Varias pestañas abiertas: Pantalla a negro y bloqueo PC

Saludos a tod@s Cuando navego y abro un cierto numero de paginas a la vez se bloquea la pantalla, primero en blanco y luego se va a negro, no reacciona ni con Control Alt Sup No es que tenga una gran preocupacion ya que despues de que la pantalla se ponga en negro y se bloquee el PC, la solucion es facil y haciendo un reset en el boton de encendido, se soluciona Asi que he tomado un programa antiguo que hay en la web para saber si hay algo raro en mi maquina De paso quiero saber si es hoy en dia tan fiable como antes , en buscar o detectar problemas [IFS (InfoSpyware First Steps) | InfoSpyware

Copio y pego el reporte Gracias de antemano por la gran labor que haceis Saludos, Verntallat

[B]~~~~~~~~~~~| Inicio: [/B]

*IFS (InfoSpyware First Steps) v 1.3
*www.InfoSpyware.com | www.ForoSpyware.com
*Iniciado: 09/02/2024 a las 19h.01m.08s

[B]~~~~~~~~~~~|  Información del Sistema:[/B]

OS: Microsoft Windows 10 Pro x64 
Idioma: Spanish (Spain, International Sort) (España|es-ES)
Permisos de Administrador / ON
Windows se Inició en   Modo Normal
Drive: C:\WINDOWS (Install: \Device\HarddiskVolume1)

[B]~~~~~~~~~~~| Arquitectura Fisica:[/B]

CPU: MSI
CPU Modelo: MS-7820
Procesador: Intel(R) Core(TM) i5-4590 CPU @ 3.30GHz (x64-BasedPC)
Memoria RAM: 8 Gb. En Uso: 45 %
Video: NVIDIA GeForce GT 740
Chip: GeForce GT 740 Capacidad video:-2048 MB (Integrated RAMDAC)

[B]~~~~~~~~~~~| Unidades[/B]

C: [FIXED|NTFS|El meu W10] - [223.0 Gb][57.7 Gb][165.3 Gb]
D: [FIXED|NTFS|] - [465.7 Gb][179.8 Gb][285.9 Gb]
F: [FIXED|NTFS|] - [223.5 Gb][74.9 Gb][148.5 Gb]
G: [CDROM]
[COLOR=#FF0000][B]C:\ Fragmentación total 50.51% - Desfragmentar unidad [/B][/COLOR]
D:\ Fragmentación total 6.84% - Correcto
[COLOR=#FF0000][B]F:\ Fragmentación total 17.95% - Desfragmentar unidad [/B][/COLOR]

[B]~~~~~~~~~~~| Seguridad del SO[/B]

SafeBoot: Inicio en Modo seguro Correcto
Security Center: Correcto (Servicio Activo)
Windows Update: [COLOR=#FF0000][B]El servicio no está activo[/B][/COLOR] 
AV: Spybot - Search and Destroy *[COLOR=#FF0000][B]Protección Residente [OFF][/B][/COLOR] / [COLOR=#FF0000][B]Actualizar[/B][/COLOR]*
AV: Panda Dome *Protección Residente [ON] / Actualizado*
AV: Windows Defender *[COLOR=#FF0000][B]Protección Residente [OFF][/B][/COLOR] / Actualizado*
SP: Windows Defender *[COLOR=#FF0000][B]Protección Residente [OFF][/B][/COLOR] / Actualizado*
SP: Avast Antivirus *Protección Residente [ON] / Actualizado*
FW: Windows Firewall *Habilitado*

[B]~~~~~~~~~~~|  Update Check[/B]

Internet Explorer Versión Instalada 11
Adobe Flash Player Versión Instalada 32.0

[B]~~~~~~~~~~~| Process List[/B] 

MBAMTray.exe (Malwarebytes Anti-Malware)
MBAMservice.exe (Malwarebytes Anti-Malware)
PSUAMain.exe (Panda)

[B]~~~~~~~~~~~| Install Check[/B] 


AVG Secure Browser [120.0.23502.199]
Panda Devices Agent [1.03.09]
Panda Dome [22.2.0]
Avast Update Helper [1.8.1206.2]
AVG Update Helper [1.8.1066.0]
CCleaner [6.20]
Panda Dome [12.12.20]
Revo Uninstaller 2.4.5 [2.4.5]

[B]~~~~~~~~~~~| Registry Check[/B]

HKLM\Run(x64): [SecurityHealth] %windir%\system32\SecurityHealthSystray.exe
HKLM\Run(x64): [Eraser] "C:\Program Files\Eraser\Eraser.exe" -atRestart
HKLM\Run(x64): [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
HKLM\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
HKLM\Run: [PSUAMain] "C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe" /LaunchSysTray
HKLM\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
HKLM\Run: [AVGBrowserAutoLaunch_D7C3CD873F94276E52437C1FEEEEFB74] "C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe" --auto-launch-at-startup --check-run=src=logon --onboarding-at-startup --profile-directory=Default
HKLM\Run: [CCleaner Smart Cleaning] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
HKLM\Run: [MicrosoftEdgeAutoLaunch_EDE33EF8D1E0788C370451E91D1D620F] "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start
HKLM\Run: [Grammarly] C:\Users\Enric\AppData\Local\Grammarly\DesktopIntegrations\Grammarly.Desktop.exe
Winlogon(x64): Shell = explorer.exe
Winlogon: Shell = explorer.exe
Userinit(x64): Userinit = 
Userinit: Userinit = 

[HKCR\.\.open\command] -> No se pudo obtener la información. 

[B]~~~~~~~~~~~| PUPs Check[/B]

HKLM64\SOFTWARE\Partner


[B]~~~~~~~~~~~| Listado 7 Días (Predeterminado)[/B]

[09/02/2024 19:00] - C:\FSTool
[09/02/2024 19:01] - C:\IFS.log

[B]~~~~~~~~~~~| C:\WINDOWS\Tasks:[/B]

[05/02/2024 19:22] - C:\WINDOWS\Tasks\CCleanerCrashReporting.job
[08/07/2020 18:22] - C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job

[B]~~~~~~~~~~~| End Report[/B]
*Finalizado 19:05:26
*Se limpiaron los archivos temporales
*[1599815] C:\Users\Enric\Downloads\IFS.exe
*Herramienta de Análisis e investigación 

Hola @Verntallat

Con respecto a IFS, esta desactualizado y tiene algunos errores, aun asi cumple con su proposito. En tu caso se ejecuto bien pero suele no terminar de analizar.

Con respecto a tu problema me doy una idea de lo que puede estar pasando.

Que antivirus/antimalware estas utilizando en tu equipo actualmente?

Saludos

1 me gusta

Hola Gracias por tu respuesta Utilizo Panda Dome, version gratuita Luego ademas tengo instalado Malvarebites, version gratuita Ahora he bajado AdwCleaner, vrsion gratuita. Ha detectado un PUP que lo he puesto en cuarentena (copio y pego el informe) Quizas solo sea eso. Por lo demas el PC funciona bien Saludos de nuevo

# -------------------------------
# Malwarebytes AdwCleaner 8.4.1.0
# -------------------------------
# Build:    01-29-2024
# Database: 2023-07-19.3 (Cloud)
# Support:  https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start:    02-09-2024
# Duration: 00:00:11
# OS:       Windows 10 (Build 19045.3803)
# Scanned:  32099
# Detected: 1


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

PUP.Optional.SafePCKit          HKCU\Software\Sunisoft

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.

***** [ Hosts File Entries ] *****

No malicious hosts file entries found.

***** [ Preinstalled Software ] *****

No Preinstalled Software found.


AdwCleaner[S00].txt - [1405 octets] - [01/03/2020 16:09:06]
AdwCleaner[C00].txt - [1595 octets] - [01/03/2020 16:09:23]
AdwCleaner[S01].txt - [1929 octets] - [04/05/2020 22:18:57]
AdwCleaner[C01].txt - [2007 octets] - [04/05/2020 22:19:19]
AdwCleaner[S02].txt - [1649 octets] - [08/07/2020 19:31:11]
AdwCleaner[S03].txt - [1843 octets] - [21/11/2021 17:33:46]
AdwCleaner[C03].txt - [1995 octets] - [21/11/2021 17:34:11]
AdwCleaner[S04].txt - [1832 octets] - [21/11/2021 17:35:46]
AdwCleaner[S05].txt - [2649 octets] - [24/06/2022 19:27:27]
AdwCleaner[C05].txt - [2729 octets] - [24/06/2022 19:28:28]
AdwCleaner[S06].txt - [2015 octets] - [24/06/2022 19:28:50]
AdwCleaner[C06].txt - [2205 octets] - [24/06/2022 19:29:08]
AdwCleaner[S07].txt - [2137 octets] - [02/07/2022 20:41:44]
AdwCleaner[C07].txt - [2327 octets] - [02/07/2022 20:42:02]
AdwCleaner[S08].txt - [2259 octets] - [08/07/2022 19:49:16]
AdwCleaner[C08].txt - [2449 octets] - [08/07/2022 19:49:32]
AdwCleaner[S09].txt - [2381 octets] - [08/07/2022 19:49:59]
AdwCleaner[C09].txt - [2571 octets] - [08/07/2022 19:50:44]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S10].txt ##########

Hola nuevamente

Hay rastros de otros antivirus/antimalware, sospecho que es la causa del problema, vamos a eliminarlos

1er.Paso

Descarga y ejecuta los desinstaladores de

  • AVG
  • AVAST

Desde Herramientas de desinstalación de Antivirus, AntiSpyware y Firewall - Guías, manuales, tutoriales y más - ForoSpyware

2°.Paso

Descarga, instala y ejecuta Revo Uninstaller | InfoSpyware y desistalas el siguiente programa:

  • Spybot - Search and Destroy en modo AVANZADO

Me comentas como te fue

Saludos

1 me gusta

Hola otra vez He realizado los pasos indicados excepto el ultimo Instalo Revo y no localizo el programa que me dices “Spybot-Search and Destroy” En mi unidad C o a ttraves del buscador dearchivos de W10 tampoco lo localizo. Don de si hay registro es en el “Editor dse Registro” varias entradas Mientras he vuelto a pasar AdwCleaner y ha encontrado otro PUP Copio y pego el informe

# -------------------------------
# Malwarebytes AdwCleaner 8.4.1.0
# -------------------------------
# Build:    01-29-2024
# Database: 2023-07-19.3 (Cloud)
# Support:  https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start:    02-10-2024
# Duration: 00:00:11
# OS:       Windows 10 (Build 19045.3803)
# Scanned:  32104
# Detected: 1


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

PUP.Optional.SafePCKit          HKCU\Software\Sunisoft

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.

***** [ Hosts File Entries ] *****

No malicious hosts file entries found.

***** [ Preinstalled Software ] *****

No Preinstalled Software found.


AdwCleaner[S00].txt - [1405 octets] - [01/03/2020 16:09:06]
AdwCleaner[C00].txt - [1595 octets] - [01/03/2020 16:09:23]
AdwCleaner[S01].txt - [1929 octets] - [04/05/2020 22:18:57]
AdwCleaner[C01].txt - [2007 octets] - [04/05/2020 22:19:19]
AdwCleaner[S02].txt - [1649 octets] - [08/07/2020 19:31:11]
AdwCleaner[S03].txt - [1843 octets] - [21/11/2021 17:33:46]
AdwCleaner[C03].txt - [1995 octets] - [21/11/2021 17:34:11]
AdwCleaner[S04].txt - [1832 octets] - [21/11/2021 17:35:46]
AdwCleaner[S05].txt - [2649 octets] - [24/06/2022 19:27:27]
AdwCleaner[C05].txt - [2729 octets] - [24/06/2022 19:28:28]
AdwCleaner[S06].txt - [2015 octets] - [24/06/2022 19:28:50]
AdwCleaner[C06].txt - [2205 octets] - [24/06/2022 19:29:08]
AdwCleaner[S07].txt - [2137 octets] - [02/07/2022 20:41:44]
AdwCleaner[C07].txt - [2327 octets] - [02/07/2022 20:42:02]
AdwCleaner[S08].txt - [2259 octets] - [08/07/2022 19:49:16]
AdwCleaner[C08].txt - [2449 octets] - [08/07/2022 19:49:32]
AdwCleaner[S09].txt - [2381 octets] - [08/07/2022 19:49:59]
AdwCleaner[C09].txt - [2571 octets] - [08/07/2022 19:50:44]
AdwCleaner[S10].txt - [2536 octets] - [09/02/2024 20:19:27]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S11].txt ##########

Ahora mismo 7 pestañas abiertas y todo va bien Otra duda que tengo. Cualquier programa de seguridad, Antivirus, AntiMalware, AntiRokits, etc, si encuentra algo lo normal es que lo guarde en la cuarentena. Supongamos que desinstalo ese programa, el archivo de cuarentena, desaparece y se vuelve a alojar de nuevo en el PC? También de otro modo la pregunta, elimino el archivo de la cuarentena manualmente o lo dejo ahi? Gracias otra vez

Ok. entonces todavia quedan rastros que debemos eliminar.

Es el mismo pup del reporte anterior, el problema es que no estas utilizando correctamente la herramienta, solo realizas el escaneo pero no mandas a cuarentena los archivos que detecta.

Ok

Generalmente no guardan automáticamente lo que detectan uno debe especificar que archivos mandar, suele haber algún botón que dice enviar a cuarentena o cuarentena.

Los archivos en cuarentena tambien se eliminan por lo tanto no hay ningun riesgo.

No es necesario eliminarlos de la cuarentena, si eliminas la aplicación se eliminan los archivos, y si no la eliminas quedan ahí, pero no pueden afectar a tu equipo ya que el código malicioso que tienen queda neutralizado.

Aun hay que eliminar el pup y los rastros de spybot, realizas lo siguiente

1er.Paso

:one: Descarga Adwcleaner en el escritorio.

  • Desactiva tu antivirus :arrow_forward: Como deshabilitar temporalmente un antivirus y cualquier programa de seguridad que tengas activado.
  • Ejecuta Adwcleaner.exe (Si usas Windows Vista/7/8 u 10 presiona clic derecho y selecciona “Ejecutar como Administrador.”)
  • Pulsar en el botón Analizar Ahora, y espera a que se termine el análisis. Inmediatamente pulsa sobre el botón Iniciar Reparación.
  • Espera a que termine y sigue las instrucciones que te aparezcan. Si te pidiera Reiniciar, pues reinicias el ordenador pulsando en Aceptar.
  • Si no encuentra nada, pulsa en Omitir Reparación.
  • El log lo encontrarás en la pestaña Informes, volviendo a abrir el programa, si es necesario o en la siguiente ubicación: C:\AdwCleaner\Logs\AdwCleaner[C0].txt. En tu caso el numero que se mayor ya que ejecutaste la herramienta varias veces.
  • Para más información aquí te dejo su manual: Manual de Adwcleaner .
  • Activa de nuevo tu antivirus y cualquier programa de seguridad que tengas activado

2°.Paso

:one: Desactivas tu antivirus :arrow_forward: Como deshabilitar temporalmente un antivirus y cualquier programa de seguridad que tengas activado.

LO DESCARGAS EN TU ESCRITORIO MUY IMPORTANTE (y no en otro sitio).

:one: Descargas Farbar Recovery Scan Tool MUY IMPORTANTE >> seleccionas la versión adecuada para la arquitectura correspondiente de tu Ordenador (32 o 64bits). :arrow_forward: ¿Cómo saber si mi Windows es de 32 o 64 bits.?

:warning: Una vez descargado FRST, desconectas tu equipo de completamente de Internet (apagas el router) >> Super Importante. Acto seguido, cierras también cualquier otro programa que tengas abierto.

:two: Farbar Recovery Scan Tool

  1. Ejecutas el FRST.exe (Si utilizas Windows Vista/7/8 o 10, presionas click derecho y seleccionas Ejecutar como Administrador).
  2. Aparecerá una ventana con un mensaje de Disclaimer/Responsabilidad, presionas sobre Si o Yes.
  3. En la ventana principal del programa presionas sobre Analizar/Scan y esperas a que finalice el análisis.
  4. Aparecerán dos logs/reportes que serán: Frst.txt y Addition.txt, estos quedarán guardados en el escritorio.

:three: Activas de nuevo tu antivirus y cualquier programa de seguridad que tengas activado. También conectas nuevamente tu equipo a Internet.

:four: PRÓXIMA RESPUESTA

Pegas los reportes de FRST , Addition.txt y de Adwcleaner. Debes de poner ambos reportes todos enteros con absolutamente todo su contenido. Deberás de realizar varios mensajes si recibes un mensaje de error/advertencia indicando que es muy largo dicho reporte que formará el mensaje (más de 50.000 carácteres aprox.).

NOTA IMPORTANTE

Por Favor, mientras estemos desinfectando tu maquina o terminando de hacerlo:

  • No realices pasos/acciones que NOSOTROS no te hayamos indicado.
  • No descargues NADA de Internet y/o conectes dispositivos externos a tu equipo.
  • No instales NADA (programas/software/complementos/extensiones del navegador…).
  • No ejecutes otros programas de seguridad (Antivirus, Antimalware, ANTINADA…).
  • No realices por tu cuenta otros procedimientos.
  • Usa tu equipo EXCLUSIVAMENTE para desinfectarlo siguiendo nuestras indicaciones.

:warning: Muy Importante :warning: Coloca los diferentes reportes que te he pedido como se muestra en la siguiente imagen:

Saludos

2 Me gusta

Realizado Paso 1 [Code]

Malwarebytes AdwCleaner 8.4.1.0

-------------------------------

Build: 01-29-2024

Database: 2023-07-19.3 (Cloud)

Support: https://www.malwarebytes.com/support

-------------------------------

Mode: Clean

-------------------------------

Start: 02-12-2024

Duration: 00:00:00

OS: Windows 10 (Build 19045.3803)

Cleaned: 0

Failed: 0

***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


[+] Delete Tracing Keys [+] Reset Winsock


AdwCleaner[S00].txt - [1405 octets] - [01/03/2020 16:09:06] AdwCleaner[C00].txt - [1595 octets] - [01/03/2020 16:09:23] AdwCleaner[S01].txt - [1929 octets] - [04/05/2020 22:18:57] AdwCleaner[C01].txt - [2007 octets] - [04/05/2020 22:19:19] AdwCleaner[S02].txt - [1649 octets] - [08/07/2020 19:31:11] AdwCleaner[S03].txt - [1843 octets] - [21/11/2021 17:33:46] AdwCleaner[C03].txt - [1995 octets] - [21/11/2021 17:34:11] AdwCleaner[S04].txt - [1832 octets] - [21/11/2021 17:35:46] AdwCleaner[S05].txt - [2649 octets] - [24/06/2022 19:27:27] AdwCleaner[C05].txt - [2729 octets] - [24/06/2022 19:28:28] AdwCleaner[S06].txt - [2015 octets] - [24/06/2022 19:28:50] AdwCleaner[C06].txt - [2205 octets] - [24/06/2022 19:29:08] AdwCleaner[S07].txt - [2137 octets] - [02/07/2022 20:41:44] AdwCleaner[C07].txt - [2327 octets] - [02/07/2022 20:42:02] AdwCleaner[S08].txt - [2259 octets] - [08/07/2022 19:49:16] AdwCleaner[C08].txt - [2449 octets] - [08/07/2022 19:49:32] AdwCleaner[S09].txt - [2381 octets] - [08/07/2022 19:49:59] AdwCleaner[C09].txt - [2571 octets] - [08/07/2022 19:50:44] AdwCleaner[S10].txt - [2536 octets] - [09/02/2024 20:19:27] AdwCleaner[S11].txt - [2597 octets] - [10/02/2024 15:48:48] AdwCleaner[C11].txt - [2767 octets] - [10/02/2024 15:49:02] AdwCleaner[S12].txt - [2701 octets] - [12/02/2024 20:18:05]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C12].txt ##########

[Code]

1 me gusta

Realizado Paso 2 Addition

Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 11.02.2024
Ejecutado por Enric (12-02-2024 20:36:26)
Ejecutado desde C:\Users\Enric\Desktop
Microsoft Windows 10 Pro Versión 22H2 19045.3803 (X64) (2024-01-07 21:54:37)
Modo de Inicio: Normal
==========================================================


==================== Cuentas: =============================


(Si una entrada es incluida en el fixlist, será eliminada.)

Administrador (S-1-5-21-3797396260-1262768339-3265785487-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3797396260-1262768339-3265785487-503 - Limited - Disabled)
Enric (S-1-5-21-3797396260-1262768339-3265785487-1001 - Administrator - Enabled) => C:\Users\Enric
Invitado (S-1-5-21-3797396260-1262768339-3265785487-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3797396260-1262768339-3265785487-504 - Limited - Disabled)

==================== Centro de Seguridad ========================

(Si una entrada es incluida en el fixlist, será eliminada.)

AV: Spybot - Search and Destroy (Disabled - Out of date) {F77C7796-45C4-531E-0DAE-B4A8229B11C8}
AV: Panda Dome (Disabled - Up to date) {8404BB29-B609-D604-AF5C-6806F0482FD3}
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {5078598A-1FA2-C888-AA5F-A9C66537DB12}

==================== Programas instalados ======================

(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)

