Tengo el ordenador lento

#1

Hola

Les paso a comentar, noto que tengo el ordenador lento como en el uso de los navegadores, google o opera, tengo 50 megas de velocidad de internet, pero me cuesta abrir programas como ejecutarlos, tardan mucho y algunos quedan varios minutos en cargar.

Gracias.

#2

Realiza los siguientes pasos, , sin cambiar el orden

1) Descarga, actualiza y ejecuta Malwarebytes’ Anti-Malware,

Manual Malwarebytes, para que sepas usarlo y configurarlo.

  • Realiza un An√°lisis Personalizado,marcando Todas las casillas de la derecha y de la Izquierda actualizando si te lo pide.
  • Pulsar en ‚ÄúEliminar Seleccionados‚ÄĚ para enviarlo a la cuarentena y Reinicias el sistema.
  • Para acceder posteriormente al informe del an√°lisis : Informes >> Registro de an√°lisis >> Pulsar en >> Exportar >> Copiar al Portapapeles, y lo pegas en tu respuesta

2) Descarga Adwcleaner en el escritorio.

  • Desactiva tu antivirus :arrow_forward:Como deshabilitar temporalmente un antivirus y cualquier programa de seguridad.

  • Ejecuta Adwcleaner.exe (Si usas Windows Vista/7 u 8 presiona clic derecho y selecciona "Ejecutar como Administrador.")

  • Pulsar en el bot√≥n Analizar Ahora, y espera a que se realice el proceso, inmediatamente pulsa sobre el bot√≥n Iniciar Reparacion.

  • Espera a que se complete y sigue las instrucciones, si te pidiera Reiniciar el sistema Aceptas.

  • Si no encuentra nada, pulsamos ‚ÄúOmitir Reparaci√≥n‚ÄĚ

  • El log lo encontramos en la pesta√Īa ‚ÄúInformes‚ÄĚ, volviendo a abrir el programa, si es necesario o en"C:\AdwCleaner\Logs\AdwCleaner[C0].txt"

Puedes mirar su manual >> Manual de Adwcleaner

3) Descarga Ccleaner

Instalalo y ejec√ļtalo. En la pesta√Īa limpiador dejas como esta configurada predeterminadamente, haces clic en analizar esperas que termine > clic en ejecutar limpiador. Clic en la pesta√Īa Registro > clic en buscar problemas esperas que termine > clic en Reparar Seleccionadas y haces una copia de seguridad.

Pega los reportes de Malwarebytes, AdwCleaner y comentas como va el problema.


#3

Hola Miguelgrado, gracias por tu asistencia.

Le pego los Logs:

> Malwarebytes
> www.malwarebytes.com
> 
> -Detalles del registro-
> Fecha del an√°lisis: 28/4/19
> Hora del an√°lisis: 22:59
> Archivo de registro: 62395466-6a22-11e9-8a74-e81132693147.json
> 
> -Información del software-
> Versión: 3.7.1.2839
> Versión de los componentes: 1.0.586
> Versión del paquete de actualización: 1.0.10380
> Licencia: Prueba
> 
> -Información del sistema-
> SO: Windows 7 Service Pack 1
> CPU: x64
> Sistema de archivos: NTFS
> Usuario: PICHULODANCE\Vanhelsing
> 
> -Resumen del an√°lisis-
> Tipo de an√°lisis: An√°lisis personalizado
> An√°lisis iniciado por:: Manual
> Resultado: Completado
> Objetos analizados: 469324
> Amenazas detectadas: 21
> Amenazas en cuarentena: 1
> Tiempo transcurrido: 8 hr, 10 min, 6 seg
> 
> -Opciones de an√°lisis-
> Memoria: Activado
> Inicio: Activado
> Sistema de archivos: Activado
> Archivo: Activado
> Rootkits: Activado
> Heurística: Activado
> PUP: Detectar
> PUM: Detectar
> 
> -Detalles del an√°lisis-
> Proceso: 0
> (No hay elementos maliciosos detectados)
> 
> Módulo: 0
> (No hay elementos maliciosos detectados)
> 
> Clave del registro: 0
> (No hay elementos maliciosos detectados)
> 
> Valor del registro: 0
> (No hay elementos maliciosos detectados)
> 
> Datos del registro: 0
> (No hay elementos maliciosos detectados)
> 
> Secuencia de datos: 0
> (No hay elementos maliciosos detectados)
> 
> Carpeta: 0
> (No hay elementos maliciosos detectados)
> 
> Archivo: 21
> HackTool.FilePatch, C:\PROGRAM FILES\TECHSMITH\CAMTASIA 9\ACTIVADOR CAMTASIA 9 TENERTING.EXE, Sin acciones por parte del usuario, [7744], [281135],1.0.10380
> HackTool.Agent, C:\PROGRAM FILES (X86)\R2 STUDIOS\XION\PATCH 1.EXE, Sin acciones por parte del usuario, [3939], [1570],1.0.10380
> CrackTool.Agent.Keygen, C:\PROGRAM FILES (X86)\R2 STUDIOS\XION\PATCH 2.EXE, Sin acciones por parte del usuario, [7796], [320212],1.0.10380
> HackTool.Agent, C:\PROGRAM FILES (X86)\NAMCO BANDAI\ACE COMBAT ASSAULT HORIZON - ENHANCED EDITION\STEAM_API.DLL, Sin acciones por parte del usuario, [3939], [85886],1.0.10380
> RiskWare.GameHack, C:\PROGRAM FILES (X86)\BATMAN ARKHAM ORIGINS BLACKGATE DELUXE EDITION\BIN\STEAM_API.DLL, Sin acciones por parte del usuario, [7606], [305544],1.0.10380
> PUP.Optional.GameHack, C:\PROGRAM FILES (X86)\CHEAT ENGINE 6.4\STANDALONEPHASE1.DAT, Sin acciones por parte del usuario, [8013], [393793],1.0.10380
> HackTool.FilePatch, C:\PROGRAM FILES (X86)\4KDOWNLOAD\4KSTOGRAM\PATCH.EXE, Sin acciones por parte del usuario, [7744], [281135],1.0.10380
> RiskWare.Tool.HCK, C:\PROGRAM FILES (X86)\ELECTRONIC ARTS\BATTLEFIELD BAD COMPANY 2\RLD-BBC2.EXE, Sin acciones por parte del usuario, [7617], [137837],1.0.10380
> Generic.Malware/Suspicious, C:\PROGRAMDATA\KMSAUTO\BIN\KMSSS.EXE, Sin acciones por parte del usuario, [0], [392686],1.0.10380
> Generic.Malware/Suspicious, C:\PROGRAMDATA\KMSAUTO\BIN\TUNMIRROR2.EXE, Sin acciones por parte del usuario, [0], [392686],1.0.10380
> Generic.Malware/Suspicious, C:\PROGRAMDATA\KMSAUTO\KMSAUTO NET.EXE, Sin acciones por parte del usuario, [0], [392686],1.0.10380
> RiskWare.Agent, C:\USERS\VANHELSING\APPDATA\LOCAL\TEMP\~NSU.TMP\AU_.EXE, Error durante la eliminación, [3941], [352776],1.0.10380
> RiskWare.Agent, C:\USERS\VANHELSING\APPDATA\LOCAL\TEMP\~NSU.TMP\BU_.EXE, Error durante la eliminación, [3941], [352776],1.0.10380
> RiskWare.Agent, C:\USERS\VANHELSING\APPDATA\LOCAL\TEMP\~NSU.TMP\CU_.EXE, Error durante la eliminación, [3941], [352776],1.0.10380
> RiskWare.Agent, C:\USERS\VANHELSING\APPDATA\LOCAL\TEMP\~NSU.TMP\DU_.EXE, Error durante la eliminación, [3941], [352776],1.0.10380
> RiskWare.Agent, C:\USERS\VANHELSING\APPDATA\LOCAL\TEMP\~NSU.TMP\EU_.EXE, Error durante la eliminación, [3941], [352776],1.0.10380
> RiskWare.Agent, C:\USERS\VANHELSING\APPDATA\LOCAL\TEMP\~NSU.TMP\FU_.EXE, Error durante la eliminación, [3941], [352776],1.0.10380
> HackTool.FilePatch, C:\USERS\VANHELSING\DOCUMENTS\ONE NIGHT ONLY\4KS 2.6.3 [WWW.TECNOTUTOSHD.NET]\4K STOGRAM 2.6.3 [WWW.TECNOTUTOSHD.NET]\PATCH.EXE, Sin acciones por parte del usuario, [7744], [281135],1.0.10380
> CrackTool.Agent.Keygen, C:\USERS\VANHELSING\DOCUMENTS\PROGRAMAS PORTABLES\BSPLAYERPRO.2.70 PORTABLE\KEYGEN\KEYGEN.EXE, Sin acciones por parte del usuario, [7796], [353777],1.0.10380
> RiskWare.Agent, C:\USERS\VANHELSING\DOCUMENTS\TNOD-1.6.4-FINAL-SETUP.RAR, En cuarentena, [3941], [352776],1.0.10380
> RiskWare.DontStealOurSoftware, C:\WINDOWS\SYSTEM32\DRIVERS\ETC\HOSTS, Error durante la eliminación, [5326], [353142],0.0.0
> 
> Sector físico: 0
> (No hay elementos maliciosos detectados)
> 
> WMI: 0
> (No hay elementos maliciosos detectados)
> 
> 
> (end)




> # -------------------------------
> # Malwarebytes AdwCleaner 7.3.0.0
> # -------------------------------
> # Build:    04-04-2019
> # Database: 2019-04-03.1 (Local)
> # Support:  https://www.malwarebytes.com/support
> #
> # -------------------------------
> # Mode: Clean
> # -------------------------------
> # Start:    04-29-2019
> # Duration: 00:00:01
> # OS:       Windows 7 Home Basic
> # Cleaned:  0
> # Failed:   0
> 
> 
> ***** [ Services ] *****
> 
> No malicious services cleaned.
> 
> ***** [ Folders ] *****
> 
> No malicious folders cleaned.
> 
> ***** [ Files ] *****
> 
> No malicious files cleaned.
> 
> ***** [ DLL ] *****
> 
> No malicious DLLs cleaned.
> 
> ***** [ WMI ] *****
> 
> No malicious WMI cleaned.
> 
> ***** [ Shortcuts ] *****
> 
> No malicious shortcuts cleaned.
> 
> ***** [ Tasks ] *****
> 
> No malicious tasks cleaned.
> 
> ***** [ Registry ] *****
> 
> No malicious registry entries cleaned.
> 
> ***** [ Chromium (and derivatives) ] *****
> 
> No malicious Chromium entries cleaned.
> 
> ***** [ Chromium URLs ] *****
> 
> No malicious Chromium URLs cleaned.
> 
> ***** [ Firefox (and derivatives) ] *****
> 
> No malicious Firefox entries cleaned.
> 
> ***** [ Firefox URLs ] *****
> 
> No malicious Firefox URLs cleaned.
> 
> 
> *************************
> 
> [+] Delete Tracing Keys
> [+] Reset Winsock
> 
> *************************
> 
> AdwCleaner[S00].txt - [1255 octets] - [29/04/2019 23:17:24]
> 
> ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Paso aclarar que algunos archivos que encontro el malwarebytes no los elimine ni los mande a su cuarentena por que son de algunos juegos y un reproductor.

Todo sigue igual, lento como tortuga.

Gracias

#4

Lento no me extra√Īa, pues tienes una buena coleccion de programas para pitratear, como Craks y keygens,incluidos uno para piratear MALWAREBYTES y ese tipo de coas nunca se sabe lo que traen

  • Desactiva Temporalmente tu antivirus y cualquier programa de seguridad.

  • Descarga a Tu Escritorio >> Esto es muy importante<<.,Fabar Recovery Scan Tool, considerando la versi√≥n adecuada para tu equipo. (32 o 64 bits) :arrow_forward: ¬ŅC√≥mo saber si mi Windows es de 32 o 64 bits?

  • Doble clic para ejecutar Frst.exe. En la ventana del Disclaimer, presiona Yes.

  • En la nueva ventana que se abre, presiona el bot√≥n Scan y espera a que concluya el an√°lisis.

  • Se abrir√°n dos (2) archivos (Logs), Frst.txt y Addition.txt, que estar√°n grabados en Tu escritorio.

En Tu próxima respuesta, copias y pegas los dos reportes Frst.txt y Addition.txt de FRST

Nota: Si el/los reportes solicitados no entraran en una sola respuesta porque superan la cantidad de caracteres permitidos, puedes utilizar dos o mas respuestas para pegarlos completamente.

#5

Hola Miguelgrado.

Te pego los logs:

FRST 01.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 01-05.2019
Ran by Vanhelsing (administrator) on PICHULODANCE (SAMSUNG ELECTRONICS CO., LTD. RV411/RV511/E3511/S3511/RV711/E3411) (01-05-2019 11:37:28)
Running from C:\Users\Vanhelsing\Desktop
Loaded Profiles: Vanhelsing (Available Profiles: Vanhelsing & Administrador)
Platform: Windows 7 Home Basic Service Pack 1 (X64) Language: Espa√Īol (Espa√Īa, internacional)
Internet Explorer Version 11 (Default browser: Opera)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files (x86)\RocketDock\RocketDock.exe
(Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\vds.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe
(Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Desktop.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18390912 2019-04-28] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [645456 2019-04-01] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-19\Control Panel\Desktop\\SCRNSAVE.EXE -> 
HKU\S-1-5-20\Control Panel\Desktop\\SCRNSAVE.EXE -> 
HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\Run: [RocketDock] => C:\Program Files (x86)\RocketDock\RocketDock.exe [495616 2007-09-02] () [File not signed]
HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> 
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> 
HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\System32\frapsv64.dll [105984 2018-09-25] (Beepa P/L) [File not signed]
HKLM\...\Drivers32: [msacm.l3codecp] => C:\Windows\System32\l3codecp.acm [182272 2009-07-13] (Microsoft Windows -> Fraunhofer Institut Integrierte Schaltungen IIS)
HKLM\...\Drivers32: [vidc.pDAD] => C:\Windows\System32\prodad-codec.dll [607256 2015-08-27] (proDAD GmbH -> proDAD GmbH)
HKLM\...\Drivers32: [VIDC.FICV] => C:\Windows\System32\ficvdec_x64.dll [652288 2013-05-28] () [File not signed]
HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\SysWOW64\frapsvid.dll [94208 2018-09-25] (Beepa P/L) [File not signed]
HKLM\...\Drivers32: [msacm.vorbis] => C:\Windows\SysWOW64\vorbis.acm [1554944 2015-03-11] (HMS hxxp://hp.vector.co.jp/authors/VA012897/) [File not signed]
HKLM\...\Drivers32: [VIDC.FMVC] => C:\Windows\SysWOW64\fmcodec.dll [77824 2008-08-18] (Fox Magic Software) [File not signed]
HKLM\...\Drivers32: [msacm.l3codecp] => C:\Windows\SysWOW64\l3codecp.acm [220672 2009-07-13] (Microsoft Windows -> Fraunhofer Institut Integrierte Schaltungen IIS)
HKLM\...\Drivers32: [VIDC.FICV] => C:\Windows\SysWOW64\ficvdec_x86.dll [641024 2013-05-28] () [File not signed]
HKLM\...\Drivers32: [vidc.x264] => C:\Program Files (x86)\x264vfw\x264vfw.dll [3649536 2013-03-17] (x264vfw project) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\windows\system32\cmd.exe /D /C start C:\windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\74.0.3729.131\Installer\chrmstp.exe [2019-04-30] (Google LLC -> Google Inc.)
HKLM\Software\...\Authentication\Credential Providers: [{50968FF7-10C1-4fb3-98B0-CD654D6CB97E}] -> C:\Program Files\WIDCOMM\Bluetooth Software\\BtwCP.dll [2009-10-02] (Broadcom Corporation -> Broadcom Corporation.)
HKLM\Software\...\Authentication\Credential Providers: [{67187239-0780-4d9b-895B-7F0968AA474E}] -> C:\Program Files (x86)\CyberLink\YouCam7\CLCredProv\x64\CLCredProv.dll [2017-05-16] (CyberLink Corp. -> CyberLink)
HKLM\Software\...\Authentication\Credential Provider Filters: [{67187239-0780-4d9b-895B-7F0968AA474E}] -> C:\Program Files (x86)\CyberLink\YouCam7\CLCredProv\x64\CLCredProv.dll [2017-05-16] (CyberLink Corp. -> CyberLink)
GroupPolicy: Restriction - Chrome <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {08D0DA00-9CCC-447F-9045-BCC542ED5F6A} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\msoia.exe
Task: {1CEB00B1-B49D-43BF-B47B-53ECB1F44ECB} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
Task: {45F45D8B-827A-4A3E-B3EC-A6CECFD22822} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\msoia.exe
Task: {4B46DF8D-CFEF-49A0-B924-4FB1F84B2F25} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [316632 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {4E344D70-A62A-4E72-B73C-08D4115526B8} - System32\Tasks\AdobeGCInvoker-1.0-Vanhelsing-PC-Vanhelsing => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2675176 2018-12-21] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
Task: {6294CC45-3D0D-4B42-A736-DDE738C5E13E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156968 2019-03-14] (Google Inc -> Google Inc.)
Task: {73D536CE-354B-4199-91A7-09A94BE12AFA} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {75C9D7CB-7883-405F-960D-2570C0760719} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1160408 2016-12-17] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Task: {777AA5E7-8C8F-42C1-BEAA-B504EA5C8B5E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156968 2019-03-14] (Google Inc -> Google Inc.)
Task: {8ABCCEC9-A5A5-4E55-922C-86449E31CE43} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\DADUpdater.exe
Task: {8D22ED49-36A3-400C-A707-B9FBE26FB7C1} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-04-12] (Adobe Inc. -> Adobe)
Task: {9B550262-1B9F-4032-9CD6-AD929B609525} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_142_pepper.exe [1452544 2019-02-14] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {A0C3A46A-E39D-4C3F-ACF4-15D9A157731A} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe
Task: {A87A9C89-2138-4E40-87A0-6122FBF05BFF} - System32\Tasks\Opera scheduled Autoupdate 1468732425 => C:\Program Files (x86)\Opera\launcher.exe [1297496 2019-04-21] (Opera Software AS -> Opera Software)
Task: {AC26DD55-EFF3-40EC-989E-3769447D1A69} - System32\Tasks\SAgent => C:\Program Files\Samsung\S Agent\CommonAgent.exe
Task: {AFCE66B5-83AB-460F-B196-019817F7974A} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_171_Plugin.exe [1456696 2019-04-12] (Adobe Inc. -> Adobe)
Task: {B0EB4F7B-A903-4A67-A0EA-F38F2834D541} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {E52302C0-570A-4C81-AC97-6537C9949AA3} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\DADUpdater.exe

