````==================== Alternate Data Streams (Lista blanca) ========
(Si una entrada es incluida en el fixlist, solamente los ADS serán eliminados.)
AlternateDataStreams: C:\ProgramData\Temp:5C321E34 [240]AlternateDataStreams: C:\Users\anaca\Downloads\camtasia(1).exe:MBAM.Zone.Identifier [143]AlternateDataStreams: C:\Users\anaca\Downloads\HandBrake-1.7.3-x86_64-Win_GUI.exe:MBAM.Zone.Identifier [601]AlternateDataStreams: C:\Users\anaca\Downloads\lighteditor-setup-saas-converter.exe:MBAM.Zone.Identifier [202]AlternateDataStreams: C:\Users\anaca\Downloads\NeroWaveEditor.exe:MBAM.Zone.Identifier [188]AlternateDataStreams: C:\Users\anaca\Downloads\OperaGXSetup.exe:MBAM.Zone.Identifier [258]AlternateDataStreams: C:\Users\anaca\Downloads\uniconverter15_setup_full14241.exe:MBAM.Zone.Identifier [196]
==================== Modo Seguro (Lista blanca) ==================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Asociación (Lista blanca) =================
==================== Internet Explorer (Lista blanca) =============
HKU\S-1-5-21-3493958998-3806918064-365168309-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.es/SearchScopes: HKU\S-1-5-21-3493958998-3806918064-365168309-1001 -> DefaultScope {07F2ACC0-D86A-4EF4-898E-47450BDB6B08} URL =SearchScopes: HKU\S-1-5-21-3493958998-3806918064-365168309-1001 -> {07F2ACC0-D86A-4EF4-898E-47450BDB6B08} URL =BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2020-03-06] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2020-03-06] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2021-05-28] (Microsoft Corporation -> Microsoft Corporation)BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2020-03-06] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2020-03-06] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2020-03-06] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2020-03-06] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)DPF: HKLM-x32 {3195CF7C-E9E2-49B2-8B61-14F285298E1C} hxxps://ssl.cadiz.es/wa/AccessClientLoader.cabDPF: HKLM-x32 {E06E2E99-0AA1-11D4-ABA6-0060082AA75C}Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-05-28] (Microsoft Corporation -> Microsoft Corporation)Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-05-28] (Microsoft Corporation -> Microsoft Corporation)Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-05-28] (Microsoft Corporation -> Microsoft Corporation)Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-05-28] (Microsoft Corporation -> Microsoft Corporation)Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-05-28] (Microsoft Corporation -> Microsoft Corporation)Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-05-28] (Microsoft Corporation -> Microsoft Corporation)Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-05-28] (Microsoft Corporation -> Microsoft Corporation)Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-05-28] (Microsoft Corporation -> Microsoft Corporation)Filter-x32: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-05-17] (Citrix Systems, Inc. -> Citrix Systems, Inc.)Filter-x32: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-05-17] (Citrix Systems, Inc. -> Citrix Systems, Inc.)Filter-x32: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-05-17] (Citrix Systems, Inc. -> Citrix Systems, Inc.)Filter-x32: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-05-17] (Citrix Systems, Inc. -> Citrix Systems, Inc.)Filter-x32: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-05-17] (Citrix Systems, Inc. -> Citrix Systems, Inc.)Filter-x32: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-05-17] (Citrix Systems, Inc. -> Citrix Systems, Inc.)Filter-x32: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-05-17] (Citrix Systems, Inc. -> Citrix Systems, Inc.)Filter-x32: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-05-17] (Citrix Systems, Inc. -> Citrix Systems, Inc.)Filter-x32: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-05-17] (Citrix Systems, Inc. -> Citrix Systems, Inc.)Filter-x32: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-05-17] (Citrix Systems, Inc. -> Citrix Systems, Inc.)Filter-x32: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-05-17] (Citrix Systems, Inc. -> Citrix Systems, Inc.)Filter-x32: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-05-17] (Citrix Systems, Inc. -> Citrix Systems, Inc.)Filter-x32: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-05-17] (Citrix Systems, Inc. -> Citrix Systems, Inc.)Filter-x32: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-05-17] (Citrix Systems, Inc. -> Citrix Systems, Inc.)Filter-x32: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-05-17] (Citrix Systems, Inc. -> Citrix Systems, Inc.)Filter-x32: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-05-17] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
(Si una entrada es incluida en el fixlist, será eliminada del registro.)
