\prot-on.exe (Cognicase Management Consulting, S.L. -> Grupo CMC)
FirewallRules: [TCP Query User{F1E95A4E-08B5-4D5C-94C6-48E329D27499}P:\zfinal\portable foxit pdf editor 2.0.1011.exe] => (Block) P:\zfinal\portable foxit pdf editor 2.0.1011.exe => Ningún archivo
FirewallRules: [UDP Query User{66F0EC20-92B5-4582-9AB9-160CF8400667}P:\zfinal\portable foxit pdf editor 2.0.1011.exe] => (Block) P:\zfinal\portable foxit pdf editor 2.0.1011.exe => Ningún archivo
FirewallRules: [TCP Query User{8CC8B2F5-B2EF-4047-AD89-AD679A62F98A}C:\users\walter\appdata\local\jdownloader 2.0\jdownloader2.exe] => (Allow) C:\users\walter\appdata\local\jdownloader 2.0\jdownloader2.exe (Appwork GmbH -> AppWork GmbH)
FirewallRules: [UDP Query User{BC3010BC-5A12-4250-AC42-AFC19E80E19D}C:\users\walter\appdata\local\jdownloader 2.0\jdownloader2.exe] => (Allow) C:\users\walter\appdata\local\jdownloader 2.0\jdownloader2.exe (Appwork GmbH -> AppWork GmbH)
FirewallRules: [{C825AD97-284C-478A-B9F6-CB04F909AA25}] => (Allow) C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\USBSetup.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [TCP Query User{122F3BC9-4551-48F0-AB73-78A6509DB3C4}C:\users\walter\desktop\portable foxit pdf editor 2.0.1011.exe] => (Block) C:\users\walter\desktop\portable foxit pdf editor 2.0.1011.exe (Foxit Software Company -> Foxit Software Company) [Archivo no firmado]
FirewallRules: [UDP Query User{7A690458-30C4-4855-AADE-A9630EB35D67}C:\users\walter\desktop\portable foxit pdf editor 2.0.1011.exe] => (Block) C:\users\walter\desktop\portable foxit pdf editor 2.0.1011.exe (Foxit Software Company -> Foxit Software Company) [Archivo no firmado]
FirewallRules: [TCP Query User{15BEDE75-5162-4AC0-AAEF-FED22E4B9142}H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe] => (Block) H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe => Ningún archivo
FirewallRules: [UDP Query User{BF4E2245-AAFA-4265-BE8A-722D20A0AEB1}H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe] => (Block) H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe => Ningún archivo
FirewallRules: [{0D27637D-057C-4211-A7F6-892C6F64FC69}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{34E6655E-0CE2-43B8-9BC4-5516F13A7B50}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{1CBCE44B-6D8B-4950-96AE-1FA640E7F149}] => (Allow) C:\Users\Walter\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{954913D4-C09A-4A41-854C-F2814C9F8B59}] => (Allow) C:\Program Files\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
FirewallRules: [{48464FF8-9DED-4BCE-A2C7-5EB12A889355}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Puntos de Restauración =========================

No se pudieron listar los puntos de restauración
Comprobar el servicio "winmgmt" o reparar WMI.


==================== Dispositivos defectuosos en el Administrador de dispositivos ============


==================== Errores del registro de eventos: ========================

Errores de aplicación:
==================
Error: (05/10/2020 02:15:33 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: El programa FRST.exe, versión 10.5.2020.1, dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible acerca del problema, compruebe el historial de problemas en el panel de control Centro de actividades.

Identificador de proceso: 1c88

Hora de inicio: 01d62689eefbe930

Hora de finalización: 23

Ruta de acceso de la aplicación: C:\Users\Walter\Desktop\FRST.exe

Identificador de informe: 39585901-927d-11ea-a614-001e9086406c

Error: (05/10/2020 02:09:19 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: Microsoft.Sara.exe, versión: 17.0.4589.1, marca de tiempo: 0x5e9dc1fb
Nombre del módulo con errores: dfshim.dll, versión: 4.0.41210.0, marca de tiempo: 0x53634c47
Código de excepción: 0xc0000005
Desplazamiento de errores: 0x000240d9
Id. del proceso con errores: 0x1518
Hora de inicio de la aplicación con errores: 0x01d62689164209d0
Ruta de acceso de la aplicación con errores: C:\Users\Walter\AppData\Local\Apps\2.0\3ANVPQHK.3CP\JZ84N2V5.Z1K\micr..tion_5329ec537c0b4b5c_0011.0000_f40b2d128fa78cb4\Microsoft.Sara.exe
Ruta de acceso del módulo con errores: C:\Windows\system32\dfshim.dll
Id. del informe: 66a5e6d0-927c-11ea-a614-001e9086406c

Error: (05/10/2020 02:09:16 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplicación: Microsoft.Sara.exe
Versión de Framework: v4.0.30319
Descripción: el proceso terminó debido a una excepción no controlada.
Información de la excepción: System.AccessViolationException
   en System.Deployment.Internal.Isolation.Manifest.IHashElementEntry.get_AllData()
   en System.Deployment.Application.Manifest.DependentAssembly..ctor(System.Deployment.Internal.Isolation.Manifest.AssemblyReferenceEntry)
   en System.Deployment.Application.Manifest.AssemblyManifest.get_DependentAssemblies()
   en System.Deployment.Application.Manifest.AssemblyManifest.GetPrivateAssembliesInGroup(System.String, Boolean)
   en System.Deployment.Application.ComponentStore.CheckGroupInstalled(System.Deployment.Application.DefinitionAppId, System.Deployment.Application.Manifest.AssemblyManifest, System.String)
   en System.Deployment.Application.SubscriptionStore.CheckGroupInstalled(System.Deployment.Application.SubscriptionState, System.Deployment.Application.DefinitionAppId, System.Deployment.Application.Manifest.AssemblyManifest, System.String)
   en System.Deployment.Application.DeploymentManager.SynchronizeGroupCore(Boolean, System.Deployment.Application.SyncGroupHelper)
   en System.Deployment.Application.DeploymentManager.Synchronize(System.String)
   en System.Deployment.Application.ApplicationDeployment.DownloadFileGroup(System.String)
   en Microsoft.Sara.Framework.Common.Util.AssemblyLoader.ResolveAssemblyFromClickOnceCloud(System.String, System.String)
   en Microsoft.Sara.Framework.Common.Util.ReflectionHelper.GetSaraTypeFromFullClassName(System.String, System.String)
   en Microsoft.Sara.Plugins.Common.AnalyzerBaseWorkflow.PrepareExecute()
   en Microsoft.Sara.Plugins.Common.AnalyzerWorkflow.PrepareExecute()
   en Microsoft.Sara.Framework.TaskEngine.Engine.WorkflowBase.Run()
   en Microsoft.Sara.Framework.TaskEngine.Engine.WorkflowBase+<>c__DisplayClass25_1.<TryExecuteAsync>b__0()
   en System.Threading.ThreadHelper.ThreadStart_Context(System.Object)
   en System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   en System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   en System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
   en System.Threading.ThreadHelper.ThreadStart()

Error: (05/09/2020 09:47:58 PM) (Source: MsiInstaller) (EventID: 1043) (User: NT AUTHORITY)
Description: No se pudo finalizar una transacción de Windows Installer PROPLUS. Error 1603 al finalizar la transacción.

Error: (05/09/2020 09:28:07 PM) (Source: MsiInstaller) (EventID: 1043) (User: NT AUTHORITY)
Description: No se pudo finalizar una transacción de Windows Installer PROPLUS. Error 1603 al finalizar la transacción.

Error: (05/09/2020 09:22:44 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Error en Servicios de cifrado mientras se procesaba el objeto "System Writer" de la llamada OnIdentity().

Details:
AddWin32ServiceFiles: Unable to back up image of service Centro de seguridad since QueryServiceConfig API failed

System Error:
El sistema no puede encontrar el archivo especificado.
.

Error: (05/09/2020 09:22:32 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Error en Servicios de cifrado mientras se procesaba el objeto "System Writer" de la llamada OnIdentity().

Details:
AddWin32ServiceFiles: Unable to back up image of service Centro de seguridad since QueryServiceConfig API failed

System Error:
El sistema no puede encontrar el archivo especificado.
.

Error: (05/09/2020 09:19:19 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: Dropbox.exe, versión: 96.4.172.0, marca de tiempo: 0x5ea889c0
Nombre del módulo con errores: ole32.dll, versión: 6.1.7601.24537, marca de tiempo: 0x5dce0da9
Código de excepción: 0xc0000005
Desplazamiento de errores: 0x00021c24
Id. del proceso con errores: 0x1330
Hora de inicio de la aplicación con errores: 0x01d626605bf89530
Ruta de acceso de la aplicación con errores: C:\Program Files\Dropbox\Client\Dropbox.exe
Ruta de acceso del módulo con errores: C:\Windows\system32\ole32.dll
Id. del informe: e361ae80-9253-11ea-8859-001e9086406c


Errores del sistema:
=============
Error: (05/09/2020 10:08:00 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Se recibió la siguiente alerta irrecuperable: 20.

Error: (05/09/2020 09:40:52 PM) (Source: DCOM) (EventID: 10005) (User: )
Description: Error de DCOM "1083" al intentar iniciar el servicio winmgmt con argumentos "" para ejecutar el servidor:
{8BC3F05E-D86B-11D0-A075-00C04FB68820}

Error: (05/09/2020 09:37:48 PM) (Source: DCOM) (EventID: 10005) (User: )
Description: Error de DCOM "1083" al intentar iniciar el servicio winmgmt con argumentos "" para ejecutar el servidor:
{8BC3F05E-D86B-11D0-A075-00C04FB68820}

Error: (05/09/2020 09:37:02 PM) (Source: DCOM) (EventID: 10005) (User: )
Description: Error de DCOM "1083" al intentar iniciar el servicio winmgmt con argumentos "" para ejecutar el servidor:
{8BC3F05E-D86B-11D0-A075-00C04FB68820}

Error: (05/09/2020 09:37:02 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: El siguiente controlador de inicio del sistema o de inicio del arranque no se cargó correctamente: 
MBAMSwissArmy

Error: (05/09/2020 09:36:44 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: El servicio Conexión compartida a Internet (ICS) depende del servicio Instrumental de administración de Windows, el cual no pudo iniciarse debido al siguiente error: 
Este servicio se configuró para ejecutarse en un programa ejecutable, pero el programa no implementa el servicio.

Error: (05/09/2020 09:36:44 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: El servicio Aplicación auxiliar IP depende del servicio Instrumental de administración de Windows, el cual no pudo iniciarse debido al siguiente error: 
Este servicio se configuró para ejecutarse en un programa ejecutable, pero el programa no implementa el servicio.

Error: (05/09/2020 09:36:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio DgiVecp no pudo iniciarse debido al siguiente error: 
El sistema no puede encontrar el dispositivo especificado.


Windows Defender:
===================================
Date: 2019-09-21 19:41:11.851
Description: 
El examen de Windows Defender se detuvo antes de completarse.
Id. de examen:{73906222-3806-4599-B6B6-178593CF89DC}
Tipo de examen:AntiSpyware
Parámetros de examen:Examen rápido
Usuario:MI_TARRO\Walter

==================== Información de la memoria =========================== 

BIOS: American Megatrends Inc. 080015 05/16/2008
Placa base: ECS GF7100/7050PVT-M3
Procesador: Intel(R) Core(TM)2 Duo CPU E7500 @ 2.93GHz
Porcentaje de memoria en uso: 89%
RAM física total: 2815.24 MB
RAM física disponible: 302.18 MB
Virtual total: 5630.48 MB
Virtual disponible: 1866.19 MB

==================== Unidades ================================

Drive c: () (Fixed) (Total:223.47 GB) (Free:141.42 GB) NTFS
Drive d: (210916-1) (Fixed) (Total:910.16 GB) (Free:131.9 GB) NTFS
Drive e: (210916-2) (Fixed) (Total:910.16 GB) (Free:306.86 GB) NTFS
Drive f: (210916-3) (Fixed) (Total:974.08 GB) (Free:273.4 GB) NTFS
Drive i: (walter) (Fixed) (Total:100.72 GB) (Free:79.1 GB) NTFS
Drive j: (ws250709 [musica-video-ima]) (Fixed) (Total:185.55 GB) (Free:22.83 GB) NTFS
Drive k: (ws-07-10-2016) (Fixed) (Total:145.84 GB) (Free:75.28 GB) NTFS
Drive l: (WS 18-05-2019) (Fixed) (Total:21.83 GB) (Free:14.82 GB) NTFS
Drive m: (260614 UTILIDADES) (Fixed) (Total:6.72 GB) (Free:0.81 GB) NTFS
Drive n: (280418 FORMULARIOS) (Fixed) (Total:5 GB) (Free:0.11 GB) NTFS

\\?\Volume{fa15edcb-8d50-11e9-bad8-806e6f6e6963}\ (Reservado para el sistema) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS
\\?\Volume{e19c37d4-8d59-11e9-af97-806e6f6e6963}\ (Reservado para el sistema) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS

==================== MBR & Tabla de particiones ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: 49414AEC)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=223.5 GB) - (Type=07 NTFS)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 2794.5 GB) (Disk ID: 03DD17B9)

Partition: GPT.

==========================================================
Disk: 2 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 00290029)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=100.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=364.9 GB) - (Type=0F Extended)

==================== Final  Addition.txt =======================

Hola @WALLY

Tal como te comento @JavierHF el reporte de FRST esta incompleto, le falta toda la cabecera y una parte importante del reporte, se ve que quedo así, elimina ambos informes (FRST.txt y Addition.txt) y vuelve a ejecutar la Herramienta como si fuera la primera vez.

Esperamos los reportes.

Salu2

Es raro , otras veces tu misma me has attendido y no habia pasado por esto vuelvo a pegar

Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x86) Versión: 10-05-2020 02
Ejecutado por Walter (administrador) sobre MI_TARRO (ECS GF7100/7050PVT-M3) (10-05-2020 22:44:50)
Ejecutado desde C:\Users\Walter\Desktop
Perfiles cargados: Walter
Platform: Windows 7 Ultimate Service Pack 1 (X86) Idioma: Español (España, internacional)
Internet Explorer Versión 11 (Navegador predeterminado: FF)
Modo de Inicio: Normal
Tutorial para Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Procesos (Lista blanca) =================

(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)

(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\afwServ.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswEngSrv.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswidsagent.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGSvc.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGUI.exe <2>
(BitTorrent Inc -> BitTorrent Inc.) C:\Users\Walter\AppData\Roaming\uTorrent\helper\helper.exe
(BitTorrent Inc -> BitTorrent Inc.) C:\Users\Walter\AppData\Roaming\uTorrent\updates\3.5.5_45628\utorrentie.exe <2>
(BitTorrent Inc -> BitTorrent Inc.) C:\Users\Walter\AppData\Roaming\uTorrent\uTorrent.exe
(Brio) [Archivo no firmado] C:\Program Files\FolderSize\FolderSize.exe
(Brio) [Archivo no firmado] C:\Program Files\FolderSize\FolderSizeSvc.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files\Dropbox\Client\Dropbox.exe <3>
(Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files\Dropbox\Client\96.4.172\QtWebEngineProcess.exe <3>
(Google LLC -> Google LLC) C:\Program Files\Google\Update\1.3.35.452\GoogleCrashHandler.exe
(Huawei Technologies Co., Ltd. -> ) [Archivo no firmado] C:\Program Files\HiSuite\HandSetService\HuaweiHiSuiteService.exe
(hxxps://www.emule-project.net) [Archivo no firmado] C:\Program Files\eMule\emule.exe
(Mega Limited -> Mega Limited) C:\ProgramData\MEGAsync\MEGAsync.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe <2>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jucheck.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(reaConverter LLC) [Archivo no firmado] C:\Program Files\reaConverter 7 Standard\rc_service.exe
(Talam Group LLC) [Archivo no firmado] C:\Program Files\Nexus Radio\Nexus Radio.exe
(Tweaking LLC -> Tweaking.com) C:\Program Files\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe
(ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\ultracopier.exe

==================== Registro (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Run: [Dropbox] => C:\Program Files\Dropbox\Client\Dropbox.exe [6856192 2020-04-28] (Dropbox, Inc -> Dropbox, Inc.)
HKLM\...\Run: [DjVu To PDF Converter Software.exe] => [X]
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [644552 2019-07-04] (Oracle America, Inc. -> Oracle Corporation)
HKLM\...\Run: [AVGUI.exe] => C:\Program Files\AVG\Antivirus\AvLaunch.exe [144376 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restricción <==== ATENCIÓN
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\Run: [EEDSpeedLauncher] => C:\Windows\system32\eed_ec.dll [2318336 2015-03-18] () [Archivo no firmado]
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\Run: [ultracopier] => C:\Program Files\Ultracopier\ultracopier.exe [1318400 2016-01-02] (ultracopier.first-world.info) [Archivo no firmado]
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\Run: [Folder Size] => C:\Program Files\FolderSize\FolderSize.exe [126976 2013-02-13] (Brio) [Archivo no firmado]
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\Run: [uTorrent] => C:\Users\Walter\AppData\Roaming\uTorrent\uTorrent.exe [2072816 2020-04-04] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\Run: [Nexus Radio] => C:\Program Files\Nexus Radio\Nexus Radio.exe [4616192 2016-11-17] (Talam Group LLC) [Archivo no firmado]
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\Run: [iCloudServices] => C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2020-01-22] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\Run: [iCloudDrive] => C:\Program Files\Common Files\Apple\Internet Services\iCloudDrive.exe [110392 2020-01-22] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\Run: [iCloudPhotos] => C:\Program Files\Common Files\Apple\Internet Services\iCloudPhotos.exe [356664 2020-01-22] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\Run: [eMuleAutoStart] => C:\Program Files\eMule\emule.exe [8029184 2019-05-19] (hxxps://www.emule-project.net) [Archivo no firmado]
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\windows\system32\Gehry.scr [3804306 2019-11-03] (Axialis Software) [Archivo no firmado]
HKU\S-1-5-18\...\Run: [EEDSpeedLauncher] => C:\Windows\system32\eed_ec.dll [2318336 2015-03-18] () [Archivo no firmado]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\81.0.4044.138\Installer\chrmstp.exe [2020-05-09] (Google LLC -> Google LLC)
Startup: C:\Users\Walter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2019-06-13]
ShortcutTarget: MEGAsync.lnk -> C:\ProgramData\MEGAsync\MEGAsync.exe (Mega Limited -> Mega Limited)
GroupPolicy\User: Restricción ? <==== ATENCIÓN
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN
CHR HKLM\SOFTWARE\Policies\Google: Restricción <==== ATENCIÓN

