Procesos no deseados

Hola , tengo problemas de direccion de ubicacion , instale varios VPN , borre algunos y otros los deje , sin embargo aunque no los usara estos se activaban cambiando mi ubicacion de forma extraña , segun RGC un programa para jugar WARCRAFT 3 en linea , estoy en la ubicacion de Peru y Asia , vi en procesos y efectivamente estaba el proceso de un VPN lo cerre , entre denuevo y ahora solo estaba en peru , borre ese VPN y reincie la PC y sigo saliendo que estoy en ASIA Y PERU , hay alguna forma de desactivar todos los procesos no deseados a pesar de que no sean virus y dejar solo los esenciales como drivers y eso ?

Busca services.msc, abrelo y en esa ventana busca el servicio q quieras detener, seleccionalo, da click derecho, click en propiedades y en tipo de inicio selecciona deshabilitar.

Hola chicos:

@Cristina_Mirina_Roma Antes de meter la pata con los servicios desinstala todos los VPN.

Desinstala con Revo Uninstaller en su Modo Avanzado:

  • VPN

Manual de Revo Uninstaller.

Luego de reiniciar vienes y lo comentas, así buscamos los restos.

Salu2

Hola , segun el Revo no tengo mas VPNS , ayer desactive ciertos servicios y borre ciertas cosas que parecian tener relacion a ello , RGC funciono correctamente y mi ubicacion segun este era Perú , luego ejecute el Juego SC2 y cuando volvi al RGC nuevamente plantea que estoy en asia y peru :frowning: , segun google mi ibucacion es peru xD asi que no entiendo como SC2 activo este mecanismo para que rgc piense que estoy en asia y peru al mismo tiempo

desde entonces cuando reinicio la PC rgc piensa que estoy en peruy asia , tendra esto que ver con las continuas desconexiones que sufro de internet ?

Hola @Cristina_Mirina_Roma

La verdad soy un desastre total con los juegos no se mucho de ellos, pero si se que algunas de sus trampitas si pueden hacer lo que tu mencionas.

Para asegurarnos desinstala por el momento solo para hacer pruebas y asegurarnos:

  • RGC
  • SC2

Con RevoUnistaller en su Modo Avanzado como ya lo haz hecho antes.

Reinicias.

Y luego realiza lo siguiente:

1.- Desactiva temporalmente tu antivirus y cualquier programa de seguridad.

2.- Descarga Farbar Recovery Scan Tool. en el escritorio, seleccionando la versión adecuada para la arquitectura (32 o 64bits) de su equipo. >> Como saber si mi Windows es de 32 o 64 bits.?

  • Ejecuta FRST.exe.
  • En el mensaje de la ventana del Disclaimer, pulsamos Yes
  • En la ventana principal pulsamos en el botón Scan/Analizar y esperamos a que concluya el proceso.
  • Se abrirán dos(2) archivos(Logs), Frst.txt y Addition.txt, estos quedaran grabados en el escritorio.

Guía: Como Ejecutar FRST

3.- En tu próxima respuesta, pega los reportes generados.

Guía : ¿Como Pegar reportes en el Foro?

Esperamos esos reporte.

Salu2

Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 29-05-2020
Ejecutado por usuario (administrador) sobre USER-PC (ASUS All Series) (29-05-2020 02:26:21)
Ejecutado desde C:\Users\usuario\Downloads
Perfiles cargados: usuario
Platform: Windows 7 Ultimate Service Pack 1 (X64) Idioma: Español (España, internacional)
Internet Explorer Versión 11 (Navegador predeterminado: Chrome)
Modo de Inicio: Normal
Tutorial para Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Procesos (Lista blanca) =================

(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)

(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSSrcExt.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\atiesrxx.exe
(Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Blizzard\Bonjour Service\mDNSResponder.exe
(ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <2>
(Blizzard Entertainment, Inc. -> Blizzard Entertainment) C:\Program Files (x86)\Blizzard App\Battle.net.exe <3>
(Blizzard Entertainment, Inc. -> Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.7037\Agent.exe
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSMonitorServicePDVD13.exe
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe
(Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <11>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe
(Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\alg.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve -> Valve Corporation) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7>
(Valve -> Valve Corporation) D:\Steam\steam.exe

==================== Registro (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7562456 2014-03-25] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [108728 2020-05-04] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [PowerDVD13Agent] => C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13Agent.exe [513048 2013-03-20] (CyberLink Corp. -> CyberLink Corp.)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restricción <==== ATENCIÓN
HKLM\...\Print\Monitors\WSD Port: C:\Windows\system32\WSDMon.dll [224768 2009-07-13] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\83.0.4103.61\Installer\chrmstp.exe [2020-05-21] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\...\Authentication\Credential Providers: [{F8A0B131-5F68-486c-8040-7E8FC3C85BB6}] -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN
CHR HKLM\SOFTWARE\Policies\Google: Restricción <==== ATENCIÓN

==================== Tareas programadas (Lista blanca) ============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

Task: {0E1058DA-90AF-4BD5-A17A-490D45F31567} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1660520 2020-02-27] (Avast Software s.r.o. -> Avast Software)
Task: {116323FF-2EE2-4A33-9932-5BA3143D02F4} - \{17E24548-4AC6-4245-A880-18F6882C0440} -> Ningún archivo <==== ATENCIÓN
Task: {1D9CCD76-92F9-4FA6-A83F-0F148F5C9285} - System32\Tasks\{7FBD0E2F-A226-4928-8552-0C121886BA46} => C:\Windows\system32\pcalua.exe -a F:\setup.exe -d F:\
Task: {27ECC25A-62F8-45D8-A49F-A20F8D4E22E7} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems)
Task: {30D67F0E-390C-4039-AB5C-83DE0C718184} - \{96E7149D-A174-4A0C-BA9E-74B8C9180FD2} -> Ningún archivo <==== ATENCIÓN
Task: {33846466-5D91-4F5A-BA80-B3B3052426E4} - System32\Tasks\{1FE29071-0545-452A-9C69-45EA8DA87317} => D:\World of Warcraft\_retail_\Wow.exe [45429736 2020-04-29] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
Task: {352B0BCC-CFAC-47BD-AC13-62D586AD0F5D} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe
Task: {41BDFA09-DA88-40BF-BF55-F7E336FF953E} - System32\Tasks\{45CA1937-7BC6-45BF-8262-0DA10BD70B67} => D:\World of Warcraft\_retail_\Wow.exe [45429736 2020-04-29] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
Task: {45583B31-7DA0-41BB-B859-C0B32EFE7E0B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {45CDEA22-A09D-4AEB-9484-35A0C7D2D30A} - System32\Tasks\{494E0AD8-05E2-4D59-981A-100298757EE5} => D:\World of Warcraft\World of Warcraft Launcher.exe [4698600 2019-05-15] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
Task: {56529DF1-ABDE-477E-88A9-1F37AD0281DA} - System32\Tasks\GameFire => D:\My pony descargas\GFTray.exe
Task: {6CBE3FB5-B992-4AB3-9839-88B3BFF30377} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-04-05] (Google LLC -> Google LLC)
Task: {6F9E32F1-9C83-47C2-B986-2201C6191E05} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {7AC1F32A-0973-4604-980B-1FD5DF099207} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_371_Plugin.exe [1458232 2020-05-12] (Adobe Inc. -> Adobe)
Task: {7B9C3287-83B5-4F93-A541-4FD1275637A8} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-02-04] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {7E2E5DC8-3643-4F8F-94CF-D4FA198A16C4} - System32\Tasks\{EFF8CBDC-EBA6-42B5-B86A-9DAD403631AB} => C:\Windows\system32\pcalua.exe -a F:\instmsia.exe -d F:\
Task: {803911A1-B69A-4C19-A4F9-30D842D692E7} - System32\Tasks\{D57EB277-98E7-4E76-8C74-A620041A8C78} => D:\World of Warcraft\_retail_\Wow.exe [45429736 2020-04-29] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
Task: {A3B5DBBF-D01A-4242-9F7B-1E8624ADBF89} - System32\Tasks\BlueStacksHelper => D:\Bluestacks\BlueStacks\Client\Helper\BlueStacksHelper.exe
Task: {A539AE9B-B0C5-4690-A95E-08358A51A1D2} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3339472 2020-05-04] (Avast Software s.r.o. -> AVAST Software)
Task: {ACE969F0-1F63-4A08-93DA-85E0A8B66341} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {B9129505-66D2-421D-9DF8-1C2ED994DAB4} - System32\Tasks\GameFireSkipUAC => D:\My pony descargas\GameFire.exe
Task: {BF5F64F6-9238-4B89-8344-5549DD06AFC9} - \{2CD6C93C-36B7-484D-83FC-B93AEE2427D5} -> Ningún archivo <==== ATENCIÓN
Task: {C02C53A2-1F10-450E-B052-1A455764A44E} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-05-12] (Adobe Inc. -> Adobe)
Task: {C249B1FB-5BFC-46EE-9498-41D2D99AD55C} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [69304 2019-12-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {D0CD875B-5B76-4A33-8FFB-F9428CE293D0} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [506880 2019-12-04] (Advanced Micro Devices, Inc.) [Archivo no firmado]
Task: {E475A98B-D1A7-4540-90D3-A952E84362AC} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [61624 2019-12-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {E9E0DF6D-BC5B-4EDC-B699-F8A00E039444} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-04-05] (Google LLC -> Google LLC)

(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)


==================== Internet (Lista blanca) ====================

(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)

Winsock: Catalog5 07 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145648 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145648 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
Winsock: Catalog5-x64 07 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171760 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
Winsock: Catalog5-x64 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171760 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
Tcpip\Parameters: [DhcpNameServer] 200.48.225.146 200.48.225.130
Tcpip\..\Interfaces\{ECB8006B-44F4-4CB8-A255-02D848890824}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{ECB8006B-44F4-4CB8-A255-02D848890824}: [DhcpNameServer] 200.48.225.146 200.48.225.130

Internet Explorer:
==================
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> D:\Games\JAVA\bin\ssv.dll [2020-04-05] (Oracle America, Inc. -> Oracle Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> D:\Games\JAVA\bin\jp2ssv.dll [2020-04-05] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Aplicación auxiliar de inicio de sesión en la cuenta Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF DefaultProfile: bwn1nd9d.default
FF ProfilePath: C:\Users\usuario\AppData\Roaming\Mozilla\Firefox\Profiles\bwn1nd9d.default [2020-05-27]
FF Extension: (Avast Online Security) - C:\Users\usuario\AppData\Roaming\Mozilla\Firefox\Profiles\bwn1nd9d.default\Extensions\[email protected] [2019-06-07]
FF Extension: (Hotfix for Firefox bug 1548973 (armagaddon 2.0) mitigation) - C:\Users\usuario\AppData\Roaming\Mozilla\Firefox\Profiles\bwn1nd9d.default\features\{e2f84d01-7ffd-45be-87b7-4e279164eaeb}\[email protected] [2020-04-05] [Heredado]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_371.dll [2020-05-12] (Adobe Inc. -> )
FF Plugin: @java.com/DTPlugin,version=11.241.2 -> D:\Games\JAVA\bin\dtplugin\npDeployJava1.dll [2020-04-05] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.241.2 -> D:\Games\JAVA\bin\plugin2\npjp2.dll [2020-04-05] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [Ningún archivo]
FF Plugin: @unity3d.com/UnityPlayer64,version=1.0 -> C:\Program Files\Unity\WebPlayer64\loader-x64\npUnity3D64.dll [2015-06-08] (Unity Technologies ApS -> Unity Technologies ApS)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_371.dll [2020-05-12] (Adobe Inc. -> )
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Ningún archivo]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @raidcall.en/RCplugin -> C:\Users\user\AppData\Roaming\raidcall\plugins\nprcplugin.dll [2015-03-18] (Raidcall) [Archivo no firmado]
FF Plugin-x32: @t.garena.com/garenatalk -> C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll [Ningún archivo]
FF Plugin-x32: @videolan.org/vlc,version=2.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2012-10-15] (VideoLAN) [Archivo no firmado]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-05-03] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2082071340-3476837701-2702432445-1005: @zoom.us/ZoomVideoPlugin -> C:\Users\usuario\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2020-05-12] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
StartMenuInternet: Firefox-A8758A538F23BB34 - D:\GonVisor\firefox.exe

Chrome: 
=======
CHR Profile: C:\Users\usuario\AppData\Local\Google\Chrome\User Data\Default [2020-05-29]
CHR Extension: (Traductor de Google) - C:\Users\usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2020-04-08]
CHR Extension: (Google Drive) - C:\Users\usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-04-05]
CHR Extension: (Pop up blocker for Chrome™ - Poper Blocker) - C:\Users\usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkkbcggnhapdmkeljlodobbkopceiche [2020-04-05]
CHR Extension: (YouTube) - C:\Users\usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-04-05]
CHR Extension: (Adblock Plus - bloqueador de anuncios gratis) - C:\Users\usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2020-04-06]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-05-27]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-04-05]
CHR Extension: (Gmail) - C:\Users\usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-04-05]
CHR Extension: (Chrome Media Router) - C:\Users\usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-05-23]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]
StartMenuInternet: Google Chrome.37PBB64OUV2S5YBH5CJCM6UGAA - C:\Users\user\AppData\Local\Google\Chrome\Application\chrome.exe

==================== Servicios (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

S4 !SASCORE; D:\WARCRAFT\SASCORE64.EXE [173472 2017-01-30] (SUPERAntiSpyware.com -> SUPERAntiSpyware.com)
R2 AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [515256 2019-12-04] (Advanced Micro Devices, Inc. -> AMD)
S2 amdacpusrsvc; C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [190464 2019-12-04] () [Archivo no firmado]
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [936728 2013-05-07] (ASUSTeK Computer Inc. -> )
S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6350752 2020-05-04] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [348968 2020-05-04] (Avast Software s.r.o. -> AVAST Software)
R2 Bonjour Service; C:\Program Files (x86)\Blizzard\Bonjour Service\mDNSResponder.exe [390504 2017-07-26] (Apple Inc. -> Apple Inc.)
R2 CyberLink PowerDVD 13 Media Server Monitor Service; C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSMonitorServicePDVD13.exe [77576 2013-03-20] (CyberLink Corp. -> CyberLink)
R2 CyberLink PowerDVD 13 Media Server Service; C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe [323336 2013-03-20] (CyberLink Corp. -> CyberLink)
S3 Disc Soft Lite Bus Service; D:\Games\DAEMON Tools Lite\DiscSoftBusService.exe [1268568 2015-06-18] (Disc Soft Ltd -> Disc Soft Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803440 2019-04-10] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [315376 2014-04-25] (Intel Corporation - Software and Firmware Products -> Intel Corporation)
R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21304 2017-09-28] (Microsoft Corporation -> Microsoft Corporation)
S3 NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [724992 2006-10-09] (Nero AG) [Archivo no firmado]
S4 OracleDBConsolehr; C:\app\user\product\11.2.0\dbhome_1\bin\nmesrvc.exe [35328 2010-03-02] (Oracle Corporation) [Archivo no firmado]
S4 OracleOraDb11g_home1TNSListener; C:\app\user\product\11.2.0\dbhome_1\BIN\TNSLSNR.exe [518144 2010-03-15] (Oracle Corporation) [Archivo no firmado]
S4 OracleServiceHR; c:\app\user\product\11.2.0\dbhome_1\bin\ORACLE.EXE [134018048 2010-03-30] (Oracle Corporation) [Archivo no firmado]
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75064 2016-12-04] (Even Balance, Inc. -> )
S3 Te.Service; C:\Program Files (x86)\Windows Kits\10\Testing\Runtimes\TAEF\Wex.Services.exe [187904 2017-09-28] (Microsoft Corporation) [Archivo no firmado]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
R2 wlidsvc; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2292480 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
S4 KingoSoftService; C:\Users\user\AppData\Local\Kingosoft\Kingo Root\update_37510\bin\KingoSoftService.exe "C:\Users\user\AppData\Local\Kingosoft\Kingo Root\update_37510\bin\checkupdate.exe"
S4 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.242\WsAppService.exe [X]

===================== Controladores (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R2 amdacpksd; C:\Windows\system32\drivers\amdacpksd.sys [28344 2019-12-04] (Advanced Micro Devices, Inc. -> )
R3 amdkmdag; C:\Windows\System32\DRIVERS\atikmdag.sys [65706168 2019-12-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\Windows\System32\DRIVERS\atikmpag.sys [582840 2019-12-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [94216 2019-04-17] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] (ASUSTeK Computer Inc. -> )
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37136 2020-05-04] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [205880 2020-05-04] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [234560 2020-05-04] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [178760 2020-05-04] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [60480 2020-05-04] (Avast Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42784 2020-05-04] (Avast Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [175704 2020-05-04] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [501472 2020-05-04] (Avast Software s.r.o. -> AVAST Software)
R3 aswNetNd6; C:\Windows\System32\DRIVERS\aswNetNd6.sys [38152 2020-04-05] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [109272 2020-05-04] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [84856 2020-05-04] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [851592 2020-05-04] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [460992 2020-05-04] (Avast Software s.r.o. -> AVAST Software)
S2 aswStm; C:\Windows\System32\drivers\aswStm.sys [235488 2020-05-04] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [319112 2020-05-28] (Avast Software s.r.o. -> AVAST Software)
R3 AtiHDAudioService; C:\Windows\System32\drivers\AtihdW76.sys [105376 2019-07-24] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R1 cgnetfilter1521; C:\Windows\System32\drivers\cgnetfilter1521.sys [81696 2017-03-22] (CyberGhost SRL -> Windows (R) Win 7 DDK provider)
R3 CMUAC; C:\Windows\System32\DRIVERS\CMUAC.sys [646656 2015-06-25] (C-MEDIA ELECTRONICS INC. -> C-MEDIA)
R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2017-08-15] (Disc Soft Ltd -> Disc Soft Ltd)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2017-07-02] (DT Soft Ltd -> DT Soft Ltd)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2014-04-03] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation)
S3 ManyCam; C:\Windows\System32\DRIVERS\mcvidrv.sys [49304 2014-12-28] (ManyCam LLC -> Visicom Media Inc.)
S3 mcaudrv_simple; C:\Windows\System32\drivers\mcaudrv_x64.sys [35992 2014-12-28] (ManyCam LLC -> Visicom Media Inc.)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [201296 2018-04-21] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
S3 Neo_VPN; C:\Windows\System32\DRIVERS\Neo_0090.sys [38432 2017-03-01] (SoftEther Corporation -> SoftEther Corporation)
S3 ptun0901; C:\Windows\System32\DRIVERS\ptun0901.sys [27136 2016-06-15] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
R0 pwdrvio; C:\Windows\System32\pwdrvio.sys [19152 2013-09-30] (MiniTool Solution Ltd -> )
S3 pwdspio; C:\Windows\system32\pwdspio.sys [12504 2013-09-30] (MiniTool Solution Ltd -> )
R1 SASDIFSV; D:\WARCRAFT\SASDIFSV64.SYS [14928 2011-07-22] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; D:\WARCRAFT\SASKUTIL64.SYS [12368 2011-07-12] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [32496 2013-01-10] (Synaptics Incorporated -> Synaptics Incorporated)
S3 tap-tb-0901; C:\Windows\System32\DRIVERS\tap-tb-0901.sys [38656 2017-09-06] (TunnelBear, Inc. -> The OpenVPN Project)
S3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 tapprotonvpn; C:\Windows\System32\DRIVERS\tapprotonvpn.sys [36792 2017-08-24] (ProtonVPN AG -> The OpenVPN Project)
S3 tapwindscribe0901; C:\Windows\System32\DRIVERS\tapwindscribe0901.sys [45560 2017-09-13] (Windscribe Limited -> The OpenVPN Project)
S3 USBET; C:\Windows\System32\DRIVERS\ETdrv.sys [6416256 2011-07-08] (Etron Technology, Inc. -> Etron)
R1 VBoxUSBMon; C:\Windows\System32\DRIVERS\VBoxUSBMon.sys [127432 2015-09-16] (Duodian Online Technology Co. Ltd. -> BigNox Corporation)
R3 wovad_micarray; C:\Windows\System32\drivers\womic.sys [35840 2017-05-06] (Beijing Wolicheng Technology Co., Ltd. -> Windows (R) Win 7 DDK provider)
R2 {09F57980-3432-4AFC-957D-27AC45FAE1F5}; C:\Program Files (x86)\CyberLink\PowerDVD13\Common\NavFilter\000.fcl [130320 2013-03-19] (CyberLink Corp. -> CyberLink Corp.)
U1 aswbdisk; no ImagePath