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => No File 
Winsock: Catalog5 09 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => No File 
Winsock: Catalog5-x64 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => No File 
Winsock: Catalog5-x64 09 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => No File 
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{ABA4E354-C46C-4657-BBED-EC7EDD9C9BCC}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000 -> DefaultScope {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office16\OCHelper.dll [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_211\bin\ssv.dll [2019-04-30] (Oracle America, Inc. -> Oracle Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office16\URLREDIR.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-04-30] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office16\URLREDIR.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_171.dll [2019-04-12] (Adobe Inc. -> )
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1234204.dll [2018-06-06] (Adobe Systems, Inc.) [File not signed]
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [No File]
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2014-07-31] (Google Inc -> Google, Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [No File]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\Microsoft Office\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.7\npGoogleUpdate3.dll [2019-03-27] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.7\npGoogleUpdate3.dll [2019-03-27] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)

Chrome: 
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxps://www.google.com/"
CHR Profile: C:\Users\Vanhelsing\AppData\Local\Google\Chrome\User Data\Default [2019-04-27]
CHR Extension: (Presentaciones) - C:\Users\Vanhelsing\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-03-14]
CHR Extension: (Documentos) - C:\Users\Vanhelsing\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-03-14]
CHR Extension: (Google Drive) - C:\Users\Vanhelsing\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-03-14]
CHR Extension: (AdGuard AdBlocker) - C:\Users\Vanhelsing\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgnkhhnnamicmpeenaelnjfhikgbkllg [2019-04-25]
CHR Extension: (YouTube) - C:\Users\Vanhelsing\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-03-14]
CHR Extension: (Adblock Plus - bloqueador de anuncios gratis) - C:\Users\Vanhelsing\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-04-25]
CHR Extension: (Hojas de c√°lculo) - C:\Users\Vanhelsing\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-03-14]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Vanhelsing\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-03-19]
CHR Extension: (AdBlock) - C:\Users\Vanhelsing\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-04-27]
CHR Extension: (Conversor de vídeo) - C:\Users\Vanhelsing\AppData\Local\Google\Chrome\User Data\Default\Extensions\mcjjnhgakghmggnimjkldjmmpabhnhne [2019-03-14]
CHR Extension: (Ghostery ‚Äď Bloqueador de anuncios para privacidad) - C:\Users\Vanhelsing\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2019-04-25]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Vanhelsing\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-03-14]
CHR Extension: (Gmail) - C:\Users\Vanhelsing\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-03-14]
CHR Extension: (Chrome Media Router) - C:\Users\Vanhelsing\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-04-25]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx

Opera: 
=======
OPR Extension: (Ghostery ‚Äď Privacy Ad Blocker) - C:\Users\Vanhelsing\AppData\Roaming\Opera Software\Opera Stable\Extensions\bbkekonodcdmedgffkkbgmnnekbainbg [2019-05-01]
OPR Extension: (AdGuard AdBlocker) - C:\Users\Vanhelsing\AppData\Roaming\Opera Software\Opera Stable\Extensions\bopfaehpakahokaelnomggbohfbimcia [2019-04-20]
OPR Extension: (WOT: Web of Trust, Website Reputation Ratings) - C:\Users\Vanhelsing\AppData\Roaming\Opera Software\Opera Stable\Extensions\eeokceolphhfjdfcibaiiopmekmcbedp [2018-07-18]
OPR Extension: (Bookmarks Import & Export) - C:\Users\Vanhelsing\AppData\Roaming\Opera Software\Opera Stable\Extensions\omhcddilnfoiiplehpjihipcocdplljn [2016-10-28]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S4 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2917864 2018-12-13] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
S4 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2709480 2018-12-13] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
S4 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [85304 2018-10-16] (Apple Inc. -> Apple Inc.)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1467072 2016-05-30] (Disc Soft Ltd -> Disc Soft Ltd)
S4 Fabs; C:\Program Files (x86)\Common Files\MAGIX Services\Database_16da09\bin\FABS.exe [1253376 2009-08-27] (MAGIX AG) [File not signed]
S3 FirebirdServerMAGIXInstance; C:\Program Files (x86)\Common Files\MAGIX Services\Database_16da09\bin\fbserver.exe [3276800 2008-08-07] (MAGIX¬ģ) [File not signed]
S4 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
S4 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2008-12-03] (Hewlett-Packard) [File not signed]
S4 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2008-12-03] (Hewlett-Packard) [File not signed]
R2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [253776 2019-02-21] (Razer USA Ltd. -> Razer Inc)
R2 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [532864 2019-04-24] (Razer USA Ltd. -> Razer Inc.)
S4 RzKLService; C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [290352 2019-04-26] (Razer USA Ltd. -> Razer Inc.)
S4 SWUpdateService; C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe [3302648 2018-08-16] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11795800 2019-04-15] (TeamViewer GmbH -> TeamViewer GmbH)
S4 UxTuneUp; C:\Windows\System32\uxtuneup.dll [43320 2014-07-16] (AVG Netherlands B.V. -> TuneUp Software)
S4 UxTuneUp; C:\Windows\SysWOW64\uxtuneup.dll [36152 2014-07-16] (AVG Netherlands B.V. -> TuneUp Software)
S4 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)

===================== Drivers (Whitelisted) ======================
#6

Log FRST 02

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AmUStor; C:\Windows\System32\drivers\AmUStor.SYS [118184 2018-05-14] (Alcorlink Corp. -> )
R3 anvsnddrv; C:\Windows\System32\drivers\anvsnddrv.sys [33872 2011-11-28] (AnvSoft Co., Ltd. -> AnvSoft Inc.)
S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [53904 2018-05-17] (AVAST Software s.r.o. -> The OpenVPN Project)
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2015-06-07] (Tages SA -> )
R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [172760 2019-04-28] (Broadcom Corporation -> Broadcom Corporation.)
R3 BCM43XX; C:\Windows\System32\DRIVERS\bcmwl664.sys [4745280 2016-08-05] (Broadcom Corporation -> Broadcom Corporation)
S3 Btcsrusb; C:\Windows\System32\Drivers\btcusb.sys [42536 2016-06-16] (IVT CORPORATION -> IVT Corporation.)
R0 BtHidBus; C:\Windows\System32\Drivers\BtHidBus.sys [24328 2008-07-31] (IVT SOFTWARE TECHNOLOGY Inc. -> IVT Corporation.)
R3 btwampfl; C:\Windows\System32\DRIVERS\btwampfl.sys [600280 2019-04-28] (Broadcom Corporation -> Broadcom Corporation.)
R3 btwaudio; C:\Windows\System32\drivers\btwaudio.sys [98344 2009-10-02] (Broadcom Corporation -> Broadcom Corporation.)
R3 btwavdt; C:\Windows\System32\drivers\btwavdt.sys [132648 2009-08-28] (Broadcom Corporation -> Broadcom Corporation.)
R3 btwl2cap; C:\Windows\System32\DRIVERS\btwl2cap.sys [35104 2009-04-07] (Broadcom Corporation -> Broadcom Corporation.)
R3 btwrchid; C:\Windows\System32\DRIVERS\btwrchid.sys [21160 2009-08-28] (Broadcom Corporation -> Broadcom Corporation.)
S3 CLMirrorDriver; C:\Windows\System32\DRIVERS\CLMirrorDriver.sys [21264 2018-05-11] (CyberLink Corp. -> CyberLink)
R3 clwvd; C:\Windows\System32\DRIVERS\clwvd.sys [31088 2010-11-10] (CyberLink -> CyberLink Corporation)
R3 clwvd7; C:\Windows\System32\DRIVERS\clwvd7.sys [49944 2016-06-02] (CyberLink Corp. -> CyberLink Corporation)
S3 DFX11_1; C:\Windows\System32\drivers\dfx11_1x64.sys [28008 2015-08-31] (Power Technology -> Windows (R) Win 7 DDK provider)
S3 DFX12; C:\Windows\System32\drivers\dfx12x64.sys [29688 2015-11-12] (Power Technology -> Windows (R) Win 7 DDK provider)
R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2019-04-10] (Disc Soft Ltd -> Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [47672 2019-04-10] (Disc Soft Ltd -> Disc Soft Ltd)
R1 HWiNFO32; C:\windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-04-22] (Martin Malik - REALiX -> REALiX(tm))
S1 hwinterface; C:\Windows\SysWOW64\Drivers\hwinterface.sys [3026 2018-07-15] (Logix4u) [File not signed]
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2019-04-28] (Intel Corporation - Intel¬ģ Rapid Storage Technology -> Intel Corporation)
R3 igfx; C:\Windows\System32\DRIVERS\igdkmd64.sys [12311904 2016-04-22] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R3 Impcd; C:\Windows\System32\DRIVERS\Impcd.sys [158976 2010-02-26] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
S3 IvtBtBUs; C:\Windows\System32\Drivers\IvtBtBus.sys [31624 2008-07-02] (IVT SOFTWARE TECHNOLOGY Inc. -> IVT Corporation.)
S3 keycrypt; C:\Windows\System32\DRIVERS\KeyCrypt64.sys [161408 2017-03-22] (Zemana Ltd. -> Zemana Ltd.)
R3 mlkumidi; C:\Windows\System32\drivers\mlkumidi.sys [57408 2012-08-29] (MusicLab, Inc. -> MusicLab, Inc.)
R1 ndisrd; C:\Windows\System32\DRIVERS\ndisrd.sys [43088 2014-08-14] (Mainline Net Holdings Limited -> NT Kernel Resources)
R1 SABI; C:\windows\system32\Drivers\SABI.sys [13824 2010-10-06] (Microsoft Windows Hardware Compatibility Publisher -> SAMSUNG ELECTRONICS)
S4 secdrv; C:\Windows\SysWow64\Drivers\secdrv.sys [28400 2018-12-27] () [File not signed]
R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [51808 2018-02-08] (Synaptics Incorporated -> Synaptics Incorporated)
R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [394296 2016-03-26] (Disc Soft Ltd -> Duplex Secure Ltd.)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2015-06-10] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
R3 whfltr2k; C:\Windows\System32\DRIVERS\whfltr2k.sys [10368 2019-04-28] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 WiseHDInfo; C:\windows\WiseHDInfo64.dll [14800 2017-01-20] (Lespeed Technology Ltd. -> wisecleaner.com) [File not signed]
S3 cpuz148; \??\C:\Windows\temp\cpuz148\cpuz148_x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========
#7
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01-05.2019
Ran by Vanhelsing (01-05-2019 11:46:25)
Running from C:\Users\Vanhelsing\Desktop
Windows 7 Home Basic Service Pack 1 (X64) (2013-12-05 14:05:50)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrador (S-1-5-21-3507022562-1330472618-3652623963-500 - Administrator - Disabled) => C:\Users\Administrador.Vanhelsing-PC
Invitado (S-1-5-21-3507022562-1330472618-3652623963-501 - Limited - Enabled)
Vanhelsing (S-1-5-21-3507022562-1330472618-3652623963-1000 - Administrator - Enabled) => C:\Users\Vanhelsing

