Virus voyasollam

Hola JavierHF: Ante todo, (no lo hice antes), agradezco tu dedicacion y ayuda.

Pase archivos por Emsisoft Decryptor y en la pc del problema se tildo. reinicie a prueba de fallos y (como no soy muy tecno, ni manejo bien ingles) volvi a hacerlo con y sin coneccion a internet. Tambien prove en otra pc.

File: C:\Users\windows\Desktop\rescate\cont cel\01-18\camara\VID-20171103-WA0008.mp4.mado No key for New Variant online ID: QjSGxnweuTVYX5RldXdVmtI2116rXu6hsYS6fD7Z Notice: this ID appears to be an online ID, decryption is impossible

Realmente estoy desesperado.

Hola @villagefer

Lamentablemente el mensaje que te sale, te indica que NO es posible desencriptar tus archivos. :-1: :woozy_face:

Tus archivos fueron encriptados con lo que se denomina llave/clave en línea, y para ese tipo/variante actualmente es imposible desencriptar. :roll_eyes:

Lo que nosotros únicamente te podemos recomendar es que guardes los archivos que consideres imprescindibles en una Unidad Externa(disco duro o USB), por si algún día aparece la forma de desencriptarlos.

Una vez los hayas guardado, SI quieres, podemos ayudarte a desinfectar el equipo usando herramientas adecuadas o te planteas realizar una reinstalación total del sistema operativo.

Nos comentas. :thinking:

Saludos.

Hola JavierHF: Acabo de encontrar un archivo de texto no encriptado perdido en una tercera particion del disco… Hay alguna forma de mandartelo en privado?

Contiene algún tipo de información confidencial que NO se pueda publicar aquí directamente…??

Hola JavierHF. Pedirte el envio en privado fue por impulso ante el hallazgo de la nota, por inseguridad y creyendo la posibilidad de recupero. Consta de un pedido de pago de $490 para recuperar los datos, con un contacto mail ([email protected] y [email protected]), y sin especificar moneda. Que ahora se son bitcoins (1=u$s 6.464) jajajaja. Nada… aprovecho a volcarlo en el foro para que la gente se cuide… buscando lei que usa tecnologia AES-RSA (https://www.myantispyware.com/2019/12/22/helpmanagerfiremail-cc-ransomware-virus-restore-decrypt-encrypted-files/) y si esto es real, para mi saber, fuera de alcance. Nuevamente GRACIAS… JavierHF. Lamento muchisimo el material afectado (2 decadas de lo que se imagine, y sobretodo de fotografia familiar) Cualquier magia que sepan, estare atento…

Efectivamente tal cual lo has explicado. :rage:

Y nosotros, :roll_eyes: ese es el GRAN problema que tienen este tipo de infecciones, los usuarios además NO suelen hacer copias de seguridad e incluso en ocasiones SI las hacen, éstas están también en un disco alternativo pero conectado al equipo e igualmente se infecta. :woozy_face:

Nosotros vamos siempre publicando y actualizando los temas donde se publican este tipo de infecciones como el que te puse anteriormente :

Saludos.

Hola nuevamente, ideal seria hacer una intalacion limpia del sistema, pero con la cuarentena tengo trabajos por hacer y demoraria en instalar todos los programas. Ya guarde los archivos y rescate lo que pude. Ahora tengo dos temas, por un lado el virus, la limpieza, saber si puedo conectar sin preocupacion a internet, saber si los archivos nuevos que ingrese estan a salvo, etc. Y por otro, al recuperar archivos recorde que usaba un disco duro que agregue por un tiempo, (la maquina es viejita) tiene placa de video y conectando el disco, me quede sin pantalla en el booteo, tuve que cambiar la coneccion del monitor al mader.

Hola.

Si el disco externo lo tenias conectado en el momento de producirse la infección es muy probable que esté infectado también, deberías verificarlo para ver si fueron afectados. :thinking:

Ademas de eso debes desinfectar la maquina para asegurarte que NO quede nada de la infección que produjo el problema o de las restantes que seguro tendrás. :roll_eyes:

Para hacerlo sigue estos pasos, en el orden indicado y leyendo todo lo explicado. :+1:

:one: Desactiva temporalmente el Antivirus :arrow_forward: Cómo deshabilitar temporalmente su Antivirus, mientras estemos realizando TODOS los pasos.

Vamos a descargar en TU ESCRITORIO(y NO en otro lugar :face_with_monocle:) todas las herramientas que vamos a utilizar en este procedimiento (pero no las ejecutes todavía) :


:two: Ejecutas las herramientas de una en una y en el orden indicado :



CCleaner.-

  • Instalas y Ejecutas CCleaner siguiendo los pasos indicados en el manual.

  • Úsalo primero en su opción de Limpiador para borrar cookies, temporales de Internet y todos los archivos que te muestre como obsoletos.

  • Después usa su opción de Registro para limpiar todo el registro de Windows(haciendo copia de seguridad).

Malwarebytes.-

  • Instalas y Ejecutas MBAM siguiendo los pasos indicados en el manual.

  • Realiza un Análisis Personalizado. :white_check_mark:

  • Seleccionando TODOS a Cuarentena para enviarlo a la cuarentena y Reinicias el sistema.

  • En el apartado del programa :arrow_forward: Historial de detecciones :arrow_backward: encontrarás el informe de MBAM, que debes copiar y pegar en tu próxima respuesta, para poder analizarlo.

AdwCleaner.-

  • Ejecuta Adwcleaner.exe.

  • Pulsamos en el botón Analizar ahora, y espera a que se realice el proceso, inmediatamente pulsa siempre sobre el botón Iniciar Reparación.

  • Espera a que se complete y sigue las instrucciones, si te pidiera Reiniciar el sistema Aceptas.

  • El log/informe lo encontramos en la pestaña “Informes”, volviendo a abrir el programa si fuese necesario, para poder copiarlo y pegarlo en tu próxima respuesta.

  • El informe también se puede encontrar en C:\AdwCleaner\Logs\AdwCleaner[C00].txt

Junkware Removal Tool.-

  • Ejecuta JRT.exe.

  • Y pulsar cualquier tecla para continuar, esperar pacientemente a que termine el proceso.

  • Si en algún momento te pide Reiniciar hazlo.

  • Al finalizar, un registro/informe (JRT.txt) se guardara en el escritorio y se abrirá automáticamente.

  • Copia y pega el contenido de JRT.txt en tu próxima respuesta.

Farbar Recovery Scan Tool.-

  • Ejecuta FRST.exe.

  • En el mensaje de la ventana del Disclaimer/Responsabilidad, pulsamos Sí/Yes

  • En la ventana principal pulsamos en el botón Analizar/Scan y esperamos a que concluya el proceso.

  • Se abrirán dos(2) archivos(Logs), Frst.txt y Addition.txt, estos quedaran grabados en el escritorio.

:three: Poner los informes en tu próxima respuesta de :

  • Malwarebytes, AdwCleaner, JRT, FRST + Addition.txt, y en ese orden. :+1:

Debes copiarlos y pegarlos con todo su contenido y usaras varios mensajes si recibes un mensaje de error indicando que es muy largo(más de 64.000 caracteres aprox.).

Y nos cuentas como funciona tu equipo en relación al problema planteado. :face_with_monocle:

Saludos.

Hola te envio los reportes que dieron los programas. El ccleaner y malwarebytes, ya los habia pasado…

Malwarebytes Anti-Malware
www.malwarebytes.org

Fecha del análisis: 10/04/2020
Hora del análisis: 10:41
Archivo de registro: malwarebytes.txt
Administrador: Sí

Versión: 2.2.0.1024
Base de datos de malwares: v2020.03.30.04
Base de datos de rootkits: v2020.03.30.04
Licencia: Gratis
Protección contra el malware: Desactivado
Protección contra sitios web maliciosos: Desactivado
Autoprotección: Desactivado

SO: Windows 7 Service Pack 1
CPU: x86
Sistema de archivos: NTFS
Usuario: windows7

Tipo de análisis: Análisis personalizado
Resultado: Completado
Objetos analizados: 618563
Tiempo transcurrido: 3 hr, 16 min, 5 seg

Memoria: Activado
Inicio: Activado
Sistema de archivos: Activado
Archivo: Activado
Rootkits: Activado
Análisis profundo de rootkits: Activado
Heurística: Activado
PUP: Activado
PUM: Activado

Procesos: 0
(No hay elementos maliciosos detectados)

Módulos: 0
(No hay elementos maliciosos detectados)

Claves del registro: 3
Trojan.CrthRazy, HKLM\SOFTWARE\Machiner, En cuarentena, [d517bcda8f475cda38b44497c63ae818], 
PUP.Optional.TotalAV, HKLM\SOFTWARE\MICROSOFT\TRACING\TotalAV_RASAPI32, En cuarentena, [b834d7bf478f80b657deb704e41c60a0], 
PUP.Optional.TotalAV, HKLM\SOFTWARE\MICROSOFT\TRACING\TotalAV_RASMANCS, En cuarentena, [9f4d0d8928aeb87edb5ac0fb996745bb], 

Valores del registro: 1
PUP.Optional.Kuaizip, HKU\S-1-5-21-1108624317-4066755893-285503077-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\FILEEXTS\.bin\OPENWITHPROGIDS|KuaiZipMount.bin, En cuarentena, [19d30c8ac70ff442efba6d3e5fa135cb], 

Datos del registro: 0
(No hay elementos maliciosos detectados)

Carpetas: 23
PUP.Optional.TotalAV, C:\ProgramData\TotalAV, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\cache, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\pfdata, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\pfdata\SSL, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\logs, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\queues, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\elam_ppl, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\elam_ppl\win32, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\elam_ppl\win32\win10RS6, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\elam_ppl\win64, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\elam_ppl\win64\win10RS6, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win7, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win8, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win7, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win8, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\Windows\System32\config\systemprofile\AppData\Roaming\TotalAV, En cuarentena, [8c60762001d52412501526e947b96799], 
PUP.Optional.TotalAV, C:\Windows\System32\config\systemprofile\AppData\Roaming\TotalAV\5.0.0, En cuarentena, [8c60762001d52412501526e947b96799], 

Archivos: 132
PUP.Optional.IdleKMS, D:\de pen para gravagna 26-03-20\office 2016 (online) activadores, bases ejemplo\Activador auto pico\AutoPico.exe, En cuarentena, [9c50573f28aec3733e195b473dc4bc44], 
HackTool.FilePatch, D:\programas utilitarios\fotografia imagenes\administradores visualizar fotos\acdsee 9 español\ACDSee Pro 9.1.453 + Patch [x32]\ACDSee19-Pro9-Ultimate9.UniPatch-Kindly.zip.mado, En cuarentena, [33b9b9ddebeb43f314145be162a2f20e], 
PUP.Optional.IdleKMS, D:\programas utilitarios\office\office 2016 (online) activadores, bases ejemplo\Activador auto pico\AutoPico.exe, En cuarentena, [eb01910512c42511183f257d768b916f], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\account.jdat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\addon.jdat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\avconfig.jdat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\avlic.jdat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\certs.jdat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\details.jdat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\driver.jdat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\idpro.jdat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\prefs.jdat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\sdet.jdat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\sf_notify.dict, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\ui.jdat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\updates.jdat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\vpn_locations.jdat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\wwwcache.dict, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\pfdata\SSL\cert.db, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\pfdata\SSL\TotalAV Malicious URL Protection CA 2.cer, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\pfdata\SSL\x2.db, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\pfdata\SSL\xtls2.db, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\data\pfdata\SSL\xv2.db, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\logs\main.log, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\logs\monitor_service_install.log, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\logs\savapi.log, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\logs\security_service.log, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\logs\security_service_monitor.log, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\logs\service-1585593327.logc, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\logs\service-1585595259.logc, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\logs\service_install.log, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\logs\threat.log, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\queues\bav4rar2.kex.queue, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\ams_setup.exe, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aebb.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aecore.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aecrypto.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aedroid.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aedroid_gwf.dat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aeemu.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aeexp.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aeexp_gwf.dat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aegen.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aehelp.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aeheur.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aeheur_agen.dat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aeheur_gwf.dat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aeheur_mv.dat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aelibinf.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aelibinf_db.dat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aelidb.dat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aemobile.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aeoffice.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aeoffice_gwf.dat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aepack.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aerdl.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aesbx.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aescn.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aescript.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aeset.dat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aevdf.dat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\aevdf.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\amswsccomm.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\apcfile.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\apchash.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\avupdate-savapilib-engine.conf, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\avupdate.exe, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\avupdate_msg.avr, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\cacert.crt, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\productname.dat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\savapi.conf, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\savapi.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\savapi.exe, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\savapiclient.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\savapi_post.bat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\savapi_pre.bat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\savapi_pretest.bat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\savapi_restart.exe, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\savapi_stub.exe, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\vdfupd.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\xvdfmerge.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\elam_ppl\AMSAgent.exe, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\elam_ppl\AMSProtectedService.exe, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\elam_ppl\concrt140.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\elam_ppl\mfc140u.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\elam_ppl\msvcp140.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\elam_ppl\vcruntime140.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\elam_ppl\win32\win10RS6\amselam.sys, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\elam_ppl\win64\win10RS6\amselam.sys, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\README, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win7\avgio.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win7\avgntflt.cat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win7\avgntflt.inf, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win7\avgntflt.sys, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win7\avipbb.cat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win7\avipbb.inf, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win7\avipbb.sys, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win7\avkmgr.cat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win7\avkmgr.inf, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win7\avkmgr.sys, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win8\avgio.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win8\avgntflt.cat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win8\avgntflt.inf, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win8\avgntflt.sys, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win8\avipbb.cat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win8\avipbb.inf, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win8\avipbb.sys, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win8\avkmgr.cat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win8\avkmgr.inf, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win32\win8\avkmgr.sys, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win7\avgio.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win7\avgntflt.cat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win7\avgntflt.inf, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win7\avgntflt.sys, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win7\avipbb.cat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win7\avipbb.inf, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win7\avipbb.sys, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win7\avkmgr.cat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win7\avkmgr.inf, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win7\avkmgr.sys, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win8\avgio.dll, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win8\avgntflt.cat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win8\avgntflt.inf, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win8\avgntflt.sys, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win8\avipbb.cat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win8\avipbb.inf, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win8\avipbb.sys, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win8\avkmgr.cat, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win8\avkmgr.inf, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\ProgramData\TotalAV\updates\SAVAPI 5.0.0\on_access\win64\win8\avkmgr.sys, En cuarentena, [8d5f2f67e5f1fb3bdc89ef20bc44c739], 
PUP.Optional.TotalAV, C:\Windows\System32\config\systemprofile\AppData\Roaming\TotalAV\vdf_1585593226.zip, En cuarentena, [8c60762001d52412501526e947b96799], 
PUP.Optional.TotalAV, C:\Windows\System32\config\systemprofile\AppData\Roaming\TotalAV\5.0.0\avira32redist.zip, En cuarentena, [8c60762001d52412501526e947b96799], 

Sectores físicos: 0
(No hay elementos maliciosos detectados)


(end)
# -------------------------------
# Malwarebytes AdwCleaner 8.0.3.0
# -------------------------------
# Build:    03-03-2020
# Database: 2020-03-02.1 (Local)
# Support:  https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start:    04-10-2020
# Duration: 00:00:14
# OS:       Windows 7 Ultimate
# Cleaned:  115
# Failed:   2


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted       C:\Program Files (x86)\Seed Trade
Deleted       C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft\WebCompanion
Deleted       C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec
Deleted       C:\ProgramData\SecuritySuite
Deleted       C:\Users\windows7\AppData\Local\Lavasoft\WEBCOMPANION.EXE_URL_F5DB2C2EOTB405ZBCLGX4OBR3TGWDJ1T
Deleted       C:\Users\windows7\AppData\Roaming\Softlink
Deleted       C:\Users\windows7\Documents\TotalAV
Deleted       C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4

***** [ Files ] *****

Deleted       C:\Users\windows7\AppData\Roaming\Mozilla\Firefox\Profiles\da9g4udh.default-1447700307378\invalidprefs.js

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

Deleted       C:\Users\Invitado\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Deleted       C:\Users\Invitado\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk
Deleted       C:\Users\Invitado\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Deleted       C:\Users\casa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Deleted       C:\Users\casa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
Deleted       C:\Users\casa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk
Deleted       C:\Users\casa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Deleted       C:\Users\casa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
Deleted       C:\Users\mati\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
Deleted       C:\Users\mati\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Deleted       C:\Users\mati\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk
Deleted       C:\Users\mati\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
Deleted       C:\Users\mati\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
Deleted       C:\Users\mati\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted       HKCU\SOFTWARE\54E57E8D2071C4AB035C44FA3CA5D3E3
Deleted       HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5B0FA5C9-38BC-42FF-8E76-42B78CB195F9}
Deleted       HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A53313A3-1DF6-4325-A081-5B6B95BF5F6A}
Deleted       HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A8735413-76C1-45EA-8E57-5D8616146894}
Deleted       HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C18EA2D4-9451-49D1-9A11-769169845DD}
Deleted       HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7F11F42-1F95-4FE7-B6FB-F343668C716}
Deleted       HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7EBC205-8EA0-4C6A-9E37-1541917E92}
Deleted       HKCU\Software\AppDataLow\Software\adawarebp
Deleted       HKCU\Software\Auslogics\BoostSpeed
Deleted       HKCU\Software\AutoTime
Deleted       HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\SavePass 1.1
Deleted       HKCU\Software\Installer
Deleted       HKCU\Software\Lavasoft\Web Companion
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\dospop.com
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\incredibar.com
Deleted       HKCU\Software\Myfree Codec
Deleted       HKCU\Software\PopWnd
Deleted       HKCU\Software\SNDA
Deleted       HKCU\Software\SSProtect
Deleted       HKCU\Software\UpgSvr
Deleted       HKLM\SOFTWARE\54E57E8D2071C4AB035C44FA3CA5D3E3
Deleted       HKLM\SOFTWARE\Classes\AppID\QZipShell.DLL
Deleted       HKLM\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\KuaiZipShlExt
Deleted       HKLM\SOFTWARE\Classes\Drive\shellex\ContextMenuHandlers\KuaiZipShlExt
Deleted       HKLM\SOFTWARE\Classes\Record\{181480C8-90AC-3430-B39A-CD121E034A1A}
Deleted       HKLM\SOFTWARE\Classes\Record\{2009AF2F-5786-3067-8799-B97F7832FDD6}
Deleted       HKLM\SOFTWARE\Classes\Record\{425E7597-03A2-338D-B72A-0E51FFE77A7E}
Deleted       HKLM\SOFTWARE\Classes\Record\{8F54FA54-1DF8-3B20-890C-CDD95364BC95}
Deleted       HKLM\SOFTWARE\Classes\Record\{915BB7D5-082E-3B91-B1E0-45B5FDE01F24}
Deleted       HKLM\SOFTWARE\Classes\Record\{FB2E65F4-5687-33EF-9BBF-4E3C9C98D3B9}
Deleted       HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\com.totalav.passwordvaultassistant
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost|WinSAPSvc
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost|kuaizipupdatesvc
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost|terana
Deleted       HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\KzShlobj
Deleted       HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved|KuaiZip Shell Extension
Deleted       HKLM\SOFTWARE\Mozilla\NativeMessagingHosts\com.totalav.passwordvaultassistant
Deleted       HKLM\Software\Classes\AppID\{9CC34070-3A38-4C7A-89CB-EF8177EF07A1}
Deleted       HKLM\Software\Classes\Interface\{023E9EC8-B147-40EB-B0B3-DF90618FB371}
Deleted       HKLM\Software\Classes\Interface\{0522D9A4-4D57-437D-978D-E5B3B6C9005D}
Deleted       HKLM\Software\Classes\Interface\{07F41522-AF7D-4F26-B394-094F059FDB8A}
Deleted       HKLM\Software\Classes\Interface\{0C40F472-7407-4467-8914-1DEA7C326972}
Deleted       HKLM\Software\Classes\Interface\{212E6D43-6062-492A-B8CC-144669FF11ED}
Deleted       HKLM\Software\Classes\Interface\{224FE662-1E6D-4BC0-AEBB-9E2FB4057BE9}
Deleted       HKLM\Software\Classes\Interface\{3A807417-B46D-4D37-8C9A-19AC6DE204F9}
Deleted       HKLM\Software\Classes\Interface\{3CC60715-D6C5-429D-830E-43FA3F86C61D}
Deleted       HKLM\Software\Classes\Interface\{4517D94C-19BA-46FA-BE66-2A30CEAC4A85}
Deleted       HKLM\Software\Classes\Interface\{555D7146-94A8-4C94-AE76-C39CDC7F7705}
Deleted       HKLM\Software\Classes\Interface\{59D188FA-757A-424E-8C93-F58FFD896BD7}
Deleted       HKLM\Software\Classes\Interface\{8120D9D6-785C-4413-9C0C-DF2028C56FAD}
Deleted       HKLM\Software\Classes\Interface\{823AE2EB-E62C-4847-B192-C99B91B92416}
Deleted       HKLM\Software\Classes\Interface\{9B4F7CFE-987D-410E-A8E4-20182E0B3C24}
Deleted       HKLM\Software\Classes\Interface\{9B9A45F4-18FC-484A-BACA-076D78273D8E}
Deleted       HKLM\Software\Classes\Interface\{A6D54287-7939-466A-8579-92546D946C8C}
Deleted       HKLM\Software\Classes\Interface\{A78EDAFB-926F-4D93-AB13-8232D7378EB1}
Deleted       HKLM\Software\Classes\Interface\{A8F7D0A5-7074-40B8-9BDC-1174BDD0A132}
Deleted       HKLM\Software\Classes\Interface\{D14D64BC-A0E4-42E3-BB72-FB41EA43C198}
Deleted       HKLM\Software\Classes\Interface\{DD1F043F-ABC8-4643-8B95-D2C5B22BB019}
Deleted       HKLM\Software\Classes\Interface\{E3F3E8F9-F747-4DD6-BA6B-82A6CE1E0860}
Deleted       HKLM\Software\Classes\Interface\{ED0B64D4-BF27-4521-AD27-190F49BF5EA7}
Deleted       HKLM\Software\InterSect Alliance
Deleted       HKLM\Software\Lavasoft\Web Companion
Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\18C9E3869A16248439FE3FF9EB02207A
Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3038A20B9089EC34D8F74220191FAB30
Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D8011310B2622942868A458964FFDC5
Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6C63F7979DCC2154CB9591969A5CB89D
Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6DD31E6C1A73B334383DF186676F4D20
Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB3204F747B20694B8D49EF92D8DC94B
Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C81E33A400B6F814E90C7A3354E2A3A5
Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EDBF68C5F16790341B7C6FD7C7F8E4FC
Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FFA531D0F3A71504DA7AC6A11CE33739
Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1108624317-4066755893-285503077-1001\Components\649A52D257CA5DB4EAAE8BA9EB23E467
Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1108624317-4066755893-285503077-1001\Products\363FB0CBBA367FF4E81FEAD0F717B142
Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID|{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID|{FE69C007-C452-4D3E-86D2-1730DF8BC871}
Deleted       HKLM\Software\Myfree Codec
Deleted       HKLM\Software\SiteSee
Deleted       HKLM\Software\msServer
Deleted       HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com
Deleted       HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\dospop.com
Deleted       HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\incredibar.com
Deleted       HKU\.DEFAULT\Software\UpgSvr
Deleted       HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com
Deleted       HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\dospop.com
Deleted       HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\incredibar.com
Deleted       HKU\S-1-5-18\Software\UpgSvr
Not Deleted   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost|AppleSvcs
Not Deleted   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost|BIT