==================== NetSvcs (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)


==================== Un mes (creado) ===================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-05-29 02:26 - 2020-05-29 02:27 - 000027934 _____ C:\Users\usuario\Downloads\FRST.txt
2020-05-29 02:25 - 2020-05-29 02:26 - 000000000 ____D C:\FRST
2020-05-29 02:23 - 2020-05-29 02:23 - 002289152 _____ (Farbar) C:\Users\usuario\Downloads\FRST64.exe
2020-05-29 02:08 - 2020-05-29 02:08 - 004133709 _____ C:\Users\usuario\Downloads\Overlord Volumen 13 - Los Paladines del Reino Santo ll.pdf
2020-05-28 17:40 - 2020-05-28 17:40 - 000235801 _____ C:\Users\usuario\Downloads\3303-6651-1-SM.pdf
2020-05-28 14:51 - 2020-05-28 14:51 - 007455016 _____ (VS Revo Group ) C:\Users\usuario\Downloads\revosetup.exe
2020-05-28 14:51 - 2020-05-28 14:51 - 000000697 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk
2020-05-28 14:51 - 2020-05-28 14:51 - 000000697 _____ C:\ProgramData\Desktop\Revo Uninstaller.lnk
2020-05-28 14:51 - 2020-05-28 14:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2020-05-27 18:07 - 2020-05-27 18:07 - 000000000 ____D C:\Users\usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2020-05-24 19:03 - 2020-05-24 19:03 - 001361856 _____ C:\Users\usuario\Downloads\mortalidad_materna.zip
2020-05-23 15:34 - 2020-05-23 15:34 - 000000000 ____D C:\Users\usuario\AppData\Roaming\SUPERAntiSpyware.com
2020-05-15 17:56 - 2020-05-15 17:56 - 001019669 _____ C:\Users\usuario\Downloads\S06.s1-Laboratorio.pdf
2020-05-15 17:22 - 2020-05-15 17:22 - 000705216 _____ C:\Users\usuario\Downloads\S05-s2-Practica Calificada1-Lab.pkz
2020-05-15 16:54 - 2020-05-15 16:54 - 000694230 _____ C:\Users\usuario\Downloads\S05-s2-Practica Calificada1-Lab.pdf
2020-05-15 15:38 - 2020-05-15 15:38 - 002386529 _____ C:\Users\usuario\Downloads\S03.s6-Material.pptx.pdf
2020-05-15 15:38 - 2020-05-15 15:38 - 002386529 _____ C:\Users\usuario\Downloads\S03.s5-Material.pptx.pdf
2020-05-15 15:29 - 2020-05-15 15:29 - 002894113 _____ C:\Users\usuario\Downloads\S01.s1-Material.pdf
2020-05-15 11:04 - 2020-05-15 11:04 - 003746997 _____ C:\Users\usuario\Downloads\S02.s3-Des-Practica-Dir01 (1).rar
2020-05-15 11:03 - 2020-05-15 11:03 - 010112873 _____ C:\Users\usuario\Downloads\S02.s3-Tarea-des (1).rar
2020-05-15 01:22 - 2020-05-15 01:22 - 000798460 _____ C:\Users\usuario\Downloads\ejemplopalapractica.pka
2020-05-14 23:34 - 2020-05-14 23:34 - 053216366 _____ C:\Users\usuario\Downloads\zoom_0.mp4
2020-05-14 22:38 - 2020-05-14 22:38 - 000093549 _____ C:\Users\usuario\Downloads\TAREAFB (2).pdf
2020-05-14 22:25 - 2020-05-14 22:25 - 000083540 _____ C:\Users\usuario\Downloads\S04.s8-Tarea.pdf
2020-05-14 21:15 - 2020-05-14 21:15 - 001341681 _____ C:\Users\usuario\Downloads\S05.s2 Material.pdf
2020-05-14 21:14 - 2020-05-14 21:14 - 001047230 _____ C:\Users\usuario\Downloads\S05.s1 Material-1.pdf
2020-05-14 21:13 - 2020-05-14 21:13 - 001609864 _____ C:\Users\usuario\Downloads\S04.s2 Material-1.pdf
2020-05-14 21:13 - 2020-05-14 21:13 - 001482937 _____ C:\Users\usuario\Downloads\S04.s1 Material-1.pdf
2020-05-14 21:03 - 2020-05-14 21:03 - 001977130 _____ C:\Users\usuario\Downloads\S03.s2 Material-1 (1).pdf
2020-05-14 21:03 - 2020-05-14 21:03 - 001780932 _____ C:\Users\usuario\Downloads\S03.s1 Material-1 (1).pdf
2020-05-14 19:33 - 2020-05-14 19:33 - 001977130 _____ C:\Users\usuario\Downloads\S03.s2 Material-1.pdf
2020-05-14 19:33 - 2020-05-14 19:33 - 001780932 _____ C:\Users\usuario\Downloads\S03.s1 Material-1.pdf
2020-05-14 18:51 - 2020-05-14 18:51 - 001133302 _____ C:\Users\usuario\Downloads\Criptografia Clasica.pdf
2020-05-14 16:04 - 2020-05-14 16:04 - 000794753 _____ C:\Users\usuario\Downloads\S06.s2-Laboratorio-ejemplo (1).pka
2020-05-14 01:12 - 2020-05-14 01:12 - 000093549 _____ C:\Users\usuario\Downloads\TAREAFB (1).pdf
2020-05-14 00:56 - 2020-05-14 00:56 - 000093549 _____ C:\Users\usuario\Downloads\TAREAFB.pdf
2020-05-13 19:59 - 2020-05-13 19:59 - 000997459 _____ C:\Users\usuario\Downloads\pirateo (1).pdf
2020-05-12 23:25 - 2020-05-15 18:31 - 000000000 ____D C:\Users\usuario\Cisco Packet Tracer 7.3.0
2020-05-12 23:24 - 2020-05-12 23:24 - 000794753 _____ C:\Users\usuario\Downloads\S06.s2-Laboratorio-ejemplo.pka
2020-05-12 20:17 - 2020-05-12 20:17 - 000000000 ____D C:\Users\usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom
2020-05-12 15:09 - 2020-05-12 15:09 - 010112873 _____ C:\Users\usuario\Downloads\S02.s3-Tarea-des.rar
2020-05-11 19:19 - 2020-05-11 22:02 - 000000132 _____ C:\Users\usuario\AppData\Roaming\Adobe PNG Format CS5 Prefs
2020-05-11 18:26 - 2020-05-11 18:26 - 000997459 _____ C:\Users\usuario\Downloads\pirateo.pdf
2020-05-10 16:19 - 2020-05-14 23:12 - 000000000 ____D C:\Users\usuario\AppData\Roaming\discord
2020-05-10 16:19 - 2020-05-10 16:19 - 000002136 _____ C:\Users\usuario\Desktop\Discord.lnk
2020-05-10 16:19 - 2020-05-10 16:19 - 000000000 ____D C:\Users\usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2020-05-10 16:18 - 2020-05-10 16:19 - 000000000 ____D C:\Users\usuario\AppData\Local\SquirrelTemp
2020-05-10 16:18 - 2020-05-10 16:19 - 000000000 ____D C:\Users\usuario\AppData\Local\Discord
2020-05-10 16:17 - 2020-05-10 16:18 - 062620472 _____ (Discord Inc.) C:\Users\usuario\Downloads\DiscordSetup.exe
2020-05-09 17:24 - 2020-05-09 17:24 - 001908391 _____ C:\Users\usuario\Downloads\integrador.rar
2020-05-09 17:23 - 2020-05-09 17:23 - 001928874 _____ C:\Users\usuario\Downloads\tavofinal.rar
2020-05-09 17:23 - 2020-05-09 17:23 - 001908804 _____ C:\Users\usuario\Downloads\XDXD-1.rar
2020-05-09 17:23 - 2020-05-09 17:23 - 000768113 _____ C:\Users\usuario\Downloads\finalito.rar
2020-05-09 16:42 - 2020-05-09 16:42 - 000000000 ____D C:\Users\usuario\AppData\Roaming\HeidiSQL
2020-05-09 16:19 - 2020-05-09 16:20 - 172585472 _____ (Microsoft Corporation) C:\Users\usuario\Downloads\SQLEXPR32_x86_ESN.exe
2020-05-08 15:16 - 2020-05-12 15:11 - 000001217 _____ C:\Users\usuario\Desktop\Cisco Packet Tracer.lnk
2020-05-08 15:16 - 2020-05-08 15:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco Packet Tracer
2020-05-08 15:15 - 2020-05-08 15:16 - 000000000 ____D C:\Program Files\Cisco Packet Tracer 7.3.0
2020-05-08 15:12 - 2020-05-08 15:14 - 154019600 _____ (Cisco Systems, Inc. ) C:\Users\usuario\Downloads\PacketTracer-7.3.0-win64-setup.exe
2020-05-06 14:45 - 2020-05-06 14:45 - 000027264 _____ C:\Users\usuario\Downloads\S04.s4-Autoevaluación Unidad 1 (material).pdf
2020-05-04 23:44 - 2020-05-04 23:44 - 000337560 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2020-05-04 23:44 - 2020-05-04 23:44 - 000235488 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2020-05-04 23:44 - 2020-05-04 23:44 - 000175704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2020-05-04 23:32 - 2020-05-05 00:14 - 000000000 ____D C:\Users\usuario\Desktop\glassfish5
2020-05-04 18:52 - 2020-05-04 18:52 - 000000000 ____D C:\Users\usuario\AppData\Local\ElevatedDiagnostics
2020-04-29 13:48 - 2020-04-29 13:48 - 000000000 ____D C:\Users\usuario\AppData\Local\mbamtray
2020-04-29 13:48 - 2020-04-29 13:48 - 000000000 ____D C:\Users\usuario\AppData\Local\mbam
2020-04-29 13:46 - 2020-04-29 13:46 - 001980016 _____ (Malwarebytes) C:\Users\usuario\Downloads\MBSetup.exe

==================== Un mes (modificado) ==================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-05-29 02:25 - 2020-04-05 19:11 - 000000000 ____D C:\Users\usuario\AppData\Local\Battle.net
2020-05-29 02:25 - 2009-07-13 23:45 - 000021280 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2020-05-29 02:25 - 2009-07-13 23:45 - 000021280 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2020-05-29 02:19 - 2020-04-05 19:19 - 000003536 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-05-29 02:19 - 2020-04-05 19:19 - 000003408 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-05-29 02:19 - 2020-03-10 14:37 - 000002936 _____ C:\Windows\system32\Tasks\{45CA1937-7BC6-45BF-8262-0DA10BD70B67}
2020-05-29 02:19 - 2020-03-10 14:37 - 000002936 _____ C:\Windows\system32\Tasks\{1FE29071-0545-452A-9C69-45EA8DA87317}
2020-05-29 02:19 - 2020-03-10 14:36 - 000002936 _____ C:\Windows\system32\Tasks\{D57EB277-98E7-4E76-8C74-A620041A8C78}
2020-05-29 02:19 - 2020-03-10 14:14 - 000002964 _____ C:\Windows\system32\Tasks\{494E0AD8-05E2-4D59-981A-100298757EE5}
2020-05-29 02:19 - 2018-12-14 21:51 - 000003152 _____ C:\Windows\system32\Tasks\StartCN
2020-05-29 02:19 - 2018-12-14 21:51 - 000003122 _____ C:\Windows\system32\Tasks\ModifyLinkUpdate
2020-05-29 02:19 - 2018-12-14 21:51 - 000003072 _____ C:\Windows\system32\Tasks\StartDVR
2020-05-29 02:19 - 2018-09-05 07:12 - 000000000 ____D C:\Windows\system32\Tasks\AVAST Software
2020-05-29 02:19 - 2018-09-04 22:42 - 000004128 _____ C:\Windows\system32\Tasks\CCleaner Update
2020-05-29 02:19 - 2018-03-13 22:22 - 000004494 _____ C:\Windows\system32\Tasks\Adobe Flash Player NPAPI Notifier
2020-05-29 02:19 - 2017-08-25 08:57 - 000004476 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2020-05-29 02:19 - 2016-12-04 14:45 - 000003034 _____ C:\Windows\system32\Tasks\{EFF8CBDC-EBA6-42B5-B86A-9DAD403631AB}
2020-05-29 02:19 - 2016-12-04 14:39 - 000003028 _____ C:\Windows\system32\Tasks\{7FBD0E2F-A226-4928-8552-0C121886BA46}
2020-05-29 02:19 - 2016-06-04 16:20 - 000004320 _____ C:\Windows\system32\Tasks\Adobe Flash Player Updater
2020-05-28 21:03 - 2009-07-14 00:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-05-28 20:10 - 2018-04-03 18:00 - 000065536 _____ C:\Windows\system32\spu_storage.bin
2020-05-28 19:11 - 2017-04-06 18:27 - 000000000 ____D C:\Program Files (x86)\Blizzard App
2020-05-28 16:40 - 2020-04-05 19:23 - 000000000 ____D C:\Users\usuario\AppData\Local\CrashDumps
2020-05-28 15:05 - 2009-07-13 22:20 - 000000000 ____D C:\Windows\inf
2020-05-28 15:03 - 2016-09-16 16:10 - 000000000 ____D C:\Users\user\Documents\Smart PC Utilities
2020-05-28 14:33 - 2019-06-07 12:55 - 000319112 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2020-05-27 14:43 - 2019-06-07 12:55 - 000004168 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2020-05-26 22:11 - 2009-07-13 22:20 - 000000000 ____D C:\Windows\system32\NDF
2020-05-25 22:31 - 2020-04-23 21:58 - 000000000 ____D C:\Users\usuario\Desktop\PROYECTOS
2020-05-25 20:41 - 2018-09-04 21:46 - 000000000 ____D C:\Users\user\AppData\Local\AVAST Software
2020-05-24 18:23 - 2020-04-05 19:27 - 000000000 ____D C:\Users\usuario\AppData\Roaming\ZHP
2020-05-21 22:25 - 2020-04-05 19:20 - 000002222 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-05-21 22:25 - 2020-04-05 19:20 - 000002181 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-05-21 22:25 - 2020-04-05 19:20 - 000002181 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2020-05-21 14:32 - 2017-08-25 08:56 - 000002059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-05-16 22:58 - 2020-04-07 16:22 - 000000000 ____D C:\Users\usuario\Documents\The Witcher 3
2020-05-16 22:55 - 2020-04-05 19:14 - 000000000 ____D C:\Users\usuario\Documents\StarCraft II
2020-05-15 19:19 - 2020-04-24 17:26 - 000000328 _____ C:\Users\usuario\.packettracer
2020-05-15 18:34 - 2020-04-19 18:45 - 000000000 ____D C:\Users\usuario\AppData\Roaming\vlc
2020-05-14 17:51 - 2020-04-19 18:44 - 000000000 ____D C:\Users\usuario\Desktop\jojos
2020-05-12 23:26 - 2020-04-24 17:26 - 000000000 ____D C:\Users\usuario\AppData\Local\PacketTracer7
2020-05-12 23:25 - 2020-04-05 19:04 - 000000000 ____D C:\Users\usuario
2020-05-12 20:22 - 2016-06-04 16:20 - 000842296 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
2020-05-12 20:22 - 2016-06-04 16:20 - 000175160 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2020-05-12 20:22 - 2016-06-04 16:19 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2020-05-12 20:22 - 2016-06-04 16:19 - 000000000 ____D C:\Windows\system32\Macromed
2020-05-12 20:17 - 2020-04-13 20:46 - 000000000 ____D C:\Users\usuario\AppData\Roaming\Zoom
2020-05-11 21:14 - 2020-04-05 19:13 - 000000000 ____D C:\Users\usuario\AppData\Local\Adobe
2020-05-11 19:16 - 2020-04-05 19:07 - 000000000 ____D C:\Users\usuario\AppData\Roaming\Adobe
2020-05-04 23:44 - 2020-04-05 19:22 - 000501472 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetHub.sys
2020-05-04 23:44 - 2019-06-07 12:55 - 000460992 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2020-05-04 23:44 - 2019-06-07 12:55 - 000109272 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2020-05-04 23:44 - 2019-06-07 12:55 - 000084856 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2020-05-04 23:44 - 2019-06-07 12:55 - 000042784 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2020-05-04 23:43 - 2019-06-07 12:55 - 000851592 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2020-05-04 23:43 - 2019-06-07 12:55 - 000234560 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2020-05-04 23:43 - 2019-06-07 12:55 - 000205880 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2020-05-04 23:43 - 2019-06-07 12:55 - 000178760 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2020-05-04 23:43 - 2019-06-07 12:55 - 000060480 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2020-05-04 23:43 - 2019-06-07 12:55 - 000037136 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2020-05-03 22:54 - 2020-04-23 21:30 - 000000000 ____D C:\Users\usuario\AppData\Roaming\NetBeans
2020-04-29 13:55 - 2016-03-30 23:23 - 000000000 ____D C:\ProgramData\Malwarebytes

==================== Archivos en la raíz de algunos directorios ========

2020-05-11 19:19 - 2020-05-11 22:02 - 000000132 _____ () C:\Users\usuario\AppData\Roaming\Adobe PNG Format CS5 Prefs

==================== SigCheck ============================

(No existe una corrección automática para los archivos que no pasan la verificación.)