IE restricted site: HKU.DEFAULT...\007guard.com -> install.007guard.comIE restricted site: HKU.DEFAULT...\008i.com -> 008i.comIE restricted site: HKU.DEFAULT...\008k.com -> www.008k.comIE restricted site: HKU.DEFAULT...\00hq.com -> www.00hq.comIE restricted site: HKU.DEFAULT...\010402.com -> 010402.comIE restricted site: HKU.DEFAULT...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.comIE restricted site: HKU.DEFAULT...\0scan.com -> www.0scan.comIE restricted site: HKU.DEFAULT...\1-2005-search.com -> www.1-2005-search.comIE restricted site: HKU.DEFAULT...\1-domains-registrations.com -> www.1-domains-registrations.comIE restricted site: HKU.DEFAULT...\1000gratisproben.com -> www.1000gratisproben.comIE restricted site: HKU.DEFAULT...\1001namen.com -> www.1001namen.comIE restricted site: HKU.DEFAULT...\100888290cs.com -> mir.100888290cs.comIE restricted site: HKU.DEFAULT...\100sexlinks.com -> www.100sexlinks.comIE restricted site: HKU.DEFAULT...\10sek.com -> www.10sek.comIE restricted site: HKU.DEFAULT...\12-26.net -> user1.12-26.netIE restricted site: HKU.DEFAULT...\12-27.net -> user1.12-27.netIE restricted site: HKU.DEFAULT...\123fporn.info -> www.123fporn.infoIE restricted site: HKU.DEFAULT...\123haustiereundmehr.com -> www.123haustiereundmehr.comIE restricted site: HKU.DEFAULT...\123moviedownload.com -> www.123moviedownload.comIE restricted site: HKU.DEFAULT...\123simsen.com -> www.123simsen.com
Hay 7942 más sitios.
IE trusted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\localhost -> localhostIE restricted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\007guard.com -> install.007guard.comIE restricted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\008i.com -> 008i.comIE restricted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\008k.com -> www.008k.comIE restricted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\00hq.com -> www.00hq.comIE restricted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\010402.com -> 010402.comIE restricted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.comIE restricted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\0scan.com -> www.0scan.comIE restricted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\1-2005-search.com -> www.1-2005-search.comIE restricted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\1-domains-registrations.com -> www.1-domains-registrations.comIE restricted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\1000gratisproben.com -> www.1000gratisproben.comIE restricted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\1001namen.com -> www.1001namen.comIE restricted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\100888290cs.com -> mir.100888290cs.comIE restricted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\100sexlinks.com -> www.100sexlinks.comIE restricted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\10sek.com -> www.10sek.comIE restricted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\12-26.net -> user1.12-26.netIE restricted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\12-27.net -> user1.12-27.netIE restricted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\123fporn.info -> www.123fporn.infoIE restricted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\123haustiereundmehr.com -> www.123haustiereundmehr.comIE restricted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\123moviedownload.com -> www.123moviedownload.comIE restricted site: HKU\S-1-5-21-3493958998-3806918064-365168309-1001...\123simsen.com -> www.123simsen.com
Hay 7942 más sitios.
