Hola amigos. Uno de mis pequeños ha hecho estragos con la máquina y la situación se ha tornado insostenible. Mi más reciente intento radicó en instalar MalwareBytes pero no lo puedo ejecutar.
Leyendo el foro me adelanté lo que pude así que dejo logs de FRST
Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 08-03-2020
Ejecutado por Usuario (administrador) sobre DELL-VOSTRO (Dell Inc. Vostro 270) (12-03-2020 01:47:47)
Ejecutado desde C:\Users\Usuario\Desktop
Perfiles cargados: Usuario (Perfiles disponibles: Usuario & Nico)
Platform: Windows 7 Professional Service Pack 1 (X64) Idioma: Español (España, internacional)
Internet Explorer Versión 11 (Navegador predeterminado: Chrome)
Modo de Inicio: Normal
Tutorial para Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Procesos (Lista blanca) =================
(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Cisco WebEx LLC -> Cisco WebEx LLC) C:\Program Files (x86)\Webex\Webex\Applications\PTIM.exe
(Cisco WebEx LLC -> Cisco WebEx LLC) C:\Program Files (x86)\Webex\Webex\Applications\ptSrv.exe
(Dell Inc -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe
(Dell Inc. -> Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(Dell Technologies Inc. -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe
(Dell Technologies Inc. -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe
(Dell Technologies Inc. -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
(Dell Technologies Inc. -> Dell Inc.) C:\Program Files\Dell\DellDataVault\nvapiw.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hi-Rez Studios) [Archivo no firmado] C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) Corporation) [Archivo no firmado] C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Logitech Inc -> Logitech) C:\Program Files\Logitech\Collaboration\Services\Video\ServiceLayer.exe
(Malwarebytes Inc -> Malwarebytes) [Archivo no firmado] C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(PC-Doctor, Inc. -> PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7106.1357\DSAPI.exe
(Qualcomm Atheros -> Atheros) [Archivo no firmado] C:\Program Files (x86)\Dell Wireless\Ath_WlanAgent.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
==================== Registro (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [277664 2020-03-08] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601424 2018-10-06] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [PTIM.exe] => C:\Program Files (x86)\Webex\Webex\Applications\PTIM.exe [980536 2019-03-14] (Cisco WebEx LLC -> Cisco WebEx LLC)
HKLM\ DisallowedCertificates: 0A0CF21F2AD2796FCC1309F2993659FC9F4BBFB9 (U)
HKLM\ DisallowedCertificates: 1518752920E9221E1FE1728AACAC536728B37BA7 (Trend Micro) <==== ATENCIÓN
HKLM\ DisallowedCertificates: 1B581436B0ED7536755B8B1C81112509A5AAF6ED (Panda Security S.L) <==== ATENCIÓN
HKLM\ DisallowedCertificates: 2026D13756EB0DB753DF26CB3B7EEBE3E70BB2CF (G DATA Software AG) <==== ATENCIÓN
HKLM\ DisallowedCertificates: 31AC96A6C17C425222C46D55C3CCA6BA12E54DAF (Symantec Corporation) <==== ATENCIÓN
HKLM\ DisallowedCertificates: 328E73F58737F1AB8DB0DA98FECFA17EB7BFAA40 (U)
HKLM\ DisallowedCertificates: 3C92C9274AB6D3DD520B13029A2490C4A1D98BC0 (Kaspersky Lab) <==== ATENCIÓN
HKLM\ DisallowedCertificates: 4E393AA1586C93E0BC9E7FEBCF7BFB62066DC22A (U)
HKLM\ DisallowedCertificates: 4E564B9FBCE8F496FFF51278CCD14EE17F09A1CE (U)
HKLM\ DisallowedCertificates: 58939B78BC28EF464220127BB754E3D130306988 (U)
HKLM\ DisallowedCertificates: 5AACB6A43D9D806E6963937BE702B7A43C1978AE (U)
HKLM\ DisallowedCertificates: 5DE56B2BAAA995F447949B869356528F91230A49 (U)
HKLM\ DisallowedCertificates: 7450C07722C75E711EF24209A22F0C5C6A5BEC4E (U)
HKLM\ DisallowedCertificates: 775B373B33B9D15B58BC02B184704332B97C3CAF (McAfee) <==== ATENCIÓN
HKLM\ DisallowedCertificates: 78C55D604474B534EB2B565CAD312FC7D71FE9DE (U)
HKLM\ DisallowedCertificates: 816BE9397F66D1A26EFA04035BCA3BB9E3779740 (U)
HKLM\ DisallowedCertificates: 8887AF2636E0D3B763AC4D56729218AF89653CA4 (U)
HKLM\ DisallowedCertificates: 88AD5DFE24126872B33175D1778687B642323ACF (McAfee) <==== ATENCIÓN
HKLM\ DisallowedCertificates: 8B6DD299C6E4092040E98EB773F3818DF50B038D (U)
HKLM\ DisallowedCertificates: 8DC9FE53D5F1D7D558EBE131E922730780D88865 (U)
HKLM\ DisallowedCertificates: 9A32249E9A6B9CF5C36B0749C81613524D37C594 (Safer Networking Ltd.) <==== ATENCIÓN
HKLM\ DisallowedCertificates: A5341949ABE1407DD7BF7DFE75460D9608FBC309 (BullGuard Ltd) <==== ATENCIÓN
HKLM\ DisallowedCertificates: AA8399A239AE1785200917D32C21F6B662477BE4 (U)
HKLM\ DisallowedCertificates: AEEA60E86C66327BFBB8492C33122687AB2B5D91 (U)
HKLM\ DisallowedCertificates: B7E607E1FB8943C634580F621788C01C962E8280 (U)
HKLM\ DisallowedCertificates: BDEEFEC5F002E281B2292A8C72EACA468CBF9952 (U)
HKLM\ DisallowedCertificates: BE894F99B870DA5FCA623F7F4A85D3970A46CDE1 (U)
HKLM\ DisallowedCertificates: BF9254919794C1075EA027889C5D304F1121C653 (Kaspersky Lab) <==== ATENCIÓN
HKLM\ DisallowedCertificates: D70D7D00CA12E1B3E20F3BF7534DEB2C2E7C2404 (U)
HKLM\ DisallowedCertificates: DBFAD9D59A6A07DCEB004DBE2DC246B547249E86 (Malwarebytes Corporation) <==== ATENCIÓN
HKLM\ DisallowedCertificates: E27AA5FFDCA62A60E435292A243D0C6D43DCC513 (U)
HKLM\ DisallowedCertificates: E4A0C1054F8025DD88EE5053094A9A61661AE123 (U)
HKLM\ DisallowedCertificates: F83099622B4A9F72CB5081F742164AD1B8D048C9 (ESET) <==== ATENCIÓN
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restricción <==== ATENCIÓN
HKU\S-1-5-21-3262702676-2008184811-2743962151-1000\...\Run: [QMxNetworkSync] => C:\Program Files\Common Files\MAGIX Services\QMxNetworkSync\QMxNetworkSync.exe
HKU\S-1-5-21-3262702676-2008184811-2743962151-1000\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize
HKU\S-1-5-21-3262702676-2008184811-2743962151-1000\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-3262702676-2008184811-2743962151-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-3262702676-2008184811-2743962151-1000\...\CurrentVersion\Windows: [Run] c:\Systemsolumsnformation\rungame.exe <==== ATENCIÓN
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.108\Installer\chrmstp.exe [2019-11-20] (Google LLC -> Google LLC)
AppInit_DLLs: C:\ProgramData\Voyasollam\Inch-Ing.dll => Ningún archivo
GroupPolicy: Restricción - Chrome <==== ATENCIÓN
GroupPolicy\User: Restricción ? <==== ATENCIÓN
GroupPolicyUsers\S-1-5-21-3262702676-2008184811-2743962151-1005\User: Restricción <==== ATENCIÓN