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

¬ĶTorrent (HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\uTorrent) (Version: 3.5.3.44428 - BitTorrent Inc.)
4K Stogram 2.5 (HKLM-x32\...\{E138B7C5-04B0-4B06-8716-56772F85E524}) (Version: 2.5.1.1346 - Open Media LLC)
64 Bit HP CIO Components Installer (HKLM\...\{55D55008-E5F6-47D6-B16F-B2A40D4D145F}) (Version: 6.2.1 - Hewlett-Packard) Hidden
911 Operator - First Response version 1.0 (HKLM-x32\...\911 Operator - First Response_is1) (Version: 1.0 - PlayWay SA)
Ace Combat Assault Horizon - Enhanced Edition (HKLM-x32\...\Ace Combat Assault Horizon - Enhanced Edition_is1) (Version:  - )
Adobe After Effects CC 2018 (HKLM-x32\...\AEFT_15_0_0) (Version: 15.0.0 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 32.0.0.89 - Adobe Systems Incorporated)
Adobe Audition CS6 (HKLM-x32\...\{2A069423-BB63-4E0E-842B-8535E28CD7F7}_is1) (Version: 5.0.0.708 - El Abuelo Sawa)
Adobe Flash Player 32 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 32.0.0.156 - Adobe Systems Incorporated)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.171 - Adobe)
Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.142 - Adobe Systems Incorporated)
Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.23) - Espa√Īol (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-AB0000000001}) (Version: 11.0.23 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.3 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.3.4.204 - Adobe Systems, Inc.)
AIMP (HKLM-x32\...\AIMP) (Version: v4.51.2084, 01.12.2018 - AIMP DevTeam)
AIMP2: Audio Tools (HKLM-x32\...\AIMP2at) (Version:  - AIMP DevTeam)
Any DVD Converter Professional 6.3.1 (HKLM-x32\...\Any DVD Converter Professional_is1) (Version:  - Any-DVD-Converter.com)
Any Video Converter Ultimate 6.3.1 (HKLM-x32\...\Any Video Converter Ultimate_is1) (Version:  - Any-Video-Converter.com)
Apple Application Support (64 bits) (HKLM\...\{D7B824DE-DA32-4772-9E5E-39C5158136A7}) (Version: 3.1.3 - Apple Inc.)
Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 9.0 - Atheros)
Audacity 2.2.2 (HKLM-x32\...\Audacity_is1) (Version: 2.2.2 - Audacity Team)
AviSynth 2.5 (HKLM-x32\...\AviSynth) (Version:  - )
AVStoDVD 2.2.6 (HKLM-x32\...\AVStoDVD) (Version: 2.2.6 - MrC)
Batman Arkham Origins Blackgate Deluxe Edition (HKLM-x32\...\QmF0bWFuQXJraGFtT3JpZ2luc0JsYWNrZ2F0ZURlbHV4ZUVkaXRpb24=_is1) (Version: 1 - )
Battlefield: Bad Company‚ĄĘ 2 (HKLM-x32\...\{3AC8457C-0385-4BEA-A959-E095F05D6D67}) (Version: 1.0.0.0 - Electronic Arts)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Broadcom 802.11 Network Adapter (HKLM\...\Broadcom 802.11 Network Adapter) (Version: 5.60.48.55 - Broadcom Corporation)
Camtasia 9 (HKLM\...\{5B345FC0-9E6D-4D22-9718-682DB0CF2414}) (Version: 9.0.0.1306 - TechSmith Corporation) Hidden
Camtasia 9 (HKLM-x32\...\{357abfe9-0513-4326-9e53-3b7654e9819d}) (Version: 9.0.0.1306 - TechSmith Corporation)
CD Label Designer (HKLM-x32\...\CD Label Designer_is1) (Version: 5.4 - Dataland Software)
Cracklock 3.9.44 (HKLM-x32\...\Cracklock_is1) (Version: 3.9.44 - William Blum)
CursorXP (HKLM-x32\...\CursorXP) (Version:  - )
CyberLink Media Suite (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 8.0.2227 - CyberLink Corp.)
CyberLink Media Suite 15 (HKLM-x32\...\InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7}) (Version: 15.0 - CyberLink Corp.)
CyberLink Media+ Player10 (HKLM-x32\...\InstallShield_{34FBC7C4-CD31-4D93-A428-0E524EAC4586}) (Version: 10.0.1110.00 - CyberLink Corp.)
CyberLink MediaShow (HKLM-x32\...\InstallShield_{80E158EA-7181-40FE-A701-301CE6BE64AB}) (Version: 5.0.1130a - CyberLink Corp.)
CyberLink Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.3802 - CyberLink Corp.)
CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.1.3509 - CyberLink Corp.)
Cheat Engine 6.4 (HKLM-x32\...\Cheat Engine 6.4_is1) (Version:  - Cheat Engine)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0190 - Disc Soft Ltd)
EA Download Manager (HKLM-x32\...\{EF7E931D-DC84-471B-8DB6-A83358095474}) (Version: 4.0.0.455 - Electronic Arts) Hidden
Easy Display Manager (HKLM-x32\...\{17283B95-21A8-4996-97DA-547A48DB266F}) (Version: 3.2 - Samsung Electronics Co., Ltd.)
Easy Migration (HKLM-x32\...\{AD86049C-3D9C-43E1-BE73-643F57D83D50}) (Version: 1.0 - Samsung Electronics Co., Ltd.)
EasyBatteryManager (HKLM-x32\...\{4A331D24-A9E8-484F-835E-1BA7B139689C}) (Version: 4.0.0.4 - Samsung)
EAX Unified (HKLM-x32\...\EAX Unified) (Version:  - )
Eines de correcció del Microsoft Office 2016: català (HKLM\...\{90160000-001F-0403-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Fast Start (HKLM-x32\...\{77F45ECD-FAFC-45A8-8896-CFFB139DAAA3}) (Version: 2.2.0.1 - SAMSUNG)
Ferramentas de verificación de Microsoft Office 2016 - Galego (HKLM\...\{90160000-001F-0456-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Firebird SQL Server - MAGIX Edition (HKLM-x32\...\{34EB6245-C8D0-4D8A-B8D8-EEBFF7A91485}) (Version: 2.1.27.0 - MAGIX AG)
Geosense for Windows (HKLM\...\{D617DF82-6046-44EB-AD4A-D3423319E12C}) (Version: 1.2.0.0 - Within Network, LLC)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 74.0.3729.131 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.7 - Google LLC) Hidden
Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version:  - )
Herramientas de correcci√≥n de Microsoft Office 2016: espa√Īol (HKLM\...\{90160000-001F-0C0A-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.0.0 - LIGHTNING UK!)
Intel(R) C++ Redistributables for Windows* on Intel(R) 64 (HKLM-x32\...\{D2437C5C-2D8C-40D2-8059-689AD7239FA3}) (Version: 11.1.048 - Intel Corporation)
Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{F70BCE36-25F2-4475-A918-6209B3D85BF3}) (Version: 15.0.179 - Intel Corporation)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2622 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.6.3.1001 - Intel Corporation)
Java 8 Update 211 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180211F0}) (Version: 8.0.2110.12 - Oracle Corporation)
JDownloader 2 (HKLM-x32\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
K-Lite Codec Pack 14.6.5 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 14.6.5 - KLCP)
La Santa Biblia 3D para PC v1.2 (HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\La Santa Biblia 3D para PC v1.2) (Version:  - )
Left 4 Dead (HKLM-x32\...\Left 4 Dead) (Version:  - Valve)
MAGIX Screenshare (HKLM-x32\...\{36B5C759-4243-48A4-A0C9-CAB0263DFF4C}) (Version: 4.3.6.1987 - MAGIX AG)
MAGIX Speed burnR (MSI) (HKLM-x32\...\{8C37FCE0-C8BE-4EAC-82C1-809F1E6A0E8E}) (Version: 7.0.1.27 - MAGIX AG)
MAGIX Video deluxe 17 Premium Versión para descargar (HKLM-x32\...\{1BFA6275-B17A-41E8-87C3-6971D3EB214A}) (Version: 10.0.0.33 - MAGIX AG) Hidden
MAGIX Video deluxe 17 Premium Versión para descargar (HKLM-x32\...\MAGIX_MSI_Videodeluxe17_premium) (Version: 10.0.0.33 - MAGIX AG)
MAGIX Video deluxe 17 Premium Video Plugins (HKLM-x32\...\{F4457AF1-2B61-470A-AF28-77B9335E9E3C}) (Version: 1.0.0.0 - MAGIX AG)
Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2016 (HKLM\...\Office16.PROPLUS) (Version: 16.0.4266.1001 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x64 8.0.61000 (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001 (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{57660847-B1F7-35BD-9118-F62EB863A598}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - –ö–ĺ—Ä–Ņ–ĺ—Ä–į—Ü–ł—Ź –ú–į–Ļ–ļ—Ä–ĺ—Ā–ĺ—Ą—ā)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - –ö–ĺ—Ä–Ņ–ĺ—Ä–į—Ü–ł—Ź –ú–į–Ļ–ļ—Ä–ĺ—Ā–ĺ—Ą—ā)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{49e969a1-2990-464d-92b5-25f6f34573c6}) (Version: 12.0.40664.0 - –ö–ĺ—Ä–Ņ–ĺ—Ä–į—Ü–ł—Ź –ú–į–Ļ–ļ—Ä–ĺ—Ā–ĺ—Ą—ā)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.12.25810 (HKLM-x32\...\{e2ee15e2-a480-4bc5-bfb7-e9803d1d9823}) (Version: 14.12.25810.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.12.25810 (HKLM-x32\...\{56e11d69-7cc9-40a5-a4f9-8f6190c4d84d}) (Version: 14.12.25810.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2012 (HKLM-x32\...\{89ca2a32-2b52-4595-8dfd-6fe4757958d0}) (Version: 11.0.51108 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version:  - )
Microsoft XNA Framework Redistributable 3.0 (HKLM-x32\...\{3898934B-05AE-41CD-96BE-70DA9BFBCE1F}) (Version: 3.0.11010.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Movie Color Enhancer (HKLM-x32\...\{7F6F62F0-7884-4CFB-B86C-597A4A6D9C4D}) (Version: 1.0 - Samsung Electronics Co., Ltd.)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
Need for Speed Most Wanted (HKLM-x32\...\Need for Speed Most Wanted_is1) (Version:  - )
NewBlue Titler Pro for Windows (HKLM-x32\...\NewBlue Titler Pro for Windows) (Version: 1.0 - NewBlue)
NewBlue Video Essentials for Windows (HKLM-x32\...\NewBlue Video Essentials for Windows) (Version: 3.0 - NewBlue)
NewBlue Video Essentials V for Windows (HKLM-x32\...\NewBlue Video Essentials V for Windows) (Version: 3.0 - NewBlue)
NewBlue Video Essentials VI for Windows (HKLM-x32\...\NewBlue Video Essentials VI for Windows) (Version: 3.0 - NewBlue)
NewBlue Video Essentials VII for Windows (HKLM-x32\...\NewBlue Video Essentials VII for Windows) (Version: 3.0 - NewBlue)
NVIDIA PhysX (HKLM-x32\...\{8AAB4176-A747-493A-A42C-B63CFADFD8E3}) (Version: 9.09.0010 - NVIDIA Corporation)
Ohm Force Hematohm VST2 v1.0 (HKLM-x32\...\Ohm Force Hematohm VST2 v1.0) (Version:  - )
Ohm Force OhmBoyz DX v1.02 PRO (HKLM-x32\...\Ohm Force OhmBoyz DX v1.02 PRO) (Version:  - )
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Opera Stable 60.0.3255.59 (HKLM-x32\...\Opera 60.0.3255.59) (Version: 60.0.3255.59 - Opera Software)
Origin (HKLM-x32\...\Origin) (Version: 8.4.1.210 - Electronic Arts, Inc.)
Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x64 Hosting Support - PTB (HKLM\...\{E237254B-36A1-3D27-815E-B37C13BE0796}) (Version: 11.0.51108 - Microsoft Corporation) Hidden
Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x86 Hosting Support - PTB (HKLM-x32\...\{03077B58-6ACF-32CA-B42A-EAA458C295A1}) (Version: 11.0.51108 - Microsoft Corporation) Hidden
Panda Devices Agent (HKLM-x32\...\{DDE3DECA-9139-4A39-9276-143ECA1DB75E}) (Version: 1.06.00 - Panda Security)
Panda Devices Agent (HKLM-x32\...\Panda Devices Agent) (Version: 1.03.06 - Panda Security)
Paquete de controladores de Windows - Broadcom Corporation (bcbtums) Bluetooth  (03/16/2012 6.5.1.2600) (HKLM\...\6A044848DB955BAB41313E7878DE4E2C68715F24) (Version: 03/16/2012 6.5.1.2600 - Broadcom Corporation)
Paquete de controladores de Windows - Broadcom Corporation Bluetooth  (03/16/2012 6.5.1.2600) (HKLM\...\524FB58AAB1C34915E5DAE6F9A7ABD1AA8C96614) (Version: 03/16/2012 6.5.1.2600 - Broadcom Corporation)
Paquete de controladores de Windows - Broadcom Corporation Bluetooth  (03/16/2012 6.5.1.2600) (HKLM\...\73EBF284DDB186EC3E526FEE77E2325097703596) (Version: 03/16/2012 6.5.1.2600 - Broadcom Corporation)
Paquete de controladores de Windows - Broadcom Corporation Bluetooth  (03/16/2012 6.5.1.2600) (HKLM\...\765E3A42F1EB7BB642F073A20918B588DC4D1193) (Version: 03/16/2012 6.5.1.2600 - Broadcom Corporation)
Paquete de idioma de Microsoft Visual Studio 2010 Tools para Office Runtime (x64) - ESN (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - ESN) (Version: 10.0.50903 - Microsoft Corporation)
PhotoFiltre Studio X (HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\PhotoFiltre Studio X) (Version:  - )
PhotoScape (HKLM-x32\...\PhotoScape) (Version:  - )
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
Pixillion, convertidor de archivos de imagen (HKLM-x32\...\Pixillion) (Version: 2.91 - NCH Software)
Pro Evolution Soccer 2017 (HKLM-x32\...\{A3C10274-808C-4ADC-A13D-D94911180B58}_is1) (Version:  - KONAMI)
proDAD Adorage 3.0 (64bit) (HKLM\...\proDAD-Adorage-3.0) (Version: 3.0.114.1 - proDAD GmbH)
Quake 4(TM) 1.1 Patch (HKLM-x32\...\{7AF0B158-E0FF-463C-9828-948C21C409A7}) (Version: 1.0 - Nombre de su organización) Hidden
Razer Cortex (HKLM-x32\...\Razer Cortex_is1) (Version: 9.4.17.1004 - Razer Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.40.126.2011 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8648 - Realtek Semiconductor Corp.)
Revisores de Texto do Microsoft Office 2016 ‚Äď Portugu√™s (Brasil) (HKLM\...\{90160000-001F-0416-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
RocketDock 1.3.5 (HKLM-x32\...\RocketDock_is1) (Version:  - Punk Software)
S Agent (HKLM\...\{061881E0-653B-41CA-839E-2BA6569B5FEE}) (Version: 1.1.69 - Samsung Electronics Co., Ltd.) Hidden
Samsung AnyWeb Print (HKLM-x32\...\{318DBE01-1E6B-4243-84B0-210391FE789A}) (Version: 2.0.67.1 - Samsung Electronics Co., Ltd.)
Samsung Printer Live Update (HKLM-x32\...\Samsung Printer Live Update) (Version:  - Samsung Electronics Co., Ltd.)
Samsung Universal Print Driver (HKLM-x32\...\Samsung Universal Print Driver) (Version: 2.02.05.00:27 - Samsung Electronics Co., Ltd.)
Samsung Universal Scan Driver (HKLM-x32\...\Samsung Universal Scan Driver) (Version: 1.2.5.0 - Samsung Electronics Co., Ltd.)
Samsung Update Plus (HKLM-x32\...\{142D8CA7-2C6F-45A7-83E3-099AAFD99133}) (Version: 3.0.0.17 - Samsung Electronics Co., Ltd.)
Sony Noise Reduction Plug-In 2.0h (HKLM-x32\...\{06A1BE8A-4CA4-4A39-B9E4-E815AA8FE05C}) (Version: 2.0.451 - Sony)
swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Ninja versión 3.2.5 (HKLM-x32\...\{6E67710E-206D-43AB-BF21-E7CD63056C55}_is1) (Version: 3.2.5 - SingularLabs)
TeamViewer 14 (HKLM-x32\...\TeamViewer) (Version: 14.2.8352 - TeamViewer)
Terminator Salvation - The Videogame (HKLM-x32\...\Terminator Salvation - The Videogame_is1) (Version:  - )
Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb)
VC80CRTRedist - 8.0.50727.6195 (HKLM-x32\...\{933B4015-4618-4716-A828-5289FC03165F}) (Version: 1.2.0 - DivX, Inc) Hidden
Vegas Pro 13.0 (64-bit) (HKLM\...\{CFB5504F-BFBC-11E3-8794-F04DA23A5C58}) (Version: 13.0.290 - Sony)
VirtualDJ 8 (HKLM-x32\...\{9ADBBA93-4625-4898-BB0D-BCE7EA9F8B4A}) (Version: 8.0.0 - Atomix Productions)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Waves 4.0 (HKLM-x32\...\{4C4D25EB-6513-4702-8355-F4194DE2E1D9}) (Version:  - )
WIDCOMM Bluetooth Software (HKLM\...\{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}) (Version: 6.2.1.800 - Broadcom Corporation)
WIDCOMM Bluetooth Software (HKLM\...\{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}) (Version: 6.5.1.6930 - Broadcom Corporation)
Windows Driver Package - Broadcom Bluetooth  (07/30/2009 6.2.0.9405) (HKLM\...\6B6B5E96843E55CF5CF8C7E45FB457F1FE642FF1) (Version: 07/30/2009 6.2.0.9405 - Broadcom)
Windows Driver Package - Broadcom Bluetooth  (09/11/2009 6.2.0.9407) (HKLM\...\3932CA781A7894D20116FDF60F878301800EA8AB) (Version: 09/11/2009 6.2.0.9407 - Broadcom)
Windows Driver Package - Broadcom HIDClass  (07/28/2009 6.2.0.9800) (HKLM\...\3BA80AB4C7E9F8497C115C844953A3D4BEB84D21) (Version: 07/28/2009 6.2.0.9800 - Broadcom)
WinRAR 5.30 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH)
WinSnap (HKLM-x32\...\WinSnap) (Version: 4.0.3 - NTWind Software)
x264vfw - H.264/MPEG-4 AVC codec (remove only) (HKLM-x32\...\x264vfw) (Version:  - )
Xion v1.5 (build 160) (HKLM-x32\...\Xion) (Version: 1.5 (build 160) - r2 Studios)
–Į–∑—č–ļ–ĺ–≤–ĺ–Ļ –Ņ–į–ļ–Ķ—ā –ī–Ľ—Ź –Ņ–ĺ–ī–ī–Ķ—Ä–∂–ļ–ł —Ä–į–∑–ľ–Ķ—Č–Ķ–Ĺ–ł—Ź –Ĺ–į–Ī–ĺ—Ä–į —Ā—Ä–Ķ–ī—Ā—ā–≤ Microsoft Visual Studio Tools –ī–Ľ—Ź —Ä–į–Ī–ĺ—ā—č —Ā –Ņ—Ä–ł–Ľ–ĺ–∂–Ķ–Ĺ–ł—Ź–ľ–ł 2012 (x64) - RUS (HKLM\...\{25FB53C5-BE4C-3B6C-A0C9-D49A39227E1E}) (Version: 11.0.51108 - Microsoft Corporation) Hidden
–Į–∑—č–ļ–ĺ–≤–ĺ–Ļ –Ņ–į–ļ–Ķ—ā –ī–Ľ—Ź –Ņ–ĺ–ī–ī–Ķ—Ä–∂–ļ–ł —Ä–į–∑–ľ–Ķ—Č–Ķ–Ĺ–ł—Ź –Ĺ–į–Ī–ĺ—Ä–į —Ā—Ä–Ķ–ī—Ā—ā–≤ Microsoft Visual Studio Tools –ī–Ľ—Ź —Ä–į–Ī–ĺ—ā—č —Ā –Ņ—Ä–ł–Ľ–ĺ–∂–Ķ–Ĺ–ł—Ź–ľ–ł 2012 (x86) - RUS (HKLM-x32\...\{68DC347D-C1C0-3DE2-A53E-CCC71DA53E57}) (Version: 11.0.51108 - Microsoft Corporation) Hidden