0 A.D. (HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\0 A.D.) (Version: r21946P-alpha - Wildfire Games)
1.1 (HKLM-x32\...\{87179B53-AFC2-4F12-977D-2FF23293DC8A}_is1) (Version: 1.1 - EASIS GmbH)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1034-1033-7760-BC15014EA700}) (Version: 23.008.20470 - Adobe)
Adobe AIR (HKLM-x32\...\{00203668-8170-44A0-BE44-B632FA4D780F}) (Version: 1.0.8.4990 - Adobe Systems Inc.) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.0.4990 - Adobe Systems Inc.)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.465 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601053}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Age Of Empires Online versión 1.0 (HKLM-x32\...\{9AFBA633-7226-4624-8EE0-30FE961FB435}_is1) (Version: 1.0 - Age of Empires Online © Microsoft Corporation)
Asistente para actualización a Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.19041.2183 - Microsoft Corporation)
AutoFirma (HKLM\...\AutoFirma) (Version: 1.7.0 - Gobierno de España)
Avast Update Helper (HKLM-x32\...\{19C3AB22-3718-4E4D-B203-242F5001565B}) (Version: 1.8.1206.2 - AVAST Software) Hidden
AVG Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.8.1066.0 - AVG Technologies) Hidden
AVG Update Helper (HKLM-x32\...\{EDB7AEE7-E932-4836-AE50-D3B0B7766CB5}) (Version: 1.8.1582.3 - AVG Technologies) Hidden
BitComet 1.73 (HKLM-x32\...\BitComet_x64) (Version: 1.73 - CometNetwork)
calibre (HKLM-x32\...\{9613464B-ED03-4C3D-8334-E41264C36602}) (Version: 5.4.2 - Kovid Goyal)
CCleaner (HKLM\...\CCleaner) (Version: 6.20 - Piriform)
Compresor WinRAR (HKLM-x32\...\WinRAR archiver) (Version:  - )
Comprobación de estado de PC Windows (HKLM\...\{8B474A92-CE3A-4F46-B6F1-6DFA1390F826}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Comprobación de estado de PC Windows (HKLM\...\{D335124C-C378-488D-933F-1C5181C343F6}) (Version: 3.7.2204.15001 - Microsoft Corporation)
Configurador FNMT (HKLM-x32\...\ConfiguradorFnmt) (Version: 3.0.1 - FNMT-RCM)
CrystalDiskInfo 9.2.0 Aoi Edition (HKLM\...\CrystalDiskInfo_is1) (Version: 9.2.0 - Crystal Dew World)
Dokan Library 1.2.0.1000 (x64) (HKLM\...\{65A3A964-3DC3-0102-0000-180809151012}) (Version: 1.2.0.1000 - Dokany Project) Hidden
Dokan Library 1.2.0.1000 Bundle (HKLM-x32\...\{c2f619b0-68fd-4433-970e-cd66cd7a2775}) (Version: 1.2.0.1000 - Dokany Project)
EaseUS Data Recovery Wizard (HKLM\...\EaseUS Data Recovery Wizard_is1) (Version:  - EaseUS Data Recovery Wizard)
Eines de correcció del Microsoft Office 2013: català (HKLM-x32\...\{90150000-001F-0403-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
eMule (HKLM-x32\...\eMule) (Version:  - )
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Eraser 6.2.0.2986 (HKLM\...\{5227C9E1-58FC-45DE-880C-0E4C3559837D}) (Version: 6.2.2986 - The Eraser Project)
Estudio para la mejora del producto HP Deskjet 1510 series (HKLM\...\{71000761-BD38-48D3-8041-A445E260797F}) (Version: 32.2.188.47710 - Hewlett-Packard Co.)
Ferramentas de verificación de Microsoft Office 2013 - Galego (HKLM-x32\...\{90150000-001F-0456-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
ffdshow v1.3.4532 [2014-07-17] (HKLM-x32\...\ffdshow_is1) (Version: 1.3.4532.0 - )
Grammarly for Windows (HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\Grammarly Desktop Integrations) (Version: 1.2.62.1306 - Grammarly)
HP Deskjet 1510 series Ayuda (HKLM-x32\...\{6E20FBAA-BCB2-4429-A9A9-C8EED1254BE4}) (Version: 30.0.0 - Hewlett Packard)
HP Deskjet 1510 series Software básico del dispositivo (HKLM\...\{B610C583-FDD7-41B6-8CED-C668E51114AC}) (Version: 32.2.188.47710 - Hewlett-Packard Co.)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
iin10g6_6BrRRRr0WWW5er version 3.1 (HKLM-x32\...\iin10g6_6BrRRRr0WWW5er_is1) (Version: 3.1 - )
Intel(R) Chipset Device Software (HKLM\...\{55398EAC-F58E-4F19-B553-BDF8B9EFD839}) (Version: 10.1.1.9 - Intel Corporation) Hidden
Java 8 Update 251 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180251F0}) (Version: 8.0.2510.8 - Oracle Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\Riot Game league_of_legends.live) (Version:  - Riot Games, Inc)
Malwarebytes version 4.6.8.311 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.6.8.311 - Malwarebytes)
Microsoft Access MUI (Spanish) 2013 (HKLM-x32\...\{90150000-0015-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Age of Empires II Trial Version (HKLM-x32\...\Age of Empires II Trial) (Version:  - )
Microsoft DCF MUI (Spanish) 2013 (HKLM-x32\...\{90150000-0090-0C0A-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 121.0.2277.112 - Microsoft Corporation)
Microsoft Excel MUI (Spanish) 2013 (HKLM-x32\...\{90150000-0016-0C0A-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Groove MUI (Spanish) 2013 (HKLM-x32\...\{90150000-00BA-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (Spanish) 2013 (HKLM-x32\...\{90150000-0044-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Lync MUI (Spanish) 2013 (HKLM-x32\...\{90150000-012B-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office 64-bit Components 2013 (HKLM\...\{90150000-002A-0000-1000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (Spanish) 2013 (HKLM-x32\...\{90150000-00E1-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (Spanish) 2013 (HKLM-x32\...\{90150000-00E2-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM-x32\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Proofing (Spanish) 2013 (HKLM-x32\...\{90150000-002C-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (HKLM-x32\...\{90150000-001F-0409-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - Español (HKLM-x32\...\{90150000-001F-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (Spanish) 2013 (HKLM\...\{90150000-002A-0C0A-1000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Spanish) 2013 (HKLM-x32\...\{90150000-006E-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office zuzenketa-tresnak 2013 - Euskara (HKLM-x32\...\{90150000-001F-042D-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\OneDriveSetup.exe) (Version: 23.226.1031.0003 - Microsoft Corporation)
Microsoft OneNote MUI (Spanish) 2013 (HKLM-x32\...\{90150000-00A1-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (Spanish) 2013 (HKLM-x32\...\{90150000-001A-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (Spanish) 2013 (HKLM-x32\...\{90150000-0018-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (Spanish) 2013 (HKLM-x32\...\{90150000-0019-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29334 (HKLM-x32\...\{a9cfe9c7-e54f-46cd-9c5c-542ff8e3e8c4}) (Version: 14.28.29334.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29334 (HKLM-x32\...\{b2d0f752-adc5-496e-8f70-8669de01f746}) (Version: 14.28.29334.0 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Additional Runtime - 14.28.29334 (HKLM\...\{2E11EF4E-901F-4B2D-B68E-3DB2A566C857}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.28.29334 (HKLM\...\{8A3F7D5B-422D-49D9-84F7-8DC1B7782967}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Additional Runtime - 14.28.29334 (HKLM-x32\...\{14C49FC8-3E9B-4F29-8526-26629B5CF30B}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.28.29334 (HKLM-x32\...\{0D01A812-82A1-481F-8546-8E28E976F8DF}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Word MUI (Spanish) 2013 (HKLM-x32\...\{90150000-001B-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
MiniTool Power Data Recovery 7.5 (HKLM\...\{E1BCD081-4BF4-4E2F-832A-911EC42EF3C5}_is1) (Version: 7.5 - MiniTool Solution Ltd.)
Mozilla Firefox (x64 es-ES) (HKLM\...\Mozilla Firefox 122.0.1 (x64 es-ES)) (Version: 122.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 73.0.1 - Mozilla)
MSI Live Update 6 (HKLM-x32\...\{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1) (Version: 6.2.0.67 - MSI)
MSI Super Charger (HKLM-x32\...\{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1) (Version: 1.2.029 - MSI)
MSIRegister (HKLM-x32\...\{80B995A4-3A86-4690-98A6-563F1A788835}_is1) (Version: 2.0.0.19 - MSI)
NirSoft Wireless Network Watcher (HKLM-x32\...\NirSoft Wireless Network Watcher) (Version:  - )
NoxPlayer (HKLM-x32\...\Nox) (Version: 7.0.5.6 - Duodian Technology Co. Ltd.)
NVIDIA Controlador de audio HD 1.3.38.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.35 - NVIDIA Corporation)
NVIDIA Controlador de la controladora 3D Vision 337.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 337.50 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.0 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{80407BA7-7763-4395-AB98-5233F1B34E65}) (Version: 9.13.1220 - NVIDIA Corporation) Hidden
NVIDIA Software del sistema PhysX 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
NVIDIA Virtual Audio 1.2.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver) (Version: 1.2.22 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 26.1.1 - OBS Project)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM-x32\...\{90150000-001F-040C-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Panda Devices Agent (HKLM-x32\...\{DB0164A2-ADE9-4FEE-B080-D506BDD6427F}) (Version: 1.08.09 - Panda Security) Hidden
Panda Devices Agent (HKLM-x32\...\Panda Devices Agent) (Version: 1.03.09 - Panda Security) Hidden
Panda Dome (HKLM\...\{7DD06CA9-7719-4AA5-B778-BF08A8C72C6A}) (Version: 12.12.20 - Panda Security) Hidden
Panda Dome (HKLM-x32\...\Panda Universal Agent Endpoint) (Version: 22.2.0 - Panda Security)
Paquete de controladores de Windows - Google, Inc. (WinUSB) AndroidUsbDeviceClass  (08/28/2014 11.0.0000.00000) (HKLM\...\092555911492C6959D2596D612F52DCA71881CA2) (Version: 08/28/2014 11.0.0000.00000 - Google, Inc.)
Paquete de idioma de Microsoft Visual Studio 2010 Tools para Office Runtime (x64) - ESN (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - ESN) (Version: 10.0.50903 - Microsoft Corporation)
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
RawTherapee versión 5.8 (HKLM\...\RawTherapee5.8_is1) (Version: 5.8 - rawtherapee.com)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.1.505.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7534 - Realtek Semiconductor Corp.)
Revisores de Texto do Microsoft Office 2013 – Português do Brasil (HKLM-x32\...\{90150000-001F-0416-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Revo Uninstaller 2.4.5 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.4.5 - VS Revo Group, Ltd.)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{7F6C4883-A18C-459A-82C1-A2F9403F2DA6}) (Version:  - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-0016-0C0A-0000-0000000FF1CE}_Office15.PROPLUS_{06F86A10-2C88-48BC-A9E9-78E9108FF1BD}) (Version:  - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-0090-0C0A-0000-0000000FF1CE}_Office15.PROPLUS_{06F86A10-2C88-48BC-A9E9-78E9108FF1BD}) (Version:  - Microsoft) Hidden
Software para dispositivos de chipset Intel® (HKLM-x32\...\{c7f54569-0018-439c-809a-48046a4d4ebc}) (Version: 10.1.1.9 - Intel(R) Corporation) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Tenorshare 4DDiG 9.9.1.6 (HKLM\...\{UltData - Windows}_is1) (Version: 9.9.1.6 - Tenorshare, Inc.)
Update for Windows 10 for x64-based Systems (KB4480730) (HKLM\...\{3BAE4496-6F6C-4330-A8AA-B93D3D346FA5}) (Version: 2.53.0.0 - Microsoft Corporation)
UpdateAssistant (HKLM\...\{F339C545-24DC-4870-AA32-6EB6B0500B95}) (Version: 1.24.0.0 - Microsoft Corporation) Hidden
VGA Boost (HKLM-x32\...\{809ACFAE-9A4D-4C60-9223-D8B615CD8CBA}}_is1) (Version: 1.0.0.8 - MSI)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.18 - VideoLAN)
WebView2 Runtime de Microsoft Edge (HKLM-x32\...\Microsoft EdgeWebView) (Version: 121.0.2277.112 - Microsoft Corporation)
WhatsApp (Outdated) (HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\WhatsApp) (Version: 2.2326.10 - WhatsApp)
Wondershare Helper Compact 2.5.3 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.5.3 - Wondershare)
Wondershare UniConverter(Build 11.2.0.228) (HKLM-x32\...\UniConverter_is1) (Version: 11.2.0.228 - Wondershare Software)
XnView MP (x64) (HKLM\...\XnView MP (x64)_is1) (Version: 1.6.2.0 - Pierre-e Gougelet)
XnViewMP 1.00.0 (HKLM\...\XnViewMP_is1) (Version: 1.00.0 - Gougelet Pierre-e)
Zoom (HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\ZoomUMX) (Version: 5.8.4 (1736) - Zoom Video Communications, Inc.)

Packages:
=========
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC [2024-02-03] ()
Complemento de motor del medio de Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2023-10-03] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2024-01-07] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2024-01-07] (Microsoft Corporation) [MS Ad]
Reader Notification Client -> C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r [2021-06-28] (Adobe Systems Incorporated)
Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.19.1262.0_x64__8wekyb3d8bbwe [2024-02-05] (Microsoft Studios) [MS Ad]

==================== Personalizado CLSID (Lista blanca): ==============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

CustomCLSID: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001_Classes\CLSID\{e5de0733-1ead-776d-2f1f-f2264dd7dc67}\localserver32 -> C:\Users\Enric\AppData\Local\Grammarly\DesktopIntegrations\Grammarly.Desktop.exe (Grammarly, Inc. -> Grammarly)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> Ningún archivo
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> Ningún archivo
ContextMenuHandlers1: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => C:\Program Files\Eraser\Eraser.Shell.dll [2019-08-18] (Heidi Computers Ltd -> The Eraser Project)
ContextMenuHandlers1: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} =>  -> Ningún archivo
ContextMenuHandlers1: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} =>  -> Ningún archivo
ContextMenuHandlers1: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAShell.dll [2023-01-02] (Panda Security S.L. -> Panda Security, S.L.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext64.dll [2008-06-20] () [Archivo no firmado]
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext.dll [2008-09-16] () [Archivo no firmado]
ContextMenuHandlers2: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => C:\Program Files\Eraser\Eraser.Shell.dll [2019-08-18] (Heidi Computers Ltd -> The Eraser Project)
ContextMenuHandlers2: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} =>  -> Ningún archivo
ContextMenuHandlers2: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} =>  -> Ningún archivo
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-06-07] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} =>  -> Ningún archivo
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo
ContextMenuHandlers4: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => C:\Program Files\Eraser\Eraser.Shell.dll [2019-08-18] (Heidi Computers Ltd -> The Eraser Project)
ContextMenuHandlers4: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext64.dll [2008-06-20] () [Archivo no firmado]
ContextMenuHandlers4-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext.dll [2008-09-16] () [Archivo no firmado]
ContextMenuHandlers5: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => C:\Program Files\Eraser\Eraser.Shell.dll [2019-08-18] (Heidi Computers Ltd -> The Eraser Project)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2020-10-01] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers5: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAShell.dll [2023-01-02] (Panda Security S.L. -> Panda Security, S.L.)
ContextMenuHandlers6: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => C:\Program Files\Eraser\Eraser.Shell.dll [2019-08-18] (Heidi Computers Ltd -> The Eraser Project)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-06-07] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers6: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} =>  -> Ningún archivo
ContextMenuHandlers6: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} =>  -> Ningún archivo
ContextMenuHandlers6: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAShell.dll [2023-01-02] (Panda Security S.L. -> Panda Security, S.L.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext64.dll [2008-06-20] () [Archivo no firmado]
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext.dll [2008-09-16] () [Archivo no firmado]
ContextMenuHandlers1_S-1-5-21-3797396260-1262768339-3265785487-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo
ContextMenuHandlers4_S-1-5-21-3797396260-1262768339-3265785487-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo
ContextMenuHandlers5_S-1-5-21-3797396260-1262768339-3265785487-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo

==================== Codecs (Lista blanca) ====================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [112640 2014-07-17] () [Archivo no firmado]

==================== Accesos directos & WMI ========================

(Las entradas pueden ser listadas para ser restauradas o eliminadas.)

Shortcut: C:\Users\Enric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\0 A.D. alpha\Open logs folder.lnk -> C:\Users\Enric\AppData\Local\0 A.D. alpha\OpenLogsFolder.bat ()

==================== Módulos cargados (Lista blanca) =============

2020-03-01 15:51 - 2008-06-20 00:41 - 000062464 _____ () [Archivo no firmado] C:\Program Files (x86)\WinRar\rarext64.dll
2020-03-02 11:01 - 2014-03-28 06:21 - 001225920 ____R (NVIDIA CORPORATION -> NVIDIA Corporation) [Archivo no firmado] C:\WINDOWS\system32\nvspcap64.dll

==================== Alternate Data Streams (Lista blanca) ========

(Si una entrada es incluida en el fixlist, solamente los ADS serán eliminados.)

AlternateDataStreams: C:\ProgramData\TEMP:5C321E34 [136]
AlternateDataStreams: C:\Users\Enric\Downloads\UmVkZXNYZW4xNi5Fc2NyaXRvcmlvX1JlbW90b19Nb3ZpbGlkYWQgJFMxLTI-.ica:icasource [276]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [488]

==================== Modo Seguro (Lista blanca) ==================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Asociación (Lista blanca) =================

==================== Internet Explorer (Lista blanca) ==========

HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie
SearchScopes: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001 -> DefaultScope {6A1806CD-94D4-4689 URL = 
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_251\bin\ssv.dll [2020-04-21] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_251\bin\jp2ssv.dll [2020-04-21] (Oracle America, Inc. -> Oracle Corporation)

(Si una entrada es incluida en el fixlist, será eliminada del registro.)

IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\0411dd.com -> 0411dd.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\0511zfhl.com -> 0511zfhl.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\0632qyw.com -> 0632qyw.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\1-2005-search.com -> www.1-2005-search.com

Hay 12755 más sitios.


==================== Hosts contenido: =========================

(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)

2015-07-10 12:04 - 2022-06-10 22:35 - 000454734 ____R C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1	activation.easeus.com
127.0.0.1	track.easeus.com
127.0.0.1	66.39.112.91
127.0.0.1	216.92.151.227
127.0.0.1	216.92.61.7
127.0.0.1	www.easeus.com
127.0.0.1	www.007guard.com
127.0.0.1	007guard.com
127.0.0.1	008i.com
127.0.0.1	www.008k.com
127.0.0.1	008k.com
127.0.0.1	www.00hq.com
127.0.0.1	00hq.com
127.0.0.1	010402.com
127.0.0.1	www.032439.com
127.0.0.1	032439.com
127.0.0.1	www.0scan.com
127.0.0.1	0scan.com
127.0.0.1	1000gratisproben.com
127.0.0.1	www.1000gratisproben.com
127.0.0.1	1001namen.com
127.0.0.1	www.1001namen.com
127.0.0.1	100888290cs.com
127.0.0.1	www.100888290cs.com
127.0.0.1	www.100sexlinks.com
127.0.0.1	100sexlinks.com
127.0.0.1	10sek.com
127.0.0.1	www.10sek.com
127.0.0.1	www.1-2005-search.com
127.0.0.1	1-2005-search.com

Hay 15609 más lineas.


==================== Otras Áreas ===========================

(Actualmente no existe una corrección automática para esta sección.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\System32\OpenSSH\;C:\Program Files (x86)\Calibre2\;C:\Program Files\AutoFirma\AutoFirma;C:\Users\Enric\AppData\Local\Microsoft\WindowsApps;C:\adb;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\Control Panel\Desktop\\Wallpaper -> 
DNS Servers: El medio no está conectado a internet.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Firewall de Windows está habilitado.

==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==

(Si una entrada es incluida en el fixlist, será eliminada.)

HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "Adobe Reader Speed Launcher"
HKLM\...\StartupApproved\Run32: => "Wondershare Helper Compact.exe"
HKLM\...\StartupApproved\Run32: => "HP Software Update"
HKLM\...\StartupApproved\Run32: => "Eraser"
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\StartupApproved\StartupFolder: => "Supervisar alertas de tinta - HP Deskjet 1510 series.lnk"
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\StartupApproved\StartupFolder: => "Enviar a OneNote.lnk"
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\StartupApproved\Run: => "Grammarly"

==================== Reglas de firewall (Lista blanca) ================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

FirewallRules: [{70DD94EC-9CE7-47EC-ADD2-81BB88F0A298}] => (Allow) C:\Program Files\EaseUS\EaseUS Data Recovery Wizard\DRWUI.exe (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd)
FirewallRules: [{4050D12E-D133-4C4E-9480-CE0CE97B0AD4}] => (Allow) C:\Program Files\EaseUS\EaseUS Data Recovery Wizard\DRWUI.exe (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd)
FirewallRules: [{C252D89D-3BA8-4194-8790-5D5BCD1FCDCE}] => (Allow) LPort=50053
FirewallRules: [{329630B8-77FE-4BD9-A085-6725A9B66D91}] => (Allow) LPort=50053
FirewallRules: [{C9896F9D-A78D-4943-A11F-3197136CD89F}] => (Allow) LPort=53016
FirewallRules: [{F8576A81-D941-472A-AF2F-8BFF99D7CD3E}] => (Allow) LPort=53015
FirewallRules: [{ACDD5A20-C45F-4BD6-88B7-0D50E1036029}] => (Allow) LPort=53014
FirewallRules: [{2317297A-457C-4B69-9FCB-7306EA50CD4C}] => (Allow) LPort=43013
FirewallRules: [{CB1062B4-9DCF-4571-B68C-4A2CA3844A2F}] => (Allow) LPort=43012
FirewallRules: [{306DA552-978C-48DF-AF16-F26D1E283657}] => (Allow) LPort=33011
FirewallRules: [{71AF99EC-A3B4-440E-A494-8CEDACF76424}] => (Allow) LPort=33010
FirewallRules: [{00E5DD79-344A-49AC-8B7E-0DFDD20A427F}] => (Allow) LPort=33009
FirewallRules: [{C3043CF6-9E95-4BA9-80FA-740DC4D3EE5D}] => (Allow) LPort=23008
FirewallRules: [{C5A8A309-E4F6-4D15-B9CC-8F9BE5FF382B}] => (Allow) LPort=23007
FirewallRules: [{3EA7303C-F05F-4EB8-8C30-3B105B447315}] => (Allow) LPort=53016
FirewallRules: [{1CC2825B-B7CE-45B7-A1D8-11DE195C4552}] => (Allow) LPort=53015
FirewallRules: [{06481206-6571-486D-B827-3B228BBCDED9}] => (Allow) LPort=53014
FirewallRules: [{5AC9C6AA-34AF-45DD-8959-AFFE89B8D892}] => (Allow) LPort=43013
FirewallRules: [{1C37DE6F-CB07-40E4-A233-EAEDCD49B008}] => (Allow) LPort=43012
FirewallRules: [{69C36FC3-0D72-474F-88D8-DE41D555D57B}] => (Allow) LPort=33011
FirewallRules: [{2AE7AB25-F774-48D0-B8FF-826D01F3AA4C}] => (Allow) LPort=33010
FirewallRules: [{E3C6E943-1D0C-4010-9AD1-C1BEDD92A17D}] => (Allow) LPort=33009
FirewallRules: [{45B7624C-1A95-4AA1-A9AB-CB125DD598FF}] => (Allow) LPort=23008
FirewallRules: [{A3888199-EFFD-4152-90A9-1BF68231A8D1}] => (Allow) LPort=23007
FirewallRules: [{A6352B8B-1050-4BE0-8A1A-0015D2F3FCE8}] => (Allow) LPort=57218
FirewallRules: [{E932F4F7-559F-46F9-9FC6-83031E82EFF3}] => (Allow) LPort=57217
FirewallRules: [{A6A4401C-4758-470D-8AF7-65F3637559F7}] => (Allow) LPort=57216
FirewallRules: [{4781A3A4-5AAF-4518-B54A-F89216EBB291}] => (Allow) LPort=57215
FirewallRules: [{0B9F1C87-3013-4DB4-AD9E-F664D20C611E}] => (Allow) LPort=57214
FirewallRules: [{56BC389B-FA70-45C1-B030-DA8A99E18570}] => (Allow) LPort=57213
FirewallRules: [{8F34D4D7-0F4F-45DF-B0BE-E928B40651C3}] => (Allow) LPort=57212
FirewallRules: [{2AF76472-0AEC-488C-BF70-CC92F293480C}] => (Allow) LPort=57211
FirewallRules: [{DDD9D5D5-8F2F-45BB-8D25-7ACFEE1E48E7}] => (Allow) LPort=57210
FirewallRules: [{800508B4-8086-421C-AA44-1A2E6812BA1B}] => (Allow) LPort=57209
FirewallRules: [{951E8C03-082D-458B-94F3-21EFEDF6E64F}] => (Allow) LPort=57218
FirewallRules: [{3E1A7344-CE8A-4262-8823-139D994F30B1}] => (Allow) LPort=57217
FirewallRules: [{3D114DEB-ECE5-45EC-B81A-5FA2BE2B528D}] => (Allow) LPort=57216
FirewallRules: [{5DE287EC-B0B8-44FA-B4B2-65388712BD0B}] => (Allow) LPort=57215
FirewallRules: [{E4DD0540-F010-4EEF-9A03-4CEB1A4CC693}] => (Allow) LPort=57214
FirewallRules: [{CCF3EDDC-1208-48E5-AB8D-DAAC4CF7B5CD}] => (Allow) LPort=57213
FirewallRules: [{9537AAE8-FAFD-4463-9EF0-77C8A2286084}] => (Allow) LPort=57212
FirewallRules: [{B3A39A35-8B97-4F55-8A1C-4B58EECB252B}] => (Allow) LPort=57211
FirewallRules: [{9149E68E-FC65-4745-B312-84ED3C40DC4C}] => (Allow) LPort=57210
FirewallRules: [{12E047E2-6D4B-40E7-9AC7-115FB9097456}] => (Allow) LPort=57209
FirewallRules: [UDP Query User{009902BF-ECC4-4278-BEB9-D945D3C87BAF}C:\program files\bitcomet\bitcomet.exe] => (Allow) C:\program files\bitcomet\bitcomet.exe (Xing Wang -> www.BitComet.com)
FirewallRules: [TCP Query User{6B6FC538-F638-4424-88EC-00EC4CA69DCC}C:\program files\bitcomet\bitcomet.exe] => (Allow) C:\program files\bitcomet\bitcomet.exe (Xing Wang -> www.BitComet.com)
FirewallRules: [{F00156AA-EDC5-4245-B484-50AB0EB04F49}] => (Allow) C:\Program Files (x86)\Bignox\BigNoxVM\RT\NoxVMHandle.exe (Nox Limited -> Nox Limited Corporation)
FirewallRules: [{A79238E2-EF8D-47A7-9868-8F72521E8080}] => (Allow) D:\Program Files\Nox\bin\Nox.exe (Nox Limited -> Duodian Technology Co. Ltd.)
FirewallRules: [{66043707-1141-4B79-9E9B-D033AEBAFF78}] => (Allow) C:\Program Files (x86)\eMule\LinkCreator.exe (eMule-Project.net) [Archivo no firmado]
FirewallRules: [{FEB65977-71A5-45FB-BFBC-6324000672FE}] => (Allow) C:\Program Files (x86)\eMule\LinkCreator.exe (eMule-Project.net) [Archivo no firmado]
FirewallRules: [{5BB6306C-57FF-4382-8EFD-D96D6AAF846D}] => (Allow) C:\Program Files (x86)\eMule\LinkCreator.exe (eMule-Project.net) [Archivo no firmado]
FirewallRules: [{F0D23F71-109A-4E53-AEDB-07EC051CFB47}] => (Allow) C:\Program Files (x86)\eMule\LinkCreator.exe (eMule-Project.net) [Archivo no firmado]
FirewallRules: [UDP Query User{C1A681D8-E234-4915-A964-950D76C4F14D}C:\program files (x86)\steam\steamapps\common\warface\mglauncher\mgl.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\warface\mglauncher\mgl.exe (My.Com B.V. -> MY.COM B.V.)
FirewallRules: [TCP Query User{E54D32C9-23EB-4AD2-8C8A-99348E5E26BB}C:\program files (x86)\steam\steamapps\common\warface\mglauncher\mgl.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\warface\mglauncher\mgl.exe (My.Com B.V. -> MY.COM B.V.)
FirewallRules: [{5683E8D1-186E-4F43-9F86-B0BC048A4DA0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warface\WarfaceMycomSteamLoader.exe (My.Com B.V. -> MY.COM B.V.)
FirewallRules: [{0F30BD1A-9043-4BA8-9445-53FB40CADB10}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warface\WarfaceMycomSteamLoader.exe (My.Com B.V. -> MY.COM B.V.)
FirewallRules: [{D2BF9EE8-B308-41D7-9094-2F339133C416}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{0A255F29-76A5-452D-B8AF-7402E0CDD319}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{01B287BD-DA9B-42A3-861A-66D4B823723B}] => (Allow) C:\Program Files (x86)\Steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{FFE933BB-E6A8-4EAA-BACD-A1617530F39A}] => (Allow) C:\Program Files (x86)\Steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{148EEE84-B2B3-4A90-BA93-1489A86E502C}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{67EC0BE8-FA9B-4041-992D-B2AFF06FF66D}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8A623CA3-1584-4CCB-A632-F155B20E811F}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{3B49801F-F696-4C2F-96A0-FBF74FCBC987}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{C630C58A-C8EC-40EF-B30A-8015570CAFA1}C:\program files (x86)\avg\browser\application\avgbrowser.exe] => (Block) C:\program files (x86)\avg\browser\application\avgbrowser.exe (AVG Technologies USA, LLC -> AVG Technologies)
FirewallRules: [TCP Query User{449D068C-B2CB-449E-8410-CB455DCE38EE}C:\program files (x86)\avg\browser\application\avgbrowser.exe] => (Block) C:\program files (x86)\avg\browser\application\avgbrowser.exe (AVG Technologies USA, LLC -> AVG Technologies)
FirewallRules: [UDP Query User{57CF48C6-4B8D-457E-9EF3-C2E3417FA8C3}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{980DA13B-B1C0-4F4A-82F6-0AC96B3C262C}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{B86C03B0-4872-4676-A16B-FB3B7E7F5983}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{8EEDA04B-194E-4F13-9057-38D34634266F}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{F1AC99FF-8EA8-4AD9-BC85-5C503999EE13}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe (hxxp://www.emule-project.net) [Archivo no firmado]
FirewallRules: [TCP Query User{1E74E305-6F39-4E2D-ADD4-96F5B98ADB0A}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe (hxxp://www.emule-project.net) [Archivo no firmado]
FirewallRules: [{4B273563-714A-4130-9A8C-69403A64B474}] => (Allow) C:\Users\Enric\Downloads\4ddig-for-windows.exe (Tenorshare Co., Ltd. -> Tenorshare Co., Ltd.)
FirewallRules: [{6F4D3F05-08E1-4C96-9FD6-4ABFFAEB59D3}] => (Allow) C:\Users\Enric\Downloads\4ddig-for-windows.exe (Tenorshare Co., Ltd. -> Tenorshare Co., Ltd.)
FirewallRules: [{D056ABB0-DC76-4DD5-A6F4-AA864BB542C8}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\Tenorshare 4DDiG.exe (Tenorshare Co., Ltd. -> Tenorshare)
FirewallRules: [{BA599C33-865E-42BF-AB8B-8770ADC27D58}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\Tenorshare 4DDiG.exe (Tenorshare Co., Ltd. -> Tenorshare)
FirewallRules: [{DA97BF4B-873F-41A5-9D25-0231ABF7C99F}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\NetFrameCheck.exe (Tenorshare Co., Ltd. -> Tenorshare)
FirewallRules: [{F739C48D-A55C-4FDD-B8BA-8BE3F4B3791C}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\NetFrameCheck.exe (Tenorshare Co., Ltd. -> Tenorshare)
FirewallRules: [{F4C3D5BB-5909-4F93-8E97-6F2AEF032D39}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\ParseRecord.exe (Tenorshare Co., Ltd. -> )
FirewallRules: [{E59B5972-311A-4AAA-B1E9-CB212AB0ACA2}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\ParseRecord.exe (Tenorshare Co., Ltd. -> )
FirewallRules: [{332090D5-962F-4229-A49F-EA05B452238F}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\UpdateService.exe (Tenorshare Co., Ltd. -> )
FirewallRules: [{2F6EB965-12EC-49BD-AB62-86BE03872F2B}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\UpdateService.exe (Tenorshare Co., Ltd. -> )
FirewallRules: [{D9600BDF-B3AC-4C8B-ABA5-024827665B7F}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\preuninstall.exe (Tenorshare Co., Ltd. -> )
FirewallRules: [{EB8FB23D-6236-4188-9D4F-1B5996597C5C}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\preuninstall.exe (Tenorshare Co., Ltd. -> )
FirewallRules: [{327199D9-42AD-40CB-9417-A1CDC6169D8F}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\DeviceViewerService.exe (Tenorshare Co., Ltd. -> Tenorshare)
FirewallRules: [{7C89F184-3910-46D4-A47B-AF0805F9D0A4}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\DeviceViewerService.exe (Tenorshare Co., Ltd. -> Tenorshare)
FirewallRules: [{F3A57EB3-3CF3-4550-B008-C066669AC244}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\NASConnecter.exe (Tenorshare Co., Ltd. -> Tenorshare)
FirewallRules: [{7FC9B0CD-1AAF-4B52-9851-D2075406ED6A}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\NASConnecter.exe (Tenorshare Co., Ltd. -> Tenorshare)
FirewallRules: [{D2ECF145-D4FA-45C2-B860-D4BE8EAC25D6}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\DataScanService.exe (Tenorshare Co., Ltd. -> Tenorshare Co.,Ltd.)
FirewallRules: [{0EB808E7-C12D-4BB5-BB21-2E51FDCBEC5B}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\DataScanService.exe (Tenorshare Co., Ltd. -> Tenorshare Co.,Ltd.)
FirewallRules: [{B756A47B-7B9D-4098-B67F-B47E12468240}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\DataRecoveryService.exe (Tenorshare Co., Ltd. -> Tenorshare Co.,Ltd.)
FirewallRules: [{BED65BC6-A441-4B39-A9F6-97A5FA5DB5F6}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\DataRecoveryService.exe (Tenorshare Co., Ltd. -> Tenorshare Co.,Ltd.)
FirewallRules: [{79D8331C-F290-47B6-A1E7-5AE8127A1EA4}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\MsgSupport\MsgSupportService.exe (Tenorshare Co., Ltd. -> )
FirewallRules: [{0A983E95-BFDB-4C35-8DA7-9844468EF139}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\MsgSupport\MsgSupportService.exe (Tenorshare Co., Ltd. -> )
FirewallRules: [{94B7796A-B9DB-4237-9688-21599779ABCE}] => (Allow) C:\Program Files\EaseUS\EaseUS Data Recovery Wizard\DRWUI.exe (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd)
FirewallRules: [{5FDCB116-0CFD-441E-837A-BFC799E4AD70}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.112.3206.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{3C84E578-335D-4ABB-A150-95323C335F1B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.112.3206.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{DCD3FEBA-8199-45B8-A358-2FB198EB1994}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.112.3206.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7349F15D-8FF3-47D1-805B-D26B3C006718}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.112.3206.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{208D7E83-770F-4B79-B9F0-D28BDECD3262}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\121.0.2277.112\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{86EF67B3-7B3F-496E-A3B4-4304D85B37BE}] => (Allow) C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe (AVG Technologies USA, LLC -> AVG Technologies)