==================== Tareas programadas (Lista blanca) ============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

Task: {04A4D19B-035E-4722-8981-E63B0ACB987E} - System32\Tasks\Tweaking.com - Windows Repair Tray Icon => C:\Program Files\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [218336 2017-05-02] (Tweaking LLC -> Tweaking.com)
Task: {3D2BF0F0-F658-4D23-87EE-8F46A1D48EFE} - System32\Tasks\{A24868D3-94B9-4B11-9C7C-DF425D9BBF77} => C:\Users\Walter\Desktop\Creatusvideos\VIDEOSCRIBRE PORTABLE.exe
Task: {4FA054A4-638E-48A2-B174-FDE8C38FC199} - System32\Tasks\{FBCE8208-16CD-49B1-B1D5-12665F5BAA3E} => C:\Program Files\Psicologia Software\PSM\PSM.exe [1060864 2019-09-11] (Psicología Software) [Archivo no firmado]
Task: {56E7F601-858F-4A73-947B-145A5352B03D} - System32\Tasks\Driver Booster SkipUAC (Walter) => C:\Program Files\IObit\Driver Booster\7.0.2\DriverBooster.exe [7656208 2019-10-16] (IObit Information Technology -> IObit)
Task: {58FC44C4-7593-42B9-A465-E5A4EF69D075} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files\Dropbox\Update\DropboxUpdate.exe [143144 2019-06-15] (Dropbox, Inc -> Dropbox, Inc.)
Task: {5FD4F3F9-4E21-4BDF-9935-84C7DBA47CF4} - System32\Tasks\ASC_SkipUac_Walter => C:\Program Files\IObit\Advanced SystemCare\ASC.exe
Task: {61DE2A6E-CFC5-4142-AB66-34C91738370C} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-1069064461-1938371621-2346768231-1000 => C:\ProgramData\MEGAsync\MEGAupdater.exe [615160 2019-09-17] (Mega Limited -> Mega Limited)
Task: {61EB260B-566A-4946-9347-2E6F4DBEE579} - System32\Tasks\{DE83D52E-D4F8-4EF5-8FFF-470D4F2D93FA} => C:\Windows\system32\pcalua.exe -a C:\Users\Walter\Downloads\ie6setup.exe -d C:\Users\Walter\Downloads
Task: {72EA6128-DDA2-4C44-B291-2A080B5C7FE7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [154920 2019-07-16] (Google Inc -> Google LLC)
Task: {763E2A51-F31F-4946-A05E-7DA3547D3C13} - \CCleanerSkipUAC -> Ningún archivo <==== ATENCIÓN
Task: {7BC9C1D1-D93F-4EB5-93BD-FDB68408558F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [154920 2019-07-16] (Google Inc -> Google LLC)
Task: {838F540F-5AFF-4748-9DEB-0BEB5FEB41E3} - System32\Tasks\{ACF677FD-EE20-4D2A-9D5A-1F2BF2A9487B} => C:\Users\Walter\Desktop\Nueva carpeta (5)\coolpro2.exe
Task: {9612AF67-7BD5-4AAA-8D49-2351CD1B7E58} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [737984 2015-08-30] (@ByELDI -> @ByELDI) [Archivo no firmado]
Task: {C0713DAE-4B35-4D89-8C89-BF447C20A109} - System32\Tasks\HPCustParticipation HP Deskjet 2050 J510 series => C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HPCustPartic.exe [2938984 2012-10-02] (Hewlett Packard -> Hewlett-Packard Co.)
Task: {C7A05351-D5CA-486F-94F4-7D7E4938A881} - System32\Tasks\ASC_PerformanceMonitor => C:\Program Files\IObit\Advanced SystemCare\Monitor.exe
Task: {CBA17BF2-D573-4C82-B457-6EC019142255} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files\Dropbox\Update\DropboxUpdate.exe [143144 2019-06-15] (Dropbox, Inc -> Dropbox, Inc.)
Task: {D14A41CD-A893-4E93-A16E-8B73D992B8D2} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe
Task: {D28D7939-DC5F-4961-87EB-4BD4C33BF063} - System32\Tasks\{7832BF20-85F3-42EF-8697-08D8BB65FE10} => C:\Program Files\Psicologia Software\PSM\PSM.exe [1060864 2019-09-11] (Psicología Software) [Archivo no firmado]
Task: {DF30F05B-875D-4EB4-B545-F51CC68B106A} - System32\Tasks\{3673C61C-E7FE-49B1-BEC0-0C6593E377B5} => C:\Program Files\coolpro2\coolpro2.exe [9187402 2002-04-06] (Syntrillium Software Corporation) [Archivo no firmado]
Task: {E2CAFBC9-D815-4015-8DF0-C1DCB16D638E} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [1441928 2020-02-27] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {E4B88001-D61A-4AF3-9404-3329D787EBB3} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [2860640 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
Task: {F20A688C-D860-43EA-B18D-6DC514837965} - System32\Tasks\{59FDCB39-B2CF-4D20-97BD-9665F4869F8D} => C:\Windows\system32\pcalua.exe -a C:\Users\Walter\Desktop\WHEX197\WHEX197\Portable\setup.exe -d C:\Users\Walter\Desktop\WHEX197\WHEX197\Portable

(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)

Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files\Dropbox\Update\DropboxUpdate.exe

==================== Internet (Lista blanca) ====================

(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)

Winsock: Catalog5 07 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => Ningún archivo 
Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => Ningún archivo 
Winsock: Catalog5 09 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 200.83.1.4 190.160.0.14 200.30.192.15
Tcpip\..\Interfaces\{BDDD6E62-2F7C-479E-BCB2-D39D43C155B7}: [NameServer] 208.67.222.222,208.67.220.220
Tcpip\..\Interfaces\{BDDD6E62-2F7C-479E-BCB2-D39D43C155B7}: [DhcpNameServer] 200.83.1.4 190.160.0.14 200.30.192.15

Internet Explorer:
==================
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.msn.com/?OCID=IE11FREDHP&PC=UF01
BHO: Prot-On Internet Explorer -> {1F27E08D-FBB3-4456-83ED-90976FF4DDA7} -> C:\Program Files\Prot-On\Prot-On Addin Internet Explorer\adxloader.dll [2015-07-23] (Proteccion On-Line, S.L. -> )
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_221\bin\ssv.dll [2019-10-03] (Oracle America, Inc. -> Oracle Corporation)
BHO: Foxit PhantomPDF Create PDF ToolBar Helper -> {A5DD10F7-5ABB-4EEF-B4C8-6748D44DAF2A} -> C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [2017-12-11] (Foxit Software Incorporated -> )
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-10-03] (Oracle America, Inc. -> Oracle Corporation)
Toolbar: HKLM - Foxit PhantomPDF Create PDF ToolBar - {BFD9D8A8-57FF-488A-B919-065EC77CF82F} - C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [2017-12-11] (Foxit Software Incorporated -> )
Toolbar: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000 -> Foxit PhantomPDF Create PDF ToolBar - {BFD9D8A8-57FF-488A-B919-065EC77CF82F} - C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [2017-12-11] (Foxit Software Incorporated -> )

FireFox:
========
FF DefaultProfile: msasqecp.default
FF ProfilePath: C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\msasqecp.default [2019-06-12]
FF ProfilePath: C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release [2020-05-09]
FF DownloadDir: C:\Users\Walter\Desktop\Reales
FF Notifications: Mozilla\Firefox\Profiles\y5vs2xqm.default-release -> hxxps://mail.yahoo.com; hxxps://matemathweb.com; hxxps://www.jagranjosh.com; hxxps://maranhesduve.club; hxxps://forospyware.com; hxxps://www3.lucienmann.pro; hxxps://www.instagram.com; hxxps://mail.google.com; hxxps://www.pinterest.cl; hxxps://web.whatsapp.com; hxxps://r4cp.overiesarticu.info
FF Extension: (All Downloader Professional) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\[email protected] [2019-07-15]
FF Extension: (Bookmarks Organizer) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\[email protected] [2019-09-29]
FF Extension: (Custom Google Visited Link Color) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\[email protected] [2019-06-16]
FF Extension: (Turbo Download Manager (3rd edition)) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\[email protected] [2020-05-09]
FF Extension: (MyJDownloader Browser Extension) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\[email protected] [2019-10-16] [UpdateUrl:hxxps://my.jdownloader.org/extensions/firefox.json]
FF Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\[email protected] [2020-05-09]
FF Extension: (S3.Translator) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\{3a2831f6-37df-4a42-baf6-0b81d5b6a68f}.xpi [2019-10-16] [UpdateUrl:hxxps://clients2.google.com/service/update2/crx]
FF Extension: (YouTube mp3 Downloader) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\{3d1fbee0-687c-4032-9815-0f4519252d44}.xpi [2019-10-18]
FF Extension: (Download Links) - C:\Users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\Extensions\{7b15cfea-42ba-4409-9dd9-00e954f9a9ac}.xpi [2019-07-15]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\FirefoxAddin\FFExtnHTML2PDF.xpi
FF Extension: (Foxit PDF Creator) - C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\FirefoxAddin\FFExtnHTML2PDF.xpi [2017-12-01] [Heredado]
FF Plugin: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2017-12-01] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2017-12-01] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2017-12-01] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2017-12-01] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-10-03] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-10-03] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin HKU\S-1-5-21-1069064461-1938371621-2346768231-1000: @zoom.us/ZoomVideoPlugin -> C:\Users\Walter\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2020-04-04] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)

Chrome: 
=======
CHR Profile: C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default [2020-04-04]
CHR Notifications: Default -> hxxps://www.facebook.com
CHR Extension: (Presentaciones) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-07-16]
CHR Extension: (Documentos) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-07-16]
CHR Extension: (Google Drive) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-07-16]
CHR Extension: (YouTube) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-07-16]
CHR Extension: (DownAlbum) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgjnhhjpfcdhbhlcmmjppicjmgfkppok [2020-03-08]
CHR Extension: (Foxit PDF Creator) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\cifnddnffldieaamihfkhkdgnbhfmaci [2019-08-30]
CHR Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2020-03-31]
CHR Extension: (Hojas de cálculo) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-07-16]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-31]
CHR Extension: (AVG SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbckjcfnjmoiinpgddefodcighgikkgn [2020-01-15]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Gmail) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-07-16]
CHR Extension: (Chrome Media Router) - C:\Users\Walter\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-04]
CHR HKLM\...\Chrome\Extension: [cifnddnffldieaamihfkhkdgnbhfmaci] - C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\ChromeAddin\ChromeAddin.crx [2017-12-01]
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn]

==================== Servicios (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R2 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [319376 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 AVG Firewall; C:\Program Files\AVG\Antivirus\afwServ.exe [881576 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R3 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [4950464 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S2 dbupdate; C:\Program Files\Dropbox\Update\DropboxUpdate.exe [143144 2019-06-15] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files\Dropbox\Update\DropboxUpdate.exe [143144 2019-06-15] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [37384 2020-04-28] (Dropbox, Inc -> Dropbox, Inc.)
R2 FolderSize; C:\Program Files\FolderSize\FolderSizeSvc.exe [114688 2013-02-13] (Brio) [Archivo no firmado]
S3 FoxitPhantomService; C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\FoxitConnectedPDFService.exe [1658944 2017-12-12] (Foxit Software Incorporated -> Foxit Software Inc.)
R2 HuaweiHiSuiteService.exe; C:\Program Files\HiSuite\HandSetService\HuaweiHiSuiteService.exe [154432 2019-08-18] (Huawei Technologies Co., Ltd. -> ) [Archivo no firmado]
R2 reaConverter_service; C:\Program Files\reaConverter 7 Standard\rc_service.exe [5752832 2018-06-05] (reaConverter LLC) [Archivo no firmado]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Windows -> Microsoft Corporation)

===================== Controladores (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R1 avgArPot; C:\Windows\System32\drivers\avgArPot.sys [176048 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgbidsdriver; C:\Windows\System32\drivers\avgbidsdriver.sys [187736 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgbidsh; C:\Windows\System32\drivers\avgbidsh.sys [143192 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgbuniv; C:\Windows\System32\drivers\avgbuniv.sys [56664 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgKbd; C:\Windows\System32\drivers\avgKbd.sys [41520 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 avgMonFlt; C:\Windows\System32\drivers\avgMonFlt.sys [148512 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgNetHub; C:\Windows\System32\drivers\avgNetHub.sys [356072 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R3 avgNetNd6; C:\Windows\System32\DRIVERS\avgNetNd6.sys [28408 2019-10-31] (AVG Technologies CZ, s.r.o. -> AVG Technologies CZ, s.r.o.)
R1 avgRdr; C:\Windows\System32\drivers\avgRdr2.sys [94400 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgRvrt; C:\Windows\System32\drivers\avgRvrt.sys [73624 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgSnx; C:\Windows\System32\drivers\avgSnx.sys [691840 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgSP; C:\Windows\System32\drivers\avgSP.sys [396616 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 avgStm; C:\Windows\System32\drivers\avgStm.sys [177608 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgVmm; C:\Windows\System32\drivers\avgVmm.sys [278232 2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 DFX11_1; C:\Windows\System32\drivers\dfx11_1.sys [24424 2015-08-31] (Power Technology -> Windows (R) Win 7 DDK provider)
R3 DFX12; C:\Windows\System32\drivers\dfx12.sys [26104 2015-11-12] (Power Technology -> Windows (R) Win 7 DDK provider)
S2 DgiVecp; C:\Windows\system32\Drivers\DgiVecp.sys [38400 2009-03-02] (Samsung Electronics Co., Ltd.) [Archivo no firmado]
R3 DLKRTE32; C:\Windows\System32\DRIVERS\DLKRTE32.sys [399360 2011-08-04] (Microsoft Windows Hardware Compatibility Publisher -> D-Link Corp. )
S3 ew_usbccgpfilter; C:\Windows\System32\DRIVERS\ew_usbccgpfilter.sys [15360 2019-08-18] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R3 gHidPnp; C:\Windows\System32\Drivers\gHidPnp.Sys [20480 2019-06-13] (Microsoft Windows Hardware Compatibility Publisher -> )
R2 giveio; C:\Windows\system32\giveio.sys [5248 1996-04-03] () [Archivo no firmado]
R3 gMouUsb; C:\Windows\System32\DRIVERS\gMouUsb.sys [11520 2019-06-13] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 hitmanpro37; C:\Windows\system32\drivers\hitmanpro37.sys [38224 2019-09-21] (SurfRight B.V. -> )
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO32.SYS [23840 2019-11-07] (Martin Malik - REALiX -> REALiX(tm))
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [102272 2019-08-18] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R2 RtNdPt60; C:\Windows\System32\DRIVERS\RtNdPt60.sys [33056 2011-06-15] (Realtek Semiconductor Corp -> Realtek )
S3 RTTEAMPT; C:\Windows\System32\DRIVERS\RtTeam60.sys [40736 2011-06-15] (Realtek Semiconductor Corp -> Realtek Corporation)
S3 RTVLANPT; C:\Windows\System32\DRIVERS\RtVlan620.sys [27752 2011-09-16] (Realtek Semiconductor Corp -> Realtek Corporation)
R2 speedfan; C:\Windows\system32\speedfan.sys [24184 2012-12-29] (SOKNO S.R.L. -> Almico Software)
R2 SSPORT; C:\Windows\system32\Drivers\SSPORT.sys [5120 2017-11-08] (Samsung Electronics) [Archivo no firmado]
S3 TEAM; C:\Windows\System32\DRIVERS\RtTeam60.sys [40736 2011-06-15] (Realtek Semiconductor Corp -> Realtek Corporation)
S3 AscFileControl; \??\C:\Program Files\IObit\Advanced SystemCare\drivers\win7_x86\AscFileControl.sys [X]
S3 AscFileFilter; \??\C:\Program Files\IObit\Advanced SystemCare\drivers\win7_x86\AscFileFilter.sys [X]
S3 AscRegistryFilter; \??\C:\Program Files\IObit\Advanced SystemCare\drivers\win7_x86\AscRegistryFilter.sys [X]
S3 catchme; \??\C:\Users\Walter\AppData\Local\Temp\catchme.sys [X] <==== ATENCIÓN
S3 CLMirrorDriver; system32\DRIVERS\CLMirrorDriver.sys [X]
S3 clwvd8; system32\DRIVERS\clwvd8.sys [X]
S3 cpuz145; \??\C:\Windows\temp\cpuz145\cpuz145_x32.sys [X]
S3 iobit_monitor_server; \??\C:\Program Files\IObit\Advanced SystemCare\drivers\Monitor_x86.sys [X]
S0 MBAMSwissArmy; System32\Drivers\mbamswissarmy.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)