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000_Classes\CLSID\{7539AD6A-2621-B2A7-2DFE-6F99A1700F41}\InprocServer32 -> C:\Windows\System32\ole32.dll (Microsoft Windows -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ContextMenuHandlers1: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP3\System\aimp_menu64.dll [2019-01-01] (Artem Izmaylov -> AIMP DevTeam)
ContextMenuHandlers1: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => C:\Program Files (x86)\Glary Utilities 5\x64\ContextHandler.dll -> No File
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-11-18] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-11-18] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => C:\Program Files (x86)\Glary Utilities 5\x64\ContextHandler.dll -> No File
ContextMenuHandlers3: [UnlockerShellExtension] -> {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} => C:\Program Files\Unlocker\UnlockerCOM.dll [2010-07-15] (Empty Loop -> )
ContextMenuHandlers4: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP3\System\aimp_menu64.dll [2019-01-01] (Artem Izmaylov -> AIMP DevTeam)
ContextMenuHandlers4: [MSSE] -> {0365FE2C-F183-4091-AC82-BFC39FB75C49} =>  -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\windows\system32\igfxpph.dll [2016-04-22] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => C:\Program Files (x86)\Glary Utilities 5\x64\ContextHandler.dll -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> No File
ContextMenuHandlers6: [UnlockerShellExtension] -> {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} => C:\Program Files\Unlocker\UnlockerCOM.dll [2010-07-15] (Empty Loop -> )
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-11-18] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-11-18] (win.rar GmbH -> Alexander Roshal)
#8
==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


Shortcut: C:\Users\Vanhelsing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ\Online Help.lnk -> hxxp://www.virtualdj.com/wiki
Shortcut: C:\Users\Vanhelsing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ\www.virtualdj.com.lnk -> hxxp://www.virtualdj.com

==================== Loaded Modules (Whitelisted) ==============

2017-05-30 17:44 - 2008-10-06 15:39 - 000134144 _____ (Hewlett-Packard Company) [File not signed] C:\Windows\System32\hpf3l083.dll
2011-07-14 20:03 - 2008-06-04 20:53 - 000027648 _____ () [File not signed] C:\Windows\System32\spd__l.dll
2017-05-30 18:07 - 2008-10-06 15:39 - 000254464 _____ (Hewlett-Packard Corporation) [File not signed] C:\Windows\system32\spool\PRTPROCS\x64\hpfpp083.dll
2011-07-14 04:52 - 2007-06-27 14:54 - 000033792 _____ (Windows (R) Server 2003 DDK provider) [File not signed] C:\Windows\system32\spool\PRTPROCS\x64\spd__pc.dll
2019-01-17 21:49 - 2007-09-02 13:58 - 000495616 _____ () [File not signed] C:\Program Files (x86)\RocketDock\RocketDock.exe
2019-01-17 21:49 - 2007-09-02 13:57 - 000069632 _____ () [File not signed] C:\Program Files (x86)\RocketDock\RocketDock.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\Temp:5C321E34 [125]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppXSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BFE => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BITS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\camsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ClipSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dps => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\lfsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MpsSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\semgrsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SharedAccess => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\shellhwdetection => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TokenBroker => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRemoveSafeBoot => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vss => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WSService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppXSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BITS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\camsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ClipSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dps => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\lfsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\msiserver => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SamSs => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\semgrsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\shellhwdetection => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv2 => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srvnet => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TokenBroker => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRemoveSafeBoot => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vss => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WSService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com
IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com

There are 7845 more sites.

IE restricted site: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\0411dd.com -> 0411dd.com
IE restricted site: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\0511zfhl.com -> 0511zfhl.com
IE restricted site: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\0632qyw.com -> 0632qyw.com
IE restricted site: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\...\1-2005-search.com -> www.1-2005-search.com

There are 12711 more sites.


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2017-09-18 23:18 - 2019-04-30 17:34 - 000001129 _____ C:\Windows\system32\drivers\etc\hosts

127.0.0.1       localhost
0.0.0.0 serius.mwbsys.com
0.0.0.0 keystone.mwbsys.com127.0.0.1       app.drivereasy.com
149.202.196.40  dow0.drivereasy.com
149.202.196.40  dow1.drivereasy.com
127.0.0.1       app.drivereasy.com
149.202.196.40  dow0.drivereasy.com
149.202.196.40  dow1.drivereasy.com

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path: C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%INTEL_DEV_REDIST%redist\intel64\compiler;C:\Program Files (x86)\Razer Chroma SDK\bin;C:\Program Files\Razer Chroma SDK\bin;C:\Windows\System32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\QuickTime\QTSystem\;C:\Program Files\WIDCOMM\Bluetooth Software\;C:\Program Files\WIDCOMM\Bluetooth Software\syswow64;
HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Vanhelsing\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

MSCONFIG\Services: !SASCORE => 2
MSCONFIG\Services: a2AntiMalware => 2
MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: AdobeUpdateService => 2
MSCONFIG\Services: AdvancedSystemCareService7 => 2
MSCONFIG\Services: AdvancedSystemCareService8 => 3
MSCONFIG\Services: AGMService => 2
MSCONFIG\Services: AGSService => 2
MSCONFIG\Services: Apple Mobile Device => 2
MSCONFIG\Services: Apple Mobile Device Service => 2
MSCONFIG\Services: AppProtectSvc => 2
MSCONFIG\Services: ASCAntivirusSrv => 2
MSCONFIG\Services: Bonjour Service => 2
MSCONFIG\Services: CleanMyPCService => 2
MSCONFIG\Services: cmcore => 2
MSCONFIG\Services: defragsvc => 2
MSCONFIG\Services: Fabs => 2
MSCONFIG\Services: GameConsoleService => 3
MSCONFIG\Services: GoogleChromeElevationService => 3
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: IDriverT => 3
MSCONFIG\Services: LightScribeService => 2
MSCONFIG\Services: LiveUpdateSvc => 2
MSCONFIG\Services: LMS => 2
MSCONFIG\Services: MBAMScheduler => 2
MSCONFIG\Services: MBAMService => 3
MSCONFIG\Services: MozillaMaintenance => 3
MSCONFIG\Services: msiserver => 3
MSCONFIG\Services: NBService => 3
MSCONFIG\Services: Net Driver HPZ12 => 2
MSCONFIG\Services: NMIndexingService => 3
MSCONFIG\Services: NOBU => 2
MSCONFIG\Services: PCAppStoreSvc_{PCAppStore_4.10.1.7752} => 3
MSCONFIG\Services: Pml Driver HPZ12 => 2
MSCONFIG\Services: RichVideo => 2
MSCONFIG\Services: RzKLService => 2
MSCONFIG\Services: Samsung UPD Service => 2
MSCONFIG\Services: SDScannerService => 3
MSCONFIG\Services: SDUpdateService => 3
MSCONFIG\Services: SDWSCService => 3
MSCONFIG\Services: SensrSvc => 3
MSCONFIG\Services: SkypeUpdate => 2
MSCONFIG\Services: SWUpdateService => 2
MSCONFIG\Services: TapiSrv => 3
MSCONFIG\Services: UNS => 2
MSCONFIG\Services: WiseBootAssistant => 3
MSCONFIG\Services: wudfsvc => 3
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk => C:\windows\pss\Bluetooth.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk => C:\Windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^IML.lnk => C:\windows\pss\IML.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^Vanhelsing^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Enviar a OneNote.lnk => C:\windows\pss\Enviar a OneNote.lnk.Startup
MSCONFIG\startupfolder: C:^Users^Vanhelsing^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^IML.lnk => C:\windows\pss\IML.lnk.Startup
MSCONFIG\startupfolder: C:^Users^Vanhelsing^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^LibreOffice 6.1.lnk => C:\Windows\pss\LibreOffice 6.1.lnk.Startup
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: Adobe Creative Cloud => 
MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
MSCONFIG\startupreg: AdobeCEPServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe" -launchedbylogin
MSCONFIG\startupreg: AdobeCS6ServiceManager => 
MSCONFIG\startupreg: AdobeGCInvoker-1.0 => "C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe"
MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
MSCONFIG\startupreg: AtomicAlarmClock6 => 
MSCONFIG\startupreg: Beautiful Christmas Tree => 
MSCONFIG\startupreg: BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} => 
MSCONFIG\startupreg: BtTray => 
MSCONFIG\startupreg: Christmas Garland Light => 
MSCONFIG\startupreg: Christmas Gift => 
MSCONFIG\startupreg: Christmas Globe => 
MSCONFIG\startupreg: Christmas snow globe => 
MSCONFIG\startupreg: ChristmasTree => 
MSCONFIG\startupreg: Chromium => 
MSCONFIG\startupreg: CLMLServer_For_P2G10 => "C:\Program Files (x86)\CyberLink\Power2Go10\CLMLSvc_P2G10.exe"
MSCONFIG\startupreg: cmsc => 
MSCONFIG\startupreg: Cursor Snowflakes => 
MSCONFIG\startupreg: CursorXP => "C:\Program Files (x86)\CursorXP\CursorXP.exe" -s
MSCONFIG\startupreg: D3DOverrider => "C:\Users\Vanhelsing\Desktop\D3DOverrider By Artutoriales\D3DOverriderWrapper.exe" /s
MSCONFIG\startupreg: DAEMON Tools Lite Automount => "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
MSCONFIG\startupreg: DelaypluginInstall => 
MSCONFIG\startupreg: deskTannenbaum => 
MSCONFIG\startupreg: Desktop Lighting Tree => 
MSCONFIG\startupreg: DesktopXmasTree => 
MSCONFIG\startupreg: DFX => C:\Program Files (x86)\DFX\DFX.exe -startup
MSCONFIG\startupreg: DivXUpdate => 
MSCONFIG\startupreg: EADM => 
MSCONFIG\startupreg: ETDCtrl => %ProgramFiles%\Elantech\ETDCtrl.exe
MSCONFIG\startupreg: eTree => 
MSCONFIG\startupreg: FAZ Start => 
MSCONFIG\startupreg: Funny Christmas Tree => 
MSCONFIG\startupreg: GUDelayStartup => "C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe" -delayrun
MSCONFIG\startupreg: HEB Start => 
MSCONFIG\startupreg: HotKeysCmds => C:\windows\system32\hkcmd.exe
MSCONFIG\startupreg: HP Software Update => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
MSCONFIG\startupreg: IgfxTray => C:\windows\system32\igfxtray.exe
MSCONFIG\startupreg: InstantBurn => C:\PROGRA~2\CyberLink\InstantBurn\Win2K\IBurn.exe
MSCONFIG\startupreg: iSkysoft Helper Compact.exe => C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: Little Tree => 
MSCONFIG\startupreg: LiveChristmasTree => 
MSCONFIG\startupreg: Lync => "C:\Program Files\Microsoft Office\Office16\lync.exe" /fromrunkey
MSCONFIG\startupreg: Magic Tree => 
MSCONFIG\startupreg: Malwarebytes Anti-Exploit => 
MSCONFIG\startupreg: PCAppStore_AppStoreDeskTool => 
MSCONFIG\startupreg: Persistence => C:\windows\system32\igfxpers.exe
MSCONFIG\startupreg: Plasticine Tree => 
MSCONFIG\startupreg: Power2GoExpress10 => "C:\Program Files (x86)\CyberLink\Power2Go10\Power2GoExpress10.exe" /Startup
MSCONFIG\startupreg: PowerDVD14Agent => 
MSCONFIG\startupreg: PowerDVD15Agent => 
MSCONFIG\startupreg: PowerDVD17Agent => "C:\Program Files (x86)\CyberLink\PowerDVD17\PowerDVD17Agent.exe"
MSCONFIG\startupreg: PWRISOVM.EXE => 
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: RazerCortex => "C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncher.exe" -autorun
MSCONFIG\startupreg: Real Christmas Globe => 
MSCONFIG\startupreg: Red Christmas Tree => 
MSCONFIG\startupreg: SDTray => 
MSCONFIG\startupreg: SFAUpdater => 
MSCONFIG\startupreg: Skype => 
MSCONFIG\startupreg: Smart File Advisor => 
MSCONFIG\startupreg: Snowman Garland => 
MSCONFIG\startupreg: Steam => 
MSCONFIG\startupreg: SunJavaUpdateSched => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
MSCONFIG\startupreg: SwitchBoard => 
MSCONFIG\startupreg: TNOD UP => "C:\Program Files (x86)\TNod\TNODUP.exe" /i
MSCONFIG\startupreg: TrayServer => C:\Program Files (x86)\MAGIX\Video_deluxe_17_Premium_Version_para_descargar\TrayServer_es.exe
MSCONFIG\startupreg: TU Go => 
MSCONFIG\startupreg: TUT Start => 
MSCONFIG\startupreg: uTorrent => "C:\Users\Vanhelsing\AppData\Roaming\uTorrent\uTorrent.exe"
MSCONFIG\startupreg: Win Christmas Tree => 
MSCONFIG\startupreg: Wondershare Helper Compact.exe => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
MSCONFIG\startupreg: XKQ Start => 
MSCONFIG\startupreg: YouCam Service7 => "C:\Program Files (x86)\CyberLink\YouCam7\YouCamService7.exe" /s