==================== Hosts contenido: =========================
(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)
2019-03-19 06:49 - 2026-06-30 17:27 - 000454770 ____R C:\WINDOWS\system32\drivers\etc\hosts127.0.0.1 localhost127.0.0.1 www.007guard.com127.0.0.1 007guard.com127.0.0.1 008i.com127.0.0.1 www.008k.com127.0.0.1 008k.com127.0.0.1 www.00hq.com127.0.0.1 00hq.com127.0.0.1 010402.com127.0.0.1 www.032439.com127.0.0.1 032439.com127.0.0.1 www.0scan.com127.0.0.1 0scan.com127.0.0.1 1000gratisproben.com127.0.0.1 www.1000gratisproben.com127.0.0.1 1001namen.com127.0.0.1 www.1001namen.com127.0.0.1 100888290cs.com127.0.0.1 www.100888290cs.com127.0.0.1 www.100sexlinks.com127.0.0.1 100sexlinks.com127.0.0.1 10sek.com127.0.0.1 www.10sek.com127.0.0.1 www.1-2005-search.com127.0.0.1 1-2005-search.com127.0.0.1 123fporn.info127.0.0.1 www.123fporn.info127.0.0.1 www.123haustiereundmehr.com127.0.0.1 123haustiereundmehr.com127.0.0.1 123moviedownload.com
Hay 15609 más lineas.
==================== Network ===========================
(Actualmente no existe una corrección automática para esta sección.)
DNS Servers: 212.166.211.23 - 212.166.132.104Firewall de Windows está habilitado.
Network Binding:
Wi-Fi: Qualcomm Atheros QCA9377 Wireless Network Adapter -> Qcamain10x64.sysEthernet: Realtek PCIe GbE Family Controller -> rt640x64.sysEthernet 2: Check Point Virtual Network Adapter For Endpoint VPN Client -> vnaap.sys
==================== Otras Áreas ===========================
(Actualmente no existe una corrección automática para esta sección.)
HKU\S-1-5-21-3493958998-3806918064-365168309-1001\Control Panel\Desktop\Wallpaper ->HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: )HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)HKU\S-1-5-21-3493958998-3806918064-365168309-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\AppHost => (EnableWebContentEvaluation: 0)HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 5) (TamperProtectionSource: )HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Users\anaca\AppData\Local\Temp\AweZip\Temp1\AweZip0\KMSAuto x64 dv.exeHKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Users\anaca\AppData\Local\Temp\AweZip\Temp1\AweZip0\KMSAuto_FilesHKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\System32\SppExtComObjPatcher.exeHKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\System32\SppExtComObjHook.dllHKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Users\anaca\AppData\Local\Temp\AweZip\Temp1\AweZip4\KMSAuto x64 dv.exeHKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Users\anaca\AppData\Local\Temp\AweZip\Temp1\AweZip4\KMSAuto_Files
==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==
==================== Reglas de firewall (Lista blanca) ================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
FirewallRules: [{523370B6-9A9F-4F59-AD4A-8B3B49496D67}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)FirewallRules: [{A12FA829-E41E-4DD2-A587-585A7C70F2EE}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)FirewallRules: [{EC13C52A-107E-42BE-A4D7-456D950DB577}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24151.2105.2943.2101_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)FirewallRules: [{BFF92D30-015A-43BC-8F21-A0F59E977A4F}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24151.2105.2943.2101_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)FirewallRules: [UDP Query User{B7E21023-FA85-4998-A8A5-D650EE294249}C:\program files\autofirmaja\autofirmaja\jre\bin\javaw.exe] => (Allow) C:\program