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN
CHR HKLM\SOFTWARE\Policies\Google: Restricción <==== ATENCIÓN
==================== Tareas programadas (Lista blanca) ============
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
Task: {02D0BB4D-0E27-432D-99D5-24729F5D2E02} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [657856 2018-01-03] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {0E48453D-4B9B-4FC5-AB49-B4B8AB9B7010} - System32\Tasks\Tasker21 => C:\Users\Usuario\AppData\Roaming\Lib\tskschd.exe [1043968 2018-07-23] () [Archivo no firmado]
Task: {1226981B-111F-4430-8C59-3F382C1CF52A} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistInstaller.exe [1519064 2020-01-14] (Dell Inc. -> Dell Inc.)
Task: {1693CBB7-D29F-4FCC-9B3C-5C0EDD167980} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3894664 2020-03-08] (Avast Software s.r.o. -> AVAST Software)
Task: {3CDB8657-87A0-4653-BE16-97771A631488} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_293_Plugin.exe [1457720 2019-12-10] (Adobe Inc. -> Adobe)
Task: {424C4586-CCC0-4FF1-8F62-917768FE1A7B} - System32\Tasks\AdvancedUpdater => C:\Program Files (x86)\AdvancedWindowsManager\Windows Installer\Windows Updater.exe [895112 2020-02-21] (MICROLEAVES LTD -> AdvancedWindowsManager)
Task: {42613655-EDBD-48AE-BDF5-0C3B51E34B0A} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [1864640 2018-01-03] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {49252CFE-D7F9-43CE-BA5B-FE438E491689} - System32\Tasks\{CCD454BD-8E6E-41F1-908C-C5D650548A25} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Common Files\Round-Com\uninstall.exe" -c shuz -f "C:\Program Files (x86)\Common Files\Round-Com\uninstall.dat" -a uninstallme 39027D82-4918-45BA-B13D-19258A374E62 DeviceId=a3d12f96-7989-421f-c5bb-d9e4e7421098 BarcodeId=51557004 ChannelId=4 DistributerName=APSFWemonetize
Task: {49DD752A-ED21-4936-9158-BC3888A623D5} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {59D65E5A-F24F-484E-A772-5AFD54324711} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {69252A98-2C83-4B5C-9C22-C7483D3F0454} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {6D8AEAAF-45E7-4A07-9309-BFC26A892F52} - System32\Tasks\MAGIX PC Check & Tuning 2019 => C:\Program Files (x86)\MAGIX\MAGIX PC Check & Tuning 2019\PCCT.exe [2467912 2018-06-01] (MAGIX Software GmbH -> MAGIX Software GmbH)
Task: {708A9341-8367-4E20-8117-97CFF448CE10} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-12-10] (Adobe Inc. -> Adobe)
Task: {759E41D6-CB6B-4C40-BCD9-704B3A72E018} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1660520 2020-02-27] (Avast Software s.r.o. -> Avast Software)
Task: {8752A25E-CC84-4ED5-92DB-8884D095BA28} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [745920 2018-01-03] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {9B25197F-A42A-4FAA-94E5-AA4514BF0AA2} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [745920 2018-01-03] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B145DDBE-734D-4486-8555-98DD94255523} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [964544 2018-01-03] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B60CA6CD-4B91-4A70-86CB-7CB7210C8EB5} - System32\Tasks\Autoupdate => C:\Users\Usuario\AppData\Roaming\Lib\autoupdate.exe [1043968 2018-07-23] () [Archivo no firmado]
Task: {CB38A584-9CA6-4722-A163-BD5390BBD8C6} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [521152 2018-01-03] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {CE52C434-B381-4C56-BB6A-DA768F250B76} - System32\Tasks\Opera scheduled Autoupdate 1530899013 => C:\Users\Usuario\AppData\Local\Programs\Opera\launcher.exe
Task: {CFB60E38-2B0D-4A40-AF8D-52A1A9B5AE22} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2018-01-03] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D72954F3-07AF-4C77-8326-75DCFA6C7721} - System32\Tasks\GridinSoft Anti-Malware => C:\Program Files\GridinSoft Anti-Malware\gsam.exe [22378920 2020-03-02] (GridinSoft, LLC -> Gridinsoft LLC)
Task: {F42C73D7-872F-468F-BDD1-148FCBC690A4} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [657856 2018-01-03] (NVIDIA Corporation -> NVIDIA Corporation)
(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)
Task: C:\Windows\Tasks\MAGIX PC Check & Tuning 2019.job => C:\Program Files (x86)\MAGIX\MAGIX PC Check & Tuning 2019\PCCT.exe
==================== Internet (Lista blanca) ====================
(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{0969E554-C934-457F-9954-47ED61A5F671}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{28381E95-E6C6-409E-9CDF-00816982DE9A}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKU\S-1-5-21-3262702676-2008184811-2743962151-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRHOjYN9_5EdL7qPpMxlKFuSPkduL6o8RLUVK_hb3XaEqfy4JEcdCHaRW2YhHpqr1VR7_LStfkF20Jh48hdu8AfQw2Vt5pKMAXpFvcQFmGwXh6f2noZm6jUHjJDuj-CZeA-NLhogGXechkcK0cXi22BOssPwMAHou8ecxWOHb15cEBZfUy2umGT5c,&q={searchTerms}
HKU\S-1-5-21-3262702676-2008184811-2743962151-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://%66%65%65%64.%68%65%6C%70%65%72%62%61%72.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRHOjYN9_5EdL7qPpMxlKFuSPkduL6o8RLUVK_hb3XaEqfy4JEcdCHaRW2YhHpqr1VR7_LStfkF20Jh48hdu8AfQw2Vt5pKMAbrinxIpxvf9TZMuiB-oYBQkPYRjLEzPfMvUBGzaW93p8K_QNjAEDOSQCaENauJ2XxqMLN-ok9JqWBhOEgQcke88s,
SearchScopes: HKLM-x32 -> DefaultScope {ielnksrch} URL =
SearchScopes: HKLM-x32 -> ielnksrch URL = hxxps://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRHOjYN9_5EdL7qPpMxlKFuSPkduL6o8RLUVK_hb3XaEqfy4JEcdCHaRW2YhHpqr1VR7_LStfkF20Jh48hdu8AfQw2Vt5pKMAXpFvcQFmGwXh6f2noZm6jUHjJDuj-CZeA-NLhogGXechkcK0cXi22BOssPwMAHou8ecxWOHb15cEBZfUy2umGT5c,&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3262702676-2008184811-2743962151-1000 -> {BDF61FAE-9D19-40F0-8F34-688DEB334CA9} URL = hxxp://securedsearch.lavasoft.com/results.php?pr=vmn&id=webcompa&ent=ch_WCYID10420__181230&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3262702676-2008184811-2743962151-1000 -> {ielnksrch} URL = hxxps://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRHOjYN9_5EdL7qPpMxlKFuSPkduL6o8RLUVK_hb3XaEqfy4JEcdCHaRW2YhHpqr1VR7_LStfkF20Jh48hdu8AfQw2Vt5pKMAXpFvcQFmGwXh6f2noZm6jUHjJDuj-CZeA-NLhogGXechkcK0cXi22BOssPwMAHou8ecxWOHb15cEBZfUy2umGT5c,&q={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2019-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_191\bin\ssv.dll [2018-11-24] (Oracle America, Inc. -> Oracle Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_191\bin\jp2ssv.dll [2018-11-24] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2019-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: WebEx Productivity Tools -> {90E2BA2E-DD1B-4cde-9134-7A8B86D33CA7} -> C:\Program Files (x86)\Webex\Webex\Applications\ptonecli.dll [2019-03-14] (Cisco WebEx LLC -> Cisco WebEx LLC)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