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{1B6C23A7-AA30-45CF-A65D-A758D6EF7FE2}] => (Allow) C:\Windows\System32\SUPDSvc.exe (Samsung Electronics CO., LTD. -> Samsung Electronics CO., LTD.)
FirewallRules: [{0E7F8E68-55F6-4237-A12F-CD8984D2C88C}] => (Allow) C:\Windows\System32\SUPDSvc.exe (Samsung Electronics CO., LTD. -> Samsung Electronics CO., LTD.)
FirewallRules: [{0748DF4C-B837-49A9-A1F5-A6FE2FC49624}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Scan Driver\USDAgent.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
FirewallRules: [{C60C3170-60F2-4E0E-9CC4-60C6A3DDF49A}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Scan Driver\USDAgent.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
FirewallRules: [{43BA01F2-1DB9-44B2-9674-D5CC229613B0}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Scan Driver\ICCUpdater.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{3534AFE8-D387-468F-8604-02B5BD9740B3}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Scan Driver\ICCUpdater.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{0BBB1EAF-A893-4044-B3C0-E5220E4818C3}] => (Allow) LPort=48113
FirewallRules: [{E731CCD2-AAE0-4FE9-8379-A3AF14B67E73}] => (Allow) LPort=48114
FirewallRules: [TCP Query User{1D789EA8-984E-473E-9FFF-576F4D608263}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{50E9950B-7888-48CF-9F59-F48590C01B2D}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F9826B03-5842-411D-BAC6-A4BCFD83E893}] => (Allow) LPort=8318
FirewallRules: [{08E862E1-464E-4257-A22D-657872C409E8}] => (Allow) C:\Users\Vanhelsing\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.) [File not signed]
FirewallRules: [{E9522AAF-1190-480D-9B6A-2F00EEA431D5}] => (Allow) C:\Users\Vanhelsing\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.) [File not signed]
FirewallRules: [{C03ED624-0A1C-4357-ACA2-C94C06035A17}] => (Allow) LPort=1688
FirewallRules: [{FEA1BB96-B1E6-4DF4-9529-BA668FEC986A}] => (Allow) LPort=8370
FirewallRules: [{C74A87B6-8E65-44BA-ADC1-8386FBFC144C}] => (Allow) LPort=8370
FirewallRules: [{E1AADEC4-0248-4A0C-9F75-90D56B40533F}] => (Allow) LPort=8370
FirewallRules: [{F4942382-937B-4A59-AA7C-A7DEF96F156D}] => (Allow) LPort=8370
FirewallRules: [{0A0C68DD-58BB-4A5B-9A14-0E993803819F}] => (Allow) LPort=8393
FirewallRules: [{3126ED66-B411-442C-B9C8-109B552A65B2}] => (Allow) LPort=8393
FirewallRules: [{D76F2BD3-2769-4E3A-846E-B255E055BFCC}] => (Allow) LPort=8390
FirewallRules: [{56A2A065-C032-4865-BD7A-08312718E8E4}] => (Allow) LPort=8390
FirewallRules: [TCP Query User{7400E09A-9742-448D-921D-D875917FD59F}C:\games\left 4 dead 2\left 4 dead 2\left4dead2.exe] => (Allow) C:\games\left 4 dead 2\left 4 dead 2\left4dead2.exe () [File not signed]
FirewallRules: [UDP Query User{F0CC02F8-C4CF-4231-8CAA-CC7FC2881D51}C:\games\left 4 dead 2\left 4 dead 2\left4dead2.exe] => (Allow) C:\games\left 4 dead 2\left 4 dead 2\left4dead2.exe () [File not signed]
FirewallRules: [{B8292142-2E5F-4F8A-B0D5-4BB866D01DD3}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{245E4FE0-2AE2-447D-9801-D52B5ABC0E91}] => (Allow) C:\Users\Vanhelsing\Documents\Programas Portables\Winamp 5.6.6.3516 Repack Portable\Winamp 5.6.6.3516 Repack Portable\App\Winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.)
FirewallRules: [{D152CAF0-C900-40E6-A05C-2EDBDFFC7B90}] => (Allow) C:\Users\Vanhelsing\Documents\Programas Portables\Winamp 5.6.6.3516 Repack Portable\Winamp 5.6.6.3516 Repack Portable\App\Winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.)
FirewallRules: [{715C6129-59C2-405B-BB84-D4B181AC4588}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{51170EF5-F602-4262-8AE3-C97FB6FCD640}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{660BC8F9-1EBE-411D-9E62-750CCDC21CD1}] => (Allow) LPort=1688
FirewallRules: [TCP Query User{4F5693AF-2C93-4775-BD6F-9DCA79E09BE5}C:\program files (x86)\left 4 dead\left4dead.exe] => (Allow) C:\program files (x86)\left 4 dead\left4dead.exe () [File not signed]
FirewallRules: [UDP Query User{9950ABC1-1075-4A41-8465-DDC493372549}C:\program files (x86)\left 4 dead\left4dead.exe] => (Allow) C:\program files (x86)\left 4 dead\left4dead.exe () [File not signed]
FirewallRules: [TCP Query User{C2FEEBBB-3952-4130-8A89-75C4BCF4E10B}C:\program files (x86)\ea games\need for speed most wanted\nfs13.exe] => (Allow) C:\program files (x86)\ea games\need for speed most wanted\nfs13.exe (Electronic Arts) [File not signed]
FirewallRules: [UDP Query User{BC35A83E-49EA-4431-9BE6-7481E913A20C}C:\program files (x86)\ea games\need for speed most wanted\nfs13.exe] => (Allow) C:\program files (x86)\ea games\need for speed most wanted\nfs13.exe (Electronic Arts) [File not signed]
FirewallRules: [{6B902F08-896D-4A53-B08F-D3AB4A0429D0}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{D22B3006-B70D-4D06-8DEE-10348E9E7FD1}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{42E1E404-E310-4707-9DAD-E2880F3E1B27}] => (Allow) C:\Program Files (x86)\Electronic Arts\Battlefield Bad Company 2\BFBC2Updater.exe (EA Digital Illusions CE AB -> EA Digital Illusions CE AB)
FirewallRules: [{68F46698-CA93-411C-ACA7-0CD8E37447F0}] => (Allow) C:\Program Files (x86)\Electronic Arts\Battlefield Bad Company 2\BFBC2Updater.exe (EA Digital Illusions CE AB -> EA Digital Illusions CE AB)
FirewallRules: [{FBDB02AB-A989-46B9-A1C9-E3194C210253}] => (Allow) C:\Program Files (x86)\Opera\60.0.3255.59\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{CEFB5E82-F6E6-408C-B0CD-F3983D8D94AC}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{A271A279-3885-4E58-AFDE-6A7C1E901BA0}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{50D7B184-06FA-441B-922D-DE93F9528331}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{EE812D5F-9A27-4839-AF5F-75BF283332A1}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{2C705538-2BA3-4534-8DA1-9D471DC08FD4}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.)

==================== Restore Points =========================

26-04-2019 22:48:47 Installed Project64 1.6
27-04-2019 00:59:10 Removed Project64 1.6
28-04-2019 13:45:42 Instalación del paquete de controladores de dispositivo: Silicon Motion Inc. Dispositivos de imagen
30-04-2019 23:49:06 Windows Update

==================== Faulty Device Manager Devices =============

Name: Dispositivo periférico Bluetooth
Description: Dispositivo periférico Bluetooth
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Dispositivo periférico Bluetooth
Description: Dispositivo periférico Bluetooth
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Dispositivo periférico Bluetooth
Description: Dispositivo periférico Bluetooth
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (05/01/2019 03:45:01 AM) (Source: Windows Search Service) (EventID: 10021) (User: )
Description: No se pudo obtener la información del Registro del contador de rendimiento de WSearchIdxPi para la instancia   debido al siguiente error: La operación se completó correctamente.   0x0.

Error: (05/01/2019 03:43:59 AM) (Source: Windows Search Service) (EventID: 3007) (User: )
Description: No se puede inicializar la supervisión de rendimiento para el objeto Recopilador; no se cargaron los contadores o no se pudo abrir el objeto de memoria compartida. Esto sólo afecta a la disponibilidad de contadores del rendimiento. Reinicie el equipo.

Contexto: aplicación , catálogo SystemIndex

Error: (05/01/2019 03:43:54 AM) (Source: Windows Search Service) (EventID: 3006) (User: )
Description: No se puede inicializar la supervisión del rendimiento para el servicio Recopilador; no se cargaron los contadores o no se puede abrir el objeto de memoria compartida. Esto sólo afecta a la disponibilidad de contadores del rendimiento. Reinicie el equipo.

Error: (04/30/2019 05:41:48 PM) (Source: Windows Search Service) (EventID: 10021) (User: )
Description: No se pudo obtener la información del Registro del contador de rendimiento de WSearchIdxPi para la instancia   debido al siguiente error: La operación se completó correctamente.   0x0.

Error: (04/30/2019 05:41:32 PM) (Source: Windows Search Service) (EventID: 3007) (User: )
Description: No se puede inicializar la supervisión de rendimiento para el objeto Recopilador; no se cargaron los contadores o no se pudo abrir el objeto de memoria compartida. Esto sólo afecta a la disponibilidad de contadores del rendimiento. Reinicie el equipo.

Contexto: aplicación , catálogo SystemIndex

Error: (04/30/2019 05:41:32 PM) (Source: Windows Search Service) (EventID: 3006) (User: )
Description: No se puede inicializar la supervisión del rendimiento para el servicio Recopilador; no se cargaron los contadores o no se puede abrir el objeto de memoria compartida. Esto sólo afecta a la disponibilidad de contadores del rendimiento. Reinicie el equipo.

Error: (04/30/2019 05:36:23 PM) (Source: Windows Search Service) (EventID: 10021) (User: )
Description: No se pudo obtener la información del Registro del contador de rendimiento de WSearchIdxPi para la instancia   debido al siguiente error: La operación se completó correctamente.   0x0.

Error: (04/30/2019 05:36:15 PM) (Source: Windows Search Service) (EventID: 3007) (User: )
Description: No se puede inicializar la supervisión de rendimiento para el objeto Recopilador; no se cargaron los contadores o no se pudo abrir el objeto de memoria compartida. Esto sólo afecta a la disponibilidad de contadores del rendimiento. Reinicie el equipo.

Contexto: aplicación , catálogo SystemIndex


System errors:
=============
Error: (05/01/2019 03:45:09 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: El siguiente controlador de inicio del sistema o de inicio del arranque no se cargó correctamente: 
hwinterface

Error: (05/01/2019 03:42:56 AM) (Source: Microsoft-Windows-BitLocker-Driver) (EventID: 24620) (User: NT AUTHORITY)
Description: Comprobar volumen cifrado: no se puede leer la información de volumen en \\?\Volume{27c67b14-5d51-11e3-a631-806e6f6e6963}.

Error: (05/01/2019 03:42:02 AM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Se bloqueó la carga de \SystemRoot\SysWow64\Drivers\hwinterface.sys por una incompatibilidad con este sistema. Póngase en contacto con el fabricante del software para obtener una versión compatible del controlador.

Error: (04/30/2019 05:41:51 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: El siguiente controlador de inicio del sistema o de inicio del arranque no se cargó correctamente: 
hwinterface

Error: (04/30/2019 05:41:29 PM) (Source: Microsoft-Windows-BitLocker-Driver) (EventID: 24620) (User: NT AUTHORITY)
Description: Comprobar volumen cifrado: no se puede leer la información de volumen en \\?\Volume{27c67b14-5d51-11e3-a631-806e6f6e6963}.

Error: (04/30/2019 05:41:12 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Se bloqueó la carga de \SystemRoot\SysWow64\Drivers\hwinterface.sys por una incompatibilidad con este sistema. Póngase en contacto con el fabricante del software para obtener una versión compatible del controlador.

Error: (04/30/2019 05:36:34 PM) (Source: WMPNetworkSvc) (EventID: 14332) (User: )
Description: El servicio "WMPNetworkSvc" no se puede iniciar correctamente debido al error "0x80004005" en CoCreateInstance(CLSID_UPnPDeviceFinder). Compruebe que el servicio UPnPHost esté en ejecución y que el componente UPnPHost de Windows esté instalado correctamente.

Error: (04/30/2019 05:36:28 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: El siguiente controlador de inicio del sistema o de inicio del arranque no se cargó correctamente: 
hwinterface


Windows Defender:
===================================
Date: 2019-04-22 22:14:39.370
Description: 
El examen de Windows Defender se detuvo antes de completarse.
Id. de examen:{C8399470-B5B4-4EF1-B419-D775BACB13D8}
Tipo de examen:AntiSpyware
Par√°metros de examen:Examen r√°pido
Usuario:PICHULODANCE\Vanhelsing

Date: 2019-04-12 22:34:47.565
Description: 
El examen de Windows Defender se detuvo antes de completarse.
Id. de examen:{E6CDA339-094C-425B-A28A-6530B682E9A7}
Tipo de examen:AntiSpyware
Par√°metros de examen:Examen r√°pido
Usuario:PICHULODANCE\Vanhelsing

Date: 2019-04-06 13:29:59.884
Description: 
Windows Defender detectó spyware u otro software potencialmente no deseado.
Para obtener más información, consulte lo siguiente:
http://go.microsoft.com/fwlink/?linkid=37020&name=BrowserModifier:Win32/Zwangi&threatid=144384
Nombre:BrowserModifier:Win32/Zwangi
Id.:144384
Gravedad:Alta
Categoría:Modificador de explorador
Ruta de acceso encontrada:file:C:\Users\Vanhelsing\AppData\Roaming\Anvsoft\Common\youtube-dl.exe;regkey:HKLM\SOFTWARE\Wow6432Node\MICROSOFT\WINDOWS\CURRENTVERSION\SHAREDDLLS\\C:\Users\Vanhelsing\AppData\Roaming\Anvsoft\Common\youtube-dl.exe;shareddll:HKLM\SOFTWARE\Wow6432Node\MICROSOFT\WINDOWS\CURRENTVERSION\SHAREDDLLS\\C:\Users\Vanhelsing\AppData\Roaming\Anvsoft\Common\youtube-dl.exe
Tipo de detección:Concreto
Origen de detección:Sistema
Estado:Desconocido
Usuario:NT AUTHORITY\Servicio de red
Nombre de proceso:c:\program files\windows defender\MpCmdRun.exe

Date: 2014-02-05 23:07:03.486
Description: 
Windows Defender detectó spyware u otro software potencialmente no deseado.
Para obtener más información, consulte lo siguiente:
http://go.microsoft.com/fwlink/?linkid=37020&name=MonitoringTool:Win32/Ardamax&threatid=14849
Nombre:MonitoringTool:Win32/Ardamax
Id.:14849
Gravedad:Grave
Categoría:Software de supervisión
Ruta de acceso encontrada:containerfile:C:\Users\Vanhelsing\Desktop\Ardamax 4.0.1.rar;file:C:\Users\Vanhelsing\Desktop\Ardamax 4.0.1.rar->setup_akl.exe;filelocalcopy:C:\ProgramData\Microsoft\Windows Defender\LocalCopy\{248882FC-574D-48BD-9D36-E12CD9881257}-Ardamax 4.0.1.rar;filelocalcopy:C:\ProgramData\Microsoft\Windows Defender\LocalCopy\{7C5725D9-164C-46BD-BD68-5D450218BA08}-Ardamax 4.0.1.rar;webfile:C:\ProgramData\Microsoft\Windows Defender\LocalCopy\{248882FC-574D-48BD-9D36-E12CD9881257}-Ardamax 4.0.1.rar|http://download1215.mediafire.com/3zzt9sv9geqg/vrz9mx4zwls46x9/Ardamax+4.0.1.rar;webfile:C:\ProgramData\Microsoft\Windows Defender\LocalCopy\{7C5725D9-164C-46BD-BD68-5D450218BA08}-Ardamax 4.0.1.rar|http://download717.mediafire.com/7joncgvlf29g/vrz9mx4zwls46x9/Ardamax+4.0.1.rar;webfile:C:\Users\Vanhelsing\Desktop\Ardamax 4.0.1.rar|http://download1215.mediafire.com/3zzt9sv9geqg/vrz9mx4zwls46x9/Ardamax+4.0.1.rar;webfile:C:\Users\Vanhelsing\Desktop\Ardamax 4.0.1.rar|http://download717.mediafire.com/7joncgvlf29g/vrz9mx4zwls46x9/Ardam
Tipo de detección:Concreto
Origen de detección:Descargas y datos adjuntos
Estado:Desconocido
Usuario:Vanhelsing-PC\Vanhelsing
Nombre de proceso:C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

Date: 2014-02-05 23:04:47.579
Description: 
Windows Defender detectó spyware u otro software potencialmente no deseado.
Para obtener más información, consulte lo siguiente:
http://go.microsoft.com/fwlink/?linkid=37020&name=MonitoringTool:Win32/Ardamax&threatid=14849
Nombre:MonitoringTool:Win32/Ardamax
Id.:14849
Gravedad:Grave
Categoría:Software de supervisión
Ruta de acceso encontrada:containerfile:C:\Users\Vanhelsing\Desktop\Ardamax 4.0.1.rar;file:C:\Users\Vanhelsing\Desktop\Ardamax 4.0.1.rar->setup_akl.exe;filelocalcopy:C:\ProgramData\Microsoft\Windows Defender\LocalCopy\{248882FC-574D-48BD-9D36-E12CD9881257}-Ardamax 4.0.1.rar;webfile:C:\ProgramData\Microsoft\Windows Defender\LocalCopy\{248882FC-574D-48BD-9D36-E12CD9881257}-Ardamax 4.0.1.rar|http://download1215.mediafire.com/3zzt9sv9geqg/vrz9mx4zwls46x9/Ardamax+4.0.1.rar;webfile:C:\Users\Vanhelsing\Desktop\Ardamax 4.0.1.rar|http://download1215.mediafire.com/3zzt9sv9geqg/vrz9mx4zwls46x9/Ardamax+4.0.1.rar
Tipo de detección:Concreto
Origen de detección:Descargas y datos adjuntos
Estado:Desconocido
Usuario:Vanhelsing-PC\Vanhelsing
Nombre de proceso:C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