==================== Un mes (creado) ===================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-05-10 22:44 - 2020-05-10 22:45 - 000028362 _____ C:\Users\Walter\Desktop\FRST.txt
2020-05-10 22:44 - 2020-05-10 22:44 - 000000000 ____D C:\Users\Walter\Desktop\FRST-OlderVersion
2020-05-10 02:14 - 2020-05-10 22:44 - 002011648 _____ (Farbar) C:\Users\Walter\Desktop\FRST.exe
2020-05-10 02:13 - 2020-05-10 02:13 - 000000000 ____D C:\Users\Walter\AppData\Local\SaraResults
2020-05-10 02:08 - 2020-05-10 02:08 - 002011136 _____ (Farbar) C:\Users\Walter\Downloads\FRST.exe
2020-05-10 02:07 - 2020-05-10 02:07 - 000000000 ____D C:\Users\Walter\AppData\Local\SaRALogs
2020-05-10 02:06 - 2020-05-10 02:07 - 000000000 ____D C:\Users\Walter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Corporation
2020-05-10 02:06 - 2020-05-10 02:06 - 000000520 _____ C:\Users\Walter\Desktop\Asistente para soporte y recuperación de Microsoft.appref-ms
2020-05-10 02:01 - 2020-05-10 02:13 - 000000000 ____D C:\Users\Walter\AppData\Local\Deployment
2020-05-09 21:55 - 2020-05-09 21:56 - 001295576 _____ (Google LLC) C:\Users\Walter\Downloads\ChromeSetup.exe
2020-05-09 21:52 - 2020-05-09 21:52 - 000319736 _____ (Mozilla) C:\Users\Walter\Downloads\Firefox Installer.exe
2020-05-09 21:43 - 2020-05-09 21:43 - 000000000 ____D C:\Users\Lisyy\AppData\Local\Microsoft Help
2020-05-09 21:41 - 2020-05-09 21:41 - 000000000 ____D C:\Users\Lisyy\AppData\Roaming\ReaConverter7
2020-05-09 21:37 - 2020-05-10 17:27 - 000000000 ____D C:\Users\Walter\AppData\LocalLow\uTorrent
2020-05-09 21:21 - 2020-05-09 21:21 - 000026462 _____ C:\ComboFix.txt
2020-05-09 21:17 - 2020-05-09 21:17 - 000000000 ____D C:\$AV_AVG
2020-05-09 21:03 - 2011-06-26 03:45 - 000256000 _____ C:\Windows\PEV.exe
2020-05-09 21:03 - 2010-11-07 14:20 - 000208896 _____ C:\Windows\MBR.exe
2020-05-09 21:03 - 2009-04-20 01:56 - 000060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2020-05-09 21:03 - 2000-08-30 21:00 - 000518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2020-05-09 21:03 - 2000-08-30 21:00 - 000406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2020-05-09 21:03 - 2000-08-30 21:00 - 000098816 _____ C:\Windows\sed.exe
2020-05-09 21:03 - 2000-08-30 21:00 - 000080412 _____ C:\Windows\grep.exe
2020-05-09 21:03 - 2000-08-30 21:00 - 000068096 _____ C:\Windows\zip.exe
2020-05-09 21:02 - 2020-05-09 21:21 - 000000000 ____D C:\Qoobox
2020-05-09 21:02 - 2020-05-09 21:21 - 000000000 ____D C:\ComboFix
2020-05-09 21:02 - 2020-05-09 21:19 - 000000000 ____D C:\Windows\erdnt
2020-05-09 20:50 - 2020-05-09 21:47 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Herramientas de Microsoft Office 2016
2020-05-09 20:47 - 2020-05-09 21:47 - 000000000 ____D C:\Program Files\Microsoft Office
2020-05-09 20:47 - 2020-05-09 20:47 - 000000000 ___RD C:\MSOCache
2020-05-09 20:47 - 2020-05-09 20:47 - 000000000 ____D C:\Users\Walter\AppData\Local\Microsoft Help
2020-05-09 20:45 - 2020-05-09 20:45 - 000000000 ____D C:\Windows\system32\appmgmt
2020-05-09 20:19 - 2020-05-09 20:19 - 000001021 _____ C:\Users\Walter\Desktop\MEGAsync.lnk
2020-05-09 20:19 - 2020-05-09 20:19 - 000000000 ____D C:\Users\Walter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync
2020-05-09 20:19 - 2020-05-09 20:19 - 000000000 ____D C:\Users\Walter\AppData\Local\MEGAsync
2020-05-09 20:15 - 2020-05-09 20:17 - 035158928 _____ (MEGA Limited) C:\Users\Walter\Desktop\MEGAsyncSetup.exe
2020-05-09 19:39 - 2020-05-09 19:39 - 000000366 _____ C:\Users\Walter\Desktop\dia de madre.txt
2020-05-09 19:37 - 2020-05-10 00:36 - 000000508 _____ C:\Users\Walter\Desktop\Nuevo documento de texto (2).txt
2020-05-09 18:44 - 2020-05-09 18:45 - 000000000 ____D C:\Users\Walter\AppData\Local\MSfree Inc
2020-05-09 18:40 - 2020-05-09 18:40 - 000000000 ____D C:\Users\Walter\Desktop\kms activador-20200509T213922Z-001
2020-05-09 18:39 - 2020-05-09 18:39 - 003474405 _____ C:\Users\Walter\Desktop\kms activador-20200509T213922Z-001.zip
2020-05-09 18:20 - 2020-05-09 18:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
2020-05-09 18:20 - 2010-12-05 23:16 - 000090112 _____ (Vestris Inc.) C:\Windows\system32\Vestris.ResourceLib.dll
2020-05-04 22:19 - 2020-05-04 22:19 - 002862599 _____ C:\Users\Walter\Desktop\licencia.pdf
2020-05-03 19:59 - 2020-05-09 18:33 - 000000000 ____D C:\Users\Walter\Desktop\490_MyCrochet
2020-05-03 19:57 - 2020-05-03 19:57 - 000127309 _____ C:\Users\Walter\Desktop\490_MyCrochet.zip
2020-05-03 19:53 - 2020-05-03 19:53 - 003757863 _____ C:\Users\Walter\Desktop\Revista de crochet.pdf
2020-05-03 19:45 - 2020-05-03 19:46 - 000000000 ____D C:\Users\Walter\Desktop\Revista16
2020-05-03 19:44 - 2014-05-17 00:20 - 005244457 _____ C:\Users\Walter\Desktop\Revista16.rar
2020-05-03 17:31 - 2020-05-03 17:31 - 003139242 _____ C:\Users\Walter\Desktop\itaa.pdf
2020-05-03 17:22 - 2020-05-03 17:22 - 000002727 _____ C:\Users\Walter\Desktop\Nuevo documento de texto.bat
2020-05-03 17:22 - 2020-05-03 17:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2020-05-03 17:21 - 2020-05-03 17:21 - 000000000 _____ C:\Users\Walter\Desktop\Nuevo documento de texto.txt
2020-05-03 17:09 - 2020-05-09 18:20 - 000003366 _____ C:\Windows\system32\Tasks\AutoPico Daily Restart
2020-05-03 17:07 - 2020-05-03 17:07 - 001971426 _____ C:\Users\Walter\Desktop\Activador auto pico.rar
2020-05-03 17:07 - 2020-05-03 17:07 - 000000000 ____D C:\Users\Walter\Desktop\Activador auto pico
2020-05-03 16:48 - 2020-05-03 16:48 - 000000000 ____D C:\Users\Walter\Desktop\archive
2020-05-03 16:48 - 2020-05-03 16:47 - 000323801 _____ C:\Users\Walter\Desktop\archive.zip
2020-05-03 16:47 - 2020-05-03 16:47 - 000000000 ____D C:\Users\Walter\Desktop\ita
2020-05-03 16:46 - 2020-05-03 16:46 - 000000000 ____D C:\Users\Walter\Desktop\Reales
2020-05-03 16:43 - 2020-05-03 15:36 - 000284864 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\avgBoot.exe
2020-05-03 16:43 - 2020-05-03 15:36 - 000177608 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgStm.sys
2020-05-03 16:43 - 2020-05-03 15:36 - 000148512 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgMonFlt.sys
2020-05-03 15:46 - 2020-05-03 15:52 - 000000000 ____D C:\Users\Walter\Desktop\ANTES DE MAYO
2020-05-03 15:38 - 2020-05-09 21:34 - 000117992 _____ C:\Users\Lisyy\AppData\Local\GDIPFONTCACHEV1.DAT
2020-05-03 15:36 - 2020-05-03 15:37 - 000356072 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgNetHub.sys
2020-05-03 15:36 - 2020-05-03 15:36 - 000177608 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\asw2d1190390ed607b5.tmp
2020-05-03 15:36 - 2020-05-03 15:36 - 000148512 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\aswb2722a6320cc56fa.tmp
2020-04-28 16:55 - 2020-04-28 16:55 - 000037384 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe
2020-04-28 16:55 - 2020-04-28 16:55 - 000036848 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys
2020-04-28 16:55 - 2020-04-28 16:55 - 000036848 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys
2020-04-28 16:55 - 2020-04-28 16:55 - 000036848 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys

==================== Un mes (modificado) ==================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-05-10 22:45 - 2019-06-23 21:02 - 000000000 ____D C:\FRST
2020-05-10 22:45 - 2019-06-13 18:03 - 000000000 ____D C:\Users\Walter\AppData\Roaming\uTorrent
2020-05-10 19:09 - 2019-06-15 23:52 - 000000938 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2020-05-10 17:39 - 2009-07-14 01:34 - 000026544 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2020-05-10 17:39 - 2009-07-14 01:34 - 000026544 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2020-05-10 17:27 - 2019-06-15 23:52 - 000000934 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2020-05-10 17:27 - 2019-06-13 18:46 - 000000000 ____D C:\Users\Walter\AppData\Local\BitTorrentHelper
2020-05-10 17:24 - 2009-07-14 01:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-05-10 17:24 - 2009-07-14 01:33 - 000450872 _____ C:\Windows\system32\FNTCACHE.DAT
2020-05-10 02:39 - 2019-10-31 20:38 - 000000000 ____D C:\ProgramData\Avg
2020-05-10 02:01 - 2019-06-15 21:55 - 000000000 ____D C:\Users\Walter\AppData\Local\Apps\2.0
2020-05-09 21:49 - 2019-06-12 18:18 - 000117992 _____ C:\Users\Walter\AppData\Local\GDIPFONTCACHEV1.DAT
2020-05-09 21:47 - 2009-07-13 23:37 - 000000000 ____D C:\Program Files\Common Files\System
2020-05-09 21:47 - 2009-07-13 23:37 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2020-05-09 21:47 - 2009-07-13 23:04 - 000000433 _____ C:\Windows\win.ini
2020-05-09 21:40 - 2020-04-03 13:49 - 000000464 __RSH C:\Users\Lisyy\ntuser.pol
2020-05-09 21:40 - 2020-04-03 13:49 - 000000000 ____D C:\Users\Lisyy
2020-05-09 21:18 - 2009-07-13 23:04 - 000000243 _____ C:\Windows\system.ini
2020-05-09 21:14 - 2019-07-17 02:53 - 000000000 ____D C:\Program Files\DFX
2020-05-09 21:14 - 2019-06-12 17:39 - 000000000 ____D C:\Users\Walter
2020-05-09 21:02 - 2019-06-12 17:55 - 000000000 ____D C:\Users\Walter\AppData\LocalLow\Mozilla
2020-05-09 20:45 - 2020-02-27 12:06 - 000000000 ____D C:\Program Files\Common Files\Apple
2020-05-09 20:45 - 2019-10-22 22:11 - 000000000 ____D C:\ProgramData\Apple
2020-05-09 20:39 - 2020-02-27 12:26 - 000000000 ___RD C:\Users\Walter\iCloudDrive
2020-05-09 20:39 - 2020-02-27 12:07 - 000000000 ____D C:\Users\Walter\AppData\Roaming\Apple Computer
2020-05-09 20:31 - 2019-06-12 17:55 - 000000000 ____D C:\Program Files\Mozilla Maintenance Service
2020-05-09 20:31 - 2019-06-12 17:55 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-05-09 18:20 - 2019-06-12 18:16 - 000000000 ____D C:\Program Files\KMSpico
2020-05-09 17:43 - 2019-07-16 17:31 - 000002168 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-05-03 18:29 - 2019-10-31 20:48 - 000001914 _____ C:\Users\Public\Desktop\AVG Internet Security.lnk
2020-05-03 18:29 - 2019-10-31 20:48 - 000001914 _____ C:\ProgramData\Desktop\AVG Internet Security.lnk
2020-05-03 17:26 - 2019-11-14 22:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google
2020-05-03 17:22 - 2019-06-15 23:52 - 000000000 ____D C:\Program Files\Dropbox
2020-05-03 16:47 - 2019-09-28 00:57 - 000000000 ____D C:\Users\Walter\Desktop\doublekiller
2020-05-03 16:43 - 2019-10-31 20:48 - 000004162 _____ C:\Windows\system32\Tasks\Antivirus Emergency Update
2020-05-03 16:43 - 2009-07-13 23:37 - 000000000 ____D C:\Windows\system32\NDF
2020-05-03 16:42 - 2020-02-24 23:20 - 000000000 ____D C:\Users\Walter\AppData\Local\ElevatedDiagnostics
2020-05-03 15:37 - 2019-10-31 20:47 - 000396616 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSP.sys
2020-05-03 15:36 - 2019-10-31 20:52 - 000187736 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsdriver.sys
2020-05-03 15:36 - 2019-10-31 20:52 - 000143192 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsh.sys
2020-05-03 15:36 - 2019-10-31 20:52 - 000056664 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbuniv.sys
2020-05-03 15:36 - 2019-10-31 20:52 - 000041520 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgKbd.sys
2020-05-03 15:36 - 2019-10-31 20:47 - 000691840 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSnx.sys
2020-05-03 15:36 - 2019-10-31 20:47 - 000278232 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgVmm.sys
2020-05-03 15:36 - 2019-10-31 20:47 - 000176048 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgArPot.sys
2020-05-03 15:36 - 2019-10-31 20:47 - 000094400 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRdr2.sys
2020-05-03 15:36 - 2019-10-31 20:47 - 000073624 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRvrt.sys

==================== Archivos en la raíz de algunos directorios ========

2019-12-25 02:05 - 2019-12-27 21:58 - 000038081 _____ () C:\Users\Walter\AppData\Roaming\downloads.json
2019-08-17 01:07 - 2019-08-17 01:08 - 1215017038 _____ () C:\Users\Walter\AppData\Roaming\job6.tif
2019-08-17 01:07 - 2019-08-17 01:07 - 000223380 _____ () C:\Users\Walter\AppData\Roaming\PPL.jpg
2019-11-01 16:08 - 2019-11-01 16:11 - 000000132 _____ () C:\Users\Walter\AppData\Roaming\Prefs. de formato PNG de Adobe CS6
2019-06-15 14:39 - 2019-06-15 14:39 - 000000001 _____ () C:\Users\Walter\AppData\Local\llftool.4.30.agreement
2019-10-19 16:19 - 2019-10-19 16:19 - 000000218 _____ () C:\Users\Walter\AppData\Local\recently-used.xbel
2019-06-23 21:08 - 2019-06-23 21:08 - 000007605 _____ () C:\Users\Walter\AppData\Local\Resmon.ResmonCfg

==================== FLock ==============================

2019-12-27 22:42 C:\Users\Walter\Application Data

==================== SigCheck ============================

(No existe una corrección automática para los archivos que no pasan la verificación.)


LastRegBack: 2020-05-03 18:03
==================== Final de FRST.txt ========================

ahi va el otro espero que ahora este bien


Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x86) Versión: 10-05-2020 02
Ejecutado por Walter (10-05-2020 22:46:27)
Ejecutado desde C:\Users\Walter\Desktop
Windows 7 Ultimate Service Pack 1 (X86) (2019-06-12 20:39:00)
Modo de Inicio: Normal
==========================================================


==================== Cuentas: =============================

Administrador (S-1-5-21-1069064461-1938371621-2346768231-500 - Administrator - Disabled)
Invitado (S-1-5-21-1069064461-1938371621-2346768231-501 - Limited - Disabled)
Lisyy (S-1-5-21-1069064461-1938371621-2346768231-1001 - Administrator - Enabled) => C:\Users\Lisyy
Walter (S-1-5-21-1069064461-1938371621-2346768231-1000 - Administrator - Enabled) => C:\Users\Walter

==================== Centro de Seguridad ========================

(Si una entrada es incluida en el fixlist, será eliminada.)