files\autofirmaja\autofirmaja\jre\bin\javaw.exeFirewallRules: [TCP Query User{6D8C09CD-A988-46B9-90A3-FFF670E75EC7}C:\program files\autofirmaja\autofirmaja\jre\bin\javaw.exe] => (Allow) C:\program files\autofirmaja\autofirmaja\jre\bin\javaw.exeFirewallRules: [{1ECC1BC9-17B1-4E56-B97A-DFE8110D96E5}] => (Allow) C:\Program Files (x86)\Apowersoft\RecCloud LightEditor\RecCloud LightEditor.exe (Apowersoft Ltd -> Apowersoft)FirewallRules: [{3BEA9F86-7ACD-4748-831B-B4B6F6B3F432}] => (Allow) C:\Program Files (x86)\Apowersoft\RecCloud LightEditor\RecCloud LightEditor.exe (Apowersoft Ltd -> Apowersoft)FirewallRules: [{A216E762-F806-44D1-8AE6-A6B20E8EC28F}] => (Allow) C:\Users\anaca\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe => Ningún archivoFirewallRules: [UDP Query User{ED43E001-7571-43C5-9D6D-9D1E454D8E93}C:\users\anaca\desktop\sammywidgets_v1.1\sammywidgets.exe] => (Allow) C:\users\anaca\desktop\sammywidgets_v1.1\sammywidgets.exe => Ningún archivoFirewallRules: [TCP Query User{05745102-4000-4A83-B654-5465053E35E2}C:\users\anaca\desktop\sammywidgets_v1.1\sammywidgets.exe] => (Allow) C:\users\anaca\desktop\sammywidgets_v1.1\sammywidgets.exe => Ningún archivoFirewallRules: [UDP Query User{CE1F7F4E-C8A7-4C6B-9A5A-70ABADCD9003}C:\users\anaca\desktop\tv\miniserver.exe] => (Allow) C:\users\anaca\desktop\tv\miniserver.exe => Ningún archivoFirewallRules: [TCP Query User{487A9C2A-DBE5-493A-8E7A-28840A714D5E}C:\users\anaca\desktop\tv\miniserver.exe] => (Allow) C:\users\anaca\desktop\tv\miniserver.exe => Ningún archivoFirewallRules: [UDP Query User{583EF1E7-7742-43ED-BA14-6D7085EC4472}C:\program files\autofirmaja\autofirmaja\jre\bin\javaw.exe] => (Allow) C:\program files\autofirmaja\autofirmaja\jre\bin\javaw.exeFirewallRules: [TCP Query User{6CF028D4-65B1-4726-944D-5947A1FC97A5}C:\program files\autofirmaja\autofirmaja\jre\bin\javaw.exe] => (Allow) C:\program files\autofirmaja\autofirmaja\jre\bin\javaw.exeFirewallRules: [{86C608EF-EC46-472E-9792-B1498B32EDD8}] => (Allow) C:\Users\anaca\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Limited)FirewallRules: [{4046493B-65B2-48AF-B71C-8B6AE85F39C0}] => (Allow) C:\Users\anaca\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Limited)FirewallRules: [CN.wAQdN188] => (Allow) C:\Users\anaca\AppData\Local\Google\Chrome\User Data\Windows Driver Foundation (WDF).exe => Ningún archivoFirewallRules: [TCP Query User{EAC89EDB-0D08-41D2-8000-390C314586A4}C:\program files (x86)\emule\emule.exe] => (Block) C:\program files (x86)\emule\emule.exe (hxxp://www.emule-project.net) [Archivo no firmado]FirewallRules: [UDP Query User{4A0A4B21-FEAE-4962-A8B5-D794CAA3D6BD}C:\program files (x86)\emule\emule.exe] => (Block) C:\program files (x86)\emule\emule.exe (hxxp://www.emule-project.net) [Archivo no firmado]FirewallRules: [TCP Query User{F09C7FC7-4F24-4A24-8A24-611DC3A18C5B}C:\program files (x86) (x86)\lexmark 3500-4500 series\lxdiamon.exe] => (Block) C:\program files (x86) (x86)\lexmark 3500-4500 series\lxdiamon.exe (Lexmark International, Inc. -> )FirewallRules: [UDP Query User{CCEF247A-921A-4E93-8D88-2F1AE3D4506C}C:\program files (x86) (x86)\lexmark 3500-4500 series\lxdiamon.exe] => (Block) C:\program files (x86) (x86)\lexmark 3500-4500 series\lxdiamon.exe (Lexmark International, Inc. -> )FirewallRules: [TCP Query User{C7C27A7F-6765-4BAB-9DF2-F22D1768BD93}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe (hxxp://www.emule-project.net) [Archivo no firmado]FirewallRules: [UDP Query User{8EEDC186-BD2A-4249-97C1-A1DD2131FDF6}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe (hxxp://www.emule-project.net) [Archivo