==================== Puntos de Restauración =========================

ATENCIÓN: Restaurar Sistema está deshabilitado (Total:223.01 GB) (Free:58.19 GB) (26%)

==================== Dispositivos defectuosos en el Administrador de dispositivos ============

Name: Mouse PS/2 de Microsoft
Description: Mouse PS/2 de Microsoft
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Teclado PS/2 estándar
Description: Teclado PS/2 estándar
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Teclados estándar)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Errores del registro de eventos: ========================

Errores de aplicación:
==================
Error: (02/12/2024 03:36:39 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: dwm.exe, versión: 10.0.19041.3636, marca de tiempo: 0x6e55ef4a
Nombre del módulo con errores: KERNELBASE.dll, versión: 10.0.19041.3758, marca de tiempo: 0xd80f8f12
Código de excepción: 0xc00001ad
Desplazamiento de errores: 0x000000000012db22
Identificador del proceso con errores: 0x3a24
Hora de inicio de la aplicación con errores: 0x01da5d595c94f098
Ruta de acceso de la aplicación con errores: C:\WINDOWS\System32\dwm.exe
Ruta de acceso del módulo con errores: C:\WINDOWS\System32\KERNELBASE.dll
Identificador del informe: b605b76b-9b67-49dc-be74-5aae026dbd35
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:

Error: (02/12/2024 03:15:30 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: dwm.exe, versión: 10.0.19041.3636, marca de tiempo: 0x6e55ef4a
Nombre del módulo con errores: KERNELBASE.dll, versión: 10.0.19041.3758, marca de tiempo: 0xd80f8f12
Código de excepción: 0xc00001ad
Desplazamiento de errores: 0x000000000012db22
Identificador del proceso con errores: 0xb28
Hora de inicio de la aplicación con errores: 0x01da5d5921c1c416
Ruta de acceso de la aplicación con errores: C:\WINDOWS\System32\dwm.exe
Ruta de acceso del módulo con errores: C:\WINDOWS\System32\KERNELBASE.dll
Identificador del informe: c1f4d3e9-5b40-4983-8e29-b3860840a870
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:

Error: (02/12/2024 03:13:51 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: dwm.exe, versión: 10.0.19041.3636, marca de tiempo: 0x6e55ef4a
Nombre del módulo con errores: KERNELBASE.dll, versión: 10.0.19041.3758, marca de tiempo: 0xd80f8f12
Código de excepción: 0xc00001ad
Desplazamiento de errores: 0x000000000012db22
Identificador del proceso con errores: 0x1470
Hora de inicio de la aplicación con errores: 0x01da5c9c196db56f
Ruta de acceso de la aplicación con errores: C:\WINDOWS\System32\dwm.exe
Ruta de acceso del módulo con errores: C:\WINDOWS\System32\KERNELBASE.dll
Identificador del informe: d45b9ef8-e4e2-4c0b-8a5b-f57aa829a8c6
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:

Error: (02/12/2024 03:08:11 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: minidump-analyzer.exe, versión: 122.0.1.8801, marca de tiempo: 0x65c0f511
Nombre del módulo con errores: ntdll.dll, versión: 10.0.19041.3636, marca de tiempo: 0x9b64aa6f
Código de excepción: 0xc00000fd
Desplazamiento de errores: 0x00000000000115cb
Identificador del proceso con errores: 0x1060
Hora de inicio de la aplicación con errores: 0x01da5d5854011b98
Ruta de acceso de la aplicación con errores: C:\Program Files\Mozilla Firefox\minidump-analyzer.exe
Ruta de acceso del módulo con errores: C:\WINDOWS\SYSTEM32\ntdll.dll
Identificador del informe: ea6b27b3-480f-4e7d-bc09-4972d7ce2927
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:

Error: (02/11/2024 04:27:13 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: firefox.exe, versión: 122.0.1.8801, marca de tiempo: 0x65c0f511
Nombre del módulo con errores: xul.dll, versión: 122.0.1.8801, marca de tiempo: 0x65c0f540
Código de excepción: 0x80000003
Desplazamiento de errores: 0x00000000006d7220
Identificador del proceso con errores: 0xa38
Hora de inicio de la aplicación con errores: 0x01da5c7efd23760c
Ruta de acceso de la aplicación con errores: C:\Program Files\Mozilla Firefox\firefox.exe
Ruta de acceso del módulo con errores: C:\Program Files\Mozilla Firefox\xul.dll
Identificador del informe: d1c1672e-f611-4d6b-bab8-66af1b4264b0
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:

Error: (02/11/2024 04:27:12 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: dwm.exe, versión: 10.0.19041.3636, marca de tiempo: 0x6e55ef4a
Nombre del módulo con errores: KERNELBASE.dll, versión: 10.0.19041.3758, marca de tiempo: 0xd80f8f12
Código de excepción: 0xc00001ad
Desplazamiento de errores: 0x000000000012db22
Identificador del proceso con errores: 0x1724
Hora de inicio de la aplicación con errores: 0x01da5c4081b44d38
Ruta de acceso de la aplicación con errores: C:\WINDOWS\System32\dwm.exe
Ruta de acceso del módulo con errores: C:\WINDOWS\System32\KERNELBASE.dll
Identificador del informe: 8f6c6c5c-7a3c-4962-acb8-5ce78cb0ea1b
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:

Error: (02/10/2024 03:38:38 PM) (Source: AbtPaaS) (EventID: 0) (User: )
Description: Event-ID 0

Error: (02/10/2024 03:38:38 PM) (Source: AbtPaaS) (EventID: 0) (User: )
Description: Event-ID 0


Errores del sistema:
=============
Error: (02/12/2024 08:18:28 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio EaseUS UPDATE SERVICE se terminó de manera inesperada. Esto ha sucedido 1 veces.

Error: (02/12/2024 08:18:28 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio MSI_Trigger_Service se terminó de manera inesperada. Esto ha sucedido 1 veces.

Error: (02/12/2024 08:18:28 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio MSIREGISTER_MR se terminó de manera inesperada. Esto ha sucedido 1 veces.

Error: (02/12/2024 08:18:28 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio NVIDIA Streamer Service se terminó de manera inesperada. Esto ha sucedido 1 veces.

Error: (02/12/2024 08:18:28 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio NVIDIA Network Service se terminó de manera inesperada. Esto ha sucedido 1 veces.

Error: (02/12/2024 08:18:28 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: El servicio NVIDIA Display Container LS terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 6000 milisegundos: Reiniciar el servicio.

Error: (02/12/2024 08:18:28 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio Adobe Acrobat Update Service se terminó de manera inesperada. Esto ha sucedido 1 veces.

Error: (02/12/2024 08:18:28 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio MSI Live Update Service se terminó de manera inesperada. Esto ha sucedido 1 veces.


CodeIntegrity:
===============
Date: 2024-02-10 15:44:43
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume1\Windows\System32\dokannp1.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2024-02-10 15:29:05
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\AVG\Antivirus\AVGSvc.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2024-02-10 15:29:03
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\AVG\Antivirus\aswAMSI.dll that did not meet the Windows signing level requirements.


==================== Información de la memoria =========================== 

BIOS: American Megatrends Inc. V1.6 03/30/2015
Placa base: MSI H81-P33(MS-7820)
Procesador: Intel(R) Core(TM) i5-4590 CPU @ 3.30GHz
Porcentaje de memoria en uso: 35%
RAM física total: 8134.59 MB
RAM física disponible: 5222.71 MB
Virtual total: 8646.59 MB
Virtual disponible: 5429.36 MB

==================== Unidades ================================

Drive c: (El meu W10) (Fixed) (Total:223.01 GB) (Free:58.19 GB) (Model: KINGSTON SA400S37240G) NTFS
Drive d: () (Fixed) (Total:465.76 GB) (Free:180.43 GB) (Model: ST3500418AS) NTFS
Drive f: () (Fixed) (Total:223.47 GB) (Free:74.91 GB) (Model: CT240BX200SSD1) NTFS

\\?\Volume{4f92d0fb-0000-0000-0000-100000000000}\ (Reservado para el sistema) (Fixed) (Total:0.1 GB) (Free:0.05 GB) NTFS
\\?\Volume{990e0a73-0000-0000-0000-b0c037000000}\ () (Fixed) (Total:0.56 GB) (Free:0.08 GB) NTFS

==================== MBR & Tabla de particiones ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: 990E0A73)
Partition 1: (Not Active) - (Size=223 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=571 MB) - (Type=27)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: 4F92D0FB)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=223.5 GB) - (Type=07 NTFS)

==========================================================
Disk: 2 (Size: 465.8 GB) (Disk ID: 32743273)
Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS)

==================== Final de Addition.txt =======================

Realizado Paso 2 FRST .txt

Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 11.02.2024
Ejecutado por Enric (administrador) sobre DESKTOP-I120NKE (MSI MS-7820) (12-02-2024 20:33:46)
Ejecutado desde C:\Users\Enric\Desktop\FRST64.exe
Perfiles cargados: Enric
Plataforma: Microsoft Windows 10 Pro Versión 22H2 19045.3803 (X64) Idioma: Español (España, internacional)
Navegador predeterminado: FF
Modo de Inicio: Normal

==================== Procesos (Lista blanca) =================

(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)

(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(explorer.exe ->) (Skype Software Sarl -> Skype Technologies S.A.) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.112.3206.0_x64__kzf8qxf38zg5c\Skype\Skype.exe <5>
(Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe
(PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Panda Security S.L. -> Panda Security S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\pselamsvc.exe
(services.exe ->) (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe
(services.exe ->) (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe
(services.exe ->) (Panda Security S.L. -> Panda Security, S.L.U.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registro (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Run: [Eraser] => C:\Program Files\Eraser\Eraser.exe [1068560 2019-08-18] (Heidi Computers Ltd -> The Eraser Project)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8484056 2015-06-12] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
HKLM-x32\...\Run: [PSUAMain] => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [186984 2022-11-02] (Panda Security S.L. -> Panda Security, S.L.)
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restricción <==== ATENCIÓN
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4362600 2023-03-24] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\Run: [AVGBrowserAutoLaunch_D7C3CD873F94276E52437C1FEEEEFB74] => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [3058000 2024-01-24] (AVG Technologies USA, LLC -> AVG Technologies)
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [44540320 2024-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\Run: [MicrosoftEdgeAutoLaunch_EDE33EF8D1E0788C370451E91D1D620F] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3788856 2024-02-08] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\Run: [Grammarly] => C:\Users\Enric\AppData\Local\Grammarly\DesktopIntegrations\Grammarly.Desktop.exe [293984 2024-02-02] (Grammarly, Inc. -> Grammarly)
HKLM\...\Print\Monitors\HP c111 Status Monitor: C:\WINDOWS\system32\hpinkstsc111LM.dll [333496 2012-12-16] (Hewlett Packard -> Hewlett-Packard Co.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{48F69C39-1356-4A7B-A899-70E3539D4982}] -> C:\Program Files (x86)\AVG\Browser\Application\120.0.23745.268\Installer\chrmstp.exe [2024-02-12] (AVG Technologies USA, LLC -> AVG Technologies)
Startup: C:\Users\Enric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Enviar a OneNote.lnk [2023-11-16]
ShortcutTarget: Enviar a OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\Users\Enric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Supervisar alertas de tinta - HP Deskjet 1510 series.lnk [2021-01-06]
ShortcutAndArgument: Supervisar alertas de tinta - HP Deskjet 1510 series.lnk -> C:\WINDOWS\system32\RunDll32.exe => "C:\Program Files\HP\HP Deskjet 1510 series\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=CN41C1P11W05YR;CONNECTION=USB;MONITOR=1;
GroupPolicy: Restricción - Chrome <==== ATENCIÓN
GroupPolicyScripts: Restricción <==== ATENCIÓN
Policies: C:\ProgramData\NTUSER.pol: Restricción <==== ATENCIÓN
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN
HKLM\SOFTWARE\Policies\Google: Restricción <==== ATENCIÓN
HKLM\SOFTWARE\Policies\Microsoft\Edge: Restricción <==== ATENCIÓN

==================== Tareas programadas (Lista blanca) =================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

Task: {00CAE1DD-5010-4F29-B5E1-A02F12DD5B2D} - \Microsoft\Windows\Windows Media Sharing\UpdateLibrary -> Ningún archivo <==== ATENCIÓN
Task: {02628E3E-D213-4A20-B71C-F33DDD30BC90} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {0ACC9481-C1F0-4B1C-98DC-96A5092A0B21} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {1CAD156B-0411-48DA-AF9D-7393A379E276} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {20F322C2-8126-4DA0-8A27-45453D3CCD75} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {217F0180-D9C7-42E3-BF38-CF85AD7FAFED} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {32F6D92F-E4D5-4DD5-BD59-5F58C2AF3170} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {332269B5-F733-4BCD-BED1-2FC836F1DAA5} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {3A6DB6F9-A355-420A-B6E0-7C54D12F4033} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {3ACCF89D-283F-49AD-B813-4C9F8C83EDD2} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {569F4FE5-507D-4DB3-96D6-82BB73E70B45} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {5C710CC2-B863-4934-B868-5E0BBE24EF79} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {5C83853E-0180-4BF8-B463-485C2C8AA8D0} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {62FA75C1-519D-4FEB-B495-EE323850859B} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {6A0DA687-86F2-4111-929F-111A79DE287A} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {7837449E-AE3C-434D-A550-488DDD727D16} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {7ECADE61-33A2-445E-B6B2-2F377C4D08C4} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {7FE4A1C3-F880-487F-897D-E61F46B521D6} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {8635F565-F659-4E6D-AE84-8D5E3276F0D7} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {9035A12C-DC50-4329-A356-2F1F9AC7F85B} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {91427A5A-9812-4F7D-8442-C33139B6EC59} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {91BEDECD-5F5E-408B-95E4-E87AF7C0CF71} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {94E1614A-59B5-485A-BE6D-5F8A4679DDE8} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {9655AC28-8AE8-414C-B90E-3CF0CD184B6D} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {976DF294-4207-47FB-BFBD-533C38999424} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {9859DD0A-E98A-432F-B390-A301F5363EC1} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {9D4C76AB-8B1B-4C2A-A1FF-A738859F894A} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {AEBB85B3-E4AC-47FE-B47E-633B4BB00182} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {B47FBD09-DFAE-4B4A-87AB-F27528B8D33C} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {B782BB75-6118-4C06-986C-358FD10EED84} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {B8FBF6B6-DF0A-4239-BD3A-E5559A20A76F} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {BAC05271-EFD0-45BB-8EF6-B72B6E2C7B50} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {CC4F585B-EBBB-4AA6-9BDF-B28C489A9125} - \Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask -> Ningún archivo <==== ATENCIÓN
Task: {D061F2A0-607C-4EB3-9E37-61DBF84D23BD} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {DAEED356-74AB-44B3-BF66-C11F054161A8} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {DC6B59DC-B875-47DD-82F8-18C8E776F493} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {DF4385DD-3AAF-4C56-B95B-040615F87C99} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {DFC1E383-E733-4C75-B23A-340249C33CA1} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {EA6BD89D-5FD1-4ACF-A4DE-1BA4127BD9D6} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {EF4C666B-DF3F-4AD3-A934-35DAF55FD343} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {F35E6B87-464A-4A13-A76C-206946A1779B} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {F7D006EF-6E7A-4C57-AB47-C455402D8DCE} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {F8373ACD-4484-4988-86E5-07B6DDE64EC5} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {FA32038C-460B-41F3-9885-23247981B9EC} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {FA5A7758-32A7-4194-B2B1-9C0341FD5BAE} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {3534F231-DB75-405F-9E7B-42F1D3B4B6F4} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe [1504312 2020-12-08] (Adobe Inc. -> Adobe)
Task: {D913D364-81D2-4A49-9897-612808D4726B} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-08] (Adobe Inc. -> Adobe)
Task: {B1079D86-33EF-4C3E-AFBE-451433420311} - System32\Tasks\AVG Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [3058000 2024-01-24] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {4153C27B-456B-4757-ADE0-595595A315F3} - System32\Tasks\AVG Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [3058000 2024-01-24] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {71453BFE-A986-4464-85DD-1B97F42D1AE6} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703648 2024-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "cd7e28a5-06e6-4f89-b694-b017f5e38a15" --version "6.20.10897" --silent
Task: {F8988392-0D39-48DF-8B95-1E4F015413FC} - System32\Tasks\CCleanerSkipUAC - Enric => C:\Program Files\CCleaner\CCleaner.exe [38319520 2024-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {EAE2C7EE-A336-454E-A3C2-21EAE80947F7} - System32\Tasks\HPCustParticipation HP Deskjet 1510 series => C:\Program Files\HP\HP Deskjet 1510 series\Bin\HPCustPartic.exe [5745672 2014-03-06] (Hewlett Packard -> Hewlett-Packard Co.)
Task: {D8E969D3-F4FF-43A4-9A17-BC6CBDAF21A2} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [375416 2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {98B8B630-D8D9-4EED-A94F-B5A7A9D0F077} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [375416 2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {C6E4140E-3448-4258-8E12-2612F60222AA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2024-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E0EC058D-505F-41A8-9393-7AA2D9FE6462} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2024-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {35F08D45-83DF-4959-BE1E-4ED1382B0602} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2024-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {1B818C28-4015-41B1-AEDF-8B50456063D6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2024-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {502E9895-63DA-4B50-8568-D8341BA1BF5F} - System32\Tasks\MSI_Toast_Server => C:\Program Files (x86)\MSI\MSI Toast Server\MSIToastServer.exe [31904 2019-03-05] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)

(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)

Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Internet (Lista blanca) ====================

(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)

Hosts: Hay más de una entrada en Hosts. Consulte la sección Hosts de Addition.txt
Tcpip\Parameters: [DhcpNameServer] 212.230.135.2 212.230.135.1
Tcpip\..\Interfaces\{4b069eb8-966f-4d20-9797-818ed31baeac}: [DhcpNameServer] 192.168.253.80
Tcpip\..\Interfaces\{8b4b1601-5e57-4fcc-900f-9c8c205c5263}: [DhcpNameServer] 212.230.135.2 212.230.135.1
Tcpip\..\Interfaces\{8b4b1601-5e57-4fcc-900f-9c8c205c5263}: [DhcpDomain] home

Edge: 
=======
Edge Extension: (Sin Nombre) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [no encontrado]
Edge Extension: (Sin Nombre) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [no encontrado]
Edge Extension: (Sin Nombre) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [no encontrado]
Edge Extension: (Sin Nombre) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [no encontrado]
Edge DefaultProfile: Default
Edge Profile: C:\Users\Enric\AppData\Local\Microsoft\Edge\User Data\Default [2024-02-12]
Edge Extension: (Traducir con un clic) - C:\Users\Enric\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\angkbadadjnbahimnajiklidgpnkmdhb [2020-12-21]
Edge Extension: (Documentos de Google sin conexión) - C:\Users\Enric\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-18]
Edge Extension: (Edge relevant text changes) - C:\Users\Enric\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-25]
Edge Profile: C:\Users\Enric\AppData\Local\Microsoft\Edge\User Data\Guest Profile [2024-02-10]
Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

FireFox:
========
FF DefaultProfile: 96zysp8q.default
FF ProfilePath: C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\96zysp8q.default [2020-05-02]
FF Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\96zysp8q.default\Extensions\[email protected] [2020-05-01]
FF ProfilePath: C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release [2024-02-12]
FF user.js: detected! => C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\user.js [2021-09-20]
FF Homepage: Mozilla\Firefox\Profiles\1njcv9jz.default-release -> hxxps://www.google.es/
FF Extension: (Grammarly: AI Writing and Grammar Checker App) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\[email protected] [2024-02-07]
FF Extension: (AdBlocker Ultimate) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\[email protected] [2023-12-06]
FF Extension: (AdGuard AdBlocker) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\[email protected] [2024-02-09]
FF Extension: (Translator) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\[email protected] [2020-04-10]
FF Extension: (General Catalan dictionary) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\[email protected] [2023-08-27]
FF Extension: (Al traductor de Google) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\[email protected] [2021-06-24]
FF Extension: (translator-lite) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\[email protected] [2020-04-10]
FF Extension: (Mate Translate – traductor & diccionario) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\[email protected] [2022-11-18]
FF Extension: (Language: Català (Catalan)) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\[email protected] [2024-02-07]
FF Extension: (MGX Translator) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\[email protected] [2020-04-10]
FF Extension: (Page Translator Revised) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\[email protected] [2020-04-10]
FF Extension: (Translator) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\[email protected] [2020-06-16]
FF Extension: (Google Translator for Firefox) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\[email protected] [2020-03-08]
FF Extension: (uBlock Origin) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\[email protected] [2024-01-11]
FF Extension: (Google™ Translator) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\{059cddf1-f66c-4b63-a79a-c35ac7e6ac65}.xpi [2021-01-12]
FF Extension: (Translator menu) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\{08c2b732-18f5-446d-a586-275561e98c8a}.xpi [2020-04-10]
FF Extension: (Translator! ) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\{09e26ae9-e9c1-477c-80a6-99934212f2fe}.xpi [2020-04-10]
FF Extension: (Malwarebytes Browser Guard) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [2023-12-19]
FF Extension: (PageTranslator) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\{336f9ec7-ca8d-4766-852a-a77c9306d174}.xpi [2021-03-31]
FF Extension: (ImTranslator: Traductor, Diccionario, Voz) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi [2023-12-04]
FF Extension: (Urban VPN proxy) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\{fca67f41-776b-438a-9382-662171858615}.xpi [2024-01-05]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_465.dll [2020-12-08] (Adobe Inc. -> )
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-01-13] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_465.dll [2020-12-08] (Adobe Inc. -> )
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2014-08-01] (Google Inc -> Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.251.2 -> C:\Program Files (x86)\Java\jre1.8.0_251\bin\dtplugin\npDeployJava1.dll [2020-04-21] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.251.2 -> C:\Program Files (x86)\Java\jre1.8.0_251\bin\plugin2\npjp2.dll [2020-04-21] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=3 -> C:\Program Files (x86)\AVG\Browser\Update\1.8.1582.3\npAvgBrowserUpdate3.dll [2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies)
FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=9 -> C:\Program Files (x86)\AVG\Browser\Update\1.8.1582.3\npAvgBrowserUpdate3.dll [2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2020-05-01]

Chrome: 
=======
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

==================== Servicios (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

S2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-09-20] (Adobe Inc. -> Adobe Inc.)
S3 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-08] (Adobe Inc. -> Adobe)
S2 avg; C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [209224 2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies)
S3 avgm; C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [209224 2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies)
S3 AVGSecureBrowserElevationService; C:\Program Files (x86)\AVG\Browser\Application\120.0.23745.268\elevation_service.exe [1847248 2024-01-24] (AVG Technologies USA, LLC -> AVG Technologies)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8615864 2020-05-23] (BattlEye Innovations e.K. -> )
S3 BITCOMET_HELPER_SERVICE; C:\Program Files\BitComet\tools\BitCometService.exe [1296728 2013-11-29] (Shanghai Comet Network Technology -> www.BitComet.com)
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1082784 2024-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
S2 EaseUS UPDATE SERVICE; C:\Program Files (x86)\EaseUS\ENS\ensserver.exe [26512 2023-11-06] (CHENGDU YIWO Tech Development Co., Ltd. -> )
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [811120 2020-05-23] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [Archivo no firmado]
S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9410296 2024-01-25] (Malwarebytes Inc. -> Malwarebytes)
S2 MSIREGISTER_MR; C:\MSI\MSIRegister\MSIRegisterService.exe [2020024 2019-01-03] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
S2 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [2325168 2020-02-03] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
S2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe [163280 2015-05-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S2 MSI_Trigger_Service; C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe [30240 2013-09-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> MICRO-STAR INTERNATIONAL CO., LTD.)
R2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [119560 2023-10-05] (Panda Security S.L. -> Panda Security, S.L.)
S3 Panda VPN Service; C:\Program Files (x86)\Panda Security\Panda Security Protection\Hydra.Sdk.Windows.Service.exe [320848 2017-11-20] (AnchorFree Inc -> )
R2 PandaAgent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [84176 2019-02-19] (Panda Security S.L. -> Panda Security, S.L.)
R2 pselamsvc; C:\Program Files (x86)\Panda Security\Panda Security Protection\pselamsvc.exe [195736 2023-04-13] (Panda Security S.L. -> Panda Security S.L.)
R2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [81424 2023-10-05] (Panda Security S.L. -> Panda Security, S.L.U.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [534472 2023-12-04] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe [3174840 2024-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe [133592 2024-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WsDrvInst; C:\Program Files (x86)\Wondershare\UniConverter\Transfer\DriverInstall.exe [107760 2019-07-05] (Wondershare Technology Co.,Ltd -> Wondershare)