==================== Programas instalados ======================

(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)

µTorrent (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\uTorrent) (Version: 3.5.5.45628 - BitTorrent Inc.)
Advanced PDF Password Recovery (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\Advanced PDF Password Recovery) (Version: 5.0 - ElcomSoft Co. Ltd.)
Advanced RAR Repair v1.2 (HKLM\...\Advanced RAR Repair v1.2) (Version:  - )
AllDup 4.4.8 (HKLM\...\AllDup_is1) (Version: 4.4.8 - Michael Thummerer Software Design)
Asistente para soporte y recuperación de Microsoft (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\f9a89bd2a46a7606) (Version: 17.0.4589.1 - Microsoft Corporation)
AVG Internet Security (HKLM\...\AVG Antivirus) (Version: 20.2.3116 - AVG Technologies)
Backup and Sync from Google (HKLM\...\{DFF4DF6D-C6E5-455A-B12A-F2489DA136A8}) (Version: 3.49.9800.0000 - Google, Inc.)
BitRecover DJVU Converter Wizard (HKLM\...\BitRecover DJVU Converter Wizard_is1) (Version:  - BitRecover)
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
Card Reader Patch 1.0 for Windows 7 (HKLM\...\Card Reader Windows 7 Patch_is1) (Version:  - )
CCleaner (HKLM\...\CCleaner) (Version:  - )
CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.8.7042 - CDBurnerXP)
Common Desktop Agent (HKLM\...\{031A0E14-0413-4C97-9772-2639B782F46F}) (Version: 1.62.0 - OEM) Hidden
Cool Edit Pro 2.0 (HKLM\...\Cool Edit Pro 2.0) (Version:  - )
CrystalDiskInfo 8.3.1 (HKLM\...\CrystalDiskInfo_is1) (Version: 8.3.1 - Crystal Dew World)
CutMaster 2D Professional  1.3.3.1 (HKLM\...\{793D175B-2E6E-4CF7-AA75-FDA0691173E4}) (Version: 1.3.3.1 - CODE011)
DFX (HKLM\...\DFX) (Version: 12.017.0.0 - Power Technology)
DGE-560T Gigabit PCI Express Ethernet Adapter (HKLM\...\{6E01C07D-A44B-406E-A0DC-DEF62181E6E7}) (Version: 7.47.706.2011 - D-Link)
Diagnóstico de impresoras Samsung (HKLM\...\Samsung Printer Diagnostics) (Version: 1.0.0.15 - Samsung Electronics Co., Ltd.)
DjVu To PDF Converter Software (HKLM\...\DjVu To PDF Converter Software_is1) (Version:  - Sobolsoft)
DjVuLibre DjView  3.5.27+4.11 (HKLM\...\DjVuLibre+DjView) (Version: 3.5.27+4.11 - DjVuZone)
Driver Booster 7 (HKLM\...\Driver Booster_is1) (Version: 7.0.2 - IObit)
Dropbox (HKLM\...\Dropbox) (Version: 96.4.172 - Dropbox, Inc.)
Dropbox Update Helper (HKLM\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.295.1 - Dropbox, Inc.) Hidden
eMule (HKLM\...\eMule) (Version:  - )
Evince 2.32.0 (HKLM\...\{923638DC-4B4D-4678-BA52-2905B6BAA431}) (Version: 2.32.0 - (Custom build))
File Magic (HKLM\...\File Magic_is1) (Version: 1.9.8.19 - Solvusoft Corporation)
Folder Size (HKLM\...\{FC8D21C8-7B29-4104-ADB0-FEE9CA1C7922}) (Version: 2.6 - Brio)
Foxit Advanced PDF Editor 3 (HKLM\...\B521582C-6BE3-491D-BCC8-FFB8301298E9_is1) (Version: 3.0.5.0 - Foxit Corporation)
Foxit PhantomPDF (HKLM\...\{7BDAB862-E01F-11E7-986C-000C296BF29B}) (Version: 9.0.1.1049 - Foxit Software Inc.)
Generador de Ejercicios de Matemáticas (HKLM\...\Generador de Ejercicios de Matemáticas_is1) (Version:  - )
GeoGebra Classic (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\GeoGebra_6) (Version: 6.0.564 - International GeoGebra Institute)
Google Chrome (HKLM\...\Google Chrome) (Version: 81.0.4044.138 - Google LLC)
Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
HiSuite (HKLM\...\Hi Suite) (Version: 9.1.0.309 - )
HP Deskjet 2050 J510 series Ayuda (HKLM\...\{7A3DF2E2-CF13-44FB-A93E-F71D5381DB3F}) (Version: 140.0.61.61 - Hewlett Packard)
HP Deskjet 2050 J510 series Estudio para la mejora del producto (HKLM\...\{2ED491F9-E343-45CC-A624-B538615FAABD}) (Version: 28.0.1313.0 - Hewlett-Packard Co.)
HP Deskjet 2050 J510 series Software básico del dispositivo (HKLM\...\{A3FF4458-CC45-4EBC-A7C3-0A843BDC9177}) (Version: 28.0.1313.0 - Hewlett-Packard Co.)
HP Photo Creations (HKLM\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Update (HKLM\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HxD Hex Editor version 1.7.7.0 (HKLM\...\HxD Hex Editor_is1) (Version: 1.7.7.0 - Maël Hörz)
iCloud (HKLM\...\{C2ECA4B2-8D56-47B7-8CAE-1E3109B78AC2}) (Version: 7.17.0.13 - Apple Inc.)
Jamorama Bonus Software (HKLM\...\{58BA953D-D4CD-4F0D-BAD8-0AAF34634E8E}) (Version: 1.0 - Rock Star Recipes)
Java 8 Update 221 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180221F0}) (Version: 8.0.2210.11 - Oracle Corporation)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
KMSpico (HKLM\...\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1) (Version:  - )
LizardTech DjVu Control (HKLM\...\{105CFC7C-6992-11D5-BD9D-000102C10FD8}) (Version:  - )
MathType 6 (HKLM\...\DSMT6) (Version: 6.9 - Design Science, Inc.)
MEGAsync (HKLM\...\MEGAsync) (Version:  - Mega Limited)
Merlín Generador de Ejercicios (HKLM\...\Merlín Generador de Ejercicios_is1) (Version:  - )
Microsoft .NET Framework 4.8 (español) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 3082) (Version: 4.8.03761 - Microsoft Corporation)
Microsoft .NET Framework 4.8 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.8.03761 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\OneDriveSetup.exe) (Version: 17.3.4604.0120 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61187 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.7523 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.7523 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.23.27820 (HKLM\...\{45231ab4-69fd-486a-859d-7a59fcd11013}) (Version: 14.23.27820.0 - Microsoft Corporation)
Microsoft Visual F# 2.0 Runtime (HKLM\...\{85467CBC-7A39-33C9-8940-D72D9269B84F}) (Version: 10.0.40219 - Microsoft Corporation)
Mozilla Firefox 75.0 (x86 es-CL) (HKLM\...\Mozilla Firefox 75.0 (x86 es-CL)) (Version: 75.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 75.0.0.7398 - Mozilla)
Nexus Radio (HKLM\...\{8763793B-4D7D-49C8-A859-5C582EC02640}) (Version: 5.7.1 - Talam Group, LLC)
NVIDIA Controlador de audio HD 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10.57.35 - NVIDIA Corporation)
Panel de control de NVIDIA 309.08 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 309.08 - NVIDIA Corporation) Hidden
Photoshop Cs6 versión Final (HKLM\...\{5CF1F901-ED27-4C34-A9CE-A10E8C1DDDB2}_is1) (Version: Final - Braian Urzagaste)
Prot-On (HKLM\...\{49706C83-0F5C-468B-BAF6-FFA902F84232}_is1) (Version: 3.2.0 - Grupo CMC)
Prot-On Addin Internet Explorer (HKLM\...\{E2B9C2B3-EE8E-4553-9460-FA9D48413A03}) (Version: 1.2.6 - Prot-On) Hidden
Prot-On Client (HKLM\...\{320F5315-0391-49FF-A604-5665205969E8}) (Version: 3.2.0 - Prot-On) Hidden
Prot-On MSOffice Addin (HKLM\...\{950BCEE9-BC9C-4292-94D7-880CF1535273}) (Version: 3.1.0 - Prot-On) Hidden
Prot-On MSOutlook Addin (HKLM\...\{ACCA97CF-C308-480A-9995-C5606B36F16D}) (Version: 3.0.2 - Prot-On) Hidden
Prot-On VLC Player (HKLM\...\{42DFEF82-E0A0-4572-8544-FD69A158ABEC}) (Version: 1.0.0 - Prot-On) Hidden
Prot-On Windows Explorer Addin (HKLM\...\{D70CFAFA-CBD5-44F6-AE7A-C4776043AA2A}) (Version: 3.0.1 - Prot-On) Hidden
PSM (HKLM\...\{8C9FEBED-FEB5-4AC5-BB1A-2E4FD243DB32}) (Version: 1.0.0.0 - )
reaConverter 7 Standard (HKLM\...\{659727C6-7267-4076-803B-351A467F6CAF}_is1) (Version: 7.4.08.0 - reaConverter LLC)
Realtek Ethernet Diagnostic Utility (HKLM\...\{DADC7AB0-E554-4705-9F6A-83EA82ED708E}) (Version: 1.00.0000 - Realtek)
Samsung Easy Printer Manager (HKLM\...\Samsung Easy Printer Manager) (Version: 2.00.01.24 - HP Printing Korea Co., Ltd.)
Samsung ML-2160 Series (HKLM\...\Samsung ML-2160 Series) (Version: 1.23 (08-04-2015) - Samsung Electronics Co., Ltd.)
Samsung Printer Live Update (HKLM\...\Samsung Printer Live Update) (Version: 1.01.00:04(2013-04-22) - Samsung Electronics Co., Ltd.)
Samsung Scan Process Machine (HKLM\...\Samsung Scan Process Machine) (Version: 1.03.05.28 - Samsung Electronics Co., Ltd.) Hidden
Screamer Radio (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\Screamer) (Version: 1.7265.31862 - Steamcore)
SpeedFan (remove only) (HKLM\...\SpeedFan) (Version:  - )
TechSmith Screen Capture Codec (HKLM\...\{84FE50F5-B0F3-4D18-8BE8-A4DEEE0C37AD}) (Version: 4.1.1.0 - TechSmith Corporation) Hidden
Teleport Pro (HKLM\...\Teleport Pro) (Version: 1.72 - Tennyson Maxwell Information Systems, Inc.)
TeraCopy version 3.26 (HKLM\...\TeraCopy_is1) (Version: 3.26 - Code Sector)
Total Video Converter 3.71 100812 (HKLM\...\Total Video Converter 3.71_is1) (Version:  - EffectMatrix Inc.)
Tweaking.com - Windows Repair (HKLM\...\Tweaking.com - Windows Repair) (Version: 4.4.5 - Tweaking.com)
Ultracopier 2.0.4.6 (HKLM\...\Ultracopier) (Version: 2.0.4.6 - Ultracopier)
uTorrent Web (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\utweb) (Version: 0.22.0 - BitTorrent, Inc.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.8 - VideoLAN)
WinHTTrack Website Copier 3.44-1 (HKLM\...\WinHTTrack Website Copier_is1) (Version: 3.44.1 - HTTrack)
WinRAR 5.40 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
Wolfram Mathematica 11.3 (M-WIN-L 11.3.0 5944644) (HKLM\...\M-WIN-L 11.3.0 5944644_is1) (Version: 11.3.0 - Wolfram Research, Inc.)
WolframScript (A-WIN32-WolframScript 11.3.0 2018030401) (HKLM\...\{F8D88AF3-43F1-4818-B6DB-0D38F8E42833}) (Version: 11.3.49 - Wolfram Research, Inc.)
Wondershare Helper Compact 2.5.2 (HKLM\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.5.2 - Wondershare)
Wondershare PDFelement 7 Pro(Build 7.0.3) (HKLM\...\{77078E40-A92E-47FD-A0F6-168A4BF6CF3A}_is1) (Version: 7.0.3.4309 - Wondershare Software Co.,Ltd.)
ZaraRadio 1.6.2 (HKLM\...\ZaraRadio_is1) (Version:  - Kero Systems S.L.)
Zoom (HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\...\ZoomUMX) (Version: 4.6 - Zoom Video Communications, Inc.)

==================== Personalizado CLSID (Lista blanca): ==============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{0000002F-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{00020421-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{00020422-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{00020423-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{00020425-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{0002E005-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\OLE32.DLL (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{0713E8A2-850A-101B-AFC0-4210102A8DA7}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{0713E8D2-850A-101B-AFC0-4210102A8DA7}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{0BE35203-8F91-11CE-9DE3-00AA004BB851}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{0BE35204-8F91-11CE-9DE3-00AA004BB851}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{1EFB6596-857C-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{2C247F23-8591-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{35053A22-8589-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{373FF7F0-EB8B-11CD-8820-08002B2F4F5A}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{46763EE0-CAB2-11CE-8C20-00AA0051E5D4}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{48E59293-9880-11CF-9754-00AA00C00908}\InprocServer32 -> C:\Windows\system32\msinet.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{58DA8D8A-9D6A-101B-AFC0-4210102A8DA7}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{58DA8D8F-9D6A-101B-AFC0-4210102A8DA7}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{612A8624-0FB3-11CE-8747-524153480004}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{66833FE6-8583-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{68D44A27-FFB6-4B89-A3E5-7B0E50A7AB33}\InprocServer32 -> C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\catchcopy32.dll () [Archivo no firmado]
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{6B7E638F-850A-101B-AFC0-4210102A8DA7}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{8E3867A3-8586-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{9ED94440-E5E8-101B-B9B5-444553540000}\InprocServer32 -> C:\Windows\system32\comctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{B196B286-BAB4-101A-B69C-00AA00341D07}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{BDD1F04B-858B-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{C1A8AF25-1257-101B-8FB0-0020AF039CA3}\InprocServer32 -> C:\Windows\system32\mci32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{C74190B6-8589-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{D5DE8D20-5BB8-11D1-A1E3-00A0C90F2731}\InprocServer32 -> C:\Windows\System32\msvbvm60.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{DD9DA666-8594-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{F08DF954-8592-11D1-B16A-00C0F0283628}\InprocServer32 -> C:\Windows\system32\mscomctl32.ocx (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1069064461-1938371621-2346768231-1000_Classes\CLSID\{F9043C85-F6F2-101A-A3C9-08002B2F49FB}\InprocServer32 -> C:\Windows\system32\comdlg32.ocx (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ShellIconOverlayIdentifiers: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [  0Prot-On] -> {E3A2C9DF-E2E6-459E-9BFD-11EAB3B300CA} => C:\Program Files\Prot-On\Prot-On Windows Explorer Addin\ProtOnShellExt.dll [2017-11-21] (Cognicase Management Consulting, S.L. -> Protección On-Line)
ShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll [2020-04-06] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll [2020-04-06] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll [2020-04-06] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Ningún archivo
ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [Foxit_ConvertToPDF] -> {C5269811-4A29-4818-A4BB-111F9FC63A5F} => C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x86.dll [2017-12-11] (Foxit Software Incorporated -> Foxit Software Inc.)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu32.dll [2020-04-06] (Google LLC -> Google)
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams.dll [2020-01-22] (Apple Inc. -> Apple Inc.)
ContextMenuHandlers1: [Prot-On] -> {88514224-0423-46C9-9A3D-3DFD29BF676D} => C:\Program Files\Prot-On\Prot-On Windows Explorer Addin\ProtOnShellExt.dll [2017-11-21] (Cognicase Management Consulting, S.L. -> Protección On-Line)
ContextMenuHandlers1: [ReaConverter7_std] -> {0C83C06D-41F5-4666-B1C2-0923EA75EB10} => C:\Program Files\reaConverter 7 Standard\ncontext.dll [2018-06-05] () [Archivo no firmado]
ContextMenuHandlers1: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> )
ContextMenuHandlers1: [TVCShellExt] -> {4E33A7F5-8083-4C08-9D45-C5CED88F5C04} => C:\Program Files\Total Video Converter\TVCShellExt.dll [2010-07-29] () [Archivo no firmado]
ContextMenuHandlers1: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ContextMenuHandlers2: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> )
ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Ningún archivo
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu32.dll [2020-04-06] (Google LLC -> Google)
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll [2020-03-16] (Mega Limited -> )
ContextMenuHandlers4: [MSSE] -> {0365FE2C-F183-4091-AC82-BFC39FB75C49} =>  -> Ningún archivo
ContextMenuHandlers4: [Prot-On] -> {88514224-0423-46C9-9A3D-3DFD29BF676D} => C:\Program Files\Prot-On\Prot-On Windows Explorer Addin\ProtOnShellExt.dll [2017-11-21] (Cognicase Management Consulting, S.L. -> Protección On-Line)
ContextMenuHandlers4: [ReaConverter7_std] -> {0C83C06D-41F5-4666-B1C2-0923EA75EB10} => C:\Program Files\reaConverter 7 Standard\ncontext.dll [2018-06-05] () [Archivo no firmado]
ContextMenuHandlers4: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> )
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files\Dropbox\Client\DropboxExt.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2015-01-30] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers5: [Prot-On] -> {88514224-0423-46C9-9A3D-3DFD29BF676D} => C:\Program Files\Prot-On\Prot-On Windows Explorer Addin\ProtOnShellExt.dll [2017-11-21] (Cognicase Management Consulting, S.L. -> Protección On-Line)
ContextMenuHandlers6: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2020-05-03] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers6: [Fast Explorer] -> {693BE9C0-BEC3-11D2-B4C1-C33BBD3AD64B} => C:\ProgramData\AllDup\FEShlExt.dll [2008-08-21] (Alex Yakovlev) [Archivo no firmado]
ContextMenuHandlers6: [Foxit_ConvertToPDF] -> {C5269811-4A29-4818-A4BB-111F9FC63A5F} => C:\Program Files\Foxit Softwaree\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x86.dll [2017-12-11] (Foxit Software Incorporated -> Foxit Software Inc.)
ContextMenuHandlers6: [ReaConverter7_std] -> {0C83C06D-41F5-4666-B1C2-0923EA75EB10} => C:\Program Files\reaConverter 7 Standard\ncontext.dll [2018-06-05] () [Archivo no firmado]
ContextMenuHandlers6: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> )
ContextMenuHandlers6: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Lista blanca) ====================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Drivers32: [vidc.tscc] => C:\Windows\system32\tsccvid.dll [854016 2016-12-12] (TechSmith Corporation) [Archivo no firmado]