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

Deleted       Preinstalled.SamsungSmartSwitch   Folder   C:\Program Files\SAMSUNG\SMART SWITCH PC
Deleted       Preinstalled.SamsungSmartSwitch   Folder   C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SAMSUNG\SMART SWITCH PC
Deleted       Preinstalled.SamsungSmartSwitch   Folder   C:\Users\windows7\AppData\Roaming\SAMSUNG\SMART SWITCH PC


*************************

[+] remove_folder_Auslogics
[+] remove_folder_Auslogics(2)
[+] remove_folder_Auslogics(3)
[+] remove_folder_Auslogics(4)
[+] remove_regKey_Auslogics
[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [14262 octets] - [10/04/2020 18:07:18]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.4 (07.09.2017)
Operating System: Windows 7 Ultimate x86 
Ran by windows7 (Administrator) on 10/04/2020 at 18:30:00,71
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 23 

Successfully deleted: C:\ai_recyclebin (Folder) 
Successfully deleted: C:\ProgramData\productdata (Folder) 
Successfully deleted: C:\Users\windows7\AppData\Roaming\advantage (Folder) 
Successfully deleted: C:\Users\windows7\AppData\Roaming\Mozilla\Firefox\Profiles\bw1w7n4q.default\extensions\staged (Folder) 
Successfully deleted: C:\Users\windows7\AppData\Roaming\Mozilla\Firefox\Profiles\bw1w7n4q.default\user.js (File) 
Successfully deleted: C:\Windows\System32\ai_recyclebin (Folder) 
Successfully deleted: C:\Windows\wininit.ini (File) 
Successfully deleted: C:\Users\windows7\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6IG9BJAR (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\windows7\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7CM10ZG8 (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\windows7\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8RPFQAZX (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\windows7\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DBI70YK7 (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\windows7\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EH1N0VUN (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\windows7\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HLC05SOB (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\windows7\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QVY145PA (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\windows7\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RVDLLEVQ (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6IG9BJAR (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7CM10ZG8 (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8RPFQAZX (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DBI70YK7 (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EH1N0VUN (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HLC05SOB (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QVY145PA (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RVDLLEVQ (Temporary Internet Files Folder) 

user_pref(browser.newtabpage.url, hxxps://securesearch.org/homepage?hp=2&pId=BC180101&iDate=2020-03-30 11:16:41&bName=);



Registry: 3 

Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Search\\SearchAssistant (Registry Value) 
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8CDE19E6-71C2-4B46-89B7-35F6A18C571A} (Registry Key)
Successfully deleted: HKLM\Software\Microsoft\Internet Explorer\Search\\SearchAssistant (Registry Value) 




~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 10/04/2020 at 18:32:20,75
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x86) Versión: 29-03-2020
Ejecutado por windows7 (administrador) sobre PCFER (INTEL_ DG41RQ__) (10-04-2020 18:35:50)
Ejecutado desde C:\Users\windows7\Desktop
Perfiles cargados: windows7 (Perfiles disponibles: windows7 & mati & Invitado)
Platform: Microsoft Windows 7 Ultimate  Service Pack 1 (X86) Idioma: Español (España, internacional)
Internet Explorer Versión 11 (Navegador predeterminado: FF)
Modo de Inicio: Normal
Tutorial para Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Procesos (Lista blanca) =================

(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)

(Adobe Inc. -> Adobe Systems) C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
(Arvato Digital Services Canada Inc -> arvato digital services llc) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
(Autodesk, Inc -> Autodesk Inc.) C:\Program Files\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe
(Autodesk, Inc -> Autodesk, Inc.) C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe
(LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe
(Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Numedia Soft, Inc. -> ) C:\Program Files\CDBurnerXP\NMSAccessU.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Safer-Networking Ltd. -> Safer-Networking Ltd.) [Archivo no firmado] C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Safer-Networking Ltd. -> Safer-Networking Ltd.) [Archivo no firmado] C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Sorentio Systems Ltd.) [Archivo no firmado] C:\ProgramData\FlexGridService\FlexGridService.exe
(StarWind Software) [Archivo no firmado] C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe

==================== Registro (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Policies\Explorer: [HideSCAHealth] 1
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restricción <==== ATENCIÓN
HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\Run: [Spybot-S&D Cleaning] => C:\Program Files\Spybot - Search & Destroy 2\SDCleaner.exe [5915776 2016-03-21] (Safer-Networking Ltd. -> Safer-Networking Ltd.) [Archivo no firmado]
HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\Run: [ISUSPM Startup] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [196608 2004-04-17] (InstallShield Software Corporation) [Archivo no firmado]
HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\Policies\Explorer: [] 
HKU\S-1-5-21-1108624317-4066755893-285503077-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\lol.scr
HKU\S-1-5-18\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1165704 2015-01-27] (Autodesk, Inc -> Autodesk, Inc.)
HKU\S-1-5-18\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-18\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-18\...\Policies\Explorer: [HideSCAHealth] 1
HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\...\Authentication\Credential Providers: [{F8A0B131-5F68-486c-8040-7E8FC3C85BB6}] -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
Startup: C:\Users\casa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Stardock ObjectDock.lnk [2016-08-02]
Startup: C:\Users\mati\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\iTouch - Acceso directo.lnk [2013-01-20]
ShortcutTarget: iTouch - Acceso directo.lnk -> D:\programas utilitarios\escritorio\varios programas para mejorar apariencia de escritorio\iTouch.exe (Ningún archivo)
Startup: C:\Users\mati\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ObjectDock Plus.lnk [2011-03-18]
ShortcutTarget: ObjectDock Plus.lnk -> C:\Program Files\Stardock\ObjectDock\ObjectDock.exe (Ningún archivo)
BootExecute: autocheck autochk /k:C /k:D /k:E * Partizan
GroupPolicy: Restricción ? <==== ATENCIÓN
GroupPolicyUsers\S-1-5-21-1108624317-4066755893-285503077-1004\User: Restricción <==== ATENCIÓN
GroupPolicyUsers\S-1-5-21-1108624317-4066755893-285503077-1003\User: Restricción <==== ATENCIÓN

==================== Tareas programadas (Lista blanca) ============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

Task: {0A0BAA49-E9BD-4DF2-93CC-9D270D7EB7B3} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [18947360 2019-11-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {0AA9A470-DD73-4236-9D7D-B51ECCA22DB5} - System32\Tasks\Herwertyqobert System => C:\Program Files\Suqersvukich\chunoph.exe
Task: {1533E2A7-BE3A-4ACA-8758-4E4E3D790EAD} - System32\Tasks\UnHackMe Task Scheduler => C:\Program Files\UnHackMe\hackmon.exe [4656712 2020-03-31] (Greatis Software LLC -> Greatis Software)
Task: {199008E1-A72A-4C36-9B83-48B71BF361C0} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-1108624317-4066755893-285503077-1001 => C:\Users\windows7\AppData\Local\MEGAsync\MEGAupdater.exe [615160 2019-09-05] (Mega Limited -> Mega Limited)
Task: {1FAF7DBD-F016-486C-86AF-4693716115EC} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [112984 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {376F28D4-00FF-42CF-84E9-7601593AAFA3} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [18947360 2019-11-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {3C4A3295-DEDE-4C30-8D67-019A57F1147A} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1373800 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {42B1BA93-9B01-42B1-83FC-CD85E2EEF3B2} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe [6193080 2016-03-21] (Safer-Networking Ltd. -> Safer-Networking Ltd.) [Archivo no firmado]
Task: {61B6594D-1DC2-475C-A977-7DC57ACAD59E} - System32\Tasks\{281BF5E1-8E3C-4FF1-9E34-4BBC3339529E} => C:\Windows\system32\pcalua.exe -a "D:\programas utilitarios\escritorio\notas escritorio\stickies_setup_7.1e.exe" -d "D:\programas utilitarios\escritorio\notas escritorio"
Task: {6F6E4A12-9F47-4D9A-8C20-8C69F17273ED} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\system32\Macromed\Flash\FlashUtil32_32_0_0_344_Plugin.exe [1458232 2020-03-18] (Adobe Inc. -> Adobe)
Task: {7416EB6F-B0D1-4E71-BC8B-C4BE6223EBF1} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1373800 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {7E60CDE3-C5E3-42B6-A068-B0E6ACD138AE} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-03-18] (Adobe Inc. -> Adobe)
Task: {81CDDF04-7DA3-458C-9BBA-4D31082652EB} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [112984 2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {83A5808B-A256-4A91-8D35-551F1575897D} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask => C:\Windows\system32\Wat\WatAdminSvc.exe
Task: {92924ACE-F9B5-4AFF-A94A-BCC075D25256} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems)
Task: {C429F0FF-86AE-4EC7-95FC-10F4E8A7559C} - System32\Tasks\{B726526C-81AA-4474-979F-CA115FEB405E} => C:\Windows\system32\pcalua.exe -a "C:\Users\windows7\Desktop\linksys wireless-g 2.4 ghz broadband router wrt54gl cd instalacion\WRT54G-v7.2_Setup_Wizard\SetupWizard.exe" -d "C:\Users\windows7\Desktop\linksys wireless-g 2.4 ghz broadband router wrt54gl cd instalacion\WRT54G-v7.2_Setup_Wizard"
Task: {DA36302E-2C64-4CD9-9A7E-B55C9DFC3798} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} C:\Program Files\Windows Live\SOXE\wlsoxe.dll [192704 2014-03-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {EE27959E-DB80-4E38-9EE6-D23BF4865E59} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe [4747720 2014-06-27] (Safer Networking Ltd. -> Safer-Networking Ltd.)
Task: {EF08F4E9-EB53-4321-BB3B-DCC1BE2D34A7} - System32\Tasks\{F75B3797-36D7-4788-8F94-658F4351AC60} => C:\Program Files\Stickies\stickies.exe
Task: {F6DAB9B2-BC81-40AF-A250-AA305DA71C0B} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files\Spybot - Search & Destroy 2\SDImmunize.exe [5753752 2016-03-21] (Safer-Networking Ltd. -> Safer-Networking Ltd.) [Archivo no firmado]

(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)


==================== Internet (Lista blanca) ====================

(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)

Winsock: Catalog5 07 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145648 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
Winsock: Catalog5 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145648 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
Hosts: Hay más de una entrada en Hosts. Consulte la sección Hosts de Addition.txt
Tcpip\Parameters: [DhcpNameServer] 200.49.130.44 200.42.4.210
Tcpip\Parameters: [NameServer] 8.8.8.8,8.8.8.4
Tcpip\..\Interfaces\{5701D49E-69C4-453E-8FB3-B4EAF82D82CC}: [DhcpNameServer] 200.49.130.44 200.42.4.210
HKLM\System\...\Parameters\PersistentRoutes: [0.0.0.0,0.0.0.0,192.168.1.1,-1]

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = 
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = 
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://es.msn.com/?ocid=iehp
HKU\S-1-5-21-1108624317-4066755893-285503077-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://es.msn.com/
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-1108624317-4066755893-285503077-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={sear
SearchScopes: HKU\S-1-5-21-1108624317-4066755893-285503077-1001 -> {8BABC184-458B-4806-94BF-1AEC46F6BE77} URL = hxxps://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?}
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_211\bin\ssv.dll [2019-06-29] (Oracle America, Inc. -> Oracle Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\root\Office16\URLREDIR.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-06-29] (Oracle America, Inc. -> Oracle Corporation)
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF ProfilePath: C:\Users\windows7\AppData\Roaming\Mozilla\Firefox\Profiles\da9g4udh.default-1447700307378 [2020-04-10]
FF Homepage: Mozilla\Firefox\Profiles\da9g4udh.default-1447700307378 -> google.com
FF Extension: (YouTube™ Flash® Player) - C:\Users\windows7\AppData\Roaming\Mozilla\Firefox\Profiles\da9g4udh.default-1447700307378\Extensions\[email protected] [2019-02-18]
FF Extension: (Flash Video Player for Facebook™) - C:\Users\windows7\AppData\Roaming\Mozilla\Firefox\Profiles\da9g4udh.default-1447700307378\Extensions\{d0bfdcce-52c7-4b32-bb45-948f62db8d3f}.xpi [2019-02-18]
FF Extension: (Greasemonkey) - C:\Users\windows7\AppData\Roaming\Mozilla\Firefox\Profiles\da9g4udh.default-1447700307378\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2020-03-18]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_32_0_0_344.dll [2020-03-18] (Adobe Inc. -> )
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll [2015-10-13] (Google Inc -> Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=11.211.2 -> C:\Program Files\Java\jre1.8.0_211\bin\dtplugin\npDeployJava1.dll [2019-06-29] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.211.2 -> C:\Program Files\Java\jre1.8.0_211\bin\plugin2\npjp2.dll [2019-06-29] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-12-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-10-13] (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [Archivo no firmado]
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-10-13] (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [Archivo no firmado]
FF Plugin: @pandonetworks.com/PandoWebPlugin -> C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll [Ningún archivo]
FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-06-11] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-03-05] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2015-07-23] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin HKU\S-1-5-21-1108624317-4066755893-285503077-1001: @tools.google.com/Google Update;version=3 -> C:\Users\windows7\AppData\Local\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-30] (Google Inc -> Google Inc.)
FF Plugin HKU\S-1-5-21-1108624317-4066755893-285503077-1001: @tools.google.com/Google Update;version=9 -> C:\Users\windows7\AppData\Local\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-30] (Google Inc -> Google Inc.)
StartMenuInternet: FIREFOX.EXE - firefox.exe

==================== Servicios (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

"vtjatoqr" => servicio fue desbloqueado. <==== ATENCIÓN

R2 AdAppMgrSvc; C:\Program Files\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [599944 2014-12-04] (Autodesk, Inc -> Autodesk Inc.)
R2 AdobeARMservice; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [88648 2020-02-25] (Adobe Inc. -> Adobe Systems)
R2 Autodesk Content Service; C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [31160 2015-02-05] (Autodesk, Inc -> Autodesk, Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [7291464 2019-11-27] (Microsoft Corporation -> Microsoft Corporation)
R2 FlexGridService; C:\ProgramData\FlexGridService\FlexGridService.exe [1185792 2020-03-30] (Sorentio Systems Ltd.) [Archivo no firmado] <==== ATENCIÓN
S3 FlexNet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe [1104128 2017-05-26] (Flexera Software LLC -> Flexera Software LLC)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [915600 2015-10-13] (NVIDIA Corporation -> NVIDIA Corporation)
R2 LMIGuardianSvc; C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe [405424 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
S2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes Corporation -> Malwarebytes)
R2 NMSAccessU; C:\Program Files\CDBurnerXP\NMSAccessU.exe [71096 2009-09-06] (Numedia Soft, Inc. -> )
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1706128 2015-10-13] (NVIDIA Corporation -> NVIDIA Corporation)
S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19775632 2015-10-13] (NVIDIA Corporation -> NVIDIA Corporation)
R2 PSI_SVC_2; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [277360 2014-04-30] (Arvato Digital Services Canada Inc -> arvato digital services llc)
S2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer Networking Ltd. -> Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [4088608 2016-09-21] (Safer-Networking Ltd. -> Safer-Networking Ltd.) [Archivo no firmado]
R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [235984 2016-11-24] (Safer-Networking Ltd. -> Safer-Networking Ltd.) [Archivo no firmado]
R2 StarWindServiceAE; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [Archivo no firmado]
S2 vtjatoqr; C:\Windows\system32\vtjatoqr\miaaxmlz.exe [11290624 2020-03-30] () [Archivo no firmado]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
R2 wlidsvc; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [1713904 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)

===================== Controladores (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [115008 2010-12-21] (ESET, spol. s r.o. -> ESET)
S3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc. -> LogMeIn, Inc.)
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO32.SYS [23840 2017-03-17] (Martin Malik - REALiX -> REALiX(tm))
R1 ISODrive; C:\Program Files\UltraISO\drivers\ISODrive.sys [82320 2009-02-10] (SHENZHEN YIBO DIGITAL SYSTEMS DEVELOPMENT CO. LTD. -> EZB Systems, Inc.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2015-10-05] (Malwarebytes Corporation -> Malwarebytes)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2015-10-05] (Malwarebytes Corporation -> Malwarebytes Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [18576 2015-10-13] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad32v.sys [32912 2015-10-13] (NVIDIA Corporation -> NVIDIA Corporation)
U0 Partizan; C:\Windows\System32\drivers\Partizan.sys [40304 2020-03-30] (Greatis Software LLC -> Greatis Software)
S3 pccsmcfd; C:\Windows\System32\DRIVERS\pccsmcfd.sys [18816 2008-08-26] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 PortTalk; C:\Windows\System32\Drivers\PortTalk.sys [3567 2002-01-12] (Beyond Logic hxxp://www.beyondlogic.org) [Archivo no firmado]
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb.sys [22656 2007-05-14] (Microsoft Windows Hardware Compatibility Publisher -> Research In Motion Limited)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [691696 2011-03-05] () [Archivo no firmado]
S3 StarOpen; C:\Windows\System32\Drivers\StarOpen.sys [7168 2009-09-28] () [Archivo no firmado]
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [48128 2009-07-13] (Microsoft Windows -> Microsoft Corporation)
U3 ammvo5q4; C:\Windows\System32\Drivers\ammvo5q4.sys [0 0000-00-00] (Microsoft Corporation) <==== ATENCIÓN (cero bytes Archivo/Carpeta)
S0 AFPAnsi; System32\Drivers\AFPAnsi.sys [X]
S3 avchv; system32\DRIVERS\avchv.sys [X]
S3 dgderdrv; System32\drivers\dgderdrv.sys [X]
S1 mchInjDrv; \??\C:\Windows\system32\Drivers\mchInjDrv.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 XDva401; \??\C:\Windows\system32\XDva401.sys [X]
S3 XDva402; \??\C:\Windows\system32\XDva402.sys [X]
S3 XDva409; \??\C:\Windows\system32\XDva409.sys [X]
S3 XDva419; \??\C:\Windows\system32\XDva419.sys [X]
S3 XDva423; \??\C:\Windows\system32\XDva423.sys [X]
S3 XDva533; \??\C:\Windows\system32\XDva533.sys [X]
S3 XDva534; \??\C:\Windows\system32\XDva534.sys [X]

==================== NetSvcs (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)