Toolbar: HKLM-x32 - WebEx Productivity Tools - {90E2BA2E-DD1B-4cde-9134-7A8B86D33CA7} - C:\Program Files (x86)\Webex\Webex\Applications\ptonecli.dll [2019-03-14] (Cisco WebEx LLC -> Cisco WebEx LLC)
DPF: HKLM-x32 {E06E2E99-0AA1-11D4-ABA6-0060082AA75C}
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2018-03-14] (Microsoft Corporation -> Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
FireFox:
========
FF DefaultProfile: b9v9y4lq.default-1573492938078
FF ProfilePath: C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\b9v9y4lq.default-1573492938078 [2020-03-12]
FF Homepage: Mozilla\Firefox\Profiles\b9v9y4lq.default-1573492938078 -> hxxps://www.google.com/?bcutc=sp-006
FF NewTab: Mozilla\Firefox\Profiles\b9v9y4lq.default-1573492938078 -> about:newtab
FF Notifications: Mozilla\Firefox\Profiles\b9v9y4lq.default-1573492938078 -> hxxps://switch-xci.com; hxxps://www1.bethanyharrell.pro; hxxps://www.facebook.com; hxxps://linkvertise.com; hxxps://cutwin.com; hxxps://anonfile.com; hxxps://www1.sherwoodsutton.pro; hxxps://web.whatsapp.com; hxxps://twitter.com
FF Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\b9v9y4lq.default-1573492938078\Extensions\[email protected] [2019-02-19]
FF Extension: (Avast Online Security) - C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\b9v9y4lq.default-1573492938078\Extensions\[email protected] [2018-07-13]
FF Extension: (Fortnite Stats) - C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\b9v9y4lq.default-1573492938078\Extensions\{23836774-0924-4977-8f2d-43c223f18533}.xpi [2020-03-06]
FF SearchPlugin: C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\b9v9y4lq.default-1573492938078\searchplugins\google-avast.xml [2019-12-10]
FF Extension: (Sin Nombre) - C:\Program Files\Mozilla Firefox\browser\features\{A5FD4672-4D73-4F90-A1C0-2ABD39DB2565}.xpi [2018-09-16] [no firmado]
FF Extension: (Cisco WebEx Extension) - C:\Program Files\Mozilla Firefox\distribution\extensions\[email protected] [2019-03-14]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_293.dll [2019-12-10] (Adobe Inc. -> )
FF Plugin: @java.com/DTPlugin,version=11.191.2 -> C:\Program Files\Java\jre1.8.0_191\bin\dtplugin\npDeployJava1.dll [2018-11-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.191.2 -> C:\Program Files\Java\jre1.8.0_191\bin\plugin2\npjp2.dll [2018-11-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [Ningún archivo]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @unity3d.com/UnityPlayer64,version=1.0 -> C:\Program Files\Unity\WebPlayer64\loader-x64\npUnity3D64.dll [2015-06-08] (Unity Technologies ApS -> Unity Technologies ApS)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_293.dll [2019-12-10] (Adobe Inc. -> )
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-01-17] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-01-17] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-01-17] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-01-17] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-05-13] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-05-13] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Ningún archivo]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-01-19] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-11-14] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [Archivo no firmado]
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-11-14] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [Archivo no firmado]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-04] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-04] (Google Inc -> Google LLC)
FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin-x32: @webex.com/npatgpc -> C:\Program Files (x86)\Webex\npatgpc.dll [2019-03-14] (Cisco WebEx LLC -> Cisco WebEx LLC)
FF Plugin HKU\S-1-5-21-3262702676-2008184811-2743962151-1000: @zoom.us/ZoomVideoPlugin -> C:\Users\Usuario\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2019-08-22] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Users\Usuario\AppData\Roaming\mozilla\plugins\npatgpc.dll [2019-03-18]
Chrome:
=======
CHR DefaultProfile: Profile 1
CHR Profile: C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default [2019-12-01]
CHR HomePage: Default -> hxxp://www.google.com.uy/
CHR StartupUrls: Default -> "hxxp://www.google.com.uy/"
CHR Extension: (Presentaciones) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-01-24]
CHR Extension: (Documentos) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-01-24]
CHR Extension: (Google Drive) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-01-24]
CHR Extension: (YouTube) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-01-24]
CHR Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2019-02-04]
CHR Extension: (Hojas de cálculo) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-01-24]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-09-06]
CHR Extension: (book_helper) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnigmaekijecandkailhnklknockjdpd [2019-12-01]
CHR Extension: (Cisco Webex Extension) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlhmfgmfgeifomenelglieieghnjghma [2019-03-18]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-16]
CHR Extension: (Gmail) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-19]
CHR Extension: (Chrome Media Router) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-05-19]
CHR Profile: C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Guest Profile [2019-12-01]
CHR Extension: (book_helper) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Guest Profile\Extensions\hnigmaekijecandkailhnklknockjdpd [2019-12-01]
CHR Profile: C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 1 [2020-03-12]
CHR StartupUrls: Profile 1 -> "hxxps://www.google.com/"
CHR Extension: (Presentaciones) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-03-24]
CHR Extension: (Documentos) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2019-03-24]
CHR Extension: (Google Drive) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-03-24]