no firmado]FirewallRules: [TCP Query User{81CDD293-7683-4FB1-8B10-52BFC0B1F6A3}C:\program files (x86) (x86)\lexmark 3500-4500 series\lxdiamon.exe] => (Block) C:\program files (x86) (x86)\lexmark 3500-4500 series\lxdiamon.exe (Lexmark International, Inc. -> )FirewallRules: [UDP Query User{5DD61737-A0FA-4B01-8FFA-2D75022E660B}C:\program files (x86) (x86)\lexmark 3500-4500 series\lxdiamon.exe] => (Block) C:\program files (x86) (x86)\lexmark 3500-4500 series\lxdiamon.exe (Lexmark International, Inc. -> )FirewallRules: [TCP Query User{F79F9D17-F95A-4118-BC00-DBC1D33D0587}C:\program files\autofirma\autofirma\jre\bin\javaw.exe] => (Allow) C:\program files\autofirma\autofirma\jre\bin\javaw.exeFirewallRules: [UDP Query User{4EBFEB2B-4460-49F0-A414-EF18C1A13A1B}C:\program files\autofirma\autofirma\jre\bin\javaw.exe] => (Allow) C:\program files\autofirma\autofirma\jre\bin\javaw.exeFirewallRules: [{5437614F-25E8-4495-95F9-A0D88C71CDF0}] => (Allow) LPort=12972FirewallRules: [{3759D230-D5E8-4745-87D0-A454B9A72281}] => (Allow) C:\Program Files (x86)\Audials\MusicRecorder 2022\Audials.exe (Audials AG -> Audials AG)FirewallRules: [{FD057789-BFEE-4906-8505-41B0004ADE4F}] => (Allow) LPort=14714FirewallRules: [{8E100505-59BC-48AE-B538-F96528131C64}] => (Allow) LPort=31931FirewallRules: [{DAEEC7F9-0B50-4170-86C0-EAC6A583D6C9}] => (Allow) LPort=5354FirewallRules: [{3CC9F194-9F55-434C-852A-BB1171237D67}] => (Allow) LPort=5354FirewallRules: [{1A45281D-5815-4160-982B-6DD2F9FDCB76}] => (Allow) LPort=5354FirewallRules: [{E7AB9C4B-6592-477E-A388-9B24B53422A1}] => (Allow) LPort=5354FirewallRules: [{006A6B7A-4FFC-4FB8-8FDC-ED57E1F5934C}] => (Allow) LPort=24522FirewallRules: [{A8B58DAE-C684-4F50-9D4E-CA1502F4EA22}] => (Allow) LPort=14672FirewallRules: [TCP Query User{2EF75737-0576-4C2C-8DDD-B4359BB7B188}C:\program files\configuradorfnmt\configuradorfnmt\jre\bin\javaw.exe] => (Allow) C:\program files\configuradorfnmt\configuradorfnmt\jre\bin\javaw.exeFirewallRules: [UDP Query User{A83DE0CB-62CC-4A31-9105-5E794B189C35}C:\program files\configuradorfnmt\configuradorfnmt\jre\bin\javaw.exe] => (Allow) C:\program files\configuradorfnmt\configuradorfnmt\jre\bin\javaw.exeFirewallRules: [{7CFA8F36-D713-4257-B1D1-ED5496576F36}] => (Allow) C:\Program Files (x86)\Nero\Nero Common\Nero Launcher\NeroLauncher.exe (Nero AG -> Nero AG)FirewallRules: [EdgeWebView2-MDNS-In-UDP] => (Allow) C:\WINDOWS\system32\Microsoft-Edge-WebView\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)FirewallRules: [{021FC459-F658-4AE6-BE02-FDE854C34F7A}] => (Allow) C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.133.0_x64__2p2nqsd0c76g0\app\ChatGPT.exe (50BDFD77-8903-4850-9FFE-6E8522F64D5B -> OpenAI)FirewallRules: [{0DA12AB9-A539-4956-A1B1-6362941789C9}] => (Allow) C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.133.0_x64__2p2nqsd0c76g0\app\ChatGPT.exe (50BDFD77-8903-4850-9FFE-6E8522F64D5B -> OpenAI)FirewallRules: [{C0F1203C-0D77-4C20-BEFB-1386F6D0D812}] => (Allow) C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.133.0_x64__2p2nqsd0c76g0\app\ChatGPT.exe (50BDFD77-8903-4850-9FFE-6E8522F64D5B -> OpenAI)FirewallRules: [{987E0227-E89B-4938-8757-5967D8980811}] => (Allow) C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.133.0_x64__2p2nqsd0c76g0\app\ChatGPT.exe (50BDFD77-8903-4850-9FFE-6E8522F64D5B -> OpenAI)FirewallRules: [{B7771083-75F0-468A-B144-D7C49C9B265E}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)FirewallRules: [{84C8C975-6FAF-44E9-A269-A9DAD6FC3072}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2606.60031.