==================== Un mes (creado) ===================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-04-10 18:35 - 2020-04-10 18:36 - 000024675 _____ C:\Users\windows7\Desktop\FRST.txt
2020-04-10 18:35 - 2020-04-10 18:36 - 000000000 ____D C:\FRST
2020-04-10 18:32 - 2020-04-10 18:32 - 000004222 _____ C:\Users\windows7\Desktop\JRT.txt
2020-04-10 18:29 - 2020-04-10 18:29 - 000023070 _____ C:\Users\windows7\Desktop\malwarebytes.txt
2020-04-10 18:17 - 2020-04-10 18:17 - 000014262 _____ C:\Users\windows7\Desktop\AdwCleaner[S00].txt
2020-04-10 18:16 - 2020-04-10 18:16 - 000012583 _____ C:\Users\windows7\Desktop\AdwCleaner[C00].txt
2020-04-10 18:05 - 2020-04-10 18:09 - 000000000 ____D C:\AdwCleaner
2020-04-10 10:35 - 2020-04-10 10:35 - 000006394 _____ C:\Users\windows7\Desktop\cc_20200410_103435.reg
2020-04-10 10:24 - 2020-04-10 10:24 - 000000000 ____D C:\Users\windows7\Desktop\solucion voya 31-03
2020-04-10 10:24 - 2020-04-10 10:24 - 000000000 ____D C:\Users\windows7\Desktop\descargas
2020-04-10 10:24 - 2020-04-10 10:13 - 001790024 _____ (Malwarebytes) C:\Users\windows7\Desktop\JRT.exe
2020-04-10 10:24 - 2020-03-31 08:56 - 000797760 _____ C:\Users\windows7\Desktop\delfix.exe
2020-04-10 10:24 - 2020-03-31 08:47 - 007432520 _____ (VS Revo Group ) C:\Users\windows7\Desktop\revosetup.exe
2020-04-10 10:24 - 2020-03-31 08:36 - 003294592 _____ (Nicolas Coolman) C:\Users\windows7\Desktop\ZHPCleaner.exe
2020-04-10 10:24 - 2020-03-31 08:29 - 008199856 _____ (Malwarebytes) C:\Users\windows7\Desktop\adwcleaner_8.0.3.exe
2020-04-10 10:24 - 2020-03-31 08:19 - 002008064 _____ (Farbar) C:\Users\windows7\Desktop\FRST.exe
2020-04-09 19:41 - 2020-04-09 19:41 - 000001008 _____ C:\Users\windows7\Desktop\PC Wizard 2010.lnk
2020-04-09 03:20 - 2020-04-09 03:20 - 000000546 _____ C:\Windows\system32\PARTIZLO.EXE
2020-04-08 16:11 - 2020-04-10 18:10 - 000000372 _____ C:\Windows\system32\PARTIZAN.TXT
2020-04-08 16:08 - 2020-04-08 16:08 - 000000000 ____D C:\@RestoreQuarantine
2020-04-08 07:07 - 2020-04-08 07:07 - 000000000 ____D C:\Users\windows7\Documents\Plantillas personalizadas de Office
2020-04-08 04:22 - 2020-04-08 07:10 - 000000000 ____D C:\Users\windows7\Desktop\base gravagna
2020-04-08 04:18 - 2020-04-08 04:18 - 000001708 _____ C:\Users\windows7\Desktop\MSACCESS.EXE - Acceso directo.lnk
2020-03-31 12:53 - 2020-03-31 12:53 - 001162528 _____ (Emsisoft Ltd.) C:\Users\windows7\Desktop\decrypt_STOPDjvu.exe
2020-03-30 13:54 - 2020-03-30 13:54 - 000040304 _____ (Greatis Software) C:\Windows\system32\Drivers\Partizan.sys
2020-03-30 13:02 - 2020-04-10 17:29 - 000000000 ____D C:\Users\windows7\Documents\RegRun2
2020-03-30 13:02 - 2020-04-06 20:56 - 000000000 ____D C:\Users\Public\Documents\RegRunInfo
2020-03-30 13:02 - 2020-04-06 20:56 - 000000000 ____D C:\ProgramData\Documents\RegRunInfo
2020-03-30 13:02 - 2020-03-31 13:16 - 000003312 _____ C:\Windows\system32\Tasks\UnHackMe Task Scheduler
2020-03-30 13:02 - 2020-03-31 13:16 - 000000925 _____ C:\Users\windows7\Desktop\UnHackMe.lnk
2020-03-30 13:02 - 2020-03-31 13:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UnHackMe
2020-03-30 13:02 - 2020-03-31 13:16 - 000000000 ____D C:\Program Files\UnHackMe
2020-03-30 13:02 - 2020-02-25 13:51 - 000016184 _____ (Greatis Software, LLC.) C:\Windows\system32\Drivers\UnHackMeDrv.sys
2020-03-30 13:02 - 2015-12-28 11:32 - 000049968 ____N (Greatis Software) C:\Windows\system32\partizan.exe
2020-03-30 10:31 - 2020-04-02 13:47 - 000000004 _____ C:\ProgramData\rc.dat
2020-03-30 10:30 - 2020-04-10 18:34 - 000000004 _____ C:\ProgramData\lock.dat
2020-03-30 10:30 - 2020-04-10 18:11 - 000000156 _____ C:\ProgramData\irw.atsd
2020-03-30 10:30 - 2020-03-30 10:30 - 000000008 _____ C:\ProgramData\ts.dat
2020-03-30 10:26 - 2020-04-10 18:04 - 000039424 ___SH C:\Users\windows7\Desktop\Thumbs.db
2020-03-30 08:17 - 2020-03-30 10:58 - 000000000 ____D C:\Users\windows7\AppData\Local\558361a6-322b-42ad-898d-35c131a6bffa
2020-03-30 08:17 - 2020-03-30 08:18 - 000000000 ____D C:\Users\windows7\AppData\LocalLow\3098htrhpen8ifg0
2020-03-30 08:17 - 2020-03-30 08:17 - 000069888 _____ C:\Users\windows7\AppData\Local\Config.xml
2020-03-30 08:17 - 2020-03-30 08:17 - 000000557 _____ C:\Users\windows7\AppData\Local\bowsakkdestx.txt
2020-03-30 08:17 - 2020-03-30 08:17 - 000000049 _____ C:\Users\windows7\AppData\Local\script.ps1
2020-03-30 08:17 - 2020-03-30 08:17 - 000000000 ____D C:\Windows\system32\vtjatoqr
2020-03-30 08:17 - 2020-03-30 08:17 - 000000000 ____D C:\SystemID
2020-03-30 08:17 - 2020-03-30 08:17 - 000000000 ____D C:\ProgramData\2G1RS2PI85GJ4K8MP37SXJ6A4
2020-03-30 08:16 - 2020-04-10 18:09 - 000000000 ____D C:\Users\windows7\AppData\Local\Lavasoft
2020-03-30 08:16 - 2020-04-10 18:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
2020-03-30 08:16 - 2020-04-10 18:09 - 000000000 ____D C:\Program Files (x86)
2020-03-30 08:16 - 2020-04-08 16:11 - 000000000 ____D C:\Program Files\Lavasoft
2020-03-30 08:16 - 2020-04-08 16:02 - 000000000 ____D C:\Users\windows7\AppData\Roaming\Lavasoft
2020-03-30 08:16 - 2020-03-30 10:28 - 000000000 ____D C:\Users\windows7\AppData\Roaming\14ho0ymteee
2020-03-30 08:16 - 2020-03-30 08:17 - 001246160 _____ (Mozilla Foundation) C:\ProgramData\nss3.dll
2020-03-30 08:16 - 2020-03-30 08:17 - 000137168 _____ (Mozilla Foundation) C:\ProgramData\mozglue.dll
2020-03-30 08:16 - 2020-03-30 08:16 - 000000000 ____D C:\Users\windows7\AppData\Roaming\Python
2020-03-30 08:16 - 2020-03-30 08:16 - 000000000 ____D C:\ProgramData\PK6TRVC158C06SR3C6FPI0THZ
2020-03-30 08:16 - 2020-03-30 08:16 - 000000000 ____D C:\ProgramData\FlexGridService
2020-03-30 08:15 - 2020-04-08 16:11 - 000000000 ____D C:\ProgramData\Lavasoft
2020-03-30 08:15 - 2020-03-30 12:08 - 000000000 ____D C:\Program Files\Emoticons Mail
2020-03-30 08:15 - 2020-03-30 10:25 - 000000000 ____D C:\Program Files\htee
2020-03-30 08:15 - 2020-03-30 08:15 - 000000000 ____D C:\Program Files\Genie-Soft
2020-03-29 04:28 - 2020-03-30 09:26 - 000427719 _____ C:\Users\windows7\Downloads\vlc-record-2020-03-29-04h27m50s-1535480493279753-.mp4.mado
2020-03-27 23:09 - 2020-03-30 09:26 - 006323432 _____ C:\Users\windows7\Downloads\modificados.cdr.mado
2020-03-27 23:09 - 2020-03-30 09:26 - 006138155 _____ C:\Users\windows7\Downloads\Copia_de_seguridad_de_modificados.cdr.mado
2020-03-26 18:18 - 2020-03-27 05:05 - 000000424 __RSH C:\ProgramData\ntuser.pol
2020-03-25 21:46 - 2020-03-30 09:26 - 000014921 _____ C:\Users\windows7\Downloads\91117542_3727922160583657_308875184431955968_n.jpg.mado
2020-03-25 16:52 - 2020-03-30 09:26 - 000013292 _____ C:\Users\windows7\Downloads\0.jpg.mado