==================== Accesos directos & WMI ========================

==================== Módulos cargados (Lista blanca) =============

2007-07-24 09:39 - 2007-07-24 09:39 - 000475136 _____ ( (DMSoft Technologies) [Archivo no firmado])  [El archivo está en uso ] C:\Program Files\Nexus Radio\SkinCrafter2.dll
2002-08-29 14:28 - 2002-08-29 14:28 - 000132350 _____ () [Archivo no firmado] C:\Program Files\Nexus Radio\CurlLib.dll
2016-09-02 23:25 - 2020-02-19 20:36 - 000279040 _____ () [Archivo no firmado] C:\Program Files\Nexus Radio\Search.lib
2019-07-17 00:36 - 2018-06-05 19:34 - 001103872 _____ () [Archivo no firmado] C:\Program Files\reaConverter 7 Standard\ncontext.dll
2020-02-18 01:45 - 2010-07-29 18:19 - 000234496 _____ () [Archivo no firmado] C:\Program Files\Total Video Converter\TVCShellExt.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000515548 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libbz2.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001192734 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libgcc_s_sjlj-1.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 004563422 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libharfbuzz-0.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 002434939 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libopus-0.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001078923 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libpcre-1.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000608101 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libpcre2-16-0.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001798314 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libpng16-16.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001294446 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libstdc++-6.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000892631 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\libzstd.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000105472 _____ () [Archivo no firmado] C:\Program Files\Ultracopier\zlib1.dll
2019-06-14 17:27 - 2015-03-18 12:13 - 001325568 _____ () [Archivo no firmado] C:\Windows\system32\spool\DRIVERS\W32X86\3\ssj1mdu.dll
2007-04-26 16:41 - 2007-04-26 16:41 - 000078336 _____ (BrewIdeas@Emil Weiss) [Archivo no firmado] C:\Program Files\Nexus Radio\BassVis.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001521105 _____ (Free Software Foundation) [Archivo no firmado] C:\Program Files\Ultracopier\libiconv-2.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000785319 _____ (Free Software Foundation) [Archivo no firmado] C:\Program Files\Ultracopier\libintl-8.dll
2019-05-20 16:00 - 2019-05-20 16:00 - 000104960 _____ (hxxp://www.emule-project.net) [Archivo no firmado] C:\Program Files\eMule\lang\es_ES_T.dll
2006-05-21 16:05 - 2006-05-21 16:05 - 000150520 _____ (MaresWEB) [Archivo no firmado] C:\Program Files\Nexus Radio\BassAAC.dll
1998-07-28 04:00 - 1998-07-28 04:00 - 000119568 _____ (Microsoft Corporation) [Archivo no firmado] C:\Windows\system32\VB6ES.DLL
2020-03-15 23:49 - 2020-03-15 23:49 - 000626688 _____ (Microsoft Corporation) [Archivo no firmado] C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6229_none_d089f796442de10e\MSVCR80.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000052142 _____ (MingW-W64 Project. All rights reserved.) [Archivo no firmado] C:\Program Files\Ultracopier\libwinpthread-1.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 003572771 _____ (The FreeType Project) [Archivo no firmado] C:\Program Files\Ultracopier\libfreetype-6.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 004820092 _____ (The GLib developer community) [Archivo no firmado] C:\Program Files\Ultracopier\libglib-2.0-0.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 003140601 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [Archivo no firmado] C:\Program Files\Ultracopier\libcrypto-1_1.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000925292 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [Archivo no firmado] C:\Program Files\Ultracopier\libssl-1_1.dll
2017-09-14 03:37 - 2017-09-14 03:37 - 000026112 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qgif.dll
2017-09-14 03:42 - 2017-09-14 03:42 - 000033280 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qicns.dll
2017-09-14 03:37 - 2017-09-14 03:37 - 000027648 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qico.dll
2017-09-14 03:37 - 2017-09-14 03:37 - 000245760 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qjpeg.dll
2017-09-14 03:42 - 2017-09-14 03:42 - 000021504 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qsvg.dll
2017-09-14 03:42 - 2017-09-14 03:42 - 000020992 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qtga.dll
2017-09-14 03:42 - 2017-09-14 03:42 - 000316416 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qtiff.dll
2017-09-14 03:42 - 2017-09-14 03:42 - 000019968 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qwbmp.dll
2017-09-14 03:42 - 2017-09-14 03:42 - 000322560 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\imageformats\qwebp.dll
2017-09-14 03:37 - 2017-09-14 03:37 - 001010688 _____ (The Qt Company Ltd) [Archivo no firmado] C:\ProgramData\MEGAsync\platforms\qwindows.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 005868032 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5Core.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 005350400 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5Gui.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000894464 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5Multimedia.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001565184 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5Network.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 005420544 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5Widgets.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000212480 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5WinExtras.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000183808 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\Qt5Xml.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000975872 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\qt-plugins\platforms\qwindows.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000179200 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\Ultracopier\qt-plugins\styles\qwindowsvistastyle.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 001086976 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\CopyEngine\Ultracopier-Spec\copyEngine.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000368640 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\Listener\catchcopy-v0002\listener.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000345088 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\pluginLoader.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000020992 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\SessionLoader\Windows\sessionLoader.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000612864 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\Themes\Oxygen\interface.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000786432 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\Themes\Oxygen2\interface.dll
2016-01-02 01:00 - 2016-01-02 01:00 - 000614400 _____ (ultracopier.first-world.info) [Archivo no firmado] C:\Program Files\Ultracopier\Themes\Supercopier\interface.dll
2007-05-21 10:42 - 2007-05-21 10:42 - 000093240 _____ (Un4seen Developments) [Archivo no firmado] C:\Program Files\Nexus Radio\Bass.dll
2007-01-08 13:15 - 2007-01-08 13:15 - 000010296 _____ (Un4seen Developments) [Archivo no firmado] C:\Program Files\Nexus Radio\BassEnc.dll
2006-11-25 12:20 - 2006-11-25 12:20 - 000014904 _____ (Un4seen Developments) [Archivo no firmado] C:\Program Files\Nexus Radio\BassWMA.dll
2019-06-14 16:44 - 2006-09-18 01:57 - 000019456 _____ (Windows (R) 2000 DDK provider) [Archivo no firmado] C:\Windows\system32\spool\PRTPROCS\W32X86\ML2150pc.dll
2019-06-14 17:27 - 2015-03-18 12:13 - 000029696 _____ (Windows (R) Codename Longhorn DDK provider) [Archivo no firmado] C:\Windows\system32\spool\PRTPROCS\W32X86\ssj1mpc.dll
2019-08-20 00:35 - 2017-10-19 11:17 - 000228864 _____ (Wondershare Software) [Archivo no firmado] C:\Windows\System32\WSPDFelementMonitor.dll

==================== Alternate Data Streams (Lista blanca) ========

(Si una entrada es incluida en el fixlist, solamente los ADS serán eliminados.)

AlternateDataStreams: C:\Users\Walter\Desktop\TeamViewer_Setup_es.exe:com.dropbox.attributes [168]

==================== Modo Seguro (Lista blanca) ==================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppXSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BFE => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BITS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\camsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ClipSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dps => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\lfsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MpsSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\semgrsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SharedAccess => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\shellhwdetection => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TokenBroker => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRemoveSafeBoot => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vss => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WSService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppXSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BITS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\camsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ClipSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dps => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\lfsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\msiserver => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SamSs => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\semgrsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\shellhwdetection => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv2 => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srvnet => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TokenBroker => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRemoveSafeBoot => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vss => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WSService => ""="Service"

==================== Asociación (Lista blanca) =================

==================== Internet Explorer sitios de confianza/restringidos ==========

==================== Hosts contenido: =========================

(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)

2009-07-13 23:04 - 2020-05-09 21:17 - 000000027 _____ C:\Windows\system32\drivers\etc\hosts
127.0.0.1       localhost

==================== Otras Áreas ===========================

(Actualmente no existe una corrección automática para esta sección.)

HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\Control Panel\Desktop\\Wallpaper -> 
DNS Servers: 208.67.222.222 - 208.67.220.220
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Firewall de Windows está habilitado.

==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==

(Si una entrada es incluida en el fixlist, será eliminada.)

MSCONFIG\Services: MozillaMaintenance => 3
MSCONFIG\Services: Service KMSELDI => 2
MSCONFIG\startupfolder: C:^Users^Walter^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Enviar a OneNote.lnk => C:\Windows\pss\Enviar a OneNote.lnk.Startup
MSCONFIG\startupreg: CDAServer => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
MSCONFIG\startupreg: DFX => C:\Program Files\DFX\DFX.exe -startup
MSCONFIG\startupreg: HP Software Update => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
MSCONFIG\startupreg: Prot-On Client => C:\Program Files\Prot-On\Prot-On Client\Prot-On.exe
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: Wondershare Helper Compact.exe => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe

==================== Reglas de firewall (Lista blanca) ================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

FirewallRules: [{5651DE06-38A5-48CD-B413-BB44AFE801BA}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{088BA72E-4042-4EE6-87FF-F4D91A882E1E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{FD4FA28A-A414-41B9-9A02-4E6693333E62}] => (Allow) C:\Users\Walter\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{5775980F-2B83-4087-BBFA-976DFD93D180}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F681522F-90D7-4F6A-AC51-E02AB4250D61}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\Mathematica.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{47938BE3-9C0A-42C4-A620-B63EC3AF7C62}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\Mathematica.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{72C773EC-2B98-49DE-906A-B30027B17309}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\MathKernel.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{2C133FBC-275B-4BAF-A86C-0D9D72E1AD01}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\MathKernel.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{644E63FB-46E8-47C1-B30F-69C4529119E5}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\math.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{3E26B6D0-E49C-4A17-BB3D-8013040ED315}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\math.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{DE4BE075-AB03-46BE-9161-AA81C7B940ED}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\SystemFiles\Components\WSMCore\bin\SessionManager.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{360A56A3-CAD2-4938-868F-6440327B23AA}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\SystemFiles\Components\WSMCore\bin\SessionManager.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{FDB15244-446A-40CA-9484-F387EC4719F1}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\SystemFiles\Components\WSMCore\bin\WSMKernelX.exe (Wolfram Research, Inc. -> )
FirewallRules: [{4F16E0AA-3439-434E-8C89-2CC44F89A8A4}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\11.3\SystemFiles\Components\WSMCore\bin\WSMKernelX.exe (Wolfram Research, Inc. -> )
FirewallRules: [{2B6E45BF-CBFE-49C1-964C-7D34B1ABF0D4}] => (Allow) C:\Users\Walter\AppData\Roaming\uTorrent Web\utweb.exe (Jenkins Win Client Build SPC -> BitTorrent Inc.) [Archivo no firmado]
FirewallRules: [{74CDB6E1-EC9E-4B86-B0DE-C74FFA99713D}] => (Allow) C:\Users\Walter\AppData\Roaming\uTorrent Web\utweb.exe (Jenkins Win Client Build SPC -> BitTorrent Inc.) [Archivo no firmado]
FirewallRules: [{C73D0CD7-B120-4CC0-A548-34833981DB4F}] => (Allow) C:\Users\Walter\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{5F0FC81D-78FD-4C12-A42D-3E4179E10606}] => (Allow) C:\Users\Walter\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{69481938-5CF8-4FB6-9A72-B8643034AE32}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\EasyPrinterManagerV2.exe (HP Inc. -> )
FirewallRules: [{942AE59E-257E-486B-AC2E-523FB5FDBF80}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\OrderSupplies.exe (HP Inc. -> HP Printing Korea Co., Ltd.)
FirewallRules: [{AE7AD63A-2AFB-4869-848B-78B91C33DF08}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\EPM2AlertList.exe (HP Inc. -> HP Printing Korea Co., Ltd.)
FirewallRules: [{42DAB400-90A5-4A8F-9B20-3B3CF2404D0C}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\EPM2Migrator.exe (HP Inc. -> )
FirewallRules: [{203B22BE-4A5F-4EE6-B9FB-7C270340A1C0}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [TCP Query User{C21302DF-DD38-4D12-9E57-96D07F94640A}C:\program files\emule\emule.exe] => (Allow) C:\program files\emule\emule.exe (hxxps://www.emule-project.net) [Archivo no firmado]
FirewallRules: [UDP Query User{0E83F3AF-EF89-40AD-9134-3BAAC368B4C7}C:\program files\emule\emule.exe] => (Allow) C:\program files\emule\emule.exe (hxxps://www.emule-project.net) [Archivo no firmado]
FirewallRules: [TCP Query User{039E7DE3-D553-49D6-B01B-8E799458B01C}C:\program files\prot-on\prot-on client\prot-on.exe] => (Allow) C:\program files\prot-on\prot-on client\prot-on.exe (Cognicase Management Consulting, S.L. -> Grupo CMC)
FirewallRules: [UDP Query User{5E2000F6-70E2-47C2-8A33-EADCB2C38133}C:\program files\prot-on\prot-on client\prot-on.exe] => (Allow) C:\program files\prot-on\prot-on client\prot-on.exe (Cognicase Management Consulting, S.L. -> Grupo CMC)
FirewallRules: [TCP Query User{F1E95A4E-08B5-4D5C-94C6-48E329D27499}P:\zfinal\portable foxit pdf editor 2.0.1011.exe] => (Block) P:\zfinal\portable foxit pdf editor 2.0.1011.exe => Ningún archivo
FirewallRules: [UDP Query User{66F0EC20-92B5-4582-9AB9-160CF8400667}P:\zfinal\portable foxit pdf editor 2.0.1011.exe] => (Block) P:\zfinal\portable foxit pdf editor 2.0.1011.exe => Ningún archivo
FirewallRules: [TCP Query User{8CC8B2F5-B2EF-4047-AD89-AD679A62F98A}C:\users\walter\appdata\local\jdownloader 2.0\jdownloader2.exe] => (Allow) C:\users\walter\appdata\local\jdownloader 2.0\jdownloader2.exe (Appwork GmbH -> AppWork GmbH)
FirewallRules: [UDP Query User{BC3010BC-5A12-4250-AC42-AFC19E80E19D}C:\users\walter\appdata\local\jdownloader 2.0\jdownloader2.exe] => (Allow) C:\users\walter\appdata\local\jdownloader 2.0\jdownloader2.exe (Appwork GmbH -> AppWork GmbH)
FirewallRules: [{C825AD97-284C-478A-B9F6-CB04F909AA25}] => (Allow) C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\USBSetup.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [TCP Query User{122F3BC9-4551-48F0-AB73-78A6509DB3C4}C:\users\walter\desktop\portable foxit pdf editor 2.0.1011.exe] => (Block) C:\users\walter\desktop\portable foxit pdf editor 2.0.1011.exe (Foxit Software Company -> Foxit Software Company) [Archivo no firmado]
FirewallRules: [UDP Query User{7A690458-30C4-4855-AADE-A9630EB35D67}C:\users\walter\desktop\portable foxit pdf editor 2.0.1011.exe] => (Block) C:\users\walter\desktop\portable foxit pdf editor 2.0.1011.exe (Foxit Software Company -> Foxit Software Company) [Archivo no firmado]
FirewallRules: [TCP Query User{15BEDE75-5162-4AC0-AAEF-FED22E4B9142}H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe] => (Block) H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe => Ningún archivo
FirewallRules: [UDP Query User{BF4E2245-AAFA-4265-BE8A-722D20A0AEB1}H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe] => (Block) H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe => Ningún archivo
FirewallRules: [{0D27637D-057C-4211-A7F6-892C6F64FC69}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{34E6655E-0CE2-43B8-9BC4-5516F13A7B50}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{1CBCE44B-6D8B-4950-96AE-1FA640E7F149}] => (Allow) C:\Users\Walter\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{954913D4-C09A-4A41-854C-F2814C9F8B59}] => (Allow) C:\Program Files\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
FirewallRules: [{48464FF8-9DED-4BCE-A2C7-5EB12A889355}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Puntos de Restauración =========================

No se pudieron listar los puntos de restauración
Comprobar el servicio "winmgmt" o reparar WMI.


==================== Dispositivos defectuosos en el Administrador de dispositivos ============


==================== Errores del registro de eventos: ========================

Errores de aplicación:
==================
Error: (05/10/2020 10:41:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: Dropbox.exe, versión: 96.4.172.0, marca de tiempo: 0x5ea889c0
Nombre del módulo con errores: ole32.dll, versión: 6.1.7601.24537, marca de tiempo: 0x5dce0da9
Código de excepción: 0xc0000005
Desplazamiento de errores: 0x00021c24
Id. del proceso con errores: 0xf58
Hora de inicio de la aplicación con errores: 0x01d6270962906720
Ruta de acceso de la aplicación con errores: C:\Program Files\Dropbox\Client\Dropbox.exe
Ruta de acceso del módulo con errores: C:\Windows\system32\ole32.dll
Id. del informe: 821f3680-9328-11ea-bf6f-001e9086406c

Error: (05/10/2020 07:37:18 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 9953

Error: (05/10/2020 07:37:18 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 9953

Error: (05/10/2020 07:37:18 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (05/10/2020 07:37:16 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 8923

Error: (05/10/2020 07:37:16 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 8923

Error: (05/10/2020 07:37:16 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (05/10/2020 07:37:15 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 7878


Errores del sistema:
=============
Error: (05/10/2020 10:41:38 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Se agotó el tiempo de espera (30000 ms) para la respuesta de transacción del servicio BFE.

Error: (05/10/2020 10:41:03 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Se agotó el tiempo de espera (30000 ms) para la respuesta de transacción del servicio ShellHWDetection.

Error: (05/10/2020 05:31:39 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Se recibió la siguiente alerta irrecuperable: 70.

Error: (05/10/2020 05:31:39 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Se recibió la siguiente alerta irrecuperable: 70.

Error: (05/10/2020 05:31:39 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Se recibió la siguiente alerta irrecuperable: 70.

Error: (05/10/2020 05:31:39 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Se recibió la siguiente alerta irrecuperable: 70.

Error: (05/10/2020 05:31:39 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Se recibió la siguiente alerta irrecuperable: 70.

Error: (05/10/2020 05:31:39 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Se recibió la siguiente alerta irrecuperable: 70.


Windows Defender:
===================================
Date: 2019-09-21 19:41:11.851
Description: 
El examen de Windows Defender se detuvo antes de completarse.
Id. de examen:{73906222-3806-4599-B6B6-178593CF89DC}
Tipo de examen:AntiSpyware
Parámetros de examen:Examen rápido
Usuario:MI_TARRO\Walter

==================== Información de la memoria =========================== 

BIOS: American Megatrends Inc. 080015 05/16/2008
Placa base: ECS GF7100/7050PVT-M3
Procesador: Intel(R) Core(TM)2 Duo CPU E7500 @ 2.93GHz
Porcentaje de memoria en uso: 86%
RAM física total: 2815.24 MB
RAM física disponible: 373.79 MB
Virtual total: 5630.48 MB
Virtual disponible: 2091.14 MB

==================== Unidades ================================

Drive c: () (Fixed) (Total:223.47 GB) (Free:141.2 GB) NTFS
Drive d: (210916-1) (Fixed) (Total:910.16 GB) (Free:131.9 GB) NTFS
Drive e: (210916-2) (Fixed) (Total:910.16 GB) (Free:306.86 GB) NTFS
Drive f: (210916-3) (Fixed) (Total:974.08 GB) (Free:273.4 GB) NTFS
Drive i: (walter) (Fixed) (Total:100.72 GB) (Free:79.1 GB) NTFS
Drive j: (ws250709 [musica-video-ima]) (Fixed) (Total:185.55 GB) (Free:22.83 GB) NTFS
Drive k: (ws-07-10-2016) (Fixed) (Total:145.84 GB) (Free:75.28 GB) NTFS
Drive l: (WS 18-05-2019) (Fixed) (Total:21.83 GB) (Free:14.82 GB) NTFS
Drive m: (260614 UTILIDADES) (Fixed) (Total:6.72 GB) (Free:0.81 GB) NTFS
Drive n: (280418 FORMULARIOS) (Fixed) (Total:5 GB) (Free:0.11 GB) NTFS

\\?\Volume{fa15edcb-8d50-11e9-bad8-806e6f6e6963}\ (Reservado para el sistema) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS
\\?\Volume{e19c37d4-8d59-11e9-af97-806e6f6e6963}\ (Reservado para el sistema) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS

==================== MBR & Tabla de particiones ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: 49414AEC)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=223.5 GB) - (Type=07 NTFS)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 2794.5 GB) (Disk ID: 03DD17B9)

Partition: GPT.