CHR Extension: (YouTube) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-03-24]
CHR Extension: (Hojas de cálculo) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-03-24]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-02-01]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-06]
CHR Extension: (Gmail) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-29]
CHR Extension: (Chrome Media Router) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-12-21]
CHR Profile: C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2 [2019-12-09]
CHR StartupUrls: Profile 2 -> "hxxps://www.google.com/"
CHR DefaultSearchURL: Profile 2 -> hxxps://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRHOjYN9_5EdL7qPpMxlKFuSPkduL6o8RLUVK_hb3XaEqfy4JEcdCHaRW2YhHpqr1VR7_LStfkF20Jh48hdu8AfQw2Vt5pKMAXs-CyrdGvJHv9HLSd8Mlj7ELKjGSCkpkK0gWTH2hnlUrDrbB45X91SpleWmcKJYycateuNudlI8RM0UvhL5eq-mI,&q={searchTerms}
CHR DefaultSearchKeyword: Profile 2 -> feed.sonic-search.com
CHR Extension: (Presentaciones) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-03-24]
CHR Extension: (Documentos) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2019-03-24]
CHR Extension: (Google Drive) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-03-24]
CHR Extension: (YouTube) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-03-24]
CHR Extension: (Hojas de cálculo) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-03-24]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-03-25]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-03-24]
CHR Extension: (Gmail) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-11]
CHR Extension: (Chrome Media Router) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-10-16]
CHR Profile: C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 3 [2019-12-05]
CHR HomePage: Profile 3 -> hxxp://homepage-web.com/?s=acer&m=home
CHR StartupUrls: Profile 3 -> "hxxp://isearch.omiga-plus.com/?type=hp&ts=1423034471&from=obw&uid=ST500DM002-1BD142_Z2AVEALMXXXXZ2AVEALM","hxxps://www.google.com.uy/","hxxp://www.ceibal.edu.uy/","hxxp://ceibal.edu.uy/","hxxps://www.ceibal.edu.uy/"
CHR DefaultSearchURL: Profile 3 -> hxxps://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRHOjYN9_5EdL7qPpMxlKFuSPkduL6o8RLUVK_hb3XaEqfy4JEcdCHaRW2YhHpqr1VR7_LStfkF20Jh48hdu8AfQw2Vt5pKMAXs-CyrdGvJHv9HLSd8Mlj7ELKjGSCkpkK0gWTH2hnlUrDrbB45X91SpleWmcKJYycateuNudlI8RM0UvhL5eq-mI,&q={searchTerms}
CHR DefaultSearchKeyword: Profile 3 -> feed.sonic-search.com
CHR Extension: (Presentaciones) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-04-01]
CHR Extension: (Documentos) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aohghmighlieiainnegkcijnfilokake [2019-04-01]
CHR Extension: (Google Drive) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-04-01]
CHR Extension: (Google Optimize) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\bhdplaindhdkiflmbfbciehdccfhegci [2019-11-16]
CHR Extension: (YouTube) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-04-01]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-11-04]
CHR Extension: (uBlock Origin) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2019-11-04]
CHR Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2019-11-29]
CHR Extension: (Hojas de cálculo) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-04-01]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-04-01]
CHR Extension: (Avast Online Security) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\gomekmidlodglbbmalcneegieacbdmki [2019-07-18]
CHR Extension: (book_helper) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\hnigmaekijecandkailhnklknockjdpd [2019-12-01]
CHR Extension: (Gatos Wallpapers HD Gatos New Tab) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nkbdeejidffdchjpmifgfgacikbacpge [2019-05-05]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (DOM Destroyer) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\npcfmcgpbcnkmfpjibbhmmpmknlobkpb [2019-06-17]
CHR Extension: (FromDocToPDF para Chrome) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pbneiecbhikjapoihjpemfmpaalkafkh [2019-10-16]
CHR Extension: (Gmail) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-01]
CHR Extension: (Chrome Media Router) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-12-03]
CHR Profile: C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 4 [2020-03-12]
CHR Notifications: Profile 4 -> hxxps://web.skype.com
CHR StartupUrls: Profile 4 -> "hxxp://www.google.com/"
CHR Extension: (Presentaciones) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-05-19]
CHR Extension: (Documentos) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\aohghmighlieiainnegkcijnfilokake [2019-05-19]
CHR Extension: (Google Drive) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-05-19]
CHR Extension: (YouTube) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-05-19]
CHR Extension: (Hojas de cálculo) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-05-19]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-02-29]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-05-19]
CHR Extension: (Gmail) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-19]
CHR Extension: (Chrome Media Router) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-03-08]
CHR Profile: C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\System Profile [2019-12-01]
CHR Extension: (book_helper) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\hnigmaekijecandkailhnklknockjdpd [2019-12-01]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]
Opera:
=======
OPR Extension: (Adblocker for Youtube™) - C:\Users\Usuario\AppData\Roaming\Opera Software\Opera Stable\Extensions\dljmpahjdmlcmopgciohdemghjmdfdbn [2018-09-16]
==================== Servicios (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
"okbyyvfn" => servicio fue desbloqueado. <==== ATENCIÓN
S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6046624 2020-03-08] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [413472 2020-03-08] (Avast Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8413472 2020-02-05] (BattlEye Innovations e.K. -> )
R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [244280 2020-01-14] (Dell Technologies Inc. -> Dell Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3339824 2020-01-14] (Dell Technologies Inc. -> Dell Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [271416 2020-01-14] (Dell Technologies Inc. -> Dell Inc.)