==================== Un mes (modificado) ==================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-04-10 18:18 - 2014-11-18 21:59 - 000170200 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2020-04-10 18:16 - 2009-07-14 01:34 - 000023088 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2020-04-10 18:16 - 2009-07-14 01:34 - 000023088 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2020-04-10 18:10 - 2015-03-25 15:02 - 000000000 ____D C:\ProgramData\NVIDIA
2020-04-10 18:10 - 2009-07-14 01:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-04-10 18:09 - 2015-12-17 17:48 - 000002426 _____ C:\Users\mati\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-04-10 18:09 - 2014-01-11 00:13 - 000001258 _____ C:\Users\casa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2020-04-10 18:09 - 2013-10-04 21:59 - 000000000 ____D C:\Users\windows7\AppData\Roaming\Samsung
2020-04-10 18:09 - 2013-10-04 21:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
2020-04-10 18:09 - 2013-10-04 21:53 - 000000000 ____D C:\Program Files\Samsung
2020-04-10 18:09 - 2011-03-12 21:09 - 000001369 _____ C:\Users\casa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2020-04-10 18:09 - 2011-03-12 10:32 - 000001369 _____ C:\Users\mati\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2020-04-10 18:09 - 2011-03-05 19:33 - 000001409 _____ C:\Users\Invitado\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2020-04-10 10:33 - 2011-03-18 00:49 - 000000000 ____D C:\Users\windows7\AppData\Local\MediaMonkey
2020-04-10 10:33 - 2009-07-13 23:37 - 000000000 ____D C:\Windows\inf
2020-04-09 19:39 - 2011-03-13 09:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ClocX
2020-04-08 16:11 - 2016-07-12 21:06 - 000000000 _RSHD C:\Program Files\Client
2020-04-08 16:08 - 2011-03-05 16:10 - 000000000 ___RD C:\Users\windows7\Desktop\mantenimiento
2020-04-08 16:07 - 2017-11-29 16:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Namexif
2020-04-08 16:03 - 2016-07-18 11:44 - 000000000 _RSHD C:\ProgramData\Client
2020-04-08 06:36 - 2011-03-05 08:13 - 001714714 _____ C:\Windows\system32\PerfStringBackup.INI
2020-04-08 06:36 - 2009-07-14 05:48 - 000760832 _____ C:\Windows\system32\perfh00A.dat
2020-04-08 06:36 - 2009-07-14 05:48 - 000165608 _____ C:\Windows\system32\perfc00A.dat
2020-04-07 11:46 - 2011-03-12 21:09 - 000000000 ____D C:\Users\casa
2020-04-07 11:45 - 2011-03-05 19:33 - 000000000 ____D C:\Users\Invitado
2020-04-07 11:43 - 2011-03-12 10:31 - 000000000 ____D C:\Users\mati
2020-04-06 22:13 - 2017-01-13 11:06 - 000000000 ____D C:\Users\windows7\AppData\LocalLow\Mozilla
2020-04-06 19:15 - 2019-07-25 22:01 - 000000000 ____D C:\Users\windows7\AppData\Roaming\vlc
2020-04-06 12:30 - 2020-01-04 08:45 - 000000000 ____D C:\Users\windows7\AppData\Roaming\XnView
2020-04-02 14:47 - 2011-03-06 07:29 - 000000000 ____D C:\Users\windows7\Documents\Visual Studio 2008
2020-04-02 12:20 - 2017-04-20 17:11 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-04-01 17:41 - 2017-11-21 14:16 - 000025600 _____ C:\Users\windows7\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2020-04-01 13:39 - 2017-05-22 17:21 - 000000000 ____D C:\Recovered
2020-04-01 13:26 - 2011-03-19 13:03 - 000000000 ____D C:\Temp
2020-04-01 13:01 - 2016-10-12 11:58 - 000000000 ____D C:\Downloaded Web Sites
2020-04-01 12:58 - 2011-03-05 11:33 - 000000000 ____D C:\ProgramData\TEMP
2020-04-01 12:42 - 2011-03-05 08:09 - 000000000 ____D C:\Users\windows7
2020-04-01 12:25 - 2015-04-05 18:55 - 000000000 ____D C:\NVIDIA Corporation
2020-04-01 12:24 - 2017-10-10 15:36 - 000000000 ____D C:\Crispin
2020-04-01 12:24 - 2017-05-26 11:35 - 000000000 ____D C:\Autodesk
2020-04-01 12:24 - 2015-03-25 15:09 - 000000000 ____D C:\NVIDIA
2020-03-30 10:59 - 2009-07-14 05:48 - 000000000 ____D C:\Windows\DigitalLocker
2020-03-30 10:32 - 2019-12-08 09:16 - 000002360 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2020-03-30 10:32 - 2019-12-08 09:16 - 000002341 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2020-03-30 10:32 - 2019-12-08 09:16 - 000002323 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2020-03-30 10:32 - 2019-12-08 09:16 - 000002316 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2020-03-30 10:32 - 2019-12-08 09:16 - 000002314 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2020-03-30 10:32 - 2019-12-08 09:16 - 000002272 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2020-03-30 10:32 - 2019-12-08 09:16 - 000002268 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2020-03-30 10:32 - 2019-07-25 22:00 - 000000978 _____ C:\Users\Public\Desktop\VLC media player.lnk
2020-03-30 10:32 - 2019-07-25 22:00 - 000000978 _____ C:\ProgramData\Desktop\VLC media player.lnk
2020-03-30 10:32 - 2018-03-19 17:40 - 000000901 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Balsamiq Mockups 3.lnk
2020-03-30 10:32 - 2016-12-16 13:49 - 000002881 _____ C:\Users\Public\Desktop\ACDSee 9 Administrador fotográfico.lnk
2020-03-30 10:32 - 2016-12-16 13:49 - 000002881 _____ C:\ProgramData\Desktop\ACDSee 9 Administrador fotográfico.lnk
2020-03-30 10:32 - 2015-11-04 10:31 - 000002079 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2020-03-30 10:32 - 2015-09-07 18:12 - 000001647 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Illustrator CC 2015 (32 Bit).lnk
2020-03-30 10:32 - 2015-09-07 17:04 - 000001139 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk
2020-03-30 10:32 - 2015-04-08 21:57 - 000002429 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-03-30 10:32 - 2014-09-13 15:35 - 000001274 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk
2020-03-30 10:32 - 2014-09-13 15:35 - 000001201 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk
2020-03-30 10:32 - 2014-08-21 06:40 - 000001204 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2014 (32 Bit).lnk
2020-03-30 10:32 - 2014-08-11 15:07 - 000001018 _____ C:\Users\Public\Desktop\Picasa 3.lnk
2020-03-30 10:32 - 2014-08-11 15:07 - 000001018 _____ C:\ProgramData\Desktop\Picasa 3.lnk
2020-03-30 10:32 - 2013-08-23 09:40 - 000001902 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2020-03-30 10:32 - 2013-08-23 09:40 - 000001902 _____ C:\ProgramData\Desktop\Mozilla Firefox.lnk
2020-03-30 10:32 - 2011-03-19 08:00 - 000001109 _____ C:\Users\Public\Desktop\GOM Player.lnk
2020-03-30 10:32 - 2011-03-19 08:00 - 000001109 _____ C:\ProgramData\Desktop\GOM Player.lnk
2020-03-30 10:32 - 2011-03-18 00:49 - 000000937 _____ C:\Users\Public\Desktop\MediaMonkey.lnk
2020-03-30 10:32 - 2011-03-18 00:49 - 000000937 _____ C:\ProgramData\Desktop\MediaMonkey.lnk
2020-03-30 10:32 - 2011-03-17 21:23 - 000002507 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2020-03-30 10:32 - 2011-03-05 05:05 - 000001333 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2020-03-30 10:32 - 2011-03-05 05:05 - 000001314 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2020-03-30 10:32 - 2009-07-14 01:46 - 000001503 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2020-03-30 10:32 - 2009-07-14 01:42 - 000001318 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk
2020-03-30 10:32 - 2009-07-14 01:42 - 000001234 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk
2020-03-30 10:32 - 2009-07-14 01:42 - 000001198 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk
2020-03-30 10:31 - 2020-01-04 08:44 - 000001755 _____ C:\Users\windows7\Desktop\XnView.lnk
2020-03-30 10:31 - 2019-12-08 09:19 - 000002196 _____ C:\Users\windows7\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2020-03-30 10:31 - 2019-08-17 21:23 - 000001618 _____ C:\Users\windows7\Desktop\rock nuevo 2005-20 - Acceso directo.lnk
2020-03-30 10:31 - 2018-04-26 15:21 - 000001143 _____ C:\Users\windows7\Desktop\PDFelement 6 Pro.lnk
2020-03-30 10:31 - 2017-11-22 01:37 - 000001074 _____ C:\Users\windows7\Desktop\Downloads.lnk
2020-03-30 10:31 - 2017-11-22 01:37 - 000000658 _____ C:\Users\windows7\Desktop\calzado - Acceso directo.lnk
2020-03-30 10:31 - 2017-05-31 12:09 - 000000716 _____ C:\Users\windows7\Desktop\todas las fotos - Acceso directo.lnk
2020-03-30 10:31 - 2015-10-22 08:55 - 000001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\GetDataBack for NTFS.lnk
2020-03-30 10:31 - 2014-08-08 11:24 - 000001128 _____ C:\Users\windows7\Desktop\Your Uninstaller!.lnk
2020-03-30 10:31 - 2011-07-05 23:47 - 000001216 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Program Updates.lnk
2020-03-30 10:31 - 2011-03-19 08:00 - 000001139 _____ C:\Users\windows7\AppData\Roaming\Microsoft\Windows\Start Menu\GOM Player.lnk
2020-03-30 10:31 - 2011-03-05 08:10 - 000001357 _____ C:\Users\windows7\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2020-03-30 10:31 - 2009-07-14 01:46 - 000001282 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk
2020-03-30 10:31 - 2009-07-14 01:37 - 000001266 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk
2020-03-30 09:31 - 2015-04-01 18:29 - 000000000 ____D C:\Users\casa\AppData\Local\Apps\Windows 7 USB DVD Download Tool
2020-03-30 09:27 - 2020-02-14 18:34 - 000000000 ____D C:\Users\windows7\Downloads\from - Descargar Videos de Facebook_files
2020-03-30 09:27 - 2019-11-14 00:25 - 000000000 ____D C:\Users\windows7\Desktop\accesos escritorio
2020-03-30 09:27 - 2017-10-10 10:06 - 000000000 ____D C:\Users\windows7\Documents\Delcam
2020-03-30 09:27 - 2015-12-06 04:23 - 001103144 ____H C:\Users\mati\AppData\Local\IconCache.db.mado
2020-03-30 09:27 - 2015-12-05 17:41 - 000000000 __SHD C:\Users\mati\AppData\LocalLow\EmieUserList
2020-03-30 09:27 - 2015-12-05 17:41 - 000000000 __SHD C:\Users\mati\AppData\LocalLow\EmieSiteList
2020-03-30 09:27 - 2015-12-05 17:41 - 000000000 __SHD C:\Users\mati\AppData\LocalLow\EmieBrowserModeList
2020-03-30 09:27 - 2015-10-15 09:11 - 000000368 _____ C:\Users\mati\AppData\Roaming\AdobeWLCMCache.dat.mado
2020-03-30 09:27 - 2015-06-23 11:28 - 000000000 ____D C:\Users\windows7\Documents\SelfMV
2020-03-30 09:27 - 2015-01-16 20:18 - 000000000 __SHD C:\Users\mati\AppData\Local\EmieUserList
2020-03-30 09:27 - 2015-01-16 20:18 - 000000000 __SHD C:\Users\mati\AppData\Local\EmieSiteList
2020-03-30 09:27 - 2015-01-16 20:18 - 000000000 __SHD C:\Users\mati\AppData\Local\EmieBrowserModeList
2020-03-30 09:27 - 2014-12-27 20:15 - 000000000 ____D C:\Users\casa\AppData\Local\Mozilla Firefox
2020-03-30 09:27 - 2014-07-08 20:55 - 000000000 ____D C:\Users\casa\AppData\Roaming\rmi
2020-03-30 09:27 - 2014-02-20 15:11 - 000000000 ____D C:\Users\casa\Documents\silj88
2020-03-30 09:27 - 2014-01-31 00:55 - 000000000 ____D C:\Users\mati\AppData\Roaming\Samsung
2020-03-30 09:27 - 2013-10-21 09:42 - 000000000 ____D C:\Users\casa\AppData\Roaming\Samsung
2020-03-30 09:27 - 2013-10-05 14:09 - 000000000 ____D C:\Users\windows7\Documents\Archivos de Outlook
2020-03-30 09:27 - 2012-04-16 19:17 - 000000000 ____D C:\Users\mati\AppData\Local\Microsoft Help
2020-03-30 09:27 - 2011-07-08 21:32 - 000000000 ____D C:\Users\casa\AppData\Local\Microsoft Help
2020-03-30 09:27 - 2011-05-28 09:47 - 000000000 ____D C:\Users\mati\AppData\Roaming\WinRAR
2020-03-30 09:27 - 2011-04-03 14:23 - 000000000 ____D C:\Users\mati\AppData\Local\MediaMonkey
2020-03-30 09:27 - 2011-03-18 00:50 - 000000000 ____D C:\Users\casa\AppData\Local\MediaMonkey
2020-03-30 09:27 - 2011-03-18 00:43 - 000000000 ____D C:\Users\casa\AppData\Roaming\WinRAR
2020-03-30 09:27 - 2011-03-12 13:03 - 000425998 _____ C:\Users\mati\AppData\Local\GDIPFONTCACHEV1.DAT.mado
2020-03-30 09:27 - 2011-03-11 22:58 - 000117910 _____ C:\Users\Invitado\AppData\Local\GDIPFONTCACHEV1.DAT.mado
2020-03-30 09:27 - 2011-03-10 17:41 - 000000000 ____D C:\Users\Invitado\AppData\Local\Microsoft Help
2020-03-30 09:27 - 2011-03-07 06:40 - 001372310 ____H C:\Users\Invitado\AppData\Local\IconCache.db.mado
2020-03-30 09:27 - 2011-03-05 15:45 - 000000000 ____D C:\Users\windows7\Documents\PcSetup
2020-03-30 09:26 - 2020-02-14 18:34 - 000215479 _____ C:\Users\windows7\Downloads\from - Descargar Videos de Facebook.htm.mado
2020-03-30 09:26 - 2020-02-09 17:02 - 000241609 _____ C:\Users\windows7\Downloads\TABLA_COMPARATIVA_TALLAS.jpg.mado
2020-03-30 09:26 - 2020-02-09 16:28 - 000045575 _____ C:\Users\windows7\Downloads\384c5088be3fe27a00e087ca8aefb9f5.jpg.mado
2020-03-30 09:26 - 2020-01-01 11:36 - 033424958 _____ C:\Users\windows7\Downloads\MEGAsyncSetup.exe.mado
2020-03-30 09:26 - 2019-12-25 13:51 - 000000000 ____D C:\Users\windows7\.dia
2020-03-30 09:26 - 2019-11-28 06:11 - 000020593 _____ C:\Users\windows7\Downloads\FOTO CONSUMO DE CUERO.PNG.mado
2020-03-30 09:26 - 2019-11-18 04:13 - 001126129 _____ C:\Users\windows7\Downloads\20191115_104722.jpg.mado
2020-03-30 09:26 - 2019-11-12 06:41 - 000000443 _____ C:\Users\windows7\Desktop\any do.url.mado
2020-03-30 09:26 - 2019-09-05 17:32 - 006061877 _____ C:\Users\windows7\Downloads\GATO_VS_MARIHUANA(youtube.com).mp4.mado
2020-03-30 09:26 - 2019-07-05 13:12 - 007605769 _____ C:\Users\windows7\Downloads\buen tema country.mp4.mado
2020-03-30 09:26 - 2019-06-29 11:09 - 002828939 _____ C:\Users\windows7\Downloads\la psicologia dice.mp4.mado
2020-03-30 09:26 - 2018-04-25 12:54 - 007183620 _____ C:\Users\windows7\Documents\Copia_automática_Sin título.skp.mado
2020-03-30 09:26 - 2017-11-29 19:39 - 000000000 ____D C:\Users\windows7\.amokexifsorter
2020-03-30 09:26 - 2017-11-22 12:44 - 000002812 _____ C:\Users\windows7\Documents\Registrar Vegas Pro.htm.mado
2020-03-30 09:26 - 2017-11-22 01:37 - 001711222 _____ C:\Users\windows7\Desktop\GPU-Z.0.8.1.exe.mado
2020-03-30 09:26 - 2017-10-10 16:17 - 000405147 _____ C:\Users\windows7\Documents\Comfort.dgk.mado
2020-03-30 09:26 - 2017-10-10 15:38 - 000000370 _____ C:\.superId.mado
2020-03-30 09:26 - 2017-07-14 18:41 - 000000360 _____ C:\wizard.txt.mado
2020-03-30 09:26 - 2017-05-31 10:48 - 000000504 _____ C:\Users\windows7\BullseyeCoverageError.txt.mado
2020-03-30 09:26 - 2017-05-19 13:23 - 000138574 ___SH C:\Users\windows7\Documents\Thumbs.db.mado
2020-03-30 09:26 - 2017-04-20 16:56 - 000459086 ___SH C:\Users\windows7\Desktop\Thumbs.db.mado
2020-03-30 09:26 - 2016-10-08 11:42 - 000003702 _____ C:\bootsqm.dat.mado
2020-03-30 09:26 - 2016-07-18 12:20 - 008809284 _____ C:\Users\casa\Desktop\PROCESO 58exterior.skp.mado
2020-03-30 09:26 - 2016-07-18 12:03 - 001300762 _____ C:\Users\casa\Desktop\para sket.dwg.mado
2020-03-30 09:26 - 2016-04-21 18:52 - 000404004 _____ C:\Users\windows7\Documents\MRAL.skp.mado
2020-03-30 09:26 - 2016-04-17 15:36 - 000000000 ____D C:\Users\windows7\pseint
2020-03-30 09:26 - 2016-02-18 15:23 - 007090662 _____ C:\Users\windows7\Documents\para promo mails Natalio18-02-16.jpg.mado
2020-03-30 09:26 - 2016-02-18 15:20 - 001673859 _____ C:\Users\windows7\Documents\para promo mails Natalio18-02-16.pdf.mado
2020-03-30 09:26 - 2016-02-17 23:24 - 001033223 _____ C:\Users\casa\Desktop\death note1.PNG.mado
2020-03-30 09:26 - 2016-02-17 23:24 - 000353572 _____ C:\Users\casa\Desktop\death note.PNG.mado
2020-03-30 09:26 - 2016-01-21 10:36 - 000000000 ____D C:\Users\casa\.oracle_jre_usage
2020-03-30 09:26 - 2015-11-16 17:51 - 000000000 ____D C:\Users\mati\.oracle_jre_usage
2020-03-30 09:26 - 2015-11-16 10:29 - 000000000 ____D C:\Users\windows7\.oracle_jre_usage
2020-03-30 09:26 - 2015-10-15 16:49 - 001076627 _____ C:\pcwdbg.log.mado
2020-03-30 09:26 - 2015-09-24 10:18 - 000000000 ____D C:\Users\casa\Desktop\CCleaner_v3.11.1550
2020-03-30 09:26 - 2015-06-07 21:19 - 000000000 ____D C:\Users\mati\.phet
2020-03-30 09:26 - 2015-03-11 15:11 - 000017321 _____ C:\Users\casa\Desktop\curriculum Silvina(1).docx.mado
2020-03-30 09:26 - 2015-03-03 22:04 - 000000506 _____ C:\Users\casa\Desktop\cooler.url.mado
2020-03-30 09:26 - 2015-02-28 13:23 - 000057355 _____ C:\Users\casa\Desktop\tubos caños aluminio remo.JPG.mado
2020-03-30 09:26 - 2014-12-07 20:06 - 000000351 _____ C:\Users\casa\AppData\Local\resmon.resmoncfg.mado
2020-03-30 09:26 - 2014-11-06 00:02 - 000000000 ____D C:\Users\windows7\.android
2020-03-30 09:26 - 2014-09-10 13:05 - 000000354 _____ C:\Users\windows7\Desktop\liberarmemoria.vbe.mado
2020-03-30 09:26 - 2014-09-03 15:06 - 000000408 _____ C:\Users\casa\pslog.txt.mado
2020-03-30 09:26 - 2014-08-21 07:48 - 000000408 _____ C:\Users\windows7\pslog.txt.mado
2020-03-30 09:26 - 2014-08-13 09:05 - 000000000 ____D C:\Users\casa\Desktop\fotos duplicadas
2020-03-30 09:26 - 2014-08-11 13:14 - 001539406 _____ C:\Users\casa\AppData\Local\irfanview-4-33-es-en-br-fr-it-win.exe.mado
2020-03-30 09:26 - 2014-08-11 11:12 - 000000000 ____D C:\Users\casa\Desktop\proyectos
2020-03-30 09:26 - 2014-08-09 19:52 - 000000522 _____ C:\Users\casa\Desktop\mp3 cut (cortar musica online).url.mado
2020-03-30 09:26 - 2014-06-19 15:10 - 000000579 _____ C:\Users\casa\Desktop\clubcupon.url.mado
2020-03-30 09:26 - 2014-06-01 14:51 - 000036811 _____ C:\Users\casa\Desktop\Captura.JPG.mado
2020-03-30 09:26 - 2014-06-01 14:40 - 000000446 _____ C:\Users\casa\Desktop\cinetube.url.mado
2020-03-30 09:26 - 2014-06-01 13:31 - 000000000 ____D C:\Users\casa\Desktop\cocina
2020-03-30 09:26 - 2014-02-05 18:50 - 000044310 _____ C:\Users\casa\AppData\Local\save_en.bmp.mado
2020-03-30 09:26 - 2014-02-05 18:49 - 000044310 _____ C:\Users\casa\AppData\Local\save_es.bmp.mado
2020-03-30 09:26 - 2014-02-05 17:10 - 000195442 _____ C:\Users\casa\AppData\Local\lateral3.bmp.mado
2020-03-30 09:26 - 2014-02-05 17:08 - 000194078 _____ C:\Users\casa\AppData\Local\lateral1.bmp.mado
2020-03-30 09:26 - 2013-10-21 09:53 - 000000000 ____D C:\Users\casa\Documents\SelfMV
2020-03-30 09:26 - 2013-08-13 17:02 - 000000496 ____H C:\Users\casa\Desktop\~$cuesta matiqasSAsa.doc.mado
2020-03-30 09:26 - 2013-06-06 09:35 - 000000000 ____D C:\Users\casa\Desktop\kimba
2020-03-30 09:26 - 2013-03-21 06:30 - 000070478 ___SH C:\Users\casa\Thumbs.db.mado
2020-03-30 09:26 - 2013-03-17 09:54 - 000061073 _____ C:\Users\casa\Desktop\318088_387251421310124_1421613628_n.jpg.mado
2020-03-30 09:26 - 2013-03-17 09:48 - 000063738 _____ C:\Users\casa\Desktop\418774_156812347775928_798017115_n.jpg.mado
2020-03-30 09:26 - 2013-03-17 09:48 - 000045112 _____ C:\Users\casa\Desktop\394390_156636807793482_1924585517_n.jpg.mado
2020-03-30 09:26 - 2013-02-22 04:18 - 000000000 ____D C:\Users\casa\Desktop\ecosport
2020-03-30 09:26 - 2012-12-21 19:31 - 000021838 ___SH C:\Users\casa\Documents\Thumbs.db.mado
2020-03-30 09:26 - 2012-09-15 16:59 - 000000000 ____D C:\Users\casa\Desktop\trabajos sketchup
2020-03-30 09:26 - 2012-05-03 08:12 - 000000866 _____ C:\Users\casa\AppData\Local\datos.txt.mado
2020-03-30 09:26 - 2012-04-13 17:32 - 000000000 ____D C:\Users\casa\Desktop\aa contenido urdrive
2020-03-30 09:26 - 2012-03-12 09:49 - 000000443 _____ C:\Users\casa\Desktop\Ebay usa.url.mado
2020-03-30 09:26 - 2012-02-26 22:41 - 000016337 _____ C:\Users\casa\Desktop\423563_10150577483768042_790138041_8974350_479130609_n.jpg.mado
2020-03-30 09:26 - 2011-10-23 08:11 - 000000000 ___RD C:\Users\casa\Desktop\Faboritos
2020-03-30 09:26 - 2011-10-15 11:45 - 002060920 ____H C:\Users\casa\AppData\Local\IconCache.db.mado
2020-03-30 09:26 - 2011-10-04 20:38 - 000000760 _____ C:\rkill.log.mado
2020-03-30 09:26 - 2011-04-02 20:30 - 000000453 _____ C:\Users\casa\Desktop\guia tel telexplorer.url.mado
2020-03-30 09:26 - 2011-03-18 20:43 - 000001044 _____ C:\Users\casa\Documents\ax_files.xml.mado
2020-03-30 09:26 - 2011-03-17 21:12 - 000486164 _____ C:\vcredist_x86.log.mado
2020-03-30 09:26 - 2011-03-12 21:11 - 000425998 _____ C:\Users\casa\AppData\Local\GDIPFONTCACHEV1.DAT.mado
2020-03-30 09:26 - 2011-03-07 08:08 - 000000367 _____ C:\Users\windows7\log.txt.mado
2020-03-30 09:26 - 2011-03-05 12:46 - 000000608 _____ C:\Users\windows7\Documents\ax_files.xml.mado
2020-03-30 09:26 - 2011-03-05 09:03 - 000000421 _____ C:\lan.log.mado
2020-03-30 09:26 - 2011-03-05 08:59 - 000001978 _____ C:\RHDSetup.log.mado
2020-03-30 09:26 - 2011-03-05 08:59 - 000000540 _____ C:\realtek.log.mado
2020-03-30 09:26 - 2011-03-05 08:56 - 000000000 ____D C:\TempEI4
2020-03-30 09:26 - 2010-12-30 09:26 - 000000000 ___RD C:\Users\casa\Desktop\salidas
2020-03-30 09:26 - 2010-11-12 06:10 - 000194078 _____ C:\Users\casa\AppData\Local\lateral2.bmp.mado
2020-03-30 08:19 - 2015-04-16 13:38 - 000000000 ____D C:\RegBackup
2020-03-28 21:37 - 2011-03-05 09:55 - 000000000 ____D C:\Windows\system32\Macromed
2020-03-27 09:49 - 2009-07-13 23:37 - 000000000 ____D C:\Windows\system32\NDF
2020-03-23 12:25 - 2019-12-08 09:19 - 000003174 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1108624317-4066755893-285503077-1001
2020-03-23 12:25 - 2019-12-08 09:19 - 000000000 ___RD C:\Users\windows7\OneDrive
2020-03-18 20:24 - 2017-05-06 19:56 - 000004464 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2020-03-18 06:49 - 2018-03-13 14:44 - 000004492 _____ C:\Windows\system32\Tasks\Adobe Flash Player NPAPI Notifier
2020-03-18 06:49 - 2017-05-31 11:12 - 000004332 _____ C:\Windows\system32\Tasks\Adobe Flash Player Updater
2020-03-18 06:49 - 2012-08-02 21:18 - 000842296 _____ (Adobe) C:\Windows\system32\FlashPlayerApp.exe
2020-03-18 06:49 - 2012-08-02 21:18 - 000175160 _____ (Adobe) C:\Windows\system32\FlashPlayerCPLApp.cpl

==================== Archivos en la raíz de algunos directorios ========

2020-03-30 10:30 - 2020-04-10 18:34 - 000000004 _____ () C:\ProgramData\lock.dat
2011-03-05 15:47 - 2011-03-05 15:49 - 000011114 _____ () C:\ProgramData\MainApp.dll
2020-03-30 08:16 - 2020-03-30 08:17 - 000137168 _____ (Mozilla Foundation) C:\ProgramData\mozglue.dll
2020-03-30 08:16 - 2020-03-30 08:17 - 001246160 _____ (Mozilla Foundation) C:\ProgramData\nss3.dll
2020-03-30 10:31 - 2020-04-02 13:47 - 000000004 _____ () C:\ProgramData\rc.dat
2020-03-30 10:30 - 2020-03-30 10:30 - 000000008 _____ () C:\ProgramData\ts.dat
2015-09-07 18:33 - 2018-10-29 13:57 - 000000034 _____ () C:\Users\windows7\AppData\Roaming\AdobeWLCMCache.dat
2011-03-05 15:45 - 2011-03-05 15:50 - 000081920 _____ () C:\Users\windows7\AppData\Roaming\ezpinst.exe
2011-03-05 15:45 - 2011-03-05 15:50 - 000007176 _____ () C:\Users\windows7\AppData\Roaming\pcouffin.cat
2011-03-05 15:45 - 2011-03-05 15:50 - 000001144 _____ () C:\Users\windows7\AppData\Roaming\pcouffin.inf
2011-03-05 15:45 - 2011-03-05 15:50 - 000000033 _____ () C:\Users\windows7\AppData\Roaming\pcouffin.log
2011-03-05 15:45 - 2011-03-05 15:50 - 000047360 _____ (VSO Software) C:\Users\windows7\AppData\Roaming\pcouffin.sys
2012-04-05 23:43 - 2012-04-05 23:43 - 000022328 _____ () C:\Users\windows7\AppData\Roaming\PnkBstrK.sys
2020-03-30 08:17 - 2020-03-30 08:17 - 000000557 _____ () C:\Users\windows7\AppData\Local\bowsakkdestx.txt
2020-03-30 08:17 - 2020-03-30 08:17 - 000069888 _____ () C:\Users\windows7\AppData\Local\Config.xml
2012-05-03 08:12 - 2012-05-03 08:12 - 000000532 _____ () C:\Users\windows7\AppData\Local\datos.txt
2017-11-21 14:16 - 2020-04-01 17:41 - 000025600 _____ () C:\Users\windows7\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-11-11 09:46 - 2014-11-11 09:46 - 000000096 _____ () C:\Users\windows7\AppData\Local\fusioncache.dat
2019-12-29 09:41 - 2019-12-29 09:41 - 000001368 _____ () C:\Users\windows7\AppData\Local\recently-used.xbel
2014-08-11 14:44 - 2017-06-16 09:01 - 000007616 _____ () C:\Users\windows7\AppData\Local\Resmon.ResmonCfg
2020-03-30 08:17 - 2020-03-30 08:17 - 000000049 _____ () C:\Users\windows7\AppData\Local\script.ps1

==================== SigCheck ============================

(No existe una corrección automática para los archivos que no pasan la verificación.)


LastRegBack: 2020-04-07 00:03
==================== Final de FRST.txt ========================
Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x86) Versión: 29-03-2020
Ejecutado por windows7 (10-04-2020 18:37:00)
Ejecutado desde C:\Users\windows7\Desktop
Microsoft Windows 7 Ultimate  Service Pack 1 (X86) (2011-03-05 11:09:38)
Modo de Inicio: Normal
==========================================================


==================== Cuentas: =============================

Administrador (S-1-5-21-1108624317-4066755893-285503077-500 - Administrator - Disabled)
ASPNET (S-1-5-21-1108624317-4066755893-285503077-1011 - Limited - Enabled)
casa (S-1-5-21-1108624317-4066755893-285503077-1004 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-1108624317-4066755893-285503077-1017 - Limited - Enabled)
Invitado (S-1-5-21-1108624317-4066755893-285503077-501 - Limited - Disabled) => C:\Users\Invitado
mati (S-1-5-21-1108624317-4066755893-285503077-1003 - Limited - Enabled) => C:\Users\mati
windows7 (S-1-5-21-1108624317-4066755893-285503077-1001 - Administrator - Enabled) => C:\Users\windows7

==================== Centro de Seguridad ========================

(Si una entrada es incluida en el fixlist, será eliminada.)