Date: 2014-02-05 22:58:14.381
Description: 
Windows Defender encontró un error al tomar medidas ante spyware u otro software potencialmente no deseado.
Para obtener más información, consulte lo siguiente:
http://go.microsoft.com/fwlink/?linkid=37020&name=MonitoringTool:Win32/Ardamax&threatid=14849
Usuario:\
Nombre:MonitoringTool:Win32/Ardamax
Id.:14849
Gravedad:Grave
Categoría:Software de supervisión
Ruta de acceso:
Acción:Quitar
Código de error:0x80508023
Descripción de error:El programa no encontró spyware ni cualquier otro software potencialmente no deseado en este equipo. 
Estado:

CodeIntegrity:
===================================

Date: 2019-02-23 01:33:52.484
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Users\VANHEL~1\AppData\Local\Temp\mc210E4.tmp porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo da√Īado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

Date: 2019-02-23 01:33:52.405
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Users\VANHEL~1\AppData\Local\Temp\mc210E4.tmp porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo da√Īado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

Date: 2018-12-28 00:56:39.779
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\SMCLpav\Pav2WSC.exe porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

Date: 2018-12-28 00:56:39.715
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\SMCLpav\Pav2WSC.exe porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

Date: 2018-12-28 00:56:39.556
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\SMCLpav\Pav2WSC.exe porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

Date: 2018-12-28 00:53:08.641
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\SMCLpav\Pav2WSC.exe porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

Date: 2018-12-28 00:53:08.594
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\SMCLpav\Pav2WSC.exe porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

Date: 2018-12-28 00:53:08.516
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\SMCLpav\Pav2WSC.exe porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

==================== Memory info =========================== 

BIOS: Phoenix Technologies Ltd. 04PA.M006.20110615.XW 06/15/2011
Motherboard: SAMSUNG ELECTRONICS CO., LTD. RV411/RV511/E3511/S3511/RV711/E3411
Processor: Intel(R) Pentium(R) CPU P6200 @ 2.13GHz
Percentage of memory in use: 92%
Total physical RAM: 2932.56 MB
Available physical RAM: 205.48 MB
Total Virtual: 5863.27 MB
Available Virtual: 2596.14 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:443.89 GB) (Free:215.98 GB) NTFS ==>[system with boot components (obtained from drive)]

\\?\Volume{2156f7c5-ae71-11e0-a584-806e6f6e6963}\ (SYSTEM) (Fixed) (Total:0.1 GB) (Free:0.04 GB) NTFS
\\?\Volume{27c67b14-5d51-11e3-a631-806e6f6e6963}\ () (Fixed) (Total:0 GB) (Free:0 GB) 
\\?\Volume{aa7597c7-69de-11e9-b21e-806e6f6e6963}\ () () (Total:0 GB) (Free:0 GB) 

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 0C4E138D)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=443.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=21.8 GB) - (Type=27)

==================== End of Addition.txt ============================
#9

A partir de de donde te puse, falta todo del primer log, del frst,txt

#10

Perdón, lo vuelvo a pegar, seguramente le di a cancelar…:expressionless:

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-05-01 11:36 - 2019-01-13 23:19 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2019-05-01 03:49 - 2009-07-14 01:45 - 000022624 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-05-01 03:49 - 2009-07-14 01:45 - 000022624 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-05-01 03:43 - 2019-03-18 01:21 - 000223656 _____ C:\Windows\SysWOW64\GDIPFONTCACHEV1.DAT
2019-05-01 03:42 - 2009-07-14 02:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-05-01 03:10 - 2009-07-14 00:20 - 000000000 ____D C:\Windows\inf
2019-05-01 02:20 - 2019-01-12 02:40 - 000000000 ____D C:\Users\Vanhelsing\AppData\Roaming\TeamViewer
2019-04-30 20:33 - 2016-06-09 01:59 - 000000000 ____D C:\Users\Vanhelsing\AppData\Roaming\AIMP
2019-04-30 18:13 - 2019-03-14 00:31 - 000002184 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-04-28 20:16 - 2019-03-19 22:59 - 000000000 ____D C:\Users\Vanhelsing\AppData\Local\CrashDumps
2019-04-28 19:32 - 2018-05-20 01:53 - 000000000 ____D C:\Users\Vanhelsing\AppData\Roaming\uTorrent
2019-04-28 10:52 - 2013-12-07 01:09 - 002212656 _____ (ELAN Microelectronics Corp.) C:\Windows\ETDUninst.dll
2019-04-28 10:49 - 2011-07-14 04:36 - 000000000 ____D C:\Windows\SysWOW64\RTCOM
2019-04-28 01:26 - 2017-09-26 20:18 - 000000000 ____D C:\Program Files (x86)\Pro Evolution Soccer 2017
2019-04-28 00:43 - 2014-10-19 00:13 - 000000000 ____D C:\Users\Vanhelsing\AppData\Roaming\Audacity
2019-04-27 21:14 - 2011-07-14 04:56 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2019-04-27 03:30 - 2013-12-06 18:02 - 000000000 ____D C:\Games
2019-04-27 02:24 - 2013-12-07 03:07 - 000006144 ____H C:\Users\Vanhelsing\Desktop\photothumb.db
2019-04-26 23:01 - 2019-01-14 00:02 - 000000935 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 14.lnk
2019-04-26 03:20 - 2016-07-17 02:13 - 000003862 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1468732425
2019-04-26 03:20 - 2016-07-17 02:12 - 000000000 ____D C:\Program Files (x86)\Opera
2019-04-25 21:34 - 2011-07-14 20:18 - 000715282 _____ C:\Windows\system32\perfh00A.dat
2019-04-25 21:34 - 2011-07-14 20:18 - 000148364 _____ C:\Windows\system32\perfc00A.dat
2019-04-25 21:34 - 2009-07-14 02:13 - 001629846 _____ C:\Windows\system32\PerfStringBackup.INI
2019-04-25 01:55 - 2013-12-05 22:13 - 000000000 ____D C:\Archivos de programa
2019-04-25 01:34 - 2013-12-06 18:25 - 000000000 ____D C:\Users\Vanhelsing\AppData\Roaming\AnvSoft
2019-04-23 22:53 - 2017-02-27 23:14 - 000004498 _____ C:\Windows\SysWOW64\ealregsnapshot1.reg
2019-04-23 22:39 - 2011-07-14 04:35 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2019-04-23 01:53 - 2016-09-20 00:59 - 000000000 ____D C:\Users\Vanhelsing\Documents\Camtasia Studio
2019-04-23 01:50 - 2015-12-02 17:35 - 000000000 ____D C:\Users\Vanhelsing\Documents\Torrents para descargar
2019-04-23 01:48 - 2019-01-13 23:02 - 000000000 ____D C:\Users\Vanhelsing\AppData\Roaming\CD Label Designer
2019-04-22 22:23 - 2018-12-09 21:59 - 000000000 ____D C:\Program Files (x86)\PlayWay SA
2019-04-20 20:12 - 2011-07-14 04:48 - 000000000 ____D C:\ProgramData\SAMSUNG
2019-04-20 03:16 - 2011-07-14 04:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
2019-04-20 03:16 - 2011-07-14 04:40 - 000000000 ____D C:\Program Files (x86)\Samsung
2019-04-20 03:14 - 2014-09-28 01:19 - 000000000 ____D C:\Users\Vanhelsing\AppData\Local\Samsung
2019-04-18 02:16 - 2013-12-05 11:05 - 000000000 ____D C:\Users\Vanhelsing
2019-04-16 23:33 - 2014-06-02 18:05 - 000000000 ____D C:\ProgramData\Package Cache
2019-04-16 23:20 - 2018-09-08 12:39 - 000000000 ___HD C:\Windows\msdownld.tmp
2019-04-16 23:20 - 2013-12-06 00:32 - 000000000 ____D C:\Windows\SysWOW64\directx
2019-04-16 03:19 - 2013-12-11 23:07 - 000000000 ____D C:\Users\Vanhelsing\Documents\Youcam
2019-04-16 01:14 - 2013-12-05 19:27 - 000000000 ____D C:\Users\Vanhelsing\Documents\C.VITAE
2019-04-14 23:54 - 2014-01-11 02:17 - 000000000 ____D C:\Users\Vanhelsing\AppData\Local\ElevatedDiagnostics
2019-04-12 22:53 - 2019-03-21 16:22 - 000000000 ____D C:\Users\Vanhelsing\AppData\Local\Adobe
2019-04-12 22:53 - 2018-03-14 02:26 - 000004510 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
2019-04-12 22:53 - 2016-12-14 22:48 - 000004320 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2019-04-12 22:53 - 2013-12-11 23:38 - 000842296 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
2019-04-12 22:53 - 2013-12-11 23:38 - 000175160 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2019-04-12 22:53 - 2013-12-11 23:37 - 000000000 ____D C:\Windows\system32\Macromed
2019-04-12 00:03 - 2011-02-11 16:57 - 000000000 ____D C:\Windows\Panther
2019-04-11 22:55 - 2009-07-14 02:32 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2019-04-10 19:42 - 2018-11-09 22:58 - 005461880 _____ C:\Windows\system32\FNTCACHE.DAT
2019-04-10 17:30 - 2013-12-05 22:40 - 001578856 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2019-04-10 17:29 - 2013-12-05 18:15 - 000000000 ____D C:\Windows\system32\MRT
2019-04-10 17:11 - 2013-12-05 18:14 - 131129288 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-04-09 23:00 - 2019-01-17 22:00 - 000000000 ____D C:\Users\Vanhelsing\Documents\W7
2019-04-09 00:26 - 2011-07-14 04:40 - 000000000 ____D C:\ProgramData\Temp
2019-04-09 00:25 - 2015-11-03 00:49 - 000000282 __RSH C:\ProgramData\ntuser.pol
2019-04-05 22:40 - 2015-08-23 00:43 - 000000008 __RSH C:\Users\Vanhelsing\ntuser.pol
2019-04-05 22:30 - 2009-07-13 23:34 - 000000765 _____ C:\Windows\win.ini
2019-04-05 21:37 - 2019-03-19 12:00 - 000000000 ____D C:\Users\Administrador.Vanhelsing-PC\AppData\Local\Razer
2019-04-02 20:33 - 2016-02-02 00:33 - 000021538 _____ C:\Windows\system32\--traceoff
2019-04-02 20:20 - 2017-09-18 23:18 - 000000145 _____ C:\Windows\system32\Drivers\etc\hosts_bak_888
2019-04-02 02:15 - 2019-03-14 00:30 - 000000000 ____D C:\Program Files (x86)\Google
2019-04-02 01:55 - 2019-03-18 01:17 - 000002899 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk

==================== Files in the root of some directories =======

2019-02-15 23:24 - 2019-02-16 00:55 - 000000043 _____ () C:\Users\Vanhelsing\AppData\Roaming\MCVi2UserDetail.ini
2014-08-12 01:16 - 2014-08-12 01:23 - 000016952 ____T (Un4seen Developments) C:\Users\Vanhelsing\AppData\Roaming\Microsoft\1eaadjc.dll
2014-08-12 01:16 - 2014-08-12 01:23 - 000018724 ____T () C:\Users\Vanhelsing\AppData\Roaming\Microsoft\bass.dll
2014-08-12 01:16 - 2014-08-12 01:23 - 000014392 ____T (Un4seen Developments) C:\Users\Vanhelsing\AppData\Roaming\Microsoft\kfgresk.dll
2014-08-12 01:16 - 2014-08-12 01:23 - 000013984 ____T () C:\Users\Vanhelsing\AppData\Roaming\Microsoft\mjcriu.dll
2014-08-12 01:16 - 2014-08-12 01:23 - 000010808 ____T (Un4seen Developments) C:\Users\Vanhelsing\AppData\Roaming\Microsoft\peaadje.dll
2014-08-12 01:16 - 2014-08-12 01:23 - 000026200 ____T ((: JOBnik! :) [Arthur Aminov, ISRAEL]) C:\Users\Vanhelsing\AppData\Roaming\Microsoft\qwadjb.dll
2014-08-12 01:16 - 2014-08-12 01:23 - 000015416 ____T (Un4seen Developments) C:\Users\Vanhelsing\AppData\Roaming\Microsoft\rsaadjd.dll

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)


LastRegBack: 2019-04-23 12:26
==================== End of FRST.txt ============================

Paso a comentar un detalle que no quiero dejar pasar, para que no aya malos entendidos en el tema, actualmente no tengo AV por un tema de que como tengo W7 y va a quedar sin soporte el 14-01-2020, por el momento no le veo mucho sentido tenerlo instalado y sobre los cracks, es cierto, tengo demasiados, pero esos programas como juegos los uso habitualmente. Igualmente al crack que mencionas modifica el Host, se que son peligrosos para el buen funcionamiento del sistema. Gracias por la asistencia y espero los siguiente pasos a seguir.

#11

Bueno,esto no tiene logica …todo lo contrario, en un sistema que no va a recibir actualizaciones, que por ahora si las recibe, se hace mas necesario un antivirus…

Y en un sistema con tantos keygens y dem√°s es dificil saber si el estado general del pc si no se eliminan

Bien… y ahora sigue estos pasos, MUY Importante ~ Realiza una copia de seguridad del registro :

  • Para hacerlo descarga Delfix en tu escritorio.

  • Doble clic para ejecutarlo.(Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona "Ejecutar como Administrador.")

  • Atenci√≥n, ahora marca/selecciona √ļnicamente la casilla "Create registry backup", las dem√°s NO

  • Pulsar en Run.

Se abrir√° el informe (DelFix.txt), gu√°rdalo por si fuera necesario y cierra la herramienta.


En el equipo con los demas programas cerrados:

Inicio >>> Ejecutar >>>Escribes notepad.exe.

Ahora copia y pega estos archivos dentro del Notepad:


Start
CreateRestorePoint:
CloseProcesses:

GroupPolicy: Restriction - Chrome <==== ATTENTION
Task: {1CEB00B1-B49D-43BF-B47B-53ECB1F44ECB} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
C:\Program Files\AVAST Software
Task: {8ABCCEC9-A5A5-4E55-922C-86449E31CE43} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\DADUpdater.exe
C:\Program Files\Common Files\McAfee
Task: {E52302C0-570A-4C81-AC97-6537C9949AA3} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\DADUpdater.exe
Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => No File 
Winsock: Catalog5 09 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => No File 
Winsock: Catalog5-x64 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => No File 
Winsock: Catalog5-x64 09 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => No File 
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000 -> DefaultScope {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = 
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [53904 2018-05-17] (AVAST Software s.r.o. -> The OpenVPN Project)
S3 cpuz148; \??\C:\Windows\temp\cpuz148\cpuz148_x64.sys [X]
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
Shortcut: C:\Users\Vanhelsing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ\Online Help.lnk -> hxxp://www.virtualdj.com/wiki
Shortcut: C:\Users\Vanhelsing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ\www.virtualdj.com.lnk -> hxxp://www.virtualdj.com
AlternateDataStreams: C:\ProgramData\Temp:5C321E34 [125

HOSTS:
REMOVEPROXY:
EMPTYTEMP:
CMD: netsh winsock reset
CMD: ipconfig /renew
CMD: ipconfig /flushdns
CMD: bitsadmin /reset /allusers
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
END

Lo guardas bajo el nombre de fixlist.txt en el escritorio <<< Esto es muy importante.<<

Nota: Es importante que la Hta Frst.exe y fixlist.txt se encuentren en la misma ubicación (escritorio) o si no no trabajara.

  • Y ahora usa esta Faq de Windows ¬ŅC√≥mo iniciar Windows en Modo Seguro?, para trabajar desde ese modo de windows. (Usa el Metodo 1 y si no puedes, usa el Metodo 2)

  • Ejecutas Frst.exe.

  • Presionas el bot√≥n Fix y aguardas a que termine.

  • La Herramienta guardara el reporte en tu escritorio (Fixlog.txt).