R2 Dell Hardware Support; C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7106.1357\DSAPI.exe [964592 2020-01-29] (PC-Doctor, Inc. -> PC-Doctor, Inc.)
R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [36032 2019-11-08] (Dell Inc -> )
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803440 2020-01-29] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
U2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2018-06-11] (Hi-Rez Studios) [Archivo no firmado]
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [330136 2015-08-27] (Intel Corporation - pGFX -> Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [732160 2012-12-10] (Intel(R) Corporation) [Archivo no firmado]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [803872 2012-12-10] (Intel® Trusted Connect Service -> Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [167736 2013-05-30] (Intel Corporation -> Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6933272 2020-03-12] (Malwarebytes Inc -> Malwarebytes) [Archivo no firmado]
S3 mracsvc; C:\Windows\System32\mracsvc.exe [10654992 2018-08-09] (Mail.Ru LLC -> LLC Mail.Ru)
R2 nebula; C:\Program Files\Logitech\Collaboration\Services\Video\ServiceLayer.exe [4477576 2018-06-18] (Logitech Inc -> Logitech)
S3 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2018-01-03] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2018-01-03] (NVIDIA Corporation -> NVIDIA Corporation)
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [50648 2020-01-14] (Dell Inc. -> Dell Inc.)
S3 WebexService; C:\Program Files (x86)\Webex\Webex\Applications\WebExService.exe [144440 2019-03-14] (Cisco WebEx LLC -> Cisco WebEx LLC)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Dell Wireless\Ath_WlanAgent.exe [81536 2012-10-25] (Qualcomm Atheros -> Atheros) [Archivo no firmado]
S3 BraveElevationService; "C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\71.0.58.16\elevation_service.exe" [X]
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
S2 okbyyvfn; C:\Windows\SysWOW64\okbyyvfn\keevgpgi.exe [X]
S2 Origin Web Helper Service; "C:\Program Files (x86)\Origin\OriginWebHelperService.exe" [X]
===================== Controladores (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
S3 aftap0901; C:\Windows\System32\DRIVERS\aftap0901.sys [48624 2018-03-06] (AnchorFree Inc -> The OpenVPN Project)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37864 2020-03-08] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [205576 2020-03-08] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [271120 2020-03-08] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [206608 2020-03-08] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [64272 2020-03-08] (Avast Software s.r.o. -> AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [279360 2020-03-08] (Avast Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42976 2020-03-08] (Avast Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [175400 2020-03-08] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [110560 2020-03-08] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [84056 2020-03-08] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [848672 2020-03-08] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [458584 2020-03-11] (Avast Software s.r.o. -> AVAST Software)
S2 aswStm; C:\Windows\System32\drivers\aswStm.sys [235184 2020-03-08] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [316256 2020-03-08] (Avast Software s.r.o. -> AVAST Software)
R3 athr; C:\Windows\System32\DRIVERS\athrx.sys [2811904 2012-10-23] (Microsoft Windows Hardware Compatibility Publisher -> Qualcomm Atheros Communications, Inc.)
R2 BlueStacksDrv; C:\Program Files\BlueStacks\BstkDrv_bgp.sys [315976 2020-02-04] (Bluestack Systems, Inc -> Bluestack System Inc. )
R3 DDDriver; C:\Windows\System32\drivers\DDDriver64Dcsa.sys [41608 2019-05-21] (Techporch Incorporated -> Dell Inc.)