AS: Spybot - Search and Destroy (Disabled - Out of date) {A16C3F68-9280-E053-1818-342707FECF4D}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Programas instalados ======================

(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)

7-Zip 9.22beta (HKLM\...\7-Zip) (Version:  - )
A360 Desktop (HKLM\...\{B209E611-5511-4AD6-B4B3-9D36F93DBCD4}) (Version: 6.0.3.1100 - Autodesk)
ACA & MEP 2016 Object Enabler (HKLM\...\{5783F2D7-F004-0000-5002-0060B0CE6BBA}) (Version: 7.8.41.0 - Autodesk) Hidden
ACAD Private (HKLM\...\{5783F2D7-F001-0000-3002-0060B0CE6BBA}) (Version: 20.1.49.0 - Autodesk) Hidden
ACDSee 9 Administrador fotografico (HKLM\...\{4AA377FF-9D88-485F-B86E-AE631A1AA069}) (Version: 9.0.108 - ACD Systems Ltd.)
Actualización de NVIDIA 17.12.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 17.12.8 - NVIDIA Corporation) Hidden
Adobe Acrobat Reader DC - Español (HKLM\...\{AC76BA86-7AD7-1034-7B44-AC0F074E4100}) (Version: 20.006.20042 - Adobe Systems Incorporated)
Adobe AIR (HKLM\...\Adobe AIR) (Version: 29.0.0.112 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM\...\Adobe Creative Cloud) (Version: 3.2.0.129 - Adobe Systems Incorporated)
Adobe Flash Player 32 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 32.0.0.344 - Adobe)
Adobe Flash Player 32 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 32.0.0.344 - Adobe)
Advanced Renamer (HKLM\...\Advanced Renamer_is1) (Version: 3.80 - Hulubulu Software)
Aplicaciones destacadas de Autodesk 2016 (HKLM\...\{D42F37CD-9AF9-4435-A474-B387C5BB6B47}) (Version: 2.0.0 - Autodesk)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
AutoCAD 2016 - Español (Spanish) (HKLM\...\{5783F2D7-F001-040A-2002-0060B0CE6BBA}) (Version: 20.1.49.0 - Autodesk) Hidden
AutoCAD 2016  Language Pack - Español (Spanish) (HKLM\...\{5783F2D7-F001-040A-1002-0060B0CE6BBA}) (Version: 20.1.49.0 - Autodesk) Hidden
AutoCAD 2016 (HKLM\...\{5783F2D7-F001-0000-0002-0060B0CE6BBA}) (Version: 20.1.49.0 - Autodesk) Hidden
Autodesk Advanced Material Library Image Library 2016 (HKLM\...\{94AD53E7-493B-4291-8714-7A3B761D2783}) (Version: 6.3.0.15 - Autodesk)
Autodesk App Manager 2016 (HKLM\...\{4ECF9E00-2978-46AF-BD80-455EFEAB7A93}) (Version: 2.0.0 - Autodesk)
Autodesk Application Manager (HKLM\...\Autodesk Application Manager) (Version: 4.0.69.0 - Autodesk)
Autodesk AutoCAD 2016 - Español (Spanish) (HKLM\...\AutoCAD 2016 - Español (Spanish)) (Version: 20.1.49.0 - Autodesk)
Autodesk AutoCAD Performance Feedback Tool 1.2.4 (HKLM\...\{4E20873D-BC20-495C-AFD9-B18877B7F9BB}) (Version: 1.2.4.0 - Autodesk)
Autodesk Backburner 2013.0.0 (HKLM\...\{3D347E6D-5A03-4342-B5BA-6A771885F379}) (Version: 2013.0.0 - Autodesk, Inc.)
Autodesk BIM 360 Glue AutoCAD 2016 Add-in 32 bit (HKLM\...\{67EA06D3-1863-4E37-A19B-DB56175EAD15}) (Version: 4.35.1742 - Autodesk)
Autodesk Content Service (HKLM\...\{A37CDB58-AAE8-0000-8C13-E0F7BACB0D5F}) (Version: 3.2.0.0 - Autodesk) Hidden
Autodesk Content Service (HKLM\...\Autodesk Content Service) (Version: 3.2.0.0 - Autodesk)
Autodesk Content Service Language Pack (HKLM\...\{A37CDB58-AAE8-0001-8C13-E0F7BACB0D5F}) (Version: 3.2.0.0 - Autodesk) Hidden
Autodesk Design Review 2013 (HKLM\...\{153DB567-6FF3-49AD-AC4F-86F8A3CCFDFB}) (Version: 13.0.0.82 - Autodesk, Inc.) Hidden
Autodesk Design Review 2013 (HKLM\...\Autodesk Design Review 2013) (Version: 13.0.0.82 - Autodesk, Inc.)
Autodesk DirectConnect 2013 32-bit (HKLM\...\{F63F15F6-2505-4B57-91AA-7EBD75C5477C}) (Version: 7.0.28.0 - Autodesk) Hidden
Autodesk DirectConnect 2013 32-bit (HKLM\...\Autodesk DirectConnect 2013 32-bit) (Version: 7.0.28.0 - Autodesk)
Autodesk FBX Plug-in 2013.1 - Maya 2013 (HKLM\...\Autodesk FBX Plug-in 2013.1 - Maya 2013) (Version:  - Autodesk)
Autodesk Inventor 2013 (HKLM\...\{7F4DD591-1732-0001-0000-7107D70F3DB4}) (Version: 17.0.13800.0000 - Autodesk) Hidden
Autodesk Inventor 2013 Español (Spanish) (HKLM\...\Autodesk Inventor 2013) (Version: 17.0.13800.0000 - Autodesk)
Autodesk Inventor 2013 Paquete de idioma - Español (Spanish) (HKLM\...\{7F4DD591-1732-0001-3082-7107D70F3DB4}) (Version: 17.0.13800.0000 - Autodesk) Hidden
Autodesk Inventor Content Center Libraries 2013 (Desktop Content) (HKLM\...\{B46DECD1-1732-4EF1-0000-22D71E81877C}) (Version: 17.0.13800.0000 - Autodesk)
Autodesk Inventor Fusion 2013 (HKLM\...\{FFF5619F-2013-0032-A85E-9994F70A9E5D}) (Version: 2.0.0.206 - Autodesk, Inc.) Hidden
Autodesk Inventor Fusion 2013 (HKLM\...\Autodesk Inventor Fusion 2013) (Version: 2.0.0.206 - Autodesk, Inc.)
Autodesk Inventor Fusion for Inventor 2013 Add-in (HKLM\...\{08BCFE15-8AA1-4A58-B018-4FEF486BA922}) (Version: 1.0.0.111 - Autodesk)
Autodesk MatchMover 2013 32-bit (HKLM\...\{A04F8183-B0AC-44B1-9947-DC8AFD1194DD}) (Version: 15.00.0000 - Autodesk)
Autodesk Material Library 2013 (HKLM\...\{117EBEEB-5DB0-43C8-9FD6-DD583DB152DD}) (Version: 3.0.13 - Autodesk)
Autodesk Material Library 2016 (HKLM\...\{29A7D6EC-63C2-42FD-8143-5812ABD2923F}) (Version: 6.3.0.15 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2013 (HKLM\...\{606E12B9-641F-4644-A22A-FF38AE980AFD}) (Version: 3.0.13 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2016 (HKLM\...\{6B4CFC6E-ECB0-47FE-95D3-65C680ED0687}) (Version: 6.3.0.15 - Autodesk)
Autodesk Material Library Low Resolution Image Library 2013 (HKLM\...\{27C6C0A2-2EC9-4FEA-BE2B-659EAAC2C68C}) (Version: 3.0.13 - Autodesk)
Autodesk Vault Basic 2013 (Client) (HKLM\...\{CF526A26-1732-0000-0000-02E95019B628}) (Version: 17.0.61.0 - Autodesk) Hidden
Autodesk Vault Basic 2013 (Client) (HKLM\...\Autodesk Vault Basic 2013 (Client)) (Version: 17.0.61.0 - Autodesk)
Balsamiq Mockups 3 (HKLM\...\{DD3D206D-0E2A-13E1-C0CE-DC751907F1D4}) (Version: 3.5.15 - Balsamiq SRL) Hidden
Balsamiq Mockups 3 (HKLM\...\BalsamiqMockups3.EDE15CF69E11F7F7D45B5430C7D37CC6C3545E3C.1) (Version: 3.5.15 - Balsamiq SRL)
Bandisoft MPEG-1 Decoder (HKLM\...\BandiMPEG1) (Version:  - )
CCleaner (HKLM\...\CCleaner) (Version: 3.11 - Piriform)
CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.2.6.1748 - CDBurnerXP)
Compatibilidad con Aplicaciones de Apple (HKLM\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Composite 2013 (HKLM\...\{92203FA0-7C43-429F-857C-0AE197D8199C}) (Version: 8.0.0 - Autodesk)
Compresor WinRAR (HKLM\...\WinRAR archiver) (Version:  - )
Corel Graphics - Windows Shell Extension (HKLM\...\_{8616305F-122C-4341-9C37-47A9CD322AB2}) (Version: 17.1.0.572 - Corel Corporation)
Corel Graphics - Windows Shell Extension (HKLM\...\{8616305F-122C-4341-9C37-47A9CD322AB2}) (Version: 17.1.572 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Capture (HKLM\...\{5D0275EA-F3CE-450A-A5A3-F852E30CA46F}) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Common (HKLM\...\{994F3055-8433-46A7-8E1F-6CC7B68B01F0}) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Connect (HKLM\...\{EFB8E269-0619-475B-8C5B-96F98551AA33}) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Custom Data (HKLM\...\{84749C5C-FA80-4779-BD96-544165A8CD31}) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Draw (HKLM\...\{30FAE453-9F77-4F70-928E-042BEF00D011}) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - ES (HKLM\...\{168EC2AB-9458-40F7-9C2B-424EFE565CE3}) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Filters (HKLM\...\{8DADD35F-49CE-4D18-AE6D-135DD150E74F}) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - FontNav (HKLM\...\{7F5DE3F2-5865-4D4A-89D1-AAEFE1F96E50}) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - IPM Content (HKLM\...\{657EAD32-8E7A-43C0-A794-3BB31B00DC34}) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - IPM T (HKLM\...\{D29A4F85-0FB7-4E54-B591-044652C4295F}) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - PHOTO-PAINT (HKLM\...\{0A0143FF-ECB5-4960-A2E0-DC3150ABBBE0}) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Photozoom Plugin (HKLM\...\{950055ED-DC61-4874-8EDB-E5CDE1D218CD}) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Redist (HKLM\...\{F3286FA3-DF68-4948-8D1D-ED3A539077B3}) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Setup Files (HKLM\...\{C5D9CECB-A66F-473F-B406-5C8C2DCA4DF0}) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - VBA (HKLM\...\{877522BE-A318-4603-9B00-DF319C6FA2B1}) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - VideoBrowser (HKLM\...\{4C614BD3-607E-4289-BB51-4D87EC7BBD62}) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Writing Tools (HKLM\...\{246FE426-2661-4DD6-9603-DF2E6832387C}) (Version: 17.1 -  Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 (HKLM\...\_{C5D9CECB-A66F-473F-B406-5C8C2DCA4DF0}) (Version: 17.1.0.572 - Corel Corporation)
CorelDRAW Graphics Suite X7 (HKLM\...\{08A60D9D-C206-46BF-9602-1F2616878CF7}) (Version: 17.1 - Corel Corporation) Hidden
Cyotek WebCopy (HKLM\...\{D5FAF1F8-C903-41b2-AC66-2682A02A78CB}_is1) (Version:  - Cyotek)
D3DX10 (HKLM\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
Delcam Engineer 2014 R2 (HKLM\...\Delcam Engineer1402) (Version: 14.2.114 - Delcam)
Delcam PatternCut 2014 R1 SP1 (14104) (32-bit) (HKLM\...\Delcam PatternCut 2014 R1 SP1 (14104)) (Version: 14.1.04 - Delcam)
Delcam PS-Tutorials 2011 R3 (HKLM\...\Delcam PS-Tutorials11300) (Version: 11.3.00 - Delcam)
Delcam ShoeMaker 2015 R2 (HKLM\...\Delcam ShoeMaker15219) (Version: 15.2.19 - Delcam)
Desinstalador rápido de Autodesk Inventor 2013 (HKLM\...\{D25FF5C1-1732-469A-9794-69309387C193}) (Version: 17.0.13800.0000 - Autodesk)
Dia (sólo eliminar) (HKLM\...\Dia) (Version:  - )
DVD Decrypter (Remove Only) (HKLM\...\DVD Decrypter) (Version:  - )
DWG TrueView 2013 (HKLM\...\{5783F2D7-B028-0409-0000-0060B0CE6BBA}) (Version: 19.0.55.0 - Autodesk) Hidden
DWG TrueView 2013 (HKLM\...\DWG TrueView 2013) (Version: 19.0.55.0 - Autodesk)
Eco Materials Adviser for Autodesk Inventor 2013 (HKLM\...\{39FF4C41-0C7E-498D-ABAA-3CC74830BA53}) (Version: 3.9.12.0 - Granta Design Limited)
Facebook Video Calling 3.1.0.521 (HKLM\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited)
File Renamer - Basic (HKLM\...\File Renamer - Basic) (Version: 6.3 - Sherrod Computers)
Galería de fotos (HKLM\...\{198CEF22-A27F-4DC7-9B66-2C22A4B1CA09}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Ghostscript GPL 8.64 (Msi Setup) (HKLM\...\_{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation)
Ghostscript GPL 8.64 (Msi Setup) (HKLM\...\{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation) Hidden
GOM Player (HKLM\...\GOM Player) (Version: 2.2.57.5189 - Gretech Corporation)
Google Photos Backup (HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\Google Photos Backup) (Version: 1.1.2.13 - Google, Inc.)
Google SketchUp Pro 8 (HKLM\...\{3D734C68-CCA8-474C-88C3-5003EDE32081}) (Version: 3.0.4995 - Google, Inc.)
Importación de SketchUp 2016 (HKLM\...\{C769FB7C-1F55-4B31-9A2A-21CEC50F4F92}) (Version: 2.0.0 - Autodesk)
IsoBuster 2.8 (HKLM\...\IsoBuster_is1) (Version: 2.8 - Smart Projects)
Java 8 Update 211 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180211F0}) (Version: 8.0.2110.12 - Oracle Corporation)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Malwarebytes Anti-Malware versión 2.2.0.1024 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
MediaMonkey 3.1 (HKLM\...\MediaMonkey_is1) (Version: 3.1 - Ventis Media Inc.)
MEGAsync (HKLM\...\MEGAsync) (Version:  - Mega Limited)
Microsoft .NET Framework 1.1 (HKLM\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office Profesional 2016 - es-es (HKLM\...\ProfessionalRetail - es-es) (Version: 16.0.12228.20332 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\OneDriveSetup.exe) (Version: 19.232.1124.0010 - Microsoft Corporation)
Microsoft Primary Interoperability Assemblies 2005 (HKLM\...\{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM\...\{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2.0 Runtime (HKLM\...\{299C0434-4F4E-341F-A916-4E07AEB35E79}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2012 (HKLM\...\{89ca2a32-2b52-4595-8dfd-6fe4757958d0}) (Version: 11.0.51108 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Movie Maker (HKLM\...\{9C82436F-F19C-42A4-B476-F87A28A95BF9}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Movie Maker (HKLM\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 53.0.3 (x86 es-ES) (HKLM\...\Mozilla Firefox 53.0.3 (x86 es-ES)) (Version: 53.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 53.0.3.6347 - Mozilla)
MSVC80_x86_v2 (HKLM\...\{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}) (Version: 1.0.3.0 - Nokia) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
NVIDIA Controlador de 3D Vision 341.92 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 341.92 - NVIDIA Corporation)
NVIDIA Controlador de audio HD 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Controlador de gráficos 341.92 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 341.92 - NVIDIA Corporation)
NVIDIA Controlador de la controladora 3D Vision 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.2.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.2.2 - NVIDIA Corporation)
NVIDIA PhysX (HKLM\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.12228.20332 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-0000-0000000FF1CE}) (Version: 16.0.12228.20332 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0C0A-0000-0000000FF1CE}) (Version: 16.0.12228.20332 - Microsoft Corporation) Hidden
Outlook Express Backup V6.5 (HKLM\...\Outlook Express Backup_is1) (Version:  - Genie-Soft)
Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x86 Hosting Support - PTB (HKLM\...\{03077B58-6ACF-32CA-B42A-EAA458C295A1}) (Version: 11.0.51108 - Microsoft Corporation) Hidden
Panel de control de NVIDIA 341.92 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 341.92 - NVIDIA Corporation) Hidden
Paquete de idioma de Autodesk Vault Basic 2013 (Client) - Español (HKLM\...\{266597A9-1732-0000-0100-DCBF2B69166B}) (Version: 17.0.61.0 - Autodesk) Hidden
Paquete de idioma de Microsoft .NET Framework 4.5 ESN (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 3082) (Version: 4.5.50709 - Microsoft Corporation)
PC Inspector File Recovery (HKLM\...\{0DD140D3-9563-481E-AA75-BA457CBDAEF2}) (Version: 4.0 - )
PC Wizard 2010.1.94 (HKLM\...\PC Wizard 2010_is1) (Version:  - Laurent KUTIL & Franck DELATTRE)
Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9.141.259 - Google, Inc.)
QuickTime 7 (HKLM\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5764 - Realtek Semiconductor Corp.)
Revisión para Microsoft Visual Studio 2007 Tools for Applications - ENU (KB947789) (HKLM\...\{6D972506-DC01-39BC-A5DD-06DA86E00031}.KB947789) (Version: 1 - Microsoft Corporation)
Samsung Story Album Viewer (HKLM\...\{698BBAD8-B116-495D-B879-0F07A533E57F}) (Version: 1.0.0.13054_1 - Nombre de su organización) Hidden
Samsung Story Album Viewer (HKLM\...\InstallShield_{698BBAD8-B116-495D-B879-0F07A533E57F}) (Version: 1.0.0.13054_1 - Nombre de su organización)
Sentinel System Driver Installer 7.5.1 (HKLM\...\{BF9E346B-5ECE-4A18-9510-55729FD08323}) (Version: 7.5.1 - SafeNet, Inc.)
SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 4.0.1000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 17.12.8 - NVIDIA Corporation) Hidden
ShoeCloud 2013 (HKLM\...\{2373F5B5-E85C-4559-810C-9FB97181D171}) (Version: 5.7.5729 - Delcam)
Spybot - Search & Destroy (HKLM\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.)
Total Video Converter 3.71 100812 (HKLM\...\Total Video Converter 3.71_is1) (Version:  - EffectMatrix Inc.)
UltraISO Premium V9.33 (HKLM\...\UltraISO_is1) (Version:  - )
UnHackMe 11.60 (HKLM\...\UnHackMe_is1) (Version:  - Greatis Software, LLC.)
VBA (2627.01) (HKLM\...\{5545EEE1-FA36-4F76-B6BE-5696E7F4E2D6}) (Version: 6.03.00.9402 - Microsoft Corporation) Hidden
VBA (2627.4) (HKLM\...\{5545EEE9-FA36-4F76-B6BE-5696E7F4E2D6}) (Version: 6.03.00.9402 - Microsoft Corporation) Hidden
Vegas Pro 11.0 (HKLM\...\{09771440-269F-11E1-89B1-F04DA23A5C58}) (Version: 11.0.510 - Sony)
VisiPics V1.31 (HKLM\...\VisiPics_is1) (Version:  - Ozone)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.7.1 - VideoLAN)
V-Ray for SketchUp (HKLM\...\V-Ray for SketchUp 1.49.00) (Version: 1.49.00 - ASGVIS)
Windows 7 USB/DVD Download Tool (HKLM\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation)
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
Windows Media Player Firefox Plugin (HKLM\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
Wondershare Helper Compact 2.5.2 (HKLM\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.5.2 - Wondershare)
Wondershare PDFelement 6 Pro(Build 6.1.2) (HKLM\...\{B026557A-EF19-4812-8A79-B30F94AA0A78}_is1) (Version: 6.1.2.2385 - Wondershare Software Co.,Ltd.)
XnView 2.49.2 (HKLM\...\XnView_is1) (Version: 2.49.2 - Gougelet Pierre-e)
Your Uninstaller! 7 (HKLM\...\YU2010_is1) (Version: 7.5.2013.2 - URSoft, Inc.)
Языковой пакет для поддержки размещения набора средств Microsoft Visual Studio Tools для работы с приложениями 2012 (x86) - RUS (HKLM\...\{68DC347D-C1C0-3DE2-A53E-CCC71DA53E57}) (Version: 11.0.51108 - Microsoft Corporation) Hidden

