Buenas noches, realice un análisis de rutina con Rkill y Dr. Web, y este ultimo encontró dos problemas pero el segundo no se dejo curar. Gracias por la ayuda.
Rkill 2.9.1 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2022 BleepingComputer.com
More Information about Rkill can be found at this link:
http://www.bleepingcomputer.com/forums/topic308364.html
Program started at: 09/18/2022 03:03:54 PM in x64 mode.
Windows Version: Windows 10 Pro
Checking for Windows services to stop:
* No malware services found to stop.
Checking for processes to terminate:
* C:\Users\USUARIO\AppData\Local\Temp\B7601C44-927EE4C0-482246C0-26275A9C\91nuuMhqOi.exe.2f4810.2f51a5 (PID: 6724) [T-HEUR]
1 proccess terminated!
Checking Registry for malware related settings:
* No issues found in the Registry.
Resetting .EXE, .COM, & .BAT associations in the Windows Registry.
Performing miscellaneous checks:
* Windows Defender Disabled
[HKLM\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware" = dword:00000001
Total 95100029682 bytes in 399162 files scanned (519426 objects)
Total 399155 files (519278 objects) are clean
Total 2 files are suspicious
Total 142 files are raised error condition
Scan time is 02:36:23.889
-----------------------------------------------------------------------------
Start curing
-----------------------------------------------------------------------------
\NSP\12\mdnsNSP\Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll - cured, reboot required
\NSP\12\mdnsNSP\Device\HarddiskVolume3\Program Files (x86)\Bonjour\mdnsNSP.dll - incurable
Total 95100029682 bytes in 399162 files scanned (519426 objects)
Total 399155 files (519278 objects) are clean
Total 2 files are suspicious
Total 1 file are neutralized
Total 143 files (142 objects) are raised error condition
Scan time is 02:36:23.889
=============================================================================
Dr.Web Scanner SE for Windows v9.1.6.04261
(c) Doctor Web, Ltd., 1992-2021
Scan session started 2022/09/18 18:17:19
Module location : C:\Users\USUARIO\AppData\Local\Temp\3726B56B-AAAB2EA4-A3DABB5C-780F118E\
=============================================================================
OPTION [Automatic Apply Actions] NO
OPTION [Turn Off Computer After Scan] NO
OPTION [Use Sound Alerts] NO
OPTION [Block Network] NO
OPTION [Protect Process] NO
OPTION [Protect Raw Disk] NO
Time from server is: 2022-09-19 02:17:25
Using language: "Spanish (Español)"