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)FirewallRules: [{DAC2B8C7-1471-403D-A7BA-4DC849D4DA92}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2606.60031.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)FirewallRules: [{9FAC1C7F-7B02-4EF7-AA23-9A04FC810DAE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2606.60031.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)FirewallRules: [{4531BEA2-6728-469B-8BFD-88BF1EDF9D02}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2606.60031.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray accessStandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner ServiceStandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 UpdaterStandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service
==================== Puntos de Restauración =========================
05-07-2026 21:11:55 Windows Update05-07-2026 21:11:55 Windows Update05-07-2026 21:11:55 Windows Update
==================== Dispositivos defectuosos en el Administrador de dispositivos ============Name: HP LaserJet Professional M1130 MFP SeriesDescription: HP LaserJet Professional M1130 MFP SeriesClass Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f}Manufacturer: Hewlett-Packard, Inc.Service: usbscanProblem: : This device cannot start. (Code10)Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
==================== Errores del registro de eventos: ========================
Errores de aplicación:
Error: (07/06/2026 08:05:45 PM) (Source: Windows Search Service) (EventID: 7042) (User: )Description: El servicio Windows Search se está deteniendo porque hay un problema con el indizador: Error en la fase de recuperación.
Contexto: aplicación , catálogo SystemIndex
Detalles:0x%08x (0x80040d23 - El recopilador se está cerrando. (HRESULT : 0x80040d23))
Error: (07/06/2026 08:05:45 PM) (Source: Windows Search Service) (EventID: 3602) (User: )Description: ID 1 del error producido durante la etapa de recuperación de Windows Search, reinicie el servicio. Si el error persiste, vuelva a crear el índice.
Contexto: aplicación , catálogo SystemIndex
Detalles:0x%08x (0x80040d23 - El recopilador se está cerrando. (HRESULT : 0x80040d23))
Error: (07/06/2026 08:05:23 PM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)Description: Nombre de aplicación con errores: SDFSSvc.exe, versión: 2.9.85.231, marca de tiempo: 0x63ebb1a4Nombre del módulo con errores: KERNELBASE.dll, versión: 10.0.26100.8737, marca de tiempo: 0x7160435aCódigo de excepción: 0x0eedfadeDesplazamiento con errores: 0x0016a394Id. de proceso con errores: 0x1110Tiempo de inicio de aplicación con errores: 0x1dd0d6e1b613c24Ruta de aplicación con errores: C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exeRuta de módulo con errores: C:\WINDOWS\System32\KERNELBASE.dllId. de informe: 480ee577-c8f3-4b6e-9e75-b11f4b448ab3Nombre completo del paquete con errores:Id. de aplicación relacionado con el paquete con errores:
Error: (07/06/2026 08:04:33 PM) (Source: Application Hang) (EventID: 1002) (User: NT AUTHORITY)Description: El programa cmd.exe versión 10.0.26100.8737 dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible sobre este problema, comprueba el historial de problemas en el panel de control de Seguridad y mantenimiento.
Error: (07/06/2026 07:39:26 PM) (Source: Firefox Default Browser Agent) (EventID: 5) (User: )Description: Event-ID 5
Error: (07/06/2026 07:37:29 PM) (Source: Windows Search Service) (EventID: 7042) (User: )Description: El servicio Windows Search se está deteniendo porque hay un problema con el indizador: Error en la fase de recuperación.