==================== Personalizado CLSID (Lista blanca): ==============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{00F064D8-FEC3-48ac-B07D-39C314D1727B}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{0215A4C0-5431-4FD0-9B06-46589B5C4939}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{048ED0E0-12CF-4C0F-9FFA-947C2FBE8C8E}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{071339A1-1946-44B2-B63E-50459B15DB86}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{073CB204-6B29-46FC-AB98-451F1D068741}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\TestServer.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{0B628DE4-07AD-4284-81CA-5B439F67C5E6}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2016\acad.exe (Autodesk, Inc -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{1029ABC3-2457-11D5-8E9D-0010B541CD80}\localserver32 -> C:\Program Files\Autodesk\Inventor 2013\Compatibility\Bin\DbxBridge.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{12545889-6D32-4424-9967-1E1D7BD1F809}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{13009989-EFB5-48C9-8BD2-943E0392BD71}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\RxAppCtrl.Ocx (Autodesk, Inc.) [Archivo no firmado]
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{14679E3B-C952-4998-8E13-4B1286E6DD99}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{1481B385-759A-4B00-9257-E96357563999}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{149DD748-EA85-45A6-93C5-AC50D0260C98}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2016\acad.exe (Autodesk, Inc -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{162EF0A1-5A33-46F2-ACCF-CA388B084A09}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{18A21864-E37B-42b9-9612-2C1E8C450A29}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{1D625598-C876-4C51-8EF5-F9D8F96F62AA}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{1D6DFD6A-9E16-435A-9327-6FFEC6BA372F}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{1E5724EA-3423-4BD3-ABD6-46E650D2DC66}\InprocServer32 -> AcETransmit.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{1E8A29BA-827D-4031-A4A3-AE7999B402F6}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{1EA072EE-57FD-495E-889C-8243C3BDBDBC}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{1FD7F53F-7ED5-439C-9A77-A3821CD09E98}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{20E47D5B-529A-45BD-8E77-BF1A3064A008}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{21DB88B0-BFBF-11D4-8DE6-0010B541CAA8}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\iDrop.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{22181302-A8A6-4F84-A541-E5CBFC70CC43}\localserver32 -> C:\Users\windows7\AppData\Local\Google\Update\1.3.32.7\GoogleUpdateOnDemand.exe (Google Inc -> Google Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{244298EC-E661-11d4-BC13-0010B5891E89}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\TI.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{2709544A-5B24-4F9F-A5DA-CEC7297D3A4E}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{2BCA857B-A18B-4AFA-B183-CC0E49C12058}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{2C74F89E-7421-46B4-BA54-F86F1BD9F237}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{2C7D1157-7D50-4A88-9777-5EBBA3189AB8}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{2F0E2680-9FF5-43C0-B76E-114A56E93598}\localserver32 -> C:\Users\windows7\AppData\Local\Google\Update\1.3.32.7\GoogleUpdateOnDemand.exe (Google Inc -> Google Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{2F8377FC-50C1-44EF-AB7A-8FF1BB8EA277}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{3497C2EC-5684-4B21-AF74-F6760E0221DC}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{3897B445-D5B8-410d-899A-9789B8ADB643}\localserver32 -> C:\Program Files\Autodesk\Inventor 2013\Compatibility\Bin\DbxBridge.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{38C8B14E-7879-4DA9-8C3F-8CAAC359293A}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{3C3F63EA-C7BA-11d4-8E60-0010B541CD80}\localserver32 -> C:\Program Files\Autodesk\Inventor 2013\Compatibility\Bin\DbxBridge.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{3faa4380-a399-11cf-a466-00805fe418f6}\InprocServer32 -> C:\Program Files\Autodesk\DWG TrueView 2013\en-US\dwgviewrficn.dll (Autodesk, Inc -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{3FC94EB5-AEBD-4f3f-A2A4-B6CE57113C01}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\RxAppDocView.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{3FCEB42C-9B98-486A-BED7-FD7F3ADB7291}\InprocServer32 -> AcETransmit.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{40770568-0D5E-49D4-BE47-BC47A4F0B0A4}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{44A52280-AE56-490D-890C-89FB7279ED6B}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{45122C53-8483-4b62-B15A-EAA9FE5FC3D5}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{46C56738-39C6-4240-8B9B-008CCD769A84}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{47179DDE-10AC-4737-97C9-8CE5379343EA}\InprocServer32 -> AcETransmit.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{475C7B4A-6964-4F9E-9708-05A16EAC31D0}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{48270F9E-CCF6-4C79-B6FF-267C960E6425}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{48FEFCD7-5D7C-4E4A-9F11-60E69A31D4B1}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{49998808-648A-4A9C-A7A5-B1672775D9AB}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{4A756F5F-CBA4-428B-B17F-AF80C0C8502D}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{4B40437B-8972-4444-BBE3-1588FF55F203}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{4BD03680-3C0F-4501-AFF7-3D008586917F}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{4C80573A-9150-11d2-B772-0060B0F159EF}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\RxAppDocView.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{4D29B490-49B2-11D0-93C3-7E0706000000}\localserver32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\Inventor.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{4E6F2E83-E7F0-4333-9772-875EB733C820}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\RxTest.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{51F9E8EF-59D7-475B-A106-C7EA6F30C119}\localserver32 -> C:\Users\windows7\AppData\Local\Google\Update\1.3.32.7\GoogleUpdateOnDemand.exe (Google Inc -> Google Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{5370C727-1451-4700-A960-77630950AF6D}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2016\acad.exe (Autodesk, Inc -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{5544903C-2CCC-487C-91BB-F310B72A8E9B}\InprocServer32 -> AcETransmit.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{59A224A2-BEF8-4C89-96E0-83A5411ABB6C}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{622F6193-E4DD-46E6-BC66-2ED88E9FD28D}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{62FBB030-24C7-11D3-B78D-0060B0F159EF}\localserver32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\Inventor.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{644190AE-BD8F-493F-B63D-C79404AC5E07}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{6451051B-AD22-4C6A-ACCE-013A0E1DDBC3}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{64B99FDB-1D85-447F-98C7-569DBDA723DB}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{6A221957-2D85-42A7-8E19-BE33950D1DEB}\localserver32 -> C:\Program Files\Autodesk\DWG TrueView 2013\dwgviewr.exe (Autodesk, Inc -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{6BCE6F6E-C050-4F39-BD98-E2743949F724}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{6F56D7C9-18DD-4C15-9FA8-C54E3610EC40}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{6FDE7A70-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\DtBridge.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{6FDE7A71-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\DtBridge.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{6FDE7A72-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\DtBridge.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{6FDE7A73-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\DtBridge.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{6FDE7A74-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\DtBridge.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{6FDE7A77-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\DtCp.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{70DBCAE8-8C2B-450C-9E1D-43E4686C6512}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{713C0E8A-5AE8-4695-B442-5ED6C4FE5C42}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{7293E009-3015-4AD3-96EC-D42C36B5FCE3}\InprocServer32 -> AcETransmit.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{72EC5CC5-88F3-45B1-A865-0A327DF58CC8}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{72EFC580-D085-4B81-8C55-26A79E445338}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{750AEC19-2E4C-4ED9-9B9F-F9CAFCD060F3}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{76283A80-50DD-11D3-A7E3-00C04F79D7BC}\localserver32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\Inventor.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{794199C5-827C-41C8-8CB2-3A1EA056AF5E}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{798391FE-4AF2-4851-9DDA-1F0D70C02A9E}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{7BA16B3F-1AB3-4BD7-B959-52C4B8504EE9}\InprocServer32 -> AcInetUI.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{7C239DAB-BC87-45F3-B7B1-FCC1541A235B}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{81D07C3D-0350-11D3-B7C2-0060B0EC020B}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\RxAppCtrl.Ocx (Autodesk, Inc.) [Archivo no firmado]
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{834CE679-2E47-49DE-9E41-FEC87E9192EB}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{8421A29C-54B8-11D1-9837-0060B03C43C8}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\SolidObject.Dll (Autodesk, Inc. -> )
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{846217D0-8954-11D2-8DCD-0060B0C32531}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\UCxTextBtn.Ocx (Autodesk, Inc.) [Archivo no firmado]
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{846217D1-8954-11D2-8DCD-0060B0C32531}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\UCxTextBtn.Ocx (Autodesk, Inc.) [Archivo no firmado]
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{849AFB5B-D6C9-4924-A712-F7118FF9611F}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{85452F88-5071-492E-B850-2E3C586DCBD8}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{87F5CF8F-A06D-498F-A05F-E520E6B570DB}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{89F0FC31-3B1D-494B-A75B-6BD4FA527B8A}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{8AA16DFC-DFC6-4B51-8FA2-A5D812BE33BF}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{8B0E6BD9-610C-11D1-9842-0060B03C43C8}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\SolidObject.Dll (Autodesk, Inc. -> )
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{8C23B656-4E6E-4B45-9920-9617168D39A3}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\TestServer.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{8ED07FEF-E1B0-4CC3-B2BA-D354828AB952}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{97E17F04-17DF-11d5-BC38-0010B5891E89}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\BodyReceiver.dll (Autodesk, Inc. -> )
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{988F4102-E6E3-4282-ACAC-55270827F2A8}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{9906CDFC-DB2C-4126-9422-13139B148495}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{9A21C6C5-27FC-4442-8590-575E7AFD73BB}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{9ECF83FB-23C5-43B6-83DE-93CFBDD74D4A}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{A58F47CC-FF65-4152-B0B1-666C643A5BFC}\InprocServer32 -> AcETransmit.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{A6A3D586-44CF-44C2-A92C-620BB713B4F2}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{ABBE3F83-D585-4A50-9B69-198B0F566F2E}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{AC5CECFA-F03A-41D2-A89C-704C44935941}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{B1560245-190E-4BBD-81DF-9B642D0E5325}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{B2A579E0-A797-40B1-8AEE-A8F6404719F8}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{B47196BC-D4AB-41BB-A771-543D67CFC9F5}\InprocServer32 -> AcETransmit.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{B53CEF4B-1A13-49DE-BBC5-A7100FB2F38C}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{B5EE2B68-9A23-4BCD-BB77-FEA6DFB24DD6}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{B6B5DC40-96E3-11d2-B774-0060B0F159EF}\localserver32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\Inventor.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{B80687F9-FA4C-4735-9DC4-E5715F2BC698}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{B8E7214B-25CA-4116-84CB-E86FB9625B36}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{BAE5802A-CF21-4F9C-AE04-D98F4036AC31}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{BBF6A206-CB04-479D-96AE-349E1E83319A}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{BBF9FDF1-52DC-11D0-8C04-0800090BE8EC}\localserver32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\Inventor.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{BC71DEA1-D6FB-48B8-AB06-D151C81BBCDD}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{BE54741D-E02B-4572-93D6-105AF4EDE777}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{BF224DC3-B602-4EEE-BFE9-9E4E0AED6837}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{BF4CC07E-E9BB-40D6-873F-855B211033B9}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{C061C82C-D041-4214-BB07-B608107CEFCB}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{C2D4ACCC-A3D1-4A0A-AD59-0DD8BA3D5EE1}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}\InprocServer32 -> C:\Users\windows7\AppData\Local\Google\Update\1.3.32.7\npGoogleUpdate3.dll (Google Inc -> Google Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{C343ED84-A129-11d3-B799-0060B0F159EF}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\RxApprenticeServer.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{C442AC41-9200-4770-8CC0-7CDB4F245C55}\InprocServer32 -> C:\Users\windows7\AppData\Local\Google\Update\1.3.32.7\npGoogleUpdate3.dll (Google Inc -> Google Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{C8C18F89-794D-466B-8B97-95634D9890EF}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{C8EC7647-1E79-4F13-81D7-2EED803D0D22}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{C92F8F8C-8B2C-11d4-B872-0060B0EC020B}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\DtBridge.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\windows7\AppData\Local\Google\Update\1.3.32.7\psuser.dll (Google Inc -> Google Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{CC23CA32-9892-4FBA-A108-FE31CA0F35A6}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{CD865713-70D6-4E15-BB7B-9B99AD9DEB85}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{CFEE2BAF-14F9-4D23-853D-B6E2BCC14263}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{D56F5AB3-9C4D-4F1A-A851-A671D9FE8C22}\InprocServer32 -> AcETransmit.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{D66873EA-AAE5-41CC-8DD2-8CE3228E9F89}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{D7A1987D-4A73-11D1-9A4B-080009DCE505}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ColorButton.Ocx (Autodesk, Inc.) [Archivo no firmado]
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{D7A1987E-4A73-11D1-9A4B-080009DCE505}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ColorButton.Ocx (Autodesk, Inc.) [Archivo no firmado]
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{D86B6C47-11F2-4D95-B635-EA575F0892FC}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{DA1F437C-9BD9-11d4-B87C-0060B0EC020B}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\DtBridge.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{DB207560-8449-4FAF-BDC2-61676EB012D4}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{DB5D476B-3FF4-4E9D-A606-1E2B473BE571}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\AcInetUI.dll (Autodesk, Inc -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{DCA7356C-FF94-4b20-AE04-7AA6A8E14117}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{DDA9A20F-5B56-49F5-9465-CE82FC199352}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{DE6B563C-B074-4BF1-A8A0-B3FED8703E99}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{DE74F5AD-DA2F-429F-BAF9-850A2808D585}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{DF6525C2-6358-4B07-813D-708120C5FE1A}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{E177A457-9EAA-43C3-A3CE-84874A28F6CA}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{E1C85E9F-60B2-4007-80C3-2C5E09474C3B}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\RxInventorUtilities.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{E29F6C45-6927-4508-8F3F-34105FD3FC5F}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2016\es-ES\acadficn.dll (Autodesk Development Sarl -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{E4222C78-3670-4BB1-9AD4-7D8F3E581F2D}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{E5B0515D-48D2-4F04-906D-0192ED65A2DD}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\TestServer.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{E60F81E1-49B3-11D0-93C3-7E0706000000}\localserver32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\Inventor.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{E67BE843-BBBE-4484-95FB-05271AE86750}\localserver32 -> C:\Users\windows7\AppData\Local\Google\Update\1.3.32.7\GoogleUpdateOnDemand.exe (Google Inc -> Google Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{E70DE962-842A-4488-9481-1D0FD72A020F}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems Incorporated -> Adobe Systems)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\windows7\AppData\Local\Google\Update\1.3.32.7\psuser.dll (Google Inc -> Google Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{E9C07CEC-7B82-49E4-BBA2-7533B88E9D64}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{EA34A0C0-5CE7-4701-A6FA-117D25CD5EBB}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{EF01D98A-747B-4522-AD70-991B90855DBF}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{F13E75B9-6AF6-49CB-80B3-6D2FF6E09932}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{F196F03F-651A-43AF-BE34-D11942F24445}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{F2DB0EE3-7137-4CB0-8349-483C4FF2143A}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{F40E2FF0-4D77-40B2-9A44-A3AEECCE8EFF}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{F5522F0C-962A-48AC-9992-E81B07628F1F}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{F61064CC-DBFB-47ee-9BC8-CA5A1CBDF0DA}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\InvResc.dll (Autodesk, Inc. -> Autodesk)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{F78DCF7C-043D-45FC-9D21-676FC307BA3F}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{F868EAEC-1B73-4F5E-BA73-90EBA94E75BE}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{FA62F626-EBD5-4dc5-B970-D9E81E0E20E0}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{FA97F7A7-FD19-4D55-ABF2-CFEFFF777426}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{FB469644-3F14-4403-ACCA-6B13486FF7BD}\localserver32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\InvTXTStack.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{FD51ED8A-D518-4554-B236-B6E9D234FD03}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{FE054BB2-AF94-40AC-88AA-2F59F7018B1D}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{FE317223-8EDE-4684-B424-E48B9EA90220}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{FE718E8F-C3AA-4F30-9103-432450CF1DA1}\InprocServer32 -> axdb.dll => Ningún archivo
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\windows7\AppData\Local\MEGAsync\ShellExtX32.dll [2019-09-05] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\windows7\AppData\Local\MEGAsync\ShellExtX32.dll [2019-09-05] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\windows7\AppData\Local\MEGAsync\ShellExtX32.dll [2019-09-05] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x86.dll [2015-07-22] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x86.dll [2015-07-22] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x86.dll [2015-07-22] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2015-02-06] (Autodesk, Inc -> Autodesk, Inc.)
ContextMenuHandlers1: [KuaiZipShlExt] -> {6ADF19E3-77A3-4395-ADB4-9FD7D351EB3E} =>  -> Ningún archivo
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2011-04-18] (Igor Pavlov) [Archivo no firmado]
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x86.dll [2015-07-22] (Adobe Systems Incorporated -> )
ContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2015-02-06] (Autodesk, Inc -> Autodesk)
ContextMenuHandlers1: [Autodesk.DWF.ContextMenu] -> {6C18531F-CA85-45F7-8278-FF33CF0A5964} => C:\Program Files\Common Files\Autodesk Shared\DWF Common\DWFShellExtension.dll [2012-01-06] (Autodesk, Inc -> Autodesk, Inc.)
ContextMenuHandlers1: [ContextMenuExt] -> {6ADF19E3-77A3-4395-ADB4-9FD7D351EB3E} =>  -> Ningún archivo
ContextMenuHandlers1: [IXnView] -> {A5D35F9F-6A11-4EAA-B70B-7BB6FE32663A} => C:\Program Files\XnView\ShellEx\XnViewShellExt.dll [2019-12-12] () [Archivo no firmado]
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\windows7\AppData\Local\MEGAsync\ShellExtX32.dll [2019-09-05] (Mega Limited -> )
ContextMenuHandlers1: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files\Spybot - Search & Destroy 2\SDECon32.dll [2014-06-24] (Safer Networking Ltd. -> Safer-Networking Ltd.)
ContextMenuHandlers1: [TVCShellExt] -> {4E33A7F5-8083-4C08-9D45-C5CED88F5C04} => C:\Program Files\Total Video Converter\TVCShellExt.dll [2010-07-29] () [Archivo no firmado]
ContextMenuHandlers1: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2010-03-15] () [Archivo no firmado]
ContextMenuHandlers2: [AlcoholShellEx] -> {32020A01-506E-484D-A2A8-BE3CF17601C3} => C:\Program Files\Alcohol Soft\Alcohol 120\AxShlex.dll [2009-12-23] (Alcohol Soft -> Alcohol Soft Development Team)
ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\windows7\AppData\Local\MEGAsync\ShellExtX32.dll [2019-09-05] (Mega Limited -> )
ContextMenuHandlers2: [UltraISO] -> {AD392E40-428C-459F-961E-9B147782D099} => C:\Program Files\UltraISO\isoshell.dll [2007-07-17] (EZB Systems, Inc.) [Archivo no firmado]
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\windows7\AppData\Local\MEGAsync\ShellExtX32.dll [2019-09-05] (Mega Limited -> )
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2011-04-18] (Igor Pavlov) [Archivo no firmado]
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\windows7\AppData\Local\MEGAsync\ShellExtX32.dll [2019-09-05] (Mega Limited -> )
ContextMenuHandlers4: [UltraISO] -> {AD392E40-428C-459F-961E-9B147782D099} => C:\Program Files\UltraISO\isoshell.dll [2007-07-17] (EZB Systems, Inc.) [Archivo no firmado]
ContextMenuHandlers4: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2010-03-15] () [Archivo no firmado]
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2011-02-11] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2015-10-13] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x86.dll [2015-07-22] (Adobe Systems Incorporated -> )
ContextMenuHandlers6: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files\Spybot - Search & Destroy 2\SDECon32.dll [2014-06-24] (Safer Networking Ltd. -> Safer-Networking Ltd.)
ContextMenuHandlers6: [UltraISO] -> {AD392E40-428C-459F-961E-9B147782D099} => C:\Program Files\UltraISO\isoshell.dll [2007-07-17] (EZB Systems, Inc.) [Archivo no firmado]
ContextMenuHandlers6: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2010-03-15] () [Archivo no firmado]
ContextMenuHandlers6_S-1-5-21-1108624317-4066755893-285503077-1001: [InventorMenu] -> {6FDE7A70-351B-11d6-988B-0010B57A8BB7} => C:\Program Files\Autodesk\Inventor 2013\Bin\DtBridge.dll [2012-03-03] (Autodesk, Inc. -> Autodesk, Inc.)

==================== Codecs (Lista blanca) ====================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Drivers32: [msacm.divxa32] => C:\Windows\system32\msaud32_divx.acm [186368 2003-02-03] (Microsoft Corporation) [Archivo no firmado]
HKLM\...\Drivers32: [vidc.mpeg] => C:\Windows\system32\bdmpegv.dll [58368 2010-09-02] () [Archivo no firmado]
HKLM\...\Drivers32: [msacm.bdmpeg] => C:\Windows\system32\bdmpega.acm [58368 2010-09-02] () [Archivo no firmado]
HKLM\...\Drivers32: [vidc.mjpg] => C:\Windows\system32\bdmjpeg.dll [15360 2010-09-02] () [Archivo no firmado]
HKLM\...\Drivers32: [VIDC.ACDV] => C:\Windows\system32\ACDV.dll [462848 2005-06-20] (ACD Systems) [Archivo no firmado]
HKLM\...\Drivers32: [vidc.tscc] => C:\Windows\system32\tsccvid.dll [102400 2005-06-15] (TechSmith Corporation) [Archivo no firmado]

==================== Accesos directos & WMI ========================

(Las entradas pueden ser listadas para ser restauradas o eliminadas.)

WMI:subscription\__FilterToConsumerBinding->\\.\root\subscription:ActiveScriptEventConsumer.Name=\"ASEC\"",Filter="\\.\root\subscription:__EventFilter.Name=\"EventFilter sethomePage2\":: <==== ATENCIÓN
WMI:subscription\__TimerInstruction->SethomePage Interval Timer:: <==== ATENCIÓN
WMI:subscription\__IntervalTimerInstruction->SethomePage Interval Timer:: <==== ATENCIÓN
WMI:subscription\__EventFilter->EventFilter sethomePage2::[Query => Select * From __timerevent Where TimerId = "SethomePage Interval Timer"] <==== ATENCIÓN
Shortcut: C:\Users\windows7\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Delcam\PatternCut\Reset PatternCut 2014 R1 SP1 (14104).lnk -> C:\Program Files\Delcam\PatternCut14104\resetDefaultSettings.bat ()

==================== Módulos cargados (Lista blanca) =============

2017-11-22 12:57 - 2010-07-29 18:19 - 000234496 _____ () [Archivo no firmado] C:\Program Files\Total Video Converter\TVCShellExt.dll
2011-03-05 10:13 - 2010-03-15 10:28 - 000141824 _____ () [Archivo no firmado] C:\Program Files\WinRAR\rarext.dll
2020-01-04 09:59 - 2019-12-12 09:24 - 001997312 _____ () [Archivo no firmado] C:\Program Files\XnView\ShellEx\XnViewShellExt.dll
2011-04-18 15:34 - 2011-04-18 15:34 - 000056320 _____ (Igor Pavlov) [Archivo no firmado] C:\Program Files\7-Zip\7-zip.dll
2013-09-11 17:22 - 2013-09-11 17:22 - 000114688 _____ (Microsoft Corporation) [Archivo no firmado] C:\Windows\Microsoft.Net\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
2015-03-25 15:31 - 2015-10-13 16:01 - 000834592 _____ (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [Archivo no firmado] C:\Program Files\NVIDIA Corporation\NvStreamSrv\rxinput.dll

==================== Alternate Data Streams (Lista blanca) ========

continuacion de addition.txt

(Si una entrada es incluida en el fixlist, solamente los ADS serán eliminados.)

