Tengo virus?

Buenas noches. Encendi mi pc, este reacciono muy lento, la barra de tareas aparecio en blanco sin ningun icono. Lo reinicie, cuando estaba encendiendo aparecio una sombra roja en la esquina superior izquierda de la pantalla.

Rkill 2.9.1 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2025 BleepingComputer.com
More Information about Rkill can be found at this link:
 http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 04/27/2025 08:48:47 PM in x64 mode.
Windows Version: Windows 10 Pro 

Checking for Windows services to stop:

 * No malware services found to stop.

Checking for processes to terminate:

 * No malware processes found to kill.

Checking Registry for malware related settings:

 * No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

 * Reparse Point/Junctions Found (These may be legitimate)!

     * C:\Windows\assembly\temp\0NHH7QZXSL\System.ni.dll => <Unknown Target> [File]
     * C:\Windows\assembly\temp\9H45GMDP1D\System.ni.dll => <Unknown Target> [File]
     * C:\Windows\assembly\temp\BLOD4I0R9R\System.ni.dll => <Unknown Target> [File]
     * C:\Windows\assembly\temp\BWBB2SZL13\System.Core.ni.dll => <Unknown Target> [File]
     * C:\Windows\assembly\temp\I6HXQFYP15\System.Core.ni.dll => <Unknown Target> [File]
     * C:\Windows\assembly\temp\KINKO6BH5W\System.Management.ni.dll => <Unknown Target> [File]
     * C:\Windows\assembly\temp\L9V00UC6RV\System.Core.ni.dll => <Unknown Target> [File]
     * C:\Windows\assembly\temp\NSZ2QPVCIE\System.Core.ni.dll => <Unknown Target> [File]
     * C:\Windows\assembly\temp\OOARM14WX3\System.Management.ni.dll => <Unknown Target> [File]
     * C:\Windows\assembly\temp\SBMFV4HBDQ\System.Core.ni.dll => <Unknown Target> [File]
     * C:\Windows\assembly\temp\V2HT5ZXYHW\System.Configuration.ni.dll => <Unknown Target> [File]
     * C:\Windows\assembly\temp\X8QH96PWVO\System.ni.dll => <Unknown Target> [File]

 * No issues found.

Searching for Missing Digital Signatures: 

 * No issues found.

Checking HOSTS File: 

 * HOSTS file entries found: 

  127.0.0.1       localhost

Program finished at: 04/27/2025 09:34:22 PM
Execution time: 0 hours(s), 45 minute(s), and 35 seconds(s)

SecurityCheck by glax24 & Severnyj v.1.4.0.58 [15.08.24]
WebSite: www.safezone.cc
DateLog: 27.04.2025 20:42:25
Path starting: C:\Users\USUARIO\AppData\Local\Temp\SecurityCheck\SecurityCheck.exe
Log directory: C:\SecurityCheck\
IsAdmin: True
User: ArturoParra
VersionXML: 13.71is-26.04.2025
___________________________________________________________________________