==========================================================
Disk: 3 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 00290029)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=100.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=364.9 GB) - (Type=0F Extended)

==================== Final  Addition.txt =======================

Hola @WALLY

Ahora si, los reportes están completos…:+1:

Mientras los analizo no me respondiste cual fue el Antivirus que ejecutaste que te borro los navegadores según mencionas??

Salu2

Otras veces habia funcionado bien cuando habia algo raro, despues que lo aplique me di cuenta que era un poco peligroso , Combo fix

Hola @WALLY

Siempre advertimos que Combofix no debe ser utilizado sin supervición.

Pega su reporte en tu próxima respuesta.

Salu2

1 me gusta

ahi esta

ComboFix 19-11-04.01 - Walter 09-05-2020  21:04:52.1.2 - x86
Running from: c:\users\Walter\Desktop\ComboFix.exe
 * Created a new restore point
.
.
(((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\DFX\DFX.exe
c:\users\Walter\AppData\Local\assembly\tmp
c:\users\Walter\AppData\Roaming\111.tif
c:\users\Walter\indexfull .htm
C:\WindowsLEELAWAD.tt2
C:\WindowsLEELAWDB.tt2
C:\WindowsMSUIGHUR.tt2
.
.
(((((((((((((((((((((((((((((((((((((((   Drivers/Services   )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_Service KMSELDI
.
.
(((((((((((((((((((((((((   Files Created from 2020-04-10 to 2020-05-10  )))))))))))))))))))))))))))))))
.
.
2020-05-10 00:17 . 2020-05-10 00:17	--------	d-----w-	C:\$AV_AVG
2020-05-10 00:14 . 2020-05-10 00:14	--------	d-----w-	c:\users\Lisyy\AppData\Local\temp
2020-05-10 00:14 . 2020-05-10 00:14	--------	d-----w-	c:\users\Default\AppData\Local\temp
2020-05-09 23:47 . 2020-05-09 23:47	--------	d-----w-	c:\users\Walter\AppData\Local\Microsoft Help
2020-05-09 23:47 . 2020-05-09 23:52	--------	d-----w-	c:\programdata\Microsoft Help
2020-05-09 23:47 . 2020-05-09 23:47	--------	d-----r-	C:\MSOCache
2020-05-09 23:19 . 2020-05-09 23:19	--------	d-----w-	c:\users\Walter\AppData\Local\MEGAsync
2020-05-09 22:22 . 2020-05-09 22:22	110792	----a-w-	c:\program files\Mozilla Firefox\default-browser-agent.exe
2020-05-09 21:44 . 2020-05-09 21:45	--------	d-----w-	c:\users\Walter\AppData\Local\MSfree Inc
2020-05-09 21:20 . 2010-12-06 02:16	90112	----a-w-	c:\windows\system32\Vestris.ResourceLib.dll
2020-05-03 19:43 . 2020-05-03 18:36	284864	----a-w-	c:\windows\system32\avgBoot.exe
2020-05-03 19:43 . 2020-05-03 18:36	177608	----a-w-	c:\windows\system32\drivers\avgStm.sys
2020-05-03 19:43 . 2020-05-03 18:36	148512	----a-w-	c:\windows\system32\drivers\avgMonFlt.sys
2020-05-03 18:36 . 2020-05-03 18:37	356072	----a-w-	c:\windows\system32\drivers\avgNetHub.sys
2020-05-03 18:36 . 2020-05-03 18:36	177608	----a-w-	c:\windows\system32\drivers\asw2d1190390ed607b5.tmp
2020-05-03 18:36 . 2020-05-03 18:36	148512	----a-w-	c:\windows\system32\drivers\aswb2722a6320cc56fa.tmp
2020-04-28 19:55 . 2020-04-28 19:55	37384	----a-w-	c:\windows\system32\DbxSvc.exe
2020-04-28 19:55 . 2020-04-28 19:55	36848	----a-w-	c:\windows\system32\drivers\dbx-stable.sys
2020-04-28 19:55 . 2020-04-28 19:55	36848	----a-w-	c:\windows\system32\drivers\dbx-dev.sys
2020-04-28 19:55 . 2020-04-28 19:55	36848	----a-w-	c:\windows\system32\drivers\dbx-canary.sys
.
.
.
((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2020-05-09 20:04 . 2019-06-12 21:01	4619600	------w-	c:\programdata\Microsoft\ClickToRun\{9AC08E99-230B-47e8-9721-4577B7F124EA}\integrator.exe
2020-05-03 18:37 . 2019-10-31 23:47	396616	----a-w-	c:\windows\system32\drivers\avgSP.sys
2020-05-03 18:36 . 2019-10-31 23:47	278232	----a-w-	c:\windows\system32\drivers\avgVmm.sys
2020-05-03 18:36 . 2019-10-31 23:52	41520	----a-w-	c:\windows\system32\drivers\avgKbd.sys
2020-05-03 18:36 . 2019-10-31 23:47	73624	----a-w-	c:\windows\system32\drivers\avgRvrt.sys
2020-05-03 18:36 . 2019-10-31 23:47	94400	----a-w-	c:\windows\system32\drivers\avgRdr2.sys
2020-05-03 18:36 . 2019-10-31 23:47	176048	----a-w-	c:\windows\system32\drivers\avgArPot.sys
2020-05-03 18:36 . 2019-10-31 23:47	691840	----a-w-	c:\windows\system32\drivers\avgSnx.sys
2020-05-03 18:36 . 2019-10-31 23:52	56664	----a-w-	c:\windows\system32\drivers\avgbuniv.sys
2020-05-03 18:36 . 2019-10-31 23:52	187736	----a-w-	c:\windows\system32\drivers\avgbidsdriver.sys
2020-05-03 18:36 . 2019-10-31 23:52	143192	----a-w-	c:\windows\system32\drivers\avgbidsh.sys
2020-03-15 21:59 . 2019-10-31 23:47	396248	------w-	c:\windows\system32\drivers\asw80b8de7e6f7e35f1.tmp
2020-03-15 21:58 . 2019-10-31 23:47	278224	------w-	c:\windows\system32\drivers\asw498720be4deab6ee.tmp
2020-03-15 21:58 . 2019-10-31 23:52	42024	------w-	c:\windows\system32\drivers\asw1d12d22f4004caf7.tmp
2020-03-15 21:58 . 2019-10-31 23:47	73616	------w-	c:\windows\system32\drivers\asw80b8ca11a245fe30.tmp
2020-03-15 21:58 . 2019-10-31 23:47	95992	------w-	c:\windows\system32\drivers\asw3e2334c38e3d62d4.tmp
2020-03-15 21:58 . 2019-10-31 23:47	176040	------w-	c:\windows\system32\drivers\aswccd69c2e719abbbd.tmp
2020-03-15 21:58 . 2019-10-31 23:47	690816	------w-	c:\windows\system32\drivers\asw9c93e5af7b0ff3c1.tmp
2020-03-15 21:58 . 2019-10-31 23:47	410888	----a-w-	c:\windows\system32\drivers\asw24bc0403406d6c6a.tmp
2020-03-15 21:57 . 2019-10-31 23:52	58712	------w-	c:\windows\system32\drivers\aswa96f1e74ef181c47.tmp
2020-03-15 21:57 . 2019-10-31 23:52	222552	------w-	c:\windows\system32\drivers\asw7463b295d2f93be2.tmp
2020-03-15 21:57 . 2019-10-31 23:52	167768	------w-	c:\windows\system32\drivers\asw57df3ade3a9515e0.tmp
.
.
(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown 
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\~\Browser Helper Objects\{1F27E08D-FBB3-4456-83ED-90976FF4DDA7}]
2015-07-23 16:35	534040	----a-w-	c:\program files\Prot-On\Prot-On Addin Internet Explorer\adxloader.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ MEGA (Pending)]
@="{056D528D-CE28-4194-9BA3-BA2E9197FF8C}"
[HKEY_CLASSES_ROOT\CLSID\{056D528D-CE28-4194-9BA3-BA2E9197FF8C}]
2020-03-16 21:40	621816	----a-w-	c:\users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ MEGA (Synced)]
@="{05B38830-F4E9-4329-978B-1DD28605D202}"
[HKEY_CLASSES_ROOT\CLSID\{05B38830-F4E9-4329-978B-1DD28605D202}]
2020-03-16 21:40	621816	----a-w-	c:\users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ MEGA (Syncing)]
@="{0596C850-7BDD-4C9D-AFDF-873BE6890637}"
[HKEY_CLASSES_ROOT\CLSID\{0596C850-7BDD-4C9D-AFDF-873BE6890637}]
2020-03-16 21:40	621816	----a-w-	c:\users\Walter\AppData\Local\MEGAsync\ShellExtX32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\   DropboxExt01]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2020-04-01 12:21	489480	----a-w-	c:\program files\Dropbox\Client\DropboxExt.37.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\   DropboxExt02]
@="{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}]
2020-04-01 12:21	489480	----a-w-	c:\program files\Dropbox\Client\DropboxExt.37.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\   DropboxExt03]
@="{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}]
2020-04-01 12:21	489480	----a-w-	c:\program files\Dropbox\Client\DropboxExt.37.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\   DropboxExt04]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2020-04-01 12:21	489480	----a-w-	c:\program files\Dropbox\Client\DropboxExt.37.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\   DropboxExt05]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2020-04-01 12:21	489480	----a-w-	c:\program files\Dropbox\Client\DropboxExt.37.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\   DropboxExt06]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2020-04-01 12:21	489480	----a-w-	c:\program files\Dropbox\Client\DropboxExt.37.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\   DropboxExt07]
@="{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}]
2020-04-01 12:21	489480	----a-w-	c:\program files\Dropbox\Client\DropboxExt.37.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\   DropboxExt08]
@="{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}]
2020-04-01 12:21	489480	----a-w-	c:\program files\Dropbox\Client\DropboxExt.37.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\   DropboxExt09]
@="{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}]
2020-04-01 12:21	489480	----a-w-	c:\program files\Dropbox\Client\DropboxExt.37.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\   DropboxExt10]
@="{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}]
2020-04-01 12:21	489480	----a-w-	c:\program files\Dropbox\Client\DropboxExt.37.0.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\  0Prot-On]
@="{E3A2C9DF-E2E6-459E-9BFD-11EAB3B300CA}"
[HKEY_CLASSES_ROOT\CLSID\{E3A2C9DF-E2E6-459E-9BFD-11EAB3B300CA}]
2017-11-21 13:21	417744	----a-w-	c:\program files\Prot-On\Prot-On Windows Explorer Addin\ProtOnShellExt.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\  GoogleDriveBlacklisted]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2020-04-06 13:22	578160	----a-w-	c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\  GoogleDriveSynced]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2020-04-06 13:22	578160	----a-w-	c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\  GoogleDriveSyncing]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2020-04-06 13:22	578160	----a-w-	c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive1]
@="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
[HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
2019-06-12 21:06	329376	----a-w-	c:\users\Walter\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\FileSyncShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive2]
@="{5AB7172C-9C11-405C-8DD5-AF20F3606282}"
[HKEY_CLASSES_ROOT\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}]
2019-06-12 21:06	329376	----a-w-	c:\users\Walter\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\FileSyncShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive3]
@="{A78ED123-AB77-406B-9962-2A5D9D2F7F30}"
[HKEY_CLASSES_ROOT\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}]
2019-06-12 21:06	329376	----a-w-	c:\users\Walter\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\FileSyncShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive4]
@="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
[HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
2019-06-12 21:06	329376	----a-w-	c:\users\Walter\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\FileSyncShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ OneDrive5]
@="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
[HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
2019-06-12 21:06	329376	----a-w-	c:\users\Walter\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\FileSyncShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"EEDSpeedLauncher"="c:\windows\system32\eed_ec.dll" [2015-03-18 2318336]
"ultracopier"="c:\program files\Ultracopier\ultracopier.exe" [2016-01-02 1318400]
"Folder Size"="c:\program files\FolderSize\FolderSize.exe" [2013-02-13 126976]
"uTorrent"="c:\users\Walter\AppData\Roaming\uTorrent\uTorrent.exe" [2020-04-05 2072816]
"Nexus Radio"="c:\program files\Nexus Radio\Nexus Radio.exe" [2016-11-17 4616192]
"iCloudServices"="c:\program files\Common Files\Apple\Internet Services\iCloudServices.exe" [2020-01-22 67384]
"iCloudDrive"="c:\program files\Common Files\Apple\Internet Services\iCloudDrive.exe" [2020-01-22 110392]
"iCloudPhotos"="c:\program files\Common Files\Apple\Internet Services\iCloudPhotos.exe" [2020-01-22 356664]
"eMuleAutoStart"="c:\program files\eMule\emule.exe" [2019-05-19 8029184]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Dropbox"="c:\program files\Dropbox\Client\Dropbox.exe" [2020-04-28 6856192]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2019-07-05 644552]
"AVGUI.exe"="c:\program files\AVG\Antivirus\AvLaunch.exe" [2020-05-03 144376]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"EEDSpeedLauncher"="c:\windows\system32\eed_ec.dll" [2015-03-18 2318336]
.
c:\users\Walter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
MEGAsync.lnk - c:\programdata\MEGAsync\MEGAsync.exe [2019-5-29 12964600]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"shell"= explorer.exe
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BFE]
@="Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BITS]
@="Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dps]
@="Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro38Crusader]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro38CrusaderBoot]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MpsSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver]
@="Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SharedAccess]
@="Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\shellhwdetection]
@="Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vss]
@="Service"
.
[HKLM\~\startupfolder\C:^Users^Walter^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Enviar a OneNote.lnk]
path=c:\users\Walter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Enviar a OneNote.lnk
backup=c:\windows\pss\Enviar a OneNote.lnk.Startup
backupExtension=.Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CDAServer]
2014-09-08 17:30	351968	----a-w-	c:\program files\Common Files\Common Desktop Agent\CDASrv.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
2013-05-30 18:50	96056	----a-w-	c:\program files\HP\HP Software Update\hpwuschd2.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Prot-On Client]
2018-11-29 20:06	9008592	----a-w-	c:\program files\Prot-On\Prot-On Client\Prot-On.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2019-07-05 00:12	644552	----a-w-	c:\program files\Common Files\Java\Java Update\jusched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Wondershare Helper Compact.exe]
2016-10-08 20:49	2137744	----a-w-	c:\program files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
.
R0 MBAMSwissArmy;MBAMSwissArmy;c:\windows\System32\Drivers\mbamswissarmy.sys [x]
R2 dbupdate;Servicio de Actualización de Dropbox (dbupdate);c:\program files\Dropbox\Update\DropboxUpdate.exe [2019-06-16 143144]
R3 AscFileControl;AscFileControl;c:\program files\IObit\Advanced SystemCare\drivers\win7_x86\AscFileControl.sys [x]
R3 AscFileFilter;AscFileFilter;c:\program files\IObit\Advanced SystemCare\drivers\win7_x86\AscFileFilter.sys [x]
R3 AscRegistryFilter;AscRegistryFilter;c:\program files\IObit\Advanced SystemCare\drivers\win7_x86\AscRegistryFilter.sys [x]
R3 CLMirrorDriver;CLMirrorDriver;c:\windows\system32\DRIVERS\CLMirrorDriver.sys [x]
R3 clwvd8;CyberLink YouCam 8 Service;c:\windows\system32\DRIVERS\clwvd8.sys [x]
R3 cpuz145;cpuz145;c:\windows\temp\cpuz145\cpuz145_x32.sys [x]
R3 dbupdatem;Servicio de Actualización de Dropbox (dbupdatem);c:\program files\Dropbox\Update\DropboxUpdate.exe [2019-06-16 143144]
R3 DFX11_1;DFX Audio Enhancer 11.1;c:\windows\system32\drivers\dfx11_1.sys [2015-08-31 24424]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-20 62464]
R3 ew_usbccgpfilter;HwHandSet_CompositeFilter;c:\windows\system32\DRIVERS\ew_usbccgpfilter.sys [2019-08-19 15360]
R3 FoxitPhantomService;FoxitPhantomService;c:\program files\Foxit Softwaree\Foxit PhantomPDF\FoxitConnectedPDFService.exe [2017-12-12 1658944]
R3 GoogleChromeElevationService;Google Chrome Elevation Service;c:\program files\Google\Chrome\Application\81.0.4044.138\elevation_service.exe [2020-05-01 945136]
R3 hitmanpro37;HitmanPro 3.7 Support Driver;c:\windows\system32\drivers\hitmanpro37.sys [2019-09-21 38224]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe [2019-12-17 104960]
R3 iobit_monitor_server;iobit_monitor_server;c:\program files\IObit\Advanced SystemCare\drivers\Monitor_x86.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2019-11-15 15872]
R3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtTeam60.sys [2011-06-15 40736]
R3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtVlan620.sys [2011-09-16 27752]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [2010-11-20 77184]
R3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.2);c:\windows\system32\DRIVERS\RtTeam60.sys [2011-06-15 40736]
R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys [2010-11-20 25600]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
R3 tsusbhub;Remote Deskotop USB Hub;c:\windows\system32\drivers\tsusbhub.sys [2019-12-12 113664]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 WiaRpc;Eventos de adquisición de imágenes estáticas;c:\windows\system32\svchost.exe [2009-07-14 20992]
S0 avgbidsh;avgbidsh;c:\windows\system32\drivers\avgbidsh.sys [2020-05-03 143192]
S0 avgbuniv;avgbuniv;c:\windows\system32\drivers\avgbuniv.sys [2020-05-03 56664]
S0 avgRvrt;avgRvrt;c:\windows\system32\drivers\avgRvrt.sys [2020-05-03 73624]
S0 avgVmm;avgVmm;c:\windows\system32\drivers\avgVmm.sys [2020-05-03 278232]
S1 avgArPot;avgArPot;c:\windows\system32\drivers\avgArPot.sys [2020-05-03 176048]
S1 avgbidsdriver;avgbidsdriver;c:\windows\system32\drivers\avgbidsdriver.sys [2020-05-03 187736]
S1 avgKbd;avgKbd;c:\windows\system32\drivers\avgKbd.sys [2020-05-03 41520]
S1 avgNetHub;avgNetHub;c:\windows\system32\drivers\avgNetHub.sys [2020-05-03 356072]
S1 avgRdr;avgRdr;c:\windows\system32\drivers\avgRdr2.sys [2020-05-03 94400]
S1 avgSnx;avgSnx;c:\windows\system32\drivers\avgSnx.sys [2020-05-03 691840]
S1 avgSP;avgSP;c:\windows\system32\drivers\avgSP.sys [2020-05-03 396616]
S1 HWiNFO32;HWiNFO32/64 Kernel Driver;c:\windows\system32\drivers\HWiNFO32.SYS [2019-11-08 23840]
S2 AVG Antivirus;AVG Antivirus;c:\program files\AVG\Antivirus\AVGSvc.exe [2020-05-03 319376]
S2 AVG Firewall;AVG Firewall Service;c:\program files\AVG\Antivirus\afwServ.exe [2020-05-03 881576]
S2 avgMonFlt;avgMonFlt;c:\windows\system32\drivers\avgMonFlt.sys [2020-05-03 148512]
S2 avgStm;avgStm;c:\windows\system32\drivers\avgStm.sys [2020-05-03 177608]
S2 DbxSvc;DbxSvc;c:\windows\system32\DbxSvc.exe [2020-04-28 37384]
S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe [2009-07-14 20992]
S2 HuaweiHiSuiteService.exe;HuaweiHiSuiteService.exe;c:\program files\HiSuite\HandSetService\HuaweiHiSuiteService.exe [2019-08-19 154432]
S2 reaConverter_service;reaConverter folders service;c:\program files\reaConverter 7 Standard\rc_service.exe [2018-06-05 5752832]
S2 RtNdPt60;Realtek NDIS Protocol Driver;c:\windows\system32\DRIVERS\RtNdPt60.sys [2011-06-15 33056]
S2 SSPORT;SSPORT;c:\windows\system32\Drivers\SSPORT.sys [2017-11-08 5120]
S3 avgbIDSAgent;avgbIDSAgent;c:\program files\AVG\Antivirus\aswidsagent.exe [2020-05-03 4950464]
S3 avgNetNd6;AVG Firewall NDIS6 Helper;c:\windows\system32\DRIVERS\avgNetNd6.sys [2019-10-31 28408]
S3 DFX12;DFX Audio Enhancer;c:\windows\system32\drivers\dfx12.sys [2015-11-12 26104]
S3 DLKRTE32;DGE-560T Gigabit PCI Express Ethernet Adapter.;c:\windows\system32\DRIVERS\DLKRTE32.sys [2011-08-04 399360]
S3 gHidPnp;USB Device Enhanced Function Driver;c:\windows\system32\Drivers\gHidPnp.Sys [2019-06-13 20480]
S3 gMouUsb;USB Mouse Device Drv;c:\windows\system32\DRIVERS\gMouUsb.sys [2019-06-13 11520]
.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation	REG_MULTI_SZ   	SSDPSRV upnphost SCardSvr fdrespub AppIDSvc QWAVE wcncsvc Mcx2Svc SensrSvc
utcsvc	REG_MULTI_SZ   	DiagTrack
winmgmt	REG_MULTI_SZ   	winmgmt
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost  - LocalSystemNetworkRestricted
WiaRpc
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2020-05-09 20:26	1997296	----a-w-	c:\program files\Google\Chrome\Application\81.0.4044.138\Installer\chrmstp.exe
.
Contents of the 'Scheduled Tasks' folder
.
2020-05-10 c:\windows\Tasks\DropboxUpdateTaskMachineCore.job
- c:\program files\Dropbox\Update\DropboxUpdate.exe [2019-06-16 02:52]
.
2020-05-10 c:\windows\Tasks\DropboxUpdateTaskMachineUA.job
- c:\program files\Dropbox\Update\DropboxUpdate.exe [2019-06-16 02:52]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://google.cl/
uInternet Settings,ProxyOverride = *.local
IE: Anexar a otro PDF - c:\program files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll/IEContextMenuCurrentAppendPDF.html
IE: Anexar página vinculada a otro PDF - c:\program files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll/IEContextMenuLinkAppendPDF.html
IE: Convertir a Foxit PDF - c:\program files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll/IEContextMenuCurrentNewPDF.html
IE: Convertir página vinculada a Foxit PDF - c:\program files\Foxit Softwaree\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll/IEContextMenuLinkNewPDF.html
IE: E&xport to Microsoft Excel - c:\program files\Microsoft Office\Root\Office16\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\program files\Microsoft Office\Root\Office16\ONBttnIE.dll/105
TCP: Interfaces\{BDDD6E62-2F7C-479E-BCB2-D39D43C155B7}: NameServer = 208.67.222.222,208.67.220.220
FF - ProfilePath - c:\users\Walter\AppData\Roaming\Mozilla\Firefox\Profiles\y5vs2xqm.default-release\
.
.
------- File Associations -------
.
.txt=Prot-On.AssocFile.TXT
.
- - - - ORPHANS REMOVED - - - -
.
ShellIconOverlayIdentifiers-{472083B0-C522-11CF-8763-00608CC02F24} - (no file)
HKLM-Run-DjVu To PDF Converter Software.exe - (no file)
c:\users\Walter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Enviar a OneNote.lnk - c:\program files\Microsoft Office\root\Office16\ONENOTEM.EXE /tsr
SafeBoot-AppXSvc
SafeBoot-camsvc
SafeBoot-ClipSvc
SafeBoot-lfsvc
SafeBoot-MBAMService
SafeBoot-semgrsvc
SafeBoot-TokenBroker
SafeBoot-TweakingRemoveSafeBoot
SafeBoot-WSService
MSConfigStartUp-DFX - c:\program files\DFX\DFX.exe
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\nvvsvc.exe
c:\program files\NVIDIA Corporation\Display\nvxdsync.exe
c:\windows\system32\nvvsvc.exe
c:\program files\AVG\Antivirus\aswEngSrv.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\windows\system32\taskhost.exe
c:\program files\FolderSize\FolderSizeSvc.exe
c:\program files\Google\Update\1.3.35.452\GoogleCrashHandler.exe
c:\windows\system32\conhost.exe
c:\windows\System32\WUDFHost.exe
c:\windows\System32\rundll32.exe
c:\program files\AVG\Antivirus\AVGUI.exe
c:\program files\Dropbox\Client\96.4.172\QtWebEngineProcess.exe
c:\program files\Dropbox\Client\96.4.172\QtWebEngineProcess.exe
c:\program files\Dropbox\Client\96.4.172\QtWebEngineProcess.exe
c:\program files\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe
c:\program files\AVG\Antivirus\AVGUI.exe
c:\windows\system32\sppsvc.exe
.
**************************************************************************
.
Completion time: 2020-05-09  21:21:23 - machine was rebooted
ComboFix-quarantined-files.txt  2020-05-10 00:21
.
Pre-Run: 153.243.922.432 bytes libres
Post-Run: 153.129.066.496 bytes libres
.
- - End Of File - - A0A38C6EB7DDC0224647603F77510BF7
A36C5E4F47E84449FF07ED3517B43A31