AlternateDataStreams: C:\Windows\system32\config\systemprofile:.repos [616643]
AlternateDataStreams: C:\ProgramData\TEMP:07BF512B [129]
AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51 [346]
AlternateDataStreams: C:\ProgramData\TEMP:5C321E34 [127]
AlternateDataStreams: C:\ProgramData\TEMP:A1EDB939 [136]

==================== Modo Seguro (Lista blanca) ==================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"

==================== Asociación (Lista blanca) =================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado.)

HKU\S-1-5-21-1108624317-4066755893-285503077-1001\Software\Classes\.scr: AutoCADScriptFile => C:\Windows\system32\notepad.exe "%1"

==================== Internet Explorer sitios de confianza/restringidos ==========

(Si una entrada es incluida en el fixlist, será eliminada del registro.)

IE trusted site: HKU\.DEFAULT\...\localhost -> localhost
IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com
IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com

Hay 7945 más sitios.

IE trusted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\localhost -> localhost
IE restricted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\0411dd.com -> 0411dd.com
IE restricted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\0511zfhl.com -> 0511zfhl.com
IE restricted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\0632qyw.com -> 0632qyw.com
IE restricted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\1-2005-search.com -> www.1-2005-search.com

Hay 12797 más sitios.


==================== Hosts contenido: =========================

(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)

2011-08-13 08:58 - 2019-10-10 09:27 - 000454303 ____R C:\Windows\system32\drivers\etc\hosts
127.0.0.1	www.007guard.com
127.0.0.1	007guard.com
127.0.0.1	008i.com
127.0.0.1	www.008k.com
127.0.0.1	008k.com
127.0.0.1	www.00hq.com
127.0.0.1	00hq.com
127.0.0.1	010402.com
127.0.0.1	www.032439.com
127.0.0.1	032439.com
127.0.0.1	www.0scan.com
127.0.0.1	0scan.com
127.0.0.1	1000gratisproben.com
127.0.0.1	www.1000gratisproben.com
127.0.0.1	1001namen.com
127.0.0.1	www.1001namen.com
127.0.0.1	100888290cs.com
127.0.0.1	www.100888290cs.com
127.0.0.1	www.100sexlinks.com
127.0.0.1	100sexlinks.com
127.0.0.1	10sek.com
127.0.0.1	www.10sek.com
127.0.0.1	www.1-2005-search.com
127.0.0.1	1-2005-search.com
127.0.0.1	123fporn.info
127.0.0.1	www.123fporn.info
127.0.0.1	123haustiereundmehr.com
127.0.0.1	www.123haustiereundmehr.com
127.0.0.1	123moviedownload.com
127.0.0.1	www.123moviedownload.com

Hay 15618 más lineas.


==================== Otras Áreas ===========================

(Actualmente no existe una corrección automática para esta sección.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files\Common Files\Oracle\Java\javapath;C:\Program Files\NVIDIA Corporation\PhysX\Common;C:\ProgramData\Oracle\Java\javapath;C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files\Smart Projects\IsoBuster;C:\Program Files\Windows Live\Shared;C:\Users\windows7\AppData\Local\Smartbar\Application\;C:\Program Files\QuickTime\QTSystem\;C:\Program Files\Autodesk\Backburner\
HKU\S-1-5-21-1108624317-4066755893-285503077-1001\Control Panel\Desktop\\Wallpaper -> 
DNS Servers: El medio no está conectado a internet.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
Firewall de Windows está habilitado.

==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==

(Si una entrada es incluida en el fixlist, será eliminada.)

MSCONFIG\Services: ekrn => 2
MSCONFIG\startupfolder: C:^Users^windows7^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Enviar a OneNote.lnk => C:\Windows\pss\Enviar a OneNote.lnk.Startup
MSCONFIG\startupfolder: C:^Users^windows7^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^MEGAsync.lnk => C:\Windows\pss\MEGAsync.lnk.Startup
MSCONFIG\startupreg: ADSKAppManager => "C:\Program Files\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe" -showminimized -checkautorun
MSCONFIG\startupreg: Autodesk Sync => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe
MSCONFIG\startupreg: OfficeSyncProcess => "C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE"

==================== Reglas de firewall (Lista blanca) ================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

FirewallRules: [{60E6CCAF-986D-4875-8E71-77A7CA4821D6}] => (Allow) C:\Windows\System32\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{F6AE3F95-AA55-4285-890E-80A33988AEC4}] => (Allow) C:\Windows\System32\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{65442FBF-2C07-45F9-BE94-8B478B48060C}] => (Allow) C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{FAD1B21A-2A04-401B-B315-8B70788E0F2D}C:\program files\google\google sketchup 8\sketchup.exe] => (Block) C:\program files\google\google sketchup 8\sketchup.exe (Google, Inc.) [Archivo no firmado]
FirewallRules: [UDP Query User{6814F6FA-FEEE-46C0-9CFF-9587BE7F7F5D}C:\program files\google\google sketchup 8\sketchup.exe] => (Block) C:\program files\google\google sketchup 8\sketchup.exe (Google, Inc.) [Archivo no firmado]
FirewallRules: [{364ACE62-E2F1-4C18-A483-129F2BB8CF48}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{F11AE55C-5686-4516-8D02-C2F312EAB893}C:\program files\mozilla firefox\plugin-container.exe] => (Block) C:\program files\mozilla firefox\plugin-container.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{1A201ADC-091C-46CD-BE55-7099559E9ED4}C:\program files\mozilla firefox\plugin-container.exe] => (Block) C:\program files\mozilla firefox\plugin-container.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{C1FD1282-B068-4997-BFFB-D2EE4C61179F}] => (Allow) C:\Program Files\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2BCAC8AE-E14D-4062-898B-05CD68854C29}] => (Allow) LPort=2869
FirewallRules: [{0C51E8B3-3775-4F7C-85D8-F32B68C17D93}] => (Allow) LPort=1900
FirewallRules: [{83FEFA56-86F4-42E4-A813-77CCFD7E1815}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{0A137B0C-8F37-4404-871C-D19602A9EC7E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{7DBF5714-A1EF-4F57-B93A-3B0EB0541531}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{954E6082-FC2D-49DC-A67F-8BFA472FC042}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{41934514-350C-49EC-9747-4086088B4EA1}] => (Allow) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{0CD2B698-A420-4861-9E03-CA4AA85A6BB8}] => (Allow) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{885C4792-8F69-4873-98D3-8065EBC6A0EB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{CDCD68CD-DF1D-4400-B44C-92FC4D34EF41}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{2C373DEE-1222-4593-AE4B-D5F1E3D6C474}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{B0D97C7E-A687-429E-BF5A-5A1CBD3D8B7C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{CC31B410-4234-4060-93FC-BA0A2DD267D1}] => (Allow) C:\Windows\System32\muzapp.exe (Musiccity Co.Ltd.) [Archivo no firmado]
FirewallRules: [{7F9B4E3A-DF7C-4714-813D-5A2D7C5B2E3B}] => (Allow) C:\Windows\System32\muzapp.exe (Musiccity Co.Ltd.) [Archivo no firmado]
FirewallRules: [TCP Query User{A97C89C1-9BF0-4C25-866D-BFD20C221155}C:\program files\google\google sketchup 8\sketchup.exe] => (Block) C:\program files\google\google sketchup 8\sketchup.exe (Google, Inc.) [Archivo no firmado]
FirewallRules: [UDP Query User{B961FB2C-6BFF-49A2-97E7-A5C92960C0C1}C:\program files\google\google sketchup 8\sketchup.exe] => (Block) C:\program files\google\google sketchup 8\sketchup.exe (Google, Inc.) [Archivo no firmado]
FirewallRules: [TCP Query User{36C5EB65-6101-4523-800D-56CA89C3FB66}C:\program files\mozilla firefox\plugin-container.exe] => (Block) C:\program files\mozilla firefox\plugin-container.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{D0ABFE42-2932-44B7-8059-47CC173CC0EF}C:\program files\mozilla firefox\plugin-container.exe] => (Block) C:\program files\mozilla firefox\plugin-container.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{2E80D1E5-81D9-4F2A-AFF8-D81BF673BB7C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{2AE108CA-F810-42FE-BAC9-B70035EF5966}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{EA4A4FA9-B689-4A19-801F-23851DE5F8E8}] => (Block) c:\Program Files\Corel\CorelDRAW Graphics Suite X7\Programs\CorelDrw.exe (Corel Corporation -> Corel Corporation)
FirewallRules: [{970FAD51-3384-4210-A17D-99607498D333}] => (Block) c:\Program Files\Corel\CorelDRAW Graphics Suite X7\Programs\CorelPP.exe (Corel Corporation -> Corel Corporation)
FirewallRules: [{D381C69B-064D-49A9-8B65-14E24D1E295D}] => (Block) %ProgramFiles%\Common Files\Protexis\License Service\PsiService_2.exe (Arvato Digital Services Canada Inc -> arvato digital services llc)
FirewallRules: [{4B3A1A06-096B-4836-88EF-C96E32B503ED}] => (Block) %ProgramFiles%\Common Files\Protexis\License Service\PsiService_2.exe (Arvato Digital Services Canada Inc -> arvato digital services llc)
FirewallRules: [{14192F16-153C-45BC-9766-D3A982DFAE56}] => (Allow) C:\Windows\system32\rundll32.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{B64E3D2C-1ED1-46E7-87FE-458442982439}] => (Allow) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{BA3F4408-C046-46FA-AC96-6D03F024F025}] => (Allow) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{EE6F746B-AD4B-48B8-9A79-A30100197623}] => (Allow) C:\Windows\explorer.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{DAFE2275-C537-4424-8CF8-C14E275B8C69}] => (Allow) C:\Windows\explorer.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{22B62EB0-79DD-4BAA-84D4-CDA933EF0890}] => (Allow) C:\Windows\explorer.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{B9F9194D-195F-4F42-A7E2-9BEFD5B3B87F}] => (Allow) C:\Windows\explorer.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{88CD56B4-F69A-47CF-B1CF-ED6C9F056F00}] => (Block) LPort=50248
FirewallRules: [{92ED7CAF-5042-4E01-A91A-DEED8F625B9F}] => (Block) %ProgramFiles%\Autodesk\AutoCAD 2016\acad.exe (Autodesk, Inc -> Autodesk, Inc.)
FirewallRules: [{B516BD68-849A-4B51-82EA-8099D6A3B038}] => (Block) %ProgramFiles%\Autodesk\Inventor 2013\Bin\Inventor.exe (Autodesk, Inc. -> Autodesk, Inc.)
FirewallRules: [{0718CB5A-01B7-4B48-A902-63DAE5696F40}] => (Block) %ProgramFiles%\Autodesk\AutoCAD 2016\acad.exe (Autodesk, Inc -> Autodesk, Inc.)
FirewallRules: [{5CE3F214-0617-466F-A279-3AA2C6AFEC3C}] => (Block) %ProgramFiles%\Autodesk\Inventor 2013\Bin\Inventor.exe (Autodesk, Inc. -> Autodesk, Inc.)
FirewallRules: [{A40DE483-C7FB-4A82-8ABB-273C8D66874E}] => (Block) %ProgramFiles%\Autodesk\Content Service\Connect.Service.ContentService.exe (Autodesk, Inc -> Autodesk, Inc.)
FirewallRules: [{B8A605A8-CDC2-4075-AE3B-5BEFF4F70087}] => (Allow) C:\Program Files\Autodesk\Backburner\monitor.exe (Autodesk, Inc.) [Archivo no firmado]
FirewallRules: [{09F52A4B-ABE5-4259-A61D-66AFDC5C2B03}] => (Allow) C:\Program Files\Autodesk\Backburner\monitor.exe (Autodesk, Inc.) [Archivo no firmado]
FirewallRules: [{C875A7B0-DD09-4556-AC62-A028B5C044B7}] => (Allow) C:\Program Files\Autodesk\Backburner\manager.exe (Autodesk, Inc.) [Archivo no firmado]
FirewallRules: [{39F8C8EB-761B-4E0B-B4AE-2A232AA2F3A6}] => (Allow) C:\Program Files\Autodesk\Backburner\manager.exe (Autodesk, Inc.) [Archivo no firmado]
FirewallRules: [{530F81CB-8368-49EE-8C31-A59837B92591}] => (Allow) C:\Program Files\Autodesk\Backburner\server.exe (Autodesk, Inc.) [Archivo no firmado]
FirewallRules: [{075953BE-829C-495E-B3C1-96DEEB43A57D}] => (Allow) C:\Program Files\Autodesk\Backburner\server.exe (Autodesk, Inc.) [Archivo no firmado]
FirewallRules: [{9B104628-9CA0-4253-A34E-97D6CA217196}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{B1E73190-2EE2-42A2-BCAE-FC4CF1229221}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{DE9A711B-6717-4940-95DD-26D038C52A67}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [{D1FBB01E-770A-43D2-944C-B1B7458CE819}] => (Block) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [{183B9DA8-F358-402F-AA2B-7585332D8A56}] => (Block) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [{85B34758-97A3-4a63-832A-9825D8777935}}] => (Allow) C:\Program Files\UnHackMe\wu.exe (Greatis Software LLC -> Greais Software)
FirewallRules: [{9187CF69-6824-487d-A9F0-AFF5C2C29BA9}}] => (Allow) C:\Program Files\UnHackMe\wu.exe (Greatis Software LLC -> Greais Software)
FirewallRules: [{85B34758-97A3-4a63-832A-9825D8777934}}] => (Allow) C:\Program Files\UnHackMe\regruninfo.exe (Greatis Software LLC -> Greatis Software)
FirewallRules: [{9187CF69-6824-487d-A9F0-AFF5C2C29BA8}}] => (Allow) C:\Program Files\UnHackMe\regruninfo.exe (Greatis Software LLC -> Greatis Software)
FirewallRules: [{2C711D42-48B3-45BA-9033-53B8FD575173}] => (Allow) C:\Program Files\UnHackMe\RegRunInfo.exe (Greatis Software LLC -> Greatis Software)
FirewallRules: [{D7D8413D-38F7-4349-9852-BFF1BC6E07B1}] => (Allow) C:\Program Files\UnHackMe\RegRunInfo.exe (Greatis Software LLC -> Greatis Software)
FirewallRules: [{DA1607DF-F5C5-4CBE-AAAE-9A07B5EEA067}] => (Allow) C:\Program Files\UnHackMe\wu.exe (Greatis Software LLC -> Greais Software)
FirewallRules: [{62EC962F-ACC1-480E-9C2C-E21132FC5CE3}] => (Allow) C:\Program Files\UnHackMe\wu.exe (Greatis Software LLC -> Greais Software)
FirewallRules: [{B40E3C07-7BAB-43D5-B6C1-C18824A8F275}] => (Allow) C:\Program Files\UnHackMe\RegRunInfo.exe (Greatis Software LLC -> Greatis Software)
FirewallRules: [{E98077A7-38C2-43F2-8D4D-E2C582E30E06}] => (Allow) C:\Program Files\UnHackMe\wu.exe (Greatis Software LLC -> Greais Software)
FirewallRules: [{5072DFC1-4B3B-4040-8553-0172836F9E19}] => (Allow) C:\Program Files\UnHackMe\RegRunInfo.exe (Greatis Software LLC -> Greatis Software)
FirewallRules: [{72B222BE-2004-4EF8-9676-88D26AC3CB8D}] => (Allow) C:\Program Files\UnHackMe\wu.exe (Greatis Software LLC -> Greais Software)
StandardProfile\AuthorizedApplications: [C:\Users\windows7\Desktop\reparar disco\keygen-pr.exe] => Enabled:keygen-pr
StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access
StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service

==================== Puntos de Restauración =========================

ATENCIÓN: Restaurar Sistema está deshabilitado (Total:97.66 GB) (Free:23.43 GB) (24%)

==================== Dispositivos defectuosos en el Administrador de dispositivos ============

Name: mchInjDrv
Description: mchInjDrv
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: mchInjDrv
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Errores del registro de eventos: ========================

Errores de aplicación:
==================
Error: (04/10/2020 09:27:27 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: nvcplui.exe, versión: 7.8.840.0, marca de tiempo: 0x561d3032
Nombre del módulo con errores: nvcplui.exe, versión: 7.8.840.0, marca de tiempo: 0x561d3032
Código de excepción: 0x40000015
Desplazamiento de errores: 0x0015a770
Id. del proceso con errores: 0xe28
Hora de inicio de la aplicación con errores: 0x01d60f336405691b
Ruta de acceso de la aplicación con errores: C:\Program Files\NVIDIA Corporation\Control Panel Client\nvcplui.exe
Ruta de acceso del módulo con errores: C:\Program Files\NVIDIA Corporation\Control Panel Client\nvcplui.exe
Id. del informe: a30d7ce3-7b26-11ea-8f70-00270e12555a

Error: (04/09/2020 07:37:14 PM) (Source: MsiInstaller) (EventID: 11706) (User: PCFER)
Description: Product: Call of Duty DVD version -- Error 1706.No valid source could be found for product Call of Duty DVD version.  The Windows Installer cannot continue.

Error: (04/09/2020 04:24:27 AM) (Source: MsiInstaller) (EventID: 11706) (User: PCFER)
Description: Product: Call of Duty DVD version -- Error 1706.No valid source could be found for product Call of Duty DVD version.  The Windows Installer cannot continue.

Error: (04/09/2020 04:05:37 AM) (Source: MsiInstaller) (EventID: 11706) (User: PCFER)
Description: Product: Call of Duty DVD version -- Error 1706.No valid source could be found for product Call of Duty DVD version.  The Windows Installer cannot continue.

Error: (04/09/2020 04:04:21 AM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: Event-ID 2001

Error: (04/09/2020 04:04:21 AM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: Event-ID 2001

Error: (04/09/2020 04:04:21 AM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: Event-ID 2001

Error: (04/09/2020 03:47:58 AM) (Source: MsiInstaller) (EventID: 11706) (User: PCFER)
Description: Product: Call of Duty DVD version -- Error 1706.No valid source could be found for product Call of Duty DVD version.  The Windows Installer cannot continue.


Errores del sistema:
=============
Error: (04/10/2020 06:30:11 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio NVIDIA Streamer Service se terminó de manera inesperada. Esto ha sucedido 1 veces.

Error: (04/10/2020 06:12:04 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio Spybot-S&D 2 Scanner Service no pudo iniciarse debido al siguiente error: 
El servicio no respondió a tiempo a la solicitud de inicio o de control.

Error: (04/10/2020 06:12:04 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Se agotó el tiempo de espera (30000 ms) para la conexión con el servicio Spybot-S&D 2 Scanner Service.

Error: (04/10/2020 06:11:34 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: El siguiente controlador de inicio del sistema o de inicio del arranque no se cargó correctamente: 
mchInjDrv

Error: (04/10/2020 06:11:32 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio Spybot-S&D 2 Scanner Service no pudo iniciarse debido al siguiente error: 
El servicio no respondió a tiempo a la solicitud de inicio o de control.

Error: (04/10/2020 06:11:32 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Se agotó el tiempo de espera (30000 ms) para la conexión con el servicio Spybot-S&D 2 Scanner Service.

Error: (04/10/2020 06:09:06 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: El servicio Protección de software terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 120000 milisegundos: Reiniciar el servicio.

Error: (04/10/2020 06:09:06 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio FlexGridService se terminó de manera inesperada. Esto ha sucedido 1 veces.