Lo pegas en tu próxima respuesta, comentado como va el pc

#12

Hola

Te pego el Log

Fix result of Farbar Recovery Scan Tool (x64) Version: 01-05.2019
Ran by Vanhelsing (02-05-2019 21:54:41) Run:1
Running from C:\Users\Vanhelsing\Desktop
Loaded Profiles: Vanhelsing (Available Profiles: Vanhelsing & Administrador)
Boot Mode: Safe Mode (minimal)
==============================================

fixlist content:
*****************
Start
CreateRestorePoint:
CloseProcesses:

GroupPolicy: Restriction - Chrome <==== ATTENTION
Task: {1CEB00B1-B49D-43BF-B47B-53ECB1F44ECB} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
C:\Program Files\AVAST Software
Task: {8ABCCEC9-A5A5-4E55-922C-86449E31CE43} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\DADUpdater.exe
C:\Program Files\Common Files\McAfee
Task: {E52302C0-570A-4C81-AC97-6537C9949AA3} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\DADUpdater.exe
Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => No File 
Winsock: Catalog5 09 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => No File 
Winsock: Catalog5-x64 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => No File 
Winsock: Catalog5-x64 09 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => No File 
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-3507022562-1330472618-3652623963-1000 -> DefaultScope {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = 
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [53904 2018-05-17] (AVAST Software s.r.o. -> The OpenVPN Project)
S3 cpuz148; \??\C:\Windows\temp\cpuz148\cpuz148_x64.sys [X]
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
Shortcut: C:\Users\Vanhelsing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ\Online Help.lnk -> hxxp://www.virtualdj.com/wiki
Shortcut: C:\Users\Vanhelsing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ\www.virtualdj.com.lnk -> hxxp://www.virtualdj.com
AlternateDataStreams: C:\ProgramData\Temp:5C321E34 [125

HOSTS:
REMOVEPROXY:
EMPTYTEMP:
CMD: netsh winsock reset
CMD: ipconfig /renew
CMD: ipconfig /flushdns
CMD: bitsadmin /reset /allusers
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
END
*****************

Error: Restore point can only be created in normal mode.
Processes closed successfully.
C:\Windows\system32\GroupPolicy\Machine => moved successfully
C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully
C:\Windows\SysWOW64\GroupPolicy\GPT.ini => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{1CEB00B1-B49D-43BF-B47B-53ECB1F44ECB}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1CEB00B1-B49D-43BF-B47B-53ECB1F44ECB}" => removed successfully
C:\Windows\System32\Tasks\Avast Emergency Update => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Avast Emergency Update" => removed successfully
"C:\Program Files\AVAST Software" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8ABCCEC9-A5A5-4E55-922C-86449E31CE43}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8ABCCEC9-A5A5-4E55-922C-86449E31CE43}" => removed successfully
C:\Windows\System32\Tasks\McAfee\DAD.Execute.Updates => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\McAfee\DAD.Execute.Updates" => not found
C:\Program Files\Common Files\McAfee => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E52302C0-570A-4C81-AC97-6537C9949AA3}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E52302C0-570A-4C81-AC97-6537C9949AA3}" => removed successfully
"C:\Windows\System32\Tasks\McAfee\DAD.Execute.Updates" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\McAfee\DAD.Execute.Updates" => not found
HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000008 => removed successfully
HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000009 => removed successfully
HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000008 => removed successfully
HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000009 => removed successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => removed successfully
HKLM\Software\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => not found
"HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => removed successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck => removed successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki => removed successfully
HKLM\System\CurrentControlSet\Services\aswTap => removed successfully
aswTap => service removed successfully
HKLM\System\CurrentControlSet\Services\cpuz148 => removed successfully
cpuz148 => service removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => removed successfully
HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => not found
C:\Users\Vanhelsing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ\Online Help.lnk => moved successfully
C:\Users\Vanhelsing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ\www.virtualdj.com.lnk => moved successfully
C:\ProgramData\Temp => ":5C321E34" ADS removed successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

========= RemoveProxy: =========

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => removed successfully
HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer => removed successfully
HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\SOFTWARE\Policies\Microsoft\Internet Explorer => removed successfully
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully
"HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
"HKU\S-1-5-21-3507022562-1330472618-3652623963-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully


========= End of RemoveProxy: =========


========= netsh winsock reset =========

La funci¬Ęn de inicializaci¬Ęn InitHelperDll en NSHHTTP.DLL no pudo iniciar, c¬Ędigo de error
11003

El cat logo Winsock se restableci¬Ę correctamente.
Debe reiniciar el equipo para completar el restablecimiento.


========= End of CMD: =========


========= ipconfig /renew =========


Configuraci¬Ęn IP de Windows


========= End of CMD: =========


========= ipconfig /flushdns =========


Configuraci¬Ęn IP de Windows

No se puede vaciar la cach‚Äö de resoluci¬Ęn de DNS: Error de una funci¬Ęn durante la ejecuci¬Ęn.


========= End of CMD: =========


========= bitsadmin /reset /allusers =========


BITSADMIN version 3.0 [ 7.5.7601 ]
BITS administration utility.
(C) Copyright 2000-2006 Microsoft Corp.

BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.

Unable to connect to BITS - 0x8007042c

========= End of CMD: =========


========= netsh advfirewall reset =========

La funci¬Ęn de inicializaci¬Ęn InitHelperDll en NSHHTTP.DLL no pudo iniciar, c¬Ędigo de error
11003

Error al intentar ponerse en contacto con el servicio Firewall de Windows. Aseg£rese de que el servicio se est  ejecutando e intente la solicitud de nuevo.


========= End of CMD: =========


========= netsh advfirewall set allprofiles state ON =========

La funci¬Ęn de inicializaci¬Ęn InitHelperDll en NSHHTTP.DLL no pudo iniciar, c¬Ędigo de error
11003

Error al intentar ponerse en contacto con el servicio Firewall de Windows. Aseg£rese de que el servicio se est  ejecutando e intente la solicitud de nuevo.


========= End of CMD: =========


========= netsh int ipv4 reset =========

La funci¬Ęn de inicializaci¬Ęn InitHelperDll en NSHHTTP.DLL no pudo iniciar, c¬Ędigo de error
11003
No hay valores configurados por el usuario para restablecer.


========= End of CMD: =========


========= netsh int ipv6 reset =========

La funci¬Ęn de inicializaci¬Ęn InitHelperDll en NSHHTTP.DLL no pudo iniciar, c¬Ędigo de error
11003
No hay valores configurados por el usuario para restablecer.


========= End of CMD: =========


=========== EmptyTemp: ==========

BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 39546619 B
Java, Flash, Steam htmlcache => 524 B
Windows/system/drivers => 17746857 B
Edge => 0 B
Chrome => 1688167 B
Firefox => 0 B
Opera => 287520261 B

Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 432 B
Public => 0 B
ProgramData => 0 B
systemprofile => 128 B
systemprofile32 => 560 B
LocalService => 0 B
NetworkService => 0 B
Vanhelsing => 46979413 B
Administrador.Vanhelsing-PC => 106186 B

RecycleBin => 0 B
EmptyTemp: => 375.4 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 21:55:12 ====
#13

Debes comentar cómo va el PC para poder saber

#14

Hola

Y la pc anda mas o menos, algunas aplicaciones est√°n lentas en su funcionamiento.

#15

Descarga Hard Disk Sentinel (te recomiendo la version portable), lo ejecutas y vas a Report > SaveTXTReport y guardas el reporte.

Me pegas el log

#16

Buenos dias.

Te pego el log.

  -- General Information --

    Application Information
   -------------------------
    Installed Version  . . . . . . . . . . . . . . . : Hard Disk Sentinel 5.40 PRO
    Registered To  . . . . . . . . . . . . . . . . . : Unregistered version, please register.
    Current Date And Time  . . . . . . . . . . . . . : 04/05/2019 11:14:28
    Health Calculation Method  . . . . . . . . . . . : Analyse data field (default)

    Computer Information
   ----------------------
    Computer Name  . . . . . . . . . . . . . . . . . : PICHULODANCE
    User Name  . . . . . . . . . . . . . . . . . . . : Vanhelsing
    Computer Type  . . . . . . . . . . . . . . . . . : Mobile
    IP Address . . . . . . . . . . . . . . . . . . . : 192.168.1.33
    MAC Address  . . . . . . . . . . . . . . . . . . : E0-CA-94-1B-7C-6A
    System Uptime  . . . . . . . . . . . . . . . . . : 0 days, 0 hours, 33 minutes, 10 seconds
    System Idle Time . . . . . . . . . . . . . . . . : 0 days, 0 hours, 0 minutes, 0 seconds
    System Up Since  . . . . . . . . . . . . . . . . : 04/05/2019 10:41:18
    CPU Usage  . . . . . . . . . . . . . . . . . . . : CPU #1: 14 %, CPU #2: 11 %
    Virtual Memory . . . . . . . . . . . . . . . . . : 5863 MB, Used: 2309 MB (39 %)

    System Information
   --------------------
    Windows Version  . . . . . . . . . . . . . . . . : Windows 7 Home Basic 
    CPU Type & Speed #1  . . . . . . . . . . . . . . : Intel(R) Pentium(R) CPU        P6200  @ 2.13GHz, 2128 MHz
    CPU Type & Speed #2  . . . . . . . . . . . . . . : Intel(R) Pentium(R) CPU        P6200  @ 2.13GHz, 2128 MHz
    BIOS Manufacturer  . . . . . . . . . . . . . . . : Phoenix
    Physical Memory Size . . . . . . . . . . . . . . : 2933 MB, Used: 2041 MB (70 %)
    Display Adapter  . . . . . . . . . . . . . . . . : Intel(R) HD Graphics
    Display Resolution . . . . . . . . . . . . . . . : 1366 x 768 (32 bit)
    Printer #1 . . . . . . . . . . . . . . . . . . . : CSR|DARIO2014-PC
    Printer #2 . . . . . . . . . . . . . . . . . . . : Enviar a OneNote 16
    Printer #3 . . . . . . . . . . . . . . . . . . . : Fax
    Printer #4 . . . . . . . . . . . . . . . . . . . : Microsoft XPS Document Writer
    Printer #5 . . . . . . . . . . . . . . . . . . . : Samsung Universal Print Driver
    Network Controller #1  . . . . . . . . . . . . . : Dispositivo Bluetooth (Red de √°rea personal) #4
    Network Controller #2  . . . . . . . . . . . . . : Dispositivo Bluetooth (TDI protocolo RFCOMM) #4
    Network Controller #3  . . . . . . . . . . . . . : Realtek PCIe GbE Family Controller
    Network Controller #4  . . . . . . . . . . . . . : Adaptador de red Broadcom 802.11n
    Network Controller #5  . . . . . . . . . . . . . : Microsoft Virtual WiFi Miniport Adapter #3
    Optical Drive

    PCI Device Information
   ------------------------
    PCI Bus 0; Device 0; Function 0  . . . . . . . . : Intel(R) processor DRAM Controller - 0044
    PCI Bus 0; Device 2; Function 0  . . . . . . . . : Intel(R) HD Graphics
    PCI Bus 0; Device 22; Function 0 . . . . . . . . : Intel(R) Management Engine Interface
    PCI Bus 0; Device 26; Function 0 . . . . . . . . : Intel(R) 5 Series/3400 Series Chipset Family USB Enhanced Host Controller - 3B3C
    PCI Bus 0; Device 27; Function 0 . . . . . . . . : High Definition Audio Controller
    PCI Bus 0; Device 28; Function 0 . . . . . . . . : Intel(R) 5 Series/3400 Series Chipset Family PCI Express Root Port 1 - 3B42
    PCI Bus 0; Device 28; Function 3 . . . . . . . . : Intel(R) 5 Series/3400 Series Chipset Family PCI Express Root Port 4 - 3B48
    PCI Bus 0; Device 29; Function 0 . . . . . . . . : Intel(R) 5 Series/3400 Series Chipset Family USB Enhanced Host Controller - 3B34
    PCI Bus 0; Device 30; Function 0 . . . . . . . . : Intel(R) 82801 PCI Bridge - 2448
    PCI Bus 0; Device 31; Function 0 . . . . . . . . : Intel(R) HM55 Express Chipset LPC Interface Controller - 3B09
    PCI Bus 0; Device 31; Function 2 . . . . . . . . : Intel(R) 5 Series 4 Port SATA AHCI Controller
    PCI Bus 0; Device 31; Function 3 . . . . . . . . : Synaptics SMBus Driver
    PCI Bus 0; Device 31; Function 6 . . . . . . . . : Intel(R) Turbo Boost Technology Driver
    PCI Bus 2; Device 0; Function 0  . . . . . . . . : Adaptador de red Broadcom 802.11n
    PCI Bus 4; Device 0; Function 0  . . . . . . . . : Realtek PCIe GbE Family Controller
    PCI Bus 63; Device 0; Function 0 . . . . . . . . : QuickPath Architecture Generic Non-core Registers - 2C62
    PCI Bus 63; Device 0; Function 1 . . . . . . . . : QuickPath Architecture System Address Decoder - 2D01
    PCI Bus 63; Device 2; Function 0 . . . . . . . . : QPI Link 0 - 2D10
    PCI Bus 63; Device 2; Function 1 . . . . . . . . : QPI Physical 0 - 2D11
    PCI Bus 63; Device 2; Function 2 . . . . . . . . : Reserved - 2D12
    PCI Bus 63; Device 2; Function 3 . . . . . . . . : Reserved - 2D13



  -- Physical Disk Information - Disk: #0: SAMSUNG HM500JI --

    Hard Disk Summary
   -------------------
    Hard Disk Number . . . . . . . . . . . . . . . . : 0
    Interface  . . . . . . . . . . . . . . . . . . . : S-ATA II
    Disk Controller  . . . . . . . . . . . . . . . . : Intel(R) 5 Series 4 Port SATA AHCI Controller (AHCI) [VEN: 8086, DEV: 3B29] Version: 12.9.0.1001, 10-28-2013
    Disk Location  . . . . . . . . . . . . . . . . . : Bus Number 0, Target Id 0, LUN 0
    Hard Disk Model ID . . . . . . . . . . . . . . . : SAMSUNG HM500JI
    Firmware Revision  . . . . . . . . . . . . . . . : 2AC101C4
    Hard Disk Serial Number  . . . . . . . . . . . . : S20CJ9BB428838
    Total Size . . . . . . . . . . . . . . . . . . . : 476937 MB
    Power State  . . . . . . . . . . . . . . . . . . : Active
    Logical Drive(s) . . . . . . . . . . . . . . . . : C: [] 
    Current Temperature  . . . . . . . . . . . . . . : 33 ¬įC
    Power On Time  . . . . . . . . . . . . . . . . . : 789 days, 19 hours
    Estimated Remaining Lifetime . . . . . . . . . . : more than 1000 days
    Health . . . . . . . . . . . . . . . . . . . . . : #################### 100 % (Excellent)
    Performance  . . . . . . . . . . . . . . . . . . : #################### 100 % (Excellent)

    The hard disk status is PERFECT. Problematic or weak sectors were not found and there are no spin up or data transfer errors. 
      No actions needed.