Hola @WALLY

Pues según veo en el reporte no fue Combofix quien daño tus navegadores…:thinking:


Paso 1:

Desinstala con Revo Uninstaller en su Modo Avanzado:

  • Google Chrome
  • Mozilla Firefox
  • Tweaking. com\Windows Repair (All in One)
  • Driver Booster
  • Advanced SystemCare
  • Hitmanpro
  • KMSpico

Manual de Revo Uninstaller.

Si algun programa ya no estuviera, continuas con el siguiente, al finalizar con todos reinicias.

Paso 2:

Con mucha atención:

1.- Muy Importante >>> Realizar una copia de Seguridad de su Registro.

  • Descarga/Ejecuta DelFix desde el escritorio de Windows.
  • Clic Derecho, “Ejecutar como Administrador”.
  • En la ventana principal, marca solamente la casilla “Create Registry Backup”.
  • Clic en Run.

Al terminar se abrirá un reporte llamado DelFix.txt, guárdelo por si fuera necesario y cierre la herramienta.

Paso 3:

Luego ve a::

2.- Inicio >>> Ejecutar >>> Escribe notepad.exe o abra un nuevo archivo Notepad y copie y pegue lo siguiente:

Start
CloseProcesses:
HKLM\...\Run: [DjVu To PDF Converter Software.exe] => [X]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\81.0.4044.138\Installer\chrmstp.exe [2020-05-09] (Google LLC -> Google LLC)
GroupPolicy\User: Restricción ? <==== ATENCIÓN
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN
CHR HKLM\SOFTWARE\Policies\Google: Restricción <==== ATENCIÓN
Task: {04A4D19B-035E-4722-8981-E63B0ACB987E} - System32\Tasks\Tweaking.com - Windows Repair Tray Icon => C:\Program Files\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [218336 2017-05-02] (Tweaking LLC -> Tweaking.com)
Task: {5FD4F3F9-4E21-4BDF-9935-84C7DBA47CF4} - System32\Tasks\ASC_SkipUac_Walter => C:\Program Files\IObit\Advanced SystemCare\ASC.exe
ask: {61EB260B-566A-4946-9347-2E6F4DBEE579} - System32\Tasks\{DE83D52E-D4F8-4EF5-8FFF-470D4F2D93FA} => C:\Windows\system32\pcalua.exe -a C:\Users\Walter\Downloads\ie6setup.exe -d C:\Users\Walter\Downloads
Task: {763E2A51-F31F-4946-A05E-7DA3547D3C13} - \CCleanerSkipUAC -> Ningún archivo <==== ATENCIÓN
Task: {838F540F-5AFF-4748-9DEB-0BEB5FEB41E3} - System32\Tasks\{ACF677FD-EE20-4D2A-9D5A-1F2BF2A9487B} => C:\Users\Walter\Desktop\Nueva carpeta (5)\coolpro2.exe
Task: {9612AF67-7BD5-4AAA-8D49-2351CD1B7E58} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [737984 2015-08-30] (@ByELDI -> @ByELDI) [Archivo no firmado]
Task: {C7A05351-D5CA-486F-94F4-7D7E4938A881} - System32\Tasks\ASC_PerformanceMonitor => C:\Program Files\IObit\Advanced SystemCare\Monitor.exe
Task: {D14A41CD-A893-4E93-A16E-8B73D992B8D2} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe
Task: {F20A688C-D860-43EA-B18D-6DC514837965} - System32\Tasks\{59FDCB39-B2CF-4D20-97BD-9665F4869F8D} => C:\Windows\system32\pcalua.exe -a C:\Users\Walter\Desktop\WHEX197\WHEX197\Portable\setup.exe -d C:\Users\Walter\Desktop\WHEX197\WHEX197\Portable
Winsock: Catalog5 07 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => Ningún archivo 
Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => Ningún archivo 
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.msn.com/?OCID=IE11FREDHP&PC=UF01
S3 hitmanpro37; C:\Windows\system32\drivers\hitmanpro37.sys [38224 2019-09-21] (SurfRight B.V. -> )
S3 AscFileControl; \??\C:\Program Files\IObit\Advanced SystemCare\drivers\win7_x86\AscFileControl.sys [X]
S3 AscFileFilter; \??\C:\Program Files\IObit\Advanced SystemCare\drivers\win7_x86\AscFileFilter.sys [X]
S3 AscRegistryFilter; \??\C:\Program Files\IObit\Advanced SystemCare\drivers\win7_x86\AscRegistryFilter.sys [X]
S3 catchme; \??\C:\Users\Walter\AppData\Local\Temp\catchme.sys [X] <==== ATENCIÓN
S3 CLMirrorDriver; system32\DRIVERS\CLMirrorDriver.sys [X]
S3 clwvd8; system32\DRIVERS\clwvd8.sys [X]
S3 cpuz145; \??\C:\Windows\temp\cpuz145\cpuz145_x32.sys [X]
S3 iobit_monitor_server; \??\C:\Program Files\IObit\Advanced SystemCare\drivers\Monitor_x86.sys [X]
S0 MBAMSwissArmy; System32\Drivers\mbamswissarmy.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
2020-05-09 20:50 - 2020-05-09 21:47 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Herramientas de Microsoft Office 2016
2020-05-09 20:47 - 2020-05-09 21:47 - 000000000 ____D C:\Program Files\Microsoft Office
2020-05-09 18:40 - 2020-05-09 18:40 - 000000000 ____D C:\Users\Walter\Desktop\kms activador-20200509T213922Z-001
2020-05-09 18:39 - 2020-05-09 18:39 - 003474405 _____ C:\Users\Walter\Desktop\kms activador-20200509T213922Z-001.zip
2020-05-09 18:20 - 2020-05-09 18:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
2020-05-03 17:09 - 2020-05-09 18:20 - 000003366 _____ C:\Windows\system32\Tasks\AutoPico Daily Restart
2020-05-03 17:07 - 2020-05-03 17:07 - 001971426 _____ C:\Users\Walter\Desktop\Activador auto pico.rar
2020-05-03 17:07 - 2020-05-03 17:07 - 000000000 ____D C:\Users\Walter\Desktop\Activador auto pico
2020-05-09 18:20 - 2019-06-12 18:16 - 000000000 ____D C:\Program Files\KMSpico
2019-12-25 02:05 - 2019-12-27 21:58 - 000038081 _____ () C:\Users\Walter\AppData\Roaming\downloads.json
2019-08-17 01:07 - 2019-08-17 01:08 - 1215017038 _____ () C:\Users\Walter\AppData\Roaming\job6.tif
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Ningún archivo
ContextMenuHandlers4: [MSSE] -> {0365FE2C-F183-4091-AC82-BFC39FB75C49} =>  -> Ningún archivo
AlternateDataStreams: C:\Users\Walter\Desktop\TeamViewer_Setup_es.exe:com.dropbox.attributes [168]
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppXSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BFE => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BITS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\camsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ClipSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dps => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\lfsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MpsSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\semgrsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SharedAccess => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\shellhwdetection => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TokenBroker => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRemoveSafeBoot => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vss => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WSService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppXSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BITS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\camsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ClipSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dps => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\lfsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\msiserver => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SamSs => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\semgrsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\shellhwdetection => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv2 => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srvnet => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TokenBroker => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRemoveSafeBoot => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vss => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WSService => ""="Service"
MSCONFIG\Services: Service KMSELDI => 2
FirewallRules: [TCP Query User{F1E95A4E-08B5-4D5C-94C6-48E329D27499}P:\zfinal\portable foxit pdf editor 2.0.1011.exe] => (Block) P:\zfinal\portable foxit pdf editor 2.0.1011.exe => Ningún archivo
FirewallRules: [UDP Query User{66F0EC20-92B5-4582-9AB9-160CF8400667}P:\zfinal\portable foxit pdf editor 2.0.1011.exe] => (Block) P:\zfinal\portable foxit pdf editor 2.0.1011.exe => Ningún archivo
FirewallRules: [TCP Query User{15BEDE75-5162-4AC0-AAEF-FED22E4B9142}H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe] => (Block) H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe => Ningún archivo
FirewallRules: [UDP Query User{BF4E2245-AAFA-4265-BE8A-722D20A0AEB1}H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe] => (Block) H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe => Ningún archivo
C:\Program Files\KMSpico
C:\Program Files\Common Files\Microsoft Shared\Office16
C:\Program Files\IObit

CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:
END
  • Lo guarda bajo el nombre de fixlist.txt en el escritorio <<< Esto es muy importante.

Nota: Es necesario que el ejecutable Frst.exe/Frst64.exe y fixlist.txt se encuentren en la misma ubicación (escritorio) o si no la herramienta no trabajará.

3.- Inicie su ordenador en >>> Modo Seguro >>> Aplicable a Windows 10. o Windows 7.

  • Ejecute Frst.exe o Frst64.exe. según el caso.
  • Presione el botón Fix/Corregir y aguarde a que termine.
  • La Herramienta guardará el reporte en su escritorio (Fixlog.txt).
  • Reinicia y lo pega en su próxima respuesta.