Windows Defender:
===================================
Date: 2016-07-09 05:16:46.438
Description: 
El examen de Windows Defender se detuvo antes de completarse.
Id. de examen:{EF5CDDBC-348E-4293-A536-005682FC548A}
Tipo de examen:AntiSpyware
Parámetros de examen:Examen rápido
Usuario:NT AUTHORITY\Servicio de red

Date: 2016-06-12 05:19:10.811
Description: 
El examen de Windows Defender se detuvo antes de completarse.
Id. de examen:{DE403654-9D8C-4F37-9981-9C51941E4CE9}
Tipo de examen:AntiSpyware
Parámetros de examen:Examen rápido
Usuario:NT AUTHORITY\Servicio de red

Date: 2016-06-01 08:34:33.311
Description: 
El examen de Windows Defender se detuvo antes de completarse.
Id. de examen:{9CBC970C-4E2E-4986-B6CE-AB26FC12BB99}
Tipo de examen:AntiSpyware
Parámetros de examen:Examen rápido
Usuario:NT AUTHORITY\Servicio de red

Date: 2016-05-09 12:57:27.264
Description: 
El examen de Windows Defender se detuvo antes de completarse.
Id. de examen:{DE141BA8-E1F9-4F8A-AA1F-52ABA089E309}
Tipo de examen:AntiSpyware
Parámetros de examen:Examen rápido
Usuario:NT AUTHORITY\Servicio de red

Date: 2015-09-28 08:53:48.011
Description: 
El examen de Windows Defender se detuvo antes de completarse.
Id. de examen:{BE96E3D1-6BF0-4597-813F-2F14FF9083EE}
Tipo de examen:AntiSpyware
Parámetros de examen:Examen rápido
Usuario:NT AUTHORITY\Servicio de red

Date: 2013-09-02 08:54:17.342
Description: 
Windows Defender encontró un error al tomar medidas ante spyware u otro software potencialmente no deseado.
Para obtener más información, consulte lo siguiente:
http://go.microsoft.com/fwlink/?linkid=37020&name=SoftwareBundler:Win32/Lolliport&threatid=198820
Usuario:windows7-PC\casa
Nombre:SoftwareBundler:Win32/Lolliport
Id.:198820
Gravedad:Media
Categoría:Software que instala varios programas
Ruta de acceso:
Acción:Quitar
Código de error:0x80508023
Descripción de error:El programa no encontró spyware ni cualquier otro software potencialmente no deseado en este equipo. 
Estado:

Date: 2013-03-29 18:48:10.388
Description: 
Windows Defender encontró un error al tomar medidas ante spyware u otro software potencialmente no deseado.
Para obtener más información, consulte lo siguiente:
http://go.microsoft.com/fwlink/?linkid=37020&name=PWS:Win32/Fareit.gen!I&threatid=193277
Usuario:\
Nombre:PWS:Win32/Fareit.gen!I
Id.:193277
Gravedad:Grave
Categoría:Programa de interceptación de contraseñas
Ruta de acceso:
Acción:Quitar
Código de error:0x80508023
Descripción de error:El programa no encontró spyware ni cualquier otro software potencialmente no deseado en este equipo. 
Estado:

CodeIntegrity:
===================================

Date: 2014-11-11 08:01:43.804
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Program Files\User Time Control1\utcclb.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

Date: 2014-11-10 20:38:48.470
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Program Files\User Time Control1\utcclb.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

Date: 2014-11-10 20:32:43.187
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Program Files\User Time Control1\utcclb.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

Date: 2014-11-10 20:04:51.458
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Program Files\User Time Control1\utcclb.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

Date: 2014-11-10 15:43:54.956
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Program Files\User Time Control1\utcclb.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

Date: 2014-11-10 15:07:55.534
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Program Files\User Time Control1\utcclb.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

Date: 2014-11-10 14:54:35.471
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Program Files\User Time Control1\utcclb.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

Date: 2014-11-10 09:32:00.683
Description: 
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Program Files\User Time Control1\utcclb.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.

==================== Información de la memoria =========================== 

BIOS: Intel Corp. RQG4110H.86A.0009.2009.0108.1005 01/08/2009
Placa base: Intel Corporation DG41RQ
Procesador: Intel(R) Core(TM)2 Quad CPU Q8300 @ 2.50GHz
Porcentaje de memoria en uso: 64%
RAM física total: 3033.82 MB
RAM física disponible: 1072.16 MB
Virtual total: 6065.93 MB
Virtual disponible: 4171.39 MB

==================== Unidades ================================

Drive c: () (Fixed) (Total:97.66 GB) (Free:23.43 GB) NTFS
Drive d: () (Fixed) (Total:292.97 GB) (Free:82.21 GB) NTFS
Drive e: () (Fixed) (Total:75.04 GB) (Free:74.82 GB) NTFS
Drive g: (MAYA2013) (CDROM) (Total:1.49 GB) (Free:0 GB) CDFS

\\?\Volume{f0250c7d-46fe-11e0-8fbe-806e6f6e6963}\ (Reservado para el sistema) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS

==================== MBR & Tabla de particiones ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: CB7B39BD)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=97.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=293 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=75 GB) - (Type=07 NTFS)

==================== Final  Addition.txt =======================

Bien… y ahora sigue estos pasos, :arrow_forward: MUY Importante :arrow_backward: Realiza una copia de seguridad del registro :

  • Para hacerlo descarga :arrow_forward: DelFix.exe(en tu escritorio).

  • Doble clic para ejecutarlo.(Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona -Ejecutar como Administrador-).

  • Atención, ahora marca/selecciona únicamente la casilla :white_check_mark: Create registry backup, las demás casillas NO. :face_with_monocle:

  • Pulsar en Run.

Se abrirá el informe (DelFix.txt), guárdalo por si fuera necesario y cierra la herramienta.

:warning: Con los demás programas cerrados ve a :arrow_forward: Inicio :arrow_forward: Ejecutar :arrow_forward: y escribe Notepad.exe.

  • Ahora debes copiar y pegar los códigos/líneas que están en el interior del recuadro de más abajo, dentro del Notepad.
START
CREATERESTOREPOINT:
CLOSEPROCESSES:
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{0215A4C0-5431-4FD0-9B06-46589B5C4939}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{048ED0E0-12CF-4C0F-9FFA-947C2FBE8C8E}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{071339A1-1946-44B2-B63E-50459B15DB86}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{12545889-6D32-4424-9967-1E1D7BD1F809}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{14679E3B-C952-4998-8E13-4B1286E6DD99}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{1481B385-759A-4B00-9257-E96357563999}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{162EF0A1-5A33-46F2-ACCF-CA388B084A09}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{1D625598-C876-4C51-8EF5-F9D8F96F62AA}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{1D6DFD6A-9E16-435A-9327-6FFEC6BA372F}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{1E5724EA-3423-4BD3-ABD6-46E650D2DC66}\InprocServer32 -> AcETransmit.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{1E8A29BA-827D-4031-A4A3-AE7999B402F6}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{1EA072EE-57FD-495E-889C-8243C3BDBDBC}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{1FD7F53F-7ED5-439C-9A77-A3821CD09E98}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{20E47D5B-529A-45BD-8E77-BF1A3064A008}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{2709544A-5B24-4F9F-A5DA-CEC7297D3A4E}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{2BCA857B-A18B-4AFA-B183-CC0E49C12058}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{2C74F89E-7421-46B4-BA54-F86F1BD9F237}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{2C7D1157-7D50-4A88-9777-5EBBA3189AB8}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{3497C2EC-5684-4B21-AF74-F6760E0221DC}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{38C8B14E-7879-4DA9-8C3F-8CAAC359293A}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{3FCEB42C-9B98-486A-BED7-FD7F3ADB7291}\InprocServer32 -> AcETransmit.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{40770568-0D5E-49D4-BE47-BC47A4F0B0A4}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{44A52280-AE56-490D-890C-89FB7279ED6B}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{46C56738-39C6-4240-8B9B-008CCD769A84}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{47179DDE-10AC-4737-97C9-8CE5379343EA}\InprocServer32 -> AcETransmit.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{475C7B4A-6964-4F9E-9708-05A16EAC31D0}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{48270F9E-CCF6-4C79-B6FF-267C960E6425}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{48FEFCD7-5D7C-4E4A-9F11-60E69A31D4B1}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{49998808-648A-4A9C-A7A5-B1672775D9AB}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{4A756F5F-CBA4-428B-B17F-AF80C0C8502D}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{4B40437B-8972-4444-BBE3-1588FF55F203}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{4BD03680-3C0F-4501-AFF7-3D008586917F}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{5544903C-2CCC-487C-91BB-F310B72A8E9B}\InprocServer32 -> AcETransmit.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{59A224A2-BEF8-4C89-96E0-83A5411ABB6C}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{622F6193-E4DD-46E6-BC66-2ED88E9FD28D}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{6451051B-AD22-4C6A-ACCE-013A0E1DDBC3}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{64B99FDB-1D85-447F-98C7-569DBDA723DB}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{6BCE6F6E-C050-4F39-BD98-E2743949F724}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{6F56D7C9-18DD-4C15-9FA8-C54E3610EC40}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{70DBCAE8-8C2B-450C-9E1D-43E4686C6512}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{713C0E8A-5AE8-4695-B442-5ED6C4FE5C42}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{7293E009-3015-4AD3-96EC-D42C36B5FCE3}\InprocServer32 -> AcETransmit.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{72EFC580-D085-4B81-8C55-26A79E445338}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{750AEC19-2E4C-4ED9-9B9F-F9CAFCD060F3}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{794199C5-827C-41C8-8CB2-3A1EA056AF5E}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{798391FE-4AF2-4851-9DDA-1F0D70C02A9E}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{7BA16B3F-1AB3-4BD7-B959-52C4B8504EE9}\InprocServer32 -> AcInetUI.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{7C239DAB-BC87-45F3-B7B1-FCC1541A235B}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{834CE679-2E47-49DE-9E41-FEC87E9192EB}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{849AFB5B-D6C9-4924-A712-F7118FF9611F}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{85452F88-5071-492E-B850-2E3C586DCBD8}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{87F5CF8F-A06D-498F-A05F-E520E6B570DB}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{89F0FC31-3B1D-494B-A75B-6BD4FA527B8A}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{8AA16DFC-DFC6-4B51-8FA2-A5D812BE33BF}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{8ED07FEF-E1B0-4CC3-B2BA-D354828AB952}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{988F4102-E6E3-4282-ACAC-55270827F2A8}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{9906CDFC-DB2C-4126-9422-13139B148495}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{9A21C6C5-27FC-4442-8590-575E7AFD73BB}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{9ECF83FB-23C5-43B6-83DE-93CFBDD74D4A}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{A58F47CC-FF65-4152-B0B1-666C643A5BFC}\InprocServer32 -> AcETransmit.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{A6A3D586-44CF-44C2-A92C-620BB713B4F2}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{ABBE3F83-D585-4A50-9B69-198B0F566F2E}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{AC5CECFA-F03A-41D2-A89C-704C44935941}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{B1560245-190E-4BBD-81DF-9B642D0E5325}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{B2A579E0-A797-40B1-8AEE-A8F6404719F8}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{B47196BC-D4AB-41BB-A771-543D67CFC9F5}\InprocServer32 -> AcETransmit.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{B53CEF4B-1A13-49DE-BBC5-A7100FB2F38C}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{B5EE2B68-9A23-4BCD-BB77-FEA6DFB24DD6}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{B80687F9-FA4C-4735-9DC4-E5715F2BC698}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{BAE5802A-CF21-4F9C-AE04-D98F4036AC31}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{BBF6A206-CB04-479D-96AE-349E1E83319A}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{BC71DEA1-D6FB-48B8-AB06-D151C81BBCDD}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{BF224DC3-B602-4EEE-BFE9-9E4E0AED6837}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{BF4CC07E-E9BB-40D6-873F-855B211033B9}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{C061C82C-D041-4214-BB07-B608107CEFCB}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{C2D4ACCC-A3D1-4A0A-AD59-0DD8BA3D5EE1}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{C8C18F89-794D-466B-8B97-95634D9890EF}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{C8EC7647-1E79-4F13-81D7-2EED803D0D22}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{CC23CA32-9892-4FBA-A108-FE31CA0F35A6}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{CD865713-70D6-4E15-BB7B-9B99AD9DEB85}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{D56F5AB3-9C4D-4F1A-A851-A671D9FE8C22}\InprocServer32 -> AcETransmit.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{D66873EA-AAE5-41CC-8DD2-8CE3228E9F89}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{D86B6C47-11F2-4D95-B635-EA575F0892FC}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{DB207560-8449-4FAF-BDC2-61676EB012D4}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{DE74F5AD-DA2F-429F-BAF9-850A2808D585}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{DF6525C2-6358-4B07-813D-708120C5FE1A}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{E177A457-9EAA-43C3-A3CE-84874A28F6CA}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{E29F6C45-6927-4508-8F3F-34105FD3FC5F}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{E4222C78-3670-4BB1-9AD4-7D8F3E581F2D}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{E70DE962-842A-4488-9481-1D0FD72A020F}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{E9C07CEC-7B82-49E4-BBA2-7533B88E9D64}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{EA34A0C0-5CE7-4701-A6FA-117D25CD5EBB}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{EF01D98A-747B-4522-AD70-991B90855DBF}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{F196F03F-651A-43AF-BE34-D11942F24445}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{F2DB0EE3-7137-4CB0-8349-483C4FF2143A}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{F40E2FF0-4D77-40B2-9A44-A3AEECCE8EFF}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{F5522F0C-962A-48AC-9992-E81B07628F1F}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{F78DCF7C-043D-45FC-9D21-676FC307BA3F}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{F868EAEC-1B73-4F5E-BA73-90EBA94E75BE}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{FA97F7A7-FD19-4D55-ABF2-CFEFFF777426}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{FD51ED8A-D518-4554-B236-B6E9D234FD03}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{FE054BB2-AF94-40AC-88AA-2F59F7018B1D}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{FE317223-8EDE-4684-B424-E48B9EA90220}\InprocServer32 -> axdb.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1108624317-4066755893-285503077-1001_Classes\CLSID\{FE718E8F-C3AA-4F30-9103-432450CF1DA1}\InprocServer32 -> axdb.dll => Ningún archivo
ContextMenuHandlers1: [KuaiZipShlExt] -> {6ADF19E3-77A3-4395-ADB4-9FD7D351EB3E} => -> Ningún archivo
ContextMenuHandlers1: [ContextMenuExt] -> {6ADF19E3-77A3-4395-ADB4-9FD7D351EB3E} => -> Ningún archivo
WMI:subscription\__FilterToConsumerBinding->\\.\root\subscription:ActiveScriptEventConsumer.Name=\"ASEC\"",Filter="\\.\root\subscription:__EventFilter.Name=\"EventFilter sethomePage2\":: <==== ATENCIÓN
WMI:subscription\__TimerInstruction->SethomePage Interval Timer:: <==== ATENCIÓN
WMI:subscription\__IntervalTimerInstruction->SethomePage Interval Timer:: <==== ATENCIÓN
WMI:subscription\__EventFilter->EventFilter sethomePage2::[Query => Select * From __timerevent Where TimerId = "SethomePage Interval Timer"] <==== ATENCIÓN
AlternateDataStreams: C:\Windows\system32\config\systemprofile:.repos [616643]
AlternateDataStreams: C:\ProgramData\TEMP:07BF512B [129]
AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51 [346]
AlternateDataStreams: C:\ProgramData\TEMP:5C321E34 [127]
AlternateDataStreams: C:\ProgramData\TEMP:A1EDB939 [136]
HKU\S-1-5-21-1108624317-4066755893-285503077-1001\Software\Classes\.scr: AutoCADScriptFile => C:\Windows\system32\notepad.exe "%1"
HKLM\...\Policies\Explorer: [HideSCAHealth] 1
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restricción <==== ATENCIÓN
HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\Run: [Spybot-S&D Cleaning] => C:\Program Files\Spybot - Search & Destroy 2\SDCleaner.exe [5915776 2016-03-21] (Safer-Networking Ltd. -> Safer-Networking Ltd.) [Archivo no firmado]
HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-1108624317-4066755893-285503077-1001\...\Policies\Explorer: []
HKU\S-1-5-18\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-18\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-18\...\Policies\Explorer: [HideSCAHealth] 1
HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
Startup: C:\Users\casa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Stardock ObjectDock.lnk [2016-08-02]
Startup: C:\Users\mati\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\iTouch - Acceso directo.lnk [2013-01-20]
ShortcutTarget: iTouch - Acceso directo.lnk -> D:\programas utilitarios\escritorio\varios programas para mejorar apariencia de escritorio\iTouch.exe (Ningún archivo)
Startup: C:\Users\mati\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ObjectDock Plus.lnk [2011-03-18]
ShortcutTarget: ObjectDock Plus.lnk -> C:\Program Files\Stardock\ObjectDock\ObjectDock.exe (Ningún archivo)
BootExecute: autocheck autochk /k:C /k:D /k:E * Partizan
GroupPolicy: Restricción ? <==== ATENCIÓN
GroupPolicyUsers\S-1-5-21-1108624317-4066755893-285503077-1004\User: Restricción <==== ATENCIÓN
GroupPolicyUsers\S-1-5-21-1108624317-4066755893-285503077-1003\User: Restricción <==== ATENCIÓN
Task: {42B1BA93-9B01-42B1-83FC-CD85E2EEF3B2} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe [6193080 2016-03-21] (Safer-Networking Ltd. -> Safer-Networking Ltd.) [Archivo no firmado]
Task: {61B6594D-1DC2-475C-A977-7DC57ACAD59E} - System32\Tasks\{281BF5E1-8E3C-4FF1-9E34-4BBC3339529E} => C:\Windows\system32\pcalua.exe -a "D:\programas utilitarios\escritorio\notas escritorio\stickies_setup_7.1e.exe" -d "D:\programas utilitarios\escritorio\notas escritorio"
Task: {EE27959E-DB80-4E38-9EE6-D23BF4865E59} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe [4747720 2014-06-27] (Safer Networking Ltd. -> Safer-Networking Ltd.)
Task: {F6DAB9B2-BC81-40AF-A250-AA305DA71C0B} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files\Spybot - Search & Destroy 2\SDImmunize.exe [5753752 2016-03-21] (Safer-Networking Ltd. -> Safer-Networking Ltd.) [Archivo no firmado]
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_211\bin\ssv.dll [2019-06-29] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-06-29] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/DTPlugin,version=11.211.2 -> C:\Program Files\Java\jre1.8.0_211\bin\dtplugin\npDeployJava1.dll [2019-06-29] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.211.2 -> C:\Program Files\Java\jre1.8.0_211\bin\plugin2\npjp2.dll [2019-06-29] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @pandonetworks.com/PandoWebPlugin -> C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll [Ningún archivo]
"vtjatoqr" => servicio fue desbloqueado. <==== ATENCIÓN
R2 FlexGridService; C:\ProgramData\FlexGridService\FlexGridService.exe [1185792 2020-03-30] (Sorentio Systems Ltd.) [Archivo no firmado] <==== ATENCIÓN
S2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer Networking Ltd. -> Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [4088608 2016-09-21] (Safer-Networking Ltd. -> Safer-Networking Ltd.) [Archivo no firmado]
R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [235984 2016-11-24] (Safer-Networking Ltd. -> Safer-Networking Ltd.) [Archivo no firmado]
S2 vtjatoqr; C:\Windows\system32\vtjatoqr\miaaxmlz.exe [11290624 2020-03-30] () [Archivo no firmado]
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [115008 2010-12-21] (ESET, spol. s r.o. -> ESET)
U3 ammvo5q4; C:\Windows\System32\Drivers\ammvo5q4.sys [0 0000-00-00] (Microsoft Corporation) <==== ATENCIÓN (cero bytes Archivo/Carpeta)
S0 AFPAnsi; System32\Drivers\AFPAnsi.sys [X]
S3 avchv; system32\DRIVERS\avchv.sys [X]
S3 dgderdrv; System32\drivers\dgderdrv.sys [X]
S1 mchInjDrv; \??\C:\Windows\system32\Drivers\mchInjDrv.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 XDva401; \??\C:\Windows\system32\XDva401.sys [X]
S3 XDva402; \??\C:\Windows\system32\XDva402.sys [X]
S3 XDva409; \??\C:\Windows\system32\XDva409.sys [X]
S3 XDva419; \??\C:\Windows\system32\XDva419.sys [X]
S3 XDva423; \??\C:\Windows\system32\XDva423.sys [X]
S3 XDva533; \??\C:\Windows\system32\XDva533.sys [X]
S3 XDva534; \??\C:\Windows\system32\XDva534.sys [X]
HOSTS:
REMOVEPROXY:
EMPTYTEMP:
CMD: netsh winsock reset
CMD: ipconfig /renew
CMD: ipconfig /flushdns
CMD: bitsadmin /reset /allusers
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
END

Guárdalo bajo el nombre de FIXLIST.TXT en el escritorio :arrow_backward: Esto es muy importante.

:o: Nota :o: Es importante que la herramienta FRST.exe(Farbar Recovery Scanner Tool) y FIXLIST.TXT se encuentren en la misma ubicación (escritorio) o si no, no trabajara.

Y ahora inicia tu equipo desde el :arrow_forward: Modo Seguro – con funciones de Red, de Windows

  • Ejecuta FRST.exe.(Si usas Windows Vista/7/8 o 10, presiona clic derecho y seleccionas -Ejecutar como Administrador-).

  • Presionar el botón FIX/Corregir y aguardar a que termine.

  • La Herramienta guardara el reporte de reparación en el escritorio (FIXLOG.TXT).

Pegar el contenido de este fichero en tu próxima respuesta. :+1:

Reiniciar el equipo y comprobar su funcionamiento en relación al problema planteado y comentarlo.

Saludos.

Tengo un problema. Al iniciar en modo seguro, no tengo pantalla, el monitor deja de estar en stand by, esta prendido pero queda en negro con un recuadro que informa que no hay coneccion.

Hola.

Que raro… :thinking:

Pero bueno…realiza el proceso desde el modo normal de windows. :face_with_monocle:

Saludos.

hola nuevamente, es normarl que el proceso lleve 4 horas?. sigue trabajando…

duda, cuando dice copiar y pegar los codigos/lineas, copie y pegue sin lo que entendi titulos… sin “START CREATERESTOREPOINT: CLOSEPROCESSES:” ni “END”

Pues NO. :tired_face:

Se debe copiar ABSOLUTAMENTE TODO. :-1:

El proceso YA terminó o todavía sigue activo…??