Windows 10 Professional (x64) Release: 22H2 (10.0.19045.5737) Lang: Spanish(0C0A)
Installation date OS: 25.06.2020 17:20:57
LicenseStatus: Office 24, Office24VisioPro2024PreviewVL_KMS_Client_AE edition Volume activation will expire : 252880 minutes
LicenseStatus: Windows(R), Professional edition The machine is permanently activated.
LicenseStatus: Office 24, Office24ProjectPro2024PreviewVL_KMS_Client_AE edition Volume activation will expire : 252880 minutes
LicenseStatus: Office 24, Office24ProPlus2024PreviewVL_KMS_Client_AE edition Volume activation will expire : 252880 minutes
Boot Mode: Normal
Default Browser: C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe
SystemDrive: C: FS: [NTFS] Capacity: [121.2 Gb] Used: [102.7 Gb] Free: [18.5 Gb]
------------------------------- [ Windows ] -------------------------------
User Account Control [b]enabled[/b] (Level 3)
Automatically download and schedule installation
Centro de seguridad (wscsvc) - The service is running
Registro remoto (RemoteRegistry) - The service has stopped
Detección SSDP (SSDPSRV) - The service is running
Servicios de Escritorio remoto (TermService) - The service has stopped
Administración remota de Windows (WS-Management) (WinRM) - The service has stopped
Servicio de transferencia inteligente en segundo plano (BITS) (BITS) - The service has stopped
Optimización de distribución (DoSvc) - The service is running
Servicio Seguridad de Windows (SecurityHealthService) - The service is running
Servicio Orquestador de actualizaciones (UsoSvc) - The service is running
Servicio de Windows Update Medic (WaaSMedicSvc) - The service has stopped
Windows Update (wuauserv) - The service has stopped
---------------------------- [ Antivirus_WMI ] ----------------------------
Malwarebytes (disabled and out of date)
Windows Defender (disabled)
Kaspersky Security Cloud (enabled and up to date)
ESET Security (enabled and up to date)
---------------------------- [ Firewall_WMI ] -----------------------------
Kaspersky Security Cloud (disabled)
ESET Firewall (disabled)
-------------------------- [ SecurityUtilities ] --------------------------
KeePassXC v.2.7.10
--------------------------- [ OtherUtilities ] ----------------------------
Microsoft Office LTSC Profesional Plus 2024 - es-es v.16.0.17726.20126
NVIDIA GeForce Experience 3.28.0.417 v.3.28.0.417
SumatraPDF v.3.5.2
WebView2 Runtime de Microsoft Edge v.126.0.2592.102 [color=red][b]Warning! [url=https://go.microsoft.com/fwlink/p/?LinkId=2124703]Download Update[/url][/b][/color]
[color=blue][b]If update errors occur, remove the old version, download and install the new one. Or reinstall [url=https://www.microsoft.com/en-us/edge/download]Microsoft Edge[/url] browser.[/b][/color]
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.40.33810 v.14.40.33810.0 [color=red][b]Warning! [url=https://download.visualstudio.microsoft.com/download/pr/285b28c7-3cf9-47fb-9be8-01cf5323a8df/C4E3992F3883005881CF3937F9E33F1C7D792AC1C860EA9C52D8F120A16A7EB1/VC_redist.x86.exe]Download Update[/url][/b][/color]
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.42.34438 v.14.42.34438.0
Intel® Driver & Support Assistant v.24.3.26.8 [color=red][b]Warning! [url=https://dsadata.intel.com/installer]Download Update[/url][/b][/color]
------------------------------ [ ArchAndFM ] ------------------------------
WinRAR 7.01 (64-bit) v.7.01.0 [color=red][b]Warning! [url=https://www.rarlab.com/download.htm]Download Update[/url][/b][/color]
-------------------------------- [ Java ] ---------------------------------
Java 8 Update 391 v.8.0.3910.13 [color=red][b]Warning! [url=https://www.java.com/en/download/manual.jsp]Download Update[/url][/b][/color]
[color=blue][b]Uninstall old version and install new one (jre-8u451-windows-i586.exe).[/b][/color]
-------------------------------- [ Media ] --------------------------------
K-Lite Codec Pack 18.8.5 Full v.18.8.5 [color=red][b]Warning! [url=https://files3.codecguide.com/K-Lite_Codec_Pack_1890_Full.exe]Download Update[/url][/b][/color]
--------------------------- [ AdobeProduction ] ---------------------------
Adobe Acrobat (64-bit) v.25.001.20435 [color=red][b]Warning! [url=https://www.adobe.com/devnet-docs/acrobatetk/tools/ReleaseNotesDC/index.html]Download Update[/url][/b][/color]
[color=blue][b]^Please run Acrobat Reader DC and go Help - Check for updates...^[/b][/color]
------------------------------- [ Browser ] -------------------------------
Brave v.135.1.77.101
Avast Update Helper v.1.8.1697.6 [b][color=red]Warning! Browser installed as part of other software. Uninstall it if you do not use.[/color][/b]
CCleaner Update Helper v.1.8.1691.6 [b][color=red]Warning! Browser installed as part of other software. Uninstall it if you do not use.[/color][/b]
------------------ [ AntivirusFirewallProcessServices ] -------------------
Microsoft Defender Core Service (MDCoreSvc) - The service is running
C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MpDefenderCoreService.exe v.4.18.25030.2
C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MsMpEng.exe v.4.18.25030.2
Microsoft Defender Antivirus Service (WinDefend) - The service is running
Microsoft Defender Antivirus Network Inspection Service (WdNisSvc) - The service has stopped
----------------------------- [ End of Log ] ------------------------------