===================== Controladores (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R3 aftap0901; C:\WINDOWS\System32\drivers\aftap0901.sys [48624 2017-11-16] (AnchorFree Inc -> The OpenVPN Project)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Archivo no firmado]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Archivo no firmado]
R1 dokan1; C:\WINDOWS\System32\DRIVERS\dokan1.sys [104312 2018-08-09] (D3L -> Dokan Project)
R1 ElRawDisk; C:\WINDOWS\system32\drivers\rsdrvx64.sys [26024 2021-03-23] (EldoS Corporation -> EldoS Corporation)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2023-11-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239576 2024-01-25] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R1 NNSDNS; C:\WINDOWS\system32\DRIVERS\NNSDNS.sys [146184 2022-11-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSHTTP; C:\WINDOWS\system32\DRIVERS\NNSHTTP.sys [215264 2022-11-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSHTTPS; C:\WINDOWS\system32\DRIVERS\NNSHTTPS.sys [128744 2022-11-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSIDS; C:\WINDOWS\system32\DRIVERS\NNSIDS.sys [146664 2022-11-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSNAHSL; C:\WINDOWS\system32\DRIVERS\NNSNAHSL.sys [151152 2022-10-10] (Microsoft Windows Hardware Compatibility Publisher -> Panda Security, S.L.)
R1 NNSNHWFP; C:\WINDOWS\system32\DRIVERS\NNSNHWFP.sys [211208 2022-12-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSPICC; C:\WINDOWS\system32\DRIVERS\NNSPICC.sys [164568 2022-11-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSPOP3; C:\WINDOWS\system32\DRIVERS\NNSPOP3.sys [137960 2022-11-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSPROT; C:\WINDOWS\system32\DRIVERS\NNSPROT.sys [407264 2022-11-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSPRV; C:\WINDOWS\system32\DRIVERS\NNSPRV.sys [575720 2022-11-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSSMTP; C:\WINDOWS\system32\DRIVERS\NNSSMTP.sys [125672 2022-11-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSSTRM; C:\WINDOWS\system32\DRIVERS\NNSSTRM.sys [335064 2022-11-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super Charger\NTIOLib_X64.sys [13368 2012-10-25] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 NTIOLib_1_0_4; C:\Program Files (x86)\MSI\Live Update 5\NTIOLib_X64.sys [14136 2010-10-22] (Micro-Star Int'l Co. Ltd. -> MSI)
R2 PSINAflt; C:\WINDOWS\system32\DRIVERS\PSINAflt.sys [198376 2022-11-03] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
S0 psinelam; C:\WINDOWS\System32\DRIVERS\psinelam.sys [36552 2023-04-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Panda Security, S.L.)
R2 PSINFile; C:\WINDOWS\System32\DRIVERS\PSINFile.sys [176360 2022-11-03] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 PSINKNC; C:\WINDOWS\system32\DRIVERS\PSINKNC.sys [218856 2022-11-03] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R2 PSINProc; C:\WINDOWS\System32\DRIVERS\PSINProc.sys [150760 2022-11-03] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R2 PSINProt; C:\WINDOWS\system32\DRIVERS\PSINProt.sys [162536 2022-11-03] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R2 PSINReg; C:\WINDOWS\system32\DRIVERS\PSINReg.sys [130280 2022-11-03] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
U3 PSKMAD; C:\WINDOWS\System32\DRIVERS\PSKMAD.sys [72984 2019-02-20] (Panda Security S.L. -> Panda Security, S.L.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [55856 2024-02-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [594304 2024-02-12] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105856 2024-02-12] (Microsoft Windows -> Microsoft Corporation)
R1 YSDrv; C:\Program Files (x86)\Bignox\BigNoxVM\RT\YSDrv.sys [312776 2023-03-31] (Microsoft Windows Hardware Compatibility Publisher -> Nox Limited Corporation)

==================== NetSvcs (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)


==================== Un mes (creado) (Lista blanca) =========

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2024-02-12 20:33 - 2024-02-12 20:34 - 000032300 _____ C:\Users\Enric\Desktop\FRST.txt
2024-02-12 20:33 - 2024-02-12 20:34 - 000000000 ____D C:\FRST
2024-02-12 20:31 - 2024-02-12 20:31 - 002389504 _____ (Farbar) C:\Users\Enric\Downloads\FRST64.exe
2024-02-12 20:28 - 2024-02-12 20:28 - 002389504 _____ (Farbar) C:\Users\Enric\Desktop\FRST64.exe
2024-02-12 20:16 - 2024-02-12 20:16 - 008797968 _____ (Malwarebytes) C:\Users\Enric\Downloads\adwcleaner(2).exe
2024-02-12 20:14 - 2024-02-12 20:14 - 008797968 _____ (Malwarebytes) C:\Users\Enric\Downloads\adwcleaner(1).exe
2024-02-12 20:05 - 2024-02-12 20:05 - 000003826 _____ C:\WINDOWS\system32\Tasks\AVG Secure Browser Heartbeat Task (Hourly)
2024-02-12 20:05 - 2024-02-12 20:05 - 000003242 _____ C:\WINDOWS\system32\Tasks\AVG Secure Browser Heartbeat Task (Logon)
2024-02-10 16:24 - 2024-02-10 16:24 - 000002534 _____ C:\Users\Enric\Documents\cc_20240210_162432.reg
2024-02-10 15:50 - 2024-02-10 15:50 - 006970144 _____ (VS Revo Group ) C:\Users\Enric\Downloads\revosetup.exe
2024-02-10 15:48 - 2024-02-10 15:48 - 008797968 _____ (Malwarebytes) C:\Users\Enric\Downloads\adwcleaner.exe
2024-02-10 15:42 - 2024-02-10 15:42 - 002582384 _____ (Malwarebytes) C:\Users\Enric\Downloads\MBSetup (2).exe
2024-02-10 15:40 - 2024-02-10 15:40 - 002582384 _____ (Malwarebytes) C:\Users\Enric\Downloads\MBSetup (1).exe
2024-02-10 15:38 - 2024-02-10 15:38 - 000000000 ____D C:\Program Files\Common Files\Avast Software
2024-02-10 15:36 - 2024-02-10 15:36 - 014160480 _____ (AVAST Software) C:\Users\Enric\Downloads\avastclear.exe
2024-02-10 15:33 - 2024-02-10 15:33 - 000000000 ____D C:\Program Files\Common Files\AVG
2024-02-10 15:31 - 2024-02-10 15:31 - 015942368 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Enric\Downloads\avgclear.exe
2024-02-10 15:29 - 2024-02-10 15:31 - 000000000 ____D C:\Users\Enric\AppData\Roaming\AVG
2024-02-10 15:27 - 2024-02-10 15:27 - 000234944 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Enric\Downloads\avg_antivirus_free_setup.exe
2024-02-10 03:01 - 2024-02-10 03:01 - 000250635 _____ C:\Users\Enric\Downloads\path.LZgQzxhz.js.part
2024-02-10 03:01 - 2024-02-10 03:01 - 000000000 _____ C:\Users\Enric\Downloads\path.js
2024-02-09 20:27 - 2024-02-09 20:27 - 000007472 _____ C:\Users\Enric\Documents\cc_20240209_202702.reg
2024-02-07 18:44 - 2024-02-08 03:29 - 000000000 ____D C:\Program Files\Mozilla Firefox
2024-02-05 19:22 - 2024-02-06 11:39 - 000000666 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2024-02-05 19:22 - 2024-02-05 19:22 - 000003784 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{3D7037B1-BA08-401E-B259-6105D9165FB2}
2024-02-05 19:22 - 2024-02-05 19:22 - 000003660 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{7199ECB1-CF65-49CE-A86D-E42F42A3C980}
2024-02-05 19:22 - 2024-02-05 19:22 - 000003322 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2024-02-04 03:27 - 2024-02-04 03:27 - 003356512 _____ (Opera Software) C:\Users\Enric\Downloads\OperaGXSetup(3).exe
2024-02-03 17:17 - 2024-02-03 17:17 - 000205133 _____ C:\Users\Enric\Downloads\informes.zip
2024-02-02 13:39 - 2024-02-02 13:39 - 000000000 ____D C:\Users\Enric\AppData\Local\ToastNotificationManagerCompat
2024-02-01 13:44 - 2024-02-01 13:44 - 000530366 ____R C:\Users\Enric\Downloads\Los Chicos de Coro VX629CNAND6K-1.pdf
2024-02-01 13:40 - 2024-02-01 13:40 - 000530366 _____ C:\Users\Enric\Downloads\Los Chicos de Coro VX629CNAND6K.pdf
2024-01-18 14:42 - 2024-01-18 14:42 - 000011359 _____ C:\Users\Enric\Downloads\boardwalk-empire-1x05-f3sRw.torrent
2024-01-18 13:41 - 2024-01-18 13:55 - 001625898 _____ C:\Users\Enric\Downloads\totcat-centres-educatius(1).xlsx
2024-01-18 13:23 - 2024-01-18 13:23 - 001662470 _____ C:\Users\Enric\Downloads\totcat-centres-educatius.xlsx
2024-01-18 12:50 - 2024-01-18 12:50 - 000005992 _____ C:\Users\Enric\Documents\cc_20240118_125041.reg
2024-01-18 12:48 - 2024-01-18 12:48 - 000018310 _____ C:\Users\Enric\Documents\cc_20240118_124808.reg
2024-01-18 12:45 - 2024-01-18 12:45 - 000095954 _____ C:\Users\Enric\Documents\cc_20240118_124503.reg
2024-01-18 12:34 - 2024-01-18 12:34 - 000493357 ____R C:\Users\Enric\Downloads\PROGRAMA_ANTITABACO_MUFACE_11_2023.pdf
2024-01-15 14:33 - 2024-01-15 14:33 - 000001084 _____ C:\Users\Public\Desktop\EaseUS Data Recovery Wizard.lnk
2024-01-15 14:33 - 2024-01-15 14:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Data Recovery Wizard
2024-01-15 14:32 - 2024-01-15 14:32 - 071407592 _____ (EaseUS Data Recovery Wizard ) C:\Users\Enric\Downloads\drw17.0_free_B.exe
2024-01-15 14:32 - 2024-01-15 14:32 - 002097056 _____ C:\Users\Enric\Downloads\drw_free_installer.100000.exe
2024-01-14 21:20 - 2024-01-14 21:20 - 000001332 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tenorshare 4DDiG.lnk
2024-01-14 21:20 - 2024-01-14 21:20 - 000001320 _____ C:\Users\Public\Desktop\Tenorshare 4DDiG.lnk
2024-01-14 21:20 - 2024-01-14 21:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tenorshare 4DDiG
2024-01-14 21:19 - 2024-01-14 21:19 - 002382096 _____ (Tenorshare Co., Ltd.) C:\Users\Enric\Downloads\4ddig-for-windows.exe
2024-01-14 21:19 - 2024-01-14 21:19 - 000000000 ____D C:\Program Files (x86)\Tenorshare
2024-01-14 20:11 - 2024-01-14 20:12 - 000000000 ____D C:\Program Files\CrystalDiskInfo
2024-01-14 20:11 - 2024-01-14 20:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2024-01-14 20:10 - 2024-01-14 20:11 - 026225088 _____ (Crystal Dew World ) C:\Users\Enric\Downloads\crystaldiskinfo-9-2-1.exe

==================== Un mes (modificado) ==================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2024-02-12 20:32 - 2022-02-09 20:38 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2024-02-12 20:18 - 2020-03-01 15:40 - 000000000 ____D C:\ProgramData\NVIDIA
2024-02-12 20:15 - 2020-05-04 03:55 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2024-02-12 20:15 - 2020-03-03 22:54 - 000918944 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2024-02-12 20:05 - 2021-06-01 19:07 - 000002383 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Secure Browser.lnk
2024-02-12 19:58 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-02-12 19:57 - 2023-06-07 12:39 - 000000000 ____D C:\Users\Enric\AppData\Local\Malwarebytes
2024-02-12 19:56 - 2024-01-07 22:54 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2024-02-12 19:56 - 2022-04-13 00:10 - 000000000 ____D C:\Program Files\CCleaner
2024-02-12 19:55 - 2019-12-07 10:03 - 000262144 _____ C:\WINDOWS\system32\config\BBI
2024-02-12 03:08 - 2020-05-25 19:48 - 000000000 ____D C:\Users\Enric\AppData\Local\CrashDumps
2024-02-10 17:35 - 2024-01-07 22:47 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2024-02-10 15:50 - 2022-07-11 18:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2024-02-10 15:43 - 2023-06-07 12:39 - 000002043 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2024-02-10 15:43 - 2023-06-07 12:39 - 000002031 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2024-02-10 15:43 - 2023-06-07 12:37 - 000000000 ____D C:\ProgramData\Malwarebytes
2024-02-10 15:43 - 2023-06-07 12:37 - 000000000 ____D C:\Program Files\Malwarebytes
2024-02-10 15:39 - 2020-05-01 19:31 - 000000000 ____D C:\ProgramData\Avast Software
2024-02-10 15:38 - 2020-07-08 18:22 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2024-02-10 15:34 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2024-02-10 15:34 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2024-02-10 15:33 - 2020-07-06 22:10 - 000000000 ____D C:\ProgramData\AVG
2024-02-10 15:31 - 2020-07-08 19:21 - 000000000 ____D C:\Users\Enric\AppData\Local\Avg
2024-02-10 15:28 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2024-02-10 15:23 - 2020-07-08 04:19 - 000002450 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-02-10 15:23 - 2020-07-08 04:19 - 000002288 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2024-02-09 20:11 - 2023-12-05 19:13 - 000000000 ____D C:\Users\Enric\Desktop\ChipGenius-4.00.1024
2024-02-09 05:10 - 2024-01-07 22:38 - 000000000 ____D C:\Users\Enric
2024-02-09 04:30 - 2020-05-05 06:21 - 000000000 ____D C:\Users\Enric\AppData\Local\D3DSCache
2024-02-08 17:28 - 2020-03-01 16:07 - 000000000 ____D C:\Users\Enric\AppData\Roaming\vlc
2024-02-08 03:29 - 2020-03-01 15:56 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2024-02-08 01:40 - 2020-03-01 15:56 - 000001015 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2024-02-06 11:46 - 2024-01-07 22:57 - 001772862 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2024-02-06 11:46 - 2019-12-07 15:55 - 000788378 _____ C:\WINDOWS\system32\perfh00A.dat
2024-02-06 11:46 - 2019-12-07 15:55 - 000155766 _____ C:\WINDOWS\system32\perfc00A.dat
2024-02-06 11:46 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2024-02-06 11:39 - 2020-12-01 22:06 - 000008192 ___SH C:\DumpStack.log.tmp
2024-02-04 05:57 - 2020-03-01 16:13 - 000000000 ____D C:\Users\Enric\AppData\Roaming\BitComet
2024-02-03 20:18 - 2020-03-15 20:32 - 000000000 ____D C:\Users\Enric\AppData\LocalLow\Adobe
2024-02-03 17:20 - 2022-11-02 12:12 - 000002083 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2024-02-03 17:20 - 2022-11-02 12:12 - 000002071 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2024-02-02 16:45 - 2021-12-12 13:52 - 000001437 _____ C:\Users\Enric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Grammarly.lnk
2024-02-02 16:45 - 2021-12-12 13:52 - 000001429 _____ C:\Users\Enric\Desktop\Grammarly.lnk
2024-02-02 16:45 - 2021-12-12 13:52 - 000000000 ____D C:\Users\Enric\AppData\Local\Grammarly
2024-01-29 11:14 - 2023-12-04 03:52 - 000000000 ____D C:\WINDOWS\SystemTemp
2024-01-26 12:41 - 2020-03-02 11:14 - 000000000 ____D C:\Users\Enric\AppData\Roaming\Microsoft\Word
2024-01-26 11:13 - 2020-06-17 09:07 - 000000000 ____D C:\Users\Enric\AppData\Roaming\Microsoft\Excel
2024-01-25 18:28 - 2023-06-07 12:38 - 000239576 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2024-01-18 23:23 - 2024-01-07 22:21 - 000000000 ___DC C:\WINDOWS\Panther
2024-01-18 13:41 - 2020-03-01 15:38 - 000000000 ____D C:\Users\Enric\AppData\Local\Packages

==================== Archivos en la raíz de algunos directorios ========

2020-03-01 23:51 - 2020-03-01 23:52 - 397406656 _____ (Duodian Technology Co. Ltd.) C:\Users\Enric\AppData\Roaming\9b0aae6e20904a9c86de8031ccb522af.exe
2021-04-12 12:40 - 2021-04-12 12:40 - 000000015 _____ () C:\Users\Enric\AppData\Roaming\obs-virtualcam.txt
2023-04-22 12:36 - 2023-04-22 13:14 - 000011776 _____ () C:\Users\Enric\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2023-12-05 14:52 - 2023-12-05 14:52 - 000000218 _____ () C:\Users\Enric\AppData\Local\recently-used.xbel
2023-11-29 22:20 - 2023-11-29 22:20 - 000007681 _____ () C:\Users\Enric\AppData\Local\Resmon.ResmonCfg
2021-01-15 22:28 - 2021-01-15 22:53 - 000000069 _____ () C:\Users\Enric\AppData\Local\update_progress.txt

==================== SigCheck ============================

(No existe una corrección automática para los archivos que no pasan la verificación.)

==================== Final de FRST.txt ========================

Me vais a disculpar si no he sabido colocar correctamente el reporte con el code o /code entre corchetes Lo he escrito manualmente Gracias de nuevo por tu/vuestro trabajo

Hola @Verntallat

Ya arregle los mensajes con los reportes :muscle:

1. Programas

:zero: PREGUNTAS

Conoces este programa?:

iin10g6_6BrRRRr0WWW5er

:one: DESINSTALACIÓN PROGRAMAS

Para los programas en que te diga: puedes quitarlos. Hazlo así:

Desinstalalos con Revo Uninstaller en su Modo Avanzado. Para ello sigues su manual la parte de desinstalación de programas.

Quitas todos los programas que encuentre Revo con el nombre de:

  • Wondershare o Wondershare + Lo que sea.
  • Grammarly + Lo que sea
  • Si no conoces algún programa de los anteriores que pregunte sigues el mismo procedimiento

Pues en tu caso tienes instalados los siguientes:

Grammarly for Windows (HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\Grammarly Desktop Integrations) (Version: 1.2.62.1306 - Grammarly)
Wondershare Helper Compact 2.5.3 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.5.3 - Wondershare)
Wondershare UniConverter(Build 11.2.0.228) (HKLM-x32\...\UniConverter_is1) (Version: 11.2.0.228 - Wondershare Software)
iin10g6_6BrRRRr0WWW5er version 3.1 (HKLM-x32\...\iin10g6_6BrRRRr0WWW5er_is1) (Version: 3.1 - )

Estos deben de quedar completamente desinstalados.

2. Extensiones

:two: DESINSTALACIÓN EXTENSIONES

Conoces estas extensiones de firefox?

Para las extensiones en que te diga: puedes quitarlas. Hazlo así:

Accedes a Firefox y quitas la extensiones que no conozcas o no uses ademas de estas:

  • Avast SafePrice | Comparaciones, ofertas y cupones
  • Grammarly: AI Writing and Grammar Checker App
  • AdBlocker Ultimate
  • Page Translator Revised
  • Translator
  • Google Translator for Firefox
  • uBlock Origin
  • Translator!
  • PageTranslator
  • Urban VPN proxy

:three: Ahora debes de hacer una COPIA DE SEGURIDAD DEL REGISTRO, para ello:

  • Reinicias el ordenador en Modo Normal.
  • Descargas DelFix en tu escritorio.
  • Doble clic para ejecutarlo. (Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona - Ejecutar como Administrador)
  • Marcas solamente la casilla de Create registry backup, el resto te aseguras de que no estén seleccionadas.
  • Presionas en Run.

Se abrirá el informe (DelFix.txt), puedes cerrarlo. Pero lo guardas por si en el futuro te lo pido/hace falta.

Seguidamente, CIERRAS TODOS LOS PROGRAMAS, vas a Inicio >> Ejecutar y escribes Notepad.exe

  • Ahora debes copiar y pegar los códigos/líneas que están en el interior del recuadro de más abajo, dentro del Notepad.
Start
SystemRestore: On
CreateRestorePoint:
CloseProcesses:

File: C:\Program Files\HP\HP Deskjet 1510 series\bin\HPStatusBL.dll
File: C:\Users\Enric\AppData\Roaming\9b0aae6e20904a9c86de8031ccb522af.exe
VirusTotal: C:\Users\Enric\AppData\Roaming\9b0aae6e20904a9c86de8031ccb522af.exe

HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restricción <==== ATENCIÓN
GroupPolicy: Restricción - Chrome <==== ATENCIÓN
GroupPolicyScripts: Restricción <==== ATENCIÓN
Policies: C:\ProgramData\NTUSER.pol: Restricción <==== ATENCIÓN
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN
HKLM\SOFTWARE\Policies\Google: Restricción <==== ATENCIÓN
HKLM\SOFTWARE\Policies\Microsoft\Edge: Restricción <==== ATENCIÓN

Task: {00CAE1DD-5010-4F29-B5E1-A02F12DD5B2D} - \Microsoft\Windows\Windows Media Sharing\UpdateLibrary -> Ningún archivo <==== ATENCIÓN
Task: {02628E3E-D213-4A20-B71C-F33DDD30BC90} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {0ACC9481-C1F0-4B1C-98DC-96A5092A0B21} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {1CAD156B-0411-48DA-AF9D-7393A379E276} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {20F322C2-8126-4DA0-8A27-45453D3CCD75} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {217F0180-D9C7-42E3-BF38-CF85AD7FAFED} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {32F6D92F-E4D5-4DD5-BD59-5F58C2AF3170} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {332269B5-F733-4BCD-BED1-2FC836F1DAA5} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {3A6DB6F9-A355-420A-B6E0-7C54D12F4033} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {3ACCF89D-283F-49AD-B813-4C9F8C83EDD2} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {569F4FE5-507D-4DB3-96D6-82BB73E70B45} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {5C710CC2-B863-4934-B868-5E0BBE24EF79} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {5C83853E-0180-4BF8-B463-485C2C8AA8D0} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {62FA75C1-519D-4FEB-B495-EE323850859B} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {6A0DA687-86F2-4111-929F-111A79DE287A} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {7837449E-AE3C-434D-A550-488DDD727D16} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {7ECADE61-33A2-445E-B6B2-2F377C4D08C4} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {7FE4A1C3-F880-487F-897D-E61F46B521D6} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {8635F565-F659-4E6D-AE84-8D5E3276F0D7} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {9035A12C-DC50-4329-A356-2F1F9AC7F85B} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {91427A5A-9812-4F7D-8442-C33139B6EC59} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {91BEDECD-5F5E-408B-95E4-E87AF7C0CF71} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {94E1614A-59B5-485A-BE6D-5F8A4679DDE8} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {9655AC28-8AE8-414C-B90E-3CF0CD184B6D} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {976DF294-4207-47FB-BFBD-533C38999424} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {9859DD0A-E98A-432F-B390-A301F5363EC1} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {9D4C76AB-8B1B-4C2A-A1FF-A738859F894A} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {AEBB85B3-E4AC-47FE-B47E-633B4BB00182} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {B47FBD09-DFAE-4B4A-87AB-F27528B8D33C} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {B782BB75-6118-4C06-986C-358FD10EED84} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {B8FBF6B6-DF0A-4239-BD3A-E5559A20A76F} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {BAC05271-EFD0-45BB-8EF6-B72B6E2C7B50} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {CC4F585B-EBBB-4AA6-9BDF-B28C489A9125} - \Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask -> Ningún archivo <==== ATENCIÓN
Task: {D061F2A0-607C-4EB3-9E37-61DBF84D23BD} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {DAEED356-74AB-44B3-BF66-C11F054161A8} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {DC6B59DC-B875-47DD-82F8-18C8E776F493} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {DF4385DD-3AAF-4C56-B95B-040615F87C99} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {DFC1E383-E733-4C75-B23A-340249C33CA1} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {EA6BD89D-5FD1-4ACF-A4DE-1BA4127BD9D6} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {EF4C666B-DF3F-4AD3-A934-35DAF55FD343} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {F35E6B87-464A-4A13-A76C-206946A1779B} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {F7D006EF-6E7A-4C57-AB47-C455402D8DCE} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {F8373ACD-4484-4988-86E5-07B6DDE64EC5} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {FA32038C-460B-41F3-9885-23247981B9EC} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {FA5A7758-32A7-4194-B2B1-9C0341FD5BAE} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {F8988392-0D39-48DF-8B95-1E4F015413FC} - System32\Tasks\CCleanerSkipUAC - Enric => C:\Program Files\CCleaner\CCleaner.exe [38319520 2024-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

Edge Extension: (Sin Nombre) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [no encontrado]
Edge Extension: (Sin Nombre) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [no encontrado]
Edge Extension: (Sin Nombre) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [no encontrado]
Edge Extension: (Sin Nombre) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [no encontrado]

FF user.js: detected! => C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\user.js [2021-09-20]
FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=3 -> C:\Program Files (x86)\AVG\Browser\Update\1.8.1582.3\npAvgBrowserUpdate3.dll [2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies)
FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=9 -> C:\Program Files (x86)\AVG\Browser\Update\1.8.1582.3\npAvgBrowserUpdate3.dll [2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies)


Avast Update Helper (HKLM-x32\...\{19C3AB22-3718-4E4D-B203-242F5001565B}) (Version: 1.8.1206.2 - AVAST Software) Hidden
AVG Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.8.1066.0 - AVG Technologies) Hidden
AVG Update Helper (HKLM-x32\...\{EDB7AEE7-E932-4836-AE50-D3B0B7766CB5}) (Version: 1.8.1582.3 - AVG Technologies) Hidden

2024-02-10 03:01 - 2024-02-10 03:01 - 000250635 _____ C:\Users\Enric\Downloads\path.LZgQzxhz.js.part
2024-02-10 03:01 - 2024-02-10 03:01 - 000000000 _____ C:\Users\Enric\Downloads\path.js

ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> Ningún archivo
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> Ningún archivo
ContextMenuHandlers1: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} =>  -> Ningún archivo
ContextMenuHandlers1: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} =>  -> Ningún archivo
ContextMenuHandlers2: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} =>  -> Ningún archivo
ContextMenuHandlers2: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} =>  -> Ningún archivo
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} =>  -> Ningún archivo
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo
ContextMenuHandlers6: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} =>  -> Ningún archivo
ContextMenuHandlers6: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} =>  -> Ningún archivo
ContextMenuHandlers1_S-1-5-21-3797396260-1262768339-3265785487-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo
ContextMenuHandlers4_S-1-5-21-3797396260-1262768339-3265785487-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo
ContextMenuHandlers5_S-1-5-21-3797396260-1262768339-3265785487-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo

AlternateDataStreams: C:\ProgramData\TEMP:5C321E34 [136]
AlternateDataStreams: C:\Users\Enric\Downloads\UmVkZXNYZW4xNi5Fc2NyaXRvcmlvX1JlbW90b19Nb3ZpbGlkYWQgJFMxLTI-.ica:icasource [276]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [488]

FirewallRules: [{C252D89D-3BA8-4194-8790-5D5BCD1FCDCE}] => (Allow) LPort=50053
FirewallRules: [{329630B8-77FE-4BD9-A085-6725A9B66D91}] => (Allow) LPort=50053
FirewallRules: [{C9896F9D-A78D-4943-A11F-3197136CD89F}] => (Allow) LPort=53016
FirewallRules: [{F8576A81-D941-472A-AF2F-8BFF99D7CD3E}] => (Allow) LPort=53015
FirewallRules: [{ACDD5A20-C45F-4BD6-88B7-0D50E1036029}] => (Allow) LPort=53014
FirewallRules: [{2317297A-457C-4B69-9FCB-7306EA50CD4C}] => (Allow) LPort=43013
FirewallRules: [{CB1062B4-9DCF-4571-B68C-4A2CA3844A2F}] => (Allow) LPort=43012
FirewallRules: [{306DA552-978C-48DF-AF16-F26D1E283657}] => (Allow) LPort=33011
FirewallRules: [{71AF99EC-A3B4-440E-A494-8CEDACF76424}] => (Allow) LPort=33010
FirewallRules: [{00E5DD79-344A-49AC-8B7E-0DFDD20A427F}] => (Allow) LPort=33009
FirewallRules: [{C3043CF6-9E95-4BA9-80FA-740DC4D3EE5D}] => (Allow) LPort=23008
FirewallRules: [{C5A8A309-E4F6-4D15-B9CC-8F9BE5FF382B}] => (Allow) LPort=23007
FirewallRules: [{3EA7303C-F05F-4EB8-8C30-3B105B447315}] => (Allow) LPort=53016
FirewallRules: [{1CC2825B-B7CE-45B7-A1D8-11DE195C4552}] => (Allow) LPort=53015
FirewallRules: [{06481206-6571-486D-B827-3B228BBCDED9}] => (Allow) LPort=53014
FirewallRules: [{5AC9C6AA-34AF-45DD-8959-AFFE89B8D892}] => (Allow) LPort=43013
FirewallRules: [{1C37DE6F-CB07-40E4-A233-EAEDCD49B008}] => (Allow) LPort=43012
FirewallRules: [{69C36FC3-0D72-474F-88D8-DE41D555D57B}] => (Allow) LPort=33011
FirewallRules: [{2AE7AB25-F774-48D0-B8FF-826D01F3AA4C}] => (Allow) LPort=33010
FirewallRules: [{E3C6E943-1D0C-4010-9AD1-C1BEDD92A17D}] => (Allow) LPort=33009
FirewallRules: [{45B7624C-1A95-4AA1-A9AB-CB125DD598FF}] => (Allow) LPort=23008
FirewallRules: [{A3888199-EFFD-4152-90A9-1BF68231A8D1}] => (Allow) LPort=23007
FirewallRules: [{A6352B8B-1050-4BE0-8A1A-0015D2F3FCE8}] => (Allow) LPort=57218
FirewallRules: [{E932F4F7-559F-46F9-9FC6-83031E82EFF3}] => (Allow) LPort=57217
FirewallRules: [{A6A4401C-4758-470D-8AF7-65F3637559F7}] => (Allow) LPort=57216
FirewallRules: [{4781A3A4-5AAF-4518-B54A-F89216EBB291}] => (Allow) LPort=57215
FirewallRules: [{0B9F1C87-3013-4DB4-AD9E-F664D20C611E}] => (Allow) LPort=57214
FirewallRules: [{56BC389B-FA70-45C1-B030-DA8A99E18570}] => (Allow) LPort=57213
FirewallRules: [{8F34D4D7-0F4F-45DF-B0BE-E928B40651C3}] => (Allow) LPort=57212
FirewallRules: [{2AF76472-0AEC-488C-BF70-CC92F293480C}] => (Allow) LPort=57211
FirewallRules: [{DDD9D5D5-8F2F-45BB-8D25-7ACFEE1E48E7}] => (Allow) LPort=57210
FirewallRules: [{800508B4-8086-421C-AA44-1A2E6812BA1B}] => (Allow) LPort=57209
FirewallRules: [{951E8C03-082D-458B-94F3-21EFEDF6E64F}] => (Allow) LPort=57218
FirewallRules: [{3E1A7344-CE8A-4262-8823-139D994F30B1}] => (Allow) LPort=57217
FirewallRules: [{3D114DEB-ECE5-45EC-B81A-5FA2BE2B528D}] => (Allow) LPort=57216
FirewallRules: [{5DE287EC-B0B8-44FA-B4B2-65388712BD0B}] => (Allow) LPort=57215
FirewallRules: [{E4DD0540-F010-4EEF-9A03-4CEB1A4CC693}] => (Allow) LPort=57214
FirewallRules: [{CCF3EDDC-1208-48E5-AB8D-DAAC4CF7B5CD}] => (Allow) LPort=57213
FirewallRules: [{9537AAE8-FAFD-4463-9EF0-77C8A2286084}] => (Allow) LPort=57212
FirewallRules: [{B3A39A35-8B97-4F55-8A1C-4B58EECB252B}] => (Allow) LPort=57211
FirewallRules: [{9149E68E-FC65-4745-B312-84ED3C40DC4C}] => (Allow) LPort=57210
FirewallRules: [{12E047E2-6D4B-40E7-9AC7-115FB9097456}] => (Allow) LPort=57209




CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:
End

Lo guardas con el nombre de FIXLIST.TXT en tu escritorio (MUY IMPORTANTE). Pues en caso contrario no funcionará el SCRIPT, ambos ficheros (FRST.exe y FIXLIST.TXT ) y deben de estar en la ubicación del ESCRITORIO.

:warning: El anterior Script de reparación es personalizado para la máquina en concreto para la cual se fabricó y está hecho específicamente por un miembro del Staff. Si se tiene un problema parecido, por favor abra su propio tema para recibir ayuda personalizada y específica. Utilizar Scripts de otros Sistemas puede causar daños graves en su ordenador.

Finalmente (OJO, en MODO NORMAL):

  1. Ejecutas nuevamente FRST.exe (Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona - Ejecutar como Administrador).
  2. Presionas sobre Fix/Corregir y esperas a que finalice el proceso. No hagas nada con el PC mientras este realizando dichas reparaciones, incluso si parece ser que se ha quedado colgado. No lo toques y esperas.
  3. Cunado finalice, en el ESCRITORIO se creará el fichero FIXLOG.TXT lo traes en tu próxima respuesta.
  4. Reinicias el ordenador en Modo Normal compruebas durante un rato el funcionamiento de este y comentas como sigue el problema inicialmente planteado.

:warning: Muy Importante :warning: Coloca el reporte que te he pedido como se muestra en la siguiente imagen:

Finalmente quitas de la misma forma que te he indicado en: :one: DESINSTALACIÓN PROGRAMAS quitas los siguientes:

  • Avast Update Helper
  • AVG Update Helper

Pues esta instalado lo siguiente:

Avast Update Helper (HKLM-x32\...\{19C3AB22-3718-4E4D-B203-242F5001565B}) (Version: 1.8.1206.2 - AVAST Software) Hidden
AVG Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.8.1066.0 - AVG Technologies) Hidden
AVG Update Helper (HKLM-x32\...\{EDB7AEE7-E932-4836-AE50-D3B0B7766CB5}) (Version: 1.8.1582.3 - AVG Technologies) Hidden

Aunque ya lo hayas hecho antes. Es probable en que ahora te aparezcan de nuevo.

Saludos

Hola de nuevo De verdad , me hago cruces de las cosas que llegáis a saber hacer Escribo esto sin comprobar nada todavia Bueno, aqui dejo el resultado

Resultados de la corrección de Farbar Recovery Scan Tool (x64) Versión: 11.02.2024
Ejecutado por Enric (14-02-2024 21:22:41) Run:1
Ejecutado desde C:\Users\Enric\Desktop
Perfiles cargados: Enric
Modo de Inicio: Normal
==============================================

fixlist contenido:
*****************
Start
SystemRestore: On
CreateRestorePoint:
CloseProcesses:

File: C:\Program Files\HP\HP Deskjet 1510 series\bin\HPStatusBL.dll
File: C:\Users\Enric\AppData\Roaming\9b0aae6e20904a9c86de8031ccb522af.exe
VirusTotal: C:\Users\Enric\AppData\Roaming\9b0aae6e20904a9c86de8031ccb522af.exe

HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restricción <==== ATENCIÓN
GroupPolicy: Restricción - Chrome <==== ATENCIÓN
GroupPolicyScripts: Restricción <==== ATENCIÓN
Policies: C:\ProgramData\NTUSER.pol: Restricción <==== ATENCIÓN
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN
HKLM\SOFTWARE\Policies\Google: Restricción <==== ATENCIÓN
HKLM\SOFTWARE\Policies\Microsoft\Edge: Restricción <==== ATENCIÓN

Task: {00CAE1DD-5010-4F29-B5E1-A02F12DD5B2D} - \Microsoft\Windows\Windows Media Sharing\UpdateLibrary -> Ningún archivo <==== ATENCIÓN
Task: {02628E3E-D213-4A20-B71C-F33DDD30BC90} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {0ACC9481-C1F0-4B1C-98DC-96A5092A0B21} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {1CAD156B-0411-48DA-AF9D-7393A379E276} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {20F322C2-8126-4DA0-8A27-45453D3CCD75} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {217F0180-D9C7-42E3-BF38-CF85AD7FAFED} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {32F6D92F-E4D5-4DD5-BD59-5F58C2AF3170} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {332269B5-F733-4BCD-BED1-2FC836F1DAA5} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {3A6DB6F9-A355-420A-B6E0-7C54D12F4033} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {3ACCF89D-283F-49AD-B813-4C9F8C83EDD2} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {569F4FE5-507D-4DB3-96D6-82BB73E70B45} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {5C710CC2-B863-4934-B868-5E0BBE24EF79} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {5C83853E-0180-4BF8-B463-485C2C8AA8D0} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {62FA75C1-519D-4FEB-B495-EE323850859B} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {6A0DA687-86F2-4111-929F-111A79DE287A} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {7837449E-AE3C-434D-A550-488DDD727D16} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {7ECADE61-33A2-445E-B6B2-2F377C4D08C4} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {7FE4A1C3-F880-487F-897D-E61F46B521D6} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {8635F565-F659-4E6D-AE84-8D5E3276F0D7} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {9035A12C-DC50-4329-A356-2F1F9AC7F85B} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {91427A5A-9812-4F7D-8442-C33139B6EC59} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {91BEDECD-5F5E-408B-95E4-E87AF7C0CF71} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {94E1614A-59B5-485A-BE6D-5F8A4679DDE8} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {9655AC28-8AE8-414C-B90E-3CF0CD184B6D} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {976DF294-4207-47FB-BFBD-533C38999424} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {9859DD0A-E98A-432F-B390-A301F5363EC1} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {9D4C76AB-8B1B-4C2A-A1FF-A738859F894A} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {AEBB85B3-E4AC-47FE-B47E-633B4BB00182} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {B47FBD09-DFAE-4B4A-87AB-F27528B8D33C} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {B782BB75-6118-4C06-986C-358FD10EED84} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {B8FBF6B6-DF0A-4239-BD3A-E5559A20A76F} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {BAC05271-EFD0-45BB-8EF6-B72B6E2C7B50} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {CC4F585B-EBBB-4AA6-9BDF-B28C489A9125} - \Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask -> Ningún archivo <==== ATENCIÓN
Task: {D061F2A0-607C-4EB3-9E37-61DBF84D23BD} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {DAEED356-74AB-44B3-BF66-C11F054161A8} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {DC6B59DC-B875-47DD-82F8-18C8E776F493} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {DF4385DD-3AAF-4C56-B95B-040615F87C99} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {DFC1E383-E733-4C75-B23A-340249C33CA1} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {EA6BD89D-5FD1-4ACF-A4DE-1BA4127BD9D6} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {EF4C666B-DF3F-4AD3-A934-35DAF55FD343} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {F35E6B87-464A-4A13-A76C-206946A1779B} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {F7D006EF-6E7A-4C57-AB47-C455402D8DCE} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {F8373ACD-4484-4988-86E5-07B6DDE64EC5} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {FA32038C-460B-41F3-9885-23247981B9EC} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {FA5A7758-32A7-4194-B2B1-9C0341FD5BAE} - no ruta de acceso de archivo. <==== ATENCIÓN
Task: {F8988392-0D39-48DF-8B95-1E4F015413FC} - System32\Tasks\CCleanerSkipUAC - Enric => C:\Program Files\CCleaner\CCleaner.exe [38319520 2024-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

Edge Extension: (Sin Nombre) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [no encontrado]
Edge Extension: (Sin Nombre) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [no encontrado]
Edge Extension: (Sin Nombre) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [no encontrado]
Edge Extension: (Sin Nombre) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [no encontrado]

FF user.js: detected! => C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\user.js [2021-09-20]
FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=3 -> C:\Program Files (x86)\AVG\Browser\Update\1.8.1582.3\npAvgBrowserUpdate3.dll [2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies)
FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=9 -> C:\Program Files (x86)\AVG\Browser\Update\1.8.1582.3\npAvgBrowserUpdate3.dll [2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies)


Avast Update Helper (HKLM-x32\...\{19C3AB22-3718-4E4D-B203-242F5001565B}) (Version: 1.8.1206.2 - AVAST Software) Hidden
AVG Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.8.1066.0 - AVG Technologies) Hidden
AVG Update Helper (HKLM-x32\...\{EDB7AEE7-E932-4836-AE50-D3B0B7766CB5}) (Version: 1.8.1582.3 - AVG Technologies) Hidden

2024-02-10 03:01 - 2024-02-10 03:01 - 000250635 _____ C:\Users\Enric\Downloads\path.LZgQzxhz.js.part
2024-02-10 03:01 - 2024-02-10 03:01 - 000000000 _____ C:\Users\Enric\Downloads\path.js

ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> Ningún archivo
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> Ningún archivo
ContextMenuHandlers1: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} =>  -> Ningún archivo
ContextMenuHandlers1: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} =>  -> Ningún archivo
ContextMenuHandlers2: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} =>  -> Ningún archivo
ContextMenuHandlers2: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} =>  -> Ningún archivo
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} =>  -> Ningún archivo
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo
ContextMenuHandlers6: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} =>  -> Ningún archivo
ContextMenuHandlers6: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} =>  -> Ningún archivo
ContextMenuHandlers1_S-1-5-21-3797396260-1262768339-3265785487-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo
ContextMenuHandlers4_S-1-5-21-3797396260-1262768339-3265785487-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo
ContextMenuHandlers5_S-1-5-21-3797396260-1262768339-3265785487-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo

AlternateDataStreams: C:\ProgramData\TEMP:5C321E34 [136]
AlternateDataStreams: C:\Users\Enric\Downloads\UmVkZXNYZW4xNi5Fc2NyaXRvcmlvX1JlbW90b19Nb3ZpbGlkYWQgJFMxLTI-.ica:icasource [276]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [488]

FirewallRules: [{C252D89D-3BA8-4194-8790-5D5BCD1FCDCE}] => (Allow) LPort=50053
FirewallRules: [{329630B8-77FE-4BD9-A085-6725A9B66D91}] => (Allow) LPort=50053
FirewallRules: [{C9896F9D-A78D-4943-A11F-3197136CD89F}] => (Allow) LPort=53016
FirewallRules: [{F8576A81-D941-472A-AF2F-8BFF99D7CD3E}] => (Allow) LPort=53015
FirewallRules: [{ACDD5A20-C45F-4BD6-88B7-0D50E1036029}] => (Allow) LPort=53014
FirewallRules: [{2317297A-457C-4B69-9FCB-7306EA50CD4C}] => (Allow) LPort=43013
FirewallRules: [{CB1062B4-9DCF-4571-B68C-4A2CA3844A2F}] => (Allow) LPort=43012
FirewallRules: [{306DA552-978C-48DF-AF16-F26D1E283657}] => (Allow) LPort=33011
FirewallRules: [{71AF99EC-A3B4-440E-A494-8CEDACF76424}] => (Allow) LPort=33010
FirewallRules: [{00E5DD79-344A-49AC-8B7E-0DFDD20A427F}] => (Allow) LPort=33009
FirewallRules: [{C3043CF6-9E95-4BA9-80FA-740DC4D3EE5D}] => (Allow) LPort=23008
FirewallRules: [{C5A8A309-E4F6-4D15-B9CC-8F9BE5FF382B}] => (Allow) LPort=23007
FirewallRules: [{3EA7303C-F05F-4EB8-8C30-3B105B447315}] => (Allow) LPort=53016
FirewallRules: [{1CC2825B-B7CE-45B7-A1D8-11DE195C4552}] => (Allow) LPort=53015
FirewallRules: [{06481206-6571-486D-B827-3B228BBCDED9}] => (Allow) LPort=53014
FirewallRules: [{5AC9C6AA-34AF-45DD-8959-AFFE89B8D892}] => (Allow) LPort=43013
FirewallRules: [{1C37DE6F-CB07-40E4-A233-EAEDCD49B008}] => (Allow) LPort=43012
FirewallRules: [{69C36FC3-0D72-474F-88D8-DE41D555D57B}] => (Allow) LPort=33011
FirewallRules: [{2AE7AB25-F774-48D0-B8FF-826D01F3AA4C}] => (Allow) LPort=33010
FirewallRules: [{E3C6E943-1D0C-4010-9AD1-C1BEDD92A17D}] => (Allow) LPort=33009
FirewallRules: [{45B7624C-1A95-4AA1-A9AB-CB125DD598FF}] => (Allow) LPort=23008
FirewallRules: [{A3888199-EFFD-4152-90A9-1BF68231A8D1}] => (Allow) LPort=23007
FirewallRules: [{A6352B8B-1050-4BE0-8A1A-0015D2F3FCE8}] => (Allow) LPort=57218
FirewallRules: [{E932F4F7-559F-46F9-9FC6-83031E82EFF3}] => (Allow) LPort=57217
FirewallRules: [{A6A4401C-4758-470D-8AF7-65F3637559F7}] => (Allow) LPort=57216
FirewallRules: [{4781A3A4-5AAF-4518-B54A-F89216EBB291}] => (Allow) LPort=57215
FirewallRules: [{0B9F1C87-3013-4DB4-AD9E-F664D20C611E}] => (Allow) LPort=57214
FirewallRules: [{56BC389B-FA70-45C1-B030-DA8A99E18570}] => (Allow) LPort=57213
FirewallRules: [{8F34D4D7-0F4F-45DF-B0BE-E928B40651C3}] => (Allow) LPort=57212
FirewallRules: [{2AF76472-0AEC-488C-BF70-CC92F293480C}] => (Allow) LPort=57211
FirewallRules: [{DDD9D5D5-8F2F-45BB-8D25-7ACFEE1E48E7}] => (Allow) LPort=57210
FirewallRules: [{800508B4-8086-421C-AA44-1A2E6812BA1B}] => (Allow) LPort=57209
FirewallRules: [{951E8C03-082D-458B-94F3-21EFEDF6E64F}] => (Allow) LPort=57218
FirewallRules: [{3E1A7344-CE8A-4262-8823-139D994F30B1}] => (Allow) LPort=57217
FirewallRules: [{3D114DEB-ECE5-45EC-B81A-5FA2BE2B528D}] => (Allow) LPort=57216
FirewallRules: [{5DE287EC-B0B8-44FA-B4B2-65388712BD0B}] => (Allow) LPort=57215
FirewallRules: [{E4DD0540-F010-4EEF-9A03-4CEB1A4CC693}] => (Allow) LPort=57214
FirewallRules: [{CCF3EDDC-1208-48E5-AB8D-DAAC4CF7B5CD}] => (Allow) LPort=57213
FirewallRules: [{9537AAE8-FAFD-4463-9EF0-77C8A2286084}] => (Allow) LPort=57212
FirewallRules: [{B3A39A35-8B97-4F55-8A1C-4B58EECB252B}] => (Allow) LPort=57211
FirewallRules: [{9149E68E-FC65-4745-B312-84ED3C40DC4C}] => (Allow) LPort=57210
FirewallRules: [{12E047E2-6D4B-40E7-9AC7-115FB9097456}] => (Allow) LPort=57209




CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:
End
*****************

SystemRestore: On => completado
El punto de restauración fue creado correctamente.
Procesos cerrados correctamente.

========================= File: C:\Program Files\HP\HP Deskjet 1510 series\bin\HPStatusBL.dll ========================

C:\Program Files\HP\HP Deskjet 1510 series\bin\HPStatusBL.dll
El archivo está firmado digitalmente
MD5: 4F92FD976457F6756904CB50905E6D40
Fecha de creación y modificación: 2014-03-06 12:10 - 2014-03-06 12:10
Tamaño: 006707720
Atributos: ----A
Nombre de la compañía: Hewlett Packard -> Hewlett-Packard Co.
Interno Nombre: HPStatusBL
Original Nombre: HPStatusBL.dll
Producto: HP Digital Imaging
Descripción: Print Driver Status Business Logic
Archivo Versión: 32.2.188.47710
Producto Versión: 032.002.188.47710
Copyright: Copyright (C) Hewlett-Packard Co. 2011
VirusTotal: https://www.virustotal.com/gui/file/aa7bf90e951f43b0afa71876b0c8bfc6dc2b7c1ae424032d9ea7a477a68c5f4a/detection/f-aa7bf90e951f43b0afa71876b0c8bfc6dc2b7c1ae424032d9ea7a477a68c5f4a-1656777419

====== Final de File: ======


========================= File: C:\Users\Enric\AppData\Roaming\9b0aae6e20904a9c86de8031ccb522af.exe ========================

C:\Users\Enric\AppData\Roaming\9b0aae6e20904a9c86de8031ccb522af.exe
El archivo está firmado digitalmente
MD5: 5DF29C593E47FDB9D04C38381E781673
Fecha de creación y modificación: 2020-03-01 23:51 - 2020-03-01 23:52
Tamaño: 397406656
Atributos: ----A
Nombre de la compañía: Nox Limited -> Duodian Technology Co. Ltd.
Interno Nombre: 
Original Nombre: 
Producto: Nox App Player
Descripción: Nox App Player Installer
Archivo Versión: 6,5,0,3
Producto Versión: 6,5,0,3
Copyright: Copyright (C) 2018 Duodian Online Inc. All rights reserved.
VirusTotal: https://www.virustotal.com/gui/file/017ecbbd20a093f9e5a28eb1221323dafa29658b939585e4c8cdcb75c729a331/detection/f-017ecbbd20a093f9e5a28eb1221323dafa29658b939585e4c8cdcb75c729a331-1607951631

====== Final de File: ======

VirusTotal: C:\Users\Enric\AppData\Roaming\9b0aae6e20904a9c86de8031ccb522af.exe => https://www.virustotal.com/gui/file/017ecbbd20a093f9e5a28eb1221323dafa29658b939585e4c8cdcb75c729a331/detection/f-017ecbbd20a093f9e5a28eb1221323dafa29658b939585e4c8cdcb75c729a331-1607951631
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate => eliminado correctamente

"C:\WINDOWS\system32\GroupPolicy\Machine" carpeta mover:

C:\WINDOWS\system32\GroupPolicy\Machine => movido correctamente
C:\WINDOWS\system32\GroupPolicy\GPT.ini => movido correctamente
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => movido correctamente
"C:\WINDOWS\system32\GroupPolicy\Machine" => no encontrado
C:\ProgramData\NTUSER.pol => movido correctamente
HKLM\SOFTWARE\Policies\Mozilla => eliminado correctamente
HKLM\SOFTWARE\Policies\Google => eliminado correctamente
HKLM\SOFTWARE\Policies\Microsoft\Edge => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{00CAE1DD-5010-4F29-B5E1-A02F12DD5B2D}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{00CAE1DD-5010-4F29-B5E1-A02F12DD5B2D}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Media Sharing\UpdateLibrary" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{02628E3E-D213-4A20-B71C-F33DDD30BC90}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{02628E3E-D213-4A20-B71C-F33DDD30BC90}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0ACC9481-C1F0-4B1C-98DC-96A5092A0B21}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0ACC9481-C1F0-4B1C-98DC-96A5092A0B21}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1CAD156B-0411-48DA-AF9D-7393A379E276}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1CAD156B-0411-48DA-AF9D-7393A379E276}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{20F322C2-8126-4DA0-8A27-45453D3CCD75}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{20F322C2-8126-4DA0-8A27-45453D3CCD75}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{217F0180-D9C7-42E3-BF38-CF85AD7FAFED}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{217F0180-D9C7-42E3-BF38-CF85AD7FAFED}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{32F6D92F-E4D5-4DD5-BD59-5F58C2AF3170}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{32F6D92F-E4D5-4DD5-BD59-5F58C2AF3170}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{332269B5-F733-4BCD-BED1-2FC836F1DAA5}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{332269B5-F733-4BCD-BED1-2FC836F1DAA5}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3A6DB6F9-A355-420A-B6E0-7C54D12F4033}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3A6DB6F9-A355-420A-B6E0-7C54D12F4033}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3ACCF89D-283F-49AD-B813-4C9F8C83EDD2}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3ACCF89D-283F-49AD-B813-4C9F8C83EDD2}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{569F4FE5-507D-4DB3-96D6-82BB73E70B45}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{569F4FE5-507D-4DB3-96D6-82BB73E70B45}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5C710CC2-B863-4934-B868-5E0BBE24EF79}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5C710CC2-B863-4934-B868-5E0BBE24EF79}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5C83853E-0180-4BF8-B463-485C2C8AA8D0}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5C83853E-0180-4BF8-B463-485C2C8AA8D0}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{62FA75C1-519D-4FEB-B495-EE323850859B}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{62FA75C1-519D-4FEB-B495-EE323850859B}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6A0DA687-86F2-4111-929F-111A79DE287A}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6A0DA687-86F2-4111-929F-111A79DE287A}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7837449E-AE3C-434D-A550-488DDD727D16}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7837449E-AE3C-434D-A550-488DDD727D16}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7ECADE61-33A2-445E-B6B2-2F377C4D08C4}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7ECADE61-33A2-445E-B6B2-2F377C4D08C4}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{7FE4A1C3-F880-487F-897D-E61F46B521D6}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7FE4A1C3-F880-487F-897D-E61F46B521D6}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{8635F565-F659-4E6D-AE84-8D5E3276F0D7}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8635F565-F659-4E6D-AE84-8D5E3276F0D7}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9035A12C-DC50-4329-A356-2F1F9AC7F85B}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9035A12C-DC50-4329-A356-2F1F9AC7F85B}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{91427A5A-9812-4F7D-8442-C33139B6EC59}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{91427A5A-9812-4F7D-8442-C33139B6EC59}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{91BEDECD-5F5E-408B-95E4-E87AF7C0CF71}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{91BEDECD-5F5E-408B-95E4-E87AF7C0CF71}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{94E1614A-59B5-485A-BE6D-5F8A4679DDE8}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{94E1614A-59B5-485A-BE6D-5F8A4679DDE8}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9655AC28-8AE8-414C-B90E-3CF0CD184B6D}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9655AC28-8AE8-414C-B90E-3CF0CD184B6D}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{976DF294-4207-47FB-BFBD-533C38999424}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{976DF294-4207-47FB-BFBD-533C38999424}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9859DD0A-E98A-432F-B390-A301F5363EC1}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9859DD0A-E98A-432F-B390-A301F5363EC1}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9D4C76AB-8B1B-4C2A-A1FF-A738859F894A}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9D4C76AB-8B1B-4C2A-A1FF-A738859F894A}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{AEBB85B3-E4AC-47FE-B47E-633B4BB00182}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AEBB85B3-E4AC-47FE-B47E-633B4BB00182}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B47FBD09-DFAE-4B4A-87AB-F27528B8D33C}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B47FBD09-DFAE-4B4A-87AB-F27528B8D33C}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B782BB75-6118-4C06-986C-358FD10EED84}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B782BB75-6118-4C06-986C-358FD10EED84}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B8FBF6B6-DF0A-4239-BD3A-E5559A20A76F}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B8FBF6B6-DF0A-4239-BD3A-E5559A20A76F}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{BAC05271-EFD0-45BB-8EF6-B72B6E2C7B50}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BAC05271-EFD0-45BB-8EF6-B72B6E2C7B50}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CC4F585B-EBBB-4AA6-9BDF-B28C489A9125}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CC4F585B-EBBB-4AA6-9BDF-B28C489A9125}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D061F2A0-607C-4EB3-9E37-61DBF84D23BD}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D061F2A0-607C-4EB3-9E37-61DBF84D23BD}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{DAEED356-74AB-44B3-BF66-C11F054161A8}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DAEED356-74AB-44B3-BF66-C11F054161A8}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DC6B59DC-B875-47DD-82F8-18C8E776F493}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DC6B59DC-B875-47DD-82F8-18C8E776F493}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{DF4385DD-3AAF-4C56-B95B-040615F87C99}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DF4385DD-3AAF-4C56-B95B-040615F87C99}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DFC1E383-E733-4C75-B23A-340249C33CA1}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DFC1E383-E733-4C75-B23A-340249C33CA1}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EA6BD89D-5FD1-4ACF-A4DE-1BA4127BD9D6}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EA6BD89D-5FD1-4ACF-A4DE-1BA4127BD9D6}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EF4C666B-DF3F-4AD3-A934-35DAF55FD343}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EF4C666B-DF3F-4AD3-A934-35DAF55FD343}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F35E6B87-464A-4A13-A76C-206946A1779B}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F35E6B87-464A-4A13-A76C-206946A1779B}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F7D006EF-6E7A-4C57-AB47-C455402D8DCE}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F7D006EF-6E7A-4C57-AB47-C455402D8DCE}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F8373ACD-4484-4988-86E5-07B6DDE64EC5}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F8373ACD-4484-4988-86E5-07B6DDE64EC5}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FA32038C-460B-41F3-9885-23247981B9EC}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FA32038C-460B-41F3-9885-23247981B9EC}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FA5A7758-32A7-4194-B2B1-9C0341FD5BAE}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FA5A7758-32A7-4194-B2B1-9C0341FD5BAE}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F8988392-0D39-48DF-8B95-1E4F015413FC}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F8988392-0D39-48DF-8B95-1E4F015413FC}" => eliminado correctamente
C:\WINDOWS\System32\Tasks\CCleanerSkipUAC - Enric => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CCleanerSkipUAC - Enric" => eliminado correctamente
C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => movido correctamente
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => eliminado correctamente
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\BookReader_B171F20233094AC88D05A8EF7B9763E8 => eliminado correctamente
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => eliminado correctamente
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => eliminado correctamente
C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\user.js => movido correctamente
"HKLM\Software\Wow6432Node\MozillaPlugins\@update.avgbrowser.com/AVG Browser;version=3 -> C:\Program Files (x86)\AVG\Browser\Update\1.8.1582.3\npAvgBrowserUpdate3.dll [2022-12-13] (AVG Technologies USA, LLC" => no encontrado
C:\Program Files (x86)\AVG\Browser\Update\1.8.1582.3\npAvgBrowserUpdate3.dll => movido correctamente
"HKLM\Software\Wow6432Node\MozillaPlugins\@update.avgbrowser.com/AVG Browser;version=9 -> C:\Program Files (x86)\AVG\Browser\Update\1.8.1582.3\npAvgBrowserUpdate3.dll [2022-12-13] (AVG Technologies USA, LLC" => no encontrado
"C:\Program Files (x86)\AVG\Browser\Update\1.8.1582.3\npAvgBrowserUpdate3.dll" => no encontrado
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{19C3AB22-3718-4E4D-B203-242F5001565B}\\SystemComponent" => eliminado correctamente
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}\\SystemComponent" => eliminado correctamente
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{EDB7AEE7-E932-4836-AE50-D3B0B7766CB5}\\SystemComponent" => eliminado correctamente
"C:\Users\Enric\Downloads\path.LZgQzxhz.js.part" => no encontrado
"C:\Users\Enric\Downloads\path.js" => no encontrado
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => eliminado correctamente
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => eliminado correctamente
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => eliminado correctamente
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => eliminado correctamente
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => eliminado correctamente
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => eliminado correctamente
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => eliminado correctamente
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => eliminado correctamente
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => eliminado correctamente
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => eliminado correctamente
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => eliminado correctamente
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => eliminado correctamente
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => eliminado correctamente
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => eliminado correctamente
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ FileSyncEx => eliminado correctamente
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => eliminado correctamente
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\SDECon32 => eliminado correctamente
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\SDECon64 => eliminado correctamente
HKLM\Software\Classes\Drive\ShellEx\ContextMenuHandlers\SDECon32 => eliminado correctamente
HKLM\Software\Classes\Drive\ShellEx\ContextMenuHandlers\SDECon64 => eliminado correctamente
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => eliminado correctamente
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ FileSyncEx => eliminado correctamente
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\SDECon32 => eliminado correctamente
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\SDECon64 => eliminado correctamente
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\Software\Classes\*\ShellEx\ContextMenuHandlers\ FileSyncEx => eliminado correctamente
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ FileSyncEx => eliminado correctamente
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\ FileSyncEx => eliminado correctamente
C:\ProgramData\TEMP => ":5C321E34" ADS eliminado correctamente
C:\Users\Enric\Downloads\UmVkZXNYZW4xNi5Fc2NyaXRvcmlvX1JlbW90b19Nb3ZpbGlkYWQgJFMxLTI-.ica => ":icasource" ADS eliminado correctamente
C:\Users\Public\Shared Files => ":VersionCache" ADS eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C252D89D-3BA8-4194-8790-5D5BCD1FCDCE}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{329630B8-77FE-4BD9-A085-6725A9B66D91}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C9896F9D-A78D-4943-A11F-3197136CD89F}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F8576A81-D941-472A-AF2F-8BFF99D7CD3E}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{ACDD5A20-C45F-4BD6-88B7-0D50E1036029}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2317297A-457C-4B69-9FCB-7306EA50CD4C}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CB1062B4-9DCF-4571-B68C-4A2CA3844A2F}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{306DA552-978C-48DF-AF16-F26D1E283657}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{71AF99EC-A3B4-440E-A494-8CEDACF76424}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{00E5DD79-344A-49AC-8B7E-0DFDD20A427F}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C3043CF6-9E95-4BA9-80FA-740DC4D3EE5D}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C5A8A309-E4F6-4D15-B9CC-8F9BE5FF382B}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3EA7303C-F05F-4EB8-8C30-3B105B447315}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1CC2825B-B7CE-45B7-A1D8-11DE195C4552}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{06481206-6571-486D-B827-3B228BBCDED9}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5AC9C6AA-34AF-45DD-8959-AFFE89B8D892}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1C37DE6F-CB07-40E4-A233-EAEDCD49B008}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{69C36FC3-0D72-474F-88D8-DE41D555D57B}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2AE7AB25-F774-48D0-B8FF-826D01F3AA4C}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E3C6E943-1D0C-4010-9AD1-C1BEDD92A17D}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{45B7624C-1A95-4AA1-A9AB-CB125DD598FF}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A3888199-EFFD-4152-90A9-1BF68231A8D1}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A6352B8B-1050-4BE0-8A1A-0015D2F3FCE8}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E932F4F7-559F-46F9-9FC6-83031E82EFF3}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A6A4401C-4758-470D-8AF7-65F3637559F7}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4781A3A4-5AAF-4518-B54A-F89216EBB291}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0B9F1C87-3013-4DB4-AD9E-F664D20C611E}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{56BC389B-FA70-45C1-B030-DA8A99E18570}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8F34D4D7-0F4F-45DF-B0BE-E928B40651C3}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2AF76472-0AEC-488C-BF70-CC92F293480C}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DDD9D5D5-8F2F-45BB-8D25-7ACFEE1E48E7}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{800508B4-8086-421C-AA44-1A2E6812BA1B}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{951E8C03-082D-458B-94F3-21EFEDF6E64F}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3E1A7344-CE8A-4262-8823-139D994F30B1}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3D114DEB-ECE5-45EC-B81A-5FA2BE2B528D}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5DE287EC-B0B8-44FA-B4B2-65388712BD0B}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E4DD0540-F010-4EEF-9A03-4CEB1A4CC693}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CCF3EDDC-1208-48E5-AB8D-DAAC4CF7B5CD}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9537AAE8-FAFD-4463-9EF0-77C8A2286084}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B3A39A35-8B97-4F55-8A1C-4B58EECB252B}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9149E68E-FC65-4745-B312-84ED3C40DC4C}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{12E047E2-6D4B-40E7-9AC7-115FB9097456}" => eliminado correctamente

========= ipconfig /flushdns =========


Configuraci¢n IP de Windows

Se vaci¢ correctamente la cach‚ de resoluci¢n de DNS.


========= Final de CMD: =========


========= ipconfig /renew =========


Configuraci¢n IP de Windows

No se puede realizar ninguna operaci¢n en Ethernet 2 mientras los medios
est‚n desconectados.

Adaptador de Ethernet Ethernet:

   Sufijo DNS espec¡fico para la conexi¢n. . : home
   V¡nculo: direcci¢n IPv6 local. . . : fe80::41fb:908b:34f0:2943%9
   Direcci¢n IPv4. . . . . . . . . . . . . . : 192.168.1.131
   M scara de subred . . . . . . . . . . . . : 255.255.255.0
   Puerta de enlace predeterminada . . . . . : 192.168.1.1

Adaptador de Ethernet Ethernet 2:

   Estado de los medios. . . . . . . . . . . : medios desconectados
   Sufijo DNS espec¡fico para la conexi¢n. . : 


========= Final de CMD: =========


========= bitsadmin /reset /allusers =========


BITSADMIN version 3.0
BITS administration utility.
(C) Copyright Microsoft Corp.

{AE3B8818-98D2-4CE4-BF58-A15B8356E542} canceled.
1 out of 1 jobs canceled.


========= Final de CMD: =========


========= netsh winsock reset =========


El cat logo Winsock se restableci¢ correctamente.
Debe reiniciar el equipo para completar el restablecimiento.



========= Final de CMD: =========


========= netsh advfirewall reset =========

Aceptar



========= Final de CMD: =========


========= netsh advfirewall set allprofiles state ON =========

Aceptar



========= Final de CMD: =========


========= netsh int ipv4 reset =========

Reenv¡o de compartimiento se restableci¢ correctamente.
Compartimiento se restableci¢ correctamente.
Protocolo de control se restableci¢ correctamente.
Solicitud de secuencia eco se restableci¢ correctamente.
Global se restableci¢ correctamente.
Interfaz se restableci¢ correctamente.
Direcci¢n de difusi¢n por proximidad (a se restableci¢ correctamente.
Direcciones de multidifusi¢n se restableci¢ correctamente.
Direcci¢n de unidifusi¢n se restableci¢ correctamente.
Vecino se restableci¢ correctamente.
Ruta de acceso se restableci¢ correctamente.
Posible se restableci¢ correctamente.
Directiva de prefijo se restableci¢ correctamente.
Vecino de proxy se restableci¢ correctamente.
Ruta se restableci¢ correctamente.
Prefijo de sitio se restableci¢ correctamente.
Subinterfaz se restableci¢ correctamente.
Patr¢n de reactivaci¢n se restableci¢ correctamente.
Resolver vecino se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Error al restablecer .
Acceso denegado.

 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.



========= Final de CMD: =========


========= netsh int ipv6 reset =========

Reenv¡o de compartimiento se restableci¢ correctamente.
Compartimiento se restableci¢ correctamente.
Protocolo de control se restableci¢ correctamente.
Solicitud de secuencia eco se restableci¢ correctamente.
Global se restableci¢ correctamente.
Interfaz se restableci¢ correctamente.
Direcci¢n de difusi¢n por proximidad (a se restableci¢ correctamente.
Direcciones de multidifusi¢n se restableci¢ correctamente.
Direcci¢n de unidifusi¢n se restableci¢ correctamente.
Vecino se restableci¢ correctamente.
Ruta de acceso se restableci¢ correctamente.
Posible se restableci¢ correctamente.
Directiva de prefijo se restableci¢ correctamente.
Vecino de proxy se restableci¢ correctamente.
Ruta se restableci¢ correctamente.
Prefijo de sitio se restableci¢ correctamente.
Subinterfaz se restableci¢ correctamente.
Patr¢n de reactivaci¢n se restableci¢ correctamente.
Resolver vecino se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Error al restablecer .
Acceso denegado.

 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.



========= Final de CMD: =========


========= RemoveProxy: =========

"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente
"HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente


========= Final de RemoveProxy: =========

C:\Windows\System32\Drivers\etc\hosts => movido correctamente
Hosts restaurado correctamente.

=========== EmptyTemp: ==========

FlushDNS => completado
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 12705445 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 323785211 B
Windows/system/drivers => 46362117 B
Edge => 411 B
Firefox => 31631382 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 180 B
LocalService => 24200 B
NetworkService => 31806 B
Enric => 173890400 B

RecycleBin => 0 B
EmptyTemp: => 561.2 MB datos temporales eliminados.

================================


El sistema necesita reiniciarse.

==== Final de Fixlog 21:24:20 ====
1 me gusta

Hola @Verntallat

Lograste desinstalar esto?

Ejecutas farbar nuevamente como indico en mi respuesta Varias pestañas abiertas: Pantalla a negro y bloqueo PC - nº 7 por DanielG

El reporte lo colocas como esta en la imagen, en la anterior te falto cerrar con [/code] solo pusiste [code] es importante el /

Me traes los reportes y vas comprobando como funciona todo.

Saludos

Hola Daniel Esos 3 programas Avast Update AVG Update Avg Update No Los he podido desinstalar ni con REVO Le doy a las opciones que indicas y siguen ahí

Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 11.02.2024
Ejecutado por Enric (administrador) sobre DESKTOP-I120NKE (MSI MS-7820) (14-02-2024 23:10:09)
Ejecutado desde C:\Users\Enric\Desktop\FRST64.exe
Perfiles cargados: Enric
Plataforma: Microsoft Windows 10 Pro Versión 22H2 19045.3803 (X64) Idioma: Español (España, internacional)
Navegador predeterminado: FF
Modo de Inicio: Normal

==================== Procesos (Lista blanca) =================

(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)

(AVG Technologies USA, LLC -> AVG Technologies) C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <8>
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(explorer.exe ->) (Skype Software Sarl -> Skype Technologies S.A.) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.112.3210.0_x64__kzf8qxf38zg5c\Skype\Skype.exe <5>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <18>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (CHENGDU YIWO Tech Development Co., Ltd. -> ) C:\Program Files (x86)\EaseUS\ENS\ensserver.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> MICRO-STAR INTERNATIONAL CO., LTD.) C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\MSI\MSIRegister\MSIRegisterService.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe <3>
(services.exe ->) (Panda Security S.L. -> Panda Security S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\pselamsvc.exe
(services.exe ->) (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe
(services.exe ->) (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe
(services.exe ->) (Panda Security S.L. -> Panda Security, S.L.U.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Toast Server\MSIToastServer.exe

==================== Registro (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Run: [Eraser] => C:\Program Files\Eraser\Eraser.exe [1068560 2019-08-18] (Heidi Computers Ltd -> The Eraser Project)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8484056 2015-06-12] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
HKLM-x32\...\Run: [PSUAMain] => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [186984 2022-11-02] (Panda Security S.L. -> Panda Security, S.L.)
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4362600 2023-03-24] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\Run: [AVGBrowserAutoLaunch_D7C3CD873F94276E52437C1FEEEEFB74] => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [3118408 2024-02-07] (AVG Technologies USA, LLC -> AVG Technologies)
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45018016 2024-02-05] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\Run: [MicrosoftEdgeAutoLaunch_EDE33EF8D1E0788C370451E91D1D620F] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3788856 2024-02-08] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\Run: [Grammarly] => C:\Users\Enric\AppData\Local\Grammarly\DesktopIntegrations\Grammarly.Desktop.exe [293984 2024-02-02] (Grammarly, Inc. -> Grammarly)
HKLM\...\Print\Monitors\HP c111 Status Monitor: C:\WINDOWS\system32\hpinkstsc111LM.dll [333496 2012-12-16] (Hewlett Packard -> Hewlett-Packard Co.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{48F69C39-1356-4A7B-A899-70E3539D4982}] -> C:\Program Files (x86)\AVG\Browser\Application\121.0.23861.160\Installer\chrmstp.exe [2024-02-14] (AVG Technologies USA, LLC -> AVG Technologies)
Startup: C:\Users\Enric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Enviar a OneNote.lnk [2023-11-16]
ShortcutTarget: Enviar a OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\Users\Enric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Supervisar alertas de tinta - HP Deskjet 1510 series.lnk [2021-01-06]
ShortcutAndArgument: Supervisar alertas de tinta - HP Deskjet 1510 series.lnk -> C:\WINDOWS\system32\RunDll32.exe => "C:\Program Files\HP\HP Deskjet 1510 series\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=CN41C1P11W05YR;CONNECTION=USB;MONITOR=1;

==================== Tareas programadas (Lista blanca) =================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

Task: {3534F231-DB75-405F-9E7B-42F1D3B4B6F4} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe [1504312 2020-12-08] (Adobe Inc. -> Adobe)
Task: {D913D364-81D2-4A49-9897-612808D4726B} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-08] (Adobe Inc. -> Adobe)
Task: {B1079D86-33EF-4C3E-AFBE-451433420311} - System32\Tasks\AVG Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [3118408 2024-02-07] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {4153C27B-456B-4757-ADE0-595595A315F3} - System32\Tasks\AVG Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [3118408 2024-02-07] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {9AB10080-153A-488A-BE25-062015EDDDA5} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2024-02-05] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {5760207F-210B-4085-93AC-89B8ACB0792C} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703648 2024-02-05] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "cd7e28a5-06e6-4f89-b694-b017f5e38a15" --version "6.21.10918" --silent
Task: {EAE2C7EE-A336-454E-A3C2-21EAE80947F7} - System32\Tasks\HPCustParticipation HP Deskjet 1510 series => C:\Program Files\HP\HP Deskjet 1510 series\Bin\HPCustPartic.exe [5745672 2014-03-06] (Hewlett Packard -> Hewlett-Packard Co.)
Task: {D8E969D3-F4FF-43A4-9A17-BC6CBDAF21A2} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [375416 2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {98B8B630-D8D9-4EED-A94F-B5A7A9D0F077} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [375416 2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {7BB4736D-44F0-47BA-8496-32486229042D} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [671136 2024-02-07] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {502E9895-63DA-4B50-8568-D8341BA1BF5F} - System32\Tasks\MSI_Toast_Server => C:\Program Files (x86)\MSI\MSI Toast Server\MSIToastServer.exe [31904 2019-03-05] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)

(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)

Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe

==================== Internet (Lista blanca) ====================

(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)

Tcpip\Parameters: [DhcpNameServer] 212.230.135.2 212.230.135.1
Tcpip\..\Interfaces\{4b069eb8-966f-4d20-9797-818ed31baeac}: [DhcpNameServer] 192.168.253.80
Tcpip\..\Interfaces\{8b4b1601-5e57-4fcc-900f-9c8c205c5263}: [DhcpNameServer] 212.230.135.2 212.230.135.1
Tcpip\..\Interfaces\{8b4b1601-5e57-4fcc-900f-9c8c205c5263}: [DhcpDomain] home

Edge: 
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Enric\AppData\Local\Microsoft\Edge\User Data\Default [2024-02-14]
Edge Extension: (Traducir con un clic) - C:\Users\Enric\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\angkbadadjnbahimnajiklidgpnkmdhb [2020-12-21]
Edge Extension: (Documentos de Google sin conexión) - C:\Users\Enric\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-18]
Edge Extension: (Edge relevant text changes) - C:\Users\Enric\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-25]
Edge Profile: C:\Users\Enric\AppData\Local\Microsoft\Edge\User Data\Guest Profile [2024-02-10]
Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

FireFox:
========
FF DefaultProfile: 96zysp8q.default
FF ProfilePath: C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\96zysp8q.default [2024-02-14]
FF Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\96zysp8q.default\Extensions\[email protected] [2020-05-01]
FF ProfilePath: C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release [2024-02-14]
FF Homepage: Mozilla\Firefox\Profiles\1njcv9jz.default-release -> hxxps://www.google.es/
FF Extension: (Al traductor de Google) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\[email protected] [2021-06-24]
FF Extension: (Mate Translate – traductor & diccionario) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\[email protected] [2022-11-18]
FF Extension: (Google™ Translator) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\{059cddf1-f66c-4b63-a79a-c35ac7e6ac65}.xpi [2021-01-12]
FF Extension: (Translator menu) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\{08c2b732-18f5-446d-a586-275561e98c8a}.xpi [2020-04-10]
FF Extension: (Malwarebytes Browser Guard) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [2023-12-19]
FF Extension: (ImTranslator: Traductor, Diccionario, Voz) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\1njcv9jz.default-release\Extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi [2023-12-04]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_465.dll [2020-12-08] (Adobe Inc. -> )
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-01-13] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_465.dll [2020-12-08] (Adobe Inc. -> )
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2014-08-01] (Google Inc -> Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.251.2 -> C:\Program Files (x86)\Java\jre1.8.0_251\bin\dtplugin\npDeployJava1.dll [2020-04-21] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.251.2 -> C:\Program Files (x86)\Java\jre1.8.0_251\bin\plugin2\npjp2.dll [2020-04-21] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=3 -> C:\Program Files (x86)\AVG\Browser\Update\1.8.1582.3\npAvgBrowserUpdate3.dll [Ningún archivo]
FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=9 -> C:\Program Files (x86)\AVG\Browser\Update\1.8.1582.3\npAvgBrowserUpdate3.dll [Ningún archivo]
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2020-05-01]

Chrome: 
=======
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

==================== Servicios (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-09-20] (Adobe Inc. -> Adobe Inc.)
S3 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-08] (Adobe Inc. -> Adobe)
S2 avg; C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [209224 2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies)
S3 avgm; C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [209224 2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies)
S3 AVGSecureBrowserElevationService; C:\Program Files (x86)\AVG\Browser\Application\121.0.23861.160\elevation_service.exe [1832256 2024-02-07] (AVG Technologies USA, LLC -> AVG Technologies)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8615864 2020-05-23] (BattlEye Innovations e.K. -> )
S3 BITCOMET_HELPER_SERVICE; C:\Program Files\BitComet\tools\BitCometService.exe [1296728 2013-11-29] (Shanghai Comet Network Technology -> www.BitComet.com)
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1082784 2024-02-05] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
R2 EaseUS UPDATE SERVICE; C:\Program Files (x86)\EaseUS\ENS\ensserver.exe [26512 2023-11-06] (CHENGDU YIWO Tech Development Co., Ltd. -> )
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [811120 2020-05-23] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [Archivo no firmado]
S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9410296 2024-01-25] (Malwarebytes Inc. -> Malwarebytes)
R2 MSIREGISTER_MR; C:\MSI\MSIRegister\MSIRegisterService.exe [2020024 2019-01-03] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [2325168 2020-02-03] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe [163280 2015-05-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R2 MSI_Trigger_Service; C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe [30240 2013-09-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> MICRO-STAR INTERNATIONAL CO., LTD.)
R2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [119560 2023-10-05] (Panda Security S.L. -> Panda Security, S.L.)
S3 Panda VPN Service; C:\Program Files (x86)\Panda Security\Panda Security Protection\Hydra.Sdk.Windows.Service.exe [320848 2017-11-20] (AnchorFree Inc -> )
R2 PandaAgent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [84176 2019-02-19] (Panda Security S.L. -> Panda Security, S.L.)
R2 pselamsvc; C:\Program Files (x86)\Panda Security\Panda Security Protection\pselamsvc.exe [195736 2023-04-13] (Panda Security S.L. -> Panda Security S.L.)
R2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [81424 2023-10-05] (Panda Security S.L. -> Panda Security, S.L.U.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [534472 2023-12-04] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe [3174840 2024-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe [133592 2024-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WsDrvInst; "C:\Program Files (x86)\Wondershare\UniConverter\Transfer\DriverInstall.exe" [X]

===================== Controladores (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R3 aftap0901; C:\WINDOWS\System32\drivers\aftap0901.sys [48624 2017-11-16] (AnchorFree Inc -> The OpenVPN Project)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Archivo no firmado]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Archivo no firmado]
R1 dokan1; C:\WINDOWS\System32\DRIVERS\dokan1.sys [104312 2018-08-09] (D3L -> Dokan Project)
R1 ElRawDisk; C:\WINDOWS\system32\drivers\rsdrvx64.sys [26024 2021-03-23] (EldoS Corporation -> EldoS Corporation)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2023-11-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239576 2024-01-25] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R1 NNSDNS; C:\WINDOWS\system32\DRIVERS\NNSDNS.sys [146184 2022-11-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSHTTP; C:\WINDOWS\system32\DRIVERS\NNSHTTP.sys [215264 2022-11-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSHTTPS; C:\WINDOWS\system32\DRIVERS\NNSHTTPS.sys [128744 2022-11-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSIDS; C:\WINDOWS\system32\DRIVERS\NNSIDS.sys [146664 2022-11-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSNAHSL; C:\WINDOWS\system32\DRIVERS\NNSNAHSL.sys [151152 2022-10-10] (Microsoft Windows Hardware Compatibility Publisher -> Panda Security, S.L.)
R1 NNSNHWFP; C:\WINDOWS\system32\DRIVERS\NNSNHWFP.sys [211208 2022-12-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSPICC; C:\WINDOWS\system32\DRIVERS\NNSPICC.sys [164568 2022-11-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSPOP3; C:\WINDOWS\system32\DRIVERS\NNSPOP3.sys [137960 2022-11-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSPROT; C:\WINDOWS\system32\DRIVERS\NNSPROT.sys [407264 2022-11-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSPRV; C:\WINDOWS\system32\DRIVERS\NNSPRV.sys [575720 2022-11-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSSMTP; C:\WINDOWS\system32\DRIVERS\NNSSMTP.sys [125672 2022-11-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSSTRM; C:\WINDOWS\system32\DRIVERS\NNSSTRM.sys [335064 2022-11-06] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super Charger\NTIOLib_X64.sys [13368 2012-10-25] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 NTIOLib_1_0_4; C:\Program Files (x86)\MSI\Live Update 5\NTIOLib_X64.sys [14136 2010-10-22] (Micro-Star Int'l Co. Ltd. -> MSI)
R2 PSINAflt; C:\WINDOWS\system32\DRIVERS\PSINAflt.sys [198376 2022-11-03] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
S0 psinelam; C:\WINDOWS\System32\DRIVERS\psinelam.sys [36552 2023-04-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Panda Security, S.L.)
R2 PSINFile; C:\WINDOWS\System32\DRIVERS\PSINFile.sys [176360 2022-11-03] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 PSINKNC; C:\WINDOWS\system32\DRIVERS\PSINKNC.sys [218856 2022-11-03] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R2 PSINProc; C:\WINDOWS\System32\DRIVERS\PSINProc.sys [150760 2022-11-03] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R2 PSINProt; C:\WINDOWS\system32\DRIVERS\PSINProt.sys [162536 2022-11-03] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R2 PSINReg; C:\WINDOWS\system32\DRIVERS\PSINReg.sys [130280 2022-11-03] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
U3 PSKMAD; C:\WINDOWS\System32\DRIVERS\PSKMAD.sys [72984 2019-02-20] (Panda Security S.L. -> Panda Security, S.L.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [55856 2024-02-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [594304 2024-02-12] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105856 2024-02-12] (Microsoft Windows -> Microsoft Corporation)
R1 YSDrv; C:\Program Files (x86)\Bignox\BigNoxVM\RT\YSDrv.sys [312776 2023-03-31] (Microsoft Windows Hardware Compatibility Publisher -> Nox Limited Corporation)