Nos comentas…

Salu2

Hola ,buenas Algunas cosas , los navegadores los deje porque estaban , sus iconos desaparecieron funcionan bien ,lo demas lo realice según los pasos , Involuntariamente en modo seguro el delfix lo ejecute y borro segun el algunas infecciones, despues mire bien y realice el respaldo. Despues ejecute Frst y pongo lo que salio (haber si despues de todo esto me deja instalar el Office)

Resultados de la corrección de Farbar Recovery Scan Tool (x86) Versión: 11-05-2020
Ejecutado por Walter (12-05-2020 22:23:25) Run:1
Ejecutado desde C:\Users\Walter\Desktop
Perfiles cargados: Walter
Modo de Inicio: Safe Mode (with Networking)

==============================================

fixlist contenido:
*****************
Start
CloseProcesses:
HKLM\...\Run: [DjVu To PDF Converter Software.exe] => [X]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\81.0.4044.138\Installer\chrmstp.exe [2020-05-09] (Google LLC -> Google LLC)
GroupPolicy\User: Restricci�n ? <==== ATENCI�N
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricci�n <==== ATENCI�N
CHR HKLM\SOFTWARE\Policies\Google: Restricci�n <==== ATENCI�N
Task: {04A4D19B-035E-4722-8981-E63B0ACB987E} - System32\Tasks\Tweaking.com - Windows Repair Tray Icon => C:\Program Files\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [218336 2017-05-02] (Tweaking LLC -> Tweaking.com)
Task: {5FD4F3F9-4E21-4BDF-9935-84C7DBA47CF4} - System32\Tasks\ASC_SkipUac_Walter => C:\Program Files\IObit\Advanced SystemCare\ASC.exe
ask: {61EB260B-566A-4946-9347-2E6F4DBEE579} - System32\Tasks\{DE83D52E-D4F8-4EF5-8FFF-470D4F2D93FA} => C:\Windows\system32\pcalua.exe -a C:\Users\Walter\Downloads\ie6setup.exe -d C:\Users\Walter\Downloads
Task: {763E2A51-F31F-4946-A05E-7DA3547D3C13} - \CCleanerSkipUAC -> Ning�n archivo <==== ATENCI�N
Task: {838F540F-5AFF-4748-9DEB-0BEB5FEB41E3} - System32\Tasks\{ACF677FD-EE20-4D2A-9D5A-1F2BF2A9487B} => C:\Users\Walter\Desktop\Nueva carpeta (5)\coolpro2.exe
Task: {9612AF67-7BD5-4AAA-8D49-2351CD1B7E58} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [737984 2015-08-30] (@ByELDI -> @ByELDI) [Archivo no firmado]
Task: {C7A05351-D5CA-486F-94F4-7D7E4938A881} - System32\Tasks\ASC_PerformanceMonitor => C:\Program Files\IObit\Advanced SystemCare\Monitor.exe
Task: {D14A41CD-A893-4E93-A16E-8B73D992B8D2} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe
Task: {F20A688C-D860-43EA-B18D-6DC514837965} - System32\Tasks\{59FDCB39-B2CF-4D20-97BD-9665F4869F8D} => C:\Windows\system32\pcalua.exe -a C:\Users\Walter\Desktop\WHEX197\WHEX197\Portable\setup.exe -d C:\Users\Walter\Desktop\WHEX197\WHEX197\Portable
Winsock: Catalog5 07 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => Ning�n archivo 
Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => Ning�n archivo 
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.msn.com/?OCID=IE11FREDHP&PC=UF01
S3 hitmanpro37; C:\Windows\system32\drivers\hitmanpro37.sys [38224 2019-09-21] (SurfRight B.V. -> )
S3 AscFileControl; \??\C:\Program Files\IObit\Advanced SystemCare\drivers\win7_x86\AscFileControl.sys [X]
S3 AscFileFilter; \??\C:\Program Files\IObit\Advanced SystemCare\drivers\win7_x86\AscFileFilter.sys [X]
S3 AscRegistryFilter; \??\C:\Program Files\IObit\Advanced SystemCare\drivers\win7_x86\AscRegistryFilter.sys [X]
S3 catchme; \??\C:\Users\Walter\AppData\Local\Temp\catchme.sys [X] <==== ATENCI�N
S3 CLMirrorDriver; system32\DRIVERS\CLMirrorDriver.sys [X]
S3 clwvd8; system32\DRIVERS\clwvd8.sys [X]
S3 cpuz145; \??\C:\Windows\temp\cpuz145\cpuz145_x32.sys [X]
S3 iobit_monitor_server; \??\C:\Program Files\IObit\Advanced SystemCare\drivers\Monitor_x86.sys [X]
S0 MBAMSwissArmy; System32\Drivers\mbamswissarmy.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
2020-05-09 20:50 - 2020-05-09 21:47 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Herramientas de Microsoft Office 2016
2020-05-09 20:47 - 2020-05-09 21:47 - 000000000 ____D C:\Program Files\Microsoft Office
2020-05-09 18:40 - 2020-05-09 18:40 - 000000000 ____D C:\Users\Walter\Desktop\kms activador-20200509T213922Z-001
2020-05-09 18:39 - 2020-05-09 18:39 - 003474405 _____ C:\Users\Walter\Desktop\kms activador-20200509T213922Z-001.zip
2020-05-09 18:20 - 2020-05-09 18:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
2020-05-03 17:09 - 2020-05-09 18:20 - 000003366 _____ C:\Windows\system32\Tasks\AutoPico Daily Restart
2020-05-03 17:07 - 2020-05-03 17:07 - 001971426 _____ C:\Users\Walter\Desktop\Activador auto pico.rar
2020-05-03 17:07 - 2020-05-03 17:07 - 000000000 ____D C:\Users\Walter\Desktop\Activador auto pico
2020-05-09 18:20 - 2019-06-12 18:16 - 000000000 ____D C:\Program Files\KMSpico
2019-12-25 02:05 - 2019-12-27 21:58 - 000038081 _____ () C:\Users\Walter\AppData\Roaming\downloads.json
2019-08-17 01:07 - 2019-08-17 01:08 - 1215017038 _____ () C:\Users\Walter\AppData\Roaming\job6.tif
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Ning�n archivo
ContextMenuHandlers4: [MSSE] -> {0365FE2C-F183-4091-AC82-BFC39FB75C49} =>  -> Ning�n archivo
AlternateDataStreams: C:\Users\Walter\Desktop\TeamViewer_Setup_es.exe:com.dropbox.attributes [168]
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppXSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BFE => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BITS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\camsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ClipSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dps => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\lfsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MpsSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\semgrsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SharedAccess => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\shellhwdetection => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TokenBroker => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRemoveSafeBoot => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vss => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WSService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppXSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BITS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\camsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ClipSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dps => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\lfsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\msiserver => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SamSs => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\semgrsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\shellhwdetection => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv2 => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srvnet => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TokenBroker => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRemoveSafeBoot => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vss => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WSService => ""="Service"
MSCONFIG\Services: Service KMSELDI => 2
FirewallRules: [TCP Query User{F1E95A4E-08B5-4D5C-94C6-48E329D27499}P:\zfinal\portable foxit pdf editor 2.0.1011.exe] => (Block) P:\zfinal\portable foxit pdf editor 2.0.1011.exe => Ning�n archivo
FirewallRules: [UDP Query User{66F0EC20-92B5-4582-9AB9-160CF8400667}P:\zfinal\portable foxit pdf editor 2.0.1011.exe] => (Block) P:\zfinal\portable foxit pdf editor 2.0.1011.exe => Ning�n archivo
FirewallRules: [TCP Query User{15BEDE75-5162-4AC0-AAEF-FED22E4B9142}H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe] => (Block) H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe => Ning�n archivo
FirewallRules: [UDP Query User{BF4E2245-AAFA-4265-BE8A-722D20A0AEB1}H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe] => (Block) H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe => Ning�n archivo
C:\Program Files\KMSpico
C:\Program Files\Common Files\Microsoft Shared\Office16
C:\Program Files\IObit

CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:
END
*****************

Procesos cerrados correctamente.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\DjVu To PDF Converter Software.exe" => eliminado correctamente
HKLM\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96} => eliminado correctamente
C:\Windows\system32\GroupPolicy\User => movido correctamente
C:\Windows\system32\GroupPolicy\GPT.ini => movido correctamente
HKLM\SOFTWARE\Policies\Mozilla => eliminado correctamente
HKLM\SOFTWARE\Policies\Google => eliminado correctamente
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{04A4D19B-035E-4722-8981-E63B0ACB987E} => no encontrado
"C:\Windows\System32\Tasks\Tweaking.com - Windows Repair Tray Icon" => no encontrado
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Tweaking.com - Windows Repair Tray Icon => no encontrado
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5FD4F3F9-4E21-4BDF-9935-84C7DBA47CF4}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5FD4F3F9-4E21-4BDF-9935-84C7DBA47CF4}" => eliminado correctamente
C:\Windows\System32\Tasks\ASC_SkipUac_Walter => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASC_SkipUac_Walter" => eliminado correctamente
ask: {61EB260B-566A-4946-9347-2E6F4DBEE579} - System32\Tasks\{DE83D52E-D4F8-4EF5-8FFF-470D4F2D93FA} => C:\Windows\system32\pcalua.exe -a C:\Users\Walter\Downloads\ie6setup.exe -d C:\Users\Walter\Downloads => Error: Ninguna corrección automática encontrada para esta entrada.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{763E2A51-F31F-4946-A05E-7DA3547D3C13}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{763E2A51-F31F-4946-A05E-7DA3547D3C13}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CCleanerSkipUAC" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{838F540F-5AFF-4748-9DEB-0BEB5FEB41E3}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{838F540F-5AFF-4748-9DEB-0BEB5FEB41E3}" => eliminado correctamente
C:\Windows\System32\Tasks\{ACF677FD-EE20-4D2A-9D5A-1F2BF2A9487B} => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{ACF677FD-EE20-4D2A-9D5A-1F2BF2A9487B}" => eliminado correctamente
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9612AF67-7BD5-4AAA-8D49-2351CD1B7E58} => no encontrado
"C:\Windows\System32\Tasks\AutoPico Daily Restart" => no encontrado
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AutoPico Daily Restart => no encontrado
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C7A05351-D5CA-486F-94F4-7D7E4938A881}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C7A05351-D5CA-486F-94F4-7D7E4938A881}" => eliminado correctamente
C:\Windows\System32\Tasks\ASC_PerformanceMonitor => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASC_PerformanceMonitor" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D14A41CD-A893-4E93-A16E-8B73D992B8D2}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D14A41CD-A893-4E93-A16E-8B73D992B8D2}" => eliminado correctamente
C:\Windows\System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Office\Office 15 Subscription Heartbeat" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F20A688C-D860-43EA-B18D-6DC514837965}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F20A688C-D860-43EA-B18D-6DC514837965}" => eliminado correctamente
C:\Windows\System32\Tasks\{59FDCB39-B2CF-4D20-97BD-9665F4869F8D} => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{59FDCB39-B2CF-4D20-97BD-9665F4869F8D}" => eliminado correctamente
HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000007 => eliminado correctamente
HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000008 => eliminado correctamente
"HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Search Page" => eliminado correctamente
"HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page" => eliminado correctamente
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\Software\Microsoft\Internet Explorer\Main\\"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" => valor restaurado correctamente
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\Software\Microsoft\Internet Explorer\Main\\"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" => valor restaurado correctamente
HKLM\System\CurrentControlSet\Services\hitmanpro37 => eliminado correctamente
hitmanpro37 => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\AscFileControl => eliminado correctamente
AscFileControl => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\AscFileFilter => eliminado correctamente
AscFileFilter => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\AscRegistryFilter => eliminado correctamente
AscRegistryFilter => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\catchme => eliminado correctamente
catchme => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\CLMirrorDriver => eliminado correctamente
CLMirrorDriver => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\clwvd8 => eliminado correctamente
clwvd8 => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\cpuz145 => eliminado correctamente
cpuz145 => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\iobit_monitor_server => eliminado correctamente
iobit_monitor_server => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\MBAMSwissArmy => eliminado correctamente
MBAMSwissArmy => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\VGPU => eliminado correctamente
VGPU => servicio eliminado correctamente
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Herramientas de Microsoft Office 2016 => movido correctamente
C:\Program Files\Microsoft Office => movido correctamente
"C:\Users\Walter\Desktop\kms activador-20200509T213922Z-001" => no encontrado
"C:\Users\Walter\Desktop\kms activador-20200509T213922Z-001.zip" => no encontrado
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico" => no encontrado
"C:\Windows\system32\Tasks\AutoPico Daily Restart" => no encontrado
"C:\Users\Walter\Desktop\Activador auto pico.rar" => no encontrado
"C:\Users\Walter\Desktop\Activador auto pico" => no encontrado
C:\Program Files\KMSpico => movido correctamente
C:\Users\Walter\AppData\Roaming\downloads.json => movido correctamente
C:\Users\Walter\AppData\Roaming\job6.tif => movido correctamente
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avg => eliminado correctamente
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\MSSE => eliminado correctamente
"C:\Users\Walter\Desktop\TeamViewer_Setup_es.exe" => ":com.dropbox.attributes" ADS no encontrado.
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\AppXSvc => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\BFE => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\BITS => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\camsvc => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\ClipSvc => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\dps => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\lfsvc => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\MpsSvc => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\msiserver => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\semgrsvc => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\SharedAccess => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\shellhwdetection => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\TokenBroker => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\\"Default"="" => valor restaurado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\\"AlternateShell"="cmd.exe" => valor restaurado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRemoveSafeBoot => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\vss => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\WSService => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\AppXSvc => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\BITS => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\camsvc => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\ClipSvc => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\dps => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\lfsvc => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\msiserver => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\SamSs => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\semgrsvc => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\shellhwdetection => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\srv => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\srv2 => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\srvnet => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\TokenBroker => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\\"Default"="" => valor restaurado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\\"AlternateShell"="cmd.exe" => valor restaurado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\TweakingRemoveSafeBoot => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\vss => eliminado correctamente
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\WSService => eliminado correctamente
HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Service KMSELDI => eliminado correctamente
HKLM\System\CurrentControlSet\Services\Service KMSELDI => no encontrado
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{F1E95A4E-08B5-4D5C-94C6-48E329D27499}P:\zfinal\portable foxit pdf editor 2.0.1011.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{66F0EC20-92B5-4582-9AB9-160CF8400667}P:\zfinal\portable foxit pdf editor 2.0.1011.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{15BEDE75-5162-4AC0-AAEF-FED22E4B9142}H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{BF4E2245-AAFA-4265-BE8A-722D20A0AEB1}H:\sivoli 28 oct\portable foxit pdf editor 2.0.1011.exe" => eliminado correctamente
"C:\Program Files\KMSpico" => no encontrado
"C:\Program Files\Common Files\Microsoft Shared\Office16" => no encontrado
C:\Program Files\IObit => movido correctamente

========= ipconfig /flushdns =========


Configuraci¢n IP de Windows

Se vaci¢ correctamente la cach‚ de resoluci¢n de DNS.

========= Final de CMD: =========


========= ipconfig /renew =========


Configuraci¢n IP de Windows

Error al renovar la interfaz Conexi¢n de  rea local : El sistema no puede encontrar el archivo especificado.
 

Adaptador de Ethernet Conexi¢n de  rea local 2:

   Sufijo DNS espec¡fico para la conexi¢n. . : 
   V¡nculo: direcci¢n IPv6 local. . . : fe80::45a:7299:21a7:515c%12
   Direcci¢n IPv4. . . . . . . . . . . . . . : 192.168.0.10
   M scara de subred . . . . . . . . . . . . : 0.0.0.0
   Puerta de enlace predeterminada . . . . . : 192.168.0.1

Adaptador de Ethernet Conexi¢n de  rea local:

   Estado de los medios. . . . . . . . . . . : medios desconectados
   Sufijo DNS espec¡fico para la conexi¢n. . : 
   V¡nculo: direcci¢n IPv6 local. . . : fe80::48ae:d737:3525:2170%11
   Puerta de enlace predeterminada . . . . . : 

Adaptador de t£nel isatap.{BDDD6E62-2F7C-479E-BCB2-D39D43C155B7}:

   Estado de los medios. . . . . . . . . . . : medios desconectados
   Sufijo DNS espec¡fico para la conexi¢n. . : 

========= Final de CMD: =========


========= bitsadmin /reset /allusers =========


BITSADMIN version 3.0 [ 7.5.7601 ]
BITS administration utility.
(C) Copyright 2000-2006 Microsoft Corp.

BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.

Unable to connect to BITS - 0x8007042c

========= Final de CMD: =========


========= netsh winsock reset =========

La funci¢n de inicializaci¢n InitHelperDll en NSHHTTP.DLL no pudo iniciar, c¢digo de error
11003

El cat logo Winsock se restableci¢ correctamente.
Debe reiniciar el equipo para completar el restablecimiento.


========= Final de CMD: =========


========= netsh advfirewall reset =========

La funci¢n de inicializaci¢n InitHelperDll en NSHHTTP.DLL no pudo iniciar, c¢digo de error
11003
Aceptar


========= Final de CMD: =========


========= netsh advfirewall set allprofiles state ON =========

La funci¢n de inicializaci¢n InitHelperDll en NSHHTTP.DLL no pudo iniciar, c¢digo de error
11003
Aceptar


========= Final de CMD: =========


========= netsh int ipv4 reset =========

La funci¢n de inicializaci¢n InitHelperDll en NSHHTTP.DLL no pudo iniciar, c¢digo de error
11003
Global se restableci¢ correctamente.
Interfaz se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.


========= Final de CMD: =========


========= netsh int ipv6 reset =========

La funci¢n de inicializaci¢n InitHelperDll en NSHHTTP.DLL no pudo iniciar, c¢digo de error
11003
No hay valores configurados por el usuario para restablecer.


========= Final de CMD: =========


========= RemoveProxy: =========

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => eliminado correctamente
HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\SOFTWARE\Policies\Microsoft\Internet Explorer => eliminado correctamente
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente
"HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\S-1-5-21-1069064461-1938371621-2346768231-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente


========= Final de RemoveProxy: =========

C:\Windows\System32\Drivers\etc\hosts => movido correctamente
Hosts restaurado correctamente.

=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStoree, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 171860398 B
Java, Flash, Steam htmlcache => 379 B
Windows/system/drivers => 3902 B
Edge => 0 B
Chrome => 273470986 B
Firefox => 1322918134 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 33125 B
Public => 33125 B
ProgramData => 33125 B
systemprofile => 29593333 B
LocalService => 29659561 B
NetworkService => 29659561 B
Walter => 267595042 B
Lisyy => 267943853 B

RecycleBin => 6097798 B
EmptyTemp: => 2.2 GB datos temporales Eliminados.

================================


El sistema necesita reiniciarse.

==== Final  Fixlog 22:24:04 ====

Hola @WALLY

Ahora si intenta la instalación de Office, cualquier error nos comentas o subes una imagen.

Salu2

me temo que sigo con el mismo error , instala todo bien y cuando va a terminar sale esto

Al final de instalar Despues de cerrar el instalador de office

saludos

Hola @WALLY

Te dejo información:

Nos comentas como te va.

Salu2

hola he probado con todo y nada , baje otro offi parece que terminaba bien y me mando error , parece que esta algo corrupto y no se que es…saludos