S3 DellProf; C:\Windows\System32\drivers\DellProf.sys [41208 2019-05-21] (Techporch Incorporated -> Dell Computer Corporation)
S3 GridinSoftInetSecurityDriver; C:\Windows\System32\DRIVERS\gsInetSecurity.sys [107784 2020-01-16] (GridinSoft, LLC -> GridinSoft LLC)
S3 mracdrv; C:\Windows\System32\drivers\mracdrv.sys [9871128 2018-08-09] (Mail.Ru LLC -> LLC Mail.Ru)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2018-01-03] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50624 2018-01-03] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [57792 2018-01-03] (NVIDIA Corporation -> NVIDIA Corporation)
S3 TrojanKillerDriver; C:\Windows\System32\DRIVERS\gtkdrv.sys [38216 2020-01-16] (GridinSoft, LLC -> GridinSoft LLC)
S3 RtlWlanu; system32\DRIVERS\rtwlanu.sys [X]
==================== NetSvcs (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
==================== Un mes (creado) ===================
(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)
2020-03-12 01:47 - 2020-03-12 01:50 - 000047263 _____ C:\Users\Usuario\Desktop\FRST.txt
2020-03-12 01:47 - 2020-03-12 01:49 - 000000000 ____D C:\FRST
2020-03-12 01:46 - 2020-03-12 01:46 - 002279936 _____ (Farbar) C:\Users\Usuario\Desktop\FRST64.exe
2020-03-12 01:33 - 2020-03-12 01:33 - 000084649 _____ C:\Users\Usuario\Downloads\FRST.txt
2020-03-12 01:23 - 2020-03-12 01:23 - 001928352 _____ (Malwarebytes) C:\Users\Usuario\Downloads\MBSetup.exe
2020-03-12 01:20 - 2020-03-12 01:21 - 000002416 _____ C:\Users\Usuario\Desktop\Rkill.txt
2020-03-12 01:20 - 2020-03-12 01:20 - 001802704 _____ (Bleeping Computer, LLC) C:\Users\Usuario\Downloads\iExplore.exe
2020-03-12 01:04 - 2020-03-12 01:04 - 000001948 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2020-03-12 01:04 - 2020-03-12 01:04 - 000001948 _____ C:\ProgramData\Desktop\Malwarebytes.lnk
2020-03-12 01:04 - 2020-03-12 01:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2020-03-12 01:04 - 2020-03-12 01:03 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2020-03-12 01:03 - 2020-03-12 01:03 - 000000000 ____D C:\ProgramData\Malwarebytes
2020-03-12 01:03 - 2020-03-12 01:03 - 000000000 ____D C:\Program Files\Malwarebytes
2020-03-12 00:55 - 2020-03-12 00:55 - 001928352 _____ (Malwarebytes) C:\Users\Usuario\Downloads\MBSetup-0009996.0009996-consumer.exe
2020-03-12 00:32 - 2020-03-12 00:32 - 000003238 _____ C:\Windows\system32\Tasks\GridinSoft Anti-Malware
2020-03-12 00:32 - 2020-03-12 00:32 - 000000893 _____ C:\Users\Public\Desktop\GridinSoft Anti-Malware.lnk
2020-03-12 00:32 - 2020-03-12 00:32 - 000000893 _____ C:\ProgramData\Desktop\GridinSoft Anti-Malware.lnk
2020-03-12 00:32 - 2020-03-12 00:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GridinSoft Anti-Malware
2020-03-12 00:31 - 2020-03-12 00:32 - 000000000 ____D C:\Program Files\GridinSoft Anti-Malware
2020-03-12 00:31 - 2020-03-12 00:31 - 000000000 ____D C:\ProgramData\GridinSoft
2020-03-12 00:03 - 2020-03-12 00:03 - 000002003 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2020-03-12 00:03 - 2020-03-12 00:03 - 000002003 _____ C:\ProgramData\Desktop\Avast Free Antivirus.lnk
2020-03-11 04:58 - 2020-03-08 04:51 - 000368056 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2020-03-08 10:47 - 2020-03-08 10:47 - 000036964 _____ C:\Users\Usuario\Downloads\Documento sin título(8).pdf
2020-03-08 04:51 - 2020-03-08 04:51 - 000235184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2020-03-08 04:51 - 2020-03-08 04:51 - 000175400 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2020-03-07 20:40 - 2020-03-07 20:40 - 000296120 _____ C:\Windows\Minidump\030720-24507-01.dmp
2020-03-07 20:14 - 2020-03-07 20:14 - 000022240 _____ (EasyAntiCheat Oy) C:\Windows\system32\eac_usermode_1464241266525010.dll
2020-03-06 14:21 - 2020-03-06 14:21 - 000000000 ____D C:\Users\Usuario\AppData\Local\pokemon2
2020-03-06 13:52 - 2020-03-06 13:52 - 000000222 _____ C:\Users\Usuario\Desktop\Trove.url
2020-03-05 20:03 - 2020-03-05 20:03 - 000116892 _____ C:\Users\Usuario\Downloads\Documento sin título(7).pdf
2020-03-05 19:50 - 2020-03-05 19:50 - 000022115 _____ C:\Users\Usuario\Downloads\Tabla de horarios.pdf
2020-03-04 20:48 - 2020-03-04 20:48 - 000000000 ____D C:\Users\Usuario\AppData\Local\Darwin
2020-03-02 13:11 - 2020-03-02 13:11 - 000000000 ____D C:\Users\Usuario\AppData\Local\WB Games
2020-03-01 19:18 - 2020-03-01 19:24 - 1741824497 ____R C:\Users\Usuario\Downloads\Dragon.ball.super.broly.2018.1080p-dual-lat-cinecalidad.to.mp4
2020-03-01 11:56 - 2016-09-30 00:02 - 000000000 ____D C:\Users\Usuario\Desktop\YoutubersLife
2020-03-01 10:49 - 2020-03-01 10:49 - 000000000 ____D C:\Users\Usuario\AppData\LocalLow\U-Play online
2020-03-01 10:45 - 2020-03-01 10:45 - 000000000 ____D C:\Users\Usuario\Documents\U-Play online
2020-03-01 10:21 - 2020-03-01 10:21 - 001573568 _____ C:\Users\Usuario\Downloads\SteamSetup(2).exe
2020-02-28 16:17 - 2020-02-28 16:33 - 000000000 ____D C:\ProgramData\BadlionClient
2020-02-28 16:17 - 2020-02-28 16:17 - 000000000 ____D C:\Users\Usuario\AppData\Local\badlion-client-updater
2020-02-28 16:15 - 2020-03-07 09:50 - 000000000 ____D C:\Program Files\Badlion Client
2020-02-27 11:58 - 2020-02-27 11:58 - 000820111 _____ C:\Users\Usuario\Downloads\LabyMod3_Installer.jar
2020-02-25 21:06 - 2020-03-01 19:25 - 000000000 ____D C:\Users\Usuario\AppData\LocalLow\uTorrent