Me pueden ayudar porfa, gracias.

Hola @DanielG, me pudes ayudar? gracias.

El programa SystemSettings.exe (versión 10.0.19041.5737) dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible sobre el problema, comprueba el historial de problemas en el panel de control de seguridad y mantenimiento.
 Id. de proceso: b9c
 Hora de Inicio: 01dbb861a4ff473f
 Hora de finalización: 4294967295
 Ruta de la aplicación: C:\Windows\ImmersiveControlPanel\SystemSettings.exe
 Id. de informe: 9e529c04-0bb4-416e-b49a-32c809830cad
 Nombre completo del paquete con errores: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy
 Id. de la aplicación relativa al paquete con errores: microsoft.windows.immersivecontrolpanel
 Tipo de bloqueo: Activation

Buenas noches. De nuevo aparecio esto. @DanielG

El programa SystemSettings.exe (versión 10.0.19041.5737) dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible sobre el problema, comprueba el historial de problemas en el panel de control de seguridad y mantenimiento.
 Id. de proceso: 20b0
 Hora de Inicio: 01dbb97b270a61b0
 Hora de finalización: 4294967295
 Ruta de la aplicación: C:\Windows\ImmersiveControlPanel\SystemSettings.exe
 Id. de informe: dbf2d48b-d89e-41b8-ac13-0b1683a035a2
 Nombre completo del paquete con errores: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy
 Id. de la aplicación relativa al paquete con errores: microsoft.windows.immersivecontrolpanel
 Tipo de bloqueo: Activation
Depósito con errores 1877135940792400935, tipo 5
Nombre de evento: MoAppHang
Respuesta: No disponible
Identificador de archivo .cab: 0

Firma del problema:
P1: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy
P2: praid:microsoft.windows.immersivecontrolpanel
P3: 10.0.19041.5737
P4: 80451368
P5: 469e
P6: 4194304
P7: 
P8: 
P9: 
P10: 

Archivos adjuntos:
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8B8A.tmp.WERInternalMetadata.xml
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8BF8.tmp.xml
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8BF7.tmp.csv
\\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER8C17.tmp.txt

Es posible que estos archivos estén disponibles aquí:
\\?\C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppHang_windows.immersiv_e0ee9da09687c8675394844f63f57f3a3430b796_31aeda3d_9f013ee6-8ef2-4807-b0bc-ef02b06c17bf

Símbolo de análisis: 
Nueva búsqueda de una solución: 0
Id. de informe: dbf2d48b-d89e-41b8-ac13-0b1683a035a2
Estado del informe: 268435456
Depósito con algoritmo hash: 4dc35024b04b98061a0ced31520cbc27
GUID de archivo .cab: 0

Parece que el compañero no esta disponible.

Recuerden que si sospechan o quieren descartar la presencia de malware en sus equipos nosotros tenemos una guía básica de detección/eliminación que les recomendamos realizar para empezar

Nuestro punto de partida suelen ser los reportes de RKill , Malwarebytes Antimalware y Eset Online Scanner tal y como están indicados en dicha guía

Saludos