LastRegBack: 2020-05-27 20:02
==================== Final de FRST.txt ========================
# Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 29-05-2020 Ejecutado por usuario (29-05-2020 02:27:58) Ejecutado desde C:\Users\usuario\Downloads Windows 7 Ultimate Service Pack 1 (X64) (2016-03-22 00:03:40) Modo de Inicio: Normal

==================== Cuentas: =============================

Administrador (S-1-5-21-2082071340-3476837701-2702432445-500 - Administrator - Disabled) Invitado (S-1-5-21-2082071340-3476837701-2702432445-501 - Limited - Disabled) => C:\Users\Invitado user (S-1-5-21-2082071340-3476837701-2702432445-1000 - Administrator - Enabled) => C:\Users\user usuario (S-1-5-21-2082071340-3476837701-2702432445-1005 - Administrator - Enabled) => C:\Users\usuario

==================== Centro de Seguridad ========================

(Si una entrada es incluida en el fixlist, será eliminada.)

AV: Avast Antivirus (Disabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Disabled - Up to date) {5078598A-1FA2-C888-AA5F-A9C66537DB12}

==================== Programas instalados ======================

(Solo los programas de adware con indicador “Oculto”, pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)

ACP Application (HKLM…{72A77245-378F-43F2-A908-0CEAB8B11920}) (Version: 1.2.3.5 - Advanced Micro Devices, Inc.) Hidden Adobe Acrobat Reader DC - Español (HKLM-x32…{AC76BA86-7AD7-1034-7B44-AC0F074E4100}) (Version: 20.009.20065 - Adobe Systems Incorporated) Adobe Flash Player 32 ActiveX (HKLM-x32…\Adobe Flash Player ActiveX) (Version: 32.0.0.371 - Adobe) Adobe Flash Player 32 NPAPI (HKLM-x32…\Adobe Flash Player NPAPI) (Version: 32.0.0.371 - Adobe) AMD Software (HKLM…\AMD Catalyst Install Manager) (Version: 19.12.2 - Advanced Micro Devices, Inc.) ANTRYX AXINI 7.1 GAMING HEADSET (HKLM-x32…{71B53BA8-4BE3-49AF-BC3E-07F392006620}) (Version: 1.00.0021 - C-Media Electronics, Inc.) Aplicación Blizzard (HKLM-x32…\Battle.net) (Version: - Blizzard Entertainment) Application Verifier x64 External Package (HKLM…{D9908CED-5ABB-FEE9-FC84-743F4D38637C}) (Version: 10.1.16299.15 - Microsoft) Hidden Autodesk CAD Manager Tools (HKLM…{28B89EEF-0111-0409-0110-CF3F3A09B77D}) (Version: 16.0.0.65 - Autodesk) Autodesk Material Library 2017 (HKLM-x32…{8FB9F735-D64C-4991-8D91-4CDDAB1ABDEE}) (Version: 15.11.3.0 - Autodesk) Autodesk Material Library Base Resolution Image Library 2017 (HKLM-x32…{3FBFBC43-9882-43FA-B979-2D53896747B3}) (Version: 15.11.3.0 - Autodesk) Avast Free Antivirus (HKLM-x32…\Avast Antivirus) (Version: 20.3.2405 - Avast Software) Branding64 (HKLM…{EE2AFCE4-0238-4DE0-A140-1647021627C1}) (Version: 1.00.0001 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM…\CCleaner) (Version: 5.46 - Piriform) Cheat Engine 6.7 (HKLM-x32…\Cheat Engine 6.7_is1) (Version: - Cheat Engine) Cisco Packet Tracer 7.3.0 64Bit (HKLM…\Cisco Packet Tracer 7.3.0 64Bit_is1) (Version: - Cisco Systems, Inc.) CyberLink PowerDVD 13 (HKLM-x32…\InstallShield_{3CFDF154-7E60-4E98-A8DF-C693A4F8E6B6}) (Version: 13.0.2720.57 - CyberLink Corp.) D3DX10 (HKLM-x32…{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM…\DAEMON Tools Lite) (Version: 10.1.0.0074 - Disc Soft Ltd) Discord (HKU\S-1-5-21-2082071340-3476837701-2702432445-1005…\Discord) (Version: 0.0.306 - Discord Inc.) Eines de correcció del Microsoft Office 2013: català (HKLM-x32…{90150000-001F-0403-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden EVEREST Ultimate Edition v4.60 (HKLM-x32…\EVEREST Ultimate Edition_is1) (Version: 4.60 - Lavalys, Inc.) Facebook Gameroom 1.21.6907.27509 (HKLM-x32…{E34773A0-158F-4322-8849-2C13BBCD6C68}) (Version: 1.21.6907.27509 - Facebook) FARO LS 1.1.505.0 (64bit) (HKLM-x32…{8834451B-6209-4E02-9EF4-4EF9E3C1F70F}) (Version: 5.5.0.44203 - FARO Scanner Production) Ferramentas de verificación de Microsoft Office 2013 - Galego (HKLM-x32…{90150000-001F-0456-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Galería de fotos (HKLM-x32…{198CEF22-A27F-4DC7-9B66-2C22A4B1CA09}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Game Fire (HKLM…{6C64CABD-079D-4F32-A182-DDAE45311394}) (Version: 6.1.3025 - Smart PC Utilities) GonVisor 2.52.01 (HKLM-x32…\GonVisor_is1) (Version: - GON) Google Chrome (HKLM-x32…\Google Chrome) (Version: 83.0.4103.61 - Google LLC) Google Update Helper (HKLM-x32…{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden Half Life 2 (HKLM-x32…{93300300-9560-43E1-B890-635640466A13}) (Version: 1.00.0000 - Valve) Intel® Processor Graphics (HKLM-x32…{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3574 - Intel Corporation) Java 8 Update 241 (64-bit) (HKLM…{26A24AE4-039D-4CA4-87B4-2F64180241F0}) (Version: 8.0.2410.7 - Oracle Corporation) Java SE Development Kit 8 Update 161 (64-bit) (HKLM…{64A3A4F4-B792-11D6-A78A-00B0D0180161}) (Version: 8.0.1610.12 - Oracle Corporation) Junk Mail filter update (HKLM-x32…{0BE9E708-5DC0-4963-9CFD-0AA519090E79}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Kits Configuration Installer (HKLM-x32…{86E59C8F-61D5-1782-A3CE-60AE7E4D7791}) (Version: 10.1.16299.15 - Microsoft) Hidden K-Lite Codec Pack 7.9.0 (Full) (HKLM-x32…\KLiteCodecPack_is1) (Version: 7.9.0 - ) Microsoft .NET Framework 4.7.2 (español) (HKLM…{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 3082) (Version: 4.7.03062 - Microsoft Corporation) Microsoft .NET Framework 4.7.2 (HKLM…{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.03062 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32…{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32…{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation) Microsoft Office Professional Plus 2013 (HKLM-x32…\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32…{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM…{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM…{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61186 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM…{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM…{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.7523 (HKLM…{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32…{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32…{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM…{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32…{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32…{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32…{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32…{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM…{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM…{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.16.27012 (HKLM-x32…{427ada59-85e7-4bc8-b8d5-ebf59db60423}) (Version: 14.16.27012.6 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.16.27012 (HKLM-x32…{67f67547-9693-4937-aa13-56e296bd40f6}) (Version: 14.16.27012.6 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM…\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio Installer (HKLM…{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 1.18.1100.314 - Microsoft Corporation) Minecraft - ElAmigos versión 1.15.1 (HKLM-x32…{64E20254-DB52-4EC0-97E4-93B7C7B2DEDA}_is1) (Version: 1.15.1 - Mojang) MiniTool Partition Wizard Free 10.2.3 (HKLM…{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: - MiniTool Solution Ltd.) Movie Maker (HKLM-x32…{9C82436F-F19C-42A4-B476-F87A28A95BF9}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32…{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden MSI Development Tools (HKLM-x32…{973CACA2-E018-065B-0580-F2784802E299}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden NetBeans IDE 8.2 (HKLM…\nbi-nb-base-8.2.0.0.201609300101) (Version: 8.2 - [NetBeans.org](http://netbeans.org/)) Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM-x32…{90150000-001F-040C-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Paquete de compatibilidad redirigido de documentación de Microsoft .NET Framework 4.7.1 (español) (HKLM-x32…{927FF4FD-8E47-4022-8545-22FD78FBC2AB}) (Version: 4.7.02558 - Microsoft Corporation) Hidden Paquete de idioma de Microsoft Visual Studio 2010 Tools para Office Runtime (x64) - ESN (HKLM…\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - ESN) (Version: 10.0.50903 - Microsoft Corporation) PHDGD Virtual VRAM Tool version 1.0 (HKLM-x32…{FB97A218-8B43-43BE-A721-C199C6589D08}_is1) (Version: 1.0 - PHDGD/IntelliModder32) Photoshop CS5 Extended 12.0 (HKLM-x32…\Photoshop CS5 Extended 12.0) (Version: - ) PowerDVD (HKLM-x32…{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}) (Version: 7.0.2211.0 - CyberLink Corporation) PSeInt (HKLM-x32…\PSeInt) (Version: - ) PunkBuster Services (HKLM-x32…\PunkBusterSvc) (Version: 0.987 - Even Balance, Inc.) Realtek High Definition Audio Driver (HKLM-x32…{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7209 - Realtek Semiconductor Corp.) Recuva (HKLM…\Recuva) (Version: 1.53 - Piriform) Return to Castle Wolfenstein (HKLM-x32…\Return to Castle Wolfenstein) (Version: 1.0 - Activision, Inc.) Revisores de Texto do Microsoft Office 2013 – Português do Brasil (HKLM-x32…{90150000-001F-0416-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Revo Uninstaller 2.1.5 (HKLM…{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.1.5 - VS Revo Group, Ltd.) SDK ARM Additions (HKLM-x32…{7922BB77-0B59-840A-AC80-D560A34D75C5}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden SDK ARM Redistributables (HKLM-x32…{C87DF65C-A672-7E08-A083-E7D48FE8DB70}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32…{90150000-0011-0000-0000-0000000FF1CE} *Office15.PROPLUS* {7F6C4883-A18C-459A-82C1-A2F9403F2DA6}) (Version: - Microsoft) Skype versión 8.40 (HKLM-x32…\Skype_is1) (Version: 8.40 - Skype Technologies S.A.) StarCraft (HKLM-x32…\StarCraft) (Version: - Blizzard Entertainment) StarCraft II (HKLM-x32…\StarCraft II) (Version: - Blizzard Entertainment) Steam (HKLM-x32…\Steam) (Version: 2.10.91.91 - Valve Corporation) SUPERAntiSpyware (HKLM…{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 8.0.1038 - [SUPERAntiSpyware.com](http://superantispyware.com/)) The Witcher 3: Wild Hunt Game of the Year Edition (HKLM…\dGhld2l0Y2hlcjN3aWxkaHVudA_is1) (Version: 1 - ) TP-LINK TL-WDN4800 Driver (HKLM-x32…{70D605C7-C823-4750-BA72-BEB835713612}) (Version: 1.3.1 - TP-LINK) TP-LINK Wireless Configuration Utility (HKLM-x32…{319D91C6-3D44-436C-9F79-36C0D22372DC}) (Version: 1.3.1 - TP-LINK) TradeSkillMaster Application version 1.0 (HKLM-x32…{c44da794-b956-4d50-8733-346d56ae63c7}_is1) (Version: 1.0 - TradeSkillMaster) Unity Web Player (x64) (All users) (HKLM…\UnityWebPlayer) (Version: 4.6.6f2 - Unity Technologies ApS) Universal CRT Extension SDK (HKLM-x32…{A5FA2886-1925-133F-0D41-B9A8ECEA0A2D}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Universal CRT Headers Libraries and Sources (HKLM-x32…{B739B4C5-EEEC-8E70-0276-38C4779AF398}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Universal CRT Redistributable (HKLM-x32…{A9D6F52C-694E-3E41-7AB8-5BEB644742A5}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Universal CRT Tools x64 (HKLM…{E053089E-7953-3219-814F-F485FC151C54}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Universal CRT Tools x86 (HKLM-x32…{B9424F08-0617-C4F6-A798-5A9250C1A738}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Universal General MIDI DLS Extension SDK (HKLM-x32…{D261CEA1-AB8D-9CFA-4407-BCEFC78661AC}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Update for (KB2504637) (HKLM-x32…{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) USB Disk Security (HKLM-x32…\USB Disk Security_is1) (Version: - Zbshareware Lab) vcpp_crt.redist.clickonce (HKLM-x32…{32DF9B1B-E622-4385-99E0-02461A428363}) (Version: 14.16.27012 - Microsoft Corporation) Hidden Visual Studio Community 2017 (HKLM-x32…\29407dad) (Version: 15.9.28307.222 - Microsoft Corporation) VS Script Debugging Common (HKLM…{8B657335-3813-4CF4-A6FE-2AA44BE23F94}) (Version: 16.0.95.0 - Microsoft Corporation) Hidden vs_communitymsi (HKLM-x32…{71797C29-380A-492C-B35A-F5E4A7B57BDC}) (Version: 15.9.28307 - Microsoft Corporation) Hidden vs_communitymsires (HKLM-x32…{340226AB-D0EF-4715-A331-AB3A416B5018}) (Version: 15.0.26621 - Microsoft Corporation) Hidden vs_devenvmsi (HKLM-x32…{BFFA2FFB-1095-4ADD-A352-368806D2412B}) (Version: 15.0.26621 - Microsoft Corporation) Hidden vs_filehandler_amd64 (HKLM-x32…{A254DA0E-26A1-43C3-95BE-7A24D5599473}) (Version: 15.9.28302 - Microsoft Corporation) Hidden vs_filehandler_x86 (HKLM-x32…{1F42A73E-CF26-4D67-BA79-752CA56B639F}) (Version: 15.9.28302 - Microsoft Corporation) Hidden vs_FileTracker_Singleton (HKLM-x32…{A41E138F-5A3F-443C-B72D-957AB994FB5A}) (Version: 15.9.28128 - Microsoft Corporation) Hidden vs_minshellinteropmsi (HKLM-x32…{3A78DA3D-C8D4-429D-B536-6E59A0088451}) (Version: 15.8.27825 - Microsoft Corporation) Hidden vs_minshellmsi (HKLM-x32…{68B8AD33-CE97-4C3D-9583-669C39D21BA5}) (Version: 15.9.28302 - Microsoft Corporation) Hidden vs_minshellmsires (HKLM-x32…{E70CC1B8-7ED5-4495-9C52-603FE87F38F4}) (Version: 15.0.26621 - Microsoft Corporation) Hidden vs_tipsmsi (HKLM-x32…{1AC6CC3D-7724-4D84-9270-798A2191AB1C}) (Version: 15.0.27005 - Microsoft Corporation) Hidden Vulkan Run Time Libraries 1.1.70.0 (HKLM…\VulkanRT1.1.70.0) (Version: 1.1.70.0 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.1.70.0 (HKLM…\VulkanRT1.1.70.0-3) (Version: 1.1.70.0 - LunarG, Inc.) Hidden Warcraft III (HKLM-x32…\Warcraft III) (Version: - Blizzard Entertainment) Webcam (HKLM-x32…{ED1674F5-5165-49BF-B546-AE5343111540}) (Version: 1.0.3.6 - ETRON) WinAppDeploy (HKLM-x32…{9690D51C-4435-1C20-7819-66CCAB0F03F9}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32…\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Windows Movie Maker 2.6 (HKLM-x32…{B3DAF54F-DB25-4586-9EF1-96D24BB14088}) (Version: 2.6.4037.0 - Microsoft Corporation) Windows SDK AddOn (HKLM-x32…{350F0ECD-0783-4529-8797-98F0AD33EAC0}) (Version: 10.1.0.0 - Microsoft Corporation) Windows Software Development Kit - Windows 10.0.16299.15 (HKLM-x32…{6195c203-b53c-4bb7-983a-6070a902e704}) (Version: 10.1.16299.15 - Microsoft Corporation) WinRAR 5.70 (32-bit) (HKLM-x32…\WinRAR archiver) (Version: 5.70.0 - win.rar GmbH) WinRT Intellisense Desktop - en-us (HKLM-x32…{385A1387-A488-9E90-3635-086129610034}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense Desktop - Other Languages (HKLM-x32…{D7DD3171-DA58-52A1-95B2-4769640855AF}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense IoT - en-us (HKLM-x32…{7336279F-8F8F-5530-A543-3BE963846C0A}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense IoT - Other Languages (HKLM-x32…{E414A474-0A87-4F66-C409-A4D9857CFD34}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense Mobile - en-us (HKLM-x32…{CE760B86-975B-F514-5673-0ED4332B801B}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense PPI - en-us (HKLM-x32…{5E67F8BE-D8D2-257F-CE19-419A2D5125C7}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense PPI - Other Languages (HKLM-x32…{A2AA063E-AF50-A1F5-8925-A06EB1556644}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense UAP - en-us (HKLM-x32…{7D4C7F4A-02A9-E434-6451-C8787DF28C1F}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense UAP - Other Languages (HKLM-x32…{BC467065-9374-5345-DA3F-FCF073304A25}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden World of Warcraft (HKLM-x32…\World of Warcraft) (Version: - Blizzard Entertainment) World of Warcraft Classic (HKLM-x32…\World of Warcraft Classic) (Version: - Blizzard Entertainment) XAMPP (HKLM…\xampp) (Version: 7.3.11-0 - Bitnami) xDark™ VLC Player 2.0.4 (HKLM-x32…\VLC media player) (Version: 2.0.4 - C18™) Zoom (HKU\S-1-5-21-2082071340-3476837701-2702432445-1005…\ZoomUMX) (Version: 5.0 - Zoom Video Communications, Inc.)