2020-02-25 21:06 - 2020-02-25 21:06 - 000000000 ____D C:\ProgramData\boost_interprocess
2020-02-24 13:22 - 2020-02-24 13:22 - 002031012 _____ C:\Users\Usuario\Downloads\OptiFine_1.8.0.jar
2020-02-23 14:38 - 2020-02-23 14:38 - 000000000 ____D C:\Users\Nico\AppData\Roaming\CC
2020-02-23 14:35 - 2020-02-23 14:35 - 000000000 ____D C:\Users\Nico\AppData\Local\UniSDK
2020-02-23 14:27 - 2020-02-23 14:27 - 000000222 _____ C:\Users\Nico\Desktop\CreativeDestruction.url
2020-02-22 18:46 - 2020-02-22 18:46 - 053662069 _____ C:\Users\Usuario\Downloads\PokeGalaxia V3.1.zip
2020-02-17 20:27 - 2020-02-17 20:27 - 000296104 _____ C:\Windows\Minidump\021720-24679-01.dmp
2020-02-17 19:30 - 2020-02-17 19:30 - 000022240 _____ (EasyAntiCheat Oy) C:\Windows\system32\eac_usermode_370055763445664.dll
2020-02-16 11:19 - 2020-02-16 11:19 - 000296120 _____ C:\Windows\Minidump\021620-24320-01.dmp
2020-02-15 16:10 - 2020-02-15 16:10 - 000000067 _____ C:\Users\Nico\Desktop\contra seba.txt
2020-02-12 18:05 - 2020-02-12 18:05 - 000000000 _____ C:\Users\Usuario\Downloads\creative-destruction-3-0-108.exe
2020-02-12 18:04 - 2020-02-12 18:06 - 021823177 _____ (My Company, Inc. ) C:\Users\Usuario\Downloads\creative-destruction-3-0-108.exe.part
2020-02-11 21:24 - 2020-02-11 21:24 - 003245600 _____ C:\Users\Nico\Downloads\AutoHotkey_1.1.32.00_setup.exe
==================== Un mes (modificado) ==================
(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)
2020-03-12 01:23 - 2019-01-17 09:16 - 000000000 ____D C:\Users\Usuario\AppData\Local\CrashDumps
2020-03-12 00:28 - 2019-12-01 07:36 - 000000000 ____D C:\Users\Usuario\AppData\Roaming\yjfzjgnn
2020-03-12 00:18 - 2018-01-24 23:15 - 000000000 ____D C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2020-03-12 00:17 - 2009-07-14 01:45 - 000035616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2020-03-12 00:17 - 2009-07-14 01:45 - 000035616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2020-03-12 00:15 - 2018-01-24 22:06 - 000000000 ____D C:\Program Files (x86)\Steam
2020-03-12 00:13 - 2019-01-16 04:55 - 000000000 ____D C:\ProgramData\NVIDIA
2020-03-12 00:08 - 2018-07-13 20:42 - 000000000 ____D C:\Users\Usuario\AppData\Local\AVAST Software
2020-03-12 00:06 - 2009-07-14 00:20 - 000000000 ____D C:\Windows\registration
2020-03-12 00:04 - 2018-01-24 10:39 - 000000000 __SHD C:\Users\Usuario\IntelGraphicsProfiles
2020-03-12 00:03 - 2018-02-23 19:29 - 000000000 ____D C:\Program Files (x86)\Hi-Rez Studios
2020-03-12 00:03 - 2009-07-14 02:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-03-12 00:00 - 2018-02-20 20:24 - 000000000 ____D C:\Users\Usuario\AppData\LocalLow\Mozilla
2020-03-11 23:59 - 2020-02-06 09:36 - 000003864 _____ C:\Windows\system32\Tasks\AdvancedUpdater
2020-03-11 23:59 - 2019-12-05 20:12 - 000003592 _____ C:\Windows\system32\Tasks\{CCD454BD-8E6E-41F1-908C-C5D650548A25}
2020-03-11 23:59 - 2019-02-17 21:26 - 000003242 _____ C:\Windows\system32\Tasks\Autoupdate
2020-03-11 23:59 - 2019-02-17 21:26 - 000003236 _____ C:\Windows\system32\Tasks\Tasker21
2020-03-11 23:59 - 2019-01-16 04:58 - 000004146 _____ C:\Windows\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-03-11 23:59 - 2019-01-16 04:58 - 000003814 _____ C:\Windows\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-03-11 23:59 - 2019-01-16 04:58 - 000003798 _____ C:\Windows\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-03-11 23:59 - 2019-01-16 04:57 - 000003738 _____ C:\Windows\system32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-03-11 23:59 - 2019-01-16 04:57 - 000003738 _____ C:\Windows\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-03-11 23:59 - 2019-01-16 04:57 - 000003730 _____ C:\Windows\system32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-03-11 23:59 - 2019-01-16 04:57 - 000003554 _____ C:\Windows\system32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-03-11 23:59 - 2019-01-16 04:57 - 000003494 _____ C:\Windows\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-03-11 23:59 - 2018-01-24 09:58 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2020-03-11 12:59 - 2018-01-24 09:58 - 000458584 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2020-03-11 12:06 - 2018-01-24 09:58 - 000004168 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2020-03-09 19:51 - 2019-10-20 11:58 - 000000000 ____D C:\Users\Usuario\AppData\Roaming\.minecraft
2020-03-08 04:51 - 2019-02-19 22:12 - 000279360 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
2020-03-08 04:51 - 2018-10-22 16:25 - 000042976 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2020-03-08 04:51 - 2018-01-24 09:58 - 000316256 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2020-03-08 04:51 - 2018-01-24 09:58 - 000110560 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2020-03-08 04:51 - 2018-01-24 09:58 - 000084056 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2020-03-08 04:50 - 2019-01-17 09:31 - 000271120 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2020-03-08 04:50 - 2019-01-17 08:59 - 000206608 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2020-03-08 04:50 - 2019-01-17 08:59 - 000064272 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2020-03-08 04:50 - 2019-01-17 08:59 - 000037864 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2020-03-08 04:50 - 2018-01-24 09:58 - 000848672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2020-03-08 04:50 - 2018-01-24 09:58 - 000205576 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2020-03-07 20:40 - 2018-07-12 21:09 - 000000000 ____D C:\Windows\Minidump