    ATA Information
   -----------------
    Hard Disk Cylinders  . . . . . . . . . . . . . . : 969021
    Hard Disk Heads  . . . . . . . . . . . . . . . . : 16
    Hard Disk Sectors  . . . . . . . . . . . . . . . : 63
    ATA Revision . . . . . . . . . . . . . . . . . . : ATA8-ACS version 6
    Transport Version  . . . . . . . . . . . . . . . : SATA Rev 2.6
    Total Sectors  . . . . . . . . . . . . . . . . . : 976773168
    Bytes Per Sector . . . . . . . . . . . . . . . . : 512
    Buffer Size  . . . . . . . . . . . . . . . . . . : 8192 KB
    Multiple Sectors . . . . . . . . . . . . . . . . : 16
    Error Correction Bytes . . . . . . . . . . . . . : 4
    Unformatted Capacity . . . . . . . . . . . . . . : 476940 MB
    Maximum PIO Mode . . . . . . . . . . . . . . . . : 4
    Maximum Multiword DMA Mode . . . . . . . . . . . : 2
    Maximum UDMA Mode  . . . . . . . . . . . . . . . : 300 MB/s (6)
    Active UDMA Mode . . . . . . . . . . . . . . . . : 300 MB/s (6)
    Minimum Multiword DMA Transfer Time  . . . . . . : 120 ns
    Recommended Multiword DMA Transfer Time  . . . . : 120 ns
    Minimum PIO Transfer Time Without IORDY  . . . . : 120 ns
    Minimum PIO Transfer Time With IORDY . . . . . . : 120 ns
    ATA Control Byte . . . . . . . . . . . . . . . . : Valid
    ATA Checksum Value . . . . . . . . . . . . . . . : Valid

    Acoustic Management Configuration
   -----------------------------------
    Acoustic Management  . . . . . . . . . . . . . . : Supported
    Acoustic Management  . . . . . . . . . . . . . . : Enabled
    Current Acoustic Level . . . . . . . . . . . . . : Min performance and volume (80h)
    Recommended Acoustic Level . . . . . . . . . . . : Max performance and volume (FEh)

    ATA Features
   --------------
    Read Ahead Buffer  . . . . . . . . . . . . . . . : Supported, Enabled
    DMA  . . . . . . . . . . . . . . . . . . . . . . : Supported
    Ultra DMA  . . . . . . . . . . . . . . . . . . . : Supported
    S.M.A.R.T. . . . . . . . . . . . . . . . . . . . : Supported
    Power Management . . . . . . . . . . . . . . . . : Supported
    Write Cache  . . . . . . . . . . . . . . . . . . : Supported
    Host Protected Area  . . . . . . . . . . . . . . : Supported
    HPA Security Extensions  . . . . . . . . . . . . : Supported
    Advanced Power Management  . . . . . . . . . . . : Supported, Disabled
    Extended Power Management  . . . . . . . . . . . : Not supported
    Power Up In Standby  . . . . . . . . . . . . . . : Supported
    48-Bit LBA Addressing  . . . . . . . . . . . . . : Supported
    Device Configuration Overlay . . . . . . . . . . : Supported
    IORDY Support  . . . . . . . . . . . . . . . . . : Supported
    Read/Write DMA Queue . . . . . . . . . . . . . . : Not supported
    NOP Command  . . . . . . . . . . . . . . . . . . : Supported
    Trusted Computing  . . . . . . . . . . . . . . . : Not supported
    64-Bit World Wide ID . . . . . . . . . . . . . . : 50024E92051AD97E
    Streaming  . . . . . . . . . . . . . . . . . . . : Not supported
    Media Card Pass Through  . . . . . . . . . . . . : Not supported
    General Purpose Logging  . . . . . . . . . . . . : Supported
    Error Logging  . . . . . . . . . . . . . . . . . : Supported
    CFA Feature Set  . . . . . . . . . . . . . . . . : Not supported
    CFast Device . . . . . . . . . . . . . . . . . . : Not supported
    Long Physical Sectors (1)  . . . . . . . . . . . : Not supported
    Long Logical Sectors . . . . . . . . . . . . . . : Not supported
    Write-Read-Verify  . . . . . . . . . . . . . . . : Not supported
    NV Cache Feature . . . . . . . . . . . . . . . . : Not supported
    NV Cache Power Mode  . . . . . . . . . . . . . . : Not supported
    NV Cache Size  . . . . . . . . . . . . . . . . . : Not supported
    Free-fall Control  . . . . . . . . . . . . . . . : Not supported
    Free-fall Control Sensitivity  . . . . . . . . . : Not supported
    Service Interrupt  . . . . . . . . . . . . . . . : Not supported
    IDLE IMMEDIATE Command With UNLOAD Feature . . . : Supported
    Nominal Form Factor  . . . . . . . . . . . . . . : 2.5 inch

    SSD Features
   --------------
    Data Set Management  . . . . . . . . . . . . . . : Not supported
    TRIM Command . . . . . . . . . . . . . . . . . . : Not supported
    Deterministic Read After TRIM  . . . . . . . . . : Not supported
    Read Zeroes After TRIM . . . . . . . . . . . . . : Not supported

    S.M.A.R.T. Details
   --------------------
    Off-line Data Collection Status  . . . . . . . . : Never Started
    Self Test Execution Status . . . . . . . . . . . : Aborted By Host
    Total Time To Complete Off-line Data Collection  : 7800 seconds
    Execute Off-line Immediate . . . . . . . . . . . : Supported
    Abort/restart Off-line By Host . . . . . . . . . : Not supported
    Off-line Read Scanning . . . . . . . . . . . . . : Supported
    Short Self-test  . . . . . . . . . . . . . . . . : Supported
    Extended Self-test . . . . . . . . . . . . . . . : Supported
    Conveyance Self-test . . . . . . . . . . . . . . : Not supported
    Selective Self-Test  . . . . . . . . . . . . . . : Supported
    Save Data Before/After Power Saving Mode . . . . : Supported
    Enable/Disable Attribute Autosave  . . . . . . . : Supported
    Error Logging Capability . . . . . . . . . . . . : Supported
    Short Self-test Estimated Time . . . . . . . . . : 2 minutes
    Extended Self-test Estimated Time  . . . . . . . : 130 minutes
    Last Short Self-test Result  . . . . . . . . . . : Never Started
    Last Short Self-test Date  . . . . . . . . . . . : Never Started
    Last Extended Self-test Result . . . . . . . . . : Never Started
    Last Extended Self-test Date . . . . . . . . . . : Never Started

    Security Mode
   ---------------
    Security Mode  . . . . . . . . . . . . . . . . . : Supported
    Security Erase . . . . . . . . . . . . . . . . . : Supported
    Security Erase Time  . . . . . . . . . . . . . . : 124 minutes
    Security Enhanced Erase Feature  . . . . . . . . : Supported
    Security Enhanced Erase Time . . . . . . . . . . : 124 minutes
    Security Enabled . . . . . . . . . . . . . . . . : No
    Security Locked  . . . . . . . . . . . . . . . . : No
    Security Frozen  . . . . . . . . . . . . . . . . : Yes
    Security Counter Expired . . . . . . . . . . . . : No
    Security Level . . . . . . . . . . . . . . . . . : High
    Device Encrypts All User Data  . . . . . . . . . : No
    Sanitize . . . . . . . . . . . . . . . . . . . . : Not supported
    Overwrite  . . . . . . . . . . . . . . . . . . . : Not supported
    Crypto Scramble  . . . . . . . . . . . . . . . . : Not supported
    Block Erase  . . . . . . . . . . . . . . . . . . : Not supported
    Sanitize Antifreeze Lock . . . . . . . . . . . . : Not supported
    ACS-3 Commands Allowed By Sanitize . . . . . . . : No

    Serial ATA Features
   ---------------------
    S-ATA Compliance . . . . . . . . . . . . . . . . : Yes
    S-ATA I Signaling Speed (1.5 Gps)  . . . . . . . : Supported
    S-ATA II Signaling Speed (3 Gps) . . . . . . . . : Supported
    S-ATA Gen3 Signaling Speed (6 Gps) . . . . . . . : Not supported
    Receipt Of Power Management Requests From Host . : Supported
    PHY Event Counters . . . . . . . . . . . . . . . : Supported
    Non-Zero Buffer Offsets In DMA Setup FIS . . . . : Not supported
    DMA Setup Auto-Activate Optimization . . . . . . : Supported, Enabled
    Device Initiating Interface Power Management . . : Supported, Enabled
    In-Order Data Delivery . . . . . . . . . . . . . : Not supported
    Asynchronous Notification  . . . . . . . . . . . : Not supported
    Software Settings Preservation . . . . . . . . . : Supported, Enabled
    Native Command Queuing (NCQ) . . . . . . . . . . : Supported
    Queue Length . . . . . . . . . . . . . . . . . . : 32
    NCQ Streaming  . . . . . . . . . . . . . . . . . : Not supported
    NCQ Autosense  . . . . . . . . . . . . . . . . . : Not supported
    Automatic Partial To Slumber Translations  . . . : Not supported
    Rebuild Assist . . . . . . . . . . . . . . . . . : Not supported
    Hybrid Information . . . . . . . . . . . . . . . : Not supported
    Device Sleep (DevSleep)  . . . . . . . . . . . . : Not supported
    DevSleep To ReducedPwrState  . . . . . . . . . . : Not supported

    Disk Information
   ------------------
    Disk Family  . . . . . . . . . . . . . . . . . . : SpinPoint M7
    Form Factor  . . . . . . . . . . . . . . . . . . : 2.5" 
    Capacity . . . . . . . . . . . . . . . . . . . . : 500 GB (500 x 1.000.000.000 bytes)
    Number Of Disks  . . . . . . . . . . . . . . . . : 2
    Number Of Heads  . . . . . . . . . . . . . . . . : 4
    Rotational Speed . . . . . . . . . . . . . . . . : 5400 RPM
    Rotation Time  . . . . . . . . . . . . . . . . . : 11,11 ms
    Average Rotational Latency . . . . . . . . . . . : 5,56 ms
    Disk Interface . . . . . . . . . . . . . . . . . : Serial-ATA/300
    Buffer-Host Max. Rate  . . . . . . . . . . . . . : 300 MB/seconds
    Buffer Size  . . . . . . . . . . . . . . . . . . : 8192 KB
    Drive Ready Time (Typical) . . . . . . . . . . . : 4 seconds
    Average Seek Time  . . . . . . . . . . . . . . . : 12,0 ms
    Track To Track Seek Time . . . . . . . . . . . . : ? ms
    Full Stroke Seek Time  . . . . . . . . . . . . . : ? ms
    Width  . . . . . . . . . . . . . . . . . . . . . : 69,9 mm (2,8 inch)
    Depth  . . . . . . . . . . . . . . . . . . . . . : 100,0 mm (3,9 inch)
    Height . . . . . . . . . . . . . . . . . . . . . : 9,5 mm (0,4 inch)
    Weight . . . . . . . . . . . . . . . . . . . . . : 105 grams (0,2 pounds)
    Acoustic (Idle)  . . . . . . . . . . . . . . . . : 2,4 Bel
    Acoustic (Min Performance And Volume)  . . . . . : 2,6 Bel
    Acoustic (Max Performance And Volume)  . . . . . : 2,6 Bel
    Required Power For Spinup  . . . . . . . . . . . : 1.000 mA
    Power Required (Seek)  . . . . . . . . . . . . . : 2,4 W
    Power Required (Idle)  . . . . . . . . . . . . . : 0,9 W
    Power Required (Standby) . . . . . . . . . . . . : 0,3 W
    Manufacturer . . . . . . . . . . . . . . . . . . : Samsung
    Manufacturer Website . . . . . . . . . . . . . . : http://www.samsung.com/Products/HardDiskDrive/index.htm

    S.M.A.R.T.
   ------------
No.  Attribute                Thre.. Value  Worst  Data                Status                   Flags                                                  
1    Raw Read Error Rate      51     100    100    000000000001        OK                       Self Preserving, Error-Rate, Performance, Statistica.. 
2    Throughput Performance   0      252    252    000000000000        OK (Always passing)      Self Preserving, Performance, Statistical              
3    Spin Up Time             25     91     90     000000000BA4        OK                       Self Preserving, Statistical, Critical                 
4    Start/Stop Count         0      92     92     0000000020A6        OK (Always passing)      Self Preserving, Event Count, Statistical              
5    Reallocated Sectors Co.. 10     252    252    000000000000        OK                       Self Preserving, Event Count, Statistical, Critical    
7    Seek Error Rate          51     252    252    000000000000        OK                       Self Preserving, Error-Rate, Performance, Statistical  
8    Seek Time Performance    15     252    252    000000000000        OK                       Self Preserving, Performance                           
9    Power On Time Count      0      100    100    000000004A0B        OK (Always passing)      Self Preserving, Event Count, Statistical              
10   Spin Retry Count         51     252    252    000000000000        OK                       Self Preserving, Event Count, Statistical              
11   Drive Calibration Retr.. 0      100    100    00000000007D        OK (Always passing)      Self Preserving, Event Count, Statistical              
12   Drive Power Cycle Count  0      93     93     000000001C22        OK (Always passing)      Self Preserving, Event Count, Statistical              
191  G-Sense Error Rate       0      100    100    0000000001B9        OK (Always passing)      Self Preserving, Statistical                           
192  Power off Retract Cycl.. 0      252    252    000000000000        OK (Always passing)      Self Preserving, Statistical                           
194  Disk Temperature         0      64     50     0032000E0021        OK (Always passing)      Statistical                                            
195  Hardware ECC Recovered   0      100    100    000000000000        OK (Always passing)      Self Preserving, Event Count, Error-Rate, Statistical  
196  Reallocation Event Count 0      252    252    000000000000        OK (Always passing)      Self Preserving, Event Count, Statistical              
197  Current Pending Sector.. 0      252    252    000000000000        OK (Always passing)      Self Preserving, Event Count, Statistical              
198  Off-Line Uncorrectable.. 0      252    252    000000000000        OK (Always passing)      Self Preserving, Event Count                           
199  Ultra ATA CRC Error Co.. 0      100    100    000000000004        OK (Always passing)      Self Preserving, Event Count, Performance, Statistical 
200  Write Error Rate         0      100    100    000000000018        OK (Always passing)      Self Preserving, Error-Rate, Statistical               
223  Load/Unload Retry Count  0      100    100    00000000007D        OK (Always passing)      Self Preserving, Event Count, Statistical              
225  Load/Unload Cycle Count  0      44     44     00000008C76A        OK (Always passing)      Self Preserving, Event Count, Statistical              

    Transfer Rate Information
   ---------------------------
    Total Data Read  . . . . . . . . . . . . . . . . : 208 MB,  208 MB since installation  (04/05/2019)
    Total Data Write . . . . . . . . . . . . . . . . : 14 MB,  14 MB since installation
    Average Reads Per Day  . . . . . . . . . . . . . : 208,00 MB
    Average Writes Per Day . . . . . . . . . . . . . : 14,00 MB
    Current Transfer Rate  . . . . . . . . . . . . . : 770 KB/s
    Maximum Transfer Rate  . . . . . . . . . . . . . : 2835 KB/s
    Current Read Rate  . . . . . . . . . . . . . . . : 770 KB/s
    Current Write Rate . . . . . . . . . . . . . . . : 0 KB/s
    Current Disk Activity  . . . . . . . . . . . . . : 28 %



  -- Partition Information --

Logical Drive                           Total Space         Free Space          Free Space               Used Space
C: (Disk: #0)                           443,9 GB            208,8 GB             47 %                    ##########----------
#17
  • Descarga e instala Ccleaner , si no lo tienes instalado /actualizado,

  • Durante la instalaci√≥n cuando aparezcan opciones solo deja marcadas la de mostrar icono en el escritorio y uso inteligente de cookies.

  • Abres Ccleaner (En el men√ļ Opciones/Avanzadas: Desmarca la casilla Solo borrar de las carpetas Temp de Windows los archivos de mas de 24 hrs.).

:1:Abres en Pesta√Īa Limpiador:

En apartado >> Windows ; seleccionas:

  • Archivos temporales de Internet Explorer
  • Archivos temporales del sistema
  • Cache Dns
  • Datos antiguos de prefetch

En apartado >> Programas >> seleccionas:

  • Caches de otros navegadores que uses
  • Java

1::Ejecutas la limpieza

:2:En la pesta√Īa registro >>; Buscar Problemas >> Reparar seleccionadas

::Ejecutamos la limpieza (guardamos copia del registro cuando nos lo pida en la misma carpeta de Ccleaner ubicada en C-Archivos de programa-Ccleaner).

P√°salo varias veces que no queden errores

Descargas e instalas >> ; Glary Utilities

Abres en Mantenimiento un click >>; buscar problemas >> ;Reparar

Y en Herramientas avanzadas >> Reparador de registro >> Ejecutas la reparación

Y luego en herramientas- optimización- desfargamentador de disco, eliges en el desplegable " desfragmentar y optimizar" y lo pasa a todas las unidades

Comentas el resultado

1 me gusta
#18

Hola Miguelgrado.

Aparentemente esta todo en orden dentro del tema que abrí.

Puedes dar el tema por solucionado.

Gracias.

#19

Para eliminar las herramientas usadas en la desinfección, realizas:

  • Descargas y Ejecutas >> Delfix, en tu escritorio.

  • Doble clic para ejecutarlo.(Si usas Windows Vista/7 /8 /10,presiona clic derecho y selecciona >>;Ejecutar como Administrador.)

  • Marca solamente la casilla Remove disinfection tools

  • Pulsar en Run.

Se abrir√° el informe (DelFix.txt), gu√°rdalo por si fuera necesario y cierra la herramienta.

Si queda alguna herramienta, la desinstalas desde panel de Windows y aquellas que no estén listadas, se eliminan directamente.


Me alegro de haberte podido ayudar! :+1:


TEMA SOLUCIONADO

1 me gusta
cerrado #20

Este tema se cerr√≥ autom√°ticamente 2 d√≠as despu√©s del √ļltimo post. No se permiten nuevas respuestas.