==================== NetSvcs (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)


==================== Un mes (creado) (Lista blanca) =========

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2024-02-14 21:49 - 2024-02-14 21:49 - 000000000 ___HD C:\$WinREAgent
2024-02-14 21:38 - 2024-02-14 21:38 - 000000000 ____D C:\Program Files\RUXIM
2024-02-14 21:32 - 2024-02-14 21:32 - 006970144 _____ (VS Revo Group ) C:\Users\Enric\Downloads\revosetup(2).exe
2024-02-14 21:25 - 2024-02-14 21:25 - 000000008 _____ C:\ProgramData\ntuser.pol
2024-02-14 21:22 - 2024-02-14 21:24 - 000050111 _____ C:\Users\Enric\Desktop\Fixlog.txt
2024-02-14 21:17 - 2024-02-14 21:17 - 000000253 _____ C:\DelFix.txt
2024-02-14 21:17 - 2024-02-14 21:17 - 000000000 ____D C:\WINDOWS\ERUNT
2024-02-14 21:15 - 2024-02-14 21:15 - 000797760 _____ C:\Users\Enric\Downloads\delfix_1.013(1).exe
2024-02-14 21:13 - 2024-02-14 21:13 - 000797760 _____ C:\Users\Enric\Desktop\delfix_1.013.exe
2024-02-14 20:49 - 2024-02-14 20:49 - 006970144 _____ (VS Revo Group ) C:\Users\Enric\Downloads\revosetup(1).exe
2024-02-14 19:13 - 2024-02-14 19:13 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2024-02-12 20:36 - 2024-02-14 23:09 - 000043805 _____ C:\Users\Enric\Desktop\Addition.txt
2024-02-12 20:33 - 2024-02-14 23:10 - 000024605 _____ C:\Users\Enric\Desktop\FRST.txt
2024-02-12 20:33 - 2024-02-14 23:10 - 000000000 ____D C:\FRST
2024-02-12 20:31 - 2024-02-12 20:31 - 002389504 _____ (Farbar) C:\Users\Enric\Downloads\FRST64.exe
2024-02-12 20:28 - 2024-02-12 20:28 - 002389504 _____ (Farbar) C:\Users\Enric\Desktop\FRST64.exe
2024-02-12 20:16 - 2024-02-12 20:16 - 008797968 _____ (Malwarebytes) C:\Users\Enric\Downloads\adwcleaner(2).exe
2024-02-12 20:14 - 2024-02-12 20:14 - 008797968 _____ (Malwarebytes) C:\Users\Enric\Downloads\adwcleaner(1).exe
2024-02-12 20:05 - 2024-02-12 20:05 - 000003826 _____ C:\WINDOWS\system32\Tasks\AVG Secure Browser Heartbeat Task (Hourly)
2024-02-12 20:05 - 2024-02-12 20:05 - 000003242 _____ C:\WINDOWS\system32\Tasks\AVG Secure Browser Heartbeat Task (Logon)
2024-02-10 16:24 - 2024-02-10 16:24 - 000002534 _____ C:\Users\Enric\Documents\cc_20240210_162432.reg
2024-02-10 15:50 - 2024-02-10 15:50 - 006970144 _____ (VS Revo Group ) C:\Users\Enric\Desktop\revosetup.exe
2024-02-10 15:48 - 2024-02-10 15:48 - 008797968 _____ (Malwarebytes) C:\Users\Enric\Downloads\adwcleaner.exe
2024-02-10 15:42 - 2024-02-10 15:42 - 002582384 _____ (Malwarebytes) C:\Users\Enric\Downloads\MBSetup (2).exe
2024-02-10 15:40 - 2024-02-10 15:40 - 002582384 _____ (Malwarebytes) C:\Users\Enric\Downloads\MBSetup (1).exe
2024-02-10 15:38 - 2024-02-10 15:38 - 000000000 ____D C:\Program Files\Common Files\Avast Software
2024-02-10 15:36 - 2024-02-10 15:36 - 014160480 _____ (AVAST Software) C:\Users\Enric\Downloads\avastclear.exe
2024-02-10 15:33 - 2024-02-10 15:33 - 000000000 ____D C:\Program Files\Common Files\AVG
2024-02-10 15:31 - 2024-02-10 15:31 - 015942368 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Enric\Downloads\avgclear.exe
2024-02-10 15:29 - 2024-02-10 15:31 - 000000000 ____D C:\Users\Enric\AppData\Roaming\AVG
2024-02-10 15:27 - 2024-02-10 15:27 - 000234944 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Enric\Downloads\avg_antivirus_free_setup.exe
2024-02-09 20:27 - 2024-02-09 20:27 - 000007472 _____ C:\Users\Enric\Documents\cc_20240209_202702.reg
2024-02-07 18:44 - 2024-02-08 03:29 - 000000000 ____D C:\Program Files\Mozilla Firefox
2024-02-05 19:22 - 2024-02-14 21:12 - 000000666 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2024-02-05 19:22 - 2024-02-14 19:13 - 000003382 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2024-02-05 19:22 - 2024-02-05 19:22 - 000003784 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{3D7037B1-BA08-401E-B259-6105D9165FB2}
2024-02-05 19:22 - 2024-02-05 19:22 - 000003660 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{7199ECB1-CF65-49CE-A86D-E42F42A3C980}
2024-02-04 03:27 - 2024-02-04 03:27 - 003356512 _____ (Opera Software) C:\Users\Enric\Downloads\OperaGXSetup(3).exe
2024-02-03 17:17 - 2024-02-03 17:17 - 000205133 _____ C:\Users\Enric\Downloads\informes.zip
2024-02-02 13:39 - 2024-02-02 13:39 - 000000000 ____D C:\Users\Enric\AppData\Local\ToastNotificationManagerCompat
2024-02-01 13:44 - 2024-02-01 13:44 - 000530366 ____R C:\Users\Enric\Downloads\Los Chicos de Coro VX629CNAND6K-1.pdf
2024-02-01 13:40 - 2024-02-01 13:40 - 000530366 _____ C:\Users\Enric\Downloads\Los Chicos de Coro VX629CNAND6K.pdf
2024-01-18 14:42 - 2024-01-18 14:42 - 000011359 _____ C:\Users\Enric\Downloads\boardwalk-empire-1x05-f3sRw.torrent
2024-01-18 13:41 - 2024-01-18 13:55 - 001625898 _____ C:\Users\Enric\Downloads\totcat-centres-educatius(1).xlsx
2024-01-18 13:23 - 2024-01-18 13:23 - 001662470 _____ C:\Users\Enric\Downloads\totcat-centres-educatius.xlsx
2024-01-18 12:50 - 2024-01-18 12:50 - 000005992 _____ C:\Users\Enric\Documents\cc_20240118_125041.reg
2024-01-18 12:48 - 2024-01-18 12:48 - 000018310 _____ C:\Users\Enric\Documents\cc_20240118_124808.reg
2024-01-18 12:45 - 2024-01-18 12:45 - 000095954 _____ C:\Users\Enric\Documents\cc_20240118_124503.reg
2024-01-18 12:34 - 2024-01-18 12:34 - 000493357 ____R C:\Users\Enric\Downloads\PROGRAMA_ANTITABACO_MUFACE_11_2023.pdf
2024-01-15 14:33 - 2024-01-15 14:33 - 000001084 _____ C:\Users\Public\Desktop\EaseUS Data Recovery Wizard.lnk
2024-01-15 14:33 - 2024-01-15 14:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Data Recovery Wizard
2024-01-15 14:32 - 2024-01-15 14:32 - 071407592 _____ (EaseUS Data Recovery Wizard ) C:\Users\Enric\Downloads\drw17.0_free_B.exe
2024-01-15 14:32 - 2024-01-15 14:32 - 002097056 _____ C:\Users\Enric\Downloads\drw_free_installer.100000.exe

==================== Un mes (modificado) ==================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2024-02-14 23:00 - 2022-07-11 18:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2024-02-14 22:58 - 2024-01-07 22:47 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2024-02-14 22:01 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing
2024-02-14 22:01 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2024-02-14 21:48 - 2020-05-02 13:39 - 000000000 ____D C:\WINDOWS\system32\MRT
2024-02-14 21:41 - 2020-05-02 13:39 - 191155960 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2024-02-14 21:39 - 2020-05-05 06:21 - 000000000 ____D C:\Users\Enric\AppData\Local\D3DSCache
2024-02-14 21:38 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-02-14 21:28 - 2022-02-09 20:38 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2024-02-14 21:26 - 2023-06-07 12:39 - 000000000 ____D C:\Users\Enric\AppData\Local\Malwarebytes
2024-02-14 21:25 - 2024-01-07 22:54 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2024-02-14 21:25 - 2020-03-01 15:40 - 000000000 ____D C:\ProgramData\NVIDIA
2024-02-14 21:24 - 2019-12-07 10:03 - 000262144 _____ C:\WINDOWS\system32\config\BBI
2024-02-14 21:23 - 2020-03-01 16:56 - 000000000 ____D C:\Users\Enric\AppData\LocalLow\Temp
2024-02-14 21:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2024-02-14 21:23 - 2015-07-10 12:04 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2024-02-14 21:12 - 2022-04-13 00:10 - 000000000 ____D C:\Program Files\CCleaner
2024-02-14 21:12 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2024-02-14 21:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2024-02-14 21:08 - 2024-01-07 22:54 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2024-02-14 21:01 - 2020-03-01 23:52 - 000000000 ____D C:\Users\Enric\AppData\Local\Nox
2024-02-14 20:57 - 2021-03-06 20:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
2024-02-14 20:57 - 2021-03-06 20:31 - 000000000 ____D C:\Program Files (x86)\Wondershare
2024-02-14 20:57 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2024-02-14 19:43 - 2021-06-01 19:07 - 000002383 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Secure Browser.lnk
2024-02-13 04:06 - 2024-01-07 22:38 - 000000000 ____D C:\Users\Enric
2024-02-13 03:40 - 2020-03-01 16:07 - 000000000 ____D C:\Users\Enric\AppData\Roaming\vlc
2024-02-12 20:15 - 2020-05-04 03:55 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2024-02-12 20:15 - 2020-03-03 22:54 - 000918944 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2024-02-12 03:08 - 2020-05-25 19:48 - 000000000 ____D C:\Users\Enric\AppData\Local\CrashDumps
2024-02-10 15:43 - 2023-06-07 12:39 - 000002043 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2024-02-10 15:43 - 2023-06-07 12:39 - 000002031 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2024-02-10 15:43 - 2023-06-07 12:37 - 000000000 ____D C:\ProgramData\Malwarebytes
2024-02-10 15:43 - 2023-06-07 12:37 - 000000000 ____D C:\Program Files\Malwarebytes
2024-02-10 15:39 - 2020-05-01 19:31 - 000000000 ____D C:\ProgramData\Avast Software
2024-02-10 15:33 - 2020-07-06 22:10 - 000000000 ____D C:\ProgramData\AVG
2024-02-10 15:31 - 2020-07-08 19:21 - 000000000 ____D C:\Users\Enric\AppData\Local\Avg
2024-02-10 15:28 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2024-02-10 15:23 - 2020-07-08 04:19 - 000002450 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-02-10 15:23 - 2020-07-08 04:19 - 000002288 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2024-02-09 20:11 - 2023-12-05 19:13 - 000000000 ____D C:\Users\Enric\Desktop\ChipGenius-4.00.1024
2024-02-08 03:29 - 2020-03-01 15:56 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2024-02-08 01:40 - 2020-03-01 15:56 - 000001015 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2024-02-06 11:46 - 2024-01-07 22:57 - 001772862 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2024-02-06 11:46 - 2019-12-07 15:55 - 000788378 _____ C:\WINDOWS\system32\perfh00A.dat
2024-02-06 11:46 - 2019-12-07 15:55 - 000155766 _____ C:\WINDOWS\system32\perfc00A.dat
2024-02-06 11:39 - 2020-12-01 22:06 - 000008192 ___SH C:\DumpStack.log.tmp
2024-02-04 05:57 - 2020-03-01 16:13 - 000000000 ____D C:\Users\Enric\AppData\Roaming\BitComet
2024-02-03 20:18 - 2020-03-15 20:32 - 000000000 ____D C:\Users\Enric\AppData\LocalLow\Adobe
2024-02-03 17:20 - 2022-11-02 12:12 - 000002083 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2024-02-03 17:20 - 2022-11-02 12:12 - 000002071 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2024-02-02 16:45 - 2021-12-12 13:52 - 000001437 _____ C:\Users\Enric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Grammarly.lnk
2024-02-02 16:45 - 2021-12-12 13:52 - 000001429 _____ C:\Users\Enric\Desktop\Grammarly.lnk
2024-02-02 16:45 - 2021-12-12 13:52 - 000000000 ____D C:\Users\Enric\AppData\Local\Grammarly
2024-01-29 11:14 - 2023-12-04 03:52 - 000000000 ____D C:\WINDOWS\SystemTemp
2024-01-26 12:41 - 2020-03-02 11:14 - 000000000 ____D C:\Users\Enric\AppData\Roaming\Microsoft\Word
2024-01-26 11:13 - 2020-06-17 09:07 - 000000000 ____D C:\Users\Enric\AppData\Roaming\Microsoft\Excel
2024-01-25 18:28 - 2023-06-07 12:38 - 000239576 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2024-01-18 23:23 - 2024-01-07 22:21 - 000000000 ___DC C:\WINDOWS\Panther
2024-01-18 13:41 - 2020-03-01 15:38 - 000000000 ____D C:\Users\Enric\AppData\Local\Packages

==================== Archivos en la raíz de algunos directorios ========

2020-03-01 23:51 - 2020-03-01 23:52 - 397406656 _____ (Duodian Technology Co. Ltd.) C:\Users\Enric\AppData\Roaming\9b0aae6e20904a9c86de8031ccb522af.exe
2021-04-12 12:40 - 2021-04-12 12:40 - 000000015 _____ () C:\Users\Enric\AppData\Roaming\obs-virtualcam.txt
2023-04-22 12:36 - 2023-04-22 13:14 - 000011776 _____ () C:\Users\Enric\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2023-12-05 14:52 - 2023-12-05 14:52 - 000000218 _____ () C:\Users\Enric\AppData\Local\recently-used.xbel
2023-11-29 22:20 - 2023-11-29 22:20 - 000007681 _____ () C:\Users\Enric\AppData\Local\Resmon.ResmonCfg
2021-01-15 22:28 - 2021-01-15 22:53 - 000000069 _____ () C:\Users\Enric\AppData\Local\update_progress.txt

==================== SigCheck ============================

(No existe una corrección automática para los archivos que no pasan la verificación.)

==================== Final de FRST.txt ========================
Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 11.02.2024
Ejecutado por Enric (14-02-2024 23:12:02)
Ejecutado desde C:\Users\Enric\Desktop
Microsoft Windows 10 Pro Versión 22H2 19045.3803 (X64) (2024-01-07 21:54:37)
Modo de Inicio: Normal
==========================================================


==================== Cuentas: =============================


(Si una entrada es incluida en el fixlist, será eliminada.)

Administrador (S-1-5-21-3797396260-1262768339-3265785487-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3797396260-1262768339-3265785487-503 - Limited - Disabled)
Enric (S-1-5-21-3797396260-1262768339-3265785487-1001 - Administrator - Enabled) => C:\Users\Enric
Invitado (S-1-5-21-3797396260-1262768339-3265785487-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3797396260-1262768339-3265785487-504 - Limited - Disabled)

==================== Centro de Seguridad ========================

(Si una entrada es incluida en el fixlist, será eliminada.)

AV: Spybot - Search and Destroy (Disabled - Out of date) {F77C7796-45C4-531E-0DAE-B4A8229B11C8}
AV: Panda Dome (Disabled - Up to date) {8404BB29-B609-D604-AF5C-6806F0482FD3}
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {5078598A-1FA2-C888-AA5F-A9C66537DB12}

==================== Programas instalados ======================

(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)

0 A.D. (HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\0 A.D.) (Version: r21946P-alpha - Wildfire Games)
1.1 (HKLM-x32\...\{87179B53-AFC2-4F12-977D-2FF23293DC8A}_is1) (Version: 1.1 - EASIS GmbH)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1034-1033-7760-BC15014EA700}) (Version: 23.008.20470 - Adobe)
Adobe AIR (HKLM-x32\...\{00203668-8170-44A0-BE44-B632FA4D780F}) (Version: 1.0.8.4990 - Adobe Systems Inc.) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.0.4990 - Adobe Systems Inc.)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.465 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601053}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Age Of Empires Online versión 1.0 (HKLM-x32\...\{9AFBA633-7226-4624-8EE0-30FE961FB435}_is1) (Version: 1.0 - Age of Empires Online © Microsoft Corporation)
Asistente para actualización a Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.19041.2183 - Microsoft Corporation)
AutoFirma (HKLM\...\AutoFirma) (Version: 1.7.0 - Gobierno de España)
Avast Update Helper (HKLM-x32\...\{19C3AB22-3718-4E4D-B203-242F5001565B}) (Version: 1.8.1206.2 - AVAST Software)
AVG Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.8.1066.0 - AVG Technologies)
AVG Update Helper (HKLM-x32\...\{EDB7AEE7-E932-4836-AE50-D3B0B7766CB5}) (Version: 1.8.1582.3 - AVG Technologies)
BitComet 1.73 (HKLM-x32\...\BitComet_x64) (Version: 1.73 - CometNetwork)
calibre (HKLM-x32\...\{9613464B-ED03-4C3D-8334-E41264C36602}) (Version: 5.4.2 - Kovid Goyal)
CCleaner (HKLM\...\CCleaner) (Version: 6.21 - Piriform)
Compresor WinRAR (HKLM-x32\...\WinRAR archiver) (Version:  - )
Comprobación de estado de PC Windows (HKLM\...\{8B474A92-CE3A-4F46-B6F1-6DFA1390F826}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Comprobación de estado de PC Windows (HKLM\...\{D335124C-C378-488D-933F-1C5181C343F6}) (Version: 3.7.2204.15001 - Microsoft Corporation)
Configurador FNMT (HKLM-x32\...\ConfiguradorFnmt) (Version: 3.0.1 - FNMT-RCM)
CrystalDiskInfo 9.2.0 Aoi Edition (HKLM\...\CrystalDiskInfo_is1) (Version: 9.2.0 - Crystal Dew World)
Dokan Library 1.2.0.1000 (x64) (HKLM\...\{65A3A964-3DC3-0102-0000-180809151012}) (Version: 1.2.0.1000 - Dokany Project) Hidden
Dokan Library 1.2.0.1000 Bundle (HKLM-x32\...\{c2f619b0-68fd-4433-970e-cd66cd7a2775}) (Version: 1.2.0.1000 - Dokany Project)
EaseUS Data Recovery Wizard (HKLM\...\EaseUS Data Recovery Wizard_is1) (Version:  - EaseUS Data Recovery Wizard)
Eines de correcció del Microsoft Office 2013: català (HKLM-x32\...\{90150000-001F-0403-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
eMule (HKLM-x32\...\eMule) (Version:  - )
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Eraser 6.2.0.2986 (HKLM\...\{5227C9E1-58FC-45DE-880C-0E4C3559837D}) (Version: 6.2.2986 - The Eraser Project)
Estudio para la mejora del producto HP Deskjet 1510 series (HKLM\...\{71000761-BD38-48D3-8041-A445E260797F}) (Version: 32.2.188.47710 - Hewlett-Packard Co.)
Ferramentas de verificación de Microsoft Office 2013 - Galego (HKLM-x32\...\{90150000-001F-0456-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
ffdshow v1.3.4532 [2014-07-17] (HKLM-x32\...\ffdshow_is1) (Version: 1.3.4532.0 - )
Grammarly for Windows (HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\Grammarly Desktop Integrations) (Version: 1.2.62.1306 - Grammarly)
HP Deskjet 1510 series Ayuda (HKLM-x32\...\{6E20FBAA-BCB2-4429-A9A9-C8EED1254BE4}) (Version: 30.0.0 - Hewlett Packard)
HP Deskjet 1510 series Software básico del dispositivo (HKLM\...\{B610C583-FDD7-41B6-8CED-C668E51114AC}) (Version: 32.2.188.47710 - Hewlett-Packard Co.)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
Intel(R) Chipset Device Software (HKLM\...\{55398EAC-F58E-4F19-B553-BDF8B9EFD839}) (Version: 10.1.1.9 - Intel Corporation) Hidden
Java 8 Update 251 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180251F0}) (Version: 8.0.2510.8 - Oracle Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\Riot Game league_of_legends.live) (Version:  - Riot Games, Inc)
Malwarebytes version 4.6.8.311 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.6.8.311 - Malwarebytes)
Microsoft Access MUI (Spanish) 2013 (HKLM-x32\...\{90150000-0015-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Age of Empires II Trial Version (HKLM-x32\...\Age of Empires II Trial) (Version:  - )
Microsoft DCF MUI (Spanish) 2013 (HKLM-x32\...\{90150000-0090-0C0A-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 121.0.2277.112 - Microsoft Corporation)
Microsoft Excel MUI (Spanish) 2013 (HKLM-x32\...\{90150000-0016-0C0A-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Groove MUI (Spanish) 2013 (HKLM-x32\...\{90150000-00BA-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (Spanish) 2013 (HKLM-x32\...\{90150000-0044-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Lync MUI (Spanish) 2013 (HKLM-x32\...\{90150000-012B-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office 64-bit Components 2013 (HKLM\...\{90150000-002A-0000-1000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (Spanish) 2013 (HKLM-x32\...\{90150000-00E1-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (Spanish) 2013 (HKLM-x32\...\{90150000-00E2-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM-x32\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Proofing (Spanish) 2013 (HKLM-x32\...\{90150000-002C-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (HKLM-x32\...\{90150000-001F-0409-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - Español (HKLM-x32\...\{90150000-001F-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (Spanish) 2013 (HKLM\...\{90150000-002A-0C0A-1000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Spanish) 2013 (HKLM-x32\...\{90150000-006E-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office zuzenketa-tresnak 2013 - Euskara (HKLM-x32\...\{90150000-001F-042D-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\OneDriveSetup.exe) (Version: 23.226.1031.0003 - Microsoft Corporation)
Microsoft OneNote MUI (Spanish) 2013 (HKLM-x32\...\{90150000-00A1-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (Spanish) 2013 (HKLM-x32\...\{90150000-001A-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (Spanish) 2013 (HKLM-x32\...\{90150000-0018-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (Spanish) 2013 (HKLM-x32\...\{90150000-0019-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29334 (HKLM-x32\...\{a9cfe9c7-e54f-46cd-9c5c-542ff8e3e8c4}) (Version: 14.28.29334.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29334 (HKLM-x32\...\{b2d0f752-adc5-496e-8f70-8669de01f746}) (Version: 14.28.29334.0 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Additional Runtime - 14.28.29334 (HKLM\...\{2E11EF4E-901F-4B2D-B68E-3DB2A566C857}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.28.29334 (HKLM\...\{8A3F7D5B-422D-49D9-84F7-8DC1B7782967}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Additional Runtime - 14.28.29334 (HKLM-x32\...\{14C49FC8-3E9B-4F29-8526-26629B5CF30B}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.28.29334 (HKLM-x32\...\{0D01A812-82A1-481F-8546-8E28E976F8DF}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Word MUI (Spanish) 2013 (HKLM-x32\...\{90150000-001B-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
MiniTool Power Data Recovery 7.5 (HKLM\...\{E1BCD081-4BF4-4E2F-832A-911EC42EF3C5}_is1) (Version: 7.5 - MiniTool Solution Ltd.)
Mozilla Firefox (x64 es-ES) (HKLM\...\Mozilla Firefox 122.0.1 (x64 es-ES)) (Version: 122.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 73.0.1 - Mozilla)
MSI Live Update 6 (HKLM-x32\...\{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1) (Version: 6.2.0.67 - MSI)
MSI Super Charger (HKLM-x32\...\{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1) (Version: 1.2.029 - MSI)
MSIRegister (HKLM-x32\...\{80B995A4-3A86-4690-98A6-563F1A788835}_is1) (Version: 2.0.0.19 - MSI)
NirSoft Wireless Network Watcher (HKLM-x32\...\NirSoft Wireless Network Watcher) (Version:  - )
NoxPlayer (HKLM-x32\...\Nox) (Version: 7.0.5.6 - Duodian Technology Co. Ltd.)
NVIDIA Controlador de audio HD 1.3.38.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.35 - NVIDIA Corporation)
NVIDIA Controlador de la controladora 3D Vision 337.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 337.50 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.0 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{80407BA7-7763-4395-AB98-5233F1B34E65}) (Version: 9.13.1220 - NVIDIA Corporation) Hidden
NVIDIA Software del sistema PhysX 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
NVIDIA Virtual Audio 1.2.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver) (Version: 1.2.22 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 26.1.1 - OBS Project)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM-x32\...\{90150000-001F-040C-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Panda Devices Agent (HKLM-x32\...\{DB0164A2-ADE9-4FEE-B080-D506BDD6427F}) (Version: 1.08.09 - Panda Security) Hidden
Panda Devices Agent (HKLM-x32\...\Panda Devices Agent) (Version: 1.03.09 - Panda Security) Hidden
Panda Dome (HKLM\...\{7DD06CA9-7719-4AA5-B778-BF08A8C72C6A}) (Version: 12.12.20 - Panda Security) Hidden
Panda Dome (HKLM-x32\...\Panda Universal Agent Endpoint) (Version: 22.2.0 - Panda Security)
Paquete de controladores de Windows - Google, Inc. (WinUSB) AndroidUsbDeviceClass  (08/28/2014 11.0.0000.00000) (HKLM\...\092555911492C6959D2596D612F52DCA71881CA2) (Version: 08/28/2014 11.0.0000.00000 - Google, Inc.)
Paquete de idioma de Microsoft Visual Studio 2010 Tools para Office Runtime (x64) - ESN (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - ESN) (Version: 10.0.50903 - Microsoft Corporation)
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
RawTherapee versión 5.8 (HKLM\...\RawTherapee5.8_is1) (Version: 5.8 - rawtherapee.com)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.1.505.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7534 - Realtek Semiconductor Corp.)
Revisores de Texto do Microsoft Office 2013 – Português do Brasil (HKLM-x32\...\{90150000-001F-0416-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Revo Uninstaller 2.4.5 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.4.5 - VS Revo Group, Ltd.)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{7F6C4883-A18C-459A-82C1-A2F9403F2DA6}) (Version:  - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-0016-0C0A-0000-0000000FF1CE}_Office15.PROPLUS_{06F86A10-2C88-48BC-A9E9-78E9108FF1BD}) (Version:  - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-0090-0C0A-0000-0000000FF1CE}_Office15.PROPLUS_{06F86A10-2C88-48BC-A9E9-78E9108FF1BD}) (Version:  - Microsoft) Hidden
Software para dispositivos de chipset Intel® (HKLM-x32\...\{c7f54569-0018-439c-809a-48046a4d4ebc}) (Version: 10.1.1.9 - Intel(R) Corporation) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Tenorshare 4DDiG 9.9.1.6 (HKLM\...\{UltData - Windows}_is1) (Version: 9.9.1.6 - Tenorshare, Inc.)
Update for Windows 10 for x64-based Systems (KB4480730) (HKLM\...\{3BAE4496-6F6C-4330-A8AA-B93D3D346FA5}) (Version: 2.53.0.0 - Microsoft Corporation)
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{7B63012A-4AC6-40C6-B6AF-B24A84359DD5}) (Version: 8.93.0.0 - Microsoft Corporation)
UpdateAssistant (HKLM\...\{F339C545-24DC-4870-AA32-6EB6B0500B95}) (Version: 1.24.0.0 - Microsoft Corporation) Hidden
VGA Boost (HKLM-x32\...\{809ACFAE-9A4D-4C60-9223-D8B615CD8CBA}}_is1) (Version: 1.0.0.8 - MSI)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.18 - VideoLAN)
WebView2 Runtime de Microsoft Edge (HKLM-x32\...\Microsoft EdgeWebView) (Version: 121.0.2277.112 - Microsoft Corporation)
WhatsApp (Outdated) (HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\WhatsApp) (Version: 2.2326.10 - WhatsApp)
XnView MP (x64) (HKLM\...\XnView MP (x64)_is1) (Version: 1.6.2.0 - Pierre-e Gougelet)
XnViewMP 1.00.0 (HKLM\...\XnViewMP_is1) (Version: 1.00.0 - Gougelet Pierre-e)
Zoom (HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\ZoomUMX) (Version: 5.8.4 (1736) - Zoom Video Communications, Inc.)