2020-03-07 09:53 - 2019-10-19 20:52 - 000000000 ____D C:\Program Files (x86)\Wizards of the Coast
2020-03-07 09:50 - 2019-08-31 15:51 - 000000000 ____D C:\Users\Usuario\Documents\Wondershare Filmora 9
2020-03-06 14:21 - 2018-02-23 15:59 - 000000000 ____D C:\Users\Usuario\AppData\Local\UnrealEngine
2020-03-04 20:48 - 2018-02-23 19:41 - 000000000 ____D C:\Users\Usuario\AppData\Roaming\EasyAntiCheat
2020-03-04 15:39 - 2019-06-06 19:24 - 000001138 _____ C:\Users\Usuario\Desktop\Roblox Studio.lnk
2020-03-04 15:39 - 2018-11-22 20:55 - 000001319 _____ C:\Users\Usuario\Desktop\Roblox Player.lnk
2020-03-04 15:39 - 2018-09-17 13:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roblox
2020-03-02 09:32 - 2019-05-24 21:01 - 000000000 ____D C:\Users\Usuario\AppData\Local\BitTorrentHelper
2020-03-02 09:32 - 2018-12-30 20:55 - 000000000 ____D C:\Users\Usuario\AppData\Roaming\uTorrent
2020-03-01 19:28 - 2011-01-22 07:50 - 000747396 _____ C:\Windows\system32\perfh00A.dat
2020-03-01 19:28 - 2011-01-22 07:50 - 000158868 _____ C:\Windows\system32\perfc00A.dat
2020-03-01 19:28 - 2009-07-14 02:13 - 001676890 _____ C:\Windows\system32\PerfStringBackup.INI
2020-03-01 19:28 - 2009-07-14 00:20 - 000000000 ____D C:\Windows\inf
2020-02-26 14:14 - 2019-12-16 10:40 - 000002162 _____ C:\Users\Nico\Desktop\Discord.lnk
2020-02-26 14:14 - 2019-12-16 10:40 - 000000000 ____D C:\Users\Nico\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2020-02-26 14:14 - 2019-12-16 10:40 - 000000000 ____D C:\Users\Nico\AppData\Roaming\Discord
2020-02-26 14:14 - 2019-12-16 10:40 - 000000000 ____D C:\Users\Nico\AppData\Local\Discord
2020-02-24 22:40 - 2018-01-24 09:54 - 000165648 _____ C:\Users\Usuario\AppData\Local\GDIPFONTCACHEV1.DAT
2020-02-24 22:12 - 2018-01-25 00:00 - 000000000 ____D C:\Program Files (x86)\Minecraft
2020-02-23 14:27 - 2019-12-18 21:46 - 000000000 ____D C:\Users\Nico\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2020-02-23 14:11 - 2019-12-11 00:10 - 000000000 __SHD C:\Users\Nico\IntelGraphicsProfiles
2020-02-22 12:30 - 2019-01-17 11:43 - 005604984 _____ () C:\Users\Usuario\Desktop\TechnicLauncher.exe
2020-02-22 12:29 - 2018-02-13 13:53 - 000000000 ____D C:\Users\Usuario\AppData\Roaming\.technic
2020-02-19 17:30 - 2019-12-16 07:21 - 000000000 ____D C:\Users\Nico\AppData\Local\CrashDumps
2020-02-15 20:50 - 2019-12-24 16:55 - 000000000 ____D C:\Users\Nico\AppData\Roaming\obs-studio
2020-02-14 17:07 - 2019-12-11 21:10 - 000000000 ____D C:\Users\Nico\AppData\Roaming\.minecraft
2020-02-13 19:22 - 2019-12-11 00:11 - 000000000 ____D C:\Users\Nico\AppData\Local\UnrealEngine
2020-02-12 04:02 - 2018-01-24 10:05 - 000000000 ____D C:\Windows\system32\MRT
2020-02-12 03:52 - 2018-01-24 10:05 - 120407888 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2020-02-12 03:50 - 2019-03-24 23:28 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2020-02-12 03:50 - 2009-07-13 23:34 - 000000478 _____ C:\Windows\win.ini
==================== Archivos en la raíz de algunos directorios ========
2019-01-09 23:00 - 2019-01-09 23:00 - 038235304 _____ () C:\Users\Usuario\AppData\Roaming\gameboxsetup.exe
2019-12-01 07:37 - 2019-12-01 07:37 - 000000505 _____ () C:\Users\Usuario\AppData\Roaming\Microsoft\config.ini
2019-12-01 07:37 - 2019-12-01 07:37 - 008075264 _____ () C:\Users\Usuario\AppData\Local\agent.dat
2019-12-01 07:37 - 2019-12-01 07:37 - 000044032 _____ () C:\Users\Usuario\AppData\Local\ApplicationHosting.dat
2019-12-01 07:37 - 2019-12-01 07:37 - 000000562 _____ () C:\Users\Usuario\AppData\Local\bowsakkdestx.txt
2019-12-01 07:37 - 2019-12-01 07:37 - 000069888 _____ () C:\Users\Usuario\AppData\Local\Config.xml
2019-12-01 07:37 - 2019-12-01 07:36 - 001044480 _____ () C:\Users\Usuario\AppData\Local\Doubletinit.exe
2019-12-01 07:37 - 2019-12-01 07:37 - 002052089 _____ () C:\Users\Usuario\AppData\Local\Doubletinit.tst
2019-12-01 07:37 - 2019-12-01 07:36 - 001044480 _____ () C:\Users\Usuario\AppData\Local\Fresh-La.exe
2019-12-01 07:37 - 2019-12-01 07:37 - 000068237 _____ () C:\Users\Usuario\AppData\Local\Fresh-La.tst
2019-12-01 07:36 - 2019-12-01 07:37 - 000016896 _____ () C:\Users\Usuario\AppData\Local\InstallationConfiguration.xml
2019-12-01 07:36 - 2019-12-01 07:36 - 000140800 _____ () C:\Users\Usuario\AppData\Local\installer.dat
2019-12-01 07:37 - 2019-12-01 07:37 - 000126464 _____ () C:\Users\Usuario\AppData\Local\lobby.dat
2019-12-01 07:37 - 2019-12-01 07:37 - 000018432 _____ () C:\Users\Usuario\AppData\Local\Main.dat
2019-12-01 07:37 - 2019-12-01 07:37 - 000005568 _____ () C:\Users\Usuario\AppData\Local\md.xml
2019-12-01 07:37 - 2019-12-01 07:37 - 000126464 _____ () C:\Users\Usuario\AppData\Local\noah.dat
2019-12-01 07:37 - 2019-12-01 07:37 - 000032038 _____ () C:\Users\Usuario\AppData\Local\uninstall_temp.ico
2019-12-01 07:37 - 2019-12-01 07:37 - 001895383 _____ () C:\Users\Usuario\AppData\Local\X-Soft.bin
==================== SigCheck ============================
(No existe una corrección automática para los archivos que no pasan la verificación.)
LastRegBack: 2020-03-08 00:45
==================== Final de FRST.txt ========================