Contexto: aplicación , catálogo SystemIndex
Detalles:0x%08x (0x80040d23 - El recopilador se está cerrando. (HRESULT : 0x80040d23))
Error: (07/06/2026 07:37:29 PM) (Source: Windows Search Service) (EventID: 3602) (User: )Description: ID 1 del error producido durante la etapa de recuperación de Windows Search, reinicie el servicio. Si el error persiste, vuelva a crear el índice.
Contexto: aplicación , catálogo SystemIndex
Detalles:0x%08x (0x80040d23 - El recopilador se está cerrando. (HRESULT : 0x80040d23))
Error: (07/06/2026 07:37:09 PM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)Description: Nombre de aplicación con errores: SDFSSvc.exe, versión: 2.9.85.231, marca de tiempo: 0x63ebb1a4Nombre del módulo con errores: KERNELBASE.dll, versión: 10.0.26100.8737, marca de tiempo: 0x7160435aCódigo de excepción: 0x0eedfadeDesplazamiento con errores: 0x0016a394Id. de proceso con errores: 0x48a8Tiempo de inicio de aplicación con errores: 0x1dd0d597cdbec8aRuta de aplicación con errores: C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exeRuta de módulo con errores: C:\WINDOWS\System32\KERNELBASE.dllId. de informe: 6ab29a1d-123c-47a9-aafd-70ade0c15d80Nombre completo del paquete con errores:Id. de aplicación relacionado con el paquete con errores:
Errores del sistema:
Error: (07/06/2026 08:30:42 PM) (Source: Service Control Manager) (EventID: 7011) (User: )Description: Se agotó el tiempo de espera (30000 ms) para la respuesta de transacción del servicio Dnscache.
Error: (07/06/2026 08:29:29 PM) (Source: Service Control Manager) (EventID: 7011) (User: )Description: Se agotó el tiempo de espera (30000 ms) para la respuesta de transacción del servicio Dnscache.
Error: (07/06/2026 08:27:52 PM) (Source: Service Control Manager) (EventID: 7011) (User: )Description: Se agotó el tiempo de espera (30000 ms) para la respuesta de transacción del servicio Dnscache.
Error: (07/06/2026 08:27:22 PM) (Source: Service Control Manager) (EventID: 7011) (User: )Description: Se agotó el tiempo de espera (30000 ms) para la respuesta de transacción del servicio Dnscache.
Error: (07/06/2026 08:26:52 PM) (Source: Service Control Manager) (EventID: 7011) (User: )Description: Se agotó el tiempo de espera (30000 ms) para la respuesta de transacción del servicio Dnscache.
Error: (07/06/2026 08:24:17 PM) (Source: Service Control Manager) (EventID: 7011) (User: )Description: Se agotó el tiempo de espera (30000 ms) para la respuesta de transacción del servicio Dnscache.
Error: (07/06/2026 08:23:47 PM) (Source: Service Control Manager) (EventID: 7011) (User: )Description: Se agotó el tiempo de espera (30000 ms) para la respuesta de transacción del servicio Dnscache.
Error: (07/06/2026 08:13:28 PM) (Source: Service Control Manager) (EventID: 7011) (User: )Description: Se agotó el tiempo de espera (30000 ms) para la respuesta de transacción del servicio Dnscache.