Packages:
=========
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC [2024-02-03] ()
Complemento de motor del medio de Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2023-10-03] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2024-01-07] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2024-01-07] (Microsoft Corporation) [MS Ad]
Reader Notification Client -> C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r [2021-06-28] (Adobe Systems Incorporated)
Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.19.1262.0_x64__8wekyb3d8bbwe [2024-02-05] (Microsoft Studios) [MS Ad]

==================== Personalizado CLSID (Lista blanca): ==============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

CustomCLSID: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001_Classes\CLSID\{e5de0733-1ead-776d-2f1f-f2264dd7dc67}\localserver32 -> C:\Users\Enric\AppData\Local\Grammarly\DesktopIntegrations\Grammarly.Desktop.exe (Grammarly, Inc. -> Grammarly)
ContextMenuHandlers1: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => C:\Program Files\Eraser\Eraser.Shell.dll [2019-08-18] (Heidi Computers Ltd -> The Eraser Project)
ContextMenuHandlers1: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAShell.dll [2023-01-02] (Panda Security S.L. -> Panda Security, S.L.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext64.dll [2008-06-20] () [Archivo no firmado]
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext.dll [2008-09-16] () [Archivo no firmado]
ContextMenuHandlers2: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => C:\Program Files\Eraser\Eraser.Shell.dll [2019-08-18] (Heidi Computers Ltd -> The Eraser Project)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-06-07] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers4: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => C:\Program Files\Eraser\Eraser.Shell.dll [2019-08-18] (Heidi Computers Ltd -> The Eraser Project)
ContextMenuHandlers4: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext64.dll [2008-06-20] () [Archivo no firmado]
ContextMenuHandlers4-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext.dll [2008-09-16] () [Archivo no firmado]
ContextMenuHandlers5: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => C:\Program Files\Eraser\Eraser.Shell.dll [2019-08-18] (Heidi Computers Ltd -> The Eraser Project)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2020-10-01] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers5: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAShell.dll [2023-01-02] (Panda Security S.L. -> Panda Security, S.L.)
ContextMenuHandlers6: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => C:\Program Files\Eraser\Eraser.Shell.dll [2019-08-18] (Heidi Computers Ltd -> The Eraser Project)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-06-07] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers6: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAShell.dll [2023-01-02] (Panda Security S.L. -> Panda Security, S.L.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext64.dll [2008-06-20] () [Archivo no firmado]
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext.dll [2008-09-16] () [Archivo no firmado]

==================== Codecs (Lista blanca) ====================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [112640 2014-07-17] () [Archivo no firmado]

==================== Accesos directos & WMI ========================

(Las entradas pueden ser listadas para ser restauradas o eliminadas.)

Shortcut: C:\Users\Enric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\0 A.D. alpha\Open logs folder.lnk -> C:\Users\Enric\AppData\Local\0 A.D. alpha\OpenLogsFolder.bat ()

==================== Módulos cargados (Lista blanca) =============

2020-03-02 11:48 - 2005-07-18 13:43 - 000160256 _____ () [Archivo no firmado] C:\Program Files (x86)\MSI\Live Update\unrar.dll
2020-03-01 15:51 - 2008-06-20 00:41 - 000062464 _____ () [Archivo no firmado] C:\Program Files (x86)\WinRar\rarext64.dll
2023-12-04 14:29 - 2023-11-06 09:28 - 000021672 _____ (CHENGDU YIWO Tech Development Co., Ltd. -> ) [Archivo no firmado] C:\Program Files (x86)\EaseUS\ENS\fsclog.dll
2020-03-02 11:01 - 2014-03-28 06:21 - 001225920 ____R (NVIDIA CORPORATION -> NVIDIA Corporation) [Archivo no firmado] C:\WINDOWS\system32\nvspcap64.dll

==================== Alternate Data Streams (Lista blanca) ========

==================== Modo Seguro (Lista blanca) ==================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Asociación (Lista blanca) =================

==================== Internet Explorer (Lista blanca) ==========

HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie
SearchScopes: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001 -> DefaultScope {6A1806CD-94D4-4689 URL = 
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_251\bin\ssv.dll [2020-04-21] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_251\bin\jp2ssv.dll [2020-04-21] (Oracle America, Inc. -> Oracle Corporation)

(Si una entrada es incluida en el fixlist, será eliminada del registro.)

IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\0411dd.com -> 0411dd.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\0511zfhl.com -> 0511zfhl.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\0632qyw.com -> 0632qyw.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\1-2005-search.com -> www.1-2005-search.com

Hay 12755 más sitios.


==================== Hosts contenido: =========================

(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)

2015-07-10 12:04 - 2024-02-14 21:23 - 000000027 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1       localhost

==================== Otras Áreas ===========================

(Actualmente no existe una corrección automática para esta sección.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\System32\OpenSSH\;C:\Program Files (x86)\Calibre2\;C:\Program Files\AutoFirma\AutoFirma;C:\Users\Enric\AppData\Local\Microsoft\WindowsApps;C:\adb;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\Control Panel\Desktop\\Wallpaper -> 
DNS Servers: El medio no está conectado a internet.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Firewall de Windows está habilitado.

==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==

(Si una entrada es incluida en el fixlist, será eliminada.)

HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "Adobe Reader Speed Launcher"
HKLM\...\StartupApproved\Run32: => "Wondershare Helper Compact.exe"
HKLM\...\StartupApproved\Run32: => "HP Software Update"
HKLM\...\StartupApproved\Run32: => "Eraser"
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\StartupApproved\StartupFolder: => "Supervisar alertas de tinta - HP Deskjet 1510 series.lnk"
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\StartupApproved\StartupFolder: => "Enviar a OneNote.lnk"
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\StartupApproved\Run: => "Grammarly"

==================== Reglas de firewall (Lista blanca) ================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)


==================== Puntos de Restauración =========================

14-02-2024 20:51:54 Revo Uninstaller's restore point - Wondershare Helper Compact 2.5.3
14-02-2024 20:56:43 Revo Uninstaller's restore point - Wondershare UniConverter(Build 11.2.0.228)
14-02-2024 20:58:39 Revo Uninstaller's restore point - Tenorshare 4DDiG 9.9.1.6
14-02-2024 21:00:03 Revo Uninstaller's restore point - iin10g6_6BrRRRr0WWW5er version 3.1
14-02-2024 21:01:16 Revo Uninstaller's restore point - NoxPlayer
14-02-2024 21:02:30 Revo Uninstaller's restore point - Tenorshare 4DDiG 9.9.1.6
14-02-2024 21:34:13 Revo Uninstaller's restore point - Avast Update Helper
14-02-2024 21:38:58 Instalador de Módulos de Windows
14-02-2024 21:48:49 Instalador de Módulos de Windows
14-02-2024 21:49:33 Instalador de Módulos de Windows
14-02-2024 21:50:03 Instalador de Módulos de Windows
14-02-2024 22:59:59 Revo Uninstaller's restore point - Avast Update Helper
14-02-2024 23:01:07 Revo Uninstaller's restore point - Avast Update Helper
14-02-2024 23:01:57 Revo Uninstaller's restore point - AVG Update Helper
14-02-2024 23:02:42 Revo Uninstaller's restore point - AVG Update Helper

==================== Dispositivos defectuosos en el Administrador de dispositivos ============

Name: Mouse PS/2 de Microsoft
Description: Mouse PS/2 de Microsoft
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Teclado PS/2 estándar
Description: Teclado PS/2 estándar
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Teclados estándar)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Errores del registro de eventos: ========================

Errores de aplicación:
==================
Error: (02/14/2024 09:34:13 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Error del Servicio de instantáneas de volumen: error inesperado al consultar la interfaz IVssWriterCallback. HR = 0x80070005, Acceso denegado..A menudo ocurre por una configuración de seguridad incorrecta en el proceso de escritura o de solicitud.


Operación:
   Recopilando datos del escritor

Contexto:
   Id. de clase del escritor: {e8132975-6f93-4464-a53e-1050253ae220}
   Nombre del escritor: System Writer
   Id. de instancia del escritor: {68e17212-1128-4439-9a6a-7320a62f8de8}

Error: (02/14/2024 09:22:53 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Error del Servicio de instantáneas de volumen: error inesperado al llamar a la rutina QueryFullProcessImageNameW. HR = 0x8007001f, Uno de los dispositivos conectados al sistema no funciona..

Operación:
   Ejecutando operación asincrónica

Contexto:
   Estado actual: DoSnapshotSet

Error: (02/14/2024 09:22:41 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Error del Servicio de instantáneas de volumen: error inesperado al consultar la interfaz IVssWriterCallback. HR = 0x80070005, Acceso denegado..A menudo ocurre por una configuración de seguridad incorrecta en el proceso de escritura o de solicitud.


Operación:
   Recopilando datos del escritor

Contexto:
   Id. de clase del escritor: {e8132975-6f93-4464-a53e-1050253ae220}
   Nombre del escritor: System Writer
   Id. de instancia del escritor: {dbaedd24-a730-4ddd-b6da-bd1a53aede4c}

Error: (02/14/2024 08:51:54 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Error del Servicio de instantáneas de volumen: error inesperado al consultar la interfaz IVssWriterCallback. HR = 0x80070005, Acceso denegado..A menudo ocurre por una configuración de seguridad incorrecta en el proceso de escritura o de solicitud.


Operación:
   Recopilando datos del escritor

Contexto:
   Id. de clase del escritor: {e8132975-6f93-4464-a53e-1050253ae220}
   Nombre del escritor: System Writer
   Id. de instancia del escritor: {0f021816-2eee-4b6c-8ac5-fd9a249cf5a6}

Error: (02/13/2024 01:34:32 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: dwm.exe, versión: 10.0.19041.3636, marca de tiempo: 0x6e55ef4a
Nombre del módulo con errores: KERNELBASE.dll, versión: 10.0.19041.3758, marca de tiempo: 0xd80f8f12
Código de excepción: 0xc00001ad
Desplazamiento de errores: 0x000000000012db22
Identificador del proceso con errores: 0x5d8
Hora de inicio de la aplicación con errores: 0x01da5de52988a5a3
Ruta de acceso de la aplicación con errores: C:\WINDOWS\system32\dwm.exe
Ruta de acceso del módulo con errores: C:\WINDOWS\System32\KERNELBASE.dll
Identificador del informe: cbcc4c44-5e09-4b50-af1c-4769b7143af9
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:

Error: (02/12/2024 03:36:39 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: dwm.exe, versión: 10.0.19041.3636, marca de tiempo: 0x6e55ef4a
Nombre del módulo con errores: KERNELBASE.dll, versión: 10.0.19041.3758, marca de tiempo: 0xd80f8f12
Código de excepción: 0xc00001ad
Desplazamiento de errores: 0x000000000012db22
Identificador del proceso con errores: 0x3a24
Hora de inicio de la aplicación con errores: 0x01da5d595c94f098
Ruta de acceso de la aplicación con errores: C:\WINDOWS\System32\dwm.exe
Ruta de acceso del módulo con errores: C:\WINDOWS\System32\KERNELBASE.dll
Identificador del informe: b605b76b-9b67-49dc-be74-5aae026dbd35
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:

Error: (02/12/2024 03:15:30 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: dwm.exe, versión: 10.0.19041.3636, marca de tiempo: 0x6e55ef4a
Nombre del módulo con errores: KERNELBASE.dll, versión: 10.0.19041.3758, marca de tiempo: 0xd80f8f12
Código de excepción: 0xc00001ad
Desplazamiento de errores: 0x000000000012db22
Identificador del proceso con errores: 0xb28
Hora de inicio de la aplicación con errores: 0x01da5d5921c1c416
Ruta de acceso de la aplicación con errores: C:\WINDOWS\System32\dwm.exe
Ruta de acceso del módulo con errores: C:\WINDOWS\System32\KERNELBASE.dll
Identificador del informe: c1f4d3e9-5b40-4983-8e29-b3860840a870
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:

Error: (02/12/2024 03:13:51 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: dwm.exe, versión: 10.0.19041.3636, marca de tiempo: 0x6e55ef4a
Nombre del módulo con errores: KERNELBASE.dll, versión: 10.0.19041.3758, marca de tiempo: 0xd80f8f12
Código de excepción: 0xc00001ad
Desplazamiento de errores: 0x000000000012db22
Identificador del proceso con errores: 0x1470
Hora de inicio de la aplicación con errores: 0x01da5c9c196db56f
Ruta de acceso de la aplicación con errores: C:\WINDOWS\System32\dwm.exe
Ruta de acceso del módulo con errores: C:\WINDOWS\System32\KERNELBASE.dll
Identificador del informe: d45b9ef8-e4e2-4c0b-8a5b-f57aa829a8c6
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:


Errores del sistema:
=============
Error: (02/14/2024 09:22:52 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: El servicio Windows Search terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 30000 milisegundos: Reiniciar el servicio.

Error: (02/14/2024 09:22:52 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio NVIDIA Streamer Service se terminó de manera inesperada. Esto ha sucedido 1 veces.

Error: (02/14/2024 09:22:52 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio NVIDIA Network Service se terminó de manera inesperada. Esto ha sucedido 1 veces.

Error: (02/14/2024 09:22:52 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: El servicio Panda Devices Agent terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 300000 milisegundos: Reiniciar el servicio.

Error: (02/14/2024 09:22:52 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio MSI Live Update Service se terminó de manera inesperada. Esto ha sucedido 1 veces.

Error: (02/14/2024 09:22:52 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio MSIREGISTER_MR se terminó de manera inesperada. Esto ha sucedido 1 veces.

Error: (02/14/2024 09:22:52 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio MSI_Trigger_Service se terminó de manera inesperada. Esto ha sucedido 1 veces.

Error: (02/14/2024 09:22:52 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio MSI_SuperCharger se terminó de manera inesperada. Esto ha sucedido 1 veces.


CodeIntegrity:
===============
Date: 2024-02-10 15:44:43
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume1\Windows\System32\dokannp1.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2024-02-10 15:29:05
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\AVG\Antivirus\AVGSvc.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2024-02-10 15:29:03
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\AVG\Antivirus\aswAMSI.dll that did not meet the Windows signing level requirements.


==================== Información de la memoria =========================== 

BIOS: American Megatrends Inc. V1.6 03/30/2015
Placa base: MSI H81-P33(MS-7820)
Procesador: Intel(R) Core(TM) i5-4590 CPU @ 3.30GHz
Porcentaje de memoria en uso: 63%
RAM física total: 8134.59 MB
RAM física disponible: 2988.83 MB
Virtual total: 8646.59 MB
Virtual disponible: 2189.54 MB

==================== Unidades ================================

Drive c: (El meu W10) (Fixed) (Total:223.01 GB) (Free:55.73 GB) (Model: KINGSTON SA400S37240G) NTFS
Drive d: () (Fixed) (Total:465.76 GB) (Free:180.43 GB) (Model: ST3500418AS) NTFS
Drive f: () (Fixed) (Total:223.47 GB) (Free:74.91 GB) (Model: CT240BX200SSD1) NTFS

\\?\Volume{4f92d0fb-0000-0000-0000-100000000000}\ (Reservado para el sistema) (Fixed) (Total:0.1 GB) (Free:0.05 GB) NTFS
\\?\Volume{990e0a73-0000-0000-0000-b0c037000000}\ () (Fixed) (Total:0.56 GB) (Free:0.08 GB) NTFS

==================== MBR & Tabla de particiones ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: 990E0A73)
Partition 1: (Not Active) - (Size=223 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=571 MB) - (Type=27)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: 4F92D0FB)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=223.5 GB) - (Type=07 NTFS)

==========================================================
Disk: 2 (Size: 465.8 GB) (Disk ID: 32743273)
Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS)

==================== Final de Addition.txt =======================

Hola Daniel He reiniciado la maquina Aparece CCleaner y dicce que si deseo hacer cambios, le digo SI pero no se ejecuta Entonces lo hago yo manualmente: Limpieza Personalizada y Registro Aparecen varias entradas y las elimino y copia de seguriad en 3 ocsasiones Luego paso a ver si me deja desintalar esos 3 programas que comentas

Avast Update Helper
AVG Update Helper
AVG Update Helper

MIlagro, se eliminaron, al contrario que con RevoUnistaller que no lo permitía Ahora mismo CCleaner no encuentra nada,aparece limpio Vamos a ver como funciona Saludos, Verntallat

1 me gusta

Hola nuevamente

Perfecto pero vamos a asegurarnos.

Realizas lo siguiente

:one: Ahora debes de hacer una COPIA DE SEGURIDAD DEL REGISTRO, para ello:

  • Reinicias el ordenador en Modo Normal.
  • Descargas DelFix en tu escritorio.
  • Doble clic para ejecutarlo. (Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona - Ejecutar como Administrador)
  • Marcas solamente la casilla de Create registry backup, el resto te aseguras de que no estén seleccionadas.
  • Presionas en Run.

Se abrirá el informe (DelFix.txt), puedes cerrarlo. Pero lo guardas por si en el futuro te lo pido/hace falta.

Seguidamente, CIERRAS TODOS LOS PROGRAMAS, vas a Inicio >> Ejecutar y escribes Notepad.exe

  • Ahora debes copiar y pegar los códigos/líneas que están en el interior del recuadro de más abajo, dentro del Notepad.
Start
SystemRestore: On
CreateRestorePoint:
CloseProcesses:

File: C:\Users\Enric\AppData\Local\0 A.D. alpha\OpenLogsFolder.bat
VirusTotal: C:\Users\Enric\AppData\Local\0 A.D. alpha\OpenLogsFolder.bat


C:\Users\Enric\AppData\Roaming\9b0aae6e20904a9c86de8031ccb522af.exe

(AVG Technologies USA, LLC -> AVG Technologies) C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\Run: [AVGBrowserAutoLaunch_D7C3CD873F94276E52437C1FEEEEFB74] => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [3118408 2024-02-07] (AVG Technologies USA, LLC -> AVG Technologies)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{48F69C39-1356-4A7B-A899-70E3539D4982}] -> C:\Program Files (x86)\AVG\Browser\Application\121.0.23861.160\Installer\chrmstp.exe [2024-02-14] (AVG Technologies USA, LLC -> AVG Technologies)

Task: {B1079D86-33EF-4C3E-AFBE-451433420311} - System32\Tasks\AVG Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [3118408 2024-02-07] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {4153C27B-456B-4757-ADE0-595595A315F3} - System32\Tasks\AVG Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [3118408 2024-02-07] (AVG Technologies USA, LLC -> AVG Technologies)

FF Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\96zysp8q.default\Extensions\[email protected] [2020-05-01]
C:\Users\Enric\AppData\Roaming\Mozilla\Firefox\Profiles\96zysp8q.default\Extensions\[email protected]
FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=3 -> C:\Program Files (x86)\AVG\Browser\Update\1.8.1582.3\npAvgBrowserUpdate3.dll [Ningún archivo]
C:\Program Files (x86)\AVG\Browser\Update\1.8.1582.3\npAvgBrowserUpdate3.dll
FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=9 -> C:\Program Files (x86)\AVG\Browser\Update\1.8.1582.3\npAvgBrowserUpdate3.dll [Ningún archivo]
C:\Program Files (x86)\AVG\Browser\Update\1.8.1582.3\npAvgBrowserUpdate3.dll

S2 avg; C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [209224 2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies)
S3 avgm; C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [209224 2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies)
S3 AVGSecureBrowserElevationService; C:\Program Files (x86)\AVG\Browser\Application\121.0.23861.160\elevation_service.exe [1832256 2024-02-07] (AVG Technologies USA, LLC -> AVG Technologies)
S3 WsDrvInst; "C:\Program Files (x86)\Wondershare\UniConverter\Transfer\DriverInstall.exe" [X]

C:\Program Files (x86)\Wondershare\UniConverter\Transfer\DriverInstall.exe

C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe
C:\Program Files (x86)\AVG\Browser\Application\121.0.23861.160\elevation_service.exe
C:\Program Files (x86)\AVG
2024-02-10 15:33 - 2024-02-10 15:33 - 000000000 ____D C:\Program Files\Common Files\AVG
2024-02-10 15:29 - 2024-02-10 15:31 - 000000000 ____D C:\Users\Enric\AppData\Roaming\AVG
2024-02-10 15:38 - 2024-02-10 15:38 - 000000000 ____D C:\Program Files\Common Files\Avast Software
2024-02-14 20:57 - 2021-03-06 20:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
2024-02-14 20:57 - 2021-03-06 20:31 - 000000000 ____D C:\Program Files (x86)\Wondershare
2024-02-14 19:43 - 2021-06-01 19:07 - 000002383 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Secure Browser.lnk
2024-02-10 15:39 - 2020-05-01 19:31 - 000000000 ____D C:\ProgramData\Avast Software
2024-02-10 15:33 - 2020-07-06 22:10 - 000000000 ____D C:\ProgramData\AVG
2024-02-10 15:31 - 2020-07-08 19:21 - 000000000 ____D C:\Users\Enric\AppData\Local\Avg
2024-02-02 16:45 - 2021-12-12 13:52 - 000001437 _____ C:\Users\Enric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Grammarly.lnk
2024-02-02 16:45 - 2021-12-12 13:52 - 000001429 _____ C:\Users\Enric\Desktop\Grammarly.lnk
2024-02-02 16:45 - 2021-12-12 13:52 - 000000000 ____D C:\Users\Enric\AppData\Local\Grammarly

AS: Avast Antivirus (Enabled - Up to date) {5078598A-1FA2-C888-AA5F-A9C66537DB12}
AV: Spybot - Search and Destroy (Disabled - Out of date) {F77C7796-45C4-531E-0DAE-B4A8229B11C8}

CustomCLSID: HKU\S-1-5-21-3797396260-1262768339-3265785487-1001_Classes\CLSID\{e5de0733-1ead-776d-2f1f-f2264dd7dc67}\localserver32 -> C:\Users\Enric\AppData\Local\Grammarly\DesktopIntegrations\Grammarly.Desktop.exe (Grammarly, Inc. -> Grammarly)

HKLM\...\StartupApproved\Run32: => "Wondershare Helper Compact.exe"
HKU\S-1-5-21-3797396260-1262768339-3265785487-1001\...\StartupApproved\Run: => "Grammarly"

CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:

End

Lo guardas con el nombre de FIXLIST.TXT en tu escritorio (MUY IMPORTANTE). Pues en caso contrario no funcionará el SCRIPT, ambos ficheros (FRST.exe y FIXLIST.TXT ) y deben de estar en la ubicación del ESCRITORIO.

:warning: El anterior Script de reparación es personalizado para la máquina en concreto para la cual se fabricó y está hecho específicamente por un miembro del Staff. Si se tiene un problema parecido, por favor abra su propio tema para recibir ayuda personalizada y específica. Utilizar Scripts de otros Sistemas puede causar daños graves en su ordenador.

Finalmente (OJO, en MODO NORMAL):

  1. Ejecutas nuevamente FRST.exe (Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona - Ejecutar como Administrador).
  2. Presionas sobre Fix/Corregir y esperas a que finalice el proceso. No hagas nada con el PC mientras este realizando dichas reparaciones, incluso si parece ser que se ha quedado colgado. No lo toques y esperas.
  3. Cunado finalice, en el ESCRITORIO se creará el fichero FIXLOG.TXT lo traes en tu próxima respuesta.
  4. Reinicias el ordenador en Modo Normal compruebas durante un rato el funcionamiento de este y comentas como sigue el problema inicialmente planteado.

:warning: Muy Importante :warning: Coloca el reporte que te he pedido como se muestra en la siguiente imagen:

Hola Daniel Pues he abierto varias paginas a la vez, quizás 15…mas? Tras una media hora así navegando de aquí para allá… Se puso la pantalla en negro por unos instantes, 10" +/- y luego apareció el escritorio y abajo en la barra de herramientas estaban las paginas, clic y siguen ahí No creo que deba molestar mas , parece que va mejor Yo agradezco todo lo que habéis/has hecho y lo dejaría aquí Si veo que la cosa se complica, pues siempre puedo volver a comentarlo con vosotros Agradecido, Verntallat

1 me gusta

Hola @Verntallat

Realizaste el proceso de mi mensaje anterior?

Saludos