==================== Personalizado CLSID (Lista blanca): ==============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Ningún archivo ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Ningún archivo ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Ningún archivo ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-05-04] (Avast Software s.r.o. -> AVAST Software) ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-05-04] (Avast Software s.r.o. -> AVAST Software) ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Ningún archivo ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Ningún archivo ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Ningún archivo ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-05-04] (Avast Software s.r.o. -> AVAST Software) ContextMenuHandlers1: [TextAloud] -> [CC]{BF31B0FB-AE0E-488F-BFD6-416FA2F9915F} => -> Ningún archivo ContextMenuHandlers1: [WinRAR] -> [CC]{B41DB860-64E4-11D2-9906-E49FADC173CA} => -> Ningún archivo ContextMenuHandlers1: [WinRAR32] -> [CC]{B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Ningún archivo ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-05-04] (Avast Software s.r.o. -> AVAST Software) ContextMenuHandlers4: [RecuvaShellExt] -> [CC]{435E5DF5-2510-463C-B223-BDA47006D002} => -> Ningún archivo ContextMenuHandlers5: [ACE] -> -{5E2121EE-0300-11D4-8D3B-444553540000} => -> Ningún archivo ContextMenuHandlers5: [DreamScene] -> -{BE800AEB-A440-4B63-94CD-AA6B43647DF9} => -> Ningún archivo ContextMenuHandlers5: [igfxDTCM] -> -{9B5F5829-A529-4B12-814A-E81BCB8D93FC} => -> Ningún archivo ContextMenuHandlers5: [igfxOSP] -> -{FA507C3F-30C6-4DCA-9EE5-2656072EEC14} => -> Ningún archivo ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-05-04] (Avast Software s.r.o. -> AVAST Software) ContextMenuHandlers6: [RecuvaShellExt] -> [CC]{435E5DF5-2510-463C-B223-BDA47006D002} => -> Ningún archivo ContextMenuHandlers6: [WinRAR] -> [CC]{B41DB860-64E4-11D2-9906-E49FADC173CA} => -> Ningún archivo ContextMenuHandlers6: [WinRAR32] -> [CC]{B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Ningún archivo

==================== Codecs (Lista blanca) ====================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM…\Drivers32: [VIDC.FICV] => C:\Windows\system32\ficvdec_x64.dll [652288 2013-05-28] () [Archivo no firmado] HKLM…\Drivers32: [VIDC.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [243200 2011-06-24] () [Archivo no firmado] HKLM…\Drivers32: [VIDC.YV12] => C:\Windows\SysWOW64\xvidvfw.dll [243200 2011-06-24] () [Archivo no firmado] HKLM…\Drivers32: [msacm.ac3acm] => C:\Windows\SysWOW64\ac3acm.acm [151552 2011-07-16] (fccHandler) [Archivo no firmado] HKLM…\Drivers32: [msacm.lameacm] => C:\Windows\SysWOW64\lameACM.acm [839680 2008-09-24] (hxxp://www.mp3dev.org/) [Archivo no firmado] HKLM…\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [74752 2011-10-28] () [Archivo no firmado] HKLM…\Drivers32: [VIDC.FICV] => C:\Windows\SysWOW64\ficvdec_x86.dll [641024 2013-05-28] () [Archivo no firmado]

==================== Accesos directos & WMI ========================

(Las entradas pueden ser listadas para ser restauradas o eliminadas.)

WMI:subscription__FilterToConsumerBinding->CommandLineEventConsumer.Name=“BVTConsumer”",Filter="__EventFilter.Name=“BVTFilter”:: WMI:subscription__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA “Win32_Processor” AND TargetInstance.LoadPercentage > 99] WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\tools\kernrate] Shortcut: C:\Users\Public\Desktop\Minecraft.lnk -> D:\MINECRAFT.minecraft\start.bat ()

==================== Módulos cargados (Lista blanca) =============

2016-03-21 20:04 - 2020-05-28 21:03 - 000027648 _____ () [Archivo no firmado] C:\Program Files (x86)\ASUS\AXSP\1.01.02\PEbiosinterface32.dll 2020-05-28 15:24 - 2020-05-28 15:25 - 096130048 _____ () [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\libcef.dll 2020-05-28 15:25 - 2020-05-28 15:25 - 000117760 _____ () [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\libEGL.dll 2020-05-28 15:25 - 2020-05-28 15:26 - 004342784 _____ () [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\libGLESv2.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000017920 _____ () [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\libEGL.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 003567616 _____ () [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll 2017-12-19 00:02 - 2017-12-19 00:02 - 000275360 _____ (Microsoft Corporation -> Microsoft Corporation) [Archivo no firmado] C:\Windows\System32\DreamScene.dll 2017-09-28 18:41 - 2017-09-28 18:41 - 000266240 _____ (Microsoft Corporation) [Archivo no firmado] C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbPc.DLL 2016-03-21 19:16 - 2013-03-14 13:08 - 000499712 _____ (Microsoft Corporation) [Archivo no firmado] C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\MSVCP71.dll 2016-03-21 19:16 - 2013-03-14 13:08 - 000348160 _____ (Microsoft Corporation) [Archivo no firmado] C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\MSVCR71.dll 2017-09-28 15:52 - 2017-09-28 15:52 - 000128000 _____ (Microsoft Corporation) [Archivo no firmado] C:\Windows\system32\DXGIDebug.dll 2016-12-06 20:09 - 2016-12-06 20:09 - 000796672 _____ (Microsoft Corporation) [Archivo no firmado] C:\Windows\WinSxS\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6229_none_88dcc0bf2fb1b808\MSVCR80.dll 2020-05-28 15:24 - 2020-05-28 15:24 - 000760832 _____ (The Chromium Authors) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\chrome_elf.dll 2020-05-28 15:24 - 2020-05-28 15:24 - 000047104 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\audio\qtaudio_windows.dll 2020-05-28 15:24 - 2020-05-28 15:24 - 000026112 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\imageformats\qgif.dll 2020-05-28 15:24 - 2020-05-28 15:24 - 000027136 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\imageformats\qico.dll 2020-05-28 15:24 - 2020-05-28 15:24 - 000243712 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\imageformats\qjpeg.dll 2020-05-28 15:24 - 2020-05-28 15:24 - 000223744 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\imageformats\qmng.dll 2020-05-28 15:24 - 2020-05-28 15:24 - 000020992 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\imageformats\qsvg.dll 2020-05-28 15:24 - 2020-05-28 15:24 - 000332288 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\imageformats\qtiff.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 001140224 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\platforms\qwindows.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 000041984 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\qml\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 000014848 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\qml\QtGraphicalEffects\qtgraphicaleffectsplugin.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 000014848 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\qml\QtQml\Models.2\modelsplugin.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 000014848 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\qml\QtQuick.2\qtquick2plugin.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 000084480 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\qml\QtQuick\Controls.2\qtquickcontrols2plugin.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 000267776 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\qml\QtQuick\Controls\qtquickcontrolsplugin.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 000071680 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\qml\QtQuick\Layouts\qquicklayoutsplugin.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 000211456 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\qml\QtQuick\Templates.2\qtquicktemplates2plugin.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 000014848 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\qml\QtQuick\Window.2\windowplugin.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 004943360 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\Qt5Core.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 005022208 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\Qt5Gui.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 000626176 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\Qt5Multimedia.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 000877056 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\Qt5Network.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 002908672 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\Qt5Qml.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 003078656 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\Qt5Quick.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 000096256 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\Qt5QuickControls2.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 000681472 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\Qt5QuickTemplates2.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 000259072 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\Qt5Svg.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 004718080 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\Qt5Widgets.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 000439296 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\Qt5WinExtras.dll 2020-05-28 15:26 - 2020-05-28 15:26 - 000159232 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files (x86)\Blizzard App\Battle.net.12040\Qt5Xml.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000031744 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qgif.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000039424 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qicns.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000031744 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qico.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000413696 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qjpeg.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000025088 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qsvg.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000025088 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qtga.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000023552 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwbmp.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000519168 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwebp.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 001431040 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\platforms\qwindows.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 001180672 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\sqldrivers\qsqlite.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000135680 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\styles\qwindowsvistastyle.dll 2019-12-04 20:23 - 2019-12-04 20:23 - 006010880 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 006345216 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000724992 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Multimedia.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000120832 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5MultimediaQuick.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 001078272 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000313856 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 004000256 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 003802624 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000171008 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5QuickControls2.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 001083904 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5QuickTemplates2.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000205312 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Sql.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000329728 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000113152 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000376320 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 092323328 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 005560832 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000463360 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000188416 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 002888704 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5XmlPatterns.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000053760 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000059392 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000260608 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtMultimedia\declarative_multimedia.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000017408 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000287232 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls.2\qtquickcontrols2plugin.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000329216 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000136192 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000089088 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000312320 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtQuick\Templates.2\qtquicktemplates2plugin.dll 2019-07-18 10:33 - 2019-07-18 10:33 - 000017920 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll 2019-12-04 20:23 - 2019-12-04 20:23 - 000085504 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtWebEngine\qtwebengineplugin.dll

==================== Alternate Data Streams (Lista blanca) ========

==================== Modo Seguro (Lista blanca) ==================

==================== Asociación (Lista blanca) =================

==================== Internet Explorer sitios de confianza/restringidos ==========

==================== Hosts contenido: =========================

(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)

2017-07-03 15:34 - 2019-03-09 23:48 - 000000035 _____ C:\Windows\system32\drivers\etc\hosts

2017-08-22 08:46 - 2018-06-15 01:06 - 000000433 _____ C:\Windows\system32\drivers\etc\hosts.ics 192.168.137.1 user-PC.mshome.net # 2023 6 3 14 6 6 27 692

==================== Otras Áreas ===========================

(Actualmente no existe una corrección automática para esta sección.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\system32\wbem;C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0;C:\Program Files (x86)\Skype\Phone;C:\Program Files (x86)\Windows Live\Shared HKU\S-1-5-21-2082071340-3476837701-2702432445-1005\Control Panel\Desktop\Wallpaper -> C:\Users\usuario\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 8.8.8.8 - 8.8.4.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Firewall de Windows está habilitado.
==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==

(Si una entrada es incluida en el fixlist, será eliminada.)

MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Avast Cleanup Premium.lnk => C:\Windows\pss\Avast Cleanup Premium.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SoftEther VPN Client Manager Startup.lnk => C:\Windows\pss\SoftEther VPN Client Manager Startup.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^TP-LINK Wireless Configuration Utility.lnk => C:\Windows\pss\TP-LINK Wireless Configuration Utility.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^user^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Curse.lnk => C:\Windows\pss\Curse.lnk.Startup
MSCONFIG\startupfolder: C:^Users^user^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Facebook Gameroom.lnk => C:\Windows\pss\Facebook Gameroom.lnk.Startup
MSCONFIG\startupfolder: C:^Users^user^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Twitch.lnk => C:\Windows\pss\Twitch.lnk.Startup
MSCONFIG\startupreg: ADSKAppManager => "C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AutodeskDesktopApp.exe" -tray
MSCONFIG\startupreg: BlueStacks Agent => C:\Program Files (x86)\BlueStacks\HD-Agent.exe
MSCONFIG\startupreg: CCleaner Smart Cleaning => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: CyberGhost => "C:\Program Files\CyberGhost 6\CyberGhost.exe" /autostart /min
MSCONFIG\startupreg: DAEMON Tools Lite Automount => "D:\Games\DAEMON Tools Lite\DTAgent.exe" -autorun
MSCONFIG\startupreg: Discord => C:\Users\usuario\AppData\Local\Discord\app-0.0.306\Discord.exe
MSCONFIG\startupreg: ManyCam => "D:\adsfad\ManyCam.exe" --silent
MSCONFIG\startupreg: NetLimiter => D:\adsfad\NLClientApp.exe /tray
MSCONFIG\startupreg: RemoteControl => "C:\Program Files (x86)\CyberLink\PowerDVD\PDVDServ.exe"
MSCONFIG\startupreg: SDTray => "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: SoftEther VPN Client UI Helper => "C:\Program Files\SoftEther VPN Client\vpnclient_x64.exe" /uihelp
MSCONFIG\startupreg: Steam => "D:\Steam\steam.exe" -silent
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: SUPERAntiSpyware => D:\WARCRAFT\SUPERAntiSpyware.exe
MSCONFIG\startupreg: USB Security => C:\Program Files (x86)\USB Disk Security\USBGuard.exe
MSCONFIG\startupreg: Windscribe => "C:\Program Files (x86)\Windscribe\Windscribe.exe" -os_restart
MSCONFIG\startupreg: Wondershare Helper Compact.exe => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe

==================== Reglas de firewall (Lista blanca) ================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