Windows Defender:
TimeCreated : 06/07/2026 19:43:16(Message : Antivirus de Microsoft Defender servicio parecÃa estar bloqueado durante el apagado.) (Timout (segundos): 120) (Componente: ShutdownSpyNetManager) (Terminado automáticamente: 0)TimeCreated : 06/07/2026 17:17:21(Message : Antivirus de Microsoft Defender ś¢Äη ндš вéёņ ѕťσÏÑ€ÎÄ‘ ÑŒÐ·Æ’Å‘Å—Ñ ÑоmφĺÑτīοп.%Ï€ %ťŚÑáй ) (ΊÄ:%в{DFC0CD48-BB9A-4251-9BD3-115C89F727A6}%Ï€ %ťЅċªη ТÿÏè:%вAntimalware%ň %τŠċǻń Рάŗà mēţèŗś:%ÑŠExamen ) (rápido%ň %ŧŨÅÑÅ™:%ÑŠNT AUTHORITY\SYSTEM%ň %ţŜţοφ Òëäşőň:%ьЯΡÇ ćǿπиēçťίòл ÑÅ«â¿Î´ÅáºÐ»)TimeCreated : 06/07/2026 16:38:03(Message : Antivirus de Microsoft Defender servicio parecÃa estar bloqueado durante el apagado.) (Timout (segundos): 120) (Componente: ShutdownSpyNetManager) (Terminado automáticamente: 0)TimeCreated : 03/07/2026 19:45:39(Message : Antivirus de Microsoft Defender servicio parecÃa estar bloqueado durante el apagado.) (Timout (segundos): 120) (Componente: CleanupRtpPlugin) (Terminado automáticamente: 0)TimeCreated : 29/06/2026 18:48:57(Message : Antivirus de Microsoft Defender ś¢Äη ндš вéёņ ѕťσÏÑ€ÎÄ‘ ÑŒÐ·Æ’Å‘Å—Ñ ÑоmφĺÑτīοп.%Ï€ %ťŚÑáй ) (ΊÄ:%в{A7237D27-B0C8-420C-B03A-449F07AED2E2}%Ï€ %ťЅċªη ТÿÏè:%вAntimalware%ň %τŠċǻń Рάŗà mēţèŗś:%ÑŠExamen ) (rápido%ň %ŧŨÅÑÅ™:%ÑŠNT AUTHORITY\SYSTEM%ň %ţŜţοφ Òëäşőň:%ьŜĉнÎδµłëð ÅŸÑάή ωâś ѕĸìÏÏєδ ÑŒÎĉάùÅë ţĥé łáśτ ) (ÅŸÅÑÄєśѕƒцŀ śçãń щåś ẃīτђìπ ťн℮ ℓäѕτ 7 δдÿş)TimeCreated : 28/06/2026 11:58:52(Message : Antivirus de Microsoft Defender ś¢Äη ндš вéёņ ѕťσÏÑ€ÎÄ‘ ÑŒÐ·Æ’Å‘Å—Ñ ÑоmφĺÑτīοп.%Ï€ %ťŚÑáй ) (ΊÄ:%в{D05E2967-5BC6-4A85-A298-FBAE660C82AE}%Ï€ %ťЅċªη ТÿÏè:%вAntimalware%ň %τŠċǻń Рάŗà mēţèŗś:%ÑŠExamen ) (rápido%ň %ŧŨÅÑÅ™:%ÑŠNT AUTHORITY\SYSTEM%ň %ţŜţοφ Òëäşőň:%ьŜĉнÎδµłëð ÅŸÑάή ωâś ѕĸìÏÏєδ ÑŒÎĉάùÅë ţĥé łáśτ ) (ÅŸÅÑÄєśѕƒцŀ śçãń щåś ẃīτђìπ ťн℮ ℓäѕτ 7 δдÿş)
CodeIntegrity:
Date: 2026-07-06 20:35:46Description:Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbamsi64.dll that did not meet the Windows signing level requirements.
Date: 2026-07-06 20:33:35Description:Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
==================== Información de la memoria ===========================
BIOS: Insyde Corp. V1.27 07/07/2022Placa base: IL Sleepy_ILProcesador: Intel(R) Core(TM) i5-1035G1 CPU @ 1.00GHzPorcentaje de memoria en uso: 75%RAM física total: 7981.12 MBRAM física disponible: 1916.81 MBVirtual total: 10797.12 MBVirtual disponible: 4242.92 MB
==================== Unidades ================================
Drive c: (Acer) (Fixed) (Total:475.83 GB) (Free:223.99 GB) (Model: KINGSTON OM8PCP3512F-AA) NTFS
\?\Volume{94928fee-e9bf-472f-b841-2cf985eb35b0}\ (Recovery) (Fixed) (Total:1 GB) (Free:0.07 GB) NTFS\?\Volume{7778beb3-b718-4a96-9312-d58f6f31d1d4}\ (ESP) (Fixed) (Total:0.09 GB) (Free:0.04 GB) FAT32
==================== MBR & Tabla de particiones ====================
==================== Final de Addition.txt =======================````