FirewallRules: [{6E07BCC1-0862-4C31-AB38-5460331C9F36}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{DD2CB090-C266-4C00-BA33-3F702FDEABDE}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe (CyberLink Corp. -> CyberLink)
FirewallRules: [{9FF4791B-7F09-49D7-8524-4566072B46F6}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13Agent.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{3DAEF23C-2E23-41E4-ADA0-06473BC0CA31}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13ML.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{777821D1-E50C-4563-B213-526BAEA52BE3}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD13\Movie\PowerDVD.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{D1D6DE34-35D8-4398-A820-2BA94A235D91}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD13\Movie\PowerDVD Cinema\PowerDVDCinema13.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{B1A336F9-4161-4A85-946F-EDB315EE2BCA}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{206B98BA-B0D1-478E-9542-8D5B3152F714}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{76FC2E63-5080-4C4E-9983-1E560603654A}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{970BFB4A-4B9E-4548-A049-B1B0A9763190}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{3E7622B3-BDDB-433D-9B84-ACF049CA50ED}F:\lol\warcraft iii\war3.exe] => (Allow) F:\lol\warcraft iii\war3.exe => Ningún archivo
FirewallRules: [UDP Query User{1090D7E6-9B54-4450-AD35-5082ED8339AF}F:\lol\warcraft iii\war3.exe] => (Allow) F:\lol\warcraft iii\war3.exe => Ningún archivo
FirewallRules: [{ED80A89A-BDA9-48BF-BA69-4F9F36E343DA}] => (Allow) LPort=8317
FirewallRules: [{148F277A-1B1F-4345-A8F9-334A521B239A}] => (Allow) C:\Users\user\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C5894CF2-D177-44DF-A481-07A24BB8A4C5}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{08D27178-0867-45A7-B7CA-1E1D1226A6B8}] => (Allow) LPort=2869
FirewallRules: [{83AD2631-6B9B-4F08-93EB-686C5EA50E9E}] => (Allow) LPort=1900
FirewallRules: [{A33F1EB1-22E2-474A-A8A4-55CFB039D96D}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{721A78DE-9CE0-4105-8F35-0D07CD5E664A}] => (Allow) LPort=1688
FirewallRules: [{A335C6AA-39BD-4FE6-9529-16E2C8984542}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{BA2F2779-4016-48DB-BD8D-E26E0AB817D6}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{9DF98C4F-DA8A-4D1D-9EE7-CCE45BFD6DA3}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{84BA0CA2-E81D-4D35-A682-F3FA1FED3FBC}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{F9BCD853-10BE-47FD-8FD3-6C85DAF2B627}] => (Allow) C:\Program Files (x86)\Blizzard App\Battle.net Launcher.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{4B824620-6AC5-4D05-BD43-690D93287C38}] => (Allow) C:\Program Files (x86)\Blizzard App\Battle.net Launcher.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{299418F7-C515-4FCC-94DB-30D3A1E1D9BB}] => (Allow) C:\Program Files (x86)\Blizzard App\Battle.net Launcher.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{CB11BF53-5486-40C6-9931-19C5FCD604C0}] => (Allow) C:\Program Files (x86)\Blizzard App\Battle.net Launcher.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{6D860247-3B32-4564-B3C4-4D2775C915F2}C:\users\user\downloads\downloader_warcraft3_the_frozen_throne_enus.exe] => (Allow) C:\users\user\downloads\downloader_warcraft3_the_frozen_throne_enus.exe => Ningún archivo
FirewallRules: [UDP Query User{0845A244-0030-4821-9C99-1EC7D23706BD}C:\users\user\downloads\downloader_warcraft3_the_frozen_throne_enus.exe] => (Allow) C:\users\user\downloads\downloader_warcraft3_the_frozen_throne_enus.exe => Ningún archivo
FirewallRules: [TCP Query User{2892092D-7180-465A-8E32-944BD9778791}C:\users\user\downloads\downloader_warcraft3_reign_of_chaos_enus.exe] => (Allow) C:\users\user\downloads\downloader_warcraft3_reign_of_chaos_enus.exe => Ningún archivo
FirewallRules: [UDP Query User{44CFD743-C7F5-479B-A483-D74A527FBE71}C:\users\user\downloads\downloader_warcraft3_reign_of_chaos_enus.exe] => (Allow) C:\users\user\downloads\downloader_warcraft3_reign_of_chaos_enus.exe => Ningún archivo
FirewallRules: [{71F46EE0-2761-4AC5-8D19-F9E35B2A82BA}] => (Allow) LPort=3724
FirewallRules: [{E89C2174-FA91-4B6D-817E-AD4E70DFB87E}] => (Allow) LPort=3724
FirewallRules: [{944E37FC-A989-45AD-A7A9-687094F96CF8}] => (Allow) C:\Windows\SysWOW64\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{6E884176-7642-4EE1-8362-5F7DA2C98282}] => (Allow) C:\Windows\SysWOW64\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{1011CF59-31FC-4503-92F9-530C5040781F}D:\warcraft\warcraft 3 + frozen throne\war3.exe] => (Allow) D:\warcraft\warcraft 3 + frozen throne\war3.exe (Blizzard Entertainment) [Archivo no firmado]
FirewallRules: [UDP Query User{36394593-EE70-44B6-995B-26C358EAA9C1}D:\warcraft\warcraft 3 + frozen throne\war3.exe] => (Allow) D:\warcraft\warcraft 3 + frozen throne\war3.exe (Blizzard Entertainment) [Archivo no firmado]
FirewallRules: [TCP Query User{AFEFF4A0-BC98-40CD-936D-9E689AA86211}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Allow) C:\program files (x86)\windscribe\wsappcontrol.exe => Ningún archivo
FirewallRules: [UDP Query User{F7E8F81B-F6C2-4E43-9991-BF85139348F7}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Allow) C:\program files (x86)\windscribe\wsappcontrol.exe => Ningún archivo
FirewallRules: [TCP Query User{9BBADBDF-40EE-4EAE-A4DF-BD8E2F5C8D24}C:\program files (x86)\blizzard app\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{5C9BF369-FFD1-4BEF-80AC-A964A96690BF}C:\program files (x86)\blizzard app\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{161089F4-EA24-482D-8A97-0C897A5AE309}C:\program files (x86)\blizzard app\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{C35E46E0-E2EB-47F6-9BDE-DECCA8ADDB7A}C:\program files (x86)\blizzard app\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{BE149088-7B15-40C1-9BFF-2C713D3C3664}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Block) C:\program files (x86)\windscribe\wsappcontrol.exe => Ningún archivo
FirewallRules: [UDP Query User{D6471DC8-297F-4DD4-887F-1443618304AF}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Block) C:\program files (x86)\windscribe\wsappcontrol.exe => Ningún archivo
FirewallRules: [TCP Query User{EEBFA060-182A-4991-9EF3-386F4B4DC104}D:\warcraft\warcraft 3 + frozen throne\war3.exe] => (Block) D:\warcraft\warcraft 3 + frozen throne\war3.exe (Blizzard Entertainment) [Archivo no firmado]
FirewallRules: [UDP Query User{5F922755-5A73-455D-8184-B365B9A36D54}D:\warcraft\warcraft 3 + frozen throne\war3.exe] => (Block) D:\warcraft\warcraft 3 + frozen throne\war3.exe (Blizzard Entertainment) [Archivo no firmado]
FirewallRules: [TCP Query User{48028065-34AD-4F7E-8CC8-6C9EA09B2859}C:\program files\amd\cnext\cnext\radeonsettings.exe] => (Block) C:\program files\amd\cnext\cnext\radeonsettings.exe => Ningún archivo
FirewallRules: [UDP Query User{AE1AE471-7FE6-419E-8B0C-986779161D39}C:\program files\amd\cnext\cnext\radeonsettings.exe] => (Block) C:\program files\amd\cnext\cnext\radeonsettings.exe => Ningún archivo
FirewallRules: [TCP Query User{F909E756-2C7A-4529-B244-8D0EBFEC4927}C:\program files\amd\cnext\cnext\radeonsettings.exe] => (Block) C:\program files\amd\cnext\cnext\radeonsettings.exe => Ningún archivo
FirewallRules: [UDP Query User{C98D07F5-6489-46A3-B78D-503AFC71520C}C:\program files\amd\cnext\cnext\radeonsettings.exe] => (Block) C:\program files\amd\cnext\cnext\radeonsettings.exe => Ningún archivo
FirewallRules: [{5DC231D9-AAAF-439C-A1A9-F2DCF95503AD}] => (Allow) D:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{30575252-8CD0-418A-9F60-6220D76B2B34}] => (Allow) D:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{12DAE9E7-5A29-4CFF-8B39-3EB3B5D4D04C}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{9BB652F4-AF53-493A-9FF0-E8E43E4C12F5}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{EE3FDFA5-2850-40D4-8A09-4BDA245AB9C6}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{FFC54B42-A6DB-4074-B15E-4B2C71304B36}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{CDEB7B90-9EA2-4F97-8296-346B814774A5}] => (Allow) D:\Steam\steamapps\common\Yu-Gi-Oh! Duel Links\dlpc.exe () [Archivo no firmado]
FirewallRules: [{0928DA47-3FC2-4E1C-8D9C-C69F74B2FB58}] => (Allow) D:\Steam\steamapps\common\Yu-Gi-Oh! Duel Links\dlpc.exe () [Archivo no firmado]
FirewallRules: [{51A52DE9-461E-49B0-B75B-15ED90F38AA5}] => (Allow) C:\Program Files (x86)\Blizzard\Bonjour Service\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{1077A498-9AC8-4FC7-AB55-02E28B39F57D}] => (Allow) C:\Program Files (x86)\Blizzard\Bonjour Service\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{48876052-EC8B-4EB4-B7E5-14A2C7B55E94}D:\starcraft ii\versions\base72282\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base72282\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{1E9D31E7-C397-4401-AC58-50EC5C78E1FF}D:\starcraft ii\versions\base72282\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base72282\sc2_x64.exe => Ningún archivo
FirewallRules: [{6EB568CA-93FB-4C0A-81FF-6068990E32D0}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A6234538-3EAD-470C-A519-B769668CA99E}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{2841B11E-23D3-4C34-B45E-A709E972FBA2}D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe => Ningún archivo
FirewallRules: [UDP Query User{5CE4371C-08EA-4666-A5E8-A94E53DB2029}D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe => Ningún archivo
FirewallRules: [TCP Query User{880D4B9E-8F54-4E2F-8503-5784353E8041}D:\starcraft ii\versions\base73286\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base73286\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{E54C7898-75D1-4530-A335-C15D7FD45DA0}D:\starcraft ii\versions\base73286\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base73286\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{2ABE4F8E-02D3-4D77-A786-EB64E53B25F4}D:\starcraft ii\versions\base73620\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base73620\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{2A68B56A-F2A4-494D-9490-4A2A763141D6}D:\starcraft ii\versions\base73620\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base73620\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{AEA97388-256A-46A8-827D-77905B82937F}D:\world of warcraft\_retail_\utils\wowvoiceproxy.exe] => (Block) D:\world of warcraft\_retail_\utils\wowvoiceproxy.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{6A813F2D-1BFB-4028-8802-0BEBCD244A0B}D:\world of warcraft\_retail_\utils\wowvoiceproxy.exe] => (Block) D:\world of warcraft\_retail_\utils\wowvoiceproxy.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{729405C1-3038-407F-BB6E-3A9CDDA58229}D:\starcraft ii\versions\base74071\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base74071\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{73560ED2-4900-486F-B2E6-EC54F2118103}D:\starcraft ii\versions\base74071\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base74071\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{74EA620B-99CB-48D4-AB99-F248E097D149}D:\cisco packet tracer 7.2.1\bin\packettracer7.exe] => (Allow) D:\cisco packet tracer 7.2.1\bin\packettracer7.exe => Ningún archivo
FirewallRules: [UDP Query User{D6B5E30E-C6FB-45C0-AAED-D42E79CF3698}D:\cisco packet tracer 7.2.1\bin\packettracer7.exe] => (Allow) D:\cisco packet tracer 7.2.1\bin\packettracer7.exe => Ningún archivo
FirewallRules: [TCP Query User{328AC758-FAAB-42F0-BA0C-5FE01FB4DDB1}D:\starcraft ii\versions\base74456\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base74456\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{8966E0DB-0B97-4298-94B7-60423524BDFD}D:\starcraft ii\versions\base74456\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base74456\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{BC17F88F-EDA7-4D67-9117-35C2BCE710D1}D:\starcraft ii\versions\base74741\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base74741\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{C44D8AB0-79F7-4DFD-A0A7-2B36B2D9879A}D:\starcraft ii\versions\base74741\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base74741\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{3F85F483-D9AE-4399-8FFE-438E2F45986D}D:\xampp\apache\bin\httpd.exe] => (Allow) D:\xampp\apache\bin\httpd.exe => Ningún archivo
FirewallRules: [UDP Query User{E9BDAEC3-2942-42FD-9C43-72C65B3B65EF}D:\xampp\apache\bin\httpd.exe] => (Allow) D:\xampp\apache\bin\httpd.exe => Ningún archivo
FirewallRules: [TCP Query User{3A079509-E4C9-488E-9E21-BA72A16F30E6}D:\xampp\mysql\bin\mysqld.exe] => (Block) D:\xampp\mysql\bin\mysqld.exe => Ningún archivo
FirewallRules: [UDP Query User{B8E9A10F-3B85-4F90-AD1B-7F35E460A859}D:\xampp\mysql\bin\mysqld.exe] => (Block) D:\xampp\mysql\bin\mysqld.exe => Ningún archivo
FirewallRules: [TCP Query User{A2241B62-A461-493B-813A-75F6279CD0A9}C:\app\user\product\11.2.0\dbhome_1\jdk\jre\bin\java.exe] => (Allow) C:\app\user\product\11.2.0\dbhome_1\jdk\jre\bin\java.exe => Ningún archivo
FirewallRules: [UDP Query User{92596DC6-38D1-4542-8691-5F745CF68FE7}C:\app\user\product\11.2.0\dbhome_1\jdk\jre\bin\java.exe] => (Allow) C:\app\user\product\11.2.0\dbhome_1\jdk\jre\bin\java.exe => Ningún archivo
FirewallRules: [TCP Query User{55B0AE2E-2BBC-4143-9600-EB25851BA6D3}D:\starcraft ii\versions\base75025\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base75025\sc2_x64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment, Inc.)
FirewallRules: [UDP Query User{01501712-CCBD-421F-B227-B23D3B7786A7}D:\starcraft ii\versions\base75025\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base75025\sc2_x64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment, Inc.)
FirewallRules: [TCP Query User{350DC447-BD94-440E-94AE-37DEE85529CB}D:\starcraft ii\versions\base75689\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base75689\sc2_x64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment, Inc.)
FirewallRules: [UDP Query User{047A4C9D-FA9B-4531-A74C-74C5AA326460}D:\starcraft ii\versions\base75689\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base75689\sc2_x64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment, Inc.)
FirewallRules: [TCP Query User{28A5674D-7327-4F45-A38B-801D7DEAF988}D:\starcraft ii\versions\base75800\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base75800\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{5760D307-6C74-4D5C-A41F-66111657EF53}D:\starcraft ii\versions\base75800\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base75800\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{7EE79113-9BB0-4D1D-B49E-7500C996AF38}D:\world of warcraft\_classic_\utils\wowvoiceproxy.exe] => (Block) D:\world of warcraft\_classic_\utils\wowvoiceproxy.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{05071E7D-20F0-4531-959E-6F554D85B85F}D:\world of warcraft\_classic_\utils\wowvoiceproxy.exe] => (Block) D:\world of warcraft\_classic_\utils\wowvoiceproxy.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{02D7873C-4EB9-48BB-A8FF-2F4B4B9919B7}D:\starcraft ii\versions\base76052\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base76052\sc2_x64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment, Inc.)
FirewallRules: [UDP Query User{24BED38A-3632-4D6D-AF30-CD170429705C}D:\starcraft ii\versions\base76052\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base76052\sc2_x64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment, Inc.)
FirewallRules: [TCP Query User{03A9B72E-D6CF-413F-87BA-B2C018C8C225}D:\starcraft ii\versions\base76114\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base76114\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{A2B28889-7AED-4A09-800D-F3F52DFCAF59}D:\starcraft ii\versions\base76114\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base76114\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{79C1389F-C9C1-46FE-B822-C988312D14E3}D:\unity\unity hub\unity hub.exe] => (Allow) D:\unity\unity hub\unity hub.exe => Ningún archivo
FirewallRules: [UDP Query User{2AB8D3A2-5DD7-41F7-B874-32F3A16131F3}D:\unity\unity hub\unity hub.exe] => (Allow) D:\unity\unity hub\unity hub.exe => Ningún archivo
FirewallRules: [TCP Query User{D09B0C9A-6B29-4106-8A8B-1B5B4980D9A1}D:\starcraft ii\versions\base76811\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base76811\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{41F9CDBA-5AB0-4F62-9914-D2C6E74540B3}D:\starcraft ii\versions\base76811\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base76811\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{006347D1-DBE8-4E48-AF57-FA7988D8265E}D:\cisco packet tracer 7.2.2\bin\packettracer7.exe] => (Allow) D:\cisco packet tracer 7.2.2\bin\packettracer7.exe => Ningún archivo
FirewallRules: [UDP Query User{55CE19A7-9CC1-4514-B1D0-F5912870C4FF}D:\cisco packet tracer 7.2.2\bin\packettracer7.exe] => (Allow) D:\cisco packet tracer 7.2.2\bin\packettracer7.exe => Ningún archivo
FirewallRules: [TCP Query User{CE124BA1-35E8-42E7-856F-5CAF6B4A50DD}D:\xamp2\apache\bin\httpd.exe] => (Allow) D:\xamp2\apache\bin\httpd.exe (Apache Software Foundation) [Archivo no firmado]
FirewallRules: [UDP Query User{4836321F-C661-474E-96F0-12A38B252ACA}D:\xamp2\apache\bin\httpd.exe] => (Allow) D:\xamp2\apache\bin\httpd.exe (Apache Software Foundation) [Archivo no firmado]
FirewallRules: [TCP Query User{D3906427-48C4-4E9F-96CC-A654C249E8DF}C:\program files\java\jdk1.8.0_161\bin\java.exe] => (Allow) C:\program files\java\jdk1.8.0_161\bin\java.exe
FirewallRules: [UDP Query User{3F3FEDBF-2244-4DDF-AB0E-DDADE83BDFC7}C:\program files\java\jdk1.8.0_161\bin\java.exe] => (Allow) C:\program files\java\jdk1.8.0_161\bin\java.exe
FirewallRules: [TCP Query User{991364B4-892E-4A47-BF13-1A71CFCF334B}D:\xamp2\mysql\bin\mysqld.exe] => (Allow) D:\xamp2\mysql\bin\mysqld.exe (MariaDB Corporation Ab -> )
FirewallRules: [UDP Query User{D06483F4-ADAA-407E-A994-67A2F6A5CBD4}D:\xamp2\mysql\bin\mysqld.exe] => (Allow) D:\xamp2\mysql\bin\mysqld.exe (MariaDB Corporation Ab -> )
FirewallRules: [TCP Query User{E00F7D4B-96A4-4CFF-9FA3-A12C9B767C14}D:\starcraft ii\versions\base77379\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base77379\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{C6F7E4EF-7E1F-4109-AD7A-612F3DD953D3}D:\starcraft ii\versions\base77379\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base77379\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{F2805736-B3EE-4592-9C93-702D1B9EF8FC}C:\program files\netbeans 8.2\bin\netbeans64.exe] => (Allow) C:\program files\netbeans 8.2\bin\netbeans64.exe (Oracle Corporation) [Archivo no firmado]
FirewallRules: [UDP Query User{A3BF9DFF-34A8-457E-9EF8-A9326965ED7E}C:\program files\netbeans 8.2\bin\netbeans64.exe] => (Allow) C:\program files\netbeans 8.2\bin\netbeans64.exe (Oracle Corporation) [Archivo no firmado]
FirewallRules: [TCP Query User{3B71F47D-4EC0-4FE1-88D9-C882048DB7EE}D:\starcraft ii\versions\base77535\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base77535\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{CAFDE68B-4191-4117-887E-33333274091B}D:\starcraft ii\versions\base77535\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base77535\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{531566E1-4670-4A81-B1CD-A43679926DC4}C:\warcraft iii beta\x86_64\warcraft iii.exe] => (Allow) C:\warcraft iii beta\x86_64\warcraft iii.exe => Ningún archivo
FirewallRules: [UDP Query User{90EF4001-C98B-45BB-967E-10486FFE86FA}C:\warcraft iii beta\x86_64\warcraft iii.exe] => (Allow) C:\warcraft iii beta\x86_64\warcraft iii.exe => Ningún archivo
FirewallRules: [TCP Query User{E3FEBFEC-441F-4CF0-BC27-6AD3836A7FB1}D:\starcraft ii\versions\base77661\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base77661\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{2A8CE334-E173-4817-9C5A-45F6AC0A8234}D:\starcraft ii\versions\base77661\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base77661\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{3D968BBB-6782-4FC9-A303-FF08838580D7}D:\fallout\fallout 4\fallout4.exe] => (Block) D:\fallout\fallout 4\fallout4.exe => Ningún archivo
FirewallRules: [UDP Query User{B0722F0E-B964-466E-B662-1B5E653DA590}D:\fallout\fallout 4\fallout4.exe] => (Block) D:\fallout\fallout 4\fallout4.exe => Ningún archivo
FirewallRules: [TCP Query User{41DA7356-0A07-4969-8B80-2806CA153BBA}D:\warcraft\warcraft 3 + frozen throne\x86_64\warcraft iii.exe] => (Allow) D:\warcraft\warcraft 3 + frozen throne\x86_64\warcraft iii.exe => Ningún archivo
FirewallRules: [UDP Query User{8AB51445-A7D6-439D-B25A-A39A90E1333C}D:\warcraft\warcraft 3 + frozen throne\x86_64\warcraft iii.exe] => (Allow) D:\warcraft\warcraft 3 + frozen throne\x86_64\warcraft iii.exe => Ningún archivo
FirewallRules: [TCP Query User{5ADBB9AA-60AB-4906-B4F5-32839C2DC760}C:\program files\amd\cnext\cnext\radeonsoftware.exe] => (Allow) C:\program files\amd\cnext\cnext\radeonsoftware.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
FirewallRules: [UDP Query User{4758CB9D-766A-4F8C-B837-DD5ACBBE4AF7}C:\program files\amd\cnext\cnext\radeonsoftware.exe] => (Allow) C:\program files\amd\cnext\cnext\radeonsoftware.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
FirewallRules: [TCP Query User{B59E65C7-3E7C-49E8-87E5-C3AF10E419BD}D:\starcraft ii\versions\base78285\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base78285\sc2_x64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment, Inc.)
FirewallRules: [UDP Query User{BE87C4D4-7B64-488A-A1CF-ED845EE1F84E}D:\starcraft ii\versions\base78285\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base78285\sc2_x64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment, Inc.)
FirewallRules: [TCP Query User{469DBA44-A314-4E0C-9462-E6FB855E8F87}D:\games\java\bin\javaw.exe] => (Allow) D:\games\java\bin\javaw.exe
FirewallRules: [UDP Query User{CC1484C8-0DA5-41FA-80C4-D47142E3D59D}D:\games\java\bin\javaw.exe] => (Allow) D:\games\java\bin\javaw.exe
FirewallRules: [TCP Query User{F8A80B44-2C55-4D28-8E91-84B65994CA76}D:\the witcher 3\the witcher 2 enhanced edition\bin\witcher2.exe] => (Block) D:\the witcher 3\the witcher 2 enhanced edition\bin\witcher2.exe => Ningún archivo
FirewallRules: [UDP Query User{B77C8A74-886D-4344-BDA8-0E3F0BA163FC}D:\the witcher 3\the witcher 2 enhanced edition\bin\witcher2.exe] => (Block) D:\the witcher 3\the witcher 2 enhanced edition\bin\witcher2.exe => Ningún archivo
FirewallRules: [TCP Query User{498BAF6E-2164-4673-937E-5CDADEEFC622}C:\program files\java\jdk1.8.0_161\jre\bin\java.exe] => (Allow) C:\program files\java\jdk1.8.0_161\jre\bin\java.exe
FirewallRules: [UDP Query User{E945A0D7-CA8D-41AA-AF1E-6CD05A0E3288}C:\program files\java\jdk1.8.0_161\jre\bin\java.exe] => (Allow) C:\program files\java\jdk1.8.0_161\jre\bin\java.exe
FirewallRules: [TCP Query User{9A57244A-FF7E-4DD4-8F98-6FE11DF5F252}C:\program files\cisco packet tracer 7.3.0\bin\packettracer7.exe] => (Block) C:\program files\cisco packet tracer 7.3.0\bin\packettracer7.exe (CISCO SYSTEMS, INC. -> Cisco Systems, Inc)
FirewallRules: [UDP Query User{CF309F1A-95F5-4A03-84BD-B316341136CD}C:\program files\cisco packet tracer 7.3.0\bin\packettracer7.exe] => (Block) C:\program files\cisco packet tracer 7.3.0\bin\packettracer7.exe (CISCO SYSTEMS, INC. -> Cisco Systems, Inc)
FirewallRules: [{F1F88D08-5C1A-45CA-912D-B466D892384E}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
StandardProfile\GloballyOpenPorts: [6112:UDP] => Enabled:war udp
StandardProfile\GloballyOpenPorts: [6112:TCP] => Enabled:war tcp

==================== Puntos de Restauración =========================

13-05-2020 22:43:27 Punto de control programado
23-05-2020 15:11:01 Punto de control programado

==================== Dispositivos defectuosos en el Administrador de dispositivos ============

Name: Qualcomm Atheros AR938x Wireless Network Adapter #2
Description: Qualcomm Atheros AR938x Wireless Network Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros Communications Inc.
Service: athr
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Realtek High Definition Audio
Description: Realtek High Definition Audio
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Realtek
Service: IntcAzAudAddService
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: AMD Log Utility Driver
Description: AMD Log Utility Driver
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Errores del registro de eventos: ========================

Errores de aplicación:
==================
Error: (05/28/2020 09:05:12 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: No se pudo reactivar el filtro de eventos con la consulta "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" en el espacio de nombres "//./root/CIMV2" por el error 0x80041003. Los eventos no se podrán entregar a través de este filtro hasta que se corrija este problema.

Error: (05/28/2020 09:04:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: igfxCUIService.exe, versión: 6.15.10.3574, marca de tiempo: 0x53582143
Nombre del módulo con errores: igfxCUIService.exe, versión: 6.15.10.3574, marca de tiempo: 0x53582143
Código de excepción: 0xc0000005
Desplazamiento de errores: 0x00000000000110cc
Id. del proceso con errores: 0x4c8
Hora de inicio de la aplicación con errores: 0x01d6355d6452d913
Ruta de acceso de la aplicación con errores: C:\Windows\system32\igfxCUIService.exe
Ruta de acceso del módulo con errores: C:\Windows\system32\igfxCUIService.exe
Id. del informe: b400c8fa-a150-11ea-8bb4-e03f49a5aca6

Error: (05/28/2020 04:40:43 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: war3.exe, versión: 1.26.0.6401, marca de tiempo: 0x4d83baa9
Nombre del módulo con errores: unknown, versión: 0.0.0.0, marca de tiempo: 0x00000000
Código de excepción: 0xc000041d
Desplazamiento de errores: 0x735a4eb9
Id. del proceso con errores: 0x8a8
Hora de inicio de la aplicación con errores: 0x01d63532ed6cc631
Ruta de acceso de la aplicación con errores: D:\WARCRAFT\WarCraft 3 + Frozen Throne\war3.exe
Ruta de acceso del módulo con errores: unknown
Id. del informe: e19d9313-a12b-11ea-a24a-e03f49a5aca6

Error: (05/28/2020 03:09:16 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: No se pudo reactivar el filtro de eventos con la consulta "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" en el espacio de nombres "//./root/CIMV2" por el error 0x80041003. Los eventos no se podrán entregar a través de este filtro hasta que se corrija este problema.

Error: (05/28/2020 03:08:43 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: igfxCUIService.exe, versión: 6.15.10.3574, marca de tiempo: 0x53582143
Nombre del módulo con errores: igfxCUIService.exe, versión: 6.15.10.3574, marca de tiempo: 0x53582143
Código de excepción: 0xc0000005
Desplazamiento de errores: 0x000000000000eba8
Id. del proceso con errores: 0x474
Hora de inicio de la aplicación con errores: 0x01d6352bc08f277d
Ruta de acceso de la aplicación con errores: C:\Windows\system32\igfxCUIService.exe
Ruta de acceso del módulo con errores: C:\Windows\system32\igfxCUIService.exe
Id. del informe: 076b93b6-a11f-11ea-a24a-e03f49a5aca6

Error: (05/28/2020 02:31:22 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: No se pudo reactivar el filtro de eventos con la consulta "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" en el espacio de nombres "//./root/CIMV2" por el error 0x80041003. Los eventos no se podrán entregar a través de este filtro hasta que se corrija este problema.

Error: (05/28/2020 02:31:13 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: igfxCUIService.exe, versión: 6.15.10.3574, marca de tiempo: 0x53582143
Nombre del módulo con errores: igfxCUIService.exe, versión: 6.15.10.3574, marca de tiempo: 0x53582143
Código de excepción: 0xc0000005
Desplazamiento de errores: 0x000000000000eba8
Id. del proceso con errores: 0x478
Hora de inicio de la aplicación con errores: 0x01d6352684d819c6
Ruta de acceso de la aplicación con errores: C:\Windows\system32\igfxCUIService.exe
Ruta de acceso del módulo con errores: C:\Windows\system32\igfxCUIService.exe
Id. del informe: ca335e9c-a119-11ea-8b79-e03f49a5aca6

Error: (05/27/2020 09:16:16 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: El programa rgc.exe, versión 6.7.0.0, dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible acerca del problema, compruebe el historial de problemas en el panel de control Centro de actividades.

Identificador de proceso: c14

Hora de inicio: 01d63495c249f454

Hora de finalización: 4

Ruta de acceso de la aplicación: D:\WARCRAFT\RGC\Ranked Gaming Client\rgc.exe

Identificador de informe: 2dd77648-a089-11ea-b662-e03f49a5aca6


Errores del sistema:
=============
Error: (05/28/2020 09:15:03 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Se recibió la siguiente alerta irrecuperable: 40.

Error: (05/28/2020 09:15:01 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Se recibió la siguiente alerta irrecuperable: 70.

Error: (05/28/2020 09:12:52 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Se recibió la siguiente alerta irrecuperable: 20.

Error: (05/28/2020 09:09:22 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: El servicio Windows Update no respondió después de iniciar.

Error: (05/28/2020 09:04:18 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: La configuración de permisos establecido de forma predeterminada en el equipo no concede el permiso Activación Local para la aplicación de servidor COM con CLSID 
{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}
 y APPID 
{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}
 al usuario NT AUTHORITY\SERVICIO LOCAL con SID (S-1-5-19) en la dirección LocalHost (con LRPC). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes.

Error: (05/28/2020 09:04:15 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: El servicio Intel(R) HD Graphics Control Panel Service se cerró con el siguiente error: 
Error no especificado

Error: (05/28/2020 03:19:09 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Se recibió la siguiente alerta irrecuperable: 40.

Error: (05/28/2020 03:19:08 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Se recibió la siguiente alerta irrecuperable: 70.


Windows Defender:
===================================
Date: 2019-06-07 12:40:56.170
Description: 
Windows Defender encontró un error al intentar actualizar el motor.
Nueva versión de motor:1.1.16000.6
Versión de motor anterior:1.1.6402.0
Origen de actualización:Usuario
Usuario:NT AUTHORITY\SYSTEM
Código de error:0x8050800c
Descripción de error:Problema inesperado. Instale todas las actualizaciones disponibles e intente iniciar el programa de nuevo. Para obtener más información sobre cómo instalar actualizaciones, consulte Ayuda y soporte técnico. 

CodeIntegrity:
===================================

Date: 2019-03-03 02:05:14.151
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Unlocker\UnlockerDriver5.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

Date: 2019-03-03 02:05:14.123
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Unlocker\UnlockerDriver5.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

Date: 2019-03-03 02:05:14.092
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Unlocker\UnlockerDriver5.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

Date: 2019-03-03 02:05:14.064
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Unlocker\UnlockerDriver5.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

Date: 2019-03-03 02:04:40.681
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Unlocker\UnlockerDriver5.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

Date: 2019-03-03 02:04:40.653
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Unlocker\UnlockerDriver5.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

Date: 2019-03-03 02:04:40.625
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Unlocker\UnlockerDriver5.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

Date: 2019-03-03 02:04:40.597
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Unlocker\UnlockerDriver5.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

==================== Información de la memoria =========================== 

BIOS: American Megatrends Inc. 2104 08/08/2014
Placa base: ASUSTeK COMPUTER INC. H81M-A
Procesador: Intel(R) Core(TM) i3-4170 CPU @ 3.70GHz
Porcentaje de memoria en uso: 46%
RAM física total: 12226.2 MB
RAM física disponible: 6488 MB
Virtual total: 42690.55 MB
Virtual disponible: 35265.8 MB

==================== Unidades ================================

Drive c: () (Fixed) (Total:195.21 GB) (Free:21.35 GB) NTFS
Drive d: (Disco local ) (Fixed) (Total:270.45 GB) (Free:66.02 GB) NTFS

\\?\Volume{31cf6644-ef86-11e5-8214-806e6f6e6963}\ (Reservado para el sistema) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS

==================== MBR & Tabla de particiones ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 3B7E4153)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=195.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=270.4 GB) - (Type=07 NTFS)

==================== Final de Addition.txt =======================

En el caso de STARCRAFT 2 :frowning: me pesa como 70 gb bajarlo denuevo , el juego es seguro ya que es de blizzard y tiene mucho tiempo xD :frowning: , en el caso de RGC no lo puedo desinstalar ya que no se instala solo se ejecuta al descomprimirse , ya lo borre y descargue denuevo pero sigue con el mismo problema

Hola @Cristina_Mirina_Roma

Buscando información el comportamiento del Software es normal.

En cuanto al reporte de FRST, se ven varioooos restos, que no tienen que ver con lo que planteas, pero mejoraras tu equipo eliminándolos, por lo cual realiza lo siguiente con mucha atención:

Ejecutaste FRST desde un lugar incorrecto:

  • Ejecutado desde C:\Users\usuario\Downloads

Corta el ejecutable y pegalo en tu escritorio <<< Esto es Muy Importante.

Luego:

1.- Muy Importante >>> Realizar una copia de Seguridad de su Registro.

  • Descarga/Ejecuta DelFix desde el escritorio de Windows.
  • Clic Derecho, “Ejecutar como Administrador”.
  • En la ventana principal, marca solamente la casilla “Create Registry Backup”.
  • Clic en Run.

Al terminar se abrirá un reporte llamado DelFix.txt, guárdelo por si fuera necesario y cierre la herramienta…

Luego ve a::

2.- Inicio >>> Ejecutar >>> Escribe notepad.exe o abra un nuevo archivo Notepad y copie y pegue lo siguiente:

Start
CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restricción <==== ATENCIÓN
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\83.0.4103.61\Installer\chrmstp.exe [2020-05-21] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN
CHR HKLM\SOFTWARE\Policies\Google: Restricción <==== ATENCIÓN
Task: {116323FF-2EE2-4A33-9932-5BA3143D02F4} - \{17E24548-4AC6-4245-A880-18F6882C0440} -> Ningún archivo <==== ATENCIÓN
Task: {1D9CCD76-92F9-4FA6-A83F-0F148F5C9285} - System32\Tasks\{7FBD0E2F-A226-4928-8552-0C121886BA46} => C:\Windows\system32\pcalua.exe -a F:\setup.exe -d F:\
Task: {30D67F0E-390C-4039-AB5C-83DE0C718184} - \{96E7149D-A174-4A0C-BA9E-74B8C9180FD2} -> Ningún archivo <==== ATENCIÓN
Task: {7E2E5DC8-3643-4F8F-94CF-D4FA198A16C4} - System32\Tasks\{EFF8CBDC-EBA6-42B5-B86A-9DAD403631AB} => C:\Windows\system32\pcalua.exe -a F:\instmsia.exe -d F:\
Task: {BF5F64F6-9238-4B89-8344-5549DD06AFC9} - \{2CD6C93C-36B7-484D-83FC-B93AEE2427D5} -> Ningún archivo <==== ATENCIÓN
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Ningún archivo]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]
S4 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.242\WsAppService.exe [X]
S3 ptun0901; C:\Windows\System32\DRIVERS\ptun0901.sys [27136 2016-06-15] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 tap-tb-0901; C:\Windows\System32\DRIVERS\tap-tb-0901.sys [38656 2017-09-06] (TunnelBear, Inc. -> The OpenVPN Project)
S3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 tapprotonvpn; C:\Windows\System32\DRIVERS\tapprotonvpn.sys [36792 2017-08-24] (ProtonVPN AG -> The OpenVPN Project)
S3 tapwindscribe0901; C:\Windows\System32\DRIVERS\tapwindscribe0901.sys [45560 2017-09-13] (Windscribe Limited -> The OpenVPN Project)
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Ningún archivo 
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Ningún archivo 
ContextMenuHandlers1: [TextAloud] -> [CC]{BF31B0FB-AE0E-488F-BFD6-416FA2F9915F} => -> Ningún archivo
ContextMenuHandlers1: [WinRAR] -> [CC]{B41DB860-64E4-11D2-9906-E49FADC173CA} => -> Ningún archivo 
ContextMenuHandlers4: [RecuvaShellExt] -> [CC]{435E5DF5-2510-463C-B223-BDA47006D002} => -> Ningún archivo ContextMenuHandlers5: [ACE] -> -{5E2121EE-0300-11D4-8D3B-444553540000} => -> Ningún archivo ContextMenuHandlers5: [DreamScene] -> -{BE800AEB-A440-4B63-94CD-AA6B43647DF9} => -> Ningún archivo
ContextMenuHandlers5: [igfxDTCM] -> -{9B5F5829-A529-4B12-814A-E81BCB8D93FC} => -> Ningún archivo 
ContextMenuHandlers5: [igfxOSP] -> -{FA507C3F-30C6-4DCA-9EE5-2656072EEC14} => -> Ningún archivo 
ContextMenuHandlers6: [RecuvaShellExt] -> [CC]{435E5DF5-2510-463C-B223-BDA47006D002} => -> Ningún archivo 
ContextMenuHandlers6: [WinRAR] -> [CC]{B41DB860-64E4-11D2-9906-E49FADC173CA} => -> Ningún archivo 
ContextMenuHandlers6: [WinRAR32] -> [CC]{B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Ningún archivo
WMI:subscription__FilterToConsumerBinding->CommandLineEventConsumer.Name=“BVTConsumer”",Filter="__EventFilter.Name=“BVTFilter”:: 
WMI:subscription__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA “Win32_Processor” AND TargetInstance.LoadPercentage > 99] 
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\tools\kernrate] Shortcut: C:\Users\Public\Desktop\Minecraft.lnk -> D:\MINECRAFT.minecraft\start.bat ()
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SoftEther VPN Client Manager Startup.lnk => C:\Windows\pss\SoftEther VPN Client Manager Startup.lnk.CommonStartup
FirewallRules: [TCP Query User{3E7622B3-BDDB-433D-9B84-ACF049CA50ED}F:\lol\warcraft iii\war3.exe] => (Allow) F:\lol\warcraft iii\war3.exe => Ningún archivo
FirewallRules: [UDP Query User{1090D7E6-9B54-4450-AD35-5082ED8339AF}F:\lol\warcraft iii\war3.exe] => (Allow) F:\lol\warcraft iii\war3.exe => Ningún archivo
FirewallRules: [TCP Query User{AFEFF4A0-BC98-40CD-936D-9E689AA86211}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Allow) C:\program files (x86)\windscribe\wsappcontrol.exe => Ningún archivo
FirewallRules: [UDP Query User{F7E8F81B-F6C2-4E43-9991-BF85139348F7}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Allow) C:\program files (x86)\windscribe\wsappcontrol.exe => Ningún archivo
FirewallRules: [TCP Query User{BE149088-7B15-40C1-9BFF-2C713D3C3664}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Block) C:\program files (x86)\windscribe\wsappcontrol.exe => Ningún archivo
FirewallRules: [UDP Query User{D6471DC8-297F-4DD4-887F-1443618304AF}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Block) C:\program files (x86)\windscribe\wsappcontrol.exe => Ningún archivo
FirewallRules: [TCP Query User{48028065-34AD-4F7E-8CC8-6C9EA09B2859}C:\program files\amd\cnext\cnext\radeonsettings.exe] => (Block) C:\program files\amd\cnext\cnext\radeonsettings.exe => Ningún archivo
FirewallRules: [UDP Query User{AE1AE471-7FE6-419E-8B0C-986779161D39}C:\program files\amd\cnext\cnext\radeonsettings.exe] => (Block) C:\program files\amd\cnext\cnext\radeonsettings.exe => Ningún archivo
FirewallRules: [TCP Query User{F909E756-2C7A-4529-B244-8D0EBFEC4927}C:\program files\amd\cnext\cnext\radeonsettings.exe] => (Block) C:\program files\amd\cnext\cnext\radeonsettings.exe => Ningún archivo
FirewallRules: [UDP Query User{C98D07F5-6489-46A3-B78D-503AFC71520C}C:\program files\amd\cnext\cnext\radeonsettings.exe] => (Block) C:\program files\amd\cnext\cnext\radeonsettings.exe => Ningún archivo
FirewallRules: [TCP Query User{48876052-EC8B-4EB4-B7E5-14A2C7B55E94}D:\starcraft ii\versions\base72282\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base72282\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{1E9D31E7-C397-4401-AC58-50EC5C78E1FF}D:\starcraft ii\versions\base72282\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base72282\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{2841B11E-23D3-4C34-B45E-A709E972FBA2}D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe => Ningún archivo
FirewallRules: [UDP Query User{5CE4371C-08EA-4666-A5E8-A94E53DB2029}D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe => Ningún archivo
FirewallRules: [TCP Query User{880D4B9E-8F54-4E2F-8503-5784353E8041}D:\starcraft ii\versions\base73286\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base73286\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{E54C7898-75D1-4530-A335-C15D7FD45DA0}D:\starcraft ii\versions\base73286\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base73286\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{2ABE4F8E-02D3-4D77-A786-EB64E53B25F4}D:\starcraft ii\versions\base73620\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base73620\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{2A68B56A-F2A4-494D-9490-4A2A763141D6}D:\starcraft ii\versions\base73620\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base73620\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{729405C1-3038-407F-BB6E-3A9CDDA58229}D:\starcraft ii\versions\base74071\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base74071\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{73560ED2-4900-486F-B2E6-EC54F2118103}D:\starcraft ii\versions\base74071\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base74071\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{74EA620B-99CB-48D4-AB99-F248E097D149}D:\cisco packet tracer 7.2.1\bin\packettracer7.exe] => (Allow) D:\cisco packet tracer 7.2.1\bin\packettracer7.exe => Ningún archivo
FirewallRules: [UDP Query User{D6B5E30E-C6FB-45C0-AAED-D42E79CF3698}D:\cisco packet tracer 7.2.1\bin\packettracer7.exe] => (Allow) D:\cisco packet tracer 7.2.1\bin\packettracer7.exe => Ningún archivo
FirewallRules: [TCP Query User{328AC758-FAAB-42F0-BA0C-5FE01FB4DDB1}D:\starcraft ii\versions\base74456\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base74456\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{8966E0DB-0B97-4298-94B7-60423524BDFD}D:\starcraft ii\versions\base74456\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base74456\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{BC17F88F-EDA7-4D67-9117-35C2BCE710D1}D:\starcraft ii\versions\base74741\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base74741\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{C44D8AB0-79F7-4DFD-A0A7-2B36B2D9879A}D:\starcraft ii\versions\base74741\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base74741\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{3F85F483-D9AE-4399-8FFE-438E2F45986D}D:\xampp\apache\bin\httpd.exe] => (Allow) D:\xampp\apache\bin\httpd.exe => Ningún archivo
FirewallRules: [UDP Query User{E9BDAEC3-2942-42FD-9C43-72C65B3B65EF}D:\xampp\apache\bin\httpd.exe] => (Allow) D:\xampp\apache\bin\httpd.exe => Ningún archivo
FirewallRules: [TCP Query User{3A079509-E4C9-488E-9E21-BA72A16F30E6}D:\xampp\mysql\bin\mysqld.exe] => (Block) D:\xampp\mysql\bin\mysqld.exe => Ningún archivo
FirewallRules: [UDP Query User{B8E9A10F-3B85-4F90-AD1B-7F35E460A859}D:\xampp\mysql\bin\mysqld.exe] => (Block) D:\xampp\mysql\bin\mysqld.exe => Ningún archivo
FirewallRules: [TCP Query User{A2241B62-A461-493B-813A-75F6279CD0A9}C:\app\user\product\11.2.0\dbhome_1\jdk\jre\bin\java.exe] => (Allow) C:\app\user\product\11.2.0\dbhome_1\jdk\jre\bin\java.exe => Ningún archivo
FirewallRules: [UDP Query User{92596DC6-38D1-4542-8691-5F745CF68FE7}C:\app\user\product\11.2.0\dbhome_1\jdk\jre\bin\java.exe] => (Allow) C:\app\user\product\11.2.0\dbhome_1\jdk\jre\bin\java.exe => Ningún archivo
FirewallRules: [TCP Query User{28A5674D-7327-4F45-A38B-801D7DEAF988}D:\starcraft ii\versions\base75800\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base75800\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{5760D307-6C74-4D5C-A41F-66111657EF53}D:\starcraft ii\versions\base75800\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base75800\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{03A9B72E-D6CF-413F-87BA-B2C018C8C225}D:\starcraft ii\versions\base76114\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base76114\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{A2B28889-7AED-4A09-800D-F3F52DFCAF59}D:\starcraft ii\versions\base76114\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base76114\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{79C1389F-C9C1-46FE-B822-C988312D14E3}D:\unity\unity hub\unity hub.exe] => (Allow) D:\unity\unity hub\unity hub.exe => Ningún archivo
FirewallRules: [UDP Query User{2AB8D3A2-5DD7-41F7-B874-32F3A16131F3}D:\unity\unity hub\unity hub.exe] => (Allow) D:\unity\unity hub\unity hub.exe => Ningún archivo
FirewallRules: [TCP Query User{D09B0C9A-6B29-4106-8A8B-1B5B4980D9A1}D:\starcraft ii\versions\base76811\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base76811\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{41F9CDBA-5AB0-4F62-9914-D2C6E74540B3}D:\starcraft ii\versions\base76811\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base76811\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{006347D1-DBE8-4E48-AF57-FA7988D8265E}D:\cisco packet tracer 7.2.2\bin\packettracer7.exe] => (Allow) D:\cisco packet tracer 7.2.2\bin\packettracer7.exe => Ningún archivo
FirewallRules: [UDP Query User{55CE19A7-9CC1-4514-B1D0-F5912870C4FF}D:\cisco packet tracer 7.2.2\bin\packettracer7.exe] => (Allow) D:\cisco packet tracer 7.2.2\bin\packettracer7.exe => Ningún archivo
FirewallRules: [TCP Query User{E00F7D4B-96A4-4CFF-9FA3-A12C9B767C14}D:\starcraft ii\versions\base77379\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base77379\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{C6F7E4EF-7E1F-4109-AD7A-612F3DD953D3}D:\starcraft ii\versions\base77379\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base77379\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{3B71F47D-4EC0-4FE1-88D9-C882048DB7EE}D:\starcraft ii\versions\base77535\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base77535\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{CAFDE68B-4191-4117-887E-33333274091B}D:\starcraft ii\versions\base77535\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base77535\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{531566E1-4670-4A81-B1CD-A43679926DC4}C:\warcraft iii beta\x86_64\warcraft iii.exe] => (Allow) C:\warcraft iii beta\x86_64\warcraft iii.exe => Ningún archivo
FirewallRules: [UDP Query User{90EF4001-C98B-45BB-967E-10486FFE86FA}C:\warcraft iii beta\x86_64\warcraft iii.exe] => (Allow) C:\warcraft iii beta\x86_64\warcraft iii.exe => Ningún archivo
FirewallRules: [TCP Query User{E3FEBFEC-441F-4CF0-BC27-6AD3836A7FB1}D:\starcraft ii\versions\base77661\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base77661\sc2_x64.exe => Ningún archivo
FirewallRules: [UDP Query User{2A8CE334-E173-4817-9C5A-45F6AC0A8234}D:\starcraft ii\versions\base77661\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base77661\sc2_x64.exe => Ningún archivo
FirewallRules: [TCP Query User{3D968BBB-6782-4FC9-A303-FF08838580D7}D:\fallout\fallout 4\fallout4.exe] => (Block) D:\fallout\fallout 4\fallout4.exe => Ningún archivo
FirewallRules: [UDP Query User{B0722F0E-B964-466E-B662-1B5E653DA590}D:\fallout\fallout 4\fallout4.exe] => (Block) D:\fallout\fallout 4\fallout4.exe => Ningún archivo
FirewallRules: [TCP Query User{41DA7356-0A07-4969-8B80-2806CA153BBA}D:\warcraft\warcraft 3 + frozen throne\x86_64\warcraft iii.exe] => (Allow) D:\warcraft\warcraft 3 + frozen throne\x86_64\warcraft iii.exe => Ningún archivo
FirewallRules: [UDP Query User{8AB51445-A7D6-439D-B25A-A39A90E1333C}D:\warcraft\warcraft 3 + frozen throne\x86_64\warcraft iii.exe] => (Allow) D:\warcraft\warcraft 3 + frozen throne\x86_64\warcraft iii.exe => Ningún archivo
FirewallRules: [TCP Query User{F8A80B44-2C55-4D28-8E91-84B65994CA76}D:\the witcher 3\the witcher 2 enhanced edition\bin\witcher2.exe] => (Block) D:\the witcher 3\the witcher 2 enhanced edition\bin\witcher2.exe => Ningún archivo
FirewallRules: [UDP Query User{B77C8A74-886D-4344-BDA8-0E3F0BA163FC}D:\the witcher 3\the witcher 2 enhanced edition\bin\witcher2.exe] => (Block) D:\the witcher 3\the witcher 2 enhanced edition\bin\witcher2.exe => Ningún archivo

CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:
END
  • Lo guarda bajo el nombre de fixlist.txt en el escritorio <<< Esto es muy importante.

Nota: Es necesario que el ejecutable Frst.exe/Frst64.exe y fixlist.txt se encuentren en la misma ubicación (escritorio) o si no la herramienta no trabajará.

3.- Inicie su ordenador en >>> Modo Seguro >>> Aplicable a Windows 10. o Windows 7.

  • Ejecute Frst.exe o Frst64.exe. según el caso.
  • Presione el botón Fix/Corregir y aguarde a que termine.
  • La Herramienta guardará el reporte en su escritorio (Fixlog.txt).
  • Reinicia y lo pega en su próxima respuesta.

4.- Luego de reiniciar, actualiza Java a su ultima versión.

Nos comentas…

Salu2

Resultados de la corrección de Farbar Recovery Scan Tool (x64) Versión: 29-05-2020
Ejecutado por usuario (30-05-2020 01:22:01) Run:1
Ejecutado desde C:\Users\usuario\Desktop
Perfiles cargados: usuario
Modo de Inicio: Safe Mode (minimal)
==============================================

fixlist contenido:
*****************
Start
CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restricci�n <==== ATENCI�N
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\83.0.4103.61\Installer\chrmstp.exe [2020-05-21] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricci�n <==== ATENCI�N
CHR HKLM\SOFTWARE\Policies\Google: Restricci�n <==== ATENCI�N
Task: {116323FF-2EE2-4A33-9932-5BA3143D02F4} - \{17E24548-4AC6-4245-A880-18F6882C0440} -> Ning�n archivo <==== ATENCI�N
Task: {1D9CCD76-92F9-4FA6-A83F-0F148F5C9285} - System32\Tasks\{7FBD0E2F-A226-4928-8552-0C121886BA46} => C:\Windows\system32\pcalua.exe -a F:\setup.exe -d F:\
Task: {30D67F0E-390C-4039-AB5C-83DE0C718184} - \{96E7149D-A174-4A0C-BA9E-74B8C9180FD2} -> Ning�n archivo <==== ATENCI�N
Task: {7E2E5DC8-3643-4F8F-94CF-D4FA198A16C4} - System32\Tasks\{EFF8CBDC-EBA6-42B5-B86A-9DAD403631AB} => C:\Windows\system32\pcalua.exe -a F:\instmsia.exe -d F:\
Task: {BF5F64F6-9238-4B89-8344-5549DD06AFC9} - \{2CD6C93C-36B7-484D-83FC-B93AEE2427D5} -> Ning�n archivo <==== ATENCI�N
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Ning�n archivo]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]
S4 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.242\WsAppService.exe [X]
S3 ptun0901; C:\Windows\System32\DRIVERS\ptun0901.sys [27136 2016-06-15] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 tap-tb-0901; C:\Windows\System32\DRIVERS\tap-tb-0901.sys [38656 2017-09-06] (TunnelBear, Inc. -> The OpenVPN Project)
S3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 tapprotonvpn; C:\Windows\System32\DRIVERS\tapprotonvpn.sys [36792 2017-08-24] (ProtonVPN AG -> The OpenVPN Project)
S3 tapwindscribe0901; C:\Windows\System32\DRIVERS\tapwindscribe0901.sys [45560 2017-09-13] (Windscribe Limited -> The OpenVPN Project)
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Ning�n archivo 
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Ning�n archivo 
ContextMenuHandlers1: [TextAloud] -> [CC]{BF31B0FB-AE0E-488F-BFD6-416FA2F9915F} => -> Ning�n archivo
ContextMenuHandlers1: [WinRAR] -> [CC]{B41DB860-64E4-11D2-9906-E49FADC173CA} => -> Ning�n archivo 
ContextMenuHandlers4: [RecuvaShellExt] -> [CC]{435E5DF5-2510-463C-B223-BDA47006D002} => -> Ning�n archivo ContextMenuHandlers5: [ACE] -> -{5E2121EE-0300-11D4-8D3B-444553540000} => -> Ning�n archivo ContextMenuHandlers5: [DreamScene] -> -{BE800AEB-A440-4B63-94CD-AA6B43647DF9} => -> Ning�n archivo
ContextMenuHandlers5: [igfxDTCM] -> -{9B5F5829-A529-4B12-814A-E81BCB8D93FC} => -> Ning�n archivo 
ContextMenuHandlers5: [igfxOSP] -> -{FA507C3F-30C6-4DCA-9EE5-2656072EEC14} => -> Ning�n archivo 
ContextMenuHandlers6: [RecuvaShellExt] -> [CC]{435E5DF5-2510-463C-B223-BDA47006D002} => -> Ning�n archivo 
ContextMenuHandlers6: [WinRAR] -> [CC]{B41DB860-64E4-11D2-9906-E49FADC173CA} => -> Ning�n archivo 
ContextMenuHandlers6: [WinRAR32] -> [CC]{B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Ning�n archivo
WMI:subscription__FilterToConsumerBinding->CommandLineEventConsumer.Name=�BVTConsumer�",Filter="__EventFilter.Name=�BVTFilter�:: 
WMI:subscription__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA �Win32_Processor� AND TargetInstance.LoadPercentage > 99] 
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\tools\kernrate] Shortcut: C:\Users\Public\Desktop\Minecraft.lnk -> D:\MINECRAFT.minecraft\start.bat ()
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SoftEther VPN Client Manager Startup.lnk => C:\Windows\pss\SoftEther VPN Client Manager Startup.lnk.CommonStartup
FirewallRules: [TCP Query User{3E7622B3-BDDB-433D-9B84-ACF049CA50ED}F:\lol\warcraft iii\war3.exe] => (Allow) F:\lol\warcraft iii\war3.exe => Ning�n archivo
FirewallRules: [UDP Query User{1090D7E6-9B54-4450-AD35-5082ED8339AF}F:\lol\warcraft iii\war3.exe] => (Allow) F:\lol\warcraft iii\war3.exe => Ning�n archivo
FirewallRules: [TCP Query User{AFEFF4A0-BC98-40CD-936D-9E689AA86211}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Allow) C:\program files (x86)\windscribe\wsappcontrol.exe => Ning�n archivo
FirewallRules: [UDP Query User{F7E8F81B-F6C2-4E43-9991-BF85139348F7}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Allow) C:\program files (x86)\windscribe\wsappcontrol.exe => Ning�n archivo
FirewallRules: [TCP Query User{BE149088-7B15-40C1-9BFF-2C713D3C3664}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Block) C:\program files (x86)\windscribe\wsappcontrol.exe => Ning�n archivo
FirewallRules: [UDP Query User{D6471DC8-297F-4DD4-887F-1443618304AF}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Block) C:\program files (x86)\windscribe\wsappcontrol.exe => Ning�n archivo
FirewallRules: [TCP Query User{48028065-34AD-4F7E-8CC8-6C9EA09B2859}C:\program files\amd\cnext\cnext\radeonsettings.exe] => (Block) C:\program files\amd\cnext\cnext\radeonsettings.exe => Ning�n archivo
FirewallRules: [UDP Query User{AE1AE471-7FE6-419E-8B0C-986779161D39}C:\program files\amd\cnext\cnext\radeonsettings.exe] => (Block) C:\program files\amd\cnext\cnext\radeonsettings.exe => Ning�n archivo
FirewallRules: [TCP Query User{F909E756-2C7A-4529-B244-8D0EBFEC4927}C:\program files\amd\cnext\cnext\radeonsettings.exe] => (Block) C:\program files\amd\cnext\cnext\radeonsettings.exe => Ning�n archivo
FirewallRules: [UDP Query User{C98D07F5-6489-46A3-B78D-503AFC71520C}C:\program files\amd\cnext\cnext\radeonsettings.exe] => (Block) C:\program files\amd\cnext\cnext\radeonsettings.exe => Ning�n archivo
FirewallRules: [TCP Query User{48876052-EC8B-4EB4-B7E5-14A2C7B55E94}D:\starcraft ii\versions\base72282\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base72282\sc2_x64.exe => Ning�n archivo
FirewallRules: [UDP Query User{1E9D31E7-C397-4401-AC58-50EC5C78E1FF}D:\starcraft ii\versions\base72282\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base72282\sc2_x64.exe => Ning�n archivo
FirewallRules: [TCP Query User{2841B11E-23D3-4C34-B45E-A709E972FBA2}D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe => Ning�n archivo
FirewallRules: [UDP Query User{5CE4371C-08EA-4666-A5E8-A94E53DB2029}D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe => Ning�n archivo
FirewallRules: [TCP Query User{880D4B9E-8F54-4E2F-8503-5784353E8041}D:\starcraft ii\versions\base73286\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base73286\sc2_x64.exe => Ning�n archivo
FirewallRules: [UDP Query User{E54C7898-75D1-4530-A335-C15D7FD45DA0}D:\starcraft ii\versions\base73286\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base73286\sc2_x64.exe => Ning�n archivo
FirewallRules: [TCP Query User{2ABE4F8E-02D3-4D77-A786-EB64E53B25F4}D:\starcraft ii\versions\base73620\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base73620\sc2_x64.exe => Ning�n archivo
FirewallRules: [UDP Query User{2A68B56A-F2A4-494D-9490-4A2A763141D6}D:\starcraft ii\versions\base73620\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base73620\sc2_x64.exe => Ning�n archivo
FirewallRules: [TCP Query User{729405C1-3038-407F-BB6E-3A9CDDA58229}D:\starcraft ii\versions\base74071\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base74071\sc2_x64.exe => Ning�n archivo
FirewallRules: [UDP Query User{73560ED2-4900-486F-B2E6-EC54F2118103}D:\starcraft ii\versions\base74071\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base74071\sc2_x64.exe => Ning�n archivo
FirewallRules: [TCP Query User{74EA620B-99CB-48D4-AB99-F248E097D149}D:\cisco packet tracer 7.2.1\bin\packettracer7.exe] => (Allow) D:\cisco packet tracer 7.2.1\bin\packettracer7.exe => Ning�n archivo
FirewallRules: [UDP Query User{D6B5E30E-C6FB-45C0-AAED-D42E79CF3698}D:\cisco packet tracer 7.2.1\bin\packettracer7.exe] => (Allow) D:\cisco packet tracer 7.2.1\bin\packettracer7.exe => Ning�n archivo
FirewallRules: [TCP Query User{328AC758-FAAB-42F0-BA0C-5FE01FB4DDB1}D:\starcraft ii\versions\base74456\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base74456\sc2_x64.exe => Ning�n archivo
FirewallRules: [UDP Query User{8966E0DB-0B97-4298-94B7-60423524BDFD}D:\starcraft ii\versions\base74456\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base74456\sc2_x64.exe => Ning�n archivo
FirewallRules: [TCP Query User{BC17F88F-EDA7-4D67-9117-35C2BCE710D1}D:\starcraft ii\versions\base74741\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base74741\sc2_x64.exe => Ning�n archivo
FirewallRules: [UDP Query User{C44D8AB0-79F7-4DFD-A0A7-2B36B2D9879A}D:\starcraft ii\versions\base74741\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base74741\sc2_x64.exe => Ning�n archivo
FirewallRules: [TCP Query User{3F85F483-D9AE-4399-8FFE-438E2F45986D}D:\xampp\apache\bin\httpd.exe] => (Allow) D:\xampp\apache\bin\httpd.exe => Ning�n archivo
FirewallRules: [UDP Query User{E9BDAEC3-2942-42FD-9C43-72C65B3B65EF}D:\xampp\apache\bin\httpd.exe] => (Allow) D:\xampp\apache\bin\httpd.exe => Ning�n archivo
FirewallRules: [TCP Query User{3A079509-E4C9-488E-9E21-BA72A16F30E6}D:\xampp\mysql\bin\mysqld.exe] => (Block) D:\xampp\mysql\bin\mysqld.exe => Ning�n archivo
FirewallRules: [UDP Query User{B8E9A10F-3B85-4F90-AD1B-7F35E460A859}D:\xampp\mysql\bin\mysqld.exe] => (Block) D:\xampp\mysql\bin\mysqld.exe => Ning�n archivo
FirewallRules: [TCP Query User{A2241B62-A461-493B-813A-75F6279CD0A9}C:\app\user\product\11.2.0\dbhome_1\jdk\jre\bin\java.exe] => (Allow) C:\app\user\product\11.2.0\dbhome_1\jdk\jre\bin\java.exe => Ning�n archivo
FirewallRules: [UDP Query User{92596DC6-38D1-4542-8691-5F745CF68FE7}C:\app\user\product\11.2.0\dbhome_1\jdk\jre\bin\java.exe] => (Allow) C:\app\user\product\11.2.0\dbhome_1\jdk\jre\bin\java.exe => Ning�n archivo
FirewallRules: [TCP Query User{28A5674D-7327-4F45-A38B-801D7DEAF988}D:\starcraft ii\versions\base75800\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base75800\sc2_x64.exe => Ning�n archivo
FirewallRules: [UDP Query User{5760D307-6C74-4D5C-A41F-66111657EF53}D:\starcraft ii\versions\base75800\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base75800\sc2_x64.exe => Ning�n archivo
FirewallRules: [TCP Query User{03A9B72E-D6CF-413F-87BA-B2C018C8C225}D:\starcraft ii\versions\base76114\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base76114\sc2_x64.exe => Ning�n archivo
FirewallRules: [UDP Query User{A2B28889-7AED-4A09-800D-F3F52DFCAF59}D:\starcraft ii\versions\base76114\sc2_x64.exe] => (Block) D:\starcraft ii\versions\base76114\sc2_x64.exe => Ning�n archivo
FirewallRules: [TCP Query User{79C1389F-C9C1-46FE-B822-C988312D14E3}D:\unity\unity hub\unity hub.exe] => (Allow) D:\unity\unity hub\unity hub.exe => Ning�n archivo
FirewallRules: [UDP Query User{2AB8D3A2-5DD7-41F7-B874-32F3A16131F3}D:\unity\unity hub\unity hub.exe] => (Allow) D:\unity\unity hub\unity hub.exe => Ning�n archivo
FirewallRules: [TCP Query User{D09B0C9A-6B29-4106-8A8B-1B5B4980D9A1}D:\starcraft ii\versions\base76811\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base76811\sc2_x64.exe => Ning�n archivo
FirewallRules: [UDP Query User{41F9CDBA-5AB0-4F62-9914-D2C6E74540B3}D:\starcraft ii\versions\base76811\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base76811\sc2_x64.exe => Ning�n archivo
FirewallRules: [TCP Query User{006347D1-DBE8-4E48-AF57-FA7988D8265E}D:\cisco packet tracer 7.2.2\bin\packettracer7.exe] => (Allow) D:\cisco packet tracer 7.2.2\bin\packettracer7.exe => Ning�n archivo
FirewallRules: [UDP Query User{55CE19A7-9CC1-4514-B1D0-F5912870C4FF}D:\cisco packet tracer 7.2.2\bin\packettracer7.exe] => (Allow) D:\cisco packet tracer 7.2.2\bin\packettracer7.exe => Ning�n archivo
FirewallRules: [TCP Query User{E00F7D4B-96A4-4CFF-9FA3-A12C9B767C14}D:\starcraft ii\versions\base77379\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base77379\sc2_x64.exe => Ning�n archivo
FirewallRules: [UDP Query User{C6F7E4EF-7E1F-4109-AD7A-612F3DD953D3}D:\starcraft ii\versions\base77379\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base77379\sc2_x64.exe => Ning�n archivo
FirewallRules: [TCP Query User{3B71F47D-4EC0-4FE1-88D9-C882048DB7EE}D:\starcraft ii\versions\base77535\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base77535\sc2_x64.exe => Ning�n archivo
FirewallRules: [UDP Query User{CAFDE68B-4191-4117-887E-33333274091B}D:\starcraft ii\versions\base77535\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base77535\sc2_x64.exe => Ning�n archivo
FirewallRules: [TCP Query User{531566E1-4670-4A81-B1CD-A43679926DC4}C:\warcraft iii beta\x86_64\warcraft iii.exe] => (Allow) C:\warcraft iii beta\x86_64\warcraft iii.exe => Ning�n archivo
FirewallRules: [UDP Query User{90EF4001-C98B-45BB-967E-10486FFE86FA}C:\warcraft iii beta\x86_64\warcraft iii.exe] => (Allow) C:\warcraft iii beta\x86_64\warcraft iii.exe => Ning�n archivo
FirewallRules: [TCP Query User{E3FEBFEC-441F-4CF0-BC27-6AD3836A7FB1}D:\starcraft ii\versions\base77661\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base77661\sc2_x64.exe => Ning�n archivo
FirewallRules: [UDP Query User{2A8CE334-E173-4817-9C5A-45F6AC0A8234}D:\starcraft ii\versions\base77661\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base77661\sc2_x64.exe => Ning�n archivo
FirewallRules: [TCP Query User{3D968BBB-6782-4FC9-A303-FF08838580D7}D:\fallout\fallout 4\fallout4.exe] => (Block) D:\fallout\fallout 4\fallout4.exe => Ning�n archivo
FirewallRules: [UDP Query User{B0722F0E-B964-466E-B662-1B5E653DA590}D:\fallout\fallout 4\fallout4.exe] => (Block) D:\fallout\fallout 4\fallout4.exe => Ning�n archivo
FirewallRules: [TCP Query User{41DA7356-0A07-4969-8B80-2806CA153BBA}D:\warcraft\warcraft 3 + frozen throne\x86_64\warcraft iii.exe] => (Allow) D:\warcraft\warcraft 3 + frozen throne\x86_64\warcraft iii.exe => Ning�n archivo
FirewallRules: [UDP Query User{8AB51445-A7D6-439D-B25A-A39A90E1333C}D:\warcraft\warcraft 3 + frozen throne\x86_64\warcraft iii.exe] => (Allow) D:\warcraft\warcraft 3 + frozen throne\x86_64\warcraft iii.exe => Ning�n archivo
FirewallRules: [TCP Query User{F8A80B44-2C55-4D28-8E91-84B65994CA76}D:\the witcher 3\the witcher 2 enhanced edition\bin\witcher2.exe] => (Block) D:\the witcher 3\the witcher 2 enhanced edition\bin\witcher2.exe => Ning�n archivo
FirewallRules: [UDP Query User{B77C8A74-886D-4344-BDA8-0E3F0BA163FC}D:\the witcher 3\the witcher 2 enhanced edition\bin\witcher2.exe] => (Block) D:\the witcher 3\the witcher 2 enhanced edition\bin\witcher2.exe => Ning�n archivo

CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:
END
*****************

Procesos cerrados correctamente.
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => eliminado correctamente
HKLM\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96} => eliminado correctamente
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96} => eliminado correctamente
HKLM\SOFTWARE\Policies\Mozilla => eliminado correctamente
HKLM\SOFTWARE\Policies\Google => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{116323FF-2EE2-4A33-9932-5BA3143D02F4}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{116323FF-2EE2-4A33-9932-5BA3143D02F4}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{17E24548-4AC6-4245-A880-18F6882C0440}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1D9CCD76-92F9-4FA6-A83F-0F148F5C9285}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1D9CCD76-92F9-4FA6-A83F-0F148F5C9285}" => eliminado correctamente
C:\Windows\System32\Tasks\{7FBD0E2F-A226-4928-8552-0C121886BA46} => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{7FBD0E2F-A226-4928-8552-0C121886BA46}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{30D67F0E-390C-4039-AB5C-83DE0C718184}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{30D67F0E-390C-4039-AB5C-83DE0C718184}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{96E7149D-A174-4A0C-BA9E-74B8C9180FD2}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7E2E5DC8-3643-4F8F-94CF-D4FA198A16C4}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7E2E5DC8-3643-4F8F-94CF-D4FA198A16C4}" => eliminado correctamente
C:\Windows\System32\Tasks\{EFF8CBDC-EBA6-42B5-B86A-9DAD403631AB} => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{EFF8CBDC-EBA6-42B5-B86A-9DAD403631AB}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BF5F64F6-9238-4B89-8344-5549DD06AFC9}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BF5F64F6-9238-4B89-8344-5549DD06AFC9}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{2CD6C93C-36B7-484D-83FC-B93AEE2427D5}" => eliminado correctamente
HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE => eliminado correctamente
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki => eliminado correctamente
HKLM\System\CurrentControlSet\Services\WsAppService => eliminado correctamente
WsAppService => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\ptun0901 => eliminado correctamente
ptun0901 => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\tap-tb-0901 => eliminado correctamente
tap-tb-0901 => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\tap0901 => eliminado correctamente
tap0901 => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\tapprotonvpn => eliminado correctamente
tapprotonvpn => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\tapwindscribe0901 => eliminado correctamente
tapwindscribe0901 => servicio eliminado correctamente
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive1 => eliminado correctamente
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive2 => eliminado correctamente
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\TextAloud => eliminado correctamente
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR => eliminado correctamente
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\RecuvaShellExt] -> [CC]{435E5DF5-2510-463C-B223-BDA47006D002} => -> Ning�n archivo ContextMenuHandlers5: [ACE] -> -{5E2121EE-0300-11D4-8D3B-444553540000} => -> Ning�n archivo ContextMenuHandlers5: [DreamScene => no encontrado
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxDTCM => eliminado correctamente
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxOSP => eliminado correctamente
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\RecuvaShellExt => eliminado correctamente
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR => eliminado correctamente
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 => eliminado correctamente
CommandLineEventConsumer.Name=�BVTConsumer�",Filter="__EventFilter.Name=�BVTFilter� => Error al eliminar producto. ErrorCode: -2147217375
BVTFilter => Error al eliminar producto. ErrorCode: -2147217375
"BVTConsumer" => eliminado correctamente
HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SoftEther VPN Client Manager Startup.lnk => eliminado correctamente
C:\Windows\pss\SoftEther VPN Client Manager Startup.lnk.CommonStartup => movido correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{3E7622B3-BDDB-433D-9B84-ACF049CA50ED}F:\lol\warcraft iii\war3.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{1090D7E6-9B54-4450-AD35-5082ED8339AF}F:\lol\warcraft iii\war3.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{AFEFF4A0-BC98-40CD-936D-9E689AA86211}C:\program files (x86)\windscribe\wsappcontrol.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{F7E8F81B-F6C2-4E43-9991-BF85139348F7}C:\program files (x86)\windscribe\wsappcontrol.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{BE149088-7B15-40C1-9BFF-2C713D3C3664}C:\program files (x86)\windscribe\wsappcontrol.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{D6471DC8-297F-4DD4-887F-1443618304AF}C:\program files (x86)\windscribe\wsappcontrol.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{48028065-34AD-4F7E-8CC8-6C9EA09B2859}C:\program files\amd\cnext\cnext\radeonsettings.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{AE1AE471-7FE6-419E-8B0C-986779161D39}C:\program files\amd\cnext\cnext\radeonsettings.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{F909E756-2C7A-4529-B244-8D0EBFEC4927}C:\program files\amd\cnext\cnext\radeonsettings.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{C98D07F5-6489-46A3-B78D-503AFC71520C}C:\program files\amd\cnext\cnext\radeonsettings.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{48876052-EC8B-4EB4-B7E5-14A2C7B55E94}D:\starcraft ii\versions\base72282\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{1E9D31E7-C397-4401-AC58-50EC5C78E1FF}D:\starcraft ii\versions\base72282\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{2841B11E-23D3-4C34-B45E-A709E972FBA2}D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{5CE4371C-08EA-4666-A5E8-A94E53DB2029}D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{880D4B9E-8F54-4E2F-8503-5784353E8041}D:\starcraft ii\versions\base73286\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{E54C7898-75D1-4530-A335-C15D7FD45DA0}D:\starcraft ii\versions\base73286\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{2ABE4F8E-02D3-4D77-A786-EB64E53B25F4}D:\starcraft ii\versions\base73620\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{2A68B56A-F2A4-494D-9490-4A2A763141D6}D:\starcraft ii\versions\base73620\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{729405C1-3038-407F-BB6E-3A9CDDA58229}D:\starcraft ii\versions\base74071\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{73560ED2-4900-486F-B2E6-EC54F2118103}D:\starcraft ii\versions\base74071\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{74EA620B-99CB-48D4-AB99-F248E097D149}D:\cisco packet tracer 7.2.1\bin\packettracer7.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{D6B5E30E-C6FB-45C0-AAED-D42E79CF3698}D:\cisco packet tracer 7.2.1\bin\packettracer7.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{328AC758-FAAB-42F0-BA0C-5FE01FB4DDB1}D:\starcraft ii\versions\base74456\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{8966E0DB-0B97-4298-94B7-60423524BDFD}D:\starcraft ii\versions\base74456\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{BC17F88F-EDA7-4D67-9117-35C2BCE710D1}D:\starcraft ii\versions\base74741\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{C44D8AB0-79F7-4DFD-A0A7-2B36B2D9879A}D:\starcraft ii\versions\base74741\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{3F85F483-D9AE-4399-8FFE-438E2F45986D}D:\xampp\apache\bin\httpd.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{E9BDAEC3-2942-42FD-9C43-72C65B3B65EF}D:\xampp\apache\bin\httpd.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{3A079509-E4C9-488E-9E21-BA72A16F30E6}D:\xampp\mysql\bin\mysqld.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{B8E9A10F-3B85-4F90-AD1B-7F35E460A859}D:\xampp\mysql\bin\mysqld.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{A2241B62-A461-493B-813A-75F6279CD0A9}C:\app\user\product\11.2.0\dbhome_1\jdk\jre\bin\java.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{92596DC6-38D1-4542-8691-5F745CF68FE7}C:\app\user\product\11.2.0\dbhome_1\jdk\jre\bin\java.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{28A5674D-7327-4F45-A38B-801D7DEAF988}D:\starcraft ii\versions\base75800\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{5760D307-6C74-4D5C-A41F-66111657EF53}D:\starcraft ii\versions\base75800\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{03A9B72E-D6CF-413F-87BA-B2C018C8C225}D:\starcraft ii\versions\base76114\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A2B28889-7AED-4A09-800D-F3F52DFCAF59}D:\starcraft ii\versions\base76114\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{79C1389F-C9C1-46FE-B822-C988312D14E3}D:\unity\unity hub\unity hub.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{2AB8D3A2-5DD7-41F7-B874-32F3A16131F3}D:\unity\unity hub\unity hub.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D09B0C9A-6B29-4106-8A8B-1B5B4980D9A1}D:\starcraft ii\versions\base76811\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{41F9CDBA-5AB0-4F62-9914-D2C6E74540B3}D:\starcraft ii\versions\base76811\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{006347D1-DBE8-4E48-AF57-FA7988D8265E}D:\cisco packet tracer 7.2.2\bin\packettracer7.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{55CE19A7-9CC1-4514-B1D0-F5912870C4FF}D:\cisco packet tracer 7.2.2\bin\packettracer7.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{E00F7D4B-96A4-4CFF-9FA3-A12C9B767C14}D:\starcraft ii\versions\base77379\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{C6F7E4EF-7E1F-4109-AD7A-612F3DD953D3}D:\starcraft ii\versions\base77379\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{3B71F47D-4EC0-4FE1-88D9-C882048DB7EE}D:\starcraft ii\versions\base77535\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{CAFDE68B-4191-4117-887E-33333274091B}D:\starcraft ii\versions\base77535\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{531566E1-4670-4A81-B1CD-A43679926DC4}C:\warcraft iii beta\x86_64\warcraft iii.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{90EF4001-C98B-45BB-967E-10486FFE86FA}C:\warcraft iii beta\x86_64\warcraft iii.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{E3FEBFEC-441F-4CF0-BC27-6AD3836A7FB1}D:\starcraft ii\versions\base77661\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{2A8CE334-E173-4817-9C5A-45F6AC0A8234}D:\starcraft ii\versions\base77661\sc2_x64.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{3D968BBB-6782-4FC9-A303-FF08838580D7}D:\fallout\fallout 4\fallout4.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{B0722F0E-B964-466E-B662-1B5E653DA590}D:\fallout\fallout 4\fallout4.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{41DA7356-0A07-4969-8B80-2806CA153BBA}D:\warcraft\warcraft 3 + frozen throne\x86_64\warcraft iii.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{8AB51445-A7D6-439D-B25A-A39A90E1333C}D:\warcraft\warcraft 3 + frozen throne\x86_64\warcraft iii.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{F8A80B44-2C55-4D28-8E91-84B65994CA76}D:\the witcher 3\the witcher 2 enhanced edition\bin\witcher2.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{B77C8A74-886D-4344-BDA8-0E3F0BA163FC}D:\the witcher 3\the witcher 2 enhanced edition\bin\witcher2.exe" => eliminado correctamente

========= ipconfig /flushdns =========


Configuraci¢n IP de Windows

No se puede vaciar la cach‚ de resoluci¢n de DNS: Error de una funci¢n durante la ejecuci¢n.


========= Final de CMD: =========


========= ipconfig /renew =========


Configuraci¢n IP de Windows


========= Final de CMD: =========


========= bitsadmin /reset /allusers =========


BITSADMIN version 3.0 [ 7.5.7601 ]
BITS administration utility.
(C) Copyright 2000-2006 Microsoft Corp.

BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.

Unable to connect to BITS - 0x8007042c

========= Final de CMD: =========


========= netsh winsock reset =========


El cat logo Winsock se restableci¢ correctamente.
Debe reiniciar el equipo para completar el restablecimiento.


========= Final de CMD: =========


========= netsh advfirewall reset =========


Error al intentar ponerse en contacto con el servicio Firewall de Windows. Aseg£rese de que el servicio se est  ejecutando e intente la solicitud de nuevo.


========= Final de CMD: =========


========= netsh advfirewall set allprofiles state ON =========


Error al intentar ponerse en contacto con el servicio Firewall de Windows. Aseg£rese de que el servicio se est  ejecutando e intente la solicitud de nuevo.


========= Final de CMD: =========


========= netsh int ipv4 reset =========

No hay valores configurados por el usuario para restablecer.


========= Final de CMD: =========


========= netsh int ipv6 reset =========

No hay valores configurados por el usuario para restablecer.


========= Final de CMD: =========


========= RemoveProxy: =========

"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente
"HKU\S-1-5-21-2082071340-3476837701-2702432445-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\S-1-5-21-2082071340-3476837701-2702432445-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente


========= Final de RemoveProxy: =========

C:\Windows\System32\Drivers\etc\hosts => movido correctamente
Hosts restaurado correctamente.

=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 10540043 B
Java, Flash, Steam htmlcache => 54181604 B
Windows/system/drivers => 257 B
Edge => 0 B
Chrome => 538402860 B
Firefox => 16192837 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 356946869 B
systemprofile32 => 356946997 B
LocalService => 356946997 B
NetworkService => 356946997 B
user => 415120907 B
usuario => 415441376 B
Invitado => 415441376 B

RecycleBin => 2013184 B
EmptyTemp: => 3.1 GB datos temporales eliminados.

================================


El sistema necesita reiniciarse.

==== Final de Fixlog 02:09:39 ====

El problema es el mismo , pregunte a soporte de rgc y me dijo que ese problema solo pasaba cuando habia un vpn activo , en su momento lo hubo y en su momento fue la solucion cerrarlo , no afecta mi juego ese problema ya que puedo salir de la sala asia pero se me hace raro que ocurra xD en fin , la molestia realmente grande es la de desconexiones continuas de internet :frowning: espero que esto lo solucione xD <3 ahi veo que pasa a partir d ahora gracias

Hola @Cristina_Mirina_Roma

Eliminamos todo resto de VPN que se veía en el reporte.

Prueba el equipo al menos 24 hs, reinicia un par de veces y tambien apaga y enciende el ordenador.

Luego vuelves y nos comentas como sigue.

Salu2